|
Plagegeister aller Art und deren Bekämpfung: Sicherheitshinweis bei Virenprogramm und Änderung ProxyEinstellungenWindows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
16.02.2015, 20:27 | #1 |
| Sicherheitshinweis bei Virenprogramm und Änderung ProxyEinstellungen Hallo zusammen, ich habe zeit circa eine Woche ein Problem mit meinen Laptop bezüglich des Virenprogramms Avira. Bei jedem Hochfahren erscheint folgender Fehlermeldung: Der Zugriff auf „…..“ mit dem Virus oder dem unerwünschten Programm „ADWARE/iBryteGen7“ wurde blockiert. Ich klicke jedes Mal auf entfernen und versuche die Datei zu löschen, doch leider ist sie nicht ganz weg. Bei Benutzen von Browserns (Internet Exploxer, Google Chrome und Firefox) stimmen bei jedem Hochfahren die Proxy-Einstellungen nicht und ich muss sie manuell immer ändern. Anhängend habe ich noch einen Screenshot von dem Fund. Kann mir wer bei meinen Problem helfen? Danke im Voraus. LG, Masaky |
16.02.2015, 21:02 | #2 |
/// TB-Ausbilder | Sicherheitshinweis bei Virenprogramm und Änderung ProxyEinstellungen Hallo Masaky
__________________Mein Name ist Timo und ich werde Dir bei deinem Problem behilflich sein.
Hinweis: Ich kann Dir niemals eine Garantie geben, dass ich auch alles finde. Eine Formatierung ist immer der sicherste Weg. Wir arbeiten hier alle freiwillig und meist auch nur in unserer Freizeit. Daher kann es bei Antworten zu Verzögerungen kommen. Solltest du innerhalb 48 Std keine Antwort von mir erhalten, dann schreib mit eine PM Solltest Du Dich für eine Bereinigung entscheiden, arbeite solange mit, bis ich oder jemand vom Team sagt, dass Du clean bist. Führe sämtliche Tools mit administrativen Rechten aus, Vista, Win7,Win8 User mit Rechtsklick "als Administrator starten". So funktioniert es: Posten in CODE-Tags Die Logfiles anzuhängen oder sogar vorher in ein ZIP, RAR, 7Z-Archive zu packen erschwert mir massiv die Arbeit, es sei denn natürlich die Datei wäre ansonsten zu gross für das Forum. Um die Logfiles in eine CODE-Box zu stellen gehe so vor:
Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST 32-Bit | FRST 64-Bit (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
__________________ |
16.02.2015, 21:27 | #3 |
| Sicherheitshinweis bei Virenprogramm und Änderung ProxyEinstellungen H,
__________________vielen Dnak fü die schneller Hilfe. Ich hoffe, ich habe alles richtig gemacht. Hier die Dateien. FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 15-02-2015 Ran by Laura (administrator) on LAURA-HP on 16-02-2015 22:19:58 Running from C:\Users\Laura\Desktop Loaded Profiles: Laura (Available profiles: Laura) Platform: Windows 8.1 (X64) OS Language: Deutsch (Deutschland) Internet Explorer Version 11 (Default browser: FF) Boot Mode: Normal Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (If an entry is included in the fixlist, the process will be closed. The file will not be moved.) (AMD) C:\Windows\System32\atiesrxx.exe (Hewlett-Packard Company) C:\Windows\System32\hpservice.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RTKAUDIOSERVICE64.EXE (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe (Andrea Electronics Corporation) C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe (APN LLC.) C:\Program Files (x86)\AskPartnerNetwork\Toolbar\apnmcp.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe (Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe (Microsoft Corporation) C:\Program Files\Microsoft Office 15\ClientX64\officeclicktorun.exe (Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe (Microsoft Corporation) C:\Windows\System32\dasHost.exe (Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPWMISVC.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe (Connectify) C:\Program Files (x86)\Connectify\ConnectifyService.exe (Connectify) C:\Program Files (x86)\Connectify\Connectifyd.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe (Microsoft Corporation) C:\Windows\System32\printfilterpipelinesvc.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (AMD) C:\Windows\System32\atieclxx.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe () C:\Program Files (x86)\Search Extensions\Client.exe (Microsoft Corporation) C:\Windows\System32\SkyDrive.exe (Intel Corporation) C:\Windows\System32\igfxtray.exe (Intel Corporation) C:\Windows\System32\igfxsrvc.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Connectify) C:\Program Files (x86)\Connectify\Connectify.exe (Connectify) C:\Program Files (x86)\Connectify\DispatchUI.exe (Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe () C:\Program Files (x86)\Canon\ImageBrowser EX\MFManager.exe (Hewlett-Packard) C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe (Microsoft Corporation) C:\Program Files\Microsoft Office 15\root\office15\ONENOTEM.EXE (APN) C:\Program Files (x86)\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe (Dropbox, Inc.) C:\Users\Laura\AppData\Roaming\Dropbox\bin\Dropbox.exe (CyberLink Corp.) C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe (Geek Software GmbH) C:\Program Files (x86)\PDF24\pdf24.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe (ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe (CyberLink) C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe (Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP CoolSense\CoolSense.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Microsoft Corporation.) C:\Program Files (x86)\Microsoft\BingBar\7.3.132.0\SeaPort.EXE (Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe (Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_16_0_0_305.exe (Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_16_0_0_305.exe (Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20689_x64__8wekyb3d8bbwe\livecomm.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Corporation) C:\Program Files\Microsoft Office 15\root\office15\winword.exe (Hewlett-Packard) C:\Program Files (x86)\Hewlett-Packard\HP Quick Start\HPQuickstart.exe ==================== Registry (Whitelisted) ================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [7194840 2013-12-11] (Realtek Semiconductor) HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2771184 2013-12-11] (Synaptics Incorporated) HKLM\...\Run: [Connectify Hotspot] => C:\Program Files (x86)\Connectify\Connectify.exe [4326176 2014-07-28] (Connectify) HKLM\...\Run: [Connectify Dispatch] => C:\Program Files (x86)\Connectify\DispatchUI.exe [2399008 2014-07-28] (Connectify) HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe [49208 2010-06-09] (Hewlett-Packard) HKLM-x32\...\Run: [] => [X] HKLM-x32\...\Run: [ApnTBMon] => C:\Program Files (x86)\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe [1934744 2015-01-28] (APN) HKLM-x32\...\Run: [avgnt] => C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [702768 2014-12-17] (Avira Operations GmbH & Co. KG) HKLM-x32\...\Run: [RemoteControl10] => C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe [95192 2013-04-10] (CyberLink Corp.) HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [766208 2013-09-24] (Advanced Micro Devices, Inc.) HKLM-x32\...\Run: [HPMessageService] => C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPMSGSVC.exe [1045304 2013-10-08] (Hewlett-Packard Development Company, L.P.) HKLM-x32\...\Run: [PDFPrint] => C:\Program Files (x86)\PDF24\pdf24.exe [186408 2013-12-12] (Geek Software GmbH) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation) HKLM-x32\...\Run: [IminentMessenger] => C:\Program Files (x86)\Iminent\Iminent.Messengers.exe HKLM-x32\...\Run: [Avira Systray] => C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe [126712 2015-01-19] (Avira Operations GmbH & Co. KG) Winlogon\Notify\igfxcui: C:\WINDOWS\system32\igfxdev.dll (Intel Corporation) HKU\S-1-5-21-2764708345-627995945-2754369203-1001\...\Run: [SkyDrive] => C:\Users\Laura\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe [257136 2013-08-23] (Microsoft Corporation) HKU\S-1-5-21-2764708345-627995945-2754369203-1001\...\Run: [Power2GoExpress8] => NA HKU\S-1-5-21-2764708345-627995945-2754369203-1001\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [22041192 2014-08-27] (Skype Technologies S.A.) AppInit_DLLs: C:\Users\Laura\AppData\Local\Linkey\IEEXTE~1\iedll64.dll => C:\Users\Laura\AppData\Local\Linkey\IEEXTE~1\iedll64.dll File Not Found AppInit_DLLs-x32: C:\Users\Laura\AppData\Local\Linkey\IEEXTE~1\iedll.dll => "C:\Users\Laura\AppData\Local\Linkey\IEEXTE~1\iedll.dll" File Not Found Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\HP Digital Imaging Monitor.lnk ShortcutTarget: HP Digital Imaging Monitor.lnk -> C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe (Hewlett-Packard Co.) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\ImageBrowser EX Agent.lnk ShortcutTarget: ImageBrowser EX Agent.lnk -> C:\Program Files (x86)\Canon\ImageBrowser EX\MFManager.exe () Startup: C:\Users\Laura\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\An OneNote senden.lnk ShortcutTarget: An OneNote senden.lnk -> C:\Program Files\Microsoft Office 15\root\office15\ONENOTEM.EXE (Microsoft Corporation) Startup: C:\Users\Laura\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk ShortcutTarget: Dropbox.lnk -> C:\Users\Laura\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) ShellIconOverlayIdentifiers: [DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Laura\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.) ShellIconOverlayIdentifiers: [DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Laura\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.) ShellIconOverlayIdentifiers: [DropboxExt3] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Laura\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.) ShellIconOverlayIdentifiers: [DropboxExt4] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Laura\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Laura\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Laura\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [DropboxExt3] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Laura\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll (Dropbox, Inc.) ==================== Internet (Whitelisted) ==================== (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.) HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION ProxyEnable: [S-1-5-21-2764708345-627995945-2754369203-1001] => Internet Explorer proxy is enabled. ProxyServer: [S-1-5-21-2764708345-627995945-2754369203-1001] => http=127.0.0.1:50026;https=127.0.0.1:50026 HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = about:blank HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = about:blank HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = about:blank HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = about:blank HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKU\S-1-5-21-2764708345-627995945-2754369203-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.default-search.net?sid=503&aid=100&itype=n&ver=13800&tm=458&src=hmp HKU\S-1-5-21-2764708345-627995945-2754369203-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://g.uk.msn.com/HPNOT13/4 HKU\S-1-5-21-2764708345-627995945-2754369203-1001\Software\Microsoft\Internet Explorer\Main,Search Bar = hxxp://www.google.com/ie HKU\S-1-5-21-2764708345-627995945-2754369203-1001\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.google.com/ie URLSearchHook: HKU\S-1-5-21-2764708345-627995945-2754369203-1001 - (No Name) - {84FF7BD6-B47F-46F8-9130-01B2696B36CB} - No File SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKLM -> {9BB47C17-9C68-4BB3-B188-DD9AF0FD2503} URL = hxxp://www.default-search.net/search?sid=503&aid=100&itype=n&ver=13800&tm=458&src=ds&p={searchTerms} SearchScopes: HKLM -> {A7B0732F-79AC-4B81-840A-A6FB25D9257C} URL = hxxp://www.amazon.de/s/ref=azs_osd_ieade?ie=UTF-8&tag=hp-de2-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms} SearchScopes: HKLM -> {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = hxxp://rover.ebay.com/rover/1/707-154345-12128-2/4 ?mpre=http%3A%2F%2Fwww.ebay.com%2Fsch%2F%3F_nkw%3D{searchTerms}&keyword={searchTerms} SearchScopes: HKLM-x32 -> DefaultScope value is missing. SearchScopes: HKLM-x32 -> {9BB47C17-9C68-4BB3-B188-DD9AF0FD2503} URL = hxxp://www.default-search.net/search?sid=503&aid=100&itype=n&ver=13800&tm=458&src=ds&p={searchTerms} SearchScopes: HKLM-x32 -> {A7B0732F-79AC-4B81-840A-A6FB25D9257C} URL = hxxp://www.amazon.de/s/ref=azs_osd_ieade?ie=UTF-8&tag=hp-de2-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms} SearchScopes: HKLM-x32 -> {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = hxxp://rover.ebay.com/rover/1/707-154345-12128-2/4 ?mpre=http%3A%2F%2Fwww.ebay.com%2Fsch%2F%3F_nkw%3D{searchTerms}&keyword={searchTerms} SearchScopes: HKU\S-1-5-21-2764708345-627995945-2754369203-1001 -> DefaultScope {9BB47C17-9C68-4BB3-B188-DD9AF0FD2503} URL = hxxp://www.default-search.net/search?sid=503&aid=100&itype=n&ver=13800&tm=458&src=ds&p={searchTerms} SearchScopes: HKU\S-1-5-21-2764708345-627995945-2754369203-1001 -> URL hxxp://search.conduit.com/Results.aspx?ctid=CT3320133&octid=EB_ORIGINAL_CTID&SearchSource=58&CUI=&UM=4&UP=SP4120AFC1-D5B4-4252-AC75-F74A2ED0D2AF&q={searchTerms}&SSPV= SearchScopes: HKU\S-1-5-21-2764708345-627995945-2754369203-1001 -> SuggestionsURL_JSON hxxp://suggest.search.conduit.com/CSuggestJson.ashx?prefix={searchTerms} SearchScopes: HKU\S-1-5-21-2764708345-627995945-2754369203-1001 -> {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = hxxp://www.google.com/search?q={sear SearchScopes: HKU\S-1-5-21-2764708345-627995945-2754369203-1001 -> {9BB47C17-9C68-4BB3-B188-DD9AF0FD2503} URL = hxxp://www.default-search.net/search?sid=503&aid=100&itype=n&ver=13800&tm=458&src=ds&p={searchTerms} SearchScopes: HKU\S-1-5-21-2764708345-627995945-2754369203-1001 -> {A7B0732F-79AC-4B81-840A-A6FB25D9257C} URL = hxxp://www.amazon.de/s/ref=azs_osd_ieade?ie=UTF-8&tag=hp-de2-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms} SearchScopes: HKU\S-1-5-21-2764708345-627995945-2754369203-1001 -> {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = hxxp://rover.ebay.com/rover/1/707-154345-12128-2/4 ?mpre=http%3A%2F%2Fwww.ebay.com%2Fsch%2F%3F_nkw%3D{searchTerms}&keyword={searchTerms} BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation) BHO: Avira SearchFree Toolbar -> {41564952-412D-5637-00A7-7A786E7484D7} -> C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Passport_x64.dll (APN LLC.) BHO: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Microsoft Corporation) BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation) BHO: Bing Bar Helper -> {d2ce3e00-f94a-4740-988e-03dc2f38c34f} -> C:\Program Files (x86)\Microsoft\BingBar\7.3.132.0\amd64\BingExt.dll (Microsoft Corporation.) BHO-x32: Avira SearchFree Toolbar -> {41564952-412D-5637-00A7-7A786E7484D7} -> C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Passport.dll (APN LLC.) BHO-x32: Linkey -> {4D9101D6-5BA0-4048-BDDE-7E2DF54C8C47} -> C:\Users\Laura\AppData\Local\Linkey\IEExtension\iedll.dll No File BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) BHO-x32: No Name -> {84FF7BD6-B47F-46F8-9130-01B2696B36CB} -> No File BHO-x32: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Microsoft Corporation) BHO-x32: Bing Bar Helper -> {d2ce3e00-f94a-4740-988e-03dc2f38c34f} -> C:\Program Files (x86)\Microsoft\BingBar\7.3.132.0\BingExt.dll (Microsoft Corporation.) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) Toolbar: HKLM - Avira SearchFree Toolbar - {41564952-412D-5637-00A7-7A786E7484D7} - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Passport_x64.dll (APN LLC.) Toolbar: HKLM - Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files (x86)\Microsoft\BingBar\7.3.132.0\amd64\BingExt.dll (Microsoft Corporation.) Toolbar: HKLM-x32 - Avira SearchFree Toolbar - {41564952-412D-5637-00A7-7A786E7484D7} - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Passport.dll (APN LLC.) Toolbar: HKLM-x32 - Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files (x86)\Microsoft\BingBar\7.3.132.0\BingExt.dll (Microsoft Corporation.) Toolbar: HKU\S-1-5-21-2764708345-627995945-2754369203-1001 -> No Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No File Handler-x32: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL (Microsoft Corporation) Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Microsoft Corporation) Handler-x32: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Microsoft Corporation) Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 FireFox: ======== FF ProfilePath: C:\Users\Laura\AppData\Roaming\Mozilla\Firefox\Profiles\v39o8gjd.default FF NewTab: hxxp://search.conduit.com/?gd=&ctid=CT3319709&octid=EB_ORIGINAL_CTID&ISID=MC3224D8E-3C3F-4B03-86FF-EB2A76E3F8AA&SearchSource=69&CUI=&SSPV=C21211_sp_ff&Lay=1&UM=5&UP=SPE313F13F-16AB-405D-86AF-A589FFDADAF0 FF SearchEngineOrder.1: default-search.net FF Homepage: https://www.google.com/ FF Keyword.URL: hxxp://www.default-search.net/search?sid=503&aid=100&itype=n&ver=13800&tm=458&src=ds&p= FF NetworkProxy: "autoconfig_url", "Hallo Leute ;) Na wie geht es auch mittlerweile so? Ich hoffe, ihr habt mich nicht vergessen. ;))Mittlerweile bin ich wieder zu Hause und habe letzte Woche euer tolles Fotoalbum voller Bilder gemacht und ausgefüllt 🌌Danke nochmal, das war echt schön alles noch einmal revue passieren zu lassen. 😊Ich weiß zwar nicht, wie es euch so passt oder was die nächsten Pläne sind, aber vielleicht könnten wir uns ja nochmal treffen auf ein kühles Getränk oder sowas und dann könnt ihr wie versprochen das Buch noch einmal mit Bildern und mit Finnland sehen. Ich würde mich zumindest sehr freuen, wenn das klappen würde :)) Ganz liebe Grüße, Laura" FF NetworkProxy: "type", 4 FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_16_0_0_305.dll () FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_16_0_0_305.dll () FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\windows\SysWOW64\Adobe\Director\np32dsw_1166636.dll (Adobe Systems, Inc.) FF Plugin-x32: @google.com/npPicasa3,version=3.0.0 -> C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll (Google, Inc.) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation) FF Plugin-x32: @java.com/DTPlugin,version=10.51.2 -> C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=10.51.2 -> C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3505.0912 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF user.js: detected! => C:\Users\Laura\AppData\Roaming\Mozilla\Firefox\Profiles\v39o8gjd.default\user.js FF SearchPlugin: C:\Users\Laura\AppData\Roaming\Mozilla\Firefox\Profiles\v39o8gjd.default\searchplugins\iminent.xml FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\default-search.xml FF Extension: Avira Browser Safety - C:\Users\Laura\AppData\Roaming\Mozilla\Firefox\Profiles\v39o8gjd.default\Extensions\abs@avira.com [2015-02-02] FF Extension: DownloadHelper - C:\Users\Laura\AppData\Roaming\Mozilla\Firefox\Profiles\v39o8gjd.default\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d} [2014-09-06] FF Extension: Avira SearchFree Toolbar plus Web Protection - C:\Users\Laura\AppData\Roaming\Mozilla\Firefox\Profiles\v39o8gjd.default\Extensions\toolbar_AVIRA-V7@apn.ask.com.xpi [2013-10-23] FF Extension: Search Manager for Mozilla Firefox ™ - C:\Users\Laura\AppData\Roaming\Mozilla\Firefox\Profiles\v39o8gjd.default\Extensions\{5ccf2762-2b66-4dd5-9997-1103d12d3125}.xpi [2014-12-23] FF Extension: Adblock Plus - C:\Users\Laura\AppData\Roaming\Mozilla\Firefox\Profiles\v39o8gjd.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2013-08-13] FF Extension: Skype Click to Call - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}.xpi [2015-01-27] Chrome: ======= CHR Profile: C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default CHR Extension: (Avira SearchFree Toolbar plus Web Protection) - C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaaaacalgebmfelllfiaoknifldpngjh [2013-10-21] CHR Extension: (YouTube) - C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2013-09-11] CHR Extension: (Google-Suche) - C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2013-09-11] CHR Extension: (Avira Browserschutz) - C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\flliilndjeohchalpbbcdekjklbdgfkk [2015-02-10] CHR Extension: (Skype Click to Call) - C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl [2014-08-01] CHR Extension: (Plus-HD-2.6) - C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\mpfeggemggokijeahnacacopejaabljl [2014-03-13] CHR Extension: (Google Wallet) - C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-09-14] CHR Extension: (Google Mail) - C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2013-09-11] CHR HKLM\...\Chrome\Extension: [aaaaacalgebmfelllfiaoknifldpngjh] - C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\ToolbarCR.crx [2015-02-05] CHR HKLM-x32\...\Chrome\Extension: [aaaaacalgebmfelllfiaoknifldpngjh] - C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\ToolbarCR.crx [2015-02-05] CHR HKLM-x32\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - No Path CHR HKLM-x32\...\Chrome\Extension: [fpmeembnagmagppkgghhfjfdfajdfcah] - C:\Users\Laura\AppData\Local\Linkey\ChromeExtension\ChromeExtension.crx [Not Found] CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2014-07-14] ==================== Services (Whitelisted) ================= (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [431920 2014-12-17] (Avira Operations GmbH & Co. KG) R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [431920 2014-12-17] (Avira Operations GmbH & Co. KG) R2 AntiVirWebService; C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe [993584 2014-12-17] (Avira Operations GmbH & Co. KG) R2 APNMCP; C:\Program Files (x86)\AskPartnerNetwork\Toolbar\apnmcp.exe [177560 2015-01-28] (APN LLC.) R2 Avira.OE.ServiceHost; C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe [182520 2015-01-19] (Avira Operations GmbH & Co. KG) R2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1390176 2014-07-14] (Microsoft Corporation) R2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1767520 2014-07-14] (Microsoft Corporation) R2 ClickToRunSvc; C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe [2449592 2014-11-12] (Microsoft Corporation) R2 Connectify; C:\Program Files (x86)\Connectify\ConnectifyService.exe [487936 2014-07-28] (Connectify) [File not signed] R2 HPSLPSVC; C:\Program Files (x86)\HP\Digital Imaging\bin\HPSLPSVC64.DLL [1039360 2011-08-18] (Hewlett-Packard Co.) [File not signed] R2 HPWMISVC; c:\Program Files (x86)\Hewlett-Packard\HP System Event\HPWMISVC.exe [1039160 2013-10-08] (Hewlett-Packard Development Company, L.P.) R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [15720 2013-08-22] (Intel Corporation) R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [733696 2013-05-11] (Intel(R) Corporation) [File not signed] S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [822232 2013-05-11] (Intel(R) Corporation) R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [131544 2013-12-11] (Intel Corporation) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-12-11] (Intel Corporation) S2 Net Driver HPZ12; C:\Windows\System32\HPZinw12.dll [71680 2010-08-06] (Hewlett-Packard) [File not signed] S3 OpenVPNService; C:\Program Files (x86)\OpenVPN\bin\openvpnserv.exe [32568 2014-04-09] (The OpenVPN Project) S2 Pml Driver HPZ12; C:\Windows\System32\HPZipm12.dll [89600 2010-08-06] (Hewlett-Packard) [File not signed] R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [239176 2013-02-20] (Realtek Semiconductor) S3 w3logsvc; C:\Windows\system32\inetsrv\w3logsvc.dll [76800 2013-11-05] (Microsoft Corporation) S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [368632 2014-09-22] (Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23792 2014-09-22] (Microsoft Corporation) ==================== Drivers (Whitelisted) ==================== (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) R0 amdkmpfd; C:\Windows\System32\drivers\amdkmpfd.sys [36096 2013-11-13] (Advanced Micro Devices, Inc.) R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [119272 2014-10-16] (Avira Operations GmbH & Co. KG) R1 avipbb; C:\Windows\system32\DRIVERS\avipbb.sys [131608 2014-10-16] (Avira Operations GmbH & Co. KG) R1 avkmgr; C:\Windows\system32\DRIVERS\avkmgr.sys [28600 2013-10-10] (Avira Operations GmbH & Co. KG) R2 avnetflt; C:\Windows\system32\DRIVERS\avnetflt.sys [43064 2014-10-16] (Avira Operations GmbH & Co. KG) R1 CLVirtualDrive; C:\Windows\system32\DRIVERS\CLVirtualDrive.sys [91712 2013-03-05] (CyberLink) R1 cnnctfy3; C:\Windows\system32\DRIVERS\cnnctfy3.sys [42152 2014-08-18] (Connectify) S3 dot4; C:\Windows\system32\DRIVERS\Dot4.sys [151968 2012-10-19] (Windows (R) Win 7 DDK provider) S3 Dot4Print; C:\Windows\System32\drivers\Dot4Prt.sys [27040 2012-10-19] (Windows (R) Win 7 DDK provider) R3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [99288 2013-12-11] (Intel Corporation) S3 RSP2STOR; C:\Windows\system32\DRIVERS\RtsP2Stor.sys [288328 2013-01-24] (Realtek Semiconductor Corp.) S3 RtlWlanu; C:\Windows\system32\DRIVERS\rtwlanu.sys [1975000 2013-07-31] (Realtek Semiconductor Corporation ) S3 RTSPER; C:\Windows\System32\DRIVERS\RtsPer.sys [448072 2013-02-02] (RTS Corporation) R3 RTWlanE; C:\Windows\system32\DRIVERS\rtwlane.sys [2946264 2014-01-08] (Realtek Semiconductor Corporation ) S3 SmbDrv; C:\Windows\System32\drivers\Smb_driver_AMDASF.sys [28400 2013-02-06] (Synaptics Incorporated) R3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [34544 2013-12-11] (Synaptics Incorporated) S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114496 2014-09-22] (Microsoft Corporation) R3 WirelessButtonDriver; C:\Windows\System32\drivers\WirelessButtonDriver64.sys [20800 2012-08-31] (Hewlett-Packard Development Company, L.P.) ==================== NetSvcs (Whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.) ==================== One Month Created Files and Folders ======== (If an entry is included in the fixlist, the file\folder will be moved.) 2015-02-16 22:19 - 2015-02-16 22:20 - 00031378 _____ () C:\Users\Laura\Desktop\FRST.txt 2015-02-16 22:19 - 2015-02-16 22:20 - 00000000 ____D () C:\FRST 2015-02-16 22:19 - 2015-02-16 22:19 - 02085888 _____ (Farbar) C:\Users\Laura\Desktop\FRST64.exe 2015-02-15 13:42 - 2015-02-15 13:42 - 00000000 ____D () C:\Users\Laura\Documents\Benutzerdefinierte Office-Vorlagen 2015-02-15 11:09 - 2015-02-15 15:56 - 00425439 _____ () C:\Users\Laura\Desktop\Kopie von Pension asset allocation rev.xlsx 2015-02-12 19:05 - 2015-01-23 06:41 - 06041600 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll 2015-02-12 19:05 - 2015-01-23 05:17 - 04300800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll 2015-02-11 21:11 - 2015-01-16 00:43 - 00563504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys 2015-02-11 21:11 - 2015-01-16 00:43 - 00177984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys 2015-02-11 21:11 - 2015-01-14 06:22 - 00445440 _____ (Microsoft Corporation) C:\WINDOWS\system32\certcli.dll 2015-02-11 21:11 - 2015-01-14 05:53 - 00324096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\certcli.dll 2015-02-11 21:11 - 2014-10-29 04:51 - 00154112 _____ (Microsoft Corporation) C:\WINDOWS\system32\msaudite.dll 2015-02-11 21:11 - 2014-10-29 04:50 - 00736768 _____ (Microsoft Corporation) C:\WINDOWS\system32\adtschema.dll 2015-02-11 21:11 - 2014-10-29 04:06 - 00736768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\adtschema.dll 2015-02-11 21:11 - 2014-10-29 04:06 - 00154112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msaudite.dll 2015-02-11 21:11 - 2014-10-29 03:31 - 01441792 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll 2015-02-11 21:10 - 2015-01-14 00:11 - 01762840 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecs.dll 2015-02-11 21:10 - 2015-01-14 00:04 - 01489072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecs.dll 2015-02-11 21:10 - 2015-01-10 11:10 - 07472960 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe 2015-02-11 21:10 - 2015-01-10 11:10 - 01733440 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll 2015-02-11 21:10 - 2015-01-10 10:28 - 01498360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll 2015-02-11 21:10 - 2014-12-19 10:57 - 00788680 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleaut32.dll 2015-02-11 21:10 - 2014-12-19 10:25 - 00602776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleaut32.dll 2015-02-11 21:10 - 2014-12-09 05:45 - 00393728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\scesrv.dll 2015-02-11 21:10 - 2014-12-09 03:56 - 00538624 _____ (Microsoft Corporation) C:\WINDOWS\system32\scesrv.dll 2015-02-11 21:10 - 2014-12-09 01:12 - 00391526 _____ () C:\WINDOWS\system32\ApnDatabase.xml 2015-02-11 21:10 - 2014-10-29 04:02 - 00285184 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64.dll 2015-02-11 21:10 - 2014-10-29 04:02 - 00013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64cpu.dll 2015-02-11 21:10 - 2014-10-29 03:57 - 00016896 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntvdm64.dll 2015-02-11 21:10 - 2014-10-29 03:15 - 00014336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntvdm64.dll 2015-02-11 21:10 - 2014-10-29 03:15 - 00005632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wow32.dll 2015-02-11 21:10 - 2014-10-29 03:14 - 00004096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user.exe 2015-02-11 21:10 - 2014-10-29 03:13 - 00025600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\setup16.exe 2015-02-11 21:10 - 2014-10-29 03:13 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\instnm.exe 2015-02-11 21:09 - 2015-01-12 05:09 - 25056256 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2015-02-11 21:09 - 2015-01-12 04:48 - 02885632 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll 2015-02-11 21:09 - 2015-01-12 04:48 - 00584192 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll 2015-02-11 21:09 - 2015-01-12 04:47 - 00088064 _____ (Microsoft Corporation) C:\WINDOWS\system32\MshtmlDac.dll 2015-02-11 21:09 - 2015-01-12 04:34 - 00816128 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll 2015-02-11 21:09 - 2015-01-12 04:25 - 19740160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll 2015-02-11 21:09 - 2015-01-12 04:21 - 00490496 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtmsft.dll 2015-02-11 21:09 - 2015-01-12 04:08 - 00503296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll 2015-02-11 21:09 - 2015-01-12 04:07 - 00092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll 2015-02-11 21:09 - 2015-01-12 04:05 - 00064000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MshtmlDac.dll 2015-02-11 21:09 - 2015-01-12 04:02 - 02277888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll 2015-02-11 21:09 - 2015-01-12 03:58 - 01032704 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcomm.dll 2015-02-11 21:09 - 2015-01-12 03:55 - 00664064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll 2015-02-11 21:09 - 2015-01-12 03:51 - 00262144 _____ (Microsoft Corporation) C:\WINDOWS\system32\webcheck.dll 2015-02-11 21:09 - 2015-01-12 03:48 - 00801280 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll 2015-02-11 21:09 - 2015-01-12 03:48 - 00718848 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe 2015-02-11 21:09 - 2015-01-12 03:48 - 00374272 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll 2015-02-11 21:09 - 2015-01-12 03:46 - 02125824 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl 2015-02-11 21:09 - 2015-01-12 03:45 - 00418304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtmsft.dll 2015-02-11 21:09 - 2015-01-12 03:43 - 14401024 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll 2015-02-11 21:09 - 2015-01-12 03:34 - 00128000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iepeers.dll 2015-02-11 21:09 - 2015-01-12 03:30 - 00880128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcomm.dll 2015-02-11 21:09 - 2015-01-12 03:27 - 02865152 _____ (Microsoft Corporation) C:\WINDOWS\system32\actxprxy.dll 2015-02-11 21:09 - 2015-01-12 03:27 - 02358272 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll 2015-02-11 21:09 - 2015-01-12 03:25 - 00230400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webcheck.dll 2015-02-11 21:09 - 2015-01-12 03:23 - 02052608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl 2015-02-11 21:09 - 2015-01-12 03:23 - 00688640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll 2015-02-11 21:09 - 2015-01-12 03:23 - 00327168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll 2015-02-11 21:09 - 2015-01-12 03:14 - 12829184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll 2015-02-11 21:09 - 2015-01-12 03:14 - 01548288 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll 2015-02-11 21:09 - 2015-01-12 03:02 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll 2015-02-11 21:09 - 2015-01-12 03:00 - 01888256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll 2015-02-11 21:09 - 2015-01-12 02:56 - 01307136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll 2015-02-11 21:09 - 2015-01-12 02:55 - 00710144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll 2015-02-11 21:09 - 2015-01-10 09:00 - 00430080 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll 2015-02-11 21:09 - 2015-01-10 08:38 - 00359424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\schannel.dll 2015-02-11 21:08 - 2015-01-19 20:42 - 01487976 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll 2015-02-11 21:07 - 2015-01-10 10:22 - 04175872 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys 2015-02-08 21:57 - 2015-02-08 21:57 - 00000000 ____D () C:\ProgramData\Oracle 2015-02-08 21:24 - 2015-02-08 21:28 - 00001115 _____ () C:\Users\Public\Desktop\CEWE FOTOSCHAU.lnk 2015-02-08 21:24 - 2015-02-08 21:24 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OnlineFotoservice 2015-02-08 21:18 - 2015-02-08 21:18 - 00000000 ____D () C:\Program Files\OnlineFotoservice 2015-01-31 21:43 - 2015-02-15 23:42 - 00000000 ____D () C:\Users\Laura\Documents\Reisen 2015 2015-01-27 16:50 - 2015-01-27 16:51 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2015-01-25 13:22 - 2015-01-25 13:22 - 00000957 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\myphotobook.de.lnk 2015-01-25 13:22 - 2015-01-25 13:22 - 00000945 _____ () C:\Users\Public\Desktop\myphotobook.de.lnk 2015-01-25 13:22 - 2015-01-25 13:22 - 00000000 ____D () C:\Program Files (x86)\myphotobook.de 2015-01-25 13:21 - 2015-01-25 13:21 - 00000000 _____ () C:\Users\Laura\.airinstall.log 2015-01-25 13:18 - 2015-01-25 13:18 - 00000000 ____D () C:\Users\Laura\restore 2015-01-25 13:01 - 2015-02-11 21:10 - 00000000 ____D () C:\ProgramData\tmp 2015-01-25 13:01 - 2015-02-08 00:49 - 00000000 ____D () C:\ProgramData\hps 2015-01-25 13:01 - 2015-01-25 13:01 - 00001047 _____ () C:\Users\Public\Desktop\Mein CEWE FOTOBUCH.lnk 2015-01-25 13:01 - 2015-01-25 13:01 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mein CEWE FOTOBUCH 2015-01-25 12:53 - 2015-01-25 12:53 - 00000000 ____D () C:\Program Files\CEWE 2015-01-18 12:02 - 2015-02-12 19:11 - 00000000 ____D () C:\Users\Laura\Documents\Uni - Master BWL ==================== One Month Modified Files and Folders ======= (If an entry is included in the fixlist, the file\folder will be moved.) 2015-02-16 22:17 - 2014-07-28 14:19 - 00000000 ____D () C:\Users\Laura\AppData\Roaming\Skype 2015-02-16 22:02 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\system32\sru 2015-02-16 22:00 - 2013-08-13 11:07 - 00000884 _____ () C:\WINDOWS\Tasks\Adobe Flash Player Updater.job 2015-02-16 21:48 - 2013-09-11 22:52 - 00001136 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job 2015-02-16 21:30 - 2013-11-05 18:27 - 01622589 _____ () C:\WINDOWS\WindowsUpdate.log 2015-02-16 21:27 - 2014-01-09 13:59 - 01037824 ___SH () C:\Users\Laura\Desktop\Thumbs.db 2015-02-16 21:08 - 2014-01-15 10:21 - 00000000 ___DO () C:\Users\Laura\SkyDrive 2015-02-16 21:05 - 2013-09-24 22:04 - 00000000 ___RD () C:\Users\Laura\Dropbox 2015-02-16 21:04 - 2013-09-24 22:01 - 00000000 ____D () C:\Users\Laura\AppData\Roaming\Dropbox 2015-02-16 21:02 - 2013-09-11 22:52 - 00001132 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job 2015-02-16 00:08 - 2013-08-22 16:46 - 00343141 _____ () C:\WINDOWS\setupact.log 2015-02-16 00:08 - 2013-08-22 16:45 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT 2015-02-16 00:07 - 2013-08-22 15:25 - 00524288 ___SH () C:\WINDOWS\system32\config\BBI 2015-02-15 23:59 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\system32\NDF 2015-02-15 23:45 - 2013-09-29 21:04 - 00084270 _____ () C:\WINDOWS\PFRO.log 2015-02-15 23:25 - 2013-08-13 10:15 - 00000000 ____D () C:\Users\Laura\AppData\Local\Packages 2015-02-15 23:19 - 2015-01-03 18:10 - 00013382 _____ () C:\Users\Laura\Desktop\AUSGABEN_2015.xlsx 2015-02-15 20:54 - 2014-12-10 17:17 - 00000000 ____D () C:\Users\Laura\Documents\Wincor Nixdorf 2015-02-15 17:09 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\AppReadiness 2015-02-15 15:25 - 2013-11-30 12:00 - 00003164 _____ () C:\WINDOWS\System32\Tasks\HPCeeScheduleForLaura 2015-02-15 15:25 - 2013-11-30 12:00 - 00000350 _____ () C:\WINDOWS\Tasks\HPCeeScheduleForLaura.job 2015-02-15 14:21 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\rescache 2015-02-15 13:27 - 2013-08-22 17:36 - 00000000 ____D () C:\Program Files\Common Files\microsoft shared 2015-02-14 15:38 - 2013-08-13 10:22 - 00003598 _____ () C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-2764708345-627995945-2754369203-1001 2015-02-14 12:48 - 2012-07-26 09:59 - 00000000 ____D () C:\WINDOWS\CbsTemp 2015-02-13 23:14 - 2015-01-03 18:12 - 00010236 _____ () C:\Users\Laura\Desktop\EINNAHMEN_2015.xlsx 2015-02-13 23:08 - 2013-09-24 22:04 - 00001067 _____ () C:\Users\Laura\Desktop\Dropbox.lnk 2015-02-13 23:08 - 2013-09-24 22:02 - 00000000 ____D () C:\Users\Laura\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox 2015-02-12 16:22 - 2013-08-22 16:44 - 00381472 _____ () C:\WINDOWS\system32\FNTCACHE.DAT 2015-02-11 21:31 - 2013-11-13 16:05 - 00000000 ____D () C:\ProgramData\Package Cache 2015-02-11 21:28 - 2013-08-19 03:06 - 00000000 ____D () C:\WINDOWS\system32\MRT 2015-02-11 21:21 - 2013-08-19 03:06 - 116773704 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2015-02-11 21:02 - 2013-10-20 21:12 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira 2015-02-11 21:02 - 2013-10-20 21:12 - 00000000 ____D () C:\Program Files (x86)\Avira 2015-02-09 18:35 - 2013-09-30 06:14 - 00006744 _____ () C:\WINDOWS\system32\PerfStringBackup.INI 2015-02-09 18:35 - 2013-09-30 05:56 - 01379974 _____ () C:\WINDOWS\system32\perfh007.dat 2015-02-09 18:35 - 2013-09-30 05:56 - 00352628 _____ () C:\WINDOWS\system32\perfc007.dat 2015-02-08 01:15 - 2013-11-05 18:16 - 00000000 ____D () C:\Users\Laura 2015-02-08 01:12 - 2014-03-06 22:53 - 00000000 ____D () C:\Users\Laura\Documents\ZZKram 2015-02-08 00:34 - 2014-03-06 21:42 - 00222720 ___SH () C:\Users\Laura\Documents\Thumbs.db 2015-02-06 21:49 - 2013-09-11 22:52 - 00002195 _____ () C:\Users\Public\Desktop\Google Chrome.lnk 2015-02-05 15:43 - 2013-09-11 22:52 - 00004108 _____ () C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA 2015-02-05 15:43 - 2013-09-11 22:52 - 00003872 _____ () C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore 2015-02-04 22:00 - 2013-08-13 11:07 - 00003772 _____ () C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater 2015-02-03 21:31 - 2014-11-15 21:34 - 00714720 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe 2015-02-03 21:31 - 2014-11-15 21:34 - 00106976 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl 2015-02-03 19:17 - 2013-08-16 18:23 - 02571776 ___SH () C:\Users\Laura\Downloads\Thumbs.db 2015-01-31 21:51 - 2013-08-13 10:45 - 00000000 ____D () C:\Users\Laura\Documents\Rettungsdienst 2015-01-31 21:49 - 2013-08-13 10:45 - 00000000 ____D () C:\Users\Laura\Documents\Feuerwehr 2015-01-31 08:44 - 2013-08-13 10:24 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service 2015-01-26 23:43 - 2014-06-25 10:25 - 00000000 ____D () C:\Users\Laura\Documents\zzsonstiges 2015-01-18 12:01 - 2014-12-21 15:58 - 00000000 ____D () C:\Users\Laura\Documents\Auslandssemester 2015-01-18 11:41 - 2015-01-04 14:54 - 00000000 ____D () C:\Users\Laura\Documents\Eigene Scans 2015-01-17 22:22 - 2015-01-09 18:20 - 00000000 ____D () C:\Users\Laura\AppData\Local\3caf8524-91a7-4b61-81b4-96ae9e4c0c00 ==================== Files in the root of some directories ======= 2013-10-20 19:45 - 2013-10-20 19:45 - 0423709 _____ () C:\Users\Laura\AppData\Local\mysearchdial_speedial_v9.0.2.crx 2013-09-28 18:10 - 2013-09-30 22:28 - 0001124 _____ () C:\ProgramData\hpzinstall.log Some content of TEMP: ==================== C:\Users\Laura\AppData\Local\Temp\avgnt.exe C:\Users\Laura\AppData\Local\Temp\BackupSetup.exe C:\Users\Laura\AppData\Local\Temp\COMAP.EXE C:\Users\Laura\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmp7vhgct.dll C:\Users\Laura\AppData\Local\Temp\Extract.exe C:\Users\Laura\AppData\Local\Temp\h3gybe7o.dll C:\Users\Laura\AppData\Local\Temp\ICReinstall_ConnectifyInstaller_nonir__CB-DL-Manager.exe C:\Users\Laura\AppData\Local\Temp\JavaRa.exe C:\Users\Laura\AppData\Local\Temp\jli.dll C:\Users\Laura\AppData\Local\Temp\jre-7u51-windows-i586.exe C:\Users\Laura\AppData\Local\Temp\keytool.exe C:\Users\Laura\AppData\Local\Temp\mcf6mbii.dll C:\Users\Laura\AppData\Local\Temp\msvcr100.dll C:\Users\Laura\AppData\Local\Temp\node.exe C:\Users\Laura\AppData\Local\Temp\nsa7B36.exe C:\Users\Laura\AppData\Local\Temp\nsb3E73.exe C:\Users\Laura\AppData\Local\Temp\nsd2615.exe C:\Users\Laura\AppData\Local\Temp\nsd770E.exe C:\Users\Laura\AppData\Local\Temp\nsf2A5C.exe C:\Users\Laura\AppData\Local\Temp\nshD5B.exe C:\Users\Laura\AppData\Local\Temp\nsn42F8.exe C:\Users\Laura\AppData\Local\Temp\nsq52D8.exe C:\Users\Laura\AppData\Local\Temp\nsr2EE1.exe C:\Users\Laura\AppData\Local\Temp\nss576D.exe C:\Users\Laura\AppData\Local\Temp\nsu4848.exe C:\Users\Laura\AppData\Local\Temp\nsu5C02.exe C:\Users\Laura\AppData\Local\Temp\nsw72F6.exe C:\Users\Laura\AppData\Local\Temp\nswEB54.exe C:\Users\Laura\AppData\Local\Temp\RegClean7.exe C:\Users\Laura\AppData\Local\Temp\rte8ZkzJWp.exe C:\Users\Laura\AppData\Local\Temp\SP62765.exe C:\Users\Laura\AppData\Local\Temp\SP63285.exe C:\Users\Laura\AppData\Local\Temp\SP63317.exe C:\Users\Laura\AppData\Local\Temp\SP63342.exe C:\Users\Laura\AppData\Local\Temp\SP63343.exe C:\Users\Laura\AppData\Local\Temp\SP63344.exe C:\Users\Laura\AppData\Local\Temp\SP63346.exe C:\Users\Laura\AppData\Local\Temp\SP63353.exe C:\Users\Laura\AppData\Local\Temp\SP63357.exe C:\Users\Laura\AppData\Local\Temp\SP63752.exe C:\Users\Laura\AppData\Local\Temp\SP63805.exe C:\Users\Laura\AppData\Local\Temp\SP64039.exe C:\Users\Laura\AppData\Local\Temp\sp64126.exe C:\Users\Laura\AppData\Local\Temp\SP64202.exe C:\Users\Laura\AppData\Local\Temp\SP64571.exe C:\Users\Laura\AppData\Local\Temp\SP64726.exe C:\Users\Laura\AppData\Local\Temp\SP64741.exe C:\Users\Laura\AppData\Local\Temp\SP64854.exe C:\Users\Laura\AppData\Local\Temp\sqlite3.exe C:\Users\Laura\AppData\Local\Temp\sysad.exe C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite10002.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite10103.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite10156.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite10157.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite10209.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite10282.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite10350.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite10704.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite10754.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite10838.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite10845.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite10933.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite11043.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite11122.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite11229.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite11262.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite11326.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite11386.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite11549.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite11661.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite11854.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite11880.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite11890.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite11938.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite12004.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite12032.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite12098.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite12111.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite12272.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite12321.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite12326.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite12335.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite12445.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite12521.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite12540.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite12556.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite12591.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite12789.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite12873.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite12887.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite13137.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite13254.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite13621.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite13683.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite13854.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite13929.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite13972.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite13977.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite14014.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite14063.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite14093.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite14130.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite14227.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite14230.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite14533.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite14908.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite14986.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite14997.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite15116.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite15129.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite15143.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite15255.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite15398.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite15500.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite15587.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite15838.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite15879.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite15900.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite15957.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite16024.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite16059.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite16067.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite16071.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite16131.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite16183.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite16265.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite16368.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite16418.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite16467.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite16473.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite16475.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite16894.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite16942.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite16958.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite17158.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite17402.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite17470.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite17752.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite17774.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite17885.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite17902.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite17908.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite18028.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite18158.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite18325.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite18407.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite18417.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite18449.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite18500.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite18803.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite18845.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite18851.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite18932.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite19000.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite19121.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite19123.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite19126.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite19193.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite19483.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite19501.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite19537.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite19562.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite19632.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite19669.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite19703.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite19916.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite19991.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite20020.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite20169.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite20228.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite20520.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite20557.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite20962.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite20990.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite21019.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite21051.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite21104.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite21146.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite21197.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite21508.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite21750.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite21844.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite21986.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite22044.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite22084.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite22094.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite22199.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite22254.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite22320.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite22361.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite22424.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite22427.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite22482.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite22546.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite22563.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite22565.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite22652.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite22779.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite22860.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite23165.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite23523.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite23703.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite23762.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite23913.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite23933.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite23964.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite24060.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite24118.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite24258.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite24376.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite24535.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite24675.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite24700.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite24710.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite24720.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite24779.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite24820.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite25120.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite25314.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite25366.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite25391.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite25501.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite25537.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite25555.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite25689.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite25726.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite26069.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite26146.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite26556.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite26564.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite26742.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite26852.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite27004.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite27072.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite27158.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite27606.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite27911.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite27925.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite27999.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite28037.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite28074.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite28101.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite28226.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite28353.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite28397.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite28568.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite28672.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite28828.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite28948.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite29785.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite29815.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite29833.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite29839.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite29932.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite29957.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite29967.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite30036.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite30075.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite30310.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite30407.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite30750.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite30842.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite30916.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite31027.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite31071.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite31308.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite31428.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite31647.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite31667.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite31726.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite31773.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite31849.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite31854.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite32088.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite32241.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite32256.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite32395.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite32401.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite32493.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite32618.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite32768.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite32828.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite32881.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite32901.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite32908.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite33004.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite33074.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite33107.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite33160.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite33487.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite33732.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite33744.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite33765.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite33789.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite34023.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite34037.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite34115.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite34319.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite34507.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite34616.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite34691.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite34693.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite34737.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite34781.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite35054.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite35159.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite35190.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite35301.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite35391.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite35519.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite35573.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite35627.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite35642.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite35794.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite36010.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite36026.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite36027.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite36030.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite36174.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite36339.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite36350.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite36407.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite36766.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite36867.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite37131.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite37164.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite37181.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite37319.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite37698.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite37777.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite37877.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite38142.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite38208.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite38379.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite38426.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite38498.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite38527.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite38574.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite38759.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite38817.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite38907.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite38994.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite38996.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite39052.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite39114.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite39192.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite39364.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite39433.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite39484.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite39508.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite39529.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite39561.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite39578.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite39809.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite39871.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite39976.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite40066.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite40273.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite40314.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite40361.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite40388.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite40498.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite40606.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite40673.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite40696.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite40949.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite40997.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite41024.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite41144.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite41232.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite41261.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite41372.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite41416.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite41502.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite41561.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite41631.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite41660.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite41694.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite41701.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite41827.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite41838.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite41869.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite41897.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite41902.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite41947.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite42016.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite42045.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite42051.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite42253.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite42468.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite42652.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite42710.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite42725.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite42750.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite42787.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite42803.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite42849.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite43238.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite43258.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite43323.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite43498.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite43501.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite43510.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite43536.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite43636.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite43840.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite44043.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite44086.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite44178.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite44275.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite44358.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite44589.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite44619.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite44906.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite44922.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite44926.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite45031.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite45037.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite45112.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite45223.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite45267.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite45479.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite45480.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite45482.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite45492.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite45493.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite45857.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite46032.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite46182.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite46258.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite46460.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite46481.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite46737.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite46755.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite46781.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite46786.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite46990.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite47003.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite47051.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite47214.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite47390.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite47396.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite47553.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite47740.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite47894.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite48035.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite48044.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite48055.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite48149.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite48176.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite48457.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite48495.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite48532.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite48551.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite48573.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite48593.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite48596.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite48686.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite48799.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite48836.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite48974.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite49003.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite49089.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite49226.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite49275.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite49543.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite49579.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite49580.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite49712.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite49732.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite50001.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite50076.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite50130.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite50134.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite50369.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite50425.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite50582.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite50647.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite50666.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite50683.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite50803.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite50921.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite50987.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite51063.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite51221.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite51398.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite51447.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite51473.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite51591.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite51894.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite51971.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite52044.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite52304.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite52346.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite52401.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite52545.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite52561.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite52678.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite52682.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite52684.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite52823.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite52855.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite52881.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite52946.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite52962.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite52963.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite53012.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite53371.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite53425.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite53464.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite53516.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite53750.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite53912.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite53947.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite53992.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite54070.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite54338.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite54371.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite54388.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite54472.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite54498.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite54582.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite54663.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite54925.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite55117.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite55158.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite55177.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite55183.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite55242.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite55247.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite55506.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite55543.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite55575.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite55929.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite56049.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite56310.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite56380.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite56451.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite56535.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite56599.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite56961.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite56996.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite57066.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite57119.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite57142.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite57184.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite57355.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite57394.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite57500.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite57529.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite57615.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite57625.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite57704.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite58149.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite58244.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite58249.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite58297.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite58412.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite58639.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite58656.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite58666.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite58701.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite58933.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite59114.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite59203.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite59464.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite59486.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite59545.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite59573.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite59633.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite59670.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite59701.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite59789.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite59792.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite59936.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite60056.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite60071.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite60183.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite60211.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite60256.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite60258.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite60319.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite60472.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite60790.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite60793.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite60827.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite60999.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite61072.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite61154.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite61206.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite61417.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite61426.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite61465.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite61498.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite61500.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite61579.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite61690.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite61790.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite61964.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite62154.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite62232.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite62398.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite62428.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite62487.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite62501.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite62548.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite62663.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite62693.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite62767.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite62934.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite63019.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite63030.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite63142.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite63170.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite63256.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite63356.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite63470.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite63527.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite63669.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite63852.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite64165.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite64346.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite64917.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite64964.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite65121.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite65130.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite65135.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite65143.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite65182.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite65265.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite65285.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite65315.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite65328.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite65459.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite65463.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite65482.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite65488.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite65565.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite65598.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite65621.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite65844.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite65916.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite66134.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite66245.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite66328.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite66429.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite66435.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite66611.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite66719.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite66835.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite66886.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite66948.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite67078.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite67108.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite67229.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite67233.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite67240.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite67417.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite67463.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite67476.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite67493.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite67663.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite67810.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite67840.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite67950.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite67956.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite68158.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite68240.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite68261.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite68518.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite68525.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite68691.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite68915.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite69016.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite69056.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite69069.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite69129.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite69228.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite69235.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite69249.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite69309.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite69331.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite69381.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite69589.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite69938.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite70022.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite70098.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite70135.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite70158.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite70171.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite70230.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite70363.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite70436.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite70563.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite70653.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite70690.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite70790.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite70908.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite71012.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite71040.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite71446.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite71542.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite71614.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite71730.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite71777.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite71837.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite71948.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite71983.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite72380.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite72382.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite72460.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite72520.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite72573.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite72598.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite72761.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite72881.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite72888.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite73080.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite73246.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite73333.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite73340.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite73359.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite73451.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite73598.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite73606.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite73681.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite73730.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite73866.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite74122.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite74149.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite74214.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite74297.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite74344.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite74432.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite74458.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite74574.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite74647.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite74699.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite74827.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite74977.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite74995.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite75298.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite75299.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite75461.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite75508.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite75513.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite75576.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite75579.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite75591.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite75602.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite75603.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite75851.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite75865.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite76065.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite76180.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite76183.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite76200.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite76276.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite76359.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite76743.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite76746.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite76831.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite76908.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite76955.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite76971.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite76985.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite76998.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite77006.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite77022.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite77125.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite77234.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite77371.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite77577.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite77650.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite77852.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite77861.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite78073.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite78450.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite78681.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite78754.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite78759.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite78773.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite78890.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite78925.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite79049.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite79115.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite79145.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite79287.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite79295.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite79303.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite79353.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite79474.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite79478.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite79493.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite79656.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite79827.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite80062.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite80121.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite80136.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite80263.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite80276.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite80315.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite80645.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite80850.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite80853.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite80854.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite80930.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite81062.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite81079.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite81260.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite81367.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite81395.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite81417.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite81642.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite81665.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite81907.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite81943.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite81960.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite82235.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite82389.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite82410.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite82581.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite82748.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite82873.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite83024.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite83303.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite83321.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite83393.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite83442.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite83504.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite83837.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite84042.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite84117.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite84530.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite84685.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite84800.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite84859.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite84876.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite84951.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite84971.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite85001.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite85045.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite85447.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite85800.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite86017.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite86102.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite86359.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite86489.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite86659.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite86697.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite86701.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite86708.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite86750.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite86840.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite86852.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite86938.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite86968.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite87013.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite87016.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite87077.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite87198.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite87219.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite87334.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite87341.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite87465.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite87798.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite87889.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite88192.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite88236.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite88343.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite88370.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite88432.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite88565.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite88647.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite89038.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite89285.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite89490.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite89573.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite89609.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite89745.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite89811.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite89824.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite90010.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite90252.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite90348.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite90413.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite90503.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite90566.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite90727.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite90786.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite90791.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite91245.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite91313.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite91323.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite91464.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite91512.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite91529.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite91652.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite91755.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite91791.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite91924.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite92008.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite92045.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite92216.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite92283.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite92529.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite92665.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite92795.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite93038.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite93494.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite93684.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite93707.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite93724.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite93739.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite93772.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite93999.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite94088.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite94220.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite94316.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite94330.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite94447.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite94639.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite94987.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite95060.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite95313.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite95356.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite95449.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite95505.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite95567.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite95586.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite95675.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite95767.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite95966.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite96075.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite96131.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite96136.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite96201.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite96236.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite96282.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite96418.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite96449.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite96633.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite96697.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite96868.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite97031.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite97053.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite97118.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite97276.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite97333.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite97359.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite97486.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite97773.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite97788.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite97835.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite97960.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite98206.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite98220.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite98506.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite98533.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite98698.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite98770.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite98795.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite98901.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite98949.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite99847.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite99887.dll C:\Users\Laura\AppData\Local\Temp\UninstallHPSA.exe ==================== Bamital & volsnap Check ================= (There is no automatic fix for files that do not pass verification.) C:\Windows\System32\winlogon.exe => File is digitally signed C:\Windows\System32\wininit.exe => File is digitally signed C:\Windows\explorer.exe => File is digitally signed C:\Windows\SysWOW64\explorer.exe => File is digitally signed C:\Windows\System32\svchost.exe => File is digitally signed C:\Windows\SysWOW64\svchost.exe => File is digitally signed C:\Windows\System32\services.exe => File is digitally signed C:\Windows\System32\User32.dll => File is digitally signed C:\Windows\SysWOW64\User32.dll => File is digitally signed C:\Windows\System32\userinit.exe => File is digitally signed C:\Windows\SysWOW64\userinit.exe => File is digitally signed C:\Windows\System32\rpcss.dll => File is digitally signed C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed LastRegBack: 2015-02-12 16:34 ==================== End Of Log ============================ [/CODE] |
16.02.2015, 21:28 | #4 |
| Sicherheitshinweis bei Virenprogramm und Änderung ProxyEinstellungenCode:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 15-02-2015 Ran by Laura at 2015-02-16 22:21:35 Running from C:\Users\Laura\Desktop Boot Mode: Normal ========================================================== ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: Avira Desktop (Enabled - Up to date) {4D041356-F94D-285F-8768-AAE50FA36859} AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Avira Desktop (Enabled - Up to date) {F665F2B2-DF77-27D1-BDD8-9197742422E4} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) 1400 (x32 Version: 140.0.425.000 - Hewlett-Packard) Hidden 1400_Help (x32 Version: 82.0.242.000 - Hewlett-Packard) Hidden 1400Trb (x32 Version: 82.0.242.000 - Hewlett-Packard) Hidden 64 Bit HP CIO Components Installer (Version: 7.2.8 - Hewlett-Packard) Hidden 7-Zip 9.20 (x64 edition) (HKLM\...\{23170F69-40C1-2702-0920-000001000000}) (Version: 9.20.00.0 - Igor Pavlov) Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 16.0.0.245 - Adobe Systems Incorporated) Adobe Flash Player 16 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 16.0.0.305 - Adobe Systems Incorporated) Adobe Reader XI (11.0.10) - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AB0000000001}) (Version: 11.0.10 - Adobe Systems Incorporated) Adobe Shockwave Player 11.6 (HKLM-x32\...\Adobe Shockwave Player) (Version: 11.6.6.636 - Adobe Systems, Inc.) AIO_CDB_ProductContext (x32 Version: 140.0.425.000 - Hewlett-Packard) Hidden AIO_CDB_Software (x32 Version: 140.0.428.000 - Hewlett-Packard) Hidden AIO_Scan (x32 Version: 130.0.421.000 - Hewlett-Packard) Hidden AMD Catalyst Install Manager (HKLM\...\{3E4F8F22-14D3-074D-0A72-5EE998D3CFAB}) (Version: 8.0.915.0 - Advanced Micro Devices, Inc.) Ashampoo Burning Studio 2013 v.11.0.6 (HKLM-x32\...\{91B33C97-0FBA-74AE-E802-D782F5C8AA89}_is1) (Version: 11.0.6 - Ashampoo GmbH & Co. KG) Avira (HKLM-x32\...\{bd538030-07d4-4999-a525-7fafa2483f56}) (Version: 1.1.30.21727 - Avira Operations & Co. KG) Avira (x32 Version: 1.1.30.21727 - Avira Operations & Co. KG) Hidden Avira Free Antivirus (HKLM-x32\...\Avira AntiVir Desktop) (Version: 14.0.7.468 - Avira) Avira SearchFree Toolbar (HKLM-x32\...\{41564952-412D-5637-00A7-A758B70C1801}) (Version: 12.24.1.235 - APN, LLC) Bing Bar (HKLM-x32\...\{3365E735-48A6-4194-9988-CE59AC5AE503}) (Version: 7.3.132.0 - Microsoft Corporation) Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.) BrowserSafeguard with RocketTab (HKLM-x32\...\RocketTab) (Version: - BrowserSafeguard with RocketTab) <==== ATTENTION BufferChm (x32 Version: 140.0.298.000 - Hewlett-Packard) Hidden Canon Utilities CameraWindow DC 8 (HKLM-x32\...\CameraWindowDC) (Version: 8.10.3.23 - Canon Inc.) Canon Utilities ImageBrowser EX (HKLM-x32\...\ImageBrowser EX) (Version: 1.5.0.6 - Canon Inc.) Canon Utilities PhotoStitch (HKLM-x32\...\PhotoStitch) (Version: 3.1.23.47 - Canon Inc.) CCleaner (HKLM\...\CCleaner) (Version: 4.06 - Piriform) Connectify (HKLM\...\Connectify) (Version: 9.0.3.32290 - Connectify) Copy (x32 Version: 140.0.298.000 - Hewlett-Packard) Hidden CyberLink LabelPrint (HKLM-x32\...\InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243}) (Version: 2.5.5.6902 - CyberLink Corp.) CyberLink Media Suite 10 (HKLM-x32\...\InstallShield_{1FBF6C24-C1fD-4101-A42B-0C564F9E8E79}) (Version: 10.0.5.3606 - CyberLink Corp.) Cyberlink PhotoDirector (HKLM-x32\...\InstallShield_{39337565-330E-4ab6-A9AE-AC81E0720B10}) (Version: 3.0.2.4128 - CyberLink Corp.) CyberLink Power2Go 8 (HKLM-x32\...\InstallShield_{2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2}) (Version: 8.0.4.3202 - CyberLink Corp.) CyberLink PowerDirector 10 (HKLM-x32\...\InstallShield_{B0B4F6D2-F2AE-451A-9496-6F2F6A897B32}) (Version: 10.0.5.3304 - CyberLink Corp.) CyberLink PowerDVD (HKLM-x32\...\InstallShield_{DEC235ED-58A4-4517-A278-C41E8DAEAB3B}) (Version: 10.0.8.5511 - CyberLink Corp.) CyberLink YouCam (HKLM-x32\...\InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}) (Version: 3.5.6.6119 - CyberLink Corp.) D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden Destinations (x32 Version: 140.0.253.000 - Hewlett-Packard) Hidden DeviceDiscovery (x32 Version: 140.0.298.000 - Hewlett-Packard) Hidden DMUninstaller (HKLM-x32\...\DMUninstaller) (Version: - ) <==== ATTENTION DocProc (x32 Version: 140.0.185.000 - Hewlett-Packard) Hidden Dropbox (HKU\S-1-5-21-2764708345-627995945-2754369203-1001\...\Dropbox) (Version: 3.2.6 - Dropbox, Inc.) Energy Star (HKLM-x32\...\{FC0ADA4D-8FA5-4452-8AFF-F0A0BAC97EF7}) (Version: 1.0.9 - Hewlett-Packard Company) Fax (x32 Version: 140.0.307.000 - Hewlett-Packard) Hidden Fotogalerie (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Free AVI Video Converter version 5.0.46.820 (HKLM-x32\...\Free AVI Video Converter_is1) (Version: 5.0.46.820 - DVDVideoSoft Ltd.) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 40.0.2214.111 - Google Inc.) Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden Google Update Helper (x32 Version: 1.3.26.9 - Google Inc.) Hidden Google+ Auto Backup (HKLM-x32\...\{D4C4A751-F7F3-4DCA-B825-9AC391BFFC3F}) (Version: 1.0.19.76 - Google) GPBaseService2 (x32 Version: 140.0.297.000 - Hewlett-Packard) Hidden HP 3D DriveGuard (HKLM\...\{AB5BCC55-18E2-46C7-9405-FF61CB888F05}) (Version: 4.2.9.1 - Hewlett-Packard Company) HP Connected Music (Meridian - installer) (HKLM-x32\...\StartHPConnectedMusic) (Version: 1.0 - Meridian Audio Ltd) HP Connected Music (Meridian - player) (HKU\S-1-5-21-2764708345-627995945-2754369203-1001\...\HPConnectedMusic) (Version: 1.1 (build 59) hp - Meridian Audio Ltd) HP CoolSense (HKLM-x32\...\{59F8C5AA-91BD-423D-BF05-09A80F39898F}) (Version: 2.10.62 - Hewlett-Packard Company) HP Customer Participation Program 14.0 (HKLM\...\HPExtendedCapabilities) (Version: 14.0 - HP) HP Documentation (HKLM-x32\...\{F2481209-98FE-4943-8903-90D19E1B7062}) (Version: 1.2.0.0 - Hewlett-Packard) HP Imaging Device Functions 14.0 (HKLM\...\HP Imaging Device Functions) (Version: 14.0 - HP) HP Photosmart Officejet and Deskjet All-In-One Driver Software (HKLM\...\{6F5B70F0-EA6C-4A5B-BB16-8390BD66B251}) (Version: 14.0 - HP) HP Quick Start (HKLM-x32\...\{BB27C290-AB30-4D9E-A5D1-88745AAE42E9}) (Version: 1.0.4660.30220 - Hewlett-Packard) HP Registration Service (HKLM\...\{D1E8F2D7-7794-4245-B286-87ED86C1893C}) (Version: 1.2.6317.4309 - Hewlett-Packard) HP Solution Center 14.0 (HKLM\...\HP Solution Center & Imaging Support Tools) (Version: 14.0 - HP) HP System Event Utility (HKLM-x32\...\{C78E8F51-3EAD-4F0C-83F0-EF371075E0B4}) (Version: 1.0.10 - Hewlett-Packard Company) HP Update (HKLM-x32\...\{B0069CFA-5BB9-4C03-B1C6-89CE290E5AFE}) (Version: 5.002.006.003 - Hewlett-Packard) HP Utility Center (HKLM\...\{73237EBB-B26F-4628-8754-4EFE563D72E9}) (Version: 2.1.5 - Hewlett-Packard Company) HP Wireless Button Driver (HKLM-x32\...\{30B2D1D8-0A07-4B71-9553-0710C5D31E35}) (Version: 1.1.2.1 - Hewlett-Packard Company) HPPhotoGadget (x32 Version: 140.0.524.000 - Hewlett-Packard) Hidden HPProductAssistant (x32 Version: 140.0.298.000 - Hewlett-Packard) Hidden HPSSupply (x32 Version: 140.0.297.000 - Hewlett-Packard) Hidden Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 9.5.13.1706 - Intel Corporation) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.3316 - Intel Corporation) Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 12.8.1.1000 - Intel Corporation) Intel(R) SDK for OpenCL - CPU Only Runtime Package (HKLM-x32\...\{FCB3772C-B7D0-4933-B1A9-3707EBACC573}) (Version: 3.0.0.63463 - Intel Corporation) Java 7 Update 51 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83217051FF}) (Version: 7.0.510 - Oracle) Linkey (HKU\S-1-5-21-2764708345-627995945-2754369203-1001\...\Linkey) (Version: 0.0.0.491 - Aztec Media Inc) <==== ATTENTION MarketResearch (x32 Version: 140.0.299.000 - Hewlett-Packard) Hidden Mein CEWE FOTOBUCH (HKLM-x32\...\Mein CEWE FOTOBUCH) (Version: 5.1.7 - CEWE Stiftung u Co. KGaA) Microsoft Office Home and Student 2013 - de-de (HKLM\...\HomeStudentRetail - de-de) (Version: 15.0.4675.1003 - Microsoft Corporation) Microsoft Silverlight (HKLM-x32\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation) Microsoft SkyDrive (HKU\S-1-5-21-2764708345-627995945-2754369203-1001\...\SkyDriveSetup.exe) (Version: 17.0.2015.0811 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation) Microsoft Visual Studio 2010-Tools für Office-Laufzeit (x64) Language Pack - DEU (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - DEU) (Version: 10.0.50903 - Microsoft Corporation) Movie Maker (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden Mozilla Firefox 35.0.1 (x86 de) (HKLM-x32\...\Mozilla Firefox 35.0.1 (x86 de)) (Version: 35.0.1 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 29.0 - Mozilla) myphotobook.de (HKLM-x32\...\de.myphotobook.creator.001F9DF2D0BAABEB11F42CCEE43224607B61109C.1) (Version: 1.6.1.1049 - myphotobook GmbH) myphotobook.de (x32 Version: 1.6.1 - myphotobook GmbH) Hidden Network64 (Version: 140.0.306.000 - Hewlett-Packard) Hidden OCR Software by I.R.I.S. 14.0 (HKLM\...\HPOCR) (Version: 14.0 - HP) OEM Application Profile (HKLM-x32\...\{70D5F822-F4C4-33D9-7EEC-2A4AF4EA7BDC}) (Version: 1.00.0000 - Ihr Firmenname) OEM Application Profile (HKLM-x32\...\{C89A97B6-F991-EBB5-77B7-927BCF420EBE}) (Version: 1.00.0000 - Ihr Firmenname) Office 15 Click-to-Run Extensibility Component (x32 Version: 15.0.4615.1002 - Microsoft Corporation) Hidden Office 15 Click-to-Run Licensing Component (Version: 15.0.4615.1002 - Microsoft Corporation) Hidden Office 15 Click-to-Run Localization Component (x32 Version: 15.0.4615.1002 - Microsoft Corporation) Hidden OnlineFotoservice (HKLM-x32\...\OnlineFotoservice) (Version: 6.0.1 - CEWE Stiftung u Co. KGaA) OpenVPN 2.3.3-I001 (HKLM-x32\...\OpenVPN) (Version: 2.3.3-I001 - ) PDF24 Creator 6.2.0 (HKLM-x32\...\{81A6F461-0DBA-4F12-B56F-0E977EC10576}_is1) (Version: - PDF24.org) Picasa 3 (HKLM-x32\...\Picasa 3) (Version: 3.9 - Google, Inc.) PX Profile Update (x32 Version: 1.00.1. - AMD) Hidden Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 8.20.815.2013 - Realtek) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7010 - Realtek Semiconductor Corp.) Realtek PCIE Card Reader (HKLM-x32\...\{BCDA54F6-C4B6-4519-A09E-FA064A6B4098}) (Version: 1.1.9200.007 - Realtek Semiconductor Corp.) REALTEK Wireless LAN Driver (HKLM-x32\...\{A5107464-AA9B-4177-8129-5FF2F42DD322}) (Version: 1.00.12.0906 - REALTEK Semiconductor Corp.) Scan (x32 Version: 140.0.253.000 - Hewlett-Packard) Hidden Settings Manager (HKLM-x32\...\Settings Manager) (Version: 5.0.0.13800 - Aztec Media Inc) <==== ATTENTION Shop for HP Supplies (HKLM\...\Shop for HP Supplies) (Version: 14.0 - HP) Skype Click to Call (HKLM-x32\...\{6D1221A9-17BF-4EC0-81F2-27D30EC30701}) (Version: 7.3.16540.9015 - Microsoft Corporation) Skype™ 6.20 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 6.20.104 - Skype Technologies S.A.) SolutionCenter (x32 Version: 140.0.299.000 - Hewlett-Packard) Hidden Status (x32 Version: 140.0.342.000 - Hewlett-Packard) Hidden swMSM (x32 Version: 12.0.0.1 - Adobe Systems, Inc) Hidden Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 17.0.6.2 - Synaptics Incorporated) TAP-Windows 9.9.2 (HKLM\...\TAP-Windows) (Version: 9.9.2 - ) Toolbox (x32 Version: 140.0.596.000 - Hewlett-Packard) Hidden TrayApp (x32 Version: 140.0.297.000 - Hewlett-Packard) Hidden WebReg (x32 Version: 140.0.297.017 - Hewlett-Packard) Hidden Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3505.0912 - Microsoft Corporation) WinRAR 5.00 (64-Bit) (HKLM\...\WinRAR archiver) (Version: 5.00.0 - win.rar GmbH) WinZipper (HKLM-x32\...\WinZipper) (Version: 1.4.8 - Taiwan Shui Mu Chih Ching Technology Limited.) <==== ATTENTION ==================== Custom CLSID (selected items): ========================== (If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.) CustomCLSID: HKU\S-1-5-21-2764708345-627995945-2754369203-1001_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\Laura\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2764708345-627995945-2754369203-1001_Classes\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}\InprocServer32 -> C:\Users\Laura\AppData\Local\Microsoft\SkyDrive\17.0.2015.0811\amd64\SkyDriveShell64.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-2764708345-627995945-2754369203-1001_Classes\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524}\InprocServer32 -> C:\Users\Laura\AppData\Local\Microsoft\SkyDrive\17.0.2015.0811\amd64\SkyDriveShell64.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-2764708345-627995945-2754369203-1001_Classes\CLSID\{CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B}\InprocServer32 -> C:\Users\Laura\AppData\Local\Microsoft\SkyDrive\17.0.2015.0811\amd64\SkyDriveShell64.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-2764708345-627995945-2754369203-1001_Classes\CLSID\{ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C}\InprocServer32 -> C:\Users\Laura\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2764708345-627995945-2754369203-1001_Classes\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A}\InprocServer32 -> C:\Users\Laura\AppData\Local\Microsoft\SkyDrive\17.0.2015.0811\amd64\SkyDriveShell64.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-2764708345-627995945-2754369203-1001_Classes\CLSID\{F8071786-1FD0-4A66-81A1-3CBE29274458}\InprocServer32 -> C:\Users\Laura\AppData\Local\Microsoft\SkyDrive\17.0.2015.0811\amd64\FileSyncApi64.dll (Microsoft Corporation) CustomCLSID: HKU\S-1-5-21-2764708345-627995945-2754369203-1001_Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Laura\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2764708345-627995945-2754369203-1001_Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Laura\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2764708345-627995945-2754369203-1001_Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Laura\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2764708345-627995945-2754369203-1001_Classes\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Laura\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2764708345-627995945-2754369203-1001_Classes\CLSID\{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Laura\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2764708345-627995945-2754369203-1001_Classes\CLSID\{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Laura\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2764708345-627995945-2754369203-1001_Classes\CLSID\{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Laura\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2764708345-627995945-2754369203-1001_Classes\CLSID\{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Laura\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.) ==================== Restore Points ========================= 11-02-2015 21:19:20 Windows Update 15-02-2015 13:25:00 Windows Update ==================== Hosts content: ========================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2013-08-22 15:25 - 2013-08-22 15:25 - 00000824 ____A C:\WINDOWS\system32\Drivers\etc\hosts ==================== Scheduled Tasks (whitelisted) ============= (If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.) Task: {100140EE-9145-406B-B250-661002FC2384} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [2014-11-04] (Microsoft Corporation) Task: {22BE3DA2-F200-46B7-A0D7-46215A478270} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2015-02-11] (Microsoft Corporation) Task: {2A53CB43-5359-428D-8BE5-878B8B4F0714} - \Desk 365 RunAsStdUser No Task File <==== ATTENTION Task: {3B7253F5-387F-4F74-8020-AFEE9E674D3E} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2014-12-19] (Adobe Systems Incorporated) Task: {3C3F9328-50EA-46BF-963A-90E157A51FB2} - System32\Tasks\MirageAgent => C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe Task: {50A96DE2-2186-4831-B3E4-95F198475DCE} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2013-09-19] (Piriform Ltd) Task: {546DF17A-1B7A-4A18-8994-25022E5A997A} - \Omiga Plus RunAsStdUser No Task File <==== ATTENTION Task: {6164EB9C-F96C-402C-85BD-123AC5E1EDFA} - \Plus-HD-2.6-enabler No Task File <==== ATTENTION Task: {61B79786-E40E-48BF-80D3-664F0CC4449E} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe Task: {6DF09731-F6C3-4363-AEC9-8BB9D95BE1F4} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-09-11] (Google Inc.) Task: {785FE7C6-0172-4DBB-9209-117146B3F277} - \Plus-HD-2.6-updater No Task File <==== ATTENTION Task: {7D4E9958-2B99-413C-976A-834BA21D4FC9} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker_DeviceScan => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe Task: {948FFC1E-FD64-4DE8-A747-3631B0673A6C} - System32\Tasks\CLMLSvc_P2G8 => C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe [2013-08-05] (CyberLink) Task: {AA1BE275-AA60-4C5E-A107-38779DB681F6} - System32\Tasks\RocketTab Update Task => C:\Program Files (x86)\Search Extensions\uninstall.exe [2014-11-05] () <==== ATTENTION Task: {AC8AA130-3925-4664-A2E4-2646657FF58E} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-09-11] (Google Inc.) Task: {B24E647F-C83A-4EE5-BF66-965E732F9B45} - System32\Tasks\CLVDLauncher => C:\Program Files (x86)\CyberLink\Power2Go8\CLVDLauncher.exe [2013-03-12] (CyberLink Corp.) Task: {CE591B9F-E73C-4CD1-8E6A-86467CC5C521} - System32\Tasks\HPCeeScheduleForLaura => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [2010-09-13] (Hewlett-Packard) Task: {D1E13CCA-9393-4ED1-9BF8-B19212344CAE} - \Plus-HD-2.6-codedownloader No Task File <==== ATTENTION Task: {D2B447B7-9F87-4C15-B287-4B3237ED4D4C} - System32\Tasks\Hewlett-Packard\HP CoolSense\HP CoolSense Start at Logon => C:\Program Files (x86)\Hewlett-Packard\HP CoolSense\CoolSense.exe [2012-11-05] (Hewlett-Packard Development Company, L.P.) Task: {E10B5B2F-5CB8-4123-85C0-999A9744E6D9} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-02-04] (Adobe Systems Incorporated) Task: {F9CC7424-2F78-46AE-857F-ABD652FEDAED} - System32\Tasks\RocketTab => cmd.exe /C start "" "C:\Program Files (x86)\Search Extensions\Client.exe" /Preferred=true <==== ATTENTION Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\HPCeeScheduleForLaura.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe Task: C:\WINDOWS\Tasks\Synaptics TouchPad Enhancements.job => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe Task: C:\WINDOWS\Tasks\WebReg HP PSC 1400 series.job => C:\Program Files (x86)\HP\Digital Imaging\bin\hpqwrg.exe ==================== Loaded Modules (whitelisted) ============== 2014-03-21 14:36 - 2014-05-20 08:19 - 00105640 _____ () C:\Program Files\Microsoft Office 15\ClientX64\ApiClient.dll 2014-11-05 08:25 - 2014-11-05 08:25 - 05751528 _____ () C:\Program Files (x86)\Search Extensions\Client.exe 2013-10-04 00:42 - 2013-10-04 00:42 - 00094208 _____ () C:\Windows\System32\IccLibDll_x64.dll 2014-08-13 15:36 - 2014-04-08 09:13 - 00069120 _____ () C:\Program Files (x86)\Canon\ImageBrowser EX\MFManager.exe 2014-11-25 09:00 - 2014-11-25 09:00 - 00183296 _____ () C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20689_x64__8wekyb3d8bbwe\ErrorReporting.dll 2014-08-18 15:47 - 2014-07-28 20:18 - 00392480 _____ () C:\Program Files (x86)\Connectify\NativeLibrary.dll 2014-08-18 15:47 - 2014-07-28 20:18 - 00714016 _____ () C:\Program Files (x86)\Connectify\log4cplus.dll 2014-08-18 15:47 - 2014-07-28 20:18 - 03186464 _____ () C:\Program Files (x86)\Connectify\ConnectifyNAT.dll 2014-08-18 15:47 - 2014-07-28 20:18 - 00354080 _____ () C:\Program Files (x86)\Connectify\LibDispatch.dll 2013-12-11 16:20 - 2013-12-11 16:20 - 01242584 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll 2014-08-13 15:36 - 2014-04-08 09:08 - 00112128 _____ () C:\Program Files (x86)\Canon\ImageBrowser EX\MFMFileSystemWatcher.dll 2014-11-22 18:38 - 2014-11-22 18:38 - 00316576 _____ () C:\Program Files\Microsoft Office 15\root\office15\AppVIsvStream32.dll 2015-02-10 23:00 - 2015-02-10 23:00 - 00750080 _____ () C:\Users\Laura\AppData\Roaming\Dropbox\bin\libGLESv2.dll 2015-02-16 21:04 - 2015-02-16 21:04 - 00043008 _____ () c:\users\laura\appdata\local\temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmp7vhgct.dll 2015-02-10 23:00 - 2015-02-10 23:00 - 00047616 _____ () C:\Users\Laura\AppData\Roaming\Dropbox\bin\libEGL.dll 2015-02-10 23:00 - 2015-02-10 23:00 - 00865280 _____ () C:\Users\Laura\AppData\Roaming\Dropbox\bin\plugins\platforms\qwindows.dll 2015-02-10 23:00 - 2015-02-10 23:00 - 00200704 _____ () C:\Users\Laura\AppData\Roaming\Dropbox\bin\plugins\imageformats\qjpeg.dll 2013-12-11 16:53 - 2013-08-05 09:49 - 00627672 _____ () C:\Program Files (x86)\CyberLink\Power2Go8\CLMediaLibrary.dll 2013-08-05 16:48 - 2013-08-05 16:48 - 00016856 _____ () C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvcPS.dll 2015-01-27 16:50 - 2015-01-27 16:50 - 03925104 _____ () C:\Program Files (x86)\Mozilla Firefox\mozjs.dll 2015-02-06 21:49 - 2015-02-04 11:02 - 01117512 _____ () C:\Program Files (x86)\Google\Chrome\Application\40.0.2214.111\libglesv2.dll 2015-02-06 21:49 - 2015-02-04 11:02 - 00211272 _____ () C:\Program Files (x86)\Google\Chrome\Application\40.0.2214.111\libegl.dll 2015-02-06 21:49 - 2015-02-04 11:02 - 09170760 _____ () C:\Program Files (x86)\Google\Chrome\Application\40.0.2214.111\pdf.dll ==================== Alternate Data Streams (whitelisted) ========= (If an entry is included in the fixlist, only the Alternate Data Streams will be removed.) AlternateDataStreams: C:\Users\Laura\SkyDrive:ms-properties AlternateDataStreams: C:\Users\Laura\SkyDrive.old:ms-properties ==================== Safe Mode (whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) ==================== EXE Association (whitelisted) =============== (If an entry is included in the fixlist, the default will be restored. None default entries will be removed.) ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-2764708345-627995945-2754369203-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Laura\AppData\Roaming\Microsoft\Windows Photo Viewer\Hintergrundbild der Windows-Fotoanzeige.jpg DNS Servers: 192.168.1.1 ==================== MSCONFIG/TASK MANAGER disabled items == (Currently there is no automatic fix for this section.) HKLM\...\StartupApproved\StartupFolder: => "HP Digital Imaging Monitor.lnk" HKLM\...\StartupApproved\Run32: => "IminentMessenger" HKLM\...\StartupApproved\Run32: => "Iminent" HKU\S-1-5-21-2764708345-627995945-2754369203-1001\...\StartupApproved\Run: => "SkyDrive" ==================== Accounts: ============================= Administrator (S-1-5-21-2764708345-627995945-2754369203-500 - Administrator - Disabled) Gast (S-1-5-21-2764708345-627995945-2754369203-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-2764708345-627995945-2754369203-1005 - Limited - Enabled) Laura (S-1-5-21-2764708345-627995945-2754369203-1001 - Administrator - Enabled) => C:\Users\Laura ==================== Faulty Device Manager Devices ============= ==================== Event log errors: ========================= Application errors: ================== Error: (02/16/2015 09:07:31 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Programm LiveComm.exe, Version 17.5.9600.20689 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: 1664 Startzeit: 01d04a1b149a33d7 Endzeit: 4294967295 Anwendungspfad: C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20689_x64__8wekyb3d8bbwe\LiveComm.exe Berichts-ID: 0bc1b691-b60f-11e4-bf0f-a45d366d5ab4 Vollständiger Name des fehlerhaften Pakets: microsoft.windowscommunicationsapps_17.5.9600.20689_x64__8wekyb3d8bbwe Anwendungs-ID, die relativ zum fehlerhaften Paket ist: ppleae38af2e007f4358a809ac99a64a67c1 Error: (02/16/2015 00:12:42 AM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 15281 Error: (02/16/2015 00:12:42 AM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledEvent 15281 Error: (02/16/2015 00:12:42 AM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: Continuously busy for more than a second Error: (02/16/2015 00:08:34 AM) (Source: ATIeRecord) (EventID: 16386) (User: ) Description: ATI EEU Client has failed to start Error: (02/15/2015 11:06:18 AM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Programm LiveComm.exe, Version 17.5.9600.20689 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: 1724 Startzeit: 01d048fded1f4041 Endzeit: 4294967295 Anwendungspfad: C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20689_x64__8wekyb3d8bbwe\LiveComm.exe Berichts-ID: e1937c88-b4f1-11e4-bf0d-a45d366d5ab4 Vollständiger Name des fehlerhaften Pakets: microsoft.windowscommunicationsapps_17.5.9600.20689_x64__8wekyb3d8bbwe Anwendungs-ID, die relativ zum fehlerhaften Paket ist: ppleae38af2e007f4358a809ac99a64a67c1 Error: (02/15/2015 11:00:33 AM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 66698797 Error: (02/15/2015 11:00:33 AM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledEvent 66698797 Error: (02/15/2015 11:00:33 AM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: Continuously busy for more than a second Error: (02/12/2015 07:11:35 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: LAURA-HP) Description: Bei der Aktivierung der App „microsoft.windowscommunicationsapps_8wekyb3d8bbwe!ppleae38af2e007f4358a809ac99a64a67c1“ ist folgender Fehler aufgetreten: -2144927141. Weitere Informationen finden Sie im Protokoll „Microsoft-Windows-TWinUI/Betriebsbereit“. System errors: ============= Error: (02/16/2015 00:12:11 AM) (Source: DCOM) (EventID: 10010) (User: LAURA-HP) Description: {4545DEA0-2DFC-4906-A728-6D986BA399A9} Error: (02/16/2015 00:12:11 AM) (Source: DCOM) (EventID: 10010) (User: LAURA-HP) Description: {4545DEA0-2DFC-4906-A728-6D986BA399A9} Error: (02/16/2015 00:12:01 AM) (Source: DCOM) (EventID: 10010) (User: LAURA-HP) Description: {4AA0A5C4-1B9B-4F2E-99D7-99C6AEC83474} Error: (02/16/2015 00:12:01 AM) (Source: DCOM) (EventID: 10010) (User: LAURA-HP) Description: {4545DEA0-2DFC-4906-A728-6D986BA399A9} Error: (02/16/2015 00:12:01 AM) (Source: DCOM) (EventID: 10010) (User: LAURA-HP) Description: {4545DEA0-2DFC-4906-A728-6D986BA399A9} Error: (02/16/2015 00:11:57 AM) (Source: DCOM) (EventID: 10010) (User: LAURA-HP) Description: {4AA0A5C4-1B9B-4F2E-99D7-99C6AEC83474} Error: (02/15/2015 11:50:39 PM) (Source: Service Control Manager) (EventID: 7022) (User: ) Description: Der Dienst "Intel(R) Management and Security Application Local Management Service" wurde nicht richtig gestartet. Error: (02/14/2015 00:14:43 AM) (Source: DCOM) (EventID: 10010) (User: LAURA-HP) Description: {9BA05972-F6A8-11CF-A442-00A0C90A8F39} Error: (02/12/2015 07:11:29 PM) (Source: DCOM) (EventID: 10010) (User: LAURA-HP) Description: Microsoft.WindowsLive.Mail.AppXj3e9v0xw9sf8t58nqr15tqqb2yq4zsfg.mca Error: (02/12/2015 07:11:29 PM) (Source: DCOM) (EventID: 10010) (User: LAURA-HP) Description: Microsoft.WindowsLive.Mail.AppXj3e9v0xw9sf8t58nqr15tqqb2yq4zsfg.mca Microsoft Office Sessions: ========================= Error: (02/16/2015 09:07:31 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: LiveComm.exe17.5.9600.20689166401d04a1b149a33d74294967295C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20689_x64__8wekyb3d8bbwe\LiveComm.exe0bc1b691-b60f-11e4-bf0f-a45d366d5ab4microsoft.windowscommunicationsapps_17.5.9600.20689_x64__8wekyb3d8bbweppleae38af2e007f4358a809ac99a64a67c1 Error: (02/16/2015 00:12:42 AM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 15281 Error: (02/16/2015 00:12:42 AM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledEvent 15281 Error: (02/16/2015 00:12:42 AM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: Continuously busy for more than a second Error: (02/16/2015 00:08:34 AM) (Source: ATIeRecord) (EventID: 16386) (User: ) Description: Error: (02/15/2015 11:06:18 AM) (Source: Application Hang) (EventID: 1002) (User: ) Description: LiveComm.exe17.5.9600.20689172401d048fded1f40414294967295C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20689_x64__8wekyb3d8bbwe\LiveComm.exee1937c88-b4f1-11e4-bf0d-a45d366d5ab4microsoft.windowscommunicationsapps_17.5.9600.20689_x64__8wekyb3d8bbweppleae38af2e007f4358a809ac99a64a67c1 Error: (02/15/2015 11:00:33 AM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 66698797 Error: (02/15/2015 11:00:33 AM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledEvent 66698797 Error: (02/15/2015 11:00:33 AM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: Continuously busy for more than a second Error: (02/12/2015 07:11:35 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: LAURA-HP) Description: microsoft.windowscommunicationsapps_8wekyb3d8bbwe!ppleae38af2e007f4358a809ac99a64a67c1-2144927141 CodeIntegrity Errors: =================================== Date: 2015-02-12 16:23:06.754 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\services.exe) attempted to load \Device\HarddiskVolume4\Program Files (x86)\Settings Manager\smdmf\x64\sysapcrt.dll that did not meet the Windows signing level requirements. Date: 2015-02-12 16:23:06.660 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\services.exe) attempted to load \Device\HarddiskVolume4\Program Files (x86)\Settings Manager\smdmf\sysapcrt.dll that did not meet the Windows signing level requirements. Date: 2015-02-11 21:35:13.202 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume4\Program Files (x86)\Settings Manager\smdmf\x64\sysapcrt.dll that did not meet the Windows signing level requirements. Date: 2015-02-11 21:35:12.875 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume4\Program Files (x86)\Settings Manager\smdmf\sysapcrt.dll that did not meet the Windows signing level requirements. Date: 2015-02-07 09:25:49.950 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume4\Program Files (x86)\Settings Manager\smdmf\x64\sysapcrt.dll that did not meet the Windows signing level requirements. Date: 2015-02-07 09:25:49.557 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume4\Program Files (x86)\Settings Manager\smdmf\sysapcrt.dll that did not meet the Windows signing level requirements. Date: 2015-01-31 08:44:56.343 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\services.exe) attempted to load \Device\HarddiskVolume4\Program Files (x86)\Settings Manager\smdmf\x64\sysapcrt.dll that did not meet the Windows signing level requirements. Date: 2015-01-31 08:44:56.251 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\services.exe) attempted to load \Device\HarddiskVolume4\Program Files (x86)\Settings Manager\smdmf\sysapcrt.dll that did not meet the Windows signing level requirements. Date: 2015-01-27 17:50:46.514 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume4\Program Files (x86)\Settings Manager\smdmf\x64\sysapcrt.dll that did not meet the Windows signing level requirements. Date: 2015-01-27 17:50:46.233 Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume4\Program Files (x86)\Settings Manager\smdmf\sysapcrt.dll that did not meet the Windows signing level requirements. ==================== Memory info =========================== Processor: Intel(R) Core(TM) i5-3230M CPU @ 2.60GHz Percentage of memory in use: 34% Total physical RAM: 8084.27 MB Available physical RAM: 5258.27 MB Total Pagefile: 9364.27 MB Available Pagefile: 5866.3 MB Total Virtual: 131072 MB Available Virtual: 131071.79 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:911.61 GB) (Free:731.34 GB) NTFS ==>[System with boot components (obtained from reading drive)] Drive d: (RECOVERY) (Fixed) (Total:18.79 GB) (Free:1.85 GB) NTFS ==>[System with boot components (obtained from reading drive)] ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (Size: 931.5 GB) (Disk ID: D7B7FC70) Partition: GPT Partition Type. ==================== End Of Log ============================ |
16.02.2015, 21:53 | #5 |
/// TB-Ausbilder | Sicherheitshinweis bei Virenprogramm und Änderung ProxyEinstellungen Lade Dir bitte von hier Revo Uninstaller (alternativ portable Revo Uninstaller) herunter.
Downloade Dir bitte AdwCleaner auf deinen Desktop.
Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
Downloade Dir bitte Malwarebytes Anti-Malware
Starte noch einmal FRST.
__________________ Lerne, zurück zu schlagen und unterstütze uns! TB Akademie | Spende | Lob & Kritik |
16.02.2015, 23:12 | #6 |
| Sicherheitshinweis bei Virenprogramm und Änderung ProxyEinstellungen 1, AdwCleaner Code:
ATTFilter # AdwCleaner v4.110 - Bericht erstellt 16/02/2015 um 23:15:01 # Aktualisiert 05/02/2015 von Xplode # Datenbank : 2015-02-14.2 [Server] # Betriebssystem : Windows 8.1 (x64) # Benutzername : Laura - LAURA-HP # Gestarted von : C:\Users\Laura\Desktop\AdwCleaner_4.110.exe # Option : Löschen ***** [ Dienste ] ***** Dienst Gelöscht : APNMCP ***** [ Dateien / Ordner ] ***** Ordner Gelöscht : C:\ProgramData\apn Ordner Gelöscht : C:\ProgramData\AskPartnerNetwork Ordner Gelöscht : C:\Program Files (x86)\AskPartnerNetwork Ordner Gelöscht : C:\Program Files (x86)\IminentToolbar Ordner Gelöscht : C:\Program Files (x86)\Search Extensions Ordner Gelöscht : C:\Users\Laura\AppData\Local\Temp\apn Ordner Gelöscht : C:\Users\Laura\AppData\Local\Temp\Iminent Ordner Gelöscht : C:\Users\Laura\AppData\Local\AskPartnerNetwork Ordner Gelöscht : C:\Users\Laura\AppData\LocalLow\IminentToolbar Ordner Gelöscht : C:\Users\Laura\AppData\Roaming\FirefoxToolbar Ordner Gelöscht : C:\Users\Laura\AppData\Roaming\IminentToolbar Ordner Gelöscht : C:\Users\Laura\AppData\Roaming\OpenCandy Ordner Gelöscht : C:\Users\Laura\AppData\Roaming\Systweak Ordner Gelöscht : C:\Users\Laura\AppData\Roaming\RHEng Ordner Gelöscht : C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\aaaaacalgebmfelllfiaoknifldpngjh Ordner Gelöscht : C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\mpfeggemggokijeahnacacopejaabljl [/!\] Nicht Gelöscht ( Junction ) : C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\mpfeggemggokijeahnacacopejaabljl Datei Gelöscht : C:\WINDOWS\System32\roboot64.exe Datei Gelöscht : C:\Users\Laura\AppData\Local\mysearchdial_speedial_v9.0.2.crx Datei Gelöscht : C:\Users\Laura\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Goodgame Empire.lnk Datei Gelöscht : C:\Users\Laura\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Goodgame Empire.lnk Datei Gelöscht : C:\Users\Laura\AppData\Roaming\Mozilla\Firefox\Profiles\v39o8gjd.default\invalidprefs.js Datei Gelöscht : C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\default-search.xml Datei Gelöscht : C:\Users\Laura\AppData\Roaming\Mozilla\Firefox\Profiles\v39o8gjd.default\searchplugins\iminent.xml Datei Gelöscht : C:\Users\Laura\AppData\Roaming\Mozilla\Firefox\Profiles\v39o8gjd.default\user.js Datei Gelöscht : C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_igdhbblpcellaljokkpfhcjlagemhgjl_0.localstorage Datei Gelöscht : C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_search.conduit.com_0.localstorage Datei Gelöscht : C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_search.conduit.com_0.localstorage-journal Datei Gelöscht : C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.superfish.com_0.localstorage Datei Gelöscht : C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.superfish.com_0.localstorage-journal Datei Gelöscht : C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_www.superfish.com_0.localstorage Datei Gelöscht : C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_www.superfish.com_0.localstorage-journal ***** [ Geplante Tasks ] ***** Task Gelöscht : Desk 365 RunAsStdUser Task Gelöscht : Omiga Plus RunAsStdUser ***** [ Verknüpfungen ] ***** ***** [ Registrierungsdatenbank ] ***** Schlüssel Gelöscht : HKLM\SOFTWARE\Google\Chrome\Extensions\aaaaacalgebmfelllfiaoknifldpngjh Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Google\Chrome\Extensions\aaaaacalgebmfelllfiaoknifldpngjh Schlüssel Gelöscht : HKLM\SOFTWARE\Google\Chrome\Extensions\fpmeembnagmagppkgghhfjfdfajdfcah Schlüssel Gelöscht : HKCU\Software\MICROSOFT\INTERNET EXPLORER\DOMSTORAGE\superfish.com Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\DOMStorage\www.superfish.com Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\superfish.com Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\www.superfish.com Schlüssel Gelöscht : HKCU\Software\SIEN SA Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Iminent Wert Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [ApnTbMon] Wert Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [IminentMessenger] Schlüssel Gelöscht : HKLM\SOFTWARE\Google\Chrome\NativeMessagingHosts\com.apn.native_messaging_host_aaaaacalgebmfelllfiaoknifldpngjh Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Directory\shellex\ContextMenuHandlers\WinZipper Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Folder\shellex\ContextMenuHandlers\WinZipper Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\lnkfile\shellex\ContextMenuHandlers\WinZipper Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{41564952-412D-5637-00A7-7A786E7484D7} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{44CBC005-6243-4502-8A02-3A096A282664} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{54739D49-AC03-4C57-9264-C5195596B3A1} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{80703783-E415-4EE3-AB60-D36981C5A6F1} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{D40753C7-8A59-4C1F-BE88-C300F4624D5B} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{D8278076-BC68-4484-9233-6E7F1628B56C} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{F297534D-7B06-459D-BC19-2DD8EF69297B} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{E1842850-FB16-4471-B327-7343FBAED55C} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{459DD0F7-0D55-D3DC-67BC-E6BE37E9D762} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{D2CE3E00-F94A-4740-988E-03DC2F38C34F} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{8DCB7100-DF86-4384-8842-8FA844297B3F} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220322342240} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{80703783-E415-4EE3-AB60-D36981C5A6F1} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{AA760BA8-5862-4BC5-9263-4452CBC0B264} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{4613B1C1-FBC0-43C3-A4B9-B1D6CD360BB3} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{9945959C-AAD8-4312-8B57-2DE11927E770} Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{EEA63863-87BC-4DCA-A5B5-EB97E3B04806} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{41564952-412D-5637-00A7-7A786E7484D7} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{84FF7BD6-B47F-46F8-9130-01B2696B36CB} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D2CE3E00-F94A-4740-988E-03DC2F38C34F} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{41564952-412D-5637-00A7-7A786E7484D7} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D2CE3E00-F94A-4740-988E-03DC2F38C34F} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{8DCB7100-DF86-4384-8842-8FA844297B3F} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{41564952-412D-5637-00A7-7A786E7484D7} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{54739D49-AC03-4C57-9264-C5195596B3A1} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{D2CE3E00-F94A-4740-988E-03DC2F38C34F} Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{8DCB7100-DF86-4384-8842-8FA844297B3F} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{68B81CCD-A80C-4060-8947-5AE69ED01199} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6978F29A-3493-40B2-8CDC-9C13A02F85A4} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D7949A66-D936-4028-9552-14F7DC50F38D} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E6B969FB-6D33-48D2-9061-8BBD4899EB08} Wert Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{41564952-412D-5637-00A7-7A786E7484D7}] Wert Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{8DCB7100-DF86-4384-8842-8FA844297B3F}] Wert Gelöscht : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{84FF7BD6-B47F-46F8-9130-01B2696B36CB}] Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\CLSID\{41564952-412D-5637-00A7-7A786E7484D7} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\CLSID\{D2CE3E00-F94A-4740-988E-03DC2F38C34F} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\CLSID\{8DCB7100-DF86-4384-8842-8FA844297B3F} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220322342240} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{41564952-412D-5637-00A7-7A786E7484D7} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D2CE3E00-F94A-4740-988E-03DC2F38C34F} Wert Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{41564952-412D-5637-00A7-7A786E7484D7}] Wert Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{8DCB7100-DF86-4384-8842-8FA844297B3F}] Schlüssel Gelöscht : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2503} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2503} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{6978F29A-3493-40B2-8CDC-9C13A02F85A4} Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D7949A66-D936-4028-9552-14F7DC50F38D} Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2503} Schlüssel Gelöscht : HKCU\Software\AskPartnerNetwork Schlüssel Gelöscht : HKCU\Software\OCS Schlüssel Gelöscht : HKCU\Software\SmdmF Schlüssel Gelöscht : HKCU\Software\systweak Schlüssel Gelöscht : HKCU\Software\AppDataLow\Software\Crossrider Schlüssel Gelöscht : HKCU\Software\AppDataLow\Software\ViewPassword Schlüssel Gelöscht : HKLM\SOFTWARE\AskPartnerNetwork Schlüssel Gelöscht : HKLM\SOFTWARE\hdcode Schlüssel Gelöscht : HKLM\SOFTWARE\Iminent Schlüssel Gelöscht : HKLM\SOFTWARE\SmdmF Schlüssel Gelöscht : HKLM\SOFTWARE\systweak Schlüssel Gelöscht : HKLM\SOFTWARE\winzipersvc Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\AskPartnerNetwork Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Iminent Daten Gelöscht : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows [AppInit_DLLs] - C:\Users\Laura\AppData\Local\Linkey\IEEXTE~1\iedll.dll Daten Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows [AppInit_DLLs] - C:\Users\Laura\AppData\Local\Linkey\IEEXTE~1\iedll64.dll Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0238BBE24EA3A70408B81E4BB89C15E5 Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\04D01B4BB24CCD043B69431CCABB1A34 Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0702826FCAC36EE52AC0441EEEEE2170 Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1198E28F40C3E185E9958608554D4253 Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\14C66209FCA938858B9729645C666684 Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\15A073601B9AEC3549BE4A9314794615 Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1F7C80F9CE5CDF44E9AADDC99402534C Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\206AF45B775E3A445B3B2273827DA85F Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\225C3CBCEB850204D860A6C7CC7724AF Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2310FC151CD4F185798FA0996B3524D7 Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\28572D2E2DE533256AC6B560EA573C22 Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\29799DE249E7DBC459FC6C8F07EB8375 Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\29C79786B109AC443B0DC7BFD61B1896 Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2ABB56EABB920EB59B04BDDD26A62083 Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2DABA02DFED47E352A2FA2EBDD6F6187 Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\311567B4A9A002050BB9423FD73FB880 Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\373FCED70D7F84E5FB5F3F7B76BEE024 Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3BE992C130B235E53A2937391FDCA35B Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3DA5F64B3483DE549947A9164ACBAD21 Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3ED93605BB9B6635E9D0D86615AF31F1 Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\43C098337DB065A49B665D4EA7F16D1C Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4759B017032BA185F9BA6F7DBC95A2D4 Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4A78ABCBB54E46E5482A3EE0AD66C39E Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4F9E947B6B895EB5A86757FC5D3DB862 Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4FEEA83BF72B97E43A2DF0EE4BE4F261 Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\509EC7EFB89B7D942997574AB14037A4 Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\50A730A9A3A61BF5BA70CA8A3B7C133B Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\51A95A1D4CDE4F958A9451FBB39BF54A Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\536133807DE80465BA6CD0A9742B7DE5 Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5E25036E68895D45B95E72D1C3C58C74 Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\60ECC80C54085B141A40437A96CA2618 Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\60FD8CD5BE007315CA3B5C7E41F24017 Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\618E7D05458C4F257909ED9C8CDC0D66 Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\621C21014D3C152529E2460FA6304EE3 Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6241FF6F317CABD4EBBEE0DE9076BD94 Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\636B9C23C79154B57AB561F39A139BFD Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\65AAF0F0CB7F0B45F900FDF19CEAAF2B Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6879A5E348601C45986308CA84958E94 Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6A6F3B7A9805E1F5492A1020EEDF2341 Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6B1F5D204E4EEB342A5AD1D7E60D61BF Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7005A2A4DCF9DD7548137AB17E3A3AF3 Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\712EAF07EE73CC65C822CC3BAE3B2483 Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\75FF6D97AF9FC004A9521D4B83FA6321 Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7947B301B2446E752A3FE06EAD7D26B5 Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7987CE52D13E16258B0E1E3DB1BB0974 Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7BEED197C514FDA53901AE8DD8EF0891 Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7DFDCF03D46C34159BDE29FBDBF1ACF5 Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\87EC9ACEAFE8ECD52A529663CD35213F Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\890F436B85B790A55A582B7307DA12CE Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8C13DA6755F685B529615C8E92B3CA39 Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8D07CD9CB3E6BE652872BF06A1CCA782 Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\90841B1FC98200349925C88999866F17 Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\94194FDD4DF523E53A888D65722A135D Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\95266D07D008D2E4E9B6F8E0DD15432A Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A4223BBC9438CAD49BBE10B4E344B1DD Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A71991503412AEB42838B02C5ED9F9CD Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A72F23B1D745C27508518132197BC982 Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A89E2B6FB14D8275DA63D075171DA184 Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A9C43CD4001E9E4518B274AF9A0EFDA9 Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\AABA081CF7F19915FBB80B3BAF47CE63 Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\AC2A0FFD0A1686D53A4E24D6E96949E4 Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\AE5BDB2750259915D8442D4591A7717B Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B1A79C71D5DC1C150B76B6ED11195DFC Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B6D497DB33974935488761F7C4C3D755 Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B752EF3300008394886C402CC27B474F Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B8C8BCC1206978D51A8B9EECBF806C53 Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BAD3576CEA646895B962F94754612791 Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BB4091512C8F4295E99CE2D061ED2020 Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BEE6BBC9A31531F598794A62120B51C7 Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C19162788CA4D235E829F88E2F771567 Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C71F07DA356B66B5484A8E7F2ADEB7DC Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C96AD15EE8E887B56BAF2136A9088503 Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C9E6B66ECC49D155888399C51D05C49E Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CA360F24F0B214744BE40657FDA0B727 Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CB13D869D7D092348847B7481BB59E27 Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CE85F265816AE2D4E9B73C3E207E679C Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D5389AEEA4A1E20428D045E86BCF643B Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D5B62BB7BC607FB539585E2B7B6AFD16 Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DB027F01D4D53765C8E4FBE7DB77E07E Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DC2EB492393411F5ABE8ED13C59FBF20 Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DDA2534BD056D1F44B6EC96AAA7F1F6E Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DDCA763D4C48A105086B4CCCEE78043F Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DEF7558C7CD27EF46AF802AFBE402675 Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E05B987540A9E2849AAF9E5B06C27DA8 Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E09F4A6B9D2A08B599AE9E38BFC93CD6 Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E27B6535D0D94A24E91047C7D86F27BC Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E45D171E075A5425CBACF6631A45FA39 Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E513C2076D90AD04F888BD762143F191 Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E8F4C985459564F5B8DCFF2B3C7EBD27 Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E96E33222BAC06B57A1FA9D72951C945 Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EAA46CE9007F70A5CAFA5F26E5DDEBE5 Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EE43FF091A8714A599F33EF2533FB59A Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EE790015CF30DAA569960905FF1651A0 Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EEB44C47185BD304D80FDF5A4BBE8F54 Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F214EB834D2EC474CA76C1CDE306CF3A Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F25491036D0FA5D5FA6742F5742F151A Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F2E0D3DD9E5E4B74CA43BCE77815E287 Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F4D1BA8B482D9734E943EE260A7ADEF2 Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F6704141BAAF6884785EC6843143D6A7 Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F7507D4D4C310125E9A22BD909A41FB6 Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F7652513C62FF63448CFF05163719DB7 Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F79C21D785419125595AC59458A6142D Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FA15C90F092A60F53A4E0F88CED02968 Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FA1CF130B3D58B553833ACB6BE8AFAD4 Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FB0F1A18E4F0DBD509A42F4D4C05C02A Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FD17ED194F1C2B457B4F6EF4AE8DEAF3 Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\B05CCF18F0593604E8A49DC9AAF4BBF1 Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\F1057DD419AED0B468AD8888429E139A Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\7AB5857A57A0687786597A857BFFFFFF Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\default-search.net Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\www.default-search.net Daten Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings [ProxyOverride] - <-loopback> ***** [ Internetbrowser ] ***** -\\ Internet Explorer v11.0.9600.17416 Einstellung Wiederhergestellt : HKCU\Software\Microsoft\Internet Explorer\Main [Start Page] -\\ Mozilla Firefox v35.0.1 (x86 de) [v39o8gjd.default\prefs.js] - Zeile Gelöscht : user_pref("browser.newtab.url", "hxxp://search.conduit.com/?gd=&ctid=CT3319709&octid=EB_ORIGINAL_CTID&ISID=MC3224D8E-3C3F-4B03-86FF-EB2A76E3F8AA&SearchSource=69&CUI=&SSPV=C21211_sp_ff&Lay=1&UM=5&UP=SP[...] [v39o8gjd.default\prefs.js] - Zeile Gelöscht : user_pref("browser.search.order.1", "default-search.net"); [v39o8gjd.default\prefs.js] - Zeile Gelöscht : user_pref("extensions.crossrider.bic", "14498d6570eb2ae246ac78796aab53fb"); [v39o8gjd.default\prefs.js] - Zeile Gelöscht : user_pref("extensions.iminent.admin", false); [v39o8gjd.default\prefs.js] - Zeile Gelöscht : user_pref("extensions.iminent.aflt", "orgnl"); [v39o8gjd.default\prefs.js] - Zeile Gelöscht : user_pref("extensions.iminent.appId", "{0E4B2CAB-B859-4C57-B96E-63DDEC692BC4}"); [v39o8gjd.default\prefs.js] - Zeile Gelöscht : user_pref("extensions.iminent.autoRvrt", "false"); [v39o8gjd.default\prefs.js] - Zeile Gelöscht : user_pref("extensions.iminent.cntry", "DE"); [v39o8gjd.default\prefs.js] - Zeile Gelöscht : user_pref("extensions.iminent.dfltLng", ""); [v39o8gjd.default\prefs.js] - Zeile Gelöscht : user_pref("extensions.iminent.excTlbr", false); [v39o8gjd.default\prefs.js] - Zeile Gelöscht : user_pref("extensions.iminent.ffxUnstlRst", false); [v39o8gjd.default\prefs.js] - Zeile Gelöscht : user_pref("extensions.iminent.hdrMd5", "3F6C5113CF3497811A9E47C9A388A55A"); [v39o8gjd.default\prefs.js] - Zeile Gelöscht : user_pref("extensions.iminent.id", "2e9482f3000000000000b8763f74e26b"); [v39o8gjd.default\prefs.js] - Zeile Gelöscht : user_pref("extensions.iminent.instlDay", "16135"); [v39o8gjd.default\prefs.js] - Zeile Gelöscht : user_pref("extensions.iminent.instlRef", ""); [v39o8gjd.default\prefs.js] - Zeile Gelöscht : user_pref("extensions.iminent.lastVrsnTs", "1.8.28.320:10:47"); [v39o8gjd.default\prefs.js] - Zeile Gelöscht : user_pref("extensions.iminent.newTab", false); [v39o8gjd.default\prefs.js] - Zeile Gelöscht : user_pref("extensions.iminent.prdct", "iminent"); [v39o8gjd.default\prefs.js] - Zeile Gelöscht : user_pref("extensions.iminent.prtnrId", "iminent"); [v39o8gjd.default\prefs.js] - Zeile Gelöscht : user_pref("extensions.iminent.rvrt", "false"); [v39o8gjd.default\prefs.js] - Zeile Gelöscht : user_pref("extensions.iminent.sg", "none"); [v39o8gjd.default\prefs.js] - Zeile Gelöscht : user_pref("extensions.iminent.smplGrp", "none"); [v39o8gjd.default\prefs.js] - Zeile Gelöscht : user_pref("extensions.iminent.tlbrId", "YBCPCSTIPO"); [v39o8gjd.default\prefs.js] - Zeile Gelöscht : user_pref("extensions.iminent.tlbrSrchUrl", "hxxp://start.iminent.com/?ref=toolbarm#q="); [v39o8gjd.default\prefs.js] - Zeile Gelöscht : user_pref("extensions.iminent.vrsn", "1.8.28.3"); [v39o8gjd.default\prefs.js] - Zeile Gelöscht : user_pref("extensions.iminent.vrsnTs", "1.8.28.320:10:47"); [v39o8gjd.default\prefs.js] - Zeile Gelöscht : user_pref("extensions.iminent.vrsni", "1.8.28.3"); [v39o8gjd.default\prefs.js] - Zeile Gelöscht : user_pref("extensions.irmysearch.aflt", "tugumsd"); [v39o8gjd.default\prefs.js] - Zeile Gelöscht : user_pref("extensions.irmysearch.cd", "2XzuyEtN2Y1L1Qzu0BzzyByCtA0FyByE0EtByC0BzztB0FtAtN0D0Tzu0CyCyDzytN1L2XzutBtFtBtFyEtFyBtAtCtN1L1Czu2Z2Y1N2Y1H1B1Q"); [v39o8gjd.default\prefs.js] - Zeile Gelöscht : user_pref("extensions.irmysearch.cr", "282197527"); [v39o8gjd.default\prefs.js] - Zeile Gelöscht : user_pref("extensions.irmysearch.instlRef", ""); [v39o8gjd.default\prefs.js] - Zeile Gelöscht : user_pref("extensions.xpiState", "{\"app-profile\":{\"abs@avira.com\":{\"d\":\"C:\\\\Users\\\\Laura\\\\AppData\\\\Roaming\\\\Mozilla\\\\Firefox\\\\Profiles\\\\v39o8gjd.default\\\\extensions\\\\abs@avi[...] [v39o8gjd.default\prefs.js] - Zeile Gelöscht : user_pref("iminent.ShowThankyouPixel", "0"); [v39o8gjd.default\prefs.js] - Zeile Gelöscht : user_pref("keyword.URL", "hxxp://www.default-search.net/search?sid=503&aid=100&itype=n&ver=13800&tm=458&src=ds&p="); -\\ Google Chrome v40.0.2214.111 [C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Gelöscht [Search Provider] : hxxp://start.mysearchdial.com/results.php?f=4&q={searchTerms}&a=tugumsd&cd=2XzuyEtN2Y1L1Qzu0BzzyByCtA0FyByE0EtByC0BzztB0FtAtN0D0Tzu0CyCyDzytN1L2XzutBtFtBtFyEtFyBtAtCtN1L1Czu2Z2Y1N2Y1H1B1Q&cr=282197527&ir= [C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Gelöscht [Search Provider] : hxxp://search.conduit.com/Results.aspx?ctid=CT3320133&octid=EB_ORIGINAL_CTID&SearchSource=58&CUI=&UM=4&UP=SPE313F13F-16AB-405D-86AF-A589FFDADAF0&q={searchTerms}&SSPV=C21211_sp_ch [C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\preferences] - Gelöscht [Extension] : aaaaacalgebmfelllfiaoknifldpngjh [C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\preferences] - Gelöscht [Extension] : fpmeembnagmagppkgghhfjfdfajdfcah [C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\preferences] - Gelöscht [Extension] : mpfeggemggokijeahnacacopejaabljl [C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\preferences] - Gelöscht [Extension] : mpfeggemggokijeahnacacopejaabljl [C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\preferences] - Gelöscht [Homepage] : hxxp://search.conduit.com/?ctid=CT3320133&octid=EB_ORIGINAL_CTID&SearchSource=55&CUI=&UM=4&UP=SPE313F13F-16AB-405D-86AF-A589FFDADAF0&SSPV=C21211_sp_ch [C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\preferences] - Gelöscht [Startup_URLs] : hxxp://search.conduit.com/?gd=&ctid=CT3319709&octid=EB_ORIGINAL_CTID&ISID=MC3224D8E-3C3F-4B03-86FF-EB2A76E3F8AA&SearchSource=55&CUI=&UM=5&UP=SPE313F13F-16AB-405D-86AF-A589FFDADAF0&SSPV=C21211_sp_ch ************************* AdwCleaner[R0].txt - [54097 Bytes] - [25/10/2013 23:27:33] AdwCleaner[R1].txt - [33901 Bytes] - [16/02/2015 23:12:38] AdwCleaner[S0].txt - [52310 Bytes] - [25/10/2013 23:28:59] AdwCleaner[S1].txt - [33009 Bytes] - [16/02/2015 23:15:01] ########## EOF - C:\AdwCleaner\AdwCleaner[S1].txt - [33069 Bytes] ########## JRT Logfile: Code:
ATTFilter ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Junkware Removal Tool (JRT) by Thisisu Version: 6.4.2 (02.02.2015:1) OS: Windows 8.1 x64 Ran by Laura on 16.02.2015 at 23:21:43,40 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ ~~~ Services ~~~ Registry Values ~~~ Registry Keys ~~~ Files ~~~ Folders Successfully deleted: [Folder] "C:\Users\Laura\appdata\locallow\datamngr" ~~~ FireFox Successfully deleted: [File] C:\Users\Laura\AppData\Roaming\mozilla\firefox\profiles\v39o8gjd.default\extensions\toolbar_avira-v7@apn.ask.com.xpi Successfully deleted the following from C:\Users\Laura\AppData\Roaming\mozilla\firefox\profiles\v39o8gjd.default\prefs.js user_pref("extensions.xpiState", "{\"app-profile\":{\"abs@avira.com\":{\"d\":\"C:\\\\Users\\\\Laura\\\\AppData\\\\Roaming\\\\Mozilla\\\\Firefox\\\\Profiles\\\\v39o8gjd.default Emptied folder: C:\Users\Laura\AppData\Roaming\mozilla\firefox\profiles\v39o8gjd.default\minidumps [110 files] ~~~ Event Viewer Logs were cleared ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Scan was completed on 16.02.2015 at 23:26:55,70 End of JRT log ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ [/CODE] 3. Malwarebytes Anti-Malware Code:
ATTFilter Malwarebytes Anti-Malware www.malwarebytes.org Suchlauf Datum: 16.02.2015 Suchlauf-Zeit: 23:30:51 Logdatei: m.txt Administrator: Ja Version: 2.00.4.1028 Malware Datenbank: v2015.02.16.09 Rootkit Datenbank: v2015.02.03.01 Lizenz: Testversion Malware Schutz: Aktiviert Bösartiger Webseiten Schutz: Aktiviert Selbstschutz: Deaktiviert Betriebssystem: Windows 8.1 CPU: x64 Dateisystem: NTFS Benutzer: Laura Suchlauf-Art: Bedrohungs-Suchlauf Ergebnis: Abgeschlossen Durchsuchte Objekte: 385703 Verstrichene Zeit: 39 Min, 1 Sek Speicher: Aktiviert Autostart: Aktiviert Dateisystem: Aktiviert Archive: Aktiviert Rootkits: Deaktiviert Heuristik: Aktiviert PUP: Aktiviert PUM: Aktiviert Prozesse: 0 (Keine schädliche Elemente erkannt) Module: 0 (Keine schädliche Elemente erkannt) Registrierungsschlüssel: 1 PUP.Optional.HQVideo.A, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\APPDATALOW\SOFTWARE\HQ-Video-Pro-1.5, Löschen bei Neustart, [e148a679474313232638a1743cc9d12f], Registrierungswerte: 0 (Keine schädliche Elemente erkannt) Registrierungsdaten: 0 (Keine schädliche Elemente erkannt) Ordner: 4 PUP.Optional.CrossRider.A, C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\databases\chrome-extension_mpfeggemggokijeahnacacopejaabljl_0, In Quarantäne, [9396ee317f0bfe38bc252f2d4db64bb5], PUP.Optional.CrossRider.A, C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\mpfeggemggokijeahnacacopejaabljl, In Quarantäne, [ea3faf704c3e72c49657e8743bc8936d], PUP.Optional.CrossRider.A, C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\incpbbmbclbkhjphicahojidkcabaajc, In Quarantäne, [1b0ee53acebcbb7b81a6c09e778ca65a], PUP.Optional.MySpeedDial.A, C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\pflphaooapbgpeakohlggbpidpppgdff, In Quarantäne, [cb5e1e01d3b752e4d2b3a8bad42f2fd1], Dateien: 66 PUP.Optional.Downloader, C:\Users\Laura\Desktop\Free AVI Video Converter - CHIP-Installer.exe, In Quarantäne, [75b439e67119181e8d08c7a44ab6e21e], PUP.Optional.DomaIQ, C:\$Recycle.Bin\S-1-5-21-2764708345-627995945-2754369203-1001\$ROC3T35.exe, In Quarantäne, [db4efe21e1a9270f700a65e89b666c94], PUP.Optional.DomaIQ, C:\$Recycle.Bin\S-1-5-21-2764708345-627995945-2754369203-1001\$R0NY2IY.exe, In Quarantäne, [69c09d82f09a23138cee9eaf81803cc4], PUP.Optional.BundleInstaller.A, C:\$Recycle.Bin\S-1-5-21-2764708345-627995945-2754369203-1001\$RY1BIFR.exe, In Quarantäne, [9b8e5cc35832f0463e763e2eff02f010], PUP.Optional.DomaIQ, C:\$Recycle.Bin\S-1-5-21-2764708345-627995945-2754369203-1001\$RYUR4M0.exe, In Quarantäne, [bb6eca55afdb63d3b9c10b42a75a0df3], PUP.Optional.BundleInstaller.A, C:\$Recycle.Bin\S-1-5-21-2764708345-627995945-2754369203-1001\$R0IMSTJ.exe, In Quarantäne, [63c6ea3591f9f73f8d275c1025dcf10f], PUP.Optional.Iminent, C:\Users\Laura\AppData\Local\Temp\Umbrella.exe44571, In Quarantäne, [6fbadb44b9d11c1a5236092652af51af], PUP.Optional.SearchProtect.A, C:\Users\Laura\AppData\Local\Temp\nsa7B36.exe, In Quarantäne, [0425e7389bef310522f77cd5ef12bf41], PUP.Optional.SearchProtect.A, C:\Users\Laura\AppData\Local\Temp\nsb3E73.exe, In Quarantäne, [c267a17ebccedc5a84958cc51ae7af51], PUP.Optional.SearchProtect.A, C:\Users\Laura\AppData\Local\Temp\nsn42F8.exe, In Quarantäne, [7cad1d026327d6608693a5acdb263fc1], PUP.Optional.SearchProtect.A, C:\Users\Laura\AppData\Local\Temp\nsq52D8.exe, In Quarantäne, [012838e719717eb81900104134cd22de], PUP.Optional.SearchProtect.A, C:\Users\Laura\AppData\Local\Temp\nsr2EE1.exe, In Quarantäne, [34f5ed32c9c13501ac6d0f42f20f04fc], PUP.Optional.SearchProtect.A, C:\Users\Laura\AppData\Local\Temp\nss576D.exe, In Quarantäne, [9e8bc857e1a95ed88099b29f3cc546ba], PUP.Optional.SearchProtect.A, C:\Users\Laura\AppData\Local\Temp\nsu4848.exe, In Quarantäne, [76b35ec1fb8f83b365b465eca061956b], PUP.Optional.SearchProtect.A, C:\Users\Laura\AppData\Local\Temp\nsu5C02.exe, In Quarantäne, [47e2ae71d5b577bf998062efad54ec14], PUP.Optional.MyPCBackup.A, C:\Users\Laura\AppData\Local\Temp\BackupSetup.exe, In Quarantäne, [61c86fb0dab08da932da0be2bc45669a], PUP.Optional.SearchProtect.A, C:\Users\Laura\AppData\Local\Temp\nsw72F6.exe, In Quarantäne, [fb2e011eacde63d356c3c78a50b150b0], PUP.Optional.SearchProtect.A, C:\Users\Laura\AppData\Local\Temp\nswEB54.exe, In Quarantäne, [67c20c13aedcae883bdef1607091ad53], PUP.Optional.SearchProtect.A, C:\Users\Laura\AppData\Local\Temp\nsd2615.exe, In Quarantäne, [08211609e8a2c76f829788c95ca5d52b], PUP.Optional.SearchProtect.A, C:\Users\Laura\AppData\Local\Temp\nsd770E.exe, In Quarantäne, [62c732ed187290a627f26ee3e41de31d], PUP.Optional.SearchProtect.A, C:\Users\Laura\AppData\Local\Temp\nsf2A5C.exe, In Quarantäne, [79b0110e94f602347c9d48090bf6ef11], PUP.Optional.SearchProtect.A, C:\Users\Laura\AppData\Local\Temp\nshD5B.exe, In Quarantäne, [101946d9602a0a2c9a7fd978b34ecd33], PUP.Optional.RegCleanerPro, C:\Users\Laura\AppData\Local\Temp\RegClean7.exe, In Quarantäne, [16131b046921f145159a30029f6237c9], PUP.Optional.OpenCandy, C:\Users\Laura\AppData\Local\Temp\is-EO99B.tmp\OCSetupHlp.dll, In Quarantäne, [6bbe50cfff8bd95dbe58bc2d06ffc040], PUP.Optional.Rapiddown, C:\Users\Laura\AppData\Local\Temp\n1061\s1061.exe, In Quarantäne, [0722be61088267cf94dd127726dbb947], PUP.Optional.Rapiddown, C:\Users\Laura\AppData\Local\Temp\n2149\s2149.exe, In Quarantäne, [fa2f21fe4248cb6b59184e3b37cabe42], PUP.Optional.Conduit.A, C:\Users\Laura\AppData\Local\Temp\n2149\searchprotect_2111-1a12a8ce.exe, In Quarantäne, [63c6a679107aa98d86c33410758ccc34], PUP.Optional.ScramblePacker.A, C:\Users\Laura\AppData\Local\Temp\n9666\hqvideopro_DE-254f300e.exe, In Quarantäne, [230646d93c4e4cea8ba9406423de39c7], PUP.Optional.Iminent.A, C:\Users\Laura\AppData\Local\Temp\n9666\Iminent_1712-b2fcad5e.exe, In Quarantäne, [88a11e0121691323a51433388180847c], PUP.Optional.RegCleanerPro, C:\Users\Laura\AppData\Local\Temp\n9666\RegClean_1612-230a802f.exe, In Quarantäne, [5ecbff20bdcd3501555a70c2db26cb35], PUP.Optional.Rapiddown, C:\Users\Laura\AppData\Local\Temp\n9666\s9666.exe, In Quarantäne, [210806193852a59197daaddcea1753ad], PUP.Optional.Babylon, C:\Users\Laura\AppData\Local\Temp\n9666\systempspeedup_3001-1ea278a0.exe, In Quarantäne, [34f58e910e7cc47281baebe0f70ab34d], PUP.Optional.Conduit.A, C:\Users\Laura\AppData\Local\Temp\nsu87D\SpSetup.exe, In Quarantäne, [f53449d6c1c9d462a06d9ea8f30e47b9], PUP.Optional.Conduit.A, C:\Users\Laura\AppData\Local\Temp\nsuF705\SpSetup.exe, In Quarantäne, [9990061999f148eed23b3511ca370ef2], PUP.Optional.BundleInstaller.A, C:\Users\Laura\Downloads\Adobe%20InDesign(1).exe, In Quarantäne, [d75246d92862bf775d29c575e51bca36], PUP.Optional.BundleInstaller.A, C:\Users\Laura\Downloads\Adobe%20InDesign(2).exe, In Quarantäne, [e2478a954941a88ebccaab8f0af634cc], PUP.Optional.BundleInstaller.A, C:\Users\Laura\Downloads\Adobe%20InDesign.exe, In Quarantäne, [bd6c46d92268f4425234a298cd3327d9], PUP.Optional.Iminent.A, C:\Windows\Installer\1690ee.msi, In Quarantäne, [f93041de39512115213a8dc8c9386f91], PUP.Optional.Linkey, C:\Users\Laura\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Browse and Search the Internet.lnk, In Quarantäne, [b277d04f602ac86e26cbd4d9b251a35d], PUP.Optional.CrossRider.A, C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_incpbbmbclbkhjphicahojidkcabaajc_0.localstorage, In Quarantäne, [85a41e014d3d5fd71930ddee9b68da26], PUP.Optional.CrossRider.A, C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_incpbbmbclbkhjphicahojidkcabaajc_0.localstorage-journal, In Quarantäne, [65c476a96e1c2f07ee5b29a2976c0cf4], PUP.Optional.CrossRider.A, C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_mpfeggemggokijeahnacacopejaabljl_0.localstorage, In Quarantäne, [37f2bb648ffb9b9b68bfcd0053b09769], PUP.Optional.CrossRider.A, C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_mpfeggemggokijeahnacacopejaabljl_0.localstorage-journal, In Quarantäne, [46e3bd62e8a255e1b7700fbe768d9070], PUP.Optional.CrossRider.A, C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\databases\chrome-extension_mpfeggemggokijeahnacacopejaabljl_0\1, In Quarantäne, [9396ee317f0bfe38bc252f2d4db64bb5], PUP.Optional.CrossRider.A, C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\mpfeggemggokijeahnacacopejaabljl\000080.ldb, In Quarantäne, [ea3faf704c3e72c49657e8743bc8936d], PUP.Optional.CrossRider.A, C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\mpfeggemggokijeahnacacopejaabljl\000083.log, In Quarantäne, [ea3faf704c3e72c49657e8743bc8936d], PUP.Optional.CrossRider.A, C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\mpfeggemggokijeahnacacopejaabljl\CURRENT, In Quarantäne, [ea3faf704c3e72c49657e8743bc8936d], PUP.Optional.CrossRider.A, C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\mpfeggemggokijeahnacacopejaabljl\LOCK, In Quarantäne, [ea3faf704c3e72c49657e8743bc8936d], PUP.Optional.CrossRider.A, C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\mpfeggemggokijeahnacacopejaabljl\LOG, In Quarantäne, [ea3faf704c3e72c49657e8743bc8936d], PUP.Optional.CrossRider.A, C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\mpfeggemggokijeahnacacopejaabljl\LOG.old, In Quarantäne, [ea3faf704c3e72c49657e8743bc8936d], PUP.Optional.CrossRider.A, C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\mpfeggemggokijeahnacacopejaabljl\MANIFEST-000081, In Quarantäne, [ea3faf704c3e72c49657e8743bc8936d], PUP.Optional.CrossRider.A, C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\incpbbmbclbkhjphicahojidkcabaajc\000005.sst, In Quarantäne, [1b0ee53acebcbb7b81a6c09e778ca65a], PUP.Optional.CrossRider.A, C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\incpbbmbclbkhjphicahojidkcabaajc\000008.sst, In Quarantäne, [1b0ee53acebcbb7b81a6c09e778ca65a], PUP.Optional.CrossRider.A, C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\incpbbmbclbkhjphicahojidkcabaajc\000009.log, In Quarantäne, [1b0ee53acebcbb7b81a6c09e778ca65a], PUP.Optional.CrossRider.A, C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\incpbbmbclbkhjphicahojidkcabaajc\CURRENT, In Quarantäne, [1b0ee53acebcbb7b81a6c09e778ca65a], PUP.Optional.CrossRider.A, C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\incpbbmbclbkhjphicahojidkcabaajc\LOCK, In Quarantäne, [1b0ee53acebcbb7b81a6c09e778ca65a], PUP.Optional.CrossRider.A, C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\incpbbmbclbkhjphicahojidkcabaajc\LOG, In Quarantäne, [1b0ee53acebcbb7b81a6c09e778ca65a], PUP.Optional.CrossRider.A, C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\incpbbmbclbkhjphicahojidkcabaajc\LOG.old, In Quarantäne, [1b0ee53acebcbb7b81a6c09e778ca65a], PUP.Optional.CrossRider.A, C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\incpbbmbclbkhjphicahojidkcabaajc\MANIFEST-000007, In Quarantäne, [1b0ee53acebcbb7b81a6c09e778ca65a], PUP.Optional.MySpeedDial.A, C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\pflphaooapbgpeakohlggbpidpppgdff\000005.sst, In Quarantäne, [cb5e1e01d3b752e4d2b3a8bad42f2fd1], PUP.Optional.MySpeedDial.A, C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\pflphaooapbgpeakohlggbpidpppgdff\000009.log, In Quarantäne, [cb5e1e01d3b752e4d2b3a8bad42f2fd1], PUP.Optional.MySpeedDial.A, C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\pflphaooapbgpeakohlggbpidpppgdff\CURRENT, In Quarantäne, [cb5e1e01d3b752e4d2b3a8bad42f2fd1], PUP.Optional.MySpeedDial.A, C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\pflphaooapbgpeakohlggbpidpppgdff\LOCK, In Quarantäne, [cb5e1e01d3b752e4d2b3a8bad42f2fd1], PUP.Optional.MySpeedDial.A, C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\pflphaooapbgpeakohlggbpidpppgdff\LOG, In Quarantäne, [cb5e1e01d3b752e4d2b3a8bad42f2fd1], PUP.Optional.MySpeedDial.A, C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\pflphaooapbgpeakohlggbpidpppgdff\LOG.old, In Quarantäne, [cb5e1e01d3b752e4d2b3a8bad42f2fd1], PUP.Optional.MySpeedDial.A, C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\pflphaooapbgpeakohlggbpidpppgdff\MANIFEST-000007, In Quarantäne, [cb5e1e01d3b752e4d2b3a8bad42f2fd1], Physische Sektoren: 0 (Keine schädliche Elemente erkannt) (end) |
16.02.2015, 23:15 | #7 |
| Sicherheitshinweis bei Virenprogramm und Änderung ProxyEinstellungen 4. FRST FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 15-02-2015 Ran by Laura (administrator) on LAURA-HP on 17-02-2015 00:12:47 Running from C:\Users\Laura\Desktop Loaded Profiles: Laura & (Available profiles: Laura) Platform: Windows 8.1 (X64) OS Language: Deutsch (Deutschland) Internet Explorer Version 11 (Default browser: FF) Boot Mode: Normal Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (If an entry is included in the fixlist, the process will be closed. The file will not be moved.) (AMD) C:\Windows\System32\atiesrxx.exe (AMD) C:\Windows\System32\atieclxx.exe (Hewlett-Packard Company) C:\Windows\System32\hpservice.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RTKAUDIOSERVICE64.EXE (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe (Andrea Electronics Corporation) C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe (Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe (Microsoft Corporation) C:\Program Files\Microsoft Office 15\ClientX64\officeclicktorun.exe (Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe (Microsoft Corporation) C:\Windows\System32\dasHost.exe (Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPWMISVC.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe (Connectify) C:\Program Files (x86)\Connectify\ConnectifyService.exe (Connectify) C:\Program Files (x86)\Connectify\Connectifyd.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe (Microsoft Corporation) C:\Windows\System32\SkyDrive.exe (CyberLink) C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe (Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP CoolSense\CoolSense.exe (Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe (Intel Corporation) C:\Windows\System32\igfxtray.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation) C:\Windows\System32\igfxsrvc.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Connectify) C:\Program Files (x86)\Connectify\Connectify.exe (Connectify) C:\Program Files (x86)\Connectify\DispatchUI.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe () C:\Program Files (x86)\Canon\ImageBrowser EX\MFManager.exe (Hewlett-Packard) C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe (Microsoft Corporation) C:\Program Files\Microsoft Office 15\root\office15\ONENOTEM.EXE (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe (CyberLink Corp.) C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe (Dropbox, Inc.) C:\Users\Laura\AppData\Roaming\Dropbox\bin\Dropbox.exe (Geek Software GmbH) C:\Program Files (x86)\PDF24\pdf24.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe (Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe (ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe (Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe (Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Microsoft Corporation.) C:\Program Files (x86)\Microsoft\BingBar\7.3.132.0\SeaPort.EXE (Malwarebytes Corporation) C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe (Malwarebytes Corporation) C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamscheduler.exe (Malwarebytes Corporation) C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbam.exe ==================== Registry (Whitelisted) ================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [7194840 2013-12-11] (Realtek Semiconductor) HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2771184 2013-12-11] (Synaptics Incorporated) HKLM\...\Run: [Connectify Hotspot] => C:\Program Files (x86)\Connectify\Connectify.exe [4326176 2014-07-28] (Connectify) HKLM\...\Run: [Connectify Dispatch] => C:\Program Files (x86)\Connectify\DispatchUI.exe [2399008 2014-07-28] (Connectify) HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe [49208 2010-06-09] (Hewlett-Packard) HKLM-x32\...\Run: [] => [X] HKLM-x32\...\Run: [avgnt] => C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [702768 2014-12-17] (Avira Operations GmbH & Co. KG) HKLM-x32\...\Run: [RemoteControl10] => C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe [95192 2013-04-10] (CyberLink Corp.) HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [766208 2013-09-24] (Advanced Micro Devices, Inc.) HKLM-x32\...\Run: [HPMessageService] => C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPMSGSVC.exe [1045304 2013-10-08] (Hewlett-Packard Development Company, L.P.) HKLM-x32\...\Run: [PDFPrint] => C:\Program Files (x86)\PDF24\pdf24.exe [186408 2013-12-12] (Geek Software GmbH) HKLM-x32\...\Run: [Avira Systray] => C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe [126712 2015-01-19] (Avira Operations GmbH & Co. KG) HKLM-x32\...\RunOnce: [ Malwarebytes Anti-Malware (cleanup)] => C:\ProgramData\Malwarebytes\ Malwarebytes Anti-Malware \mbamdor.exe [54072 2014-11-21] (Malwarebytes Corporation) Winlogon\Notify\igfxcui: C:\WINDOWS\system32\igfxdev.dll (Intel Corporation) HKU\S-1-5-21-2764708345-627995945-2754369203-1001\...\Run: [SkyDrive] => C:\Users\Laura\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe [257136 2013-08-23] (Microsoft Corporation) HKU\S-1-5-21-2764708345-627995945-2754369203-1001\...\Run: [Power2GoExpress8] => NA HKU\S-1-5-21-2764708345-627995945-2754369203-1001\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [22041192 2014-08-27] (Skype Technologies S.A.) HKU\S-1-5-21-2764708345-627995945-2754369203-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Run: [SkyDrive] => C:\Users\Laura\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe [257136 2013-08-23] (Microsoft Corporation) HKU\S-1-5-21-2764708345-627995945-2754369203-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Run: [Power2GoExpress8] => NA HKU\S-1-5-21-2764708345-627995945-2754369203-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [22041192 2014-08-27] (Skype Technologies S.A.) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\HP Digital Imaging Monitor.lnk ShortcutTarget: HP Digital Imaging Monitor.lnk -> C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe (Hewlett-Packard Co.) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\ImageBrowser EX Agent.lnk ShortcutTarget: ImageBrowser EX Agent.lnk -> C:\Program Files (x86)\Canon\ImageBrowser EX\MFManager.exe () Startup: C:\Users\Laura\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\An OneNote senden.lnk ShortcutTarget: An OneNote senden.lnk -> C:\Program Files\Microsoft Office 15\root\office15\ONENOTEM.EXE (Microsoft Corporation) Startup: C:\Users\Laura\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk ShortcutTarget: Dropbox.lnk -> C:\Users\Laura\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) ShellIconOverlayIdentifiers: [DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Laura\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.) ShellIconOverlayIdentifiers: [DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Laura\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.) ShellIconOverlayIdentifiers: [DropboxExt3] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Laura\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.) ShellIconOverlayIdentifiers: [DropboxExt4] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Laura\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Laura\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Laura\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [DropboxExt3] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Laura\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll (Dropbox, Inc.) ==================== Internet (Whitelisted) ==================== (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.) HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = about:blank HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = about:blank HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = about:blank HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = about:blank HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKU\S-1-5-21-2764708345-627995945-2754369203-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://g.uk.msn.com/HPNOT13/4 HKU\S-1-5-21-2764708345-627995945-2754369203-1001\Software\Microsoft\Internet Explorer\Main,Search Bar = hxxp://www.google.com/ie HKU\S-1-5-21-2764708345-627995945-2754369203-1001\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.google.com/ie HKU\S-1-5-21-2764708345-627995945-2754369203-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://g.uk.msn.com/HPNOT13/4 HKU\S-1-5-21-2764708345-627995945-2754369203-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\Microsoft\Internet Explorer\Main,Search Bar = hxxp://www.google.com/ie HKU\S-1-5-21-2764708345-627995945-2754369203-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.google.com/ie SearchScopes: HKLM -> {A7B0732F-79AC-4B81-840A-A6FB25D9257C} URL = hxxp://www.amazon.de/s/ref=azs_osd_ieade?ie=UTF-8&tag=hp-de2-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms} SearchScopes: HKLM -> {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = hxxp://rover.ebay.com/rover/1/707-154345-12128-2/4 ?mpre=http%3A%2F%2Fwww.ebay.com%2Fsch%2F%3F_nkw%3D{searchTerms}&keyword={searchTerms} SearchScopes: HKLM-x32 -> {A7B0732F-79AC-4B81-840A-A6FB25D9257C} URL = hxxp://www.amazon.de/s/ref=azs_osd_ieade?ie=UTF-8&tag=hp-de2-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms} SearchScopes: HKLM-x32 -> {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = hxxp://rover.ebay.com/rover/1/707-154345-12128-2/4 ?mpre=http%3A%2F%2Fwww.ebay.com%2Fsch%2F%3F_nkw%3D{searchTerms}&keyword={searchTerms} SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-19-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-20-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-2764708345-627995945-2754369203-1001 -> URL hxxp://search.conduit.com/Results.aspx?ctid=CT3320133&octid=EB_ORIGINAL_CTID&SearchSource=58&CUI=&UM=4&UP=SP4120AFC1-D5B4-4252-AC75-F74A2ED0D2AF&q={searchTerms}&SSPV= SearchScopes: HKU\S-1-5-21-2764708345-627995945-2754369203-1001 -> SuggestionsURL_JSON hxxp://suggest.search.conduit.com/CSuggestJson.ashx?prefix={searchTerms} SearchScopes: HKU\S-1-5-21-2764708345-627995945-2754369203-1001 -> {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = hxxp://www.google.com/search?q={sear SearchScopes: HKU\S-1-5-21-2764708345-627995945-2754369203-1001 -> {A7B0732F-79AC-4B81-840A-A6FB25D9257C} URL = hxxp://www.amazon.de/s/ref=azs_osd_ieade?ie=UTF-8&tag=hp-de2-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms} SearchScopes: HKU\S-1-5-21-2764708345-627995945-2754369203-1001 -> {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = hxxp://rover.ebay.com/rover/1/707-154345-12128-2/4 ?mpre=http%3A%2F%2Fwww.ebay.com%2Fsch%2F%3F_nkw%3D{searchTerms}&keyword={searchTerms} SearchScopes: HKU\S-1-5-21-2764708345-627995945-2754369203-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0 -> URL hxxp://search.conduit.com/Results.aspx?ctid=CT3320133&octid=EB_ORIGINAL_CTID&SearchSource=58&CUI=&UM=4&UP=SP4120AFC1-D5B4-4252-AC75-F74A2ED0D2AF&q={searchTerms}&SSPV= SearchScopes: HKU\S-1-5-21-2764708345-627995945-2754369203-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0 -> SuggestionsURL_JSON hxxp://suggest.search.conduit.com/CSuggestJson.ashx?prefix={searchTerms} SearchScopes: HKU\S-1-5-21-2764708345-627995945-2754369203-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0 -> {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = hxxp://www.google.com/search?q={sear SearchScopes: HKU\S-1-5-21-2764708345-627995945-2754369203-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0 -> {A7B0732F-79AC-4B81-840A-A6FB25D9257C} URL = hxxp://www.amazon.de/s/ref=azs_osd_ieade?ie=UTF-8&tag=hp-de2-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms} SearchScopes: HKU\S-1-5-21-2764708345-627995945-2754369203-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0 -> {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = hxxp://rover.ebay.com/rover/1/707-154345-12128-2/4 ?mpre=http%3A%2F%2Fwww.ebay.com%2Fsch%2F%3F_nkw%3D{searchTerms}&keyword={searchTerms} BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation) BHO: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Microsoft Corporation) BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation) BHO-x32: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Microsoft Corporation) Toolbar: HKU\S-1-5-21-2764708345-627995945-2754369203-1001 -> No Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No File Toolbar: HKU\S-1-5-21-2764708345-627995945-2754369203-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0 -> No Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No File Handler-x32: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL (Microsoft Corporation) Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Microsoft Corporation) Handler-x32: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Microsoft Corporation) Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 FireFox: ======== FF ProfilePath: C:\Users\Laura\AppData\Roaming\Mozilla\Firefox\Profiles\v39o8gjd.default FF Homepage: https://www.google.com/ FF NetworkProxy: "autoconfig_url", "Hallo Leute ;) Na wie geht es auch mittlerweile so? Ich hoffe, ihr habt mich nicht vergessen. ;))Mittlerweile bin ich wieder zu Hause und habe letzte Woche euer tolles Fotoalbum voller Bilder gemacht und ausgefüllt ??Danke nochmal, das war echt schön alles noch einmal revue passieren zu lassen. ??Ich weiß zwar nicht, wie es euch so passt oder was die nächsten Pläne sind, aber vielleicht könnten wir uns ja nochmal treffen auf ein kühles Getränk oder sowas und dann könnt ihr wie versprochen das Buch noch einmal mit Bildern und mit Finnland sehen. Ich würde mich zumindest sehr freuen, wenn das klappen würde :)) Ganz liebe Grüße, Laura" FF NetworkProxy: "type", 4 FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_16_0_0_305.dll () FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_16_0_0_305.dll () FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\windows\SysWOW64\Adobe\Director\np32dsw_1166636.dll (Adobe Systems, Inc.) FF Plugin-x32: @google.com/npPicasa3,version=3.0.0 -> C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll (Google, Inc.) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3505.0912 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Extension: Avira Browser Safety - C:\Users\Laura\AppData\Roaming\Mozilla\Firefox\Profiles\v39o8gjd.default\Extensions\abs@avira.com [2015-02-02] FF Extension: DownloadHelper - C:\Users\Laura\AppData\Roaming\Mozilla\Firefox\Profiles\v39o8gjd.default\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d} [2014-09-06] FF Extension: Search Manager for Mozilla Firefox ™ - C:\Users\Laura\AppData\Roaming\Mozilla\Firefox\Profiles\v39o8gjd.default\Extensions\{5ccf2762-2b66-4dd5-9997-1103d12d3125}.xpi [2014-12-23] FF Extension: Adblock Plus - C:\Users\Laura\AppData\Roaming\Mozilla\Firefox\Profiles\v39o8gjd.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2013-08-13] FF Extension: Skype Click to Call - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}.xpi [2015-01-27] Chrome: ======= CHR Profile: C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default CHR Extension: (YouTube) - C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2013-09-11] CHR Extension: (Google-Suche) - C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2013-09-11] CHR Extension: (Avira Browserschutz) - C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\flliilndjeohchalpbbcdekjklbdgfkk [2015-02-10] CHR Extension: (Skype Click to Call) - C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl [2014-08-01] CHR Extension: (Google Wallet) - C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-09-14] CHR Extension: (Google Mail) - C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2013-09-11] CHR HKLM-x32\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - No Path CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2014-07-14] ==================== Services (Whitelisted) ================= (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [431920 2014-12-17] (Avira Operations GmbH & Co. KG) R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [431920 2014-12-17] (Avira Operations GmbH & Co. KG) R2 AntiVirWebService; C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe [993584 2014-12-17] (Avira Operations GmbH & Co. KG) R2 Avira.OE.ServiceHost; C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe [182520 2015-01-19] (Avira Operations GmbH & Co. KG) R2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1390176 2014-07-14] (Microsoft Corporation) R2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1767520 2014-07-14] (Microsoft Corporation) R2 ClickToRunSvc; C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe [2449592 2014-11-12] (Microsoft Corporation) R2 Connectify; C:\Program Files (x86)\Connectify\ConnectifyService.exe [487936 2014-07-28] (Connectify) [File not signed] R2 HPSLPSVC; C:\Program Files (x86)\HP\Digital Imaging\bin\HPSLPSVC64.DLL [1039360 2011-08-18] (Hewlett-Packard Co.) [File not signed] R2 HPWMISVC; c:\Program Files (x86)\Hewlett-Packard\HP System Event\HPWMISVC.exe [1039160 2013-10-08] (Hewlett-Packard Development Company, L.P.) R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [15720 2013-08-22] (Intel Corporation) R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [733696 2013-05-11] (Intel(R) Corporation) [File not signed] S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [822232 2013-05-11] (Intel(R) Corporation) R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [131544 2013-12-11] (Intel Corporation) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-12-11] (Intel Corporation) R2 MBAMScheduler; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamscheduler.exe [1871160 2014-11-21] (Malwarebytes Corporation) R2 MBAMService; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe [969016 2014-11-21] (Malwarebytes Corporation) S2 Net Driver HPZ12; C:\Windows\System32\HPZinw12.dll [71680 2010-08-06] (Hewlett-Packard) [File not signed] S3 OpenVPNService; C:\Program Files (x86)\OpenVPN\bin\openvpnserv.exe [32568 2014-04-09] (The OpenVPN Project) S2 Pml Driver HPZ12; C:\Windows\System32\HPZipm12.dll [89600 2010-08-06] (Hewlett-Packard) [File not signed] R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [239176 2013-02-20] (Realtek Semiconductor) S3 w3logsvc; C:\Windows\system32\inetsrv\w3logsvc.dll [76800 2013-11-05] (Microsoft Corporation) S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [368632 2014-09-22] (Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23792 2014-09-22] (Microsoft Corporation) ==================== Drivers (Whitelisted) ==================== (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) R0 amdkmpfd; C:\Windows\System32\drivers\amdkmpfd.sys [36096 2013-11-13] (Advanced Micro Devices, Inc.) R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [119272 2014-10-16] (Avira Operations GmbH & Co. KG) R1 avipbb; C:\Windows\system32\DRIVERS\avipbb.sys [131608 2014-10-16] (Avira Operations GmbH & Co. KG) R1 avkmgr; C:\Windows\system32\DRIVERS\avkmgr.sys [28600 2013-10-10] (Avira Operations GmbH & Co. KG) R2 avnetflt; C:\Windows\system32\DRIVERS\avnetflt.sys [43064 2014-10-16] (Avira Operations GmbH & Co. KG) R1 CLVirtualDrive; C:\Windows\system32\DRIVERS\CLVirtualDrive.sys [91712 2013-03-05] (CyberLink) R1 cnnctfy3; C:\Windows\system32\DRIVERS\cnnctfy3.sys [42152 2014-08-18] (Connectify) S3 dot4; C:\Windows\system32\DRIVERS\Dot4.sys [151968 2012-10-19] (Windows (R) Win 7 DDK provider) S3 Dot4Print; C:\Windows\System32\drivers\Dot4Prt.sys [27040 2012-10-19] (Windows (R) Win 7 DDK provider) U0 etdqmin; C:\Windows\System32\drivers\woek.sys [79064 2015-02-17] (Malwarebytes Corporation) R3 MBAMProtector; C:\WINDOWS\system32\drivers\mbam.sys [25816 2014-11-21] (Malwarebytes Corporation) R3 MBAMSwissArmy; C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys [129752 2015-02-16] (Malwarebytes Corporation) R3 MBAMWebAccessControl; C:\WINDOWS\system32\drivers\mwac.sys [64216 2014-11-21] (Malwarebytes Corporation) R3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [99288 2013-12-11] (Intel Corporation) S3 RSP2STOR; C:\Windows\system32\DRIVERS\RtsP2Stor.sys [288328 2013-01-24] (Realtek Semiconductor Corp.) S3 RtlWlanu; C:\Windows\system32\DRIVERS\rtwlanu.sys [1975000 2013-07-31] (Realtek Semiconductor Corporation ) S3 RTSPER; C:\Windows\System32\DRIVERS\RtsPer.sys [448072 2013-02-02] (RTS Corporation) R3 RTWlanE; C:\Windows\system32\DRIVERS\rtwlane.sys [2946264 2014-01-08] (Realtek Semiconductor Corporation ) S3 SmbDrv; C:\Windows\System32\drivers\Smb_driver_AMDASF.sys [28400 2013-02-06] (Synaptics Incorporated) R3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [34544 2013-12-11] (Synaptics Incorporated) S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114496 2014-09-22] (Microsoft Corporation) R3 WirelessButtonDriver; C:\Windows\System32\drivers\WirelessButtonDriver64.sys [20800 2012-08-31] (Hewlett-Packard Development Company, L.P.) ==================== NetSvcs (Whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.) ==================== One Month Created Files and Folders ======== (If an entry is included in the fixlist, the file\folder will be moved.) 2015-02-17 00:10 - 2015-02-17 00:10 - 00079064 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\woek.sys 2015-02-17 00:10 - 2015-02-17 00:10 - 00013150 _____ () C:\Users\Laura\Desktop\mbam.txt 2015-02-16 23:30 - 2015-02-16 23:30 - 00129752 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys 2015-02-16 23:30 - 2015-02-16 23:30 - 00001114 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2015-02-16 23:30 - 2015-02-16 23:30 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 2015-02-16 23:30 - 2015-02-16 23:30 - 00000000 ____D () C:\ProgramData\Malwarebytes 2015-02-16 23:30 - 2015-02-16 23:30 - 00000000 ____D () C:\Program Files (x86)\ Malwarebytes Anti-Malware 2015-02-16 23:30 - 2014-11-21 06:14 - 00093400 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbamchameleon.sys 2015-02-16 23:30 - 2014-11-21 06:14 - 00064216 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mwac.sys 2015-02-16 23:30 - 2014-11-21 06:14 - 00025816 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbam.sys 2015-02-16 23:29 - 2015-02-16 23:29 - 20447072 _____ (Malwarebytes Corporation ) C:\Users\Laura\Desktop\mbam-setup-2.0.4.1028.exe 2015-02-16 23:26 - 2015-02-16 23:26 - 00001273 _____ () C:\Users\Laura\Desktop\JRT.txt 2015-02-16 23:21 - 2015-02-16 23:21 - 01388274 _____ (Thisisu) C:\Users\Laura\Desktop\JRT.exe 2015-02-16 23:12 - 2015-02-16 23:12 - 02112512 _____ () C:\Users\Laura\Desktop\AdwCleaner_4.110.exe 2015-02-16 23:01 - 2015-02-16 23:01 - 00001280 _____ () C:\Users\Laura\Desktop\Revo Uninstaller.lnk 2015-02-16 23:01 - 2015-02-16 23:01 - 00000000 ____D () C:\Program Files (x86)\VS Revo Group 2015-02-16 23:00 - 2015-02-16 23:00 - 02623656 _____ (VS Revo Group Ltd.) C:\Users\Laura\Desktop\revosetup95.exe 2015-02-16 22:21 - 2015-02-16 22:23 - 00038943 _____ () C:\Users\Laura\Desktop\Addition.txt 2015-02-16 22:19 - 2015-02-17 00:12 - 00028022 _____ () C:\Users\Laura\Desktop\FRST.txt 2015-02-16 22:19 - 2015-02-17 00:12 - 00000000 ____D () C:\FRST 2015-02-16 22:19 - 2015-02-16 22:19 - 02085888 _____ (Farbar) C:\Users\Laura\Desktop\FRST64.exe 2015-02-15 13:42 - 2015-02-15 13:42 - 00000000 ____D () C:\Users\Laura\Documents\Benutzerdefinierte Office-Vorlagen 2015-02-15 11:09 - 2015-02-15 15:56 - 00425439 _____ () C:\Users\Laura\Desktop\Kopie von Pension asset allocation rev.xlsx 2015-02-12 19:05 - 2015-01-23 06:41 - 06041600 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll 2015-02-12 19:05 - 2015-01-23 05:17 - 04300800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll 2015-02-11 21:11 - 2015-01-16 00:43 - 00563504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys 2015-02-11 21:11 - 2015-01-16 00:43 - 00177984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys 2015-02-11 21:11 - 2015-01-14 06:22 - 00445440 _____ (Microsoft Corporation) C:\WINDOWS\system32\certcli.dll 2015-02-11 21:11 - 2015-01-14 05:53 - 00324096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\certcli.dll 2015-02-11 21:11 - 2014-10-29 04:51 - 00154112 _____ (Microsoft Corporation) C:\WINDOWS\system32\msaudite.dll 2015-02-11 21:11 - 2014-10-29 04:50 - 00736768 _____ (Microsoft Corporation) C:\WINDOWS\system32\adtschema.dll 2015-02-11 21:11 - 2014-10-29 04:06 - 00736768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\adtschema.dll 2015-02-11 21:11 - 2014-10-29 04:06 - 00154112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msaudite.dll 2015-02-11 21:11 - 2014-10-29 03:31 - 01441792 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll 2015-02-11 21:10 - 2015-01-14 00:11 - 01762840 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecs.dll 2015-02-11 21:10 - 2015-01-14 00:04 - 01489072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecs.dll 2015-02-11 21:10 - 2015-01-10 11:10 - 07472960 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe 2015-02-11 21:10 - 2015-01-10 11:10 - 01733440 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll 2015-02-11 21:10 - 2015-01-10 10:28 - 01498360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll 2015-02-11 21:10 - 2014-12-19 10:57 - 00788680 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleaut32.dll 2015-02-11 21:10 - 2014-12-19 10:25 - 00602776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleaut32.dll 2015-02-11 21:10 - 2014-12-09 05:45 - 00393728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\scesrv.dll 2015-02-11 21:10 - 2014-12-09 03:56 - 00538624 _____ (Microsoft Corporation) C:\WINDOWS\system32\scesrv.dll 2015-02-11 21:10 - 2014-12-09 01:12 - 00391526 _____ () C:\WINDOWS\system32\ApnDatabase.xml 2015-02-11 21:10 - 2014-10-29 04:02 - 00285184 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64.dll 2015-02-11 21:10 - 2014-10-29 04:02 - 00013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64cpu.dll 2015-02-11 21:10 - 2014-10-29 03:57 - 00016896 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntvdm64.dll 2015-02-11 21:10 - 2014-10-29 03:15 - 00014336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntvdm64.dll 2015-02-11 21:10 - 2014-10-29 03:15 - 00005632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wow32.dll 2015-02-11 21:10 - 2014-10-29 03:14 - 00004096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user.exe 2015-02-11 21:10 - 2014-10-29 03:13 - 00025600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\setup16.exe 2015-02-11 21:10 - 2014-10-29 03:13 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\instnm.exe 2015-02-11 21:09 - 2015-01-12 05:09 - 25056256 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2015-02-11 21:09 - 2015-01-12 04:48 - 02885632 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll 2015-02-11 21:09 - 2015-01-12 04:48 - 00584192 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll 2015-02-11 21:09 - 2015-01-12 04:47 - 00088064 _____ (Microsoft Corporation) C:\WINDOWS\system32\MshtmlDac.dll 2015-02-11 21:09 - 2015-01-12 04:34 - 00816128 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll 2015-02-11 21:09 - 2015-01-12 04:25 - 19740160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll 2015-02-11 21:09 - 2015-01-12 04:21 - 00490496 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtmsft.dll 2015-02-11 21:09 - 2015-01-12 04:08 - 00503296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll 2015-02-11 21:09 - 2015-01-12 04:07 - 00092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll 2015-02-11 21:09 - 2015-01-12 04:05 - 00064000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MshtmlDac.dll 2015-02-11 21:09 - 2015-01-12 04:02 - 02277888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll 2015-02-11 21:09 - 2015-01-12 03:58 - 01032704 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcomm.dll 2015-02-11 21:09 - 2015-01-12 03:55 - 00664064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll 2015-02-11 21:09 - 2015-01-12 03:51 - 00262144 _____ (Microsoft Corporation) C:\WINDOWS\system32\webcheck.dll 2015-02-11 21:09 - 2015-01-12 03:48 - 00801280 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll 2015-02-11 21:09 - 2015-01-12 03:48 - 00718848 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe 2015-02-11 21:09 - 2015-01-12 03:48 - 00374272 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll 2015-02-11 21:09 - 2015-01-12 03:46 - 02125824 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl 2015-02-11 21:09 - 2015-01-12 03:45 - 00418304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtmsft.dll 2015-02-11 21:09 - 2015-01-12 03:43 - 14401024 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll 2015-02-11 21:09 - 2015-01-12 03:34 - 00128000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iepeers.dll 2015-02-11 21:09 - 2015-01-12 03:30 - 00880128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcomm.dll 2015-02-11 21:09 - 2015-01-12 03:27 - 02865152 _____ (Microsoft Corporation) C:\WINDOWS\system32\actxprxy.dll 2015-02-11 21:09 - 2015-01-12 03:27 - 02358272 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll 2015-02-11 21:09 - 2015-01-12 03:25 - 00230400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webcheck.dll 2015-02-11 21:09 - 2015-01-12 03:23 - 02052608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl 2015-02-11 21:09 - 2015-01-12 03:23 - 00688640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll 2015-02-11 21:09 - 2015-01-12 03:23 - 00327168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll 2015-02-11 21:09 - 2015-01-12 03:14 - 12829184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll 2015-02-11 21:09 - 2015-01-12 03:14 - 01548288 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll 2015-02-11 21:09 - 2015-01-12 03:02 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll 2015-02-11 21:09 - 2015-01-12 03:00 - 01888256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll 2015-02-11 21:09 - 2015-01-12 02:56 - 01307136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll 2015-02-11 21:09 - 2015-01-12 02:55 - 00710144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll 2015-02-11 21:09 - 2015-01-10 09:00 - 00430080 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll 2015-02-11 21:09 - 2015-01-10 08:38 - 00359424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\schannel.dll 2015-02-11 21:08 - 2015-01-19 20:42 - 01487976 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll 2015-02-11 21:07 - 2015-01-10 10:22 - 04175872 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys 2015-02-08 21:57 - 2015-02-08 21:57 - 00000000 ____D () C:\ProgramData\Oracle 2015-02-08 21:24 - 2015-02-08 21:28 - 00001115 _____ () C:\Users\Public\Desktop\CEWE FOTOSCHAU.lnk 2015-02-08 21:24 - 2015-02-08 21:24 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OnlineFotoservice 2015-02-08 21:18 - 2015-02-08 21:18 - 00000000 ____D () C:\Program Files\OnlineFotoservice 2015-01-31 21:43 - 2015-02-15 23:42 - 00000000 ____D () C:\Users\Laura\Documents\Reisen 2015 2015-01-27 16:50 - 2015-01-27 16:51 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2015-01-25 13:22 - 2015-01-25 13:22 - 00000957 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\myphotobook.de.lnk 2015-01-25 13:22 - 2015-01-25 13:22 - 00000945 _____ () C:\Users\Public\Desktop\myphotobook.de.lnk 2015-01-25 13:22 - 2015-01-25 13:22 - 00000000 ____D () C:\Program Files (x86)\myphotobook.de 2015-01-25 13:21 - 2015-01-25 13:21 - 00000000 _____ () C:\Users\Laura\.airinstall.log 2015-01-25 13:18 - 2015-01-25 13:18 - 00000000 ____D () C:\Users\Laura\restore 2015-01-25 13:01 - 2015-02-11 21:10 - 00000000 ____D () C:\ProgramData\tmp 2015-01-25 13:01 - 2015-02-08 00:49 - 00000000 ____D () C:\ProgramData\hps 2015-01-25 13:01 - 2015-01-25 13:01 - 00001047 _____ () C:\Users\Public\Desktop\Mein CEWE FOTOBUCH.lnk 2015-01-25 13:01 - 2015-01-25 13:01 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mein CEWE FOTOBUCH 2015-01-25 12:53 - 2015-01-25 12:53 - 00000000 ____D () C:\Program Files\CEWE 2015-01-18 12:02 - 2015-02-12 19:11 - 00000000 ____D () C:\Users\Laura\Documents\Uni - Master BWL ==================== One Month Modified Files and Folders ======= (If an entry is included in the fixlist, the file\folder will be moved.) 2015-02-17 00:04 - 2014-07-28 14:19 - 00000000 ____D () C:\Users\Laura\AppData\Roaming\Skype 2015-02-17 00:00 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\system32\sru 2015-02-17 00:00 - 2013-08-13 11:07 - 00000884 _____ () C:\WINDOWS\Tasks\Adobe Flash Player Updater.job 2015-02-16 23:48 - 2013-09-11 22:52 - 00001136 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job 2015-02-16 23:33 - 2013-11-05 18:27 - 01742857 _____ () C:\WINDOWS\WindowsUpdate.log 2015-02-16 23:22 - 2014-01-15 10:21 - 00000000 ___DO () C:\Users\Laura\SkyDrive 2015-02-16 23:20 - 2013-09-24 22:04 - 00000000 ___RD () C:\Users\Laura\Dropbox 2015-02-16 23:19 - 2013-09-24 22:01 - 00000000 ____D () C:\Users\Laura\AppData\Roaming\Dropbox 2015-02-16 23:16 - 2013-09-11 22:52 - 00001132 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job 2015-02-16 23:16 - 2013-08-22 16:46 - 00343295 _____ () C:\WINDOWS\setupact.log 2015-02-16 23:16 - 2013-08-22 16:45 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT 2015-02-16 23:15 - 2013-10-25 23:27 - 00000000 ____D () C:\AdwCleaner 2015-02-16 23:15 - 2013-08-22 15:25 - 00524288 ___SH () C:\WINDOWS\system32\config\BBI 2015-02-16 23:15 - 2013-08-13 10:22 - 00003596 _____ () C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-2764708345-627995945-2754369203-1001 2015-02-16 21:27 - 2014-01-09 13:59 - 01037824 ___SH () C:\Users\Laura\Desktop\Thumbs.db 2015-02-15 23:59 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\system32\NDF 2015-02-15 23:45 - 2013-09-29 21:04 - 00084270 _____ () C:\WINDOWS\PFRO.log 2015-02-15 23:25 - 2013-08-13 10:15 - 00000000 ____D () C:\Users\Laura\AppData\Local\Packages 2015-02-15 23:19 - 2015-01-03 18:10 - 00013382 _____ () C:\Users\Laura\Desktop\AUSGABEN_2015.xlsx 2015-02-15 20:54 - 2014-12-10 17:17 - 00000000 ____D () C:\Users\Laura\Documents\Wincor Nixdorf 2015-02-15 17:09 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\AppReadiness 2015-02-15 15:25 - 2013-11-30 12:00 - 00003164 _____ () C:\WINDOWS\System32\Tasks\HPCeeScheduleForLaura 2015-02-15 15:25 - 2013-11-30 12:00 - 00000350 _____ () C:\WINDOWS\Tasks\HPCeeScheduleForLaura.job 2015-02-15 14:21 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\rescache 2015-02-15 13:27 - 2013-08-22 17:36 - 00000000 ____D () C:\Program Files\Common Files\microsoft shared 2015-02-14 12:48 - 2012-07-26 09:59 - 00000000 ____D () C:\WINDOWS\CbsTemp 2015-02-13 23:14 - 2015-01-03 18:12 - 00010236 _____ () C:\Users\Laura\Desktop\EINNAHMEN_2015.xlsx 2015-02-13 23:08 - 2013-09-24 22:04 - 00001067 _____ () C:\Users\Laura\Desktop\Dropbox.lnk 2015-02-13 23:08 - 2013-09-24 22:02 - 00000000 ____D () C:\Users\Laura\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox 2015-02-12 16:22 - 2013-08-22 16:44 - 00381472 _____ () C:\WINDOWS\system32\FNTCACHE.DAT 2015-02-11 21:31 - 2013-11-13 16:05 - 00000000 ____D () C:\ProgramData\Package Cache 2015-02-11 21:28 - 2013-08-19 03:06 - 00000000 ____D () C:\WINDOWS\system32\MRT 2015-02-11 21:21 - 2013-08-19 03:06 - 116773704 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2015-02-11 21:02 - 2013-10-20 21:12 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira 2015-02-11 21:02 - 2013-10-20 21:12 - 00000000 ____D () C:\Program Files (x86)\Avira 2015-02-09 18:35 - 2013-09-30 06:14 - 00006744 _____ () C:\WINDOWS\system32\PerfStringBackup.INI 2015-02-09 18:35 - 2013-09-30 05:56 - 01379974 _____ () C:\WINDOWS\system32\perfh007.dat 2015-02-09 18:35 - 2013-09-30 05:56 - 00352628 _____ () C:\WINDOWS\system32\perfc007.dat 2015-02-08 01:15 - 2013-11-05 18:16 - 00000000 ____D () C:\Users\Laura 2015-02-08 01:12 - 2014-03-06 22:53 - 00000000 ____D () C:\Users\Laura\Documents\ZZKram 2015-02-08 00:34 - 2014-03-06 21:42 - 00222720 ___SH () C:\Users\Laura\Documents\Thumbs.db 2015-02-06 21:49 - 2013-09-11 22:52 - 00002195 _____ () C:\Users\Public\Desktop\Google Chrome.lnk 2015-02-05 15:43 - 2013-09-11 22:52 - 00004108 _____ () C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA 2015-02-05 15:43 - 2013-09-11 22:52 - 00003872 _____ () C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore 2015-02-04 22:00 - 2013-08-13 11:07 - 00003772 _____ () C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater 2015-02-03 21:31 - 2014-11-15 21:34 - 00714720 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe 2015-02-03 21:31 - 2014-11-15 21:34 - 00106976 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl 2015-02-03 19:17 - 2013-08-16 18:23 - 02571776 ___SH () C:\Users\Laura\Downloads\Thumbs.db 2015-01-31 21:51 - 2013-08-13 10:45 - 00000000 ____D () C:\Users\Laura\Documents\Rettungsdienst 2015-01-31 21:49 - 2013-08-13 10:45 - 00000000 ____D () C:\Users\Laura\Documents\Feuerwehr 2015-01-31 08:44 - 2013-08-13 10:24 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service 2015-01-26 23:43 - 2014-06-25 10:25 - 00000000 ____D () C:\Users\Laura\Documents\zzsonstiges 2015-01-18 12:01 - 2014-12-21 15:58 - 00000000 ____D () C:\Users\Laura\Documents\Auslandssemester 2015-01-18 11:41 - 2015-01-04 14:54 - 00000000 ____D () C:\Users\Laura\Documents\Eigene Scans ==================== Files in the root of some directories ======= 2013-09-28 18:10 - 2013-09-30 22:28 - 0001124 _____ () C:\ProgramData\hpzinstall.log Some content of TEMP: ==================== C:\Users\Laura\AppData\Local\Temp\avgnt.exe C:\Users\Laura\AppData\Local\Temp\COMAP.EXE C:\Users\Laura\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmp02ehah.dll C:\Users\Laura\AppData\Local\Temp\Extract.exe C:\Users\Laura\AppData\Local\Temp\h3gybe7o.dll C:\Users\Laura\AppData\Local\Temp\ICReinstall_ConnectifyInstaller_nonir__CB-DL-Manager.exe C:\Users\Laura\AppData\Local\Temp\JavaRa.exe C:\Users\Laura\AppData\Local\Temp\jli.dll C:\Users\Laura\AppData\Local\Temp\jre-7u51-windows-i586.exe C:\Users\Laura\AppData\Local\Temp\keytool.exe C:\Users\Laura\AppData\Local\Temp\mcf6mbii.dll C:\Users\Laura\AppData\Local\Temp\msvcr100.dll C:\Users\Laura\AppData\Local\Temp\node.exe C:\Users\Laura\AppData\Local\Temp\Quarantine.exe C:\Users\Laura\AppData\Local\Temp\rte8ZkzJWp.exe C:\Users\Laura\AppData\Local\Temp\SP62765.exe C:\Users\Laura\AppData\Local\Temp\SP63285.exe C:\Users\Laura\AppData\Local\Temp\SP63317.exe C:\Users\Laura\AppData\Local\Temp\SP63342.exe C:\Users\Laura\AppData\Local\Temp\SP63343.exe C:\Users\Laura\AppData\Local\Temp\SP63344.exe C:\Users\Laura\AppData\Local\Temp\SP63346.exe C:\Users\Laura\AppData\Local\Temp\SP63353.exe C:\Users\Laura\AppData\Local\Temp\SP63357.exe C:\Users\Laura\AppData\Local\Temp\SP63752.exe C:\Users\Laura\AppData\Local\Temp\SP63805.exe C:\Users\Laura\AppData\Local\Temp\SP64039.exe C:\Users\Laura\AppData\Local\Temp\sp64126.exe C:\Users\Laura\AppData\Local\Temp\SP64202.exe C:\Users\Laura\AppData\Local\Temp\SP64571.exe C:\Users\Laura\AppData\Local\Temp\SP64726.exe C:\Users\Laura\AppData\Local\Temp\SP64741.exe C:\Users\Laura\AppData\Local\Temp\SP64854.exe C:\Users\Laura\AppData\Local\Temp\sqlite3.dll C:\Users\Laura\AppData\Local\Temp\sqlite3.exe C:\Users\Laura\AppData\Local\Temp\sysad.exe C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite10002.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite10103.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite10156.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite10157.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite10209.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite10282.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite10350.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite10704.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite10754.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite10838.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite10845.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite10933.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite11043.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite11122.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite11229.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite11262.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite11326.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite11386.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite11549.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite11661.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite11854.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite11880.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite11890.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite11938.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite12004.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite12032.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite12098.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite12111.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite12272.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite12321.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite12326.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite12335.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite12445.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite12521.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite12540.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite12556.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite12591.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite12789.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite12873.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite12887.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite13137.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite13254.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite13621.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite13683.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite13854.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite13929.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite13972.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite13977.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite14014.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite14063.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite14093.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite14130.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite14227.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite14230.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite14533.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite14908.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite14986.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite14997.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite15116.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite15129.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite15143.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite15255.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite15398.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite15500.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite15587.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite15838.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite15879.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite15900.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite15957.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite16024.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite16059.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite16067.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite16071.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite16131.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite16183.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite16265.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite16368.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite16418.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite16467.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite16473.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite16475.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite16894.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite16942.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite16958.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite17158.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite17402.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite17470.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite17752.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite17774.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite17885.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite17902.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite17908.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite18028.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite18158.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite18325.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite18407.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite18417.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite18449.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite18500.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite18803.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite18845.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite18851.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite18932.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite19000.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite19121.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite19123.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite19126.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite19193.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite19483.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite19501.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite19537.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite19562.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite19632.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite19669.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite19703.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite19916.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite19991.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite20020.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite20169.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite20228.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite20520.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite20557.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite20962.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite20990.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite21019.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite21051.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite21104.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite21146.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite21197.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite21508.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite21750.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite21844.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite21986.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite22044.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite22084.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite22094.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite22199.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite22254.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite22320.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite22361.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite22424.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite22427.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite22482.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite22546.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite22563.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite22565.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite22652.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite22779.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite22860.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite23165.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite23523.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite23703.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite23762.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite23913.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite23933.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite23964.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite24060.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite24118.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite24258.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite24376.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite24535.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite24675.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite24700.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite24710.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite24720.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite24779.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite24820.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite25120.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite25314.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite25366.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite25391.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite25501.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite25537.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite25555.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite25689.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite25726.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite26069.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite26146.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite26556.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite26564.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite26742.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite26852.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite27004.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite27072.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite27158.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite27606.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite27911.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite27925.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite27999.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite28037.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite28074.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite28101.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite28226.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite28353.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite28397.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite28568.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite28672.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite28828.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite28948.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite29785.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite29815.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite29833.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite29839.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite29932.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite29957.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite29967.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite30036.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite30075.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite30310.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite30407.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite30750.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite30842.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite30916.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite31027.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite31071.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite31308.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite31428.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite31647.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite31667.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite31726.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite31773.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite31849.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite31854.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite32088.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite32241.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite32256.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite32395.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite32401.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite32493.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite32618.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite32768.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite32828.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite32881.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite32901.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite32908.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite33004.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite33074.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite33107.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite33160.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite33487.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite33732.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite33744.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite33765.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite33789.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite34023.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite34037.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite34115.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite34319.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite34507.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite34616.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite34691.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite34693.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite34737.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite34781.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite35054.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite35159.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite35190.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite35301.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite35391.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite35519.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite35573.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite35627.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite35642.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite35794.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite36010.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite36026.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite36027.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite36030.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite36174.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite36339.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite36350.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite36407.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite36766.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite36867.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite37131.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite37164.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite37181.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite37319.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite37698.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite37777.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite37877.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite38142.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite38208.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite38379.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite38426.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite38498.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite38527.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite38574.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite38759.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite38817.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite38907.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite38994.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite38996.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite39052.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite39114.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite39192.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite39364.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite39433.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite39484.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite39508.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite39529.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite39561.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite39578.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite39809.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite39871.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite39976.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite40066.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite40273.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite40314.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite40361.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite40388.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite40498.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite40606.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite40673.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite40696.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite40949.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite40997.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite41024.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite41144.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite41232.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite41261.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite41372.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite41416.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite41502.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite41561.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite41631.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite41660.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite41694.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite41701.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite41827.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite41838.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite41869.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite41897.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite41902.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite41947.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite42016.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite42045.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite42051.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite42253.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite42468.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite42652.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite42710.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite42725.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite42750.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite42787.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite42803.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite42849.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite43238.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite43258.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite43323.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite43498.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite43501.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite43510.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite43536.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite43636.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite43840.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite44043.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite44086.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite44178.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite44275.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite44358.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite44589.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite44619.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite44906.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite44922.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite44926.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite45031.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite45037.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite45112.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite45223.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite45267.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite45479.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite45480.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite45482.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite45492.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite45493.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite45857.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite46032.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite46182.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite46258.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite46460.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite46481.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite46737.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite46755.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite46781.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite46786.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite46990.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite47003.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite47051.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite47214.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite47318.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite47390.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite47396.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite47553.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite47740.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite47894.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite48035.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite48044.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite48055.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite48149.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite48176.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite48457.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite48495.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite48532.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite48551.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite48573.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite48593.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite48596.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite48686.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite48799.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite48836.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite48974.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite49003.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite49089.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite49226.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite49275.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite49543.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite49579.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite49580.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite49712.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite49732.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite50001.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite50076.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite50130.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite50134.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite50369.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite50425.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite50582.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite50647.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite50666.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite50683.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite50803.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite50921.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite50987.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite51063.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite51221.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite51398.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite51447.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite51473.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite51591.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite51894.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite51971.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite52044.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite52304.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite52346.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite52401.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite52545.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite52561.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite52678.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite52682.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite52684.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite52823.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite52855.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite52881.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite52946.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite52962.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite52963.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite53012.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite53371.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite53425.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite53464.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite53516.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite53750.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite53912.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite53947.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite53992.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite54070.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite54338.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite54371.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite54388.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite54472.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite54498.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite54582.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite54663.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite54925.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite55117.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite55158.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite55177.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite55183.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite55242.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite55247.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite55506.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite55543.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite55575.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite55929.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite56049.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite56310.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite56380.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite56451.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite56535.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite56599.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite56961.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite56996.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite57066.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite57119.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite57142.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite57184.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite57355.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite57394.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite57500.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite57529.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite57615.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite57625.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite57704.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite58149.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite58244.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite58249.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite58297.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite58412.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite58639.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite58656.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite58666.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite58701.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite58933.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite59114.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite59203.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite59464.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite59486.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite59545.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite59573.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite59633.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite59670.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite59701.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite59789.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite59792.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite59936.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite60056.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite60071.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite60183.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite60211.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite60256.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite60258.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite60319.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite60472.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite60790.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite60793.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite60827.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite60999.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite61072.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite61154.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite61206.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite61417.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite61426.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite61465.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite61498.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite61500.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite61579.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite61690.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite61790.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite61964.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite62154.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite62232.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite62398.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite62428.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite62487.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite62501.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite62548.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite62663.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite62693.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite62767.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite62934.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite63019.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite63030.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite63142.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite63170.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite63256.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite63356.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite63470.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite63527.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite63669.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite63852.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite64165.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite64346.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite64917.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite64964.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite65121.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite65130.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite65135.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite65143.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite65182.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite65265.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite65285.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite65315.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite65328.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite65459.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite65463.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite65482.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite65488.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite65565.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite65598.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite65621.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite65844.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite65916.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite66134.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite66245.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite66328.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite66429.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite66435.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite66611.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite66719.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite66835.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite66886.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite66948.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite67078.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite67108.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite67229.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite67233.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite67240.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite67417.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite67463.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite67476.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite67493.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite67663.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite67810.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite67840.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite67950.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite67956.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite68158.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite68240.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite68261.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite68518.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite68525.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite68691.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite68915.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite69016.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite69056.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite69069.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite69129.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite69228.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite69235.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite69249.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite69309.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite69331.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite69381.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite69589.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite69938.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite70022.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite70098.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite70135.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite70158.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite70171.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite70230.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite70363.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite70436.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite70563.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite70653.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite70690.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite70790.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite70908.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite71012.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite71040.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite71446.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite71542.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite71614.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite71730.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite71777.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite71837.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite71948.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite71983.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite72380.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite72382.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite72460.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite72520.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite72573.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite72598.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite72761.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite72881.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite72888.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite73080.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite73246.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite73333.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite73340.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite73359.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite73451.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite73598.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite73606.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite73681.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite73730.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite73866.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite74122.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite74149.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite74214.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite74297.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite74344.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite74432.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite74458.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite74574.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite74647.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite74699.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite74827.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite74977.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite74995.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite75298.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite75299.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite75461.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite75508.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite75513.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite75576.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite75579.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite75591.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite75602.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite75603.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite75851.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite75865.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite76065.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite76180.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite76183.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite76200.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite76276.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite76359.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite76743.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite76746.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite76831.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite76908.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite76955.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite76971.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite76985.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite76998.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite77006.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite77022.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite77125.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite77234.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite77371.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite77577.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite77650.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite77852.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite77861.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite78073.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite78450.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite78681.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite78754.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite78759.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite78773.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite78890.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite78925.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite79049.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite79115.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite79145.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite79287.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite79295.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite79303.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite79353.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite79474.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite79478.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite79493.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite79656.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite79827.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite80062.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite80121.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite80136.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite80263.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite80276.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite80315.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite80645.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite80850.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite80853.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite80854.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite80930.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite81062.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite81079.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite81260.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite81367.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite81395.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite81417.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite81642.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite81665.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite81907.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite81943.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite81960.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite82235.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite82389.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite82410.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite82581.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite82748.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite82873.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite83024.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite83303.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite83321.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite83393.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite83442.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite83504.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite83837.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite84042.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite84117.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite84530.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite84685.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite84800.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite84859.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite84876.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite84951.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite84971.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite85001.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite85045.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite85118.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite85447.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite85800.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite86017.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite86102.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite86359.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite86489.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite86659.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite86697.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite86701.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite86708.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite86750.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite86840.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite86852.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite86938.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite86968.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite87013.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite87016.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite87077.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite87198.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite87219.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite87334.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite87341.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite87465.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite87798.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite87889.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite88192.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite88236.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite88343.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite88370.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite88432.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite88565.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite88647.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite89038.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite89285.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite89490.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite89573.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite89609.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite89745.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite89811.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite89824.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite90010.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite90252.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite90348.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite90413.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite90503.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite90566.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite90727.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite90786.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite90791.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite91245.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite91313.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite91323.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite91464.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite91512.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite91529.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite91652.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite91755.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite91791.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite91924.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite92008.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite92045.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite92216.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite92283.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite92529.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite92665.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite92795.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite93038.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite93494.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite93684.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite93707.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite93724.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite93739.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite93772.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite93999.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite94088.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite94220.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite94316.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite94330.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite94447.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite94639.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite94987.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite95060.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite95313.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite95356.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite95449.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite95505.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite95567.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite95586.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite95675.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite95767.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite95966.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite96075.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite96131.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite96136.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite96201.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite96236.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite96282.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite96418.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite96449.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite96633.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite96697.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite96868.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite97031.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite97053.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite97118.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite97276.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite97333.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite97359.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite97486.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite97773.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite97788.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite97835.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite97960.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite98206.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite98220.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite98506.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite98533.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite98698.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite98770.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite98795.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite98901.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite98949.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite99847.dll C:\Users\Laura\AppData\Local\Temp\System.Data.SQLite99887.dll C:\Users\Laura\AppData\Local\Temp\UninstallHPSA.exe ==================== Bamital & volsnap Check ================= (There is no automatic fix for files that do not pass verification.) C:\Windows\System32\winlogon.exe => File is digitally signed C:\Windows\System32\wininit.exe => File is digitally signed C:\Windows\explorer.exe => File is digitally signed C:\Windows\SysWOW64\explorer.exe => File is digitally signed C:\Windows\System32\svchost.exe => File is digitally signed C:\Windows\SysWOW64\svchost.exe => File is digitally signed C:\Windows\System32\services.exe => File is digitally signed C:\Windows\System32\User32.dll => File is digitally signed C:\Windows\SysWOW64\User32.dll => File is digitally signed C:\Windows\System32\userinit.exe => File is digitally signed C:\Windows\SysWOW64\userinit.exe => File is digitally signed C:\Windows\System32\rpcss.dll => File is digitally signed C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed LastRegBack: 2015-02-12 16:34 ==================== End Of Log ============================ So, ich hoffe ich habe alles richtig gemacht und freue mich auf die Interpetation. Vielen Dank schon einmal |
17.02.2015, 08:57 | #8 | |
/// TB-Ausbilder | Sicherheitshinweis bei Virenprogramm und Änderung ProxyEinstellungen Ja sieht gut aus, ein paar Reste entfernen: Drücke bitte die Windowstaste + R Taste und schreibe notepad in das Ausführen Fenster. Kopiere nun folgenden Text aus der Code-Box in das leere Textdokument Code:
ATTFilter SearchScopes: HKU\S-1-5-21-2764708345-627995945-2754369203-1001 -> URL hxxp://search.conduit.com/Results.aspx?ctid=CT3320133&octid=EB_ORIGINAL_CTID&SearchSource=58&CUI=&UM=4&UP=SP4120AFC1-D5B4-4252-AC75-F74A2ED0D2AF&q={searchTerms}&SSPV= SearchScopes: HKU\S-1-5-21-2764708345-627995945-2754369203-1001 -> SuggestionsURL_JSON hxxp://suggest.search.conduit.com/CSuggestJson.ashx?prefix={searchTerms} SearchScopes: HKU\S-1-5-21-2764708345-627995945-2754369203-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0 -> URL hxxp://search.conduit.com/Results.aspx?ctid=CT3320133&octid=EB_ORIGINAL_CTID&SearchSource=58&CUI=&UM=4&UP=SP4120AFC1-D5B4-4252-AC75-F74A2ED0D2AF&q={searchTerms}&SSPV= SearchScopes: HKU\S-1-5-21-2764708345-627995945-2754369203-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0 -> SuggestionsURL_JSON hxxp://suggest.search.conduit.com/CSuggestJson.ashx?prefix={searchTerms} Toolbar: HKU\S-1-5-21-2764708345-627995945-2754369203-1001 -> No Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No File Toolbar: HKU\S-1-5-21-2764708345-627995945-2754369203-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0 -> No Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No File CHR HKLM-x32\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - No Path emptytemp: Speichere diese bitte als Fixlist.txt auf deinem Desktop (oder dem Verzeichnis in dem sich FRST befindet).
Dann bitte eine Datei bei Virustotal scannen lassen: Bitte lasse die Datei aus der Code-Box bei Virustotal überprüfen.
Downloade Dir bitte SecurityCheck und:
__________________ Lerne, zurück zu schlagen und unterstütze uns! TB Akademie | Spende | Lob & Kritik |
17.02.2015, 09:25 | #9 |
/// TB-Ausbilder | Sicherheitshinweis bei Virenprogramm und Änderung ProxyEinstellungen Bitte starte noch einmal FRST
__________________ Lerne, zurück zu schlagen und unterstütze uns! TB Akademie | Spende | Lob & Kritik |
17.02.2015, 18:48 | #10 |
| Sicherheitshinweis bei Virenprogramm und Änderung ProxyEinstellungen 1. Fixlog Code:
ATTFilter Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 15-02-2015 Ran by Laura at 2015-02-17 19:25:44 Run:1 Running from C:\Users\Laura\Desktop Loaded Profiles: Laura & (Available profiles: Laura) Boot Mode: Normal ============================================== Content of fixlist: ***************** SearchScopes: HKU\S-1-5-21-2764708345-627995945-2754369203-1001 -> URL hxxp://search.conduit.com/Results.aspx?ctid=CT3320133&octid=EB_ORIGINAL_CTID&SearchSource=58&CUI=&UM=4&UP=SP4120AFC1-D5B4-4252-AC75-F74A2ED0D2AF&q={searchTerms}&SSPV= SearchScopes: HKU\S-1-5-21-2764708345-627995945-2754369203-1001 -> SuggestionsURL_JSON hxxp://suggest.search.conduit.com/CSuggestJson.ashx?prefix={searchTerms} SearchScopes: HKU\S-1-5-21-2764708345-627995945-2754369203-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0 -> URL hxxp://search.conduit.com/Results.aspx?ctid=CT3320133&octid=EB_ORIGINAL_CTID&SearchSource=58&CUI=&UM=4&UP=SP4120AFC1-D5B4-4252-AC75-F74A2ED0D2AF&q={searchTerms}&SSPV= SearchScopes: HKU\S-1-5-21-2764708345-627995945-2754369203-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0 -> SuggestionsURL_JSON hxxp://suggest.search.conduit.com/CSuggestJson.ashx?prefix={searchTerms} Toolbar: HKU\S-1-5-21-2764708345-627995945-2754369203-1001 -> No Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No File Toolbar: HKU\S-1-5-21-2764708345-627995945-2754369203-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0 -> No Name - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No File CHR HKLM-x32\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - No Path emptytemp: ***************** HKU\S-1-5-21-2764708345-627995945-2754369203-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\URL => value deleted successfully. HKU\S-1-5-21-2764708345-627995945-2754369203-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\SuggestionsURL_JSON => value deleted successfully. HKU\S-1-5-21-2764708345-627995945-2754369203-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\URL => value deleted successfully. HKU\S-1-5-21-2764708345-627995945-2754369203-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\SuggestionsURL_JSON => value deleted successfully. HKU\S-1-5-21-2764708345-627995945-2754369203-1001\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} => value deleted successfully. HKCR\CLSID\{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} => Key not found. HKU\S-1-5-21-2764708345-627995945-2754369203-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\Toolbar: HKU\S-1-5-21-2764708345-627995945-2754369203-1001-{{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} => Value not found. HKCR\CLSID\Toolbar: HKU\S-1-5-21-2764708345-627995945-2754369203-1001-{{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} => Key not found. "HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\flliilndjeohchalpbbcdekjklbdgfkk" => Key deleted successfully. EmptyTemp: => Removed 23.5 GB temporary data. The system needed a reboot. ==== End of Fixlog 19:32:49 ==== https://www.virustotal.com/de/file/bdf0eca428dd7ba733abd8bda7bf3eb042f452a0995c5915f5d922808f7aa11c/analysis/1424194707/ https://www.virustotal.com/de/file/bdf0eca428dd7ba733abd8bda7bf3eb042f452a0995c5915f5d922808f7aa11c/analysis/1424194707/ Security Check Code:
ATTFilter Results of screen317's Security Check version 0.99.96 x64 (UAC is enabled) Internet Explorer 11 ``````````````Antivirus/Firewall Check:`````````````` Avira Desktop Windows Defender Antivirus up to date! `````````Anti-malware/Other Utilities Check:````````` Java 64-bit 8 Update 31 Adobe Flash Player 16.0.0.305 Adobe Reader XI Mozilla Firefox (35.0.1) Google Chrome (40.0.2214.111) Google Chrome (40.0.2214.94) ````````Process Check: objlist.exe by Laurent```````` Malwarebytes Anti-Malware mbamservice.exe Malwarebytes Anti-Malware mbam.exe Avira Antivir avgnt.exe Avira Antivir avguard.exe Malwarebytes Anti-Malware mbamscheduler.exe `````````````````System Health check````````````````` Total Fragmentation on Drive C: % ````````````````````End of Log`````````````````````` Code:
ATTFilter Farbar Recovery Scan Tool (x64) Version: 15-02-2015 Ran by Laura at 2015-02-17 19:43:44 Running from C:\Users\Laura\Desktop Boot Mode: Normal ================== Search Files: "*.pac" ============= ====== End Of Search ====== |
18.02.2015, 09:00 | #11 |
/// TB-Ausbilder | Sicherheitshinweis bei Virenprogramm und Änderung ProxyEinstellungen Ok. Kannst du im Firefox den Proxy manuell ausschalten ? Das FRST Log sieht in diesem Fall etwas "seltsam" aus. Mach dann bitte einen NEustart und ein frisches FRST-Log, bitte. Ach, hast du eine Ahnung, wo dieser Textabschnitt im FRST-Log, der beim FF Proxy erscheint, herkommen könnte ?
__________________ Lerne, zurück zu schlagen und unterstütze uns! TB Akademie | Spende | Lob & Kritik |
19.02.2015, 17:08 | #12 |
| Sicherheitshinweis bei Virenprogramm und Änderung ProxyEinstellungen Danke für die Hilfe aber leider komme ich erst morgen dazu wieder an meinen Laptop zu gehen. was das bei Firefox zu bedeuten hat habe ich mich auch gefragt vor allem der "text"... hab den die Tage kopiert und verschickt per whtasapp Web bei Google Chrome...kann ich nicht nachvollziehen! aber das mit dem Proxy ausschalten probiere ich morgen. vielen dank und viele grüße! Hi, nur so nun ist das neue FRST mit "kien Proxy" bei Firefox. Hoffe ich habe alles richtig gemacht. Dankeschön schonmal FRST Logfile: FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 18-02-2015 01 Ran by Laura (administrator) on LAURA-HP on 19-02-2015 18:04:08 Running from C:\Users\Laura\Desktop Loaded Profiles: Laura (Available profiles: Laura) Platform: Windows 8.1 (X64) OS Language: Deutsch (Deutschland) Internet Explorer Version 11 (Default browser: FF) Boot Mode: Normal Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (If an entry is included in the fixlist, the process will be closed. The file will not be moved.) (AMD) C:\Windows\System32\atiesrxx.exe (AMD) C:\Windows\System32\atieclxx.exe (Hewlett-Packard Company) C:\Windows\System32\hpservice.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RTKAUDIOSERVICE64.EXE (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe (Andrea Electronics Corporation) C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe (Microsoft Corporation.) C:\Program Files (x86)\Microsoft\BingBar\7.3.132.0\BBSvc.EXE (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe (Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe (Microsoft Corporation) C:\Program Files\Microsoft Office 15\ClientX64\officeclicktorun.exe (Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe (Microsoft Corporation) C:\Windows\System32\dasHost.exe (Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPWMISVC.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe (Malwarebytes Corporation) C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamscheduler.exe (Malwarebytes Corporation) C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe (Connectify) C:\Program Files (x86)\Connectify\ConnectifyService.exe (Connectify) C:\Program Files (x86)\Connectify\Connectifyd.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Malwarebytes Corporation) C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbam.exe (Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20689_x64__8wekyb3d8bbwe\livecomm.exe (Microsoft Corporation) C:\Windows\System32\SkyDrive.exe (Intel Corporation) C:\Windows\System32\igfxtray.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation) C:\Windows\System32\igfxsrvc.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Connectify) C:\Program Files (x86)\Connectify\Connectify.exe (Connectify) C:\Program Files (x86)\Connectify\DispatchUI.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Microsoft Corporation) C:\Windows\System32\consent.exe (Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe (CyberLink) C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe (Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP CoolSense\CoolSense.exe () C:\Program Files (x86)\Canon\ImageBrowser EX\MFManager.exe (Microsoft Corporation) C:\Program Files\Microsoft Office 15\root\office15\ONENOTEM.EXE (Hewlett-Packard) C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe (Dropbox, Inc.) C:\Users\Laura\AppData\Roaming\Dropbox\bin\Dropbox.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe (CyberLink Corp.) C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe (Geek Software GmbH) C:\Program Files (x86)\PDF24\pdf24.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe (Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe (Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe (ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe (Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe (CyberLink Corp.) C:\Program Files (x86)\CyberLink\Power2Go8\VirtualDrive.exe (Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe ==================== Registry (Whitelisted) ================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [7194840 2013-12-11] (Realtek Semiconductor) HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2771184 2013-12-11] (Synaptics Incorporated) HKLM\...\Run: [Connectify Hotspot] => C:\Program Files (x86)\Connectify\Connectify.exe [4326176 2014-07-28] (Connectify) HKLM\...\Run: [Connectify Dispatch] => C:\Program Files (x86)\Connectify\DispatchUI.exe [2399008 2014-07-28] (Connectify) HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe [49208 2010-06-09] (Hewlett-Packard) HKLM-x32\...\Run: [] => [X] HKLM-x32\...\Run: [avgnt] => C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [702768 2014-12-17] (Avira Operations GmbH & Co. KG) HKLM-x32\...\Run: [RemoteControl10] => C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe [95192 2013-04-10] (CyberLink Corp.) HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [766208 2013-09-24] (Advanced Micro Devices, Inc.) HKLM-x32\...\Run: [HPMessageService] => C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPMSGSVC.exe [1045304 2013-10-08] (Hewlett-Packard Development Company, L.P.) HKLM-x32\...\Run: [PDFPrint] => C:\Program Files (x86)\PDF24\pdf24.exe [186408 2013-12-12] (Geek Software GmbH) HKLM-x32\...\Run: [Avira Systray] => C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe [126712 2015-01-19] (Avira Operations GmbH & Co. KG) Winlogon\Notify\igfxcui: C:\WINDOWS\system32\igfxdev.dll (Intel Corporation) HKU\S-1-5-21-2764708345-627995945-2754369203-1001\...\Run: [SkyDrive] => C:\Users\Laura\AppData\Local\Microsoft\SkyDrive\SkyDrive.exe [257136 2013-08-23] (Microsoft Corporation) HKU\S-1-5-21-2764708345-627995945-2754369203-1001\...\Run: [Power2GoExpress8] => NA HKU\S-1-5-21-2764708345-627995945-2754369203-1001\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [22041192 2014-08-27] (Skype Technologies S.A.) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\HP Digital Imaging Monitor.lnk ShortcutTarget: HP Digital Imaging Monitor.lnk -> C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe (Hewlett-Packard Co.) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\ImageBrowser EX Agent.lnk ShortcutTarget: ImageBrowser EX Agent.lnk -> C:\Program Files (x86)\Canon\ImageBrowser EX\MFManager.exe () Startup: C:\Users\Laura\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\An OneNote senden.lnk ShortcutTarget: An OneNote senden.lnk -> C:\Program Files\Microsoft Office 15\root\office15\ONENOTEM.EXE (Microsoft Corporation) Startup: C:\Users\Laura\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk ShortcutTarget: Dropbox.lnk -> C:\Users\Laura\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) ShellIconOverlayIdentifiers: [DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Laura\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.) ShellIconOverlayIdentifiers: [DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Laura\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.) ShellIconOverlayIdentifiers: [DropboxExt3] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Laura\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.) ShellIconOverlayIdentifiers: [DropboxExt4] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Laura\AppData\Roaming\Dropbox\bin\DropboxExt64.25.dll (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Laura\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Laura\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [DropboxExt3] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Laura\AppData\Roaming\Dropbox\bin\DropboxExt.25.dll (Dropbox, Inc.) ==================== Internet (Whitelisted) ==================== (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.) HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = about:blank HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = about:blank HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = about:blank HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = about:blank HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKU\S-1-5-21-2764708345-627995945-2754369203-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://g.uk.msn.com/HPNOT13/4 HKU\S-1-5-21-2764708345-627995945-2754369203-1001\Software\Microsoft\Internet Explorer\Main,Search Bar = hxxp://www.google.com/ie HKU\S-1-5-21-2764708345-627995945-2754369203-1001\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.google.com/ie SearchScopes: HKLM -> {A7B0732F-79AC-4B81-840A-A6FB25D9257C} URL = hxxp://www.amazon.de/s/ref=azs_osd_ieade?ie=UTF-8&tag=hp-de2-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms} SearchScopes: HKLM -> {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = hxxp://rover.ebay.com/rover/1/707-154345-12128-2/4 ?mpre=http%3A%2F%2Fwww.ebay.com%2Fsch%2F%3F_nkw%3D{searchTerms}&keyword={searchTerms} SearchScopes: HKLM-x32 -> {A7B0732F-79AC-4B81-840A-A6FB25D9257C} URL = hxxp://www.amazon.de/s/ref=azs_osd_ieade?ie=UTF-8&tag=hp-de2-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms} SearchScopes: HKLM-x32 -> {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = hxxp://rover.ebay.com/rover/1/707-154345-12128-2/4 ?mpre=http%3A%2F%2Fwww.ebay.com%2Fsch%2F%3F_nkw%3D{searchTerms}&keyword={searchTerms} SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-2764708345-627995945-2754369203-1001 -> {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = hxxp://www.google.com/search?q={sear SearchScopes: HKU\S-1-5-21-2764708345-627995945-2754369203-1001 -> {A7B0732F-79AC-4B81-840A-A6FB25D9257C} URL = hxxp://www.amazon.de/s/ref=azs_osd_ieade?ie=UTF-8&tag=hp-de2-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms} SearchScopes: HKU\S-1-5-21-2764708345-627995945-2754369203-1001 -> {D944BB61-2E34-4DBF-A683-47E505C587DC} URL = hxxp://rover.ebay.com/rover/1/707-154345-12128-2/4 ?mpre=http%3A%2F%2Fwww.ebay.com%2Fsch%2F%3F_nkw%3D{searchTerms}&keyword={searchTerms} BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation) BHO: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Microsoft Corporation) BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation) BHO-x32: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Microsoft Corporation) Handler-x32: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL (Microsoft Corporation) Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Microsoft Corporation) Handler-x32: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Microsoft Corporation) Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 FireFox: ======== FF ProfilePath: C:\Users\Laura\AppData\Roaming\Mozilla\Firefox\Profiles\v39o8gjd.default FF Homepage: https://www.google.com/ FF NetworkProxy: "autoconfig_url", "Hallo Leute ;) Na wie geht es auch mittlerweile so? Ich hoffe, ihr habt mich nicht vergessen. ;))Mittlerweile bin ich wieder zu Hause und habe letzte Woche euer tolles Fotoalbum voller Bilder gemacht und ausgefüllt ??Danke nochmal, das war echt schön alles noch einmal revue passieren zu lassen. ??Ich weiß zwar nicht, wie es euch so passt oder was die nächsten Pläne sind, aber vielleicht könnten wir uns ja nochmal treffen auf ein kühles Getränk oder sowas und dann könnt ihr wie versprochen das Buch noch einmal mit Bildern und mit Finnland sehen. Ich würde mich zumindest sehr freuen, wenn das klappen würde :)) Ganz liebe Grüße, Laura" FF NetworkProxy: "type", 0 FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_16_0_0_305.dll () FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_16_0_0_305.dll () FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\windows\SysWOW64\Adobe\Director\np32dsw_1166636.dll (Adobe Systems, Inc.) FF Plugin-x32: @google.com/npPicasa3,version=3.0.0 -> C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll (Google, Inc.) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3505.0912 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll (Google Inc.) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF Extension: Avira Browser Safety - C:\Users\Laura\AppData\Roaming\Mozilla\Firefox\Profiles\v39o8gjd.default\Extensions\abs@avira.com [2015-02-02] FF Extension: DownloadHelper - C:\Users\Laura\AppData\Roaming\Mozilla\Firefox\Profiles\v39o8gjd.default\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d} [2014-09-06] FF Extension: Search Manager for Mozilla Firefox ™ - C:\Users\Laura\AppData\Roaming\Mozilla\Firefox\Profiles\v39o8gjd.default\Extensions\{5ccf2762-2b66-4dd5-9997-1103d12d3125}.xpi [2014-12-23] FF Extension: Adblock Plus - C:\Users\Laura\AppData\Roaming\Mozilla\Firefox\Profiles\v39o8gjd.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2013-08-13] FF Extension: Skype Click to Call - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}.xpi [2015-01-27] Chrome: ======= CHR Profile: C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default CHR Extension: (YouTube) - C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2013-09-11] CHR Extension: (Google Search) - C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2013-09-11] CHR Extension: (Skype Click to Call) - C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl [2014-08-01] CHR Extension: (Google Wallet) - C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-09-14] CHR Extension: (Gmail) - C:\Users\Laura\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2013-09-11] CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2014-07-14] ==================== Services (Whitelisted) ================= (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [431920 2014-12-17] (Avira Operations GmbH & Co. KG) R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [431920 2014-12-17] (Avira Operations GmbH & Co. KG) R2 AntiVirWebService; C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe [993584 2014-12-17] (Avira Operations GmbH & Co. KG) R2 Avira.OE.ServiceHost; C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe [182520 2015-01-19] (Avira Operations GmbH & Co. KG) R2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1390176 2014-07-14] (Microsoft Corporation) R2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1767520 2014-07-14] (Microsoft Corporation) R2 ClickToRunSvc; C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe [2449592 2014-11-12] (Microsoft Corporation) R2 Connectify; C:\Program Files (x86)\Connectify\ConnectifyService.exe [487936 2014-07-28] (Connectify) [File not signed] R2 HPSLPSVC; C:\Program Files (x86)\HP\Digital Imaging\bin\HPSLPSVC64.DLL [1039360 2011-08-18] (Hewlett-Packard Co.) [File not signed] R2 HPWMISVC; c:\Program Files (x86)\Hewlett-Packard\HP System Event\HPWMISVC.exe [1039160 2013-10-08] (Hewlett-Packard Development Company, L.P.) R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [15720 2013-08-22] (Intel Corporation) R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [733696 2013-05-11] (Intel(R) Corporation) [File not signed] S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [822232 2013-05-11] (Intel(R) Corporation) R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [131544 2013-12-11] (Intel Corporation) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-12-11] (Intel Corporation) R2 MBAMScheduler; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamscheduler.exe [1871160 2014-11-21] (Malwarebytes Corporation) R2 MBAMService; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe [969016 2014-11-21] (Malwarebytes Corporation) R2 Net Driver HPZ12; C:\Windows\System32\HPZinw12.dll [71680 2010-08-06] (Hewlett-Packard) [File not signed] S3 OpenVPNService; C:\Program Files (x86)\OpenVPN\bin\openvpnserv.exe [32568 2014-04-09] (The OpenVPN Project) R2 Pml Driver HPZ12; C:\Windows\System32\HPZipm12.dll [89600 2010-08-06] (Hewlett-Packard) [File not signed] R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [239176 2013-02-20] (Realtek Semiconductor) S3 w3logsvc; C:\Windows\system32\inetsrv\w3logsvc.dll [76800 2013-11-05] (Microsoft Corporation) S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [368632 2014-09-22] (Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23792 2014-09-22] (Microsoft Corporation) ==================== Drivers (Whitelisted) ==================== (If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.) R0 amdkmpfd; C:\Windows\System32\drivers\amdkmpfd.sys [36096 2013-11-13] (Advanced Micro Devices, Inc.) R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [119272 2014-10-16] (Avira Operations GmbH & Co. KG) R1 avipbb; C:\Windows\system32\DRIVERS\avipbb.sys [131608 2014-10-16] (Avira Operations GmbH & Co. KG) R1 avkmgr; C:\Windows\system32\DRIVERS\avkmgr.sys [28600 2013-10-10] (Avira Operations GmbH & Co. KG) R2 avnetflt; C:\Windows\system32\DRIVERS\avnetflt.sys [43064 2014-10-16] (Avira Operations GmbH & Co. KG) R1 CLVirtualDrive; C:\Windows\system32\DRIVERS\CLVirtualDrive.sys [91712 2013-03-05] (CyberLink) R1 cnnctfy3; C:\Windows\system32\DRIVERS\cnnctfy3.sys [42152 2014-08-18] (Connectify) S3 dot4; C:\Windows\system32\DRIVERS\Dot4.sys [151968 2012-10-19] (Windows (R) Win 7 DDK provider) S3 Dot4Print; C:\Windows\System32\drivers\Dot4Prt.sys [27040 2012-10-19] (Windows (R) Win 7 DDK provider) R3 MBAMProtector; C:\WINDOWS\system32\drivers\mbam.sys [25816 2014-11-21] (Malwarebytes Corporation) R3 MBAMSwissArmy; C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys [129752 2015-02-19] (Malwarebytes Corporation) R3 MBAMWebAccessControl; C:\WINDOWS\system32\drivers\mwac.sys [64216 2014-11-21] (Malwarebytes Corporation) R3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [99288 2013-12-11] (Intel Corporation) S3 RSP2STOR; C:\Windows\system32\DRIVERS\RtsP2Stor.sys [288328 2013-01-24] (Realtek Semiconductor Corp.) S3 RtlWlanu; C:\Windows\system32\DRIVERS\rtwlanu.sys [1975000 2013-07-31] (Realtek Semiconductor Corporation ) S3 RTSPER; C:\Windows\System32\DRIVERS\RtsPer.sys [448072 2013-02-02] (RTS Corporation) R3 RTWlanE; C:\Windows\system32\DRIVERS\rtwlane.sys [2946264 2014-01-08] (Realtek Semiconductor Corporation ) S3 SmbDrv; C:\Windows\System32\drivers\Smb_driver_AMDASF.sys [28400 2013-02-06] (Synaptics Incorporated) R3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [34544 2013-12-11] (Synaptics Incorporated) S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114496 2014-09-22] (Microsoft Corporation) R3 WirelessButtonDriver; C:\Windows\System32\drivers\WirelessButtonDriver64.sys [20800 2012-08-31] (Hewlett-Packard Development Company, L.P.) ==================== NetSvcs (Whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.) ==================== One Month Created Files and Folders ======== (If an entry is included in the fixlist, the file\folder will be moved.) 2015-02-19 18:04 - 2015-02-19 18:04 - 00000000 ____D () C:\Users\Laura\Desktop\FRST-OlderVersion 2015-02-17 19:43 - 2015-02-17 19:45 - 00000236 _____ () C:\Users\Laura\Desktop\Search.txt 2015-02-17 19:41 - 2015-02-17 19:41 - 00852594 _____ () C:\Users\Laura\Desktop\SecurityCheck.exe 2015-02-17 00:10 - 2015-02-17 00:10 - 00013150 _____ () C:\Users\Laura\Desktop\mbam.txt 2015-02-16 23:30 - 2015-02-19 18:02 - 00129752 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys 2015-02-16 23:30 - 2015-02-16 23:30 - 00001114 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2015-02-16 23:30 - 2015-02-16 23:30 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 2015-02-16 23:30 - 2015-02-16 23:30 - 00000000 ____D () C:\ProgramData\Malwarebytes 2015-02-16 23:30 - 2015-02-16 23:30 - 00000000 ____D () C:\Program Files (x86)\ Malwarebytes Anti-Malware 2015-02-16 23:30 - 2014-11-21 06:14 - 00093400 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbamchameleon.sys 2015-02-16 23:30 - 2014-11-21 06:14 - 00064216 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mwac.sys 2015-02-16 23:30 - 2014-11-21 06:14 - 00025816 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbam.sys 2015-02-16 23:29 - 2015-02-16 23:29 - 20447072 _____ (Malwarebytes Corporation ) C:\Users\Laura\Desktop\mbam-setup-2.0.4.1028.exe 2015-02-16 23:26 - 2015-02-16 23:26 - 00001273 _____ () C:\Users\Laura\Desktop\JRT.txt 2015-02-16 23:21 - 2015-02-16 23:21 - 01388274 _____ (Thisisu) C:\Users\Laura\Desktop\JRT.exe 2015-02-16 23:12 - 2015-02-16 23:12 - 02112512 _____ () C:\Users\Laura\Desktop\AdwCleaner_4.110.exe 2015-02-16 23:01 - 2015-02-16 23:01 - 00001280 _____ () C:\Users\Laura\Desktop\Revo Uninstaller.lnk 2015-02-16 23:01 - 2015-02-16 23:01 - 00000000 ____D () C:\Program Files (x86)\VS Revo Group 2015-02-16 23:00 - 2015-02-16 23:00 - 02623656 _____ (VS Revo Group Ltd.) C:\Users\Laura\Desktop\revosetup95.exe 2015-02-16 22:21 - 2015-02-16 22:23 - 00038943 _____ () C:\Users\Laura\Desktop\Addition.txt 2015-02-16 22:19 - 2015-02-19 18:04 - 02086912 _____ (Farbar) C:\Users\Laura\Desktop\FRST64.exe 2015-02-16 22:19 - 2015-02-19 18:04 - 00024483 _____ () C:\Users\Laura\Desktop\FRST.txt 2015-02-16 22:19 - 2015-02-19 18:04 - 00000000 ____D () C:\FRST 2015-02-15 13:42 - 2015-02-15 13:42 - 00000000 ____D () C:\Users\Laura\Documents\Benutzerdefinierte Office-Vorlagen 2015-02-15 11:09 - 2015-02-15 15:56 - 00425439 _____ () C:\Users\Laura\Desktop\Kopie von Pension asset allocation rev.xlsx 2015-02-12 19:05 - 2015-01-23 06:41 - 06041600 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll 2015-02-12 19:05 - 2015-01-23 05:17 - 04300800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll 2015-02-11 21:11 - 2015-01-16 00:43 - 00563504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys 2015-02-11 21:11 - 2015-01-16 00:43 - 00177984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys 2015-02-11 21:11 - 2015-01-14 06:22 - 00445440 _____ (Microsoft Corporation) C:\WINDOWS\system32\certcli.dll 2015-02-11 21:11 - 2015-01-14 05:53 - 00324096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\certcli.dll 2015-02-11 21:11 - 2014-10-29 04:51 - 00154112 _____ (Microsoft Corporation) C:\WINDOWS\system32\msaudite.dll 2015-02-11 21:11 - 2014-10-29 04:50 - 00736768 _____ (Microsoft Corporation) C:\WINDOWS\system32\adtschema.dll 2015-02-11 21:11 - 2014-10-29 04:06 - 00736768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\adtschema.dll 2015-02-11 21:11 - 2014-10-29 04:06 - 00154112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msaudite.dll 2015-02-11 21:11 - 2014-10-29 03:31 - 01441792 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll 2015-02-11 21:10 - 2015-01-14 00:11 - 01762840 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecs.dll 2015-02-11 21:10 - 2015-01-14 00:04 - 01489072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecs.dll 2015-02-11 21:10 - 2015-01-10 11:10 - 07472960 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe 2015-02-11 21:10 - 2015-01-10 11:10 - 01733440 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll 2015-02-11 21:10 - 2015-01-10 10:28 - 01498360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll 2015-02-11 21:10 - 2014-12-19 10:57 - 00788680 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleaut32.dll 2015-02-11 21:10 - 2014-12-19 10:25 - 00602776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleaut32.dll 2015-02-11 21:10 - 2014-12-09 05:45 - 00393728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\scesrv.dll 2015-02-11 21:10 - 2014-12-09 03:56 - 00538624 _____ (Microsoft Corporation) C:\WINDOWS\system32\scesrv.dll 2015-02-11 21:10 - 2014-12-09 01:12 - 00391526 _____ () C:\WINDOWS\system32\ApnDatabase.xml 2015-02-11 21:10 - 2014-10-29 04:02 - 00285184 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64.dll 2015-02-11 21:10 - 2014-10-29 04:02 - 00013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64cpu.dll 2015-02-11 21:10 - 2014-10-29 03:57 - 00016896 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntvdm64.dll 2015-02-11 21:10 - 2014-10-29 03:15 - 00014336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntvdm64.dll 2015-02-11 21:10 - 2014-10-29 03:15 - 00005632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wow32.dll 2015-02-11 21:10 - 2014-10-29 03:14 - 00004096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user.exe 2015-02-11 21:10 - 2014-10-29 03:13 - 00025600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\setup16.exe 2015-02-11 21:10 - 2014-10-29 03:13 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\instnm.exe 2015-02-11 21:09 - 2015-01-12 05:09 - 25056256 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2015-02-11 21:09 - 2015-01-12 04:48 - 02885632 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll 2015-02-11 21:09 - 2015-01-12 04:48 - 00584192 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll 2015-02-11 21:09 - 2015-01-12 04:47 - 00088064 _____ (Microsoft Corporation) C:\WINDOWS\system32\MshtmlDac.dll 2015-02-11 21:09 - 2015-01-12 04:34 - 00816128 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll 2015-02-11 21:09 - 2015-01-12 04:25 - 19740160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll 2015-02-11 21:09 - 2015-01-12 04:21 - 00490496 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtmsft.dll 2015-02-11 21:09 - 2015-01-12 04:08 - 00503296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll 2015-02-11 21:09 - 2015-01-12 04:07 - 00092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll 2015-02-11 21:09 - 2015-01-12 04:05 - 00064000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MshtmlDac.dll 2015-02-11 21:09 - 2015-01-12 04:02 - 02277888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll 2015-02-11 21:09 - 2015-01-12 03:58 - 01032704 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcomm.dll 2015-02-11 21:09 - 2015-01-12 03:55 - 00664064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll 2015-02-11 21:09 - 2015-01-12 03:51 - 00262144 _____ (Microsoft Corporation) C:\WINDOWS\system32\webcheck.dll 2015-02-11 21:09 - 2015-01-12 03:48 - 00801280 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll 2015-02-11 21:09 - 2015-01-12 03:48 - 00718848 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe 2015-02-11 21:09 - 2015-01-12 03:48 - 00374272 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll 2015-02-11 21:09 - 2015-01-12 03:46 - 02125824 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl 2015-02-11 21:09 - 2015-01-12 03:45 - 00418304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtmsft.dll 2015-02-11 21:09 - 2015-01-12 03:43 - 14401024 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll 2015-02-11 21:09 - 2015-01-12 03:34 - 00128000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iepeers.dll 2015-02-11 21:09 - 2015-01-12 03:30 - 00880128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcomm.dll 2015-02-11 21:09 - 2015-01-12 03:27 - 02865152 _____ (Microsoft Corporation) C:\WINDOWS\system32\actxprxy.dll 2015-02-11 21:09 - 2015-01-12 03:27 - 02358272 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll 2015-02-11 21:09 - 2015-01-12 03:25 - 00230400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webcheck.dll 2015-02-11 21:09 - 2015-01-12 03:23 - 02052608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl 2015-02-11 21:09 - 2015-01-12 03:23 - 00688640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll 2015-02-11 21:09 - 2015-01-12 03:23 - 00327168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll 2015-02-11 21:09 - 2015-01-12 03:14 - 12829184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll 2015-02-11 21:09 - 2015-01-12 03:14 - 01548288 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll 2015-02-11 21:09 - 2015-01-12 03:02 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll 2015-02-11 21:09 - 2015-01-12 03:00 - 01888256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll 2015-02-11 21:09 - 2015-01-12 02:56 - 01307136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll 2015-02-11 21:09 - 2015-01-12 02:55 - 00710144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll 2015-02-11 21:09 - 2015-01-10 09:00 - 00430080 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll 2015-02-11 21:09 - 2015-01-10 08:38 - 00359424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\schannel.dll 2015-02-11 21:08 - 2015-01-19 20:42 - 01487976 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll 2015-02-11 21:07 - 2015-01-10 10:22 - 04175872 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys 2015-02-08 21:57 - 2015-02-08 21:57 - 00000000 ____D () C:\ProgramData\Oracle 2015-02-08 21:24 - 2015-02-08 21:28 - 00001115 _____ () C:\Users\Public\Desktop\CEWE FOTOSCHAU.lnk 2015-02-08 21:24 - 2015-02-08 21:24 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OnlineFotoservice 2015-02-08 21:18 - 2015-02-08 21:18 - 00000000 ____D () C:\Program Files\OnlineFotoservice 2015-01-31 21:43 - 2015-02-15 23:42 - 00000000 ____D () C:\Users\Laura\Documents\Reisen 2015 2015-01-27 16:50 - 2015-01-27 16:51 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox 2015-01-25 13:22 - 2015-01-25 13:22 - 00000957 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\myphotobook.de.lnk 2015-01-25 13:22 - 2015-01-25 13:22 - 00000945 _____ () C:\Users\Public\Desktop\myphotobook.de.lnk 2015-01-25 13:22 - 2015-01-25 13:22 - 00000000 ____D () C:\Program Files (x86)\myphotobook.de 2015-01-25 13:21 - 2015-01-25 13:21 - 00000000 _____ () C:\Users\Laura\.airinstall.log 2015-01-25 13:18 - 2015-01-25 13:18 - 00000000 ____D () C:\Users\Laura\restore 2015-01-25 13:01 - 2015-02-11 21:10 - 00000000 ____D () C:\ProgramData\tmp 2015-01-25 13:01 - 2015-02-08 00:49 - 00000000 ____D () C:\ProgramData\hps 2015-01-25 13:01 - 2015-01-25 13:01 - 00001047 _____ () C:\Users\Public\Desktop\Mein CEWE FOTOBUCH.lnk 2015-01-25 13:01 - 2015-01-25 13:01 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mein CEWE FOTOBUCH 2015-01-25 12:53 - 2015-01-25 12:53 - 00000000 ____D () C:\Program Files\CEWE ==================== One Month Modified Files and Folders ======= (If an entry is included in the fixlist, the file\folder will be moved.) 2015-02-19 18:03 - 2014-07-28 14:19 - 00000000 ____D () C:\Users\Laura\AppData\Roaming\Skype 2015-02-19 18:03 - 2013-09-24 22:04 - 00000000 ___RD () C:\Users\Laura\Dropbox 2015-02-19 18:02 - 2014-01-15 10:21 - 00000000 __RDO () C:\Users\Laura\SkyDrive 2015-02-19 18:02 - 2013-09-24 22:01 - 00000000 ____D () C:\Users\Laura\AppData\Roaming\Dropbox 2015-02-19 18:02 - 2013-09-11 22:52 - 00001132 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job 2015-02-19 18:00 - 2013-08-22 16:46 - 00343449 _____ () C:\WINDOWS\setupact.log 2015-02-19 18:00 - 2013-08-22 16:45 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT 2015-02-19 17:59 - 2013-11-05 18:27 - 01922007 _____ () C:\WINDOWS\WindowsUpdate.log 2015-02-19 17:59 - 2013-08-22 15:25 - 00524288 ___SH () C:\WINDOWS\system32\config\BBI 2015-02-19 17:57 - 2013-08-16 18:23 - 02571776 ___SH () C:\Users\Laura\Downloads\Thumbs.db 2015-02-19 17:54 - 2013-08-13 10:15 - 00000000 ____D () C:\Users\Laura\AppData\Local\Packages 2015-02-19 17:49 - 2013-09-11 22:52 - 00001136 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job 2015-02-19 17:48 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\system32\sru 2015-02-18 00:00 - 2013-08-13 11:07 - 00000884 _____ () C:\WINDOWS\Tasks\Adobe Flash Player Updater.job 2015-02-17 19:34 - 2014-01-09 13:59 - 01037824 ___SH () C:\Users\Laura\Desktop\Thumbs.db 2015-02-17 19:33 - 2013-09-29 21:04 - 00108174 _____ () C:\WINDOWS\PFRO.log 2015-02-17 18:50 - 2013-08-13 10:22 - 00003598 _____ () C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-2764708345-627995945-2754369203-1001 2015-02-16 23:15 - 2013-10-25 23:27 - 00000000 ____D () C:\AdwCleaner 2015-02-15 23:59 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\system32\NDF 2015-02-15 23:19 - 2015-01-03 18:10 - 00013382 _____ () C:\Users\Laura\Desktop\AUSGABEN_2015.xlsx 2015-02-15 20:54 - 2014-12-10 17:17 - 00000000 ____D () C:\Users\Laura\Documents\Wincor Nixdorf 2015-02-15 17:09 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\AppReadiness 2015-02-15 15:25 - 2013-11-30 12:00 - 00003164 _____ () C:\WINDOWS\System32\Tasks\HPCeeScheduleForLaura 2015-02-15 15:25 - 2013-11-30 12:00 - 00000350 _____ () C:\WINDOWS\Tasks\HPCeeScheduleForLaura.job 2015-02-15 14:21 - 2013-08-22 17:36 - 00000000 ____D () C:\WINDOWS\rescache 2015-02-15 13:27 - 2013-08-22 17:36 - 00000000 ____D () C:\Program Files\Common Files\microsoft shared 2015-02-14 12:48 - 2012-07-26 09:59 - 00000000 ____D () C:\WINDOWS\CbsTemp 2015-02-13 23:14 - 2015-01-03 18:12 - 00010236 _____ () C:\Users\Laura\Desktop\EINNAHMEN_2015.xlsx 2015-02-13 23:08 - 2013-09-24 22:04 - 00001067 _____ () C:\Users\Laura\Desktop\Dropbox.lnk 2015-02-13 23:08 - 2013-09-24 22:02 - 00000000 ____D () C:\Users\Laura\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox 2015-02-12 19:11 - 2015-01-18 12:02 - 00000000 ____D () C:\Users\Laura\Documents\Uni - Master BWL 2015-02-12 16:22 - 2013-08-22 16:44 - 00381472 _____ () C:\WINDOWS\system32\FNTCACHE.DAT 2015-02-11 21:31 - 2013-11-13 16:05 - 00000000 ____D () C:\ProgramData\Package Cache 2015-02-11 21:28 - 2013-08-19 03:06 - 00000000 ____D () C:\WINDOWS\system32\MRT 2015-02-11 21:21 - 2013-08-19 03:06 - 116773704 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2015-02-11 21:02 - 2013-10-20 21:12 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira 2015-02-11 21:02 - 2013-10-20 21:12 - 00000000 ____D () C:\Program Files (x86)\Avira 2015-02-09 18:35 - 2013-09-30 06:14 - 00006744 _____ () C:\WINDOWS\system32\PerfStringBackup.INI 2015-02-09 18:35 - 2013-09-30 05:56 - 01379974 _____ () C:\WINDOWS\system32\perfh007.dat 2015-02-09 18:35 - 2013-09-30 05:56 - 00352628 _____ () C:\WINDOWS\system32\perfc007.dat 2015-02-08 01:15 - 2013-11-05 18:16 - 00000000 ____D () C:\Users\Laura 2015-02-08 01:12 - 2014-03-06 22:53 - 00000000 ____D () C:\Users\Laura\Documents\ZZKram 2015-02-08 00:34 - 2014-03-06 21:42 - 00222720 ___SH () C:\Users\Laura\Documents\Thumbs.db 2015-02-06 21:49 - 2013-09-11 22:52 - 00002195 _____ () C:\Users\Public\Desktop\Google Chrome.lnk 2015-02-05 15:43 - 2013-09-11 22:52 - 00004108 _____ () C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA 2015-02-05 15:43 - 2013-09-11 22:52 - 00003872 _____ () C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore 2015-02-04 22:00 - 2013-08-13 11:07 - 00003772 _____ () C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater 2015-02-03 21:31 - 2014-11-15 21:34 - 00714720 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe 2015-02-03 21:31 - 2014-11-15 21:34 - 00106976 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl 2015-01-31 21:51 - 2013-08-13 10:45 - 00000000 ____D () C:\Users\Laura\Documents\Rettungsdienst 2015-01-31 21:49 - 2013-08-13 10:45 - 00000000 ____D () C:\Users\Laura\Documents\Feuerwehr 2015-01-31 08:44 - 2013-08-13 10:24 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service 2015-01-26 23:43 - 2014-06-25 10:25 - 00000000 ____D () C:\Users\Laura\Documents\zzsonstiges ==================== Files in the root of some directories ======= 2013-09-28 18:10 - 2013-09-30 22:28 - 0001124 _____ () C:\ProgramData\hpzinstall.log Some content of TEMP: ==================== C:\Users\Laura\AppData\Local\Temp\avgnt.exe C:\Users\Laura\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmprsp5x7.dll ==================== Bamital & volsnap Check ================= (There is no automatic fix for files that do not pass verification.) C:\Windows\System32\winlogon.exe => File is digitally signed C:\Windows\System32\wininit.exe => File is digitally signed C:\Windows\explorer.exe => File is digitally signed C:\Windows\SysWOW64\explorer.exe => File is digitally signed C:\Windows\System32\svchost.exe => File is digitally signed C:\Windows\SysWOW64\svchost.exe => File is digitally signed C:\Windows\System32\services.exe => File is digitally signed C:\Windows\System32\User32.dll => File is digitally signed C:\Windows\SysWOW64\User32.dll => File is digitally signed C:\Windows\System32\userinit.exe => File is digitally signed C:\Windows\SysWOW64\userinit.exe => File is digitally signed C:\Windows\System32\rpcss.dll => File is digitally signed C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed LastRegBack: 2015-02-17 20:02 ==================== End Of Log ============================ --- --- --- |
20.02.2015, 10:58 | #13 |
/// TB-Ausbilder | Sicherheitshinweis bei Virenprogramm und Änderung ProxyEinstellungen Hi ! Ich habe wg. dem seltsamen kopierten Whatsapp Text einmal den FRST Entwickler angeschrieben. Vielleicht würde ich deshalb später noch einmal auf dich zukommen. Machen wir aber erstmal so weiter: Drücke bitte die Windowstaste + R Taste und schreibe notepad in das Ausführen Fenster. Kopiere nun folgenden Text aus der Code-Box in das leere Textdokument Code:
ATTFilter emptytemp: Speichere diese bitte als Fixlist.txt auf deinem Desktop (oder dem Verzeichnis in dem sich FRST befindet).
Und dann nach Neustart ESET Scan, der dauert länger: ESET Online Scanner
__________________ Lerne, zurück zu schlagen und unterstütze uns! TB Akademie | Spende | Lob & Kritik |
20.02.2015, 22:04 | #14 |
| Sicherheitshinweis bei Virenprogramm und Änderung ProxyEinstellungenCode:
ATTFilter Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 18-02-2015 01 Ran by Laura at 2015-02-20 14:52:00 Run:2 Running from C:\Users\Laura\Desktop Loaded Profiles: Laura (Available profiles: Laura) Boot Mode: Normal ============================================== Content of fixlist: ***************** emptytemp: ***************** EmptyTemp: => Removed 143.9 MB temporary data. The system needed a reboot. ==== End of Fixlog 14:52:51 ==== Code:
ATTFilter ESETSmartInstaller@High as downloader log: all ok # product=EOS # version=8 # OnlineScannerApp.exe=1.0.0.1 # OnlineScanner.ocx=1.0.0.7623 # api_version=3.0.2 # EOSSerial=7b4a9d6a15427f4c87f63decc26afa51 # engine=22569 # end=finished # remove_checked=false # archives_checked=true # unwanted_checked=false # unsafe_checked=false # antistealth_checked=true # utc_time=2015-02-20 08:57:06 # local_time=2015-02-20 10:57:06 (+0200, Osteuropäische Zeit ) # country="Germany" # lang=1031 # osver=6.2.9200 NT # compatibility_mode_1='Avira Desktop' # compatibility_mode=1810 16777213 100 100 32615 43040584 0 0 # compatibility_mode_1='' # compatibility_mode=5893 16776574 100 94 8389647 46139096 0 0 # scanned=280277 # found=1 # cleaned=0 # scan_time=28522 sh=632ADD91B5ED741086AB4FE0A52FD89AC9B29E87 ft=1 fh=c16efe3f6ffa2ec8 vn="Variante von MSIL/Adware.iBryte.M Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Program Files (x86)\Search Extensions\uninstall.exe.vir" Das System hat allerdings Bedrohungen erkannt. Danke schonmal ) |
21.02.2015, 16:52 | #15 |
/// TB-Ausbilder | Sicherheitshinweis bei Virenprogramm und Änderung ProxyEinstellungen NÖ das ist keine "echte"Bedrohung, das die Quarantäne vom AdwCleaner. Somit sind deine Logs jetzt sauber. Kannst du aber noch diesen Fix machen für den Proxy und den seltsamen Text ? Drücke bitte die Windowstaste + R Taste und schreibe notepad in das Ausführen Fenster. Kopiere nun folgenden Text aus der Code-Box in das leere Textdokument Code:
ATTFilter FF NetworkProxy: "autoconfig_url", "Hallo Leute ;) Na wie geht es auch mittlerweile so? Ich hoffe, ihr habt mich nicht vergessen. ;))Mittlerweile bin ich wieder zu Hause und habe letzte Woche euer tolles Fotoalbum voller Bilder gemacht und ausgefüllt ??Danke nochmal, das war echt schön alles noch einmal revue passieren zu lassen. ??Ich weiß zwar nicht, wie es euch so passt oder was die nächsten Pläne sind, aber vielleicht könnten wir uns ja nochmal treffen auf ein kühles Getränk oder sowas und dann könnt ihr wie versprochen das Buch noch einmal mit Bildern und mit Finnland sehen. Ich würde mich zumindest sehr freuen, wenn das klappen würde :)) Ganz liebe Grüße, Laura" Speichere diese bitte als Fixlist.txt auf deinem Desktop (oder dem Verzeichnis in dem sich FRST befindet).
__________________ Lerne, zurück zu schlagen und unterstütze uns! TB Akademie | Spende | Lob & Kritik |
Themen zu Sicherheitshinweis bei Virenprogramm und Änderung ProxyEinstellungen |
anti vir, bezüglich, browser, datei, entfernen, fehlermeldung, firefox, folge, gen, google, hallo zusammen, hochfahren, interne, internet, klicke, laptop, löschen, problem, programm, proxy server, proxyeinstellungen, screenshot, stimmen, unerwünschte, virus, woche, zugriff, zusammen |