Zurück   Trojaner-Board > Malware entfernen > Log-Analyse und Auswertung

Log-Analyse und Auswertung: C:\Windows\SysWOW64\cleanmgr.exe wurde blockiert

Windows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML.

 
Alt 01.01.2015, 21:46   #1
Paenkie
 
C:\Windows\SysWOW64\cleanmgr.exe wurde blockiert - Standard

C:\Windows\SysWOW64\cleanmgr.exe wurde blockiert



Frohes neues Jahr!
Guten Tag, mein Name ist Mathias. Ich bin neu hier und freue mich, wenn mir jemand helfen kann.

Jede Minute gibt mir avast die Meldung:
Prozess: C:\Windows\SysWOW64\cleanmgr.exe wurde blockiert
Url: hxxp://westringweb.com/guestbook.php?rnou=561ad52b
Infektion: URL:MAL

Angefangen hat alles mit der Öffnung einer Pdf, welche sich in einer Fakemail als Anhang befunden hat.

Diverse Scans ergaben sehr viele Treffer. Allerdings keine Lösung.

Hier erst einmal die verschiedenen Logs:
(Frstlog ist zu groß)
Addition.txt
Code:
ATTFilter
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 01-01-2015
Ran by ***** at 2015-01-01 16:53:48
Running from C:\Users\*****\Computer\Downloads
Boot Mode: Normal
==========================================================


==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Spybot - Search and Destroy (Enabled - Up to date) {9BC38DF1-3CCA-732D-A930-C1CA5F20A4B0}
AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}

==================== Installed Programs ======================

(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Acer Arcade Deluxe (HKLM-x32\...\InstallShield_{2637C347-9DAD-11D6-9EA2-00055D0CA761}) (Version: 4.0.8012 - CyberLink Corp.)
Acer Arcade Deluxe (x32 Version: 4.0.8012 - CyberLink Corp.) Hidden
Acer Arcade Movie (x32 Version: 9.0.6625 - CyberLink Corp.) Hidden
Acer Backup Manager (HKLM-x32\...\InstallShield_{72B776E5-4530-4C4B-9453-751DF87D9D93}) (Version: 2.0.0.68 - NewTech Infosystems)
Acer Crystal Eye webcam (HKLM-x32\...\{51F026FA-5146-4232-A8BA-1364740BD053}) (Version: 1.0.4.5 - Liteon)
Acer ePower Management (HKLM-x32\...\{3DB0448D-AD82-4923-B305-D001E521A964}) (Version: 5.00.3005 - Acer Incorporated)
Acer eRecovery Management (HKLM-x32\...\{7F811A54-5A09-4579-90E1-C93498E230D9}) (Version: 4.05.3013 - Acer Incorporated)
Acer Registration (HKLM-x32\...\Acer Registration) (Version: 1.03.3003 - Acer Incorporated)
Acer ScreenSaver (HKLM-x32\...\Acer Screensaver) (Version: 1.1.0222.2010 - Acer Incorporated)
Acer VCM (HKLM-x32\...\{047F790A-7A2A-4B6A-AD02-38092BA63DAC}) (Version: 4.05.3002 - Acer Incorporated)
Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 1.5.0.7220 - Adobe Systems Inc.)
Adobe Flash Player 15 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 15.0.0.246 - Adobe Systems Incorporated)
Adobe Flash Player 15 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 15.0.0.246 - Adobe Systems Incorporated)
Adobe Reader X (10.1.12) - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AA1000000001}) (Version: 10.1.12 - Adobe Systems Incorporated)
Adobe Shockwave Player 12.1 (HKLM-x32\...\Adobe Shockwave Player) (Version: 12.1.4.154 - Adobe Systems, Inc.)
Alcor Micro USB Card Reader (HKLM-x32\...\InstallShield_{5A22D889-FBDD-4AE8-86EC-089D45FC133E}) (Version: 1.2.17.05001 - Alcor Micro Corp.)
Alcor Micro USB Card Reader (x32 Version: 1.2.17.05001 - Alcor Micro Corp.) Hidden
Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Driver (HKLM-x32\...\{3108C217-BE83-42E4-AE9E-A56A2A92E549}) (Version: 1.0.0.35 - Atheros Communications Inc.)
Avast Free Antivirus (HKLM-x32\...\Avast) (Version: 10.0.2208 - AVAST Software)
Avira SearchFree Toolbar (HKLM-x32\...\{41564952-412D-5637-00A7-A758B70C1500}) (Version: 12.21.0.3946 - APN, LLC)
Backup Manager Basic (x32 Version: 2.0.0.68 - NewTech Infosystems) Hidden
ESET Online Scanner v3 (HKLM-x32\...\ESET Online Scanner) (Version:  - )
Free YouTube to MP3 Converter version 3.11.35.1031 (HKLM-x32\...\Free YouTube to MP3 Converter_is1) (Version: 3.11.35.1031 - DVDVideoSoft Ltd.)
Identity Card (HKLM-x32\...\Identity Card) (Version: 1.00.3003 - Acer Incorporated)
Intel(R) Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1007 - Intel Corporation)
Intel(R) Graphics Media Accelerator Driver (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 8.15.10.2119 - Intel Corporation)
Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 6.0.0.1179 - Intel Corporation)
Intel(R) Rapid Storage Technology (HKLM-x32\...\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: 9.6.0.1014 - Intel Corporation)
Junk Mail filter update (x32 Version: 14.0.8117.416 - Microsoft Corporation) Hidden
Launch Manager (HKLM-x32\...\LManager) (Version: 4.0.14 - Acer Inc.)
Malwarebytes Anti-Malware Version 2.0.4.1028 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.4.1028 - Malwarebytes Corporation)
MediaShow Espresso (x32 Version: 5.5.1403_23691 - CyberLink Corp.) Hidden
Microsoft .NET Framework 4.5.1 (Deutsch) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1031) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft Office Home and Student 2010 (HKLM-x32\...\Office14.SingleImage) (Version: 14.0.7015.1000 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (HKLM-x32\...\{770657D0-A123-3C07-8E44-1C83EC895118}) (Version: 8.0.50727.4053 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148 (HKLM-x32\...\{002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Mozilla Firefox 34.0.5 (x86 de) (HKLM-x32\...\Mozilla Firefox 34.0.5 (x86 de)) (Version: 34.0.5 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 29.0 - Mozilla)
MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
MuseScore 1.3 (HKLM-x32\...\MuseScore) (Version: 1.3.0 - Werner Schweer and Others)
MyWinLocker (x32 Version: 3.1.212.0 - Egis Technology Inc.) Hidden
MyWinLocker Suite (HKLM-x32\...\InstallShield_{738BF5C3-AF7B-4BB0-B7EF-E505EFC756BE}) (Version: 3.1.212.0 - Egis Technology Inc.)
MyWinLocker Suite (x32 Version: 3.1.212.0 - Egis Technology Inc.) Hidden
NTI Backup Now 5 (HKLM-x32\...\InstallShield_{12EFA1A4-AC3B-443C-8143-237EDE760403}) (Version: 5.1.2.630 - NewTech Infosystems)
NTI Backup Now Standard (x32 Version: 5.1.2.630 - NewTech Infosystems) Hidden
NTI Media Maker 8 (HKLM-x32\...\InstallShield_{2413930C-8309-47A6-BC61-5EF27A4222BC}) (Version: 8.0.12.6636 - NewTech Infosystems)
NTI Media Maker 8 (x32 Version: 8.0.12.6636 - NewTech Infosystems) Hidden
Optical Drive Power Management (HKLM-x32\...\{AE09C972-EEB2-4DA5-8090-0FCF54576854}) (Version: 1.01.3007 - Acer Incorporated)
PDFCreator (HKLM-x32\...\{0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}) (Version: 1.2.1 - ***** Heindörfer, Philip Chinery)
pdfforge Toolbar v4.6 (HKLM-x32\...\{E6098043-1183-4580-89EF-423CBF807188}) (Version: 4.6 - Spigot, Inc.) <==== ATTENTION
PDF-to-Word 3.1 Demo (HKLM-x32\...\PDF-to-Word 3.1 Demo) (Version:  - )
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6156 - Realtek Semiconductor Corp.)
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{DE28B448-32E8-4E8F-84F0-A52B21A49B5B}) (Version:  - Microsoft)
Shredder (Version: 2.0.8.3 - Egis Technology Inc.) Hidden
Shredder (x32 Version: 2.0.8.3 - Egis Technology Inc.) Hidden
Skype™ 7.0 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.0.102 - Skype Technologies S.A.)
Spybot - Search & Destroy (HKLM-x32\...\{B4092C6D-E886-4CB2-BA68-FE5A99D31DE7}_is1) (Version: 2.4.40 - Safer-Networking Ltd.)
SUPERAntiSpyware (HKLM\...\{CDDCBBF1-2703-46BC-938B-BCC81A1EEAAA}) (Version: 6.0.1168 - SUPERAntiSpyware.com)
swMSM (x32 Version: 12.0.0.1 - Adobe Systems, Inc) Hidden
Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 15.0.12.0 - Synaptics Incorporated)
Visual Studio C++ 10.0 Runtime (HKLM-x32\...\{4412F224-3849-4461-A3E9-DEEF8D252790}) (Version: 10.0.0 - TomTom International B.V.)
Vodafone Mobile Connect Lite (HKLM-x32\...\{79A64F98-1796-4FA2-B5FF-C90F83D8BACD}) (Version: 9.4.3.17550 - Vodafone)
Welcome Center (HKLM-x32\...\Acer Welcome Center) (Version: 1.02.3004 - Acer Incorporated)
WIDCOMM Bluetooth Software (HKLM\...\{436E0B79-2CFB-4E5F-9380-E17C1B25D0C5}) (Version: 6.3.0.6000 - Broadcom Corporation)
Windows Live Anmelde-Assistent (HKLM-x32\...\{52B97218-98CB-4B8B-9283-D213C85E1AA4}) (Version: 5.000.818.5 - Microsoft Corporation)
Windows Live Essentials (HKLM-x32\...\WinLiveSuite_Wave3) (Version: 14.0.8117.0416 - Microsoft Corporation)
Windows Live Sync (HKLM-x32\...\{586509F0-350D-48B5-B763-9CC2F8D96C4C}) (Version: 14.0.8117.416 - Microsoft Corporation)
Windows Live-Uploadtool (HKLM-x32\...\{205C6BDD-7B73-42DE-8505-9A093F35A238}) (Version: 14.0.8014.1029 - Microsoft Corporation)

==================== Custom CLSID (selected items): ==========================

(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)


==================== Restore Points  =========================

19-12-2014 07:25:41 Windows Update
20-12-2014 05:41:09 Windows Update
21-12-2014 21:59:31 Windows-Sicherung
23-12-2014 11:49:08 Windows Update
27-12-2014 00:59:56 Windows Update
29-12-2014 06:26:11 Windows-Sicherung
30-12-2014 07:05:34 Windows Update
30-12-2014 18:17:21 avast! antivirus system restore point
30-12-2014 18:28:05 avast! antivirus system restore point
31-12-2014 09:02:40 avast! antivirus system restore point

==================== Hosts content: ==========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2009-07-14 03:34 - 2009-06-10 22:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts

==================== Scheduled Tasks (whitelisted) =============

(If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)

Task: {0EEE1967-449F-4EB0-8A9A-628EED4793EE} - System32\Tasks\TuneUpUtilities_Task_BkGndMaintenance2013 => C:\Program Files (x86)\TuneUp Utilities 2013\OneClick.exe
Task: {139077A8-42DD-4D77-8676-5B3E5A9D884A} - System32\Tasks\OfficeSoftwareProtectionPlatform\SvcRestartTask => Sc.exe start osppsvc
Task: {24E12C5B-1A05-40B7-A4A8-6631887538D3} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-12-11] (Adobe Systems Incorporated)
Task: {2D997341-9439-4CAE-B6A3-A51C2368A55F} - System32\Tasks\AdobeFlashPlayerUpdate => C:\Windows\SysWOW64\FlashPlayerUpdateService.exe
Task: {354B9528-69A3-4DC5-AB0D-001A07F58B9D} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: {41A87547-DE3D-421E-A00A-FA79EA683FAA} - System32\Tasks\{BEB66998-81F3-4E8E-A85C-96B60D99FD0A} => Iexplore.exe hxxp://www.skype.com/go/downloading?source=lightinstaller&amp;ver=4.1.0.179.367&amp;LastError=12007
Task: {68D4A5E8-0715-4710-A50E-3739459CD8EE} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Refresh immunization => C:\Program Files (x86)\Spybot - Search &amp; Destroy 2\SDImmunize.exe
Task: {AE4C0233-EE83-4B04-9922-C78EF31F6EA1} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Check for updates => C:\Program Files (x86)\Spybot - Search &amp; Destroy 2\SDUpdate.exe
Task: {AF53DB89-96CC-41EF-8DCF-43A146E7D323} - System32\Tasks\AdobeFlashPlayerUpdate 2 => C:\Windows\SysWOW64\FlashPlayerUpdateService.exe
Task: {B42E2709-57D9-4249-B3E8-38C7252ED1AD} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2014-12-31] (AVAST Software)
Task: {CD1AA393-71F3-4AE1-8777-C3E2BC753FB9} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Scan the system => C:\Program Files (x86)\Spybot - Search &amp; Destroy 2\SDScan.exe
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\TuneUpUtilities_Task_BkGndMaintenance2013.job => C:\Program Files (x86)\TuneUp Utilities 2013\OneClick.exe

==================== Loaded Modules (whitelisted) =============

2011-07-11 10:16 - 2005-03-12 00:07 - 00087040 _____ () C:\Windows\System32\pdfcmnnt.dll
2010-06-25 09:08 - 2010-06-25 09:08 - 00173856 _____ () C:\Program Files\WIDCOMM\Bluetooth Software\btkeyind.dll
2010-11-25 20:46 - 2010-02-03 09:37 - 00244904 ____N () C:\Program Files (x86)\Cyberlink\Shared files\RichVideo.exe
2013-08-28 21:52 - 2013-08-28 21:52 - 03233806 _____ () C:\Program Files (x86)\Tor\tor.exe
2014-12-31 09:05 - 2014-12-31 09:05 - 00388208 _____ () C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxDDU.dll
2014-12-31 09:05 - 2014-12-31 09:05 - 05851328 _____ () C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxRT.dll
2015-01-01 13:02 - 2015-01-01 13:02 - 02908160 _____ () C:\Program Files\AVAST Software\Avast\defs\15010100\algo.dll
2014-12-31 09:05 - 2014-12-31 09:05 - 04495336 _____ () C:\Program Files\AVAST Software\Avast\ng\vbox\x86\VBoxRT-x86.dll
2010-06-28 23:20 - 2010-06-28 23:20 - 00465576 _____ () C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\sqlite3.dll
2010-09-08 03:37 - 2009-05-20 07:02 - 00072200 _____ () C:\Program Files (x86)\Launch Manager\CdDirIo.dll
2009-07-13 22:03 - 2009-07-14 02:15 - 00364544 _____ () C:\Windows\SysWOW64\msjetoledb40.dll
2014-12-31 09:05 - 2014-12-31 09:05 - 38562088 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll
2010-06-28 23:12 - 2010-06-28 23:12 - 01081600 _____ () C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\ACE.dll
2014-12-31 16:11 - 2014-05-13 12:04 - 00109400 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\snlThirdParty150.bpl
2014-12-31 16:11 - 2014-05-13 12:04 - 00416600 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\DEC150.bpl
2014-12-31 16:11 - 2014-05-13 12:04 - 00167768 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\snlFileFormats150.bpl
2014-12-31 16:11 - 2012-08-23 10:38 - 00574840 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\sqlite3.dll
2014-12-31 16:11 - 2012-04-03 17:06 - 00565640 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\av\BDSmartDB.dll
2014-12-09 11:51 - 2014-12-09 11:51 - 03758192 _____ () C:\Program Files (x86)\Mozilla Firefox\mozjs.dll
2014-12-18 07:39 - 2014-12-18 07:39 - 00170496 _____ () C:\Windows\assembly\NativeImages_v2.0.50727_32\IsdiInterop\3d576cbc4ffc5ad06fd61510c5d8f326\IsdiInterop.ni.dll
2010-09-08 02:52 - 2010-03-04 04:08 - 00058880 _____ () C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IsdiInterop.dll

==================== Alternate Data Streams (whitelisted) =========

(If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)


==================== Safe Mode (whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)


==================== EXE Association (whitelisted) =============

(If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)


==================== MSCONFIG/TASK MANAGER disabled items =========

(Currently there is no automatic fix for this section.)


========================= Accounts: ==========================

Administrator (S-1-5-21-1902139459-1109185879-2378804310-500 - Administrator - Disabled)
Gast (S-1-5-21-1902139459-1109185879-2378804310-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-1902139459-1109185879-2378804310-1002 - Limited - Enabled)
***** (S-1-5-21-1902139459-1109185879-2378804310-1000 - Administrator - Enabled) => C:\Users\*****

==================== Faulty Device Manager Devices =============


==================== Event log errors: =========================

Application errors:
==================
Error: (01/01/2015 04:41:39 PM) (Source: MsiInstaller) (EventID: 10005) (User: *****-PC)
Description: Produkt: Vodafone Mobile Connect Lite -- Fehler 2711. The specified Feature name ('ByteMobile') not found in Feature table.

Error: (01/01/2015 04:40:16 PM) (Source: VMCService) (EventID: 0) (User: )
Description: conflictManagerTypeValue

Error: (01/01/2015 01:55:39 PM) (Source: VMCService) (EventID: 0) (User: )
Description: conflictManagerTypeValue

Error: (01/01/2015 11:16:21 AM) (Source: Microsoft-Windows-RestartManager) (EventID: 10006) (User: NT-AUTORITÄT)
Description: Die Anwendung oder der Dienst "Spybot-S&D 2 Scanner Service" konnte nicht heruntergefahren werden.

Error: (01/01/2015 08:57:51 AM) (Source: MsiInstaller) (EventID: 10005) (User: *****-PC)
Description: Produkt: Vodafone Mobile Connect Lite -- Fehler 2711. The specified Feature name ('ByteMobile') not found in Feature table.

Error: (01/01/2015 08:55:53 AM) (Source: VMCService) (EventID: 0) (User: )
Description: conflictManagerTypeValue

Error: (12/31/2014 04:10:42 PM) (Source: SideBySide) (EventID: 80) (User: )
Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest1". Fehler in
Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest2" in Zeile C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest3.
Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit
einer anderen, bereits aktiven Komponentenversion.
In Konflikt stehende Komponenten:.
Komponente 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest.
Komponente 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest.

Error: (12/31/2014 04:10:38 PM) (Source: SideBySide) (EventID: 80) (User: )
Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest1". Fehler in
Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest2" in Zeile C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest3.
Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit
einer anderen, bereits aktiven Komponentenversion.
In Konflikt stehende Komponenten:.
Komponente 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest.
Komponente 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest.

Error: (12/31/2014 03:02:46 PM) (Source: MsiInstaller) (EventID: 10005) (User: *****-PC)
Description: Produkt: Vodafone Mobile Connect Lite -- Fehler 2711. The specified Feature name ('ByteMobile') not found in Feature table.

Error: (12/31/2014 03:01:50 PM) (Source: VMCService) (EventID: 0) (User: )
Description: conflictManagerTypeValue


System errors:
=============
Error: (01/01/2015 04:38:59 PM) (Source: Service Control Manager) (EventID: 7003) (User: )
Description: Der Dienst "Avira Browser-Schutz" ist von folgendem Dienst abhängig: AntiVirService. Dieser Dienst ist eventuell nicht installiert.

Error: (01/01/2015 01:57:55 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Der Dienst "Windows Defender" wurde mit folgendem Fehler beendet: 
%%-2147024882

Error: (01/01/2015 01:55:26 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "Spybot-S&D 2 Scanner Service" wurde aufgrund folgenden Fehlers nicht gestartet: 
%%1053

Error: (01/01/2015 01:55:26 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Spybot-S&D 2 Scanner Service erreicht.

Error: (01/01/2015 01:54:22 PM) (Source: Service Control Manager) (EventID: 7003) (User: )
Description: Der Dienst "Avira Browser-Schutz" ist von folgendem Dienst abhängig: AntiVirService. Dieser Dienst ist eventuell nicht installiert.

Error: (01/01/2015 11:14:28 AM) (Source: DCOM) (EventID: 10010) (User: )
Description: {E579AB5F-1CC4-44B4-BED9-DE0991FF0623}

Error: (01/01/2015 11:13:58 AM) (Source: Service Control Manager) (EventID: 7011) (User: )
Description: Das Zeitlimit (30000 ms) wurde beim Warten auf eine Transaktionsrückmeldung von Dienst NlaSvc erreicht.

Error: (01/01/2015 08:55:31 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "Spybot-S&D 2 Scanner Service" wurde aufgrund folgenden Fehlers nicht gestartet: 
%%1053

Error: (01/01/2015 08:55:31 AM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Spybot-S&D 2 Scanner Service erreicht.

Error: (01/01/2015 08:54:55 AM) (Source: Service Control Manager) (EventID: 7003) (User: )
Description: Der Dienst "Avira Browser-Schutz" ist von folgendem Dienst abhängig: AntiVirService. Dieser Dienst ist eventuell nicht installiert.


Microsoft Office Sessions:
=========================
Error: (01/01/2015 04:41:39 PM) (Source: MsiInstaller) (EventID: 10005) (User: *****-PC)
Description: Produkt: Vodafone Mobile Connect Lite -- Fehler 2711. The specified Feature name ('ByteMobile') not found in Feature table.(NULL)(NULL)(NULL)(NULL)(NULL)

Error: (01/01/2015 04:40:16 PM) (Source: VMCService) (EventID: 0) (User: )
Description: conflictManagerTypeValue

Error: (01/01/2015 01:55:39 PM) (Source: VMCService) (EventID: 0) (User: )
Description: conflictManagerTypeValue

Error: (01/01/2015 11:16:21 AM) (Source: Microsoft-Windows-RestartManager) (EventID: 10006) (User: NT-AUTORITÄT)
Description: 0C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exeSpybot-S&D 2 Scanner Service0302621614048143003A005C00500072006F006700720061006D002000460069006C00650073002000280078003800360029005C0053007000790062006F00740020002D002000530065006100720063006800200026002000440065007300740072006F007900200032005C00610076005C006200640063006F00720065002E0064006C006C000000

Error: (01/01/2015 08:57:51 AM) (Source: MsiInstaller) (EventID: 10005) (User: *****-PC)
Description: Produkt: Vodafone Mobile Connect Lite -- Fehler 2711. The specified Feature name ('ByteMobile') not found in Feature table.(NULL)(NULL)(NULL)(NULL)(NULL)

Error: (01/01/2015 08:55:53 AM) (Source: VMCService) (EventID: 0) (User: )
Description: conflictManagerTypeValue

Error: (12/31/2014 04:10:42 PM) (Source: SideBySide) (EventID: 80) (User: )
Description: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifestC:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifestC:\Users\*****\Computer\Downloads\esetsmartinstaller_deu.exe

Error: (12/31/2014 04:10:38 PM) (Source: SideBySide) (EventID: 80) (User: )
Description: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifestC:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifestC:\Users\*****\Computer\Downloads\esetsmartinstaller_deu.exe

Error: (12/31/2014 03:02:46 PM) (Source: MsiInstaller) (EventID: 10005) (User: *****-PC)
Description: Produkt: Vodafone Mobile Connect Lite -- Fehler 2711. The specified Feature name ('ByteMobile') not found in Feature table.(NULL)(NULL)(NULL)(NULL)(NULL)

Error: (12/31/2014 03:01:50 PM) (Source: VMCService) (EventID: 0) (User: )
Description: conflictManagerTypeValue


==================== Memory info =========================== 

Processor: Intel(R) Core(TM) i3 CPU M 380 @ 2.53GHz
Percentage of memory in use: 55%
Total physical RAM: 3766.76 MB
Available physical RAM: 1691.37 MB
Total Pagefile: 7531.7 MB
Available Pagefile: 5145.9 MB
Total Virtual: 8192 MB
Available Virtual: 8191.81 MB

==================== Drives ================================

Drive c: (Acer) (Fixed) (Total:283.99 GB) (Free:134.79 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 298.1 GB) (Disk ID: 1012CD43)
Partition 1: (Not Active) - (Size=14 GB) - (Type=27)
Partition 2: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=284 GB) - (Type=07 NTFS)

==================== End Of Log ============================
         
weitere logs folgen sogleich

Viele liebe Grüße, danke im Voraus
Mathias

Gmer.txt
Code:
ATTFilter
GMER 2.1.19357 - hxxp://www.gmer.net
Rootkit scan 2015-01-01 17:08:52
Windows 6.1.7601 Service Pack 1 x64 \Device\Harddisk0\DR0 -> \Device\Ide\IAAStorageDevice-1 WDC_WD32 rev.01.0 298,09GB
Running: Gmer-19357.exe; Driver: C:\Users\*****\AppData\Local\Temp\kgdiafoc.sys


---- Kernel code sections - GMER 2.1 ----

INITKDBG  C:\Windows\system32\ntoskrnl.exe!ExDeleteNPagedLookasideList + 528                                                                                   fffff80002fba000 45 bytes [00, 00, 10, 02, 4E, 74, 66, ...]
INITKDBG  C:\Windows\system32\ntoskrnl.exe!ExDeleteNPagedLookasideList + 575                                                                                   fffff80002fba02f 29 bytes [00, 01, 00, 06, 00, 00, 00, ...]

---- User code sections - GMER 2.1 ----

.text     C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamscheduler.exe[2844] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 69                     0000000077801465 2 bytes [80, 77]
.text     C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamscheduler.exe[2844] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 155                    00000000778014bb 2 bytes [80, 77]
.text     ...                                                                                                                                                  * 2
.text     C:\Program Files (x86)\Acer\Acer VCM\AcerVCM.exe[2988] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 69                                       0000000077801465 2 bytes [80, 77]
.text     C:\Program Files (x86)\Acer\Acer VCM\AcerVCM.exe[2988] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 155                                      00000000778014bb 2 bytes [80, 77]
.text     ...                                                                                                                                                  * 2
.text     C:\Windows\SysWOW64\RunDll32.exe[2296] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 69                                                       0000000077801465 2 bytes [80, 77]
.text     C:\Windows\SysWOW64\RunDll32.exe[2296] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 155                                                      00000000778014bb 2 bytes [80, 77]
.text     ...                                                                                                                                                  * 2
.text     C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\BackupManagerTray.exe[2964] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 69   0000000077801465 2 bytes [80, 77]
.text     C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\BackupManagerTray.exe[2964] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 155  00000000778014bb 2 bytes [80, 77]
.text     ...                                                                                                                                                  * 2
.text     C:\Program Files (x86)\Launch Manager\LManager.exe[2920] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 69                                     0000000077801465 2 bytes [80, 77]
.text     C:\Program Files (x86)\Launch Manager\LManager.exe[2920] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 155                                    00000000778014bb 2 bytes [80, 77]
.text     ...                                                                                                                                                  * 2
.text     C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe[3328] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 69                         0000000077801465 2 bytes [80, 77]
.text     C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe[3328] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 155                        00000000778014bb 2 bytes [80, 77]
.text     ...                                                                                                                                                  * 2
.text     C:\Program Files (x86)\Vodafone\Vodafone Mobile Connect\Bin\MobileConnect.exe[3460] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 69          0000000077801465 2 bytes [80, 77]
.text     C:\Program Files (x86)\Vodafone\Vodafone Mobile Connect\Bin\MobileConnect.exe[3460] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 155         00000000778014bb 2 bytes [80, 77]
.text     ...                                                                                                                                                  * 2
.text     C:\Program Files\AVAST Software\Avast\AvastUI.exe[3508] C:\Windows\syswow64\kernel32.dll!SetUnhandledExceptionFilter                                 0000000076d78791 8 bytes [31, C0, C2, 04, 00, 90, 90, ...]
.text     C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\IScheduleSvc.exe[3628] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 69        0000000077801465 2 bytes [80, 77]
.text     C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\IScheduleSvc.exe[3628] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 155       00000000778014bb 2 bytes [80, 77]
.text     ...                                                                                                                                                  * 2
.text     C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe[3764] C:\Windows\syswow64\psapi.dll!GetModuleInformation + 69                          0000000077801465 2 bytes [80, 77]
.text     C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe[3764] C:\Windows\syswow64\psapi.dll!GetModuleInformation + 155                         00000000778014bb 2 bytes [80, 77]
.text     ...                                                                                                                                                  * 2
.text     C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbam.exe[3776] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 69                              0000000077801465 2 bytes [80, 77]
.text     C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbam.exe[3776] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 155                             00000000778014bb 2 bytes [80, 77]
.text     ...                                                                                                                                                  * 2
.text     C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe[3968] C:\Windows\syswow64\psapi.dll!GetModuleInformation + 69                         0000000077801465 2 bytes [80, 77]
.text     C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe[3968] C:\Windows\syswow64\psapi.dll!GetModuleInformation + 155                        00000000778014bb 2 bytes [80, 77]
.text     ...                                                                                                                                                  * 2

---- Threads - GMER 2.1 ----

Thread    C:\Windows\SysWOW64\dllhost.exe [2808:1300]                                                                                                          000000007ef90000
Thread    C:\Windows\SysWOW64\dllhost.exe [2808:1512]                                                                                                          000000007ef919ee
Thread    C:\Windows\SysWOW64\dllhost.exe [2808:2172]                                                                                                          000000007ef967f4
Thread    C:\Windows\SysWOW64\dllhost.exe [2808:2552]                                                                                                          000000007ef95779
Thread    C:\Windows\SysWOW64\cleanmgr.exe [1108:484]                                                                                                          000000007ef97c32
Thread    C:\Windows\SysWOW64\cleanmgr.exe [1108:800]                                                                                                          000000007ef97be4
Thread    C:\Windows\SysWOW64\cleanmgr.exe [1108:116]                                                                                                          000000007ef991d3
Thread    C:\Windows\SysWOW64\cleanmgr.exe [1108:2876]                                                                                                         000000007ef9dc0c

---- Registry - GMER 2.1 ----

Reg       HKLM\SYSTEM\CurrentControlSet\services\BTHPORT\Parameters\Keys\18f46ae01c3b                                                                          
Reg       HKLM\SYSTEM\ControlSet002\services\BTHPORT\Parameters\Keys\18f46ae01c3b (not active ControlSet)                                                      

---- EOF - GMER 2.1 ----
         
Hier noch ein log von Spybot S&D:
Code:
ATTFilter
Search results from Spybot - Search & Destroy

01.01.2015 12:52:15
Scan took 01:34:31.
369 items found.

Delta.Toolbar: [SBI $44F06F05] User settings (Registry Value, nothing done)
  HKEY_USERS\S-1-5-21-1902139459-1109185879-2378804310-1000\Software\Microsoft\Internet Explorer\Protect Approved Extensions\{4D2D3B0F-69BE-477A-90F5-FDDB05357975}

Delta.Toolbar: [SBI $04AEAE14] User settings (Registry Value, nothing done)
  HKEY_USERS\S-1-5-21-1902139459-1109185879-2378804310-1000\Software\Microsoft\Internet Explorer\TabbedBrowsing\bProtectNewTabPageShow

Delta.Toolbar: [SBI $0760E887] User settings (Registry Value, nothing done)
  HKEY_USERS\S-1-5-21-1902139459-1109185879-2378804310-1000\Software\Microsoft\Internet Explorer\TabbedBrowsing\bProtectShowTabsWelcome

Widgi.Toolbar: [SBI $DABAA047] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\Installer\UpgradeCodes\504D229B31D6B2A4EA98800A03AD4420

Widgi.Toolbar: [SBI $DABAA047] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\Installer\UpgradeCodes\504D229B31D6B2A4EA98800A03AD4420

Widgi.Toolbar: [SBI $EECF060A] Settings (Registry Key, nothing done)
  HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\504D229B31D6B2A4EA98800A03AD4420

Widgi.Toolbar: [SBI $16C3A07B] Settings (Registry Value, nothing done)
  HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders\C:\Program Files (x86)\Common Files\Spigot\

Widgi.Toolbar: [SBI $000389AB] Settings (Registry Value, nothing done)
  HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders\C:\Program Files (x86)\Common Files\Spigot\Search Settings\

Widgi.Toolbar: [SBI $1E14509F] Settings (Registry Value, nothing done)
  HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders\C:\Program Files (x86)\Common Files\Spigot\Search Settings\Res\

Widgi.Toolbar: [SBI $E1F050EF] Settings (Registry Value, nothing done)
  HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders\C:\Program Files (x86)\pdfforge Toolbar\

Widgi.Toolbar: [SBI $03E18DB3] Settings (Registry Value, nothing done)
  HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders\C:\Program Files (x86)\pdfforge Toolbar\IE\

Widgi.Toolbar: [SBI $60A6F1DA] Settings (Registry Value, nothing done)
  HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders\C:\Program Files (x86)\pdfforge Toolbar\Res\

Widgi.Toolbar: [SBI $E4808FA3] Settings (Registry Value, nothing done)
  HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders\C:\Program Files (x86)\Application Updater\

Tuguu.VAFPlayer: [SBI $76F6A96F] Root class (Registry Key, nothing done)
  HKEY_LOCAL_MACHINE\SOFTWARE\Classes\VafPlayer

Tuguu.VAFPlayer: [SBI $76F6A96F] Root class (Registry Key, nothing done)
  HKEY_LOCAL_MACHINE\SOFTWARE\Classes\VafPlayer

Tuguu.VAFPlayer: [SBI $96752782] Settings (Registry Value, nothing done)
  HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders\C:\Program Files (x86)\Tuguu SL\

Tuguu.VAFPlayer: [SBI $ABF0D615] Settings (Registry Value, nothing done)
  HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders\C:\Program Files (x86)\Tuguu SL\VAFPlayer\

Tuguu.VAFPlayer: [SBI $C4882D2E] Settings (Registry Value, nothing done)
  HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders\C:\Program Files (x86)\Tuguu SL\VAFPlayer\languages\

Tuguu.VAFPlayer: [SBI $AD693880] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.3g2\VafPlayer

Tuguu.VAFPlayer: [SBI $AD693880] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.3g2\VafPlayer

Tuguu.VAFPlayer: [SBI $07007C2B] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.3gp2\VafPlayer

Tuguu.VAFPlayer: [SBI $07007C2B] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.3gp2\VafPlayer

Tuguu.VAFPlayer: [SBI $657DB6C7] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.3gpp\VafPlayer

Tuguu.VAFPlayer: [SBI $657DB6C7] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.3gpp\VafPlayer

Tuguu.VAFPlayer: [SBI $CF14F26C] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.3gp\VafPlayer

Tuguu.VAFPlayer: [SBI $CF14F26C] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.3gp\VafPlayer

Tuguu.VAFPlayer: [SBI $57B102F0] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.aac\VafPlayer

Tuguu.VAFPlayer: [SBI $57B102F0] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.aac\VafPlayer

Tuguu.VAFPlayer: [SBI $5E88C3A1] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.ac3\VafPlayer

Tuguu.VAFPlayer: [SBI $5E88C3A1] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.ac3\VafPlayer

Tuguu.VAFPlayer: [SBI $5C5DBF1F] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.alac\VafPlayer

Tuguu.VAFPlayer: [SBI $5C5DBF1F] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.alac\VafPlayer

Tuguu.VAFPlayer: [SBI $0D0A959F] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.amr\VafPlayer

Tuguu.VAFPlayer: [SBI $0D0A959F] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.amr\VafPlayer

Tuguu.VAFPlayer: [SBI $8776F0FC] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.amv\VafPlayer

Tuguu.VAFPlayer: [SBI $8776F0FC] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.amv\VafPlayer

Tuguu.VAFPlayer: [SBI $3D04790D] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.ape\VafPlayer

Tuguu.VAFPlayer: [SBI $3D04790D] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.ape\VafPlayer

Tuguu.VAFPlayer: [SBI $4B766E62] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.apl\VafPlayer

Tuguu.VAFPlayer: [SBI $4B766E62] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.apl\VafPlayer

Tuguu.VAFPlayer: [SBI $2B60B90D] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.avi\VafPlayer

Tuguu.VAFPlayer: [SBI $2B60B90D] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.avi\VafPlayer

Tuguu.VAFPlayer: [SBI $CD41CD2E] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.divx\VafPlayer

Tuguu.VAFPlayer: [SBI $CD41CD2E] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.divx\VafPlayer

Tuguu.VAFPlayer: [SBI $7B0392BB] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.dts\VafPlayer

Tuguu.VAFPlayer: [SBI $7B0392BB] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.dts\VafPlayer

Tuguu.VAFPlayer: [SBI $7A924A30] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.evo\VafPlayer

Tuguu.VAFPlayer: [SBI $7A924A30] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.evo\VafPlayer

Tuguu.VAFPlayer: [SBI $BD73B57B] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.flac\VafPlayer

Tuguu.VAFPlayer: [SBI $BD73B57B] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.flac\VafPlayer

Tuguu.VAFPlayer: [SBI $098C1D26] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.flv\VafPlayer

Tuguu.VAFPlayer: [SBI $098C1D26] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.flv\VafPlayer

Tuguu.VAFPlayer: [SBI $753083B6] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.hdmov\VafPlayer

Tuguu.VAFPlayer: [SBI $753083B6] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.hdmov\VafPlayer

Tuguu.VAFPlayer: [SBI $C5E9817C] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.it\VafPlayer

Tuguu.VAFPlayer: [SBI $C5E9817C] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.it\VafPlayer

Tuguu.VAFPlayer: [SBI $7D158301] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.m1v\VafPlayer

Tuguu.VAFPlayer: [SBI $7D158301] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.m1v\VafPlayer

Tuguu.VAFPlayer: [SBI $7627E301] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.m2p\VafPlayer

Tuguu.VAFPlayer: [SBI $7627E301] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.m2p\VafPlayer

Tuguu.VAFPlayer: [SBI $938BBECD] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.m2ts\VafPlayer

Tuguu.VAFPlayer: [SBI $938BBECD] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.m2ts\VafPlayer

Tuguu.VAFPlayer: [SBI $FC5B8662] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.m2t\VafPlayer

Tuguu.VAFPlayer: [SBI $FC5B8662] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.m2t\VafPlayer

Tuguu.VAFPlayer: [SBI $54DD37F3] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.m2v\VafPlayer

Tuguu.VAFPlayer: [SBI $54DD37F3] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.m2v\VafPlayer

Tuguu.VAFPlayer: [SBI $D82FCE42] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.m4a\VafPlayer

Tuguu.VAFPlayer: [SBI $D82FCE42] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.m4a\VafPlayer

Tuguu.VAFPlayer: [SBI $074C5E17] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.m4v\VafPlayer

Tuguu.VAFPlayer: [SBI $074C5E17] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.m4v\VafPlayer

Tuguu.VAFPlayer: [SBI $9E9C611C] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.mka\VafPlayer

Tuguu.VAFPlayer: [SBI $9E9C611C] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.mka\VafPlayer

Tuguu.VAFPlayer: [SBI $41FFF149] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.mkv\VafPlayer

Tuguu.VAFPlayer: [SBI $41FFF149] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.mkv\VafPlayer

Tuguu.VAFPlayer: [SBI $6CB27838] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.mo3\VafPlayer

Tuguu.VAFPlayer: [SBI $6CB27838] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.mo3\VafPlayer

Tuguu.VAFPlayer: [SBI $792A9310] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.mod\VafPlayer

Tuguu.VAFPlayer: [SBI $792A9310] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.mod\VafPlayer

Tuguu.VAFPlayer: [SBI $95CEBDCE] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.mov\VafPlayer

Tuguu.VAFPlayer: [SBI $95CEBDCE] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.mov\VafPlayer

Tuguu.VAFPlayer: [SBI $54996A6B] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.mp2v\VafPlayer

Tuguu.VAFPlayer: [SBI $54996A6B] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.mp2v\VafPlayer

Tuguu.VAFPlayer: [SBI $047F219C] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.mp3\VafPlayer

Tuguu.VAFPlayer: [SBI $047F219C] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.mp3\VafPlayer

Tuguu.VAFPlayer: [SBI $0708038F] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.mp4v\VafPlayer

Tuguu.VAFPlayer: [SBI $0708038F] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.mp4v\VafPlayer

Tuguu.VAFPlayer: [SBI $9F7E2E86] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.mp4\VafPlayer

Tuguu.VAFPlayer: [SBI $9F7E2E86] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.mp4\VafPlayer

Tuguu.VAFPlayer: [SBI $8AE6C5AE] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.mpc\VafPlayer

Tuguu.VAFPlayer: [SBI $8AE6C5AE] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.mpc\VafPlayer

Tuguu.VAFPlayer: [SBI $9CA01EDD] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.mpeg\VafPlayer

Tuguu.VAFPlayer: [SBI $9CA01EDD] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.mpeg\VafPlayer

Tuguu.VAFPlayer: [SBI $A81C115C] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.mpe\VafPlayer

Tuguu.VAFPlayer: [SBI $A81C115C] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.mpe\VafPlayer

Tuguu.VAFPlayer: [SBI $009AA0CD] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.mpg\VafPlayer

Tuguu.VAFPlayer: [SBI $009AA0CD] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.mpg\VafPlayer

Tuguu.VAFPlayer: [SBI $EE51CE08] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.mpv2\VafPlayer

Tuguu.VAFPlayer: [SBI $EE51CE08] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.mpv2\VafPlayer

Tuguu.VAFPlayer: [SBI $CCAB1AFA] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.mpv4\VafPlayer

Tuguu.VAFPlayer: [SBI $CCAB1AFA] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.mpv4\VafPlayer

Tuguu.VAFPlayer: [SBI $B3A4915C] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.mtm\VafPlayer

Tuguu.VAFPlayer: [SBI $B3A4915C] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.mtm\VafPlayer

Tuguu.VAFPlayer: [SBI $1AB51666] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.mts\VafPlayer

Tuguu.VAFPlayer: [SBI $1AB51666] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.mts\VafPlayer

Tuguu.VAFPlayer: [SBI $16F546B4] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.ofr\VafPlayer

Tuguu.VAFPlayer: [SBI $16F546B4] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.ofr\VafPlayer

Tuguu.VAFPlayer: [SBI $AF0E9D5C] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.ofs\VafPlayer

Tuguu.VAFPlayer: [SBI $AF0E9D5C] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.ofs\VafPlayer

Tuguu.VAFPlayer: [SBI $ED822213] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.oga\VafPlayer

Tuguu.VAFPlayer: [SBI $ED822213] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.oga\VafPlayer

Tuguu.VAFPlayer: [SBI $CF78F6E1] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.ogg\VafPlayer

Tuguu.VAFPlayer: [SBI $CF78F6E1] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.ogg\VafPlayer

Tuguu.VAFPlayer: [SBI $A8778BF7] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.ogm\VafPlayer

Tuguu.VAFPlayer: [SBI $A8778BF7] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.ogm\VafPlayer

Tuguu.VAFPlayer: [SBI $32E1B246] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.ogv\VafPlayer

Tuguu.VAFPlayer: [SBI $32E1B246] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.ogv\VafPlayer

Tuguu.VAFPlayer: [SBI $741E27B4] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.pva\VafPlayer

Tuguu.VAFPlayer: [SBI $741E27B4] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.pva\VafPlayer

Tuguu.VAFPlayer: [SBI $0EF0B59B] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.ra\VafPlayer

Tuguu.VAFPlayer: [SBI $0EF0B59B] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.ra\VafPlayer

Tuguu.VAFPlayer: [SBI $BDFBE825] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.rmvb\VafPlayer

Tuguu.VAFPlayer: [SBI $BDFBE825] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.rmvb\VafPlayer

Tuguu.VAFPlayer: [SBI $4B051C7F] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.rm\VafPlayer

Tuguu.VAFPlayer: [SBI $4B051C7F] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.rm\VafPlayer

Tuguu.VAFPlayer: [SBI $3656FE38] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.s3m\VafPlayer

Tuguu.VAFPlayer: [SBI $3656FE38] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.s3m\VafPlayer

Tuguu.VAFPlayer: [SBI $01989CA9] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.tpr\VafPlayer

Tuguu.VAFPlayer: [SBI $01989CA9] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.tpr\VafPlayer

Tuguu.VAFPlayer: [SBI $A0F898D8] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.tp\VafPlayer

Tuguu.VAFPlayer: [SBI $A0F898D8] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.tp\VafPlayer

Tuguu.VAFPlayer: [SBI $B185F2A1] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.ts\VafPlayer

Tuguu.VAFPlayer: [SBI $B185F2A1] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.ts\VafPlayer

Tuguu.VAFPlayer: [SBI $0E5C563B] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.umx\VafPlayer

Tuguu.VAFPlayer: [SBI $0E5C563B] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.umx\VafPlayer

Tuguu.VAFPlayer: [SBI $F90BCA85] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.vob\VafPlayer

Tuguu.VAFPlayer: [SBI $F90BCA85] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.vob\VafPlayer

Tuguu.VAFPlayer: [SBI $D98F77D8] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.webm\VafPlayer

Tuguu.VAFPlayer: [SBI $D98F77D8] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.webm\VafPlayer

Tuguu.VAFPlayer: [SBI $3713DE89] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.wmv\VafPlayer

Tuguu.VAFPlayer: [SBI $3713DE89] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.wmv\VafPlayer

Tuguu.VAFPlayer: [SBI $ABCAF8D8] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.wv\VafPlayer

Tuguu.VAFPlayer: [SBI $ABCAF8D8] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.wv\VafPlayer

Tuguu.VAFPlayer: [SBI $BFB6A653] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.xm\VafPlayer

Tuguu.VAFPlayer: [SBI $BFB6A653] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\.xm\VafPlayer

Tuguu.VAFPlayer: [SBI $427B4781] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.3g2\

Tuguu.VAFPlayer: [SBI $427B4781] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.3g2\

Tuguu.VAFPlayer: [SBI $78B4DE33] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.3gp2\

Tuguu.VAFPlayer: [SBI $78B4DE33] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.3gp2\

Tuguu.VAFPlayer: [SBI $C7EDC5D0] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.3gpp\

Tuguu.VAFPlayer: [SBI $C7EDC5D0] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.3gpp\

Tuguu.VAFPlayer: [SBI $FD225C62] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.3gp\

Tuguu.VAFPlayer: [SBI $FD225C62] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.3gp\

Tuguu.VAFPlayer: [SBI $BB2BABB4] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.aac\

Tuguu.VAFPlayer: [SBI $BB2BABB4] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.aac\

Tuguu.VAFPlayer: [SBI $5BB1813D] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.ac3\

Tuguu.VAFPlayer: [SBI $5BB1813D] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.ac3\

Tuguu.VAFPlayer: [SBI $AEDB3AE0] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.alac\

Tuguu.VAFPlayer: [SBI $AEDB3AE0] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.alac\

Tuguu.VAFPlayer: [SBI $9A13512A] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.amr\

Tuguu.VAFPlayer: [SBI $9A13512A] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.amr\

Tuguu.VAFPlayer: [SBI $91BB862C] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.amv\

Tuguu.VAFPlayer: [SBI $91BB862C] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.amv\

Tuguu.VAFPlayer: [SBI $71F7AC63] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.ape\

Tuguu.VAFPlayer: [SBI $71F7AC63] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.ape\

Tuguu.VAFPlayer: [SBI $89F4B48E] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.apl\

Tuguu.VAFPlayer: [SBI $89F4B48E] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.apl\

Tuguu.VAFPlayer: [SBI $F0D2DE7A] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.avi\

Tuguu.VAFPlayer: [SBI $F0D2DE7A] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.avi\

Tuguu.VAFPlayer: [SBI $827AF2ED] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.divx\

Tuguu.VAFPlayer: [SBI $827AF2ED] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.divx\

Tuguu.VAFPlayer: [SBI $93CA9103] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.dts\

Tuguu.VAFPlayer: [SBI $93CA9103] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.dts\

Tuguu.VAFPlayer: [SBI $B04389A6] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.evo\

Tuguu.VAFPlayer: [SBI $B04389A6] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.evo\

Tuguu.VAFPlayer: [SBI $C73CBCB8] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.flac\

Tuguu.VAFPlayer: [SBI $C73CBCB8] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.flac\

Tuguu.VAFPlayer: [SBI $A71DA0E7] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.flv\

Tuguu.VAFPlayer: [SBI $A71DA0E7] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.flv\

Tuguu.VAFPlayer: [SBI $72120405] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.hdmov\

Tuguu.VAFPlayer: [SBI $72120405] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.hdmov\

Tuguu.VAFPlayer: [SBI $60906D2F] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.it\

Tuguu.VAFPlayer: [SBI $60906D2F] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.it\

Tuguu.VAFPlayer: [SBI $FC0E7C82] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.m1v\

Tuguu.VAFPlayer: [SBI $FC0E7C82] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.m1v\

Tuguu.VAFPlayer: [SBI $512446AE] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.m2p\

Tuguu.VAFPlayer: [SBI $512446AE] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.m2p\

Tuguu.VAFPlayer: [SBI $567D9DD1] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.m2ts\

Tuguu.VAFPlayer: [SBI $567D9DD1] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.m2ts\

Tuguu.VAFPlayer: [SBI $5A8C91A8] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.m2t\

Tuguu.VAFPlayer: [SBI $5A8C91A8] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.m2t\

Tuguu.VAFPlayer: [SBI $5F58FA2B] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.m2v\

Tuguu.VAFPlayer: [SBI $5F58FA2B] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.m2v\

Tuguu.VAFPlayer: [SBI $0D09A744] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.m4a\

Tuguu.VAFPlayer: [SBI $0D09A744] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.m4a\

Tuguu.VAFPlayer: [SBI $C284F138] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.m4v\

Tuguu.VAFPlayer: [SBI $C284F138] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.m4v\

Tuguu.VAFPlayer: [SBI $10DCE6A8] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.mka\

Tuguu.VAFPlayer: [SBI $10DCE6A8] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.mka\

Tuguu.VAFPlayer: [SBI $DF51B0D4] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.mkv\

Tuguu.VAFPlayer: [SBI $DF51B0D4] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.mkv\

Tuguu.VAFPlayer: [SBI $684EACB1] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.mo3\

Tuguu.VAFPlayer: [SBI $684EACB1] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.mo3\

Tuguu.VAFPlayer: [SBI $1D4E8AAD] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.mod\

Tuguu.VAFPlayer: [SBI $1D4E8AAD] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.mod\

Tuguu.VAFPlayer: [SBI $3639BD36] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.mov\

Tuguu.VAFPlayer: [SBI $3639BD36] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.mov\

Tuguu.VAFPlayer: [SBI $9D65CD97] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.mp2v\

Tuguu.VAFPlayer: [SBI $9D65CD97] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.mp2v\

Tuguu.VAFPlayer: [SBI $38930175] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.mp3\

Tuguu.VAFPlayer: [SBI $38930175] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.mp3\

Tuguu.VAFPlayer: [SBI $00B9C684] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.mp4v\

Tuguu.VAFPlayer: [SBI $00B9C684] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.mp4v\

Tuguu.VAFPlayer: [SBI $D9BD0B11] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.mp4\

Tuguu.VAFPlayer: [SBI $D9BD0B11] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.mp4\

Tuguu.VAFPlayer: [SBI $ACBD2D0D] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.mpc\

Tuguu.VAFPlayer: [SBI $ACBD2D0D] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.mpc\

Tuguu.VAFPlayer: [SBI $48E07B07] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.mpeg\

Tuguu.VAFPlayer: [SBI $48E07B07] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.mpeg\

Tuguu.VAFPlayer: [SBI $A2C19188] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.mpe\

Tuguu.VAFPlayer: [SBI $A2C19188] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.mpe\

Tuguu.VAFPlayer: [SBI $A715FA0B] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.mpg\

Tuguu.VAFPlayer: [SBI $A715FA0B] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.mpg\

Tuguu.VAFPlayer: [SBI $88208B3B] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.mpv2\

Tuguu.VAFPlayer: [SBI $88208B3B] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.mpv2\

Tuguu.VAFPlayer: [SBI $865C37BE] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.mpv4\

Tuguu.VAFPlayer: [SBI $865C37BE] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.mpv4\

Tuguu.VAFPlayer: [SBI $5CF83266] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.mtm\

Tuguu.VAFPlayer: [SBI $5CF83266] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.mtm\

Tuguu.VAFPlayer: [SBI $6B767CF7] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.mts\

Tuguu.VAFPlayer: [SBI $6B767CF7] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.mts\

Tuguu.VAFPlayer: [SBI $291C8161] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.ofr\

Tuguu.VAFPlayer: [SBI $291C8161] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.ofr\

Tuguu.VAFPlayer: [SBI $C64E3780] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.ofs\

Tuguu.VAFPlayer: [SBI $C64E3780] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.ofs\

Tuguu.VAFPlayer: [SBI $3ADB8043] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.oga\

Tuguu.VAFPlayer: [SBI $3ADB8043] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.oga\

Tuguu.VAFPlayer: [SBI $34A73CC6] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.ogg\

Tuguu.VAFPlayer: [SBI $34A73CC6] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.ogg\

Tuguu.VAFPlayer: [SBI $2622F949] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.ogm\

Tuguu.VAFPlayer: [SBI $2622F949] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.ogm\

Tuguu.VAFPlayer: [SBI $F556D63F] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.ogv\

Tuguu.VAFPlayer: [SBI $F556D63F] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.ogv\

Tuguu.VAFPlayer: [SBI $6222E015] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.pva\

Tuguu.VAFPlayer: [SBI $6222E015] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.pva\

Tuguu.VAFPlayer: [SBI $137CF0F6] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.ra\

Tuguu.VAFPlayer: [SBI $137CF0F6] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.ra\

Tuguu.VAFPlayer: [SBI $4D689709] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.rmvb\

Tuguu.VAFPlayer: [SBI $4D689709] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.rmvb\

Tuguu.VAFPlayer: [SBI $0F8589FC] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.rm\

Tuguu.VAFPlayer: [SBI $0F8589FC] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.rm\

Tuguu.VAFPlayer: [SBI $A2F0B547] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.s3m\

Tuguu.VAFPlayer: [SBI $A2F0B547] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.s3m\

Tuguu.VAFPlayer: [SBI $75368125] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.tpr\

Tuguu.VAFPlayer: [SBI $75368125] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.tpr\

Tuguu.VAFPlayer: [SBI $4F51111C] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.tp\

Tuguu.VAFPlayer: [SBI $4F51111C] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.tp\

Tuguu.VAFPlayer: [SBI $A5D7CC7E] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.ts\

Tuguu.VAFPlayer: [SBI $A5D7CC7E] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.ts\

Tuguu.VAFPlayer: [SBI $26BDD4D9] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.umx\

Tuguu.VAFPlayer: [SBI $26BDD4D9] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.umx\

Tuguu.VAFPlayer: [SBI $C1860675] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.vob\

Tuguu.VAFPlayer: [SBI $C1860675] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.vob\

Tuguu.VAFPlayer: [SBI $51C5541E] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.webm\

Tuguu.VAFPlayer: [SBI $51C5541E] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.webm\

Tuguu.VAFPlayer: [SBI $F55EB0DC] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.wmv\

Tuguu.VAFPlayer: [SBI $F55EB0DC] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.wmv\

Tuguu.VAFPlayer: [SBI $E27B2B30] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.wv\

Tuguu.VAFPlayer: [SBI $E27B2B30] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.wv\

Tuguu.VAFPlayer: [SBI $72909288] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.xm\

Tuguu.VAFPlayer: [SBI $72909288] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\.xm\

Microsoft.WindowsSecurityCenter_disabled: [SBI $2E20C9A9] Settings (Registry Change, nothing done)
  HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\wscsvc\Start

Microsoft.WindowsSecurityCenter_disabled: [SBI $2E20C9A9] Settings (Registry Change, nothing done)
  HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\wscsvc\Start

Macromedia.FlashPlayer.Cookies: [SBI $6AA61750]  Text file (File, nothing done)
  C:\Users\****\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YDEDDLKL\cdn.zopim.com\47RtJCp9551l41F500mketBis297Eoy3Session_SO.sol
  Properties.size=86
  Properties.md5=49EB68A553E8F65B79425BEF78EEF058
  Properties.filedate=1404150806
  Properties.filedatetext=2014-06-30 18:53:25

Macromedia.FlashPlayer.Cookies: [SBI $6AA61750]  Text file (File, nothing done)
  C:\Users\****\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YDEDDLKL\cdn.zopim.com\47RtJCp9551l41F500mketBis297Eoy3Volatile_SO.sol
  Properties.size=196
  Properties.md5=2443D0E6A1429BF576F290FF01096586
  Properties.filedate=1404150806
  Properties.filedatetext=2014-06-30 18:53:25

Macromedia.FlashPlayer.Cookies: [SBI $6AA61750]  Text file (File, nothing done)
  C:\Users\****\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YDEDDLKL\de-ipd.cdn.videoplaza.tv\com.videoplaza.adplayer.sol
  Properties.size=149
  Properties.md5=A06EAFE4E77C0A5C9718634D9083A075
  Properties.filedate=1418587947
  Properties.filedatetext=2014-12-14 21:12:26

Macromedia.FlashPlayer.Cookies: [SBI $6AA61750]  Text file (File, nothing done)
  C:\Users\****\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YDEDDLKL\de-ipd.cdn.videoplaza.tv\com.videoplaza.bootloader.sol
  Properties.size=122
  Properties.md5=7456B8F5B087113AD99FDE01E29440E5
  Properties.filedate=1419948865
  Properties.filedatetext=2014-12-30 15:14:24

Macromedia.FlashPlayer.Cookies: [SBI $6AA61750]  Text file (File, nothing done)
  C:\Users\****\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YDEDDLKL\de-ipd.cdn.videoplaza.tv\se.videoplaza.kit.adplayer.adplayer.sol
  Properties.size=5756
  Properties.md5=4920C3574E3837A5A31F622A0D365B37
  Properties.filedate=1419951297
  Properties.filedatetext=2014-12-30 15:54:56

Macromedia.FlashPlayer.Cookies: [SBI $6AA61750]  Text file (File, nothing done)
  C:\Users\****\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YDEDDLKL\de-uim.cdn.videoplaza.tv\com.videoplaza.bootloader.sol
  Properties.size=121
  Properties.md5=19886C71873C32B411EFB65418178503
  Properties.filedate=1405832227
  Properties.filedatetext=2014-07-20 05:57:06

Macromedia.FlashPlayer.Cookies: [SBI $6AA61750]  Text file (File, nothing done)
  C:\Users\****\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YDEDDLKL\de-uim.cdn.videoplaza.tv\se.videoplaza.kit.adplayer.adplayer.sol
  Properties.size=144
  Properties.md5=2F084212FAF1CD37D1506CAEF6794750
  Properties.filedate=1398337497
  Properties.filedatetext=2014-04-24 12:04:56

Macromedia.FlashPlayer.Cookies: [SBI $6AA61750]  Text file (File, nothing done)
  C:\Users\****\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YDEDDLKL\edge.liveleak.com\com.jeroenwijering.sol
  Properties.size=54
  Properties.md5=BAA08DB73B2C679C9C0AB4B552DC2B1A
  Properties.filedate=1418644964
  Properties.filedatetext=2014-12-15 13:02:43

Macromedia.FlashPlayer.Cookies: [SBI $6AA61750]  Text file (File, nothing done)
  C:\Users\****\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YDEDDLKL\eu.hcdn.co\com.longtailvideo.jwplayer.sol
  Properties.size=58
  Properties.md5=011E047AB8164B76C7FF8769A37C6734
  Properties.filedate=1418870907
  Properties.filedatetext=2014-12-18 03:48:27

Macromedia.FlashPlayer.Cookies: [SBI $6AA61750]  Text file (File, nothing done)
  C:\Users\****\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YDEDDLKL\f.vimeocdn.com\com.conviva.livePass.sol
  Properties.size=225
  Properties.md5=9A6C689A3AAED41BB95A5CD2A9E4CB08
  Properties.filedate=1399660379
  Properties.filedatetext=2014-05-09 19:32:59

Macromedia.FlashPlayer.Cookies: [SBI $6AA61750]  Text file (File, nothing done)
  C:\Users\****\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YDEDDLKL\filenuke.com\com.longtailvideo.jwplayer.sol
  Properties.size=65
  Properties.md5=2615AF2321A42D5469F7F1209D171E50
  Properties.filedate=1415919315
  Properties.filedatetext=2014-11-13 23:55:14

Macromedia.FlashPlayer.Cookies: [SBI $6AA61750]  Text file (File, nothing done)
  C:\Users\****\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YDEDDLKL\gorillavid.in\com.jeroenwijering.sol
  Properties.size=54
  Properties.md5=6B838B7AC64BC850699860B0C72F3AB2
  Properties.filedate=1417704776
  Properties.filedatetext=2014-12-04 15:52:55

Macromedia.FlashPlayer.Cookies: [SBI $6AA61750]  Text file (File, nothing done)
  C:\Users\****\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YDEDDLKL\grooveshark.com\jsQueue.sol
  Properties.size=3175
  Properties.md5=3E4D688D37C4F114C1313FEFDD910A13
  Properties.filedate=1419453533
  Properties.filedatetext=2014-12-24 21:38:52

Macromedia.FlashPlayer.Cookies: [SBI $6AA61750]  Text file (File, nothing done)
  C:\Users\****\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YDEDDLKL\images-na.ssl-images-amazon.com\mercury.sol
  Properties.size=69
  Properties.md5=C61226DD3132F00308E6BC41EAFE64B1
  Properties.filedate=1415232174
  Properties.filedatetext=2014-11-06 01:02:53

Macromedia.FlashPlayer.Cookies: [SBI $6AA61750]  Text file (File, nothing done)
  C:\Users\****\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YDEDDLKL\is.myvideo.de\com.conviva.livePass.sol
  Properties.size=410
  Properties.md5=D2A24AB451312A2FA7BA150BC189F7AE
  Properties.filedate=1399788323
  Properties.filedatetext=2014-05-11 07:05:22

Macromedia.FlashPlayer.Cookies: [SBI $6AA61750]  Text file (File, nothing done)
  C:\Users\****\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YDEDDLKL\modovideo.com\com.jeroenwijering.sol
  Properties.size=50
  Properties.md5=56EEF84EDFBF218442F7AFFE5876619E
  Properties.filedate=1413631403
  Properties.filedatetext=2014-10-18 12:23:23

Macromedia.FlashPlayer.Cookies: [SBI $6AA61750]  Text file (File, nothing done)
  C:\Users\****\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YDEDDLKL\mpsnare.iesnare.com\stm.sol
  Properties.size=79
  Properties.md5=70F7C0A12A1893618B576A5454E7CF9F
  Properties.filedate=1413806323
  Properties.filedatetext=2014-10-20 12:58:43

Macromedia.FlashPlayer.Cookies: [SBI $6AA61750]  Text file (File, nothing done)
  C:\Users\****\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YDEDDLKL\s.tbcdn.cn\alipay.com.sol
  Properties.size=188
  Properties.md5=952CAD0B05AECE1B9128A28B8F98F7E8
  Properties.filedate=1404150984
  Properties.filedatetext=2014-06-30 18:56:23

Macromedia.FlashPlayer.Cookies: [SBI $6AA61750]  Text file (File, nothing done)
  C:\Users\****\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YDEDDLKL\s.uicdn.com\com.longtailvideo.jwplayer.sol
  Properties.size=65
  Properties.md5=936C3E51AB948D41701A7F0D13B2A2AA
  Properties.filedate=1415924815
  Properties.filedatetext=2014-11-14 01:26:54

Macromedia.FlashPlayer.Cookies: [SBI $6AA61750]  Text file (File, nothing done)
  C:\Users\****\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YDEDDLKL\s.ytimg.com\soundData.sol
  Properties.size=58
  Properties.md5=CC7402771A11BE58BC7197CCADBD3223
  Properties.filedate=1419802756
  Properties.filedatetext=2014-12-28 22:39:15

Macromedia.FlashPlayer.Cookies: [SBI $6AA61750]  Text file (File, nothing done)
  C:\Users\****\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YDEDDLKL\s.ytimg.com\subtitlesModuleData.sol
  Properties.size=63
  Properties.md5=9DE49710739F75999D66A47B6EE1A8A8
  Properties.filedate=1416566492
  Properties.filedatetext=2014-11-21 11:41:32

Macromedia.FlashPlayer.Cookies: [SBI $6AA61750]  Text file (File, nothing done)
  C:\Users\****\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YDEDDLKL\ssl.hurra.com\restore.hurra.com.sol
  Properties.size=266
  Properties.md5=1F1A25CBE8427C04BFBC79CB35BFBD46
  Properties.filedate=1410620595
  Properties.filedatetext=2014-09-13 16:03:15

Macromedia.FlashPlayer.Cookies: [SBI $6AA61750]  Text file (File, nothing done)
  C:\Users\****\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YDEDDLKL\static.flashx.tv\analytics.sol
  Properties.size=351
  Properties.md5=8B8D41E2350AA1001AB2074EE750130F
  Properties.filedate=1399239704
  Properties.filedatetext=2014-05-04 22:41:43

Macromedia.FlashPlayer.Cookies: [SBI $6AA61750]  Text file (File, nothing done)
  C:\Users\****\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YDEDDLKL\static.flashx.tv\com.nuevoplayer.sol
  Properties.size=47
  Properties.md5=404C77EFB65EE6C561A141CAC0FAA281
  Properties.filedate=1399237820
  Properties.filedatetext=2014-05-04 22:10:19

Macromedia.FlashPlayer.Cookies: [SBI $6AA61750]  Text file (File, nothing done)
  C:\Users\****\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YDEDDLKL\static1.dmcdn.net\com.dm.player.sol
  Properties.size=317
  Properties.md5=1D69E347E508F655344186E8481227CE
  Properties.filedate=1417108853
  Properties.filedatetext=2014-11-27 18:20:52

Macromedia.FlashPlayer.Cookies: [SBI $6AA61750]  Text file (File, nothing done)
  C:\Users\****\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YDEDDLKL\stream4k.to\com.jeroenwijering.sol
  Properties.size=50
  Properties.md5=5E525362BB1645ABA6A6F55667A464DF
  Properties.filedate=1399136666
  Properties.filedatetext=2014-05-03 18:04:26

Macromedia.FlashPlayer.Cookies: [SBI $6AA61750]  Text file (File, nothing done)
  C:\Users\****\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YDEDDLKL\streamcloud.eu\com.longtailvideo.jwplayer.sol
  Properties.size=65
  Properties.md5=89560B7ABA804BA619126AB95BC2CE6B
  Properties.filedate=1417873029
  Properties.filedatetext=2014-12-06 14:37:09

Macromedia.FlashPlayer.Cookies: [SBI $6AA61750]  Text file (File, nothing done)
  C:\Users\****\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YDEDDLKL\www.avera.org\analytics.sol
  Properties.size=419
  Properties.md5=957A1BB3244CB6BFF83F442A856D8584
  Properties.filedate=1403291640
  Properties.filedatetext=2014-06-20 20:14:00

Macromedia.FlashPlayer.Cookies: [SBI $6AA61750]  Text file (File, nothing done)
  C:\Users\****\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YDEDDLKL\www.hornoxe.com\com.jeroenwijering.sol
  Properties.size=50
  Properties.md5=FB578DC67CE113BF1A0F7A850948AB55
  Properties.filedate=1418640370
  Properties.filedatetext=2014-12-15 11:46:09

Macromedia.FlashPlayer.Cookies: [SBI $6AA61750]  Text file (File, nothing done)
  C:\Users\****\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YDEDDLKL\www.paypalobjects.com\paypalLSO.sol
  Properties.size=111
  Properties.md5=0E65E0D15A5DF2E223EF788D418C9941
  Properties.filedate=1417794169
  Properties.filedatetext=2014-12-05 16:42:49

Macromedia.FlashPlayer.Cookies: [SBI $6AA61750]  Text file (File, nothing done)
  C:\Users\****\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YDEDDLKL\www.paypalobjects.com\ppLsoTest.sol
  Properties.size=48
  Properties.md5=74EE4375686A2069414EEF13E7B62789
  Properties.filedate=1417794132
  Properties.filedatetext=2014-12-05 16:42:12

Macromedia.FlashPlayer.Cookies: [SBI $6AA61750]  Text file (File, nothing done)
  C:\Users\****\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YDEDDLKL\www.radioeins.de\com.longtailvideo.jwplayer.sol
  Properties.size=55
  Properties.md5=3E32B09E3492C5BA32BF871057EF5404
  Properties.filedate=1406273869
  Properties.filedatetext=2014-07-25 08:37:48

Macromedia.FlashPlayer.Cookies: [SBI $1EF45977]  Text file (File, nothing done)
  C:\Users\****\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YDEDDLKL\aa.online-metrix.net\fpc.swf\session.sol
  Properties.size=76
  Properties.md5=1EB451838B0DFE97270C55E1F702D833
  Properties.filedate=1417876023
  Properties.filedatetext=2014-12-06 15:27:03

Macromedia.FlashPlayer.Cookies: [SBI $1EF45977]  Text file (File, nothing done)
  C:\Users\****\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YDEDDLKL\jsctool.com\d.swf\d.sol
  Properties.size=72
  Properties.md5=300A918AAD4D403445EF1773F24F36A0
  Properties.filedate=1398410969
  Properties.filedatetext=2014-04-25 08:29:28

Macromedia.FlashPlayer.Cookies: [SBI $1EF45977]  Text file (File, nothing done)
  C:\Users\****\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YDEDDLKL\skype.com\#ui\preferences.sol
  Properties.size=233
  Properties.md5=B9636886B2D7F98AB3BBA8888AA0548F
  Properties.filedate=1419453464
  Properties.filedatetext=2014-12-24 21:37:43

Macromedia.FlashPlayer.Cookies: [SBI $1EF45977]  Text file (File, nothing done)
  C:\Users\****\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YDEDDLKL\static.sockshare.com\video_player.swf\org.flowplayer.sol
  Properties.size=60
  Properties.md5=11B628CEABE61125FA85414F1AC515EA
  Properties.filedate=1411141071
  Properties.filedatetext=2014-09-19 16:37:51

Macromedia.FlashPlayer.Cookies: [SBI $5555F3D7]  Text file (File, nothing done)
  C:\Users\****\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YDEDDLKL\bilder.rtl.de\flash\david09_player_2012.swf\rtl.sol
  Properties.size=35
  Properties.md5=F240BC8ED3BD00819E900DB730F278F4
  Properties.filedate=1398773224
  Properties.filedatetext=2014-04-29 13:07:03

Macromedia.FlashPlayer.Cookies: [SBI $5555F3D7]  Text file (File, nothing done)
  C:\Users\****\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YDEDDLKL\bilder.rtl.de\flash\david09_player_2012.swf\rtlbw.sol
  Properties.size=38
  Properties.md5=B5DFC13AB0F74077B033F05000F7CAC7
  Properties.filedate=1398773313
  Properties.filedatetext=2014-04-29 13:08:33

Macromedia.FlashPlayer.Cookies: [SBI $5555F3D7]  Text file (File, nothing done)
  C:\Users\****\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YDEDDLKL\bilder.rtl.de\flash\david09_player_2012.swf\userinfo6.sol
  Properties.size=51
  Properties.md5=520BD34D2F27A4EFDEACB1EE4B3F9846
  Properties.filedate=1398773313
  Properties.filedatetext=2014-04-29 13:08:33

Macromedia.FlashPlayer.Cookies: [SBI $5555F3D7]  Text file (File, nothing done)
  C:\Users\****\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YDEDDLKL\bilder.rtl.de\flash\david09_player_2014.swf\rtl.sol
  Properties.size=35
  Properties.md5=F240BC8ED3BD00819E900DB730F278F4
  Properties.filedate=1404828015
  Properties.filedatetext=2014-07-08 15:00:14

Macromedia.FlashPlayer.Cookies: [SBI $5555F3D7]  Text file (File, nothing done)
  C:\Users\****\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YDEDDLKL\bilder.rtl.de\flash\david09_player_2014.swf\rtlbw.sol
  Properties.size=38
  Properties.md5=B5DFC13AB0F74077B033F05000F7CAC7
  Properties.filedate=1404828627
  Properties.filedatetext=2014-07-08 15:10:26

Macromedia.FlashPlayer.Cookies: [SBI $5555F3D7]  Text file (File, nothing done)
  C:\Users\****\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YDEDDLKL\bilder.rtl.de\flash\david09_player_2014.swf\userinfo6.sol
  Properties.size=50
  Properties.md5=E97720A14BEC3F8D3111E2FA38F97B4E
  Properties.filedate=1404828627
  Properties.filedatetext=2014-07-08 15:10:27

Macromedia.FlashPlayer.Cookies: [SBI $5555F3D7]  Text file (File, nothing done)
  C:\Users\****\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YDEDDLKL\cdn.static-fra.de\now\vodplayer.liveab.swf\rtl.sol
  Properties.size=35
  Properties.md5=F240BC8ED3BD00819E900DB730F278F4
  Properties.filedate=1398942915
  Properties.filedatetext=2014-05-01 12:15:14

Macromedia.FlashPlayer.Cookies: [SBI $5555F3D7]  Text file (File, nothing done)
  C:\Users\****\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YDEDDLKL\cdn.static-fra.de\now\vodplayer.liveab.swf\rtlbw.sol
  Properties.size=38
  Properties.md5=B5DFC13AB0F74077B033F05000F7CAC7
  Properties.filedate=1398945466
  Properties.filedatetext=2014-05-01 12:57:45

Macromedia.FlashPlayer.Cookies: [SBI $5555F3D7]  Text file (File, nothing done)
  C:\Users\****\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YDEDDLKL\cdn.static-fra.de\now\vodplayer.liveab.swf\userinfo6.sol
  Properties.size=48
  Properties.md5=3ECC7D786BD9698A4D978F72BB992F9B
  Properties.filedate=1398945466
  Properties.filedatetext=2014-05-01 12:57:46

Macromedia.FlashPlayer.Cookies: [SBI $5555F3D7]  Text file (File, nothing done)
  C:\Users\****\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YDEDDLKL\cdn.static-fra.de\now\vodplayer.swf\rtl.sol
  Properties.size=42
  Properties.md5=3019293E97D93141F4BD7049E0DF59CF
  Properties.filedate=1417989742
  Properties.filedatetext=2014-12-07 23:02:21

Macromedia.FlashPlayer.Cookies: [SBI $5555F3D7]  Text file (File, nothing done)
  C:\Users\****\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YDEDDLKL\cdn.static-fra.de\now\vodplayer.swf\rtlbw.sol
  Properties.size=38
  Properties.md5=B5DFC13AB0F74077B033F05000F7CAC7
  Properties.filedate=1398946142
  Properties.filedatetext=2014-05-01 13:09:01

Macromedia.FlashPlayer.Cookies: [SBI $5555F3D7]  Text file (File, nothing done)
  C:\Users\****\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YDEDDLKL\cdn.static-fra.de\now\vodplayer.swf\userinfo6.sol
  Properties.size=51
  Properties.md5=6E239F8B57441C0F8EBB5DD2541C3E96
  Properties.filedate=1398946142
  Properties.filedatetext=2014-05-01 13:09:01

Macromedia.FlashPlayer.Cookies: [SBI $5555F3D7]  Text file (File, nothing done)
  C:\Users\****\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YDEDDLKL\cdn.zopim.com\swf\ZClientController2.swf\ZopConfig.sol
  Properties.size=84
  Properties.md5=9E72427D3D3B83BB4FBBFFA65D051B05
  Properties.filedate=1404150806
  Properties.filedatetext=2014-06-30 18:53:25

Macromedia.FlashPlayer.Cookies: [SBI $5555F3D7]  Text file (File, nothing done)
  C:\Users\****\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YDEDDLKL\embed.movshare.net\player\cloudplayer.swf\novaPlayer.sol
  Properties.size=78
  Properties.md5=AB7E2AEB6316B6433473B7487861814D
  Properties.filedate=1416073188
  Properties.filedatetext=2014-11-15 18:39:48

Macromedia.FlashPlayer.Cookies: [SBI $5555F3D7]  Text file (File, nothing done)
  C:\Users\****\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YDEDDLKL\embed.nowvideo.sx\player\cloudplayer.swf\novaPlayer.sol
  Properties.size=78
  Properties.md5=AF70A852EF675AC2CDD33586A7E38482
  Properties.filedate=1419738472
  Properties.filedatetext=2014-12-28 04:47:51

Macromedia.FlashPlayer.Cookies: [SBI $5555F3D7]  Text file (File, nothing done)
  C:\Users\****\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YDEDDLKL\play.snacktv.de\player\videoplayer.swf\SnackTV.sol
  Properties.size=79
  Properties.md5=9A5978BE510E9FD197E8F493DED3B477
  Properties.filedate=1399373890
  Properties.filedatetext=2014-05-06 11:58:10

Macromedia.FlashPlayer.Cookies: [SBI $5555F3D7]  Text file (File, nothing done)
  C:\Users\****\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YDEDDLKL\play.snacktv.de\player\videoplayer_psd.swf\SnackTV.sol
  Properties.size=79
  Properties.md5=BD1E76505EC33FB700D3BDA0275FA22B
  Properties.filedate=1410599110
  Properties.filedatetext=2014-09-13 10:05:10

Macromedia.FlashPlayer.Cookies: [SBI $5555F3D7]  Text file (File, nothing done)
  C:\Users\****\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YDEDDLKL\www.divxstage.to\player\cloudplayer.swf\novaPlayer.sol
  Properties.size=78
  Properties.md5=1066A3561F35F0F3A56D438CD9117494
  Properties.filedate=1414968592
  Properties.filedatetext=2014-11-02 23:49:52

Macromedia.FlashPlayer.Cookies: [SBI $5555F3D7]  Text file (File, nothing done)
  C:\Users\****\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YDEDDLKL\www.movshare.net\player\cloudplayer.swf\novaPlayer.sol
  Properties.size=78
  Properties.md5=CA63C2D1BD1695F258D6BBECDBC767F4
  Properties.filedate=1414223085
  Properties.filedatetext=2014-10-25 08:44:44

Macromedia.FlashPlayer.Cookies: [SBI $5555F3D7]  Text file (File, nothing done)
  C:\Users\****\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YDEDDLKL\www.musicline.de\player_flash_banner\player.swf\userPrefs.sol
  Properties.size=54
  Properties.md5=0A09874BC558DC13F12F90FB3DFE49FC
  Properties.filedate=1413565861
  Properties.filedatetext=2014-10-17 18:11:00

Macromedia.FlashPlayer.Cookies: [SBI $5555F3D7]  Text file (File, nothing done)
  C:\Users\****\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YDEDDLKL\www.nowvideo.sx\player\cloudplayer.swf\novaPlayer.sol
  Properties.size=78
  Properties.md5=5256431468ADDF6E20270E8A35C34BE1
  Properties.filedate=1413866903
  Properties.filedatetext=2014-10-21 05:48:23

Macromedia.FlashPlayer.Cookies: [SBI $5555F3D7]  Text file (File, nothing done)
  C:\Users\****\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YDEDDLKL\www.tim-maelzer.info\player\vPlayer.swf\splayTvID5.sol
  Properties.size=60
  Properties.md5=89C73D111D6AE9DDCD31CB349DBAF4F8
  Properties.filedate=1403359699
  Properties.filedatetext=2014-06-21 15:08:19

Internet Explorer: [SBI $1E8157BE] Typed URL list (Registry Key, nothing done)
  HKEY_USERS\S-1-5-21-1902139459-1109185879-2378804310-1000\Software\Microsoft\Internet Explorer\TypedURLs

Internet Explorer: [SBI $FF589D0C] Download directory (Registry Change, nothing done)
  HKEY_USERS\S-1-5-21-1902139459-1109185879-2378804310-1000\Software\Microsoft\Internet Explorer\Download Directory

Internet Explorer: [SBI $0BC7B918] User agent (Registry Change, nothing done)
  HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent

Internet Explorer: [SBI $0BC7B918] User agent (Registry Change, nothing done)
  HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent

Internet Explorer: [SBI $0BC7B918] User agent (Registry Change, nothing done)
  HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent

Internet Explorer: [SBI $0BC7B918] User agent (Registry Change, nothing done)
  HKEY_USERS\S-1-5-21-1902139459-1109185879-2378804310-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent

Internet Explorer: [SBI $0BC7B918] User agent (Registry Change, nothing done)
  HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent

MS Management Console: [SBI $ECD50EAD] Recent command list (Registry Key, nothing done)
  HKEY_USERS\S-1-5-21-1902139459-1109185879-2378804310-1000\Software\Microsoft\Microsoft Management Console\Recent File List

MS Media Player: [SBI $5C51E349] Client ID (Registry Change, nothing done)
  HKEY_USERS\S-1-5-21-1902139459-1109185879-2378804310-1000\Software\Microsoft\MediaPlayer\Player\Settings\Client ID

MS Direct3D: [SBI $C2A44980] Most recent application (Registry Change, nothing done)
  HKEY_USERS\.DEFAULT\Software\Microsoft\Direct3D\MostRecentApplication\Name

MS Direct3D: [SBI $C2A44980] Most recent application (Registry Change, nothing done)
  HKEY_USERS\S-1-5-21-1902139459-1109185879-2378804310-1000\Software\Microsoft\Direct3D\MostRecentApplication\Name

MS Direct3D: [SBI $C2A44980] Most recent application (Registry Change, nothing done)
  HKEY_USERS\S-1-5-18\Software\Microsoft\Direct3D\MostRecentApplication\Name

MS DirectDraw: [SBI $EB49D5AF] Most recent application (Registry Change, nothing done)
  HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\DirectDraw\MostRecentApplication\Name

MS DirectDraw: [SBI $EB49D5AF] Most recent application (Registry Change, nothing done)
  HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\DirectDraw\MostRecentApplication\Name

MS Paint: [SBI $07867C39] Recent file list (Registry Key, nothing done)
  HKEY_USERS\S-1-5-21-1902139459-1109185879-2378804310-1000\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\Recent File List

MS Wordpad: [SBI $4C02334D] Recent file list (Registry Key, nothing done)
  HKEY_USERS\S-1-5-21-1902139459-1109185879-2378804310-1000\Software\Microsoft\Windows\CurrentVersion\Applets\Wordpad\Recent File List

Windows.OpenWith: [SBI $F7204896] Open with list - .AVI extension (Registry Key, nothing done)
  HKEY_USERS\S-1-5-21-1902139459-1109185879-2378804310-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.AVI\OpenWithList

Windows.OpenWith: [SBI $A1C94E79] Open with list - .BMP extension (Registry Key, nothing done)
  HKEY_USERS\S-1-5-21-1902139459-1109185879-2378804310-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.BMP\OpenWithList

Windows.OpenWith: [SBI $C92C6763] Open with list - .BUP extension (Registry Key, nothing done)
  HKEY_USERS\S-1-5-21-1902139459-1109185879-2378804310-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.BUP\OpenWithList

Windows.OpenWith: [SBI $9E8D5C8A] Open with list - .CDA extension (Registry Key, nothing done)
  HKEY_USERS\S-1-5-21-1902139459-1109185879-2378804310-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.CDA\OpenWithList

Windows Explorer: [SBI $A2C7B3CD] Recent wallpaper list (Registry Key, nothing done)
  HKEY_USERS\S-1-5-21-1902139459-1109185879-2378804310-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\Wallpaper\MRU

Windows Explorer: [SBI $AA0766B5] Stream history (Registry Key, nothing done)
  HKEY_USERS\S-1-5-21-1902139459-1109185879-2378804310-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\StreamMRU

Windows Explorer: [SBI $D20DA0AD] Recent file global history (Registry Key, nothing done)
  HKEY_USERS\S-1-5-21-1902139459-1109185879-2378804310-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs

Windows Media SDK: [SBI $37AAEDE6] Computer name (Registry Change, nothing done)
  HKEY_USERS\.DEFAULT\Software\Microsoft\Windows Media\WMSDK\General\ComputerName

Windows Media SDK: [SBI $37AAEDE6] Computer name (Registry Change, nothing done)
  HKEY_USERS\S-1-5-20\Software\Microsoft\Windows Media\WMSDK\General\ComputerName

Windows Media SDK: [SBI $37AAEDE6] Computer name (Registry Change, nothing done)
  HKEY_USERS\S-1-5-21-1902139459-1109185879-2378804310-1000\Software\Microsoft\Windows Media\WMSDK\General\ComputerName

Windows Media SDK: [SBI $37AAEDE6] Computer name (Registry Change, nothing done)
  HKEY_USERS\S-1-5-18\Software\Microsoft\Windows Media\WMSDK\General\ComputerName

Windows Media SDK: [SBI $CAA58B6E] Unique ID (Registry Change, nothing done)
  HKEY_USERS\.DEFAULT\Software\Microsoft\Windows Media\WMSDK\General\UniqueID

Windows Media SDK: [SBI $CAA58B6E] Unique ID (Registry Change, nothing done)
  HKEY_USERS\S-1-5-20\Software\Microsoft\Windows Media\WMSDK\General\UniqueID

Windows Media SDK: [SBI $CAA58B6E] Unique ID (Registry Change, nothing done)
  HKEY_USERS\S-1-5-21-1902139459-1109185879-2378804310-1000\Software\Microsoft\Windows Media\WMSDK\General\UniqueID

Windows Media SDK: [SBI $CAA58B6E] Unique ID (Registry Change, nothing done)
  HKEY_USERS\S-1-5-18\Software\Microsoft\Windows Media\WMSDK\General\UniqueID

Windows Media SDK: [SBI $BACCD0DA] Volume serial number (Registry Value, nothing done)
  HKEY_USERS\.DEFAULT\Software\Microsoft\Windows Media\WMSDK\General\VolumeSerialNumber

Windows Media SDK: [SBI $BACCD0DA] Volume serial number (Registry Value, nothing done)
  HKEY_USERS\S-1-5-20\Software\Microsoft\Windows Media\WMSDK\General\VolumeSerialNumber

Windows Media SDK: [SBI $BACCD0DA] Volume serial number (Registry Value, nothing done)
  HKEY_USERS\S-1-5-21-1902139459-1109185879-2378804310-1000\Software\Microsoft\Windows Media\WMSDK\General\VolumeSerialNumber

Windows Media SDK: [SBI $BACCD0DA] Volume serial number (Registry Value, nothing done)
  HKEY_USERS\S-1-5-18\Software\Microsoft\Windows Media\WMSDK\General\VolumeSerialNumber

Cookie: [SBI $49804B54] Browser: Cookie (65) (Browser: Cookie, nothing done)
  

Cache: [SBI $49804B54] Browser: Cache (148) (Browser: Cache, nothing done)
  

Verlauf: [SBI $49804B54] Browser: History (46) (Browser: History, nothing done)
  

Cookie: [SBI $49804B54] Browser: Cookie (2415) (Browser: Cookie, nothing done)
  


--- Spybot - Search & Destroy version: 2.4.40.131  DLL (build: 20140425) ---

2014-06-24 blindman.exe (2.4.40.151)
2014-06-24 explorer.exe (2.4.40.181)
2014-06-24 SDBootCD.exe (2.4.40.109)
2014-06-24 SDCleaner.exe (2.4.40.110)
2014-06-24 SDDelFile.exe (2.4.40.94)
2013-06-18 SDDisableProxy.exe
2014-06-24 SDFiles.exe (2.4.40.135)
2014-06-24 SDFileScanHelper.exe (2.4.40.1)
2014-06-24 SDFSSvc.exe (2.4.40.217)
2014-06-24 SDHelp.exe (2.4.40.1)
2014-04-25 SDHookHelper.exe (2.3.39.2)
2014-04-25 SDHookInst32.exe (2.3.39.2)
2014-04-25 SDHookInst64.exe (2.3.39.2)
2014-06-24 SDImmunize.exe (2.4.40.130)
2014-06-24 SDLogReport.exe (2.4.40.107)
2014-06-24 SDOnAccess.exe (2.4.40.11)
2014-06-24 SDPESetup.exe (2.4.40.3)
2014-06-24 SDPEStart.exe (2.4.40.86)
2014-06-24 SDPhoneScan.exe (2.4.40.28)
2014-06-24 SDPRE.exe (2.4.40.22)
2014-06-24 SDPrepPos.exe (2.4.40.15)
2014-06-24 SDQuarantine.exe (2.4.40.103)
2014-06-24 SDRootAlyzer.exe (2.4.40.116)
2014-06-24 SDSBIEdit.exe (2.4.40.39)
2014-06-24 SDScan.exe (2.4.40.181)
2014-06-24 SDScript.exe (2.4.40.54)
2014-06-24 SDSettings.exe (2.4.40.139)
2014-06-24 SDShell.exe (2.4.40.2)
2014-06-24 SDShred.exe (2.4.40.108)
2014-06-24 SDSysRepair.exe (2.4.40.102)
2014-06-24 SDTools.exe (2.4.40.157)
2014-06-24 SDTray.exe (2.4.40.129)
2014-06-27 SDUpdate.exe (2.4.40.94)
2014-06-27 SDUpdSvc.exe (2.4.40.77)
2014-06-24 SDWelcome.exe (2.4.40.130)
2014-04-25 SDWSCSvc.exe (2.3.39.2)
2014-05-20 spybotsd2-install-bdcore-update.exe (2.3.39.0)
2014-07-31 spybotsd2-translation-esx.exe
2013-06-19 spybotsd2-translation-frx.exe
2014-08-25 spybotsd2-translation-hux2.exe
2014-10-01 spybotsd2-translation-nlx2.exe
2014-11-05 spybotsd2-translation-ukx.exe
2014-12-31 unins000.exe (51.1052.0.0)
1999-12-02 xcacls.exe
2012-08-23 borlndmm.dll (10.0.2288.42451)
2012-09-05 DelZip190.dll (1.9.0.107)
2012-09-10 libeay32.dll (1.0.0.4)
2012-09-10 libssl32.dll (1.0.0.4)
2014-04-25 NotificationSpreader.dll
2014-06-24 SDAdvancedCheckLibrary.dll (2.4.40.98)
2014-04-25 SDAV.dll
2014-06-24 SDECon32.dll (2.4.40.114)
2014-06-24 SDECon64.dll (2.3.39.113)
2014-06-24 SDEvents.dll (2.4.40.2)
2014-06-24 SDFileScanLibrary.dll (2.4.40.14)
2014-04-25 SDHook32.dll (2.3.39.2)
2014-04-25 SDHook64.dll (2.3.39.2)
2014-06-24 SDImmunizeLibrary.dll (2.4.40.2)
2014-06-24 SDLicense.dll (2.4.40.0)
2014-06-24 SDLists.dll (2.4.40.4)
2014-06-24 SDResources.dll (2.4.40.7)
2014-06-24 SDScanLibrary.dll (2.4.40.131)
2014-06-24 SDTasks.dll (2.4.40.15)
2014-06-24 SDWinLogon.dll (2.4.40.0)
2012-08-23 sqlite3.dll
2012-09-10 ssleay32.dll (1.0.0.4)
2014-06-24 Tools.dll (2.4.40.36)
2014-03-05 Includes\Adware-000.sbi (*)
2014-01-08 Includes\Adware-001.sbi (*)
2014-12-31 Includes\Adware-C.sbi (*)
2014-01-13 Includes\Adware.sbi (*)
2014-01-13 Includes\AdwareC.sbi (*)
2010-08-13 Includes\Cookies.sbi (*)
2014-11-14 Includes\Dialer-000.sbi (*)
2014-11-14 Includes\Dialer-001.sbi (*)
2014-01-08 Includes\Dialer-C.sbi (*)
2014-01-13 Includes\Dialer.sbi (*)
2014-01-13 Includes\DialerC.sbi (*)
2014-01-09 Includes\Fraud-000.sbi (*)
2014-01-09 Includes\Fraud-001.sbi (*)
2014-03-31 Includes\Fraud-002.sbi (*)
2014-01-09 Includes\Fraud-003.sbi (*)
2012-11-14 Includes\HeavyDuty.sbi (*)
2014-11-14 Includes\Hijackers-000.sbi (*)
2014-11-14 Includes\Hijackers-001.sbi (*)
2014-01-08 Includes\Hijackers-C.sbi (*)
2014-01-13 Includes\Hijackers.sbi (*)
2014-01-13 Includes\HijackersC.sbi (*)
2014-01-08 Includes\iPhone-000.sbi (*)
2014-01-08 Includes\iPhone.sbi (*)
2014-11-14 Includes\Keyloggers-000.sbi (*)
2014-09-24 Includes\Keyloggers-C.sbi (*)
2014-01-13 Includes\Keyloggers.sbi (*)
2014-01-13 Includes\KeyloggersC.sbi (*)
2014-11-14 Includes\Malware-000.sbi (*)
2014-11-14 Includes\Malware-001.sbi (*)
2014-11-14 Includes\Malware-002.sbi (*)
2014-11-14 Includes\Malware-003.sbi (*)
2014-11-14 Includes\Malware-004.sbi (*)
2014-11-14 Includes\Malware-005.sbi (*)
2014-02-26 Includes\Malware-006.sbi (*)
2014-01-09 Includes\Malware-007.sbi (*)
2014-12-31 Includes\Malware-C.sbi (*)
2014-01-13 Includes\Malware.sbi (*)
2013-12-23 Includes\MalwareC.sbi (*)
2014-11-14 Includes\PUPS-000.sbi (*)
2014-01-15 Includes\PUPS-001.sbi (*)
2014-01-15 Includes\PUPS-002.sbi (*)
2014-12-31 Includes\PUPS-C.sbi (*)
2012-11-14 Includes\PUPS.sbi (*)
2014-01-07 Includes\PUPSC.sbi (*)
2014-01-08 Includes\Security-000.sbi (*)
2014-01-08 Includes\Security-C.sbi (*)
2014-01-21 Includes\Security.sbi (*)
2014-01-21 Includes\SecurityC.sbi (*)
2014-11-14 Includes\Spyware-000.sbi (*)
2014-12-10 Includes\Spyware-001.sbi (*)
2014-12-31 Includes\Spyware-C.sbi (*)
2014-01-21 Includes\Spyware.sbi (*)
2014-01-21 Includes\SpywareC.sbi (*)
2011-06-07 Includes\Tracks.sbi (*)
2012-11-19 Includes\Tracks.uti (*)
2014-01-15 Includes\Trojans-000.sbi (*)
2014-01-15 Includes\Trojans-001.sbi (*)
2014-11-14 Includes\Trojans-002.sbi (*)
2014-01-15 Includes\Trojans-003.sbi (*)
2014-01-15 Includes\Trojans-004.sbi (*)
2014-03-19 Includes\Trojans-005.sbi (*)
2014-07-09 Includes\Trojans-006.sbi (*)
2014-01-15 Includes\Trojans-007.sbi (*)
2014-07-09 Includes\Trojans-008.sbi (*)
2014-07-09 Includes\Trojans-009.sbi (*)
2014-12-31 Includes\Trojans-C.sbi (*)
2014-01-15 Includes\Trojans-OG-000.sbi (*)
2014-01-15 Includes\Trojans-TD-000.sbi (*)
2014-01-15 Includes\Trojans-VM-000.sbi (*)
2014-01-15 Includes\Trojans-VM-001.sbi (*)
2014-01-15 Includes\Trojans-VM-002.sbi (*)
2014-01-15 Includes\Trojans-VM-003.sbi (*)
2014-01-15 Includes\Trojans-VM-004.sbi (*)
2014-01-15 Includes\Trojans-VM-005.sbi (*)
2014-01-15 Includes\Trojans-VM-006.sbi (*)
2014-01-15 Includes\Trojans-VM-007.sbi (*)
2014-01-15 Includes\Trojans-VM-008.sbi (*)
2014-01-15 Includes\Trojans-VM-009.sbi (*)
2014-01-15 Includes\Trojans-VM-010.sbi (*)
2014-01-15 Includes\Trojans-VM-011.sbi (*)
2014-01-15 Includes\Trojans-VM-012.sbi (*)
2014-01-15 Includes\Trojans-VM-013.sbi (*)
2014-01-15 Includes\Trojans-VM-014.sbi (*)
2014-01-15 Includes\Trojans-VM-015.sbi (*)
2014-01-15 Includes\Trojans-VM-016.sbi (*)
2014-01-15 Includes\Trojans-VM-017.sbi (*)
2014-01-15 Includes\Trojans-VM-018.sbi (*)
2014-01-15 Includes\Trojans-VM-019.sbi (*)
2014-01-15 Includes\Trojans-VM-020.sbi (*)
2014-01-15 Includes\Trojans-VM-021.sbi (*)
2014-01-15 Includes\Trojans-VM-022.sbi (*)
2014-01-15 Includes\Trojans-VM-023.sbi (*)
2014-01-15 Includes\Trojans-VM-024.sbi (*)
2014-01-15 Includes\Trojans-ZB-000.sbi (*)
2014-01-15 Includes\Trojans-ZL-000.sbi (*)
2014-01-09 Includes\Trojans.sbi (*)
2014-01-16 Includes\TrojansC-01.sbi (*)
2014-01-16 Includes\TrojansC-02.sbi (*)
2014-01-16 Includes\TrojansC-03.sbi (*)
2014-01-16 Includes\TrojansC-04.sbi (*)
2014-01-16 Includes\TrojansC-05.sbi (*)
2014-01-09 Includes\TrojansC.sbi (*)
         
Malewarebytes:
Code:
ATTFilter
 Malwarebytes Anti-Malware 
www.malwarebytes.org

Suchlauf Datum: 30.12.2014
Suchlauf-Zeit: 16:26:21
Logdatei: Malewarebytes.txt
Administrator: Ja

Version: 2.00.4.1028
Malware Datenbank: v2014.12.30.05
Rootkit Datenbank: v2014.12.29.02
Lizenz: Testversion
Malware Schutz: Aktiviert
Bösartiger Webseiten Schutz: Aktiviert
Selbstschutz: Deaktiviert

Betriebssystem: Windows 7 Service Pack 1
CPU: x64
Dateisystem: NTFS
Benutzer: *****

Suchlauf-Art: Bedrohungs-Suchlauf
Ergebnis: Abgeschlossen
Durchsuchte Objekte: 369964
Verstrichene Zeit: 29 Min, 5 Sek

Speicher: Aktiviert
Autostart: Aktiviert
Dateisystem: Aktiviert
Archive: Aktiviert
Rootkits: Deaktiviert
Heuristik: Aktiviert
PUP: Aktiviert
PUM: Aktiviert

Prozesse: 0
(Keine schädliche Elemente erkannt)

Module: 0
(Keine schädliche Elemente erkannt)

Registrierungsschlüssel: 1
Trojan.Agent.ED, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\social_network, In Quarantäne, [926bd3952d4f77bf3ebe9a6241c030d0], 

Registrierungswerte: 2
Trojan.Agent, HKU\S-1-5-21-1902139459-1109185879-2378804310-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN|title_clue, C:\Users\*****\AppData\Local\Temp\Title_nerve\title_fail.exe, Löschen bei Neustart, [996430388eee1323ffec283be917e31d]
Trojan.Agent, HKU\S-1-5-21-1902139459-1109185879-2378804310-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUNONCE|title_clue, C:\Users\*****\AppData\Local\Temp\Title_nerve\title_fail.exe, Löschen bei Neustart, [996430388eee1323ffec283be917e31d]

Registrierungsdaten: 0
(Keine schädliche Elemente erkannt)

Ordner: 5
PUP.Optional.VPLMedia.A, C:\Users\*****\AppData\Roaming\player, In Quarantäne, [d4293632a3d94de99c47199d5aaa7d83], 
PUP.Optional.VPLMedia.A, C:\Users\*****\AppData\Roaming\player\images, In Quarantäne, [d4293632a3d94de99c47199d5aaa7d83], 
PUP.Optional.Delta.A, C:\Users\*****\AppData\Local\Temp\mt_ffx\Delta, In Quarantäne, [8b72c5a38defe45280857ab010f36e92], 
PUP.Optional.Delta.A, C:\Users\*****\AppData\Local\Temp\mt_ffx\Delta\delta, In Quarantäne, [8b72c5a38defe45280857ab010f36e92], 
PUP.Optional.Delta.A, C:\Users\*****\AppData\Local\Temp\mt_ffx\Delta\delta\1.8.21.0, In Quarantäne, [8b72c5a38defe45280857ab010f36e92], 

Dateien: 114
Trojan.Agent, C:\Users\*****\AppData\Local\Temp\Title_nerve\title_fail.exe, Löschen bei Neustart, [996430388eee1323ffec283be917e31d], 
Trojan.Agent.ED, C:\Windows\assembly\GAC_32\Policy.1.0.Microsoft.Interop.Security.AzRoles\6.1.7600.16385__31bf3856ad364e35\genre\check_in.exe, In Quarantäne, [926bd3952d4f77bf3ebe9a6241c030d0], 
Backdoor.Agent.STLGen, C:\Users\*****\AppData\Roaming\Puxwcycel\gaosuhxz.exe, In Quarantäne, [c23b99cffe7ef640fb3a05f7f809c13f], 
Backdoor.Agent.STLGen, C:\Users\*****\AppData\Roaming\Qijii\oefqsuhxz.exe, In Quarantäne, [e01d8ddbe894c67040f5bf3d7d84ac54], 
Backdoor.Agent.STL, C:\Users\*****\AppData\Roaming\Title-amazing\title-course.exe, In Quarantäne, [619cd0983a4260d612447b85c33fda26], 
Backdoor.Agent.STLGen, C:\Users\*****\AppData\Roaming\Title-breast\titlefish.exe, In Quarantäne, [e81520482b510432f441d329fd04c63a], 
Backdoor.Agent.STLGen, C:\Users\*****\AppData\Roaming\Title-compare\title_nail.exe, In Quarantäne, [07f643255329a98d1b1aa359e21fc63a], 
Backdoor.Agent.STLGen, C:\Users\*****\AppData\Roaming\Title-conflict\titleeven.exe, In Quarantäne, [ad5030388cf0ae8883b21ede1be66f91], 
Backdoor.Agent.STLGen, C:\Users\*****\AppData\Roaming\Title-count\title-rest.exe, In Quarantäne, [e31a2840a1db61d5082de71504fd8779], 
Backdoor.Agent.STLGen, C:\Users\*****\AppData\Roaming\Title-culture\title-put.exe, In Quarantäne, [68957aeee29a7abc8baa2cd0dc25a060], 
Backdoor.Agent.STLGen, C:\Users\*****\AppData\Roaming\Title-has\titledish.exe, In Quarantäne, [20dd2f39c2ba1e1824116c90689927d9], 
Backdoor.Agent.STLGen, C:\Users\*****\AppData\Roaming\Title-investigate\title_judge.exe, In Quarantäne, [a4592e3a0b7104325ed7da220100ea16], 
Backdoor.Agent.STLGen, C:\Users\*****\AppData\Roaming\Title-lock\titlebottle.exe, In Quarantäne, [3bc2d4944735c472e253fefea25f18e8], 
Backdoor.Agent.STLGen, C:\Users\*****\AppData\Roaming\Title-shame\title-know.exe, In Quarantäne, [dc21521690ec3cfa94a1708c28d946ba], 
Backdoor.Agent.STLGen, C:\Users\*****\AppData\Roaming\Title-task\titlehold.exe, In Quarantäne, [708dc8a084f83cfad362fffd56ab42be], 
Backdoor.Agent.STLGen, C:\Users\*****\AppData\Roaming\Title-were\title-start.exe, In Quarantäne, [94692246c1bb5adcc76edd1f32cf659b], 
Backdoor.Agent.STLGen, C:\Users\*****\AppData\Roaming\Titlebone\title-closet.exe, In Quarantäne, [24d9b8b0433980b65cd9c933ca37d22e], 
Backdoor.Agent.STLGen, C:\Users\*****\AppData\Roaming\Titlerent\title-divide.exe, In Quarantäne, [5e9f07615e1eaf87e64f1ae2857c34cc], 
Backdoor.Agent.STLGen, C:\Users\*****\AppData\Roaming\Titletaste\title-face.exe, In Quarantäne, [6f8e4622cdafad89db5a31cb09f8ca36], 
Backdoor.Agent.STLGen, C:\Users\*****\AppData\Roaming\Title_run\title_overcome.exe, In Quarantäne, [dc21d593b6c6b1857db8817bb849d52b], 
Backdoor.Agent.STLGen, C:\Users\*****\AppData\Roaming\Title_salary\title-make.exe, In Quarantäne, [e31ac6a28fed88aed065c537ec1542be], 
Backdoor.Agent.STLGen, C:\Users\*****\AppData\Roaming\Fsqtfcb\mwmwxjyuhxz.exe, In Quarantäne, [b5482c3c3e3e88ae082d3ac2946d6a96], 
Backdoor.Agent.STLGen, C:\Users\*****\AppData\Roaming\Title-arm\title-rule.exe, In Quarantäne, [29d4ff69a7d50b2b54e157a5b24f936d], 
PUP.Optional.OneClickDownloader.A, C:\$Recycle.Bin\S-1-5-21-1902139459-1109185879-2378804310-1000\$RYMQE2I.exe, In Quarantäne, [946977f124587bbb5649c86917eaf20e], 
Adware.DomaIQ, C:\Users\*****\AppData\Local\Temp\DIQM\FlashPlayer_151\DomaIQ.exe, In Quarantäne, [f60786e26418a1954d0d2481fa0bac54], 
Adware.DomaIQ, C:\Users\*****\AppData\Local\Temp\DIQM\FlashPlayer_151\DomaIQ10.exe, In Quarantäne, [24d953150a72b87eafabadf853b29e62], 
Adware.DomaIQ, C:\Users\*****\AppData\Local\Temp\DIQM\FlashPlayer_151\exes.zip, In Quarantäne, [a35ae38543391b1b13476b3aaf56a65a], 
PUP.Optional.Babylon.A, C:\Users\*****\AppData\Local\Temp\DIQM\FlashPlayer_151\software\Delta Babylon.exe, In Quarantäne, [728b73f539435bdbef9736ef19e8dc24], 
Trojan.DomaIQ, C:\Users\*****\AppData\Local\Temp\DIQM\FlashPlayer_151\software\FlashPlayer.exe, In Quarantäne, [ee0f28402755c0760b3c8d11d62c9868], 
PUP.Optional.OptimizePro.A, C:\Users\*****\AppData\Local\Temp\DIQM\FlashPlayer_151\software\OptimizerPro.exe, In Quarantäne, [5e9fed7b7408c4721192ae702ad6c838], 
PUP.Optional.BabSolution.A, C:\Users\*****\AppData\Local\Temp\bus8CEE\BUSolution.dll, In Quarantäne, [2bd22d3ba0dcb5810bef54d7c33e817f], 
Backdoor.Agent.STLGen, C:\Users\*****\AppData\Local\Temp\Nmjufxj\inofuhxz.exe, In Quarantäne, [6598afb90b71c57185b005f70ff2e31d], 
Backdoor.Agent.STLGen, C:\Users\*****\AppData\Local\Temp\Nobywvfz\bzdvluhxz.exe, In Quarantäne, [9f5ef375fc809e980f26fc00b150c838], 
Backdoor.Agent.STLGen, C:\Users\*****\AppData\Local\Temp\Title-ask\title-trash.exe, In Quarantäne, [6796b5b36a12c373f342728a5fa2d12f], 
Backdoor.Agent.STL, C:\Users\*****\AppData\Local\Temp\Title-cover\title-hate.exe, In Quarantäne, [b64779efdba186b00353827efc062cd4], 
Backdoor.Agent.STL, C:\Users\*****\AppData\Local\Temp\Title-iron\titlereference.exe, In Quarantäne, [29d4c5a317650234253122dec53d58a8], 
Backdoor.Agent.STLGen, C:\Users\*****\AppData\Local\Temp\Title-pass\title-window.exe, In Quarantäne, [5aa3a2c62c50d363a293ba42976ac43c], 
Backdoor.Agent.STLGen, C:\Users\*****\AppData\Local\Temp\Title-price\titleare.exe, In Quarantäne, [46b72741cdaf4de9fb3af80443be2dd3], 
Backdoor.Agent.STLGen, C:\Users\*****\AppData\Local\Temp\Title-review\title-sky.exe, In Quarantäne, [02fb83e5027a5bdb44f1ea12b44d1fe1], 
Backdoor.Agent.STLGen, C:\Users\*****\AppData\Local\Temp\Title-thank\title_sentence.exe, In Quarantäne, [9b62abbd28543303d65f16e6758c6d93], 
Backdoor.Agent.STLGen, C:\Users\*****\AppData\Local\Temp\Title-wear\title_award.exe, In Quarantäne, [e41996d2403c79bd82b325d7a55c47b9], 
PUP.Optional.Babylon.A, C:\Users\*****\AppData\Local\Temp\9FD8AEDA-BAB0-7891-8F16-FBBB6D716DA9\CrxInstaller.dll, In Quarantäne, [27d6fc6c98e4e74f26887cbc728f5ba5], 
PUP.Optional.Delta.A, C:\Users\*****\AppData\Local\Temp\9FD8AEDA-BAB0-7891-8F16-FBBB6D716DA9\MyBabylonTB.exe, In Quarantäne, [29d470f86d0f5bdb0cdf1a759a670ff1], 
Backdoor.Agent.STLGen, C:\Users\*****\AppData\Local\Temp\Xirr\xylydcfuhxz.exe, In Quarantäne, [f904293f7606dd59ad88906cb948ce32], 
Backdoor.Agent.STLGen, C:\Users\*****\AppData\Local\Temp\Jfkayzqez\uohfuhxz.exe, In Quarantäne, [9964a6c21567ca6c59dcca3250b1bc44], 
Backdoor.Agent.STLGen, C:\Users\*****\AppData\Local\Temp\Titlecarpet\title-encourage.exe, In Quarantäne, [7b82b2b63f3de84ef63f0cf0e31e669a], 
Backdoor.Agent.STL, C:\Users\*****\AppData\Local\Temp\Titlepace\titlefault.exe, In Quarantäne, [f10c0c5c2c50d165094d8e7207fba060], 
Backdoor.Agent.STLGen, C:\Users\*****\AppData\Local\Temp\Titlestaff\title_spread.exe, In Quarantäne, [d9245018bcc060d6a39234c8f60b0ef2], 
Backdoor.Agent.STLGen, C:\Users\*****\AppData\Local\Temp\Title_impress\titleproposed.exe, In Quarantäne, [9568f1770577b18572c3fffd867b10f0], 
Backdoor.Agent.STLGen, C:\Users\*****\AppData\Local\Temp\Title_profit\title-provided.exe, In Quarantäne, [7a83b0b833492a0c1520db21976a20e0], 
Backdoor.Agent.STL, C:\Users\*****\AppData\Local\Temp\Title_scale\title_twist.exe, In Quarantäne, [ac51a7c14636f34399bd3ec29a687a86], 
Backdoor.Agent.STLGen, C:\Users\*****\AppData\Local\Temp\Title_site\title-organized.exe, In Quarantäne, [86771751df9d7fb7a29312ea14ed54ac], 
Backdoor.Agent.STLGen, C:\Users\*****\AppData\Local\Rewybcupg\wtftequhxz.exe, In Quarantäne, [f10c1a4ef785003611249a626f9251af], 
Backdoor.Agent.STLGen, C:\Users\*****\AppData\Local\Title-border\title-narrow.exe, In Quarantäne, [986504643646f73fa88dc6363cc53dc3], 
Backdoor.Agent.STLGen, C:\Users\*****\AppData\Local\Title-carry\title_concerned.exe, In Quarantäne, [dc2151175d1f87afae876b916b96a35d], 
Backdoor.Agent.STL, C:\Users\*****\AppData\Local\Title-excuse\titletaste.exe, In Quarantäne, [1edffb6db7c524129abcfc043dc5857b], 
Backdoor.Agent.STLGen, C:\Users\*****\AppData\Local\Title-mouth\title-fixed.exe, In Quarantäne, [3fbe6503b8c442f4fe37b14b08f9738d], 
Backdoor.Agent.STLGen, C:\Users\*****\AppData\Local\Title-passage\title-side.exe, In Quarantäne, [c33aa9bf6c10fe38cc691ae2bd443dc3], 
Backdoor.Agent.STLGen, C:\Users\*****\AppData\Local\Title-perform\title-hear.exe, In Quarantäne, [12eb80e82e4e082e36fff80437cad030], 
Backdoor.Agent.STLGen, C:\Users\*****\AppData\Local\Title-play\titletrain.exe, In Quarantäne, [7d804e1a6319aa8c2a0be5170bf6c739], 
Backdoor.Agent.STL, C:\Users\*****\AppData\Local\Title-sand\title-anticipate.exe, In Quarantäne, [6d905117a1dba3936aec758bd72bcb35], 
Backdoor.Agent.STLGen, C:\Users\*****\AppData\Local\Title-understand\title-support.exe, In Quarantäne, [11ec4f19384468ce84b13fbddc256e92], 
Backdoor.Agent.STLGen, C:\Users\*****\AppData\Local\Titleare\title_copy.exe, In Quarantäne, [3dc00f596a1268ced263dc20d52ceb15], 
Backdoor.Agent.STL, C:\Users\*****\AppData\Local\Titlediscover\title-air.exe, In Quarantäne, [8d701d4b1c6045f1afa78f714db543bd], 
Backdoor.Agent.STLGen, C:\Users\*****\AppData\Local\Titleestimate\title-jump.exe, In Quarantäne, [28d5383086f693a389ac9c601ce558a8], 
Backdoor.Agent.STLGen, C:\Users\*****\AppData\Local\Titleletter\title_rip.exe, In Quarantäne, [a15c2d3be09cba7ca194ca32bb46d52b], 
Backdoor.Agent.STLGen, C:\Users\*****\AppData\Local\Titleshower\title-share.exe, In Quarantäne, [ba43fa6e1a624cea58dd52aa07fade22], 
Backdoor.Agent.STLGen, C:\Users\*****\AppData\Local\Titlestuff\titlelack.exe, In Quarantäne, [e31a6503265661d5969f23d9d130c53b], 
Backdoor.Agent.STLGen, C:\Users\*****\AppData\Local\Title_attend\title-compare.exe, In Quarantäne, [27d60068e795e74f2114f10bbc453ac6], 
Backdoor.Agent.STLGen, C:\Users\*****\AppData\Local\Title_burn\title_burn.exe, In Quarantäne, [926be4842557e650ab8a50acb64b728e], 
Backdoor.Agent.STLGen, C:\Users\*****\AppData\Local\Title_live\title-shift.exe, In Quarantäne, [ba433e2a4e2ead8984b14cb0758c5ba5], 
Backdoor.Agent.STLGen, C:\Users\*****\AppData\Local\Title_trip\titlerelate.exe, In Quarantäne, [c835beaac4b8e94dec4900fcc8398080], 
Backdoor.Agent.STLGen, C:\Users\*****\AppData\Local\Fvbrgatho\helsrcuhxz.exe, In Quarantäne, [b647ee7a43392c0a37fed12b04fd58a8], 
Backdoor.Agent.STL, C:\Users\*****\AppData\Local\Title-prompt\titleexercise.exe, In Quarantäne, [a7563e2acab27cba3521976906fc07f9], 
Backdoor.Agent.STLGen, C:\Users\*****\AppData\Local\Titletree\title-lock.exe, In Quarantäne, [4db09ccc4c30a690989d7b81fe037c84], 
PUP.Optional.Spigot.A, C:\Windows\Installer\5a7f0.msi, In Quarantäne, [6e8f3434ccb084b2be744f7c3bc6c739], 
PUP.Optional.VPLMedia.A, C:\Users\*****\AppData\Roaming\player\playlist.vpl, In Quarantäne, [d4293632a3d94de99c47199d5aaa7d83], 
PUP.Optional.VPLMedia.A, C:\Users\*****\AppData\Roaming\player\config.ini, In Quarantäne, [d4293632a3d94de99c47199d5aaa7d83], 
PUP.Optional.VPLMedia.A, C:\Users\*****\AppData\Roaming\player\images\channel_ld_193.png, In Quarantäne, [d4293632a3d94de99c47199d5aaa7d83], 
PUP.Optional.VPLMedia.A, C:\Users\*****\AppData\Roaming\player\images\channel_ld_199.png, In Quarantäne, [d4293632a3d94de99c47199d5aaa7d83], 
PUP.Optional.VPLMedia.A, C:\Users\*****\AppData\Roaming\player\images\channel_ld_200.png, In Quarantäne, [d4293632a3d94de99c47199d5aaa7d83], 
PUP.Optional.VPLMedia.A, C:\Users\*****\AppData\Roaming\player\images\channel_ld_201.png, In Quarantäne, [d4293632a3d94de99c47199d5aaa7d83], 
PUP.Optional.VPLMedia.A, C:\Users\*****\AppData\Roaming\player\images\channel_ld_204.png, In Quarantäne, [d4293632a3d94de99c47199d5aaa7d83], 
PUP.Optional.VPLMedia.A, C:\Users\*****\AppData\Roaming\player\images\channel_ld_219.png, In Quarantäne, [d4293632a3d94de99c47199d5aaa7d83], 
PUP.Optional.VPLMedia.A, C:\Users\*****\AppData\Roaming\player\images\channel_ld_221.png, In Quarantäne, [d4293632a3d94de99c47199d5aaa7d83], 
PUP.Optional.VPLMedia.A, C:\Users\*****\AppData\Roaming\player\images\channel_ld_224.png, In Quarantäne, [d4293632a3d94de99c47199d5aaa7d83], 
PUP.Optional.VPLMedia.A, C:\Users\*****\AppData\Roaming\player\images\channel_ld_268.png, In Quarantäne, [d4293632a3d94de99c47199d5aaa7d83], 
PUP.Optional.VPLMedia.A, C:\Users\*****\AppData\Roaming\player\images\channel_ld_28.png, In Quarantäne, [d4293632a3d94de99c47199d5aaa7d83], 
PUP.Optional.VPLMedia.A, C:\Users\*****\AppData\Roaming\player\images\channel_ld_34.png, In Quarantäne, [d4293632a3d94de99c47199d5aaa7d83], 
PUP.Optional.VPLMedia.A, C:\Users\*****\AppData\Roaming\player\images\channel_ld_37.png, In Quarantäne, [d4293632a3d94de99c47199d5aaa7d83], 
PUP.Optional.VPLMedia.A, C:\Users\*****\AppData\Roaming\player\images\channel_ld_49.png, In Quarantäne, [d4293632a3d94de99c47199d5aaa7d83], 
PUP.Optional.VPLMedia.A, C:\Users\*****\AppData\Roaming\player\images\channel_ld_57.png, In Quarantäne, [d4293632a3d94de99c47199d5aaa7d83], 
PUP.Optional.VPLMedia.A, C:\Users\*****\AppData\Roaming\player\images\channel_ld_86.png, In Quarantäne, [d4293632a3d94de99c47199d5aaa7d83], 
PUP.Optional.VPLMedia.A, C:\Users\*****\AppData\Roaming\player\images\channel_ld_99.png, In Quarantäne, [d4293632a3d94de99c47199d5aaa7d83], 
PUP.Optional.VPLMedia.A, C:\Users\*****\AppData\Roaming\player\images\channel_ld_103.png, In Quarantäne, [d4293632a3d94de99c47199d5aaa7d83], 
PUP.Optional.VPLMedia.A, C:\Users\*****\AppData\Roaming\player\images\channel_ld_11.png, In Quarantäne, [d4293632a3d94de99c47199d5aaa7d83], 
PUP.Optional.VPLMedia.A, C:\Users\*****\AppData\Roaming\player\images\channel_ld_120.png, In Quarantäne, [d4293632a3d94de99c47199d5aaa7d83], 
PUP.Optional.VPLMedia.A, C:\Users\*****\AppData\Roaming\player\images\channel_ld_121.png, In Quarantäne, [d4293632a3d94de99c47199d5aaa7d83], 
PUP.Optional.VPLMedia.A, C:\Users\*****\AppData\Roaming\player\images\channel_ld_122.png, In Quarantäne, [d4293632a3d94de99c47199d5aaa7d83], 
PUP.Optional.VPLMedia.A, C:\Users\*****\AppData\Roaming\player\images\channel_ld_123.png, In Quarantäne, [d4293632a3d94de99c47199d5aaa7d83], 
PUP.Optional.VPLMedia.A, C:\Users\*****\AppData\Roaming\player\images\channel_ld_124.png, In Quarantäne, [d4293632a3d94de99c47199d5aaa7d83], 
PUP.Optional.VPLMedia.A, C:\Users\*****\AppData\Roaming\player\images\channel_ld_125.png, In Quarantäne, [d4293632a3d94de99c47199d5aaa7d83], 
PUP.Optional.VPLMedia.A, C:\Users\*****\AppData\Roaming\player\images\channel_ld_126.png, In Quarantäne, [d4293632a3d94de99c47199d5aaa7d83], 
PUP.Optional.VPLMedia.A, C:\Users\*****\AppData\Roaming\player\images\channel_ld_127.png, In Quarantäne, [d4293632a3d94de99c47199d5aaa7d83], 
PUP.Optional.VPLMedia.A, C:\Users\*****\AppData\Roaming\player\images\channel_ld_136.png, In Quarantäne, [d4293632a3d94de99c47199d5aaa7d83], 
PUP.Optional.VPLMedia.A, C:\Users\*****\AppData\Roaming\player\images\channel_ld_137.png, In Quarantäne, [d4293632a3d94de99c47199d5aaa7d83], 
PUP.Optional.VPLMedia.A, C:\Users\*****\AppData\Roaming\player\images\channel_ld_140.png, In Quarantäne, [d4293632a3d94de99c47199d5aaa7d83], 
PUP.Optional.VPLMedia.A, C:\Users\*****\AppData\Roaming\player\images\channel_ld_141.png, In Quarantäne, [d4293632a3d94de99c47199d5aaa7d83], 
PUP.Optional.VPLMedia.A, C:\Users\*****\AppData\Roaming\player\images\channel_ld_149.png, In Quarantäne, [d4293632a3d94de99c47199d5aaa7d83], 
PUP.Optional.VPLMedia.A, C:\Users\*****\AppData\Roaming\player\images\channel_ld_150.png, In Quarantäne, [d4293632a3d94de99c47199d5aaa7d83], 
PUP.Optional.VPLMedia.A, C:\Users\*****\AppData\Roaming\player\images\channel_ld_160.png, In Quarantäne, [d4293632a3d94de99c47199d5aaa7d83], 
PUP.Optional.VPLMedia.A, C:\Users\*****\AppData\Roaming\player\images\channel_ld_165.png, In Quarantäne, [d4293632a3d94de99c47199d5aaa7d83], 
PUP.Optional.VPLMedia.A, C:\Users\*****\AppData\Roaming\player\images\channel_ld_181.png, In Quarantäne, [d4293632a3d94de99c47199d5aaa7d83], 
PUP.Optional.VPLMedia.A, C:\Users\*****\AppData\Roaming\player\images\channel_ld_191.png, In Quarantäne, [d4293632a3d94de99c47199d5aaa7d83], 

Physische Sektoren: 0
(Keine schädliche Elemente erkannt)


(end)
         

 

Themen zu C:\Windows\SysWOW64\cleanmgr.exe wurde blockiert
adware.domaiq, backdoor.agent.stl, backdoor.agent.stlgen, computer, converter, device driver, dllhost.exe, dvdvideosoft ltd., fehlercode windows, flash player, helper.exe, iexplore.exe, microsoft, pdfforge toolbar v4.6 entfernen, pup.optional.babsolution.a, pup.optional.babylon.a, pup.optional.delta.a, pup.optional.oneclickdownloader.a, pup.optional.optimizepro.a, pup.optional.spigot.a, pup.optional.vplmedia.a, refresh, registry key, security, software, trojan.agent, trojan.agent.ed, trojan.domaiq, trojaner, wow64\cleanmgr.exe wurde blockiert




Ähnliche Themen: C:\Windows\SysWOW64\cleanmgr.exe wurde blockiert


  1. Infizierte Kopie von c:\windows\SysWow64\wshtcpip.dll wurde gefunden und desinfiziert
    Plagegeister aller Art und deren Bekämpfung - 21.09.2013 (2)
  2. Mein Online-Banking wurde ausspioniert!! / Fehler in C:\Windows\SysWOW64\rundll32.exe. Folgender Eintrag fehlt: FQ10 (Beim Windows-Start)
    Plagegeister aller Art und deren Bekämpfung - 19.08.2012 (2)
  3. Windows wurde blockiert - 50€
    Plagegeister aller Art und deren Bekämpfung - 06.04.2012 (19)
  4. Windows wurde blockiert
    Plagegeister aller Art und deren Bekämpfung - 24.03.2012 (45)
  5. Windows System wurde blockiert
    Plagegeister aller Art und deren Bekämpfung - 17.02.2012 (47)
  6. Aus Sicherheitsgründen wurde Windows blockiert!
    Plagegeister aller Art und deren Bekämpfung - 10.02.2012 (10)
  7. Windows wurde blockiert, Zahlungsaufforderung
    Log-Analyse und Auswertung - 09.02.2012 (9)
  8. Windows Security-Drohung - Ihr Windows System wurde blockiert!
    Plagegeister aller Art und deren Bekämpfung - 01.02.2012 (8)
  9. Windows 7 blockiert! Achtung! "Aus Sicherheitsgründen wurde ihr windowssystem blockiert"
    Log-Analyse und Auswertung - 17.01.2012 (8)
  10. Achtung Aus Sicherheitsgründen wurde ihr Windows System blockiert Windows xp
    Plagegeister aller Art und deren Bekämpfung - 03.01.2012 (7)
  11. Pc wird blockiert: Aus Sicherheitsgründen wurde ihr Windows System blockiert.....
    Log-Analyse und Auswertung - 29.12.2011 (19)
  12. Windows wurde blockiert
    Log-Analyse und Auswertung - 21.12.2011 (8)
  13. Windows wurde blockiert!
    Log-Analyse und Auswertung - 17.12.2011 (7)
  14. Gehe zum ersten neuen Beitrag Aus Sicherheitsgründen wurde ihr windows System blockiert (auf Windows
    Log-Analyse und Auswertung - 16.12.2011 (16)
  15. Windows wurde Blockiert
    Plagegeister aller Art und deren Bekämpfung - 16.12.2011 (3)
  16. Pc wird blockiert: Aus Sicherheitsgründen wurde ihr Windows System blockiert.....
    Plagegeister aller Art und deren Bekämpfung - 12.12.2011 (7)
  17. Aus Sicherheitsgründen wurde Windows blockiert
    Plagegeister aller Art und deren Bekämpfung - 08.12.2011 (3)

Zum Thema C:\Windows\SysWOW64\cleanmgr.exe wurde blockiert - Frohes neues Jahr! Guten Tag, mein Name ist Mathias. Ich bin neu hier und freue mich, wenn mir jemand helfen kann. Jede Minute gibt mir avast die Meldung: Prozess: C:\Windows\SysWOW64\cleanmgr.exe - C:\Windows\SysWOW64\cleanmgr.exe wurde blockiert...
Archiv
Du betrachtest: C:\Windows\SysWOW64\cleanmgr.exe wurde blockiert auf Trojaner-Board

Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.