|
Log-Analyse und Auswertung: Adware eingefangen! Sämtliche Viren/Adware-Scanner finden nichts.Windows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
23.03.2015, 15:34 | #16 |
| Adware eingefangen! Sämtliche Viren/Adware-Scanner finden nichts. Addition: Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 11-03-2015 Ran by Simon at 2015-03-23 15:28:20 Running from C:\Users\Simon\Desktop Boot Mode: Normal ========================================================== ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: COMODO Antivirus (Enabled - Up to date) {F0BC89B2-8937-0933-021B-B17D981F2A71} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Comodo Defense+ (Enabled - Up to date) {4BDD6856-AF0D-06BD-38AB-8A0FE39860CC} ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) Tools for .Net 3.5 - DEU Lang Pack (x32 Version: 3.11.50727 - Microsoft Corporation) Hidden Tools for .Net 3.5 (x32 Version: 3.11.50727 - Microsoft Corporation) Hidden µTorrent (HKU\S-1-5-21-2389831746-1586198665-2336280641-1000\...\uTorrent) (Version: 3.4.2.38913 - BitTorrent Inc.) Ableton Live 8 (HKLM-x32\...\{3CBF4CD3-9370-44A0-B464-A21E588DD122}) (Version: 8.0.0.0 - Ableton) ActiveState Komodo IDE 8.5.4 (HKLM-x32\...\{F55999C1-E7CA-405D-8A62-66EE1ABB22AE}) (Version: 8.5.4 - ActiveState Software Inc.) Adobe Acrobat X Pro - English, Français, Deutsch (HKLM-x32\...\{AC76BA86-1033-F400-7760-000000000005}) (Version: 10.1.13 - Adobe Systems) Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 2.6.0.19120 - Adobe Systems Incorporated) Adobe Community Help (HKLM-x32\...\chc.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1) (Version: 3.4.980 - Adobe Systems Incorporated.) Adobe Content Viewer (HKLM-x32\...\com.adobe.dmp.contentviewer) (Version: 1.4.0 - Adobe Systems Incorporated) Adobe Flash Player 13 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 13.0.0.206 - Adobe Systems Incorporated) Adobe Widget Browser (HKLM-x32\...\com.adobe.WidgetBrowser.E7BED6E5DDA59983786DD72EBFA46B1598278E07.1) (Version: 2.0 Build 230 - Adobe Systems Incorporated.) Agatha Christie - Peril at End House (x32 Version: 2.2.0.95 - WildTangent) Hidden Akamai NetSession Interface (HKU\S-1-5-21-2389831746-1586198665-2336280641-1000\...\Akamai) (Version: - Akamai Technologies, Inc) Apple Application Support (32-Bit) (HKLM-x32\...\{447CDCE5-F555-429B-BFA6-642C3C6D684F}) (Version: 3.1.2 - Apple Inc.) Apple Application Support (64-Bit) (HKLM\...\{0DF7096B-715A-4233-8633-C7A16ED6D616}) (Version: 3.1.2 - Apple Inc.) Apple Mobile Device Support (HKLM\...\{C4123106-B685-48E6-B9BD-E4F911841EB4}) (Version: 8.1.1.3 - Apple Inc.) Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.) Application Insights Tools for Visual Studio Express 2013 for Web (x32 Version: 2.1 - Microsoft Corporation) Hidden Arma 3 (HKLM-x32\...\Steam App 107410) (Version: - Bohemia Interactive) ASIO4ALL (HKLM-x32\...\ASIO4ALL) (Version: 2.11 Beta1 - Michael Tippach) ATI Catalyst Install Manager (HKLM\...\{96F38867-9D41-683C-DF60-034A731C37FE}) (Version: 3.0.825.0 - ATI Technologies, Inc.) Audacity 2.0.6 (HKLM-x32\...\Audacity_is1) (Version: 2.0.6 - Audacity Team) Autodesk App Manager (HKLM-x32\...\{C8125548-F2D5-4059-823F-1F3C5BBD9F19}) (Version: 1.2.0 - Autodesk) Autodesk Application Manager (HKLM-x32\...\Autodesk Application Manager) (Version: 3.0.159.0 - Autodesk) Autodesk AutoCAD Performance Feedback Tool Version 1.2.2 (HKLM-x32\...\{85735431-6CD3-4B16-BEC8-95332034E53B}) (Version: 1.2.2.0 - Autodesk) Autodesk Content Service (HKLM-x32\...\Autodesk Content Service) (Version: 3.2.0.0 - Autodesk) Autodesk Content Service (x32 Version: 3.2.0.0 - Autodesk) Hidden Autodesk Content Service Language Pack (x32 Version: 3.2.0.0 - Autodesk) Hidden Autodesk Material Library 2015 (HKLM-x32\...\{427F733F-4D6C-45BC-9324-EB743104C321}) (Version: 5.2.9.100 - Autodesk) Autodesk Material Library Base Resolution Image Library 2015 (HKLM-x32\...\{ABE2F70B-8D94-44E9-AA04-F0DB35063D62}) (Version: 5.2.9.100 - Autodesk) Autodesk ReCap (HKLM\...\Autodesk ReCap) (Version: 1.3.1.39 - Autodesk) Autodesk ReCap (Version: 1.3.1.39 - Autodesk) Hidden AVM FRITZ!WLAN (HKLM-x32\...\AVMWLANCLI) (Version: - AVM Berlin) AzureTools.Notifications.VwdExpress (x32 Version: 2.1.10731.1602 - Microsoft Corporation) Hidden Battlefield 3™ (HKLM-x32\...\{76285C16-411A-488A-BCE3-C83CB933D8CF}) (Version: 1.6.0.0 - Electronic Arts) Behaviors SDK (Windows Phone) for Visual Studio 2013 (x32 Version: 12.0.50716.0 - Microsoft Corporation) Hidden Behaviors SDK (Windows) for Visual Studio 2013 (x32 Version: 12.0.50429.0 - Microsoft Corporation) Hidden Bejeweled 3 (x32 Version: 2.2.0.97 - WildTangent) Hidden Blasterball 3 (x32 Version: 2.2.0.97 - WildTangent) Hidden Blobby Volley 2 Version 1.0RC3 (HKLM-x32\...\Blobby Volley 2 Version 1.0RC3_is1) (Version: - ) Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.) Bounce Symphony (x32 Version: 2.2.0.97 - WildTangent) Hidden Build Tools - amd64 (Version: 12.0.30723 - Microsoft Corporation) Hidden Build Tools - x86 (x32 Version: 12.0.30723 - Microsoft Corporation) Hidden Build Tools Language Resources - amd64 (Version: 12.0.30723 - Microsoft Corporation) Hidden Build Tools Language Resources - x86 (x32 Version: 12.0.30723 - Microsoft Corporation) Hidden Cake Mania (x32 Version: 2.2.0.95 - WildTangent) Hidden Call of Duty: Modern Warfare 3 - Dedicated Server (HKLM-x32\...\Steam App 42750) (Version: - Infinity Ward - Sledgehammer Games) Camtasia Studio 7 (HKLM-x32\...\{DE042823-C359-4B87-B66B-308057E8B6AF}) (Version: 7.0.1 - TechSmith Corporation) Cheat Engine 6.3 (HKLM-x32\...\Cheat Engine 6.3_is1) (Version: - Cheat Engine) Chronicles of Albian (x32 Version: 2.2.0.95 - WildTangent) Hidden Chuzzle Deluxe (x32 Version: 2.2.0.95 - WildTangent) Hidden Cinema 4D version R12 (HKLM-x32\...\{7D9D8134-9FA3-4FFF-ADA1-BF609F29997A}_is1) (Version: R12 - Salat Production) COMODO Antivirus (HKLM\...\{093F13A3-177C-493E-8958-912A0C690B64}) (Version: 6.3.32439.2937 - COMODO Security Solutions Inc.) Comodo Dragon (HKLM-x32\...\Comodo Dragon) (Version: 36.1.1.21 - Comodo) Cradle of Rome 2 (x32 Version: 2.2.0.95 - WildTangent) Hidden D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden DAEMON Tools Lite (HKLM-x32\...\DAEMON Tools Lite) (Version: 4.49.1.0356 - Disc Soft Ltd) DJ Intro version 1.2.3 (HKLM-x32\...\{36625871-9D4B-4046-A837-677974F51CAC}_is1) (Version: 1.2.3 - Serato Audio Research) Dream of the Blood Moon (HKLM\...\UDK-7ce4b5b9-33ec-4ba1-a4b2-b6be828e13a5) (Version: - Epic Games, Inc.) EA SPORTS™ FIFA 15 Demo (HKLM-x32\...\{108C0C19-6316-4944-A62F-C744488F8639}) (Version: 1.0.0.0 - Electronic Arts) Edirol HQ Orchestral v1.01 (HKLM-x32\...\Edirol HQ Orchestral v1.01) (Version: - ) Entity Framework 6.1.1 Tools for Visual Studio 2013 (HKLM-x32\...\{85253F13-EE42-4850-A3A5-79B90E92D7AC}) (Version: 12.0.30610.0 - Microsoft Corporation) Eraser 6.0.10.2620 (HKLM\...\{6E5159B4-A519-41EF-80EF-AD58371515DF}) (Version: 6.0.2620 - The Eraser Project) Erforderliche Komponenten für SSDT (HKLM-x32\...\{3FF082A7-A5DE-4BDA-B56A-1D2BEFD617A3}) (Version: 11.1.3000.0 - Microsoft Corporation) ESET Online Scanner v3 (HKLM-x32\...\ESET Online Scanner) (Version: - ) Farm Frenzy (x32 Version: 2.2.0.95 - WildTangent) Hidden FATE (x32 Version: 2.2.0.97 - WildTangent) Hidden FIFA 12 (HKLM-x32\...\{EA8ADAA9-6671-4839-A51E-0C6792B78F3E}) (Version: 1.6.0.0 - Electronic Arts) FIFA 13 Demo (HKLM-x32\...\{3F499657-766A-4A5F-AEE9-A1F8D295A4CE}) (Version: 1.0.0.0 - Electronic Arts) FIFA 14 Demo (HKLM-x32\...\{7A6577E7-F341-430F-9173-91E14E2DE270}) (Version: 1.0.0.0 - Electronic Arts) FlowStone FL 3.0 (HKLM-x32\...\FlowStone) (Version: - ) FormatFactory 3.3.4.0 (HKLM-x32\...\FormatFactory) (Version: 3.3.4.0 - Format Factory) GeekBuddy (HKLM\...\{266FA04F-F0FA-4F7A-AA1E-387A57F579F2}) (Version: 4.19.131 - Comodo Security Solutions Inc) Gladiator demo (HKLM\...\Tone2 Gladiator demo_is1) (Version: - Tone2) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 41.0.2272.101 - Google Inc.) Google Update Helper (x32 Version: 1.3.26.9 - Google Inc.) Hidden Governor of Poker 2 Premium Edition (x32 Version: 2.2.0.95 - WildTangent) Hidden Grand Theft Auto IV (HKLM-x32\...\Steam App 12210) (Version: - Rockstar North) GRID 2 Demo (HKLM-x32\...\Steam App 248140) (Version: - Codemasters Racing) GRID Autosport (HKLM-x32\...\GRID Autosport_R.G. Mechanics_is1) (Version: - R.G. Mechanics, ProZorg_tm) Haunt 1.0 64bit (HKU\S-1-5-21-2389831746-1586198665-2336280641-1000\...\Haunt 1.0 64bit) (Version: - ) Hewlett-Packard ACLM.NET v1.2.1.1 (x32 Version: 1.00.0000 - Hewlett-Packard Company) Hidden HP Games (HKLM-x32\...\WildTangent hp Master Uninstall) (Version: 1.0.2.5 - WildTangent) HP LinkUp (HKLM-x32\...\{DB3147AB-4024-4773-8EC0-A1FE5B44933D}) (Version: 2.01.028 - Hewlett-Packard) HP Odometer (HKLM-x32\...\{B8AC1A89-FFD1-4F97-8051-E505A160F562}) (Version: 2.10.0000 - Hewlett-Packard) HP Setup (HKLM-x32\...\{D35B72B6-F0E4-462B-BDEB-E08032B3B681}) (Version: 8.7.4747.3786 - Hewlett-Packard Company) HP Setup Manager (HKLM-x32\...\{AE856388-AFAD-4753-81DF-D96B19D0A17C}) (Version: 1.1.13880.3792 - Hewlett-Packard Company) HP Support Information (HKLM-x32\...\{7F2A11F4-EAE8-4325-83EC-E3E99F85169E}) (Version: 10.1.1000 - Hewlett-Packard) HP Update (HKLM-x32\...\{DE77FE3F-A33D-499A-87AD-5FC406617B40}) (Version: 5.002.003.003 - Hewlett-Packard) HP Vision Hardware Diagnostics (HKLM\...\{D79A02E9-6713-4335-9668-AAC7474C0C0E}) (Version: 2.9.0.0 - Hewlett-Packard) HydraVision (x32 Version: 4.2.200.0 - ATI Technologies Inc.) Hidden iCloud (HKLM\...\{309768A4-A2BB-4930-A5A2-8169678C9B4C}) (Version: 4.0.6.28 - Apple Inc.) IIS 8.0 Express (HKLM\...\{7BF61FA9-BDFB-4563-98AD-FCB0DA28CCC7}) (Version: 8.0.1557 - Microsoft Corporation) IIS Express Application Compatibility Database for x64 (HKLM\...\{9f4f4a9b-eec5-4906-92fe-d1f43ccf5c8d}.sdb) (Version: - ) IIS Express Application Compatibility Database for x86 (HKLM\...\{fdfba1f3-74ae-4255-9c10-a0f552b4610f}.sdb) (Version: - ) IL Download Manager (HKLM-x32\...\IL Download Manager) (Version: - Image-Line) IL Shared Libraries (HKLM-x32\...\IL Shared Libraries) (Version: - Image-Line) iTunes (HKLM\...\{D227565A-0033-40AD-89BA-653A205CDC11}) (Version: 12.1.1.4 - Apple Inc.) Java 7 Update 45 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83217045FF}) (Version: 7.0.450 - Oracle) Java 8 Update 31 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86418031F0}) (Version: 8.0.310 - Oracle Corporation) Java 8 Update 31 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218031F0}) (Version: 8.0.310 - Oracle Corporation) Jewel Quest Solitaire (x32 Version: 2.2.0.95 - WildTangent) Hidden Jewel Quest: The Sleepless Star - Collector's Edition (x32 Version: 2.2.0.95 - WildTangent) Hidden Junk Mail filter update (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden LabelPrint (HKLM-x32\...\InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243}) (Version: 2.5.3925 - CyberLink Corp.) LabelPrint (x32 Version: 2.5.3925 - CyberLink Corp.) Hidden LocalESPC (x32 Version: 8.59.29989 - Microsoft Corporation) Hidden LogMeIn Hamachi (HKLM-x32\...\LogMeIn Hamachi) (Version: 2.2.0.319 - LogMeIn, Inc.) LogMeIn Hamachi (x32 Version: 2.2.0.319 - LogMeIn, Inc.) Hidden Mafia II (HKLM-x32\...\Steam App 50130) (Version: - 2K Czech) Mah Jong Medley (x32 Version: 2.2.0.95 - WildTangent) Hidden Malwarebytes Anti-Malware Version 2.1.4.1018 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.1.4.1018 - Malwarebytes Corporation) Marble Blast Gold (remove only) (HKLM-x32\...\MarbleBlastGoldShockwave) (Version: - ) Marble Blast Gold Demo (remove only) (HKLM-x32\...\MarbleBlastGoldDemo) (Version: - ) Mesh Runtime (x32 Version: 15.4.5722.2 - Microsoft Corporation) Hidden Microsoft .NET Framework 4.5 Multi-Targeting Pack (HKLM-x32\...\{56E962F0-4FB0-3C67-88DB-9EAA6EEFC493}) (Version: 4.5.50710 - Microsoft Corporation) Microsoft .NET Framework 4.5 SDK - DEU Lang Pack (HKLM-x32\...\{21B0F482-5EF9-45DA-8840-340AFE705A6C}) (Version: 4.5.50710 - Microsoft Corporation) Microsoft .NET Framework 4.5 SDK (HKLM-x32\...\{4AE57014-05C4-4864-A13D-86517A7E1BA4}) (Version: 4.5.50710 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 (Deutsch) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1031) (Version: 4.5.50938 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 Multi-Targeting Pack (ENU) (HKLM-x32\...\{D3517C62-68A5-37CF-92F7-93C029A89681}) (Version: 4.5.50932 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 Multi-Targeting Pack (HKLM-x32\...\{6A0C6700-EA93-372C-8871-DCCF13D160A4}) (Version: 4.5.50932 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 SDK (Deutsch) (HKLM-x32\...\{CBD7095F-7211-43FD-9FE7-FB08D753AF79}) (Version: 4.5.51641 - Microsoft Corporation) Microsoft .NET Framework 4.5.1 SDK (HKLM-x32\...\{19A5926D-66E1-46FC-854D-163AA10A52D3}) (Version: 4.5.51641 - Microsoft Corporation) Microsoft ASP.NET MVC 4 Runtime (HKLM-x32\...\{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}) (Version: 4.0.40804.0 - Microsoft Corporation) Microsoft Games for Windows - LIVE (HKLM-x32\...\{2C9EE786-1DDB-4C98-8FA4-B1B9B5A66B77}) (Version: 3.1.186.0 - Microsoft Corporation) Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{42AA4CA8-DCD8-4308-BCAB-0B6D75856A9D}) (Version: 3.5.95.0 - Microsoft Corporation) Microsoft Help Viewer 2.1 (HKLM-x32\...\Microsoft Help Viewer 2.1) (Version: 2.1.21005 - Microsoft Corporation) Microsoft Help Viewer 2.1 Sprachpaket - DEU (HKLM-x32\...\Microsoft Help Viewer 2.1 Sprachpaket - DEU) (Version: 2.1.21005 - Microsoft Corporation) Microsoft Mathematics (HKLM-x32\...\{4D090F70-6F08-4B60-9357-A1DFD4458F09}) (Version: 4.0 - Microsoft Corporation) Microsoft Office File Validation Add-In (HKLM-x32\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation) Microsoft Office Live Add-in 1.5 (HKLM-x32\...\{F40BBEC7-C2A4-4A00-9B24-7A055A2C5262}) (Version: 2.0.4024.1 - Microsoft Corporation) Microsoft Office Professional Plus 2013 (HKLM\...\Office15.PROPLUSR) (Version: 15.0.4569.1506 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft SQL Server 2012 Command Line Utilities (HKLM\...\{F09DEB00-9F41-4BC9-BA81-9F131B12B3D5}) (Version: 11.1.3000.0 - Microsoft Corporation) Microsoft SQL Server 2012 Data-Tier App Framework (HKLM-x32\...\{D4E30517-FE6F-491E-942F-AE10E1B18F38}) (Version: 11.1.2902.0 - Microsoft Corporation) Microsoft SQL Server 2012 Data-Tier App Framework (x64) (HKLM\...\{B4EDAE03-DB34-4DD0-BA7E-2ED80DEA50B1}) (Version: 11.1.2902.0 - Microsoft Corporation) Microsoft SQL Server 2012 Express LocalDB (HKLM\...\{269A8DF6-BBDA-441F-932B-233F9B746D72}) (Version: 11.1.3000.0 - Microsoft Corporation) Microsoft SQL Server 2012 Management Objects (HKLM-x32\...\{EC75BD20-F9CA-4E77-825F-ABD77E95BE91}) (Version: 11.1.3000.0 - Microsoft Corporation) Microsoft SQL Server 2012 Management Objects (x64) (HKLM\...\{0BF65908-D137-4A9E-B7C9-78F32F74F6FD}) (Version: 11.1.3000.0 - Microsoft Corporation) Microsoft SQL Server 2012 Native Client (HKLM\...\{93945D16-4C3D-433E-B7E4-3D0D86B284C8}) (Version: 11.1.3000.0 - Microsoft Corporation) Microsoft SQL Server 2012 Transact-SQL ScriptDom (HKLM\...\{6F173435-3F19-4043-BA3D-A46AA8472859}) (Version: 11.1.3000.0 - Microsoft Corporation) Microsoft SQL Server 2012 T-SQL-Sprachdienst (HKLM-x32\...\{1D812D86-D8EF-41AC-A518-BA12E1913747}) (Version: 11.1.3000.0 - Microsoft Corporation) Microsoft SQL Server Compact 4.0 SP1 x64 DEU (HKLM\...\{98225B15-ECF5-4645-B5AC-F8C5E869A5D5}) (Version: 4.0.8876.1 - Microsoft Corporation) Microsoft SQL Server Compact 4.0 SP1 x64 ENU (HKLM\...\{78909610-D229-459C-A936-25D92283D3FD}) (Version: 4.0.8876.1 - Microsoft Corporation) Microsoft SQL Server Data Tools - DEU (12.0.30919.1) (HKLM-x32\...\{7CC03C58-3471-43D2-A251-EC9AE225E772}) (Version: 12.0.30919.1 - Microsoft Corporation) Microsoft SQL Server Data Tools - enu (12.0.30919.1) (HKLM-x32\...\{0D7FCBFB-F478-4D32-901C-83F0BF5A3501}) (Version: 12.0.30919.1 - Microsoft Corporation) Microsoft SQL Server Data Tools Build Utilities - DEU (12.0.30919.1) (HKLM-x32\...\{BCB8A870-2B3D-4CC0-87D6-F931E065AC0C}) (Version: 12.0.30919.1 - Microsoft Corporation) Microsoft SQL Server Data Tools Build Utilities - enu (12.0.30919.1) (HKLM-x32\...\{6781FF9B-E87D-4A03-9373-A55A288B83FA}) (Version: 12.0.30919.1 - Microsoft Corporation) Microsoft SQL Server System CLR Types (HKLM-x32\...\{D434E072-F482-4F52-AB97-7B19DD5DAEB5}) (Version: 10.50.1600.1 - Microsoft Corporation) Microsoft SQL Server System CLR Types (x64) (HKLM\...\{485F4AC6-F79E-4482-A0D2-EDF0CCE1E124}) (Version: 10.50.1600.1 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6E8E85E8-CE4B-4FF5-91F7-04999C9FAE6A}) (Version: 8.0.50727.42 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{9634d50a-0c4d-4f52-8a9f-894a2baae370}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.60610 (HKLM-x32\...\{a1909659-0a08-4554-8af1-2175904903a1}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (HKLM-x32\...\{307a22b8-8353-4c5e-b67b-2404c5734558}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (HKLM-x32\...\{95716cce-fc71-413f-8ad5-56c2892d4b3a}) (Version: 11.0.60610.1 - Microsoft Corporation) Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 (HKLM-x32\...\{51adbf11-493f-431c-a862-967a0fae2944}) (Version: 12.0.21005.1 - Корпорация Майкрософт) Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 (HKLM-x32\...\{7f51bdb9-ee21-49ee-94d6-90afc321780e}) (Version: 12.0.21005.1 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{2af972c7-13b0-4978-92a8-fee26a4fb4e9}) (Version: 12.0.21005.1 - Корпорация Майкрософт) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{ce085a78-074e-4823-8dc1-8a721b94b76d}) (Version: 12.0.21005.1 - Microsoft Corporation) Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation) Microsoft Visual Studio 2010-Tools für Office-Laufzeit (x64) Language Pack - DEU (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - DEU) (Version: 10.0.50903 - Microsoft Corporation) Microsoft Visual Studio Express 2013 for Windows Desktop - ENU with Update 3 (HKLM-x32\...\{1ef771b4-b774-439e-a015-23dec292d9a4}) (Version: 12.0.30723.0 - Microsoft Corporation) Microsoft Visual Studio Express 2013 für das Web - DEU (HKLM-x32\...\{81b600cc-d985-40b7-8ab1-5442fb4f4845}) (Version: 12.0.21005.1 - Microsoft Corporation) Microsoft Web Deploy 3.5 (HKLM\...\{3674F088-9B90-473A-AAC3-20A00D8D810C}) (Version: 3.1237.1762 - Microsoft Corporation) Microsoft-System-CLR-Typen für SQL Server 2012 (HKLM-x32\...\{43341417-7882-4F34-8390-53DFD00F6C0F}) (Version: 11.1.3366.16 - Microsoft Corporation) Microsoft-System-CLR-Typen für SQL Server 2012 (x64) (HKLM\...\{24440413-490E-41CA-BD33-0B30FD3EBE3A}) (Version: 11.1.3366.16 - Microsoft Corporation) MotoGP™13 Demo (HKLM-x32\...\Steam App 243820) (Version: - Milestone S.r.l.) Mozilla Firefox 29.0.1 (x86 de) (HKLM-x32\...\Mozilla Firefox 29.0.1 (x86 de)) (Version: 29.0.1 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 29.0.1 - Mozilla) Mystery of Mortlake Mansion (x32 Version: 2.2.0.97 - WildTangent) Hidden Namco All-Stars: PAC-MAN (x32 Version: 2.2.0.95 - WildTangent) Hidden Native Instruments Traktor DJ Studio 3 (HKLM-x32\...\Native Instruments Traktor DJ Studio 3) (Version: - ) Need for Speed™ SHIFT Demo (HKLM-x32\...\{BBF0A67B-5DBA-452F-9D2E-6F168BC226E5}) (Version: 1.0.0.0 - Electronic Arts) NexusFont 2.5 (ver 2.5.8.1582) (HKLM-x32\...\{EFEDD205-43FE-4208-B682-0937E803E19E}_is1) (Version: - xiles) Norton Online Backup (HKLM-x32\...\{40A66DF6-22D3-44B5-A7D3-83B118A2C0DC}) (Version: 2.1.17869 - Symantec Corporation) Notepad++ (HKLM-x32\...\Notepad++) (Version: 6.5.2 - Notepad++ Team) NVIDIA PhysX (HKLM-x32\...\{3F5C371F-8EA2-4F25-9D3D-D0B4526E3AEA}) (Version: 9.10.0513 - NVIDIA Corporation) OpenOffice 4.0.1 (HKLM-x32\...\{0AEC308E-7EB3-47F7-BB59-F2C9C6166B27}) (Version: 4.01.9714 - Apache Software Foundation) Origin (HKLM-x32\...\Origin) (Version: 9.3.7.2735 - Electronic Arts, Inc.) Outils de vérification linguistique 2013 de Microsoft Office*- Français (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden Paket zur Festlegung von Zielversionen für Microsoft .NET Framework 4.5.1 (Deutsch) (HKLM-x32\...\{D5409B11-EF28-37A1-AE7A-6051A5BAD923}) (Version: 4.5.50932 - Microsoft Corporation) Paros 3.2.13 (HKLM-x32\...\Paros_is1) (Version: - parosproxy.org) PDF Complete Special Edition (HKLM-x32\...\PDF Complete) (Version: 4.0.54 - PDF Complete, Inc) PDF Settings CS5 (x32 Version: 10.0 - Adobe Systems Incorporated) Hidden Penguins! (x32 Version: 2.2.0.95 - WildTangent) Hidden Phase 5 HTML-Editor (HKLM-x32\...\{20B1B020-DEAE-48D1-9960-D4C3185D758B}) (Version: 5.6.2.3 - Systemberatung Schommer) Plants vs. Zombies - Game of the Year (x32 Version: 2.2.0.95 - WildTangent) Hidden PlayReady PC Runtime amd64 (HKLM\...\{BCA9334F-B6C9-4F65-9A73-AC5A329A4D04}) (Version: 1.3.0 - Microsoft Corporation) PokerStars.eu (HKLM-x32\...\PokerStars.eu) (Version: - PokerStars.eu) Polar Bowler (x32 Version: 2.2.0.97 - WildTangent) Hidden PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.991 - Even Balance, Inc.) Python Tools - Umleitungsvorlage (x32 Version: 1.0 - Microsoft Corporation) Hidden Python Tools Redirection Template (x32 Version: 1.0 - Microsoft Corporation) Hidden QuickTime 7 (HKLM-x32\...\{3D2CBC2C-65D4-4463-87AB-BB2C859C1F3E}) (Version: 7.76.80.95 - Apple Inc.) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6531 - Realtek Semiconductor Corp.) Recovery Manager (x32 Version: 5.5.0.4320 - CyberLink Corp.) Hidden Remote Graphics Receiver (HKLM-x32\...\{16FC3056-90C0-4757-8A68-64D8DA846ADA}) (Version: 5.4.5 - Hewlett-Packard) Remote Mouse version 2.5 (HKLM-x32\...\{01E4BC6D-3ACC-45E1-8928-C2FF626F63F3}_is1) (Version: 2.5 - Remote Mouse) Samsung Kies (HKLM-x32\...\InstallShield_{758C8301-2696-4855-AF45-534B1200980A}) (Version: 2.6.1.13105_7 - Samsung Electronics Co., Ltd.) Samsung Kies (x32 Version: 2.6.1.13105_7 - Samsung Electronics Co., Ltd.) Hidden SAMSUNG USB Driver for Mobile Phones (HKLM\...\{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}) (Version: 1.5.29.0 - SAMSUNG Electronics Co., Ltd.) Screenshot Captor 4.8 (HKLM-x32\...\ScreenshotCaptor_is1) (Version: - ) Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{91150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUSR_{D82063A8-7C8C-4C3B-A9BB-95138CA55D26}) (Version: - Microsoft) Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (Version: - Microsoft) Hidden SketchUp 2014 (HKLM-x32\...\{9E620BD5-AEEC-492D-9065-D71FCD4C52F1}) (Version: 14.1.1282 - Trimble Navigation Limited) SketchUp-Import (HKLM-x32\...\{C403E867-FCF1-432B-BCC1-8FFD40A10A6E}) (Version: 1.2.0 - Autodesk) Ski Challenge 14 (HKU\S-1-5-21-2389831746-1586198665-2336280641-1000\...\sc14-GAMETWIST_MAIN) (Version: - ) Skype™ 7.1 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.1.105 - Skype Technologies S.A.) Slingo Deluxe (x32 Version: 2.2.0.95 - WildTangent) Hidden Steam (HKLM-x32\...\{048298C9-A4D3-490B-9FF9-AB023A9238F3}) (Version: 1.0.0.0 - Valve Corporation) Steinberg Cubase 7 64bit (HKLM\...\{57FB2180-0FC7-41FC-8D76-3C4271CF4422}) (Version: 7.0.2 - Steinberg Media Technologies GmbH) Steinberg Eucon Adapter 6.5 64bit (HKLM\...\{95D90857-61C2-4927-85FF-A317E46E7351}) (Version: 6.5.0 - Steinberg Media Technologies GmbH) Steinberg Groove Agent ONE Allen Morgan Signature Drums (HKLM-x32\...\{611A7035-0172-4B9B-8BB6-5046F6867D8A}) (Version: 1.0.0 - Steinberg Media Technologies GmbH) Steinberg Groove Agent ONE Content (HKLM-x32\...\{BD86F1AC-B594-46E4-85DC-1258AC9E2232}) (Version: 1.0.0.003 - Steinberg Media Technologies GmbH) Steinberg Groove Agent ONE Vintage Beatboxes (HKLM-x32\...\{DBF4BC99-53F1-4C97-84C3-7557D103E182}) (Version: 1.0.0.000 - Steinberg Media Technologies GmbH) Steinberg HALion Sonic SE 64bit (HKLM\...\{B99C316B-C135-43B5-8E77-2BC5E241F964}) (Version: 1.6.3 - Steinberg Media Technologies GmbH) Steinberg HALion Sonic SE Content (HKLM-x32\...\{A5051ABF-A497-4C3C-85EA-F7A4D5C19B82}) (Version: 1.6.1 - Steinberg Media Technologies GmbH) Steinberg LoopMash Content (HKLM-x32\...\{4D454CF8-12FD-464D-B57B-B46FE27B78BB}) (Version: 2.0.0.000 - Steinberg Media Technologies GmbH) Steinberg LoopMash Content 2 (HKLM-x32\...\{88C337F0-4CF2-4098-BDC0-D94859ECA2B4}) (Version: 1.0.0.000 - Steinberg Media Technologies GmbH) Steinberg Midi Loop Library (HKLM-x32\...\{89DE2651-6DD9-4C15-AC94-8348362D456C}) (Version: 1.0.0 - Steinberg Media Technologies GmbH) Steinberg Padshop 64bit (HKLM\...\{75F15019-C0C2-4047-AA45-97B4BD313719}) (Version: 1.1.0 - Steinberg Media Technologies GmbH) Steinberg Retrologue 64bit (HKLM\...\{4D65ECE6-131D-4B5F-8470-2750D3161619}) (Version: 1.1.0 - Steinberg Media Technologies GmbH) Steinberg REVerence Content 01 (HKLM-x32\...\{532B917B-8235-4FA5-BE36-643A8BB053A5}) (Version: 2.0.1.000 - Steinberg Media Technologies GmbH) Steinberg Upload Manager (HKLM-x32\...\{88BBBD8F-4C19-4809-B84B-7A8F8238B48D}) (Version: 1.0.1 - Steinberg Media Technologies GmbH) Steinberg VST Amp Rack Content 01 (HKLM-x32\...\{8CBA7E47-48DA-47DC-8E98-6984BA830295}) (Version: 1.0.1 - Steinberg Media Technologies GmbH) Sweet Home 3D version 4.4 (HKLM\...\Sweet Home 3D_is1) (Version: - eTeks) Sylenth1 Demo v2.20 (HKLM\...\Sylenth1Demo_is1) (Version: - ) Sylenth1 Demo v2.20 (HKLM-x32\...\Sylenth1Demo_is1) (Version: - ) Team Explorer for Microsoft Visual Studio 2013 (x32 Version: 12.0.21005 - Microsoft Corporation) Hidden TrackMania² Canyon Demo (HKLM-x32\...\Steam App 264850) (Version: - Nadeo) Trials Evolution Gold Edition - Demo (HKLM-x32\...\Steam App 228860) (Version: - Redlynx Ltd) TypeScript Power Tool (x32 Version: 1.0.3.1 - Microsoft Corporation) Hidden TypeScript Tools for Microsoft Visual Studio 2013 (x32 Version: 1.0.3.1 - Microsoft Corporation) Hidden UltraISO Premium V9.53 (HKLM-x32\...\UltraISO_is1) (Version: - ) Unlocker 1.9.2 (HKLM\...\Unlocker) (Version: 1.9.2 - Cedrick Collomb) Update for (KB2504637) (HKLM-x32\...\{CFEF48A8-BFB8-3EAC-8BA5-DE4F8AA267CE}.KB2504637) (Version: 1 - Microsoft Corporation) Update Installer for WildTangent Games App (x32 Version: - WildTangent) Hidden Uplay (HKLM-x32\...\Uplay) (Version: 2.0 - Ubisoft) Vacation Quest - The Hawaiian Islands (x32 Version: 2.2.0.97 - WildTangent) Hidden Vegas Pro 11.0 (HKLM-x32\...\{B644D34F-0296-11E2-938E-F04DA23A5C58}) (Version: 11.0.700 - Sony) Vegas Pro 12.0 (64-bit) (HKLM\...\{6592B670-2680-11E3-B0E0-F04DA23A5C58}) (Version: 12.0.726 - Sony) Verfügbare Autodesk-Apps (HKLM-x32\...\{EDDEE94B-214D-4B07-9727-A3E46F3E379A}) (Version: 1.2.0 - Autodesk) Virtual Villagers - The Secret City (x32 Version: 2.2.0.95 - WildTangent) Hidden Visual Studio 2013 Update 3 (KB2829760) (HKLM-x32\...\{86438e3d-7f83-4dd2-94aa-047e7c3974cb}) (Version: 12.0.30723 - Microsoft Corporation) VLC media player 2.1.0 (HKLM-x32\...\VLC media player) (Version: 2.1.0 - VideoLAN) VS Update core components (x32 Version: 12.0.30723 - Microsoft Corporation) Hidden Wasp (HKLM-x32\...\Wasp) (Version: - Image-Line) Webocton - Scriptly 0.8.95.6 (HKLM-x32\...\Webocton - Scriptly_is1) (Version: 0.8.95.6 - Webocton) WildTangent Games App (HP Games) (x32 Version: 4.0.5.2 - WildTangent) Hidden Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 15.4.3508.1109 - Microsoft Corporation) Windows Live Mesh ActiveX Control for Remote Connections (HKLM-x32\...\{2902F983-B4C1-44BA-B85D-5C6D52E2C441}) (Version: 15.4.5722.2 - Microsoft Corporation) Windows Live Mesh ActiveX control for remote connections (HKLM-x32\...\{C5398A89-516C-4DAF-BA07-EE7949090E56}) (Version: 15.4.5722.2 - Microsoft Corporation) WinRAR 5.00 (64-Bit) (HKLM\...\WinRAR archiver) (Version: 5.00.0 - win.rar GmbH) Worms 3D Demo (HKLM-x32\...\{481463D7-E5D9-4331-B154-B75D6D3C15F8}) (Version: 0.00.001 - ) Worms Armageddon (HKLM-x32\...\Steam App 217200) (Version: - Team17 Digital Ltd.) Worms Reloaded Demo (HKLM-x32\...\Steam App 22690) (Version: - Team17 Software Ltd.) Zinio Reader 4 (HKLM-x32\...\ZinioReader4) (Version: 4.2.4164 - Zinio LLC) Zinio Reader 4 (x32 Version: 4.2.4164 - Zinio LLC) Hidden Zuma Deluxe (x32 Version: 2.2.0.95 - WildTangent) Hidden ==================== Custom CLSID (selected items): ========================== (If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.) ==================== Restore Points ========================= 18-03-2015 22:49:36 AA11 20-03-2015 17:53:25 AA11 21-03-2015 21:32:59 Prüfpunkt von HitmanPro 21-03-2015 21:34:38 Prüfpunkt von HitmanPro 22-03-2015 19:00:10 Windows-Sicherung ==================== Hosts content: ========================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2009-07-14 03:34 - 2015-03-20 21:39 - 00000027 ____A C:\Windows\system32\Drivers\etc\hosts 127.0.0.1 localhost ==================== Scheduled Tasks (whitelisted) ============= (If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.) Task: {0AAB13DC-2FCB-4626-9C09-E71EF8EDC7DA} - System32\Tasks\COMODO\COMODO Scan {F140D794-60B6-4F00-9235-D6457AA25B22} => C:\Program Files\COMODO\COMODO Internet Security\cfpconfg.exe [2015-02-03] (COMODO) Task: {1D25E891-107C-4435-92DB-34BA287D7572} - System32\Tasks\COMODO\COMODO Cache Builder {0FB77674-7905-4F34-A362-C5A9A26F8CF9} => C:\Program Files\COMODO\COMODO Internet Security\cfpconfg.exe [2015-02-03] (COMODO) Task: {319118F6-9333-479B-BD71-B325E9FD2C1A} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office\Office15\msoia.exe [2014-01-23] (Microsoft Corporation) Task: {353B60D7-B632-4D23-8D53-A87645DE8310} - System32\Tasks\OfficeSoftwareProtectionPlatform\SvcRestartTask => Sc.exe start osppsvc Task: {3C889252-7E97-4BA7-8424-E36D9CC5D3A5} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker_DeviceScan => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [2015-02-11] (Hewlett-Packard) Task: {3FA2950D-E0DA-4F62-AC5D-FA3D2B9130BE} - System32\Tasks\HPCeeScheduleForSimon => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [2010-09-14] (Hewlett-Packard) Task: {4E767EC7-C876-4D4D-8286-01BA2781F29D} - System32\Tasks\ServicePlan => C:\Program Files (x86)\Hewlett-Packard\HP Setup\RemEngine.exe [2011-06-15] () Task: {6917235F-071E-4CF5-BC62-D0056AD88984} - System32\Tasks\AdobeAAMUpdater-1.0-Simon-HP-Simon => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2011-03-30] (Adobe Systems Incorporated) Task: {6DF7495B-453E-4201-A774-9A16AA04A049} - System32\Tasks\COMODO\COMODO Update {A6D52E4F-569B-4756-B3D8-DF217313DA85} => C:\Program Files\COMODO\COMODO Internet Security\cfpconfg.exe [2015-02-03] (COMODO) Task: {732A009F-ABA0-4ACC-B37B-93918A127137} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-03-17] (Google Inc.) Task: {7A9DA2D6-C205-4E2D-8688-DBFBD8F66AF4} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2012-09-27] (Hewlett-Packard Company) Task: {976212C0-3712-4B9B-A740-16D6E523E801} - System32\Tasks\COMODO\COMODO Signature Update {B9D5C6F9-17D2-4917-8BD0-614BAA1C6A59} => C:\Program Files\COMODO\COMODO Internet Security\cfpconfg.exe [2015-02-03] (COMODO) Task: {9A05599A-408F-45C2-88B7-A5C197CF4596} - System32\Tasks\Hewlett-Packard\HP Support Assistant\Update Check => C:\ProgramData\Hewlett-Packard\HP Support Framework\Resources\Updater7\HPSFUpdater.exe [2014-05-12] (Hewlett-Packard Company) Task: {9F6B2557-5398-4523-B024-86168B020085} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2012-09-27] (Hewlett-Packard Company) Task: {A3CFBE5E-BC7C-4B95-8BC4-8C85777C3A46} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office\Office15\msoia.exe [2014-01-23] (Microsoft Corporation) Task: {A497C78A-1117-4753-A8DD-E1AAA3807DC8} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-03-17] (Google Inc.) Task: {C47202FA-D586-453B-A7B0-F30ADF64C5F7} - System32\Tasks\COMODO\COMODO Autostart {D5EFF3B3-E126-4AF6-BCE9-852A72129E10} => C:\Program Files\COMODO\COMODO Internet Security\cistray.exe [2015-02-03] (COMODO) Task: {CDB305DC-F279-475F-9FA6-795183E9F5AA} - System32\Tasks\Apple\AppleSoftwareUpdate => c:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.) Task: {E8972EB4-3A98-47E4-9F31-28860FC4DBC1} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe [2014-01-23] (Microsoft Corporation) Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\HPCeeScheduleForSimon.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe ==================== Loaded Modules (whitelisted) ============== 2015-01-20 22:35 - 2015-01-20 22:35 - 00085832 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll 2015-01-20 22:35 - 2015-01-20 22:35 - 01346344 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll 2013-10-30 22:16 - 2014-11-06 19:01 - 00076152 _____ () C:\Windows\SysWOW64\PnkBstrA.exe 2013-04-15 17:39 - 2013-04-15 17:39 - 00073424 _____ () C:\Program Files\COMODO\COMODO Internet Security\scanners\smart.cav 2015-01-20 22:35 - 2015-01-20 22:35 - 00306984 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxslt.dll 2011-06-01 07:14 - 2011-06-01 07:14 - 00243712 _____ () C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLI.Aspect.CrossDisplay.Graphics.Dashboard.dll 2011-04-12 01:20 - 2011-04-12 01:20 - 00098304 _____ () C:\Program Files (x86)\ATI Technologies\ATI.ACE\Branding\Branding.dll 2011-04-12 01:20 - 2011-04-12 01:20 - 00028672 _____ () C:\Program Files (x86)\ATI Technologies\ATI.ACE\Branding\BrandingResources.dll 2014-09-29 19:00 - 2014-09-04 04:41 - 00047496 _____ () C:\Program Files (x86)\Common Files\Autodesk Shared\AppManager\R1\QtSolutions_Service-head.dll 2014-09-29 19:00 - 2014-09-04 04:41 - 00104328 _____ () C:\Program Files (x86)\Common Files\Autodesk Shared\AppManager\R1\qjson0.dll 2015-01-20 22:35 - 2015-01-20 22:35 - 01044776 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll 2014-01-05 23:14 - 2013-11-19 22:34 - 00152576 _____ () C:\Program Files (x86)\Remote Mouse\FileS.dll 2014-12-03 19:07 - 2014-12-03 19:07 - 00019968 _____ () C:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\locale\de_de\acrotray.deu 2014-01-20 13:17 - 2014-01-20 13:17 - 00073544 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll 2015-03-23 15:23 - 2014-09-04 04:41 - 00104328 _____ () C:\Users\Simon\AppData\Local\Autodesk\.AdskAppManager\R1\qjson0.dll 2015-03-20 18:58 - 2015-03-14 11:12 - 01174856 _____ () C:\Program Files (x86)\Google\Chrome\Application\41.0.2272.101\libglesv2.dll 2015-03-20 18:58 - 2015-03-14 11:12 - 00080200 _____ () C:\Program Files (x86)\Google\Chrome\Application\41.0.2272.101\libegl.dll 2015-03-20 18:58 - 2015-03-14 11:12 - 09278792 _____ () C:\Program Files (x86)\Google\Chrome\Application\41.0.2272.101\pdf.dll 2015-03-20 18:58 - 2015-03-14 11:12 - 14974280 _____ () C:\Program Files (x86)\Google\Chrome\Application\41.0.2272.101\PepperFlash\pepflashplayer.dll ==================== Alternate Data Streams (whitelisted) ========= (If an entry is included in the fixlist, only the Alternate Data Streams will be removed.) AlternateDataStreams: C:\autoexec.bat:$CmdTcID AlternateDataStreams: C:\Program Files (x86)\Nexus.dll:$CmdTcID AlternateDataStreams: C:\Windows\grep.exe:$CmdTcID AlternateDataStreams: C:\Windows\NIRCMD.exe:$CmdTcID AlternateDataStreams: C:\Windows\PEV.exe:$CmdTcID AlternateDataStreams: C:\Windows\sed.exe:$CmdTcID AlternateDataStreams: C:\Windows\SWREG.exe:$CmdTcID AlternateDataStreams: C:\Windows\SWSC.exe:$CmdTcID AlternateDataStreams: C:\Windows\zip.exe:$CmdTcID AlternateDataStreams: C:\Windows\system32\adtschema.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\aeinv.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\aepdu.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\aepic.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\aitstatic.exe:$CmdTcID AlternateDataStreams: C:\Windows\system32\apisetschema.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\appidapi.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\appidcertstorecheck.exe:$CmdTcID AlternateDataStreams: C:\Windows\system32\appidpolicyconverter.exe:$CmdTcID AlternateDataStreams: C:\Windows\system32\appidsvc.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\appraiser.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\atmfd.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\atmlib.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\audiodg.exe:$CmdTcID AlternateDataStreams: C:\Windows\system32\AudioEng.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\AUDIOKSE.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\AudioSes.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\audiosrv.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\auditpol.exe:$CmdTcID AlternateDataStreams: C:\Windows\system32\blackbox.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\ci.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\credssp.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\crypt32.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\cryptnet.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\cryptsp.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\cryptsvc.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\cryptui.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\csrsrv.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\dciman32.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\devinv.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\drmmgrtn.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\drmv2clt.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\dxmasf.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\dxtmsft.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\dxtrans.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\EncDump.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\evr.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\fontsub.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\GEARAspi64.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\generaltel.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\ie4uinit.exe:$CmdTcID AlternateDataStreams: C:\Windows\system32\ieapfltr.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\iedkcs32.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\ieetwcollector.exe:$CmdTcID AlternateDataStreams: C:\Windows\system32\ieetwcollectorres.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\ieetwproxystub.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\ieframe.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\iernonce.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\iertutil.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\iesetup.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\ieui.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\ieUnatt.exe:$CmdTcID AlternateDataStreams: C:\Windows\system32\inetcpl.cpl:$CmdTcID AlternateDataStreams: C:\Windows\system32\invagent.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\java.exe:$CmdTcID AlternateDataStreams: C:\Windows\system32\JavaScriptCollectionAgent.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\javaw.exe:$CmdTcID AlternateDataStreams: C:\Windows\system32\javaws.exe:$CmdTcID AlternateDataStreams: C:\Windows\system32\jscript9.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\jscript9diag.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\jsproxy.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\kerberos.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\lpk.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\lsasrv.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\lsass.exe:$CmdTcID AlternateDataStreams: C:\Windows\system32\mf.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\mferror.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\mfplat.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\mfpmp.exe:$CmdTcID AlternateDataStreams: C:\Windows\system32\mfps.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\MpSigStub.exe:$CmdTcID AlternateDataStreams: C:\Windows\system32\msaudite.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\msctf.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\msdxm.ocx:$CmdTcID AlternateDataStreams: C:\Windows\system32\msfeeds.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\mshtml.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\MshtmlDac.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\mshtmled.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\mshtmlmedia.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\msln.exe:00e74148e3309a1460eb4dc1fc18ecd2 AlternateDataStreams: C:\Windows\system32\msmmsp.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\msnetobj.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\msobjs.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\msrating.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\msscp.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\MsSpellCheckingFacility.exe:$CmdTcID AlternateDataStreams: C:\Windows\system32\msv1_0.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\ncrypt.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\ntoskrnl.exe:$CmdTcID AlternateDataStreams: C:\Windows\system32\oleaut32.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\pcadm.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\pcaevts.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\pcalua.exe:$CmdTcID AlternateDataStreams: C:\Windows\system32\pcasvc.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\pcawrk.exe:$CmdTcID AlternateDataStreams: C:\Windows\system32\perftrack.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\powertracker.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\qdvd.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\quartz.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\rdpcorets.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\RdpGroupPolicyExtension.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\rdpudd.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\rrinstaller.exe:$CmdTcID AlternateDataStreams: C:\Windows\system32\rstrui.exe:$CmdTcID AlternateDataStreams: C:\Windows\system32\scesrv.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\schannel.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\secur32.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\setbcdlocale.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\shell32.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\smss.exe:$CmdTcID AlternateDataStreams: C:\Windows\system32\spwmp.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\srclient.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\srcore.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\sspicli.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\sspisrv.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\synsoacc.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\TSpkg.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\ubpm.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\urlmon.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\vbscript.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\WdfCoInstaller01009.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\wdi.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\wdigest.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\win32k.sys:$CmdTcID AlternateDataStreams: C:\Windows\system32\WindowsCodecs.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\wininet.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\winload.efi:$CmdTcID AlternateDataStreams: C:\Windows\system32\winload.exe:$CmdTcID AlternateDataStreams: C:\Windows\system32\winresume.efi:$CmdTcID AlternateDataStreams: C:\Windows\system32\winresume.exe:$CmdTcID AlternateDataStreams: C:\Windows\system32\wintrust.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\wmdrmsdk.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\wmp.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\WMPhoto.dll:$CmdTcID AlternateDataStreams: C:\Windows\system32\wmploc.DLL:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\adtschema.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\apisetschema.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\appidapi.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\atmfd.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\atmlib.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\AudioEng.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\AUDIOKSE.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\AudioSes.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\auditpol.exe:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\blackbox.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\credssp.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\crypt32.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\cryptnet.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\cryptsp.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\cryptsvc.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\cryptui.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\dciman32.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\drmmgrtn.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\drmv2clt.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\dxmasf.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\dxtmsft.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\dxtrans.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\evr.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\fontsub.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\GEARAspi.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\ieapfltr.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\iedkcs32.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\ieetwproxystub.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\ieframe.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\iernonce.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\iertutil.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\iesetup.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\ieui.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\ieUnatt.exe:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\inetcpl.cpl:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\java.exe:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\javaw.exe:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\javaws.exe:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\jscript9.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\jscript9diag.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\jsproxy.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\kerberos.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\lpk.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\mf.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\mferror.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\mfplat.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\mfpmp.exe:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\mfps.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\msaudite.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\msctf.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\msdxm.ocx:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\msfeeds.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\mshtml.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\MshtmlDac.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\mshtmled.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\mshtmlmedia.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\msnetobj.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\msobjs.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\msrating.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\msscp.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\msv1_0.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\ncrypt.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\nlaapi.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\ntkrnlpa.exe:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\ntoskrnl.exe:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\oleaut32.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\qdvd.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\quartz.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\rrinstaller.exe:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\scesrv.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\schannel.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\secur32.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\shell32.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\spwmp.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\srclient.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\sspicli.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\SYNSOACC.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\SYNSOEMU.DLL:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\SYNSOPOS.exe:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\TSpkg.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\ubpm.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\urlmon.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\vbscript.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\wdi.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\wdigest.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\WindowsCodecs.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\wininet.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\wintrust.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\wmdrmsdk.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\wmp.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\WMPhoto.dll:$CmdTcID AlternateDataStreams: C:\Windows\SysWOW64\wmploc.DLL:$CmdTcID AlternateDataStreams: C:\Windows\system32\Drivers\appid.sys:$CmdTcID AlternateDataStreams: C:\Windows\system32\Drivers\cng.sys:$CmdTcID AlternateDataStreams: C:\Windows\system32\Drivers\ksecdd.sys:$CmdTcID AlternateDataStreams: C:\Windows\system32\Drivers\ksecpkg.sys:$CmdTcID AlternateDataStreams: C:\Windows\system32\Drivers\mbam.sys:$CmdTcID AlternateDataStreams: C:\Windows\system32\Drivers\mbamchameleon.sys:$CmdTcID AlternateDataStreams: C:\Windows\system32\Drivers\mountmgr.sys:$CmdTcID AlternateDataStreams: C:\Windows\system32\Drivers\mrxdav.sys:$CmdTcID AlternateDataStreams: C:\Windows\system32\Drivers\mwac.sys:$CmdTcID AlternateDataStreams: C:\Windows\system32\Drivers\PEAuth.sys:$CmdTcID AlternateDataStreams: C:\Users\Simon\Desktop\AdwCleaner_4.112.exe:$CmdTcID AlternateDataStreams: C:\Users\Simon\Desktop\AdwCleaner_4.112.exe:$CmdZnID AlternateDataStreams: C:\Users\Simon\Desktop\ComboFix.exe:$CmdTcID AlternateDataStreams: C:\Users\Simon\Desktop\ComboFix.exe:$CmdZnID AlternateDataStreams: C:\Users\Simon\Desktop\esetsmartinstaller_deu.exe:$CmdTcID AlternateDataStreams: C:\Users\Simon\Desktop\esetsmartinstaller_deu.exe:$CmdZnID AlternateDataStreams: C:\Users\Simon\Desktop\FRST64.exe:$CmdTcID AlternateDataStreams: C:\Users\Simon\Desktop\FRST64.exe:$CmdZnID AlternateDataStreams: C:\Users\Simon\Desktop\HitmanPro_x64.exe:$CmdTcID AlternateDataStreams: C:\Users\Simon\Desktop\HitmanPro_x64.exe:$CmdZnID AlternateDataStreams: C:\Users\Simon\Desktop\JRT.exe:$CmdTcID AlternateDataStreams: C:\Users\Simon\Desktop\JRT.exe:$CmdZnID AlternateDataStreams: C:\Users\Simon\Desktop\linie_702_karlsruhe___offenburg.pdf:$CmdZnID AlternateDataStreams: C:\Users\Simon\Desktop\linie_718_offenburg___oberkirch___bad_griesbach__schw_.pdf:$CmdZnID AlternateDataStreams: C:\Users\Simon\Desktop\mbam-setup-2.1.4.1018.exe:$CmdTcID AlternateDataStreams: C:\Users\Simon\Desktop\mbam-setup-2.1.4.1018.exe:$CmdZnID AlternateDataStreams: C:\Users\Simon\Desktop\SecurityCheck.exe:$CmdTcID AlternateDataStreams: C:\Users\Simon\Desktop\SecurityCheck.exe:$CmdZnID AlternateDataStreams: C:\Users\Simon\Desktop\sweg_streckenplan.pdf:$CmdZnID AlternateDataStreams: C:\Users\Simon\Desktop\tdsskiller.exe:$CmdTcID AlternateDataStreams: C:\Users\Simon\Desktop\tdsskiller.exe:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\(500 Sub ) Free Sylenth Sound Bank(By KiDynamic).rar:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\2014 11 14 Information PULMOLL_Stevia_tins for translation_LABELS NEU.xlsx:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\3LAU - Five Voices [3LAU Mashup].mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Access_7_und_8_Kapitel_Abfragen.zip:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\AdAware116WebInstaller.exe:$CmdTcID AlternateDataStreams: C:\Users\Simon\Downloads\AdAware116WebInstaller.exe:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\AdwCleaner_4.112 (1).exe:$CmdTcID AlternateDataStreams: C:\Users\Simon\Downloads\AdwCleaner_4.112 (1).exe:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\adwcleaner_4.112.exe:$CmdTcID AlternateDataStreams: C:\Users\Simon\Downloads\adwcleaner_4.112.exe:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Alex Metric - Heart Weighs A Ton (Vindata Remix).mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Alex Metric - Rave Weapon.mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Andres Blows - Driver (Original Mix).mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Arkasia - Fall Of The Repuplic.mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\AsAP Rocky - Wild for the Night (Dog Blood Remix) [feat. Birdy.mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Audacity - CHIP-Installer.exe:$CmdTcID AlternateDataStreams: C:\Users\Simon\Downloads\Audacity - CHIP-Installer.exe:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Avicii - Levels (Skrillex Sheffield Mix) (Wrillez Basics R.mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Baauer & RL Grime - Infinite Daps.mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Baauer - One Touch (feat. AlunaGeorge And Rae Sremmurd).mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\BANKS - Fall Over (Djemba Djemba Remix).mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Barely Alive - Sell Your Soul (ft. Jeff Sontag).mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Basement Jaxx - Wheres Your Head At.mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Bass On Fire - One Or Two Scary Homes (Skrillex Kezwik MUST DIE!.mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Battery_4_410_PC.zip:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Baunz - The Same Thing (Huxley Remix).mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Ben LOncle Soul - SevenNationArmy live.mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Benjie - Ich rauch mein Ganja den ganzen Tag.mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Beyonce - 7_11 (Skrillex & Diplos Jack U Remix).mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Bob Marley & The Wailers - Get Up Stand Up.mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Bob Marley - Bad Boys.mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Bob Marley - Could you be loved.mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Bob Marley - I Shot The Sheriff.mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Bob Marley - I Smoke Two Joints.mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Bob Marley - Jammin.mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Bob Marley - Legalize it.mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Bob Marley - Red Red Wine.mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Boys Noize - Push Em Up (Salva Remix).mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Brandon Beal - Twerk It Like Miley feat. Christopher.mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Bro Safari - The Drop (MUST DIE! Remix).mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\C-Trox - Girls (Prod. Jaykode).mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\c89f3d44-1d2b-4a63-ab37-8d10999e081a.zip:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Cash Cash - Overtime.mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Climbers - 2 Come Back (Original Mix).mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\ComboFix.exe:$CmdTcID AlternateDataStreams: C:\Users\Simon\Downloads\ComboFix.exe:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Cubase7 Crack v1.3.exe:$CmdTcID AlternateDataStreams: C:\Users\Simon\Downloads\Cubase7 Crack v1.3.exe:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Daddys Groove - Stellar (Extended Club Mix).mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Daniel Fernandes - After All (Original Mix).mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Deadmau5 feat. Gerard Way - Professional Griefers (Original Vocal Mix).mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Deorro - Bootie In Your Face (Original Mix).mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Dillon Francis - When We Were Young (Zomboy Remix).mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Dimitri Vegas Like Mike & GTA Ft. Wolfpack - Turn It Up (Original Mix).mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Diplo & Alvaro - 6th Gear (GTA Remix).mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Diplo ft Skrillex - Amplifire.mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\DirectX_11_Setup.zip:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\DJ Fresh feat. Ella Eyre - Gravity (Zeds Dead Remix).mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Doja Cat - So High (San Holo Remix).mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Dr Kucho! & Gregor Salto ft. Ane Brun - Cant Stop Playing (Makes Me High) (Cyan.mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\e-dubble - Changed My Mind.mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Ed Sheeran - Don't.mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Ellie Goulding - Love Me Like You Do (Acapella) FREE DOWNLOAD.mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\esetsmartinstaller_deu.exe:$CmdTcID AlternateDataStreams: C:\Users\Simon\Downloads\esetsmartinstaller_deu.exe:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Fall Out Boy - I Dont Care.mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Far East Movement - Grimey Thirsty feat. YG.mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Far East Movement feat ScHoolboy Q - The Illest.mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Fatboy Slim VS Dimitri Vegas Like Mike & Ummet Ozc - Eat Sleep Rave Repeat (Tomorrowland Mix).mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Flashmob - Need In Me (Original Mix).mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Flosstradamus ft. TroyBoi - Soundclash.mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Foamo - Without You.mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\From First to Last - Emily.mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\From First To Last - Note to Self.mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Galantis - Runaway (U & I) (Dillon Francis Remix).mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Galantis - Runaway (U & I).mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Green Day - Boulevard Of Broken Dreams.mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\GRID_Autosport.zip:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\HitmanPro_x64.exe:$CmdTcID AlternateDataStreams: C:\Users\Simon\Downloads\HitmanPro_x64.exe:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Hot Since 82 - Knee Deep in Louise (Original Mix).mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Jack U - Beat Steady Knockin'.mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Jack U - Take U There (feat. Kiesza) [Zeds Dead Remix].mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Jack Ü - Take Ü There (feat. Kiesza) (Tchami Remix).mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Jack Ü - Take U There (Netsky Remix).mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Jack Ü - Take Ü There (feat. Kiesza) [L D R U Remix].mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Jack Ü - Take Ü There (ft. Kiesza) [Felix Cartel Remix].mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Jack Ü - Take Ü There (ft. Kiesza) [Vindata remix].mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\JavaEditor12.52Setup.exe:$CmdTcID AlternateDataStreams: C:\Users\Simon\Downloads\JavaEditor12.52Setup.exe:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Jay Forest Sample Pack 2.rar:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Jay Forest Sample Pack.rar:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Jaykode - NUTCRAKA.mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Jean Elan - Wheres Your Head At (Klaas Remix).mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Jewelz & Scott Sparks feat. Quilla - Unless We Forget (Original Mix).mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Joey Harmless - Act So Shady.mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\JP6K_demo.zip:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\JRT.exe:$CmdTcID AlternateDataStreams: C:\Users\Simon\Downloads\JRT.exe:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Just The Way You Are - Bruno Mars (Skrillex Remix).mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Kaskade ft. Mindy Gledhill - Eyes (Alvin Risk Remix).mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Kill Paris - I Do Love You.mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\KMSpico setup by MegaPennymarkt.rar:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\KOAN Sound - 80s Fitness.mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\KOAN Sound - Eastern Thug.mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\KOAN Sound - Sly Fox.mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\KOLLEGAH - BOSSHAFT BODYBUILDING #1 (Beat by Phil Fanatic &.mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\KOLLEGAH - BOSSTRANSFORMATION THEME (Beat by Phil Fanatic &.mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\KOLLEGAH - IMPERATOR Juice Exclusive (Beat by Phil Fanatic &.mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\KOLLEGAH - NWO (Beat by Hookbeats & Phil Fanatic).mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\KOLLEGAH - Ruhe vor dem Sturm (Beat by Hookbeats & Phil Fana.mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Kollegah ft Farid Bang - Dynamit (acapella) (1).mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\KOLLEGAHs LYRIK LOUNGE #12 - Der Jesse Pinkman (Beat by Sadikbeatz).mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\KOLLEGAHs LYRIK LOUNGE #13 - Der Personal Trainer (Beat by Joznez & Johnny Ill.mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\KOLLEGAHs LYRIK LOUNGE #4 - Der Maurermeister (Beat by Hookbeats & Phil Fanat.mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\KOLLEGAHs LYRIK LOUNGE #6 - Der Indianer (Beat by Phil Fanatic & Hookbeats).mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Korn feat Skrillex and Kill the Noise - Narcissistic Cannibal.mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Krewella - Come and Get It.mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\KVRT15.0.19.0.exe:$CmdTcID AlternateDataStreams: C:\Users\Simon\Downloads\KVRT15.0.19.0.exe:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Left Boy - Get It Right (Virtual Riot Remix).mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\LennarDigital.Sylenth1.v2.21.x86.x64_www.insfire.net.rar:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Lil Boosie - Crazy (Brillz & Snails Bootleg).mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\linie_702_karlsruhe___offenburg.pdf:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\linie_718_offenburg___oberkirch___bad_griesbach__schw_.pdf:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Lorde - Tennis Court (Diplo's Andre Agassi Reebok Remix).mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Major Lazer & DJ Snake feat. MØ - Lean On.mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Martin Solveig & GTA - Intoxicated (Original Mix).mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Massive_140_PC.zip:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Matisyahu - Sunshine.mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\mbam-setup-2.0.4.1028.exe:$CmdTcID AlternateDataStreams: C:\Users\Simon\Downloads\mbam-setup-2.0.4.1028.exe:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\mbam-setup-2.1.4.1018.exe:$CmdTcID AlternateDataStreams: C:\Users\Simon\Downloads\mbam-setup-2.1.4.1018.exe:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\MIA - YALA (Bro Safari & Valentino Khan Remix).mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Migos - Fight Night.mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Mike Williams - Konnichiwa (Original Mix).mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Millok & Zigelli - Feel Me [Mario Basanov Remix].mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\musicradar-house-percussion-samples.zip:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\MUST DIE! - Hellcat.mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\M_ive52000Presets.rar:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Nari & Milani Feat. Carl Fanini House Remix - Smells Like Teen Spirit.mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\NexusFontSetup2.5.8.exe:$CmdTcID AlternateDataStreams: C:\Users\Simon\Downloads\NexusFontSetup2.5.8.exe:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Ninetoes - Finder (Klardust Remix).mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Nirvana - Come As You Are (Frank Vaenz Remix).mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\ni_massive_pack_2013 (1).zip:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Noisia Feat. Foreign Beggars - Shellshock.mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Nova - Feeling Of The Night (Original Mix).mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\NYMZ - BINGBONG.mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Oiki - Get It Now VIP.mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\OneHandBand-Beatz - I get High.mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Overwerk - Contact.mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\pak_choirs_et_bonus_par_toutpourleson (1).rar:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Philip George - Wish You Were Mine (Dexcell Remix).mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Phonat - Set Me Free.mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\PokerStarsInstallEU.exe:$CmdTcID AlternateDataStreams: C:\Users\Simon\Downloads\PokerStarsInstallEU.exe:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Press Play & Nathan Thomson - Sex Drugs & Bounce (Original Mix).mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Red Hot Chili Peppers - Around The World.mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Red Hot Chili Peppers - Californication.mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Red Hot Chili Peppers - Cant Stop.mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Red Hot Chili Peppers - Dani California.mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Red Hot Chili Peppers - Road Trippin.mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Red Hot Chili Peppers - Scar Tissue.mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Red Hot Chili Peppers - Snow (Hey Oh).mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Red Hot Chili Peppers - The Adventures of Rain Dance Maggie.mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Red Hot Chili Peppers - Under The Bridge.mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Replika_120_PC.zip:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\RL Grime - Core (Djembas Selassie Bootleg).mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\SecondCity - I Wanna Feel (Young Bombs Remix).mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\SecurityCheck.exe:$CmdTcID AlternateDataStreams: C:\Users\Simon\Downloads\SecurityCheck.exe:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Serato DJ Intro 1.2.3.zip:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Serato Dj1.6.1 FULL By #DJALFAMED.rar:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Shadow Child - 23 (ft. Tymer).mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Skrillex & Katy Perry - E.T. (Bugzz Equinox Remix).mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Skrillex & Major Lazer - Get Cinema.mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Skrillex - Baby Boy (Original Mix).mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Skrillex - Breakn A Sweat VIP.mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Skrillex - Breathe ft. Krewella (Vocal Edit) Extended.mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Skrillex - Cat Rats.mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Skrillex - CUSP (xCosmikx Edit).mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Skrillex - Dirty Vibe with Diplo G-Dragon and CL (Habstrakt.mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Skrillex - Dirty Vibe with Diplo G-Dragon and CL (Jack Beats.mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Skrillex - Dirty Vibe with Diplo G-Dragon and CL (Ricky Reme.mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Skrillex - Do We Really.mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Skrillex - DownX3.mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Skrillex - Fuckn Messy.mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Skrillex - I am Skrillex.mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Skrillex - Ragga Bomb feat. The Ragga Twins (Skrillex & Zomb.mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Skrillex - Rock n Roll VIP + Unreleased Song.mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Skrillex - Sexual Seduction.mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Skrillex - True Gangsters Final.mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Skrillex feat. Sirah - Weekends!!! (Zedd Remix).mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\smime (1).p7s:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\snake_js.zip:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Snoop Dogg ft. Pharrell - Drop It Like Its Hot.mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Somewhere Up Here (Drop The Poptart) - Deadmau5 Ft. Colleen DAgostino.mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Sonny Moore - Glow Worm.mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Sonny Moore - Gypsyhook.mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Sonny Moore - Oceans.mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Sonny Moore - Se7en Bells.mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Sonny Moore - Signal (Acoustic).mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Soul Button - Come To Me (Dahu Remix).mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Soul Button - In My Stride feat. Stee Downes (Original Mix).mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\SpydaT.E.K. - Si Me Dices(Random).mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\STAY WITH ME - Sam Smith.mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Steve Aoki Ft. Rivers Cuomo - Earthquakey People (Alvin Risk Remix).mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Swedish House Mafia vs. Knife Party - Antidote (Schoolboy Remix).mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\sweg_streckenplan.pdf:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Sylenth1DemoWin32.zip:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Sylenth1DemoWin64.zip:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\tdsskiller.exe:$CmdTcID AlternateDataStreams: C:\Users\Simon\Downloads\tdsskiller.exe:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\The Beatles - Hey Jude Vocals.mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\TIM ISMAG - THE ROCK.mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Tiësto - Wasted ft. Matthew Koma (Ummet Ozcan Remix).mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Tone2_Gladiator_demo_setup (1).zip:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Tone2_Gladiator_demo_setup.zip:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Torro Torro & Long Jawns - The Pump.mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Torro Torro - CAN'T GET ENOUGH - (4songs.PK).mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Tristam & Braken - Flight.mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Trollphace - Make It Bounce (feat. Harvey J).mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Uberjakd - Bump Dat (Original Mix).mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Uberjakd - GTFU (Krunk! remix).mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\uiso9_pe.exe:$CmdTcID AlternateDataStreams: C:\Users\Simon\Downloads\uiso9_pe.exe:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Vaski - Take Me There.mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\VC++_All_Redist_Packages.zip:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Verkaufsschild (1).pdf:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Verkaufsschild (2).pdf:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Verkaufsschild-6-x-Multipower-Bleiakkus-12V-12Ah-Preis-pro-Akku-17.pdf:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Verkaufsschild.pdf:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Virtual Riot - Energy Drink.mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Virtual Riot - Idols (EDM Mashup).mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Virtual Riot - Minimalist.mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Virtual Riot - Turn Up.mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Virtual Riot - Were Not Alone.mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Virtual Riot x ApeCrime - Instagram Battle.mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\What So Not - The Quack.mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\What So Not - Touched.mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Wiz Khalifa - We Dem Boyz.mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Wuki - Framework VIP.mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\xKore ft. Zoe & Naomi - Need You (Centra Remix).mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Yellow Claw & Cesqeaux - Legends Ft. Kalibwoy.mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Zedd - Dovregubben (Original Mix).mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Zedd - I Want You To Know ft. Selena Gomez.mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Zhu - Dj Snake - Dj Mustard - Faded 2.0.mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\Zomboy - Here To Stay (MUST DIE! Remix).mp3:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\[kickass.so]cubase.7.torrent:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\[kickass.so]native.instruments.battery.4.4.0.1.update.and.library.torrent:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\[kickass.so]ni.massive.v1.1.4.vsti.torrent:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\[TVSMILES GmbH] Betreff- Deine Prämie von TVSMILES - Amazon 10 Euro Gutschein (#414871).html:$CmdZnID AlternateDataStreams: C:\Users\Simon\Downloads\[TVSMILES GmbH] Betreff- Deine Prämie von TVSMILES - Amazon 5 Euro Gutschein (#414881).html:$CmdZnID ==================== Safe Mode (whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\tammgF119.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\tammgR119.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Hamachi2Svc => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\tammgF119.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\tammgR119.sys => ""="Driver" ==================== EXE Association (whitelisted) =============== (If an entry is included in the fixlist, the default will be restored. None default entries will be removed.) ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-2389831746-1586198665-2336280641-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Simon\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 192.168.178.1 ==================== MSCONFIG/TASK MANAGER disabled items == (Currently there is no automatic fix for this section.) ==================== Accounts: ============================= Administrator (S-1-5-21-2389831746-1586198665-2336280641-500 - Administrator - Disabled) Gast (S-1-5-21-2389831746-1586198665-2336280641-501 - Limited - Enabled) => C:\Users\Gast Simon (S-1-5-21-2389831746-1586198665-2336280641-1000 - Administrator - Enabled) => C:\Users\Simon ==================== Faulty Device Manager Devices ============= Name: GT-I8190 Description: GT-I8190 Class Guid: {eec5ad98-8080-425f-922a-dabf3de3f69a} Manufacturer: SAMSUNG Electronics Co. Ltd. Service: WUDFRd Problem: : This device cannot start. (Code10) Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device. On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard. ==================== Event log errors: ========================= Application errors: ================== Error: (03/23/2015 02:41:53 PM) (Source: MsiInstaller) (EventID: 11310) (User: Simon-HP) Description: Produkt: Akamai NetSession Interface -- Fehler 1310. Fehler beim Schreiben in die Datei: C:\Users\Simon\AppData\Local\Akamai\admintool.exe. Systemfehler 0. Stellen Sie sicher, dass Sie auf das Verzeichnis zugreifen können. Error: (03/23/2015 02:41:32 PM) (Source: MsiInstaller) (EventID: 11310) (User: Simon-HP) Description: Produkt: Akamai NetSession Interface -- Fehler 1310. Fehler beim Schreiben in die Datei: C:\Users\Simon\AppData\Local\Akamai\admintool.exe. Systemfehler 0. Stellen Sie sicher, dass Sie auf das Verzeichnis zugreifen können. Error: (03/22/2015 09:12:52 PM) (Source: MsiInstaller) (EventID: 11310) (User: Simon-HP) Description: Produkt: Akamai NetSession Interface -- Fehler 1310. Fehler beim Schreiben in die Datei: C:\Users\Simon\AppData\Local\Akamai\admintool.exe. Systemfehler 0. Stellen Sie sicher, dass Sie auf das Verzeichnis zugreifen können. Error: (03/22/2015 09:12:33 PM) (Source: MsiInstaller) (EventID: 11310) (User: Simon-HP) Description: Produkt: Akamai NetSession Interface -- Fehler 1310. Fehler beim Schreiben in die Datei: C:\Users\Simon\AppData\Local\Akamai\admintool.exe. Systemfehler 0. Stellen Sie sicher, dass Sie auf das Verzeichnis zugreifen können. Error: (03/22/2015 07:28:28 PM) (Source: SideBySide) (EventID: 80) (User: ) Description: Fehler beim Generieren des Aktivierungskontexts für "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest1". Fehler in Manifest- oder Richtliniendatei "C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest2" in Zeile C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest3. Eine für die Anwendung erforderliche Komponentenversion steht in Konflikt mit einer anderen, bereits aktiven Komponentenversion. In Konflikt stehende Komponenten:. Komponente 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifest. Komponente 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifest. Error: (03/22/2015 04:12:18 PM) (Source: MsiInstaller) (EventID: 11310) (User: Simon-HP) Description: Produkt: Akamai NetSession Interface -- Fehler 1310. Fehler beim Schreiben in die Datei: C:\Users\Simon\AppData\Local\Akamai\admintool.exe. Systemfehler 0. Stellen Sie sicher, dass Sie auf das Verzeichnis zugreifen können. Error: (03/22/2015 04:11:58 PM) (Source: MsiInstaller) (EventID: 11310) (User: Simon-HP) Description: Produkt: Akamai NetSession Interface -- Fehler 1310. Fehler beim Schreiben in die Datei: C:\Users\Simon\AppData\Local\Akamai\admintool.exe. Systemfehler 0. Stellen Sie sicher, dass Sie auf das Verzeichnis zugreifen können. Error: (03/22/2015 00:05:12 PM) (Source: MsiInstaller) (EventID: 11310) (User: Simon-HP) Description: Produkt: Akamai NetSession Interface -- Fehler 1310. Fehler beim Schreiben in die Datei: C:\Users\Simon\AppData\Local\Akamai\admintool.exe. Systemfehler 0. Stellen Sie sicher, dass Sie auf das Verzeichnis zugreifen können. Error: (03/22/2015 00:04:53 PM) (Source: MsiInstaller) (EventID: 11310) (User: Simon-HP) Description: Produkt: Akamai NetSession Interface -- Fehler 1310. Fehler beim Schreiben in die Datei: C:\Users\Simon\AppData\Local\Akamai\admintool.exe. Systemfehler 0. Stellen Sie sicher, dass Sie auf das Verzeichnis zugreifen können. Error: (03/22/2015 07:06:57 AM) (Source: MsiInstaller) (EventID: 11310) (User: Simon-HP) Description: Produkt: Akamai NetSession Interface -- Fehler 1310. Fehler beim Schreiben in die Datei: C:\Users\Simon\AppData\Local\Akamai\admintool.exe. Systemfehler 0. Stellen Sie sicher, dass Sie auf das Verzeichnis zugreifen können. System errors: ============= Error: (03/23/2015 03:21:24 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "Symantec Eraser Service" wurde aufgrund folgenden Fehlers nicht gestartet: %%2 Error: (03/23/2015 03:20:22 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "Windows Live ID Sign-in Assistant" wurde aufgrund folgenden Fehlers nicht gestartet: %%3 Error: (03/23/2015 03:20:22 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "Autodesk Content Service" wurde aufgrund folgenden Fehlers nicht gestartet: %%109 Error: (03/23/2015 03:20:12 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Dienst "LogMeIn Hamachi Tunneling Engine" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert. Error: (03/23/2015 03:20:12 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Dienst "COMODO Virtual Service Manager" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert. Error: (03/23/2015 03:20:11 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Der Dienst "HP Support Assistant Service" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 60000 Millisekunden durchgeführt: Neustart des Diensts. Error: (03/23/2015 03:20:11 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Der Dienst "Windows Presentation Foundation-Schriftartcache 3.0.0.0" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 0 Millisekunden durchgeführt: Neustart des Diensts. Error: (03/23/2015 03:20:11 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Der Dienst "Windows Search" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 30000 Millisekunden durchgeführt: Neustart des Diensts. Error: (03/23/2015 03:20:11 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Dienst "iPod-Dienst" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert. Error: (03/23/2015 03:20:11 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Der Dienst "Windows Live ID Sign-in Assistant" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 10000 Millisekunden durchgeführt: Neustart des Diensts. Microsoft Office Sessions: ========================= Error: (03/23/2015 02:41:53 PM) (Source: MsiInstaller) (EventID: 11310) (User: Simon-HP) Description: Produkt: Akamai NetSession Interface -- Fehler 1310. Fehler beim Schreiben in die Datei: C:\Users\Simon\AppData\Local\Akamai\admintool.exe. Systemfehler 0. Stellen Sie sicher, dass Sie auf das Verzeichnis zugreifen können.(NULL)(NULL)(NULL)(NULL)(NULL) Error: (03/23/2015 02:41:32 PM) (Source: MsiInstaller) (EventID: 11310) (User: Simon-HP) Description: Produkt: Akamai NetSession Interface -- Fehler 1310. Fehler beim Schreiben in die Datei: C:\Users\Simon\AppData\Local\Akamai\admintool.exe. Systemfehler 0. Stellen Sie sicher, dass Sie auf das Verzeichnis zugreifen können.(NULL)(NULL)(NULL)(NULL)(NULL) Error: (03/22/2015 09:12:52 PM) (Source: MsiInstaller) (EventID: 11310) (User: Simon-HP) Description: Produkt: Akamai NetSession Interface -- Fehler 1310. Fehler beim Schreiben in die Datei: C:\Users\Simon\AppData\Local\Akamai\admintool.exe. Systemfehler 0. Stellen Sie sicher, dass Sie auf das Verzeichnis zugreifen können.(NULL)(NULL)(NULL)(NULL)(NULL) Error: (03/22/2015 09:12:33 PM) (Source: MsiInstaller) (EventID: 11310) (User: Simon-HP) Description: Produkt: Akamai NetSession Interface -- Fehler 1310. Fehler beim Schreiben in die Datei: C:\Users\Simon\AppData\Local\Akamai\admintool.exe. Systemfehler 0. Stellen Sie sicher, dass Sie auf das Verzeichnis zugreifen können.(NULL)(NULL)(NULL)(NULL)(NULL) Error: (03/22/2015 07:28:28 PM) (Source: SideBySide) (EventID: 80) (User: ) Description: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_fa396087175ac9ac.manifestC:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.17514_none_41e6975e2bd6f2b2.manifestC:\Program Files (x86)\ESET\ESET Online Scanner\ESETSmartInstaller.exe Error: (03/22/2015 04:12:18 PM) (Source: MsiInstaller) (EventID: 11310) (User: Simon-HP) Description: Produkt: Akamai NetSession Interface -- Fehler 1310. Fehler beim Schreiben in die Datei: C:\Users\Simon\AppData\Local\Akamai\admintool.exe. Systemfehler 0. Stellen Sie sicher, dass Sie auf das Verzeichnis zugreifen können.(NULL)(NULL)(NULL)(NULL)(NULL) Error: (03/22/2015 04:11:58 PM) (Source: MsiInstaller) (EventID: 11310) (User: Simon-HP) Description: Produkt: Akamai NetSession Interface -- Fehler 1310. Fehler beim Schreiben in die Datei: C:\Users\Simon\AppData\Local\Akamai\admintool.exe. Systemfehler 0. Stellen Sie sicher, dass Sie auf das Verzeichnis zugreifen können.(NULL)(NULL)(NULL)(NULL)(NULL) Error: (03/22/2015 00:05:12 PM) (Source: MsiInstaller) (EventID: 11310) (User: Simon-HP) Description: Produkt: Akamai NetSession Interface -- Fehler 1310. Fehler beim Schreiben in die Datei: C:\Users\Simon\AppData\Local\Akamai\admintool.exe. Systemfehler 0. Stellen Sie sicher, dass Sie auf das Verzeichnis zugreifen können.(NULL)(NULL)(NULL)(NULL)(NULL) Error: (03/22/2015 00:04:53 PM) (Source: MsiInstaller) (EventID: 11310) (User: Simon-HP) Description: Produkt: Akamai NetSession Interface -- Fehler 1310. Fehler beim Schreiben in die Datei: C:\Users\Simon\AppData\Local\Akamai\admintool.exe. Systemfehler 0. Stellen Sie sicher, dass Sie auf das Verzeichnis zugreifen können.(NULL)(NULL)(NULL)(NULL)(NULL) Error: (03/22/2015 07:06:57 AM) (Source: MsiInstaller) (EventID: 11310) (User: Simon-HP) Description: Produkt: Akamai NetSession Interface -- Fehler 1310. Fehler beim Schreiben in die Datei: C:\Users\Simon\AppData\Local\Akamai\admintool.exe. Systemfehler 0. Stellen Sie sicher, dass Sie auf das Verzeichnis zugreifen können.(NULL)(NULL)(NULL)(NULL)(NULL) ==================== Memory info =========================== Processor: AMD A6-3600 APU with Radeon(tm) HD Graphics Percentage of memory in use: 42% Total physical RAM: 8178.82 MB Available physical RAM: 4737.53 MB Total Pagefile: 16355.84 MB Available Pagefile: 12003.86 MB Total Virtual: 8192 MB Available Virtual: 8191.84 MB ==================== Drives ================================ Drive c: (OS) (Fixed) (Total:1830.73 GB) (Free:1497.31 GB) NTFS ==>[System with boot components (obtained from reading drive)] Drive d: (HP_RECOVERY) (Fixed) (Total:12.65 GB) (Free:1.52 GB) NTFS ==>[System with boot components (obtained from reading drive)] Drive e: (Massive-Lernkurs) (CDROM) (Total:0.65 GB) (Free:0 GB) CDFS Drive h: (Volume) (Fixed) (Total:19.53 GB) (Free:6.76 GB) NTFS Drive i: (SEAGATE_PC) (Fixed) (Total:1396.81 GB) (Free:700.11 GB) exFAT ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 1863 GB) (Disk ID: AAA41450) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=1830.7 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=19.5 GB) - (Type=OF Extended) Partition 4: (Not Active) - (Size=12.7 GB) - (Type=07 NTFS) ======================================================== Disk: 2 (Size: 1863 GB) (Disk ID: 8F324A77) Partition 1: (Not Active) - (Size=466.2 GB) - (Type=AF) Partition 2: (Not Active) - (Size=1396.9 GB) - (Type=07 NTFS) ==================== End Of Log ============================ |
23.03.2015, 16:09 | #17 |
/// TB-Ausbilder | Adware eingefangen! Sämtliche Viren/Adware-Scanner finden nichts. Reste entfernen
__________________Drücke bitte die Windowstaste + R Taste und schreibe notepad in das Ausführen Fenster. Kopiere nun folgenden Text aus der Code-Box in das leere Textdokument Code:
ATTFilter start CloseProcesses: HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\tammgF119.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\tammgR119.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\tammgF119.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\tammgR119.sys => ""="Driver" EmptyTemp: end Speichere diese bitte als Fixlist.txt auf deinem Desktop (oder dem Verzeichnis in dem sich FRST befindet).
Die Fixlog von FRST gleich posten, da diese sonst mit DelFix (siehe weiter unten) automatisch entfernt wird! Wenn du keine Probleme mehr mit Malware hast, dann sind wir hier fertig. Deine Logdateien sind sauber. Zum Schluss müssen wir noch ein paar abschließende Schritte unternehmen, um deinen Pc aufzuräumen und abzusichern. Cleanup: (Die Reihenfolge ist hier entscheidend) Falls Defogger verwendet wurde: Erneut starten und auf Re-enable klicken. Falls Combofix verwendet wurde: Combofix deinstallieren
Alle Logs gepostet? Dann lade Dir bitte DelFix herunter.
Hinweis: DelFix entfernt u.a. alle verwendeten Programme, die Quarantäne unserer Scanner, den Java-Cache und löscht sich abschließend selbst. Starte Deinen Rechner abschließend neu. Sollten jetzt noch Programme aus unserer Bereinigung übrig sein, kannst Du diese bedenkenlos löschen. Wenn Du möchtest, kannst Du hier sagen, ob Du mit mir und meiner Hilfe zufrieden warst...und/oder das Forum mit einer kleinen Spende unterstützen. Absicherung: Beim Betriebsystem Windows die automatischen Updates aktivieren. Auch die sicherheitsrelevante Software sollte immer nur in der aktuellsten Version vorliegen: Browser Java Flash-Player PDF-Reader Sicherheitslücken in deren alten Versionen werden dazu ausgenutzt, um beim einfachen Besuch einer manipulierten Website per "Drive-by" Malware zu installieren. Ich empfehle z.B. die Verwendung von Mozilla Firefox statt des Internet Explorers. Zudem lassen sich mit dem Firefox auch PDF-Dokumente öffnen. Aktiviere eine Firewall. Die in Windows integrierte genügt im Normalfall völlig. Verwende ein Antivirusprogramm mit Echtzeitscanner und stets aktueller Signaturendatenbank. Meine Empfehlung: Emsisoft Zusätzlich kannst Du Deinen PC regelmäßig mit Malwarebytes Anti-Malware und ESET scannen. Optional: NoScript verhindert das Ausführen von aktiven Inhalten (Java, JavaScript, Flash,...) für sämtliche Websites. Man kann aber nach dem Prinzip einer Whitelist festlegen, auf welchen Seiten Scripts erlaubt werden sollen. Malwarebytes Anti Exploit: Schützt die Anwendungen des Computers vor der Ausnutzung bekannter Schwachstellen. Lade Software von einem sauberen Portal wie . Wähle beim Installieren von Software immer die benutzerdefinierte Option und entferne den Haken bei allen optional angebotenen Toolbars oder sonstigen, fürs Programm, irrelevanten Ergänzungen. Um Adware wieder los zu werden, empfiehlt sich zunächst die Deinstallation sowie die anschließende Resteentfernung mit Adwcleaner . Abschließend noch ein paar grundsätzliche Bemerkungen: Ändere regelmäßig Deine wichtigen Online-Passwörter und erstelle regelmäßig Backups Deiner wichtigen Dateien oder des Systems. Der Nutzen von Registry-Cleanern, Optimizern usw. zur Performancesteigerung ist umstritten. Ich empfehle deshalb, die Finger von der Registry zu lassen und lieber die windowseigene Datenträgerbereinigung zu verwenden. Hinweis: Bitte gib mir eine kurze Rückmeldung wenn alles erledigt ist und keine Fragen mehr vorhanden sind, so dass ich dieses Thema aus meinen Abos löschen kann. |
23.03.2015, 21:51 | #18 |
| Adware eingefangen! Sämtliche Viren/Adware-Scanner finden nichts. Fixlog:
__________________Code:
ATTFilter Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 11-03-2015 Ran by Simon at 2015-03-23 20:44:36 Run:3 Running from C:\Users\Simon\Desktop Loaded Profiles: Simon (Available profiles: Simon & Gast) Boot Mode: Normal ============================================== Content of fixlist: ***************** start CloseProcesses: HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\tammgF119.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\tammgR119.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\tammgF119.sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\tammgR119.sys => ""="Driver" EmptyTemp: end ***************** Processes closed successfully. "HKLM\System\CurrentControlSet\Control\SafeBoot\Minimal\tammgF119.sys" => Key deleted successfully. "HKLM\System\CurrentControlSet\Control\SafeBoot\Minimal\tammgR119.sys" => Key deleted successfully. "HKLM\System\CurrentControlSet\Control\SafeBoot\Network\tammgF119.sys" => Key deleted successfully. "HKLM\System\CurrentControlSet\Control\SafeBoot\Network\tammgR119.sys" => Key deleted successfully. EmptyTemp: => Removed 376.7 MB temporary data. The system needed a reboot. ==== End of Fixlog 20:44:49 ==== Ok habe alles gemacht und hab keine Fragen mehr, kannst das Thema löschen Danke |
23.03.2015, 23:04 | #19 |
/// TB-Ausbilder | Adware eingefangen! Sämtliche Viren/Adware-Scanner finden nichts. Ich bin froh, dass wir helfen konnten In diesem Forum kannst du eine kurze Rückmeldung zur Bereinigung abgeben, sofern du das möchtest: Lob, Kritik und Wünsche Klicke dazu auf den Button "NEUES THEMA" und poste ein kleines Feedback. Vielen Dank! Dieses Thema scheint erledigt und wird aus meinen Abos gelöscht. Solltest Du das Thema erneut brauchen, schicke mir bitte eine PM. Jeder andere bitte hier klicken und einen eigenen Thread erstellen. |
Themen zu Adware eingefangen! Sämtliche Viren/Adware-Scanner finden nichts. |
ad-aware, cubase, download, explorer, internet, internet explorer, malwarebytes, microsoft, programme, pup.optional.bobyzoom.a, pup.optional.multiplug, pup.optional.zoompic.a, software, win32/adware.1clickdownload.at, win32/adware.speedingupmypc.e, win32/amonetize.w, win32/downloadsponsor.c, win32/packed.scramblewrapper.d, win32/softonicdownloader.e, win32/softonicdownloader.f, win32/softonicdownloader.g, win32/toolbar.conduit.r, win32/toolbar.iminent.j, win32/toolbar.iminent.k, win32/wajam.k, win32/webprefix.b |