![]() |
|
Log-Analyse und Auswertung: C:\Windows\SysWOW64\cleanmgr.exe wurde blockiertWindows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
![]() | #1 |
![]() | ![]() C:\Windows\SysWOW64\cleanmgr.exe wurde blockiert Frohes neues Jahr! Guten Tag, mein Name ist Mathias. Ich bin neu hier und freue mich, wenn mir jemand helfen kann. Jede Minute gibt mir avast die Meldung: Prozess: C:\Windows\SysWOW64\cleanmgr.exe wurde blockiert Url: hxxp://westringweb.com/guestbook.php?rnou=561ad52b Infektion: URL:MAL Angefangen hat alles mit der Öffnung einer Pdf, welche sich in einer Fakemail als Anhang befunden hat. Diverse Scans ergaben sehr viele Treffer. Allerdings keine Lösung. Hier erst einmal die verschiedenen Logs: (Frstlog ist zu groß) Addition.txt Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 01-01-2015 Ran by ***** at 2015-01-01 16:53:48 Running from C:\Users\*****\Computer\Downloads Boot Mode: Normal ========================================================== ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: avast! Antivirus (Enabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Spybot - Search and Destroy (Enabled - Up to date) {9BC38DF1-3CCA-732D-A930-C1CA5F20A4B0} AS: avast! Antivirus (Enabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736} ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) Acer Arcade Deluxe (HKLM-x32\...\InstallShield_{2637C347-9DAD-11D6-9EA2-00055D0CA761}) (Version: 4.0.8012 - CyberLink Corp.) Acer Arcade Deluxe (x32 Version: 4.0.8012 - CyberLink Corp.) Hidden Acer Arcade Movie (x32 Version: 9.0.6625 - CyberLink Corp.) Hidden Acer Backup Manager (HKLM-x32\...\InstallShield_{72B776E5-4530-4C4B-9453-751DF87D9D93}) (Version: 2.0.0.68 - NewTech Infosystems) Acer Crystal Eye webcam (HKLM-x32\...\{51F026FA-5146-4232-A8BA-1364740BD053}) (Version: 1.0.4.5 - Liteon) Acer ePower Management (HKLM-x32\...\{3DB0448D-AD82-4923-B305-D001E521A964}) (Version: 5.00.3005 - Acer Incorporated) Acer eRecovery Management (HKLM-x32\...\{7F811A54-5A09-4579-90E1-C93498E230D9}) (Version: 4.05.3013 - Acer Incorporated) Acer Registration (HKLM-x32\...\Acer Registration) (Version: 1.03.3003 - Acer Incorporated) Acer ScreenSaver (HKLM-x32\...\Acer Screensaver) (Version: 1.1.0222.2010 - Acer Incorporated) Acer VCM (HKLM-x32\...\{047F790A-7A2A-4B6A-AD02-38092BA63DAC}) (Version: 4.05.3002 - Acer Incorporated) Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 1.5.0.7220 - Adobe Systems Inc.) Adobe Flash Player 15 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 15.0.0.246 - Adobe Systems Incorporated) Adobe Flash Player 15 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 15.0.0.246 - Adobe Systems Incorporated) Adobe Reader X (10.1.12) - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AA1000000001}) (Version: 10.1.12 - Adobe Systems Incorporated) Adobe Shockwave Player 12.1 (HKLM-x32\...\Adobe Shockwave Player) (Version: 12.1.4.154 - Adobe Systems, Inc.) Alcor Micro USB Card Reader (HKLM-x32\...\InstallShield_{5A22D889-FBDD-4AE8-86EC-089D45FC133E}) (Version: 1.2.17.05001 - Alcor Micro Corp.) Alcor Micro USB Card Reader (x32 Version: 1.2.17.05001 - Alcor Micro Corp.) Hidden Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Driver (HKLM-x32\...\{3108C217-BE83-42E4-AE9E-A56A2A92E549}) (Version: 1.0.0.35 - Atheros Communications Inc.) Avast Free Antivirus (HKLM-x32\...\Avast) (Version: 10.0.2208 - AVAST Software) Avira SearchFree Toolbar (HKLM-x32\...\{41564952-412D-5637-00A7-A758B70C1500}) (Version: 12.21.0.3946 - APN, LLC) Backup Manager Basic (x32 Version: 2.0.0.68 - NewTech Infosystems) Hidden ESET Online Scanner v3 (HKLM-x32\...\ESET Online Scanner) (Version: - ) Free YouTube to MP3 Converter version 3.11.35.1031 (HKLM-x32\...\Free YouTube to MP3 Converter_is1) (Version: 3.11.35.1031 - DVDVideoSoft Ltd.) Identity Card (HKLM-x32\...\Identity Card) (Version: 1.00.3003 - Acer Incorporated) Intel(R) Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1007 - Intel Corporation) Intel(R) Graphics Media Accelerator Driver (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 8.15.10.2119 - Intel Corporation) Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 6.0.0.1179 - Intel Corporation) Intel(R) Rapid Storage Technology (HKLM-x32\...\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: 9.6.0.1014 - Intel Corporation) Junk Mail filter update (x32 Version: 14.0.8117.416 - Microsoft Corporation) Hidden Launch Manager (HKLM-x32\...\LManager) (Version: 4.0.14 - Acer Inc.) Malwarebytes Anti-Malware Version 2.0.4.1028 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.4.1028 - Malwarebytes Corporation) MediaShow Espresso (x32 Version: 5.5.1403_23691 - CyberLink Corp.) Hidden Microsoft .NET Framework 4.5.1 (Deutsch) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1031) (Version: 4.5.50938 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation) Microsoft Office Home and Student 2010 (HKLM-x32\...\Office14.SingleImage) (Version: 14.0.7015.1000 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (HKLM-x32\...\{770657D0-A123-3C07-8E44-1C83EC895118}) (Version: 8.0.50727.4053 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148 (HKLM-x32\...\{002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Mozilla Firefox 34.0.5 (x86 de) (HKLM-x32\...\Mozilla Firefox 34.0.5 (x86 de)) (Version: 34.0.5 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 29.0 - Mozilla) MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation) MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation) MuseScore 1.3 (HKLM-x32\...\MuseScore) (Version: 1.3.0 - Werner Schweer and Others) MyWinLocker (x32 Version: 3.1.212.0 - Egis Technology Inc.) Hidden MyWinLocker Suite (HKLM-x32\...\InstallShield_{738BF5C3-AF7B-4BB0-B7EF-E505EFC756BE}) (Version: 3.1.212.0 - Egis Technology Inc.) MyWinLocker Suite (x32 Version: 3.1.212.0 - Egis Technology Inc.) Hidden NTI Backup Now 5 (HKLM-x32\...\InstallShield_{12EFA1A4-AC3B-443C-8143-237EDE760403}) (Version: 5.1.2.630 - NewTech Infosystems) NTI Backup Now Standard (x32 Version: 5.1.2.630 - NewTech Infosystems) Hidden NTI Media Maker 8 (HKLM-x32\...\InstallShield_{2413930C-8309-47A6-BC61-5EF27A4222BC}) (Version: 8.0.12.6636 - NewTech Infosystems) NTI Media Maker 8 (x32 Version: 8.0.12.6636 - NewTech Infosystems) Hidden Optical Drive Power Management (HKLM-x32\...\{AE09C972-EEB2-4DA5-8090-0FCF54576854}) (Version: 1.01.3007 - Acer Incorporated) PDFCreator (HKLM-x32\...\{0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}) (Version: 1.2.1 - ***** Heindörfer, Philip Chinery) pdfforge Toolbar v4.6 (HKLM-x32\...\{E6098043-1183-4580-89EF-423CBF807188}) (Version: 4.6 - Spigot, Inc.) <==== ATTENTION PDF-to-Word 3.1 Demo (HKLM-x32\...\PDF-to-Word 3.1 Demo) (Version: - ) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6156 - Realtek Semiconductor Corp.) Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{DE28B448-32E8-4E8F-84F0-A52B21A49B5B}) (Version: - Microsoft) Shredder (Version: 2.0.8.3 - Egis Technology Inc.) Hidden Shredder (x32 Version: 2.0.8.3 - Egis Technology Inc.) Hidden Skype™ 7.0 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.0.102 - Skype Technologies S.A.) Spybot - Search & Destroy (HKLM-x32\...\{B4092C6D-E886-4CB2-BA68-FE5A99D31DE7}_is1) (Version: 2.4.40 - Safer-Networking Ltd.) SUPERAntiSpyware (HKLM\...\{CDDCBBF1-2703-46BC-938B-BCC81A1EEAAA}) (Version: 6.0.1168 - SUPERAntiSpyware.com) swMSM (x32 Version: 12.0.0.1 - Adobe Systems, Inc) Hidden Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 15.0.12.0 - Synaptics Incorporated) Visual Studio C++ 10.0 Runtime (HKLM-x32\...\{4412F224-3849-4461-A3E9-DEEF8D252790}) (Version: 10.0.0 - TomTom International B.V.) Vodafone Mobile Connect Lite (HKLM-x32\...\{79A64F98-1796-4FA2-B5FF-C90F83D8BACD}) (Version: 9.4.3.17550 - Vodafone) Welcome Center (HKLM-x32\...\Acer Welcome Center) (Version: 1.02.3004 - Acer Incorporated) WIDCOMM Bluetooth Software (HKLM\...\{436E0B79-2CFB-4E5F-9380-E17C1B25D0C5}) (Version: 6.3.0.6000 - Broadcom Corporation) Windows Live Anmelde-Assistent (HKLM-x32\...\{52B97218-98CB-4B8B-9283-D213C85E1AA4}) (Version: 5.000.818.5 - Microsoft Corporation) Windows Live Essentials (HKLM-x32\...\WinLiveSuite_Wave3) (Version: 14.0.8117.0416 - Microsoft Corporation) Windows Live Sync (HKLM-x32\...\{586509F0-350D-48B5-B763-9CC2F8D96C4C}) (Version: 14.0.8117.416 - Microsoft Corporation) Windows Live-Uploadtool (HKLM-x32\...\{205C6BDD-7B73-42DE-8505-9A093F35A238}) (Version: 14.0.8014.1029 - Microsoft Corporation) ==================== Custom CLSID (selected items): ========================== (If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.) ==================== Restore Points ========================= 19-12-2014 07:25:41 Windows Update 20-12-2014 05:41:09 Windows Update 21-12-2014 21:59:31 Windows-Sicherung 23-12-2014 11:49:08 Windows Update 27-12-2014 00:59:56 Windows Update 29-12-2014 06:26:11 Windows-Sicherung 30-12-2014 07:05:34 Windows Update 30-12-2014 18:17:21 avast! antivirus system restore point 30-12-2014 18:28:05 avast! antivirus system restore point 31-12-2014 09:02:40 avast! antivirus system restore point ==================== Hosts content: ========================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2009-07-14 03:34 - 2009-06-10 22:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= (If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.) Task: {0EEE1967-449F-4EB0-8A9A-628EED4793EE} - System32\Tasks\TuneUpUtilities_Task_BkGndMaintenance2013 => C:\Program Files (x86)\TuneUp Utilities 2013\OneClick.exe Task: {139077A8-42DD-4D77-8676-5B3E5A9D884A} - System32\Tasks\OfficeSoftwareProtectionPlatform\SvcRestartTask => Sc.exe start osppsvc Task: {24E12C5B-1A05-40B7-A4A8-6631887538D3} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-12-11] (Adobe Systems Incorporated) Task: {2D997341-9439-4CAE-B6A3-A51C2368A55F} - System32\Tasks\AdobeFlashPlayerUpdate => C:\Windows\SysWOW64\FlashPlayerUpdateService.exe Task: {354B9528-69A3-4DC5-AB0D-001A07F58B9D} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: {41A87547-DE3D-421E-A00A-FA79EA683FAA} - System32\Tasks\{BEB66998-81F3-4E8E-A85C-96B60D99FD0A} => Iexplore.exe hxxp://www.skype.com/go/downloading?source=lightinstaller&ver=4.1.0.179.367&LastError=12007 Task: {68D4A5E8-0715-4710-A50E-3739459CD8EE} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Refresh immunization => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDImmunize.exe Task: {AE4C0233-EE83-4B04-9922-C78EF31F6EA1} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Check for updates => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe Task: {AF53DB89-96CC-41EF-8DCF-43A146E7D323} - System32\Tasks\AdobeFlashPlayerUpdate 2 => C:\Windows\SysWOW64\FlashPlayerUpdateService.exe Task: {B42E2709-57D9-4249-B3E8-38C7252ED1AD} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2014-12-31] (AVAST Software) Task: {CD1AA393-71F3-4AE1-8777-C3E2BC753FB9} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Scan the system => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDScan.exe Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\Windows\Tasks\TuneUpUtilities_Task_BkGndMaintenance2013.job => C:\Program Files (x86)\TuneUp Utilities 2013\OneClick.exe ==================== Loaded Modules (whitelisted) ============= 2011-07-11 10:16 - 2005-03-12 00:07 - 00087040 _____ () C:\Windows\System32\pdfcmnnt.dll 2010-06-25 09:08 - 2010-06-25 09:08 - 00173856 _____ () C:\Program Files\WIDCOMM\Bluetooth Software\btkeyind.dll 2010-11-25 20:46 - 2010-02-03 09:37 - 00244904 ____N () C:\Program Files (x86)\Cyberlink\Shared files\RichVideo.exe 2013-08-28 21:52 - 2013-08-28 21:52 - 03233806 _____ () C:\Program Files (x86)\Tor\tor.exe 2014-12-31 09:05 - 2014-12-31 09:05 - 00388208 _____ () C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxDDU.dll 2014-12-31 09:05 - 2014-12-31 09:05 - 05851328 _____ () C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxRT.dll 2015-01-01 13:02 - 2015-01-01 13:02 - 02908160 _____ () C:\Program Files\AVAST Software\Avast\defs\15010100\algo.dll 2014-12-31 09:05 - 2014-12-31 09:05 - 04495336 _____ () C:\Program Files\AVAST Software\Avast\ng\vbox\x86\VBoxRT-x86.dll 2010-06-28 23:20 - 2010-06-28 23:20 - 00465576 _____ () C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\sqlite3.dll 2010-09-08 03:37 - 2009-05-20 07:02 - 00072200 _____ () C:\Program Files (x86)\Launch Manager\CdDirIo.dll 2009-07-13 22:03 - 2009-07-14 02:15 - 00364544 _____ () C:\Windows\SysWOW64\msjetoledb40.dll 2014-12-31 09:05 - 2014-12-31 09:05 - 38562088 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll 2010-06-28 23:12 - 2010-06-28 23:12 - 01081600 _____ () C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\ACE.dll 2014-12-31 16:11 - 2014-05-13 12:04 - 00109400 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\snlThirdParty150.bpl 2014-12-31 16:11 - 2014-05-13 12:04 - 00416600 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\DEC150.bpl 2014-12-31 16:11 - 2014-05-13 12:04 - 00167768 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\snlFileFormats150.bpl 2014-12-31 16:11 - 2012-08-23 10:38 - 00574840 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\sqlite3.dll 2014-12-31 16:11 - 2012-04-03 17:06 - 00565640 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\av\BDSmartDB.dll 2014-12-09 11:51 - 2014-12-09 11:51 - 03758192 _____ () C:\Program Files (x86)\Mozilla Firefox\mozjs.dll 2014-12-18 07:39 - 2014-12-18 07:39 - 00170496 _____ () C:\Windows\assembly\NativeImages_v2.0.50727_32\IsdiInterop\3d576cbc4ffc5ad06fd61510c5d8f326\IsdiInterop.ni.dll 2010-09-08 02:52 - 2010-03-04 04:08 - 00058880 _____ () C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IsdiInterop.dll ==================== Alternate Data Streams (whitelisted) ========= (If an entry is included in the fixlist, only the Alternate Data Streams will be removed.) ==================== Safe Mode (whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) ==================== EXE Association (whitelisted) ============= (If an entry is included in the fixlist, the default will be restored. None default entries will be removed.) ==================== MSCONFIG/TASK MANAGER disabled items ========= (Currently there is no automatic fix for this section.) ========================= Accounts: ========================== Administrator (S-1-5-21-1902139459-1109185879-2378804310-500 - Administrator - Disabled) Gast (S-1-5-21-1902139459-1109185879-2378804310-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-1902139459-1109185879-2378804310-1002 - Limited - Enabled) ***** (S-1-5-21-1902139459-1109185879-2378804310-1000 - Administrator - Enabled) => C:\Users\***** ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (01/01/2015 04:41:39 PM) (Source: MsiInstaller) (EventID: 10005) (User: *****-PC) Description: Produkt: Vodafone Mobile Connect Lite -- Fehler 2711. The specified Feature name ('ByteMobile') not found in Feature table. Error: (01/01/2015 04:40:16 PM) (Source: VMCService) (EventID: 0) (User: ) Description: conflictManagerTypeValue Error: (01/01/2015 01:55:39 PM) (Source: VMCService) (EventID: 0) (User: ) Description: conflictManagerTypeValue Error: (01/01/2015 11:16:21 AM) (Source: Microsoft-Windows-RestartManager) (EventID: 10006) (User: NT-AUTORITÄT) Description: Die Anwendung oder der Dienst "Spybot-S&D 2 Scanner Service" konnte nicht heruntergefahren werden. Error: (01/01/2015 08:57:51 AM) (Source: MsiInstaller) (EventID: 10005) (User: *****-PC) Description: Produkt: Vodafone Mobile Connect Lite -- Fehler 2711. The specified Feature name ('ByteMobile') not found in Feature table. Error: (01/01/2015 08:55:53 AM) (Source: VMCService) (EventID: 0) (User: ) Description: conflictManagerTypeValue Error: (12/31/2014 04:10:42 PM) (Source: SideBySide) (EventID: 80) (User: ) Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest2" in Zeile C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest3. Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest. Komponente 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest. Error: (12/31/2014 04:10:38 PM) (Source: SideBySide) (EventID: 80) (User: ) Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest2" in Zeile C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest3. Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest. Komponente 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest. Error: (12/31/2014 03:02:46 PM) (Source: MsiInstaller) (EventID: 10005) (User: *****-PC) Description: Produkt: Vodafone Mobile Connect Lite -- Fehler 2711. The specified Feature name ('ByteMobile') not found in Feature table. Error: (12/31/2014 03:01:50 PM) (Source: VMCService) (EventID: 0) (User: ) Description: conflictManagerTypeValue System errors: ============= Error: (01/01/2015 04:38:59 PM) (Source: Service Control Manager) (EventID: 7003) (User: ) Description: Der Dienst "Avira Browser-Schutz" ist von folgendem Dienst abhängig: AntiVirService. Dieser Dienst ist eventuell nicht installiert. Error: (01/01/2015 01:57:55 PM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: Der Dienst "Windows Defender" wurde mit folgendem Fehler beendet: %%-2147024882 Error: (01/01/2015 01:55:26 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "Spybot-S&D 2 Scanner Service" wurde aufgrund folgenden Fehlers nicht gestartet: %%1053 Error: (01/01/2015 01:55:26 PM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Spybot-S&D 2 Scanner Service erreicht. Error: (01/01/2015 01:54:22 PM) (Source: Service Control Manager) (EventID: 7003) (User: ) Description: Der Dienst "Avira Browser-Schutz" ist von folgendem Dienst abhängig: AntiVirService. Dieser Dienst ist eventuell nicht installiert. Error: (01/01/2015 11:14:28 AM) (Source: DCOM) (EventID: 10010) (User: ) Description: {E579AB5F-1CC4-44B4-BED9-DE0991FF0623} Error: (01/01/2015 11:13:58 AM) (Source: Service Control Manager) (EventID: 7011) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Warten auf eine Transaktionsrückmeldung von Dienst NlaSvc erreicht. Error: (01/01/2015 08:55:31 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "Spybot-S&D 2 Scanner Service" wurde aufgrund folgenden Fehlers nicht gestartet: %%1053 Error: (01/01/2015 08:55:31 AM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Spybot-S&D 2 Scanner Service erreicht. Error: (01/01/2015 08:54:55 AM) (Source: Service Control Manager) (EventID: 7003) (User: ) Description: Der Dienst "Avira Browser-Schutz" ist von folgendem Dienst abhängig: AntiVirService. Dieser Dienst ist eventuell nicht installiert. Microsoft Office Sessions: ========================= Error: (01/01/2015 04:41:39 PM) (Source: MsiInstaller) (EventID: 10005) (User: *****-PC) Description: Produkt: Vodafone Mobile Connect Lite -- Fehler 2711. The specified Feature name ('ByteMobile') not found in Feature table.(NULL)(NULL)(NULL)(NULL)(NULL) Error: (01/01/2015 04:40:16 PM) (Source: VMCService) (EventID: 0) (User: ) Description: conflictManagerTypeValue Error: (01/01/2015 01:55:39 PM) (Source: VMCService) (EventID: 0) (User: ) Description: conflictManagerTypeValue Error: (01/01/2015 11:16:21 AM) (Source: Microsoft-Windows-RestartManager) (EventID: 10006) (User: NT-AUTORITÄT) Description: 0C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exeSpybot-S&D 2 Scanner Service0302621614048143003A005C00500072006F006700720061006D002000460069006C00650073002000280078003800360029005C0053007000790062006F00740020002D002000530065006100720063006800200026002000440065007300740072006F007900200032005C00610076005C006200640063006F00720065002E0064006C006C000000 Error: (01/01/2015 08:57:51 AM) (Source: MsiInstaller) (EventID: 10005) (User: *****-PC) Description: Produkt: Vodafone Mobile Connect Lite -- Fehler 2711. The specified Feature name ('ByteMobile') not found in Feature table.(NULL)(NULL)(NULL)(NULL)(NULL) Error: (01/01/2015 08:55:53 AM) (Source: VMCService) (EventID: 0) (User: ) Description: conflictManagerTypeValue Error: (12/31/2014 04:10:42 PM) (Source: SideBySide) (EventID: 80) (User: ) Description: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifestC:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifestC:\Users\*****\Computer\Downloads\esetsmartinstaller_deu.exe Error: (12/31/2014 04:10:38 PM) (Source: SideBySide) (EventID: 80) (User: ) Description: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifestC:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifestC:\Users\*****\Computer\Downloads\esetsmartinstaller_deu.exe Error: (12/31/2014 03:02:46 PM) (Source: MsiInstaller) (EventID: 10005) (User: *****-PC) Description: Produkt: Vodafone Mobile Connect Lite -- Fehler 2711. The specified Feature name ('ByteMobile') not found in Feature table.(NULL)(NULL)(NULL)(NULL)(NULL) Error: (12/31/2014 03:01:50 PM) (Source: VMCService) (EventID: 0) (User: ) Description: conflictManagerTypeValue ==================== Memory info =========================== Processor: Intel(R) Core(TM) i3 CPU M 380 @ 2.53GHz Percentage of memory in use: 55% Total physical RAM: 3766.76 MB Available physical RAM: 1691.37 MB Total Pagefile: 7531.7 MB Available Pagefile: 5145.9 MB Total Virtual: 8192 MB Available Virtual: 8191.81 MB ==================== Drives ================================ Drive c: (Acer) (Fixed) (Total:283.99 GB) (Free:134.79 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 298.1 GB) (Disk ID: 1012CD43) Partition 1: (Not Active) - (Size=14 GB) - (Type=27) Partition 2: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=284 GB) - (Type=07 NTFS) ==================== End Of Log ============================ Viele liebe Grüße, danke im Voraus Mathias Gmer.txt Code:
ATTFilter GMER 2.1.19357 - hxxp://www.gmer.net Rootkit scan 2015-01-01 17:08:52 Windows 6.1.7601 Service Pack 1 x64 \Device\Harddisk0\DR0 -> \Device\Ide\IAAStorageDevice-1 WDC_WD32 rev.01.0 298,09GB Running: Gmer-19357.exe; Driver: C:\Users\*****\AppData\Local\Temp\kgdiafoc.sys ---- Kernel code sections - GMER 2.1 ---- INITKDBG C:\Windows\system32\ntoskrnl.exe!ExDeleteNPagedLookasideList + 528 fffff80002fba000 45 bytes [00, 00, 10, 02, 4E, 74, 66, ...] INITKDBG C:\Windows\system32\ntoskrnl.exe!ExDeleteNPagedLookasideList + 575 fffff80002fba02f 29 bytes [00, 01, 00, 06, 00, 00, 00, ...] ---- User code sections - GMER 2.1 ---- .text C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamscheduler.exe[2844] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 69 0000000077801465 2 bytes [80, 77] .text C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamscheduler.exe[2844] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 155 00000000778014bb 2 bytes [80, 77] .text ... * 2 .text C:\Program Files (x86)\Acer\Acer VCM\AcerVCM.exe[2988] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 69 0000000077801465 2 bytes [80, 77] .text C:\Program Files (x86)\Acer\Acer VCM\AcerVCM.exe[2988] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 155 00000000778014bb 2 bytes [80, 77] .text ... * 2 .text C:\Windows\SysWOW64\RunDll32.exe[2296] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 69 0000000077801465 2 bytes [80, 77] .text C:\Windows\SysWOW64\RunDll32.exe[2296] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 155 00000000778014bb 2 bytes [80, 77] .text ... * 2 .text C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\BackupManagerTray.exe[2964] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 69 0000000077801465 2 bytes [80, 77] .text C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\BackupManagerTray.exe[2964] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 155 00000000778014bb 2 bytes [80, 77] .text ... * 2 .text C:\Program Files (x86)\Launch Manager\LManager.exe[2920] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 69 0000000077801465 2 bytes [80, 77] .text C:\Program Files (x86)\Launch Manager\LManager.exe[2920] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 155 00000000778014bb 2 bytes [80, 77] .text ... * 2 .text C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe[3328] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 69 0000000077801465 2 bytes [80, 77] .text C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe[3328] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 155 00000000778014bb 2 bytes [80, 77] .text ... * 2 .text C:\Program Files (x86)\Vodafone\Vodafone Mobile Connect\Bin\MobileConnect.exe[3460] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 69 0000000077801465 2 bytes [80, 77] .text C:\Program Files (x86)\Vodafone\Vodafone Mobile Connect\Bin\MobileConnect.exe[3460] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 155 00000000778014bb 2 bytes [80, 77] .text ... * 2 .text C:\Program Files\AVAST Software\Avast\AvastUI.exe[3508] C:\Windows\syswow64\kernel32.dll!SetUnhandledExceptionFilter 0000000076d78791 8 bytes [31, C0, C2, 04, 00, 90, 90, ...] .text C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\IScheduleSvc.exe[3628] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 69 0000000077801465 2 bytes [80, 77] .text C:\Program Files (x86)\NewTech Infosystems\Acer Backup Manager\IScheduleSvc.exe[3628] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 155 00000000778014bb 2 bytes [80, 77] .text ... * 2 .text C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe[3764] C:\Windows\syswow64\psapi.dll!GetModuleInformation + 69 0000000077801465 2 bytes [80, 77] .text C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe[3764] C:\Windows\syswow64\psapi.dll!GetModuleInformation + 155 00000000778014bb 2 bytes [80, 77] .text ... * 2 .text C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbam.exe[3776] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 69 0000000077801465 2 bytes [80, 77] .text C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbam.exe[3776] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 155 00000000778014bb 2 bytes [80, 77] .text ... * 2 .text C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe[3968] C:\Windows\syswow64\psapi.dll!GetModuleInformation + 69 0000000077801465 2 bytes [80, 77] .text C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe[3968] C:\Windows\syswow64\psapi.dll!GetModuleInformation + 155 00000000778014bb 2 bytes [80, 77] .text ... * 2 ---- Threads - GMER 2.1 ---- Thread C:\Windows\SysWOW64\dllhost.exe [2808:1300] 000000007ef90000 Thread C:\Windows\SysWOW64\dllhost.exe [2808:1512] 000000007ef919ee Thread C:\Windows\SysWOW64\dllhost.exe [2808:2172] 000000007ef967f4 Thread C:\Windows\SysWOW64\dllhost.exe [2808:2552] 000000007ef95779 Thread C:\Windows\SysWOW64\cleanmgr.exe [1108:484] 000000007ef97c32 Thread C:\Windows\SysWOW64\cleanmgr.exe [1108:800] 000000007ef97be4 Thread C:\Windows\SysWOW64\cleanmgr.exe [1108:116] 000000007ef991d3 Thread C:\Windows\SysWOW64\cleanmgr.exe [1108:2876] 000000007ef9dc0c ---- Registry - GMER 2.1 ---- Reg HKLM\SYSTEM\CurrentControlSet\services\BTHPORT\Parameters\Keys\18f46ae01c3b Reg HKLM\SYSTEM\ControlSet002\services\BTHPORT\Parameters\Keys\18f46ae01c3b (not active ControlSet) ---- EOF - GMER 2.1 ---- Code:
ATTFilter Search results from Spybot - Search & Destroy 01.01.2015 12:52:15 Scan took 01:34:31. 369 items found. Delta.Toolbar: [SBI $44F06F05] User settings (Registry Value, nothing done) HKEY_USERS\S-1-5-21-1902139459-1109185879-2378804310-1000\Software\Microsoft\Internet Explorer\Protect Approved Extensions\{4D2D3B0F-69BE-477A-90F5-FDDB05357975} Delta.Toolbar: [SBI $04AEAE14] User settings (Registry Value, nothing done) HKEY_USERS\S-1-5-21-1902139459-1109185879-2378804310-1000\Software\Microsoft\Internet Explorer\TabbedBrowsing\bProtectNewTabPageShow Delta.Toolbar: [SBI $0760E887] User settings (Registry Value, nothing done) HKEY_USERS\S-1-5-21-1902139459-1109185879-2378804310-1000\Software\Microsoft\Internet Explorer\TabbedBrowsing\bProtectShowTabsWelcome Widgi.Toolbar: [SBI $DABAA047] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\Installer\UpgradeCodes\504D229B31D6B2A4EA98800A03AD4420 Widgi.Toolbar: [SBI $DABAA047] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\Installer\UpgradeCodes\504D229B31D6B2A4EA98800A03AD4420 Widgi.Toolbar: [SBI $EECF060A] Settings (Registry Key, nothing done) HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\504D229B31D6B2A4EA98800A03AD4420 Widgi.Toolbar: [SBI $16C3A07B] Settings (Registry Value, nothing done) HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders\C:\Program Files (x86)\Common Files\Spigot\ Widgi.Toolbar: [SBI $000389AB] Settings (Registry Value, nothing done) HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders\C:\Program Files (x86)\Common Files\Spigot\Search Settings\ Widgi.Toolbar: [SBI $1E14509F] Settings (Registry Value, nothing done) HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders\C:\Program Files (x86)\Common Files\Spigot\Search Settings\Res\ Widgi.Toolbar: [SBI $E1F050EF] Settings (Registry Value, nothing done) HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders\C:\Program Files (x86)\pdfforge Toolbar\ Widgi.Toolbar: [SBI $03E18DB3] Settings (Registry Value, nothing done) HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders\C:\Program Files (x86)\pdfforge Toolbar\IE\ Widgi.Toolbar: [SBI $60A6F1DA] Settings (Registry Value, nothing done) HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders\C:\Program Files (x86)\pdfforge Toolbar\Res\ Widgi.Toolbar: [SBI $E4808FA3] Settings (Registry Value, nothing done) HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders\C:\Program Files (x86)\Application Updater\ Tuguu.VAFPlayer: [SBI $76F6A96F] Root class (Registry Key, nothing done) HKEY_LOCAL_MACHINE\SOFTWARE\Classes\VafPlayer Tuguu.VAFPlayer: [SBI $76F6A96F] Root class (Registry Key, nothing done) HKEY_LOCAL_MACHINE\SOFTWARE\Classes\VafPlayer Tuguu.VAFPlayer: [SBI $96752782] Settings (Registry Value, nothing done) HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders\C:\Program Files (x86)\Tuguu SL\ Tuguu.VAFPlayer: [SBI $ABF0D615] Settings (Registry Value, nothing done) HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders\C:\Program Files (x86)\Tuguu SL\VAFPlayer\ Tuguu.VAFPlayer: [SBI $C4882D2E] Settings (Registry Value, nothing done) HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders\C:\Program Files (x86)\Tuguu SL\VAFPlayer\languages\ Tuguu.VAFPlayer: [SBI $AD693880] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.3g2\VafPlayer Tuguu.VAFPlayer: [SBI $AD693880] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.3g2\VafPlayer Tuguu.VAFPlayer: [SBI $07007C2B] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.3gp2\VafPlayer Tuguu.VAFPlayer: [SBI $07007C2B] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.3gp2\VafPlayer Tuguu.VAFPlayer: [SBI $657DB6C7] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.3gpp\VafPlayer Tuguu.VAFPlayer: [SBI $657DB6C7] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.3gpp\VafPlayer Tuguu.VAFPlayer: [SBI $CF14F26C] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.3gp\VafPlayer Tuguu.VAFPlayer: [SBI $CF14F26C] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.3gp\VafPlayer Tuguu.VAFPlayer: [SBI $57B102F0] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.aac\VafPlayer Tuguu.VAFPlayer: [SBI $57B102F0] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.aac\VafPlayer Tuguu.VAFPlayer: [SBI $5E88C3A1] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.ac3\VafPlayer Tuguu.VAFPlayer: [SBI $5E88C3A1] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.ac3\VafPlayer Tuguu.VAFPlayer: [SBI $5C5DBF1F] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.alac\VafPlayer Tuguu.VAFPlayer: [SBI $5C5DBF1F] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.alac\VafPlayer Tuguu.VAFPlayer: [SBI $0D0A959F] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.amr\VafPlayer Tuguu.VAFPlayer: [SBI $0D0A959F] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.amr\VafPlayer Tuguu.VAFPlayer: [SBI $8776F0FC] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.amv\VafPlayer Tuguu.VAFPlayer: [SBI $8776F0FC] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.amv\VafPlayer Tuguu.VAFPlayer: [SBI $3D04790D] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.ape\VafPlayer Tuguu.VAFPlayer: [SBI $3D04790D] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.ape\VafPlayer Tuguu.VAFPlayer: [SBI $4B766E62] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.apl\VafPlayer Tuguu.VAFPlayer: [SBI $4B766E62] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.apl\VafPlayer Tuguu.VAFPlayer: [SBI $2B60B90D] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.avi\VafPlayer Tuguu.VAFPlayer: [SBI $2B60B90D] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.avi\VafPlayer Tuguu.VAFPlayer: [SBI $CD41CD2E] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.divx\VafPlayer Tuguu.VAFPlayer: [SBI $CD41CD2E] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.divx\VafPlayer Tuguu.VAFPlayer: [SBI $7B0392BB] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.dts\VafPlayer Tuguu.VAFPlayer: [SBI $7B0392BB] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.dts\VafPlayer Tuguu.VAFPlayer: [SBI $7A924A30] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.evo\VafPlayer Tuguu.VAFPlayer: [SBI $7A924A30] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.evo\VafPlayer Tuguu.VAFPlayer: [SBI $BD73B57B] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.flac\VafPlayer Tuguu.VAFPlayer: [SBI $BD73B57B] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.flac\VafPlayer Tuguu.VAFPlayer: [SBI $098C1D26] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.flv\VafPlayer Tuguu.VAFPlayer: [SBI $098C1D26] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.flv\VafPlayer Tuguu.VAFPlayer: [SBI $753083B6] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.hdmov\VafPlayer Tuguu.VAFPlayer: [SBI $753083B6] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.hdmov\VafPlayer Tuguu.VAFPlayer: [SBI $C5E9817C] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.it\VafPlayer Tuguu.VAFPlayer: [SBI $C5E9817C] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.it\VafPlayer Tuguu.VAFPlayer: [SBI $7D158301] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.m1v\VafPlayer Tuguu.VAFPlayer: [SBI $7D158301] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.m1v\VafPlayer Tuguu.VAFPlayer: [SBI $7627E301] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.m2p\VafPlayer Tuguu.VAFPlayer: [SBI $7627E301] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.m2p\VafPlayer Tuguu.VAFPlayer: [SBI $938BBECD] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.m2ts\VafPlayer Tuguu.VAFPlayer: [SBI $938BBECD] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.m2ts\VafPlayer Tuguu.VAFPlayer: [SBI $FC5B8662] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.m2t\VafPlayer Tuguu.VAFPlayer: [SBI $FC5B8662] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.m2t\VafPlayer Tuguu.VAFPlayer: [SBI $54DD37F3] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.m2v\VafPlayer Tuguu.VAFPlayer: [SBI $54DD37F3] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.m2v\VafPlayer Tuguu.VAFPlayer: [SBI $D82FCE42] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.m4a\VafPlayer Tuguu.VAFPlayer: [SBI $D82FCE42] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.m4a\VafPlayer Tuguu.VAFPlayer: [SBI $074C5E17] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.m4v\VafPlayer Tuguu.VAFPlayer: [SBI $074C5E17] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.m4v\VafPlayer Tuguu.VAFPlayer: [SBI $9E9C611C] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.mka\VafPlayer Tuguu.VAFPlayer: [SBI $9E9C611C] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.mka\VafPlayer Tuguu.VAFPlayer: [SBI $41FFF149] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.mkv\VafPlayer Tuguu.VAFPlayer: [SBI $41FFF149] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.mkv\VafPlayer Tuguu.VAFPlayer: [SBI $6CB27838] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.mo3\VafPlayer Tuguu.VAFPlayer: [SBI $6CB27838] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.mo3\VafPlayer Tuguu.VAFPlayer: [SBI $792A9310] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.mod\VafPlayer Tuguu.VAFPlayer: [SBI $792A9310] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.mod\VafPlayer Tuguu.VAFPlayer: [SBI $95CEBDCE] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.mov\VafPlayer Tuguu.VAFPlayer: [SBI $95CEBDCE] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.mov\VafPlayer Tuguu.VAFPlayer: [SBI $54996A6B] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.mp2v\VafPlayer Tuguu.VAFPlayer: [SBI $54996A6B] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.mp2v\VafPlayer Tuguu.VAFPlayer: [SBI $047F219C] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.mp3\VafPlayer Tuguu.VAFPlayer: [SBI $047F219C] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.mp3\VafPlayer Tuguu.VAFPlayer: [SBI $0708038F] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.mp4v\VafPlayer Tuguu.VAFPlayer: [SBI $0708038F] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.mp4v\VafPlayer Tuguu.VAFPlayer: [SBI $9F7E2E86] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.mp4\VafPlayer Tuguu.VAFPlayer: [SBI $9F7E2E86] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.mp4\VafPlayer Tuguu.VAFPlayer: [SBI $8AE6C5AE] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.mpc\VafPlayer Tuguu.VAFPlayer: [SBI $8AE6C5AE] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.mpc\VafPlayer Tuguu.VAFPlayer: [SBI $9CA01EDD] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.mpeg\VafPlayer Tuguu.VAFPlayer: [SBI $9CA01EDD] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.mpeg\VafPlayer Tuguu.VAFPlayer: [SBI $A81C115C] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.mpe\VafPlayer Tuguu.VAFPlayer: [SBI $A81C115C] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.mpe\VafPlayer Tuguu.VAFPlayer: [SBI $009AA0CD] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.mpg\VafPlayer Tuguu.VAFPlayer: [SBI $009AA0CD] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.mpg\VafPlayer Tuguu.VAFPlayer: [SBI $EE51CE08] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.mpv2\VafPlayer Tuguu.VAFPlayer: [SBI $EE51CE08] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.mpv2\VafPlayer Tuguu.VAFPlayer: [SBI $CCAB1AFA] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.mpv4\VafPlayer Tuguu.VAFPlayer: [SBI $CCAB1AFA] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.mpv4\VafPlayer Tuguu.VAFPlayer: [SBI $B3A4915C] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.mtm\VafPlayer Tuguu.VAFPlayer: [SBI $B3A4915C] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.mtm\VafPlayer Tuguu.VAFPlayer: [SBI $1AB51666] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.mts\VafPlayer Tuguu.VAFPlayer: [SBI $1AB51666] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.mts\VafPlayer Tuguu.VAFPlayer: [SBI $16F546B4] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.ofr\VafPlayer Tuguu.VAFPlayer: [SBI $16F546B4] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.ofr\VafPlayer Tuguu.VAFPlayer: [SBI $AF0E9D5C] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.ofs\VafPlayer Tuguu.VAFPlayer: [SBI $AF0E9D5C] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.ofs\VafPlayer Tuguu.VAFPlayer: [SBI $ED822213] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.oga\VafPlayer Tuguu.VAFPlayer: [SBI $ED822213] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.oga\VafPlayer Tuguu.VAFPlayer: [SBI $CF78F6E1] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.ogg\VafPlayer Tuguu.VAFPlayer: [SBI $CF78F6E1] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.ogg\VafPlayer Tuguu.VAFPlayer: [SBI $A8778BF7] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.ogm\VafPlayer Tuguu.VAFPlayer: [SBI $A8778BF7] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.ogm\VafPlayer Tuguu.VAFPlayer: [SBI $32E1B246] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.ogv\VafPlayer Tuguu.VAFPlayer: [SBI $32E1B246] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.ogv\VafPlayer Tuguu.VAFPlayer: [SBI $741E27B4] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.pva\VafPlayer Tuguu.VAFPlayer: [SBI $741E27B4] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.pva\VafPlayer Tuguu.VAFPlayer: [SBI $0EF0B59B] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.ra\VafPlayer Tuguu.VAFPlayer: [SBI $0EF0B59B] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.ra\VafPlayer Tuguu.VAFPlayer: [SBI $BDFBE825] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.rmvb\VafPlayer Tuguu.VAFPlayer: [SBI $BDFBE825] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.rmvb\VafPlayer Tuguu.VAFPlayer: [SBI $4B051C7F] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.rm\VafPlayer Tuguu.VAFPlayer: [SBI $4B051C7F] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.rm\VafPlayer Tuguu.VAFPlayer: [SBI $3656FE38] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.s3m\VafPlayer Tuguu.VAFPlayer: [SBI $3656FE38] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.s3m\VafPlayer Tuguu.VAFPlayer: [SBI $01989CA9] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.tpr\VafPlayer Tuguu.VAFPlayer: [SBI $01989CA9] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.tpr\VafPlayer Tuguu.VAFPlayer: [SBI $A0F898D8] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.tp\VafPlayer Tuguu.VAFPlayer: [SBI $A0F898D8] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.tp\VafPlayer Tuguu.VAFPlayer: [SBI $B185F2A1] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.ts\VafPlayer Tuguu.VAFPlayer: [SBI $B185F2A1] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.ts\VafPlayer Tuguu.VAFPlayer: [SBI $0E5C563B] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.umx\VafPlayer Tuguu.VAFPlayer: [SBI $0E5C563B] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.umx\VafPlayer Tuguu.VAFPlayer: [SBI $F90BCA85] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.vob\VafPlayer Tuguu.VAFPlayer: [SBI $F90BCA85] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.vob\VafPlayer Tuguu.VAFPlayer: [SBI $D98F77D8] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.webm\VafPlayer Tuguu.VAFPlayer: [SBI $D98F77D8] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.webm\VafPlayer Tuguu.VAFPlayer: [SBI $3713DE89] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.wmv\VafPlayer Tuguu.VAFPlayer: [SBI $3713DE89] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.wmv\VafPlayer Tuguu.VAFPlayer: [SBI $ABCAF8D8] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.wv\VafPlayer Tuguu.VAFPlayer: [SBI $ABCAF8D8] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.wv\VafPlayer Tuguu.VAFPlayer: [SBI $BFB6A653] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.xm\VafPlayer Tuguu.VAFPlayer: [SBI $BFB6A653] Settings (Registry Key, nothing done) HKEY_CLASSES_ROOT\.xm\VafPlayer Tuguu.VAFPlayer: [SBI $427B4781] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.3g2\ Tuguu.VAFPlayer: [SBI $427B4781] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.3g2\ Tuguu.VAFPlayer: [SBI $78B4DE33] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.3gp2\ Tuguu.VAFPlayer: [SBI $78B4DE33] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.3gp2\ Tuguu.VAFPlayer: [SBI $C7EDC5D0] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.3gpp\ Tuguu.VAFPlayer: [SBI $C7EDC5D0] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.3gpp\ Tuguu.VAFPlayer: [SBI $FD225C62] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.3gp\ Tuguu.VAFPlayer: [SBI $FD225C62] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.3gp\ Tuguu.VAFPlayer: [SBI $BB2BABB4] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.aac\ Tuguu.VAFPlayer: [SBI $BB2BABB4] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.aac\ Tuguu.VAFPlayer: [SBI $5BB1813D] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.ac3\ Tuguu.VAFPlayer: [SBI $5BB1813D] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.ac3\ Tuguu.VAFPlayer: [SBI $AEDB3AE0] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.alac\ Tuguu.VAFPlayer: [SBI $AEDB3AE0] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.alac\ Tuguu.VAFPlayer: [SBI $9A13512A] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.amr\ Tuguu.VAFPlayer: [SBI $9A13512A] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.amr\ Tuguu.VAFPlayer: [SBI $91BB862C] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.amv\ Tuguu.VAFPlayer: [SBI $91BB862C] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.amv\ Tuguu.VAFPlayer: [SBI $71F7AC63] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.ape\ Tuguu.VAFPlayer: [SBI $71F7AC63] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.ape\ Tuguu.VAFPlayer: [SBI $89F4B48E] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.apl\ Tuguu.VAFPlayer: [SBI $89F4B48E] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.apl\ Tuguu.VAFPlayer: [SBI $F0D2DE7A] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.avi\ Tuguu.VAFPlayer: [SBI $F0D2DE7A] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.avi\ Tuguu.VAFPlayer: [SBI $827AF2ED] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.divx\ Tuguu.VAFPlayer: [SBI $827AF2ED] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.divx\ Tuguu.VAFPlayer: [SBI $93CA9103] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.dts\ Tuguu.VAFPlayer: [SBI $93CA9103] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.dts\ Tuguu.VAFPlayer: [SBI $B04389A6] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.evo\ Tuguu.VAFPlayer: [SBI $B04389A6] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.evo\ Tuguu.VAFPlayer: [SBI $C73CBCB8] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.flac\ Tuguu.VAFPlayer: [SBI $C73CBCB8] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.flac\ Tuguu.VAFPlayer: [SBI $A71DA0E7] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.flv\ Tuguu.VAFPlayer: [SBI $A71DA0E7] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.flv\ Tuguu.VAFPlayer: [SBI $72120405] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.hdmov\ Tuguu.VAFPlayer: [SBI $72120405] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.hdmov\ Tuguu.VAFPlayer: [SBI $60906D2F] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.it\ Tuguu.VAFPlayer: [SBI $60906D2F] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.it\ Tuguu.VAFPlayer: [SBI $FC0E7C82] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.m1v\ Tuguu.VAFPlayer: [SBI $FC0E7C82] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.m1v\ Tuguu.VAFPlayer: [SBI $512446AE] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.m2p\ Tuguu.VAFPlayer: [SBI $512446AE] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.m2p\ Tuguu.VAFPlayer: [SBI $567D9DD1] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.m2ts\ Tuguu.VAFPlayer: [SBI $567D9DD1] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.m2ts\ Tuguu.VAFPlayer: [SBI $5A8C91A8] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.m2t\ Tuguu.VAFPlayer: [SBI $5A8C91A8] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.m2t\ Tuguu.VAFPlayer: [SBI $5F58FA2B] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.m2v\ Tuguu.VAFPlayer: [SBI $5F58FA2B] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.m2v\ Tuguu.VAFPlayer: [SBI $0D09A744] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.m4a\ Tuguu.VAFPlayer: [SBI $0D09A744] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.m4a\ Tuguu.VAFPlayer: [SBI $C284F138] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.m4v\ Tuguu.VAFPlayer: [SBI $C284F138] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.m4v\ Tuguu.VAFPlayer: [SBI $10DCE6A8] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.mka\ Tuguu.VAFPlayer: [SBI $10DCE6A8] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.mka\ Tuguu.VAFPlayer: [SBI $DF51B0D4] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.mkv\ Tuguu.VAFPlayer: [SBI $DF51B0D4] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.mkv\ Tuguu.VAFPlayer: [SBI $684EACB1] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.mo3\ Tuguu.VAFPlayer: [SBI $684EACB1] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.mo3\ Tuguu.VAFPlayer: [SBI $1D4E8AAD] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.mod\ Tuguu.VAFPlayer: [SBI $1D4E8AAD] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.mod\ Tuguu.VAFPlayer: [SBI $3639BD36] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.mov\ Tuguu.VAFPlayer: [SBI $3639BD36] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.mov\ Tuguu.VAFPlayer: [SBI $9D65CD97] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.mp2v\ Tuguu.VAFPlayer: [SBI $9D65CD97] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.mp2v\ Tuguu.VAFPlayer: [SBI $38930175] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.mp3\ Tuguu.VAFPlayer: [SBI $38930175] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.mp3\ Tuguu.VAFPlayer: [SBI $00B9C684] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.mp4v\ Tuguu.VAFPlayer: [SBI $00B9C684] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.mp4v\ Tuguu.VAFPlayer: [SBI $D9BD0B11] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.mp4\ Tuguu.VAFPlayer: [SBI $D9BD0B11] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.mp4\ Tuguu.VAFPlayer: [SBI $ACBD2D0D] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.mpc\ Tuguu.VAFPlayer: [SBI $ACBD2D0D] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.mpc\ Tuguu.VAFPlayer: [SBI $48E07B07] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.mpeg\ Tuguu.VAFPlayer: [SBI $48E07B07] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.mpeg\ Tuguu.VAFPlayer: [SBI $A2C19188] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.mpe\ Tuguu.VAFPlayer: [SBI $A2C19188] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.mpe\ Tuguu.VAFPlayer: [SBI $A715FA0B] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.mpg\ Tuguu.VAFPlayer: [SBI $A715FA0B] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.mpg\ Tuguu.VAFPlayer: [SBI $88208B3B] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.mpv2\ Tuguu.VAFPlayer: [SBI $88208B3B] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.mpv2\ Tuguu.VAFPlayer: [SBI $865C37BE] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.mpv4\ Tuguu.VAFPlayer: [SBI $865C37BE] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.mpv4\ Tuguu.VAFPlayer: [SBI $5CF83266] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.mtm\ Tuguu.VAFPlayer: [SBI $5CF83266] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.mtm\ Tuguu.VAFPlayer: [SBI $6B767CF7] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.mts\ Tuguu.VAFPlayer: [SBI $6B767CF7] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.mts\ Tuguu.VAFPlayer: [SBI $291C8161] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.ofr\ Tuguu.VAFPlayer: [SBI $291C8161] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.ofr\ Tuguu.VAFPlayer: [SBI $C64E3780] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.ofs\ Tuguu.VAFPlayer: [SBI $C64E3780] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.ofs\ Tuguu.VAFPlayer: [SBI $3ADB8043] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.oga\ Tuguu.VAFPlayer: [SBI $3ADB8043] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.oga\ Tuguu.VAFPlayer: [SBI $34A73CC6] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.ogg\ Tuguu.VAFPlayer: [SBI $34A73CC6] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.ogg\ Tuguu.VAFPlayer: [SBI $2622F949] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.ogm\ Tuguu.VAFPlayer: [SBI $2622F949] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.ogm\ Tuguu.VAFPlayer: [SBI $F556D63F] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.ogv\ Tuguu.VAFPlayer: [SBI $F556D63F] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.ogv\ Tuguu.VAFPlayer: [SBI $6222E015] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.pva\ Tuguu.VAFPlayer: [SBI $6222E015] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.pva\ Tuguu.VAFPlayer: [SBI $137CF0F6] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.ra\ Tuguu.VAFPlayer: [SBI $137CF0F6] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.ra\ Tuguu.VAFPlayer: [SBI $4D689709] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.rmvb\ Tuguu.VAFPlayer: [SBI $4D689709] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.rmvb\ Tuguu.VAFPlayer: [SBI $0F8589FC] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.rm\ Tuguu.VAFPlayer: [SBI $0F8589FC] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.rm\ Tuguu.VAFPlayer: [SBI $A2F0B547] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.s3m\ Tuguu.VAFPlayer: [SBI $A2F0B547] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.s3m\ Tuguu.VAFPlayer: [SBI $75368125] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.tpr\ Tuguu.VAFPlayer: [SBI $75368125] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.tpr\ Tuguu.VAFPlayer: [SBI $4F51111C] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.tp\ Tuguu.VAFPlayer: [SBI $4F51111C] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.tp\ Tuguu.VAFPlayer: [SBI $A5D7CC7E] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.ts\ Tuguu.VAFPlayer: [SBI $A5D7CC7E] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.ts\ Tuguu.VAFPlayer: [SBI $26BDD4D9] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.umx\ Tuguu.VAFPlayer: [SBI $26BDD4D9] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.umx\ Tuguu.VAFPlayer: [SBI $C1860675] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.vob\ Tuguu.VAFPlayer: [SBI $C1860675] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.vob\ Tuguu.VAFPlayer: [SBI $51C5541E] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.webm\ Tuguu.VAFPlayer: [SBI $51C5541E] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.webm\ Tuguu.VAFPlayer: [SBI $F55EB0DC] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.wmv\ Tuguu.VAFPlayer: [SBI $F55EB0DC] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.wmv\ Tuguu.VAFPlayer: [SBI $E27B2B30] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.wv\ Tuguu.VAFPlayer: [SBI $E27B2B30] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.wv\ Tuguu.VAFPlayer: [SBI $72909288] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.xm\ Tuguu.VAFPlayer: [SBI $72909288] Settings (Registry Change, nothing done) HKEY_CLASSES_ROOT\.xm\ Microsoft.WindowsSecurityCenter_disabled: [SBI $2E20C9A9] Settings (Registry Change, nothing done) HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\wscsvc\Start Microsoft.WindowsSecurityCenter_disabled: [SBI $2E20C9A9] Settings (Registry Change, nothing done) HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\wscsvc\Start Macromedia.FlashPlayer.Cookies: [SBI $6AA61750] Text file (File, nothing done) C:\Users\****\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YDEDDLKL\cdn.zopim.com\47RtJCp9551l41F500mketBis297Eoy3Session_SO.sol Properties.size=86 Properties.md5=49EB68A553E8F65B79425BEF78EEF058 Properties.filedate=1404150806 Properties.filedatetext=2014-06-30 18:53:25 Macromedia.FlashPlayer.Cookies: [SBI $6AA61750] Text file (File, nothing done) C:\Users\****\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YDEDDLKL\cdn.zopim.com\47RtJCp9551l41F500mketBis297Eoy3Volatile_SO.sol Properties.size=196 Properties.md5=2443D0E6A1429BF576F290FF01096586 Properties.filedate=1404150806 Properties.filedatetext=2014-06-30 18:53:25 Macromedia.FlashPlayer.Cookies: [SBI $6AA61750] Text file (File, nothing done) C:\Users\****\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YDEDDLKL\de-ipd.cdn.videoplaza.tv\com.videoplaza.adplayer.sol Properties.size=149 Properties.md5=A06EAFE4E77C0A5C9718634D9083A075 Properties.filedate=1418587947 Properties.filedatetext=2014-12-14 21:12:26 Macromedia.FlashPlayer.Cookies: [SBI $6AA61750] Text file (File, nothing done) C:\Users\****\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YDEDDLKL\de-ipd.cdn.videoplaza.tv\com.videoplaza.bootloader.sol Properties.size=122 Properties.md5=7456B8F5B087113AD99FDE01E29440E5 Properties.filedate=1419948865 Properties.filedatetext=2014-12-30 15:14:24 Macromedia.FlashPlayer.Cookies: [SBI $6AA61750] Text file (File, nothing done) C:\Users\****\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YDEDDLKL\de-ipd.cdn.videoplaza.tv\se.videoplaza.kit.adplayer.adplayer.sol Properties.size=5756 Properties.md5=4920C3574E3837A5A31F622A0D365B37 Properties.filedate=1419951297 Properties.filedatetext=2014-12-30 15:54:56 Macromedia.FlashPlayer.Cookies: [SBI $6AA61750] Text file (File, nothing done) C:\Users\****\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YDEDDLKL\de-uim.cdn.videoplaza.tv\com.videoplaza.bootloader.sol Properties.size=121 Properties.md5=19886C71873C32B411EFB65418178503 Properties.filedate=1405832227 Properties.filedatetext=2014-07-20 05:57:06 Macromedia.FlashPlayer.Cookies: [SBI $6AA61750] Text file (File, nothing done) C:\Users\****\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YDEDDLKL\de-uim.cdn.videoplaza.tv\se.videoplaza.kit.adplayer.adplayer.sol Properties.size=144 Properties.md5=2F084212FAF1CD37D1506CAEF6794750 Properties.filedate=1398337497 Properties.filedatetext=2014-04-24 12:04:56 Macromedia.FlashPlayer.Cookies: [SBI $6AA61750] Text file (File, nothing done) C:\Users\****\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YDEDDLKL\edge.liveleak.com\com.jeroenwijering.sol Properties.size=54 Properties.md5=BAA08DB73B2C679C9C0AB4B552DC2B1A Properties.filedate=1418644964 Properties.filedatetext=2014-12-15 13:02:43 Macromedia.FlashPlayer.Cookies: [SBI $6AA61750] Text file (File, nothing done) C:\Users\****\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YDEDDLKL\eu.hcdn.co\com.longtailvideo.jwplayer.sol Properties.size=58 Properties.md5=011E047AB8164B76C7FF8769A37C6734 Properties.filedate=1418870907 Properties.filedatetext=2014-12-18 03:48:27 Macromedia.FlashPlayer.Cookies: [SBI $6AA61750] Text file (File, nothing done) C:\Users\****\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YDEDDLKL\f.vimeocdn.com\com.conviva.livePass.sol Properties.size=225 Properties.md5=9A6C689A3AAED41BB95A5CD2A9E4CB08 Properties.filedate=1399660379 Properties.filedatetext=2014-05-09 19:32:59 Macromedia.FlashPlayer.Cookies: [SBI $6AA61750] Text file (File, nothing done) C:\Users\****\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YDEDDLKL\filenuke.com\com.longtailvideo.jwplayer.sol Properties.size=65 Properties.md5=2615AF2321A42D5469F7F1209D171E50 Properties.filedate=1415919315 Properties.filedatetext=2014-11-13 23:55:14 Macromedia.FlashPlayer.Cookies: [SBI $6AA61750] Text file (File, nothing done) C:\Users\****\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YDEDDLKL\gorillavid.in\com.jeroenwijering.sol Properties.size=54 Properties.md5=6B838B7AC64BC850699860B0C72F3AB2 Properties.filedate=1417704776 Properties.filedatetext=2014-12-04 15:52:55 Macromedia.FlashPlayer.Cookies: [SBI $6AA61750] Text file (File, nothing done) C:\Users\****\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YDEDDLKL\grooveshark.com\jsQueue.sol Properties.size=3175 Properties.md5=3E4D688D37C4F114C1313FEFDD910A13 Properties.filedate=1419453533 Properties.filedatetext=2014-12-24 21:38:52 Macromedia.FlashPlayer.Cookies: [SBI $6AA61750] Text file (File, nothing done) C:\Users\****\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YDEDDLKL\images-na.ssl-images-amazon.com\mercury.sol Properties.size=69 Properties.md5=C61226DD3132F00308E6BC41EAFE64B1 Properties.filedate=1415232174 Properties.filedatetext=2014-11-06 01:02:53 Macromedia.FlashPlayer.Cookies: [SBI $6AA61750] Text file (File, nothing done) C:\Users\****\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YDEDDLKL\is.myvideo.de\com.conviva.livePass.sol Properties.size=410 Properties.md5=D2A24AB451312A2FA7BA150BC189F7AE Properties.filedate=1399788323 Properties.filedatetext=2014-05-11 07:05:22 Macromedia.FlashPlayer.Cookies: [SBI $6AA61750] Text file (File, nothing done) C:\Users\****\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YDEDDLKL\modovideo.com\com.jeroenwijering.sol Properties.size=50 Properties.md5=56EEF84EDFBF218442F7AFFE5876619E Properties.filedate=1413631403 Properties.filedatetext=2014-10-18 12:23:23 Macromedia.FlashPlayer.Cookies: [SBI $6AA61750] Text file (File, nothing done) C:\Users\****\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YDEDDLKL\mpsnare.iesnare.com\stm.sol Properties.size=79 Properties.md5=70F7C0A12A1893618B576A5454E7CF9F Properties.filedate=1413806323 Properties.filedatetext=2014-10-20 12:58:43 Macromedia.FlashPlayer.Cookies: [SBI $6AA61750] Text file (File, nothing done) C:\Users\****\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YDEDDLKL\s.tbcdn.cn\alipay.com.sol Properties.size=188 Properties.md5=952CAD0B05AECE1B9128A28B8F98F7E8 Properties.filedate=1404150984 Properties.filedatetext=2014-06-30 18:56:23 Macromedia.FlashPlayer.Cookies: [SBI $6AA61750] Text file (File, nothing done) C:\Users\****\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YDEDDLKL\s.uicdn.com\com.longtailvideo.jwplayer.sol Properties.size=65 Properties.md5=936C3E51AB948D41701A7F0D13B2A2AA Properties.filedate=1415924815 Properties.filedatetext=2014-11-14 01:26:54 Macromedia.FlashPlayer.Cookies: [SBI $6AA61750] Text file (File, nothing done) C:\Users\****\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YDEDDLKL\s.ytimg.com\soundData.sol Properties.size=58 Properties.md5=CC7402771A11BE58BC7197CCADBD3223 Properties.filedate=1419802756 Properties.filedatetext=2014-12-28 22:39:15 Macromedia.FlashPlayer.Cookies: [SBI $6AA61750] Text file (File, nothing done) C:\Users\****\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YDEDDLKL\s.ytimg.com\subtitlesModuleData.sol Properties.size=63 Properties.md5=9DE49710739F75999D66A47B6EE1A8A8 Properties.filedate=1416566492 Properties.filedatetext=2014-11-21 11:41:32 Macromedia.FlashPlayer.Cookies: [SBI $6AA61750] Text file (File, nothing done) C:\Users\****\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YDEDDLKL\ssl.hurra.com\restore.hurra.com.sol Properties.size=266 Properties.md5=1F1A25CBE8427C04BFBC79CB35BFBD46 Properties.filedate=1410620595 Properties.filedatetext=2014-09-13 16:03:15 Macromedia.FlashPlayer.Cookies: [SBI $6AA61750] Text file (File, nothing done) C:\Users\****\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YDEDDLKL\static.flashx.tv\analytics.sol Properties.size=351 Properties.md5=8B8D41E2350AA1001AB2074EE750130F Properties.filedate=1399239704 Properties.filedatetext=2014-05-04 22:41:43 Macromedia.FlashPlayer.Cookies: [SBI $6AA61750] Text file (File, nothing done) C:\Users\****\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YDEDDLKL\static.flashx.tv\com.nuevoplayer.sol Properties.size=47 Properties.md5=404C77EFB65EE6C561A141CAC0FAA281 Properties.filedate=1399237820 Properties.filedatetext=2014-05-04 22:10:19 Macromedia.FlashPlayer.Cookies: [SBI $6AA61750] Text file (File, nothing done) C:\Users\****\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YDEDDLKL\static1.dmcdn.net\com.dm.player.sol Properties.size=317 Properties.md5=1D69E347E508F655344186E8481227CE Properties.filedate=1417108853 Properties.filedatetext=2014-11-27 18:20:52 Macromedia.FlashPlayer.Cookies: [SBI $6AA61750] Text file (File, nothing done) C:\Users\****\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YDEDDLKL\stream4k.to\com.jeroenwijering.sol Properties.size=50 Properties.md5=5E525362BB1645ABA6A6F55667A464DF Properties.filedate=1399136666 Properties.filedatetext=2014-05-03 18:04:26 Macromedia.FlashPlayer.Cookies: [SBI $6AA61750] Text file (File, nothing done) C:\Users\****\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YDEDDLKL\streamcloud.eu\com.longtailvideo.jwplayer.sol Properties.size=65 Properties.md5=89560B7ABA804BA619126AB95BC2CE6B Properties.filedate=1417873029 Properties.filedatetext=2014-12-06 14:37:09 Macromedia.FlashPlayer.Cookies: [SBI $6AA61750] Text file (File, nothing done) C:\Users\****\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YDEDDLKL\www.avera.org\analytics.sol Properties.size=419 Properties.md5=957A1BB3244CB6BFF83F442A856D8584 Properties.filedate=1403291640 Properties.filedatetext=2014-06-20 20:14:00 Macromedia.FlashPlayer.Cookies: [SBI $6AA61750] Text file (File, nothing done) C:\Users\****\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YDEDDLKL\www.hornoxe.com\com.jeroenwijering.sol Properties.size=50 Properties.md5=FB578DC67CE113BF1A0F7A850948AB55 Properties.filedate=1418640370 Properties.filedatetext=2014-12-15 11:46:09 Macromedia.FlashPlayer.Cookies: [SBI $6AA61750] Text file (File, nothing done) C:\Users\****\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YDEDDLKL\www.paypalobjects.com\paypalLSO.sol Properties.size=111 Properties.md5=0E65E0D15A5DF2E223EF788D418C9941 Properties.filedate=1417794169 Properties.filedatetext=2014-12-05 16:42:49 Macromedia.FlashPlayer.Cookies: [SBI $6AA61750] Text file (File, nothing done) C:\Users\****\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YDEDDLKL\www.paypalobjects.com\ppLsoTest.sol Properties.size=48 Properties.md5=74EE4375686A2069414EEF13E7B62789 Properties.filedate=1417794132 Properties.filedatetext=2014-12-05 16:42:12 Macromedia.FlashPlayer.Cookies: [SBI $6AA61750] Text file (File, nothing done) C:\Users\****\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YDEDDLKL\www.radioeins.de\com.longtailvideo.jwplayer.sol Properties.size=55 Properties.md5=3E32B09E3492C5BA32BF871057EF5404 Properties.filedate=1406273869 Properties.filedatetext=2014-07-25 08:37:48 Macromedia.FlashPlayer.Cookies: [SBI $1EF45977] Text file (File, nothing done) C:\Users\****\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YDEDDLKL\aa.online-metrix.net\fpc.swf\session.sol Properties.size=76 Properties.md5=1EB451838B0DFE97270C55E1F702D833 Properties.filedate=1417876023 Properties.filedatetext=2014-12-06 15:27:03 Macromedia.FlashPlayer.Cookies: [SBI $1EF45977] Text file (File, nothing done) C:\Users\****\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YDEDDLKL\jsctool.com\d.swf\d.sol Properties.size=72 Properties.md5=300A918AAD4D403445EF1773F24F36A0 Properties.filedate=1398410969 Properties.filedatetext=2014-04-25 08:29:28 Macromedia.FlashPlayer.Cookies: [SBI $1EF45977] Text file (File, nothing done) C:\Users\****\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YDEDDLKL\skype.com\#ui\preferences.sol Properties.size=233 Properties.md5=B9636886B2D7F98AB3BBA8888AA0548F Properties.filedate=1419453464 Properties.filedatetext=2014-12-24 21:37:43 Macromedia.FlashPlayer.Cookies: [SBI $1EF45977] Text file (File, nothing done) C:\Users\****\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YDEDDLKL\static.sockshare.com\video_player.swf\org.flowplayer.sol Properties.size=60 Properties.md5=11B628CEABE61125FA85414F1AC515EA Properties.filedate=1411141071 Properties.filedatetext=2014-09-19 16:37:51 Macromedia.FlashPlayer.Cookies: [SBI $5555F3D7] Text file (File, nothing done) C:\Users\****\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YDEDDLKL\bilder.rtl.de\flash\david09_player_2012.swf\rtl.sol Properties.size=35 Properties.md5=F240BC8ED3BD00819E900DB730F278F4 Properties.filedate=1398773224 Properties.filedatetext=2014-04-29 13:07:03 Macromedia.FlashPlayer.Cookies: [SBI $5555F3D7] Text file (File, nothing done) C:\Users\****\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YDEDDLKL\bilder.rtl.de\flash\david09_player_2012.swf\rtlbw.sol Properties.size=38 Properties.md5=B5DFC13AB0F74077B033F05000F7CAC7 Properties.filedate=1398773313 Properties.filedatetext=2014-04-29 13:08:33 Macromedia.FlashPlayer.Cookies: [SBI $5555F3D7] Text file (File, nothing done) C:\Users\****\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YDEDDLKL\bilder.rtl.de\flash\david09_player_2012.swf\userinfo6.sol Properties.size=51 Properties.md5=520BD34D2F27A4EFDEACB1EE4B3F9846 Properties.filedate=1398773313 Properties.filedatetext=2014-04-29 13:08:33 Macromedia.FlashPlayer.Cookies: [SBI $5555F3D7] Text file (File, nothing done) C:\Users\****\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YDEDDLKL\bilder.rtl.de\flash\david09_player_2014.swf\rtl.sol Properties.size=35 Properties.md5=F240BC8ED3BD00819E900DB730F278F4 Properties.filedate=1404828015 Properties.filedatetext=2014-07-08 15:00:14 Macromedia.FlashPlayer.Cookies: [SBI $5555F3D7] Text file (File, nothing done) C:\Users\****\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YDEDDLKL\bilder.rtl.de\flash\david09_player_2014.swf\rtlbw.sol Properties.size=38 Properties.md5=B5DFC13AB0F74077B033F05000F7CAC7 Properties.filedate=1404828627 Properties.filedatetext=2014-07-08 15:10:26 Macromedia.FlashPlayer.Cookies: [SBI $5555F3D7] Text file (File, nothing done) C:\Users\****\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YDEDDLKL\bilder.rtl.de\flash\david09_player_2014.swf\userinfo6.sol Properties.size=50 Properties.md5=E97720A14BEC3F8D3111E2FA38F97B4E Properties.filedate=1404828627 Properties.filedatetext=2014-07-08 15:10:27 Macromedia.FlashPlayer.Cookies: [SBI $5555F3D7] Text file (File, nothing done) C:\Users\****\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YDEDDLKL\cdn.static-fra.de\now\vodplayer.liveab.swf\rtl.sol Properties.size=35 Properties.md5=F240BC8ED3BD00819E900DB730F278F4 Properties.filedate=1398942915 Properties.filedatetext=2014-05-01 12:15:14 Macromedia.FlashPlayer.Cookies: [SBI $5555F3D7] Text file (File, nothing done) C:\Users\****\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YDEDDLKL\cdn.static-fra.de\now\vodplayer.liveab.swf\rtlbw.sol Properties.size=38 Properties.md5=B5DFC13AB0F74077B033F05000F7CAC7 Properties.filedate=1398945466 Properties.filedatetext=2014-05-01 12:57:45 Macromedia.FlashPlayer.Cookies: [SBI $5555F3D7] Text file (File, nothing done) C:\Users\****\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YDEDDLKL\cdn.static-fra.de\now\vodplayer.liveab.swf\userinfo6.sol Properties.size=48 Properties.md5=3ECC7D786BD9698A4D978F72BB992F9B Properties.filedate=1398945466 Properties.filedatetext=2014-05-01 12:57:46 Macromedia.FlashPlayer.Cookies: [SBI $5555F3D7] Text file (File, nothing done) C:\Users\****\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YDEDDLKL\cdn.static-fra.de\now\vodplayer.swf\rtl.sol Properties.size=42 Properties.md5=3019293E97D93141F4BD7049E0DF59CF Properties.filedate=1417989742 Properties.filedatetext=2014-12-07 23:02:21 Macromedia.FlashPlayer.Cookies: [SBI $5555F3D7] Text file (File, nothing done) C:\Users\****\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YDEDDLKL\cdn.static-fra.de\now\vodplayer.swf\rtlbw.sol Properties.size=38 Properties.md5=B5DFC13AB0F74077B033F05000F7CAC7 Properties.filedate=1398946142 Properties.filedatetext=2014-05-01 13:09:01 Macromedia.FlashPlayer.Cookies: [SBI $5555F3D7] Text file (File, nothing done) C:\Users\****\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YDEDDLKL\cdn.static-fra.de\now\vodplayer.swf\userinfo6.sol Properties.size=51 Properties.md5=6E239F8B57441C0F8EBB5DD2541C3E96 Properties.filedate=1398946142 Properties.filedatetext=2014-05-01 13:09:01 Macromedia.FlashPlayer.Cookies: [SBI $5555F3D7] Text file (File, nothing done) C:\Users\****\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YDEDDLKL\cdn.zopim.com\swf\ZClientController2.swf\ZopConfig.sol Properties.size=84 Properties.md5=9E72427D3D3B83BB4FBBFFA65D051B05 Properties.filedate=1404150806 Properties.filedatetext=2014-06-30 18:53:25 Macromedia.FlashPlayer.Cookies: [SBI $5555F3D7] Text file (File, nothing done) C:\Users\****\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YDEDDLKL\embed.movshare.net\player\cloudplayer.swf\novaPlayer.sol Properties.size=78 Properties.md5=AB7E2AEB6316B6433473B7487861814D Properties.filedate=1416073188 Properties.filedatetext=2014-11-15 18:39:48 Macromedia.FlashPlayer.Cookies: [SBI $5555F3D7] Text file (File, nothing done) C:\Users\****\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YDEDDLKL\embed.nowvideo.sx\player\cloudplayer.swf\novaPlayer.sol Properties.size=78 Properties.md5=AF70A852EF675AC2CDD33586A7E38482 Properties.filedate=1419738472 Properties.filedatetext=2014-12-28 04:47:51 Macromedia.FlashPlayer.Cookies: [SBI $5555F3D7] Text file (File, nothing done) C:\Users\****\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YDEDDLKL\play.snacktv.de\player\videoplayer.swf\SnackTV.sol Properties.size=79 Properties.md5=9A5978BE510E9FD197E8F493DED3B477 Properties.filedate=1399373890 Properties.filedatetext=2014-05-06 11:58:10 Macromedia.FlashPlayer.Cookies: [SBI $5555F3D7] Text file (File, nothing done) C:\Users\****\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YDEDDLKL\play.snacktv.de\player\videoplayer_psd.swf\SnackTV.sol Properties.size=79 Properties.md5=BD1E76505EC33FB700D3BDA0275FA22B Properties.filedate=1410599110 Properties.filedatetext=2014-09-13 10:05:10 Macromedia.FlashPlayer.Cookies: [SBI $5555F3D7] Text file (File, nothing done) C:\Users\****\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YDEDDLKL\www.divxstage.to\player\cloudplayer.swf\novaPlayer.sol Properties.size=78 Properties.md5=1066A3561F35F0F3A56D438CD9117494 Properties.filedate=1414968592 Properties.filedatetext=2014-11-02 23:49:52 Macromedia.FlashPlayer.Cookies: [SBI $5555F3D7] Text file (File, nothing done) C:\Users\****\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YDEDDLKL\www.movshare.net\player\cloudplayer.swf\novaPlayer.sol Properties.size=78 Properties.md5=CA63C2D1BD1695F258D6BBECDBC767F4 Properties.filedate=1414223085 Properties.filedatetext=2014-10-25 08:44:44 Macromedia.FlashPlayer.Cookies: [SBI $5555F3D7] Text file (File, nothing done) C:\Users\****\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YDEDDLKL\www.musicline.de\player_flash_banner\player.swf\userPrefs.sol Properties.size=54 Properties.md5=0A09874BC558DC13F12F90FB3DFE49FC Properties.filedate=1413565861 Properties.filedatetext=2014-10-17 18:11:00 Macromedia.FlashPlayer.Cookies: [SBI $5555F3D7] Text file (File, nothing done) C:\Users\****\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YDEDDLKL\www.nowvideo.sx\player\cloudplayer.swf\novaPlayer.sol Properties.size=78 Properties.md5=5256431468ADDF6E20270E8A35C34BE1 Properties.filedate=1413866903 Properties.filedatetext=2014-10-21 05:48:23 Macromedia.FlashPlayer.Cookies: [SBI $5555F3D7] Text file (File, nothing done) C:\Users\****\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YDEDDLKL\www.tim-maelzer.info\player\vPlayer.swf\splayTvID5.sol Properties.size=60 Properties.md5=89C73D111D6AE9DDCD31CB349DBAF4F8 Properties.filedate=1403359699 Properties.filedatetext=2014-06-21 15:08:19 Internet Explorer: [SBI $1E8157BE] Typed URL list (Registry Key, nothing done) HKEY_USERS\S-1-5-21-1902139459-1109185879-2378804310-1000\Software\Microsoft\Internet Explorer\TypedURLs Internet Explorer: [SBI $FF589D0C] Download directory (Registry Change, nothing done) HKEY_USERS\S-1-5-21-1902139459-1109185879-2378804310-1000\Software\Microsoft\Internet Explorer\Download Directory Internet Explorer: [SBI $0BC7B918] User agent (Registry Change, nothing done) HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent Internet Explorer: [SBI $0BC7B918] User agent (Registry Change, nothing done) HKEY_USERS\S-1-5-19\Software\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent Internet Explorer: [SBI $0BC7B918] User agent (Registry Change, nothing done) HKEY_USERS\S-1-5-20\Software\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent Internet Explorer: [SBI $0BC7B918] User agent (Registry Change, nothing done) HKEY_USERS\S-1-5-21-1902139459-1109185879-2378804310-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent Internet Explorer: [SBI $0BC7B918] User agent (Registry Change, nothing done) HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent MS Management Console: [SBI $ECD50EAD] Recent command list (Registry Key, nothing done) HKEY_USERS\S-1-5-21-1902139459-1109185879-2378804310-1000\Software\Microsoft\Microsoft Management Console\Recent File List MS Media Player: [SBI $5C51E349] Client ID (Registry Change, nothing done) HKEY_USERS\S-1-5-21-1902139459-1109185879-2378804310-1000\Software\Microsoft\MediaPlayer\Player\Settings\Client ID MS Direct3D: [SBI $C2A44980] Most recent application (Registry Change, nothing done) HKEY_USERS\.DEFAULT\Software\Microsoft\Direct3D\MostRecentApplication\Name MS Direct3D: [SBI $C2A44980] Most recent application (Registry Change, nothing done) HKEY_USERS\S-1-5-21-1902139459-1109185879-2378804310-1000\Software\Microsoft\Direct3D\MostRecentApplication\Name MS Direct3D: [SBI $C2A44980] Most recent application (Registry Change, nothing done) HKEY_USERS\S-1-5-18\Software\Microsoft\Direct3D\MostRecentApplication\Name MS DirectDraw: [SBI $EB49D5AF] Most recent application (Registry Change, nothing done) HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\DirectDraw\MostRecentApplication\Name MS DirectDraw: [SBI $EB49D5AF] Most recent application (Registry Change, nothing done) HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\DirectDraw\MostRecentApplication\Name MS Paint: [SBI $07867C39] Recent file list (Registry Key, nothing done) HKEY_USERS\S-1-5-21-1902139459-1109185879-2378804310-1000\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\Recent File List MS Wordpad: [SBI $4C02334D] Recent file list (Registry Key, nothing done) HKEY_USERS\S-1-5-21-1902139459-1109185879-2378804310-1000\Software\Microsoft\Windows\CurrentVersion\Applets\Wordpad\Recent File List Windows.OpenWith: [SBI $F7204896] Open with list - .AVI extension (Registry Key, nothing done) HKEY_USERS\S-1-5-21-1902139459-1109185879-2378804310-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.AVI\OpenWithList Windows.OpenWith: [SBI $A1C94E79] Open with list - .BMP extension (Registry Key, nothing done) HKEY_USERS\S-1-5-21-1902139459-1109185879-2378804310-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.BMP\OpenWithList Windows.OpenWith: [SBI $C92C6763] Open with list - .BUP extension (Registry Key, nothing done) HKEY_USERS\S-1-5-21-1902139459-1109185879-2378804310-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.BUP\OpenWithList Windows.OpenWith: [SBI $9E8D5C8A] Open with list - .CDA extension (Registry Key, nothing done) HKEY_USERS\S-1-5-21-1902139459-1109185879-2378804310-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.CDA\OpenWithList Windows Explorer: [SBI $A2C7B3CD] Recent wallpaper list (Registry Key, nothing done) HKEY_USERS\S-1-5-21-1902139459-1109185879-2378804310-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\Wallpaper\MRU Windows Explorer: [SBI $AA0766B5] Stream history (Registry Key, nothing done) HKEY_USERS\S-1-5-21-1902139459-1109185879-2378804310-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\StreamMRU Windows Explorer: [SBI $D20DA0AD] Recent file global history (Registry Key, nothing done) HKEY_USERS\S-1-5-21-1902139459-1109185879-2378804310-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs Windows Media SDK: [SBI $37AAEDE6] Computer name (Registry Change, nothing done) HKEY_USERS\.DEFAULT\Software\Microsoft\Windows Media\WMSDK\General\ComputerName Windows Media SDK: [SBI $37AAEDE6] Computer name (Registry Change, nothing done) HKEY_USERS\S-1-5-20\Software\Microsoft\Windows Media\WMSDK\General\ComputerName Windows Media SDK: [SBI $37AAEDE6] Computer name (Registry Change, nothing done) HKEY_USERS\S-1-5-21-1902139459-1109185879-2378804310-1000\Software\Microsoft\Windows Media\WMSDK\General\ComputerName Windows Media SDK: [SBI $37AAEDE6] Computer name (Registry Change, nothing done) HKEY_USERS\S-1-5-18\Software\Microsoft\Windows Media\WMSDK\General\ComputerName Windows Media SDK: [SBI $CAA58B6E] Unique ID (Registry Change, nothing done) HKEY_USERS\.DEFAULT\Software\Microsoft\Windows Media\WMSDK\General\UniqueID Windows Media SDK: [SBI $CAA58B6E] Unique ID (Registry Change, nothing done) HKEY_USERS\S-1-5-20\Software\Microsoft\Windows Media\WMSDK\General\UniqueID Windows Media SDK: [SBI $CAA58B6E] Unique ID (Registry Change, nothing done) HKEY_USERS\S-1-5-21-1902139459-1109185879-2378804310-1000\Software\Microsoft\Windows Media\WMSDK\General\UniqueID Windows Media SDK: [SBI $CAA58B6E] Unique ID (Registry Change, nothing done) HKEY_USERS\S-1-5-18\Software\Microsoft\Windows Media\WMSDK\General\UniqueID Windows Media SDK: [SBI $BACCD0DA] Volume serial number (Registry Value, nothing done) HKEY_USERS\.DEFAULT\Software\Microsoft\Windows Media\WMSDK\General\VolumeSerialNumber Windows Media SDK: [SBI $BACCD0DA] Volume serial number (Registry Value, nothing done) HKEY_USERS\S-1-5-20\Software\Microsoft\Windows Media\WMSDK\General\VolumeSerialNumber Windows Media SDK: [SBI $BACCD0DA] Volume serial number (Registry Value, nothing done) HKEY_USERS\S-1-5-21-1902139459-1109185879-2378804310-1000\Software\Microsoft\Windows Media\WMSDK\General\VolumeSerialNumber Windows Media SDK: [SBI $BACCD0DA] Volume serial number (Registry Value, nothing done) HKEY_USERS\S-1-5-18\Software\Microsoft\Windows Media\WMSDK\General\VolumeSerialNumber Cookie: [SBI $49804B54] Browser: Cookie (65) (Browser: Cookie, nothing done) Cache: [SBI $49804B54] Browser: Cache (148) (Browser: Cache, nothing done) Verlauf: [SBI $49804B54] Browser: History (46) (Browser: History, nothing done) Cookie: [SBI $49804B54] Browser: Cookie (2415) (Browser: Cookie, nothing done) --- Spybot - Search & Destroy version: 2.4.40.131 DLL (build: 20140425) --- 2014-06-24 blindman.exe (2.4.40.151) 2014-06-24 explorer.exe (2.4.40.181) 2014-06-24 SDBootCD.exe (2.4.40.109) 2014-06-24 SDCleaner.exe (2.4.40.110) 2014-06-24 SDDelFile.exe (2.4.40.94) 2013-06-18 SDDisableProxy.exe 2014-06-24 SDFiles.exe (2.4.40.135) 2014-06-24 SDFileScanHelper.exe (2.4.40.1) 2014-06-24 SDFSSvc.exe (2.4.40.217) 2014-06-24 SDHelp.exe (2.4.40.1) 2014-04-25 SDHookHelper.exe (2.3.39.2) 2014-04-25 SDHookInst32.exe (2.3.39.2) 2014-04-25 SDHookInst64.exe (2.3.39.2) 2014-06-24 SDImmunize.exe (2.4.40.130) 2014-06-24 SDLogReport.exe (2.4.40.107) 2014-06-24 SDOnAccess.exe (2.4.40.11) 2014-06-24 SDPESetup.exe (2.4.40.3) 2014-06-24 SDPEStart.exe (2.4.40.86) 2014-06-24 SDPhoneScan.exe (2.4.40.28) 2014-06-24 SDPRE.exe (2.4.40.22) 2014-06-24 SDPrepPos.exe (2.4.40.15) 2014-06-24 SDQuarantine.exe (2.4.40.103) 2014-06-24 SDRootAlyzer.exe (2.4.40.116) 2014-06-24 SDSBIEdit.exe (2.4.40.39) 2014-06-24 SDScan.exe (2.4.40.181) 2014-06-24 SDScript.exe (2.4.40.54) 2014-06-24 SDSettings.exe (2.4.40.139) 2014-06-24 SDShell.exe (2.4.40.2) 2014-06-24 SDShred.exe (2.4.40.108) 2014-06-24 SDSysRepair.exe (2.4.40.102) 2014-06-24 SDTools.exe (2.4.40.157) 2014-06-24 SDTray.exe (2.4.40.129) 2014-06-27 SDUpdate.exe (2.4.40.94) 2014-06-27 SDUpdSvc.exe (2.4.40.77) 2014-06-24 SDWelcome.exe (2.4.40.130) 2014-04-25 SDWSCSvc.exe (2.3.39.2) 2014-05-20 spybotsd2-install-bdcore-update.exe (2.3.39.0) 2014-07-31 spybotsd2-translation-esx.exe 2013-06-19 spybotsd2-translation-frx.exe 2014-08-25 spybotsd2-translation-hux2.exe 2014-10-01 spybotsd2-translation-nlx2.exe 2014-11-05 spybotsd2-translation-ukx.exe 2014-12-31 unins000.exe (51.1052.0.0) 1999-12-02 xcacls.exe 2012-08-23 borlndmm.dll (10.0.2288.42451) 2012-09-05 DelZip190.dll (1.9.0.107) 2012-09-10 libeay32.dll (1.0.0.4) 2012-09-10 libssl32.dll (1.0.0.4) 2014-04-25 NotificationSpreader.dll 2014-06-24 SDAdvancedCheckLibrary.dll (2.4.40.98) 2014-04-25 SDAV.dll 2014-06-24 SDECon32.dll (2.4.40.114) 2014-06-24 SDECon64.dll (2.3.39.113) 2014-06-24 SDEvents.dll (2.4.40.2) 2014-06-24 SDFileScanLibrary.dll (2.4.40.14) 2014-04-25 SDHook32.dll (2.3.39.2) 2014-04-25 SDHook64.dll (2.3.39.2) 2014-06-24 SDImmunizeLibrary.dll (2.4.40.2) 2014-06-24 SDLicense.dll (2.4.40.0) 2014-06-24 SDLists.dll (2.4.40.4) 2014-06-24 SDResources.dll (2.4.40.7) 2014-06-24 SDScanLibrary.dll (2.4.40.131) 2014-06-24 SDTasks.dll (2.4.40.15) 2014-06-24 SDWinLogon.dll (2.4.40.0) 2012-08-23 sqlite3.dll 2012-09-10 ssleay32.dll (1.0.0.4) 2014-06-24 Tools.dll (2.4.40.36) 2014-03-05 Includes\Adware-000.sbi (*) 2014-01-08 Includes\Adware-001.sbi (*) 2014-12-31 Includes\Adware-C.sbi (*) 2014-01-13 Includes\Adware.sbi (*) 2014-01-13 Includes\AdwareC.sbi (*) 2010-08-13 Includes\Cookies.sbi (*) 2014-11-14 Includes\Dialer-000.sbi (*) 2014-11-14 Includes\Dialer-001.sbi (*) 2014-01-08 Includes\Dialer-C.sbi (*) 2014-01-13 Includes\Dialer.sbi (*) 2014-01-13 Includes\DialerC.sbi (*) 2014-01-09 Includes\Fraud-000.sbi (*) 2014-01-09 Includes\Fraud-001.sbi (*) 2014-03-31 Includes\Fraud-002.sbi (*) 2014-01-09 Includes\Fraud-003.sbi (*) 2012-11-14 Includes\HeavyDuty.sbi (*) 2014-11-14 Includes\Hijackers-000.sbi (*) 2014-11-14 Includes\Hijackers-001.sbi (*) 2014-01-08 Includes\Hijackers-C.sbi (*) 2014-01-13 Includes\Hijackers.sbi (*) 2014-01-13 Includes\HijackersC.sbi (*) 2014-01-08 Includes\iPhone-000.sbi (*) 2014-01-08 Includes\iPhone.sbi (*) 2014-11-14 Includes\Keyloggers-000.sbi (*) 2014-09-24 Includes\Keyloggers-C.sbi (*) 2014-01-13 Includes\Keyloggers.sbi (*) 2014-01-13 Includes\KeyloggersC.sbi (*) 2014-11-14 Includes\Malware-000.sbi (*) 2014-11-14 Includes\Malware-001.sbi (*) 2014-11-14 Includes\Malware-002.sbi (*) 2014-11-14 Includes\Malware-003.sbi (*) 2014-11-14 Includes\Malware-004.sbi (*) 2014-11-14 Includes\Malware-005.sbi (*) 2014-02-26 Includes\Malware-006.sbi (*) 2014-01-09 Includes\Malware-007.sbi (*) 2014-12-31 Includes\Malware-C.sbi (*) 2014-01-13 Includes\Malware.sbi (*) 2013-12-23 Includes\MalwareC.sbi (*) 2014-11-14 Includes\PUPS-000.sbi (*) 2014-01-15 Includes\PUPS-001.sbi (*) 2014-01-15 Includes\PUPS-002.sbi (*) 2014-12-31 Includes\PUPS-C.sbi (*) 2012-11-14 Includes\PUPS.sbi (*) 2014-01-07 Includes\PUPSC.sbi (*) 2014-01-08 Includes\Security-000.sbi (*) 2014-01-08 Includes\Security-C.sbi (*) 2014-01-21 Includes\Security.sbi (*) 2014-01-21 Includes\SecurityC.sbi (*) 2014-11-14 Includes\Spyware-000.sbi (*) 2014-12-10 Includes\Spyware-001.sbi (*) 2014-12-31 Includes\Spyware-C.sbi (*) 2014-01-21 Includes\Spyware.sbi (*) 2014-01-21 Includes\SpywareC.sbi (*) 2011-06-07 Includes\Tracks.sbi (*) 2012-11-19 Includes\Tracks.uti (*) 2014-01-15 Includes\Trojans-000.sbi (*) 2014-01-15 Includes\Trojans-001.sbi (*) 2014-11-14 Includes\Trojans-002.sbi (*) 2014-01-15 Includes\Trojans-003.sbi (*) 2014-01-15 Includes\Trojans-004.sbi (*) 2014-03-19 Includes\Trojans-005.sbi (*) 2014-07-09 Includes\Trojans-006.sbi (*) 2014-01-15 Includes\Trojans-007.sbi (*) 2014-07-09 Includes\Trojans-008.sbi (*) 2014-07-09 Includes\Trojans-009.sbi (*) 2014-12-31 Includes\Trojans-C.sbi (*) 2014-01-15 Includes\Trojans-OG-000.sbi (*) 2014-01-15 Includes\Trojans-TD-000.sbi (*) 2014-01-15 Includes\Trojans-VM-000.sbi (*) 2014-01-15 Includes\Trojans-VM-001.sbi (*) 2014-01-15 Includes\Trojans-VM-002.sbi (*) 2014-01-15 Includes\Trojans-VM-003.sbi (*) 2014-01-15 Includes\Trojans-VM-004.sbi (*) 2014-01-15 Includes\Trojans-VM-005.sbi (*) 2014-01-15 Includes\Trojans-VM-006.sbi (*) 2014-01-15 Includes\Trojans-VM-007.sbi (*) 2014-01-15 Includes\Trojans-VM-008.sbi (*) 2014-01-15 Includes\Trojans-VM-009.sbi (*) 2014-01-15 Includes\Trojans-VM-010.sbi (*) 2014-01-15 Includes\Trojans-VM-011.sbi (*) 2014-01-15 Includes\Trojans-VM-012.sbi (*) 2014-01-15 Includes\Trojans-VM-013.sbi (*) 2014-01-15 Includes\Trojans-VM-014.sbi (*) 2014-01-15 Includes\Trojans-VM-015.sbi (*) 2014-01-15 Includes\Trojans-VM-016.sbi (*) 2014-01-15 Includes\Trojans-VM-017.sbi (*) 2014-01-15 Includes\Trojans-VM-018.sbi (*) 2014-01-15 Includes\Trojans-VM-019.sbi (*) 2014-01-15 Includes\Trojans-VM-020.sbi (*) 2014-01-15 Includes\Trojans-VM-021.sbi (*) 2014-01-15 Includes\Trojans-VM-022.sbi (*) 2014-01-15 Includes\Trojans-VM-023.sbi (*) 2014-01-15 Includes\Trojans-VM-024.sbi (*) 2014-01-15 Includes\Trojans-ZB-000.sbi (*) 2014-01-15 Includes\Trojans-ZL-000.sbi (*) 2014-01-09 Includes\Trojans.sbi (*) 2014-01-16 Includes\TrojansC-01.sbi (*) 2014-01-16 Includes\TrojansC-02.sbi (*) 2014-01-16 Includes\TrojansC-03.sbi (*) 2014-01-16 Includes\TrojansC-04.sbi (*) 2014-01-16 Includes\TrojansC-05.sbi (*) 2014-01-09 Includes\TrojansC.sbi (*) Code:
ATTFilter Malwarebytes Anti-Malware www.malwarebytes.org Suchlauf Datum: 30.12.2014 Suchlauf-Zeit: 16:26:21 Logdatei: Malewarebytes.txt Administrator: Ja Version: 2.00.4.1028 Malware Datenbank: v2014.12.30.05 Rootkit Datenbank: v2014.12.29.02 Lizenz: Testversion Malware Schutz: Aktiviert Bösartiger Webseiten Schutz: Aktiviert Selbstschutz: Deaktiviert Betriebssystem: Windows 7 Service Pack 1 CPU: x64 Dateisystem: NTFS Benutzer: ***** Suchlauf-Art: Bedrohungs-Suchlauf Ergebnis: Abgeschlossen Durchsuchte Objekte: 369964 Verstrichene Zeit: 29 Min, 5 Sek Speicher: Aktiviert Autostart: Aktiviert Dateisystem: Aktiviert Archive: Aktiviert Rootkits: Deaktiviert Heuristik: Aktiviert PUP: Aktiviert PUM: Aktiviert Prozesse: 0 (Keine schädliche Elemente erkannt) Module: 0 (Keine schädliche Elemente erkannt) Registrierungsschlüssel: 1 Trojan.Agent.ED, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\social_network, In Quarantäne, [926bd3952d4f77bf3ebe9a6241c030d0], Registrierungswerte: 2 Trojan.Agent, HKU\S-1-5-21-1902139459-1109185879-2378804310-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN|title_clue, C:\Users\*****\AppData\Local\Temp\Title_nerve\title_fail.exe, Löschen bei Neustart, [996430388eee1323ffec283be917e31d] Trojan.Agent, HKU\S-1-5-21-1902139459-1109185879-2378804310-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUNONCE|title_clue, C:\Users\*****\AppData\Local\Temp\Title_nerve\title_fail.exe, Löschen bei Neustart, [996430388eee1323ffec283be917e31d] Registrierungsdaten: 0 (Keine schädliche Elemente erkannt) Ordner: 5 PUP.Optional.VPLMedia.A, C:\Users\*****\AppData\Roaming\player, In Quarantäne, [d4293632a3d94de99c47199d5aaa7d83], PUP.Optional.VPLMedia.A, C:\Users\*****\AppData\Roaming\player\images, In Quarantäne, [d4293632a3d94de99c47199d5aaa7d83], PUP.Optional.Delta.A, C:\Users\*****\AppData\Local\Temp\mt_ffx\Delta, In Quarantäne, [8b72c5a38defe45280857ab010f36e92], PUP.Optional.Delta.A, C:\Users\*****\AppData\Local\Temp\mt_ffx\Delta\delta, In Quarantäne, [8b72c5a38defe45280857ab010f36e92], PUP.Optional.Delta.A, C:\Users\*****\AppData\Local\Temp\mt_ffx\Delta\delta\1.8.21.0, In Quarantäne, [8b72c5a38defe45280857ab010f36e92], Dateien: 114 Trojan.Agent, C:\Users\*****\AppData\Local\Temp\Title_nerve\title_fail.exe, Löschen bei Neustart, [996430388eee1323ffec283be917e31d], Trojan.Agent.ED, C:\Windows\assembly\GAC_32\Policy.1.0.Microsoft.Interop.Security.AzRoles\6.1.7600.16385__31bf3856ad364e35\genre\check_in.exe, In Quarantäne, [926bd3952d4f77bf3ebe9a6241c030d0], Backdoor.Agent.STLGen, C:\Users\*****\AppData\Roaming\Puxwcycel\gaosuhxz.exe, In Quarantäne, [c23b99cffe7ef640fb3a05f7f809c13f], Backdoor.Agent.STLGen, C:\Users\*****\AppData\Roaming\Qijii\oefqsuhxz.exe, In Quarantäne, [e01d8ddbe894c67040f5bf3d7d84ac54], Backdoor.Agent.STL, C:\Users\*****\AppData\Roaming\Title-amazing\title-course.exe, In Quarantäne, [619cd0983a4260d612447b85c33fda26], Backdoor.Agent.STLGen, C:\Users\*****\AppData\Roaming\Title-breast\titlefish.exe, In Quarantäne, [e81520482b510432f441d329fd04c63a], Backdoor.Agent.STLGen, C:\Users\*****\AppData\Roaming\Title-compare\title_nail.exe, In Quarantäne, [07f643255329a98d1b1aa359e21fc63a], Backdoor.Agent.STLGen, C:\Users\*****\AppData\Roaming\Title-conflict\titleeven.exe, In Quarantäne, [ad5030388cf0ae8883b21ede1be66f91], Backdoor.Agent.STLGen, C:\Users\*****\AppData\Roaming\Title-count\title-rest.exe, In Quarantäne, [e31a2840a1db61d5082de71504fd8779], Backdoor.Agent.STLGen, C:\Users\*****\AppData\Roaming\Title-culture\title-put.exe, In Quarantäne, [68957aeee29a7abc8baa2cd0dc25a060], Backdoor.Agent.STLGen, C:\Users\*****\AppData\Roaming\Title-has\titledish.exe, In Quarantäne, [20dd2f39c2ba1e1824116c90689927d9], Backdoor.Agent.STLGen, C:\Users\*****\AppData\Roaming\Title-investigate\title_judge.exe, In Quarantäne, [a4592e3a0b7104325ed7da220100ea16], Backdoor.Agent.STLGen, C:\Users\*****\AppData\Roaming\Title-lock\titlebottle.exe, In Quarantäne, [3bc2d4944735c472e253fefea25f18e8], Backdoor.Agent.STLGen, C:\Users\*****\AppData\Roaming\Title-shame\title-know.exe, In Quarantäne, [dc21521690ec3cfa94a1708c28d946ba], Backdoor.Agent.STLGen, C:\Users\*****\AppData\Roaming\Title-task\titlehold.exe, In Quarantäne, [708dc8a084f83cfad362fffd56ab42be], Backdoor.Agent.STLGen, C:\Users\*****\AppData\Roaming\Title-were\title-start.exe, In Quarantäne, [94692246c1bb5adcc76edd1f32cf659b], Backdoor.Agent.STLGen, C:\Users\*****\AppData\Roaming\Titlebone\title-closet.exe, In Quarantäne, [24d9b8b0433980b65cd9c933ca37d22e], Backdoor.Agent.STLGen, C:\Users\*****\AppData\Roaming\Titlerent\title-divide.exe, In Quarantäne, [5e9f07615e1eaf87e64f1ae2857c34cc], Backdoor.Agent.STLGen, C:\Users\*****\AppData\Roaming\Titletaste\title-face.exe, In Quarantäne, [6f8e4622cdafad89db5a31cb09f8ca36], Backdoor.Agent.STLGen, C:\Users\*****\AppData\Roaming\Title_run\title_overcome.exe, In Quarantäne, [dc21d593b6c6b1857db8817bb849d52b], Backdoor.Agent.STLGen, C:\Users\*****\AppData\Roaming\Title_salary\title-make.exe, In Quarantäne, [e31ac6a28fed88aed065c537ec1542be], Backdoor.Agent.STLGen, C:\Users\*****\AppData\Roaming\Fsqtfcb\mwmwxjyuhxz.exe, In Quarantäne, [b5482c3c3e3e88ae082d3ac2946d6a96], Backdoor.Agent.STLGen, C:\Users\*****\AppData\Roaming\Title-arm\title-rule.exe, In Quarantäne, [29d4ff69a7d50b2b54e157a5b24f936d], PUP.Optional.OneClickDownloader.A, C:\$Recycle.Bin\S-1-5-21-1902139459-1109185879-2378804310-1000\$RYMQE2I.exe, In Quarantäne, [946977f124587bbb5649c86917eaf20e], Adware.DomaIQ, C:\Users\*****\AppData\Local\Temp\DIQM\FlashPlayer_151\DomaIQ.exe, In Quarantäne, [f60786e26418a1954d0d2481fa0bac54], Adware.DomaIQ, C:\Users\*****\AppData\Local\Temp\DIQM\FlashPlayer_151\DomaIQ10.exe, In Quarantäne, [24d953150a72b87eafabadf853b29e62], Adware.DomaIQ, C:\Users\*****\AppData\Local\Temp\DIQM\FlashPlayer_151\exes.zip, In Quarantäne, [a35ae38543391b1b13476b3aaf56a65a], PUP.Optional.Babylon.A, C:\Users\*****\AppData\Local\Temp\DIQM\FlashPlayer_151\software\Delta Babylon.exe, In Quarantäne, [728b73f539435bdbef9736ef19e8dc24], Trojan.DomaIQ, C:\Users\*****\AppData\Local\Temp\DIQM\FlashPlayer_151\software\FlashPlayer.exe, In Quarantäne, [ee0f28402755c0760b3c8d11d62c9868], PUP.Optional.OptimizePro.A, C:\Users\*****\AppData\Local\Temp\DIQM\FlashPlayer_151\software\OptimizerPro.exe, In Quarantäne, [5e9fed7b7408c4721192ae702ad6c838], PUP.Optional.BabSolution.A, C:\Users\*****\AppData\Local\Temp\bus8CEE\BUSolution.dll, In Quarantäne, [2bd22d3ba0dcb5810bef54d7c33e817f], Backdoor.Agent.STLGen, C:\Users\*****\AppData\Local\Temp\Nmjufxj\inofuhxz.exe, In Quarantäne, [6598afb90b71c57185b005f70ff2e31d], Backdoor.Agent.STLGen, C:\Users\*****\AppData\Local\Temp\Nobywvfz\bzdvluhxz.exe, In Quarantäne, [9f5ef375fc809e980f26fc00b150c838], Backdoor.Agent.STLGen, C:\Users\*****\AppData\Local\Temp\Title-ask\title-trash.exe, In Quarantäne, [6796b5b36a12c373f342728a5fa2d12f], Backdoor.Agent.STL, C:\Users\*****\AppData\Local\Temp\Title-cover\title-hate.exe, In Quarantäne, [b64779efdba186b00353827efc062cd4], Backdoor.Agent.STL, C:\Users\*****\AppData\Local\Temp\Title-iron\titlereference.exe, In Quarantäne, [29d4c5a317650234253122dec53d58a8], Backdoor.Agent.STLGen, C:\Users\*****\AppData\Local\Temp\Title-pass\title-window.exe, In Quarantäne, [5aa3a2c62c50d363a293ba42976ac43c], Backdoor.Agent.STLGen, C:\Users\*****\AppData\Local\Temp\Title-price\titleare.exe, In Quarantäne, [46b72741cdaf4de9fb3af80443be2dd3], Backdoor.Agent.STLGen, C:\Users\*****\AppData\Local\Temp\Title-review\title-sky.exe, In Quarantäne, [02fb83e5027a5bdb44f1ea12b44d1fe1], Backdoor.Agent.STLGen, C:\Users\*****\AppData\Local\Temp\Title-thank\title_sentence.exe, In Quarantäne, [9b62abbd28543303d65f16e6758c6d93], Backdoor.Agent.STLGen, C:\Users\*****\AppData\Local\Temp\Title-wear\title_award.exe, In Quarantäne, [e41996d2403c79bd82b325d7a55c47b9], PUP.Optional.Babylon.A, C:\Users\*****\AppData\Local\Temp\9FD8AEDA-BAB0-7891-8F16-FBBB6D716DA9\CrxInstaller.dll, In Quarantäne, [27d6fc6c98e4e74f26887cbc728f5ba5], PUP.Optional.Delta.A, C:\Users\*****\AppData\Local\Temp\9FD8AEDA-BAB0-7891-8F16-FBBB6D716DA9\MyBabylonTB.exe, In Quarantäne, [29d470f86d0f5bdb0cdf1a759a670ff1], Backdoor.Agent.STLGen, C:\Users\*****\AppData\Local\Temp\Xirr\xylydcfuhxz.exe, In Quarantäne, [f904293f7606dd59ad88906cb948ce32], Backdoor.Agent.STLGen, C:\Users\*****\AppData\Local\Temp\Jfkayzqez\uohfuhxz.exe, In Quarantäne, [9964a6c21567ca6c59dcca3250b1bc44], Backdoor.Agent.STLGen, C:\Users\*****\AppData\Local\Temp\Titlecarpet\title-encourage.exe, In Quarantäne, [7b82b2b63f3de84ef63f0cf0e31e669a], Backdoor.Agent.STL, C:\Users\*****\AppData\Local\Temp\Titlepace\titlefault.exe, In Quarantäne, [f10c0c5c2c50d165094d8e7207fba060], Backdoor.Agent.STLGen, C:\Users\*****\AppData\Local\Temp\Titlestaff\title_spread.exe, In Quarantäne, [d9245018bcc060d6a39234c8f60b0ef2], Backdoor.Agent.STLGen, C:\Users\*****\AppData\Local\Temp\Title_impress\titleproposed.exe, In Quarantäne, [9568f1770577b18572c3fffd867b10f0], Backdoor.Agent.STLGen, C:\Users\*****\AppData\Local\Temp\Title_profit\title-provided.exe, In Quarantäne, [7a83b0b833492a0c1520db21976a20e0], Backdoor.Agent.STL, C:\Users\*****\AppData\Local\Temp\Title_scale\title_twist.exe, In Quarantäne, [ac51a7c14636f34399bd3ec29a687a86], Backdoor.Agent.STLGen, C:\Users\*****\AppData\Local\Temp\Title_site\title-organized.exe, In Quarantäne, [86771751df9d7fb7a29312ea14ed54ac], Backdoor.Agent.STLGen, C:\Users\*****\AppData\Local\Rewybcupg\wtftequhxz.exe, In Quarantäne, [f10c1a4ef785003611249a626f9251af], Backdoor.Agent.STLGen, C:\Users\*****\AppData\Local\Title-border\title-narrow.exe, In Quarantäne, [986504643646f73fa88dc6363cc53dc3], Backdoor.Agent.STLGen, C:\Users\*****\AppData\Local\Title-carry\title_concerned.exe, In Quarantäne, [dc2151175d1f87afae876b916b96a35d], Backdoor.Agent.STL, C:\Users\*****\AppData\Local\Title-excuse\titletaste.exe, In Quarantäne, [1edffb6db7c524129abcfc043dc5857b], Backdoor.Agent.STLGen, C:\Users\*****\AppData\Local\Title-mouth\title-fixed.exe, In Quarantäne, [3fbe6503b8c442f4fe37b14b08f9738d], Backdoor.Agent.STLGen, C:\Users\*****\AppData\Local\Title-passage\title-side.exe, In Quarantäne, [c33aa9bf6c10fe38cc691ae2bd443dc3], Backdoor.Agent.STLGen, C:\Users\*****\AppData\Local\Title-perform\title-hear.exe, In Quarantäne, [12eb80e82e4e082e36fff80437cad030], Backdoor.Agent.STLGen, C:\Users\*****\AppData\Local\Title-play\titletrain.exe, In Quarantäne, [7d804e1a6319aa8c2a0be5170bf6c739], Backdoor.Agent.STL, C:\Users\*****\AppData\Local\Title-sand\title-anticipate.exe, In Quarantäne, [6d905117a1dba3936aec758bd72bcb35], Backdoor.Agent.STLGen, C:\Users\*****\AppData\Local\Title-understand\title-support.exe, In Quarantäne, [11ec4f19384468ce84b13fbddc256e92], Backdoor.Agent.STLGen, C:\Users\*****\AppData\Local\Titleare\title_copy.exe, In Quarantäne, [3dc00f596a1268ced263dc20d52ceb15], Backdoor.Agent.STL, C:\Users\*****\AppData\Local\Titlediscover\title-air.exe, In Quarantäne, [8d701d4b1c6045f1afa78f714db543bd], Backdoor.Agent.STLGen, C:\Users\*****\AppData\Local\Titleestimate\title-jump.exe, In Quarantäne, [28d5383086f693a389ac9c601ce558a8], Backdoor.Agent.STLGen, C:\Users\*****\AppData\Local\Titleletter\title_rip.exe, In Quarantäne, [a15c2d3be09cba7ca194ca32bb46d52b], Backdoor.Agent.STLGen, C:\Users\*****\AppData\Local\Titleshower\title-share.exe, In Quarantäne, [ba43fa6e1a624cea58dd52aa07fade22], Backdoor.Agent.STLGen, C:\Users\*****\AppData\Local\Titlestuff\titlelack.exe, In Quarantäne, [e31a6503265661d5969f23d9d130c53b], Backdoor.Agent.STLGen, C:\Users\*****\AppData\Local\Title_attend\title-compare.exe, In Quarantäne, [27d60068e795e74f2114f10bbc453ac6], Backdoor.Agent.STLGen, C:\Users\*****\AppData\Local\Title_burn\title_burn.exe, In Quarantäne, [926be4842557e650ab8a50acb64b728e], Backdoor.Agent.STLGen, C:\Users\*****\AppData\Local\Title_live\title-shift.exe, In Quarantäne, [ba433e2a4e2ead8984b14cb0758c5ba5], Backdoor.Agent.STLGen, C:\Users\*****\AppData\Local\Title_trip\titlerelate.exe, In Quarantäne, [c835beaac4b8e94dec4900fcc8398080], Backdoor.Agent.STLGen, C:\Users\*****\AppData\Local\Fvbrgatho\helsrcuhxz.exe, In Quarantäne, [b647ee7a43392c0a37fed12b04fd58a8], Backdoor.Agent.STL, C:\Users\*****\AppData\Local\Title-prompt\titleexercise.exe, In Quarantäne, [a7563e2acab27cba3521976906fc07f9], Backdoor.Agent.STLGen, C:\Users\*****\AppData\Local\Titletree\title-lock.exe, In Quarantäne, [4db09ccc4c30a690989d7b81fe037c84], PUP.Optional.Spigot.A, C:\Windows\Installer\5a7f0.msi, In Quarantäne, [6e8f3434ccb084b2be744f7c3bc6c739], PUP.Optional.VPLMedia.A, C:\Users\*****\AppData\Roaming\player\playlist.vpl, In Quarantäne, [d4293632a3d94de99c47199d5aaa7d83], PUP.Optional.VPLMedia.A, C:\Users\*****\AppData\Roaming\player\config.ini, In Quarantäne, [d4293632a3d94de99c47199d5aaa7d83], PUP.Optional.VPLMedia.A, C:\Users\*****\AppData\Roaming\player\images\channel_ld_193.png, In Quarantäne, [d4293632a3d94de99c47199d5aaa7d83], PUP.Optional.VPLMedia.A, C:\Users\*****\AppData\Roaming\player\images\channel_ld_199.png, In Quarantäne, [d4293632a3d94de99c47199d5aaa7d83], PUP.Optional.VPLMedia.A, C:\Users\*****\AppData\Roaming\player\images\channel_ld_200.png, In Quarantäne, [d4293632a3d94de99c47199d5aaa7d83], PUP.Optional.VPLMedia.A, C:\Users\*****\AppData\Roaming\player\images\channel_ld_201.png, In Quarantäne, [d4293632a3d94de99c47199d5aaa7d83], PUP.Optional.VPLMedia.A, C:\Users\*****\AppData\Roaming\player\images\channel_ld_204.png, In Quarantäne, [d4293632a3d94de99c47199d5aaa7d83], PUP.Optional.VPLMedia.A, C:\Users\*****\AppData\Roaming\player\images\channel_ld_219.png, In Quarantäne, [d4293632a3d94de99c47199d5aaa7d83], PUP.Optional.VPLMedia.A, C:\Users\*****\AppData\Roaming\player\images\channel_ld_221.png, In Quarantäne, [d4293632a3d94de99c47199d5aaa7d83], PUP.Optional.VPLMedia.A, C:\Users\*****\AppData\Roaming\player\images\channel_ld_224.png, In Quarantäne, [d4293632a3d94de99c47199d5aaa7d83], PUP.Optional.VPLMedia.A, C:\Users\*****\AppData\Roaming\player\images\channel_ld_268.png, In Quarantäne, [d4293632a3d94de99c47199d5aaa7d83], PUP.Optional.VPLMedia.A, C:\Users\*****\AppData\Roaming\player\images\channel_ld_28.png, In Quarantäne, [d4293632a3d94de99c47199d5aaa7d83], PUP.Optional.VPLMedia.A, C:\Users\*****\AppData\Roaming\player\images\channel_ld_34.png, In Quarantäne, [d4293632a3d94de99c47199d5aaa7d83], PUP.Optional.VPLMedia.A, C:\Users\*****\AppData\Roaming\player\images\channel_ld_37.png, In Quarantäne, [d4293632a3d94de99c47199d5aaa7d83], PUP.Optional.VPLMedia.A, C:\Users\*****\AppData\Roaming\player\images\channel_ld_49.png, In Quarantäne, [d4293632a3d94de99c47199d5aaa7d83], PUP.Optional.VPLMedia.A, C:\Users\*****\AppData\Roaming\player\images\channel_ld_57.png, In Quarantäne, [d4293632a3d94de99c47199d5aaa7d83], PUP.Optional.VPLMedia.A, C:\Users\*****\AppData\Roaming\player\images\channel_ld_86.png, In Quarantäne, [d4293632a3d94de99c47199d5aaa7d83], PUP.Optional.VPLMedia.A, C:\Users\*****\AppData\Roaming\player\images\channel_ld_99.png, In Quarantäne, [d4293632a3d94de99c47199d5aaa7d83], PUP.Optional.VPLMedia.A, C:\Users\*****\AppData\Roaming\player\images\channel_ld_103.png, In Quarantäne, [d4293632a3d94de99c47199d5aaa7d83], PUP.Optional.VPLMedia.A, C:\Users\*****\AppData\Roaming\player\images\channel_ld_11.png, In Quarantäne, [d4293632a3d94de99c47199d5aaa7d83], PUP.Optional.VPLMedia.A, C:\Users\*****\AppData\Roaming\player\images\channel_ld_120.png, In Quarantäne, [d4293632a3d94de99c47199d5aaa7d83], PUP.Optional.VPLMedia.A, C:\Users\*****\AppData\Roaming\player\images\channel_ld_121.png, In Quarantäne, [d4293632a3d94de99c47199d5aaa7d83], PUP.Optional.VPLMedia.A, C:\Users\*****\AppData\Roaming\player\images\channel_ld_122.png, In Quarantäne, [d4293632a3d94de99c47199d5aaa7d83], PUP.Optional.VPLMedia.A, C:\Users\*****\AppData\Roaming\player\images\channel_ld_123.png, In Quarantäne, [d4293632a3d94de99c47199d5aaa7d83], PUP.Optional.VPLMedia.A, C:\Users\*****\AppData\Roaming\player\images\channel_ld_124.png, In Quarantäne, [d4293632a3d94de99c47199d5aaa7d83], PUP.Optional.VPLMedia.A, C:\Users\*****\AppData\Roaming\player\images\channel_ld_125.png, In Quarantäne, [d4293632a3d94de99c47199d5aaa7d83], PUP.Optional.VPLMedia.A, C:\Users\*****\AppData\Roaming\player\images\channel_ld_126.png, In Quarantäne, [d4293632a3d94de99c47199d5aaa7d83], PUP.Optional.VPLMedia.A, C:\Users\*****\AppData\Roaming\player\images\channel_ld_127.png, In Quarantäne, [d4293632a3d94de99c47199d5aaa7d83], PUP.Optional.VPLMedia.A, C:\Users\*****\AppData\Roaming\player\images\channel_ld_136.png, In Quarantäne, [d4293632a3d94de99c47199d5aaa7d83], PUP.Optional.VPLMedia.A, C:\Users\*****\AppData\Roaming\player\images\channel_ld_137.png, In Quarantäne, [d4293632a3d94de99c47199d5aaa7d83], PUP.Optional.VPLMedia.A, C:\Users\*****\AppData\Roaming\player\images\channel_ld_140.png, In Quarantäne, [d4293632a3d94de99c47199d5aaa7d83], PUP.Optional.VPLMedia.A, C:\Users\*****\AppData\Roaming\player\images\channel_ld_141.png, In Quarantäne, [d4293632a3d94de99c47199d5aaa7d83], PUP.Optional.VPLMedia.A, C:\Users\*****\AppData\Roaming\player\images\channel_ld_149.png, In Quarantäne, [d4293632a3d94de99c47199d5aaa7d83], PUP.Optional.VPLMedia.A, C:\Users\*****\AppData\Roaming\player\images\channel_ld_150.png, In Quarantäne, [d4293632a3d94de99c47199d5aaa7d83], PUP.Optional.VPLMedia.A, C:\Users\*****\AppData\Roaming\player\images\channel_ld_160.png, In Quarantäne, [d4293632a3d94de99c47199d5aaa7d83], PUP.Optional.VPLMedia.A, C:\Users\*****\AppData\Roaming\player\images\channel_ld_165.png, In Quarantäne, [d4293632a3d94de99c47199d5aaa7d83], PUP.Optional.VPLMedia.A, C:\Users\*****\AppData\Roaming\player\images\channel_ld_181.png, In Quarantäne, [d4293632a3d94de99c47199d5aaa7d83], PUP.Optional.VPLMedia.A, C:\Users\*****\AppData\Roaming\player\images\channel_ld_191.png, In Quarantäne, [d4293632a3d94de99c47199d5aaa7d83], Physische Sektoren: 0 (Keine schädliche Elemente erkannt) (end) |