|
Plagegeister aller Art und deren Bekämpfung: TR/Dropper.MSIL.Gen aus http://sharefiles.com/getdistr/oxy/Windows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
29.03.2014, 17:21 | #1 |
| TR/Dropper.MSIL.Gen aus http://sharefiles.com/getdistr/oxy/ Hallo! Bekomme seit 3 Tagen immer wieder von Avira (Gratis-Version) diese Meldung: TR/Dropper.MSIL.Gen aus hxxp://sharefiles.com/getdistr/oxy/ Wird zwar immer in die Quarantäne verschoben, bekomme aber immer wieder Meldungen, wenn ich den PC starte. Was kann ich dagegen tun? |
29.03.2014, 17:52 | #2 |
/// the machine /// TB-Ausbilder | TR/Dropper.MSIL.Gen aus http://sharefiles.com/getdistr/oxy/ hi,
__________________Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST 32-Bit | FRST 64-Bit (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
__________________ |
29.03.2014, 18:21 | #3 |
| TR/Dropper.MSIL.Gen aus http://sharefiles.com/getdistr/oxy/ Danke für die schnelle Antwort!
__________________Wollte die Logs wie beschrieben einfügen, waren allerdings zu viele Zeichen.. Habe sie jetzt als Anhang angefügt. |
30.03.2014, 07:43 | #4 |
/// the machine /// TB-Ausbilder | TR/Dropper.MSIL.Gen aus http://sharefiles.com/getdistr/oxy/ Hi, Logs bitte immer in den Thread posten. Zur Not aufteilen und mehrere Posts nutzen. So funktioniert es: Posten in CODE-Tags Die Logfiles anzuhängen oder sogar vorher in ein ZIP, RAR, 7Z-Archive zu packen erschwert mir massiv die Arbeit, es sei denn natürlich die Datei wäre ansonsten zu gross für das Forum. Um die Logfiles in eine CODE-Box zu stellen gehe so vor:
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
30.03.2014, 10:43 | #5 |
| TR/Dropper.MSIL.Gen aus http://sharefiles.com/getdistr/oxy/ Okay, sorry. FRST.txt : FRST Logfile: FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 13-03-2014 Ran by Vanessa (administrator) on VANESSA-PC on 29-03-2014 18:09:38 Running from C:\Users\Vanessa\Downloads Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard Internet Explorer Version 11 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe (ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe (ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe (ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe (APN LLC.) C:\Program Files (x86)\AskPartnerNetwork\Toolbar\apnmcp.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ATKOSD.exe (ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\WDC.exe (Atheros) C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe (Atheros Commnucations) C:\Program Files (x86)\Bluetooth Suite\adminservice.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (Seiko Epson Corporation) C:\Windows\system32\EscSvc64.exe (SEIKO EPSON CORPORATION) C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S60RPB.EXE ( ) C:\Windows\system32\lxedcoms.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Microsoft Online Services\MSOIDSVC.EXE (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (Microsoft Corporation) C:\Program Files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\sqlservr.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Microsoft Online Services\MSOIDSvcm.exe (Intel Corporation) C:\Windows\System32\igfxtray.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe (Atheros Communications) C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe (Atheros Commnucations) C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe (Sonix Technology Co., Ltd.) C:\Windows\vsnp2uvc.exe () C:\Program Files (x86)\Lexmark S600 Series\lxedmon.exe () C:\Program Files (x86)\Lexmark S600 Series\ezprint.exe (Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe (Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\Office14\MSOSYNC.EXE (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe (SEIKO EPSON CORPORATION) C:\Windows\System32\spool\drivers\x64\3\E_IATILGE.EXE (Dropbox, Inc.) C:\Users\Vanessa\AppData\Roaming\Dropbox\bin\Dropbox.exe (Adobe Systems Inc.) C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\acrotray.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\AVWEBGRD.EXE (ASUSTek Computer Inc.) C:\Program Files (x86)\asus\ATK Package\ATKOSD2\ATKOSD2.exe (ASUSTek Computer Inc.) C:\Program Files (x86)\asus\ATK Package\ATK Media\DMedia.exe (ASUS) C:\Program Files (x86)\asus\ATK Package\ATK Hotkey\HControlUser.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe (APN) C:\Program Files (x86)\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Internet Services\APSDaemon.exe (SEIKO EPSON CORPORATION) C:\Program Files (x86)\EPSON Software\Event Manager\EEventManager.exe (Google Inc.) C:\Users\Vanessa\AppData\Local\Google\Chrome\Application\chrome.exe (Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe (ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe (Google Inc.) C:\Users\Vanessa\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Users\Vanessa\AppData\Local\Google\Chrome\Application\chrome.exe (Avira Operations GmbH & Co. KG) C:\program files (x86)\avira\antivir desktop\ipmGui.exe (Google Inc.) C:\Users\Vanessa\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Users\Vanessa\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Users\Vanessa\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Users\Vanessa\AppData\Local\Google\Chrome\Application\chrome.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [RtHDVCpl] - C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [11855976 2011-05-17] (Realtek Semiconductor) HKLM\...\Run: [RtHDVBg] - C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2226280 2011-05-17] (Realtek Semiconductor) HKLM\...\Run: [ETDCtrl] - C:\Program Files\Elantech\ETDCtrl.exe [2589992 2011-04-13] (ELAN Microelectronics Corp.) HKLM\...\Run: [AtherosBtStack] - C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [617120 2011-03-13] (Atheros Communications) HKLM\...\Run: [AthBtTray] - C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe [379552 2011-03-13] (Atheros Commnucations) HKLM\...\Run: [snp2uvc] - C:\Windows\vsnp2uvc.exe [909824 2010-01-21] (Sonix Technology Co., Ltd.) HKLM\...\Run: [lxedmon.exe] - C:\Program Files (x86)\Lexmark S600 Series\lxedmon.exe [770728 2011-01-23] () HKLM\...\Run: [EzPrint] - C:\Program Files (x86)\Lexmark S600 Series\ezprint.exe [148280 2011-01-23] () HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated) HKLM-x32\...\Run: [AdobeCS4ServiceManager] - C:\Program Files (x86)\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe [611712 2008-08-14] (Adobe Systems Incorporated) HKLM-x32\...\Run: [Adobe Acrobat Speed Launcher] - C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\Acrobat_sl.exe [44128 2013-05-08] (Adobe Systems Incorporated) HKLM-x32\...\Run: [] - [X] HKLM-x32\...\Run: [Acrobat Assistant 8.0] - C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\Acrotray.exe [642664 2013-05-08] (Adobe Systems Inc.) HKLM-x32\...\Run: [Adobe_ID0ENQBO] - C:\Program Files (x86)\Common Files\Adobe\Adobe Version Cue CS4\Server\bin\VersionCueCS4Tray.exe [378224 2008-08-15] (Adobe Systems Incorporated) HKLM-x32\...\Run: [APSDaemon] - C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [43848 2014-01-20] (Apple Inc.) HKLM-x32\...\Run: [PONS-CD 7] - C:\Program Files (x86)\Paragon Software\PONS\PONS-CD.exe [5878272 2012-02-02] () HKLM-x32\...\Run: [ATKOSD2] - C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe [328504 2013-01-11] (ASUSTek Computer Inc.) HKLM-x32\...\Run: [ATKMEDIA] - C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe [205184 2012-10-17] (ASUSTek Computer Inc.) HKLM-x32\...\Run: [HControlUser] - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe [105016 2009-06-19] (ASUS) HKLM-x32\...\Run: [BCSSync] - C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [89184 2012-11-05] (Microsoft Corporation) HKLM-x32\...\Run: [avgnt] - C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [689744 2014-02-20] (Avira Operations GmbH & Co. KG) HKLM-x32\...\Run: [ApnTBMon] - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe [1758160 2014-02-13] (APN) HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation) HKLM-x32\...\Run: [mobilegeni daemon] - C:\Program Files (x86)\Mobogenie\DaemonProcess.exe HKLM-x32\...\Run: [iTunesHelper] - C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2014-01-20] (Apple Inc.) HKLM-x32\...\Run: [EEventManager] - C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe [1058880 2013-03-28] (SEIKO EPSON CORPORATION) Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation) HKU\S-1-5-21-402389067-2568746762-3875608856-1000\...\Run: [OfficeSyncProcess] - C:\Program Files (x86)\Microsoft Office\Office14\MSOSYNC.EXE [720064 2013-04-22] (Microsoft Corporation) HKU\S-1-5-21-402389067-2568746762-3875608856-1000\...\Run: [Google Update] - C:\Users\Vanessa\AppData\Local\Google\Update\GoogleUpdate.exe [116648 2012-11-28] (Google Inc.) HKU\S-1-5-21-402389067-2568746762-3875608856-1000\...\Run: [AdobeBridge] - [X] HKU\S-1-5-21-402389067-2568746762-3875608856-1000\...\Run: [icq] - C:\Users\Vanessa\AppData\Roaming\ICQM\icq.exe [26935144 2013-02-13] (ICQ) HKU\S-1-5-21-402389067-2568746762-3875608856-1000\...\Run: [NextLive] - C:\Windows\SysWOW64\rundll32.exe "C:\Users\Vanessa\AppData\Roaming\newnext.me\nengine.dll",EntryPoint -m l HKU\S-1-5-21-402389067-2568746762-3875608856-1000\...\Run: [iCloudServices] - C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe [59720 2013-11-20] (Apple Inc.) HKU\S-1-5-21-402389067-2568746762-3875608856-1000\...\Run: [ApplePhotoStreams] - C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe [59720 2013-11-20] (Apple Inc.) HKU\S-1-5-21-402389067-2568746762-3875608856-1000\...\Run: [EPLTarget\P0000000000000001] - C:\Windows\system32\spool\DRIVERS\x64\3\E_IATILGE.EXE [297024 2013-01-24] (SEIKO EPSON CORPORATION) HKU\S-1-5-21-402389067-2568746762-3875608856-1000\...\Run: [EPLTarget\P0000000000000000] - C:\Windows\system32\spool\DRIVERS\x64\3\E_IATILGE.EXE [297024 2013-01-24] (SEIKO EPSON CORPORATION) HKU\S-1-5-21-402389067-2568746762-3875608856-1000\...\RunOnce: [Uninstall C:\Users\Vanessa\AppData\Local\Microsoft\SkyDrive\17.0.2010.0530\amd64] - C:\Windows\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Vanessa\AppData\Local\Microsoft\SkyDrive\17.0.2010.0530\amd64" HKU\S-1-5-21-402389067-2568746762-3875608856-1000\...\MountPoints2: E - E:\SETUP.EXE HKU\S-1-5-21-402389067-2568746762-3875608856-1000\...\MountPoints2: {1e2d4e45-6bc0-11e1-864e-806e6f6e6963} - D:\InstallNavi.exe HKU\S-1-5-21-402389067-2568746762-3875608856-1000\...\MountPoints2: {9e48735e-1eb2-11e2-a188-8f2dd17397a2} - F:\SETUP.EXE HKU\S-1-5-21-402389067-2568746762-3875608856-1000\...\MountPoints2: {b61d4326-aaf2-11e1-8d97-bcaec567af56} - E:\unlock.exe autoplay=true AppInit_DLLs: C:\Windows\system32\nvinitx.dll => C:\Windows\system32\nvinitx.dll [260416 2012-03-01] (NVIDIA Corporation) AppInit_DLLs-x32: C:\Windows\SysWOW64\nvinit.dll => C:\Windows\SysWOW64\nvinit.dll [215360 2012-03-01] (NVIDIA Corporation) Startup: C:\Users\Vanessa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk ShortcutTarget: Dropbox.lnk -> C:\Users\Vanessa\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.puls4.com/home HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://at.msn.com/?ocid=iehp HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0xA77B1F82C8C3CD01 HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de-AT HKCU\Software\Microsoft\Internet Explorer\Main,ICQ Search = hxxp://search.icq.com/search/results.php?q={searchTerms}&ch_id=osd SearchScopes: HKCU - {6552C7DD-90A4-4387-B795-F8F96747DE19} URL = hxxp://search.icq.com/search/results.php?q={searchTerms}&ch_id=osd SearchScopes: HKCU - {FFEBBF0A-C22C-4172-89FF-45215A135AC8} URL = hxxp://search.icq.com/search/results.php?q=%s&ch_id=hm&search_mode=web BHO: Lync Browser Helper - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation) BHO: Avira SearchFree Toolbar - {41564952-412D-5637-00A7-7A786E7484D7} - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Passport_x64.dll (APN LLC.) BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation) BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation) BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation) BHO-x32: ContributeBHO Class - {074C1DC5-9320-4A9A-947D-C042949C6216} - C:\Program Files (x86)\Adobe\/Adobe Contribute CS4/contributeieplugin.dll (Adobe Systems Incorporated.) BHO-x32: Lync Browser Helper - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation) BHO-x32: Avira SearchFree Toolbar - {41564952-412D-5637-00A7-7A786E7484D7} - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Passport.dll (APN LLC.) BHO-x32: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation) BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: Microsoft Web Test Recorder 10.0 Helper - {876d9f09-c6d6-4324-a2cc-04dd9a4de12f} - C:\Program Files (x86)\Microsoft Visual Studio 11.0\Common7\IDE\PrivateAssemblies\Microsoft.VisualStudio.QualityTools.RecorderBarBHO100.dll (Microsoft Corporation) BHO-x32: CIESpeechBHO Class - {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll (Atheros Commnucations) BHO-x32: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated) BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation) BHO-x32: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation) BHO-x32: Bing Bar Helper - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: Microsoft Web Test Recorder 10.0 Helper - {DDA57003-0068-4ed2-9D32-4D1EC707D94D} - C:\Program Files (x86)\Microsoft Visual Studio 10.0\Common7\IDE\PrivateAssemblies\Microsoft.VisualStudio.QualityTools.RecorderBarBHO100.dll (Microsoft Corporation) BHO-x32: SmartSelect Class - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated) Toolbar: HKLM - Avira SearchFree Toolbar - {41564952-412D-5637-00A7-7A786E7484D7} - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Passport_x64.dll (APN LLC.) Toolbar: HKLM-x32 - Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated) Toolbar: HKLM-x32 - Contribute Toolbar - {517BDDE4-E3A7-4570-B21E-2B52B6139FC7} - C:\Program Files (x86)\Adobe\/Adobe Contribute CS4/contributeieplugin.dll (Adobe Systems Incorporated.) Toolbar: HKLM-x32 - Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.) Toolbar: HKLM-x32 - Avira SearchFree Toolbar - {41564952-412D-5637-00A7-7A786E7484D7} - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Passport.dll (APN LLC.) DPF: HKLM-x32 {D27CDB6E-AE6D-11CF-96B8-444553540000} hxxp://fpdownload2.macromedia.com/get/flashplayer/current/swflash.cab Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies) Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 FireFox: ======== FF ProfilePath: C:\Users\Vanessa\AppData\Roaming\Mozilla\Firefox\Profiles\tb5hgdeu.default FF user.js: detected! => C:\Users\Vanessa\AppData\Roaming\Mozilla\Firefox\Profiles\tb5hgdeu.default\user.js FF SearchEngineOrder.user_pref("browser.search.order.1", "");: user_pref("browser.search.order.1", ""); FF SelectedSearchEngine: ICQ Search FF Homepage: hxxp://www.puls4.com/home FF Keyword.URL: hxxp://search.icq.com/search/afe_results.php?ch_id=afex&tb_ver=1.5.3&q= FF Plugin: @microsoft.com/GENUINE - disabled No File FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation) FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation) FF Plugin: @videolan.org/vlc,version=2.1.0 - C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF32.dll No File FF Plugin-x32: @adobe.com/ShockwavePlayer - C:\Windows\SysWOW64\Adobe\Director\np32dsw_1202122.dll (Adobe Systems, Inc.) FF Plugin-x32: @Apple.com/iTunes,version=1.0 - C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll () FF Plugin-x32: @google.com/npPicasa3,version=3.0.0 - C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll (Google, Inc.) FF Plugin-x32: @java.com/DTPlugin,version=10.45.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=10.45.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @microsoft.com/GENUINE - disabled No File FF Plugin-x32: @microsoft.com/Lync,version=15.0 - C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll (Microsoft Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files (x86)\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll No File FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3538.0513 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll No File FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.23.9\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.23.9\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: Adobe Acrobat - C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\Air\nppdf32.dll (Adobe Systems Inc.) FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Plugin HKCU: @tools.google.com/Google Update;version=3 - C:\Users\Vanessa\AppData\Local\Google\Update\1.3.23.9\npGoogleUpdate3.dll (Google Inc.) FF Plugin HKCU: @tools.google.com/Google Update;version=9 - C:\Users\Vanessa\AppData\Local\Google\Update\1.3.23.9\npGoogleUpdate3.dll (Google Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npMeetingJoinPluginOC.dll (Microsoft Corporation) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nppdf32.dll (Adobe Systems Inc.) FF SearchPlugin: C:\Users\Vanessa\AppData\Roaming\Mozilla\Firefox\Profiles\tb5hgdeu.default\searchplugins\icq.xml FF SearchPlugin: C:\Users\Vanessa\AppData\Roaming\Mozilla\Firefox\Profiles\tb5hgdeu.default\searchplugins\icqplugin.gif FF SearchPlugin: C:\Users\Vanessa\AppData\Roaming\Mozilla\Firefox\Profiles\tb5hgdeu.default\searchplugins\icqplugin.src FF SearchPlugin: C:\Users\Vanessa\AppData\Roaming\Mozilla\Firefox\Profiles\tb5hgdeu.default\searchplugins\icqplugin.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\searchplugins\yahoo-de.xml FF Extension: ICQ Toolbar - C:\Users\Vanessa\AppData\Roaming\Mozilla\Firefox\Profiles\tb5hgdeu.default\Extensions\{800b5000-a755-47e1-992b-48a1c1357f07} [2013-12-06] FF Extension: Exif Viewer - C:\Users\Vanessa\AppData\Roaming\Mozilla\Firefox\Profiles\tb5hgdeu.default\Extensions\exif_viewer@mozilla.doslash.org.xpi [2013-03-19] FF Extension: Avira SearchFree Toolbar plus Web Protection - C:\Users\Vanessa\AppData\Roaming\Mozilla\Firefox\Profiles\tb5hgdeu.default\Extensions\toolbar_AVIRA-V7@apn.ask.com.xpi [2013-10-23] FF Extension: UAControl - C:\Users\Vanessa\AppData\Roaming\Mozilla\Firefox\Profiles\tb5hgdeu.default\Extensions\uacontrol@qz.tsugumi.org.xpi [2013-03-19] FF Extension: Tamper Data - C:\Users\Vanessa\AppData\Roaming\Mozilla\Firefox\Profiles\tb5hgdeu.default\Extensions\{9c51bd27-6ed8-4000-a2bf-36cb95c0c947}.xpi [2013-03-19] Chrome: ======= CHR HomePage: hxxp://www.google.com/ CHR Plugin: (Remoting Viewer) - internal-remoting-viewer CHR Plugin: (Native Client) - C:\Users\Vanessa\AppData\Local\Google\Chrome\Application\33.0.1750.154\ppGoogleNaClPluginChrome.dll () CHR Plugin: (Chrome PDF Viewer) - C:\Users\Vanessa\AppData\Local\Google\Chrome\Application\33.0.1750.154\pdf.dll () CHR Plugin: (Shockwave Flash) - C:\Users\Vanessa\AppData\Local\Google\Chrome\Application\33.0.1750.154\gcswf32.dll No File CHR Plugin: (Shockwave Flash) - C:\Windows\system32\Macromed\Flash\NPSWF32.dll No File CHR Plugin: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll (Adobe Systems Inc.) CHR Plugin: (Microsoft Office 2010) - C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation) CHR Plugin: (Microsoft Office 2010) - C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation) CHR Plugin: (Java(TM) Platform SE 6 U31) - C:\Program Files (x86)\Java\jre6\bin\plugin2\npjp2.dll No File CHR Plugin: (Silverlight Plug-In) - C:\Program Files (x86)\Microsoft Silverlight\4.1.10111.0\npctrl.dll No File CHR Plugin: (Default Plug-in) - default_plugin No File CHR Extension: (Avira SearchFree Toolbar plus Web Protection) - C:\Users\Vanessa\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaaaacalgebmfelllfiaoknifldpngjh [2013-09-17] CHR Extension: (Beat the Boot (von Google)) - C:\Users\Vanessa\AppData\Local\Google\Chrome\User Data\Default\Extensions\aidgmjkfmbhldhnhkopojimkhhhcpenl [2012-03-12] CHR Extension: (YouTube) - C:\Users\Vanessa\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2012-03-12] CHR Extension: (Tetris) - C:\Users\Vanessa\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfpkpcnigdggonhlcmbekffepnaflofk [2012-03-19] CHR Extension: (Google-Suche) - C:\Users\Vanessa\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2012-03-12] CHR Extension: (Chain Reaction) - C:\Users\Vanessa\AppData\Local\Google\Chrome\User Data\Default\Extensions\gemgfpodpjapjhfohdlibagceiknakpa [2012-03-12] CHR Extension: (The Elementals) - C:\Users\Vanessa\AppData\Local\Google\Chrome\User Data\Default\Extensions\hfhfehlnocjpbnbcabcjjnemkkkghaak [2012-03-12] CHR Extension: (LineBall) - C:\Users\Vanessa\AppData\Local\Google\Chrome\User Data\Default\Extensions\jeclmehkhpookgkhkecnaanahhoglakj [2012-03-19] CHR Extension: (Little Alchemy) - C:\Users\Vanessa\AppData\Local\Google\Chrome\User Data\Default\Extensions\knkapnclbofjjgicpkfoagdjohlfjhpd [2012-03-12] CHR Extension: (Frogger Classic) - C:\Users\Vanessa\AppData\Local\Google\Chrome\User Data\Default\Extensions\mamnieegbgfhklagjjbacjiidjojeogd [2012-03-12] CHR Extension: (Google Wallet) - C:\Users\Vanessa\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-08-22] CHR Extension: (Google Mail) - C:\Users\Vanessa\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2012-03-12] CHR HKLM-x32\...\Chrome\Extension: [aaaaacalgebmfelllfiaoknifldpngjh] - C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\ToolbarCR.crx [2014-02-20] CHR StartMenuInternet: Google Chrome - C:\Users\Vanessa\AppData\Local\Google\Chrome\Application\chrome.exe ==================== Services (Whitelisted) ================= S3 Adobe Version Cue CS4; C:\Program Files (x86)\Common Files\Adobe\Adobe Version Cue CS4\Server\bin\VersionCueCS4.exe [284016 2008-08-15] (Adobe Systems Incorporated) R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [440400 2014-02-20] (Avira Operations GmbH & Co. KG) R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [440400 2014-02-20] (Avira Operations GmbH & Co. KG) R2 AntiVirWebService; C:\Program Files (x86)\Avira\AntiVir Desktop\AVWEBGRD.EXE [1017424 2014-02-20] (Avira Operations GmbH & Co. KG) R2 APNMCP; C:\Program Files (x86)\AskPartnerNetwork\Toolbar\apnmcp.exe [166352 2014-02-13] (APN LLC.) R2 Atheros Bt&Wlan Coex Agent; C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe [138400 2011-03-13] (Atheros) R2 EpsonScanSvc; C:\Windows\system32\EscSvc64.exe [144560 2012-05-17] (Seiko Epson Corporation) R2 EPSON_PM_RPCV4_06; C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S60RPB.EXE [152640 2013-04-15] (SEIKO EPSON CORPORATION) S3 fussvc; C:\Program Files (x86)\Windows Kits\8.0\App Certification Kit\fussvc.exe [139776 2012-07-25] (Microsoft Corporation) S2 lxedCATSCustConnectService; C:\Windows\system32\spool\DRIVERS\x64\3\\lxedserv.exe [45736 2010-04-14] (Lexmark International, Inc.) R2 lxed_device; C:\Windows\system32\lxedcoms.exe [1052328 2010-04-14] ( ) R2 lxed_device; C:\Windows\SysWOW64\lxedcoms.exe [598696 2010-04-14] ( ) R2 msoidsvc; C:\Program Files\Common Files\Microsoft Shared\Microsoft Online Services\MSOIDSVC.EXE [2079520 2012-05-17] (Microsoft Corp.) R2 MSSQL$SQLEXPRESS; C:\Program Files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\sqlservr.exe [57617752 2009-03-30] (Microsoft Corporation) S4 SQLAgent$SQLEXPRESS; C:\Program Files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\SQLAGENT.EXE [427880 2009-03-30] (Microsoft Corporation) S3 Te.Service; C:\Program Files (x86)\Windows Kits\8.0\Testing\Runtimes\TAEF\Wex.Services.exe [126976 2012-07-25] (Microsoft Corporation) ==================== Drivers (Whitelisted) ==================== R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [108440 2013-12-17] (Avira Operations GmbH & Co. KG) R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [131576 2013-12-17] (Avira Operations GmbH & Co. KG) R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [28600 2013-11-26] (Avira Operations GmbH & Co. KG) R3 SNP2UVC; C:\Windows\System32\DRIVERS\snp2uvc.sys [1800832 2010-09-07] (Sonix Technology Co., Ltd.) S3 VSPerfDrv110; C:\Program Files (x86)\Microsoft Visual Studio 11.0\Team Tools\Performance Tools\x64\VSPerfDrv110.sys [70264 2012-07-26] (Microsoft Corporation) S3 NTGUARD; \??\C:\Program Files (x86)\IKARUS\anti.virus\bin\NTGUARD_X64.SYS [X] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-03-29 18:09 - 2014-03-29 18:12 - 00028706 _____ () C:\Users\Vanessa\Downloads\FRST.txt 2014-03-29 18:09 - 2014-03-29 18:09 - 00000000 ____D () C:\FRST 2014-03-29 18:08 - 2014-03-29 18:08 - 02157056 _____ (Farbar) C:\Users\Vanessa\Downloads\FRST64.exe 2014-03-29 17:26 - 2014-03-29 17:27 - 01950720 _____ () C:\Users\Vanessa\Downloads\adwcleaner_3.022.exe 2014-03-27 20:13 - 2014-03-27 20:14 - 01266347 _____ () C:\Users\Vanessa\Downloads\Personalverrechnung PPP.pptx 2014-03-27 10:41 - 2014-03-27 10:41 - 01643446 _____ () C:\Users\Vanessa\Downloads\Präsentation.pptx 2014-03-24 14:18 - 2014-03-24 14:18 - 00000351 _____ () C:\Users\Vanessa\Documents\Spiele - Verknüpfung.lnk 2014-03-23 13:01 - 2014-03-29 17:01 - 00000911 _____ () C:\Windows\Tasks\EPSON XP-215 217 Series Update {BE76F4A0-0502-4BBD-BB6E-B96FCAF86B16}.job 2014-03-23 13:01 - 2014-03-29 17:01 - 00000725 _____ () C:\Windows\Tasks\EPSON XP-215 217 Series Invitation {BE76F4A0-0502-4BBD-BB6E-B96FCAF86B16}.job 2014-03-23 13:01 - 2014-03-23 13:01 - 00003978 _____ () C:\Windows\System32\Tasks\EPSON XP-215 217 Series Update {BE76F4A0-0502-4BBD-BB6E-B96FCAF86B16} 2014-03-23 13:01 - 2014-03-23 13:01 - 00003792 _____ () C:\Windows\System32\Tasks\EPSON XP-215 217 Series Invitation {BE76F4A0-0502-4BBD-BB6E-B96FCAF86B16} 2014-03-23 13:00 - 2011-03-15 03:03 - 00083968 _____ (SEIKO EPSON CORPORATION) C:\Windows\system32\E_ID4BLGE.DLL 2014-03-23 13:00 - 2007-04-10 01:06 - 00010752 _____ (SEIKO EPSON CORP.) C:\Windows\system32\E_GCINST.DLL 2014-03-23 12:44 - 2014-03-23 12:44 - 00000930 _____ () C:\Users\Public\Desktop\EPSON Scan.lnk 2014-03-23 12:44 - 2014-03-23 12:44 - 00000123 _____ () C:\Users\Public\Desktop\Epson Connect Website.url 2014-03-23 12:44 - 2012-07-24 00:00 - 00466432 _____ (Seiko Epson Corporation) C:\Windows\system32\esxw2ud.dll 2014-03-23 12:44 - 2012-05-17 00:00 - 00144560 _____ (Seiko Epson Corporation) C:\Windows\system32\escsvc64.exe 2014-03-20 07:39 - 2014-03-20 07:39 - 00167776 _____ () C:\Users\Vanessa\Downloads\4422.tmp 2014-03-16 11:30 - 2014-03-19 12:28 - 00005148 _____ () C:\Windows\System32\Tasks\Microsoft Office 15 Sync Maintenance for Vanessa-PC-Vanessa Vanessa-PC 2014-03-14 08:25 - 2014-03-14 08:25 - 00650657 _____ () C:\Users\Vanessa\Downloads\lame3.99.5.zip 2014-03-13 08:02 - 2014-03-01 06:16 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2014-03-13 08:02 - 2014-03-01 05:58 - 02765824 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-03-13 08:02 - 2014-03-01 05:30 - 17074688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-03-13 08:02 - 2014-03-01 04:51 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2014-03-13 08:02 - 2014-03-01 04:47 - 02168320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2014-03-13 08:02 - 2014-03-01 04:43 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2014-03-13 08:02 - 2014-03-01 04:03 - 00524288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2014-03-13 08:02 - 2014-03-01 03:27 - 01156096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2014-03-13 08:01 - 2014-03-01 07:05 - 23133696 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-03-13 08:01 - 2014-03-01 06:17 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-03-13 08:01 - 2014-03-01 05:52 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2014-03-13 08:01 - 2014-03-01 05:51 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2014-03-13 08:01 - 2014-03-01 05:42 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2014-03-13 08:01 - 2014-03-01 05:40 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2014-03-13 08:01 - 2014-03-01 05:37 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2014-03-13 08:01 - 2014-03-01 05:33 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2014-03-13 08:01 - 2014-03-01 05:33 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2014-03-13 08:01 - 2014-03-01 05:32 - 00708608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2014-03-13 08:01 - 2014-03-01 05:23 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2014-03-13 08:01 - 2014-03-01 05:17 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2014-03-13 08:01 - 2014-03-01 05:11 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2014-03-13 08:01 - 2014-03-01 05:02 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2014-03-13 08:01 - 2014-03-01 04:54 - 05768704 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-03-13 08:01 - 2014-03-01 04:52 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2014-03-13 08:01 - 2014-03-01 04:43 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2014-03-13 08:01 - 2014-03-01 04:42 - 00627200 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-03-13 08:01 - 2014-03-01 04:40 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2014-03-13 08:01 - 2014-03-01 04:38 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2014-03-13 08:01 - 2014-03-01 04:37 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2014-03-13 08:01 - 2014-03-01 04:35 - 02041856 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2014-03-13 08:01 - 2014-03-01 04:18 - 13051904 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-03-13 08:01 - 2014-03-01 04:16 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2014-03-13 08:01 - 2014-03-01 04:14 - 04244480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2014-03-13 08:01 - 2014-03-01 04:10 - 02334208 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-03-13 08:01 - 2014-03-01 04:00 - 01964032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2014-03-13 08:01 - 2014-03-01 03:57 - 11266048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2014-03-13 08:01 - 2014-03-01 03:38 - 01393664 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-03-13 08:01 - 2014-03-01 03:32 - 01820160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2014-03-13 08:01 - 2014-03-01 03:25 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2014-03-13 08:01 - 2014-03-01 03:25 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2014-03-13 08:00 - 2014-01-28 03:32 - 00228864 _____ (Microsoft Corporation) C:\Windows\system32\wwansvc.dll 2014-03-13 07:56 - 2014-01-29 03:32 - 00484864 _____ (Microsoft Corporation) C:\Windows\system32\wer.dll 2014-03-13 07:56 - 2014-01-29 03:06 - 00381440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wer.dll 2014-03-13 07:55 - 2014-02-07 02:23 - 03156480 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2014-03-13 07:51 - 2014-02-04 03:32 - 01424384 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll 2014-03-13 07:51 - 2014-02-04 03:32 - 00624128 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll 2014-03-13 07:51 - 2014-02-04 03:04 - 01230336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll 2014-03-13 07:51 - 2014-02-04 03:04 - 00509440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll 2014-03-12 16:54 - 2014-03-12 17:07 - 00000000 ____D () C:\Users\Vanessa\Documents\EPSON SCAN 2014-03-11 21:57 - 2014-03-11 21:58 - 08255594 _____ () C:\Users\Vanessa\Downloads\Joomla_2.5.19-Stable-Full_Package_German (1).zip 2014-03-11 09:55 - 2014-03-11 09:56 - 08255594 _____ () C:\Users\Vanessa\Downloads\Joomla_2.5.19-Stable-Full_Package_German.zip 2014-03-07 18:01 - 2014-03-07 18:01 - 00000000 ____D () C:\Users\Vanessa\Documents\joomla 2014-03-05 12:18 - 2013-12-21 10:53 - 00548864 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2014-03-05 12:18 - 2013-12-21 09:56 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2014-03-03 20:04 - 2014-03-03 20:04 - 00000000 ____D () C:\Users\Vanessa\AppData\Local\Skype 2014-03-03 20:03 - 2014-03-03 20:03 - 00002699 _____ () C:\Users\Public\Desktop\Skype.lnk 2014-03-03 20:03 - 2014-03-03 20:03 - 00000000 ___RD () C:\Program Files (x86)\Skype 2014-03-03 11:05 - 2014-03-03 11:05 - 02150536 _____ (MGTEK) C:\Users\Vanessa\Downloads\adblockie.exe 2014-03-03 08:28 - 2014-03-03 08:28 - 00256439 _____ () C:\Users\Vanessa\Downloads\Frauenleben - Frauenrechte_Präsentation.pptx 2014-02-28 08:02 - 2014-02-28 08:02 - 00000943 _____ () C:\Users\Vanessa\Desktop\Audacity.lnk 2014-02-28 08:02 - 2014-02-28 08:02 - 00000943 _____ () C:\Users\UpdatusUser\Desktop\Audacity.lnk 2014-02-28 08:02 - 2014-02-28 08:02 - 00000943 _____ () C:\Users\Gast\Desktop\Audacity.lnk 2014-02-28 08:02 - 2014-02-28 08:02 - 00000000 ____D () C:\Program Files (x86)\Audacity ==================== One Month Modified Files and Folders ======= 2014-03-29 18:12 - 2014-03-29 18:09 - 00028706 _____ () C:\Users\Vanessa\Downloads\FRST.txt 2014-03-29 18:11 - 2009-07-14 05:45 - 00021888 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2014-03-29 18:11 - 2009-07-14 05:45 - 00021888 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2014-03-29 18:10 - 2012-03-11 22:24 - 01230624 _____ () C:\Windows\WindowsUpdate.log 2014-03-29 18:09 - 2014-03-29 18:09 - 00000000 ____D () C:\FRST 2014-03-29 18:08 - 2014-03-29 18:08 - 02157056 _____ (Farbar) C:\Users\Vanessa\Downloads\FRST64.exe 2014-03-29 18:07 - 2013-02-27 19:40 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-03-29 18:07 - 2012-09-21 10:20 - 00000000 ____D () C:\Users\Vanessa\AppData\Roaming\Dropbox 2014-03-29 18:06 - 2012-09-21 10:23 - 00000000 ___RD () C:\Users\Vanessa\Dropbox 2014-03-29 18:03 - 2013-12-12 10:34 - 00000000 ____D () C:\Users\Vanessa\AppData\Roaming\newnext.me 2014-03-29 18:02 - 2013-12-12 19:04 - 00001108 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2014-03-29 18:02 - 2012-03-12 17:10 - 00065666 _____ () C:\ProgramData\lxedscan.log 2014-03-29 18:01 - 2013-09-17 09:33 - 00013976 _____ () C:\Windows\setupact.log 2014-03-29 18:01 - 2009-07-14 06:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-03-29 18:00 - 2014-01-20 19:20 - 00000000 ____D () C:\Program Files (x86)\EPSON Software 2014-03-29 18:00 - 2013-09-17 09:33 - 00046440 _____ () C:\Windows\PFRO.log 2014-03-29 17:55 - 2012-11-28 12:43 - 00001128 _____ () C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-402389067-2568746762-3875608856-1000UA.job 2014-03-29 17:40 - 2013-12-12 19:04 - 00001112 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2014-03-29 17:27 - 2014-03-29 17:26 - 01950720 _____ () C:\Users\Vanessa\Downloads\adwcleaner_3.022.exe 2014-03-29 17:01 - 2014-03-23 13:01 - 00000911 _____ () C:\Windows\Tasks\EPSON XP-215 217 Series Update {BE76F4A0-0502-4BBD-BB6E-B96FCAF86B16}.job 2014-03-29 17:01 - 2014-03-23 13:01 - 00000725 _____ () C:\Windows\Tasks\EPSON XP-215 217 Series Invitation {BE76F4A0-0502-4BBD-BB6E-B96FCAF86B16}.job 2014-03-29 16:46 - 2012-11-28 12:43 - 00001076 _____ () C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-402389067-2568746762-3875608856-1000Core.job 2014-03-29 16:38 - 2011-04-12 08:43 - 00765168 _____ () C:\Windows\system32\perfh007.dat 2014-03-29 16:38 - 2011-04-12 08:43 - 00174366 _____ () C:\Windows\system32\perfc007.dat 2014-03-29 16:38 - 2009-07-14 06:13 - 01804654 _____ () C:\Windows\system32\PerfStringBackup.INI 2014-03-28 09:28 - 2012-03-12 18:13 - 00000000 ____D () C:\Users\Vanessa\AppData\Local\CrashDumps 2014-03-27 20:14 - 2014-03-27 20:13 - 01266347 _____ () C:\Users\Vanessa\Downloads\Personalverrechnung PPP.pptx 2014-03-27 19:35 - 2014-01-27 20:12 - 00000000 ____D () C:\Users\Vanessa\AppData\Local\917560E0-E9D5-435C-8FC4-EF8AB13D9664.aplzod 2014-03-27 10:41 - 2014-03-27 10:41 - 01643446 _____ () C:\Users\Vanessa\Downloads\Präsentation.pptx 2014-03-27 07:35 - 2013-12-12 19:04 - 00004108 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA 2014-03-27 07:35 - 2013-12-12 19:04 - 00003856 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore 2014-03-26 12:50 - 2012-11-28 12:43 - 00004102 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-402389067-2568746762-3875608856-1000UA 2014-03-26 12:50 - 2012-11-28 12:43 - 00003706 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-402389067-2568746762-3875608856-1000Core 2014-03-24 14:18 - 2014-03-24 14:18 - 00000351 _____ () C:\Users\Vanessa\Documents\Spiele - Verknüpfung.lnk 2014-03-24 12:30 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\rescache 2014-03-24 07:49 - 2012-05-15 07:42 - 03283968 ___SH () C:\Users\Vanessa\Desktop\Thumbs.db 2014-03-23 13:02 - 2014-01-20 19:19 - 00000000 ____D () C:\Program Files (x86)\epson 2014-03-23 13:02 - 2012-03-12 00:01 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information 2014-03-23 13:01 - 2014-03-23 13:01 - 00003978 _____ () C:\Windows\System32\Tasks\EPSON XP-215 217 Series Update {BE76F4A0-0502-4BBD-BB6E-B96FCAF86B16} 2014-03-23 13:01 - 2014-03-23 13:01 - 00003792 _____ () C:\Windows\System32\Tasks\EPSON XP-215 217 Series Invitation {BE76F4A0-0502-4BBD-BB6E-B96FCAF86B16} 2014-03-23 12:44 - 2014-03-23 12:44 - 00000930 _____ () C:\Users\Public\Desktop\EPSON Scan.lnk 2014-03-23 12:44 - 2014-03-23 12:44 - 00000123 _____ () C:\Users\Public\Desktop\Epson Connect Website.url 2014-03-23 12:44 - 2014-01-20 19:20 - 00001258 _____ () C:\Users\Public\Desktop\Epson-Handbücher.lnk 2014-03-22 14:25 - 2009-07-14 06:32 - 00000000 ____D () C:\Windows\system32\FxsTmp 2014-03-20 07:39 - 2014-03-20 07:39 - 00167776 _____ () C:\Users\Vanessa\Downloads\4422.tmp 2014-03-19 12:28 - 2014-03-16 11:30 - 00005148 _____ () C:\Windows\System32\Tasks\Microsoft Office 15 Sync Maintenance for Vanessa-PC-Vanessa Vanessa-PC 2014-03-19 10:24 - 2009-07-14 05:45 - 03061824 _____ () C:\Windows\system32\FNTCACHE.DAT 2014-03-19 10:22 - 2013-03-19 07:36 - 00000000 ____D () C:\Program Files\Microsoft Silverlight 2014-03-19 10:22 - 2013-03-19 07:36 - 00000000 ____D () C:\Program Files (x86)\Microsoft Silverlight 2014-03-19 10:20 - 2012-03-12 00:27 - 00000000 ____D () C:\ProgramData\Microsoft Help 2014-03-19 10:18 - 2009-07-14 03:34 - 00000478 _____ () C:\Windows\win.ini 2014-03-19 10:15 - 2013-08-16 16:27 - 00000000 ____D () C:\Windows\system32\MRT 2014-03-19 10:12 - 2012-03-11 23:20 - 90015360 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2014-03-18 19:25 - 2012-05-22 14:22 - 00000000 ___RD () C:\Users\Vanessa\Desktop\x3 2014-03-15 19:37 - 2012-03-12 09:52 - 00002368 _____ () C:\Users\Vanessa\Desktop\Google Chrome.lnk 2014-03-14 12:10 - 2013-08-11 16:04 - 00000000 ____D () C:\Users\Vanessa\Documents\V. HAK 2014-03-14 08:25 - 2014-03-14 08:25 - 00650657 _____ () C:\Users\Vanessa\Downloads\lame3.99.5.zip 2014-03-12 17:07 - 2014-03-12 16:54 - 00000000 ____D () C:\Users\Vanessa\Documents\EPSON SCAN 2014-03-12 16:54 - 2012-03-11 22:29 - 00000000 ____D () C:\Users\Vanessa 2014-03-12 16:53 - 2012-03-11 22:29 - 00000000 ____D () C:\Users\Vanessa\AppData\Local\VirtualStore 2014-03-12 16:45 - 2013-02-27 19:41 - 00003822 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater 2014-03-12 16:45 - 2013-02-27 19:40 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2014-03-12 16:45 - 2012-03-11 22:46 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2014-03-11 22:21 - 2012-03-12 09:57 - 00000000 ____D () C:\Users\Vanessa\AppData\Roaming\Apple Computer 2014-03-11 21:58 - 2014-03-11 21:57 - 08255594 _____ () C:\Users\Vanessa\Downloads\Joomla_2.5.19-Stable-Full_Package_German (1).zip 2014-03-11 09:56 - 2014-03-11 09:55 - 08255594 _____ () C:\Users\Vanessa\Downloads\Joomla_2.5.19-Stable-Full_Package_German.zip 2014-03-10 19:20 - 2012-11-20 10:07 - 00000000 ____D () C:\Users\Vanessa\AppData\Roaming\Skype 2014-03-10 14:34 - 2012-03-12 09:01 - 01778934 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI 2014-03-07 18:01 - 2014-03-07 18:01 - 00000000 ____D () C:\Users\Vanessa\Documents\joomla 2014-03-07 16:58 - 2013-11-20 12:45 - 00000000 ____D () C:\Users\Vanessa\Desktop\Bewerbung 2014-03-07 09:28 - 2012-04-26 12:00 - 00000000 ____D () C:\Users\Vanessa\.VirtualBox 2014-03-03 20:04 - 2014-03-03 20:04 - 00000000 ____D () C:\Users\Vanessa\AppData\Local\Skype 2014-03-03 20:03 - 2014-03-03 20:03 - 00002699 _____ () C:\Users\Public\Desktop\Skype.lnk 2014-03-03 20:03 - 2014-03-03 20:03 - 00000000 ___RD () C:\Program Files (x86)\Skype 2014-03-03 20:03 - 2012-11-20 10:06 - 00000000 ____D () C:\ProgramData\Skype 2014-03-03 11:05 - 2014-03-03 11:05 - 02150536 _____ (MGTEK) C:\Users\Vanessa\Downloads\adblockie.exe 2014-03-03 08:28 - 2014-03-03 08:28 - 00256439 _____ () C:\Users\Vanessa\Downloads\Frauenleben - Frauenrechte_Präsentation.pptx 2014-03-01 07:05 - 2014-03-13 08:01 - 23133696 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-03-01 06:17 - 2014-03-13 08:01 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-03-01 06:16 - 2014-03-13 08:02 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2014-03-01 05:58 - 2014-03-13 08:02 - 02765824 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-03-01 05:52 - 2014-03-13 08:01 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2014-03-01 05:51 - 2014-03-13 08:01 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2014-03-01 05:42 - 2014-03-13 08:01 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2014-03-01 05:40 - 2014-03-13 08:01 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2014-03-01 05:37 - 2014-03-13 08:01 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2014-03-01 05:33 - 2014-03-13 08:01 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2014-03-01 05:33 - 2014-03-13 08:01 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2014-03-01 05:32 - 2014-03-13 08:01 - 00708608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2014-03-01 05:30 - 2014-03-13 08:02 - 17074688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-03-01 05:23 - 2014-03-13 08:01 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2014-03-01 05:17 - 2014-03-13 08:01 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2014-03-01 05:11 - 2014-03-13 08:01 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2014-03-01 05:02 - 2014-03-13 08:01 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2014-03-01 04:54 - 2014-03-13 08:01 - 05768704 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-03-01 04:52 - 2014-03-13 08:01 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2014-03-01 04:51 - 2014-03-13 08:02 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2014-03-01 04:47 - 2014-03-13 08:02 - 02168320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2014-03-01 04:43 - 2014-03-13 08:02 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2014-03-01 04:43 - 2014-03-13 08:01 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2014-03-01 04:42 - 2014-03-13 08:01 - 00627200 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-03-01 04:40 - 2014-03-13 08:01 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2014-03-01 04:38 - 2014-03-13 08:01 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2014-03-01 04:37 - 2014-03-13 08:01 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2014-03-01 04:35 - 2014-03-13 08:01 - 02041856 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2014-03-01 04:18 - 2014-03-13 08:01 - 13051904 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-03-01 04:16 - 2014-03-13 08:01 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2014-03-01 04:14 - 2014-03-13 08:01 - 04244480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2014-03-01 04:10 - 2014-03-13 08:01 - 02334208 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-03-01 04:03 - 2014-03-13 08:02 - 00524288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2014-03-01 04:00 - 2014-03-13 08:01 - 01964032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2014-03-01 03:57 - 2014-03-13 08:01 - 11266048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2014-03-01 03:38 - 2014-03-13 08:01 - 01393664 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-03-01 03:32 - 2014-03-13 08:01 - 01820160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2014-03-01 03:27 - 2014-03-13 08:02 - 01156096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2014-03-01 03:25 - 2014-03-13 08:01 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2014-03-01 03:25 - 2014-03-13 08:01 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2014-02-28 09:36 - 2012-10-23 09:48 - 00000000 ____D () C:\Users\Vanessa\.freemind 2014-02-28 08:02 - 2014-02-28 08:02 - 00000943 _____ () C:\Users\Vanessa\Desktop\Audacity.lnk 2014-02-28 08:02 - 2014-02-28 08:02 - 00000943 _____ () C:\Users\UpdatusUser\Desktop\Audacity.lnk 2014-02-28 08:02 - 2014-02-28 08:02 - 00000943 _____ () C:\Users\Gast\Desktop\Audacity.lnk 2014-02-28 08:02 - 2014-02-28 08:02 - 00000000 ____D () C:\Program Files (x86)\Audacity Some content of TEMP: ==================== C:\Users\Vanessa\AppData\Local\Temp\avgnt.exe C:\Users\Vanessa\AppData\Local\Temp\DownloadManager.exe C:\Users\Vanessa\AppData\Local\Temp\eauninstall.exe C:\Users\Vanessa\AppData\Local\Temp\htmlayout.dll C:\Users\Vanessa\AppData\Local\Temp\jre-7u45-windows-i586-iftw.exe C:\Users\Vanessa\AppData\Local\Temp\Launcher_i188825670.exe C:\Users\Vanessa\AppData\Local\Temp\Quarantine.exe C:\Users\Vanessa\AppData\Local\Temp\Re-markit_2040-4030.exe C:\Users\Vanessa\AppData\Local\Temp\setup__3635.exe C:\Users\Vanessa\AppData\Local\Temp\The Sims 2_uninst.exe C:\Users\Vanessa\AppData\Local\Temp\tmp1322.exe C:\Users\Vanessa\AppData\Local\Temp\tmp5C1E.exe C:\Users\Vanessa\AppData\Local\Temp\tmp804D.exe C:\Users\Vanessa\AppData\Local\Temp\tmpA225.exe C:\Users\Vanessa\AppData\Local\Temp\tmpA2A4.tmp.exe C:\Users\Vanessa\AppData\Local\Temp\tmpA2BD.exe C:\Users\Vanessa\AppData\Local\Temp\toolbar148995182.exe C:\Users\Vanessa\AppData\Local\Temp\toolbar149111090.exe C:\Users\Vanessa\AppData\Local\Temp\uninstall149128282.exe C:\Users\Vanessa\AppData\Local\Temp\uninstall149137501.exe C:\Users\Vanessa\AppData\Local\Temp\uninstall149137533.exe C:\Users\Vanessa\AppData\Local\Temp\xmlUpdater.exe ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\rpcss.dll => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2013-12-18 10:01 ==================== End Of Log ============================ --- --- --- |
30.03.2014, 10:44 | #6 |
| TR/Dropper.MSIL.Gen aus http://sharefiles.com/getdistr/oxy/Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 13-03-2014 Ran by Vanessa at 2014-03-29 18:13:34 Running from C:\Users\Vanessa\Downloads Boot Mode: Normal ========================================================== ==================== Security Center ======================== AV: Avira Desktop (Disabled - Up to date) {4D041356-F94D-285F-8768-AAE50FA36859} AS: Avira Desktop (Disabled - Up to date) {F665F2B2-DF77-27D1-BDD8-9197742422E4} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installed Programs ====================== Tools for .Net 3.5 - DEU Lang Pack (x32 Version: 3.11.50727 - Microsoft Corporation) Hidden Tools for .Net 3.5 (x32 Version: 3.11.50727 - Microsoft Corporation) Hidden Acrobat.com (HKLM-x32\...\com.adobe.mauby.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 1.2.443 - Adobe Systems Incorporated) Acrobat.com (x32 Version: 0.0.0 - Adobe Systems Incorporated) Hidden Adobe Acrobat 9 Pro - English, Français, Deutsch (x32 Version: 9.5.5 - Adobe Systems) Hidden Adobe Acrobat 9.5.5 - CPSID_83708 (HKLM-x32\...\{AC76BA86-1033-F400-7760-000000000004}_955) (Version: - Adobe Systems Incorporated) Adobe After Effects CS4 (x32 Version: 9 - Adobe Systems Incorporated) Hidden Adobe After Effects CS4 Presets (x32 Version: 9 - Adobe Systems Incorporated) Hidden Adobe After Effects CS4 Template Projects & Footage (x32 Version: 9 - Adobe Systems Incorporated) Hidden Adobe After Effects CS4 Third Party Content (x32 Version: 9 - Adobe Systems Incorporated) Hidden Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 1.1.0.5790 - Adobe Systems Inc.) Adobe AIR (x32 Version: 1.1.0.5790 - Adobe Systems Inc.) Hidden Adobe Anchor Service CS4 (x32 Version: 2.0 - Adobe Systems Incorporated) Hidden Adobe Anchor Service x64 CS4 (Version: 2.0 - Adobe Systems Incorporated) Hidden Adobe Asset Services CS4 (x32 Version: 4 - Adobe Systems Incorporated) Hidden Adobe Bridge CS4 (x32 Version: 3 - Adobe Systems Incorporated) Hidden Adobe CMaps CS4 (x32 Version: 2.0 - Adobe Systems Incorporated) Hidden Adobe CMaps x64 CS4 (Version: 2.0 - Adobe Systems Incorporated) Hidden Adobe Color - Photoshop Specific CS4 (x32 Version: 2.0 - Adobe Systems Incorporated) Hidden Adobe Color EU Recommended Settings CS4 (x32 Version: 2.0 - Adobe Systems Incorporated) Hidden Adobe Color JA Extra Settings CS4 (x32 Version: 2.0 - Adobe Systems Incorporated) Hidden Adobe Color NA Extra Settings CS4 (x32 Version: 2.0 - Adobe Systems Incorporated) Hidden Adobe Color Video Profiles AE CS4 (x32 Version: 2.0 - Adobe Systems Incorporated) Hidden Adobe Color Video Profiles CS CS4 (x32 Version: 2.0 - Adobe Systems Incorporated) Hidden Adobe Contribute CS4 (x32 Version: 5.0 - Adobe Systems Incorporated) Hidden Adobe Creative Suite 4 Master Collection (HKLM-x32\...\Adobe_7e74552a59eaf9fafd13f90894ac9bd) (Version: 4.0 - Adobe Systems Incorporated) Adobe Creative Suite 4 Master Collection (x32 Version: 4.0 - Adobe Systems Incorporated) Hidden Adobe CS4 American English Speech Analysis Models (x32 Version: 1 - Adobe Systems Incorporated) Hidden Adobe CS4 French Speech Analysis Models (x32 Version: 1 - Adobe Systems Incorporated) Hidden Adobe CS4 German Speech Analysis Models (x32 Version: 1 - Adobe Systems Incorporated) Hidden Adobe CS4 International English Speech Analysis Models (x32 Version: 1 - Adobe Systems Incorporated) Hidden Adobe CS4 Italian Speech Analysis Models (x32 Version: 1 - Adobe Systems Incorporated) Hidden Adobe CS4 Japanese Speech Analysis Models (x32 Version: 1 - Adobe Systems Incorporated) Hidden Adobe CS4 Korean Speech Analysis Models (x32 Version: 1 - Adobe Systems Incorporated) Hidden Adobe CS4 Spanish Speech Analysis Models (x32 Version: 1 - Adobe Systems Incorporated) Hidden Adobe CSI CS4 (x32 Version: 1 - Adobe Systems Incorporated) Hidden Adobe CSI CS4 x64 (Version: 1 - Adobe Systems Incorporated) Hidden Adobe Default Language CS4 (x32 Version: 2.0 - Adobe Systems Incorporated) Hidden Adobe Device Central CS4 (x32 Version: 2 - Adobe Systems Incorporated) Hidden Adobe Dreamweaver CS4 (x32 Version: 10.0 - Adobe Systems Incorporated) Hidden Adobe Drive CS4 (x32 Version: 1 - Adobe Systems Incorporated) Hidden Adobe Drive CS4 x64 (Version: 1 - Adobe Systems Incorporated) Hidden Adobe Dynamiclink Support (x32 Version: 1 - Adobe Systems Incorporated) Hidden Adobe Encore CS4 (x32 Version: 4 - Adobe Systems Incorporated) Hidden Adobe Encore CS4 Codecs (x32 Version: 4 - Adobe Systems Incorporated) Hidden Adobe Encore CS4 Library (x32 Version: 4 - Adobe Systems Incorporated) Hidden Adobe ExtendScript Toolkit CS4 (x32 Version: 3.0.0 - Adobe Systems Incorporated) Hidden Adobe Extension Manager CS4 (x32 Version: 2.0 - Adobe Systems Incorporated) Hidden Adobe Fireworks CS4 (x32 Version: 10.0 - Adobe Systems Incorporated) Hidden Adobe Flash CS4 (x32 Version: 10.0 - Adobe Systems Incorporated) Hidden Adobe Flash CS4 Extension - Flash Lite STI others (x32 Version: 3.0 - Adobe Systems Incorporated) Hidden Adobe Flash CS4 STI-other (x32 Version: 10.0 - Adobe Systems Incorporated) Hidden Adobe Flash Player 10 Plugin (HKLM-x32\...\{03DEEAD2-F3B7-45BF-9006-A25D015F00D2}) (Version: 10.0.2.54 - Adobe Systems, Inc.) Adobe Flash Player 12 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 12.0.0.77 - Adobe Systems Incorporated) Adobe Fonts All (x32 Version: 2.0 - Adobe Systems Incorporated) Hidden Adobe Fonts All x64 (Version: 2.0 - Adobe Systems Incorporated) Hidden Adobe Illustrator CS4 (x32 Version: 14.0 - Adobe Systems Incorporated) Hidden Adobe InDesign CS4 (x32 Version: 6.0 - Adobe Systems Incorporated) Hidden Adobe InDesign CS4 Application Feature Set Files (Roman) (x32 Version: 6.0 - Adobe Systems Incorporated) Hidden Adobe InDesign CS4 Common Base Files (x32 Version: 6.0 - Adobe Systems Incorporated) Hidden Adobe InDesign CS4 Icon Handler (x32 Version: 6.0 - Adobe Systems Incorporated) Hidden Adobe InDesign CS4 Icon Handler x64 (Version: 6.0 - Adobe Systems Incorporated) Hidden Adobe Linguistics CS4 (x32 Version: 4.0.0 - Adobe Systems Incorporated) Hidden Adobe Linguistics CS4 x64 (Version: 4.0.0 - Adobe Systems Incorporated) Hidden Adobe Media Encoder CS4 (x32 Version: 1.0 - Adobe Systems Incorporated) Hidden Adobe Media Encoder CS4 Additional Exporter (x32 Version: 1.0 - Adobe Systems Incorporated) Hidden Adobe Media Encoder CS4 Dolby (x32 Version: 1.0 - Adobe Systems Incorporated) Hidden Adobe Media Encoder CS4 Exporter (x32 Version: 1.0 - Adobe Systems Incorporated) Hidden Adobe Media Encoder CS4 Importer (x32 Version: 1.0 - Adobe Systems Incorporated) Hidden Adobe Media Player (HKLM-x32\...\com.adobe.amp.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 1.1 - Adobe Systems Incorporated) Adobe Media Player (x32 Version: 0.0.0 - Adobe Systems Incorporated) Hidden Adobe MotionPicture Color Files CS4 (x32 Version: 2.0 - Adobe Systems Incorporated) Hidden Adobe OnLocation CS4 (x32 Version: 4 - Adobe Systems Incorporated) Hidden Adobe Output Module (x32 Version: 2.0 - Adobe Systems Incorporated) Hidden Adobe PDF Library Files CS4 (x32 Version: 9.0 - Adobe Systems Incorporated) Hidden Adobe PDF Library Files x64 CS4 (Version: 9.0 - Adobe Systems Incorporated) Hidden Adobe Photoshop CS4 (64 Bit) (Version: 11.0 - Adobe Systems Incorporated) Hidden Adobe Photoshop CS4 (x32 Version: 11.0 - Adobe Systems Incorporated) Hidden Adobe Photoshop CS4 Support (x32 Version: 11.0 - Adobe Systems Incorporated) Hidden Adobe Premiere Pro CS4 (x32 Version: 4 - Adobe Systems Incorporated) Hidden Adobe Premiere Pro CS4 Functional Content (x32 Version: 4 - Adobe Systems Incorporated) Hidden Adobe Premiere Pro CS4 Third Party Content (x32 Version: 4 - Adobe Systems Incorporated) Hidden Adobe Reader X (10.1.9) - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AA1000000001}) (Version: 10.1.9 - Adobe Systems Incorporated) Adobe Search for Help (x32 Version: 1.0 - Adobe Systems Incorporated) Hidden Adobe Service Manager Extension (x32 Version: 1.0 - Adobe Systems Incorporated) Hidden Adobe Setup (x32 Version: 2.0 - Adobe Systems Incorporated) Hidden Adobe SGM CS4 (x32 Version: 3.0 - Adobe Systems Incorporated) Hidden Adobe Shockwave Player 12.0 (HKLM-x32\...\Adobe Shockwave Player) (Version: 12.0.2.122 - Adobe Systems, Inc.) Adobe SING CS4 (x32 Version: 2.0 - Adobe Systems Incorporated) Hidden Adobe Soundbooth CS4 (x32 Version: 2 - Adobe Systems Incorporated) Hidden Adobe Soundbooth CS4 Codecs (x32 Version: 2 - Adobe Systems Incorporated) Hidden Adobe Type Support CS4 (x32 Version: 9.0 - Adobe Systems Incorporated) Hidden Adobe Type Support x64 CS4 (Version: 9.0 - Adobe Systems Incorporated) Hidden Adobe Update Manager CS4 (x32 Version: 6.0.0 - Adobe Systems Incorporated) Hidden Adobe Version Cue CS4 Server (x32 Version: 4.0 - Adobe Systems Incorporated) Hidden Adobe WinSoft Linguistics Plugin (x32 Version: 1.1 - Adobe Systems Incorporated) Hidden Adobe WinSoft Linguistics Plugin x64 (Version: 1.1 - Adobe Systems Incorporated) Hidden Adobe XMP Panels CS4 (x32 Version: 2.0 - Adobe Systems Incorporated) Hidden AdobeColorCommonSetCMYK (x32 Version: 2.0 - Adobe Systems Incorporated) Hidden AdobeColorCommonSetRGB (x32 Version: 2.0 - Adobe Systems Incorporated) Hidden Apple Application Support (HKLM-x32\...\{A922C4B7-50E0-4787-A94C-59DBF3C65DBE}) (Version: 3.0 - Apple Inc.) Apple Mobile Device Support (HKLM\...\{FE86CB0C-FCB3-4358-B4B0-B0A41E33B3DD}) (Version: 7.1.0.32 - Apple Inc.) Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.) Asmedia ASM104x USB 3.0 Host Controller Driver (HKLM-x32\...\{E4FB0B39-C991-4EE7-95DD-1A1A7857D33D}) (Version: 1.12.5.0 - Asmedia Technology) ASUS LifeFrame3 (HKLM-x32\...\{1DBD1F12-ED93-49C0-A7CC-56CBDE488158}) (Version: 3.0.29 - ASUS) ASUS Virtual Camera (HKLM-x32\...\{EC8BD21F-0CA0-4BBF-97D9-4A52B30041A1}) (Version: 1.0.21 - asus) ATK Package (HKLM-x32\...\{AB5C933E-5C7D-4D30-B314-9C83A49B94BE}) (Version: 1.0.0027 - ASUS) Audacity 1.2.6 (HKLM-x32\...\Audacity_is1) (Version: - ) Avira Free Antivirus (HKLM-x32\...\Avira AntiVir Desktop) (Version: 14.0.3.350 - Avira) Avira SearchFree Toolbar (HKLM-x32\...\{41564952-412D-5637-00A7-A758B70C0A03}) (Version: 12.10.3.4487 - APN, LLC) Bing Bar (HKLM-x32\...\{449CE12D-E2C7-4B97-B19E-55D163EA9435}) (Version: 7.0.619.0 - Microsoft Corporation) Blend for Visual Studio 2012 (x32 Version: 5.0.30709.0 - Microsoft Corporation) Hidden Blend for Visual Studio 2012 DEU resources (x32 Version: 5.0.30709.0 - Microsoft Corporation) Hidden Bluetooth Win7 Suite (64) (HKLM\...\{230D1595-57DA-4933-8C4E-375797EBB7E1}) (Version: 7.2.0.65 - Atheros Communications) Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.) CCleaner (HKLM\...\CCleaner) (Version: 4.05 - Piriform) Connect (x32 Version: 1.0.0.1 - Adobe Systems Incorporated) Hidden Crystal Reports for Visual Studio (x32 Version: 12.51.0.240 - SAP) Hidden Definition Update for Microsoft Office 2010 (KB982726) 32-Bit Edition (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{92C42EDD-6524-4577-B2EB-6C68C63B6D4A}) (Version: - Microsoft) Definition Update for Microsoft Office 2013 (KB2760587) 32-Bit Edition (HKLM-x32\...\{90150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUS_{CD3C2621-B611-4A30-BB37-81CA880AB895}) (Version: - Microsoft) Definition Update for Microsoft Office 2013 (KB2760587) 32-Bit Edition (HKLM-x32\...\{91150000-003B-0000-0000-0000000FF1CE}_Office15.PRJPROR_{CD3C2621-B611-4A30-BB37-81CA880AB895}) (Version: - Microsoft) Definition Update for Microsoft Office 2013 (KB2760587) 32-Bit Edition (HKLM-x32\...\{91150000-0051-0000-0000-0000000FF1CE}_Office15.VISPROR_{CD3C2621-B611-4A30-BB37-81CA880AB895}) (Version: - Microsoft) Devenv-Ressourcen für Microsoft Visual Studio 2012 (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Die Sims™ 3 (HKLM-x32\...\{C05D8CDB-417D-4335-A38C-A0659EDFD6B8}) (Version: 1.54.95 - Electronic Arts) Die Sims™ 3 Diesel Accessoires (HKLM-x32\...\{1C9B6173-6DC9-4EEE-9EFC-6BA115CFBE43}) (Version: 14.0.48 - Electronic Arts) Die Sims™ 3 Einfach tierisch (HKLM-x32\...\{C12631C6-804D-4B32-B0DD-8A496462F106}) (Version: 10.0.96 - Electronic Arts) Die Sims™ 3 Inselparadies (HKLM-x32\...\{DB21639E-FE55-432C-BCA2-0C5249E3F79E}) (Version: 19.0.101 - Electronic Arts) Die Sims™ 3 Jahreszeiten (HKLM-x32\...\{3DE92282-CB49-434F-81BF-94E5B380E889}) (Version: 16.0.136 - Electronic Arts) Die Sims™ 3 Late Night (HKLM-x32\...\{45057FCE-5784-48BE-8176-D9D00AF56C3C}) (Version: 6.0.81 - Electronic Arts) Die Sims™ 3 Luxus-Accessoires (HKLM-x32\...\{71828142-5A24-4BD0-97E7-976DA08CE6CF}) (Version: 3.0.38 - Electronic Arts) Die Sims™ 3 Traumkarrieren (HKLM-x32\...\{910F4A29-1134-49E0-AD8B-56E4A3152BD1}) (Version: 4.0.87 - Electronic Arts) Die Sims™ 3 Wildes Studentenleben (HKLM-x32\...\{F26DE8EF-F2CF-40DC-8CDA-CC0D82D11B36}) (Version: 18.0.126 - Electronic Arts) Dotfuscator and Analytics Community Edition (x32 Version: 5.5.4521.29298 - PreEmptive Solutions) Hidden Dotfuscator and Analytics Community Edition Language Pack (x32 Version: 5.5.4521.29298 - PreEmptive Solutions) Hidden Dotfuscator Software Services - Community Edition (HKLM-x32\...\{41B31ABE-5A6E-498A-8F28-3BA3B8779A41}) (Version: 5.0.2300.0 - PreEmptive Solutions) Dropbox (HKCU\...\Dropbox) (Version: 2.4.11 - Dropbox, Inc.) Druckerdeinstallation für EPSON XP-215 217 Series (HKLM\...\EPSON XP-215 217 Series) (Version: - SEIKO EPSON Corporation) Entity Framework Designer für Visual Studio 2012 - DEU (HKLM-x32\...\{094D6E27-97CC-447E-8660-56F75CFC1E00}) (Version: 11.1.20702.00 - Microsoft Corporation) Epson Event Manager (HKLM-x32\...\{2970697F-2A11-4588-8B7F-97322D1CCF3C}) (Version: 3.10.0017 - Seiko Epson Corporation) EPSON Scan (HKLM-x32\...\EPSON Scanner) (Version: - Seiko Epson Corporation) Epson-Handbücher (HKLM-x32\...\{84CECC1B-21EF-41B1-9A91-3E724E5D99D3}) (Version: 1.0.0.0 - SEIKO EPSON CORPORATION) EpsonNet Print (HKLM-x32\...\{3E31400D-274E-4647-916C-2CACC3741799}) (Version: 2.6.0 - SEIKO EPSON CORPORATION) Erforderliche Komponenten für SSDT (HKLM-x32\...\{70D065C3-77E5-45E9-A75C-EEB2E84EA869}) (Version: 11.0.2100.60 - Microsoft Corporation) ETDWare PS/2-X64 8.0.5.3_WHQL (HKLM\...\Elantech) (Version: 8.0.5.3 - ELAN Microelectronic Corp.) FileZilla Client 3.7.0 (HKLM-x32\...\FileZilla Client) (Version: 3.7.0 - FileZilla Project) FreeMind (HKLM-x32\...\B991B020-2968-11D8-AF23-444553540000_is1) (Version: 0.9.0 - ) Google Chrome (HKCU\...\Google Chrome) (Version: 33.0.1750.154 - Google Inc.) Google Update Helper (x32 Version: 1.3.23.9 - Google Inc.) Hidden iCloud (HKLM\...\{81E20D41-C277-4526-934D-F2380AF91B78}) (Version: 3.1.0.40 - Apple Inc.) ICQ 8.0 (build 5999, für aktuellen Benutzer) (HKCU\...\ICQ) (Version: 8.0.5999.0 - Mail.Ru) IIS 8.0 Express (HKLM\...\{7BF61FA9-BDFB-4563-98AD-FCB0DA28CCC7}) (Version: 8.0.1557 - Microsoft Corporation) IIS Express Application Compatibility Database for x64 (HKLM\...\{9f4f4a9b-eec5-4906-92fe-d1f43ccf5c8d}.sdb) (Version: - ) IIS Express Application Compatibility Database for x86 (HKLM\...\{fdfba1f3-74ae-4255-9c10-a0f552b4610f}.sdb) (Version: - ) IrfanView (remove only) (HKLM-x32\...\IrfanView) (Version: 4.28 - Irfan Skiljan) iTunes (HKLM\...\{0D924CB2-2EA4-4044-BAF7-770202D6BD0D}) (Version: 11.1.4.62 - Apple Inc.) Java 7 Update 45 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83217025FF}) (Version: 7.0.450 - Oracle) Java Auto Updater (x32 Version: 2.1.9.8 - Sun Microsystems, Inc.) Hidden kuler (x32 Version: 2.0 - Adobe Systems Incorporated) Hidden LEGO MINDSTORMS NXT Driver for x64 (HKLM\...\{AE1D4582-D449-495C-9DC6-B92E16C7DB63}) (Version: 1.19.768 - LEGO) Lexmark S600 Series (HKLM\...\Lexmark S600 Series) (Version: - Lexmark International, Inc.) LocalESPC (x32 Version: 8.59.25584 - Microsoft Corporation) Hidden LocalESPCui for de-de (x32 Version: 8.59.25584 - Microsoft) Hidden Microsoft .NET Framework 4 Multi-Targeting Pack (x32 Version: 4.0.30319 - Microsoft Corporation) Hidden Microsoft .NET Framework 4.5 Multi-Targeting Pack (HKLM-x32\...\{5CBFF3F3-2D40-34EE-BCA5-A95BC19E400D}) (Version: 4.5.50709 - Microsoft Corporation) Microsoft .NET Framework 4.5 SDK - DEU Lang Pack (HKLM-x32\...\{98B45D1C-6EB1-460D-A87D-2B60678DC105}) (Version: 4.5.50709 - Microsoft Corporation) Microsoft .NET Framework 4.5 SDK (HKLM-x32\...\{1948E039-EC79-4591-951D-9867A8C14C90}) (Version: 4.5.50709 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 (DEU) (Version: 4.5.50938 - Microsoft Corporation) Hidden Microsoft .NET Framework 4.5.1 (Deutsch) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1031) (Version: 4.5.50938 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 (Version: 4.5.50938 - Microsoft Corporation) Hidden Microsoft Access MUI (German) 2013 (x32 Version: 15.0.4420.1017 - Microsoft Corporation) Hidden Microsoft Application Error Reporting (x32 Version: 12.0.6012.5000 - Microsoft Corporation) Hidden Microsoft ASP.NET MVC 2 - Visual Studio 2010 Tools (HKLM-x32\...\{40416836-56CC-4C0E-A6AF-5C34BADCE483}) (Version: 2.0.50217.0 - Microsoft Corporation) Microsoft ASP.NET MVC 2 (HKLM-x32\...\{1803A630-3C38-4D2B-9B9A-0CB37243539C}) (Version: 2.0.50217.0 - Microsoft Corporation) Microsoft ASP.NET MVC 3 - DEU (HKLM-x32\...\{07AC2D83-E795-4AD5-970D-B9BD14A1E411}) (Version: 3.0.20105.0 - Microsoft Corporation) Microsoft ASP.NET MVC 3 - Visual Studio 2012 Tools Update - DEU (x32 Version: 3.0.30710.0 - Microsoft Corporation) Hidden Microsoft ASP.NET MVC 3 - Visual Studio 2012 Tools Update (x32 Version: 3.0.30710.0 - Microsoft Corporation) Hidden Microsoft ASP.NET MVC 3 (HKLM-x32\...\{DCDEC776-BADD-48B9-8F9A-DFF513C3D7FA}) (Version: 3.0.20105.0 - Microsoft Corporation) Microsoft ASP.NET MVC 4 - Visual Studio 2012 Tools - DEU (x32 Version: 4.0.20710.0 - Microsoft Corporation) Hidden Microsoft ASP.NET MVC 4 - Visual Studio 2012 Tools (x32 Version: 4.0.20710.0 - Microsoft Corporation) Hidden Microsoft ASP.NET MVC 4 Runtime - DEU (x32 Version: 4.0.20710.0 - Microsoft Corporation) Hidden Microsoft ASP.NET MVC 4 Runtime (x32 Version: 4.0.20710.0 - Microsoft Corporation) Hidden Microsoft ASP.NET Web Pages - DEU (HKLM-x32\...\{93EEC4E9-EEFE-4027-ACD3-6E8C1D085975}) (Version: 1.0.20105.0 - Microsoft Corporation) Microsoft ASP.NET Web Pages - Visual Studio 2012 Tools - DEU (x32 Version: 1.0.20710.0 - Microsoft Corporation) Hidden Microsoft ASP.NET Web Pages - Visual Studio 2012 Tools (x32 Version: 1.0.20710.0 - Microsoft Corporation) Hidden Microsoft ASP.NET Web Pages (HKLM-x32\...\{631471BE-DEAB-454B-A9AC-CE3EB42C28B3}) (Version: 1.0.20105.0 - Microsoft Corporation) Microsoft ASP.NET Web Pages 2 - Visual Studio 2012 Tools - DEU (x32 Version: 2.0.20710.0 - Microsoft Corporation) Hidden Microsoft ASP.NET Web Pages 2 - Visual Studio 2012 Tools (x32 Version: 2.0.20710.0 - Microsoft Corporation) Hidden Microsoft ASP.NET Web Pages 2 Runtime - DEU (x32 Version: 2.0.20710.0 - Microsoft Corporation) Hidden Microsoft ASP.NET Web Pages 2 Runtime (x32 Version: 2.0.20710.0 - Microsoft Corporation) Hidden Microsoft DCF MUI (German) 2013 (x32 Version: 15.0.4420.1017 - Microsoft Corporation) Hidden Microsoft Excel MUI (German) 2013 (x32 Version: 15.0.4420.1017 - Microsoft Corporation) Hidden Microsoft Groove MUI (German) 2013 (x32 Version: 15.0.4420.1017 - Microsoft Corporation) Hidden Microsoft Help Viewer 1.0 (HKLM\...\Microsoft Help Viewer 1.0) (Version: 1.0.30319 - Microsoft Corporation) Microsoft Help Viewer 1.0 (Version: 1.0.30319 - Microsoft Corporation) Hidden Microsoft Help Viewer 2.0 (HKLM-x32\...\Microsoft Help Viewer 2.0) (Version: 2.0.50727 - Microsoft Corporation) Microsoft Help Viewer 2.0 (x32 Version: 2.0.50727 - Microsoft Corporation) Hidden Microsoft Help Viewer 2.0 Language Pack - DEU (HKLM-x32\...\Microsoft Help Viewer 2.0 Language Pack - DEU) (Version: 2.0.50727 - Microsoft Corporation) Microsoft Help Viewer 2.0 Language Pack - DEU (x32 Version: 2.0.50727 - Microsoft Corporation) Hidden Microsoft InfoPath MUI (German) 2013 (x32 Version: 15.0.4420.1017 - Microsoft Corporation) Hidden Microsoft LightSwitch for Visual Studio 2012 Core (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft LightSwitch für Visual Studio 2012 CoreRes - DEU (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Lync MUI (German) 2013 (x32 Version: 15.0.4420.1017 - Microsoft Corporation) Hidden Microsoft NuGet - Visual Studio 2012 (x32 Version: 2.0.30625.9003 - Microsoft Corporation) Hidden Microsoft Office 64-bit Components 2013 (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden Microsoft Office Access MUI (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Excel MUI (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Groove MUI (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office InfoPath MUI (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Korrekturhilfen 2013 - Deutsch (x32 Version: 15.0.4420.1017 - Microsoft Corporation) Hidden Microsoft Office Office 64-bit Components 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office OneNote MUI (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office OSM MUI (German) 2013 (x32 Version: 15.0.4420.1017 - Microsoft Corporation) Hidden Microsoft Office OSM UX MUI (German) 2013 (x32 Version: 15.0.4420.1017 - Microsoft Corporation) Hidden Microsoft Office Outlook Connector (HKLM-x32\...\{95140000-0081-0407-0000-0000000FF1CE}) (Version: 14.0.6123.5001 - Microsoft Corporation) Microsoft Office Outlook MUI (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office PowerPoint MUI (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Professional Plus 2010 (HKLM-x32\...\Office14.PROPLUS) (Version: 14.0.7015.1000 - Microsoft Corporation) Microsoft Office Professional Plus 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Professional Plus 2013 (HKLM-x32\...\Office15.PROPLUS) (Version: 15.0.4420.1017 - Microsoft Corporation) Microsoft Office Professional Plus 2013 (x32 Version: 15.0.4420.1017 - Microsoft Corporation) Hidden Microsoft Office Proof (English) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Proof (French) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Proof (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Proof (Italian) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Proofing (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Proofing (German) 2013 (x32 Version: 15.0.4420.1017 - Microsoft Corporation) Hidden Microsoft Office Proofing Tools 2013 - English (x32 Version: 15.0.4420.1017 - Microsoft Corporation) Hidden Microsoft Office Proofing Tools 2013 - Español (HKLM-x32\...\{90150000-001F-0C0A-0000-0000000FF1CE}) (Version: 15.0.4420.1017 - Microsoft Corporation) Microsoft Office Proofing Tools 2013 - Italiano (x32 Version: 15.0.4420.1017 - Microsoft Corporation) Hidden Microsoft Office Publisher MUI (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Shared 64-bit MUI (German) 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Shared 64-bit MUI (German) 2013 (Version: 15.0.4420.1017 - Microsoft Corporation) Hidden Microsoft Office Shared MUI (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Shared MUI (German) 2013 (x32 Version: 15.0.4420.1017 - Microsoft Corporation) Hidden Microsoft Office Word MUI (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft OneNote MUI (German) 2013 (x32 Version: 15.0.4420.1017 - Microsoft Corporation) Hidden Microsoft Online Services-Anmeldeassistent (HKLM\...\{46E637E2-AC34-4B45-B5DF-D20903A3DB61}) (Version: 7.250.4303.0 - Microsoft Corporation) Microsoft Outlook MUI (German) 2013 (x32 Version: 15.0.4420.1017 - Microsoft Corporation) Hidden Microsoft Outlook Social Connector Provider for Windows Live Messenger 32-bit (HKLM-x32\...\{95140000-007D-0409-0000-0000000FF1CE}) (Version: 14.0.5120.5000 - Microsoft Corporation) Microsoft Portable Library Multi-Targeting Pack (x32 Version: 11.0.50709.17929 - Microsoft Corporation) Hidden Microsoft Portable Library Multi-Targeting Pack Language Pack - deu (x32 Version: 11.0.50709.17929 - Microsoft Corporation) Hidden Microsoft PowerPoint MUI (German) 2013 (x32 Version: 15.0.4420.1017 - Microsoft Corporation) Hidden Microsoft Project MUI (German) 2013 (x32 Version: 15.0.4420.1017 - Microsoft Corporation) Hidden Microsoft Project Professional 2013 (HKLM-x32\...\Office15.PRJPROR) (Version: 15.0.4420.1017 - Microsoft Corporation) Microsoft Project Professional 2013 (x32 Version: 15.0.4420.1017 - Microsoft Corporation) Hidden Microsoft Publisher MUI (German) 2013 (x32 Version: 15.0.4420.1017 - Microsoft Corporation) Hidden Microsoft Report Viewer Add-On for Visual Studio 2012 (x32 Version: 11.1.2802.16 - Microsoft Corporation) Hidden Microsoft Report Viewer Add-On für Visual Studio 2012 (x32 Version: 11.1.2802.16 - Microsoft Corporation) Hidden Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30214.0 - Microsoft Corporation) Microsoft Silverlight 3 SDK (HKLM-x32\...\{2012098D-EEE9-4769-8DD3-B038050854D4}) (Version: 3.0.40818.0 - Microsoft Corporation) Microsoft Silverlight 4 SDK - Deutsch (HKLM-x32\...\{8EA792A5-38AA-4F0E-8DFE-D1BAF1145431}) (Version: 4.0.60310.0 - Microsoft Corporation) Microsoft Silverlight 5 SDK - DEU (HKLM-x32\...\{F351AA2C-723C-4CFE-A7CB-8E43AB164F7F}) (Version: 5.0.61118.0 - Microsoft Corporation) Microsoft SQL Server 2008 (64-bit) (HKLM\...\Microsoft SQL Server 10 Release) (Version: - Microsoft Corporation) Microsoft SQL Server 2008 (64-bit) (Version: - Microsoft Corporation) Hidden Microsoft SQL Server 2008 Browser (HKLM-x32\...\{C688457E-03FD-4941-923B-A27F4D42A7DD}) (Version: 10.1.2531.0 - Microsoft Corporation) Microsoft SQL Server 2008 Common Files (Version: 10.0.1600.22 - Microsoft Corporation) Hidden Microsoft SQL Server 2008 Common Files (Version: 10.1.2531.0 - Microsoft Corporation) Hidden Microsoft SQL Server 2008 Database Engine Services (Version: 10.1.2531.0 - Microsoft Corporation) Hidden Microsoft SQL Server 2008 Database Engine Shared (Version: 10.1.2531.0 - Microsoft Corporation) Hidden Microsoft SQL Server 2008 Native Client (HKLM\...\{BBDE8A3D-64A2-43A6-95F3-C27B87DF7AC1}) (Version: 10.1.2531.0 - Microsoft Corporation) Microsoft SQL Server 2008 R2 Data-Tier Application Framework (HKLM-x32\...\{0DDCEC37-369C-484B-B16D-B4413FD42FB9}) (Version: 10.50.1447.4 - Microsoft Corporation) Microsoft SQL Server 2008 R2 Data-Tier Application Project (HKLM-x32\...\{E5AE9031-79A5-4627-9641-BEFA82819B08}) (Version: 10.50.1447.4 - Microsoft Corporation) Microsoft SQL Server 2008 R2 Management Objects (HKLM-x32\...\{4E968D9C-21A7-4915-B698-F7AEB913541D}) (Version: 10.50.1447.4 - Microsoft Corporation) Microsoft SQL Server 2008 R2 Management Objects (x64) (HKLM\...\{DA67488A-2689-4F10-B90F-D2F6977509D6}) (Version: 10.50.1447.4 - Microsoft Corporation) Microsoft SQL Server 2008 R2 Transact-SQL Language Service (HKLM-x32\...\{78C3657E-742C-40B1-9F53-E5A921D40F17}) (Version: 10.50.1447.4 - Microsoft Corporation) Microsoft SQL Server 2008 RsFx Driver (Version: 10.1.2531.0 - Microsoft Corporation) Hidden Microsoft SQL Server 2008 Setup Support Files (HKLM\...\{B40EE88B-400A-4266-A17B-E3DE64E94431}) (Version: 10.1.2731.0 - Microsoft Corporation) Microsoft SQL Server 2012 Command Line Utilities (HKLM\...\{AD49BD4B-6CEE-4EA2-B53E-8EB0606F1B11}) (Version: 11.0.2100.60 - Microsoft Corporation) Microsoft SQL Server 2012 Data-Tier App Framework (HKLM\...\{36E619BC-A234-4EC3-849B-779A7C865A45}) (Version: 11.0.2316.0 - Microsoft Corporation) Microsoft SQL Server 2012 Data-Tier App Framework (HKLM-x32\...\{FBA6F90E-36EC-4FC9-9B25-3834E3BD46A8}) (Version: 11.0.2316.0 - Microsoft Corporation) Microsoft SQL Server 2012 Express LocalDB (HKLM\...\{EF18EF0F-96D3-4A6B-9600-2197F1720A15}) (Version: 11.0.2100.60 - Microsoft Corporation) Microsoft SQL Server 2012 Management Objects (HKLM-x32\...\{6B7B7E62-9F56-4C87-8664-0E20F2CAB03B}) (Version: 11.0.2100.60 - Microsoft Corporation) Microsoft SQL Server 2012 Management Objects (x64) (HKLM\...\{D4DA7C91-A59F-4C72-BAC4-DF7C76AB1CB8}) (Version: 11.0.2100.60 - Microsoft Corporation) Microsoft SQL Server 2012 Native Client (HKLM\...\{8E4BA1E5-54E8-41F0-919B-CD875B83CFCE}) (Version: 11.0.2100.60 - Microsoft Corporation) Microsoft SQL Server 2012 Transact-SQL Compiler Service (HKLM\...\{55FABD1D-8BE6-4A1A-958D-52B15F1DFEF0}) (Version: 11.0.2100.60 - Microsoft Corporation) Microsoft SQL Server 2012 Transact-SQL ScriptDom (HKLM\...\{13C9CD03-A5FE-4F50-AC8A-17B77C38CC52}) (Version: 11.0.2100.60 - Microsoft Corporation) Microsoft SQL Server 2012 T-SQL Language Service (HKLM-x32\...\{28C7A4BB-3966-4373-8376-C11F38290630}) (Version: 11.0.2100.60 - Microsoft Corporation) Microsoft SQL Server Compact 3.5 SP2 ENU (HKLM-x32\...\{3A9FC03D-C685-4831-94CF-4EDFD3749497}) (Version: 3.5.8080.0 - Microsoft Corporation) Microsoft SQL Server Compact 3.5 SP2 x64 ENU (HKLM\...\{D4AD39AD-091E-4D33-BB2B-59F6FCB8ADC3}) (Version: 3.5.8080.0 - Microsoft Corporation) Microsoft SQL Server Compact 4.0 SP1 x64 DEU (HKLM\...\{98225B15-ECF5-4645-B5AC-F8C5E869A5D5}) (Version: 4.0.8876.1 - Microsoft Corporation) Microsoft SQL Server Data Tools - DEU (11.1.20627.00) (HKLM-x32\...\{F6F1EE45-97E9-48A3-94B2-044B0A3C08D3}) (Version: 11.1.20627.00 - Microsoft Corporation) Microsoft SQL Server Data Tools Build Utilities - DEU (11.1.20627.00) (HKLM-x32\...\{CEEDB2C4-46BE-4340-BAB9-F30110D9BBB8}) (Version: 11.1.20627.00 - Microsoft Corporation) Microsoft SQL Server Database Publishing Wizard 1.4 (HKLM-x32\...\{ACE28263-76A4-4BF5-B6F4-8BD719595969}) (Version: 10.1.2512.8 - Microsoft Corporation) Microsoft SQL Server System CLR Types (HKLM-x32\...\{D434E072-F482-4F52-AB97-7B19DD5DAEB5}) (Version: 10.50.1600.1 - Microsoft Corporation) Microsoft SQL Server System CLR Types (x64) (HKLM\...\{485F4AC6-F79E-4482-A0D2-EDF0CCE1E124}) (Version: 10.50.1600.1 - Microsoft Corporation) Microsoft SQL Server VSS Writer (HKLM\...\{0826F9E4-787E-481D-83E0-BC6A57B056D5}) (Version: 10.1.2531.0 - Microsoft Corporation) Microsoft Sync Framework Runtime v1.0 SP1 (x64) (HKLM\...\{8438EC02-B8A9-462D-AC72-1B521349C001}) (Version: 1.0.3010.0 - Microsoft Corporation) Microsoft Sync Framework SDK v1.0 SP1 (HKLM-x32\...\{0E3DFC64-CC49-4BE2-8C9C-58EF129675DB}) (Version: 1.0.3010.0 - Microsoft Corporation) Microsoft Sync Framework Services v1.0 SP1 (x64) (HKLM\...\{034106B5-54B7-467F-B477-5B7DBB492624}) (Version: 1.0.3010.0 - Microsoft Corporation) Microsoft Sync Services for ADO.NET v2.0 SP1 (x64) (HKLM\...\{1D1CEEF8-3741-45BD-8E77-963E1DEBDDD3}) (Version: 2.0.3010.0 - Microsoft Corporation) Microsoft Team Foundation Server 2010 Object Model - ENU (HKLM\...\Microsoft Team Foundation Server 2010 Object Model - ENU) (Version: 10.0.30319 - Microsoft Corporation) Microsoft Team Foundation Server 2010 Object Model - ENU (Version: 10.0.30319 - Microsoft Corporation) Hidden Microsoft Visio MUI (German) 2013 (x32 Version: 15.0.4420.1017 - Microsoft Corporation) Hidden Microsoft Visio Professional 2013 (HKLM-x32\...\Office15.VISPROR) (Version: 15.0.4420.1017 - Microsoft Corporation) Microsoft Visio Professional 2013 (x32 Version: 15.0.4420.1017 - Microsoft Corporation) Hidden Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4974 (HKLM-x32\...\{B7E38540-E355-3503-AFD7-635B2F2F76E1}) (Version: 9.0.30729.4974 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Designtime - 10.0.30319 (HKLM\...\{F5079164-1DB9-3BDA-853B-F78AF67CE071}) (Version: 10.0.30319 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Runtime - 10.0.30319 (HKLM\...\{94D70749-4281-39AC-AD90-B56A0E0A402E}) (Version: 10.0.30319 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Runtime - 10.0.30319 (HKLM-x32\...\{6A86554B-8928-30E4-A53C-D7337689134D}) (Version: 10.0.30319 - Microsoft Corporation) Microsoft Visual C++ 2012 x64 Designtime - 11.0.50727 (Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 Compilers - DEU Resources (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 Compilers (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 Core Libraries (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 Extended Libraries (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 Microsoft Foundation Class Libraries (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.50727 (Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x64 Debug Runtime - 11.0.50727 (Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.50727 (Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.50727 (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Debug Runtime - 11.0.50727 (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.50727 (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual F# 2.0 Runtime (HKLM-x32\...\{729A3000-BC8A-3B74-BA5D-5068FE12D70C}) (Version: 10.0.30319 - Microsoft Corporation) Microsoft Visual Studio 2010 ADO.NET Entity Framework Tools (HKLM-x32\...\{14DD7530-CCD2-3798-B37D-3839ED6A441C}) (Version: 10.0.30319 - Microsoft Corporation) Microsoft Visual Studio 2010 IntelliTrace Collection (x64) (HKLM\...\{88BAE373-00F4-3E33-828F-96E89E5E0CB9}) (Version: 10.0.30319 - Microsoft Corporation) Microsoft Visual Studio 2010 Office Developer Tools (x64) (Version: 10.0.30319 - Microsoft Corporation) Hidden Microsoft Visual Studio 2010 Office Developer Tools (x64) (Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual Studio 2010 Office Developer Tools (x64) Language Pack - DEU (Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual Studio 2010 Performance Collection Tools - ENU (Version: 10.0.30319 - Microsoft Corporation) Hidden Microsoft Visual Studio 2010 SharePoint Developer Tools (x32 Version: 10.0.30319 - Microsoft Corporation) Hidden Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.40303 - Microsoft Corporation) Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (Version: 10.0.40308 - Microsoft Corporation) Hidden Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - DEU (Version: 10.0.40303 - Microsoft Corporation) Hidden Microsoft Visual Studio 2010 Ultimate - ENU (HKLM-x32\...\Microsoft Visual Studio 2010 Ultimate - ENU) (Version: 10.0.30319 - Microsoft Corporation) Microsoft Visual Studio 2010 Ultimate - ENU (x32 Version: 10.0.30319 - Microsoft Corporation) Hidden Microsoft Visual Studio 2010-Tools für Office-Laufzeit (x64) Language Pack - DEU (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - DEU) (Version: 10.0.40303 - Microsoft Corporation) Microsoft Visual Studio 2012 Devenv (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual Studio 2012 IntelliTrace Core amd64 (Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual Studio 2012 IntelliTrace Core x86 (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual Studio 2012 IntelliTrace Front End x86 (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual Studio 2012 IntelliTraceFrontEndLoc (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual Studio 2012 IntelliTraceLoc (Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual Studio 2012 IntelliTraceLoc (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual Studio 2012 SharePoint Developer Tools (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual Studio 2012 SharePoint Developer Tools DEU Language Pack (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual Studio 2012 Shell (Minimum) (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual Studio 2012 Shell (Minimum) Interop Assemblies (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual Studio 2012 Shell-(Mindest)-Ressourcen (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual Studio 2012 Tools für SQL Server Compact 4.0 SP1 DEU (x32 Version: 4.0.8876.1 - Microsoft Corporation) Hidden Microsoft Visual Studio 2012-Leistungserfassungstools - DEU (Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual Studio 2012-Leistungserfassungstools (Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual Studio 2012-Vorbereitung (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual Studio Macro Tools (HKLM-x32\...\Microsoft Visual Studio Macro Tools) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual Studio Macro Tools (x32 Version: 9.0.30729 - Microsoft Corporation) Hidden Microsoft Visual Studio Premium 2012 - DEU (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual Studio Premium 2012 (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual Studio Professional 2012 - DEU (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual Studio Professional 2012 (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual Studio Team Foundation Server 2012 Object Model (Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual Studio Team Foundation Server 2012 Object Model Language Pack - DEU (Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual Studio Team Foundation Server 2012 Storyboarding (Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual Studio Team Foundation Server 2012 Storyboarding Language Pack - DEU (Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual Studio Team Foundation Server 2012 Team Explorer (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual Studio Team Foundation Server 2012 Team Explorer Language Pack - DEU (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual Studio Ultimate 2012 - DEU (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual Studio Ultimate 2012 (HKLM-x32\...\{0bc17680-a2d9-42c0-9c26-0b8ecac2b473}) (Version: 11.0.50727.1 - Microsoft Corporation) Microsoft Visual Studio Ultimate 2012 (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual Studio Ultimate 2012 XAML UI Designer Core (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Visual Studio Ultimate 2012 XAML UI Designer deu Resources (x32 Version: 11.0.50727 - Microsoft Corporation) Hidden Microsoft Web Deploy 3.0 (HKLM\...\{AA72C306-30BE-4BB1-9E42-59552BAD2CDF}) (Version: 3.1236.1631 - Microsoft Corporation) Microsoft Web Deploy dbSqlPackage Provider - DEU (HKLM-x32\...\{86756584-C41A-4CA3-B42D-4768C7720F56}) (Version: 10.3.20225.0 - Microsoft Corporation) Microsoft Web Developer Tools - Visual Studio 2012 - DEU (x32 Version: 1.0.30710.0 - Microsoft Corporation) Hidden Microsoft Web Developer Tools - Visual Studio 2012 (x32 Version: 1.0.30710.0 - Microsoft Corporation) Hidden Microsoft Web Platform Installer 4.0 (HKLM\...\{E2B8249D-895C-4685-8C83-00F3B1A13028}) (Version: 4.0.1622 - Microsoft Corporation) Microsoft Word MUI (German) 2013 (x32 Version: 15.0.4420.1017 - Microsoft Corporation) Hidden Microsoft WSE 3.0 Runtime (HKLM-x32\...\{E3E71D07-CD27-46CB-8448-16D4FB29AA13}) (Version: 3.0.5305.0 - Microsoft Corp.) Microsoft-System-CLR-Typen für SQL Server 2012 (HKLM-x32\...\{4C0B27C3-3E8F-4BD2-80FF-6E9E48EBD6D8}) (Version: 11.0.2100.60 - Microsoft Corporation) Microsoft-System-CLR-Typen für SQL Server 2012 (x64) (HKLM\...\{64A5D39C-95CD-4B8B-B2FA-6C713133B57F}) (Version: 11.0.2100.60 - Microsoft Corporation) Mozilla Firefox 11.0 (x86 de) (HKLM-x32\...\Mozilla Firefox 11.0 (x86 de)) (Version: 11.0 - Mozilla) NVIDIA Grafiktreiber 296.10 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 296.10 - NVIDIA Corporation) NVIDIA Install Application (Version: 2.1002.62.312 - NVIDIA Corporation) Hidden NVIDIA Optimus 1.7.11 (Version: 1.7.11 - NVIDIA Corporation) Hidden NVIDIA PhysX (x32 Version: 9.12.0213 - NVIDIA Corporation) Hidden NVIDIA PhysX-Systemsoftware 9.12.0213 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.12.0213 - NVIDIA Corporation) NVIDIA Systemsteuerung 296.10 (Version: 296.10 - NVIDIA Corporation) Hidden NVIDIA Update 1.7.11 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 1.7.11 - NVIDIA Corporation) NVIDIA Update Components (Version: 1.7.11 - NVIDIA Corporation) Hidden Opera 12.16 (HKLM-x32\...\Opera 12.16.1860) (Version: 12.16.1860 - Opera Software ASA) Oracle VM VirtualBox 4.3.6 (HKLM\...\{DC65DFD8-E175-4A85-948A-42965853B2E8}) (Version: 4.3.6 - Oracle Corporation) Origin (HKLM-x32\...\Origin) (Version: 9.1.15.109 - Electronic Arts, Inc.) Outils de vérification linguistique 2013 de Microsoft Office*- Français (x32 Version: 15.0.4420.1017 - Microsoft Corporation) Hidden Paint.NET v3.5.8 (HKLM\...\{9CF4A37B-A8C4-44D7-8C53-13B9D9594BB3}) (Version: 3.58.0 - dotPDN LLC) Paragon Software PONS-CD 7 (HKLM-x32\...\Paragon Software PONS-CD 7) (Version: - ) PDF Settings CS4 (x32 Version: 9.0 - Adobe Systems Incorporated) Hidden Photomatix Pro version 3.2.9 (HKLM\...\PhotomatixPro3x32_is1) (Version: 3.2.9 - HDRsoft Sarl) Photoshop Camera Raw (x32 Version: 5.0 - Adobe Systems Incorporated) Hidden Photoshop Camera Raw_x64 (Version: 5.0 - Adobe Systems Incorporated) Hidden Picasa 3 (HKLM-x32\...\Picasa 3) (Version: 3.8 - Google, Inc.) Pixel Bender Toolkit (x32 Version: 1.0 - Adobe Systems Incorporated) Hidden PreEmptive Analytics Client German Language Pack (x32 Version: 1.0.2180.1 - PreEmptive Solutions) Hidden PreEmptive Analytics Visual Studio Components (x32 Version: 1.0.2180.1 - PreEmptive Solutions) Hidden Prezi (HKLM-x32\...\{BD44409B-A691-4B97-B33D-F07E1DE791F3}) (Version: 5.0.5 - Ihr Firmenname) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.38.113.2011 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6373 - Realtek Semiconductor Corp.) Realtek USB 2.0 Reader Driver (HKLM-x32\...\{62BBB2F0-E220-4821-A564-730807D2C34D}) (Version: 6.1.7600.10001 - Realtek Semiconductor Corp.) Safari (HKLM-x32\...\{C779648B-410E-4BBA-B75B-5815BCEFE71D}) (Version: 5.34.57.2 - Apple Inc.) SDExplorer 3.1 (HKLM\...\SDEPRO20_is1) (Version: 3.1 - CloudStorageExplorer.com) Service Pack 1 for SQL Server 2008 (KB968369) (64-bit) (HKLM\...\KB968369) (Version: 10.1.2531.0 - Microsoft Corporation) Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{DE28B448-32E8-4E8F-84F0-A52B21A49B5B}) (Version: - Microsoft) Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (x32 Version: - Microsoft) Hidden Skype™ 6.14 (HKLM-x32\...\{7A3C7E05-EE37-47D6-99E1-2EB05A3DA3F7}) (Version: 6.14.104 - Skype Technologies S.A.) Software Updater (HKLM-x32\...\{B9802DDC-53FD-4D44-A81D-49DC80448614}) (Version: 4.2.6 - SEIKO EPSON CORPORATION) <==== ATTENTION Sql Server Customer Experience Improvement Program (Version: 10.1.2531.0 - Microsoft Corporation) Hidden Suite Shared Configuration CS4 (x32 Version: 1.0 - Adobe Systems Incorporated) Hidden swMSM (x32 Version: 12.0.0.1 - Adobe Systems, Inc) Hidden Update for Microsoft Access 2010 (KB2553446) 32-Bit Edition (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{B4A38370-2ADB-46B0-A1B0-0C4A2F7DCA31}) (Version: - Microsoft) Update for Microsoft Access 2013 (KB2768008) 32-Bit Edition (HKLM-x32\...\{90150000-0015-0407-0000-0000000FF1CE}_Office15.PROPLUS_{02DD2FBD-76D9-4B8B-AAE6-657542F4F6E6}) (Version: - Microsoft) Update for Microsoft Access 2013 (KB2827233) 32-Bit Edition (HKLM-x32\...\{90150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUS_{FB31ABE4-BB41-4E9A-A252-1A4BC9DC8C43}) (Version: - Microsoft) Update for Microsoft Filter Pack 2.0 (KB2837594) 32-Bit Edition (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{D3C85176-ACCC-4AF0-817D-1BC803303B74}) (Version: - Microsoft) Update for Microsoft Filter Pack 2.0 (KB2837594) 32-Bit Edition (HKLM-x32\...\{90140000-002A-0000-1000-0000000FF1CE}_Office14.PROPLUS_{D3C85176-ACCC-4AF0-817D-1BC803303B74}) (Version: - Microsoft) Update for Microsoft InfoPath 2010 (KB2817369) 32-Bit Edition (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{4EEA3D3E-989C-4DF4-AB0A-3042C0C12AA3}) (Version: - Microsoft) Update for Microsoft InfoPath 2010 (KB2817396) 32-Bit Edition (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{39767ECA-1731-45DB-AB5B-6BF40E151D66}) (Version: - Microsoft) Update for Microsoft InfoPath 2013 (KB2837648) 32-Bit Edition (HKLM-x32\...\{90150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUS_{F15AA550-A0B9-44AD-9067-2294CCA51F1C}) (Version: - Microsoft) Update for Microsoft Lync 2013 (KB2817678) 32-Bit Edition (HKLM-x32\...\{90150000-012B-0407-0000-0000000FF1CE}_Office15.PROPLUS_{7FBE2D23-9F3C-4983-B927-2A4BF600B7A7}) (Version: - Microsoft) Update for Microsoft Lync 2013 (KB2863908) 32-Bit Edition (HKLM-x32\...\{90150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUS_{6764E50D-D076-41BC-B069-08DD488AE88B}) (Version: - Microsoft) Update for Microsoft Lync 2013 (KB2863908) 32-Bit Edition (HKLM-x32\...\{90150000-002A-0000-1000-0000000FF1CE}_Office15.PRJPROR_{6764E50D-D076-41BC-B069-08DD488AE88B}) (Version: - Microsoft) Update for Microsoft Lync 2013 (KB2863908) 32-Bit Edition (HKLM-x32\...\{90150000-002A-0000-1000-0000000FF1CE}_Office15.PROPLUS_{6764E50D-D076-41BC-B069-08DD488AE88B}) (Version: - Microsoft) Update for Microsoft Lync 2013 (KB2863908) 32-Bit Edition (HKLM-x32\...\{90150000-002A-0000-1000-0000000FF1CE}_Office15.VISPROR_{6764E50D-D076-41BC-B069-08DD488AE88B}) (Version: - Microsoft) Update for Microsoft Lync 2013 (KB2863908) 32-Bit Edition (HKLM-x32\...\{90150000-012B-0407-0000-0000000FF1CE}_Office15.PROPLUS_{885A0D95-13A8-4A31-B01C-B02454F414AA}) (Version: - Microsoft) Update for Microsoft Office 2010 (KB2589298) 32-Bit Edition (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{DADF7E25-FFA4-4D02-BE84-1DAE62C18516}) (Version: - Microsoft) Update for Microsoft Office 2010 (KB2589352) 32-Bit Edition (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{F4284D93-7AE8-4309-8CF3-9AD394F35F3A}) (Version: - Microsoft) Update for Microsoft Office 2010 (KB2589352) 32-Bit Edition (HKLM-x32\...\{90140000-002A-0000-1000-0000000FF1CE}_Office14.PROPLUS_{F4284D93-7AE8-4309-8CF3-9AD394F35F3A}) (Version: - Microsoft) Update for Microsoft Office 2010 (KB2589375) 32-Bit Edition (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{287A1E92-9E41-4BC1-8920-B3D0E9220800}) (Version: - Microsoft) Update for Microsoft Office 2010 (KB2597087) 32-Bit Edition (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{9D69691D-823D-4C3E-9B12-563A3F520366}) (Version: - Microsoft) Update for Microsoft Office 2010 (KB2760598) 32-Bit Edition (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{ECFE33A3-B8B7-439A-ADE4-59FBD29EF9B8}) (Version: - Microsoft) Update for Microsoft Office 2010 (KB2760598) 32-Bit Edition (HKLM-x32\...\{90140000-002A-0000-1000-0000000FF1CE}_Office14.PROPLUS_{ECFE33A3-B8B7-439A-ADE4-59FBD29EF9B8}) (Version: - Microsoft) Update for Microsoft Office 2010 (KB2760631) 32-Bit Edition (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{35698CB7-AAA2-4577-B505-DBFF504AEF23}) (Version: - Microsoft) Update for Microsoft Office 2010 (KB2794737) 32-Bit Edition (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{5AA578BB-759C-40FD-9661-A737C0884541}) (Version: - Microsoft) Update for Microsoft Office 2010 (KB2825640) 32-Bit Edition (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{BA610006-2C39-4419-9834-CF61AB24810A}) (Version: - Microsoft) Update for Microsoft Office 2010 (KB2850079) 32-Bit Edition (HKLM-x32\...\{90140000-001F-0407-0000-0000000FF1CE}_Office14.PROPLUS_{C70D2038-A2C4-4A99-87DE-5272BB44F0CE}) (Version: - Microsoft) Update for Microsoft Office 2010 (KB2850079) 32-Bit Edition (HKLM-x32\...\{90140000-001F-040C-0000-0000000FF1CE}_Office14.PROPLUS_{82F87E28-B18E-46D6-A399-E2F19CF5949B}) (Version: - Microsoft) Update for Microsoft Office 2010 (KB2863818) 32-Bit Edition (HKLM-x32\...\{90140000-001F-0409-0000-0000000FF1CE}_Office14.PROPLUS_{83B1B530-7D9E-4C6A-907F-E979CEE9C295}) (Version: - Microsoft) Update for Microsoft Office 2010 (KB2878225) 32-Bit Edition (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{EFF5EBA3-40AD-4859-85E7-3C1CF4F297EB}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2726954) 32-Bit Edition (HKLM-x32\...\{90150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUS_{4F307363-49DA-4AE7-9D9D-DAA1FF59274F}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2726954) 32-Bit Edition (HKLM-x32\...\{91150000-003B-0000-0000-0000000FF1CE}_Office15.PRJPROR_{4F307363-49DA-4AE7-9D9D-DAA1FF59274F}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2726954) 32-Bit Edition (HKLM-x32\...\{91150000-0051-0000-0000-0000000FF1CE}_Office15.VISPROR_{4F307363-49DA-4AE7-9D9D-DAA1FF59274F}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2726996) 32-Bit Edition (HKLM-x32\...\{90150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUS_{6E6B2968-B9D7-40C9-9FC2-8E729DDBB39C}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2726996) 32-Bit Edition (HKLM-x32\...\{90150000-006E-0407-0000-0000000FF1CE}_Office15.PRJPROR_{49893259-C896-4972-9B6C-6B75790945F1}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2726996) 32-Bit Edition (HKLM-x32\...\{90150000-006E-0407-0000-0000000FF1CE}_Office15.PROPLUS_{49893259-C896-4972-9B6C-6B75790945F1}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2726996) 32-Bit Edition (HKLM-x32\...\{90150000-006E-0407-0000-0000000FF1CE}_Office15.VISPROR_{49893259-C896-4972-9B6C-6B75790945F1}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2726996) 32-Bit Edition (HKLM-x32\...\{91150000-003B-0000-0000-0000000FF1CE}_Office15.PRJPROR_{6E6B2968-B9D7-40C9-9FC2-8E729DDBB39C}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2726996) 32-Bit Edition (HKLM-x32\...\{91150000-0051-0000-0000-0000000FF1CE}_Office15.VISPROR_{6E6B2968-B9D7-40C9-9FC2-8E729DDBB39C}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2738038) 32-Bit Edition (HKLM-x32\...\{90150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUS_{AFDC9BDD-5608-4A21-8066-13E2ACE1EDB4}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2738038) 32-Bit Edition (HKLM-x32\...\{91150000-003B-0000-0000-0000000FF1CE}_Office15.PRJPROR_{AFDC9BDD-5608-4A21-8066-13E2ACE1EDB4}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2738038) 32-Bit Edition (HKLM-x32\...\{91150000-0051-0000-0000-0000000FF1CE}_Office15.VISPROR_{AFDC9BDD-5608-4A21-8066-13E2ACE1EDB4}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2760224) 32-Bit Edition (HKLM-x32\...\{90150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUS_{4F8AD68D-9F41-446E-AA81-C43BF88671BF}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2760224) 32-Bit Edition (HKLM-x32\...\{91150000-003B-0000-0000-0000000FF1CE}_Office15.PRJPROR_{4F8AD68D-9F41-446E-AA81-C43BF88671BF}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2760224) 32-Bit Edition (HKLM-x32\...\{91150000-0051-0000-0000-0000000FF1CE}_Office15.VISPROR_{4F8AD68D-9F41-446E-AA81-C43BF88671BF}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2760242) 32-Bit Edition (HKLM-x32\...\{90150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUS_{BCD0EA38-A8FB-4F3D-B04E-DFFB38BC7849}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2760242) 32-Bit Edition (HKLM-x32\...\{91150000-003B-0000-0000-0000000FF1CE}_Office15.PRJPROR_{BCD0EA38-A8FB-4F3D-B04E-DFFB38BC7849}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2760242) 32-Bit Edition (HKLM-x32\...\{91150000-0051-0000-0000-0000000FF1CE}_Office15.VISPROR_{BCD0EA38-A8FB-4F3D-B04E-DFFB38BC7849}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2760267) 32-Bit Edition (HKLM-x32\...\{90150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUS_{9E03AB38-EF60-4DE6-92FB-656E23403BFA}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2760267) 32-Bit Edition (HKLM-x32\...\{91150000-003B-0000-0000-0000000FF1CE}_Office15.PRJPROR_{9E03AB38-EF60-4DE6-92FB-656E23403BFA}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2760267) 32-Bit Edition (HKLM-x32\...\{91150000-0051-0000-0000-0000000FF1CE}_Office15.VISPROR_{9E03AB38-EF60-4DE6-92FB-656E23403BFA}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2760539) 32-Bit Edition (HKLM-x32\...\{90150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUS_{E58009CD-D950-4CAE-89B4-E97C3B78319B}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2760553) 32-Bit Edition (HKLM-x32\...\{90150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUS_{03FC8649-9511-4FB1-BE34-67A442505DCF}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2760610) 32-Bit Edition (HKLM-x32\...\{90150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUS_{B299B17D-874D-43DD-84AA-414BD9C70021}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2760610) 32-Bit Edition (HKLM-x32\...\{90150000-002A-0000-1000-0000000FF1CE}_Office15.PRJPROR_{B299B17D-874D-43DD-84AA-414BD9C70021}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2760610) 32-Bit Edition (HKLM-x32\...\{90150000-002A-0000-1000-0000000FF1CE}_Office15.PROPLUS_{B299B17D-874D-43DD-84AA-414BD9C70021}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2760610) 32-Bit Edition (HKLM-x32\...\{90150000-002A-0000-1000-0000000FF1CE}_Office15.VISPROR_{B299B17D-874D-43DD-84AA-414BD9C70021}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2760610) 32-Bit Edition (HKLM-x32\...\{90150000-002A-0407-1000-0000000FF1CE}_Office15.PRJPROR_{65D789FD-9118-45AF-8DE4-F49F358A8525}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2760610) 32-Bit Edition (HKLM-x32\...\{90150000-002A-0407-1000-0000000FF1CE}_Office15.PROPLUS_{65D789FD-9118-45AF-8DE4-F49F358A8525}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2760610) 32-Bit Edition (HKLM-x32\...\{90150000-002A-0407-1000-0000000FF1CE}_Office15.VISPROR_{65D789FD-9118-45AF-8DE4-F49F358A8525}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2760610) 32-Bit Edition (HKLM-x32\...\{90150000-006E-0407-0000-0000000FF1CE}_Office15.PRJPROR_{65D789FD-9118-45AF-8DE4-F49F358A8525}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2760610) 32-Bit Edition (HKLM-x32\...\{90150000-006E-0407-0000-0000000FF1CE}_Office15.PROPLUS_{65D789FD-9118-45AF-8DE4-F49F358A8525}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2760610) 32-Bit Edition (HKLM-x32\...\{90150000-006E-0407-0000-0000000FF1CE}_Office15.VISPROR_{65D789FD-9118-45AF-8DE4-F49F358A8525}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2760610) 32-Bit Edition (HKLM-x32\...\{91150000-003B-0000-0000-0000000FF1CE}_Office15.PRJPROR_{B299B17D-874D-43DD-84AA-414BD9C70021}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2760610) 32-Bit Edition (HKLM-x32\...\{91150000-0051-0000-0000-0000000FF1CE}_Office15.VISPROR_{B299B17D-874D-43DD-84AA-414BD9C70021}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2767845) 32-Bit Edition (HKLM-x32\...\{90150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUS_{7E8D777B-BD75-480D-AC03-AF9C3D83CDBF}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2767845) 32-Bit Edition (HKLM-x32\...\{91150000-003B-0000-0000-0000000FF1CE}_Office15.PRJPROR_{7E8D777B-BD75-480D-AC03-AF9C3D83CDBF}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2767845) 32-Bit Edition (HKLM-x32\...\{91150000-0051-0000-0000-0000000FF1CE}_Office15.VISPROR_{7E8D777B-BD75-480D-AC03-AF9C3D83CDBF}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2768016) 32-Bit Edition (HKLM-x32\...\{90150000-006E-0407-0000-0000000FF1CE}_Office15.PRJPROR_{B9DB28D9-15D0-4DDE-A123-C9B82AC9A579}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2768016) 32-Bit Edition (HKLM-x32\...\{90150000-006E-0407-0000-0000000FF1CE}_Office15.PROPLUS_{B9DB28D9-15D0-4DDE-A123-C9B82AC9A579}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2768016) 32-Bit Edition (HKLM-x32\...\{90150000-006E-0407-0000-0000000FF1CE}_Office15.VISPROR_{B9DB28D9-15D0-4DDE-A123-C9B82AC9A579}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2817314) 32-Bit Edition (HKLM-x32\...\{90150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUS_{B9A3A7A7-8B5B-4D07-9816-80EE2EA5B9B7}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2817316) 32-Bit Edition (HKLM-x32\...\{90150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUS_{670559E6-5725-4B84-A16C-0859771F25DE}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2817316) 32-Bit Edition (HKLM-x32\...\{90150000-0016-0407-0000-0000000FF1CE}_Office15.PROPLUS_{5EFADE14-CE0B-43BF-ADD2-850FCB79485F}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2817316) 32-Bit Edition (HKLM-x32\...\{90150000-0016-0407-0000-0000000FF1CE}_Office15.PROPLUS_{8E942418-D7DE-48A4-8210-AD994006EFAA}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2817490) 32-Bit Edition (HKLM-x32\...\{90150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUS_{188DFB16-BA3F-4AD3-9432-45C8FA64EC8B}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2817490) 32-Bit Edition (HKLM-x32\...\{90150000-002A-0000-1000-0000000FF1CE}_Office15.PRJPROR_{188DFB16-BA3F-4AD3-9432-45C8FA64EC8B}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2817490) 32-Bit Edition (HKLM-x32\...\{90150000-002A-0000-1000-0000000FF1CE}_Office15.PROPLUS_{188DFB16-BA3F-4AD3-9432-45C8FA64EC8B}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2817490) 32-Bit Edition (HKLM-x32\...\{90150000-002A-0000-1000-0000000FF1CE}_Office15.VISPROR_{188DFB16-BA3F-4AD3-9432-45C8FA64EC8B}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2817490) 32-Bit Edition (HKLM-x32\...\{91150000-003B-0000-0000-0000000FF1CE}_Office15.PRJPROR_{188DFB16-BA3F-4AD3-9432-45C8FA64EC8B}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2817490) 32-Bit Edition (HKLM-x32\...\{91150000-0051-0000-0000-0000000FF1CE}_Office15.VISPROR_{188DFB16-BA3F-4AD3-9432-45C8FA64EC8B}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2817626) 32-Bit Edition (HKLM-x32\...\{90150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUS_{BC369230-B0E0-4BB0-82D6-E93196060BFA}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2817626) 32-Bit Edition (HKLM-x32\...\{91150000-003B-0000-0000-0000000FF1CE}_Office15.PRJPROR_{BC369230-B0E0-4BB0-82D6-E93196060BFA}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2817626) 32-Bit Edition (HKLM-x32\...\{91150000-0051-0000-0000-0000000FF1CE}_Office15.VISPROR_{BC369230-B0E0-4BB0-82D6-E93196060BFA}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2826004) 32-Bit Edition (HKLM-x32\...\{90150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUS_{FD782270-0456-4B87-AC5E-C6EE2D063C48}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2826004) 32-Bit Edition (HKLM-x32\...\{91150000-003B-0000-0000-0000000FF1CE}_Office15.PRJPROR_{FD782270-0456-4B87-AC5E-C6EE2D063C48}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2826004) 32-Bit Edition (HKLM-x32\...\{91150000-0051-0000-0000-0000000FF1CE}_Office15.VISPROR_{FD782270-0456-4B87-AC5E-C6EE2D063C48}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2827225) 32-Bit Edition (HKLM-x32\...\{90150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUS_{C5CF8938-646A-41A5-A4E6-6EEE4205CBA4}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2827225) 32-Bit Edition (HKLM-x32\...\{91150000-003B-0000-0000-0000000FF1CE}_Office15.PRJPROR_{C5CF8938-646A-41A5-A4E6-6EEE4205CBA4}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2827225) 32-Bit Edition (HKLM-x32\...\{91150000-0051-0000-0000-0000000FF1CE}_Office15.VISPROR_{C5CF8938-646A-41A5-A4E6-6EEE4205CBA4}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2827227) 32-Bit Edition (HKLM-x32\...\{90150000-001F-0407-0000-0000000FF1CE}_Office15.PRJPROR_{08F8B8BC-97B5-4110-8FC1-A840DEAD0DF9}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2827227) 32-Bit Edition (HKLM-x32\...\{90150000-001F-0407-0000-0000000FF1CE}_Office15.PROPLUS_{08F8B8BC-97B5-4110-8FC1-A840DEAD0DF9}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2827227) 32-Bit Edition (HKLM-x32\...\{90150000-001F-0407-0000-0000000FF1CE}_Office15.VISPROR_{08F8B8BC-97B5-4110-8FC1-A840DEAD0DF9}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2827227) 32-Bit Edition (HKLM-x32\...\{90150000-001F-0409-0000-0000000FF1CE}_Office15.PRJPROR_{F75F8521-118D-4DE2-927F-073BE7B6DC7F}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2827227) 32-Bit Edition (HKLM-x32\...\{90150000-001F-0409-0000-0000000FF1CE}_Office15.PROPLUS_{F75F8521-118D-4DE2-927F-073BE7B6DC7F}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2827227) 32-Bit Edition (HKLM-x32\...\{90150000-001F-0409-0000-0000000FF1CE}_Office15.VISPROR_{F75F8521-118D-4DE2-927F-073BE7B6DC7F}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2827227) 32-Bit Edition (HKLM-x32\...\{90150000-001F-040C-0000-0000000FF1CE}_Office15.PRJPROR_{E11A0DDD-9F6D-49C6-8F02-850D44DD7639}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2827227) 32-Bit Edition (HKLM-x32\...\{90150000-001F-040C-0000-0000000FF1CE}_Office15.PROPLUS_{E11A0DDD-9F6D-49C6-8F02-850D44DD7639}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2827227) 32-Bit Edition (HKLM-x32\...\{90150000-001F-040C-0000-0000000FF1CE}_Office15.VISPROR_{E11A0DDD-9F6D-49C6-8F02-850D44DD7639}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2827227) 32-Bit Edition (HKLM-x32\...\{90150000-001F-0410-0000-0000000FF1CE}_Office15.PRJPROR_{A1416C8A-2BA0-43D0-BCD5-C6C29D029327}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2827227) 32-Bit Edition (HKLM-x32\...\{90150000-001F-0410-0000-0000000FF1CE}_Office15.PROPLUS_{A1416C8A-2BA0-43D0-BCD5-C6C29D029327}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2827227) 32-Bit Edition (HKLM-x32\...\{90150000-001F-0410-0000-0000000FF1CE}_Office15.VISPROR_{A1416C8A-2BA0-43D0-BCD5-C6C29D029327}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2827230) 32-Bit Edition (HKLM-x32\...\{90150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUS_{954A0EA5-CCCB-4B4E-8664-40E2CC8BBCBB}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2827230) 32-Bit Edition (HKLM-x32\...\{91150000-003B-0000-0000-0000000FF1CE}_Office15.PRJPROR_{954A0EA5-CCCB-4B4E-8664-40E2CC8BBCBB}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2827230) 32-Bit Edition (HKLM-x32\...\{91150000-0051-0000-0000-0000000FF1CE}_Office15.VISPROR_{954A0EA5-CCCB-4B4E-8664-40E2CC8BBCBB}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2827239) 32-Bit Edition (HKLM-x32\...\{90150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUS_{4B1A48FA-CAE2-49BB-A912-6F96AE7875D9}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2827239) 32-Bit Edition (HKLM-x32\...\{90150000-002A-0000-1000-0000000FF1CE}_Office15.PRJPROR_{4B1A48FA-CAE2-49BB-A912-6F96AE7875D9}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2827239) 32-Bit Edition (HKLM-x32\...\{90150000-002A-0000-1000-0000000FF1CE}_Office15.PROPLUS_{4B1A48FA-CAE2-49BB-A912-6F96AE7875D9}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2827239) 32-Bit Edition (HKLM-x32\...\{90150000-002A-0000-1000-0000000FF1CE}_Office15.VISPROR_{4B1A48FA-CAE2-49BB-A912-6F96AE7875D9}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2827239) 32-Bit Edition (HKLM-x32\...\{91150000-003B-0000-0000-0000000FF1CE}_Office15.PRJPROR_{4B1A48FA-CAE2-49BB-A912-6F96AE7875D9}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2827239) 32-Bit Edition (HKLM-x32\...\{91150000-0051-0000-0000-0000000FF1CE}_Office15.VISPROR_{4B1A48FA-CAE2-49BB-A912-6F96AE7875D9}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2837626) 32-Bit Edition (HKLM-x32\...\{90150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUS_{079FC22A-639F-4690-8512-F54DCD8493C7}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2837626) 32-Bit Edition (HKLM-x32\...\{91150000-003B-0000-0000-0000000FF1CE}_Office15.PRJPROR_{079FC22A-639F-4690-8512-F54DCD8493C7}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2837626) 32-Bit Edition (HKLM-x32\...\{91150000-0051-0000-0000-0000000FF1CE}_Office15.VISPROR_{079FC22A-639F-4690-8512-F54DCD8493C7}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2837637) 32-Bit Edition (HKLM-x32\...\{90150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUS_{13A97DC6-1E49-40B1-94E6-EB4CC3087607}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2837637) 32-Bit Edition (HKLM-x32\...\{90150000-002A-0000-1000-0000000FF1CE}_Office15.PRJPROR_{13A97DC6-1E49-40B1-94E6-EB4CC3087607}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2837637) 32-Bit Edition (HKLM-x32\...\{90150000-002A-0000-1000-0000000FF1CE}_Office15.PROPLUS_{13A97DC6-1E49-40B1-94E6-EB4CC3087607}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2837637) 32-Bit Edition (HKLM-x32\...\{90150000-002A-0000-1000-0000000FF1CE}_Office15.VISPROR_{13A97DC6-1E49-40B1-94E6-EB4CC3087607}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2837637) 32-Bit Edition (HKLM-x32\...\{91150000-0051-0000-0000-0000000FF1CE}_Office15.VISPROR_{13A97DC6-1E49-40B1-94E6-EB4CC3087607}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2837638) 32-Bit Edition (HKLM-x32\...\{90150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUS_{C89EE024-ECC9-43EB-9D6A-52AB9B73ED63}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2837638) 32-Bit Edition (HKLM-x32\...\{91150000-003B-0000-0000-0000000FF1CE}_Office15.PRJPROR_{C89EE024-ECC9-43EB-9D6A-52AB9B73ED63}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2837638) 32-Bit Edition (HKLM-x32\...\{91150000-0051-0000-0000-0000000FF1CE}_Office15.VISPROR_{C89EE024-ECC9-43EB-9D6A-52AB9B73ED63}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2837655) 32-Bit Edition (HKLM-x32\...\{90150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUS_{2982593C-B10B-4757-A58A-7926ED063448}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2837655) 32-Bit Edition (HKLM-x32\...\{90150000-006E-0407-0000-0000000FF1CE}_Office15.PRJPROR_{EBEB9885-E941-44AB-960A-FE4970ACB1F1}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2837655) 32-Bit Edition (HKLM-x32\...\{90150000-006E-0407-0000-0000000FF1CE}_Office15.PROPLUS_{EBEB9885-E941-44AB-960A-FE4970ACB1F1}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2837655) 32-Bit Edition (HKLM-x32\...\{90150000-006E-0407-0000-0000000FF1CE}_Office15.VISPROR_{EBEB9885-E941-44AB-960A-FE4970ACB1F1}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2837655) 32-Bit Edition (HKLM-x32\...\{91150000-003B-0000-0000-0000000FF1CE}_Office15.PRJPROR_{2982593C-B10B-4757-A58A-7926ED063448}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2837655) 32-Bit Edition (HKLM-x32\...\{91150000-0051-0000-0000-0000000FF1CE}_Office15.VISPROR_{2982593C-B10B-4757-A58A-7926ED063448}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2850066) 32-Bit Edition (HKLM-x32\...\{90150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUS_{0AA960ED-0F9A-42EC-B9F4-52A104EB954D}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2850066) 32-Bit Edition (HKLM-x32\...\{90150000-002A-0000-1000-0000000FF1CE}_Office15.PRJPROR_{0AA960ED-0F9A-42EC-B9F4-52A104EB954D}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2850066) 32-Bit Edition (HKLM-x32\...\{90150000-002A-0000-1000-0000000FF1CE}_Office15.PROPLUS_{0AA960ED-0F9A-42EC-B9F4-52A104EB954D}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2850066) 32-Bit Edition (HKLM-x32\...\{90150000-002A-0000-1000-0000000FF1CE}_Office15.VISPROR_{0AA960ED-0F9A-42EC-B9F4-52A104EB954D}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2850066) 32-Bit Edition (HKLM-x32\...\{91150000-003B-0000-0000-0000000FF1CE}_Office15.PRJPROR_{0AA960ED-0F9A-42EC-B9F4-52A104EB954D}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2850066) 32-Bit Edition (HKLM-x32\...\{91150000-0051-0000-0000-0000000FF1CE}_Office15.VISPROR_{0AA960ED-0F9A-42EC-B9F4-52A104EB954D}) (Version: - Microsoft) Update for Microsoft OneNote 2010 (KB2837595) 32-Bit Edition (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{51CCA922-A0CC-47C4-8910-6936D97CAC2E}) (Version: - Microsoft) Update for Microsoft OneNote 2010 (KB2837595) 32-Bit Edition (HKLM-x32\...\{90140000-002A-0000-1000-0000000FF1CE}_Office14.PROPLUS_{51CCA922-A0CC-47C4-8910-6936D97CAC2E}) (Version: - Microsoft) Update for Microsoft OneNote 2013 (KB2850063) 32-Bit Edition (HKLM-x32\...\{90150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUS_{FA115DB4-AD0A-4C2B-8713-DB15275B7426}) (Version: - Microsoft) Update for Microsoft OneNote 2013 (KB2850063) 32-Bit Edition (HKLM-x32\...\{90150000-002A-0000-1000-0000000FF1CE}_Office15.PRJPROR_{FA115DB4-AD0A-4C2B-8713-DB15275B7426}) (Version: - Microsoft) Update for Microsoft OneNote 2013 (KB2850063) 32-Bit Edition (HKLM-x32\...\{90150000-002A-0000-1000-0000000FF1CE}_Office15.PROPLUS_{FA115DB4-AD0A-4C2B-8713-DB15275B7426}) (Version: - Microsoft) Update for Microsoft OneNote 2013 (KB2850063) 32-Bit Edition (HKLM-x32\...\{90150000-002A-0000-1000-0000000FF1CE}_Office15.VISPROR_{FA115DB4-AD0A-4C2B-8713-DB15275B7426}) (Version: - Microsoft) Update for Microsoft OneNote 2013 (KB2850063) 32-Bit Edition (HKLM-x32\...\{90150000-00A1-0407-0000-0000000FF1CE}_Office15.PROPLUS_{7E7400E8-36C5-4FA3-A75E-9F3BFE44EA7D}) (Version: - Microsoft) Update for Microsoft Outlook 2010 (KB2687567) 32-Bit Edition (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{2AB483F1-C86E-427A-83B4-23889B03512D}) (Version: - Microsoft) Update for Microsoft Outlook 2010 (KB2687567) 32-Bit Edition (HKLM-x32\...\{90140000-001A-0407-0000-0000000FF1CE}_Office14.PROPLUS_{A0657506-69DC-44AE-8DC1-58E7C6F5B1C9}) (Version: - Microsoft) Update for Microsoft Outlook 2013 (KB2863911) 32-Bit Edition (HKLM-x32\...\{90150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUS_{6022B459-32A4-4318-A9A4-815C0BCEF977}) (Version: - Microsoft) Update for Microsoft Outlook 2013 (KB2863911) 32-Bit Edition (HKLM-x32\...\{90150000-001A-0407-0000-0000000FF1CE}_Office15.PROPLUS_{DA3F3D63-4C9F-407B-9CA1-39638F85BDDD}) (Version: - Microsoft) Update for Microsoft Outlook 2013 (KB2863911) 32-Bit Edition (HKLM-x32\...\{91150000-003B-0000-0000-0000000FF1CE}_Office15.PRJPROR_{6022B459-32A4-4318-A9A4-815C0BCEF977}) (Version: - Microsoft) Update for Microsoft Outlook 2013 (KB2863911) 32-Bit Edition (HKLM-x32\...\{91150000-0051-0000-0000-0000000FF1CE}_Office15.VISPROR_{6022B459-32A4-4318-A9A4-815C0BCEF977}) (Version: - Microsoft) Update for Microsoft PowerPoint 2010 (KB2553145) 32-Bit Edition (HKLM-x32\...\{90140000-0018-0407-0000-0000000FF1CE}_Office14.PROPLUS_{81812245-FC84-426A-BC02-6659C88CC7B2}) (Version: - Microsoft) Update for Microsoft PowerPoint 2010 (KB2775360) 32-Bit Edition (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{80F56E3F-1D47-4E45-B6E0-FEF4E919F4F9}) (Version: - Microsoft) Update for Microsoft PowerPoint 2013 (KB2767850) 32-Bit Edition (HKLM-x32\...\{90150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUS_{94A5E2C5-5F2C-4238-8387-F16873B7927C}) (Version: - Microsoft) Update for Microsoft PowerPoint 2013 (KB2767850) 32-Bit Edition (HKLM-x32\...\{90150000-0018-0407-0000-0000000FF1CE}_Office15.PROPLUS_{A45FD7A9-2E67-41AA-8473-1463D10AAF55}) (Version: - Microsoft) Update for Microsoft Project 2013 (KB2727085) 32-Bit Edition (HKLM-x32\...\{90150000-002A-0000-1000-0000000FF1CE}_Office15.PRJPROR_{DFC72135-28F1-48CD-B39A-AD28ED0AFEF5}) (Version: - Microsoft) Update for Microsoft Project 2013 (KB2727085) 32-Bit Edition (HKLM-x32\...\{90150000-002A-0000-1000-0000000FF1CE}_Office15.PROPLUS_{DFC72135-28F1-48CD-B39A-AD28ED0AFEF5}) (Version: - Microsoft) Update for Microsoft Project 2013 (KB2727085) 32-Bit Edition (HKLM-x32\...\{90150000-002A-0000-1000-0000000FF1CE}_Office15.VISPROR_{DFC72135-28F1-48CD-B39A-AD28ED0AFEF5}) (Version: - Microsoft) Update for Microsoft Project 2013 (KB2727085) 32-Bit Edition (HKLM-x32\...\{90150000-00B4-0407-0000-0000000FF1CE}_Office15.PRJPROR_{F060AF53-B0F5-4A63-9F1C-3E5F6228E21C}) (Version: - Microsoft) Update for Microsoft Project 2013 (KB2727085) 32-Bit Edition (HKLM-x32\...\{91150000-003B-0000-0000-0000000FF1CE}_Office15.PRJPROR_{DFC72135-28F1-48CD-B39A-AD28ED0AFEF5}) (Version: - Microsoft) Update for Microsoft Publisher 2013 (KB2837635) 32-Bit Edition (HKLM-x32\...\{90150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUS_{696ACAB0-DCE3-4050-849A-629CE94A9E3A}) (Version: - Microsoft) Update for Microsoft Publisher 2013 (KB2837635) 32-Bit Edition (HKLM-x32\...\{90150000-0019-0407-0000-0000000FF1CE}_Office15.PROPLUS_{67F8928F-664E-47A9-B283-3121D5F904CC}) (Version: - Microsoft) Update for Microsoft SharePoint Workspace 2010 (KB2760601) 32-Bit Edition (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{F9F5A080-AF38-4966-9A6B-C43DCA465035}) (Version: - Microsoft) Update for Microsoft SharePoint Workspace 2010 (KB2760601) 32-Bit Edition (HKLM-x32\...\{90140000-002A-0000-1000-0000000FF1CE}_Office14.PROPLUS_{F9F5A080-AF38-4966-9A6B-C43DCA465035}) (Version: - Microsoft) Update for Microsoft SkyDrive Pro (KB2817495) 32-Bit Edition (HKLM-x32\...\{90150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUS_{00ADF78E-D103-44D9-93FC-4E0B4255DF61}) (Version: - Microsoft) Update for Microsoft SkyDrive Pro (KB2817495) 32-Bit Edition (HKLM-x32\...\{90150000-002A-0000-1000-0000000FF1CE}_Office15.PRJPROR_{00ADF78E-D103-44D9-93FC-4E0B4255DF61}) (Version: - Microsoft) Update for Microsoft SkyDrive Pro (KB2817495) 32-Bit Edition (HKLM-x32\...\{90150000-002A-0000-1000-0000000FF1CE}_Office15.PROPLUS_{00ADF78E-D103-44D9-93FC-4E0B4255DF61}) (Version: - Microsoft) Update for Microsoft SkyDrive Pro (KB2817495) 32-Bit Edition (HKLM-x32\...\{90150000-002A-0000-1000-0000000FF1CE}_Office15.VISPROR_{00ADF78E-D103-44D9-93FC-4E0B4255DF61}) (Version: - Microsoft) Update for Microsoft SkyDrive Pro (KB2837652) 32-Bit Edition (HKLM-x32\...\{90150000-002A-0407-1000-0000000FF1CE}_Office15.PRJPROR_{A499C133-698D-430B-970B-E5E2ABB28930}) (Version: - Microsoft) Update for Microsoft SkyDrive Pro (KB2837652) 32-Bit Edition (HKLM-x32\...\{90150000-002A-0407-1000-0000000FF1CE}_Office15.PROPLUS_{A499C133-698D-430B-970B-E5E2ABB28930}) (Version: - Microsoft) Update for Microsoft SkyDrive Pro (KB2837652) 32-Bit Edition (HKLM-x32\...\{90150000-002A-0407-1000-0000000FF1CE}_Office15.VISPROR_{A499C133-698D-430B-970B-E5E2ABB28930}) (Version: - Microsoft) Update for Microsoft SkyDrive Pro (KB2837652) 32-Bit Edition (HKLM-x32\...\{90150000-00BA-0407-0000-0000000FF1CE}_Office15.PROPLUS_{A499C133-698D-430B-970B-E5E2ABB28930}) (Version: - Microsoft) Update for Microsoft Visio 2010 (KB2878227) 32-Bit Edition (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{5D357893-40BA-4323-86BA-D97C66CD72F4}) (Version: - Microsoft) Update for Microsoft Visio 2013 (KB2817306) 32-Bit Edition (HKLM-x32\...\{90150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUS_{166909FC-6736-4EE5-9491-1BF9A4EE84E7}) (Version: - Microsoft) Update for Microsoft Visio 2013 (KB2817306) 32-Bit Edition (HKLM-x32\...\{90150000-0054-0407-0000-0000000FF1CE}_Office15.VISPROR_{2FEF519A-1724-4682-8706-17171BF45C62}) (Version: - Microsoft) Update for Microsoft Visio 2013 (KB2817306) 32-Bit Edition (HKLM-x32\...\{91150000-0051-0000-0000-0000000FF1CE}_Office15.VISPROR_{166909FC-6736-4EE5-9491-1BF9A4EE84E7}) (Version: - Microsoft) Update for Microsoft Visio Viewer 2010 (KB2810066) 32-Bit Edition (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{8C55AA83-54C2-4236-A622-78440A411DC5}) (Version: - Microsoft) Update for Microsoft Visio Viewer 2013 (KB2768338) 32-Bit Edition (HKLM-x32\...\{90150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUS_{9CEFDC22-A298-451A-905E-28E42B90A563}) (Version: - Microsoft) Update for Microsoft Visio Viewer 2013 (KB2768338) 32-Bit Edition (HKLM-x32\...\{91150000-003B-0000-0000-0000000FF1CE}_Office15.PRJPROR_{9CEFDC22-A298-451A-905E-28E42B90A563}) (Version: - Microsoft) Update for Microsoft Visio Viewer 2013 (KB2768338) 32-Bit Edition (HKLM-x32\...\{91150000-0051-0000-0000-0000000FF1CE}_Office15.VISPROR_{9CEFDC22-A298-451A-905E-28E42B90A563}) (Version: - Microsoft) Update for Microsoft Visual Studio 2012 (KB2781514) (HKLM-x32\...\{3786efc1-59ff-4908-8cd6-dc85ec87209e}) (Version: 11.0.50727 - Microsoft Corporation) Update for Microsoft Word 2010 (KB2837593) 32-Bit Edition (HKLM-x32\...\{90140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUS_{E78E2B68-8FD1-42EE-BB74-99A4D9E6222D}) (Version: - Microsoft) Update for Microsoft Word 2013 (KB2837647) 32-Bit Edition (HKLM-x32\...\{90150000-001A-0407-0000-0000000FF1CE}_Office15.PROPLUS_{E666A48D-62E6-4B76-AE27-128DD5C42684}) (Version: - Microsoft) Update for Microsoft Word 2013 (KB2837647) 32-Bit Edition (HKLM-x32\...\{90150000-001B-0407-0000-0000000FF1CE}_Office15.PROPLUS_{E666A48D-62E6-4B76-AE27-128DD5C42684}) (Version: - Microsoft) Update for Microsoft Word 2013 (KB2837647) 32-Bit Edition (HKLM-x32\...\{90150000-012B-0407-0000-0000000FF1CE}_Office15.PROPLUS_{E666A48D-62E6-4B76-AE27-128DD5C42684}) (Version: - Microsoft) USB2.0 UVC VGA WebCam (HKLM\...\USB2.0 UVC VGA WebCam) (Version: 5.8.55133.208 - Sonix) VirtualCloneDrive (HKLM-x32\...\VirtualCloneDrive) (Version: - Elaborate Bytes) Visual Studio 2012 Prerequisites - DEU Language Pack (Version: 11.0.50727 - Microsoft Corporation) Hidden Visual Studio 2012 Prerequisites (Version: 11.0.50727 - Microsoft Corporation) Hidden Visual Studio Extensions for Windows Library for JavaScript (x32 Version: 1.0.8514.0 - Microsoft Corporation) Hidden VLC media player 2.1.0 (HKLM\...\VLC media player) (Version: 2.1.0 - VideoLAN) Vocup 1.4.3 (HKLM-x32\...\Vocup_is1) (Version: 1.4.3 - Florian Amstutz) WCF Data Services 5.0 (for OData v3) DEU Language Pack (x32 Version: 5.0.50628.0 - Microsoft Corporation) Hidden WCF Data Services 5.0 (for OData v3) Primary Components (x32 Version: 5.0.50628.0 - Microsoft Corporation) Hidden WCF Data Services Tools for Microsoft Visual Studio 2012 (x32 Version: 5.0.50710.0 - Microsoft Corporation) Hidden WCF Data Services Tools for Visual Studio 11 DEU Language Pack (x32 Version: 5.0.50710.0 - Microsoft Corporation) Hidden WCF RIA Services V1.0 SP2 (HKLM-x32\...\{3A523AF9-D32F-4C85-8388-0335731F3405}) (Version: 4.1.61829.0 - Microsoft Corporation) Web Deployment Tool (HKLM\...\{0F37D969-1260-419E-B308-EF7D29ABDE20}) (Version: 1.1.0618 - Microsoft Corporation) WebAcappella4 (HKLM-x32\...\WebAcappella4_is1) (Version: - Intuisphere) Windows App Certification Kit Native Components (Version: 8.59.25584 - Microsoft Corporation) Hidden Windows App Certification Kit x64 (x32 Version: 8.59.25584 - Microsoft Corporation) Hidden Windows Live Mesh ActiveX control for remote connections (HKLM-x32\...\{C5398A89-516C-4DAF-BA07-EE7949090E56}) (Version: 15.4.5722.2 - Microsoft Corporation) Windows Runtime Intellisense Content - de-de (x32 Version: 8.59.25584 - Microsoft Corporation) Hidden Windows Software Development Kit (x32 Version: 8.59.25584 - Microsoft Corporation) Hidden Windows Software Development Kit DirectX x64 Remote (Version: 8.59.25584 - Microsoft Corporation) Hidden Windows Software Development Kit DirectX x86 Remote (x32 Version: 8.59.25584 - Microsoft Corporation) Hidden Windows Software Development Kit for Windows Store Apps (x32 Version: 8.59.25584 - Microsoft Corporation) Hidden Windows Software Development Kit for Windows Store Apps DirectX x64 Remote (Version: 8.59.25584 - Microsoft Corporation) Hidden Windows Software Development Kit for Windows Store Apps DirectX x86 Remote (x32 Version: 8.59.25584 - Microsoft Corporation) Hidden WinRAR 4.11 (64-Bit) (HKLM\...\WinRAR archiver) (Version: 4.11.0 - win.rar GmbH) ==================== Restore Points ========================= 10-03-2014 13:25:29 Windows Update 15-03-2014 18:47:06 Windows Update 19-03-2014 09:06:01 Windows Update 21-03-2014 17:04:55 Installed Software Updater 23-03-2014 11:35:36 Entfernt Easy Photo Print Plug-in for PMB(Picture Motion BrowserÝgà 23-03-2014 11:36:34 Removed Epson Event Manager 23-03-2014 12:00:17 Gerätetreiber-Paketinstallation: EPSON Drucker 23-03-2014 12:01:57 Installed Epson Event Manager 26-03-2014 06:55:13 Windows Update ==================== Hosts content: ========================== 2009-07-14 03:34 - 2009-06-10 22:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= Task: {1F5409FD-0162-42A1-8633-E4EF202701D5} - System32\Tasks\Microsoft Office 15 Sync Maintenance for Vanessa-PC-Vanessa Vanessa-PC => C:\Program Files (x86)\Microsoft Office\Office15\MsoSync.exe [2013-11-08] (Microsoft Corporation) Task: {2E713F7A-6F4A-4A62-BAA7-EFCC9D6F512E} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.) Task: {38E64E57-412F-49D0-9E80-10CB2A83B149} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2013-08-21] (Piriform Ltd) Task: {4D128264-9B57-416D-8C47-4FE141B5C152} - System32\Tasks\RunAsStdUser Task => C:\Users\Vanessa\AppData\Local\Oxy\Application\oxy.exe <==== ATTENTION Task: {5BA4B373-6DBF-43D0-AB3E-1B0F7DC7BD85} - System32\Tasks\Express FilesUpdate => C:\Program Files (x86)\ExpressFiles\EFUpdater.exe <==== ATTENTION Task: {773BA9BE-E0F5-4672-9BC6-F7651789458D} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-03-12] (Adobe Systems Incorporated) Task: {78490D9A-5DBD-47BC-9A72-21C1C48BCBCA} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-402389067-2568746762-3875608856-1000UA => C:\Users\Vanessa\AppData\Local\Google\Update\GoogleUpdate.exe [2012-11-28] (Google Inc.) Task: {89A40006-C2C8-4490-B385-0FDCF66A0C57} - System32\Tasks\Oxy => C:\Users\Vanessa\AppData\Roaming\Oxy\Updater.exe [2013-12-11] () <==== ATTENTION Task: {91B4DDC4-ACD8-4411-8232-A6490090620E} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office\Office15\msoia.exe [2012-10-01] (Microsoft Corporation) Task: {96336E5C-C233-4393-B28F-013895BE6EBD} - System32\Tasks\AutoKMS => C:\Windows\AutoKMS.exe Task: {9732E2B0-9D7E-4DF2-A5F6-C0F2ED2F008C} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office\Office15\msoia.exe [2012-10-01] (Microsoft Corporation) Task: {AD9F3606-D875-49EC-ABA6-E8D1C3A374F5} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe Task: {C2615B94-13FE-41DF-ADFC-EF6F22F20CC9} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-12-12] (Google Inc.) Task: {DD95E509-500A-46A6-B329-6ECE8877D5A6} - System32\Tasks\EPSON XP-215 217 Series Invitation {BE76F4A0-0502-4BBD-BB6E-B96FCAF86B16} => C:\Windows\system32\spool\DRIVERS\x64\3\E_ITSLGE.EXE [2013-02-28] (SEIKO EPSON CORPORATION) Task: {DE755ECE-364B-4318-B8F0-0B96AB58B2E5} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-12-12] (Google Inc.) Task: {EC567C40-A180-4063-97FF-BB0A313EEBF1} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-402389067-2568746762-3875608856-1000Core => C:\Users\Vanessa\AppData\Local\Google\Update\GoogleUpdate.exe [2012-11-28] (Google Inc.) Task: {F968DE49-F379-4874-BE2D-5A20A96D67D1} - System32\Tasks\EPSON XP-215 217 Series Update {BE76F4A0-0502-4BBD-BB6E-B96FCAF86B16} => C:\Windows\system32\spool\DRIVERS\x64\3\E_ITSLGE.EXE [2013-02-28] (SEIKO EPSON CORPORATION) Task: {FAC2548C-16EA-480C-BAA8-96E59A092EB3} - System32\Tasks\ATKOSD2 => C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe [2013-01-11] (ASUSTek Computer Inc.) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\EPSON XP-215 217 Series Invitation {BE76F4A0-0502-4BBD-BB6E-B96FCAF86B16}.job => C:\Windows\system32\spool\DRIVERS\x64\3\E_ITSLGE.EXE Task: C:\Windows\Tasks\EPSON XP-215 217 Series Update {BE76F4A0-0502-4BBD-BB6E-B96FCAF86B16}.job => C:\Windows\system32\spool\DRIVERS\x64\3\E_ITSLGE.EXE Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-402389067-2568746762-3875608856-1000Core.job => C:\Users\Vanessa\AppData\Local\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-402389067-2568746762-3875608856-1000UA.job => C:\Users\Vanessa\AppData\Local\Google\Update\GoogleUpdate.exe ==================== Loaded Modules (whitelisted) ============= 2012-03-12 17:15 - 2009-11-04 08:17 - 00189440 _____ () C:\Windows\system32\spool\PRTPROCS\x64\lxeddrpp.dll 2013-09-05 00:17 - 2013-09-05 00:17 - 04300456 _____ () C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Cultures\OFFICE.ODF 2010-01-02 15:42 - 2010-01-02 15:42 - 00098304 _____ () C:\Program Files (x86)\FileZilla FTP Client\fzshellext_64.dll 2012-02-14 17:53 - 2012-02-14 17:53 - 00094208 _____ () C:\Windows\System32\IccLibDll_x64.dll 2012-03-12 18:07 - 2011-01-23 19:39 - 00770728 _____ () C:\Program Files (x86)\Lexmark S600 Series\lxedmon.exe 2012-03-12 18:07 - 2011-01-23 19:39 - 00148280 _____ () C:\Program Files (x86)\Lexmark S600 Series\ezprint.exe 2013-09-11 09:11 - 2013-09-11 09:11 - 00394824 _____ () C:\Program Files (x86)\Avira\AntiVir Desktop\sqlite3.dll 2014-01-20 13:17 - 2014-01-20 13:17 - 00073544 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll 2014-01-20 13:16 - 2014-01-20 13:16 - 01044808 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll 2012-03-12 18:07 - 2010-04-01 12:23 - 00389120 _____ () C:\Program Files (x86)\Lexmark S600 Series\lxedscw.dll 2012-03-12 18:07 - 2009-05-27 07:16 - 00192512 _____ () C:\Program Files (x86)\Lexmark S600 Series\lxeddatr.dll 2012-03-12 18:07 - 2010-04-01 12:24 - 01159168 _____ () C:\Program Files (x86)\Lexmark S600 Series\lxedDRS.dll 2012-03-12 18:07 - 2009-03-10 00:43 - 00155648 _____ () C:\Program Files (x86)\Lexmark S600 Series\lxedcaps.dll 2012-03-12 17:08 - 2009-02-20 03:48 - 00381440 _____ () C:\Windows\system32\lxedsm.dll 2012-03-12 17:08 - 2009-04-28 02:56 - 00024064 _____ () C:\Windows\system32\lxedsmr.dll 2012-03-12 18:07 - 2010-04-05 05:56 - 00716954 _____ () C:\Program Files (x86)\Lexmark S600 Series\Epwizard.DLL 2012-03-12 18:07 - 2010-04-05 05:55 - 00159890 _____ () C:\Program Files (x86)\Lexmark S600 Series\customui.dll 2012-03-12 18:07 - 2010-04-05 05:54 - 00123033 _____ () C:\Program Files (x86)\Lexmark S600 Series\Eputil.DLL 2012-03-12 18:07 - 2010-04-05 05:54 - 00143502 _____ () C:\Program Files (x86)\Lexmark S600 Series\Imagutil.DLL 2012-03-12 18:07 - 2010-04-05 05:55 - 00061604 _____ () C:\Program Files (x86)\Lexmark S600 Series\Epfunct.DLL 2012-03-12 18:07 - 2009-06-23 06:09 - 02203648 _____ () C:\Program Files (x86)\Lexmark S600 Series\EPWizRes.dll 2012-03-12 18:07 - 2009-06-23 06:10 - 00045056 _____ () C:\Program Files (x86)\Lexmark S600 Series\epstring.dll 2012-03-12 18:07 - 2009-06-23 06:11 - 00102400 _____ () C:\Program Files (x86)\Lexmark S600 Series\EPOEMDll.dll 2012-03-12 18:07 - 2009-04-07 14:25 - 00409600 _____ () C:\Program Files (x86)\Lexmark S600 Series\iptk.dll 2012-03-12 18:07 - 2009-03-02 09:25 - 00151552 _____ () C:\Program Files (x86)\Lexmark S600 Series\lxedptp.dll 2013-09-14 00:51 - 2013-09-14 00:51 - 00087952 _____ () C:\Program Files (x86)\Common Files\Apple\Internet Services\zlib1.dll 2013-09-14 00:50 - 2013-09-14 00:50 - 01242952 _____ () C:\Program Files (x86)\Common Files\Apple\Internet Services\libxml2.dll 2013-10-19 00:55 - 2013-10-19 00:55 - 25100288 _____ () C:\Users\Vanessa\AppData\Roaming\Dropbox\bin\libcef.dll 2013-12-11 08:57 - 2009-02-27 15:39 - 00019968 _____ () C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\acrotray.deu 2014-03-15 19:36 - 2014-03-15 01:50 - 00051016 _____ () C:\Users\Vanessa\AppData\Local\Google\Chrome\Application\33.0.1750.154\chrome_elf.dll 2013-05-09 16:30 - 2013-05-09 16:30 - 00093696 _____ () C:\Program Files (x86)\FileZilla FTP Client\fzshellext.dll 2013-09-05 00:14 - 2013-09-05 00:14 - 04300456 _____ () C:\Program Files (x86)\Common Files\microsoft shared\OFFICE14\Cultures\OFFICE.ODF 2014-03-15 19:36 - 2014-03-15 01:50 - 00716616 _____ () C:\Users\Vanessa\AppData\Local\Google\Chrome\Application\33.0.1750.154\libglesv2.dll 2014-03-15 19:36 - 2014-03-15 01:50 - 00100168 _____ () C:\Users\Vanessa\AppData\Local\Google\Chrome\Application\33.0.1750.154\libegl.dll 2014-03-15 19:36 - 2014-03-15 01:50 - 04061000 _____ () C:\Users\Vanessa\AppData\Local\Google\Chrome\Application\33.0.1750.154\pdf.dll 2014-03-15 19:36 - 2014-03-15 01:50 - 00394568 _____ () C:\Users\Vanessa\AppData\Local\Google\Chrome\Application\33.0.1750.154\ppGoogleNaClPluginChrome.dll 2014-03-15 19:36 - 2014-03-15 01:50 - 01647432 _____ () C:\Users\Vanessa\AppData\Local\Google\Chrome\Application\33.0.1750.154\ffmpegsumo.dll 2014-03-15 19:36 - 2014-03-15 01:50 - 13637448 _____ () C:\Users\Vanessa\AppData\Local\Google\Chrome\Application\33.0.1750.154\PepperFlash\pepflashplayer.dll ==================== Alternate Data Streams (whitelisted) ========= ==================== Safe Mode (whitelisted) =================== ==================== Disabled items from MSCONFIG ============== MSCONFIG\startupreg: icq => C:\Users\Vanessa\AppData\Roaming\ICQM\icq.exe -CU MSCONFIG\startupreg: VirtualCloneDrive => "C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe" /s ==================== Faulty Device Manager Devices ============= Name: Microsoft-Adapter für Miniports virtueller WiFis Description: Microsoft-Adapter für Miniports virtueller WiFis Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: Microsoft Service: vwifimp Problem: : This device is disabled. (Code 22) Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions. ==================== Event log errors: ========================= Application errors: ================== Error: (03/29/2014 06:03:19 PM) (Source: WinMgmt) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (03/28/2014 11:28:54 AM) (Source: Bonjour Service) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 2028 Error: (03/28/2014 11:28:54 AM) (Source: Bonjour Service) (User: ) Description: Task Scheduling Error: m->NextScheduledEvent 2028 Error: (03/28/2014 11:28:54 AM) (Source: Bonjour Service) (User: ) Description: Task Scheduling Error: Continuously busy for more than a second Error: (03/28/2014 11:28:53 AM) (Source: Bonjour Service) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 1030 Error: (03/28/2014 11:28:53 AM) (Source: Bonjour Service) (User: ) Description: Task Scheduling Error: m->NextScheduledEvent 1030 Error: (03/28/2014 11:28:53 AM) (Source: Bonjour Service) (User: ) Description: Task Scheduling Error: Continuously busy for more than a second Error: (03/28/2014 10:13:09 AM) (Source: Bonjour Service) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 5086 Error: (03/28/2014 10:13:09 AM) (Source: Bonjour Service) (User: ) Description: Task Scheduling Error: m->NextScheduledEvent 5086 Error: (03/28/2014 10:13:09 AM) (Source: Bonjour Service) (User: ) Description: Task Scheduling Error: Continuously busy for more than a second System errors: ============= Error: (03/29/2014 06:06:14 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "NVIDIA Update Service Daemon" wurde aufgrund folgenden Fehlers nicht gestartet: %%1069 Error: (03/29/2014 06:06:14 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "nvUpdatusService" konnte sich nicht als ".\UpdatusUser" mit dem aktuellen Kennwort aufgrund des folgenden Fehlers anmelden: %%1330 Vergewissern Sie sich, dass der Dienst richtig konfiguriert ist im Dienste-Snap-In in der Microsoft Management Console (MMC). Error: (03/29/2014 06:02:10 PM) (Source: Service Control Manager) (User: ) Description: Der Dienst "lxedCATSCustConnectService" wurde aufgrund folgenden Fehlers nicht gestartet: %%1053 Error: (03/29/2014 06:02:10 PM) (Source: Service Control Manager) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst lxedCATSCustConnectService erreicht. Error: (03/28/2014 10:46:23 AM) (Source: DCOM) (User: ) Description: {84F66100-FF7C-4FB4-B0C0-02CD7FB668FE} Error: (03/27/2014 10:05:51 AM) (Source: Disk) (User: ) Description: Der Treiber hat einen Controllerfehler auf \Device\Harddisk1\DR5 gefunden. Error: (03/24/2014 11:48:04 AM) (Source: DCOM) (User: ) Description: {84F66100-FF7C-4FB4-B0C0-02CD7FB668FE} Error: (03/24/2014 11:47:04 AM) (Source: DCOM) (User: ) Description: {00020827-0000-0000-C000-000000000046} Error: (03/23/2014 10:55:36 AM) (Source: Disk) (User: ) Description: Der Treiber hat einen Controllerfehler auf \Device\Harddisk1\DR2 gefunden. Error: (03/23/2014 10:55:35 AM) (Source: Disk) (User: ) Description: Der Treiber hat einen Controllerfehler auf \Device\Harddisk1\DR2 gefunden. Microsoft Office Sessions: ========================= Error: (03/29/2014 06:03:19 PM) (Source: WinMgmt)(User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (03/28/2014 11:28:54 AM) (Source: Bonjour Service)(User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 2028 Error: (03/28/2014 11:28:54 AM) (Source: Bonjour Service)(User: ) Description: Task Scheduling Error: m->NextScheduledEvent 2028 Error: (03/28/2014 11:28:54 AM) (Source: Bonjour Service)(User: ) Description: Task Scheduling Error: Continuously busy for more than a second Error: (03/28/2014 11:28:53 AM) (Source: Bonjour Service)(User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 1030 Error: (03/28/2014 11:28:53 AM) (Source: Bonjour Service)(User: ) Description: Task Scheduling Error: m->NextScheduledEvent 1030 Error: (03/28/2014 11:28:53 AM) (Source: Bonjour Service)(User: ) Description: Task Scheduling Error: Continuously busy for more than a second Error: (03/28/2014 10:13:09 AM) (Source: Bonjour Service)(User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 5086 Error: (03/28/2014 10:13:09 AM) (Source: Bonjour Service)(User: ) Description: Task Scheduling Error: m->NextScheduledEvent 5086 Error: (03/28/2014 10:13:09 AM) (Source: Bonjour Service)(User: ) Description: Task Scheduling Error: Continuously busy for more than a second ==================== Memory info =========================== Percentage of memory in use: 63% Total physical RAM: 4007.77 MB Available physical RAM: 1468.63 MB Total Pagefile: 8013.72 MB Available Pagefile: 5035.47 MB Total Virtual: 8192 MB Available Virtual: 8191.82 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:232.78 GB) (Free:52.03 GB) NTFS Drive d: (EPSON) (CDROM) (Total:0.2 GB) (Free:0 GB) CDFS Drive g: (Volume) (Fixed) (Total:232.88 GB) (Free:149.18 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 466 GB) (Disk ID: A47905DE) Partition: GPT Partition Type. ==================== End Of Log ============================ |
31.03.2014, 09:35 | #7 |
/// the machine /// TB-Ausbilder | TR/Dropper.MSIL.Gen aus http://sharefiles.com/getdistr/oxy/ Revo Uninstaller - Download - Filepony Damit alles deinstallieren was Du in der Additional.txt findest mit dem Zusatz <== ATTENTION Mit Revo auch Moderat die Reste entfernen lassen. Downloade Dir bitte Malwarebytes Anti-Malware
Downloade Dir bitte AdwCleaner auf deinen Desktop.
Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
und ein frisches FRST log bitte.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
31.03.2014, 11:12 | #8 |
| TR/Dropper.MSIL.Gen aus http://sharefiles.com/getdistr/oxy/Code:
ATTFilter Task: {4D128264-9B57-416D-8C47-4FE141B5C152} - System32\Tasks\RunAsStdUser Task => C:\Users\Vanessa\AppData\Local\Oxy\Application\oxy.exe <==== ATTENTION Task: {5BA4B373-6DBF-43D0-AB3E-1B0F7DC7BD85} - System32\Tasks\Express FilesUpdate => C:\Program Files (x86)\ExpressFiles\EFUpdater.exe <==== ATTENTION Task: {89A40006-C2C8-4490-B385-0FDCF66A0C57} - System32\Tasks\Oxy => C:\Users\Vanessa\AppData\Roaming\Oxy\Updater.exe [2013-12-11] () <==== ATTENTION mbam.txt : Code:
ATTFilter Malwarebytes Anti-Malware www.malwarebytes.org Suchlauf Datum: 31.03.2014 Suchlauf-Zeit: 11:28:51 Logdatei: mbam.txt Administrator: Ja Version: 2.00.0.1000 Malware Datenbank: v2014.03.31.03 Rootkit Datenbank: v2014.03.27.01 Lizenz: Kostenlos Malware Schutz: Deaktiviert Bösartiger Webseiten Schutz: Deaktiviert Chameleon: Deaktiviert Betriebssystem: Windows 7 Service Pack 1 CPU: x64 Dateisystem: NTFS Benutzer: Vanessa Suchlauf-Art: Bedrohungs-Suchlauf Ergebnis: Abgeschlossen Durchsuchte Objekte: 380576 Verstrichene Zeit: 31 Min, 33 Sek Speicher: Aktiviert Autostart: Aktiviert Dateisystem: Aktiviert Archive: Aktiviert Rootkits: Aktiviert Shuriken: Aktiviert PUP: Aktiviert PUM: Aktiviert Prozesse: 0 (No malicious items detected) Module: 0 (No malicious items detected) Registrierungsschlüssel: 4 PUP.Optional.OutBrowse, HKLM\SOFTWARE\CLASSES\TYPELIB\{DCABB943-792E-44C4-9029-ECBEE6265AF9}, In Quarantäne, [6b95ec1489772cd4fd08ae5b20e247b9], PUP.Optional.OutBrowse, HKLM\SOFTWARE\CLASSES\INTERFACE\{3408AC0D-510E-4808-8F7B-6B70B1F88534}, In Quarantäne, [6b95ec1489772cd4fd08ae5b20e247b9], PUP.Optional.OutBrowse, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{3408AC0D-510E-4808-8F7B-6B70B1F88534}, In Quarantäne, [6b95ec1489772cd4fd08ae5b20e247b9], PUP.Optional.OutBrowse, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{DCABB943-792E-44C4-9029-ECBEE6265AF9}, In Quarantäne, [6b95ec1489772cd4fd08ae5b20e247b9], Registrierungswerte: 1 PUP.Optional.NextLive.A, HKU\S-1-5-21-402389067-2568746762-3875608856-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN|NextLive, C:\Windows\SysWOW64\rundll32.exe "C:\Users\Vanessa\AppData\Roaming\newnext.me\nengine.dll",EntryPoint -m l, In Quarantäne, [8977e31df50ba45cbc9583c9e1207090] Registrierungsdaten: 0 (No malicious items detected) Ordner: 2 PUP.Optional.NextLive.A, C:\Users\Vanessa\AppData\Roaming\newnext.me, In Quarantäne, [24dc7789da2657a95098b49dff03c63a], PUP.Optional.NextLive.A, C:\Users\Vanessa\AppData\Roaming\newnext.me\cache, In Quarantäne, [24dc7789da2657a95098b49dff03c63a], Dateien: 23 PUP.Optional.NextLive.A, C:\Users\Vanessa\AppData\Roaming\newnext.me\nengine.dll, In Quarantäne, [8977e31df50ba45cbc9583c9e1207090], PUP.Optional.OutBrowse, C:\Users\Vanessa\AppData\Local\Temp\DownloadManager.exe, In Quarantäne, [6b95ec1489772cd4fd08ae5b20e247b9], PUP.Optional.ExpressFiles.A, C:\$Recycle.Bin\S-1-5-21-402389067-2568746762-3875608856-1000\$RZQB1Q5.exe, In Quarantäne, [fc04c838748cb24e3912da4e5aa65ea2], PUP.Optional.Bandoo.A, C:\$Recycle.Bin\S-1-5-21-402389067-2568746762-3875608856-1000\$RUA1POC.exe, In Quarantäne, [9f6152ae9a66ca360f95ad7e6799bb45], PUP.Optional.Amonetize, C:\Users\Vanessa\AppData\Local\Temp\tmp1322.exe, In Quarantäne, [b94741bf748c768a667dd30eab580df3], PUP.Optional.Amonetize, C:\Users\Vanessa\AppData\Local\Temp\tmp804D.exe, In Quarantäne, [51af2dd36898f20e875c01e0f90a5da3], PUP.Optional.Amonetize, C:\Users\Vanessa\AppData\Local\Temp\tmpA225.exe, In Quarantäne, [7b853ac63fc154aceef57f621de64eb2], PUP.Optional.GigaClicks.A, C:\Users\Vanessa\AppData\Local\Temp\tmpA2A4.tmp.exe, In Quarantäne, [827e2ed2da268b752c50003533d147b9], PUP.Optional.Amonetize, C:\Users\Vanessa\AppData\Local\Temp\tmpA2BD.exe, In Quarantäne, [bd43e61a22dec63aeef529b8a1623fc1], PUP.Optional.ExpressFiles.A, C:\Users\Vanessa\AppData\Local\Temp\uninstall149128282.exe, In Quarantäne, [808058a86a9629d7a8a31513758b3ec2], PUP.Optional.InstallMonetizer, C:\Users\Vanessa\AppData\Local\Temp\Launcher_i188825670.exe, In Quarantäne, [68987888aa56f709d5bd968a27da926e], PUP.Optional.InstallMonetizer, C:\Users\Vanessa\AppData\Local\Temp\setup__3635.exe, In Quarantäne, [669a60a00000d927543e21ff4fb23ec2], PUP.Optional.Kozaka.A, C:\Users\Vanessa\AppData\Local\Temp\toolbar148995182.exe, In Quarantäne, [42be36cabc4404fc54d6f3a6df244bb5], PUP.Optional.Amonetize, C:\Users\Vanessa\AppData\Local\Temp\awh627.tmp, In Quarantäne, [34cc07f908f8a9578a0f79a454adbb45], PUP.Optional.FilePile.A, C:\Users\Vanessa\AppData\Local\Temp\Download_5C85\MStoolkit2.4.9.rar_Downloader.exe, In Quarantäne, [48b8e818e51b41bfef8c72ba14edc43c], PUP.Optional.Amonetize, C:\Users\Vanessa\AppData\Local\Temp\tmpB1B0\Bundle.exe, In Quarantäne, [d828bf415aa68e72e8fbb72af50e5ca4], PUP.Optional.FilePile.A, C:\Users\Vanessa\AppData\Local\Temp\MStoolkit2.4.9.rarDownload_7350\MStoolkit2.4.9.rar_Downloader.exe, In Quarantäne, [b44cec14eb1533cdd7a473b9bd44ad53], PUP.Optional.OpenCandy, C:\Users\Vanessa\Downloads\DTLite4481-0347.exe, In Quarantäne, [dc244db3e719f709608185aa39cbf60a], PUP.Optional.Softonic.A, C:\Users\Vanessa\Downloads\SoftonicDownloader_fuer_harry-potter-und-der-orden-des-phonix.exe, In Quarantäne, [ed130cf4a957ed1367692ee9f908b947], PUP.Optional.NextLive.A, C:\Users\Vanessa\AppData\Local\genienext\nengine.dll, In Quarantäne, [46ba03fda15fc04049084a022fd28a76], PUP.Optional.ReMarkIT.A, C:\Users\Vanessa\AppData\Local\Temp\Re-markit_2040-4030.exe, In Quarantäne, [907001ff49b78080ce53206f7b88b749], PUP.Optional.NextLive.A, C:\Users\Vanessa\AppData\Roaming\newnext.me\nengine.cookie, In Quarantäne, [24dc7789da2657a95098b49dff03c63a], PUP.Optional.NextLive.A, C:\Users\Vanessa\AppData\Roaming\newnext.me\cache\spark.bin, In Quarantäne, [24dc7789da2657a95098b49dff03c63a], Physische Sektoren: 0 (No malicious items detected) (end) Code:
ATTFilter # AdwCleaner v3.022 - Bericht erstellt am 31/03/2014 um 11:45:55 # Aktualisiert 13/03/2014 von Xplode # Betriebssystem : Windows 7 Home Premium Service Pack 1 (64 bits) # Benutzername : Vanessa - VANESSA-PC # Gestartet von : C:\Users\Vanessa\Downloads\adwcleaner.exe # Option : Löschen ***** [ Dienste ] ***** Dienst Gelöscht : APNMCP ***** [ Dateien / Ordner ] ***** Ordner Gelöscht : C:\ProgramData\apn Ordner Gelöscht : C:\ProgramData\AskPartnerNetwork Ordner Gelöscht : C:\ProgramData\ICQ\ICQToolbar Ordner Gelöscht : C:\Program Files (x86)\AskPartnerNetwork Ordner Gelöscht : C:\Program Files (x86)\ICQ6Toolbar Ordner Gelöscht : C:\Program Files (x86)\Mobogenie Ordner Gelöscht : C:\Program Files (x86)\myfree codec Ordner Gelöscht : C:\Users\Vanessa\AppData\Local\genienext Ordner Gelöscht : C:\Users\Vanessa\AppData\Local\Mobogenie Ordner Gelöscht : C:\Users\Vanessa\AppData\Local\Oxy Ordner Gelöscht : C:\Users\Vanessa\AppData\Local\Temp\apn Ordner Gelöscht : C:\Users\Vanessa\AppData\Local\Temp\OCS Ordner Gelöscht : C:\Users\Vanessa\AppData\Roaming\ExpressFiles Ordner Gelöscht : C:\Users\Vanessa\AppData\Roaming\Oxy Ordner Gelöscht : C:\Users\Vanessa\Documents\Mobogenie Ordner Gelöscht : C:\Users\Vanessa\AppData\Roaming\Mozilla\Firefox\Profiles\tb5hgdeu.default\ICQToolbarData Ordner Gelöscht : C:\Users\Vanessa\AppData\Roaming\Mozilla\Firefox\Profiles\tb5hgdeu.default\Extensions\{800B5000-A755-47E1-992B-48A1C1357F07} Ordner Gelöscht : C:\Users\Vanessa\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaaaacalgebmfelllfiaoknifldpngjh Datei Gelöscht : C:\Users\Vanessa\AppData\Roaming\Mozilla\Firefox\Profiles\tb5hgdeu.default\searchplugins\icqplugin.gif Datei Gelöscht : C:\Users\Vanessa\AppData\Roaming\Mozilla\Firefox\Profiles\tb5hgdeu.default\searchplugins\icqplugin.src Datei Gelöscht : C:\Users\Vanessa\AppData\Roaming\Mozilla\Firefox\Profiles\tb5hgdeu.default\searchplugins\icqplugin.xml Datei Gelöscht : C:\Users\Vanessa\AppData\Roaming\Mozilla\Firefox\Profiles\tb5hgdeu.default\user.js Datei Gelöscht : C:\Users\Vanessa\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.softonic.de_0.localstorage Datei Gelöscht : C:\Users\Vanessa\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.softonic.de_0.localstorage-journal Datei Gelöscht : C:\Windows\System32\Tasks\Express FilesUpdate ***** [ Verknüpfungen ] ***** ***** [ Registrierungsdatenbank ] ***** Schlüssel Gelöscht : HKLM\SOFTWARE\Google\Chrome\Extensions\aaaaacalgebmfelllfiaoknifldpngjh Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\ICQ\ICQToolBar Wert Gelöscht : HKCU\Software\Microsoft\Internet Explorer\Main [ICQ Search] Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASAPI32 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASMANCS Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\MobogenieAdd Wert Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [ApnTbMon] Wert Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [mobilegeni daemon] Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{41564952-412D-5637-00A7-7A786E7484D7} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{44CBC005-6243-4502-8A02-3A096A282664} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{80703783-E415-4EE3-AB60-D36981C5A6F1} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{D8278076-BC68-4484-9233-6E7F1628B56C} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{F297534D-7B06-459D-BC19-2DD8EF69297B} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{79FB5FC8-44B9-4AF5-BADD-CCE547F953E5} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{80703783-E415-4EE3-AB60-D36981C5A6F1} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{9945959C-AAD8-4312-8B57-2DE11927E770} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{41564952-412D-5637-00A7-7A786E7484D7} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{41564952-412D-5637-00A7-7A786E7484D7} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{41564952-412D-5637-00A7-7A786E7484D7} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6978F29A-3493-40B2-8CDC-9C13A02F85A4} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D7949A66-D936-4028-9552-14F7DC50F38D} Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{6552C7DD-90A4-4387-B795-F8F96747DE19} Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{FFEBBF0A-C22C-4172-89FF-45215A135AC8} Wert Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{41564952-412D-5637-00A7-7A786E7484D7}] Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\CLSID\{41564952-412D-5637-00A7-7A786E7484D7} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{41564952-412D-5637-00A7-7A786E7484D7} Wert Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{41564952-412D-5637-00A7-7A786E7484D7}] Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6978F29A-3493-40B2-8CDC-9C13A02F85A4} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D7949A66-D936-4028-9552-14F7DC50F38D} Schlüssel Gelöscht : HKCU\Software\AskPartnerNetwork Schlüssel Gelöscht : HKCU\Software\Escolade Schlüssel Gelöscht : HKCU\Software\ExpressFiles Schlüssel Gelöscht : HKCU\Software\OCS Schlüssel Gelöscht : HKLM\Software\AskPartnerNetwork Schlüssel Gelöscht : HKLM\Software\ExpressFiles Schlüssel Gelöscht : HKLM\Software\ICQ\ICQToolbar Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\AskPartnerNetwork ***** [ Browser ] ***** -\\ Internet Explorer v11.0.9600.16521 Einstellung Wiederhergestellt : HKCU\Software\Microsoft\Internet Explorer\Main [ICQ Search] -\\ Mozilla Firefox v11.0 (de) [ Datei : C:\Users\Vanessa\AppData\Roaming\Mozilla\Firefox\Profiles\tb5hgdeu.default\prefs.js ] Zeile gelöscht : user_pref("extensions.AVIRA-V7.AUC_clientCache", "{\"AUC_CACHE\":{\"puls4.com\":{\"c\":[1],\"ttl\":1395311937},\"mozilla.org\":{\"c\":[1],\"ttl\":1386935930},\"icq.com\":{\"c\":[1],\"ttl\":1395178563}[...] Zeile gelöscht : user_pref("extensions.AVIRA-V7.apn.tldcache", "{\"date\":1394572934251,\"domainList\":[\"ac\",\"com.ac\",\"edu.ac\",\"gov.ac\",\"net.ac\",\"mil.ac\",\"org.ac\",\"ad\",\"nom.ad\",\"ae\",\"co.ae\",\"net[...] Zeile gelöscht : user_pref("extensions.AVIRA-V7.com.avira.dnt.rules", "\"{\\\"Version\\\":39,\\\"Companies\\\":[{\\\"company\\\":\\\"Google Inc\\\",\\\"rules\\\":[{\\\"name\\\":\\\"Google Analytics\\\",\\\"category\\\[...] Zeile gelöscht : user_pref("extensions.AVIRA-V7.domain", "\"avira.search.ask.com\""); Zeile gelöscht : user_pref("extensions.enabledAddons", "{9c51bd27-6ed8-4000-a2bf-36cb95c0c947}:11.0.1,exif_viewer@mozilla.doslash.org:2.00,{800b5000-a755-47e1-992b-48a1c1357f07}:1.5.3,uacontrol@qz.tsugumi.org:0.1.3.1,[...] Zeile gelöscht : user_pref("icqtoolbar.allowSendURL", false); Zeile gelöscht : user_pref("icqtoolbar.engineVerified", false); Zeile gelöscht : user_pref("icqtoolbar.firstTbRun", false); Zeile gelöscht : user_pref("icqtoolbar.geolastmodified", 1394572930); Zeile gelöscht : user_pref("icqtoolbar.hiddenElements", "itb_options itb_people itb_zoom_in itb_zoom_out itb_zoom_default itb_games itb_highlight"); Zeile gelöscht : user_pref("icqtoolbar.history", "localhpst||joomla%20weiterlesen%20link||cache%3AHf91O8lW2LcJ%3Awww.useragentstring.com%2Fpages%2FGooglebot%2F%20user%20agent%20string%20googlebot||cache%3AerMw5MiRlVEJ[...] Zeile gelöscht : user_pref("icqtoolbar.icqgeo", 43); Zeile gelöscht : user_pref("icqtoolbar.installTime", "1386331110"); Zeile gelöscht : user_pref("icqtoolbar.newtab_most_visited_state", "1"); Zeile gelöscht : user_pref("icqtoolbar.newtab_recently_closed_state", "1"); Zeile gelöscht : user_pref("icqtoolbar.numberOfSearches", 0); Zeile gelöscht : user_pref("icqtoolbar.previousFFVersion", "11.0"); Zeile gelöscht : user_pref("icqtoolbar.showPc", false); Zeile gelöscht : user_pref("icqtoolbar.skip_default_search", "no"); Zeile gelöscht : user_pref("icqtoolbar.suggestions", false); Zeile gelöscht : user_pref("icqtoolbar.uniqueID", "164704816413379941701363677335729"); Zeile gelöscht : user_pref("icqtoolbar.usageStatstTimestamp", 1394707130); Zeile gelöscht : user_pref("icqtoolbar.version", "1.5.3"); Zeile gelöscht : user_pref("icqtoolbar.voucherHideClicks", 0); Zeile gelöscht : user_pref("icqtoolbar.voucherMoreLinkClicks", 0); Zeile gelöscht : user_pref("icqtoolbar.voucherRedeemClicks", 0); Zeile gelöscht : user_pref("icqtoolbar.voucherWasShown", 0); Zeile gelöscht : user_pref("icqtoolbar.xmlEnableSuggestions", false); Zeile gelöscht : user_pref("icqtoolbar.xmlLanguage", "de"); Zeile gelöscht : user_pref("keyword.URL", "hxxp://search.icq.com/search/afe_results.php?ch_id=afex&tb_ver=1.5.3&q="); -\\ Google Chrome v [ Datei : C:\Users\Vanessa\AppData\Local\Google\Chrome\User Data\Default\preferences ] ************************* AdwCleaner[R0].txt - [9879 octets] - [31/03/2014 11:43:06] AdwCleaner[S0].txt - [9292 octets] - [31/03/2014 11:45:55] ########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [9352 octets] ########## Code:
ATTFilter ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Junkware Removal Tool (JRT) by Thisisu Version: 6.1.3 (03.23.2014:1) OS: Windows 7 Home Premium x64 Ran by Vanessa on 31.03.2014 at 11:56:58,54 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ ~~~ Services ~~~ Registry Values ~~~ Registry Keys ~~~ Files ~~~ Folders Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{00BEA50A-E254-4CC5-8C51-22427E921C11} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{01414887-D229-4A74-A0E1-D70275F08603} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{029B5490-78D0-4AF2-9926-7AC496248C55} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{02F6BC70-5707-40C7-8401-27B521231A6D} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{03B6851A-EDDF-456F-8B9B-6D310BDE7190} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{04551059-3A49-489E-A353-34B782EC5784} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{0738BA25-0925-4B5C-93E6-55C874AD5818} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{0756B4B6-01B4-48CA-8F45-AF1BA3F45834} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{07F28D7F-9B39-4438-B13E-8B3DF4B3D423} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{0802337C-6563-4DB9-936C-AA6A71191CB5} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{08B95A60-1359-4CA0-B5D9-6B26D00D333E} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{08BCDC7D-F461-4ECD-9B19-6FD7143C4DF0} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{0A344872-9B82-43E8-A20B-5FDF3805388D} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{0A479B63-43B0-4011-91BC-917111A1EC92} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{0A84287D-CB84-4E52-80D8-96B81FFA3B84} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{0C41A30C-0CAF-4B14-8704-6F2BA81C1A86} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{0C4260A3-39E6-4CAE-8BB0-2EAE45395AF3} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{0C8A3041-C5AF-47B9-888E-642C91D0A6CB} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{0C9C682E-82CA-4855-B1BE-3707506D70C0} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{0D717C2D-25A9-4AF5-BC2A-831421232380} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{0E4ECF04-1E23-47A6-8CA7-B05F996BF517} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{0EAB1FFC-2108-4579-B929-4934AEC20C0C} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{0F0C57DE-EE05-4BAB-8734-7EBD311803EA} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{0F830D2F-C69B-408D-B0F3-571FB215F935} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{116A4D78-4752-466F-A474-6F1745FB8639} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{11E9D734-EE26-4A97-9E85-6D7E8BDE969E} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{12408A22-C521-43D4-894F-221392A5EABD} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{12562DD4-CF96-44DE-9DE0-C51036EF1915} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{12ACB4BD-2985-4E49-86FC-EF58AE36D9EC} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{133BF1B0-9537-4B68-B704-20F5F77B1713} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{143035B8-4C05-493C-8F58-CEE6C0964785} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{148B1121-6EFD-4D48-B01A-5DC1448A20CC} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{165DCD91-DF37-42F3-9C63-88521D7FD4F4} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{16893C73-17ED-4C9A-8D38-853B7DDFCD5F} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{16C551F9-660B-49CB-BB7E-B8C4BEE67A23} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{177A9189-7922-4B90-9956-4BF59C31043B} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{186044C4-9CB7-4951-862F-1FCD48F04BAB} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{188873A4-7EE6-48D8-8633-9B50417D98B6} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{194ABAC6-C71F-400D-8A63-3CAD6B5BCD33} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{198FED6E-3257-429B-9F12-747803AD731D} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{1B334E56-AAB3-49F8-B3E7-878F3ECCDDD0} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{1B3EF291-87DD-4E28-8DF5-4607CBB0DA29} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{1B7D321D-34DC-4ACA-BB02-A9FEC3900634} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{1C23603F-A62F-4317-B51F-737795133671} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{1DB82861-63A4-4992-B42F-DA79BFC8B9A3} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{1E25475F-4008-423F-9ED8-60660977EE81} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{1E41911E-F532-4FBC-8B3D-5C88BB36CE8A} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{1E910A97-87B5-4C1F-BBFE-0B7DF89227C2} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{1EE5B5CB-7B6F-400F-889F-90CBC313394D} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{1F0310B7-A95D-4F1A-82EA-FDB82F2681C0} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{1F39F83E-D304-48DA-8965-251197B722B5} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{20F5E79B-2BE3-4AC4-B202-52C939618F13} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{2389ECBA-D06E-4797-9EAA-B2F57DF998A2} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{24A9F7CA-303D-4856-AEB9-10E083E6B9CE} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{26AA93B7-6501-4E1A-877E-37C26AC52865} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{26D7CF0C-AA9B-4FC0-80B6-C2C9EA684F74} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{27FAE021-D731-4BAF-9869-8D37AA8A390A} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{2804B923-6288-4190-B1B1-38CEE8BFE600} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{2840876E-88F4-42DB-AD23-565079D38AE8} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{28A0A85B-9D1C-424D-AAE6-54DDF7B2AA05} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{29224A0E-5701-4E9B-BD7C-570A69B9A84D} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{29C05108-74AA-4775-9DFD-D6B380EC2A65} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{2A805089-0B71-4A91-A79D-763F571E068C} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{2AE81A14-2D7D-4236-9D7C-01D9B244DA23} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{2CD55699-C049-45EB-B60C-7C36200D1BFD} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{2CE15712-CFCE-4A1F-96F9-54D31AC46DC7} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{2E90B400-BEC1-4A2D-B965-2249EA07ACD1} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{2EB92E2C-738E-466D-8A32-065BEF990420} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{2F5C7099-0D76-4AFB-AB0B-9B8B89CB6AEB} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{2F96FF6C-8530-4910-AF54-0E8696CDF82C} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{30593190-F180-4582-A865-579431C723D2} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{30D8D09B-84D8-43F0-BF88-9750A9B83D41} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{3299D035-5237-4E9E-AFE9-6A8E7A6781B7} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{33EBE836-4BBE-4BB1-9A82-3EEF53CE921D} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{34AA69F4-3C70-4E08-A06A-4F73FB42E8A4} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{35D03EF9-A82C-472F-B4DE-A18D88747726} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{36E995A8-C3E8-4A8E-8168-69173CF9CDF2} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{3719113F-D950-4C04-ACE6-F9FDB3C505A4} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{38C60ACF-2ADD-4540-B36A-3CA6DD1F6B20} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{399FCC20-EBF0-45E7-906C-611399CC8BFD} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{3A1B13A4-101C-4553-A6C4-38CE4ACAC38A} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{3A489FF0-085A-456D-AA90-E97BAEC240A0} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{3A6D8C96-22A1-4520-940A-AC16A130EF55} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{3A7A0D89-66C9-4C6D-B5F0-791A5E455A1C} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{3B6A74CF-B33F-408B-9610-312934368B44} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{3B7BB5FC-9178-483C-9B40-2A6F25CA6652} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{3C3249B2-DC03-46A8-885D-56CD7748E95F} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{3D243A10-AB6F-4108-89A5-1C745327E6F9} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{3D2F9C46-95F5-49D3-AF40-8CD1D05C294E} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{3DB29EF3-0CA6-4A19-AFCA-FF405A0486DF} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{3DC0F61E-D9F4-46C5-9CE5-19810CF40183} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{3E32824F-C73D-4C5A-B702-5C7EE5437CB5} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{3EC3D440-1651-4BE1-9FF2-6BE2C107C909} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{415A9CB6-8A3E-4C21-9A21-EC738788C0B8} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{420080B5-C8C5-4494-BA95-0345261E5ABA} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{42D56AFF-E979-4A27-B71B-D6D6878900BB} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{43C5ABCA-B511-4E10-A53B-8DCC760B0A68} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{44122ED0-38F6-40B1-A1A1-D6CDAF0DFCF0} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{4458EC14-58EA-4041-AB16-83D063D05F81} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{448FD8D2-3400-4FA8-9B2D-02A0991A9822} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{47E50458-B07D-4833-A0C4-421DAA0B3F0D} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{4A122F4F-E18D-460B-AA8E-08640FE39252} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{4A5A8F6F-A785-4F8B-807C-534691BAF3D6} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{4AC8B96C-0F31-4A64-B960-A814C72D313F} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{4B125A8E-649B-4C4F-88B2-FB3295A30D20} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{4B9B4854-9EEC-4F83-B54C-992A33556AE9} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{4CF1B5E5-5F35-4110-84E1-E638F5ED1FA3} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{4D2D0CC5-A828-4CAF-AF6F-E02EFF20BC75} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{4D859CE8-ACEB-40E4-BC7D-0A9ACF9CA7FF} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{4E02E7B6-5C4A-4DAF-B78E-36D85A9524A5} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{4E2199CE-3573-4D9E-8118-17C8F7766FC6} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{4F5E0A9B-7A99-40AD-A9F6-14ED945C9099} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{4FA403B9-5EB1-46A8-9A8A-3144BE40BFAF} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{50741283-70FD-4A40-9407-962D87A59B31} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{50BF967B-E3DA-43E6-9356-1BDA6E99FFD6} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{51FC1C80-EF26-433E-BE30-E3325D018F47} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{5300B179-46BB-458D-8B93-4C957D64F30A} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{53370657-809C-4AE9-9BA3-FC39CB958782} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{53700097-B625-480A-9328-BA6855684283} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{54EEFE3A-A510-4586-A10C-F29F0B005B56} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{551C0DDB-83EE-4139-875A-97C1143E1D0E} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{556D4065-BEC3-4FD4-A2B6-A20F5DE0BA18} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{563B1D8B-01D8-4309-8C17-4C6552D69DFC} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{56524F63-1425-413B-AAEE-CB0C4AA0BADC} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{566027AC-D022-4E2C-9DF2-6A6C91E47256} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{572EE4B0-8F30-40BC-8C21-1C0F3C67E186} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{5854F461-1690-4117-AAE8-38908FD4BBBD} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{58FE83B8-393B-4A97-B56A-4AC0C4AEEF5A} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{59C1B267-66AC-4007-9342-A19C89C6371D} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{5AB79C10-8D95-46FB-944B-D6EBBF083AF2} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{5AFD42DC-BD57-455F-A0DB-B76475085C45} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{5B9120B3-DF4A-41FF-9541-0E39F950402D} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{5C22161C-31E3-492C-AFB9-A0CEB5AE9368} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{5C36761C-BD79-4C0C-9E69-A9FDCBAB8545} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{5E035492-6671-44FA-892E-0E22E140186D} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{5E0D4152-646F-4CFA-9E69-288AC8AF352D} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{615FE580-968C-40C9-874F-1C894D1C8A3F} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{63E172C5-387E-45C9-B9CA-F9A4173FCE0F} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{646F09CF-93E9-440A-8126-1854186EEDC6} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{64AA2B7A-51BE-4BCC-A6B2-A1D7F14361B8} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{64DFE3C1-D02E-4204-9EBD-63AFD1C1CB84} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{666E1FC2-8AD6-4415-B42A-7C1A2EE33396} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{66AD16FC-C741-4079-BBAD-796A4EA76A50} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{66D00696-4A1C-4DFE-B7E7-4B82C9EF0092} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{6D08D84D-0ABF-4000-B847-B568235EBFA1} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{6DD18442-46DA-42BD-B3D1-4AAAE1A50F4A} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{6E077A91-773C-4CA8-B83F-C5D96B16EE88} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{6E151C04-FFEF-4839-AA2E-0FEB3E971116} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{6FDB2111-A169-4BE9-89CE-19F823E5A8D6} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{7000F0AC-78CE-4123-A323-6EEE668C6DDA} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{70F93EC8-8774-47A6-BC28-104DCC646DFD} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{71F950E1-6DC7-4383-9DD9-B4ED3C1CEADA} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{7269E7AA-3BFC-4356-A634-C6B1B7094D2C} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{739E0B07-FE88-4645-A186-5982F01AB775} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{73C8C3E4-9CC5-46DB-BD8B-B85064524ADA} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{75756BF0-D93D-48D3-91B4-5D980C1F670F} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{758C66C5-75B5-4EB1-803F-11647D2306ED} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{76F51DD3-7E8D-47B2-8D8E-1B4827675018} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{79B28B63-E978-45E5-ADD1-047C536BCAE9} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{7A3318C2-1236-4B54-B9FB-B8A37F4E68B2} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{7B3FEF88-E1A5-4A59-92BE-35C52065ABC5} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{7BBB22AA-7BF4-47F5-BD32-E7D84B1C1ABD} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{7E5CA145-338B-47DE-AC99-395158749550} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{7F80342D-4593-48D8-B20E-54A3545F968E} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{806E8D8F-DE37-4F80-87C5-F50D865E4B3C} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{81635B01-F347-4989-8BF3-885126593647} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{82CD5623-A1E5-4FA4-B853-D0E0D6CDB654} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{836BCCDE-D9B3-453B-9525-37F225F04365} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{8445BC1E-87AB-4AFF-A022-70A243292822} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{84E50AA2-5F5B-4BAE-B021-56627914FF65} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{84ED2A1C-A8BC-470D-98CF-049FF3C3B17C} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{84EF98E9-4822-4E3D-BF4A-FDB0CBC1DDDE} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{85C84117-B750-4E02-B350-563802C6F8DC} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{85D775CC-E4B6-44DD-AE52-056804625169} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{864CF140-C70E-4DA4-8583-0ADA817B552D} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{865C4D71-9100-4906-953B-B6626C6611CD} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{8774C2F0-2061-4E27-862D-4BFF1DD43752} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{88D85A68-357E-4ABA-8952-051B42D3EA32} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{89327819-A3ED-4278-806D-04AEEAD75B2B} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{8AEB22B3-8E2D-41EE-86AF-EA845A1E3DC4} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{8C088C4C-0BB6-435E-AF47-7D656B33D8C8} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{8C202CA1-1DE9-4EEB-83F2-3CF3F94766F3} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{8CA3FD44-4DEC-47E6-8C5A-19957BB8AA77} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{8DE8FD49-2AA8-418E-8793-B98D44CD72B7} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{8E5B449C-1B44-4F2C-A82C-30F79FC53F1B} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{8FF8B1AA-F074-41E5-AADF-060176C7A8B4} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{9188F4AD-9335-44EF-B9E2-B2A8F1E62CB3} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{9189907C-95DF-4D9A-A9FC-30870C0C8435} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{92B022D9-866D-481D-BCF5-D550FE276045} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{92DBD3E5-57CA-4CF4-90D0-8C8BD56BEF31} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{92F1BA83-E61C-491A-9FFC-EB29932E82E0} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{9351ADC9-350E-4203-BA9E-1A69EA04C54C} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{9422C032-4BF3-4500-B58E-5A85253AF3D1} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{95C1490C-33C2-455B-BBC8-4DA670277187} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{95FAE1F9-705B-40B7-AFC2-8BB4F7F81165} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{964F3A4A-5F1D-479A-BE46-85D4BC4D14DA} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{9678CB2D-21E8-4BA0-8846-1E427C22818D} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{97880782-8CF7-440E-B727-C2EDDC785EFF} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{9955EAD0-2B78-4557-A372-F97689D0AB89} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{99749477-3F6A-494F-8D0D-2B96FBD96185} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{99981F4E-1EBB-4BE9-BD6D-93D3730D334D} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{9B79FC15-5D63-4B7F-B4E9-D51642AF6CB1} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{9C8ED740-EE2D-4582-8140-5F301D4FB501} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{9D8EE9A9-C700-4A8C-82DF-6632E15B9932} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{9E6FF7FF-E0AB-4ACB-83FF-AD86DA88DB96} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{9F87F78E-1243-4EF4-A82D-A43653EF10D3} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{9F9B04C5-F7B4-4F76-BCF1-3F4AF0D99E4D} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{A07EF795-9D68-4093-A6B5-63F0972A3CD3} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{A22B1F5A-BBA4-4EAA-B9DD-31D4BCDC0266} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{A3746C95-3054-4469-879E-7B74D6BA0DF0} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{A479383B-C83E-482E-B6E0-9B1A8C8406CA} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{A4D2D98E-92FB-4705-9F6E-F883B2034900} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{A4F9B5B5-0490-459E-A185-2336FE290D72} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{A5204DA4-5162-4927-AE1B-94323A870C36} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{A57641C0-6990-4951-9934-2EE51E8E19BD} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{A5927A23-6826-49B2-8FFD-FCC49684935E} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{A6A27EBD-7078-4FC8-8725-611465CDE910} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{A6B8068A-AC0C-4909-A09A-A5AE5C68177D} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{A7D97479-877A-4F0C-BFEC-9CFD34EF86F5} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{A92D1BDB-C378-4CD2-B3F6-40DC622C59CB} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{AAE25449-ECFE-49B7-B209-D501B0FA4563} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{AB9529B3-B9CA-49A7-AC14-FCA7288AA362} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{ACD75496-59EB-4233-A668-0241603ABB1A} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{ADBCCB84-A9A2-46EA-96F5-0523377EE4DA} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{AE86695E-A01C-4EEB-B22D-BDDD53B25665} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{AF12900F-F4DF-40C1-BD8C-3472AB06C60B} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{AF22891E-9905-44A2-A364-47147E213B8E} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{B1197E8F-C3A2-414B-ACBB-2E01BF32C11C} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{B1747F9B-1B55-4BE1-8C87-3A4047BD2EBB} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{B1950514-35DA-447E-AFEC-4CE80C4D691D} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{B2181FD6-A23E-496E-9389-0832C8C71AFF} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{B376122D-5DB1-4599-B62E-3EBFC91A7448} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{B39826F0-57B1-4FF2-B71E-7F3B4C38BDA3} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{B6861547-B0C0-443C-984C-94D0333F9BFA} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{B8F1094C-0EB0-4AD8-8DE8-FD9737689302} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{B92BD85E-9C10-4EAF-8125-1216755B4C01} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{BAB373FF-67A4-403C-822B-BD6509260AF0} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{BB89148B-046F-4B36-9025-024EBE9FF9D3} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{BC5740A4-AB8E-4330-88B2-CCB52E92DFF1} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{BD64A9EC-CCA7-41CD-BA3C-4F0563741BB8} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{BDD09372-0B48-494F-B340-B48E9DBE424D} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{BE1663CC-A00D-48E7-A54E-6CFDFBEAD0DB} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{BEE0CFC5-642D-4C1B-AC2F-9069D03659D8} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{BF77D407-C802-4BC6-BC94-39E0620E455F} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{BFA2C7FC-FD39-40EA-B632-2D7DA41CD318} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{C0DC7A6A-C5BA-480D-94C7-316DF7020EED} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{C2EC7F9D-8485-4FE0-BC16-95A17ADF61A1} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{C3AA84EF-6CE9-4652-9F41-DFB893395AA9} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{C68556FD-3FFB-47E8-A04F-4ED6D3B6D887} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{C686881B-1EBB-4C6D-B655-63563168C2F4} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{C68AB43D-FF01-4220-A6C7-6C77077FF0CA} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{C7128987-1FF6-4021-BE46-B9A383274311} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{C731B3C2-273D-4FC2-9F1F-11E98CFF311F} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{C7F64664-8224-4667-A8E3-1AF556F61230} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{C7FC19FF-66BF-44A3-B7AD-A120F8FA8C98} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{C87C03E2-9726-48F5-A49C-3C7BB738F4AE} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{C89C2894-C831-4378-93CF-66E514DF3B53} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{C8CBFA91-C0B6-41B9-B7D4-FB5E4D900BF6} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{C9BAA85E-7AA1-4D8C-BCD9-5368BF542AF0} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{C9F3FC0E-B088-47E4-A34B-8C81CF26E355} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{CA295FD9-FD6E-448B-88D5-80E3147CF32A} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{CAB9D3F1-5780-492B-8214-9826A7E3403A} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{CC73954D-C881-4C46-935F-BA806FD0070F} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{CDDBC3CC-383B-4AE6-913A-53EA543D675C} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{D134B051-004A-4D24-9502-894FF74240E4} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{D31E6A5B-C5B8-44B8-9A64-984E3EB9CE24} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{D37BF188-F1FF-4D57-A4CC-63BCE49FE962} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{D41D456D-1709-4647-A814-B0DA7EA6EAC5} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{D5090C22-DC25-480F-A463-74C039880E28} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{D6692235-2ACB-465B-97E2-E465FD3B8FA6} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{D7FE5E5D-48BF-4734-8F96-DBFBC6817F50} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{D8D059CA-9AFF-4873-A88A-526EA84C255B} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{D90E2D54-5B1F-4B2B-9C1E-DED6C3F37F99} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{D9F19182-3F84-4982-B519-35D0F582F0D6} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{DA041D94-EA76-473E-8A5C-BC17FBD70EBD} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{DA3F0DBE-36FE-48B0-8DA7-FF6CE563A4E8} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{DA4BB3D4-0669-4A3D-B318-5BB12BFEFBBA} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{DC45067D-FAC0-4987-A0EB-741357C49367} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{DD56497A-8D5D-4AF8-A3F5-0FA467F7AD9E} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{DDF11874-8292-40B5-9422-BF8CDC1FCFC1} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{DE4F5159-B082-43F6-92F0-07B9DD8D8393} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{DE87148A-DE3E-4238-99C4-D6964807226D} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{DEA825B1-26B1-4354-BDDB-5C721F10464E} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{DEF44192-8E1F-4FE7-B45A-32AE0700567E} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{DF33C599-9949-47EA-B94E-7F413D3C0764} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{E06095EB-7066-443D-963A-D04A9D8303CB} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{E086920E-245A-4100-93B5-EF0799D44F49} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{E0907F24-F002-4384-94E1-DB221E7C8D4D} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{E0A09EFC-A2AD-4E92-8C49-2C389D9D301F} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{E306E503-9B55-4CCF-B2F1-3A4480253A09} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{E352EBDA-8FAE-4654-8AA4-423F9E1678AC} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{E431483D-CB5E-4548-9929-E92962CDB3F1} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{E43A8CDC-5207-44F1-B271-BEDCD456B65E} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{E4714949-C53F-44A3-8EE2-217908368FA9} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{E4865723-8513-43A4-9E8C-684918022FB5} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{E4B3E197-252F-45BB-BC84-DFCE59EFF6F3} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{E4E2B923-3B44-4C74-8D81-F0FB4D697683} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{E4ECC23D-6F89-4B2B-A680-96800EA9816F} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{E6707CA0-F9F5-44C1-8533-6DEC582A6169} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{E7BF00E3-203B-4796-B8B2-1230AA55381F} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{EB559C5E-16D1-4B12-8DC5-2612B7D319A8} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{ED03DC02-C8E0-4E5C-A323-7E44C44D56C3} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{EED1DFC6-48AE-44F4-8026-95D3B0DD47AA} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{EEE88B4F-AD3C-4147-BFB0-D30F9B14CCD6} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{EF3A9A7D-4B4D-4F2B-9F34-E7C6CBE46BDE} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{F0224E50-B740-4CD3-B361-C8F77D4E4C43} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{F031E594-CF17-4D2B-9D10-F87CB7DE0DEE} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{F0AEFEBD-E0BB-4A0D-9A12-8F32DD026329} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{F11AA475-7947-439E-9CE7-CCB1C8F5D92F} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{F1F5609E-E408-416E-B3FD-DF429138E509} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{F2186737-5561-407E-9779-AA8D1C843C42} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{F345AF44-C40A-4F2E-A290-693A94DE0522} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{F3F53C7F-2C5A-4C56-8F4D-8AE324B8C33C} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{F4C61885-6422-44B7-A50D-C394F5B380A4} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{F649E420-D0AE-4499-8EDB-F2A75581847D} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{F748CFE4-F2F2-42A8-8DF8-EA98C44D534C} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{F827E472-0C72-484F-AC22-3F0B4E7A7491} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{F9428072-F355-494B-A6DB-02571D539E66} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{F9ED4B5D-0940-48C3-B4F1-B6B9076C15E4} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{FA043DB3-70C4-453D-A415-1BE796FC9E06} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{FA81E0C6-BECD-4B1C-96CB-2EBF0323EAA1} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{FBCEDA30-D9F5-4661-A53C-8F94EDBF4C7B} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{FC31D488-CD63-4F61-9639-6A9D9064D71C} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{FC61977B-E587-446F-9A7A-2D6D637BF05B} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{FD9C9DED-470E-4486-B32D-7E2F79925054} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{FE532BE2-6A98-461E-9B0E-552C52240075} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{FE69607E-786C-4245-8993-D395BA85CE62} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{FF118CB7-933C-45C5-8754-2640532E4830} Successfully deleted: [Empty Folder] C:\Users\Vanessa\appdata\local\{FF6A3054-572B-4420-A36F-9A1D8865C8BF} ~~~ FireFox Successfully deleted: [File] C:\Users\Vanessa\AppData\Roaming\mozilla\firefox\profiles\tb5hgdeu.default\extensions\toolbar_avira-v7@apn.ask.com.xpi ~~~ Event Viewer Logs were cleared ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Scan was completed on 31.03.2014 at 12:08:05,85 End of JRT log ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ FRST Logfile: FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 13-03-2014 Ran by Vanessa (administrator) on VANESSA-PC on 31-03-2014 12:10:33 Running from C:\Users\Vanessa\Downloads Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard Internet Explorer Version 11 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe (Qihu 360 Software Co., Ltd.) C:\Program Files\360\360 Internet Security\360rps.exe (Qihu 360 Software Co., Ltd.) C:\Program Files\360\360 Internet Security\deepscan\QHActiveDefense.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe (ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe (ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Atheros) C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe (ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe (Atheros Commnucations) C:\Program Files (x86)\Bluetooth Suite\adminservice.exe (ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ATKOSD.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (Seiko Epson Corporation) C:\Windows\system32\EscSvc64.exe (SEIKO EPSON CORPORATION) C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S60RPB.EXE (ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\WDC.exe ( ) C:\Windows\system32\lxedcoms.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Microsoft Online Services\MSOIDSVC.EXE (Microsoft Corporation) C:\Program Files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\sqlservr.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Microsoft Online Services\MSOIDSvcm.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE (Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (Intel Corporation) C:\Windows\System32\igfxtray.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe (Atheros Communications) C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe (Atheros Commnucations) C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe (Sonix Technology Co., Ltd.) C:\Windows\vsnp2uvc.exe () C:\Program Files (x86)\Lexmark S600 Series\lxedmon.exe () C:\Program Files (x86)\Lexmark S600 Series\ezprint.exe (Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe (Qihu 360 Software Co., Ltd.) C:\Program Files\360\360 Internet Security\360sd.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\Office14\MSOSYNC.EXE (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe (SEIKO EPSON CORPORATION) C:\Windows\System32\spool\drivers\x64\3\E_IATILGE.EXE (Microsoft Corporation) C:\Windows\System32\StikyNot.exe (Dropbox, Inc.) C:\Users\Vanessa\AppData\Roaming\Dropbox\bin\Dropbox.exe (Qihu 360 Software Co., Ltd.) C:\Program Files\360\360 Internet Security\360rp.exe (Adobe Systems Inc.) C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\acrotray.exe (Qihu 360 Software Co., Ltd.) C:\Program Files\360\360 Internet Security\safemon\360tray.exe (ASUSTek Computer Inc.) C:\Program Files (x86)\asus\ATK Package\ATKOSD2\ATKOSD2.exe (ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe (ASUSTek Computer Inc.) C:\Program Files (x86)\asus\ATK Package\ATK Media\DMedia.exe (ASUS) C:\Program Files (x86)\asus\ATK Package\ATK Hotkey\HControlUser.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe (SEIKO EPSON CORPORATION) C:\Program Files (x86)\EPSON Software\Event Manager\EEventManager.exe (Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Internet Services\APSDaemon.exe (Google Inc.) C:\Users\Vanessa\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Users\Vanessa\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Users\Vanessa\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Users\Vanessa\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Users\Vanessa\AppData\Local\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Users\Vanessa\AppData\Local\Google\Chrome\Application\chrome.exe ==================== Registry (Whitelisted) ================== HKLM\...\Run: [RtHDVCpl] - C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [11855976 2011-05-17] (Realtek Semiconductor) HKLM\...\Run: [RtHDVBg] - C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2226280 2011-05-17] (Realtek Semiconductor) HKLM\...\Run: [ETDCtrl] - C:\Program Files\Elantech\ETDCtrl.exe [2589992 2011-04-13] (ELAN Microelectronics Corp.) HKLM\...\Run: [AtherosBtStack] - C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [617120 2011-03-13] (Atheros Communications) HKLM\...\Run: [AthBtTray] - C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe [379552 2011-03-13] (Atheros Commnucations) HKLM\...\Run: [snp2uvc] - C:\Windows\vsnp2uvc.exe [909824 2010-01-21] (Sonix Technology Co., Ltd.) HKLM\...\Run: [lxedmon.exe] - C:\Program Files (x86)\Lexmark S600 Series\lxedmon.exe [770728 2011-01-23] () HKLM\...\Run: [EzPrint] - C:\Program Files (x86)\Lexmark S600 Series\ezprint.exe [148280 2011-01-23] () HKLM\...\Run: [360sd] - C:\Program Files\360\360 Internet Security\360sdrun.exe [273848 2014-01-09] (Qihu 360 Software Co., Ltd.) HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated) HKLM-x32\...\Run: [AdobeCS4ServiceManager] - C:\Program Files (x86)\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe [611712 2008-08-14] (Adobe Systems Incorporated) HKLM-x32\...\Run: [Adobe Acrobat Speed Launcher] - C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\Acrobat_sl.exe [44128 2013-05-08] (Adobe Systems Incorporated) HKLM-x32\...\Run: [] - [X] HKLM-x32\...\Run: [Acrobat Assistant 8.0] - C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\Acrotray.exe [642664 2013-05-08] (Adobe Systems Inc.) HKLM-x32\...\Run: [Adobe_ID0ENQBO] - C:\Program Files (x86)\Common Files\Adobe\Adobe Version Cue CS4\Server\bin\VersionCueCS4Tray.exe [378224 2008-08-15] (Adobe Systems Incorporated) HKLM-x32\...\Run: [APSDaemon] - C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [43848 2014-01-20] (Apple Inc.) HKLM-x32\...\Run: [PONS-CD 7] - C:\Program Files (x86)\Paragon Software\PONS\PONS-CD.exe [5878272 2012-02-02] () HKLM-x32\...\Run: [ATKOSD2] - C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe [328504 2013-01-11] (ASUSTek Computer Inc.) HKLM-x32\...\Run: [ATKMEDIA] - C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe [205184 2012-10-17] (ASUSTek Computer Inc.) HKLM-x32\...\Run: [HControlUser] - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe [105016 2009-06-19] (ASUS) HKLM-x32\...\Run: [BCSSync] - C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [89184 2012-11-05] (Microsoft Corporation) HKLM-x32\...\Run: [SunJavaUpdateSched] - C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation) HKLM-x32\...\Run: [iTunesHelper] - C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2014-01-20] (Apple Inc.) HKLM-x32\...\Run: [EEventManager] - C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe [1058880 2013-03-28] (SEIKO EPSON CORPORATION) Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation) HKU\S-1-5-21-402389067-2568746762-3875608856-1000\...\Run: [OfficeSyncProcess] - C:\Program Files (x86)\Microsoft Office\Office14\MSOSYNC.EXE [720064 2013-04-22] (Microsoft Corporation) HKU\S-1-5-21-402389067-2568746762-3875608856-1000\...\Run: [Google Update] - C:\Users\Vanessa\AppData\Local\Google\Update\GoogleUpdate.exe [116648 2012-11-28] (Google Inc.) HKU\S-1-5-21-402389067-2568746762-3875608856-1000\...\Run: [AdobeBridge] - [X] HKU\S-1-5-21-402389067-2568746762-3875608856-1000\...\Run: [icq] - C:\Users\Vanessa\AppData\Roaming\ICQM\icq.exe [26935144 2013-02-13] (ICQ) HKU\S-1-5-21-402389067-2568746762-3875608856-1000\...\Run: [iCloudServices] - C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe [59720 2013-11-20] (Apple Inc.) HKU\S-1-5-21-402389067-2568746762-3875608856-1000\...\Run: [ApplePhotoStreams] - C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe [59720 2013-11-20] (Apple Inc.) HKU\S-1-5-21-402389067-2568746762-3875608856-1000\...\Run: [EPLTarget\P0000000000000001] - C:\Windows\system32\spool\DRIVERS\x64\3\E_IATILGE.EXE [297024 2013-01-24] (SEIKO EPSON CORPORATION) HKU\S-1-5-21-402389067-2568746762-3875608856-1000\...\Run: [EPLTarget\P0000000000000000] - C:\Windows\system32\spool\DRIVERS\x64\3\E_IATILGE.EXE [297024 2013-01-24] (SEIKO EPSON CORPORATION) HKU\S-1-5-21-402389067-2568746762-3875608856-1000\...\Run: [RESTART_STICKY_NOTES] - C:\Windows\System32\StikyNot.exe [427520 2009-07-14] (Microsoft Corporation) HKU\S-1-5-21-402389067-2568746762-3875608856-1000\...\RunOnce: [Uninstall C:\Users\Vanessa\AppData\Local\Microsoft\SkyDrive\17.0.2010.0530\amd64] - C:\Windows\system32\cmd.exe /q /c rmdir /s /q "C:\Users\Vanessa\AppData\Local\Microsoft\SkyDrive\17.0.2010.0530\amd64" HKU\S-1-5-21-402389067-2568746762-3875608856-1000\...\MountPoints2: E - E:\SETUP.EXE HKU\S-1-5-21-402389067-2568746762-3875608856-1000\...\MountPoints2: {1e2d4e45-6bc0-11e1-864e-806e6f6e6963} - D:\InstallNavi.exe HKU\S-1-5-21-402389067-2568746762-3875608856-1000\...\MountPoints2: {9e48735e-1eb2-11e2-a188-8f2dd17397a2} - F:\SETUP.EXE HKU\S-1-5-21-402389067-2568746762-3875608856-1000\...\MountPoints2: {b61d4326-aaf2-11e1-8d97-bcaec567af56} - E:\unlock.exe autoplay=true AppInit_DLLs: C:\Windows\system32\nvinitx.dll => C:\Windows\system32\nvinitx.dll [260416 2012-03-01] (NVIDIA Corporation) AppInit_DLLs-x32: C:\Windows\SysWOW64\nvinit.dll => C:\Windows\SysWOW64\nvinit.dll [215360 2012-03-01] (NVIDIA Corporation) Startup: C:\Users\Vanessa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk ShortcutTarget: Dropbox.lnk -> C:\Users\Vanessa\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) ==================== Internet (Whitelisted) ==================== HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.puls4.com/home HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://at.msn.com/?ocid=iehp HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0xA77B1F82C8C3CD01 HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de-AT BHO: Lync Browser Helper - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation) BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation) BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation) BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation) BHO-x32: ContributeBHO Class - {074C1DC5-9320-4A9A-947D-C042949C6216} - C:\Program Files (x86)\Adobe\/Adobe Contribute CS4/contributeieplugin.dll (Adobe Systems Incorporated.) BHO-x32: Lync Browser Helper - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation) BHO-x32: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL (Microsoft Corporation) BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: Microsoft Web Test Recorder 10.0 Helper - {876d9f09-c6d6-4324-a2cc-04dd9a4de12f} - C:\Program Files (x86)\Microsoft Visual Studio 11.0\Common7\IDE\PrivateAssemblies\Microsoft.VisualStudio.QualityTools.RecorderBarBHO100.dll (Microsoft Corporation) BHO-x32: CIESpeechBHO Class - {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll (Atheros Commnucations) BHO-x32: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated) BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation) BHO-x32: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation) BHO-x32: Bing Bar Helper - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.) BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: Microsoft Web Test Recorder 10.0 Helper - {DDA57003-0068-4ed2-9D32-4D1EC707D94D} - C:\Program Files (x86)\Microsoft Visual Studio 10.0\Common7\IDE\PrivateAssemblies\Microsoft.VisualStudio.QualityTools.RecorderBarBHO100.dll (Microsoft Corporation) BHO-x32: SmartSelect Class - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated) Toolbar: HKLM-x32 - Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated) Toolbar: HKLM-x32 - Contribute Toolbar - {517BDDE4-E3A7-4570-B21E-2B52B6139FC7} - C:\Program Files (x86)\Adobe\/Adobe Contribute CS4/contributeieplugin.dll (Adobe Systems Incorporated.) Toolbar: HKLM-x32 - Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.) DPF: HKLM-x32 {D27CDB6E-AE6D-11CF-96B8-444553540000} hxxp://fpdownload2.macromedia.com/get/flashplayer/current/swflash.cab Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies) Tcpip\Parameters: [DhcpNameServer] 10.1.0.21 10.1.0.23 8.8.8.8 FireFox: ======== FF ProfilePath: C:\Users\Vanessa\AppData\Roaming\Mozilla\Firefox\Profiles\tb5hgdeu.default FF SearchEngineOrder.user_pref("browser.search.order.1", "");: user_pref("browser.search.order.1", ""); FF SelectedSearchEngine: ICQ Search FF Homepage: hxxp://www.puls4.com/home FF Plugin: @microsoft.com/GENUINE - disabled No File FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation) FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation) FF Plugin: @videolan.org/vlc,version=2.1.0 - C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF32.dll No File FF Plugin-x32: @adobe.com/ShockwavePlayer - C:\Windows\SysWOW64\Adobe\Director\np32dsw_1202122.dll (Adobe Systems, Inc.) FF Plugin-x32: @Apple.com/iTunes,version=1.0 - C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll () FF Plugin-x32: @google.com/npPicasa3,version=3.0.0 - C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll (Google, Inc.) FF Plugin-x32: @java.com/DTPlugin,version=10.45.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=10.45.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @microsoft.com/GENUINE - disabled No File FF Plugin-x32: @microsoft.com/Lync,version=15.0 - C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll (Microsoft Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files (x86)\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll No File FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3538.0513 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll No File FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.23.9\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.23.9\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: Adobe Acrobat - C:\Program Files (x86)\Adobe\Acrobat 9.0\Acrobat\Air\nppdf32.dll (Adobe Systems Inc.) FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Plugin HKCU: @tools.google.com/Google Update;version=3 - C:\Users\Vanessa\AppData\Local\Google\Update\1.3.23.9\npGoogleUpdate3.dll (Google Inc.) FF Plugin HKCU: @tools.google.com/Google Update;version=9 - C:\Users\Vanessa\AppData\Local\Google\Update\1.3.23.9\npGoogleUpdate3.dll (Google Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npMeetingJoinPluginOC.dll (Microsoft Corporation) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nppdf32.dll (Adobe Systems Inc.) FF SearchPlugin: C:\Users\Vanessa\AppData\Roaming\Mozilla\Firefox\Profiles\tb5hgdeu.default\searchplugins\icq.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\searchplugins\yahoo-de.xml FF Extension: Exif Viewer - C:\Users\Vanessa\AppData\Roaming\Mozilla\Firefox\Profiles\tb5hgdeu.default\Extensions\exif_viewer@mozilla.doslash.org.xpi [2013-03-19] FF Extension: UAControl - C:\Users\Vanessa\AppData\Roaming\Mozilla\Firefox\Profiles\tb5hgdeu.default\Extensions\uacontrol@qz.tsugumi.org.xpi [2013-03-19] FF Extension: Tamper Data - C:\Users\Vanessa\AppData\Roaming\Mozilla\Firefox\Profiles\tb5hgdeu.default\Extensions\{9c51bd27-6ed8-4000-a2bf-36cb95c0c947}.xpi [2013-03-19] Chrome: ======= CHR HomePage: hxxp://www.google.com/ CHR Plugin: (Remoting Viewer) - internal-remoting-viewer CHR Plugin: (Native Client) - C:\Users\Vanessa\AppData\Local\Google\Chrome\Application\33.0.1750.154\ppGoogleNaClPluginChrome.dll () CHR Plugin: (Chrome PDF Viewer) - C:\Users\Vanessa\AppData\Local\Google\Chrome\Application\33.0.1750.154\pdf.dll () CHR Plugin: (Shockwave Flash) - C:\Users\Vanessa\AppData\Local\Google\Chrome\Application\33.0.1750.154\gcswf32.dll No File CHR Plugin: (Shockwave Flash) - C:\Windows\system32\Macromed\Flash\NPSWF32.dll No File CHR Plugin: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll (Adobe Systems Inc.) CHR Plugin: (Microsoft Office 2010) - C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation) CHR Plugin: (Microsoft Office 2010) - C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation) CHR Plugin: (Java(TM) Platform SE 6 U31) - C:\Program Files (x86)\Java\jre6\bin\plugin2\npjp2.dll No File CHR Plugin: (Silverlight Plug-In) - C:\Program Files (x86)\Microsoft Silverlight\4.1.10111.0\npctrl.dll No File CHR Plugin: (Default Plug-in) - default_plugin No File CHR Extension: (Beat the Boot (von Google)) - C:\Users\Vanessa\AppData\Local\Google\Chrome\User Data\Default\Extensions\aidgmjkfmbhldhnhkopojimkhhhcpenl [2012-03-12] CHR Extension: (YouTube) - C:\Users\Vanessa\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2012-03-12] CHR Extension: (Tetris) - C:\Users\Vanessa\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfpkpcnigdggonhlcmbekffepnaflofk [2012-03-19] CHR Extension: (Google-Suche) - C:\Users\Vanessa\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2012-03-12] CHR Extension: (Chain Reaction) - C:\Users\Vanessa\AppData\Local\Google\Chrome\User Data\Default\Extensions\gemgfpodpjapjhfohdlibagceiknakpa [2012-03-12] CHR Extension: (The Elementals) - C:\Users\Vanessa\AppData\Local\Google\Chrome\User Data\Default\Extensions\hfhfehlnocjpbnbcabcjjnemkkkghaak [2012-03-12] CHR Extension: (LineBall) - C:\Users\Vanessa\AppData\Local\Google\Chrome\User Data\Default\Extensions\jeclmehkhpookgkhkecnaanahhoglakj [2012-03-19] CHR Extension: (Little Alchemy) - C:\Users\Vanessa\AppData\Local\Google\Chrome\User Data\Default\Extensions\knkapnclbofjjgicpkfoagdjohlfjhpd [2012-03-12] CHR Extension: (Frogger Classic) - C:\Users\Vanessa\AppData\Local\Google\Chrome\User Data\Default\Extensions\mamnieegbgfhklagjjbacjiidjojeogd [2012-03-12] CHR Extension: (Google Wallet) - C:\Users\Vanessa\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-08-22] CHR Extension: (Google Mail) - C:\Users\Vanessa\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2012-03-12] CHR Extension: (360 WebShield Plug-in) - C:\Users\Vanessa\AppData\Local\Google\Chrome\User Data\Default\Extensions\pppagaglfkmlpgobnlenhknilehpmcbo [2014-03-31] CHR HKLM-x32\...\Chrome\Extension: [pppagaglfkmlpgobnlenhknilehpmcbo] - C:\Program Files\360\360 Internet Security\safemon\360webshield.crx [2014-03-31] CHR StartMenuInternet: Google Chrome - C:\Users\Vanessa\AppData\Local\Google\Chrome\Application\chrome.exe ==================== Services (Whitelisted) ================= R2 360rp; C:\Program Files\360\360 Internet Security\360rps.exe [295608 2014-01-09] (Qihu 360 Software Co., Ltd.) S3 Adobe Version Cue CS4; C:\Program Files (x86)\Common Files\Adobe\Adobe Version Cue CS4\Server\bin\VersionCueCS4.exe [284016 2008-08-15] (Adobe Systems Incorporated) R2 Atheros Bt&Wlan Coex Agent; C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe [138400 2011-03-13] (Atheros) R2 EpsonScanSvc; C:\Windows\system32\EscSvc64.exe [144560 2012-05-17] (Seiko Epson Corporation) R2 EPSON_PM_RPCV4_06; C:\Program Files\Common Files\EPSON\EPW!3 SSRP\E_S60RPB.EXE [152640 2013-04-15] (SEIKO EPSON CORPORATION) S3 fussvc; C:\Program Files (x86)\Windows Kits\8.0\App Certification Kit\fussvc.exe [139776 2012-07-25] (Microsoft Corporation) S2 lxedCATSCustConnectService; C:\Windows\system32\spool\DRIVERS\x64\3\\lxedserv.exe [45736 2010-04-14] (Lexmark International, Inc.) R2 lxed_device; C:\Windows\system32\lxedcoms.exe [1052328 2010-04-14] ( ) R2 lxed_device; C:\Windows\SysWOW64\lxedcoms.exe [598696 2010-04-14] ( ) R2 msoidsvc; C:\Program Files\Common Files\Microsoft Shared\Microsoft Online Services\MSOIDSVC.EXE [2079520 2012-05-17] (Microsoft Corp.) R2 MSSQL$SQLEXPRESS; C:\Program Files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\sqlservr.exe [57617752 2009-03-30] (Microsoft Corporation) S3 scan; C:\Program Files\360\360 Internet Security\scan.dll [423144 2013-02-20] (S.C. BitDefender S.R.L) S4 SQLAgent$SQLEXPRESS; C:\Program Files\Microsoft SQL Server\MSSQL10.SQLEXPRESS\MSSQL\Binn\SQLAGENT.EXE [427880 2009-03-30] (Microsoft Corporation) S3 Te.Service; C:\Program Files (x86)\Windows Kits\8.0\Testing\Runtimes\TAEF\Wex.Services.exe [126976 2012-07-25] (Microsoft Corporation) R2 ZhuDongFangYu; C:\Program Files\360\360 Internet Security\deepscan\QHActiveDefense.exe [228800 2013-12-24] (Qihu 360 Software Co., Ltd.) ==================== Drivers (Whitelisted) ==================== R1 360AntiHacker; C:\Windows\System32\Drivers\360AntiHacker64.sys [97480 2013-11-27] (Qihu 360 Software Co., Ltd.) R3 360AvFlt; C:\Windows\System32\DRIVERS\360AvFlt.sys [67272 2013-03-28] (Qihu 360 Software Co., Ltd.) R1 360Box64; C:\Windows\System32\DRIVERS\360Box64.sys [305856 2013-11-29] (Qihu 360 Software Co., Ltd.) R1 360Camera; C:\Windows\System32\Drivers\360Camera64.sys [41152 2013-12-09] (Qihu 360 Software Co., Ltd.) R1 360fsflt; C:\Windows\System32\DRIVERS\360FsFlt.sys [286912 2013-12-24] (Qihu 360 Software Co., Ltd.) R1 BAPIDRV; C:\Windows\System32\Drivers\BAPIDRV64.SYS [179904 2013-12-10] (Qihu 360 Software Co., Ltd.) R3 SNP2UVC; C:\Windows\System32\DRIVERS\snp2uvc.sys [1800832 2010-09-07] (Sonix Technology Co., Ltd.) S3 VSPerfDrv110; C:\Program Files (x86)\Microsoft Visual Studio 11.0\Team Tools\Performance Tools\x64\VSPerfDrv110.sys [70264 2012-07-26] (Microsoft Corporation) S3 NTGUARD; \??\C:\Program Files (x86)\IKARUS\anti.virus\bin\NTGUARD_X64.SYS [X] ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created Files and Folders ======== 2014-03-31 12:08 - 2014-03-31 12:08 - 00036331 _____ () C:\Users\Vanessa\Desktop\JRT.txt 2014-03-31 11:56 - 2014-03-31 11:56 - 00000000 ____D () C:\Windows\ERUNT 2014-03-31 11:40 - 2014-03-31 11:40 - 00005448 _____ () C:\Users\Vanessa\Desktop\mbam.txt 2014-03-31 11:05 - 2014-03-31 11:46 - 00000000 ____D () C:\AdwCleaner 2014-03-31 11:04 - 2014-03-31 11:04 - 01950720 _____ () C:\Users\Vanessa\Downloads\adwcleaner.exe 2014-03-31 11:04 - 2014-03-31 11:04 - 01038974 _____ (Thisisu) C:\Users\Vanessa\Downloads\JRT.exe 2014-03-31 10:56 - 2014-03-31 11:38 - 00119512 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2014-03-31 10:40 - 2014-03-31 10:40 - 00001264 _____ () C:\Users\Vanessa\Desktop\Revo Uninstaller.lnk 2014-03-31 10:40 - 2014-03-31 10:40 - 00000000 ____D () C:\Program Files (x86)\VS Revo Group 2014-03-31 10:39 - 2014-03-31 10:40 - 02623656 _____ (VS Revo Group Ltd.) C:\Users\Vanessa\Downloads\revosetup95.exe 2014-03-31 09:44 - 2014-03-31 09:44 - 00001102 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2014-03-31 09:43 - 2014-03-31 09:44 - 00000000 ____D () C:\Program Files (x86)\ Malwarebytes Anti-Malware 2014-03-31 09:43 - 2014-03-31 09:43 - 00000000 ____D () C:\ProgramData\Malwarebytes 2014-03-31 09:43 - 2014-03-05 09:26 - 00088280 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys 2014-03-31 09:43 - 2014-03-05 09:26 - 00063192 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys 2014-03-31 09:43 - 2014-03-05 09:26 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys 2014-03-31 09:41 - 2014-03-31 09:41 - 17523384 _____ (Malwarebytes Corporation ) C:\Users\Vanessa\Downloads\mbam-setup-2.0.0.1000.exe 2014-03-31 09:39 - 2014-03-31 09:40 - 00709352 _____ ( ) C:\Users\Vanessa\Downloads\COMPUTER_BILD-Download-Manager_fuer_mbam-setup-2.0.0.1000.exe 2014-03-31 09:23 - 2014-03-31 10:55 - 00000000 ____D () C:\Users\Vanessa\AppData\Roaming\360safe 2014-03-31 09:23 - 2014-03-31 09:23 - 00000974 _____ () C:\Users\Public\Desktop\360 Internet Security.lnk 2014-03-31 09:23 - 2014-03-31 09:23 - 00000000 ____D () C:\Users\Vanessa\AppData\Roaming\360SD 2014-03-31 09:23 - 2014-03-31 09:23 - 00000000 ____D () C:\ProgramData\360SD 2014-03-31 09:23 - 2013-12-24 11:27 - 00286912 _____ (Qihu 360 Software Co., Ltd.) C:\Windows\system32\Drivers\360FsFlt.sys 2014-03-31 09:23 - 2013-12-10 05:49 - 00179904 _____ (Qihu 360 Software Co., Ltd.) C:\Windows\system32\Drivers\BAPIDRV64.SYS 2014-03-31 09:23 - 2013-12-06 14:03 - 00022584 _____ (Qihu 360 Software Co., Ltd.) C:\Windows\system32\Drivers\efimon.sys 2014-03-31 09:23 - 2013-03-28 04:11 - 00067272 _____ (Qihu 360 Software Co., Ltd.) C:\Windows\system32\Drivers\360AvFlt.sys 2014-03-31 09:22 - 2014-03-31 09:22 - 00000000 _RSHD () C:\360SANDBOX 2014-03-31 09:22 - 2013-12-09 04:04 - 00041152 _____ (Qihu 360 Software Co., Ltd.) C:\Windows\system32\Drivers\360Camera64.sys 2014-03-31 09:22 - 2013-11-29 09:55 - 00305856 _____ (Qihu 360 Software Co., Ltd.) C:\Windows\system32\Drivers\360Box64.sys 2014-03-31 09:22 - 2013-11-27 14:10 - 00097480 _____ (Qihu 360 Software Co., Ltd.) C:\Windows\system32\Drivers\360AntiHacker64.sys 2014-03-31 09:21 - 2014-03-31 09:21 - 00000000 ____D () C:\Program Files\360 2014-03-31 09:11 - 2014-03-31 09:19 - 239115400 _____ (Qihu 360 Software Co., Ltd.) C:\Users\Vanessa\Downloads\360is_4.9.0.4900E.exe 2014-03-29 19:21 - 2014-03-29 19:21 - 00028988 _____ () C:\Users\Vanessa\Downloads\Logs (1).zip 2014-03-29 19:19 - 2014-03-29 19:19 - 00028988 _____ () C:\Users\Vanessa\Downloads\Logs.zip 2014-03-29 19:13 - 2014-03-29 19:14 - 00099535 _____ () C:\Users\Vanessa\Downloads\Addition.txt 2014-03-29 19:09 - 2014-03-31 12:10 - 00026385 _____ () C:\Users\Vanessa\Downloads\FRST.txt 2014-03-29 19:09 - 2014-03-31 12:10 - 00000000 ____D () C:\FRST 2014-03-29 19:08 - 2014-03-29 19:08 - 02157056 _____ (Farbar) C:\Users\Vanessa\Downloads\FRST64.exe 2014-03-29 18:26 - 2014-03-29 18:27 - 01950720 _____ () C:\Users\Vanessa\Downloads\adwcleaner_3.022.exe 2014-03-27 21:13 - 2014-03-27 21:14 - 01266347 _____ () C:\Users\Vanessa\Downloads\Personalverrechnung PPP.pptx 2014-03-27 11:41 - 2014-03-27 11:41 - 01643446 _____ () C:\Users\Vanessa\Downloads\Präsentation.pptx 2014-03-24 15:18 - 2014-03-24 15:18 - 00000351 _____ () C:\Users\Vanessa\Documents\Spiele - Verknüpfung.lnk 2014-03-23 14:01 - 2014-03-31 12:01 - 00000911 _____ () C:\Windows\Tasks\EPSON XP-215 217 Series Update {BE76F4A0-0502-4BBD-BB6E-B96FCAF86B16}.job 2014-03-23 14:01 - 2014-03-31 12:01 - 00000725 _____ () C:\Windows\Tasks\EPSON XP-215 217 Series Invitation {BE76F4A0-0502-4BBD-BB6E-B96FCAF86B16}.job 2014-03-23 14:01 - 2014-03-23 14:01 - 00003978 _____ () C:\Windows\System32\Tasks\EPSON XP-215 217 Series Update {BE76F4A0-0502-4BBD-BB6E-B96FCAF86B16} 2014-03-23 14:01 - 2014-03-23 14:01 - 00003792 _____ () C:\Windows\System32\Tasks\EPSON XP-215 217 Series Invitation {BE76F4A0-0502-4BBD-BB6E-B96FCAF86B16} 2014-03-23 14:00 - 2011-03-15 04:03 - 00083968 _____ (SEIKO EPSON CORPORATION) C:\Windows\system32\E_ID4BLGE.DLL 2014-03-23 14:00 - 2007-04-10 02:06 - 00010752 _____ (SEIKO EPSON CORP.) C:\Windows\system32\E_GCINST.DLL 2014-03-23 13:44 - 2014-03-23 13:44 - 00000930 _____ () C:\Users\Public\Desktop\EPSON Scan.lnk 2014-03-23 13:44 - 2014-03-23 13:44 - 00000123 _____ () C:\Users\Public\Desktop\Epson Connect Website.url 2014-03-23 13:44 - 2012-07-24 01:00 - 00466432 _____ (Seiko Epson Corporation) C:\Windows\system32\esxw2ud.dll 2014-03-23 13:44 - 2012-05-17 01:00 - 00144560 _____ (Seiko Epson Corporation) C:\Windows\system32\escsvc64.exe 2014-03-20 08:39 - 2014-03-20 08:39 - 00167776 _____ () C:\Users\Vanessa\Downloads\4422.tmp 2014-03-16 12:30 - 2014-03-19 13:28 - 00005148 _____ () C:\Windows\System32\Tasks\Microsoft Office 15 Sync Maintenance for Vanessa-PC-Vanessa Vanessa-PC 2014-03-14 09:25 - 2014-03-14 09:25 - 00650657 _____ () C:\Users\Vanessa\Downloads\lame3.99.5.zip 2014-03-13 09:02 - 2014-03-01 07:16 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2014-03-13 09:02 - 2014-03-01 06:58 - 02765824 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-03-13 09:02 - 2014-03-01 06:30 - 17074688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-03-13 09:02 - 2014-03-01 05:51 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2014-03-13 09:02 - 2014-03-01 05:47 - 02168320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2014-03-13 09:02 - 2014-03-01 05:43 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2014-03-13 09:02 - 2014-03-01 05:03 - 00524288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2014-03-13 09:02 - 2014-03-01 04:27 - 01156096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2014-03-13 09:01 - 2014-03-01 08:05 - 23133696 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-03-13 09:01 - 2014-03-01 07:17 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-03-13 09:01 - 2014-03-01 06:52 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2014-03-13 09:01 - 2014-03-01 06:51 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2014-03-13 09:01 - 2014-03-01 06:42 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2014-03-13 09:01 - 2014-03-01 06:40 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2014-03-13 09:01 - 2014-03-01 06:37 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2014-03-13 09:01 - 2014-03-01 06:33 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2014-03-13 09:01 - 2014-03-01 06:33 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2014-03-13 09:01 - 2014-03-01 06:32 - 00708608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2014-03-13 09:01 - 2014-03-01 06:23 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2014-03-13 09:01 - 2014-03-01 06:17 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2014-03-13 09:01 - 2014-03-01 06:11 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2014-03-13 09:01 - 2014-03-01 06:02 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2014-03-13 09:01 - 2014-03-01 05:54 - 05768704 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-03-13 09:01 - 2014-03-01 05:52 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2014-03-13 09:01 - 2014-03-01 05:43 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2014-03-13 09:01 - 2014-03-01 05:42 - 00627200 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-03-13 09:01 - 2014-03-01 05:40 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2014-03-13 09:01 - 2014-03-01 05:38 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2014-03-13 09:01 - 2014-03-01 05:37 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2014-03-13 09:01 - 2014-03-01 05:35 - 02041856 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2014-03-13 09:01 - 2014-03-01 05:18 - 13051904 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-03-13 09:01 - 2014-03-01 05:16 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2014-03-13 09:01 - 2014-03-01 05:14 - 04244480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2014-03-13 09:01 - 2014-03-01 05:10 - 02334208 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-03-13 09:01 - 2014-03-01 05:00 - 01964032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2014-03-13 09:01 - 2014-03-01 04:57 - 11266048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2014-03-13 09:01 - 2014-03-01 04:38 - 01393664 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-03-13 09:01 - 2014-03-01 04:32 - 01820160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2014-03-13 09:01 - 2014-03-01 04:25 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2014-03-13 09:01 - 2014-03-01 04:25 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2014-03-13 09:00 - 2014-01-28 04:32 - 00228864 _____ (Microsoft Corporation) C:\Windows\system32\wwansvc.dll 2014-03-13 08:56 - 2014-01-29 04:32 - 00484864 _____ (Microsoft Corporation) C:\Windows\system32\wer.dll 2014-03-13 08:56 - 2014-01-29 04:06 - 00381440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wer.dll 2014-03-13 08:55 - 2014-02-07 03:23 - 03156480 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2014-03-13 08:51 - 2014-02-04 04:32 - 01424384 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll 2014-03-13 08:51 - 2014-02-04 04:32 - 00624128 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll 2014-03-13 08:51 - 2014-02-04 04:04 - 01230336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll 2014-03-13 08:51 - 2014-02-04 04:04 - 00509440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll 2014-03-12 17:54 - 2014-03-12 18:07 - 00000000 ____D () C:\Users\Vanessa\Documents\EPSON SCAN 2014-03-11 22:57 - 2014-03-11 22:58 - 08255594 _____ () C:\Users\Vanessa\Downloads\Joomla_2.5.19-Stable-Full_Package_German (1).zip 2014-03-11 10:55 - 2014-03-11 10:56 - 08255594 _____ () C:\Users\Vanessa\Downloads\Joomla_2.5.19-Stable-Full_Package_German.zip 2014-03-07 19:01 - 2014-03-07 19:01 - 00000000 ____D () C:\Users\Vanessa\Documents\joomla 2014-03-05 13:18 - 2013-12-21 11:53 - 00548864 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2014-03-05 13:18 - 2013-12-21 10:56 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2014-03-03 21:04 - 2014-03-03 21:04 - 00000000 ____D () C:\Users\Vanessa\AppData\Local\Skype 2014-03-03 21:03 - 2014-03-03 21:03 - 00002699 _____ () C:\Users\Public\Desktop\Skype.lnk 2014-03-03 21:03 - 2014-03-03 21:03 - 00000000 ___RD () C:\Program Files (x86)\Skype 2014-03-03 12:05 - 2014-03-03 12:05 - 02150536 _____ (MGTEK) C:\Users\Vanessa\Downloads\adblockie.exe 2014-03-03 09:28 - 2014-03-03 09:28 - 00256439 _____ () C:\Users\Vanessa\Downloads\Frauenleben - Frauenrechte_Präsentation.pptx ==================== One Month Modified Files and Folders ======= 2014-03-31 12:10 - 2014-03-29 19:09 - 00026385 _____ () C:\Users\Vanessa\Downloads\FRST.txt 2014-03-31 12:10 - 2014-03-29 19:09 - 00000000 ____D () C:\FRST 2014-03-31 12:08 - 2014-03-31 12:08 - 00036331 _____ () C:\Users\Vanessa\Desktop\JRT.txt 2014-03-31 12:07 - 2013-02-27 20:40 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-03-31 12:01 - 2014-03-23 14:01 - 00000911 _____ () C:\Windows\Tasks\EPSON XP-215 217 Series Update {BE76F4A0-0502-4BBD-BB6E-B96FCAF86B16}.job 2014-03-31 12:01 - 2014-03-23 14:01 - 00000725 _____ () C:\Windows\Tasks\EPSON XP-215 217 Series Invitation {BE76F4A0-0502-4BBD-BB6E-B96FCAF86B16}.job 2014-03-31 12:00 - 2009-07-14 06:45 - 00021888 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2014-03-31 12:00 - 2009-07-14 06:45 - 00021888 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2014-03-31 11:56 - 2014-03-31 11:56 - 00000000 ____D () C:\Windows\ERUNT 2014-03-31 11:55 - 2012-11-28 13:43 - 00001128 _____ () C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-402389067-2568746762-3875608856-1000UA.job 2014-03-31 11:54 - 2012-09-21 11:20 - 00000000 ____D () C:\Users\Vanessa\AppData\Roaming\Dropbox 2014-03-31 11:53 - 2012-09-21 11:23 - 00000000 ___RD () C:\Users\Vanessa\Dropbox 2014-03-31 11:49 - 2013-12-12 20:04 - 00001108 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2014-03-31 11:49 - 2012-03-12 18:10 - 00065996 _____ () C:\ProgramData\lxedscan.log 2014-03-31 11:48 - 2009-07-14 07:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-03-31 11:47 - 2013-09-17 10:33 - 00058320 _____ () C:\Windows\PFRO.log 2014-03-31 11:47 - 2013-09-17 10:33 - 00014144 _____ () C:\Windows\setupact.log 2014-03-31 11:46 - 2014-03-31 11:05 - 00000000 ____D () C:\AdwCleaner 2014-03-31 11:46 - 2012-03-11 23:24 - 01691575 _____ () C:\Windows\WindowsUpdate.log 2014-03-31 11:40 - 2014-03-31 11:40 - 00005448 _____ () C:\Users\Vanessa\Desktop\mbam.txt 2014-03-31 11:40 - 2013-12-12 20:04 - 00001112 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2014-03-31 11:38 - 2014-03-31 10:56 - 00119512 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2014-03-31 11:33 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\spool 2014-03-31 11:29 - 2013-08-29 13:18 - 00000000 ____D () C:\Windows\PCHEALTH 2014-03-31 11:04 - 2014-03-31 11:04 - 01950720 _____ () C:\Users\Vanessa\Downloads\adwcleaner.exe 2014-03-31 11:04 - 2014-03-31 11:04 - 01038974 _____ (Thisisu) C:\Users\Vanessa\Downloads\JRT.exe 2014-03-31 10:55 - 2014-03-31 09:23 - 00000000 ____D () C:\Users\Vanessa\AppData\Roaming\360safe 2014-03-31 10:44 - 2014-01-20 20:20 - 00000000 ____D () C:\Program Files (x86)\EPSON Software 2014-03-31 10:40 - 2014-03-31 10:40 - 00001264 _____ () C:\Users\Vanessa\Desktop\Revo Uninstaller.lnk 2014-03-31 10:40 - 2014-03-31 10:40 - 00000000 ____D () C:\Program Files (x86)\VS Revo Group 2014-03-31 10:40 - 2014-03-31 10:39 - 02623656 _____ (VS Revo Group Ltd.) C:\Users\Vanessa\Downloads\revosetup95.exe 2014-03-31 09:44 - 2014-03-31 09:44 - 00001102 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2014-03-31 09:44 - 2014-03-31 09:43 - 00000000 ____D () C:\Program Files (x86)\ Malwarebytes Anti-Malware 2014-03-31 09:43 - 2014-03-31 09:43 - 00000000 ____D () C:\ProgramData\Malwarebytes 2014-03-31 09:41 - 2014-03-31 09:41 - 17523384 _____ (Malwarebytes Corporation ) C:\Users\Vanessa\Downloads\mbam-setup-2.0.0.1000.exe 2014-03-31 09:40 - 2014-03-31 09:39 - 00709352 _____ ( ) C:\Users\Vanessa\Downloads\COMPUTER_BILD-Download-Manager_fuer_mbam-setup-2.0.0.1000.exe 2014-03-31 09:23 - 2014-03-31 09:23 - 00000974 _____ () C:\Users\Public\Desktop\360 Internet Security.lnk 2014-03-31 09:23 - 2014-03-31 09:23 - 00000000 ____D () C:\Users\Vanessa\AppData\Roaming\360SD 2014-03-31 09:23 - 2014-03-31 09:23 - 00000000 ____D () C:\ProgramData\360SD 2014-03-31 09:22 - 2014-03-31 09:22 - 00000000 _RSHD () C:\360SANDBOX 2014-03-31 09:22 - 2013-07-14 12:47 - 00000000 ____D () C:\ProgramData\Avira 2014-03-31 09:21 - 2014-03-31 09:21 - 00000000 ____D () C:\Program Files\360 2014-03-31 09:19 - 2014-03-31 09:11 - 239115400 _____ (Qihu 360 Software Co., Ltd.) C:\Users\Vanessa\Downloads\360is_4.9.0.4900E.exe 2014-03-31 08:22 - 2011-04-12 09:43 - 00765168 _____ () C:\Windows\system32\perfh007.dat 2014-03-31 08:22 - 2011-04-12 09:43 - 00174366 _____ () C:\Windows\system32\perfc007.dat 2014-03-31 08:22 - 2009-07-14 07:13 - 01804654 _____ () C:\Windows\system32\PerfStringBackup.INI 2014-03-30 20:18 - 2012-11-28 13:43 - 00001076 _____ () C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-402389067-2568746762-3875608856-1000Core.job 2014-03-29 19:21 - 2014-03-29 19:21 - 00028988 _____ () C:\Users\Vanessa\Downloads\Logs (1).zip 2014-03-29 19:19 - 2014-03-29 19:19 - 00028988 _____ () C:\Users\Vanessa\Downloads\Logs.zip 2014-03-29 19:14 - 2014-03-29 19:13 - 00099535 _____ () C:\Users\Vanessa\Downloads\Addition.txt 2014-03-29 19:08 - 2014-03-29 19:08 - 02157056 _____ (Farbar) C:\Users\Vanessa\Downloads\FRST64.exe 2014-03-29 18:27 - 2014-03-29 18:26 - 01950720 _____ () C:\Users\Vanessa\Downloads\adwcleaner_3.022.exe 2014-03-28 10:28 - 2012-03-12 19:13 - 00000000 ____D () C:\Users\Vanessa\AppData\Local\CrashDumps 2014-03-27 21:14 - 2014-03-27 21:13 - 01266347 _____ () C:\Users\Vanessa\Downloads\Personalverrechnung PPP.pptx 2014-03-27 20:35 - 2014-01-27 21:12 - 00000000 ____D () C:\Users\Vanessa\AppData\Local\917560E0-E9D5-435C-8FC4-EF8AB13D9664.aplzod 2014-03-27 11:41 - 2014-03-27 11:41 - 01643446 _____ () C:\Users\Vanessa\Downloads\Präsentation.pptx 2014-03-27 08:35 - 2013-12-12 20:04 - 00004108 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA 2014-03-27 08:35 - 2013-12-12 20:04 - 00003856 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore 2014-03-26 13:50 - 2012-11-28 13:43 - 00004102 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-402389067-2568746762-3875608856-1000UA 2014-03-26 13:50 - 2012-11-28 13:43 - 00003706 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-402389067-2568746762-3875608856-1000Core 2014-03-24 15:18 - 2014-03-24 15:18 - 00000351 _____ () C:\Users\Vanessa\Documents\Spiele - Verknüpfung.lnk 2014-03-24 13:30 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\rescache 2014-03-24 08:49 - 2012-05-15 08:42 - 03283968 ___SH () C:\Users\Vanessa\Desktop\Thumbs.db 2014-03-23 14:02 - 2014-01-20 20:19 - 00000000 ____D () C:\Program Files (x86)\epson 2014-03-23 14:02 - 2012-03-12 01:01 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information 2014-03-23 14:01 - 2014-03-23 14:01 - 00003978 _____ () C:\Windows\System32\Tasks\EPSON XP-215 217 Series Update {BE76F4A0-0502-4BBD-BB6E-B96FCAF86B16} 2014-03-23 14:01 - 2014-03-23 14:01 - 00003792 _____ () C:\Windows\System32\Tasks\EPSON XP-215 217 Series Invitation {BE76F4A0-0502-4BBD-BB6E-B96FCAF86B16} 2014-03-23 13:44 - 2014-03-23 13:44 - 00000930 _____ () C:\Users\Public\Desktop\EPSON Scan.lnk 2014-03-23 13:44 - 2014-03-23 13:44 - 00000123 _____ () C:\Users\Public\Desktop\Epson Connect Website.url 2014-03-23 13:44 - 2014-01-20 20:20 - 00001258 _____ () C:\Users\Public\Desktop\Epson-Handbücher.lnk 2014-03-22 15:25 - 2009-07-14 07:32 - 00000000 ____D () C:\Windows\system32\FxsTmp 2014-03-20 08:39 - 2014-03-20 08:39 - 00167776 _____ () C:\Users\Vanessa\Downloads\4422.tmp 2014-03-19 13:28 - 2014-03-16 12:30 - 00005148 _____ () C:\Windows\System32\Tasks\Microsoft Office 15 Sync Maintenance for Vanessa-PC-Vanessa Vanessa-PC 2014-03-19 11:24 - 2009-07-14 06:45 - 03061824 _____ () C:\Windows\system32\FNTCACHE.DAT 2014-03-19 11:22 - 2013-03-19 08:36 - 00000000 ____D () C:\Program Files\Microsoft Silverlight 2014-03-19 11:22 - 2013-03-19 08:36 - 00000000 ____D () C:\Program Files (x86)\Microsoft Silverlight 2014-03-19 11:20 - 2012-03-12 01:27 - 00000000 ____D () C:\ProgramData\Microsoft Help 2014-03-19 11:18 - 2009-07-14 04:34 - 00000478 _____ () C:\Windows\win.ini 2014-03-19 11:15 - 2013-08-16 17:27 - 00000000 ____D () C:\Windows\system32\MRT 2014-03-19 11:12 - 2012-03-12 00:20 - 90015360 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2014-03-18 20:25 - 2012-05-22 15:22 - 00000000 ___RD () C:\Users\Vanessa\Desktop\x3 2014-03-15 20:37 - 2012-03-12 10:52 - 00002368 _____ () C:\Users\Vanessa\Desktop\Google Chrome.lnk 2014-03-14 13:10 - 2013-08-11 17:04 - 00000000 ____D () C:\Users\Vanessa\Documents\V. HAK 2014-03-14 09:25 - 2014-03-14 09:25 - 00650657 _____ () C:\Users\Vanessa\Downloads\lame3.99.5.zip 2014-03-12 18:07 - 2014-03-12 17:54 - 00000000 ____D () C:\Users\Vanessa\Documents\EPSON SCAN 2014-03-12 17:54 - 2012-03-11 23:29 - 00000000 ____D () C:\Users\Vanessa 2014-03-12 17:53 - 2012-03-11 23:29 - 00000000 ____D () C:\Users\Vanessa\AppData\Local\VirtualStore 2014-03-12 17:45 - 2013-02-27 20:41 - 00003822 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater 2014-03-12 17:45 - 2013-02-27 20:40 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2014-03-12 17:45 - 2012-03-11 23:46 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2014-03-11 23:21 - 2012-03-12 10:57 - 00000000 ____D () C:\Users\Vanessa\AppData\Roaming\Apple Computer 2014-03-11 22:58 - 2014-03-11 22:57 - 08255594 _____ () C:\Users\Vanessa\Downloads\Joomla_2.5.19-Stable-Full_Package_German (1).zip 2014-03-11 10:56 - 2014-03-11 10:55 - 08255594 _____ () C:\Users\Vanessa\Downloads\Joomla_2.5.19-Stable-Full_Package_German.zip 2014-03-10 20:20 - 2012-11-20 11:07 - 00000000 ____D () C:\Users\Vanessa\AppData\Roaming\Skype 2014-03-10 15:34 - 2012-03-12 10:01 - 01778934 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI 2014-03-07 19:01 - 2014-03-07 19:01 - 00000000 ____D () C:\Users\Vanessa\Documents\joomla 2014-03-07 17:58 - 2013-11-20 13:45 - 00000000 ____D () C:\Users\Vanessa\Desktop\Bewerbung 2014-03-07 10:28 - 2012-04-26 13:00 - 00000000 ____D () C:\Users\Vanessa\.VirtualBox 2014-03-05 09:26 - 2014-03-31 09:43 - 00088280 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys 2014-03-05 09:26 - 2014-03-31 09:43 - 00063192 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys 2014-03-05 09:26 - 2014-03-31 09:43 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys 2014-03-03 21:04 - 2014-03-03 21:04 - 00000000 ____D () C:\Users\Vanessa\AppData\Local\Skype 2014-03-03 21:03 - 2014-03-03 21:03 - 00002699 _____ () C:\Users\Public\Desktop\Skype.lnk 2014-03-03 21:03 - 2014-03-03 21:03 - 00000000 ___RD () C:\Program Files (x86)\Skype 2014-03-03 21:03 - 2012-11-20 11:06 - 00000000 ____D () C:\ProgramData\Skype 2014-03-03 12:05 - 2014-03-03 12:05 - 02150536 _____ (MGTEK) C:\Users\Vanessa\Downloads\adblockie.exe 2014-03-03 09:28 - 2014-03-03 09:28 - 00256439 _____ () C:\Users\Vanessa\Downloads\Frauenleben - Frauenrechte_Präsentation.pptx 2014-03-01 08:05 - 2014-03-13 09:01 - 23133696 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-03-01 07:17 - 2014-03-13 09:01 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-03-01 07:16 - 2014-03-13 09:02 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2014-03-01 06:58 - 2014-03-13 09:02 - 02765824 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-03-01 06:52 - 2014-03-13 09:01 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2014-03-01 06:51 - 2014-03-13 09:01 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2014-03-01 06:42 - 2014-03-13 09:01 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2014-03-01 06:40 - 2014-03-13 09:01 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2014-03-01 06:37 - 2014-03-13 09:01 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2014-03-01 06:33 - 2014-03-13 09:01 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2014-03-01 06:33 - 2014-03-13 09:01 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2014-03-01 06:32 - 2014-03-13 09:01 - 00708608 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2014-03-01 06:30 - 2014-03-13 09:02 - 17074688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-03-01 06:23 - 2014-03-13 09:01 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2014-03-01 06:17 - 2014-03-13 09:01 - 00218624 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2014-03-01 06:11 - 2014-03-13 09:01 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2014-03-01 06:02 - 2014-03-13 09:01 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2014-03-01 05:54 - 2014-03-13 09:01 - 05768704 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-03-01 05:52 - 2014-03-13 09:01 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2014-03-01 05:51 - 2014-03-13 09:02 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2014-03-01 05:47 - 2014-03-13 09:02 - 02168320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2014-03-01 05:43 - 2014-03-13 09:02 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2014-03-01 05:43 - 2014-03-13 09:01 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2014-03-01 05:42 - 2014-03-13 09:01 - 00627200 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-03-01 05:40 - 2014-03-13 09:01 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2014-03-01 05:38 - 2014-03-13 09:01 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2014-03-01 05:37 - 2014-03-13 09:01 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2014-03-01 05:35 - 2014-03-13 09:01 - 02041856 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2014-03-01 05:18 - 2014-03-13 09:01 - 13051904 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-03-01 05:16 - 2014-03-13 09:01 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2014-03-01 05:14 - 2014-03-13 09:01 - 04244480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2014-03-01 05:10 - 2014-03-13 09:01 - 02334208 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-03-01 05:03 - 2014-03-13 09:02 - 00524288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2014-03-01 05:00 - 2014-03-13 09:01 - 01964032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2014-03-01 04:57 - 2014-03-13 09:01 - 11266048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2014-03-01 04:38 - 2014-03-13 09:01 - 01393664 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-03-01 04:32 - 2014-03-13 09:01 - 01820160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2014-03-01 04:27 - 2014-03-13 09:02 - 01156096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2014-03-01 04:25 - 2014-03-13 09:01 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2014-03-01 04:25 - 2014-03-13 09:01 - 00703488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll Some content of TEMP: ==================== C:\Users\Vanessa\AppData\Local\Temp\avgnt.exe C:\Users\Vanessa\AppData\Local\Temp\eauninstall.exe C:\Users\Vanessa\AppData\Local\Temp\htmlayout.dll C:\Users\Vanessa\AppData\Local\Temp\jre-7u45-windows-i586-iftw.exe C:\Users\Vanessa\AppData\Local\Temp\Quarantine.exe C:\Users\Vanessa\AppData\Local\Temp\The Sims 2_uninst.exe C:\Users\Vanessa\AppData\Local\Temp\tmp5C1E.exe C:\Users\Vanessa\AppData\Local\Temp\toolbar149111090.exe C:\Users\Vanessa\AppData\Local\Temp\uninstall149137501.exe C:\Users\Vanessa\AppData\Local\Temp\uninstall149137533.exe C:\Users\Vanessa\AppData\Local\Temp\xmlUpdater.exe ==================== Bamital & volsnap Check ================= C:\Windows\System32\winlogon.exe => MD5 is legit C:\Windows\System32\wininit.exe => MD5 is legit C:\Windows\SysWOW64\wininit.exe => MD5 is legit C:\Windows\explorer.exe => MD5 is legit C:\Windows\SysWOW64\explorer.exe => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\SysWOW64\svchost.exe => MD5 is legit C:\Windows\System32\services.exe => MD5 is legit C:\Windows\System32\User32.dll => MD5 is legit C:\Windows\SysWOW64\User32.dll => MD5 is legit C:\Windows\System32\userinit.exe => MD5 is legit C:\Windows\SysWOW64\userinit.exe => MD5 is legit C:\Windows\System32\rpcss.dll => MD5 is legit C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit LastRegBack: 2013-12-18 11:01 ==================== End Of Log ============================ --- --- --- |
01.04.2014, 08:59 | #9 |
/// the machine /// TB-Ausbilder | TR/Dropper.MSIL.Gen aus http://sharefiles.com/getdistr/oxy/ Machen wir jetzt: Drücke bitte die Windowstaste + R Taste und schreibe notepad in das Ausführen Fenster. Kopiere nun folgenden Text aus der Code-Box in das leere Textdokument Code:
ATTFilter Task: {4D128264-9B57-416D-8C47-4FE141B5C152} - System32\Tasks\RunAsStdUser Task => C:\Users\Vanessa\AppData\Local\Oxy\Application\oxy.exe <==== ATTENTION Task: {5BA4B373-6DBF-43D0-AB3E-1B0F7DC7BD85} - System32\Tasks\Express FilesUpdate => C:\Program Files (x86)\ExpressFiles\EFUpdater.exe <==== ATTENTION Task: {89A40006-C2C8-4490-B385-0FDCF66A0C57} - System32\Tasks\Oxy => C:\Users\Vanessa\AppData\Roaming\Oxy\Updater.exe [2013-12-11] () <==== ATTENTION Speichere diese bitte als Fixlist.txt auf deinem Desktop (oder dem Verzeichnis in dem sich FRST befindet).
ESET Online Scanner
Downloade Dir bitte SecurityCheck und:
und ein frisches FRST log bitte. Noch Probleme?
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
02.04.2014, 07:16 | #10 |
| TR/Dropper.MSIL.Gen aus http://sharefiles.com/getdistr/oxy/ Fixlog.txt Code:
ATTFilter Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 13-03-2014 Ran by Vanessa at 2014-04-01 10:08:00 Run:1 Running from C:\Users\Vanessa\Downloads Boot Mode: Normal ============================================== Content of fixlist: ***************** Task: {4D128264-9B57-416D-8C47-4FE141B5C152} - System32\Tasks\RunAsStdUser Task => C:\Users\Vanessa\AppData\Local\Oxy\Application\oxy.exe <==== ATTENTION Task: {5BA4B373-6DBF-43D0-AB3E-1B0F7DC7BD85} - System32\Tasks\Express FilesUpdate => C:\Program Files (x86)\ExpressFiles\EFUpdater.exe <==== ATTENTION Task: {89A40006-C2C8-4490-B385-0FDCF66A0C57} - System32\Tasks\Oxy => C:\Users\Vanessa\AppData\Roaming\Oxy\Updater.exe [2013-12-11] () <==== ATTENTION ***************** HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{4D128264-9B57-416D-8C47-4FE141B5C152} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{4D128264-9B57-416D-8C47-4FE141B5C152} => Key deleted successfully. C:\Windows\System32\Tasks\RunAsStdUser Task => Moved successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\RunAsStdUser Task => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{5BA4B373-6DBF-43D0-AB3E-1B0F7DC7BD85} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{5BA4B373-6DBF-43D0-AB3E-1B0F7DC7BD85} => Key deleted successfully. C:\Windows\System32\Tasks\Express FilesUpdate not found. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Express FilesUpdate => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{89A40006-C2C8-4490-B385-0FDCF66A0C57} => Key deleted successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{89A40006-C2C8-4490-B385-0FDCF66A0C57} => Key deleted successfully. C:\Windows\System32\Tasks\Oxy => Moved successfully. HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Oxy => Key deleted successfully. ==== End of Fixlog ==== Code:
ATTFilter ESETSmartInstaller@High as downloader log: all ok esets_scanner_update returned -1 esets_gle=12 # version=8 # OnlineScannerApp.exe=1.0.0.1 # OnlineScanner.ocx=1.0.0.6920 # api_version=3.0.2 # EOSSerial=1838816f4f613443b634de4c2bd789a8 # engine=17703 # end=finished # remove_checked=false # archives_checked=true # unwanted_checked=false # unsafe_checked=false # antistealth_checked=true # utc_time=2014-04-02 05:57:03 # local_time=2014-04-02 07:57:03 (+0100, Mitteleuropäische Sommerzeit) # country="Austria" # lang=1033 # osver=6.1.7601 NT Service Pack 1 # compatibility_mode=5893 16776573 100 94 78438 148048073 0 0 # scanned=442210 # found=1 # cleaned=0 # scan_time=78095 sh=650A139860FA937009C3D824BA2AB83D20B5DFE8 ft=1 fh=c71c001110b3f691 vn="a variant of Win32/Injected.F trojan" ac=I fn="C:\Users\Vanessa\Downloads\COMPUTER_BILD-Download-Manager_fuer_mbam-setup-2.0.0.1000.exe" Code:
ATTFilter Results of screen317's Security Check version 0.99.80 Windows 7 Service Pack 1 x64 (UAC is enabled) Internet Explorer 11 ``````````````Antivirus/Firewall Check:`````````````` 360 Internet Security WMI entry may not exist for antivirus; attempting automatic update. `````````Anti-malware/Other Utilities Check:````````` Java 7 Update 45 Visual Studio Extensions for Windows Library for JavaScript Java version out of Date! Adobe Flash Player 10 Flash Player out of Date! Adobe Reader 10.1.9 Adobe Reader out of Date! Mozilla Firefox 11.0 Firefox out of Date! Google Chrome 33.0.1750.146 Google Chrome 33.0.1750.154 ````````Process Check: objlist.exe by Laurent```````` Common Files Microsoft Shared Microsoft Online Services smss.exe -?- Common Files Microsoft Shared Microsoft Online Services MSOIDSVC.EXE Common Files Microsoft Shared Microsoft Online Services MSOIDSvcm.exe Common Files Microsoft Shared Microsoft Online Services audiodg.exe -?- `````````````````System Health check````````````````` Total Fragmentation on Drive C: ````````````````````End of Log`````````````````````` |
02.04.2014, 14:04 | #11 |
/// the machine /// TB-Ausbilder | TR/Dropper.MSIL.Gen aus http://sharefiles.com/getdistr/oxy/ Java, Flash, Adobe und Firefox updaten. Fertig Die Reihenfolge ist hier entscheidend.
Falls Du Lob oder Kritik abgeben möchtest kannst Du das hier tun Hier noch ein paar Tipps zur Absicherung deines Systems. Ich kann garnicht zu oft erwähnen, wie wichtig es ist, dass dein System Up to Date ist.
Anti- Viren Software
Zusätzlicher Schutz
Sicheres Browsen
Alternative Browser Andere Browser tendieren zu etwas mehr Sicherheit als der IE, da diese keine Active X Elemente verwenden. Diese können von Spyware zur Infektion deines Systems missbraucht werden.
Performance Bereinige regelmäßig deine Temp Files. Ich empfehle hierzu TFC Halte dich fern von jedlichen Registry Cleanern. Diese Schaden deinem System mehr als sie helfen. Hier ein paar ( englishe ) Links Miekemoes Blogspot ( MVP ) Bill Castner ( MVP ) Don'ts
Hinweis: Bitte gib mir eine kurze Rückmeldung wenn alles erledigt ist und keine Fragen mehr vorhanden sind, so das ich diesen Thread aus meinen Abos löschen kann.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
02.04.2014, 15:41 | #12 |
| TR/Dropper.MSIL.Gen aus http://sharefiles.com/getdistr/oxy/ Danke Danke Danke! Alles erledigt Vielen Dank! |
03.04.2014, 10:43 | #13 |
/// the machine /// TB-Ausbilder | TR/Dropper.MSIL.Gen aus http://sharefiles.com/getdistr/oxy/ Gern Geschehen
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
Themen zu TR/Dropper.MSIL.Gen aus http://sharefiles.com/getdistr/oxy/ |
avira, cs4/contributeieplugin.dll, heulen, immer wieder, meldung, meldungen, mobogenie, mobogenie entfernen, pup.optional.amonetize, pup.optional.bandoo.a, pup.optional.expressfiles.a, pup.optional.filepile.a, pup.optional.gigaclicks.a, pup.optional.installmonetizer, pup.optional.kozaka.a, pup.optional.nextlive.a, pup.optional.opencandy, pup.optional.outbrowse, pup.optional.remarkit.a, pup.optional.softonic.a, quarantäne, tagen, tr/dropper.msil.gen, verschoben, win32/injected.f |