|
Plagegeister aller Art und deren Bekämpfung: proxyserver blockiert Internetzugriff fast aller programmeWindows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
03.08.2014, 13:49 | #1 |
| proxyserver blockiert Internetzugriff fast aller programme Guten Tag allerseits, seit gestern Abend ca. 22:00 habe ich das Problem, dass alle Programme die Internetzugriff benötigen (komischerweise abgesehen von pokerstars.eu und skype) diesen nicht mehr bekommen. Im Browser steht "Keine Verbindung zum Proxyserver" (Opera). Die darauf folgende Hilfeleistung (Proxyserver in den Internetoptionen deaktivieren) habe ich bereits ausgeführt, jedoch ohne Erfolg, da sich das Häkchen zum Nutzen des Proxyservers nach spätestens einer Minute von selbst erneut setzt. Daraufhin habe ich auf eigene Faust mit avast! Free Antivirus einen Virenscan durchgeführt, der 5 Funde ergab. Diese habe ich ein einen Container verschoben. Wie ich die entsprechenden Logs finde weiß ich leider nicht, im logordner sind einige Datein die am 03.08. geändert wurden. Falls gewünscht kann ich einen screenshot zum "Detaillierten Report" den die avastsoftware anbietet posten. Eine Zweite Überprüfung (wenige minuten vor Erstellung dieses Threads) ergab 2 FUnde, auch diese sind beide in einen Container verschoben worden Danach habe ich die Regeln des Forums befolgt. DIe Logs die FRST und GMR erstellt haben sind auf Grund ihrer Größe als Archiv im Anhang gespeichert! Vielen Dank im Voraus Gruß Yannick |
03.08.2014, 13:57 | #2 |
/// TB-Ausbilder | proxyserver blockiert Internetzugriff fast aller programme Hallo YTheSnaiL
__________________Mein Name ist Timo und ich werde Dir bei deinem Problem behilflich sein.
Hinweis: Ich kann Dir niemals eine Garantie geben, dass ich auch alles finde. Eine Formatierung ist immer der sicherste Weg. Wir "arbeiten" hier alle freiwillig und in unserer Freizeit *hust*. Daher kann es bei Antworten zu Verzögerungen kommen. Solltest du innerhalb 48 Std keine Antwort von mir erhalten, dann schreib mit eine PM Solltest Du Dich für eine Bereinigung entscheiden, arbeite solange mit, bis ich oder jemand vom Team sagt, dass Du clean bist. Bitte die Logs hier posten, ggf. die Logs aufteilen auf mehrere Posts. |
03.08.2014, 14:25 | #3 |
| proxyserver blockiert Internetzugriff fast aller programme jow timo, danke dass du so aufopferungsvoll mit deiner "Freizeit" umgehst
__________________dann probieren wir das mit den Logs mal: FRST: FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 02-08-2014 Ran by Yannick (administrator) on YANNICK on 03-08-2014 13:56:54 Running from G:\ Platform: Windows 8 (X64) OS Language: Deutsch (Deutschland) Internet Explorer Version 10 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (If an entry is included in the fixlist, the process will be closed. The file will not be moved.) (AMD) C:\Windows\System32\atiesrxx.exe (AMD) C:\Windows\System32\atieclxx.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe () C:\Program Files (x86)\TOSHIBA\Password Utility\GFNEXSrv.exe (Cherished Technololgy LIMITED) C:\ProgramData\IePluginServices\PluginService.exe (Fuyu LIMITED) C:\ProgramData\WindowsProtectManger\wprotectmanager.exe (Taiwan Shui Mu Chih Ching Technology Limited.) C:\Program Files (x86)\WinZipper\winzipersvc.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.24.15\GoogleCrashHandler.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.24.15\GoogleCrashHandler64.exe (Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe (Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe (Microsoft Corporation) C:\Program Files\Microsoft Office 15\ClientX64\officeclicktorun.exe (Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe (Microsoft Corporation) C:\Windows\System32\dasHost.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe (PostgreSQL Global Development Group) C:\postgreSQL\bin\pg_ctl.exe (Reimage®) C:\Program Files\Reimage\Reimage Protector\ReiGuard.exe (PostgreSQL Global Development Group) C:\postgreSQL\bin\postgres.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe (TOSHIBA Corporation) C:\Windows\System32\TODDSrv.exe (Wajam Internet Technologies Inc.) C:\Program Files (x86)\Wajam\Wajam Internet Enhancer\WajamInternetEnhancerService.exe (PostgreSQL Global Development Group) C:\postgreSQL\bin\postgres.exe (PostgreSQL Global Development Group) C:\postgreSQL\bin\postgres.exe (PostgreSQL Global Development Group) C:\postgreSQL\bin\postgres.exe (PostgreSQL Global Development Group) C:\postgreSQL\bin\postgres.exe (TOSHIBA Corporation) C:\Program Files\TOSHIBA\Teco\TecoService.exe (Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.0.1119.516_x64__8wekyb3d8bbwe\LiveComm.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (TOSHIBA Corporation) C:\Program Files\TOSHIBA\Hotkey\TCrdMain_Win8.exe (TOSHIBA Corporation) C:\Program Files (x86)\TOSHIBA\System Setting\TSleepSrv.exe (TOSHIBA Corporation) C:\Program Files\TOSHIBA\Teco\TecoResident.exe (SRS Labs, Inc.) C:\Program Files\SRS Labs\SRS Control Panel\SRSPanel_64.exe (Smartbar) C:\Users\Yannick\AppData\Local\Smartbar\Application\SnapDo.exe (Google Inc.) C:\Users\Yannick\AppData\Local\Google\Update\GoogleUpdate.exe (BRS) C:\Program Files (x86)\Mysearchdial\BRS\brs.exe () C:\Users\Yannick\AppData\Roaming\InetStat\inetstat.exe (Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe (Hewlett-Packard Co.) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe (McAfee, Inc.) C:\Program Files\McAfee Security Scan\3.8.150\SSScheduler.exe (Dropbox, Inc.) C:\Users\Yannick\AppData\Roaming\Dropbox\bin\Dropbox.exe (MyPCBackup.com) C:\Program Files (x86)\MyPC Backup\MyPC Backup.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Hewlett-Packard) C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe (Hewlett-Packard Co.) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqste08.exe (Hewlett-Packard Co.) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqbam08.exe (Hewlett-Packard) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgpc01.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Nero AG) C:\Program Files (x86)\Nero\Update\NASvc.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (TOSHIBA Corporation) C:\Program Files\TOSHIBA\TOSHIBA Service Station\ToshibaServiceStation.exe (TOSHIBA Corporation) C:\Program Files\TOSHIBA\TPHM\TPCHSrv.exe (TOSHIBA Corporation) C:\Program Files\TOSHIBA\TPHM\TPCHWMsg.exe (TOSHIBA Corporation) C:\Program Files\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe (Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe (installdaddy) C:\Program Files (x86)\Torntv V9.0\Torntv V9.0-bg.exe (Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe (ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe (Toshiba Europe GmbH) C:\Program Files (x86)\Toshiba TEMPRO\Toshiba.Tempro.UI.CommonNotifier.exe (Microsoft Corporation.) C:\Program Files (x86)\Microsoft\BingBar\7.1.355.0\SeaPort.EXE (Opera Software) C:\Program Files (x86)\Opera\20.0.1387.77\opera.exe () C:\Program Files (x86)\Opera\20.0.1387.77\opera_crashreporter.exe (Opera Software) C:\Program Files (x86)\Opera\20.0.1387.77\opera.exe (Opera Software) C:\Program Files (x86)\Opera\20.0.1387.77\opera.exe (Opera Software) C:\Program Files (x86)\Opera\20.0.1387.77\opera.exe (Opera Software) C:\Program Files (x86)\Opera\20.0.1387.77\opera.exe (Opera Software) C:\Program Files (x86)\Opera\20.0.1387.77\opera.exe (Opera Software) C:\Program Files (x86)\Opera\20.0.1387.77\opera.exe (Opera Software) C:\Program Files (x86)\Opera\20.0.1387.77\opera.exe (Opera Software) C:\Program Files (x86)\Opera\20.0.1387.77\opera.exe (Opera Software) C:\Program Files (x86)\Opera\20.0.1387.77\opera.exe (Opera Software) C:\Program Files (x86)\Opera\20.0.1387.77\opera.exe (Opera Software) C:\Program Files (x86)\Opera\20.0.1387.77\opera.exe (Opera Software) C:\Program Files (x86)\Opera\20.0.1387.77\opera.exe (Opera Software) C:\Program Files (x86)\Opera\20.0.1387.77\opera.exe (Opera Software) C:\Program Files (x86)\Opera\20.0.1387.77\opera.exe (Opera Software) C:\Program Files (x86)\Opera\20.0.1387.77\opera.exe (Opera Software) C:\Program Files (x86)\Opera\20.0.1387.77\opera.exe (Opera Software) C:\Program Files (x86)\Opera\20.0.1387.77\opera.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.0.1119.516_x64__8wekyb3d8bbwe\LiveComm.exe (Opera Software) C:\Program Files (x86)\Opera\20.0.1387.77\opera.exe (Opera Software) C:\Program Files (x86)\Opera\20.0.1387.77\opera.exe (Opera Software) C:\Program Files (x86)\Opera\20.0.1387.77\opera.exe (Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.0.1119.516_x64__8wekyb3d8bbwe\LiveComm.exe (Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.0.1119.516_x64__8wekyb3d8bbwe\LiveComm.exe (Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.0.1119.516_x64__8wekyb3d8bbwe\LiveComm.exe ==================== Registry (Whitelisted) ================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Run: [] => [X] HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [12936848 2012-07-13] (Realtek Semiconductor) HKLM\...\Run: [TCrdMain] => C:\Program Files\TOSHIBA\Hotkey\TCrdMain_Win8.exe [2608040 2012-08-14] (TOSHIBA Corporation) HKLM\...\Run: [TSleepSrv] => C:\Program Files (x86)\TOSHIBA\System Setting\TSleepSrv.exe [1548952 2012-08-05] (TOSHIBA Corporation) HKLM\...\Run: [TODDMain] => C:\Program Files (x86)\TOSHIBA\System Setting\TODDMain.exe [213136 2012-08-05] () HKLM\...\Run: [TecoResident] => C:\Program Files\TOSHIBA\Teco\TecoResident.exe [169896 2012-08-14] (TOSHIBA Corporation) HKLM\...\Run: [TosWaitSrv] => C:\Program Files\TOSHIBA\TPHM\TosWaitSrv.exe [356776 2012-07-11] (TOSHIBA Corporation) HKLM\...\Run: [SRS Premium Sound HD] => C:\Program Files\SRS Labs\SRS Control Panel\SRSPanel_64.exe [2170784 2012-07-27] (SRS Labs, Inc.) HKLM\...\Run: [Toshiba TEMPRO] => C:\Program Files (x86)\Toshiba TEMPRO\TemproTray.exe HKLM-x32\...\Run: [Intel AppUp(SM) center] => C:\Program Files (x86)\Intel\IntelAppStore\bin\ismagent.exe [155488 2012-08-02] (Intel Corporation) HKLM-x32\...\Run: [ToshibaDynamicIconUtility] => C:\Program Files\TOSHIBA\TOSHIBA Places Icon Utility\TosDIMonitor.exe [1498624 2012-08-09] (Toshiba) HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [642216 2012-08-08] (Advanced Micro Devices, Inc.) HKLM-x32\...\Run: [TPUReg(x86)] => "C:\Program Files\TOSHIBA\Password Utility\TosPU.exe" /Retimes HKLM-x32\...\Run: [TPUReg] => C:\Program Files (x86)\TOSHIBA\Password Utility\TosPU.exe [6884352 2012-08-23] (Pegatron Corporation) HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated) HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [4085896 2014-08-01] (AVAST Software) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation) HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe [49208 2010-06-09] (Hewlett-Packard) HKLM-x32\...\Run: [] => [X] HKU\S-1-5-21-376805668-1328626857-418462850-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\Steam.exe [1753280 2014-07-12] (Valve Corporation) HKU\S-1-5-21-376805668-1328626857-418462850-1001\...\Run: [CPN Notifier] => C:\Program Files (x86)\Galaxy Poker\PokerNotifier.exe HKU\S-1-5-21-376805668-1328626857-418462850-1001\...\Run: [Browser Infrastructure Helper] => C:\Users\Yannick\AppData\Local\Smartbar\Application\SnapDo.exe [21024 2013-11-27] (Smartbar) HKU\S-1-5-21-376805668-1328626857-418462850-1001\...\Run: [Google Update] => C:\Users\Yannick\AppData\Local\Google\Update\GoogleUpdate.exe [116648 2013-12-07] (Google Inc.) HKU\S-1-5-21-376805668-1328626857-418462850-1001\...\Run: [BRS] => C:\Program Files (x86)\Mysearchdial\BRS\brs.exe [1062400 2014-01-29] (BRS) HKU\S-1-5-21-376805668-1328626857-418462850-1001\...\Run: [InetStat] => C:\Users\Yannick\AppData\Roaming\InetStat\inetstat.exe [661984 2014-06-15] () HKU\S-1-5-21-376805668-1328626857-418462850-1001\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [21650016 2014-07-02] (Skype Technologies S.A.) AppInit_DLLs: C:\PROGRA~2\SupTab\SEARCH~2.DLL => C:\Program Files (x86)\SupTab\SearchProtect64.dll [102512 2014-05-08] (Skytech Co., Ltd.) AppInit_DLLs-x32: C:\PROGRA~2\SupTab\SEARCH~1.DLL => C:\Program Files (x86)\SupTab\SearchProtect32.dll [91248 2014-05-08] (Skytech Co., Ltd.) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\HP Digital Imaging Monitor.lnk ShortcutTarget: HP Digital Imaging Monitor.lnk -> C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe (Hewlett-Packard Co.) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk ShortcutTarget: McAfee Security Scan Plus.lnk -> C:\Program Files\McAfee Security Scan\3.8.150\SSScheduler.exe (McAfee, Inc.) Startup: C:\Users\Yannick\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk ShortcutTarget: Dropbox.lnk -> C:\Users\Yannick\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) Startup: C:\Users\Yannick\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MyPC Backup.lnk ShortcutTarget: MyPC Backup.lnk -> C:\Program Files (x86)\MyPC Backup\MyPC Backup.exe (MyPCBackup.com) ShellIconOverlayIdentifiers: SkyDrive1 -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Users\Yannick\AppData\Local\Microsoft\SkyDrive\17.0.2015.0811\amd64\SkyDriveShell64.dll (Microsoft Corporation) ShellIconOverlayIdentifiers: SkyDrive2 -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Users\Yannick\AppData\Local\Microsoft\SkyDrive\17.0.2015.0811\amd64\SkyDriveShell64.dll (Microsoft Corporation) ShellIconOverlayIdentifiers: SkyDrive3 -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Users\Yannick\AppData\Local\Microsoft\SkyDrive\17.0.2015.0811\amd64\SkyDriveShell64.dll (Microsoft Corporation) ShellIconOverlayIdentifiers: SkyDrivePro1 (ErrorConflict) -> {8BA85C75-763B-4103-94EB-9470F12FE0F7} => C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation) ShellIconOverlayIdentifiers: SkyDrivePro2 (SyncInProgress) -> {CD55129A-B1A1-438E-A425-CEBC7DC684EE} => C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation) ShellIconOverlayIdentifiers: SkyDrivePro3 (InSync) -> {E768CD3B-BDDC-436D-9C13-E1B39CA257B1} => C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation) ShellIconOverlayIdentifiers: 00avast -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll (AVAST Software) ShellIconOverlayIdentifiers: DropboxExt1 -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Yannick\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.) ShellIconOverlayIdentifiers: DropboxExt2 -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Yannick\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.) ShellIconOverlayIdentifiers: DropboxExt3 -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Yannick\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.) ShellIconOverlayIdentifiers: DropboxExt4 -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Yannick\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.) ShellIconOverlayIdentifiers: GDriveBlacklistedOverlay -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll (Google) ShellIconOverlayIdentifiers: GDriveSharedEditOverlay -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll (Google) ShellIconOverlayIdentifiers: GDriveSharedOverlay -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll (Google) ShellIconOverlayIdentifiers: GDriveSharedViewOverlay -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D43} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll (Google) ShellIconOverlayIdentifiers: GDriveSyncedOverlay -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll (Google) ShellIconOverlayIdentifiers: GDriveSyncingOverlay -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll (Google) ShellIconOverlayIdentifiers-x32: SkyDrive1 -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Users\Yannick\AppData\Local\Microsoft\SkyDrive\17.0.2015.0811\SkyDriveShell.dll (Microsoft Corporation) ShellIconOverlayIdentifiers-x32: SkyDrive2 -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Users\Yannick\AppData\Local\Microsoft\SkyDrive\17.0.2015.0811\SkyDriveShell.dll (Microsoft Corporation) ShellIconOverlayIdentifiers-x32: SkyDrive3 -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Users\Yannick\AppData\Local\Microsoft\SkyDrive\17.0.2015.0811\SkyDriveShell.dll (Microsoft Corporation) ShellIconOverlayIdentifiers-x32: SkyDrivePro1 (ErrorConflict) -> {8BA85C75-763B-4103-94EB-9470F12FE0F7} => C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation) ShellIconOverlayIdentifiers-x32: SkyDrivePro2 (SyncInProgress) -> {CD55129A-B1A1-438E-A425-CEBC7DC684EE} => C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation) ShellIconOverlayIdentifiers-x32: SkyDrivePro3 (InSync) -> {E768CD3B-BDDC-436D-9C13-E1B39CA257B1} => C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation) ShellIconOverlayIdentifiers-x32: DropboxExt1 -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Yannick\AppData\Roaming\Dropbox\bin\DropboxExt.24.dll (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: DropboxExt2 -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Yannick\AppData\Roaming\Dropbox\bin\DropboxExt.24.dll (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: DropboxExt3 -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Yannick\AppData\Roaming\Dropbox\bin\DropboxExt.24.dll (Dropbox, Inc.) ==================== Internet (Whitelisted) ==================== (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.) ProxyEnable: Internet Explorer proxy is enabled. ProxyServer: http=127.0.0.1:61484;https=127.0.0.1:61484 HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://feed.snapdo.com/?publisher=Soft32YB&dpid=Soft32YB&co=DE&userid=1e8cce26-5520-4889-271e-338fe6006cfa&searchtype=ds&q={searchTerms}&installDate=31/10/2013 HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.trovi.com/?gd=&ctid=CT3314932&octid=EB_ORIGINAL_CTID&ISID=3af89ab4-1c89-4743-94d3-dbc70cfe566c&SearchSource=55&CUI=&UM=6&UP=SP3D3FA572-ABAB-4CB2-BFD3-B8A8BEE297E9&SSPV= HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://isearch.omiga-plus.com/?type=hp&ts=1402785227&from=ild&uid=TOSHIBAXMK6475GSX_82C4F3HSSXX82C4F3HSS HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = hxxp://feed.snapdo.com/?publisher=Soft32YB&dpid=Soft32YB&co=DE&userid=1e8cce26-5520-4889-271e-338fe6006cfa&searchtype=ds&q={searchTerms}&installDate=31/10/2013 HKCU\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://www.giga.de/ HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://isearch.omiga-plus.com/web/?type=ds&ts=1402785227&from=ild&uid=TOSHIBAXMK6475GSX_82C4F3HSSXX82C4F3HSS&q={searchTerms} HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://isearch.omiga-plus.com/?type=hp&ts=1402785227&from=ild&uid=TOSHIBAXMK6475GSX_82C4F3HSSXX82C4F3HSS HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://isearch.omiga-plus.com/?type=hp&ts=1402785227&from=ild&uid=TOSHIBAXMK6475GSX_82C4F3HSSXX82C4F3HSS HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://isearch.omiga-plus.com/web/?type=ds&ts=1402785227&from=ild&uid=TOSHIBAXMK6475GSX_82C4F3HSSXX82C4F3HSS&q={searchTerms} HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://isearch.omiga-plus.com/web/?type=ds&ts=1402785227&from=ild&uid=TOSHIBAXMK6475GSX_82C4F3HSSXX82C4F3HSS&q={searchTerms} HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://isearch.omiga-plus.com/?type=hp&ts=1402785227&from=ild&uid=TOSHIBAXMK6475GSX_82C4F3HSSXX82C4F3HSS HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://isearch.omiga-plus.com/?type=hp&ts=1402785227&from=ild&uid=TOSHIBAXMK6475GSX_82C4F3HSSXX82C4F3HSS HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = hxxp://isearch.omiga-plus.com/web/?type=ds&ts=1402785227&from=ild&uid=TOSHIBAXMK6475GSX_82C4F3HSSXX82C4F3HSS&q={searchTerms} StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe hxxp://www.sweet-page.com/?type=sc&ts=1391004028&from=cor&uid=TOSHIBAXMK6475GSX_82C4F3HSSXX82C4F3HSS SearchScopes: HKLM - DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://isearch.omiga-plus.com/web/?type=ds&ts=1402785227&from=ild&uid=TOSHIBAXMK6475GSX_82C4F3HSSXX82C4F3HSS&q={searchTerms} SearchScopes: HKLM - {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://isearch.omiga-plus.com/web/?type=ds&ts=1402785227&from=ild&uid=TOSHIBAXMK6475GSX_82C4F3HSSXX82C4F3HSS&q={searchTerms} SearchScopes: HKLM - {77AA745B-F4F8-45DA-9B14-61D2D95054C8} URL = hxxp://www.sweet-page.com/web/?type=ds&ts=1391004028&from=cor&uid=TOSHIBAXMK6475GSX_82C4F3HSSXX82C4F3HSS&q={searchTerms} SearchScopes: HKLM - {D5AAB969-BE10-46EC-ADC7-8F42C4A91980} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MATMJS SearchScopes: HKLM-x32 - DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://isearch.omiga-plus.com/web/?type=ds&ts=1402785227&from=ild&uid=TOSHIBAXMK6475GSX_82C4F3HSSXX82C4F3HSS&q={searchTerms} SearchScopes: HKLM-x32 - {006ee092-9658-4fd6-bd8e-a21a348e59f5} URL = hxxp://feed.snapdo.com/?publisher=Soft32YB&dpid=Soft32YB&co=DE&userid=1e8cce26-5520-4889-271e-338fe6006cfa&searchtype=ds&q={searchTerms}&installDate=31/10/2013 SearchScopes: HKLM-x32 - {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://isearch.omiga-plus.com/web/?type=ds&ts=1402785227&from=ild&uid=TOSHIBAXMK6475GSX_82C4F3HSSXX82C4F3HSS&q={searchTerms} SearchScopes: HKCU - DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://isearch.omiga-plus.com/web/?type=ds&ts=1402785227&from=ild&uid=TOSHIBAXMK6475GSX_82C4F3HSSXX82C4F3HSS&q={searchTerms} SearchScopes: HKCU - {006ee092-9658-4fd6-bd8e-a21a348e59f5} URL = hxxp://feed.snapdo.com/?publisher=Soft32YB&dpid=Soft32YB&co=DE&userid=1e8cce26-5520-4889-271e-338fe6006cfa&searchtype=ds&q={searchTerms}&installDate=31/10/2013 SearchScopes: HKCU - {014DB5FA-EAFB-4592-A95B-F44D3EE87FA9} URL = hxxp://www.trovi.com/Results.aspx?gd=&ctid=CT3325578&octid=EB_ORIGINAL_CTID&ISID=MBE9C0793-4974-4961-B2BC-1FE22265FBD1&SearchSource=58&CUI=&UM=2&UP=SP3D3FA572-ABAB-4CB2-BFD3-B8A8BEE297E9&q={searchTerms}&SSPV= SearchScopes: HKCU - {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://isearch.omiga-plus.com/web/?type=ds&ts=1402785227&from=ild&uid=TOSHIBAXMK6475GSX_82C4F3HSSXX82C4F3HSS&q={searchTerms} SearchScopes: HKCU - {77AA745B-F4F8-45DA-9B14-61D2D95054C8} URL = hxxp://www.sweet-page.com/web/?type=ds&ts=1391004028&from=cor&uid=TOSHIBAXMK6475GSX_82C4F3HSSXX82C4F3HSS&q={searchTerms} BHO: Torntv V9.0 -> {11111111-1111-1111-1111-110511131190} -> C:\Program Files (x86)\Torntv V9.0\Torntv V9.0-bho64.dll (installdaddy) BHO: Snap.DoEngine -> {31ad400d-1b06-4e33-a59a-90c2c140cba0} -> C:\windows\system32\mscoree.dll (Microsoft Corporation) BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation) BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software) BHO: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Microsoft Corporation) BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation) BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: MSS+ Identifier -> {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} -> C:\Program Files\McAfee Security Scan\3.8.150\McAfeeMSS_IE.dll (McAfee, Inc.) BHO-x32: Torntv V9.0 -> {11111111-1111-1111-1111-110511131190} -> C:\Program Files (x86)\Torntv V9.0\Torntv V9.0-bho.dll (installdaddy) BHO-x32: PriceGong - Price Comparison -> {1631550F-191D-4826-B069-D9439253D926} -> C:\Program Files (x86)\PriceGong\2.6.12\PriceGongIE.dll (PriceGong) BHO-x32: Snap.DoEngine -> {31ad400d-1b06-4e33-a59a-90c2c140cba0} -> C:\windows\SysWOW64\mscoree.dll (Microsoft Corporation) BHO-x32: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation) BHO-x32: IETabPage Class -> {3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C} -> C:\Program Files (x86)\SupTab\SupTab.dll (Thinknice Co. Limited) BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software) BHO-x32: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Microsoft Corporation) BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation) BHO-x32: Bing Bar Helper -> {d2ce3e00-f94a-4740-988e-03dc2f38c34f} -> C:\Program Files (x86)\Microsoft\BingBar\7.1.355.0\BingExt.dll (Microsoft Corporation.) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: mysearchdial Helper Object -> {EF5625A3-37AB-4BDB-9875-2A3D91CD0DFD} -> C:\Program Files (x86)\Mysearchdial\1.8.29.0\bh\mysearchdial.dll (MySearchDial) Toolbar: HKLM - No Name - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - No File Toolbar: HKLM - Snap.Do - {ae07101b-46d4-4a98-af68-0333ea26e113} - C:\windows\system32\mscoree.dll (Microsoft Corporation) Toolbar: HKLM-x32 - Snap.Do - {ae07101b-46d4-4a98-af68-0333ea26e113} - C:\windows\SysWOW64\mscoree.dll (Microsoft Corporation) Toolbar: HKLM-x32 - mysearchdial Toolbar - {3004627E-F8E9-4E8B-909D-316753CBA923} - C:\Program Files (x86)\Mysearchdial\1.8.29.0\mysearchdialTlbr.dll (MySearchDial) Toolbar: HKLM-x32 - Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files (x86)\Microsoft\BingBar\7.1.355.0\BingExt.dll (Microsoft Corporation.) Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Microsoft Corporation) Handler-x32: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL (Microsoft Corporation) Handler-x32: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Microsoft Corporation) Tcpip\Parameters: [DhcpNameServer] 192.168.0.1 192.168.0.2 FireFox: ======== FF Plugin: @adobe.com/FlashPlayer -> C:\windows\system32\Macromed\Flash\NPSWF64_14_0_0_145.dll () FF Plugin: @java.com/DTPlugin,version=10.45.2 -> C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=10.45.2 -> C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin: @videolan.org/vlc,version=2.0.6 -> C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\windows\SysWOW64\Macromed\Flash\NPSWF32_14_0_0_145.dll () FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation) FF Plugin-x32: @java.com/DTPlugin,version=10.51.2 -> C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=10.51.2 -> C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll (Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3508.0205 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @Nero.com/KM -> C:\PROGRA~2\COMMON~1\Nero\BROWSE~1\NPBROW~1.DLL (Nero AG) FF Plugin-x32: @staging.google.com/globalUpdate Update;version=10 -> C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll (globalUpdate) FF Plugin-x32: @staging.google.com/globalUpdate Update;version=4 -> C:\Program Files (x86)\globalUpdate\Update\1.3.25.0\npGoogleUpdate4.dll (globalUpdate) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 -> C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll () FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Plugin HKCU: @talk.google.com/GoogleTalkPlugin - C:\Users\Yannick\AppData\Roaming\Mozilla\plugins\npgoogletalk.dll (Google) FF Plugin HKCU: @talk.google.com/O1DPlugin - C:\Users\Yannick\AppData\Roaming\Mozilla\plugins\npo1d.dll (Google) FF Plugin HKCU: @tools.google.com/Google Update;version=3 - C:\Users\Yannick\AppData\Local\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.) FF Plugin HKCU: @tools.google.com/Google Update;version=9 - C:\Users\Yannick\AppData\Local\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npMeetingJoinPluginOC.dll (Microsoft Corporation) FF Plugin ProgramFiles/Appdata: C:\Users\Yannick\AppData\Roaming\mozilla\plugins\npgoogletalk.dll (Google) FF Plugin ProgramFiles/Appdata: C:\Users\Yannick\AppData\Roaming\mozilla\plugins\npo1d.dll (Google) FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF FF Extension: avast! Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2013-05-23] FF HKLM-x32\...\Thunderbird\Extensions: [msktbird@mcafee.com] - C:\Program Files\McAfee\MSK FF HKCU\...\Firefox\Extensions: [{8A9386B4-E958-4c4c-ADF4-8F26DB3E4829}] - C:\Program Files (x86)\PriceGong\2.6.12\FF FF Extension: PriceGong - C:\Program Files (x86)\PriceGong\2.6.12\FF [2013-10-31] Chrome: ======= CHR HomePage: hxxp://isearch.omiga-plus.com/?type=hppp&ts=1404716841&from=cor&uid=TOSHIBAXMK6475GSX_82C4F3HSSXX82C4F3HSS CHR StartupUrls: "hxxp://isearch.omiga-plus.com/?type=hppp&ts=1404716841&from=cor&uid=TOSHIBAXMK6475GSX_82C4F3HSSXX82C4F3HSS" CHR DefaultSearchKeyword: omiga-plus CHR DefaultNewTabURL: CHR Plugin: (Shockwave Flash) - C:\Program Files (x86)\Google\Chrome\Application\36.0.1985.125\PepperFlash\pepflashplayer.dll () CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer CHR Plugin: (Native Client) - C:\Program Files (x86)\Google\Chrome\Application\36.0.1985.125\ppGoogleNaClPluginChrome.dll () CHR Plugin: (Chrome PDF Viewer) - C:\Program Files (x86)\Google\Chrome\Application\36.0.1985.125\pdf.dll () CHR Plugin: (Nero Kwik Media Helper) - C:\PROGRA~2\COMMON~1\Nero\BROWSE~1\NPBROW~1.DLL (Nero AG) CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll No File CHR Plugin: (Intel Identity Protection Technology) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation) CHR Plugin: (Intel Identity Protection Technology) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation) CHR Plugin: (WildTangent Games App V2 Presence Detector) - C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll () CHR Extension: (Snap.Do ) - C:\Users\Yannick\AppData\Local\Google\Chrome\User Data\Default\Extensions\amfclgbdpgndipgoegfpkkgobahigbcl [2013-10-31] CHR Extension: (PriceGong) - C:\Users\Yannick\AppData\Local\Google\Chrome\User Data\Default\Extensions\bkomkajifikmkfnjgphkjcfeepbnojok [2013-10-31] CHR Extension: (Adblock Plus) - C:\Users\Yannick\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2014-02-08] CHR Extension: (Jr's Proxy) - C:\Users\Yannick\AppData\Local\Google\Chrome\User Data\Default\Extensions\cldflcjakandmfifipfanklcdfhdiaph [2014-05-30] CHR Extension: (savE ono) - C:\Users\Yannick\AppData\Local\Google\Chrome\User Data\Default\Extensions\ioelihbboagbangdfggambponclgniah [2014-06-15] CHR Extension: (Swift Browse) - C:\Users\Yannick\AppData\Local\Google\Chrome\User Data\Default\Extensions\jgapglgghagmhogfjkdlnnmbdfddeedb [2013-10-31] CHR Extension: (ProxyMate) - C:\Users\Yannick\AppData\Local\Google\Chrome\User Data\Default\Extensions\lebpnjmmkockepeffbadcnechelmhekc [2014-05-30] CHR Extension: (Amazon-Icon) - C:\Users\Yannick\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkcedibhemacmilmkpndpkoidlnmgngg [2014-01-22] CHR Extension: (Google Wallet) - C:\Users\Yannick\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-09-02] CHR Extension: (Extended Protection) - C:\Users\Yannick\AppData\Local\Google\Chrome\User Data\Default\Extensions\ogfjmhfnldnajmfaofeiaepghjenbgjo [2014-02-26] CHR Extension: (Quick start) - C:\Users\Yannick\AppData\Local\Google\Chrome\User Data\Default\Extensions\pelmeidfhdlhlbjimpabfcbnnojbboma [2014-06-15] CHR Extension: (Extutil) - C:\Users\Yannick\AppData\Local\Temp\D7ADFCCA-EE7E-442C-9999-C4D14FEF360B [2014-07-04] CHR Extension: (Managera) - C:\Users\Yannick\AppData\Local\Temp\38fdaae5-8e0e-493c-88ec-e05c3be06e42 [2014-07-04] CHR HKLM\...\Chrome\Extension: [pflphaooapbgpeakohlggbpidpppgdff] - C:\Users\Yannick\AppData\Local\mysearchdial-speeddial.crx [2014-01-29] CHR HKCU\...\Chrome\Extension: [pflphaooapbgpeakohlggbpidpppgdff] - C:\Users\Yannick\AppData\Local\mysearchdial-speeddial.crx [2014-01-29] CHR HKLM-x32\...\Chrome\Extension: [bkomkajifikmkfnjgphkjcfeepbnojok] - C:\Program Files (x86)\PriceGong\2.6.12\pricegong.crx [2013-07-02] CHR HKLM-x32\...\Chrome\Extension: [fhmbbigfkgcficoehkhadjbokhhaijea] - C:\Program Files (x86)\LyricsPlug\Chrome.crx [2013-07-02] CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2014-08-01] CHR HKLM-x32\...\Chrome\Extension: [ifohbjbgfchkkfhphahclmkpgejiplfo] - C:\Users\Yannick\AppData\Local\Google\Chrome\User Data\Default\Extensions\newtab.crx [2013-08-24] CHR HKLM-x32\...\Chrome\Extension: [jgapglgghagmhogfjkdlnnmbdfddeedb] - C:\Program Files (x86)\Swift Browse\jgapglgghagmhogfjkdlnnmbdfddeedb.crx [2013-10-22] CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2014-07-14] CHR HKLM-x32\...\Chrome\Extension: [mkcedibhemacmilmkpndpkoidlnmgngg] - C:\Users\Yannick\ChromeExtensions\mkcedibhemacmilmkpndpkoidlnmgngg\amazon.crx [2014-01-22] CHR HKLM-x32\...\Chrome\Extension: [ogfjmhfnldnajmfaofeiaepghjenbgjo] - C:\Users\Yannick\AppData\Local\Google\Chrome\User Data\Default\Extensions\ep.crx [2014-02-26] CHR HKLM-x32\...\Chrome\Extension: [pflphaooapbgpeakohlggbpidpppgdff] - C:\Users\Yannick\AppData\Local\mysearchdial-speeddial.crx [2014-01-29] CHR HKLM-x32\...\Chrome\Extension: [pkndmigholgfjlniaohblojbhgjbkakn] - C:\Users\Yannick\AppData\Local\Google\Chrome\User Data\Default\Extensions\newtabv2.crx [2014-01-29] ==================== Services (Whitelisted) ================= (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-08-01] (AVAST Software) S2 BackupStack; C:\Program Files (x86)\MyPC Backup\BackupStack.exe [36392 2014-03-14] (Just Develop It) S3 BRSptSvc; C:\ProgramData\BitRaider\BRSptSvc.exe [476936 2013-08-20] (BitRaider, LLC) R2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1390176 2014-07-14] (Microsoft Corporation) R2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1767520 2014-07-14] (Microsoft Corporation) R2 ClickToRunSvc; C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe [2356912 2014-07-19] (Microsoft Corporation) R2 GFNEXSrv; C:\Program Files (x86)\TOSHIBA\Password Utility\GFNEXSrv.exe [156672 2011-10-14] () [File not signed] S2 globalUpdate; C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe [68608 2014-06-15] (globalUpdate) [File not signed] S3 globalUpdatem; C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe [68608 2014-06-15] (globalUpdate) [File not signed] R2 IePluginServices; C:\ProgramData\IePluginServices\PluginService.exe [704112 2014-05-08] (Cherished Technololgy LIMITED) R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [129856 2012-06-27] (Intel Corporation) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [166720 2012-06-25] (Intel Corporation) S3 McComponentHostService; C:\Program Files\McAfee Security Scan\3.8.150\McCHSvc.exe [289256 2014-04-09] (McAfee, Inc.) S2 Net Driver HPZ12; C:\Windows\System32\HPZinw12.dll [71680 2010-08-06] (Hewlett-Packard) [File not signed] S2 Pml Driver HPZ12; C:\Windows\System32\HPZipm12.dll [89600 2010-08-06] (Hewlett-Packard) [File not signed] R2 ReimageRealTimeProtector; C:\Program Files\Reimage\Reimage Protector\ReiGuard.exe [7101288 2014-07-28] (Reimage®) S3 TemproMonitoringService; C:\Program Files (x86)\Toshiba TEMPRO\TemproSvc.exe [114656 2012-08-14] (Toshiba Europe GmbH) R2 Wajam Internet Enhancer Service; C:\Program Files (x86)\Wajam\Wajam Internet Enhancer\WajamInternetEnhancerService.exe [303616 2014-06-26] (Wajam Internet Technologies Inc.) [File not signed] S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [16056 2014-03-29] (Microsoft Corporation) R2 WindowsProtectManger; C:\ProgramData\WindowsProtectManger\wprotectmanager.exe [591776 2014-06-12] (Fuyu LIMITED) R2 winzipersvc; C:\Program Files (x86)\WinZipper\winzipersvc.exe [425104 2014-02-26] (Taiwan Shui Mu Chih Ching Technology Limited.) R2 postgresql-8.4; c:/postgreSQL/bin/pg_ctl.exe runservice -N "postgresql-8.4" -D "c:/postgreSQL/data" -w [X] ==================== Drivers (Whitelisted) ==================== (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29208 2014-08-01] () R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [79184 2014-08-01] (AVAST Software) R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93568 2014-08-01] (AVAST Software) R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2014-08-01] () R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1041168 2014-08-01] (AVAST Software) R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [427360 2014-08-01] (AVAST Software) R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [92008 2014-08-01] (AVAST Software) R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [224896 2014-08-01] () R3 AtiHDAudioService; C:\Windows\system32\drivers\AtihdW86.sys [98472 2012-07-17] (Advanced Micro Devices) S3 BRDriver64; C:\ProgramData\BitRaider\BRDriver64.sys [75048 2013-08-20] (BitRaider) R3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [202752 2012-07-26] (Microsoft Corporation) S3 dot4; C:\Windows\system32\DRIVERS\Dot4.sys [151968 2012-10-19] (Windows (R) Win 7 DDK provider) S3 Dot4Print; C:\Windows\System32\drivers\Dot4Prt.sys [27040 2012-10-19] (Windows (R) Win 7 DDK provider) R1 dtsoftbus01; C:\Windows\System32\drivers\dtsoftbus01.sys [283064 2014-01-29] (Disc Soft Ltd) R1 ISODrive; C:\Program Files (x86)\UltraISO\drivers\ISODrv64.sys [115448 2013-11-21] (EZB Systems, Inc.) S3 NETwNe64; C:\Windows\system32\DRIVERS\NETwNe64.sys [11400192 2012-06-02] (Intel Corporation) R2 PEGAGFN; C:\Program Files (x86)\TOSHIBA\Password Utility\PEGAGFN.sys [14344 2009-09-12] (PEGATRON) R3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [43832 2012-08-14] (Synaptics Incorporated) R3 Thotkey; C:\Windows\System32\drivers\Thotkey.sys [28632 2012-07-31] (Windows (R) Win 7 DDK provider) ==================== NetSvcs (Whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.) ==================== One Month Created Files and Folders ======== (If an entry is included in the fixlist, the file\folder will be moved.) 2014-08-03 13:56 - 2014-08-03 13:57 - 00000000 ____D () C:\FRST 2014-08-03 13:54 - 2014-08-03 13:54 - 00000168 _____ () C:\Users\Yannick\defogger_reenable 2014-08-03 02:17 - 2014-08-03 02:17 - 00001083 _____ () C:\Users\postgres\Desktop\schlaegerei.de cdScherz.lnk 2014-08-03 02:17 - 2014-08-03 02:17 - 00000000 ____D () C:\Users\Yannick\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\schlaegerei.de cdScherz 2014-08-03 02:17 - 2014-08-03 02:17 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\schlaegerei.de cdScherz 2014-08-03 02:17 - 2014-08-03 02:17 - 00000000 ____D () C:\Program Files (x86)\schlaegerei.de cdScherz 2014-08-03 02:14 - 2014-08-03 02:14 - 00078228 _____ (Philipp Winterberg) C:\Users\Yannick\fixproxy2013.exe 2014-08-03 01:59 - 2014-08-03 02:16 - 00000000 ____D () C:\Program Files (x86)\proxyfixlolbastarde 2014-08-03 00:36 - 2014-08-03 00:36 - 00000000 ____D () C:\Users\Common\Temp 2014-08-03 00:26 - 2014-08-03 00:27 - 00281440 _____ () C:\windows\Minidump\080314-53062-01.dmp 2014-08-01 19:21 - 2014-06-26 14:00 - 00018070 _____ () C:\Users\Yannick\Documents\ASB_Bewerbung%20Yannick%20Louis.doc_0.odt 2014-08-01 17:08 - 2014-08-03 11:37 - 00000094 _____ () C:\Users\PartyPoker\TablePositions.txt 2014-08-01 17:08 - 2014-08-03 11:37 - 00000000 _____ () C:\Users\PartyPoker\pst_flts.txt 2014-08-01 17:08 - 2014-08-02 22:01 - 00000003 _____ () C:\Users\PartyPoker\pp_YTheSnaiL_favorites.txt 2014-08-01 17:08 - 2014-08-02 22:01 - 00000000 _____ () C:\Users\PartyPoker\pp_YTheSnaiL_c-o-i.txt 2014-08-01 17:08 - 2014-08-01 17:08 - 00000000 _____ () C:\Users\PartyPoker\WatchList.txt 2014-08-01 16:00 - 2014-08-03 00:21 - 00000428 _____ () C:\Users\PartyPoker\Notes.txt 2014-08-01 15:37 - 2014-08-02 23:45 - 00001872 _____ () C:\Users\PartyPoker_tzcrashfile.txt 2014-08-01 14:40 - 2014-08-02 23:50 - 00000010 _____ () C:\Users\announce.txt 2014-08-01 14:30 - 2014-08-03 11:37 - 00000160 _____ () C:\Users\PartyPoker\OCLCards_FilterState.txt 2014-08-01 14:30 - 2014-08-03 11:37 - 00000000 _____ () C:\Users\PartyPoker\usertab2.txt 2014-08-01 14:30 - 2014-08-03 11:37 - 00000000 _____ () C:\Users\PartyPoker\usertab1.txt 2014-08-01 14:30 - 2014-08-03 11:37 - 00000000 _____ () C:\Users\PartyPoker\grptblsusertab.txt 2014-08-01 14:30 - 2014-08-03 11:37 - 00000000 _____ () C:\Users\PartyPoker\achievements 2014-08-01 14:30 - 2014-08-03 11:36 - 00000156 _____ () C:\Users\PartyPoker\ppunistall.bat 2014-08-01 14:30 - 2014-08-02 22:01 - 00000000 ____D () C:\Users\Temp 2014-08-01 14:30 - 2014-08-01 14:30 - 01224125 _____ () C:\Users\PartyPoker\HHReplayer.swf 2014-08-01 14:30 - 2014-08-01 14:30 - 00000000 ____D () C:\Users\PartyPoker\Stats 2014-08-01 14:29 - 2014-08-01 14:29 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\partypoker 2014-08-01 14:28 - 2014-08-01 14:28 - 00000000 ____D () C:\Users\SmartUpgrader\Temp 2014-08-01 13:11 - 2014-08-01 13:11 - 00092008 _____ (AVAST Software) C:\windows\system32\Drivers\aswStm.sys 2014-08-01 13:11 - 2014-08-01 13:11 - 00043152 _____ (AVAST Software) C:\windows\avastSS.scr 2014-08-01 13:11 - 2014-08-01 13:11 - 00029208 _____ () C:\windows\system32\Drivers\aswHwid.sys 2014-07-30 20:15 - 2014-07-30 20:15 - 00000000 ____D () C:\Program Files (x86)\Winamax Poker 2014-07-30 20:05 - 2014-07-30 20:05 - 00002018 _____ () C:\Users\Yannick\Desktop\888poker.lnk 2014-07-30 20:05 - 2014-07-30 20:05 - 00002018 _____ () C:\Users\postgres\Desktop\888poker.lnk 2014-07-30 20:05 - 2014-07-30 20:05 - 00000000 ____D () C:\Users\Yannick\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\888poker 2014-07-30 20:05 - 2014-07-30 20:05 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\888poker 2014-07-30 20:04 - 2014-07-30 20:05 - 00000000 ____D () C:\Users\Yannick\AppData\Roaming\PacificPoker 2014-07-30 20:04 - 2014-07-30 20:05 - 00000000 ____D () C:\Program Files (x86)\PacificPoker 2014-07-30 12:26 - 2014-07-30 12:26 - 00000000 ____D () C:\Users\Yannick\AppData\Local\eclipse 2014-07-30 04:03 - 2014-07-30 12:26 - 00000000 ____D () C:\Users\Yannick\AppData\Local\CarbonPoker 2014-07-30 04:02 - 2014-08-03 01:25 - 00000000 ____D () C:\Program Files (x86)\CarbonPoker 2014-07-30 04:02 - 2014-07-30 04:02 - 00001917 _____ () C:\Users\Yannick\Desktop\CarbonPoker.lnk 2014-07-30 04:02 - 2014-07-30 04:02 - 00000000 ____D () C:\Users\Yannick\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CarbonPoker 2014-07-29 19:19 - 2014-07-29 19:19 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TUGZip 2014-07-29 19:19 - 2014-07-29 19:19 - 00000000 ____D () C:\Program Files (x86)\TUGZip 2014-07-29 19:19 - 2007-03-12 23:34 - 00162304 _____ () C:\windows\SysWOW64\ztvunrar36.dll 2014-07-29 19:19 - 2007-03-12 23:34 - 00077312 _____ () C:\windows\SysWOW64\ztvunace26.dll 2014-07-29 19:19 - 2007-03-12 23:34 - 00069632 _____ (Microsoft Corporation) C:\windows\SysWOW64\ztvcabinet.dll 2014-07-28 23:58 - 2014-07-29 16:58 - 00000000 _____ () C:\windows\system32\ExtraInfo.txt 2014-07-27 18:37 - 2014-07-27 18:37 - 00000000 ____D () C:\Users\Yannick\AppData\Local\Skype 2014-07-27 18:36 - 2014-07-27 18:38 - 00000000 ___RD () C:\Program Files (x86)\Skype 2014-07-27 18:36 - 2014-07-27 18:36 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype 2014-07-25 13:15 - 2014-07-25 13:15 - 00281384 _____ () C:\windows\Minidump\072514-51671-01.dmp 2014-07-22 02:00 - 2014-07-22 02:05 - 00000000 ____D () C:\Users\Yannick\Documents\WSOP Online 2014-07-22 02:00 - 2014-07-22 02:00 - 00001966 _____ () C:\Users\postgres\Desktop\WSOP.com.lnk 2014-07-22 02:00 - 2014-07-22 02:00 - 00001810 _____ () C:\Users\Yannick\AppData\Roaming\Microsoft\Windows\Start Menu\Winner Poker.lnk 2014-07-22 02:00 - 2014-07-22 02:00 - 00000000 ____D () C:\Users\Yannick\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WSOP.com 2014-07-22 02:00 - 2014-07-22 02:00 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WSOP.com 2014-07-22 01:59 - 2014-07-22 02:10 - 00000000 ____D () C:\Users\Yannick\AppData\Local\Winner Poker 2014-07-22 01:58 - 2014-07-22 02:00 - 00000000 ____D () C:\Users\Yannick\AppData\Roaming\WSOP.com 2014-07-22 01:58 - 2014-07-22 02:00 - 00000000 ____D () C:\Program Files (x86)\WSOP.com 2014-07-22 01:39 - 2014-07-22 01:39 - 00000000 ____D () C:\Users\Yannick\AppData\Roaming\Party 2014-07-21 11:34 - 2014-07-21 11:34 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\bwin Poker 2014-07-15 20:46 - 2014-08-01 17:06 - 00042808 _____ () C:\Users\PartyPoker\GRA.ini 2014-07-15 20:46 - 2014-08-01 17:06 - 00000768 _____ () C:\Users\PartyPoker\SYS.ini 2014-07-15 20:46 - 2014-07-15 20:46 - 00045592 _____ () C:\Users\PartyPoker\table.bin 2014-07-15 20:46 - 2014-07-15 20:46 - 00042064 _____ () C:\Users\PartyPoker\poker.bin 2014-07-15 20:46 - 2014-07-15 20:46 - 00025872 _____ () C:\Users\PartyPoker\newtable.bin 2014-07-15 20:46 - 2014-07-15 20:46 - 00000016 _____ () C:\Users\PartyPoker\dynamic.bin 2014-07-15 20:44 - 2014-07-15 20:44 - 01914880 _____ (iGlobalMedia.com) C:\Users\PartyPoker\PartyPoker.dll 2014-07-15 20:44 - 2014-07-15 20:44 - 00000022 _____ () C:\Users\PartyPoker\Version.ini 2014-07-15 20:42 - 2014-07-15 20:42 - 03750400 _____ () C:\Users\PartyPoker\GameTable.dll 2014-07-15 20:38 - 2014-07-15 20:38 - 01101824 _____ (iGlobalMedia.com) C:\Users\PartyPoker\Tournament.dll 2014-07-15 20:37 - 2014-07-15 20:37 - 02512384 _____ (iGlobalMedia.com) C:\Users\PartyPoker\Lobby.dll 2014-07-14 12:44 - 2014-07-14 12:44 - 00000451 _____ () C:\Users\CleanUp.txt 2014-07-14 12:38 - 2014-07-14 12:38 - 00486704 _____ () C:\windows\system32\FNTCACHE.DAT 2014-07-14 12:37 - 2014-07-14 12:37 - 02309632 _____ () C:\Users\PartyGaming.exe 2014-07-14 12:37 - 2014-07-14 12:37 - 00000022 _____ () C:\Users\Version.ini 2014-07-14 12:13 - 2014-08-03 11:37 - 00005757 _____ () C:\Users\PartyPoker\LHN.txt 2014-07-14 12:13 - 2014-07-14 12:13 - 00421316 _____ () C:\Users\PartyPoker\TabConfig.txt 2014-07-14 12:13 - 2014-07-14 12:13 - 00116256 _____ () C:\Users\PartyPoker\TrebuchetForBP.ttf 2014-07-14 12:13 - 2014-07-14 12:13 - 00106188 _____ () C:\Users\PartyPoker\TrebuchetForBP-Bold.ttf 2014-07-14 12:13 - 2014-07-14 12:13 - 00005701 _____ () C:\Users\PartyPoker\MAT_Config.bin 2014-07-14 12:13 - 2014-07-14 12:13 - 00001176 _____ () C:\Users\PartyPoker\LayoutMgr.ini 2014-07-14 12:13 - 2014-07-14 12:13 - 00001104 _____ () C:\Users\PartyPoker\WLConfigData.ini 2014-07-13 11:01 - 2014-06-26 22:53 - 00703968 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\FlashPlayerApp.exe 2014-07-13 11:01 - 2014-06-26 22:53 - 00105440 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\FlashPlayerCPLApp.cpl 2014-07-13 10:56 - 2014-07-13 10:56 - 00000000 ___SD () C:\windows\system32\CompatTel 2014-07-13 10:42 - 2014-08-02 21:51 - 00015413 _____ () C:\windows\system32\ScanResults.xml 2014-07-13 10:34 - 2014-08-02 21:44 - 00000464 _____ () C:\windows\system32\ScannerSettings 2014-07-09 23:18 - 2014-07-01 00:42 - 00702464 _____ (Microsoft Corporation) C:\windows\system32\aepdu.dll 2014-07-09 23:18 - 2014-07-01 00:42 - 00394240 _____ (Microsoft Corporation) C:\windows\system32\devinv.dll 2014-07-09 23:18 - 2014-07-01 00:42 - 00087552 _____ (Microsoft Corporation) C:\windows\system32\aepic.dll 2014-07-09 23:18 - 2014-06-28 05:35 - 00556544 _____ (Microsoft Corporation) C:\windows\system32\aeinv.dll 2014-07-09 23:15 - 2014-06-18 01:27 - 01440256 _____ (Microsoft Corporation) C:\windows\SysWOW64\osk.exe 2014-07-09 23:15 - 2014-06-18 01:24 - 01557504 _____ (Microsoft Corporation) C:\windows\system32\osk.exe 2014-07-09 23:15 - 2014-06-11 06:18 - 04038144 _____ (Microsoft Corporation) C:\windows\system32\win32k.sys 2014-07-09 23:15 - 2014-06-03 00:33 - 00265216 _____ (Microsoft Corporation) C:\windows\system32\InkEd.dll 2014-07-09 23:15 - 2014-05-03 08:34 - 06974808 _____ (Microsoft Corporation) C:\windows\system32\ntoskrnl.exe 2014-07-09 23:15 - 2014-05-03 08:33 - 01824808 _____ (Microsoft Corporation) C:\windows\system32\ntdll.dll 2014-07-09 23:15 - 2014-05-03 06:51 - 01408976 _____ (Microsoft Corporation) C:\windows\SysWOW64\ntdll.dll 2014-07-09 23:15 - 2014-05-02 00:37 - 01023488 _____ (Microsoft Corporation) C:\windows\system32\localspl.dll 2014-07-09 23:15 - 2014-04-30 00:32 - 00126464 _____ (Microsoft Corporation) C:\windows\system32\Robocopy.exe 2014-07-09 23:15 - 2014-04-30 00:32 - 00106496 _____ (Microsoft Corporation) C:\windows\SysWOW64\Robocopy.exe 2014-07-09 23:15 - 2014-04-24 01:51 - 00566784 _____ (Microsoft Corporation) C:\windows\SysWOW64\WSShared.dll 2014-07-09 23:15 - 2014-04-24 01:51 - 00124928 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll 2014-07-09 23:15 - 2014-04-24 01:38 - 00693760 _____ (Microsoft Corporation) C:\windows\system32\WSShared.dll 2014-07-09 23:15 - 2014-04-24 01:38 - 00163840 _____ (Microsoft Corporation) C:\windows\system32\Windows.ApplicationModel.Store.TestingFramework.dll 2014-07-09 23:15 - 2014-02-08 06:34 - 00071168 _____ (Microsoft Corporation) C:\windows\system32\Drivers\hdaudbus.sys 2014-07-09 23:14 - 2014-06-19 04:11 - 19277312 _____ (Microsoft Corporation) C:\windows\system32\mshtml.dll 2014-07-09 23:14 - 2014-06-19 02:53 - 14368768 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.dll 2014-07-09 23:14 - 2014-05-30 01:31 - 00452608 _____ (Microsoft Corporation) C:\windows\SysWOW64\SHCore.dll 2014-07-09 23:14 - 2014-05-30 01:03 - 00588288 _____ (Microsoft Corporation) C:\windows\system32\SHCore.dll 2014-07-09 23:14 - 2014-05-30 01:02 - 01281536 _____ (Microsoft Corporation) C:\windows\system32\lsasrv.dll 2014-07-09 23:14 - 2014-05-30 01:02 - 00439808 _____ (Microsoft Corporation) C:\windows\system32\lsm.dll 2014-07-09 23:13 - 2014-06-19 04:12 - 02239488 _____ (Microsoft Corporation) C:\windows\system32\wininet.dll 2014-07-09 23:13 - 2014-06-19 04:12 - 01366528 _____ (Microsoft Corporation) C:\windows\system32\urlmon.dll 2014-07-09 23:13 - 2014-06-19 04:12 - 00915968 _____ (Microsoft Corporation) C:\windows\system32\uxtheme.dll 2014-07-09 23:13 - 2014-06-19 04:12 - 00053760 _____ (Microsoft Corporation) C:\windows\system32\UXInit.dll 2014-07-09 23:13 - 2014-06-19 04:12 - 00051712 _____ (Microsoft Corporation) C:\windows\system32\ie4uinit.exe 2014-07-09 23:13 - 2014-06-19 04:11 - 00197120 _____ (Microsoft Corporation) C:\windows\system32\msrating.dll 2014-07-09 23:13 - 2014-06-19 04:11 - 00097792 _____ (Microsoft Corporation) C:\windows\system32\mshtmled.dll 2014-07-09 23:13 - 2014-06-19 04:10 - 15369728 _____ (Microsoft Corporation) C:\windows\system32\ieframe.dll 2014-07-09 23:13 - 2014-06-19 04:10 - 03959296 _____ (Microsoft Corporation) C:\windows\system32\jscript9.dll 2014-07-09 23:13 - 2014-06-19 04:10 - 02650624 _____ (Microsoft Corporation) C:\windows\system32\iertutil.dll 2014-07-09 23:13 - 2014-06-19 04:10 - 00855552 _____ (Microsoft Corporation) C:\windows\system32\jscript.dll 2014-07-09 23:13 - 2014-06-19 04:10 - 00603136 _____ (Microsoft Corporation) C:\windows\system32\msfeeds.dll 2014-07-09 23:13 - 2014-06-19 04:10 - 00452096 _____ (Microsoft Corporation) C:\windows\system32\dxtmsft.dll 2014-07-09 23:13 - 2014-06-19 04:10 - 00281600 _____ (Microsoft Corporation) C:\windows\system32\dxtrans.dll 2014-07-09 23:13 - 2014-06-19 04:10 - 00255488 _____ (Microsoft Corporation) C:\windows\system32\iedkcs32.dll 2014-07-09 23:13 - 2014-06-19 04:10 - 00136704 _____ (Microsoft Corporation) C:\windows\system32\iesysprep.dll 2014-07-09 23:13 - 2014-06-19 04:10 - 00067072 _____ (Microsoft Corporation) C:\windows\system32\iesetup.dll 2014-07-09 23:13 - 2014-06-19 04:10 - 00053760 _____ (Microsoft Corporation) C:\windows\system32\jsproxy.dll 2014-07-09 23:13 - 2014-06-19 04:10 - 00039936 _____ (Microsoft Corporation) C:\windows\system32\iernonce.dll 2014-07-09 23:13 - 2014-06-19 04:09 - 01508864 _____ (Microsoft Corporation) C:\windows\system32\inetcpl.cpl 2014-07-09 23:13 - 2014-06-19 02:53 - 01766400 _____ (Microsoft Corporation) C:\windows\SysWOW64\wininet.dll 2014-07-09 23:13 - 2014-06-19 02:53 - 01141760 _____ (Microsoft Corporation) C:\windows\SysWOW64\urlmon.dll 2014-07-09 23:13 - 2014-06-19 02:53 - 00493056 _____ (Microsoft Corporation) C:\windows\SysWOW64\msfeeds.dll 2014-07-09 23:13 - 2014-06-19 02:53 - 00163840 _____ (Microsoft Corporation) C:\windows\SysWOW64\msrating.dll 2014-07-09 23:13 - 2014-06-19 02:53 - 00080896 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmled.dll 2014-07-09 23:13 - 2014-06-19 02:53 - 00044032 _____ (Microsoft Corporation) C:\windows\SysWOW64\UXInit.dll 2014-07-09 23:13 - 2014-06-19 02:52 - 13732352 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieframe.dll 2014-07-09 23:13 - 2014-06-19 02:52 - 02863616 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9.dll 2014-07-09 23:13 - 2014-06-19 02:52 - 02051072 _____ (Microsoft Corporation) C:\windows\SysWOW64\iertutil.dll 2014-07-09 23:13 - 2014-06-19 02:52 - 01440768 _____ (Microsoft Corporation) C:\windows\SysWOW64\inetcpl.cpl 2014-07-09 23:13 - 2014-06-19 02:52 - 00690688 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript.dll 2014-07-09 23:13 - 2014-06-19 02:52 - 00357888 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxtmsft.dll 2014-07-09 23:13 - 2014-06-19 02:52 - 00226816 _____ (Microsoft Corporation) C:\windows\SysWOW64\iedkcs32.dll 2014-07-09 23:13 - 2014-06-19 02:52 - 00226816 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxtrans.dll 2014-07-09 23:13 - 2014-06-19 02:52 - 00109056 _____ (Microsoft Corporation) C:\windows\SysWOW64\iesysprep.dll 2014-07-09 23:13 - 2014-06-19 02:52 - 00061440 _____ (Microsoft Corporation) C:\windows\SysWOW64\iesetup.dll 2014-07-09 23:13 - 2014-06-19 02:52 - 00039936 _____ (Microsoft Corporation) C:\windows\SysWOW64\jsproxy.dll 2014-07-09 23:13 - 2014-06-19 02:52 - 00033280 _____ (Microsoft Corporation) C:\windows\SysWOW64\iernonce.dll 2014-07-09 23:13 - 2014-06-19 02:33 - 02706432 _____ (Microsoft Corporation) C:\windows\system32\mshtml.tlb 2014-07-09 23:13 - 2014-06-19 02:30 - 02706432 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.tlb 2014-07-09 23:13 - 2014-06-19 00:05 - 00534528 _____ (Microsoft Corporation) C:\windows\SysWOW64\uxtheme.dll 2014-07-09 23:12 - 2014-06-06 16:06 - 00596480 _____ (Microsoft Corporation) C:\windows\system32\qedit.dll 2014-07-09 23:12 - 2014-06-06 12:17 - 00497152 _____ (Microsoft Corporation) C:\windows\SysWOW64\qedit.dll 2014-07-09 23:12 - 2014-05-30 00:24 - 00576512 _____ (Microsoft Corporation) C:\windows\system32\Drivers\afd.sys 2014-07-09 13:09 - 2014-07-09 13:09 - 11204096 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\FlashPlayerInstaller.exe 2014-07-07 09:06 - 2014-07-07 09:06 - 00281440 _____ () C:\windows\Minidump\070714-62515-01.dmp 2014-07-04 07:58 - 2014-07-04 07:58 - 00004276 _____ () C:\windows\System32\Tasks\ReimageUpdater 2014-07-04 07:58 - 2014-07-04 07:58 - 00003440 _____ () C:\windows\System32\Tasks\Reimage Reminder 2014-07-04 07:57 - 2014-07-04 07:58 - 00000000 ____D () C:\rei 2014-07-04 07:57 - 2014-07-04 07:58 - 00000000 ____D () C:\ProgramData\Reimage Protector 2014-07-04 07:57 - 2014-07-04 07:57 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wajam 2014-07-04 07:57 - 2014-07-04 07:57 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Reimage Repair 2014-07-04 07:57 - 2014-07-04 07:57 - 00000000 ____D () C:\Program Files\Reimage 2014-07-04 07:56 - 2014-07-29 17:12 - 00000163 _____ () C:\windows\Reimage.ini 2014-07-04 07:56 - 2014-07-04 07:57 - 00000000 ____D () C:\Program Files (x86)\Wajam 2014-07-04 07:55 - 2014-07-04 07:55 - 00000000 ____D () C:\Users\Yannick\AppData\Roaming\MySQL 2014-07-04 07:54 - 2014-07-04 07:58 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MySQL 2014-07-04 07:53 - 2014-07-04 07:58 - 00000000 ____D () C:\Program Files (x86)\MySQL ==================== One Month Modified Files and Folders ======= (If an entry is included in the fixlist, the file\folder will be moved.) 2014-08-03 13:57 - 2014-08-03 13:56 - 00000000 ____D () C:\FRST 2014-08-03 13:54 - 2014-08-03 13:54 - 00000168 _____ () C:\Users\Yannick\defogger_reenable 2014-08-03 13:54 - 2013-05-23 20:30 - 00000000 ____D () C:\Users\Yannick 2014-08-03 13:48 - 2013-05-23 21:04 - 00000000 ____D () C:\Users\Yannick\AppData\Roaming\Skype 2014-08-03 13:46 - 2012-08-01 18:38 - 00753134 _____ () C:\windows\system32\perfh007.dat 2014-08-03 13:46 - 2012-08-01 18:38 - 00155826 _____ () C:\windows\system32\perfc007.dat 2014-08-03 13:46 - 2012-07-26 09:28 - 01745416 _____ () C:\windows\system32\PerfStringBackup.INI 2014-08-03 13:45 - 2013-05-23 22:59 - 00004182 _____ () C:\windows\System32\Tasks\avast! Emergency Update 2014-08-03 13:27 - 2013-05-23 20:42 - 00001128 _____ () C:\windows\Tasks\GoogleUpdateTaskMachineUA.job 2014-08-03 13:10 - 2013-11-16 10:43 - 00000884 _____ () C:\windows\Tasks\Adobe Flash Player Updater.job 2014-08-03 13:00 - 2012-07-26 10:12 - 00000000 ____D () C:\windows\system32\sru 2014-08-03 12:35 - 2014-06-15 00:30 - 00000964 _____ () C:\windows\Tasks\globalUpdateUpdateTaskMachineUA.job 2014-08-03 12:32 - 2014-06-15 00:32 - 00001438 _____ () C:\windows\Tasks\9c740d85-ee48-473b-afe5-1051b6d663b4-5.job 2014-08-03 12:31 - 2014-06-15 00:31 - 00002330 _____ () C:\windows\Tasks\9c740d85-ee48-473b-afe5-1051b6d663b4-4.job 2014-08-03 12:31 - 2014-06-15 00:31 - 00001498 _____ () C:\windows\Tasks\9c740d85-ee48-473b-afe5-1051b6d663b4-6.job 2014-08-03 12:31 - 2014-06-15 00:31 - 00001492 _____ () C:\windows\Tasks\9c740d85-ee48-473b-afe5-1051b6d663b4-1.job 2014-08-03 12:30 - 2014-06-15 00:30 - 00003820 _____ () C:\windows\Tasks\9c740d85-ee48-473b-afe5-1051b6d663b4-11.job 2014-08-03 11:37 - 2014-08-01 17:08 - 00000094 _____ () C:\Users\PartyPoker\TablePositions.txt 2014-08-03 11:37 - 2014-08-01 17:08 - 00000000 _____ () C:\Users\PartyPoker\pst_flts.txt 2014-08-03 11:37 - 2014-08-01 14:30 - 00000160 _____ () C:\Users\PartyPoker\OCLCards_FilterState.txt 2014-08-03 11:37 - 2014-08-01 14:30 - 00000000 _____ () C:\Users\PartyPoker\usertab2.txt 2014-08-03 11:37 - 2014-08-01 14:30 - 00000000 _____ () C:\Users\PartyPoker\usertab1.txt 2014-08-03 11:37 - 2014-08-01 14:30 - 00000000 _____ () C:\Users\PartyPoker\grptblsusertab.txt 2014-08-03 11:37 - 2014-08-01 14:30 - 00000000 _____ () C:\Users\PartyPoker\achievements 2014-08-03 11:37 - 2014-07-14 12:13 - 00005757 _____ () C:\Users\PartyPoker\LHN.txt 2014-08-03 11:37 - 2014-07-02 12:03 - 00000000 ____D () C:\Users\PartyPoker 2014-08-03 11:37 - 2014-06-17 13:28 - 00415624 _____ () C:\Users\PartyPoker\PokerTabConfig.txt 2014-08-03 11:36 - 2014-08-01 14:30 - 00000156 _____ () C:\Users\PartyPoker\ppunistall.bat 2014-08-03 11:36 - 2014-07-02 12:03 - 00000000 ____D () C:\Users\Language\en_US 2014-08-03 02:20 - 2014-04-11 19:08 - 00000000 ____D () C:\Users\Yannick\AppData\Local\PokerStars.FR 2014-08-03 02:20 - 2013-05-23 21:37 - 00000000 ____D () C:\Users\Yannick\AppData\Local\PokerStars.EU 2014-08-03 02:17 - 2014-08-03 02:17 - 00001083 _____ () C:\Users\postgres\Desktop\schlaegerei.de cdScherz.lnk 2014-08-03 02:17 - 2014-08-03 02:17 - 00000000 ____D () C:\Users\Yannick\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\schlaegerei.de cdScherz 2014-08-03 02:17 - 2014-08-03 02:17 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\schlaegerei.de cdScherz 2014-08-03 02:17 - 2014-08-03 02:17 - 00000000 ____D () C:\Program Files (x86)\schlaegerei.de cdScherz 2014-08-03 02:16 - 2014-08-03 01:59 - 00000000 ____D () C:\Program Files (x86)\proxyfixlolbastarde 2014-08-03 02:14 - 2014-08-03 02:14 - 00078228 _____ (Philipp Winterberg) C:\Users\Yannick\fixproxy2013.exe 2014-08-03 01:46 - 2013-12-07 17:14 - 00000000 ___RD () C:\Users\Yannick\Dropbox 2014-08-03 01:46 - 2013-12-07 17:12 - 00000000 ____D () C:\Users\Yannick\AppData\Roaming\Dropbox 2014-08-03 01:34 - 2013-05-23 21:27 - 00000000 ____D () C:\Users\Yannick\AppData\Roaming\HoldemManager 2014-08-03 01:31 - 2014-06-15 00:36 - 00000000 ____D () C:\ProgramData\savE on 2014-08-03 01:31 - 2014-06-15 00:30 - 00000000 ____D () C:\Program Files (x86)\Torntv V9.0 2014-08-03 01:25 - 2014-07-30 04:02 - 00000000 ____D () C:\Program Files (x86)\CarbonPoker 2014-08-03 00:49 - 2013-07-03 18:13 - 00000000 ____D () C:\Program Files (x86)\Steam 2014-08-03 00:47 - 2013-05-23 20:42 - 00001124 _____ () C:\windows\Tasks\GoogleUpdateTaskMachineCore.job 2014-08-03 00:46 - 2014-06-15 00:30 - 00000960 _____ () C:\windows\Tasks\globalUpdateUpdateTaskMachineCore.job 2014-08-03 00:46 - 2012-09-11 07:42 - 00139040 _____ () C:\windows\PFRO.log 2014-08-03 00:46 - 2012-07-26 09:22 - 00000006 ____H () C:\windows\Tasks\SA.DAT 2014-08-03 00:45 - 2012-07-26 07:26 - 00262144 ___SH () C:\windows\system32\config\BBI 2014-08-03 00:44 - 2013-12-03 16:06 - 00000000 ____D () C:\Program Files\Microsoft Office 15 2014-08-03 00:36 - 2014-08-03 00:36 - 00000000 ____D () C:\Users\Common\Temp 2014-08-03 00:36 - 2014-07-02 12:03 - 00000000 ____D () C:\Users\Common 2014-08-03 00:27 - 2014-08-03 00:26 - 00281440 _____ () C:\windows\Minidump\080314-53062-01.dmp 2014-08-03 00:26 - 2013-06-29 02:07 - 00000000 ____D () C:\Program Files\WinRAR 2014-08-03 00:26 - 2013-05-26 16:37 - 1725442658 _____ () C:\windows\MEMORY.DMP 2014-08-03 00:26 - 2013-05-26 16:37 - 00000000 ____D () C:\windows\Minidump 2014-08-03 00:21 - 2014-08-01 16:00 - 00000428 _____ () C:\Users\PartyPoker\Notes.txt 2014-08-02 23:50 - 2014-08-01 14:40 - 00000010 _____ () C:\Users\announce.txt 2014-08-02 23:45 - 2014-08-01 15:37 - 00001872 _____ () C:\Users\PartyPoker_tzcrashfile.txt 2014-08-02 22:12 - 2013-05-23 21:38 - 00115377 _____ () C:\blitzerr.txt 2014-08-02 22:01 - 2014-08-01 17:08 - 00000003 _____ () C:\Users\PartyPoker\pp_YTheSnaiL_favorites.txt 2014-08-02 22:01 - 2014-08-01 17:08 - 00000000 _____ () C:\Users\PartyPoker\pp_YTheSnaiL_c-o-i.txt 2014-08-02 22:01 - 2014-08-01 14:30 - 00000000 ____D () C:\Users\Temp 2014-08-02 21:51 - 2014-07-13 10:42 - 00015413 _____ () C:\windows\system32\ScanResults.xml 2014-08-02 21:44 - 2014-07-13 10:34 - 00000464 _____ () C:\windows\system32\ScannerSettings 2014-08-02 11:48 - 2014-07-02 12:03 - 00000000 ____D () C:\Users\PartyPoker\Images 2014-08-01 19:21 - 2013-10-17 18:35 - 00000000 ____D () C:\Program Files\eclipse 2014-08-01 17:08 - 2014-08-01 17:08 - 00000000 _____ () C:\Users\PartyPoker\WatchList.txt 2014-08-01 17:06 - 2014-07-15 20:46 - 00042808 _____ () C:\Users\PartyPoker\GRA.ini 2014-08-01 17:06 - 2014-07-15 20:46 - 00000768 _____ () C:\Users\PartyPoker\SYS.ini 2014-08-01 17:06 - 2014-06-17 12:39 - 00039608 _____ () C:\Users\ARA.ini 2014-08-01 14:30 - 2014-08-01 14:30 - 01224125 _____ () C:\Users\PartyPoker\HHReplayer.swf 2014-08-01 14:30 - 2014-08-01 14:30 - 00000000 ____D () C:\Users\PartyPoker\Stats 2014-08-01 14:29 - 2014-08-01 14:29 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\partypoker 2014-08-01 14:29 - 2014-07-02 12:03 - 00001480 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\partypoker.lnk 2014-08-01 14:29 - 2014-07-02 12:03 - 00001456 _____ () C:\Users\Yannick\Desktop\partypoker.lnk 2014-08-01 14:29 - 2014-07-02 12:03 - 00000000 ____D () C:\Users\SmartUpgrader 2014-08-01 14:29 - 2014-07-02 12:03 - 00000000 ____D () C:\Users\PartyPoker\Uninstall 2014-08-01 14:29 - 2014-07-02 12:03 - 00000000 ____D () C:\Users\EBEngine\MSIE 2014-08-01 14:29 - 2014-07-02 12:03 - 00000000 ____D () C:\Users\EBEngine\GGCH 2014-08-01 14:29 - 2013-05-23 21:43 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games 2014-08-01 14:28 - 2014-08-01 14:28 - 00000000 ____D () C:\Users\SmartUpgrader\Temp 2014-08-01 14:28 - 2014-07-02 12:03 - 00002384 _____ () C:\Users\PartyPoker\UpgradeVersion.txt 2014-08-01 14:28 - 2014-07-02 12:03 - 00002173 _____ () C:\Users\UpgradeVersion.txt 2014-08-01 14:28 - 2014-07-02 12:03 - 00000525 _____ () C:\Users\SmartUpgrader\UpgradeVersion.txt 2014-08-01 14:28 - 2014-07-02 12:03 - 00000162 _____ () C:\Users\Common\UpgradeVersion.txt 2014-08-01 14:28 - 2014-07-02 12:03 - 00000032 _____ () C:\Users\SmartUpgradeVersion.txt 2014-08-01 14:28 - 2014-07-02 12:03 - 00000032 _____ () C:\Users\SmartUpgrader\SmartUpgradeVersion.txt 2014-08-01 14:28 - 2014-07-02 12:03 - 00000032 _____ () C:\Users\PartyPoker\SmartUpgradeVersion.txt 2014-08-01 14:28 - 2014-07-02 12:03 - 00000032 _____ () C:\Users\Common\SmartUpgradeVersion.txt 2014-08-01 14:04 - 2013-10-11 23:06 - 00000000 ____D () C:\Program Files (x86)\Full Tilt Poker.Eu 2014-08-01 14:01 - 2013-10-11 23:17 - 23866628 _____ () C:\rusherr.txt 2014-08-01 13:11 - 2014-08-01 13:11 - 00092008 _____ (AVAST Software) C:\windows\system32\Drivers\aswStm.sys 2014-08-01 13:11 - 2014-08-01 13:11 - 00043152 _____ (AVAST Software) C:\windows\avastSS.scr 2014-08-01 13:11 - 2014-08-01 13:11 - 00029208 _____ () C:\windows\system32\Drivers\aswHwid.sys 2014-08-01 13:11 - 2013-05-23 22:59 - 01041168 _____ (AVAST Software) C:\windows\system32\Drivers\aswSnx.sys 2014-08-01 13:11 - 2013-05-23 22:59 - 00427360 _____ (AVAST Software) C:\windows\system32\Drivers\aswsp.sys 2014-08-01 13:11 - 2013-05-23 22:59 - 00307344 _____ (AVAST Software) C:\windows\system32\aswBoot.exe 2014-08-01 13:11 - 2013-05-23 22:59 - 00224896 _____ () C:\windows\system32\Drivers\aswVmm.sys 2014-08-01 13:11 - 2013-05-23 22:59 - 00093568 _____ (AVAST Software) C:\windows\system32\Drivers\aswRdr2.sys 2014-08-01 13:11 - 2013-05-23 22:59 - 00079184 _____ (AVAST Software) C:\windows\system32\Drivers\aswMonFlt.sys 2014-08-01 13:11 - 2013-05-23 22:59 - 00065776 _____ () C:\windows\system32\Drivers\aswRvrt.sys 2014-08-01 01:10 - 2013-05-23 21:37 - 00000000 ____D () C:\Program Files (x86)\PokerStars.EU 2014-07-30 20:15 - 2014-07-30 20:15 - 00000000 ____D () C:\Program Files (x86)\Winamax Poker 2014-07-30 20:15 - 2014-06-10 10:06 - 00000944 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Winamax Poker.lnk 2014-07-30 20:15 - 2014-06-10 10:06 - 00000932 _____ () C:\Users\Public\Desktop\Winamax Poker.lnk 2014-07-30 20:13 - 2014-03-20 12:44 - 00001718 _____ () C:\speederr.txt 2014-07-30 20:13 - 2013-05-23 21:08 - 00000000 ____D () C:\Users\Yannick\Documents\888poker 2014-07-30 20:13 - 2013-05-23 20:32 - 00000000 ____D () C:\Users\Yannick\AppData\Local\VirtualStore 2014-07-30 20:05 - 2014-07-30 20:05 - 00002018 _____ () C:\Users\Yannick\Desktop\888poker.lnk 2014-07-30 20:05 - 2014-07-30 20:05 - 00002018 _____ () C:\Users\postgres\Desktop\888poker.lnk 2014-07-30 20:05 - 2014-07-30 20:05 - 00000000 ____D () C:\Users\Yannick\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\888poker 2014-07-30 20:05 - 2014-07-30 20:05 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\888poker 2014-07-30 20:05 - 2014-07-30 20:04 - 00000000 ____D () C:\Users\Yannick\AppData\Roaming\PacificPoker 2014-07-30 20:05 - 2014-07-30 20:04 - 00000000 ____D () C:\Program Files (x86)\PacificPoker 2014-07-30 12:38 - 2013-05-23 21:35 - 00000000 ____D () C:\HM2Archive 2014-07-30 12:26 - 2014-07-30 12:26 - 00000000 ____D () C:\Users\Yannick\AppData\Local\eclipse 2014-07-30 12:26 - 2014-07-30 04:03 - 00000000 ____D () C:\Users\Yannick\AppData\Local\CarbonPoker 2014-07-30 04:03 - 2013-10-31 11:40 - 00000000 ____D () C:\Users\Yannick\AppData\Roaming\mozilla 2014-07-30 04:02 - 2014-07-30 04:02 - 00001917 _____ () C:\Users\Yannick\Desktop\CarbonPoker.lnk 2014-07-30 04:02 - 2014-07-30 04:02 - 00000000 ____D () C:\Users\Yannick\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CarbonPoker 2014-07-29 19:48 - 2013-06-05 23:22 - 00000000 ____D () C:\Users\Yannick\AppData\Roaming\vlc 2014-07-29 19:47 - 2014-04-06 14:43 - 00000000 ____D () C:\Users\Yannick\Desktop\Content 2014-07-29 19:23 - 2013-06-29 02:11 - 00000000 ____D () C:\Users\Yannick\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR 2014-07-29 19:23 - 2013-06-29 02:11 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR 2014-07-29 19:19 - 2014-07-29 19:19 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TUGZip 2014-07-29 19:19 - 2014-07-29 19:19 - 00000000 ____D () C:\Program Files (x86)\TUGZip 2014-07-29 17:12 - 2014-07-04 07:56 - 00000163 _____ () C:\windows\Reimage.ini 2014-07-29 16:58 - 2014-07-28 23:58 - 00000000 _____ () C:\windows\system32\ExtraInfo.txt 2014-07-27 18:38 - 2014-07-27 18:36 - 00000000 ___RD () C:\Program Files (x86)\Skype 2014-07-27 18:37 - 2014-07-27 18:37 - 00000000 ____D () C:\Users\Yannick\AppData\Local\Skype 2014-07-27 18:36 - 2014-07-27 18:36 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype 2014-07-27 18:36 - 2013-05-23 21:03 - 00000000 ____D () C:\ProgramData\Skype 2014-07-27 18:31 - 2014-02-22 20:15 - 00000000 ____D () C:\Users\Yannick\AppData\Local\CrashDumps 2014-07-27 14:14 - 2014-04-11 19:07 - 00000000 ____D () C:\Program Files (x86)\PokerStars.FR 2014-07-25 13:24 - 2014-02-26 18:51 - 00000000 ____D () C:\Program Files (x86)\WinZipper 2014-07-25 13:23 - 2013-12-07 17:13 - 00000000 ____D () C:\Users\Yannick\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox 2014-07-25 13:15 - 2014-07-25 13:15 - 00281384 _____ () C:\windows\Minidump\072514-51671-01.dmp 2014-07-24 13:22 - 2013-05-23 20:31 - 02084853 _____ () C:\windows\WindowsUpdate.log 2014-07-24 10:47 - 2012-07-26 10:12 - 00000000 ____D () C:\windows\AUInstallAgent 2014-07-22 02:11 - 2014-04-03 12:58 - 00000000 ____D () C:\Program Files (x86)\PKR 2014-07-22 02:10 - 2014-07-22 01:59 - 00000000 ____D () C:\Users\Yannick\AppData\Local\Winner Poker 2014-07-22 02:05 - 2014-07-22 02:00 - 00000000 ____D () C:\Users\Yannick\Documents\WSOP Online 2014-07-22 02:00 - 2014-07-22 02:00 - 00001966 _____ () C:\Users\postgres\Desktop\WSOP.com.lnk 2014-07-22 02:00 - 2014-07-22 02:00 - 00001810 _____ () C:\Users\Yannick\AppData\Roaming\Microsoft\Windows\Start Menu\Winner Poker.lnk 2014-07-22 02:00 - 2014-07-22 02:00 - 00000000 ____D () C:\Users\Yannick\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WSOP.com 2014-07-22 02:00 - 2014-07-22 02:00 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WSOP.com 2014-07-22 02:00 - 2014-07-22 01:58 - 00000000 ____D () C:\Users\Yannick\AppData\Roaming\WSOP.com 2014-07-22 02:00 - 2014-07-22 01:58 - 00000000 ____D () C:\Program Files (x86)\WSOP.com 2014-07-22 01:53 - 2014-04-04 18:33 - 00000000 ____D () C:\RedKings 2014-07-22 01:39 - 2014-07-22 01:39 - 00000000 ____D () C:\Users\Yannick\AppData\Roaming\Party 2014-07-22 01:39 - 2013-11-26 23:34 - 00000000 ____D () C:\Users\Yannick\AppData\Roaming\cef-cache 2014-07-21 11:34 - 2014-07-21 11:34 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\bwin Poker 2014-07-21 11:34 - 2014-03-26 14:43 - 00001489 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\bwin Poker.lnk 2014-07-21 11:34 - 2014-03-26 14:43 - 00001483 _____ () C:\Users\Yannick\Desktop\bwin Poker.lnk 2014-07-15 20:46 - 2014-07-15 20:46 - 00045592 _____ () C:\Users\PartyPoker\table.bin 2014-07-15 20:46 - 2014-07-15 20:46 - 00042064 _____ () C:\Users\PartyPoker\poker.bin 2014-07-15 20:46 - 2014-07-15 20:46 - 00025872 _____ () C:\Users\PartyPoker\newtable.bin 2014-07-15 20:46 - 2014-07-15 20:46 - 00000016 _____ () C:\Users\PartyPoker\dynamic.bin 2014-07-15 20:44 - 2014-07-15 20:44 - 01914880 _____ (iGlobalMedia.com) C:\Users\PartyPoker\PartyPoker.dll 2014-07-15 20:44 - 2014-07-15 20:44 - 00000022 _____ () C:\Users\PartyPoker\Version.ini 2014-07-15 20:42 - 2014-07-15 20:42 - 03750400 _____ () C:\Users\PartyPoker\GameTable.dll 2014-07-15 20:38 - 2014-07-15 20:38 - 01101824 _____ (iGlobalMedia.com) C:\Users\PartyPoker\Tournament.dll 2014-07-15 20:37 - 2014-07-15 20:37 - 02512384 _____ (iGlobalMedia.com) C:\Users\PartyPoker\Lobby.dll 2014-07-15 18:10 - 2014-06-30 21:20 - 00000000 ____D () C:\Users\Yannick\workspace2 2014-07-14 21:46 - 2013-10-11 23:17 - 00000000 ____D () C:\Users\Yannick\AppData\Local\FullTiltPoker.eu 2014-07-14 14:16 - 2014-04-17 07:51 - 00000000 ____D () C:\Users\Yannick\Desktop\juuunge 2014-07-14 12:44 - 2014-07-14 12:44 - 00000451 _____ () C:\Users\CleanUp.txt 2014-07-14 12:38 - 2014-07-14 12:38 - 00486704 _____ () C:\windows\system32\FNTCACHE.DAT 2014-07-14 12:37 - 2014-07-14 12:37 - 02309632 _____ () C:\Users\PartyGaming.exe 2014-07-14 12:37 - 2014-07-14 12:37 - 00000022 _____ () C:\Users\Version.ini 2014-07-14 12:13 - 2014-07-14 12:13 - 00421316 _____ () C:\Users\PartyPoker\TabConfig.txt 2014-07-14 12:13 - 2014-07-14 12:13 - 00116256 _____ () C:\Users\PartyPoker\TrebuchetForBP.ttf 2014-07-14 12:13 - 2014-07-14 12:13 - 00106188 _____ () C:\Users\PartyPoker\TrebuchetForBP-Bold.ttf 2014-07-14 12:13 - 2014-07-14 12:13 - 00005701 _____ () C:\Users\PartyPoker\MAT_Config.bin 2014-07-14 12:13 - 2014-07-14 12:13 - 00001176 _____ () C:\Users\PartyPoker\LayoutMgr.ini 2014-07-14 12:13 - 2014-07-14 12:13 - 00001104 _____ () C:\Users\PartyPoker\WLConfigData.ini 2014-07-14 00:13 - 2014-04-30 16:43 - 00001185 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer 9.lnk 2014-07-13 19:32 - 2012-07-26 10:12 - 00000000 ____D () C:\windows\rescache 2014-07-13 10:56 - 2014-07-13 10:56 - 00000000 ___SD () C:\windows\system32\CompatTel 2014-07-13 10:56 - 2012-07-26 10:12 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility 2014-07-13 10:56 - 2012-07-26 10:12 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility 2014-07-13 10:56 - 2012-07-26 10:12 - 00000000 ____D () C:\windows\WinStore 2014-07-13 10:56 - 2012-07-26 09:52 - 00000000 ____D () C:\Program Files\Windows Journal 2014-07-13 10:55 - 2014-01-29 16:29 - 00000000 ____D () C:\ProgramData\Microsoft Help 2014-07-13 10:55 - 2013-12-03 16:07 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013 2014-07-10 16:11 - 2014-06-26 14:54 - 00000000 ____D () C:\Users\Yannick\AppData\Roaming\HpUpdate 2014-07-10 05:51 - 2012-07-26 09:59 - 00000000 ____D () C:\windows\CbsTemp 2014-07-10 05:50 - 2013-07-21 21:02 - 00000000 ____D () C:\windows\system32\MRT 2014-07-10 05:36 - 2012-07-26 07:26 - 00262144 ___SH () C:\windows\system32\config\ELAM 2014-07-10 05:35 - 2013-05-25 23:56 - 96441528 _____ (Microsoft Corporation) C:\windows\system32\MRT.exe 2014-07-09 22:15 - 2013-10-11 23:17 - 00000000 ____D () C:\Users\Yannick\AppData\Local\cache 2014-07-09 13:09 - 2014-07-09 13:09 - 11204096 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\FlashPlayerInstaller.exe 2014-07-09 13:09 - 2013-11-16 10:43 - 00003772 _____ () C:\windows\System32\Tasks\Adobe Flash Player Updater 2014-07-08 13:30 - 2013-05-23 23:00 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive 2014-07-07 09:06 - 2014-07-07 09:06 - 00281440 _____ () C:\windows\Minidump\070714-62515-01.dmp 2014-07-06 18:23 - 2013-12-07 17:15 - 00000000 ___RD () C:\Users\Yannick\Desktop\[uni] 2. Semester 2014-07-04 07:58 - 2014-07-04 07:58 - 00004276 _____ () C:\windows\System32\Tasks\ReimageUpdater 2014-07-04 07:58 - 2014-07-04 07:58 - 00003440 _____ () C:\windows\System32\Tasks\Reimage Reminder 2014-07-04 07:58 - 2014-07-04 07:57 - 00000000 ____D () C:\rei 2014-07-04 07:58 - 2014-07-04 07:57 - 00000000 ____D () C:\ProgramData\Reimage Protector 2014-07-04 07:58 - 2014-07-04 07:54 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MySQL 2014-07-04 07:58 - 2014-07-04 07:53 - 00000000 ____D () C:\Program Files (x86)\MySQL 2014-07-04 07:57 - 2014-07-04 07:57 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wajam 2014-07-04 07:57 - 2014-07-04 07:57 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Reimage Repair 2014-07-04 07:57 - 2014-07-04 07:57 - 00000000 ____D () C:\Program Files\Reimage 2014-07-04 07:57 - 2014-07-04 07:56 - 00000000 ____D () C:\Program Files (x86)\Wajam 2014-07-04 07:57 - 2014-06-15 00:08 - 00000000 ____D () C:\Program Files (x86)\SearchProtect 2014-07-04 07:55 - 2014-07-04 07:55 - 00000000 ____D () C:\Users\Yannick\AppData\Roaming\MySQL Files to move or delete: ==================== C:\Users\PartyPoker\GameTable.dll C:\Users\PartyPoker\ImageOle.dll C:\Users\PartyPoker\Lobby.dll C:\Users\PartyPoker\PartyPoker.dll C:\Users\PartyPoker\PL.exe C:\Users\PartyPoker\ppunistall.bat C:\Users\PartyPoker\RunApp.exe C:\Users\PartyPoker\Tournament.dll C:\Users\SmartUpgrader\PGSmartUpgrade.exe C:\Users\SmartUpgrader\SIInvoker.exe C:\Users\SmartUpgrader\zlib.dll C:\Users\Yannick\fixproxy2013.exe Some content of TEMP: ==================== C:\Users\Yannick\AppData\Local\Temp\amazonicon_v4.exe C:\Users\Yannick\AppData\Local\Temp\amazoninstallernircmdc.exe C:\Users\Yannick\AppData\Local\Temp\BackupSetup.exe C:\Users\Yannick\AppData\Local\Temp\dlLogic.exe C:\Users\Yannick\AppData\Local\Temp\dltr.exe C:\Users\Yannick\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmplecyfr.dll C:\Users\Yannick\AppData\Local\Temp\gcn9fnvk.dll C:\Users\Yannick\AppData\Local\Temp\GCVerifier.dll C:\Users\Yannick\AppData\Local\Temp\ICReinstall_poker-stove.exe C:\Users\Yannick\AppData\Local\Temp\install_reader11_de_mssa_aaa_aih.exe C:\Users\Yannick\AppData\Local\Temp\inter_silent_tray.exe C:\Users\Yannick\AppData\Local\Temp\javasysmo3210042159891958486.dll C:\Users\Yannick\AppData\Local\Temp\javasysmo4034620567179055564.dll C:\Users\Yannick\AppData\Local\Temp\javasysmo4545238212089824748.dll C:\Users\Yannick\AppData\Local\Temp\javasysmo6584338163331150818.dll C:\Users\Yannick\AppData\Local\Temp\javasysmo832591612084447089.dll C:\Users\Yannick\AppData\Local\Temp\jna1092601799434006943.hunspell-win-x86-32.dll C:\Users\Yannick\AppData\Local\Temp\jna1382815106763845900.hunspell-win-x86-32.dll C:\Users\Yannick\AppData\Local\Temp\jna1398316763662307130.hunspell-win-x86-32.dll C:\Users\Yannick\AppData\Local\Temp\jna271576333940789279.hunspell-win-x86-32.dll C:\Users\Yannick\AppData\Local\Temp\jna3524573978566295376.hunspell-win-x86-32.dll C:\Users\Yannick\AppData\Local\Temp\jna3763226871038738485.hunspell-win-x86-32.dll C:\Users\Yannick\AppData\Local\Temp\jna3995108147723476170.hunspell-win-x86-32.dll C:\Users\Yannick\AppData\Local\Temp\jna4267516392642742264.hunspell-win-x86-32.dll C:\Users\Yannick\AppData\Local\Temp\jna5713082753115990423.hunspell-win-x86-32.dll C:\Users\Yannick\AppData\Local\Temp\jna5945168426222980695.hunspell-win-x86-32.dll C:\Users\Yannick\AppData\Local\Temp\jna5983785291643483458.hunspell-win-x86-32.dll C:\Users\Yannick\AppData\Local\Temp\jna6306396181446053234.hunspell-win-x86-32.dll C:\Users\Yannick\AppData\Local\Temp\jna7071905532789194378.hunspell-win-x86-32.dll C:\Users\Yannick\AppData\Local\Temp\jna7829736227367670686.hunspell-win-x86-32.dll C:\Users\Yannick\AppData\Local\Temp\jna8278009235166141801.hunspell-win-x86-32.dll C:\Users\Yannick\AppData\Local\Temp\jna9108868250183362559.hunspell-win-x86-32.dll C:\Users\Yannick\AppData\Local\Temp\jre-7u51-windows-i586-iftw.exe C:\Users\Yannick\AppData\Local\Temp\nsf31F.exe C:\Users\Yannick\AppData\Local\Temp\nsh321D.exe C:\Users\Yannick\AppData\Local\Temp\nsi989.exe C:\Users\Yannick\AppData\Local\Temp\nsiA8A9.exe C:\Users\Yannick\AppData\Local\Temp\nsiBE42.exe C:\Users\Yannick\AppData\Local\Temp\nsl9511.exe C:\Users\Yannick\AppData\Local\Temp\nsvC49C.exe C:\Users\Yannick\AppData\Local\Temp\nsy36C1.exe C:\Users\Yannick\AppData\Local\Temp\OfficeSetup.exe C:\Users\Yannick\AppData\Local\Temp\proxy_vole7055114643300721654.dll C:\Users\Yannick\AppData\Local\Temp\Quarantine.exe C:\Users\Yannick\AppData\Local\Temp\ReimagePackage.exe C:\Users\Yannick\AppData\Local\Temp\ReimageRepair.exe C:\Users\Yannick\AppData\Local\Temp\sdanircmdc.exe C:\Users\Yannick\AppData\Local\Temp\sdapskill.exe C:\Users\Yannick\AppData\Local\Temp\setup.exe C:\Users\Yannick\AppData\Local\Temp\SIInvoker.exe C:\Users\Yannick\AppData\Local\Temp\SkypeSetup.exe C:\Users\Yannick\AppData\Local\Temp\Tsu008CE760.dll C:\Users\Yannick\AppData\Local\Temp\verifier.exe ==================== Bamital & volsnap Check ================= (There is no automatic fix for files that do not pass verification.) C:\Windows\System32\winlogon.exe => File is digitally signed C:\Windows\System32\wininit.exe => File is digitally signed C:\Windows\explorer.exe => File is digitally signed C:\Windows\SysWOW64\explorer.exe => File is digitally signed C:\Windows\System32\svchost.exe => File is digitally signed C:\Windows\SysWOW64\svchost.exe => File is digitally signed C:\Windows\System32\services.exe => File is digitally signed C:\Windows\System32\User32.dll => File is digitally signed C:\Windows\SysWOW64\User32.dll => File is digitally signed C:\Windows\System32\userinit.exe => File is digitally signed C:\Windows\SysWOW64\userinit.exe => File is digitally signed C:\Windows\System32\rpcss.dll => File is digitally signed C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed LastRegBack: 2014-07-26 08:51 ==================== End Of Log ============================ |
03.08.2014, 14:31 | #4 |
| proxyserver blockiert Internetzugriff fast aller programme additional part 1/2: Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 02-08-2014 Ran by Yannick at 2014-08-03 13:58:36 Running from G:\ Boot Mode: Normal ========================================================== ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736} ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) 64 Bit HP CIO Components Installer (Version: 7.2.8 - Hewlett-Packard) Hidden 7-Zip 9.20 (HKLM-x32\...\7-Zip) (Version: - ) 888poker (HKLM-x32\...\888poker) (Version: - ) Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 14.0.0.110 - Adobe Systems Incorporated) Adobe AIR (x32 Version: 14.0.0.110 - Adobe Systems Incorporated) Hidden Adobe Flash Player 14 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 14.0.0.145 - Adobe Systems Incorporated) Adobe Reader XI (11.0.07) - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AB0000000001}) (Version: 11.0.07 - Adobe Systems Incorporated) AIO_Scan (x32 Version: 130.0.421.000 - Hewlett-Packard) Hidden Aloha TriPeaks (x32 Version: 2.2.0.98 - WildTangent) Hidden AMD Accelerated Video Transcoding (Version: 12.5.100.20808 - Advanced Micro Devices, Inc.) Hidden AMD APP SDK Runtime (Version: 10.0.938.2 - Advanced Micro Devices Inc.) Hidden AMD Catalyst Install Manager (HKLM\...\{95EF3DDB-27C8-CDA9-9E72-5EC3F02C1B02}) (Version: 8.0.881.0 - Advanced Micro Devices, Inc.) Atheros Bluetooth Filter Driver Package (HKLM\...\{026B819B-4D60-4C8B-892D-33A0D8666F60}) (Version: 2.0.0.3 - Atheros Communications) Atheros Driver Installation Program (HKLM-x32\...\{C3A32068-8AB1-4327-BB16-BED9C6219DC7}) (Version: 10.0 - Atheros) avast! Free Antivirus (HKLM-x32\...\avast) (Version: 9.0.2021 - AVAST Software) Bejeweled 3 (x32 Version: 2.2.0.98 - WildTangent) Hidden Bing Bar (HKLM-x32\...\{3611CA6C-5FCA-4900-A329-6A118123CCFC}) (Version: 7.1.355.0 - Microsoft Corporation) BitRaider Web Client (HKLM-x32\...\BitRaider Web Client) (Version: 1.1.8.1 - BitRaider, LLC) BufferChm (x32 Version: 140.0.298.000 - Hewlett-Packard) Hidden bwin Poker (HKLM-x32\...\bwincomPoker) (Version: - bwincom) Camtasia Studio 8 (HKLM-x32\...\{F5C9BE9A-04C3-4A72-8CD0-BB67C722D608}) (Version: 8.1.2.1344 - TechSmith Corporation) CarbonPoker (HKCU\...\CarbonPoker) (Version: 6.0 - ) Catalyst Control Center - Branding (x32 Version: 1.00.0000 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center (x32 Version: 2012.0808.1024.16666 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Graphics Previews Common (x32 Version: 2012.0808.1024.16666 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center InstallProxy (x32 Version: 2012.0808.1024.16666 - Advanced Micro Devices, Inc.) Hidden Catalyst Control Center Localization All (x32 Version: 2012.0808.1024.16666 - Advanced Micro Devices, Inc.) Hidden CCC Help Chinese Standard (x32 Version: 2012.0808.1023.16666 - Advanced Micro Devices, Inc.) Hidden CCC Help Chinese Traditional (x32 Version: 2012.0808.1023.16666 - Advanced Micro Devices, Inc.) Hidden CCC Help Czech (x32 Version: 2012.0808.1023.16666 - Advanced Micro Devices, Inc.) Hidden CCC Help Danish (x32 Version: 2012.0808.1023.16666 - Advanced Micro Devices, Inc.) Hidden CCC Help Dutch (x32 Version: 2012.0808.1023.16666 - Advanced Micro Devices, Inc.) Hidden CCC Help English (x32 Version: 2012.0808.1023.16666 - Advanced Micro Devices, Inc.) Hidden CCC Help Finnish (x32 Version: 2012.0808.1023.16666 - Advanced Micro Devices, Inc.) Hidden CCC Help French (x32 Version: 2012.0808.1023.16666 - Advanced Micro Devices, Inc.) Hidden CCC Help German (x32 Version: 2012.0808.1023.16666 - Advanced Micro Devices, Inc.) Hidden CCC Help Greek (x32 Version: 2012.0808.1023.16666 - Advanced Micro Devices, Inc.) Hidden CCC Help Hungarian (x32 Version: 2012.0808.1023.16666 - Advanced Micro Devices, Inc.) Hidden CCC Help Italian (x32 Version: 2012.0808.1023.16666 - Advanced Micro Devices, Inc.) Hidden CCC Help Japanese (x32 Version: 2012.0808.1023.16666 - Advanced Micro Devices, Inc.) Hidden CCC Help Korean (x32 Version: 2012.0808.1023.16666 - Advanced Micro Devices, Inc.) Hidden CCC Help Norwegian (x32 Version: 2012.0808.1023.16666 - Advanced Micro Devices, Inc.) Hidden CCC Help Polish (x32 Version: 2012.0808.1023.16666 - Advanced Micro Devices, Inc.) Hidden CCC Help Portuguese (x32 Version: 2012.0808.1023.16666 - Advanced Micro Devices, Inc.) Hidden CCC Help Russian (x32 Version: 2012.0808.1023.16666 - Advanced Micro Devices, Inc.) Hidden CCC Help Spanish (x32 Version: 2012.0808.1023.16666 - Advanced Micro Devices, Inc.) Hidden CCC Help Swedish (x32 Version: 2012.0808.1023.16666 - Advanced Micro Devices, Inc.) Hidden CCC Help Thai (x32 Version: 2012.0808.1023.16666 - Advanced Micro Devices, Inc.) Hidden CCC Help Turkish (x32 Version: 2012.0808.1023.16666 - Advanced Micro Devices, Inc.) Hidden ccc-utility64 (Version: 2012.0808.1024.16666 - Advanced Micro Devices, Inc.) Hidden Chuzzle Deluxe (x32 Version: 2.2.0.95 - WildTangent) Hidden Copy (x32 Version: 140.0.298.000 - Hewlett-Packard) Hidden D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden DAEMON Tools Lite (HKLM-x32\...\DAEMON Tools Lite) (Version: 4.48.1.0347 - Disc Soft Ltd) Definition Update for Microsoft Office 2013 (KB2760587) 32-Bit Edition (HKLM-x32\...\{91150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUSR_{65480649-2AA6-4C5C-AAE8-DB35335D98A7}) (Version: - Microsoft) Destinations (x32 Version: 140.0.253.000 - Hewlett-Packard) Hidden DeviceDiscovery (x32 Version: 140.0.298.000 - Hewlett-Packard) Hidden Diablo II (HKLM-x32\...\Diablo II) (Version: - Blizzard Entertainment) Diablo III (HKLM-x32\...\Diablo III) (Version: 1.0.8.16603 - Blizzard Entertainment) DJ_AIO_NS_LP_DocCD (x32 Version: 90.0.222.000 - Hewlett-Packard) Hidden DJ_AIO_ProductContext (x32 Version: 140.0.425.000 - Hewlett-Packard) Hidden DJ_AIO_Software (x32 Version: 140.0.428.000 - Hewlett-Packard) Hidden DJ_AIO_Software_min (x32 Version: 140.0.425.000 - Hewlett-Packard) Hidden DocProc (x32 Version: 140.0.185.000 - Hewlett-Packard) Hidden Driver Robot (HKLM-x32\...\{1A36CF15-DF66-4756-9482-A9ABF3DDACE6}_is1) (Version: - Blitware Technology Inc.) Dropbox (HKCU\...\Dropbox) (Version: 2.10.3 - Dropbox, Inc.) Electronic Arts Product Registration (HKLM-x32\...\InstallShield_{D7D50E0C-27DD-4999-BC05-E026B580F93A}) (Version: 1.01.0000 - Electronic Arts) Electronic Arts Product Registration (x32 Version: 1.01.0000 - Electronic Arts) Hidden Empress of the Deep - The Darkest Secret (x32 Version: 2.2.0.98 - WildTangent) Hidden EverestPoker.com (HKCU\...\EverestPoker.com) (Version: - ) EZDownloader (HKLM-x32\...\{0F44DC3A-6E62-4961-A14B-95323C512F9B}_is1) (Version: 1.0 - EZDownloader) F4100 (x32 Version: 140.0.425.000 - Hewlett-Packard) Hidden F4100_Help (x32 Version: 90.0.222.000 - Hewlett-Packard) Hidden Fotogalerie (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Full Tilt Poker.Eu (HKLM-x32\...\{127BEFB3-24B2-4B44-8E99-AD22C2A5A8ED}) (Version: 4.65.0.WIN.FullTilt.EU - ) Galaxy Poker (HKLM-x32\...\Galaxy Poker) (Version: 2.0.1.6668 - Galaxy Poker) Gameforge Live 1.4.0 "Legend" (HKLM-x32\...\{9C98989A-3A15-42DA-A3B9-D20331437D67}}_is1) (Version: 1.4.0 - Gameforge) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 36.0.1985.125 - Google Inc.) Google Drive (HKLM-x32\...\{75939021-3B68-419D-8DC1-E9823BFF9658}) (Version: 1.16.7009.9618 - Google, Inc.) Google Talk Plugin (HKLM-x32\...\{C1E3DFE7-4EAD-3E9E-A826-E06055BA5921}) (Version: 5.4.2.18903 - Google) Google Update Helper (x32 Version: 1.3.24.15 - Google Inc.) Hidden GPBaseService2 (x32 Version: 140.0.297.000 - Hewlett-Packard) Hidden Harry Potter II (HKLM-x32\...\{7BF68B83-5057-4D4B-0093-28285EEB9EE3}) (Version: - ) Holdem Manager 2 (HKLM-x32\...\HoldemManager2) (Version: - ) HoldemResources Calculator (HKLM-x32\...\HoldemResources Calculator) (Version: release - HoldemResources) HP Customer Participation Program 14.0 (HKLM\...\HPExtendedCapabilities) (Version: 14.0 - HP) HP Deskjet All-In-One Software (HKLM\...\{2CB8566A-8EA6-417A-BAB1-1B10A88C79BB}) (Version: 14.0 - HP) HP Imaging Device Functions 14.0 (HKLM\...\HP Imaging Device Functions) (Version: 14.0 - HP) HP Solution Center 14.0 (HKLM\...\HP Solution Center & Imaging Support Tools) (Version: 14.0 - HP) HP Update (HKLM-x32\...\{B0069CFA-5BB9-4C03-B1C6-89CE290E5AFE}) (Version: 5.002.006.003 - Hewlett-Packard) HPPhotoGadget (x32 Version: 140.0.524.000 - Hewlett-Packard) Hidden HPProductAssistant (x32 Version: 140.0.298.000 - Hewlett-Packard) Hidden HPSSupply (x32 Version: 140.0.297.000 - Hewlett-Packard) Hidden InetStat (HKCU\...\InetStat) (Version: 0.5b - InetStat) Intel AppUp(SM) center (HKLM-x32\...\Intel AppUp(SM) center 33268) (Version: 3.6.1.33268.15 - Intel) Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 8.1.0.1252 - Intel Corporation) Intel(R) Rapid Storage Technology (HKLM-x32\...\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: 11.5.2.1001 - Intel Corporation) Intel® Trusted Connect Service Client (Version: 1.24.388.1 - Intel Corporation) Hidden Island Tribe (x32 Version: 2.2.0.98 - WildTangent) Hidden Java 7 Update 45 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86417045FF}) (Version: 7.0.450 - Oracle) Java 7 Update 51 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83217045FF}) (Version: 7.0.510 - Oracle) Java Auto Updater (x32 Version: 2.1.9.8 - Sun Microsystems, Inc.) Hidden Java SE Development Kit 7 Update 45 (64-bit) (HKLM\...\{64A3A4F4-B792-11D6-A78A-00B0D0170450}) (Version: 1.7.0.450 - Oracle) JDownloader 0.9 (HKLM-x32\...\5513-1208-7298-9440) (Version: 0.9 - AppWork GmbH) JDownloader 2 (HKLM\...\jdownloader2) (Version: 2.0 - AppWork GmbH) Jewel Quest Solitaire 2 (x32 Version: 2.2.0.98 - WildTangent) Hidden join.me (HKCU\...\JoinMe) (Version: 1.13.1.118 - LogMeIn, Inc.) Lyrics Plug (HKLM-x32\...\lplug@srasoft.net) (Version: - SRA Software) <==== ATTENTION Magic Academy (x32 Version: 2.2.0.98 - WildTangent) Hidden MarketResearch (x32 Version: 140.0.299.000 - Hewlett-Packard) Hidden McAfee Security Scan Plus (HKLM\...\McAfee Security Scan) (Version: 3.8.150.1 - McAfee, Inc.) Media Player Classic - Home Cinema v1.5.2.3456 (HKLM-x32\...\{2624B969-7135-4EB1-B0F6-2D8C397B45F7}_is1) (Version: 1.5.2.3456 - MPC-HC Team) <==== ATTENTION Metin2 (HKLM-x32\...\Metin2_is1) (Version: - Gameforge 4D GmbH) Microsoft Access MUI (German) 2013 (x32 Version: 15.0.4569.1506 - Microsoft Corporation) Hidden Microsoft App Update for microsoft.windowscommunicationsapps_17.0.1119.516_x64__8wekyb3d8bbwe (x64) (Version: 1.0.0.0 - Microsoft Corporation) Hidden Microsoft Application Error Reporting (Version: 12.0.6015.5000 - Microsoft Corporation) Hidden Microsoft DCF MUI (German) 2013 (x32 Version: 15.0.4569.1506 - Microsoft Corporation) Hidden Microsoft Excel MUI (German) 2013 (x32 Version: 15.0.4569.1506 - Microsoft Corporation) Hidden Microsoft Groove MUI (German) 2013 (x32 Version: 15.0.4569.1506 - Microsoft Corporation) Hidden Microsoft InfoPath MUI (German) 2013 (x32 Version: 15.0.4569.1506 - Microsoft Corporation) Hidden Microsoft Lync MUI (German) 2013 (x32 Version: 15.0.4569.1506 - Microsoft Corporation) Hidden Microsoft Office 365 - de-de (HKLM\...\O365HomePremRetail - de-de) (Version: 15.0.4631.1004 - Microsoft Corporation) Microsoft Office 64-bit Components 2013 (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden Microsoft Office Korrekturhilfen 2013 - Deutsch (x32 Version: 15.0.4569.1506 - Microsoft Corporation) Hidden Microsoft Office OSM MUI (German) 2013 (x32 Version: 15.0.4569.1506 - Microsoft Corporation) Hidden Microsoft Office OSM UX MUI (German) 2013 (x32 Version: 15.0.4569.1506 - Microsoft Corporation) Hidden Microsoft Office Professional Plus 2013 (HKLM-x32\...\Office15.PROPLUSR) (Version: 15.0.4569.1506 - Microsoft Corporation) Microsoft Office Professional Plus 2013 (x32 Version: 15.0.4569.1506 - Microsoft Corporation) Hidden Microsoft Office Proofing (German) 2013 (x32 Version: 15.0.4569.1506 - Microsoft Corporation) Hidden Microsoft Office Proofing Tools 2013 - English (x32 Version: 15.0.4569.1506 - Microsoft Corporation) Hidden Microsoft Office Proofing Tools 2013 - Italiano (x32 Version: 15.0.4569.1506 - Microsoft Corporation) Hidden Microsoft Office Shared 64-bit MUI (German) 2013 (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden Microsoft Office Shared MUI (German) 2013 (x32 Version: 15.0.4569.1506 - Microsoft Corporation) Hidden Microsoft OneNote MUI (German) 2013 (x32 Version: 15.0.4569.1506 - Microsoft Corporation) Hidden Microsoft Outlook MUI (German) 2013 (x32 Version: 15.0.4569.1506 - Microsoft Corporation) Hidden Microsoft PowerPoint MUI (German) 2013 (x32 Version: 15.0.4569.1506 - Microsoft Corporation) Hidden Microsoft Publisher MUI (German) 2013 (x32 Version: 15.0.4569.1506 - Microsoft Corporation) Hidden Microsoft SkyDrive (HKCU\...\SkyDriveSetup.exe) (Version: 17.0.2015.0811 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Word MUI (German) 2013 (x32 Version: 15.0.4569.1506 - Microsoft Corporation) Hidden Movie Maker (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden MSVCRT (x32 Version: 15.4.2862.0708 - Microsoft) Hidden MSVCRT110 (x32 Version: 16.4.1108.0727 - Microsoft) Hidden MSVCRT110_amd64 (Version: 16.4.1109.0912 - Microsoft) Hidden MyPC Backup (HKLM\...\MyPC Backup) (Version: - JDi Backup Ltd) <==== ATTENTION Mysearchdial (HKLM-x32\...\mysearchdial) (Version: - Mysearchdial) <==== ATTENTION MySQL Query Browser 1.1 (HKLM-x32\...\{1444B16A-766B-4AD1-8AE8-F0C04C782E2F}) (Version: 1.1.20 - MySQL AB) MySQL Workbench 6.1 CE (HKLM-x32\...\{AD95295B-0279-43B6-A873-F12A1D1CD146}) (Version: 6.1.7 - Oracle Corporation) Nero 12 Essentials Toshiba (HKLM-x32\...\{BA8958DC-ADD7-41E5-8436-5883C7E871C7}) (Version: 12.0.00400 - Nero AG) Nero BackItUp (x32 Version: 12.0.1000 - Nero AG) Hidden Nero BackItUp Help (CHM) (x32 Version: 12.0.3000 - Nero AG) Hidden Nero Blu-ray Player (x32 Version: 12.0.12600 - Nero AG) Hidden Nero Blu-ray Player Help (CHM) (x32 Version: 12.0.3000 - Nero AG) Hidden Nero BurnRights (x32 Version: 12.0.3000 - Nero AG) Hidden Nero BurnRights Help (CHM) (x32 Version: 12.0.3000 - Nero AG) Hidden Nero ControlCenter (x32 Version: 11.0.14800.0.48 - Nero AG) Hidden Nero ControlCenter Help (CHM) (x32 Version: 12.0.3000 - Nero AG) Hidden Nero Core Components (x32 Version: 11.0.17600.2.3 - Nero AG) Hidden Nero Express (x32 Version: 12.0.14001 - Nero AG) Hidden Nero Express Help (CHM) (x32 Version: 12.0.3000 - Nero AG) Hidden Nero Kwik Media (x32 Version: 1.18.16800 - Nero AG) Hidden Nero Kwik Media Help (CHM) (x32 Version: 12.0.4000 - Nero AG) Hidden Nero Kwik Themes Basic (x32 Version: 12.0.11500 - Nero AG) Hidden Nero Launcher (x32 Version: 12.2.1000 - Nero AG) Hidden Nero RescueAgent (x32 Version: 12.0.7002 - Nero AG) Hidden Nero RescueAgent Help (CHM) (x32 Version: 12.0.3000 - Nero AG) Hidden Nero SharedVideoCodecs (x32 Version: 1.0.12100.2.0 - Nero AG) Hidden Nero Update (x32 Version: 11.0.11800.31.0 - Nero AG) Hidden OCR Software by I.R.I.S. 14.0 (HKLM\...\HPOCR) (Version: 14.0 - HP) Office 15 Click-to-Run Extensibility Component (x32 Version: 15.0.4631.1004 - Microsoft Corporation) Hidden Office 15 Click-to-Run Licensing Component (Version: 15.0.4631.1004 - Microsoft Corporation) Hidden Office 15 Click-to-Run Localization Component (x32 Version: 15.0.4631.1004 - Microsoft Corporation) Hidden OpenOffice 4.0.1 (HKLM-x32\...\{0AEC308E-7EB3-47F7-BB59-F2C9C6166B27}) (Version: 4.01.9714 - Apache Software Foundation) Opera Stable 20.0.1387.77 (HKLM-x32\...\Opera 20.0.1387.77) (Version: 20.0.1387.77 - Opera Software ASA) Outils de vérification linguistique 2013 de Microsoft Office*- Français (x32 Version: 15.0.4569.1506 - Microsoft Corporation) Hidden partypoker (HKLM-x32\...\PartyPoker) (Version: - PartyGaming) Peggle Nights (x32 Version: 2.2.0.98 - WildTangent) Hidden Photo Common (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Photo Gallery (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden PKR (HKLM-x32\...\PKR) (Version: - PKR Ltd) Plants vs. Zombies - Game of the Year (x32 Version: 2.2.0.98 - WildTangent) Hidden PokerStars.eu (HKLM-x32\...\PokerStars.eu) (Version: - PokerStars.eu) PokerStars.fr (HKLM-x32\...\PokerStars.fr) (Version: - PokerStars.fr) PokerStove version 1.12 (HKLM-x32\...\{6D0C6BE4-F674-43D2-96BC-3509345108C9}_is1) (Version: - ) Polar Bowler (x32 Version: 2.2.0.97 - WildTangent) Hidden PostgreSQL 8.4 (HKLM-x32\...\PostgreSQL 8.4) (Version: 8.4 - PostgreSQL Global Development Group) Premium Sound HD (HKLM\...\{94F03B8E-CB73-4653-AFE9-79112C01FED2}) (Version: 1.12.4600 - SRS Labs, Inc.) Prerequisite installer (x32 Version: 12.0.0002 - Nero AG) Hidden Price Metér (remove only) (HKCU\...\Price Metér) (Version: 1.1.2.7 - Price Meter) <==== ATTENTION PriceGong 2.6.12 (HKLM-x32\...\PriceGong) (Version: 2.6.12 - PriceGong) <==== ATTENTION Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 8.3.730.2012 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6687 - Realtek Semiconductor Corp.) Realtek USB 2.0 Card Reader (HKLM-x32\...\{96AE7E41-E34E-47D0-AC07-1091A8127911}) (Version: 6.1.8400.30136 - Realtek Semiconductor Corp.) RedKings Poker 1.0.0 (HKLM-x32\...\RedKings Poker_is1) (Version: 1.0.0 - redkings) Reimage Repair (HKLM\...\Reimage Repair) (Version: 1.6.6.3 - Reimage) savE on (HKLM-x32\...\{993EA8F6-6E55-7E4E-39DE-5796E3226DB9}) (Version: 4.3.0.1718 - save on) <==== ATTENTION Scan (x32 Version: 140.0.253.000 - Hewlett-Packard) Hidden schlaegerei.de cdScherz 4.00 (HKLM-x32\...\schlaegerei.de cdScherz 4.00) (Version: 4.00 - Philipp Winterberg) Search Protect (HKLM-x32\...\SearchProtect) (Version: 2.15.11.3 - Client Connect LTD) <==== ATTENTION Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition (HKLM-x32\...\{91150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUSR_{7F6C4883-A18C-459A-82C1-A2F9403F2DA6}) (Version: - Microsoft) Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition (x32 Version: - Microsoft) Hidden Shared C Run-time for x64 (HKLM\...\{EF79C448-6946-4D71-8134-03407888C054}) (Version: 10.0.0 - McAfee) Shop for HP Supplies (HKLM\...\Shop for HP Supplies) (Version: 14.0 - HP) Skype Click to Call (HKLM-x32\...\{6D1221A9-17BF-4EC0-81F2-27D30EC30701}) (Version: 7.3.16540.9015 - Microsoft Corporation) Skype™ 6.18 (HKLM-x32\...\{7A3C7E05-EE37-47D6-99E1-2EB05A3DA3F7}) (Version: 6.18.105 - Skype Technologies S.A.) Snap.Do (HKLM-x32\...\{BB2B6958-E539-47D3-83DC-9ADF9DDEE4DD}) (Version: 10.210.1.13712 - ReSoft Ltd.) <==== ATTENTION Snap.Do Engine (HKCU\...\{5d2ac49a-61c3-4f7c-a024-e549b0e3ad7c}) (Version: 10.210.1.13712 - ReSoft Ltd.) <==== ATTENTION SolutionCenter (x32 Version: 140.0.299.000 - Hewlett-Packard) Hidden Star Wars Battlefront II (HKLM-x32\...\{3D374523-CFDE-461A-827E-2A102E2AB365}) (Version: 1.0 - LucasArts) Star Wars Republic Commando (HKLM-x32\...\Steam App 6000) (Version: - LucasArts) Star Wars The Old Republic (HKLM-x32\...\swtor_swtor) (Version: 7.0.0.4 - Bioware/EA) Star Wars: The Old Republic (HKLM-x32\...\{3B11D799-48E0-48ED-BFD7-EA655676D8BB}) (Version: 1.00 - Electronic Arts, Inc.) STARWARS: The Battle of Endor version 2.1 (HKLM-x32\...\STARWARS: The Battle of Endor v2.1_is1) (Version: - Bruno R. Marcos) STARWARS: The Battle of Yavin version 1.1 (HKLM-x32\...\STARWARS: The Battle of Yavin v1.1_is1) (Version: - Bruno R. Marcos) Status (x32 Version: 140.0.342.000 - Hewlett-Packard) Hidden Steam (HKLM-x32\...\{048298C9-A4D3-490B-9FF9-AB023A9238F3}) (Version: 1.0.0.0 - Valve Corporation) suprasavings (HKLM\...\suprasavings) (Version: 2.0.1 - suprasavings) <==== ATTENTION SupTab (HKLM-x32\...\SupTab) (Version: 1.1.1.0 - ) <==== ATTENTION Swift Browse 1.0.0 (HKLM\...\Swift Browse) (Version: 1.0.0 - Swift Browse) Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 16.2.10.3 - Synaptics Incorporated) TeamViewer 9 (HKLM-x32\...\TeamViewer 9) (Version: 9.0.29947 - TeamViewer) Toolbox (x32 Version: 140.0.596.000 - Hewlett-Packard) Hidden TornTV (HKLM-x32\...\1ClickDownload) (Version: 2.1 Build 26473 - TornTV.com) <==== ATTENTION Torntv V9.0 (HKLM-x32\...\Torntv V9.0) (Version: 1.34.6.10 - installdaddy) <==== ATTENTION TOSHIBA Desktop Assist (HKLM\...\{95CCACF0-010D-45F0-82BF-858643D8BC02}) (Version: 1.00.0007.00002 - Toshiba Corporation) TOSHIBA eco Utility (HKLM\...\{5944B9D4-3C2A-48DE-931E-26B31714A2F7}) (Version: 2.0.0.6415 - Toshiba Corporation) TOSHIBA Function Key (HKLM\...\{16562A90-71BC-41A0-B890-D91B0C267120}) (Version: 1.00.6425 - Toshiba Corporation) TOSHIBA Manuals (HKLM-x32\...\{90FF4432-21B7-4AF6-BA6E-FB8C1FED9173}) (Version: 10.10 - TOSHIBA) Toshiba Password Utility (HKLM-x32\...\InstallShield_{6D35FF17-A8B3-43D3-917E-5A1F2C3FB628}) (Version: 2.00.910 - Toshiba Corporation) Toshiba Password Utility (x32 Version: 2.00.910 - Toshiba Corporation) Hidden TOSHIBA PC Health Monitor (HKLM\...\{9DECD0F9-D3E8-48B0-A390-1CF09F54E3A4}) (Version: 1.8.17.640104 - Toshiba Corporation) Toshiba Places Icon Utility (HKLM\...\{C991A8C4-307C-4FDD-8AAE-A1BF44881E95}) (Version: 2.1.1 - TOSHIBA) TOSHIBA Recovery Media Creator (HKLM-x32\...\{B65BBB06-1F8E-48F5-8A54-B024A9E15FDF}) (Version: 2.2.0.54043005 - Toshiba Corporation) TOSHIBA Resolution+ Plug-in for Windows Media Player (HKLM-x32\...\{6CB76C9D-80C2-4CB3-A4CD-D96B239E3F94}) (Version: 1.2.2.00 - TOSHIBA Corporation) TOSHIBA Service Station (HKLM\...\{B8C8422F-01F1-4791-B084-047AAFF9BFCC}) (Version: 2.4.4 - TOSHIBA) TOSHIBA System Driver (HKLM-x32\...\{1E6A96A1-2BAB-43EF-8087-30437593C66C}) (Version: 1.00.0012 - Toshiba Corporation) TOSHIBA System Settings (HKLM-x32\...\{05A55927-DB9B-4E26-BA44-828EBFF829F0}) (Version: 1.00.0002.32002 - Toshiba Corporation) Toshiba TEMPRO (HKLM-x32\...\{F76F5214-83A8-4030-80C9-1EF57391D72A}) (Version: 4.2.1 - Toshiba Europe GmbH) TOSHIBA VIDEO PLAYER (HKLM\...\{FF07604E-C860-40E9-A230-E37FA41F103A}) (Version: 5.1.0.12-A - Toshiba Corporation) TrayApp (x32 Version: 140.0.297.000 - Hewlett-Packard) Hidden TUGZip 3.5 (HKLM-x32\...\TUGZip_is1) (Version: - Christian Kindahl) UltraISO Premium V9.6 (HKLM-x32\...\UltraISO_is1) (Version: - ) Universal Adb Driver (HKLM-x32\...\{D9C4202E-6D51-4B06-A8F1-22316E654BCA}) (Version: 1.0.0 - ClockworkMod) UnloadSupport (x32 Version: 11.0.0 - Hewlett-Packard) Hidden Update for Microsoft Excel 2013 (KB2881085) 32-Bit Edition (HKLM-x32\...\{90150000-0016-0407-0000-0000000FF1CE}_Office15.PROPLUSR_{122B0E69-64AF-41BE-B3F6-D387A7E7E687}) (Version: - Microsoft) Update for Microsoft Excel 2013 (KB2881085) 32-Bit Edition (HKLM-x32\...\{90150000-0018-0407-0000-0000000FF1CE}_Office15.PROPLUSR_{122B0E69-64AF-41BE-B3F6-D387A7E7E687}) (Version: - Microsoft) Update for Microsoft Excel 2013 (KB2881085) 32-Bit Edition (HKLM-x32\...\{90150000-001B-0407-0000-0000000FF1CE}_Office15.PROPLUSR_{122B0E69-64AF-41BE-B3F6-D387A7E7E687}) (Version: - Microsoft) Update for Microsoft Excel 2013 (KB2881085) 32-Bit Edition (HKLM-x32\...\{90150000-006E-0407-0000-0000000FF1CE}_Office15.PROPLUSR_{122B0E69-64AF-41BE-B3F6-D387A7E7E687}) (Version: - Microsoft) Update for Microsoft Excel 2013 (KB2881085) 32-Bit Edition (HKLM-x32\...\{91150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUSR_{122B0E69-64AF-41BE-B3F6-D387A7E7E687}) (Version: - Microsoft) Update for Microsoft Lync 2013 (KB2850074) 32-Bit Edition (HKLM-x32\...\{90150000-012B-0407-0000-0000000FF1CE}_Office15.PROPLUSR_{968E82F6-FAF7-45E0-BCC0-EF8AA31A4EB3}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2760344) 32-Bit Edition (HKLM-x32\...\{91150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUSR_{A7610F07-E844-4444-8E1D-D5BC8AD0B4C5}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2760544) 32-Bit Edition (HKLM-x32\...\{91150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUSR_{45B7D395-EB9B-414F-9E46-5849B42326E2}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2768012) 32-Bit Edition (HKLM-x32\...\{91150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUSR_{66421820-D3CA-450A-898C-78D7E40108E6}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2817302) 32-Bit Edition (HKLM-x32\...\{90150000-0016-0407-0000-0000000FF1CE}_Office15.PROPLUSR_{1644D7F6-90EE-4252-8884-18E4E330529D}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2817302) 32-Bit Edition (HKLM-x32\...\{91150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUSR_{1644D7F6-90EE-4252-8884-18E4E330529D}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2826040) 32-Bit Edition (HKLM-x32\...\{91150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUSR_{B7EA8070-C37F-4617-82F4-52CF3304595A}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2837644) 32-Bit Edition (HKLM-x32\...\{91150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUSR_{9BC5FF1D-9626-44D7-BC7F-EB44BD8BDB9F}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2863843) 32-Bit Edition (HKLM-x32\...\{90150000-002A-0000-1000-0000000FF1CE}_Office15.PROPLUSR_{AD7045B8-1D75-4B4C-8120-12F045D206C7}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2863843) 32-Bit Edition (HKLM-x32\...\{91150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUSR_{AD7045B8-1D75-4B4C-8120-12F045D206C7}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2880457) 32-Bit Edition (HKLM-x32\...\{91150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUSR_{D27F6360-AE1E-4C8C-8ECD-C0375E20B923}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2880462) 32-Bit Edition (HKLM-x32\...\{90150000-006E-0407-0000-0000000FF1CE}_Office15.PROPLUSR_{5D6439FF-D651-4B13-B52E-2508AB9DE19D}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2880462) 32-Bit Edition (HKLM-x32\...\{91150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUSR_{5D6439FF-D651-4B13-B52E-2508AB9DE19D}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2880464) 32-Bit Edition (HKLM-x32\...\{91150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUSR_{06EF2BF7-7351-4D70-A0D5-588FCCF9808D}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2880478) 32-Bit Edition (HKLM-x32\...\{91150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUSR_{7C5CEE0F-6823-4BB7-A28F-76FEC14EB6AC}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2880987) 32-Bit Edition (HKLM-x32\...\{90150000-006E-0407-0000-0000000FF1CE}_Office15.PROPLUSR_{07017577-FBD6-45E2-A796-659E8F428057}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2880987) 32-Bit Edition (HKLM-x32\...\{91150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUSR_{07017577-FBD6-45E2-A796-659E8F428057}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2881035) 32-Bit Edition (HKLM-x32\...\{90150000-0016-0407-0000-0000000FF1CE}_Office15.PROPLUSR_{01B80B63-C638-4004-9148-75B8C8518B1E}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2881035) 32-Bit Edition (HKLM-x32\...\{90150000-0090-0407-0000-0000000FF1CE}_Office15.PROPLUSR_{01B80B63-C638-4004-9148-75B8C8518B1E}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2881035) 32-Bit Edition (HKLM-x32\...\{91150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUSR_{01B80B63-C638-4004-9148-75B8C8518B1E}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2881074) 32-Bit Edition (HKLM-x32\...\{91150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUSR_{B23AED0C-4813-4B49-9870-2F0968824E87}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2881084) 32-Bit Edition (HKLM-x32\...\{90150000-001F-0407-0000-0000000FF1CE}_Office15.PROPLUSR_{E249DF0B-9318-47AC-A6C2-A860FF1BEC3C}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2881084) 32-Bit Edition (HKLM-x32\...\{90150000-001F-0409-0000-0000000FF1CE}_Office15.PROPLUSR_{56962EB1-4DD3-48BB-934B-EA4C4516D89A}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2881084) 32-Bit Edition (HKLM-x32\...\{90150000-001F-040C-0000-0000000FF1CE}_Office15.PROPLUSR_{63AED158-0508-4738-A811-840B2053EF3B}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2881084) 32-Bit Edition (HKLM-x32\...\{90150000-001F-0410-0000-0000000FF1CE}_Office15.PROPLUSR_{AE4413A8-4182-4883-B0BB-AC34CDFB56BC}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2881086) 32-Bit Edition (HKLM-x32\...\{90150000-002A-0000-1000-0000000FF1CE}_Office15.PROPLUSR_{02DB183E-6F67-4906-A391-325874C5DA87}) (Version: - Microsoft) Update for Microsoft Office 2013 (KB2881086) 32-Bit Edition (HKLM-x32\...\{91150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUSR_{02DB183E-6F67-4906-A391-325874C5DA87}) (Version: - Microsoft) Update for Microsoft OneDrive for Business (KB2881087) 32-Bit Edition (HKLM-x32\...\{90150000-002A-0000-1000-0000000FF1CE}_Office15.PROPLUSR_{FC6618D2-F75D-4FDD-B396-E4B0C0D757B6}) (Version: - Microsoft) Update for Microsoft OneDrive for Business (KB2881087) 32-Bit Edition (HKLM-x32\...\{90150000-002A-0407-1000-0000000FF1CE}_Office15.PROPLUSR_{FC6618D2-F75D-4FDD-B396-E4B0C0D757B6}) (Version: - Microsoft) Update for Microsoft OneDrive for Business (KB2881087) 32-Bit Edition (HKLM-x32\...\{90150000-00BA-0407-0000-0000000FF1CE}_Office15.PROPLUSR_{FC6618D2-F75D-4FDD-B396-E4B0C0D757B6}) (Version: - Microsoft) Update for Microsoft OneDrive for Business (KB2881087) 32-Bit Edition (HKLM-x32\...\{91150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUSR_{FC6618D2-F75D-4FDD-B396-E4B0C0D757B6}) (Version: - Microsoft) Update for Microsoft OneNote 2013 (KB2881082) 32-Bit Edition (HKLM-x32\...\{90150000-002A-0000-1000-0000000FF1CE}_Office15.PROPLUSR_{CA0F0611-10FB-47D4-A642-E3BABCC73393}) (Version: - Microsoft) Update for Microsoft OneNote 2013 (KB2881082) 32-Bit Edition (HKLM-x32\...\{90150000-00A1-0407-0000-0000000FF1CE}_Office15.PROPLUSR_{CA0F0611-10FB-47D4-A642-E3BABCC73393}) (Version: - Microsoft) Update for Microsoft OneNote 2013 (KB2881082) 32-Bit Edition (HKLM-x32\...\{91150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUSR_{CA0F0611-10FB-47D4-A642-E3BABCC73393}) (Version: - Microsoft) Update for Microsoft Outlook 2013 (KB2880470) 32-Bit Edition (HKLM-x32\...\{90150000-001A-0407-0000-0000000FF1CE}_Office15.PROPLUSR_{1BCA67A6-5329-48D0-A088-C097AC7A14BD}) (Version: - Microsoft) Update for Microsoft Outlook 2013 (KB2880470) 32-Bit Edition (HKLM-x32\...\{91150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUSR_{1BCA67A6-5329-48D0-A088-C097AC7A14BD}) (Version: - Microsoft) Update for Microsoft PowerPoint 2013 (KB2881075) 32-Bit Edition (HKLM-x32\...\{90150000-0018-0407-0000-0000000FF1CE}_Office15.PROPLUSR_{15033648-0DAB-4BE8-B84B-D1139BD0563F}) (Version: - Microsoft) Update for Microsoft PowerPoint 2013 (KB2881075) 32-Bit Edition (HKLM-x32\...\{91150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUSR_{15033648-0DAB-4BE8-B84B-D1139BD0563F}) (Version: - Microsoft) Update for Microsoft Publisher 2013 (KB2880999) 32-Bit Edition (HKLM-x32\...\{90150000-0019-0407-0000-0000000FF1CE}_Office15.PROPLUSR_{7500AD77-83C6-400B-8B2F-F8E401A7B697}) (Version: - Microsoft) Update for Microsoft Publisher 2013 (KB2880999) 32-Bit Edition (HKLM-x32\...\{91150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUSR_{7500AD77-83C6-400B-8B2F-F8E401A7B697}) (Version: - Microsoft) Update for Microsoft Visio Viewer 2013 (KB2817301) 32-Bit Edition (HKLM-x32\...\{90150000-006E-0407-0000-0000000FF1CE}_Office15.PROPLUSR_{25C61889-2E44-4BE1-9E96-9364BFDCF501}) (Version: - Microsoft) Update for Microsoft Visio Viewer 2013 (KB2817301) 32-Bit Edition (HKLM-x32\...\{91150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUSR_{25C61889-2E44-4BE1-9E96-9364BFDCF501}) (Version: - Microsoft) Update for Microsoft Word 2013 (KB2878319) 32-Bit Edition (HKLM-x32\...\{91150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUSR_{A7CD05CC-CA85-428C-91FD-74A908D126E1}) (Version: - Microsoft) Update for Microsoft Word 2013 (KB2881080) 32-Bit Edition (HKLM-x32\...\{90150000-001A-0407-0000-0000000FF1CE}_Office15.PROPLUSR_{2C43B8B8-09A1-4D09-B4B9-B247A7348D75}) (Version: - Microsoft) Update for Microsoft Word 2013 (KB2881080) 32-Bit Edition (HKLM-x32\...\{90150000-001B-0407-0000-0000000FF1CE}_Office15.PROPLUSR_{2C43B8B8-09A1-4D09-B4B9-B247A7348D75}) (Version: - Microsoft) Update for Microsoft Word 2013 (KB2881080) 32-Bit Edition (HKLM-x32\...\{90150000-012B-0407-0000-0000000FF1CE}_Office15.PROPLUSR_{2C43B8B8-09A1-4D09-B4B9-B247A7348D75}) (Version: - Microsoft) Update for Microsoft Word 2013 (KB2881080) 32-Bit Edition (HKLM-x32\...\{91150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUSR_{2C43B8B8-09A1-4D09-B4B9-B247A7348D75}) (Version: - Microsoft) Update Installer for WildTangent Games App (x32 Version: - WildTangent) Hidden Virtual Villagers 4 - The Tree of Life (x32 Version: 2.2.0.98 - WildTangent) Hidden VLC media player 2.0.6 (HKLM\...\VLC media player) (Version: 2.0.6 - VideoLAN) Wajam (HKLM-x32\...\Wajam) (Version: 2.11 (i2.4) - Wajam) <==== ATTENTION WebReg (x32 Version: 140.0.297.017 - Hewlett-Packard) Hidden Welcome App (Start-up experience) (x32 Version: 12.0.13000 - Nero AG) Hidden WildTangent Games (HKLM-x32\...\WildTangent toshiba Master Uninstall) (Version: 1.0.3.0 - WildTangent) WildTangent Games App (Toshiba Games) (x32 Version: 4.0.10.16 - WildTangent) Hidden William Hill Poker (HKCU\...\William Hill Poker) (Version: - ) Winamax Poker (HKLM-x32\...\wameu.04351C371E530C3762CBA45FA283ED972DCDEFB6.1) (Version: 3.0.0.1406627515 - Winamax) Winamax Poker (x32 Version: 3.0.0 - Winamax) Hidden Windows Live Communications Platform (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3508.0205 - Microsoft Corporation) Windows Live Essentials (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Windows Live Installer (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Windows Live Photo Common (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Windows Live PIMT Platform (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Windows Live SOXE (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Windows Live SOXE Definitions (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Windows Live UX Platform (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden Windows Live UX Platform Language Pack (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden WindowsProtectManger20.0.0.401 (HKLM-x32\...\WindowsProtectManger) (Version: 20.0.0.401 - Fuyu LIMITED) <==== ATTENTION WinHugs (HKLM-x32\...\WinHugs) (Version: - The Hugs Team) Winner Poker (HKCU\...\winnerpoker) (Version: - ) WinRAR 5.10 (64-Bit) (HKLM\...\WinRAR archiver) (Version: 5.10.0 - win.rar GmbH) WinZipper (HKLM-x32\...\WinZipper) (Version: 1.5.29 - Taiwan Shui Mu Chih Ching Technology Limited.) <==== ATTENTION WSOP.com (HKLM-x32\...\WSOP.com) (Version: - ) ==================== Custom CLSID (selected items): ========================== (If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.) CustomCLSID: HKU\S-1-5-21-376805668-1328626857-418462850-1001_Classes\CLSID\{00000001-0E3A-4123-8B32-4B68A91E104A}\InprocServer32 -> C:\Program Files\TOSHIBA\TOSHIBA Places Icon Utility\TosDIBasePlace.dll (Toshiba Corporation) CustomCLSID: HKU\S-1-5-21-376805668-1328626857-418462850-1001_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\Yannick\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-376805668-1328626857-418462850-1001_Classes\CLSID\{355EC88A-02E2-4547-9DEE-F87426484BD1}\InprocServer32 -> C:\Users\Yannick\AppData\Local\Google\Update\1.3.23.9\psuser_64.dll No File CustomCLSID: HKU\S-1-5-21-376805668-1328626857-418462850-1001_Classes\CLSID\{90B3DFBF-AF6A-4EA0-8899-F332194690F8}\InprocServer32 -> C:\Users\Yannick\AppData\Local\Google\Update\1.3.24.15\psuser_64.dll (Google Inc.) CustomCLSID: HKU\S-1-5-21-376805668-1328626857-418462850-1001_Classes\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}\InprocServer32 -> C:\Users\Yannick\AppData\Local\Microsoft\SkyDrive\17.0.2015.0811\amd64\SkyDriveShell64.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-376805668-1328626857-418462850-1001_Classes\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524}\InprocServer32 -> C:\Users\Yannick\AppData\Local\Microsoft\SkyDrive\17.0.2015.0811\amd64\SkyDriveShell64.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-376805668-1328626857-418462850-1001_Classes\CLSID\{CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B}\InprocServer32 -> C:\Users\Yannick\AppData\Local\Microsoft\SkyDrive\17.0.2015.0811\amd64\SkyDriveShell64.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-376805668-1328626857-418462850-1001_Classes\CLSID\{E8CF3E55-F919-49D9-ABC0-948E6CB34B9F}\InprocServer32 -> C:\Users\Yannick\AppData\Local\Google\Update\1.3.24.15\psuser_64.dll (Google Inc.) CustomCLSID: HKU\S-1-5-21-376805668-1328626857-418462850-1001_Classes\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A}\InprocServer32 -> C:\Users\Yannick\AppData\Local\Microsoft\SkyDrive\17.0.2015.0811\amd64\SkyDriveShell64.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-376805668-1328626857-418462850-1001_Classes\CLSID\{F8071786-1FD0-4A66-81A1-3CBE29274458}\InprocServer32 -> C:\Users\Yannick\AppData\Local\Microsoft\SkyDrive\17.0.2015.0811\amd64\FileSyncApi64.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-376805668-1328626857-418462850-1001_Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Yannick\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-376805668-1328626857-418462850-1001_Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Yannick\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-376805668-1328626857-418462850-1001_Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Yannick\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-376805668-1328626857-418462850-1001_Classes\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Yannick\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-376805668-1328626857-418462850-1001_Classes\CLSID\{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Yannick\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-376805668-1328626857-418462850-1001_Classes\CLSID\{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Yannick\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-376805668-1328626857-418462850-1001_Classes\CLSID\{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Yannick\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-376805668-1328626857-418462850-1001_Classes\CLSID\{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Yannick\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-376805668-1328626857-418462850-1001_Classes\CLSID\{FE498BAB-CB4C-4F88-AC3F-3641AAAF5E9E}\InprocServer32 -> C:\Users\Yannick\AppData\Local\Google\Update\1.3.24.7\psuser_64.dll No File ==================== Restore Points ========================= 21-07-2014 12:49:05 Geplanter Prüfpunkt 28-07-2014 21:07:14 Geplanter Prüfpunkt 01-08-2014 11:08:56 avast! antivirus system restore point ==================== Hosts content: ========================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2012-07-26 07:26 - 2012-07-26 07:26 - 00000824 ____A C:\windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= (If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.) Task: {0CD45EEE-BA60-402C-83D0-7AE300826A81} - System32\Tasks\Toshiba\CommonNotifier => C:\Program Files (x86)\Toshiba TEMPRO\Toshiba.Tempro.UI.CommonNotifier.exe [2012-08-14] (Toshiba Europe GmbH) Task: {1AAFF332-5C62-4558-9991-DAA649C4C9C5} - System32\Tasks\Microsoft\Windows\Sysmain\WsSwapAssessmentTask => Rundll32.exe sysmain.dll,PfSvWsSwapAssessmentTask Task: {1B27746E-B8F8-42DF-B321-367F9BE2548E} - System32\Tasks\globalUpdateUpdateTaskMachineUA => C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe [2014-06-15] (globalUpdate) Task: {23A5D8BE-9196-40EB-BD89-794398B2B073} - System32\Tasks\Microsoft\Windows\WS\WSRefreshBannedAppsListTask => Rundll32.exe WSClient.dll,RefreshBannedAppsList Task: {26455FC6-914C-453F-97CE-6EA9244514FD} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe Task: {2C933420-8C2F-43EA-BA8A-A7953CE6F582} - System32\Tasks\globalUpdateUpdateTaskMachineCore => C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe [2014-06-15] (globalUpdate) Task: {3331EB7C-07C8-420B-82C6-747CDD6CCE64} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-05-23] (Google Inc.) Task: {3A22F13C-5681-4DB0-B886-48AEBE2D8675} - System32\Tasks\9c740d85-ee48-473b-afe5-1051b6d663b4-5 => C:\Program Files (x86)\Torntv V9.0\9c740d85-ee48-473b-afe5-1051b6d663b4-5.exe [2014-06-15] (installdaddy) <==== ATTENTION Task: {4E505F0E-8F45-4F69-911D-6DEF5A04C5E9} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office\Office15\msoia.exe [2014-01-22] (Microsoft Corporation) Task: {64C6CCF9-D7D8-4338-82AA-7EBF9AE201AF} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\windows\system32\MRT.exe [2014-07-10] (Microsoft Corporation) Task: {682B1061-C3C0-4F12-BCA7-D4BEFD162D7B} - System32\Tasks\Adobe Flash Player Updater => C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-07-09] (Adobe Systems Incorporated) Task: {6B57DA8D-6A94-48C2-9C74-ACE30F33DA2F} - System32\Tasks\ReimageUpdater => C:\Program Files\Reimage\Reimage Protector\ReiGuard.exe [2014-07-28] (Reimage®) Task: {6ECC03EF-DDFE-465B-BE13-B29CDEA4BFEE} - System32\Tasks\Microsoft\Windows\Setup\Pre-staged GDR Notification => C:\windows\system32\NotificationUI.exe [2014-04-19] (Microsoft Corporation) Task: {921131AB-AE09-4FD1-B994-BA26254F8CE3} - System32\Tasks\9c740d85-ee48-473b-afe5-1051b6d663b4-4 => C:\Program Files (x86)\Torntv V9.0\9c740d85-ee48-473b-afe5-1051b6d663b4-4.exe [2014-06-15] (installdaddy) <==== ATTENTION Task: {92D6FFAF-2F15-44FD-A805-B3E3C87568AE} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-05-23] (Google Inc.) Task: {944E580A-4239-468D-BB60-0B59C50A137C} - System32\Tasks\9c740d85-ee48-473b-afe5-1051b6d663b4-6 => C:\Program Files (x86)\Torntv V9.0\Torntv V9.0-novainstaller.exe [2014-06-15] (installdaddy) <==== ATTENTION Task: {A0BD39E7-D65B-467F-8BA1-7A32ACB70A57} - System32\Tasks\pricemeterdownloader => C:\Users\Yannick\AppData\Local\PriceMeter\pricemeterd.exe [2014-06-15] (PriceMeter) Task: {A19FEFA7-10E1-4AC3-B9AB-4EA0E3B472D1} - System32\Tasks\9c740d85-ee48-473b-afe5-1051b6d663b4-1 => C:\Program Files (x86)\Torntv V9.0\Torntv V9.0-codedownloader.exe [2014-06-15] (installdaddy) <==== ATTENTION Task: {A6B3A21E-762D-45C2-AC73-98281FC3EE65} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2014-06-19] (Microsoft Corporation) Task: {A72208BF-7A49-4FB8-B684-252375F3443A} - System32\Tasks\Microsoft\Windows\WS\License Validation => Rundll32.exe WSClient.dll,WSpTLR licensing Task: {AA81C428-7203-4258-963B-23C6A57EFFEB} - System32\Tasks\Desk 365 RunAsStdUser => C:\Program Files (x86)\Desk 365\desk365.exe <==== ATTENTION Task: {B1188E22-8050-4167-917F-CA2A4C8C4ECD} - System32\Tasks\Synaptics TouchPad Enhancements => \Program Files\Synaptics\SynTP\SynTPEnh.exe Task: {B4333283-8D91-4D83-90AD-0E33EEB71F93} - System32\Tasks\pricemetertask => C:\Users\Yannick\AppData\Local\PriceMeter\TEMP\pricemeter.exe Task: {BF9857B1-EA22-4130-9C76-FEF1743DCC97} - System32\Tasks\TOSHIBA\Service Station => C:\Program Files\TOSHIBA\Toshiba Service Station\ToshibaServiceStation.exe [2012-07-28] (TOSHIBA Corporation) Task: {C6A88F2D-53D2-4805-9D69-443738A1847C} - System32\Tasks\Microsoft\Windows\ApplicationData\CleanupTemporaryState => Rundll32.exe Windows.Storage.ApplicationData.dll,CleanupTemporaryState Task: {CACECDE4-5626-4B19-AA33-88635216ED39} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesCommonx86\Microsoft Shared\OFFICE15\OLicenseHeartbeat.exe [2014-06-10] (Microsoft Corporation) Task: {D1F493D9-155C-45D5-8987-FA5EB41C0DE1} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office\Office15\msoia.exe [2014-01-22] (Microsoft Corporation) Task: {DAAC44F8-BE1D-4F92-85B9-08EC392EBD52} - System32\Tasks\9c740d85-ee48-473b-afe5-1051b6d663b4-11 => C:\Program Files (x86)\Torntv V9.0\9c740d85-ee48-473b-afe5-1051b6d663b4-11.exe [2014-06-15] (installdaddy) <==== ATTENTION Task: {DD71EEAE-D2C2-4F78-9122-FD690AC1F8FF} - System32\Tasks\Reimage Reminder => C:\Program Files\Reimage\Reimage Repair\ReimageReminder.exe [2014-04-27] (Reimage ltd.) Task: {E3636E30-B74F-4D63-A309-D44A7B4BE9B4} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2014-08-01] (AVAST Software) Task: {EBF06DEC-4228-4813-AC0C-62821AE4E330} - System32\Tasks\Microsoft\Windows\Application Experience\StartupAppTask => Rundll32.exe Startupscan.dll,SusRunTask Task: C:\windows\Tasks\9c740d85-ee48-473b-afe5-1051b6d663b4-1.job => C:\Program Files (x86)\Torntv V9.0\Torntv V9.0-codedownloader.exe <==== ATTENTION Task: C:\windows\Tasks\9c740d85-ee48-473b-afe5-1051b6d663b4-11.job => C:\Program Files (x86)\Torntv V9.0\9c740d85-ee48-473b-afe5-1051b6d663b4-11.exe <==== ATTENTION Task: C:\windows\Tasks\9c740d85-ee48-473b-afe5-1051b6d663b4-4.job => C:\Program Files (x86)\Torntv V9.0\9c740d85-ee48-473b-afe5-1051b6d663b4-4.exe <==== ATTENTION Task: C:\windows\Tasks\9c740d85-ee48-473b-afe5-1051b6d663b4-5.job => C:\Program Files (x86)\Torntv V9.0\9c740d85-ee48-473b-afe5-1051b6d663b4-5.exe <==== ATTENTION Task: C:\windows\Tasks\9c740d85-ee48-473b-afe5-1051b6d663b4-6.job => C:\Program Files (x86)\Torntv V9.0\Torntv V9.0-novainstaller.exe <==== ATTENTION Task: C:\windows\Tasks\Adobe Flash Player Updater.job => C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\windows\Tasks\Driver Robot.job => ? Task: C:\windows\Tasks\globalUpdateUpdateTaskMachineCore.job => C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe <==== ATTENTION Task: C:\windows\Tasks\globalUpdateUpdateTaskMachineUA.job => C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe <==== ATTENTION Task: C:\windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-376805668-1328626857-418462850-1001Core1cf8a2ac7dfdc71.job => C:\Users\Yannick\AppData\Local\Google\Update\GoogleUpdate.exe ==================== Loaded Modules (whitelisted) ============= 2011-10-14 00:38 - 2011-10-14 00:38 - 00156672 _____ () C:\Program Files (x86)\TOSHIBA\Password Utility\GFNEXSrv.exe 2014-03-20 21:41 - 2014-05-20 09:19 - 00105640 _____ () C:\Program Files\Microsoft Office 15\ClientX64\ApiClient.dll 2013-06-05 23:39 - 2013-06-05 23:40 - 00176048 _____ () C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.0.1119.516_x64__8wekyb3d8bbwe\ModernShared\ErrorReporting\ErrorReporting.dll 2012-07-19 04:38 - 2012-07-19 04:38 - 00020904 _____ () C:\Program Files\TOSHIBA\Hotkey\SmoothView.dll 2012-07-19 04:38 - 2012-07-19 04:38 - 00049064 _____ () C:\Program Files\TOSHIBA\Hotkey\Hotkey\FnZ.dll 2012-08-14 05:13 - 2012-08-14 05:13 - 00018344 _____ () C:\Program Files\TOSHIBA\Teco\TecoMUI.dll 2014-06-15 00:08 - 2014-06-15 00:08 - 00661984 _____ () C:\Users\Yannick\AppData\Roaming\InetStat\inetstat.exe 2014-03-14 16:06 - 2014-03-14 16:06 - 00012288 _____ () C:\Program Files (x86)\MyPC Backup\GetText.dll 2014-03-14 16:00 - 2014-03-14 16:00 - 01102336 _____ () C:\Program Files (x86)\MyPC Backup\x64\System.Data.SQLite.dll 2012-07-25 22:44 - 2012-07-25 22:35 - 00129024 _____ () C:\windows\system32\WinMetadata\Windows.UI.winmd 2012-07-25 22:44 - 2012-07-25 22:35 - 00036864 _____ () C:\windows\system32\WinMetadata\Windows.Data.winmd 2014-07-13 14:35 - 2014-07-13 14:35 - 00295936 _____ () C:\windows\assembly\NativeImages_v4.0.30319_64\Windows.Foundation\674a093211b1f8a3e570f640741e3b98\Windows.Foundation.ni.dll 2013-11-27 16:12 - 2013-11-27 16:12 - 00093216 _____ () C:\Users\Yannick\AppData\Local\Smartbar\Application\SmartbarInternetExplorerExtension.dll 2013-11-27 16:12 - 2013-11-27 16:12 - 00137760 _____ () C:\Users\Yannick\AppData\Local\Smartbar\Application\SmartbarInternetExplorerBHO.dll 2014-06-15 00:32 - 2014-06-15 00:32 - 00449920 _____ () C:\program files (x86)\torntv v9.0\Torntv V9.0-buttonutil64.dll 2012-08-08 20:22 - 2012-08-08 20:22 - 00369664 _____ () C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLI.Aspect.CrossDisplay.Graphics.Dashboard.dll 2014-03-16 12:41 - 2014-03-12 13:40 - 01380192 _____ () C:\Program Files (x86)\Opera\20.0.1387.77\opera_crashreporter.exe 2014-08-01 13:10 - 2014-08-01 13:10 - 00301152 _____ () C:\Program Files\AVAST Software\Avast\aswProperty.dll 2014-08-02 22:00 - 2014-08-02 22:00 - 02795008 _____ () C:\Program Files\AVAST Software\Avast\defs\14080202\algo.dll 2014-02-26 18:51 - 2014-02-26 18:51 - 00612496 _____ () C:\Program Files (x86)\WinZipper\sqlite3.dll 2013-05-23 21:22 - 2013-04-02 07:20 - 00172032 _____ () c:\postgreSQL\bin\LIBPQ.dll 2013-05-23 21:23 - 2012-08-14 15:19 - 00999424 _____ () c:\postgreSQL\bin\libxml2.dll 2013-11-27 16:13 - 2013-11-27 16:13 - 00034848 _____ () C:\Users\Yannick\AppData\Local\Smartbar\Application\Smartbar.Infrastructure.Core.dll 2013-11-27 16:13 - 2013-11-27 16:13 - 00063008 _____ () C:\Users\Yannick\AppData\Local\Smartbar\Application\srau.dll 2013-11-27 16:13 - 2013-11-27 16:13 - 00150560 _____ () C:\Users\Yannick\AppData\Local\Smartbar\Application\Smartbar.Infrastructure.Utilities.dll 2013-11-27 16:13 - 2013-11-27 16:13 - 00112672 _____ () C:\Users\Yannick\AppData\Local\Smartbar\Application\Smartbar.Resources.HistoryAndStatsWrapper.dll 2013-11-27 16:13 - 2013-11-27 16:13 - 02057760 _____ () C:\Users\Yannick\AppData\Local\Smartbar\Application\Smartbar.GUI.MainClient.dll 2013-11-27 16:13 - 2013-11-27 16:13 - 00055840 _____ () C:\Users\Yannick\AppData\Local\Smartbar\Application\spbl.dll 2013-11-27 16:13 - 2013-11-27 16:13 - 00013344 _____ () C:\Users\Yannick\AppData\Local\Smartbar\Application\siem.dll 2013-11-27 16:13 - 2013-11-27 16:13 - 00048672 _____ () C:\Users\Yannick\AppData\Local\Smartbar\Application\sppsm.dll 2013-11-27 16:13 - 2013-11-27 16:13 - 00728096 _____ () C:\Users\Yannick\AppData\Local\Smartbar\Application\Smartbar.GUI.Controls.dll 2013-11-27 16:13 - 2013-11-27 16:13 - 00081952 _____ () C:\Users\Yannick\AppData\Local\Smartbar\Application\Smartbar.GUI.Docking.dll 2013-11-27 16:13 - 2013-11-27 16:13 - 00014368 _____ () C:\Users\Yannick\AppData\Local\Smartbar\Application\Smartbar.Infrastructure.BusinessEntities.dll 2013-11-27 16:13 - 2013-11-27 16:13 - 00017440 _____ () C:\Users\Yannick\AppData\Local\Smartbar\Application\Smartbar.Personalization.Common.dll 2013-11-27 16:13 - 2013-11-27 16:13 - 00031264 _____ () C:\Users\Yannick\AppData\Local\Smartbar\Application\srut.dll 2013-11-27 16:13 - 2013-11-27 16:13 - 00020512 _____ () C:\Users\Yannick\AppData\Local\Smartbar\Application\srsbs.dll 2013-11-27 16:13 - 2013-11-27 16:13 - 00014368 _____ () C:\Users\Yannick\AppData\Local\Smartbar\Application\sgml.dll 2013-11-27 16:13 - 2013-11-27 16:13 - 00053280 _____ () C:\Users\Yannick\AppData\Local\Smartbar\Application\Smartbar.Resources.LanguageSettings.dll 2013-11-27 16:13 - 2013-11-27 16:13 - 00014368 _____ () C:\Users\Yannick\AppData\Local\Smartbar\Application\srpdm.dll 2013-11-27 16:13 - 2013-11-27 16:13 - 00048160 _____ () C:\Users\Yannick\AppData\Local\Smartbar\Application\MACTrackBarLib.dll 2013-11-27 16:13 - 2013-11-27 16:13 - 00026144 _____ () C:\Users\Yannick\AppData\Local\Smartbar\Application\de\Smartbar.Resources.LanguageSettings.resources.dll 2013-11-27 16:13 - 2013-11-27 16:13 - 00025632 _____ () C:\Users\Yannick\AppData\Local\Smartbar\Application\Smartbar.Resources.SocialNetsSharer.dll 2013-11-27 15:53 - 2013-11-27 15:53 - 00193056 _____ () C:\Users\Yannick\AppData\Local\Smartbar\Application\sgmu.dll 2013-11-27 15:52 - 2013-11-27 15:52 - 00068640 _____ () C:\Users\Yannick\AppData\Local\Smartbar\Application\AxInterop.WMPLib.dll 2013-11-27 16:13 - 2013-11-27 16:13 - 00248352 _____ () C:\Users\Yannick\AppData\Local\Smartbar\Application\srns.dll 2014-01-29 16:10 - 2014-01-29 16:10 - 00599419 _____ () C:\Program Files (x86)\Mysearchdial\BRS\sqlite3.dll 2014-08-03 00:48 - 2014-08-03 00:48 - 00043008 _____ () c:\users\yannick\appdata\local\temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmplecyfr.dll 2013-10-19 01:55 - 2013-10-19 01:55 - 25100288 _____ () C:\Users\Yannick\AppData\Roaming\Dropbox\bin\libcef.dll 2014-08-01 13:11 - 2014-08-01 13:11 - 19329904 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll 2012-11-08 23:22 - 2012-06-25 20:41 - 01198912 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\ACE.dll ==================== Alternate Data Streams (whitelisted) ========= (If an entry is included in the fixlist, only the Alternate Data Streams will be removed.) AlternateDataStreams: C:\Program Files (x86)\Galaxy Poker:MID ==================== Safe Mode (whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) ==================== EXE Association (whitelisted) ============= (If an entry is included in the fixlist, the default will be restored. None default entries will be removed.) ==================== MSCONFIG/TASK MANAGER disabled items ========= (Currently there is no automatic fix for this section.) ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (08/03/2014 01:12:39 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: iexplore.exe, Version: 10.0.9200.17028, Zeitstempel: 0x53a2084a Name des fehlerhaften Moduls: msvcrt.dll, Version: 7.0.9200.16384, Zeitstempel: 0x5010ac20 Ausnahmecode: 0xc0000005 Fehleroffset: 0x0000000000001333 ID des fehlerhaften Prozesses: 0x%9 Startzeit der fehlerhaften Anwendung: 0xiexplore.exe0 Pfad der fehlerhaften Anwendung: iexplore.exe1 Pfad des fehlerhaften Moduls: iexplore.exe2 Berichtskennung: iexplore.exe3 Vollständiger Name des fehlerhaften Pakets: iexplore.exe4 Anwendungs-ID, die relativ zum fehlerhaften Paket ist: iexplore.exe5 Error: (08/03/2014 00:47:29 AM) (Source: PostgreSQL) (EventID: 0) (User: ) Description: 2014-08-03 00:47:29 CESTFATAL: the database system is starting up Error: (08/03/2014 00:47:28 AM) (Source: PostgreSQL) (EventID: 0) (User: ) Description: 2014-08-03 00:47:28 CESTFATAL: the database system is starting up Error: (08/03/2014 00:27:46 AM) (Source: PostgreSQL) (EventID: 0) (User: ) Description: 2014-08-03 00:27:46 CESTFATAL: the database system is starting up Error: (08/02/2014 11:50:33 PM) (Source: PostgreSQL) (EventID: 0) (User: ) Description: 2014-08-02 23:50:33 CESTERROR: prepared statement "insertplayer" already exists 2014-08-02 23:50:33 CESTSTATEMENT: PREPARE INSERTPLAYER (text,smallint,integer,integer,smallint) AS Insert into players (playername,pokersite_id,cashhands,tourneyhands,optimizationstatus) values ($1,$2,$3,$4,$5) RETURNING player_id; PREPARE CSUpdate (integer,integer,smallint,smallint,smallint,integer, integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer) as Update CompiledPlayerResults set totalhands = totalhands + $6 , TotalAmountWonincents = TotalAmountWonincents + $7 , TotalRakeincents = TotalRakeincents + $8 , TotalBBsWon = TotalBBsWon + $9 , VPIPHands = VPIPHands + $10 , PFRHands = PFRHands + $11 , CouldColdCall = CouldColdCall + $12 , DidColdCall = DidColdCall + $13 , CouldThreeBet = CouldThreeBet + $14 , DidThreeBet = DidThreeBet + $15 , CouldSqueeze = CouldSqueeze + $16 , DidSqueeze = DidSqueeze + $17 , FacingTwoPreflopRaisers = FacingTwoPreflopRaisers + $18 , CalledTwoPreflopRaisers = CalledTwoPreflopRaisers + $19 , RaisedTwoPreflopRaisers = RaisedTwoPreflopRaisers + $20 , SmallBlindStealAttempted = SmallBlindStealAttempted + $21 , SmallBlindStealDefended = SmallBlindStealDefended + $22 , SmallBlindStealReraised = SmallBlindStealReraised + $23 , BigBlindStealAttempted = BigBlindStealAttempted + $24 , BigBlindStealDefended = BigBlindStealDefended + $25 , BigBlindStealReraised = BigBlindStealReraised + $26 , SawNonSmallShowdown = SawNonSmallShowdown + $27 , WonNonSmallShowdown = WonNonSmallShowdown + $28 , SawLargeShowdown = SawLargeShowdown + $29 , WonLargeShowdown = WonLargeShowdown + $30 , SawNonSmallShowdownLimpedFlop = SawNonSmallShowdownLimpedFlop + $31 , WonNonSmallShowdownLimpedFlop = WonNonSmallShowdownLimpedFlop + $32 , SawLargeShowdownLimpedFlop = SawLargeShowdownLimpedFlop + $33 , WonLargeShowdownLimpedFlop = WonLargeShowdownLimpedFlop + $34 , WonHand = WonHand + $35 , WonHandWhenSawFlop = WonHandWhenSawFlop + $36 , WonHandWhenSawTurn = WonHandWhenSawTurn + $37 , WonHandWhenSawRiver = WonHandWhenSawRiver + $38 , FacedThreeBetPreflop = FacedThreeBetPreflop + $39 , FoldedToThreeBetPreflop = FoldedToThreeBetPreflop + $40 , CalledThreeBetPreflop = CalledThreeBetPreflop + $41 , RaisedThreeBetPreflop = RaisedThreeBetPreflop + $42 , FacedFourBetPreflop = FacedFourBetPreflop + $43 , FoldedToFourBetPreflop = FoldedToFourBetPreflop + $44 , CalledFourBetPreflop = CalledFourBetPreflop + $45 , RaisedFourBetPreflop = RaisedFourBetPreflop + $46 , TurnFoldIPPassOnFlopCB = TurnFoldIPPassOnFlopCB + $47 , TurnCallIPPassOnFlopCB = TurnCallIPPassOnFlopCB + $48 , TurnRaiseIPPassOnFlopCB = TurnRaiseIPPassOnFlopCB + $49 , RiverFoldIPPassOnTurnCB = RiverFoldIPPassOnTurnCB + $50 , RiverCallIPPassOnTurnCB = RiverCallIPPassOnTurnCB + $51 , RiverRaiseIPPassOnTurnCB = RiverRaiseIPPassOnTurnCB + $52 , SawFlop = SawFlop + $53 , SawShowdown = SawShowdown + $54 , WonShowdown = WonShowdown + $55 , TotalBets = TotalBets + $56 , TotalCalls = TotalCalls + $57 , FlopContinuationBetPossible = FlopContinuationBetPossible + $58 , FlopContinuationBetMade = FlopContinuationBetMade + $59 , TurnContinuationBetPossible = TurnContinuationBetPossible + $60 , TurnContinuationBetMade = TurnContinuationBetMade + $61 , RiverContinuationBetPossible = RiverContinuationBetPossible + $62 , RiverContinuationBetMade = RiverContinuationBetMade + $63 , FacingFlopContinuationBet = FacingFlopContinuationBet + $64 , FoldedToFlopContinuationBet = FoldedToFlopContinuationBet + $65 , CalledFlopContinuationBet = CalledFlopContinuationBet + $66 , RaisedFlopContinuationBet = RaisedFlopContinuationBet + $67 , FacingTurnContinuationBet = FacingTurnContinuationBet + $68 , FoldedToTurnContinuationBet = FoldedToTurnContinuationBet + $69 , CalledTurnContinuationBet = CalledTurnContinuationBet + $70 , RaisedTurnContinuationBet = RaisedTurnContinuationBet + $71 , FacingRiverContinuationBet = FacingRiverContinuationBet + $72 , FoldedToRiverContinuationBet = FoldedToRiverContinuationBet + $73 , CalledRiverContinuationBet = CalledRiverContinuationBet + $74 , RaisedRiverContinuationBet = RaisedRiverContinuationBet + $75 , TotalPostFlopStreetsSeen = TotalPostFlopStreetsSeen + $76 , totalaggressivepostflopstreetsseen = totalaggressivepostflopstreetsseen + $77 where compiledplayerresults_id = (select compiledplayerresults_id from compiledplayerresults where player_id = $1 and playedyearandmonth = $2 and numberofplayers = $3 and gametype_id = $4 and bbgroup_id = $5 limit 1); Error: (08/02/2014 11:50:28 PM) (Source: PostgreSQL) (EventID: 0) (User: ) Description: 2014-08-02 23:50:28 CESTERROR: prepared statement "insertplayer" already exists 2014-08-02 23:50:28 CESTSTATEMENT: PREPARE INSERTPLAYER (text,smallint,integer,integer,smallint) AS Insert into players (playername,pokersite_id,cashhands,tourneyhands,optimizationstatus) values ($1,$2,$3,$4,$5) RETURNING player_id; PREPARE CSUpdate (integer,integer,smallint,smallint,smallint,integer, integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer) as Update CompiledPlayerResults set totalhands = totalhands + $6 , TotalAmountWonincents = TotalAmountWonincents + $7 , TotalRakeincents = TotalRakeincents + $8 , TotalBBsWon = TotalBBsWon + $9 , VPIPHands = VPIPHands + $10 , PFRHands = PFRHands + $11 , CouldColdCall = CouldColdCall + $12 , DidColdCall = DidColdCall + $13 , CouldThreeBet = CouldThreeBet + $14 , DidThreeBet = DidThreeBet + $15 , CouldSqueeze = CouldSqueeze + $16 , DidSqueeze = DidSqueeze + $17 , FacingTwoPreflopRaisers = FacingTwoPreflopRaisers + $18 , CalledTwoPreflopRaisers = CalledTwoPreflopRaisers + $19 , RaisedTwoPreflopRaisers = RaisedTwoPreflopRaisers + $20 , SmallBlindStealAttempted = SmallBlindStealAttempted + $21 , SmallBlindStealDefended = SmallBlindStealDefended + $22 , SmallBlindStealReraised = SmallBlindStealReraised + $23 , BigBlindStealAttempted = BigBlindStealAttempted + $24 , BigBlindStealDefended = BigBlindStealDefended + $25 , BigBlindStealReraised = BigBlindStealReraised + $26 , SawNonSmallShowdown = SawNonSmallShowdown + $27 , WonNonSmallShowdown = WonNonSmallShowdown + $28 , SawLargeShowdown = SawLargeShowdown + $29 , WonLargeShowdown = WonLargeShowdown + $30 , SawNonSmallShowdownLimpedFlop = SawNonSmallShowdownLimpedFlop + $31 , WonNonSmallShowdownLimpedFlop = WonNonSmallShowdownLimpedFlop + $32 , SawLargeShowdownLimpedFlop = SawLargeShowdownLimpedFlop + $33 , WonLargeShowdownLimpedFlop = WonLargeShowdownLimpedFlop + $34 , WonHand = WonHand + $35 , WonHandWhenSawFlop = WonHandWhenSawFlop + $36 , WonHandWhenSawTurn = WonHandWhenSawTurn + $37 , WonHandWhenSawRiver = WonHandWhenSawRiver + $38 , FacedThreeBetPreflop = FacedThreeBetPreflop + $39 , FoldedToThreeBetPreflop = FoldedToThreeBetPreflop + $40 , CalledThreeBetPreflop = CalledThreeBetPreflop + $41 , RaisedThreeBetPreflop = RaisedThreeBetPreflop + $42 , FacedFourBetPreflop = FacedFourBetPreflop + $43 , FoldedToFourBetPreflop = FoldedToFourBetPreflop + $44 , CalledFourBetPreflop = CalledFourBetPreflop + $45 , RaisedFourBetPreflop = RaisedFourBetPreflop + $46 , TurnFoldIPPassOnFlopCB = TurnFoldIPPassOnFlopCB + $47 , TurnCallIPPassOnFlopCB = TurnCallIPPassOnFlopCB + $48 , TurnRaiseIPPassOnFlopCB = TurnRaiseIPPassOnFlopCB + $49 , RiverFoldIPPassOnTurnCB = RiverFoldIPPassOnTurnCB + $50 , RiverCallIPPassOnTurnCB = RiverCallIPPassOnTurnCB + $51 , RiverRaiseIPPassOnTurnCB = RiverRaiseIPPassOnTurnCB + $52 , SawFlop = SawFlop + $53 , SawShowdown = SawShowdown + $54 , WonShowdown = WonShowdown + $55 , TotalBets = TotalBets + $56 , TotalCalls = TotalCalls + $57 , FlopContinuationBetPossible = FlopContinuationBetPossible + $58 , FlopContinuationBetMade = FlopContinuationBetMade + $59 , TurnContinuationBetPossible = TurnContinuationBetPossible + $60 , TurnContinuationBetMade = TurnContinuationBetMade + $61 , RiverContinuationBetPossible = RiverContinuationBetPossible + $62 , RiverContinuationBetMade = RiverContinuationBetMade + $63 , FacingFlopContinuationBet = FacingFlopContinuationBet + $64 , FoldedToFlopContinuationBet = FoldedToFlopContinuationBet + $65 , CalledFlopContinuationBet = CalledFlopContinuationBet + $66 , RaisedFlopContinuationBet = RaisedFlopContinuationBet + $67 , FacingTurnContinuationBet = FacingTurnContinuationBet + $68 , FoldedToTurnContinuationBet = FoldedToTurnContinuationBet + $69 , CalledTurnContinuationBet = CalledTurnContinuationBet + $70 , RaisedTurnContinuationBet = RaisedTurnContinuationBet + $71 , FacingRiverContinuationBet = FacingRiverContinuationBet + $72 , FoldedToRiverContinuationBet = FoldedToRiverContinuationBet + $73 , CalledRiverContinuationBet = CalledRiverContinuationBet + $74 , RaisedRiverContinuationBet = RaisedRiverContinuationBet + $75 , TotalPostFlopStreetsSeen = TotalPostFlopStreetsSeen + $76 , totalaggressivepostflopstreetsseen = totalaggressivepostflopstreetsseen + $77 where compiledplayerresults_id = (select compiledplayerresults_id from compiledplayerresults where player_id = $1 and playedyearandmonth = $2 and numberofplayers = $3 and gametype_id = $4 and bbgroup_id = $5 limit 1); Error: (08/02/2014 11:49:53 PM) (Source: PostgreSQL) (EventID: 0) (User: ) Description: 2014-08-02 23:49:53 CESTERROR: prepared statement "insertplayer" already exists 2014-08-02 23:49:53 CESTSTATEMENT: PREPARE INSERTPLAYER (text,smallint,integer,integer,smallint) AS Insert into players (playername,pokersite_id,cashhands,tourneyhands,optimizationstatus) values ($1,$2,$3,$4,$5) RETURNING player_id; PREPARE CSUpdate (integer,integer,smallint,smallint,smallint,integer, integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer) as Update CompiledPlayerResults set totalhands = totalhands + $6 , TotalAmountWonincents = TotalAmountWonincents + $7 , TotalRakeincents = TotalRakeincents + $8 , TotalBBsWon = TotalBBsWon + $9 , VPIPHands = VPIPHands + $10 , PFRHands = PFRHands + $11 , CouldColdCall = CouldColdCall + $12 , DidColdCall = DidColdCall + $13 , CouldThreeBet = CouldThreeBet + $14 , DidThreeBet = DidThreeBet + $15 , CouldSqueeze = CouldSqueeze + $16 , DidSqueeze = DidSqueeze + $17 , FacingTwoPreflopRaisers = FacingTwoPreflopRaisers + $18 , CalledTwoPreflopRaisers = CalledTwoPreflopRaisers + $19 , RaisedTwoPreflopRaisers = RaisedTwoPreflopRaisers + $20 , SmallBlindStealAttempted = SmallBlindStealAttempted + $21 , SmallBlindStealDefended = SmallBlindStealDefended + $22 , SmallBlindStealReraised = SmallBlindStealReraised + $23 , BigBlindStealAttempted = BigBlindStealAttempted + $24 , BigBlindStealDefended = BigBlindStealDefended + $25 , BigBlindStealReraised = BigBlindStealReraised + $26 , SawNonSmallShowdown = SawNonSmallShowdown + $27 , WonNonSmallShowdown = WonNonSmallShowdown + $28 , SawLargeShowdown = SawLargeShowdown + $29 , WonLargeShowdown = WonLargeShowdown + $30 , SawNonSmallShowdownLimpedFlop = SawNonSmallShowdownLimpedFlop + $31 , WonNonSmallShowdownLimpedFlop = WonNonSmallShowdownLimpedFlop + $32 , SawLargeShowdownLimpedFlop = SawLargeShowdownLimpedFlop + $33 , WonLargeShowdownLimpedFlop = WonLargeShowdownLimpedFlop + $34 , WonHand = WonHand + $35 , WonHandWhenSawFlop = WonHandWhenSawFlop + $36 , WonHandWhenSawTurn = WonHandWhenSawTurn + $37 , WonHandWhenSawRiver = WonHandWhenSawRiver + $38 , FacedThreeBetPreflop = FacedThreeBetPreflop + $39 , FoldedToThreeBetPreflop = FoldedToThreeBetPreflop + $40 , CalledThreeBetPreflop = CalledThreeBetPreflop + $41 , RaisedThreeBetPreflop = RaisedThreeBetPreflop + $42 , FacedFourBetPreflop = FacedFourBetPreflop + $43 , FoldedToFourBetPreflop = FoldedToFourBetPreflop + $44 , CalledFourBetPreflop = CalledFourBetPreflop + $45 , RaisedFourBetPreflop = RaisedFourBetPreflop + $46 , TurnFoldIPPassOnFlopCB = TurnFoldIPPassOnFlopCB + $47 , TurnCallIPPassOnFlopCB = TurnCallIPPassOnFlopCB + $48 , TurnRaiseIPPassOnFlopCB = TurnRaiseIPPassOnFlopCB + $49 , RiverFoldIPPassOnTurnCB = RiverFoldIPPassOnTurnCB + $50 , RiverCallIPPassOnTurnCB = RiverCallIPPassOnTurnCB + $51 , RiverRaiseIPPassOnTurnCB = RiverRaiseIPPassOnTurnCB + $52 , SawFlop = SawFlop + $53 , SawShowdown = SawShowdown + $54 , WonShowdown = WonShowdown + $55 , TotalBets = TotalBets + $56 , TotalCalls = TotalCalls + $57 , FlopContinuationBetPossible = FlopContinuationBetPossible + $58 , FlopContinuationBetMade = FlopContinuationBetMade + $59 , TurnContinuationBetPossible = TurnContinuationBetPossible + $60 , TurnContinuationBetMade = TurnContinuationBetMade + $61 , RiverContinuationBetPossible = RiverContinuationBetPossible + $62 , RiverContinuationBetMade = RiverContinuationBetMade + $63 , FacingFlopContinuationBet = FacingFlopContinuationBet + $64 , FoldedToFlopContinuationBet = FoldedToFlopContinuationBet + $65 , CalledFlopContinuationBet = CalledFlopContinuationBet + $66 , RaisedFlopContinuationBet = RaisedFlopContinuationBet + $67 , FacingTurnContinuationBet = FacingTurnContinuationBet + $68 , FoldedToTurnContinuationBet = FoldedToTurnContinuationBet + $69 , CalledTurnContinuationBet = CalledTurnContinuationBet + $70 , RaisedTurnContinuationBet = RaisedTurnContinuationBet + $71 , FacingRiverContinuationBet = FacingRiverContinuationBet + $72 , FoldedToRiverContinuationBet = FoldedToRiverContinuationBet + $73 , CalledRiverContinuationBet = CalledRiverContinuationBet + $74 , RaisedRiverContinuationBet = RaisedRiverContinuationBet + $75 , TotalPostFlopStreetsSeen = TotalPostFlopStreetsSeen + $76 , totalaggressivepostflopstreetsseen = totalaggressivepostflopstreetsseen + $77 where compiledplayerresults_id = (select compiledplayerresults_id from compiledplayerresults where player_id = $1 and playedyearandmonth = $2 and numberofplayers = $3 and gametype_id = $4 and bbgroup_id = $5 limit 1); |
03.08.2014, 14:34 | #5 |
| proxyserver blockiert Internetzugriff fast aller programme additional part 2/2: Code:
ATTFilter Error: (08/02/2014 11:49:43 PM) (Source: PostgreSQL) (EventID: 0) (User: ) Description: 2014-08-02 23:49:43 CESTERROR: prepared statement "insertplayer" already exists 2014-08-02 23:49:43 CESTSTATEMENT: PREPARE INSERTPLAYER (text,smallint,integer,integer,smallint) AS Insert into players (playername,pokersite_id,cashhands,tourneyhands,optimizationstatus) values ($1,$2,$3,$4,$5) RETURNING player_id; PREPARE CSUpdate (integer,integer,smallint,smallint,smallint,integer, integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer) as Update CompiledPlayerResults set totalhands = totalhands + $6 , TotalAmountWonincents = TotalAmountWonincents + $7 , TotalRakeincents = TotalRakeincents + $8 , TotalBBsWon = TotalBBsWon + $9 , VPIPHands = VPIPHands + $10 , PFRHands = PFRHands + $11 , CouldColdCall = CouldColdCall + $12 , DidColdCall = DidColdCall + $13 , CouldThreeBet = CouldThreeBet + $14 , DidThreeBet = DidThreeBet + $15 , CouldSqueeze = CouldSqueeze + $16 , DidSqueeze = DidSqueeze + $17 , FacingTwoPreflopRaisers = FacingTwoPreflopRaisers + $18 , CalledTwoPreflopRaisers = CalledTwoPreflopRaisers + $19 , RaisedTwoPreflopRaisers = RaisedTwoPreflopRaisers + $20 , SmallBlindStealAttempted = SmallBlindStealAttempted + $21 , SmallBlindStealDefended = SmallBlindStealDefended + $22 , SmallBlindStealReraised = SmallBlindStealReraised + $23 , BigBlindStealAttempted = BigBlindStealAttempted + $24 , BigBlindStealDefended = BigBlindStealDefended + $25 , BigBlindStealReraised = BigBlindStealReraised + $26 , SawNonSmallShowdown = SawNonSmallShowdown + $27 , WonNonSmallShowdown = WonNonSmallShowdown + $28 , SawLargeShowdown = SawLargeShowdown + $29 , WonLargeShowdown = WonLargeShowdown + $30 , SawNonSmallShowdownLimpedFlop = SawNonSmallShowdownLimpedFlop + $31 , WonNonSmallShowdownLimpedFlop = WonNonSmallShowdownLimpedFlop + $32 , SawLargeShowdownLimpedFlop = SawLargeShowdownLimpedFlop + $33 , WonLargeShowdownLimpedFlop = WonLargeShowdownLimpedFlop + $34 , WonHand = WonHand + $35 , WonHandWhenSawFlop = WonHandWhenSawFlop + $36 , WonHandWhenSawTurn = WonHandWhenSawTurn + $37 , WonHandWhenSawRiver = WonHandWhenSawRiver + $38 , FacedThreeBetPreflop = FacedThreeBetPreflop + $39 , FoldedToThreeBetPreflop = FoldedToThreeBetPreflop + $40 , CalledThreeBetPreflop = CalledThreeBetPreflop + $41 , RaisedThreeBetPreflop = RaisedThreeBetPreflop + $42 , FacedFourBetPreflop = FacedFourBetPreflop + $43 , FoldedToFourBetPreflop = FoldedToFourBetPreflop + $44 , CalledFourBetPreflop = CalledFourBetPreflop + $45 , RaisedFourBetPreflop = RaisedFourBetPreflop + $46 , TurnFoldIPPassOnFlopCB = TurnFoldIPPassOnFlopCB + $47 , TurnCallIPPassOnFlopCB = TurnCallIPPassOnFlopCB + $48 , TurnRaiseIPPassOnFlopCB = TurnRaiseIPPassOnFlopCB + $49 , RiverFoldIPPassOnTurnCB = RiverFoldIPPassOnTurnCB + $50 , RiverCallIPPassOnTurnCB = RiverCallIPPassOnTurnCB + $51 , RiverRaiseIPPassOnTurnCB = RiverRaiseIPPassOnTurnCB + $52 , SawFlop = SawFlop + $53 , SawShowdown = SawShowdown + $54 , WonShowdown = WonShowdown + $55 , TotalBets = TotalBets + $56 , TotalCalls = TotalCalls + $57 , FlopContinuationBetPossible = FlopContinuationBetPossible + $58 , FlopContinuationBetMade = FlopContinuationBetMade + $59 , TurnContinuationBetPossible = TurnContinuationBetPossible + $60 , TurnContinuationBetMade = TurnContinuationBetMade + $61 , RiverContinuationBetPossible = RiverContinuationBetPossible + $62 , RiverContinuationBetMade = RiverContinuationBetMade + $63 , FacingFlopContinuationBet = FacingFlopContinuationBet + $64 , FoldedToFlopContinuationBet = FoldedToFlopContinuationBet + $65 , CalledFlopContinuationBet = CalledFlopContinuationBet + $66 , RaisedFlopContinuationBet = RaisedFlopContinuationBet + $67 , FacingTurnContinuationBet = FacingTurnContinuationBet + $68 , FoldedToTurnContinuationBet = FoldedToTurnContinuationBet + $69 , CalledTurnContinuationBet = CalledTurnContinuationBet + $70 , RaisedTurnContinuationBet = RaisedTurnContinuationBet + $71 , FacingRiverContinuationBet = FacingRiverContinuationBet + $72 , FoldedToRiverContinuationBet = FoldedToRiverContinuationBet + $73 , CalledRiverContinuationBet = CalledRiverContinuationBet + $74 , RaisedRiverContinuationBet = RaisedRiverContinuationBet + $75 , TotalPostFlopStreetsSeen = TotalPostFlopStreetsSeen + $76 , totalaggressivepostflopstreetsseen = totalaggressivepostflopstreetsseen + $77 where compiledplayerresults_id = (select compiledplayerresults_id from compiledplayerresults where player_id = $1 and playedyearandmonth = $2 and numberofplayers = $3 and gametype_id = $4 and bbgroup_id = $5 limit 1); Error: (08/02/2014 11:49:28 PM) (Source: PostgreSQL) (EventID: 0) (User: ) Description: 2014-08-02 23:49:28 CESTERROR: prepared statement "insertplayer" already exists 2014-08-02 23:49:28 CESTSTATEMENT: PREPARE INSERTPLAYER (text,smallint,integer,integer,smallint) AS Insert into players (playername,pokersite_id,cashhands,tourneyhands,optimizationstatus) values ($1,$2,$3,$4,$5) RETURNING player_id; PREPARE CSUpdate (integer,integer,smallint,smallint,smallint,integer, integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer) as Update CompiledPlayerResults set totalhands = totalhands + $6 , TotalAmountWonincents = TotalAmountWonincents + $7 , TotalRakeincents = TotalRakeincents + $8 , TotalBBsWon = TotalBBsWon + $9 , VPIPHands = VPIPHands + $10 , PFRHands = PFRHands + $11 , CouldColdCall = CouldColdCall + $12 , DidColdCall = DidColdCall + $13 , CouldThreeBet = CouldThreeBet + $14 , DidThreeBet = DidThreeBet + $15 , CouldSqueeze = CouldSqueeze + $16 , DidSqueeze = DidSqueeze + $17 , FacingTwoPreflopRaisers = FacingTwoPreflopRaisers + $18 , CalledTwoPreflopRaisers = CalledTwoPreflopRaisers + $19 , RaisedTwoPreflopRaisers = RaisedTwoPreflopRaisers + $20 , SmallBlindStealAttempted = SmallBlindStealAttempted + $21 , SmallBlindStealDefended = SmallBlindStealDefended + $22 , SmallBlindStealReraised = SmallBlindStealReraised + $23 , BigBlindStealAttempted = BigBlindStealAttempted + $24 , BigBlindStealDefended = BigBlindStealDefended + $25 , BigBlindStealReraised = BigBlindStealReraised + $26 , SawNonSmallShowdown = SawNonSmallShowdown + $27 , WonNonSmallShowdown = WonNonSmallShowdown + $28 , SawLargeShowdown = SawLargeShowdown + $29 , WonLargeShowdown = WonLargeShowdown + $30 , SawNonSmallShowdownLimpedFlop = SawNonSmallShowdownLimpedFlop + $31 , WonNonSmallShowdownLimpedFlop = WonNonSmallShowdownLimpedFlop + $32 , SawLargeShowdownLimpedFlop = SawLargeShowdownLimpedFlop + $33 , WonLargeShowdownLimpedFlop = WonLargeShowdownLimpedFlop + $34 , WonHand = WonHand + $35 , WonHandWhenSawFlop = WonHandWhenSawFlop + $36 , WonHandWhenSawTurn = WonHandWhenSawTurn + $37 , WonHandWhenSawRiver = WonHandWhenSawRiver + $38 , FacedThreeBetPreflop = FacedThreeBetPreflop + $39 , FoldedToThreeBetPreflop = FoldedToThreeBetPreflop + $40 , CalledThreeBetPreflop = CalledThreeBetPreflop + $41 , RaisedThreeBetPreflop = RaisedThreeBetPreflop + $42 , FacedFourBetPreflop = FacedFourBetPreflop + $43 , FoldedToFourBetPreflop = FoldedToFourBetPreflop + $44 , CalledFourBetPreflop = CalledFourBetPreflop + $45 , RaisedFourBetPreflop = RaisedFourBetPreflop + $46 , TurnFoldIPPassOnFlopCB = TurnFoldIPPassOnFlopCB + $47 , TurnCallIPPassOnFlopCB = TurnCallIPPassOnFlopCB + $48 , TurnRaiseIPPassOnFlopCB = TurnRaiseIPPassOnFlopCB + $49 , RiverFoldIPPassOnTurnCB = RiverFoldIPPassOnTurnCB + $50 , RiverCallIPPassOnTurnCB = RiverCallIPPassOnTurnCB + $51 , RiverRaiseIPPassOnTurnCB = RiverRaiseIPPassOnTurnCB + $52 , SawFlop = SawFlop + $53 , SawShowdown = SawShowdown + $54 , WonShowdown = WonShowdown + $55 , TotalBets = TotalBets + $56 , TotalCalls = TotalCalls + $57 , FlopContinuationBetPossible = FlopContinuationBetPossible + $58 , FlopContinuationBetMade = FlopContinuationBetMade + $59 , TurnContinuationBetPossible = TurnContinuationBetPossible + $60 , TurnContinuationBetMade = TurnContinuationBetMade + $61 , RiverContinuationBetPossible = RiverContinuationBetPossible + $62 , RiverContinuationBetMade = RiverContinuationBetMade + $63 , FacingFlopContinuationBet = FacingFlopContinuationBet + $64 , FoldedToFlopContinuationBet = FoldedToFlopContinuationBet + $65 , CalledFlopContinuationBet = CalledFlopContinuationBet + $66 , RaisedFlopContinuationBet = RaisedFlopContinuationBet + $67 , FacingTurnContinuationBet = FacingTurnContinuationBet + $68 , FoldedToTurnContinuationBet = FoldedToTurnContinuationBet + $69 , CalledTurnContinuationBet = CalledTurnContinuationBet + $70 , RaisedTurnContinuationBet = RaisedTurnContinuationBet + $71 , FacingRiverContinuationBet = FacingRiverContinuationBet + $72 , FoldedToRiverContinuationBet = FoldedToRiverContinuationBet + $73 , CalledRiverContinuationBet = CalledRiverContinuationBet + $74 , RaisedRiverContinuationBet = RaisedRiverContinuationBet + $75 , TotalPostFlopStreetsSeen = TotalPostFlopStreetsSeen + $76 , totalaggressivepostflopstreetsseen = totalaggressivepostflopstreetsseen + $77 where compiledplayerresults_id = (select compiledplayerresults_id from compiledplayerresults where player_id = $1 and playedyearandmonth = $2 and numberofplayers = $3 and gametype_id = $4 and bbgroup_id = $5 limit 1); Error: (08/02/2014 11:49:18 PM) (Source: PostgreSQL) (EventID: 0) (User: ) Description: 2014-08-02 23:49:18 CESTERROR: prepared statement "insertplayer" already exists 2014-08-02 23:49:18 CESTSTATEMENT: PREPARE INSERTPLAYER (text,smallint,integer,integer,smallint) AS Insert into players (playername,pokersite_id,cashhands,tourneyhands,optimizationstatus) values ($1,$2,$3,$4,$5) RETURNING player_id; PREPARE CSUpdate (integer,integer,smallint,smallint,smallint,integer, integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer) as Update CompiledPlayerResults set totalhands = totalhands + $6 , TotalAmountWonincents = TotalAmountWonincents + $7 , TotalRakeincents = TotalRakeincents + $8 , TotalBBsWon = TotalBBsWon + $9 , VPIPHands = VPIPHands + $10 , PFRHands = PFRHands + $11 , CouldColdCall = CouldColdCall + $12 , DidColdCall = DidColdCall + $13 , CouldThreeBet = CouldThreeBet + $14 , DidThreeBet = DidThreeBet + $15 , CouldSqueeze = CouldSqueeze + $16 , DidSqueeze = DidSqueeze + $17 , FacingTwoPreflopRaisers = FacingTwoPreflopRaisers + $18 , CalledTwoPreflopRaisers = CalledTwoPreflopRaisers + $19 , RaisedTwoPreflopRaisers = RaisedTwoPreflopRaisers + $20 , SmallBlindStealAttempted = SmallBlindStealAttempted + $21 , SmallBlindStealDefended = SmallBlindStealDefended + $22 , SmallBlindStealReraised = SmallBlindStealReraised + $23 , BigBlindStealAttempted = BigBlindStealAttempted + $24 , BigBlindStealDefended = BigBlindStealDefended + $25 , BigBlindStealReraised = BigBlindStealReraised + $26 , SawNonSmallShowdown = SawNonSmallShowdown + $27 , WonNonSmallShowdown = WonNonSmallShowdown + $28 , SawLargeShowdown = SawLargeShowdown + $29 , WonLargeShowdown = WonLargeShowdown + $30 , SawNonSmallShowdownLimpedFlop = SawNonSmallShowdownLimpedFlop + $31 , WonNonSmallShowdownLimpedFlop = WonNonSmallShowdownLimpedFlop + $32 , SawLargeShowdownLimpedFlop = SawLargeShowdownLimpedFlop + $33 , WonLargeShowdownLimpedFlop = WonLargeShowdownLimpedFlop + $34 , WonHand = WonHand + $35 , WonHandWhenSawFlop = WonHandWhenSawFlop + $36 , WonHandWhenSawTurn = WonHandWhenSawTurn + $37 , WonHandWhenSawRiver = WonHandWhenSawRiver + $38 , FacedThreeBetPreflop = FacedThreeBetPreflop + $39 , FoldedToThreeBetPreflop = FoldedToThreeBetPreflop + $40 , CalledThreeBetPreflop = CalledThreeBetPreflop + $41 , RaisedThreeBetPreflop = RaisedThreeBetPreflop + $42 , FacedFourBetPreflop = FacedFourBetPreflop + $43 , FoldedToFourBetPreflop = FoldedToFourBetPreflop + $44 , CalledFourBetPreflop = CalledFourBetPreflop + $45 , RaisedFourBetPreflop = RaisedFourBetPreflop + $46 , TurnFoldIPPassOnFlopCB = TurnFoldIPPassOnFlopCB + $47 , TurnCallIPPassOnFlopCB = TurnCallIPPassOnFlopCB + $48 , TurnRaiseIPPassOnFlopCB = TurnRaiseIPPassOnFlopCB + $49 , RiverFoldIPPassOnTurnCB = RiverFoldIPPassOnTurnCB + $50 , RiverCallIPPassOnTurnCB = RiverCallIPPassOnTurnCB + $51 , RiverRaiseIPPassOnTurnCB = RiverRaiseIPPassOnTurnCB + $52 , SawFlop = SawFlop + $53 , SawShowdown = SawShowdown + $54 , WonShowdown = WonShowdown + $55 , TotalBets = TotalBets + $56 , TotalCalls = TotalCalls + $57 , FlopContinuationBetPossible = FlopContinuationBetPossible + $58 , FlopContinuationBetMade = FlopContinuationBetMade + $59 , TurnContinuationBetPossible = TurnContinuationBetPossible + $60 , TurnContinuationBetMade = TurnContinuationBetMade + $61 , RiverContinuationBetPossible = RiverContinuationBetPossible + $62 , RiverContinuationBetMade = RiverContinuationBetMade + $63 , FacingFlopContinuationBet = FacingFlopContinuationBet + $64 , FoldedToFlopContinuationBet = FoldedToFlopContinuationBet + $65 , CalledFlopContinuationBet = CalledFlopContinuationBet + $66 , RaisedFlopContinuationBet = RaisedFlopContinuationBet + $67 , FacingTurnContinuationBet = FacingTurnContinuationBet + $68 , FoldedToTurnContinuationBet = FoldedToTurnContinuationBet + $69 , CalledTurnContinuationBet = CalledTurnContinuationBet + $70 , RaisedTurnContinuationBet = RaisedTurnContinuationBet + $71 , FacingRiverContinuationBet = FacingRiverContinuationBet + $72 , FoldedToRiverContinuationBet = FoldedToRiverContinuationBet + $73 , CalledRiverContinuationBet = CalledRiverContinuationBet + $74 , RaisedRiverContinuationBet = RaisedRiverContinuationBet + $75 , TotalPostFlopStreetsSeen = TotalPostFlopStreetsSeen + $76 , totalaggressivepostflopstreetsseen = totalaggressivepostflopstreetsseen + $77 where compiledplayerresults_id = (select compiledplayerresults_id from compiledplayerresults where player_id = $1 and playedyearandmonth = $2 and numberofplayers = $3 and gametype_id = $4 and bbgroup_id = $5 limit 1); System errors: ============= Error: (08/03/2014 00:47:18 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "Computer Backup (MyPC Backup)" wurde aufgrund folgenden Fehlers nicht gestartet: %%1053 Error: (08/03/2014 00:47:18 AM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Computer Backup (MyPC Backup) erreicht. Error: (08/03/2014 00:46:00 AM) (Source: Microsoft-Windows-Kernel-General) (EventID: 6) (User: NT-AUTORITÄT) Description: 0xc000014d0 Error: (08/03/2014 00:28:43 AM) (Source: Service Control Manager) (EventID: 7022) (User: ) Description: Der Dienst "TeamViewer 9" wurde nicht richtig gestartet. Error: (08/03/2014 00:27:37 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "Computer Backup (MyPC Backup)" wurde aufgrund folgenden Fehlers nicht gestartet: %%1053 Error: (08/03/2014 00:27:37 AM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Computer Backup (MyPC Backup) erreicht. Error: (08/03/2014 00:27:14 AM) (Source: BugCheck) (EventID: 1001) (User: ) Description: 0x000000d1 (0x0000000000000028, 0x0000000000000002, 0x0000000000000000, 0xfffff88007354d7c)C:\windows\MEMORY.DMP080314-53062-01 Error: (08/03/2014 00:26:02 AM) (Source: Microsoft-Windows-Kernel-General) (EventID: 6) (User: NT-AUTORITÄT) Description: 0xc000014d0 Error: (08/03/2014 00:26:46 AM) (Source: EventLog) (EventID: 6008) (User: ) Description: Das System wurde zuvor am 03.08.2014 um 00:02:01 unerwartet heruntergefahren. Error: (08/02/2014 00:49:01 PM) (Source: Schannel) (EventID: 4108) (User: YANNICK) Description: Das vom Remoteserver erhaltene Zertifikat wurde falsch verifiziert. Fehlercode: 0x80092012. Fehler bei der SSL-Zertifikatanforderung. Die angefügten Daten enthalten das Serverzertifikat. Microsoft Office Sessions: ========================= Error: (08/03/2014 01:12:39 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: iexplore.exe10.0.9200.1702853a2084amsvcrt.dll7.0.9200.163845010ac20c00000050000000000001333 Error: (08/03/2014 00:47:29 AM) (Source: PostgreSQL) (EventID: 0) (User: ) Description: 2014-08-03 00:47:29 CESTFATAL: the database system is starting up Error: (08/03/2014 00:47:28 AM) (Source: PostgreSQL) (EventID: 0) (User: ) Description: 2014-08-03 00:47:28 CESTFATAL: the database system is starting up Error: (08/03/2014 00:27:46 AM) (Source: PostgreSQL) (EventID: 0) (User: ) Description: 2014-08-03 00:27:46 CESTFATAL: the database system is starting up Error: (08/02/2014 11:50:33 PM) (Source: PostgreSQL) (EventID: 0) (User: ) Description: 2014-08-02 23:50:33 CESTERROR: prepared statement "insertplayer" already exists 2014-08-02 23:50:33 CESTSTATEMENT: PREPARE INSERTPLAYER (text,smallint,integer,integer,smallint) AS Insert into players (playername,pokersite_id,cashhands,tourneyhands,optimizationstatus) values ($1,$2,$3,$4,$5) RETURNING player_id; PREPARE CSUpdate (integer,integer,smallint,smallint,smallint,integer, integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer) as Update CompiledPlayerResults set totalhands = totalhands + $6 , TotalAmountWonincents = TotalAmountWonincents + $7 , TotalRakeincents = TotalRakeincents + $8 , TotalBBsWon = TotalBBsWon + $9 , VPIPHands = VPIPHands + $10 , PFRHands = PFRHands + $11 , CouldColdCall = CouldColdCall + $12 , DidColdCall = DidColdCall + $13 , CouldThreeBet = CouldThreeBet + $14 , DidThreeBet = DidThreeBet + $15 , CouldSqueeze = CouldSqueeze + $16 , DidSqueeze = DidSqueeze + $17 , FacingTwoPreflopRaisers = FacingTwoPreflopRaisers + $18 , CalledTwoPreflopRaisers = CalledTwoPreflopRaisers + $19 , RaisedTwoPreflopRaisers = RaisedTwoPreflopRaisers + $20 , SmallBlindStealAttempted = SmallBlindStealAttempted + $21 , SmallBlindStealDefended = SmallBlindStealDefended + $22 , SmallBlindStealReraised = SmallBlindStealReraised + $23 , BigBlindStealAttempted = BigBlindStealAttempted + $24 , BigBlindStealDefended = BigBlindStealDefended + $25 , BigBlindStealReraised = BigBlindStealReraised + $26 , SawNonSmallShowdown = SawNonSmallShowdown + $27 , WonNonSmallShowdown = WonNonSmallShowdown + $28 , SawLargeShowdown = SawLargeShowdown + $29 , WonLargeShowdown = WonLargeShowdown + $30 , SawNonSmallShowdownLimpedFlop = SawNonSmallShowdownLimpedFlop + $31 , WonNonSmallShowdownLimpedFlop = WonNonSmallShowdownLimpedFlop + $32 , SawLargeShowdownLimpedFlop = SawLargeShowdownLimpedFlop + $33 , WonLargeShowdownLimpedFlop = WonLargeShowdownLimpedFlop + $34 , WonHand = WonHand + $35 , WonHandWhenSawFlop = WonHandWhenSawFlop + $36 , WonHandWhenSawTurn = WonHandWhenSawTurn + $37 , WonHandWhenSawRiver = WonHandWhenSawRiver + $38 , FacedThreeBetPreflop = FacedThreeBetPreflop + $39 , FoldedToThreeBetPreflop = FoldedToThreeBetPreflop + $40 , CalledThreeBetPreflop = CalledThreeBetPreflop + $41 , RaisedThreeBetPreflop = RaisedThreeBetPreflop + $42 , FacedFourBetPreflop = FacedFourBetPreflop + $43 , FoldedToFourBetPreflop = FoldedToFourBetPreflop + $44 , CalledFourBetPreflop = CalledFourBetPreflop + $45 , RaisedFourBetPreflop = RaisedFourBetPreflop + $46 , TurnFoldIPPassOnFlopCB = TurnFoldIPPassOnFlopCB + $47 , TurnCallIPPassOnFlopCB = TurnCallIPPassOnFlopCB + $48 , TurnRaiseIPPassOnFlopCB = TurnRaiseIPPassOnFlopCB + $49 , RiverFoldIPPassOnTurnCB = RiverFoldIPPassOnTurnCB + $50 , RiverCallIPPassOnTurnCB = RiverCallIPPassOnTurnCB + $51 , RiverRaiseIPPassOnTurnCB = RiverRaiseIPPassOnTurnCB + $52 , SawFlop = SawFlop + $53 , SawShowdown = SawShowdown + $54 , WonShowdown = WonShowdown + $55 , TotalBets = TotalBets + $56 , TotalCalls = TotalCalls + $57 , FlopContinuationBetPossible = FlopContinuationBetPossible + $58 , FlopContinuationBetMade = FlopContinuationBetMade + $59 , TurnContinuationBetPossible = TurnContinuationBetPossible + $60 , TurnContinuationBetMade = TurnContinuationBetMade + $61 , RiverContinuationBetPossible = RiverContinuationBetPossible + $62 , RiverContinuationBetMade = RiverContinuationBetMade + $63 , FacingFlopContinuationBet = FacingFlopContinuationBet + $64 , FoldedToFlopContinuationBet = FoldedToFlopContinuationBet + $65 , CalledFlopContinuationBet = CalledFlopContinuationBet + $66 , RaisedFlopContinuationBet = RaisedFlopContinuationBet + $67 , FacingTurnContinuationBet = FacingTurnContinuationBet + $68 , FoldedToTurnContinuationBet = FoldedToTurnContinuationBet + $69 , CalledTurnContinuationBet = CalledTurnContinuationBet + $70 , RaisedTurnContinuationBet = RaisedTurnContinuationBet + $71 , FacingRiverContinuationBet = FacingRiverContinuationBet + $72 , FoldedToRiverContinuationBet = FoldedToRiverContinuationBet + $73 , CalledRiverContinuationBet = CalledRiverContinuationBet + $74 , RaisedRiverContinuationBet = RaisedRiverContinuationBet + $75 , TotalPostFlopStreetsSeen = TotalPostFlopStreetsSeen + $76 , totalaggressivepostflopstreetsseen = totalaggressivepostflopstreetsseen + $77 where compiledplayerresults_id = (select compiledplayerresults_id from compiledplayerresults where player_id = $1 and playedyearandmonth = $2 and numberofplayers = $3 and gametype_id = $4 and bbgroup_id = $5 limit 1); Error: (08/02/2014 11:50:28 PM) (Source: PostgreSQL) (EventID: 0) (User: ) Description: 2014-08-02 23:50:28 CESTERROR: prepared statement "insertplayer" already exists 2014-08-02 23:50:28 CESTSTATEMENT: PREPARE INSERTPLAYER (text,smallint,integer,integer,smallint) AS Insert into players (playername,pokersite_id,cashhands,tourneyhands,optimizationstatus) values ($1,$2,$3,$4,$5) RETURNING player_id; PREPARE CSUpdate (integer,integer,smallint,smallint,smallint,integer, integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer) as Update CompiledPlayerResults set totalhands = totalhands + $6 , TotalAmountWonincents = TotalAmountWonincents + $7 , TotalRakeincents = TotalRakeincents + $8 , TotalBBsWon = TotalBBsWon + $9 , VPIPHands = VPIPHands + $10 , PFRHands = PFRHands + $11 , CouldColdCall = CouldColdCall + $12 , DidColdCall = DidColdCall + $13 , CouldThreeBet = CouldThreeBet + $14 , DidThreeBet = DidThreeBet + $15 , CouldSqueeze = CouldSqueeze + $16 , DidSqueeze = DidSqueeze + $17 , FacingTwoPreflopRaisers = FacingTwoPreflopRaisers + $18 , CalledTwoPreflopRaisers = CalledTwoPreflopRaisers + $19 , RaisedTwoPreflopRaisers = RaisedTwoPreflopRaisers + $20 , SmallBlindStealAttempted = SmallBlindStealAttempted + $21 , SmallBlindStealDefended = SmallBlindStealDefended + $22 , SmallBlindStealReraised = SmallBlindStealReraised + $23 , BigBlindStealAttempted = BigBlindStealAttempted + $24 , BigBlindStealDefended = BigBlindStealDefended + $25 , BigBlindStealReraised = BigBlindStealReraised + $26 , SawNonSmallShowdown = SawNonSmallShowdown + $27 , WonNonSmallShowdown = WonNonSmallShowdown + $28 , SawLargeShowdown = SawLargeShowdown + $29 , WonLargeShowdown = WonLargeShowdown + $30 , SawNonSmallShowdownLimpedFlop = SawNonSmallShowdownLimpedFlop + $31 , WonNonSmallShowdownLimpedFlop = WonNonSmallShowdownLimpedFlop + $32 , SawLargeShowdownLimpedFlop = SawLargeShowdownLimpedFlop + $33 , WonLargeShowdownLimpedFlop = WonLargeShowdownLimpedFlop + $34 , WonHand = WonHand + $35 , WonHandWhenSawFlop = WonHandWhenSawFlop + $36 , WonHandWhenSawTurn = WonHandWhenSawTurn + $37 , WonHandWhenSawRiver = WonHandWhenSawRiver + $38 , FacedThreeBetPreflop = FacedThreeBetPreflop + $39 , FoldedToThreeBetPreflop = FoldedToThreeBetPreflop + $40 , CalledThreeBetPreflop = CalledThreeBetPreflop + $41 , RaisedThreeBetPreflop = RaisedThreeBetPreflop + $42 , FacedFourBetPreflop = FacedFourBetPreflop + $43 , FoldedToFourBetPreflop = FoldedToFourBetPreflop + $44 , CalledFourBetPreflop = CalledFourBetPreflop + $45 , RaisedFourBetPreflop = RaisedFourBetPreflop + $46 , TurnFoldIPPassOnFlopCB = TurnFoldIPPassOnFlopCB + $47 , TurnCallIPPassOnFlopCB = TurnCallIPPassOnFlopCB + $48 , TurnRaiseIPPassOnFlopCB = TurnRaiseIPPassOnFlopCB + $49 , RiverFoldIPPassOnTurnCB = RiverFoldIPPassOnTurnCB + $50 , RiverCallIPPassOnTurnCB = RiverCallIPPassOnTurnCB + $51 , RiverRaiseIPPassOnTurnCB = RiverRaiseIPPassOnTurnCB + $52 , SawFlop = SawFlop + $53 , SawShowdown = SawShowdown + $54 , WonShowdown = WonShowdown + $55 , TotalBets = TotalBets + $56 , TotalCalls = TotalCalls + $57 , FlopContinuationBetPossible = FlopContinuationBetPossible + $58 , FlopContinuationBetMade = FlopContinuationBetMade + $59 , TurnContinuationBetPossible = TurnContinuationBetPossible + $60 , TurnContinuationBetMade = TurnContinuationBetMade + $61 , RiverContinuationBetPossible = RiverContinuationBetPossible + $62 , RiverContinuationBetMade = RiverContinuationBetMade + $63 , FacingFlopContinuationBet = FacingFlopContinuationBet + $64 , FoldedToFlopContinuationBet = FoldedToFlopContinuationBet + $65 , CalledFlopContinuationBet = CalledFlopContinuationBet + $66 , RaisedFlopContinuationBet = RaisedFlopContinuationBet + $67 , FacingTurnContinuationBet = FacingTurnContinuationBet + $68 , FoldedToTurnContinuationBet = FoldedToTurnContinuationBet + $69 , CalledTurnContinuationBet = CalledTurnContinuationBet + $70 , RaisedTurnContinuationBet = RaisedTurnContinuationBet + $71 , FacingRiverContinuationBet = FacingRiverContinuationBet + $72 , FoldedToRiverContinuationBet = FoldedToRiverContinuationBet + $73 , CalledRiverContinuationBet = CalledRiverContinuationBet + $74 , RaisedRiverContinuationBet = RaisedRiverContinuationBet + $75 , TotalPostFlopStreetsSeen = TotalPostFlopStreetsSeen + $76 , totalaggressivepostflopstreetsseen = totalaggressivepostflopstreetsseen + $77 where compiledplayerresults_id = (select compiledplayerresults_id from compiledplayerresults where player_id = $1 and playedyearandmonth = $2 and numberofplayers = $3 and gametype_id = $4 and bbgroup_id = $5 limit 1); Error: (08/02/2014 11:49:53 PM) (Source: PostgreSQL) (EventID: 0) (User: ) Description: 2014-08-02 23:49:53 CESTERROR: prepared statement "insertplayer" already exists 2014-08-02 23:49:53 CESTSTATEMENT: PREPARE INSERTPLAYER (text,smallint,integer,integer,smallint) AS Insert into players (playername,pokersite_id,cashhands,tourneyhands,optimizationstatus) values ($1,$2,$3,$4,$5) RETURNING player_id; PREPARE CSUpdate (integer,integer,smallint,smallint,smallint,integer, integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer) as Update CompiledPlayerResults set totalhands = totalhands + $6 , TotalAmountWonincents = TotalAmountWonincents + $7 , TotalRakeincents = TotalRakeincents + $8 , TotalBBsWon = TotalBBsWon + $9 , VPIPHands = VPIPHands + $10 , PFRHands = PFRHands + $11 , CouldColdCall = CouldColdCall + $12 , DidColdCall = DidColdCall + $13 , CouldThreeBet = CouldThreeBet + $14 , DidThreeBet = DidThreeBet + $15 , CouldSqueeze = CouldSqueeze + $16 , DidSqueeze = DidSqueeze + $17 , FacingTwoPreflopRaisers = FacingTwoPreflopRaisers + $18 , CalledTwoPreflopRaisers = CalledTwoPreflopRaisers + $19 , RaisedTwoPreflopRaisers = RaisedTwoPreflopRaisers + $20 , SmallBlindStealAttempted = SmallBlindStealAttempted + $21 , SmallBlindStealDefended = SmallBlindStealDefended + $22 , SmallBlindStealReraised = SmallBlindStealReraised + $23 , BigBlindStealAttempted = BigBlindStealAttempted + $24 , BigBlindStealDefended = BigBlindStealDefended + $25 , BigBlindStealReraised = BigBlindStealReraised + $26 , SawNonSmallShowdown = SawNonSmallShowdown + $27 , WonNonSmallShowdown = WonNonSmallShowdown + $28 , SawLargeShowdown = SawLargeShowdown + $29 , WonLargeShowdown = WonLargeShowdown + $30 , SawNonSmallShowdownLimpedFlop = SawNonSmallShowdownLimpedFlop + $31 , WonNonSmallShowdownLimpedFlop = WonNonSmallShowdownLimpedFlop + $32 , SawLargeShowdownLimpedFlop = SawLargeShowdownLimpedFlop + $33 , WonLargeShowdownLimpedFlop = WonLargeShowdownLimpedFlop + $34 , WonHand = WonHand + $35 , WonHandWhenSawFlop = WonHandWhenSawFlop + $36 , WonHandWhenSawTurn = WonHandWhenSawTurn + $37 , WonHandWhenSawRiver = WonHandWhenSawRiver + $38 , FacedThreeBetPreflop = FacedThreeBetPreflop + $39 , FoldedToThreeBetPreflop = FoldedToThreeBetPreflop + $40 , CalledThreeBetPreflop = CalledThreeBetPreflop + $41 , RaisedThreeBetPreflop = RaisedThreeBetPreflop + $42 , FacedFourBetPreflop = FacedFourBetPreflop + $43 , FoldedToFourBetPreflop = FoldedToFourBetPreflop + $44 , CalledFourBetPreflop = CalledFourBetPreflop + $45 , RaisedFourBetPreflop = RaisedFourBetPreflop + $46 , TurnFoldIPPassOnFlopCB = TurnFoldIPPassOnFlopCB + $47 , TurnCallIPPassOnFlopCB = TurnCallIPPassOnFlopCB + $48 , TurnRaiseIPPassOnFlopCB = TurnRaiseIPPassOnFlopCB + $49 , RiverFoldIPPassOnTurnCB = RiverFoldIPPassOnTurnCB + $50 , RiverCallIPPassOnTurnCB = RiverCallIPPassOnTurnCB + $51 , RiverRaiseIPPassOnTurnCB = RiverRaiseIPPassOnTurnCB + $52 , SawFlop = SawFlop + $53 , SawShowdown = SawShowdown + $54 , WonShowdown = WonShowdown + $55 , TotalBets = TotalBets + $56 , TotalCalls = TotalCalls + $57 , FlopContinuationBetPossible = FlopContinuationBetPossible + $58 , FlopContinuationBetMade = FlopContinuationBetMade + $59 , TurnContinuationBetPossible = TurnContinuationBetPossible + $60 , TurnContinuationBetMade = TurnContinuationBetMade + $61 , RiverContinuationBetPossible = RiverContinuationBetPossible + $62 , RiverContinuationBetMade = RiverContinuationBetMade + $63 , FacingFlopContinuationBet = FacingFlopContinuationBet + $64 , FoldedToFlopContinuationBet = FoldedToFlopContinuationBet + $65 , CalledFlopContinuationBet = CalledFlopContinuationBet + $66 , RaisedFlopContinuationBet = RaisedFlopContinuationBet + $67 , FacingTurnContinuationBet = FacingTurnContinuationBet + $68 , FoldedToTurnContinuationBet = FoldedToTurnContinuationBet + $69 , CalledTurnContinuationBet = CalledTurnContinuationBet + $70 , RaisedTurnContinuationBet = RaisedTurnContinuationBet + $71 , FacingRiverContinuationBet = FacingRiverContinuationBet + $72 , FoldedToRiverContinuationBet = FoldedToRiverContinuationBet + $73 , CalledRiverContinuationBet = CalledRiverContinuationBet + $74 , RaisedRiverContinuationBet = RaisedRiverContinuationBet + $75 , TotalPostFlopStreetsSeen = TotalPostFlopStreetsSeen + $76 , totalaggressivepostflopstreetsseen = totalaggressivepostflopstreetsseen + $77 where compiledplayerresults_id = (select compiledplayerresults_id from compiledplayerresults where player_id = $1 and playedyearandmonth = $2 and numberofplayers = $3 and gametype_id = $4 and bbgroup_id = $5 limit 1); Error: (08/02/2014 11:49:43 PM) (Source: PostgreSQL) (EventID: 0) (User: ) Description: 2014-08-02 23:49:43 CESTERROR: prepared statement "insertplayer" already exists 2014-08-02 23:49:43 CESTSTATEMENT: PREPARE INSERTPLAYER (text,smallint,integer,integer,smallint) AS Insert into players (playername,pokersite_id,cashhands,tourneyhands,optimizationstatus) values ($1,$2,$3,$4,$5) RETURNING player_id; PREPARE CSUpdate (integer,integer,smallint,smallint,smallint,integer, integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer) as Update CompiledPlayerResults set totalhands = totalhands + $6 , TotalAmountWonincents = TotalAmountWonincents + $7 , TotalRakeincents = TotalRakeincents + $8 , TotalBBsWon = TotalBBsWon + $9 , VPIPHands = VPIPHands + $10 , PFRHands = PFRHands + $11 , CouldColdCall = CouldColdCall + $12 , DidColdCall = DidColdCall + $13 , CouldThreeBet = CouldThreeBet + $14 , DidThreeBet = DidThreeBet + $15 , CouldSqueeze = CouldSqueeze + $16 , DidSqueeze = DidSqueeze + $17 , FacingTwoPreflopRaisers = FacingTwoPreflopRaisers + $18 , CalledTwoPreflopRaisers = CalledTwoPreflopRaisers + $19 , RaisedTwoPreflopRaisers = RaisedTwoPreflopRaisers + $20 , SmallBlindStealAttempted = SmallBlindStealAttempted + $21 , SmallBlindStealDefended = SmallBlindStealDefended + $22 , SmallBlindStealReraised = SmallBlindStealReraised + $23 , BigBlindStealAttempted = BigBlindStealAttempted + $24 , BigBlindStealDefended = BigBlindStealDefended + $25 , BigBlindStealReraised = BigBlindStealReraised + $26 , SawNonSmallShowdown = SawNonSmallShowdown + $27 , WonNonSmallShowdown = WonNonSmallShowdown + $28 , SawLargeShowdown = SawLargeShowdown + $29 , WonLargeShowdown = WonLargeShowdown + $30 , SawNonSmallShowdownLimpedFlop = SawNonSmallShowdownLimpedFlop + $31 , WonNonSmallShowdownLimpedFlop = WonNonSmallShowdownLimpedFlop + $32 , SawLargeShowdownLimpedFlop = SawLargeShowdownLimpedFlop + $33 , WonLargeShowdownLimpedFlop = WonLargeShowdownLimpedFlop + $34 , WonHand = WonHand + $35 , WonHandWhenSawFlop = WonHandWhenSawFlop + $36 , WonHandWhenSawTurn = WonHandWhenSawTurn + $37 , WonHandWhenSawRiver = WonHandWhenSawRiver + $38 , FacedThreeBetPreflop = FacedThreeBetPreflop + $39 , FoldedToThreeBetPreflop = FoldedToThreeBetPreflop + $40 , CalledThreeBetPreflop = CalledThreeBetPreflop + $41 , RaisedThreeBetPreflop = RaisedThreeBetPreflop + $42 , FacedFourBetPreflop = FacedFourBetPreflop + $43 , FoldedToFourBetPreflop = FoldedToFourBetPreflop + $44 , CalledFourBetPreflop = CalledFourBetPreflop + $45 , RaisedFourBetPreflop = RaisedFourBetPreflop + $46 , TurnFoldIPPassOnFlopCB = TurnFoldIPPassOnFlopCB + $47 , TurnCallIPPassOnFlopCB = TurnCallIPPassOnFlopCB + $48 , TurnRaiseIPPassOnFlopCB = TurnRaiseIPPassOnFlopCB + $49 , RiverFoldIPPassOnTurnCB = RiverFoldIPPassOnTurnCB + $50 , RiverCallIPPassOnTurnCB = RiverCallIPPassOnTurnCB + $51 , RiverRaiseIPPassOnTurnCB = RiverRaiseIPPassOnTurnCB + $52 , SawFlop = SawFlop + $53 , SawShowdown = SawShowdown + $54 , WonShowdown = WonShowdown + $55 , TotalBets = TotalBets + $56 , TotalCalls = TotalCalls + $57 , FlopContinuationBetPossible = FlopContinuationBetPossible + $58 , FlopContinuationBetMade = FlopContinuationBetMade + $59 , TurnContinuationBetPossible = TurnContinuationBetPossible + $60 , TurnContinuationBetMade = TurnContinuationBetMade + $61 , RiverContinuationBetPossible = RiverContinuationBetPossible + $62 , RiverContinuationBetMade = RiverContinuationBetMade + $63 , FacingFlopContinuationBet = FacingFlopContinuationBet + $64 , FoldedToFlopContinuationBet = FoldedToFlopContinuationBet + $65 , CalledFlopContinuationBet = CalledFlopContinuationBet + $66 , RaisedFlopContinuationBet = RaisedFlopContinuationBet + $67 , FacingTurnContinuationBet = FacingTurnContinuationBet + $68 , FoldedToTurnContinuationBet = FoldedToTurnContinuationBet + $69 , CalledTurnContinuationBet = CalledTurnContinuationBet + $70 , RaisedTurnContinuationBet = RaisedTurnContinuationBet + $71 , FacingRiverContinuationBet = FacingRiverContinuationBet + $72 , FoldedToRiverContinuationBet = FoldedToRiverContinuationBet + $73 , CalledRiverContinuationBet = CalledRiverContinuationBet + $74 , RaisedRiverContinuationBet = RaisedRiverContinuationBet + $75 , TotalPostFlopStreetsSeen = TotalPostFlopStreetsSeen + $76 , totalaggressivepostflopstreetsseen = totalaggressivepostflopstreetsseen + $77 where compiledplayerresults_id = (select compiledplayerresults_id from compiledplayerresults where player_id = $1 and playedyearandmonth = $2 and numberofplayers = $3 and gametype_id = $4 and bbgroup_id = $5 limit 1); Error: (08/02/2014 11:49:28 PM) (Source: PostgreSQL) (EventID: 0) (User: ) Description: 2014-08-02 23:49:28 CESTERROR: prepared statement "insertplayer" already exists 2014-08-02 23:49:28 CESTSTATEMENT: PREPARE INSERTPLAYER (text,smallint,integer,integer,smallint) AS Insert into players (playername,pokersite_id,cashhands,tourneyhands,optimizationstatus) values ($1,$2,$3,$4,$5) RETURNING player_id; PREPARE CSUpdate (integer,integer,smallint,smallint,smallint,integer, integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer) as Update CompiledPlayerResults set totalhands = totalhands + $6 , TotalAmountWonincents = TotalAmountWonincents + $7 , TotalRakeincents = TotalRakeincents + $8 , TotalBBsWon = TotalBBsWon + $9 , VPIPHands = VPIPHands + $10 , PFRHands = PFRHands + $11 , CouldColdCall = CouldColdCall + $12 , DidColdCall = DidColdCall + $13 , CouldThreeBet = CouldThreeBet + $14 , DidThreeBet = DidThreeBet + $15 , CouldSqueeze = CouldSqueeze + $16 , DidSqueeze = DidSqueeze + $17 , FacingTwoPreflopRaisers = FacingTwoPreflopRaisers + $18 , CalledTwoPreflopRaisers = CalledTwoPreflopRaisers + $19 , RaisedTwoPreflopRaisers = RaisedTwoPreflopRaisers + $20 , SmallBlindStealAttempted = SmallBlindStealAttempted + $21 , SmallBlindStealDefended = SmallBlindStealDefended + $22 , SmallBlindStealReraised = SmallBlindStealReraised + $23 , BigBlindStealAttempted = BigBlindStealAttempted + $24 , BigBlindStealDefended = BigBlindStealDefended + $25 , BigBlindStealReraised = BigBlindStealReraised + $26 , SawNonSmallShowdown = SawNonSmallShowdown + $27 , WonNonSmallShowdown = WonNonSmallShowdown + $28 , SawLargeShowdown = SawLargeShowdown + $29 , WonLargeShowdown = WonLargeShowdown + $30 , SawNonSmallShowdownLimpedFlop = SawNonSmallShowdownLimpedFlop + $31 , WonNonSmallShowdownLimpedFlop = WonNonSmallShowdownLimpedFlop + $32 , SawLargeShowdownLimpedFlop = SawLargeShowdownLimpedFlop + $33 , WonLargeShowdownLimpedFlop = WonLargeShowdownLimpedFlop + $34 , WonHand = WonHand + $35 , WonHandWhenSawFlop = WonHandWhenSawFlop + $36 , WonHandWhenSawTurn = WonHandWhenSawTurn + $37 , WonHandWhenSawRiver = WonHandWhenSawRiver + $38 , FacedThreeBetPreflop = FacedThreeBetPreflop + $39 , FoldedToThreeBetPreflop = FoldedToThreeBetPreflop + $40 , CalledThreeBetPreflop = CalledThreeBetPreflop + $41 , RaisedThreeBetPreflop = RaisedThreeBetPreflop + $42 , FacedFourBetPreflop = FacedFourBetPreflop + $43 , FoldedToFourBetPreflop = FoldedToFourBetPreflop + $44 , CalledFourBetPreflop = CalledFourBetPreflop + $45 , RaisedFourBetPreflop = RaisedFourBetPreflop + $46 , TurnFoldIPPassOnFlopCB = TurnFoldIPPassOnFlopCB + $47 , TurnCallIPPassOnFlopCB = TurnCallIPPassOnFlopCB + $48 , TurnRaiseIPPassOnFlopCB = TurnRaiseIPPassOnFlopCB + $49 , RiverFoldIPPassOnTurnCB = RiverFoldIPPassOnTurnCB + $50 , RiverCallIPPassOnTurnCB = RiverCallIPPassOnTurnCB + $51 , RiverRaiseIPPassOnTurnCB = RiverRaiseIPPassOnTurnCB + $52 , SawFlop = SawFlop + $53 , SawShowdown = SawShowdown + $54 , WonShowdown = WonShowdown + $55 , TotalBets = TotalBets + $56 , TotalCalls = TotalCalls + $57 , FlopContinuationBetPossible = FlopContinuationBetPossible + $58 , FlopContinuationBetMade = FlopContinuationBetMade + $59 , TurnContinuationBetPossible = TurnContinuationBetPossible + $60 , TurnContinuationBetMade = TurnContinuationBetMade + $61 , RiverContinuationBetPossible = RiverContinuationBetPossible + $62 , RiverContinuationBetMade = RiverContinuationBetMade + $63 , FacingFlopContinuationBet = FacingFlopContinuationBet + $64 , FoldedToFlopContinuationBet = FoldedToFlopContinuationBet + $65 , CalledFlopContinuationBet = CalledFlopContinuationBet + $66 , RaisedFlopContinuationBet = RaisedFlopContinuationBet + $67 , FacingTurnContinuationBet = FacingTurnContinuationBet + $68 , FoldedToTurnContinuationBet = FoldedToTurnContinuationBet + $69 , CalledTurnContinuationBet = CalledTurnContinuationBet + $70 , RaisedTurnContinuationBet = RaisedTurnContinuationBet + $71 , FacingRiverContinuationBet = FacingRiverContinuationBet + $72 , FoldedToRiverContinuationBet = FoldedToRiverContinuationBet + $73 , CalledRiverContinuationBet = CalledRiverContinuationBet + $74 , RaisedRiverContinuationBet = RaisedRiverContinuationBet + $75 , TotalPostFlopStreetsSeen = TotalPostFlopStreetsSeen + $76 , totalaggressivepostflopstreetsseen = totalaggressivepostflopstreetsseen + $77 where compiledplayerresults_id = (select compiledplayerresults_id from compiledplayerresults where player_id = $1 and playedyearandmonth = $2 and numberofplayers = $3 and gametype_id = $4 and bbgroup_id = $5 limit 1); Error: (08/02/2014 11:49:18 PM) (Source: PostgreSQL) (EventID: 0) (User: ) Description: 2014-08-02 23:49:18 CESTERROR: prepared statement "insertplayer" already exists 2014-08-02 23:49:18 CESTSTATEMENT: PREPARE INSERTPLAYER (text,smallint,integer,integer,smallint) AS Insert into players (playername,pokersite_id,cashhands,tourneyhands,optimizationstatus) values ($1,$2,$3,$4,$5) RETURNING player_id; PREPARE CSUpdate (integer,integer,smallint,smallint,smallint,integer, integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer,integer,integer,integer, integer,integer) as Update CompiledPlayerResults set totalhands = totalhands + $6 , TotalAmountWonincents = TotalAmountWonincents + $7 , TotalRakeincents = TotalRakeincents + $8 , TotalBBsWon = TotalBBsWon + $9 , VPIPHands = VPIPHands + $10 , PFRHands = PFRHands + $11 , CouldColdCall = CouldColdCall + $12 , DidColdCall = DidColdCall + $13 , CouldThreeBet = CouldThreeBet + $14 , DidThreeBet = DidThreeBet + $15 , CouldSqueeze = CouldSqueeze + $16 , DidSqueeze = DidSqueeze + $17 , FacingTwoPreflopRaisers = FacingTwoPreflopRaisers + $18 , CalledTwoPreflopRaisers = CalledTwoPreflopRaisers + $19 , RaisedTwoPreflopRaisers = RaisedTwoPreflopRaisers + $20 , SmallBlindStealAttempted = SmallBlindStealAttempted + $21 , SmallBlindStealDefended = SmallBlindStealDefended + $22 , SmallBlindStealReraised = SmallBlindStealReraised + $23 , BigBlindStealAttempted = BigBlindStealAttempted + $24 , BigBlindStealDefended = BigBlindStealDefended + $25 , BigBlindStealReraised = BigBlindStealReraised + $26 , SawNonSmallShowdown = SawNonSmallShowdown + $27 , WonNonSmallShowdown = WonNonSmallShowdown + $28 , SawLargeShowdown = SawLargeShowdown + $29 , WonLargeShowdown = WonLargeShowdown + $30 , SawNonSmallShowdownLimpedFlop = SawNonSmallShowdownLimpedFlop + $31 , WonNonSmallShowdownLimpedFlop = WonNonSmallShowdownLimpedFlop + $32 , SawLargeShowdownLimpedFlop = SawLargeShowdownLimpedFlop + $33 , WonLargeShowdownLimpedFlop = WonLargeShowdownLimpedFlop + $34 , WonHand = WonHand + $35 , WonHandWhenSawFlop = WonHandWhenSawFlop + $36 , WonHandWhenSawTurn = WonHandWhenSawTurn + $37 , WonHandWhenSawRiver = WonHandWhenSawRiver + $38 , FacedThreeBetPreflop = FacedThreeBetPreflop + $39 , FoldedToThreeBetPreflop = FoldedToThreeBetPreflop + $40 , CalledThreeBetPreflop = CalledThreeBetPreflop + $41 , RaisedThreeBetPreflop = RaisedThreeBetPreflop + $42 , FacedFourBetPreflop = FacedFourBetPreflop + $43 , FoldedToFourBetPreflop = FoldedToFourBetPreflop + $44 , CalledFourBetPreflop = CalledFourBetPreflop + $45 , RaisedFourBetPreflop = RaisedFourBetPreflop + $46 , TurnFoldIPPassOnFlopCB = TurnFoldIPPassOnFlopCB + $47 , TurnCallIPPassOnFlopCB = TurnCallIPPassOnFlopCB + $48 , TurnRaiseIPPassOnFlopCB = TurnRaiseIPPassOnFlopCB + $49 , RiverFoldIPPassOnTurnCB = RiverFoldIPPassOnTurnCB + $50 , RiverCallIPPassOnTurnCB = RiverCallIPPassOnTurnCB + $51 , RiverRaiseIPPassOnTurnCB = RiverRaiseIPPassOnTurnCB + $52 , SawFlop = SawFlop + $53 , SawShowdown = SawShowdown + $54 , WonShowdown = WonShowdown + $55 , TotalBets = TotalBets + $56 , TotalCalls = TotalCalls + $57 , FlopContinuationBetPossible = FlopContinuationBetPossible + $58 , FlopContinuationBetMade = FlopContinuationBetMade + $59 , TurnContinuationBetPossible = TurnContinuationBetPossible + $60 , TurnContinuationBetMade = TurnContinuationBetMade + $61 , RiverContinuationBetPossible = RiverContinuationBetPossible + $62 , RiverContinuationBetMade = RiverContinuationBetMade + $63 , FacingFlopContinuationBet = FacingFlopContinuationBet + $64 , FoldedToFlopContinuationBet = FoldedToFlopContinuationBet + $65 , CalledFlopContinuationBet = CalledFlopContinuationBet + $66 , RaisedFlopContinuationBet = RaisedFlopContinuationBet + $67 , FacingTurnContinuationBet = FacingTurnContinuationBet + $68 , FoldedToTurnContinuationBet = FoldedToTurnContinuationBet + $69 , CalledTurnContinuationBet = CalledTurnContinuationBet + $70 , RaisedTurnContinuationBet = RaisedTurnContinuationBet + $71 , FacingRiverContinuationBet = FacingRiverContinuationBet + $72 , FoldedToRiverContinuationBet = FoldedToRiverContinuationBet + $73 , CalledRiverContinuationBet = CalledRiverContinuationBet + $74 , RaisedRiverContinuationBet = RaisedRiverContinuationBet + $75 , TotalPostFlopStreetsSeen = TotalPostFlopStreetsSeen + $76 , totalaggressivepostflopstreetsseen = totalaggressivepostflopstreetsseen + $77 where compiledplayerresults_id = (select compiledplayerresults_id from compiledplayerresults where player_id = $1 and playedyearandmonth = $2 and numberofplayers = $3 and gametype_id = $4 and bbgroup_id = $5 limit 1); ==================== Memory info =========================== Percentage of memory in use: 29% Total physical RAM: 8143.21 MB Available physical RAM: 5717.2 MB Total Pagefile: 16335.22 MB Available Pagefile: 12714.93 MB Total Virtual: 8192 MB Available Virtual: 8191.84 MB ==================== Drives ================================ Drive c: (TI30992300A) (Fixed) (Total:585.64 GB) (Free:416.37 GB) NTFS Drive g: (Lexar) (Removable) (Total:14.61 GB) (Free:4.33 GB) FAT32 ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (Size: 596 GB) (Disk ID: 00000000) Partition: GPT Partition Type. ======================================================== Disk: 1 (MBR Code: Windows XP) (Size: 15 GB) (Disk ID: C3072E18) Partition 1: (Active) - (Size=15 GB) - (Type=0C) ==================== End Of Log ============================ Code:
ATTFilter GMER 2.1.19357 - hxxp://www.gmer.net Rootkit scan 2014-08-03 14:35:41 Windows 6.2.9200 x64 \Device\Harddisk0\DR0 -> \Device\00000043 TOSHIBA_MK6475GSX rev.GT001M 596,17GB Running: Gmer-19357.exe; Driver: C:\Users\Yannick\AppData\Local\Temp\awrorpob.sys ---- User code sections - GMER 2.1 ---- .text C:\windows\Explorer.EXE[764] C:\windows\system32\PSAPI.DLL!GetProcessImageFileNameA + 306 000007fd056d177a 4 bytes [6D, 05, FD, 07] .text C:\windows\Explorer.EXE[764] C:\windows\system32\PSAPI.DLL!GetProcessImageFileNameA + 314 000007fd056d1782 4 bytes [6D, 05, FD, 07] ---- Threads - GMER 2.1 ---- Thread C:\windows\system32\csrss.exe [472:480] fffff960009155e8 ---- Disk sectors - GMER 2.1 ---- Disk \Device\Harddisk0\DR0 unknown MBR code ---- EOF - GMER 2.1 ---- |
03.08.2014, 14:47 | #6 |
/// TB-Ausbilder | proxyserver blockiert Internetzugriff fast aller programme Adware & Co. deinstallieren
Deinstallier ebenfalls:
Solltest Du ein Programm nicht finden oder nicht deinstallieren können, mache bitte mit dem nächsten Schritt weiter: Downloade Dir bitte AdwCleaner auf deinen Desktop.
Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
Downloade Dir bitte Malwarebytes Anti-Malware
Starte noch einmal FRST.
|
03.08.2014, 15:04 | #7 |
| proxyserver blockiert Internetzugriff fast aller programme ich kann die jeweils ausgewählten programme leider nicht über "uninstall" deinstllieren, da dieser button nicht anwählbar ist! was nun? /E: ok, ich kann doch einige deinstallieren, aber leider nicht alle! /E: wer lesen kann ist klar im vorteil, hätte wohl mal weiterlesen sollen! Geändert von YTheSnaiL (03.08.2014 um 15:17 Uhr) Grund: neuer STand der Informationen |
03.08.2014, 15:17 | #8 |
/// TB-Ausbilder | proxyserver blockiert Internetzugriff fast aller programme Kein Ding, dann beim nächsten Schritt weitermachen. |
03.08.2014, 17:24 | #9 |
| proxyserver blockiert Internetzugriff fast aller programme habe alle schritte erledigt und werde in diesem und den folgenden 3 posts die jeweiligen logs zeigen adwarecleaner: Code:
ATTFilter # AdwCleaner v3.302 - Bericht erstellt am 03/08/2014 um 17:15:40 # Aktualisiert 30/07/2014 von Xplode # Betriebssystem : Windows 8 (64 bits) # Benutzername : Yannick - YANNICK # Gestartet von : G:\adwcleaner_3.302.exe # Option : Löschen ***** [ Dienste ] ***** [#] Dienst Gelöscht : BackupStack [#] Dienst Gelöscht : globalUpdate [#] Dienst Gelöscht : globalUpdatem Dienst Gelöscht : IePluginServices Dienst Gelöscht : Wajam Internet Enhancer Service [#] Dienst Gelöscht : WindowsProtectManger ***** [ Dateien / Ordner ] ***** Ordner Gelöscht : C:\ProgramData\IePluginService Ordner Gelöscht : C:\ProgramData\IePluginServices Ordner Gelöscht : C:\ProgramData\WPM Ordner Gelöscht : C:\ProgramData\savE on Ordner Gelöscht : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EZDownloader Ordner Gelöscht : C:\Program Files (x86)\EZDownloader Ordner Gelöscht : C:\Program Files (x86)\globalUpdate Ordner Gelöscht : C:\Program Files (x86)\MyPC Backup Ordner Gelöscht : C:\Program Files (x86)\SupTab Ordner Gelöscht : C:\Program Files (x86)\Swift Browse Ordner Gelöscht : C:\Program Files (x86)\Wajam Ordner Gelöscht : C:\Program Files (x86)\savE on Ordner Gelöscht : C:\Program Files\003 Ordner Gelöscht : C:\Program Files\Reimage Ordner Gelöscht : C:\Program Files\SupraSavings Ordner Gelöscht : C:\Users\Administrator\AppData\Local\Chromatic Browser Ordner Gelöscht : C:\Users\Administrator\AppData\Local\torch Ordner Gelöscht : C:\Users\Gast\AppData\Local\Chromatic Browser Ordner Gelöscht : C:\Users\Gast\AppData\Local\torch Ordner Gelöscht : C:\Users\postgres\AppData\Local\Chromatic Browser Ordner Gelöscht : C:\Users\postgres\AppData\Local\torch Ordner Gelöscht : C:\Users\Yannick\AppData\Local\Chromatic Browser Ordner Gelöscht : C:\Users\Yannick\AppData\Local\Conduit Ordner Gelöscht : C:\Users\Yannick\AppData\Local\globalUpdate Ordner Gelöscht : C:\Users\Yannick\AppData\Local\Smartbar Ordner Gelöscht : C:\Users\Yannick\AppData\Local\torch Ordner Gelöscht : C:\Users\Yannick\AppData\Local\Temp\mt_ffx Ordner Gelöscht : C:\Users\Yannick\AppData\Local\Temp\Smartbar Ordner Gelöscht : C:\Users\Yannick\AppData\LocalLow\Mysearchdial Ordner Gelöscht : C:\Users\Yannick\AppData\LocalLow\Smartbar Ordner Gelöscht : C:\Users\Yannick\AppData\LocalLow\Torntv V9.0 Ordner Gelöscht : C:\Users\Yannick\AppData\Roaming\InetStat Ordner Gelöscht : C:\Users\Yannick\AppData\Roaming\Mysearchdial Ordner Gelöscht : C:\Users\Yannick\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\InetStat Ordner Gelöscht : C:\Users\Yannick\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MyPC Backup Ordner Gelöscht : C:\Users\Yannick\AppData\Local\Google\Chrome\User Data\Default\Extensions\amfclgbdpgndipgoegfpkkgobahigbcl Ordner Gelöscht : C:\Users\Yannick\AppData\Local\Google\Chrome\User Data\Default\Extensions\bkomkajifikmkfnjgphkjcfeepbnojok Ordner Gelöscht : C:\Users\Yannick\AppData\Local\Google\Chrome\User Data\Default\Extensions\jgapglgghagmhogfjkdlnnmbdfddeedb Ordner Gelöscht : C:\Users\Yannick\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkcedibhemacmilmkpndpkoidlnmgngg Ordner Gelöscht : C:\Users\Yannick\AppData\Local\Google\Chrome\User Data\Default\Extensions\ogfjmhfnldnajmfaofeiaepghjenbgjo Ordner Gelöscht : C:\Users\Yannick\AppData\Local\Google\Chrome\User Data\Default\Extensions\pelmeidfhdlhlbjimpabfcbnnojbboma [!] Ordner Gelöscht : C:\Users\Yannick\AppData\Local\Google\Chrome\User Data\Default\Extensions\jgapglgghagmhogfjkdlnnmbdfddeedb Datei Gelöscht : C:\Users\Yannick\AppData\Local\mysearchdial-speeddial.crx Datei Gelöscht : C:\Users\Yannick\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MyPC Backup.lnk Datei Gelöscht : C:\Users\Yannick\AppData\Local\Google\Chrome\User Data\Default\Extensions\ep.crx Datei Gelöscht : C:\Users\Yannick\AppData\Local\Google\Chrome\User Data\Default\Extensions\newtab.crx Datei Gelöscht : C:\Users\Yannick\AppData\Local\Google\Chrome\User Data\Default\Extensions\newtabv2.crx Datei Gelöscht : C:\Users\Yannick\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.superfish.com_0.localstorage Datei Gelöscht : C:\Users\Yannick\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.superfish.com_0.localstorage-journal ***** [ Tasks ] ***** Task Gelöscht : Desk 365 RunAsStdUser Task Gelöscht : globalUpdateUpdateTaskMachineCore Task Gelöscht : globalUpdateUpdateTaskMachineUA Task Gelöscht : 9c740d85-ee48-473b-afe5-1051b6d663b4-1 Task Gelöscht : 9c740d85-ee48-473b-afe5-1051b6d663b4-11 Task Gelöscht : 9c740d85-ee48-473b-afe5-1051b6d663b4-4 Task Gelöscht : 9c740d85-ee48-473b-afe5-1051b6d663b4-5 Task Gelöscht : 9c740d85-ee48-473b-afe5-1051b6d663b4-6 ***** [ Verknüpfungen ] ***** Verknüpfung Desinfiziert : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome\Google Chrome.lnk Verknüpfung Desinfiziert : C:\Users\Yannick\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk Verknüpfung Desinfiziert : C:\Users\Yannick\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Search.lnk Verknüpfung Desinfiziert : C:\Users\Yannick\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk Verknüpfung Desinfiziert : C:\Users\Yannick\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk Verknüpfung Desinfiziert : C:\Users\Yannick\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk ***** [ Registrierungsdatenbank ] ***** Schlüssel Gelöscht : HKLM\SOFTWARE\Google\Chrome\Extensions\bopakagnckmlgajfccecajhnimjiiedh Schlüssel Gelöscht : HKLM\SOFTWARE\Google\Chrome\Extensions\ifohbjbgfchkkfhphahclmkpgejiplfo Schlüssel Gelöscht : HKLM\SOFTWARE\Google\Chrome\Extensions\jgapglgghagmhogfjkdlnnmbdfddeedb Schlüssel Gelöscht : HKLM\SOFTWARE\Google\Chrome\Extensions\mkcedibhemacmilmkpndpkoidlnmgngg Schlüssel Gelöscht : HKLM\SOFTWARE\Google\Chrome\Extensions\ogfjmhfnldnajmfaofeiaepghjenbgjo Schlüssel Gelöscht : HKCU\Software\Google\Chrome\Extensions\pflphaooapbgpeakohlggbpidpppgdff Schlüssel Gelöscht : HKLM\SOFTWARE\Google\Chrome\Extensions\pflphaooapbgpeakohlggbpidpppgdff Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Google\Chrome\Extensions\pflphaooapbgpeakohlggbpidpppgdff Schlüssel Gelöscht : HKLM\SOFTWARE\Google\Chrome\Extensions\pkndmigholgfjlniaohblojbhgjbkakn Wert Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [Browser Infrastructure Helper] Wert Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [InetStat] Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\d Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\globalUpdate.OneClickCtrl.10 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\globalUpdate.OneClickProcessLauncherMachine Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\globalUpdate.OneClickProcessLauncherMachine.1.0 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\globalUpdate.Update3WebControl.4 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoCreateAsync Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoCreateAsync.1.0 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreClass Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreClass.1 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreMachineClass Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CoreMachineClass.1 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CredentialDialogMachine Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\globalUpdateUpdate.CredentialDialogMachine.1.0 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachine Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachine.1.0 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachineFallback Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassMachineFallback.1.0 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassSvc Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\globalUpdateUpdate.OnDemandCOMClassSvc.1.0 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\globalUpdateUpdate.ProcessLauncher Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\globalUpdateUpdate.ProcessLauncher.1.0 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3COMClassService Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3COMClassService.1.0 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachine Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachine.1.0 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachineFallback Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebMachineFallback.1.0 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebSvc Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\globalUpdateUpdate.Update3WebSvc.1.0 Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\iesmartbar.bandobjectattribute Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\iesmartbar.bho Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\iesmartbar.dockingpanel Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\iesmartbar.iesmartbar Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\iesmartbar.iesmartbarbandobject Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\iesmartbar.smartbardisplaystate Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\iesmartbar.smartbarmenuform Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\SnapDo_RASAPI32 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\SnapDo_RASMANCS Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\WajamInternetEnhancer_RASAPI32 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\WajamInternetEnhancer_RASMANCS Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\mypc backup Schlüssel Gelöscht : HKLM\SOFTWARE\MozillaPlugins\@staging.google.com/globalUpdate Update;version=10 Schlüssel Gelöscht : HKLM\SOFTWARE\MozillaPlugins\@staging.google.com/globalUpdate Update;version=4 Schlüssel Gelöscht : HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\IePluginServices Schlüssel Gelöscht : HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\webcakeupdater Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{3278F5CF-48F3-4253-A6BB-004CE84AF492} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{577975B8-C40E-43E6-B0DE-4C6B44088B52} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{C007DADD-132A-624C-088E-59EE6CF0711F} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{02A96331-0CA6-40E2-A87D-C224601985EB} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{31AD400D-1B06-4E33-A59A-90C2C140CBA0} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{3278F5CF-48F3-4253-A6BB-004CE84AF492} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{3B5702BA-7F4C-4D1A-B026-1E9A01D43978} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{4AA46D49-459F-4358-B4D1-169048547C23} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{5645E0E7-FC12-43BF-A6E4-F9751942B298} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{56561B2A-FB5D-363A-9631-4C03D6054209} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{577975B8-C40E-43E6-B0DE-4C6B44088B52} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{5E89ACE9-E16B-499A-87B4-0DBF742404C1} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{69F256DF-BA98-45E9-86EA-FC3CFECF9D30} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{6E87FC94-9866-49B9-8E93-5736D6DE3DD7} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{7E49F793-B3CD-4BF7-8419-B34B8BD30E61} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{834469E3-CA2B-4F21-A5CA-4F6F4DBCDE87} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{8529FAA3-5BFD-43C1-AB35-B53C4B96C6E5} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{A717364F-69F3-3A24-ADD5-3901A57F880E} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{ADBC39BE-3D20-4333-8D99-E91EB1B62474} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{AE07101B-46D4-4A98-AF68-0333EA26E113} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{CCB08265-B35D-30B2-A6AF-6986CA957358} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{CD92622E-49B9-33B7-98D1-EC51049457D7} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{CFC47BB5-5FB5-4AD0-8427-6AA04334A3FC} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{E041E037-FA4B-364A-B440-7A1051EA0301} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{E06CA7F5-BA34-4FF6-8D24-B1BDC594D91F} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{F6421EE5-A5BE-4D31-81D5-C16B7BF48E4C} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{FD8E81D0-F5FE-4CB1-9AEA-1E163D2BAB78} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31AD400D-1B06-4E33-A59A-90C2C140CBA0} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{31AD400D-1B06-4E33-A59A-90C2C140CBA0} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AE07101B-46D4-4A98-AF68-0333EA26E113} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{31AD400D-1B06-4E33-A59A-90C2C140CBA0} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{AE07101B-46D4-4A98-AF68-0333EA26E113} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{5645E0E7-FC12-43BF-A6E4-F9751942B298} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5645E0E7-FC12-43BF-A6E4-F9751942B298} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5E89ACE9-E16B-499A-87B4-0DBF742404C1} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A} Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{006EE092-9658-4FD6-BD8E-A21A348E59F5} Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{014DB5FA-EAFB-4592-A95B-F44D3EE87FA9} Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86} Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{77AA745B-F4F8-45DA-9B14-61D2D95054C8} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{006EE092-9658-4FD6-BD8E-A21A348E59F5} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86} Wert Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{AE07101B-46D4-4A98-AF68-0333EA26E113}] Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\CLSID\{31AD400D-1B06-4E33-A59A-90C2C140CBA0} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\CLSID\{4AA46D49-459F-4358-B4D1-169048547C23} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\CLSID\{56561B2A-FB5D-363A-9631-4C03D6054209} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\CLSID\{A717364F-69F3-3A24-ADD5-3901A57F880E} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\CLSID\{AE07101B-46D4-4A98-AF68-0333EA26E113} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\CLSID\{CCB08265-B35D-30B2-A6AF-6986CA957358} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\CLSID\{CD92622E-49B9-33B7-98D1-EC51049457D7} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\CLSID\{E041E037-FA4B-364A-B440-7A1051EA0301} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{0AFD55C8-ADF8-4A33-A6E1-DEDB7A36AEB4} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{1231839B-064E-4788-B865-465A1B5266FD} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{2DAC2231-CC35-482B-97C5-CED1D4185080} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{3F1CD84C-04A3-4EA0-9EA1-7D134FD66C82} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{3F83A9CA-B5F0-44EC-9357-35BB3E84B07F} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{47E520EA-CAD2-4F51-8F30-613B3A1C33EB} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{57C91446-8D81-4156-A70E-624551442DE9} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{70AFB7B2-9FB5-4A70-905B-0E9576142E1D} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{7AD65FD1-79E0-406D-B03C-DD7C14726D69} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{97DD820D-2E20-40AD-B01E-6730B2FCE630} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{B177446D-54A4-4869-BABC-8566110B4BE0} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{D9D1DFC5-502D-43E4-B1BB-4D0B7841489A} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{DF84E609-C3A4-49CB-A160-61767DAF8899} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{E0B07188-A528-4F9E-B2F7-C7FDE8680AE4} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{F05B12E1-ADE8-4485-B45B-898748B53C37} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31AD400D-1B06-4E33-A59A-90C2C140CBA0} Wert Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{AE07101B-46D4-4A98-AF68-0333EA26E113}] Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{77AA745B-F4F8-45DA-9B14-61D2D95054C8} Daten Wiederhergestellt : HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command Schlüssel Gelöscht : HKCU\Software\GlobalUpdate Schlüssel Gelöscht : HKCU\Software\InstallCore Schlüssel Gelöscht : HKCU\Software\InstalledBrowserExtensions Schlüssel Gelöscht : HKCU\Software\RegisteredApplicationsEx Schlüssel Gelöscht : HKCU\Software\SmartBar Schlüssel Gelöscht : HKCU\Software\smartbarbackup Schlüssel Gelöscht : HKCU\Software\smartbarlog Schlüssel Gelöscht : HKCU\Software\Softonic Schlüssel Gelöscht : HKCU\Software\Swift Browse Schlüssel Gelöscht : HKCU\Software\WEDLMNGR Schlüssel Gelöscht : HKCU\Software\AppDataLow\Software\Crossrider Schlüssel Gelöscht : HKCU\Software\AppDataLow\Software\suprasavings Schlüssel Gelöscht : HKLM\Software\delta-homesSoftware Schlüssel Gelöscht : HKLM\Software\GlobalUpdate Schlüssel Gelöscht : HKLM\Software\hdcode Schlüssel Gelöscht : HKLM\Software\InstallCore Schlüssel Gelöscht : HKLM\Software\InstalledBrowserExtensions Schlüssel Gelöscht : HKLM\Software\omiga-plusSoftware Schlüssel Gelöscht : HKLM\Software\PriceMeterLiveUpdate Schlüssel Gelöscht : HKLM\Software\SupDp Schlüssel Gelöscht : HKLM\Software\supWindowsProtectManger Schlüssel Gelöscht : HKLM\Software\supWPM Schlüssel Gelöscht : HKLM\Software\sweet-pageSoftware Schlüssel Gelöscht : HKLM\Software\Swift Browse Schlüssel Gelöscht : HKLM\Software\V9 Schlüssel Gelöscht : HKLM\Software\winzipersvc Schlüssel Gelöscht : HKLM\Software\Wpm Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{0F44DC3A-6E62-4961-A14B-95323C512F9B}_is1 Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\InstalledBrowserExtensions Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\suprasavings Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\MyPC Backup Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\suprasavings Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Swift Browse Daten Gelöscht : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows [AppInit_DLLs] - C:\PROGRA~2\SupTab\SEARCH~1.DLL Daten Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows [AppInit_DLLs] - C:\PROGRA~2\SupTab\SEARCH~2.DLL ***** [ Browser ] ***** -\\ Internet Explorer v10.0.9200.17028 Einstellung Wiederhergestellt : HKCU\Software\Microsoft\Internet Explorer\Main [Search Page] Einstellung Wiederhergestellt : HKCU\Software\Microsoft\Internet Explorer\Main [Start Page] Einstellung Wiederhergestellt : HKCU\Software\Microsoft\Internet Explorer\Main [Default_Page_URL] Einstellung Wiederhergestellt : HKCU\Software\Microsoft\Internet Explorer\Main [Search Bar] Einstellung Wiederhergestellt : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL] Einstellung Wiederhergestellt : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Page_URL] Einstellung Wiederhergestellt : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page] Einstellung Wiederhergestellt : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page] Einstellung Wiederhergestellt : HKCU\Software\Microsoft\Internet Explorer\Search [Default_Search_URL] Einstellung Wiederhergestellt : HKCU\Software\Microsoft\Internet Explorer\Search [SearchAssistant] Einstellung Wiederhergestellt : HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURls [Tabs] Einstellung Wiederhergestellt : HKCU\Software\Microsoft\Internet Explorer\SearchUrl [Default] Einstellung Wiederhergestellt : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchUrl [Default] Einstellung Wiederhergestellt : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL] Einstellung Wiederhergestellt : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Page_URL] Einstellung Wiederhergestellt : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page] Einstellung Wiederhergestellt : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page] -\\ Google Chrome v36.0.1985.125 [ Datei : C:\Users\Yannick\AppData\Local\Google\Chrome\User Data\Default\preferences ] Gelöscht [Startup_urls] : hxxp://isearch.omiga-plus.com/?type=hppp&ts=1404716841&from=cor&uid=TOSHIBAXMK6475GSX_82C4F3HSSXX82C4F3HSS Gelöscht [Homepage] : hxxp://isearch.omiga-plus.com/?type=hppp&ts=1404716841&from=cor&uid=TOSHIBAXMK6475GSX_82C4F3HSSXX82C4F3HSS Gelöscht [Extension] : amfclgbdpgndipgoegfpkkgobahigbcl Gelöscht [Extension] : bkomkajifikmkfnjgphkjcfeepbnojok Gelöscht [Extension] : booedmolknjekdopkepjjeckmjkdpfgl Gelöscht [Extension] : bopakagnckmlgajfccecajhnimjiiedh Gelöscht [Extension] : flpcjncodpafbgdpnkljologafpionhb Gelöscht [Extension] : ifohbjbgfchkkfhphahclmkpgejiplfo Gelöscht [Extension] : jgapglgghagmhogfjkdlnnmbdfddeedb Gelöscht [Extension] : mkcedibhemacmilmkpndpkoidlnmgngg Gelöscht [Extension] : ogfjmhfnldnajmfaofeiaepghjenbgjo Gelöscht [Extension] : pelmeidfhdlhlbjimpabfcbnnojbboma Gelöscht [Extension] : pflphaooapbgpeakohlggbpidpppgdff Gelöscht [Extension] : pkndmigholgfjlniaohblojbhgjbkakn ************************* AdwCleaner[R0].txt - [13877 octets] - [31/08/2013 16:57:18] AdwCleaner[R1].txt - [27976 octets] - [03/08/2014 17:07:35] AdwCleaner[S0].txt - [11934 octets] - [31/08/2013 16:58:07] AdwCleaner[S1].txt - [23100 octets] - [03/08/2014 17:15:40] ########## EOF - C:\AdwCleaner\AdwCleaner[S1].txt - [23161 octets] ########## Code:
ATTFilter ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Junkware Removal Tool (JRT) by Thisisu Version: 6.1.4 (04.06.2014:1) OS: Windows 8 x64 Ran by Yannick on 03.08.2014 at 17:24:44,71 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ ~~~ Services ~~~ Registry Values ~~~ Registry Keys Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{FB684D26-01F4-4D9D-87CB-F486BEBA56DC} Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-376805668-1328626857-418462850-1001\Software\sweetim Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\wajam ~~~ Files Successfully deleted: [File] "C:\windows\Tasks\driver robot.job" ~~~ Folders ~~~ Chrome Successfully deleted: [Folder] C:\Users\Yannick\appdata\local\Google\Chrome\User Data\Default\Extensions\amfclgbdpgndipgoegfpkkgobahigbcl Successfully deleted: [Folder] C:\Users\Yannick\appdata\local\Google\Chrome\User Data\Default\Extensions\bkomkajifikmkfnjgphkjcfeepbnojok ~~~ Event Viewer Logs were cleared ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Scan was completed on 03.08.2014 at 17:39:01,12 End of JRT log ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Code:
ATTFilter Malwarebytes Anti-Malware www.malwarebytes.org Suchlauf Datum: 03.08.2014 Suchlauf-Zeit: 17:43:21 Logdatei: mbam.txt Administrator: Ja Version: 2.00.2.1012 Malware Datenbank: v2014.08.03.05 Rootkit Datenbank: v2014.08.01.01 Lizenz: Kostenlos Malware Schutz: Deaktiviert Bösartiger Webseiten Schutz: Deaktiviert Self-protection: Deaktiviert Betriebssystem: Windows 8 CPU: x64 Dateisystem: NTFS Benutzer: Yannick Suchlauf-Art: Bedrohungs-Suchlauf Ergebnis: Abgeschlossen Durchsuchte Objekte: 399968 Verstrichene Zeit: 24 Min, 19 Sek Speicher: Aktiviert Autostart: Aktiviert Dateisystem: Aktiviert Archive: Aktiviert Rootkits: Deaktiviert Heuristics: Aktiviert PUP: Aktiviert PUM: Aktiviert Prozesse: 0 (No malicious items detected) Module: 0 (No malicious items detected) Registrierungsschlüssel: 7 PUP.Optional.Snapdo.T, HKU\S-1-5-21-376805668-1328626857-418462850-1003-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{006ee092-9658-4fd6-bd8e-a21a348e59f5}, In Quarantäne, [bb76cdf50d6e3402ce21a4f92fd31be5], PUP.Optional.TornTV.A, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\APPDATALOW\SOFTWARE\Torntv V9.0, In Quarantäne, [161bf4ce2f4cae882a0e5c9aa45e19e7], PUP.Optional.TornTV.A, HKU\S-1-5-21-376805668-1328626857-418462850-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\APPDATALOW\SOFTWARE\Torntv V9.0, In Quarantäne, [c071536f750641f5ec4c9c5a1fe357a9], PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\GOOGLEUPDATE.EXE, In Quarantäne, [db56279ba4d7b87e18ef794f35cd08f8], PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\GOOGLEUPDATE.EXE, In Quarantäne, [db56279ba4d7b87e18ef794f35cd08f8], PUP.Optional.CrossRider.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{11111111-1111-1111-1111-110511131190}, In Quarantäne, [2809259d8fec61d5aae2c8fcab590000], PUP.Optional.CrossRider.A, HKLM\SOFTWARE\CLASSES\CLSID\{11111111-1111-1111-1111-110511131190}, In Quarantäne, [2809259d8fec61d5aae2c8fcab590000], Registrierungswerte: 0 (No malicious items detected) Registrierungsdaten: 6 PUP.Optional.Snapdo, HKU\S-1-5-21-376805668-1328626857-418462850-1003-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Start Page, hxxp://feed.snapdo.com/?publisher=Soft32YB&dpid=Soft32YB&co=DE&userid=1e8cce26-5520-4889-271e-338fe6006cfa&searchtype=hp&installDate=31/10/2013, Gut: (www.google.com), Schlecht: (hxxp://feed.snapdo.com/?publisher=Soft32YB&dpid=Soft32YB&co=DE&userid=1e8cce26-5520-4889-271e-338fe6006cfa&searchtype=hp&installDate=31/10/2013),Ersetzt,[66cb9d2580fbf14508fffdc13dc7f010] PUP.Optional.Snapdo, HKU\S-1-5-21-376805668-1328626857-418462850-1003-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Search Bar, hxxp://feed.snapdo.com/?publisher=Soft32YB&dpid=Soft32YB&co=DE&userid=1e8cce26-5520-4889-271e-338fe6006cfa&searchtype=ds&q={searchTerms}&installDate=31/10/2013, Gut: (www.google.com), Schlecht: (hxxp://feed.snapdo.com/?publisher=Soft32YB&dpid=Soft32YB&co=DE&userid=1e8cce26-5520-4889-271e-338fe6006cfa&searchtype=ds&q={searchTerms}&installDate=31/10/2013),Ersetzt,[1a17dae8d4a7cf670bfab40af50fbf41] PUP.Optional.Snapdo, HKU\S-1-5-21-376805668-1328626857-418462850-1003-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Search Page, hxxp://feed.snapdo.com/?publisher=Soft32YB&dpid=Soft32YB&co=DE&userid=1e8cce26-5520-4889-271e-338fe6006cfa&searchtype=ds&q={searchTerms}&installDate=31/10/2013, Gut: (www.google.com), Schlecht: (hxxp://feed.snapdo.com/?publisher=Soft32YB&dpid=Soft32YB&co=DE&userid=1e8cce26-5520-4889-271e-338fe6006cfa&searchtype=ds&q={searchTerms}&installDate=31/10/2013),Ersetzt,[3df4576be398261065a1942a17ed6d93] PUP.Optional.Snapdo, HKU\S-1-5-21-376805668-1328626857-418462850-1003-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCH|Default_Search_URL, hxxp://feed.snapdo.com/?publisher=Soft32YB&dpid=Soft32YB&co=DE&userid=1e8cce26-5520-4889-271e-338fe6006cfa&searchtype=ds&q={searchTerms}&installDate=31/10/2013, Gut: (www.google.com), Schlecht: (hxxp://feed.snapdo.com/?publisher=Soft32YB&dpid=Soft32YB&co=DE&userid=1e8cce26-5520-4889-271e-338fe6006cfa&searchtype=ds&q={searchTerms}&installDate=31/10/2013),Ersetzt,[f43db1116615a88e04045668b64e7888] PUP.Optional.Snapdo, HKU\S-1-5-21-376805668-1328626857-418462850-1003-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCH|SearchAssistant, hxxp://feed.snapdo.com/?publisher=Soft32YB&dpid=Soft32YB&co=DE&userid=1e8cce26-5520-4889-271e-338fe6006cfa&searchtype=ds&q={searchTerms}&installDate=31/10/2013, Gut: (www.google.com), Schlecht: (hxxp://feed.snapdo.com/?publisher=Soft32YB&dpid=Soft32YB&co=DE&userid=1e8cce26-5520-4889-271e-338fe6006cfa&searchtype=ds&q={searchTerms}&installDate=31/10/2013),Ersetzt,[d75adde57cff2d097f8accf24aba48b8] PUP.Optional.SnapDo.A, HKU\S-1-5-21-376805668-1328626857-418462850-1003-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHURL|Default, hxxp://feed.snapdo.com/?publisher=Soft32YB&dpid=Soft32YB&co=DE&userid=1e8cce26-5520-4889-271e-338fe6006cfa&searchtype=ds&q={searchTerms}&installDate=31/10/2013, Gut: (www.google.com), Schlecht: (hxxp://feed.snapdo.com/?publisher=Soft32YB&dpid=Soft32YB&co=DE&userid=1e8cce26-5520-4889-271e-338fe6006cfa&searchtype=ds&q={searchTerms}&installDate=31/10/2013),Ersetzt,[2a072999f784c274237ecde772920ff1] Ordner: 5 PUP.Optional.Conduit.A, C:\Users\Yannick\AppData\Local\Temp\CT3314932, In Quarantäne, [0c25ead84f2caa8c29134569ac5657a9], PUP.Optional.QuickStart.A, C:\Users\Yannick\AppData\Local\Google\Chrome\User Data\Default\Extensions\pelmeidfhdlhlbjimpabfcbnnojbboma, In Quarantäne, [d55c4979c7b472c46aaf4173ba489d63], PUP.Optional.Extutil.A, C:\Users\Yannick\AppData\Local\Temp\D7ADFCCA-EE7E-442C-9999-C4D14FEF360B, In Quarantäne, [220f8141295287af7b84cdf8857d5fa1], PUP.Optional.Managera.A, C:\Users\Yannick\AppData\Local\Temp\38fdaae5-8e0e-493c-88ec-e05c3be06e42, In Quarantäne, [d65bbc06334881b5768a0cba0cf6b050], PUP.Optional.GlobalUpdate.A, C:\Users\Yannick\AppData\Local\Temp\comh.101359, In Quarantäne, [db56279ba4d7b87e18ef794f35cd08f8], Dateien: 58 PUP.Optional.SupTab.A, C:\$RECYCLE.BIN\S-1-5-21-376805668-1328626857-418462850-1001\$R3JKLCU.dll, In Quarantäne, [151caa18bac120161a51fd38f9079c64], PUP.Optional.WPM.A, C:\$RECYCLE.BIN\S-1-5-21-376805668-1328626857-418462850-1001\$RG08JBT\wprotectmanager.exe, In Quarantäne, [4be6c1014d2e02349a65aae87d84c838], PUP.Optional.Conduit.A, C:\Users\Yannick\AppData\Local\Temp\dlLogic.exe, In Quarantäne, [b27f04be99e2c76f2ca43d05936d30d0], PUP.Optional.Conduit.A, C:\Users\Yannick\AppData\Local\Temp\dltr.exe, In Quarantäne, [db56873b1a61cf67636ee062b34dfb05], PUP.Optional.Conduit.A, C:\Users\Yannick\AppData\Local\Temp\verifier.exe, In Quarantäne, [eb46a81a1269a98d1fb2ad9558a80ef2], PUP.Optional.Conduit.A, C:\Users\Yannick\AppData\Local\Temp\nsd339B.exe, In Quarantäne, [1b161ba772091f1739a7ee9d4eb30ff1], PUP.Optional.Conduit.A, C:\Users\Yannick\AppData\Local\Temp\nsf31F.exe, In Quarantäne, [032e4e74cead46f0fbe5d7b42fd2758b], PUP.Optional.Conduit.A, C:\Users\Yannick\AppData\Local\Temp\nsh321D.exe, In Quarantäne, [f43dead8a7d40135b42ce6a5da27df21], PUP.Optional.Conduit.A, C:\Users\Yannick\AppData\Local\Temp\nsi989.exe, In Quarantäne, [2e030eb46a1194a223bd6922728f659b], PUP.Optional.Conduit.A, C:\Users\Yannick\AppData\Local\Temp\nsiA8A9.exe, In Quarantäne, [de532d95ccaf31057e62c5c6778af30d], PUP.Optional.Conduit.A, C:\Users\Yannick\AppData\Local\Temp\nsiBE42.exe, In Quarantäne, [b57c29995c1f3ef8dc04c4c752af3dc3], PUP.Optional.SearchProtect.A, C:\Users\Yannick\AppData\Local\Temp\nsj4D2.tmp, In Quarantäne, [58d94280c8b30e28be475b3bc041629e], PUP.Optional.Conduit.A, C:\Users\Yannick\AppData\Local\Temp\nsl9511.exe, In Quarantäne, [171aeed4cfac6dc902defe8def127090], PUP.Optional.Conduit.A, C:\Users\Yannick\AppData\Local\Temp\GCVerifier.dll, In Quarantäne, [8aa7e0e27407e84e418e91b12ad6837d], PUP.Optional.Conduit.A, C:\Users\Yannick\AppData\Local\Temp\nsvC49C.exe, In Quarantäne, [84ad8c3616651d1918c8e5a6689951af], PUP.Optional.Conduit.A, C:\Users\Yannick\AppData\Local\Temp\nsy36C1.exe, In Quarantäne, [a68b49797ffc5bdb2db32d5e6d946b95], PUP.Optional.SkyTech.A, C:\Users\Yannick\AppData\Local\Temp\is1070216317\83919967_stp\cor_sweet-page_CH.exe, In Quarantäne, [b47d6b5702791d19587d5f0031d04cb4], PUP.Optional.Babylon.A, C:\Users\Yannick\AppData\Local\Temp\is2036094744\DeltaTB.exe, In Quarantäne, [141da9193f3c45f14f426da21fe2a25e], PUP.Optional.Wajam.A, C:\Users\Yannick\AppData\Local\Temp\is2036094744\wajam_validate.exe, In Quarantäne, [d061705281fa59dddc540a28f9095fa1], PUP.Optional.MySearchDial.A, C:\Users\Yannick\AppData\Local\Temp\is84610937\mysearchdial.dll, In Quarantäne, [0b26962cbebd6bcbccd01d3fdf221be5], PUP.Optional.BabSolution.A, C:\Users\Yannick\AppData\Local\Temp\busF62\BUSolution.dll, In Quarantäne, [a8891fa3156669cd749110061fe245bb], PUP.Optional.Babylon.A, C:\Users\Yannick\AppData\Local\Temp\F42609D6-BAB0-7891-BE24-91FA542442F1\Latest\BExternal.dll, In Quarantäne, [0b26fec41962330354af6cb715ebe11f], Trojan.RotBrowse, C:\Users\Yannick\AppData\Local\Temp\F42609D6-BAB0-7891-BE24-91FA542442F1\Latest\ccp.exe, In Quarantäne, [49e818aa5625a3935d86089d7094fb05], PUP.Optional.Babylon.A, C:\Users\Yannick\AppData\Local\Temp\F42609D6-BAB0-7891-BE24-91FA542442F1\Latest\CrxInstaller.dll, In Quarantäne, [969b982af586c76f9e1c6db531d014ec], PUP.Optional.Babylon.A, C:\Users\Yannick\AppData\Local\Temp\F42609D6-BAB0-7891-BE24-91FA542442F1\Latest\MntrDLLInstall.dll, In Quarantäne, [161b378bd3a890a63586e83a40c1837d], PUP.Optional.Babylon.A, C:\Users\Yannick\AppData\Local\Temp\F42609D6-BAB0-7891-BE24-91FA542442F1\Latest\Setup.exe, In Quarantäne, [f43d39890279ea4cc088f727a35def11], PUP.Optional.Conduit.A, C:\Users\Yannick\AppData\Local\Temp\3af89ab4-1c89-4743-94d3-dbc70cfe566c\MySQL_Query_Browser_1.1.20.exe, In Quarantäne, [44ededd5196282b43fc8be899f6148b8], PUP.Optional.SearchProtect.A, C:\Users\Yannick\AppData\Local\Temp\nsa9BE5\SpSetup.exe, In Quarantäne, [52df1aa8562559dd28ddc8ce16eb0000], PUP.Optional.MultiPlug.A, C:\Users\Yannick\AppData\Local\Temp\4bf754de\mpZZI.x64.dll, In Quarantäne, [d061efd3ee8d9e98449cc2912cd52ad6], PUP.Optional.Multiplug, C:\Users\Yannick\AppData\Local\Temp\{D2EECCFD-2A1C-424F-A0A4-623E090DEE0B}\Addons\extIE_setup.exe, In Quarantäne, [f33e4e741764290dfb1dc2d141c026da], PUP.Optional.EZDownloader.A, C:\Users\Yannick\AppData\Local\Temp\{D2EECCFD-2A1C-424F-A0A4-623E090DEE0B}\Addons\EzDownloader_setup.exe, In Quarantäne, [88a91fa3c7b476c01a8b2ef17f8147b9], PUP.Optional.Multiplug, C:\Users\Yannick\AppData\Local\Temp\{D2EECCFD-2A1C-424F-A0A4-623E090DEE0B}\Addons\setupespl.exe, In Quarantäne, [d0612a98c1ba91a551c7bcd77091a25e], PUP.Optional.Multiplug, C:\Users\Yannick\AppData\Local\Temp\{D2EECCFD-2A1C-424F-A0A4-623E090DEE0B}\Addons\setuplh.exe, In Quarantäne, [45ec6260e4979c9af721eda6748d4bb5], PUP.Optional.Multiplug, C:\Users\Yannick\AppData\Local\Temp\{D2EECCFD-2A1C-424F-A0A4-623E090DEE0B}\Addons\setupytb.exe, In Quarantäne, [4ce51aa8b4c7bf77a276e9aa10f1817f], PUP.Optional.Conduit.A, C:\Users\Yannick\AppData\Local\Temp\bb7c31ad-4df6-416d-944c-bff77991613e\MySQL_Query_Browser_1.1.20.exe, In Quarantäne, [34fd2e94d2a9d660996e58ef2cd46a96], PUP.Optional.MultiPlug.A, C:\Users\Yannick\AppData\Local\Temp\0a6b44e7\C78_YK47.x64.dll, In Quarantäne, [c66b7f4317640234af31a9aab1504fb1], PUP.Optional.SkyTech.A, C:\Users\Yannick\AppData\Local\Temp\fullpackage_temp1391004006\package1.zip, In Quarantäne, [ef426d5545368aacf144082aa25eb54b], PUP.Optional.SkyTech.A, C:\Users\Yannick\AppData\Local\Temp\fullpackage_temp1391004006\QQBrowserFrame.dll, In Quarantäne, [092801c10d6e171f11241e14ed13ac54], PUP.Optional.SupTab.A, C:\Users\Yannick\AppData\Local\Temp\fullpackage_temp1391004006\tmp\SupTab.exe, In Quarantäne, [34fdb70b483363d3e3883df838c8db25], PUP.Optional.SnapDo.A, C:\Windows\Installer\6014ad3.msi, In Quarantäne, [90a1d8eaef8c42f497b52865a65b7789], PUP.Optional.QuickStart.A, C:\Users\Yannick\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_pelmeidfhdlhlbjimpabfcbnnojbboma_0.localstorage, In Quarantäne, [f1401da58cefa690804134fc9173f709], PUP.Optional.QuickStart.A, C:\Users\Yannick\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_pelmeidfhdlhlbjimpabfcbnnojbboma_0.localstorage-journal, In Quarantäne, [1e13ab17a0db78be754c3af6cb39738d], PUP.Optional.Conduit.A, C:\Users\Yannick\AppData\Local\Temp\CT3314932\ddt.csf, In Quarantäne, [0c25ead84f2caa8c29134569ac5657a9], PUP.Optional.Extutil.A, C:\Users\Yannick\AppData\Local\Temp\D7ADFCCA-EE7E-442C-9999-C4D14FEF360B\bk.js, In Quarantäne, [220f8141295287af7b84cdf8857d5fa1], PUP.Optional.Extutil.A, C:\Users\Yannick\AppData\Local\Temp\D7ADFCCA-EE7E-442C-9999-C4D14FEF360B\cs.js, In Quarantäne, [220f8141295287af7b84cdf8857d5fa1], PUP.Optional.Extutil.A, C:\Users\Yannick\AppData\Local\Temp\D7ADFCCA-EE7E-442C-9999-C4D14FEF360B\manifest.json, In Quarantäne, [220f8141295287af7b84cdf8857d5fa1], PUP.Optional.Managera.A, C:\Users\Yannick\AppData\Local\Temp\38fdaae5-8e0e-493c-88ec-e05c3be06e42\cs.js, In Quarantäne, [d65bbc06334881b5768a0cba0cf6b050], PUP.Optional.Managera.A, C:\Users\Yannick\AppData\Local\Temp\38fdaae5-8e0e-493c-88ec-e05c3be06e42\manifest.json, In Quarantäne, [d65bbc06334881b5768a0cba0cf6b050], PUP.Optional.GlobalUpdate.A, C:\Users\Yannick\AppData\Local\Temp\comh.101359\GoogleCrashHandler.exe, In Quarantäne, [db56279ba4d7b87e18ef794f35cd08f8], PUP.Optional.GlobalUpdate.A, C:\Users\Yannick\AppData\Local\Temp\comh.101359\GoogleUpdate.exe, In Quarantäne, [db56279ba4d7b87e18ef794f35cd08f8], PUP.Optional.GlobalUpdate.A, C:\Users\Yannick\AppData\Local\Temp\comh.101359\GoogleUpdateBroker.exe, In Quarantäne, [db56279ba4d7b87e18ef794f35cd08f8], PUP.Optional.GlobalUpdate.A, C:\Users\Yannick\AppData\Local\Temp\comh.101359\GoogleUpdateHelper.msi, In Quarantäne, [db56279ba4d7b87e18ef794f35cd08f8], PUP.Optional.GlobalUpdate.A, C:\Users\Yannick\AppData\Local\Temp\comh.101359\GoogleUpdateOnDemand.exe, In Quarantäne, [db56279ba4d7b87e18ef794f35cd08f8], PUP.Optional.GlobalUpdate.A, C:\Users\Yannick\AppData\Local\Temp\comh.101359\goopdate.dll, In Quarantäne, [db56279ba4d7b87e18ef794f35cd08f8], PUP.Optional.GlobalUpdate.A, C:\Users\Yannick\AppData\Local\Temp\comh.101359\goopdateres_en.dll, In Quarantäne, [db56279ba4d7b87e18ef794f35cd08f8], PUP.Optional.GlobalUpdate.A, C:\Users\Yannick\AppData\Local\Temp\comh.101359\npGoogleUpdate4.dll, In Quarantäne, [db56279ba4d7b87e18ef794f35cd08f8], PUP.Optional.GlobalUpdate.A, C:\Users\Yannick\AppData\Local\Temp\comh.101359\psmachine.dll, In Quarantäne, [db56279ba4d7b87e18ef794f35cd08f8], PUP.Optional.GlobalUpdate.A, C:\Users\Yannick\AppData\Local\Temp\comh.101359\psuser.dll, In Quarantäne, [db56279ba4d7b87e18ef794f35cd08f8], Physische Sektoren: 0 (No malicious items detected) (end) FRST Logfile: FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 02-08-2014 Ran by Yannick (administrator) on YANNICK on 03-08-2014 18:18:47 Running from G:\ Platform: Windows 8 (X64) OS Language: Deutsch (Deutschland) Internet Explorer Version 10 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (If an entry is included in the fixlist, the process will be closed. The file will not be moved.) (AMD) C:\Windows\System32\atiesrxx.exe (AMD) C:\Windows\System32\atieclxx.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe () C:\Program Files (x86)\TOSHIBA\Password Utility\GFNEXSrv.exe (Microsoft Corporation.) C:\Program Files (x86)\Microsoft\BingBar\7.1.355.0\BBSvc.EXE (Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe (Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe (Microsoft Corporation) C:\Program Files\Microsoft Office 15\ClientX64\officeclicktorun.exe (Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe (Microsoft Corporation) C:\Windows\System32\dasHost.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe (PostgreSQL Global Development Group) C:\postgreSQL\bin\pg_ctl.exe (PostgreSQL Global Development Group) C:\postgreSQL\bin\postgres.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe (TOSHIBA Corporation) C:\Windows\System32\TODDSrv.exe (TOSHIBA Corporation) C:\Program Files\TOSHIBA\Teco\TecoService.exe (PostgreSQL Global Development Group) C:\postgreSQL\bin\postgres.exe (PostgreSQL Global Development Group) C:\postgreSQL\bin\postgres.exe (PostgreSQL Global Development Group) C:\postgreSQL\bin\postgres.exe (PostgreSQL Global Development Group) C:\postgreSQL\bin\postgres.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.24.15\GoogleCrashHandler.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.24.15\GoogleCrashHandler64.exe (Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.0.1119.516_x64__8wekyb3d8bbwe\LiveComm.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (TOSHIBA Corporation) C:\Program Files\TOSHIBA\Hotkey\TCrdMain_Win8.exe (TOSHIBA Corporation) C:\Program Files (x86)\TOSHIBA\System Setting\TSleepSrv.exe (TOSHIBA Corporation) C:\Program Files\TOSHIBA\Teco\TecoResident.exe (SRS Labs, Inc.) C:\Program Files\SRS Labs\SRS Control Panel\SRSPanel_64.exe (Google Inc.) C:\Users\Yannick\AppData\Local\Google\Update\GoogleUpdate.exe (Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe (Hewlett-Packard Co.) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe (McAfee, Inc.) C:\Program Files\McAfee Security Scan\3.8.150\SSScheduler.exe (Dropbox, Inc.) C:\Users\Yannick\AppData\Roaming\Dropbox\bin\Dropbox.exe (Advanced Micro Devices, Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Hewlett-Packard) C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe (Hewlett-Packard Co.) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqste08.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Nero AG) C:\Program Files (x86)\Nero\Update\NASvc.exe (Hewlett-Packard Co.) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqbam08.exe (Hewlett-Packard) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgpc01.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (TOSHIBA Corporation) C:\Program Files\TOSHIBA\TPHM\TPCHSrv.exe (TOSHIBA Corporation) C:\Program Files\TOSHIBA\TOSHIBA Service Station\ToshibaServiceStation.exe (TOSHIBA Corporation) C:\Program Files\TOSHIBA\TPHM\TPCHWMsg.exe (TOSHIBA Corporation) C:\Program Files\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe ==================== Registry (Whitelisted) ================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Run: [] => [X] HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [12936848 2012-07-13] (Realtek Semiconductor) HKLM\...\Run: [TCrdMain] => C:\Program Files\TOSHIBA\Hotkey\TCrdMain_Win8.exe [2608040 2012-08-14] (TOSHIBA Corporation) HKLM\...\Run: [TSleepSrv] => C:\Program Files (x86)\TOSHIBA\System Setting\TSleepSrv.exe [1548952 2012-08-05] (TOSHIBA Corporation) HKLM\...\Run: [TODDMain] => C:\Program Files (x86)\TOSHIBA\System Setting\TODDMain.exe [213136 2012-08-05] () HKLM\...\Run: [TecoResident] => C:\Program Files\TOSHIBA\Teco\TecoResident.exe [169896 2012-08-14] (TOSHIBA Corporation) HKLM\...\Run: [TosWaitSrv] => C:\Program Files\TOSHIBA\TPHM\TosWaitSrv.exe [356776 2012-07-11] (TOSHIBA Corporation) HKLM\...\Run: [SRS Premium Sound HD] => C:\Program Files\SRS Labs\SRS Control Panel\SRSPanel_64.exe [2170784 2012-07-27] (SRS Labs, Inc.) HKLM\...\Run: [Toshiba TEMPRO] => C:\Program Files (x86)\Toshiba TEMPRO\TemproTray.exe HKLM-x32\...\Run: [Intel AppUp(SM) center] => C:\Program Files (x86)\Intel\IntelAppStore\bin\ismagent.exe [155488 2012-08-02] (Intel Corporation) HKLM-x32\...\Run: [ToshibaDynamicIconUtility] => C:\Program Files\TOSHIBA\TOSHIBA Places Icon Utility\TosDIMonitor.exe [1498624 2012-08-09] (Toshiba) HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [642216 2012-08-08] (Advanced Micro Devices, Inc.) HKLM-x32\...\Run: [TPUReg(x86)] => "C:\Program Files\TOSHIBA\Password Utility\TosPU.exe" /Retimes HKLM-x32\...\Run: [TPUReg] => C:\Program Files (x86)\TOSHIBA\Password Utility\TosPU.exe [6884352 2012-08-23] (Pegatron Corporation) HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated) HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [4085896 2014-08-01] (AVAST Software) HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe [49208 2010-06-09] (Hewlett-Packard) HKLM-x32\...\Run: [] => [X] HKU\S-1-5-21-376805668-1328626857-418462850-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\Steam.exe [1753280 2014-07-12] (Valve Corporation) HKU\S-1-5-21-376805668-1328626857-418462850-1001\...\Run: [CPN Notifier] => C:\Program Files (x86)\Galaxy Poker\PokerNotifier.exe HKU\S-1-5-21-376805668-1328626857-418462850-1001\...\Run: [Google Update] => C:\Users\Yannick\AppData\Local\Google\Update\GoogleUpdate.exe [116648 2013-12-07] (Google Inc.) HKU\S-1-5-21-376805668-1328626857-418462850-1001\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [21650016 2014-07-02] (Skype Technologies S.A.) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\HP Digital Imaging Monitor.lnk ShortcutTarget: HP Digital Imaging Monitor.lnk -> C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe (Hewlett-Packard Co.) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk ShortcutTarget: McAfee Security Scan Plus.lnk -> C:\Program Files\McAfee Security Scan\3.8.150\SSScheduler.exe (McAfee, Inc.) Startup: C:\Users\Yannick\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk ShortcutTarget: Dropbox.lnk -> C:\Users\Yannick\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) ShellIconOverlayIdentifiers: SkyDrive1 -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Users\Yannick\AppData\Local\Microsoft\SkyDrive\17.0.2015.0811\amd64\SkyDriveShell64.dll (Microsoft Corporation) ShellIconOverlayIdentifiers: SkyDrive2 -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Users\Yannick\AppData\Local\Microsoft\SkyDrive\17.0.2015.0811\amd64\SkyDriveShell64.dll (Microsoft Corporation) ShellIconOverlayIdentifiers: SkyDrive3 -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Users\Yannick\AppData\Local\Microsoft\SkyDrive\17.0.2015.0811\amd64\SkyDriveShell64.dll (Microsoft Corporation) ShellIconOverlayIdentifiers: SkyDrivePro1 (ErrorConflict) -> {8BA85C75-763B-4103-94EB-9470F12FE0F7} => C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation) ShellIconOverlayIdentifiers: SkyDrivePro2 (SyncInProgress) -> {CD55129A-B1A1-438E-A425-CEBC7DC684EE} => C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation) ShellIconOverlayIdentifiers: SkyDrivePro3 (InSync) -> {E768CD3B-BDDC-436D-9C13-E1B39CA257B1} => C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation) ShellIconOverlayIdentifiers: 00avast -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll (AVAST Software) ShellIconOverlayIdentifiers: DropboxExt1 -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Yannick\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.) ShellIconOverlayIdentifiers: DropboxExt2 -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Yannick\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.) ShellIconOverlayIdentifiers: DropboxExt3 -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Yannick\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.) ShellIconOverlayIdentifiers: DropboxExt4 -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Yannick\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.) ShellIconOverlayIdentifiers: GDriveBlacklistedOverlay -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll (Google) ShellIconOverlayIdentifiers: GDriveSharedEditOverlay -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll (Google) ShellIconOverlayIdentifiers: GDriveSharedOverlay -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll (Google) ShellIconOverlayIdentifiers: GDriveSharedViewOverlay -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D43} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll (Google) ShellIconOverlayIdentifiers: GDriveSyncedOverlay -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll (Google) ShellIconOverlayIdentifiers: GDriveSyncingOverlay -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll (Google) ShellIconOverlayIdentifiers-x32: SkyDrive1 -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Users\Yannick\AppData\Local\Microsoft\SkyDrive\17.0.2015.0811\SkyDriveShell.dll (Microsoft Corporation) ShellIconOverlayIdentifiers-x32: SkyDrive2 -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Users\Yannick\AppData\Local\Microsoft\SkyDrive\17.0.2015.0811\SkyDriveShell.dll (Microsoft Corporation) ShellIconOverlayIdentifiers-x32: SkyDrive3 -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Users\Yannick\AppData\Local\Microsoft\SkyDrive\17.0.2015.0811\SkyDriveShell.dll (Microsoft Corporation) ShellIconOverlayIdentifiers-x32: SkyDrivePro1 (ErrorConflict) -> {8BA85C75-763B-4103-94EB-9470F12FE0F7} => C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation) ShellIconOverlayIdentifiers-x32: SkyDrivePro2 (SyncInProgress) -> {CD55129A-B1A1-438E-A425-CEBC7DC684EE} => C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation) ShellIconOverlayIdentifiers-x32: SkyDrivePro3 (InSync) -> {E768CD3B-BDDC-436D-9C13-E1B39CA257B1} => C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation) ShellIconOverlayIdentifiers-x32: DropboxExt1 -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Yannick\AppData\Roaming\Dropbox\bin\DropboxExt.24.dll (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: DropboxExt2 -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Yannick\AppData\Roaming\Dropbox\bin\DropboxExt.24.dll (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: DropboxExt3 -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Yannick\AppData\Roaming\Dropbox\bin\DropboxExt.24.dll (Dropbox, Inc.) ==================== Internet (Whitelisted) ==================== (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.) ProxyEnable: Internet Explorer proxy is enabled. ProxyServer: http=127.0.0.1:61484;https=127.0.0.1:61484 HKCU\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://www.giga.de/ StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe SearchScopes: HKLM - {D5AAB969-BE10-46EC-ADC7-8F42C4A91980} URL = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MATMJS BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation) BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software) BHO: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Microsoft Corporation) BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation) BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: MSS+ Identifier -> {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} -> C:\Program Files\McAfee Security Scan\3.8.150\McAfeeMSS_IE.dll (McAfee, Inc.) BHO-x32: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation) BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software) BHO-x32: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Microsoft Corporation) BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation) BHO-x32: Bing Bar Helper -> {d2ce3e00-f94a-4740-988e-03dc2f38c34f} -> C:\Program Files (x86)\Microsoft\BingBar\7.1.355.0\BingExt.dll (Microsoft Corporation.) Toolbar: HKLM - No Name - {318A227B-5E9F-45bd-8999-7F8F10CA4CF5} - No File Toolbar: HKLM-x32 - Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files (x86)\Microsoft\BingBar\7.1.355.0\BingExt.dll (Microsoft Corporation.) Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Microsoft Corporation) Handler-x32: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL (Microsoft Corporation) Handler-x32: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Microsoft Corporation) Tcpip\Parameters: [DhcpNameServer] 192.168.0.1 192.168.0.2 FireFox: ======== FF Plugin: @adobe.com/FlashPlayer -> C:\windows\system32\Macromed\Flash\NPSWF64_14_0_0_145.dll () FF Plugin: @java.com/DTPlugin,version=10.45.2 -> C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=10.45.2 -> C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin: @videolan.org/vlc,version=2.0.6 -> C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\windows\SysWOW64\Macromed\Flash\NPSWF32_14_0_0_145.dll () FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation) FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll (Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3508.0205 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @Nero.com/KM -> C:\PROGRA~2\COMMON~1\Nero\BROWSE~1\NPBROW~1.DLL (Nero AG) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 -> C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll () FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Plugin HKCU: @talk.google.com/GoogleTalkPlugin - C:\Users\Yannick\AppData\Roaming\Mozilla\plugins\npgoogletalk.dll (Google) FF Plugin HKCU: @talk.google.com/O1DPlugin - C:\Users\Yannick\AppData\Roaming\Mozilla\plugins\npo1d.dll (Google) FF Plugin HKCU: @tools.google.com/Google Update;version=3 - C:\Users\Yannick\AppData\Local\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.) FF Plugin HKCU: @tools.google.com/Google Update;version=9 - C:\Users\Yannick\AppData\Local\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npMeetingJoinPluginOC.dll (Microsoft Corporation) FF Plugin ProgramFiles/Appdata: C:\Users\Yannick\AppData\Roaming\mozilla\plugins\npgoogletalk.dll (Google) FF Plugin ProgramFiles/Appdata: C:\Users\Yannick\AppData\Roaming\mozilla\plugins\npo1d.dll (Google) FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF FF Extension: avast! Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2013-05-23] FF HKLM-x32\...\Thunderbird\Extensions: [msktbird@mcafee.com] - C:\Program Files\McAfee\MSK Chrome: ======= CHR HomePage: hxxp://www.google.com/ CHR DefaultSearchKeyword: omiga-plus CHR DefaultSearchProvider: omiga-plus CHR DefaultSearchURL: hxxp://isearch.omiga-plus.com/web/?type=dspp&ts=1407067812&from=cor&uid=TOSHIBAXMK6475GSX_82C4F3HSSXX82C4F3HSS&q={searchTerms} CHR DefaultNewTabURL: CHR Plugin: (Shockwave Flash) - C:\Program Files (x86)\Google\Chrome\Application\36.0.1985.125\PepperFlash\pepflashplayer.dll () CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer CHR Plugin: (Native Client) - C:\Program Files (x86)\Google\Chrome\Application\36.0.1985.125\ppGoogleNaClPluginChrome.dll () CHR Plugin: (Chrome PDF Viewer) - C:\Program Files (x86)\Google\Chrome\Application\36.0.1985.125\pdf.dll () CHR Plugin: (Nero Kwik Media Helper) - C:\PROGRA~2\COMMON~1\Nero\BROWSE~1\NPBROW~1.DLL (Nero AG) CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll No File CHR Plugin: (Intel Identity Protection Technology) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation) CHR Plugin: (Intel Identity Protection Technology) - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation) CHR Plugin: (WildTangent Games App V2 Presence Detector) - C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll () CHR Extension: (Adblock Plus) - C:\Users\Yannick\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2014-02-08] CHR Extension: (Jr's Proxy) - C:\Users\Yannick\AppData\Local\Google\Chrome\User Data\Default\Extensions\cldflcjakandmfifipfanklcdfhdiaph [2014-05-30] CHR Extension: (savE ono) - C:\Users\Yannick\AppData\Local\Google\Chrome\User Data\Default\Extensions\ioelihbboagbangdfggambponclgniah [2014-06-15] CHR Extension: (ProxyMate) - C:\Users\Yannick\AppData\Local\Google\Chrome\User Data\Default\Extensions\lebpnjmmkockepeffbadcnechelmhekc [2014-05-30] CHR Extension: (No Name) - C:\Users\Yannick\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkcedibhemacmilmkpndpkoidlnmgngg [2014-01-22] CHR Extension: (Google Wallet) - C:\Users\Yannick\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-09-02] CHR Extension: (No Name) - C:\Users\Yannick\AppData\Local\Google\Chrome\User Data\Default\Extensions\ogfjmhfnldnajmfaofeiaepghjenbgjo [2014-02-26] CHR HKLM-x32\...\Chrome\Extension: [fhmbbigfkgcficoehkhadjbokhhaijea] - C:\Program Files (x86)\LyricsPlug\Chrome.crx [2014-02-26] CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2014-08-01] CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2014-07-14] ==================== Services (Whitelisted) ================= (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-08-01] (AVAST Software) S3 BRSptSvc; C:\ProgramData\BitRaider\BRSptSvc.exe [476936 2013-08-20] (BitRaider, LLC) R2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1390176 2014-07-14] (Microsoft Corporation) R2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1767520 2014-07-14] (Microsoft Corporation) R2 ClickToRunSvc; C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe [2356912 2014-07-19] (Microsoft Corporation) R2 GFNEXSrv; C:\Program Files (x86)\TOSHIBA\Password Utility\GFNEXSrv.exe [156672 2011-10-14] () [File not signed] R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [129856 2012-06-27] (Intel Corporation) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [166720 2012-06-25] (Intel Corporation) S3 McComponentHostService; C:\Program Files\McAfee Security Scan\3.8.150\McCHSvc.exe [289256 2014-04-09] (McAfee, Inc.) R2 Net Driver HPZ12; C:\Windows\System32\HPZinw12.dll [71680 2010-08-06] (Hewlett-Packard) [File not signed] R2 Pml Driver HPZ12; C:\Windows\System32\HPZipm12.dll [89600 2010-08-06] (Hewlett-Packard) [File not signed] S3 TemproMonitoringService; C:\Program Files (x86)\Toshiba TEMPRO\TemproSvc.exe [114656 2012-08-14] (Toshiba Europe GmbH) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [16056 2014-03-29] (Microsoft Corporation) R2 postgresql-8.4; c:/postgreSQL/bin/pg_ctl.exe runservice -N "postgresql-8.4" -D "c:/postgreSQL/data" -w [X] S2 ReimageRealTimeProtector; C:\Program Files\Reimage\Reimage Protector\ReiGuard.exe [X] ==================== Drivers (Whitelisted) ==================== (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29208 2014-08-01] () R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [79184 2014-08-01] (AVAST Software) R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93568 2014-08-01] (AVAST Software) R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2014-08-01] () R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1041168 2014-08-01] (AVAST Software) R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [427360 2014-08-01] (AVAST Software) R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [92008 2014-08-01] (AVAST Software) R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [224896 2014-08-01] () R3 AtiHDAudioService; C:\Windows\system32\drivers\AtihdW86.sys [98472 2012-07-17] (Advanced Micro Devices) S3 BRDriver64; C:\ProgramData\BitRaider\BRDriver64.sys [75048 2013-08-20] (BitRaider) R3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [202752 2012-07-26] (Microsoft Corporation) S3 dot4; C:\Windows\system32\DRIVERS\Dot4.sys [151968 2012-10-19] (Windows (R) Win 7 DDK provider) S3 Dot4Print; C:\Windows\System32\drivers\Dot4Prt.sys [27040 2012-10-19] (Windows (R) Win 7 DDK provider) R1 dtsoftbus01; C:\Windows\System32\drivers\dtsoftbus01.sys [283064 2014-01-29] (Disc Soft Ltd) R1 ISODrive; C:\Program Files (x86)\UltraISO\drivers\ISODrv64.sys [115448 2013-11-21] (EZB Systems, Inc.) S3 NETwNe64; C:\Windows\system32\DRIVERS\NETwNe64.sys [11400192 2012-06-02] (Intel Corporation) R2 PEGAGFN; C:\Program Files (x86)\TOSHIBA\Password Utility\PEGAGFN.sys [14344 2009-09-12] (PEGATRON) R3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [43832 2012-08-14] (Synaptics Incorporated) R3 Thotkey; C:\Windows\System32\drivers\Thotkey.sys [28632 2012-07-31] (Windows (R) Win 7 DDK provider) ==================== NetSvcs (Whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.) ==================== One Month Created Files and Folders ======== (If an entry is included in the fixlist, the file\folder will be moved.) 2014-08-03 17:40 - 2014-08-03 18:16 - 00122584 _____ (Malwarebytes Corporation) C:\windows\system32\Drivers\MBAMSwissArmy.sys 2014-08-03 17:40 - 2014-08-03 17:40 - 00001113 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2014-08-03 17:40 - 2014-08-03 17:40 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 2014-08-03 17:40 - 2014-08-03 17:40 - 00000000 ____D () C:\ProgramData\Malwarebytes 2014-08-03 17:40 - 2014-08-03 17:40 - 00000000 ____D () C:\Program Files (x86)\ Malwarebytes Anti-Malware 2014-08-03 17:40 - 2014-05-12 07:26 - 00091352 _____ (Malwarebytes Corporation) C:\windows\system32\Drivers\mbamchameleon.sys 2014-08-03 17:40 - 2014-05-12 07:26 - 00064216 _____ (Malwarebytes Corporation) C:\windows\system32\Drivers\mwac.sys 2014-08-03 17:40 - 2014-05-12 07:25 - 00025816 _____ (Malwarebytes Corporation) C:\windows\system32\Drivers\mbam.sys 2014-08-03 17:39 - 2014-08-03 17:39 - 00001341 _____ () C:\Users\Yannick\Desktop\JRT.txt 2014-08-03 17:24 - 2014-08-03 17:24 - 00000000 ____D () C:\windows\ERUNT 2014-08-03 16:00 - 2014-08-03 16:00 - 00001275 _____ () C:\Users\Yannick\Desktop\Revo Uninstaller.lnk 2014-08-03 16:00 - 2014-08-03 16:00 - 00000000 ____D () C:\Program Files (x86)\VS Revo Group 2014-08-03 14:08 - 2014-08-03 14:09 - 00281496 _____ () C:\windows\Minidump\080314-36890-01.dmp 2014-08-03 13:56 - 2014-08-03 18:18 - 00000000 ____D () C:\FRST 2014-08-03 13:54 - 2014-08-03 13:54 - 00000168 _____ () C:\Users\Yannick\defogger_reenable 2014-08-03 02:17 - 2014-08-03 02:17 - 00001083 _____ () C:\Users\postgres\Desktop\schlaegerei.de cdScherz.lnk 2014-08-03 02:17 - 2014-08-03 02:17 - 00000000 ____D () C:\Users\Yannick\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\schlaegerei.de cdScherz 2014-08-03 02:17 - 2014-08-03 02:17 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\schlaegerei.de cdScherz 2014-08-03 02:17 - 2014-08-03 02:17 - 00000000 ____D () C:\Program Files (x86)\schlaegerei.de cdScherz 2014-08-03 02:14 - 2014-08-03 02:14 - 00078228 _____ (Philipp Winterberg) C:\Users\Yannick\fixproxy2013.exe 2014-08-03 01:59 - 2014-08-03 02:16 - 00000000 ____D () C:\Program Files (x86)\proxyfixlolbastarde 2014-08-03 00:36 - 2014-08-03 00:36 - 00000000 ____D () C:\Users\Common\Temp 2014-08-03 00:26 - 2014-08-03 00:27 - 00281440 _____ () C:\windows\Minidump\080314-53062-01.dmp 2014-08-01 19:21 - 2014-06-26 14:00 - 00018070 _____ () C:\Users\Yannick\Documents\ASB_Bewerbung%20Yannick%20Louis.doc_0.odt 2014-08-01 17:08 - 2014-08-03 11:37 - 00000094 _____ () C:\Users\PartyPoker\TablePositions.txt 2014-08-01 17:08 - 2014-08-03 11:37 - 00000000 _____ () C:\Users\PartyPoker\pst_flts.txt 2014-08-01 17:08 - 2014-08-02 22:01 - 00000003 _____ () C:\Users\PartyPoker\pp_YTheSnaiL_favorites.txt 2014-08-01 17:08 - 2014-08-02 22:01 - 00000000 _____ () C:\Users\PartyPoker\pp_YTheSnaiL_c-o-i.txt 2014-08-01 17:08 - 2014-08-01 17:08 - 00000000 _____ () C:\Users\PartyPoker\WatchList.txt 2014-08-01 16:00 - 2014-08-03 00:21 - 00000428 _____ () C:\Users\PartyPoker\Notes.txt 2014-08-01 15:37 - 2014-08-02 23:45 - 00001872 _____ () C:\Users\PartyPoker_tzcrashfile.txt 2014-08-01 14:40 - 2014-08-02 23:50 - 00000010 _____ () C:\Users\announce.txt 2014-08-01 14:30 - 2014-08-03 11:37 - 00000160 _____ () C:\Users\PartyPoker\OCLCards_FilterState.txt 2014-08-01 14:30 - 2014-08-03 11:37 - 00000000 _____ () C:\Users\PartyPoker\usertab2.txt 2014-08-01 14:30 - 2014-08-03 11:37 - 00000000 _____ () C:\Users\PartyPoker\usertab1.txt 2014-08-01 14:30 - 2014-08-03 11:37 - 00000000 _____ () C:\Users\PartyPoker\grptblsusertab.txt 2014-08-01 14:30 - 2014-08-03 11:37 - 00000000 _____ () C:\Users\PartyPoker\achievements 2014-08-01 14:30 - 2014-08-03 11:36 - 00000156 _____ () C:\Users\PartyPoker\ppunistall.bat 2014-08-01 14:30 - 2014-08-02 22:01 - 00000000 ____D () C:\Users\Temp 2014-08-01 14:30 - 2014-08-01 14:30 - 01224125 _____ () C:\Users\PartyPoker\HHReplayer.swf 2014-08-01 14:30 - 2014-08-01 14:30 - 00000000 ____D () C:\Users\PartyPoker\Stats 2014-08-01 14:29 - 2014-08-01 14:29 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\partypoker 2014-08-01 14:28 - 2014-08-01 14:28 - 00000000 ____D () C:\Users\SmartUpgrader\Temp 2014-08-01 13:11 - 2014-08-01 13:11 - 00092008 _____ (AVAST Software) C:\windows\system32\Drivers\aswStm.sys 2014-08-01 13:11 - 2014-08-01 13:11 - 00043152 _____ (AVAST Software) C:\windows\avastSS.scr 2014-08-01 13:11 - 2014-08-01 13:11 - 00029208 _____ () C:\windows\system32\Drivers\aswHwid.sys 2014-07-30 20:15 - 2014-07-30 20:15 - 00000000 ____D () C:\Program Files (x86)\Winamax Poker 2014-07-30 20:05 - 2014-07-30 20:05 - 00002018 _____ () C:\Users\Yannick\Desktop\888poker.lnk 2014-07-30 20:05 - 2014-07-30 20:05 - 00002018 _____ () C:\Users\postgres\Desktop\888poker.lnk 2014-07-30 20:05 - 2014-07-30 20:05 - 00000000 ____D () C:\Users\Yannick\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\888poker 2014-07-30 20:05 - 2014-07-30 20:05 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\888poker 2014-07-30 20:04 - 2014-07-30 20:05 - 00000000 ____D () C:\Users\Yannick\AppData\Roaming\PacificPoker 2014-07-30 20:04 - 2014-07-30 20:05 - 00000000 ____D () C:\Program Files (x86)\PacificPoker 2014-07-30 12:26 - 2014-07-30 12:26 - 00000000 ____D () C:\Users\Yannick\AppData\Local\eclipse 2014-07-30 04:03 - 2014-07-30 12:26 - 00000000 ____D () C:\Users\Yannick\AppData\Local\CarbonPoker 2014-07-30 04:02 - 2014-08-03 01:25 - 00000000 ____D () C:\Program Files (x86)\CarbonPoker 2014-07-30 04:02 - 2014-07-30 04:02 - 00001917 _____ () C:\Users\Yannick\Desktop\CarbonPoker.lnk 2014-07-30 04:02 - 2014-07-30 04:02 - 00000000 ____D () C:\Users\Yannick\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CarbonPoker 2014-07-29 19:19 - 2014-07-29 19:19 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TUGZip 2014-07-29 19:19 - 2014-07-29 19:19 - 00000000 ____D () C:\Program Files (x86)\TUGZip 2014-07-29 19:19 - 2007-03-12 23:34 - 00162304 _____ () C:\windows\SysWOW64\ztvunrar36.dll 2014-07-29 19:19 - 2007-03-12 23:34 - 00077312 _____ () C:\windows\SysWOW64\ztvunace26.dll 2014-07-29 19:19 - 2007-03-12 23:34 - 00069632 _____ (Microsoft Corporation) C:\windows\SysWOW64\ztvcabinet.dll 2014-07-28 23:58 - 2014-07-29 16:58 - 00000000 _____ () C:\windows\system32\ExtraInfo.txt 2014-07-27 18:37 - 2014-07-27 18:37 - 00000000 ____D () C:\Users\Yannick\AppData\Local\Skype 2014-07-27 18:36 - 2014-07-27 18:38 - 00000000 ___RD () C:\Program Files (x86)\Skype 2014-07-27 18:36 - 2014-07-27 18:36 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype 2014-07-25 13:15 - 2014-07-25 13:15 - 00281384 _____ () C:\windows\Minidump\072514-51671-01.dmp 2014-07-22 02:00 - 2014-07-22 02:05 - 00000000 ____D () C:\Users\Yannick\Documents\WSOP Online 2014-07-22 02:00 - 2014-07-22 02:00 - 00001966 _____ () C:\Users\postgres\Desktop\WSOP.com.lnk 2014-07-22 02:00 - 2014-07-22 02:00 - 00001810 _____ () C:\Users\Yannick\AppData\Roaming\Microsoft\Windows\Start Menu\Winner Poker.lnk 2014-07-22 02:00 - 2014-07-22 02:00 - 00000000 ____D () C:\Users\Yannick\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WSOP.com 2014-07-22 02:00 - 2014-07-22 02:00 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WSOP.com 2014-07-22 01:59 - 2014-07-22 02:10 - 00000000 ____D () C:\Users\Yannick\AppData\Local\Winner Poker 2014-07-22 01:58 - 2014-07-22 02:00 - 00000000 ____D () C:\Users\Yannick\AppData\Roaming\WSOP.com 2014-07-22 01:58 - 2014-07-22 02:00 - 00000000 ____D () C:\Program Files (x86)\WSOP.com 2014-07-22 01:39 - 2014-07-22 01:39 - 00000000 ____D () C:\Users\Yannick\AppData\Roaming\Party 2014-07-21 11:34 - 2014-07-21 11:34 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\bwin Poker 2014-07-15 20:46 - 2014-08-01 17:06 - 00042808 _____ () C:\Users\PartyPoker\GRA.ini 2014-07-15 20:46 - 2014-08-01 17:06 - 00000768 _____ () C:\Users\PartyPoker\SYS.ini 2014-07-15 20:46 - 2014-07-15 20:46 - 00045592 _____ () C:\Users\PartyPoker\table.bin 2014-07-15 20:46 - 2014-07-15 20:46 - 00042064 _____ () C:\Users\PartyPoker\poker.bin 2014-07-15 20:46 - 2014-07-15 20:46 - 00025872 _____ () C:\Users\PartyPoker\newtable.bin 2014-07-15 20:46 - 2014-07-15 20:46 - 00000016 _____ () C:\Users\PartyPoker\dynamic.bin 2014-07-15 20:44 - 2014-07-15 20:44 - 01914880 _____ (iGlobalMedia.com) C:\Users\PartyPoker\PartyPoker.dll 2014-07-15 20:44 - 2014-07-15 20:44 - 00000022 _____ () C:\Users\PartyPoker\Version.ini 2014-07-15 20:42 - 2014-07-15 20:42 - 03750400 _____ () C:\Users\PartyPoker\GameTable.dll 2014-07-15 20:38 - 2014-07-15 20:38 - 01101824 _____ (iGlobalMedia.com) C:\Users\PartyPoker\Tournament.dll 2014-07-15 20:37 - 2014-07-15 20:37 - 02512384 _____ (iGlobalMedia.com) C:\Users\PartyPoker\Lobby.dll 2014-07-14 12:44 - 2014-07-14 12:44 - 00000451 _____ () C:\Users\CleanUp.txt 2014-07-14 12:38 - 2014-07-14 12:38 - 00486704 _____ () C:\windows\system32\FNTCACHE.DAT 2014-07-14 12:37 - 2014-07-14 12:37 - 02309632 _____ () C:\Users\PartyGaming.exe 2014-07-14 12:37 - 2014-07-14 12:37 - 00000022 _____ () C:\Users\Version.ini 2014-07-14 12:13 - 2014-08-03 11:37 - 00005757 _____ () C:\Users\PartyPoker\LHN.txt 2014-07-14 12:13 - 2014-07-14 12:13 - 00421316 _____ () C:\Users\PartyPoker\TabConfig.txt 2014-07-14 12:13 - 2014-07-14 12:13 - 00116256 _____ () C:\Users\PartyPoker\TrebuchetForBP.ttf 2014-07-14 12:13 - 2014-07-14 12:13 - 00106188 _____ () C:\Users\PartyPoker\TrebuchetForBP-Bold.ttf 2014-07-14 12:13 - 2014-07-14 12:13 - 00005701 _____ () C:\Users\PartyPoker\MAT_Config.bin 2014-07-14 12:13 - 2014-07-14 12:13 - 00001176 _____ () C:\Users\PartyPoker\LayoutMgr.ini 2014-07-14 12:13 - 2014-07-14 12:13 - 00001104 _____ () C:\Users\PartyPoker\WLConfigData.ini 2014-07-13 11:01 - 2014-06-26 22:53 - 00703968 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\FlashPlayerApp.exe 2014-07-13 11:01 - 2014-06-26 22:53 - 00105440 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\FlashPlayerCPLApp.cpl 2014-07-13 10:56 - 2014-07-13 10:56 - 00000000 ___SD () C:\windows\system32\CompatTel 2014-07-13 10:42 - 2014-08-02 21:51 - 00015413 _____ () C:\windows\system32\ScanResults.xml 2014-07-13 10:34 - 2014-08-02 21:44 - 00000464 _____ () C:\windows\system32\ScannerSettings 2014-07-09 23:18 - 2014-07-01 00:42 - 00702464 _____ (Microsoft Corporation) C:\windows\system32\aepdu.dll 2014-07-09 23:18 - 2014-07-01 00:42 - 00394240 _____ (Microsoft Corporation) C:\windows\system32\devinv.dll 2014-07-09 23:18 - 2014-07-01 00:42 - 00087552 _____ (Microsoft Corporation) C:\windows\system32\aepic.dll 2014-07-09 23:18 - 2014-06-28 05:35 - 00556544 _____ (Microsoft Corporation) C:\windows\system32\aeinv.dll 2014-07-09 23:15 - 2014-06-18 01:27 - 01440256 _____ (Microsoft Corporation) C:\windows\SysWOW64\osk.exe 2014-07-09 23:15 - 2014-06-18 01:24 - 01557504 _____ (Microsoft Corporation) C:\windows\system32\osk.exe 2014-07-09 23:15 - 2014-06-11 06:18 - 04038144 _____ (Microsoft Corporation) C:\windows\system32\win32k.sys 2014-07-09 23:15 - 2014-06-03 00:33 - 00265216 _____ (Microsoft Corporation) C:\windows\system32\InkEd.dll 2014-07-09 23:15 - 2014-05-03 08:34 - 06974808 _____ (Microsoft Corporation) C:\windows\system32\ntoskrnl.exe 2014-07-09 23:15 - 2014-05-03 08:33 - 01824808 _____ (Microsoft Corporation) C:\windows\system32\ntdll.dll 2014-07-09 23:15 - 2014-05-03 06:51 - 01408976 _____ (Microsoft Corporation) C:\windows\SysWOW64\ntdll.dll 2014-07-09 23:15 - 2014-05-02 00:37 - 01023488 _____ (Microsoft Corporation) C:\windows\system32\localspl.dll 2014-07-09 23:15 - 2014-04-30 00:32 - 00126464 _____ (Microsoft Corporation) C:\windows\system32\Robocopy.exe 2014-07-09 23:15 - 2014-04-30 00:32 - 00106496 _____ (Microsoft Corporation) C:\windows\SysWOW64\Robocopy.exe 2014-07-09 23:15 - 2014-04-24 01:51 - 00566784 _____ (Microsoft Corporation) C:\windows\SysWOW64\WSShared.dll 2014-07-09 23:15 - 2014-04-24 01:51 - 00124928 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll 2014-07-09 23:15 - 2014-04-24 01:38 - 00693760 _____ (Microsoft Corporation) C:\windows\system32\WSShared.dll 2014-07-09 23:15 - 2014-04-24 01:38 - 00163840 _____ (Microsoft Corporation) C:\windows\system32\Windows.ApplicationModel.Store.TestingFramework.dll 2014-07-09 23:15 - 2014-02-08 06:34 - 00071168 _____ (Microsoft Corporation) C:\windows\system32\Drivers\hdaudbus.sys 2014-07-09 23:14 - 2014-06-19 04:11 - 19277312 _____ (Microsoft Corporation) C:\windows\system32\mshtml.dll 2014-07-09 23:14 - 2014-06-19 02:53 - 14368768 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.dll 2014-07-09 23:14 - 2014-05-30 01:31 - 00452608 _____ (Microsoft Corporation) C:\windows\SysWOW64\SHCore.dll 2014-07-09 23:14 - 2014-05-30 01:03 - 00588288 _____ (Microsoft Corporation) C:\windows\system32\SHCore.dll 2014-07-09 23:14 - 2014-05-30 01:02 - 01281536 _____ (Microsoft Corporation) C:\windows\system32\lsasrv.dll 2014-07-09 23:14 - 2014-05-30 01:02 - 00439808 _____ (Microsoft Corporation) C:\windows\system32\lsm.dll 2014-07-09 23:13 - 2014-06-19 04:12 - 02239488 _____ (Microsoft Corporation) C:\windows\system32\wininet.dll 2014-07-09 23:13 - 2014-06-19 04:12 - 01366528 _____ (Microsoft Corporation) C:\windows\system32\urlmon.dll 2014-07-09 23:13 - 2014-06-19 04:12 - 00915968 _____ (Microsoft Corporation) C:\windows\system32\uxtheme.dll 2014-07-09 23:13 - 2014-06-19 04:12 - 00053760 _____ (Microsoft Corporation) C:\windows\system32\UXInit.dll 2014-07-09 23:13 - 2014-06-19 04:12 - 00051712 _____ (Microsoft Corporation) C:\windows\system32\ie4uinit.exe 2014-07-09 23:13 - 2014-06-19 04:11 - 00197120 _____ (Microsoft Corporation) C:\windows\system32\msrating.dll 2014-07-09 23:13 - 2014-06-19 04:11 - 00097792 _____ (Microsoft Corporation) C:\windows\system32\mshtmled.dll 2014-07-09 23:13 - 2014-06-19 04:10 - 15369728 _____ (Microsoft Corporation) C:\windows\system32\ieframe.dll 2014-07-09 23:13 - 2014-06-19 04:10 - 03959296 _____ (Microsoft Corporation) C:\windows\system32\jscript9.dll 2014-07-09 23:13 - 2014-06-19 04:10 - 02650624 _____ (Microsoft Corporation) C:\windows\system32\iertutil.dll 2014-07-09 23:13 - 2014-06-19 04:10 - 00855552 _____ (Microsoft Corporation) C:\windows\system32\jscript.dll 2014-07-09 23:13 - 2014-06-19 04:10 - 00603136 _____ (Microsoft Corporation) C:\windows\system32\msfeeds.dll 2014-07-09 23:13 - 2014-06-19 04:10 - 00452096 _____ (Microsoft Corporation) C:\windows\system32\dxtmsft.dll 2014-07-09 23:13 - 2014-06-19 04:10 - 00281600 _____ (Microsoft Corporation) C:\windows\system32\dxtrans.dll 2014-07-09 23:13 - 2014-06-19 04:10 - 00255488 _____ (Microsoft Corporation) C:\windows\system32\iedkcs32.dll 2014-07-09 23:13 - 2014-06-19 04:10 - 00136704 _____ (Microsoft Corporation) C:\windows\system32\iesysprep.dll 2014-07-09 23:13 - 2014-06-19 04:10 - 00067072 _____ (Microsoft Corporation) C:\windows\system32\iesetup.dll 2014-07-09 23:13 - 2014-06-19 04:10 - 00053760 _____ (Microsoft Corporation) C:\windows\system32\jsproxy.dll 2014-07-09 23:13 - 2014-06-19 04:10 - 00039936 _____ (Microsoft Corporation) C:\windows\system32\iernonce.dll 2014-07-09 23:13 - 2014-06-19 04:09 - 01508864 _____ (Microsoft Corporation) C:\windows\system32\inetcpl.cpl 2014-07-09 23:13 - 2014-06-19 02:53 - 01766400 _____ (Microsoft Corporation) C:\windows\SysWOW64\wininet.dll 2014-07-09 23:13 - 2014-06-19 02:53 - 01141760 _____ (Microsoft Corporation) C:\windows\SysWOW64\urlmon.dll 2014-07-09 23:13 - 2014-06-19 02:53 - 00493056 _____ (Microsoft Corporation) C:\windows\SysWOW64\msfeeds.dll 2014-07-09 23:13 - 2014-06-19 02:53 - 00163840 _____ (Microsoft Corporation) C:\windows\SysWOW64\msrating.dll 2014-07-09 23:13 - 2014-06-19 02:53 - 00080896 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmled.dll 2014-07-09 23:13 - 2014-06-19 02:53 - 00044032 _____ (Microsoft Corporation) C:\windows\SysWOW64\UXInit.dll 2014-07-09 23:13 - 2014-06-19 02:52 - 13732352 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieframe.dll 2014-07-09 23:13 - 2014-06-19 02:52 - 02863616 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9.dll 2014-07-09 23:13 - 2014-06-19 02:52 - 02051072 _____ (Microsoft Corporation) C:\windows\SysWOW64\iertutil.dll 2014-07-09 23:13 - 2014-06-19 02:52 - 01440768 _____ (Microsoft Corporation) C:\windows\SysWOW64\inetcpl.cpl 2014-07-09 23:13 - 2014-06-19 02:52 - 00690688 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript.dll 2014-07-09 23:13 - 2014-06-19 02:52 - 00357888 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxtmsft.dll 2014-07-09 23:13 - 2014-06-19 02:52 - 00226816 _____ (Microsoft Corporation) C:\windows\SysWOW64\iedkcs32.dll 2014-07-09 23:13 - 2014-06-19 02:52 - 00226816 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxtrans.dll 2014-07-09 23:13 - 2014-06-19 02:52 - 00109056 _____ (Microsoft Corporation) C:\windows\SysWOW64\iesysprep.dll 2014-07-09 23:13 - 2014-06-19 02:52 - 00061440 _____ (Microsoft Corporation) C:\windows\SysWOW64\iesetup.dll 2014-07-09 23:13 - 2014-06-19 02:52 - 00039936 _____ (Microsoft Corporation) C:\windows\SysWOW64\jsproxy.dll 2014-07-09 23:13 - 2014-06-19 02:52 - 00033280 _____ (Microsoft Corporation) C:\windows\SysWOW64\iernonce.dll 2014-07-09 23:13 - 2014-06-19 02:33 - 02706432 _____ (Microsoft Corporation) C:\windows\system32\mshtml.tlb 2014-07-09 23:13 - 2014-06-19 02:30 - 02706432 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.tlb 2014-07-09 23:13 - 2014-06-19 00:05 - 00534528 _____ (Microsoft Corporation) C:\windows\SysWOW64\uxtheme.dll 2014-07-09 23:12 - 2014-06-06 16:06 - 00596480 _____ (Microsoft Corporation) C:\windows\system32\qedit.dll 2014-07-09 23:12 - 2014-06-06 12:17 - 00497152 _____ (Microsoft Corporation) C:\windows\SysWOW64\qedit.dll 2014-07-09 23:12 - 2014-05-30 00:24 - 00576512 _____ (Microsoft Corporation) C:\windows\system32\Drivers\afd.sys 2014-07-09 13:09 - 2014-07-09 13:09 - 11204096 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\FlashPlayerInstaller.exe 2014-07-07 09:06 - 2014-07-07 09:06 - 00281440 _____ () C:\windows\Minidump\070714-62515-01.dmp 2014-07-04 07:58 - 2014-07-04 07:58 - 00004276 _____ () C:\windows\System32\Tasks\ReimageUpdater 2014-07-04 07:58 - 2014-07-04 07:58 - 00003440 _____ () C:\windows\System32\Tasks\Reimage Reminder 2014-07-04 07:57 - 2014-07-04 07:58 - 00000000 ____D () C:\rei 2014-07-04 07:57 - 2014-07-04 07:58 - 00000000 ____D () C:\ProgramData\Reimage Protector 2014-07-04 07:57 - 2014-07-04 07:57 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Reimage Repair 2014-07-04 07:56 - 2014-07-29 17:12 - 00000163 _____ () C:\windows\Reimage.ini 2014-07-04 07:55 - 2014-07-04 07:55 - 00000000 ____D () C:\Users\Yannick\AppData\Roaming\MySQL 2014-07-04 07:54 - 2014-07-04 07:58 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MySQL 2014-07-04 07:53 - 2014-07-04 07:58 - 00000000 ____D () C:\Program Files (x86)\MySQL ==================== One Month Modified Files and Folders ======= (If an entry is included in the fixlist, the file\folder will be moved.) 2014-08-03 18:18 - 2014-08-03 13:56 - 00000000 ____D () C:\FRST 2014-08-03 18:18 - 2013-05-23 21:04 - 00000000 ____D () C:\Users\Yannick\AppData\Roaming\Skype 2014-08-03 18:17 - 2013-05-23 22:59 - 00004182 _____ () C:\windows\System32\Tasks\avast! Emergency Update 2014-08-03 18:16 - 2014-08-03 17:40 - 00122584 _____ (Malwarebytes Corporation) C:\windows\system32\Drivers\MBAMSwissArmy.sys 2014-08-03 18:16 - 2013-07-03 18:13 - 00000000 ____D () C:\Program Files (x86)\Steam 2014-08-03 18:16 - 2013-05-23 20:42 - 00001124 _____ () C:\windows\Tasks\GoogleUpdateTaskMachineCore.job 2014-08-03 18:14 - 2012-07-26 09:22 - 00000006 ____H () C:\windows\Tasks\SA.DAT 2014-08-03 18:13 - 2012-09-11 07:42 - 00162380 _____ () C:\windows\PFRO.log 2014-08-03 18:13 - 2012-07-26 07:26 - 00262144 ___SH () C:\windows\system32\config\BBI 2014-08-03 18:09 - 2013-11-16 10:43 - 00000884 _____ () C:\windows\Tasks\Adobe Flash Player Updater.job 2014-08-03 18:08 - 2013-05-23 20:42 - 00003596 _____ () C:\windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-376805668-1328626857-418462850-1001 2014-08-03 18:00 - 2012-07-26 10:12 - 00000000 ____D () C:\windows\system32\sru 2014-08-03 17:40 - 2014-08-03 17:40 - 00001113 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2014-08-03 17:40 - 2014-08-03 17:40 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 2014-08-03 17:40 - 2014-08-03 17:40 - 00000000 ____D () C:\ProgramData\Malwarebytes 2014-08-03 17:40 - 2014-08-03 17:40 - 00000000 ____D () C:\Program Files (x86)\ Malwarebytes Anti-Malware 2014-08-03 17:39 - 2014-08-03 17:39 - 00001341 _____ () C:\Users\Yannick\Desktop\JRT.txt 2014-08-03 17:27 - 2013-05-23 20:42 - 00001128 _____ () C:\windows\Tasks\GoogleUpdateTaskMachineUA.job 2014-08-03 17:24 - 2014-08-03 17:24 - 00000000 ____D () C:\windows\ERUNT 2014-08-03 17:17 - 2013-12-01 18:57 - 00001111 _____ () C:\Users\Yannick\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Search.lnk 2014-08-03 17:17 - 2013-08-31 16:57 - 00000000 ____D () C:\AdwCleaner 2014-08-03 17:17 - 2013-05-23 20:43 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome 2014-08-03 17:17 - 2013-05-23 20:33 - 00000970 _____ () C:\Users\Yannick\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2014-08-03 16:00 - 2014-08-03 16:00 - 00001275 _____ () C:\Users\Yannick\Desktop\Revo Uninstaller.lnk 2014-08-03 16:00 - 2014-08-03 16:00 - 00000000 ____D () C:\Program Files (x86)\VS Revo Group 2014-08-03 14:09 - 2014-08-03 14:08 - 00281496 _____ () C:\windows\Minidump\080314-36890-01.dmp 2014-08-03 14:08 - 2013-05-26 16:37 - 831851162 _____ () C:\windows\MEMORY.DMP 2014-08-03 14:08 - 2013-05-26 16:37 - 00000000 ____D () C:\windows\Minidump 2014-08-03 13:54 - 2014-08-03 13:54 - 00000168 _____ () C:\Users\Yannick\defogger_reenable 2014-08-03 13:54 - 2013-05-23 20:30 - 00000000 ____D () C:\Users\Yannick 2014-08-03 13:46 - 2012-08-01 18:38 - 00753134 _____ () C:\windows\system32\perfh007.dat 2014-08-03 13:46 - 2012-08-01 18:38 - 00155826 _____ () C:\windows\system32\perfc007.dat 2014-08-03 13:46 - 2012-07-26 09:28 - 01745416 _____ () C:\windows\system32\PerfStringBackup.INI 2014-08-03 11:37 - 2014-08-01 17:08 - 00000094 _____ () C:\Users\PartyPoker\TablePositions.txt 2014-08-03 11:37 - 2014-08-01 17:08 - 00000000 _____ () C:\Users\PartyPoker\pst_flts.txt 2014-08-03 11:37 - 2014-08-01 14:30 - 00000160 _____ () C:\Users\PartyPoker\OCLCards_FilterState.txt 2014-08-03 11:37 - 2014-08-01 14:30 - 00000000 _____ () C:\Users\PartyPoker\usertab2.txt 2014-08-03 11:37 - 2014-08-01 14:30 - 00000000 _____ () C:\Users\PartyPoker\usertab1.txt 2014-08-03 11:37 - 2014-08-01 14:30 - 00000000 _____ () C:\Users\PartyPoker\grptblsusertab.txt 2014-08-03 11:37 - 2014-08-01 14:30 - 00000000 _____ () C:\Users\PartyPoker\achievements 2014-08-03 11:37 - 2014-07-14 12:13 - 00005757 _____ () C:\Users\PartyPoker\LHN.txt 2014-08-03 11:37 - 2014-07-02 12:03 - 00000000 ____D () C:\Users\PartyPoker 2014-08-03 11:37 - 2014-06-17 13:28 - 00415624 _____ () C:\Users\PartyPoker\PokerTabConfig.txt 2014-08-03 11:36 - 2014-08-01 14:30 - 00000156 _____ () C:\Users\PartyPoker\ppunistall.bat 2014-08-03 11:36 - 2014-07-02 12:03 - 00000000 ____D () C:\Users\Language\en_US 2014-08-03 02:20 - 2014-04-11 19:08 - 00000000 ____D () C:\Users\Yannick\AppData\Local\PokerStars.FR 2014-08-03 02:20 - 2013-05-23 21:37 - 00000000 ____D () C:\Users\Yannick\AppData\Local\PokerStars.EU 2014-08-03 02:17 - 2014-08-03 02:17 - 00001083 _____ () C:\Users\postgres\Desktop\schlaegerei.de cdScherz.lnk 2014-08-03 02:17 - 2014-08-03 02:17 - 00000000 ____D () C:\Users\Yannick\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\schlaegerei.de cdScherz 2014-08-03 02:17 - 2014-08-03 02:17 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\schlaegerei.de cdScherz 2014-08-03 02:17 - 2014-08-03 02:17 - 00000000 ____D () C:\Program Files (x86)\schlaegerei.de cdScherz 2014-08-03 02:16 - 2014-08-03 01:59 - 00000000 ____D () C:\Program Files (x86)\proxyfixlolbastarde 2014-08-03 02:14 - 2014-08-03 02:14 - 00078228 _____ (Philipp Winterberg) C:\Users\Yannick\fixproxy2013.exe 2014-08-03 01:46 - 2013-12-07 17:14 - 00000000 ___RD () C:\Users\Yannick\Dropbox 2014-08-03 01:46 - 2013-12-07 17:12 - 00000000 ____D () C:\Users\Yannick\AppData\Roaming\Dropbox 2014-08-03 01:34 - 2013-05-23 21:27 - 00000000 ____D () C:\Users\Yannick\AppData\Roaming\HoldemManager 2014-08-03 01:25 - 2014-07-30 04:02 - 00000000 ____D () C:\Program Files (x86)\CarbonPoker 2014-08-03 00:44 - 2013-12-03 16:06 - 00000000 ____D () C:\Program Files\Microsoft Office 15 2014-08-03 00:36 - 2014-08-03 00:36 - 00000000 ____D () C:\Users\Common\Temp 2014-08-03 00:36 - 2014-07-02 12:03 - 00000000 ____D () C:\Users\Common 2014-08-03 00:27 - 2014-08-03 00:26 - 00281440 _____ () C:\windows\Minidump\080314-53062-01.dmp 2014-08-03 00:26 - 2013-06-29 02:07 - 00000000 ____D () C:\Program Files\WinRAR 2014-08-03 00:21 - 2014-08-01 16:00 - 00000428 _____ () C:\Users\PartyPoker\Notes.txt 2014-08-02 23:50 - 2014-08-01 14:40 - 00000010 _____ () C:\Users\announce.txt 2014-08-02 23:45 - 2014-08-01 15:37 - 00001872 _____ () C:\Users\PartyPoker_tzcrashfile.txt 2014-08-02 22:12 - 2013-05-23 21:38 - 00115377 _____ () C:\blitzerr.txt 2014-08-02 22:01 - 2014-08-01 17:08 - 00000003 _____ () C:\Users\PartyPoker\pp_YTheSnaiL_favorites.txt 2014-08-02 22:01 - 2014-08-01 17:08 - 00000000 _____ () C:\Users\PartyPoker\pp_YTheSnaiL_c-o-i.txt 2014-08-02 22:01 - 2014-08-01 14:30 - 00000000 ____D () C:\Users\Temp 2014-08-02 21:51 - 2014-07-13 10:42 - 00015413 _____ () C:\windows\system32\ScanResults.xml 2014-08-02 21:44 - 2014-07-13 10:34 - 00000464 _____ () C:\windows\system32\ScannerSettings 2014-08-02 11:48 - 2014-07-02 12:03 - 00000000 ____D () C:\Users\PartyPoker\Images 2014-08-01 19:21 - 2013-10-17 18:35 - 00000000 ____D () C:\Program Files\eclipse 2014-08-01 17:08 - 2014-08-01 17:08 - 00000000 _____ () C:\Users\PartyPoker\WatchList.txt 2014-08-01 17:06 - 2014-07-15 20:46 - 00042808 _____ () C:\Users\PartyPoker\GRA.ini 2014-08-01 17:06 - 2014-07-15 20:46 - 00000768 _____ () C:\Users\PartyPoker\SYS.ini 2014-08-01 17:06 - 2014-06-17 12:39 - 00039608 _____ () C:\Users\ARA.ini 2014-08-01 14:30 - 2014-08-01 14:30 - 01224125 _____ () C:\Users\PartyPoker\HHReplayer.swf 2014-08-01 14:30 - 2014-08-01 14:30 - 00000000 ____D () C:\Users\PartyPoker\Stats 2014-08-01 14:29 - 2014-08-01 14:29 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\partypoker 2014-08-01 14:29 - 2014-07-02 12:03 - 00001480 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\partypoker.lnk 2014-08-01 14:29 - 2014-07-02 12:03 - 00001456 _____ () C:\Users\Yannick\Desktop\partypoker.lnk 2014-08-01 14:29 - 2014-07-02 12:03 - 00000000 ____D () C:\Users\SmartUpgrader 2014-08-01 14:29 - 2014-07-02 12:03 - 00000000 ____D () C:\Users\PartyPoker\Uninstall 2014-08-01 14:29 - 2014-07-02 12:03 - 00000000 ____D () C:\Users\EBEngine\MSIE 2014-08-01 14:29 - 2014-07-02 12:03 - 00000000 ____D () C:\Users\EBEngine\GGCH 2014-08-01 14:29 - 2013-05-23 21:43 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games 2014-08-01 14:28 - 2014-08-01 14:28 - 00000000 ____D () C:\Users\SmartUpgrader\Temp 2014-08-01 14:28 - 2014-07-02 12:03 - 00002384 _____ () C:\Users\PartyPoker\UpgradeVersion.txt 2014-08-01 14:28 - 2014-07-02 12:03 - 00002173 _____ () C:\Users\UpgradeVersion.txt 2014-08-01 14:28 - 2014-07-02 12:03 - 00000525 _____ () C:\Users\SmartUpgrader\UpgradeVersion.txt 2014-08-01 14:28 - 2014-07-02 12:03 - 00000162 _____ () C:\Users\Common\UpgradeVersion.txt 2014-08-01 14:28 - 2014-07-02 12:03 - 00000032 _____ () C:\Users\SmartUpgradeVersion.txt 2014-08-01 14:28 - 2014-07-02 12:03 - 00000032 _____ () C:\Users\SmartUpgrader\SmartUpgradeVersion.txt 2014-08-01 14:28 - 2014-07-02 12:03 - 00000032 _____ () C:\Users\PartyPoker\SmartUpgradeVersion.txt 2014-08-01 14:28 - 2014-07-02 12:03 - 00000032 _____ () C:\Users\Common\SmartUpgradeVersion.txt 2014-08-01 14:04 - 2013-10-11 23:06 - 00000000 ____D () C:\Program Files (x86)\Full Tilt Poker.Eu 2014-08-01 14:01 - 2013-10-11 23:17 - 23866628 _____ () C:\rusherr.txt 2014-08-01 13:11 - 2014-08-01 13:11 - 00092008 _____ (AVAST Software) C:\windows\system32\Drivers\aswStm.sys 2014-08-01 13:11 - 2014-08-01 13:11 - 00043152 _____ (AVAST Software) C:\windows\avastSS.scr 2014-08-01 13:11 - 2014-08-01 13:11 - 00029208 _____ () C:\windows\system32\Drivers\aswHwid.sys 2014-08-01 13:11 - 2013-05-23 22:59 - 01041168 _____ (AVAST Software) C:\windows\system32\Drivers\aswSnx.sys 2014-08-01 13:11 - 2013-05-23 22:59 - 00427360 _____ (AVAST Software) C:\windows\system32\Drivers\aswsp.sys 2014-08-01 13:11 - 2013-05-23 22:59 - 00307344 _____ (AVAST Software) C:\windows\system32\aswBoot.exe 2014-08-01 13:11 - 2013-05-23 22:59 - 00224896 _____ () C:\windows\system32\Drivers\aswVmm.sys 2014-08-01 13:11 - 2013-05-23 22:59 - 00093568 _____ (AVAST Software) C:\windows\system32\Drivers\aswRdr2.sys 2014-08-01 13:11 - 2013-05-23 22:59 - 00079184 _____ (AVAST Software) C:\windows\system32\Drivers\aswMonFlt.sys 2014-08-01 13:11 - 2013-05-23 22:59 - 00065776 _____ () C:\windows\system32\Drivers\aswRvrt.sys 2014-08-01 01:10 - 2013-05-23 21:37 - 00000000 ____D () C:\Program Files (x86)\PokerStars.EU 2014-07-30 20:15 - 2014-07-30 20:15 - 00000000 ____D () C:\Program Files (x86)\Winamax Poker 2014-07-30 20:15 - 2014-06-10 10:06 - 00000944 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Winamax Poker.lnk 2014-07-30 20:15 - 2014-06-10 10:06 - 00000932 _____ () C:\Users\Public\Desktop\Winamax Poker.lnk 2014-07-30 20:13 - 2014-03-20 12:44 - 00001718 _____ () C:\speederr.txt 2014-07-30 20:13 - 2013-05-23 21:08 - 00000000 ____D () C:\Users\Yannick\Documents\888poker 2014-07-30 20:13 - 2013-05-23 20:32 - 00000000 ____D () C:\Users\Yannick\AppData\Local\VirtualStore 2014-07-30 20:05 - 2014-07-30 20:05 - 00002018 _____ () C:\Users\Yannick\Desktop\888poker.lnk 2014-07-30 20:05 - 2014-07-30 20:05 - 00002018 _____ () C:\Users\postgres\Desktop\888poker.lnk 2014-07-30 20:05 - 2014-07-30 20:05 - 00000000 ____D () C:\Users\Yannick\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\888poker 2014-07-30 20:05 - 2014-07-30 20:05 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\888poker 2014-07-30 20:05 - 2014-07-30 20:04 - 00000000 ____D () C:\Users\Yannick\AppData\Roaming\PacificPoker 2014-07-30 20:05 - 2014-07-30 20:04 - 00000000 ____D () C:\Program Files (x86)\PacificPoker 2014-07-30 12:38 - 2013-05-23 21:35 - 00000000 ____D () C:\HM2Archive 2014-07-30 12:26 - 2014-07-30 12:26 - 00000000 ____D () C:\Users\Yannick\AppData\Local\eclipse 2014-07-30 12:26 - 2014-07-30 04:03 - 00000000 ____D () C:\Users\Yannick\AppData\Local\CarbonPoker 2014-07-30 04:03 - 2013-10-31 11:40 - 00000000 ____D () C:\Users\Yannick\AppData\Roaming\mozilla 2014-07-30 04:02 - 2014-07-30 04:02 - 00001917 _____ () C:\Users\Yannick\Desktop\CarbonPoker.lnk 2014-07-30 04:02 - 2014-07-30 04:02 - 00000000 ____D () C:\Users\Yannick\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CarbonPoker 2014-07-29 19:48 - 2013-06-05 23:22 - 00000000 ____D () C:\Users\Yannick\AppData\Roaming\vlc 2014-07-29 19:47 - 2014-04-06 14:43 - 00000000 ____D () C:\Users\Yannick\Desktop\Content 2014-07-29 19:23 - 2013-06-29 02:11 - 00000000 ____D () C:\Users\Yannick\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR 2014-07-29 19:23 - 2013-06-29 02:11 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR 2014-07-29 19:19 - 2014-07-29 19:19 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TUGZip 2014-07-29 19:19 - 2014-07-29 19:19 - 00000000 ____D () C:\Program Files (x86)\TUGZip 2014-07-29 17:12 - 2014-07-04 07:56 - 00000163 _____ () C:\windows\Reimage.ini 2014-07-29 16:58 - 2014-07-28 23:58 - 00000000 _____ () C:\windows\system32\ExtraInfo.txt 2014-07-27 18:38 - 2014-07-27 18:36 - 00000000 ___RD () C:\Program Files (x86)\Skype 2014-07-27 18:37 - 2014-07-27 18:37 - 00000000 ____D () C:\Users\Yannick\AppData\Local\Skype 2014-07-27 18:36 - 2014-07-27 18:36 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype 2014-07-27 18:36 - 2013-05-23 21:03 - 00000000 ____D () C:\ProgramData\Skype 2014-07-27 18:31 - 2014-02-22 20:15 - 00000000 ____D () C:\Users\Yannick\AppData\Local\CrashDumps 2014-07-27 14:14 - 2014-04-11 19:07 - 00000000 ____D () C:\Program Files (x86)\PokerStars.FR 2014-07-25 13:23 - 2013-12-07 17:13 - 00000000 ____D () C:\Users\Yannick\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox 2014-07-25 13:15 - 2014-07-25 13:15 - 00281384 _____ () C:\windows\Minidump\072514-51671-01.dmp 2014-07-24 13:22 - 2013-05-23 20:31 - 02084853 _____ () C:\windows\WindowsUpdate.log 2014-07-24 10:47 - 2012-07-26 10:12 - 00000000 ____D () C:\windows\AUInstallAgent 2014-07-22 02:11 - 2014-04-03 12:58 - 00000000 ____D () C:\Program Files (x86)\PKR 2014-07-22 02:10 - 2014-07-22 01:59 - 00000000 ____D () C:\Users\Yannick\AppData\Local\Winner Poker 2014-07-22 02:05 - 2014-07-22 02:00 - 00000000 ____D () C:\Users\Yannick\Documents\WSOP Online 2014-07-22 02:00 - 2014-07-22 02:00 - 00001966 _____ () C:\Users\postgres\Desktop\WSOP.com.lnk 2014-07-22 02:00 - 2014-07-22 02:00 - 00001810 _____ () C:\Users\Yannick\AppData\Roaming\Microsoft\Windows\Start Menu\Winner Poker.lnk 2014-07-22 02:00 - 2014-07-22 02:00 - 00000000 ____D () C:\Users\Yannick\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WSOP.com 2014-07-22 02:00 - 2014-07-22 02:00 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WSOP.com 2014-07-22 02:00 - 2014-07-22 01:58 - 00000000 ____D () C:\Users\Yannick\AppData\Roaming\WSOP.com 2014-07-22 02:00 - 2014-07-22 01:58 - 00000000 ____D () C:\Program Files (x86)\WSOP.com 2014-07-22 01:53 - 2014-04-04 18:33 - 00000000 ____D () C:\RedKings 2014-07-22 01:39 - 2014-07-22 01:39 - 00000000 ____D () C:\Users\Yannick\AppData\Roaming\Party 2014-07-22 01:39 - 2013-11-26 23:34 - 00000000 ____D () C:\Users\Yannick\AppData\Roaming\cef-cache 2014-07-21 11:34 - 2014-07-21 11:34 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\bwin Poker 2014-07-21 11:34 - 2014-03-26 14:43 - 00001489 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\bwin Poker.lnk 2014-07-21 11:34 - 2014-03-26 14:43 - 00001483 _____ () C:\Users\Yannick\Desktop\bwin Poker.lnk 2014-07-15 20:46 - 2014-07-15 20:46 - 00045592 _____ () C:\Users\PartyPoker\table.bin 2014-07-15 20:46 - 2014-07-15 20:46 - 00042064 _____ () C:\Users\PartyPoker\poker.bin 2014-07-15 20:46 - 2014-07-15 20:46 - 00025872 _____ () C:\Users\PartyPoker\newtable.bin 2014-07-15 20:46 - 2014-07-15 20:46 - 00000016 _____ () C:\Users\PartyPoker\dynamic.bin 2014-07-15 20:44 - 2014-07-15 20:44 - 01914880 _____ (iGlobalMedia.com) C:\Users\PartyPoker\PartyPoker.dll 2014-07-15 20:44 - 2014-07-15 20:44 - 00000022 _____ () C:\Users\PartyPoker\Version.ini 2014-07-15 20:42 - 2014-07-15 20:42 - 03750400 _____ () C:\Users\PartyPoker\GameTable.dll 2014-07-15 20:38 - 2014-07-15 20:38 - 01101824 _____ (iGlobalMedia.com) C:\Users\PartyPoker\Tournament.dll 2014-07-15 20:37 - 2014-07-15 20:37 - 02512384 _____ (iGlobalMedia.com) C:\Users\PartyPoker\Lobby.dll 2014-07-15 18:10 - 2014-06-30 21:20 - 00000000 ____D () C:\Users\Yannick\workspace2 2014-07-14 21:46 - 2013-10-11 23:17 - 00000000 ____D () C:\Users\Yannick\AppData\Local\FullTiltPoker.eu 2014-07-14 14:16 - 2014-04-17 07:51 - 00000000 ____D () C:\Users\Yannick\Desktop\juuunge 2014-07-14 12:44 - 2014-07-14 12:44 - 00000451 _____ () C:\Users\CleanUp.txt 2014-07-14 12:38 - 2014-07-14 12:38 - 00486704 _____ () C:\windows\system32\FNTCACHE.DAT 2014-07-14 12:37 - 2014-07-14 12:37 - 02309632 _____ () C:\Users\PartyGaming.exe 2014-07-14 12:37 - 2014-07-14 12:37 - 00000022 _____ () C:\Users\Version.ini 2014-07-14 12:13 - 2014-07-14 12:13 - 00421316 _____ () C:\Users\PartyPoker\TabConfig.txt 2014-07-14 12:13 - 2014-07-14 12:13 - 00116256 _____ () C:\Users\PartyPoker\TrebuchetForBP.ttf 2014-07-14 12:13 - 2014-07-14 12:13 - 00106188 _____ () C:\Users\PartyPoker\TrebuchetForBP-Bold.ttf 2014-07-14 12:13 - 2014-07-14 12:13 - 00005701 _____ () C:\Users\PartyPoker\MAT_Config.bin 2014-07-14 12:13 - 2014-07-14 12:13 - 00001176 _____ () C:\Users\PartyPoker\LayoutMgr.ini 2014-07-14 12:13 - 2014-07-14 12:13 - 00001104 _____ () C:\Users\PartyPoker\WLConfigData.ini 2014-07-14 00:13 - 2014-04-30 16:43 - 00001185 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer 9.lnk 2014-07-13 19:32 - 2012-07-26 10:12 - 00000000 ____D () C:\windows\rescache 2014-07-13 10:56 - 2014-07-13 10:56 - 00000000 ___SD () C:\windows\system32\CompatTel 2014-07-13 10:56 - 2012-07-26 10:12 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility 2014-07-13 10:56 - 2012-07-26 10:12 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility 2014-07-13 10:56 - 2012-07-26 10:12 - 00000000 ____D () C:\windows\WinStore 2014-07-13 10:56 - 2012-07-26 09:52 - 00000000 ____D () C:\Program Files\Windows Journal 2014-07-13 10:55 - 2014-01-29 16:29 - 00000000 ____D () C:\ProgramData\Microsoft Help 2014-07-13 10:55 - 2013-12-03 16:07 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013 2014-07-10 16:11 - 2014-06-26 14:54 - 00000000 ____D () C:\Users\Yannick\AppData\Roaming\HpUpdate 2014-07-10 05:51 - 2012-07-26 09:59 - 00000000 ____D () C:\windows\CbsTemp 2014-07-10 05:50 - 2013-07-21 21:02 - 00000000 ____D () C:\windows\system32\MRT 2014-07-10 05:36 - 2012-07-26 07:26 - 00262144 ___SH () C:\windows\system32\config\ELAM 2014-07-10 05:35 - 2013-05-25 23:56 - 96441528 _____ (Microsoft Corporation) C:\windows\system32\MRT.exe 2014-07-09 22:15 - 2013-10-11 23:17 - 00000000 ____D () C:\Users\Yannick\AppData\Local\cache 2014-07-09 13:09 - 2014-07-09 13:09 - 11204096 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\FlashPlayerInstaller.exe 2014-07-09 13:09 - 2013-11-16 10:43 - 00003772 _____ () C:\windows\System32\Tasks\Adobe Flash Player Updater 2014-07-08 13:30 - 2013-05-23 23:00 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive 2014-07-07 09:06 - 2014-07-07 09:06 - 00281440 _____ () C:\windows\Minidump\070714-62515-01.dmp 2014-07-06 18:23 - 2013-12-07 17:15 - 00000000 ___RD () C:\Users\Yannick\Desktop\[uni] 2. Semester 2014-07-04 07:58 - 2014-07-04 07:58 - 00004276 _____ () C:\windows\System32\Tasks\ReimageUpdater 2014-07-04 07:58 - 2014-07-04 07:58 - 00003440 _____ () C:\windows\System32\Tasks\Reimage Reminder 2014-07-04 07:58 - 2014-07-04 07:57 - 00000000 ____D () C:\rei 2014-07-04 07:58 - 2014-07-04 07:57 - 00000000 ____D () C:\ProgramData\Reimage Protector 2014-07-04 07:58 - 2014-07-04 07:54 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MySQL 2014-07-04 07:58 - 2014-07-04 07:53 - 00000000 ____D () C:\Program Files (x86)\MySQL 2014-07-04 07:57 - 2014-07-04 07:57 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Reimage Repair 2014-07-04 07:55 - 2014-07-04 07:55 - 00000000 ____D () C:\Users\Yannick\AppData\Roaming\MySQL Files to move or delete: ==================== C:\Users\PartyPoker\GameTable.dll C:\Users\PartyPoker\ImageOle.dll C:\Users\PartyPoker\Lobby.dll C:\Users\PartyPoker\PartyPoker.dll C:\Users\PartyPoker\PL.exe C:\Users\PartyPoker\ppunistall.bat C:\Users\PartyPoker\RunApp.exe C:\Users\PartyPoker\Tournament.dll C:\Users\SmartUpgrader\PGSmartUpgrade.exe C:\Users\SmartUpgrader\SIInvoker.exe C:\Users\SmartUpgrader\zlib.dll C:\Users\Yannick\fixproxy2013.exe Some content of TEMP: ==================== C:\Users\Yannick\AppData\Local\Temp\amazonicon_v4.exe C:\Users\Yannick\AppData\Local\Temp\amazoninstallernircmdc.exe C:\Users\Yannick\AppData\Local\Temp\BackupSetup.exe C:\Users\Yannick\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmp5glr1h.dll C:\Users\Yannick\AppData\Local\Temp\gcn9fnvk.dll C:\Users\Yannick\AppData\Local\Temp\ICReinstall_poker-stove.exe C:\Users\Yannick\AppData\Local\Temp\install_reader11_de_mssa_aaa_aih.exe C:\Users\Yannick\AppData\Local\Temp\inter_silent_tray.exe C:\Users\Yannick\AppData\Local\Temp\javasysmo3210042159891958486.dll C:\Users\Yannick\AppData\Local\Temp\javasysmo4034620567179055564.dll C:\Users\Yannick\AppData\Local\Temp\javasysmo4545238212089824748.dll C:\Users\Yannick\AppData\Local\Temp\javasysmo6584338163331150818.dll C:\Users\Yannick\AppData\Local\Temp\javasysmo832591612084447089.dll C:\Users\Yannick\AppData\Local\Temp\jna1092601799434006943.hunspell-win-x86-32.dll C:\Users\Yannick\AppData\Local\Temp\jna1382815106763845900.hunspell-win-x86-32.dll C:\Users\Yannick\AppData\Local\Temp\jna1398316763662307130.hunspell-win-x86-32.dll C:\Users\Yannick\AppData\Local\Temp\jna271576333940789279.hunspell-win-x86-32.dll C:\Users\Yannick\AppData\Local\Temp\jna3524573978566295376.hunspell-win-x86-32.dll C:\Users\Yannick\AppData\Local\Temp\jna3763226871038738485.hunspell-win-x86-32.dll C:\Users\Yannick\AppData\Local\Temp\jna3995108147723476170.hunspell-win-x86-32.dll C:\Users\Yannick\AppData\Local\Temp\jna4267516392642742264.hunspell-win-x86-32.dll C:\Users\Yannick\AppData\Local\Temp\jna5713082753115990423.hunspell-win-x86-32.dll C:\Users\Yannick\AppData\Local\Temp\jna5945168426222980695.hunspell-win-x86-32.dll C:\Users\Yannick\AppData\Local\Temp\jna5983785291643483458.hunspell-win-x86-32.dll C:\Users\Yannick\AppData\Local\Temp\jna6306396181446053234.hunspell-win-x86-32.dll C:\Users\Yannick\AppData\Local\Temp\jna7071905532789194378.hunspell-win-x86-32.dll C:\Users\Yannick\AppData\Local\Temp\jna7829736227367670686.hunspell-win-x86-32.dll C:\Users\Yannick\AppData\Local\Temp\jna8278009235166141801.hunspell-win-x86-32.dll C:\Users\Yannick\AppData\Local\Temp\jna9108868250183362559.hunspell-win-x86-32.dll C:\Users\Yannick\AppData\Local\Temp\jre-7u51-windows-i586-iftw.exe C:\Users\Yannick\AppData\Local\Temp\OfficeSetup.exe C:\Users\Yannick\AppData\Local\Temp\proxy_vole7055114643300721654.dll C:\Users\Yannick\AppData\Local\Temp\Quarantine.exe C:\Users\Yannick\AppData\Local\Temp\ReimagePackage.exe C:\Users\Yannick\AppData\Local\Temp\ReimageRepair.exe C:\Users\Yannick\AppData\Local\Temp\sdanircmdc.exe C:\Users\Yannick\AppData\Local\Temp\sdapskill.exe C:\Users\Yannick\AppData\Local\Temp\setup.exe C:\Users\Yannick\AppData\Local\Temp\SIInvoker.exe C:\Users\Yannick\AppData\Local\Temp\SkypeSetup.exe C:\Users\Yannick\AppData\Local\Temp\Tsu008CE760.dll ==================== Bamital & volsnap Check ================= (There is no automatic fix for files that do not pass verification.) C:\Windows\System32\winlogon.exe => File is digitally signed C:\Windows\System32\wininit.exe => File is digitally signed C:\Windows\explorer.exe => File is digitally signed C:\Windows\SysWOW64\explorer.exe => File is digitally signed C:\Windows\System32\svchost.exe => File is digitally signed C:\Windows\SysWOW64\svchost.exe => File is digitally signed C:\Windows\System32\services.exe => File is digitally signed C:\Windows\System32\User32.dll => File is digitally signed C:\Windows\SysWOW64\User32.dll => File is digitally signed C:\Windows\System32\userinit.exe => File is digitally signed C:\Windows\SysWOW64\userinit.exe => File is digitally signed C:\Windows\System32\rpcss.dll => File is digitally signed C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed LastRegBack: 2014-07-26 08:51 ==================== End Of Log ============================ --- --- --- |
03.08.2014, 18:28 | #10 |
/// TB-Ausbilder | proxyserver blockiert Internetzugriff fast aller programme Drücke bitte die Windowstaste + R Taste und schreibe notepad in das Ausführen Fenster. Kopiere nun folgenden Text aus der Code-Box in das leere Textdokument Code:
ATTFilter file: C:\Program Files (x86)\Google\Update\1.3.24.15\GoogleCrashHandler64.exe file: C:\Users\Yannick\AppData\Local\Google\Chrome\User Data\Default\Extensions\ioelihbboagbangdfggambponclgniah file: C:\Users\Yannick\AppData\Local\Google\Chrome\User Data\Default\Extensions\ogfjmhfnldnajmfaofeiaepghjenbgjo file: C:\Program Files (x86)\LyricsPlug\Chrome.crx file: C:\Users\Yannick\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkcedibhemacmilmkpndpkoidlnmgngg Speichere diese bitte als Fixlist.txt auf deinem Desktop (oder dem Verzeichnis in dem sich FRST befindet).
|
03.08.2014, 19:01 | #11 |
| proxyserver blockiert Internetzugriff fast aller programme erledigt, hier die fixlog: Code:
ATTFilter Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 02-08-2014 Ran by Yannick at 2014-08-03 19:59:58 Run:1 Running from G:\ Boot Mode: Normal ============================================== Content of fixlist: ***************** file: C:\Program Files (x86)\Google\Update\1.3.24.15\GoogleCrashHandler64.exe file: C:\Users\Yannick\AppData\Local\Google\Chrome\User Data\Default\Extensions\ioelihbboagbangdfggambponclgniah file: C:\Users\Yannick\AppData\Local\Google\Chrome\User Data\Default\Extensions\ogfjmhfnldnajmfaofeiaepghjenbgjo file: C:\Program Files (x86)\LyricsPlug\Chrome.crx file: C:\Users\Yannick\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkcedibhemacmilmkpndpkoidlnmgngg ***************** ========================= file: C:\Program Files (x86)\Google\Update\1.3.24.15\GoogleCrashHandler64.exe ======================== MD5: AA0E4F73727BFC8BA404884B1C1DB719 Creation and modification date: 2014-06-20 11:22 - 2014-06-20 11:22 Size: 0285064 Attributes: ---AT Company Name: Google Inc. Internal Name: Google Update Original Name: GoogleUpdate.exe Product Name: Google Update Description: Google Crash Handler File Version: 1.3.24.15 Product Version: 1.3.24.15 Copyright: Copyright 2007-2010 Google Inc. ====== End Of File: ====== ========================= file: C:\Users\Yannick\AppData\Local\Google\Chrome\User Data\Default\Extensions\ioelihbboagbangdfggambponclgniah ======================== MD5: Creation and modification date: 2014-06-15 00:36 - 2014-06-15 00:36 Size: 0000000 Attributes: ----D Company Name: Internal Name: Original Name: Product Name: Description: File Version: Product Version: Copyright: ====== End Of File: ====== ========================= file: C:\Users\Yannick\AppData\Local\Google\Chrome\User Data\Default\Extensions\ogfjmhfnldnajmfaofeiaepghjenbgjo ======================== MD5: Creation and modification date: 2014-02-26 18:51 - 2014-08-03 17:18 Size: 0000000 Attributes: ----D Company Name: Internal Name: Original Name: Product Name: Description: File Version: Product Version: Copyright: ====== End Of File: ====== ========================= file: C:\Program Files (x86)\LyricsPlug\Chrome.crx ======================== "C:\Program Files (x86)\LyricsPlug\Chrome.crx" not found. ====== End Of File: ====== ========================= file: C:\Users\Yannick\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkcedibhemacmilmkpndpkoidlnmgngg ======================== MD5: Creation and modification date: 2014-01-22 18:36 - 2014-08-03 17:18 Size: 0000000 Attributes: ----D Company Name: Internal Name: Original Name: Product Name: Description: File Version: Product Version: Copyright: ====== End Of File: ====== ==== End of Fixlog ==== |
03.08.2014, 19:07 | #12 |
/// TB-Ausbilder | proxyserver blockiert Internetzugriff fast aller programme Sorry ich hatte einen Fehler im Fix, kannst du bitte das hier nochmal machen ? Drücke bitte die Windowstaste + R Taste und schreibe notepad in das Ausführen Fenster. Kopiere nun folgenden Text aus der Code-Box in das leere Textdokument Code:
ATTFilter folder: C:\Users\Yannick\AppData\Local\Google\Chrome\User Data\Default\Extensions\ioelihbboagbangdfggambponclgniah folder: C:\Users\Yannick\AppData\Local\Google\Chrome\User Data\Default\Extensions\ogfjmhfnldnajmfaofeiaepghjenbgjo folder: C:\Users\Yannick\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkcedibhemacmilmkpndpkoidlnmgngg Speichere diese bitte als Fixlist.txt auf deinem Desktop (oder dem Verzeichnis in dem sich FRST befindet).
|
03.08.2014, 19:12 | #13 |
| proxyserver blockiert Internetzugriff fast aller programme hier der gefixte fixlog Code:
ATTFilter Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 02-08-2014 Ran by Yannick at 2014-08-03 20:11:06 Run:2 Running from G:\ Boot Mode: Normal ============================================== Content of fixlist: ***************** folder: C:\Users\Yannick\AppData\Local\Google\Chrome\User Data\Default\Extensions\ioelihbboagbangdfggambponclgniah folder: C:\Users\Yannick\AppData\Local\Google\Chrome\User Data\Default\Extensions\ogfjmhfnldnajmfaofeiaepghjenbgjo folder: C:\Users\Yannick\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkcedibhemacmilmkpndpkoidlnmgngg ***************** ========================= folder: C:\Users\Yannick\AppData\Local\Google\Chrome\User Data\Default\Extensions\ioelihbboagbangdfggambponclgniah ======================== 2014-06-15 00:36 - 2014-06-15 00:36 - 0000000 ____D () C:\Users\Yannick\AppData\Local\Google\Chrome\User Data\Default\Extensions\ioelihbboagbangdfggambponclgniah\2.14 2014-06-15 00:36 - 2014-06-15 00:36 - 0000141 _____ () C:\Users\Yannick\AppData\Local\Google\Chrome\User Data\Default\Extensions\ioelihbboagbangdfggambponclgniah\2.14\background.html 2013-06-15 00:36 - 2013-06-15 00:36 - 0006561 _____ () C:\Users\Yannick\AppData\Local\Google\Chrome\User Data\Default\Extensions\ioelihbboagbangdfggambponclgniah\2.14\content.js 2013-06-15 00:36 - 2013-06-15 00:36 - 0009010 _____ () C:\Users\Yannick\AppData\Local\Google\Chrome\User Data\Default\Extensions\ioelihbboagbangdfggambponclgniah\2.14\lsdb.js 2013-06-15 00:36 - 2013-06-15 00:36 - 0000501 _____ () C:\Users\Yannick\AppData\Local\Google\Chrome\User Data\Default\Extensions\ioelihbboagbangdfggambponclgniah\2.14\manifest.json 2014-06-15 00:36 - 2014-06-15 00:36 - 0026359 _____ () C:\Users\Yannick\AppData\Local\Google\Chrome\User Data\Default\Extensions\ioelihbboagbangdfggambponclgniah\2.14\t7tT.js ====== End of Folder: ====== ========================= folder: C:\Users\Yannick\AppData\Local\Google\Chrome\User Data\Default\Extensions\ogfjmhfnldnajmfaofeiaepghjenbgjo ======================== ====== End of Folder: ====== ========================= folder: C:\Users\Yannick\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkcedibhemacmilmkpndpkoidlnmgngg ======================== ====== End of Folder: ====== ==== End of Fixlog ==== |
03.08.2014, 19:29 | #14 |
/// TB-Ausbilder | proxyserver blockiert Internetzugriff fast aller programme Kannst du den Ordner C:\Users\Yannick\AppData\Local\Google\Chrome\User Data\Default\Extensions\ioelihbboagbangdfggambponclgniah zippen, am besten mit Passwort und hier hochladen ? Will mir mal anschauen, denn ich finde keinerlei Info zu dieser Google Erweiterung. Dann bitte Eset (Achtung: Dauert i.d.R. bis zu mehreren Stunden) ESET Online Scanner
|
03.08.2014, 19:42 | #15 |
| proxyserver blockiert Internetzugriff fast aller programme jap, hier der ordner! eine frage zu eset: kann ich meinen pc während das läuft normal nutzen? ich schreibe morgen eine klausur und ich muss unbedingt noch einiges mit dem computer machen, damit das was wird! deshalb hat mir die malware auch doppelt nicht in den kram gepasst. wenn nein, schadet es sehr das mit ESET auf morgen früh zu verschieben? internet funktioniert wieder! |