|
Plagegeister aller Art und deren Bekämpfung: Windows 7, trotz Werbeblocker seit geraumer Zeit Pop-Ups, Werbeanzeigen, blau unterlegt HyperlinksWindows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
15.08.2014, 17:10 | #1 |
| Windows 7, trotz Werbeblocker seit geraumer Zeit Pop-Ups, Werbeanzeigen, blau unterlegt Hyperlinks Hallo, das wichtigste steckt schon im Titel. Mein PC lief eigentlich immer ganz gut, jetzt tauchen plötzlich ständig Pop-Ups auf, es schieben sich rechts und unten Werbefenster ins Bild, es gibt 1000de Anzeigen und es sind ganz viele Wörter zufallsmäßig so blau unterstrichen, so dass man sie anklicken kann. Ich habe GData als Anti-Viren-Software, habe aber hier keine Anleitung für dieses Programmm gefunden, was das Erstellen von LogFiles angeht. Kann mir jemand helfen??? Danke! Märry |
15.08.2014, 18:18 | #2 |
/// the machine /// TB-Ausbilder | Windows 7, trotz Werbeblocker seit geraumer Zeit Pop-Ups, Werbeanzeigen, blau unterlegt Hyperlinks hi,
__________________Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST 32-Bit | FRST 64-Bit (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
__________________ |
15.08.2014, 20:31 | #3 |
| Windows 7, trotz Werbeblocker seit geraumer Zeit Pop-Ups, Werbeanzeigen, blau unterlegt Hyperlinks Habe ich gemacht, hoffe, das Anhängen hat geklappt..
__________________ |
16.08.2014, 14:22 | #4 |
/// the machine /// TB-Ausbilder | Windows 7, trotz Werbeblocker seit geraumer Zeit Pop-Ups, Werbeanzeigen, blau unterlegt Hyperlinks Hi, Logs bitte immer in den Thread posten. Zur Not aufteilen und mehrere Posts nutzen. Ich kann auf Arbeit keine Anhänge öffnen, danke. So funktioniert es: Posten in CODE-Tags Die Logfiles anzuhängen oder sogar vorher in ein ZIP, RAR, 7Z-Archive zu packen erschwert mir massiv die Arbeit, es sei denn natürlich die Datei wäre ansonsten zu gross für das Forum. Um die Logfiles in eine CODE-Box zu stellen gehe so vor:
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
17.08.2014, 18:43 | #5 |
| Windows 7, trotz Werbeblocker seit geraumer Zeit Pop-Ups, Werbeanzeigen, blau unterlegt Hyperlinks FRST: FRST Logfile: FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 15-08-2014 Ran by Marie (administrator) on MARIE-PC on 15-08-2014 21:12:10 Running from C:\Users\Marie\Downloads Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: Deutsch (Deutschland) Internet Explorer Version 11 Boot Mode: Normal The only official download link for FRST: Download link for 32-Bit version: Downloading Farbar Recovery Scan Tool Download link for 64-Bit Version: Downloading Farbar Recovery Scan Tool Download link from any site other than Bleeping Computer is unpermitted or outdated. See tutorial for FRST: FRST Tutorial - How to use Farbar Recovery Scan Tool - Malware Removal Guides and Tutorials ==================== Processes (Whitelisted) ================= (If an entry is included in the fixlist, the process will be closed. The file will not be moved.) (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (G Data Software AG) C:\Program Files (x86)\Common Files\G Data\GDScan\GDScan.exe (G Data Software AG) C:\Program Files (x86)\G Data\AntiVirus\AVK\AVKWCtlx64.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\NvXDSync.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (ASUSTeK Computer Inc.) C:\Windows\System32\FBAgent.exe (ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe (ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe (Microsoft Corporation) C:\Windows\System32\rundll32.exe (Microsoft Corporation) C:\Windows\SysWOW64\rundll32.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Atheros) C:\Program Files (x86)\Atheros\Ath_CoexAgent.exe (Atheros Commnucations) C:\Program Files (x86)\Atheros\Bluetooth Suite\AdminService.exe (G Data Software AG) C:\Program Files (x86)\Common Files\G Data\AVKProxy\AVKProxy.exe (G Data Software AG) C:\Program Files (x86)\G Data\AntiVirus\AVK\AVKService.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (Juniper Networks) C:\Program Files (x86)\Juniper Networks\Common Files\dsNcService.exe () C:\Program Files (x86)\Polar\Daemon\polard.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE (TuneUp Software) C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesService64.exe (Intel(R) Corporation) C:\Program Files\Intel\TurboBoost\TurboBoost.exe (VIA Technologies, Inc.) C:\Windows\System32\ViakaraokeSrv.exe () C:\Program Files\ASUS\ASUS Secure Delete\ADDEL.exe (ASUS) C:\Program Files (x86)\ASUS\SmartLogon\sensorsrv.exe (ASUS) C:\Program Files (x86)\ASUS\Splendid\ACMON.exe (ASUS) C:\Program Files\P4G\BatteryLife.exe (ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe (ASUSTeK) C:\Windows\SysWOW64\ACEngSvr.exe (Intel Corporation) C:\Windows\System32\igfxtray.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (ELAN Microelectronic Corp.) C:\Program Files\Elantech\ETDCtrl.exe (Alcor Micro Corp.) C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe (ASUS) C:\Windows\AsScrPro.exe (CyberLink) C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe () F:\Program Files (x86)\Polar\WebSync\WebSync.exe (TuneUp Software) C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesApp64.exe (Dropbox, Inc.) C:\Users\Marie\AppData\Roaming\Dropbox\bin\Dropbox.exe (G Data Software AG) C:\Program Files (x86)\Common Files\G Data\AVKProxy\AvkBap64.exe (ELAN Microelectronic Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe (ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe (ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe () C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe (G Data Software AG) C:\Program Files (x86)\G Data\AntiVirus\AVKTray\AVKTray.exe (G Data Software AG) C:\Program Files (x86)\Common Files\G Data\AVKProxy\GdBgInx64.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_14_0_0_145.exe (Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_14_0_0_145.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe ==================== Registry (Whitelisted) ================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Run: [ETDWare] => C:\Program Files\Elantech\ETDCtrl.exe [649608 2010-06-10] (ELAN Microelectronic Corp.) HKLM\...\Run: [AmIcoSinglun64] => C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe [361984 2011-03-21] (Alcor Micro Corp.) HKLM\...\Run: [IntelTBRunOnce] => wscript.exe //b //nologo "C:\Program Files\Intel\TurboBoost\RunTBGadgetOnce.vbs" HKLM-x32\...\Run: [ASUSPRP] => C:\Program Files (x86)\ASUS\APRP\APRP.EXE [2018032 2011-04-13] (ASUSTek Computer Inc.) HKLM-x32\...\Run: [ATKMEDIA] => C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe [170624 2010-10-07] (ASUS) HKLM-x32\...\Run: [HControlUser] => C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe [105016 2009-06-19] (ASUS) HKLM-x32\...\Run: [Wireless Console 3] => C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe [1601536 2010-09-24] () HKLM-x32\...\Run: [G Data AntiVirus Tray Application] => C:\Program Files (x86)\G Data\AntiVirus\AVKTray\AVKTray.exe [1444304 2013-03-22] (G Data Software AG) HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [59720 2013-04-21] (Apple Inc.) HKLM-x32\...\Run: [G Data AntiVirus Tray] => C:\Program Files (x86)\G Data\AntiVirus\AVKTray\AVKTray.exe [1444304 2013-03-22] (G Data Software AG) HKLM-x32\...\Run: [SecureW2 Tray] => C:\Program Files (x86)\SecureW2\sw2_tray.exe [224600 2013-08-13] (SecureW2 B.V.) Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation) HKU\S-1-5-21-2438974327-1903873085-1306138816-1001\...\Run: [Optimizer Pro] => C:\Program Files (x86)\Optimizer Pro\OptProLauncher.exe [135160 2014-01-28] (PC Utilities Software Limited) AppInit_DLLs: C:\Windows\system32\nvinitx.dll => C:\Windows\system32\nvinitx.dll [226920 2011-02-21] (NVIDIA Corporation) AppInit_DLLs: C:\PROGRA~2\OPTIMI~1\OPTPRO~2.DLL => C:\Program Files (x86)\Optimizer Pro\OptProCrash_x64.dll [2681648 2014-04-24] () AppInit_DLLs-x32: c:\windows\syswow64\nvinit.dll => c:\windows\syswow64\nvinit.dll [192616 2011-02-21] (NVIDIA Corporation) AppInit_DLLs-x32: c:\progra~2\optimi~1\optpro~1.dll => c:\Program Files (x86)\Optimizer Pro\OptProCrash.dll [2961368 2014-04-24] () Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Polar WebSync.lnk ShortcutTarget: Polar WebSync.lnk -> F:\Program Files (x86)\Polar\WebSync\WebSync.exe () Startup: C:\Users\Marie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk ShortcutTarget: Dropbox.lnk -> C:\Users\Marie\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) ShellIconOverlayIdentifiers: DropboxExt1 -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Marie\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.) ShellIconOverlayIdentifiers: DropboxExt2 -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Marie\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.) ShellIconOverlayIdentifiers: DropboxExt3 -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Marie\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.) ShellIconOverlayIdentifiers: DropboxExt4 -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Marie\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: DropboxExt1 -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Marie\AppData\Roaming\Dropbox\bin\DropboxExt.24.dll (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: DropboxExt2 -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Marie\AppData\Roaming\Dropbox\bin\DropboxExt.24.dll (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: DropboxExt3 -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Marie\AppData\Roaming\Dropbox\bin\DropboxExt.24.dll (Dropbox, Inc.) ==================== Internet (Whitelisted) ==================== (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.) HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = hxxp://feed.helperbar.com/?p=mKO_AwFzXIpYRaxo67ounJhqib0rXFhtLLIHmXcfrN_YrkL6AMkVAcJ3mJAHPYcE2slwbJii8zfWL1FQRjNUcGNjPCYTvEeyvjl1UFOsKt3JIXk8EiZIAddBQ1AOwOi-LgdTQghlcIUpUQPIXN3qUZfQIqvYTQEeS-EWw2Lyjpyu&q={searchTerms} HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = Mysearchdial Search HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank SearchScopes: HKLM - {77AA745B-F4F8-45DA-9B14-61D2D95054C8} URL = SearchScopes: HKLM-x32 - DefaultScope {006ee092-9658-4fd6-bd8e-a21a348e59f5} URL = hxxp://feed.helperbar.com/?publisher=YahooOC&dpid=YahooOC&co=DE&userid=94383499-e278-b1bd-fbcf-96d6eaed3f7f&searchtype=ds&p={searchTerms}&fr=linkury-tb&installDate=22/01/2014&type=hp1000 SearchScopes: HKLM-x32 - {006ee092-9658-4fd6-bd8e-a21a348e59f5} URL = hxxp://feed.helperbar.com/?publisher=YahooOC&dpid=YahooOC&co=DE&userid=94383499-e278-b1bd-fbcf-96d6eaed3f7f&searchtype=ds&p={searchTerms}&fr=linkury-tb&installDate=22/01/2014&type=hp1000 SearchScopes: HKCU - DefaultScope {006ee092-9658-4fd6-bd8e-a21a348e59f5} URL = hxxp://feed.helperbar.com/?p=mKO_AwFzXIpYRaxo67ounJhqib0rXFhtLLIHmXcfrN_YrkL6AMkVAcJ3mJAHPYcE2slwbJii8zfWL1FQRjNUcGNjPCYTvEeyvjl1UFOsKt3JIXk8EiZIAddBQ1AOwOi-LgdTQghlcIUpUQPIXN3qUZfQIqvYTQEeS-EWw2Lyjpyu&q={searchTerms} SearchScopes: HKCU - {006ee092-9658-4fd6-bd8e-a21a348e59f5} URL = hxxp://feed.helperbar.com/?p=mKO_AwFzXIpYRaxo67ounJhqib0rXFhtLLIHmXcfrN_YrkL6AMkVAcJ3mJAHPYcE2slwbJii8zfWL1FQRjNUcGNjPCYTvEeyvjl1UFOsKt3JIXk8EiZIAddBQ1AOwOi-LgdTQghlcIUpUQPIXN3qUZfQIqvYTQEeS-EWw2Lyjpyu&q={searchTerms} SearchScopes: HKCU - {77AA745B-F4F8-45DA-9B14-61D2D95054C8} URL = hxxp://feed.helperbar.com/?publisher=YahooOC&dpid=YahooOC&co=DE&userid=94383499-e278-b1bd-fbcf-96d6eaed3f7f&searchtype=ds&p={searchTerms}&fr=linkury-tb&installDate=22/01/2014&type=hp1000 BHO: FlashCoupon -> {0F709307-8A5A-F941-624B-B7B328CC0D27} -> C:\ProgramData\FlashCoupon\Ls.x64.dll () BHO: TmIEPlugInBHO Class -> {1CA1377B-DC1D-4A52-9585-6E06050FAC53} -> No File BHO: Yahoo Community Smartbar (by Linkury)Engine -> {31ad400d-1b06-4e33-a59a-90c2c140cba0} -> C:\Windows\system32\mscoree.dll (Microsoft Corporation) BHO: Citavi Picker -> {609D670F-B735-4da7-AC6D-F3BD358E325E} -> C:\Windows\system32\mscoree.dll (Microsoft Corporation) BHO: LucakyShiOpper -> {6A774765-17D1-DB92-4485-242B7EDD0325} -> C:\ProgramData\LucakyShiOpper\bC5.x64.dll () BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre8\bin\ssv.dll (Oracle Corporation) BHO: TmBpIeBHO Class -> {BBACBAFD-FA5E-4079-8B33-00EB9F13D4AC} -> No File BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre8\bin\jp2ssv.dll (Oracle Corporation) BHO: DVDVideoSoft IE Extension -> {EE932B49-D5C0-4D19-A3DA-CE0849258DE6} -> C:\Program Files (x86)\Common Files\DVDVideoSoft\bin\IEDownloadMenuAndBtns64.dll (DVDVideoSoft Ltd.) BHO-x32: Yahoo Community Smartbar (by Linkury)Engine -> {31ad400d-1b06-4e33-a59a-90c2c140cba0} -> C:\Windows\SysWOW64\mscoree.dll (Microsoft Corporation) BHO-x32: Canon Easy-WebPrint EX BHO -> {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} -> C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll (CANON INC.) BHO-x32: Citavi Picker -> {609D670F-B735-4da7-AC6D-F3BD358E325E} -> C:\Windows\SysWOW64\mscoree.dll (Microsoft Corporation) BHO-x32: LucakyShiOpper -> {6A774765-17D1-DB92-4485-242B7EDD0325} -> C:\ProgramData\LucakyShiOpper\bC5.dll () BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation) BHO-x32: CIESpeechBHO Class -> {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} -> C:\Program Files (x86)\Atheros\Bluetooth Suite\IEPlugIn.dll (Atheros Commnucations) BHO-x32: Google Dictionary Compression sdch -> {C84D72FE-E17D-4195-BB24-76C02E2E7C4E} -> No File BHO-x32: Bing Bar Helper -> {d2ce3e00-f94a-4740-988e-03dc2f38c34f} -> C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.) BHO-x32: DVDVideoSoft IE Extension -> {EE932B49-D5C0-4D19-A3DA-CE0849258DE6} -> C:\Program Files (x86)\Common Files\DVDVideoSoft\bin\IEDownloadMenuAndBtns.dll (DVDVideoSoft Ltd.) BHO-x32: mysearchdial Helper Object -> {EF5625A3-37AB-4BDB-9875-2A3D91CD0DFD} -> C:\Program Files (x86)\Mysearchdial\1.8.29.0\bh\mysearchdial.dll (MySearchDial) Toolbar: HKLM - Yahoo Community Smartbar (by Linkury) - {ae07101b-46d4-4a98-af68-0333ea26e113} - C:\Windows\system32\mscoree.dll (Microsoft Corporation) Toolbar: HKLM-x32 - Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.) Toolbar: HKLM-x32 - Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll (CANON INC.) Toolbar: HKLM-x32 - Yahoo Community Smartbar (by Linkury) - {ae07101b-46d4-4a98-af68-0333ea26e113} - C:\Windows\SysWOW64\mscoree.dll (Microsoft Corporation) Toolbar: HKLM-x32 - mysearchdial Toolbar - {3004627E-F8E9-4E8B-909D-316753CBA923} - C:\Program Files (x86)\Mysearchdial\1.8.29.0\mysearchdialTlbr.dll (MySearchDial) DPF: HKLM {AA570693-00E2-4907-B6F1-60A1199B030C} https://juniper.net/dana-cached/sc/JuniperSetupClient64.cab DPF: HKLM-x32 {F27237D7-93C8-44C2-AC6E-D6057B9A918F} https://juniper.net/dana-cached/sc/JuniperSetupClient.cab Handler: tmbp - {1A77E7DC-C9A0-4110-8A37-2F36BAE71ECF} - No File Handler: tmpx - {0E526CB5-7446-41D1-A403-19BFE95E8C23} - No File Handler-x32: tmbp - {1A77E7DC-C9A0-4110-8A37-2F36BAE71ECF} - No File Handler-x32: tmpx - {0E526CB5-7446-41D1-A403-19BFE95E8C23} - No File Tcpip\Parameters: [DhcpNameServer] 192.168.178.1 FireFox: ======== FF ProfilePath: C:\Users\Marie\AppData\Roaming\Mozilla\Firefox\Profiles\yxxug84n.default FF NewTab: hxxp://feed.helperbar.com/?publisher=YahooOC&dpid=YahooOC&co=DE&userid=94383499-e278-b1bd-fbcf-96d6eaed3f7f&searchtype=nt&fr=linkury-tb&installDate=22/01/2014&type=hp1000&q= FF Homepage: hxxp://feed.helperbar.com/?publisher=YahooOC&dpid=YahooOC&co=DE&userid=94383499-e278-b1bd-fbcf-96d6eaed3f7f&searchtype=hp&fr=linkury-tb&installDate=22/01/2014&type=hp1000 FF Keyword.URL: hxxp://feed.helperbar.com/?publisher=YahooOC&dpid=YahooOC&co=DE&userid=94383499-e278-b1bd-fbcf-96d6eaed3f7f&searchtype=ds&fr=linkury-tb&installDate=22/01/2014&type=hp1000&p= FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_14_0_0_145.dll () FF Plugin: @java.com/DTPlugin,version=11.11.2 -> C:\Program Files\Java\jre8\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=11.11.2 -> C:\Program Files\Java\jre8\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin: @microsoft.com/GENUINE -> disabled No File FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_14_0_0_145.dll () FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> F:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll () FF Plugin-x32: @cambridgesoft.com/Chem3D,version=12.0 -> F:\Program Files (x86)\CambridgeSoft\ChemOffice2010\Chem3D\npChem3DPlugin.dll (CambridgeSoft Corp.) FF Plugin-x32: @cambridgesoft.com/ChemDraw,version=12.0 -> F:\Program Files (x86)\CambridgeSoft\ChemOffice2010\ChemDraw\npcdp32.dll (CambridgeSoft Corp.) FF Plugin-x32: @java.com/JavaPlugin -> C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.) FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll No File FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Plugin HKCU: @citrixonline.com/appdetectorplugin -> C:\Users\Marie\AppData\Local\Citrix\Plugins\104\npappdetector.dll (Citrix Online) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\np-mswmp.dll (Microsoft Corporation) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nppdf32.dll (Adobe Systems Inc.) FF SearchPlugin: C:\Users\Marie\AppData\Roaming\Mozilla\Firefox\Profiles\yxxug84n.default\searchplugins\Mysearchdial.xml FF SearchPlugin: C:\Users\Marie\AppData\Roaming\Mozilla\Firefox\Profiles\yxxug84n.default\searchplugins\Web Search.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml FF Extension: RRoyalCouponn - C:\Users\Marie\AppData\Roaming\Mozilla\Firefox\Profiles\yxxug84n.default\Extensions\p3pfwd@fj-.org [2014-08-04] FF Extension: SmaarTCoomparre - C:\Users\Marie\AppData\Roaming\Mozilla\Firefox\Profiles\yxxug84n.default\Extensions\p_uya@oyoscddgfr.com [2014-05-20] FF Extension: ClickForSalE - C:\Users\Marie\AppData\Roaming\Mozilla\Firefox\Profiles\yxxug84n.default\Extensions\vcshsz@uis.net [2014-07-03] FF Extension: Yahoo Community Smartbar - C:\Users\Marie\AppData\Roaming\Mozilla\Firefox\Profiles\yxxug84n.default\Extensions\{94383499-e278-b1bd-fbcf-96d6eaed3f7f} [2014-01-22] FF Extension: Adblock Plus Pop-up Addon - C:\Users\Marie\AppData\Roaming\Mozilla\Firefox\Profiles\yxxug84n.default\Extensions\adblockpopups@jessehakanen.net.xpi [2014-08-10] FF Extension: ScrapBook - C:\Users\Marie\AppData\Roaming\Mozilla\Firefox\Profiles\yxxug84n.default\Extensions\{53A03D43-5363-4669-8190-99061B2DEBA5}.xpi [2013-12-30] FF Extension: DVDVideoSoft YouTube MP3 and Video Download - C:\Users\Marie\AppData\Roaming\Mozilla\Firefox\Profiles\yxxug84n.default\Extensions\{ACAA314B-EEBA-48e4-AD47-84E31C44796C}.xpi [2012-11-20] FF Extension: Adblock Plus - C:\Users\Marie\AppData\Roaming\Mozilla\Firefox\Profiles\yxxug84n.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2011-07-24] FF Extension: Adblock Edge - C:\Users\Marie\AppData\Roaming\Mozilla\Firefox\Profiles\yxxug84n.default\Extensions\{fe272bd1-5f76-4ea4-8501-a05d35d823fc}.xpi [2014-08-10] FF HKLM-x32\...\Firefox\Extensions: [{22C7F6C6-8D67-4534-92B5-529A0EC09405}] - C:\Program Files\Trend Micro\AMSP\Module\20004\1.5.1381\6.5.1234\firefoxextension FF HKLM-x32\...\Firefox\Extensions: [{8AA36F4F-6DC7-4c06-77AF-5035170634FE}] - C:\ProgramData\Swiss Academic Software\Citavi Picker\Firefox FF Extension: Citavi Picker - C:\ProgramData\Swiss Academic Software\Citavi Picker\Firefox [2014-07-16] FF HKCU\...\Firefox\Extensions: [{B64D9B05-48E1-4CEB-BF58-E0643994E900}] - C:\Program Files (x86)\Common Files\DVDVideoSoft\plugins\ff FF Extension: Download videos and MP3s from YouTube - C:\Program Files (x86)\Common Files\DVDVideoSoft\plugins\ff [2014-04-24] Chrome: ======= CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION ==================== Services (Whitelisted) ================= (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) R2 70e6ca8c; c:\Program Files (x86)\Optimizer Pro\OptProCrashSvc.dll [186496 2014-04-24] () R2 Atheros Bt&Wlan Coex Agent; C:\Program Files (x86)\Atheros\Ath_CoexAgent.exe [151552 2010-05-25] (Atheros) [File not signed] R2 AtherosSvc; C:\Program Files (x86)\Atheros\Bluetooth Suite\adminservice.exe [52896 2010-11-26] (Atheros Commnucations) [File not signed] R2 AVKProxy; C:\Program Files (x86)\Common Files\G Data\AVKProxy\AVKProxy.exe [1957840 2013-03-22] (G Data Software AG) R2 AVKService; C:\Program Files (x86)\G Data\AntiVirus\AVK\AVKService.exe [635344 2013-02-25] (G Data Software AG) R2 AVKWCtl; C:\Program Files (x86)\G Data\AntiVirus\AVK\AVKWCtlX64.exe [2556896 2013-04-24] (G Data Software AG) R3 GDScan; C:\Program Files (x86)\Common Files\G Data\GDScan\GDScan.exe [696808 2013-02-25] (G Data Software AG) R2 Polar Daemon; C:\Program Files (x86)\Polar\Daemon\polard.exe [419536 2012-12-12] () R2 TuneUp.UtilitiesSvc; C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesService64.exe [2103096 2013-12-18] (TuneUp Software) R2 VIAKaraokeService; C:\Windows\system32\viakaraokesrv.exe [27760 2011-05-09] (VIA Technologies, Inc.) ==================== Drivers (Whitelisted) ==================== (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) R0 assd; C:\Windows\System32\Drivers\assd.sys [27264 2010-04-28] (ASUS Corporation) R0 GDBehave; C:\Windows\System32\drivers\GDBehave.sys [60248 2013-06-09] (G Data Software AG) R1 GDMnIcpt; C:\Windows\system32\drivers\MiniIcpt.sys [130392 2013-06-09] (G Data Software AG) S3 GdNetMon; C:\Windows\system32\drivers\GdNetMon64.sys [31448 2011-07-26] (G Data Software AG) R3 GDPkIcpt; C:\Windows\system32\drivers\PktIcpt.sys [62808 2013-06-09] (G Data Software AG) R1 gdwfpcd; C:\Windows\System32\drivers\gdwfpcd64.sys [64856 2013-06-09] (G Data Software AG) R1 GRD; C:\Windows\system32\drivers\GRD.sys [107128 2013-06-15] (G Data Software) R1 HookCentre; C:\Windows\system32\drivers\HookCentre.sys [65368 2013-06-09] (G Data Software AG) R3 kbfiltr; C:\Windows\System32\DRIVERS\kbfiltr.sys [15416 2009-07-20] ( ) R3 TuneUpUtilitiesDrv; C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesDriver64.sys [14112 2013-08-21] (TuneUp Software) R2 TurboB; C:\Windows\System32\DRIVERS\TurboB.sys [13832 2010-04-17] () ==================== NetSvcs (Whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.) ==================== One Month Created Files and Folders ======== (If an entry is included in the fixlist, the file\folder will be moved.) 2014-08-15 21:12 - 2014-08-15 21:13 - 00023566 _____ () C:\Users\Marie\Downloads\FRST.txt 2014-08-15 21:11 - 2014-08-15 21:12 - 00000000 ____D () C:\FRST 2014-08-15 21:09 - 2014-08-15 21:09 - 02100224 _____ (Farbar) C:\Users\Marie\Downloads\FRST64.exe 2014-08-13 19:19 - 2014-07-01 00:24 - 00008856 _____ (Microsoft Corporation) C:\Windows\system32\icardres.dll 2014-08-13 19:19 - 2014-07-01 00:14 - 00008856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardres.dll 2014-08-13 19:19 - 2014-06-06 08:16 - 00035480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TsWpfWrp.exe 2014-08-13 19:19 - 2014-06-06 08:12 - 00035480 _____ (Microsoft Corporation) C:\Windows\system32\TsWpfWrp.exe 2014-08-13 19:19 - 2014-03-09 23:48 - 01389208 _____ (Microsoft Corporation) C:\Windows\system32\icardagt.exe 2014-08-13 19:19 - 2014-03-09 23:48 - 00171160 _____ (Microsoft Corporation) C:\Windows\system32\infocardapi.dll 2014-08-13 19:19 - 2014-03-09 23:47 - 00619672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardagt.exe 2014-08-13 19:19 - 2014-03-09 23:47 - 00099480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\infocardapi.dll 2014-08-13 16:28 - 2014-07-09 04:03 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDYAK.DLL 2014-08-13 16:28 - 2014-07-09 04:03 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDTAT.DLL 2014-08-13 16:28 - 2014-07-09 04:03 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDRU1.DLL 2014-08-13 16:28 - 2014-07-09 04:03 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDBASH.DLL 2014-08-13 16:28 - 2014-07-09 04:03 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\KBDRU.DLL 2014-08-13 16:28 - 2014-07-09 03:31 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDYAK.DLL 2014-08-13 16:28 - 2014-07-09 03:31 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDTAT.DLL 2014-08-13 16:28 - 2014-07-09 03:31 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDRU1.DLL 2014-08-13 16:28 - 2014-07-09 03:31 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDRU.DLL 2014-08-13 16:28 - 2014-07-09 03:31 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDBASH.DLL 2014-08-13 16:28 - 2014-07-09 00:38 - 00419992 _____ () C:\Windows\system32\locale.nls 2014-08-13 16:28 - 2014-07-09 00:30 - 00419992 _____ () C:\Windows\SysWOW64\locale.nls 2014-08-13 16:27 - 2014-08-01 01:41 - 00348856 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2014-08-13 16:27 - 2014-08-01 01:16 - 00307384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2014-08-13 16:27 - 2014-07-25 16:52 - 23645696 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-08-13 16:27 - 2014-07-25 16:02 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-08-13 16:27 - 2014-07-25 16:01 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2014-08-13 16:27 - 2014-07-25 15:51 - 17524224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-08-13 16:27 - 2014-07-25 15:30 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2014-08-13 16:27 - 2014-07-25 15:28 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2014-08-13 16:27 - 2014-07-25 15:28 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2014-08-13 16:27 - 2014-07-25 15:25 - 02774528 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-08-13 16:27 - 2014-07-25 15:25 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2014-08-13 16:27 - 2014-07-25 15:11 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2014-08-13 16:27 - 2014-07-25 15:10 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2014-08-13 16:27 - 2014-07-25 15:04 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2014-08-13 16:27 - 2014-07-25 15:03 - 00598016 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2014-08-13 16:27 - 2014-07-25 15:00 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2014-08-13 16:27 - 2014-07-25 15:00 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2014-08-13 16:27 - 2014-07-25 14:59 - 00758272 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2014-08-13 16:27 - 2014-07-25 14:47 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2014-08-13 16:27 - 2014-07-25 14:40 - 00452096 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2014-08-13 16:27 - 2014-07-25 14:34 - 00455168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2014-08-13 16:27 - 2014-07-25 14:34 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2014-08-13 16:27 - 2014-07-25 14:33 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2014-08-13 16:27 - 2014-07-25 14:30 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2014-08-13 16:27 - 2014-07-25 14:28 - 05824512 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-08-13 16:27 - 2014-07-25 14:28 - 00072704 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2014-08-13 16:27 - 2014-07-25 14:21 - 02184704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2014-08-13 16:27 - 2014-07-25 14:19 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2014-08-13 16:27 - 2014-07-25 14:18 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2014-08-13 16:27 - 2014-07-25 14:17 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2014-08-13 16:27 - 2014-07-25 14:17 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2014-08-13 16:27 - 2014-07-25 14:12 - 00438784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2014-08-13 16:27 - 2014-07-25 14:10 - 00292864 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2014-08-13 16:27 - 2014-07-25 14:10 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2014-08-13 16:27 - 2014-07-25 14:08 - 00597504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2014-08-13 16:27 - 2014-07-25 14:06 - 04204032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2014-08-13 16:27 - 2014-07-25 13:52 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2014-08-13 16:27 - 2014-07-25 13:47 - 00631808 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-08-13 16:27 - 2014-07-25 13:43 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2014-08-13 16:27 - 2014-07-25 13:42 - 00692736 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2014-08-13 16:27 - 2014-07-25 13:39 - 02087936 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2014-08-13 16:27 - 2014-07-25 13:39 - 01249280 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2014-08-13 16:27 - 2014-07-25 13:36 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2014-08-13 16:27 - 2014-07-25 13:34 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2014-08-13 16:27 - 2014-07-25 13:29 - 00239616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2014-08-13 16:27 - 2014-07-25 13:23 - 13547008 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-08-13 16:27 - 2014-07-25 13:13 - 00526336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2014-08-13 16:27 - 2014-07-25 13:07 - 02001920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2014-08-13 16:27 - 2014-07-25 13:07 - 01068032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2014-08-13 16:27 - 2014-07-25 13:03 - 11772928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2014-08-13 16:27 - 2014-07-25 12:52 - 02266624 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-08-13 16:27 - 2014-07-25 12:26 - 01431040 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-08-13 16:27 - 2014-07-25 12:17 - 00846336 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2014-08-13 16:27 - 2014-07-25 12:09 - 00704512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2014-08-13 16:27 - 2014-07-25 12:05 - 01792512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2014-08-13 16:27 - 2014-07-25 12:00 - 01169920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2014-08-13 16:27 - 2014-07-16 05:25 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll 2014-08-13 16:27 - 2014-07-16 05:23 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll 2014-08-13 16:27 - 2014-07-16 04:46 - 00311808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll 2014-08-13 16:27 - 2014-07-16 04:46 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll 2014-08-13 16:27 - 2014-07-16 04:12 - 03163648 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2014-08-13 16:27 - 2014-06-25 04:05 - 14175744 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll 2014-08-13 16:27 - 2014-06-25 03:41 - 12874240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll 2014-08-13 16:27 - 2014-06-16 04:10 - 00985536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys 2014-08-13 16:27 - 2014-06-03 12:02 - 03241984 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll 2014-08-13 16:27 - 2014-06-03 12:02 - 01941504 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll 2014-08-13 16:27 - 2014-06-03 12:02 - 00504320 _____ (Microsoft Corporation) C:\Windows\system32\msihnd.dll 2014-08-13 16:27 - 2014-06-03 12:02 - 00112064 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe 2014-08-13 16:27 - 2014-06-03 11:29 - 02363392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll 2014-08-13 16:27 - 2014-06-03 11:29 - 01805824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll 2014-08-13 16:27 - 2014-06-03 11:29 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msihnd.dll 2014-08-13 16:26 - 2014-08-07 04:06 - 00529920 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll 2014-08-13 16:26 - 2014-08-07 04:01 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll 2014-08-13 16:26 - 2014-07-14 04:02 - 01216000 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll 2014-08-13 16:26 - 2014-07-14 03:40 - 00664064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll 2014-08-11 23:08 - 2014-08-11 23:08 - 00000000 ____D () C:\ProgramData\GetDiscountApp 2014-08-10 09:19 - 2013-12-18 11:01 - 00043320 _____ (TuneUp Software) C:\Windows\system32\uxtuneup.dll 2014-08-10 09:19 - 2013-12-18 11:01 - 00036152 _____ (TuneUp Software) C:\Windows\SysWOW64\uxtuneup.dll 2014-08-10 09:19 - 2013-12-18 11:01 - 00029496 _____ (TuneUp Software) C:\Windows\system32\authuitu.dll 2014-08-10 09:19 - 2013-12-18 11:01 - 00025400 _____ (TuneUp Software) C:\Windows\SysWOW64\authuitu.dll 2014-08-05 21:42 - 2014-08-05 21:44 - 00000476 _____ () C:\Users\Marie\Downloads\element_hiding_helper_for_adblock_plus-1.2.3-fx_tb_sm.zip 2014-08-05 20:25 - 2014-08-10 00:19 - 00000000 ____D () C:\ProgramData\LucakyShiOpper 2014-07-31 21:14 - 2014-07-31 21:14 - 00002517 _____ () C:\Users\Public\Desktop\Skype.lnk 2014-07-31 21:14 - 2014-07-31 21:14 - 00000000 ___RD () C:\Program Files (x86)\Skype 2014-07-31 21:14 - 2014-07-31 21:14 - 00000000 ____D () C:\Users\Marie\AppData\Local\Skype 2014-07-31 21:14 - 2014-07-31 21:14 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype 2014-07-31 21:11 - 2014-07-31 21:11 - 01677928 _____ (Skype Technologies S.A.) C:\Users\Marie\Downloads\SkypeSetup.exe 2014-07-31 14:09 - 2014-05-14 18:23 - 02477536 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll 2014-07-31 14:09 - 2014-05-14 18:23 - 00700384 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll 2014-07-31 14:09 - 2014-05-14 18:23 - 00581600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll 2014-07-31 14:09 - 2014-05-14 18:23 - 00058336 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe 2014-07-31 14:09 - 2014-05-14 18:23 - 00044512 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll 2014-07-31 14:09 - 2014-05-14 18:23 - 00038880 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll 2014-07-31 14:09 - 2014-05-14 18:23 - 00036320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll 2014-07-31 14:09 - 2014-05-14 18:21 - 02620928 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll 2014-07-31 14:09 - 2014-05-14 18:20 - 00097792 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll 2014-07-31 14:09 - 2014-05-14 18:17 - 00092672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll 2014-07-31 14:09 - 2014-05-14 09:23 - 00198600 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll 2014-07-31 14:09 - 2014-05-14 09:23 - 00179656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll 2014-07-31 14:09 - 2014-05-14 09:20 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe 2014-07-31 14:09 - 2014-05-14 09:17 - 00033792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe 2014-07-30 19:05 - 2014-07-30 19:06 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-07-26 15:37 - 2014-07-26 15:37 - 00321448 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe 2014-07-26 15:37 - 2014-07-26 15:37 - 00191400 _____ (Oracle Corporation) C:\Windows\system32\javaw.exe 2014-07-26 15:37 - 2014-07-26 15:37 - 00190888 _____ (Oracle Corporation) C:\Windows\system32\java.exe 2014-07-26 15:37 - 2014-07-26 15:37 - 00111016 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge-64.dll 2014-07-26 15:37 - 2014-07-26 15:37 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2014-07-26 15:37 - 2014-07-26 15:37 - 00000000 ____D () C:\Program Files\Java 2014-07-26 15:34 - 2014-07-26 15:34 - 00826192 _____ (Chip Digital GmbH) C:\Users\Marie\Downloads\Java Runtime Environment 64 Bit - CHIP-Installer.exe 2014-07-24 15:14 - 2014-07-24 15:14 - 00000000 ____D () C:\Users\Marie\Polar WebSync 2014-07-24 14:45 - 2014-07-24 14:45 - 00001826 _____ () C:\Users\Public\Desktop\Polar WebSync.lnk 2014-07-24 14:45 - 2014-07-24 14:45 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Polar 2014-07-24 14:44 - 2014-07-24 14:44 - 00000000 ____D () C:\Program Files (x86)\Polar 2014-07-24 13:31 - 2014-07-24 13:32 - 43340104 _____ (Polar Electro Oy ) C:\Users\Marie\Downloads\websync_2.8.1.exe 2014-07-16 15:46 - 2014-07-16 15:46 - 00000000 ____D () C:\ProgramData\Gibraltar 2014-07-16 15:27 - 2014-07-16 15:27 - 00000000 ____D () C:\Users\Marie\AppData\Local\Swiss Academic Software 2014-07-16 15:17 - 2014-07-16 15:46 - 00000000 ____D () C:\Users\Marie\Documents\Citavi 4 2014-07-16 15:17 - 2014-07-16 15:46 - 00000000 ____D () C:\Users\Marie\AppData\Roaming\Swiss Academic Software 2014-07-16 13:58 - 2014-08-15 17:38 - 00000000 ____D () C:\Users\Marie\Desktop\Diss 2014-07-16 00:13 - 2014-07-16 00:13 - 00000000 ____D () C:\ProgramData\Swiss Academic Software 2014-07-16 00:12 - 2014-07-16 00:12 - 00001728 _____ () C:\Users\Public\Desktop\Citavi 4.lnk 2014-07-16 00:12 - 2014-07-16 00:12 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Citavi 4 ==================== One Month Modified Files and Folders ======= (If an entry is included in the fixlist, the file\folder will be moved.) 2014-08-15 21:13 - 2014-08-15 21:12 - 00023566 _____ () C:\Users\Marie\Downloads\FRST.txt 2014-08-15 21:12 - 2014-08-15 21:11 - 00000000 ____D () C:\FRST 2014-08-15 21:10 - 2011-07-07 21:15 - 00000000 ____D () C:\Users\Marie\AppData\Roaming\Skype 2014-08-15 21:09 - 2014-08-15 21:09 - 02100224 _____ (Farbar) C:\Users\Marie\Downloads\FRST64.exe 2014-08-15 20:54 - 2011-06-24 00:21 - 01560784 _____ () C:\Windows\WindowsUpdate.log 2014-08-15 20:53 - 2013-01-09 17:49 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-08-15 20:47 - 2014-06-15 01:15 - 00000000 ____D () C:\Users\Marie\AppData\Local\LPT 2014-08-15 20:44 - 2011-02-19 06:24 - 00710338 _____ () C:\Windows\system32\perfh007.dat 2014-08-15 20:44 - 2011-02-19 06:24 - 00152786 _____ () C:\Windows\system32\perfc007.dat 2014-08-15 20:44 - 2009-07-14 07:13 - 01649080 _____ () C:\Windows\system32\PerfStringBackup.INI 2014-08-15 20:43 - 2014-03-24 17:47 - 00000562 _____ () C:\Windows\Tasks\G2MUpdateTask-S-1-5-21-2438974327-1903873085-1306138816-1001.job 2014-08-15 20:39 - 2012-01-23 23:48 - 00000000 ____D () C:\Users\Marie\AppData\Local\CrashDumps 2014-08-15 18:05 - 2009-07-14 06:45 - 00018736 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2014-08-15 18:05 - 2009-07-14 06:45 - 00018736 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2014-08-15 17:38 - 2014-07-16 13:58 - 00000000 ____D () C:\Users\Marie\Desktop\Diss 2014-08-15 12:56 - 2012-08-18 19:30 - 00000000 ___RD () C:\Users\Marie\Dropbox 2014-08-15 12:55 - 2012-08-18 19:28 - 00000000 ____D () C:\Users\Marie\AppData\Roaming\Dropbox 2014-08-15 12:54 - 2011-10-30 10:36 - 00000326 _____ () C:\Windows\Tasks\GlaryInitialize.job 2014-08-15 12:54 - 2011-07-06 17:38 - 00045056 _____ () C:\Windows\system32\acovcnt.exe 2014-08-15 12:54 - 2009-07-14 07:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-08-15 12:54 - 2009-07-14 06:51 - 00193563 _____ () C:\Windows\setupact.log 2014-08-15 12:47 - 2009-07-14 06:45 - 00432872 _____ () C:\Windows\system32\FNTCACHE.DAT 2014-08-15 09:53 - 2012-08-18 19:30 - 00001021 _____ () C:\Users\Marie\Desktop\Dropbox.lnk 2014-08-15 09:53 - 2012-08-18 19:28 - 00000000 ____D () C:\Users\Marie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox 2014-08-13 22:48 - 2011-04-13 03:39 - 00895618 _____ () C:\Windows\PFRO.log 2014-08-13 22:48 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\PolicyDefinitions 2014-08-13 19:40 - 2011-08-10 11:58 - 00000000 ____D () C:\ProgramData\Microsoft Help 2014-08-13 19:31 - 2013-08-15 15:45 - 00000000 ____D () C:\Windows\system32\MRT 2014-08-13 19:27 - 2011-08-12 14:49 - 99218768 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2014-08-13 19:18 - 2014-05-07 01:01 - 00000000 ___SD () C:\Windows\system32\CompatTel 2014-08-11 23:08 - 2014-08-11 23:08 - 00000000 ____D () C:\ProgramData\GetDiscountApp 2014-08-10 13:24 - 2011-08-10 11:58 - 00000000 ____D () C:\Users\Marie\AppData\Local\Microsoft Help 2014-08-10 09:18 - 2014-03-11 14:10 - 00000000 ____D () C:\Program Files (x86)\TuneUp Utilities 2014 2014-08-10 00:28 - 2014-05-20 17:39 - 00000000 ____D () C:\ProgramData\ssurfkeeepiit 2014-08-10 00:19 - 2014-08-05 20:25 - 00000000 ____D () C:\ProgramData\LucakyShiOpper 2014-08-10 00:18 - 2014-07-03 11:51 - 00000000 ____D () C:\ProgramData\FlashCoupon 2014-08-07 04:06 - 2014-08-13 16:26 - 00529920 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll 2014-08-07 04:01 - 2014-08-13 16:26 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll 2014-08-05 21:44 - 2014-08-05 21:42 - 00000476 _____ () C:\Users\Marie\Downloads\element_hiding_helper_for_adblock_plus-1.2.3-fx_tb_sm.zip 2014-08-05 20:25 - 2014-05-20 17:39 - 00000000 ____D () C:\ProgramData\4899dd140d5f13cc 2014-08-03 00:14 - 2014-01-02 13:05 - 00003694 _____ () C:\Windows\System32\Tasks\Adobe-Online-Aktualisierungsprogramm 2014-08-03 00:14 - 2011-07-06 22:58 - 00000000 ____D () C:\Users\Marie\AppData\Local\Downloaded Installations 2014-08-01 08:15 - 2012-04-26 17:07 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service 2014-08-01 01:41 - 2014-08-13 16:27 - 00348856 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2014-08-01 01:16 - 2014-08-13 16:27 - 00307384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2014-07-31 21:14 - 2014-07-31 21:14 - 00002517 _____ () C:\Users\Public\Desktop\Skype.lnk 2014-07-31 21:14 - 2014-07-31 21:14 - 00000000 ___RD () C:\Program Files (x86)\Skype 2014-07-31 21:14 - 2014-07-31 21:14 - 00000000 ____D () C:\Users\Marie\AppData\Local\Skype 2014-07-31 21:14 - 2014-07-31 21:14 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype 2014-07-31 21:14 - 2011-07-07 21:14 - 00000000 ____D () C:\ProgramData\Skype 2014-07-31 21:11 - 2014-07-31 21:11 - 01677928 _____ (Skype Technologies S.A.) C:\Users\Marie\Downloads\SkypeSetup.exe 2014-07-30 19:06 - 2014-07-30 19:05 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-07-26 15:37 - 2014-07-26 15:37 - 00321448 _____ (Oracle Corporation) C:\Windows\system32\javaws.exe 2014-07-26 15:37 - 2014-07-26 15:37 - 00191400 _____ (Oracle Corporation) C:\Windows\system32\javaw.exe 2014-07-26 15:37 - 2014-07-26 15:37 - 00190888 _____ (Oracle Corporation) C:\Windows\system32\java.exe 2014-07-26 15:37 - 2014-07-26 15:37 - 00111016 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge-64.dll 2014-07-26 15:37 - 2014-07-26 15:37 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2014-07-26 15:37 - 2014-07-26 15:37 - 00000000 ____D () C:\Program Files\Java 2014-07-26 15:34 - 2014-07-26 15:34 - 00826192 _____ (Chip Digital GmbH) C:\Users\Marie\Downloads\Java Runtime Environment 64 Bit - CHIP-Installer.exe 2014-07-25 16:52 - 2014-08-13 16:27 - 23645696 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-07-25 16:02 - 2014-08-13 16:27 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-07-25 16:01 - 2014-08-13 16:27 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2014-07-25 15:51 - 2014-08-13 16:27 - 17524224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-07-25 15:30 - 2014-08-13 16:27 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2014-07-25 15:28 - 2014-08-13 16:27 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2014-07-25 15:28 - 2014-08-13 16:27 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2014-07-25 15:25 - 2014-08-13 16:27 - 02774528 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-07-25 15:25 - 2014-08-13 16:27 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2014-07-25 15:11 - 2014-08-13 16:27 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2014-07-25 15:10 - 2014-08-13 16:27 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2014-07-25 15:04 - 2014-08-13 16:27 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2014-07-25 15:03 - 2014-08-13 16:27 - 00598016 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2014-07-25 15:01 - 2011-06-24 00:41 - 00002454 _____ () C:\Windows\system32\AutoRunFilter.ini 2014-07-25 15:01 - 2011-06-24 00:41 - 00001534 _____ () C:\Windows\system32\ServiceFilter.ini 2014-07-25 15:00 - 2014-08-13 16:27 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2014-07-25 15:00 - 2014-08-13 16:27 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2014-07-25 15:00 - 2013-03-13 23:31 - 00000000 ____D () C:\Program Files\Microsoft Silverlight 2014-07-25 15:00 - 2013-03-13 23:31 - 00000000 ____D () C:\Program Files (x86)\Microsoft Silverlight 2014-07-25 14:59 - 2014-08-13 16:27 - 00758272 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2014-07-25 14:47 - 2014-08-13 16:27 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2014-07-25 14:40 - 2014-08-13 16:27 - 00452096 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2014-07-25 14:34 - 2014-08-13 16:27 - 00455168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2014-07-25 14:34 - 2014-08-13 16:27 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2014-07-25 14:33 - 2014-08-13 16:27 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2014-07-25 14:30 - 2014-08-13 16:27 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2014-07-25 14:28 - 2014-08-13 16:27 - 05824512 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-07-25 14:28 - 2014-08-13 16:27 - 00072704 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2014-07-25 14:21 - 2014-08-13 16:27 - 02184704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2014-07-25 14:19 - 2014-08-13 16:27 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2014-07-25 14:18 - 2014-08-13 16:27 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2014-07-25 14:17 - 2014-08-13 16:27 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2014-07-25 14:17 - 2014-08-13 16:27 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2014-07-25 14:12 - 2014-08-13 16:27 - 00438784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2014-07-25 14:10 - 2014-08-13 16:27 - 00292864 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2014-07-25 14:10 - 2014-08-13 16:27 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2014-07-25 14:08 - 2014-08-13 16:27 - 00597504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2014-07-25 14:06 - 2014-08-13 16:27 - 04204032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2014-07-25 13:52 - 2014-08-13 16:27 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2014-07-25 13:47 - 2014-08-13 16:27 - 00631808 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-07-25 13:43 - 2014-08-13 16:27 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2014-07-25 13:42 - 2014-08-13 16:27 - 00692736 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2014-07-25 13:39 - 2014-08-13 16:27 - 02087936 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2014-07-25 13:39 - 2014-08-13 16:27 - 01249280 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2014-07-25 13:36 - 2014-08-13 16:27 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2014-07-25 13:34 - 2014-08-13 16:27 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2014-07-25 13:29 - 2014-08-13 16:27 - 00239616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2014-07-25 13:23 - 2014-08-13 16:27 - 13547008 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-07-25 13:13 - 2014-08-13 16:27 - 00526336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2014-07-25 13:07 - 2014-08-13 16:27 - 02001920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2014-07-25 13:07 - 2014-08-13 16:27 - 01068032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2014-07-25 13:03 - 2014-08-13 16:27 - 11772928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2014-07-25 12:52 - 2014-08-13 16:27 - 02266624 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-07-25 12:26 - 2014-08-13 16:27 - 01431040 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-07-25 12:17 - 2014-08-13 16:27 - 00846336 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2014-07-25 12:09 - 2014-08-13 16:27 - 00704512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2014-07-25 12:05 - 2014-08-13 16:27 - 01792512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2014-07-25 12:00 - 2014-08-13 16:27 - 01169920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2014-07-24 22:49 - 2013-03-13 23:31 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight 2014-07-24 15:14 - 2014-07-24 15:14 - 00000000 ____D () C:\Users\Marie\Polar WebSync 2014-07-24 15:14 - 2011-07-06 17:38 - 00000000 ____D () C:\Users\Marie 2014-07-24 14:45 - 2014-07-24 14:45 - 00001826 _____ () C:\Users\Public\Desktop\Polar WebSync.lnk 2014-07-24 14:45 - 2014-07-24 14:45 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Polar 2014-07-24 14:44 - 2014-07-24 14:44 - 00000000 ____D () C:\Program Files (x86)\Polar 2014-07-24 13:32 - 2014-07-24 13:31 - 43340104 _____ (Polar Electro Oy ) C:\Users\Marie\Downloads\websync_2.8.1.exe 2014-07-16 15:46 - 2014-07-16 15:46 - 00000000 ____D () C:\ProgramData\Gibraltar 2014-07-16 15:46 - 2014-07-16 15:17 - 00000000 ____D () C:\Users\Marie\Documents\Citavi 4 2014-07-16 15:46 - 2014-07-16 15:17 - 00000000 ____D () C:\Users\Marie\AppData\Roaming\Swiss Academic Software 2014-07-16 15:27 - 2014-07-16 15:27 - 00000000 ____D () C:\Users\Marie\AppData\Local\Swiss Academic Software 2014-07-16 14:51 - 2009-07-14 09:45 - 00000000 ____D () C:\Program Files\Windows Journal 2014-07-16 14:51 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\SysWOW64\Dism 2014-07-16 14:51 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\Dism 2014-07-16 05:25 - 2014-08-13 16:27 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll 2014-07-16 05:23 - 2014-08-13 16:27 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll 2014-07-16 04:46 - 2014-08-13 16:27 - 00311808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll 2014-07-16 04:46 - 2014-08-13 16:27 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll 2014-07-16 04:12 - 2014-08-13 16:27 - 03163648 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2014-07-16 00:13 - 2014-07-16 00:13 - 00000000 ____D () C:\ProgramData\Swiss Academic Software 2014-07-16 00:12 - 2014-07-16 00:12 - 00001728 _____ () C:\Users\Public\Desktop\Citavi 4.lnk 2014-07-16 00:12 - 2014-07-16 00:12 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Citavi 4 Some content of TEMP: ==================== C:\Users\Marie\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpxj1yd4.dll ==================== Bamital & volsnap Check ================= (There is no automatic fix for files that do not pass verification.) C:\Windows\System32\winlogon.exe => File is digitally signed C:\Windows\System32\wininit.exe => File is digitally signed C:\Windows\SysWOW64\wininit.exe => File is digitally signed C:\Windows\explorer.exe => File is digitally signed C:\Windows\SysWOW64\explorer.exe => File is digitally signed C:\Windows\System32\svchost.exe => File is digitally signed C:\Windows\SysWOW64\svchost.exe => File is digitally signed C:\Windows\System32\services.exe => File is digitally signed C:\Windows\System32\User32.dll => File is digitally signed C:\Windows\SysWOW64\User32.dll => File is digitally signed C:\Windows\System32\userinit.exe => File is digitally signed C:\Windows\SysWOW64\userinit.exe => File is digitally signed C:\Windows\System32\rpcss.dll => File is digitally signed C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed LastRegBack: 2014-06-19 13:37 ==================== End Of Log ============================ --- --- --- Additional:FRST Additions Logfile: Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 15-08-2014 Ran by Marie at 2014-08-15 21:14:40 Running from C:\Users\Marie\Downloads Boot Mode: Normal ========================================================== ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: G Data AntiVirus 2014 (Enabled - Up to date) {39B780B4-63C2-05B0-3B40-8F7A21E4F496} AS: G Data AntiVirus 2014 (Enabled - Up to date) {82D66150-45F8-0A3E-01F0-B4085A63BE2B} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) Update for Microsoft Office 2007 (KB2508958) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{0C5823AA-7B6F-44E1-8D5B-8FD1FF0E6438}) (Version: - Microsoft) 7-Zip 9.20 (x64 edition) (HKLM\...\{23170F69-40C1-2702-0920-000001000000}) (Version: 9.20.00.0 - Igor Pavlov) Adobe Flash Player 14 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 14.0.0.145 - Adobe Systems Incorporated) Adobe Reader XI (11.0.07) - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AB0000000001}) (Version: 11.0.07 - Adobe Systems Incorporated) Alcor Micro USB Card Reader (HKLM-x32\...\AmUStor) (Version: 1.2.0117.08443 - Alcor Micro Corp.) Alcor Micro USB Card Reader (x32 Version: 1.2.0117.08443 - Alcor Micro Corp.) Hidden Apple Application Support (HKLM-x32\...\{5D09C772-ECB3-442B-9CC6-B4341C78FDC2}) (Version: 2.3.4 - Apple Inc.) Apple Mobile Device Support (HKLM\...\{2F72F540-1F60-4266-9506-952B21D6640D}) (Version: 6.1.0.13 - Apple Inc.) Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.) ASUS AI Recovery (HKLM-x32\...\{38253529-D97D-4901-AE53-5CC9736D3A2E}) (Version: 1.0.13 - ASUS) ASUS FancyStart (HKLM-x32\...\{2B81872B-A054-48DA-BE3B-FA5C164C303A}) (Version: 1.0.8 - ASUSTeK Computer Inc.) ASUS LifeFrame3 (HKLM-x32\...\{1DBD1F12-ED93-49C0-A7CC-56CBDE488158}) (Version: 3.0.21 - ASUS) ASUS Power4Gear Hybrid (HKLM\...\{9B6239BF-4E85-4590-8D72-51E30DB1A9AA}) (Version: 1.1.42 - ASUS) ASUS Secure Delete (HKLM\...\{761C6783-D3BC-48AB-8E7C-61CE918A8436}) (Version: 1.00.0006 - ASUS) ASUS SmartLogon (HKLM-x32\...\{64452561-169F-4A36-A2FF-B5E118EC65F5}) (Version: 1.0.0009 - ASUS) ASUS Splendid Video Enhancement Technology (HKLM-x32\...\{0969AF05-4FF6-4C00-9406-43599238DE0D}) (Version: 1.02.0031 - ASUS) ASUS Virtual Camera (HKLM-x32\...\{EC8BD21F-0CA0-4BBF-97D9-4A52B30041A1}) (Version: 1.0.21 - asus) Atheros WLAN and Bluetooth Client Installation Program (HKLM-x32\...\{28006915-2739-4EBE-B5E8-49B25D32EB33}) (Version: 9.0 - Atheros) ATK Package (HKLM-x32\...\{AB5C933E-5C7D-4D30-B314-9C83A49B94BE}) (Version: 1.0.0007 - ASUS) Audacity 2.0.5 (HKLM-x32\...\Audacity_is1) (Version: 2.0.5 - Audacity Team) AVS Media Player 4.1.10.99 (HKLM-x32\...\AVS Media Player_is1) (Version: 4.1.10.99 - Online Media Technologies Ltd.) Bing Bar (HKLM-x32\...\{1E03DB52-D5CB-4338-A338-E526DD4D4DB1}) (Version: 7.0.610.0 - Microsoft Corporation) Bluetooth Win7 Suite (64) (HKLM\...\{230D1595-57DA-4933-8C4E-375797EBB7E1}) (Version: 7.2.0.45 - Atheros Communications) Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.) CambridgeSoft Activation Client (HKLM-x32\...\{E773E0B9-6ABE-4F9E-816C-56B2DD8613B9}) (Version: 12.0 - CambridgeSoft Corporation) CambridgeSoft ChemDraw Ultra 12.0 (HKLM-x32\...\{48DEAAF2-8276-4BBD-B7B6-91E454938476}) (Version: 12.0 - CambridgeSoft Corporation) Canon Easy-WebPrint EX (HKLM-x32\...\Easy-WebPrint EX) (Version: 1.3.5.0 - Canon Inc.) Canon iP4300 (HKLM\...\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_iP4300) (Version: - ) Canon MP Navigator EX 4.0 (HKLM-x32\...\MP Navigator EX 4.0) (Version: - ) Canon Setup Utility 2.3 (HKLM-x32\...\Canon Setup Utility 2.3) (Version: - ) Canon Solution Menu EX (HKLM-x32\...\CanonSolutionMenuEX) (Version: - ) CanoScan LiDE 110 Scanner Driver (HKLM\...\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_CNQ2414) (Version: - ) Citavi 4 (HKLM-x32\...\{CC0A85B2-734A-45B3-B678-05F6A6499AC7}) (Version: 4.3.0.15 - Swiss Academic Software) Citrix Online Launcher (HKLM-x32\...\{B025BA0B-64A6-46DE-9D64-32965C83CCA9}) (Version: 1.0.179 - Citrix) Control ActiveX de Windows Live Mesh para conexiones remotas (HKLM-x32\...\{04668DF2-D32F-4555-9C7E-35523DCD6544}) (Version: 15.4.5722.2 - Microsoft Corporation) Contrôle ActiveX Windows Live Mesh pour connexions à distance (HKLM-x32\...\{55D003F4-9599-44BF-BA9E-95D060730DD3}) (Version: 15.4.5722.2 - Microsoft Corporation) Controlo ActiveX do Windows Live Mesh para Ligações Remotas (HKLM-x32\...\{E54EEB5D-41ED-40FE-B4A8-8565DB81469B}) (Version: 15.4.5722.2 - Microsoft Corporation) CyberLink LabelPrint (HKLM-x32\...\InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243}) (Version: 2.5.1908 - CyberLink Corp.) CyberLink LabelPrint (x32 Version: 2.5.1908 - CyberLink Corp.) Hidden CyberLink Power2Go (HKLM-x32\...\InstallShield_{40BF1E83-20EB-11D8-97C5-0009C5020658}) (Version: 6.1.3602c - CyberLink Corp.) CyberLink Power2Go (x32 Version: 6.1.3602c - CyberLink Corp.) Hidden Dropbox (HKCU\...\Dropbox) (Version: 2.10.27 - Dropbox, Inc.) ETDWare PS/2-x64 7.0.5.16_WHQL (HKLM\...\Elantech) (Version: 7.0.5.16 - ELAN Microelectronics Corp.) Fast Boot (HKLM\...\{13F4A7F3-EABC-4261-AF6B-1317777F0755}) (Version: 1.0.8 - ASUS) Free PDF to Word Doc Converter v1.1 (HKLM-x32\...\Free PDF to Word Doc Converter_is1) (Version: 1.1 - Free PDF to Word Doc Converter - easy and powerful pdf converter software.) Free YouTube to MP3 Converter version 3.12.32.327 (HKLM-x32\...\Free YouTube to MP3 Converter_is1) (Version: 3.12.32.327 - DVDVideoSoft Ltd.) G Data AntiVirus 2014 (HKLM-x32\...\{5F17164A-FE5F-48B4-916F-56C6C4470D32}) (Version: 24.0.2.3 - G Data Software AG) GetDiscountApp (HKLM-x32\...\{37476589-E48E-439E-A706-56189E2ED4C4}_is1) (Version: - GetDiscountApp) GIMP 2.8.0 (HKLM\...\GIMP-2_is1) (Version: 2.8.0 - The GIMP Team) Glary Utilities 2.38.0.1288 (HKLM-x32\...\Glary Utilities_is1) (Version: 2.38.0.1288 - Glarysoft Ltd) GoToMeeting 6.3.0.1468 (HKCU\...\GoToMeeting) (Version: 6.3.0.1468 - CitrixOnline) Intel(R) Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1007 - Intel Corporation) Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 7.0.0.1144 - Intel Corporation) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 8.15.10.2291 - Intel Corporation) Intel(R) Turbo Boost Technology Monitor (HKLM\...\{39F4C6F9-618A-4E5B-8FB2-6BD661174E32}) (Version: 1.0.400.4 - Intel) iTunes (HKLM\...\{76FF0F03-B707-4332-B5D1-A56C8303514E}) (Version: 11.0.4.4 - Apple Inc.) Java 8 Update 11 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86418011FF}) (Version: 8.0.110 - Oracle Corporation) Java Auto Updater (x32 Version: 2.0.5.1 - Sun Microsystems, Inc.) Hidden Java(TM) 6 Update 29 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83216029FF}) (Version: 6.0.290 - Oracle) Juniper Networks Network Connect 7.0.0 (HKLM-x32\...\Juniper Network Connect 7.0.0) (Version: 7.0.0.17289 - Juniper Networks) Juniper Networks Network Connect 7.1.8 (HKLM-x32\...\Juniper Network Connect 7.1.8) (Version: 7.1.8.20737 - Juniper Networks) Juniper Networks Network Connect 7.2.0 (HKLM-x32\...\Juniper Network Connect 7.2.0) (Version: 7.2.0.21697 - Juniper Networks) Juniper Networks Network Connect 7.4.0 (HKLM-x32\...\Juniper Network Connect 7.4.0) (Version: 7.4.0.30667 - Juniper Networks) Juniper Networks Setup Client Activex Control (HKLM-x32\...\Juniper_Setup_Client Activex Control) (Version: 2.1.1.1 - Juniper Networks) Juniper Networks, Inc. Setup Client (HKCU\...\Juniper_Setup_Client) (Version: 7.4.9.45013 - Juniper Networks, Inc.) Juniper Networks, Inc. Setup Client 64-bit Activex Control (HKLM\...\Juniper_Setup_Client Activex Control) (Version: 2.1.1.1 - Juniper Networks, Inc.) Langenscheidt Vokabeltrainer 6.0 Spanisch (HKLM-x32\...\{249556BD-ABA8-4510-84A3-8B30B402B07C}) (Version: 6.0.0 - Langenscheidt) lingDIALOG (HKLM-x32\...\InstallShield_{071B843C-9A39-40B3-BB01-BBD6A8D2E1C5}) (Version: 3.0908 - WEVOSYS) lingDIALOG (x32 Version: 3.0908 - WEVOSYS) Hidden Microsoft .NET Framework 4 Client Profile (HKLM\...\Microsoft .NET Framework 4 Client Profile) (Version: 4.0.30319 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 (Version: 4.5.50938 - Microsoft Corporation) Hidden Microsoft Application Error Reporting (Version: 12.0.6015.5000 - Microsoft Corporation) Hidden Microsoft IntelliPoint 8.1 (HKLM\...\Microsoft IntelliPoint 8.1) (Version: 8.15.406.0 - Microsoft) Microsoft IntelliPoint 8.1 (Version: 8.15.406.0 - Microsoft) Hidden Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version: - Microsoft) Microsoft Office 2007 Service Pack 3 (SP3) (x32 Version: - Microsoft) Hidden Microsoft Office 2010 (HKLM-x32\...\{95140000-0070-0000-0000-0000000FF1CE}) (Version: 14.0.4763.1000 - Microsoft Corporation) Microsoft Office Access MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Enterprise 2007 (HKLM-x32\...\ENTERPRISE) (Version: 12.0.6612.1000 - Microsoft Corporation) Microsoft Office Enterprise 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Excel MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Groove MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office InfoPath MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Office 64-bit Components 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office OneNote MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Outlook MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office PowerPoint MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Proof (English) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Proof (French) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Proof (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Proof (Italian) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Proofing (German) 2007 (x32 Version: 12.0.4518.1014 - Microsoft Corporation) Hidden Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) (x32 Version: - Microsoft) Hidden Microsoft Office Publisher MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Shared 64-bit MUI (German) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Shared MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Word MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation) Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (HKLM-x32\...\{770657D0-A123-3C07-8E44-1C83EC895118}) (Version: 8.0.50727.4053 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (Version: 8.0.59192 - Microsoft Corporation) Hidden Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{09298F26-A95C-31E2-9D95-2C60F586F075}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319 (HKLM-x32\...\{196BB40D-1578-3D01-B289-BEFC77A11A1E}) (Version: 10.0.30319 - Microsoft Corporation) Mozilla Firefox 31.0 (x86 de) (HKLM-x32\...\Mozilla Firefox 31.0 (x86 de)) (Version: 31.0 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 29.0 - Mozilla) MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation) MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation) NVIDIA Control Panel 267.21 (Version: 267.21 - NVIDIA Corporation) Hidden NVIDIA Graphics Driver 267.21 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 267.21 - NVIDIA Corporation) NVIDIA Install Application (Version: 2.265.39.0 - NVIDIA Corporation) Hidden NVIDIA Optimus 1.0.21 (Version: 1.0.21 - NVIDIA Corporation) Hidden NVIDIA Update Components (Version: 1.0.21 - NVIDIA Corporation) Hidden Optimizer Pro v3.2 (HKLM-x32\...\Optimizer Pro_is1) (Version: - ) <==== ATTENTION Platform (x32 Version: 1.36 - VIA Technologies, Inc.) Hidden Polar Daemon (HKLM-x32\...\{2BA9320D-E061-4C71-ACCB-AC0E9D4FC82B}) (Version: 2.2.20000 - Polar Electro Oy) Polar WebSync (HKLM-x32\...\{320453EE-6AEA-4E1A-8E64-72F33C0C928F}) (Version: 2.8.10006 - Polar Electro Oy) QuickTime (HKLM-x32\...\{C9E14402-3631-4182-B377-6B0DFB1C0339}) (Version: 7.70.80.34 - Apple Inc.) SceneSwitch (HKLM-x32\...\{5172E572-C175-4F80-A6D5-5CB45826AD61}) (Version: 1.0.6 - ASUS) SecureW2 Enterprise Client 3.5.10 MSI Installer (HKLM-x32\...\{495E2DF3-0950-442C-A2C4-2D7B4C6D6337}) (Version: 3.5.10 - SecureW2) Shared Add-in Support Update for Microsoft .NET Framework 2.0 (KB908002) (HKLM-x32\...\{64F3B15C-24C7-4B2B-9B72-65CCBBD7F06B}) (Version: 1.0.0 - Microsoft) Skype™ 6.18 (HKLM-x32\...\{7A3C7E05-EE37-47D6-99E1-2EB05A3DA3F7}) (Version: 6.18.106 - Skype Technologies S.A.) streamWriter (HKLM-x32\...\streamWriter_is1) (Version: - ) syncables desktop SE (HKLM-x32\...\{341697D8-9923-445E-B42A-529E5A99CB7A}) (Version: 5.5.746.11492 - syncables) TuneUp Utilities 2014 (de-DE) (x32 Version: 14.0.1000.221 - TuneUp Software) Hidden TuneUp Utilities 2014 (HKLM-x32\...\TuneUp Utilities) (Version: 14.0.1000.221 - TuneUp Software) TuneUp Utilities 2014 (x32 Version: 14.0.1000.221 - TuneUp Software) Hidden UnderCoverXP 1.23 (HKLM-x32\...\UnderCoverXP_is1) (Version: - Wicked & Wild Inc.) Update for 2007 Microsoft Office System (KB967642) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version: - Microsoft) Update for Microsoft Office 2007 suites (KB2596620) 32-Bit Edition (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{A024FC7B-77DE-45DE-A058-1C049A17BFB3}) (Version: - Microsoft) Update for Microsoft Office 2007 suites (KB2767849) 32-Bit Edition (HKLM-x32\...\{90120000-002A-0000-1000-0000000FF1CE}_ENTERPRISE_{CB68A5B0-3508-4193-AEB9-AF636DAECE0F}) (Version: - Microsoft) Update for Microsoft Office 2007 suites (KB2767849) 32-Bit Edition (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{CB68A5B0-3508-4193-AEB9-AF636DAECE0F}) (Version: - Microsoft) Update for Microsoft Office 2007 suites (KB2767916) 32-Bit Edition (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{E9A82945-BA29-4EE8-8F2A-2F49545E9CF2}) (Version: - Microsoft) Update for Microsoft Office Outlook 2007 (KB2687404) 32-Bit Edition (HKLM-x32\...\{90120000-001A-0407-0000-0000000FF1CE}_ENTERPRISE_{EA54F104-79D2-48CC-9ABC-91A63C43D353}) (Version: - Microsoft) Update for Microsoft Office Outlook 2007 (KB2863811) 32-Bit Edition (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{53DEC068-4690-4F6B-9946-7D21EF02236B}) (Version: - Microsoft) Update for Microsoft Office Outlook 2007 Junk Email Filter (KB2883097) 32-Bit Edition (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{B2260BC9-D561-46EE-B33D-739CF760A2A9}) (Version: - Microsoft) Update für Microsoft Office Excel 2007 Help (KB963678) (HKLM-x32\...\{90120000-0016-0407-0000-0000000FF1CE}_ENTERPRISE_{BEC163EC-7A83-48A1-BFB6-3BF47CC2F8CF}) (Version: - Microsoft) Update für Microsoft Office Outlook 2007 Help (KB963677) (HKLM-x32\...\{90120000-001A-0407-0000-0000000FF1CE}_ENTERPRISE_{F6828576-6F79-470D-AB50-69D1BBADBD30}) (Version: - Microsoft) Update für Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM-x32\...\{90120000-0018-0407-0000-0000000FF1CE}_ENTERPRISE_{EA160DA3-E9B5-4D03-A518-21D306665B96}) (Version: - Microsoft) Update für Microsoft Office Word 2007 Help (KB963665) (HKLM-x32\...\{90120000-001B-0407-0000-0000000FF1CE}_ENTERPRISE_{38472199-D7B6-4833-A949-10E4EE6365A1}) (Version: - Microsoft) VIA Platform Device Manager (HKLM-x32\...\InstallShield_{20D4A895-748C-4D88-871C-FDB1695B0169}) (Version: 1.36 - VIA Technologies, Inc.) Vokabeltrainer-Update 6.0.16 (HKLM-x32\...\{518F8DB2-65BA-40F7-B843-1F11F8F1B124}) (Version: 6.0.16 - Langenscheidt) Windows Live Mesh - ActiveX-besturingselement voor externe verbindingen (HKLM-x32\...\{C32CE55C-12BA-4951-8797-0967FDEF556F}) (Version: 15.4.5722.2 - Microsoft Corporation) Windows Live Mesh ActiveX Control for Remote Connections (HKLM-x32\...\{2902F983-B4C1-44BA-B85D-5C6D52E2C441}) (Version: 15.4.5722.2 - Microsoft Corporation) Windows Live Mesh ActiveX control for remote connections (HKLM-x32\...\{C5398A89-516C-4DAF-BA07-EE7949090E56}) (Version: 15.4.5722.2 - Microsoft Corporation) Windows Live Mesh ActiveX Control for Remote Connections (HKLM-x32\...\{C63A1E60-B6A4-440B-89A5-1FC6E4AC1C94}) (Version: 15.4.5722.2 - Microsoft Corporation) Windows Media Player Firefox Plugin (HKLM-x32\...\{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}) (Version: 1.0.0.8 - Microsoft Corp) WinFlash (HKLM-x32\...\{8F21291E-0444-4B1D-B9F9-4370A73E346D}) (Version: 2.31.0 - ASUS) Wireless Console 3 (HKLM-x32\...\{20FDF948-C8ED-4543-A539-F7F4AEF5AFA2}) (Version: 3.0.19 - ASUS) Yahoo Community Smartbar (HKLM-x32\...\{D62304BE-D5D3-4CCF-8973-123909491ADB}) (Version: 11.62.66.17712 - Linkury Inc.) <==== ATTENTION Yahoo Community Smartbar Engine (HKCU\...\{6b9c12e6-d93c-4923-a56a-21b165f4f6c8}) (Version: 10.179.66.13636 - Linkury Inc.) <==== ATTENTION Στοιχείο ελέγχου ActiveX του Windows Live Mesh για απομακρυσμένες συνδέσεις (HKLM-x32\...\{F665F3B8-01B4-46A9-8E47-FF8DC2208C9F}) (Version: 15.4.5722.2 - Microsoft Corporation) Элемент управления Windows Live Mesh ActiveX для удаленных подключений (HKLM-x32\...\{BCB0D6F7-7EAB-4009-A6F2-8E0E7F317773}) (Version: 15.4.5722.2 - Microsoft Corporation) פקד ActiveX של Windows Live Mesh עבור חיבורים מרוחקים (HKLM-x32\...\{9D4C7DFA-CBBB-4F06-BDAC-94D831406DF0}) (Version: 15.4.5722.2 - Microsoft Corporation) عنصر تحكم ActiveX الخاص بـ Windows Live Mesh للاتصالات البعيدة (HKLM-x32\...\{E18B30AA-6E2D-480C-B918-AF61009F4010}) (Version: 15.4.5722.2 - Microsoft Corporation) 適用遠端連線的 Windows Live Mesh ActiveX 控制項 (HKLM-x32\...\{622DE1BE-9EDE-49D3-B349-29D64760342A}) (Version: 15.4.5722.2 - Microsoft Corporation) ==================== Custom CLSID (selected items): ========================== (If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.) CustomCLSID: HKU\S-1-5-21-2438974327-1903873085-1306138816-1001_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\Marie\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2438974327-1903873085-1306138816-1001_Classes\CLSID\{84B5A313-CD5D-4904-8BA2-AFDC81C1B309}\InprocServer32 -> C:\Users\Marie\AppData\Local\Citrix\GoToMeeting\1312\G2MOutlookAddin64.dll (Citrix Online, a division of Citrix Systems, Inc.) CustomCLSID: HKU\S-1-5-21-2438974327-1903873085-1306138816-1001_Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Marie\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2438974327-1903873085-1306138816-1001_Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Marie\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2438974327-1903873085-1306138816-1001_Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Marie\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2438974327-1903873085-1306138816-1001_Classes\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Marie\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2438974327-1903873085-1306138816-1001_Classes\CLSID\{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Marie\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2438974327-1903873085-1306138816-1001_Classes\CLSID\{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Marie\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2438974327-1903873085-1306138816-1001_Classes\CLSID\{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Marie\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2438974327-1903873085-1306138816-1001_Classes\CLSID\{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Marie\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.) ==================== Restore Points ========================= 05-08-2014 15:58:06 Windows Update 08-08-2014 20:11:26 Windows Update 12-08-2014 15:52:39 Windows Update 13-08-2014 17:17:30 Windows Update ==================== Hosts content: ========================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2009-07-14 04:34 - 2014-08-15 20:20 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= (If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.) Task: {1443C4E6-453A-4C98-839A-F99ECDF2B361} - System32\Tasks\{58C76C0D-5E79-41EE-A29B-508D280CD5DD} => C:\Program Files (x86)\Skype\\Phone\Skype.exe [2014-07-24] (Skype Technologies S.A.) Task: {2B373F3F-BC32-4A8C-B4A9-0CB3D51928E5} - System32\Tasks\ASUS Secure Delete => C:\Program Files\ASUS\ASUS Secure Delete\ADDEL.exe [2010-05-12] () Task: {2E88AF9C-EA47-4A05-B439-8FFC1D58C2D7} - System32\Tasks\Adobe-Online-Aktualisierungsprogramm => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-11-21] (Adobe Systems Incorporated) Task: {328AEB80-266F-421C-BEC4-48DCD6BEAFF3} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-07-14] (Adobe Systems Incorporated) Task: {32BCA0F4-73DA-431E-B6E7-B6116B02B309} - System32\Tasks\ASUS SmartLogon Console Sensor => C:\Program Files (x86)\ASUS\SmartLogon\sensorsrv.exe [2009-07-31] (ASUS) Task: {3B49F891-F24B-407F-9924-851742BB0402} - System32\Tasks\ATKOSD2 => C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe [2010-08-17] (ASUS) Task: {5F2183E8-E4B7-4EAE-BAF4-FB27BC8214F1} - System32\Tasks\TuneUpUtilities_Task_BkGndMaintenance2013 => C:\Program Files (x86)\TuneUp Utilities 2014\OneClick.exe [2013-12-18] (TuneUp Software) Task: {772F974C-AE79-4DF2-92DF-42F69F93A0E9} - System32\Tasks\ACMON => C:\Program Files (x86)\ASUS\Splendid\ACMON.exe [2010-08-02] (ASUS) Task: {89CED9AC-09E9-448A-A1AA-8DB463B02363} - System32\Tasks\G2MUpdateTask-S-1-5-21-2438974327-1903873085-1306138816-1001 => C:\Users\Marie\AppData\Local\Citrix\GoToMeeting\1468\g2mupdate.exe [2014-07-01] (Citrix Online, a division of Citrix Systems, Inc.) Task: {8C565B97-BE2A-48A6-8943-C0B2178426F1} - System32\Tasks\GlaryInitialize => C:\Program Files (x86)\Glary Utilities\initialize.exe [2011-10-01] (Glarysoft Ltd) Task: {C0F8EE7A-A6A8-43AE-AF51-EF369B98439A} - System32\Tasks\{14FFEAC5-FCA9-4371-B9E2-60939436285B} => Firefox.exe Skype auf Ihren Computer herunterladen ? Windows, Mac und Linux ? Skype herunterladen Task: {CA6BBC01-FCCB-4A9C-99B2-079015A90914} - System32\Tasks\Microsoft_Hardware_Launch_IPoint_exe => C:\Program Files\Microsoft IntelliPoint\IPoint.exe [2011-04-13] (Microsoft Corporation) Task: {FC23A56B-FA12-4D06-BAFD-BBAF76BF114C} - System32\Tasks\ASUS P4G => C:\Program Files\P4G\BatteryLife.exe [2010-11-11] (ASUS) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\G2MUpdateTask-S-1-5-21-2438974327-1903873085-1306138816-1001.job => C:\Users\Marie\AppData\Local\Citrix\GoToMeeting\1468\g2mupdate.exe Task: C:\Windows\Tasks\GlaryInitialize.job => C:\Program Files (x86)\Glary Utilities\initialize.exe ==================== Loaded Modules (whitelisted) ============= 2014-04-24 13:41 - 2014-04-24 13:41 - 02681648 _____ () C:\Program Files (x86)\Optimizer Pro\OptProCrash_x64.dll 2012-12-12 15:20 - 2012-12-12 15:20 - 00419536 _____ () C:\Program Files (x86)\Polar\Daemon\polard.exe 2013-12-18 11:01 - 2013-12-18 11:01 - 00742200 _____ () C:\Program Files (x86)\TuneUp Utilities 2014\avgrepliba.dll 2010-05-12 02:35 - 2010-05-12 02:35 - 00489392 _____ () C:\Program Files\ASUS\ASUS Secure Delete\ADDEL.exe 2010-04-03 04:21 - 2008-10-01 08:08 - 00011264 _____ () C:\Program Files (x86)\ASUS\Splendid\GLCDdll.dll 2010-07-15 01:11 - 2010-07-15 01:11 - 00031360 _____ () C:\Program Files\P4G\DevMng.dll 2011-05-20 09:17 - 2011-01-27 02:11 - 00094208 _____ () C:\Windows\System32\IccLibDll_x64.dll 2013-02-26 16:59 - 2013-02-26 16:59 - 06227512 _____ () F:\Program Files (x86)\Polar\WebSync\WebSync.exe 2013-02-25 04:47 - 2013-02-25 04:47 - 00334288 ____N () C:\Program Files (x86)\Common Files\G Data\AVKProxy\PktIcpt2x64.dll 2010-09-24 01:53 - 2010-09-24 01:53 - 01601536 _____ () C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe 2014-04-24 13:41 - 2014-04-24 13:41 - 02961368 _____ () c:\Program Files (x86)\Optimizer Pro\OptProCrash.dll 2014-04-24 13:41 - 2014-04-24 13:41 - 00186496 _____ () c:\Program Files (x86)\Optimizer Pro\OptProCrashSvc.dll 2011-06-24 22:56 - 2011-06-24 22:56 - 00087328 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll 2011-06-24 22:56 - 2011-06-24 22:56 - 01241888 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll 2012-12-12 15:20 - 2012-12-12 15:20 - 03483856 _____ () C:\Program Files (x86)\Polar\Daemon\libpolar.dll 2009-11-02 23:20 - 2009-11-02 23:20 - 00619816 ____N () C:\Program Files (x86)\CyberLink\Power2Go\CLMediaLibrary.dll 2009-11-02 23:23 - 2009-11-02 23:23 - 00013096 ____N () C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvcPS.dll 2013-02-26 16:59 - 2013-02-26 16:59 - 00110648 _____ () F:\Program Files (x86)\Polar\WebSync\PTransform.dll 2010-02-10 16:06 - 2010-02-10 16:06 - 00334848 _____ () F:\Program Files (x86)\Polar\WebSync\QtXml4.dll 2011-01-14 16:01 - 2011-01-14 16:01 - 02142720 _____ () F:\Program Files (x86)\Polar\WebSync\QtCore4.dll 2013-02-26 16:59 - 2013-02-26 16:59 - 03722296 _____ () F:\Program Files (x86)\Polar\WebSync\libpolar.dll 2010-02-10 16:22 - 2010-02-10 16:22 - 07971840 _____ () F:\Program Files (x86)\Polar\WebSync\QtGui4.dll 2010-02-10 16:07 - 2010-02-10 16:07 - 00929280 _____ () F:\Program Files (x86)\Polar\WebSync\QtNetwork4.dll 2010-02-10 18:45 - 2010-02-10 18:45 - 00025600 _____ () F:\Program Files (x86)\Polar\WebSync\imageformats\qgif4.dll 2010-02-10 18:45 - 2010-02-10 18:45 - 00119808 _____ () F:\Program Files (x86)\Polar\WebSync\imageformats\qjpeg4.dll 2014-08-15 12:55 - 2014-08-15 12:55 - 00043008 _____ () c:\users\marie\appdata\local\temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpxj1yd4.dll 2013-08-23 21:01 - 2013-08-23 21:01 - 25100288 _____ () C:\Users\Marie\AppData\Roaming\Dropbox\bin\libcef.dll 2014-07-30 19:05 - 2014-07-30 19:05 - 03800688 _____ () C:\Program Files (x86)\Mozilla Firefox\mozjs.dll 2014-07-14 20:53 - 2014-07-14 20:53 - 17029808 _____ () C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_14_0_0_145.dll ==================== Alternate Data Streams (whitelisted) ========= (If an entry is included in the fixlist, only the Alternate Data Streams will be removed.) ==================== Safe Mode (whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) ==================== EXE Association (whitelisted) ============= (If an entry is included in the fixlist, the default will be restored. None default entries will be removed.) ==================== MSCONFIG/TASK MANAGER disabled items ========= (Currently there is no automatic fix for this section.) MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^AsusVibeLauncher.lnk => C:\Windows\pss\AsusVibeLauncher.lnk.CommonStartup MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^FancyStart daemon.lnk => C:\Windows\pss\FancyStart daemon.lnk.CommonStartup MSCONFIG\startupreg: ASUS Screen Saver Protector => C:\Windows\AsScrPro.exe MSCONFIG\startupreg: ASUSWebStorage => C:\Program Files (x86)\ASUS\ASUS WebStorage\3.0.84.161\AsusWSPanel.exe /S MSCONFIG\startupreg: AthBtTray => "C:\Program Files (x86)\Atheros\Bluetooth Suite\AthBtTray.exe" MSCONFIG\startupreg: AtherosBtStack => "C:\Program Files (x86)\Atheros\Bluetooth Suite\BtvStack.exe" MSCONFIG\startupreg: CLMLServer => "C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe" MSCONFIG\startupreg: IntelliPoint => "C:\Program Files\Microsoft IntelliPoint\ipoint.exe" MSCONFIG\startupreg: Setwallpaper => c:\programdata\SetWallpaper.cmd MSCONFIG\startupreg: SunJavaUpdateSched => "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" MSCONFIG\startupreg: Trend Micro Titanium => C:\Program Files\Trend Micro\Titanium\VizorShortCut.exe -ReFlush "none" "none" MSCONFIG\startupreg: UpdateLBPShortCut => "C:\Program Files (x86)\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\LabelPrint" UpdateWithCreateOnce "Software\CyberLink\LabelPrint\2.5" MSCONFIG\startupreg: UpdateP2GoShortCut => "C:\Program Files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\Power2Go" UpdateWithCreateOnce "SOFTWARE\CyberLink\Power2Go\6.0" MSCONFIG\startupreg: VizorHtmlDialog.exe => "C:\Program Files\Trend Micro\Titanium\UIFramework\VizorHtmlDialog.exe" "DEF" "EULA" "C:\Program Files\Trend Micro\Titanium\UI\Installer.cmpt\resources\preinstall_01_welcome_trial.html" "DEF" "DEF" "DEF" ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (08/15/2014 08:40:51 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 30592 Error: (08/15/2014 08:40:51 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledEvent 30592 Error: (08/15/2014 08:40:51 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: Continuously busy for more than a second Error: (08/15/2014 08:40:45 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 24680 Error: (08/15/2014 08:40:45 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledEvent 24680 Error: (08/15/2014 08:40:45 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: Continuously busy for more than a second Error: (08/15/2014 08:40:44 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 23681 Error: (08/15/2014 08:40:44 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledEvent 23681 Error: (08/15/2014 08:40:44 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: Continuously busy for more than a second Error: (08/15/2014 08:40:43 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 22667 System errors: ============= Error: (08/15/2014 08:41:08 PM) (Source: BTHUSB) (EventID: 17) (User: ) Description: Der lokale Bluetooth-Adapter ist aus einem unbekannten Grund fehlgeschlagen und wird nicht verwendet. Der Treiber wurde entladen. Error: (08/15/2014 08:11:14 PM) (Source: Disk) (EventID: 7) (User: ) Description: Fehlerhafter Block bei Gerät \Device\Harddisk1\DR1. Error: (08/15/2014 08:11:14 PM) (Source: Disk) (EventID: 7) (User: ) Description: Fehlerhafter Block bei Gerät \Device\Harddisk1\DR1. Error: (08/15/2014 08:02:50 PM) (Source: Disk) (EventID: 7) (User: ) Description: Fehlerhafter Block bei Gerät \Device\Harddisk1\DR1. Error: (08/15/2014 07:39:36 PM) (Source: Disk) (EventID: 7) (User: ) Description: Fehlerhafter Block bei Gerät \Device\Harddisk1\DR1. Error: (08/15/2014 07:27:46 PM) (Source: Disk) (EventID: 7) (User: ) Description: Fehlerhafter Block bei Gerät \Device\Harddisk1\DR1. Error: (08/15/2014 03:50:28 PM) (Source: BTHUSB) (EventID: 17) (User: ) Description: Der lokale Bluetooth-Adapter ist aus einem unbekannten Grund fehlgeschlagen und wird nicht verwendet. Der Treiber wurde entladen. Error: (08/15/2014 02:09:32 PM) (Source: BTHUSB) (EventID: 17) (User: ) Description: Der lokale Bluetooth-Adapter ist aus einem unbekannten Grund fehlgeschlagen und wird nicht verwendet. Der Treiber wurde entladen. Error: (08/15/2014 01:26:29 PM) (Source: BTHUSB) (EventID: 17) (User: ) Description: Der lokale Bluetooth-Adapter ist aus einem unbekannten Grund fehlgeschlagen und wird nicht verwendet. Der Treiber wurde entladen. Error: (08/14/2014 05:57:32 PM) (Source: BTHUSB) (EventID: 17) (User: ) Description: Der lokale Bluetooth-Adapter ist aus einem unbekannten Grund fehlgeschlagen und wird nicht verwendet. Der Treiber wurde entladen. Microsoft Office Sessions: ========================= ==================== Memory info =========================== Processor: Intel(R) Core(TM) i5-2410M CPU @ 2.30GHz Percentage of memory in use: 60% Total physical RAM: 4008.16 MB Available physical RAM: 1571.55 MB Total Pagefile: 8014.5 MB Available Pagefile: 4521.88 MB Total Virtual: 8192 MB Available Virtual: 8191.84 MB ==================== Drives ================================ Drive c: (OS) (Fixed) (Total:186.3 GB) (Free:52.72 GB) NTFS ==>[System with boot components (obtained from reading drive)] Drive d: (DATA) (Fixed) (Total:156.8 GB) (Free:156.59 GB) NTFS Drive e: (BURN_AFTER_READING_D1) (CDROM) (Total:5.95 GB) (Free:0 GB) UDF Drive f: (Volume) (Fixed) (Total:97.66 GB) (Free:87.97 GB) NTFS Drive g: (KINGSTON) (Removable) (Total:7.45 GB) (Free:6.38 GB) FAT32 Drive h: (INTENSO) (Fixed) (Total:596.17 GB) (Free:360.97 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 466 GB) (Disk ID: 343771F7) Partition 1: (Not Active) - (Size=25 GB) - (Type=1C) Partition 2: (Active) - (Size=186 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=254 GB) - (Type=OF Extended) ======================================================== Disk: 1 (Size: 596 GB) (Disk ID: 1F37E3FB) Partition 1: (Not Active) - (Size=596 GB) - (Type=07 NTFS) ======================================================== Disk: 2 (MBR Code: Windows XP) (Size: 7 GB) (Disk ID: C3072E18) Partition 1: (Not Active) - (Size=7 GB) - (Type=0C) ==================== End Of Log ============================ |
18.08.2014, 20:43 | #6 |
/// the machine /// TB-Ausbilder | Windows 7, trotz Werbeblocker seit geraumer Zeit Pop-Ups, Werbeanzeigen, blau unterlegt Hyperlinks Adware & Co. deinstallieren
Scan mit Combofix
__________________ --> Windows 7, trotz Werbeblocker seit geraumer Zeit Pop-Ups, Werbeanzeigen, blau unterlegt Hyperlinks |
06.09.2014, 09:29 | #7 |
| Windows 7, trotz Werbeblocker seit geraumer Zeit Pop-Ups, Werbeanzeigen, blau unterlegt Hyperlinks Hallo, sorry habe es nicht eher geschafft. Danke schonmal für die Hilfe... Im Revo Uninstaller finde ich keine wie oben beschriebenen Programme... muss ich da extranoch was eingeben? Wenn ja wo? |
06.09.2014, 19:45 | #8 |
/// the machine /// TB-Ausbilder | Windows 7, trotz Werbeblocker seit geraumer Zeit Pop-Ups, Werbeanzeigen, blau unterlegt Hyperlinks Den Zusatz findest du wie oben beschrieben in der Addition.txt von FRST, nicht in Revo
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
08.09.2014, 16:49 | #9 |
| Windows 7, trotz Werbeblocker seit geraumer Zeit Pop-Ups, Werbeanzeigen, blau unterlegt Hyperlinks Aaaaaah, sorry Habe ich gemacht, ein Programm hat der RevoUnistaller allerdings nicht in der Liste. Ich mache mal mit Combofix weiter, allerdings weiß ich nicht, wie ich GData komplett ausschalten kann, Tipps? Lg und ganz vielen lieben Dank, Marie Edit: So und hier der Log-File von ComcoFix: Combofix Logfile: Code:
ATTFilter ComboFix 14-09-05.01 - Marie 08.09.2014 17:55:10.1.4 - x64 Microsoft Windows 7 Home Premium 6.1.7601.1.1252.49.1031.18.4008.2185 [GMT 2:00] ausgeführt von:: c:\users\Marie\Desktop\ComboFix.exe AV: G Data AntiVirus 2014 *Disabled/Updated* {39B780B4-63C2-05B0-3B40-8F7A21E4F496} SP: G Data AntiVirus 2014 *Disabled/Updated* {82D66150-45F8-0A3E-01F0-B4085A63BE2B} SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} . . (((((((((((((((((((((((((((((((((((( Weitere Löschungen )))))))))))))))))))))))))))))))))))))))))))))))) . . c:\program files (x86)\SecureW2 c:\program files (x86)\SecureW2\sw2_res_default.bmp c:\program files (x86)\SecureW2\sw2_rsaproxy.exe c:\program files (x86)\SecureW2\sw2_tray.exe c:\program files (x86)\SecureW2\Uninstall.exe c:\programdata\GetDiscountApp c:\programdata\GetDiscountApp\GetDiscountApp.exe c:\programdata\LucakyShiOpper c:\programdata\LucakyShiOpper\bC5.dat c:\programdata\LucakyShiOpper\bC5.dll c:\programdata\LucakyShiOpper\bC5.tlb c:\programdata\LucakyShiOpper\bC5.x64.dll c:\programdata\RoyalCOupon c:\programdata\RoyalCOupon\YuxrA.dat c:\programdata\RoyalCOupon\YuxrA.tlb c:\programdata\SALesChecKere c:\programdata\SALesChecKere\PDz4.dat c:\programdata\SALesChecKere\PDz4.tlb c:\programdata\SALesChecKere\PDz4.x64.dll c:\users\Marie\AppData\Local\Packages\windows_ie_ac_001\AC\{6A774765-17D1-DB92-4485-242B7EDD0325} c:\users\Marie\AppData\Local\Packages\windows_ie_ac_001\AC\{6A774765-17D1-DB92-4485-242B7EDD0325}\LucakyShiOpper.2.9.dat c:\users\Marie\AppData\LocalLow\{459C69EB-93B2-BC72-434F-171A9E8EA307} c:\users\Marie\AppData\LocalLow\{459C69EB-93B2-BC72-434F-171A9E8EA307}\RoyalCOupon.2.9.dat c:\users\Marie\AppData\LocalLow\{6A774765-17D1-DB92-4485-242B7EDD0325} c:\users\Marie\AppData\LocalLow\{6A774765-17D1-DB92-4485-242B7EDD0325}\LucakyShiOpper.2.9.dat c:\users\Marie\AppData\Roaming\Mozilla\Firefox\Profiles\yxxug84n.default\extensions\chu@yaqju.com c:\users\Marie\AppData\Roaming\Mozilla\Firefox\Profiles\yxxug84n.default\extensions\chu@yaqju.com\bootstrap.js c:\users\Marie\AppData\Roaming\Mozilla\Firefox\Profiles\yxxug84n.default\extensions\chu@yaqju.com\chrome.manifest c:\users\Marie\AppData\Roaming\Mozilla\Firefox\Profiles\yxxug84n.default\extensions\chu@yaqju.com\content\bg.js c:\users\Marie\AppData\Roaming\Mozilla\Firefox\Profiles\yxxug84n.default\extensions\chu@yaqju.com\content\w0u.js c:\users\Marie\AppData\Roaming\Mozilla\Firefox\Profiles\yxxug84n.default\extensions\chu@yaqju.com\install.rdf c:\users\Marie\AppData\Roaming\Mozilla\Firefox\Profiles\yxxug84n.default\extensions\yiihdbo@oarvb.edu c:\users\Marie\AppData\Roaming\Mozilla\Firefox\Profiles\yxxug84n.default\extensions\yiihdbo@oarvb.edu\bootstrap.js c:\users\Marie\AppData\Roaming\Mozilla\Firefox\Profiles\yxxug84n.default\extensions\yiihdbo@oarvb.edu\chrome.manifest c:\users\Marie\AppData\Roaming\Mozilla\Firefox\Profiles\yxxug84n.default\extensions\yiihdbo@oarvb.edu\content\bg.js c:\users\Marie\AppData\Roaming\Mozilla\Firefox\Profiles\yxxug84n.default\extensions\yiihdbo@oarvb.edu\content\TS.js c:\users\Marie\AppData\Roaming\Mozilla\Firefox\Profiles\yxxug84n.default\extensions\yiihdbo@oarvb.edu\install.rdf D:\install.exe . . ((((((((((((((((((((((( Dateien erstellt von 2014-08-08 bis 2014-09-08 )))))))))))))))))))))))))))))) . . 2014-09-08 16:04 . 2014-09-08 16:04 -------- d-----w- c:\users\UpdatusUser\AppData\Local\temp 2014-09-08 16:04 . 2014-09-08 16:04 -------- d-----w- c:\users\Default\AppData\Local\temp 2014-09-06 08:21 . 2014-08-21 03:43 11319192 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{7D29D17F-4411-480F-B818-5FAE618AFC9C}\mpengine.dll 2014-08-28 10:42 . 2014-08-23 02:07 404480 ----a-w- c:\windows\system32\gdi32.dll 2014-08-28 10:42 . 2014-08-23 01:45 311808 ----a-w- c:\windows\SysWow64\gdi32.dll 2014-08-28 10:42 . 2014-08-23 00:59 3163648 ----a-w- c:\windows\system32\win32k.sys 2014-08-26 14:56 . 2014-08-26 14:56 -------- d-----w- c:\users\Marie\AppData\Roaming\dvdcss 2014-08-25 21:59 . 2014-08-27 09:39 -------- d-----w- c:\users\Marie\AppData\Roaming\vlc 2014-08-15 19:11 . 2014-09-06 08:24 -------- d-----w- C:\FRST 2014-08-13 17:19 . 2014-03-09 21:48 171160 ----a-w- c:\windows\system32\infocardapi.dll 2014-08-13 17:19 . 2014-03-09 21:48 1389208 ----a-w- c:\windows\system32\icardagt.exe 2014-08-13 17:19 . 2014-03-09 21:47 99480 ----a-w- c:\windows\SysWow64\infocardapi.dll 2014-08-13 17:19 . 2014-03-09 21:47 619672 ----a-w- c:\windows\SysWow64\icardagt.exe 2014-08-13 17:19 . 2014-06-30 22:24 8856 ----a-w- c:\windows\system32\icardres.dll 2014-08-13 17:19 . 2014-06-30 22:14 8856 ----a-w- c:\windows\SysWow64\icardres.dll 2014-08-13 17:19 . 2014-06-06 06:16 35480 ----a-w- c:\windows\SysWow64\TsWpfWrp.exe 2014-08-13 17:19 . 2014-06-06 06:12 35480 ----a-w- c:\windows\system32\TsWpfWrp.exe 2014-08-13 14:28 . 2014-07-09 02:03 7168 ----a-w- c:\windows\system32\KBDTAT.DLL 2014-08-13 14:28 . 2014-07-09 02:03 7168 ----a-w- c:\windows\system32\KBDYAK.DLL 2014-08-13 14:28 . 2014-07-09 02:03 7168 ----a-w- c:\windows\system32\KBDRU1.DLL 2014-08-13 14:28 . 2014-07-09 02:03 6656 ----a-w- c:\windows\system32\KBDRU.DLL 2014-08-13 14:28 . 2014-07-09 02:03 7168 ----a-w- c:\windows\system32\KBDBASH.DLL 2014-08-13 14:28 . 2014-07-09 01:31 7168 ----a-w- c:\windows\SysWow64\KBDYAK.DLL 2014-08-13 14:28 . 2014-07-09 01:31 6656 ----a-w- c:\windows\SysWow64\KBDBASH.DLL 2014-08-13 14:26 . 2014-07-14 02:02 1216000 ----a-w- c:\windows\system32\rpcrt4.dll 2014-08-13 14:26 . 2014-08-07 02:06 529920 ----a-w- c:\windows\system32\aepdu.dll 2014-08-13 14:26 . 2014-08-07 02:01 424448 ----a-w- c:\windows\system32\aeinv.dll 2014-08-13 14:26 . 2014-07-14 01:40 664064 ----a-w- c:\windows\SysWow64\rpcrt4.dll 2014-08-10 07:19 . 2013-12-18 09:01 29496 ----a-w- c:\windows\system32\authuitu.dll 2014-08-10 07:19 . 2013-12-18 09:01 25400 ----a-w- c:\windows\SysWow64\authuitu.dll 2014-08-10 07:19 . 2013-12-18 09:01 43320 ----a-w- c:\windows\system32\uxtuneup.dll 2014-08-10 07:19 . 2013-12-18 09:01 36152 ----a-w- c:\windows\SysWow64\uxtuneup.dll . . . (((((((((((((((((((((((((((((((((((( Find3M Bericht )))))))))))))))))))))))))))))))))))))))))))))))))))))) . 2014-09-06 14:39 . 2011-07-06 15:38 45056 ----a-w- c:\windows\system32\acovcnt.exe 2014-08-13 17:27 . 2011-08-12 12:49 99218768 ----a-w- c:\windows\system32\MRT.exe 2014-08-05 07:20 . 2011-07-10 13:29 270496 ------w- c:\windows\system32\MpSigStub.exe 2014-07-26 13:37 . 2014-07-26 13:37 111016 ----a-w- c:\windows\system32\WindowsAccessBridge-64.dll 2014-07-26 13:37 . 2014-07-26 13:37 321448 ----a-w- c:\windows\system32\javaws.exe 2014-07-26 13:37 . 2014-07-26 13:37 191400 ----a-w- c:\windows\system32\javaw.exe 2014-07-26 13:37 . 2014-07-26 13:37 190888 ----a-w- c:\windows\system32\java.exe 2014-07-14 18:53 . 2013-01-09 15:49 71344 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl 2014-07-14 18:53 . 2013-01-09 15:49 699056 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe 2014-06-18 02:18 . 2014-07-14 18:20 692736 ----a-w- c:\windows\system32\osk.exe 2014-06-18 01:51 . 2014-07-14 18:20 646144 ----a-w- c:\windows\SysWow64\osk.exe . . (((((((((((((((((((((((((((( Autostartpunkte der Registrierung )))))))))))))))))))))))))))))))))))))))) . . *Hinweis* leere Einträge & legitime Standardeinträge werden nicht angezeigt. REGEDIT4 . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\~\Browser Helper Objects\{31ad400d-1b06-4e33-a59a-90c2c140cba0}] 2010-11-05 01:58 297808 ----a-w- c:\windows\System32\mscoree.dll . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\~\Browser Helper Objects\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6}] 2014-03-27 18:29 297128 ----a-w- c:\program files (x86)\Common Files\DVDVideoSoft\bin\IEDownloadMenuAndBtns.dll . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\~\Browser Helper Objects\{EF5625A3-37AB-4BDB-9875-2A3D91CD0DFD}] 2014-04-24 11:41 279960 ----a-w- c:\program files (x86)\Mysearchdial\1.8.29.0\bh\mysearchdial.dll . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Toolbar] "{3004627E-F8E9-4E8B-909D-316753CBA923}"= "c:\program files (x86)\Mysearchdial\1.8.29.0\mysearchdialTlbr.dll" [2014-04-24 288664] . [HKEY_CLASSES_ROOT\clsid\{3004627e-f8e9-4e8b-909d-316753cba923}] [HKEY_CLASSES_ROOT\mysearchdial.mysearchdialdskBnd.1] [HKEY_CLASSES_ROOT\TypeLib\{4E1E9D45-8BF9-4139-915C-9F83CC3D5921}] [HKEY_CLASSES_ROOT\mysearchdial.mysearchdialdskBnd] . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt1] @="{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}" [HKEY_CLASSES_ROOT\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}] 2014-06-24 22:04 131480 ----a-w- c:\users\Marie\AppData\Roaming\Dropbox\bin\DropboxExt.24.dll . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt2] @="{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}" [HKEY_CLASSES_ROOT\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}] 2014-06-24 22:04 131480 ----a-w- c:\users\Marie\AppData\Roaming\Dropbox\bin\DropboxExt.24.dll . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt3] @="{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}" [HKEY_CLASSES_ROOT\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}] 2014-06-24 22:04 131480 ----a-w- c:\users\Marie\AppData\Roaming\Dropbox\bin\DropboxExt.24.dll . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run] "ASUSPRP"="c:\program files (x86)\ASUS\APRP\APRP.EXE" [2011-04-13 2018032] "ATKMEDIA"="c:\program files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe" [2010-10-07 170624] "HControlUser"="c:\program files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe" [2009-06-19 105016] "Wireless Console 3"="c:\program files (x86)\ASUS\Wireless Console 3\wcourier.exe" [2010-09-23 1601536] "G Data AntiVirus Tray Application"="c:\program files (x86)\G Data\AntiVirus\AVKTray\AVKTray.exe" [2013-03-22 1444304] "APSDaemon"="c:\program files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" [2013-04-21 59720] "G Data AntiVirus Tray"="c:\program files (x86)\G Data\AntiVirus\AVKTray\AVKTray.exe" [2013-03-22 1444304] . c:\users\Marie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\ Dropbox.lnk - c:\users\Marie\AppData\Roaming\Dropbox\bin\Dropbox.exe /systemstartup [2014-7-30 36414496] . c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\ Polar WebSync.lnk - f:\program files (x86)\Polar\WebSync\WebSync.exe -normal [2013-2-26 6227512] . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system] "ConsentPromptBehaviorAdmin"= 5 (0x5) "ConsentPromptBehaviorUser"= 3 (0x3) "EnableUIADesktopToggle"= 0 (0x0) . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\windows] "LoadAppInit_DLLs"=1 (0x1) "AppInit_DLLs"=c:\windows\SysWOW64\nvinit.dll . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\run-] "Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" "iTunesHelper"="f:\program files (x86)\iTunes\iTunesHelper.exe" . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\run-disabled] "QuickTime Task"="c:\program files (x86)\QuickTime\QTTask.exe" -atboottime "Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" "GrooveMonitor"="c:\program files (x86)\Microsoft Office\Office12\GrooveMonitor.exe" "CanonSolutionMenuEx"=c:\program files (x86)\Canon\Solution Menu EX\CNSEMAIN.EXE /logon "iTunesHelper"="f:\program files (x86)\iTunes\iTunesHelper.exe" . R2 70e6ca8c;Optimizer Pro Crash Monitor;c:\windows\system32\rundll32.exe;c:\windows\SYSNATIVE\rundll32.exe [x] R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [x] R3 AmUStor;AM USB Stroage Driver;c:\windows\system32\drivers\AmUStor.SYS;c:\windows\SYSNATIVE\drivers\AmUStor.SYS [x] R3 AthBTPort;Atheros Virtual Bluetooth Class;c:\windows\system32\DRIVERS\btath_flt.sys;c:\windows\SYSNATIVE\DRIVERS\btath_flt.sys [x] R3 BBSvc;Bing Bar Update Service;c:\program files (x86)\Microsoft\BingBar\BBSvc.EXE;c:\program files (x86)\Microsoft\BingBar\BBSvc.EXE [x] R3 BTATH_A2DP;Bluetooth A2DP Audio Driver;c:\windows\system32\drivers\btath_a2dp.sys;c:\windows\SYSNATIVE\drivers\btath_a2dp.sys [x] R3 BTATH_HCRP;Bluetooth HCRP Server driver;c:\windows\system32\DRIVERS\btath_hcrp.sys;c:\windows\SYSNATIVE\DRIVERS\btath_hcrp.sys [x] R3 BTATH_LWFLT;Bluetooth LWFLT Device;c:\windows\system32\DRIVERS\btath_lwflt.sys;c:\windows\SYSNATIVE\DRIVERS\btath_lwflt.sys [x] R3 BTATH_RCP;Bluetooth AVRCP Device;c:\windows\system32\DRIVERS\btath_rcp.sys;c:\windows\SYSNATIVE\DRIVERS\btath_rcp.sys [x] R3 BtFilter;BtFilter;c:\windows\system32\DRIVERS\btfilter.sys;c:\windows\SYSNATIVE\DRIVERS\btfilter.sys [x] R3 dc3d;Microsoft-Hardware – Geräteerkennungstreiber;c:\windows\system32\DRIVERS\dc3d.sys;c:\windows\SYSNATIVE\DRIVERS\dc3d.sys [x] R3 GdNetMon;G Data Network Monitor;c:\windows\system32\drivers\GdNetMon64.sys;c:\windows\SYSNATIVE\drivers\GdNetMon64.sys [x] R3 GDPkIcpt;GDPkIcpt;c:\windows\system32\drivers\PktIcpt.sys;c:\windows\SYSNATIVE\drivers\PktIcpt.sys [x] R3 IEEtwCollectorService;Internet Explorer ETW Collector Service;c:\windows\system32\IEEtwCollector.exe;c:\windows\SYSNATIVE\IEEtwCollector.exe [x] R3 Point64;Microsoft IntelliPoint Filter Driver;c:\windows\system32\DRIVERS\point64.sys;c:\windows\SYSNATIVE\DRIVERS\point64.sys [x] R3 SiSGbeLH;SiS191/SiS190 Ethernet Device NDIS 6.0 Driver;c:\windows\system32\DRIVERS\SiSG664.sys;c:\windows\SYSNATIVE\DRIVERS\SiSG664.sys [x] R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys;c:\windows\SYSNATIVE\drivers\tsusbflt.sys [x] R3 TsUsbGD;Remote Desktop Generic USB Device;c:\windows\system32\drivers\TsUsbGD.sys;c:\windows\SYSNATIVE\drivers\TsUsbGD.sys [x] R3 USBAAPL64;Apple Mobile USB Driver;c:\windows\system32\Drivers\usbaapl64.sys;c:\windows\SYSNATIVE\Drivers\usbaapl64.sys [x] R3 WatAdminSvc;Windows-Aktivierungstechnologieservice;c:\windows\system32\Wat\WatAdminSvc.exe;c:\windows\SYSNATIVE\Wat\WatAdminSvc.exe [x] S0 assd;assd; [x] S0 GDBehave;GDBehave;c:\windows\system32\drivers\GDBehave.sys;c:\windows\SYSNATIVE\drivers\GDBehave.sys [x] S0 nvpciflt;nvpciflt;c:\windows\system32\DRIVERS\nvpciflt.sys;c:\windows\SYSNATIVE\DRIVERS\nvpciflt.sys [x] S1 ATKWMIACPIIO;ATKWMIACPI Driver;c:\program files (x86)\ASUS\ATK Package\ATK WMIACPI\atkwmiacpi64.sys;c:\program files (x86)\ASUS\ATK Package\ATK WMIACPI\atkwmiacpi64.sys [x] S1 GDMnIcpt;GDMnIcpt;c:\windows\system32\drivers\MiniIcpt.sys;c:\windows\SYSNATIVE\drivers\MiniIcpt.sys [x] S1 gdwfpcd;G Data WFP CD;c:\windows\system32\drivers\gdwfpcd64.sys;c:\windows\SYSNATIVE\drivers\gdwfpcd64.sys [x] S1 GRD;G Data Rootkit Detector Driver;c:\windows\system32\drivers\GRD.sys;c:\windows\SYSNATIVE\drivers\GRD.sys [x] S1 HookCentre;HookCentre;c:\windows\system32\drivers\HookCentre.sys;c:\windows\SYSNATIVE\drivers\HookCentre.sys [x] S2 AFBAgent;AFBAgent;c:\windows\system32\FBAgent.exe;c:\windows\SYSNATIVE\FBAgent.exe [x] S2 ASMMAP64;ASMMAP64;c:\program files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys;c:\program files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys [x] S2 Atheros Bt&Wlan Coex Agent;Atheros Bt&Wlan Coex Agent;c:\program files (x86)\Atheros\Ath_CoexAgent.exe;c:\program files (x86)\Atheros\Ath_CoexAgent.exe [x] S2 AtherosSvc;AtherosSvc;c:\program files (x86)\Atheros\Bluetooth Suite\adminservice.exe;c:\program files (x86)\Atheros\Bluetooth Suite\adminservice.exe [x] S2 AVKProxy;G Data AntiVirus Proxy;c:\program files (x86)\Common Files\G Data\AVKProxy\AVKProxy.exe;c:\program files (x86)\Common Files\G Data\AVKProxy\AVKProxy.exe [x] S2 AVKService;G Data Scheduler;c:\program files (x86)\G Data\AntiVirus\AVK\AVKService.exe;c:\program files (x86)\G Data\AntiVirus\AVK\AVKService.exe [x] S2 AVKWCtl;G Data Dateisystem Wächter;c:\program files (x86)\G Data\AntiVirus\AVK\AVKWCtlX64.exe;c:\program files (x86)\G Data\AntiVirus\AVK\AVKWCtlX64.exe [x] S2 Polar Daemon;Polar Daemon;c:\program files (x86)\Polar\Daemon\polard.exe;c:\program files (x86)\Polar\Daemon\polard.exe [x] S2 TuneUp.UtilitiesSvc;TuneUp Utilities Service;c:\program files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesService64.exe;c:\program files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesService64.exe [x] S2 TurboB;Turbo Boost UI Monitor driver;c:\windows\system32\DRIVERS\TurboB.sys;c:\windows\SYSNATIVE\DRIVERS\TurboB.sys [x] S2 TurboBoost;Intel(R) Turbo Boost Technology Monitor;c:\program files\Intel\TurboBoost\TurboBoost.exe;c:\program files\Intel\TurboBoost\TurboBoost.exe [x] S2 UNS;Intel(R) Management and Security Application User Notification Service;c:\program files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe;c:\program files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [x] S2 VIAKaraokeService;VIA Karaoke digital mixer Service;c:\windows\system32\viakaraokesrv.exe;c:\windows\SYSNATIVE\viakaraokesrv.exe [x] S3 BTATH_BUS;Atheros Bluetooth Bus;c:\windows\system32\DRIVERS\btath_bus.sys;c:\windows\SYSNATIVE\DRIVERS\btath_bus.sys [x] S3 ETD;ELAN PS/2 Port Input Device;c:\windows\system32\DRIVERS\ETD.sys;c:\windows\SYSNATIVE\DRIVERS\ETD.sys [x] S3 GDScan;G Data Scanner;c:\program files (x86)\Common Files\G Data\GDScan\GDScan.exe;c:\program files (x86)\Common Files\G Data\GDScan\GDScan.exe [x] S3 IntcDAud;Intel(R) Display Audio;c:\windows\system32\DRIVERS\IntcDAud.sys;c:\windows\SYSNATIVE\DRIVERS\IntcDAud.sys [x] S3 L1C;NDIS Miniport Driver for Atheros AR813x/AR815x PCI-E Ethernet Controller;c:\windows\system32\DRIVERS\L1C62x64.sys;c:\windows\SYSNATIVE\DRIVERS\L1C62x64.sys [x] S3 TuneUpUtilitiesDrv;TuneUpUtilitiesDrv;c:\program files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesDriver64.sys;c:\program files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesDriver64.sys [x] S3 VIAHdAudAddService;VIA High Definition Audio Driver Service;c:\windows\system32\drivers\viahduaa.sys;c:\windows\SYSNATIVE\drivers\viahduaa.sys [x] . . Inhalt des "geplante Tasks" Ordners . 2014-09-08 c:\windows\Tasks\Adobe Flash Player Updater.job - c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-01-09 18:53] . 2014-09-08 c:\windows\Tasks\G2MUpdateTask-S-1-5-21-2438974327-1903873085-1306138816-1001.job - c:\users\Marie\AppData\Local\Citrix\GoToMeeting\1558\g2mupdate.exe [2014-08-25 10:43] . 2014-09-06 c:\windows\Tasks\GlaryInitialize.job - c:\program files (x86)\Glary Utilities\initialize.exe [2011-10-30 08:07] . . --------- X64 Entries ----------- . . [HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{0F709307-8A5A-F941-624B-B7B328CC0D27}] 2014-07-03 09:51 505856 ----a-w- c:\programdata\FlashCoupon\Ls.x64.dll . [HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6}] 2014-03-20 16:08 357432 ----a-w- c:\program files (x86)\Common Files\DVDVideoSoft\bin\IEDownloadMenuAndBtns64.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt1] @="{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}" [HKEY_CLASSES_ROOT\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}] 2014-06-24 22:04 164760 ----a-w- c:\users\Marie\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt2] @="{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}" [HKEY_CLASSES_ROOT\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}] 2014-06-24 22:04 164760 ----a-w- c:\users\Marie\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt3] @="{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}" [HKEY_CLASSES_ROOT\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}] 2014-06-24 22:04 164760 ----a-w- c:\users\Marie\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt4] @="{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}" [HKEY_CLASSES_ROOT\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}] 2014-06-24 22:04 164760 ----a-w- c:\users\Marie\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll . [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "IgfxTray"="c:\windows\system32\igfxtray.exe" [2011-02-10 167960] "HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2011-02-10 391704] "Persistence"="c:\windows\system32\igfxpers.exe" [2011-02-10 418328] "AmIcoSinglun64"="c:\program files (x86)\AmIcoSingLun\AmIcoSinglun64.exe" [2011-03-21 361984] "IntelTBRunOnce"="wscript.exe" [2013-10-12 168960] . [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows] "AppInit_DLLs"=c:\windows\System32\nvinitx.dll . HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Svchost - NetSvcs UxTuneUp . ------- Zusätzlicher Suchlauf ------- . uLocal Page = c:\windows\system32\blank.htm uStart Page = about:blank mStart Page = about:blank mLocal Page = c:\windows\SysWOW64\blank.htm uInternet Settings,ProxyOverride = *.local uSearchAssistant = hxxp://feed.helperbar.com/?p=mKO_AwFzXIpYRaxo67ounJhqib0rXFhtLLIHmXcfrN_YrkL6AMkVAcJ3mJAHPYcE2slwbJii8zfWL1FQRjNUcGNjPCYTvEeyvjl1UFOsKt3JIXk8EiZIAddBQ1AOwOi-LgdTQghlcIUpUQPIXN3qUZfQIqvYTQEeS-EWw2Lyjpyu&q={searchTerms} IE: &Citavi Picker... - file://c:\program files (x86)\Internet Explorer\Citavi Picker\ShowContextMenu.html IE: Free YouTube to MP3 Converter - c:\program files (x86)\Common Files\DVDVideoSoft\plugins\freeytmp3downloader.htm IE: Nach Microsoft E&xel exportieren - c:\progra~2\MICROS~1\Office12\EXCEL.EXE/3000 IE: {{EE932B49-D5C0-4D19-A3DA-CE0849258DE6} - {EE932B49-D5C0-4D19-A3DA-CE0849258DE6} - c:\program files (x86)\Common Files\DVDVideoSoft\bin\IEDownloadMenuAndBtns.dll TCP: DhcpNameServer = 192.168.178.1 FF - ProfilePath - c:\users\Marie\AppData\Roaming\Mozilla\Firefox\Profiles\yxxug84n.default\ FF - prefs.js: browser.startup.homepage - hxxp://feed.helperbar.com/?publisher=YahooOC&dpid=YahooOC&co=DE&userid=94383499-e278-b1bd-fbcf-96d6eaed3f7f&searchtype=hp&fr=linkury-tb&installDate=22/01/2014&type=hp1000 FF - prefs.js: keyword.URL - hxxp://feed.helperbar.com/?publisher=YahooOC&dpid=YahooOC&co=DE&userid=94383499-e278-b1bd-fbcf-96d6eaed3f7f&searchtype=ds&fr=linkury-tb&installDate=22/01/2014&type=hp1000&p= . - - - - Entfernte verwaiste Registrierungseinträge - - - - . BHO-{6A774765-17D1-DB92-4485-242B7EDD0325} - c:\programdata\LucakyShiOpper\bC5.dll Toolbar-Locked - (no file) Wow6432Node-HKLM-Run-SecureW2 Tray - c:\program files (x86)\SecureW2\sw2_tray.exe HKLM_Wow6432Node-ActiveSetup-{2D46B6DC-2207-486B-B523-A557E6D54B47} - start BHO-{6A774765-17D1-DB92-4485-242B7EDD0325} - c:\programdata\LucakyShiOpper\bC5.x64.dll BHO-{AF5E38B6-27DD-C31B-91A9-13FFB0F4560B} - c:\programdata\SALesChecKere\PDz4.x64.dll Toolbar-Locked - (no file) HKLM-Run-ETDWare - c:\program files (x86)\Elantech\ETDCtrl.exe AddRemove-{37476589-E48E-439E-A706-56189E2ED4C4}_is1 - c:\programdata\GetDiscountApp\GetDiscountApp.exe . . . --------------------- Gesperrte Registrierungsschluessel --------------------- . [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security] @Denied: (Full) (Everyone) . Zeit der Fertigstellung: 2014-09-08 18:08:39 ComboFix-quarantined-files.txt 2014-09-08 16:08 . Vor Suchlauf: 10 Verzeichnis(se), 56.815.575.040 Bytes frei Nach Suchlauf: 17 Verzeichnis(se), 56.301.535.232 Bytes frei . - - End Of File - - DF6E3A4F8D4B6DF20DED55EAF96FE44F Geändert von Maerry (08.09.2014 um 17:15 Uhr) |
08.09.2014, 19:35 | #10 |
/// the machine /// TB-Ausbilder | Windows 7, trotz Werbeblocker seit geraumer Zeit Pop-Ups, Werbeanzeigen, blau unterlegt Hyperlinks Downloade Dir bitte Malwarebytes Anti-Malware
Downloade Dir bitte AdwCleaner auf deinen Desktop.
Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
und ein frisches FRST log bitte.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
09.09.2014, 00:36 | #11 |
| Windows 7, trotz Werbeblocker seit geraumer Zeit Pop-Ups, Werbeanzeigen, blau unterlegt Hyperlinks Hallo, vielen Dank schonmal, esist schon wahnsinnig viel besser alles! Hier alle logs in der genannten Reihenfolge: Malwarebytes Anti-Malware www.malwarebytes.org Suchlauf Datum: 09.09.2014 Suchlauf-Zeit: 00:23:33 Logdatei: mbam.txt Administrator: Ja Version: 2.00.2.1012 Malware Datenbank: v2014.09.08.08 Rootkit Datenbank: v2014.08.21.01 Lizenz: Kostenlos Malware Schutz: Deaktiviert Bösartiger Webseiten Schutz: Deaktiviert Self-protection: Deaktiviert Betriebssystem: Windows 7 Service Pack 1 CPU: x64 Dateisystem: NTFS Benutzer: Marie Suchlauf-Art: Bedrohungs-Suchlauf Ergebnis: Abgeschlossen Durchsuchte Objekte: 363376 Verstrichene Zeit: 23 Min, 8 Sek Speicher: Aktiviert Autostart: Aktiviert Dateisystem: Aktiviert Archive: Aktiviert Rootkits: Deaktiviert Heuristics: Aktiviert PUP: Aktiviert PUM: Aktiviert Prozesse: 0 (No malicious items detected) Module: 0 (No malicious items detected) Registrierungsschlüssel: 69 PUP.Optional.Preload, HKLM\SOFTWARE\CLASSES\CLSID\{0F709307-8A5A-F941-624B-B7B328CC0D27}, In Quarantäne, [64d415d6037874c2e2765d45d72a07f9], PUP.Optional.Preload, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{0F709307-8A5A-F941-624B-B7B328CC0D27}, In Quarantäne, [64d415d6037874c2e2765d45d72a07f9], PUP.Optional.Preload, HKU\S-1-5-21-2438974327-1903873085-1306138816-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{0F709307-8A5A-F941-624B-B7B328CC0D27}, In Quarantäne, [64d415d6037874c2e2765d45d72a07f9], PUP.Optional.Preload, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\PREAPPROVED\{0F709307-8A5A-F941-624B-B7B328CC0D27}, In Quarantäne, [64d415d6037874c2e2765d45d72a07f9], PUP.Optional.Preload, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\PREAPPROVED\{0F709307-8A5A-F941-624B-B7B328CC0D27}, In Quarantäne, [64d415d6037874c2e2765d45d72a07f9], PUP.Optional.Preload, HKLM\SOFTWARE\CLASSES\CLSID\{0F709307-8A5A-F941-624B-B7B328CC0D27}\INPROCSERVER32, In Quarantäne, [64d415d6037874c2e2765d45d72a07f9], PUP.Optional.MySearchDial.A, HKLM\SOFTWARE\CLASSES\APPID\{CA5CAA63-B27C-4963-9BEC-CB16A36D56F8}, In Quarantäne, [81b7c9227ffc69cd27ef694ff80add23], PUP.Optional.MySearchDial.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\APPID\{CA5CAA63-B27C-4963-9BEC-CB16A36D56F8}, In Quarantäne, [81b7c9227ffc69cd27ef694ff80add23], PUP.Optional.MySearchDial.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{3004627E-F8E9-4E8B-909D-316753CBA923}, In Quarantäne, [7bbdcf1c0e6d40f6f7d5c7f0cb379967], PUP.Optional.QuickShare.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{31AD400D-1B06-4E33-A59A-90C2C140CBA0}, In Quarantäne, [a98f707bdf9c24121882e5d28d7539c7], PUP.Optional.QuickShare.A, HKLM\SOFTWARE\CLASSES\IESmartBar.BHO, In Quarantäne, [a98f707bdf9c24121882e5d28d7539c7], PUP.Optional.QuickShare.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{31AD400D-1B06-4E33-A59A-90C2C140CBA0}, In Quarantäne, [a98f707bdf9c24121882e5d28d7539c7], PUP.Optional.QuickShare.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\IESmartBar.BHO, In Quarantäne, [a98f707bdf9c24121882e5d28d7539c7], PUP.Optional.MySearchDial.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{D40753C7-8A59-4C1F-BE88-C300F4624D5B}, In Quarantäne, [b78114d7e09b9a9c33e4a018956d47b9], PUP.Optional.MySearchDial.A, HKLM\SOFTWARE\CLASSES\TYPELIB\{C292AD0A-C11F-479B-B8DB-743E72D283B0}, In Quarantäne, [b78114d7e09b9a9c33e4a018956d47b9], PUP.Optional.MySearchDial.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{C292AD0A-C11F-479B-B8DB-743E72D283B0}, In Quarantäne, [b78114d7e09b9a9c33e4a018956d47b9], PUP.Optional.MySearchDial.A, HKLM\SOFTWARE\CLASSES\esrv.mysearchdialESrvc.1, In Quarantäne, [b78114d7e09b9a9c33e4a018956d47b9], PUP.Optional.MySearchDial.A, HKLM\SOFTWARE\CLASSES\esrv.mysearchdialESrvc, In Quarantäne, [b78114d7e09b9a9c33e4a018956d47b9], PUP.Optional.MySearchDial.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\esrv.mysearchdialESrvc, In Quarantäne, [b78114d7e09b9a9c33e4a018956d47b9], PUP.Optional.MySearchDial.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\esrv.mysearchdialESrvc.1, In Quarantäne, [b78114d7e09b9a9c33e4a018956d47b9], PUP.Optional.MySearchDial.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{EF5625A3-37AB-4BDB-9875-2A3D91CD0DFD}, In Quarantäne, [5ddb8368384359dd1dae3d7a8979fc04], PUP.Optional.MySearchDial.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{EF5625A3-37AB-4BDB-9875-2A3D91CD0DFD}, In Quarantäne, [5ddb8368384359dd1dae3d7a8979fc04], PUP.Optional.MySearchDial.A, HKLM\SOFTWARE\CLASSES\TYPELIB\{FBC322D5-407E-4854-8C0B-555B951FD8E3}, In Quarantäne, [ea4e30bb5c1f2e089ae233859e64e719], PUP.Optional.MySearchDial.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{0400EBCA-042C-4000-AA89-9713FBEDB671}, In Quarantäne, [ea4e30bb5c1f2e089ae233859e64e719], PUP.Optional.MySearchDial.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{0BD19251-4B4B-4B94-AB16-617106245BB7}, In Quarantäne, [ea4e30bb5c1f2e089ae233859e64e719], PUP.Optional.MySearchDial.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{3281114F-BCAB-45E3-80D9-A6CD64D4E636}, In Quarantäne, [ea4e30bb5c1f2e089ae233859e64e719], PUP.Optional.MySearchDial.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{44533FCB-F9FB-436A-8B6B-CF637B2D465A}, In Quarantäne, [ea4e30bb5c1f2e089ae233859e64e719], PUP.Optional.MySearchDial.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{44B29DDD-CF7A-454A-A275-A322A398D93F}, In Quarantäne, [ea4e30bb5c1f2e089ae233859e64e719], PUP.Optional.MySearchDial.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{A4DE94DB-DF03-45A3-8A5D-D1B7464B242D}, In Quarantäne, [ea4e30bb5c1f2e089ae233859e64e719], PUP.Optional.MySearchDial.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{AA0F50A8-2618-4AE4-A779-9F7378555A8F}, In Quarantäne, [ea4e30bb5c1f2e089ae233859e64e719], PUP.Optional.MySearchDial.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{B2DB115C-8278-4947-9A07-57B53D1C4215}, In Quarantäne, [ea4e30bb5c1f2e089ae233859e64e719], PUP.Optional.MySearchDial.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{B97FC455-DB33-431D-84DB-6F1514110BD5}, In Quarantäne, [ea4e30bb5c1f2e089ae233859e64e719], PUP.Optional.MySearchDial.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{C67281E0-78F5-4E49-9FAE-4B1B2ADAF17B}, In Quarantäne, [ea4e30bb5c1f2e089ae233859e64e719], PUP.Optional.MySearchDial.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{E72E9312-0367-4216-BFC7-21485FA8390B}, In Quarantäne, [ea4e30bb5c1f2e089ae233859e64e719], PUP.Optional.MySearchDial.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{F6CCB6C9-127E-44AE-8552-B94356F39FFE}, In Quarantäne, [ea4e30bb5c1f2e089ae233859e64e719], PUP.Optional.MySearchDial.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{FFD25630-2734-4AE9-88E6-21BF6525F3FE}, In Quarantäne, [ea4e30bb5c1f2e089ae233859e64e719], PUP.Optional.MySearchDial.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{0400EBCA-042C-4000-AA89-9713FBEDB671}, In Quarantäne, [ea4e30bb5c1f2e089ae233859e64e719], PUP.Optional.MySearchDial.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{0BD19251-4B4B-4B94-AB16-617106245BB7}, In Quarantäne, [ea4e30bb5c1f2e089ae233859e64e719], PUP.Optional.MySearchDial.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{3281114F-BCAB-45E3-80D9-A6CD64D4E636}, In Quarantäne, [ea4e30bb5c1f2e089ae233859e64e719], PUP.Optional.MySearchDial.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{44533FCB-F9FB-436A-8B6B-CF637B2D465A}, In Quarantäne, [ea4e30bb5c1f2e089ae233859e64e719], PUP.Optional.MySearchDial.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{44B29DDD-CF7A-454A-A275-A322A398D93F}, In Quarantäne, [ea4e30bb5c1f2e089ae233859e64e719], PUP.Optional.MySearchDial.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{A4DE94DB-DF03-45A3-8A5D-D1B7464B242D}, In Quarantäne, [ea4e30bb5c1f2e089ae233859e64e719], PUP.Optional.MySearchDial.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{AA0F50A8-2618-4AE4-A779-9F7378555A8F}, In Quarantäne, [ea4e30bb5c1f2e089ae233859e64e719], PUP.Optional.MySearchDial.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{B2DB115C-8278-4947-9A07-57B53D1C4215}, In Quarantäne, [ea4e30bb5c1f2e089ae233859e64e719], PUP.Optional.MySearchDial.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{B97FC455-DB33-431D-84DB-6F1514110BD5}, In Quarantäne, [ea4e30bb5c1f2e089ae233859e64e719], PUP.Optional.MySearchDial.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{C67281E0-78F5-4E49-9FAE-4B1B2ADAF17B}, In Quarantäne, [ea4e30bb5c1f2e089ae233859e64e719], PUP.Optional.MySearchDial.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{E72E9312-0367-4216-BFC7-21485FA8390B}, In Quarantäne, [ea4e30bb5c1f2e089ae233859e64e719], PUP.Optional.MySearchDial.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{F6CCB6C9-127E-44AE-8552-B94356F39FFE}, In Quarantäne, [ea4e30bb5c1f2e089ae233859e64e719], PUP.Optional.MySearchDial.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{FFD25630-2734-4AE9-88E6-21BF6525F3FE}, In Quarantäne, [ea4e30bb5c1f2e089ae233859e64e719], PUP.Optional.MySearchDial.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{FBC322D5-407E-4854-8C0B-555B951FD8E3}, In Quarantäne, [ea4e30bb5c1f2e089ae233859e64e719], PUP.Optional.Snapdo.T, HKU\S-1-5-21-2438974327-1903873085-1306138816-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{006ee092-9658-4fd6-bd8e-a21a348e59f5}, In Quarantäne, [6fc98764a0dba88e087cc5f6a260817f], PUP.Optional.Snapdo.T, HKU\S-1-5-21-2438974327-1903873085-1306138816-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{006EE092-9658-4FD6-BD8E-A21A348E59F5}, In Quarantäne, [6fc98764a0dba88e087cc5f6a260817f], PUP.Optional.Snapdo.T, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{006EE092-9658-4FD6-BD8E-A21A348E59F5}, In Quarantäne, [6fc98764a0dba88e087cc5f6a260817f], PUP.Optional.MySearchDial.A, HKU\S-1-5-21-2438974327-1903873085-1306138816-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{77AA745B-F4F8-45DA-9B14-61D2D95054C8}, In Quarantäne, [35035b90b2c9d0662da0631bb74b728e], PUP.Optional.MySearchDial.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{77AA745B-F4F8-45DA-9B14-61D2D95054C8}, In Quarantäne, [35035b90b2c9d0662da0631bb74b728e], PUP.Optional.MySearchDial.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{219046AE-358F-4CF1-B1FD-2B4DE83642A8}, In Quarantäne, [75c33bb0c2b994a229a424930bf742be], PUP.Optional.MySearchDial.A, HKU\S-1-5-21-2438974327-1903873085-1306138816-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\mysearchdial, In Quarantäne, [6dcb1ecdef8ca88e70735ae6b2525ba5], PUP.Optional.SmartBar, HKU\S-1-5-21-2438974327-1903873085-1306138816-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\SmartbarBackup, In Quarantäne, [df595c8f493265d1d54972e615efad53], PUP.Optional.SmartBar, HKU\S-1-5-21-2438974327-1903873085-1306138816-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\SmartbarLog, In Quarantäne, [60d8fdeea2d9bc7a06174f09ab597d83], PUP.Optional.InstallCore.A, HKU\S-1-5-21-2438974327-1903873085-1306138816-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\INSTALLCORE\1I1T1Q1S, In Quarantäne, [bf790dde2f4ced499ee72801d72c13ed], PUP.Optional.InstallCore.A, HKU\S-1-5-21-2438974327-1903873085-1306138816-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\INSTALLCORE, In Quarantäne, [6dcb34b71b607bbbedf67dc2a262cc34], PUP.Optional.MySearchDial.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{C358B3D0-B911-41E3-A276-E7D43A6BA56D}, In Quarantäne, [94a45e8dcab123132a95903c12f026da], PUP.Optional.MySearchDial.A, HKLM\SOFTWARE\CLASSES\mysearchdial.mysearchdialappCore.1, In Quarantäne, [94a45e8dcab123132a95903c12f026da], PUP.Optional.MySearchDial.A, HKLM\SOFTWARE\CLASSES\mysearchdial.mysearchdialappCore, In Quarantäne, [94a45e8dcab123132a95903c12f026da], PUP.Optional.MySearchDial.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\mysearchdial.mysearchdialappCore, In Quarantäne, [94a45e8dcab123132a95903c12f026da], PUP.Optional.MySearchDial.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\mysearchdial.mysearchdialappCore.1, In Quarantäne, [94a45e8dcab123132a95903c12f026da], PUP.Optional.MySearchDial.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{4ED063C9-4A0B-4B44-A9DC-23AFF424A0D3}, In Quarantäne, [94a45e8dcab123132a95903c12f026da], PUP.Optional.MySearchDial.A, HKLM\SOFTWARE\CLASSES\m, In Quarantäne, [94a45e8dcab123132a95903c12f026da], PUP.Optional.MySearchDial.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\m, In Quarantäne, [94a45e8dcab123132a95903c12f026da], Registrierungswerte: 7 PUP.Optional.MySearchDial.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\TOOLBAR|{3004627E-F8E9-4E8B-909D-316753CBA923}, mysearchdial Toolbar, In Quarantäne, [7bbdcf1c0e6d40f6f7d5c7f0cb379967] PUP.Optional.MySearchDial.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\TOOLBAR\{3004627E-F8E9-4E8B-909D-316753CBA923}, In Quarantäne, [46f238b37dfe0432f3d92790c33f1ce4], PUP.Optional.SmartBar, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\TOOLBAR|{ae07101b-46d4-4a98-af68-0333ea26e113}, Smartbar, In Quarantäne, [c771618a651664d296a551a7ef133ac6] PUP.Optional.SmartBar, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\TOOLBAR|{ae07101b-46d4-4a98-af68-0333ea26e113}, Smartbar, In Quarantäne, [0a2ea3489fdcdd59e3586593010117e9] PUP.Optional.Snapdo.T, HKU\S-1-5-21-2438974327-1903873085-1306138816-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES|DefaultScope, {006ee092-9658-4fd6-bd8e-a21a348e59f5}, In Quarantäne, [6ccc25c622593df934dbaf535ca76d93] PUP.Optional.InstallCore.A, HKU\S-1-5-21-2438974327-1903873085-1306138816-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\INSTALLCORE|tb, zr2X2X1G1S1F2V1S2Q0V, In Quarantäne, [6dcb34b71b607bbbedf67dc2a262cc34] PUP.Optional.Snapdo.T, HKU\S-1-5-21-2438974327-1903873085-1306138816-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES|DefaultScope, {006ee092-9658-4fd6-bd8e-a21a348e59f5}, In Quarantäne, [6cccc42784f7b086d9368e74ed1658a8] Registrierungsdaten: 9 PUP.Optional.MySearchDial.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Start Page, hxxp://start.mysearchdial.com/?f=1&a=dvd_14_17_ff&cd=2XzuyEtN2Y1L1QzuyB0EtB0FyCzztAzztB0DtCyEyD0Azy0DtN0D0Tzu0SzzyEyEtN1L2XzutBtFtBtDtFtCtFtDtN1L1CzutCyEtDtAtDyD1V1StN1L1G1B1V1N2Y1 L1Qzu2StA0FtC0E0D0FyE0CtGtCtByE0CtG0B0CzyzytGtAzz0C0EtGtCtAtDzz0EyByE0AtCtCzz0E2QtN1M1F1B2Z1V1N2Y1L1Qzu2StBtDzy0DzytDyDyDtGtBzzyCtDtG0FyB0CyEtG0E0EtBy BtGyD0CtAyByC0EyEtA0EzztC0F2Q&cr=797091452&ir=, Gut: (www.google.com), Schlecht: (hxxp://start.mysearchdial.com/?f=1&a=dvd_14_17_ff&cd=2XzuyEtN2Y1L1QzuyB0EtB0FyCzztAzztB0DtCyEyD0Azy0DtN0D0Tzu0SzzyEyEtN1L2XzutBtFtBtDtFtCtFtDtN1L1CzutCyEtDtAtDyD1V1StN1L1G1B1V1N2Y1 L1Qzu2StA0FtC0E0D0FyE0CtGtCtByE0CtG0B0CzyzytGtAzz0C0EtGtCtAtDzz0EyByE0AtCtCzz0E2QtN1M1F1B2Z1V1N2Y1L1Qzu2StBtDzy0DzytDyDyDtGtBzzyCtDtG0FyB0CyEtG0E0EtBy BtGyD0CtAyByC0EyEtA0EzztC0F2Q&cr=797091452&ir=),Ersetzt,[32067d6eadcefb3b8938f7fcbc485ea2] PUP.Optional.HelperBar.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHURL|Default, hxxp://feed.helperbar.com/?publisher=YahooOC&dpid=YahooOC&co=DE&userid=94383499-e278-b1bd-fbcf-96d6eaed3f7f&searchtype=ds&p={searchTerms}&fr=linkury-tb&installDate=22/01/2014&type=hp1000, Gut: (www.google.com), Schlecht: (hxxp://feed.helperbar.com/?publisher=YahooOC&dpid=YahooOC&co=DE&userid=94383499-e278-b1bd-fbcf-96d6eaed3f7f&searchtype=ds&p={searchTerms}&fr=linkury-tb&installDate=22/01/2014&type=hp1000),Ersetzt,[7fb940abd1aa1620c0b3f9f13dc7ca36] PUP.Optional.HelperBar.A, HKU\S-1-5-21-2438974327-1903873085-1306138816-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Search Bar, hxxp://feed.helperbar.com/?publisher=YahooOC&dpid=YahooOC&co=DE&userid=94383499-e278-b1bd-fbcf-96d6eaed3f7f&searchtype=ds&p={searchTerms}&fr=linkury-tb&installDate=22/01/2014&type=hp1000, Gut: (www.google.com), Schlecht: (hxxp://feed.helperbar.com/?publisher=YahooOC&dpid=YahooOC&co=DE&userid=94383499-e278-b1bd-fbcf-96d6eaed3f7f&searchtype=ds&p={searchTerms}&fr=linkury-tb&installDate=22/01/2014&type=hp1000),Ersetzt,[f1478467255671c5195cc02ad92b4eb2] PUP.Optional.HelperBar.A, HKU\S-1-5-21-2438974327-1903873085-1306138816-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCH|Default_Search_URL, hxxp://feed.helperbar.com/?publisher=YahooOC&dpid=YahooOC&co=DE&userid=94383499-e278-b1bd-fbcf-96d6eaed3f7f&searchtype=ds&p={searchTerms}&fr=linkury-tb&installDate=22/01/2014&type=hp1000, Gut: (www.google.com), Schlecht: (hxxp://feed.helperbar.com/?publisher=YahooOC&dpid=YahooOC&co=DE&userid=94383499-e278-b1bd-fbcf-96d6eaed3f7f&searchtype=ds&p={searchTerms}&fr=linkury-tb&installDate=22/01/2014&type=hp1000),Ersetzt,[cd6bbf2cd8a3da5cb6c25199c440f709] PUP.Optional.HelperBar.A, HKU\S-1-5-21-2438974327-1903873085-1306138816-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCH|SearchAssistant, hxxp://feed.helperbar.com/?publisher=YahooOC&dpid=YahooOC&co=DE&userid=94383499-e278-b1bd-fbcf-96d6eaed3f7f&searchtype=ds&p={searchTerms}&fr=linkury-tb&installDate=22/01/2014&type=hp1000, Gut: (www.google.com), Schlecht: (hxxp://feed.helperbar.com/?publisher=YahooOC&dpid=YahooOC&co=DE&userid=94383499-e278-b1bd-fbcf-96d6eaed3f7f&searchtype=ds&p={searchTerms}&fr=linkury-tb&installDate=22/01/2014&type=hp1000),Ersetzt,[1c1c707b3e3d87af86f3717944c05fa1] PUP.Optional.HelperBar.A, HKU\S-1-5-21-2438974327-1903873085-1306138816-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHURL|Default, hxxp://feed.helperbar.com/?publisher=YahooOC&dpid=YahooOC&co=DE&userid=94383499-e278-b1bd-fbcf-96d6eaed3f7f&searchtype=ds&p={searchTerms}&fr=linkury-tb&installDate=22/01/2014&type=hp1000, Gut: (www.google.com), Schlecht: (hxxp://feed.helperbar.com/?publisher=YahooOC&dpid=YahooOC&co=DE&userid=94383499-e278-b1bd-fbcf-96d6eaed3f7f&searchtype=ds&p={searchTerms}&fr=linkury-tb&installDate=22/01/2014&type=hp1000),Ersetzt,[a5935d8e94e75dd976fe20cac53fae52] PUP.Optional.HelperBar.A, HKU\S-1-5-21-2438974327-1903873085-1306138816-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCH|Default_Search_URL, hxxp://feed.helperbar.com/?p=mKO_AwFzXIpYRaxo67ounJhqib0rXFhtLLIHmXcfrN_YrkL6AMkVAcJ3mJAHPYcE2slwbJii8zfWL1FQRjNUcGNjPCYTvEeyvjl1UFOsKt3JIXk8EiZIAddBQ1AOwOi-LgdTQghlcIUpUQPIXN3qUZfQIqvYTQEeS-EWw2Lyjpyu&q={searchTerms}, Gut: (www.google.com), Schlecht: (hxxp://feed.helperbar.com/?p=mKO_AwFzXIpYRaxo67ounJhqib0rXFhtLLIHmXcfrN_YrkL6AMkVAcJ3mJAHPYcE2slwbJii8zfWL1FQRjNUcGNjPCYTvEeyvjl1UFOsKt3JIXk8EiZIAddBQ1AOwOi-LgdTQghlcIUpUQPIXN3qUZfQIqvYTQEeS-EWw2Lyjpyu&q={searchTerms}),Ersetzt,[02361ccf1c5faa8c7107c4266f95bb45] PUP.Optional.HelperBar.A, HKU\S-1-5-21-2438974327-1903873085-1306138816-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCH|SearchAssistant, hxxp://feed.helperbar.com/?p=mKO_AwFzXIpYRaxo67ounJhqib0rXFhtLLIHmXcfrN_YrkL6AMkVAcJ3mJAHPYcE2slwbJii8zfWL1FQRjNUcGNjPCYTvEeyvjl1UFOsKt3JIXk8EiZIAddBQ1AOwOi-LgdTQghlcIUpUQPIXN3qUZfQIqvYTQEeS-EWw2Lyjpyu&q={searchTerms}, Gut: (www.google.com), Schlecht: (hxxp://feed.helperbar.com/?p=mKO_AwFzXIpYRaxo67ounJhqib0rXFhtLLIHmXcfrN_YrkL6AMkVAcJ3mJAHPYcE2slwbJii8zfWL1FQRjNUcGNjPCYTvEeyvjl1UFOsKt3JIXk8EiZIAddBQ1AOwOi-LgdTQghlcIUpUQPIXN3qUZfQIqvYTQEeS-EWw2Lyjpyu&q={searchTerms}),Ersetzt,[7bbdb5360774a19594e56d7d48bceb15] PUP.Optional.HelperBar.A, HKU\S-1-5-21-2438974327-1903873085-1306138816-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHURL|Default, hxxp://feed.helperbar.com/?p=mKO_AwFzXIpYRaxo67ounJhqib0rXFhtLLIHmXcfrN_YrkL6AMkVAcJ3mJAHPYcE2slwbJii8zfWL1FQRjNUcGNjPCYTvEeyvjl1UFOsKt3JIXk8EiZIAddBQ1AOwOi-LgdTQghlcIUpUQPIXN3qUZfQIqvYTQEeS-EWw2Lyjpyu&q={searchTerms}, Gut: (www.google.com), Schlecht: (hxxp://feed.helperbar.com/?p=mKO_AwFzXIpYRaxo67ounJhqib0rXFhtLLIHmXcfrN_YrkL6AMkVAcJ3mJAHPYcE2slwbJii8zfWL1FQRjNUcGNjPCYTvEeyvjl1UFOsKt3JIXk8EiZIAddBQ1AOwOi-LgdTQghlcIUpUQPIXN3qUZfQIqvYTQEeS-EWw2Lyjpyu&q={searchTerms}),Ersetzt,[b781d81344379c9a680ca347b74ddf21] Ordner: 56 PUP.Optional.Linkury.A, C:\Users\Marie\AppData\Local\LPT, In Quarantäne, [44f412d9572486b0ab0d919255ae57a9], PUP.Optional.Linkury.A, C:\Users\Marie\AppData\Local\LPT\Configs, In Quarantäne, [44f412d9572486b0ab0d919255ae57a9], PUP.Optional.Linkury.A, C:\Users\Marie\AppData\Local\LPT\Resources, In Quarantäne, [44f412d9572486b0ab0d919255ae57a9], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\amfclgbdpgndipgoegfpkkgobahigbcl, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\amfclgbdpgndipgoegfpkkgobahigbcl\CSS, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\amfclgbdpgndipgoegfpkkgobahigbcl\images, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\amfclgbdpgndipgoegfpkkgobahigbcl\JS, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\amfclgbdpgndipgoegfpkkgobahigbcl\PublisherImages, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\ar, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\Configs, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\de, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\es, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\fr, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\he, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\helperbar@helperbar.com, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\helperbar@helperbar.com\chrome, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\helperbar@helperbar.com\chrome\images, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\helperbar@helperbar.com\chrome\PublisherImages, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\helperbar@helperbar.com\components, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\it, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\pt, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\ru, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\nl, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\tr, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\Configs, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\ServicesPlugins, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\DistributionFiles, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\DistributionFiles\Configs, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\DistributionFiles\Profiles, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Smartbar.exe_StrongName_vuedtbpoockmp1sq45awfxuouevabx0i, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Smartbar.exe_StrongName_vuedtbpoockmp1sq45awfxuouevabx0i\10.179.66.13636, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.MySearchDial.A, C:\Users\Marie\AppData\Roaming\mysearchdial, In Quarantäne, [44f4d7143a4146f0e07e0fbce61cda26], PUP.Optional.MySearchDial.A, C:\Users\Marie\AppData\Roaming\mysearchdial\icons_2.20.1.0, In Quarantäne, [44f4d7143a4146f0e07e0fbce61cda26], PUP.Optional.OpenCandy, C:\Users\Marie\AppData\Roaming\OpenCandy, In Quarantäne, [eb4ddb10423937ff92da06c59270f907], PUP.Optional.OpenCandy, C:\Users\Marie\AppData\Roaming\OpenCandy\4D9CC6DB43D549339EE2DDC21C148CE2, In Quarantäne, [eb4ddb10423937ff92da06c59270f907], PUP.Optional.OpenCandy, C:\Users\Marie\AppData\Roaming\OpenCandy\5DC290B9C486479CA271A405DB7AC8DC, In Quarantäne, [eb4ddb10423937ff92da06c59270f907], PUP.Optional.OpenCandy, C:\Users\Marie\AppData\Roaming\OpenCandy\D1E3A3AE3F6B4690AD176A516D62D8F0, In Quarantäne, [eb4ddb10423937ff92da06c59270f907], PUP.Optional.OpenCandy, C:\Users\Marie\AppData\Roaming\OpenCandy\DF6782EFD378421395722D5E5B31FBE4, In Quarantäne, [eb4ddb10423937ff92da06c59270f907], PUP.Optional.OpenCandy, C:\Users\Marie\AppData\Roaming\OpenCandy\E6FA6ADF82DE4E70A9C9FBF66767A89A, In Quarantäne, [eb4ddb10423937ff92da06c59270f907], PUP.Optional.OpenCandy, C:\Users\Marie\AppData\Roaming\OpenCandy\FC3F5E4348674B6B900263F164BDD2C4, In Quarantäne, [eb4ddb10423937ff92da06c59270f907], PUP.Optional.MySearchDial.A, C:\Program Files (x86)\Mysearchdial, In Quarantäne, [94a45e8dcab123132a95903c12f026da], PUP.Optional.MySearchDial.A, C:\Program Files (x86)\Mysearchdial\1.8.29.0, In Quarantäne, [94a45e8dcab123132a95903c12f026da], PUP.Optional.MySearchDial.A, C:\Program Files (x86)\Mysearchdial\1.8.29.0\bh, In Quarantäne, [94a45e8dcab123132a95903c12f026da], PUP.Optional.SearchProtect.A, C:\Users\Marie\AppData\Local\SearchProtect, In Quarantäne, [bf79b5367ffc9f9758d50bd6ae5443bd], PUP.Optional.SearchProtect.A, C:\Users\Marie\AppData\Local\SearchProtect\Logs, In Quarantäne, [bf79b5367ffc9f9758d50bd6ae5443bd], PUP.Optional.SearchProtect.A, C:\Users\Marie\AppData\Local\SearchProtect\SearchProtect, In Quarantäne, [bf79b5367ffc9f9758d50bd6ae5443bd], PUP.Optional.SearchProtect.A, C:\Users\Marie\AppData\Local\SearchProtect\SearchProtect\Logs, In Quarantäne, [bf79b5367ffc9f9758d50bd6ae5443bd], PUP.Optional.SearchProtect.A, C:\Users\Marie\AppData\Local\SearchProtect\SearchProtect\rep, In Quarantäne, [bf79b5367ffc9f9758d50bd6ae5443bd], PUP.Optional.SearchProtect.A, C:\Users\Marie\AppData\Local\SearchProtect\UI, In Quarantäne, [bf79b5367ffc9f9758d50bd6ae5443bd], PUP.Optional.SearchProtect.A, C:\Users\Marie\AppData\Local\SearchProtect\UI\rep, In Quarantäne, [bf79b5367ffc9f9758d50bd6ae5443bd], PUP.Optional.FlashCoupon.A, C:\ProgramData\FlashCoupon, In Quarantäne, [8cacf0fb1566b77fe295ce23c240eb15], Dateien: 847 PUP.Optional.Preload, C:\ProgramData\FlashCoupon\Ls.x64.dll, In Quarantäne, [64d415d6037874c2e2765d45d72a07f9], PUP.Optional.MySearchDial.A, C:\Program Files (x86)\Mysearchdial\1.8.29.0\mysearchdialTlbr.dll, In Quarantäne, [7bbdcf1c0e6d40f6f7d5c7f0cb379967], PUP.Optional.MySearchDial.A, C:\Program Files (x86)\Mysearchdial\1.8.29.0\mysearchdialsrv.exe, In Quarantäne, [b78114d7e09b9a9c33e4a018956d47b9], PUP.Optional.MySearchDial.A, C:\Program Files (x86)\Mysearchdial\1.8.29.0\bh\mysearchdial.dll, In Quarantäne, [5ddb8368384359dd1dae3d7a8979fc04], PUP.Optional.OpenCandy.A, C:\Users\Marie\AppData\Roaming\OpenCandy\D1E3A3AE3F6B4690AD176A516D62D8F0\LatestDLMgr.exe, In Quarantäne, [c474faf1601bb77f809926080df4ab55], PUP.Optional.OpenCandy.A, C:\Users\Marie\AppData\Roaming\OpenCandy\D1E3A3AE3F6B4690AD176A516D62D8F0\OpenCandyU1Dlm.dll, In Quarantäne, [b682806b89f2999d8a8f0f1f867b1de3], PUP.Optional.MySearchDial.A, C:\Users\Marie\AppData\Roaming\Mozilla\Firefox\Profiles\yxxug84n.default\searchplugins\Mysearchdial.xml, In Quarantäne, [5adea7442e4d58de5df264bb4bb86b95], PUP.Optional.WebSearch.A, C:\Users\Marie\AppData\Roaming\Mozilla\Firefox\Profiles\yxxug84n.default\searchplugins\Web Search.xml, In Quarantäne, [48f0d9127dfe072ff4bd64bb58abcf31], PUP.Optional.Linkury.A, C:\Users\Marie\AppData\Local\LPT\PublisherSettings.xml, In Quarantäne, [44f412d9572486b0ab0d919255ae57a9], PUP.Optional.Linkury.A, C:\Users\Marie\AppData\Local\LPT\NewConfig.txt, In Quarantäne, [44f412d9572486b0ab0d919255ae57a9], PUP.Optional.Linkury.A, C:\Users\Marie\AppData\Local\LPT\srptm.exe.config, In Quarantäne, [44f412d9572486b0ab0d919255ae57a9], PUP.Optional.Linkury.A, C:\Users\Marie\AppData\Local\LPT\srptsl.exe.config, In Quarantäne, [44f412d9572486b0ab0d919255ae57a9], PUP.Optional.Linkury.A, C:\Users\Marie\AppData\Local\LPT\UserSettings.xml, In Quarantäne, [44f412d9572486b0ab0d919255ae57a9], PUP.Optional.Linkury.A, C:\Users\Marie\AppData\Local\LPT\XMLOperations.xml, In Quarantäne, [44f412d9572486b0ab0d919255ae57a9], PUP.Optional.Linkury.A, C:\Users\Marie\AppData\Local\LPT\Configs\BrowserSettings.xml, In Quarantäne, [44f412d9572486b0ab0d919255ae57a9], PUP.Optional.Linkury.A, C:\Users\Marie\AppData\Local\LPT\Configs\LPTMapping.xml, In Quarantäne, [44f412d9572486b0ab0d919255ae57a9], PUP.Optional.Linkury.A, C:\Users\Marie\AppData\Local\LPT\Configs\Timers.xml, In Quarantäne, [44f412d9572486b0ab0d919255ae57a9], PUP.Optional.Linkury.A, C:\Users\Marie\AppData\Local\LPT\Resources\LPT.xml, In Quarantäne, [44f412d9572486b0ab0d919255ae57a9], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\BrowserHelper.exe.config, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\IEButton.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\Microsoft.Practices.EnterpriseLibrary.Common.dll, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\Microsoft.Practices.EnterpriseLibrary.ExceptionHandling.dll, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\Microsoft.Practices.EnterpriseLibrary.ExceptionHandling.Logging.dll, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\Microsoft.Practices.EnterpriseLibrary.Logging.dll, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\Microsoft.Practices.ObjectBuilder.dll, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\NewConfig.txt, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\RegAsm.exe, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\sb.host.json, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\SmartbarInstallationIcon.ico, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\SmartbarShortcutIcon.ico, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\SmartbarVersionsHelper.exe.config, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\Microsoft.mshtml.dll, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\Smartbar.exe.config, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\System.Data.SQLite.dll, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\XMLOperations.xml, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\amfclgbdpgndipgoegfpkkgobahigbcl\bg.html, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\amfclgbdpgndipgoegfpkkgobahigbcl\bg.js, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\amfclgbdpgndipgoegfpkkgobahigbcl\manifest.json, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\amfclgbdpgndipgoegfpkkgobahigbcl\options.htm, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\amfclgbdpgndipgoegfpkkgobahigbcl\options.js, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\amfclgbdpgndipgoegfpkkgobahigbcl\popup.html, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\amfclgbdpgndipgoegfpkkgobahigbcl\popup.js, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\amfclgbdpgndipgoegfpkkgobahigbcl\redirect.html, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\amfclgbdpgndipgoegfpkkgobahigbcl\redirect.js, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\amfclgbdpgndipgoegfpkkgobahigbcl\CSS\border.css, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\amfclgbdpgndipgoegfpkkgobahigbcl\images\down-1.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\amfclgbdpgndipgoegfpkkgobahigbcl\images\down-2.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\amfclgbdpgndipgoegfpkkgobahigbcl\images\down-3.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\amfclgbdpgndipgoegfpkkgobahigbcl\images\down.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\amfclgbdpgndipgoegfpkkgobahigbcl\images\fb.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\amfclgbdpgndipgoegfpkkgobahigbcl\images\fblike.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\amfclgbdpgndipgoegfpkkgobahigbcl\images\gmail.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\amfclgbdpgndipgoegfpkkgobahigbcl\images\google.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\amfclgbdpgndipgoegfpkkgobahigbcl\images\googleplus.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\amfclgbdpgndipgoegfpkkgobahigbcl\images\hide-1.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\amfclgbdpgndipgoegfpkkgobahigbcl\images\hide-2.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\amfclgbdpgndipgoegfpkkgobahigbcl\images\hide-3.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\amfclgbdpgndipgoegfpkkgobahigbcl\images\left.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\amfclgbdpgndipgoegfpkkgobahigbcl\images\maximize-1.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\amfclgbdpgndipgoegfpkkgobahigbcl\images\maximize-2.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\amfclgbdpgndipgoegfpkkgobahigbcl\images\maximize-3.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\amfclgbdpgndipgoegfpkkgobahigbcl\images\mgsplusvideo.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\amfclgbdpgndipgoegfpkkgobahigbcl\images\minimize-1.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\amfclgbdpgndipgoegfpkkgobahigbcl\images\minimize-2.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\amfclgbdpgndipgoegfpkkgobahigbcl\images\minimize-3.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\amfclgbdpgndipgoegfpkkgobahigbcl\images\pinit.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\amfclgbdpgndipgoegfpkkgobahigbcl\images\right.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\amfclgbdpgndipgoegfpkkgobahigbcl\images\searchBox.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\amfclgbdpgndipgoegfpkkgobahigbcl\images\show-1.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\amfclgbdpgndipgoegfpkkgobahigbcl\images\show-2.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\amfclgbdpgndipgoegfpkkgobahigbcl\images\show-3.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\amfclgbdpgndipgoegfpkkgobahigbcl\images\twitter.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\amfclgbdpgndipgoegfpkkgobahigbcl\images\up-1.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\amfclgbdpgndipgoegfpkkgobahigbcl\images\up-2.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\amfclgbdpgndipgoegfpkkgobahigbcl\images\up-3.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\amfclgbdpgndipgoegfpkkgobahigbcl\images\up.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\amfclgbdpgndipgoegfpkkgobahigbcl\JS\alxbl.js, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\amfclgbdpgndipgoegfpkkgobahigbcl\JS\BackPageRemove.js, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\amfclgbdpgndipgoegfpkkgobahigbcl\JS\defaultBlockList.js, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\amfclgbdpgndipgoegfpkkgobahigbcl\JS\documentEvents.js, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\amfclgbdpgndipgoegfpkkgobahigbcl\JS\externalJS.js, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\amfclgbdpgndipgoegfpkkgobahigbcl\JS\FBImagePreview.js, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\amfclgbdpgndipgoegfpkkgobahigbcl\JS\filters.js, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\amfclgbdpgndipgoegfpkkgobahigbcl\JS\generalBackButtonDetection.js, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\amfclgbdpgndipgoegfpkkgobahigbcl\JS\InternalJS.js, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\amfclgbdpgndipgoegfpkkgobahigbcl\JS\jquery-1.9.0.min.js, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\amfclgbdpgndipgoegfpkkgobahigbcl\JS\PluginWrapper.js, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\amfclgbdpgndipgoegfpkkgobahigbcl\JS\publisherDefinitions.js, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\amfclgbdpgndipgoegfpkkgobahigbcl\JS\ta.js, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\amfclgbdpgndipgoegfpkkgobahigbcl\JS\tabReload.js, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\amfclgbdpgndipgoegfpkkgobahigbcl\JS\TopFrameJS.js, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\amfclgbdpgndipgoegfpkkgobahigbcl\JS\trans.js, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\amfclgbdpgndipgoegfpkkgobahigbcl\PublisherImages\Linkury.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\amfclgbdpgndipgoegfpkkgobahigbcl\PublisherImages\Linkury128.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\amfclgbdpgndipgoegfpkkgobahigbcl\PublisherImages\Linkury16.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\amfclgbdpgndipgoegfpkkgobahigbcl\PublisherImages\Linkury48.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\Configs\QueryParameters.xml, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\Configs\XmlSideBySideProtocol.xml, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\helperbar@helperbar.com\chrome.manifest, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\helperbar@helperbar.com\install.rdf, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\helperbar@helperbar.com\chrome\BackPageRemove.js, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\helperbar@helperbar.com\chrome\externalJS.js, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\helperbar@helperbar.com\chrome\FBImagePreview.js, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\helperbar@helperbar.com\chrome\FirefoxExtensionMain.css, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\helperbar@helperbar.com\chrome\FirefoxExtensionMain.js, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\helperbar@helperbar.com\chrome\FirefoxExtensionMain.xul, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\helperbar@helperbar.com\chrome\InternalJS.js, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\helperbar@helperbar.com\chrome\jquery-1.5.1.min.js, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\helperbar@helperbar.com\chrome\publisherDefinitions.js, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\helperbar@helperbar.com\chrome\images\down-1.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\helperbar@helperbar.com\chrome\images\down-2.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\helperbar@helperbar.com\chrome\images\down-3.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\helperbar@helperbar.com\chrome\images\down.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\helperbar@helperbar.com\chrome\images\fb.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\helperbar@helperbar.com\chrome\images\fblike.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\helperbar@helperbar.com\chrome\images\gmail.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\helperbar@helperbar.com\chrome\images\googleplus.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\helperbar@helperbar.com\chrome\images\hide-1.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\helperbar@helperbar.com\chrome\images\hide-2.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\helperbar@helperbar.com\chrome\images\hide-3.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\helperbar@helperbar.com\chrome\images\left.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\helperbar@helperbar.com\chrome\images\maximize-1.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\helperbar@helperbar.com\chrome\images\maximize-2.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\helperbar@helperbar.com\chrome\images\maximize-3.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\helperbar@helperbar.com\chrome\images\mgsplusvideo.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\helperbar@helperbar.com\chrome\images\minimize-1.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\helperbar@helperbar.com\chrome\images\minimize-2.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\helperbar@helperbar.com\chrome\images\minimize-3.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\helperbar@helperbar.com\chrome\images\pinit.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\helperbar@helperbar.com\chrome\images\right.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\helperbar@helperbar.com\chrome\images\searchBox.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\helperbar@helperbar.com\chrome\images\show-1.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\helperbar@helperbar.com\chrome\images\show-2.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\helperbar@helperbar.com\chrome\images\show-3.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\helperbar@helperbar.com\chrome\images\twitter.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\helperbar@helperbar.com\chrome\images\up-1.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\helperbar@helperbar.com\chrome\images\up-2.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\helperbar@helperbar.com\chrome\images\up-3.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\helperbar@helperbar.com\chrome\images\up.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\helperbar@helperbar.com\chrome\PublisherImages\Linkury.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\helperbar@helperbar.com\chrome\PublisherImages\Linkury128.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\helperbar@helperbar.com\chrome\PublisherImages\Linkury16.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\helperbar@helperbar.com\chrome\PublisherImages\Linkury_small.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Application\helperbar@helperbar.com\components\ISmartbarFireFoxRemotePlugin.xpt, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\Configs\UserInfo.xml, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\65B1A402-FC79-410D-AE1C-AF92E206AC1D.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\00659FA4-2CAD-45fc-A8A0-DB7862840BA9.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\00659FA4-2CAD-45fc-A8A0-DB7862840BA9hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\00659FA4-2CAD-45fc-A8A0-DB7862840BA9press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\07a9a58b-c653-4285-a870-1fa70cb6c00c.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\07a9a58b-c653-4285-a870-1fa70cb6c00chover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\07a9a58b-c653-4285-a870-1fa70cb6c00cPress.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\0A2DE7DB-ADE9-44FC-BC66-CF5604F9BF7A.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\0A2DE7DB-ADE9-44FC-BC66-CF5604F9BF7Apress.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\0E29BC94-7C9B-4A23-B682-81D0D1A806E1.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\0E29BC94-7C9B-4A23-B682-81D0D1A806E1hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\0E29BC94-7C9B-4A23-B682-81D0D1A806E1press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\0FA6F971-16AA-4921-A39F-543C9839CABE.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\0FA6F971-16AA-4921-A39F-543C9839CABEhover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\0FA6F971-16AA-4921-A39F-543C9839CABEpress.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\101FF2F5-9F51-405F-ACBB-D4A5F3601679.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\101FF2F5-9F51-405F-ACBB-D4A5F3601679hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\101FF2F5-9F51-405F-ACBB-D4A5F3601679press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\1A039A19-BD34-4760-8DE0-E9A8E8AA8827.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\1A039A19-BD34-4760-8DE0-E9A8E8AA8827Ehover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\1A039A19-BD34-4760-8DE0-E9A8E8AA8827press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\1A19CD12-F9A2-44A6-8F44-F3A95E0081A0hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\1A19CD12-F9A2-44A6-8F44-F3A95E0081A0press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\1FFDDB6E-8EB3-4CE0-9C2B-44910A3C5975.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\1FFDDB6E-8EB3-4CE0-9C2B-44910A3C5975hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\1FFDDB6E-8EB3-4CE0-9C2B-44910A3C5975press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\225323D0-97BB-46E4-85E1-15EA27174BF4.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\225323D0-97BB-46E4-85E1-15EA27174BF4hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\23E3FEB8-E6FF-4475-811A-805773D02D08.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\23E3FEB8-E6FF-4475-811A-805773D02D08hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\23E3FEB8-E6FF-4475-811A-805773D02D08press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\26E2804B-65B5-47E1-A457-DAA75A2B1370.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\26E2804B-65B5-47E1-A457-DAA75A2B1370hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\26E2804B-65B5-47E1-A457-DAA75A2B1370press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\0A2DE7DB-ADE9-44FC-BC66-CF5604F9BF7Ahover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\1A19CD12-F9A2-44A6-8F44-F3A95E0081A0.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\225323D0-97BB-46E4-85E1-15EA27174BF4press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\30DFF8F0-BA79-4360-A3EA-51B6D006133CHover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\3C610B86-19DE-4757-B46A-871C9C27FF0A.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\3f9ac55c-6db5-4c01-9d34-a92da2347be6press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\5558C4C6-18C1-4AF3-8F8D-0E2CF70D19C8hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\2C37338C-837B-4846-B50B-E32D70C6A0F5.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\2C37338C-837B-4846-B50B-E32D70C6A0F5hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\2C37338C-837B-4846-B50B-E32D70C6A0F5press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\30657846-199A-4D0D-984D-BE588084F1F6.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\30657846-199A-4D0D-984D-BE588084F1F6hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\30657846-199A-4D0D-984D-BE588084F1F6press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\30DFF8F0-BA79-4360-A3EA-51B6D006133C.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\30DFF8F0-BA79-4360-A3EA-51B6D006133CPress.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\328F7722-52E8-46A6-9197-B2F27C5142C7.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\328F7722-52E8-46A6-9197-B2F27C5142C7hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\328F7722-52E8-46A6-9197-B2F27C5142C7press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\372FF78B-6E4B-4B38-8E3F-797B4680FB98.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\372FF78B-6E4B-4B38-8E3F-797B4680FB98hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\372FF78B-6E4B-4B38-8E3F-797B4680FB98press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\39028511-3F15-4442-9188-DDC86BE1BBD0.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\39028511-3F15-4442-9188-DDC86BE1BBD0hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\39028511-3F15-4442-9188-DDC86BE1BBD0press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\39079B96-6DD1-42DE-89E6-76F79C8BB4E4.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\39079B96-6DD1-42DE-89E6-76F79C8BB4E4Hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\39079B96-6DD1-42DE-89E6-76F79C8BB4E4Press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\3C610B86-19DE-4757-B46A-871C9C27FF0AHover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\3C610B86-19DE-4757-B46A-871C9C27FF0APress.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\3DF17372-78B0-4978-81A5-F9D1800C1775.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\3DF17372-78B0-4978-81A5-F9D1800C1775Hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\3DF17372-78B0-4978-81A5-F9D1800C1775Press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\3f9ac55c-6db5-4c01-9d34-a92da2347be6.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\3f9ac55c-6db5-4c01-9d34-a92da2347be6hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\412D5531-A3E1-40BB-B0C3-71E3C45A4E13.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\412D5531-A3E1-40BB-B0C3-71E3C45A4E13hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\412D5531-A3E1-40BB-B0C3-71E3C45A4E13press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\4a110a71-0e7e-4552-af6e-3ef88b2d6511.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\4a110a71-0e7e-4552-af6e-3ef88b2d6511Hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\4a110a71-0e7e-4552-af6e-3ef88b2d6511Press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\5252af60-ef03-41a8-babe-415dba235478.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\5252af60-ef03-41a8-babe-415dba235478Hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\5252af60-ef03-41a8-babe-415dba235478Press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\536b9063-fc09-4e82-8769-73c77317aae6.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\536b9063-fc09-4e82-8769-73c77317aae6hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\536b9063-fc09-4e82-8769-73c77317aae6press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\5558C4C6-18C1-4AF3-8F8D-0E2CF70D19C8.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\5558C4C6-18C1-4AF3-8F8D-0E2CF70D19C8press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\56591C8E-DA35-4A97-AC9B-5055E0F7089E.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\56591C8E-DA35-4A97-AC9B-5055E0F7089Ehover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\56591C8E-DA35-4A97-AC9B-5055E0F7089Epress.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\56B19DA1-B4C5-4FCF-87D0-44E8B2C1002A.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\56B19DA1-B4C5-4FCF-87D0-44E8B2C1002Ahover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\56B19DA1-B4C5-4FCF-87D0-44E8B2C1002Apress.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\5D0A6D97-85F2-47E9-8F04-04A747B25A0E.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\5D0A6D97-85F2-47E9-8F04-04A747B25A0Ehover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\5D0A6D97-85F2-47E9-8F04-04A747B25A0Epress.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\5F488FA5-C35B-44A9-A0E4-2C7B41035780.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\5F488FA5-C35B-44A9-A0E4-2C7B41035780hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\5F488FA5-C35B-44A9-A0E4-2C7B41035780press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\65B1A402-FC79-410D-AE1C-AF92E206AC1Dhover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\65B1A402-FC79-410D-AE1C-AF92E206AC1Dpress.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\69C7DFE3-CDAE-4A22-B753-93ABF8BAE7EC.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\69C7DFE3-CDAE-4A22-B753-93ABF8BAE7EChover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\69C7DFE3-CDAE-4A22-B753-93ABF8BAE7ECpress.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\708d8b1e-6545-474a-9f07-d854acf8ad43.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\708d8b1e-6545-474a-9f07-d854acf8ad43hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\70F16DCA-C71C-4ECB-994C-D180F2BBF736.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\70F16DCA-C71C-4ECB-994C-D180F2BBF736Hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\70F16DCA-C71C-4ECB-994C-D180F2BBF736Press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\72CDFC8C-6F2D-4df8-9811-18C4D682C406.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\72CDFC8C-6F2D-4df8-9811-18C4D682C406hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\72CDFC8C-6F2D-4df8-9811-18C4D682C406press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\7CF3BACC-BF1C-4860-BB4E-F1A8440250FE.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\7CF3BACC-BF1C-4860-BB4E-F1A8440250FEhover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\7CF3BACC-BF1C-4860-BB4E-F1A8440250FEpress.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\7fe83ae9-caef-41f0-aa99-d114c0ce3941.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\7fe83ae9-caef-41f0-aa99-d114c0ce3941hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\7fe83ae9-caef-41f0-aa99-d114c0ce3941press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\8217d395-9ebe-4ebb-807c-38cc911a307f.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\8217d395-9ebe-4ebb-807c-38cc911a307fPress.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\83B4B6FE-910D-412E-BED4-E3AFA6E5CA61.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\83B4B6FE-910D-412E-BED4-E3AFA6E5CA61hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\83B4B6FE-910D-412E-BED4-E3AFA6E5CA61press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\85CF6427-8441-427A-859A-7A3C72288481.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\85CF6427-8441-427A-859A-7A3C72288481hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\85CF6427-8441-427A-859A-7A3C72288481press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\87442BEF-FD31-405C-A807-650CB7CC8886.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\87442BEF-FD31-405C-A807-650CB7CC8886hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\87442BEF-FD31-405C-A807-650CB7CC8886press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\89582936-094C-4880-B87A-2AF16FC33B2C.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\89582936-094C-4880-B87A-2AF16FC33B2Chover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\89582936-094C-4880-B87A-2AF16FC33B2Cpress.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\8b3608b1-c2d5-4ad3-a382-33601228c6d3hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\8b3608b1-c2d5-4ad3-a382-33601228c6d3press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\8F4131CE-D4F0-4F08-9102-78C397F3748C.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\8F4131CE-D4F0-4F08-9102-78C397F3748CHover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\8F4131CE-D4F0-4F08-9102-78C397F3748CPress.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\90165d32-a3ef-438c-8625-be9b538b6eba.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\90165d32-a3ef-438c-8625-be9b538b6ebaHover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\925D8F0E-E5EA-45F9-A657-0C14B68C4A61.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\925D8F0E-E5EA-45F9-A657-0C14B68C4A61hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\925D8F0E-E5EA-45F9-A657-0C14B68C4A61press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\929407CC-7E48-47E0-A9F9-A4A167AC24D1.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\929407CC-7E48-47E0-A9F9-A4A167AC24D1hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\929407CC-7E48-47E0-A9F9-A4A167AC24D1press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\95ae73f0-9799-46fd-bceb-57efcb7f0537.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\95ae73f0-9799-46fd-bceb-57efcb7f0537hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\95ae73f0-9799-46fd-bceb-57efcb7f0537press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\99938D89-FF78-49C8-B92B-5AB4C8DFA2D1.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\99938D89-FF78-49C8-B92B-5AB4C8DFA2D1hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\99938D89-FF78-49C8-B92B-5AB4C8DFA2D1press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\A1D51ECC-DBD7-4C7E-9A75-364B8E2F1D8C.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\A1D51ECC-DBD7-4C7E-9A75-364B8E2F1D8Cpress.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\A1F75F5D-1D24-4F7A-9ABC-BDA55E332E67.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\A1F75F5D-1D24-4F7A-9ABC-BDA55E332E67hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\A1F75F5D-1D24-4F7A-9ABC-BDA55E332E67press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\A75C6A50-13B0-4704-AA87-8DD113E31310.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\A75C6A50-13B0-4704-AA87-8DD113E31310hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\A75C6A50-13B0-4704-AA87-8DD113E31310press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\A89DA5A2-D390-47F4-84EF-6044EC8AC368.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\A89DA5A2-D390-47F4-84EF-6044EC8AC368hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\A89DA5A2-D390-47F4-84EF-6044EC8AC368press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\a94e6710-6021-4cdc-82de-1c001238bd8f.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\a94e6710-6021-4cdc-82de-1c001238bd8fHover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\a94e6710-6021-4cdc-82de-1c001238bd8fPress.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\B1BEF453-913F-4EC4-B057-A2BB21C09DCBhover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\B1BEF453-913F-4EC4-B057-A2BB21C09DCBpress.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\B1FE90EC-CEDA-4467-86CE-6CD7F1D3D55F.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\B1FE90EC-CEDA-4467-86CE-6CD7F1D3D55Fhover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\B1FE90EC-CEDA-4467-86CE-6CD7F1D3D55Fpress.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\B81443D4-15F7-4B97-9DC8-3645A012C817.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\B81443D4-15F7-4B97-9DC8-3645A012C817hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\bbf677d4-d0bc-4a59-be4a-6a6cfd3c6c28.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\bbf677d4-d0bc-4a59-be4a-6a6cfd3c6c28hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\bbf677d4-d0bc-4a59-be4a-6a6cfd3c6c28press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\bc8dcde3-3fd0-4f9b-af5d-15c20f3239ab.ico, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\bc8dcde3-3fd0-4f9b-af5d-15c20f3239ab.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\bc8dcde3-3fd0-4f9b-af5d-15c20f3239abhover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\bc8dcde3-3fd0-4f9b-af5d-15c20f3239abpress.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\BCE4103A-6273-4E49-8B43-2BDEDA1C91B0.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\BCE4103A-6273-4E49-8B43-2BDEDA1C91B0hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\BCE4103A-6273-4E49-8B43-2BDEDA1C91B0press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\C0AC006A-9C65-42F9-AE11-D675DCCC6840.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\C0AC006A-9C65-42F9-AE11-D675DCCC6840hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\C0AC006A-9C65-42F9-AE11-D675DCCC6840press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\c1546a00-e42d-4ce7-aac5-5353a895f3cfhover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\c1546a00-e42d-4ce7-aac5-5353a895f3cfpress.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], |
09.09.2014, 00:37 | #12 |
| Windows 7, trotz Werbeblocker seit geraumer Zeit Pop-Ups, Werbeanzeigen, blau unterlegt Hyperlinks PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\C438F0F0-525A-4942-8307-6B71E596367D.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\C438F0F0-525A-4942-8307-6B71E596367Dhover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\C438F0F0-525A-4942-8307-6B71E596367Dpress.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\C48E3725-71FB-4824-969A-C6D428C18A2B.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\C48E3725-71FB-4824-969A-C6D428C18A2Bhover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\708d8b1e-6545-474a-9f07-d854acf8ad43press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\8217d395-9ebe-4ebb-807c-38cc911a307fHover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\8b3608b1-c2d5-4ad3-a382-33601228c6d3.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\90165d32-a3ef-438c-8625-be9b538b6ebaPress.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\A1D51ECC-DBD7-4C7E-9A75-364B8E2F1D8Chover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\B1BEF453-913F-4EC4-B057-A2BB21C09DCB.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\B81443D4-15F7-4B97-9DC8-3645A012C817press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\c1546a00-e42d-4ce7-aac5-5353a895f3cf.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\C48E3725-71FB-4824-969A-C6D428C18A2Bpress.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\D13971C4-4DA8-4C4B-87F6-17E97BFE7448hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\d65acfc2-6ab9-4b66-84fc-ecc7813e35d0Press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\DBE2517B-67B8-4D8B-A7CC-B66F8FE52D82press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\E458493F-867F-4712-A3AF-D9664ED47C19.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\E6EE3C0D-1AF6-4A1E-AD63-1AFD7CB84583press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\f7fd4890-7f89-4c73-8ff2-52105657cbb6Hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\CCEE5A80-8C88-4BB1-89BF-4A7EFF93E452.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\CCEE5A80-8C88-4BB1-89BF-4A7EFF93E452hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\CCEE5A80-8C88-4BB1-89BF-4A7EFF93E452press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\CCF42F56-0405-4697-A513-AA01DEE5DF02.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\CCF42F56-0405-4697-A513-AA01DEE5DF02hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\CCF42F56-0405-4697-A513-AA01DEE5DF02press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\CE1500FE-6F59-421C-8005-3E137AC051A2.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\CE1500FE-6F59-421C-8005-3E137AC051A2hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\CE1500FE-6F59-421C-8005-3E137AC051A2press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\CFEFCFCB-4871-46CD-86F7-14C1F17A7FF6.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\CFEFCFCB-4871-46CD-86F7-14C1F17A7FF6hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\CFEFCFCB-4871-46CD-86F7-14C1F17A7FF6press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\D13971C4-4DA8-4C4B-87F6-17E97BFE7448.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\D13971C4-4DA8-4C4B-87F6-17E97BFE7448press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\D2B0680C-17C4-492D-85D7-D4CA3E724D50.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\D2B0680C-17C4-492D-85D7-D4CA3E724D50hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\D2B0680C-17C4-492D-85D7-D4CA3E724D50press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\D469E1BA-B745-45B3-B7EE-378E000E74C8.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\D469E1BA-B745-45B3-B7EE-378E000E74C8Hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\D469E1BA-B745-45B3-B7EE-378E000E74C8Press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\D5113B95-781C-4737-A26F-3ED3A2CB876F.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\D5113B95-781C-4737-A26F-3ED3A2CB876Fhover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\D5113B95-781C-4737-A26F-3ED3A2CB876Fpress.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\d65acfc2-6ab9-4b66-84fc-ecc7813e35c1.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\d65acfc2-6ab9-4b66-84fc-ecc7813e35c1Hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\d65acfc2-6ab9-4b66-84fc-ecc7813e35c1Press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\d65acfc2-6ab9-4b66-84fc-ecc7813e35d0.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\d65acfc2-6ab9-4b66-84fc-ecc7813e35d0Hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\D8043E67-EBD0-4ABD-A5A4-63CF4DADFC85.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\D8043E67-EBD0-4ABD-A5A4-63CF4DADFC85hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\D8043E67-EBD0-4ABD-A5A4-63CF4DADFC85press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\DBE2517B-67B8-4D8B-A7CC-B66F8FE52D82.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\DBE2517B-67B8-4D8B-A7CC-B66F8FE52D82hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\DCF8B81C-11B5-4B12-A6E5-F74F09BBDD4C.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\DCF8B81C-11B5-4B12-A6E5-F74F09BBDD4Chover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\DCF8B81C-11B5-4B12-A6E5-F74F09BBDD4Cpress.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\e2870479-a572-412b-8a8f-5604d19b55cd.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\e2870479-a572-412b-8a8f-5604d19b55cdhover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\e2870479-a572-412b-8a8f-5604d19b55cdpress.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\E3345571-EEF9-4041-8C24-F7F5A9331C23.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\E3345571-EEF9-4041-8C24-F7F5A9331C23hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\E3345571-EEF9-4041-8C24-F7F5A9331C23press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\e357f164-c5d8-4257-aab2-fe0cad41c12e.ico, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\e357f164-c5d8-4257-aab2-fe0cad41c12e.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\e357f164-c5d8-4257-aab2-fe0cad41c12ehover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\e357f164-c5d8-4257-aab2-fe0cad41c12epress.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\E458493F-867F-4712-A3AF-D9664ED47C19hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\E458493F-867F-4712-A3AF-D9664ED47C19press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\E52BEFE7-6535-439c-B168-A3B105E4212E.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\E52BEFE7-6535-439c-B168-A3B105E4212Ehover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\E52BEFE7-6535-439c-B168-A3B105E4212Epress.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\E6EE3C0D-1AF6-4A1E-AD63-1AFD7CB84583.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\E6EE3C0D-1AF6-4A1E-AD63-1AFD7CB84583hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\E8584703-6CA5-4351-82CC-09E40938A066.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\E8584703-6CA5-4351-82CC-09E40938A066hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\E8584703-6CA5-4351-82CC-09E40938A066press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\e8967c62-9ea0-4fde-9832-2c10f1d580de.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\e8967c62-9ea0-4fde-9832-2c10f1d580dehover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\e8967c62-9ea0-4fde-9832-2c10f1d580depress.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\EA99E20A-FBBA-4197-954B-E2013280A29B.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\EA99E20A-FBBA-4197-954B-E2013280A29Bhover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\EA99E20A-FBBA-4197-954B-E2013280A29Bpress.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\F5297DBC-3B3B-4744-A54D-308EAD98D223.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\F5297DBC-3B3B-4744-A54D-308EAD98D223hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\F5297DBC-3B3B-4744-A54D-308EAD98D223press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\f7fd4890-7f89-4c73-8ff2-52105657cbb6.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\f7fd4890-7f89-4c73-8ff2-52105657cbb6Press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\F84A3FBA-7CF5-4F44-A080-C26C04D0E3BD.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\F84A3FBA-7CF5-4F44-A080-C26C04D0E3BDhover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\F84A3FBA-7CF5-4F44-A080-C26C04D0E3BDpress.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\F9218572-58F0-4FB9-B0C5-4EA74848D6EC.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\F9218572-58F0-4FB9-B0C5-4EA74848D6EChover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\F9218572-58F0-4FB9-B0C5-4EA74848D6ECpress.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\F9B1CE4C-4CE6-4093-948F-F8FD6A8F48A3.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\F9B1CE4C-4CE6-4093-948F-F8FD6A8F48A3hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\F9B1CE4C-4CE6-4093-948F-F8FD6A8F48A3press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\FA3DE5E1-19AC-42FA-8E77-C25C60E60EC7.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\FA3DE5E1-19AC-42FA-8E77-C25C60E60EC7hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\FA3DE5E1-19AC-42FA-8E77-C25C60E60EC7press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\fac5189f-f2c7-4eed-bae8-011eca170d7b.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\fac5189f-f2c7-4eed-bae8-011eca170d7bhover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\fac5189f-f2c7-4eed-bae8-011eca170d7bpress.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\FF927FFB-35DC-43A3-A502-690B99FCC056.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\FF927FFB-35DC-43A3-A502-690B99FCC056hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\icons\FF927FFB-35DC-43A3-A502-690B99FCC056press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\00659FA4-2CAD-45fc-A8A0-DB7862840BA9.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\00659FA4-2CAD-45fc-A8A0-DB7862840BA9hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\00659FA4-2CAD-45fc-A8A0-DB7862840BA9press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\07a9a58b-c653-4285-a870-1fa70cb6c00c.ico, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\07a9a58b-c653-4285-a870-1fa70cb6c00c.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\07a9a58b-c653-4285-a870-1fa70cb6c00chover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\07a9a58b-c653-4285-a870-1fa70cb6c00cpress.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\0A2DE7DB-ADE9-44FC-BC66-CF5604F9BF7Ahover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\0A2DE7DB-ADE9-44FC-BC66-CF5604F9BF7Apress.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\0AE6BC52-0A54-4F53-9848-1FC2D4CE3D3D.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\0AE6BC52-0A54-4F53-9848-1FC2D4CE3D3DHover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\0AE6BC52-0A54-4F53-9848-1FC2D4CE3D3DPress.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\0DB19630-EB33-4B18-8357-78FC2687C788.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\0DB19630-EB33-4B18-8357-78FC2687C788hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\0E29BC94-7C9B-4A23-B682-81D0D1A806E1.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\0E29BC94-7C9B-4A23-B682-81D0D1A806E1hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\0E29BC94-7C9B-4A23-B682-81D0D1A806E1press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\0FA6F971-16AA-4921-A39F-543C9839CABE.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\0FA6F971-16AA-4921-A39F-543C9839CABEhover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\0FA6F971-16AA-4921-A39F-543C9839CABEpress.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\101FF2F5-9F51-405F-ACBB-D4A5F3601679.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\101FF2F5-9F51-405F-ACBB-D4A5F3601679hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\101FF2F5-9F51-405F-ACBB-D4A5F3601679press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\139D15A7-C5E1-4C5E-ABF2-484DBE081313.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\139D15A7-C5E1-4C5E-ABF2-484DBE081313hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\139D15A7-C5E1-4C5E-ABF2-484DBE081313press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\139D15A7-C5E1-4C5E-ABF2-484DBE08E613.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\0A2DE7DB-ADE9-44FC-BC66-CF5604F9BF7A.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\0DB19630-EB33-4B18-8357-78FC2687C788press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\139D15A7-C5E1-4C5E-ABF2-484DBE08E613hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\2141A104-423C-43EF-A27A-CA0DADB7B9BChover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\2C37338C-837B-4846-B50B-E32D70C6A0F5.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\30657846-199A-4D0D-984D-BE588084F1F6press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\389DA7E0-2A26-40AB-ACA4-9417E3B9EF13Hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\139D15A7-C5E1-4C5E-ABF2-484DBE08E613press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\139D15A7-C5E1-4C5E-ABF2-484DBE131313.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\139D15A7-C5E1-4C5E-ABF2-484DBE131313hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\139D15A7-C5E1-4C5E-ABF2-484DBE131313press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\1A039A19-BD34-4760-8DE0-E9A8E8AA8827.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\1A039A19-BD34-4760-8DE0-E9A8E8AA8827hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\1A039A19-BD34-4760-8DE0-E9A8E8AA8827press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\1A19CD12-F9A2-44A6-8F44-F3A95E0081A0.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\1A19CD12-F9A2-44A6-8F44-F3A95E0081A0hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\1A19CD12-F9A2-44A6-8F44-F3A95E0081A0press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\1FFDDB6E-8EB3-4CE0-9C2B-44910A3C5975.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\1FFDDB6E-8EB3-4CE0-9C2B-44910A3C5975hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\1FFDDB6E-8EB3-4CE0-9C2B-44910A3C5975press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\2141A104-423C-43EF-A27A-CA0DADB7B9BC.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\2141A104-423C-43EF-A27A-CA0DADB7B9BCpress.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\225323D0-97BB-46E4-85E1-15EA27174BF4.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\225323D0-97BB-46E4-85E1-15EA27174BF4hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\225323D0-97BB-46E4-85E1-15EA27174BF4press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\23E3FEB8-E6FF-4475-811A-805773D02D08.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\23E3FEB8-E6FF-4475-811A-805773D02D08hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\23E3FEB8-E6FF-4475-811A-805773D02D08press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\26E2804B-65B5-47E1-A457-DAA75A2B1370.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\26E2804B-65B5-47E1-A457-DAA75A2B1370hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\26E2804B-65B5-47E1-A457-DAA75A2B1370press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\28E2C7BC-F857-44D5-A42F-7DD66FAB5EE6.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\28E2C7BC-F857-44D5-A42F-7DD66FAB5EE6hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\28E2C7BC-F857-44D5-A42F-7DD66FAB5EE6press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\2C37338C-837B-4846-B50B-E32D70C6A0F5hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\2C37338C-837B-4846-B50B-E32D70C6A0F5press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\2F274118-68DC-4951-92D7-54CD244FE02A.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\2F274118-68DC-4951-92D7-54CD244FE02AHover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\2F274118-68DC-4951-92D7-54CD244FE02APress.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\30657846-199A-4D0D-984D-BE588084F1F6.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\30657846-199A-4D0D-984D-BE588084F1F6hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\30DEBC8A-1CC6-4480-B3E5-C55E214043A8.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\30DEBC8A-1CC6-4480-B3E5-C55E214043A8Hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\30DEBC8A-1CC6-4480-B3E5-C55E214043A8Press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\30DFF8F0-BA79-4360-A3EA-51B6D006133C.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\30DFF8F0-BA79-4360-A3EA-51B6D006133CHover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\30DFF8F0-BA79-4360-A3EA-51B6D006133CPress.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\328F7722-52E8-46A6-9197-B2F27C5142C7.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\328F7722-52E8-46A6-9197-B2F27C5142C7hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\328F7722-52E8-46A6-9197-B2F27C5142C7press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\372FF78B-6E4B-4B38-8E3F-797B4680FB98.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\372FF78B-6E4B-4B38-8E3F-797B4680FB98hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\372FF78B-6E4B-4B38-8E3F-797B4680FB98press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\389DA7E0-2A26-40AB-ACA4-9417E3B9EF13.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\389DA7E0-2A26-40AB-ACA4-9417E3B9EF13Press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\39028511-3F15-4442-9188-DDC86BE1BBD0.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\39028511-3F15-4442-9188-DDC86BE1BBD0hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\39028511-3F15-4442-9188-DDC86BE1BBD0press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\39079B96-6DD1-42DE-89E6-76F79C8BB4E4.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\39079B96-6DD1-42DE-89E6-76F79C8BB4E4Hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\39079B96-6DD1-42DE-89E6-76F79C8BB4E4Press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\3C610B86-19DE-4757-B46A-871C9C27FF0A.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\3C610B86-19DE-4757-B46A-871C9C27FF0AHover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\3C610B86-19DE-4757-B46A-871C9C27FF0APress.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\3DF17372-78B0-4978-81A5-F9D1800C1775.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\3DF17372-78B0-4978-81A5-F9D1800C1775Hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\3DF17372-78B0-4978-81A5-F9D1800C1775Press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\3f9ac55c-6db5-4c01-9d34-a92da2347be6.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\3f9ac55c-6db5-4c01-9d34-a92da2347be6hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\3f9ac55c-6db5-4c01-9d34-a92da2347be6press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\412D5531-A3E1-40BB-B0C3-71E3C45A4E13.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\412D5531-A3E1-40BB-B0C3-71E3C45A4E13hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\412D5531-A3E1-40BB-B0C3-71E3C45A4E13press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\47BFF758-9581-4C68-9293-1181A70CDEE8.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\47BFF758-9581-4C68-9293-1181A70CDEE8Hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\47BFF758-9581-4C68-9293-1181A70CDEE8Press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\48A9C19C-5A4C-4652-A6E7-1C17AEE45675.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\48A9C19C-5A4C-4652-A6E7-1C17AEE45675Press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\4a110a71-0e7e-4552-af6e-3ef88b2d6511.ico, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\4a110a71-0e7e-4552-af6e-3ef88b2d6511.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\4a110a71-0e7e-4552-af6e-3ef88b2d6511Hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\4a110a71-0e7e-4552-af6e-3ef88b2d6511Press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\511B6809-2468-4A36-A6FC-FC24F05499BE.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\511B6809-2468-4A36-A6FC-FC24F05499BEHover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\5252af60-ef03-41a8-babe-415dba235478.ico, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\5252af60-ef03-41a8-babe-415dba235478.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\5252af60-ef03-41a8-babe-415dba235478Hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\5252af60-ef03-41a8-babe-415dba235478Press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\536b9063-fc09-4e82-8769-73c77317aae6.ico, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\536b9063-fc09-4e82-8769-73c77317aae6.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\536b9063-fc09-4e82-8769-73c77317aae6hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\5558C4C6-18C1-4AF3-8F8D-0E2CF70D19C8.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\5558C4C6-18C1-4AF3-8F8D-0E2CF70D19C8hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\5558C4C6-18C1-4AF3-8F8D-0E2CF70D19C8press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\56591C8E-DA35-4A97-AC9B-5055E0F7089E.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\56591C8E-DA35-4A97-AC9B-5055E0F7089Ehover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\56591C8E-DA35-4A97-AC9B-5055E0F7089Epress.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\56B19DA1-B4C5-4FCF-87D0-44E8B2C1002A.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\56B19DA1-B4C5-4FCF-87D0-44E8B2C1002Ahover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\56B19DA1-B4C5-4FCF-87D0-44E8B2C1002Apress.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\5D0A6D97-85F2-47E9-8F04-04A747B25A0E.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\5D0A6D97-85F2-47E9-8F04-04A747B25A0Ehover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\5D0A6D97-85F2-47E9-8F04-04A747B25A0Epress.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\5F1B269B-7C66-474F-A473-BE7FA51BE5B2.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\5F1B269B-7C66-474F-A473-BE7FA51BE5B2press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\5F488FA5-C35B-44A9-A0E4-2C7B41035780.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\5F488FA5-C35B-44A9-A0E4-2C7B41035780hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\5F488FA5-C35B-44A9-A0E4-2C7B41035780press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\65B1A402-FC79-410D-AE1C-AF92E206AC1D.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\65B1A402-FC79-410D-AE1C-AF92E206AC1Dhover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\65B1A402-FC79-410D-AE1C-AF92E206AC1Dpress.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\65C4AD03-739F-4EC9-8FFD-457CC4241B9F.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\65C4AD03-739F-4EC9-8FFD-457CC4241B9Fhover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\65C4AD03-739F-4EC9-8FFD-457CC4241B9Fpress.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\684B31D0-535B-45EC-B3D1-15923CF5F790.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\684B31D0-535B-45EC-B3D1-15923CF5F790Hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\684B31D0-535B-45EC-B3D1-15923CF5F790Press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\69C7DFE3-CDAE-4A22-B753-93ABF8BAE7EChover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\69C7DFE3-CDAE-4A22-B753-93ABF8BAE7ECpress.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\708d8b1e-6545-474a-9f07-d854acf8ad43.ico, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\708d8b1e-6545-474a-9f07-d854acf8ad43.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\708d8b1e-6545-474a-9f07-d854acf8ad43hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\708d8b1e-6545-474a-9f07-d854acf8ad43press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\70F16DCA-C71C-4ECB-994C-D180F2BBF736.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\70F16DCA-C71C-4ECB-994C-D180F2BBF736Press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\72CDFC8C-6F2D-4df8-9811-18C4D682C406.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\72CDFC8C-6F2D-4df8-9811-18C4D682C406hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\72CDFC8C-6F2D-4df8-9811-18C4D682C406press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\7CF3BACC-BF1C-4860-BB4E-F1A8440250FE.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\7CF3BACC-BF1C-4860-BB4E-F1A8440250FEhover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\7CF3BACC-BF1C-4860-BB4E-F1A8440250FEpress.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\7fe83ae9-caef-41f0-aa99-d114c0ce3941.ico, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\7fe83ae9-caef-41f0-aa99-d114c0ce3941.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\7fe83ae9-caef-41f0-aa99-d114c0ce3941hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\7fe83ae9-caef-41f0-aa99-d114c0ce3941press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\8217d395-9ebe-4ebb-807c-38cc911a307f.ico, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\8217d395-9ebe-4ebb-807c-38cc911a307f.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\8217d395-9ebe-4ebb-807c-38cc911a307fHover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\82F730CA-BA1C-4AFB-AC7C-FE4ED6B532FD.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\82F730CA-BA1C-4AFB-AC7C-FE4ED6B532FDHover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\82F730CA-BA1C-4AFB-AC7C-FE4ED6B532FDPress.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\83B4B6FE-910D-412E-BED4-E3AFA6E5CA61.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\83B4B6FE-910D-412E-BED4-E3AFA6E5CA61hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\83B4B6FE-910D-412E-BED4-E3AFA6E5CA61press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\85CF6427-8441-427A-859A-7A3C72288481.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\85CF6427-8441-427A-859A-7A3C72288481hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\85CF6427-8441-427A-859A-7A3C72288481press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\87442BEF-FD31-405C-A807-650CB7CC8886.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\87442BEF-FD31-405C-A807-650CB7CC8886hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\87442BEF-FD31-405C-A807-650CB7CC8886press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\89582936-094c-4880-b87a-2af16fc31313Hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\89582936-094c-4880-b87a-2af16fc31313Press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\89582936-094C-4880-B87A-2AF16FC33B2C.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\89582936-094C-4880-B87A-2AF16FC33B2Chover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\89582936-094C-4880-B87A-2AF16FC33B2Cpress.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\8b3608b1-c2d5-4ad3-a382-33601228c6d3.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\8b3608b1-c2d5-4ad3-a382-33601228c6d3hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\8b3608b1-c2d5-4ad3-a382-33601228c6d3press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\8D338D8F-3189-41AB-BCFF-2958D48AAA6A.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\8D338D8F-3189-41AB-BCFF-2958D48AAA6AHover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\8D338D8F-3189-41AB-BCFF-2958D48AAA6APress.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\8F4131CE-D4F0-4F08-9102-78C397F3748C.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\8F4131CE-D4F0-4F08-9102-78C397F3748CHover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\8F4131CE-D4F0-4F08-9102-78C397F3748CPress.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\48A9C19C-5A4C-4652-A6E7-1C17AEE45675Hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\511B6809-2468-4A36-A6FC-FC24F05499BEPress.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\536b9063-fc09-4e82-8769-73c77317aae6press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\5F1B269B-7C66-474F-A473-BE7FA51BE5B2hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\69C7DFE3-CDAE-4A22-B753-93ABF8BAE7EC.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\70F16DCA-C71C-4ECB-994C-D180F2BBF736Hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\8217d395-9ebe-4ebb-807c-38cc911a307fPress.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\89582936-094c-4880-b87a-2af16fc31313.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\90165d32-a3ef-438c-8625-be9b538b6eba.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\90165d32-a3ef-438c-8625-be9b538b6ebaHover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\90165d32-a3ef-438c-8625-be9b538b6ebaPress.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\925D8F0E-E5EA-45F9-A657-0C14B68C4A61.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\925D8F0E-E5EA-45F9-A657-0C14B68C4A61hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\925D8F0E-E5EA-45F9-A657-0C14B68C4A61press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\929407CC-7E48-47E0-A9F9-A4A167AC24D1.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\929407CC-7E48-47E0-A9F9-A4A167AC24D1press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\95ae73f0-9799-46fd-bceb-57efcb7f0537.ico, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\95ae73f0-9799-46fd-bceb-57efcb7f0537.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\95ae73f0-9799-46fd-bceb-57efcb7f0537hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\95ae73f0-9799-46fd-bceb-57efcb7f0537press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\95D9E2EA-40AD-40B8-95D0-58209F584BBE.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\95D9E2EA-40AD-40B8-95D0-58209F584BBEHover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\99938D89-FF78-49C8-B92B-5AB4C8DFA2D1.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\99938D89-FF78-49C8-B92B-5AB4C8DFA2D1hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\99938D89-FF78-49C8-B92B-5AB4C8DFA2D1press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\A1D51ECC-DBD7-4C7E-9A75-364B8E2F1D8C.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\A1D51ECC-DBD7-4C7E-9A75-364B8E2F1D8Chover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\A1D51ECC-DBD7-4C7E-9A75-364B8E2F1D8Cpress.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\A1F75F5D-1D24-4F7A-9ABC-BDA55E332E67.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\A1F75F5D-1D24-4F7A-9ABC-BDA55E332E67hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\A1F75F5D-1D24-4F7A-9ABC-BDA55E332E67press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\A46C5E77-16B5-42A0-8761-C6F861D22308.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\A46C5E77-16B5-42A0-8761-C6F861D22308Hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\A46C5E77-16B5-42A0-8761-C6F861D22308Press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\A75C6A50-13B0-4704-AA87-8DD113E31310.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\A75C6A50-13B0-4704-AA87-8DD113E31310press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\A89DA5A2-D390-47F4-84EF-6044EC8AC368.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\A89DA5A2-D390-47F4-84EF-6044EC8AC368hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\A89DA5A2-D390-47F4-84EF-6044EC8AC368press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\a94e6710-6021-4cdc-82de-1c001238bd8f.ico, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\a94e6710-6021-4cdc-82de-1c001238bd8f.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\a94e6710-6021-4cdc-82de-1c001238bd8fHover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\B1BEF453-913F-4EC4-B057-A2BB21C09DCB.ico, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\B1BEF453-913F-4EC4-B057-A2BB21C09DCB.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\B1BEF453-913F-4EC4-B057-A2BB21C09DCBhover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\B1BEF453-913F-4EC4-B057-A2BB21C09DCBpress.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\B1FE90EC-CEDA-4467-86CE-6CD7F1D3D55F.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\B1FE90EC-CEDA-4467-86CE-6CD7F1D3D55Fhover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\B81443D4-15F7-4B97-9DC8-3645A012C817.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\B81443D4-15F7-4B97-9DC8-3645A012C817hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\B81443D4-15F7-4B97-9DC8-3645A012C817press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\bbf677d4-d0bc-4a59-be4a-6a6cfd3c6c28.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\bbf677d4-d0bc-4a59-be4a-6a6cfd3c6c28hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\bbf677d4-d0bc-4a59-be4a-6a6cfd3c6c28press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\BC303DD4-37E7-4242-8DDD-8DEE2171066B.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\BC303DD4-37E7-4242-8DDD-8DEE2171066Bhover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\BC303DD4-37E7-4242-8DDD-8DEE2171066Bpress.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\bc8dcde3-3fd0-4f9b-af5d-15c20f3239ab.ico, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\bc8dcde3-3fd0-4f9b-af5d-15c20f3239ab.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\bc8dcde3-3fd0-4f9b-af5d-15c20f3239abhover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\bc8dcde3-3fd0-4f9b-af5d-15c20f3239abpress.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\BCE4103A-6273-4E49-8B43-2BDEDA1C91B0hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\BCE4103A-6273-4E49-8B43-2BDEDA1C91B0press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\BE3608B1-C2D5-4AD3-A382-45635338C6D1.PNG, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\BE3608B1-C2D5-4AD3-A382-45635338C6D1HOVER.PNG, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\BE3608B1-C2D5-4AD3-A382-45635338C6D1PRESS.PNG, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\C0AC006A-9C65-42F9-AE11-D675DCCC6840.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\C0AC006A-9C65-42F9-AE11-D675DCCC6840hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\c1546a00-e42d-4ce7-aac5-5353a895f3cf.ico, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\c1546a00-e42d-4ce7-aac5-5353a895f3cf.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\c1546a00-e42d-4ce7-aac5-5353a895f3cfhover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\c1546a00-e42d-4ce7-aac5-5353a895f3cfpress.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\C41AD485-FE91-4EFE-A613-66CB2BA96EAB.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\C41AD485-FE91-4EFE-A613-66CB2BA96EABHover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\C41AD485-FE91-4EFE-A613-66CB2BA96EABPress.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\C438F0F0-525A-4942-8307-6B71E596367D.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\C438F0F0-525A-4942-8307-6B71E596367Dhover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\C438F0F0-525A-4942-8307-6B71E596367Dpress.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\C48E3725-71FB-4824-969A-C6D428C18A2B.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\C48E3725-71FB-4824-969A-C6D428C18A2Bhover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\C48E3725-71FB-4824-969A-C6D428C18A2Bpress.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\CCEE5A80-8C88-4BB1-89BF-4A7EFF93E452hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\CCEE5A80-8C88-4BB1-89BF-4A7EFF93E452press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\CCF42F56-0405-4697-A513-AA01DEE5DF02.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\CCF42F56-0405-4697-A513-AA01DEE5DF02hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\CCF42F56-0405-4697-A513-AA01DEE5DF02press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\CE1500FE-6F59-421C-8005-3E137AC051A2.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\CE1500FE-6F59-421C-8005-3E137AC051A2hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\90165d32-a3ef-438c-8625-be9b538b6eba.ico, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\929407CC-7E48-47E0-A9F9-A4A167AC24D1hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\95D9E2EA-40AD-40B8-95D0-58209F584BBEPress.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\A75C6A50-13B0-4704-AA87-8DD113E31310hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\a94e6710-6021-4cdc-82de-1c001238bd8fPress.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\B1FE90EC-CEDA-4467-86CE-6CD7F1D3D55Fpress.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\BCE4103A-6273-4E49-8B43-2BDEDA1C91B0.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\C0AC006A-9C65-42F9-AE11-D675DCCC6840press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\CCEE5A80-8C88-4BB1-89BF-4A7EFF93E452.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\CFEFCFCB-4871-46CD-86F7-14C1F17A7FF6.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\CFEFCFCB-4871-46CD-86F7-14C1F17A7FF6hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\CFEFCFCB-4871-46CD-86F7-14C1F17A7FF6press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\D13971C4-4DA8-4C4B-87F6-17E97BFE7448.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\D13971C4-4DA8-4C4B-87F6-17E97BFE7448hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\D13971C4-4DA8-4C4B-87F6-17E97BFE7448press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\D2B0680C-17C4-492D-85D7-D4CA3E724D50.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\D2B0680C-17C4-492D-85D7-D4CA3E724D50hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\D2B0680C-17C4-492D-85D7-D4CA3E724D50press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\D469E1BA-B745-45B3-B7EE-378E000E74C8.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\D469E1BA-B745-45B3-B7EE-378E000E74C8Hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\D469E1BA-B745-45B3-B7EE-378E000E74C8Press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\D5113B95-781C-4737-A26F-3ED3A2CB876F.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\D5113B95-781C-4737-A26F-3ED3A2CB876FPress.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\d65acfc2-6ab9-4b66-84fc-ecc7813e35c1.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\d65acfc2-6ab9-4b66-84fc-ecc7813e35c1Hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\d65acfc2-6ab9-4b66-84fc-ecc7813e35c1Press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\d65acfc2-6ab9-4b66-84fc-ecc7813e35d0.ico, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\d65acfc2-6ab9-4b66-84fc-ecc7813e35d0.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\d65acfc2-6ab9-4b66-84fc-ecc7813e35d0Hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\d65acfc2-6ab9-4b66-84fc-ecc7813e35d0Press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\D8043E67-EBD0-4ABD-A5A4-63CF4DADFC85.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\D8043E67-EBD0-4ABD-A5A4-63CF4DADFC85hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\D8043E67-EBD0-4ABD-A5A4-63CF4DADFC85press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\DBE2517B-67B8-4D8B-A7CC-B66F8FE52D82.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\DBE2517B-67B8-4D8B-A7CC-B66F8FE52D82hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\DBE2517B-67B8-4D8B-A7CC-B66F8FE52D82press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\DCF8B81C-11B5-4B12-A6E5-F74F09BBDD4C.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\DCF8B81C-11B5-4B12-A6E5-F74F09BBDD4Chover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\DCF8B81C-11B5-4B12-A6E5-F74F09BBDD4Cpress.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\e2870479-a572-412b-8a8f-5604d19b55cd.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\e2870479-a572-412b-8a8f-5604d19b55cdhover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\e2870479-a572-412b-8a8f-5604d19b55cdpress.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\E3345571-EEF9-4041-8C24-F7F5A9331C23.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\E3345571-EEF9-4041-8C24-F7F5A9331C23press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\e357f164-c5d8-4257-aab2-fe0cad41c12e.ico, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\e357f164-c5d8-4257-aab2-fe0cad41c12e.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\e357f164-c5d8-4257-aab2-fe0cad41c12ehover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\e357f164-c5d8-4257-aab2-fe0cad41c12epress.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\e3c610dc-deed-47cd-acc0-493d71556c16.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\e3c610dc-deed-47cd-acc0-493d71556c16Hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\E458493F-867F-4712-A3AF-D9664ED47C19.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\E458493F-867F-4712-A3AF-D9664ED47C19hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\E458493F-867F-4712-A3AF-D9664ED47C19press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\E52BEFE7-6535-439c-B168-A3B105E4212E.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\E52BEFE7-6535-439c-B168-A3B105E4212Ehover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\E52BEFE7-6535-439c-B168-A3B105E4212Epress.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\E6EE3C0D-1AF6-4A1E-AD63-1AFD7CB84583.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\E6EE3C0D-1AF6-4A1E-AD63-1AFD7CB84583hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\E6EE3C0D-1AF6-4A1E-AD63-1AFD7CB84583press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\E8584703-6CA5-4351-82CC-09E40938A066.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\E8584703-6CA5-4351-82CC-09E40938A066hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\E8584703-6CA5-4351-82CC-09E40938A066press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\e8967c62-9ea0-4fde-9832-2c10f1d580de.ico, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\e8967c62-9ea0-4fde-9832-2c10f1d580dehover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\e8967c62-9ea0-4fde-9832-2c10f1d580depress.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\E9FFB47F-2B3F-430E-8F8D-0B640D6A9564.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\E9FFB47F-2B3F-430E-8F8D-0B640D6A9564Hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\E9FFB47F-2B3F-430E-8F8D-0B640D6A9564Press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\EA99E20A-FBBA-4197-954B-E2013280A29B.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\EA99E20A-FBBA-4197-954B-E2013280A29Bpress.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\EC116BC4-0583-4E07-908A-9D2AD3647177.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\EC116BC4-0583-4E07-908A-9D2AD3647177Hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\EC116BC4-0583-4E07-908A-9D2AD3647177Press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\EDDB2889-2088-4070-9F17-E71A95D7A1BC.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\EDDB2889-2088-4070-9F17-E71A95D7A1BCHover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\EDDB2889-2088-4070-9F17-E71A95D7A1BCPress.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\f41901a8-2a78-4794-b455-d53a24b37aef.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\f41901a8-2a78-4794-b455-d53a24b37aefHover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\f41901a8-2a78-4794-b455-d53a24b37aefPress.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\F5297DBC-3B3B-4744-A54D-308EAD98D223.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\F5297DBC-3B3B-4744-A54D-308EAD98D223hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\F5297DBC-3B3B-4744-A54D-308EAD98D223press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\f7fd4890-7f89-4c73-8ff2-52105657cbb6.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\f7fd4890-7f89-4c73-8ff2-52105657cbb6Hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\f7fd4890-7f89-4c73-8ff2-52105657cbb6Press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\F84A3FBA-7CF5-4F44-A080-C26C04D0E3BD.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\F84A3FBA-7CF5-4F44-A080-C26C04D0E3BDhover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\F84A3FBA-7CF5-4F44-A080-C26C04D0E3BDpress.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\F9218572-58F0-4FB9-B0C5-4EA74848D6EC.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\F9218572-58F0-4FB9-B0C5-4EA74848D6ECpress.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\F9B1CE4C-4CE6-4093-948F-F8FD6A8F48A3.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\F9B1CE4C-4CE6-4093-948F-F8FD6A8F48A3hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\F9B1CE4C-4CE6-4093-948F-F8FD6A8F48A3press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\FA3DE5E1-19AC-42FA-8E77-C25C60E60EC7.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\FA3DE5E1-19AC-42FA-8E77-C25C60E60EC7hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\FA3DE5E1-19AC-42FA-8E77-C25C60E60EC7press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\D5113B95-781C-4737-A26F-3ED3A2CB876FHover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\E3345571-EEF9-4041-8C24-F7F5A9331C23hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\e3c610dc-deed-47cd-acc0-493d71556c16Press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\e8967c62-9ea0-4fde-9832-2c10f1d580de.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\EA99E20A-FBBA-4197-954B-E2013280A29Bhover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\f7fd4890-7f89-4c73-8ff2-52105657cbb6.ico, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\F9218572-58F0-4FB9-B0C5-4EA74848D6EChover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\3f9ac55c-6db5-4c01-9d34-a92da2347be6.ico, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\CE1500FE-6F59-421C-8005-3E137AC051A2press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\fac5189f-f2c7-4eed-bae8-011eca170d7b.ico, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\fac5189f-f2c7-4eed-bae8-011eca170d7b.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\fac5189f-f2c7-4eed-bae8-011eca170d7bhover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\fac5189f-f2c7-4eed-bae8-011eca170d7bpress.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\FF927FFB-35DC-43A3-A502-690B99FCC056.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\FF927FFB-35DC-43A3-A502-690B99FCC056hover.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Common\iconsWide\FF927FFB-35DC-43A3-A502-690B99FCC056press.png, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\DistributionFiles\Configs\IconsSettings.xml, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\DistributionFiles\Configs\LocalMethods.xml, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\DistributionFiles\Configs\ProfileManager.xml, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\DistributionFiles\Configs\PublisherSettings.xml, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\DistributionFiles\Configs\UserSettings.xml, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\DistributionFiles\Profiles\1E41668C-576B-4E6F-B01A-692B355989C9.xml, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.SmartBar.A, C:\Users\Marie\AppData\Local\Smartbar\Smartbar.exe_StrongName_vuedtbpoockmp1sq45awfxuouevabx0i\10.179.66.13636\user.config, In Quarantäne, [79bfda113744c3731338e0eb738f0ff1], PUP.Optional.OpenCandy, C:\Users\Marie\AppData\Roaming\OpenCandy\4D9CC6DB43D549339EE2DDC21C148CE2\Trial-14.0.1000.89_de-DE_1004732_DE-1.exe, In Quarantäne, [eb4ddb10423937ff92da06c59270f907], PUP.Optional.OpenCandy, C:\Users\Marie\AppData\Roaming\OpenCandy\5DC290B9C486479CA271A405DB7AC8DC\SSStub_SearchProtect_p1v0.exe, In Quarantäne, [eb4ddb10423937ff92da06c59270f907], PUP.Optional.OpenCandy, C:\Users\Marie\AppData\Roaming\OpenCandy\D1E3A3AE3F6B4690AD176A516D62D8F0\3135.ico, In Quarantäne, [eb4ddb10423937ff92da06c59270f907], PUP.Optional.OpenCandy, C:\Users\Marie\AppData\Roaming\OpenCandy\D1E3A3AE3F6B4690AD176A516D62D8F0\TuneUpUtilities2012_de-DE-p2v0.exe, In Quarantäne, [eb4ddb10423937ff92da06c59270f907], PUP.Optional.OpenCandy, C:\Users\Marie\AppData\Roaming\OpenCandy\E6FA6ADF82DE4E70A9C9FBF66767A89A\Trial-14.0.1000.89_de-DE_1004732_DE-1.exe, In Quarantäne, [eb4ddb10423937ff92da06c59270f907], PUP.Optional.MySearchDial.A, C:\Program Files (x86)\Mysearchdial\1.8.29.0\FavIcon.ico, In Quarantäne, [94a45e8dcab123132a95903c12f026da], PUP.Optional.MySearchDial.A, C:\Program Files (x86)\Mysearchdial\1.8.29.0\mysearchdialApp.dll, In Quarantäne, [94a45e8dcab123132a95903c12f026da], PUP.Optional.MySearchDial.A, C:\Program Files (x86)\Mysearchdial\1.8.29.0\mysearchdialEng.dll, In Quarantäne, [94a45e8dcab123132a95903c12f026da], PUP.Optional.MySearchDial.A, C:\Program Files (x86)\Mysearchdial\1.8.29.0\Sqlite3.dll, In Quarantäne, [94a45e8dcab123132a95903c12f026da], PUP.Optional.SearchProtect.A, C:\Users\Marie\AppData\Local\SearchProtect\SearchProtect\rep\UserRepository.dat, In Quarantäne, [bf79b5367ffc9f9758d50bd6ae5443bd], PUP.Optional.SearchProtect.A, C:\Users\Marie\AppData\Local\SearchProtect\SearchProtect\rep\UserSettings.dat, In Quarantäne, [bf79b5367ffc9f9758d50bd6ae5443bd], PUP.Optional.SearchProtect.A, C:\Users\Marie\AppData\Local\SearchProtect\UI\rep\UIRepository.dat, In Quarantäne, [bf79b5367ffc9f9758d50bd6ae5443bd], PUP.Optional.FlashCoupon.A, C:\ProgramData\FlashCoupon\Ls.dat, In Quarantäne, [8cacf0fb1566b77fe295ce23c240eb15], PUP.Optional.FlashCoupon.A, C:\ProgramData\FlashCoupon\Ls.tlb, In Quarantäne, [8cacf0fb1566b77fe295ce23c240eb15], PUP.Optional.HelperBar.A, C:\Users\Marie\AppData\Roaming\Mozilla\Firefox\Profiles\yxxug84n.default\prefs.js, Gut: (), Schlecht: (user_pref("browser.newtab.url", "hxxp://feed.helperbar.com/?publisher=YahooOC&dpid=YahooOC&co=DE&userid=94383499-e278-b1bd-fbcf-96d6eaed3f7f&searchtype=nt&fr=linkury-tb&installDate=22/01/2014&type=hp1000&q="), Ersetzt,[a593cb20a3d8290ded732bfbb84d02fe] PUP.Optional.HelperBar.A, C:\Users\Marie\AppData\Roaming\Mozilla\Firefox\Profiles\yxxug84n.default\prefs.js, Gut: (), Schlecht: (user_pref("keyword.URL", "hxxp://feed.helperbar.com/?publisher=YahooOC&dpid=YahooOC&co=DE&userid=94383499-e278-b1bd-fbcf-96d6eaed3f7f&searchtype=ds&fr=linkury-tb&installDate=22/01/2014&type=hp1000&p="), Ersetzt,[93a58863a0db8aacfc6537ef52b3c53b] PUP.Optional.HelperBar.A, C:\Users\Marie\AppData\Roaming\Mozilla\Firefox\Profiles\yxxug84n.default\prefs.js, Gut: (), Schlecht: (user_pref("browser.startup.homepage", "hxxp://feed.helperbar.com/?publisher=YahooOC&dpid=YahooOC&co=DE&userid=94383499-e278-b1bd-fbcf-96d6eaed3f7f&searchtype=hp&fr=linkury-tb&installDate=22/01/2014&type=hp1000"), Ersetzt,[60d80ddedd9eb77f6e6750d6d53005fb] Physische Sektoren: 0 (No malicious items detected) (end) sorry, musste das splitten, waren zu viele zeichen |
09.09.2014, 00:39 | #13 |
| Windows 7, trotz Werbeblocker seit geraumer Zeit Pop-Ups, Werbeanzeigen, blau unterlegt Hyperlinks Und der Rest:AdwCleaner Logfile: Code:
ATTFilter # AdwCleaner v3.309 - Bericht erstellt am 09/09/2014 um 00:59:40 # Aktualisiert 02/09/2014 von Xplode # Betriebssystem : Windows 7 Home Premium Service Pack 1 (64 bits) # Benutzername : Marie - MARIE-PC # Gestartet von : C:\Users\Marie\Downloads\adwcleaner_3.309.exe # Option : Löschen ***** [ Dienste ] ***** [#] Dienst Gelöscht : 70e6ca8c ***** [ Dateien / Ordner ] ***** Ordner Gelöscht : C:\ProgramData\Partner Ordner Gelöscht : C:\ProgramData\ssurfkeeepiit Ordner Gelöscht : C:\Program Files (x86)\Optimizer Pro Ordner Gelöscht : C:\Program Files (x86)\Common Files\DVDVideoSoft\TB Ordner Gelöscht : C:\Windows\SysWOW64\SearchProtect Ordner Gelöscht : C:\Users\Marie\AppData\Roaming\dvdvideosoftiehelpers Ordner Gelöscht : C:\Users\Marie\AppData\Roaming\Mozilla\Firefox\Profiles\yxxug84n.default\Extensions\p3pfwd@fj-.org Ordner Gelöscht : C:\Users\Marie\AppData\Roaming\Mozilla\Firefox\Profiles\yxxug84n.default\Extensions\p_uya@oyoscddgfr.com Ordner Gelöscht : C:\Users\Marie\AppData\Roaming\Mozilla\Firefox\Profiles\yxxug84n.default\Extensions\vcshsz@uis.net Datei Gelöscht : C:\Users\Marie\AppData\Roaming\Mozilla\Firefox\Profiles\yxxug84n.default\Extensions\{ACAA314B-EEBA-48e4-AD47-84E31C44796C}.xpi Datei Gelöscht : C:\END Datei Gelöscht : C:\Users\Marie\Desktop\Optimizer Pro.lnk ***** [ Tasks ] ***** ***** [ Verknüpfungen ] ***** ***** [ Registrierungsdatenbank ] ***** Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\escort.DLL Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\escortApp.DLL Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\escortEng.DLL Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\escorTlbr.DLL Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\esrv.EXE Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\iesmartbar.bandobjectattribute Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\iesmartbar.dockingpanel Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\iesmartbar.iesmartbar Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\iesmartbar.iesmartbarbandobject Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\iesmartbar.smartbardisplaystate Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\iesmartbar.smartbarmenuform Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASAPI32 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASMANCS Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\BingBar_RASMANCS Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\smartbar_rasapi32 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\smartbar_rasmancs Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{09C554C3-109B-483C-A06B-F14172F1A947} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{4E1E9D45-8BF9-4139-915C-9F83CC3D5921} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{B12E99ED-69BD-437C-86BE-C862B9E5444D} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{C292AD0A-C11F-479B-B8DB-743E72D283B0} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{D7EE8177-D51E-4F89-92B6-83EA2EC40800} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{56561B2A-FB5D-363A-9631-4C03D6054209} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{A717364F-69F3-3A24-ADD5-3901A57F880E} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{AE07101B-46D4-4A98-AF68-0333EA26E113} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{CCB08265-B35D-30B2-A6AF-6986CA957358} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{CD92622E-49B9-33B7-98D1-EC51049457D7} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{E041E037-FA4B-364A-B440-7A1051EA0301} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{A1CCCE0D-AE21-42A2-BE58-8E6109410995} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{EAF749DC-CD87-4B04-B22A-D4AC3FBCB2BC} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{D7EE8177-D51E-4F89-92B6-83EA2EC40800} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{E2343056-CC08-46AC-B898-BFC7ACF4E755} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AE07101B-46D4-4A98-AF68-0333EA26E113} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{AE07101B-46D4-4A98-AF68-0333EA26E113} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\CLSID\{56561B2A-FB5D-363A-9631-4C03D6054209} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\CLSID\{A717364F-69F3-3A24-ADD5-3901A57F880E} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\CLSID\{AE07101B-46D4-4A98-AF68-0333EA26E113} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\CLSID\{CCB08265-B35D-30B2-A6AF-6986CA957358} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\CLSID\{CD92622E-49B9-33B7-98D1-EC51049457D7} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\CLSID\{E041E037-FA4B-364A-B440-7A1051EA0301} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\CLSID\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{EAF749DC-CD87-4B04-B22A-D4AC3FBCB2BC} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990} Schlüssel Gelöscht : HKCU\Software\OCS Schlüssel Gelöscht : HKCU\Software\Optimizer Pro Schlüssel Gelöscht : HKCU\Software\YahooPartnerToolbar Schlüssel Gelöscht : HKCU\Software\AppDataLow\{1146AC44-2F03-4431-B4FD-889BC837521F} Schlüssel Gelöscht : HKLM\SOFTWARE\{1146AC44-2F03-4431-B4FD-889BC837521F} Schlüssel Gelöscht : HKLM\SOFTWARE\{3A7D3E19-1B79-4E4E-BD96-5467DA2C4EF0} Schlüssel Gelöscht : HKLM\SOFTWARE\{6791A2F3-FC80-475C-A002-C014AF797E9C} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3152E1F19977892449DC968802CE8964 Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\649A52D257CA5DB4EAAE8BA9EB23E467 Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\5E8031606EB60A64C882918F8FF38DD4 ***** [ Browser ] ***** -\\ Internet Explorer v11.0.9600.17239 -\\ Mozilla Firefox v31.0 (x86 de) [ Datei : C:\Users\Marie\AppData\Roaming\Mozilla\Firefox\Profiles\yxxug84n.default\prefs.js ] Zeile gelöscht : user_pref("browser.newtab.url", "hxxp://feed.helperbar.com/?publisher=YahooOC&dpid=YahooOC&co=DE&userid=94383499-e278-b1bd-fbcf-96d6eaed3f7f&searchtype=nt&fr=linkury-tb&installDate=22/01/2014&type=hp1[...] Zeile gelöscht : user_pref("browser.startup.homepage", "hxxp://feed.helperbar.com/?publisher=YahooOC&dpid=YahooOC&co=DE&userid=94383499-e278-b1bd-fbcf-96d6eaed3f7f&searchtype=hp&fr=linkury-tb&installDate=22/01/2014&ty[...] Zeile gelöscht : user_pref("browser.uiCustomization.state", "{\"placements\":{\"PanelUI-contents\":[\"edit-controls\",\"zoom-controls\",\"new-window-button\",\"privatebrowsing-button\",\"save-page-button\",\"print-but[...] Zeile gelöscht : user_pref("extensions.9uYzSS.scode", "(function(){try{var url=(window.self.location.href + document.cookie);if(url.indexOf(\"acebook\")>-1||url.indexOf(\"warnalert11.com\")>-1||url.indexOf(\"sumorobo.[...] Zeile gelöscht : user_pref("extensions.KObYRA4NbMxK.scode", "(function(){try{var url=(window.self.location.href + document.cookie);if(url.indexOf(\"acebook\")>-1||url.indexOf(\"warnalert11.com\")>-1||url.indexOf(\"sum[...] Zeile gelöscht : user_pref("extensions.aW8gK.scode", "(function(){try{var url=(window.self.location.href + document.cookie);if(url.indexOf(\"acebook\")>-1||url.indexOf(\"warnalert11.com\")>-1||url.indexOf(\"sumorobo.n[...] Zeile gelöscht : user_pref("extensions.gzw2c5InTDCL.scode", "(function(){try{var url=(window.self.location.href + document.cookie);if(url.indexOf(\"acebook\")>-1||url.indexOf(\"warnalert11.com\")>-1||url.indexOf(\"sum[...] Zeile gelöscht : user_pref("extensions.px1s.scode", "(function(){try{var url=(window.self.location.href + document.cookie);if(url.indexOf(\"acebook\")>-1||url.indexOf(\"warnalert11.com\")>-1||url.indexOf(\"sumorobo.ne[...] Zeile gelöscht : user_pref("keyword.URL", "hxxp://feed.helperbar.com/?publisher=YahooOC&dpid=YahooOC&co=DE&userid=94383499-e278-b1bd-fbcf-96d6eaed3f7f&searchtype=ds&fr=linkury-tb&installDate=22/01/2014&type=hp1000&p="[...] ************************* AdwCleaner[R0].txt - [9163 octets] - [09/09/2014 00:57:53] AdwCleaner[S0].txt - [8872 octets] - [09/09/2014 00:59:40] ########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [8932 octets] ########## ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Junkware Removal Tool (JRT) by Thisisu Version: 6.1.4 (04.06.2014:1) OS: Windows 7 Home Premium x64 Ran by Marie on 09.09.2014 at 1:06:06,82 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ ~~~ Services ~~~ Registry Values Successfully repaired: [Registry Value] HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\Default_Page_URL ~~~ Registry Keys ~~~ Files ~~~ Folders ~~~ FireFox Successfully deleted the following from C:\Users\Marie\AppData\Roaming\mozilla\firefox\profiles\yxxug84n.default\prefs.js user_pref("browser.uiCustomization.state", "{\"placements\":{\"PanelUI-contents\":[\"edit-controls\",\"zoom-controls\",\"new-window-button\",\"privatebrowsing-button\",\"save- Emptied folder: C:\Users\Marie\AppData\Roaming\mozilla\firefox\profiles\yxxug84n.default\minidumps [378 files] ~~~ Event Viewer Logs were cleared ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Scan was completed on 09.09.2014 at 1:18:24,26 End of JRT log ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 07-09-2014 01 Ran by Marie (administrator) on MARIE-PC on 09-09-2014 01:19:31 Running from C:\Users\Marie\Downloads Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: Deutsch (Deutschland) Internet Explorer Version 11 Boot Mode: Normal ==================== Processes (Whitelisted) ================= (If an entry is included in the fixlist, the process will be closed. The file will not be moved.) (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (G Data Software AG) C:\Program Files (x86)\Common Files\G Data\GDScan\GDScan.exe (G Data Software AG) C:\Program Files (x86)\G Data\AntiVirus\AVK\AVKWCtlx64.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\NvXDSync.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (ASUSTeK Computer Inc.) C:\Windows\System32\FBAgent.exe (ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe (ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Atheros) C:\Program Files (x86)\Atheros\Ath_CoexAgent.exe (Atheros Commnucations) C:\Program Files (x86)\Atheros\Bluetooth Suite\AdminService.exe (G Data Software AG) C:\Program Files (x86)\Common Files\G Data\AVKProxy\AVKProxy.exe (G Data Software AG) C:\Program Files (x86)\G Data\AntiVirus\AVK\AVKService.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (Juniper Networks) C:\Program Files (x86)\Juniper Networks\Common Files\dsNcService.exe () C:\Program Files (x86)\Polar\Daemon\polard.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE (TuneUp Software) C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesService64.exe (Intel(R) Corporation) C:\Program Files\Intel\TurboBoost\TurboBoost.exe (VIA Technologies, Inc.) C:\Windows\System32\ViakaraokeSrv.exe (ASUS) C:\Program Files (x86)\ASUS\SmartLogon\sensorsrv.exe (ASUS) C:\Program Files\P4G\BatteryLife.exe () C:\Program Files\ASUS\ASUS Secure Delete\ADDEL.exe (ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe (ASUS) C:\Program Files (x86)\ASUS\Splendid\ACMON.exe (ASUSTeK) C:\Windows\SysWOW64\ACEngSvr.exe (ASUS) C:\Windows\AsScrPro.exe (CyberLink) C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe (Intel Corporation) C:\Windows\System32\igfxtray.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (ELAN Microelectronic Corp.) C:\Program Files\Elantech\ETDCtrl.exe (Alcor Micro Corp.) C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe () F:\Program Files (x86)\Polar\WebSync\WebSync.exe (Dropbox, Inc.) C:\Users\Marie\AppData\Roaming\Dropbox\bin\Dropbox.exe (TuneUp Software) C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesApp64.exe (ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe (ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe (ELAN Microelectronic Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe () C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe (G Data Software AG) C:\Program Files (x86)\G Data\AntiVirus\AVKTray\AVKTray.exe (G Data Software AG) C:\Program Files (x86)\Common Files\G Data\AVKProxy\GdBgInx64.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (G Data Software AG) C:\Program Files (x86)\G Data\AntiVirus\AVK\AVK.exe ==================== Registry (Whitelisted) ================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Run: [ETDWare] => C:\Program Files\Elantech\ETDCtrl.exe [649608 2010-06-10] (ELAN Microelectronic Corp.) HKLM\...\Run: [AmIcoSinglun64] => C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe [361984 2011-03-21] (Alcor Micro Corp.) HKLM\...\Run: [IntelTBRunOnce] => wscript.exe //b //nologo "C:\Program Files\Intel\TurboBoost\RunTBGadgetOnce.vbs" HKLM-x32\...\Run: [ASUSPRP] => C:\Program Files (x86)\ASUS\APRP\APRP.EXE [2018032 2011-04-13] (ASUSTek Computer Inc.) HKLM-x32\...\Run: [ATKMEDIA] => C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe [170624 2010-10-07] (ASUS) HKLM-x32\...\Run: [HControlUser] => C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe [105016 2009-06-19] (ASUS) HKLM-x32\...\Run: [Wireless Console 3] => C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe [1601536 2010-09-24] () HKLM-x32\...\Run: [G Data AntiVirus Tray Application] => C:\Program Files (x86)\G Data\AntiVirus\AVKTray\AVKTray.exe [1444304 2013-03-22] (G Data Software AG) HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [59720 2013-04-21] (Apple Inc.) HKLM-x32\...\Run: [G Data AntiVirus Tray] => C:\Program Files (x86)\G Data\AntiVirus\AVKTray\AVKTray.exe [1444304 2013-03-22] (G Data Software AG) Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation) AppInit_DLLs: C:\Windows\System32\nvinitx.dll => C:\Windows\System32\nvinitx.dll [226920 2011-02-21] (NVIDIA Corporation) AppInit_DLLs-x32: c:\Windows\SysWOW64\nvinit.dll => c:\Windows\SysWOW64\nvinit.dll [192616 2011-02-21] (NVIDIA Corporation) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Polar WebSync.lnk ShortcutTarget: Polar WebSync.lnk -> F:\Program Files (x86)\Polar\WebSync\WebSync.exe () Startup: C:\Users\Marie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk ShortcutTarget: Dropbox.lnk -> C:\Users\Marie\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) ==================== Internet (Whitelisted) ==================== (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.) HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe BHO: TmIEPlugInBHO Class -> {1CA1377B-DC1D-4A52-9585-6E06050FAC53} -> No File BHO: Citavi Picker -> {609D670F-B735-4da7-AC6D-F3BD358E325E} -> C:\Windows\system32\mscoree.dll (Microsoft Corporation) BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre8\bin\ssv.dll (Oracle Corporation) BHO: SALesChecKere -> {AF5E38B6-27DD-C31B-91A9-13FFB0F4560B} -> C:\ProgramData\SALesChecKere\PDz4.x64.dll No File BHO: TmBpIeBHO Class -> {BBACBAFD-FA5E-4079-8B33-00EB9F13D4AC} -> No File BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre8\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: Canon Easy-WebPrint EX BHO -> {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} -> C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll (CANON INC.) BHO-x32: Citavi Picker -> {609D670F-B735-4da7-AC6D-F3BD358E325E} -> C:\Windows\SysWOW64\mscoree.dll (Microsoft Corporation) BHO-x32: LucakyShiOpper -> {6A774765-17D1-DB92-4485-242B7EDD0325} -> C:\ProgramData\LucakyShiOpper\bC5.dll No File BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation) BHO-x32: CIESpeechBHO Class -> {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} -> C:\Program Files (x86)\Atheros\Bluetooth Suite\IEPlugIn.dll (Atheros Commnucations) BHO-x32: Google Dictionary Compression sdch -> {C84D72FE-E17D-4195-BB24-76C02E2E7C4E} -> No File BHO-x32: Bing Bar Helper -> {d2ce3e00-f94a-4740-988e-03dc2f38c34f} -> C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.) Toolbar: HKLM-x32 - Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.) Toolbar: HKLM-x32 - Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll (CANON INC.) DPF: HKLM {AA570693-00E2-4907-B6F1-60A1199B030C} https://juniper.net/dana-cached/sc/JuniperSetupClient64.cab DPF: HKLM-x32 {F27237D7-93C8-44C2-AC6E-D6057B9A918F} https://juniper.net/dana-cached/sc/JuniperSetupClient.cab Handler: tmbp - {1A77E7DC-C9A0-4110-8A37-2F36BAE71ECF} - No File Handler: tmpx - {0E526CB5-7446-41D1-A403-19BFE95E8C23} - No File Handler-x32: tmbp - {1A77E7DC-C9A0-4110-8A37-2F36BAE71ECF} - No File Handler-x32: tmpx - {0E526CB5-7446-41D1-A403-19BFE95E8C23} - No File Tcpip\Parameters: [DhcpNameServer] 192.168.178.1 FireFox: ======== FF ProfilePath: C:\Users\Marie\AppData\Roaming\Mozilla\Firefox\Profiles\yxxug84n.default FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_14_0_0_145.dll () FF Plugin: @java.com/DTPlugin,version=11.11.2 -> C:\Program Files\Java\jre8\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=11.11.2 -> C:\Program Files\Java\jre8\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin: @microsoft.com/GENUINE -> disabled No File FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_14_0_0_145.dll () FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> F:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll () FF Plugin-x32: @cambridgesoft.com/Chem3D,version=12.0 -> F:\Program Files (x86)\CambridgeSoft\ChemOffice2010\Chem3D\npChem3DPlugin.dll (CambridgeSoft Corp.) FF Plugin-x32: @cambridgesoft.com/ChemDraw,version=12.0 -> F:\Program Files (x86)\CambridgeSoft\ChemOffice2010\ChemDraw\npcdp32.dll (CambridgeSoft Corp.) FF Plugin-x32: @java.com/JavaPlugin -> C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.) FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll No File FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Plugin HKCU: @citrixonline.com/appdetectorplugin -> C:\Users\Marie\AppData\Local\Citrix\Plugins\104\npappdetector.dll (Citrix Online) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\np-mswmp.dll (Microsoft Corporation) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nppdf32.dll (Adobe Systems Inc.) FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml FF Extension: Yahoo Community Smartbar - C:\Users\Marie\AppData\Roaming\Mozilla\Firefox\Profiles\yxxug84n.default\Extensions\{94383499-e278-b1bd-fbcf-96d6eaed3f7f} [2014-01-22] FF Extension: Adblock Plus Pop-up Addon - C:\Users\Marie\AppData\Roaming\Mozilla\Firefox\Profiles\yxxug84n.default\Extensions\adblockpopups@jessehakanen.net.xpi [2014-08-10] FF Extension: ScrapBook - C:\Users\Marie\AppData\Roaming\Mozilla\Firefox\Profiles\yxxug84n.default\Extensions\{53A03D43-5363-4669-8190-99061B2DEBA5}.xpi [2013-12-30] FF Extension: Adblock Plus - C:\Users\Marie\AppData\Roaming\Mozilla\Firefox\Profiles\yxxug84n.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2011-07-24] FF Extension: Adblock Edge - C:\Users\Marie\AppData\Roaming\Mozilla\Firefox\Profiles\yxxug84n.default\Extensions\{fe272bd1-5f76-4ea4-8501-a05d35d823fc}.xpi [2014-08-10] FF HKLM-x32\...\Firefox\Extensions: [{22C7F6C6-8D67-4534-92B5-529A0EC09405}] - C:\Program Files\Trend Micro\AMSP\Module\20004\1.5.1381\6.5.1234\firefoxextension FF HKLM-x32\...\Firefox\Extensions: [{8AA36F4F-6DC7-4c06-77AF-5035170634FE}] - C:\ProgramData\Swiss Academic Software\Citavi Picker\Firefox FF Extension: Citavi Picker - C:\ProgramData\Swiss Academic Software\Citavi Picker\Firefox [2014-07-16] FF HKCU\...\Firefox\Extensions: [{B64D9B05-48E1-4CEB-BF58-E0643994E900}] - C:\Program Files (x86)\Common Files\DVDVideoSoft\plugins\ff FF Extension: Download videos and MP3s from YouTube - C:\Program Files (x86)\Common Files\DVDVideoSoft\plugins\ff [2014-04-24] Chrome: ======= CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION ==================== Services (Whitelisted) ================= (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) R2 Atheros Bt&Wlan Coex Agent; C:\Program Files (x86)\Atheros\Ath_CoexAgent.exe [151552 2010-05-25] (Atheros) [File not signed] R2 AtherosSvc; C:\Program Files (x86)\Atheros\Bluetooth Suite\adminservice.exe [52896 2010-11-26] (Atheros Commnucations) [File not signed] R2 AVKProxy; C:\Program Files (x86)\Common Files\G Data\AVKProxy\AVKProxy.exe [1957840 2013-03-22] (G Data Software AG) R2 AVKService; C:\Program Files (x86)\G Data\AntiVirus\AVK\AVKService.exe [635344 2013-02-25] (G Data Software AG) R2 AVKWCtl; C:\Program Files (x86)\G Data\AntiVirus\AVK\AVKWCtlX64.exe [2556896 2013-04-24] (G Data Software AG) R3 GDScan; C:\Program Files (x86)\Common Files\G Data\GDScan\GDScan.exe [696808 2013-02-25] (G Data Software AG) R2 Polar Daemon; C:\Program Files (x86)\Polar\Daemon\polard.exe [419536 2012-12-12] () R2 TuneUp.UtilitiesSvc; C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesService64.exe [2103096 2013-12-18] (TuneUp Software) R2 VIAKaraokeService; C:\Windows\system32\viakaraokesrv.exe [27760 2011-05-09] (VIA Technologies, Inc.) ==================== Drivers (Whitelisted) ==================== (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) U5 AppMgmt; C:\Windows\system32\svchost.exe [27136 2009-07-14] (Microsoft Corporation) R0 assd; C:\Windows\System32\Drivers\assd.sys [27264 2010-04-28] (ASUS Corporation) R0 GDBehave; C:\Windows\System32\drivers\GDBehave.sys [60248 2013-06-09] (G Data Software AG) R1 GDMnIcpt; C:\Windows\system32\drivers\MiniIcpt.sys [130392 2013-06-09] (G Data Software AG) S3 GdNetMon; C:\Windows\system32\drivers\GdNetMon64.sys [31448 2011-07-26] (G Data Software AG) S3 GDPkIcpt; C:\Windows\system32\drivers\PktIcpt.sys [62808 2013-06-09] (G Data Software AG) R1 gdwfpcd; C:\Windows\System32\drivers\gdwfpcd64.sys [64856 2013-06-09] (G Data Software AG) R1 GRD; C:\Windows\system32\drivers\GRD.sys [107128 2013-06-15] (G Data Software) R1 HookCentre; C:\Windows\system32\drivers\HookCentre.sys [65368 2013-06-09] (G Data Software AG) R3 kbfiltr; C:\Windows\System32\DRIVERS\kbfiltr.sys [15416 2009-07-20] ( ) R3 TuneUpUtilitiesDrv; C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesDriver64.sys [14112 2013-08-21] (TuneUp Software) R2 TurboB; C:\Windows\System32\DRIVERS\TurboB.sys [13832 2010-04-17] () S3 catchme; \??\C:\ComboFix\catchme.sys [X] ==================== NetSvcs (Whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.) ==================== One Month Created Files and Folders ======== (If an entry is included in the fixlist, the file\folder will be moved.) 2014-09-09 01:18 - 2014-09-09 01:18 - 00001194 _____ () C:\Users\Marie\Desktop\JRT.txt 2014-09-09 01:06 - 2014-09-09 01:06 - 00000000 ____D () C:\Windows\ERUNT 2014-09-09 01:04 - 2014-09-09 01:04 - 01016261 _____ (Thisisu) C:\Users\Marie\Desktop\JRT.exe 2014-09-09 00:57 - 2014-09-09 00:59 - 00000000 ____D () C:\AdwCleaner 2014-09-09 00:56 - 2014-09-09 00:56 - 01370483 _____ () C:\Users\Marie\Downloads\adwcleaner_3.309.exe 2014-09-09 00:22 - 2014-09-09 00:53 - 00122584 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2014-09-09 00:22 - 2014-09-09 00:22 - 00001108 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2014-09-09 00:22 - 2014-09-09 00:22 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 2014-09-09 00:22 - 2014-09-09 00:22 - 00000000 ____D () C:\ProgramData\Malwarebytes 2014-09-09 00:22 - 2014-09-09 00:22 - 00000000 ____D () C:\Program Files (x86)\ Malwarebytes Anti-Malware 2014-09-09 00:22 - 2014-05-12 07:26 - 00091352 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys 2014-09-09 00:22 - 2014-05-12 07:26 - 00063704 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys 2014-09-09 00:22 - 2014-05-12 07:25 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys 2014-09-09 00:20 - 2014-09-09 00:21 - 17292760 _____ (Malwarebytes Corporation ) C:\Users\Marie\Downloads\mbam-setup-2.0.2.1012.exe 2014-09-08 18:08 - 2014-09-08 18:08 - 00023843 _____ () C:\ComboFix.txt 2014-09-08 10:07 - 2014-09-08 10:07 - 00000000 ____D () C:\Users\Marie\Desktop\2014_09_08 2014-09-08 09:57 - 2014-09-08 19:14 - 00000000 ____D () C:\Users\Marie\Desktop\Meine Bewerbung 2014-09-06 10:37 - 2014-09-08 18:08 - 00000000 ____D () C:\Qoobox 2014-09-06 10:37 - 2011-06-26 08:45 - 00256000 _____ () C:\Windows\PEV.exe 2014-09-06 10:37 - 2010-11-07 19:20 - 00208896 _____ () C:\Windows\MBR.exe 2014-09-06 10:37 - 2009-04-20 06:56 - 00060416 _____ (NirSoft) C:\Windows\NIRCMD.exe 2014-09-06 10:37 - 2000-08-31 02:00 - 00518144 _____ (SteelWerX) C:\Windows\SWREG.exe 2014-09-06 10:37 - 2000-08-31 02:00 - 00406528 _____ (SteelWerX) C:\Windows\SWSC.exe 2014-09-06 10:37 - 2000-08-31 02:00 - 00098816 _____ () C:\Windows\sed.exe 2014-09-06 10:37 - 2000-08-31 02:00 - 00080412 _____ () C:\Windows\grep.exe 2014-09-06 10:37 - 2000-08-31 02:00 - 00068096 _____ () C:\Windows\zip.exe 2014-09-06 10:36 - 2014-09-08 18:06 - 00000000 ____D () C:\Windows\erdnt 2014-09-06 10:32 - 2014-09-06 10:32 - 05576440 ____R (Swearware) C:\Users\Marie\Desktop\ComboFix.exe 2014-09-06 10:30 - 2014-09-06 10:30 - 00003262 _____ () C:\Windows\System32\Tasks\{37C5EF49-3FC1-45A5-BF83-9864C197E764} 2014-09-06 10:16 - 2014-09-09 00:19 - 00000000 ____D () C:\Users\Marie\Downloads\FRST-OlderVersion 2014-09-05 19:22 - 2014-09-05 19:25 - 00000000 ____D () C:\Users\Marie\Desktop\Arbeitsvertrag 2014-08-28 12:42 - 2014-08-23 04:07 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll 2014-08-28 12:42 - 2014-08-23 03:45 - 00311808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll 2014-08-28 12:42 - 2014-08-23 02:59 - 03163648 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2014-08-26 16:56 - 2014-08-26 16:56 - 00000000 ____D () C:\Users\Marie\AppData\Roaming\dvdcss 2014-08-26 12:00 - 2014-09-08 18:30 - 00000000 ____D () C:\Users\Marie\Desktop\VersicherungenArzt 2014-08-25 23:59 - 2014-08-27 11:39 - 00000000 ____D () C:\Users\Marie\AppData\Roaming\vlc 2014-08-25 23:58 - 2014-08-25 23:58 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN 2014-08-25 23:55 - 2014-08-25 23:55 - 01101648 _____ () C:\Users\Marie\Downloads\VLC media player 64 Bit - CHIP-Installer.exe 2014-08-18 23:56 - 2014-08-18 23:56 - 00000917 _____ () C:\Users\Marie\Desktop\Revo Uninstaller.lnk 2014-08-18 23:54 - 2014-08-18 23:54 - 02623656 _____ (VS Revo Group Ltd.) C:\Users\Marie\Downloads\revosetup95.exe 2014-08-17 20:12 - 2014-08-17 20:12 - 00000000 ____D () C:\Users\Marie\Desktop\Neues fürn iPod 2014-08-15 21:14 - 2014-09-08 17:46 - 00037491 _____ () C:\Users\Marie\Downloads\Addition.txt 2014-08-15 21:12 - 2014-09-09 01:20 - 00016720 _____ () C:\Users\Marie\Downloads\FRST.txt 2014-08-15 21:11 - 2014-09-09 01:19 - 00000000 ____D () C:\FRST 2014-08-15 21:09 - 2014-09-09 00:19 - 02105344 _____ (Farbar) C:\Users\Marie\Downloads\FRST64.exe 2014-08-13 19:19 - 2014-07-01 00:24 - 00008856 _____ (Microsoft Corporation) C:\Windows\system32\icardres.dll 2014-08-13 19:19 - 2014-07-01 00:14 - 00008856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardres.dll 2014-08-13 19:19 - 2014-06-06 08:16 - 00035480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TsWpfWrp.exe 2014-08-13 19:19 - 2014-06-06 08:12 - 00035480 _____ (Microsoft Corporation) C:\Windows\system32\TsWpfWrp.exe 2014-08-13 19:19 - 2014-03-09 23:48 - 01389208 _____ (Microsoft Corporation) C:\Windows\system32\icardagt.exe 2014-08-13 19:19 - 2014-03-09 23:48 - 00171160 _____ (Microsoft Corporation) C:\Windows\system32\infocardapi.dll 2014-08-13 19:19 - 2014-03-09 23:47 - 00619672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardagt.exe 2014-08-13 19:19 - 2014-03-09 23:47 - 00099480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\infocardapi.dll 2014-08-13 16:28 - 2014-07-09 04:03 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDYAK.DLL 2014-08-13 16:28 - 2014-07-09 04:03 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDTAT.DLL 2014-08-13 16:28 - 2014-07-09 04:03 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDRU1.DLL 2014-08-13 16:28 - 2014-07-09 04:03 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDBASH.DLL 2014-08-13 16:28 - 2014-07-09 04:03 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\KBDRU.DLL 2014-08-13 16:28 - 2014-07-09 03:31 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDYAK.DLL 2014-08-13 16:28 - 2014-07-09 03:31 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDTAT.DLL 2014-08-13 16:28 - 2014-07-09 03:31 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDRU1.DLL 2014-08-13 16:28 - 2014-07-09 03:31 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDRU.DLL 2014-08-13 16:28 - 2014-07-09 03:31 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDBASH.DLL 2014-08-13 16:28 - 2014-07-09 00:38 - 00419992 _____ () C:\Windows\system32\locale.nls 2014-08-13 16:28 - 2014-07-09 00:30 - 00419992 _____ () C:\Windows\SysWOW64\locale.nls 2014-08-13 16:27 - 2014-08-01 01:41 - 00348856 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2014-08-13 16:27 - 2014-08-01 01:16 - 00307384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2014-08-13 16:27 - 2014-07-25 16:52 - 23645696 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-08-13 16:27 - 2014-07-25 16:02 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-08-13 16:27 - 2014-07-25 16:01 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2014-08-13 16:27 - 2014-07-25 15:51 - 17524224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-08-13 16:27 - 2014-07-25 15:30 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2014-08-13 16:27 - 2014-07-25 15:28 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2014-08-13 16:27 - 2014-07-25 15:28 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2014-08-13 16:27 - 2014-07-25 15:25 - 02774528 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-08-13 16:27 - 2014-07-25 15:25 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2014-08-13 16:27 - 2014-07-25 15:11 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2014-08-13 16:27 - 2014-07-25 15:10 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2014-08-13 16:27 - 2014-07-25 15:04 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2014-08-13 16:27 - 2014-07-25 15:03 - 00598016 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2014-08-13 16:27 - 2014-07-25 15:00 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2014-08-13 16:27 - 2014-07-25 15:00 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2014-08-13 16:27 - 2014-07-25 14:59 - 00758272 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2014-08-13 16:27 - 2014-07-25 14:47 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2014-08-13 16:27 - 2014-07-25 14:40 - 00452096 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2014-08-13 16:27 - 2014-07-25 14:34 - 00455168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2014-08-13 16:27 - 2014-07-25 14:34 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2014-08-13 16:27 - 2014-07-25 14:33 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2014-08-13 16:27 - 2014-07-25 14:30 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2014-08-13 16:27 - 2014-07-25 14:28 - 05824512 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-08-13 16:27 - 2014-07-25 14:28 - 00072704 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2014-08-13 16:27 - 2014-07-25 14:21 - 02184704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2014-08-13 16:27 - 2014-07-25 14:19 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2014-08-13 16:27 - 2014-07-25 14:18 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2014-08-13 16:27 - 2014-07-25 14:17 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2014-08-13 16:27 - 2014-07-25 14:17 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2014-08-13 16:27 - 2014-07-25 14:12 - 00438784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2014-08-13 16:27 - 2014-07-25 14:10 - 00292864 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2014-08-13 16:27 - 2014-07-25 14:10 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2014-08-13 16:27 - 2014-07-25 14:08 - 00597504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2014-08-13 16:27 - 2014-07-25 14:06 - 04204032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2014-08-13 16:27 - 2014-07-25 13:52 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2014-08-13 16:27 - 2014-07-25 13:47 - 00631808 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-08-13 16:27 - 2014-07-25 13:43 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2014-08-13 16:27 - 2014-07-25 13:42 - 00692736 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2014-08-13 16:27 - 2014-07-25 13:39 - 02087936 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2014-08-13 16:27 - 2014-07-25 13:39 - 01249280 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2014-08-13 16:27 - 2014-07-25 13:36 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2014-08-13 16:27 - 2014-07-25 13:34 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2014-08-13 16:27 - 2014-07-25 13:29 - 00239616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2014-08-13 16:27 - 2014-07-25 13:23 - 13547008 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-08-13 16:27 - 2014-07-25 13:13 - 00526336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2014-08-13 16:27 - 2014-07-25 13:07 - 02001920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2014-08-13 16:27 - 2014-07-25 13:07 - 01068032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2014-08-13 16:27 - 2014-07-25 13:03 - 11772928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2014-08-13 16:27 - 2014-07-25 12:52 - 02266624 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-08-13 16:27 - 2014-07-25 12:26 - 01431040 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-08-13 16:27 - 2014-07-25 12:17 - 00846336 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2014-08-13 16:27 - 2014-07-25 12:09 - 00704512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2014-08-13 16:27 - 2014-07-25 12:05 - 01792512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2014-08-13 16:27 - 2014-07-25 12:00 - 01169920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2014-08-13 16:27 - 2014-07-16 05:23 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll 2014-08-13 16:27 - 2014-07-16 04:46 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll 2014-08-13 16:27 - 2014-06-25 04:05 - 14175744 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll 2014-08-13 16:27 - 2014-06-25 03:41 - 12874240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll 2014-08-13 16:27 - 2014-06-16 04:10 - 00985536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys 2014-08-13 16:27 - 2014-06-03 12:02 - 03241984 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll 2014-08-13 16:27 - 2014-06-03 12:02 - 01941504 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll 2014-08-13 16:27 - 2014-06-03 12:02 - 00504320 _____ (Microsoft Corporation) C:\Windows\system32\msihnd.dll 2014-08-13 16:27 - 2014-06-03 12:02 - 00112064 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe 2014-08-13 16:27 - 2014-06-03 11:29 - 02363392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll 2014-08-13 16:27 - 2014-06-03 11:29 - 01805824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll 2014-08-13 16:27 - 2014-06-03 11:29 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msihnd.dll 2014-08-13 16:26 - 2014-08-07 04:06 - 00529920 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll 2014-08-13 16:26 - 2014-08-07 04:01 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll 2014-08-13 16:26 - 2014-07-14 04:02 - 01216000 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll 2014-08-13 16:26 - 2014-07-14 03:40 - 00664064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll 2014-08-10 09:19 - 2013-12-18 11:01 - 00043320 _____ (TuneUp Software) C:\Windows\system32\uxtuneup.dll 2014-08-10 09:19 - 2013-12-18 11:01 - 00036152 _____ (TuneUp Software) C:\Windows\SysWOW64\uxtuneup.dll 2014-08-10 09:19 - 2013-12-18 11:01 - 00029496 _____ (TuneUp Software) C:\Windows\system32\authuitu.dll 2014-08-10 09:19 - 2013-12-18 11:01 - 00025400 _____ (TuneUp Software) C:\Windows\SysWOW64\authuitu.dll ==================== One Month Modified Files and Folders ======= (If an entry is included in the fixlist, the file\folder will be moved.) 2014-09-09 01:20 - 2014-08-15 21:12 - 00016720 _____ () C:\Users\Marie\Downloads\FRST.txt 2014-09-09 01:20 - 2014-03-24 17:47 - 00000562 _____ () C:\Windows\Tasks\G2MUpdateTask-S-1-5-21-2438974327-1903873085-1306138816-1001.job 2014-09-09 01:19 - 2014-08-15 21:11 - 00000000 ____D () C:\FRST 2014-09-09 01:18 - 2014-09-09 01:18 - 00001194 _____ () C:\Users\Marie\Desktop\JRT.txt 2014-09-09 01:09 - 2009-07-14 06:45 - 00018736 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2014-09-09 01:09 - 2009-07-14 06:45 - 00018736 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2014-09-09 01:06 - 2014-09-09 01:06 - 00000000 ____D () C:\Windows\ERUNT 2014-09-09 01:06 - 2011-06-24 00:21 - 01343365 _____ () C:\Windows\WindowsUpdate.log 2014-09-09 01:04 - 2014-09-09 01:04 - 01016261 _____ (Thisisu) C:\Users\Marie\Desktop\JRT.exe 2014-09-09 01:03 - 2012-08-18 19:30 - 00000000 ___RD () C:\Users\Marie\Dropbox 2014-09-09 01:02 - 2012-08-18 19:28 - 00000000 ____D () C:\Users\Marie\AppData\Roaming\Dropbox 2014-09-09 01:01 - 2011-10-30 10:36 - 00000326 _____ () C:\Windows\Tasks\GlaryInitialize.job 2014-09-09 01:01 - 2011-07-06 17:38 - 00045056 _____ () C:\Windows\system32\acovcnt.exe 2014-09-09 01:01 - 2009-07-14 07:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-09-09 01:01 - 2009-07-14 06:51 - 00195243 _____ () C:\Windows\setupact.log 2014-09-09 01:00 - 2011-04-13 03:39 - 01215650 _____ () C:\Windows\PFRO.log 2014-09-09 00:59 - 2014-09-09 00:57 - 00000000 ____D () C:\AdwCleaner 2014-09-09 00:56 - 2014-09-09 00:56 - 01370483 _____ () C:\Users\Marie\Downloads\adwcleaner_3.309.exe 2014-09-09 00:53 - 2014-09-09 00:22 - 00122584 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2014-09-09 00:53 - 2013-01-09 17:49 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-09-09 00:22 - 2014-09-09 00:22 - 00001108 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2014-09-09 00:22 - 2014-09-09 00:22 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 2014-09-09 00:22 - 2014-09-09 00:22 - 00000000 ____D () C:\ProgramData\Malwarebytes 2014-09-09 00:22 - 2014-09-09 00:22 - 00000000 ____D () C:\Program Files (x86)\ Malwarebytes Anti-Malware 2014-09-09 00:21 - 2014-09-09 00:20 - 17292760 _____ (Malwarebytes Corporation ) C:\Users\Marie\Downloads\mbam-setup-2.0.2.1012.exe 2014-09-09 00:19 - 2014-09-06 10:16 - 00000000 ____D () C:\Users\Marie\Downloads\FRST-OlderVersion 2014-09-09 00:19 - 2014-08-15 21:09 - 02105344 _____ (Farbar) C:\Users\Marie\Downloads\FRST64.exe 2014-09-09 00:18 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\NDF 2014-09-08 19:14 - 2014-09-08 09:57 - 00000000 ____D () C:\Users\Marie\Desktop\Meine Bewerbung 2014-09-08 18:30 - 2014-08-26 12:00 - 00000000 ____D () C:\Users\Marie\Desktop\VersicherungenArzt 2014-09-08 18:08 - 2014-09-08 18:08 - 00023843 _____ () C:\ComboFix.txt 2014-09-08 18:08 - 2014-09-06 10:37 - 00000000 ____D () C:\Qoobox 2014-09-08 18:08 - 2009-07-14 05:20 - 00000000 __RHD () C:\Users\Default 2014-09-08 18:06 - 2014-09-06 10:36 - 00000000 ____D () C:\Windows\erdnt 2014-09-08 18:04 - 2009-07-14 04:34 - 00000215 _____ () C:\Windows\system.ini 2014-09-08 17:46 - 2014-08-15 21:14 - 00037491 _____ () C:\Users\Marie\Downloads\Addition.txt 2014-09-08 12:33 - 2011-02-19 06:24 - 00710338 _____ () C:\Windows\system32\perfh007.dat 2014-09-08 12:33 - 2011-02-19 06:24 - 00152786 _____ () C:\Windows\system32\perfc007.dat 2014-09-08 12:33 - 2009-07-14 07:13 - 01649080 _____ () C:\Windows\system32\PerfStringBackup.INI 2014-09-08 10:07 - 2014-09-08 10:07 - 00000000 ____D () C:\Users\Marie\Desktop\2014_09_08 2014-09-07 19:52 - 2011-07-07 21:15 - 00000000 ____D () C:\Users\Marie\AppData\Roaming\Skype 2014-09-06 10:36 - 2012-01-23 23:48 - 00000000 ____D () C:\Users\Marie\AppData\Local\CrashDumps 2014-09-06 10:32 - 2014-09-06 10:32 - 05576440 ____R (Swearware) C:\Users\Marie\Desktop\ComboFix.exe 2014-09-06 10:30 - 2014-09-06 10:30 - 00003262 _____ () C:\Windows\System32\Tasks\{37C5EF49-3FC1-45A5-BF83-9864C197E764} 2014-09-05 19:25 - 2014-09-05 19:22 - 00000000 ____D () C:\Users\Marie\Desktop\Arbeitsvertrag 2014-09-05 16:25 - 2011-08-14 14:52 - 00000000 ____D () C:\Users\Marie\AppData\Local\Microsoft Games 2014-09-04 20:13 - 2014-05-20 17:39 - 00000000 ____D () C:\ProgramData\4899dd140d5f13cc 2014-09-02 13:34 - 2014-07-16 13:58 - 00000000 ____D () C:\Users\Marie\Desktop\Diss 2014-08-31 15:15 - 2009-07-14 07:08 - 00032632 _____ () C:\Windows\Tasks\SCHEDLGU.TXT 2014-08-29 08:24 - 2009-07-14 06:45 - 00429264 _____ () C:\Windows\system32\FNTCACHE.DAT 2014-08-27 11:39 - 2014-08-25 23:59 - 00000000 ____D () C:\Users\Marie\AppData\Roaming\vlc 2014-08-26 16:56 - 2014-08-26 16:56 - 00000000 ____D () C:\Users\Marie\AppData\Roaming\dvdcss 2014-08-26 13:28 - 2014-07-24 15:14 - 00000000 ____D () C:\Users\Marie\Polar WebSync 2014-08-26 11:02 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\rescache 2014-08-25 23:58 - 2014-08-25 23:58 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN 2014-08-25 23:55 - 2014-08-25 23:55 - 01101648 _____ () C:\Users\Marie\Downloads\VLC media player 64 Bit - CHIP-Installer.exe 2014-08-25 12:43 - 2014-03-24 17:47 - 00003588 _____ () C:\Windows\System32\Tasks\G2MUpdateTask-S-1-5-21-2438974327-1903873085-1306138816-1001 2014-08-23 04:07 - 2014-08-28 12:42 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll 2014-08-23 03:45 - 2014-08-28 12:42 - 00311808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll 2014-08-23 02:59 - 2014-08-28 12:42 - 03163648 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2014-08-18 23:56 - 2014-08-18 23:56 - 00000917 _____ () C:\Users\Marie\Desktop\Revo Uninstaller.lnk 2014-08-18 23:54 - 2014-08-18 23:54 - 02623656 _____ (VS Revo Group Ltd.) C:\Users\Marie\Downloads\revosetup95.exe 2014-08-17 20:12 - 2014-08-17 20:12 - 00000000 ____D () C:\Users\Marie\Desktop\Neues fürn iPod 2014-08-17 14:55 - 2014-01-02 01:23 - 00000000 ____D () C:\ProgramData\TuneUp Software 2014-08-15 09:53 - 2012-08-18 19:30 - 00001021 _____ () C:\Users\Marie\Desktop\Dropbox.lnk 2014-08-15 09:53 - 2012-08-18 19:28 - 00000000 ____D () C:\Users\Marie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox 2014-08-13 22:48 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\PolicyDefinitions 2014-08-13 19:40 - 2011-08-10 11:58 - 00000000 ____D () C:\ProgramData\Microsoft Help 2014-08-13 19:31 - 2013-08-15 15:45 - 00000000 ____D () C:\Windows\system32\MRT 2014-08-13 19:27 - 2011-08-12 14:49 - 99218768 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2014-08-13 19:18 - 2014-05-07 01:01 - 00000000 ___SD () C:\Windows\system32\CompatTel 2014-08-10 13:24 - 2011-08-10 11:58 - 00000000 ____D () C:\Users\Marie\AppData\Local\Microsoft Help 2014-08-10 09:18 - 2014-03-11 14:10 - 00000000 ____D () C:\Program Files (x86)\TuneUp Utilities 2014 Some content of TEMP: ==================== C:\Users\Marie\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpjdyu4r.dll C:\Users\Marie\AppData\Local\Temp\Quarantine.exe ==================== Bamital & volsnap Check ================= (There is no automatic fix for files that do not pass verification.) C:\Windows\System32\winlogon.exe => File is digitally signed C:\Windows\System32\wininit.exe => File is digitally signed C:\Windows\SysWOW64\wininit.exe => File is digitally signed C:\Windows\explorer.exe => File is digitally signed C:\Windows\SysWOW64\explorer.exe => File is digitally signed C:\Windows\System32\svchost.exe => File is digitally signed C:\Windows\SysWOW64\svchost.exe => File is digitally signed C:\Windows\System32\services.exe => File is digitally signed C:\Windows\System32\User32.dll => File is digitally signed C:\Windows\SysWOW64\User32.dll => File is digitally signed C:\Windows\System32\userinit.exe => File is digitally signed C:\Windows\SysWOW64\userinit.exe => File is digitally signed C:\Windows\System32\rpcss.dll => File is digitally signed C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed LastRegBack: 2014-08-26 10:35 ==================== End Of Log ============================ FRST Additions Logfile: Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 07-09-2014 01 Ran by Marie at 2014-09-09 01:21:25 Running from C:\Users\Marie\Downloads Boot Mode: Normal ========================================================== ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: G Data AntiVirus 2014 (Disabled - Up to date) {39B780B4-63C2-05B0-3B40-8F7A21E4F496} AS: G Data AntiVirus 2014 (Disabled - Up to date) {82D66150-45F8-0A3E-01F0-B4085A63BE2B} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) Update for Microsoft Office 2007 (KB2508958) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{0C5823AA-7B6F-44E1-8D5B-8FD1FF0E6438}) (Version: - Microsoft) 7-Zip 9.20 (x64 edition) (HKLM\...\{23170F69-40C1-2702-0920-000001000000}) (Version: 9.20.00.0 - Igor Pavlov) Adobe Flash Player 14 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 14.0.0.145 - Adobe Systems Incorporated) Adobe Reader XI (11.0.08) - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AB0000000001}) (Version: 11.0.08 - Adobe Systems Incorporated) Alcor Micro USB Card Reader (HKLM-x32\...\AmUStor) (Version: 1.2.0117.08443 - Alcor Micro Corp.) Alcor Micro USB Card Reader (x32 Version: 1.2.0117.08443 - Alcor Micro Corp.) Hidden Apple Application Support (HKLM-x32\...\{5D09C772-ECB3-442B-9CC6-B4341C78FDC2}) (Version: 2.3.4 - Apple Inc.) Apple Mobile Device Support (HKLM\...\{2F72F540-1F60-4266-9506-952B21D6640D}) (Version: 6.1.0.13 - Apple Inc.) Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.) ASUS AI Recovery (HKLM-x32\...\{38253529-D97D-4901-AE53-5CC9736D3A2E}) (Version: 1.0.13 - ASUS) ASUS FancyStart (HKLM-x32\...\{2B81872B-A054-48DA-BE3B-FA5C164C303A}) (Version: 1.0.8 - ASUSTeK Computer Inc.) ASUS LifeFrame3 (HKLM-x32\...\{1DBD1F12-ED93-49C0-A7CC-56CBDE488158}) (Version: 3.0.21 - ASUS) ASUS Power4Gear Hybrid (HKLM\...\{9B6239BF-4E85-4590-8D72-51E30DB1A9AA}) (Version: 1.1.42 - ASUS) ASUS Secure Delete (HKLM\...\{761C6783-D3BC-48AB-8E7C-61CE918A8436}) (Version: 1.00.0006 - ASUS) ASUS SmartLogon (HKLM-x32\...\{64452561-169F-4A36-A2FF-B5E118EC65F5}) (Version: 1.0.0009 - ASUS) ASUS Splendid Video Enhancement Technology (HKLM-x32\...\{0969AF05-4FF6-4C00-9406-43599238DE0D}) (Version: 1.02.0031 - ASUS) ASUS Virtual Camera (HKLM-x32\...\{EC8BD21F-0CA0-4BBF-97D9-4A52B30041A1}) (Version: 1.0.21 - asus) Atheros WLAN and Bluetooth Client Installation Program (HKLM-x32\...\{28006915-2739-4EBE-B5E8-49B25D32EB33}) (Version: 9.0 - Atheros) ATK Package (HKLM-x32\...\{AB5C933E-5C7D-4D30-B314-9C83A49B94BE}) (Version: 1.0.0007 - ASUS) Audacity 2.0.5 (HKLM-x32\...\Audacity_is1) (Version: 2.0.5 - Audacity Team) AVS Media Player 4.1.10.99 (HKLM-x32\...\AVS Media Player_is1) (Version: 4.1.10.99 - Online Media Technologies Ltd.) Bing Bar (HKLM-x32\...\{1E03DB52-D5CB-4338-A338-E526DD4D4DB1}) (Version: 7.0.610.0 - Microsoft Corporation) Bluetooth Win7 Suite (64) (HKLM\...\{230D1595-57DA-4933-8C4E-375797EBB7E1}) (Version: 7.2.0.45 - Atheros Communications) Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.) CambridgeSoft Activation Client (HKLM-x32\...\{E773E0B9-6ABE-4F9E-816C-56B2DD8613B9}) (Version: 12.0 - CambridgeSoft Corporation) CambridgeSoft ChemDraw Ultra 12.0 (HKLM-x32\...\{48DEAAF2-8276-4BBD-B7B6-91E454938476}) (Version: 12.0 - CambridgeSoft Corporation) Canon Easy-WebPrint EX (HKLM-x32\...\Easy-WebPrint EX) (Version: 1.3.5.0 - Canon Inc.) Canon iP4300 (HKLM\...\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_iP4300) (Version: - ) Canon MP Navigator EX 4.0 (HKLM-x32\...\MP Navigator EX 4.0) (Version: - ) Canon Setup Utility 2.3 (HKLM-x32\...\Canon Setup Utility 2.3) (Version: - ) Canon Solution Menu EX (HKLM-x32\...\CanonSolutionMenuEX) (Version: - ) CanoScan LiDE 110 Scanner Driver (HKLM\...\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_CNQ2414) (Version: - ) Citavi 4 (HKLM-x32\...\{CC0A85B2-734A-45B3-B678-05F6A6499AC7}) (Version: 4.3.0.15 - Swiss Academic Software) Citrix Online Launcher (HKLM-x32\...\{B025BA0B-64A6-46DE-9D64-32965C83CCA9}) (Version: 1.0.179 - Citrix) Control ActiveX de Windows Live Mesh para conexiones remotas (HKLM-x32\...\{04668DF2-D32F-4555-9C7E-35523DCD6544}) (Version: 15.4.5722.2 - Microsoft Corporation) Contrôle ActiveX Windows Live Mesh pour connexions à distance (HKLM-x32\...\{55D003F4-9599-44BF-BA9E-95D060730DD3}) (Version: 15.4.5722.2 - Microsoft Corporation) Controlo ActiveX do Windows Live Mesh para Ligações Remotas (HKLM-x32\...\{E54EEB5D-41ED-40FE-B4A8-8565DB81469B}) (Version: 15.4.5722.2 - Microsoft Corporation) CyberLink LabelPrint (HKLM-x32\...\InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243}) (Version: 2.5.1908 - CyberLink Corp.) CyberLink LabelPrint (x32 Version: 2.5.1908 - CyberLink Corp.) Hidden CyberLink Power2Go (HKLM-x32\...\InstallShield_{40BF1E83-20EB-11D8-97C5-0009C5020658}) (Version: 6.1.3602c - CyberLink Corp.) CyberLink Power2Go (x32 Version: 6.1.3602c - CyberLink Corp.) Hidden Dropbox (HKCU\...\Dropbox) (Version: 2.10.27 - Dropbox, Inc.) ETDWare PS/2-x64 7.0.5.16_WHQL (HKLM\...\Elantech) (Version: 7.0.5.16 - ELAN Microelectronics Corp.) Fast Boot (HKLM\...\{13F4A7F3-EABC-4261-AF6B-1317777F0755}) (Version: 1.0.8 - ASUS) Free PDF to Word Doc Converter v1.1 (HKLM-x32\...\Free PDF to Word Doc Converter_is1) (Version: 1.1 - www.hellopdf.com) Free YouTube to MP3 Converter version 3.12.32.327 (HKLM-x32\...\Free YouTube to MP3 Converter_is1) (Version: 3.12.32.327 - DVDVideoSoft Ltd.) G Data AntiVirus 2014 (HKLM-x32\...\{5F17164A-FE5F-48B4-916F-56C6C4470D32}) (Version: 24.0.2.3 - G Data Software AG) GetDiscountApp (HKLM-x32\...\{37476589-E48E-439E-A706-56189E2ED4C4}_is1) (Version: - GetDiscountApp) <==== ATTENTION GIMP 2.8.0 (HKLM\...\GIMP-2_is1) (Version: 2.8.0 - The GIMP Team) Glary Utilities 2.38.0.1288 (HKLM-x32\...\Glary Utilities_is1) (Version: 2.38.0.1288 - Glarysoft Ltd) GoToMeeting 6.4.0.1558 (HKCU\...\GoToMeeting) (Version: 6.4.0.1558 - CitrixOnline) Intel(R) Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1007 - Intel Corporation) Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 7.0.0.1144 - Intel Corporation) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 8.15.10.2291 - Intel Corporation) Intel(R) Turbo Boost Technology Monitor (HKLM\...\{39F4C6F9-618A-4E5B-8FB2-6BD661174E32}) (Version: 1.0.400.4 - Intel) iTunes (HKLM\...\{76FF0F03-B707-4332-B5D1-A56C8303514E}) (Version: 11.0.4.4 - Apple Inc.) Java 8 Update 11 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86418011FF}) (Version: 8.0.110 - Oracle Corporation) Java Auto Updater (x32 Version: 2.0.5.1 - Sun Microsystems, Inc.) Hidden Java(TM) 6 Update 29 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83216029FF}) (Version: 6.0.290 - Oracle) Juniper Networks Network Connect 7.0.0 (HKLM-x32\...\Juniper Network Connect 7.0.0) (Version: 7.0.0.17289 - Juniper Networks) Juniper Networks Network Connect 7.1.8 (HKLM-x32\...\Juniper Network Connect 7.1.8) (Version: 7.1.8.20737 - Juniper Networks) Juniper Networks Network Connect 7.2.0 (HKLM-x32\...\Juniper Network Connect 7.2.0) (Version: 7.2.0.21697 - Juniper Networks) Juniper Networks Network Connect 7.4.0 (HKLM-x32\...\Juniper Network Connect 7.4.0) (Version: 7.4.0.30667 - Juniper Networks) Juniper Networks Setup Client Activex Control (HKLM-x32\...\Juniper_Setup_Client Activex Control) (Version: 2.1.1.1 - Juniper Networks) Juniper Networks, Inc. Setup Client (HKCU\...\Juniper_Setup_Client) (Version: 7.4.9.45013 - Juniper Networks, Inc.) Juniper Networks, Inc. Setup Client 64-bit Activex Control (HKLM\...\Juniper_Setup_Client Activex Control) (Version: 2.1.1.1 - Juniper Networks, Inc.) Langenscheidt Vokabeltrainer 6.0 Spanisch (HKLM-x32\...\{249556BD-ABA8-4510-84A3-8B30B402B07C}) (Version: 6.0.0 - Langenscheidt) lingDIALOG (HKLM-x32\...\InstallShield_{071B843C-9A39-40B3-BB01-BBD6A8D2E1C5}) (Version: 3.0908 - WEVOSYS) lingDIALOG (x32 Version: 3.0908 - WEVOSYS) Hidden Malwarebytes Anti-Malware Version 2.0.2.1012 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.2.1012 - Malwarebytes Corporation) Microsoft .NET Framework 4 Client Profile (HKLM\...\Microsoft .NET Framework 4 Client Profile) (Version: 4.0.30319 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 (Version: 4.5.50938 - Microsoft Corporation) Hidden Microsoft Application Error Reporting (Version: 12.0.6015.5000 - Microsoft Corporation) Hidden Microsoft IntelliPoint 8.1 (HKLM\...\Microsoft IntelliPoint 8.1) (Version: 8.15.406.0 - Microsoft) Microsoft IntelliPoint 8.1 (Version: 8.15.406.0 - Microsoft) Hidden Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version: - Microsoft) Microsoft Office 2007 Service Pack 3 (SP3) (x32 Version: - Microsoft) Hidden Microsoft Office 2010 (HKLM-x32\...\{95140000-0070-0000-0000-0000000FF1CE}) (Version: 14.0.4763.1000 - Microsoft Corporation) Microsoft Office Access MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Enterprise 2007 (HKLM-x32\...\ENTERPRISE) (Version: 12.0.6612.1000 - Microsoft Corporation) Microsoft Office Enterprise 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Excel MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Groove MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office InfoPath MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Office 64-bit Components 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office OneNote MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Outlook MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office PowerPoint MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Proof (English) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Proof (French) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Proof (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Proof (Italian) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Proofing (German) 2007 (x32 Version: 12.0.4518.1014 - Microsoft Corporation) Hidden Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) (x32 Version: - Microsoft) Hidden Microsoft Office Publisher MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Shared 64-bit MUI (German) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Shared MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Word MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation) Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (HKLM-x32\...\{770657D0-A123-3C07-8E44-1C83EC895118}) (Version: 8.0.50727.4053 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (Version: 8.0.59192 - Microsoft Corporation) Hidden Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{09298F26-A95C-31E2-9D95-2C60F586F075}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319 (HKLM-x32\...\{196BB40D-1578-3D01-B289-BEFC77A11A1E}) (Version: 10.0.30319 - Microsoft Corporation) Mozilla Firefox 31.0 (x86 de) (HKLM-x32\...\Mozilla Firefox 31.0 (x86 de)) (Version: 31.0 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 29.0 - Mozilla) MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation) MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation) NVIDIA Control Panel 267.21 (Version: 267.21 - NVIDIA Corporation) Hidden NVIDIA Graphics Driver 267.21 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 267.21 - NVIDIA Corporation) NVIDIA Install Application (Version: 2.265.39.0 - NVIDIA Corporation) Hidden NVIDIA Optimus 1.0.21 (Version: 1.0.21 - NVIDIA Corporation) Hidden NVIDIA Update Components (Version: 1.0.21 - NVIDIA Corporation) Hidden Platform (x32 Version: 1.36 - VIA Technologies, Inc.) Hidden Polar Daemon (HKLM-x32\...\{2BA9320D-E061-4C71-ACCB-AC0E9D4FC82B}) (Version: 2.2.20000 - Polar Electro Oy) Polar WebSync (HKLM-x32\...\{320453EE-6AEA-4E1A-8E64-72F33C0C928F}) (Version: 2.8.10006 - Polar Electro Oy) QuickTime (HKLM-x32\...\{C9E14402-3631-4182-B377-6B0DFB1C0339}) (Version: 7.70.80.34 - Apple Inc.) Revo Uninstaller 1.95 (HKLM-x32\...\Revo Uninstaller) (Version: 1.95 - VS Revo Group) SceneSwitch (HKLM-x32\...\{5172E572-C175-4F80-A6D5-5CB45826AD61}) (Version: 1.0.6 - ASUS) SecureW2 Enterprise Client 3.5.10 MSI Installer (HKLM-x32\...\{495E2DF3-0950-442C-A2C4-2D7B4C6D6337}) (Version: 3.5.10 - SecureW2) Shared Add-in Support Update for Microsoft .NET Framework 2.0 (KB908002) (HKLM-x32\...\{64F3B15C-24C7-4B2B-9B72-65CCBBD7F06B}) (Version: 1.0.0 - Microsoft) Skype™ 6.18 (HKLM-x32\...\{7A3C7E05-EE37-47D6-99E1-2EB05A3DA3F7}) (Version: 6.18.106 - Skype Technologies S.A.) streamWriter (HKLM-x32\...\streamWriter_is1) (Version: - ) syncables desktop SE (HKLM-x32\...\{341697D8-9923-445E-B42A-529E5A99CB7A}) (Version: 5.5.746.11492 - syncables) TuneUp Utilities 2014 (de-DE) (x32 Version: 14.0.1000.221 - TuneUp Software) Hidden TuneUp Utilities 2014 (HKLM-x32\...\TuneUp Utilities) (Version: 14.0.1000.221 - TuneUp Software) TuneUp Utilities 2014 (x32 Version: 14.0.1000.221 - TuneUp Software) Hidden UnderCoverXP 1.23 (HKLM-x32\...\UnderCoverXP_is1) (Version: - Wicked & Wild Inc.) Update for 2007 Microsoft Office System (KB967642) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version: - Microsoft) Update for Microsoft Office 2007 suites (KB2596620) 32-Bit Edition (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{A024FC7B-77DE-45DE-A058-1C049A17BFB3}) (Version: - Microsoft) Update for Microsoft Office 2007 suites (KB2767849) 32-Bit Edition (HKLM-x32\...\{90120000-002A-0000-1000-0000000FF1CE}_ENTERPRISE_{CB68A5B0-3508-4193-AEB9-AF636DAECE0F}) (Version: - Microsoft) Update for Microsoft Office 2007 suites (KB2767849) 32-Bit Edition (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{CB68A5B0-3508-4193-AEB9-AF636DAECE0F}) (Version: - Microsoft) Update for Microsoft Office 2007 suites (KB2767916) 32-Bit Edition (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{E9A82945-BA29-4EE8-8F2A-2F49545E9CF2}) (Version: - Microsoft) Update for Microsoft Office Outlook 2007 (KB2687404) 32-Bit Edition (HKLM-x32\...\{90120000-001A-0407-0000-0000000FF1CE}_ENTERPRISE_{EA54F104-79D2-48CC-9ABC-91A63C43D353}) (Version: - Microsoft) Update for Microsoft Office Outlook 2007 (KB2863811) 32-Bit Edition (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{53DEC068-4690-4F6B-9946-7D21EF02236B}) (Version: - Microsoft) Update for Microsoft Office Outlook 2007 Junk Email Filter (KB2883097) 32-Bit Edition (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{B2260BC9-D561-46EE-B33D-739CF760A2A9}) (Version: - Microsoft) Update für Microsoft Office Excel 2007 Help (KB963678) (HKLM-x32\...\{90120000-0016-0407-0000-0000000FF1CE}_ENTERPRISE_{BEC163EC-7A83-48A1-BFB6-3BF47CC2F8CF}) (Version: - Microsoft) Update für Microsoft Office Outlook 2007 Help (KB963677) (HKLM-x32\...\{90120000-001A-0407-0000-0000000FF1CE}_ENTERPRISE_{F6828576-6F79-470D-AB50-69D1BBADBD30}) (Version: - Microsoft) Update für Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM-x32\...\{90120000-0018-0407-0000-0000000FF1CE}_ENTERPRISE_{EA160DA3-E9B5-4D03-A518-21D306665B96}) (Version: - Microsoft) Update für Microsoft Office Word 2007 Help (KB963665) (HKLM-x32\...\{90120000-001B-0407-0000-0000000FF1CE}_ENTERPRISE_{38472199-D7B6-4833-A949-10E4EE6365A1}) (Version: - Microsoft) VIA Platform Device Manager (HKLM-x32\...\InstallShield_{20D4A895-748C-4D88-871C-FDB1695B0169}) (Version: 1.36 - VIA Technologies, Inc.) VLC media player (HKLM\...\VLC media player) (Version: 2.1.5 - VideoLAN) Vokabeltrainer-Update 6.0.16 (HKLM-x32\...\{518F8DB2-65BA-40F7-B843-1F11F8F1B124}) (Version: 6.0.16 - Langenscheidt) Windows Live Mesh - ActiveX-besturingselement voor externe verbindingen (HKLM-x32\...\{C32CE55C-12BA-4951-8797-0967FDEF556F}) (Version: 15.4.5722.2 - Microsoft Corporation) Windows Live Mesh ActiveX Control for Remote Connections (HKLM-x32\...\{2902F983-B4C1-44BA-B85D-5C6D52E2C441}) (Version: 15.4.5722.2 - Microsoft Corporation) Windows Live Mesh ActiveX control for remote connections (HKLM-x32\...\{C5398A89-516C-4DAF-BA07-EE7949090E56}) (Version: 15.4.5722.2 - Microsoft Corporation) Windows Live Mesh ActiveX Control for Remote Connections (HKLM-x32\...\{C63A1E60-B6A4-440B-89A5-1FC6E4AC1C94}) (Version: 15.4.5722.2 - Microsoft Corporation) Windows Media Player Firefox Plugin (HKLM-x32\...\{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}) (Version: 1.0.0.8 - Microsoft Corp) WinFlash (HKLM-x32\...\{8F21291E-0444-4B1D-B9F9-4370A73E346D}) (Version: 2.31.0 - ASUS) Wireless Console 3 (HKLM-x32\...\{20FDF948-C8ED-4543-A539-F7F4AEF5AFA2}) (Version: 3.0.19 - ASUS) Στοιχείο ελέγχου ActiveX του Windows Live Mesh για απομακρυσμένες συνδέσεις (HKLM-x32\...\{F665F3B8-01B4-46A9-8E47-FF8DC2208C9F}) (Version: 15.4.5722.2 - Microsoft Corporation) Элемент управления Windows Live Mesh ActiveX для удаленных подключений (HKLM-x32\...\{BCB0D6F7-7EAB-4009-A6F2-8E0E7F317773}) (Version: 15.4.5722.2 - Microsoft Corporation) פקד ActiveX של Windows Live Mesh עבור חיבורים מרוחקים (HKLM-x32\...\{9D4C7DFA-CBBB-4F06-BDAC-94D831406DF0}) (Version: 15.4.5722.2 - Microsoft Corporation) عنصر تحكم ActiveX الخاص بـ Windows Live Mesh للاتصالات البعيدة (HKLM-x32\...\{E18B30AA-6E2D-480C-B918-AF61009F4010}) (Version: 15.4.5722.2 - Microsoft Corporation) 適用遠端連線的 Windows Live Mesh ActiveX 控制項 (HKLM-x32\...\{622DE1BE-9EDE-49D3-B349-29D64760342A}) (Version: 15.4.5722.2 - Microsoft Corporation) ==================== Custom CLSID (selected items): ========================== (If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.) CustomCLSID: HKU\S-1-5-21-2438974327-1903873085-1306138816-1001_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\Marie\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2438974327-1903873085-1306138816-1001_Classes\CLSID\{84B5A313-CD5D-4904-8BA2-AFDC81C1B309}\InprocServer32 -> C:\Users\Marie\AppData\Local\Citrix\GoToMeeting\1312\G2MOutlookAddin64.dll (Citrix Online, a division of Citrix Systems, Inc.) CustomCLSID: HKU\S-1-5-21-2438974327-1903873085-1306138816-1001_Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Marie\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2438974327-1903873085-1306138816-1001_Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Marie\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2438974327-1903873085-1306138816-1001_Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Marie\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2438974327-1903873085-1306138816-1001_Classes\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Marie\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2438974327-1903873085-1306138816-1001_Classes\CLSID\{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Marie\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2438974327-1903873085-1306138816-1001_Classes\CLSID\{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Marie\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2438974327-1903873085-1306138816-1001_Classes\CLSID\{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Marie\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2438974327-1903873085-1306138816-1001_Classes\CLSID\{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Marie\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.) ==================== Restore Points ========================= 26-08-2014 07:36:25 Windows Update 29-08-2014 06:05:28 Windows Update 02-09-2014 08:36:13 Windows Update 06-09-2014 08:19:37 Windows Update 08-09-2014 15:35:49 Revo Uninstaller's restore point - Optimizer Pro v3.2 08-09-2014 15:43:11 Revo Uninstaller's restore point - Yahoo Community Smartbar 08-09-2014 15:45:18 Revo Uninstaller's restore point - Yahoo Community Smartbar Engine ==================== Hosts content: ========================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2009-07-14 04:34 - 2014-09-08 18:04 - 00000027 ____A C:\Windows\system32\Drivers\etc\hosts 127.0.0.1 localhost ==================== Scheduled Tasks (whitelisted) ============= (If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.) Task: {1443C4E6-453A-4C98-839A-F99ECDF2B361} - System32\Tasks\{58C76C0D-5E79-41EE-A29B-508D280CD5DD} => C:\Program Files (x86)\Skype\\Phone\Skype.exe [2014-07-24] (Skype Technologies S.A.) Task: {2B373F3F-BC32-4A8C-B4A9-0CB3D51928E5} - System32\Tasks\ASUS Secure Delete => C:\Program Files\ASUS\ASUS Secure Delete\ADDEL.exe [2010-05-12] () Task: {2E88AF9C-EA47-4A05-B439-8FFC1D58C2D7} - System32\Tasks\Adobe-Online-Aktualisierungsprogramm => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-11-21] (Adobe Systems Incorporated) Task: {328AEB80-266F-421C-BEC4-48DCD6BEAFF3} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-07-14] (Adobe Systems Incorporated) Task: {32BCA0F4-73DA-431E-B6E7-B6116B02B309} - System32\Tasks\ASUS SmartLogon Console Sensor => C:\Program Files (x86)\ASUS\SmartLogon\sensorsrv.exe [2009-07-31] (ASUS) Task: {3B49F891-F24B-407F-9924-851742BB0402} - System32\Tasks\ATKOSD2 => C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe [2010-08-17] (ASUS) Task: {5F2183E8-E4B7-4EAE-BAF4-FB27BC8214F1} - System32\Tasks\TuneUpUtilities_Task_BkGndMaintenance2013 => C:\Program Files (x86)\TuneUp Utilities 2014\OneClick.exe [2013-12-18] (TuneUp Software) Task: {772F974C-AE79-4DF2-92DF-42F69F93A0E9} - System32\Tasks\ACMON => C:\Program Files (x86)\ASUS\Splendid\ACMON.exe [2010-08-02] (ASUS) Task: {89CED9AC-09E9-448A-A1AA-8DB463B02363} - System32\Tasks\G2MUpdateTask-S-1-5-21-2438974327-1903873085-1306138816-1001 => C:\Users\Marie\AppData\Local\Citrix\GoToMeeting\1558\g2mupdate.exe [2014-08-25] (Citrix Online, a division of Citrix Systems, Inc.) Task: {8C565B97-BE2A-48A6-8943-C0B2178426F1} - System32\Tasks\GlaryInitialize => C:\Program Files (x86)\Glary Utilities\initialize.exe [2011-10-01] (Glarysoft Ltd) Task: {C0F8EE7A-A6A8-43AE-AF51-EF369B98439A} - System32\Tasks\{14FFEAC5-FCA9-4371-B9E2-60939436285B} => Firefox.exe hxxp://ui.skype.com/ui/0/6.3.0.105/en/abandoninstall?page=tsProgressBar Task: {CA6BBC01-FCCB-4A9C-99B2-079015A90914} - System32\Tasks\Microsoft_Hardware_Launch_IPoint_exe => C:\Program Files\Microsoft IntelliPoint\IPoint.exe [2011-04-13] (Microsoft Corporation) Task: {FC23A56B-FA12-4D06-BAFD-BBAF76BF114C} - System32\Tasks\ASUS P4G => C:\Program Files\P4G\BatteryLife.exe [2010-11-11] (ASUS) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\G2MUpdateTask-S-1-5-21-2438974327-1903873085-1306138816-1001.job => C:\Users\Marie\AppData\Local\Citrix\GoToMeeting\1558\g2mupdate.exe Task: C:\Windows\Tasks\GlaryInitialize.job => C:\Program Files (x86)\Glary Utilities\initialize.exe ==================== Loaded Modules (whitelisted) ============= 2012-12-12 15:20 - 2012-12-12 15:20 - 00419536 _____ () C:\Program Files (x86)\Polar\Daemon\polard.exe 2013-12-18 11:01 - 2013-12-18 11:01 - 00742200 _____ () C:\Program Files (x86)\TuneUp Utilities 2014\avgrepliba.dll 2010-07-15 01:11 - 2010-07-15 01:11 - 00031360 _____ () C:\Program Files\P4G\DevMng.dll 2010-05-12 02:35 - 2010-05-12 02:35 - 00489392 _____ () C:\Program Files\ASUS\ASUS Secure Delete\ADDEL.exe 2010-04-03 04:21 - 2008-10-01 08:08 - 00011264 _____ () C:\Program Files (x86)\ASUS\Splendid\GLCDdll.dll 2011-05-20 09:17 - 2011-01-27 02:11 - 00094208 _____ () C:\Windows\System32\IccLibDll_x64.dll 2013-02-26 16:59 - 2013-02-26 16:59 - 06227512 _____ () F:\Program Files (x86)\Polar\WebSync\WebSync.exe 2010-09-24 01:53 - 2010-09-24 01:53 - 01601536 _____ () C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe 2011-06-24 22:56 - 2011-06-24 22:56 - 00087328 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll 2011-06-24 22:56 - 2011-06-24 22:56 - 01241888 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll 2012-12-12 15:20 - 2012-12-12 15:20 - 03483856 _____ () C:\Program Files (x86)\Polar\Daemon\libpolar.dll 2009-11-02 23:20 - 2009-11-02 23:20 - 00619816 ____N () C:\Program Files (x86)\CyberLink\Power2Go\CLMediaLibrary.dll 2009-11-02 23:23 - 2009-11-02 23:23 - 00013096 ____N () C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvcPS.dll 2013-02-26 16:59 - 2013-02-26 16:59 - 00110648 _____ () F:\Program Files (x86)\Polar\WebSync\PTransform.dll 2010-02-10 16:06 - 2010-02-10 16:06 - 00334848 _____ () F:\Program Files (x86)\Polar\WebSync\QtXml4.dll 2011-01-14 16:01 - 2011-01-14 16:01 - 02142720 _____ () F:\Program Files (x86)\Polar\WebSync\QtCore4.dll 2013-02-26 16:59 - 2013-02-26 16:59 - 03722296 _____ () F:\Program Files (x86)\Polar\WebSync\libpolar.dll 2010-02-10 16:22 - 2010-02-10 16:22 - 07971840 _____ () F:\Program Files (x86)\Polar\WebSync\QtGui4.dll 2010-02-10 16:07 - 2010-02-10 16:07 - 00929280 _____ () F:\Program Files (x86)\Polar\WebSync\QtNetwork4.dll 2010-02-10 18:45 - 2010-02-10 18:45 - 00025600 _____ () F:\Program Files (x86)\Polar\WebSync\imageformats\qgif4.dll 2010-02-10 18:45 - 2010-02-10 18:45 - 00119808 _____ () F:\Program Files (x86)\Polar\WebSync\imageformats\qjpeg4.dll 2014-09-09 01:02 - 2014-09-09 01:02 - 00043008 _____ () c:\users\marie\appdata\local\temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpjdyu4r.dll 2013-08-23 21:01 - 2013-08-23 21:01 - 25100288 _____ () C:\Users\Marie\AppData\Roaming\Dropbox\bin\libcef.dll ==================== Alternate Data Streams (whitelisted) ========= (If an entry is included in the fixlist, only the Alternate Data Streams will be removed.) ==================== Safe Mode (whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) ==================== EXE Association (whitelisted) ============= (If an entry is included in the fixlist, the default will be restored. None default entries will be removed.) ==================== MSCONFIG/TASK MANAGER disabled items ========= (Currently there is no automatic fix for this section.) MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^AsusVibeLauncher.lnk => C:\Windows\pss\AsusVibeLauncher.lnk.CommonStartup MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^FancyStart daemon.lnk => C:\Windows\pss\FancyStart daemon.lnk.CommonStartup MSCONFIG\startupreg: ASUS Screen Saver Protector => C:\Windows\AsScrPro.exe MSCONFIG\startupreg: ASUSWebStorage => C:\Program Files (x86)\ASUS\ASUS WebStorage\3.0.84.161\AsusWSPanel.exe /S MSCONFIG\startupreg: AthBtTray => "C:\Program Files (x86)\Atheros\Bluetooth Suite\AthBtTray.exe" MSCONFIG\startupreg: AtherosBtStack => "C:\Program Files (x86)\Atheros\Bluetooth Suite\BtvStack.exe" MSCONFIG\startupreg: CLMLServer => "C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe" MSCONFIG\startupreg: IntelliPoint => "C:\Program Files\Microsoft IntelliPoint\ipoint.exe" MSCONFIG\startupreg: Setwallpaper => c:\programdata\SetWallpaper.cmd MSCONFIG\startupreg: SunJavaUpdateSched => "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" MSCONFIG\startupreg: Trend Micro Titanium => C:\Program Files\Trend Micro\Titanium\VizorShortCut.exe -ReFlush "none" "none" MSCONFIG\startupreg: UpdateLBPShortCut => "C:\Program Files (x86)\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\LabelPrint" UpdateWithCreateOnce "Software\CyberLink\LabelPrint\2.5" MSCONFIG\startupreg: UpdateP2GoShortCut => "C:\Program Files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\Power2Go" UpdateWithCreateOnce "SOFTWARE\CyberLink\Power2Go\6.0" MSCONFIG\startupreg: VizorHtmlDialog.exe => "C:\Program Files\Trend Micro\Titanium\UIFramework\VizorHtmlDialog.exe" "DEF" "EULA" "C:\Program Files\Trend Micro\Titanium\UI\Installer.cmpt\resources\preinstall_01_welcome_trial.html" "DEF" "DEF" "DEF" ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== System errors: ============= Microsoft Office Sessions: ========================= CodeIntegrity Errors: =================================== Date: 2014-09-08 18:03:28.718 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\ComboFix\catchme.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2014-09-08 18:03:28.446 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\ComboFix\catchme.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. ==================== Memory info =========================== Processor: Intel(R) Core(TM) i5-2410M CPU @ 2.30GHz Percentage of memory in use: 34% Total physical RAM: 4008.16 MB Available physical RAM: 2624.07 MB Total Pagefile: 8014.5 MB Available Pagefile: 6099.68 MB Total Virtual: 8192 MB Available Virtual: 8191.85 MB ==================== Drives ================================ Drive c: (OS) (Fixed) (Total:186.3 GB) (Free:52.04 GB) NTFS ==>[System with boot components (obtained from reading drive)] Drive d: (DATA) (Fixed) (Total:156.8 GB) (Free:156.59 GB) NTFS Drive f: (Volume) (Fixed) (Total:97.66 GB) (Free:86.35 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: 343771F7) Partition 1: (Not Active) - (Size=25 GB) - (Type=1C) Partition 2: (Active) - (Size=186.3 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=254.5 GB) - (Type=OF Extended) ==================== End Of Log ============================ |
09.09.2014, 20:53 | #14 |
/// the machine /// TB-Ausbilder | Windows 7, trotz Werbeblocker seit geraumer Zeit Pop-Ups, Werbeanzeigen, blau unterlegt HyperlinksESET Online Scanner
Downloade Dir bitte SecurityCheck und:
und ein frisches FRST log bitte. Noch Probleme?
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
18.09.2014, 17:41 | #15 |
| Windows 7, trotz Werbeblocker seit geraumer Zeit Pop-Ups, Werbeanzeigen, blau unterlegt Hyperlinks So, Teil 1, der ESET Scan: ESETSmartInstaller@High as downloader log: all ok # product=EOS # version=8 # OnlineScannerApp.exe=1.0.0.1 # OnlineScanner.ocx=1.0.0.7623 # api_version=3.0.2 # EOSSerial=d0574065d75bd5429c0839bd5618baad # engine=20214 # end=finished # remove_checked=false # archives_checked=true # unwanted_checked=true # unsafe_checked=false # antistealth_checked=true # utc_time=2014-09-18 02:06:14 # local_time=2014-09-18 04:06:14 (+0100, Mitteleuropäische Sommerzeit) # country="Germany" # lang=1031 # osver=6.1.7601 NT Service Pack 1 # compatibility_mode_1='G Data AntiVirus 2014' # compatibility_mode=4105 16777213 100 100 153355 144289807 0 0 # compatibility_mode_1='' # compatibility_mode=5893 16776573 100 94 152751 162679024 0 0 # scanned=309535 # found=11 # cleaned=0 # scan_time=8129 sh=8992F72873D09212597E582A16F8D9BC60E6A22A ft=1 fh=e21391a34e842ffc vn="Win32/Toolbar.Conduit evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\Common Files\DVDVideoSoft\TB\ConduitInstaller.exe.vir" sh=D5017435EBAC9A0F374B939A0FAEE9A9C44294E1 ft=1 fh=c71c00111be602d2 vn="Variante von Win32/AdWare.MultiPlug.BN Anwendung" ac=I fn="C:\Qoobox\Quarantine\C\ProgramData\LucakyShiOpper\bC5.dll.vir" sh=FA128C5A0500EA7D2710C3A48D28CB483D3CFDF7 ft=1 fh=c71c001123b6085d vn="Variante von Win64/Adware.MultiPlug.D Anwendung" ac=I fn="C:\Qoobox\Quarantine\C\ProgramData\LucakyShiOpper\bC5.x64.dll.vir" sh=6B74D38F335697455EE4B6DDDE77049EE065265D ft=1 fh=c68029f9e5467117 vn="Variante von Win64/Adware.MultiPlug.E Anwendung" ac=I fn="C:\Qoobox\Quarantine\C\ProgramData\SALesChecKere\PDz4.x64.dll.vir" sh=FA85DB367546515697172741B51A75A0DE498575 ft=1 fh=a4ac0d07a953f3fb vn="Win32/Conduit.SearchProtect.K evtl. unerwünschte Anwendung" ac=I fn="C:\Users\Marie\Downloads\FreeYouTubeToMP3Converterneu.exe" sh=A2CC46430BA35014BB52EFC7AC8D62F084EDA962 ft=1 fh=c71c0011a30c7426 vn="Variante von Win32/InstallCore.D evtl. unerwünschte Anwendung" ac=I fn="C:\Users\Marie\Downloads\FreeYouTubeToMP3Converterneuneuneu.exe" sh=398650FCA7BC07266F4738BADBF362EB19FE26BD ft=1 fh=f274b0e1803f3a21 vn="Variante von Win32/DownloadSponsor.A evtl. unerwünschte Anwendung" ac=I fn="C:\Users\Marie\Downloads\Java Runtime Environment 64 Bit - CHIP-Installer.exe" sh=596D78A7F03D1DAEE86BCCE8DD7713AA60E8F9E4 ft=1 fh=8eaf1d336ac02ccc vn="Win32/Toolbar.Conduit evtl. unerwünschte Anwendung" ac=I fn="F:\Downloads\Anwendungen\FreeYouTubetoMP3Converter.exe" sh=3837DCC6FC0D2C7D2CD6765EE18175468E314815 ft=1 fh=404bf2cda126427a vn="Win32/Toolbar.Conduit evtl. unerwünschte Anwendung" ac=I fn="F:\Downloads\Anwendungen\FreeYouTubeToMP3Converter31126.exe" sh=3837DCC6FC0D2C7D2CD6765EE18175468E314815 ft=1 fh=404bf2cda126427a vn="Win32/Toolbar.Conduit evtl. unerwünschte Anwendung" ac=I fn="G:\Datensicherung\f\Downloads\Anwendungen\FreeYouTubeToMP3Converter31126.exe" sh=848BB4BF9A9A2743DC086BFB0CB9F0A11F0FDA06 ft=1 fh=8d13beaf1272030d vn="Variante von Win32/Toolbar.Conduit.B evtl. unerwünschte Anwendung" ac=I fn="G:\Marie\MedionLapTopDatensicherung20110707\g\Downloads\FreeYouTubeToMp3Converter37.exe" Uuuund hier der Rest: Checkup: Results of screen317's Security Check version 0.99.87 Windows 7 Service Pack 1 x64 (UAC is enabled) Internet Explorer 11 ``````````````Antivirus/Firewall Check:`````````````` G Data AntiVirus 2014 Antivirus up to date! `````````Anti-malware/Other Utilities Check:````````` TuneUp Utilities 2014 TuneUp Utilities 2014 (de-DE) TuneUp Utilities 2014 Java(TM) 6 Update 29 Java version out of Date! Adobe Flash Player 15.0.0.152 Adobe Reader XI Mozilla Firefox (32.0.1) ````````Process Check: objlist.exe by Laurent```````` G Data AntiVirus AVK AVKWCtlX64.exe G Data AntiVirus AVK AVKService.exe G Data AntiVirus AVKTray AVKTray.exe `````````````````System Health check````````````````` Total Fragmentation on Drive C: ````````````````````End of Log`````````````````````` FRST: FRST Logfile: FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 10-09-2014 (ATTENTION: ====> FRST version is 8 days old and could be outdated) Ran by Marie (administrator) on MARIE-PC on 18-09-2014 18:34:14 Running from C:\Users\Marie\Downloads Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: Deutsch (Deutschland) Internet Explorer Version 11 Boot Mode: Normal The only official download link for FRST: Download link for 32-Bit version: Downloading Farbar Recovery Scan Tool Download link for 64-Bit Version: Downloading Farbar Recovery Scan Tool Download link from any site other than Bleeping Computer is unpermitted or outdated. See tutorial for FRST: FRST Tutorial - How to use Farbar Recovery Scan Tool - Malware Removal Guides and Tutorials ==================== Processes (Whitelisted) ================= (If an entry is included in the fixlist, the process will be closed. The file will not be moved.) (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (G Data Software AG) C:\Program Files (x86)\Common Files\G Data\GDScan\GDScan.exe (G Data Software AG) C:\Program Files (x86)\G Data\AntiVirus\AVK\AVKWCtlx64.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\NvXDSync.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (ASUSTeK Computer Inc.) C:\Windows\System32\FBAgent.exe (ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe (ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Atheros) C:\Program Files (x86)\Atheros\Ath_CoexAgent.exe (Atheros Commnucations) C:\Program Files (x86)\Atheros\Bluetooth Suite\AdminService.exe (G Data Software AG) C:\Program Files (x86)\Common Files\G Data\AVKProxy\AVKProxy.exe (G Data Software AG) C:\Program Files (x86)\G Data\AntiVirus\AVK\AVKService.exe (Apple Computer, Inc.) F:\Applied Biosystems\StepOne Software v2.3\bonjour\mDNSResponder.exe (Juniper Networks) C:\Program Files (x86)\Juniper Networks\Common Files\dsNcService.exe () C:\Program Files (x86)\Polar\Daemon\polard.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE (TuneUp Software) C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesService64.exe (Intel(R) Corporation) C:\Program Files\Intel\TurboBoost\TurboBoost.exe (VIA Technologies, Inc.) C:\Windows\System32\ViakaraokeSrv.exe (ASUS) C:\Windows\AsScrPro.exe () C:\Program Files\ASUS\ASUS Secure Delete\ADDEL.exe (ASUS) C:\Program Files (x86)\ASUS\SmartLogon\sensorsrv.exe (CyberLink) C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe (ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe (ASUS) C:\Program Files (x86)\ASUS\Splendid\ACMON.exe (ASUS) C:\Program Files\P4G\BatteryLife.exe (ASUSTeK) C:\Windows\SysWOW64\ACEngSvr.exe (Intel Corporation) C:\Windows\System32\igfxtray.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (ELAN Microelectronic Corp.) C:\Program Files\Elantech\ETDCtrl.exe (Alcor Micro Corp.) C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe (TuneUp Software) C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesApp64.exe () F:\Program Files (x86)\Polar\WebSync\WebSync.exe (ELAN Microelectronic Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe (Dropbox, Inc.) C:\Users\Marie\AppData\Roaming\Dropbox\bin\Dropbox.exe (ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe (ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe () C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe (G Data Software AG) C:\Program Files (x86)\G Data\AntiVirus\AVKTray\AVKTray.exe (G Data Software AG) C:\Program Files (x86)\Common Files\G Data\AVKProxy\GdBgInx64.exe (Geek Software GmbH) F:\Program Files (x86)\PDF24\pdf24.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (G Data Software AG) C:\Program Files (x86)\Common Files\G Data\AVKProxy\AvkBap64.exe ==================== Registry (Whitelisted) ================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Run: [ETDWare] => C:\Program Files\Elantech\ETDCtrl.exe [649608 2010-06-10] (ELAN Microelectronic Corp.) HKLM\...\Run: [AmIcoSinglun64] => C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe [361984 2011-03-21] (Alcor Micro Corp.) HKLM\...\Run: [IntelTBRunOnce] => wscript.exe //b //nologo "C:\Program Files\Intel\TurboBoost\RunTBGadgetOnce.vbs" HKLM-x32\...\Run: [ASUSPRP] => C:\Program Files (x86)\ASUS\APRP\APRP.EXE [2018032 2011-04-13] (ASUSTek Computer Inc.) HKLM-x32\...\Run: [ATKMEDIA] => C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe [170624 2010-10-07] (ASUS) HKLM-x32\...\Run: [HControlUser] => C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe [105016 2009-06-19] (ASUS) HKLM-x32\...\Run: [Wireless Console 3] => C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe [1601536 2010-09-24] () HKLM-x32\...\Run: [G Data AntiVirus Tray Application] => C:\Program Files (x86)\G Data\AntiVirus\AVKTray\AVKTray.exe [1444304 2013-03-22] (G Data Software AG) HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [59720 2013-04-21] (Apple Inc.) HKLM-x32\...\Run: [G Data AntiVirus Tray] => C:\Program Files (x86)\G Data\AntiVirus\AVKTray\AVKTray.exe [1444304 2013-03-22] (G Data Software AG) HKLM-x32\...\Run: [PDFPrint] => F:\Program Files (x86)\PDF24\pdf24.exe [191528 2014-07-04] (Geek Software GmbH) Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation) AppInit_DLLs: C:\Windows\System32\nvinitx.dll => C:\Windows\System32\nvinitx.dll [226920 2011-02-21] (NVIDIA Corporation) AppInit_DLLs-x32: c:\Windows\SysWOW64\nvinit.dll => c:\Windows\SysWOW64\nvinit.dll [192616 2011-02-21] (NVIDIA Corporation) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Polar WebSync.lnk ShortcutTarget: Polar WebSync.lnk -> F:\Program Files (x86)\Polar\WebSync\WebSync.exe () Startup: C:\Users\Marie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk ShortcutTarget: Dropbox.lnk -> C:\Users\Marie\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) ==================== Internet (Whitelisted) ==================== (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.) HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = Google HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe BHO: TmIEPlugInBHO Class -> {1CA1377B-DC1D-4A52-9585-6E06050FAC53} -> No File BHO: Citavi Picker -> {609D670F-B735-4da7-AC6D-F3BD358E325E} -> C:\Windows\system32\mscoree.dll (Microsoft Corporation) BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre8\bin\ssv.dll (Oracle Corporation) BHO: No Name -> {AF5E38B6-27DD-C31B-91A9-13FFB0F4560B} -> No File BHO: TmBpIeBHO Class -> {BBACBAFD-FA5E-4079-8B33-00EB9F13D4AC} -> No File BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre8\bin\jp2ssv.dll (Oracle Corporation) BHO-x32: Canon Easy-WebPrint EX BHO -> {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} -> C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll (CANON INC.) BHO-x32: Citavi Picker -> {609D670F-B735-4da7-AC6D-F3BD358E325E} -> C:\Windows\SysWOW64\mscoree.dll (Microsoft Corporation) BHO-x32: No Name -> {6A774765-17D1-DB92-4485-242B7EDD0325} -> No File BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation) BHO-x32: CIESpeechBHO Class -> {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} -> C:\Program Files (x86)\Atheros\Bluetooth Suite\IEPlugIn.dll (Atheros Commnucations) BHO-x32: Google Dictionary Compression sdch -> {C84D72FE-E17D-4195-BB24-76C02E2E7C4E} -> No File BHO-x32: Bing Bar Helper -> {d2ce3e00-f94a-4740-988e-03dc2f38c34f} -> C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.) Toolbar: HKLM-x32 - Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.) Toolbar: HKLM-x32 - Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll (CANON INC.) DPF: HKLM {AA570693-00E2-4907-B6F1-60A1199B030C} https://juniper.net/dana-cached/sc/JuniperSetupClient64.cab DPF: HKLM-x32 {F27237D7-93C8-44C2-AC6E-D6057B9A918F} https://juniper.net/dana-cached/sc/JuniperSetupClient.cab Handler: tmbp - {1A77E7DC-C9A0-4110-8A37-2F36BAE71ECF} - No File Handler: tmpx - {0E526CB5-7446-41D1-A403-19BFE95E8C23} - No File Handler-x32: tmbp - {1A77E7DC-C9A0-4110-8A37-2F36BAE71ECF} - No File Handler-x32: tmpx - {0E526CB5-7446-41D1-A403-19BFE95E8C23} - No File Winsock: Catalog5 08 F:\Applied Biosystems\StepOne Software v2.3\bonjour\mdnsNSP.dll [94208] (Apple Computer, Inc.) Tcpip\Parameters: [DhcpNameServer] 192.168.178.1 FireFox: ======== FF ProfilePath: C:\Users\Marie\AppData\Roaming\Mozilla\Firefox\Profiles\yxxug84n.default FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_15_0_0_152.dll () FF Plugin: @java.com/DTPlugin,version=11.11.2 -> C:\Program Files\Java\jre8\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=11.11.2 -> C:\Program Files\Java\jre8\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin: @microsoft.com/GENUINE -> disabled No File FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_152.dll () FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> F:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll () FF Plugin-x32: @cambridgesoft.com/Chem3D,version=12.0 -> F:\Program Files (x86)\CambridgeSoft\ChemOffice2010\Chem3D\npChem3DPlugin.dll (CambridgeSoft Corp.) FF Plugin-x32: @cambridgesoft.com/ChemDraw,version=12.0 -> F:\Program Files (x86)\CambridgeSoft\ChemOffice2010\ChemDraw\npcdp32.dll (CambridgeSoft Corp.) FF Plugin-x32: @java.com/JavaPlugin -> C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.) FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll No File FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Plugin HKCU: @citrixonline.com/appdetectorplugin -> C:\Users\Marie\AppData\Local\Citrix\Plugins\104\npappdetector.dll (Citrix Online) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\np-mswmp.dll (Microsoft Corporation) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nppdf32.dll (Adobe Systems Inc.) FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml FF Extension: Yahoo Community Smartbar - C:\Users\Marie\AppData\Roaming\Mozilla\Firefox\Profiles\yxxug84n.default\Extensions\{94383499-e278-b1bd-fbcf-96d6eaed3f7f} [2014-01-22] FF Extension: Adblock Plus Pop-up Addon - C:\Users\Marie\AppData\Roaming\Mozilla\Firefox\Profiles\yxxug84n.default\Extensions\adblockpopups@jessehakanen.net.xpi [2014-08-10] FF Extension: ScrapBook - C:\Users\Marie\AppData\Roaming\Mozilla\Firefox\Profiles\yxxug84n.default\Extensions\{53A03D43-5363-4669-8190-99061B2DEBA5}.xpi [2013-12-30] FF Extension: Adblock Plus - C:\Users\Marie\AppData\Roaming\Mozilla\Firefox\Profiles\yxxug84n.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2011-07-24] FF Extension: Adblock Edge - C:\Users\Marie\AppData\Roaming\Mozilla\Firefox\Profiles\yxxug84n.default\Extensions\{fe272bd1-5f76-4ea4-8501-a05d35d823fc}.xpi [2014-08-10] FF HKLM-x32\...\Firefox\Extensions: [{22C7F6C6-8D67-4534-92B5-529A0EC09405}] - C:\Program Files\Trend Micro\AMSP\Module\20004\1.5.1381\6.5.1234\firefoxextension FF HKLM-x32\...\Firefox\Extensions: [{8AA36F4F-6DC7-4c06-77AF-5035170634FE}] - C:\ProgramData\Swiss Academic Software\Citavi Picker\Firefox FF Extension: Citavi Picker - C:\ProgramData\Swiss Academic Software\Citavi Picker\Firefox [2014-07-16] FF HKCU\...\Firefox\Extensions: [{B64D9B05-48E1-4CEB-BF58-E0643994E900}] - C:\Program Files (x86)\Common Files\DVDVideoSoft\plugins\ff FF Extension: Download videos and MP3s from YouTube - C:\Program Files (x86)\Common Files\DVDVideoSoft\plugins\ff [2014-04-24] Chrome: ======= CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION ==================== Services (Whitelisted) ================= (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) R2 Atheros Bt&Wlan Coex Agent; C:\Program Files (x86)\Atheros\Ath_CoexAgent.exe [151552 2010-05-25] (Atheros) [File not signed] R2 AtherosSvc; C:\Program Files (x86)\Atheros\Bluetooth Suite\adminservice.exe [52896 2010-11-26] (Atheros Commnucations) [File not signed] R2 AVKProxy; C:\Program Files (x86)\Common Files\G Data\AVKProxy\AVKProxy.exe [1957840 2013-03-22] (G Data Software AG) R2 AVKService; C:\Program Files (x86)\G Data\AntiVirus\AVK\AVKService.exe [635344 2013-02-25] (G Data Software AG) R2 AVKWCtl; C:\Program Files (x86)\G Data\AntiVirus\AVK\AVKWCtlX64.exe [2556896 2013-04-24] (G Data Software AG) R2 Bonjour Service; F:\Applied Biosystems\StepOne Software v2.3\bonjour\mDNSResponder.exe [229376 2006-02-28] (Apple Computer, Inc.) [File not signed] R3 GDScan; C:\Program Files (x86)\Common Files\G Data\GDScan\GDScan.exe [696808 2013-02-25] (G Data Software AG) R2 Polar Daemon; C:\Program Files (x86)\Polar\Daemon\polard.exe [419536 2012-12-12] () R2 TuneUp.UtilitiesSvc; C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesService64.exe [2103096 2013-12-18] (TuneUp Software) R2 VIAKaraokeService; C:\Windows\system32\viakaraokesrv.exe [27760 2011-05-09] (VIA Technologies, Inc.) ==================== Drivers (Whitelisted) ==================== (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) U5 AppMgmt; C:\Windows\system32\svchost.exe [27136 2009-07-14] (Microsoft Corporation) R0 assd; C:\Windows\System32\Drivers\assd.sys [27264 2010-04-28] (ASUS Corporation) R0 GDBehave; C:\Windows\System32\drivers\GDBehave.sys [60248 2013-06-09] (G Data Software AG) R1 GDMnIcpt; C:\Windows\system32\drivers\MiniIcpt.sys [130392 2013-06-09] (G Data Software AG) S3 GdNetMon; C:\Windows\system32\drivers\GdNetMon64.sys [31448 2011-07-26] (G Data Software AG) R3 GDPkIcpt; C:\Windows\system32\drivers\PktIcpt.sys [62808 2013-06-09] (G Data Software AG) R1 gdwfpcd; C:\Windows\System32\drivers\gdwfpcd64.sys [64856 2013-06-09] (G Data Software AG) R1 GRD; C:\Windows\system32\drivers\GRD.sys [107128 2013-06-15] (G Data Software) R1 HookCentre; C:\Windows\system32\drivers\HookCentre.sys [65368 2013-06-09] (G Data Software AG) R3 kbfiltr; C:\Windows\System32\DRIVERS\kbfiltr.sys [15416 2009-07-20] ( ) R3 TuneUpUtilitiesDrv; C:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesDriver64.sys [14112 2013-08-21] (TuneUp Software) R2 TurboB; C:\Windows\System32\DRIVERS\TurboB.sys [13832 2010-04-17] () S3 catchme; \??\C:\ComboFix\catchme.sys [X] ==================== NetSvcs (Whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.) ==================== One Month Created Files and Folders ======== (If an entry is included in the fixlist, the file\folder will be moved.) 2014-09-18 18:27 - 2014-09-10 09:04 - 00854417 _____ () C:\Users\Marie\Desktop\SecurityCheck.exe 2014-09-13 13:28 - 2014-09-13 13:28 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-09-13 02:32 - 2014-08-19 20:05 - 00374968 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2014-09-13 02:32 - 2014-08-19 19:39 - 00327872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2014-09-13 02:32 - 2014-08-19 01:01 - 23591424 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-09-13 02:32 - 2014-08-19 00:29 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-09-13 02:32 - 2014-08-19 00:29 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2014-09-13 02:32 - 2014-08-19 00:20 - 02793984 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-09-13 02:32 - 2014-08-19 00:15 - 00547328 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2014-09-13 02:32 - 2014-08-19 00:15 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2014-09-13 02:32 - 2014-08-19 00:14 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2014-09-13 02:32 - 2014-08-19 00:14 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2014-09-13 02:32 - 2014-08-19 00:08 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2014-09-13 02:32 - 2014-08-19 00:08 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2014-09-13 02:32 - 2014-08-19 00:05 - 00596480 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2014-09-13 02:32 - 2014-08-19 00:03 - 00758272 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2014-09-13 02:32 - 2014-08-19 00:03 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2014-09-13 02:32 - 2014-08-19 00:03 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2014-09-13 02:32 - 2014-08-18 23:57 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2014-09-13 02:32 - 2014-08-18 23:56 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2014-09-13 02:32 - 2014-08-18 23:51 - 00446464 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2014-09-13 02:32 - 2014-08-18 23:46 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2014-09-13 02:32 - 2014-08-18 23:45 - 00072704 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2014-09-13 02:32 - 2014-08-18 23:45 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2014-09-13 02:32 - 2014-08-18 23:44 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2014-09-13 02:32 - 2014-08-18 23:44 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2014-09-13 02:32 - 2014-08-18 23:42 - 02185728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2014-09-13 02:32 - 2014-08-18 23:40 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2014-09-13 02:32 - 2014-08-18 23:39 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2014-09-13 02:32 - 2014-08-18 23:39 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2014-09-13 02:32 - 2014-08-18 23:39 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2014-09-13 02:32 - 2014-08-18 23:38 - 00289280 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2014-09-13 02:32 - 2014-08-18 23:37 - 00440320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2014-09-13 02:32 - 2014-08-18 23:36 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2014-09-13 02:32 - 2014-08-18 23:35 - 00597504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2014-09-13 02:32 - 2014-08-18 23:27 - 00365056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2014-09-13 02:32 - 2014-08-18 23:25 - 00727040 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-09-13 02:32 - 2014-08-18 23:25 - 00707072 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2014-09-13 02:32 - 2014-08-18 23:23 - 01249280 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2014-09-13 02:32 - 2014-08-18 23:22 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2014-09-13 02:32 - 2014-08-18 23:19 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2014-09-13 02:32 - 2014-08-18 23:17 - 00243200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2014-09-13 02:32 - 2014-08-18 23:17 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2014-09-13 02:32 - 2014-08-18 23:15 - 02310656 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-09-13 02:32 - 2014-08-18 23:09 - 00603136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2014-09-13 02:32 - 2014-08-18 23:07 - 01068032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2014-09-13 02:32 - 2014-08-18 22:38 - 00775168 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2014-09-13 02:32 - 2014-08-18 22:36 - 00678400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2014-09-13 02:31 - 2014-08-19 00:26 - 17455104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-09-13 02:31 - 2014-08-19 00:19 - 05833728 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-09-13 02:31 - 2014-08-19 00:08 - 04232704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2014-09-13 02:31 - 2014-08-18 23:23 - 02104832 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2014-09-13 02:31 - 2014-08-18 23:16 - 13588480 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-09-13 02:31 - 2014-08-18 23:15 - 11769856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2014-09-13 02:31 - 2014-08-18 23:08 - 02014208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2014-09-13 02:31 - 2014-08-18 22:55 - 01447424 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-09-13 02:31 - 2014-08-18 22:46 - 01812992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2014-09-13 02:31 - 2014-08-18 22:38 - 01190400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2014-09-13 02:23 - 2014-06-27 04:08 - 02777088 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll 2014-09-13 02:23 - 2014-06-27 03:45 - 02285056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll 2014-09-11 10:53 - 2014-09-11 10:53 - 00001867 _____ () C:\Users\Public\Desktop\StepOne Software v2.3.lnk 2014-09-11 10:53 - 2014-09-11 10:53 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Applied Biosystems 2014-09-11 10:36 - 2014-09-11 10:41 - 202434268 _____ () C:\Users\Marie\Downloads\SOP23_4482515.zip 2014-09-11 10:22 - 2014-09-05 04:10 - 00578048 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll 2014-09-11 10:22 - 2014-09-05 04:05 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll 2014-09-11 10:22 - 2014-08-01 13:53 - 01031168 _____ (Microsoft Corporation) C:\Windows\system32\TSWorkspace.dll 2014-09-11 10:22 - 2014-08-01 13:35 - 00793600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSWorkspace.dll 2014-09-11 10:22 - 2014-07-07 04:06 - 01460736 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2014-09-11 10:22 - 2014-07-07 04:06 - 00728064 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll 2014-09-11 10:22 - 2014-07-07 03:40 - 00550912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll 2014-09-11 10:22 - 2014-07-07 03:40 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll 2014-09-11 10:22 - 2014-07-07 03:39 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll 2014-09-11 10:22 - 2014-06-24 05:29 - 02565120 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll 2014-09-11 10:22 - 2014-06-24 04:59 - 01987584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll 2014-09-10 12:53 - 2014-09-10 12:53 - 17903792 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerInstaller.exe 2014-09-10 09:04 - 2014-09-10 09:04 - 02347384 _____ (ESET) C:\Users\Marie\Downloads\esetsmartinstaller_deu.exe 2014-09-10 09:04 - 2014-09-10 09:04 - 00854417 _____ () C:\Users\Marie\Downloads\SecurityCheck.exe 2014-09-09 13:50 - 2014-09-09 13:50 - 00000000 ____D () C:\Users\Marie\AppData\Local\PDF24 2014-09-09 13:49 - 2014-09-09 13:49 - 00000792 _____ () C:\Users\Public\Desktop\PDF24 Creator.lnk 2014-09-09 13:49 - 2014-09-09 13:49 - 00000780 _____ () C:\Users\Public\Desktop\PDF24 Fax.lnk 2014-09-09 13:49 - 2014-09-09 13:49 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDF24 2014-09-09 13:37 - 2014-09-09 13:37 - 01101648 _____ () C:\Users\Marie\Downloads\PDF24 Creator - CHIP-Installer.exe 2014-09-09 01:18 - 2014-09-09 01:18 - 00001194 _____ () C:\Users\Marie\Desktop\JRT.txt 2014-09-09 01:06 - 2014-09-09 01:06 - 00000000 ____D () C:\Windows\ERUNT 2014-09-09 01:04 - 2014-09-09 01:04 - 01016261 _____ (Thisisu) C:\Users\Marie\Desktop\JRT.exe 2014-09-09 00:57 - 2014-09-09 00:59 - 00000000 ____D () C:\AdwCleaner 2014-09-09 00:56 - 2014-09-09 00:56 - 01370483 _____ () C:\Users\Marie\Downloads\adwcleaner_3.309.exe 2014-09-09 00:22 - 2014-09-09 00:53 - 00122584 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2014-09-09 00:22 - 2014-09-09 00:22 - 00001108 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2014-09-09 00:22 - 2014-09-09 00:22 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 2014-09-09 00:22 - 2014-09-09 00:22 - 00000000 ____D () C:\ProgramData\Malwarebytes 2014-09-09 00:22 - 2014-09-09 00:22 - 00000000 ____D () C:\Program Files (x86)\ Malwarebytes Anti-Malware 2014-09-09 00:22 - 2014-05-12 07:26 - 00091352 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys 2014-09-09 00:22 - 2014-05-12 07:26 - 00063704 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys 2014-09-09 00:22 - 2014-05-12 07:25 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys 2014-09-09 00:20 - 2014-09-09 00:21 - 17292760 _____ (Malwarebytes Corporation ) C:\Users\Marie\Downloads\mbam-setup-2.0.2.1012.exe 2014-09-08 18:08 - 2014-09-08 18:08 - 00023843 _____ () C:\ComboFix.txt 2014-09-06 10:37 - 2014-09-08 18:08 - 00000000 ____D () C:\Qoobox 2014-09-06 10:37 - 2011-06-26 08:45 - 00256000 _____ () C:\Windows\PEV.exe 2014-09-06 10:37 - 2010-11-07 19:20 - 00208896 _____ () C:\Windows\MBR.exe 2014-09-06 10:37 - 2009-04-20 06:56 - 00060416 _____ (NirSoft) C:\Windows\NIRCMD.exe 2014-09-06 10:37 - 2000-08-31 02:00 - 00518144 _____ (SteelWerX) C:\Windows\SWREG.exe 2014-09-06 10:37 - 2000-08-31 02:00 - 00406528 _____ (SteelWerX) C:\Windows\SWSC.exe 2014-09-06 10:37 - 2000-08-31 02:00 - 00098816 _____ () C:\Windows\sed.exe 2014-09-06 10:37 - 2000-08-31 02:00 - 00080412 _____ () C:\Windows\grep.exe 2014-09-06 10:37 - 2000-08-31 02:00 - 00068096 _____ () C:\Windows\zip.exe 2014-09-06 10:36 - 2014-09-08 18:06 - 00000000 ____D () C:\Windows\erdnt 2014-09-06 10:32 - 2014-09-06 10:32 - 05576440 ____R (Swearware) C:\Users\Marie\Desktop\ComboFix.exe 2014-09-06 10:30 - 2014-09-06 10:30 - 00003262 _____ () C:\Windows\System32\Tasks\{37C5EF49-3FC1-45A5-BF83-9864C197E764} 2014-09-06 10:16 - 2014-09-11 13:58 - 00000000 ____D () C:\Users\Marie\Downloads\FRST-OlderVersion 2014-08-28 12:42 - 2014-08-23 04:07 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll 2014-08-28 12:42 - 2014-08-23 03:45 - 00311808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll 2014-08-28 12:42 - 2014-08-23 02:59 - 03163648 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2014-08-26 16:56 - 2014-08-26 16:56 - 00000000 ____D () C:\Users\Marie\AppData\Roaming\dvdcss 2014-08-25 23:59 - 2014-08-27 11:39 - 00000000 ____D () C:\Users\Marie\AppData\Roaming\vlc 2014-08-25 23:58 - 2014-08-25 23:58 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN 2014-08-25 23:55 - 2014-08-25 23:55 - 01101648 _____ () C:\Users\Marie\Downloads\VLC media player 64 Bit - CHIP-Installer.exe ==================== One Month Modified Files and Folders ======= (If an entry is included in the fixlist, the file\folder will be moved.) 2014-09-18 18:35 - 2014-08-15 21:12 - 00017206 _____ () C:\Users\Marie\Downloads\FRST.txt 2014-09-18 18:34 - 2014-08-15 21:11 - 00000000 ____D () C:\FRST 2014-09-18 18:31 - 2014-03-24 17:47 - 00000562 _____ () C:\Windows\Tasks\G2MUpdateTask-S-1-5-21-2438974327-1903873085-1306138816-1001.job 2014-09-18 17:53 - 2013-01-09 17:49 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-09-18 16:39 - 2009-07-14 06:45 - 00018736 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2014-09-18 16:39 - 2009-07-14 06:45 - 00018736 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2014-09-18 16:38 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\rescache 2014-09-18 13:46 - 2011-06-24 00:21 - 01696968 _____ () C:\Windows\WindowsUpdate.log 2014-09-18 13:26 - 2011-02-19 06:24 - 00710338 _____ () C:\Windows\system32\perfh007.dat 2014-09-18 13:26 - 2011-02-19 06:24 - 00152786 _____ () C:\Windows\system32\perfc007.dat 2014-09-18 13:26 - 2009-07-14 07:13 - 01649080 _____ () C:\Windows\system32\PerfStringBackup.INI 2014-09-16 21:33 - 2012-08-18 19:30 - 00000000 ___RD () C:\Users\Marie\Dropbox 2014-09-16 21:32 - 2012-08-18 19:28 - 00000000 ____D () C:\Users\Marie\AppData\Roaming\Dropbox 2014-09-16 21:31 - 2011-07-06 17:38 - 00045056 _____ () C:\Windows\system32\acovcnt.exe 2014-09-16 21:30 - 2011-10-30 10:36 - 00000326 _____ () C:\Windows\Tasks\GlaryInitialize.job 2014-09-16 21:30 - 2009-07-14 07:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-09-16 21:29 - 2012-04-26 17:07 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service 2014-09-16 21:29 - 2011-04-13 03:39 - 01223340 _____ () C:\Windows\PFRO.log 2014-09-16 21:29 - 2009-07-14 06:51 - 00195579 _____ () C:\Windows\setupact.log 2014-09-15 21:07 - 2014-07-30 19:05 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox.bak 2014-09-15 00:07 - 2011-07-07 21:15 - 00000000 ____D () C:\Users\Marie\AppData\Roaming\Skype 2014-09-13 13:28 - 2014-09-13 13:28 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-09-13 13:21 - 2014-02-11 19:54 - 00000000 ____D () C:\Users\Marie\Desktop\deephousesmixes 2014-09-13 02:38 - 2011-08-10 11:58 - 00000000 ____D () C:\ProgramData\Microsoft Help 2014-09-13 02:30 - 2014-02-27 20:09 - 01623544 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI 2014-09-13 02:29 - 2013-08-15 15:45 - 00000000 ____D () C:\Windows\system32\MRT 2014-09-13 02:24 - 2011-08-12 14:49 - 101694776 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2014-09-13 02:23 - 2014-05-07 01:01 - 00000000 ___SD () C:\Windows\system32\CompatTel 2014-09-13 02:20 - 2014-03-24 17:47 - 00003588 _____ () C:\Windows\System32\Tasks\G2MUpdateTask-S-1-5-21-2438974327-1903873085-1306138816-1001 2014-09-12 09:53 - 2011-08-10 11:58 - 00000000 ____D () C:\Users\Marie\AppData\Local\Microsoft Help 2014-09-12 09:26 - 2011-07-06 23:40 - 00117648 _____ () C:\Users\Marie\AppData\Local\GDIPFONTCACHEV1.DAT 2014-09-11 22:26 - 2009-07-14 06:45 - 00427824 _____ () C:\Windows\system32\FNTCACHE.DAT 2014-09-11 14:01 - 2014-08-15 21:14 - 00040220 _____ () C:\Users\Marie\Downloads\Addition.txt 2014-09-11 13:58 - 2014-09-06 10:16 - 00000000 ____D () C:\Users\Marie\Downloads\FRST-OlderVersion 2014-09-11 13:58 - 2014-08-15 21:09 - 02105856 _____ (Farbar) C:\Users\Marie\Downloads\FRST64.exe 2014-09-11 10:53 - 2014-09-11 10:53 - 00001867 _____ () C:\Users\Public\Desktop\StepOne Software v2.3.lnk 2014-09-11 10:53 - 2014-09-11 10:53 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Applied Biosystems 2014-09-11 10:53 - 2011-06-24 00:33 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information 2014-09-11 10:50 - 2011-08-30 23:05 - 00053248 _____ (Apple Computer, Inc.) C:\Windows\SysWOW64\jdns_sd.dll 2014-09-11 10:41 - 2014-09-11 10:36 - 202434268 _____ () C:\Users\Marie\Downloads\SOP23_4482515.zip 2014-09-10 12:54 - 2013-01-09 17:49 - 00701104 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2014-09-10 12:54 - 2013-01-09 17:49 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2014-09-10 12:54 - 2013-01-09 17:49 - 00003822 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater 2014-09-10 12:53 - 2014-09-10 12:53 - 17903792 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerInstaller.exe 2014-09-10 09:04 - 2014-09-18 18:27 - 00854417 _____ () C:\Users\Marie\Desktop\SecurityCheck.exe 2014-09-10 09:04 - 2014-09-10 09:04 - 02347384 _____ (ESET) C:\Users\Marie\Downloads\esetsmartinstaller_deu.exe 2014-09-10 09:04 - 2014-09-10 09:04 - 00854417 _____ () C:\Users\Marie\Downloads\SecurityCheck.exe 2014-09-09 23:59 - 2011-06-24 00:41 - 00002472 _____ () C:\Windows\system32\AutoRunFilter.ini 2014-09-09 13:50 - 2014-09-09 13:50 - 00000000 ____D () C:\Users\Marie\AppData\Local\PDF24 2014-09-09 13:49 - 2014-09-09 13:49 - 00000792 _____ () C:\Users\Public\Desktop\PDF24 Creator.lnk 2014-09-09 13:49 - 2014-09-09 13:49 - 00000780 _____ () C:\Users\Public\Desktop\PDF24 Fax.lnk 2014-09-09 13:49 - 2014-09-09 13:49 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDF24 2014-09-09 13:37 - 2014-09-09 13:37 - 01101648 _____ () C:\Users\Marie\Downloads\PDF24 Creator - CHIP-Installer.exe 2014-09-09 01:18 - 2014-09-09 01:18 - 00001194 _____ () C:\Users\Marie\Desktop\JRT.txt 2014-09-09 01:06 - 2014-09-09 01:06 - 00000000 ____D () C:\Windows\ERUNT 2014-09-09 01:04 - 2014-09-09 01:04 - 01016261 _____ (Thisisu) C:\Users\Marie\Desktop\JRT.exe 2014-09-09 00:59 - 2014-09-09 00:57 - 00000000 ____D () C:\AdwCleaner 2014-09-09 00:56 - 2014-09-09 00:56 - 01370483 _____ () C:\Users\Marie\Downloads\adwcleaner_3.309.exe 2014-09-09 00:53 - 2014-09-09 00:22 - 00122584 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2014-09-09 00:22 - 2014-09-09 00:22 - 00001108 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2014-09-09 00:22 - 2014-09-09 00:22 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 2014-09-09 00:22 - 2014-09-09 00:22 - 00000000 ____D () C:\ProgramData\Malwarebytes 2014-09-09 00:22 - 2014-09-09 00:22 - 00000000 ____D () C:\Program Files (x86)\ Malwarebytes Anti-Malware 2014-09-09 00:21 - 2014-09-09 00:20 - 17292760 _____ (Malwarebytes Corporation ) C:\Users\Marie\Downloads\mbam-setup-2.0.2.1012.exe 2014-09-09 00:18 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\NDF 2014-09-08 18:08 - 2014-09-08 18:08 - 00023843 _____ () C:\ComboFix.txt 2014-09-08 18:08 - 2014-09-06 10:37 - 00000000 ____D () C:\Qoobox 2014-09-08 18:08 - 2009-07-14 05:20 - 00000000 __RHD () C:\Users\Default 2014-09-08 18:06 - 2014-09-06 10:36 - 00000000 ____D () C:\Windows\erdnt 2014-09-08 18:04 - 2009-07-14 04:34 - 00000215 _____ () C:\Windows\system.ini 2014-09-06 10:36 - 2012-01-23 23:48 - 00000000 ____D () C:\Users\Marie\AppData\Local\CrashDumps 2014-09-06 10:32 - 2014-09-06 10:32 - 05576440 ____R (Swearware) C:\Users\Marie\Desktop\ComboFix.exe 2014-09-06 10:30 - 2014-09-06 10:30 - 00003262 _____ () C:\Windows\System32\Tasks\{37C5EF49-3FC1-45A5-BF83-9864C197E764} 2014-09-05 16:25 - 2011-08-14 14:52 - 00000000 ____D () C:\Users\Marie\AppData\Local\Microsoft Games 2014-09-05 04:10 - 2014-09-11 10:22 - 00578048 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll 2014-09-05 04:05 - 2014-09-11 10:22 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll 2014-09-04 20:13 - 2014-05-20 17:39 - 00000000 ____D () C:\ProgramData\4899dd140d5f13cc 2014-08-31 15:15 - 2009-07-14 07:08 - 00032632 _____ () C:\Windows\Tasks\SCHEDLGU.TXT 2014-08-27 11:39 - 2014-08-25 23:59 - 00000000 ____D () C:\Users\Marie\AppData\Roaming\vlc 2014-08-26 16:56 - 2014-08-26 16:56 - 00000000 ____D () C:\Users\Marie\AppData\Roaming\dvdcss 2014-08-26 13:28 - 2014-07-24 15:14 - 00000000 ____D () C:\Users\Marie\Polar WebSync 2014-08-25 23:58 - 2014-08-25 23:58 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN 2014-08-25 23:55 - 2014-08-25 23:55 - 01101648 _____ () C:\Users\Marie\Downloads\VLC media player 64 Bit - CHIP-Installer.exe 2014-08-25 06:53 - 2011-07-10 15:29 - 00270496 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe 2014-08-23 04:07 - 2014-08-28 12:42 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll 2014-08-23 03:45 - 2014-08-28 12:42 - 00311808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll 2014-08-23 02:59 - 2014-08-28 12:42 - 03163648 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2014-08-19 20:05 - 2014-09-13 02:32 - 00374968 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2014-08-19 19:39 - 2014-09-13 02:32 - 00327872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2014-08-19 01:01 - 2014-09-13 02:32 - 23591424 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-08-19 00:29 - 2014-09-13 02:32 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-08-19 00:29 - 2014-09-13 02:32 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2014-08-19 00:26 - 2014-09-13 02:31 - 17455104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-08-19 00:20 - 2014-09-13 02:32 - 02793984 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-08-19 00:19 - 2014-09-13 02:31 - 05833728 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-08-19 00:15 - 2014-09-13 02:32 - 00547328 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2014-08-19 00:15 - 2014-09-13 02:32 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2014-08-19 00:14 - 2014-09-13 02:32 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2014-08-19 00:14 - 2014-09-13 02:32 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2014-08-19 00:08 - 2014-09-13 02:32 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2014-08-19 00:08 - 2014-09-13 02:32 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2014-08-19 00:08 - 2014-09-13 02:31 - 04232704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2014-08-19 00:05 - 2014-09-13 02:32 - 00596480 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2014-08-19 00:03 - 2014-09-13 02:32 - 00758272 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2014-08-19 00:03 - 2014-09-13 02:32 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2014-08-19 00:03 - 2014-09-13 02:32 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe Some content of TEMP: ==================== C:\Users\Marie\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmp_xocyl.dll C:\Users\Marie\AppData\Local\Temp\Quarantine.exe ==================== Bamital & volsnap Check ================= (There is no automatic fix for files that do not pass verification.) C:\Windows\System32\winlogon.exe => File is digitally signed C:\Windows\System32\wininit.exe => File is digitally signed C:\Windows\SysWOW64\wininit.exe => File is digitally signed C:\Windows\explorer.exe => File is digitally signed C:\Windows\SysWOW64\explorer.exe => File is digitally signed C:\Windows\System32\svchost.exe => File is digitally signed C:\Windows\SysWOW64\svchost.exe => File is digitally signed C:\Windows\System32\services.exe => File is digitally signed C:\Windows\System32\User32.dll => File is digitally signed C:\Windows\SysWOW64\User32.dll => File is digitally signed C:\Windows\System32\userinit.exe => File is digitally signed C:\Windows\SysWOW64\userinit.exe => File is digitally signed C:\Windows\System32\rpcss.dll => File is digitally signed C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed LastRegBack: 2014-09-18 16:30 ==================== End Of Log ============================ --- --- --- und Addition:FRST Additions Logfile: Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 10-09-2014 Ran by Marie at 2014-09-18 18:36:03 Running from C:\Users\Marie\Downloads Boot Mode: Normal ========================================================== ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: G Data AntiVirus 2014 (Enabled - Up to date) {39B780B4-63C2-05B0-3B40-8F7A21E4F496} AS: G Data AntiVirus 2014 (Enabled - Up to date) {82D66150-45F8-0A3E-01F0-B4085A63BE2B} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) Update for Microsoft Office 2007 (KB2508958) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{0C5823AA-7B6F-44E1-8D5B-8FD1FF0E6438}) (Version: - Microsoft) 7-Zip 9.20 (x64 edition) (HKLM\...\{23170F69-40C1-2702-0920-000001000000}) (Version: 9.20.00.0 - Igor Pavlov) Adobe Flash Player 15 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 15.0.0.152 - Adobe Systems Incorporated) Adobe Reader XI (11.0.08) - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AB0000000001}) (Version: 11.0.08 - Adobe Systems Incorporated) Alcor Micro USB Card Reader (HKLM-x32\...\AmUStor) (Version: 1.2.0117.08443 - Alcor Micro Corp.) Alcor Micro USB Card Reader (x32 Version: 1.2.0117.08443 - Alcor Micro Corp.) Hidden Apple Application Support (HKLM-x32\...\{5D09C772-ECB3-442B-9CC6-B4341C78FDC2}) (Version: 2.3.4 - Apple Inc.) Apple Mobile Device Support (HKLM\...\{2F72F540-1F60-4266-9506-952B21D6640D}) (Version: 6.1.0.13 - Apple Inc.) Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.) ASUS AI Recovery (HKLM-x32\...\{38253529-D97D-4901-AE53-5CC9736D3A2E}) (Version: 1.0.13 - ASUS) ASUS FancyStart (HKLM-x32\...\{2B81872B-A054-48DA-BE3B-FA5C164C303A}) (Version: 1.0.8 - ASUSTeK Computer Inc.) ASUS LifeFrame3 (HKLM-x32\...\{1DBD1F12-ED93-49C0-A7CC-56CBDE488158}) (Version: 3.0.21 - ASUS) ASUS Power4Gear Hybrid (HKLM\...\{9B6239BF-4E85-4590-8D72-51E30DB1A9AA}) (Version: 1.1.42 - ASUS) ASUS Secure Delete (HKLM\...\{761C6783-D3BC-48AB-8E7C-61CE918A8436}) (Version: 1.00.0006 - ASUS) ASUS SmartLogon (HKLM-x32\...\{64452561-169F-4A36-A2FF-B5E118EC65F5}) (Version: 1.0.0009 - ASUS) ASUS Splendid Video Enhancement Technology (HKLM-x32\...\{0969AF05-4FF6-4C00-9406-43599238DE0D}) (Version: 1.02.0031 - ASUS) ASUS Virtual Camera (HKLM-x32\...\{EC8BD21F-0CA0-4BBF-97D9-4A52B30041A1}) (Version: 1.0.21 - asus) Atheros WLAN and Bluetooth Client Installation Program (HKLM-x32\...\{28006915-2739-4EBE-B5E8-49B25D32EB33}) (Version: 9.0 - Atheros) ATK Package (HKLM-x32\...\{AB5C933E-5C7D-4D30-B314-9C83A49B94BE}) (Version: 1.0.0007 - ASUS) Audacity 2.0.5 (HKLM-x32\...\Audacity_is1) (Version: 2.0.5 - Audacity Team) AVS Media Player 4.1.10.99 (HKLM-x32\...\AVS Media Player_is1) (Version: 4.1.10.99 - Online Media Technologies Ltd.) Bing Bar (HKLM-x32\...\{1E03DB52-D5CB-4338-A338-E526DD4D4DB1}) (Version: 7.0.610.0 - Microsoft Corporation) Bluetooth Win7 Suite (64) (HKLM\...\{230D1595-57DA-4933-8C4E-375797EBB7E1}) (Version: 7.2.0.45 - Atheros Communications) Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.) CambridgeSoft Activation Client (HKLM-x32\...\{E773E0B9-6ABE-4F9E-816C-56B2DD8613B9}) (Version: 12.0 - CambridgeSoft Corporation) CambridgeSoft ChemDraw Ultra 12.0 (HKLM-x32\...\{48DEAAF2-8276-4BBD-B7B6-91E454938476}) (Version: 12.0 - CambridgeSoft Corporation) Canon Easy-WebPrint EX (HKLM-x32\...\Easy-WebPrint EX) (Version: 1.3.5.0 - Canon Inc.) Canon iP4300 (HKLM\...\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_iP4300) (Version: - ) Canon MP Navigator EX 4.0 (HKLM-x32\...\MP Navigator EX 4.0) (Version: - ) Canon Setup Utility 2.3 (HKLM-x32\...\Canon Setup Utility 2.3) (Version: - ) Canon Solution Menu EX (HKLM-x32\...\CanonSolutionMenuEX) (Version: - ) CanoScan LiDE 110 Scanner Driver (HKLM\...\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_CNQ2414) (Version: - ) Citavi 4 (HKLM-x32\...\{CC0A85B2-734A-45B3-B678-05F6A6499AC7}) (Version: 4.3.0.15 - Swiss Academic Software) Citrix Online Launcher (HKLM-x32\...\{B025BA0B-64A6-46DE-9D64-32965C83CCA9}) (Version: 1.0.179 - Citrix) Control ActiveX de Windows Live Mesh para conexiones remotas (HKLM-x32\...\{04668DF2-D32F-4555-9C7E-35523DCD6544}) (Version: 15.4.5722.2 - Microsoft Corporation) Contrôle ActiveX Windows Live Mesh pour connexions à distance (HKLM-x32\...\{55D003F4-9599-44BF-BA9E-95D060730DD3}) (Version: 15.4.5722.2 - Microsoft Corporation) Controlo ActiveX do Windows Live Mesh para Ligações Remotas (HKLM-x32\...\{E54EEB5D-41ED-40FE-B4A8-8565DB81469B}) (Version: 15.4.5722.2 - Microsoft Corporation) CyberLink LabelPrint (HKLM-x32\...\InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243}) (Version: 2.5.1908 - CyberLink Corp.) CyberLink LabelPrint (x32 Version: 2.5.1908 - CyberLink Corp.) Hidden CyberLink Power2Go (HKLM-x32\...\InstallShield_{40BF1E83-20EB-11D8-97C5-0009C5020658}) (Version: 6.1.3602c - CyberLink Corp.) CyberLink Power2Go (x32 Version: 6.1.3602c - CyberLink Corp.) Hidden Dropbox (HKCU\...\Dropbox) (Version: 2.10.27 - Dropbox, Inc.) ETDWare PS/2-x64 7.0.5.16_WHQL (HKLM\...\Elantech) (Version: 7.0.5.16 - ELAN Microelectronics Corp.) Fast Boot (HKLM\...\{13F4A7F3-EABC-4261-AF6B-1317777F0755}) (Version: 1.0.8 - ASUS) Free PDF to Word Doc Converter v1.1 (HKLM-x32\...\Free PDF to Word Doc Converter_is1) (Version: 1.1 - Free PDF to Word Doc Converter - easy and powerful pdf converter software.) Free YouTube to MP3 Converter version 3.12.32.327 (HKLM-x32\...\Free YouTube to MP3 Converter_is1) (Version: 3.12.32.327 - DVDVideoSoft Ltd.) G Data AntiVirus 2014 (HKLM-x32\...\{5F17164A-FE5F-48B4-916F-56C6C4470D32}) (Version: 24.0.2.3 - G Data Software AG) GIMP 2.8.0 (HKLM\...\GIMP-2_is1) (Version: 2.8.0 - The GIMP Team) Glary Utilities 2.38.0.1288 (HKLM-x32\...\Glary Utilities_is1) (Version: 2.38.0.1288 - Glarysoft Ltd) GoToMeeting 6.4.2.1669 (HKCU\...\GoToMeeting) (Version: 6.4.2.1669 - CitrixOnline) Intel(R) Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1007 - Intel Corporation) Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 7.0.0.1144 - Intel Corporation) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 8.15.10.2291 - Intel Corporation) Intel(R) Turbo Boost Technology Monitor (HKLM\...\{39F4C6F9-618A-4E5B-8FB2-6BD661174E32}) (Version: 1.0.400.4 - Intel) iTunes (HKLM\...\{76FF0F03-B707-4332-B5D1-A56C8303514E}) (Version: 11.0.4.4 - Apple Inc.) Java 8 Update 11 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86418011FF}) (Version: 8.0.110 - Oracle Corporation) Java Auto Updater (x32 Version: 2.0.5.1 - Sun Microsystems, Inc.) Hidden Java(TM) 6 Update 29 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83216029FF}) (Version: 6.0.290 - Oracle) Juniper Networks Network Connect 7.0.0 (HKLM-x32\...\Juniper Network Connect 7.0.0) (Version: 7.0.0.17289 - Juniper Networks) Juniper Networks Network Connect 7.1.8 (HKLM-x32\...\Juniper Network Connect 7.1.8) (Version: 7.1.8.20737 - Juniper Networks) Juniper Networks Network Connect 7.2.0 (HKLM-x32\...\Juniper Network Connect 7.2.0) (Version: 7.2.0.21697 - Juniper Networks) Juniper Networks Network Connect 7.4.0 (HKLM-x32\...\Juniper Network Connect 7.4.0) (Version: 7.4.0.30667 - Juniper Networks) Juniper Networks Setup Client Activex Control (HKLM-x32\...\Juniper_Setup_Client Activex Control) (Version: 2.1.1.1 - Juniper Networks) Juniper Networks, Inc. Setup Client (HKCU\...\Juniper_Setup_Client) (Version: 7.4.9.45013 - Juniper Networks, Inc.) Juniper Networks, Inc. Setup Client 64-bit Activex Control (HKLM\...\Juniper_Setup_Client Activex Control) (Version: 2.1.1.1 - Juniper Networks, Inc.) Langenscheidt Vokabeltrainer 6.0 Spanisch (HKLM-x32\...\{249556BD-ABA8-4510-84A3-8B30B402B07C}) (Version: 6.0.0 - Langenscheidt) lingDIALOG (HKLM-x32\...\InstallShield_{071B843C-9A39-40B3-BB01-BBD6A8D2E1C5}) (Version: 3.0908 - WEVOSYS) lingDIALOG (x32 Version: 3.0908 - WEVOSYS) Hidden Malwarebytes Anti-Malware Version 2.0.2.1012 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.2.1012 - Malwarebytes Corporation) Microsoft .NET Framework 4 Client Profile (HKLM\...\Microsoft .NET Framework 4 Client Profile) (Version: 4.0.30319 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 (Version: 4.5.50938 - Microsoft Corporation) Hidden Microsoft Application Error Reporting (Version: 12.0.6015.5000 - Microsoft Corporation) Hidden Microsoft IntelliPoint 8.1 (HKLM\...\Microsoft IntelliPoint 8.1) (Version: 8.15.406.0 - Microsoft) Microsoft IntelliPoint 8.1 (Version: 8.15.406.0 - Microsoft) Hidden Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version: - Microsoft) Microsoft Office 2007 Service Pack 3 (SP3) (x32 Version: - Microsoft) Hidden Microsoft Office 2010 (HKLM-x32\...\{95140000-0070-0000-0000-0000000FF1CE}) (Version: 14.0.4763.1000 - Microsoft Corporation) Microsoft Office Access MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Enterprise 2007 (HKLM-x32\...\ENTERPRISE) (Version: 12.0.6612.1000 - Microsoft Corporation) Microsoft Office Enterprise 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Excel MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Groove MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office InfoPath MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Office 64-bit Components 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office OneNote MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Outlook MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office PowerPoint MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Proof (English) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Proof (French) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Proof (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Proof (Italian) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Proofing (German) 2007 (x32 Version: 12.0.4518.1014 - Microsoft Corporation) Hidden Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) (x32 Version: - Microsoft) Hidden Microsoft Office Publisher MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Shared 64-bit MUI (German) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Shared MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Office Word MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation) Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (HKLM-x32\...\{770657D0-A123-3C07-8E44-1C83EC895118}) (Version: 8.0.50727.4053 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (Version: 8.0.59192 - Microsoft Corporation) Hidden Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{09298F26-A95C-31E2-9D95-2C60F586F075}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319 (HKLM-x32\...\{196BB40D-1578-3D01-B289-BEFC77A11A1E}) (Version: 10.0.30319 - Microsoft Corporation) Mozilla Firefox 32.0.1 (x86 de) (HKLM-x32\...\Mozilla Firefox 32.0.1 (x86 de)) (Version: 32.0.1 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 29.0 - Mozilla) MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation) MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation) NVIDIA Control Panel 267.21 (Version: 267.21 - NVIDIA Corporation) Hidden NVIDIA Graphics Driver 267.21 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 267.21 - NVIDIA Corporation) NVIDIA Install Application (Version: 2.265.39.0 - NVIDIA Corporation) Hidden NVIDIA Optimus 1.0.21 (Version: 1.0.21 - NVIDIA Corporation) Hidden NVIDIA Update Components (Version: 1.0.21 - NVIDIA Corporation) Hidden PDF24 Creator 6.7.0 (HKLM-x32\...\{81A6F461-0DBA-4F12-B56F-0E977EC10576}_is1) (Version: - PDF24.org) Platform (x32 Version: 1.36 - VIA Technologies, Inc.) Hidden Polar Daemon (HKLM-x32\...\{2BA9320D-E061-4C71-ACCB-AC0E9D4FC82B}) (Version: 2.2.20000 - Polar Electro Oy) Polar WebSync (HKLM-x32\...\{320453EE-6AEA-4E1A-8E64-72F33C0C928F}) (Version: 2.8.10006 - Polar Electro Oy) QuickTime (HKLM-x32\...\{C9E14402-3631-4182-B377-6B0DFB1C0339}) (Version: 7.70.80.34 - Apple Inc.) Revo Uninstaller 1.95 (HKLM-x32\...\Revo Uninstaller) (Version: 1.95 - VS Revo Group) SceneSwitch (HKLM-x32\...\{5172E572-C175-4F80-A6D5-5CB45826AD61}) (Version: 1.0.6 - ASUS) SecureW2 Enterprise Client 3.5.10 MSI Installer (HKLM-x32\...\{495E2DF3-0950-442C-A2C4-2D7B4C6D6337}) (Version: 3.5.10 - SecureW2) Shared Add-in Support Update for Microsoft .NET Framework 2.0 (KB908002) (HKLM-x32\...\{64F3B15C-24C7-4B2B-9B72-65CCBBD7F06B}) (Version: 1.0.0 - Microsoft) Skype™ 6.18 (HKLM-x32\...\{7A3C7E05-EE37-47D6-99E1-2EB05A3DA3F7}) (Version: 6.18.106 - Skype Technologies S.A.) StepOne Software v2.3 (HKLM-x32\...\InstallShield_{0ADF508F-A20D-4B33-9EE2-2F5D9CEFE6EC}) (Version: 2.3 - Applied Biosystems) StepOne Software v2.3 (x32 Version: 2.3 - Applied Biosystems) Hidden streamWriter (HKLM-x32\...\streamWriter_is1) (Version: - ) syncables desktop SE (HKLM-x32\...\{341697D8-9923-445E-B42A-529E5A99CB7A}) (Version: 5.5.746.11492 - syncables) TuneUp Utilities 2014 (de-DE) (x32 Version: 14.0.1000.221 - TuneUp Software) Hidden TuneUp Utilities 2014 (HKLM-x32\...\TuneUp Utilities) (Version: 14.0.1000.221 - TuneUp Software) TuneUp Utilities 2014 (x32 Version: 14.0.1000.221 - TuneUp Software) Hidden UnderCoverXP 1.23 (HKLM-x32\...\UnderCoverXP_is1) (Version: - Wicked & Wild Inc.) Update for 2007 Microsoft Office System (KB967642) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version: - Microsoft) Update for Microsoft Office 2007 suites (KB2596620) 32-Bit Edition (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{A024FC7B-77DE-45DE-A058-1C049A17BFB3}) (Version: - Microsoft) Update for Microsoft Office 2007 suites (KB2767849) 32-Bit Edition (HKLM-x32\...\{90120000-002A-0000-1000-0000000FF1CE}_ENTERPRISE_{CB68A5B0-3508-4193-AEB9-AF636DAECE0F}) (Version: - Microsoft) Update for Microsoft Office 2007 suites (KB2767849) 32-Bit Edition (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{CB68A5B0-3508-4193-AEB9-AF636DAECE0F}) (Version: - Microsoft) Update for Microsoft Office 2007 suites (KB2767916) 32-Bit Edition (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{E9A82945-BA29-4EE8-8F2A-2F49545E9CF2}) (Version: - Microsoft) Update for Microsoft Office Outlook 2007 (KB2687404) 32-Bit Edition (HKLM-x32\...\{90120000-001A-0407-0000-0000000FF1CE}_ENTERPRISE_{EA54F104-79D2-48CC-9ABC-91A63C43D353}) (Version: - Microsoft) Update for Microsoft Office Outlook 2007 (KB2863811) 32-Bit Edition (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{53DEC068-4690-4F6B-9946-7D21EF02236B}) (Version: - Microsoft) Update for Microsoft Office Outlook 2007 Junk Email Filter (KB2889914) 32-Bit Edition (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{F3F83933-75FC-4B60-84F2-3F8FA63D042E}) (Version: - Microsoft) Update für Microsoft Office Excel 2007 Help (KB963678) (HKLM-x32\...\{90120000-0016-0407-0000-0000000FF1CE}_ENTERPRISE_{BEC163EC-7A83-48A1-BFB6-3BF47CC2F8CF}) (Version: - Microsoft) Update für Microsoft Office Outlook 2007 Help (KB963677) (HKLM-x32\...\{90120000-001A-0407-0000-0000000FF1CE}_ENTERPRISE_{F6828576-6F79-470D-AB50-69D1BBADBD30}) (Version: - Microsoft) Update für Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM-x32\...\{90120000-0018-0407-0000-0000000FF1CE}_ENTERPRISE_{EA160DA3-E9B5-4D03-A518-21D306665B96}) (Version: - Microsoft) Update für Microsoft Office Word 2007 Help (KB963665) (HKLM-x32\...\{90120000-001B-0407-0000-0000000FF1CE}_ENTERPRISE_{38472199-D7B6-4833-A949-10E4EE6365A1}) (Version: - Microsoft) VIA Platform Device Manager (HKLM-x32\...\InstallShield_{20D4A895-748C-4D88-871C-FDB1695B0169}) (Version: 1.36 - VIA Technologies, Inc.) VLC media player (HKLM\...\VLC media player) (Version: 2.1.5 - VideoLAN) Vokabeltrainer-Update 6.0.16 (HKLM-x32\...\{518F8DB2-65BA-40F7-B843-1F11F8F1B124}) (Version: 6.0.16 - Langenscheidt) Windows Live Mesh - ActiveX-besturingselement voor externe verbindingen (HKLM-x32\...\{C32CE55C-12BA-4951-8797-0967FDEF556F}) (Version: 15.4.5722.2 - Microsoft Corporation) Windows Live Mesh ActiveX Control for Remote Connections (HKLM-x32\...\{2902F983-B4C1-44BA-B85D-5C6D52E2C441}) (Version: 15.4.5722.2 - Microsoft Corporation) Windows Live Mesh ActiveX control for remote connections (HKLM-x32\...\{C5398A89-516C-4DAF-BA07-EE7949090E56}) (Version: 15.4.5722.2 - Microsoft Corporation) Windows Live Mesh ActiveX Control for Remote Connections (HKLM-x32\...\{C63A1E60-B6A4-440B-89A5-1FC6E4AC1C94}) (Version: 15.4.5722.2 - Microsoft Corporation) Windows Media Player Firefox Plugin (HKLM-x32\...\{69FDFBB6-351D-4B8C-89D8-867DC9D0A2A4}) (Version: 1.0.0.8 - Microsoft Corp) WinFlash (HKLM-x32\...\{8F21291E-0444-4B1D-B9F9-4370A73E346D}) (Version: 2.31.0 - ASUS) Wireless Console 3 (HKLM-x32\...\{20FDF948-C8ED-4543-A539-F7F4AEF5AFA2}) (Version: 3.0.19 - ASUS) Στοιχείο ελέγχου ActiveX του Windows Live Mesh για απομακρυσμένες συνδέσεις (HKLM-x32\...\{F665F3B8-01B4-46A9-8E47-FF8DC2208C9F}) (Version: 15.4.5722.2 - Microsoft Corporation) Элемент управления Windows Live Mesh ActiveX для удаленных подключений (HKLM-x32\...\{BCB0D6F7-7EAB-4009-A6F2-8E0E7F317773}) (Version: 15.4.5722.2 - Microsoft Corporation) פקד ActiveX של Windows Live Mesh עבור חיבורים מרוחקים (HKLM-x32\...\{9D4C7DFA-CBBB-4F06-BDAC-94D831406DF0}) (Version: 15.4.5722.2 - Microsoft Corporation) عنصر تحكم ActiveX الخاص بـ Windows Live Mesh للاتصالات البعيدة (HKLM-x32\...\{E18B30AA-6E2D-480C-B918-AF61009F4010}) (Version: 15.4.5722.2 - Microsoft Corporation) 適用遠端連線的 Windows Live Mesh ActiveX 控制項 (HKLM-x32\...\{622DE1BE-9EDE-49D3-B349-29D64760342A}) (Version: 15.4.5722.2 - Microsoft Corporation) ==================== Custom CLSID (selected items): ========================== (If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.) CustomCLSID: HKU\S-1-5-21-2438974327-1903873085-1306138816-1001_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\Marie\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2438974327-1903873085-1306138816-1001_Classes\CLSID\{84B5A313-CD5D-4904-8BA2-AFDC81C1B309}\InprocServer32 -> C:\Users\Marie\AppData\Local\Citrix\GoToMeeting\1312\G2MOutlookAddin64.dll (Citrix Online, a division of Citrix Systems, Inc.) CustomCLSID: HKU\S-1-5-21-2438974327-1903873085-1306138816-1001_Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Marie\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2438974327-1903873085-1306138816-1001_Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Marie\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2438974327-1903873085-1306138816-1001_Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Marie\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2438974327-1903873085-1306138816-1001_Classes\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Marie\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2438974327-1903873085-1306138816-1001_Classes\CLSID\{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Marie\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2438974327-1903873085-1306138816-1001_Classes\CLSID\{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Marie\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2438974327-1903873085-1306138816-1001_Classes\CLSID\{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Marie\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2438974327-1903873085-1306138816-1001_Classes\CLSID\{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Marie\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.) ==================== Restore Points ========================= 11-09-2014 08:51:11 Installed StepOne Software v2.3 12-09-2014 07:00:48 Windows Update 13-09-2014 00:22:26 Windows Update 16-09-2014 19:38:13 Windows Update ==================== Hosts content: ========================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2009-07-14 04:34 - 2014-09-08 18:04 - 00000027 ____A C:\Windows\system32\Drivers\etc\hosts 127.0.0.1 localhost ==================== Scheduled Tasks (whitelisted) ============= (If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.) Task: {1443C4E6-453A-4C98-839A-F99ECDF2B361} - System32\Tasks\{58C76C0D-5E79-41EE-A29B-508D280CD5DD} => C:\Program Files (x86)\Skype\\Phone\Skype.exe [2014-07-24] (Skype Technologies S.A.) Task: {2B373F3F-BC32-4A8C-B4A9-0CB3D51928E5} - System32\Tasks\ASUS Secure Delete => C:\Program Files\ASUS\ASUS Secure Delete\ADDEL.exe [2010-05-12] () Task: {2E88AF9C-EA47-4A05-B439-8FFC1D58C2D7} - System32\Tasks\Adobe-Online-Aktualisierungsprogramm => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-11-21] (Adobe Systems Incorporated) Task: {328AEB80-266F-421C-BEC4-48DCD6BEAFF3} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-09-10] (Adobe Systems Incorporated) Task: {32BCA0F4-73DA-431E-B6E7-B6116B02B309} - System32\Tasks\ASUS SmartLogon Console Sensor => C:\Program Files (x86)\ASUS\SmartLogon\sensorsrv.exe [2009-07-31] (ASUS) Task: {3B49F891-F24B-407F-9924-851742BB0402} - System32\Tasks\ATKOSD2 => C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe [2010-08-17] (ASUS) Task: {5F2183E8-E4B7-4EAE-BAF4-FB27BC8214F1} - System32\Tasks\TuneUpUtilities_Task_BkGndMaintenance2013 => C:\Program Files (x86)\TuneUp Utilities 2014\OneClick.exe [2013-12-18] (TuneUp Software) Task: {772F974C-AE79-4DF2-92DF-42F69F93A0E9} - System32\Tasks\ACMON => C:\Program Files (x86)\ASUS\Splendid\ACMON.exe [2010-08-02] (ASUS) Task: {89CED9AC-09E9-448A-A1AA-8DB463B02363} - System32\Tasks\G2MUpdateTask-S-1-5-21-2438974327-1903873085-1306138816-1001 => C:\Users\Marie\AppData\Local\Citrix\GoToMeeting\1669\g2mupdate.exe [2014-09-13] (Citrix Online, a division of Citrix Systems, Inc.) Task: {8C565B97-BE2A-48A6-8943-C0B2178426F1} - System32\Tasks\GlaryInitialize => C:\Program Files (x86)\Glary Utilities\initialize.exe [2011-10-01] (Glarysoft Ltd) Task: {C0F8EE7A-A6A8-43AE-AF51-EF369B98439A} - System32\Tasks\{14FFEAC5-FCA9-4371-B9E2-60939436285B} => Firefox.exe Skype auf Ihren Computer herunterladen ? Windows, Mac und Linux ? Skype herunterladen Task: {CA6BBC01-FCCB-4A9C-99B2-079015A90914} - System32\Tasks\Microsoft_Hardware_Launch_IPoint_exe => C:\Program Files\Microsoft IntelliPoint\IPoint.exe [2011-04-13] (Microsoft Corporation) Task: {FC23A56B-FA12-4D06-BAFD-BBAF76BF114C} - System32\Tasks\ASUS P4G => C:\Program Files\P4G\BatteryLife.exe [2010-11-11] (ASUS) Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\G2MUpdateTask-S-1-5-21-2438974327-1903873085-1306138816-1001.job => C:\Users\Marie\AppData\Local\Citrix\GoToMeeting\1669\g2mupdate.exe Task: C:\Windows\Tasks\GlaryInitialize.job => C:\Program Files (x86)\Glary Utilities\initialize.exe ==================== Loaded Modules (whitelisted) ============= 2012-12-12 15:20 - 2012-12-12 15:20 - 00419536 _____ () C:\Program Files (x86)\Polar\Daemon\polard.exe 2013-12-18 11:01 - 2013-12-18 11:01 - 00742200 _____ () C:\Program Files (x86)\TuneUp Utilities 2014\avgrepliba.dll 2010-05-12 02:35 - 2010-05-12 02:35 - 00489392 _____ () C:\Program Files\ASUS\ASUS Secure Delete\ADDEL.exe 2010-04-03 04:21 - 2008-10-01 08:08 - 00011264 _____ () C:\Program Files (x86)\ASUS\Splendid\GLCDdll.dll 2010-07-15 01:11 - 2010-07-15 01:11 - 00031360 _____ () C:\Program Files\P4G\DevMng.dll 2011-05-20 09:17 - 2011-01-27 02:11 - 00094208 _____ () C:\Windows\System32\IccLibDll_x64.dll 2013-02-26 16:59 - 2013-02-26 16:59 - 06227512 _____ () F:\Program Files (x86)\Polar\WebSync\WebSync.exe 2010-09-24 01:53 - 2010-09-24 01:53 - 01601536 _____ () C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe 2013-02-25 04:47 - 2013-02-25 04:47 - 00334288 ____N () C:\Program Files (x86)\Common Files\G Data\AVKProxy\PktIcpt2x64.dll 2011-06-24 22:56 - 2011-06-24 22:56 - 00087328 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll 2011-06-24 22:56 - 2011-06-24 22:56 - 01241888 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll 2012-12-12 15:20 - 2012-12-12 15:20 - 03483856 _____ () C:\Program Files (x86)\Polar\Daemon\libpolar.dll 2009-11-02 23:20 - 2009-11-02 23:20 - 00619816 ____N () C:\Program Files (x86)\CyberLink\Power2Go\CLMediaLibrary.dll 2009-11-02 23:23 - 2009-11-02 23:23 - 00013096 ____N () C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvcPS.dll 2013-02-26 16:59 - 2013-02-26 16:59 - 00110648 _____ () F:\Program Files (x86)\Polar\WebSync\PTransform.dll 2010-02-10 16:06 - 2010-02-10 16:06 - 00334848 _____ () F:\Program Files (x86)\Polar\WebSync\QtXml4.dll 2011-01-14 16:01 - 2011-01-14 16:01 - 02142720 _____ () F:\Program Files (x86)\Polar\WebSync\QtCore4.dll 2013-02-26 16:59 - 2013-02-26 16:59 - 03722296 _____ () F:\Program Files (x86)\Polar\WebSync\libpolar.dll 2010-02-10 16:22 - 2010-02-10 16:22 - 07971840 _____ () F:\Program Files (x86)\Polar\WebSync\QtGui4.dll 2010-02-10 16:07 - 2010-02-10 16:07 - 00929280 _____ () F:\Program Files (x86)\Polar\WebSync\QtNetwork4.dll 2010-02-10 18:45 - 2010-02-10 18:45 - 00025600 _____ () F:\Program Files (x86)\Polar\WebSync\imageformats\qgif4.dll 2010-02-10 18:45 - 2010-02-10 18:45 - 00119808 _____ () F:\Program Files (x86)\Polar\WebSync\imageformats\qjpeg4.dll 2014-09-16 21:32 - 2014-09-16 21:32 - 00043008 _____ () c:\users\marie\appdata\local\temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmp_xocyl.dll 2013-08-23 21:01 - 2013-08-23 21:01 - 25100288 _____ () C:\Users\Marie\AppData\Roaming\Dropbox\bin\libcef.dll ==================== Alternate Data Streams (whitelisted) ========= (If an entry is included in the fixlist, only the Alternate Data Streams will be removed.) ==================== Safe Mode (whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) ==================== EXE Association (whitelisted) ============= (If an entry is included in the fixlist, the default will be restored. None default entries will be removed.) ==================== MSCONFIG/TASK MANAGER disabled items ========= (Currently there is no automatic fix for this section.) MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^AsusVibeLauncher.lnk => C:\Windows\pss\AsusVibeLauncher.lnk.CommonStartup MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^FancyStart daemon.lnk => C:\Windows\pss\FancyStart daemon.lnk.CommonStartup MSCONFIG\startupreg: ASUS Screen Saver Protector => C:\Windows\AsScrPro.exe MSCONFIG\startupreg: ASUSWebStorage => C:\Program Files (x86)\ASUS\ASUS WebStorage\3.0.84.161\AsusWSPanel.exe /S MSCONFIG\startupreg: AthBtTray => "C:\Program Files (x86)\Atheros\Bluetooth Suite\AthBtTray.exe" MSCONFIG\startupreg: AtherosBtStack => "C:\Program Files (x86)\Atheros\Bluetooth Suite\BtvStack.exe" MSCONFIG\startupreg: CLMLServer => "C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe" MSCONFIG\startupreg: IntelliPoint => "C:\Program Files\Microsoft IntelliPoint\ipoint.exe" MSCONFIG\startupreg: Setwallpaper => c:\programdata\SetWallpaper.cmd MSCONFIG\startupreg: SunJavaUpdateSched => "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" MSCONFIG\startupreg: Trend Micro Titanium => C:\Program Files\Trend Micro\Titanium\VizorShortCut.exe -ReFlush "none" "none" MSCONFIG\startupreg: UpdateLBPShortCut => "C:\Program Files (x86)\CyberLink\LabelPrint\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\LabelPrint" UpdateWithCreateOnce "Software\CyberLink\LabelPrint\2.5" MSCONFIG\startupreg: UpdateP2GoShortCut => "C:\Program Files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\Power2Go" UpdateWithCreateOnce "SOFTWARE\CyberLink\Power2Go\6.0" MSCONFIG\startupreg: VizorHtmlDialog.exe => "C:\Program Files\Trend Micro\Titanium\UIFramework\VizorHtmlDialog.exe" "DEF" "EULA" "C:\Program Files\Trend Micro\Titanium\UI\Installer.cmpt\resources\preinstall_01_welcome_trial.html" "DEF" "DEF" "DEF" ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (09/18/2014 04:33:58 PM) (Source: SideBySide) (EventID: 80) (User: ) Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest2" in Zeile C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest3. Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest. Komponente 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest. Error: (09/18/2014 04:32:49 PM) (Source: SideBySide) (EventID: 80) (User: ) Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest2" in Zeile C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest3. Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest. Komponente 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest. Error: (09/18/2014 01:47:59 PM) (Source: SideBySide) (EventID: 80) (User: ) Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest2" in Zeile C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest3. Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest. Komponente 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest. Error: (09/18/2014 01:47:53 PM) (Source: SideBySide) (EventID: 80) (User: ) Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest2" in Zeile C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest3. Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest. Komponente 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest. Error: (09/18/2014 01:47:53 PM) (Source: SideBySide) (EventID: 80) (User: ) Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest2" in Zeile C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest3. Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest. Komponente 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest. Error: (09/11/2014 00:09:50 PM) (Source: MsiInstaller) (EventID: 1013) (User: Marie-PC) Description: Product: StepOne Software v2.3 -- This installation cannot be run by directly launching the MSI package. You must run setup.exe. Error: (09/11/2014 10:48:41 AM) (Source: MsiInstaller) (EventID: 1013) (User: Marie-PC) Description: Product: StepOne Software v2.3 -- This installation cannot be run by directly launching the MSI package. You must run setup.exe. Error: (09/10/2014 07:00:42 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 2075 Error: (09/10/2014 07:00:42 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledEvent 2075 Error: (09/10/2014 07:00:42 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: Continuously busy for more than a second System errors: ============= Error: (09/18/2014 04:03:02 PM) (Source: Disk) (EventID: 7) (User: ) Description: Fehlerhafter Block bei Gerät \Device\Harddisk2\DR2. Error: (09/18/2014 01:25:09 PM) (Source: BTHUSB) (EventID: 17) (User: ) Description: Der lokale Bluetooth-Adapter ist aus einem unbekannten Grund fehlgeschlagen und wird nicht verwendet. Der Treiber wurde entladen. Error: (09/18/2014 11:44:56 AM) (Source: BTHUSB) (EventID: 17) (User: ) Description: Der lokale Bluetooth-Adapter ist aus einem unbekannten Grund fehlgeschlagen und wird nicht verwendet. Der Treiber wurde entladen. Error: (09/18/2014 11:12:58 AM) (Source: BTHUSB) (EventID: 17) (User: ) Description: Der lokale Bluetooth-Adapter ist aus einem unbekannten Grund fehlgeschlagen und wird nicht verwendet. Der Treiber wurde entladen. Error: (09/17/2014 09:03:25 PM) (Source: BTHUSB) (EventID: 17) (User: ) Description: Der lokale Bluetooth-Adapter ist aus einem unbekannten Grund fehlgeschlagen und wird nicht verwendet. Der Treiber wurde entladen. Error: (09/17/2014 05:39:05 PM) (Source: BTHUSB) (EventID: 17) (User: ) Description: Der lokale Bluetooth-Adapter ist aus einem unbekannten Grund fehlgeschlagen und wird nicht verwendet. Der Treiber wurde entladen. Error: (09/17/2014 03:38:03 PM) (Source: BTHUSB) (EventID: 17) (User: ) Description: Der lokale Bluetooth-Adapter ist aus einem unbekannten Grund fehlgeschlagen und wird nicht verwendet. Der Treiber wurde entladen. Error: (09/17/2014 01:17:49 PM) (Source: BTHUSB) (EventID: 17) (User: ) Description: Der lokale Bluetooth-Adapter ist aus einem unbekannten Grund fehlgeschlagen und wird nicht verwendet. Der Treiber wurde entladen. Error: (09/17/2014 11:54:15 AM) (Source: BTHUSB) (EventID: 17) (User: ) Description: Der lokale Bluetooth-Adapter ist aus einem unbekannten Grund fehlgeschlagen und wird nicht verwendet. Der Treiber wurde entladen. Error: (09/16/2014 09:29:57 PM) (Source: EventLog) (EventID: 6008) (User: ) Description: Das System wurde zuvor am 16.09.2014 um 19:46:44 unerwartet heruntergefahren. Microsoft Office Sessions: ========================= CodeIntegrity Errors: =================================== Date: 2014-09-08 18:03:28.718 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\ComboFix\catchme.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2014-09-08 18:03:28.446 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\ComboFix\catchme.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. ==================== Memory info =========================== Processor: Intel(R) Core(TM) i5-2410M CPU @ 2.30GHz Percentage of memory in use: 59% Total physical RAM: 4008.16 MB Available physical RAM: 1607.2 MB Total Pagefile: 8014.5 MB Available Pagefile: 5607.66 MB Total Virtual: 8192 MB Available Virtual: 8191.83 MB ==================== Drives ================================ Drive c: (OS) (Fixed) (Total:186.3 GB) (Free:50.81 GB) NTFS ==>[System with boot components (obtained from reading drive)] Drive d: (DATA) (Fixed) (Total:156.8 GB) (Free:156.59 GB) NTFS Drive f: (Volume) (Fixed) (Total:97.66 GB) (Free:85.93 GB) NTFS Drive g: (INTENSO) (Fixed) (Total:596.17 GB) (Free:361.23 GB) NTFS Drive h: (KINGSTON) (Removable) (Total:7.45 GB) (Free:6.29 GB) FAT32 ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: 343771F7) Partition 1: (Not Active) - (Size=25 GB) - (Type=1C) Partition 2: (Active) - (Size=186.3 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=254.5 GB) - (Type=OF Extended) ======================================================== Disk: 1 (MBR Code: Windows XP) (Size: 7.5 GB) (Disk ID: C3072E18) Partition 1: (Not Active) - (Size=7.5 GB) - (Type=0C) ======================================================== Disk: 2 (Size: 596.2 GB) (Disk ID: 1F37E3FB) Partition 1: (Not Active) - (Size=596.2 GB) - (Type=07 NTFS) ==================== End Of Log ============================ Soweit alles super! DANKE! |
Themen zu Windows 7, trotz Werbeblocker seit geraumer Zeit Pop-Ups, Werbeanzeigen, blau unterlegt Hyperlinks |
pup.optional.flashcoupon.a, pup.optional.helperbar.a, pup.optional.installcore.a, pup.optional.linkury.a, pup.optional.mysearchdial.a, pup.optional.opencandy, pup.optional.opencandy.a, pup.optional.preload, pup.optional.quickshare.a, pup.optional.searchprotect.a, pup.optional.smartbar, pup.optional.smartbar.a, pup.optional.snapdo.t, pup.optional.websearch.a |