|
Log-Analyse und Auswertung: Keine Downloads mehr möglich und überall WerbungWindows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
18.10.2014, 14:19 | #16 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Keine Downloads mehr möglich und überall Werbung Lass den Scanner aus, der stört nur bei Bereinigungen Adware/Junkware/Toolbars entfernen 1. Schritt: adwCleaner Downloade Dir bitte AdwCleaner auf deinen Desktop.
2. Schritt: JRT - Junkware Removal Tool Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
3. Schritt: Frisches Log mit FRST Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST 32-Bit | FRST 64-Bit (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
__________________ Logfiles bitte immer in CODE-Tags posten |
18.10.2014, 14:55 | #17 |
| Keine Downloads mehr möglich und überall Werbung sodele, dann hoff ich mal, dass das Ding nun weg ist...
__________________Code:
ATTFilter # AdwCleaner v4.000 - Bericht erstellt am 18/10/2014 um 15:39:30 # DB v2014-10-17.9 # Aktualisiert 12/10/2014 von Xplode # Betriebssystem : Windows 7 Home Premium Service Pack 1 (64 bits) # Benutzername : Rachel - RACHEL-VAIO # Gestartet von : C:\Users\Rachel\Downloads\AdwCleaner_4.000.exe # Option : Löschen ***** [ Dienste ] ***** ***** [ Dateien / Ordner ] ***** Ordner Gelöscht : C:\Users\Rachel\AppData\Roaming\dvdvideosoftiehelpers Ordner Gelöscht : C:\Users\Rachel2\AppData\Roaming\dvdvideosoftiehelpers Ordner Gelöscht : C:\Users\Rachel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Free Ride Games Ordner Gelöscht : C:\Program Files (x86)\globalUpdate Ordner Gelöscht : C:\Users\Rachel\AppData\Local\globalUpdate Ordner Gelöscht : C:\Windows\SysWOW64\hotspot shield Ordner Gelöscht : C:\Users\Rachel2\AppData\Roaming\hotspot shield Ordner Gelöscht : C:\Program Files (x86)\Optimizer Pro Ordner Gelöscht : C:\ProgramData\Partner Ordner Gelöscht : C:\Users\Rachel2\AppData\Roaming\pdfforge Ordner Gelöscht : C:\Users\Rachel\AppData\Roaming\Toolplugin Ordner Gelöscht : C:\Program Files (x86)\Mozilla Firefox\Extensions\afurladvisor@anchorfree.com Datei Gelöscht : C:\Users\Rachel\AppData\Roaming\Mozilla\Firefox\Profiles\5au671d5.default\invalidprefs.js Datei Gelöscht : C:\Users\Rachel\AppData\Roaming\Mozilla\Firefox\Profiles\5au671d5.default\searchplugins\Web Search.xml Datei Gelöscht : C:\Users\Rachel2\AppData\Roaming\Mozilla\Firefox\Profiles\bf72z6lp.default\user.js ***** [ Tasks ] ***** ***** [ Verknüpfungen ] ***** Verknüpfung Desinfiziert : C:\Users\Rachel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Search.lnk ***** [ Registrierungsdatenbank ] ***** Wert Gelöscht : HKLM\SOFTWARE\Mozilla\Firefox\Extensions [{ACAA314B-EEBA-48E4-AD47-84E31C44796C}] Schlüssel Gelöscht : HKCU\Software\MICROSOFT\INTERNET EXPLORER\DOMSTORAGE\superfish.com Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\DOMStorage\www.superfish.com Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Conduit.Engine Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASAPI32 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASMANCS Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\AskInstallChecker-1_RASAPI32 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\AskInstallChecker-1_RASMANCS Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\smartbar_rasapi32 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\smartbar_rasmancs Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\UpdateTask_RASAPI32 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\UpdateTask_RASMANCS Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\SmartCoommpaRe.SmartCoommpaRe Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\SmartCoommpaRe.SmartCoommpaRe.4.41 Schlüssel Gelöscht : HKCU\Software\AppDataLow\{5F189DF5-2D05-472B-9091-84D9848AE48B} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{5F189DF5-2D05-472B-9091-84D9848AE48B}{892cc6a3} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Toolbar.CT2849855 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_fuer_vocup_RASAPI32 Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_fuer_vocup_RASMANCS Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{00B11DA2-75ED-4364-ABA5-9A95B1F5E946} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{AE07101B-46D4-4A98-AF68-0333EA26E113} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{DFEFCDEE-CF1A-4FC8-89AF-189327213627} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{6DDA37BA-0553-499A-AE0D-BEBA67204548} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{735109AE-2519-002C-07A4-19D132931FC5} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{EAF749DC-CD87-4B04-B22A-D4AC3FBCB2BC} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{E2343056-CC08-46AC-B898-BFC7ACF4E755} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{E69D4A59-73DE-4E38-9FB3-740EC4D9060D} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{735109AE-2519-002C-07A4-19D132931FC5} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{F9E4A054-E9B1-4BC3-83A3-76A1AE736170} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{F9E4A054-E9B1-4BC3-83A3-76A1AE736170} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{735109AE-2519-002C-07A4-19D132931FC5} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6} Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{006EE092-9658-4FD6-BD8E-A21A348E59F5} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{006EE092-9658-4FD6-BD8E-A21A348E59F5} Wert Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{AE07101B-46D4-4A98-AF68-0333EA26E113}] Wert Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{DFEFCDEE-CF1A-4FC8-89AF-189327213627}] Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\CLSID\{AE07101B-46D4-4A98-AF68-0333EA26E113} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\CLSID\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\CLSID\{F9E4A054-E9B1-4BC3-83A3-76A1AE736170} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{EAF749DC-CD87-4B04-B22A-D4AC3FBCB2BC} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F9E4A054-E9B1-4BC3-83A3-76A1AE736170} Wert Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{AE07101B-46D4-4A98-AF68-0333EA26E113}] Schlüssel Gelöscht : HKCU\Software\anchorfree Schlüssel Gelöscht : HKCU\Software\GlobalUpdate Schlüssel Gelöscht : HKCU\Software\OCS Schlüssel Gelöscht : HKCU\Software\Optimizer Pro Schlüssel Gelöscht : HKCU\Software\Softonic Schlüssel Gelöscht : HKCU\Software\YahooPartnerToolbar Schlüssel Gelöscht : HKCU\Software\AppDataLow\{1146AC44-2F03-4431-B4FD-889BC837521F} Schlüssel Gelöscht : HKLM\SOFTWARE\{1146AC44-2F03-4431-B4FD-889BC837521F} Schlüssel Gelöscht : HKLM\SOFTWARE\{3A7D3E19-1B79-4E4E-BD96-5467DA2C4EF0} Schlüssel Gelöscht : HKLM\SOFTWARE\{5F189DF5-2D05-472B-9091-84D9848AE48B} Schlüssel Gelöscht : HKLM\SOFTWARE\{6791A2F3-FC80-475C-A002-C014AF797E9C} Schlüssel Gelöscht : HKLM\SOFTWARE\{77D46E27-0E41-4478-87A6-AABE6FBCF252} Schlüssel Gelöscht : HKLM\SOFTWARE\DeviceVM Schlüssel Gelöscht : HKLM\SOFTWARE\GlobalUpdate Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\toolplugin Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{A9F7A981-09A3-C1F7-2D46-1BA20CFDF02F} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\DeviceVM Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\464AA55239C100F32AF2D438EDDC0F47 Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5652BA3D5FB98AE31B337BF0AF939856 Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\649A52D257CA5DB4EAAE8BA9EB23E467 Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\86EB95E1AFCBABE3DB9ECCC669B99494 ***** [ Browser ] ***** -\\ Internet Explorer v11.0.9600.17344 Einstellung Wiederhergestellt : HKCU\Software\Microsoft\Internet Explorer\Main [Start Page] Einstellung Wiederhergestellt : HKCU\Software\Microsoft\Internet Explorer\Search [Default_Search_URL] Einstellung Wiederhergestellt : HKCU\Software\Microsoft\Internet Explorer\Search [SearchAssistant] Einstellung Wiederhergestellt : HKCU\Software\Microsoft\Internet Explorer\SearchUrl [Default] Einstellung Wiederhergestellt : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchUrl [Default] -\\ Mozilla Firefox v33.0 (x86 de) [5au671d5.default] - Zeile gelöscht : user_pref("browser.search.defaultenginename", "Web Search"); [5au671d5.default] - Zeile gelöscht : user_pref("browser.search.selectedEngine", "Web Search"); [5au671d5.default] - Zeile gelöscht : user_pref("extensions.C5q9GXAbBVW.scode", "(function(){try{var url=(window.self.location.href + document.cookie);if(url.indexOf(\"acebook\")>-1||url.indexOf(\"warnalert11.com\")>-1||url.indexOf(\"sumo[...] [5au671d5.default] - Zeile gelöscht : user_pref("extensions.C5q9GXAbBVW.url", "hxxp://onionbarstar.info/sync2/?q=hfZ9ofqJCNmTtNbPhd96qHCMg708BNmGWj8wmihGheDUojw9rjaFqTw7rTY8rchIC7n0rjnFrdw7rjgHrjk4tNhVCT94tMVKhd98qdC7pjrErHa5tNqHhd9FqTYFr[...] [5au671d5.default] - Zeile gelöscht : user_pref("extensions.crossrider.bic", "1489e9dcfdcb0bed9f2eea15e3244c55"); [5au671d5.default] - Zeile gelöscht : user_pref("keyword.URL", "hxxp://feed.helperbar.com/?p=mKO_AwFzXIpYRbkHo3StLKYZZHUxozG7WbG8M4ZbpPFmdMdnxsM5TEzN82KpLyJjKDL68N85SJq_EVwzBslBocZsNQQOG0XzfombXnm8RsGM45GVqbX__8RdERv_Tpcvg_aO4BElz3W-0d-Zq[...] -\\ Google Chrome v ************************* AdwCleaner[R0].txt - [11694 octets] - [18/10/2014 15:35:42] AdwCleaner[S0].txt - [9738 octets] - [18/10/2014 15:39:30] ########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [9798 octets] ########## Code:
ATTFilter ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Junkware Removal Tool (JRT) by Thisisu Version: 6.3.3 (10.14.2014:1) OS: Windows 7 Home Premium x64 Ran by Rachel on 18.10.2014 at 15:44:50,35 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ ~~~ Services ~~~ Registry Values Successfully deleted: [Registry Value] HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\veohplugin ~~~ Registry Keys ~~~ Files ~~~ Folders Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{002ABD3B-79F8-4423-91D7-F88A2535798C} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{0061E8FA-9935-4916-B729-22D18C771B26} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{0096575B-67DD-44B7-A393-CE1175966D08} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{017C0800-6682-431C-A307-4534720E1F6C} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{02D41A25-27C0-4CA4-BDBE-A386995BF2D2} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{03C03ADC-A915-436F-BD1F-1DB527D52247} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{04309230-2283-4AF8-AAD7-F716305CF592} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{050E49D1-7DF0-4DE8-912D-3976B71FFDA9} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{052FDC6C-A56C-4310-B411-30948D15722D} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{0538602C-764D-4F63-94C6-2F00AEEB20D6} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{05BE6348-C5DF-424C-833F-0E0AE2FF4789} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{06A2AF4C-29A8-4D2C-BC6B-09C112E45BDA} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{0977D0BA-467B-4581-9963-EDE6195B8CB6} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{0A4CB475-8D84-4F42-A7C2-BF9CACBC7C26} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{0AE43986-A8A5-4348-9AA8-6194446B7DAB} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{0B04A504-9A06-421B-81BD-19E28A33242C} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{0B1B4022-9D51-4E86-A7E0-31BC23EFC258} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{0B1BD3F7-78A4-49D1-9555-662D870F225F} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{0B24C432-C3E3-4416-90DD-AB5C7CDEC92C} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{0CB22DD3-1EE4-4C51-9C26-83EC1FA5600F} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{0CB949EB-6074-4416-AA14-A0C35AD9A070} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{0D0FDEE3-1CA8-4135-BC57-3496312A3FDD} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{0D3B5643-5C7D-45E9-AD6D-1FDB4544874E} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{0D8FC0FE-F8B7-4767-A141-B012F0F132C1} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{0DEFD232-4856-49B2-86CB-DB9115258A1D} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{0E5322DB-3DDC-4D74-A7D2-A3FD0670ADAA} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{0EF7DEC7-562F-42B7-BBB0-2573EA123EEA} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{1054D89E-EEDB-4DD8-BC42-A81C8916B850} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{106AB754-BC39-462A-9485-93AE4B04DE3D} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{11B38C5B-747B-49F4-9009-F3C41838D045} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{126B05A4-7B3D-4D12-9202-F74771ADDB06} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{1329897D-3570-4F5C-86A6-F5F4C666CC7D} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{1389CDE7-7B80-40BE-B41B-7BE836473AA4} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{1581FA6D-3383-4D38-AF8E-150C64AF2AE1} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{158853E8-9D7C-41E2-8BD8-9604F28CD87C} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{1595CE8E-BA3E-439E-9615-CD72D216F65C} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{15BE1C3D-E97F-4700-8224-FB085C6FF340} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{1680D460-864E-4591-9014-1102F1C65FAB} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{16A9FDC5-7439-4D7B-BEBA-C2687AA0C55F} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{1963E495-F3A1-44BA-99AB-5ADF7A2E9FDD} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{19AB08CD-DAD6-4117-BE7C-BC46C529B98A} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{19CF222A-5C52-4300-8A76-93923C8642E8} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{1A2EEA12-F8A6-472E-A1A0-152BA1B38080} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{1A4D5AAF-EB70-413A-AF63-516453B13C93} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{1B60193A-63FB-43F7-89E2-CC570D2B7FDE} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{1C52DDFF-2152-49A1-9E0F-A7A797B185CF} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{1D15AF68-5868-4CE7-BE7E-354DDB194CCE} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{1DBF0C4C-E23C-4250-B2D5-BE5F9CFF46BC} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{1F54EF21-0E0C-491B-8CC3-322CC739211F} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{1F5EF590-3AB0-4DEB-ADDF-BC7B93AA3082} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{205D6E52-72A4-4B63-BB49-ADE79688A524} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{20E78FD0-1991-44DA-A4CE-5E3954E0C949} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{20F48920-5211-4832-A152-A519F184E007} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{21420CDA-5782-48B0-A1F9-84E05140E230} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{21967FE2-0817-448A-A64A-939EB2DDBFA5} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{21AE9CAF-E95B-425B-8754-0A27AA9465BA} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{21CA621B-E50A-472A-847C-FBF04EE62F87} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{22C70DCE-7F34-4A1B-A7E8-35B999B8B85A} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{23580126-22C7-46DA-8C14-6099F4430226} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{23999911-5B73-468F-9375-A078668BA63B} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{23F0262E-0190-4918-BF04-18E574C08F9D} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{25375805-9DDA-4C49-814E-F6C6B4BE17A3} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{25FD80AF-0FDE-4D2D-94B6-B0E049EF6F40} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{2693FE96-5383-4B21-AF8A-F27588137930} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{27E83512-6D0E-485A-AF8E-7F3E1E1A8E62} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{28EA014A-655C-4108-A333-7DB1CC53AC88} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{29854870-375B-44C7-ABD4-7AA2F6EC0462} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{2992C811-E4DB-498C-B38B-81F3DB1A4DA7} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{2B3CE0D9-0E23-40F1-B74D-5E9D0C127C85} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{2C934490-6F32-4EAD-9481-F915E773545A} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{2DA0E0DE-6BE5-4C59-970E-0AC7E495780A} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{2E5731B2-2896-4982-A589-DA6958163BDB} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{2E93D087-3512-4819-BF8E-DA4D6DA2B2F2} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{31733273-77B5-4091-B9EB-8E898A098957} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{31A83BD4-AD65-4C83-AEA7-50D13DFD1762} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{31CEE0A0-72F1-4294-AF8D-ED677565D04F} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{31E859F0-737A-41A5-AF4C-4179B30BC3E7} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{32134E78-CB49-4586-BE6C-3456C122FAA3} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{349335AA-3FE4-4813-98F3-9D977811BF17} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{34B6340F-A286-41F8-852B-65F56334888B} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{365C4620-9DA1-4965-9E04-A530536F4305} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{36A32AE6-9EB3-4A91-8AAA-166C42F0FBBB} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{36E1A1A4-4322-4F1B-9315-BD8181910D46} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{37485184-E45A-4152-8E1A-24D29A0E49DD} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{37A02302-82B0-4B6D-8C42-BCB6BB3A24A7} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{37F5264F-549A-41CD-BE0B-25257CD53EC5} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{38C055D0-732F-464B-9031-C07001400538} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{38F0BAD0-8EEB-4443-910E-727C0393AB74} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{3A82997D-E8D8-4500-A448-3778467204C0} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{3A9AB17F-B00E-4F70-B91A-F54ACC5E98EB} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{3BDED1E2-7AE8-4695-A771-32C6C543AD3A} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{3C64A39D-A59B-4FDA-BC25-428966FAE5AA} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{3C9279F9-B61D-4DC2-8150-580F8EEEB6F3} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{3D8F9114-BB95-4AE5-8497-C7106122F3C1} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{40884688-7F6A-42CB-8955-D946A0929794} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{40A28195-38C3-4923-B942-35C1DAAD1E25} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{40C518C0-88BE-4887-906E-A8B43C0B4D2D} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{41BACFB5-5093-4D5F-BF9D-A1D1E6A8CF4C} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{42FEF9ED-6633-40EA-9949-3B0A358A980C} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{459808C7-D744-4FD4-ACAB-054F670E6835} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{45BFF9E5-C3ED-4E12-8571-07A02CEFCA6F} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{470C5D3A-32B9-4BA2-AA2F-543F2324FAA0} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{49DF1D02-3939-4A05-B3F7-D3B5A1233E71} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{4A71EF3D-9EAD-41F7-88C8-938CD5478988} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{4A9AA2E2-5B26-4143-A9BA-8341D8BBC6F3} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{4B7F486E-B116-423C-AEF5-D5A125D3E2EB} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{4F3EB7B1-FA7C-4AA7-B140-D3E0A89A73B9} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{4FCF1CA3-2CAE-46D9-BAE1-38AAEF016A6C} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{523E0715-A6E2-4957-8C70-4F19FABCAE2A} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{5379B56C-D56C-4C9C-8A3F-5974DBF0285F} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{5396C176-EA07-4C3F-B200-55E7902C1428} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{53B38612-BF0F-46E4-89E8-CE6268F8616C} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{53E0B980-584E-44D4-A48E-4B77D4534F7C} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{549BA720-B0F5-4DA6-8BAB-1F2BAA90A8E4} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{54ECD41D-306E-463B-8405-939AEF3CE193} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{55765360-7FFF-4C69-B6A7-6CC2D854F31D} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{557FE491-78A7-472C-A995-098B34DF38C4} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{56AC7BCA-5993-4EC9-9533-01211A59C72E} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{5717A741-0E0E-4F6A-BE25-14490F6A6FB6} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{574E0BCD-0496-4B1B-BC1E-767B4A6AA503} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{576FB818-EB46-4F96-BC9A-DC92E52C60FC} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{59183DD4-C05A-45B5-AC36-1B9CE25C572A} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{595C1F35-C52F-484C-B8C7-0571F35B72A3} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{5968F768-46A4-4778-960B-2E3A84E36A35} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{59C71D37-1279-453E-B46C-EB2EC23C8E68} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{5A4E8F29-DBEC-4DEE-98BD-33206C904D2D} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{5AE862FE-DA0C-4525-955A-3B79656ED5AE} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{5C1ACAA8-4909-4094-9948-2AA4F3CA2A20} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{5D087120-C0D2-44F9-9088-4A7023798134} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{6206C369-E626-4BB9-B036-B7BFCAF90EB6} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{621B74E3-E58E-4077-89B0-83DA968B1135} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{629F4816-A658-4782-85F9-A7C5AA75060B} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{62CD2385-336A-4A35-8CBF-332E383738F9} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{63F98445-16F7-4F84-8FFF-E6193882A0D1} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{646C78EF-4890-4384-BB04-F94AB0A751F8} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{64AAF5A3-F208-4F98-8D80-7E30B70AD546} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{65868299-E2C7-486A-805A-F34A5843FF33} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{65E72736-4985-4A76-B67D-CB21F7877E8B} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{663D7193-FE90-4621-8C61-68965C295B6D} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{68477E8D-6CBA-4A53-AF60-3F3B7FE0D49B} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{6983F02D-BCEC-4939-90BF-A3877EC56B59} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{6C5DDA83-1F11-4862-89D5-B2744509A6B0} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{6CE12599-8ADD-436F-A4C1-DE395861F60A} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{6DC28880-3143-4AB9-9416-B6B5AFBE0855} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{6DD01E4B-BE48-4A6B-A051-9E1C86AA7D38} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{6E669DD1-3A66-46E5-B34D-2A3DAAEF877B} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{6EF44B64-A1A6-4F40-8ACA-B58E344B114A} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{6F0B7593-BFEC-4E59-847E-B136B360472A} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{6F6D9E2F-2BF1-4E97-86C0-275F40778B32} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{7036C2D5-B6FB-439C-8D3D-F21F8C35F89C} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{718A8A5F-6E52-40AE-AAC6-1BA0F705E4A6} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{71941E70-F158-4C71-87EC-279ED2A51DC5} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{71F34509-A82B-4E22-9DC3-36A8557F9BEC} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{7243AFA6-C3DE-4667-B702-0116DA48C14B} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{728320AA-C45F-45BF-89D4-2A3714FBA11F} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{72BA0904-8F78-4A68-9E4D-CE1C8C712541} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{73B6D5E8-8644-46BC-8A10-2111AA97F871} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{73C4A720-9740-4FE5-9821-FCEBA20943FE} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{74004284-9B2B-4399-A246-725CD2B938C9} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{74173CB3-F406-4069-A4EC-F7CB6D6751ED} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{745330E7-1201-42C9-AC66-45926C7D286C} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{745983CB-B68C-4DDC-80B0-CC8772D4E857} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{74CB2337-C4B5-4370-AFA4-4739D601C245} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{75280C66-E029-473D-9F3D-E9ED54236828} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{76B1D470-7DA3-4589-B652-5EE2816ED713} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{77609FF1-1BC6-41CD-AFCC-751780D6D6D4} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{77CA7CEB-6094-4B05-AD73-ED30216B2F50} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{77E4EFF0-39D9-4FD3-873A-3DDFE894EA4D} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{77F47BC3-985D-4293-91EC-DE6262C4F848} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{7817C0FA-2902-462F-BCCC-0903F13E0577} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{79425119-AA80-4B68-9790-CC83AAAC95C7} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{7AE771FD-74BD-4A18-ADB9-8AE4C8A7D90E} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{7B2CFCE7-E3A5-4334-A9DA-A66284FB6236} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{7B6B0CB0-B3C8-479D-AD30-54C05FEE5680} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{7C38C976-C84F-4A79-8310-24D44E5D5FC1} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{7CF53DDE-E5AE-4CA5-B3A2-8B96C45D34E9} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{7D6E454B-5292-4EB3-AF60-FFCBD06670B8} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{7D710A7F-AD86-4914-A4C1-862ACD192830} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{7DC499B4-4932-438E-8769-2BB1E81390C0} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{7DC55186-02D7-45A4-BA0D-792C6089FACA} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{7E475C11-12A6-484D-B5CC-A5414602AB76} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{7FD52627-3A78-4DC0-8710-8AB7498D7EB2} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{8061571E-76A4-478B-8340-09ECEA326D9E} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{80FDC87B-E50E-4199-B509-1B5DD36F93D6} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{81AB71D7-2AA1-4F5E-8784-B09CAE24DD89} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{834205FD-8EAE-4654-BC75-87C68CB2681B} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{83956504-6B0F-42D1-9D14-4DB8480EEE7B} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{83B0A643-464C-4D59-83B7-606B9307CED5} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{83DA1AF6-2A82-41FC-98F9-690DE09A045A} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{8613FB53-7D2B-4B3E-BC9C-F94DA2642663} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{87261ED5-989A-446D-9CB7-763EB2E172AA} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{87ABFD66-BAF0-4B18-9B3A-3595556EEC25} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{88FC62E7-C715-48A5-AF5E-265237E16E64} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{8BC2605D-AABF-479E-9933-AFDB06E71D44} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{8C8D2F9B-0BF4-4CA6-A01C-466C57BE05AC} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{8CBD0D6B-2484-4AA1-82C7-12E897D0DD35} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{8E3D07F4-6389-43F8-8239-62774A5B5336} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{8E84C971-F405-4190-ABA8-4AFBAEF8FAE5} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{8ED7C87A-9640-433E-B637-7EFE490B09CA} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{8EEAFD9A-A4B6-4CEF-A9D6-EBC325E62AA6} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{8F5CAA2E-2C90-4C16-8876-51E9E5B15342} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{9072B530-A99F-44C9-81AA-569E552DB7DA} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{916900D1-2E12-460C-BA8B-6CB6C1E59720} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{91CFD4EA-F9C7-410D-BF59-C5675553EC4D} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{92072977-1448-4829-85D3-EBC519A1827E} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{9303208E-EB9E-44CB-8D35-1BFC0D62FBAE} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{93811C0F-0E5E-4D6C-BEAA-3D2373EEFF57} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{962A50D5-F886-4610-A501-54C41171098A} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{98516E6E-1184-4227-91FD-88AACC7CF401} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{992C9C8E-C645-4525-87DC-9A6262A3212E} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{996F3D1A-A6C2-455B-BE83-7F51F37CCF51} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{9B7A46BC-CBA9-4B14-8B4E-AC51F31D5040} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{9BBACB09-0399-4369-BA6D-9ED3029E87F1} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{9CF707FD-D4F8-497D-A567-4B6FC3979877} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{9D2D850D-23E2-43CE-AC59-578623798C11} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{9D85A467-6802-48C1-9118-0B13EBF999DC} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{9E19200C-4B50-41F7-AA3B-BC94AFE65B7B} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{9E5FEC4C-7FCF-4F82-BD8C-945DD0EE6849} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{9EE42594-8AD8-4A44-ABAF-0D15B0F2264E} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{9F58FC77-F7AA-48E8-8C86-DA28D6D3AF3E} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{9FDA9FB6-B6EA-4E83-916A-3CE3B3A81813} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{A083A082-6475-4F6A-AFD8-3E55A1BF53BB} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{A1D28943-252D-4A7C-97A1-FEAB4BDFA1C0} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{A1E7D8B9-6DEF-44BC-9A10-22C33869A4E9} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{A24C5D3A-B9E8-4F47-8F6E-514749AFE343} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{A3BF196D-CCA9-43F4-986A-326481096CE2} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{A4B80836-DB52-48DF-A0B0-01EE0CC5C752} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{A4D2A183-D4BA-4CFA-8D3B-2429FB795772} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{A619F00F-CACC-4C74-9AD8-5D130DC6CF95} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{A6914EDF-C800-4E33-814D-687D5FB824FE} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{A6B5F154-C93F-462D-A3AA-AFDBCD9939F4} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{A7B095AE-A31B-4461-867C-5D3E9DA10EEF} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{A7E8D2D0-DFC1-4A1B-8374-64F81C87FC85} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{A82C3087-525C-4EC6-A232-C52FA2FE03CA} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{AAA64E25-73C0-4716-93F2-0F8459E02C4E} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{AAFED675-5D38-48C3-9F3F-40B8731CD5B6} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{ABC24CA7-1B81-4DAC-81A7-3DD392B98309} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{ACEEFE9F-E3CC-45E0-BAE8-F9CCA7978350} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{AD80F60D-D6C1-48D9-9AAF-8A17C03D1E6A} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{AE48FA56-21AD-499D-93DC-7EDE24790BAF} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{AE5E7DF0-E577-4CF2-9F4D-F36EA3B70322} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{AEFB0E08-7DC4-4CCF-BEC7-2FA641C9E407} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{B0371BF3-452E-4FBB-A7B4-B2BC23BC18CB} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{B27B37A4-6478-4ECD-A2CF-30AC4BE83568} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{B2B29FA9-3E31-4237-B537-D5F0BDCD2DE2} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{B2B7D65A-FA64-418C-91C6-AC8B0BC18391} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{B3BB664E-02AA-4C96-9EE2-BC934BDD72A3} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{B3D899B6-ADBB-4F53-8E79-EC9AB7256254} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{B3E00F39-6D54-45E3-9DF0-433338847039} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{B46F3624-09A7-49C1-A8B4-25ACEBBDF266} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{B52F3923-269C-4FDE-B723-5F31427D1224} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{B55E58D5-D3EB-4635-8475-79941508B021} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{B58EB6A0-8050-4D81-AA58-888917E7FDED} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{B5C672C4-04CE-49B2-A34F-1FAC57915144} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{B5F96596-8754-4BF5-BCE8-D2C2F55056C4} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{B60A48A5-0005-4809-9D0C-447F335A40A7} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{B662B879-D8BC-48F9-99F2-F2B0706C4A4B} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{B6C325AC-6209-46B5-93C4-4AE9D97D3B99} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{B755FEDD-DD78-4220-8722-D64271261640} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{B770DC0C-D6CF-4A06-A69C-06F387DE7B81} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{B8F31B97-E5F9-4394-81B0-2DE7A0AE7518} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{B99FC60B-69B2-434E-B0C1-5FC16563AA8B} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{BA14591D-FE18-4CCA-BB2C-00AA79DA4792} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{BA276B84-B679-44F0-B3AD-16245D492BAE} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{BA4D0AAE-7688-4E52-BFBA-D8E7C1D8A1A5} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{BAF533DC-24A1-4BC2-A2E7-560E98E2003E} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{BB9D54B6-87E5-4BFC-88E7-618B8025FFA3} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{BC241CE5-E90B-4101-98FA-0EAD167C3D8F} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{BCD7DE7C-F90A-4B3D-ACA4-9048E4063F9E} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{BEAAC8A4-4157-4A32-9BF7-372527653836} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{BF89C13F-8D41-4CB7-AA15-18BBF8465725} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{BFE443BD-83CB-46C7-9B1A-206EF39FBC65} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{BFF5A3FF-F7EE-4B32-8B05-CBFA8FBF3DB4} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{C0DD2BAA-7755-432F-BD31-9AE4E09B37C5} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{C145D66D-3059-40AC-B299-E0CBE8B3A8C1} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{C1EB5313-611D-4D92-9890-065C2FFB9CCE} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{C2F82370-1487-4297-9D09-5F45371CF2D8} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{C39C5ADE-18E1-4231-BF0D-880853BD462D} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{C4014135-2369-44F0-8E28-7D854D99B014} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{C430D9DC-2DD9-443E-8852-469584231B51} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{C4A666BA-EBE6-4A23-BAF1-D4A95E8CF5E2} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{C4AC93BC-4749-46CB-B838-87A7E996DF28} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{C577CBFA-7E31-47C8-AAD7-AAECF480C3E2} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{C5D5FD1E-27C7-4AD2-94F5-DBE13C48961F} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{C66C2C3F-CEEA-4468-96E3-A20AF0AB9D36} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{C73DB54E-0140-4E0C-874F-62F1AF5119EE} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{C8730C98-E267-4C73-BEDF-B97B1E5E4156} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{CA899448-8AD2-49DB-9671-35A0D40593C0} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{CB2AB1CA-B69B-4AF7-9930-CA02B1DABF67} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{CB6D80F0-03AF-4FF0-A56E-86B83FA9224F} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{CB9D9CE9-03FF-40D6-9E54-9C90B0BB8D81} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{CC0CE409-19EB-4264-9D3B-0300ADC7B3D2} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{CE44094A-4C25-4EA4-82AB-FF860F706FE9} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{CF541CCD-FC4E-4490-AB62-E2FB18B44869} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{D097B89A-4F20-472D-9FC4-0E4A22246DE0} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{D2E4D970-7481-4461-98D7-516687CCF952} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{D35CA186-4193-4C5F-AAEB-FD3D19426044} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{D3A2BE9C-5B0A-4EF3-AAD6-EAFF6592631D} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{D433EAB9-4BE8-4EDB-A228-35A69D3666E5} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{D4EF0734-5EBF-4435-99D8-560D985CBC8F} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{D5DD635F-1166-4027-BB22-4E37F90211A9} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{D62211EF-7863-42B9-A546-5673319E2D4A} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{D6B44120-F102-4204-94F5-EA18ADACAE34} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{D7021EDF-22E4-4A89-A5F6-7417B9119CE1} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{D7D6EE59-CFDE-4D5D-9EAC-E3AABEF0A621} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{D7FA9AA7-B572-46B2-B4B3-7086DE16E2DE} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{D8733E65-9AC1-4FC5-B6EE-AC13F06661CD} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{DAA29049-5DEF-4AA1-BFFC-BF8301FD7B0B} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{DADDA492-F513-43EA-A527-D55D901B8B6A} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{DD0CF94F-F7F9-47CC-9D9C-B9222829AFD4} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{DE73E46C-719D-498B-A59B-86C3A479595A} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{E09D522F-2BD0-4735-93BD-CC770352907F} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{E0E513D4-83E7-49C8-B9E2-6BBAA126869D} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{E1D42687-A780-47DB-8999-B20FB62C00D0} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{E250ECE0-623B-4DFD-9B38-0D909C62F710} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{E42102B9-0DC8-40AB-B394-95B34A76FAF1} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{E4CB639C-A693-4901-831B-FA0AC6A12A07} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{E5F45970-60E9-4231-9F65-38F1300499E3} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{E616D20E-8662-4C4A-950D-0D0868856A14} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{E619E1A7-9A6D-4086-9330-206ED322B49A} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{E7593D42-70B3-4D99-A404-D0CC4AC2A839} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{E7903370-1745-42EF-BF57-524EF992829F} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{E7A38FAF-2550-47B5-885F-F02D3228CA7C} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{E8523DEC-4557-4A62-9ED7-0BFB52E78C26} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{E8686EAF-03D0-474B-83C4-36FB41DE2836} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{E88D568C-3DC9-4CB3-B045-9CF783693B4C} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{E8F0D071-719A-4BBC-8C79-C789E539338A} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{E9023A6B-F697-4C22-BEDE-9AF4D31E9E57} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{E90E07BF-172B-46BC-8733-AAB36A32D9FC} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{E91721C6-630B-4208-BE40-CB37D5D9CFA9} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{E9342BC0-A085-490F-B4DD-65DAF12412F0} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{EA4EB421-6337-4B08-84A1-F4B00BEAE76C} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{EA5E5DE3-5379-4361-82B3-F47D71B6002E} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{EA7E0E0D-E903-45F0-8C32-C5E30BB7D192} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{EB92F74A-5911-4C2F-8CA8-9970A0E26AB0} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{EBC3D796-5935-4E20-B5D2-4E996E1AD979} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{ECB54DAB-7B4B-4792-B669-4E5C518C544F} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{ECBC57E9-CA88-4E6A-832A-8F3230E583A0} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{EDEECAF2-AB3D-4E71-B046-7D735314064C} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{EF3A97CF-8625-47FB-8B3A-C12CDCB3E2CC} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{EFC8DBB0-7AC0-4921-A757-7E5C07EBD9F7} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{EFE29AC1-A2D7-486A-93B8-B43191B34EE2} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{F0267C6E-2479-4207-BFED-D6427E50D072} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{F0949C68-86C8-4604-99EA-10DF1FE7BEA2} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{F0E5B054-35D7-4363-84D7-DCE085D791A6} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{F1848CF8-4244-445D-B369-BD6A4EAC5B31} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{F1BA61BE-9CE1-482E-9C66-9F6769E0676B} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{F1C77A72-C7AB-4F95-866D-E09ABE2D8710} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{F576F7A7-6929-475C-A05C-F6F60B86957C} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{F6859B93-5B3F-4BCA-AB13-F48254A5ABF0} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{F73B7452-CC27-4917-9883-9B40FB2FC47C} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{F87897C8-C1C7-4BC2-ADCA-5B6783B3FE19} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{FA1BC4A1-785B-4B8D-A350-89E8BB3FD735} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{FA8A0952-D4D4-421B-BE60-4D357BFC2571} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{FB618B8D-33A1-477F-AD7D-95EE34A6CCDA} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{FB67B70E-1BEB-4C98-9E14-D0FEE6108A18} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{FC0DDE64-1948-496F-93B5-CEB2B32F4765} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{FCA2305E-4D87-46FF-A8B4-F4B00ABEB38F} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{FDA28303-17B9-47A0-896F-012CFA86AE36} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{FF530FD9-61F1-4CD2-9E3D-ECC5BAEA3886} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{FFA5B88B-7B73-40DF-BE41-DB56818B87B0} Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{FFF77AC1-2F0E-4B67-9D55-7938D7484B88} ~~~ FireFox Emptied folder: C:\Users\Rachel\AppData\Roaming\mozilla\firefox\profiles\5au671d5.default\minidumps [99 files] ~~~ Event Viewer Logs were cleared ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Scan was completed on 18.10.2014 at 15:49:12,84 End of JRT log ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ |
18.10.2014, 21:18 | #18 |
| Keine Downloads mehr möglich und überall Werbung FRST Logfile:
__________________FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 16-10-2014 Ran by Rachel (administrator) on RACHEL-VAIO on 18-10-2014 15:50:20 Running from C:\Users\Rachel\Desktop Loaded Profile: Rachel (Available profiles: Rachel) Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: Deutsch (Deutschland) Internet Explorer Version 11 Boot Mode: Normal Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (If an entry is included in the fixlist, the process will be closed. The file will not be moved.) (Microsoft Corporation) C:\Program Files\Microsoft Security Client\MsMpEng.exe (AMD) C:\Windows\System32\atiesrxx.exe (AMD) C:\Windows\System32\atieclxx.exe (Sony Corporation) C:\Program Files\Sony\VAIO Power Management\SPMgr.exe (Alps Electric Co., Ltd.) C:\Program Files\Apoint\Apoint.exe (Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe (Alps Electric Co., Ltd.) C:\Program Files\Apoint\ApMsgFwd.exe (Veoh Networks) C:\Program Files (x86)\Veoh Networks\VeohWebPlayer\veohwebplayer.exe (Alps Electric Co., Ltd.) C:\Program Files\Apoint\ApntEx.exe (ALPS) C:\Program Files\Apoint\Apvfb.exe (Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe (Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe (Sony Corporation) C:\Program Files (x86)\SONY\ISB Utility\ISBMgr.exe (Sony Corporation) C:\Program Files (x86)\SONY\PMB\PMBVolumeWatcher.exe (Sony Corporation) C:\Program Files (x86)\SONY\Marketing Tools\MarketingTools.exe () C:\Program Files (x86)\dcmsvc\dcmsvc.exe () C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe (Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe (InterVideo) C:\Program Files (x86)\Common Files\InterVideo\RegMgr\iviRegMgr.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Sony Corporation) C:\Program Files (x86)\SONY\PMB\PMBDeviceInfoProvider.exe (Protexis Inc.) C:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe (ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe (ArcSoft, Inc.) C:\Program Files (x86)\ArcSoft\Magic-i Visual Effects 2\uCamMonitor.exe (Sony Corporation) C:\Program Files (x86)\SONY\VAIO Event Service\VESMgr.exe (Microsoft Corporation) C:\Windows\SysWOW64\dllhost.exe (Sony Corporation) C:\Program Files (x86)\Common Files\Sony Shared\VAIO Content Folder Watcher\VCFw.exe (Sony Corporation) C:\Program Files\Sony\VCM Intelligent Analyzing Manager\VcmIAlzMgr.exe (Sony Corporation) C:\Program Files (x86)\SONY\VAIO Event Service\VESMgrSub.exe (Sony Corporation) C:\Program Files\Sony\VAIO Smart Network\VSNService.exe (Sony Corporation) C:\Program Files (x86)\Common Files\Sony Shared\VAIO Entertainment Platform\VzCdb\VzCdbSvc.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Sony Corporation) C:\Program Files\Sony\VAIO Smart Network\VSNClient.exe (Intel Corporation) C:\Program Files\Sony\VAIO Care\ESRV\esrv.exe (Sony Corporation) C:\Program Files\Sony\VAIO Power Management\SPMService.exe (Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe (Microsoft Corporation) C:\Windows\SysWOW64\dllhost.exe (Sony Corporation) C:\Program Files\Sony\VAIO Update\VAIOUpdt.exe (Sony Corporation) C:\Program Files\Sony\VAIO Update\VUAgent.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe (Intel Corporation) C:\Program Files\Sony\VAIO Care\ESRV\esrv_svc.exe (Intel Corporation) C:\Program Files\Sony\VAIO Care\VCPerfService.exe () C:\Program Files\Sony\VAIO Care\listener.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (Sony Corporation) C:\Program Files\Sony\VAIO Care\VCSystemTray.exe (Sony Corporation) C:\Program Files\Sony\VAIO Care\VCService.exe (Sony Corporation) C:\Program Files\Sony\VAIO Care\VCAgent.exe ==================== Registry (Whitelisted) ================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [9636896 2009-12-16] (Realtek Semiconductor) HKLM\...\Run: [Apoint] => C:\Program Files\Apoint\Apoint.exe [208384 2009-11-04] (Alps Electric Co., Ltd.) HKLM\...\Run: [MSC] => c:\Program Files\Microsoft Security Client\msseces.exe [1331288 2014-08-22] (Microsoft Corporation) HKLM-x32\...\Run: [IAStorIcon] => C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [284696 2009-11-21] (Intel Corporation) HKLM-x32\...\Run: [ISBMgr.exe] => C:\Program Files (x86)\Sony\ISB Utility\ISBMgr.exe [320880 2009-08-26] (Sony Corporation) HKLM-x32\...\Run: [NortonOnlineBackupReminder] => C:\Program Files (x86)\Symantec\Norton Online Backup\Activation\NobuActivation.exe [538472 2009-06-17] (Symantec Corporation) HKLM-x32\...\Run: [PMBVolumeWatcher] => C:\Program Files (x86)\Sony\PMB\PMBVolumeWatcher.exe [597792 2009-10-24] (Sony Corporation) HKLM-x32\...\Run: [MarketingTools] => C:\Program Files (x86)\Sony\Marketing Tools\MarketingTools.exe [26624 2010-02-17] (Sony Corporation) HKLM-x32\...\Run: [dcmsvc] => C:\Program Files (x86)\dcmsvc\dcmsvc.exe [30440 2009-04-07] () HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [43848 2014-01-20] (Apple Inc.) HKLM-x32\...\Run: [DivXUpdate] => C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe [1259376 2011-07-29] () HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [102400 2010-09-20] (Advanced Micro Devices, Inc.) HKLM-x32\...\Run: [iTunesHelper] => C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2014-01-20] (Apple Inc.) HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959176 2014-08-21] (Adobe Systems Incorporated) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [507776 2014-10-07] (Oracle Corporation) Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation) Winlogon\Notify\VESWinlogon-x32: VESWinlogon.dll [X] HKU\S-1-5-21-3303785528-1083530386-3593389926-1001\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [20584608 2013-11-14] (Skype Technologies S.A.) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Bluetooth.lnk ShortcutTarget: Bluetooth.lnk -> C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe (Broadcom Corporation.) Startup: C:\Users\Rachel2\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk ShortcutTarget: Dropbox.lnk -> C:\Users\Rachel\AppData\Roaming\Dropbox\bin\Dropbox.exe (No File) ShellIconOverlayIdentifiers: ["DropboxExt1"] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => No File ShellIconOverlayIdentifiers: ["DropboxExt2"] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => No File ShellIconOverlayIdentifiers: ["DropboxExt3"] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => No File ShellIconOverlayIdentifiers: ["DropboxExt4"] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => No File ShellIconOverlayIdentifiers: ["DropboxExt5"] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => No File ShellIconOverlayIdentifiers: ["DropboxExt6"] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => No File ShellIconOverlayIdentifiers: ["DropboxExt7"] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => No File ShellIconOverlayIdentifiers: ["DropboxExt8"] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => No File ShellIconOverlayIdentifiers-x32: ["DropboxExt1"] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => No File ShellIconOverlayIdentifiers-x32: ["DropboxExt2"] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => No File ShellIconOverlayIdentifiers-x32: ["DropboxExt3"] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => No File ShellIconOverlayIdentifiers-x32: ["DropboxExt4"] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => No File ShellIconOverlayIdentifiers-x32: ["DropboxExt5"] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => No File ShellIconOverlayIdentifiers-x32: ["DropboxExt6"] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => No File ShellIconOverlayIdentifiers-x32: ["DropboxExt7"] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => No File ShellIconOverlayIdentifiers-x32: ["DropboxExt8"] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => No File ==================== Internet (Whitelisted) ==================== (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.) HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation) BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre6\bin\jp2ssv.dll No File BHO-x32: MSS+ Identifier -> {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} -> C:\Program Files\Sony\MSS\3.8.141\McAfeeMSS_IE.dll (McAfee, Inc.) BHO-x32: DivX Plus Web Player HTML5 <video> -> {326E768D-4182-46FD-9C16-1449A49795F4} -> C:\Program Files (x86)\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll (DivX, LLC) BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\ssv.dll (Oracle Corporation) BHO-x32: Skype Browser Helper -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.) BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\jp2ssv.dll (Oracle Corporation) DPF: HKLM-x32 {5C051655-FCD5-4969-9182-770EA5AA5565} hxxp://messenger.zone.msn.com/binary/SolitaireShowdown.cab56986.cab DPF: HKLM-x32 {C345E174-3E87-4F41-A01C-B066A90A49B4} hxxp://trial.trymicrosoftoffice.com/trialoaa/buymsoffice_assets/framework/microsoft/wrc32.ocx DPF: HKLM-x32 {C3F79A2B-B9B4-4A66-B012-3EE46475B072} hxxp://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - No File Handler-x32: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.) Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies) Tcpip\Parameters: [DhcpNameServer] 192.168.178.1 FireFox: ======== FF ProfilePath: C:\Users\Rachel\AppData\Roaming\Mozilla\Firefox\Profiles\5au671d5.default FF Homepage: https://www.google.de/ FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_15_0_0_152.dll () FF Plugin: @divx.com/DivX VOD Helper,version=1.0.0 -> C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.) FF Plugin: @microsoft.com/GENUINE -> disabled No File FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation) FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_152.dll () FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll () FF Plugin-x32: @divx.com/DivX Browser Plugin,version=1.0.0 -> C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC) FF Plugin-x32: @divx.com/DivX VOD Helper,version=1.0.0 -> C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.) FF Plugin-x32: @java.com/DTPlugin,version=11.25.2 -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.25.2 -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @mcafee.com/McAfeeMssPlugin -> C:\Program Files\Sony\MSS\3.8.141\npMcAfeeMss.dll (McAfee, Inc.) FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation) FF Plugin-x32: @microsoft.com/OfficeLive,version=1.3 -> C:\Program Files (x86)\Microsoft\Office Live\npOLW.dll (Microsoft Corp.) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll No File FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nppdf32.dll (Adobe Systems Inc.) FF SearchPlugin: C:\Users\Rachel\AppData\Roaming\Mozilla\Firefox\Profiles\5au671d5.default\searchplugins\google-images.xml FF SearchPlugin: C:\Users\Rachel\AppData\Roaming\Mozilla\Firefox\Profiles\5au671d5.default\searchplugins\google-maps.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml FF Extension: Cliqz Beta - C:\Users\Rachel\AppData\Roaming\Mozilla\Firefox\Profiles\5au671d5.default\Extensions\cliqz@cliqz.com.xpi [2014-10-18] FF Extension: Adblock Plus - C:\Users\Rachel\AppData\Roaming\Mozilla\Firefox\Profiles\5au671d5.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2014-05-12] FF Extension: Skype Click to Call - C:\Program Files (x86)\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A} [2014-09-25] FF Extension: Java Console - C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0037-ABCDEFFEDCBA} [2014-09-25] FF Extension: Java Console - C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0038-ABCDEFFEDCBA} [2014-09-25] FF HKLM-x32\...\Firefox\Extensions: [{23fcfd51-4958-4f00-80a3-ae97e717ed8b}] - C:\Program Files (x86)\DivX\DivX Plus Web Player\firefox\DivXHTML5 FF Extension: DivX Plus Web Player HTML5 <video> - C:\Program Files (x86)\DivX\DivX Plus Web Player\firefox\DivXHTML5 [2012-04-30] FF HKCU\...\Firefox\Extensions: [cliqz@cliqz.com] - C:\Users\Rachel\AppData\Roaming\Mozilla\Firefox\Profiles\5au671d5.default\extensions\cliqz@cliqz.com Chrome: ======= CHR HKLM-x32\...\Chrome\Extension: [nneajnkjbffgblleaoojgaacokifdkhm] - C:\Program Files (x86)\DivX\DivX Plus Web Player\chrome\DivXHTML5\DivXHTML5.crx [2011-12-12] CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION ==================== Services (Whitelisted) ================= (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) S3 ACDaemon; C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [113152 2010-03-18] (ArcSoft Inc.) R2 ESRV_SVC; C:\Program Files\Sony\VAIO Care\ESRV\esrv_svc.exe [377768 2013-11-01] (Intel Corporation) S3 McComponentHostServiceSony; C:\Program Files\Sony\MSS\3.8.141\McCHSvc.exe [289256 2014-01-16] (McAfee, Inc.) R2 MsMpSvc; c:\Program Files\Microsoft Security Client\MsMpEng.exe [23784 2014-08-22] (Microsoft Corporation) S3 NisSrv; c:\Program Files\Microsoft Security Client\NisSrv.exe [368624 2014-08-22] (Microsoft Corporation) S3 Roxio UPnP Renderer 10; C:\Program Files (x86)\Roxio\Digital Home 10\RoxioUPnPRenderer10.exe [313840 2009-08-31] (Sonic Solutions) S2 Roxio Upnp Server 10; C:\Program Files (x86)\Roxio\Digital Home 10\RoxioUpnpService10.exe [362992 2009-08-31] (Sonic Solutions) R2 SampleCollector; C:\Program Files\Sony\VAIO Care\VCPerfService.exe [266168 2013-11-01] (Intel Corporation) S3 SOHDBSvr; C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDBSvr.exe [70952 2009-10-15] (Sony Corporation) S3 SOHPlMgr; C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHPlMgr.exe [91432 2009-10-15] (Sony Corporation) R2 uCamMonitor; C:\Program Files (x86)\ArcSoft\Magic-i Visual Effects 2\uCamMonitor.exe [104960 2008-09-18] (ArcSoft, Inc.) S3 USER_ESRV_SVC; C:\Program Files\Sony\VAIO Care\ESRV\esrv_svc.exe [377768 2013-11-01] (Intel Corporation) S3 VAIO Entertainment TV Device Arbitration Service; C:\Program Files (x86)\Common Files\Sony Shared\VAIO Entertainment Platform\VzHardwareResourceManager\VzHardwareResourceManager\VzHardwareResourceManager.exe [69632 2009-09-14] (Sony Corporation) [File not signed] R2 VCFw; C:\Program Files (x86)\Common Files\Sony Shared\VAIO Content Folder Watcher\VCFw.exe [642416 2009-09-14] (Sony Corporation) R2 VSNService; C:\Program Files\Sony\VAIO Smart Network\VSNService.exe [845312 2010-08-11] (Sony Corporation) [File not signed] R3 VUAgent; C:\Program Files\Sony\VAIO Update\vuagent.exe [1642544 2014-02-28] (Sony Corporation) R2 VzCdbSvc; C:\Program Files (x86)\Common Files\Sony Shared\VAIO Entertainment Platform\VzCdb\VzCdbSvc.exe [206336 2009-09-14] (Sony Corporation) [File not signed] S2 892cc6a3; "C:\Windows\system32\rundll32.exe" "c:\progra~3\perfor~1\PerformanceOptimizerSvc.dll",service ==================== Drivers (Whitelisted) ==================== (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) R2 6077757b; C:\Windows\system32\drivers\regi.sys [14112 2007-04-17] (InterVideo) R2 6077757b; C:\Windows\SysWOW64\drivers\regi.sys [11032 2007-04-17] (InterVideo) U5 AppMgmt; C:\Windows\system32\svchost.exe [27136 2009-07-14] (Microsoft Corporation) R3 ArcSoftKsUFilter; C:\Windows\System32\DRIVERS\ArcSoftKsUFilter.sys [19968 2009-05-26] (ArcSoft, Inc.) S3 ewsercd; C:\Windows\System32\DRIVERS\ewsercd.sys [112896 2013-02-09] (Huawei Technologies Co., Ltd.) [File not signed] S3 hwdatacard; C:\Windows\System32\DRIVERS\ewusbmdm.sys [116864 2013-02-09] (Huawei Technologies Co., Ltd.) [File not signed] S3 igfx; C:\Windows\System32\DRIVERS\igdkmd64.sys [7778176 2009-12-16] (Intel Corporation) [File not signed] S3 IntcDAud; C:\Windows\System32\DRIVERS\IntcDAud.sys [244736 2009-12-16] (Intel(R) Corporation) [File not signed] R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [269008 2014-07-17] (Microsoft Corporation) S3 NisDrv; C:\Windows\System32\DRIVERS\NisDrvWFP.sys [125584 2014-07-17] (Microsoft Corporation) S2 regi; C:\Windows\SysWOW64\drivers\regi.sys [11032 2007-04-17] (InterVideo) R3 semav6thermal64ro; C:\Windows\system32\drivers\semav6thermal64ro.sys [13792 2014-04-20] () S3 taphss6; C:\Windows\System32\DRIVERS\taphss6.sys [42184 2014-03-19] (Anchorfree Inc.) R3 yukonw7; C:\Windows\System32\DRIVERS\yk62x64.sys [395264 2009-11-12] () S3 catchme; \??\C:\ComboFix\catchme.sys [X] ==================== NetSvcs (Whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.) ==================== One Month Created Files and Folders ======== (If an entry is included in the fixlist, the file\folder will be moved.) 2014-10-18 15:50 - 2014-10-18 15:50 - 00020741 _____ () C:\Users\Rachel\Desktop\FRST.txt 2014-10-18 15:49 - 2014-10-18 15:49 - 00039613 _____ () C:\Users\Rachel\Desktop\JRT.txt 2014-10-18 15:44 - 2014-10-18 15:44 - 00000000 ____D () C:\Windows\ERUNT 2014-10-18 15:43 - 2014-10-18 15:43 - 01705698 _____ (Thisisu) C:\Users\Rachel\Desktop\JRT.exe 2014-10-18 15:41 - 2014-10-18 15:41 - 00009926 _____ () C:\Users\Rachel\Desktop\AdwCleaner[S0].txt 2014-10-18 15:35 - 2014-10-18 15:39 - 00000000 ____D () C:\AdwCleaner 2014-10-18 15:35 - 2014-10-18 15:35 - 01976320 _____ () C:\Users\Rachel\Downloads\AdwCleaner_4.000.exe 2014-10-18 14:56 - 2014-10-18 14:56 - 00031865 _____ () C:\ComboFix.txt 2014-10-18 14:20 - 2014-10-18 14:56 - 00000000 ____D () C:\ComboFix 2014-10-18 14:15 - 2011-06-26 08:45 - 00256000 _____ () C:\Windows\PEV.exe 2014-10-18 14:15 - 2010-11-07 19:20 - 00208896 _____ () C:\Windows\MBR.exe 2014-10-18 14:15 - 2009-04-20 06:56 - 00060416 _____ (NirSoft) C:\Windows\NIRCMD.exe 2014-10-18 14:15 - 2000-08-31 02:00 - 00518144 _____ (SteelWerX) C:\Windows\SWREG.exe 2014-10-18 14:15 - 2000-08-31 02:00 - 00406528 _____ (SteelWerX) C:\Windows\SWSC.exe 2014-10-18 14:15 - 2000-08-31 02:00 - 00098816 _____ () C:\Windows\sed.exe 2014-10-18 14:15 - 2000-08-31 02:00 - 00080412 _____ () C:\Windows\grep.exe 2014-10-18 14:15 - 2000-08-31 02:00 - 00068096 _____ () C:\Windows\zip.exe 2014-10-18 14:06 - 2014-10-18 14:56 - 00000000 ____D () C:\Qoobox 2014-10-18 14:05 - 2014-10-18 14:54 - 00000000 ____D () C:\Windows\erdnt 2014-10-18 14:04 - 2014-10-18 14:05 - 05583559 ____R (Swearware) C:\Users\Rachel\Downloads\ComboFix.exe 2014-10-18 10:27 - 2014-10-18 10:32 - 00050094 _____ () C:\Users\Rachel\Downloads\Addition.txt 2014-10-18 10:25 - 2014-10-18 10:32 - 00049261 _____ () C:\Users\Rachel\Downloads\FRST.txt 2014-10-18 10:24 - 2014-10-18 15:50 - 00000000 ____D () C:\FRST 2014-10-18 10:24 - 2014-10-18 10:24 - 02112000 _____ (Farbar) C:\Users\Rachel\Desktop\FRST64.exe 2014-10-18 10:22 - 2014-10-18 10:22 - 01102848 _____ (Farbar) C:\Users\Rachel\Downloads\FRST.exe 2014-10-18 02:35 - 2014-10-18 02:35 - 00416576 _____ (Kaspersky Lab) C:\Users\Rachel\Downloads\de-de.setup.exe 2014-10-18 01:30 - 2011-05-13 12:16 - 00493056 _____ ( datenhaus GmbH) C:\Windows\SysWOW64\dhRichClient3.dll 2014-10-18 01:30 - 2011-03-25 20:42 - 00338432 _____ () C:\Windows\SysWOW64\sqlite36_engine.dll 2014-10-17 21:52 - 2014-10-10 04:05 - 00507392 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll 2014-10-17 21:52 - 2014-10-10 04:05 - 00276480 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll 2014-10-17 21:52 - 2014-10-10 04:00 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll 2014-10-17 21:52 - 2014-10-07 04:54 - 00378552 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2014-10-17 21:52 - 2014-10-07 04:04 - 00331448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2014-10-17 21:52 - 2014-09-29 02:58 - 03198976 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2014-10-17 21:52 - 2014-09-26 00:46 - 00365056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2014-10-17 21:52 - 2014-09-26 00:46 - 00243200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2014-10-17 21:52 - 2014-09-26 00:46 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2014-10-17 21:52 - 2014-09-26 00:43 - 11807232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2014-10-17 21:52 - 2014-09-26 00:32 - 02017280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2014-10-17 21:52 - 2014-09-26 00:31 - 02108416 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2014-10-17 21:52 - 2014-09-19 03:56 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2014-10-17 21:52 - 2014-09-19 03:55 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2014-10-17 21:52 - 2014-09-19 03:44 - 17484800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2014-10-17 21:52 - 2014-09-19 03:40 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2014-10-17 21:52 - 2014-09-19 03:39 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2014-10-17 21:52 - 2014-09-19 03:30 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2014-10-17 21:52 - 2014-09-19 03:25 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2014-10-17 21:52 - 2014-09-19 03:14 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2014-10-17 21:52 - 2014-09-19 03:14 - 00446464 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2014-10-17 21:52 - 2014-09-19 03:06 - 00072704 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2014-10-17 21:52 - 2014-09-19 03:01 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2014-10-17 21:52 - 2014-09-19 03:01 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2014-10-17 21:52 - 2014-09-19 02:55 - 02187264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2014-10-17 21:52 - 2014-09-19 02:54 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2014-10-17 21:52 - 2014-09-19 02:53 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2014-10-17 21:52 - 2014-09-19 02:51 - 00440320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2014-10-17 21:52 - 2014-09-19 02:49 - 00597504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2014-10-17 21:52 - 2014-09-19 02:42 - 00731136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2014-10-17 21:52 - 2014-09-19 02:42 - 00710656 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2014-10-17 21:52 - 2014-09-19 02:36 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2014-10-17 21:52 - 2014-09-19 02:20 - 00607744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2014-10-17 21:52 - 2014-09-19 02:14 - 01447936 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2014-10-17 21:52 - 2014-09-19 01:53 - 01190400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2014-10-17 21:52 - 2014-06-19 00:23 - 01943696 _____ (Microsoft Corporation) C:\Windows\system32\dfshim.dll 2014-10-17 21:52 - 2014-06-19 00:23 - 01131664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dfshim.dll 2014-10-17 21:52 - 2014-06-19 00:23 - 00156824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscorier.dll 2014-10-17 21:52 - 2014-06-19 00:23 - 00156312 _____ (Microsoft Corporation) C:\Windows\system32\mscorier.dll 2014-10-17 21:52 - 2014-06-19 00:23 - 00081560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscories.dll 2014-10-17 21:52 - 2014-06-19 00:23 - 00073880 _____ (Microsoft Corporation) C:\Windows\system32\mscories.dll 2014-10-17 21:51 - 2014-09-26 00:50 - 13619200 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2014-10-17 21:51 - 2014-09-19 04:25 - 23631360 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2014-10-17 21:51 - 2014-09-19 03:41 - 02796032 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2014-10-17 21:51 - 2014-09-19 03:40 - 00547328 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2014-10-17 21:51 - 2014-09-19 03:38 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2014-10-17 21:51 - 2014-09-19 03:36 - 05829632 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2014-10-17 21:51 - 2014-09-19 03:31 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2014-10-17 21:51 - 2014-09-19 03:27 - 00595968 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2014-10-17 21:51 - 2014-09-19 03:26 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2014-10-17 21:51 - 2014-09-19 03:25 - 04201472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2014-10-17 21:51 - 2014-09-19 03:25 - 00758272 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2014-10-17 21:51 - 2014-09-19 03:18 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2014-10-17 21:51 - 2014-09-19 03:02 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2014-10-17 21:51 - 2014-09-19 03:01 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2014-10-17 21:51 - 2014-09-19 03:00 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2014-10-17 21:51 - 2014-09-19 02:59 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2014-10-17 21:51 - 2014-09-19 02:58 - 00289280 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2014-10-17 21:51 - 2014-09-19 02:50 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2014-10-17 21:51 - 2014-09-19 02:40 - 01249280 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2014-10-17 21:51 - 2014-09-19 02:33 - 02309632 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2014-10-17 21:51 - 2014-09-19 02:32 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2014-10-17 21:51 - 2014-09-19 02:18 - 01068032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2014-10-17 21:51 - 2014-09-19 01:59 - 01810944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2014-10-17 21:51 - 2014-09-19 01:59 - 00775168 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2014-10-17 21:51 - 2014-09-19 01:52 - 00678400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2014-10-17 21:51 - 2014-09-18 04:00 - 03241472 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll 2014-10-17 21:51 - 2014-09-18 03:32 - 02363904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll 2014-10-17 21:51 - 2014-09-04 07:23 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\rastls.dll 2014-10-17 21:51 - 2014-09-04 07:04 - 00372736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rastls.dll 2014-10-17 21:51 - 2014-07-17 03:39 - 03221504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll 2014-10-17 21:50 - 2014-09-13 03:58 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\packager.dll 2014-10-17 21:50 - 2014-09-13 03:40 - 00067072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\packager.dll 2014-10-17 21:50 - 2014-07-17 04:07 - 03722240 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll 2014-10-17 21:50 - 2014-07-17 04:07 - 01118720 _____ (Microsoft Corporation) C:\Windows\system32\mstsc.exe 2014-10-17 21:50 - 2014-07-17 04:07 - 00681984 _____ (Microsoft Corporation) C:\Windows\system32\termsrv.dll 2014-10-17 21:50 - 2014-07-17 04:07 - 00455168 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe 2014-10-17 21:50 - 2014-07-17 04:07 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\winsta.dll 2014-10-17 21:50 - 2014-07-17 04:07 - 00150528 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorekmts.dll 2014-10-17 21:50 - 2014-07-17 04:07 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll 2014-10-17 21:50 - 2014-07-17 04:07 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll 2014-10-17 21:50 - 2014-07-17 03:40 - 00157696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winsta.dll 2014-10-17 21:50 - 2014-07-17 03:39 - 01051136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstsc.exe 2014-10-17 21:50 - 2014-07-17 03:39 - 00131584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aaclient.dll 2014-10-17 21:50 - 2014-07-17 03:39 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll 2014-10-17 21:50 - 2014-07-17 03:39 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll 2014-10-17 21:50 - 2014-07-17 03:21 - 00212480 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpwd.sys 2014-10-17 21:50 - 2014-07-17 03:21 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tssecsrv.sys 2014-10-16 18:51 - 2014-10-16 18:51 - 00638888 _____ (Oracle Corporation) C:\Users\Rachel\Downloads\jxpiinstall(5).exe 2014-10-16 18:31 - 2014-10-16 18:31 - 00000000 ____D () C:\ProgramData\b5a9dd818519d486 2014-09-30 20:50 - 2014-09-25 04:08 - 00371712 _____ (Microsoft Corporation) C:\Windows\system32\qdvd.dll 2014-09-30 20:50 - 2014-09-25 03:40 - 00519680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qdvd.dll 2014-09-29 20:15 - 2014-09-29 20:15 - 00001145 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VAIO Update.lnk 2014-09-25 20:41 - 2014-10-18 01:31 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2014-09-24 21:11 - 2014-09-24 21:11 - 00003688 _____ () C:\Windows\System32\Tasks\klcp_update 2014-09-24 21:11 - 2014-09-24 21:11 - 00000000 ____D () C:\Users\Rachel\AppData\Roaming\MPC-HC 2014-09-24 21:11 - 2014-09-24 21:11 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack 2014-09-24 21:10 - 2014-09-24 21:10 - 00000000 ____D () C:\Program Files (x86)\K-Lite Codec Pack 2014-09-24 21:10 - 2014-09-23 20:00 - 00127488 _____ () C:\Windows\system32\ff_vfw.dll 2014-09-24 21:10 - 2014-09-23 20:00 - 00112640 _____ () C:\Windows\SysWOW64\ff_vfw.dll 2014-09-24 21:10 - 2014-07-22 20:51 - 03502080 _____ (x264vfw project) C:\Windows\system32\x264vfw64.dll 2014-09-24 21:10 - 2014-07-22 20:50 - 03510784 _____ (x264vfw project) C:\Windows\SysWOW64\x264vfw.dll 2014-09-24 21:10 - 2014-06-14 16:03 - 00260696 _____ () C:\Windows\system32\unrar64.dll 2014-09-24 21:10 - 2014-06-14 16:03 - 00218200 _____ () C:\Windows\SysWOW64\unrar.dll 2014-09-24 21:10 - 2012-07-21 12:55 - 00180736 _____ (fccHandler) C:\Windows\system32\ac3acm.acm 2014-09-24 21:10 - 2012-07-21 12:54 - 00122880 _____ (fccHandler) C:\Windows\SysWOW64\ac3acm.acm 2014-09-24 21:10 - 2011-12-07 19:37 - 00148992 _____ ( ) C:\Windows\system32\lagarith.dll 2014-09-24 21:10 - 2011-12-07 19:32 - 00216064 _____ ( ) C:\Windows\SysWOW64\lagarith.dll 2014-09-24 21:10 - 2011-06-24 16:45 - 00258560 _____ () C:\Windows\system32\xvidvfw.dll 2014-09-24 21:10 - 2011-06-24 16:44 - 00243200 _____ () C:\Windows\SysWOW64\xvidvfw.dll 2014-09-24 21:10 - 2011-06-24 16:31 - 00703488 _____ () C:\Windows\system32\xvidcore.dll 2014-09-24 21:10 - 2011-06-24 16:28 - 00650752 _____ () C:\Windows\SysWOW64\xvidcore.dll 2014-09-24 21:08 - 2014-09-24 21:43 - 00000000 ____D () C:\Windows\System32\Tasks\Abelssoft 2014-09-24 21:08 - 2014-09-24 21:43 - 00000000 ____D () C:\Program Files (x86)\CHIP Updater 2014-09-24 21:08 - 2014-09-24 21:08 - 00000000 ____D () C:\Users\Rachel\AppData\Roaming\Abelssoft 2014-09-24 21:08 - 2014-09-24 21:08 - 00000000 ____D () C:\Users\Rachel\AppData\Local\Abelssoft 2014-09-24 21:08 - 2014-09-24 21:08 - 00000000 ____D () C:\ProgramData\XDMessagingv4 2014-09-24 21:07 - 2014-09-24 21:07 - 01101648 _____ () C:\Users\Rachel\Downloads\K Lite Mega Codec Pack - CHIP-Installer.exe 2014-09-23 19:51 - 2014-09-10 00:11 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll 2014-09-23 19:51 - 2014-09-09 23:47 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll 2014-09-22 20:44 - 2014-10-18 10:05 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service 2014-09-22 20:44 - 2014-10-18 01:31 - 00001163 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk 2014-09-22 20:44 - 2014-10-18 01:31 - 00001151 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk 2014-09-22 20:42 - 2014-09-22 20:42 - 35100664 _____ () C:\Users\Rachel\Downloads\Firefox_Setup_de32.0.2 (1).exe 2014-09-22 20:22 - 2014-10-18 15:39 - 00001083 _____ () C:\Users\Rachel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Search.lnk ==================== One Month Modified Files and Folders ======= (If an entry is included in the fixlist, the file\folder will be moved.) 2014-10-18 15:48 - 2009-07-14 06:45 - 00022704 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2014-10-18 15:48 - 2009-07-14 06:45 - 00022704 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2014-10-18 15:47 - 2010-07-20 20:09 - 02019656 _____ () C:\Windows\WindowsUpdate.log 2014-10-18 15:40 - 2010-02-17 07:21 - 00643326 _____ () C:\Windows\PFRO.log 2014-10-18 15:40 - 2009-07-14 07:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT 2014-10-18 15:40 - 2009-07-14 06:51 - 00172343 _____ () C:\Windows\setupact.log 2014-10-18 15:18 - 2012-10-13 14:12 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job 2014-10-18 14:56 - 2009-07-14 05:20 - 00000000 __RHD () C:\Users\Default 2014-10-18 14:47 - 2009-07-14 04:34 - 00000215 _____ () C:\Windows\system.ini 2014-10-18 13:03 - 2010-02-17 16:16 - 00699682 _____ () C:\Windows\system32\perfh007.dat 2014-10-18 13:03 - 2010-02-17 16:16 - 00149790 _____ () C:\Windows\system32\perfc007.dat 2014-10-18 13:03 - 2009-07-14 07:13 - 01620684 _____ () C:\Windows\system32\PerfStringBackup.INI 2014-10-18 10:07 - 2009-07-14 06:45 - 00408080 _____ () C:\Windows\system32\FNTCACHE.DAT 2014-10-18 03:20 - 2014-05-06 21:25 - 00000000 ___SD () C:\Windows\system32\CompatTel 2014-10-18 03:18 - 2010-02-17 07:35 - 00000000 ____D () C:\ProgramData\Microsoft Help 2014-10-18 03:12 - 2013-08-15 20:31 - 00000000 ____D () C:\Windows\system32\MRT 2014-10-18 03:02 - 2010-08-27 07:48 - 103265616 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2014-10-18 02:37 - 2010-07-20 20:29 - 00000000 ____D () C:\Users\Rachel\AppData\Roaming\Skype 2014-10-17 21:47 - 2010-07-20 20:13 - 00003946 _____ () C:\Windows\System32\Tasks\User_Feed_Synchronization-{18A53760-8698-4958-9D33-4614BE41870C} 2014-10-16 18:57 - 2013-10-15 23:12 - 00000000 ____D () C:\ProgramData\Oracle 2014-10-16 18:54 - 2014-08-19 17:15 - 00098216 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll 2014-10-16 18:54 - 2014-08-19 17:15 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2014-10-16 18:54 - 2014-08-19 17:14 - 00000000 ____D () C:\Program Files (x86)\Java 2014-10-12 20:08 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\rescache 2014-10-12 01:17 - 2010-02-17 07:29 - 00000000 ____D () C:\SPLASH.000 2014-09-30 20:42 - 2010-11-18 02:38 - 00000000 ____D () C:\Update 2014-09-29 20:15 - 2011-04-14 22:28 - 00000000 ____D () C:\Windows\System32\Tasks\Sony Corporation 2014-09-29 20:15 - 2010-02-17 07:45 - 00000000 ____D () C:\Program Files\Sony 2014-09-29 20:15 - 2010-01-30 00:44 - 00000000 ____D () C:\ProgramData\Sony Corporation 2014-09-29 20:15 - 2010-01-29 23:55 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information 2014-09-24 22:12 - 2010-07-20 20:09 - 00108328 _____ () C:\Users\Rachel\AppData\Local\GDIPFONTCACHEV1.DAT 2014-09-23 23:28 - 2010-07-20 20:09 - 00000000 ____D () C:\Users\Rachel 2014-09-23 20:19 - 2012-10-13 14:12 - 00701104 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2014-09-23 20:19 - 2012-10-13 14:12 - 00003822 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater 2014-09-23 20:19 - 2011-05-28 02:00 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2014-09-23 19:42 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\NDF 2014-09-22 20:26 - 2011-04-24 19:42 - 00000000 ____D () C:\Filme 2014-09-22 20:23 - 2010-02-17 07:29 - 00000000 ____D () C:\Program Files (x86)\Google 2014-09-22 20:05 - 2014-04-30 22:26 - 00002441 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk 2014-09-22 08:42 - 2010-09-21 00:14 - 00278152 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe Files to move or delete: ==================== C:\Users\Public\dcmsvcsetup.exe C:\Users\Rachel\grv.dat C:\Users\Rachel2\grv.dat Some content of TEMP: ==================== C:\Users\Rachel\AppData\Local\Temp\Quarantine.exe C:\Users\Rachel\AppData\Local\Temp\sqlite3.dll ==================== Bamital & volsnap Check ================= (There is no automatic fix for files that do not pass verification.) C:\Windows\System32\winlogon.exe => File is digitally signed C:\Windows\System32\wininit.exe => File is digitally signed C:\Windows\SysWOW64\wininit.exe => File is digitally signed C:\Windows\explorer.exe => File is digitally signed C:\Windows\SysWOW64\explorer.exe => File is digitally signed C:\Windows\System32\svchost.exe => File is digitally signed C:\Windows\SysWOW64\svchost.exe => File is digitally signed C:\Windows\System32\services.exe => File is digitally signed C:\Windows\System32\User32.dll => File is digitally signed C:\Windows\SysWOW64\User32.dll => File is digitally signed C:\Windows\System32\userinit.exe => File is digitally signed C:\Windows\SysWOW64\userinit.exe => File is digitally signed C:\Windows\System32\rpcss.dll => File is digitally signed C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed LastRegBack: 2014-10-12 20:01 ==================== End Of Log ============================ --- --- --- Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 16-10-2014 Ran by Rachel at 2014-10-18 15:51:32 Running from C:\Users\Rachel\Desktop Boot Mode: Normal ========================================================== ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: Microsoft Security Essentials (Disabled - Up to date) {4F35CFC4-45A3-FC37-EF17-759A02E39AB1} AS: Microsoft Security Essentials (Disabled - Up to date) {F4542E20-6399-F3B9-D5A7-4EE87964D00C} AS: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) 7-Zip 9.14 beta (HKLM-x32\...\7-Zip) (Version: - ) Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 3.4.0.2710 - Adobe Systems Incorporated) Adobe AIR (x32 Version: 3.4.0.2710 - Adobe Systems Incorporated) Hidden Adobe Flash Player 15 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 15.0.0.167 - Adobe Systems Incorporated) Adobe Flash Player 15 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 15.0.0.152 - Adobe Systems Incorporated) Adobe Reader XI (11.0.09) - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AB0000000001}) (Version: 11.0.09 - Adobe Systems Incorporated) Alps Pointing-device for VAIO (HKLM\...\{9F72EF8B-AEC9-4CA5-B483-143980AFD6FD}) (Version: - ALPS ELECTRIC CO., LTD.) Apple Application Support (HKLM-x32\...\{A922C4B7-50E0-4787-A94C-59DBF3C65DBE}) (Version: 3.0 - Apple Inc.) Apple Mobile Device Support (HKLM\...\{FE86CB0C-FCB3-4358-B4B0-B0A41E33B3DD}) (Version: 7.1.0.32 - Apple Inc.) Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.) ArcSoft Magic-i Visual Effects 2 (HKLM-x32\...\{7BB90344-0647-468E-925A-7F69F7983421}) (Version: 2.0.1.85 - ArcSoft) ArcSoft WebCam Companion 3 (HKLM-x32\...\{DE8AAC73-6D8D-483E-96EA-CAEDDADB9079}) (Version: 3.0.21.278 - ArcSoft) ATI Catalyst Install Manager (HKLM\...\{5BC83141-83DD-07BE-C940-04B385540F04}) (Version: 3.0.769.0 - ATI Technologies, Inc.) Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.) Catalyst Control Center - Branding (x32 Version: 1.00.0000 - ATI) Hidden Catalyst Control Center Core Implementation (x32 Version: 2010.0920.2143.37117 - ATI) Hidden Catalyst Control Center Graphics Full Existing (x32 Version: 2010.0920.2143.37117 - ATI) Hidden Catalyst Control Center Graphics Full New (x32 Version: 2010.0920.2143.37117 - ATI) Hidden Catalyst Control Center Graphics Light (x32 Version: 2010.0920.2143.37117 - ATI) Hidden Catalyst Control Center Graphics Previews Common (x32 Version: 2010.0920.2143.37117 - ATI) Hidden Catalyst Control Center Graphics Previews Vista (x32 Version: 2010.0920.2143.37117 - ATI) Hidden Catalyst Control Center InstallProxy (x32 Version: 2010.0113.2257.41150 - ATI Technologies, Inc.) Hidden Catalyst Control Center InstallProxy (x32 Version: 2010.0920.2143.37117 - ATI Technologies, Inc.) Hidden Catalyst Control Center Localization All (x32 Version: 2010.0920.2143.37117 - ATI) Hidden CCC Help Chinese Standard (x32 Version: 2010.0920.2142.37117 - ATI) Hidden CCC Help Chinese Traditional (x32 Version: 2010.0920.2142.37117 - ATI) Hidden CCC Help Czech (x32 Version: 2010.0920.2142.37117 - ATI) Hidden CCC Help Danish (x32 Version: 2010.0920.2142.37117 - ATI) Hidden CCC Help Dutch (x32 Version: 2010.0920.2142.37117 - ATI) Hidden CCC Help English (x32 Version: 2010.0920.2142.37117 - ATI) Hidden CCC Help Finnish (x32 Version: 2010.0920.2142.37117 - ATI) Hidden CCC Help French (x32 Version: 2010.0920.2142.37117 - ATI) Hidden CCC Help German (x32 Version: 2010.0920.2142.37117 - ATI) Hidden CCC Help Greek (x32 Version: 2010.0920.2142.37117 - ATI) Hidden CCC Help Hungarian (x32 Version: 2010.0920.2142.37117 - ATI) Hidden CCC Help Italian (x32 Version: 2010.0920.2142.37117 - ATI) Hidden CCC Help Japanese (x32 Version: 2010.0920.2142.37117 - ATI) Hidden CCC Help Korean (x32 Version: 2010.0920.2142.37117 - ATI) Hidden CCC Help Norwegian (x32 Version: 2010.0920.2142.37117 - ATI) Hidden CCC Help Polish (x32 Version: 2010.0920.2142.37117 - ATI) Hidden CCC Help Portuguese (x32 Version: 2010.0920.2142.37117 - ATI) Hidden CCC Help Russian (x32 Version: 2010.0920.2142.37117 - ATI) Hidden CCC Help Spanish (x32 Version: 2010.0920.2142.37117 - ATI) Hidden CCC Help Swedish (x32 Version: 2010.0920.2142.37117 - ATI) Hidden CCC Help Thai (x32 Version: 2010.0920.2142.37117 - ATI) Hidden CCC Help Turkish (x32 Version: 2010.0920.2142.37117 - ATI) Hidden ccc-core-static (x32 Version: 2010.0920.2143.37117 - Ihr Firmenname) Hidden ccc-utility64 (Version: 2010.0920.2143.37117 - ATI) Hidden CDBurnerXP (HKLM-x32\...\{7E265513-8CDA-4631-B696-F40D983F3B07}_is1) (Version: 4.5.1.4003 - CDBurnerXP) Click to Disc MergeModules x64 (Version: 1.0.14230 - Sony Corporation) Hidden Compatibility Pack für 2007 Office System (HKLM-x32\...\{90120000-0020-0407-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Corel WinDVD (HKLM-x32\...\{5C1F18D2-F6B7-4242-B803-B5A78648185D}) (Version: 10.0.5.164 - Corel Inc.) dcmsvc 1.0 (HKLM-x32\...\dcmsvc_is1) (Version: - ) Definition Update for Microsoft Office 2010 (KB982726) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{650DE870-ECA3-4E63-8D77-778512BE5D4C}) (Version: - Microsoft) DivX-Setup (HKLM-x32\...\DivX Setup) (Version: 2.6.1.8 - DivX, LLC) Einstellungen für VAIO-Inhaltsüberwachung (HKLM-x32\...\{23825B69-36DF-4DAD-9CFD-118D11D80F16}) (Version: 2.4.1.09180 - Sony Corporation) Evernote (HKLM-x32\...\{F761359C-9CED-45AE-9A51-9D6605CD55C4}) (Version: 3.5.0.545 - Evernote Corp.) FastStone Image Viewer 4.2 (HKLM-x32\...\FastStone Image Viewer) (Version: 4.2 - FastStone Soft) Free YouTube to iPod Converter version 3.8 (HKLM-x32\...\Free YouTube to iPod Converter_is1) (Version: - DVDVideoSoft Limited.) Free YouTube to MP3 Converter version 3.12.0.128 (HKLM-x32\...\Free YouTube to MP3 Converter_is1) (Version: 3.12.0.128 - DVDVideoSoft Ltd.) Intel(R) Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1007 - Intel Corporation) Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 6.0.0.1179 - Intel Corporation) Intel(R) Rapid Storage Technology (HKLM-x32\...\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: 9.5.4.1001 - Intel Corporation) Intel(R) Turbo Boost Technology Driver (HKLM-x32\...\{D6C630BF-8DBB-4042-8562-DC9A52CB6E7E}) (Version: 01.00.01.1002 - Intel Corporation) iTunes (HKLM\...\{0D924CB2-2EA4-4044-BAF7-770202D6BD0D}) (Version: 11.1.4.62 - Apple Inc.) Java 7 Update 67 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F03217067FF}) (Version: 7.0.670 - Oracle) Java 8 Update 25 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218025F0}) (Version: 8.0.250 - Oracle Corporation) Java Auto Updater (x32 Version: 2.8.25.18 - Oracle Corporation) Hidden K-Lite Mega Codec Pack 10.7.5 (HKLM-x32\...\KLiteCodecPack_is1) (Version: 10.7.5 - ) Media Gallery (HKLM-x32\...\{DD88F979-FA58-41AC-980C-A6E1A82B61D9}) (Version: 1.1.1.11200 - Sony Corporation) Media Gallery (x32 Version: 1.1.1.11200 - Sony Corporation) Hidden Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 (Version: 4.5.50938 - Microsoft Corporation) Hidden Microsoft Antimalware Service DE-DE Language Pack (Version: 3.0.8402.2 - Microsoft Corporation) Hidden Microsoft Office Access MUI (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Excel MUI (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Home and Student 2010 (HKLM-x32\...\Office14.SingleImage) (Version: 14.0.7015.1000 - Microsoft Corporation) Microsoft Office Live Add-in 1.3 (HKLM-x32\...\{57F0ED40-8F11-41AA-B926-4A66D0D1A9CC}) (Version: 2.0.2313.0 - Microsoft Corporation) Microsoft Office Office 64-bit Components 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office OneNote MUI (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Outlook MUI (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office PowerPoint MUI (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office PowerPoint Viewer 2007 (German) (HKLM-x32\...\{95120000-00AF-0407-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Microsoft Office Proof (English) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Proof (French) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Proof (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Proof (Italian) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Proofing (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Publisher MUI (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Shared 64-bit MUI (German) 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Shared MUI (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Single Image 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Office Suite Activation Assistant (HKLM-x32\...\{E50AE784-FABE-46DA-A1F8-7B6B56DCB22E}) (Version: 2.9 - Microsoft Corporation) Microsoft Office Word MUI (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden Microsoft Security Client (Version: 4.6.0305.0 - Microsoft Corporation) Hidden Microsoft Security Client DE-DE Language Pack (Version: 2.1.1116.0 - Microsoft Corporation) Hidden Microsoft Security Essentials (HKLM\...\Microsoft Security Client) (Version: 4.6.305.0 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation) Microsoft SQL Server Compact 3.5 SP1 English (HKLM-x32\...\{E59113EB-0285-4BFD-A37A-B79EAC6B8F4B}) (Version: 3.5.5692.0 - Microsoft Corporation) Microsoft SQL Server Compact 3.5 SP1 x64 English (HKLM\...\{F83779DF-E1F5-43A2-A7BE-732F856FADB7}) (Version: 3.5.5692.0 - Microsoft Corporation) Microsoft Visual C++ 2005 ATL Update kb973923 - x64 8.0.50727.4053 (HKLM\...\{B6E3757B-5E77-3915-866A-CCFC4B8D194C}) (Version: 8.0.50727.4053 - Microsoft Corporation) Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (HKLM-x32\...\{770657D0-A123-3C07-8E44-1C83EC895118}) (Version: 8.0.50727.4053 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) - KB2467175 (HKLM\...\{aac9fcc4-dd9e-4add-901c-b5496a07ab2e}) (Version: 8.0.51011 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Works (HKLM-x32\...\{62F7DA7E-CCCB-439C-A760-00C3926E761F}) (Version: 9.7.0621 - Microsoft Corporation) Mozilla Firefox 33.0 (x86 de) (HKLM-x32\...\Mozilla Firefox 33.0 (x86 de)) (Version: 33.0 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 33.0 - Mozilla) MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation) MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation) MusicStation (HKLM-x32\...\{AB259D46-F851-41B0-9AFA-AED8998AD68A}) (Version: 2.0.0.1067 - Omnifone) Norton Online Backup (HKLM-x32\...\{C57BCDE1-7CB9-467D-B3BA-7E119916CDC1}) (Version: 1.2.20.0 - Symantec) PDFCreator (HKLM-x32\...\{0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}) (Version: 1.7.0 - pdfforge) PMB (HKLM-x32\...\{B6A98E5F-D6A7-46FB-9E9D-1F7BF443491C}) (Version: 5.0.00.10260 - Sony Corporation) PMB VAIO Edition Guide (x32 Version: 1.5.00.03020 - Sony Corporation) Hidden PMB VAIO Edition plug-in (Click to Disc) (HKLM-x32\...\InstallShield_{4DCEA9C1-4D6E-41BF-A854-28CFA8B56DBF}) (Version: 3.2.00.16060 - Sony Corporation) PMB VAIO Edition plug-in (Click to Disc) (x32 Version: 3.2.00.16060 - Sony Corporation) Hidden PMB VAIO Edition plug-in (VAIO Image Optimizer) (HKLM-x32\...\InstallShield_{1873FFC1-FDCB-47E1-B7C7-F418211E3530}) (Version: 1.2.00.15250 - Sony Corporation) PMB VAIO Edition plug-in (VAIO Image Optimizer) (x32 Version: 1.2.00.15250 - Sony Corporation) Hidden PMB VAIO Edition plug-in (VAIO Movie Story) (HKLM-x32\...\InstallShield_{B25563A0-41F4-4A81-A6C1-6DBC0911B1F3}) (Version: 2.2.00.15250 - Sony Corporation) PMB VAIO Edition plug-in (VAIO Movie Story) (x32 Version: 2.2.00.15250 - Sony Corporation) Hidden Realtek HDMI Audio Driver for ATI (HKLM-x32\...\{5449FB4F-1802-4D5B-A6D8-087DB1142147}) (Version: 6.0.1.5992 - Realtek Semiconductor Corp.) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.5992 - Realtek Semiconductor Corp.) Roxio Central Audio (x32 Version: 3.8.0 - Roxio) Hidden Roxio Central Copy (x32 Version: 3.8.0 - Roxio) Hidden Roxio Central Core (x32 Version: 3.8.0 - Roxio) Hidden Roxio Central Data (x32 Version: 3.8.0 - Roxio) Hidden Roxio Central Tools (x32 Version: 3.8.0 - Roxio) Hidden Roxio Easy Media Creator 10 LJ (HKLM-x32\...\{537BF16E-7412-448C-95D8-846E85A1D817}) (Version: 10.3 - Roxio) Roxio Easy Media Creator Home (x32 Version: 10.3.183 - Roxio) Hidden Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{DE28B448-32E8-4E8F-84F0-A52B21A49B5B}) (Version: - Microsoft) Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (x32 Version: - Microsoft) Hidden Setting Utility Series (HKLM-x32\...\{A7DA438C-2E43-4C20-BFDA-C1F4A6208558}) (Version: 5.1.0.11200 - Sony Corporation) Skype Click to Call (HKLM-x32\...\{B6CF2967-C81E-40C0-9815-C05774FEF120}) (Version: 5.6.8442 - Skype Technologies S.A.) Skype™ 6.11 (HKLM-x32\...\{4E76FF7E-AEBA-4C87-B788-CD47E5425B9D}) (Version: 6.11.102 - Skype Technologies S.A.) Sony Home Network Library (HKLM-x32\...\{D03D02D8-AB64-4785-A48E-5AA8B0FB8C14}) (Version: 2.0.1.10160 - Sony Corporation) Sony Home Network Library (x32 Version: 2.0.1.10160 - Sony Corporation) Hidden Update for Microsoft Access 2010 (KB2553446) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{B4A38370-2ADB-46B0-A1B0-0C4A2F7DCA31}) (Version: - Microsoft) Update for Microsoft Excel 2010 (KB2889836) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{9179FC17-97A8-4D98-9E09-05720AF5D44E}) (Version: - Microsoft) Update for Microsoft Filter Pack 2.0 (KB2878281) 32-Bit Edition (HKLM-x32\...\{90140000-002A-0000-1000-0000000FF1CE}_Office14.SingleImage_{302A8FE3-EBF5-486C-A431-16A1CD914443}) (Version: - Microsoft) Update for Microsoft Filter Pack 2.0 (KB2878281) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{302A8FE3-EBF5-486C-A431-16A1CD914443}) (Version: - Microsoft) Update for Microsoft InfoPath 2010 (KB2817369) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{4EEA3D3E-989C-4DF4-AB0A-3042C0C12AA3}) (Version: - Microsoft) Update for Microsoft Office 2010 (KB2494150) (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{3FCFD88F-4D13-4F38-8625-ABABEA7F61EA}) (Version: - Microsoft) Update for Microsoft Office 2010 (KB2589298) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{DADF7E25-FFA4-4D02-BE84-1DAE62C18516}) (Version: - Microsoft) Update for Microsoft Office 2010 (KB2589352) 32-Bit Edition (HKLM-x32\...\{90140000-002A-0000-1000-0000000FF1CE}_Office14.SingleImage_{F4284D93-7AE8-4309-8CF3-9AD394F35F3A}) (Version: - Microsoft) Update for Microsoft Office 2010 (KB2589352) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{F4284D93-7AE8-4309-8CF3-9AD394F35F3A}) (Version: - Microsoft) Update for Microsoft Office 2010 (KB2589375) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{287A1E92-9E41-4BC1-8920-B3D0E9220800}) (Version: - Microsoft) Update for Microsoft Office 2010 (KB2597087) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{9D69691D-823D-4C3E-9B12-563A3F520366}) (Version: - Microsoft) Update for Microsoft Office 2010 (KB2687502) 32-Bit Edition (HKLM-x32\...\{90140000-001F-0409-0000-0000000FF1CE}_Office14.SingleImage_{7DE7DF97-82FE-4B3A-AB8D-1621F9CC464A}) (Version: - Microsoft) Update for Microsoft Office 2010 (KB2760598) 32-Bit Edition (HKLM-x32\...\{90140000-002A-0000-1000-0000000FF1CE}_Office14.SingleImage_{ECFE33A3-B8B7-439A-ADE4-59FBD29EF9B8}) (Version: - Microsoft) Update for Microsoft Office 2010 (KB2760598) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{ECFE33A3-B8B7-439A-ADE4-59FBD29EF9B8}) (Version: - Microsoft) Update for Microsoft Office 2010 (KB2760631) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{35698CB7-AAA2-4577-B505-DBFF504AEF23}) (Version: - Microsoft) Update for Microsoft Office 2010 (KB2794737) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{5AA578BB-759C-40FD-9661-A737C0884541}) (Version: - Microsoft) Update for Microsoft Office 2010 (KB2825635) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{F1A20C69-9FE5-40FD-9CD5-84EABC2EF64A}) (Version: - Microsoft) Update for Microsoft Office 2010 (KB2837581) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{334FB202-28D7-4BA4-8BC9-4FE4AB233EA0}) (Version: - Microsoft) Update for Microsoft Office 2010 (KB2837606) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{B0D672F7-883E-4279-8E75-D97A5445AB46}) (Version: - Microsoft) Update for Microsoft Office 2010 (KB2878252) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{B0DB9F71-E0F7-4FE6-8925-35B860CAC0C4}) (Version: - Microsoft) Update for Microsoft Office 2010 (KB2881028) 32-Bit Edition (HKLM-x32\...\{90140000-001F-0407-0000-0000000FF1CE}_Office14.SingleImage_{EAD7BEF9-B28C-425F-B2C5-538CB27EF013}) (Version: - Microsoft) Update for Microsoft Office 2010 (KB2881028) 32-Bit Edition (HKLM-x32\...\{90140000-001F-040C-0000-0000000FF1CE}_Office14.SingleImage_{089DBFD7-8211-43B2-AAAE-5BDD8C23E3A8}) (Version: - Microsoft) Update for Microsoft OneNote 2010 (KB2837595) 32-Bit Edition (HKLM-x32\...\{90140000-002A-0000-1000-0000000FF1CE}_Office14.SingleImage_{51CCA922-A0CC-47C4-8910-6936D97CAC2E}) (Version: - Microsoft) Update for Microsoft OneNote 2010 (KB2837595) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{51CCA922-A0CC-47C4-8910-6936D97CAC2E}) (Version: - Microsoft) Update for Microsoft Outlook 2010 (KB2687567) 32-Bit Edition (HKLM-x32\...\{90140000-001A-0407-0000-0000000FF1CE}_Office14.SingleImage_{A0657506-69DC-44AE-8DC1-58E7C6F5B1C9}) (Version: - Microsoft) Update for Microsoft Outlook 2010 (KB2687567) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{2AB483F1-C86E-427A-83B4-23889B03512D}) (Version: - Microsoft) Update for Microsoft PowerPoint 2010 (KB2837579) 32-Bit Edition (HKLM-x32\...\{90140000-0018-0407-0000-0000000FF1CE}_Office14.SingleImage_{40EC8FB1-5202-469D-9232-C28FB1C6FC64}) (Version: - Microsoft) Update for Microsoft PowerPoint 2010 (KB2837579) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{2BA40F82-F3A4-441C-BF1A-ED4C42FF4872}) (Version: - Microsoft) Update for Microsoft SharePoint Workspace 2010 (KB2760601) 32-Bit Edition (HKLM-x32\...\{90140000-002A-0000-1000-0000000FF1CE}_Office14.SingleImage_{F9F5A080-AF38-4966-9A6B-C43DCA465035}) (Version: - Microsoft) Update for Microsoft Visio 2010 (KB2880526) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{7B29D8B8-6A87-496C-A65E-B935E740448A}) (Version: - Microsoft) Update for Microsoft Visio Viewer 2010 (KB2837587) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{38CF30E4-3348-4BD1-A859-B630C355A56F}) (Version: - Microsoft) VAIO - PMB VAIO Edition Guide (HKLM-x32\...\InstallShield_{339F9B4D-00CB-4C1C-BED8-EC86A9AB602A}) (Version: 1.5.00.03020 - Sony Corporation) VAIO Care (HKLM\...\{FDCC09EA-A33E-4639-B1CD-FC1702815FA7}) (Version: 8.4.0.14281 - Sony Corporation) VAIO Content Metadata Intelligent Analyzing Manager (HKLM-x32\...\{4882EBF5-CA37-4EF4-BCB8-9B0E78B907D0}) (Version: 3.6.0.09250 - Sony Corporation) VAIO Content Metadata Intelligent Analyzing Manager (x32 Version: 3.6.0.09250 - Sony Corporation) Hidden VAIO Content Metadata Intelligent Network Service Manager (HKLM-x32\...\{4427F384-B5BE-4769-B7D0-C784FC321EB1}) (Version: 3.6.0.09080 - Sony Corporation) VAIO Content Metadata Intelligent Network Service Manager (x32 Version: 3.6.0.09080 - Sony Corporation) Hidden VAIO Content Metadata Manager Settings (HKLM-x32\...\{12D0BE8D-538C-4AB1-86DE-C540308F50DA}) (Version: 3.6.0.09240 - Sony Corporation) VAIO Content Metadata Manager Settings (x32 Version: 3.6.0.09240 - Sony Corporation) Hidden VAIO Content Metadata XML Interface Library (HKLM-x32\...\{291FB4BF-EEC7-4CF9-8469-F39ED1DBC4D8}) (Version: 3.6.0.09080 - Sony Corporation) VAIO Content Metadata XML Interface Library (x32 Version: 3.6.0.09080 - Sony Corporation) Hidden VAIO Content Monitoring Settings (x32 Version: 2.4.1.09180 - Sony Corporation) Hidden VAIO Control Center (HKLM-x32\...\{72042FA6-5609-489F-A8EA-3C2DD650F667}) (Version: 4.1.1.07160 - Sony Corporation) VAIO Data Restore Tool (HKLM-x32\...\{57B955CE-B5D3-495D-AF1B-FAEE0540BFEF}) (Version: 1.2.0.09150 - Sony Corporation) VAIO Data Restore Tool (x32 Version: 1.2.0.09150 - Sony Corporation) Hidden VAIO DVD Menu Data (HKLM-x32\...\{596BED91-A1D8-4DF1-8CD1-1C777F7588AC}) (Version: 2.1.00.15050 - Sony Corporation) VAIO Energie Verwaltung (HKLM-x32\...\{803E4FA5-A940-4420-B89D-A8BC2E160247}) (Version: 5.0.0.11300 - Sony Corporation) VAIO Entertainment Platform (HKLM-x32\...\{6B1F20F2-6321-4669-A58C-33DF8E7517FF}) (Version: 3.6.0.09150 - Sony Corporation) VAIO Entertainment Platform (x32 Version: 3.6.0.09150 - Sony Corporation) Hidden VAIO Event Service (HKLM-x32\...\{C7477742-DDB4-43E5-AC8D-0259E1E661B1}) (Version: 5.1.0.12010 - Sony Corporation) VAIO Gate (HKLM-x32\...\{A7C30414-2382-4086-B0D6-01A88ABA21C3}) (Version: 1.2.0.09240 - Sony Corporation) VAIO Gate Default (HKLM-x32\...\{B7546697-2A80-4256-A24B-1C33163F535B}) (Version: 1.0.0.10290 - Sony Corporation) VAIO Hardware Diagnostics (x32 Version: 3.9.1 - Sony Corporation) Hidden VAIO Marketing Tools (HKLM-x32\...\MarketingTools) (Version: - Sony Corporation) VAIO Media plus (HKLM-x32\...\{8DE50158-80AA-4FF2-9E9F-0A7C46F71FCD}) (Version: 2.0.1.10160 - Sony Corporation) VAIO Media plus Opening Movie (HKLM-x32\...\{9238E8A4-BEBA-43A3-B926-769BDBF194C5}) (Version: 1.2.0.09100 - Sony Corporation) VAIO Movie Story MergeModules x64 (Version: 1.0.14240 - Sony Corporation) Hidden VAIO Movie Story Template Data (HKLM-x32\...\InstallShield_{6FA8BA2C-052B-4072-B8E2-2302C268BE9E}) (Version: 2.2.00.15250 - Sony Corporation) VAIO Movie Story Template Data (x32 Version: 2.0.00.09240 - Sony Corporation) Hidden VAIO Original Function Settings (x32 Version: 2.0.0.07010 - Sony Corporation) Hidden VAIO Original Funktion Einstellungen (HKLM-x32\...\{A63E7492-A0BC-4BB9-89A7-352965222380}) (Version: 2.0.0.07010 - Sony Corporation) VAIO Personalization Manager (HKLM-x32\...\{A95187EF-BCF4-4468-B501-C0BAB976ADD1}) (Version: 2.0.0.06220 - Sony Corporation) VAIO Personalization Manager (x32 Version: 2.0.0.06220 - Sony Corporation) Hidden VAIO Premium Partners (HKLM-x32\...\VAIO Premium Partners) (Version: 1.0 - Sony Europe) VAIO Quick Web Access (HKLM-x32\...\splashtop) (Version: 1.3.1.7 - Sony Corporation) VAIO Quick Web Access (x32 Version: 1.3.1.7 - Sony Corporation) Hidden VAIO screensaver (HKLM-x32\...\VAIO screensaver) (Version: 1.0.0.0 - Sony Europe) VAIO Smart Network (HKLM-x32\...\{0899D75A-C2FC-42EA-A702-5B9A5F24EAD5}) (Version: 3.3.1.08110 - Sony Corporation) VAIO Update (HKLM-x32\...\{9FF95DA2-7DA1-4228-93B7-DED7EC02B6B2}) (Version: 7.0.1.02280 - Sony Corporation) VAIO Wallpaper Contents (HKLM-x32\...\{D60F97EC-EF06-4E1E-B0D1-C2CBABA62FA3}) (Version: 2.0.0.06010 - Sony Corporation) VAIO-Support für Übertragungen (HKLM-x32\...\{5DDAFB4B-C52E-468A-9E23-3B0CEEB671BF}) (Version: 1.1.2.06030 - Sony Corporation) VC80CRTRedist - 8.0.50727.6195 (x32 Version: 1.2.0 - DivX, Inc) Hidden VD64Inst (Version: 1.00.0000 - Roxio, Inc.) Hidden VLC media player 1.1.5 (HKLM-x32\...\VLC media player) (Version: 1.1.5 - VideoLAN) VU5x64 (Version: 1.1.0 - Sony Corporation ) Hidden VU5x86 (x32 Version: 1.0.0 - Sony Corporation ) Hidden VU5x86 (x32 Version: 1.1.0 - Sony Corporation ) Hidden WIDCOMM Bluetooth Software (HKLM\...\{9E9D49A4-1DF4-4138-B7DB-5D87A893088E}) (Version: 6.2.1.500 - Broadcom Corporation) Windows Driver Package - Broadcom Bluetooth (09/09/2009 6.2.0.9405) (HKLM\...\930E4792BDAEAFB62A9514EE7578775658A5D07C) (Version: 09/09/2009 6.2.0.9405 - Broadcom) Windows Driver Package - Broadcom HIDClass (07/28/2009 6.2.0.9800) (HKLM\...\3BA80AB4C7E9F8497C115C844953A3D4BEB84D21) (Version: 07/28/2009 6.2.0.9800 - Broadcom) WinZip 15.0 (HKLM-x32\...\{CD95F661-A5C4-44F5-A6AA-ECDD91C240C1}) (Version: 15.0.9411 - WinZip Computing, S.L. ) XMedia Recode 3.0.8.5 (HKLM-x32\...\XMedia Recode) (Version: 3.0.8.5 - Sebastian Dörfler) ==================== Custom CLSID (selected items): ========================== (If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.) ==================== Restore Points ========================= 24-09-2014 01:00:27 Windows Update 28-09-2014 12:23:26 Windows Update 28-09-2014 18:35:12 Windows-Sicherung 29-09-2014 18:14:01 Entfernt VAIO Update 29-09-2014 18:15:00 Installiert VAIO Update 30-09-2014 20:13:58 Windows Update 04-10-2014 21:54:08 Windows Update 05-10-2014 17:00:18 Windows-Sicherung 08-10-2014 20:12:59 Windows Update 12-10-2014 17:00:18 Windows-Sicherung 15-10-2014 19:09:55 Windows Update 18-10-2014 01:01:17 Windows Update ==================== Hosts content: ========================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2009-07-14 04:34 - 2014-10-18 14:47 - 00000027 ____A C:\Windows\system32\Drivers\etc\hosts 127.0.0.1 localhost ==================== Scheduled Tasks (whitelisted) ============= (If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.) Task: {02E166F2-977A-43F0-984F-E730625DC18B} - System32\Tasks\USER_ESRV_SVC => Wscript.exe //B //NoLogo "C:\Program Files\Sony\VAIO Care\ESRV\task.vbs" Task: {0CE95371-120A-4414-B704-DD156D6BE5A1} - System32\Tasks\Sony Corporation\VAIO Care\UploadPOT => C:\Program Files\Sony\VAIO Care\VCSystemTray.exe [2014-02-20] (Sony Corporation) Task: {37A77113-11FC-4E3B-B631-411200CEDF6D} - System32\Tasks\Sony Corporation\VAIO Care\CheckSystemInfo => C:\Program Files\Sony\VAIO Care\VCSystemTray.exe [2014-02-20] (Sony Corporation) Task: {433EEC8A-A68C-42D1-8B17-D518F6CE3E3D} - System32\Tasks\RunAsStdUser Task for VeohWebPlayer => C:\Program Files (x86)\Veoh Networks\VeohWebPlayer\veohwebplayer.exe [2010-07-06] (Veoh Networks) Task: {4A6D494E-8C0C-4C04-93DB-F266EAB0C8E3} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-09-23] (Adobe Systems Incorporated) Task: {4A717497-6763-4E3A-A04A-5A248201FE61} - System32\Tasks\Sony Corporation\VAIO Care\VCOneClick => C:\Program Files\Sony\VAIO Care\VCSystemTray.exe [2014-02-20] (Sony Corporation) Task: {5DE315F2-F2F1-4950-8321-3E7041975334} - System32\Tasks\Sony Corporation\VAIO Care\VCMetrics => C:\Program Files\Sony\VAIO Care\VCSystemTray.exe [2014-02-20] (Sony Corporation) Task: {60CA9981-F877-4CF5-B687-8C9CDC27B26F} - System32\Tasks\SONY\SUS-BCF\Level4Daily => C:\Program Files (x86)\Sony\Setting Utility Series\WBCBatteryCare.exe [2009-11-20] (Sony Corporation) Task: {693EE9F9-2473-4BF2-94A5-D2113FA09DF6} - System32\Tasks\Sony Corporation\VAIO Care\VCCheckIolo => C:\Program Files\Sony\VAIO Care\VCSystemTray.exe [2014-02-20] (Sony Corporation) Task: {6E814914-464C-49F0-8F6F-E84F9DE8043C} - System32\Tasks\Sony Corporation\VAIO Care\VAIO Care => C:\Program Files\Sony\VAIO Care\VCSystemTray.exe [2014-02-20] (Sony Corporation) Task: {723D98A4-0F60-455D-87D3-B48EA41EA023} - System32\Tasks\Sony Corporation\VAIO Care\GetPOTInfo => C:\Program Files\Sony\VAIO Care\VCSystemTray.exe [2014-02-20] (Sony Corporation) Task: {7A8FA38B-37F5-4858-8E6C-3C3965DDCE36} - System32\Tasks\Sony Corporation\VAIO Care\DeployCRMflag => C:\Program Files\Sony\VAIO Care\DeployCRMflag.exe [2014-01-16] (Sony Corporation) Task: {802F73DC-45EB-41E3-9D81-64131C8F300C} - System32\Tasks\Microsoft\Windows\WindowsBackup\AutomaticBackup => Rundll32.exe /d sdengin2.dll,ExecuteScheduledBackup Task: {82C72CD5-65B4-4F1D-AC40-725A4A605B50} - System32\Tasks\Sony Corporation\VAIO Update\VAIO Update => C:\Program Files\Sony\VAIO Update\VAIOUpdt.exe [2014-02-28] (Sony Corporation) Task: {849719D8-4729-4AF7-A1FD-CF795C7188E1} - System32\Tasks\Sony Corporation\VAIO Update\VAIO Update Self Repair => C:\Program Files\Sony\VAIO Update\VUSR.exe [2014-03-01] (Sony Corporation) Task: {8D0F94FD-5059-4461-9982-5F1A1D1FAD66} - System32\Tasks\{E1CC23DB-CBB9-46AE-B398-3F87327C92D0} => C:\Program Files (x86)\Skype\Phone\Skype.exe [2013-11-14] (Skype Technologies S.A.) Task: {8F988503-2ECE-4F44-A3F0-17A7C7E76E17} - System32\Tasks\SONY\VAIO Power Management\VPM Logon Start => C:\Program Files\Sony\VAIO Power Management\SPMgr.exe [2009-11-30] (Sony Corporation) Task: {913340A9-6ECA-4BEA-8A79-B299E835FB20} - System32\Tasks\SONY\VAIO Gate\VAIO Gate => C:\Program Files\Sony\VAIO Gate\VAIO Gate.exe [2009-09-25] (Sony Corporation) Task: {9499A1DC-CA3F-448E-9025-D69D7318B83D} - System32\Tasks\SONY\VAIO Power Management\VPM Unlock => C:\Program Files\Sony\VAIO Power Management\SPMgr.exe [2009-11-30] (Sony Corporation) Task: {A3F5DABC-BAD8-42A6-9E42-FF052F5ECD34} - System32\Tasks\Sony Corporation\VAIO Care\UpdateSolution => C:\Program Files\Sony\VAIO Care\Solution.Updater.exe [2014-02-27] (Sony Corporation) Task: {B009D77A-71FE-4CE6-B214-E37BAAC352B5} - System32\Tasks\Sony Corporation\VAIO Care\VCRLog => C:\Program Files\Sony\VAIO Care\VCSystemTray.exe [2014-02-20] (Sony Corporation) Task: {B4A88D7E-F562-44A3-862E-36D2A40340B3} - System32\Tasks\SONY\VAIO Power Management\VPM Session Change => C:\Program Files\Sony\VAIO Power Management\SPMgr.exe [2009-11-30] (Sony Corporation) Task: {CF0F3F8D-F854-4405-8702-FBA65979AAD1} - System32\Tasks\{89C4C448-3514-42C1-B8EC-E55F2375DF0F} => Firefox.exe hxxp://ui.skype.com/ui/0/6.3.73.105.457/de/abandoninstall?page=tsMain Task: {D454BBB3-9951-44DB-870D-360385896654} - System32\Tasks\Sony Corporation\VAIO Care\VCSelfHeal => C:\Program Files\Sony\VAIO Care\VCSystemTray.exe [2014-02-20] (Sony Corporation) Task: {D52F1E76-8363-43E6-8C7E-E416B8E88277} - System32\Tasks\SONY\SUS-BCF\Level4Month => C:\Program Files (x86)\Sony\Setting Utility Series\WBCBatteryCare.exe [2009-11-20] (Sony Corporation) Task: {F2765A55-5A79-4DEE-BC79-03FB8AB2D224} - System32\Tasks\klcp_update => C:\Program Files (x86)\K-Lite Codec Pack\Tools\CodecTweakTool.exe [2014-09-23] () Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe ==================== Loaded Modules (whitelisted) ============= 2012-02-23 13:05 - 2009-04-07 14:53 - 00030440 _____ () C:\Program Files (x86)\dcmsvc\dcmsvc.exe 2011-07-29 01:08 - 2011-07-29 01:08 - 01259376 _____ () C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe 2010-08-24 15:39 - 2010-08-24 15:39 - 00016384 _____ () C:\Program Files (x86)\ATI Technologies\ATI.ACE\Branding\Branding.dll 2013-03-13 21:18 - 2013-03-13 21:18 - 00270336 _____ () C:\Windows\assembly\GAC_MSIL\CLI.Aspect.CrossDisplay.Graphics.Dashboard\1.0.0.0__90ba9c70f846762e\CLI.Aspect.CrossDisplay.Graphics.Dashboard.dll 2013-11-01 14:59 - 2013-11-01 14:59 - 00062464 _____ () C:\Program Files\Sony\VAIO Care\listener.exe 2010-06-28 14:21 - 2010-06-28 14:21 - 09905152 _____ () C:\Program Files (x86)\Veoh Networks\VeohWebPlayer\QtWebKit4.dll 2010-06-28 14:21 - 2010-06-28 14:21 - 00232960 _____ () C:\Program Files (x86)\Veoh Networks\VeohWebPlayer\phonon4.dll 2010-06-28 14:21 - 2010-06-28 14:21 - 07793152 _____ () C:\Program Files (x86)\Veoh Networks\VeohWebPlayer\QtGui4.dll 2010-06-28 14:21 - 2010-06-28 14:21 - 02094592 _____ () C:\Program Files (x86)\Veoh Networks\VeohWebPlayer\QtCore4.dll 2010-06-28 14:21 - 2010-06-28 14:21 - 02530304 _____ () C:\Program Files (x86)\Veoh Networks\VeohWebPlayer\QtXmlPatterns4.dll 2010-06-28 14:21 - 2010-06-28 14:21 - 00915456 _____ () C:\Program Files (x86)\Veoh Networks\VeohWebPlayer\QtNetwork4.dll 2010-06-28 14:21 - 2010-06-28 14:21 - 01116160 _____ () C:\Program Files (x86)\Veoh Networks\VeohWebPlayer\QtScript4.dll 2010-06-28 14:21 - 2010-06-28 14:21 - 00022016 _____ () C:\Program Files (x86)\Veoh Networks\VeohWebPlayer\imageformats\qgif4.dll 2010-06-28 14:21 - 2010-06-28 14:21 - 00120320 _____ () C:\Program Files (x86)\Veoh Networks\VeohWebPlayer\imageformats\qjpeg4.dll 2011-07-29 01:09 - 2011-07-29 01:09 - 00096112 _____ () C:\Program Files (x86)\DivX\DivX Update\DivXUpdateCheck.dll 2014-01-20 14:17 - 2014-01-20 14:17 - 00073544 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll 2014-01-20 14:16 - 2014-01-20 14:16 - 01044808 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll 2010-02-17 07:52 - 2009-12-01 23:03 - 00010752 _____ () C:\Program Files (x86)\Sony\VAIO Event Service\VESBasePS.dll 2010-02-17 07:52 - 2009-12-01 23:03 - 00009728 _____ () C:\Program Files (x86)\Sony\VAIO Event Service\VESMgrSubPS.dll 2010-01-29 23:55 - 2009-11-21 01:19 - 00058880 _____ () C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IsdiInterop.dll ==================== Alternate Data Streams (whitelisted) ========= (If an entry is included in the fixlist, only the Alternate Data Streams will be removed.) AlternateDataStreams: C:\ProgramData\TEMP:99AC3203 ==================== Safe Mode (whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\McMPFSvc => ""="Service" ==================== EXE Association (whitelisted) ============= (If an entry is included in the fixlist, the default will be restored. None default entries will be removed.) ==================== MSCONFIG/TASK MANAGER disabled items ========= (Currently there is no automatic fix for this section.) ========================= Accounts: ========================== Administrator (S-1-5-21-3303785528-1083530386-3593389926-500 - Administrator - Disabled) Gast (S-1-5-21-3303785528-1083530386-3593389926-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-3303785528-1083530386-3593389926-1002 - Limited - Enabled) Rachel (S-1-5-21-3303785528-1083530386-3593389926-1001 - Administrator - Enabled) => C:\Users\Rachel ==================== Faulty Device Manager Devices ============= Name: regi Description: regi Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1} Manufacturer: Service: regi Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24) Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed. Devices stay in this state if they have been prepared for removal. After you remove the device, this error disappears.Remove the device, and this error should be resolved. ==================== Event log errors: ========================= Application errors: ================== System errors: ============= Microsoft Office Sessions: ========================= CodeIntegrity Errors: =================================== Date: 2014-10-18 14:35:33.495 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume3\ComboFix\catchme.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2014-10-18 14:35:33.025 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume3\ComboFix\catchme.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2013-02-24 03:14:25.304 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\System32\drivers\usbaapl64.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2013-02-24 03:14:25.099 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\System32\drivers\usbaapl64.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2013-02-23 23:52:56.388 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\System32\drivers\usbaapl64.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2013-02-23 23:52:56.207 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\System32\drivers\usbaapl64.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2013-02-23 23:52:51.552 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\System32\drivers\usbaapl64.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2013-02-23 23:52:51.372 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\System32\drivers\usbaapl64.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2013-02-23 23:51:52.432 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\System32\drivers\usbaapl64.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. Date: 2013-02-23 23:51:52.201 Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\System32\drivers\usbaapl64.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert. ==================== Memory info =========================== Processor: Intel(R) Core(TM) i5 CPU M 430 @ 2.27GHz Percentage of memory in use: 36% Total physical RAM: 3950.1 MB Available physical RAM: 2506.81 MB Total Pagefile: 7898.38 MB Available Pagefile: 5792.02 MB Total Virtual: 8192 MB Available Virtual: 8191.85 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:455.05 GB) (Free:127.83 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: AFD10471) Partition 1: (Not Active) - (Size=10.6 GB) - (Type=27) Partition 2: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=455.1 GB) - (Type=07 NTFS) ==================== End Of Log ============================ Vielen, vielen Dank!!! |
19.10.2014, 12:09 | #19 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Keine Downloads mehr möglich und überall Werbung Drücke bitte die Windowstaste + R Taste und schreibe notepad in das Ausführen Fenster. Kopiere nun folgenden Text aus der Code-Box in das leere Textdokument Code:
ATTFilter CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION S2 892cc6a3; "C:\Windows\system32\rundll32.exe" "c:\progra~3\perfor~1\PerformanceOptimizerSvc.dll",service c:\progra~3\perfor~1 C:\ProgramData\b5a9dd818519d486 C:\Users\Public\dcmsvcsetup.exe C:\Users\Rachel\grv.dat C:\Users\Rachel2\grv.dat C:\$Recycle.Bin\S-1-5-21-3303785528-1083530386-3593389926-1001\$70bd7d5850afbe8142e7bece87fb78c7 C:\$Recycle.Bin\S-1-5-18\$70bd7d5850afbe8142e7bece87fb78c7 AlternateDataStreams: C:\ProgramData\TEMP:99AC3203 EmptyTemp: Hosts: Speichere diese bitte als Fixlist.txt auf deinem Desktop (oder dem Verzeichnis in dem sich FRST befindet).
__________________ Logfiles bitte immer in CODE-Tags posten |
19.10.2014, 18:23 | #20 |
| Keine Downloads mehr möglich und überall WerbungCode:
ATTFilter Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 19-10-2014 Ran by Rachel at 2014-10-19 19:17:14 Run:1 Running from C:\Users\Rachel\Desktop Loaded Profile: Rachel (Available profiles: Rachel) Boot Mode: Normal ============================================== Content of fixlist: ***************** CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION S2 892cc6a3; "C:\Windows\system32\rundll32.exe" "c:\progra~3\perfor~1\PerformanceOptimizerSvc.dll",service c:\progra~3\perfor~1 C:\ProgramData\b5a9dd818519d486 C:\Users\Public\dcmsvcsetup.exe C:\Users\Rachel\grv.dat C:\Users\Rachel2\grv.dat C:\$Recycle.Bin\S-1-5-21-3303785528-1083530386-3593389926-1001\$70bd7d5850afbe8142e7bece87fb78c7 C:\$Recycle.Bin\S-1-5-18\$70bd7d5850afbe8142e7bece87fb78c7 AlternateDataStreams: C:\ProgramData\TEMP:99AC3203 EmptyTemp: Hosts: ***************** "HKLM\SOFTWARE\Policies\Google" => Key deleted successfully. 892cc6a3 => Service deleted successfully. "c:\progra~3\perfor~1" => File/Directory not found. C:\ProgramData\b5a9dd818519d486 => Moved successfully. C:\Users\Public\dcmsvcsetup.exe => Moved successfully. C:\Users\Rachel\grv.dat => Moved successfully. C:\Users\Rachel2\grv.dat => Moved successfully. "C:\$Recycle.Bin\S-1-5-21-3303785528-1083530386-3593389926-1001\$70bd7d5850afbe8142e7bece87fb78c7" => File/Directory not found. "C:\$Recycle.Bin\S-1-5-18\$70bd7d5850afbe8142e7bece87fb78c7" => File/Directory not found. C:\ProgramData\TEMP => ":99AC3203" ADS removed successfully. C:\Windows\System32\Drivers\etc\hosts => Moved successfully. Hosts was reset successfully. EmptyTemp: => Removed 620.5 MB temporary data. The system needed a reboot. ==== End of Fixlog ==== |
19.10.2014, 21:37 | #21 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Keine Downloads mehr möglich und überall Werbung Okay, dann Kontrollscans mit MBAM und ESET bitte: Downloade Dir bitte Malwarebytes Anti-Malware
ESET Online Scanner
__________________ --> Keine Downloads mehr möglich und überall Werbung |
19.10.2014, 22:35 | #22 |
| Keine Downloads mehr möglich und überall Werbung ich kann mir Malwarebyte nicht downloaden, da die Probetage rum sind. Gibts ne Alternative? |
20.10.2014, 15:46 | #23 | |
/// Winkelfunktion /// TB-Süch-Tiger™ | Keine Downloads mehr möglich und überall WerbungZitat:
Selbst wenn die Probezeit abgelaufen ist, kann man MBAM als leicht abgespeckte Version endlos weiterverwenden.
__________________ Logfiles bitte immer in CODE-Tags posten |
21.10.2014, 15:42 | #24 |
| Keine Downloads mehr möglich und überall WerbungCode:
ATTFilter Malwarebytes Anti-Malware www.malwarebytes.org Suchlauf Datum: 21.10.2014 Suchlauf-Zeit: 15:57:33 Logdatei: MWAB.txt Administrator: Ja Version: 2.00.3.1025 Malware Datenbank: v2014.10.21.05 Rootkit Datenbank: v2014.10.20.01 Lizenz: Kostenlos Malware Schutz: Deaktiviert Bösartiger Webseiten Schutz: Deaktiviert Selbstschutz: Deaktiviert Betriebssystem: Windows 7 Service Pack 1 CPU: x64 Dateisystem: NTFS Benutzer: Rachel Suchlauf-Art: Bedrohungs-Suchlauf Ergebnis: Abgeschlossen Durchsuchte Objekte: 377963 Verstrichene Zeit: 34 Min, 20 Sek Speicher: Aktiviert Autostart: Aktiviert Dateisystem: Aktiviert Archive: Aktiviert Rootkits: Deaktiviert Heuristik: Aktiviert PUP: Warnen PUM: Aktiviert Prozesse: 0 (Keine schädliche Elemente erkannt) Module: 0 (Keine schädliche Elemente erkannt) Registrierungsschlüssel: 0 (Keine schädliche Elemente erkannt) Registrierungswerte: 0 (Keine schädliche Elemente erkannt) Registrierungsdaten: 0 (Keine schädliche Elemente erkannt) Ordner: 0 (Keine schädliche Elemente erkannt) Dateien: 0 (Keine schädliche Elemente erkannt) Physische Sektoren: 0 (Keine schädliche Elemente erkannt) (end) |
21.10.2014, 21:35 | #25 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Keine Downloads mehr möglich und überall Werbung Ok. Was ist mit ESET?
__________________ Logfiles bitte immer in CODE-Tags posten |
21.10.2014, 21:44 | #26 |
| Keine Downloads mehr möglich und überall WerbungCode:
ATTFilter C:\Gorleben\DivxUpdate.exe Win32/Adware.ToolPlugin Anwendung C:\Gorleben\FreeYouTubeToDVDConverter.exe Variante von Win32/Bundled.Toolbar.Ask potenziell unsichere Anwendung C:\Gorleben\FreeYouTubeToiPodConverter39.exe Variante von Win32/Toolbar.Conduit.B evtl. unerwünschte Anwendung C:\Gorleben\FreeYouTubeToMP3Converter(1).exe Variante von Win32/Bundled.Toolbar.Ask potenziell unsichere Anwendung C:\Gorleben\FreeYouTubeToMp3Converter.exe Variante von Win32/Toolbar.Conduit.B evtl. unerwünschte Anwendung C:\Qoobox\Quarantine\C\ProgramData\Performance Optimizer\PerformanceOptimizer.dll.vir Variante von Win32/SProtector.D evtl. unerwünschte Anwendung C:\Qoobox\Quarantine\C\ProgramData\Performance Optimizer\PerformanceOptimizerSvc.dll.vir Variante von Win32/SProtector.D evtl. unerwünschte Anwendung C:\Qoobox\Quarantine\C\ProgramData\Performance Optimizer\PerformanceOptimizer_x64.dll.vir Variante von Win64/SProtector.B evtl. unerwünschte Anwendung C:\Qoobox\Quarantine\C\ProgramData\SSmmaarTCompare\SD.dll.vir Variante von Win32/AdWare.MultiPlug.BN Anwendung C:\Qoobox\Quarantine\C\ProgramData\SSmmaarTCompare\SD.exe.vir Variante von Win32/AdWare.MultiPlug.BN Anwendung C:\Qoobox\Quarantine\C\ProgramData\SSmmaarTCompare\SD.x64.dll.vir Variante von Win64/Adware.MultiPlug.E Anwendung C:\Qoobox\Quarantine\C\Users\Rachel\AppData\Roaming\toolplugin\toolbar.dll.vir Win32/Adware.ToolPlugin Anwendung C:\Users\Rachel\Downloads\FreeYouTubeToMp3Converter36.exe Variante von Win32/Toolbar.Conduit.B evtl. unerwünschte Anwendung C:\Users\Rachel2\Desktop\FreeYouTubeToMP3Converter.exe Win32/OpenCandy potenziell unsichere Anwendung C:\Users\Rachel2\Desktop\PDFCreator-1_7_0_setup.exe Win32/InstallMonetizer.AQ evtl. unerwünschte Anwendung C:\Users\Rachel2\Downloads\FreeYouTubeToMP3Converter3.12.0.128.exe Win32/OpenCandy potenziell unsichere Anwendung C:\Users\Rachel2\Downloads\HSS-2.87-install.exe Win32/Toolbar.Conduit evtl. unerwünschte Anwendung |
21.10.2014, 21:59 | #27 | |
/// Winkelfunktion /// TB-Süch-Tiger™ | Keine Downloads mehr möglich und überall WerbungZitat:
Sieht soweit ok aus Wegen Cookies und anderer Dinge im Web: Um die Pest von vornherein zu blocken (also TrackingCookies, Werbebanner etc.) müsstest du dir mal sowas wie MVPS Hosts File anschauen => Blocking Unwanted Parasites with a Hosts File - sinnvollerweise solltest du alle 4 Wochen mal bei MVPS nachsehen, ob er eine neue Hosts Datei herausgebracht hat. Ist aber nur optional. Um Usertracking zu verhindern kann man gut die Firefox-Erweiterung Ghostery verwenden. Info: Cookies sind keine Schädlinge direkt, aber es besteht die Gefahr der missbräuchlichen Verwendung (eindeutige Wiedererkennung zB für gezielte Werbung o.ä. => HTTP-Cookie ) Ansonsten gibt es noch gute Cookiemanager, Erweiterungen für den Firefox zB wäre da CookieCuller Wenn du aber damit leben kannst, dich bei jeder Browsersession überall neu einzuloggen (zB Facebook, Ebay, GMX, oder auch Trojaner-Board) dann stell den Browser einfach so ein, dass einfach alles beim Beenden des Browser inkl. Cookies gelöscht wird. Ist dein System nun wieder in Ordnung oder gibt's noch andere Funde oder Probleme?
__________________ Logfiles bitte immer in CODE-Tags posten |
21.10.2014, 22:46 | #28 | ||
| Keine Downloads mehr möglich und überall WerbungZitat:
Auf dem Desktop hab ich momentan hauptsächlich die Programme und Dateien, die du mir zum Virusentfernen genannt hast. Danke für die weiteren Tipps, ich werde sie beherzigen. Nochmal großes Dankeschön für die tolle Unterstützung!! Zitat:
|
21.10.2014, 22:49 | #29 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Keine Downloads mehr möglich und überall Werbung Dann wären wir durch! Falls du noch Lob oder Kritik loswerden möchtest => Lob, Kritik und Wünsche - Trojaner-Board Die Programme, die hier zum Einsatz kamen, können alle deinstalliert werden. Es empfiehlt sich Malwarebytes Anti-Malware zu behalten und damit wöchentlich nach Malware zu scannen. Helfen kann dir dabei delfix: Die Reihenfolge ist hier entscheidend.
Bitte abschließend noch die Updates prüfen, unten mein Leitfaden dazu. Um in Zukunft die Aktualität der installierten Programme besser im Überblick zu halten, kannst du zB Secunia PSI verwenden. Für noch mehr Sicherheit solltest Du nach der beseitigten Infektion auch möglichst alle Passwörter ändern. Microsoftupdate Windows XP:Besuch mit dem IE die MS-Updateseite und lass Dir alle wichtigen Updates installieren. Windows Vista/7: Start, Systemsteuerung, Windows-Update PDF-Reader aktualisieren Ein veralteter AdobeReader stellt ein großes Sicherheitsrisiko dar. Du solltest daher besser alte Versionen vom AdobeReader über Systemsteuerung => Software bzw. Programme und Funktionen deinstallieren, indem Du dort auf "Adobe Reader x.0" klickst und das Programm entfernst. (falls du AdobeReader installiert hast) Ich empfehle einen alternativen PDF-Reader wie PDF Xchange Viewer, SumatraPDF oder Foxit PDF Reader, die sind sehr viel schlanker und flotter als der AdobeReader. Bitte überprüf bei der Gelegenheit auch die Aktualität des Flashplayers: Prüfen => Adobe - Flash Player Downloadlinks findest du hier => Browsers and Plugins - FilePony.de Alle Plugins im Firefox-Browser kannst du auch ganz einfach hier auf Aktualität prüfen => https://www.mozilla.org/de/plugincheck Natürlich auch darauf achten, dass andere installierte Browser wie zB Firefox, Opera oder Chrome aktuell sind. Java-Update Veraltete Java-Installationen sind ein großes Sicherheitsrisiko, daher solltest Du die alten Versionen deinstallieren. Beende dazu alle Programme (v.a. die Browser), klick danach auf Start, Systemsteuerung, Software (bzw. Programme und Funktionen) und deinstalliere darüber alle aufgelisteten Java-Versionen. Lad Dir danach von hier das aktuelle Java SE Runtime Environment (JRE) herunter und installiere es.
__________________ Logfiles bitte immer in CODE-Tags posten |