|
Log-Analyse und Auswertung: Windows XP: Browser verursacht WerbungWindows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
16.03.2014, 19:02 | #46 |
| Windows XP: Browser verursacht Werbung frst.txt: FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 09-03-2014 Ran by feuer (administrator) on FEUER-4072ISAQU on 16-03-2014 19:01:19 Running from C:\Dokumente und Einstellungen\feuer\Eigene Dateien\Downloads Microsoft Windows XP Home Edition Service Pack 3 (X86) OS Language: German Standard Internet Explorer Version 8 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (Microsoft Corporation) C:\Programme\Microsoft\BingBar\SeaPort.EXE (Symantec Corporation) C:\Programme\Norton Internet Security CBE\Engine\21.1.0.18\NIS.exe (NVIDIA Corporation) C:\WINDOWS\system32\nvsvc32.exe (Google Inc.) C:\Programme\Google\Update\1.3.22.5\GoogleCrashHandler.exe (NVIDIA Corporation) C:\Programme\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe (Secunia) C:\Programme\Secunia\PSI\PSIA.exe (Microsoft Corporation) C:\WINDOWS\System32\tcpsvcs.exe (H+H Software GmbH) C:\Programme\Virtual CD v9\System\VC9SecS.exe (Secunia) C:\Programme\Secunia\PSI\sua.exe (Symantec Corporation) C:\Programme\Norton Internet Security CBE\Engine\21.1.0.18\NIS.exe (Objectify Media Inc) C:\Programme\Web Protect\PCProtect.exe (Creative Technology Ltd) C:\Programme\Creative\Surround Mixer\CTSysVol.exe (NVIDIA Corporation) C:\Programme\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe () C:\Programme\DivX\DivX Update\DivXUpdate.exe (Realtek Semiconductor Corp.) C:\WINDOWS\RTHDCPL.EXE () C:\WINDOWS\system32\rmctrl.exe (Secunia) C:\Programme\Secunia\PSI\psi_tray.exe (Hauppauge Computer Works) C:\Programme\WinTV\WinTV2K.EXE (Mozilla Corporation) C:\Programme\Mozilla Firefox\firefox.exe (Mozilla Corporation) C:\Programme\Mozilla Firefox\plugin-container.exe (Microsoft Corporation) C:\WINDOWS\system32\wscntfy.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [Adobe ARM] - C:\Programme\Gemeinsame Dateien\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated) HKLM\...\Run: [CTSysVol] - C:\Programme\Creative\Surround Mixer\CTSysVol.exe [57344 2005-10-31] (Creative Technology Ltd) HKLM\...\Run: [Nvtmru] - C:\Programme\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe [1012000 2013-05-16] (NVIDIA Corporation) HKLM\...\Run: [SSBkgdUpdate] - C:\Programme\Gemeinsame Dateien\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe [210472 2006-10-25] (Nuance Communications, Inc.) HKLM\...\Run: [DelReg] - C:\Programme\MSI\DualCoreCenter\DelReg.exe [196608 2008-05-13] () HKLM\...\Run: [DivXUpdate] - C:\Programme\DivX\DivX Update\DivXUpdate.exe [1861968 2013-11-15] () HKLM\...\Run: [RTHDCPL] - C:\WINDOWS\RTHDCPL.EXE [20145368 2014-02-15] (Realtek Semiconductor Corp.) HKLM\...\Run: [RemoteControl] - C:\WINDOWS\system32\rmctrl.exe [32768 2000-10-16] () HKLM\...\Run: [APSDaemon] - C:\Programme\Gemeinsame Dateien\Apple\Apple Application Support\APSDaemon.exe [59720 2013-04-21] (Apple Inc.) HKLM\...\Run: [KernelFaultCheck] - %systemroot%\system32\dumprep 0 -k HKLM\...\Run: [BingDesktop] - C:\Programme\Microsoft\BingDesktop\BingDesktop.exe /fromkey HKLM\...\Run: [NvCplDaemon] - C:\WINDOWS\system32\NvCpl.dll [15677728 2013-06-21] (NVIDIA Corporation) HKLM\...\Run: [NvMediaCenter] - C:\WINDOWS\system32\NvMcTray.dll [223008 2013-06-21] (NVIDIA Corporation) HKU\S-1-5-21-1085031214-790525478-725345543-1004\...\Run: [SetDefaultMIDI] - C:\WINDOWS\MIDIDef.exe [49152 2002-12-03] (Creative Technology Ltd) HKU\S-1-5-21-1085031214-790525478-725345543-1004\...\Policies\Explorer: [NoRecentDocsHistory] 1 Startup: C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Autostart\Secunia PSI Tray.lnk ShortcutTarget: Secunia PSI Tray.lnk -> C:\Programme\Secunia\PSI\psi_tray.exe (Secunia) Startup: C:\Dokumente und Einstellungen\feuer\Startmenü\Programme\Autostart\ubisoft register.lnk ShortcutTarget: ubisoft register.lnk -> C:\Programme\Ubi Soft\Register\schedule.exe (Ubi Soft) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://de.msn.com/?ocid=iehp HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://de.msn.com/ HKCU\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://www.bing.com/ HKCU\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = hxxp://www.bing.com/ HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.msn.com/?pc=BDT1&ocid=BDT1DHP HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://de.msn.com/ HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://de.msn.com/ HKLM\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = hxxp://www.bing.com/ HKLM\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://www.bing.com/ SearchScopes: HKCU - {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = hxxp://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}&ie={inputEncoding}&oe={outputEncoding}&startIndex={startIndex?}&startPage={startPage} BHO: No Name - {5C255C8A-E604-49b4-9D64-90988571CECB} - No File BHO: Norton Identity Protection - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Programme\Norton Internet Security CBE\Engine\21.1.0.18\coIEPlg.dll (Symantec Corporation) BHO: Norton Vulnerability Protection - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Programme\Norton Internet Security CBE\Engine\21.1.0.18\IPS\IPSBHO.DLL (Symantec Corporation) BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Programme\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO: Windows Live Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Programme\Gemeinsame Dateien\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation) BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Programme\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) Toolbar: HKLM - Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Programme\Norton Internet Security CBE\Engine\21.1.0.18\coIEPlg.dll (Symantec Corporation) Toolbar: HKCU - &Adresse - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - C:\WINDOWS\System32\browseui.dll (Microsoft Corporation) Toolbar: HKCU - &Links - {0E5CBF21-D15F-11D0-8301-00AA005B4383} - C:\WINDOWS\system32\SHELL32.dll (Microsoft Corporation) Toolbar: HKCU - No Name - {604BC32A-9680-40D1-9AC6-E06B23A1BA4C} - No File Toolbar: HKCU - No Name - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No File DPF: {17492023-C23A-453E-A040-C7C580BBF700} hxxp://go.microsoft.com/fwlink/?linkid=39204 DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} hxxp://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1304073907390 DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} hxxp://update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1379302733234 DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} hxxp://java.sun.com/update/1.7.0/jinstall-1_7_0_51-windows-i586.cab DPF: {CAFEEFAC-0017-0000-0051-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.7.0/jinstall-1_7_0_51-windows-i586.cab DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.7.0/jinstall-1_7_0_51-windows-i586.cab Handler: http\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\System\OLE DB\msdaipp.dll (Microsoft Corporation) Handler: http\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\System\OLE DB\msdaipp.dll (Microsoft Corporation) Handler: https\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\System\OLE DB\msdaipp.dll (Microsoft Corporation) Handler: https\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\System\OLE DB\msdaipp.dll (Microsoft Corporation) Handler: ipp\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\System\OLE DB\msdaipp.dll (Microsoft Corporation) Handler: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\Programme\Windows Live\Messenger\msgrapp.14.0.8117.0416.dll (Microsoft Corporation) Handler: msdaipp\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\System\OLE DB\msdaipp.dll (Microsoft Corporation) Handler: msdaipp\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\System\OLE DB\msdaipp.dll (Microsoft Corporation) Handler: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\Programme\Windows Live\Messenger\msgrapp.14.0.8117.0416.dll (Microsoft Corporation) Handler: wlmailhtml - {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - C:\Programme\Windows Live\Mail\mailcomm.dll (Microsoft Corporation) ShellExecuteHooks: Windows Desktop Search Namespace Manager - {56F9679E-7826-4C84-81F3-532071A8BCC5} - C:\Programme\Windows Desktop Search\MsnlNamespaceMgr.dll [304128 2009-05-24] (Microsoft Corporation) Winsock: Catalog5 04 C:\WINDOWS\system32\pnrpnsp.dll [58880] (Microsoft Corporation) Winsock: Catalog5 05 C:\WINDOWS\system32\pnrpnsp.dll [58880] (Microsoft Corporation) Winsock: Catalog9 01 C:\WINDOWS\system32\PCProtect.dll [293984] (Objectify Media Inc) Winsock: Catalog9 02 C:\WINDOWS\system32\PCProtect.dll [293984] (Objectify Media Inc) Winsock: Catalog9 36 C:\WINDOWS\system32\PCProtect.dll [293984] (Objectify Media Inc) Tcpip\Parameters: [DhcpNameServer] 192.168.0.1 FireFox: ======== FF ProfilePath: C:\Dokumente und Einstellungen\feuer\Anwendungsdaten\Mozilla\Firefox\Profiles\qhdllhf9.default-1394709733765 FF Plugin: @adobe.com/FlashPlayer - C:\WINDOWS\system32\Macromed\Flash\NPSWF32_12_0_0_77.dll () FF Plugin: @adobe.com/ShockwavePlayer - C:\WINDOWS\system32\Adobe\Director\np32dsw_1210150.dll (Adobe Systems, Inc.) FF Plugin: @divx.com/DivX VOD Helper,version=1.0.0 - C:\Programme\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.) FF Plugin: @divx.com/DivX Web Player Plug-In,version=1.0.0 - C:\Programme\DivX\DivX Web Player\npdivx32.dll (DivX, LLC) FF Plugin: @java.com/DTPlugin,version=10.51.2 - C:\WINDOWS\system32\npdeployJava1.dll (Oracle Corporation) FF Plugin: @java.com/JavaPlugin - C:\Programme\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=10.51.2 - C:\Programme\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - C:\Programme\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation) FF Plugin: @microsoft.com/OfficeLive,version=1.5 - C:\Programme\Microsoft\Office Live\npOLW.dll (Microsoft Corp.) FF Plugin: @microsoft.com/WLPG,version=14.0.8117.0416 - C:\Programme\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin: @microsoft.com/WPF,version=3.5 - C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation) FF Plugin: @nokia.com/EnablerPlugin - C:\Programme\Nokia\Nokia Suite\npNokiaSuiteEnabler.dll ( ) FF Plugin: @tools.google.com/Google Update;version=3 - C:\Programme\Google\Update\1.3.22.5\npGoogleUpdate3.dll (Google Inc.) FF Plugin: @tools.google.com/Google Update;version=9 - C:\Programme\Google\Update\1.3.22.5\npGoogleUpdate3.dll (Google Inc.) FF Plugin: Adobe Reader - C:\Programme\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF SearchPlugin: C:\Programme\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Programme\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Programme\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Programme\mozilla firefox\browser\searchplugins\yahoo-de.xml FF Extension: Greasemonkey - C:\Dokumente und Einstellungen\feuer\Anwendungsdaten\Mozilla\Firefox\Profiles\qhdllhf9.default-1394709733765\Extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}.xpi [2014-03-14] FF HKLM\...\Firefox\Extensions: [{BBDA0591-3099-440a-AA10-41764D9DB4DB}] - C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_21.0.0.100\IPSFF FF Extension: Norton Vulnerability Protection - C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_21.0.0.100\IPSFF [2013-11-29] FF HKLM\...\Firefox\Extensions: [{2D3F3651-74B9-4795-BDEC-6DA2F431CB62}] - C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_21.0.0.100\coFFPlgn\ FF Extension: Norton Toolbar - C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_21.0.0.100\coFFPlgn\ [] ========================== Services (Whitelisted) ================= R2 6to4; C:\WINDOWS\System32\6to4svc.dll [100864 2010-02-12] (Microsoft Corporation) S2 BBSvc; C:\Programme\Microsoft\BingBar\BBSvc.EXE [196176 2011-10-21] (Microsoft Corporation.) R2 BBUpdate; C:\Programme\Microsoft\BingBar\SeaPort.EXE [249648 2011-10-13] (Microsoft Corporation) S3 fsssvc; C:\Programme\Windows Live\Family Safety\fsssvc.exe [704872 2010-04-28] (Microsoft Corporation) S2 gupdate; C:\Programme\Google\Update\GoogleUpdate.exe [116648 2014-03-07] (Google Inc.) S3 gupdatem; C:\Programme\Google\Update\GoogleUpdate.exe [116648 2014-03-07] (Google Inc.) R2 Iprip; C:\WINDOWS\System32\iprip.dll [36864 2008-04-14] (Microsoft Corporation) S3 MozillaMaintenance; C:\Programme\Mozilla Maintenance Service\maintenanceservice.exe [118896 2014-02-13] (Mozilla Foundation) R2 NIS; C:\Programme\Norton Internet Security CBE\Engine\21.1.0.18\NIS.exe [275696 2013-10-08] (Symantec Corporation) R2 nvUpdatusService; C:\Programme\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [1826592 2013-05-16] (NVIDIA Corporation) S3 p2pgasvc; C:\WINDOWS\system32\p2pgasvc.dll [105472 2008-04-14] (Microsoft Corporation) R3 PCProtect; C:\Programme\Web Protect\PCProtect.exe [1265608 2014-01-08] (Objectify Media Inc) S3 SandraAgentSrv; C:\Programme\SiSoftware\SiSoftware Sandra Lite 2011.SP2\RpcAgentSrv.exe [93848 2009-08-10] (SiSoftware) R2 Secunia PSI Agent; C:\Programme\Secunia\PSI\PSIA.exe [1229528 2013-12-06] (Secunia) R2 Secunia Update Agent; C:\Programme\Secunia\PSI\sua.exe [662232 2013-12-06] (Secunia) S3 ServiceLayer; C:\Programme\PC Connectivity Solution\ServiceLayer.exe [737616 2013-04-18] (Nokia) R2 VC9SecS; C:\Programme\Virtual CD v9\System\VC9SecS.exe [132424 2009-10-01] (H+H Software GmbH) S3 WMPNetworkSvc; C:\Programme\Windows Media Player\WMPNetwk.exe [920576 2006-11-03] (Microsoft Corporation) S3 x10nets; C:\Programme\Common Files\X10\Common\X10nets.exe [20480 2001-11-12] (X10) ==================== Drivers (Whitelisted) ==================== S3 3xHybrid; C:\WINDOWS\System32\DRIVERS\3xHybrid.sys [1315936 2011-04-30] (NXP Semiconductors Germany GmbH) R2 ACEDRV07; C:\WINDOWS\system32\drivers\ACEDRV07.sys [101376 2013-02-05] (Protect Software GmbH) S3 Ambfilt; C:\WINDOWS\System32\drivers\Ambfilt.sys [1691480 2014-02-15] (Creative) R1 BHDrvx86; C:\Programme\Norton Internet Security CBE\NortonData\21.0.0.100\Definitions\BASHDefs\20140214.001\BHDrvx86.sys [1098968 2013-12-18] (Symantec Corporation) S3 BrScnUsb; C:\WINDOWS\System32\DRIVERS\BrScnUsb.sys [15295 2004-10-15] (Brother Industries Ltd.) S3 CCDECODE; C:\WINDOWS\System32\DRIVERS\CCDECODE.sys [17024 2008-04-13] (Microsoft Corporation) R1 ccSet_NIS; C:\WINDOWS\system32\drivers\NIS\1501000.012\ccSetx86.sys [127064 2013-09-26] (Symantec Corporation) R1 eeCtrl; C:\Programme\Gemeinsame Dateien\Symantec Shared\EENGINE\eeCtrl.sys [376920 2014-01-30] (Symantec Corporation) R3 EraserUtilRebootDrv; C:\Programme\Gemeinsame Dateien\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [108120 2013-11-29] (Symantec Corporation) R2 fssfltr; C:\WINDOWS\System32\DRIVERS\fssfltr_tdi.sys [54760 2010-04-28] (Microsoft Corporation) R0 giveio; C:\WINDOWS\System32\giveio.sys [5248 1996-04-03] () R3 HCWBT8xx; C:\WINDOWS\System32\drivers\HCWBT8XX.sys [472644 2006-01-25] (Hauppauge Computer Works) S3 HdAudAddService; C:\WINDOWS\System32\drivers\AtiHdAud.sys [84992 2006-12-28] (ATI Research Inc.) S3 HH9Help.sys; C:\WINDOWS\system32\drivers\HH9Help.sys [11392 2006-09-20] (H+H Software GmbH) R0 hotcore3; C:\WINDOWS\System32\DRIVERS\hotcore3.sys [58464 2012-05-18] (Paragon Software Group) R3 IDSxpx86; C:\Programme\Norton Internet Security CBE\NortonData\21.0.0.100\Definitions\IPSDefs\20140314.001\IDSxpx86.sys [383128 2014-03-06] (Symantec Corporation) S3 Monfilt; C:\WINDOWS\System32\drivers\Monfilt.sys [1395800 2014-02-15] (Creative Technology Ltd.) S3 MPE; C:\WINDOWS\System32\DRIVERS\MPE.sys [15232 2008-04-13] (Microsoft Corporation) S3 MTK; C:\WINDOWS\System32\Drivers\fide.sys [15271 2014-03-10] (MediaTek Corporation) R3 NAVENG; C:\Programme\Norton Internet Security CBE\NortonData\21.0.0.100\Definitions\VirusDefs\20140315.009\NAVENG.SYS [93272 2014-01-30] (Symantec Corporation) R3 NAVEX15; C:\Programme\Norton Internet Security CBE\NortonData\21.0.0.100\Definitions\VirusDefs\20140315.009\NAVEX15.SYS [1612376 2014-01-30] (Symantec Corporation) S3 NdisIP; C:\WINDOWS\System32\DRIVERS\NdisIP.sys [10880 2008-04-13] (Microsoft Corporation) S3 nm; C:\WINDOWS\System32\DRIVERS\NMnt.sys [40320 2008-04-13] (Microsoft Corporation) R3 NVHDA; C:\WINDOWS\System32\drivers\nvhda32.sys [128672 2014-02-15] (NVIDIA Corporation) R2 NwlnkIpx; C:\WINDOWS\System32\DRIVERS\nwlnkipx.sys [88320 2008-04-13] (Microsoft Corporation) R2 NwlnkNb; C:\WINDOWS\System32\DRIVERS\nwlnknb.sys [63232 2002-08-29] (Microsoft Corporation) R2 NwlnkSpx; C:\WINDOWS\System32\DRIVERS\nwlnkspx.sys [55936 2002-08-29] (Microsoft Corporation) R3 P17; C:\WINDOWS\System32\drivers\P17.sys [1135104 2007-12-28] (Creative Technology Ltd.) R1 pcwatch; C:\WINDOWS\system32\Drivers\pcwatch.sys [19840 2014-01-08] () R3 pfc; C:\WINDOWS\System32\drivers\pfc.sys [13780 2002-04-19] (Padus, Inc.) R3 PSI; C:\WINDOWS\System32\DRIVERS\psi_mf_x86.sys [16024 2013-12-06] (Secunia) S3 RTCore32; C:\Programme\EVGA Precision\RTCore32.sys [4608 2005-05-25] () S3 SANDRA; C:\Programme\SiSoftware\SiSoftware Sandra Lite 2011.SP2\WNt500x86\Sandra.sys [23112 2009-08-07] (SiSoftware) R0 speedfan; C:\WINDOWS\System32\speedfan.sys [24184 2012-12-29] (Almico Software) R3 SRTSP; C:\WINDOWS\System32\Drivers\NIS\1501000.012\SRTSP.SYS [651352 2013-09-27] (Symantec Corporation) R1 SRTSPX; C:\WINDOWS\system32\drivers\NIS\1501000.012\SRTSPX.SYS [32344 2013-07-31] (Symantec Corporation) R0 SymDS; C:\WINDOWS\System32\drivers\NIS\1501000.012\SYMDS.SYS [367704 2013-08-01] (Symantec Corporation) R0 SymEFA; C:\WINDOWS\System32\drivers\NIS\1501000.012\SYMEFA.SYS [935512 2013-09-27] (Symantec Corporation) R3 SymEvent; C:\WINDOWS\system32\Drivers\SYMEVENT.SYS [142936 2013-11-29] (Symantec Corporation) R1 SymIRON; C:\WINDOWS\system32\drivers\NIS\1501000.012\Ironx86.SYS [206936 2013-07-31] (Symantec Corporation) R1 SYMTDI; C:\WINDOWS\System32\Drivers\NIS\1501000.012\SYMTDI.SYS [421592 2013-09-26] (Symantec Corporation) R1 Tcpip6; C:\WINDOWS\System32\DRIVERS\tcpip6.sys [226880 2010-02-11] (Microsoft Corporation) S3 X10UIF; C:\WINDOWS\System32\Drivers\x10uif.sys [10761 2001-11-14] (X10 Wireless Technology, Inc.) S3 catchme; \??\C:\DOKUME~1\feuer\LOKALE~1\Temp\catchme.sys [X] S4 IntelIde; No ImagePath U5 ScsiPort; C:\WINDOWS\system32\drivers\scsiport.sys [96384 2008-04-13] (Microsoft Corporation) S0 tclondrv; system32\DRIVERS\tclondrv.sys [X] U3 TlntSvr; R5 vdrv9000; C:\Windows\System32\Drivers\vdrv9000.sys [113688 2009-03-17] (H+H Software GmbH) ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-03-15 18:17 - 2014-03-15 17:32 - 00024064 _____ () C:\WINDOWS\zoek-delete.exe 2014-03-15 17:39 - 2014-03-15 17:26 - 00012186 _____ () C:\zoek-results2014-03-15-162648.log 2014-03-15 17:25 - 2014-03-15 18:19 - 00103562 _____ () C:\zoek-results.log 2014-03-15 17:09 - 2014-03-15 18:09 - 00000000 ____D () C:\zoek_backup 2014-03-14 16:23 - 2014-02-20 20:49 - 00877480 _____ (Oracle Corporation) C:\WINDOWS\system32\npdeployJava1.dll 2014-03-14 16:23 - 2014-02-20 20:49 - 00800168 _____ (Oracle Corporation) C:\WINDOWS\system32\deployJava1.dll 2014-03-14 14:14 - 2014-03-14 14:14 - 00000000 ____D () C:\Dokumente und Einstellungen\feuer\Anwendungsdaten\1H1Q 2014-03-14 14:13 - 2014-03-15 19:13 - 00000000 ____D () C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Minecraft 2014-03-13 11:49 - 2014-03-15 16:07 - 00000430 _____ () C:\WINDOWS\nsw.log 2014-03-13 05:02 - 2014-03-13 05:02 - 00127935 _____ () C:\WINDOWS\KB2925418-IE8.log 2014-03-13 05:02 - 2014-03-13 05:02 - 00000000 __HDC () C:\WINDOWS\$NtUninstallKB2930275$ 2014-03-13 05:02 - 2014-03-13 05:02 - 00000000 __HDC () C:\WINDOWS\$NtUninstallKB2929961$ 2014-03-12 09:20 - 2014-03-13 05:02 - 00127647 _____ () C:\WINDOWS\KB2930275.log 2014-03-12 09:20 - 2014-03-13 05:02 - 00124351 _____ () C:\WINDOWS\KB2929961.log 2014-03-07 22:52 - 2014-03-07 22:52 - 00000000 __HDC () C:\WINDOWS\$NtUninstallKB961503$ 2014-03-07 22:51 - 2014-03-07 22:52 - 00012384 _____ () C:\WINDOWS\KB961503.log 2014-03-07 22:47 - 2014-03-07 22:47 - 00000000 ____D () C:\Dokumente und Einstellungen\feuer\Tracing 2014-03-07 22:46 - 2014-03-07 22:46 - 00000000 ____D () C:\Programme\Microsoft Sync Framework 2014-03-07 22:46 - 2010-04-28 07:44 - 00054760 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fssfltr_tdi.sys 2014-03-07 22:44 - 2014-03-07 22:44 - 00030134 _____ () C:\WINDOWS\DirectX.log 2014-03-07 22:44 - 2014-03-07 22:44 - 00000663 _____ () C:\WINDOWS\KB954708.log 2014-03-07 22:44 - 2014-03-07 22:44 - 00000000 ____D () C:\Programme\Microsoft SQL Server Compact Edition 2014-03-07 22:43 - 2014-03-07 22:43 - 00000000 ____D () C:\Programme\Windows Live SkyDrive 2014-03-07 22:42 - 2014-03-15 17:35 - 00000000 ____D () C:\Programme\Windows Live 2014-03-07 22:42 - 2014-03-07 22:47 - 00000000 ____D () C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Windows Live 2014-03-07 22:37 - 2014-03-07 22:37 - 00000000 ____D () C:\Programme\Gemeinsame Dateien\Windows Live 2014-03-07 19:47 - 2014-03-07 19:47 - 00000000 __HDC () C:\WINDOWS\$NtUninstallKB2808679$ 2014-03-07 19:36 - 2014-03-07 19:37 - 00008073 _____ () C:\WINDOWS\KB2632503-IE8.log 2014-03-07 19:08 - 2014-03-07 19:47 - 00009421 _____ () C:\WINDOWS\KB2808679.log 2014-03-07 16:50 - 2014-03-07 16:50 - 00000000 ____D () C:\Programme\Microsoft.NET 2014-03-07 16:42 - 2014-03-16 18:44 - 00000222 _____ () C:\WINDOWS\Tasks\Ende des Supports für Microsoft Windows XP – Benachrichtigung – Anmeldung.job 2014-03-07 16:42 - 2014-03-08 15:40 - 00000216 _____ () C:\WINDOWS\Tasks\Ende des Supports für Microsoft Windows XP – Monatliche Benachrichtigung.job 2014-03-07 16:28 - 2014-03-07 16:28 - 00033096 _____ () C:\WINDOWS\KB2909210-IE8.log 2014-03-07 16:28 - 2014-03-07 16:28 - 00032988 _____ () C:\WINDOWS\KB2934207.log 2014-03-07 16:28 - 2014-03-07 16:28 - 00000000 __HDC () C:\WINDOWS\$NtUninstallKB2934207$ 2014-03-07 16:27 - 2014-03-13 05:01 - 00000000 ____D () C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Microsoft Silverlight 2014-03-07 16:26 - 2014-03-07 16:27 - 00008131 _____ () C:\WINDOWS\KB2510531-IE8.log 2014-03-07 16:26 - 2014-02-27 00:28 - 00013312 ____N (Microsoft Corporation) C:\WINDOWS\system32\xp_eos.exe 2014-03-07 16:26 - 2014-02-27 00:28 - 00013312 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\xp_eos.exe 2014-03-07 16:08 - 2014-03-07 16:09 - 00000000 __HDC () C:\WINDOWS\ie8 2014-03-07 15:51 - 2014-03-07 15:52 - 00005193 _____ () C:\WINDOWS\KB2909212.log 2014-03-07 15:51 - 2014-03-07 15:52 - 00004890 _____ () C:\WINDOWS\KB2909921.log 2014-03-07 15:50 - 2014-03-15 18:01 - 00001773 _____ () C:\Dokumente und Einstellungen\All Users\Desktop\Google Chrome.lnk 2014-03-07 15:50 - 2014-03-07 15:50 - 00000000 ____D () C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Google Chrome 2014-03-07 15:49 - 2014-03-16 18:54 - 00001088 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job 2014-03-07 15:49 - 2014-03-16 18:44 - 00001084 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job 2014-03-07 15:26 - 2014-03-07 16:11 - 00075941 _____ () C:\WINDOWS\KB2744842-IE8.log 2014-03-07 15:26 - 2014-03-07 16:11 - 00071682 _____ () C:\WINDOWS\KB2862772-IE8.log 2014-03-07 15:25 - 2014-03-07 16:11 - 00080750 _____ () C:\WINDOWS\KB2618444-IE8.log 2014-03-07 15:25 - 2014-03-07 16:10 - 00066566 _____ () C:\WINDOWS\KB2598845-IE8.log 2014-03-07 15:24 - 2014-03-07 16:17 - 00013740 _____ () C:\WINDOWS\spupdsvc.log 2014-03-07 15:24 - 2014-03-07 16:10 - 00088939 _____ () C:\WINDOWS\KB982381-IE8.log 2014-03-07 15:23 - 2014-03-13 11:34 - 00000000 ____D () C:\Programme\Microsoft Silverlight 2014-03-07 15:23 - 2014-03-07 16:09 - 00089234 _____ () C:\WINDOWS\ie8.log 2014-03-07 15:21 - 2014-03-07 16:12 - 00000000 ___HD () C:\WINDOWS\msdownld.tmp 2014-03-07 15:07 - 2014-03-07 16:15 - 00232253 _____ () C:\WINDOWS\ie8_main.log 2014-03-07 14:54 - 2014-03-13 05:02 - 00091977 _____ () C:\WINDOWS\updspapi.log 2014-03-07 14:53 - 2014-03-13 05:02 - 00154580 _____ () C:\WINDOWS\FaxSetup.log 2014-03-07 14:53 - 2014-03-13 05:02 - 00073900 _____ () C:\WINDOWS\ocgen.log 2014-03-07 14:53 - 2014-03-13 05:02 - 00058975 _____ () C:\WINDOWS\tsoc.log 2014-03-07 14:53 - 2014-03-13 05:02 - 00051198 _____ () C:\WINDOWS\comsetup.log 2014-03-07 14:53 - 2014-03-13 05:02 - 00031036 _____ () C:\WINDOWS\ntdtcsetup.log 2014-03-07 14:53 - 2014-03-13 05:02 - 00024288 _____ () C:\WINDOWS\iis6.log 2014-03-07 14:53 - 2014-03-13 05:02 - 00008550 _____ () C:\WINDOWS\ocmsn.log 2014-03-07 14:53 - 2014-03-13 05:02 - 00007725 _____ () C:\WINDOWS\msgsocm.log 2014-03-07 14:53 - 2014-03-13 05:02 - 00001374 _____ () C:\WINDOWS\imsins.log 2014-03-07 14:53 - 2014-03-13 05:02 - 00001374 _____ () C:\WINDOWS\imsins.BAK 2014-03-07 14:53 - 2014-03-07 15:33 - 00060421 _____ () C:\WINDOWS\ie8Uninst.log 2014-03-07 14:53 - 2014-03-07 14:53 - 00000000 _____ () C:\WINDOWS\setuperr.log 2014-03-07 14:53 - 2014-03-07 14:53 - 00000000 _____ () C:\WINDOWS\setupact.log 2014-03-07 14:42 - 2014-03-15 23:28 - 00000000 ____D () C:\Programme\Mozilla Firefox 2014-03-07 14:42 - 2014-03-07 14:44 - 00000000 ____D () C:\Dokumente und Einstellungen\feuer\Anwendungsdaten\Mozilla 2014-03-07 14:42 - 2014-03-07 14:42 - 00000706 _____ () C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Mozilla Firefox.lnk 2014-03-07 14:42 - 2014-03-07 14:42 - 00000700 _____ () C:\Dokumente und Einstellungen\All Users\Desktop\Mozilla Firefox.lnk 2014-03-07 14:17 - 2014-03-07 14:17 - 00045372 _____ () C:\Dokumente und Einstellungen\feuer\Desktop\bookmarks.html 2014-03-01 21:55 - 2014-03-01 21:55 - 00010752 _____ () C:\Dokumente und Einstellungen\feuer\Eigene Dateien\shake.xls 2014-03-01 02:59 - 2014-03-01 03:04 - 00000000 ____D () C:\Dokumente und Einstellungen\feuer\Anwendungsdaten\Dev-Cpp 2014-03-01 02:59 - 2014-03-01 02:59 - 00000000 ____D () C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Bloodshed Dev-C++ 2014-02-24 08:33 - 2014-02-24 08:33 - 00086016 _____ () C:\WINDOWS\Minidump\Mini022414-01.dmp 2014-02-24 08:23 - 2014-02-24 08:23 - 00000000 ____D () C:\Dokumente und Einstellungen\feuer\Lokale Einstellungen\Anwendungsdaten\Deployment 2014-02-23 17:16 - 2014-02-23 17:16 - 00002119 _____ () C:\Dokumente und Einstellungen\feuer\Desktop\Siedler 4 starten.lnk 2014-02-23 16:51 - 2014-02-23 16:51 - 00002095 _____ () C:\Dokumente und Einstellungen\Gast\Desktop\Die Siedler 4 Starten.lnk 2014-02-23 16:46 - 2014-03-15 16:07 - 00119345 _____ () C:\WINDOWS\setupapi.log 2014-02-23 16:46 - 2014-02-23 16:46 - 00001707 _____ () C:\Dokumente und Einstellungen\feuer\Desktop\Ubi Soft Product Registration.lnk 2014-02-23 16:46 - 2014-02-23 16:46 - 00000000 ____D () C:\Programme\Ubi Soft 2014-02-23 16:46 - 2002-06-17 06:25 - 00026088 ____R (Microsoft Corporation) C:\WINDOWS\system32\xmlinst.exe 2014-02-23 16:46 - 2002-04-24 11:43 - 00035840 ____R () C:\WINDOWS\system32\comdlg32.oca 2014-02-23 16:46 - 2002-04-09 16:23 - 00029184 ____R () C:\WINDOWS\system32\MSINET.oca 2014-02-23 16:46 - 2000-03-17 07:21 - 00069632 ____R () C:\WINDOWS\system32\xmltok.dll 2014-02-23 16:46 - 2000-03-17 07:21 - 00036864 ____R () C:\WINDOWS\system32\xmlparse.dll 2014-02-23 16:46 - 1998-06-17 23:00 - 00089360 ____R (Microsoft Corporation) C:\WINDOWS\system32\VB5DB.DLL 2014-02-23 16:45 - 2014-02-23 16:45 - 00000000 ____D () C:\Dokumente und Einstellungen\feuer\Startmenü\Programme\Blue Byte 2014-02-23 16:43 - 1998-01-23 12:20 - 00305664 _____ (InstallShield Software Corporation ) C:\WINDOWS\IsUn0407.exe 2014-02-23 16:25 - 2014-02-23 16:25 - 00000372 _____ () C:\Dokumente und Einstellungen\Gast\Eigene Dateien\spider.sav 2014-02-23 16:25 - 2014-02-23 16:25 - 00000000 ____D () C:\Dokumente und Einstellungen\Gast\Eigene Dateien\Virtual CD v9 2014-02-22 09:39 - 2014-02-22 09:39 - 00000000 ____D () C:\Dokumente und Einstellungen\Gast\Lokale Einstellungen\Anwendungsdaten\Apple Computer 2014-02-22 07:21 - 2014-02-22 07:21 - 00000000 __SHD () C:\Dokumente und Einstellungen\Gast\IECompatCache 2014-02-22 07:20 - 2014-02-22 07:20 - 00000000 __SHD () C:\Dokumente und Einstellungen\Gast\PrivacIE 2014-02-21 01:30 - 2014-03-07 16:12 - 00074206 _____ () C:\WINDOWS\KB2909921-IE8.log 2014-02-20 20:50 - 2014-03-14 16:10 - 00094632 _____ (Oracle Corporation) C:\WINDOWS\system32\WindowsAccessBridge.dll 2014-02-20 17:14 - 2014-02-20 17:14 - 00000000 ____D () C:\Dokumente und Einstellungen\Gast\Anwendungsdaten\Windows Search 2014-02-20 17:09 - 2014-02-20 17:09 - 00000000 __SHD () C:\Dokumente und Einstellungen\Gast\IETldCache 2014-02-20 16:21 - 2014-03-07 14:56 - 00000000 ____D () C:\Programme\Mozilla Maintenance Service 2014-02-20 15:47 - 2014-02-20 15:47 - 00000739 _____ () C:\Dokumente und Einstellungen\feuer\Desktop\Revo Uninstaller.lnk 2014-02-20 08:45 - 2014-02-20 08:45 - 00000000 ____D () C:\Dokumente und Einstellungen\NetworkService\Lokale Einstellungen\Anwendungsdaten\Apple 2014-02-19 09:10 - 2014-02-19 09:10 - 00000000 ____D () C:\Dokumente und Einstellungen\feuer\Anwendungsdaten\Apple Computer 2014-02-19 02:13 - 2014-02-19 02:13 - 00000000 ____D () C:\Dokumente und Einstellungen\Gast\Lokale Einstellungen\Anwendungsdaten\Adobe 2014-02-19 02:04 - 2014-02-19 02:04 - 00000000 ____D () C:\Dokumente und Einstellungen\Gast\Lokale Einstellungen\Anwendungsdaten\Apple 2014-02-19 02:00 - 2014-02-19 02:00 - 00000000 ____D () C:\Dokumente und Einstellungen\Gast\Anwendungsdaten\Apple Computer 2014-02-18 14:10 - 2014-02-18 14:10 - 00000000 ____D () C:\Programme\Gemeinsame Dateien\Apple 2014-02-18 14:10 - 2014-02-18 14:10 - 00000000 ____D () C:\Dokumente und Einstellungen\feuer\Lokale Einstellungen\Anwendungsdaten\Apple Computer 2014-02-18 14:10 - 2014-02-18 14:10 - 00000000 ____D () C:\Dokumente und Einstellungen\feuer\Lokale Einstellungen\Anwendungsdaten\Apple 2014-02-18 14:10 - 2014-02-18 14:10 - 00000000 ____D () C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Apple 2014-02-18 13:57 - 2000-10-16 16:37 - 00036864 _____ () C:\WINDOWS\system32\ctrldll.dll 2014-02-18 13:57 - 2000-10-16 16:37 - 00032768 _____ () C:\WINDOWS\system32\rmctrl.exe 2014-02-18 13:50 - 2014-02-18 13:50 - 00000000 ____D () C:\Programme\CyberLink 2014-02-18 13:49 - 2014-03-10 08:23 - 00015271 _____ (MediaTek Corporation) C:\WINDOWS\system32\Drivers\FIDE.SYS 2014-02-18 11:10 - 2014-02-19 02:13 - 00000000 ____D () C:\Dokumente und Einstellungen\Gast\Anwendungsdaten\Adobe 2014-02-18 11:10 - 2014-02-18 11:10 - 00000000 ____D () C:\Dokumente und Einstellungen\Gast\Anwendungsdaten\Macromedia 2014-02-18 11:07 - 2014-02-18 11:07 - 00000000 ____D () C:\Dokumente und Einstellungen\Gast\Lokale Einstellungen\Anwendungsdaten\Mozilla 2014-02-18 11:07 - 2014-02-18 11:07 - 00000000 ____D () C:\Dokumente und Einstellungen\Gast\Anwendungsdaten\Mozilla 2014-02-18 11:04 - 2014-02-18 11:04 - 00032456 _____ () C:\Dokumente und Einstellungen\Gast\Lokale Einstellungen\Anwendungsdaten\GDIPFONTCACHEV1.DAT 2014-02-18 11:03 - 2014-02-22 07:21 - 00000000 ____D () C:\Dokumente und Einstellungen\Gast 2014-02-18 11:03 - 2014-02-18 11:03 - 00000787 _____ () C:\Dokumente und Einstellungen\Gast\Startmenü\Programme\Internet Explorer.lnk 2014-02-18 11:03 - 2014-02-18 11:03 - 00000772 _____ () C:\Dokumente und Einstellungen\Gast\Startmenü\Programme\Windows Media Player.lnk 2014-02-18 11:03 - 2014-02-18 11:03 - 00000722 _____ () C:\Dokumente und Einstellungen\Gast\Startmenü\Programme\Outlook Express.lnk 2014-02-18 11:03 - 2014-02-18 11:03 - 00000020 ___SH () C:\Dokumente und Einstellungen\Gast\ntuser.ini 2014-02-18 11:03 - 2014-02-18 11:03 - 00000000 ___RD () C:\Dokumente und Einstellungen\Gast\Startmenü\Programme\Zubehör 2014-02-18 11:03 - 2014-02-18 11:03 - 00000000 ___RD () C:\Dokumente und Einstellungen\Gast\Startmenü\Programme 2014-02-18 11:03 - 2014-02-18 11:03 - 00000000 ___RD () C:\Dokumente und Einstellungen\Gast\Eigene Dateien\Eigene Musik 2014-02-18 11:03 - 2014-02-18 11:03 - 00000000 ___RD () C:\Dokumente und Einstellungen\Gast\Eigene Dateien\Eigene Bilder 2014-02-18 11:03 - 2014-02-18 11:03 - 00000000 ____D () C:\Dokumente und Einstellungen\Gast\Lokale Einstellungen\Anwendungsdaten\Scansoft 2014-02-18 11:03 - 2014-02-17 13:02 - 00001603 _____ () C:\Dokumente und Einstellungen\Gast\Startmenü\Programme\Remoteunterstützung.lnk 2014-02-18 11:03 - 2011-04-29 05:13 - 00000000 ___RD () C:\Dokumente und Einstellungen\Gast\Startmenü\Programme\Autostart 2014-02-18 11:03 - 2011-04-29 05:13 - 00000000 ___RD () C:\Dokumente und Einstellungen\Gast\Startmenü 2014-02-18 11:03 - 2011-04-29 05:13 - 00000000 ___HD () C:\Dokumente und Einstellungen\Gast\Netzwerkumgebung 2014-02-18 11:03 - 2011-04-29 05:13 - 00000000 ___HD () C:\Dokumente und Einstellungen\Gast\Druckumgebung 2014-02-18 11:03 - 2011-04-29 04:17 - 00000000 __SHD () C:\Dokumente und Einstellungen\Gast\Lokale Einstellungen\Verlauf 2014-02-17 23:14 - 2014-03-07 15:51 - 00000000 ____D () C:\Dokumente und Einstellungen\feuer\Lokale Einstellungen\Anwendungsdaten\Google 2014-02-17 19:14 - 2014-02-17 19:14 - 00001118 _____ () C:\Dokumente und Einstellungen\feuer\Desktop\JRT.txt 2014-02-17 18:30 - 2014-02-17 20:58 - 00000000 ____D () C:\Avenger 2014-02-17 18:03 - 2014-02-17 18:03 - 00000000 ____D () C:\Dokumente und Einstellungen\feuer\Anwendungsdaten\Malwarebytes 2014-02-17 18:02 - 2014-02-17 18:02 - 00000636 _____ () C:\Dokumente und Einstellungen\All Users\Desktop\ Malwarebytes Anti-Malware .lnk 2014-02-17 18:02 - 2014-02-17 18:02 - 00000000 ____D () C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Malwarebytes' Anti-Malware 2014-02-17 18:02 - 2014-02-17 18:02 - 00000000 ____D () C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Malwarebytes 2014-02-17 18:02 - 2013-04-04 14:50 - 00022856 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbam.sys 2014-02-17 12:40 - 2014-02-17 12:40 - 00000044 _____ () C:\Dokumente und Einstellungen\NetworkService\Anwendungsdaten\WB.CFG 2014-02-17 12:32 - 2014-02-19 09:11 - 00000000 ____D () C:\WINDOWS\455F074C814E4520B69B5584BD90400C.TMP 2014-02-17 12:32 - 2014-02-17 12:32 - 00000000 ____D () C:\Programme\Gemeinsame Dateien\Wise Installation Wizard 2014-02-17 10:17 - 2014-02-17 10:17 - 00000000 ____D () C:\Dokumente und Einstellungen\feuer\Startmenü\Programme\Notepad++ 2014-02-16 12:56 - 2014-02-16 12:56 - 00011296 _____ () C:\ComboFix.7z 2014-02-16 12:41 - 2014-02-16 12:41 - 00000000 ____D () C:\Dokumente und Einstellungen\feuer\Anwendungsdaten\0D0S1L2Z1P1B 2014-02-16 12:12 - 2014-02-16 12:12 - 00180981 _____ () C:\ComboFix.txt 2014-02-16 11:52 - 2014-02-16 11:52 - 00000000 _RSHD () C:\cmdcons 2014-02-16 11:52 - 2004-08-03 23:00 - 00262448 __RSH () C:\cmldr 2014-02-16 11:51 - 2011-06-26 07:45 - 00256000 _____ () C:\WINDOWS\PEV.exe 2014-02-16 11:51 - 2010-11-07 18:20 - 00208896 _____ () C:\WINDOWS\MBR.exe 2014-02-16 11:51 - 2009-04-20 05:56 - 00060416 _____ (NirSoft) C:\WINDOWS\NIRCMD.exe 2014-02-16 11:51 - 2000-08-31 01:00 - 00518144 _____ (SteelWerX) C:\WINDOWS\SWREG.exe 2014-02-16 11:51 - 2000-08-31 01:00 - 00406528 _____ (SteelWerX) C:\WINDOWS\SWSC.exe 2014-02-16 11:51 - 2000-08-31 01:00 - 00212480 _____ (SteelWerX) C:\WINDOWS\SWXCACLS.exe 2014-02-16 11:51 - 2000-08-31 01:00 - 00098816 _____ () C:\WINDOWS\sed.exe 2014-02-16 11:51 - 2000-08-31 01:00 - 00080412 _____ () C:\WINDOWS\grep.exe 2014-02-16 11:51 - 2000-08-31 01:00 - 00068096 _____ () C:\WINDOWS\zip.exe 2014-02-16 11:50 - 2014-02-16 12:13 - 00000000 ____D () C:\Qoobox 2014-02-16 11:50 - 2014-02-16 12:11 - 00000000 ____D () C:\WINDOWS\erdnt 2014-02-16 11:50 - 2014-02-16 11:50 - 00000000 ___HD () C:\Dokumente und Einstellungen\feuer\Druckumgebung 2014-02-16 11:43 - 2014-03-16 15:15 - 00000282 _____ () C:\WINDOWS\Tasks\RegistryDr_Popup.job 2014-02-16 11:37 - 2014-02-16 12:16 - 00000000 ____D () C:\Dokumente und Einstellungen\feuer\Eigene Dateien\RegistryDr 2014-02-15 23:07 - 2014-03-16 19:01 - 00000000 ____D () C:\FRST 2014-02-15 23:02 - 2014-02-15 23:02 - 00000000 _____ () C:\Dokumente und Einstellungen\feuer\defogger_reenable 2014-02-15 14:28 - 2014-02-15 14:28 - 00000582 _____ () C:\Dokumente und Einstellungen\All Users\Desktop\Skatpalast.lnk 2014-02-15 14:28 - 2014-02-15 14:28 - 00000000 ____D () C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Skatpalast 2014-02-15 02:16 - 2014-02-15 03:01 - 00000000 ____D () C:\Dokumente und Einstellungen\feuer\Desktop\updates windows 2014-02-15 01:52 - 2014-02-15 02:12 - 00000000 ____D () C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\IObit 2014-02-15 01:52 - 2014-02-15 01:52 - 00000000 ____D () C:\Dokumente und Einstellungen\feuer\Anwendungsdaten\IObit 2014-02-15 01:46 - 2014-02-15 01:46 - 00000692 _____ () C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Secunia PSI.lnk 2014-02-15 01:46 - 2014-02-15 01:46 - 00000000 ____D () C:\Programme\Secunia 2014-02-15 01:46 - 2014-02-15 01:46 - 00000000 ____D () C:\Dokumente und Einstellungen\feuer\Lokale Einstellungen\Anwendungsdaten\Secunia PSI ==================== One Month Modified Files and Folders ======= 2014-03-16 19:01 - 2014-02-15 23:07 - 00000000 ____D () C:\FRST 2014-03-16 18:54 - 2014-03-07 15:49 - 00001088 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job 2014-03-16 18:53 - 2013-02-19 23:44 - 00016804 _____ () C:\WINDOWS\system32\nvAppTimestamps 2014-03-16 18:50 - 2012-07-06 14:23 - 00000884 _____ () C:\WINDOWS\Tasks\Adobe Flash Player Updater.job 2014-03-16 18:46 - 2011-04-29 11:45 - 01688858 _____ () C:\WINDOWS\WindowsUpdate.log 2014-03-16 18:44 - 2014-03-07 16:42 - 00000222 _____ () C:\WINDOWS\Tasks\Ende des Supports für Microsoft Windows XP – Benachrichtigung – Anmeldung.job 2014-03-16 18:44 - 2014-03-07 15:49 - 00001084 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job 2014-03-16 18:43 - 2011-04-29 05:14 - 00000159 _____ () C:\WINDOWS\wiadebug.log 2014-03-16 18:42 - 2011-04-29 05:14 - 00000050 _____ () C:\WINDOWS\wiaservc.log 2014-03-16 18:42 - 2011-04-29 04:18 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT 2014-03-16 16:04 - 2011-04-29 04:20 - 00000190 __SHC () C:\Dokumente und Einstellungen\feuer\ntuser.ini 2014-03-16 16:04 - 2011-04-29 04:19 - 00032338 _____ () C:\WINDOWS\SchedLgU.Txt 2014-03-16 15:53 - 2011-08-04 22:51 - 00002501 _____ () C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Microsoft Word.lnk 2014-03-16 15:15 - 2014-02-16 11:43 - 00000282 _____ () C:\WINDOWS\Tasks\RegistryDr_Popup.job 2014-03-15 23:28 - 2014-03-07 14:42 - 00000000 ____D () C:\Programme\Mozilla Firefox 2014-03-15 23:28 - 2014-02-09 21:09 - 00000000 ____D () C:\Programme\Web Protect 2014-03-15 19:13 - 2014-03-14 14:13 - 00000000 ____D () C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Minecraft 2014-03-15 19:13 - 2011-04-29 05:13 - 00000000 ___RD () C:\Programme 2014-03-15 18:19 - 2014-03-15 17:25 - 00103562 _____ () C:\zoek-results.log 2014-03-15 18:09 - 2014-03-15 17:09 - 00000000 ____D () C:\zoek_backup 2014-03-15 18:01 - 2014-03-07 15:50 - 00001773 _____ () C:\Dokumente und Einstellungen\All Users\Desktop\Google Chrome.lnk 2014-03-15 18:01 - 2011-04-29 04:20 - 00000000 ____D () C:\Dokumente und Einstellungen\feuer 2014-03-15 17:35 - 2014-03-07 22:42 - 00000000 ____D () C:\Programme\Windows Live 2014-03-15 17:32 - 2014-03-15 18:17 - 00024064 _____ () C:\WINDOWS\zoek-delete.exe 2014-03-15 17:30 - 2002-08-29 13:00 - 00002422 _____ () C:\WINDOWS\system32\wpa.dbl 2014-03-15 17:26 - 2014-03-15 17:39 - 00012186 _____ () C:\zoek-results2014-03-15-162648.log 2014-03-15 16:07 - 2014-03-13 11:49 - 00000430 _____ () C:\WINDOWS\nsw.log 2014-03-15 16:07 - 2014-02-23 16:46 - 00119345 _____ () C:\WINDOWS\setupapi.log 2014-03-15 16:05 - 2011-04-29 06:09 - 00000000 ____D () C:\WINDOWS\system32\ias 2014-03-14 16:47 - 2014-02-10 01:56 - 00000000 ____D () C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\QuickTime 2014-03-14 16:45 - 2011-04-29 05:13 - 00000000 ___RD () C:\Dokumente und Einstellungen\All Users\Startmenü\Programme 2014-03-14 16:42 - 2011-05-01 23:47 - 00000000 ____D () C:\WINDOWS\uninstall 2014-03-14 16:42 - 2011-05-01 23:47 - 00000000 ____D () C:\Dokumente und Einstellungen\feuer\Lokale Einstellungen\Anwendungsdaten\Publish_Data 2014-03-14 16:42 - 2011-05-01 23:47 - 00000000 ____D () C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Publish Data 2014-03-14 16:42 - 2011-04-29 04:20 - 00000000 ___RD () C:\Dokumente und Einstellungen\feuer\Startmenü\Programme 2014-03-14 16:39 - 2011-04-29 04:16 - 00000000 ____D () C:\Programme\MSN 2014-03-14 16:23 - 2012-06-29 20:04 - 00000000 ____D () C:\Programme\Java 2014-03-14 16:10 - 2014-02-20 20:50 - 00094632 _____ (Oracle Corporation) C:\WINDOWS\system32\WindowsAccessBridge.dll 2014-03-14 16:06 - 2013-02-18 02:04 - 00000000 ____D () C:\Dokumente und Einstellungen\feuer\Anwendungsdaten\.minecraft 2014-03-14 15:17 - 2011-04-30 00:20 - 00196608 _____ () C:\WINDOWS\system32\config\WindowsPowerShell.evt 2014-03-14 14:14 - 2014-03-14 14:14 - 00000000 ____D () C:\Dokumente und Einstellungen\feuer\Anwendungsdaten\1H1Q 2014-03-14 07:06 - 2012-01-30 15:47 - 00000000 ____D () C:\Dokumente und Einstellungen\feuer\Lokale Einstellungen\Anwendungsdaten\Shotty 2014-03-14 03:37 - 2012-01-30 15:26 - 00000000 ____D () C:\Programme\Shotty 2014-03-13 11:34 - 2014-03-07 15:23 - 00000000 ____D () C:\Programme\Microsoft Silverlight 2014-03-13 11:34 - 2011-04-29 05:13 - 00165912 _____ () C:\WINDOWS\system32\FNTCACHE.DAT 2014-03-13 05:02 - 2014-03-13 05:02 - 00127935 _____ () C:\WINDOWS\KB2925418-IE8.log 2014-03-13 05:02 - 2014-03-13 05:02 - 00000000 __HDC () C:\WINDOWS\$NtUninstallKB2930275$ 2014-03-13 05:02 - 2014-03-13 05:02 - 00000000 __HDC () C:\WINDOWS\$NtUninstallKB2929961$ 2014-03-13 05:02 - 2014-03-12 09:20 - 00127647 _____ () C:\WINDOWS\KB2930275.log 2014-03-13 05:02 - 2014-03-12 09:20 - 00124351 _____ () C:\WINDOWS\KB2929961.log 2014-03-13 05:02 - 2014-03-07 14:54 - 00091977 _____ () C:\WINDOWS\updspapi.log 2014-03-13 05:02 - 2014-03-07 14:53 - 00154580 _____ () C:\WINDOWS\FaxSetup.log 2014-03-13 05:02 - 2014-03-07 14:53 - 00073900 _____ () C:\WINDOWS\ocgen.log 2014-03-13 05:02 - 2014-03-07 14:53 - 00058975 _____ () C:\WINDOWS\tsoc.log 2014-03-13 05:02 - 2014-03-07 14:53 - 00051198 _____ () C:\WINDOWS\comsetup.log 2014-03-13 05:02 - 2014-03-07 14:53 - 00031036 _____ () C:\WINDOWS\ntdtcsetup.log 2014-03-13 05:02 - 2014-03-07 14:53 - 00024288 _____ () C:\WINDOWS\iis6.log 2014-03-13 05:02 - 2014-03-07 14:53 - 00008550 _____ () C:\WINDOWS\ocmsn.log 2014-03-13 05:02 - 2014-03-07 14:53 - 00007725 _____ () C:\WINDOWS\msgsocm.log 2014-03-13 05:02 - 2014-03-07 14:53 - 00001374 _____ () C:\WINDOWS\imsins.log 2014-03-13 05:02 - 2014-03-07 14:53 - 00001374 _____ () C:\WINDOWS\imsins.BAK 2014-03-13 05:02 - 2011-04-29 22:30 - 00000000 ____D () C:\WINDOWS\ie8updates 2014-03-13 05:01 - 2014-03-07 16:27 - 00000000 ____D () C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Microsoft Silverlight 2014-03-12 10:50 - 2012-04-07 19:11 - 00692616 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerApp.exe 2014-03-12 10:50 - 2011-05-13 21:15 - 00071048 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerCPLApp.cpl 2014-03-12 06:58 - 2011-04-29 04:20 - 00000000 ___RD () C:\Dokumente und Einstellungen\feuer\Startmenü\Programme\Autostart 2014-03-12 06:57 - 2011-04-29 05:13 - 01505450 _____ () C:\WINDOWS\system32\PerfStringBackup.INI 2014-03-10 08:23 - 2014-02-18 13:49 - 00015271 _____ (MediaTek Corporation) C:\WINDOWS\system32\Drivers\FIDE.SYS 2014-03-08 15:40 - 2014-03-07 16:42 - 00000216 _____ () C:\WINDOWS\Tasks\Ende des Supports für Microsoft Windows XP – Monatliche Benachrichtigung.job 2014-03-08 00:34 - 2011-04-29 05:23 - 00000000 ____D () C:\WINDOWS\Microsoft.NET 2014-03-07 22:52 - 2014-03-07 22:52 - 00000000 __HDC () C:\WINDOWS\$NtUninstallKB961503$ 2014-03-07 22:52 - 2014-03-07 22:51 - 00012384 _____ () C:\WINDOWS\KB961503.log 2014-03-07 22:51 - 2011-04-29 11:47 - 00000000 ___HD () C:\WINDOWS\$hf_mig$ 2014-03-07 22:47 - 2014-03-07 22:47 - 00000000 ____D () C:\Dokumente und Einstellungen\feuer\Tracing 2014-03-07 22:47 - 2014-03-07 22:42 - 00000000 ____D () C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Windows Live 2014-03-07 22:46 - 2014-03-07 22:46 - 00000000 ____D () C:\Programme\Microsoft Sync Framework 2014-03-07 22:44 - 2014-03-07 22:44 - 00030134 _____ () C:\WINDOWS\DirectX.log 2014-03-07 22:44 - 2014-03-07 22:44 - 00000663 _____ () C:\WINDOWS\KB954708.log 2014-03-07 22:44 - 2014-03-07 22:44 - 00000000 ____D () C:\Programme\Microsoft SQL Server Compact Edition 2014-03-07 22:44 - 2011-04-29 04:17 - 00000000 ____D () C:\WINDOWS\system32\DirectX 2014-03-07 22:43 - 2014-03-07 22:43 - 00000000 ____D () C:\Programme\Windows Live SkyDrive 2014-03-07 22:43 - 2011-04-29 05:13 - 00000000 ___RD () C:\Dokumente und Einstellungen\All Users\Dokumente 2014-03-07 22:43 - 2011-04-29 05:13 - 00000000 ____D () C:\Programme\Gemeinsame Dateien\Microsoft Shared 2014-03-07 22:37 - 2014-03-07 22:37 - 00000000 ____D () C:\Programme\Gemeinsame Dateien\Windows Live 2014-03-07 20:33 - 2011-05-16 17:05 - 01098816 _____ () C:\WINDOWS\system32\nvdrsdb1.bin 2014-03-07 20:33 - 2011-05-16 17:05 - 00000001 _____ () C:\WINDOWS\system32\nvdrssel.bin 2014-03-07 20:33 - 2011-04-29 14:18 - 00000000 ____D () C:\WINDOWS\system32\de-de 2014-03-07 20:28 - 2011-05-16 17:05 - 01098816 _____ () C:\WINDOWS\system32\nvdrsdb0.bin 2014-03-07 20:20 - 2011-05-16 17:04 - 00000000 ____D () C:\Programme\NVIDIA Corporation 2014-03-07 20:20 - 2011-04-29 04:26 - 00000000 ____D () C:\WINDOWS\system32\ReinstallBackups 2014-03-07 19:47 - 2014-03-07 19:47 - 00000000 __HDC () C:\WINDOWS\$NtUninstallKB2808679$ 2014-03-07 19:47 - 2014-03-07 19:08 - 00009421 _____ () C:\WINDOWS\KB2808679.log 2014-03-07 19:37 - 2014-03-07 19:36 - 00008073 _____ () C:\WINDOWS\KB2632503-IE8.log 2014-03-07 16:50 - 2014-03-07 16:50 - 00000000 ____D () C:\Programme\Microsoft.NET 2014-03-07 16:28 - 2014-03-07 16:28 - 00033096 _____ () C:\WINDOWS\KB2909210-IE8.log 2014-03-07 16:28 - 2014-03-07 16:28 - 00032988 _____ () C:\WINDOWS\KB2934207.log 2014-03-07 16:28 - 2014-03-07 16:28 - 00000000 __HDC () C:\WINDOWS\$NtUninstallKB2934207$ 2014-03-07 16:27 - 2014-03-07 16:26 - 00008131 _____ () C:\WINDOWS\KB2510531-IE8.log 2014-03-07 16:20 - 2011-04-29 04:20 - 00000787 _____ () C:\Dokumente und Einstellungen\feuer\Startmenü\Programme\Internet Explorer.lnk 2014-03-07 16:17 - 2014-03-07 15:24 - 00013740 _____ () C:\WINDOWS\spupdsvc.log 2014-03-07 16:16 - 2011-04-29 06:09 - 00000000 ____D () C:\WINDOWS\Help 2014-03-07 16:15 - 2014-03-07 15:07 - 00232253 _____ () C:\WINDOWS\ie8_main.log 2014-03-07 16:12 - 2014-03-07 15:21 - 00000000 ___HD () C:\WINDOWS\msdownld.tmp 2014-03-07 16:12 - 2014-02-21 01:30 - 00074206 _____ () C:\WINDOWS\KB2909921-IE8.log 2014-03-07 16:11 - 2014-03-07 15:26 - 00075941 _____ () C:\WINDOWS\KB2744842-IE8.log 2014-03-07 16:11 - 2014-03-07 15:26 - 00071682 _____ () C:\WINDOWS\KB2862772-IE8.log 2014-03-07 16:11 - 2014-03-07 15:25 - 00080750 _____ () C:\WINDOWS\KB2618444-IE8.log 2014-03-07 16:10 - 2014-03-07 15:25 - 00066566 _____ () C:\WINDOWS\KB2598845-IE8.log 2014-03-07 16:10 - 2014-03-07 15:24 - 00088939 _____ () C:\WINDOWS\KB982381-IE8.log 2014-03-07 16:09 - 2014-03-07 16:08 - 00000000 __HDC () C:\WINDOWS\ie8 2014-03-07 16:09 - 2014-03-07 15:23 - 00089234 _____ () C:\WINDOWS\ie8.log 2014-03-07 16:09 - 2011-04-29 06:09 - 00000000 ____D () C:\WINDOWS\Media 2014-03-07 15:52 - 2014-03-07 15:51 - 00005193 _____ () C:\WINDOWS\KB2909212.log 2014-03-07 15:52 - 2014-03-07 15:51 - 00004890 _____ () C:\WINDOWS\KB2909921.log 2014-03-07 15:51 - 2014-02-17 23:14 - 00000000 ____D () C:\Dokumente und Einstellungen\feuer\Lokale Einstellungen\Anwendungsdaten\Google 2014-03-07 15:50 - 2014-03-07 15:50 - 00000000 ____D () C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Google Chrome 2014-03-07 15:50 - 2012-05-14 19:43 - 00000000 ____D () C:\Programme\Google 2014-03-07 15:33 - 2014-03-07 14:53 - 00060421 _____ () C:\WINDOWS\ie8Uninst.log 2014-03-07 14:56 - 2014-02-20 16:21 - 00000000 ____D () C:\Programme\Mozilla Maintenance Service 2014-03-07 14:53 - 2014-03-07 14:53 - 00000000 _____ () C:\WINDOWS\setuperr.log 2014-03-07 14:53 - 2014-03-07 14:53 - 00000000 _____ () C:\WINDOWS\setupact.log 2014-03-07 14:44 - 2014-03-07 14:42 - 00000000 ____D () C:\Dokumente und Einstellungen\feuer\Anwendungsdaten\Mozilla 2014-03-07 14:42 - 2014-03-07 14:42 - 00000706 _____ () C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Mozilla Firefox.lnk 2014-03-07 14:42 - 2014-03-07 14:42 - 00000700 _____ () C:\Dokumente und Einstellungen\All Users\Desktop\Mozilla Firefox.lnk 2014-03-07 14:17 - 2014-03-07 14:17 - 00045372 _____ () C:\Dokumente und Einstellungen\feuer\Desktop\bookmarks.html 2014-03-01 21:55 - 2014-03-01 21:55 - 00010752 _____ () C:\Dokumente und Einstellungen\feuer\Eigene Dateien\shake.xls 2014-03-01 03:04 - 2014-03-01 02:59 - 00000000 ____D () C:\Dokumente und Einstellungen\feuer\Anwendungsdaten\Dev-Cpp 2014-03-01 02:59 - 2014-03-01 02:59 - 00000000 ____D () C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Bloodshed Dev-C++ 2014-02-27 00:28 - 2014-03-07 16:26 - 00013312 ____N (Microsoft Corporation) C:\WINDOWS\system32\xp_eos.exe 2014-02-27 00:28 - 2014-03-07 16:26 - 00013312 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\xp_eos.exe 2014-02-24 16:24 - 2009-03-08 04:32 - 00174592 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ie4uinit.exe 2014-02-24 16:24 - 2002-08-29 13:00 - 00174592 ____N (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe 2014-02-24 12:45 - 2012-06-13 16:03 - 00522240 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\jsdbgui.dll 2014-02-24 12:45 - 2011-04-29 22:30 - 11113472 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ieframe.dll 2014-02-24 12:45 - 2011-04-29 22:30 - 02006016 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\iertutil.dll 2014-02-24 12:45 - 2011-04-29 22:30 - 00743424 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\iedvtool.dll 2014-02-24 12:45 - 2011-04-29 22:30 - 00630272 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msfeeds.dll 2014-02-24 12:45 - 2011-04-29 22:30 - 00247808 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ieproxy.dll 2014-02-24 12:45 - 2011-04-29 22:30 - 00055296 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msfeedsbs.dll 2014-02-24 12:45 - 2011-04-29 22:30 - 00012800 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\xpshims.dll 2014-02-24 12:45 - 2011-02-17 14:51 - 00611840 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mstime.dll 2014-02-24 12:45 - 2011-02-17 14:51 - 00067072 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mshtmled.dll 2014-02-24 12:45 - 2010-04-16 17:06 - 06022144 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mshtml.dll 2014-02-24 12:45 - 2010-04-16 17:06 - 01216000 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\urlmon.dll 2014-02-24 12:45 - 2010-04-16 17:06 - 00920064 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wininet.dll 2014-02-24 12:45 - 2010-04-16 17:06 - 00184320 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\iepeers.dll 2014-02-24 12:45 - 2009-03-08 04:39 - 11113472 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll 2014-02-24 12:45 - 2009-03-08 04:34 - 01469440 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\inetcpl.cpl 2014-02-24 12:45 - 2009-03-08 04:34 - 00206848 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\occache.dll 2014-02-24 12:45 - 2009-03-08 04:34 - 00105984 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\url.dll 2014-02-24 12:45 - 2009-03-08 04:34 - 00043520 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\licmgr10.dll 2014-02-24 12:45 - 2009-03-08 04:33 - 00759296 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\vgx.dll 2014-02-24 12:45 - 2009-03-08 04:33 - 00025600 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\jsproxy.dll 2014-02-24 12:45 - 2009-03-08 04:32 - 02006016 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll 2014-02-24 12:45 - 2009-03-08 04:32 - 00630272 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll 2014-02-24 12:45 - 2009-03-08 04:31 - 00055296 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeedsbs.dll 2014-02-24 12:45 - 2002-08-29 13:00 - 06022144 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2014-02-24 12:45 - 2002-08-29 13:00 - 01469440 ____N (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl 2014-02-24 12:45 - 2002-08-29 13:00 - 01216000 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll 2014-02-24 12:45 - 2002-08-29 13:00 - 00920064 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll 2014-02-24 12:45 - 2002-08-29 13:00 - 00611840 ____N (Microsoft Corporation) C:\WINDOWS\system32\mstime.dll 2014-02-24 12:45 - 2002-08-29 13:00 - 00206848 ____N (Microsoft Corporation) C:\WINDOWS\system32\occache.dll 2014-02-24 12:45 - 2002-08-29 13:00 - 00184320 ____N (Microsoft Corporation) C:\WINDOWS\system32\iepeers.dll 2014-02-24 12:45 - 2002-08-29 13:00 - 00105984 _____ (Microsoft Corporation) C:\WINDOWS\system32\url.dll 2014-02-24 12:45 - 2002-08-29 13:00 - 00067072 ____N (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll 2014-02-24 12:45 - 2002-08-29 13:00 - 00043520 ____N (Microsoft Corporation) C:\WINDOWS\system32\licmgr10.dll 2014-02-24 12:45 - 2002-08-29 13:00 - 00025600 ____N (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll 2014-02-24 12:44 - 2009-03-08 14:09 - 00387584 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\iedkcs32.dll 2014-02-24 12:44 - 2009-03-08 04:33 - 00018944 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\corpol.dll 2014-02-24 12:44 - 2002-08-29 13:00 - 00387584 ____N (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll 2014-02-24 12:44 - 2002-08-29 13:00 - 00018944 ____N (Microsoft Corporation) C:\WINDOWS\system32\corpol.dll 2014-02-24 11:54 - 2004-08-04 08:42 - 00385024 ____N (Microsoft Corporation) C:\WINDOWS\system32\html.iec 2014-02-24 08:33 - 2014-02-24 08:33 - 00086016 _____ () C:\WINDOWS\Minidump\Mini022414-01.dmp 2014-02-24 08:33 - 2011-04-29 21:19 - 00000000 ____D () C:\WINDOWS\Minidump 2014-02-24 08:23 - 2014-02-24 08:23 - 00000000 ____D () C:\Dokumente und Einstellungen\feuer\Lokale Einstellungen\Anwendungsdaten\Deployment 2014-02-24 08:17 - 2014-02-01 16:38 - 00000132 _____ () C:\Dokumente und Einstellungen\feuer\Desktop\Abschalten in 1,5 Std.cmd 2014-02-23 17:16 - 2014-02-23 17:16 - 00002119 _____ () C:\Dokumente und Einstellungen\feuer\Desktop\Siedler 4 starten.lnk 2014-02-23 16:51 - 2014-02-23 16:51 - 00002095 _____ () C:\Dokumente und Einstellungen\Gast\Desktop\Die Siedler 4 Starten.lnk 2014-02-23 16:46 - 2014-02-23 16:46 - 00001707 _____ () C:\Dokumente und Einstellungen\feuer\Desktop\Ubi Soft Product Registration.lnk 2014-02-23 16:46 - 2014-02-23 16:46 - 00000000 ____D () C:\Programme\Ubi Soft 2014-02-23 16:45 - 2014-02-23 16:45 - 00000000 ____D () C:\Dokumente und Einstellungen\feuer\Startmenü\Programme\Blue Byte 2014-02-23 16:45 - 2011-05-01 01:24 - 00000000 ____D () C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Blue Byte 2014-02-23 16:30 - 2011-04-30 23:51 - 00000000 ___SD () C:\Dokumente und Einstellungen\All Users\Dokumente\Virtual CDs 2014-02-23 16:25 - 2014-02-23 16:25 - 00000372 _____ () C:\Dokumente und Einstellungen\Gast\Eigene Dateien\spider.sav 2014-02-23 16:25 - 2014-02-23 16:25 - 00000000 ____D () C:\Dokumente und Einstellungen\Gast\Eigene Dateien\Virtual CD v9 2014-02-23 02:21 - 2011-04-29 04:16 - 00000000 ____D () C:\Programme\Outlook Express 2014-02-22 09:39 - 2014-02-22 09:39 - 00000000 ____D () C:\Dokumente und Einstellungen\Gast\Lokale Einstellungen\Anwendungsdaten\Apple Computer 2014-02-22 07:21 - 2014-02-22 07:21 - 00000000 __SHD () C:\Dokumente und Einstellungen\Gast\IECompatCache 2014-02-22 07:21 - 2014-02-18 11:03 - 00000000 ____D () C:\Dokumente und Einstellungen\Gast 2014-02-22 07:20 - 2014-02-22 07:20 - 00000000 __SHD () C:\Dokumente und Einstellungen\Gast\PrivacIE 2014-02-21 00:17 - 2012-11-02 22:18 - 00000000 ____D () C:\Dokumente und Einstellungen\feuer\Lokale Einstellungen\Anwendungsdaten\Adobe 2014-02-20 20:49 - 2014-03-14 16:23 - 00877480 _____ (Oracle Corporation) C:\WINDOWS\system32\npdeployJava1.dll 2014-02-20 20:49 - 2014-03-14 16:23 - 00800168 _____ (Oracle Corporation) C:\WINDOWS\system32\deployJava1.dll 2014-02-20 20:49 - 2013-12-18 21:04 - 00264616 _____ (Oracle Corporation) C:\WINDOWS\system32\javaws.exe 2014-02-20 20:49 - 2012-09-24 14:23 - 00175016 _____ (Oracle Corporation) C:\WINDOWS\system32\javaw.exe 2014-02-20 20:49 - 2012-09-24 14:23 - 00174504 _____ (Oracle Corporation) C:\WINDOWS\system32\java.exe 2014-02-20 20:49 - 2012-06-29 20:05 - 00145408 _____ (Oracle Corporation) C:\WINDOWS\system32\javacpl.cpl 2014-02-20 17:14 - 2014-02-20 17:14 - 00000000 ____D () C:\Dokumente und Einstellungen\Gast\Anwendungsdaten\Windows Search 2014-02-20 17:09 - 2014-02-20 17:09 - 00000000 __SHD () C:\Dokumente und Einstellungen\Gast\IETldCache 2014-02-20 15:47 - 2014-02-20 15:47 - 00000739 _____ () C:\Dokumente und Einstellungen\feuer\Desktop\Revo Uninstaller.lnk 2014-02-20 08:45 - 2014-02-20 08:45 - 00000000 ____D () C:\Dokumente und Einstellungen\NetworkService\Lokale Einstellungen\Anwendungsdaten\Apple 2014-02-19 09:11 - 2014-02-17 12:32 - 00000000 ____D () C:\WINDOWS\455F074C814E4520B69B5584BD90400C.TMP 2014-02-19 09:10 - 2014-02-19 09:10 - 00000000 ____D () C:\Dokumente und Einstellungen\feuer\Anwendungsdaten\Apple Computer 2014-02-19 02:13 - 2014-02-19 02:13 - 00000000 ____D () C:\Dokumente und Einstellungen\Gast\Lokale Einstellungen\Anwendungsdaten\Adobe 2014-02-19 02:13 - 2014-02-18 11:10 - 00000000 ____D () C:\Dokumente und Einstellungen\Gast\Anwendungsdaten\Adobe 2014-02-19 02:04 - 2014-02-19 02:04 - 00000000 ____D () C:\Dokumente und Einstellungen\Gast\Lokale Einstellungen\Anwendungsdaten\Apple 2014-02-19 02:00 - 2014-02-19 02:00 - 00000000 ____D () C:\Dokumente und Einstellungen\Gast\Anwendungsdaten\Apple Computer 2014-02-18 15:15 - 2011-10-24 02:00 - 00000000 ____D () C:\Programme\MSXML 4.0 2014-02-18 14:57 - 2011-09-09 21:39 - 3994315776 _____ () C:\Dokumente und Einstellungen\feuer\Eigene Dateien\galilao.AVI 2014-02-18 14:10 - 2014-02-18 14:10 - 00000000 ____D () C:\Programme\Gemeinsame Dateien\Apple 2014-02-18 14:10 - 2014-02-18 14:10 - 00000000 ____D () C:\Dokumente und Einstellungen\feuer\Lokale Einstellungen\Anwendungsdaten\Apple Computer 2014-02-18 14:10 - 2014-02-18 14:10 - 00000000 ____D () C:\Dokumente und Einstellungen\feuer\Lokale Einstellungen\Anwendungsdaten\Apple 2014-02-18 14:10 - 2014-02-18 14:10 - 00000000 ____D () C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Apple 2014-02-18 13:57 - 2011-04-29 04:28 - 00000000 ___HD () C:\Programme\InstallShield Installation Information 2014-02-18 13:50 - 2014-02-18 13:50 - 00000000 ____D () C:\Programme\CyberLink 2014-02-18 11:10 - 2014-02-18 11:10 - 00000000 ____D () C:\Dokumente und Einstellungen\Gast\Anwendungsdaten\Macromedia 2014-02-18 11:07 - 2014-02-18 11:07 - 00000000 ____D () C:\Dokumente und Einstellungen\Gast\Lokale Einstellungen\Anwendungsdaten\Mozilla 2014-02-18 11:07 - 2014-02-18 11:07 - 00000000 ____D () C:\Dokumente und Einstellungen\Gast\Anwendungsdaten\Mozilla 2014-02-18 11:04 - 2014-02-18 11:04 - 00032456 _____ () C:\Dokumente und Einstellungen\Gast\Lokale Einstellungen\Anwendungsdaten\GDIPFONTCACHEV1.DAT 2014-02-18 11:03 - 2014-02-18 11:03 - 00000787 _____ () C:\Dokumente und Einstellungen\Gast\Startmenü\Programme\Internet Explorer.lnk 2014-02-18 11:03 - 2014-02-18 11:03 - 00000772 _____ () C:\Dokumente und Einstellungen\Gast\Startmenü\Programme\Windows Media Player.lnk 2014-02-18 11:03 - 2014-02-18 11:03 - 00000722 _____ () C:\Dokumente und Einstellungen\Gast\Startmenü\Programme\Outlook Express.lnk 2014-02-18 11:03 - 2014-02-18 11:03 - 00000020 ___SH () C:\Dokumente und Einstellungen\Gast\ntuser.ini 2014-02-18 11:03 - 2014-02-18 11:03 - 00000000 ___RD () C:\Dokumente und Einstellungen\Gast\Startmenü\Programme\Zubehör 2014-02-18 11:03 - 2014-02-18 11:03 - 00000000 ___RD () C:\Dokumente und Einstellungen\Gast\Startmenü\Programme 2014-02-18 11:03 - 2014-02-18 11:03 - 00000000 ___RD () C:\Dokumente und Einstellungen\Gast\Eigene Dateien\Eigene Musik 2014-02-18 11:03 - 2014-02-18 11:03 - 00000000 ___RD () C:\Dokumente und Einstellungen\Gast\Eigene Dateien\Eigene Bilder 2014-02-18 11:03 - 2014-02-18 11:03 - 00000000 ____D () C:\Dokumente und Einstellungen\Gast\Lokale Einstellungen\Anwendungsdaten\Scansoft 2014-02-17 20:58 - 2014-02-17 18:30 - 00000000 ____D () C:\Avenger 2014-02-17 19:14 - 2014-02-17 19:14 - 00001118 _____ () C:\Dokumente und Einstellungen\feuer\Desktop\JRT.txt 2014-02-17 18:50 - 2014-02-03 00:21 - 00000000 ____D () C:\AdwCleaner 2014-02-17 18:03 - 2014-02-17 18:03 - 00000000 ____D () C:\Dokumente und Einstellungen\feuer\Anwendungsdaten\Malwarebytes 2014-02-17 18:02 - 2014-02-17 18:02 - 00000636 _____ () C:\Dokumente und Einstellungen\All Users\Desktop\ Malwarebytes Anti-Malware .lnk 2014-02-17 18:02 - 2014-02-17 18:02 - 00000000 ____D () C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Malwarebytes' Anti-Malware 2014-02-17 18:02 - 2014-02-17 18:02 - 00000000 ____D () C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Malwarebytes 2014-02-17 13:49 - 2012-02-08 18:00 - 00000000 ____D () C:\Dokumente und Einstellungen\feuer\Eigene Dateien\My Digital Editions 2014-02-17 13:12 - 2013-02-16 23:06 - 00001603 _____ () C:\Dokumente und Einstellungen\UpdatusUser\Startmenü\Programme\Remoteunterstützung.lnk 2014-02-17 13:12 - 2011-04-29 04:20 - 00001603 _____ () C:\Dokumente und Einstellungen\feuer\Startmenü\Programme\Remoteunterstützung.lnk 2014-02-17 13:02 - 2014-02-18 11:03 - 00001603 _____ () C:\Dokumente und Einstellungen\Gast\Startmenü\Programme\Remoteunterstützung.lnk 2014-02-17 13:02 - 2011-04-29 04:18 - 00001603 ____C () C:\Dokumente und Einstellungen\Default User\Startmenü\Programme\Remoteunterstützung.lnk 2014-02-17 12:40 - 2014-02-17 12:40 - 00000044 _____ () C:\Dokumente und Einstellungen\NetworkService\Anwendungsdaten\WB.CFG 2014-02-17 12:32 - 2014-02-17 12:32 - 00000000 ____D () C:\Programme\Gemeinsame Dateien\Wise Installation Wizard 2014-02-17 10:17 - 2014-02-17 10:17 - 00000000 ____D () C:\Dokumente und Einstellungen\feuer\Startmenü\Programme\Notepad++ 2014-02-17 10:17 - 2013-02-19 02:37 - 00000620 _____ () C:\Dokumente und Einstellungen\feuer\Desktop\Notepad++.lnk 2014-02-17 10:17 - 2013-02-19 02:37 - 00000000 ____D () C:\Dokumente und Einstellungen\feuer\Anwendungsdaten\Notepad++ 2014-02-16 12:56 - 2014-02-16 12:56 - 00011296 _____ () C:\ComboFix.7z 2014-02-16 12:41 - 2014-02-16 12:41 - 00000000 ____D () C:\Dokumente und Einstellungen\feuer\Anwendungsdaten\0D0S1L2Z1P1B 2014-02-16 12:16 - 2014-02-16 11:37 - 00000000 ____D () C:\Dokumente und Einstellungen\feuer\Eigene Dateien\RegistryDr 2014-02-16 12:13 - 2014-02-16 11:50 - 00000000 ____D () C:\Qoobox 2014-02-16 12:12 - 2014-02-16 12:12 - 00180981 _____ () C:\ComboFix.txt 2014-02-16 12:11 - 2014-02-16 11:50 - 00000000 ____D () C:\WINDOWS\erdnt 2014-02-16 12:08 - 2002-08-29 13:00 - 00000227 _____ () C:\WINDOWS\system.ini 2014-02-16 12:08 - 2002-08-29 13:00 - 00000027 _____ () C:\WINDOWS\system32\Drivers\etc\hosts.old 2014-02-16 11:52 - 2014-02-16 11:52 - 00000000 _RSHD () C:\cmdcons 2014-02-16 11:50 - 2014-02-16 11:50 - 00000000 ___HD () C:\Dokumente und Einstellungen\feuer\Druckumgebung 2014-02-15 23:02 - 2014-02-15 23:02 - 00000000 _____ () C:\Dokumente und Einstellungen\feuer\defogger_reenable 2014-02-15 14:28 - 2014-02-15 14:28 - 00000582 _____ () C:\Dokumente und Einstellungen\All Users\Desktop\Skatpalast.lnk 2014-02-15 14:28 - 2014-02-15 14:28 - 00000000 ____D () C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Skatpalast 2014-02-15 03:01 - 2014-02-15 02:16 - 00000000 ____D () C:\Dokumente und Einstellungen\feuer\Desktop\updates windows 2014-02-15 02:12 - 2014-02-15 01:52 - 00000000 ____D () C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\IObit 2014-02-15 02:07 - 2013-02-16 23:10 - 00087256 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtkCoInstIIXP.dll 2014-02-15 02:07 - 2011-04-29 04:34 - 20145368 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\RTHDCPL.EXE 2014-02-15 02:07 - 2011-04-29 04:34 - 09721960 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\RTLCPL.EXE 2014-02-15 02:07 - 2011-04-29 04:34 - 05630168 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\Drivers\RtkHDAud.sys 2014-02-15 02:07 - 2011-04-29 04:34 - 01523416 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\RtlUpd.exe 2014-02-15 02:07 - 2011-04-29 04:34 - 00891976 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RTSndMgr.CPL 2014-02-15 02:07 - 2011-04-29 04:34 - 00359016 _____ (Realtek Semiconductor Crop.) C:\WINDOWS\vncutil.exe 2014-02-15 02:07 - 2011-04-29 04:34 - 00129640 _____ (Realtek Semiconductor) C:\WINDOWS\RtkAudioService.exe 2014-02-15 02:07 - 2011-04-29 04:34 - 00084584 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\SOUNDMAN.EXE 2014-02-15 02:07 - 2011-04-29 04:34 - 00000000 ____D () C:\WINDOWS\system32\RTCOM 2014-02-15 02:07 - 2011-04-29 04:28 - 00415832 _____ (Realtek Semiconductor Corporation ) C:\WINDOWS\system32\Drivers\Rtenicxp.sys 2014-02-15 02:06 - 2013-02-16 23:10 - 00026084 _____ () C:\WINDOWS\system32\Drivers\RTAIODAT.DAT 2014-02-15 02:06 - 2011-04-29 04:34 - 02815592 _____ (RealTek Semicoductor Corp.) C:\WINDOWS\ALCWZRD.EXE 2014-02-15 02:06 - 2011-04-29 04:34 - 02180712 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\MicCal.exe 2014-02-15 02:06 - 2011-04-29 04:34 - 01691480 _____ (Creative) C:\WINDOWS\system32\Drivers\Ambfilt.sys 2014-02-15 02:06 - 2011-04-29 04:34 - 01395800 _____ (Creative Technology Ltd.) C:\WINDOWS\system32\Drivers\Monfilt.sys 2014-02-15 02:06 - 2011-04-29 04:34 - 00285288 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\ALSNDMGR.CPL 2014-02-15 02:06 - 2011-04-29 04:34 - 00064104 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\ALCMTR.EXE 2014-02-15 02:05 - 2011-05-16 17:04 - 00128672 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvhda32.sys 2014-02-15 02:05 - 2011-05-16 17:04 - 00028448 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvhdap32.dll 2014-02-15 01:52 - 2014-02-15 01:52 - 00000000 ____D () C:\Dokumente und Einstellungen\feuer\Anwendungsdaten\IObit 2014-02-15 01:46 - 2014-02-15 01:46 - 00000692 _____ () C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Secunia PSI.lnk 2014-02-15 01:46 - 2014-02-15 01:46 - 00000000 ____D () C:\Programme\Secunia 2014-02-15 01:46 - 2014-02-15 01:46 - 00000000 ____D () C:\Dokumente und Einstellungen\feuer\Lokale Einstellungen\Anwendungsdaten\Secunia PSI 2014-02-15 01:46 - 2011-04-29 05:13 - 00000000 ___RD () C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Autostart ==================== Bamital & volsnap Check ================= C:\WINDOWS\explorer.exe [2002-08-29 13:00] - [2008-04-14 03:22] - 1036800 ____A (Microsoft Corporation) 418045a93cd87a352098ab7dabe1b53e C:\WINDOWS\system32\winlogon.exe [2002-08-29 13:00] - [2008-04-14 03:23] - 0513024 ____A (Microsoft Corporation) f09a527b422e25c478e38caa0e44417a C:\WINDOWS\system32\svchost.exe [2002-08-29 13:00] - [2008-04-14 03:23] - 0014336 ____A (Microsoft Corporation) 4fbc75b74479c7a6f829e0ca19df3366 C:\WINDOWS\system32\services.exe [2002-08-29 13:00] - [2009-02-09 12:21] - 0111104 ____A (Microsoft Corporation) a3edbe9053889fb24ab22492472b39dc C:\WINDOWS\system32\User32.dll [2002-08-29 13:00] - [2008-04-14 03:22] - 0580096 ____A (Microsoft Corporation) b0050cc5340e3a0760dd8b417ff7aebd C:\WINDOWS\system32\userinit.exe [2002-08-29 13:00] - [2008-04-14 03:23] - 0026624 ____A (Microsoft Corporation) 788f95312e26389d596c0fa55834e106 C:\WINDOWS\system32\rpcss.dll [2002-08-29 13:00] - [2009-02-09 11:51] - 0401408 ____A (Microsoft Corporation) 3127afbf2c1ed0ab14a1bbb7aaecb85b ATTENTION ======> If the system is having audio adware rpcss.dll is patched. Google the MD5, if the MD5 is unique the file is infected. C:\WINDOWS\system32\Drivers\volsnap.sys [2002-08-29 13:00] - [2008-04-14 02:52] - 0053760 ____A (Microsoft Corporation) a5a712f4e880874a477af790b5186e1d ==================== End Of Log ============================ |
17.03.2014, 10:44 | #47 |
/// the machine /// TB-Ausbilder | Windows XP: Browser verursacht Werbung Drücke bitte die Windowstaste + R Taste und schreibe notepad in das Ausführen Fenster.
__________________Kopiere nun folgenden Text aus der Code-Box in das leere Textdokument Code:
ATTFilter 2014-02-09 21:10 - 2014-02-09 21:10 - 00008688 _____ () C:\WINDOWS\system32\PCProtect.ini 2014-02-09 21:10 - 2014-02-09 21:10 - 00002184 _____ () C:\WINDOWS\system32\PCProtectOff.ini C:\Programme\Web Protect Winsock: Catalog9 01 C:\WINDOWS\system32\PCProtect.dll [293984] (Objectify Media Inc) Winsock: Catalog9 02 C:\WINDOWS\system32\PCProtect.dll [293984] (Objectify Media Inc) Winsock: Catalog9 36 C:\WINDOWS\system32\PCProtect.dll [293984] (Objectify Media Inc) R3 PCProtect; C:\Programme\Web Protect\PCProtect.exe [1265608 2014-01-08] (Objectify Media Inc) 2014-02-09 21:10 - 2014-01-08 07:08 - 00293984 _____ (Objectify Media Inc) C:\WINDOWS\system32\PCProtect.dll Speichere diese bitte als Fixlist.txt auf deinem Desktop (oder dem Verzeichnis in dem sich FRST befindet).
Jetzt nochmal Zoek laufen lassen, dann bitte nochmal ein frisches FRST log.
__________________ |
19.03.2014, 01:49 | #48 |
| Windows XP: Browser verursacht Werbung Fixlog.txt:
__________________Code:
ATTFilter Fix result of Farbar Recovery Tool (FRST written by Farbar) (x86) Version: 09-03-2014 Ran by feuer at 2014-03-19 00:57:45 Run:4 Running from C:\Dokumente und Einstellungen\feuer\Eigene Dateien\Downloads Boot Mode: Normal ============================================== Content of fixlist: ***************** 2014-02-09 21:10 - 2014-02-09 21:10 - 00008688 _____ () C:\WINDOWS\system32\PCProtect.ini 2014-02-09 21:10 - 2014-02-09 21:10 - 00002184 _____ () C:\WINDOWS\system32\PCProtectOff.ini C:\Programme\Web Protect Winsock: Catalog9 01 C:\WINDOWS\system32\PCProtect.dll [293984] (Objectify Media Inc) Winsock: Catalog9 02 C:\WINDOWS\system32\PCProtect.dll [293984] (Objectify Media Inc) Winsock: Catalog9 36 C:\WINDOWS\system32\PCProtect.dll [293984] (Objectify Media Inc) R3 PCProtect; C:\Programme\Web Protect\PCProtect.exe [1265608 2014-01-08] (Objectify Media Inc) 2014-02-09 21:10 - 2014-01-08 07:08 - 00293984 _____ (Objectify Media Inc) C:\WINDOWS\system32\PCProtect.dll ***************** "C:\WINDOWS\system32\PCProtect.ini" => File/Directory not found. "C:\WINDOWS\system32\PCProtectOff.ini" => File/Directory not found. "C:\Programme\Web Protect" => File/Directory not found. HKLM\SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000001 => Unable to delete key HKLM\SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000002 => Unable to delete key HKLM\SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\Protocol_Catalog9\Catalog_Entries\000000000036 => Unable to delete key PCProtect => Unable to delete service Could not move "C:\WINDOWS\system32\PCProtect.dll" => Scheduled to move on reboot. => Result of Scheduled Files to move (Boot Mode: Normal) (Date&Time: 2014-03-19 01:00:46)<= "C:\WINDOWS\system32\PCProtect.dll" => File could not move. ==== End of Fixlog ==== Code:
ATTFilter Zoek.exe v5.0.0.0 Updated 07-March-2014 Tool run by feuer on 19.03.2014 at 1:04:15,15. Microsoft Windows XP Home Edition 5.1.2600 Service Pack 3 x86 Running in: Normal Mode Internet Access Detected Launched: C:\Dokumente und Einstellungen\feuer\Eigene Dateien\Downloads\zoek.exe [Scan all users] [Checkboxes used] ==== Older Logs ====================== C:\zoek-results2014-03-15-162648.log 12186 bytes C:\zoek-results2014-03-15-171943.log 103562 bytes ==== Running Processes ====================== C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe -k DcomLaunch svchost.exe C:\WINDOWS\System32\svchost.exe -k netsvcs C:\WINDOWS\system32\svchost.exe -k WudfServiceGroup svchost.exe svchost.exe C:\WINDOWS\system32\spoolsv.exe svchost.exe C:\Programme\Microsoft\BingBar\BBSvc.EXE C:\Programme\Microsoft\BingBar\SeaPort.EXE C:\WINDOWS\system32\svchost.exe -k netsvcs C:\Programme\Norton Internet Security CBE\Engine\21.1.0.18\NIS.exe C:\WINDOWS\system32\nvsvc32.exe C:\Programme\Google\Update\1.3.22.5\GoogleCrashHandler.exe C:\Programme\Secunia\PSI\PSIA.exe C:\WINDOWS\System32\tcpsvcs.exe C:\WINDOWS\System32\svchost.exe -k imgsvc C:\Programme\Norton Internet Security CBE\Engine\21.1.0.18\NIS.exe C:\Programme\Virtual CD v9\System\VC9SecS.exe C:\WINDOWS\system32\SearchIndexer.exe C:\WINDOWS\system32\wscntfy.exe C:\WINDOWS\Explorer.EXE C:\Programme\Secunia\PSI\sua.exe C:\Programme\Creative\Surround Mixer\CTSysVol.exe C:\Programme\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe C:\Programme\DivX\DivX Update\DivXUpdate.exe C:\WINDOWS\RTHDCPL.EXE C:\WINDOWS\system32\rmctrl.exe C:\WINDOWS\system32\RUNDLL32.EXE C:\WINDOWS\System32\svchost.exe -k HTTPFilter C:\Programme\Secunia\PSI\psi_tray.exe C:\Dokumente und Einstellungen\feuer\Eigene Dateien\Downloads\zoek.exe ==== Deleting CLSID Registry Keys ====================== ==== Deleting CLSID Registry Values ====================== ==== Installed Programs ====================== Adiboo und das Geheimnis von Paziral Adobe Flash Player 12 ActiveX Adobe Flash Player 12 Plugin Adobe Reader XI (11.0.06) - Deutsch Adobe Shockwave Player 12.1 Apple Application Support AudialsOne Auslogics Disk Defrag Auslogics Registry Defrag AVIVO Codecs Barbie(tm) Strandurlaub Bing Bar Blue Byte Game Channel Brother MFL-Pro Suite CCleaner Compatibility Pack fr 2007 Office System Creative EAX-Einstellungen Creative Lautsprechereinstellungen Creative Software AutoUpdate Dev-C++ 5 beta 9 release (4.9.9.2) Die Siedler IV DivX-Setup DriveImage XML (Private Edition) DualCoreCenter EVGA OC Scanner 1.6.1 EVGA Precision 2.0.1 FaceFilter Studio Brother Edition Fiesta Online DE 1.04.053 Free Easy Burner V 5.1 Ger„testeuerung Google Chrome Google Update Helper Happy Farm Hauppauge WinTV Scheduler Hauppauge WinTV Soft PVR Hauppauge WinTV Source Selector Hauppauge WinTV2000 Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595) Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484) Hotfix for Windows XP (KB954550-v5) Hotfix for Windows XP (KB976002-v5) Intel(R) Graphics Media Accelerator Driver Java Auto Updater Junk Mail filter update jv16 PowerTools 2013 KODAK Picture CD Kodu Game Lab Langenscheidt Grammatiktrainer 6.0 Englisch Langenscheidt Kurs 1 6.0 Englisch Langenscheidt Kurs 2 6.0 Englisch Langenscheidt Vokabeltrainer 6.0 Englisch liNear Updater lingDIALOG Liveupdate4 Malwarebytes Anti-Malware Version 1.75.0.1300 Meine Tierklinik in Afrika Microsoft .NET Framework 2.0 Service Pack 2 Microsoft .NET Framework 2.0 Service Pack 2 Language Pack - DEU Microsoft .NET Framework 3.0 Service Pack 2 Microsoft .NET Framework 3.0 Service Pack 2 Language Pack - DEU Microsoft .NET Framework 3.5 Language Pack SP1 - deu Microsoft .NET Framework 3.5 Language Pack SP1 - DEU Microsoft .NET Framework 3.5 SP1 Microsoft .NET Framework 4 Client Profile Microsoft .NET Framework 4 Client Profile DEU Language Pack Microsoft .NET Framework 4 Extended Microsoft .NET Framework 4 Extended DEU Language Pack Microsoft Application Error Reporting Microsoft Choice Guard Microsoft Office Live Add-in 1.5 Microsoft Silverlight Microsoft SQL Server 2005 Compact Edition [ENU] Microsoft Sync Framework Runtime Native v1.0 (x86) Microsoft Sync Framework Services Native v1.0 (x86) Microsoft Visual C++ 2005 Redistributable Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 Microsoft Word 2002 Microsoft Works 7.0 Microsoft XNA Framework Redistributable 3.1 Microsoft_VC100_CRT_SP1_x86 Minecraft Packages Mozilla Firefox 27.0.1 (x86 de) Mozilla Maintenance Service MSVC80_x86_v2 MSVC90_x86 MSVCRT MSXML 4.0 SP2 (KB954430) MSXML 4.0 SP2 (KB973688) MSXML 4.0 SP3 Parser MSXML 4.0 SP3 Parser (KB2758694) MyPhoneExplorer New PowerCinema Nokia Connectivity Cable Driver Nokia Suite Norton Internet Security CBE Notepad++ NVIDIA GeForce Experience 1.5 NVIDIA Install Application NVIDIA nView 140.62 NVIDIA nView Desktop Manager NVIDIA PhysX-Systemsoftware 9.13.0604 NVIDIA PhysX NVIDIA Systemsteuerung 320.49 NVIDIA Update 4.11.9 NVIDIA Update Components Online Manuals for WinTV (German) Paint.NET v3.5.10 PaperPort Image Printer Paragon Partition ManagerT 12 Home PC Connectivity Solution PixelNet Software 4.12.2 PixiePack Codec Pack PowerDirector Pro PowerDVD REALTEK GbE & FE Ethernet PCI-E NIC Driver Realtek High Definition Audio Driver Revo Uninstaller 1.95 Samsung Kies SAMSUNG USB Driver for Mobile Phones ScanSoft PaperPort 11 Secunia PSI (3.0.0.9016) Security Update for Microsoft .NET Framework 3.5 SP1 (KB2604111) Security Update for Microsoft .NET Framework 3.5 SP1 (KB2736416) Security Update for Microsoft .NET Framework 3.5 SP1 (KB2840629) Security Update for Microsoft .NET Framework 3.5 SP1 (KB2861697) Security Update for Microsoft .NET Framework 4 Client Profile (KB2604121) Security Update for Microsoft .NET Framework 4 Client Profile (KB2729449) Security Update for Microsoft .NET Framework 4 Client Profile (KB2736428) Security Update for Microsoft .NET Framework 4 Client Profile (KB2737019) Security Update for Microsoft .NET Framework 4 Client Profile (KB2742595) Security Update for Microsoft .NET Framework 4 Client Profile (KB2789642) Security Update for Microsoft .NET Framework 4 Client Profile (KB2840628v2) Security Update for Microsoft .NET Framework 4 Client Profile (KB2858302v2) Security Update for Microsoft .NET Framework 4 Client Profile (KB2861188) Security Update for Microsoft .NET Framework 4 Client Profile (KB2898855v2) Security Update for Microsoft .NET Framework 4 Client Profile (KB2901110v2) Security Update for Microsoft .NET Framework 4 Client Profile DEU Language Pack (KB2478663) Security Update for Microsoft .NET Framework 4 Client Profile DEU Language Pack (KB2518870) Security Update for Microsoft .NET Framework 4 Extended (KB2487367) Security Update for Microsoft .NET Framework 4 Extended (KB2736428) Security Update for Microsoft .NET Framework 4 Extended (KB2742595) Security Update for Microsoft .NET Framework 4 Extended (KB2858302v2) Security Update for Microsoft .NET Framework 4 Extended (KB2901110v2) Segoe UI Shotty - Kleines aber eindrucksvolles Screenshot Tool Sicherheitsupdate fr Windows Internet Explorer 8 (KB2510531) Sicherheitsupdate fr Windows Internet Explorer 8 (KB2618444) Sicherheitsupdate fr Windows Internet Explorer 8 (KB2744842) Sicherheitsupdate fr Windows Internet Explorer 8 (KB2862772) Sicherheitsupdate fr Windows Internet Explorer 8 (KB2909210) Sicherheitsupdate fr Windows Internet Explorer 8 (KB2909921) Sicherheitsupdate fr Windows Internet Explorer 8 (KB2925418) Sicherheitsupdate fr Windows Internet Explorer 8 (KB982381) Sicherheitsupdate fr Windows Media Player (KB911564) Sicherheitsupdate fr Windows XP (KB2916036) Sicherheitsupdate fr Windows XP (KB2929961) Sicherheitsupdate fr Windows XP (KB2930275) Sicherheitsupdate fr Windows XP (KB923789) SiSoftware Sandra Lite 2011.SP2 Skatpalast Version 1.0 SpeedFan (remove only) Surround Mixer swMSM Update for Microsoft .NET Framework 3.5 SP1 (KB963707) Update for Microsoft .NET Framework 4 Client Profile (KB2468871) Update for Microsoft .NET Framework 4 Client Profile (KB2533523) Update for Microsoft .NET Framework 4 Client Profile (KB2600217) Update for Microsoft .NET Framework 4 Client Profile (KB2836939v3) Update for Microsoft .NET Framework 4 Extended (KB2468871) Update for Microsoft .NET Framework 4 Extended (KB2533523) Update for Microsoft .NET Framework 4 Extended (KB2600217) Update for Microsoft .NET Framework 4 Extended (KB2836939v3) Update fr Windows Internet Explorer 8 (KB2598845) Update fr Windows Internet Explorer 8 (KB2632503) Update fr Windows XP (KB2808679) Update fr Windows XP (KB2934207) Update fr Windows XP (KB961503) VC80CRTRedist - 8.0.50727.6195 Viega Online-Update Viptool Assistant 3 Virtual CD v9 VTPlus32 fr WinTV (German) WebFldrs XP Windows-Treiberpaket - Nokia pccsmcfd "LegacyDriver" (05/31/2012 7.1.2.0) Windows Genuine Advantage Validation Tool (KB892130) Windows Internet Explorer 8 Windows Live-Uploadtool Windows Live Anmelde-Assistent Windows Live Call Windows Live Communications Platform Windows Live Essentials Windows Live Family Safety Windows Live Fotogalerie Windows Live Mail Windows Live Messenger Windows Live Sync Windows Live Writer Windows Media Format 11 runtime Windows Media Player 11 WinEject WinRAR 4.20 (32-Bit) Works Suite-Betriebssystem-Pack X10 Hardware(TM) XnView 2.05 ==== Deleting Services ====================== ==== Batch Command(s) Run By Tool====================== Der Winsock-Katalog kann nicht zurckgesetzt werden. Zugriff verweigert ==== Deleting Files \ Folders ====================== "C:\WINDOWS\system32\PCProtect.dll" not deleted ==== System Specs ====================== Windows: Windows XP Home Edition Service Pack 3 (Build 2600) Memory (RAM): 3072 MB CPU Info: Intel(R) Celeron(R) CPU E3300 @ 2.50GHz CPU Speed: 2497,7 MHz Sound Card: SB 5.1 VX | Realtek HD Audio output | Display Adapters: NVIDIA GeForce GT 440 | NetMeeting driver | RDPDD Chained DD Monitors: 1x; SONY GDM-FW900 | Screen Resolution: 1280 X 1024 - 32 bit Network: Network Present Network Adapters: Realtek PCIe FE Family Controller - Paketplaner-Miniport CD / DVD Drives: 5x (Q: | R: | X: | Y: | Z: | ) Q: SONY DVD-ROM DDU1612 | R: PHILIPS SPD6003P | X: VXDV DVD-ROM DVDR S90 | Y: VXDV DVD-ROM DVDR S90 | Z: VXDV DVD-RAM DVDR S95 Ports: COM1 | COM2 LPT1 Mouse: 3 Button Wheel Mouse Present Hard Disks: C: 292,1GB | D: 19,9GB | E: 80,1GB | F: 119,8GB | G: 119,4GB | H: 300,4GB | I: 20,0GB | J: 20,0GB | K: 30,0GB | L: 79,0GB Hard Disks - Free: C: 139,4GB | D: 19,6GB | E: 68,4GB | F: 112,2GB | G: 113,3GB | H: 287,1GB | I: 19,5GB | J: 16,3GB | K: 8,7GB | L: 79,0GB Manufacturer *: American Megatrends Inc. BIOS Info: AT/AT COMPATIBLE | 08/16/32 | 7529MS - 20100419 Time Zone: Westeuropäische Normalzeit Motherboard *: MICRO-STAR INTERNATIONAL CO.,LTD G31TM-P21 (MS-7529) Country: Deutschland Language: DEU ==== System Specs (Software) ====================== Anti-Virus: Norton Internet Security CBE On-access scanning disabled (Updated) Firewall: Norton Internet Security CBE disabled Default Browser: Firefox 27.0.1 Internet Explorer version: 8.0.6001.18702 Mozilla Firefox version: 27.0.1 (x86 de) Google Chrome version: 33.0.1750.154 Adobe Reader version: 11.0.06.70 Sun Java version: 1.7.0_51 (32-bit) Flash Player version: 12.0.0.77 Shockwave Player version: 12.1r150 ==== Files Recently Created / Modified ====================== ====== C:\WINDOWS ==== 2014-03-07 13:53:48 7A8EF968D9312E63A97DD61C1681A52F 1374 ----a-w- C:\WINDOWS\imsins.BAK 2014-02-23 15:43:55 466F8D601D91DDAB6061A72D85D89353 305664 ----a-w- C:\WINDOWS\IsUn0407.exe ====== C:\DOKUME~1\feuer\LOKALE~1\Temp ==== ====== Java Cache ===== ====== C:\WINDOWS\system32 ===== 2014-03-14 15:23:08 9B10927CFD0F7AD39E40C0E34005B1AD 877480 ----a-w- C:\WINDOWS\System32\npdeployJava1.dll 2014-03-14 15:23:08 4CC1F431910276174B4BC20E306FE742 800168 ----a-w- C:\WINDOWS\System32\deployJava1.dll 2014-03-07 15:26:20 870D609C55F72FF4A622CD0B6233D886 13312 ------w- C:\WINDOWS\System32\xp_eos.exe ====== C:\WINDOWS\system32\drivers ===== 2014-03-07 21:46:58 E0087225B137E57239FF40F8AE82059B 54760 ----a-w- C:\WINDOWS\System32\drivers\fssfltr_tdi.sys 2014-02-18 12:49:21 7BA76ED9C7EF33B4C8C6041CE6C91A6E 15271 ----a-w- C:\WINDOWS\System32\drivers\FIDE.SYS 2014-02-17 17:02:45 4470E3C1E0C3378E4CAB137893C12C3A 22856 ----a-w- C:\WINDOWS\System32\drivers\mbam.sys ====== C:\WINDOWS\Tasks ====== 2014-03-07 15:42:11 8C2F3B79DC0EB2359765A1A3A950CBF1 222 ----a-w- C:\WINDOWS\Tasks\Ende des Supports für Microsoft Windows XP – Benachrichtigung – Anmeldung.job 2014-03-07 15:42:10 53478E05C99C1072661939461AB02DC6 216 ----a-w- C:\WINDOWS\Tasks\Ende des Supports für Microsoft Windows XP – Monatliche Benachrichtigung.job 2014-03-07 14:49:31 7CFF7DEB6F99A673E607DF96833931E3 1084 ----a-w- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job 2014-03-07 14:49:31 7A1B5E2059F75341CDC51D34224D6906 1088 ----a-w- C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job ====== C:\WINDOWS\Temp ====== ======= C:\Programme ===== 2014-03-07 21:44:49 -------- d-----w- C:\Programme\Microsoft SQL Server Compact Edition 2014-03-07 21:43:06 -------- d-----w- C:\Programme\Windows Live SkyDrive 2014-03-07 21:42:30 -------- d-----w- C:\Programme\Windows Live 2014-03-07 21:37:36 -------- d-----w- C:\Programme\Gemeinsame Dateien\Windows Live 2014-03-07 15:50:48 -------- d-----w- C:\Programme\Microsoft.NET 2014-03-07 14:23:06 -------- d-----w- C:\Programme\Microsoft Silverlight 2014-02-23 15:46:04 -------- d-----w- C:\Programme\Ubi Soft 2014-02-20 15:21:49 -------- d-----w- C:\Programme\Mozilla Maintenance Service 2014-02-18 13:10:02 -------- d-----w- C:\Programme\Gemeinsame Dateien\Apple 2014-02-18 12:50:40 -------- d-----w- C:\Programme\CyberLink 2014-02-17 11:32:34 -------- d-----w- C:\Programme\Gemeinsame Dateien\Wise Installation Wizard ======= C: ===== ====== C:\Dokumente und Einstellungen\feuer\Anwendungsdaten ====== 2014-03-14 13:14:21 -------- d-----w- C:\Dokumente und Einstellungen\feuer\Anwendungsdaten\1H1Q 2014-03-07 13:42:51 -------- d-----w- C:\Dokumente und Einstellungen\feuer\Anwendungsdaten\Mozilla 2014-03-01 01:59:25 -------- d-----w- C:\Dokumente und Einstellungen\feuer\Anwendungsdaten\Dev-Cpp 2014-02-24 07:23:24 -------- d-----w- C:\Dokumente und Einstellungen\feuer\Lokale Einstellungen\Anwendungsdaten\Deployment 2014-02-22 23:21:39 -------- d-----w- C:\Dokumente und Einstellungen\Gast\Lokale Einstellungen\Anwendungsdaten\Identities 2014-02-22 08:39:30 -------- d-----w- C:\Dokumente und Einstellungen\Gast\Lokale Einstellungen\Anwendungsdaten\Apple Computer 2014-02-20 16:14:51 -------- d-----w- C:\Dokumente und Einstellungen\Gast\Anwendungsdaten\Windows Search 2014-02-20 07:45:06 -------- d-----w- C:\Dokumente und Einstellungen\NetworkService\Lokale Einstellungen\Anwendungsdaten\Apple 2014-02-19 08:10:30 -------- d-----w- C:\Dokumente und Einstellungen\feuer\Anwendungsdaten\Apple Computer 2014-02-19 01:13:10 -------- d-----w- C:\Dokumente und Einstellungen\Gast\Lokale Einstellungen\Anwendungsdaten\Adobe 2014-02-19 01:04:00 -------- d-----w- C:\Dokumente und Einstellungen\Gast\Lokale Einstellungen\Anwendungsdaten\Apple 2014-02-19 01:00:52 -------- d-----w- C:\Dokumente und Einstellungen\Gast\Anwendungsdaten\Apple Computer 2014-02-18 13:10:53 -------- d-----w- C:\Dokumente und Einstellungen\feuer\Lokale Einstellungen\Anwendungsdaten\Apple Computer 2014-02-18 13:10:41 -------- d-----w- C:\Dokumente und Einstellungen\feuer\Lokale Einstellungen\Anwendungsdaten\Apple 2014-02-18 10:10:59 -------- d-----w- C:\Dokumente und Einstellungen\Gast\Anwendungsdaten\Adobe 2014-02-18 10:07:13 -------- d-----w- C:\Dokumente und Einstellungen\Gast\Lokale Einstellungen\Anwendungsdaten\Mozilla 2014-02-18 10:07:13 -------- d-----w- C:\Dokumente und Einstellungen\Gast\Anwendungsdaten\Mozilla 2014-02-18 10:04:19 61FDEC9BBA19DE42673CBE320E8E448A 32456 ----a-w- C:\Dokumente und Einstellungen\Gast\Lokale Einstellungen\Anwendungsdaten\GDIPFONTCACHEV1.DAT 2014-02-18 10:03:58 -------- d-----w- C:\Dokumente und Einstellungen\Gast\Lokale Einstellungen\Anwendungsdaten\Scansoft 2014-02-18 10:03:45 -------- d-----w- C:\Dokumente und Einstellungen\Gast\Anwendungsdaten\Identities 2014-02-18 10:03:03 -------- d-----w- C:\Dokumente und Einstellungen\Gast\Lokale Einstellungen\Anwendungsdaten\Microsoft 2014-02-18 10:03:02 88CF0FF92A4A9FA7BD9B7513B2E9E22B 62 --sha-w- C:\Dokumente und Einstellungen\Gast\Anwendungsdaten\desktop.ini 2014-02-18 10:03:02 -------- d-s---w- C:\Dokumente und Einstellungen\Gast\Anwendungsdaten\Microsoft 2014-02-17 22:14:52 -------- d-----w- C:\Dokumente und Einstellungen\feuer\Lokale Einstellungen\Anwendungsdaten\Google 2014-02-17 11:40:32 2D9FB319BD41004E5D42CC41EA3CB5E6 44 ----a-w- C:\Dokumente und Einstellungen\NetworkService\Anwendungsdaten\WB.CFG ====== C:\Dokumente und Einstellungen\feuer ====== 2014-03-07 21:47:52 -------- d-----w- C:\Dokumente und Einstellungen\feuer\Tracing 2014-02-22 06:21:16 -------- d-sh--w- C:\Dokumente und Einstellungen\Gast\IECompatCache 2014-02-22 06:20:18 -------- d-sh--w- C:\Dokumente und Einstellungen\Gast\PrivacIE 2014-02-20 23:53:21 -------- d--h--r- C:\Dokumente und Einstellungen\feuer\Recent 2014-02-20 16:09:30 -------- d-sh--w- C:\Dokumente und Einstellungen\Gast\IETldCache 2014-02-18 10:03:12 -------- d-sh--w- C:\Dokumente und Einstellungen\Gast\Cookies 2014-02-18 10:03:10 -------- d-----r- C:\Dokumente und Einstellungen\Gast\Eigene Dateien 2014-02-18 10:03:03 6FC234AD3752E1267B34FB12BCD6718B 20 --sh--w- C:\Dokumente und Einstellungen\Gast\ntuser.ini 2014-02-18 10:03:02 -------- d--h--w- C:\Dokumente und Einstellungen\Gast\Netzwerkumgebung 2014-02-18 10:03:02 -------- d--h--w- C:\Dokumente und Einstellungen\Gast\Lokale Einstellungen 2014-02-18 10:03:02 -------- d--h--w- C:\Dokumente und Einstellungen\Gast\Druckumgebung 2014-02-18 10:03:02 -------- d--h--r- C:\Dokumente und Einstellungen\Gast\SendTo 2014-02-18 10:03:02 -------- d--h--r- C:\Dokumente und Einstellungen\Gast\Recent 2014-02-18 10:03:02 -------- d--h--r- C:\Dokumente und Einstellungen\Gast\Anwendungsdaten 2014-02-18 10:03:02 -------- d-----w- C:\Dokumente und Einstellungen\Gast\Desktop 2014-02-18 10:03:02 -------- d-----r- C:\Dokumente und Einstellungen\Gast\Favoriten 2014-02-18 10:03:01 -------- d--h--w- C:\Dokumente und Einstellungen\Gast\Vorlagen 2014-02-18 10:03:01 -------- d-----r- C:\Dokumente und Einstellungen\Gast\Startmenü ====== C: exe-files == 2014-03-18 20:30:31 6A784D044012FE7336218CAD3050B77F 3401528 ----a-w- C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\NVIDIA\Updatus\Packages\00005914\DAO.18083165.exe 2014-03-15 16:54:25 E677174AA15D1B9D9E0B0F1C8DB8CC56 892120 ----a-w- C:\Programme\Google\Update\Download\{4DC8B4CA-1BDA-483E-B5FA-D3C12E15B62D}\33.0.1750.154\33.0.1750.154_33.0.1750.146_chrome_updater.exe 2014-03-14 20:23:49 362223D9DFCA99D26E81A21FAC6669BE 3401168 ----a-w- C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\NVIDIA\Updatus\Packages\000058f8\DAO.18054780.exe 2014-03-14 15:26:14 C4B3C0EA2E75BEF2C57B2316CC08C04A 2562712 ----a-w- C:\Dokumente und Einstellungen\feuer\Lokale Einstellungen\Anwendungsdaten\Microsoft\DefaultSetup\DefaultSetup.exe 2014-03-14 15:08:48 3842C46F2FBC7522EF625F1833530804 145408 ----a-w- C:\Dokumente und Einstellungen\feuer\Anwendungsdaten\Sun\Java\jre1.7.0_51\lzma.exe 2014-03-14 14:11:33 D6A3D61864E8F9565550548865D7522C 921000 ----a-w- C:\Dokumente und Einstellungen\feuer\Eigene Dateien\Downloads\jxpiinstall(1).exe 2014-03-14 14:09:36 4F0E67CA1C2C18C04BFC16F42AB6F29F 108064 ----a-w- C:\Dokumente und Einstellungen\feuer\Eigene Dateien\Downloads\Java(1).exe 2014-03-14 13:14:21 8C7FB9078A63B7E5E899E7A2DBB0DB53 1114624 ----a-w- C:\Dokumente und Einstellungen\feuer\Anwendungsdaten\1H1Q\Minecraft Packages\uninstaller.exe 2014-03-14 13:12:18 34F333910B18E5695E2A29DE6D9AD9CD 698800 ----a-w- C:\Dokumente und Einstellungen\feuer\Eigene Dateien\Downloads\MinecraftSetup.exe 2014-03-14 13:02:57 1AF9E2AA8264B023404A76D3FB6751FE 29141928 ----a-w- C:\Dokumente und Einstellungen\feuer\Eigene Dateien\Downloads\jre-7u51-windows-i586.exe 2014-03-13 04:02:33 200400F735A399A6047010CC60C04D94 234872 -c----w- C:\WINDOWS\ie8updates\KB2925418-IE8\spuninst\spuninst.exe 2014-03-13 04:02:26 9690B079450A711BC1942D0E1FD7AC37 174592 -c----w- C:\WINDOWS\ie8updates\KB2925418-IE8\ie4uinit.exe 2014-03-12 20:20:17 BB502CB9D3D32BA92732D9D647077849 3397024 ----a-w- C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\NVIDIA\Updatus\Packages\000058db\DAO.18035426.exe === C: other files == 2014-03-14 20:47:00 A7BC9D96BEBAECCF98BB2DE4BAECB4C3 287566 ----a-w- C:\Dokumente und Einstellungen\feuer\Anwendungsdaten\Mozilla\Firefox\Profiles\qhdllhf9.default-1394709733765\extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}.xpi ======== System Restore Points ======== RP717: 11.02.2014 08:07:16 - Systemprüfpunkt RP718: 11.02.2014 08:07:16 - Systemprüfpunkt RP719: 11.02.2014 08:07:16 - Systemprüfpunkt RP720: 11.02.2014 08:07:15 - Systemprüfpunkt RP721: 11.02.2014 08:07:15 - Systemprüfpunkt RP722: 11.02.2014 08:07:15 - Systemprüfpunkt RP723: 11.02.2014 08:07:15 - Systemprüfpunkt RP724: 11.02.2014 08:07:15 - Systemprüfpunkt RP725: 11.02.2014 08:07:15 - Systemprüfpunkt RP726: 11.02.2014 08:07:14 - Systemprüfpunkt RP727: 11.02.2014 08:07:14 - Systemprüfpunkt RP728: 11.02.2014 08:07:14 - Systemprüfpunkt RP729: 11.02.2014 08:07:14 - Systemprüfpunkt RP730: 11.02.2014 08:07:14 - Systemprüfpunkt RP731: 11.02.2014 08:07:14 - Systemprüfpunkt RP732: 11.02.2014 08:07:14 - Software Distribution Service 3.0 RP733: 11.02.2014 08:07:13 - Systemprüfpunkt RP734: 11.02.2014 08:07:13 - Systemprüfpunkt RP735: 11.02.2014 08:07:13 - Systemprüfpunkt RP736: 11.02.2014 08:07:13 - Systemprüfpunkt RP737: 11.02.2014 08:07:13 - Systemprüfpunkt RP738: 11.02.2014 08:07:13 - Systemprüfpunkt RP739: 11.02.2014 08:07:12 - Systemprüfpunkt RP740: 11.02.2014 08:07:12 - Systemprüfpunkt RP741: 11.02.2014 08:07:12 - Systemprüfpunkt RP742: 11.02.2014 08:07:12 - Systemprüfpunkt RP743: 11.02.2014 08:07:12 - Systemprüfpunkt RP744: 11.02.2014 08:07:12 - Systemprüfpunkt RP745: 11.02.2014 08:07:12 - Systemprüfpunkt RP746: 11.02.2014 08:07:12 - Installed Microsoft XNA Framework Redistributable 3.1 RP747: 11.02.2014 08:07:11 - Installed Kodu Game Lab RP748: 11.02.2014 08:07:11 - Installed Windows KB954550-v5. RP749: 11.02.2014 08:07:11 - Druckertreiber Microsoft XPS Document Writer installiert RP750: 11.02.2014 08:07:11 - Druckertreiber Microsoft XPS Document Writer installiert RP751: 11.02.2014 08:07:11 - Installed %1 %2. RP752: 11.02.2014 08:07:11 - Windows Internet Explorer 8 wurde installiert. RP753: 11.02.2014 08:07:11 - Software Distribution Service 3.0 RP754: 11.02.2014 08:07:10 - Software Distribution Service 3.0 RP755: 11.02.2014 08:07:10 - Installed Windows KB954550-v5. RP756: 11.02.2014 08:07:10 - Druckertreiber Microsoft XPS Document Writer installiert RP757: 11.02.2014 08:07:10 - Druckertreiber Microsoft XPS Document Writer installiert RP758: 11.02.2014 08:07:10 - Installed %1 %2. RP759: 11.02.2014 08:07:10 - Systemprüfpunkt RP760: 11.02.2014 08:07:10 - Systemprüfpunkt RP761: 11.02.2014 08:07:09 - Systemprüfpunkt RP762: 11.02.2014 08:07:09 - Systemprüfpunkt RP763: 11.02.2014 08:07:09 - Systemprüfpunkt RP764: 11.02.2014 08:07:09 - Systemprüfpunkt RP765: 11.02.2014 08:07:09 - Systemprüfpunkt RP766: 11.02.2014 08:07:09 - Systemprüfpunkt RP767: 11.02.2014 08:07:09 - Systemprüfpunkt RP768: 11.02.2014 08:07:08 - Systemprüfpunkt RP769: 11.02.2014 08:07:08 - Software Distribution Service 3.0 RP770: 11.02.2014 08:07:08 - Systemprüfpunkt RP771: 11.02.2014 08:07:08 - Systemprüfpunkt RP772: 11.02.2014 08:07:08 - Software Distribution Service 3.0 RP773: 11.02.2014 08:07:08 - Systemprüfpunkt RP774: 11.02.2014 08:07:08 - Systemprüfpunkt RP775: 11.02.2014 08:07:08 - Systemprüfpunkt RP776: 11.02.2014 08:07:07 - Systemprüfpunkt RP777: 11.02.2014 08:07:07 - Compatibility Pack für 2007 Office System wird installiert RP778: 11.02.2014 08:07:07 - Software Distribution Service 3.0 RP779: 11.02.2014 08:07:07 - Software Distribution Service 3.0 RP780: 11.02.2014 08:07:07 - Systemprüfpunkt RP781: 11.02.2014 08:07:07 - Systemprüfpunkt RP782: 11.02.2014 08:07:07 - Systemprüfpunkt RP783: 11.02.2014 08:07:07 - Systemprüfpunkt RP784: 11.02.2014 08:07:06 - Systemprüfpunkt RP785: 11.02.2014 08:07:06 - Systemprüfpunkt RP786: 11.02.2014 08:07:06 - Systemprüfpunkt RP787: 11.02.2014 08:07:06 - Systemprüfpunkt RP788: 11.02.2014 08:07:06 - Systemprüfpunkt RP789: 11.02.2014 08:07:06 - Systemprüfpunkt RP790: 11.02.2014 08:07:06 - Systemprüfpunkt RP791: 11.02.2014 08:07:05 - Systemprüfpunkt RP792: 11.02.2014 08:07:05 - Systemprüfpunkt RP793: 11.02.2014 08:07:05 - Systemprüfpunkt RP794: 11.02.2014 08:07:05 - Systemprüfpunkt RP795: 11.02.2014 08:07:05 - Systemprüfpunkt RP796: 11.02.2014 08:07:05 - Systemprüfpunkt RP797: 11.02.2014 08:07:05 - Systemprüfpunkt RP798: 11.02.2014 08:07:05 - Systemprüfpunkt RP799: 11.02.2014 08:07:04 - Software Distribution Service 3.0 RP800: 11.02.2014 08:07:04 - Software Distribution Service 3.0 RP801: 16.01.2014 10:38:20 - Java 7 Update 51 wird installiert RP802: 11.02.2014 08:07:04 - Systemprüfpunkt RP803: 11.02.2014 08:07:04 - Systemprüfpunkt RP804: 11.02.2014 08:07:04 - Systemprüfpunkt RP805: 24.01.2014 14:32:03 - Systemprüfpunkt RP806: 25.01.2014 17:39:20 - Wiederherstellungsvorgang RP807: 25.01.2014 17:45:31 - Wiederherstellungsvorgang RP808: 03.02.2014 23:49:30 - Konfiguriert lingDIALOG RP809: 09.02.2014 23:33:49 - Wiederherstellungsvorgang RP810: 12.02.2014 00:19:18 - Software Distribution Service 3.0 RP811: 15.02.2014 02:04:52 - Driver Booster : NVIDIA High Definition Audio RP812: 16.02.2014 12:15:53 - Removed Registry Dr RP813: 16.02.2014 12:16:33 - Removed Registry Dr RP814: 16.02.2014 12:17:50 - Removed Registry Dr RP815: 17.02.2014 12:33:12 - SpyHunter wird installiert RP816: 17.02.2014 14:58:54 - pc sauber RP817: 18.02.2014 15:15:58 - Installed MSXML 4.0 SP3 Parser RP818: 18.02.2014 23:17:04 - Software Distribution Service 3.0 RP819: 19.02.2014 09:11:42 - SpyHunter wird entfernt RP820: 20.02.2014 15:48:59 - Revo Uninstaller's restore point - Google Chrome RP821: 20.02.2014 15:54:23 - Revo Uninstaller's restore point - Mozilla Firefox 18.0 (x86 de) RP822: 20.02.2014 20:25:39 - Microsoft Fix it 50195 wird installiert RP823: 20.02.2014 20:29:28 - Microsoft Fix it 50195 wird installiert RP824: 20.02.2014 20:48:45 - Java 7 Update 25 wird entfernt RP825: 20.02.2014 20:50:59 - Java 7 Update 51 wird installiert RP826: 21.02.2014 01:22:22 - Microsoft Fix it 50267 wird installiert RP827: 21.02.2014 01:30:21 - Software Distribution Service 3.0 RP828: 23.02.2014 03:17:07 - Systemprüfpunkt RP829: 23.02.2014 21:37:40 - Revo Uninstaller's restore point - Mozilla Firefox 27.0.1 (x86 de) RP830: 23.02.2014 21:51:37 - Revo Uninstaller's restore point - Mozilla Firefox 27.0.1 (x86 de) RP831: 24.02.2014 08:21:06 - Revo Uninstaller's restore point - Google Chrome RP832: 24.02.2014 08:31:43 - Revo Uninstaller's restore point - Google Chrome RP833: 24.02.2014 08:42:12 - Revo Uninstaller's restore point - Google Chrome RP834: 25.02.2014 17:03:50 - Systemprüfpunkt RP835: 01.03.2014 04:39:41 - Systemprüfpunkt RP836: 01.03.2014 09:36:28 - Revo Uninstaller's restore point - 7-Zip 9.20 RP837: 01.03.2014 09:38:46 - Revo Uninstaller's restore point - Apple Software Update RP838: 01.03.2014 09:39:03 - Apple Software Update wird entfernt RP839: 01.03.2014 09:43:00 - Revo Uninstaller's restore point - Driver Booster RP840: 04.03.2014 22:15:58 - Systemprüfpunkt RP841: 06.03.2014 00:06:41 - Systemprüfpunkt RP842: 07.03.2014 00:57:30 - Systemprüfpunkt RP843: 07.03.2014 14:18:21 - Revo Uninstaller's restore point - Mozilla Firefox 27.0.1 (x86 de) RP844: 07.03.2014 14:49:47 - Revo Uninstaller's restore point - Google Chrome RP845: 07.03.2014 14:53:37 - Revo Uninstaller's restore point - Windows Internet Explorer 8 RP846: 07.03.2014 15:23:17 - MSN Toolbar wird installiert RP847: 07.03.2014 15:24:19 - Windows Internet Explorer 8 wurde installiert. RP848: 07.03.2014 15:24:49 - Software Distribution Service 3.0 RP849: 07.03.2014 15:31:12 - Revo Uninstaller's restore point - Windows Internet Explorer 8 RP850: 07.03.2014 16:09:06 - Windows Internet Explorer 8 wurde installiert. RP851: 07.03.2014 16:09:45 - Software Distribution Service 3.0 RP852: 07.03.2014 16:26:23 - Software Distribution Service 3.0 RP853: 07.03.2014 16:50:11 - Software Distribution Service 3.0 RP854: 07.03.2014 17:10:23 - Software Distribution Service 3.0 RP855: 07.03.2014 19:08:19 - Software Distribution Service 3.0 RP856: 07.03.2014 20:09:49 - Software Distribution Service 3.0 RP857: 07.03.2014 20:19:52 - Software Distribution Service 3.0 RP858: 07.03.2014 21:07:13 - Software Distribution Service 3.0 RP859: 07.03.2014 22:37:18 - Software Distribution Service 3.0 RP860: 07.03.2014 22:51:42 - Software Distribution Service 3.0 RP861: 07.03.2014 23:37:23 - Software Distribution Service 3.0 RP862: 12.03.2014 19:19:45 - Systemprüfpunkt RP863: 13.03.2014 05:00:15 - Software Distribution Service 3.0 RP864: 13.03.2014 12:28:52 - Wiederherstellungsvorgang RP865: 13.03.2014 12:32:26 - Wiederherstellungsvorgang RP866: 13.03.2014 12:56:47 - Wiederherstellungsvorgang RP867: 14.03.2014 14:06:02 - Java 7 Update 51 wird installiert RP868: 14.03.2014 16:11:06 - Java 7 Update 51 wird installiert RP869: 14.03.2014 16:22:36 - Revo Uninstaller's restore point - Java(TM) 6 Update 33 RP870: 14.03.2014 16:22:59 - Java(TM) 6 Update 33 wird entfernt RP871: 14.03.2014 16:25:40 - Revo Uninstaller's restore point - Bing-Desktop RP872: 14.03.2014 16:32:49 - Revo Uninstaller's restore point - Bueno Chrome Toolbar RP873: 14.03.2014 16:36:19 - Revo Uninstaller's restore point - Mega Browse RP874: 14.03.2014 16:38:58 - Revo Uninstaller's restore point - MSN Toolbar RP875: 14.03.2014 16:39:10 - MSN Toolbar wird entfernt RP876: 14.03.2014 16:41:55 - Revo Uninstaller's restore point - Treiber-Studio 2011 7.0.6.116 RP877: 14.03.2014 16:44:19 - Revo Uninstaller's restore point - QuickTime RP878: 14.03.2014 16:44:56 - QuickTime wird entfernt RP879: 15.03.2014 05:00:17 - Software Distribution Service 3.0 RP880: 15.03.2014 17:25:59 - zoek.exe restore point RP881: 17.03.2014 03:40:55 - Systemprüfpunkt RP882: 18.03.2014 03:59:19 - Systemprüfpunkt RP883: 18.03.2014 05:00:14 - Software Distribution Service 3.0 ==== Startup Registry Enabled ====================== [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run] "CTFMON.EXE"="C:\WINDOWS\System32\CTFMON.EXE" [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004\Software\Microsoft\Windows\CurrentVersion\Run] "SetDefaultMIDI"="MIDIDef.exe" [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1005\Software\Microsoft\Windows\CurrentVersion\Run] "CTFMON.EXE"="C:\WINDOWS\System32\CTFMON.EXE" [HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Run] "CTFMON.EXE"="C:\WINDOWS\System32\CTFMON.EXE" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "Adobe ARM"="C:\Programme\Gemeinsame Dateien\Adobe\ARM\1.0\AdobeARM.exe" "CTSysVol"="C:\Programme\Creative\Surround Mixer\CTSysVol.exe /r" "Nvtmru"="C:\Programme\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe" "SSBkgdUpdate"="C:\Programme\Gemeinsame Dateien\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe -Embedding -boot" "Persistence"="C:\WINDOWS\System32\igfxpers.exe" "IgfxTray"="C:\WINDOWS\System32\igfxtray.exe" "HotKeysCmds"="C:\WINDOWS\System32\hkcmd.exe" "DelReg"="C:\Programme\MSI\DualCoreCenter\DelReg.exe" "DivXUpdate"="C:\Programme\DivX\DivX Update\DivXUpdate.exe /CHECKNOW" "RTHDCPL"="RTHDCPL.EXE" "RemoteControl"="C:\WINDOWS\system32\rmctrl.exe" "APSDaemon"="C:\Programme\Gemeinsame Dateien\Apple\Apple Application Support\APSDaemon.exe" "BingDesktop"="C:\Programme\Microsoft\BingDesktop\BingDesktop.exe /fromkey" "NvCplDaemon"="RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup" "NvMediaCenter"="RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit" [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "SetDefaultMIDI"="MIDIDef.exe" ==== Startup Registry Disabled ====================== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="" "hkey"="HKCU" "command"="" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\BrMfcWnd] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="BrMfcWnd" "hkey"="HKLM" "command"="C:\\Programme\\Brother\\Brmfcmon\\BrMfcWnd.exe /AUTORUN" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\ControlCenter3] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="ControlCenter3" "hkey"="HKLM" "command"="C:\\Programme\\Brother\\ControlCenter3\\brctrcen.exe /autorun" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\DivXMediaServer] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="DivXMediaServer" "hkey"="HKLM" "command"="C:\\Programme\\DivX\\DivX Media Server\\DivXMediaServer.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\IndexSearch.exe] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="IndexSearch.exe" "hkey"="HKLM" "command"="\"C:\\Programme\\ScanSoft\\PaperPort\\IndexSearch.exe\"" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\KiesAirMessage] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="KiesAirMessage" "hkey"="HKCU" "command"="J:\\alex\\Kies\\KiesAirMessage.exe -startup" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\KiesPreload] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="KiesPreload" "hkey"="HKCU" "command"="J:\\alex\\Kies\\Kies.exe /preload" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\KiesTrayAgent] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="KiesTrayAgent" "hkey"="HKLM" "command"="J:\\alex\\Kies\\KiesTrayAgent.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\NokiaMServer] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="NokiaMServer" "hkey"="HKLM" "command"="C:\\Programme\\Gemeinsame Dateien\\Nokia\\MPlatform\\NokiaMServer /watchfiles startup" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\P17Helper] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="P17Helper" "hkey"="HKLM" "command"="Rundll32 P17.dll,P17Helper" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\PaperPort PTD] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="PaperPort PTD" "hkey"="HKLM" "command"="\"C:\\Programme\\ScanSoft\\PaperPort\\pptd40nt.exe\"" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\PCMService] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="PCMService" "hkey"="HKLM" "command"="C:\\Programme\\Medion\\PowerCinema\\PCMService.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\PPort11reminder] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="PPort11reminder" "hkey"="HKLM" "command"="\"C:\\Programme\\ScanSoft\\PaperPort\\Ereg\\Ereg.exe\" -r \"C:\\Dokumente und Einstellungen\\All Users\\Anwendungsdaten\\ScanSoft\\PaperPort\\11\\Config\\Ereg\\Ereg.ini" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\QuickTime Task] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="QuickTime Task" "hkey"="HKLM" "command"="\"C:\\Programme\\QuickTime\\qttask.exe\" -atboottime" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\VC9Player] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="VC9Player" "hkey"="HKLM" "command"="C:\\Programme\\Virtual CD v9\\System\\VC9Play.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\WinEjectAutoStart1] "key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run" "item"="WinEjectAutoStart1" "hkey"="HKCU" "command"="E:\\Programme\\WinEject\\WinEject.exe -instance:1" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupfolder] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupfolder\C:^Dokumente und Einstellungen^All Users^Startmen^Programme^Autostart^DualCoreCenter.lnk] "item"="DualCoreCenter" "path"="C:\\Dokumente und Einstellungen\\All Users\\Startmen\\Programme\\Autostart\\DualCoreCenter.lnk" "backup"="C:\\WINDOWS\\pss\\DualCoreCenter.lnkCommon Startup" "command"="C:\\PROGRA~1\\MSI\\DUALCO~1\\STARTU~1.EXE" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupfolder\C:^Dokumente und Einstellungen^All Users^Startmen^Programme^Autostart^Microsoft Office.lnk] "item"="Microsoft Office" "path"="C:\\Dokumente und Einstellungen\\All Users\\Startmen\\Programme\\Autostart\\Microsoft Office.lnk" "backup"="C:\\WINDOWS\\pss\\Microsoft Office.lnkCommon Startup" "command"="C:\\PROGRA~1\\MICROS~4\\Office10\\OSA.EXE" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupfolder\C:^Dokumente und Einstellungen^All Users^Startmen^Programme^Autostart^Windows Search.lnk] "item"="Windows Search" "path"="C:\\Dokumente und Einstellungen\\All Users\\Startmen\\Programme\\Autostart\\Windows Search.lnk" "backup"="C:\\WINDOWS\\pss\\Windows Search.lnkCommon Startup" "command"="C:\\PROGRA~1\\WI459E~1\\WINDOW~1.EXE" ==== Startup Folders ====================== ==== Task Scheduler Jobs ====================== C:\WINDOWS\tasks\Adobe Flash Player Updater.job --a------ C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe [12.03.2014 10:50] C:\WINDOWS\tasks\Ende des Supports für Microsoft Windows XP – Benachrichtigung – Anmeldung.job [Undetermined Task] C:\WINDOWS\tasks\Ende des Supports für Microsoft Windows XP – Monatliche Benachrichtigung.job [Undetermined Task] C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job --a------ C:\Programme\Google\Update\GoogleUpdate.exe [07.03.2014 15:49] C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job --a------ C:\Programme\Google\Update\GoogleUpdate.exe [07.03.2014 15:49] C:\WINDOWS\tasks\RegistryDr_Popup.job --a------ C:\Programme\Registry Dr\Splash.exe [] ==== Firefox Extensions Registry ====================== [HKEY_LOCAL_MACHINE\Software\Mozilla\Firefox\Extensions] "{2D3F3651-74B9-4795-BDEC-6DA2F431CB62}"="C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_21.0.0.100\coFFPlgn" [19.03.2014 01:01] ==== Firefox Extensions ====================== ProfilePath: C:\Dokumente und Einstellungen\feuer\Anwendungsdaten\Mozilla\Firefox\Profiles\qhdllhf9.default-1394709733765 - Greasemonkey - %ProfilePath%\extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}.xpi ProfilePath: C:\Dokumente und Einstellungen\Gast\Anwendungsdaten\Mozilla\Firefox\Profiles\pbu2gtes.default - Norton Vulnerability Protection - C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_21.0.0.100\IPSFF ==== Firefox Plugins ====================== Profilepath: C:\Dokumente und Einstellungen\feuer\Anwendungsdaten\Mozilla\Firefox\Profiles\qhdllhf9.default-1394709733765 95812430959AE88CDD0301AB3A71913B - C:\WINDOWS\system32\Macromed\Flash\NPSWF32_12_0_0_77.dll - Shockwave Flash 0E8B2D0D9E3415A91EF259CE1112C579 - C:\WINDOWS\system32\Adobe\Director\np32dsw_1210150.dll - Shockwave for Director / Shockwave for Director A9C86900D2A61728C8326FE7147617C5 - C:\Programme\Google\Update\1.3.22.5\npGoogleUpdate3.dll - Google Update A9191AE22A8F1287B5E2DF33E3A57253 - C:\Programme\Java\jre7\bin\plugin2\npjp2.dll - Java(TM) Platform SE 7 U51 9B10927CFD0F7AD39E40C0E34005B1AD - C:\WINDOWS\system32\npdeployJava1.dll - Java Deployment Toolkit 7.0.510.13 01D93217A9EE48DD37072B671378CC9C - C:\Programme\Microsoft Silverlight\5.1.30214.0\npctrl.dll - Silverlight Plug-In 4380B55D9167DC87793A97329C6C4059 - C:\Programme\DivX\DivX Web Player\npdivx32.dll - DivX Plus Web Player AC987EE8037531807C5D7E6217A23501 - C:\Programme\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll - Adobe Acrobat EB41064BC07017F5694CF16B4DEF6B10 - C:\Programme\Adobe\Reader 11.0\Reader\browser\nppdf32.dll - Adobe Acrobat D6BCD0765A259DB2481C082DDBD86AD7 - C:\Programme\Nokia\Nokia Suite\npNokiaSuiteEnabler.dll - Nokia Suite Enabler Plugin 86244E1B6D062BBE2B91AA5DA7376806 - C:\Programme\DivX\DivX OVS Helper\npovshelper.dll - DivX VOD Helper Plug-in 24E990B1E6D55428001843CF7217DD81 - C:\Programme\Microsoft\Office Live\npOLW.dll - Microsoft Office Live Plug-in for Firefox / Microsoft Office Live Plug-in for Firefox 1C8124B6A03A620EB0CBCA615666D2AE - C:\Programme\Windows Live\Photo Gallery\NPWLPG.dll - Windows Live® Photo Gallery AB87EEFFD18F2BAAFC274E7075EA6C67 - C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll - Windows Presentation Foundation / Windows Presentation Foundation 38A1E65626558B8776C3546BE4491993 - C:\Programme\Windows Media Player\npdrmv2.dll - Microsoft® DRM AE3A029E3DC4EEB5EF5A4C2C997F78F8 - C:\Programme\Windows Media Player\npdsplay.dll - Windows Media Player Plug-in Dynamic Link Library 1D187905079ACC40C420E7C8BD167731 - C:\Programme\Windows Media Player\npwmsdrm.dll - Microsoft® DRM 3CB231F12674D3CB0AC1F5EDE9578E85 - C:\WINDOWS\system32\npwmsdrm.dll - Microsoft® Windows Media Services F630B4A9D9C1AAF6BBABBB41E9BD45B5 - C:\WINDOWS\system32\npptools.dll - Betriebssystem Microsoft® Windows® 28986F0A2342A033345EF9E70D395E4F - C:\Programme\Microsoft Silverlight\5.1.30214.0\npctrlui.dll - Microsoft® Silverlight ==== Chrome Look ====================== HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions mkfokfffehpeedafpekjeddnmnjhmcmk - C:\Programme\Norton Internet Security CBE\Engine\21.1.0.18\Exts\Chrome.crx[19.01.2014 18:42] Google Docs - feuer\Lokale Einstellungen\Anwendungsdaten\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake Google Drive - feuer\Lokale Einstellungen\Anwendungsdaten\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf YouTube - feuer\Lokale Einstellungen\Anwendungsdaten\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo Google Search - feuer\Lokale Einstellungen\Anwendungsdaten\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf Norton Identity Protection - feuer\Lokale Einstellungen\Anwendungsdaten\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk Google Wallet - feuer\Lokale Einstellungen\Anwendungsdaten\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda Gmail - feuer\Lokale Einstellungen\Anwendungsdaten\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia ==== Set IE to Default ====================== Old Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="hxxp://www.msn.com/?pc=BDT1&ocid=BDT1DHP" New Values: [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main] "Start Page"="hxxp://www.msn.com/?pc=BDT1&ocid=BDT1DHP" ==== All HKCU SearchScopes ====================== HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes "DefaultScope"="{E00B0CB1-3424-4B69-8D2C-501D7D864CE7}" {0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="hxxp://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC" {6A1806CD-94D4-4689-BA73-E35EA1EA9990} Google Url="hxxp://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}&ie={inputEncoding}&oe={outputEncoding}&startIndex={startIndex?}&startPage={startPage}" {E00B0CB1-3424-4B69-8D2C-501D7D864CE7} Bing Url="hxxp://www.bing.com/search?q={searchTerms}&form=MS8TDF&pc=MS8TDF&src=IE-SearchBox" ==== Reset Google Chrome ====================== Nothing found to reset ==== shortcuts on Users Desktops ====================== C:\Dokumente und Einstellungen\feuer\Desktop\Adiboo_Paziral starten.lnk - C:\Dokumente und Einstellungen\All Users\Dokumente\Virtual CD v9\Scripts\Adiboo_Paziral starten.vbs C:\Dokumente und Einstellungen\feuer\Desktop\Audible Manager.lnk - J:\Audible\Bin\Manager.exe C:\Dokumente und Einstellungen\feuer\Desktop\Auslogics Disk Defrag.lnk - E:\Programme\Auslogics\Auslogics Disk Defrag\DiskDefrag.exe C:\Dokumente und Einstellungen\feuer\Desktop\Auslogics Registry Defrag.lnk - E:\Programme\Auslogics Registry Defrag\RegistryDefrag.exe C:\Dokumente und Einstellungen\feuer\Desktop\DivX Movies.lnk - H:\Eigene Videos\DivX Movies C:\Dokumente und Einstellungen\feuer\Desktop\DivX Player 2.0 Alpha.lnk - C:\Programme\DivX\DivX Player 2.0 Alpha\DivX Player 2.0 Alpha.exe C:\Dokumente und Einstellungen\feuer\Desktop\EVGA OC Scanner.lnk - C:\Programme\EVGA\EVGA OC Scanner\EVGA_OC_Scanner.exe C:\Dokumente und Einstellungen\feuer\Desktop\EVGA Precision.lnk - C:\Programme\EVGA Precision\EVGAPrecision.exe C:\Dokumente und Einstellungen\feuer\Desktop\Fiesta Online DE.lnk - E:\gamigo\Fiesta Online DE\FiestaOnline.exe C:\Dokumente und Einstellungen\feuer\Desktop\Free Easy Burner.lnk - C:\Programme\Free Easy CD DVD Burner\FreeEasyBurner.exe C:\Dokumente und Einstellungen\feuer\Desktop\Frontschweine.lnk - C:\Dokumente und Einstellungen\All Users\Dokumente\Virtual CD v9\Scripts\Frontschweine.vbs C:\Dokumente und Einstellungen\feuer\Desktop\jv16 PowerTools 2013.lnk - C:\Programme\jv16 PowerTools 2013\jv16PT.exe C:\Dokumente und Einstellungen\feuer\Desktop\Moorhuhn Kart - Thunder spielen.lnk - E:\Programme\phenomedia\Moorhuhn Kart - Thunder\mhk4.exe C:\Dokumente und Einstellungen\feuer\Desktop\Notepad++.lnk - E:\Programme\Notepad++\notepad++.exe C:\Dokumente und Einstellungen\feuer\Desktop\Revo Uninstaller.lnk - E:\Programme\VS Revo Group\Revo Uninstaller\Revouninstaller.exe C:\Dokumente und Einstellungen\feuer\Desktop\Siedler 4 starten.lnk - C:\Dokumente und Einstellungen\All Users\Dokumente\Virtual CD v9\Scripts\Siedler 4 starten.vbs C:\Dokumente und Einstellungen\feuer\Desktop\Siedler3 starten.lnk - C:\Dokumente und Einstellungen\All Users\Dokumente\Virtual CD v9\Scripts\Siedler3 starten.vbs C:\Dokumente und Einstellungen\feuer\Desktop\SpeedFan.lnk - C:\Programme\SpeedFan\speedfan.exe C:\Dokumente und Einstellungen\feuer\Desktop\Ubi Soft Product Registration.lnk - C:\Programme\Ubi Soft\Register\register.exe C:\Dokumente und Einstellungen\feuer\Desktop\Verknüpfung mit MinecraftSP.lnk - C:\Dokumente und Einstellungen\feuer\Desktop\XnView.lnk - E:\Programme\XnView\xnview.exe C:\Dokumente und Einstellungen\Gast\Desktop\Die Siedler 4 Starten.lnk - C:\Dokumente und Einstellungen\All Users\Dokumente\Virtual CD v9\Scripts\Die Siedler 4 Starten.vbs ==== shortcuts on All Users Desktop ====================== C:\Dokumente und Einstellungen\All Users\Desktop\Adobe Digital Editions.lnk - J:\Adobe\Adobe Digital Editions\digitaleditions.exe C:\Dokumente und Einstellungen\All Users\Desktop\Adobe Reader XI.lnk - C:\Programme\Adobe\Reader 11.0\Reader\AcroRd32.exe C:\Dokumente und Einstellungen\All Users\Desktop\audials TV.lnk - C:\Programme\RapidSolution\AudialsTV\bin\audialsTV.exe C:\Dokumente und Einstellungen\All Users\Desktop\AudialsOne 4.lnk - C:\Programme\RapidSolution\AudialsOne 4\AudialsOne.exe C:\Dokumente und Einstellungen\All Users\Desktop\CCleaner.lnk - C:\Programme\CCleaner\CCleaner.exe C:\Dokumente und Einstellungen\All Users\Desktop\Configure Kodu Game Lab.lnk - C:\Programme\Microsoft Research\Kodu Game Lab\BokuPreBoot.exe C:\Dokumente und Einstellungen\All Users\Desktop\DivX Converter.lnk - C:\Programme\DivX\DivX Converter\DivXConverterLauncher.exe C:\Dokumente und Einstellungen\All Users\Desktop\DivX Player.lnk - C:\Programme\DivX\DivX Player\DivX Player.exe C:\Dokumente und Einstellungen\All Users\Desktop\DriveImage XML.lnk - C:\Programme\Runtime Software\DriveImage XML\dixml.exe C:\Dokumente und Einstellungen\All Users\Desktop\FaceFilter Studio.lnk - C:\Programme\Reallusion\FaceFilter Studio\FaceFilterStudio.exe C:\Dokumente und Einstellungen\All Users\Desktop\GeForce Experience.lnk - C:\Programme\NVIDIA Corporation\NVIDIA GeForce Experience\GFExperience.exe C:\Dokumente und Einstellungen\All Users\Desktop\Google Chrome.lnk - C:\Programme\Google\Chrome\Application\chrome.exe C:\Dokumente und Einstellungen\All Users\Desktop\Grammatiktrainer 6.0 Englisch.lnk - E:\Programme\Langenscheidt\Grammatiktrainer 6.0 Englisch\Viewer\Viewer.exe C:\Dokumente und Einstellungen\All Users\Desktop\KODAK Picture CD.lnk - F:\Programme\Kodak\KODAK Picture CD\PCD\launch1.exe C:\Dokumente und Einstellungen\All Users\Desktop\Kodu Game Lab.lnk - C:\Programme\Microsoft Research\Kodu Game Lab\Boku.exe C:\Dokumente und Einstellungen\All Users\Desktop\Kurs 1 6.0 Englisch.lnk - E:\Programme\Langenscheidt\Kurs 1 6.0 Englisch\Viewer\Viewer.exe C:\Dokumente und Einstellungen\All Users\Desktop\Kurs 2 6.0 Englisch.lnk - E:\Programme\Langenscheidt\Kurs 2 6.0 Englisch\Viewer\Viewer.exe C:\Dokumente und Einstellungen\All Users\Desktop\ Malwarebytes Anti-Malware .lnk - E:\Programme\Malwarebytes' Anti-Malware\mbam.exe C:\Dokumente und Einstellungen\All Users\Desktop\Medi@Show.lnk - C:\Programme\Medion\MediaShow\MediaShow.exe C:\Dokumente und Einstellungen\All Users\Desktop\Mozilla Firefox.lnk - C:\Programme\Mozilla Firefox\firefox.exe C:\Dokumente und Einstellungen\All Users\Desktop\MyPhoneExplorer.lnk - E:\Programme\MyPhoneExplorer\MyPhoneExplorer.exe C:\Dokumente und Einstellungen\All Users\Desktop\Nokia Suite.lnk - C:\Programme\Nokia\Nokia Suite\NokiaSuite.exe C:\Dokumente und Einstellungen\All Users\Desktop\Paint.NET.lnk - C:\Programme\Paint.NET\PaintDotNet.exe C:\Dokumente und Einstellungen\All Users\Desktop\Paragon Partition Manager™ 12 Home.lnk - C:\Dokumente und Einstellungen\All Users\Desktop\PixelNet Software.lnk - F:\Programme\PixelNet Software\PixelNet.exe C:\Dokumente und Einstellungen\All Users\Desktop\PowerCinema.lnk - C:\Programme\Medion\PowerCinema\PCM2.exe C:\Dokumente und Einstellungen\All Users\Desktop\PowerDirector Pro.lnk - C:\Programme\Medion\PowerDirector\PowerDirector.exe C:\Dokumente und Einstellungen\All Users\Desktop\PowerDVD.lnk - C:\Programme\Medion\PowerDVD\PowerDVD.exe C:\Dokumente und Einstellungen\All Users\Desktop\Samsung Kies.lnk - J:\alex\Kies\Kies.exe C:\Dokumente und Einstellungen\All Users\Desktop\Skatpalast.lnk - E:\Programme\Skatpalast\skatpalast.exe C:\Dokumente und Einstellungen\All Users\Desktop\VideoLive Mail 4.0.lnk - C:\Programme\Medion\VideoLiveMail\VLM_SKIN_UI.exe C:\Dokumente und Einstellungen\All Users\Desktop\Virtual CD v9.lnk - C:\Programme\Virtual CD v9\System\vc9start.exe C:\Dokumente und Einstellungen\All Users\Desktop\Vokabeltrainer 6.0 Englisch.lnk - C:\WINDOWS\Installer\{67F91DB9-1958-4328-869C-032415F04AD1}\_2CDE2A1F231E75E9DE898A.exe C:\Dokumente und Einstellungen\All Users\Desktop\WinTV2000.lnk - C:\Programme\WinTV\WinTV2K.EXE C:\Dokumente und Einstellungen\All Users\Desktop\Microsoft\Internet Explorer\Quick Launch\DualCoreCenter.lnk - C:\Programme\MSI\DualCoreCenter\DualCoreCenter.exe ==== shortcuts in Quick Launch ====================== C:\Dokumente und Einstellungen\feuer\Anwendungsdaten\Microsoft\Internet Explorer\Quick Launch\Adobe Digital Editions.lnk - J:\Adobe\Adobe Digital Editions\digitaleditions.exe C:\Dokumente und Einstellungen\feuer\Anwendungsdaten\Microsoft\Internet Explorer\Quick Launch\Dev-C++.lnk - E:\Dev-Cpp\devcpp.exe C:\Dokumente und Einstellungen\feuer\Anwendungsdaten\Microsoft\Internet Explorer\Quick Launch\DriveImage XML.lnk - C:\Programme\Runtime Software\DriveImage XML\dixml.exe C:\Dokumente und Einstellungen\feuer\Anwendungsdaten\Microsoft\Internet Explorer\Quick Launch\EVGA OC Scanner.lnk - C:\Programme\EVGA\EVGA OC Scanner\EVGA_OC_Scanner.exe C:\Dokumente und Einstellungen\feuer\Anwendungsdaten\Microsoft\Internet Explorer\Quick Launch\Free Easy Burner.lnk - C:\Programme\Free Easy CD DVD Burner\FreeEasyBurner.exe C:\Dokumente und Einstellungen\feuer\Anwendungsdaten\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk - C:\Programme\Google\Chrome\Application\chrome.exe C:\Dokumente und Einstellungen\feuer\Anwendungsdaten\Microsoft\Internet Explorer\Quick Launch\Internet Explorer Browser starten.lnk - C:\Programme\Internet Explorer\iexplore.exe C:\Dokumente und Einstellungen\feuer\Anwendungsdaten\Microsoft\Internet Explorer\Quick Launch\Mozilla Firefox.lnk - C:\Programme\Mozilla Firefox\firefox.exe C:\Dokumente und Einstellungen\feuer\Anwendungsdaten\Microsoft\Internet Explorer\Quick Launch\Samsung Kies.lnk - J:\alex\Kies\Kies.exe C:\Dokumente und Einstellungen\feuer\Anwendungsdaten\Microsoft\Internet Explorer\Quick Launch\Windows Media Player.lnk - C:\Programme\Windows Media Player\wmplayer.exe /prefetch:1 C:\Dokumente und Einstellungen\feuer\Anwendungsdaten\Microsoft\Internet Explorer\Quick Launch\XnView.lnk - E:\Programme\XnView\xnview.exe C:\Dokumente und Einstellungen\Gast\Anwendungsdaten\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk - C:\Programme\Google\Chrome\Application\chrome.exe C:\Dokumente und Einstellungen\Gast\Anwendungsdaten\Microsoft\Internet Explorer\Quick Launch\Internet Explorer Browser starten.lnk - C:\Programme\Internet Explorer\iexplore.exe ==== HijackThis Entries ====================== R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://de.msn.com/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://de.msn.com/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://go.microsoft.com/fwlink/?LinkId=54896 R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://go.microsoft.com/fwlink/?LinkId=54896 R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://de.msn.com/ R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = <-loopback> O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file) O2 - BHO: Norton Identity Protection - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Programme\Norton Internet Security CBE\Engine\21.1.0.18\coIEPlg.dll O2 - BHO: Norton Vulnerability Protection - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Programme\Norton Internet Security CBE\Engine\21.1.0.18\IPS\IPSBHO.DLL O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Programme\Java\jre7\bin\ssv.dll O2 - BHO: Windows Live Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Programme\Gemeinsame Dateien\Microsoft Shared\Windows Live\WindowsLiveLogin.dll O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Programme\Java\jre7\bin\jp2ssv.dll O3 - Toolbar: Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Programme\Norton Internet Security CBE\Engine\21.1.0.18\coIEPlg.dll O4 - HKLM\..\Run: [Adobe ARM] "C:\Programme\Gemeinsame Dateien\Adobe\ARM\1.0\AdobeARM.exe" O4 - HKLM\..\Run: [CTSysVol] C:\Programme\Creative\Surround Mixer\CTSysVol.exe /r O4 - HKLM\..\Run: [Nvtmru] "C:\Programme\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe" O4 - HKLM\..\Run: [SSBkgdUpdate] "C:\Programme\Gemeinsame Dateien\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot O4 - HKLM\..\Run: [Persistence] C:\WINDOWS\System32\igfxpers.exe O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\System32\igfxtray.exe O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\System32\hkcmd.exe O4 - HKLM\..\Run: [DelReg] C:\Programme\MSI\DualCoreCenter\DelReg.exe O4 - HKLM\..\Run: [DivXUpdate] "C:\Programme\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE O4 - HKLM\..\Run: [RemoteControl] C:\WINDOWS\system32\rmctrl.exe O4 - HKLM\..\Run: [APSDaemon] "C:\Programme\Gemeinsame Dateien\Apple\Apple Application Support\APSDaemon.exe" O4 - HKLM\..\Run: [BingDesktop] C:\Programme\Microsoft\BingDesktop\BingDesktop.exe /fromkey O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit O4 - HKCU\..\Run: [SetDefaultMIDI] MIDIDef.exe O4 - HKUS\S-1-5-21-1085031214-790525478-725345543-1005\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'UpdatusUser') O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM') O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user') O4 - Startup: ubisoft register.lnk = C:\Programme\Ubi Soft\Register\schedule.exe O4 - Global Startup: Secunia PSI Tray.lnk = C:\Programme\Secunia\PSI\psi_tray.exe O9 - Extra button: In Blog veröffentlichen - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Programme\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra 'Tools' menuitem: In Windows Live Writer in Blog veröffentliche&n - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Programme\Windows Live\Writer\WriterBrowserExtension.dll O9 - Extra button: FlowSurf - {6CA2A4DE-483E-456B-8634-6445460D7097} - C:\Programme\Flowsurf\FlowSurf.dll (file missing) O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programme\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Programme\Messenger\msmsgs.exe O10 - Unknown file in Winsock LSP: c:\windows\system32\nwprovau.dll O10 - Unknown file in Winsock LSP: c:\windows\system32\pcprotect.dll O10 - Unknown file in Winsock LSP: c:\windows\system32\pcprotect.dll O10 - Unknown file in Winsock LSP: c:\windows\system32\pcprotect.dll O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - hxxp://go.microsoft.com/fwlink/?linkid=39204 O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - hxxp://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1304073907390 O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - hxxp://update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1379302733234 O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\System32\browseui.dll O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\System32\browseui.dll O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe O23 - Service: Google Update-Dienst (gupdate) (gupdate) - Google Inc. - C:\Programme\Google\Update\GoogleUpdate.exe O23 - Service: Google Update-Dienst (gupdatem) (gupdatem) - Google Inc. - C:\Programme\Google\Update\GoogleUpdate.exe O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Programme\Mozilla Maintenance Service\maintenanceservice.exe O23 - Service: Norton Internet Security CBE (NIS) - Symantec Corporation - C:\Programme\Norton Internet Security CBE\Engine\21.1.0.18\NIS.exe O23 - Service: NVIDIA Driver Helper Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Programme\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe O23 - Service: PCProtect - Unknown owner - C:\Programme\Web Protect\PCProtect.exe (file missing) O23 - Service: SiSoftware Deployment Agent Service (SandraAgentSrv) - SiSoftware - C:\Programme\SiSoftware\SiSoftware Sandra Lite 2011.SP2\RpcAgentSrv.exe O23 - Service: Secunia PSI Agent - Secunia - C:\Programme\Secunia\PSI\PSIA.exe O23 - Service: Secunia Update Agent - Secunia - C:\Programme\Secunia\PSI\sua.exe O23 - Service: ServiceLayer - Nokia - C:\Programme\PC Connectivity Solution\ServiceLayer.exe O23 - Service: Virtual CD v9 Management Service (VC9SecS) - H+H Software GmbH - C:\Programme\Virtual CD v9\System\VC9SecS.exe O23 - Service: X10 Device Network Service (x10nets) - X10 - C:\PROGRA~1\COMMON~1\X10\Common\x10nets.exe ==== Silent Runners ====================== "Silent Runners.vbs", revision 69.2, hxxp://www.silentrunners.org/ Output limited to non-default values, except where indicated by "{++}" Startup items buried in registry: --------------------------------- HKCU\Software\Microsoft\Windows\CurrentVersion\Run\ {++} SetDefaultMIDI = MIDIDef.exe [Creative Technology Ltd] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\ {++} Adobe ARM = "C:\Programme\Gemeinsame Dateien\Adobe\ARM\1.0\AdobeARM.exe" [Adobe Systems Incorporated] CTSysVol = C:\Programme\Creative\Surround Mixer\CTSysVol.exe /r [Creative Technology Ltd] Nvtmru = "C:\Programme\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe" [NVIDIA Corporation] SSBkgdUpdate = "C:\Programme\Gemeinsame Dateien\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot [Nuance Communications, Inc.] Persistence = C:\WINDOWS\System32\igfxpers.exe [Intel Corporation] IgfxTray = C:\WINDOWS\System32\igfxtray.exe [Intel Corporation] HotKeysCmds = C:\WINDOWS\System32\hkcmd.exe [Intel Corporation] DelReg = C:\Programme\MSI\DualCoreCenter\DelReg.exe [empty string] DivXUpdate = "C:\Programme\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW [null data] RTHDCPL = RTHDCPL.EXE [Realtek Semiconductor Corp.] RemoteControl = C:\WINDOWS\system32\rmctrl.exe [null data] APSDaemon = "C:\Programme\Gemeinsame Dateien\Apple\Apple Application Support\APSDaemon.exe" [Apple Inc.] BingDesktop = C:\Programme\Microsoft\BingDesktop\BingDesktop.exe /fromkey [file not found] NvCplDaemon = RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup [MS] NvMediaCenter = RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit [MS] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\ {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408}\(Default) = Norton Identity Protection -> {HKLM...CLSID} = Norton Identity Protection \InProcServer32\(Default) = C:\Programme\Norton Internet Security CBE\Engine\21.1.0.18\coIEPlg.dll [Symantec Corporation] {6D53EC84-6AAE-4787-AEEE-F4628F01010C}\(Default) = Norton Vulnerability Protection -> {HKLM...CLSID} = Norton Vulnerability Protection \InProcServer32\(Default) = C:\Programme\Norton Internet Security CBE\Engine\21.1.0.18\IPS\IPSBHO.DLL [Symantec Corporation] {761497BB-D6F0-462C-B6EB-D4DAF1D92D43}\(Default) = (no title provided) -> {HKLM...CLSID} = Java(tm) Plug-In SSV Helper \InProcServer32\(Default) = C:\Programme\Java\jre7\bin\ssv.dll [Oracle Corporation] {9030D464-4C02-4ABF-8ECC-5164760863C6}\(Default) = (no title provided) -> {HKLM...CLSID} = Windows Live Anmelde-Hilfsprogramm \InProcServer32\(Default) = C:\Programme\Gemeinsame Dateien\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [MS] {DBC80044-A445-435b-BC74-9C25C1C588A9}\(Default) = (no title provided) -> {HKLM...CLSID} = Java(tm) Plug-In 2 SSV Helper \InProcServer32\(Default) = C:\Programme\Java\jre7\bin\jp2ssv.dll [Oracle Corporation] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\ {88895560-9AA2-1069-930E-00AA0030EBC8} = Erweiterung fr HyperTerminal-Icons -> {HKLM...CLSID} = HyperTerminal Icon Ext \InProcServer32\(Default) = C:\WINDOWS\System32\hticons.dll [Hilgraeve, Inc.] {97090E2F-3062-4459-855B-014F0D3CDBB1} = Windows Search Deskbar -> {HKLM...CLSID} = Windows Search Deskbar \InProcServer32\(Default) = C:\Programme\Windows Desktop Search\deskbar.dll [MS] {13E7F612-F261-4391-BEA2-39DF4F3FA311} = Windows Desktop Search -> {HKLM...CLSID} = Windows Desktop Search \InProcServer32\(Default) = C:\Programme\Windows Desktop Search\msnlExt.dll [MS] {A70C977A-BF00-412C-90B7-034C51DA2439} = NvCpl DesktopContext Class -> {HKLM...CLSID} = DesktopContext Class \InProcServer32\(Default) = C:\WINDOWS\system32\nvcpl.dll [NVIDIA Corporation] {42042206-2D85-11D3-8CFF-005004838597} = Microsoft Office HTML Icon Handler -> {HKLM...CLSID} = (no title provided) \InProcServer32\(Default) = C:\Programme\Microsoft Office\Office10\msohev.dll [MS] {16148659-720A-457d-850B-2DBD87BB129D} = Audible Shlell Extension -> {HKLM...CLSID} = AudibleShlExt Class \InProcServer32\(Default) = C:\Programme\Audible\Bin\AudibleExt.dll [Audible, Inc.] {1CDB2949-8F65-4355-8456-263E7C208A5D} = Desktop Explorer -> {HKLM...CLSID} = Desktop Explorer \InProcServer32\(Default) = C:\Programme\NVIDIA Corporation\nview\nvshell.dll [NVIDIA Corporation] {1E9B04FB-F9E5-4718-997B-B8DA88302A47} = Desktop Explorer Menu -> {HKLM...CLSID} = (no title provided) \InProcServer32\(Default) = C:\Programme\NVIDIA Corporation\nview\nvshell.dll [NVIDIA Corporation] {1E9B04FB-F9E5-4718-997B-B8DA88302A48} = nView Desktop Context Menu -> {HKLM...CLSID} = nView Desktop Context Menu \InProcServer32\(Default) = C:\Programme\NVIDIA Corporation\nview\nvshell.dll [NVIDIA Corporation] {B41DB860-8EE4-11D2-9906-E49FADC173CA} = WinRAR shell extension -> {HKLM...CLSID} = WinRAR \InProcServer32\(Default) = C:\Programme\WinRAR\rarext.dll [Alexander Roshal] {e57ce731-33e8-4c51-8354-bb4de9d215d1} = Universelle Plug & Play-Ger„te -> {HKLM...CLSID} = Universelle Plug & Play-Ger„te \InProcServer32\(Default) = C:\WINDOWS\system32\upnpui.dll [MS] {993BE281-6695-4BA5-8A2A-7AACBFAAB69E} = Microsoft Office Metadata Handler -> {HKLM...CLSID} = Microsoft Office Metadata Handler \InProcServer32\(Default) = C:\PROGRA~1\GEMEIN~1\MICROS~1\OFFICE12\msoshext.dll [MS] {C41662BB-1FA0-4CE0-8DC5-9B7F8279FF97} = Microsoft Office Thumbnail Handler -> {HKLM...CLSID} = Microsoft Office Thumbnail Handler \InProcServer32\(Default) = C:\PROGRA~1\GEMEIN~1\MICROS~1\OFFICE12\msoshext.dll [MS] {40CC864B-947A-4e5d-A2E5-DB6777B55D8F} = DivX MKV file icon extension -> {HKLM...CLSID} = DivX MKV icon handler Class \InProcServer32\(Default) = C:\Programme\DivX\DivX Player\DPXIconHandler.dll [null data] {FFB699E0-306A-11d3-8BD1-00104B6F7516} = Play on my TV helper -> {HKLM...CLSID} = NVIDIA CPL Extension \InProcServer32\(Default) = C:\WINDOWS\system32\nvcpl.dll [NVIDIA Corporation] {0563DB41-F538-4B37-A92D-4659049B7766} = WLMD Message Handler -> {HKLM...CLSID} = CLSID_WLMCMimeFilter \InProcServer32\(Default) = C:\Programme\Windows Live\Mail\mailcomm.dll [MS] {00F33137-EE26-412F-8D71-F84E4C2C6625} = (no title provided) -> {HKLM...CLSID} = Windows Live Photo Gallery Viewer Autoplay Shim \InProcServer32\(Default) = C:\Programme\Windows Live\Photo Gallery\PhotoViewerShim.dll [MS] {00F346CB-35A4-465B-8B8F-65A29DBAB1F6} = Windows Live Photo Gallery Viewer Drop Target Shim -> {HKLM...CLSID} = Windows Live Photo Gallery Viewer Shim \InProcServer32\(Default) = C:\Programme\Windows Live\Photo Gallery\PhotoViewerShim.dll [MS] {00F3712A-CA79-45B4-9E4D-D7891E7F8B9D} = Windows Live Photo Gallery Editor Drop Target Shim -> {HKLM...CLSID} = Windows Live Photo Gallery Editor Shim \InProcServer32\(Default) = C:\Programme\Windows Live\Photo Gallery\PhotoViewerShim.dll [MS] {00F30F90-3E96-453B-AFCD-D71989ECC2C7} = Windows Live Photo Gallery Autoplay Drop Target Shim -> {HKLM...CLSID} = Windows Live Photo Gallery Viewer Autoplay Shim \InProcServer32\(Default) = C:\Programme\Windows Live\Photo Gallery\PhotoViewerShim.dll [MS] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks\ <<!>> {56F9679E-7826-4C84-81F3-532071A8BCC5} = (no title provided) -> {HKLM...CLSID} = Windows Desktop Search Namespace Manager \InProcServer32\(Default) = C:\Programme\Windows Desktop Search\MSNLNamespaceMgr.dll [MS] HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\ <<!>> igfxcui\DLLName = igfxdev.dll [Intel Corporation] HKLM\SOFTWARE\Classes\PROTOCOLS\Handler\ <<!>> livecall\CLSID = {828030A1-22C1-4009-854F-8E305202313F} -> {HKLM...CLSID} = (no title provided) \InProcServer32\(Default) = C:\PROGRA~1\WI1F86~1\MESSEN~1\MSGRAP~1.DLL [MS] <<!>> msnim\CLSID = {828030A1-22C1-4009-854F-8E305202313F} -> {HKLM...CLSID} = (no title provided) \InProcServer32\(Default) = C:\PROGRA~1\WI1F86~1\MESSEN~1\MSGRAP~1.DLL [MS] <<!>> wlmailhtml\CLSID = {03C514A3-1EFB-4856-9F99-10D7BE1653C0} -> {HKLM...CLSID} = Windows Live Mail HTML Asynchronous Pluggable Protocol Handler \InProcServer32\(Default) = C:\Programme\Windows Live\Mail\mailcomm.dll [MS] HKLM\SOFTWARE\Classes\*\shellex\ContextMenuHandlers\ ANotepad++\(Default) = {00F3C2EC-A6EE-11DE-A03A-EF8F55D89593} -> {HKLM...CLSID} = ANotepad++ \InProcServer32\(Default) = e:\Programme\Notepad++\NppShell_05.dll [null data] Symantec.Norton.Antivirus.IEContextMenu\(Default) = {FAD61B3D-699D-49B2-BE16-7F82CB4C59CA} -> {HKLM...CLSID} = IEContextMenu Class \InProcServer32\(Default) = "C:\Programme\Norton Internet Security CBE\Engine\21.1.0.18\NavShExt.dll" [Symantec Corporation] HKLM\SOFTWARE\Classes\*\shellex\PropertySheetHandlers\ {10670A99-FCCC-415C-8127-176332842618}\(Default) = (no title provided) -> {HKLM...CLSID} = ExFolderView ActiveX Control \InProcServer32\(Default) = F:\Programme\PixelNet Software\ExFolderView.dll [Exontrol Inc.] HKLM\SOFTWARE\Classes\AllFilesystemObjects\shellex\ContextMenuHandlers\ MBAMShlExt\(Default) = {57CE581A-0CB6-4266-9CA0-19364C90A0B3} -> {HKLM...CLSID} = MBAMShlExt Class \InProcServer32\(Default) = e:\Programme\Malwarebytes' Anti-Malware\mbamext.dll [Malwarebytes Corporation] HKLM\SOFTWARE\Classes\Directory\Background\shellex\ContextMenuHandlers\ 00nView\(Default) = {1E9B04FB-F9E5-4718-997B-B8DA88302A48} -> {HKLM...CLSID} = nView Desktop Context Menu \InProcServer32\(Default) = C:\Programme\NVIDIA Corporation\nview\nvshell.dll [NVIDIA Corporation] igfxcui\(Default) = {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} -> {HKLM...CLSID} = GraphicsShellExt Class \InProcServer32\(Default) = C:\WINDOWS\System32\igfxpph.dll [Intel Corporation] NvCplDesktopContext\(Default) = {A70C977A-BF00-412C-90B7-034C51DA2439} -> {HKLM...CLSID} = DesktopContext Class \InProcServer32\(Default) = C:\WINDOWS\system32\nvcpl.dll [NVIDIA Corporation] HKLM\SOFTWARE\Classes\Folder\shellex\ColumnHandlers\ {16148659-720A-457d-850B-2DBD87BB129D}\(Default) = Audible Column Ext -> {HKLM...CLSID} = AudibleShlExt Class \InProcServer32\(Default) = C:\Programme\Audible\Bin\AudibleExt.dll [Audible, Inc.] {F9DB5320-233E-11D1-9F84-707F02C10627}\(Default) = PDF Column Info -> {HKLM...CLSID} = PDF Shell Extension \InProcServer32\(Default) = C:\Programme\Gemeinsame Dateien\Adobe\Acrobat\ActiveX\PDFShell.dll [Adobe Systems, Inc.] HKLM\SOFTWARE\Classes\Folder\shellex\ContextMenuHandlers\ MBAMShlExt\(Default) = {57CE581A-0CB6-4266-9CA0-19364C90A0B3} -> {HKLM...CLSID} = MBAMShlExt Class \InProcServer32\(Default) = e:\Programme\Malwarebytes' Anti-Malware\mbamext.dll [Malwarebytes Corporation] Symantec.Norton.Antivirus.IEContextMenu\(Default) = {FAD61B3D-699D-49B2-BE16-7F82CB4C59CA} -> {HKLM...CLSID} = IEContextMenu Class \InProcServer32\(Default) = "C:\Programme\Norton Internet Security CBE\Engine\21.1.0.18\NavShExt.dll" [Symantec Corporation] WinRAR\(Default) = {B41DB860-8EE4-11D2-9906-E49FADC173CA} -> {HKLM...CLSID} = WinRAR \InProcServer32\(Default) = C:\Programme\WinRAR\rarext.dll [Alexander Roshal] {BB8DFEF6-E2F6-4167-BD4E-F65D882B740F}\(Default) = (no title provided) -> {HKLM...CLSID} = VcdImage Class \InProcServer32\(Default) = C:\Programme\Virtual CD v9\System\vc9extse.dll [H+H Software GmbH] HKLM\SOFTWARE\Classes\Folder\shellex\DragDropHandlers\ WinRAR\(Default) = {B41DB860-8EE4-11D2-9906-E49FADC173CA} -> {HKLM...CLSID} = WinRAR \InProcServer32\(Default) = C:\Programme\WinRAR\rarext.dll [Alexander Roshal] Group Policies {GPedit.msc branch and setting}: ----------------------------------------------- Note: detected settings may not have any effect. HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\ActiveDesktop\ NoChangingWallpaper = (REG_DWORD) dword:0x00000000 {User Configuration|Administrative Templates|Control Panel|Display| Prevent changing wallpaper} HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\ NoRecentDocsHistory = (REG_DWORD) dword:0x00000001 {unrecognized setting} NoDrives = (REG_DWORD) dword:0x00000000 {unrecognized setting} HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\ NoDrives = (REG_DWORD) dword:0x00000000 {unrecognized setting} HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\System\ DisableRegistryTools = (REG_DWORD) dword:0x00000000 {User Configuration|Administrative Templates|System| Prevent access to registry editing tools} DisableTaskMgr = (REG_DWORD) dword:0x00000000 {unrecognized setting} HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\ DisableRegistryTools = (REG_DWORD) dword:0x00000000 {unrecognized setting} Active Desktop and Wallpaper: ----------------------------- Active Desktop may be disabled at this entry: HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellState Displayed if Active Desktop enabled and wallpaper not set by Group Policy: HKCU\Software\Microsoft\Internet Explorer\Desktop\General\ Wallpaper = C:\WINDOWS\web\wallpaper\Grne Idylle.bmp Displayed if Active Desktop disabled and wallpaper not set by Group Policy: HKCU\Control Panel\Desktop\ Wallpaper = C:\WINDOWS\web\wallpaper\Grne Idylle.bmp Windows Portable Device AutoPlay Handlers ----------------------------------------- HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\AutoplayHandlers\Handlers\ AudialsUseStorageOnArrival\ Provider = Audials InvokeProgID = Audials.UseStorage InvokeVerb = open HKLM\SOFTWARE\Classes\Audials.UseStorage\shell\open\command\(Default) = C:\Programme\RapidSolution\AudialsOne 4\AudialsOne.exe -use_storage:%1 [RapidSolution Software AG] FreeEasyBurner\ Provider = FreeEasyBurner InvokeProgID = FreeEasyBurnerOpen InvokeVerb = Open HKLM\SOFTWARE\Classes\FreeEasyBurnerOpen\shell\Open\command\(Default) = C:\Programme\Free Easy CD DVD Burner\FreeEasyBurner.exe [Koyote Soft] MSLivePhotoAcqHWEventHandler\ Provider = @%ProgramFiles%\Windows Live\Photo Gallery\regres.dll,-10 ProgID = Microsoft.LivePhotoAcqHWEventHandler HKLM\SOFTWARE\Classes\Microsoft.LivePhotoAcqHWEventHandler\CLSID\(Default) = {3BD0ACD1-71CA-4475-92CC-E0AA0AAF843F} -> {HKLM...CLSID} = (no title provided) \LocalServer32\(Default) = C:\Programme\Windows Live\Photo Gallery\WLXPhotoAcquireWizard.exe [MS] MSLivePhotoAcquireDropHandler\ Provider = @%ProgramFiles%\Windows Live\Photo Gallery\regres.dll,-10 InvokeProgID = Microsoft.LivePhotoAcqDTShim.1 InvokeVerb = open HKLM\SOFTWARE\Classes\Microsoft.LivePhotoAcqDTShim.1\shell\open\DropTarget\CLSID = {00F33137-EE26-412F-8D71-F84E4C2C6625} -> {HKLM...CLSID} = Windows Live Photo Gallery Viewer Autoplay Shim \InProcServer32\(Default) = C:\Programme\Windows Live\Photo Gallery\PhotoViewerShim.dll [MS] MSLiveShowPicturesOnArrival\ Provider = @%ProgramFiles%\Windows Live\Photo Gallery\regres.dll,-10 InvokeProgID = Microsoft.Photos.LiveAutoplayShim.1 InvokeVerb = open HKLM\SOFTWARE\Classes\Microsoft.Photos.LiveAutoplayShim.1\shell\open\DropTarget\CLSID = {00F30F90-3E96-453B-AFCD-D71989ECC2C7} -> {HKLM...CLSID} = Windows Live Photo Gallery Viewer Autoplay Shim \InProcServer32\(Default) = C:\Programme\Windows Live\Photo Gallery\PhotoViewerShim.dll [MS] MSLiveVideoCameraArrivalCaptureWizard\ Provider = @%ProgramFiles%\Windows Live\Photo Gallery\regres.dll,-10 ProgID = WLXAutoPlayMgr.WLXHWEventHandler InitCmdLine = WLXVideoAcquireWizard HKLM\SOFTWARE\Classes\WLXAutoPlayMgr.WLXHWEventHandler\CLSID\(Default) = {9B5C97F6-B3A5-4A6D-8B03-993EC7291A22} -> {HKLM...CLSID} = WLXWEventHandler Class \LocalServer32\(Default) = "C:\Programme\Windows Live\Photo Gallery\WLXVideoCameraAutoPlayManager.exe" [MS] MSWPDShellNamespaceHandler\ Provider = @%SystemRoot%\System32\WPDShextRes.dll,-501 CLSID = {A55803CC-4D53-404c-8557-FD63DBA95D24} InitCmdLine = -> {HKLM...CLSID} = WPDShextAutoplay \LocalServer32\(Default) = C:\WINDOWS\system32\WPDShextAutoplay.exe [MS] NokiaOviSuite\ Provider = Nokia Suite ProgID = Nokia.Suite InitCmdLine = -autoplay HKLM\SOFTWARE\Classes\Nokia.Suite\CLSID\(Default) = {27F341A3-9735-41a3-AC51-75734826845F} -> {HKLM...CLSID} = Nokia Suite \LocalServer32\(Default) = C:/Programme/Nokia/Nokia Suite/NokiaSuite.exe [Nokia] PaperPort11AutoPlay\ Provider = PaperPort 11 InvokeProgID = PaperPort.AutoplayHandler InvokeVerb = open HKLM\SOFTWARE\Classes\PaperPort.AutoplayHandler\shell\open\command\(Default) = C:\Programme\ScanSoft\PaperPort\PaprPort.exe /folder %L [Nuance Communications, Inc.] PCinemaDCameraArrival\ Provider = PowerCinema InvokeProgID = Picture InvokeVerb = PlayWithPowerCinema HKLM\SOFTWARE\Classes\Picture\shell\PlayWithPowerCinema\Command\(Default) = "C:\Programme\Medion\PowerCinema\PCM2.exe" DSC [empty string] PCinemaDVArrival\ Provider = PowerCinema ProgID = Shell.HWEventHandlerShellExecute InitCmdLine = "C:\Programme\Medion\PowerCinema\PCM2.exe" DV HKLM\SOFTWARE\Classes\Shell.HWEventHandlerShellExecute\CLSID\(Default) = {FFB8655F-81B9-4fce-B89C-9A6BA76D13E7} -> {HKLM...CLSID} = ShellExecute HW Event Handler \LocalServer32\(Default) = rundll32.exe shell32.dll,SHCreateLocalServerRunDll {FFB8655F-81B9-4fce-B89C-9A6BA76D13E7} [MS] PCinemaPlayCDAudioOnArrival\ Provider = PowerCinema InvokeProgID = AudioCD InvokeVerb = PlayWithPowerCinema HKLM\SOFTWARE\Classes\AudioCD\shell\PlayWithPowerCinema\Command\(Default) = "C:\Programme\Medion\PowerCinema\PCM2.exe" CD "%L" [empty string] PCinemaPlayDVDMovieOnArrival\ Provider = PowerCinema InvokeProgID = DVD InvokeVerb = PlayWithPowerCinema HKLM\SOFTWARE\Classes\DVD\shell\PlayWithPowerCinema\Command\(Default) = "C:\Programme\Medion\PowerCinema\PCM2.exe" MOVIE "%L" [empty string] PDirDVArrival\ Provider = @C:\Programme\Medion\PowerDirector\PDrt.dll,-901 ProgID = Shell.HWEventHandlerShellExecute InitCmdLine = C:\Programme\Medion\PowerDirector\PowerDirector.exe /DV HKLM\SOFTWARE\Classes\Shell.HWEventHandlerShellExecute\CLSID\(Default) = {FFB8655F-81B9-4fce-B89C-9A6BA76D13E7} -> {HKLM...CLSID} = ShellExecute HW Event Handler \LocalServer32\(Default) = rundll32.exe shell32.dll,SHCreateLocalServerRunDll {FFB8655F-81B9-4fce-B89C-9A6BA76D13E7} [MS] PDVDPlayDVDMovieOnArrival\ Provider = PowerDVD InvokeProgID = DVD InvokeVerb = PlayWithPowerDVD HKLM\SOFTWARE\Classes\DVD\shell\PlayWithPowerDVD\Command\(Default) = "C:\Programme\Medion\PowerDVD\PowerDVD.exe" "%l" [CyberLink Corp.] VirtualCD9BurnCD\ Provider = Virtual CD v9 Brenner InvokeProgID = VirtualCD.9 InvokeVerb = burn HKLM\SOFTWARE\Classes\VirtualCD.9\shell\burn\command\(Default) = "C:\Programme\Virtual CD v9\System\vc9burn.exe" %L [H+H Software GmbH] VirtualCD9CreateVCD\ Provider = Virtual CD v9 Containerassistent InvokeProgID = VirtualCD.9 InvokeVerb = create HKLM\SOFTWARE\Classes\VirtualCD.9\shell\create\command\(Default) = "C:\Programme\Virtual CD v9\System\vc9build.exe" %L [H+H Software GmbH] Startup items in "feuer" & "All Users" startup folders: ------------------------------------------------------- C:\Dokumente und Einstellungen\feuer\Startmen\Programme\Autostart {++} ubisoft register -> shortcut to: C:\Programme\Ubi Soft\Register\schedule.exe /19.03.2014 06:58:33 /game=Die Siedler IV Gold+ Edition /language=German /country=Germany /url=hxxp://register-it.ubi.com/register.asp [Ubi Soft] C:\Dokumente und Einstellungen\All Users\Startmen\Programme\Autostart {++} Secunia PSI Tray -> shortcut to: C:\Programme\Secunia\PSI\psi_tray.exe [Secunia] Enabled Scheduled Tasks: {++} ------------------------ Adobe Flash Player Updater -> launches: C:\WINDOWS\system32\Macromed\Flash\FlashPlayerUpdateService.exe [Adobe Systems Incorporated] Ende des Supports fr Microsoft Windows XP - Benachrichtigung - Anmeldung -> launches: C:\WINDOWS\system32\xp_eos.exe -c [MS] Ende des Supports fr Microsoft Windows XP - Monatliche Benachrichtigung -> launches: C:\WINDOWS\system32\xp_eos.exe [MS] GoogleUpdateTaskMachineCore -> launches: C:\Programme\Google\Update\GoogleUpdate.exe /c [Google Inc.] GoogleUpdateTaskMachineUA -> launches: C:\Programme\Google\Update\GoogleUpdate.exe /ua /installsource scheduler [Google Inc.] RegistryDr_Popup -> launches: C:\Programme\Registry Dr\Splash.exe true [file not found] Winsock2 Service Provider DLLs: ------------------------------- Namespace Service Providers HKLM\SYSTEM\CurrentControlSet\Services\Winsock2\Parameters\NameSpace_Catalog5\Catalog_Entries\ {++} 000000000001\LibraryPath = %SystemRoot%\System32\mswsock.dll [MS] 000000000002\LibraryPath = %SystemRoot%\System32\winrnr.dll [MS] 000000000003\LibraryPath = %SystemRoot%\System32\mswsock.dll [MS] 000000000004\LibraryPath = C:\WINDOWS\system32\pnrpnsp.dll [MS] 000000000005\LibraryPath = C:\WINDOWS\system32\pnrpnsp.dll [MS] 000000000006\LibraryPath = %SystemRoot%\System32\nwprovau.dll [MS] Transport Service Providers HKLM\SYSTEM\CurrentControlSet\Services\Winsock2\Parameters\Protocol_Catalog9\Catalog_Entries\ {++} 0000000000##\PackedCatalogItem (contains) DLL [Company Name], (at) ## range: C:\WINDOWS\system32\PCProtect.dll [Objectify Media Inc], 01 - 02, 36 %SystemRoot%\system32\mswsock.dll [MS], 03 - 05, 08 - 35 %SystemRoot%\system32\rsvpsp.dll [MS], 06 - 07 Toolbars, Explorer Bars, Extensions: ------------------------------------ Toolbars HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar\ {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} = Norton Toolbar -> {HKLM...CLSID} = Norton Toolbar \InProcServer32\(Default) = C:\Programme\Norton Internet Security CBE\Engine\21.1.0.18\coIEPlg.dll [Symantec Corporation] Extensions (Tools menu items, main toolbar menu buttons) HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\ {219C3416-8CB2-491A-A3C7-D9FCDDC9D600}\ ButtonText = In Blog ver”ffentlichen MenuText = In Windows Live Writer in Blog ver”ffentliche&n CLSIDExtension = {5F7B1267-94A9-47F5-98DB-E99415F33AEC} -> {HKLM...CLSID} = BlogThisToolbarButton Class \InProcServer32\(Default) = C:\Programme\Windows Live\Writer\WriterBrowserExtension.dll [MS] {6CA2A4DE-483E-456B-8634-6445460D7097}\ ButtonText = FlowSurf CLSIDExtension = {6CA2A4DE-483E-456B-8634-6445460D7097} -> {HKLM...CLSID} = HelloWorldToolbar Class \InProcServer32\(Default) = C:\Programme\Flowsurf\FlowSurf.dll [file not found] {E2E2DD38-D088-4134-82B7-F2BA38496583}\ MenuText = @xpsp3res.dll,-20001 Exec = %windir%\Network Diagnostic\xpnetdiag.exe [MS] {FB5F1910-F110-11D2-BB9E-00C04F795683}\ ButtonText = Messenger MenuText = Windows Messenger Exec = C:\Programme\Messenger\msmsgs.exe [MS] Running Services (Display Name, Service Name, Path {Service DLL}): ------------------------------------------------------------------ BBUpdate, BBUpdate, C:\Programme\Microsoft\BingBar\SeaPort.EXE [MS] Einfache TCP/IP-Dienste, SimpTcp, C:\WINDOWS\System32\tcpsvcs.exe [MS] IPv6-Hilfsdienst, 6to4, C:\WINDOWS\system32\svchost.exe -k netsvcs {C:\WINDOWS\System32\6to4svc.dll [MS]} Norton Internet Security CBE, NIS, "C:\Programme\Norton Internet Security CBE\Engine\21.1.0.18\NIS.exe" /s "NIS" /m "C:\Programme\Norton Internet Security CBE\Engine\21.1.0.18\diMaster.dll" /prefetch:1 [Symantec Corporation] NVIDIA Driver Helper Service, NVSvc, C:\WINDOWS\system32\nvsvc32.exe [NVIDIA Corporation] NVIDIA Update Service Daemon, nvUpdatusService, "C:\Programme\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe" [NVIDIA Corporation] RIP-šberwachung, Iprip, C:\WINDOWS\System32\svchost.exe -k netsvcs {C:\WINDOWS\System32\iprip.dll [MS]} Secunia PSI Agent, Secunia PSI Agent, C:\Programme\Secunia\PSI\PSIA.exe --start-service [Secunia] Secunia Update Agent, Secunia Update Agent, C:\Programme\Secunia\PSI\sua.exe --start-service [Secunia] Virtual CD v9 Management Service, VC9SecS, C:\Programme\Virtual CD v9\System\VC9SecS.exe [H+H Software GmbH] Windows Search, WSearch, C:\WINDOWS\system32\SearchIndexer.exe /Embedding [MS] Safe Mode Drivers & Services (subkey name, subkey default value): ----------------------------------------------------------------- HKLM\System\CurrentControlSet\Control\SafeBoot\Minimal\ <<!>> pcwatch.sys, Driver <<!>> PEVSystemStart, Service HKLM\System\CurrentControlSet\Control\SafeBoot\Network\ <<!>> PCProtect, service <<!>> pcwatch.sys, Driver <<!>> PEVSystemStart, Service ==== Empty IE Cache ====================== C:\Dokumente und Einstellungen\Gast\Lokale Einstellungen\Temporary Internet Files\Content.IE5 emptied successfully C:\WINDOWS\system32\config\systemprofile\Lokale Einstellungen\Temporary Internet Files\Content.IE5 emptied successfully C:\WINDOWS\system32\config\systemprofile\Lokale Einstellungen\Temporary Internet Files\Content.IE5 emptied successfully C:\Dokumente und Einstellungen\feuer\Lokale Einstellungen\Temporary Internet Files\Content.IE5\index.dat will be deleted at reboot C:\Dokumente und Einstellungen\LocalService\Lokale Einstellungen\Temporary Internet Files\Content.IE5\index.dat will be deleted at reboot C:\Dokumente und Einstellungen\NetworkService\Lokale Einstellungen\Temporary Internet Files\Content.IE5\index.dat will be deleted at reboot C:\Dokumente und Einstellungen\UpdatusUser\Lokale Einstellungen\Temporary Internet Files\Content.IE5\index.dat will be deleted at reboot ==== Empty FireFox Cache ====================== C:\Dokumente und Einstellungen\feuer\Lokale Einstellungen\Anwendungsdaten\Mozilla\Firefox\Profiles\qhdllhf9.default-1394709733765\Cache emptied successfully C:\Dokumente und Einstellungen\Gast\Lokale Einstellungen\Anwendungsdaten\Mozilla\Firefox\Profiles\pbu2gtes.default\Cache emptied successfully ==== Empty Chrome Cache ====================== C:\Dokumente und Einstellungen\feuer\Lokale Einstellungen\Anwendungsdaten\Google\Chrome\User Data\Default\Cache emptied successfully ==== Empty All Flash Cache ====================== Flash Cache Emptied Successfully ==== Empty All Java Cache ====================== Java Cache cleared successfully ==== C:\zoek_backup content ====================== C:\zoek_backup (files=1873 folders=116 298141715 bytes) ==== Empty Temp Folders ====================== C:\Dokumente und Einstellungen\Default User\Lokale Einstellungen\temp emptied successfully C:\Dokumente und Einstellungen\feuer\Lokale Einstellungen\Temp will be emptied at reboot C:\Dokumente und Einstellungen\Gast\Lokale Einstellungen\temp emptied successfully C:\Dokumente und Einstellungen\LocalService\Lokale Einstellungen\Temp emptied successfully C:\Dokumente und Einstellungen\NetworkService\Lokale Einstellungen\temp emptied successfully C:\Dokumente und Einstellungen\UpdatusUser\Lokale Einstellungen\temp emptied successfully C:\WINDOWS\Temp will be emptied at reboot ==== After Reboot ====================== ==== Empty Temp Folders ====================== C:\WINDOWS\Temp successfully emptied C:\DOKUME~1\feuer\LOKALE~1\Temp successfully emptied ==== Deleting Files / Folders ====================== "C:\WINDOWS\system32\PCProtect.dll" not deleted "C:\Dokumente und Einstellungen\feuer\Lokale Einstellungen\Temporary Internet Files\Content.IE5\index.dat" not found "C:\Dokumente und Einstellungen\LocalService\Lokale Einstellungen\Temporary Internet Files\Content.IE5\index.dat" not deleted "C:\Dokumente und Einstellungen\NetworkService\Lokale Einstellungen\Temporary Internet Files\Content.IE5\index.dat" not found "C:\Dokumente und Einstellungen\UpdatusUser\Lokale Einstellungen\Temporary Internet Files\Content.IE5\index.dat" not found ==== EOF on 19.03.2014 at 1:41:14,65 ====================== |
19.03.2014, 01:50 | #49 |
| Windows XP: Browser verursacht Werbung FRST.txt: FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 09-03-2014 Ran by feuer (administrator) on FEUER-4072ISAQU on 19-03-2014 01:43:58 Running from C:\Dokumente und Einstellungen\feuer\Eigene Dateien\Downloads Microsoft Windows XP Home Edition Service Pack 3 (X86) OS Language: German Standard Internet Explorer Version 8 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (Microsoft Corporation.) C:\Programme\Microsoft\BingBar\BBSvc.EXE (Microsoft Corporation) C:\Programme\Microsoft\BingBar\SeaPort.EXE (Symantec Corporation) C:\Programme\Norton Internet Security CBE\Engine\21.1.0.18\NIS.exe (NVIDIA Corporation) C:\WINDOWS\system32\nvsvc32.exe (NVIDIA Corporation) C:\Programme\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe (Google Inc.) C:\Programme\Google\Update\1.3.22.5\GoogleCrashHandler.exe (Symantec Corporation) C:\Programme\Norton Internet Security CBE\Engine\21.1.0.18\NIS.exe (Secunia) C:\Programme\Secunia\PSI\PSIA.exe (Creative Technology Ltd) C:\Programme\Creative\Surround Mixer\CTSysVol.exe (NVIDIA Corporation) C:\Programme\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe () C:\Programme\DivX\DivX Update\DivXUpdate.exe (Realtek Semiconductor Corp.) C:\WINDOWS\RTHDCPL.EXE () C:\WINDOWS\system32\rmctrl.exe (Secunia) C:\Programme\Secunia\PSI\psi_tray.exe (Microsoft Corporation) C:\WINDOWS\System32\tcpsvcs.exe (H+H Software GmbH) C:\Programme\Virtual CD v9\System\VC9SecS.exe (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe (Microsoft Corporation) C:\WINDOWS\system32\wscntfy.exe (Secunia) C:\Programme\Secunia\PSI\sua.exe (Mozilla Corporation) C:\Programme\Mozilla Firefox\firefox.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [Adobe ARM] - C:\Programme\Gemeinsame Dateien\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated) HKLM\...\Run: [CTSysVol] - C:\Programme\Creative\Surround Mixer\CTSysVol.exe [57344 2005-10-31] (Creative Technology Ltd) HKLM\...\Run: [Nvtmru] - C:\Programme\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe [1012000 2013-05-16] (NVIDIA Corporation) HKLM\...\Run: [SSBkgdUpdate] - C:\Programme\Gemeinsame Dateien\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe [210472 2006-10-25] (Nuance Communications, Inc.) HKLM\...\Run: [DelReg] - C:\Programme\MSI\DualCoreCenter\DelReg.exe [196608 2008-05-13] () HKLM\...\Run: [DivXUpdate] - C:\Programme\DivX\DivX Update\DivXUpdate.exe [1861968 2013-11-15] () HKLM\...\Run: [RTHDCPL] - C:\WINDOWS\RTHDCPL.EXE [20145368 2014-02-15] (Realtek Semiconductor Corp.) HKLM\...\Run: [RemoteControl] - C:\WINDOWS\system32\rmctrl.exe [32768 2000-10-16] () HKLM\...\Run: [APSDaemon] - C:\Programme\Gemeinsame Dateien\Apple\Apple Application Support\APSDaemon.exe [59720 2013-04-21] (Apple Inc.) HKLM\...\Run: [BingDesktop] - C:\Programme\Microsoft\BingDesktop\BingDesktop.exe /fromkey HKLM\...\Run: [NvCplDaemon] - C:\WINDOWS\system32\NvCpl.dll [15677728 2013-06-21] (NVIDIA Corporation) HKLM\...\Run: [NvMediaCenter] - C:\WINDOWS\system32\NvMcTray.dll [223008 2013-06-21] (NVIDIA Corporation) HKU\S-1-5-21-1085031214-790525478-725345543-1004\...\Run: [SetDefaultMIDI] - C:\WINDOWS\MIDIDef.exe [49152 2002-12-03] (Creative Technology Ltd) HKU\S-1-5-21-1085031214-790525478-725345543-1004\...\Policies\Explorer: [NoRecentDocsHistory] 1 Startup: C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Autostart\Secunia PSI Tray.lnk ShortcutTarget: Secunia PSI Tray.lnk -> C:\Programme\Secunia\PSI\psi_tray.exe (Secunia) Startup: C:\Dokumente und Einstellungen\feuer\Startmenü\Programme\Autostart\ubisoft register.lnk ShortcutTarget: ubisoft register.lnk -> C:\Programme\Ubi Soft\Register\schedule.exe (Ubi Soft) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://de.msn.com/?ocid=iehp HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://de.msn.com/ HKCU\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://www.bing.com/ HKCU\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = hxxp://www.bing.com/ HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.msn.com/?pc=BDT1&ocid=BDT1DHP HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://de.msn.com/ HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://de.msn.com/ HKLM\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = hxxp://www.bing.com/ HKLM\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://www.bing.com/ SearchScopes: HKCU - {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = hxxp://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}&ie={inputEncoding}&oe={outputEncoding}&startIndex={startIndex?}&startPage={startPage} BHO: No Name - {5C255C8A-E604-49b4-9D64-90988571CECB} - No File BHO: Norton Identity Protection - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Programme\Norton Internet Security CBE\Engine\21.1.0.18\coIEPlg.dll (Symantec Corporation) BHO: Norton Vulnerability Protection - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Programme\Norton Internet Security CBE\Engine\21.1.0.18\IPS\IPSBHO.DLL (Symantec Corporation) BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Programme\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO: Windows Live Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Programme\Gemeinsame Dateien\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation) BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Programme\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) Toolbar: HKLM - Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Programme\Norton Internet Security CBE\Engine\21.1.0.18\coIEPlg.dll (Symantec Corporation) Toolbar: HKCU - &Adresse - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - C:\WINDOWS\System32\browseui.dll (Microsoft Corporation) Toolbar: HKCU - &Links - {0E5CBF21-D15F-11D0-8301-00AA005B4383} - C:\WINDOWS\system32\SHELL32.dll (Microsoft Corporation) Toolbar: HKCU - No Name - {604BC32A-9680-40D1-9AC6-E06B23A1BA4C} - No File Toolbar: HKCU - No Name - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No File DPF: {17492023-C23A-453E-A040-C7C580BBF700} hxxp://go.microsoft.com/fwlink/?linkid=39204 DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} hxxp://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1304073907390 DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} hxxp://update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1379302733234 DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} hxxp://java.sun.com/update/1.7.0/jinstall-1_7_0_51-windows-i586.cab DPF: {CAFEEFAC-0017-0000-0051-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.7.0/jinstall-1_7_0_51-windows-i586.cab DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.7.0/jinstall-1_7_0_51-windows-i586.cab Handler: http\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\System\OLE DB\msdaipp.dll (Microsoft Corporation) Handler: http\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\System\OLE DB\msdaipp.dll (Microsoft Corporation) Handler: https\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\System\OLE DB\msdaipp.dll (Microsoft Corporation) Handler: https\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\System\OLE DB\msdaipp.dll (Microsoft Corporation) Handler: ipp\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\System\OLE DB\msdaipp.dll (Microsoft Corporation) Handler: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\Programme\Windows Live\Messenger\msgrapp.14.0.8117.0416.dll (Microsoft Corporation) Handler: msdaipp\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\System\OLE DB\msdaipp.dll (Microsoft Corporation) Handler: msdaipp\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\System\OLE DB\msdaipp.dll (Microsoft Corporation) Handler: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\Programme\Windows Live\Messenger\msgrapp.14.0.8117.0416.dll (Microsoft Corporation) Handler: wlmailhtml - {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - C:\Programme\Windows Live\Mail\mailcomm.dll (Microsoft Corporation) ShellExecuteHooks: Windows Desktop Search Namespace Manager - {56F9679E-7826-4C84-81F3-532071A8BCC5} - C:\Programme\Windows Desktop Search\MsnlNamespaceMgr.dll [304128 2009-05-24] (Microsoft Corporation) Winsock: Catalog5 04 C:\WINDOWS\system32\pnrpnsp.dll [58880] (Microsoft Corporation) Winsock: Catalog5 05 C:\WINDOWS\system32\pnrpnsp.dll [58880] (Microsoft Corporation) Winsock: Catalog9 01 C:\WINDOWS\system32\PCProtect.dll [293984] (Objectify Media Inc) Winsock: Catalog9 02 C:\WINDOWS\system32\PCProtect.dll [293984] (Objectify Media Inc) Winsock: Catalog9 36 C:\WINDOWS\system32\PCProtect.dll [293984] (Objectify Media Inc) Tcpip\Parameters: [DhcpNameServer] 192.168.0.1 FireFox: ======== FF ProfilePath: C:\Dokumente und Einstellungen\feuer\Anwendungsdaten\Mozilla\Firefox\Profiles\qhdllhf9.default-1394709733765 FF Plugin: @adobe.com/FlashPlayer - C:\WINDOWS\system32\Macromed\Flash\NPSWF32_12_0_0_77.dll () FF Plugin: @adobe.com/ShockwavePlayer - C:\WINDOWS\system32\Adobe\Director\np32dsw_1210150.dll (Adobe Systems, Inc.) FF Plugin: @divx.com/DivX VOD Helper,version=1.0.0 - C:\Programme\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.) FF Plugin: @divx.com/DivX Web Player Plug-In,version=1.0.0 - C:\Programme\DivX\DivX Web Player\npdivx32.dll (DivX, LLC) FF Plugin: @java.com/DTPlugin,version=10.51.2 - C:\WINDOWS\system32\npdeployJava1.dll (Oracle Corporation) FF Plugin: @java.com/JavaPlugin - C:\Programme\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=10.51.2 - C:\Programme\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - C:\Programme\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation) FF Plugin: @microsoft.com/OfficeLive,version=1.5 - C:\Programme\Microsoft\Office Live\npOLW.dll (Microsoft Corp.) FF Plugin: @microsoft.com/WLPG,version=14.0.8117.0416 - C:\Programme\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin: @microsoft.com/WPF,version=3.5 - C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation) FF Plugin: @nokia.com/EnablerPlugin - C:\Programme\Nokia\Nokia Suite\npNokiaSuiteEnabler.dll ( ) FF Plugin: @tools.google.com/Google Update;version=3 - C:\Programme\Google\Update\1.3.22.5\npGoogleUpdate3.dll (Google Inc.) FF Plugin: @tools.google.com/Google Update;version=9 - C:\Programme\Google\Update\1.3.22.5\npGoogleUpdate3.dll (Google Inc.) FF Plugin: Adobe Reader - C:\Programme\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF SearchPlugin: C:\Programme\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Programme\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Programme\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Programme\mozilla firefox\browser\searchplugins\yahoo-de.xml FF Extension: Greasemonkey - C:\Dokumente und Einstellungen\feuer\Anwendungsdaten\Mozilla\Firefox\Profiles\qhdllhf9.default-1394709733765\Extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}.xpi [2014-03-14] FF HKLM\...\Firefox\Extensions: [{BBDA0591-3099-440a-AA10-41764D9DB4DB}] - C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_21.0.0.100\IPSFF FF Extension: Norton Vulnerability Protection - C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_21.0.0.100\IPSFF [2013-11-29] FF HKLM\...\Firefox\Extensions: [{2D3F3651-74B9-4795-BDEC-6DA2F431CB62}] - C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_21.0.0.100\coFFPlgn\ FF Extension: Norton Toolbar - C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_21.0.0.100\coFFPlgn\ [] ========================== Services (Whitelisted) ================= R2 6to4; C:\WINDOWS\System32\6to4svc.dll [100864 2010-02-12] (Microsoft Corporation) R2 BBSvc; C:\Programme\Microsoft\BingBar\BBSvc.EXE [196176 2011-10-21] (Microsoft Corporation.) R2 BBUpdate; C:\Programme\Microsoft\BingBar\SeaPort.EXE [249648 2011-10-13] (Microsoft Corporation) S3 fsssvc; C:\Programme\Windows Live\Family Safety\fsssvc.exe [704872 2010-04-28] (Microsoft Corporation) S2 gupdate; C:\Programme\Google\Update\GoogleUpdate.exe [116648 2014-03-07] (Google Inc.) S3 gupdatem; C:\Programme\Google\Update\GoogleUpdate.exe [116648 2014-03-07] (Google Inc.) R2 Iprip; C:\WINDOWS\System32\iprip.dll [36864 2008-04-14] (Microsoft Corporation) S3 MozillaMaintenance; C:\Programme\Mozilla Maintenance Service\maintenanceservice.exe [118896 2014-02-13] (Mozilla Foundation) R2 NIS; C:\Programme\Norton Internet Security CBE\Engine\21.1.0.18\NIS.exe [275696 2013-10-08] (Symantec Corporation) R2 nvUpdatusService; C:\Programme\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [1826592 2013-05-16] (NVIDIA Corporation) S3 p2pgasvc; C:\WINDOWS\system32\p2pgasvc.dll [105472 2008-04-14] (Microsoft Corporation) S3 SandraAgentSrv; C:\Programme\SiSoftware\SiSoftware Sandra Lite 2011.SP2\RpcAgentSrv.exe [93848 2009-08-10] (SiSoftware) R2 Secunia PSI Agent; C:\Programme\Secunia\PSI\PSIA.exe [1229528 2013-12-06] (Secunia) R2 Secunia Update Agent; C:\Programme\Secunia\PSI\sua.exe [662232 2013-12-06] (Secunia) S3 ServiceLayer; C:\Programme\PC Connectivity Solution\ServiceLayer.exe [737616 2013-04-18] (Nokia) R2 VC9SecS; C:\Programme\Virtual CD v9\System\VC9SecS.exe [132424 2009-10-01] (H+H Software GmbH) S3 WMPNetworkSvc; C:\Programme\Windows Media Player\WMPNetwk.exe [920576 2006-11-03] (Microsoft Corporation) S3 x10nets; C:\Programme\Common Files\X10\Common\X10nets.exe [20480 2001-11-12] (X10) S3 PCProtect; C:\Programme\Web Protect\PCProtect.exe [X] ==================== Drivers (Whitelisted) ==================== S3 3xHybrid; C:\WINDOWS\System32\DRIVERS\3xHybrid.sys [1315936 2011-04-30] (NXP Semiconductors Germany GmbH) R2 ACEDRV07; C:\WINDOWS\system32\drivers\ACEDRV07.sys [101376 2013-02-05] (Protect Software GmbH) S3 Ambfilt; C:\WINDOWS\System32\drivers\Ambfilt.sys [1691480 2014-02-15] (Creative) R1 BHDrvx86; C:\Programme\Norton Internet Security CBE\NortonData\21.0.0.100\Definitions\BASHDefs\20140214.001\BHDrvx86.sys [1098968 2013-12-18] (Symantec Corporation) S3 BrScnUsb; C:\WINDOWS\System32\DRIVERS\BrScnUsb.sys [15295 2004-10-15] (Brother Industries Ltd.) S3 CCDECODE; C:\WINDOWS\System32\DRIVERS\CCDECODE.sys [17024 2008-04-13] (Microsoft Corporation) R1 ccSet_NIS; C:\WINDOWS\system32\drivers\NIS\1501000.012\ccSetx86.sys [127064 2013-09-26] (Symantec Corporation) R1 eeCtrl; C:\Programme\Gemeinsame Dateien\Symantec Shared\EENGINE\eeCtrl.sys [376920 2014-01-30] (Symantec Corporation) R3 EraserUtilRebootDrv; C:\Programme\Gemeinsame Dateien\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [108120 2013-11-29] (Symantec Corporation) R2 fssfltr; C:\WINDOWS\System32\DRIVERS\fssfltr_tdi.sys [54760 2010-04-28] (Microsoft Corporation) R0 giveio; C:\WINDOWS\System32\giveio.sys [5248 1996-04-03] () R3 HCWBT8xx; C:\WINDOWS\System32\drivers\HCWBT8XX.sys [472644 2006-01-25] (Hauppauge Computer Works) S3 HdAudAddService; C:\WINDOWS\System32\drivers\AtiHdAud.sys [84992 2006-12-28] (ATI Research Inc.) S3 HH9Help.sys; C:\WINDOWS\system32\drivers\HH9Help.sys [11392 2006-09-20] (H+H Software GmbH) R0 hotcore3; C:\WINDOWS\System32\DRIVERS\hotcore3.sys [58464 2012-05-18] (Paragon Software Group) R3 IDSxpx86; C:\Programme\Norton Internet Security CBE\NortonData\21.0.0.100\Definitions\IPSDefs\20140317.001\IDSxpx86.sys [383128 2014-03-06] (Symantec Corporation) S3 Monfilt; C:\WINDOWS\System32\drivers\Monfilt.sys [1395800 2014-02-15] (Creative Technology Ltd.) S3 MPE; C:\WINDOWS\System32\DRIVERS\MPE.sys [15232 2008-04-13] (Microsoft Corporation) S3 MTK; C:\WINDOWS\System32\Drivers\fide.sys [15271 2014-03-10] (MediaTek Corporation) S3 NAVENG; C:\Programme\Norton Internet Security CBE\NortonData\21.0.0.100\Definitions\VirusDefs\20140318.001\NAVENG.SYS [93272 2014-03-18] (Symantec Corporation) S3 NAVEX15; C:\Programme\Norton Internet Security CBE\NortonData\21.0.0.100\Definitions\VirusDefs\20140318.001\NAVEX15.SYS [1612376 2014-03-18] (Symantec Corporation) S3 NdisIP; C:\WINDOWS\System32\DRIVERS\NdisIP.sys [10880 2008-04-13] (Microsoft Corporation) S3 nm; C:\WINDOWS\System32\DRIVERS\NMnt.sys [40320 2008-04-13] (Microsoft Corporation) R3 NVHDA; C:\WINDOWS\System32\drivers\nvhda32.sys [128672 2014-02-15] (NVIDIA Corporation) R2 NwlnkIpx; C:\WINDOWS\System32\DRIVERS\nwlnkipx.sys [88320 2008-04-13] (Microsoft Corporation) R2 NwlnkNb; C:\WINDOWS\System32\DRIVERS\nwlnknb.sys [63232 2002-08-29] (Microsoft Corporation) R2 NwlnkSpx; C:\WINDOWS\System32\DRIVERS\nwlnkspx.sys [55936 2002-08-29] (Microsoft Corporation) R3 P17; C:\WINDOWS\System32\drivers\P17.sys [1135104 2007-12-28] (Creative Technology Ltd.) R1 pcwatch; C:\WINDOWS\system32\Drivers\pcwatch.sys [19840 2014-01-08] () R3 pfc; C:\WINDOWS\System32\drivers\pfc.sys [13780 2002-04-19] (Padus, Inc.) R3 PSI; C:\WINDOWS\System32\DRIVERS\psi_mf_x86.sys [16024 2013-12-06] (Secunia) S3 RTCore32; C:\Programme\EVGA Precision\RTCore32.sys [4608 2005-05-25] () S3 SANDRA; C:\Programme\SiSoftware\SiSoftware Sandra Lite 2011.SP2\WNt500x86\Sandra.sys [23112 2009-08-07] (SiSoftware) R0 speedfan; C:\WINDOWS\System32\speedfan.sys [24184 2012-12-29] (Almico Software) S3 SRTSP; C:\WINDOWS\System32\Drivers\NIS\1501000.012\SRTSP.SYS [651352 2013-09-27] (Symantec Corporation) R1 SRTSPX; C:\WINDOWS\system32\drivers\NIS\1501000.012\SRTSPX.SYS [32344 2013-07-31] (Symantec Corporation) R0 SymDS; C:\WINDOWS\System32\drivers\NIS\1501000.012\SYMDS.SYS [367704 2013-08-01] (Symantec Corporation) R0 SymEFA; C:\WINDOWS\System32\drivers\NIS\1501000.012\SYMEFA.SYS [935512 2013-09-27] (Symantec Corporation) R3 SymEvent; C:\WINDOWS\system32\Drivers\SYMEVENT.SYS [142936 2013-11-29] (Symantec Corporation) R1 SymIRON; C:\WINDOWS\system32\drivers\NIS\1501000.012\Ironx86.SYS [206936 2013-07-31] (Symantec Corporation) R1 SYMTDI; C:\WINDOWS\System32\Drivers\NIS\1501000.012\SYMTDI.SYS [421592 2013-09-26] (Symantec Corporation) R1 Tcpip6; C:\WINDOWS\System32\DRIVERS\tcpip6.sys [226880 2010-02-11] (Microsoft Corporation) S3 X10UIF; C:\WINDOWS\System32\Drivers\x10uif.sys [10761 2001-11-14] (X10 Wireless Technology, Inc.) S3 catchme; \??\C:\DOKUME~1\feuer\LOKALE~1\Temp\catchme.sys [X] S4 IntelIde; No ImagePath U5 ScsiPort; C:\WINDOWS\system32\drivers\scsiport.sys [96384 2008-04-13] (Microsoft Corporation) S0 tclondrv; system32\DRIVERS\tclondrv.sys [X] U3 TlntSvr; R5 vdrv9000; C:\Windows\System32\Drivers\vdrv9000.sys [113688 2009-03-17] (H+H Software GmbH) ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-03-19 01:39 - 2014-03-19 01:03 - 00024064 _____ () C:\WINDOWS\zoek-delete.exe 2014-03-19 01:09 - 2014-03-15 18:19 - 00103562 _____ () C:\zoek-results2014-03-15-171943.log 2014-03-17 18:38 - 2014-03-17 18:37 - 00090224 ____H () C:\WINDOWS\Minidump\Mini031714-01.dmp 2014-03-15 17:39 - 2014-03-15 17:26 - 00012186 _____ () C:\zoek-results2014-03-15-162648.log 2014-03-15 17:25 - 2014-03-19 01:41 - 00090755 _____ () C:\zoek-results.log 2014-03-15 17:09 - 2014-03-15 18:09 - 00000000 ____D () C:\zoek_backup 2014-03-14 16:23 - 2014-02-20 20:49 - 00877480 _____ (Oracle Corporation) C:\WINDOWS\system32\npdeployJava1.dll 2014-03-14 16:23 - 2014-02-20 20:49 - 00800168 _____ (Oracle Corporation) C:\WINDOWS\system32\deployJava1.dll 2014-03-14 14:14 - 2014-03-14 14:14 - 00000000 ____D () C:\Dokumente und Einstellungen\feuer\Anwendungsdaten\1H1Q 2014-03-14 14:13 - 2014-03-15 19:13 - 00000000 ____D () C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Minecraft 2014-03-13 11:49 - 2014-03-15 16:07 - 00000430 _____ () C:\WINDOWS\nsw.log 2014-03-13 05:02 - 2014-03-13 05:02 - 00127935 _____ () C:\WINDOWS\KB2925418-IE8.log 2014-03-13 05:02 - 2014-03-13 05:02 - 00000000 __HDC () C:\WINDOWS\$NtUninstallKB2930275$ 2014-03-13 05:02 - 2014-03-13 05:02 - 00000000 __HDC () C:\WINDOWS\$NtUninstallKB2929961$ 2014-03-12 09:20 - 2014-03-13 05:02 - 00127647 _____ () C:\WINDOWS\KB2930275.log 2014-03-12 09:20 - 2014-03-13 05:02 - 00124351 _____ () C:\WINDOWS\KB2929961.log 2014-03-07 22:52 - 2014-03-07 22:52 - 00000000 __HDC () C:\WINDOWS\$NtUninstallKB961503$ 2014-03-07 22:51 - 2014-03-07 22:52 - 00012384 _____ () C:\WINDOWS\KB961503.log 2014-03-07 22:47 - 2014-03-07 22:47 - 00000000 ____D () C:\Dokumente und Einstellungen\feuer\Tracing 2014-03-07 22:46 - 2014-03-07 22:46 - 00000000 ____D () C:\Programme\Microsoft Sync Framework 2014-03-07 22:46 - 2010-04-28 07:44 - 00054760 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fssfltr_tdi.sys 2014-03-07 22:44 - 2014-03-07 22:44 - 00030134 _____ () C:\WINDOWS\DirectX.log 2014-03-07 22:44 - 2014-03-07 22:44 - 00000663 _____ () C:\WINDOWS\KB954708.log 2014-03-07 22:44 - 2014-03-07 22:44 - 00000000 ____D () C:\Programme\Microsoft SQL Server Compact Edition 2014-03-07 22:43 - 2014-03-07 22:43 - 00000000 ____D () C:\Programme\Windows Live SkyDrive 2014-03-07 22:42 - 2014-03-15 17:35 - 00000000 ____D () C:\Programme\Windows Live 2014-03-07 22:42 - 2014-03-07 22:47 - 00000000 ____D () C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Windows Live 2014-03-07 22:37 - 2014-03-07 22:37 - 00000000 ____D () C:\Programme\Gemeinsame Dateien\Windows Live 2014-03-07 19:47 - 2014-03-07 19:47 - 00000000 __HDC () C:\WINDOWS\$NtUninstallKB2808679$ 2014-03-07 19:36 - 2014-03-07 19:37 - 00008073 _____ () C:\WINDOWS\KB2632503-IE8.log 2014-03-07 19:08 - 2014-03-07 19:47 - 00009421 _____ () C:\WINDOWS\KB2808679.log 2014-03-07 16:50 - 2014-03-07 16:50 - 00000000 ____D () C:\Programme\Microsoft.NET 2014-03-07 16:42 - 2014-03-19 01:41 - 00000222 _____ () C:\WINDOWS\Tasks\Ende des Supports für Microsoft Windows XP – Benachrichtigung – Anmeldung.job 2014-03-07 16:42 - 2014-03-08 15:40 - 00000216 _____ () C:\WINDOWS\Tasks\Ende des Supports für Microsoft Windows XP – Monatliche Benachrichtigung.job 2014-03-07 16:28 - 2014-03-07 16:28 - 00033096 _____ () C:\WINDOWS\KB2909210-IE8.log 2014-03-07 16:28 - 2014-03-07 16:28 - 00032988 _____ () C:\WINDOWS\KB2934207.log 2014-03-07 16:28 - 2014-03-07 16:28 - 00000000 __HDC () C:\WINDOWS\$NtUninstallKB2934207$ 2014-03-07 16:27 - 2014-03-13 05:01 - 00000000 ____D () C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Microsoft Silverlight 2014-03-07 16:26 - 2014-03-07 16:27 - 00008131 _____ () C:\WINDOWS\KB2510531-IE8.log 2014-03-07 16:26 - 2014-02-27 00:28 - 00013312 ____N (Microsoft Corporation) C:\WINDOWS\system32\xp_eos.exe 2014-03-07 16:26 - 2014-02-27 00:28 - 00013312 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\xp_eos.exe 2014-03-07 16:08 - 2014-03-07 16:09 - 00000000 __HDC () C:\WINDOWS\ie8 2014-03-07 15:51 - 2014-03-07 15:52 - 00005193 _____ () C:\WINDOWS\KB2909212.log 2014-03-07 15:51 - 2014-03-07 15:52 - 00004890 _____ () C:\WINDOWS\KB2909921.log 2014-03-07 15:50 - 2014-03-15 18:01 - 00001773 _____ () C:\Dokumente und Einstellungen\All Users\Desktop\Google Chrome.lnk 2014-03-07 15:50 - 2014-03-07 15:50 - 00000000 ____D () C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Google Chrome 2014-03-07 15:49 - 2014-03-19 01:41 - 00001084 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job 2014-03-07 15:49 - 2014-03-19 00:54 - 00001088 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job 2014-03-07 15:26 - 2014-03-07 16:11 - 00075941 _____ () C:\WINDOWS\KB2744842-IE8.log 2014-03-07 15:26 - 2014-03-07 16:11 - 00071682 _____ () C:\WINDOWS\KB2862772-IE8.log 2014-03-07 15:25 - 2014-03-07 16:11 - 00080750 _____ () C:\WINDOWS\KB2618444-IE8.log 2014-03-07 15:25 - 2014-03-07 16:10 - 00066566 _____ () C:\WINDOWS\KB2598845-IE8.log 2014-03-07 15:24 - 2014-03-07 16:17 - 00013740 _____ () C:\WINDOWS\spupdsvc.log 2014-03-07 15:24 - 2014-03-07 16:10 - 00088939 _____ () C:\WINDOWS\KB982381-IE8.log 2014-03-07 15:23 - 2014-03-13 11:34 - 00000000 ____D () C:\Programme\Microsoft Silverlight 2014-03-07 15:23 - 2014-03-07 16:09 - 00089234 _____ () C:\WINDOWS\ie8.log 2014-03-07 15:21 - 2014-03-07 16:12 - 00000000 ___HD () C:\WINDOWS\msdownld.tmp 2014-03-07 15:07 - 2014-03-07 16:15 - 00232253 _____ () C:\WINDOWS\ie8_main.log 2014-03-07 14:54 - 2014-03-13 05:02 - 00091977 _____ () C:\WINDOWS\updspapi.log 2014-03-07 14:53 - 2014-03-13 05:02 - 00154580 _____ () C:\WINDOWS\FaxSetup.log 2014-03-07 14:53 - 2014-03-13 05:02 - 00073900 _____ () C:\WINDOWS\ocgen.log 2014-03-07 14:53 - 2014-03-13 05:02 - 00058975 _____ () C:\WINDOWS\tsoc.log 2014-03-07 14:53 - 2014-03-13 05:02 - 00051198 _____ () C:\WINDOWS\comsetup.log 2014-03-07 14:53 - 2014-03-13 05:02 - 00031036 _____ () C:\WINDOWS\ntdtcsetup.log 2014-03-07 14:53 - 2014-03-13 05:02 - 00024288 _____ () C:\WINDOWS\iis6.log 2014-03-07 14:53 - 2014-03-13 05:02 - 00008550 _____ () C:\WINDOWS\ocmsn.log 2014-03-07 14:53 - 2014-03-13 05:02 - 00007725 _____ () C:\WINDOWS\msgsocm.log 2014-03-07 14:53 - 2014-03-13 05:02 - 00001374 _____ () C:\WINDOWS\imsins.log 2014-03-07 14:53 - 2014-03-13 05:02 - 00001374 _____ () C:\WINDOWS\imsins.BAK 2014-03-07 14:53 - 2014-03-07 15:33 - 00060421 _____ () C:\WINDOWS\ie8Uninst.log 2014-03-07 14:53 - 2014-03-07 14:53 - 00000000 _____ () C:\WINDOWS\setuperr.log 2014-03-07 14:53 - 2014-03-07 14:53 - 00000000 _____ () C:\WINDOWS\setupact.log 2014-03-07 14:42 - 2014-03-18 16:12 - 00000000 ____D () C:\Programme\Mozilla Firefox 2014-03-07 14:42 - 2014-03-07 14:44 - 00000000 ____D () C:\Dokumente und Einstellungen\feuer\Anwendungsdaten\Mozilla 2014-03-07 14:42 - 2014-03-07 14:42 - 00000706 _____ () C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Mozilla Firefox.lnk 2014-03-07 14:42 - 2014-03-07 14:42 - 00000700 _____ () C:\Dokumente und Einstellungen\All Users\Desktop\Mozilla Firefox.lnk 2014-03-07 14:17 - 2014-03-07 14:17 - 00045372 _____ () C:\Dokumente und Einstellungen\feuer\Desktop\bookmarks.html 2014-03-01 21:55 - 2014-03-01 21:55 - 00010752 _____ () C:\Dokumente und Einstellungen\feuer\Eigene Dateien\shake.xls 2014-03-01 02:59 - 2014-03-01 03:04 - 00000000 ____D () C:\Dokumente und Einstellungen\feuer\Anwendungsdaten\Dev-Cpp 2014-03-01 02:59 - 2014-03-01 02:59 - 00000000 ____D () C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Bloodshed Dev-C++ 2014-02-24 08:33 - 2014-02-24 08:33 - 00086016 _____ () C:\WINDOWS\Minidump\Mini022414-01.dmp 2014-02-24 08:23 - 2014-02-24 08:23 - 00000000 ____D () C:\Dokumente und Einstellungen\feuer\Lokale Einstellungen\Anwendungsdaten\Deployment 2014-02-23 17:16 - 2014-02-23 17:16 - 00002119 _____ () C:\Dokumente und Einstellungen\feuer\Desktop\Siedler 4 starten.lnk 2014-02-23 16:51 - 2014-02-23 16:51 - 00002095 _____ () C:\Dokumente und Einstellungen\Gast\Desktop\Die Siedler 4 Starten.lnk 2014-02-23 16:46 - 2014-03-15 16:07 - 00119345 _____ () C:\WINDOWS\setupapi.log 2014-02-23 16:46 - 2014-02-23 16:46 - 00001707 _____ () C:\Dokumente und Einstellungen\feuer\Desktop\Ubi Soft Product Registration.lnk 2014-02-23 16:46 - 2014-02-23 16:46 - 00000000 ____D () C:\Programme\Ubi Soft 2014-02-23 16:46 - 2002-06-17 06:25 - 00026088 ____R (Microsoft Corporation) C:\WINDOWS\system32\xmlinst.exe 2014-02-23 16:46 - 2002-04-24 11:43 - 00035840 ____R () C:\WINDOWS\system32\comdlg32.oca 2014-02-23 16:46 - 2002-04-09 16:23 - 00029184 ____R () C:\WINDOWS\system32\MSINET.oca 2014-02-23 16:46 - 2000-03-17 07:21 - 00069632 ____R () C:\WINDOWS\system32\xmltok.dll 2014-02-23 16:46 - 2000-03-17 07:21 - 00036864 ____R () C:\WINDOWS\system32\xmlparse.dll 2014-02-23 16:46 - 1998-06-17 23:00 - 00089360 ____R (Microsoft Corporation) C:\WINDOWS\system32\VB5DB.DLL 2014-02-23 16:45 - 2014-02-23 16:45 - 00000000 ____D () C:\Dokumente und Einstellungen\feuer\Startmenü\Programme\Blue Byte 2014-02-23 16:43 - 1998-01-23 12:20 - 00305664 _____ (InstallShield Software Corporation ) C:\WINDOWS\IsUn0407.exe 2014-02-23 16:25 - 2014-02-23 16:25 - 00000372 _____ () C:\Dokumente und Einstellungen\Gast\Eigene Dateien\spider.sav 2014-02-23 16:25 - 2014-02-23 16:25 - 00000000 ____D () C:\Dokumente und Einstellungen\Gast\Eigene Dateien\Virtual CD v9 2014-02-22 09:39 - 2014-02-22 09:39 - 00000000 ____D () C:\Dokumente und Einstellungen\Gast\Lokale Einstellungen\Anwendungsdaten\Apple Computer 2014-02-22 07:21 - 2014-02-22 07:21 - 00000000 __SHD () C:\Dokumente und Einstellungen\Gast\IECompatCache 2014-02-22 07:20 - 2014-02-22 07:20 - 00000000 __SHD () C:\Dokumente und Einstellungen\Gast\PrivacIE 2014-02-21 01:30 - 2014-03-07 16:12 - 00074206 _____ () C:\WINDOWS\KB2909921-IE8.log 2014-02-20 20:50 - 2014-03-14 16:10 - 00094632 _____ (Oracle Corporation) C:\WINDOWS\system32\WindowsAccessBridge.dll 2014-02-20 17:14 - 2014-02-20 17:14 - 00000000 ____D () C:\Dokumente und Einstellungen\Gast\Anwendungsdaten\Windows Search 2014-02-20 17:09 - 2014-02-20 17:09 - 00000000 __SHD () C:\Dokumente und Einstellungen\Gast\IETldCache 2014-02-20 16:21 - 2014-03-07 14:56 - 00000000 ____D () C:\Programme\Mozilla Maintenance Service 2014-02-20 15:47 - 2014-02-20 15:47 - 00000739 _____ () C:\Dokumente und Einstellungen\feuer\Desktop\Revo Uninstaller.lnk 2014-02-20 08:45 - 2014-02-20 08:45 - 00000000 ____D () C:\Dokumente und Einstellungen\NetworkService\Lokale Einstellungen\Anwendungsdaten\Apple 2014-02-19 09:10 - 2014-02-19 09:10 - 00000000 ____D () C:\Dokumente und Einstellungen\feuer\Anwendungsdaten\Apple Computer 2014-02-19 02:13 - 2014-02-19 02:13 - 00000000 ____D () C:\Dokumente und Einstellungen\Gast\Lokale Einstellungen\Anwendungsdaten\Adobe 2014-02-19 02:04 - 2014-02-19 02:04 - 00000000 ____D () C:\Dokumente und Einstellungen\Gast\Lokale Einstellungen\Anwendungsdaten\Apple 2014-02-19 02:00 - 2014-02-19 02:00 - 00000000 ____D () C:\Dokumente und Einstellungen\Gast\Anwendungsdaten\Apple Computer 2014-02-18 14:10 - 2014-02-18 14:10 - 00000000 ____D () C:\Programme\Gemeinsame Dateien\Apple 2014-02-18 14:10 - 2014-02-18 14:10 - 00000000 ____D () C:\Dokumente und Einstellungen\feuer\Lokale Einstellungen\Anwendungsdaten\Apple Computer 2014-02-18 14:10 - 2014-02-18 14:10 - 00000000 ____D () C:\Dokumente und Einstellungen\feuer\Lokale Einstellungen\Anwendungsdaten\Apple 2014-02-18 14:10 - 2014-02-18 14:10 - 00000000 ____D () C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Apple 2014-02-18 13:57 - 2000-10-16 16:37 - 00036864 _____ () C:\WINDOWS\system32\ctrldll.dll 2014-02-18 13:57 - 2000-10-16 16:37 - 00032768 _____ () C:\WINDOWS\system32\rmctrl.exe 2014-02-18 13:50 - 2014-02-18 13:50 - 00000000 ____D () C:\Programme\CyberLink 2014-02-18 13:49 - 2014-03-10 08:23 - 00015271 _____ (MediaTek Corporation) C:\WINDOWS\system32\Drivers\FIDE.SYS 2014-02-18 11:10 - 2014-02-19 02:13 - 00000000 ____D () C:\Dokumente und Einstellungen\Gast\Anwendungsdaten\Adobe 2014-02-18 11:10 - 2014-02-18 11:10 - 00000000 ____D () C:\Dokumente und Einstellungen\Gast\Anwendungsdaten\Macromedia 2014-02-18 11:07 - 2014-02-18 11:07 - 00000000 ____D () C:\Dokumente und Einstellungen\Gast\Lokale Einstellungen\Anwendungsdaten\Mozilla 2014-02-18 11:07 - 2014-02-18 11:07 - 00000000 ____D () C:\Dokumente und Einstellungen\Gast\Anwendungsdaten\Mozilla 2014-02-18 11:04 - 2014-02-18 11:04 - 00032456 _____ () C:\Dokumente und Einstellungen\Gast\Lokale Einstellungen\Anwendungsdaten\GDIPFONTCACHEV1.DAT 2014-02-18 11:03 - 2014-02-22 07:21 - 00000000 ____D () C:\Dokumente und Einstellungen\Gast 2014-02-18 11:03 - 2014-02-18 11:03 - 00000787 _____ () C:\Dokumente und Einstellungen\Gast\Startmenü\Programme\Internet Explorer.lnk 2014-02-18 11:03 - 2014-02-18 11:03 - 00000772 _____ () C:\Dokumente und Einstellungen\Gast\Startmenü\Programme\Windows Media Player.lnk 2014-02-18 11:03 - 2014-02-18 11:03 - 00000722 _____ () C:\Dokumente und Einstellungen\Gast\Startmenü\Programme\Outlook Express.lnk 2014-02-18 11:03 - 2014-02-18 11:03 - 00000020 ___SH () C:\Dokumente und Einstellungen\Gast\ntuser.ini 2014-02-18 11:03 - 2014-02-18 11:03 - 00000000 ___RD () C:\Dokumente und Einstellungen\Gast\Startmenü\Programme\Zubehör 2014-02-18 11:03 - 2014-02-18 11:03 - 00000000 ___RD () C:\Dokumente und Einstellungen\Gast\Startmenü\Programme 2014-02-18 11:03 - 2014-02-18 11:03 - 00000000 ___RD () C:\Dokumente und Einstellungen\Gast\Eigene Dateien\Eigene Musik 2014-02-18 11:03 - 2014-02-18 11:03 - 00000000 ___RD () C:\Dokumente und Einstellungen\Gast\Eigene Dateien\Eigene Bilder 2014-02-18 11:03 - 2014-02-18 11:03 - 00000000 ____D () C:\Dokumente und Einstellungen\Gast\Lokale Einstellungen\Anwendungsdaten\Scansoft 2014-02-18 11:03 - 2014-02-17 13:02 - 00001603 _____ () C:\Dokumente und Einstellungen\Gast\Startmenü\Programme\Remoteunterstützung.lnk 2014-02-18 11:03 - 2011-04-29 05:13 - 00000000 ___RD () C:\Dokumente und Einstellungen\Gast\Startmenü\Programme\Autostart 2014-02-18 11:03 - 2011-04-29 05:13 - 00000000 ___RD () C:\Dokumente und Einstellungen\Gast\Startmenü 2014-02-18 11:03 - 2011-04-29 05:13 - 00000000 ___HD () C:\Dokumente und Einstellungen\Gast\Netzwerkumgebung 2014-02-18 11:03 - 2011-04-29 05:13 - 00000000 ___HD () C:\Dokumente und Einstellungen\Gast\Druckumgebung 2014-02-18 11:03 - 2011-04-29 04:17 - 00000000 __SHD () C:\Dokumente und Einstellungen\Gast\Lokale Einstellungen\Verlauf 2014-02-17 23:14 - 2014-03-07 15:51 - 00000000 ____D () C:\Dokumente und Einstellungen\feuer\Lokale Einstellungen\Anwendungsdaten\Google 2014-02-17 19:14 - 2014-02-17 19:14 - 00001118 _____ () C:\Dokumente und Einstellungen\feuer\Desktop\JRT.txt 2014-02-17 18:30 - 2014-02-17 20:58 - 00000000 ____D () C:\Avenger 2014-02-17 18:03 - 2014-02-17 18:03 - 00000000 ____D () C:\Dokumente und Einstellungen\feuer\Anwendungsdaten\Malwarebytes 2014-02-17 18:02 - 2014-02-17 18:02 - 00000636 _____ () C:\Dokumente und Einstellungen\All Users\Desktop\ Malwarebytes Anti-Malware .lnk 2014-02-17 18:02 - 2014-02-17 18:02 - 00000000 ____D () C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Malwarebytes' Anti-Malware 2014-02-17 18:02 - 2014-02-17 18:02 - 00000000 ____D () C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Malwarebytes 2014-02-17 18:02 - 2013-04-04 14:50 - 00022856 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbam.sys 2014-02-17 12:40 - 2014-02-17 12:40 - 00000044 _____ () C:\Dokumente und Einstellungen\NetworkService\Anwendungsdaten\WB.CFG 2014-02-17 12:32 - 2014-02-19 09:11 - 00000000 ____D () C:\WINDOWS\455F074C814E4520B69B5584BD90400C.TMP 2014-02-17 12:32 - 2014-02-17 12:32 - 00000000 ____D () C:\Programme\Gemeinsame Dateien\Wise Installation Wizard 2014-02-17 10:17 - 2014-02-17 10:17 - 00000000 ____D () C:\Dokumente und Einstellungen\feuer\Startmenü\Programme\Notepad++ ==================== One Month Modified Files and Folders ======= 2014-03-19 01:43 - 2014-02-15 23:07 - 00000000 ____D () C:\FRST 2014-03-19 01:43 - 2013-02-19 23:44 - 00016804 _____ () C:\WINDOWS\system32\nvAppTimestamps 2014-03-19 01:43 - 2011-04-29 11:45 - 01823320 _____ () C:\WINDOWS\WindowsUpdate.log 2014-03-19 01:41 - 2014-03-15 17:25 - 00090755 _____ () C:\zoek-results.log 2014-03-19 01:41 - 2014-03-07 16:42 - 00000222 _____ () C:\WINDOWS\Tasks\Ende des Supports für Microsoft Windows XP – Benachrichtigung – Anmeldung.job 2014-03-19 01:41 - 2014-03-07 15:49 - 00001084 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job 2014-03-19 01:41 - 2011-04-29 05:14 - 00000159 _____ () C:\WINDOWS\wiadebug.log 2014-03-19 01:41 - 2011-04-29 05:14 - 00000050 _____ () C:\WINDOWS\wiaservc.log 2014-03-19 01:40 - 2011-04-29 04:18 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT 2014-03-19 01:39 - 2011-04-29 04:20 - 00000190 __SHC () C:\Dokumente und Einstellungen\feuer\ntuser.ini 2014-03-19 01:39 - 2011-04-29 04:20 - 00000000 ____D () C:\Dokumente und Einstellungen\feuer 2014-03-19 01:39 - 2011-04-29 04:19 - 00032384 _____ () C:\WINDOWS\SchedLgU.Txt 2014-03-19 01:37 - 2011-04-29 05:13 - 00000000 ___RD () C:\Programme 2014-03-19 01:03 - 2014-03-19 01:39 - 00024064 _____ () C:\WINDOWS\zoek-delete.exe 2014-03-19 00:59 - 2002-08-29 13:00 - 00002422 _____ () C:\WINDOWS\system32\wpa.dbl 2014-03-19 00:54 - 2014-03-07 15:49 - 00001088 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job 2014-03-19 00:50 - 2012-07-06 14:23 - 00000884 _____ () C:\WINDOWS\Tasks\Adobe Flash Player Updater.job 2014-03-18 16:12 - 2014-03-07 14:42 - 00000000 ____D () C:\Programme\Mozilla Firefox 2014-03-18 15:15 - 2014-02-16 11:43 - 00000282 _____ () C:\WINDOWS\Tasks\RegistryDr_Popup.job 2014-03-18 05:06 - 2013-08-15 14:37 - 00000000 ____D () C:\WINDOWS\system32\MRT 2014-03-18 05:00 - 2011-04-29 12:47 - 87350280 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2014-03-17 18:38 - 2011-04-29 21:19 - 00000000 ____D () C:\WINDOWS\Minidump 2014-03-17 18:37 - 2014-03-17 18:38 - 00090224 ____H () C:\WINDOWS\Minidump\Mini031714-01.dmp 2014-03-17 15:30 - 2011-08-04 22:51 - 00002501 _____ () C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Microsoft Word.lnk 2014-03-17 03:23 - 2012-01-30 15:26 - 00000000 ____D () C:\Programme\Shotty 2014-03-16 23:28 - 2012-01-30 15:47 - 00000000 ____D () C:\Dokumente und Einstellungen\feuer\Lokale Einstellungen\Anwendungsdaten\Shotty 2014-03-15 19:13 - 2014-03-14 14:13 - 00000000 ____D () C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Minecraft 2014-03-15 18:19 - 2014-03-19 01:09 - 00103562 _____ () C:\zoek-results2014-03-15-171943.log 2014-03-15 18:09 - 2014-03-15 17:09 - 00000000 ____D () C:\zoek_backup 2014-03-15 18:01 - 2014-03-07 15:50 - 00001773 _____ () C:\Dokumente und Einstellungen\All Users\Desktop\Google Chrome.lnk 2014-03-15 17:35 - 2014-03-07 22:42 - 00000000 ____D () C:\Programme\Windows Live 2014-03-15 17:26 - 2014-03-15 17:39 - 00012186 _____ () C:\zoek-results2014-03-15-162648.log 2014-03-15 16:07 - 2014-03-13 11:49 - 00000430 _____ () C:\WINDOWS\nsw.log 2014-03-15 16:07 - 2014-02-23 16:46 - 00119345 _____ () C:\WINDOWS\setupapi.log 2014-03-15 16:05 - 2011-04-29 06:09 - 00000000 ____D () C:\WINDOWS\system32\ias 2014-03-14 16:47 - 2014-02-10 01:56 - 00000000 ____D () C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\QuickTime 2014-03-14 16:45 - 2011-04-29 05:13 - 00000000 ___RD () C:\Dokumente und Einstellungen\All Users\Startmenü\Programme 2014-03-14 16:42 - 2011-05-01 23:47 - 00000000 ____D () C:\WINDOWS\uninstall 2014-03-14 16:42 - 2011-05-01 23:47 - 00000000 ____D () C:\Dokumente und Einstellungen\feuer\Lokale Einstellungen\Anwendungsdaten\Publish_Data 2014-03-14 16:42 - 2011-05-01 23:47 - 00000000 ____D () C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Publish Data 2014-03-14 16:42 - 2011-04-29 04:20 - 00000000 ___RD () C:\Dokumente und Einstellungen\feuer\Startmenü\Programme 2014-03-14 16:39 - 2011-04-29 04:16 - 00000000 ____D () C:\Programme\MSN 2014-03-14 16:23 - 2012-06-29 20:04 - 00000000 ____D () C:\Programme\Java 2014-03-14 16:10 - 2014-02-20 20:50 - 00094632 _____ (Oracle Corporation) C:\WINDOWS\system32\WindowsAccessBridge.dll 2014-03-14 16:06 - 2013-02-18 02:04 - 00000000 ____D () C:\Dokumente und Einstellungen\feuer\Anwendungsdaten\.minecraft 2014-03-14 15:17 - 2011-04-30 00:20 - 00196608 _____ () C:\WINDOWS\system32\config\WindowsPowerShell.evt 2014-03-14 14:14 - 2014-03-14 14:14 - 00000000 ____D () C:\Dokumente und Einstellungen\feuer\Anwendungsdaten\1H1Q 2014-03-13 11:34 - 2014-03-07 15:23 - 00000000 ____D () C:\Programme\Microsoft Silverlight 2014-03-13 11:34 - 2011-04-29 05:13 - 00165912 _____ () C:\WINDOWS\system32\FNTCACHE.DAT 2014-03-13 05:02 - 2014-03-13 05:02 - 00127935 _____ () C:\WINDOWS\KB2925418-IE8.log 2014-03-13 05:02 - 2014-03-13 05:02 - 00000000 __HDC () C:\WINDOWS\$NtUninstallKB2930275$ 2014-03-13 05:02 - 2014-03-13 05:02 - 00000000 __HDC () C:\WINDOWS\$NtUninstallKB2929961$ 2014-03-13 05:02 - 2014-03-12 09:20 - 00127647 _____ () C:\WINDOWS\KB2930275.log 2014-03-13 05:02 - 2014-03-12 09:20 - 00124351 _____ () C:\WINDOWS\KB2929961.log 2014-03-13 05:02 - 2014-03-07 14:54 - 00091977 _____ () C:\WINDOWS\updspapi.log 2014-03-13 05:02 - 2014-03-07 14:53 - 00154580 _____ () C:\WINDOWS\FaxSetup.log 2014-03-13 05:02 - 2014-03-07 14:53 - 00073900 _____ () C:\WINDOWS\ocgen.log 2014-03-13 05:02 - 2014-03-07 14:53 - 00058975 _____ () C:\WINDOWS\tsoc.log 2014-03-13 05:02 - 2014-03-07 14:53 - 00051198 _____ () C:\WINDOWS\comsetup.log 2014-03-13 05:02 - 2014-03-07 14:53 - 00031036 _____ () C:\WINDOWS\ntdtcsetup.log 2014-03-13 05:02 - 2014-03-07 14:53 - 00024288 _____ () C:\WINDOWS\iis6.log 2014-03-13 05:02 - 2014-03-07 14:53 - 00008550 _____ () C:\WINDOWS\ocmsn.log 2014-03-13 05:02 - 2014-03-07 14:53 - 00007725 _____ () C:\WINDOWS\msgsocm.log 2014-03-13 05:02 - 2014-03-07 14:53 - 00001374 _____ () C:\WINDOWS\imsins.log 2014-03-13 05:02 - 2014-03-07 14:53 - 00001374 _____ () C:\WINDOWS\imsins.BAK 2014-03-13 05:02 - 2011-04-29 22:30 - 00000000 ____D () C:\WINDOWS\ie8updates 2014-03-13 05:01 - 2014-03-07 16:27 - 00000000 ____D () C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Microsoft Silverlight 2014-03-12 10:50 - 2012-04-07 19:11 - 00692616 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerApp.exe 2014-03-12 10:50 - 2011-05-13 21:15 - 00071048 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerCPLApp.cpl 2014-03-12 06:58 - 2011-04-29 04:20 - 00000000 ___RD () C:\Dokumente und Einstellungen\feuer\Startmenü\Programme\Autostart 2014-03-12 06:57 - 2011-04-29 05:13 - 01505450 _____ () C:\WINDOWS\system32\PerfStringBackup.INI 2014-03-10 08:23 - 2014-02-18 13:49 - 00015271 _____ (MediaTek Corporation) C:\WINDOWS\system32\Drivers\FIDE.SYS 2014-03-08 15:40 - 2014-03-07 16:42 - 00000216 _____ () C:\WINDOWS\Tasks\Ende des Supports für Microsoft Windows XP – Monatliche Benachrichtigung.job 2014-03-08 00:34 - 2011-04-29 05:23 - 00000000 ____D () C:\WINDOWS\Microsoft.NET 2014-03-07 22:52 - 2014-03-07 22:52 - 00000000 __HDC () C:\WINDOWS\$NtUninstallKB961503$ 2014-03-07 22:52 - 2014-03-07 22:51 - 00012384 _____ () C:\WINDOWS\KB961503.log 2014-03-07 22:51 - 2011-04-29 11:47 - 00000000 ___HD () C:\WINDOWS\$hf_mig$ 2014-03-07 22:47 - 2014-03-07 22:47 - 00000000 ____D () C:\Dokumente und Einstellungen\feuer\Tracing 2014-03-07 22:47 - 2014-03-07 22:42 - 00000000 ____D () C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Windows Live 2014-03-07 22:46 - 2014-03-07 22:46 - 00000000 ____D () C:\Programme\Microsoft Sync Framework 2014-03-07 22:44 - 2014-03-07 22:44 - 00030134 _____ () C:\WINDOWS\DirectX.log 2014-03-07 22:44 - 2014-03-07 22:44 - 00000663 _____ () C:\WINDOWS\KB954708.log 2014-03-07 22:44 - 2014-03-07 22:44 - 00000000 ____D () C:\Programme\Microsoft SQL Server Compact Edition 2014-03-07 22:44 - 2011-04-29 04:17 - 00000000 ____D () C:\WINDOWS\system32\DirectX 2014-03-07 22:43 - 2014-03-07 22:43 - 00000000 ____D () C:\Programme\Windows Live SkyDrive 2014-03-07 22:43 - 2011-04-29 05:13 - 00000000 ___RD () C:\Dokumente und Einstellungen\All Users\Dokumente 2014-03-07 22:43 - 2011-04-29 05:13 - 00000000 ____D () C:\Programme\Gemeinsame Dateien\Microsoft Shared 2014-03-07 22:37 - 2014-03-07 22:37 - 00000000 ____D () C:\Programme\Gemeinsame Dateien\Windows Live 2014-03-07 20:33 - 2011-05-16 17:05 - 01098816 _____ () C:\WINDOWS\system32\nvdrsdb1.bin 2014-03-07 20:33 - 2011-05-16 17:05 - 00000001 _____ () C:\WINDOWS\system32\nvdrssel.bin 2014-03-07 20:33 - 2011-04-29 14:18 - 00000000 ____D () C:\WINDOWS\system32\de-de 2014-03-07 20:28 - 2011-05-16 17:05 - 01098816 _____ () C:\WINDOWS\system32\nvdrsdb0.bin 2014-03-07 20:20 - 2011-05-16 17:04 - 00000000 ____D () C:\Programme\NVIDIA Corporation 2014-03-07 20:20 - 2011-04-29 04:26 - 00000000 ____D () C:\WINDOWS\system32\ReinstallBackups 2014-03-07 19:47 - 2014-03-07 19:47 - 00000000 __HDC () C:\WINDOWS\$NtUninstallKB2808679$ 2014-03-07 19:47 - 2014-03-07 19:08 - 00009421 _____ () C:\WINDOWS\KB2808679.log 2014-03-07 19:37 - 2014-03-07 19:36 - 00008073 _____ () C:\WINDOWS\KB2632503-IE8.log 2014-03-07 16:50 - 2014-03-07 16:50 - 00000000 ____D () C:\Programme\Microsoft.NET 2014-03-07 16:28 - 2014-03-07 16:28 - 00033096 _____ () C:\WINDOWS\KB2909210-IE8.log 2014-03-07 16:28 - 2014-03-07 16:28 - 00032988 _____ () C:\WINDOWS\KB2934207.log 2014-03-07 16:28 - 2014-03-07 16:28 - 00000000 __HDC () C:\WINDOWS\$NtUninstallKB2934207$ 2014-03-07 16:27 - 2014-03-07 16:26 - 00008131 _____ () C:\WINDOWS\KB2510531-IE8.log 2014-03-07 16:20 - 2011-04-29 04:20 - 00000787 _____ () C:\Dokumente und Einstellungen\feuer\Startmenü\Programme\Internet Explorer.lnk 2014-03-07 16:17 - 2014-03-07 15:24 - 00013740 _____ () C:\WINDOWS\spupdsvc.log 2014-03-07 16:16 - 2011-04-29 06:09 - 00000000 ____D () C:\WINDOWS\Help 2014-03-07 16:15 - 2014-03-07 15:07 - 00232253 _____ () C:\WINDOWS\ie8_main.log 2014-03-07 16:12 - 2014-03-07 15:21 - 00000000 ___HD () C:\WINDOWS\msdownld.tmp 2014-03-07 16:12 - 2014-02-21 01:30 - 00074206 _____ () C:\WINDOWS\KB2909921-IE8.log 2014-03-07 16:11 - 2014-03-07 15:26 - 00075941 _____ () C:\WINDOWS\KB2744842-IE8.log 2014-03-07 16:11 - 2014-03-07 15:26 - 00071682 _____ () C:\WINDOWS\KB2862772-IE8.log 2014-03-07 16:11 - 2014-03-07 15:25 - 00080750 _____ () C:\WINDOWS\KB2618444-IE8.log 2014-03-07 16:10 - 2014-03-07 15:25 - 00066566 _____ () C:\WINDOWS\KB2598845-IE8.log 2014-03-07 16:10 - 2014-03-07 15:24 - 00088939 _____ () C:\WINDOWS\KB982381-IE8.log 2014-03-07 16:09 - 2014-03-07 16:08 - 00000000 __HDC () C:\WINDOWS\ie8 2014-03-07 16:09 - 2014-03-07 15:23 - 00089234 _____ () C:\WINDOWS\ie8.log 2014-03-07 16:09 - 2011-04-29 06:09 - 00000000 ____D () C:\WINDOWS\Media 2014-03-07 15:52 - 2014-03-07 15:51 - 00005193 _____ () C:\WINDOWS\KB2909212.log 2014-03-07 15:52 - 2014-03-07 15:51 - 00004890 _____ () C:\WINDOWS\KB2909921.log 2014-03-07 15:51 - 2014-02-17 23:14 - 00000000 ____D () C:\Dokumente und Einstellungen\feuer\Lokale Einstellungen\Anwendungsdaten\Google 2014-03-07 15:50 - 2014-03-07 15:50 - 00000000 ____D () C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Google Chrome 2014-03-07 15:50 - 2012-05-14 19:43 - 00000000 ____D () C:\Programme\Google 2014-03-07 15:33 - 2014-03-07 14:53 - 00060421 _____ () C:\WINDOWS\ie8Uninst.log 2014-03-07 14:56 - 2014-02-20 16:21 - 00000000 ____D () C:\Programme\Mozilla Maintenance Service 2014-03-07 14:53 - 2014-03-07 14:53 - 00000000 _____ () C:\WINDOWS\setuperr.log 2014-03-07 14:53 - 2014-03-07 14:53 - 00000000 _____ () C:\WINDOWS\setupact.log 2014-03-07 14:44 - 2014-03-07 14:42 - 00000000 ____D () C:\Dokumente und Einstellungen\feuer\Anwendungsdaten\Mozilla 2014-03-07 14:42 - 2014-03-07 14:42 - 00000706 _____ () C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Mozilla Firefox.lnk 2014-03-07 14:42 - 2014-03-07 14:42 - 00000700 _____ () C:\Dokumente und Einstellungen\All Users\Desktop\Mozilla Firefox.lnk 2014-03-07 14:17 - 2014-03-07 14:17 - 00045372 _____ () C:\Dokumente und Einstellungen\feuer\Desktop\bookmarks.html 2014-03-01 21:55 - 2014-03-01 21:55 - 00010752 _____ () C:\Dokumente und Einstellungen\feuer\Eigene Dateien\shake.xls 2014-03-01 03:04 - 2014-03-01 02:59 - 00000000 ____D () C:\Dokumente und Einstellungen\feuer\Anwendungsdaten\Dev-Cpp 2014-03-01 02:59 - 2014-03-01 02:59 - 00000000 ____D () C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Bloodshed Dev-C++ 2014-02-27 00:28 - 2014-03-07 16:26 - 00013312 ____N (Microsoft Corporation) C:\WINDOWS\system32\xp_eos.exe 2014-02-27 00:28 - 2014-03-07 16:26 - 00013312 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\xp_eos.exe 2014-02-24 16:24 - 2009-03-08 04:32 - 00174592 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ie4uinit.exe 2014-02-24 16:24 - 2002-08-29 13:00 - 00174592 ____N (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe 2014-02-24 12:45 - 2012-06-13 16:03 - 00522240 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\jsdbgui.dll 2014-02-24 12:45 - 2011-04-29 22:30 - 11113472 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ieframe.dll 2014-02-24 12:45 - 2011-04-29 22:30 - 02006016 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\iertutil.dll 2014-02-24 12:45 - 2011-04-29 22:30 - 00743424 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\iedvtool.dll 2014-02-24 12:45 - 2011-04-29 22:30 - 00630272 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msfeeds.dll 2014-02-24 12:45 - 2011-04-29 22:30 - 00247808 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ieproxy.dll 2014-02-24 12:45 - 2011-04-29 22:30 - 00055296 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msfeedsbs.dll 2014-02-24 12:45 - 2011-04-29 22:30 - 00012800 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\xpshims.dll 2014-02-24 12:45 - 2011-02-17 14:51 - 00611840 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mstime.dll 2014-02-24 12:45 - 2011-02-17 14:51 - 00067072 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mshtmled.dll 2014-02-24 12:45 - 2010-04-16 17:06 - 06022144 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mshtml.dll 2014-02-24 12:45 - 2010-04-16 17:06 - 01216000 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\urlmon.dll 2014-02-24 12:45 - 2010-04-16 17:06 - 00920064 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wininet.dll 2014-02-24 12:45 - 2010-04-16 17:06 - 00184320 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\iepeers.dll 2014-02-24 12:45 - 2009-03-08 04:39 - 11113472 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll 2014-02-24 12:45 - 2009-03-08 04:34 - 01469440 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\inetcpl.cpl 2014-02-24 12:45 - 2009-03-08 04:34 - 00206848 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\occache.dll 2014-02-24 12:45 - 2009-03-08 04:34 - 00105984 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\url.dll 2014-02-24 12:45 - 2009-03-08 04:34 - 00043520 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\licmgr10.dll 2014-02-24 12:45 - 2009-03-08 04:33 - 00759296 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\vgx.dll 2014-02-24 12:45 - 2009-03-08 04:33 - 00025600 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\jsproxy.dll 2014-02-24 12:45 - 2009-03-08 04:32 - 02006016 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll 2014-02-24 12:45 - 2009-03-08 04:32 - 00630272 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll 2014-02-24 12:45 - 2009-03-08 04:31 - 00055296 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeedsbs.dll 2014-02-24 12:45 - 2002-08-29 13:00 - 06022144 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2014-02-24 12:45 - 2002-08-29 13:00 - 01469440 ____N (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl 2014-02-24 12:45 - 2002-08-29 13:00 - 01216000 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll 2014-02-24 12:45 - 2002-08-29 13:00 - 00920064 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll 2014-02-24 12:45 - 2002-08-29 13:00 - 00611840 ____N (Microsoft Corporation) C:\WINDOWS\system32\mstime.dll 2014-02-24 12:45 - 2002-08-29 13:00 - 00206848 ____N (Microsoft Corporation) C:\WINDOWS\system32\occache.dll 2014-02-24 12:45 - 2002-08-29 13:00 - 00184320 ____N (Microsoft Corporation) C:\WINDOWS\system32\iepeers.dll 2014-02-24 12:45 - 2002-08-29 13:00 - 00105984 _____ (Microsoft Corporation) C:\WINDOWS\system32\url.dll 2014-02-24 12:45 - 2002-08-29 13:00 - 00067072 ____N (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll 2014-02-24 12:45 - 2002-08-29 13:00 - 00043520 ____N (Microsoft Corporation) C:\WINDOWS\system32\licmgr10.dll 2014-02-24 12:45 - 2002-08-29 13:00 - 00025600 ____N (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll 2014-02-24 12:44 - 2009-03-08 14:09 - 00387584 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\iedkcs32.dll 2014-02-24 12:44 - 2009-03-08 04:33 - 00018944 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\corpol.dll 2014-02-24 12:44 - 2002-08-29 13:00 - 00387584 ____N (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll 2014-02-24 12:44 - 2002-08-29 13:00 - 00018944 ____N (Microsoft Corporation) C:\WINDOWS\system32\corpol.dll 2014-02-24 11:54 - 2004-08-04 08:42 - 00385024 ____N (Microsoft Corporation) C:\WINDOWS\system32\html.iec 2014-02-24 08:33 - 2014-02-24 08:33 - 00086016 _____ () C:\WINDOWS\Minidump\Mini022414-01.dmp 2014-02-24 08:23 - 2014-02-24 08:23 - 00000000 ____D () C:\Dokumente und Einstellungen\feuer\Lokale Einstellungen\Anwendungsdaten\Deployment 2014-02-24 08:17 - 2014-02-01 16:38 - 00000132 _____ () C:\Dokumente und Einstellungen\feuer\Desktop\Abschalten in 1,5 Std.cmd 2014-02-23 17:16 - 2014-02-23 17:16 - 00002119 _____ () C:\Dokumente und Einstellungen\feuer\Desktop\Siedler 4 starten.lnk 2014-02-23 16:51 - 2014-02-23 16:51 - 00002095 _____ () C:\Dokumente und Einstellungen\Gast\Desktop\Die Siedler 4 Starten.lnk 2014-02-23 16:46 - 2014-02-23 16:46 - 00001707 _____ () C:\Dokumente und Einstellungen\feuer\Desktop\Ubi Soft Product Registration.lnk 2014-02-23 16:46 - 2014-02-23 16:46 - 00000000 ____D () C:\Programme\Ubi Soft 2014-02-23 16:45 - 2014-02-23 16:45 - 00000000 ____D () C:\Dokumente und Einstellungen\feuer\Startmenü\Programme\Blue Byte 2014-02-23 16:45 - 2011-05-01 01:24 - 00000000 ____D () C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Blue Byte 2014-02-23 16:30 - 2011-04-30 23:51 - 00000000 ___SD () C:\Dokumente und Einstellungen\All Users\Dokumente\Virtual CDs 2014-02-23 16:25 - 2014-02-23 16:25 - 00000372 _____ () C:\Dokumente und Einstellungen\Gast\Eigene Dateien\spider.sav 2014-02-23 16:25 - 2014-02-23 16:25 - 00000000 ____D () C:\Dokumente und Einstellungen\Gast\Eigene Dateien\Virtual CD v9 2014-02-23 02:21 - 2011-04-29 04:16 - 00000000 ____D () C:\Programme\Outlook Express 2014-02-22 09:39 - 2014-02-22 09:39 - 00000000 ____D () C:\Dokumente und Einstellungen\Gast\Lokale Einstellungen\Anwendungsdaten\Apple Computer 2014-02-22 07:21 - 2014-02-22 07:21 - 00000000 __SHD () C:\Dokumente und Einstellungen\Gast\IECompatCache 2014-02-22 07:21 - 2014-02-18 11:03 - 00000000 ____D () C:\Dokumente und Einstellungen\Gast 2014-02-22 07:20 - 2014-02-22 07:20 - 00000000 __SHD () C:\Dokumente und Einstellungen\Gast\PrivacIE 2014-02-21 00:17 - 2012-11-02 22:18 - 00000000 ____D () C:\Dokumente und Einstellungen\feuer\Lokale Einstellungen\Anwendungsdaten\Adobe 2014-02-20 20:49 - 2014-03-14 16:23 - 00877480 _____ (Oracle Corporation) C:\WINDOWS\system32\npdeployJava1.dll 2014-02-20 20:49 - 2014-03-14 16:23 - 00800168 _____ (Oracle Corporation) C:\WINDOWS\system32\deployJava1.dll 2014-02-20 20:49 - 2013-12-18 21:04 - 00264616 _____ (Oracle Corporation) C:\WINDOWS\system32\javaws.exe 2014-02-20 20:49 - 2012-09-24 14:23 - 00175016 _____ (Oracle Corporation) C:\WINDOWS\system32\javaw.exe 2014-02-20 20:49 - 2012-09-24 14:23 - 00174504 _____ (Oracle Corporation) C:\WINDOWS\system32\java.exe 2014-02-20 20:49 - 2012-06-29 20:05 - 00145408 _____ (Oracle Corporation) C:\WINDOWS\system32\javacpl.cpl 2014-02-20 17:14 - 2014-02-20 17:14 - 00000000 ____D () C:\Dokumente und Einstellungen\Gast\Anwendungsdaten\Windows Search 2014-02-20 17:09 - 2014-02-20 17:09 - 00000000 __SHD () C:\Dokumente und Einstellungen\Gast\IETldCache 2014-02-20 15:47 - 2014-02-20 15:47 - 00000739 _____ () C:\Dokumente und Einstellungen\feuer\Desktop\Revo Uninstaller.lnk 2014-02-20 08:45 - 2014-02-20 08:45 - 00000000 ____D () C:\Dokumente und Einstellungen\NetworkService\Lokale Einstellungen\Anwendungsdaten\Apple 2014-02-19 09:11 - 2014-02-17 12:32 - 00000000 ____D () C:\WINDOWS\455F074C814E4520B69B5584BD90400C.TMP 2014-02-19 09:10 - 2014-02-19 09:10 - 00000000 ____D () C:\Dokumente und Einstellungen\feuer\Anwendungsdaten\Apple Computer 2014-02-19 02:13 - 2014-02-19 02:13 - 00000000 ____D () C:\Dokumente und Einstellungen\Gast\Lokale Einstellungen\Anwendungsdaten\Adobe 2014-02-19 02:13 - 2014-02-18 11:10 - 00000000 ____D () C:\Dokumente und Einstellungen\Gast\Anwendungsdaten\Adobe 2014-02-19 02:04 - 2014-02-19 02:04 - 00000000 ____D () C:\Dokumente und Einstellungen\Gast\Lokale Einstellungen\Anwendungsdaten\Apple 2014-02-19 02:00 - 2014-02-19 02:00 - 00000000 ____D () C:\Dokumente und Einstellungen\Gast\Anwendungsdaten\Apple Computer 2014-02-18 15:15 - 2011-10-24 02:00 - 00000000 ____D () C:\Programme\MSXML 4.0 2014-02-18 14:57 - 2011-09-09 21:39 - 3994315776 _____ () C:\Dokumente und Einstellungen\feuer\Eigene Dateien\galilao.AVI 2014-02-18 14:10 - 2014-02-18 14:10 - 00000000 ____D () C:\Programme\Gemeinsame Dateien\Apple 2014-02-18 14:10 - 2014-02-18 14:10 - 00000000 ____D () C:\Dokumente und Einstellungen\feuer\Lokale Einstellungen\Anwendungsdaten\Apple Computer 2014-02-18 14:10 - 2014-02-18 14:10 - 00000000 ____D () C:\Dokumente und Einstellungen\feuer\Lokale Einstellungen\Anwendungsdaten\Apple 2014-02-18 14:10 - 2014-02-18 14:10 - 00000000 ____D () C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Apple 2014-02-18 13:57 - 2011-04-29 04:28 - 00000000 ___HD () C:\Programme\InstallShield Installation Information 2014-02-18 13:50 - 2014-02-18 13:50 - 00000000 ____D () C:\Programme\CyberLink 2014-02-18 11:10 - 2014-02-18 11:10 - 00000000 ____D () C:\Dokumente und Einstellungen\Gast\Anwendungsdaten\Macromedia 2014-02-18 11:07 - 2014-02-18 11:07 - 00000000 ____D () C:\Dokumente und Einstellungen\Gast\Lokale Einstellungen\Anwendungsdaten\Mozilla 2014-02-18 11:07 - 2014-02-18 11:07 - 00000000 ____D () C:\Dokumente und Einstellungen\Gast\Anwendungsdaten\Mozilla 2014-02-18 11:04 - 2014-02-18 11:04 - 00032456 _____ () C:\Dokumente und Einstellungen\Gast\Lokale Einstellungen\Anwendungsdaten\GDIPFONTCACHEV1.DAT 2014-02-18 11:03 - 2014-02-18 11:03 - 00000787 _____ () C:\Dokumente und Einstellungen\Gast\Startmenü\Programme\Internet Explorer.lnk 2014-02-18 11:03 - 2014-02-18 11:03 - 00000772 _____ () C:\Dokumente und Einstellungen\Gast\Startmenü\Programme\Windows Media Player.lnk 2014-02-18 11:03 - 2014-02-18 11:03 - 00000722 _____ () C:\Dokumente und Einstellungen\Gast\Startmenü\Programme\Outlook Express.lnk 2014-02-18 11:03 - 2014-02-18 11:03 - 00000020 ___SH () C:\Dokumente und Einstellungen\Gast\ntuser.ini 2014-02-18 11:03 - 2014-02-18 11:03 - 00000000 ___RD () C:\Dokumente und Einstellungen\Gast\Startmenü\Programme\Zubehör 2014-02-18 11:03 - 2014-02-18 11:03 - 00000000 ___RD () C:\Dokumente und Einstellungen\Gast\Startmenü\Programme 2014-02-18 11:03 - 2014-02-18 11:03 - 00000000 ___RD () C:\Dokumente und Einstellungen\Gast\Eigene Dateien\Eigene Musik 2014-02-18 11:03 - 2014-02-18 11:03 - 00000000 ___RD () C:\Dokumente und Einstellungen\Gast\Eigene Dateien\Eigene Bilder 2014-02-18 11:03 - 2014-02-18 11:03 - 00000000 ____D () C:\Dokumente und Einstellungen\Gast\Lokale Einstellungen\Anwendungsdaten\Scansoft 2014-02-17 20:58 - 2014-02-17 18:30 - 00000000 ____D () C:\Avenger 2014-02-17 19:14 - 2014-02-17 19:14 - 00001118 _____ () C:\Dokumente und Einstellungen\feuer\Desktop\JRT.txt 2014-02-17 18:50 - 2014-02-03 00:21 - 00000000 ____D () C:\AdwCleaner 2014-02-17 18:03 - 2014-02-17 18:03 - 00000000 ____D () C:\Dokumente und Einstellungen\feuer\Anwendungsdaten\Malwarebytes 2014-02-17 18:02 - 2014-02-17 18:02 - 00000636 _____ () C:\Dokumente und Einstellungen\All Users\Desktop\ Malwarebytes Anti-Malware .lnk 2014-02-17 18:02 - 2014-02-17 18:02 - 00000000 ____D () C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Malwarebytes' Anti-Malware 2014-02-17 18:02 - 2014-02-17 18:02 - 00000000 ____D () C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Malwarebytes 2014-02-17 13:49 - 2012-02-08 18:00 - 00000000 ____D () C:\Dokumente und Einstellungen\feuer\Eigene Dateien\My Digital Editions 2014-02-17 13:12 - 2013-02-16 23:06 - 00001603 _____ () C:\Dokumente und Einstellungen\UpdatusUser\Startmenü\Programme\Remoteunterstützung.lnk 2014-02-17 13:12 - 2011-04-29 04:20 - 00001603 _____ () C:\Dokumente und Einstellungen\feuer\Startmenü\Programme\Remoteunterstützung.lnk 2014-02-17 13:02 - 2014-02-18 11:03 - 00001603 _____ () C:\Dokumente und Einstellungen\Gast\Startmenü\Programme\Remoteunterstützung.lnk 2014-02-17 13:02 - 2011-04-29 04:18 - 00001603 ____C () C:\Dokumente und Einstellungen\Default User\Startmenü\Programme\Remoteunterstützung.lnk 2014-02-17 12:40 - 2014-02-17 12:40 - 00000044 _____ () C:\Dokumente und Einstellungen\NetworkService\Anwendungsdaten\WB.CFG 2014-02-17 12:32 - 2014-02-17 12:32 - 00000000 ____D () C:\Programme\Gemeinsame Dateien\Wise Installation Wizard 2014-02-17 10:17 - 2014-02-17 10:17 - 00000000 ____D () C:\Dokumente und Einstellungen\feuer\Startmenü\Programme\Notepad++ 2014-02-17 10:17 - 2013-02-19 02:37 - 00000620 _____ () C:\Dokumente und Einstellungen\feuer\Desktop\Notepad++.lnk 2014-02-17 10:17 - 2013-02-19 02:37 - 00000000 ____D () C:\Dokumente und Einstellungen\feuer\Anwendungsdaten\Notepad++ ==================== Bamital & volsnap Check ================= C:\WINDOWS\explorer.exe [2002-08-29 13:00] - [2008-04-14 03:22] - 1036800 ____A (Microsoft Corporation) 418045a93cd87a352098ab7dabe1b53e C:\WINDOWS\system32\winlogon.exe [2002-08-29 13:00] - [2008-04-14 03:23] - 0513024 ____A (Microsoft Corporation) f09a527b422e25c478e38caa0e44417a C:\WINDOWS\system32\svchost.exe [2002-08-29 13:00] - [2008-04-14 03:23] - 0014336 ____A (Microsoft Corporation) 4fbc75b74479c7a6f829e0ca19df3366 C:\WINDOWS\system32\services.exe [2002-08-29 13:00] - [2009-02-09 12:21] - 0111104 ____A (Microsoft Corporation) a3edbe9053889fb24ab22492472b39dc C:\WINDOWS\system32\User32.dll [2002-08-29 13:00] - [2008-04-14 03:22] - 0580096 ____A (Microsoft Corporation) b0050cc5340e3a0760dd8b417ff7aebd C:\WINDOWS\system32\userinit.exe [2002-08-29 13:00] - [2008-04-14 03:23] - 0026624 ____A (Microsoft Corporation) 788f95312e26389d596c0fa55834e106 C:\WINDOWS\system32\rpcss.dll [2002-08-29 13:00] - [2009-02-09 11:51] - 0401408 ____A (Microsoft Corporation) 3127afbf2c1ed0ab14a1bbb7aaecb85b ATTENTION ======> If the system is having audio adware rpcss.dll is patched. Google the MD5, if the MD5 is unique the file is infected. C:\WINDOWS\system32\Drivers\volsnap.sys [2002-08-29 13:00] - [2008-04-14 02:52] - 0053760 ____A (Microsoft Corporation) a5a712f4e880874a477af790b5186e1d ==================== End Of Log ============================ |
19.03.2014, 17:15 | #50 |
/// the machine /// TB-Ausbilder | Windows XP: Browser verursacht Werbung Ich krieg die Motten Scan mit Combofix
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
20.03.2014, 01:31 | #51 |
| Windows XP: Browser verursacht Werbung Beim Ausführen von combofix passierte dies: Der Computer stürzte ab mit einem BlueScreen und startete wieder. Da er keinen Combofix.txt hinterlegte probierte ich es nochmals. combofix1.txt: Code:
ATTFilter ComboFix 14-03-19.01 - feuer 20.03.2014 1:12.3.2 - x86 Microsoft Windows XP Home Edition 5.1.2600.3.1252.49.1031.18.3071.2389 [GMT 1:00] ausgeführt von:: c:\dokumente und einstellungen\feuer\Eigene Dateien\Downloads\ComboFix.exe AV: Norton Internet Security CBE *Disabled/Updated* {E10A9785-9598-4754-B552-92431C1C35F8} FW: Norton Internet Security CBE *Disabled* {7C21A4C9-F61F-4AC4-B722-A6E19C16F220} . . (((((((((((((((((((((((((((((((((((( Weitere Löschungen )))))))))))))))))))))))))))))))))))))))))))))))) . . c:\dokumente und einstellungen\All Users\Anwendungsdaten\TEMP c:\windows\IsUn0407.exe . . ((((((((((((((((((((((( Dateien erstellt von 2014-02-20 bis 2014-03-20 )))))))))))))))))))))))))))))) . . 2014-03-19 00:39 . 2014-03-19 00:03 24064 ----a-w- c:\windows\zoek-delete.exe 2014-03-15 16:09 . 2014-03-15 17:09 -------- d-----w- C:\zoek_backup 2014-03-14 15:23 . 2014-02-20 19:49 877480 ----a-w- c:\windows\system32\npdeployJava1.dll 2014-03-14 15:23 . 2014-02-20 19:49 800168 ----a-w- c:\windows\system32\deployJava1.dll 2014-03-14 13:14 . 2014-03-14 13:14 -------- d-----w- c:\dokumente und einstellungen\feuer\Anwendungsdaten\1H1Q 2014-03-07 21:47 . 2014-03-07 21:47 -------- d-----w- c:\dokumente und einstellungen\feuer\Tracing 2014-03-07 21:46 . 2010-04-28 06:44 54760 ----a-w- c:\windows\system32\drivers\fssfltr_tdi.sys 2014-03-07 21:46 . 2014-03-07 21:46 -------- d-----w- c:\programme\Microsoft Sync Framework 2014-03-07 21:44 . 2014-03-07 21:44 -------- d-----w- c:\programme\Microsoft SQL Server Compact Edition 2014-03-07 21:43 . 2014-03-07 21:43 -------- d-----w- c:\programme\Windows Live SkyDrive 2014-03-07 21:42 . 2014-03-15 16:35 -------- d-----w- c:\programme\Windows Live 2014-03-07 21:37 . 2014-03-07 21:37 -------- d-----w- c:\programme\Gemeinsame Dateien\Windows Live 2014-03-07 19:10 . 2014-03-07 19:10 -------- d-----w- C:\history 2014-03-07 15:50 . 2014-03-07 15:50 -------- d-----w- c:\programme\Microsoft.NET 2014-03-07 15:26 . 2014-02-26 23:28 13312 -c----w- c:\windows\system32\dllcache\xp_eos.exe 2014-03-07 15:26 . 2014-02-26 23:28 13312 ------w- c:\windows\system32\xp_eos.exe 2014-03-07 15:08 . 2014-03-07 15:09 -------- dc-h--w- c:\windows\ie8 2014-03-07 14:23 . 2014-03-13 10:34 -------- d-----w- c:\programme\Microsoft Silverlight 2014-03-07 14:21 . 2014-03-07 15:12 -------- d--h--w- c:\windows\msdownld.tmp 2014-03-01 01:59 . 2014-03-01 02:04 -------- d-----w- c:\dokumente und einstellungen\feuer\Anwendungsdaten\Dev-Cpp 2014-02-24 07:23 . 2014-02-24 07:23 -------- d-----w- c:\dokumente und einstellungen\feuer\Lokale Einstellungen\Anwendungsdaten\Deployment 2014-02-23 15:46 . 2002-06-17 05:25 26088 ----a-r- c:\windows\system32\xmlinst.exe 2014-02-23 15:46 . 2002-04-24 10:43 35840 ----a-r- c:\windows\system32\comdlg32.oca 2014-02-23 15:46 . 2000-03-17 06:21 36864 ----a-r- c:\windows\system32\xmlparse.dll 2014-02-23 15:46 . 2000-03-17 06:21 69632 ----a-r- c:\windows\system32\xmltok.dll 2014-02-23 15:46 . 2014-02-23 15:46 -------- d-----w- c:\programme\Ubi Soft 2014-02-23 15:46 . 2002-04-09 15:23 29184 ----a-r- c:\windows\system32\MSINET.oca 2014-02-23 15:46 . 1998-06-17 22:00 89360 ----a-r- c:\windows\system32\VB5DB.DLL 2014-02-20 19:50 . 2014-03-14 15:10 94632 ----a-w- c:\windows\system32\WindowsAccessBridge.dll 2014-02-20 15:21 . 2014-03-07 13:56 -------- d-----w- c:\programme\Mozilla Maintenance Service 2014-02-20 07:45 . 2014-02-20 07:45 -------- d-----w- c:\dokumente und einstellungen\NetworkService\Lokale Einstellungen\Anwendungsdaten\Apple 2014-02-19 08:10 . 2014-02-19 08:10 -------- d-----w- c:\dokumente und einstellungen\feuer\Anwendungsdaten\Apple Computer 2014-02-18 13:10 . 2014-02-18 13:10 -------- d-----w- c:\dokumente und einstellungen\feuer\Lokale Einstellungen\Anwendungsdaten\Apple Computer 2014-02-18 13:10 . 2014-02-18 13:10 -------- d-----w- c:\dokumente und einstellungen\feuer\Lokale Einstellungen\Anwendungsdaten\Apple 2014-02-18 13:10 . 2014-02-18 13:10 -------- d-----w- c:\programme\Gemeinsame Dateien\Apple 2014-02-18 13:10 . 2014-02-18 13:10 -------- d-----w- c:\dokumente und einstellungen\All Users\Anwendungsdaten\Apple 2014-02-18 12:57 . 2000-10-16 15:37 36864 ----a-w- c:\windows\system32\ctrldll.dll 2014-02-18 12:57 . 2000-10-16 15:37 32768 ----a-w- c:\windows\system32\rmctrl.exe 2014-02-18 12:50 . 2014-02-18 12:50 -------- d-----w- c:\programme\CyberLink 2014-02-18 12:49 . 2014-03-10 07:23 15271 ----a-w- c:\windows\system32\drivers\FIDE.SYS 2014-02-18 10:03 . 2014-02-22 06:21 -------- d-----w- c:\dokumente und einstellungen\Gast . . . (((((((((((((((((((((((((((((((((((( Find3M Bericht )))))))))))))))))))))))))))))))))))))))))))))))))))))) . 2014-03-12 09:50 . 2012-04-07 18:11 692616 ----a-w- c:\windows\system32\FlashPlayerApp.exe 2014-03-12 09:50 . 2011-05-13 20:15 71048 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl 2014-02-24 11:45 . 2002-08-29 12:00 920064 ----a-w- c:\windows\system32\wininet.dll 2014-02-24 11:45 . 2002-08-29 12:00 43520 ------w- c:\windows\system32\licmgr10.dll 2014-02-24 11:45 . 2002-08-29 12:00 1469440 ------w- c:\windows\system32\inetcpl.cpl 2014-02-24 11:44 . 2002-08-29 12:00 18944 ------w- c:\windows\system32\corpol.dll 2014-02-24 10:54 . 2004-08-04 07:42 385024 ------w- c:\windows\system32\html.iec 2014-02-20 19:49 . 2012-06-29 19:05 145408 ----a-w- c:\windows\system32\javacpl.cpl 2014-02-15 01:07 . 2011-04-29 03:28 415832 ----a-w- c:\windows\system32\drivers\Rtenicxp.sys 2014-02-15 01:07 . 2011-04-29 03:34 84584 ----a-w- c:\windows\SOUNDMAN.EXE 2014-02-15 01:07 . 2011-04-29 03:34 359016 ----a-w- c:\windows\vncutil.exe 2014-02-15 01:07 . 2011-04-29 03:34 1523416 ----a-w- c:\windows\RtlUpd.exe 2014-02-15 01:07 . 2011-04-29 03:34 891976 ----a-w- c:\windows\system32\RTSndMgr.CPL 2014-02-15 01:07 . 2011-04-29 03:34 9721960 ----a-w- c:\windows\RTLCPL.EXE 2014-02-15 01:07 . 2011-04-29 03:34 5630168 ----a-w- c:\windows\system32\drivers\RtkHDAud.sys 2014-02-15 01:07 . 2013-02-16 22:10 87256 ----a-w- c:\windows\system32\RtkCoInstIIXP.dll 2014-02-15 01:07 . 2011-04-29 03:34 129640 ----a-w- c:\windows\RtkAudioService.exe 2014-02-15 01:07 . 2011-04-29 03:34 20145368 ----a-w- c:\windows\RTHDCPL.EXE 2014-02-15 01:06 . 2011-04-29 03:34 1395800 ----a-w- c:\windows\system32\drivers\Monfilt.sys 2014-02-15 01:06 . 2011-04-29 03:34 2180712 ----a-w- c:\windows\MicCal.exe 2014-02-15 01:06 . 2011-04-29 03:34 64104 ----a-w- c:\windows\ALCMTR.EXE 2014-02-15 01:06 . 2011-04-29 03:34 2815592 ----a-w- c:\windows\ALCWZRD.EXE 2014-02-15 01:06 . 2011-04-29 03:34 1691480 ----a-w- c:\windows\system32\drivers\Ambfilt.sys 2014-02-15 01:06 . 2011-04-29 03:34 285288 ----a-w- c:\windows\system32\ALSNDMGR.CPL 2014-02-15 01:05 . 2011-05-16 16:04 28448 ----a-w- c:\windows\system32\nvhdap32.dll 2014-02-15 01:05 . 2011-05-16 16:04 128672 ----a-w- c:\windows\system32\drivers\nvhda32.sys 2014-02-11 07:03 . 2014-02-10 01:03 1409 ----a-w- c:\windows\QTFont.for 2014-02-07 06:36 . 2002-08-29 12:00 1879168 ----a-w- c:\windows\system32\win32k.sys 2014-02-05 08:54 . 2011-04-29 04:24 563712 ----a-w- c:\windows\system32\qedit.dll 2014-02-03 02:00 . 2014-02-03 02:00 487508 ----a-w- C:\monitor.exe 2014-02-03 02:00 . 2014-02-03 02:00 34244 ----a-w- C:\monitorsvc.exe 2014-01-08 06:09 . 2014-02-09 20:10 19840 ----a-w- c:\windows\system32\drivers\pcwatch.sys 2014-01-08 06:08 . 2014-02-09 20:10 293984 ----a-w- c:\windows\system32\PCProtect.dll 2014-01-04 03:12 . 2002-08-29 12:00 420864 ----a-w- c:\windows\system32\vbscript.dll . . (((((((((((((((((((((((((((( Autostartpunkte der Registrierung )))))))))))))))))))))))))))))))))))))))) . . *Hinweis* leere Einträge & legitime Standardeinträge werden nicht angezeigt. REGEDIT4 . [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "SetDefaultMIDI"="MIDIDef.exe" [2002-12-03 49152] . [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "Adobe ARM"="c:\programme\Gemeinsame Dateien\Adobe\ARM\1.0\AdobeARM.exe" [2013-11-21 959904] "CTSysVol"="c:\programme\Creative\Surround Mixer\CTSysVol.exe" [2005-10-31 57344] "Nvtmru"="c:\programme\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe" [2013-05-16 1012000] "SSBkgdUpdate"="c:\programme\Gemeinsame Dateien\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" [2006-10-25 210472] "Persistence"="c:\windows\System32\igfxpers.exe" [2007-12-19 131072] "IgfxTray"="c:\windows\System32\igfxtray.exe" [2007-12-19 135168] "HotKeysCmds"="c:\windows\System32\hkcmd.exe" [2007-12-19 159744] "DelReg"="c:\programme\MSI\DualCoreCenter\DelReg.exe" [2008-05-13 196608] "DivXUpdate"="c:\programme\DivX\DivX Update\DivXUpdate.exe" [2013-11-15 1861968] "RTHDCPL"="RTHDCPL.EXE" [2014-02-15 20145368] "RemoteControl"="c:\windows\system32\rmctrl.exe" [2000-10-16 32768] "APSDaemon"="c:\programme\Gemeinsame Dateien\Apple\Apple Application Support\APSDaemon.exe" [2013-04-21 59720] "NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2013-06-21 15677728] "NvMediaCenter"="c:\windows\system32\NvMcTray.dll" [2013-06-21 223008] . [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run] "CTFMON.EXE"="c:\windows\System32\CTFMON.EXE" [2008-04-14 15360] . c:\dokumente und einstellungen\feuer\Startmenü\Programme\Autostart\ ubisoft register.lnk - c:\programme\Ubi Soft\Register\schedule.exe /26.03.2014 11:51 /game=Die Siedler IV Gold+ Edition /language=German /country=Germany /url=hxxp://register-it.ubi.com/register.asp [2014-2-23 28672] . c:\dokumente und einstellungen\All Users\Startmenü\Programme\Autostart\ Secunia PSI Tray.lnk - c:\programme\Secunia\PSI\psi_tray.exe [2013-12-6 565464] . [hkey_local_machine\software\microsoft\windows\currentversion\explorer\ShellExecuteHooks] "{56F9679E-7826-4C84-81F3-532071A8BCC5}"= "c:\programme\Windows Desktop Search\MSNLNamespaceMgr.dll" [2009-05-24 304128] . [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\pcwatch.sys] @="Driver" . [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys] @="Driver" . [HKLM\~\startupfolder\C:^Dokumente und Einstellungen^All Users^Startmenü^Programme^Autostart^DualCoreCenter.lnk] path=c:\dokumente und einstellungen\All Users\Startmenü\Programme\Autostart\DualCoreCenter.lnk backup=c:\windows\pss\DualCoreCenter.lnkCommon Startup . [HKLM\~\startupfolder\C:^Dokumente und Einstellungen^All Users^Startmenü^Programme^Autostart^Microsoft Office.lnk] path=c:\dokumente und einstellungen\All Users\Startmenü\Programme\Autostart\Microsoft Office.lnk backup=c:\windows\pss\Microsoft Office.lnkCommon Startup . [HKLM\~\startupfolder\C:^Dokumente und Einstellungen^All Users^Startmenü^Programme^Autostart^Windows Search.lnk] path=c:\dokumente und einstellungen\All Users\Startmenü\Programme\Autostart\Windows Search.lnk backup=c:\windows\pss\Windows Search.lnkCommon Startup . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NokiaMServer] c:\programme\Gemeinsame Dateien\Nokia\MPlatform\NokiaMServer [X] . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BrMfcWnd] 2007-03-12 12:51 663552 ------w- c:\programme\Brother\Brmfcmon\BrMfcWnd.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ControlCenter3] 2007-01-26 13:58 65536 ------w- c:\programme\Brother\ControlCenter3\BrCtrCen.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DivXMediaServer] 2013-12-23 04:16 450560 ----a-w- c:\programme\DivX\DivX Media Server\DivXMediaServer.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IndexSearch.exe] 2007-01-29 19:10 46632 ----a-w- c:\programme\ScanSoft\PaperPort\IndexSearch.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\KiesAirMessage] 2012-10-09 00:17 580096 ----a-w- j:\alex\Kies\KiesAirMessage.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\KiesPreload] 2012-10-11 00:33 966072 ----a-w- j:\alex\Kies\Kies.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\KiesTrayAgent] 2012-10-11 00:33 309688 ----a-w- j:\alex\Kies\KiesTrayAgent.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\P17Helper] 2007-12-28 08:32 65536 ----a-w- c:\windows\system32\P17.dll . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PaperPort PTD] 2007-01-29 19:12 30248 ----a-w- c:\programme\ScanSoft\PaperPort\pptd40nt.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PCMService] 2003-02-04 14:46 57344 ------w- c:\programme\Medion\PowerCinema\PCMService.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PPort11reminder] 2007-02-01 11:46 255528 ----a-w- c:\programme\ScanSoft\PaperPort\Ereg\Ereg.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task] 2014-02-10 00:57 77824 ----a-w- c:\programme\QuickTime\qttask.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\VC9Player] 2009-10-01 08:30 202056 ----a-w- c:\programme\Virtual CD v9\System\vc9play.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WinEjectAutoStart1] 2001-05-10 12:33 96768 ----a-w- e:\programme\WinEject\WinEject.exe . [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile] "EnableFirewall"= 0 (0x0) . [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List] "%windir%\\system32\\sessmgr.exe"= "%windir%\\Network Diagnostic\\xpnetdiag.exe"= "c:\\Programme\\SiSoftware\\SiSoftware Sandra Lite 2011.SP2\\RpcAgentSrv.exe"= "c:\\WINDOWS\\system32\\muzapp.exe"= "c:\\Programme\\NVIDIA Corporation\\NVIDIA Update Core\\daemonu.exe"= "c:\\Programme\\SiSoftware\\SiSoftware Sandra Lite 2011.SP2\\WNt500x86\\RpcSandraSrv.exe"= "c:\\Programme\\Gemeinsame Dateien\\Apple\\Apple Application Support\\WebKit2WebProcess.exe"= "c:\\Programme\\Windows Live\\Messenger\\wlcsdk.exe"= "c:\\Programme\\Windows Live\\Messenger\\msnmsgr.exe"= "c:\\Programme\\Windows Live\\Sync\\WindowsLiveSync.exe"= . [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List] "5985:TCP"= 5985:TCP:*:Disabled:Windows-Remoteverwaltung "3587:TCP"= 3587:TCP:Windows Peer-zu-Peer-Gruppierung "3540:UDP"= 3540:UDP:Peer Name Resolution-Protokoll (PNRP) . [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\IcmpSettings] "AllowInboundEchoRequest"= 1 (0x1) . R0 hotcore3;hc3ServiceName;c:\windows\system32\drivers\hotcore3.sys [05.11.2012 12:10 58464] R0 SymDS;Symantec Data Store;c:\windows\system32\drivers\NIS\1501000.012\symds.sys [29.11.2013 05:13 367704] R0 SymEFA;Symantec Extended File Attributes;c:\windows\system32\drivers\NIS\1501000.012\symefa.sys [29.11.2013 05:13 935512] R1 BHDrvx86;BHDrvx86;c:\programme\Norton Internet Security CBE\NortonData\21.0.0.100\Definitions\BASHDefs\20140214.001\BHDrvx86.sys [19.02.2014 02:26 1098968] R1 ccSet_NIS;NIS Settings Manager;c:\windows\system32\drivers\NIS\1501000.012\ccsetx86.sys [29.11.2013 05:13 127064] R1 pcwatch;pcwatch service;c:\windows\system32\drivers\pcwatch.sys [09.02.2014 21:10 19840] R1 SymIRON;Symantec Iron Driver;c:\windows\system32\drivers\NIS\1501000.012\ironx86.sys [29.11.2013 05:13 206936] R1 vdrv9000;vdrv9000;c:\windows\system32\drivers\vdrv9000.sys [30.04.2011 23:57 113688] R2 BBUpdate;BBUpdate;c:\programme\Microsoft\BingBar\SeaPort.EXE [13.10.2011 17:21 249648] R2 Iprip;RIP-Überwachung;c:\windows\System32\svchost.exe -k netsvcs [29.08.2002 13:00 14336] R2 NIS;Norton Internet Security CBE;c:\programme\Norton Internet Security CBE\Engine\21.1.0.18\nis.exe [29.11.2013 05:12 275696] R2 Secunia PSI Agent;Secunia PSI Agent;c:\programme\Secunia\PSI\PSIA.exe --start-service --> c:\programme\Secunia\PSI\PSIA.exe --start-service [?] R2 Secunia Update Agent;Secunia Update Agent;c:\programme\Secunia\PSI\sua.exe --start-service --> c:\programme\Secunia\PSI\sua.exe --start-service [?] R2 VC9SecS;Virtual CD v9 Management Service;c:\programme\Virtual CD v9\System\VC9SecS.exe [30.04.2011 23:57 132424] R3 EraserUtilRebootDrv;EraserUtilRebootDrv;c:\programme\Gemeinsame Dateien\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [29.11.2013 01:54 108120] R3 HCWBT8xx;Hauppauge WinTV 848/9 WDM Video Driver;c:\windows\system32\drivers\HCWBT8XX.sys [29.04.2011 05:39 472644] R3 IDSxpx86;IDSxpx86;c:\programme\Norton Internet Security CBE\NortonData\21.0.0.100\Definitions\IPSDefs\20140318.001\IDSXpx86.sys [19.03.2014 02:26 383128] R3 PSI;PSI;c:\windows\system32\drivers\psi_mf_x86.sys [06.12.2013 15:47 16024] S0 tclondrv;tclondrv;c:\windows\system32\DRIVERS\tclondrv.sys --> c:\windows\system32\DRIVERS\tclondrv.sys [?] S2 BBSvc;Bing Bar Update Service;c:\programme\Microsoft\BingBar\BBSvc.EXE [21.10.2011 15:23 196176] S3 3xHybrid;CTX SAA713x PCI Card;c:\windows\system32\drivers\3xHybrid.sys [24.11.2008 12:37 1315936] S3 Ambfilt;Ambfilt;c:\windows\system32\drivers\Ambfilt.sys [29.04.2011 04:34 1691480] S3 androidusb;SAMSUNG Android Composite ADB Interface Driver;c:\windows\system32\drivers\ssadadb.sys [30.12.2011 15:05 30312] S3 HH9Help.sys;HH9Help.sys;c:\windows\system32\drivers\HH9Help.sys [30.04.2011 23:57 11392] S3 MTK;Media Technology Kernel Driver;c:\windows\system32\drivers\FIDE.SYS [18.02.2014 13:49 15271] S3 nmwcdnsu;Nokia USB Flashing Phone Parent;c:\windows\system32\drivers\nmwcdnsu.sys [18.11.2013 01:20 137600] S3 PCProtect;PCProtect;c:\programme\Web Protect\PCProtect.exe --> c:\programme\Web Protect\PCProtect.exe [?] S3 RTCore32;RTCore32;c:\programme\EVGA Precision\RTCore32.sys [25.05.2005 19:39 4608] S3 SandraAgentSrv;SiSoftware Deployment Agent Service;c:\programme\SiSoftware\SiSoftware Sandra Lite 2011.SP2\RpcAgentSrv.exe [12.05.2011 14:56 93848] S3 ssadbus;SAMSUNG Android USB Composite Device driver (WDM);c:\windows\system32\drivers\ssadbus.sys [30.12.2011 15:05 121064] S3 ssadmdfl;SAMSUNG Android USB Modem (Filter);c:\windows\system32\drivers\ssadmdfl.sys [30.12.2011 15:05 12776] S3 ssadmdm;SAMSUNG Android USB Modem Drivers;c:\windows\system32\drivers\ssadmdm.sys [30.12.2011 15:05 136808] S3 ssadserd;SAMSUNG Android USB Diagnostic Serial Port (WDM);c:\windows\system32\drivers\ssadserd.sys [30.12.2011 15:05 114280] . [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost] p2psvc REG_MULTI_SZ p2psvc p2pimsvc p2pgasvc PNRPSvc . [HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}] 2014-03-15 16:54 1150280 ----a-w- c:\programme\Google\Chrome\Application\33.0.1750.154\Installer\chrmstp.exe . [HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{A8D647C8-65AC-409F-B7B2-3C0FEE1A32F2}] 2010-02-16 17:02 114688 ----a-w- c:\programme\PixiePack Codec Pack\InstallerHelper.exe . Inhalt des "geplante Tasks" Ordners . 2014-03-19 c:\windows\Tasks\Adobe Flash Player Updater.job - c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-04-07 09:50] . 2014-03-19 c:\windows\Tasks\Ende des Supports für Microsoft Windows XP – Benachrichtigung – Anmeldung.job - c:\windows\system32\xp_eos.exe [2014-03-07 23:28] . 2014-03-08 c:\windows\Tasks\Ende des Supports für Microsoft Windows XP – Monatliche Benachrichtigung.job - c:\windows\system32\xp_eos.exe [2014-03-07 23:28] . 2014-03-19 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job - c:\programme\Google\Update\GoogleUpdate.exe [2014-03-07 14:49] . 2014-03-19 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job - c:\programme\Google\Update\GoogleUpdate.exe [2014-03-07 14:49] . . ------- Zusätzlicher Suchlauf ------- . uInternet Connection Wizard,ShellNext = iexplore uInternet Settings,ProxyOverride = <-loopback> LSP: c:\windows\system32\PCProtect.dll TCP: DhcpNameServer = 192.168.0.1 DPF: DirectAnimation Java Classes - file://c:\windows\Java\classes\dajava.cab DPF: Microsoft XML Parser for Java FF - ProfilePath - c:\dokumente und einstellungen\feuer\Anwendungsdaten\Mozilla\Firefox\Profiles\qhdllhf9.default-1394709733765\ . - - - - Entfernte verwaiste Registrierungseinträge - - - - . Toolbar-Locked - (no file) HKLM-Run-BingDesktop - c:\programme\Microsoft\BingDesktop\BingDesktop.exe AddRemove-S4Uninst - c:\windows\IsUn0407.exe . . . ************************************************************************** . catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, hxxp://www.gmer.net Rootkit scan 2014-03-20 01:20 Windows 5.1.2600 Service Pack 3 NTFS . Scanne versteckte Prozesse... . Scanne versteckte Autostarteinträge... . Scanne versteckte Dateien... . Scan erfolgreich abgeschlossen versteckte Dateien: 0 . ************************************************************************** . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NIS] "ImagePath"="\"c:\programme\Norton Internet Security CBE\Engine\21.1.0.18\NIS.exe\" /s \"NIS\" /m \"c:\programme\Norton Internet Security CBE\Engine\21.1.0.18\diMaster.dll\" /prefetch:1" "ImagePath"="\SystemRoot\System32\Drivers\NIS\1501000.012\SYMTDI.SYS" "TrustedImagePaths"="c:\programme\Norton Internet Security CBE\Engine\21.1.0.18" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\vdrv9000] "ImagePath"="system32\DRIVERS\vdrv9000.sys" . --------------------- Gesperrte Registrierungsschluessel --------------------- . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004\Software\Microsoft\SystemCertificates\AddressBook*] @Allowed: (Read) (RestrictedCode) @Allowed: (Read) (RestrictedCode) . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID] @DACL=(02 0000) . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{8AD9C840-044E-11D1-B3E9-00805F499D93}] @DACL=(02 0000) @="Java Plug-in 10.51.2" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{97090E2F-3062-4459-855B-014F0D3CDBB1}] @DACL=(02 0000) @="Windows Search-Deskbar" "AppID"="" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{9FA6D63D-8A68-4d13-BD76-84A3555EB1D1}] @DACL=(02 0000) @=hex:20,1d,1d,1c,1a,21,18,1f . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0013-0000-0003-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.3.0_03" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0013-0000-0004-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.3.0_04" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0013-0000-0005-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.3.0_05" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0013-0001-0000-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.3.1" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0013-0001-0001-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.3.1_01" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0013-0001-0001-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.3.1_01" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0013-0001-0002-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.3.1_02" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0013-0001-0002-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.3.1_02" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0013-0001-0003-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.3.1_03" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0013-0001-0003-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.3.1_03" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0013-0001-0004-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.3.1_04" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0013-0001-0004-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.3.1_04" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0013-0001-0005-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.3.1_05" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0013-0001-0005-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.3.1_05" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0013-0001-0006-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.3.1_06" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0013-0001-0006-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.3.1_06" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0013-0001-0007-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.3.1_07" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0013-0001-0007-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.3.1_07" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0013-0001-0008-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.3.1_08" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0013-0001-0008-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.3.1_08" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0013-0001-0009-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.3.1_09" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0013-0001-0009-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.3.1_09" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0013-0001-0010-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.3.1_10" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0013-0001-0010-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.3.1_10" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0013-0001-0011-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.3.1_11" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0013-0001-0011-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.3.1_11" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0013-0001-0012-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.3.1_12" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0013-0001-0012-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.3.1_12" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0013-0001-0013-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.3.1_13" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0013-0001-0013-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.3.1_13" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0013-0001-0014-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.3.1_14" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0013-0001-0014-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.3.1_14" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0013-0001-0015-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.3.1_15" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0013-0001-0015-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.3.1_15" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0013-0001-0016-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.3.1_16" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0013-0001-0016-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.3.1_16" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0013-0001-0017-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.3.1_17" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0013-0001-0017-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.3.1_17" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0013-0001-0018-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.3.1_18" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0013-0001-0018-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.3.1_18" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0013-0001-0019-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.3.1_19" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0013-0001-0019-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.3.1_19" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0013-0001-0020-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.3.1_20" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0013-0001-0020-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.3.1_20" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0013-0001-0021-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.3.1_21" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0013-0001-0021-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.3.1_21" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0000-0000-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.0" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0000-0000-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.0" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0000-0001-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.0_01" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0000-0001-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.0_01" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0000-0002-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.0_02" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0000-0002-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.0_02" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0000-0003-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.0_03" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0000-0003-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.0_03" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0000-0004-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.0_04" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0000-0004-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.0_04" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0001-0000-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.1" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0001-0000-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.1" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0001-0001-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.1_01" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0001-0001-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.1_01" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0001-0002-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.1_02" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0001-0002-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.1_02" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0001-0003-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.1_03" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0001-0003-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.1_03" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0001-0004-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.1_04" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0001-0004-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.1_04" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0001-0005-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.1_05" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0001-0005-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.1_05" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0001-0006-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.1_06" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0001-0006-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.1_06" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0001-0007-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.1_07" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0001-0007-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.1_07" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0000-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0000-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0001-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_01" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0001-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_01" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0002-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_02" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0002-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_02" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0003-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_03" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0003-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_03" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0004-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_04" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0004-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_04" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0005-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_05" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0005-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_05" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0006-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_06" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0006-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_06" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0007-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_07" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0007-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_07" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0008-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_08" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0008-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_08" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0009-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_09" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0009-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_09" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0010-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_10" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0010-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_10" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0011-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_11" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0011-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_11" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0012-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_12" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0012-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_12" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0013-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_13" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0013-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_13" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0014-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_14" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0014-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_14" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0015-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_15" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0015-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_15" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0016-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_16" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0016-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_16" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0017-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_17" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0017-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_17" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0018-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_18" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0018-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_18" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0019-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_19" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0019-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_19" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0020-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_20" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0020-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_20" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0021-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_21" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0021-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_21" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0022-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_22" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0022-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_22" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0023-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_23" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0023-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_23" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0024-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_24" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0024-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_24" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0025-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_25" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0025-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_25" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0026-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_26" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0026-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_26" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0027-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_27" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0027-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_27" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0028-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_28" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0028-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_28" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0029-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_29" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0029-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_29" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0030-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_30" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0030-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_30" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0031-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_31" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0031-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_31" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0032-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_32" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0032-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_32" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0033-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_33" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0033-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_33" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0034-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_34" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0034-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_34" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0035-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_35" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0035-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_35" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0036-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_36" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0036-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_36" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0037-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_37" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0037-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_37" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0038-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_38" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0038-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_38" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0039-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_39" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0039-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_39" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0040-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_40" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0040-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_40" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0041-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_41" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0041-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_41" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0042-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_42" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0042-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_42" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0043-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_43" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0043-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_43" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-FFFF-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0000-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0000-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0000-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0001-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_01" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0001-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_01" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0001-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_01" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0002-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_02" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0002-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_02" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0002-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_02" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0003-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_03" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0003-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_03" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0003-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_03" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0004-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_04" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0004-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_04" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0004-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_04" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0005-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_05" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0005-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_05" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0005-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_05" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0006-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_06" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0006-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_06" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0006-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_06" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0007-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_07" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0007-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_07" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0007-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_07" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0008-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_08" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0008-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_08" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0008-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_08" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0009-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_09" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0009-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_09" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0009-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_09" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0010-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_10" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0010-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_10" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0010-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_10" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0011-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_11" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0011-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_11" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0011-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_11" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0012-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_12" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0012-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_12" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0012-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_12" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0013-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_13" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0013-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_13" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0013-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_13" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0014-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_14" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0014-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_14" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0014-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_14" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0015-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_15" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0015-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_15" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0015-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_15" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0016-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_16" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0016-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_16" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0016-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_16" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0017-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_17" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0017-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_17" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0017-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_17" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0018-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_18" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0018-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_18" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0018-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_18" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0019-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_19" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0019-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_19" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0019-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_19" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0020-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_20" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0020-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_20" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0020-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_20" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0021-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_21" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0021-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_21" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0021-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_21" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0022-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_22" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0022-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_22" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0022-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_22" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0023-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_23" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0023-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_23" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0023-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_23" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0024-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_24" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0024-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_24" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0024-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_24" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0025-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_25" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0025-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_25" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0025-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_25" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0026-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_26" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0026-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_26" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0026-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_26" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0027-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_27" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0027-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_27" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0027-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_27" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0028-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_28" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0028-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_28" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0028-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_28" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0029-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_29" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0029-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_29" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0029-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_29" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0030-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_30" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0030-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_30" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0030-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_30" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0031-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_31" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0031-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_31" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0031-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_31" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0032-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_32" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0032-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_32" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0032-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_32" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0033-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_33" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0033-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_33" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0033-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_33" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0034-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_34" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0034-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_34" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0034-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_34" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0035-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_35" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0035-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_35" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0035-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_35" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0036-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_36" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0036-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_36" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0036-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_36" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0037-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_37" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0037-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_37" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0037-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_37" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0038-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_38" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0038-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_38" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0038-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_38" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0039-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_39" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0039-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_39" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0039-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_39" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0040-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_40" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0040-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_40" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0040-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_40" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0041-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_41" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0041-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_41" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0041-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_41" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0042-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_42" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0042-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_42" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0042-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_42" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0043-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_43" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0043-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_43" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0043-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_43" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0044-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_44" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0044-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_44" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0044-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_44" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0045-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_45" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0045-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_45" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0045-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_45" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0046-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_46" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0046-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_46" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0046-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_46" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0047-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_47" |
20.03.2014, 01:32 | #52 |
| Windows XP: Browser verursacht Werbung combofix2.txt: Code:
ATTFilter . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0047-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_47" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0047-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_47" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0048-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_48" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0048-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_48" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0048-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_48" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0049-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_49" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0049-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_49" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0049-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_49" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0050-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_50" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0050-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_50" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0050-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_50" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0051-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_51" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0051-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_51" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0051-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_51" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0052-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_52" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0052-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_52" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0052-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_52" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0053-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_53" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0053-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_53" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0053-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_53" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0054-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_54" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0054-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_54" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0054-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_54" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0055-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_55" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0055-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_55" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0055-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_55" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0056-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_56" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0056-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_56" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0056-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_56" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0057-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_57" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0057-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_57" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0057-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_57" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0058-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_58" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0058-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_58" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0058-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_58" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0059-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_59" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0059-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_59" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0059-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_59" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0060-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_60" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0060-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_60" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0060-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_60" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0061-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_61" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0061-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_61" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0061-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_61" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-FFFF-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0000-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0000-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0000-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0001-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_01" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0001-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_01" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0001-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_01" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0002-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_02" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0002-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_02" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0002-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_02" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0003-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_03" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0003-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_03" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0003-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_03" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0004-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_04" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0004-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_04" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0004-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_04" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0005-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_05" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0005-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_05" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0005-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_05" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0006-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_06" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0006-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_06" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0006-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_06" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_07" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0007-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_07" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0007-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_07" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0008-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_08" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0008-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_08" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0008-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_08" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0009-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_09" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0009-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_09" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0009-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_09" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0010-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_10" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0010-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_10" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0010-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_10" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0011-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_11" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0011-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_11" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0011-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_11" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0012-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_12" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0012-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_12" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0012-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_12" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0013-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_13" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0013-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_13" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0013-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_13" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0014-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_14" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0014-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_14" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0014-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_14" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0015-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_15" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0015-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_15" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0015-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_15" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0016-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_16" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0016-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_16" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0016-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_16" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_17" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0017-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_17" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0017-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_17" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0018-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_18" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0018-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_18" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0018-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_18" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0019-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_19" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0019-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_19" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0019-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_19" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_20" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_20" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_20" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_21" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0021-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_21" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0021-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_21" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_22" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_22" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_22" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_23" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0023-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_23" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0023-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_23" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_24" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0024-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_24" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0024-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_24" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0025-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_25" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0025-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_25" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0025-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_25" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_26" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0026-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_26" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0026-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_26" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0027-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_27" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0027-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_27" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0027-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_27" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0028-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_28" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0028-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_28" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0028-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_28" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0029-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_29" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0029-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_29" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0029-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_29" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0030-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_30" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0030-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_30" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0030-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_30" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0031-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_31" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0031-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_31" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0031-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_31" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0032-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_32" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0032-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_32" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0032-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_32" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0033-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_33" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0033-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_33" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0033-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_33" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0034-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_34" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0034-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_34" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0034-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_34" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0035-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_35" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0035-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_35" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0035-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_35" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0036-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_36" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0036-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_36" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0036-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_36" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0037-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_37" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0037-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_37" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0037-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_37" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0038-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_38" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0038-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_38" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0038-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_38" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0039-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_39" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0039-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_39" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0039-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_39" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0040-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_40" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0040-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_40" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0040-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_40" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0041-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_41" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0041-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_41" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0041-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_41" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0042-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_42" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0042-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_42" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0042-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_42" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0043-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_43" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0043-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_43" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0043-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_43" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0044-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_44" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0044-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_44" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0044-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_44" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0045-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_45" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0045-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_45" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0045-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_45" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0046-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_46" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0046-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_46" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0046-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_46" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0047-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_47" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0047-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_47" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0047-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_47" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0048-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_48" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0048-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_48" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0048-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_48" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0049-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_49" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0049-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_49" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0049-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_49" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0050-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_50" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0050-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_50" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0050-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_50" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0051-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_51" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0051-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_51" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0051-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_51" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0052-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_52" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0052-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_52" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0052-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_52" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0053-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_53" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0053-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_53" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0053-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_53" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0054-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_54" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0054-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_54" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0054-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_54" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0055-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_55" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0055-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_55" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0055-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_55" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0056-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_56" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0056-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_56" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0056-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_56" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0057-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_57" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0057-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_57" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0057-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_57" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0058-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_58" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0058-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_58" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0058-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_58" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0059-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_59" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0059-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_59" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0059-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_59" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0060-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_60" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0060-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_60" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0060-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_60" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0061-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_61" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0061-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_61" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0061-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_61" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0062-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_62" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0062-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_62" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0062-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_62" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0063-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_63" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0063-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_63" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0063-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_63" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0064-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_64" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0064-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_64" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0064-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_64" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0065-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_65" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0065-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_65" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0065-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_65" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0066-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_66" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0066-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_66" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0066-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_66" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0067-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_67" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0067-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_67" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0067-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_67" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0068-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_68" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0068-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_68" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0068-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_68" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0069-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_69" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0069-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_69" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0069-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_69" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0070-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_70" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0070-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_70" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0070-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_70" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0071-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_71" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0071-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_71" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0071-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_71" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-FFFF-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0000-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0000-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0000-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0001-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_01" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0001-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_01" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0001-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_01" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0002-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_02" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0002-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_02" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0002-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_02" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0003-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_03" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0003-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_03" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0003-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_03" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0004-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_04" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0004-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_04" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0004-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_04" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0005-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_05" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0005-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_05" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0005-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_05" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0006-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_06" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0006-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_06" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0006-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_06" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0007-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_07" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0007-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_07" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0007-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_07" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0008-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_08" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0008-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_08" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0008-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_08" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0009-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_09" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0009-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_09" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0009-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_09" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0010-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_10" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0010-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_10" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0010-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_10" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0011-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_11" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0011-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_11" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0011-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_11" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0012-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_12" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0012-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_12" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0012-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_12" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0013-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_13" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0013-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_13" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0013-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_13" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0014-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_14" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0014-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_14" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0014-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_14" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0015-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_15" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0015-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_15" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0015-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_15" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0016-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_16" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0016-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_16" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0016-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_16" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0017-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_17" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0017-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_17" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0017-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_17" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0018-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_18" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0018-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_18" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0018-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_18" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0019-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_19" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0019-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_19" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0019-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_19" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0020-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_20" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0020-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_20" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0020-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_20" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0021-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_21" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0021-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_21" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0021-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_21" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0022-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_22" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0022-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_22" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0022-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_22" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0023-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_23" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0023-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_23" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0023-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_23" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0024-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_24" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0024-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_24" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0024-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_24" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0025-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_25" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0025-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_25" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0025-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_25" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0026-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_26" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0026-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_26" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0026-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_26" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0027-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_27" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0027-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_27" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0027-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_27" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0028-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_28" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0028-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_28" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0028-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_28" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0029-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_29" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0029-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_29" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0029-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_29" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0030-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_30" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0030-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_30" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0030-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_30" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0031-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_31" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0031-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_31" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0031-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_31" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0032-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_32" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0032-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_32" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0032-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_32" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0033-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_33" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0033-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_33" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0033-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_33" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0034-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_34" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0034-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_34" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0034-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_34" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0035-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_35" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0035-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_35" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0035-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_35" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0036-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_36" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0036-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_36" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0036-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_36" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0037-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_37" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0037-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_37" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0037-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_37" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0038-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_38" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0038-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_38" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0038-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_38" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0039-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_39" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0039-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_39" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0039-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_39" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0040-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_40" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0040-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_40" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0040-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_40" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0041-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_41" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0041-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_41" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0041-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_41" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0042-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_42" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0042-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_42" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0042-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_42" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0043-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_43" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0043-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_43" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0043-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_43" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0044-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_44" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0044-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_44" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0044-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_44" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0045-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_45" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0045-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_45" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0045-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_45" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0046-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_46" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0046-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_46" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0046-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_46" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0047-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_47" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0047-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_47" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0047-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_47" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0048-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_48" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0048-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_48" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0048-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_48" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0049-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_49" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0049-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_49" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0049-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_49" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0050-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_50" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0050-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_50" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0050-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_50" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0051-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_51" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0051-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_51" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0051-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_51" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-FFFF-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 10.51.2" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{DB40EAF2-2025-4F74-B9EF-7C0782F26C84}] @DACL=(02 0000) "inti"=hex:70,79,e5,52,00,00,00,00 . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{E19F9331-3110-11D4-991C-005004D3B3DB}] @DACL=(02 0000) @="Java Plug-in 1.3.0_02" . [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}] @Denied: (A 2) (Everyone) @="FlashBroker" "LocalizedString"="@c:\\WINDOWS\\system32\\Macromed\\Flash\\FlashUtil32_12_0_0_77_ActiveX.exe,-101" . [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation] "Enabled"=dword:00000001 . [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32] @="c:\\WINDOWS\\system32\\Macromed\\Flash\\FlashUtil32_12_0_0_77_ActiveX.exe" . [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" . [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{C09C5BC9-8988-03bb-c2cd-1b6efa7f045f}\InprocServer32*] "Class"=hex:00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00, 00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\ "ThreadingModel"="Apartment" @="c:\\WINDOWS\\system32\\OLE32.DLL" . [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{C09C5BC9-8988-0f76-990c-79f1fa7f045f}\InprocServer32*] "Class"=hex:00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00, 00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\ "ThreadingModel"="Apartment" @="c:\\WINDOWS\\system32\\OLE32.DLL" . [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{C09C5BC9-8988-3f0f-0a92-1ebafa7f045f}\InprocServer32*] "Class"=hex:00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00, 00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\ "ThreadingModel"="Apartment" @="c:\\WINDOWS\\system32\\OLE32.DLL" . [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{C09C5BC9-8988-5386-b671-1648fa7f045f}\InprocServer32*] "Class"=hex:00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00, 00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\ "ThreadingModel"="Apartment" @="c:\\WINDOWS\\system32\\OLE32.DLL" . [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{C09C5BC9-8988-6762-0952-3dc5fa7f045f}\InprocServer32*] "Class"=hex:00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00, 00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\ "ThreadingModel"="Apartment" @="c:\\WINDOWS\\system32\\OLE32.DLL" . [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{C09C5BC9-8988-caed-b3b7-7bc9fa7f045f}\InprocServer32*] "Class"=hex:00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00, 00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\ "ThreadingModel"="Apartment" @="c:\\WINDOWS\\system32\\OLE32.DLL" . [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{C09C5BC9-8988-d24d-4969-6b4dfa7f045f}\InprocServer32*] "Class"=hex:00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00, 00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\ "ThreadingModel"="Apartment" @="c:\\WINDOWS\\system32\\OLE32.DLL" . [HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}] @Denied: (A 2) (Everyone) @="IFlashBroker5" . [HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32] @="{00020424-0000-0000-C000-000000000046}" . [HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" "Version"="1.0" . --------------------- Durch laufende Prozesse gestartete DLLs --------------------- . - - - - - - - > 'lsass.exe'(988) c:\windows\system32\PCProtect.dll . Zeit der Fertigstellung: 2014-03-20 01:24:46 ComboFix-quarantined-files.txt 2014-03-20 00:24 ComboFix2.txt 2014-02-16 11:12 . Vor Suchlauf: 17 Verzeichnis(se), 149.722.738.688 Bytes frei Nach Suchlauf: 18 Verzeichnis(se), 149.726.859.264 Bytes frei . WindowsXP-KB310994-SP2-Home-BootDisk-DEU.exe [boot loader] timeout=30 default=multi(0)disk(0)rdisk(0)partition(1)\WINDOWS [operating systems] multi(0)disk(0)rdisk(0)partition(1)\WINDOWS="Microsoft Windows XP Home Edition" /fastdetect /NoExecute=OptIn . - - End Of File - - 6E6024E752F094F9DF90817A90F673F8 72B8CE41AF0DE751C946802B3ED844B4 |
20.03.2014, 10:33 | #53 |
/// the machine /// TB-Ausbilder | Windows XP: Browser verursacht Werbung Hinweis für Mitleser: Folgendes ComboFix Skript ist ausschließlich für diesen User in dieser Situtation erstellt worden. Auf keinen Fall auf anderen Rechnern anwenden, das kann andere Systeme nachhaltig schädigen! Lösche die vorhandene Combofix.exe von deinem Desktop und lade das Programm vom folgenden Download-Spiegel neu herunter: BleepingComputer.comund speichere es erneut auf dem Desktop (nicht woanders hin, das ist wichtig)! Drücke die Windows + R Taste --> Notepad (hinein schreiben) --> OK Kopiere nun den Text aus der folgenden Codebox komplett in das leere Textdokument. Code:
ATTFilter File:: C:\WINDOWS\system32\PCProtect.ini C:\WINDOWS\system32\PCProtect.dll C:\WINDOWS\system32\PCProtectOff.ini Folder:: C:\Programme\Web Protect Driver:: PCProtect Wichtig:
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
21.03.2014, 03:40 | #54 |
| Windows XP: Browser verursacht Werbung 1.Teil: Code:
ATTFilter ComboFix 14-03-19.01 - feuer 21.03.2014 3:15.4.2 - x86 Microsoft Windows XP Home Edition 5.1.2600.3.1252.49.1031.18.3071.2307 [GMT 1:00] ausgeführt von:: c:\dokumente und einstellungen\feuer\Desktop\ComboFix.exe Benutzte Befehlsschalter :: c:\dokumente und einstellungen\feuer\Desktop\CFScript.txt AV: Norton Internet Security CBE *Disabled/Updated* {E10A9785-9598-4754-B552-92431C1C35F8} FW: Norton Internet Security CBE *Disabled* {7C21A4C9-F61F-4AC4-B722-A6E19C16F220} . FILE :: "c:\windows\system32\PCProtect.dll" "c:\windows\system32\PCProtect.ini" "c:\windows\system32\PCProtectOff.ini" . . (((((((((((((((((((((((((((((((((((( Weitere Löschungen )))))))))))))))))))))))))))))))))))))))))))))))) . . . ((((((((((((((((((((((((((((((((((((((( Treiber/Dienste ))))))))))))))))))))))))))))))))))))))))))))))))) . . -------\Legacy_PCPROTECT -------\Service_PCProtect . . ((((((((((((((((((((((( Dateien erstellt von 2014-02-21 bis 2014-03-21 )))))))))))))))))))))))))))))) . . 2014-03-19 00:39 . 2014-03-19 00:03 24064 ----a-w- c:\windows\zoek-delete.exe 2014-03-15 16:09 . 2014-03-15 17:09 -------- d-----w- C:\zoek_backup 2014-03-14 15:23 . 2014-02-20 19:49 877480 ----a-w- c:\windows\system32\npdeployJava1.dll 2014-03-14 15:23 . 2014-02-20 19:49 800168 ----a-w- c:\windows\system32\deployJava1.dll 2014-03-14 13:14 . 2014-03-14 13:14 -------- d-----w- c:\dokumente und einstellungen\feuer\Anwendungsdaten\1H1Q 2014-03-07 21:47 . 2014-03-07 21:47 -------- d-----w- c:\dokumente und einstellungen\feuer\Tracing 2014-03-07 21:46 . 2010-04-28 06:44 54760 ----a-w- c:\windows\system32\drivers\fssfltr_tdi.sys 2014-03-07 21:46 . 2014-03-07 21:46 -------- d-----w- c:\programme\Microsoft Sync Framework 2014-03-07 21:44 . 2014-03-07 21:44 -------- d-----w- c:\programme\Microsoft SQL Server Compact Edition 2014-03-07 21:43 . 2014-03-07 21:43 -------- d-----w- c:\programme\Windows Live SkyDrive 2014-03-07 21:42 . 2014-03-15 16:35 -------- d-----w- c:\programme\Windows Live 2014-03-07 21:37 . 2014-03-07 21:37 -------- d-----w- c:\programme\Gemeinsame Dateien\Windows Live 2014-03-07 19:10 . 2014-03-07 19:10 -------- d-----w- C:\history 2014-03-07 15:50 . 2014-03-07 15:50 -------- d-----w- c:\programme\Microsoft.NET 2014-03-07 15:26 . 2014-02-26 23:28 13312 -c----w- c:\windows\system32\dllcache\xp_eos.exe 2014-03-07 15:26 . 2014-02-26 23:28 13312 ------w- c:\windows\system32\xp_eos.exe 2014-03-07 15:08 . 2014-03-07 15:09 -------- dc-h--w- c:\windows\ie8 2014-03-07 14:23 . 2014-03-13 10:34 -------- d-----w- c:\programme\Microsoft Silverlight 2014-03-07 14:21 . 2014-03-07 15:12 -------- d--h--w- c:\windows\msdownld.tmp 2014-03-01 01:59 . 2014-03-01 02:04 -------- d-----w- c:\dokumente und einstellungen\feuer\Anwendungsdaten\Dev-Cpp 2014-02-24 07:23 . 2014-02-24 07:23 -------- d-----w- c:\dokumente und einstellungen\feuer\Lokale Einstellungen\Anwendungsdaten\Deployment 2014-02-23 15:46 . 2002-06-17 05:25 26088 ----a-r- c:\windows\system32\xmlinst.exe 2014-02-23 15:46 . 2002-04-24 10:43 35840 ----a-r- c:\windows\system32\comdlg32.oca 2014-02-23 15:46 . 2000-03-17 06:21 36864 ----a-r- c:\windows\system32\xmlparse.dll 2014-02-23 15:46 . 2000-03-17 06:21 69632 ----a-r- c:\windows\system32\xmltok.dll 2014-02-23 15:46 . 2014-02-23 15:46 -------- d-----w- c:\programme\Ubi Soft 2014-02-23 15:46 . 2002-04-09 15:23 29184 ----a-r- c:\windows\system32\MSINET.oca 2014-02-23 15:46 . 1998-06-17 22:00 89360 ----a-r- c:\windows\system32\VB5DB.DLL 2014-02-20 19:50 . 2014-03-14 15:10 94632 ----a-w- c:\windows\system32\WindowsAccessBridge.dll 2014-02-20 15:21 . 2014-03-07 13:56 -------- d-----w- c:\programme\Mozilla Maintenance Service 2014-02-20 07:45 . 2014-02-20 07:45 -------- d-----w- c:\dokumente und einstellungen\NetworkService\Lokale Einstellungen\Anwendungsdaten\Apple 2014-02-19 08:10 . 2014-02-19 08:10 -------- d-----w- c:\dokumente und einstellungen\feuer\Anwendungsdaten\Apple Computer . . . (((((((((((((((((((((((((((((((((((( Find3M Bericht )))))))))))))))))))))))))))))))))))))))))))))))))))))) . 2014-03-12 09:50 . 2012-04-07 18:11 692616 ----a-w- c:\windows\system32\FlashPlayerApp.exe 2014-03-12 09:50 . 2011-05-13 20:15 71048 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl 2014-03-10 07:23 . 2014-02-18 12:49 15271 ----a-w- c:\windows\system32\drivers\FIDE.SYS 2014-02-24 11:45 . 2002-08-29 12:00 920064 ----a-w- c:\windows\system32\wininet.dll 2014-02-24 11:45 . 2002-08-29 12:00 43520 ------w- c:\windows\system32\licmgr10.dll 2014-02-24 11:45 . 2002-08-29 12:00 1469440 ------w- c:\windows\system32\inetcpl.cpl 2014-02-24 11:44 . 2002-08-29 12:00 18944 ------w- c:\windows\system32\corpol.dll 2014-02-24 10:54 . 2004-08-04 07:42 385024 ------w- c:\windows\system32\html.iec 2014-02-20 19:49 . 2012-06-29 19:05 145408 ----a-w- c:\windows\system32\javacpl.cpl 2014-02-15 01:07 . 2011-04-29 03:28 415832 ----a-w- c:\windows\system32\drivers\Rtenicxp.sys 2014-02-15 01:07 . 2011-04-29 03:34 84584 ----a-w- c:\windows\SOUNDMAN.EXE 2014-02-15 01:07 . 2011-04-29 03:34 359016 ----a-w- c:\windows\vncutil.exe 2014-02-15 01:07 . 2011-04-29 03:34 1523416 ----a-w- c:\windows\RtlUpd.exe 2014-02-15 01:07 . 2011-04-29 03:34 891976 ----a-w- c:\windows\system32\RTSndMgr.CPL 2014-02-15 01:07 . 2011-04-29 03:34 9721960 ----a-w- c:\windows\RTLCPL.EXE 2014-02-15 01:07 . 2011-04-29 03:34 5630168 ----a-w- c:\windows\system32\drivers\RtkHDAud.sys 2014-02-15 01:07 . 2013-02-16 22:10 87256 ----a-w- c:\windows\system32\RtkCoInstIIXP.dll 2014-02-15 01:07 . 2011-04-29 03:34 129640 ----a-w- c:\windows\RtkAudioService.exe 2014-02-15 01:07 . 2011-04-29 03:34 20145368 ----a-w- c:\windows\RTHDCPL.EXE 2014-02-15 01:06 . 2011-04-29 03:34 1395800 ----a-w- c:\windows\system32\drivers\Monfilt.sys 2014-02-15 01:06 . 2011-04-29 03:34 2180712 ----a-w- c:\windows\MicCal.exe 2014-02-15 01:06 . 2011-04-29 03:34 64104 ----a-w- c:\windows\ALCMTR.EXE 2014-02-15 01:06 . 2011-04-29 03:34 2815592 ----a-w- c:\windows\ALCWZRD.EXE 2014-02-15 01:06 . 2011-04-29 03:34 1691480 ----a-w- c:\windows\system32\drivers\Ambfilt.sys 2014-02-15 01:06 . 2011-04-29 03:34 285288 ----a-w- c:\windows\system32\ALSNDMGR.CPL 2014-02-15 01:05 . 2011-05-16 16:04 28448 ----a-w- c:\windows\system32\nvhdap32.dll 2014-02-15 01:05 . 2011-05-16 16:04 128672 ----a-w- c:\windows\system32\drivers\nvhda32.sys 2014-02-11 07:03 . 2014-02-10 01:03 1409 ----a-w- c:\windows\QTFont.for 2014-02-07 06:36 . 2002-08-29 12:00 1879168 ----a-w- c:\windows\system32\win32k.sys 2014-02-05 08:54 . 2011-04-29 04:24 563712 ----a-w- c:\windows\system32\qedit.dll 2014-02-03 02:00 . 2014-02-03 02:00 487508 ----a-w- C:\monitor.exe 2014-02-03 02:00 . 2014-02-03 02:00 34244 ----a-w- C:\monitorsvc.exe 2014-01-08 06:09 . 2014-02-09 20:10 19840 ----a-w- c:\windows\system32\drivers\pcwatch.sys 2014-01-08 06:08 . 2014-02-09 20:10 293984 ----a-w- c:\windows\system32\PCProtect.dll 2014-01-04 03:12 . 2002-08-29 12:00 420864 ----a-w- c:\windows\system32\vbscript.dll . . (((((((((((((((((((((((((((( Autostartpunkte der Registrierung )))))))))))))))))))))))))))))))))))))))) . . *Hinweis* leere Einträge & legitime Standardeinträge werden nicht angezeigt. REGEDIT4 . [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "SetDefaultMIDI"="MIDIDef.exe" [2002-12-03 49152] . [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "Adobe ARM"="c:\programme\Gemeinsame Dateien\Adobe\ARM\1.0\AdobeARM.exe" [2013-11-21 959904] "CTSysVol"="c:\programme\Creative\Surround Mixer\CTSysVol.exe" [2005-10-31 57344] "Nvtmru"="c:\programme\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe" [2013-05-16 1012000] "SSBkgdUpdate"="c:\programme\Gemeinsame Dateien\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" [2006-10-25 210472] "Persistence"="c:\windows\System32\igfxpers.exe" [2007-12-19 131072] "IgfxTray"="c:\windows\System32\igfxtray.exe" [2007-12-19 135168] "HotKeysCmds"="c:\windows\System32\hkcmd.exe" [2007-12-19 159744] "DelReg"="c:\programme\MSI\DualCoreCenter\DelReg.exe" [2008-05-13 196608] "DivXUpdate"="c:\programme\DivX\DivX Update\DivXUpdate.exe" [2013-11-15 1861968] "RTHDCPL"="RTHDCPL.EXE" [2014-02-15 20145368] "RemoteControl"="c:\windows\system32\rmctrl.exe" [2000-10-16 32768] "APSDaemon"="c:\programme\Gemeinsame Dateien\Apple\Apple Application Support\APSDaemon.exe" [2013-04-21 59720] "NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2013-06-21 15677728] "NvMediaCenter"="c:\windows\system32\NvMcTray.dll" [2013-06-21 223008] . [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run] "CTFMON.EXE"="c:\windows\System32\CTFMON.EXE" [2008-04-14 15360] . c:\dokumente und einstellungen\feuer\Startmenü\Programme\Autostart\ ubisoft register.lnk - c:\programme\Ubi Soft\Register\schedule.exe /26.03.2014 11:51 /game=Die Siedler IV Gold+ Edition /language=German /country=Germany /url=hxxp://register-it.ubi.com/register.asp [2014-2-23 28672] . c:\dokumente und einstellungen\All Users\Startmenü\Programme\Autostart\ Secunia PSI Tray.lnk - c:\programme\Secunia\PSI\psi_tray.exe [2013-12-6 565464] . [hkey_local_machine\software\microsoft\windows\currentversion\explorer\ShellExecuteHooks] "{56F9679E-7826-4C84-81F3-532071A8BCC5}"= "c:\programme\Windows Desktop Search\MSNLNamespaceMgr.dll" [2009-05-24 304128] . [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\pcwatch.sys] @="Driver" . [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Wdf01000.sys] @="Driver" . [HKLM\~\startupfolder\C:^Dokumente und Einstellungen^All Users^Startmenü^Programme^Autostart^DualCoreCenter.lnk] path=c:\dokumente und einstellungen\All Users\Startmenü\Programme\Autostart\DualCoreCenter.lnk backup=c:\windows\pss\DualCoreCenter.lnkCommon Startup . [HKLM\~\startupfolder\C:^Dokumente und Einstellungen^All Users^Startmenü^Programme^Autostart^Microsoft Office.lnk] path=c:\dokumente und einstellungen\All Users\Startmenü\Programme\Autostart\Microsoft Office.lnk backup=c:\windows\pss\Microsoft Office.lnkCommon Startup . [HKLM\~\startupfolder\C:^Dokumente und Einstellungen^All Users^Startmenü^Programme^Autostart^Windows Search.lnk] path=c:\dokumente und einstellungen\All Users\Startmenü\Programme\Autostart\Windows Search.lnk backup=c:\windows\pss\Windows Search.lnkCommon Startup . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NokiaMServer] c:\programme\Gemeinsame Dateien\Nokia\MPlatform\NokiaMServer [X] . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BrMfcWnd] 2007-03-12 12:51 663552 ------w- c:\programme\Brother\Brmfcmon\BrMfcWnd.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ControlCenter3] 2007-01-26 13:58 65536 ------w- c:\programme\Brother\ControlCenter3\BrCtrCen.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DivXMediaServer] 2013-12-23 04:16 450560 ----a-w- c:\programme\DivX\DivX Media Server\DivXMediaServer.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IndexSearch.exe] 2007-01-29 19:10 46632 ----a-w- c:\programme\ScanSoft\PaperPort\IndexSearch.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\KiesAirMessage] 2012-10-09 00:17 580096 ----a-w- j:\alex\Kies\KiesAirMessage.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\KiesPreload] 2012-10-11 00:33 966072 ----a-w- j:\alex\Kies\Kies.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\KiesTrayAgent] 2012-10-11 00:33 309688 ----a-w- j:\alex\Kies\KiesTrayAgent.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\P17Helper] 2007-12-28 08:32 65536 ----a-w- c:\windows\system32\P17.dll . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PaperPort PTD] 2007-01-29 19:12 30248 ----a-w- c:\programme\ScanSoft\PaperPort\pptd40nt.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PCMService] 2003-02-04 14:46 57344 ------w- c:\programme\Medion\PowerCinema\PCMService.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PPort11reminder] 2007-02-01 11:46 255528 ----a-w- c:\programme\ScanSoft\PaperPort\Ereg\Ereg.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task] 2014-02-10 00:57 77824 ----a-w- c:\programme\QuickTime\qttask.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\VC9Player] 2009-10-01 08:30 202056 ----a-w- c:\programme\Virtual CD v9\System\vc9play.exe . [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\WinEjectAutoStart1] 2001-05-10 12:33 96768 ----a-w- e:\programme\WinEject\WinEject.exe . [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile] "EnableFirewall"= 0 (0x0) . [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List] "%windir%\\system32\\sessmgr.exe"= "%windir%\\Network Diagnostic\\xpnetdiag.exe"= "c:\\Programme\\SiSoftware\\SiSoftware Sandra Lite 2011.SP2\\RpcAgentSrv.exe"= "c:\\WINDOWS\\system32\\muzapp.exe"= "c:\\Programme\\NVIDIA Corporation\\NVIDIA Update Core\\daemonu.exe"= "c:\\Programme\\SiSoftware\\SiSoftware Sandra Lite 2011.SP2\\WNt500x86\\RpcSandraSrv.exe"= "c:\\Programme\\Gemeinsame Dateien\\Apple\\Apple Application Support\\WebKit2WebProcess.exe"= "c:\\Programme\\Windows Live\\Messenger\\wlcsdk.exe"= "c:\\Programme\\Windows Live\\Messenger\\msnmsgr.exe"= "c:\\Programme\\Windows Live\\Sync\\WindowsLiveSync.exe"= . [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\GloballyOpenPorts\List] "5985:TCP"= 5985:TCP:*:Disabled:Windows-Remoteverwaltung "3587:TCP"= 3587:TCP:Windows Peer-zu-Peer-Gruppierung "3540:UDP"= 3540:UDP:Peer Name Resolution-Protokoll (PNRP) . [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\IcmpSettings] "AllowInboundEchoRequest"= 1 (0x1) . R0 hotcore3;hc3ServiceName;c:\windows\system32\drivers\hotcore3.sys [05.11.2012 12:10 58464] R0 SymDS;Symantec Data Store;c:\windows\system32\drivers\NIS\1501000.012\symds.sys [29.11.2013 05:13 367704] R0 SymEFA;Symantec Extended File Attributes;c:\windows\system32\drivers\NIS\1501000.012\symefa.sys [29.11.2013 05:13 935512] R1 BHDrvx86;BHDrvx86;c:\programme\Norton Internet Security CBE\NortonData\21.0.0.100\Definitions\BASHDefs\20140214.001\BHDrvx86.sys [19.02.2014 02:26 1098968] R1 ccSet_NIS;NIS Settings Manager;c:\windows\system32\drivers\NIS\1501000.012\ccsetx86.sys [29.11.2013 05:13 127064] R1 pcwatch;pcwatch service;c:\windows\system32\drivers\pcwatch.sys [09.02.2014 21:10 19840] R1 SymIRON;Symantec Iron Driver;c:\windows\system32\drivers\NIS\1501000.012\ironx86.sys [29.11.2013 05:13 206936] R1 vdrv9000;vdrv9000;c:\windows\system32\drivers\vdrv9000.sys [30.04.2011 23:57 113688] R2 BBSvc;Bing Bar Update Service;c:\programme\Microsoft\BingBar\BBSvc.EXE [21.10.2011 15:23 196176] R2 BBUpdate;BBUpdate;c:\programme\Microsoft\BingBar\SeaPort.EXE [13.10.2011 17:21 249648] R2 Iprip;RIP-Überwachung;c:\windows\System32\svchost.exe -k netsvcs [29.08.2002 13:00 14336] R2 NIS;Norton Internet Security CBE;c:\programme\Norton Internet Security CBE\Engine\21.1.0.18\nis.exe [29.11.2013 05:12 275696] R2 Secunia PSI Agent;Secunia PSI Agent;c:\programme\Secunia\PSI\PSIA.exe --start-service --> c:\programme\Secunia\PSI\PSIA.exe --start-service [?] R2 Secunia Update Agent;Secunia Update Agent;c:\programme\Secunia\PSI\sua.exe --start-service --> c:\programme\Secunia\PSI\sua.exe --start-service [?] R2 VC9SecS;Virtual CD v9 Management Service;c:\programme\Virtual CD v9\System\VC9SecS.exe [30.04.2011 23:57 132424] R3 EraserUtilRebootDrv;EraserUtilRebootDrv;c:\programme\Gemeinsame Dateien\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [29.11.2013 01:54 108120] R3 HCWBT8xx;Hauppauge WinTV 848/9 WDM Video Driver;c:\windows\system32\drivers\HCWBT8XX.sys [29.04.2011 05:39 472644] R3 IDSxpx86;IDSxpx86;c:\programme\Norton Internet Security CBE\NortonData\21.0.0.100\Definitions\IPSDefs\20140320.001\IDSXpx86.sys [21.03.2014 02:07 383128] R3 PSI;PSI;c:\windows\system32\drivers\psi_mf_x86.sys [06.12.2013 15:47 16024] S0 tclondrv;tclondrv;c:\windows\system32\DRIVERS\tclondrv.sys --> c:\windows\system32\DRIVERS\tclondrv.sys [?] S3 3xHybrid;CTX SAA713x PCI Card;c:\windows\system32\drivers\3xHybrid.sys [24.11.2008 12:37 1315936] S3 Ambfilt;Ambfilt;c:\windows\system32\drivers\Ambfilt.sys [29.04.2011 04:34 1691480] S3 androidusb;SAMSUNG Android Composite ADB Interface Driver;c:\windows\system32\drivers\ssadadb.sys [30.12.2011 15:05 30312] S3 HH9Help.sys;HH9Help.sys;c:\windows\system32\drivers\HH9Help.sys [30.04.2011 23:57 11392] S3 MTK;Media Technology Kernel Driver;c:\windows\system32\drivers\FIDE.SYS [18.02.2014 13:49 15271] S3 nmwcdnsu;Nokia USB Flashing Phone Parent;c:\windows\system32\drivers\nmwcdnsu.sys [18.11.2013 01:20 137600] S3 RTCore32;RTCore32;c:\programme\EVGA Precision\RTCore32.sys [25.05.2005 19:39 4608] S3 SandraAgentSrv;SiSoftware Deployment Agent Service;c:\programme\SiSoftware\SiSoftware Sandra Lite 2011.SP2\RpcAgentSrv.exe [12.05.2011 14:56 93848] S3 ssadbus;SAMSUNG Android USB Composite Device driver (WDM);c:\windows\system32\drivers\ssadbus.sys [30.12.2011 15:05 121064] S3 ssadmdfl;SAMSUNG Android USB Modem (Filter);c:\windows\system32\drivers\ssadmdfl.sys [30.12.2011 15:05 12776] S3 ssadmdm;SAMSUNG Android USB Modem Drivers;c:\windows\system32\drivers\ssadmdm.sys [30.12.2011 15:05 136808] S3 ssadserd;SAMSUNG Android USB Diagnostic Serial Port (WDM);c:\windows\system32\drivers\ssadserd.sys [30.12.2011 15:05 114280] . [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost] p2psvc REG_MULTI_SZ p2psvc p2pimsvc p2pgasvc PNRPSvc . [HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}] 2014-03-15 16:54 1150280 ----a-w- c:\programme\Google\Chrome\Application\33.0.1750.154\Installer\chrmstp.exe . [HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{A8D647C8-65AC-409F-B7B2-3C0FEE1A32F2}] 2010-02-16 17:02 114688 ----a-w- c:\programme\PixiePack Codec Pack\InstallerHelper.exe . Inhalt des "geplante Tasks" Ordners . 2014-03-21 c:\windows\Tasks\Adobe Flash Player Updater.job - c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-04-07 09:50] . 2014-03-21 c:\windows\Tasks\Ende des Supports für Microsoft Windows XP – Benachrichtigung – Anmeldung.job - c:\windows\system32\xp_eos.exe [2014-03-07 23:28] . 2014-03-08 c:\windows\Tasks\Ende des Supports für Microsoft Windows XP – Monatliche Benachrichtigung.job - c:\windows\system32\xp_eos.exe [2014-03-07 23:28] . 2014-03-21 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job - c:\programme\Google\Update\GoogleUpdate.exe [2014-03-07 14:49] . 2014-03-21 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job - c:\programme\Google\Update\GoogleUpdate.exe [2014-03-07 14:49] . . ------- Zusätzlicher Suchlauf ------- . uInternet Connection Wizard,ShellNext = iexplore uInternet Settings,ProxyOverride = <-loopback> LSP: c:\windows\system32\PCProtect.dll TCP: DhcpNameServer = 192.168.0.1 DPF: DirectAnimation Java Classes - file://c:\windows\Java\classes\dajava.cab DPF: Microsoft XML Parser for Java FF - ProfilePath - c:\dokumente und einstellungen\feuer\Anwendungsdaten\Mozilla\Firefox\Profiles\qhdllhf9.default-1394709733765\ . . ************************************************************************** . catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, hxxp://www.gmer.net Rootkit scan 2014-03-21 03:31 Windows 5.1.2600 Service Pack 3 NTFS . Scanne versteckte Prozesse... . Scanne versteckte Autostarteinträge... . Scanne versteckte Dateien... . Scan erfolgreich abgeschlossen versteckte Dateien: 0 . ************************************************************************** . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\NIS] "ImagePath"="\"c:\programme\Norton Internet Security CBE\Engine\21.1.0.18\NIS.exe\" /s \"NIS\" /m \"c:\programme\Norton Internet Security CBE\Engine\21.1.0.18\diMaster.dll\" /prefetch:1" "ImagePath"="\SystemRoot\System32\Drivers\NIS\1501000.012\SYMTDI.SYS" "TrustedImagePaths"="c:\programme\Norton Internet Security CBE\Engine\21.1.0.18" . [HKEY_LOCAL_MACHINE\System\ControlSet001\Services\vdrv9000] "ImagePath"="system32\DRIVERS\vdrv9000.sys" . --------------------- Gesperrte Registrierungsschluessel --------------------- . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004\Software\Microsoft\SystemCertificates\AddressBook*] @Allowed: (Read) (RestrictedCode) @Allowed: (Read) (RestrictedCode) . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID] @DACL=(02 0000) . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{8AD9C840-044E-11D1-B3E9-00805F499D93}] @DACL=(02 0000) @="Java Plug-in 10.51.2" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{97090E2F-3062-4459-855B-014F0D3CDBB1}] @DACL=(02 0000) @="Windows Search-Deskbar" "AppID"="" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{9FA6D63D-8A68-4d13-BD76-84A3555EB1D1}] @DACL=(02 0000) @=hex:20,1d,1d,1c,1a,21,18,1f . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0013-0000-0003-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.3.0_03" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0013-0000-0004-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.3.0_04" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0013-0000-0005-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.3.0_05" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0013-0001-0000-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.3.1" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0013-0001-0001-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.3.1_01" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0013-0001-0001-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.3.1_01" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0013-0001-0002-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.3.1_02" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0013-0001-0002-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.3.1_02" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0013-0001-0003-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.3.1_03" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0013-0001-0003-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.3.1_03" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0013-0001-0004-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.3.1_04" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0013-0001-0004-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.3.1_04" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0013-0001-0005-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.3.1_05" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0013-0001-0005-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.3.1_05" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0013-0001-0006-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.3.1_06" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0013-0001-0006-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.3.1_06" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0013-0001-0007-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.3.1_07" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0013-0001-0007-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.3.1_07" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0013-0001-0008-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.3.1_08" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0013-0001-0008-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.3.1_08" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0013-0001-0009-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.3.1_09" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0013-0001-0009-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.3.1_09" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0013-0001-0010-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.3.1_10" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0013-0001-0010-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.3.1_10" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0013-0001-0011-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.3.1_11" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0013-0001-0011-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.3.1_11" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0013-0001-0012-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.3.1_12" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0013-0001-0012-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.3.1_12" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0013-0001-0013-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.3.1_13" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0013-0001-0013-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.3.1_13" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0013-0001-0014-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.3.1_14" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0013-0001-0014-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.3.1_14" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0013-0001-0015-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.3.1_15" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0013-0001-0015-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.3.1_15" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0013-0001-0016-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.3.1_16" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0013-0001-0016-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.3.1_16" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0013-0001-0017-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.3.1_17" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0013-0001-0017-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.3.1_17" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0013-0001-0018-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.3.1_18" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0013-0001-0018-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.3.1_18" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0013-0001-0019-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.3.1_19" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0013-0001-0019-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.3.1_19" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0013-0001-0020-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.3.1_20" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0013-0001-0020-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.3.1_20" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0013-0001-0021-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.3.1_21" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0013-0001-0021-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.3.1_21" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0000-0000-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.0" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0000-0000-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.0" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0000-0001-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.0_01" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0000-0001-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.0_01" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0000-0002-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.0_02" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0000-0002-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.0_02" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0000-0003-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.0_03" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0000-0003-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.0_03" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0000-0004-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.0_04" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0000-0004-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.0_04" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0001-0000-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.1" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0001-0000-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.1" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0001-0001-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.1_01" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0001-0001-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.1_01" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0001-0002-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.1_02" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0001-0002-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.1_02" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0001-0003-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.1_03" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0001-0003-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.1_03" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0001-0004-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.1_04" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0001-0004-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.1_04" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0001-0005-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.1_05" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0001-0005-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.1_05" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0001-0006-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.1_06" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0001-0006-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.1_06" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0001-0007-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.1_07" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0001-0007-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.1_07" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0000-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0000-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0001-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_01" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0001-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_01" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0002-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_02" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0002-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_02" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0003-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_03" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0003-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_03" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0004-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_04" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0004-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_04" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0005-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_05" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0005-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_05" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0006-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_06" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0006-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_06" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0007-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_07" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0007-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_07" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0008-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_08" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0008-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_08" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0009-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_09" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0009-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_09" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0010-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_10" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0010-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_10" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0011-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_11" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0011-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_11" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0012-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_12" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0012-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_12" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0013-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_13" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0013-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_13" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0014-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_14" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0014-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_14" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0015-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_15" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0015-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_15" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0016-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_16" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0016-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_16" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0017-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_17" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0017-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_17" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0018-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_18" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0018-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_18" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0019-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_19" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0019-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_19" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0020-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_20" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0020-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_20" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0021-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_21" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0021-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_21" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0022-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_22" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0022-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_22" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0023-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_23" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0023-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_23" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0024-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_24" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0024-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_24" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0025-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_25" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0025-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_25" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0026-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_26" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0026-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_26" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0027-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_27" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0027-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_27" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0028-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_28" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0028-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_28" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0029-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_29" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0029-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_29" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0030-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_30" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0030-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_30" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0031-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_31" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0031-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_31" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0032-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_32" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0032-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_32" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0033-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_33" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0033-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_33" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0034-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_34" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0034-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_34" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0035-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_35" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0035-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_35" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0036-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_36" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0036-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_36" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0037-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_37" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0037-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_37" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0038-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_38" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0038-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_38" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0039-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_39" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0039-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_39" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0040-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_40" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0040-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_40" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0041-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_41" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0041-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_41" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0042-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_42" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0042-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_42" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0043-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2_43" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-0043-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.4.2_43" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0014-0002-FFFF-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.4.2" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0000-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0000-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0000-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0001-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_01" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0001-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_01" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0001-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_01" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0002-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_02" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0002-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_02" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0002-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_02" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0003-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_03" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0003-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_03" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0003-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_03" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0004-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_04" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0004-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_04" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0004-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_04" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0005-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_05" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0005-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_05" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0005-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_05" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0006-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_06" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0006-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_06" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0006-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_06" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0007-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_07" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0007-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_07" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0007-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_07" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0008-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_08" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0008-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_08" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0008-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_08" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0009-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_09" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0009-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_09" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0009-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_09" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0010-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_10" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0010-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_10" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0010-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_10" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0011-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_11" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0011-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_11" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0011-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_11" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0012-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_12" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0012-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_12" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0012-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_12" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0013-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_13" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0013-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_13" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0013-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_13" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0014-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_14" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0014-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_14" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0014-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_14" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0015-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_15" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0015-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_15" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0015-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_15" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0016-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_16" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0016-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_16" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0016-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_16" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0017-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_17" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0017-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_17" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0017-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_17" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0018-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_18" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0018-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_18" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0018-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_18" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0019-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_19" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0019-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_19" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0019-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_19" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0020-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_20" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0020-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_20" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0020-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_20" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0021-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_21" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0021-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_21" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0021-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_21" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0022-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_22" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0022-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_22" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0022-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_22" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0023-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_23" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0023-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_23" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0023-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_23" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0024-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_24" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0024-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_24" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0024-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_24" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0025-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_25" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0025-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_25" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0025-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_25" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0026-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_26" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0026-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_26" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0026-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_26" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0027-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_27" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0027-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_27" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0027-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_27" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0028-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_28" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0028-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_28" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0028-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_28" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0029-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_29" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0029-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_29" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0029-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_29" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0030-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_30" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0030-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_30" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0030-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_30" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0031-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_31" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0031-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_31" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0031-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_31" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0032-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_32" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0032-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_32" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0032-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_32" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0033-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_33" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0033-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_33" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0033-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_33" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0034-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_34" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0034-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_34" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0034-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_34" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0035-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_35" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0035-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_35" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0035-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_35" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0036-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_36" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0036-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_36" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0036-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_36" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0037-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_37" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0037-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_37" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0037-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_37" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0038-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_38" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0038-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_38" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0038-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_38" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0039-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_39" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0039-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_39" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0039-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_39" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0040-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_40" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0040-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_40" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0040-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_40" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0041-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_41" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0041-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_41" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0041-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_41" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0042-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_42" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0042-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_42" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0042-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_42" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0043-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_43" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0043-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_43" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0043-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_43" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0044-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_44" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0044-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_44" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0044-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_44" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0045-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_45" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0045-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_45" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0045-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_45" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0046-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_46" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0046-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_46" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0046-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_46" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0047-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_47" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0047-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_47" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0047-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_47" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0048-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_48" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0048-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_48" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0048-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_48" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0049-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_49" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0049-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_49" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0049-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_49" |
21.03.2014, 03:40 | #55 |
| Windows XP: Browser verursacht Werbung 2.Teil: Code:
ATTFilter . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0050-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_50" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0050-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_50" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0050-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_50" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0051-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_51" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0051-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_51" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0051-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_51" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0052-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_52" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0052-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_52" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0052-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_52" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0053-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_53" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0053-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_53" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0053-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_53" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0054-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_54" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0054-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_54" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0054-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_54" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0055-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_55" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0055-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_55" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0055-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_55" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0056-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_56" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0056-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_56" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0056-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_56" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0057-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_57" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0057-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_57" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0057-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_57" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0058-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_58" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0058-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_58" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0058-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_58" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0059-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_59" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0059-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_59" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0059-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_59" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0060-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_60" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0060-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_60" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0060-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_60" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0061-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0_61" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0061-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.5.0_61" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-0061-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.5.0_61" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0015-0000-FFFF-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.5.0" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0000-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0000-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0000-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0001-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_01" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0001-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_01" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0001-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_01" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0002-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_02" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0002-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_02" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0002-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_02" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0003-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_03" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0003-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_03" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0003-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_03" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0004-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_04" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0004-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_04" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0004-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_04" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0005-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_05" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0005-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_05" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0005-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_05" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0006-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_06" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0006-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_06" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0006-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_06" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_07" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0007-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_07" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0007-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_07" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0008-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_08" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0008-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_08" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0008-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_08" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0009-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_09" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0009-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_09" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0009-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_09" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0010-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_10" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0010-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_10" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0010-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_10" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0011-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_11" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0011-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_11" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0011-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_11" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0012-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_12" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0012-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_12" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0012-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_12" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0013-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_13" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0013-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_13" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0013-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_13" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0014-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_14" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0014-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_14" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0014-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_14" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0015-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_15" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0015-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_15" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0015-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_15" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0016-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_16" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0016-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_16" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0016-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_16" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_17" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0017-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_17" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0017-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_17" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0018-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_18" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0018-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_18" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0018-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_18" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0019-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_19" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0019-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_19" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0019-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_19" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_20" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_20" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_20" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_21" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0021-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_21" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0021-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_21" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_22" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_22" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0022-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_22" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0023-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_23" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0023-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_23" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0023-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_23" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_24" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0024-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_24" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0024-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_24" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0025-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_25" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0025-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_25" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0025-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_25" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_26" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0026-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_26" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0026-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_26" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0027-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_27" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0027-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_27" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0027-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_27" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0028-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_28" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0028-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_28" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0028-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_28" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0029-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_29" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0029-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_29" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0029-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_29" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0030-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_30" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0030-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_30" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0030-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_30" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0031-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_31" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0031-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_31" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0031-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_31" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0032-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_32" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0032-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_32" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0032-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_32" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0033-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_33" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0033-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_33" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0033-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_33" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0034-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_34" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0034-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_34" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0034-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_34" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0035-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_35" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0035-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_35" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0035-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_35" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0036-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_36" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0036-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_36" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0036-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_36" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0037-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_37" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0037-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_37" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0037-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_37" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0038-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_38" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0038-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_38" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0038-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_38" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0039-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_39" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0039-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_39" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0039-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_39" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0040-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_40" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0040-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_40" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0040-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_40" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0041-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_41" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0041-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_41" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0041-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_41" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0042-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_42" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0042-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_42" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0042-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_42" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0043-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_43" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0043-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_43" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0043-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_43" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0044-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_44" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0044-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_44" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0044-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_44" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0045-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_45" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0045-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_45" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0045-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_45" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0046-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_46" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0046-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_46" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0046-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_46" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0047-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_47" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0047-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_47" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0047-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_47" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0048-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_48" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0048-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_48" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0048-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_48" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0049-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_49" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0049-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_49" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0049-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_49" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0050-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_50" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0050-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_50" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0050-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_50" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0051-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_51" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0051-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_51" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0051-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_51" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0052-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_52" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0052-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_52" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0052-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_52" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0053-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_53" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0053-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_53" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0053-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_53" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0054-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_54" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0054-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_54" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0054-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_54" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0055-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_55" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0055-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_55" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0055-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_55" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0056-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_56" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0056-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_56" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0056-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_56" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0057-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_57" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0057-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_57" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0057-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_57" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0058-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_58" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0058-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_58" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0058-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_58" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0059-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_59" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0059-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_59" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0059-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_59" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0060-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_60" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0060-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_60" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0060-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_60" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0061-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_61" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0061-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_61" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0061-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_61" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0062-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_62" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0062-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_62" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0062-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_62" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0063-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_63" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0063-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_63" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0063-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_63" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0064-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_64" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0064-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_64" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0064-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_64" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0065-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_65" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0065-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_65" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0065-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_65" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0066-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_66" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0066-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_66" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0066-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_66" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0067-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_67" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0067-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_67" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0067-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_67" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0068-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_68" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0068-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_68" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0068-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_68" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0069-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_69" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0069-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_69" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0069-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_69" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0070-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_70" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0070-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_70" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0070-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_70" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0071-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0_71" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0071-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.6.0_71" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-0071-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.6.0_71" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0016-0000-FFFF-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.6.0" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0000-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0000-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0000-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0001-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_01" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0001-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_01" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0001-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_01" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0002-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_02" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0002-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_02" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0002-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_02" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0003-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_03" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0003-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_03" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0003-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_03" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0004-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_04" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0004-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_04" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0004-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_04" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0005-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_05" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0005-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_05" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0005-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_05" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0006-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_06" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0006-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_06" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0006-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_06" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0007-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_07" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0007-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_07" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0007-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_07" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0008-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_08" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0008-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_08" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0008-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_08" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0009-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_09" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0009-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_09" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0009-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_09" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0010-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_10" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0010-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_10" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0010-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_10" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0011-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_11" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0011-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_11" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0011-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_11" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0012-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_12" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0012-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_12" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0012-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_12" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0013-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_13" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0013-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_13" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0013-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_13" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0014-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_14" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0014-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_14" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0014-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_14" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0015-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_15" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0015-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_15" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0015-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_15" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0016-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_16" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0016-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_16" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0016-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_16" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0017-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_17" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0017-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_17" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0017-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_17" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0018-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_18" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0018-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_18" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0018-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_18" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0019-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_19" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0019-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_19" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0019-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_19" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0020-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_20" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0020-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_20" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0020-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_20" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0021-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_21" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0021-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_21" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0021-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_21" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0022-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_22" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0022-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_22" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0022-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_22" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0023-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_23" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0023-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_23" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0023-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_23" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0024-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_24" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0024-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_24" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0024-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_24" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0025-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_25" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0025-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_25" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0025-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_25" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0026-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_26" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0026-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_26" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0026-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_26" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0027-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_27" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0027-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_27" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0027-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_27" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0028-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_28" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0028-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_28" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0028-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_28" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0029-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_29" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0029-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_29" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0029-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_29" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0030-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_30" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0030-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_30" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0030-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_30" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0031-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_31" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0031-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_31" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0031-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_31" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0032-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_32" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0032-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_32" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0032-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_32" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0033-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_33" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0033-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_33" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0033-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_33" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0034-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_34" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0034-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_34" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0034-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_34" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0035-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_35" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0035-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_35" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0035-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_35" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0036-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_36" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0036-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_36" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0036-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_36" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0037-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_37" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0037-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_37" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0037-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_37" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0038-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_38" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0038-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_38" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0038-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_38" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0039-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_39" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0039-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_39" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0039-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_39" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0040-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_40" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0040-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_40" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0040-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_40" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0041-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_41" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0041-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_41" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0041-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_41" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0042-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_42" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0042-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_42" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0042-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_42" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0043-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_43" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0043-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_43" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0043-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_43" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0044-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_44" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0044-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_44" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0044-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_44" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0045-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_45" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0045-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_45" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0045-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_45" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0046-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_46" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0046-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_46" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0046-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_46" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0047-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_47" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0047-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_47" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0047-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_47" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0048-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_48" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0048-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_48" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0048-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_48" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0049-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_49" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0049-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_49" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0049-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_49" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0050-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_50" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0050-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_50" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0050-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_50" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0051-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0_51" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0051-ABCDEFFEDCBB}] @DACL=(02 0000) @="Java Plug-in 1.7.0_51" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-0051-ABCDEFFEDCBC}] @DACL=(02 0000) @="Java Plug-in 1.7.0_51" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-0017-0000-FFFF-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 1.7.0" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA}] @DACL=(02 0000) @="Java Plug-in 10.51.2" . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{DB40EAF2-2025-4F74-B9EF-7C0782F26C84}] @DACL=(02 0000) "inti"=hex:70,79,e5,52,00,00,00,00 . [HKEY_USERS\S-1-5-21-1085031214-790525478-725345543-1004_Classes\CLSID\{E19F9331-3110-11D4-991C-005004D3B3DB}] @DACL=(02 0000) @="Java Plug-in 1.3.0_02" . [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}] @Denied: (A 2) (Everyone) @="FlashBroker" "LocalizedString"="@c:\\WINDOWS\\system32\\Macromed\\Flash\\FlashUtil32_12_0_0_77_ActiveX.exe,-101" . [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation] "Enabled"=dword:00000001 . [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32] @="c:\\WINDOWS\\system32\\Macromed\\Flash\\FlashUtil32_12_0_0_77_ActiveX.exe" . [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" . [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{C09C5BC9-8988-03bb-c2cd-1b6efa7f045f}\InprocServer32*] "Class"=hex:00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00, 00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\ "ThreadingModel"="Apartment" @="c:\\WINDOWS\\system32\\OLE32.DLL" . [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{C09C5BC9-8988-0f76-990c-79f1fa7f045f}\InprocServer32*] "Class"=hex:00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00, 00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\ "ThreadingModel"="Apartment" @="c:\\WINDOWS\\system32\\OLE32.DLL" . [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{C09C5BC9-8988-3f0f-0a92-1ebafa7f045f}\InprocServer32*] "Class"=hex:00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00, 00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\ "ThreadingModel"="Apartment" @="c:\\WINDOWS\\system32\\OLE32.DLL" . [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{C09C5BC9-8988-5386-b671-1648fa7f045f}\InprocServer32*] "Class"=hex:00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00, 00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\ "ThreadingModel"="Apartment" @="c:\\WINDOWS\\system32\\OLE32.DLL" . [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{C09C5BC9-8988-6762-0952-3dc5fa7f045f}\InprocServer32*] "Class"=hex:00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00, 00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\ "ThreadingModel"="Apartment" @="c:\\WINDOWS\\system32\\OLE32.DLL" . [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{C09C5BC9-8988-caed-b3b7-7bc9fa7f045f}\InprocServer32*] "Class"=hex:00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00, 00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\ "ThreadingModel"="Apartment" @="c:\\WINDOWS\\system32\\OLE32.DLL" . [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{C09C5BC9-8988-d24d-4969-6b4dfa7f045f}\InprocServer32*] "Class"=hex:00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00, 00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,00,\ "ThreadingModel"="Apartment" @="c:\\WINDOWS\\system32\\OLE32.DLL" . [HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}] @Denied: (A 2) (Everyone) @="IFlashBroker5" . [HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32] @="{00020424-0000-0000-C000-000000000046}" . [HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" "Version"="1.0" . --------------------- Durch laufende Prozesse gestartete DLLs --------------------- . - - - - - - - > 'lsass.exe'(980) c:\windows\system32\PCProtect.dll . - - - - - - - > 'explorer.exe'(3228) c:\windows\system32\webcheck.dll c:\windows\system32\WPDShServiceObj.dll c:\windows\system32\PCProtect.dll c:\windows\system32\PortableDeviceTypes.dll c:\windows\system32\PortableDeviceApi.dll . ------------------------ Weitere laufende Prozesse ------------------------ . c:\windows\system32\nvsvc32.exe c:\programme\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe c:\programme\Google\Update\1.3.22.5\GoogleCrashHandler.exe c:\programme\Secunia\PSI\PSIA.exe c:\windows\System32\tcpsvcs.exe c:\windows\system32\SearchIndexer.exe c:\windows\system32\wscntfy.exe c:\windows\RTHDCPL.EXE c:\windows\system32\RUNDLL32.EXE c:\programme\Secunia\PSI\sua.exe . ************************************************************************** . Zeit der Fertigstellung: 2014-03-21 03:35:53 - PC wurde neu gestartet ComboFix-quarantined-files.txt 2014-03-21 02:35 ComboFix2.txt 2014-03-20 00:24 ComboFix3.txt 2014-02-16 11:12 . Vor Suchlauf: 17 Verzeichnis(se), 149.629.349.888 Bytes frei Nach Suchlauf: 18 Verzeichnis(se), 149.556.871.168 Bytes frei . WindowsXP-KB310994-SP2-Home-BootDisk-DEU.exe [boot loader] timeout=30 default=multi(0)disk(0)rdisk(0)partition(1)\WINDOWS [operating systems] multi(0)disk(0)rdisk(0)partition(1)\WINDOWS="Microsoft Windows XP Home Edition" /fastdetect /NoExecute=OptIn . - - End Of File - - D5B241AD4F199C522C0EF7435ADA8F05 72B8CE41AF0DE751C946802B3ED844B4 |
21.03.2014, 12:21 | #56 |
/// the machine /// TB-Ausbilder | Windows XP: Browser verursacht Werbung Dann jetzt bitte nochmal ein frisches FRST log.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
21.03.2014, 12:55 | #57 |
| Windows XP: Browser verursacht Werbung Frst.txt FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 09-03-2014 Ran by feuer (administrator) on FEUER-4072ISAQU on 21-03-2014 12:50:15 Running from C:\Dokumente und Einstellungen\feuer\Eigene Dateien\Downloads Microsoft Windows XP Home Edition Service Pack 3 (X86) OS Language: German Standard Internet Explorer Version 8 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (Microsoft Corporation) C:\Programme\Microsoft\BingBar\SeaPort.EXE (Symantec Corporation) C:\Programme\Norton Internet Security CBE\Engine\21.1.0.18\NIS.exe (NVIDIA Corporation) C:\WINDOWS\system32\nvsvc32.exe (NVIDIA Corporation) C:\Programme\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe (Google Inc.) C:\Programme\Google\Update\1.3.22.5\GoogleCrashHandler.exe (Secunia) C:\Programme\Secunia\PSI\PSIA.exe (Microsoft Corporation) C:\WINDOWS\System32\tcpsvcs.exe (H+H Software GmbH) C:\Programme\Virtual CD v9\System\VC9SecS.exe (Secunia) C:\Programme\Secunia\PSI\sua.exe (Symantec Corporation) C:\Programme\Norton Internet Security CBE\Engine\21.1.0.18\NIS.exe (Creative Technology Ltd) C:\Programme\Creative\Surround Mixer\CTSysVol.exe (NVIDIA Corporation) C:\Programme\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe () C:\Programme\DivX\DivX Update\DivXUpdate.exe (Realtek Semiconductor Corp.) C:\WINDOWS\RTHDCPL.EXE () C:\WINDOWS\system32\rmctrl.exe (Secunia) C:\Programme\Secunia\PSI\psi_tray.exe (Microsoft Corporation) C:\Programme\Messenger\msmsgs.exe (Microsoft Corporation) C:\WINDOWS\system32\wscntfy.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [Adobe ARM] - C:\Programme\Gemeinsame Dateien\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated) HKLM\...\Run: [CTSysVol] - C:\Programme\Creative\Surround Mixer\CTSysVol.exe [57344 2005-10-31] (Creative Technology Ltd) HKLM\...\Run: [Nvtmru] - C:\Programme\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe [1012000 2013-05-16] (NVIDIA Corporation) HKLM\...\Run: [SSBkgdUpdate] - C:\Programme\Gemeinsame Dateien\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe [210472 2006-10-25] (Nuance Communications, Inc.) HKLM\...\Run: [DelReg] - C:\Programme\MSI\DualCoreCenter\DelReg.exe [196608 2008-05-13] () HKLM\...\Run: [DivXUpdate] - C:\Programme\DivX\DivX Update\DivXUpdate.exe [1861968 2013-11-15] () HKLM\...\Run: [RTHDCPL] - C:\WINDOWS\RTHDCPL.EXE [20145368 2014-02-15] (Realtek Semiconductor Corp.) HKLM\...\Run: [RemoteControl] - C:\WINDOWS\system32\rmctrl.exe [32768 2000-10-16] () HKLM\...\Run: [APSDaemon] - C:\Programme\Gemeinsame Dateien\Apple\Apple Application Support\APSDaemon.exe [59720 2013-04-21] (Apple Inc.) HKLM\...\Run: [NvCplDaemon] - C:\WINDOWS\system32\NvCpl.dll [15677728 2013-06-21] (NVIDIA Corporation) HKLM\...\Run: [NvMediaCenter] - C:\WINDOWS\system32\NvMcTray.dll [223008 2013-06-21] (NVIDIA Corporation) HKU\S-1-5-21-1085031214-790525478-725345543-1004\...\Run: [SetDefaultMIDI] - C:\WINDOWS\MIDIDef.exe [49152 2002-12-03] (Creative Technology Ltd) HKU\S-1-5-21-1085031214-790525478-725345543-1004\...\Policies\Explorer: [NoRecentDocsHistory] 1 Startup: C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Autostart\Secunia PSI Tray.lnk ShortcutTarget: Secunia PSI Tray.lnk -> C:\Programme\Secunia\PSI\psi_tray.exe (Secunia) Startup: C:\Dokumente und Einstellungen\feuer\Startmenü\Programme\Autostart\ubisoft register.lnk ShortcutTarget: ubisoft register.lnk -> C:\Programme\Ubi Soft\Register\schedule.exe (Ubi Soft) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de HKCU\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = hxxp://www.bing.com/ HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.msn.com/?pc=BDT1&ocid=BDT1DHP HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://de.msn.com/ HKLM\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = hxxp://www.bing.com/ HKLM\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://www.bing.com/ SearchScopes: HKCU - {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = hxxp://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}&ie={inputEncoding}&oe={outputEncoding}&startIndex={startIndex?}&startPage={startPage} BHO: No Name - {5C255C8A-E604-49b4-9D64-90988571CECB} - No File BHO: Norton Identity Protection - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Programme\Norton Internet Security CBE\Engine\21.1.0.18\coIEPlg.dll (Symantec Corporation) BHO: Norton Vulnerability Protection - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Programme\Norton Internet Security CBE\Engine\21.1.0.18\IPS\IPSBHO.DLL (Symantec Corporation) BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Programme\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO: Windows Live Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Programme\Gemeinsame Dateien\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation) BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Programme\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) Toolbar: HKLM - Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Programme\Norton Internet Security CBE\Engine\21.1.0.18\coIEPlg.dll (Symantec Corporation) Toolbar: HKCU - &Adresse - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - C:\WINDOWS\System32\browseui.dll (Microsoft Corporation) Toolbar: HKCU - &Links - {0E5CBF21-D15F-11D0-8301-00AA005B4383} - C:\WINDOWS\system32\SHELL32.dll (Microsoft Corporation) Toolbar: HKCU - No Name - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No File DPF: {17492023-C23A-453E-A040-C7C580BBF700} hxxp://go.microsoft.com/fwlink/?linkid=39204 DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} hxxp://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1304073907390 DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} hxxp://update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1379302733234 DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} hxxp://java.sun.com/update/1.7.0/jinstall-1_7_0_51-windows-i586.cab DPF: {CAFEEFAC-0017-0000-0051-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.7.0/jinstall-1_7_0_51-windows-i586.cab DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.7.0/jinstall-1_7_0_51-windows-i586.cab Handler: http\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\System\OLE DB\msdaipp.dll (Microsoft Corporation) Handler: http\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\System\OLE DB\msdaipp.dll (Microsoft Corporation) Handler: https\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\System\OLE DB\msdaipp.dll (Microsoft Corporation) Handler: https\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\System\OLE DB\msdaipp.dll (Microsoft Corporation) Handler: ipp\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\System\OLE DB\msdaipp.dll (Microsoft Corporation) Handler: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\Programme\Windows Live\Messenger\msgrapp.14.0.8117.0416.dll (Microsoft Corporation) Handler: msdaipp\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\System\OLE DB\msdaipp.dll (Microsoft Corporation) Handler: msdaipp\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\System\OLE DB\msdaipp.dll (Microsoft Corporation) Handler: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\Programme\Windows Live\Messenger\msgrapp.14.0.8117.0416.dll (Microsoft Corporation) Handler: wlmailhtml - {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - C:\Programme\Windows Live\Mail\mailcomm.dll (Microsoft Corporation) ShellExecuteHooks: Windows Desktop Search Namespace Manager - {56F9679E-7826-4C84-81F3-532071A8BCC5} - C:\Programme\Windows Desktop Search\MsnlNamespaceMgr.dll [304128 2009-05-24] (Microsoft Corporation) Winsock: Catalog5 04 C:\WINDOWS\system32\pnrpnsp.dll [58880] (Microsoft Corporation) Winsock: Catalog5 05 C:\WINDOWS\system32\pnrpnsp.dll [58880] (Microsoft Corporation) Winsock: Catalog9 01 C:\WINDOWS\system32\PCProtect.dll [293984] (Objectify Media Inc) Winsock: Catalog9 02 C:\WINDOWS\system32\PCProtect.dll [293984] (Objectify Media Inc) Winsock: Catalog9 36 C:\WINDOWS\system32\PCProtect.dll [293984] (Objectify Media Inc) Tcpip\Parameters: [DhcpNameServer] 192.168.0.1 FireFox: ======== FF ProfilePath: C:\Dokumente und Einstellungen\feuer\Anwendungsdaten\Mozilla\Firefox\Profiles\qhdllhf9.default-1394709733765 FF Plugin: @adobe.com/FlashPlayer - C:\WINDOWS\system32\Macromed\Flash\NPSWF32_12_0_0_77.dll () FF Plugin: @adobe.com/ShockwavePlayer - C:\WINDOWS\system32\Adobe\Director\np32dsw_1210150.dll (Adobe Systems, Inc.) FF Plugin: @divx.com/DivX VOD Helper,version=1.0.0 - C:\Programme\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.) FF Plugin: @divx.com/DivX Web Player Plug-In,version=1.0.0 - C:\Programme\DivX\DivX Web Player\npdivx32.dll (DivX, LLC) FF Plugin: @java.com/DTPlugin,version=10.51.2 - C:\WINDOWS\system32\npdeployJava1.dll (Oracle Corporation) FF Plugin: @java.com/JavaPlugin - C:\Programme\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=10.51.2 - C:\Programme\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - C:\Programme\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation) FF Plugin: @microsoft.com/OfficeLive,version=1.5 - C:\Programme\Microsoft\Office Live\npOLW.dll (Microsoft Corp.) FF Plugin: @microsoft.com/WLPG,version=14.0.8117.0416 - C:\Programme\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin: @microsoft.com/WPF,version=3.5 - C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation) FF Plugin: @nokia.com/EnablerPlugin - C:\Programme\Nokia\Nokia Suite\npNokiaSuiteEnabler.dll ( ) FF Plugin: @tools.google.com/Google Update;version=3 - C:\Programme\Google\Update\1.3.22.5\npGoogleUpdate3.dll (Google Inc.) FF Plugin: @tools.google.com/Google Update;version=9 - C:\Programme\Google\Update\1.3.22.5\npGoogleUpdate3.dll (Google Inc.) FF Plugin: Adobe Reader - C:\Programme\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF SearchPlugin: C:\Programme\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Programme\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Programme\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Programme\mozilla firefox\browser\searchplugins\yahoo-de.xml FF Extension: Greasemonkey - C:\Dokumente und Einstellungen\feuer\Anwendungsdaten\Mozilla\Firefox\Profiles\qhdllhf9.default-1394709733765\Extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}.xpi [2014-03-14] FF HKLM\...\Firefox\Extensions: [{BBDA0591-3099-440a-AA10-41764D9DB4DB}] - C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_21.0.0.100\IPSFF FF Extension: Norton Vulnerability Protection - C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_21.0.0.100\IPSFF [2013-11-29] FF HKLM\...\Firefox\Extensions: [{2D3F3651-74B9-4795-BDEC-6DA2F431CB62}] - C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_21.0.0.100\coFFPlgn\ FF Extension: Norton Toolbar - C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_21.0.0.100\coFFPlgn\ [] Chrome: ======= CHR Extension: (Google Docs) - C:\Dokumente und Einstellungen\feuer\Lokale Einstellungen\Anwendungsdaten\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-03-07] CHR Extension: (Google Drive) - C:\Dokumente und Einstellungen\feuer\Lokale Einstellungen\Anwendungsdaten\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-03-07] CHR Extension: (YouTube) - C:\Dokumente und Einstellungen\feuer\Lokale Einstellungen\Anwendungsdaten\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-03-07] CHR Extension: (Google-Suche) - C:\Dokumente und Einstellungen\feuer\Lokale Einstellungen\Anwendungsdaten\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-03-07] CHR Extension: (Norton Identity Protection) - C:\Dokumente und Einstellungen\feuer\Lokale Einstellungen\Anwendungsdaten\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk [2014-03-07] CHR Extension: (Google Wallet) - C:\Dokumente und Einstellungen\feuer\Lokale Einstellungen\Anwendungsdaten\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-03-07] CHR Extension: (Google Mail) - C:\Dokumente und Einstellungen\feuer\Lokale Einstellungen\Anwendungsdaten\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-03-07] CHR HKLM\...\Chrome\Extension: [mkfokfffehpeedafpekjeddnmnjhmcmk] - C:\Programme\Norton Internet Security CBE\Engine\21.1.0.18\Exts\Chrome.crx [2013-11-29] ========================== Services (Whitelisted) ================= R2 6to4; C:\WINDOWS\System32\6to4svc.dll [100864 2010-02-12] (Microsoft Corporation) S2 BBSvc; C:\Programme\Microsoft\BingBar\BBSvc.EXE [196176 2011-10-21] (Microsoft Corporation.) R2 BBUpdate; C:\Programme\Microsoft\BingBar\SeaPort.EXE [249648 2011-10-13] (Microsoft Corporation) S3 fsssvc; C:\Programme\Windows Live\Family Safety\fsssvc.exe [704872 2010-04-28] (Microsoft Corporation) S2 gupdate; C:\Programme\Google\Update\GoogleUpdate.exe [116648 2014-03-07] (Google Inc.) S3 gupdatem; C:\Programme\Google\Update\GoogleUpdate.exe [116648 2014-03-07] (Google Inc.) R2 Iprip; C:\WINDOWS\System32\iprip.dll [36864 2008-04-14] (Microsoft Corporation) S3 MozillaMaintenance; C:\Programme\Mozilla Maintenance Service\maintenanceservice.exe [118896 2014-02-13] (Mozilla Foundation) R2 NIS; C:\Programme\Norton Internet Security CBE\Engine\21.1.0.18\NIS.exe [275696 2013-10-08] (Symantec Corporation) R2 nvUpdatusService; C:\Programme\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [1826592 2013-05-16] (NVIDIA Corporation) S3 p2pgasvc; C:\WINDOWS\system32\p2pgasvc.dll [105472 2008-04-14] (Microsoft Corporation) S3 SandraAgentSrv; C:\Programme\SiSoftware\SiSoftware Sandra Lite 2011.SP2\RpcAgentSrv.exe [93848 2009-08-10] (SiSoftware) R2 Secunia PSI Agent; C:\Programme\Secunia\PSI\PSIA.exe [1229528 2013-12-06] (Secunia) R2 Secunia Update Agent; C:\Programme\Secunia\PSI\sua.exe [662232 2013-12-06] (Secunia) S3 ServiceLayer; C:\Programme\PC Connectivity Solution\ServiceLayer.exe [737616 2013-04-18] (Nokia) R2 VC9SecS; C:\Programme\Virtual CD v9\System\VC9SecS.exe [132424 2009-10-01] (H+H Software GmbH) S3 WMPNetworkSvc; C:\Programme\Windows Media Player\WMPNetwk.exe [920576 2006-11-03] (Microsoft Corporation) S3 x10nets; C:\Programme\Common Files\X10\Common\X10nets.exe [20480 2001-11-12] (X10) ==================== Drivers (Whitelisted) ==================== S3 3xHybrid; C:\WINDOWS\System32\DRIVERS\3xHybrid.sys [1315936 2011-04-30] (NXP Semiconductors Germany GmbH) R2 ACEDRV07; C:\WINDOWS\system32\drivers\ACEDRV07.sys [101376 2013-02-05] (Protect Software GmbH) S3 Ambfilt; C:\WINDOWS\System32\drivers\Ambfilt.sys [1691480 2014-02-15] (Creative) R1 BHDrvx86; C:\Programme\Norton Internet Security CBE\NortonData\21.0.0.100\Definitions\BASHDefs\20140214.001\BHDrvx86.sys [1098968 2013-12-18] (Symantec Corporation) S3 BrScnUsb; C:\WINDOWS\System32\DRIVERS\BrScnUsb.sys [15295 2004-10-15] (Brother Industries Ltd.) S3 CCDECODE; C:\WINDOWS\System32\DRIVERS\CCDECODE.sys [17024 2008-04-13] (Microsoft Corporation) R1 ccSet_NIS; C:\WINDOWS\system32\drivers\NIS\1501000.012\ccSetx86.sys [127064 2013-09-26] (Symantec Corporation) R1 eeCtrl; C:\Programme\Gemeinsame Dateien\Symantec Shared\EENGINE\eeCtrl.sys [376920 2014-01-30] (Symantec Corporation) R3 EraserUtilRebootDrv; C:\Programme\Gemeinsame Dateien\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [108120 2013-11-29] (Symantec Corporation) R2 fssfltr; C:\WINDOWS\System32\DRIVERS\fssfltr_tdi.sys [54760 2010-04-28] (Microsoft Corporation) R0 giveio; C:\WINDOWS\System32\giveio.sys [5248 1996-04-03] () R3 HCWBT8xx; C:\WINDOWS\System32\drivers\HCWBT8XX.sys [472644 2006-01-25] (Hauppauge Computer Works) S3 HdAudAddService; C:\WINDOWS\System32\drivers\AtiHdAud.sys [84992 2006-12-28] (ATI Research Inc.) S3 HH9Help.sys; C:\WINDOWS\system32\drivers\HH9Help.sys [11392 2006-09-20] (H+H Software GmbH) R0 hotcore3; C:\WINDOWS\System32\DRIVERS\hotcore3.sys [58464 2012-05-18] (Paragon Software Group) R3 IDSxpx86; C:\Programme\Norton Internet Security CBE\NortonData\21.0.0.100\Definitions\IPSDefs\20140320.001\IDSxpx86.sys [383128 2014-03-06] (Symantec Corporation) S3 Monfilt; C:\WINDOWS\System32\drivers\Monfilt.sys [1395800 2014-02-15] (Creative Technology Ltd.) S3 MPE; C:\WINDOWS\System32\DRIVERS\MPE.sys [15232 2008-04-13] (Microsoft Corporation) S3 MTK; C:\WINDOWS\System32\Drivers\fide.sys [15271 2014-03-10] (MediaTek Corporation) R3 NAVENG; C:\Programme\Norton Internet Security CBE\NortonData\21.0.0.100\Definitions\VirusDefs\20140320.009\NAVENG.SYS [93272 2014-03-18] (Symantec Corporation) R3 NAVEX15; C:\Programme\Norton Internet Security CBE\NortonData\21.0.0.100\Definitions\VirusDefs\20140320.009\NAVEX15.SYS [1612376 2014-03-18] (Symantec Corporation) S3 NdisIP; C:\WINDOWS\System32\DRIVERS\NdisIP.sys [10880 2008-04-13] (Microsoft Corporation) S3 nm; C:\WINDOWS\System32\DRIVERS\NMnt.sys [40320 2008-04-13] (Microsoft Corporation) R3 NVHDA; C:\WINDOWS\System32\drivers\nvhda32.sys [128672 2014-02-15] (NVIDIA Corporation) R2 NwlnkIpx; C:\WINDOWS\System32\DRIVERS\nwlnkipx.sys [88320 2008-04-13] (Microsoft Corporation) R2 NwlnkNb; C:\WINDOWS\System32\DRIVERS\nwlnknb.sys [63232 2002-08-29] (Microsoft Corporation) R2 NwlnkSpx; C:\WINDOWS\System32\DRIVERS\nwlnkspx.sys [55936 2002-08-29] (Microsoft Corporation) R3 P17; C:\WINDOWS\System32\drivers\P17.sys [1135104 2007-12-28] (Creative Technology Ltd.) R1 pcwatch; C:\WINDOWS\system32\Drivers\pcwatch.sys [19840 2014-01-08] () R3 pfc; C:\WINDOWS\System32\drivers\pfc.sys [13780 2002-04-19] (Padus, Inc.) R3 PSI; C:\WINDOWS\System32\DRIVERS\psi_mf_x86.sys [16024 2013-12-06] (Secunia) S3 RTCore32; C:\Programme\EVGA Precision\RTCore32.sys [4608 2005-05-25] () S3 SANDRA; C:\Programme\SiSoftware\SiSoftware Sandra Lite 2011.SP2\WNt500x86\Sandra.sys [23112 2009-08-07] (SiSoftware) R0 speedfan; C:\WINDOWS\System32\speedfan.sys [24184 2012-12-29] (Almico Software) R3 SRTSP; C:\WINDOWS\System32\Drivers\NIS\1501000.012\SRTSP.SYS [651352 2013-09-27] (Symantec Corporation) R1 SRTSPX; C:\WINDOWS\system32\drivers\NIS\1501000.012\SRTSPX.SYS [32344 2013-07-31] (Symantec Corporation) R0 SymDS; C:\WINDOWS\System32\drivers\NIS\1501000.012\SYMDS.SYS [367704 2013-08-01] (Symantec Corporation) R0 SymEFA; C:\WINDOWS\System32\drivers\NIS\1501000.012\SYMEFA.SYS [935512 2013-09-27] (Symantec Corporation) R3 SymEvent; C:\WINDOWS\system32\Drivers\SYMEVENT.SYS [142936 2013-11-29] (Symantec Corporation) R1 SymIRON; C:\WINDOWS\system32\drivers\NIS\1501000.012\Ironx86.SYS [206936 2013-07-31] (Symantec Corporation) R1 SYMTDI; C:\WINDOWS\System32\Drivers\NIS\1501000.012\SYMTDI.SYS [421592 2013-09-26] (Symantec Corporation) R1 Tcpip6; C:\WINDOWS\System32\DRIVERS\tcpip6.sys [226880 2010-02-11] (Microsoft Corporation) S3 X10UIF; C:\WINDOWS\System32\Drivers\x10uif.sys [10761 2001-11-14] (X10 Wireless Technology, Inc.) S3 catchme; \??\C:\ComboFix\catchme.sys [X] S4 IntelIde; No ImagePath U5 ScsiPort; C:\WINDOWS\system32\drivers\scsiport.sys [96384 2008-04-13] (Microsoft Corporation) S0 tclondrv; system32\DRIVERS\tclondrv.sys [X] U3 TlntSvr; R5 vdrv9000; C:\Windows\System32\Drivers\vdrv9000.sys [113688 2009-03-17] (H+H Software GmbH) ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-03-21 03:35 - 2014-03-21 03:35 - 00141731 _____ () C:\ComboFix.txt 2014-03-21 03:29 - 2014-03-21 03:29 - 00008192 ____H () C:\WINDOWS\system32\config\SECURITY.tmp.LOG 2014-03-21 03:29 - 2014-03-21 03:29 - 00000000 ____H () C:\WINDOWS\system32\config\system.tmp.LOG 2014-03-21 03:29 - 2014-03-21 03:29 - 00000000 ____H () C:\WINDOWS\system32\config\software.tmp.LOG 2014-03-21 03:29 - 2014-03-21 03:29 - 00000000 ____H () C:\WINDOWS\system32\config\SAM.tmp.LOG 2014-03-21 03:29 - 2014-03-21 03:29 - 00000000 ____H () C:\WINDOWS\system32\config\default.tmp.LOG 2014-03-21 03:11 - 2014-03-21 03:11 - 00000000 _RSHD () C:\cmdcons 2014-03-20 16:49 - 2014-03-20 16:49 - 05190052 ____R (Swearware) C:\Dokumente und Einstellungen\feuer\Desktop\ComboFix.exe 2014-03-20 00:46 - 2014-03-20 01:08 - 00000702 _____ () C:\Dokumente und Einstellungen\feuer\Desktop\Bilder trojaner.txt 2014-03-20 00:38 - 2014-03-20 00:38 - 00086016 _____ () C:\WINDOWS\Minidump\Mini032014-01.dmp 2014-03-19 01:39 - 2014-03-19 01:03 - 00024064 _____ () C:\WINDOWS\zoek-delete.exe 2014-03-19 01:09 - 2014-03-15 18:19 - 00103562 _____ () C:\zoek-results2014-03-15-171943.log 2014-03-17 18:38 - 2014-03-17 18:37 - 00090224 ____H () C:\WINDOWS\Minidump\Mini031714-01.dmp 2014-03-15 17:39 - 2014-03-15 17:26 - 00012186 _____ () C:\zoek-results2014-03-15-162648.log 2014-03-15 17:25 - 2014-03-19 01:41 - 00090755 _____ () C:\zoek-results.log 2014-03-15 17:09 - 2014-03-15 18:09 - 00000000 ____D () C:\zoek_backup 2014-03-14 16:23 - 2014-02-20 20:49 - 00877480 _____ (Oracle Corporation) C:\WINDOWS\system32\npdeployJava1.dll 2014-03-14 16:23 - 2014-02-20 20:49 - 00800168 _____ (Oracle Corporation) C:\WINDOWS\system32\deployJava1.dll 2014-03-14 14:14 - 2014-03-14 14:14 - 00000000 ____D () C:\Dokumente und Einstellungen\feuer\Anwendungsdaten\1H1Q 2014-03-14 14:13 - 2014-03-15 19:13 - 00000000 ____D () C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Minecraft 2014-03-13 11:49 - 2014-03-15 16:07 - 00000430 _____ () C:\WINDOWS\nsw.log 2014-03-13 05:02 - 2014-03-13 05:02 - 00127935 _____ () C:\WINDOWS\KB2925418-IE8.log 2014-03-13 05:02 - 2014-03-13 05:02 - 00000000 __HDC () C:\WINDOWS\$NtUninstallKB2930275$ 2014-03-13 05:02 - 2014-03-13 05:02 - 00000000 __HDC () C:\WINDOWS\$NtUninstallKB2929961$ 2014-03-12 09:20 - 2014-03-13 05:02 - 00127647 _____ () C:\WINDOWS\KB2930275.log 2014-03-12 09:20 - 2014-03-13 05:02 - 00124351 _____ () C:\WINDOWS\KB2929961.log 2014-03-07 22:52 - 2014-03-07 22:52 - 00000000 __HDC () C:\WINDOWS\$NtUninstallKB961503$ 2014-03-07 22:51 - 2014-03-07 22:52 - 00012384 _____ () C:\WINDOWS\KB961503.log 2014-03-07 22:47 - 2014-03-07 22:47 - 00000000 ____D () C:\Dokumente und Einstellungen\feuer\Tracing 2014-03-07 22:46 - 2014-03-07 22:46 - 00000000 ____D () C:\Programme\Microsoft Sync Framework 2014-03-07 22:46 - 2010-04-28 07:44 - 00054760 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fssfltr_tdi.sys 2014-03-07 22:44 - 2014-03-07 22:44 - 00030134 _____ () C:\WINDOWS\DirectX.log 2014-03-07 22:44 - 2014-03-07 22:44 - 00000663 _____ () C:\WINDOWS\KB954708.log 2014-03-07 22:44 - 2014-03-07 22:44 - 00000000 ____D () C:\Programme\Microsoft SQL Server Compact Edition 2014-03-07 22:43 - 2014-03-07 22:43 - 00000000 ____D () C:\Programme\Windows Live SkyDrive 2014-03-07 22:42 - 2014-03-15 17:35 - 00000000 ____D () C:\Programme\Windows Live 2014-03-07 22:42 - 2014-03-07 22:47 - 00000000 ____D () C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Windows Live 2014-03-07 22:37 - 2014-03-07 22:37 - 00000000 ____D () C:\Programme\Gemeinsame Dateien\Windows Live 2014-03-07 19:47 - 2014-03-07 19:47 - 00000000 __HDC () C:\WINDOWS\$NtUninstallKB2808679$ 2014-03-07 19:36 - 2014-03-07 19:37 - 00008073 _____ () C:\WINDOWS\KB2632503-IE8.log 2014-03-07 19:08 - 2014-03-07 19:47 - 00009421 _____ () C:\WINDOWS\KB2808679.log 2014-03-07 16:50 - 2014-03-07 16:50 - 00000000 ____D () C:\Programme\Microsoft.NET 2014-03-07 16:42 - 2014-03-21 08:50 - 00000222 _____ () C:\WINDOWS\Tasks\Ende des Supports für Microsoft Windows XP – Benachrichtigung – Anmeldung.job 2014-03-07 16:42 - 2014-03-08 15:40 - 00000216 _____ () C:\WINDOWS\Tasks\Ende des Supports für Microsoft Windows XP – Monatliche Benachrichtigung.job 2014-03-07 16:28 - 2014-03-07 16:28 - 00033096 _____ () C:\WINDOWS\KB2909210-IE8.log 2014-03-07 16:28 - 2014-03-07 16:28 - 00032988 _____ () C:\WINDOWS\KB2934207.log 2014-03-07 16:28 - 2014-03-07 16:28 - 00000000 __HDC () C:\WINDOWS\$NtUninstallKB2934207$ 2014-03-07 16:27 - 2014-03-13 05:01 - 00000000 ____D () C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Microsoft Silverlight 2014-03-07 16:26 - 2014-03-07 16:27 - 00008131 _____ () C:\WINDOWS\KB2510531-IE8.log 2014-03-07 16:26 - 2014-02-27 00:28 - 00013312 ____N (Microsoft Corporation) C:\WINDOWS\system32\xp_eos.exe 2014-03-07 16:26 - 2014-02-27 00:28 - 00013312 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\xp_eos.exe 2014-03-07 16:08 - 2014-03-07 16:09 - 00000000 __HDC () C:\WINDOWS\ie8 2014-03-07 15:51 - 2014-03-07 15:52 - 00005193 _____ () C:\WINDOWS\KB2909212.log 2014-03-07 15:51 - 2014-03-07 15:52 - 00004890 _____ () C:\WINDOWS\KB2909921.log 2014-03-07 15:50 - 2014-03-15 18:01 - 00001773 _____ () C:\Dokumente und Einstellungen\All Users\Desktop\Google Chrome.lnk 2014-03-07 15:50 - 2014-03-07 15:50 - 00000000 ____D () C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Google Chrome 2014-03-07 15:49 - 2014-03-21 11:54 - 00001088 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job 2014-03-07 15:49 - 2014-03-21 08:50 - 00001084 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job 2014-03-07 15:26 - 2014-03-07 16:11 - 00075941 _____ () C:\WINDOWS\KB2744842-IE8.log 2014-03-07 15:26 - 2014-03-07 16:11 - 00071682 _____ () C:\WINDOWS\KB2862772-IE8.log 2014-03-07 15:25 - 2014-03-07 16:11 - 00080750 _____ () C:\WINDOWS\KB2618444-IE8.log 2014-03-07 15:25 - 2014-03-07 16:10 - 00066566 _____ () C:\WINDOWS\KB2598845-IE8.log 2014-03-07 15:24 - 2014-03-07 16:17 - 00013740 _____ () C:\WINDOWS\spupdsvc.log 2014-03-07 15:24 - 2014-03-07 16:10 - 00088939 _____ () C:\WINDOWS\KB982381-IE8.log 2014-03-07 15:23 - 2014-03-13 11:34 - 00000000 ____D () C:\Programme\Microsoft Silverlight 2014-03-07 15:23 - 2014-03-07 16:09 - 00089234 _____ () C:\WINDOWS\ie8.log 2014-03-07 15:21 - 2014-03-07 16:12 - 00000000 ___HD () C:\WINDOWS\msdownld.tmp 2014-03-07 15:07 - 2014-03-07 16:15 - 00232253 _____ () C:\WINDOWS\ie8_main.log 2014-03-07 14:54 - 2014-03-13 05:02 - 00091977 _____ () C:\WINDOWS\updspapi.log 2014-03-07 14:53 - 2014-03-13 05:02 - 00154580 _____ () C:\WINDOWS\FaxSetup.log 2014-03-07 14:53 - 2014-03-13 05:02 - 00073900 _____ () C:\WINDOWS\ocgen.log 2014-03-07 14:53 - 2014-03-13 05:02 - 00058975 _____ () C:\WINDOWS\tsoc.log 2014-03-07 14:53 - 2014-03-13 05:02 - 00051198 _____ () C:\WINDOWS\comsetup.log 2014-03-07 14:53 - 2014-03-13 05:02 - 00031036 _____ () C:\WINDOWS\ntdtcsetup.log 2014-03-07 14:53 - 2014-03-13 05:02 - 00024288 _____ () C:\WINDOWS\iis6.log 2014-03-07 14:53 - 2014-03-13 05:02 - 00008550 _____ () C:\WINDOWS\ocmsn.log 2014-03-07 14:53 - 2014-03-13 05:02 - 00007725 _____ () C:\WINDOWS\msgsocm.log 2014-03-07 14:53 - 2014-03-13 05:02 - 00001374 _____ () C:\WINDOWS\imsins.log 2014-03-07 14:53 - 2014-03-13 05:02 - 00001374 _____ () C:\WINDOWS\imsins.BAK 2014-03-07 14:53 - 2014-03-07 15:33 - 00060421 _____ () C:\WINDOWS\ie8Uninst.log 2014-03-07 14:53 - 2014-03-07 14:53 - 00000000 _____ () C:\WINDOWS\setuperr.log 2014-03-07 14:53 - 2014-03-07 14:53 - 00000000 _____ () C:\WINDOWS\setupact.log 2014-03-07 14:42 - 2014-03-21 02:08 - 00000000 ____D () C:\Programme\Mozilla Firefox 2014-03-07 14:42 - 2014-03-07 14:44 - 00000000 ____D () C:\Dokumente und Einstellungen\feuer\Anwendungsdaten\Mozilla 2014-03-07 14:42 - 2014-03-07 14:42 - 00000706 _____ () C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Mozilla Firefox.lnk 2014-03-07 14:42 - 2014-03-07 14:42 - 00000700 _____ () C:\Dokumente und Einstellungen\All Users\Desktop\Mozilla Firefox.lnk 2014-03-07 14:17 - 2014-03-07 14:17 - 00045372 _____ () C:\Dokumente und Einstellungen\feuer\Desktop\bookmarks.html 2014-03-01 21:55 - 2014-03-01 21:55 - 00010752 _____ () C:\Dokumente und Einstellungen\feuer\Eigene Dateien\shake.xls 2014-03-01 02:59 - 2014-03-01 03:04 - 00000000 ____D () C:\Dokumente und Einstellungen\feuer\Anwendungsdaten\Dev-Cpp 2014-03-01 02:59 - 2014-03-01 02:59 - 00000000 ____D () C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Bloodshed Dev-C++ 2014-02-24 08:33 - 2014-02-24 08:33 - 00086016 _____ () C:\WINDOWS\Minidump\Mini022414-01.dmp 2014-02-24 08:23 - 2014-02-24 08:23 - 00000000 ____D () C:\Dokumente und Einstellungen\feuer\Lokale Einstellungen\Anwendungsdaten\Deployment 2014-02-23 17:16 - 2014-02-23 17:16 - 00002119 _____ () C:\Dokumente und Einstellungen\feuer\Desktop\Siedler 4 starten.lnk 2014-02-23 16:51 - 2014-02-23 16:51 - 00002095 _____ () C:\Dokumente und Einstellungen\Gast\Desktop\Die Siedler 4 Starten.lnk 2014-02-23 16:46 - 2014-03-15 16:07 - 00119345 _____ () C:\WINDOWS\setupapi.log 2014-02-23 16:46 - 2014-02-23 16:46 - 00001707 _____ () C:\Dokumente und Einstellungen\feuer\Desktop\Ubi Soft Product Registration.lnk 2014-02-23 16:46 - 2014-02-23 16:46 - 00000000 ____D () C:\Programme\Ubi Soft 2014-02-23 16:46 - 2002-06-17 06:25 - 00026088 ____R (Microsoft Corporation) C:\WINDOWS\system32\xmlinst.exe 2014-02-23 16:46 - 2002-04-24 11:43 - 00035840 ____R () C:\WINDOWS\system32\comdlg32.oca 2014-02-23 16:46 - 2002-04-09 16:23 - 00029184 ____R () C:\WINDOWS\system32\MSINET.oca 2014-02-23 16:46 - 2000-03-17 07:21 - 00069632 ____R () C:\WINDOWS\system32\xmltok.dll 2014-02-23 16:46 - 2000-03-17 07:21 - 00036864 ____R () C:\WINDOWS\system32\xmlparse.dll 2014-02-23 16:46 - 1998-06-17 23:00 - 00089360 ____R (Microsoft Corporation) C:\WINDOWS\system32\VB5DB.DLL 2014-02-23 16:45 - 2014-02-23 16:45 - 00000000 ____D () C:\Dokumente und Einstellungen\feuer\Startmenü\Programme\Blue Byte 2014-02-23 16:25 - 2014-02-23 16:25 - 00000372 _____ () C:\Dokumente und Einstellungen\Gast\Eigene Dateien\spider.sav 2014-02-23 16:25 - 2014-02-23 16:25 - 00000000 ____D () C:\Dokumente und Einstellungen\Gast\Eigene Dateien\Virtual CD v9 2014-02-22 09:39 - 2014-02-22 09:39 - 00000000 ____D () C:\Dokumente und Einstellungen\Gast\Lokale Einstellungen\Anwendungsdaten\Apple Computer 2014-02-22 07:21 - 2014-02-22 07:21 - 00000000 __SHD () C:\Dokumente und Einstellungen\Gast\IECompatCache 2014-02-22 07:20 - 2014-02-22 07:20 - 00000000 __SHD () C:\Dokumente und Einstellungen\Gast\PrivacIE 2014-02-21 01:30 - 2014-03-07 16:12 - 00074206 _____ () C:\WINDOWS\KB2909921-IE8.log 2014-02-20 20:50 - 2014-03-14 16:10 - 00094632 _____ (Oracle Corporation) C:\WINDOWS\system32\WindowsAccessBridge.dll 2014-02-20 17:14 - 2014-02-20 17:14 - 00000000 ____D () C:\Dokumente und Einstellungen\Gast\Anwendungsdaten\Windows Search 2014-02-20 17:09 - 2014-02-20 17:09 - 00000000 __SHD () C:\Dokumente und Einstellungen\Gast\IETldCache 2014-02-20 16:21 - 2014-03-07 14:56 - 00000000 ____D () C:\Programme\Mozilla Maintenance Service 2014-02-20 15:47 - 2014-02-20 15:47 - 00000739 _____ () C:\Dokumente und Einstellungen\feuer\Desktop\Revo Uninstaller.lnk 2014-02-20 08:45 - 2014-02-20 08:45 - 00000000 ____D () C:\Dokumente und Einstellungen\NetworkService\Lokale Einstellungen\Anwendungsdaten\Apple 2014-02-19 09:10 - 2014-02-19 09:10 - 00000000 ____D () C:\Dokumente und Einstellungen\feuer\Anwendungsdaten\Apple Computer 2014-02-19 02:13 - 2014-02-19 02:13 - 00000000 ____D () C:\Dokumente und Einstellungen\Gast\Lokale Einstellungen\Anwendungsdaten\Adobe 2014-02-19 02:04 - 2014-02-19 02:04 - 00000000 ____D () C:\Dokumente und Einstellungen\Gast\Lokale Einstellungen\Anwendungsdaten\Apple 2014-02-19 02:00 - 2014-02-19 02:00 - 00000000 ____D () C:\Dokumente und Einstellungen\Gast\Anwendungsdaten\Apple Computer ==================== One Month Modified Files and Folders ======= 2014-03-21 12:50 - 2014-02-15 23:07 - 00000000 ____D () C:\FRST 2014-03-21 12:50 - 2012-07-06 14:23 - 00000884 _____ () C:\WINDOWS\Tasks\Adobe Flash Player Updater.job 2014-03-21 12:45 - 2013-02-19 23:44 - 00016804 _____ () C:\WINDOWS\system32\nvAppTimestamps 2014-03-21 11:54 - 2014-03-07 15:49 - 00001088 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job 2014-03-21 08:50 - 2014-03-07 16:42 - 00000222 _____ () C:\WINDOWS\Tasks\Ende des Supports für Microsoft Windows XP – Benachrichtigung – Anmeldung.job 2014-03-21 08:50 - 2014-03-07 15:49 - 00001084 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job 2014-03-21 08:49 - 2011-04-29 11:45 - 01910004 _____ () C:\WINDOWS\WindowsUpdate.log 2014-03-21 08:47 - 2011-04-29 05:14 - 00000159 _____ () C:\WINDOWS\wiadebug.log 2014-03-21 08:47 - 2011-04-29 05:14 - 00000050 _____ () C:\WINDOWS\wiaservc.log 2014-03-21 08:47 - 2011-04-29 04:18 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT 2014-03-21 03:58 - 2011-04-29 04:20 - 00000190 __SHC () C:\Dokumente und Einstellungen\feuer\ntuser.ini 2014-03-21 03:58 - 2011-04-29 04:19 - 00032522 _____ () C:\WINDOWS\SchedLgU.Txt 2014-03-21 03:36 - 2014-02-16 11:50 - 00000000 ____D () C:\Qoobox 2014-03-21 03:35 - 2014-03-21 03:35 - 00141731 _____ () C:\ComboFix.txt 2014-03-21 03:32 - 2002-08-29 13:00 - 00000227 _____ () C:\WINDOWS\system.ini 2014-03-21 03:30 - 2011-04-29 06:12 - 37224448 _____ () C:\WINDOWS\system32\config\software.bak 2014-03-21 03:30 - 2011-04-29 06:12 - 06291456 _____ () C:\WINDOWS\system32\config\system.bak 2014-03-21 03:30 - 2011-04-29 06:12 - 00524288 _____ () C:\WINDOWS\system32\config\default.bak 2014-03-21 03:30 - 2011-04-29 05:13 - 00262144 _____ () C:\WINDOWS\system32\config\SECURITY.bak 2014-03-21 03:30 - 2011-04-29 05:13 - 00024576 _____ () C:\WINDOWS\system32\config\SAM.bak 2014-03-21 03:29 - 2014-03-21 03:29 - 00008192 ____H () C:\WINDOWS\system32\config\SECURITY.tmp.LOG 2014-03-21 03:29 - 2014-03-21 03:29 - 00000000 ____H () C:\WINDOWS\system32\config\system.tmp.LOG 2014-03-21 03:29 - 2014-03-21 03:29 - 00000000 ____H () C:\WINDOWS\system32\config\software.tmp.LOG 2014-03-21 03:29 - 2014-03-21 03:29 - 00000000 ____H () C:\WINDOWS\system32\config\SAM.tmp.LOG 2014-03-21 03:29 - 2014-03-21 03:29 - 00000000 ____H () C:\WINDOWS\system32\config\default.tmp.LOG 2014-03-21 03:29 - 2014-02-16 11:50 - 00000000 ____D () C:\WINDOWS\erdnt 2014-03-21 03:11 - 2014-03-21 03:11 - 00000000 _RSHD () C:\cmdcons 2014-03-21 02:08 - 2014-03-07 14:42 - 00000000 ____D () C:\Programme\Mozilla Firefox 2014-03-20 16:49 - 2014-03-20 16:49 - 05190052 ____R (Swearware) C:\Dokumente und Einstellungen\feuer\Desktop\ComboFix.exe 2014-03-20 01:20 - 2014-02-17 18:30 - 00000000 ____D () C:\Avenger 2014-03-20 01:08 - 2014-03-20 00:46 - 00000702 _____ () C:\Dokumente und Einstellungen\feuer\Desktop\Bilder trojaner.txt 2014-03-20 00:45 - 2012-01-30 15:47 - 00000000 ____D () C:\Dokumente und Einstellungen\feuer\Lokale Einstellungen\Anwendungsdaten\Shotty 2014-03-20 00:38 - 2014-03-20 00:38 - 00086016 _____ () C:\WINDOWS\Minidump\Mini032014-01.dmp 2014-03-20 00:38 - 2011-04-29 21:19 - 00000000 ____D () C:\WINDOWS\Minidump 2014-03-19 11:51 - 2011-04-29 04:20 - 00000000 ___RD () C:\Dokumente und Einstellungen\feuer\Startmenü\Programme\Autostart 2014-03-19 01:41 - 2014-03-15 17:25 - 00090755 _____ () C:\zoek-results.log 2014-03-19 01:39 - 2011-04-29 04:20 - 00000000 ____D () C:\Dokumente und Einstellungen\feuer 2014-03-19 01:37 - 2011-04-29 05:13 - 00000000 ___RD () C:\Programme 2014-03-19 01:03 - 2014-03-19 01:39 - 00024064 _____ () C:\WINDOWS\zoek-delete.exe 2014-03-19 00:59 - 2002-08-29 13:00 - 00002422 _____ () C:\WINDOWS\system32\wpa.dbl 2014-03-18 05:06 - 2013-08-15 14:37 - 00000000 ____D () C:\WINDOWS\system32\MRT 2014-03-18 05:00 - 2011-04-29 12:47 - 87350280 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2014-03-17 18:37 - 2014-03-17 18:38 - 00090224 ____H () C:\WINDOWS\Minidump\Mini031714-01.dmp 2014-03-17 15:30 - 2011-08-04 22:51 - 00002501 _____ () C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Microsoft Word.lnk 2014-03-17 03:23 - 2012-01-30 15:26 - 00000000 ____D () C:\Programme\Shotty 2014-03-15 19:13 - 2014-03-14 14:13 - 00000000 ____D () C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Minecraft 2014-03-15 18:19 - 2014-03-19 01:09 - 00103562 _____ () C:\zoek-results2014-03-15-171943.log 2014-03-15 18:09 - 2014-03-15 17:09 - 00000000 ____D () C:\zoek_backup 2014-03-15 18:01 - 2014-03-07 15:50 - 00001773 _____ () C:\Dokumente und Einstellungen\All Users\Desktop\Google Chrome.lnk 2014-03-15 17:35 - 2014-03-07 22:42 - 00000000 ____D () C:\Programme\Windows Live 2014-03-15 17:26 - 2014-03-15 17:39 - 00012186 _____ () C:\zoek-results2014-03-15-162648.log 2014-03-15 16:07 - 2014-03-13 11:49 - 00000430 _____ () C:\WINDOWS\nsw.log 2014-03-15 16:07 - 2014-02-23 16:46 - 00119345 _____ () C:\WINDOWS\setupapi.log 2014-03-15 16:05 - 2011-04-29 06:09 - 00000000 ____D () C:\WINDOWS\system32\ias 2014-03-14 16:47 - 2014-02-10 01:56 - 00000000 ____D () C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\QuickTime 2014-03-14 16:45 - 2011-04-29 05:13 - 00000000 ___RD () C:\Dokumente und Einstellungen\All Users\Startmenü\Programme 2014-03-14 16:42 - 2011-05-01 23:47 - 00000000 ____D () C:\WINDOWS\uninstall 2014-03-14 16:42 - 2011-05-01 23:47 - 00000000 ____D () C:\Dokumente und Einstellungen\feuer\Lokale Einstellungen\Anwendungsdaten\Publish_Data 2014-03-14 16:42 - 2011-05-01 23:47 - 00000000 ____D () C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Publish Data 2014-03-14 16:42 - 2011-04-29 04:20 - 00000000 ___RD () C:\Dokumente und Einstellungen\feuer\Startmenü\Programme 2014-03-14 16:39 - 2011-04-29 04:16 - 00000000 ____D () C:\Programme\MSN 2014-03-14 16:23 - 2012-06-29 20:04 - 00000000 ____D () C:\Programme\Java 2014-03-14 16:10 - 2014-02-20 20:50 - 00094632 _____ (Oracle Corporation) C:\WINDOWS\system32\WindowsAccessBridge.dll 2014-03-14 16:06 - 2013-02-18 02:04 - 00000000 ____D () C:\Dokumente und Einstellungen\feuer\Anwendungsdaten\.minecraft 2014-03-14 15:17 - 2011-04-30 00:20 - 00196608 _____ () C:\WINDOWS\system32\config\WindowsPowerShell.evt 2014-03-14 14:14 - 2014-03-14 14:14 - 00000000 ____D () C:\Dokumente und Einstellungen\feuer\Anwendungsdaten\1H1Q 2014-03-13 11:34 - 2014-03-07 15:23 - 00000000 ____D () C:\Programme\Microsoft Silverlight 2014-03-13 11:34 - 2011-04-29 05:13 - 00165912 _____ () C:\WINDOWS\system32\FNTCACHE.DAT 2014-03-13 05:02 - 2014-03-13 05:02 - 00127935 _____ () C:\WINDOWS\KB2925418-IE8.log 2014-03-13 05:02 - 2014-03-13 05:02 - 00000000 __HDC () C:\WINDOWS\$NtUninstallKB2930275$ 2014-03-13 05:02 - 2014-03-13 05:02 - 00000000 __HDC () C:\WINDOWS\$NtUninstallKB2929961$ 2014-03-13 05:02 - 2014-03-12 09:20 - 00127647 _____ () C:\WINDOWS\KB2930275.log 2014-03-13 05:02 - 2014-03-12 09:20 - 00124351 _____ () C:\WINDOWS\KB2929961.log 2014-03-13 05:02 - 2014-03-07 14:54 - 00091977 _____ () C:\WINDOWS\updspapi.log 2014-03-13 05:02 - 2014-03-07 14:53 - 00154580 _____ () C:\WINDOWS\FaxSetup.log 2014-03-13 05:02 - 2014-03-07 14:53 - 00073900 _____ () C:\WINDOWS\ocgen.log 2014-03-13 05:02 - 2014-03-07 14:53 - 00058975 _____ () C:\WINDOWS\tsoc.log 2014-03-13 05:02 - 2014-03-07 14:53 - 00051198 _____ () C:\WINDOWS\comsetup.log 2014-03-13 05:02 - 2014-03-07 14:53 - 00031036 _____ () C:\WINDOWS\ntdtcsetup.log 2014-03-13 05:02 - 2014-03-07 14:53 - 00024288 _____ () C:\WINDOWS\iis6.log 2014-03-13 05:02 - 2014-03-07 14:53 - 00008550 _____ () C:\WINDOWS\ocmsn.log 2014-03-13 05:02 - 2014-03-07 14:53 - 00007725 _____ () C:\WINDOWS\msgsocm.log 2014-03-13 05:02 - 2014-03-07 14:53 - 00001374 _____ () C:\WINDOWS\imsins.log 2014-03-13 05:02 - 2014-03-07 14:53 - 00001374 _____ () C:\WINDOWS\imsins.BAK 2014-03-13 05:02 - 2011-04-29 22:30 - 00000000 ____D () C:\WINDOWS\ie8updates 2014-03-13 05:01 - 2014-03-07 16:27 - 00000000 ____D () C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Microsoft Silverlight 2014-03-12 10:50 - 2012-04-07 19:11 - 00692616 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerApp.exe 2014-03-12 10:50 - 2011-05-13 21:15 - 00071048 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerCPLApp.cpl 2014-03-12 06:57 - 2011-04-29 05:13 - 01505450 _____ () C:\WINDOWS\system32\PerfStringBackup.INI 2014-03-10 08:23 - 2014-02-18 13:49 - 00015271 _____ (MediaTek Corporation) C:\WINDOWS\system32\Drivers\FIDE.SYS 2014-03-08 15:40 - 2014-03-07 16:42 - 00000216 _____ () C:\WINDOWS\Tasks\Ende des Supports für Microsoft Windows XP – Monatliche Benachrichtigung.job 2014-03-08 00:34 - 2011-04-29 05:23 - 00000000 ____D () C:\WINDOWS\Microsoft.NET 2014-03-07 22:52 - 2014-03-07 22:52 - 00000000 __HDC () C:\WINDOWS\$NtUninstallKB961503$ 2014-03-07 22:52 - 2014-03-07 22:51 - 00012384 _____ () C:\WINDOWS\KB961503.log 2014-03-07 22:51 - 2011-04-29 11:47 - 00000000 ___HD () C:\WINDOWS\$hf_mig$ 2014-03-07 22:47 - 2014-03-07 22:47 - 00000000 ____D () C:\Dokumente und Einstellungen\feuer\Tracing 2014-03-07 22:47 - 2014-03-07 22:42 - 00000000 ____D () C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Windows Live 2014-03-07 22:46 - 2014-03-07 22:46 - 00000000 ____D () C:\Programme\Microsoft Sync Framework 2014-03-07 22:44 - 2014-03-07 22:44 - 00030134 _____ () C:\WINDOWS\DirectX.log 2014-03-07 22:44 - 2014-03-07 22:44 - 00000663 _____ () C:\WINDOWS\KB954708.log 2014-03-07 22:44 - 2014-03-07 22:44 - 00000000 ____D () C:\Programme\Microsoft SQL Server Compact Edition 2014-03-07 22:44 - 2011-04-29 04:17 - 00000000 ____D () C:\WINDOWS\system32\DirectX 2014-03-07 22:43 - 2014-03-07 22:43 - 00000000 ____D () C:\Programme\Windows Live SkyDrive 2014-03-07 22:43 - 2011-04-29 05:13 - 00000000 ___RD () C:\Dokumente und Einstellungen\All Users\Dokumente 2014-03-07 22:43 - 2011-04-29 05:13 - 00000000 ____D () C:\Programme\Gemeinsame Dateien\Microsoft Shared 2014-03-07 22:37 - 2014-03-07 22:37 - 00000000 ____D () C:\Programme\Gemeinsame Dateien\Windows Live 2014-03-07 20:33 - 2011-05-16 17:05 - 01098816 _____ () C:\WINDOWS\system32\nvdrsdb1.bin 2014-03-07 20:33 - 2011-05-16 17:05 - 00000001 _____ () C:\WINDOWS\system32\nvdrssel.bin 2014-03-07 20:33 - 2011-04-29 14:18 - 00000000 ____D () C:\WINDOWS\system32\de-de 2014-03-07 20:28 - 2011-05-16 17:05 - 01098816 _____ () C:\WINDOWS\system32\nvdrsdb0.bin 2014-03-07 20:20 - 2011-05-16 17:04 - 00000000 ____D () C:\Programme\NVIDIA Corporation 2014-03-07 20:20 - 2011-04-29 04:26 - 00000000 ____D () C:\WINDOWS\system32\ReinstallBackups 2014-03-07 19:47 - 2014-03-07 19:47 - 00000000 __HDC () C:\WINDOWS\$NtUninstallKB2808679$ 2014-03-07 19:47 - 2014-03-07 19:08 - 00009421 _____ () C:\WINDOWS\KB2808679.log 2014-03-07 19:37 - 2014-03-07 19:36 - 00008073 _____ () C:\WINDOWS\KB2632503-IE8.log 2014-03-07 16:50 - 2014-03-07 16:50 - 00000000 ____D () C:\Programme\Microsoft.NET 2014-03-07 16:28 - 2014-03-07 16:28 - 00033096 _____ () C:\WINDOWS\KB2909210-IE8.log 2014-03-07 16:28 - 2014-03-07 16:28 - 00032988 _____ () C:\WINDOWS\KB2934207.log 2014-03-07 16:28 - 2014-03-07 16:28 - 00000000 __HDC () C:\WINDOWS\$NtUninstallKB2934207$ 2014-03-07 16:27 - 2014-03-07 16:26 - 00008131 _____ () C:\WINDOWS\KB2510531-IE8.log 2014-03-07 16:20 - 2011-04-29 04:20 - 00000787 _____ () C:\Dokumente und Einstellungen\feuer\Startmenü\Programme\Internet Explorer.lnk 2014-03-07 16:17 - 2014-03-07 15:24 - 00013740 _____ () C:\WINDOWS\spupdsvc.log 2014-03-07 16:16 - 2011-04-29 06:09 - 00000000 ____D () C:\WINDOWS\Help 2014-03-07 16:15 - 2014-03-07 15:07 - 00232253 _____ () C:\WINDOWS\ie8_main.log 2014-03-07 16:12 - 2014-03-07 15:21 - 00000000 ___HD () C:\WINDOWS\msdownld.tmp 2014-03-07 16:12 - 2014-02-21 01:30 - 00074206 _____ () C:\WINDOWS\KB2909921-IE8.log 2014-03-07 16:11 - 2014-03-07 15:26 - 00075941 _____ () C:\WINDOWS\KB2744842-IE8.log 2014-03-07 16:11 - 2014-03-07 15:26 - 00071682 _____ () C:\WINDOWS\KB2862772-IE8.log 2014-03-07 16:11 - 2014-03-07 15:25 - 00080750 _____ () C:\WINDOWS\KB2618444-IE8.log 2014-03-07 16:10 - 2014-03-07 15:25 - 00066566 _____ () C:\WINDOWS\KB2598845-IE8.log 2014-03-07 16:10 - 2014-03-07 15:24 - 00088939 _____ () C:\WINDOWS\KB982381-IE8.log 2014-03-07 16:09 - 2014-03-07 16:08 - 00000000 __HDC () C:\WINDOWS\ie8 2014-03-07 16:09 - 2014-03-07 15:23 - 00089234 _____ () C:\WINDOWS\ie8.log 2014-03-07 16:09 - 2011-04-29 06:09 - 00000000 ____D () C:\WINDOWS\Media 2014-03-07 15:52 - 2014-03-07 15:51 - 00005193 _____ () C:\WINDOWS\KB2909212.log 2014-03-07 15:52 - 2014-03-07 15:51 - 00004890 _____ () C:\WINDOWS\KB2909921.log 2014-03-07 15:51 - 2014-02-17 23:14 - 00000000 ____D () C:\Dokumente und Einstellungen\feuer\Lokale Einstellungen\Anwendungsdaten\Google 2014-03-07 15:50 - 2014-03-07 15:50 - 00000000 ____D () C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Google Chrome 2014-03-07 15:50 - 2012-05-14 19:43 - 00000000 ____D () C:\Programme\Google 2014-03-07 15:33 - 2014-03-07 14:53 - 00060421 _____ () C:\WINDOWS\ie8Uninst.log 2014-03-07 14:56 - 2014-02-20 16:21 - 00000000 ____D () C:\Programme\Mozilla Maintenance Service 2014-03-07 14:53 - 2014-03-07 14:53 - 00000000 _____ () C:\WINDOWS\setuperr.log 2014-03-07 14:53 - 2014-03-07 14:53 - 00000000 _____ () C:\WINDOWS\setupact.log 2014-03-07 14:44 - 2014-03-07 14:42 - 00000000 ____D () C:\Dokumente und Einstellungen\feuer\Anwendungsdaten\Mozilla 2014-03-07 14:42 - 2014-03-07 14:42 - 00000706 _____ () C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Mozilla Firefox.lnk 2014-03-07 14:42 - 2014-03-07 14:42 - 00000700 _____ () C:\Dokumente und Einstellungen\All Users\Desktop\Mozilla Firefox.lnk 2014-03-07 14:17 - 2014-03-07 14:17 - 00045372 _____ () C:\Dokumente und Einstellungen\feuer\Desktop\bookmarks.html 2014-03-01 21:55 - 2014-03-01 21:55 - 00010752 _____ () C:\Dokumente und Einstellungen\feuer\Eigene Dateien\shake.xls 2014-03-01 03:04 - 2014-03-01 02:59 - 00000000 ____D () C:\Dokumente und Einstellungen\feuer\Anwendungsdaten\Dev-Cpp 2014-03-01 02:59 - 2014-03-01 02:59 - 00000000 ____D () C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Bloodshed Dev-C++ 2014-02-27 00:28 - 2014-03-07 16:26 - 00013312 ____N (Microsoft Corporation) C:\WINDOWS\system32\xp_eos.exe 2014-02-27 00:28 - 2014-03-07 16:26 - 00013312 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\xp_eos.exe 2014-02-24 16:24 - 2009-03-08 04:32 - 00174592 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ie4uinit.exe 2014-02-24 16:24 - 2002-08-29 13:00 - 00174592 ____N (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe 2014-02-24 12:45 - 2012-06-13 16:03 - 00522240 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\jsdbgui.dll 2014-02-24 12:45 - 2011-04-29 22:30 - 11113472 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ieframe.dll 2014-02-24 12:45 - 2011-04-29 22:30 - 02006016 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\iertutil.dll 2014-02-24 12:45 - 2011-04-29 22:30 - 00743424 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\iedvtool.dll 2014-02-24 12:45 - 2011-04-29 22:30 - 00630272 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msfeeds.dll 2014-02-24 12:45 - 2011-04-29 22:30 - 00247808 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ieproxy.dll 2014-02-24 12:45 - 2011-04-29 22:30 - 00055296 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msfeedsbs.dll 2014-02-24 12:45 - 2011-04-29 22:30 - 00012800 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\xpshims.dll 2014-02-24 12:45 - 2011-02-17 14:51 - 00611840 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mstime.dll 2014-02-24 12:45 - 2011-02-17 14:51 - 00067072 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mshtmled.dll 2014-02-24 12:45 - 2010-04-16 17:06 - 06022144 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mshtml.dll 2014-02-24 12:45 - 2010-04-16 17:06 - 01216000 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\urlmon.dll 2014-02-24 12:45 - 2010-04-16 17:06 - 00920064 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wininet.dll 2014-02-24 12:45 - 2010-04-16 17:06 - 00184320 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\iepeers.dll 2014-02-24 12:45 - 2009-03-08 04:39 - 11113472 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll 2014-02-24 12:45 - 2009-03-08 04:34 - 01469440 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\inetcpl.cpl 2014-02-24 12:45 - 2009-03-08 04:34 - 00206848 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\occache.dll 2014-02-24 12:45 - 2009-03-08 04:34 - 00105984 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\url.dll 2014-02-24 12:45 - 2009-03-08 04:34 - 00043520 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\licmgr10.dll 2014-02-24 12:45 - 2009-03-08 04:33 - 00759296 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\vgx.dll 2014-02-24 12:45 - 2009-03-08 04:33 - 00025600 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\jsproxy.dll 2014-02-24 12:45 - 2009-03-08 04:32 - 02006016 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll 2014-02-24 12:45 - 2009-03-08 04:32 - 00630272 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll 2014-02-24 12:45 - 2009-03-08 04:31 - 00055296 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeedsbs.dll 2014-02-24 12:45 - 2002-08-29 13:00 - 06022144 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2014-02-24 12:45 - 2002-08-29 13:00 - 01469440 ____N (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl 2014-02-24 12:45 - 2002-08-29 13:00 - 01216000 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll 2014-02-24 12:45 - 2002-08-29 13:00 - 00920064 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll 2014-02-24 12:45 - 2002-08-29 13:00 - 00611840 ____N (Microsoft Corporation) C:\WINDOWS\system32\mstime.dll 2014-02-24 12:45 - 2002-08-29 13:00 - 00206848 ____N (Microsoft Corporation) C:\WINDOWS\system32\occache.dll 2014-02-24 12:45 - 2002-08-29 13:00 - 00184320 ____N (Microsoft Corporation) C:\WINDOWS\system32\iepeers.dll 2014-02-24 12:45 - 2002-08-29 13:00 - 00105984 _____ (Microsoft Corporation) C:\WINDOWS\system32\url.dll 2014-02-24 12:45 - 2002-08-29 13:00 - 00067072 ____N (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll 2014-02-24 12:45 - 2002-08-29 13:00 - 00043520 ____N (Microsoft Corporation) C:\WINDOWS\system32\licmgr10.dll 2014-02-24 12:45 - 2002-08-29 13:00 - 00025600 ____N (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll 2014-02-24 12:44 - 2009-03-08 14:09 - 00387584 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\iedkcs32.dll 2014-02-24 12:44 - 2009-03-08 04:33 - 00018944 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\corpol.dll 2014-02-24 12:44 - 2002-08-29 13:00 - 00387584 ____N (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll 2014-02-24 12:44 - 2002-08-29 13:00 - 00018944 ____N (Microsoft Corporation) C:\WINDOWS\system32\corpol.dll 2014-02-24 11:54 - 2004-08-04 08:42 - 00385024 ____N (Microsoft Corporation) C:\WINDOWS\system32\html.iec 2014-02-24 08:33 - 2014-02-24 08:33 - 00086016 _____ () C:\WINDOWS\Minidump\Mini022414-01.dmp 2014-02-24 08:23 - 2014-02-24 08:23 - 00000000 ____D () C:\Dokumente und Einstellungen\feuer\Lokale Einstellungen\Anwendungsdaten\Deployment 2014-02-24 08:17 - 2014-02-01 16:38 - 00000132 _____ () C:\Dokumente und Einstellungen\feuer\Desktop\Abschalten in 1,5 Std.cmd 2014-02-23 17:16 - 2014-02-23 17:16 - 00002119 _____ () C:\Dokumente und Einstellungen\feuer\Desktop\Siedler 4 starten.lnk 2014-02-23 16:51 - 2014-02-23 16:51 - 00002095 _____ () C:\Dokumente und Einstellungen\Gast\Desktop\Die Siedler 4 Starten.lnk 2014-02-23 16:46 - 2014-02-23 16:46 - 00001707 _____ () C:\Dokumente und Einstellungen\feuer\Desktop\Ubi Soft Product Registration.lnk 2014-02-23 16:46 - 2014-02-23 16:46 - 00000000 ____D () C:\Programme\Ubi Soft 2014-02-23 16:45 - 2014-02-23 16:45 - 00000000 ____D () C:\Dokumente und Einstellungen\feuer\Startmenü\Programme\Blue Byte 2014-02-23 16:45 - 2011-05-01 01:24 - 00000000 ____D () C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Blue Byte 2014-02-23 16:30 - 2011-04-30 23:51 - 00000000 ___SD () C:\Dokumente und Einstellungen\All Users\Dokumente\Virtual CDs 2014-02-23 16:25 - 2014-02-23 16:25 - 00000372 _____ () C:\Dokumente und Einstellungen\Gast\Eigene Dateien\spider.sav 2014-02-23 16:25 - 2014-02-23 16:25 - 00000000 ____D () C:\Dokumente und Einstellungen\Gast\Eigene Dateien\Virtual CD v9 2014-02-23 02:21 - 2011-04-29 04:16 - 00000000 ____D () C:\Programme\Outlook Express 2014-02-22 09:39 - 2014-02-22 09:39 - 00000000 ____D () C:\Dokumente und Einstellungen\Gast\Lokale Einstellungen\Anwendungsdaten\Apple Computer 2014-02-22 07:21 - 2014-02-22 07:21 - 00000000 __SHD () C:\Dokumente und Einstellungen\Gast\IECompatCache 2014-02-22 07:21 - 2014-02-18 11:03 - 00000000 ____D () C:\Dokumente und Einstellungen\Gast 2014-02-22 07:20 - 2014-02-22 07:20 - 00000000 __SHD () C:\Dokumente und Einstellungen\Gast\PrivacIE 2014-02-21 00:17 - 2012-11-02 22:18 - 00000000 ____D () C:\Dokumente und Einstellungen\feuer\Lokale Einstellungen\Anwendungsdaten\Adobe 2014-02-20 20:49 - 2014-03-14 16:23 - 00877480 _____ (Oracle Corporation) C:\WINDOWS\system32\npdeployJava1.dll 2014-02-20 20:49 - 2014-03-14 16:23 - 00800168 _____ (Oracle Corporation) C:\WINDOWS\system32\deployJava1.dll 2014-02-20 20:49 - 2013-12-18 21:04 - 00264616 _____ (Oracle Corporation) C:\WINDOWS\system32\javaws.exe 2014-02-20 20:49 - 2012-09-24 14:23 - 00175016 _____ (Oracle Corporation) C:\WINDOWS\system32\javaw.exe 2014-02-20 20:49 - 2012-09-24 14:23 - 00174504 _____ (Oracle Corporation) C:\WINDOWS\system32\java.exe 2014-02-20 20:49 - 2012-06-29 20:05 - 00145408 _____ (Oracle Corporation) C:\WINDOWS\system32\javacpl.cpl 2014-02-20 17:14 - 2014-02-20 17:14 - 00000000 ____D () C:\Dokumente und Einstellungen\Gast\Anwendungsdaten\Windows Search 2014-02-20 17:09 - 2014-02-20 17:09 - 00000000 __SHD () C:\Dokumente und Einstellungen\Gast\IETldCache 2014-02-20 15:47 - 2014-02-20 15:47 - 00000739 _____ () C:\Dokumente und Einstellungen\feuer\Desktop\Revo Uninstaller.lnk 2014-02-20 08:45 - 2014-02-20 08:45 - 00000000 ____D () C:\Dokumente und Einstellungen\NetworkService\Lokale Einstellungen\Anwendungsdaten\Apple 2014-02-19 09:11 - 2014-02-17 12:32 - 00000000 ____D () C:\WINDOWS\455F074C814E4520B69B5584BD90400C.TMP 2014-02-19 09:10 - 2014-02-19 09:10 - 00000000 ____D () C:\Dokumente und Einstellungen\feuer\Anwendungsdaten\Apple Computer 2014-02-19 02:13 - 2014-02-19 02:13 - 00000000 ____D () C:\Dokumente und Einstellungen\Gast\Lokale Einstellungen\Anwendungsdaten\Adobe 2014-02-19 02:13 - 2014-02-18 11:10 - 00000000 ____D () C:\Dokumente und Einstellungen\Gast\Anwendungsdaten\Adobe 2014-02-19 02:04 - 2014-02-19 02:04 - 00000000 ____D () C:\Dokumente und Einstellungen\Gast\Lokale Einstellungen\Anwendungsdaten\Apple 2014-02-19 02:00 - 2014-02-19 02:00 - 00000000 ____D () C:\Dokumente und Einstellungen\Gast\Anwendungsdaten\Apple Computer ==================== Bamital & volsnap Check ================= C:\WINDOWS\explorer.exe [2002-08-29 13:00] - [2008-04-14 03:22] - 1036800 ____A (Microsoft Corporation) 418045a93cd87a352098ab7dabe1b53e C:\WINDOWS\system32\winlogon.exe [2002-08-29 13:00] - [2008-04-14 03:23] - 0513024 ____A (Microsoft Corporation) f09a527b422e25c478e38caa0e44417a C:\WINDOWS\system32\svchost.exe [2002-08-29 13:00] - [2008-04-14 03:23] - 0014336 ____A (Microsoft Corporation) 4fbc75b74479c7a6f829e0ca19df3366 C:\WINDOWS\system32\services.exe [2002-08-29 13:00] - [2009-02-09 12:21] - 0111104 ____A (Microsoft Corporation) a3edbe9053889fb24ab22492472b39dc C:\WINDOWS\system32\User32.dll [2002-08-29 13:00] - [2008-04-14 03:22] - 0580096 ____A (Microsoft Corporation) b0050cc5340e3a0760dd8b417ff7aebd C:\WINDOWS\system32\userinit.exe [2002-08-29 13:00] - [2008-04-14 03:23] - 0026624 ____A (Microsoft Corporation) 788f95312e26389d596c0fa55834e106 C:\WINDOWS\system32\rpcss.dll [2002-08-29 13:00] - [2009-02-09 11:51] - 0401408 ____A (Microsoft Corporation) 3127afbf2c1ed0ab14a1bbb7aaecb85b ATTENTION ======> If the system is having audio adware rpcss.dll is patched. Google the MD5, if the MD5 is unique the file is infected. C:\WINDOWS\system32\Drivers\volsnap.sys [2002-08-29 13:00] - [2008-04-14 02:52] - 0053760 ____A (Microsoft Corporation) a5a712f4e880874a477af790b5186e1d ==================== End Of Log ============================ |
22.03.2014, 10:27 | #58 |
/// the machine /// TB-Ausbilder | Windows XP: Browser verursacht Werbung Jetzt bitte nochmal LSPFix was wir schon vorher benutzt haben. Dann Windows-Taste + R, schreibe netsh winsock reset und drücke Enter. Frisches FRST Log bitte.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
22.03.2014, 13:38 | #59 |
| Windows XP: Browser verursacht Werbung alles gemacht und hier den FRST.txt: FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 09-03-2014 Ran by feuer (administrator) on FEUER-4072ISAQU on 22-03-2014 13:35:52 Running from C:\Dokumente und Einstellungen\feuer\Eigene Dateien\Downloads Microsoft Windows XP Home Edition Service Pack 3 (X86) OS Language: German Standard Internet Explorer Version 8 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (Microsoft Corporation.) C:\Programme\Microsoft\BingBar\BBSvc.EXE (Microsoft Corporation) C:\Programme\Microsoft\BingBar\SeaPort.EXE (Symantec Corporation) C:\Programme\Norton Internet Security CBE\Engine\21.1.0.18\NIS.exe (NVIDIA Corporation) C:\WINDOWS\system32\nvsvc32.exe (NVIDIA Corporation) C:\Programme\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe (Google Inc.) C:\Programme\Google\Update\1.3.22.5\GoogleCrashHandler.exe (Symantec Corporation) C:\Programme\Norton Internet Security CBE\Engine\21.1.0.18\NIS.exe (Secunia) C:\Programme\Secunia\PSI\PSIA.exe (Creative Technology Ltd) C:\Programme\Creative\Surround Mixer\CTSysVol.exe (NVIDIA Corporation) C:\Programme\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe () C:\Programme\DivX\DivX Update\DivXUpdate.exe (Realtek Semiconductor Corp.) C:\WINDOWS\RTHDCPL.EXE () C:\WINDOWS\system32\rmctrl.exe (Secunia) C:\Programme\Secunia\PSI\psi_tray.exe (Microsoft Corporation) C:\WINDOWS\System32\tcpsvcs.exe (H+H Software GmbH) C:\Programme\Virtual CD v9\System\VC9SecS.exe (Secunia) C:\Programme\Secunia\PSI\sua.exe (Microsoft Corporation) C:\WINDOWS\system32\wscntfy.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [Adobe ARM] - C:\Programme\Gemeinsame Dateien\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated) HKLM\...\Run: [CTSysVol] - C:\Programme\Creative\Surround Mixer\CTSysVol.exe [57344 2005-10-31] (Creative Technology Ltd) HKLM\...\Run: [Nvtmru] - C:\Programme\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe [1012000 2013-05-16] (NVIDIA Corporation) HKLM\...\Run: [SSBkgdUpdate] - C:\Programme\Gemeinsame Dateien\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe [210472 2006-10-25] (Nuance Communications, Inc.) HKLM\...\Run: [DelReg] - C:\Programme\MSI\DualCoreCenter\DelReg.exe [196608 2008-05-13] () HKLM\...\Run: [DivXUpdate] - C:\Programme\DivX\DivX Update\DivXUpdate.exe [1861968 2013-11-15] () HKLM\...\Run: [RTHDCPL] - C:\WINDOWS\RTHDCPL.EXE [20145368 2014-02-15] (Realtek Semiconductor Corp.) HKLM\...\Run: [RemoteControl] - C:\WINDOWS\system32\rmctrl.exe [32768 2000-10-16] () HKLM\...\Run: [APSDaemon] - C:\Programme\Gemeinsame Dateien\Apple\Apple Application Support\APSDaemon.exe [59720 2013-04-21] (Apple Inc.) HKLM\...\Run: [NvCplDaemon] - C:\WINDOWS\system32\NvCpl.dll [15677728 2013-06-21] (NVIDIA Corporation) HKLM\...\Run: [NvMediaCenter] - C:\WINDOWS\system32\NvMcTray.dll [223008 2013-06-21] (NVIDIA Corporation) HKU\S-1-5-21-1085031214-790525478-725345543-1004\...\Run: [SetDefaultMIDI] - C:\WINDOWS\MIDIDef.exe [49152 2002-12-03] (Creative Technology Ltd) HKU\S-1-5-21-1085031214-790525478-725345543-1004\...\Policies\Explorer: [NoRecentDocsHistory] 1 Startup: C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Autostart\Secunia PSI Tray.lnk ShortcutTarget: Secunia PSI Tray.lnk -> C:\Programme\Secunia\PSI\psi_tray.exe (Secunia) Startup: C:\Dokumente und Einstellungen\feuer\Startmenü\Programme\Autostart\ubisoft register.lnk ShortcutTarget: ubisoft register.lnk -> C:\Programme\Ubi Soft\Register\schedule.exe (Ubi Soft) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de HKCU\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = hxxp://www.bing.com/ HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.msn.com/?pc=BDT1&ocid=BDT1DHP HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://de.msn.com/ HKLM\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = hxxp://www.bing.com/ HKLM\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://www.bing.com/ SearchScopes: HKCU - {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = hxxp://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}&ie={inputEncoding}&oe={outputEncoding}&startIndex={startIndex?}&startPage={startPage} BHO: No Name - {5C255C8A-E604-49b4-9D64-90988571CECB} - No File BHO: Norton Identity Protection - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Programme\Norton Internet Security CBE\Engine\21.1.0.18\coIEPlg.dll (Symantec Corporation) BHO: Norton Vulnerability Protection - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Programme\Norton Internet Security CBE\Engine\21.1.0.18\IPS\IPSBHO.DLL (Symantec Corporation) BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Programme\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO: Windows Live Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Programme\Gemeinsame Dateien\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation) BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Programme\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) Toolbar: HKLM - Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Programme\Norton Internet Security CBE\Engine\21.1.0.18\coIEPlg.dll (Symantec Corporation) Toolbar: HKCU - &Adresse - {01E04581-4EEE-11D0-BFE9-00AA005B4383} - C:\WINDOWS\System32\browseui.dll (Microsoft Corporation) Toolbar: HKCU - &Links - {0E5CBF21-D15F-11D0-8301-00AA005B4383} - C:\WINDOWS\system32\SHELL32.dll (Microsoft Corporation) Toolbar: HKCU - No Name - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No File DPF: {17492023-C23A-453E-A040-C7C580BBF700} hxxp://go.microsoft.com/fwlink/?linkid=39204 DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} hxxp://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1304073907390 DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} hxxp://update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1379302733234 DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} hxxp://java.sun.com/update/1.7.0/jinstall-1_7_0_51-windows-i586.cab DPF: {CAFEEFAC-0017-0000-0051-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.7.0/jinstall-1_7_0_51-windows-i586.cab DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.7.0/jinstall-1_7_0_51-windows-i586.cab Handler: http\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\System\OLE DB\msdaipp.dll (Microsoft Corporation) Handler: http\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\System\OLE DB\msdaipp.dll (Microsoft Corporation) Handler: https\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\System\OLE DB\msdaipp.dll (Microsoft Corporation) Handler: https\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\System\OLE DB\msdaipp.dll (Microsoft Corporation) Handler: ipp\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\System\OLE DB\msdaipp.dll (Microsoft Corporation) Handler: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\Programme\Windows Live\Messenger\msgrapp.14.0.8117.0416.dll (Microsoft Corporation) Handler: msdaipp\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\System\OLE DB\msdaipp.dll (Microsoft Corporation) Handler: msdaipp\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Programme\Gemeinsame Dateien\System\OLE DB\msdaipp.dll (Microsoft Corporation) Handler: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\Programme\Windows Live\Messenger\msgrapp.14.0.8117.0416.dll (Microsoft Corporation) Handler: wlmailhtml - {03C514A3-1EFB-4856-9F99-10D7BE1653C0} - C:\Programme\Windows Live\Mail\mailcomm.dll (Microsoft Corporation) ShellExecuteHooks: Windows Desktop Search Namespace Manager - {56F9679E-7826-4C84-81F3-532071A8BCC5} - C:\Programme\Windows Desktop Search\MsnlNamespaceMgr.dll [304128 2009-05-24] (Microsoft Corporation) Winsock: Catalog5 04 C:\WINDOWS\system32\pnrpnsp.dll [58880] (Microsoft Corporation) Winsock: Catalog5 05 C:\WINDOWS\system32\pnrpnsp.dll [58880] (Microsoft Corporation) Winsock: Catalog9 01 C:\WINDOWS\system32\PCProtect.dll [293984] (Objectify Media Inc) Winsock: Catalog9 02 C:\WINDOWS\system32\PCProtect.dll [293984] (Objectify Media Inc) Winsock: Catalog9 36 C:\WINDOWS\system32\PCProtect.dll [293984] (Objectify Media Inc) Tcpip\Parameters: [DhcpNameServer] 192.168.0.1 FireFox: ======== FF ProfilePath: C:\Dokumente und Einstellungen\feuer\Anwendungsdaten\Mozilla\Firefox\Profiles\qhdllhf9.default-1394709733765 FF Plugin: @adobe.com/FlashPlayer - C:\WINDOWS\system32\Macromed\Flash\NPSWF32_12_0_0_77.dll () FF Plugin: @adobe.com/ShockwavePlayer - C:\WINDOWS\system32\Adobe\Director\np32dsw_1210150.dll (Adobe Systems, Inc.) FF Plugin: @divx.com/DivX VOD Helper,version=1.0.0 - C:\Programme\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.) FF Plugin: @divx.com/DivX Web Player Plug-In,version=1.0.0 - C:\Programme\DivX\DivX Web Player\npdivx32.dll (DivX, LLC) FF Plugin: @java.com/DTPlugin,version=10.51.2 - C:\WINDOWS\system32\npdeployJava1.dll (Oracle Corporation) FF Plugin: @java.com/JavaPlugin - C:\Programme\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=10.51.2 - C:\Programme\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - C:\Programme\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation) FF Plugin: @microsoft.com/OfficeLive,version=1.5 - C:\Programme\Microsoft\Office Live\npOLW.dll (Microsoft Corp.) FF Plugin: @microsoft.com/WLPG,version=14.0.8117.0416 - C:\Programme\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin: @microsoft.com/WPF,version=3.5 - C:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation) FF Plugin: @nokia.com/EnablerPlugin - C:\Programme\Nokia\Nokia Suite\npNokiaSuiteEnabler.dll ( ) FF Plugin: @tools.google.com/Google Update;version=3 - C:\Programme\Google\Update\1.3.22.5\npGoogleUpdate3.dll (Google Inc.) FF Plugin: @tools.google.com/Google Update;version=9 - C:\Programme\Google\Update\1.3.22.5\npGoogleUpdate3.dll (Google Inc.) FF Plugin: Adobe Reader - C:\Programme\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF SearchPlugin: C:\Programme\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Programme\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Programme\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Programme\mozilla firefox\browser\searchplugins\yahoo-de.xml FF Extension: Greasemonkey - C:\Dokumente und Einstellungen\feuer\Anwendungsdaten\Mozilla\Firefox\Profiles\qhdllhf9.default-1394709733765\Extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}.xpi [2014-03-14] FF HKLM\...\Firefox\Extensions: [{BBDA0591-3099-440a-AA10-41764D9DB4DB}] - C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_21.0.0.100\IPSFF FF Extension: Norton Vulnerability Protection - C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_21.0.0.100\IPSFF [2013-11-29] FF HKLM\...\Firefox\Extensions: [{2D3F3651-74B9-4795-BDEC-6DA2F431CB62}] - C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_21.0.0.100\coFFPlgn\ FF Extension: Norton Toolbar - C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_21.0.0.100\coFFPlgn\ [] Chrome: ======= CHR Extension: (Google Docs) - C:\Dokumente und Einstellungen\feuer\Lokale Einstellungen\Anwendungsdaten\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-03-07] CHR Extension: (Google Drive) - C:\Dokumente und Einstellungen\feuer\Lokale Einstellungen\Anwendungsdaten\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-03-07] CHR Extension: (YouTube) - C:\Dokumente und Einstellungen\feuer\Lokale Einstellungen\Anwendungsdaten\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-03-07] CHR Extension: (Google-Suche) - C:\Dokumente und Einstellungen\feuer\Lokale Einstellungen\Anwendungsdaten\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-03-07] CHR Extension: (Norton Identity Protection) - C:\Dokumente und Einstellungen\feuer\Lokale Einstellungen\Anwendungsdaten\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk [2014-03-07] CHR Extension: (Google Wallet) - C:\Dokumente und Einstellungen\feuer\Lokale Einstellungen\Anwendungsdaten\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-03-07] CHR Extension: (Google Mail) - C:\Dokumente und Einstellungen\feuer\Lokale Einstellungen\Anwendungsdaten\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-03-07] CHR HKLM\...\Chrome\Extension: [mkfokfffehpeedafpekjeddnmnjhmcmk] - C:\Programme\Norton Internet Security CBE\Engine\21.1.0.18\Exts\Chrome.crx [2013-11-29] ========================== Services (Whitelisted) ================= R2 6to4; C:\WINDOWS\System32\6to4svc.dll [100864 2010-02-12] (Microsoft Corporation) R2 BBSvc; C:\Programme\Microsoft\BingBar\BBSvc.EXE [196176 2011-10-21] (Microsoft Corporation.) R2 BBUpdate; C:\Programme\Microsoft\BingBar\SeaPort.EXE [249648 2011-10-13] (Microsoft Corporation) S3 fsssvc; C:\Programme\Windows Live\Family Safety\fsssvc.exe [704872 2010-04-28] (Microsoft Corporation) S2 gupdate; C:\Programme\Google\Update\GoogleUpdate.exe [116648 2014-03-07] (Google Inc.) S3 gupdatem; C:\Programme\Google\Update\GoogleUpdate.exe [116648 2014-03-07] (Google Inc.) R2 Iprip; C:\WINDOWS\System32\iprip.dll [36864 2008-04-14] (Microsoft Corporation) S3 MozillaMaintenance; C:\Programme\Mozilla Maintenance Service\maintenanceservice.exe [118896 2014-02-13] (Mozilla Foundation) R2 NIS; C:\Programme\Norton Internet Security CBE\Engine\21.1.0.18\NIS.exe [275696 2013-10-08] (Symantec Corporation) R2 nvUpdatusService; C:\Programme\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [1826592 2013-05-16] (NVIDIA Corporation) S3 p2pgasvc; C:\WINDOWS\system32\p2pgasvc.dll [105472 2008-04-14] (Microsoft Corporation) S3 SandraAgentSrv; C:\Programme\SiSoftware\SiSoftware Sandra Lite 2011.SP2\RpcAgentSrv.exe [93848 2009-08-10] (SiSoftware) R2 Secunia PSI Agent; C:\Programme\Secunia\PSI\PSIA.exe [1229528 2013-12-06] (Secunia) R2 Secunia Update Agent; C:\Programme\Secunia\PSI\sua.exe [662232 2013-12-06] (Secunia) S3 ServiceLayer; C:\Programme\PC Connectivity Solution\ServiceLayer.exe [737616 2013-04-18] (Nokia) R2 VC9SecS; C:\Programme\Virtual CD v9\System\VC9SecS.exe [132424 2009-10-01] (H+H Software GmbH) S3 WMPNetworkSvc; C:\Programme\Windows Media Player\WMPNetwk.exe [920576 2006-11-03] (Microsoft Corporation) S3 x10nets; C:\Programme\Common Files\X10\Common\X10nets.exe [20480 2001-11-12] (X10) ==================== Drivers (Whitelisted) ==================== S3 3xHybrid; C:\WINDOWS\System32\DRIVERS\3xHybrid.sys [1315936 2011-04-30] (NXP Semiconductors Germany GmbH) R2 ACEDRV07; C:\WINDOWS\system32\drivers\ACEDRV07.sys [101376 2013-02-05] (Protect Software GmbH) S3 Ambfilt; C:\WINDOWS\System32\drivers\Ambfilt.sys [1691480 2014-02-15] (Creative) R1 BHDrvx86; C:\Programme\Norton Internet Security CBE\NortonData\21.0.0.100\Definitions\BASHDefs\20140214.001\BHDrvx86.sys [1098968 2013-12-18] (Symantec Corporation) S3 BrScnUsb; C:\WINDOWS\System32\DRIVERS\BrScnUsb.sys [15295 2004-10-15] (Brother Industries Ltd.) S3 CCDECODE; C:\WINDOWS\System32\DRIVERS\CCDECODE.sys [17024 2008-04-13] (Microsoft Corporation) R1 ccSet_NIS; C:\WINDOWS\system32\drivers\NIS\1501000.012\ccSetx86.sys [127064 2013-09-26] (Symantec Corporation) R1 eeCtrl; C:\Programme\Gemeinsame Dateien\Symantec Shared\EENGINE\eeCtrl.sys [376920 2014-01-30] (Symantec Corporation) R3 EraserUtilRebootDrv; C:\Programme\Gemeinsame Dateien\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [108120 2013-11-29] (Symantec Corporation) R2 fssfltr; C:\WINDOWS\System32\DRIVERS\fssfltr_tdi.sys [54760 2010-04-28] (Microsoft Corporation) R0 giveio; C:\WINDOWS\System32\giveio.sys [5248 1996-04-03] () R3 HCWBT8xx; C:\WINDOWS\System32\drivers\HCWBT8XX.sys [472644 2006-01-25] (Hauppauge Computer Works) S3 HdAudAddService; C:\WINDOWS\System32\drivers\AtiHdAud.sys [84992 2006-12-28] (ATI Research Inc.) S3 HH9Help.sys; C:\WINDOWS\system32\drivers\HH9Help.sys [11392 2006-09-20] (H+H Software GmbH) R0 hotcore3; C:\WINDOWS\System32\DRIVERS\hotcore3.sys [58464 2012-05-18] (Paragon Software Group) R3 IDSxpx86; C:\Programme\Norton Internet Security CBE\NortonData\21.0.0.100\Definitions\IPSDefs\20140321.001\IDSxpx86.sys [383128 2014-03-06] (Symantec Corporation) S3 Monfilt; C:\WINDOWS\System32\drivers\Monfilt.sys [1395800 2014-02-15] (Creative Technology Ltd.) S3 MPE; C:\WINDOWS\System32\DRIVERS\MPE.sys [15232 2008-04-13] (Microsoft Corporation) S3 MTK; C:\WINDOWS\System32\Drivers\fide.sys [15271 2014-03-10] (MediaTek Corporation) R3 NAVENG; C:\Programme\Norton Internet Security CBE\NortonData\21.0.0.100\Definitions\VirusDefs\20140321.023\NAVENG.SYS [93272 2014-03-18] (Symantec Corporation) R3 NAVEX15; C:\Programme\Norton Internet Security CBE\NortonData\21.0.0.100\Definitions\VirusDefs\20140321.023\NAVEX15.SYS [1612376 2014-03-18] (Symantec Corporation) S3 NdisIP; C:\WINDOWS\System32\DRIVERS\NdisIP.sys [10880 2008-04-13] (Microsoft Corporation) S3 nm; C:\WINDOWS\System32\DRIVERS\NMnt.sys [40320 2008-04-13] (Microsoft Corporation) R3 NVHDA; C:\WINDOWS\System32\drivers\nvhda32.sys [128672 2014-02-15] (NVIDIA Corporation) R2 NwlnkIpx; C:\WINDOWS\System32\DRIVERS\nwlnkipx.sys [88320 2008-04-13] (Microsoft Corporation) R2 NwlnkNb; C:\WINDOWS\System32\DRIVERS\nwlnknb.sys [63232 2002-08-29] (Microsoft Corporation) R2 NwlnkSpx; C:\WINDOWS\System32\DRIVERS\nwlnkspx.sys [55936 2002-08-29] (Microsoft Corporation) R3 P17; C:\WINDOWS\System32\drivers\P17.sys [1135104 2007-12-28] (Creative Technology Ltd.) R1 pcwatch; C:\WINDOWS\system32\Drivers\pcwatch.sys [19840 2014-01-08] () R3 pfc; C:\WINDOWS\System32\drivers\pfc.sys [13780 2002-04-19] (Padus, Inc.) R3 PSI; C:\WINDOWS\System32\DRIVERS\psi_mf_x86.sys [16024 2013-12-06] (Secunia) S3 RTCore32; C:\Programme\EVGA Precision\RTCore32.sys [4608 2005-05-25] () S3 SANDRA; C:\Programme\SiSoftware\SiSoftware Sandra Lite 2011.SP2\WNt500x86\Sandra.sys [23112 2009-08-07] (SiSoftware) R0 speedfan; C:\WINDOWS\System32\speedfan.sys [24184 2012-12-29] (Almico Software) R3 SRTSP; C:\WINDOWS\System32\Drivers\NIS\1501000.012\SRTSP.SYS [651352 2013-09-27] (Symantec Corporation) R1 SRTSPX; C:\WINDOWS\system32\drivers\NIS\1501000.012\SRTSPX.SYS [32344 2013-07-31] (Symantec Corporation) R0 SymDS; C:\WINDOWS\System32\drivers\NIS\1501000.012\SYMDS.SYS [367704 2013-08-01] (Symantec Corporation) R0 SymEFA; C:\WINDOWS\System32\drivers\NIS\1501000.012\SYMEFA.SYS [935512 2013-09-27] (Symantec Corporation) R3 SymEvent; C:\WINDOWS\system32\Drivers\SYMEVENT.SYS [142936 2013-11-29] (Symantec Corporation) R1 SymIRON; C:\WINDOWS\system32\drivers\NIS\1501000.012\Ironx86.SYS [206936 2013-07-31] (Symantec Corporation) R1 SYMTDI; C:\WINDOWS\System32\Drivers\NIS\1501000.012\SYMTDI.SYS [421592 2013-09-26] (Symantec Corporation) R1 Tcpip6; C:\WINDOWS\System32\DRIVERS\tcpip6.sys [226880 2010-02-11] (Microsoft Corporation) S3 X10UIF; C:\WINDOWS\System32\Drivers\x10uif.sys [10761 2001-11-14] (X10 Wireless Technology, Inc.) S3 catchme; \??\C:\ComboFix\catchme.sys [X] S4 IntelIde; No ImagePath U5 ScsiPort; C:\WINDOWS\system32\drivers\scsiport.sys [96384 2008-04-13] (Microsoft Corporation) S0 tclondrv; system32\DRIVERS\tclondrv.sys [X] U3 TlntSvr; R5 vdrv9000; C:\Windows\System32\Drivers\vdrv9000.sys [113688 2009-03-17] (H+H Software GmbH) ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-03-21 14:48 - 2014-03-21 14:45 - 00065536 ____H () C:\WINDOWS\Minidump\Mini032114-01.dmp 2014-03-21 03:35 - 2014-03-21 03:35 - 00141731 _____ () C:\ComboFix.txt 2014-03-21 03:29 - 2014-03-21 03:29 - 00008192 ____H () C:\WINDOWS\system32\config\SECURITY.tmp.LOG 2014-03-21 03:29 - 2014-03-21 03:29 - 00000000 ____H () C:\WINDOWS\system32\config\system.tmp.LOG 2014-03-21 03:29 - 2014-03-21 03:29 - 00000000 ____H () C:\WINDOWS\system32\config\software.tmp.LOG 2014-03-21 03:29 - 2014-03-21 03:29 - 00000000 ____H () C:\WINDOWS\system32\config\SAM.tmp.LOG 2014-03-21 03:29 - 2014-03-21 03:29 - 00000000 ____H () C:\WINDOWS\system32\config\default.tmp.LOG 2014-03-21 03:11 - 2014-03-21 03:11 - 00000000 _RSHD () C:\cmdcons 2014-03-20 16:49 - 2014-03-20 16:49 - 05190052 ____R (Swearware) C:\Dokumente und Einstellungen\feuer\Desktop\ComboFix.exe 2014-03-20 00:46 - 2014-03-21 14:53 - 00000923 _____ () C:\Dokumente und Einstellungen\feuer\Desktop\Bilder trojaner.txt 2014-03-20 00:38 - 2014-03-20 00:38 - 00086016 _____ () C:\WINDOWS\Minidump\Mini032014-01.dmp 2014-03-19 01:39 - 2014-03-19 01:03 - 00024064 _____ () C:\WINDOWS\zoek-delete.exe 2014-03-19 01:09 - 2014-03-15 18:19 - 00103562 _____ () C:\zoek-results2014-03-15-171943.log 2014-03-17 18:38 - 2014-03-17 18:37 - 00090224 ____H () C:\WINDOWS\Minidump\Mini031714-01.dmp 2014-03-15 17:39 - 2014-03-15 17:26 - 00012186 _____ () C:\zoek-results2014-03-15-162648.log 2014-03-15 17:25 - 2014-03-19 01:41 - 00090755 _____ () C:\zoek-results.log 2014-03-15 17:09 - 2014-03-15 18:09 - 00000000 ____D () C:\zoek_backup 2014-03-14 16:23 - 2014-02-20 20:49 - 00877480 _____ (Oracle Corporation) C:\WINDOWS\system32\npdeployJava1.dll 2014-03-14 16:23 - 2014-02-20 20:49 - 00800168 _____ (Oracle Corporation) C:\WINDOWS\system32\deployJava1.dll 2014-03-14 14:14 - 2014-03-14 14:14 - 00000000 ____D () C:\Dokumente und Einstellungen\feuer\Anwendungsdaten\1H1Q 2014-03-14 14:13 - 2014-03-15 19:13 - 00000000 ____D () C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Minecraft 2014-03-13 11:49 - 2014-03-15 16:07 - 00000430 _____ () C:\WINDOWS\nsw.log 2014-03-13 05:02 - 2014-03-13 05:02 - 00127935 _____ () C:\WINDOWS\KB2925418-IE8.log 2014-03-13 05:02 - 2014-03-13 05:02 - 00000000 __HDC () C:\WINDOWS\$NtUninstallKB2930275$ 2014-03-13 05:02 - 2014-03-13 05:02 - 00000000 __HDC () C:\WINDOWS\$NtUninstallKB2929961$ 2014-03-12 09:20 - 2014-03-13 05:02 - 00127647 _____ () C:\WINDOWS\KB2930275.log 2014-03-12 09:20 - 2014-03-13 05:02 - 00124351 _____ () C:\WINDOWS\KB2929961.log 2014-03-07 22:52 - 2014-03-07 22:52 - 00000000 __HDC () C:\WINDOWS\$NtUninstallKB961503$ 2014-03-07 22:51 - 2014-03-07 22:52 - 00012384 _____ () C:\WINDOWS\KB961503.log 2014-03-07 22:47 - 2014-03-07 22:47 - 00000000 ____D () C:\Dokumente und Einstellungen\feuer\Tracing 2014-03-07 22:46 - 2014-03-07 22:46 - 00000000 ____D () C:\Programme\Microsoft Sync Framework 2014-03-07 22:46 - 2010-04-28 07:44 - 00054760 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fssfltr_tdi.sys 2014-03-07 22:44 - 2014-03-07 22:44 - 00030134 _____ () C:\WINDOWS\DirectX.log 2014-03-07 22:44 - 2014-03-07 22:44 - 00000663 _____ () C:\WINDOWS\KB954708.log 2014-03-07 22:44 - 2014-03-07 22:44 - 00000000 ____D () C:\Programme\Microsoft SQL Server Compact Edition 2014-03-07 22:43 - 2014-03-07 22:43 - 00000000 ____D () C:\Programme\Windows Live SkyDrive 2014-03-07 22:42 - 2014-03-15 17:35 - 00000000 ____D () C:\Programme\Windows Live 2014-03-07 22:42 - 2014-03-07 22:47 - 00000000 ____D () C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Windows Live 2014-03-07 22:37 - 2014-03-07 22:37 - 00000000 ____D () C:\Programme\Gemeinsame Dateien\Windows Live 2014-03-07 19:47 - 2014-03-07 19:47 - 00000000 __HDC () C:\WINDOWS\$NtUninstallKB2808679$ 2014-03-07 19:36 - 2014-03-07 19:37 - 00008073 _____ () C:\WINDOWS\KB2632503-IE8.log 2014-03-07 19:08 - 2014-03-07 19:47 - 00009421 _____ () C:\WINDOWS\KB2808679.log 2014-03-07 16:50 - 2014-03-07 16:50 - 00000000 ____D () C:\Programme\Microsoft.NET 2014-03-07 16:42 - 2014-03-22 13:19 - 00000222 _____ () C:\WINDOWS\Tasks\Ende des Supports für Microsoft Windows XP – Benachrichtigung – Anmeldung.job 2014-03-07 16:42 - 2014-03-08 15:40 - 00000216 _____ () C:\WINDOWS\Tasks\Ende des Supports für Microsoft Windows XP – Monatliche Benachrichtigung.job 2014-03-07 16:28 - 2014-03-07 16:28 - 00033096 _____ () C:\WINDOWS\KB2909210-IE8.log 2014-03-07 16:28 - 2014-03-07 16:28 - 00032988 _____ () C:\WINDOWS\KB2934207.log 2014-03-07 16:28 - 2014-03-07 16:28 - 00000000 __HDC () C:\WINDOWS\$NtUninstallKB2934207$ 2014-03-07 16:27 - 2014-03-13 05:01 - 00000000 ____D () C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Microsoft Silverlight 2014-03-07 16:26 - 2014-03-07 16:27 - 00008131 _____ () C:\WINDOWS\KB2510531-IE8.log 2014-03-07 16:26 - 2014-02-27 00:28 - 00013312 ____N (Microsoft Corporation) C:\WINDOWS\system32\xp_eos.exe 2014-03-07 16:26 - 2014-02-27 00:28 - 00013312 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\xp_eos.exe 2014-03-07 16:08 - 2014-03-07 16:09 - 00000000 __HDC () C:\WINDOWS\ie8 2014-03-07 15:51 - 2014-03-07 15:52 - 00005193 _____ () C:\WINDOWS\KB2909212.log 2014-03-07 15:51 - 2014-03-07 15:52 - 00004890 _____ () C:\WINDOWS\KB2909921.log 2014-03-07 15:50 - 2014-03-15 18:01 - 00001773 _____ () C:\Dokumente und Einstellungen\All Users\Desktop\Google Chrome.lnk 2014-03-07 15:50 - 2014-03-07 15:50 - 00000000 ____D () C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Google Chrome 2014-03-07 15:49 - 2014-03-22 13:19 - 00001084 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job 2014-03-07 15:49 - 2014-03-22 12:54 - 00001088 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job 2014-03-07 15:26 - 2014-03-07 16:11 - 00075941 _____ () C:\WINDOWS\KB2744842-IE8.log 2014-03-07 15:26 - 2014-03-07 16:11 - 00071682 _____ () C:\WINDOWS\KB2862772-IE8.log 2014-03-07 15:25 - 2014-03-07 16:11 - 00080750 _____ () C:\WINDOWS\KB2618444-IE8.log 2014-03-07 15:25 - 2014-03-07 16:10 - 00066566 _____ () C:\WINDOWS\KB2598845-IE8.log 2014-03-07 15:24 - 2014-03-07 16:17 - 00013740 _____ () C:\WINDOWS\spupdsvc.log 2014-03-07 15:24 - 2014-03-07 16:10 - 00088939 _____ () C:\WINDOWS\KB982381-IE8.log 2014-03-07 15:23 - 2014-03-13 11:34 - 00000000 ____D () C:\Programme\Microsoft Silverlight 2014-03-07 15:23 - 2014-03-07 16:09 - 00089234 _____ () C:\WINDOWS\ie8.log 2014-03-07 15:21 - 2014-03-07 16:12 - 00000000 ___HD () C:\WINDOWS\msdownld.tmp 2014-03-07 15:07 - 2014-03-07 16:15 - 00232253 _____ () C:\WINDOWS\ie8_main.log 2014-03-07 14:54 - 2014-03-13 05:02 - 00091977 _____ () C:\WINDOWS\updspapi.log 2014-03-07 14:53 - 2014-03-13 05:02 - 00154580 _____ () C:\WINDOWS\FaxSetup.log 2014-03-07 14:53 - 2014-03-13 05:02 - 00073900 _____ () C:\WINDOWS\ocgen.log 2014-03-07 14:53 - 2014-03-13 05:02 - 00058975 _____ () C:\WINDOWS\tsoc.log 2014-03-07 14:53 - 2014-03-13 05:02 - 00051198 _____ () C:\WINDOWS\comsetup.log 2014-03-07 14:53 - 2014-03-13 05:02 - 00031036 _____ () C:\WINDOWS\ntdtcsetup.log 2014-03-07 14:53 - 2014-03-13 05:02 - 00024288 _____ () C:\WINDOWS\iis6.log 2014-03-07 14:53 - 2014-03-13 05:02 - 00008550 _____ () C:\WINDOWS\ocmsn.log 2014-03-07 14:53 - 2014-03-13 05:02 - 00007725 _____ () C:\WINDOWS\msgsocm.log 2014-03-07 14:53 - 2014-03-13 05:02 - 00001374 _____ () C:\WINDOWS\imsins.log 2014-03-07 14:53 - 2014-03-13 05:02 - 00001374 _____ () C:\WINDOWS\imsins.BAK 2014-03-07 14:53 - 2014-03-07 15:33 - 00060421 _____ () C:\WINDOWS\ie8Uninst.log 2014-03-07 14:53 - 2014-03-07 14:53 - 00000000 _____ () C:\WINDOWS\setuperr.log 2014-03-07 14:53 - 2014-03-07 14:53 - 00000000 _____ () C:\WINDOWS\setupact.log 2014-03-07 14:42 - 2014-03-22 11:46 - 00000000 ____D () C:\Programme\Mozilla Firefox 2014-03-07 14:42 - 2014-03-07 14:44 - 00000000 ____D () C:\Dokumente und Einstellungen\feuer\Anwendungsdaten\Mozilla 2014-03-07 14:42 - 2014-03-07 14:42 - 00000706 _____ () C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Mozilla Firefox.lnk 2014-03-07 14:42 - 2014-03-07 14:42 - 00000700 _____ () C:\Dokumente und Einstellungen\All Users\Desktop\Mozilla Firefox.lnk 2014-03-07 14:17 - 2014-03-07 14:17 - 00045372 _____ () C:\Dokumente und Einstellungen\feuer\Desktop\bookmarks.html 2014-03-01 21:55 - 2014-03-01 21:55 - 00010752 _____ () C:\Dokumente und Einstellungen\feuer\Eigene Dateien\shake.xls 2014-03-01 02:59 - 2014-03-01 03:04 - 00000000 ____D () C:\Dokumente und Einstellungen\feuer\Anwendungsdaten\Dev-Cpp 2014-03-01 02:59 - 2014-03-01 02:59 - 00000000 ____D () C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Bloodshed Dev-C++ 2014-02-24 08:33 - 2014-02-24 08:33 - 00086016 _____ () C:\WINDOWS\Minidump\Mini022414-01.dmp 2014-02-24 08:23 - 2014-02-24 08:23 - 00000000 ____D () C:\Dokumente und Einstellungen\feuer\Lokale Einstellungen\Anwendungsdaten\Deployment 2014-02-23 17:16 - 2014-02-23 17:16 - 00002119 _____ () C:\Dokumente und Einstellungen\feuer\Desktop\Siedler 4 starten.lnk 2014-02-23 16:51 - 2014-02-23 16:51 - 00002095 _____ () C:\Dokumente und Einstellungen\Gast\Desktop\Die Siedler 4 Starten.lnk 2014-02-23 16:46 - 2014-03-15 16:07 - 00119345 _____ () C:\WINDOWS\setupapi.log 2014-02-23 16:46 - 2014-02-23 16:46 - 00001707 _____ () C:\Dokumente und Einstellungen\feuer\Desktop\Ubi Soft Product Registration.lnk 2014-02-23 16:46 - 2014-02-23 16:46 - 00000000 ____D () C:\Programme\Ubi Soft 2014-02-23 16:46 - 2002-06-17 06:25 - 00026088 ____R (Microsoft Corporation) C:\WINDOWS\system32\xmlinst.exe 2014-02-23 16:46 - 2002-04-24 11:43 - 00035840 ____R () C:\WINDOWS\system32\comdlg32.oca 2014-02-23 16:46 - 2002-04-09 16:23 - 00029184 ____R () C:\WINDOWS\system32\MSINET.oca 2014-02-23 16:46 - 2000-03-17 07:21 - 00069632 ____R () C:\WINDOWS\system32\xmltok.dll 2014-02-23 16:46 - 2000-03-17 07:21 - 00036864 ____R () C:\WINDOWS\system32\xmlparse.dll 2014-02-23 16:46 - 1998-06-17 23:00 - 00089360 ____R (Microsoft Corporation) C:\WINDOWS\system32\VB5DB.DLL 2014-02-23 16:45 - 2014-02-23 16:45 - 00000000 ____D () C:\Dokumente und Einstellungen\feuer\Startmenü\Programme\Blue Byte 2014-02-23 16:25 - 2014-02-23 16:25 - 00000372 _____ () C:\Dokumente und Einstellungen\Gast\Eigene Dateien\spider.sav 2014-02-23 16:25 - 2014-02-23 16:25 - 00000000 ____D () C:\Dokumente und Einstellungen\Gast\Eigene Dateien\Virtual CD v9 2014-02-22 09:39 - 2014-02-22 09:39 - 00000000 ____D () C:\Dokumente und Einstellungen\Gast\Lokale Einstellungen\Anwendungsdaten\Apple Computer 2014-02-22 07:21 - 2014-02-22 07:21 - 00000000 __SHD () C:\Dokumente und Einstellungen\Gast\IECompatCache 2014-02-22 07:20 - 2014-02-22 07:20 - 00000000 __SHD () C:\Dokumente und Einstellungen\Gast\PrivacIE 2014-02-21 01:30 - 2014-03-07 16:12 - 00074206 _____ () C:\WINDOWS\KB2909921-IE8.log 2014-02-20 20:50 - 2014-03-14 16:10 - 00094632 _____ (Oracle Corporation) C:\WINDOWS\system32\WindowsAccessBridge.dll 2014-02-20 17:14 - 2014-02-20 17:14 - 00000000 ____D () C:\Dokumente und Einstellungen\Gast\Anwendungsdaten\Windows Search 2014-02-20 17:09 - 2014-02-20 17:09 - 00000000 __SHD () C:\Dokumente und Einstellungen\Gast\IETldCache 2014-02-20 16:21 - 2014-03-07 14:56 - 00000000 ____D () C:\Programme\Mozilla Maintenance Service 2014-02-20 15:47 - 2014-02-20 15:47 - 00000739 _____ () C:\Dokumente und Einstellungen\feuer\Desktop\Revo Uninstaller.lnk 2014-02-20 08:45 - 2014-02-20 08:45 - 00000000 ____D () C:\Dokumente und Einstellungen\NetworkService\Lokale Einstellungen\Anwendungsdaten\Apple ==================== One Month Modified Files and Folders ======= 2014-03-22 13:35 - 2014-02-15 23:07 - 00000000 ____D () C:\FRST 2014-03-22 13:25 - 2011-04-29 11:45 - 01960141 _____ () C:\WINDOWS\WindowsUpdate.log 2014-03-22 13:20 - 2013-02-19 23:44 - 00016804 _____ () C:\WINDOWS\system32\nvAppTimestamps 2014-03-22 13:19 - 2014-03-07 16:42 - 00000222 _____ () C:\WINDOWS\Tasks\Ende des Supports für Microsoft Windows XP – Benachrichtigung – Anmeldung.job 2014-03-22 13:19 - 2014-03-07 15:49 - 00001084 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job 2014-03-22 13:19 - 2011-04-29 05:14 - 00000159 _____ () C:\WINDOWS\wiadebug.log 2014-03-22 13:19 - 2011-04-29 05:14 - 00000050 _____ () C:\WINDOWS\wiaservc.log 2014-03-22 13:19 - 2011-04-29 04:18 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT 2014-03-22 12:54 - 2014-03-07 15:49 - 00001088 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job 2014-03-22 12:50 - 2012-07-06 14:23 - 00000884 _____ () C:\WINDOWS\Tasks\Adobe Flash Player Updater.job 2014-03-22 11:46 - 2014-03-07 14:42 - 00000000 ____D () C:\Programme\Mozilla Firefox 2014-03-22 01:54 - 2011-04-29 04:20 - 00000190 __SHC () C:\Dokumente und Einstellungen\feuer\ntuser.ini 2014-03-22 01:54 - 2011-04-29 04:19 - 00032538 _____ () C:\WINDOWS\SchedLgU.Txt 2014-03-21 15:30 - 2012-01-30 15:26 - 00000000 ____D () C:\Programme\Shotty 2014-03-21 14:53 - 2014-03-20 00:46 - 00000923 _____ () C:\Dokumente und Einstellungen\feuer\Desktop\Bilder trojaner.txt 2014-03-21 14:52 - 2012-01-30 15:47 - 00000000 ____D () C:\Dokumente und Einstellungen\feuer\Lokale Einstellungen\Anwendungsdaten\Shotty 2014-03-21 14:48 - 2011-04-29 21:19 - 00000000 ____D () C:\WINDOWS\Minidump 2014-03-21 14:45 - 2014-03-21 14:48 - 00065536 ____H () C:\WINDOWS\Minidump\Mini032114-01.dmp 2014-03-21 03:36 - 2014-02-16 11:50 - 00000000 ____D () C:\Qoobox 2014-03-21 03:35 - 2014-03-21 03:35 - 00141731 _____ () C:\ComboFix.txt 2014-03-21 03:32 - 2002-08-29 13:00 - 00000227 _____ () C:\WINDOWS\system.ini 2014-03-21 03:30 - 2011-04-29 06:12 - 37224448 _____ () C:\WINDOWS\system32\config\software.bak 2014-03-21 03:30 - 2011-04-29 06:12 - 06291456 _____ () C:\WINDOWS\system32\config\system.bak 2014-03-21 03:30 - 2011-04-29 06:12 - 00524288 _____ () C:\WINDOWS\system32\config\default.bak 2014-03-21 03:30 - 2011-04-29 05:13 - 00262144 _____ () C:\WINDOWS\system32\config\SECURITY.bak 2014-03-21 03:30 - 2011-04-29 05:13 - 00024576 _____ () C:\WINDOWS\system32\config\SAM.bak 2014-03-21 03:29 - 2014-03-21 03:29 - 00008192 ____H () C:\WINDOWS\system32\config\SECURITY.tmp.LOG 2014-03-21 03:29 - 2014-03-21 03:29 - 00000000 ____H () C:\WINDOWS\system32\config\system.tmp.LOG 2014-03-21 03:29 - 2014-03-21 03:29 - 00000000 ____H () C:\WINDOWS\system32\config\software.tmp.LOG 2014-03-21 03:29 - 2014-03-21 03:29 - 00000000 ____H () C:\WINDOWS\system32\config\SAM.tmp.LOG 2014-03-21 03:29 - 2014-03-21 03:29 - 00000000 ____H () C:\WINDOWS\system32\config\default.tmp.LOG 2014-03-21 03:29 - 2014-02-16 11:50 - 00000000 ____D () C:\WINDOWS\erdnt 2014-03-21 03:11 - 2014-03-21 03:11 - 00000000 _RSHD () C:\cmdcons 2014-03-20 16:49 - 2014-03-20 16:49 - 05190052 ____R (Swearware) C:\Dokumente und Einstellungen\feuer\Desktop\ComboFix.exe 2014-03-20 01:20 - 2014-02-17 18:30 - 00000000 ____D () C:\Avenger 2014-03-20 00:38 - 2014-03-20 00:38 - 00086016 _____ () C:\WINDOWS\Minidump\Mini032014-01.dmp 2014-03-19 11:51 - 2011-04-29 04:20 - 00000000 ___RD () C:\Dokumente und Einstellungen\feuer\Startmenü\Programme\Autostart 2014-03-19 01:41 - 2014-03-15 17:25 - 00090755 _____ () C:\zoek-results.log 2014-03-19 01:39 - 2011-04-29 04:20 - 00000000 ____D () C:\Dokumente und Einstellungen\feuer 2014-03-19 01:37 - 2011-04-29 05:13 - 00000000 ___RD () C:\Programme 2014-03-19 01:03 - 2014-03-19 01:39 - 00024064 _____ () C:\WINDOWS\zoek-delete.exe 2014-03-19 00:59 - 2002-08-29 13:00 - 00002422 _____ () C:\WINDOWS\system32\wpa.dbl 2014-03-18 05:06 - 2013-08-15 14:37 - 00000000 ____D () C:\WINDOWS\system32\MRT 2014-03-18 05:00 - 2011-04-29 12:47 - 87350280 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2014-03-17 18:37 - 2014-03-17 18:38 - 00090224 ____H () C:\WINDOWS\Minidump\Mini031714-01.dmp 2014-03-17 15:30 - 2011-08-04 22:51 - 00002501 _____ () C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Microsoft Word.lnk 2014-03-15 19:13 - 2014-03-14 14:13 - 00000000 ____D () C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Minecraft 2014-03-15 18:19 - 2014-03-19 01:09 - 00103562 _____ () C:\zoek-results2014-03-15-171943.log 2014-03-15 18:09 - 2014-03-15 17:09 - 00000000 ____D () C:\zoek_backup 2014-03-15 18:01 - 2014-03-07 15:50 - 00001773 _____ () C:\Dokumente und Einstellungen\All Users\Desktop\Google Chrome.lnk 2014-03-15 17:35 - 2014-03-07 22:42 - 00000000 ____D () C:\Programme\Windows Live 2014-03-15 17:26 - 2014-03-15 17:39 - 00012186 _____ () C:\zoek-results2014-03-15-162648.log 2014-03-15 16:07 - 2014-03-13 11:49 - 00000430 _____ () C:\WINDOWS\nsw.log 2014-03-15 16:07 - 2014-02-23 16:46 - 00119345 _____ () C:\WINDOWS\setupapi.log 2014-03-15 16:05 - 2011-04-29 06:09 - 00000000 ____D () C:\WINDOWS\system32\ias 2014-03-14 16:47 - 2014-02-10 01:56 - 00000000 ____D () C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\QuickTime 2014-03-14 16:45 - 2011-04-29 05:13 - 00000000 ___RD () C:\Dokumente und Einstellungen\All Users\Startmenü\Programme 2014-03-14 16:42 - 2011-05-01 23:47 - 00000000 ____D () C:\WINDOWS\uninstall 2014-03-14 16:42 - 2011-05-01 23:47 - 00000000 ____D () C:\Dokumente und Einstellungen\feuer\Lokale Einstellungen\Anwendungsdaten\Publish_Data 2014-03-14 16:42 - 2011-05-01 23:47 - 00000000 ____D () C:\Dokumente und Einstellungen\All Users\Anwendungsdaten\Publish Data 2014-03-14 16:42 - 2011-04-29 04:20 - 00000000 ___RD () C:\Dokumente und Einstellungen\feuer\Startmenü\Programme 2014-03-14 16:39 - 2011-04-29 04:16 - 00000000 ____D () C:\Programme\MSN 2014-03-14 16:23 - 2012-06-29 20:04 - 00000000 ____D () C:\Programme\Java 2014-03-14 16:10 - 2014-02-20 20:50 - 00094632 _____ (Oracle Corporation) C:\WINDOWS\system32\WindowsAccessBridge.dll 2014-03-14 16:06 - 2013-02-18 02:04 - 00000000 ____D () C:\Dokumente und Einstellungen\feuer\Anwendungsdaten\.minecraft 2014-03-14 15:17 - 2011-04-30 00:20 - 00196608 _____ () C:\WINDOWS\system32\config\WindowsPowerShell.evt 2014-03-14 14:14 - 2014-03-14 14:14 - 00000000 ____D () C:\Dokumente und Einstellungen\feuer\Anwendungsdaten\1H1Q 2014-03-13 11:34 - 2014-03-07 15:23 - 00000000 ____D () C:\Programme\Microsoft Silverlight 2014-03-13 11:34 - 2011-04-29 05:13 - 00165912 _____ () C:\WINDOWS\system32\FNTCACHE.DAT 2014-03-13 05:02 - 2014-03-13 05:02 - 00127935 _____ () C:\WINDOWS\KB2925418-IE8.log 2014-03-13 05:02 - 2014-03-13 05:02 - 00000000 __HDC () C:\WINDOWS\$NtUninstallKB2930275$ 2014-03-13 05:02 - 2014-03-13 05:02 - 00000000 __HDC () C:\WINDOWS\$NtUninstallKB2929961$ 2014-03-13 05:02 - 2014-03-12 09:20 - 00127647 _____ () C:\WINDOWS\KB2930275.log 2014-03-13 05:02 - 2014-03-12 09:20 - 00124351 _____ () C:\WINDOWS\KB2929961.log 2014-03-13 05:02 - 2014-03-07 14:54 - 00091977 _____ () C:\WINDOWS\updspapi.log 2014-03-13 05:02 - 2014-03-07 14:53 - 00154580 _____ () C:\WINDOWS\FaxSetup.log 2014-03-13 05:02 - 2014-03-07 14:53 - 00073900 _____ () C:\WINDOWS\ocgen.log 2014-03-13 05:02 - 2014-03-07 14:53 - 00058975 _____ () C:\WINDOWS\tsoc.log 2014-03-13 05:02 - 2014-03-07 14:53 - 00051198 _____ () C:\WINDOWS\comsetup.log 2014-03-13 05:02 - 2014-03-07 14:53 - 00031036 _____ () C:\WINDOWS\ntdtcsetup.log 2014-03-13 05:02 - 2014-03-07 14:53 - 00024288 _____ () C:\WINDOWS\iis6.log 2014-03-13 05:02 - 2014-03-07 14:53 - 00008550 _____ () C:\WINDOWS\ocmsn.log 2014-03-13 05:02 - 2014-03-07 14:53 - 00007725 _____ () C:\WINDOWS\msgsocm.log 2014-03-13 05:02 - 2014-03-07 14:53 - 00001374 _____ () C:\WINDOWS\imsins.log 2014-03-13 05:02 - 2014-03-07 14:53 - 00001374 _____ () C:\WINDOWS\imsins.BAK 2014-03-13 05:02 - 2011-04-29 22:30 - 00000000 ____D () C:\WINDOWS\ie8updates 2014-03-13 05:01 - 2014-03-07 16:27 - 00000000 ____D () C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Microsoft Silverlight 2014-03-12 10:50 - 2012-04-07 19:11 - 00692616 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerApp.exe 2014-03-12 10:50 - 2011-05-13 21:15 - 00071048 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerCPLApp.cpl 2014-03-12 06:57 - 2011-04-29 05:13 - 01505450 _____ () C:\WINDOWS\system32\PerfStringBackup.INI 2014-03-10 08:23 - 2014-02-18 13:49 - 00015271 _____ (MediaTek Corporation) C:\WINDOWS\system32\Drivers\FIDE.SYS 2014-03-08 15:40 - 2014-03-07 16:42 - 00000216 _____ () C:\WINDOWS\Tasks\Ende des Supports für Microsoft Windows XP – Monatliche Benachrichtigung.job 2014-03-08 00:34 - 2011-04-29 05:23 - 00000000 ____D () C:\WINDOWS\Microsoft.NET 2014-03-07 22:52 - 2014-03-07 22:52 - 00000000 __HDC () C:\WINDOWS\$NtUninstallKB961503$ 2014-03-07 22:52 - 2014-03-07 22:51 - 00012384 _____ () C:\WINDOWS\KB961503.log 2014-03-07 22:51 - 2011-04-29 11:47 - 00000000 ___HD () C:\WINDOWS\$hf_mig$ 2014-03-07 22:47 - 2014-03-07 22:47 - 00000000 ____D () C:\Dokumente und Einstellungen\feuer\Tracing 2014-03-07 22:47 - 2014-03-07 22:42 - 00000000 ____D () C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Windows Live 2014-03-07 22:46 - 2014-03-07 22:46 - 00000000 ____D () C:\Programme\Microsoft Sync Framework 2014-03-07 22:44 - 2014-03-07 22:44 - 00030134 _____ () C:\WINDOWS\DirectX.log 2014-03-07 22:44 - 2014-03-07 22:44 - 00000663 _____ () C:\WINDOWS\KB954708.log 2014-03-07 22:44 - 2014-03-07 22:44 - 00000000 ____D () C:\Programme\Microsoft SQL Server Compact Edition 2014-03-07 22:44 - 2011-04-29 04:17 - 00000000 ____D () C:\WINDOWS\system32\DirectX 2014-03-07 22:43 - 2014-03-07 22:43 - 00000000 ____D () C:\Programme\Windows Live SkyDrive 2014-03-07 22:43 - 2011-04-29 05:13 - 00000000 ___RD () C:\Dokumente und Einstellungen\All Users\Dokumente 2014-03-07 22:43 - 2011-04-29 05:13 - 00000000 ____D () C:\Programme\Gemeinsame Dateien\Microsoft Shared 2014-03-07 22:37 - 2014-03-07 22:37 - 00000000 ____D () C:\Programme\Gemeinsame Dateien\Windows Live 2014-03-07 20:33 - 2011-05-16 17:05 - 01098816 _____ () C:\WINDOWS\system32\nvdrsdb1.bin 2014-03-07 20:33 - 2011-05-16 17:05 - 00000001 _____ () C:\WINDOWS\system32\nvdrssel.bin 2014-03-07 20:33 - 2011-04-29 14:18 - 00000000 ____D () C:\WINDOWS\system32\de-de 2014-03-07 20:28 - 2011-05-16 17:05 - 01098816 _____ () C:\WINDOWS\system32\nvdrsdb0.bin 2014-03-07 20:20 - 2011-05-16 17:04 - 00000000 ____D () C:\Programme\NVIDIA Corporation 2014-03-07 20:20 - 2011-04-29 04:26 - 00000000 ____D () C:\WINDOWS\system32\ReinstallBackups 2014-03-07 19:47 - 2014-03-07 19:47 - 00000000 __HDC () C:\WINDOWS\$NtUninstallKB2808679$ 2014-03-07 19:47 - 2014-03-07 19:08 - 00009421 _____ () C:\WINDOWS\KB2808679.log 2014-03-07 19:37 - 2014-03-07 19:36 - 00008073 _____ () C:\WINDOWS\KB2632503-IE8.log 2014-03-07 16:50 - 2014-03-07 16:50 - 00000000 ____D () C:\Programme\Microsoft.NET 2014-03-07 16:28 - 2014-03-07 16:28 - 00033096 _____ () C:\WINDOWS\KB2909210-IE8.log 2014-03-07 16:28 - 2014-03-07 16:28 - 00032988 _____ () C:\WINDOWS\KB2934207.log 2014-03-07 16:28 - 2014-03-07 16:28 - 00000000 __HDC () C:\WINDOWS\$NtUninstallKB2934207$ 2014-03-07 16:27 - 2014-03-07 16:26 - 00008131 _____ () C:\WINDOWS\KB2510531-IE8.log 2014-03-07 16:20 - 2011-04-29 04:20 - 00000787 _____ () C:\Dokumente und Einstellungen\feuer\Startmenü\Programme\Internet Explorer.lnk 2014-03-07 16:17 - 2014-03-07 15:24 - 00013740 _____ () C:\WINDOWS\spupdsvc.log 2014-03-07 16:16 - 2011-04-29 06:09 - 00000000 ____D () C:\WINDOWS\Help 2014-03-07 16:15 - 2014-03-07 15:07 - 00232253 _____ () C:\WINDOWS\ie8_main.log 2014-03-07 16:12 - 2014-03-07 15:21 - 00000000 ___HD () C:\WINDOWS\msdownld.tmp 2014-03-07 16:12 - 2014-02-21 01:30 - 00074206 _____ () C:\WINDOWS\KB2909921-IE8.log 2014-03-07 16:11 - 2014-03-07 15:26 - 00075941 _____ () C:\WINDOWS\KB2744842-IE8.log 2014-03-07 16:11 - 2014-03-07 15:26 - 00071682 _____ () C:\WINDOWS\KB2862772-IE8.log 2014-03-07 16:11 - 2014-03-07 15:25 - 00080750 _____ () C:\WINDOWS\KB2618444-IE8.log 2014-03-07 16:10 - 2014-03-07 15:25 - 00066566 _____ () C:\WINDOWS\KB2598845-IE8.log 2014-03-07 16:10 - 2014-03-07 15:24 - 00088939 _____ () C:\WINDOWS\KB982381-IE8.log 2014-03-07 16:09 - 2014-03-07 16:08 - 00000000 __HDC () C:\WINDOWS\ie8 2014-03-07 16:09 - 2014-03-07 15:23 - 00089234 _____ () C:\WINDOWS\ie8.log 2014-03-07 16:09 - 2011-04-29 06:09 - 00000000 ____D () C:\WINDOWS\Media 2014-03-07 15:52 - 2014-03-07 15:51 - 00005193 _____ () C:\WINDOWS\KB2909212.log 2014-03-07 15:52 - 2014-03-07 15:51 - 00004890 _____ () C:\WINDOWS\KB2909921.log 2014-03-07 15:51 - 2014-02-17 23:14 - 00000000 ____D () C:\Dokumente und Einstellungen\feuer\Lokale Einstellungen\Anwendungsdaten\Google 2014-03-07 15:50 - 2014-03-07 15:50 - 00000000 ____D () C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Google Chrome 2014-03-07 15:50 - 2012-05-14 19:43 - 00000000 ____D () C:\Programme\Google 2014-03-07 15:33 - 2014-03-07 14:53 - 00060421 _____ () C:\WINDOWS\ie8Uninst.log 2014-03-07 14:56 - 2014-02-20 16:21 - 00000000 ____D () C:\Programme\Mozilla Maintenance Service 2014-03-07 14:53 - 2014-03-07 14:53 - 00000000 _____ () C:\WINDOWS\setuperr.log 2014-03-07 14:53 - 2014-03-07 14:53 - 00000000 _____ () C:\WINDOWS\setupact.log 2014-03-07 14:44 - 2014-03-07 14:42 - 00000000 ____D () C:\Dokumente und Einstellungen\feuer\Anwendungsdaten\Mozilla 2014-03-07 14:42 - 2014-03-07 14:42 - 00000706 _____ () C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Mozilla Firefox.lnk 2014-03-07 14:42 - 2014-03-07 14:42 - 00000700 _____ () C:\Dokumente und Einstellungen\All Users\Desktop\Mozilla Firefox.lnk 2014-03-07 14:17 - 2014-03-07 14:17 - 00045372 _____ () C:\Dokumente und Einstellungen\feuer\Desktop\bookmarks.html 2014-03-01 21:55 - 2014-03-01 21:55 - 00010752 _____ () C:\Dokumente und Einstellungen\feuer\Eigene Dateien\shake.xls 2014-03-01 03:04 - 2014-03-01 02:59 - 00000000 ____D () C:\Dokumente und Einstellungen\feuer\Anwendungsdaten\Dev-Cpp 2014-03-01 02:59 - 2014-03-01 02:59 - 00000000 ____D () C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Bloodshed Dev-C++ 2014-02-27 00:28 - 2014-03-07 16:26 - 00013312 ____N (Microsoft Corporation) C:\WINDOWS\system32\xp_eos.exe 2014-02-27 00:28 - 2014-03-07 16:26 - 00013312 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\xp_eos.exe 2014-02-24 16:24 - 2009-03-08 04:32 - 00174592 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ie4uinit.exe 2014-02-24 16:24 - 2002-08-29 13:00 - 00174592 ____N (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe 2014-02-24 12:45 - 2012-06-13 16:03 - 00522240 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\jsdbgui.dll 2014-02-24 12:45 - 2011-04-29 22:30 - 11113472 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ieframe.dll 2014-02-24 12:45 - 2011-04-29 22:30 - 02006016 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\iertutil.dll 2014-02-24 12:45 - 2011-04-29 22:30 - 00743424 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\iedvtool.dll 2014-02-24 12:45 - 2011-04-29 22:30 - 00630272 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msfeeds.dll 2014-02-24 12:45 - 2011-04-29 22:30 - 00247808 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\ieproxy.dll 2014-02-24 12:45 - 2011-04-29 22:30 - 00055296 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\msfeedsbs.dll 2014-02-24 12:45 - 2011-04-29 22:30 - 00012800 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\xpshims.dll 2014-02-24 12:45 - 2011-02-17 14:51 - 00611840 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mstime.dll 2014-02-24 12:45 - 2011-02-17 14:51 - 00067072 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mshtmled.dll 2014-02-24 12:45 - 2010-04-16 17:06 - 06022144 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\mshtml.dll 2014-02-24 12:45 - 2010-04-16 17:06 - 01216000 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\urlmon.dll 2014-02-24 12:45 - 2010-04-16 17:06 - 00920064 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\wininet.dll 2014-02-24 12:45 - 2010-04-16 17:06 - 00184320 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\iepeers.dll 2014-02-24 12:45 - 2009-03-08 04:39 - 11113472 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll 2014-02-24 12:45 - 2009-03-08 04:34 - 01469440 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\inetcpl.cpl 2014-02-24 12:45 - 2009-03-08 04:34 - 00206848 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\occache.dll 2014-02-24 12:45 - 2009-03-08 04:34 - 00105984 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\url.dll 2014-02-24 12:45 - 2009-03-08 04:34 - 00043520 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\licmgr10.dll 2014-02-24 12:45 - 2009-03-08 04:33 - 00759296 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\vgx.dll 2014-02-24 12:45 - 2009-03-08 04:33 - 00025600 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\jsproxy.dll 2014-02-24 12:45 - 2009-03-08 04:32 - 02006016 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll 2014-02-24 12:45 - 2009-03-08 04:32 - 00630272 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll 2014-02-24 12:45 - 2009-03-08 04:31 - 00055296 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeedsbs.dll 2014-02-24 12:45 - 2002-08-29 13:00 - 06022144 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2014-02-24 12:45 - 2002-08-29 13:00 - 01469440 ____N (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl 2014-02-24 12:45 - 2002-08-29 13:00 - 01216000 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll 2014-02-24 12:45 - 2002-08-29 13:00 - 00920064 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll 2014-02-24 12:45 - 2002-08-29 13:00 - 00611840 ____N (Microsoft Corporation) C:\WINDOWS\system32\mstime.dll 2014-02-24 12:45 - 2002-08-29 13:00 - 00206848 ____N (Microsoft Corporation) C:\WINDOWS\system32\occache.dll 2014-02-24 12:45 - 2002-08-29 13:00 - 00184320 ____N (Microsoft Corporation) C:\WINDOWS\system32\iepeers.dll 2014-02-24 12:45 - 2002-08-29 13:00 - 00105984 _____ (Microsoft Corporation) C:\WINDOWS\system32\url.dll 2014-02-24 12:45 - 2002-08-29 13:00 - 00067072 ____N (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll 2014-02-24 12:45 - 2002-08-29 13:00 - 00043520 ____N (Microsoft Corporation) C:\WINDOWS\system32\licmgr10.dll 2014-02-24 12:45 - 2002-08-29 13:00 - 00025600 ____N (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll 2014-02-24 12:44 - 2009-03-08 14:09 - 00387584 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\iedkcs32.dll 2014-02-24 12:44 - 2009-03-08 04:33 - 00018944 ____C (Microsoft Corporation) C:\WINDOWS\system32\dllcache\corpol.dll 2014-02-24 12:44 - 2002-08-29 13:00 - 00387584 ____N (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll 2014-02-24 12:44 - 2002-08-29 13:00 - 00018944 ____N (Microsoft Corporation) C:\WINDOWS\system32\corpol.dll 2014-02-24 11:54 - 2004-08-04 08:42 - 00385024 ____N (Microsoft Corporation) C:\WINDOWS\system32\html.iec 2014-02-24 08:33 - 2014-02-24 08:33 - 00086016 _____ () C:\WINDOWS\Minidump\Mini022414-01.dmp 2014-02-24 08:23 - 2014-02-24 08:23 - 00000000 ____D () C:\Dokumente und Einstellungen\feuer\Lokale Einstellungen\Anwendungsdaten\Deployment 2014-02-24 08:17 - 2014-02-01 16:38 - 00000132 _____ () C:\Dokumente und Einstellungen\feuer\Desktop\Abschalten in 1,5 Std.cmd 2014-02-23 17:16 - 2014-02-23 17:16 - 00002119 _____ () C:\Dokumente und Einstellungen\feuer\Desktop\Siedler 4 starten.lnk 2014-02-23 16:51 - 2014-02-23 16:51 - 00002095 _____ () C:\Dokumente und Einstellungen\Gast\Desktop\Die Siedler 4 Starten.lnk 2014-02-23 16:46 - 2014-02-23 16:46 - 00001707 _____ () C:\Dokumente und Einstellungen\feuer\Desktop\Ubi Soft Product Registration.lnk 2014-02-23 16:46 - 2014-02-23 16:46 - 00000000 ____D () C:\Programme\Ubi Soft 2014-02-23 16:45 - 2014-02-23 16:45 - 00000000 ____D () C:\Dokumente und Einstellungen\feuer\Startmenü\Programme\Blue Byte 2014-02-23 16:45 - 2011-05-01 01:24 - 00000000 ____D () C:\Dokumente und Einstellungen\All Users\Startmenü\Programme\Blue Byte 2014-02-23 16:30 - 2011-04-30 23:51 - 00000000 ___SD () C:\Dokumente und Einstellungen\All Users\Dokumente\Virtual CDs 2014-02-23 16:25 - 2014-02-23 16:25 - 00000372 _____ () C:\Dokumente und Einstellungen\Gast\Eigene Dateien\spider.sav 2014-02-23 16:25 - 2014-02-23 16:25 - 00000000 ____D () C:\Dokumente und Einstellungen\Gast\Eigene Dateien\Virtual CD v9 2014-02-23 02:21 - 2011-04-29 04:16 - 00000000 ____D () C:\Programme\Outlook Express 2014-02-22 09:39 - 2014-02-22 09:39 - 00000000 ____D () C:\Dokumente und Einstellungen\Gast\Lokale Einstellungen\Anwendungsdaten\Apple Computer 2014-02-22 07:21 - 2014-02-22 07:21 - 00000000 __SHD () C:\Dokumente und Einstellungen\Gast\IECompatCache 2014-02-22 07:21 - 2014-02-18 11:03 - 00000000 ____D () C:\Dokumente und Einstellungen\Gast 2014-02-22 07:20 - 2014-02-22 07:20 - 00000000 __SHD () C:\Dokumente und Einstellungen\Gast\PrivacIE 2014-02-21 00:17 - 2012-11-02 22:18 - 00000000 ____D () C:\Dokumente und Einstellungen\feuer\Lokale Einstellungen\Anwendungsdaten\Adobe 2014-02-20 20:49 - 2014-03-14 16:23 - 00877480 _____ (Oracle Corporation) C:\WINDOWS\system32\npdeployJava1.dll 2014-02-20 20:49 - 2014-03-14 16:23 - 00800168 _____ (Oracle Corporation) C:\WINDOWS\system32\deployJava1.dll 2014-02-20 20:49 - 2013-12-18 21:04 - 00264616 _____ (Oracle Corporation) C:\WINDOWS\system32\javaws.exe 2014-02-20 20:49 - 2012-09-24 14:23 - 00175016 _____ (Oracle Corporation) C:\WINDOWS\system32\javaw.exe 2014-02-20 20:49 - 2012-09-24 14:23 - 00174504 _____ (Oracle Corporation) C:\WINDOWS\system32\java.exe 2014-02-20 20:49 - 2012-06-29 20:05 - 00145408 _____ (Oracle Corporation) C:\WINDOWS\system32\javacpl.cpl 2014-02-20 17:14 - 2014-02-20 17:14 - 00000000 ____D () C:\Dokumente und Einstellungen\Gast\Anwendungsdaten\Windows Search 2014-02-20 17:09 - 2014-02-20 17:09 - 00000000 __SHD () C:\Dokumente und Einstellungen\Gast\IETldCache 2014-02-20 15:47 - 2014-02-20 15:47 - 00000739 _____ () C:\Dokumente und Einstellungen\feuer\Desktop\Revo Uninstaller.lnk 2014-02-20 08:45 - 2014-02-20 08:45 - 00000000 ____D () C:\Dokumente und Einstellungen\NetworkService\Lokale Einstellungen\Anwendungsdaten\Apple ==================== Bamital & volsnap Check ================= C:\WINDOWS\explorer.exe [2002-08-29 13:00] - [2008-04-14 03:22] - 1036800 ____A (Microsoft Corporation) 418045a93cd87a352098ab7dabe1b53e C:\WINDOWS\system32\winlogon.exe [2002-08-29 13:00] - [2008-04-14 03:23] - 0513024 ____A (Microsoft Corporation) f09a527b422e25c478e38caa0e44417a C:\WINDOWS\system32\svchost.exe [2002-08-29 13:00] - [2008-04-14 03:23] - 0014336 ____A (Microsoft Corporation) 4fbc75b74479c7a6f829e0ca19df3366 C:\WINDOWS\system32\services.exe [2002-08-29 13:00] - [2009-02-09 12:21] - 0111104 ____A (Microsoft Corporation) a3edbe9053889fb24ab22492472b39dc C:\WINDOWS\system32\User32.dll [2002-08-29 13:00] - [2008-04-14 03:22] - 0580096 ____A (Microsoft Corporation) b0050cc5340e3a0760dd8b417ff7aebd C:\WINDOWS\system32\userinit.exe [2002-08-29 13:00] - [2008-04-14 03:23] - 0026624 ____A (Microsoft Corporation) 788f95312e26389d596c0fa55834e106 C:\WINDOWS\system32\rpcss.dll [2002-08-29 13:00] - [2009-02-09 11:51] - 0401408 ____A (Microsoft Corporation) 3127afbf2c1ed0ab14a1bbb7aaecb85b ATTENTION ======> If the system is having audio adware rpcss.dll is patched. Google the MD5, if the MD5 is unique the file is infected. C:\WINDOWS\system32\Drivers\volsnap.sys [2002-08-29 13:00] - [2008-04-14 02:52] - 0053760 ____A (Microsoft Corporation) a5a712f4e880874a477af790b5186e1d ==================== End Of Log ============================ |
23.03.2014, 10:52 | #60 |
/// the machine /// TB-Ausbilder | Windows XP: Browser verursacht Werbung Gibts doch nit. Öffne FRST, setz nen Haken bei Additional und scanne, poste bitte nur die Additional.txt. Mach bitte noc nen Scan mit GMER.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |