|
Plagegeister aller Art und deren Bekämpfung: Kaspersky findet angebliche Trojaner, Malwarebytes und Spybot nichtWindows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
13.08.2015, 21:37 | #1 |
| Kaspersky findet angebliche Trojaner, Malwarebytes und Spybot nicht Mein Problem ist, dass mein Kaspersky heute Abend, vor ein paar Stunden plötzlich angezeigt hat, dass 7 Trojaner entdeckt wurden, Uhrzeit 00:43. War dann natürlich gleich in Panik und habe Malwarebytes und Spybot drüberschauen lassen, aber beide haben nichts gefunden. Die Namen der von Kaspersky gefundenen Trojaner waren "Trojan-Banker.JS.Agent.l" und "Trojan-Banker.JS.Agent.k" und alle 7 warem im Ordner "C:\Documents and Settings\All Users\Kaspersky Lab\SafeBrowser\kis\S-1-5-21-262824916-1322527339-1189251063-1001\FireFox\cache2\entries\ewiglanges Gemisch aus Zahlen+Buchstaben//packed" Dadurch, dass Weder Malwarebytes, noch Spybot diese Trojaner gefunden hat, hab ich aus Panik blöderweise einfach mal bei Kaspersky auf beheben gedrückt und dann wurden irgendwelche Archive gelöscht? Kann es sein, dass es einfach nur Fehlalarme von KIS waren, oder sind das wirklich Trojaner, falls man das mal einfach so sagen kann.. Leider weiß ich nicht wie man LOGs erstellen kann und auch nicht, ob das jetzt überhaupt noch was bringt, da ich die laut KIS schon gelöscht habe.. Bin bisschen überfordert muss ich zugeben, und Trojan-banker klingt schon bisschen böse.. Danke schonmal für die Hilfe :-) |
13.08.2015, 22:16 | #2 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Kaspersky findet angebliche Trojaner, Malwarebytes und Spybot nicht Hallo und
__________________Hast du noch weitere Logs (mit Funden)? Malwarebytes und/oder andere Virenscanner, sind die mal fündig geworden? Ich frage deswegen nach => http://www.trojaner-board.de/125889-...tml#post941520 Bitte keine neuen Virenscans machen sondern erst nur schon vorhandene Logs in CODE-Tags posten! Relevant sind nur Logs der letzten 7 Tage bzw. seitdem das Problem besteht! Zudem bitte auch ein Log mit Farbars Tool machen: Scan mit Farbar's Recovery Scan Tool (FRST) Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST 32-Bit | FRST 64-Bit (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
Lesestoff: Posten in CODE-Tags Die Logfiles anzuhängen oder sogar vorher in ein ZIP, RAR oder 7Z-Archiv zu packen erschwert mir massiv die Arbeit. Auch wenn die Logs für einen Beitrag zu groß sein sollten, bitte ich dich die Logs direkt und notfalls über mehrere Beiträge verteilt zu posten. Um die Logfiles in eine CODE-Box zu stellen gehe so vor:
__________________ |
13.08.2015, 22:39 | #3 |
| Kaspersky findet angebliche Trojaner, Malwarebytes und Spybot nicht Also Malwarebytes hat vor einigen Monaten mal ein potenziel unerwünschtes Program angezeigt, sonst nie was und Kaspersky war auch immer alles ok, aber ich muss zugeben, ich hab schon einige Zeit keine vollständige Untersuchung mehr gemacht, weil das immer recht lange dauert.
__________________Heute Abend hat er mir eben angezeigt, dass er um 00:43 7 Trojaner gefunden hat, daraufhin hab ich den Ordner zweimal untersucht in dem die sein sollen und hatte dann 21 angezeigt. Hier ist mal der FRST Log: Code:
ATTFilter ==================== Prozesse (Nicht auf der Ausnahmeliste) ================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.) (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (Microsoft Corporation) C:\Windows\System32\wlanext.exe (SEIKO EPSON CORPORATION) C:\Program Files (x86)\Common Files\EPSON\EBAPI\eEBSvc.exe (ABBYY) C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\NvXDSync.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\avp.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE (Apple Inc.) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Dritek System Inc.) C:\Program Files (x86)\Launch Manager\dsiwmis.exe (Acer Incorporated) C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe (Dritek System Inc.) C:\Program Files (x86)\Launch Manager\LMutilps32.exe (Acer Incorporated) C:\Program Files (x86)\Acer\Registration\GREGsvc.exe (Acer Incorporated) C:\Program Files\Acer\Acer Updater\UpdaterService.exe (Symantec Corporation) C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe (NTI Corporation) C:\Program Files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe (Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\avpui.exe (CyberLink Corp.) C:\Program Files (x86)\Acer\clear.fi\MVP\clear.fiAgent.exe (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (CyberLink) C:\Program Files (x86)\Acer\clear.fi\MVP\Kernel\DMR\DMREngine.exe (Microsoft Corporation) C:\Windows\System32\GWX\GWX.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe (Microsoft Corporation) C:\Program Files (x86)\Common Files\microsoft shared\Virtualization Handler\CVHSVC.EXE (Dritek System Inc.) C:\Program Files (x86)\Launch Manager\LManager.exe (Renesas Electronics Corporation) C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe (Dritek System Inc.) C:\Program Files (x86)\Launch Manager\MMDx64Fx.exe (Dritek System Inc.) C:\Program Files (x86)\Launch Manager\LMworker.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (Egis Technology Inc.) C:\Program Files\EgisTec IPS\PmmUpdate.exe (Egis Technology Inc.) C:\Program Files\EgisTec IPS\EgisUpdate.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_18_0_0_209.exe (Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_18_0_0_209.exe (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWelcome.exe (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDScan.exe ==================== Registry (Nicht auf der Ausnahmeliste) ================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.) HKLM\...\Run: [IntelTBRunOnce] => wscript.exe //b //nologo "C:\Program Files\Intel\TurboBoost\RunTBGadgetOnce.vbs" HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2280232 2010-07-30] (Synaptics Incorporated) HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [11786344 2011-03-28] (Realtek Semiconductor) HKLM\...\Run: [RtHDVBg] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2207848 2011-03-21] (Realtek Semiconductor) HKLM-x32\...\Run: [LManager] => C:\Program Files (x86)\Launch Manager\LManager.exe [1103440 2011-07-01] (Dritek System Inc.) HKLM-x32\...\Run: [NUSB3MON] => C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe [113288 2010-11-17] (Renesas Electronics Corporation) HKLM-x32\...\Run: [SDTray] => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe [4101576 2014-06-24] (Safer-Networking Ltd.) Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation) Winlogon\Notify\SDWinLogon-x32: SDWinLogon.dll [X] HKU\S-1-5-19\...\RunOnce: [IsMyWinLockerReboot] => msiexec.exe /qn /x{voidguid} HKU\S-1-5-20\...\RunOnce: [IsMyWinLockerReboot] => msiexec.exe /qn /x{voidguid} HKU\S-1-5-21-262824916-1322527339-1189251063-1001\...\Run: [SpybotPostWindows10UpgradeReInstall] => C:\Program Files\Common Files\AV\Spybot - Search and Destroy\Test.exe [1011200 2015-07-28] (Safer-Networking Ltd.) HKU\S-1-5-18\...\RunOnce: [IsMyWinLockerReboot] => msiexec.exe /qn /x{voidguid} AppInit_DLLs: C:\Windows\system32\nvinitx.dll => C:\Windows\system32\nvinitx.dll [226920 2011-03-31] (NVIDIA Corporation) AppInit_DLLs-x32: C:\Windows\SysWOW64\nvinit.dll => C:\Windows\SysWOW64\nvinit.dll [193128 2011-03-31] (NVIDIA Corporation) BootExecute: autocheck autochk * sdnclean64.exe ==================== Internet (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt..) HKU\S-1-5-21-262824916-1322527339-1189251063-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://acer.msn.com HKU\S-1-5-21-262824916-1322527339-1189251063-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://acer.msn.com SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=AARTDF&pc=MAAR&src=IE-SearchBox SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=AARTDF&pc=MAAR&src=IE-SearchBox SearchScopes: HKLM-x32 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=AARTDF&pc=MAAR&src=IE-SearchBox SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=AARTDF&pc=MAAR&src=IE-SearchBox SearchScopes: HKU\S-1-5-21-262824916-1322527339-1189251063-1001 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-262824916-1322527339-1189251063-1001 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = BHO: Content Blocker Plugin -> {03C04F0A-E2A3-4F7F-BA30-BFA06FFD1358} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\x64\IEExt\ie_plugin.dll [2014-11-20] (Kaspersky Lab ZAO) BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2011-03-29] (Microsoft Corp.) BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation) BHO: Virtual Keyboard Plugin -> {B5D5BB14-C8E2-478D-9C97-574AC10AF9E8} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\x64\IEExt\ie_plugin.dll [2014-11-20] (Kaspersky Lab ZAO) BHO: Safe Money Plugin -> {E3D96E85-529D-4269-AC6A-97CF9E2221E3} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\x64\IEExt\ie_plugin.dll [2014-11-20] (Kaspersky Lab ZAO) BHO-x32: Content Blocker Plugin -> {03C04F0A-E2A3-4F7F-BA30-BFA06FFD1358} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\IEExt\ie_plugin.dll [2014-11-20] (Kaspersky Lab ZAO) BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\ssv.dll [2014-10-15] (Oracle Corporation) BHO-x32: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2011-03-29] (Microsoft Corp.) BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation) BHO-x32: Virtual Keyboard Plugin -> {B5D5BB14-C8E2-478D-9C97-574AC10AF9E8} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\IEExt\ie_plugin.dll [2014-11-20] (Kaspersky Lab ZAO) BHO-x32: Bing Bar Helper -> {d2ce3e00-f94a-4740-988e-03dc2f38c34f} -> C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll [2011-06-07] (Microsoft Corporation.) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\jp2ssv.dll [2014-10-15] (Oracle Corporation) BHO-x32: Safe Money Plugin -> {E3D96E85-529D-4269-AC6A-97CF9E2221E3} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\IEExt\ie_plugin.dll [2014-11-20] (Kaspersky Lab ZAO) Toolbar: HKLM-x32 - Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll [2011-06-07] (Microsoft Corporation.) DPF: HKLM-x32 {C3F79A2B-B9B4-4A66-B012-3EE46475B072} hxxp://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab Tcpip\Parameters: [DhcpNameServer] 10.0.0.138 Tcpip\..\Interfaces\{48E83A8E-05AE-477C-9F86-5F34E4C9BDE8}: [DhcpNameServer] 10.0.0.138 FireFox: ======== FF ProfilePath: C:\Users\Kris\AppData\Roaming\Mozilla\Firefox\Profiles\fzohv65g.default FF NetworkProxy: "no_proxies_on", "*.local" FF NetworkProxy: "type", 0 FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_18_0_0_209.dll [2015-07-15] () FF Plugin: @java.com/DTPlugin,version=10.17.2 -> C:\Windows\system32\npDeployJava1.dll [2013-03-18] (Oracle Corporation) FF Plugin: @microsoft.com/GENUINE -> disabled [Keine Datei] FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.40728.0\npctrl.dll [2015-07-28] ( Microsoft Corporation) FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_18_0_0_209.dll [2015-07-15] () FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll [2011-07-29] () FF Plugin-x32: @java.com/DTPlugin,version=11.25.2 -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\dtplugin\npDeployJava1.dll [2014-10-15] (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.25.2 -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\plugin2\npjp2.dll [2014-10-15] (Oracle Corporation) FF Plugin-x32: @kaspersky.com/content_blocker_6418E0D362104DADA084DC312DFA8ABC -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\FFExt\content_blocker@kaspersky.com [2014-11-20] () FF Plugin-x32: @kaspersky.com/online_banking_69A4E213815F42BD863D889007201D82 -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\FFExt\online_banking@kaspersky.com [2014-11-20] () FF Plugin-x32: @kaspersky.com/virtual_keyboard_294FF26A1D5B455495946778FDE7CEDB -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\FFExt\virtual_keyboard@kaspersky.com [2014-11-20] () FF Plugin-x32: @microsoft.com/GENUINE -> disabled [Keine Datei] FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.40728.0\npctrl.dll [2015-07-28] ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~4\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~4\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2012-03-08] (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3538.0513 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2012-03-08] (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3555.0308 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2012-03-08] (Microsoft Corporation) FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 -> C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll [2010-12-08] () FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2013-05-11] (Adobe Systems Inc.) FF user.js: detected! => C:\Users\Kris\AppData\Roaming\Mozilla\Firefox\Profiles\fzohv65g.default\user.js [2014-11-04] FF user.js: detected! => C:\ProgramData\Kaspersky Lab\SafeBrowser\S-1-5-21-262824916-1322527339-1189251063-1001\FireFox\user.js [2014-11-04] FF Extension: Ghostery - C:\Users\Kris\AppData\Roaming\Mozilla\Firefox\Profiles\fzohv65g.default\Extensions\firefox@ghostery.com.xpi [2014-07-08] FF Extension: Adblock Plus - C:\Users\Kris\AppData\Roaming\Mozilla\Firefox\Profiles\fzohv65g.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2014-07-08] FF HKLM-x32\...\Firefox\Extensions: [content_blocker_6418E0D362104DADA084DC312DFA8ABC@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\FFExt\content_blocker@kaspersky.com FF Extension: Dangerous Websites Blocker - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\FFExt\content_blocker@kaspersky.com [2014-11-04] FF HKLM-x32\...\Firefox\Extensions: [virtual_keyboard_294FF26A1D5B455495946778FDE7CEDB@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\FFExt\virtual_keyboard@kaspersky.com FF Extension: Virtual Keyboard - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\FFExt\virtual_keyboard@kaspersky.com [2014-11-04] FF HKLM-x32\...\Firefox\Extensions: [online_banking_69A4E213815F42BD863D889007201D82@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\FFExt\online_banking@kaspersky.com FF Extension: Safe Money - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\FFExt\online_banking@kaspersky.com [2014-11-04] Chrome: ======= CHR HKLM\...\Chrome\Extension: [dbhjdbfgekjfcfkkfjjmlmojhbllhbho] - https://chrome.google.com/webstore/detail/dbhjdbfgekjfcfkkfjjmlmojhbllhbho CHR HKLM-x32\...\Chrome\Extension: [dbhjdbfgekjfcfkkfjjmlmojhbllhbho] - https://chrome.google.com/webstore/detail/dbhjdbfgekjfcfkkfjjmlmojhbllhbho ==================== Dienste (Nicht auf der Ausnahmeliste) ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R2 ABBYY.Licensing.FineReader.Sprint.9.0; C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe [759048 2009-05-14] (ABBYY) R2 AVP15.0.1; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\avp.exe [234520 2014-08-30] (Kaspersky Lab ZAO) R2 EpsonBidirectionalService; C:\Program Files (x86)\Common Files\EPSON\EBAPI\eEBSVC.exe [94208 2006-12-19] (SEIKO EPSON CORPORATION) [Datei ist nicht signiert] S2 MBAMService; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe [1133880 2015-06-18] (Malwarebytes Corporation) R2 NOBU; C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe [2804568 2010-06-02] (Symantec Corporation) R2 NTI IScheduleSvc; C:\Program Files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe [256832 2011-04-24] (NTI Corporation) S3 SandraAgentSrv; C:\Program Files\SiSoftware\SiSoftware Sandra Lite 2012.SP1c\RpcAgentSrv.exe [95896 2009-01-05] (SiSoftware) [Datei ist nicht signiert] R2 SDScannerService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [1738168 2014-06-24] (Safer-Networking Ltd.) R2 SDUpdateService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [2088408 2014-06-27] (Safer-Networking Ltd.) R2 SDWSCService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [171928 2014-04-25] (Safer-Networking Ltd.) R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation) S2 McAfee SiteAdvisor Service; c:\PROGRA~2\mcafee\SITEAD~1\mcsacore.exe [X] ===================== Treiber (Nicht auf der Ausnahmeliste) ========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R0 cm_km_w; C:\Windows\System32\DRIVERS\cm_km_w.sys [238288 2013-01-14] (Kaspersky Lab UK Ltd) R0 kl1; C:\Windows\System32\DRIVERS\kl1.sys [468576 2014-03-31] (Kaspersky Lab ZAO) R2 kldisk; C:\Windows\System32\DRIVERS\kldisk.sys [46144 2014-07-02] (Kaspersky Lab ZAO) R3 klflt; C:\Windows\System32\DRIVERS\klflt.sys [150536 2014-11-20] (Kaspersky Lab ZAO) R1 klhk; C:\Windows\System32\DRIVERS\klhk.sys [246456 2014-08-12] (Kaspersky Lab ZAO) R1 KLIF; C:\Windows\System32\DRIVERS\klif.sys [819896 2015-03-11] (Kaspersky Lab ZAO) R1 KLIM6; C:\Windows\System32\DRIVERS\klim6.sys [30304 2014-02-25] (Kaspersky Lab ZAO) R3 klkbdflt; C:\Windows\System32\DRIVERS\klkbdflt.sys [28768 2014-03-28] (Kaspersky Lab ZAO) R3 klmouflt; C:\Windows\System32\DRIVERS\klmouflt.sys [29280 2013-08-08] (Kaspersky Lab ZAO) R1 klpd; C:\Windows\System32\DRIVERS\klpd.sys [15456 2013-04-12] (Kaspersky Lab ZAO) R1 kltdi; C:\Windows\System32\DRIVERS\kltdi.sys [55872 2014-06-05] (Kaspersky Lab ZAO) R1 Klwtp; C:\Windows\System32\DRIVERS\klwtp.sys [77512 2014-11-20] (Kaspersky Lab ZAO) R1 kneps; C:\Windows\System32\DRIVERS\kneps.sys [179776 2014-07-09] (Kaspersky Lab ZAO) S3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2015-06-18] (Malwarebytes Corporation) S3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [63704 2015-06-18] (Malwarebytes Corporation) S3 ALSysIO; \??\C:\Users\Kris\AppData\Local\Temp\ALSysIO64.sys [X] ==================== NetSvcs (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Ein Monat: Erstellte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2015-08-13 23:28 - 2015-08-13 23:28 - 00020046 _____ C:\Users\Kris\Downloads\FRST.txt 2015-08-13 23:27 - 2015-08-13 23:28 - 00000000 ____D C:\FRST 2015-08-13 23:27 - 2015-08-13 23:27 - 02173952 _____ (Farbar) C:\Users\Kris\Downloads\FRST64.exe 2015-08-13 23:23 - 2015-08-13 23:23 - 00002512 _____ C:\Users\Kris\Documents\KIS.txt 2015-08-13 17:53 - 2015-08-13 17:53 - 00000000 ____D C:\Program Files\Common Files\AV 2015-08-13 17:53 - 2015-07-28 17:52 - 00821920 _____ (Safer-Networking Ltd. ) C:\Users\Public\Desktop\Post Win10 Spybot-install.exe 2015-08-13 17:45 - 2015-08-13 17:45 - 00000000 ____D C:\Windows\System32\Tasks\Safer-Networking 2015-08-13 17:44 - 2015-08-13 19:34 - 00000000 ____D C:\ProgramData\Spybot - Search & Destroy 2015-08-13 17:44 - 2015-08-13 17:52 - 00000000 ____D C:\Program Files (x86)\Spybot - Search & Destroy 2 2015-08-13 17:44 - 2015-08-13 17:44 - 00001395 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot-S&D Start Center.lnk 2015-08-13 17:44 - 2015-08-13 17:44 - 00001383 _____ C:\Users\Public\Desktop\Spybot-S&D Start Center.lnk 2015-08-13 17:44 - 2015-08-13 17:44 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy 2 2015-08-13 17:44 - 2013-09-20 10:49 - 00021040 _____ (Safer Networking Limited) C:\Windows\system32\sdnclean64.exe 2015-08-13 17:36 - 2015-08-13 17:37 - 46525608 _____ (Safer-Networking Ltd. ) C:\Users\Kris\Downloads\spybot-2.4.exe 2015-08-13 10:03 - 2015-08-13 21:41 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2015-08-13 00:54 - 2015-07-30 15:13 - 00124624 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll 2015-08-13 00:54 - 2015-07-30 15:13 - 00103120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll 2015-08-12 10:01 - 2015-07-28 22:09 - 00017344 _____ (Microsoft Corporation) C:\Windows\system32\CompatTelRunner.exe 2015-08-12 10:01 - 2015-07-28 22:05 - 01116672 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll 2015-08-12 10:01 - 2015-07-28 22:05 - 00774656 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll 2015-08-12 10:01 - 2015-07-28 22:05 - 00743424 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll 2015-08-12 10:01 - 2015-07-28 22:05 - 00437760 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll 2015-08-12 10:01 - 2015-07-28 22:05 - 00227328 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll 2015-08-12 10:01 - 2015-07-28 22:05 - 00069120 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll 2015-08-12 10:01 - 2015-07-28 21:55 - 01148416 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll 2015-08-12 10:01 - 2015-07-21 02:39 - 00389840 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2015-08-12 10:01 - 2015-07-21 02:12 - 00342736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2015-08-12 10:01 - 2015-07-16 23:14 - 25192448 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2015-08-12 10:01 - 2015-07-16 22:54 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2015-08-12 10:01 - 2015-07-16 22:54 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2015-08-12 10:01 - 2015-07-16 22:37 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2015-08-12 10:01 - 2015-07-16 22:36 - 00584192 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2015-08-12 10:01 - 2015-07-16 22:36 - 00417792 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2015-08-12 10:01 - 2015-07-16 22:36 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2015-08-12 10:01 - 2015-07-16 22:35 - 02885632 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2015-08-12 10:01 - 2015-07-16 22:35 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2015-08-12 10:01 - 2015-07-16 22:27 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2015-08-12 10:01 - 2015-07-16 22:26 - 05923328 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2015-08-12 10:01 - 2015-07-16 22:26 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2015-08-12 10:01 - 2015-07-16 22:23 - 00615936 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2015-08-12 10:01 - 2015-07-16 22:21 - 00816640 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2015-08-12 10:01 - 2015-07-16 22:21 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2015-08-12 10:01 - 2015-07-16 22:21 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2015-08-12 10:01 - 2015-07-16 22:21 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2015-08-12 10:01 - 2015-07-16 22:20 - 19870208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2015-08-12 10:01 - 2015-07-16 22:12 - 00968704 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2015-08-12 10:01 - 2015-07-16 22:08 - 00490496 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2015-08-12 10:01 - 2015-07-16 22:06 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2015-08-12 10:01 - 2015-07-16 22:00 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2015-08-12 10:01 - 2015-07-16 21:55 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2015-08-12 10:01 - 2015-07-16 21:54 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2015-08-12 10:01 - 2015-07-16 21:51 - 00504320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2015-08-12 10:01 - 2015-07-16 21:51 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2015-08-12 10:01 - 2015-07-16 21:51 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2015-08-12 10:01 - 2015-07-16 21:50 - 00341504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2015-08-12 10:01 - 2015-07-16 21:50 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2015-08-12 10:01 - 2015-07-16 21:49 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2015-08-12 10:01 - 2015-07-16 21:45 - 02279424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2015-08-12 10:01 - 2015-07-16 21:43 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2015-08-12 10:01 - 2015-07-16 21:43 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2015-08-12 10:01 - 2015-07-16 21:41 - 00479232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2015-08-12 10:01 - 2015-07-16 21:39 - 00664064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2015-08-12 10:01 - 2015-07-16 21:39 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2015-08-12 10:01 - 2015-07-16 21:38 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2015-08-12 10:01 - 2015-07-16 21:36 - 00801280 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2015-08-12 10:01 - 2015-07-16 21:35 - 00720384 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2015-08-12 10:01 - 2015-07-16 21:34 - 14451200 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2015-08-12 10:01 - 2015-07-16 21:33 - 01359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2015-08-12 10:01 - 2015-07-16 21:32 - 02125824 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2015-08-12 10:01 - 2015-07-16 21:29 - 00418304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2015-08-12 10:01 - 2015-07-16 21:24 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2015-08-12 10:01 - 2015-07-16 21:20 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2015-08-12 10:01 - 2015-07-16 21:19 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2015-08-12 10:01 - 2015-07-16 21:17 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2015-08-12 10:01 - 2015-07-16 21:12 - 04520448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2015-08-12 10:01 - 2015-07-16 21:12 - 02427904 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2015-08-12 10:01 - 2015-07-16 21:10 - 12856832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2015-08-12 10:01 - 2015-07-16 21:06 - 02052608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2015-08-12 10:01 - 2015-07-16 21:06 - 00689152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2015-08-12 10:01 - 2015-07-16 21:05 - 01155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2015-08-12 10:01 - 2015-07-16 21:01 - 01545728 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2015-08-12 10:01 - 2015-07-16 20:49 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2015-08-12 10:01 - 2015-07-16 20:42 - 01951232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2015-08-12 10:01 - 2015-07-16 20:38 - 01310720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2015-08-12 10:01 - 2015-07-16 20:37 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2015-08-12 10:01 - 2015-07-15 20:15 - 05568960 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe 2015-08-12 10:01 - 2015-07-15 20:15 - 00155584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys 2015-08-12 10:01 - 2015-07-15 20:15 - 00095680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys 2015-08-12 10:01 - 2015-07-15 20:15 - 00094656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mountmgr.sys 2015-08-12 10:01 - 2015-07-15 20:12 - 01730496 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll 2015-08-12 10:01 - 2015-07-15 20:11 - 00362496 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll 2015-08-12 10:01 - 2015-07-15 20:11 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll 2015-08-12 10:01 - 2015-07-15 20:11 - 00215040 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll 2015-08-12 10:01 - 2015-07-15 20:11 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll 2015-08-12 10:01 - 2015-07-15 20:11 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll 2015-08-12 10:01 - 2015-07-15 20:10 - 01743360 _____ (Microsoft Corporation) C:\Windows\system32\sysmain.dll 2015-08-12 10:01 - 2015-07-15 20:10 - 01461760 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2015-08-12 10:01 - 2015-07-15 20:10 - 01216512 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll 2015-08-12 10:01 - 2015-07-15 20:10 - 01163264 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll 2015-08-12 10:01 - 2015-07-15 20:10 - 00729088 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll 2015-08-12 10:01 - 2015-07-15 20:10 - 00503808 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll 2015-08-12 10:01 - 2015-07-15 20:10 - 00424960 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll 2015-08-12 10:01 - 2015-07-15 20:10 - 00342016 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll 2015-08-12 10:01 - 2015-07-15 20:10 - 00315392 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll 2015-08-12 10:01 - 2015-07-15 20:10 - 00309760 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll 2015-08-12 10:01 - 2015-07-15 20:10 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe 2015-08-12 10:01 - 2015-07-15 20:10 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll 2015-08-12 10:01 - 2015-07-15 20:10 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe 2015-08-12 10:01 - 2015-07-15 20:10 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll 2015-08-12 10:01 - 2015-07-15 20:10 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll 2015-08-12 10:01 - 2015-07-15 20:10 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\cryptbase.dll 2015-08-12 10:01 - 2015-07-15 20:10 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll 2015-08-12 10:01 - 2015-07-15 20:10 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe 2015-08-12 10:01 - 2015-07-15 20:10 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll 2015-08-12 10:01 - 2015-07-15 20:10 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll 2015-08-12 10:01 - 2015-07-15 20:10 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll 2015-08-12 10:01 - 2015-07-15 20:10 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll 2015-08-12 10:01 - 2015-07-15 20:10 - 00011264 _____ (Microsoft Corporation) C:\Windows\system32\msmmsp.dll 2015-08-12 10:01 - 2015-07-15 20:09 - 00338432 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe 2015-08-12 10:01 - 2015-07-15 20:09 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe 2015-08-12 10:01 - 2015-07-15 20:05 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll 2015-08-12 10:01 - 2015-07-15 20:05 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll 2015-08-12 10:01 - 2015-07-15 20:00 - 00686080 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll 2015-08-12 10:01 - 2015-07-15 20:00 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll 2015-08-12 10:01 - 2015-07-15 20:00 - 00006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 20:00 - 00005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 20:00 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 20:00 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 20:00 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 20:00 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 20:00 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 20:00 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 20:00 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 20:00 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 20:00 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 20:00 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 20:00 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 20:00 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 20:00 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 20:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 20:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 20:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 20:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 20:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 20:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 20:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 20:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 20:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 20:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 20:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 20:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 20:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 19:59 - 03989952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe 2015-08-12 10:01 - 2015-07-15 19:59 - 03934656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe 2015-08-12 10:01 - 2015-07-15 19:56 - 01311768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll 2015-08-12 10:01 - 2015-07-15 19:55 - 00248832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll 2015-08-12 10:01 - 2015-07-15 19:55 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll 2015-08-12 10:01 - 2015-07-15 19:55 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll 2015-08-12 10:01 - 2015-07-15 19:55 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll 2015-08-12 10:01 - 2015-07-15 19:55 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll 2015-08-12 10:01 - 2015-07-15 19:54 - 00552960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll 2015-08-12 10:01 - 2015-07-15 19:54 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll 2015-08-12 10:01 - 2015-07-15 19:54 - 00221184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll 2015-08-12 10:01 - 2015-07-15 19:54 - 00036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptbase.dll 2015-08-12 10:01 - 2015-07-15 19:54 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe 2015-08-12 10:01 - 2015-07-15 19:54 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll 2015-08-12 10:01 - 2015-07-15 19:54 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll 2015-08-12 10:01 - 2015-07-15 19:53 - 01114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll 2015-08-12 10:01 - 2015-07-15 19:53 - 00665088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll 2015-08-12 10:01 - 2015-07-15 19:53 - 00274944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll 2015-08-12 10:01 - 2015-07-15 19:53 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll 2015-08-12 10:01 - 2015-07-15 19:53 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\auditpol.exe 2015-08-12 10:01 - 2015-07-15 19:53 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll 2015-08-12 10:01 - 2015-07-15 19:49 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msobjs.dll 2015-08-12 10:01 - 2015-07-15 19:48 - 00146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll 2015-08-12 10:01 - 2015-07-15 19:44 - 00686080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll 2015-08-12 10:01 - 2015-07-15 19:44 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll 2015-08-12 10:01 - 2015-07-15 19:44 - 00005120 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 19:44 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 19:44 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 19:44 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 19:44 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 19:44 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 19:44 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 19:44 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 19:44 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 19:44 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 19:44 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 19:44 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 19:44 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 19:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 19:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 19:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 19:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 19:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 19:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 19:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 19:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 19:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 19:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 19:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 18:46 - 00290816 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys 2015-08-12 10:01 - 2015-07-15 18:46 - 00159232 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys 2015-08-12 10:01 - 2015-07-15 18:46 - 00129024 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys 2015-08-12 10:01 - 2015-07-15 18:37 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe 2015-08-12 10:01 - 2015-07-15 18:37 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe 2015-08-12 10:01 - 2015-07-15 18:34 - 00006144 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 18:34 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 18:34 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 18:34 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 05:19 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\basesrv.dll 2015-08-12 10:01 - 2015-07-10 19:51 - 03722752 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll 2015-08-12 10:01 - 2015-07-10 19:51 - 00158720 _____ (Microsoft Corporation) C:\Windows\system32\aaclient.dll 2015-08-12 10:01 - 2015-07-10 19:51 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll 2015-08-12 10:01 - 2015-07-10 19:34 - 03221504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll 2015-08-12 10:01 - 2015-07-10 19:34 - 00036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll 2015-08-12 10:01 - 2015-07-10 19:33 - 00131584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aaclient.dll 2015-08-12 10:00 - 2015-07-30 20:06 - 02565120 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll 2015-08-12 10:00 - 2015-07-30 20:06 - 01648128 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll 2015-08-12 10:00 - 2015-07-30 20:06 - 01180160 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll 2015-08-12 10:00 - 2015-07-30 20:06 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll 2015-08-12 10:00 - 2015-07-30 20:06 - 00046080 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll 2015-08-12 10:00 - 2015-07-30 20:06 - 00041984 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll 2015-08-12 10:00 - 2015-07-30 20:06 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll 2015-08-12 10:00 - 2015-07-30 19:57 - 01987584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll 2015-08-12 10:00 - 2015-07-30 19:57 - 01251328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll 2015-08-12 10:00 - 2015-07-30 19:57 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll 2015-08-12 10:00 - 2015-07-30 19:57 - 00034304 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll 2015-08-12 10:00 - 2015-07-30 19:57 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll 2015-08-12 10:00 - 2015-07-30 19:55 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll 2015-08-12 10:00 - 2015-07-30 18:56 - 03208192 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2015-08-12 10:00 - 2015-07-30 18:52 - 00372736 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll 2015-08-12 10:00 - 2015-07-30 18:49 - 00299520 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll 2015-08-12 10:00 - 2015-07-20 20:12 - 03154944 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll 2015-08-12 10:00 - 2015-07-20 20:12 - 02606080 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll 2015-08-12 10:00 - 2015-07-20 20:12 - 00696320 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll 2015-08-12 10:00 - 2015-07-20 20:12 - 00192000 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll 2015-08-12 10:00 - 2015-07-20 20:12 - 00139776 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe 2015-08-12 10:00 - 2015-07-20 20:12 - 00098304 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll 2015-08-12 10:00 - 2015-07-20 20:12 - 00091136 _____ (Microsoft Corporation) C:\Windows\system32\WinSetupUI.dll 2015-08-12 10:00 - 2015-07-20 20:12 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll 2015-08-12 10:00 - 2015-07-20 20:12 - 00037376 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe 2015-08-12 10:00 - 2015-07-20 20:12 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll 2015-08-12 10:00 - 2015-07-20 20:12 - 00012288 _____ (Microsoft Corporation) C:\Windows\system32\wu.upgrade.ps.dll 2015-08-12 10:00 - 2015-07-20 19:56 - 00566784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll 2015-08-12 10:00 - 2015-07-20 19:56 - 00173056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll 2015-08-12 10:00 - 2015-07-20 19:56 - 00093184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll 2015-08-12 10:00 - 2015-07-20 19:56 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe 2015-08-12 10:00 - 2015-07-20 19:56 - 00030208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll 2015-08-12 10:00 - 2015-07-15 05:19 - 02004992 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll 2015-08-12 10:00 - 2015-07-15 05:19 - 01887232 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll 2015-08-12 10:00 - 2015-07-15 05:14 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml6r.dll 2015-08-12 10:00 - 2015-07-15 05:13 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll 2015-08-12 10:00 - 2015-07-15 04:55 - 01390592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll 2015-08-12 10:00 - 2015-07-15 04:55 - 01241088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll 2015-08-12 10:00 - 2015-07-15 04:51 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6r.dll 2015-08-12 10:00 - 2015-07-15 04:51 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll 2015-08-12 10:00 - 2015-07-10 19:51 - 14177280 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll 2015-08-12 10:00 - 2015-07-10 19:34 - 12875776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll 2015-08-12 10:00 - 2015-07-09 19:57 - 00193536 _____ (Microsoft Corporation) C:\Windows\system32\notepad.exe 2015-08-12 10:00 - 2015-07-09 19:57 - 00193536 _____ (Microsoft Corporation) C:\Windows\notepad.exe 2015-08-12 10:00 - 2015-07-09 19:42 - 00179712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\notepad.exe 2015-08-12 10:00 - 2015-07-01 22:49 - 00260096 _____ (Microsoft Corporation) C:\Windows\system32\WebClnt.dll 2015-08-12 10:00 - 2015-07-01 22:48 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\davclnt.dll 2015-08-12 10:00 - 2015-07-01 22:30 - 00206848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WebClnt.dll 2015-08-12 10:00 - 2015-07-01 22:30 - 00082432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\davclnt.dll 2015-08-12 10:00 - 2015-05-09 20:26 - 00493504 _____ (Microsoft Corporation) C:\Windows\system32\mcupdate_GenuineIntel.dll 2015-07-30 08:14 - 2015-07-30 08:14 - 00270416 _____ C:\Windows\Minidump\073015-21824-01.dmp 2015-07-17 21:20 - 2015-07-17 21:20 - 00270416 _____ C:\Windows\Minidump\071715-43181-01.dmp 2015-07-15 18:05 - 2015-06-17 19:47 - 00404992 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll 2015-07-15 18:05 - 2015-06-17 19:37 - 00312320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll 2015-07-15 18:05 - 2015-06-02 02:07 - 00254976 _____ (Microsoft Corporation) C:\Windows\system32\cewmdm.dll 2015-07-15 18:05 - 2015-06-02 01:47 - 00210432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cewmdm.dll 2015-07-15 18:03 - 2015-07-04 20:07 - 02087424 _____ (Microsoft Corporation) C:\Windows\system32\ole32.dll 2015-07-15 18:03 - 2015-07-04 19:48 - 01414656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ole32.dll 2015-07-15 18:03 - 2015-06-15 23:50 - 00112064 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe 2015-07-15 18:03 - 2015-06-15 23:45 - 03242496 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll 2015-07-15 18:03 - 2015-06-15 23:45 - 01941504 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll 2015-07-15 18:03 - 2015-06-15 23:45 - 00504320 _____ (Microsoft Corporation) C:\Windows\system32\msihnd.dll 2015-07-15 18:03 - 2015-06-15 23:45 - 00070656 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll 2015-07-15 18:03 - 2015-06-15 23:44 - 00128000 _____ (Microsoft Corporation) C:\Windows\system32\msiexec.exe 2015-07-15 18:03 - 2015-06-15 23:43 - 02364416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll 2015-07-15 18:03 - 2015-06-15 23:43 - 01805824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll 2015-07-15 18:03 - 2015-06-15 23:43 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msihnd.dll 2015-07-15 18:03 - 2015-06-15 23:42 - 00073216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msiexec.exe 2015-07-15 18:03 - 2015-06-15 23:42 - 00025088 _____ (Microsoft Corporation) C:\Windows\system32\msimsg.dll 2015-07-15 18:03 - 2015-06-15 23:37 - 00025088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msimsg.dll 2015-07-15 18:03 - 2015-04-27 21:23 - 01480192 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll 2015-07-15 18:03 - 2015-04-27 21:23 - 00229376 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll 2015-07-15 18:03 - 2015-04-27 21:23 - 00188416 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll 2015-07-15 18:03 - 2015-04-27 21:23 - 00140288 _____ (Microsoft Corporation) C:\Windows\system32\cryptnet.dll 2015-07-15 18:03 - 2015-04-27 21:05 - 00179200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll 2015-07-15 18:03 - 2015-04-27 21:04 - 01174528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll 2015-07-15 18:03 - 2015-04-27 21:04 - 00143872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptsvc.dll 2015-07-15 18:03 - 2015-04-27 21:04 - 00103936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptnet.dll ==================== Ein Monat: Geänderte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2015-08-13 23:21 - 2012-01-02 21:10 - 00000000 ____D C:\ProgramData\Kaspersky Lab 2015-08-13 23:12 - 2011-09-10 21:46 - 01943362 _____ C:\Windows\WindowsUpdate.log 2015-08-13 21:53 - 2009-07-14 06:45 - 00024608 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2015-08-13 21:53 - 2009-07-14 06:45 - 00024608 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2015-08-13 21:50 - 2014-08-10 01:25 - 00113880 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2015-08-13 21:49 - 2014-08-10 01:25 - 00001106 _____ C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2015-08-13 21:49 - 2014-08-10 01:25 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 2015-08-13 21:49 - 2014-08-10 01:25 - 00000000 ____D C:\Program Files (x86)\ Malwarebytes Anti-Malware 2015-08-13 21:43 - 2012-01-02 21:02 - 00000000 ____D C:\ProgramData\clear.fi 2015-08-13 21:42 - 2009-07-14 07:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2015-08-13 21:42 - 2009-07-14 06:51 - 00169515 _____ C:\Windows\setupact.log 2015-08-13 21:41 - 2012-05-25 22:02 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2015-08-13 21:41 - 2010-11-21 05:47 - 00209606 _____ C:\Windows\PFRO.log 2015-08-13 20:21 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\rescache 2015-08-13 17:03 - 2015-05-16 20:24 - 00001177 _____ C:\Windows\wininit.ini 2015-08-13 10:02 - 2012-03-15 18:30 - 00000000 ___RD C:\Users\Kris\Podcasts 2015-08-13 10:01 - 2009-07-14 06:45 - 00412736 _____ C:\Windows\system32\FNTCACHE.DAT 2015-08-13 09:59 - 2015-04-17 09:13 - 00000000 ____D C:\Windows\system32\appraiser 2015-08-13 09:59 - 2014-05-06 16:42 - 00000000 ___SD C:\Windows\system32\CompatTel 2015-08-13 00:54 - 2013-03-15 00:21 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight 2015-08-13 00:53 - 2013-03-15 00:21 - 00000000 ____D C:\Program Files\Microsoft Silverlight 2015-08-13 00:53 - 2013-03-15 00:21 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight 2015-08-13 00:50 - 2012-01-25 20:48 - 00000000 ____D C:\ProgramData\Microsoft Help 2015-08-13 00:45 - 2009-07-14 04:34 - 00000510 _____ C:\Windows\win.ini 2015-08-13 00:42 - 2013-08-09 15:49 - 00000000 ____D C:\Windows\system32\MRT 2015-08-13 00:24 - 2012-01-07 03:35 - 132483416 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2015-08-12 19:58 - 2012-01-25 21:36 - 00000000 ____D C:\Users\Kris\Documents\Outlook-Dateien 2015-08-03 23:22 - 2012-01-02 23:27 - 00000000 ____D C:\Users\Kris\Documents\Songtexte 2015-08-02 12:32 - 2015-07-10 19:28 - 00000000 ___HD C:\$Windows.~BT 2015-08-02 12:09 - 2007-07-12 03:49 - 00000000 ____D C:\Windows\Panther 2015-07-30 08:14 - 2012-09-23 18:56 - 642822074 _____ C:\Windows\MEMORY.DMP 2015-07-30 08:14 - 2012-09-23 18:56 - 00000000 ____D C:\Windows\Minidump 2015-07-25 09:44 - 2015-04-05 00:20 - 00000000 ___SD C:\Windows\system32\GWX 2015-07-20 11:00 - 2009-07-14 07:08 - 00032640 _____ C:\Windows\Tasks\SCHEDLGU.TXT 2015-07-16 22:39 - 2015-04-05 00:20 - 00000000 ___SD C:\Windows\SysWOW64\GWX 2015-07-16 09:43 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\PolicyDefinitions 2015-07-15 22:08 - 2013-03-18 22:35 - 00778416 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2015-07-15 22:08 - 2011-08-12 10:54 - 00142512 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2015-07-15 22:07 - 2014-08-31 16:56 - 00000000 ____D C:\Users\Kris\AppData\Local\Adobe ==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse ======= 2012-01-19 21:50 - 2012-01-19 22:37 - 11407360 _____ () C:\Users\Kris\AppData\Roaming\Sandra.mdb 2012-01-09 23:45 - 2014-08-20 01:04 - 0007610 _____ () C:\Users\Kris\AppData\Local\resmon.resmoncfg 2012-01-02 21:11 - 2012-01-02 21:11 - 0017408 _____ () C:\Users\Kris\AppData\Local\WebpageIcons.db 2011-09-10 22:11 - 2011-09-10 22:13 - 0015230 _____ () C:\ProgramData\ArcadeDeluxe5.log Dateien, die verschoben oder gelöscht werden sollten: ==================== C:\Users\Kris\backup_428660531.bat Einige Dateien in TEMP: ==================== C:\Users\Kris\AppData\Local\Temp\CmdLineExt02.dll C:\Users\Kris\AppData\Local\Temp\drm_dialogs.dll C:\Users\Kris\AppData\Local\Temp\drm_dyndata_7330017.dll C:\Users\Kris\AppData\Local\Temp\firefoxjre_exe-1.exe C:\Users\Kris\AppData\Local\Temp\firefoxjre_exe-2.exe C:\Users\Kris\AppData\Local\Temp\firefoxjre_exe.exe C:\Users\Kris\AppData\Local\Temp\incredibar_installer.exe C:\Users\Kris\AppData\Local\Temp\jre-7u17-windows-i586-iftw.exe C:\Users\Kris\AppData\Local\Temp\jre-7u7-windows-i586-iftw.exe C:\Users\Kris\AppData\Local\Temp\sfamcc00001.dll C:\Users\Kris\AppData\Local\Temp\sfamcc00002.dll C:\Users\Kris\AppData\Local\Temp\sfextra.dll C:\Users\Kris\AppData\Local\Temp\SIntf16.dll C:\Users\Kris\AppData\Local\Temp\SIntf32.dll C:\Users\Kris\AppData\Local\Temp\SIntfNT.dll C:\Users\Kris\AppData\Local\Temp\_is28E6.exe C:\Users\Kris\AppData\Local\Temp\_isD233.exe ==================== Bamital & volsnap ================= (Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.) C:\Windows\system32\winlogon.exe => Datei ist digital signiert C:\Windows\system32\wininit.exe => Datei ist digital signiert C:\Windows\SysWOW64\wininit.exe => Datei ist digital signiert C:\Windows\explorer.exe => Datei ist digital signiert C:\Windows\SysWOW64\explorer.exe => Datei ist digital signiert C:\Windows\system32\svchost.exe => Datei ist digital signiert C:\Windows\SysWOW64\svchost.exe => Datei ist digital signiert C:\Windows\system32\services.exe => Datei ist digital signiert C:\Windows\system32\User32.dll => Datei ist digital signiert C:\Windows\SysWOW64\User32.dll => Datei ist digital signiert C:\Windows\system32\userinit.exe => Datei ist digital signiert C:\Windows\SysWOW64\userinit.exe => Datei ist digital signiert C:\Windows\system32\rpcss.dll => Datei ist digital signiert C:\Windows\system32\dnsapi.dll => Datei ist digital signiert C:\Windows\SysWOW64\dnsapi.dll => Datei ist digital signiert C:\Windows\system32\Drivers\volsnap.sys => Datei ist digital signiert LastRegBack: 2015-08-12 11:02 ==================== Ende von Ergebnis ============================ Code:
ATTFilter ==================== Konten: ============================= Administrator (S-1-5-21-262824916-1322527339-1189251063-500 - Administrator - Disabled) Gast (S-1-5-21-262824916-1322527339-1189251063-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-262824916-1322527339-1189251063-1003 - Limited - Enabled) Kris (S-1-5-21-262824916-1322527339-1189251063-1001 - Administrator - Enabled) => C:\Users\Kris UpdatusUser (S-1-5-21-262824916-1322527339-1189251063-1000 - Limited - Enabled) => C:\Users\UpdatusUser ==================== Sicherheits-Center ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.) AV: Kaspersky Internet Security (Enabled - Up to date) {179979E8-273D-D14E-0543-2861940E4886} AS: Kaspersky Internet Security (Enabled - Up to date) {ACF8980C-0107-DEC0-3FF3-1313EF89023B} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Spybot - Search and Destroy (Enabled - Up to date) {9BC38DF1-3CCA-732D-A930-C1CA5F20A4B0} FW: Kaspersky Internet Security (Enabled) {2FA2F8CD-6D52-D016-2E1C-81546ADD0FFD} ==================== Installierte Programme ====================== (Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.) ABBYY FineReader 9.0 Sprint (HKLM-x32\...\ABBYY FineReader 9.0 Sprint) (Version: 9.01.513.58212 - ABBYY) ABBYY FineReader 9.0 Sprint (x32 Version: 9.01.513.58212 - ABBYY) Hidden Acer Backup Manager (HKLM-x32\...\InstallShield_{0B61BBD5-DA3C-409A-8730-0C3DC3B0F270}) (Version: 3.0.0.99 - NTI Corporation) Acer Crystal Eye Webcam (HKLM-x32\...\InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}) (Version: 1.0.1904 - CyberLink Corp.) Acer Crystal Eye Webcam (x32 Version: 1.0.1904 - CyberLink Corp.) Hidden Acer ePower Management (HKLM-x32\...\{3DB0448D-AD82-4923-B305-D001E521A964}) (Version: 6.00.3008 - Acer Incorporated) Acer eRecovery Management (HKLM-x32\...\{7F811A54-5A09-4579-90E1-C93498E230D9}) (Version: 5.00.3502 - Acer Incorporated) Acer Games (HKLM-x32\...\WildTangent acer Master Uninstall) (Version: 1.0.2.5 - WildTangent) Acer Registration (HKLM-x32\...\Acer Registration) (Version: 1.04.3503 - Acer Incorporated) Acer ScreenSaver (HKLM-x32\...\Acer Screensaver) (Version: 1.1.0519.2011 - Acer Incorporated) Acer Updater (HKLM-x32\...\{EE171732-BEB4-4576-887D-CB62727F01CA}) (Version: 1.02.3500 - Acer Incorporated) ActiveX контрола на Windows Live Mesh за отдалечени връзки (HKLM-x32\...\{B3BA4D1C-23EF-4859-9C11-1B2CCB7FADBB}) (Version: 15.4.5722.2 - Microsoft Corporation) ActiveX-kontroll för fjärranslutningar för Windows Live Mesh (HKLM-x32\...\{376D59B1-42D9-4FA2-B6CC-E346B6BE14F5}) (Version: 15.4.5722.2 - Microsoft Corporation) Adobe Flash Player 14 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 14.0.0.145 - Adobe Systems Incorporated) Adobe Flash Player 18 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 18.0.0.209 - Adobe Systems Incorporated) Adobe Reader XI (11.0.03) - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AB0000000001}) (Version: 11.0.03 - Adobe Systems Incorporated) Agatha Christie - Death on the Nile (x32 Version: 2.2.0.98 - WildTangent) Hidden Amazon Kindle (HKU\S-1-5-21-262824916-1322527339-1189251063-1001\...\Amazon Kindle) (Version: - Amazon) Amazon Music (HKU\S-1-5-21-262824916-1322527339-1189251063-1001\...\Amazon Amazon Music) (Version: 3.0.0.564 - Amazon Services LLC) ANNO 1503 (HKLM-x32\...\{EBBB1DEF-8878-4CB8-BC0D-1196B30E7527}) (Version: - ) Apple Application Support (HKLM-x32\...\{46F044A5-CE8B-4196-984E-5BD6525E361D}) (Version: 2.3.6 - Apple Inc.) Apple Mobile Device Support (HKLM\...\{439760BC-7737-4386-9B1D-A90A3E8A22EA}) (Version: 3.4.1.2 - Apple Inc.) Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.) Backup Manager V3 (x32 Version: 3.0.0.99 - NTI Corporation) Hidden Bejeweled 2 Deluxe (x32 Version: 2.2.0.95 - WildTangent) Hidden Bing Bar (HKLM-x32\...\{C28D96C0-6A90-459E-A077-A6706F4EC0FC}) (Version: 7.0.765.0 - Microsoft Corporation) Bonjour (HKLM\...\{CA0D2F09-F811-48D4-843E-C87696C6A9D9}) (Version: 3.0.0.2 - Apple Inc.) Broadcom Card Reader Driver Installer (HKLM\...\{4710662C-8204-4334-A977-B1AC9E547819}) (Version: 14.8.2.2 - Broadcom Corporation) Broadcom NetLink Controller (HKLM\...\{C91DCB72-F5BB-410D-A91A-314F5D1B4284}) (Version: 14.8.4.1 - Broadcom Corporation) Chuzzle Deluxe (x32 Version: 2.2.0.95 - WildTangent) Hidden clear.fi (HKLM-x32\...\InstallShield_{2637C347-9DAD-11D6-9EA2-00055D0CA761}) (Version: 1.0.1720.00 - CyberLink Corp.) clear.fi (x32 Version: 1.0.1517_36458 - CyberLink Corp.) Hidden clear.fi (x32 Version: 1.0.1720.00 - CyberLink Corp.) Hidden clear.fi (x32 Version: 9.0.7709 - CyberLink Corp.) Hidden clear.fi Client (HKLM-x32\...\{43AAE145-83CF-4C96-9A5E-756CEFCE879F}) (Version: 1.00.3500 - Acer Incorporated) Control ActiveX de Windows Live Mesh para conexiones remotas (HKLM-x32\...\{04668DF2-D32F-4555-9C7E-35523DCD6544}) (Version: 15.4.5722.2 - Microsoft Corporation) Control ActiveX del Windows Live Mesh per a connexions remotes (HKLM-x32\...\{76C064E2-BB99-4453-8FDA-42BC01AD0734}) (Version: 15.4.5722.2 - Microsoft Corporation) Control ActiveX Windows Live Mesh pentru conexiuni la distanță (HKLM-x32\...\{260E3D78-94E6-47EC-8E29-46301572BB1E}) (Version: 15.4.5722.2 - Microsoft Corporation) Controle ActiveX do Windows Live Mesh para Conexões Remotas (HKLM-x32\...\{39B3184E-0BFB-40FA-ADDC-E7E2D535CDA9}) (Version: 15.4.5722.2 - Microsoft Corporation) Contrôle ActiveX Windows Live Mesh pour connexions à distance (HKLM-x32\...\{55D003F4-9599-44BF-BA9E-95D060730DD3}) (Version: 15.4.5722.2 - Microsoft Corporation) Controlo ActiveX do Windows Live Mesh para Ligações Remotas (HKLM-x32\...\{E54EEB5D-41ED-40FE-B4A8-8565DB81469B}) (Version: 15.4.5722.2 - Microsoft Corporation) Crazy Chicken Kart 2 (x32 Version: 2.2.0.97 - WildTangent) Hidden D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden Dolby Advanced Audio v2 (HKLM-x32\...\{B9E70C7A-9F85-4A39-A4A3-BFA3C3BF7613}) (Version: 7.2.7000.4 - Dolby Laboratories Inc) DriveImage XML (Private Edition) (HKLM-x32\...\{F7E1CA14-B39D-452A-960B-39423DDDD933}) (Version: 2.50.000 - Runtime Software) Druckerdeinstallation für EPSON SX620FW Series (HKLM\...\EPSON SX620FW Series) (Version: - SEIKO EPSON Corporation) eBay Worldwide (HKLM-x32\...\{D3E5A972-9A15-427D-AE78-8181A5FD943C}) (Version: 2.2.0409 - OEM) Epson FAX Utility (HKLM-x32\...\{0CBE6C93-CB2E-4378-91EE-12BE6D4E2E4A}) (Version: 1.10.00 - SEIKO EPSON CORPORATION) Epson PC-FAX Driver (HKLM-x32\...\EPSON PC-FAX Driver 2) (Version: - ) EPSON Scan (HKLM-x32\...\EPSON Scanner) (Version: - Seiko Epson Corporation) EPSON SX620FW Series Handbuch (HKLM-x32\...\EPSON SX620FW Series Manual) (Version: - ) EPSON SX620FW Series Netzwerk-Handbuch (HKLM-x32\...\EPSON SX620FW Series Network Guide) (Version: - ) EpsonNet Print (HKLM-x32\...\{3E31400D-274E-4647-916C-2CACC3741799}) (Version: 2.5.00 - SEIKO EPSON CORPORATION) EpsonNet Setup 3.3 (HKLM-x32\...\{C9D8A041-2963-4B31-8FFC-1500F3DB9293}) (Version: 3.3a - SEIKO EPSON CORPORATION) FATE (x32 Version: 2.2.0.97 - WildTangent) Hidden FileZilla Client 3.6.0.2 (HKU\S-1-5-21-262824916-1322527339-1189251063-1001\...\FileZilla Client) (Version: 3.6.0.2 - FileZilla Project) Final Drive: Nitro (x32 Version: 2.2.0.95 - WildTangent) Hidden Formant ActiveX programu Windows Live Mesh odpowiedzialny za obsługę połączeń zdalnych (HKLM-x32\...\{B04A0E2F-1E4C-4E61-B18E-3B2BD6779CA7}) (Version: 15.4.5722.2 - Microsoft Corporation) Fotogalerija Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden FUSSBALL MANAGER 08 (HKLM-x32\...\FUSSBALL MANAGER 08) (Version: - Electronic Arts) Galeria de Fotografias do Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Galería fotográfica de Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Galeria fotogràfica del Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Galeria fotografii usługi Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Galerie de photos Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Galerie foto Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Identity Card (HKLM-x32\...\Identity Card) (Version: 1.00.3501 - Acer Incorporated) Insaniquarium Deluxe (x32 Version: 2.2.0.97 - WildTangent) Hidden Intel(R) Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1007 - Intel Corporation) Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 7.0.0.1144 - Intel Corporation) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 8.15.10.2418 - Intel Corporation) Intel(R) Rapid Storage Technology (HKLM-x32\...\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: 10.5.0.1026 - Intel Corporation) iTunes (HKLM\...\{997C9EC4-B53D-479D-81B7-0AEC8D174BA1}) (Version: 10.4.1.10 - Apple Inc.) IZArc 4.1.7 (HKLM-x32\...\{97C82B44-D408-4F14-9252-47FC1636D23E}_is1) (Version: 4.1.7 - Ivan Zahariev) Java 8 Update 25 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218025F0}) (Version: 8.0.250 - Oracle Corporation) JavaFX 2.1.1 (HKLM-x32\...\{1111706F-666A-4037-7777-211328764D10}) (Version: 2.1.1 - Oracle Corporation) Jewel Match 3 (x32 Version: 2.2.0.97 - WildTangent) Hidden Jewel Quest Solitaire (x32 Version: 2.2.0.95 - WildTangent) Hidden John Deere Drive Green (x32 Version: 2.2.0.95 - WildTangent) Hidden Junk Mail filter update (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Kaspersky Internet Security (HKLM-x32\...\InstallWIX_{8ED07EBD-22AD-415A-B71E-C1AD86862C2E}) (Version: 15.0.1.415 - Kaspersky Lab) Kaspersky Internet Security (x32 Version: 15.0.1.415 - Kaspersky Lab) Hidden Kontrola Windows Live Mesh ActiveX za daljinske veze (HKLM-x32\...\{19CBDE24-2761-49A5-816B-D2BA65D0CA8D}) (Version: 15.4.5722.2 - Microsoft Corporation) Kontrolnik Windows Live Mesh ActiveX za oddaljene povezave (HKLM-x32\...\{CA227A9D-09BE-4BFB-9764-48FED2DA5454}) (Version: 15.4.5722.2 - Microsoft Corporation) Launch Manager (HKLM-x32\...\LManager) (Version: 5.1.7 - Acer Inc.) Malwarebytes Anti-Malware Version 2.1.8.1057 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.1.8.1057 - Malwarebytes Corporation) Mesh Runtime (x32 Version: 15.4.5722.2 - Microsoft Corporation) Hidden Microsoft .NET Framework 4.5.1 (Deutsch) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1031) (Version: 4.5.50938 - Microsoft Corporation) Microsoft .NET Framework 4.5.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.51209 - Microsoft Corporation) Microsoft Mathematics-Add-In (32 Bit) (HKLM-x32\...\{E2C98732-F973-4985-A9C5-DC06178E16EE}) (Version: 2.0.041222.01 - Microsoft Corporation) Microsoft Office Klick-und-Los 2010 (HKLM-x32\...\Office14.Click2Run) (Version: 14.0.4763.1000 - Microsoft Corporation) Microsoft Office Outlook Connector (HKLM-x32\...\{95140000-0081-0407-0000-0000000FF1CE}) (Version: 14.0.6123.5001 - Microsoft Corporation) Microsoft Office Professional 2010 (HKLM-x32\...\Office14.SingleImage) (Version: 14.0.7015.1000 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.40728.0 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (HKLM-x32\...\{770657D0-A123-3C07-8E44-1C83EC895118}) (Version: 8.0.50727.4053 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation) Microsoft Visual Studio 2010-Tools für Office-Laufzeit (x64) Language Pack - DEU (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - DEU) (Version: 10.0.50903 - Microsoft Corporation) Mozilla Firefox 40.0 (x86 de) (HKLM-x32\...\Mozilla Firefox 40.0 (x86 de)) (Version: 40.0 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 40.0.0.5697 - Mozilla) Mystery of Mortlake Mansion (x32 Version: 2.2.0.98 - WildTangent) Hidden MyWinLocker (Version: 4.0.14.27 - Egis Technology Inc.) Hidden MyWinLocker 4 (x32 Version: 4.0.14.27 - Egis Technology Inc.) Hidden MyWinLocker Suite (HKLM-x32\...\InstallShield_{17DF9714-60C9-43C9-A9C2-32BCAED44CBE}) (Version: 4.0.14.18 - Egis Technology Inc.) MyWinLocker Suite (x32 Version: 4.0.14.18 - Egis Technology Inc.) Hidden newsXpresso (HKLM-x32\...\InstallShield_{613C0AC5-3A67-4B94-8B13-9176AD83F5BF}) (Version: 1.0.0.40 - esobi Inc.) newsXpresso (x32 Version: 1.0.0.40 - esobi Inc.) Hidden Norton Online Backup (HKLM-x32\...\{40A66DF6-22D3-44B5-A7D3-83B118A2C0DC}) (Version: 2.1.17869 - Symantec Corporation) NTI Media Maker 9 (HKLM-x32\...\InstallShield_{D3D5C4E8-040F-4C6F-8105-41D43CF94F44}) (Version: 9.0.2.8942 - NTI Corporation) NTI Media Maker 9 (x32 Version: 9.0.2.8942 - NTI Corporation) Hidden NVIDIA Grafiktreiber 268.00 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 268.00 - NVIDIA Corporation) NVIDIA PhysX (HKLM-x32\...\{B9DB4C76-01A4-46D5-8910-F7AA6376DBAF}) (Version: 9.10.0514 - NVIDIA Corporation) Ovládací prvek ActiveX platformy Windows Live Mesh pro vzdálená připojení (HKLM-x32\...\{B6190387-0036-4BEB-8D74-A0AFC5F14706}) (Version: 15.4.5722.2 - Microsoft Corporation) Ovládací prvok ActiveX programu Windows Live Mesh pre vzdialené pripojenia (HKLM-x32\...\{C2FD7DB5-FE30-49B6-8A2F-C5652E053C31}) (Version: 15.4.5722.2 - Microsoft Corporation) PDFCreator (HKLM-x32\...\{0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}) (Version: 1.5.0 - Frank Heindörfer, Philip Chinery) Penguins! (x32 Version: 2.2.0.95 - WildTangent) Hidden PhotoScape (HKLM-x32\...\PhotoScape) (Version: - ) Plants vs. Zombies - Game of the Year (x32 Version: 2.2.0.95 - WildTangent) Hidden Poczta usługi Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Podstawowe programy Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Polar Bowler (x32 Version: 2.2.0.97 - WildTangent) Hidden Pošta Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Prison Tycoon (HKLM-x32\...\Prison Tycoon) (Version: 1.0.0.7 - Valu Soft) QuickTime 7 (HKLM-x32\...\{111EE7DF-FC45-40C7-98A7-753AC46B12FB}) (Version: 7.75.80.95 - Apple Inc.) Raccolta foto di Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6339 - Realtek Semiconductor Corp.) Renesas Electronics USB 3.0 Host Controller Driver (HKLM-x32\...\InstallShield_{5442DAB8-7177-49E1-8B22-09A049EA5996}) (Version: 2.0.34.0 - Renesas Electronics Corporation) Renesas Electronics USB 3.0 Host Controller Driver (x32 Version: 2.0.34.0 - Renesas Electronics Corporation) Hidden Safari (HKLM-x32\...\{C779648B-410E-4BBA-B75B-5815BCEFE71D}) (Version: 5.34.57.2 - Apple Inc.) Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{DE28B448-32E8-4E8F-84F0-A52B21A49B5B}) (Version: - Microsoft) Shredder (Version: 2.0.8.9 - Egis Technology Inc.) Hidden Shredder (x32 Version: 2.0.8.9 - Egis Technology Inc.) Hidden Sid Meier's Civilization 4 Complete (HKU\S-1-5-21-262824916-1322527339-1189251063-1001\...\{30D1F3D2-54CF-481D-A005-F94B0E98FEEC}) (Version: 1.74 - Firaxis Games) Sid Meier's Civilization V (HKLM-x32\...\Steam App 8930) (Version: - 2K Games, Inc.) SiSoftware Sandra Lite 2012.SP1c (HKLM\...\{C3113E55-7BCB-4de3-8EBF-60E6CE6B2296}_is1) (Version: 18.28.2012.2 - SiSoftware) Skype™ 7.0 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.0.102 - Skype Technologies S.A.) Slingo Deluxe (x32 Version: 2.2.0.95 - WildTangent) Hidden SpeedFan (remove only) (HKLM-x32\...\SpeedFan) (Version: - ) Spybot - Search & Destroy (HKLM-x32\...\{B4092C6D-E886-4CB2-BA68-FE5A99D31DE7}_is1) (Version: 2.4.40 - Safer-Networking Ltd.) Steam (HKLM-x32\...\{048298C9-A4D3-490B-9FF9-AB023A9238F3}) (Version: 1.0.0.0 - Valve Corporation) Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 15.1.6.0 - Synaptics Incorporated) Torchlight (x32 Version: 2.2.0.97 - WildTangent) Hidden Überwachungstool für die Intel® Turbo-Boost-Technik 2.0 (HKLM\...\{B77EFA0B-9BD3-4122-9F9A-15A963B5EA24}) (Version: 2.1.23.0 - Intel) Update Installer for WildTangent Games App (x32 Version: - WildTangent) Hidden Uzak Bağlantılar İçin Windows Live Mesh ActiveX Denetimi (HKLM-x32\...\{241E7104-937A-4366-AD57-8FDDDB003939}) (Version: 15.4.5722.2 - Microsoft Corporation) Virtual Villagers 4 - The Tree of Life (x32 Version: 2.2.0.97 - WildTangent) Hidden Warcraft II BNE (HKLM-x32\...\Warcraft II BNE) (Version: - ) Wedding Dash (x32 Version: 2.2.0.95 - WildTangent) Hidden Welcome Center (HKLM-x32\...\Acer Welcome Center) (Version: 1.02.3503 - Acer Incorporated) WildTangent Games App (Acer Games) (x32 Version: 4.0.5.14 - WildTangent) Hidden Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 15.4.3555.0308 - Microsoft Corporation) Windows Live Mesh - ActiveX-besturingselement voor externe verbindingen (HKLM-x32\...\{C32CE55C-12BA-4951-8797-0967FDEF556F}) (Version: 15.4.5722.2 - Microsoft Corporation) Windows Live Mesh ActiveX Control for Remote Connections (HKLM-x32\...\{2902F983-B4C1-44BA-B85D-5C6D52E2C441}) (Version: 15.4.5722.2 - Microsoft Corporation) Windows Live Mesh ActiveX control for remote connections (HKLM-x32\...\{C5398A89-516C-4DAF-BA07-EE7949090E56}) (Version: 15.4.5722.2 - Microsoft Corporation) Windows Live Mesh ActiveX Control for Remote Connections (HKLM-x32\...\{C63A1E60-B6A4-440B-89A5-1FC6E4AC1C94}) (Version: 15.4.5722.2 - Microsoft Corporation) Windows Live Mesh ActiveX-kontroll for eksterne tilkoblinger (HKLM-x32\...\{09B7C7EB-3140-4B5E-842F-9C79A7137139}) (Version: 15.4.5722.2 - Microsoft Corporation) Windows Live Mesh ActiveX-objekt til fjernforbindelser (HKLM-x32\...\{57220148-3B2B-412A-A2E0-82B9DF423696}) (Version: 15.4.5722.2 - Microsoft Corporation) Windows Live Mesh ActiveX-vezérlő távoli kapcsolatokhoz (HKLM-x32\...\{6E29C4F7-C2C2-4B18-A15C-E09B92065F15}) (Version: 15.4.5722.2 - Microsoft Corporation) Windows Live Meshin etäyhteyksien ActiveX-komponentti (HKLM-x32\...\{4CF6F287-5121-483C-A5A2-07BDE19D8B4E}) (Version: 15.4.5722.2 - Microsoft Corporation) Zuma Deluxe (x32 Version: 2.2.0.95 - WildTangent) Hidden Zune (HKLM\...\Zune) (Version: 04.08.2345.00 - Microsoft Corporation) Στοιχείο ελέγχου ActiveX του Windows Live Mesh για απομακρυσμένες συνδέσεις (HKLM-x32\...\{F665F3B8-01B4-46A9-8E47-FF8DC2208C9F}) (Version: 15.4.5722.2 - Microsoft Corporation) Συλλογή φωτογραφιών του Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Основные компоненты Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Почта Windows Live (x32 Version: 15.4.3502.0922 - Корпорация Майкрософт) Hidden Фотоальбом Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Фотогалерия на Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Элемент управления Windows Live Mesh ActiveX для удаленных подключений (HKLM-x32\...\{BCB0D6F7-7EAB-4009-A6F2-8E0E7F317773}) (Version: 15.4.5722.2 - Microsoft Corporation) גלריית התמונות של Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden פקד ActiveX של Windows Live Mesh עבור חיבורים מרוחקים (HKLM-x32\...\{9D4C7DFA-CBBB-4F06-BDAC-94D831406DF0}) (Version: 15.4.5722.2 - Microsoft Corporation) بريد Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden عنصر تحكم ActiveX الخاص بـ Windows Live Mesh للاتصالات البعيدة (HKLM-x32\...\{E18B30AA-6E2D-480C-B918-AF61009F4010}) (Version: 15.4.5722.2 - Microsoft Corporation) معرض صور Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden ตัวควบคุม ActiveX ใน Windows Live Mesh สำหรับการเชื่อมต่อระยะไกล (ไทย) (HKLM-x32\...\{A2EDAEEB-C981-46D5-8163-CF8F5F640EEE}) (Version: 15.4.5722.2 - Microsoft Corporation) 適用遠端連線的 Windows Live Mesh ActiveX 控制項 (HKLM-x32\...\{622DE1BE-9EDE-49D3-B349-29D64760342A}) (Version: 15.4.5722.2 - Microsoft Corporation) ==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Wiederherstellungspunkte ========================= 28-07-2015 10:53:23 Windows Update 28-07-2015 23:28:50 Windows Update 02-08-2015 11:03:07 Windows Update 06-08-2015 10:34:08 Windows Update 10-08-2015 09:58:08 Windows Update 13-08-2015 00:23:19 Windows Update ==================== Hosts Inhalt: =============================== (Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.) 2009-07-14 04:34 - 2009-06-10 23:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) ============= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) Task: {1518B86F-D05C-4311-AEDF-277C69C3F515} - System32\Tasks\clear.fiAgent => C:\Program Files (x86)\Acer\clear.fi\MVP\clear.fiAgent.exe [2011-05-20] (CyberLink Corp.) Task: {294B81D7-7A5C-45FC-B3FA-84ADD3325BA1} - System32\Tasks\Microsoft\Windows\Application Experience\ProgramDataUpdater => Rundll32.exe invagent.dll,RunUpdate -noappraiser Task: {326717C7-4CC3-4523-9002-37EC8635E412} - System32\Tasks\Adobe ARM => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-05-11] (Adobe Systems Incorporated) Task: {3B169C6C-75E3-45E9-BD6B-CEF4F2DA2F72} - System32\Tasks\PMMUpdate => C:\Program Files\EgisTec IPS\PMMUpdate.exe [2011-03-29] (Egis Technology Inc.) Task: {5C710D0A-C456-4B99-9C72-9C8D11D4B3C7} - System32\Tasks\clear.fi => C:\Program Files (x86)\Acer\clear.fi\MVP\clear.fi.exe [2011-05-20] (Acer Incorporated) Task: {65886FC5-8685-4E98-9785-221399A111E9} - System32\Tasks\Adobe Reader Speed Launcher => C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe Task: {81217CAA-3FE7-470A-80CC-58A28038F211} - System32\Tasks\DMREngine => C:\Program Files (x86)\Acer\clear.fi\MVP\.\Kernel\DMR\DMREngine.exe [2011-05-20] (CyberLink) Task: {8F0BECC8-C05E-4C76-AF62-8853F482490B} - System32\Tasks\{A1752E45-252B-4FC9-A9F1-66411B395080} => pcalua.exe -a D:\SETUP.EXE -d D:\ Task: {9CE06E33-4936-467A-99C8-21D988E3C38A} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Scan the system => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDScan.exe [2014-06-24] (Safer-Networking Ltd.) Task: {A115C201-3DAB-4D8A-8DD7-4BADE1EB2A84} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Check for updates => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe [2014-06-27] (Safer-Networking Ltd.) Task: {D3E7AAD6-9919-4C20-AE11-2CF58FB3122F} - System32\Tasks\EgisUpdate => C:\Program Files\EgisTec IPS\EgisUpdate.exe [2011-03-29] (Egis Technology Inc.) Task: {D7F8FE3D-7B9A-4DE6-9DE3-91C0FD872A8D} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Refresh immunization => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDImmunize.exe [2014-06-24] (Safer-Networking Ltd.) (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.) ==================== Geladene Module (Nicht auf der Ausnahmeliste) ============== 2010-01-02 16:42 - 2010-01-02 16:42 - 00098304 _____ () C:\Program Files (x86)\FileZilla FTP Client\fzshellext_64.dll 2009-01-22 01:45 - 2009-01-22 01:45 - 01401856 _____ () C:\Program Files (x86)\EgisTec MyWinLocker\x64\LIBEAY32.dll 2012-12-04 23:32 - 2012-07-20 15:39 - 02469888 _____ () C:\Program Files (x86)\IZArc\IZArcCM64.dll 2014-08-30 18:12 - 2014-08-30 18:12 - 01269952 _____ () C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\kpcengine.2.3.dll 2011-04-24 03:29 - 2011-04-24 03:29 - 00465640 _____ () C:\Program Files (x86)\NTI\Acer Backup Manager\sqlite3.dll 2011-04-24 03:29 - 2011-04-24 03:29 - 01081664 _____ () C:\Program Files (x86)\NTI\Acer Backup Manager\ACE.dll 2011-04-24 03:29 - 2011-04-24 03:29 - 00125760 _____ () C:\Program Files (x86)\NTI\Acer Backup Manager\MailConverter32.dll 2015-08-13 17:44 - 2014-05-13 12:04 - 00109400 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\snlThirdParty150.bpl 2015-08-13 17:44 - 2014-05-13 12:04 - 00416600 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\DEC150.bpl 2015-08-13 17:44 - 2014-05-13 12:04 - 00167768 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\snlFileFormats150.bpl 2015-08-13 17:44 - 2012-08-23 10:38 - 00574840 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\sqlite3.dll 2015-08-13 17:44 - 2012-04-03 17:06 - 00565640 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\av\BDSmartDB.dll 2011-05-20 11:13 - 2011-05-20 11:13 - 00206216 _____ () C:\Program Files (x86)\Acer\clear.fi\MVP\Kernel\DMR\CLNetMediaDMA.dll 2014-10-16 15:41 - 2014-10-16 15:41 - 00172544 _____ () C:\Windows\assembly\NativeImages_v2.0.50727_32\IsdiInterop\c152a64e30c5b94894d75ac86aa7aad2\IsdiInterop.ni.dll 2011-08-12 10:21 - 2011-04-30 09:28 - 00059904 _____ () C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IsdiInterop.dll 2014-08-30 18:12 - 2014-11-20 12:36 - 00332584 _____ () C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\FFExt\online_banking@kaspersky.com\nponlinebanking.dll 2014-08-30 18:12 - 2014-11-20 12:36 - 00459048 _____ () C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\FFExt\content_blocker@kaspersky.com\npcontentblocker.dll 2014-08-30 18:12 - 2014-11-20 12:36 - 00587048 _____ () C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\FFExt\virtual_keyboard@kaspersky.com\npvkplugin.dll 2015-07-15 22:08 - 2015-07-15 22:08 - 17448624 _____ () C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_18_0_0_209.dll ==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) ========= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.) ==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.) ==================== EXE Verknüpfungen (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.) ==================== Internet Explorer Vertrauenswürdig/Eingeschränkt =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.) ==================== Andere Bereiche ============================ (Aktuell gibt es keinen automatisierten Fix für diesen Bereich.) HKU\S-1-5-21-262824916-1322527339-1189251063-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Kris\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 10.0.0.138 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Windows Firewall ist aktiviert. ==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge == (Aktuell gibt es keinen automatisierten Fix für diesen Bereich.) MSCONFIG\startupreg: Adobe ARM => "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" MSCONFIG\startupreg: Amazon Music => "C:\Users\Kris\AppData\Local\Amazon Music\Amazon Music Helper.exe" MSCONFIG\startupreg: APSDaemon => "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" MSCONFIG\startupreg: ArcadeMovieService => "C:\Program Files (x86)\Acer\clear.fi\Movie\clear.fiMovieService.exe" MSCONFIG\startupreg: BackupManagerTray => "C:\Program Files (x86)\NTI\Acer Backup Manager\BackupManagerTray.exe" -h -k MSCONFIG\startupreg: Dolby Advanced Audio v2 => "C:\Dolby PCEE4\pcee4.exe" -autostart MSCONFIG\startupreg: Epson Stylus SX620FW(Netzwerk) => C:\Windows\system32\spool\DRIVERS\x64\3\E_IATIGBE.EXE /FU "C:\Users\Kris\AppData\Local\Temp\E_S148.tmp" /EF "HKCU" MSCONFIG\startupreg: FUFAXSTM => "C:\Program Files (x86)\Epson Software\FAX Utility\FUFAXSTM.exe" MSCONFIG\startupreg: HotKeysCmds => C:\Windows\system32\hkcmd.exe MSCONFIG\startupreg: IgfxTray => C:\Windows\system32\igfxtray.exe MSCONFIG\startupreg: iTunesHelper => "C:\Program Files (x86)\iTunes\iTunesHelper.exe" MSCONFIG\startupreg: msnmsgr => "C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe" /background MSCONFIG\startupreg: Norton Online Backup => C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuClient.exe MSCONFIG\startupreg: Persistence => C:\Windows\system32\igfxpers.exe MSCONFIG\startupreg: Power Management => C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe MSCONFIG\startupreg: QuickTime Task => "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime MSCONFIG\startupreg: Steam => "E:\Spiele\Steam\Steam.exe" -silent MSCONFIG\startupreg: SuiteTray => "C:\Program Files (x86)\EgisTec MyWinLockerSuite\x86\SuiteTray.exe" MSCONFIG\startupreg: SunJavaUpdateSched => "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" MSCONFIG\startupreg: Zune Launcher => "C:\Program Files\Zune\ZuneLauncher.exe" ==================== Firewall Regeln (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) FirewallRules: [{DCD0764F-F2FC-4692-AC00-6182656DB809}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe FirewallRules: [{E9B97517-DFAA-447B-81DA-A324A90DC5B5}] => (Allow) C:\Program Files\Common Files\mcafee\mcsvchost\McSvHost.exe FirewallRules: [{206D17A3-0E47-4E5E-A791-E070EEE3C58E}] => (Allow) C:\Program Files\Common Files\mcafee\mcsvchost\McSvHost.exe FirewallRules: [{4C66A1DB-2E1D-4DA4-8163-41FAE4C345F5}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe FirewallRules: [{3888A507-1516-4ED1-821E-977521D6B78C}] => (Allow) LPort=2869 FirewallRules: [{31121F76-DD69-40E4-89B8-C263E364B915}] => (Allow) LPort=1900 FirewallRules: [{70A03D02-C530-4568-B384-44A71E4A26EC}] => (Allow) C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe FirewallRules: [{2440E1B4-BA41-497F-9494-B7F27A366469}] => (Allow) C:\Program Files (x86)\Windows Live\Mesh\MOE.exe FirewallRules: [{008D549B-1138-4B96-A806-6663B6ADF4BC}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe FirewallRules: [{501A0238-8668-4D5A-A47A-44AED3808E55}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe FirewallRules: [{DE60B046-3F8F-42FD-8BB3-9685C4C620C4}] => (Allow) C:\Program Files (x86)\Acer\clear.fi\MVP\clear.fi.exe FirewallRules: [{66A83454-45C5-4E40-954B-D3D4E1A06F24}] => (Allow) C:\Program Files (x86)\Acer\clear.fi\MVP\clear.fiAgent.exe FirewallRules: [{5F599C0B-A6C5-4A5C-8964-0AB7DA63AB6A}] => (Allow) C:\Program Files (x86)\Acer\clear.fi\MVP\Kernel\CLML\CLMLSvc.exe FirewallRules: [{B9F0BA9F-6E72-4E24-B5FF-1966A68D11AA}] => (Allow) C:\Program Files (x86)\Acer\clear.fi\MVP\Kernel\DMR\DMREngine.exe FirewallRules: [{D7E11B14-4845-46F3-BCC9-57694B8E8E04}] => (Allow) C:\Program Files (x86)\Acer\clear.fi\MVP\Kernel\DMR\DMREngine.exe FirewallRules: [{6F983765-AB85-4DEB-98EE-419EDFA9AC95}] => (Block) C:\Program Files (x86)\Acer\clear.fi\MVP\Kernel\DMR\DMREngine.exe FirewallRules: [{AB534C3B-9B71-488C-8623-A78E6D7D20D6}] => (Allow) C:\Program Files (x86)\Acer\clear.fi\Movie\TouchMovie.exe FirewallRules: [{16DAC731-11C4-4551-B743-C60F3D31CAC4}] => (Allow) C:\Program Files (x86)\Acer\clear.fi\Movie\TouchMovieService.exe FirewallRules: [{0F554F09-26AE-47A4-B382-EF723442EC1E}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{761109E6-F792-41B2-906D-2F0D3E8F8BCC}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{CAB7C3E0-1638-4249-BD63-5C46C9814587}] => (Allow) C:\Program Files (x86)\iTunes\iTunes.exe FirewallRules: [{5093C363-4A8F-485D-80D8-26A9FB84B940}] => (Allow) C:\Program Files (x86)\EpsonNet\EpsonNet Setup\tool10\ENEasyApp.exe FirewallRules: [{CCD54A46-D59F-4B1F-B1D0-C408184C140D}] => (Allow) C:\Program Files (x86)\EpsonNet\EpsonNet Setup\tool10\ENEasyApp.exe FirewallRules: [{4C09937D-E661-4768-89C9-85D635E81364}] => (Allow) C:\Program Files\SiSoftware\SiSoftware Sandra Lite 2012.SP1c\RpcAgentSrv.exe FirewallRules: [{9B0EAC11-C4EE-4724-A0A4-EA04152E359D}] => (Allow) %ProgramFiles%\Zune\Zune.exe FirewallRules: [{AD705649-E8B2-4CD7-869F-FE14A9B3B971}] => (Allow) %ProgramFiles%\Zune\ZuneNSS.exe FirewallRules: [{822CE9B1-7E3B-40F8-A16E-6478CA47687D}] => (Allow) %ProgramFiles%\Zune\ZuneNSS.exe FirewallRules: [{1EC86722-ADC5-42D9-9E50-215957B8564C}] => (Allow) %ProgramFiles%\Zune\ZuneNSS.exe FirewallRules: [{61B1B376-9A1D-4F0D-B869-D261C8EAB204}] => (Allow) %ProgramFiles%\Zune\ZuneNSS.exe FirewallRules: [{F1D112B0-D4A5-4600-BD8B-981A803E728D}] => (Allow) %ProgramFiles%\Zune\ZuneNSS.exe FirewallRules: [{37A1E45E-7AE3-448D-85C8-D502C83224F0}] => (Allow) %ProgramFiles%\Zune\ZuneNSS.exe FirewallRules: [{7947403B-8CBA-44FB-B6E5-E599C24E4EC9}] => (Allow) %ProgramFiles%\Zune\ZuneNSS.exe FirewallRules: [{EC5A3046-8B16-41E8-B953-A0A1367C8F22}] => (Allow) %ProgramFiles%\Zune\ZuneNSS.exe FirewallRules: [TCP Query User{DDD18997-1632-4390-ABED-59A4A74DBBB4}C:\program files (x86)\java\jre7\bin\java.exe] => (Allow) C:\program files (x86)\java\jre7\bin\java.exe FirewallRules: [UDP Query User{CCA9D285-0019-485F-A81B-8CE24E4FC752}C:\program files (x86)\java\jre7\bin\java.exe] => (Allow) C:\program files (x86)\java\jre7\bin\java.exe FirewallRules: [{F3EB9AEB-B3A7-4EE8-9B97-88C621935CA3}] => (Allow) E:\Spiele\Steam\Steam.exe FirewallRules: [{6CCD3EA4-DE21-4A40-B445-6554FA58262D}] => (Allow) E:\Spiele\Steam\Steam.exe FirewallRules: [TCP Query User{680ACDF5-200E-49FB-96A0-FAC7A0AC26DA}E:\spiele\steam\steamapps\common\sid meier's civilization v\civilizationv.exe] => (Block) E:\spiele\steam\steamapps\common\sid meier's civilization v\civilizationv.exe FirewallRules: [UDP Query User{BB45D3B1-11B4-4768-883B-0A3FE2EBAF29}E:\spiele\steam\steamapps\common\sid meier's civilization v\civilizationv.exe] => (Block) E:\spiele\steam\steamapps\common\sid meier's civilization v\civilizationv.exe FirewallRules: [{AC4186D7-E934-4204-9EB0-8DDE682846C1}] => (Allow) C:\Program Files\SiSoftware\SiSoftware Sandra Lite 2012.SP1c\WNt500x64\RpcSandraSrv.exe FirewallRules: [TCP Query User{2FE5177A-BB17-4E85-B77A-C65CE74B661E}E:\spiele\steam\steamapps\common\sid meier's civilization v\civilizationv.exe] => (Block) E:\spiele\steam\steamapps\common\sid meier's civilization v\civilizationv.exe FirewallRules: [UDP Query User{E45401B1-994E-43C7-B718-D45F6354EC84}E:\spiele\steam\steamapps\common\sid meier's civilization v\civilizationv.exe] => (Block) E:\spiele\steam\steamapps\common\sid meier's civilization v\civilizationv.exe FirewallRules: [{89FE9F95-2F51-4728-887C-CD7F3A1D8A64}] => (Allow) E:\Spiele\Steam\SteamApps\common\Sid Meier's Civilization V\Launcher.exe FirewallRules: [{88B509E8-47A0-43AB-A6D1-DF4DADB45DE3}] => (Allow) E:\Spiele\Steam\SteamApps\common\Sid Meier's Civilization V\Launcher.exe FirewallRules: [{45A400A7-B9AF-4869-996D-E3B44E8148C8}] => (Allow) E:\Spiele\Steam\SteamApps\common\Sid Meier's Civilization V\Launcher.exe FirewallRules: [{375A30AD-519F-440E-9F7C-2933171DB831}] => (Allow) E:\Spiele\Steam\SteamApps\common\Sid Meier's Civilization V\Launcher.exe FirewallRules: [{2F7DF12E-0150-4BB5-91FA-BB94EDC9D1D3}] => (Allow) E:\Spiele\Steam\Steam.exe FirewallRules: [{B90B6130-6C67-4D2A-A288-506268B6C140}] => (Allow) E:\Spiele\Steam\Steam.exe FirewallRules: [{3A0A43B6-9CC8-4376-875A-A3A3785EAC59}] => (Allow) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\WebKit2WebProcess.exe FirewallRules: [{4D1F220A-6429-46E6-B186-C88E2C2A99A1}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{0ECE1F68-908C-4990-BAF8-C40DAE9B87A1}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{ED0A8107-777B-43BE-B714-258FE9EF543E}] => (Allow) E:\Spiele\Civilization4\Civilization4.exe FirewallRules: [{E8AF3B10-445F-4C2C-95ED-AAD9ECB5D94B}] => (Allow) E:\Spiele\Civilization4\Civilization4.exe FirewallRules: [{E884D376-E90A-443C-AEB6-A6D712EFCDA1}] => (Allow) E:\Spiele\Civilization4\Warlords\Civ4Warlords.exe FirewallRules: [{71AE2B11-001A-4827-BE5F-0C73F4363CA2}] => (Allow) E:\Spiele\Civilization4\Warlords\Civ4Warlords.exe FirewallRules: [{32C685D3-D801-4700-BC37-839F76491DDF}] => (Allow) E:\Spiele\Civilization4\Beyond the Sword\Civ4BeyondSword.exe FirewallRules: [{4585BCD4-F468-43BE-8107-ED694D386D37}] => (Allow) E:\Spiele\Civilization4\Beyond the Sword\Civ4BeyondSword.exe StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe] => Enabled:Spybot - Search & Destroy tray access StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe] => Enabled:Spybot-S&D 2 Scanner Service StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe] => Enabled:Spybot-S&D 2 Updater StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe] => Enabled:Spybot-S&D 2 Background update service ==================== Fehlerhafte Geräte im Gerätemanager ============= ==================== Fehlereinträge in der Ereignisanzeige: ========================= Applikationsfehler: ================== Error: (08/13/2015 09:42:56 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/13/2015 06:41:00 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Programm SDFiles.exe, Version 2.4.40.135 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: 5dc Startzeit: 01d0d5e635842ee1 Endzeit: 5 Anwendungspfad: C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFiles.exe Berichts-ID: 0adad5bf-41da-11e5-a541-b870f4ee45a6 Error: (08/13/2015 06:05:58 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Programm SDFiles.exe, Version 2.4.40.135 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: e64 Startzeit: 01d0d5e1a403984b Endzeit: 16 Anwendungspfad: C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFiles.exe Berichts-ID: 29478ffd-41d5-11e5-a541-b870f4ee45a6 Error: (08/13/2015 05:02:16 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/13/2015 10:01:55 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/12/2015 09:09:23 PM) (Source: Application Error) (EventID: 1005) (User: ) Description: Aus einem der folgenden Gründe kann nicht auf die Datei "" zugegriffen werden: Es besteht ein Problem mit der Netzwerkverbindung, dem Datenträger mit der gespeicherten Datei bzw. den auf dem Computer installierten Speichertreibern, oder der Datenträger fehlt. Das Programm Kaspersky Anti-Virus wurde wegen dieses Fehlers geschlossen. Programm: Kaspersky Anti-Virus Datei: Der Fehlerwert ist im Abschnitt "Zusätzliche Dateien" aufgelistet. Benutzeraktion 1. Öffnen Sie die Datei erneut. Diese Situation ist eventuell ein temporäres Problem, das selbstständig behoben wird, wenn das Programm erneut ausgeführt wird. 2. Wenn Sie weiterhin nicht auf die Datei zugreifen können und - diese sich im Netzwerk befindet, dann sollte der Netzwerkadministrator überprüfen, dass kein Netzwerkproblem besteht und dass eine Verbindung mit dem Server hergestellt werden kann. - diese sich auf einem Wechseldatenträger, wie z. B. einer Diskette oder einer CD, befindet, überprüfen Sie, ob der Datenträger richtig in den Computer eingelegt ist. 3. Überprüfen und reparieren Sie das Dateisystem, indem Sie CHKDSK ausführen. Klicken Sie dazu im Menü "Start" auf "Ausführen", geben Sie CMD ein, und klicken Sie auf "OK". Geben Sie an der Eingabeaufforderung CHKDSK /F ein, und drücken Sie die EINGABETASTE. 4. Stellen Sie die Datei von einer Sicherungskopie wieder her, wenn das Problem weiterhin besteht. 5. Überprüfen Sie, ob andere Dateien auf demselben Datenträger geöffnet werden können. Falls dies nicht möglich ist, ist der Datenträger eventuell beschädigt. Wenden Sie sich an den Administrator oder den Hersteller der Computerhardware, um weitere Unterstützung zu erhalten, wenn es sich um eine Festplatte handelt. Zusätzliche Daten Fehlerwert: 00000000 Datenträgertyp: 0 Error: (08/12/2015 09:09:23 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: avp.exe, Version: 15.0.1.415, Zeitstempel: 0x5401ce54 Name des fehlerhaften Moduls: klavasyswatch.dll.000000000012e400-01cff8786c05c8c5-01d0a37db48e, Version: 2.3.5.1414, Zeitstempel: 0x5568d872 Ausnahmecode: 0xc0000096 Fehleroffset: 0x0018b4ea ID des fehlerhaften Prozesses: 0x898 Startzeit der fehlerhaften Anwendung: 0xavp.exe0 Pfad der fehlerhaften Anwendung: avp.exe1 Pfad des fehlerhaften Moduls: avp.exe2 Berichtskennung: avp.exe3 Error: (08/12/2015 09:36:37 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/11/2015 11:10:31 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: plugin-container.exe, Version: 39.0.3.5696, Zeitstempel: 0x55c33d81 Name des fehlerhaften Moduls: mozalloc.dll, Version: 39.0.3.5696, Zeitstempel: 0x55c32c73 Ausnahmecode: 0x80000003 Fehleroffset: 0x00001aa1 ID des fehlerhaften Prozesses: 0x1008 Startzeit der fehlerhaften Anwendung: 0xplugin-container.exe0 Pfad der fehlerhaften Anwendung: plugin-container.exe1 Pfad des fehlerhaften Moduls: plugin-container.exe2 Berichtskennung: plugin-container.exe3 Error: (08/11/2015 11:10:30 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: plugin-container.exe, Version: 39.0.3.5696, Zeitstempel: 0x55c33d81 Name des fehlerhaften Moduls: mozalloc.dll, Version: 39.0.3.5696, Zeitstempel: 0x55c32c73 Ausnahmecode: 0x80000003 Fehleroffset: 0x00001aa1 ID des fehlerhaften Prozesses: 0x844 Startzeit der fehlerhaften Anwendung: 0xplugin-container.exe0 Pfad der fehlerhaften Anwendung: plugin-container.exe1 Pfad des fehlerhaften Moduls: plugin-container.exe2 Berichtskennung: plugin-container.exe3 Systemfehler: ============= Error: (08/13/2015 10:43:37 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Der Dienst "Peernetzwerk-Gruppenzuordnung" ist vom Dienst "Peer Name Resolution-Protokoll" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde: %%-2140993535 Error: (08/13/2015 10:43:37 PM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: Der Dienst "Peer Name Resolution-Protokoll" wurde mit folgendem Fehler beendet: %%-2140993535 Error: (08/13/2015 10:43:37 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Der Dienst "Peernetzwerk-Gruppenzuordnung" ist vom Dienst "Peer Name Resolution-Protokoll" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde: %%-2140993535 Error: (08/13/2015 10:43:37 PM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: Der Dienst "Peer Name Resolution-Protokoll" wurde mit folgendem Fehler beendet: %%-2140993535 Error: (08/13/2015 10:43:37 PM) (Source: PNRPSvc) (EventID: 102) (User: ) Description: 0x80630801 Error: (08/13/2015 10:43:37 PM) (Source: PNRPSvc) (EventID: 102) (User: ) Description: 0x80630801 Error: (08/13/2015 09:43:31 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Der Dienst "Peernetzwerk-Gruppenzuordnung" ist vom Dienst "Peer Name Resolution-Protokoll" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde: %%-2140993535 Error: (08/13/2015 09:43:31 PM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: Der Dienst "Peer Name Resolution-Protokoll" wurde mit folgendem Fehler beendet: %%-2140993535 Error: (08/13/2015 09:43:31 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Der Dienst "Peernetzwerk-Gruppenzuordnung" ist vom Dienst "Peer Name Resolution-Protokoll" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde: %%-2140993535 Error: (08/13/2015 09:43:31 PM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: Der Dienst "Peer Name Resolution-Protokoll" wurde mit folgendem Fehler beendet: %%-2140993535 Microsoft Office: ========================= Error: (08/13/2015 09:42:56 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/13/2015 06:41:00 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: SDFiles.exe2.4.40.1355dc01d0d5e635842ee15C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFiles.exe0adad5bf-41da-11e5-a541-b870f4ee45a6 Error: (08/13/2015 06:05:58 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: SDFiles.exe2.4.40.135e6401d0d5e1a403984b16C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFiles.exe29478ffd-41d5-11e5-a541-b870f4ee45a6 Error: (08/13/2015 05:02:16 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/13/2015 10:01:55 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/12/2015 09:09:23 PM) (Source: Application Error) (EventID: 1005) (User: ) Description: Kaspersky Anti-Virus000000000 Error: (08/12/2015 09:09:23 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: avp.exe15.0.1.4155401ce54klavasyswatch.dll.000000000012e400-01cff8786c05c8c5-01d0a37db48e2.3.5.14145568d872c00000960018b4ea89801d0d4d18a84bbd2C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\avp.exeC:\ProgramData\Kaspersky Lab\AVP15.0.1\Bases\Cache\klavasyswatch.dll.000000000012e400-01cff8786c05c8c5-01d0a37db48e6bb3a3efef39-4125-11e5-b929-b870f4ee45a6 Error: (08/12/2015 09:36:37 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/11/2015 11:10:31 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: plugin-container.exe39.0.3.569655c33d81mozalloc.dll39.0.3.569655c32c738000000300001aa1100801d0d47910853629C:\Program Files (x86)\Mozilla Firefox\plugin-container.exeC:\Program Files (x86)\Mozilla Firefox\mozalloc.dll65c0ddcb-406d-11e5-a1bd-b870f4ee45a6 Error: (08/11/2015 11:10:30 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: plugin-container.exe39.0.3.569655c33d81mozalloc.dll39.0.3.569655c32c738000000300001aa184401d0d47913cb1e9eC:\Program Files (x86)\Mozilla Firefox\plugin-container.exeC:\Program Files (x86)\Mozilla Firefox\mozalloc.dll64c255d1-406d-11e5-a1bd-b870f4ee45a6 CodeIntegrity: =================================== Date: 2015-03-10 12:18:03.285 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\ELAMBKUP\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2015-03-10 12:18:03.285 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\ELAMBKUP\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2015-03-10 12:18:03.275 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\ELAMBKUP\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2015-03-10 12:18:03.265 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\KLELAMX64\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2015-03-10 12:18:03.265 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\KLELAMX64\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2015-03-10 12:18:03.255 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\KLELAMX64\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2015-03-07 13:14:38.942 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\ELAMBKUP\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2015-03-07 13:14:38.939 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\ELAMBKUP\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2015-03-07 13:14:38.936 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\ELAMBKUP\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2015-03-07 13:14:38.920 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\KLELAMX64\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. ==================== Speicherinformationen =========================== Processor: Intel(R) Core(TM) i7-2670QM CPU @ 2.20GHz Prozentuale Nutzung des RAM: 44% Installierter physikalischer RAM: 8043.86 MB Verfügbarer physikalischer RAM: 4441.26 MB Summe virtueller Speicher: 16085.92 MB Verfügbarer virtueller Speicher: 12219.42 MB ==================== Laufwerke ================================ Drive c: (Acer) (Fixed) (Total:602.41 GB) (Free:457.94 GB) NTFS Drive d: (CIV4_COMPLETE) (CDROM) (Total:2.54 GB) (Free:0 GB) UDF Drive e: (Spiele) (Fixed) (Total:78.12 GB) (Free:68.22 GB) NTFS ==================== MBR & Partitionstabelle ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 698.6 GB) (Disk ID: 3855C932) Partition 1: (Not Active) - (Size=18 GB) - (Type=27) Partition 2: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=602.4 GB) - (Type=07 NTFS) Partition 4: (Not Active) - (Size=78.1 GB) - (Type=OF Extended) ==================== Ende von Ergebnis ============================ |
13.08.2015, 22:44 | #4 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Kaspersky findet angebliche Trojaner, Malwarebytes und Spybot nicht Beide Logs sind unvollständig...
__________________ Logfiles bitte immer in CODE-Tags posten |
13.08.2015, 22:54 | #5 |
| Kaspersky findet angebliche Trojaner, Malwarebytes und Spybot nicht Hat wohl von beiden den obersten Teil nicht genommen.. FRST: Code:
ATTFilter Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version:13-08-2015 durchgeführt von Kris (Administrator) auf KRIS-PC (13-08-2015 23:28:06) Gestartet von C:\Users\Kris\Downloads Geladene Profile: UpdatusUser & Kris (Verfügbare Profile: UpdatusUser & Kris) Platform: Windows 7 Home Premium Service Pack 1 (X64) Sprache: Deutsch (Deutschland) Internet Explorer Version 11 (Standard-Browser: FF) Start-Modus: Normal Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Prozesse (Nicht auf der Ausnahmeliste) ================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.) (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (Microsoft Corporation) C:\Windows\System32\wlanext.exe (SEIKO EPSON CORPORATION) C:\Program Files (x86)\Common Files\EPSON\EBAPI\eEBSvc.exe (ABBYY) C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\NvXDSync.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\avp.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE (Apple Inc.) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Dritek System Inc.) C:\Program Files (x86)\Launch Manager\dsiwmis.exe (Acer Incorporated) C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe (Dritek System Inc.) C:\Program Files (x86)\Launch Manager\LMutilps32.exe (Acer Incorporated) C:\Program Files (x86)\Acer\Registration\GREGsvc.exe (Acer Incorporated) C:\Program Files\Acer\Acer Updater\UpdaterService.exe (Symantec Corporation) C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe (NTI Corporation) C:\Program Files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe (Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\avpui.exe (CyberLink Corp.) C:\Program Files (x86)\Acer\clear.fi\MVP\clear.fiAgent.exe (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (CyberLink) C:\Program Files (x86)\Acer\clear.fi\MVP\Kernel\DMR\DMREngine.exe (Microsoft Corporation) C:\Windows\System32\GWX\GWX.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe (Microsoft Corporation) C:\Program Files (x86)\Common Files\microsoft shared\Virtualization Handler\CVHSVC.EXE (Dritek System Inc.) C:\Program Files (x86)\Launch Manager\LManager.exe (Renesas Electronics Corporation) C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe (Dritek System Inc.) C:\Program Files (x86)\Launch Manager\MMDx64Fx.exe (Dritek System Inc.) C:\Program Files (x86)\Launch Manager\LMworker.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (Egis Technology Inc.) C:\Program Files\EgisTec IPS\PmmUpdate.exe (Egis Technology Inc.) C:\Program Files\EgisTec IPS\EgisUpdate.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_18_0_0_209.exe (Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_18_0_0_209.exe (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWelcome.exe (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDScan.exe ==================== Registry (Nicht auf der Ausnahmeliste) ================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.) HKLM\...\Run: [IntelTBRunOnce] => wscript.exe //b //nologo "C:\Program Files\Intel\TurboBoost\RunTBGadgetOnce.vbs" HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2280232 2010-07-30] (Synaptics Incorporated) HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [11786344 2011-03-28] (Realtek Semiconductor) HKLM\...\Run: [RtHDVBg] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2207848 2011-03-21] (Realtek Semiconductor) HKLM-x32\...\Run: [LManager] => C:\Program Files (x86)\Launch Manager\LManager.exe [1103440 2011-07-01] (Dritek System Inc.) HKLM-x32\...\Run: [NUSB3MON] => C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe [113288 2010-11-17] (Renesas Electronics Corporation) HKLM-x32\...\Run: [SDTray] => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe [4101576 2014-06-24] (Safer-Networking Ltd.) Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation) Winlogon\Notify\SDWinLogon-x32: SDWinLogon.dll [X] HKU\S-1-5-19\...\RunOnce: [IsMyWinLockerReboot] => msiexec.exe /qn /x{voidguid} HKU\S-1-5-20\...\RunOnce: [IsMyWinLockerReboot] => msiexec.exe /qn /x{voidguid} HKU\S-1-5-21-262824916-1322527339-1189251063-1001\...\Run: [SpybotPostWindows10UpgradeReInstall] => C:\Program Files\Common Files\AV\Spybot - Search and Destroy\Test.exe [1011200 2015-07-28] (Safer-Networking Ltd.) HKU\S-1-5-18\...\RunOnce: [IsMyWinLockerReboot] => msiexec.exe /qn /x{voidguid} AppInit_DLLs: C:\Windows\system32\nvinitx.dll => C:\Windows\system32\nvinitx.dll [226920 2011-03-31] (NVIDIA Corporation) AppInit_DLLs-x32: C:\Windows\SysWOW64\nvinit.dll => C:\Windows\SysWOW64\nvinit.dll [193128 2011-03-31] (NVIDIA Corporation) BootExecute: autocheck autochk * sdnclean64.exe ==================== Internet (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt..) HKU\S-1-5-21-262824916-1322527339-1189251063-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://acer.msn.com HKU\S-1-5-21-262824916-1322527339-1189251063-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://acer.msn.com SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=AARTDF&pc=MAAR&src=IE-SearchBox SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=AARTDF&pc=MAAR&src=IE-SearchBox SearchScopes: HKLM-x32 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=AARTDF&pc=MAAR&src=IE-SearchBox SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=AARTDF&pc=MAAR&src=IE-SearchBox SearchScopes: HKU\S-1-5-21-262824916-1322527339-1189251063-1001 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-262824916-1322527339-1189251063-1001 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = BHO: Content Blocker Plugin -> {03C04F0A-E2A3-4F7F-BA30-BFA06FFD1358} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\x64\IEExt\ie_plugin.dll [2014-11-20] (Kaspersky Lab ZAO) BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2011-03-29] (Microsoft Corp.) BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation) BHO: Virtual Keyboard Plugin -> {B5D5BB14-C8E2-478D-9C97-574AC10AF9E8} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\x64\IEExt\ie_plugin.dll [2014-11-20] (Kaspersky Lab ZAO) BHO: Safe Money Plugin -> {E3D96E85-529D-4269-AC6A-97CF9E2221E3} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\x64\IEExt\ie_plugin.dll [2014-11-20] (Kaspersky Lab ZAO) BHO-x32: Content Blocker Plugin -> {03C04F0A-E2A3-4F7F-BA30-BFA06FFD1358} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\IEExt\ie_plugin.dll [2014-11-20] (Kaspersky Lab ZAO) BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\ssv.dll [2014-10-15] (Oracle Corporation) BHO-x32: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2011-03-29] (Microsoft Corp.) BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation) BHO-x32: Virtual Keyboard Plugin -> {B5D5BB14-C8E2-478D-9C97-574AC10AF9E8} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\IEExt\ie_plugin.dll [2014-11-20] (Kaspersky Lab ZAO) BHO-x32: Bing Bar Helper -> {d2ce3e00-f94a-4740-988e-03dc2f38c34f} -> C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll [2011-06-07] (Microsoft Corporation.) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\jp2ssv.dll [2014-10-15] (Oracle Corporation) BHO-x32: Safe Money Plugin -> {E3D96E85-529D-4269-AC6A-97CF9E2221E3} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\IEExt\ie_plugin.dll [2014-11-20] (Kaspersky Lab ZAO) Toolbar: HKLM-x32 - Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll [2011-06-07] (Microsoft Corporation.) DPF: HKLM-x32 {C3F79A2B-B9B4-4A66-B012-3EE46475B072} hxxp://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab Tcpip\Parameters: [DhcpNameServer] 10.0.0.138 Tcpip\..\Interfaces\{48E83A8E-05AE-477C-9F86-5F34E4C9BDE8}: [DhcpNameServer] 10.0.0.138 FireFox: ======== FF ProfilePath: C:\Users\Kris\AppData\Roaming\Mozilla\Firefox\Profiles\fzohv65g.default FF NetworkProxy: "no_proxies_on", "*.local" FF NetworkProxy: "type", 0 FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_18_0_0_209.dll [2015-07-15] () FF Plugin: @java.com/DTPlugin,version=10.17.2 -> C:\Windows\system32\npDeployJava1.dll [2013-03-18] (Oracle Corporation) FF Plugin: @microsoft.com/GENUINE -> disabled [Keine Datei] FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.40728.0\npctrl.dll [2015-07-28] ( Microsoft Corporation) FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_18_0_0_209.dll [2015-07-15] () FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll [2011-07-29] () FF Plugin-x32: @java.com/DTPlugin,version=11.25.2 -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\dtplugin\npDeployJava1.dll [2014-10-15] (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.25.2 -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\plugin2\npjp2.dll [2014-10-15] (Oracle Corporation) FF Plugin-x32: @kaspersky.com/content_blocker_6418E0D362104DADA084DC312DFA8ABC -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\FFExt\content_blocker@kaspersky.com [2014-11-20] () FF Plugin-x32: @kaspersky.com/online_banking_69A4E213815F42BD863D889007201D82 -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\FFExt\online_banking@kaspersky.com [2014-11-20] () FF Plugin-x32: @kaspersky.com/virtual_keyboard_294FF26A1D5B455495946778FDE7CEDB -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\FFExt\virtual_keyboard@kaspersky.com [2014-11-20] () FF Plugin-x32: @microsoft.com/GENUINE -> disabled [Keine Datei] FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.40728.0\npctrl.dll [2015-07-28] ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~4\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~4\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2012-03-08] (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3538.0513 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2012-03-08] (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3555.0308 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2012-03-08] (Microsoft Corporation) FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 -> C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll [2010-12-08] () FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2013-05-11] (Adobe Systems Inc.) FF user.js: detected! => C:\Users\Kris\AppData\Roaming\Mozilla\Firefox\Profiles\fzohv65g.default\user.js [2014-11-04] FF user.js: detected! => C:\ProgramData\Kaspersky Lab\SafeBrowser\S-1-5-21-262824916-1322527339-1189251063-1001\FireFox\user.js [2014-11-04] FF Extension: Ghostery - C:\Users\Kris\AppData\Roaming\Mozilla\Firefox\Profiles\fzohv65g.default\Extensions\firefox@ghostery.com.xpi [2014-07-08] FF Extension: Adblock Plus - C:\Users\Kris\AppData\Roaming\Mozilla\Firefox\Profiles\fzohv65g.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2014-07-08] FF HKLM-x32\...\Firefox\Extensions: [content_blocker_6418E0D362104DADA084DC312DFA8ABC@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\FFExt\content_blocker@kaspersky.com FF Extension: Dangerous Websites Blocker - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\FFExt\content_blocker@kaspersky.com [2014-11-04] FF HKLM-x32\...\Firefox\Extensions: [virtual_keyboard_294FF26A1D5B455495946778FDE7CEDB@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\FFExt\virtual_keyboard@kaspersky.com FF Extension: Virtual Keyboard - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\FFExt\virtual_keyboard@kaspersky.com [2014-11-04] FF HKLM-x32\...\Firefox\Extensions: [online_banking_69A4E213815F42BD863D889007201D82@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\FFExt\online_banking@kaspersky.com FF Extension: Safe Money - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\FFExt\online_banking@kaspersky.com [2014-11-04] Chrome: ======= CHR HKLM\...\Chrome\Extension: [dbhjdbfgekjfcfkkfjjmlmojhbllhbho] - https://chrome.google.com/webstore/detail/dbhjdbfgekjfcfkkfjjmlmojhbllhbho CHR HKLM-x32\...\Chrome\Extension: [dbhjdbfgekjfcfkkfjjmlmojhbllhbho] - https://chrome.google.com/webstore/detail/dbhjdbfgekjfcfkkfjjmlmojhbllhbho ==================== Dienste (Nicht auf der Ausnahmeliste) ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R2 ABBYY.Licensing.FineReader.Sprint.9.0; C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe [759048 2009-05-14] (ABBYY) R2 AVP15.0.1; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\avp.exe [234520 2014-08-30] (Kaspersky Lab ZAO) R2 EpsonBidirectionalService; C:\Program Files (x86)\Common Files\EPSON\EBAPI\eEBSVC.exe [94208 2006-12-19] (SEIKO EPSON CORPORATION) [Datei ist nicht signiert] S2 MBAMService; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe [1133880 2015-06-18] (Malwarebytes Corporation) R2 NOBU; C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe [2804568 2010-06-02] (Symantec Corporation) R2 NTI IScheduleSvc; C:\Program Files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe [256832 2011-04-24] (NTI Corporation) S3 SandraAgentSrv; C:\Program Files\SiSoftware\SiSoftware Sandra Lite 2012.SP1c\RpcAgentSrv.exe [95896 2009-01-05] (SiSoftware) [Datei ist nicht signiert] R2 SDScannerService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [1738168 2014-06-24] (Safer-Networking Ltd.) R2 SDUpdateService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [2088408 2014-06-27] (Safer-Networking Ltd.) R2 SDWSCService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [171928 2014-04-25] (Safer-Networking Ltd.) R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation) S2 McAfee SiteAdvisor Service; c:\PROGRA~2\mcafee\SITEAD~1\mcsacore.exe [X] ===================== Treiber (Nicht auf der Ausnahmeliste) ========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R0 cm_km_w; C:\Windows\System32\DRIVERS\cm_km_w.sys [238288 2013-01-14] (Kaspersky Lab UK Ltd) R0 kl1; C:\Windows\System32\DRIVERS\kl1.sys [468576 2014-03-31] (Kaspersky Lab ZAO) R2 kldisk; C:\Windows\System32\DRIVERS\kldisk.sys [46144 2014-07-02] (Kaspersky Lab ZAO) R3 klflt; C:\Windows\System32\DRIVERS\klflt.sys [150536 2014-11-20] (Kaspersky Lab ZAO) R1 klhk; C:\Windows\System32\DRIVERS\klhk.sys [246456 2014-08-12] (Kaspersky Lab ZAO) R1 KLIF; C:\Windows\System32\DRIVERS\klif.sys [819896 2015-03-11] (Kaspersky Lab ZAO) R1 KLIM6; C:\Windows\System32\DRIVERS\klim6.sys [30304 2014-02-25] (Kaspersky Lab ZAO) R3 klkbdflt; C:\Windows\System32\DRIVERS\klkbdflt.sys [28768 2014-03-28] (Kaspersky Lab ZAO) R3 klmouflt; C:\Windows\System32\DRIVERS\klmouflt.sys [29280 2013-08-08] (Kaspersky Lab ZAO) R1 klpd; C:\Windows\System32\DRIVERS\klpd.sys [15456 2013-04-12] (Kaspersky Lab ZAO) R1 kltdi; C:\Windows\System32\DRIVERS\kltdi.sys [55872 2014-06-05] (Kaspersky Lab ZAO) R1 Klwtp; C:\Windows\System32\DRIVERS\klwtp.sys [77512 2014-11-20] (Kaspersky Lab ZAO) R1 kneps; C:\Windows\System32\DRIVERS\kneps.sys [179776 2014-07-09] (Kaspersky Lab ZAO) S3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2015-06-18] (Malwarebytes Corporation) S3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [63704 2015-06-18] (Malwarebytes Corporation) S3 ALSysIO; \??\C:\Users\Kris\AppData\Local\Temp\ALSysIO64.sys [X] ==================== NetSvcs (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Ein Monat: Erstellte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2015-08-13 23:28 - 2015-08-13 23:28 - 00020046 _____ C:\Users\Kris\Downloads\FRST.txt 2015-08-13 23:27 - 2015-08-13 23:28 - 00000000 ____D C:\FRST 2015-08-13 23:27 - 2015-08-13 23:27 - 02173952 _____ (Farbar) C:\Users\Kris\Downloads\FRST64.exe 2015-08-13 23:23 - 2015-08-13 23:23 - 00002512 _____ C:\Users\Kris\Documents\KIS.txt 2015-08-13 17:53 - 2015-08-13 17:53 - 00000000 ____D C:\Program Files\Common Files\AV 2015-08-13 17:53 - 2015-07-28 17:52 - 00821920 _____ (Safer-Networking Ltd. ) C:\Users\Public\Desktop\Post Win10 Spybot-install.exe 2015-08-13 17:45 - 2015-08-13 17:45 - 00000000 ____D C:\Windows\System32\Tasks\Safer-Networking 2015-08-13 17:44 - 2015-08-13 19:34 - 00000000 ____D C:\ProgramData\Spybot - Search & Destroy 2015-08-13 17:44 - 2015-08-13 17:52 - 00000000 ____D C:\Program Files (x86)\Spybot - Search & Destroy 2 2015-08-13 17:44 - 2015-08-13 17:44 - 00001395 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot-S&D Start Center.lnk 2015-08-13 17:44 - 2015-08-13 17:44 - 00001383 _____ C:\Users\Public\Desktop\Spybot-S&D Start Center.lnk 2015-08-13 17:44 - 2015-08-13 17:44 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy 2 2015-08-13 17:44 - 2013-09-20 10:49 - 00021040 _____ (Safer Networking Limited) C:\Windows\system32\sdnclean64.exe 2015-08-13 17:36 - 2015-08-13 17:37 - 46525608 _____ (Safer-Networking Ltd. ) C:\Users\Kris\Downloads\spybot-2.4.exe 2015-08-13 10:03 - 2015-08-13 21:41 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2015-08-13 00:54 - 2015-07-30 15:13 - 00124624 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll 2015-08-13 00:54 - 2015-07-30 15:13 - 00103120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll 2015-08-12 10:01 - 2015-07-28 22:09 - 00017344 _____ (Microsoft Corporation) C:\Windows\system32\CompatTelRunner.exe 2015-08-12 10:01 - 2015-07-28 22:05 - 01116672 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll 2015-08-12 10:01 - 2015-07-28 22:05 - 00774656 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll 2015-08-12 10:01 - 2015-07-28 22:05 - 00743424 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll 2015-08-12 10:01 - 2015-07-28 22:05 - 00437760 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll 2015-08-12 10:01 - 2015-07-28 22:05 - 00227328 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll 2015-08-12 10:01 - 2015-07-28 22:05 - 00069120 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll 2015-08-12 10:01 - 2015-07-28 21:55 - 01148416 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll 2015-08-12 10:01 - 2015-07-21 02:39 - 00389840 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2015-08-12 10:01 - 2015-07-21 02:12 - 00342736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2015-08-12 10:01 - 2015-07-16 23:14 - 25192448 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2015-08-12 10:01 - 2015-07-16 22:54 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2015-08-12 10:01 - 2015-07-16 22:54 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2015-08-12 10:01 - 2015-07-16 22:37 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2015-08-12 10:01 - 2015-07-16 22:36 - 00584192 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2015-08-12 10:01 - 2015-07-16 22:36 - 00417792 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2015-08-12 10:01 - 2015-07-16 22:36 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2015-08-12 10:01 - 2015-07-16 22:35 - 02885632 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2015-08-12 10:01 - 2015-07-16 22:35 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2015-08-12 10:01 - 2015-07-16 22:27 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2015-08-12 10:01 - 2015-07-16 22:26 - 05923328 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2015-08-12 10:01 - 2015-07-16 22:26 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2015-08-12 10:01 - 2015-07-16 22:23 - 00615936 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2015-08-12 10:01 - 2015-07-16 22:21 - 00816640 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2015-08-12 10:01 - 2015-07-16 22:21 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2015-08-12 10:01 - 2015-07-16 22:21 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2015-08-12 10:01 - 2015-07-16 22:21 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2015-08-12 10:01 - 2015-07-16 22:20 - 19870208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2015-08-12 10:01 - 2015-07-16 22:12 - 00968704 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2015-08-12 10:01 - 2015-07-16 22:08 - 00490496 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2015-08-12 10:01 - 2015-07-16 22:06 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2015-08-12 10:01 - 2015-07-16 22:00 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2015-08-12 10:01 - 2015-07-16 21:55 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2015-08-12 10:01 - 2015-07-16 21:54 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2015-08-12 10:01 - 2015-07-16 21:51 - 00504320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2015-08-12 10:01 - 2015-07-16 21:51 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2015-08-12 10:01 - 2015-07-16 21:51 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2015-08-12 10:01 - 2015-07-16 21:50 - 00341504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2015-08-12 10:01 - 2015-07-16 21:50 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2015-08-12 10:01 - 2015-07-16 21:49 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2015-08-12 10:01 - 2015-07-16 21:45 - 02279424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2015-08-12 10:01 - 2015-07-16 21:43 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2015-08-12 10:01 - 2015-07-16 21:43 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2015-08-12 10:01 - 2015-07-16 21:41 - 00479232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2015-08-12 10:01 - 2015-07-16 21:39 - 00664064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2015-08-12 10:01 - 2015-07-16 21:39 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2015-08-12 10:01 - 2015-07-16 21:38 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2015-08-12 10:01 - 2015-07-16 21:36 - 00801280 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2015-08-12 10:01 - 2015-07-16 21:35 - 00720384 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2015-08-12 10:01 - 2015-07-16 21:34 - 14451200 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2015-08-12 10:01 - 2015-07-16 21:33 - 01359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2015-08-12 10:01 - 2015-07-16 21:32 - 02125824 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2015-08-12 10:01 - 2015-07-16 21:29 - 00418304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2015-08-12 10:01 - 2015-07-16 21:24 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2015-08-12 10:01 - 2015-07-16 21:20 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2015-08-12 10:01 - 2015-07-16 21:19 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2015-08-12 10:01 - 2015-07-16 21:17 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2015-08-12 10:01 - 2015-07-16 21:12 - 04520448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2015-08-12 10:01 - 2015-07-16 21:12 - 02427904 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2015-08-12 10:01 - 2015-07-16 21:10 - 12856832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2015-08-12 10:01 - 2015-07-16 21:06 - 02052608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2015-08-12 10:01 - 2015-07-16 21:06 - 00689152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2015-08-12 10:01 - 2015-07-16 21:05 - 01155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2015-08-12 10:01 - 2015-07-16 21:01 - 01545728 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2015-08-12 10:01 - 2015-07-16 20:49 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2015-08-12 10:01 - 2015-07-16 20:42 - 01951232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2015-08-12 10:01 - 2015-07-16 20:38 - 01310720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2015-08-12 10:01 - 2015-07-16 20:37 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2015-08-12 10:01 - 2015-07-15 20:15 - 05568960 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe 2015-08-12 10:01 - 2015-07-15 20:15 - 00155584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys 2015-08-12 10:01 - 2015-07-15 20:15 - 00095680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys 2015-08-12 10:01 - 2015-07-15 20:15 - 00094656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mountmgr.sys 2015-08-12 10:01 - 2015-07-15 20:12 - 01730496 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll 2015-08-12 10:01 - 2015-07-15 20:11 - 00362496 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll 2015-08-12 10:01 - 2015-07-15 20:11 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll 2015-08-12 10:01 - 2015-07-15 20:11 - 00215040 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll 2015-08-12 10:01 - 2015-07-15 20:11 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll 2015-08-12 10:01 - 2015-07-15 20:11 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll 2015-08-12 10:01 - 2015-07-15 20:10 - 01743360 _____ (Microsoft Corporation) C:\Windows\system32\sysmain.dll 2015-08-12 10:01 - 2015-07-15 20:10 - 01461760 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2015-08-12 10:01 - 2015-07-15 20:10 - 01216512 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll 2015-08-12 10:01 - 2015-07-15 20:10 - 01163264 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll 2015-08-12 10:01 - 2015-07-15 20:10 - 00729088 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll 2015-08-12 10:01 - 2015-07-15 20:10 - 00503808 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll 2015-08-12 10:01 - 2015-07-15 20:10 - 00424960 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll 2015-08-12 10:01 - 2015-07-15 20:10 - 00342016 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll 2015-08-12 10:01 - 2015-07-15 20:10 - 00315392 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll 2015-08-12 10:01 - 2015-07-15 20:10 - 00309760 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll 2015-08-12 10:01 - 2015-07-15 20:10 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe 2015-08-12 10:01 - 2015-07-15 20:10 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll 2015-08-12 10:01 - 2015-07-15 20:10 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe 2015-08-12 10:01 - 2015-07-15 20:10 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll 2015-08-12 10:01 - 2015-07-15 20:10 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll 2015-08-12 10:01 - 2015-07-15 20:10 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\cryptbase.dll 2015-08-12 10:01 - 2015-07-15 20:10 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll 2015-08-12 10:01 - 2015-07-15 20:10 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe 2015-08-12 10:01 - 2015-07-15 20:10 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll 2015-08-12 10:01 - 2015-07-15 20:10 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll 2015-08-12 10:01 - 2015-07-15 20:10 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll 2015-08-12 10:01 - 2015-07-15 20:10 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll 2015-08-12 10:01 - 2015-07-15 20:10 - 00011264 _____ (Microsoft Corporation) C:\Windows\system32\msmmsp.dll 2015-08-12 10:01 - 2015-07-15 20:09 - 00338432 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe 2015-08-12 10:01 - 2015-07-15 20:09 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe 2015-08-12 10:01 - 2015-07-15 20:05 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll 2015-08-12 10:01 - 2015-07-15 20:05 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll 2015-08-12 10:01 - 2015-07-15 20:00 - 00686080 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll 2015-08-12 10:01 - 2015-07-15 20:00 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll 2015-08-12 10:01 - 2015-07-15 20:00 - 00006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 20:00 - 00005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 20:00 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 20:00 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 20:00 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 20:00 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 20:00 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 20:00 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 20:00 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 20:00 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 20:00 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 20:00 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 20:00 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 20:00 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 20:00 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 20:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 20:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 20:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 20:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 20:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 20:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 20:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 20:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 20:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 20:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 20:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 20:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 20:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 19:59 - 03989952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe 2015-08-12 10:01 - 2015-07-15 19:59 - 03934656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe 2015-08-12 10:01 - 2015-07-15 19:56 - 01311768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll 2015-08-12 10:01 - 2015-07-15 19:55 - 00248832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll 2015-08-12 10:01 - 2015-07-15 19:55 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll 2015-08-12 10:01 - 2015-07-15 19:55 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll 2015-08-12 10:01 - 2015-07-15 19:55 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll 2015-08-12 10:01 - 2015-07-15 19:55 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll 2015-08-12 10:01 - 2015-07-15 19:54 - 00552960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll 2015-08-12 10:01 - 2015-07-15 19:54 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll 2015-08-12 10:01 - 2015-07-15 19:54 - 00221184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll 2015-08-12 10:01 - 2015-07-15 19:54 - 00036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptbase.dll 2015-08-12 10:01 - 2015-07-15 19:54 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe 2015-08-12 10:01 - 2015-07-15 19:54 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll 2015-08-12 10:01 - 2015-07-15 19:54 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll 2015-08-12 10:01 - 2015-07-15 19:53 - 01114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll 2015-08-12 10:01 - 2015-07-15 19:53 - 00665088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll 2015-08-12 10:01 - 2015-07-15 19:53 - 00274944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll 2015-08-12 10:01 - 2015-07-15 19:53 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll 2015-08-12 10:01 - 2015-07-15 19:53 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\auditpol.exe 2015-08-12 10:01 - 2015-07-15 19:53 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll 2015-08-12 10:01 - 2015-07-15 19:49 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msobjs.dll 2015-08-12 10:01 - 2015-07-15 19:48 - 00146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll 2015-08-12 10:01 - 2015-07-15 19:44 - 00686080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll 2015-08-12 10:01 - 2015-07-15 19:44 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll 2015-08-12 10:01 - 2015-07-15 19:44 - 00005120 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 19:44 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 19:44 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 19:44 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 19:44 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 19:44 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 19:44 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 19:44 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 19:44 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 19:44 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 19:44 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 19:44 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 19:44 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 19:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 19:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 19:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 19:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 19:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 19:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 19:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 19:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 19:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 19:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 19:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 18:46 - 00290816 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys 2015-08-12 10:01 - 2015-07-15 18:46 - 00159232 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys 2015-08-12 10:01 - 2015-07-15 18:46 - 00129024 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys 2015-08-12 10:01 - 2015-07-15 18:37 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe 2015-08-12 10:01 - 2015-07-15 18:37 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe 2015-08-12 10:01 - 2015-07-15 18:34 - 00006144 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 18:34 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 18:34 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 18:34 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 05:19 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\basesrv.dll 2015-08-12 10:01 - 2015-07-10 19:51 - 03722752 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll 2015-08-12 10:01 - 2015-07-10 19:51 - 00158720 _____ (Microsoft Corporation) C:\Windows\system32\aaclient.dll 2015-08-12 10:01 - 2015-07-10 19:51 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll 2015-08-12 10:01 - 2015-07-10 19:34 - 03221504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll 2015-08-12 10:01 - 2015-07-10 19:34 - 00036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll 2015-08-12 10:01 - 2015-07-10 19:33 - 00131584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aaclient.dll 2015-08-12 10:00 - 2015-07-30 20:06 - 02565120 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll 2015-08-12 10:00 - 2015-07-30 20:06 - 01648128 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll 2015-08-12 10:00 - 2015-07-30 20:06 - 01180160 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll 2015-08-12 10:00 - 2015-07-30 20:06 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll 2015-08-12 10:00 - 2015-07-30 20:06 - 00046080 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll 2015-08-12 10:00 - 2015-07-30 20:06 - 00041984 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll 2015-08-12 10:00 - 2015-07-30 20:06 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll 2015-08-12 10:00 - 2015-07-30 19:57 - 01987584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll 2015-08-12 10:00 - 2015-07-30 19:57 - 01251328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll 2015-08-12 10:00 - 2015-07-30 19:57 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll 2015-08-12 10:00 - 2015-07-30 19:57 - 00034304 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll 2015-08-12 10:00 - 2015-07-30 19:57 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll 2015-08-12 10:00 - 2015-07-30 19:55 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll 2015-08-12 10:00 - 2015-07-30 18:56 - 03208192 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2015-08-12 10:00 - 2015-07-30 18:52 - 00372736 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll 2015-08-12 10:00 - 2015-07-30 18:49 - 00299520 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll 2015-08-12 10:00 - 2015-07-20 20:12 - 03154944 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll 2015-08-12 10:00 - 2015-07-20 20:12 - 02606080 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll 2015-08-12 10:00 - 2015-07-20 20:12 - 00696320 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll 2015-08-12 10:00 - 2015-07-20 20:12 - 00192000 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll 2015-08-12 10:00 - 2015-07-20 20:12 - 00139776 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe 2015-08-12 10:00 - 2015-07-20 20:12 - 00098304 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll 2015-08-12 10:00 - 2015-07-20 20:12 - 00091136 _____ (Microsoft Corporation) C:\Windows\system32\WinSetupUI.dll 2015-08-12 10:00 - 2015-07-20 20:12 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll 2015-08-12 10:00 - 2015-07-20 20:12 - 00037376 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe 2015-08-12 10:00 - 2015-07-20 20:12 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll 2015-08-12 10:00 - 2015-07-20 20:12 - 00012288 _____ (Microsoft Corporation) C:\Windows\system32\wu.upgrade.ps.dll 2015-08-12 10:00 - 2015-07-20 19:56 - 00566784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll 2015-08-12 10:00 - 2015-07-20 19:56 - 00173056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll 2015-08-12 10:00 - 2015-07-20 19:56 - 00093184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll 2015-08-12 10:00 - 2015-07-20 19:56 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe 2015-08-12 10:00 - 2015-07-20 19:56 - 00030208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll 2015-08-12 10:00 - 2015-07-15 05:19 - 02004992 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll 2015-08-12 10:00 - 2015-07-15 05:19 - 01887232 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll 2015-08-12 10:00 - 2015-07-15 05:14 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml6r.dll 2015-08-12 10:00 - 2015-07-15 05:13 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll 2015-08-12 10:00 - 2015-07-15 04:55 - 01390592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll 2015-08-12 10:00 - 2015-07-15 04:55 - 01241088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll 2015-08-12 10:00 - 2015-07-15 04:51 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6r.dll 2015-08-12 10:00 - 2015-07-15 04:51 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll 2015-08-12 10:00 - 2015-07-10 19:51 - 14177280 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll 2015-08-12 10:00 - 2015-07-10 19:34 - 12875776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll 2015-08-12 10:00 - 2015-07-09 19:57 - 00193536 _____ (Microsoft Corporation) C:\Windows\system32\notepad.exe 2015-08-12 10:00 - 2015-07-09 19:57 - 00193536 _____ (Microsoft Corporation) C:\Windows\notepad.exe 2015-08-12 10:00 - 2015-07-09 19:42 - 00179712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\notepad.exe 2015-08-12 10:00 - 2015-07-01 22:49 - 00260096 _____ (Microsoft Corporation) C:\Windows\system32\WebClnt.dll 2015-08-12 10:00 - 2015-07-01 22:48 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\davclnt.dll 2015-08-12 10:00 - 2015-07-01 22:30 - 00206848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WebClnt.dll 2015-08-12 10:00 - 2015-07-01 22:30 - 00082432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\davclnt.dll 2015-08-12 10:00 - 2015-05-09 20:26 - 00493504 _____ (Microsoft Corporation) C:\Windows\system32\mcupdate_GenuineIntel.dll 2015-07-30 08:14 - 2015-07-30 08:14 - 00270416 _____ C:\Windows\Minidump\073015-21824-01.dmp 2015-07-17 21:20 - 2015-07-17 21:20 - 00270416 _____ C:\Windows\Minidump\071715-43181-01.dmp 2015-07-15 18:05 - 2015-06-17 19:47 - 00404992 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll 2015-07-15 18:05 - 2015-06-17 19:37 - 00312320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll 2015-07-15 18:05 - 2015-06-02 02:07 - 00254976 _____ (Microsoft Corporation) C:\Windows\system32\cewmdm.dll 2015-07-15 18:05 - 2015-06-02 01:47 - 00210432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cewmdm.dll 2015-07-15 18:03 - 2015-07-04 20:07 - 02087424 _____ (Microsoft Corporation) C:\Windows\system32\ole32.dll 2015-07-15 18:03 - 2015-07-04 19:48 - 01414656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ole32.dll 2015-07-15 18:03 - 2015-06-15 23:50 - 00112064 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe 2015-07-15 18:03 - 2015-06-15 23:45 - 03242496 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll 2015-07-15 18:03 - 2015-06-15 23:45 - 01941504 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll 2015-07-15 18:03 - 2015-06-15 23:45 - 00504320 _____ (Microsoft Corporation) C:\Windows\system32\msihnd.dll 2015-07-15 18:03 - 2015-06-15 23:45 - 00070656 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll 2015-07-15 18:03 - 2015-06-15 23:44 - 00128000 _____ (Microsoft Corporation) C:\Windows\system32\msiexec.exe 2015-07-15 18:03 - 2015-06-15 23:43 - 02364416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll 2015-07-15 18:03 - 2015-06-15 23:43 - 01805824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll 2015-07-15 18:03 - 2015-06-15 23:43 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msihnd.dll 2015-07-15 18:03 - 2015-06-15 23:42 - 00073216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msiexec.exe 2015-07-15 18:03 - 2015-06-15 23:42 - 00025088 _____ (Microsoft Corporation) C:\Windows\system32\msimsg.dll 2015-07-15 18:03 - 2015-06-15 23:37 - 00025088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msimsg.dll 2015-07-15 18:03 - 2015-04-27 21:23 - 01480192 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll 2015-07-15 18:03 - 2015-04-27 21:23 - 00229376 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll 2015-07-15 18:03 - 2015-04-27 21:23 - 00188416 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll 2015-07-15 18:03 - 2015-04-27 21:23 - 00140288 _____ (Microsoft Corporation) C:\Windows\system32\cryptnet.dll 2015-07-15 18:03 - 2015-04-27 21:05 - 00179200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll 2015-07-15 18:03 - 2015-04-27 21:04 - 01174528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll 2015-07-15 18:03 - 2015-04-27 21:04 - 00143872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptsvc.dll 2015-07-15 18:03 - 2015-04-27 21:04 - 00103936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptnet.dll ==================== Ein Monat: Geänderte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2015-08-13 23:21 - 2012-01-02 21:10 - 00000000 ____D C:\ProgramData\Kaspersky Lab 2015-08-13 23:12 - 2011-09-10 21:46 - 01943362 _____ C:\Windows\WindowsUpdate.log 2015-08-13 21:53 - 2009-07-14 06:45 - 00024608 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2015-08-13 21:53 - 2009-07-14 06:45 - 00024608 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2015-08-13 21:50 - 2014-08-10 01:25 - 00113880 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2015-08-13 21:49 - 2014-08-10 01:25 - 00001106 _____ C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2015-08-13 21:49 - 2014-08-10 01:25 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 2015-08-13 21:49 - 2014-08-10 01:25 - 00000000 ____D C:\Program Files (x86)\ Malwarebytes Anti-Malware 2015-08-13 21:43 - 2012-01-02 21:02 - 00000000 ____D C:\ProgramData\clear.fi 2015-08-13 21:42 - 2009-07-14 07:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2015-08-13 21:42 - 2009-07-14 06:51 - 00169515 _____ C:\Windows\setupact.log 2015-08-13 21:41 - 2012-05-25 22:02 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2015-08-13 21:41 - 2010-11-21 05:47 - 00209606 _____ C:\Windows\PFRO.log 2015-08-13 20:21 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\rescache 2015-08-13 17:03 - 2015-05-16 20:24 - 00001177 _____ C:\Windows\wininit.ini 2015-08-13 10:02 - 2012-03-15 18:30 - 00000000 ___RD C:\Users\Kris\Podcasts 2015-08-13 10:01 - 2009-07-14 06:45 - 00412736 _____ C:\Windows\system32\FNTCACHE.DAT 2015-08-13 09:59 - 2015-04-17 09:13 - 00000000 ____D C:\Windows\system32\appraiser 2015-08-13 09:59 - 2014-05-06 16:42 - 00000000 ___SD C:\Windows\system32\CompatTel 2015-08-13 00:54 - 2013-03-15 00:21 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight 2015-08-13 00:53 - 2013-03-15 00:21 - 00000000 ____D C:\Program Files\Microsoft Silverlight 2015-08-13 00:53 - 2013-03-15 00:21 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight 2015-08-13 00:50 - 2012-01-25 20:48 - 00000000 ____D C:\ProgramData\Microsoft Help 2015-08-13 00:45 - 2009-07-14 04:34 - 00000510 _____ C:\Windows\win.ini 2015-08-13 00:42 - 2013-08-09 15:49 - 00000000 ____D C:\Windows\system32\MRT 2015-08-13 00:24 - 2012-01-07 03:35 - 132483416 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2015-08-12 19:58 - 2012-01-25 21:36 - 00000000 ____D C:\Users\Kris\Documents\Outlook-Dateien 2015-08-03 23:22 - 2012-01-02 23:27 - 00000000 ____D C:\Users\Kris\Documents\Songtexte 2015-08-02 12:32 - 2015-07-10 19:28 - 00000000 ___HD C:\$Windows.~BT 2015-08-02 12:09 - 2007-07-12 03:49 - 00000000 ____D C:\Windows\Panther 2015-07-30 08:14 - 2012-09-23 18:56 - 642822074 _____ C:\Windows\MEMORY.DMP 2015-07-30 08:14 - 2012-09-23 18:56 - 00000000 ____D C:\Windows\Minidump 2015-07-25 09:44 - 2015-04-05 00:20 - 00000000 ___SD C:\Windows\system32\GWX 2015-07-20 11:00 - 2009-07-14 07:08 - 00032640 _____ C:\Windows\Tasks\SCHEDLGU.TXT 2015-07-16 22:39 - 2015-04-05 00:20 - 00000000 ___SD C:\Windows\SysWOW64\GWX 2015-07-16 09:43 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\PolicyDefinitions 2015-07-15 22:08 - 2013-03-18 22:35 - 00778416 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2015-07-15 22:08 - 2011-08-12 10:54 - 00142512 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2015-07-15 22:07 - 2014-08-31 16:56 - 00000000 ____D C:\Users\Kris\AppData\Local\Adobe ==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse ======= 2012-01-19 21:50 - 2012-01-19 22:37 - 11407360 _____ () C:\Users\Kris\AppData\Roaming\Sandra.mdb 2012-01-09 23:45 - 2014-08-20 01:04 - 0007610 _____ () C:\Users\Kris\AppData\Local\resmon.resmoncfg 2012-01-02 21:11 - 2012-01-02 21:11 - 0017408 _____ () C:\Users\Kris\AppData\Local\WebpageIcons.db 2011-09-10 22:11 - 2011-09-10 22:13 - 0015230 _____ () C:\ProgramData\ArcadeDeluxe5.log Dateien, die verschoben oder gelöscht werden sollten: ==================== C:\Users\Kris\backup_428660531.bat Einige Dateien in TEMP: ==================== C:\Users\Kris\AppData\Local\Temp\CmdLineExt02.dll C:\Users\Kris\AppData\Local\Temp\drm_dialogs.dll C:\Users\Kris\AppData\Local\Temp\drm_dyndata_7330017.dll C:\Users\Kris\AppData\Local\Temp\firefoxjre_exe-1.exe C:\Users\Kris\AppData\Local\Temp\firefoxjre_exe-2.exe C:\Users\Kris\AppData\Local\Temp\firefoxjre_exe.exe C:\Users\Kris\AppData\Local\Temp\incredibar_installer.exe C:\Users\Kris\AppData\Local\Temp\jre-7u17-windows-i586-iftw.exe C:\Users\Kris\AppData\Local\Temp\jre-7u7-windows-i586-iftw.exe C:\Users\Kris\AppData\Local\Temp\sfamcc00001.dll C:\Users\Kris\AppData\Local\Temp\sfamcc00002.dll C:\Users\Kris\AppData\Local\Temp\sfextra.dll C:\Users\Kris\AppData\Local\Temp\SIntf16.dll C:\Users\Kris\AppData\Local\Temp\SIntf32.dll C:\Users\Kris\AppData\Local\Temp\SIntfNT.dll C:\Users\Kris\AppData\Local\Temp\_is28E6.exe C:\Users\Kris\AppData\Local\Temp\_isD233.exe ==================== Bamital & volsnap ================= (Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.) C:\Windows\system32\winlogon.exe => Datei ist digital signiert C:\Windows\system32\wininit.exe => Datei ist digital signiert C:\Windows\SysWOW64\wininit.exe => Datei ist digital signiert C:\Windows\explorer.exe => Datei ist digital signiert C:\Windows\SysWOW64\explorer.exe => Datei ist digital signiert C:\Windows\system32\svchost.exe => Datei ist digital signiert C:\Windows\SysWOW64\svchost.exe => Datei ist digital signiert C:\Windows\system32\services.exe => Datei ist digital signiert C:\Windows\system32\User32.dll => Datei ist digital signiert C:\Windows\SysWOW64\User32.dll => Datei ist digital signiert C:\Windows\system32\userinit.exe => Datei ist digital signiert C:\Windows\SysWOW64\userinit.exe => Datei ist digital signiert C:\Windows\system32\rpcss.dll => Datei ist digital signiert C:\Windows\system32\dnsapi.dll => Datei ist digital signiert C:\Windows\SysWOW64\dnsapi.dll => Datei ist digital signiert C:\Windows\system32\Drivers\volsnap.sys => Datei ist digital signiert LastRegBack: 2015-08-12 11:02 ==================== Ende von Ergebnis ============================ Code:
ATTFilter Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version:13-08-2015 durchgeführt von Kris (2015-08-13 23:28:55) Gestartet von C:\Users\Kris\Downloads Start-Modus: Normal ========================================================== ==================== Konten: ============================= Administrator (S-1-5-21-262824916-1322527339-1189251063-500 - Administrator - Disabled) Gast (S-1-5-21-262824916-1322527339-1189251063-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-262824916-1322527339-1189251063-1003 - Limited - Enabled) Kris (S-1-5-21-262824916-1322527339-1189251063-1001 - Administrator - Enabled) => C:\Users\Kris UpdatusUser (S-1-5-21-262824916-1322527339-1189251063-1000 - Limited - Enabled) => C:\Users\UpdatusUser ==================== Sicherheits-Center ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.) AV: Kaspersky Internet Security (Enabled - Up to date) {179979E8-273D-D14E-0543-2861940E4886} AS: Kaspersky Internet Security (Enabled - Up to date) {ACF8980C-0107-DEC0-3FF3-1313EF89023B} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Spybot - Search and Destroy (Enabled - Up to date) {9BC38DF1-3CCA-732D-A930-C1CA5F20A4B0} FW: Kaspersky Internet Security (Enabled) {2FA2F8CD-6D52-D016-2E1C-81546ADD0FFD} ==================== Installierte Programme ====================== (Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.) ABBYY FineReader 9.0 Sprint (HKLM-x32\...\ABBYY FineReader 9.0 Sprint) (Version: 9.01.513.58212 - ABBYY) ABBYY FineReader 9.0 Sprint (x32 Version: 9.01.513.58212 - ABBYY) Hidden Acer Backup Manager (HKLM-x32\...\InstallShield_{0B61BBD5-DA3C-409A-8730-0C3DC3B0F270}) (Version: 3.0.0.99 - NTI Corporation) Acer Crystal Eye Webcam (HKLM-x32\...\InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}) (Version: 1.0.1904 - CyberLink Corp.) Acer Crystal Eye Webcam (x32 Version: 1.0.1904 - CyberLink Corp.) Hidden Acer ePower Management (HKLM-x32\...\{3DB0448D-AD82-4923-B305-D001E521A964}) (Version: 6.00.3008 - Acer Incorporated) Acer eRecovery Management (HKLM-x32\...\{7F811A54-5A09-4579-90E1-C93498E230D9}) (Version: 5.00.3502 - Acer Incorporated) Acer Games (HKLM-x32\...\WildTangent acer Master Uninstall) (Version: 1.0.2.5 - WildTangent) Acer Registration (HKLM-x32\...\Acer Registration) (Version: 1.04.3503 - Acer Incorporated) Acer ScreenSaver (HKLM-x32\...\Acer Screensaver) (Version: 1.1.0519.2011 - Acer Incorporated) Acer Updater (HKLM-x32\...\{EE171732-BEB4-4576-887D-CB62727F01CA}) (Version: 1.02.3500 - Acer Incorporated) ActiveX контрола на Windows Live Mesh за отдалечени връзки (HKLM-x32\...\{B3BA4D1C-23EF-4859-9C11-1B2CCB7FADBB}) (Version: 15.4.5722.2 - Microsoft Corporation) ActiveX-kontroll för fjärranslutningar för Windows Live Mesh (HKLM-x32\...\{376D59B1-42D9-4FA2-B6CC-E346B6BE14F5}) (Version: 15.4.5722.2 - Microsoft Corporation) Adobe Flash Player 14 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 14.0.0.145 - Adobe Systems Incorporated) Adobe Flash Player 18 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 18.0.0.209 - Adobe Systems Incorporated) Adobe Reader XI (11.0.03) - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AB0000000001}) (Version: 11.0.03 - Adobe Systems Incorporated) Agatha Christie - Death on the Nile (x32 Version: 2.2.0.98 - WildTangent) Hidden Amazon Kindle (HKU\S-1-5-21-262824916-1322527339-1189251063-1001\...\Amazon Kindle) (Version: - Amazon) Amazon Music (HKU\S-1-5-21-262824916-1322527339-1189251063-1001\...\Amazon Amazon Music) (Version: 3.0.0.564 - Amazon Services LLC) ANNO 1503 (HKLM-x32\...\{EBBB1DEF-8878-4CB8-BC0D-1196B30E7527}) (Version: - ) Apple Application Support (HKLM-x32\...\{46F044A5-CE8B-4196-984E-5BD6525E361D}) (Version: 2.3.6 - Apple Inc.) Apple Mobile Device Support (HKLM\...\{439760BC-7737-4386-9B1D-A90A3E8A22EA}) (Version: 3.4.1.2 - Apple Inc.) Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.) Backup Manager V3 (x32 Version: 3.0.0.99 - NTI Corporation) Hidden Bejeweled 2 Deluxe (x32 Version: 2.2.0.95 - WildTangent) Hidden Bing Bar (HKLM-x32\...\{C28D96C0-6A90-459E-A077-A6706F4EC0FC}) (Version: 7.0.765.0 - Microsoft Corporation) Bonjour (HKLM\...\{CA0D2F09-F811-48D4-843E-C87696C6A9D9}) (Version: 3.0.0.2 - Apple Inc.) Broadcom Card Reader Driver Installer (HKLM\...\{4710662C-8204-4334-A977-B1AC9E547819}) (Version: 14.8.2.2 - Broadcom Corporation) Broadcom NetLink Controller (HKLM\...\{C91DCB72-F5BB-410D-A91A-314F5D1B4284}) (Version: 14.8.4.1 - Broadcom Corporation) Chuzzle Deluxe (x32 Version: 2.2.0.95 - WildTangent) Hidden clear.fi (HKLM-x32\...\InstallShield_{2637C347-9DAD-11D6-9EA2-00055D0CA761}) (Version: 1.0.1720.00 - CyberLink Corp.) clear.fi (x32 Version: 1.0.1517_36458 - CyberLink Corp.) Hidden clear.fi (x32 Version: 1.0.1720.00 - CyberLink Corp.) Hidden clear.fi (x32 Version: 9.0.7709 - CyberLink Corp.) Hidden clear.fi Client (HKLM-x32\...\{43AAE145-83CF-4C96-9A5E-756CEFCE879F}) (Version: 1.00.3500 - Acer Incorporated) Control ActiveX de Windows Live Mesh para conexiones remotas (HKLM-x32\...\{04668DF2-D32F-4555-9C7E-35523DCD6544}) (Version: 15.4.5722.2 - Microsoft Corporation) Control ActiveX del Windows Live Mesh per a connexions remotes (HKLM-x32\...\{76C064E2-BB99-4453-8FDA-42BC01AD0734}) (Version: 15.4.5722.2 - Microsoft Corporation) Control ActiveX Windows Live Mesh pentru conexiuni la distanță (HKLM-x32\...\{260E3D78-94E6-47EC-8E29-46301572BB1E}) (Version: 15.4.5722.2 - Microsoft Corporation) Controle ActiveX do Windows Live Mesh para Conexões Remotas (HKLM-x32\...\{39B3184E-0BFB-40FA-ADDC-E7E2D535CDA9}) (Version: 15.4.5722.2 - Microsoft Corporation) Contrôle ActiveX Windows Live Mesh pour connexions à distance (HKLM-x32\...\{55D003F4-9599-44BF-BA9E-95D060730DD3}) (Version: 15.4.5722.2 - Microsoft Corporation) Controlo ActiveX do Windows Live Mesh para Ligações Remotas (HKLM-x32\...\{E54EEB5D-41ED-40FE-B4A8-8565DB81469B}) (Version: 15.4.5722.2 - Microsoft Corporation) Crazy Chicken Kart 2 (x32 Version: 2.2.0.97 - WildTangent) Hidden D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden Dolby Advanced Audio v2 (HKLM-x32\...\{B9E70C7A-9F85-4A39-A4A3-BFA3C3BF7613}) (Version: 7.2.7000.4 - Dolby Laboratories Inc) DriveImage XML (Private Edition) (HKLM-x32\...\{F7E1CA14-B39D-452A-960B-39423DDDD933}) (Version: 2.50.000 - Runtime Software) Druckerdeinstallation für EPSON SX620FW Series (HKLM\...\EPSON SX620FW Series) (Version: - SEIKO EPSON Corporation) eBay Worldwide (HKLM-x32\...\{D3E5A972-9A15-427D-AE78-8181A5FD943C}) (Version: 2.2.0409 - OEM) Epson FAX Utility (HKLM-x32\...\{0CBE6C93-CB2E-4378-91EE-12BE6D4E2E4A}) (Version: 1.10.00 - SEIKO EPSON CORPORATION) Epson PC-FAX Driver (HKLM-x32\...\EPSON PC-FAX Driver 2) (Version: - ) EPSON Scan (HKLM-x32\...\EPSON Scanner) (Version: - Seiko Epson Corporation) EPSON SX620FW Series Handbuch (HKLM-x32\...\EPSON SX620FW Series Manual) (Version: - ) EPSON SX620FW Series Netzwerk-Handbuch (HKLM-x32\...\EPSON SX620FW Series Network Guide) (Version: - ) EpsonNet Print (HKLM-x32\...\{3E31400D-274E-4647-916C-2CACC3741799}) (Version: 2.5.00 - SEIKO EPSON CORPORATION) EpsonNet Setup 3.3 (HKLM-x32\...\{C9D8A041-2963-4B31-8FFC-1500F3DB9293}) (Version: 3.3a - SEIKO EPSON CORPORATION) FATE (x32 Version: 2.2.0.97 - WildTangent) Hidden FileZilla Client 3.6.0.2 (HKU\S-1-5-21-262824916-1322527339-1189251063-1001\...\FileZilla Client) (Version: 3.6.0.2 - FileZilla Project) Final Drive: Nitro (x32 Version: 2.2.0.95 - WildTangent) Hidden Formant ActiveX programu Windows Live Mesh odpowiedzialny za obsługę połączeń zdalnych (HKLM-x32\...\{B04A0E2F-1E4C-4E61-B18E-3B2BD6779CA7}) (Version: 15.4.5722.2 - Microsoft Corporation) Fotogalerija Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden FUSSBALL MANAGER 08 (HKLM-x32\...\FUSSBALL MANAGER 08) (Version: - Electronic Arts) Galeria de Fotografias do Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Galería fotográfica de Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Galeria fotogràfica del Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Galeria fotografii usługi Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Galerie de photos Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Galerie foto Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Identity Card (HKLM-x32\...\Identity Card) (Version: 1.00.3501 - Acer Incorporated) Insaniquarium Deluxe (x32 Version: 2.2.0.97 - WildTangent) Hidden Intel(R) Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1007 - Intel Corporation) Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 7.0.0.1144 - Intel Corporation) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 8.15.10.2418 - Intel Corporation) Intel(R) Rapid Storage Technology (HKLM-x32\...\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: 10.5.0.1026 - Intel Corporation) iTunes (HKLM\...\{997C9EC4-B53D-479D-81B7-0AEC8D174BA1}) (Version: 10.4.1.10 - Apple Inc.) IZArc 4.1.7 (HKLM-x32\...\{97C82B44-D408-4F14-9252-47FC1636D23E}_is1) (Version: 4.1.7 - Ivan Zahariev) Java 8 Update 25 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218025F0}) (Version: 8.0.250 - Oracle Corporation) JavaFX 2.1.1 (HKLM-x32\...\{1111706F-666A-4037-7777-211328764D10}) (Version: 2.1.1 - Oracle Corporation) Jewel Match 3 (x32 Version: 2.2.0.97 - WildTangent) Hidden Jewel Quest Solitaire (x32 Version: 2.2.0.95 - WildTangent) Hidden John Deere Drive Green (x32 Version: 2.2.0.95 - WildTangent) Hidden Junk Mail filter update (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Kaspersky Internet Security (HKLM-x32\...\InstallWIX_{8ED07EBD-22AD-415A-B71E-C1AD86862C2E}) (Version: 15.0.1.415 - Kaspersky Lab) Kaspersky Internet Security (x32 Version: 15.0.1.415 - Kaspersky Lab) Hidden Kontrola Windows Live Mesh ActiveX za daljinske veze (HKLM-x32\...\{19CBDE24-2761-49A5-816B-D2BA65D0CA8D}) (Version: 15.4.5722.2 - Microsoft Corporation) Kontrolnik Windows Live Mesh ActiveX za oddaljene povezave (HKLM-x32\...\{CA227A9D-09BE-4BFB-9764-48FED2DA5454}) (Version: 15.4.5722.2 - Microsoft Corporation) Launch Manager (HKLM-x32\...\LManager) (Version: 5.1.7 - Acer Inc.) Malwarebytes Anti-Malware Version 2.1.8.1057 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.1.8.1057 - Malwarebytes Corporation) Mesh Runtime (x32 Version: 15.4.5722.2 - Microsoft Corporation) Hidden Microsoft .NET Framework 4.5.1 (Deutsch) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1031) (Version: 4.5.50938 - Microsoft Corporation) Microsoft .NET Framework 4.5.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.51209 - Microsoft Corporation) Microsoft Mathematics-Add-In (32 Bit) (HKLM-x32\...\{E2C98732-F973-4985-A9C5-DC06178E16EE}) (Version: 2.0.041222.01 - Microsoft Corporation) Microsoft Office Klick-und-Los 2010 (HKLM-x32\...\Office14.Click2Run) (Version: 14.0.4763.1000 - Microsoft Corporation) Microsoft Office Outlook Connector (HKLM-x32\...\{95140000-0081-0407-0000-0000000FF1CE}) (Version: 14.0.6123.5001 - Microsoft Corporation) Microsoft Office Professional 2010 (HKLM-x32\...\Office14.SingleImage) (Version: 14.0.7015.1000 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.40728.0 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (HKLM-x32\...\{770657D0-A123-3C07-8E44-1C83EC895118}) (Version: 8.0.50727.4053 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation) Microsoft Visual Studio 2010-Tools für Office-Laufzeit (x64) Language Pack - DEU (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - DEU) (Version: 10.0.50903 - Microsoft Corporation) Mozilla Firefox 40.0 (x86 de) (HKLM-x32\...\Mozilla Firefox 40.0 (x86 de)) (Version: 40.0 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 40.0.0.5697 - Mozilla) Mystery of Mortlake Mansion (x32 Version: 2.2.0.98 - WildTangent) Hidden MyWinLocker (Version: 4.0.14.27 - Egis Technology Inc.) Hidden MyWinLocker 4 (x32 Version: 4.0.14.27 - Egis Technology Inc.) Hidden MyWinLocker Suite (HKLM-x32\...\InstallShield_{17DF9714-60C9-43C9-A9C2-32BCAED44CBE}) (Version: 4.0.14.18 - Egis Technology Inc.) MyWinLocker Suite (x32 Version: 4.0.14.18 - Egis Technology Inc.) Hidden newsXpresso (HKLM-x32\...\InstallShield_{613C0AC5-3A67-4B94-8B13-9176AD83F5BF}) (Version: 1.0.0.40 - esobi Inc.) newsXpresso (x32 Version: 1.0.0.40 - esobi Inc.) Hidden Norton Online Backup (HKLM-x32\...\{40A66DF6-22D3-44B5-A7D3-83B118A2C0DC}) (Version: 2.1.17869 - Symantec Corporation) NTI Media Maker 9 (HKLM-x32\...\InstallShield_{D3D5C4E8-040F-4C6F-8105-41D43CF94F44}) (Version: 9.0.2.8942 - NTI Corporation) NTI Media Maker 9 (x32 Version: 9.0.2.8942 - NTI Corporation) Hidden NVIDIA Grafiktreiber 268.00 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 268.00 - NVIDIA Corporation) NVIDIA PhysX (HKLM-x32\...\{B9DB4C76-01A4-46D5-8910-F7AA6376DBAF}) (Version: 9.10.0514 - NVIDIA Corporation) Ovládací prvek ActiveX platformy Windows Live Mesh pro vzdálená připojení (HKLM-x32\...\{B6190387-0036-4BEB-8D74-A0AFC5F14706}) (Version: 15.4.5722.2 - Microsoft Corporation) Ovládací prvok ActiveX programu Windows Live Mesh pre vzdialené pripojenia (HKLM-x32\...\{C2FD7DB5-FE30-49B6-8A2F-C5652E053C31}) (Version: 15.4.5722.2 - Microsoft Corporation) PDFCreator (HKLM-x32\...\{0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}) (Version: 1.5.0 - Frank Heindörfer, Philip Chinery) Penguins! (x32 Version: 2.2.0.95 - WildTangent) Hidden PhotoScape (HKLM-x32\...\PhotoScape) (Version: - ) Plants vs. Zombies - Game of the Year (x32 Version: 2.2.0.95 - WildTangent) Hidden Poczta usługi Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Podstawowe programy Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Polar Bowler (x32 Version: 2.2.0.97 - WildTangent) Hidden Pošta Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Prison Tycoon (HKLM-x32\...\Prison Tycoon) (Version: 1.0.0.7 - Valu Soft) QuickTime 7 (HKLM-x32\...\{111EE7DF-FC45-40C7-98A7-753AC46B12FB}) (Version: 7.75.80.95 - Apple Inc.) Raccolta foto di Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6339 - Realtek Semiconductor Corp.) Renesas Electronics USB 3.0 Host Controller Driver (HKLM-x32\...\InstallShield_{5442DAB8-7177-49E1-8B22-09A049EA5996}) (Version: 2.0.34.0 - Renesas Electronics Corporation) Renesas Electronics USB 3.0 Host Controller Driver (x32 Version: 2.0.34.0 - Renesas Electronics Corporation) Hidden Safari (HKLM-x32\...\{C779648B-410E-4BBA-B75B-5815BCEFE71D}) (Version: 5.34.57.2 - Apple Inc.) Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{DE28B448-32E8-4E8F-84F0-A52B21A49B5B}) (Version: - Microsoft) Shredder (Version: 2.0.8.9 - Egis Technology Inc.) Hidden Shredder (x32 Version: 2.0.8.9 - Egis Technology Inc.) Hidden Sid Meier's Civilization 4 Complete (HKU\S-1-5-21-262824916-1322527339-1189251063-1001\...\{30D1F3D2-54CF-481D-A005-F94B0E98FEEC}) (Version: 1.74 - Firaxis Games) Sid Meier's Civilization V (HKLM-x32\...\Steam App 8930) (Version: - 2K Games, Inc.) SiSoftware Sandra Lite 2012.SP1c (HKLM\...\{C3113E55-7BCB-4de3-8EBF-60E6CE6B2296}_is1) (Version: 18.28.2012.2 - SiSoftware) Skype™ 7.0 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.0.102 - Skype Technologies S.A.) Slingo Deluxe (x32 Version: 2.2.0.95 - WildTangent) Hidden SpeedFan (remove only) (HKLM-x32\...\SpeedFan) (Version: - ) Spybot - Search & Destroy (HKLM-x32\...\{B4092C6D-E886-4CB2-BA68-FE5A99D31DE7}_is1) (Version: 2.4.40 - Safer-Networking Ltd.) Steam (HKLM-x32\...\{048298C9-A4D3-490B-9FF9-AB023A9238F3}) (Version: 1.0.0.0 - Valve Corporation) Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 15.1.6.0 - Synaptics Incorporated) Torchlight (x32 Version: 2.2.0.97 - WildTangent) Hidden Überwachungstool für die Intel® Turbo-Boost-Technik 2.0 (HKLM\...\{B77EFA0B-9BD3-4122-9F9A-15A963B5EA24}) (Version: 2.1.23.0 - Intel) Update Installer for WildTangent Games App (x32 Version: - WildTangent) Hidden Uzak Bağlantılar İçin Windows Live Mesh ActiveX Denetimi (HKLM-x32\...\{241E7104-937A-4366-AD57-8FDDDB003939}) (Version: 15.4.5722.2 - Microsoft Corporation) Virtual Villagers 4 - The Tree of Life (x32 Version: 2.2.0.97 - WildTangent) Hidden Warcraft II BNE (HKLM-x32\...\Warcraft II BNE) (Version: - ) Wedding Dash (x32 Version: 2.2.0.95 - WildTangent) Hidden Welcome Center (HKLM-x32\...\Acer Welcome Center) (Version: 1.02.3503 - Acer Incorporated) WildTangent Games App (Acer Games) (x32 Version: 4.0.5.14 - WildTangent) Hidden Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 15.4.3555.0308 - Microsoft Corporation) Windows Live Mesh - ActiveX-besturingselement voor externe verbindingen (HKLM-x32\...\{C32CE55C-12BA-4951-8797-0967FDEF556F}) (Version: 15.4.5722.2 - Microsoft Corporation) Windows Live Mesh ActiveX Control for Remote Connections (HKLM-x32\...\{2902F983-B4C1-44BA-B85D-5C6D52E2C441}) (Version: 15.4.5722.2 - Microsoft Corporation) Windows Live Mesh ActiveX control for remote connections (HKLM-x32\...\{C5398A89-516C-4DAF-BA07-EE7949090E56}) (Version: 15.4.5722.2 - Microsoft Corporation) Windows Live Mesh ActiveX Control for Remote Connections (HKLM-x32\...\{C63A1E60-B6A4-440B-89A5-1FC6E4AC1C94}) (Version: 15.4.5722.2 - Microsoft Corporation) Windows Live Mesh ActiveX-kontroll for eksterne tilkoblinger (HKLM-x32\...\{09B7C7EB-3140-4B5E-842F-9C79A7137139}) (Version: 15.4.5722.2 - Microsoft Corporation) Windows Live Mesh ActiveX-objekt til fjernforbindelser (HKLM-x32\...\{57220148-3B2B-412A-A2E0-82B9DF423696}) (Version: 15.4.5722.2 - Microsoft Corporation) Windows Live Mesh ActiveX-vezérlő távoli kapcsolatokhoz (HKLM-x32\...\{6E29C4F7-C2C2-4B18-A15C-E09B92065F15}) (Version: 15.4.5722.2 - Microsoft Corporation) Windows Live Meshin etäyhteyksien ActiveX-komponentti (HKLM-x32\...\{4CF6F287-5121-483C-A5A2-07BDE19D8B4E}) (Version: 15.4.5722.2 - Microsoft Corporation) Zuma Deluxe (x32 Version: 2.2.0.95 - WildTangent) Hidden Zune (HKLM\...\Zune) (Version: 04.08.2345.00 - Microsoft Corporation) Στοιχείο ελέγχου ActiveX του Windows Live Mesh για απομακρυσμένες συνδέσεις (HKLM-x32\...\{F665F3B8-01B4-46A9-8E47-FF8DC2208C9F}) (Version: 15.4.5722.2 - Microsoft Corporation) Συλλογή φωτογραφιών του Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Основные компоненты Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Почта Windows Live (x32 Version: 15.4.3502.0922 - Корпорация Майкрософт) Hidden Фотоальбом Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Фотогалерия на Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Элемент управления Windows Live Mesh ActiveX для удаленных подключений (HKLM-x32\...\{BCB0D6F7-7EAB-4009-A6F2-8E0E7F317773}) (Version: 15.4.5722.2 - Microsoft Corporation) גלריית התמונות של Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden פקד ActiveX של Windows Live Mesh עבור חיבורים מרוחקים (HKLM-x32\...\{9D4C7DFA-CBBB-4F06-BDAC-94D831406DF0}) (Version: 15.4.5722.2 - Microsoft Corporation) بريد Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden عنصر تحكم ActiveX الخاص بـ Windows Live Mesh للاتصالات البعيدة (HKLM-x32\...\{E18B30AA-6E2D-480C-B918-AF61009F4010}) (Version: 15.4.5722.2 - Microsoft Corporation) معرض صور Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden ตัวควบคุม ActiveX ใน Windows Live Mesh สำหรับการเชื่อมต่อระยะไกล (ไทย) (HKLM-x32\...\{A2EDAEEB-C981-46D5-8163-CF8F5F640EEE}) (Version: 15.4.5722.2 - Microsoft Corporation) 適用遠端連線的 Windows Live Mesh ActiveX 控制項 (HKLM-x32\...\{622DE1BE-9EDE-49D3-B349-29D64760342A}) (Version: 15.4.5722.2 - Microsoft Corporation) ==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Wiederherstellungspunkte ========================= 28-07-2015 10:53:23 Windows Update 28-07-2015 23:28:50 Windows Update 02-08-2015 11:03:07 Windows Update 06-08-2015 10:34:08 Windows Update 10-08-2015 09:58:08 Windows Update 13-08-2015 00:23:19 Windows Update ==================== Hosts Inhalt: =============================== (Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.) 2009-07-14 04:34 - 2009-06-10 23:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) ============= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) Task: {1518B86F-D05C-4311-AEDF-277C69C3F515} - System32\Tasks\clear.fiAgent => C:\Program Files (x86)\Acer\clear.fi\MVP\clear.fiAgent.exe [2011-05-20] (CyberLink Corp.) Task: {294B81D7-7A5C-45FC-B3FA-84ADD3325BA1} - System32\Tasks\Microsoft\Windows\Application Experience\ProgramDataUpdater => Rundll32.exe invagent.dll,RunUpdate -noappraiser Task: {326717C7-4CC3-4523-9002-37EC8635E412} - System32\Tasks\Adobe ARM => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-05-11] (Adobe Systems Incorporated) Task: {3B169C6C-75E3-45E9-BD6B-CEF4F2DA2F72} - System32\Tasks\PMMUpdate => C:\Program Files\EgisTec IPS\PMMUpdate.exe [2011-03-29] (Egis Technology Inc.) Task: {5C710D0A-C456-4B99-9C72-9C8D11D4B3C7} - System32\Tasks\clear.fi => C:\Program Files (x86)\Acer\clear.fi\MVP\clear.fi.exe [2011-05-20] (Acer Incorporated) Task: {65886FC5-8685-4E98-9785-221399A111E9} - System32\Tasks\Adobe Reader Speed Launcher => C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe Task: {81217CAA-3FE7-470A-80CC-58A28038F211} - System32\Tasks\DMREngine => C:\Program Files (x86)\Acer\clear.fi\MVP\.\Kernel\DMR\DMREngine.exe [2011-05-20] (CyberLink) Task: {8F0BECC8-C05E-4C76-AF62-8853F482490B} - System32\Tasks\{A1752E45-252B-4FC9-A9F1-66411B395080} => pcalua.exe -a D:\SETUP.EXE -d D:\ Task: {9CE06E33-4936-467A-99C8-21D988E3C38A} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Scan the system => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDScan.exe [2014-06-24] (Safer-Networking Ltd.) Task: {A115C201-3DAB-4D8A-8DD7-4BADE1EB2A84} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Check for updates => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe [2014-06-27] (Safer-Networking Ltd.) Task: {D3E7AAD6-9919-4C20-AE11-2CF58FB3122F} - System32\Tasks\EgisUpdate => C:\Program Files\EgisTec IPS\EgisUpdate.exe [2011-03-29] (Egis Technology Inc.) Task: {D7F8FE3D-7B9A-4DE6-9DE3-91C0FD872A8D} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Refresh immunization => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDImmunize.exe [2014-06-24] (Safer-Networking Ltd.) (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.) ==================== Geladene Module (Nicht auf der Ausnahmeliste) ============== 2010-01-02 16:42 - 2010-01-02 16:42 - 00098304 _____ () C:\Program Files (x86)\FileZilla FTP Client\fzshellext_64.dll 2009-01-22 01:45 - 2009-01-22 01:45 - 01401856 _____ () C:\Program Files (x86)\EgisTec MyWinLocker\x64\LIBEAY32.dll 2012-12-04 23:32 - 2012-07-20 15:39 - 02469888 _____ () C:\Program Files (x86)\IZArc\IZArcCM64.dll 2014-08-30 18:12 - 2014-08-30 18:12 - 01269952 _____ () C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\kpcengine.2.3.dll 2011-04-24 03:29 - 2011-04-24 03:29 - 00465640 _____ () C:\Program Files (x86)\NTI\Acer Backup Manager\sqlite3.dll 2011-04-24 03:29 - 2011-04-24 03:29 - 01081664 _____ () C:\Program Files (x86)\NTI\Acer Backup Manager\ACE.dll 2011-04-24 03:29 - 2011-04-24 03:29 - 00125760 _____ () C:\Program Files (x86)\NTI\Acer Backup Manager\MailConverter32.dll 2015-08-13 17:44 - 2014-05-13 12:04 - 00109400 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\snlThirdParty150.bpl 2015-08-13 17:44 - 2014-05-13 12:04 - 00416600 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\DEC150.bpl 2015-08-13 17:44 - 2014-05-13 12:04 - 00167768 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\snlFileFormats150.bpl 2015-08-13 17:44 - 2012-08-23 10:38 - 00574840 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\sqlite3.dll 2015-08-13 17:44 - 2012-04-03 17:06 - 00565640 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\av\BDSmartDB.dll 2011-05-20 11:13 - 2011-05-20 11:13 - 00206216 _____ () C:\Program Files (x86)\Acer\clear.fi\MVP\Kernel\DMR\CLNetMediaDMA.dll 2014-10-16 15:41 - 2014-10-16 15:41 - 00172544 _____ () C:\Windows\assembly\NativeImages_v2.0.50727_32\IsdiInterop\c152a64e30c5b94894d75ac86aa7aad2\IsdiInterop.ni.dll 2011-08-12 10:21 - 2011-04-30 09:28 - 00059904 _____ () C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IsdiInterop.dll 2014-08-30 18:12 - 2014-11-20 12:36 - 00332584 _____ () C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\FFExt\online_banking@kaspersky.com\nponlinebanking.dll 2014-08-30 18:12 - 2014-11-20 12:36 - 00459048 _____ () C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\FFExt\content_blocker@kaspersky.com\npcontentblocker.dll 2014-08-30 18:12 - 2014-11-20 12:36 - 00587048 _____ () C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\FFExt\virtual_keyboard@kaspersky.com\npvkplugin.dll 2015-07-15 22:08 - 2015-07-15 22:08 - 17448624 _____ () C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_18_0_0_209.dll ==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) ========= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.) ==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.) ==================== EXE Verknüpfungen (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.) ==================== Internet Explorer Vertrauenswürdig/Eingeschränkt =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.) ==================== Andere Bereiche ============================ (Aktuell gibt es keinen automatisierten Fix für diesen Bereich.) HKU\S-1-5-21-262824916-1322527339-1189251063-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Kris\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 10.0.0.138 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Windows Firewall ist aktiviert. ==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge == (Aktuell gibt es keinen automatisierten Fix für diesen Bereich.) MSCONFIG\startupreg: Adobe ARM => "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" MSCONFIG\startupreg: Amazon Music => "C:\Users\Kris\AppData\Local\Amazon Music\Amazon Music Helper.exe" MSCONFIG\startupreg: APSDaemon => "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" MSCONFIG\startupreg: ArcadeMovieService => "C:\Program Files (x86)\Acer\clear.fi\Movie\clear.fiMovieService.exe" MSCONFIG\startupreg: BackupManagerTray => "C:\Program Files (x86)\NTI\Acer Backup Manager\BackupManagerTray.exe" -h -k MSCONFIG\startupreg: Dolby Advanced Audio v2 => "C:\Dolby PCEE4\pcee4.exe" -autostart MSCONFIG\startupreg: Epson Stylus SX620FW(Netzwerk) => C:\Windows\system32\spool\DRIVERS\x64\3\E_IATIGBE.EXE /FU "C:\Users\Kris\AppData\Local\Temp\E_S148.tmp" /EF "HKCU" MSCONFIG\startupreg: FUFAXSTM => "C:\Program Files (x86)\Epson Software\FAX Utility\FUFAXSTM.exe" MSCONFIG\startupreg: HotKeysCmds => C:\Windows\system32\hkcmd.exe MSCONFIG\startupreg: IgfxTray => C:\Windows\system32\igfxtray.exe MSCONFIG\startupreg: iTunesHelper => "C:\Program Files (x86)\iTunes\iTunesHelper.exe" MSCONFIG\startupreg: msnmsgr => "C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe" /background MSCONFIG\startupreg: Norton Online Backup => C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuClient.exe MSCONFIG\startupreg: Persistence => C:\Windows\system32\igfxpers.exe MSCONFIG\startupreg: Power Management => C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe MSCONFIG\startupreg: QuickTime Task => "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime MSCONFIG\startupreg: Steam => "E:\Spiele\Steam\Steam.exe" -silent MSCONFIG\startupreg: SuiteTray => "C:\Program Files (x86)\EgisTec MyWinLockerSuite\x86\SuiteTray.exe" MSCONFIG\startupreg: SunJavaUpdateSched => "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" MSCONFIG\startupreg: Zune Launcher => "C:\Program Files\Zune\ZuneLauncher.exe" ==================== Firewall Regeln (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) FirewallRules: [{DCD0764F-F2FC-4692-AC00-6182656DB809}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe FirewallRules: [{E9B97517-DFAA-447B-81DA-A324A90DC5B5}] => (Allow) C:\Program Files\Common Files\mcafee\mcsvchost\McSvHost.exe FirewallRules: [{206D17A3-0E47-4E5E-A791-E070EEE3C58E}] => (Allow) C:\Program Files\Common Files\mcafee\mcsvchost\McSvHost.exe FirewallRules: [{4C66A1DB-2E1D-4DA4-8163-41FAE4C345F5}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe FirewallRules: [{3888A507-1516-4ED1-821E-977521D6B78C}] => (Allow) LPort=2869 FirewallRules: [{31121F76-DD69-40E4-89B8-C263E364B915}] => (Allow) LPort=1900 FirewallRules: [{70A03D02-C530-4568-B384-44A71E4A26EC}] => (Allow) C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe FirewallRules: [{2440E1B4-BA41-497F-9494-B7F27A366469}] => (Allow) C:\Program Files (x86)\Windows Live\Mesh\MOE.exe FirewallRules: [{008D549B-1138-4B96-A806-6663B6ADF4BC}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe FirewallRules: [{501A0238-8668-4D5A-A47A-44AED3808E55}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe FirewallRules: [{DE60B046-3F8F-42FD-8BB3-9685C4C620C4}] => (Allow) C:\Program Files (x86)\Acer\clear.fi\MVP\clear.fi.exe FirewallRules: [{66A83454-45C5-4E40-954B-D3D4E1A06F24}] => (Allow) C:\Program Files (x86)\Acer\clear.fi\MVP\clear.fiAgent.exe FirewallRules: [{5F599C0B-A6C5-4A5C-8964-0AB7DA63AB6A}] => (Allow) C:\Program Files (x86)\Acer\clear.fi\MVP\Kernel\CLML\CLMLSvc.exe FirewallRules: [{B9F0BA9F-6E72-4E24-B5FF-1966A68D11AA}] => (Allow) C:\Program Files (x86)\Acer\clear.fi\MVP\Kernel\DMR\DMREngine.exe FirewallRules: [{D7E11B14-4845-46F3-BCC9-57694B8E8E04}] => (Allow) C:\Program Files (x86)\Acer\clear.fi\MVP\Kernel\DMR\DMREngine.exe FirewallRules: [{6F983765-AB85-4DEB-98EE-419EDFA9AC95}] => (Block) C:\Program Files (x86)\Acer\clear.fi\MVP\Kernel\DMR\DMREngine.exe FirewallRules: [{AB534C3B-9B71-488C-8623-A78E6D7D20D6}] => (Allow) C:\Program Files (x86)\Acer\clear.fi\Movie\TouchMovie.exe FirewallRules: [{16DAC731-11C4-4551-B743-C60F3D31CAC4}] => (Allow) C:\Program Files (x86)\Acer\clear.fi\Movie\TouchMovieService.exe FirewallRules: [{0F554F09-26AE-47A4-B382-EF723442EC1E}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{761109E6-F792-41B2-906D-2F0D3E8F8BCC}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{CAB7C3E0-1638-4249-BD63-5C46C9814587}] => (Allow) C:\Program Files (x86)\iTunes\iTunes.exe FirewallRules: [{5093C363-4A8F-485D-80D8-26A9FB84B940}] => (Allow) C:\Program Files (x86)\EpsonNet\EpsonNet Setup\tool10\ENEasyApp.exe FirewallRules: [{CCD54A46-D59F-4B1F-B1D0-C408184C140D}] => (Allow) C:\Program Files (x86)\EpsonNet\EpsonNet Setup\tool10\ENEasyApp.exe FirewallRules: [{4C09937D-E661-4768-89C9-85D635E81364}] => (Allow) C:\Program Files\SiSoftware\SiSoftware Sandra Lite 2012.SP1c\RpcAgentSrv.exe FirewallRules: [{9B0EAC11-C4EE-4724-A0A4-EA04152E359D}] => (Allow) %ProgramFiles%\Zune\Zune.exe FirewallRules: [{AD705649-E8B2-4CD7-869F-FE14A9B3B971}] => (Allow) %ProgramFiles%\Zune\ZuneNSS.exe FirewallRules: [{822CE9B1-7E3B-40F8-A16E-6478CA47687D}] => (Allow) %ProgramFiles%\Zune\ZuneNSS.exe FirewallRules: [{1EC86722-ADC5-42D9-9E50-215957B8564C}] => (Allow) %ProgramFiles%\Zune\ZuneNSS.exe FirewallRules: [{61B1B376-9A1D-4F0D-B869-D261C8EAB204}] => (Allow) %ProgramFiles%\Zune\ZuneNSS.exe FirewallRules: [{F1D112B0-D4A5-4600-BD8B-981A803E728D}] => (Allow) %ProgramFiles%\Zune\ZuneNSS.exe FirewallRules: [{37A1E45E-7AE3-448D-85C8-D502C83224F0}] => (Allow) %ProgramFiles%\Zune\ZuneNSS.exe FirewallRules: [{7947403B-8CBA-44FB-B6E5-E599C24E4EC9}] => (Allow) %ProgramFiles%\Zune\ZuneNSS.exe FirewallRules: [{EC5A3046-8B16-41E8-B953-A0A1367C8F22}] => (Allow) %ProgramFiles%\Zune\ZuneNSS.exe FirewallRules: [TCP Query User{DDD18997-1632-4390-ABED-59A4A74DBBB4}C:\program files (x86)\java\jre7\bin\java.exe] => (Allow) C:\program files (x86)\java\jre7\bin\java.exe FirewallRules: [UDP Query User{CCA9D285-0019-485F-A81B-8CE24E4FC752}C:\program files (x86)\java\jre7\bin\java.exe] => (Allow) C:\program files (x86)\java\jre7\bin\java.exe FirewallRules: [{F3EB9AEB-B3A7-4EE8-9B97-88C621935CA3}] => (Allow) E:\Spiele\Steam\Steam.exe FirewallRules: [{6CCD3EA4-DE21-4A40-B445-6554FA58262D}] => (Allow) E:\Spiele\Steam\Steam.exe FirewallRules: [TCP Query User{680ACDF5-200E-49FB-96A0-FAC7A0AC26DA}E:\spiele\steam\steamapps\common\sid meier's civilization v\civilizationv.exe] => (Block) E:\spiele\steam\steamapps\common\sid meier's civilization v\civilizationv.exe FirewallRules: [UDP Query User{BB45D3B1-11B4-4768-883B-0A3FE2EBAF29}E:\spiele\steam\steamapps\common\sid meier's civilization v\civilizationv.exe] => (Block) E:\spiele\steam\steamapps\common\sid meier's civilization v\civilizationv.exe FirewallRules: [{AC4186D7-E934-4204-9EB0-8DDE682846C1}] => (Allow) C:\Program Files\SiSoftware\SiSoftware Sandra Lite 2012.SP1c\WNt500x64\RpcSandraSrv.exe FirewallRules: [TCP Query User{2FE5177A-BB17-4E85-B77A-C65CE74B661E}E:\spiele\steam\steamapps\common\sid meier's civilization v\civilizationv.exe] => (Block) E:\spiele\steam\steamapps\common\sid meier's civilization v\civilizationv.exe FirewallRules: [UDP Query User{E45401B1-994E-43C7-B718-D45F6354EC84}E:\spiele\steam\steamapps\common\sid meier's civilization v\civilizationv.exe] => (Block) E:\spiele\steam\steamapps\common\sid meier's civilization v\civilizationv.exe FirewallRules: [{89FE9F95-2F51-4728-887C-CD7F3A1D8A64}] => (Allow) E:\Spiele\Steam\SteamApps\common\Sid Meier's Civilization V\Launcher.exe FirewallRules: [{88B509E8-47A0-43AB-A6D1-DF4DADB45DE3}] => (Allow) E:\Spiele\Steam\SteamApps\common\Sid Meier's Civilization V\Launcher.exe FirewallRules: [{45A400A7-B9AF-4869-996D-E3B44E8148C8}] => (Allow) E:\Spiele\Steam\SteamApps\common\Sid Meier's Civilization V\Launcher.exe FirewallRules: [{375A30AD-519F-440E-9F7C-2933171DB831}] => (Allow) E:\Spiele\Steam\SteamApps\common\Sid Meier's Civilization V\Launcher.exe FirewallRules: [{2F7DF12E-0150-4BB5-91FA-BB94EDC9D1D3}] => (Allow) E:\Spiele\Steam\Steam.exe FirewallRules: [{B90B6130-6C67-4D2A-A288-506268B6C140}] => (Allow) E:\Spiele\Steam\Steam.exe FirewallRules: [{3A0A43B6-9CC8-4376-875A-A3A3785EAC59}] => (Allow) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\WebKit2WebProcess.exe FirewallRules: [{4D1F220A-6429-46E6-B186-C88E2C2A99A1}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{0ECE1F68-908C-4990-BAF8-C40DAE9B87A1}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{ED0A8107-777B-43BE-B714-258FE9EF543E}] => (Allow) E:\Spiele\Civilization4\Civilization4.exe FirewallRules: [{E8AF3B10-445F-4C2C-95ED-AAD9ECB5D94B}] => (Allow) E:\Spiele\Civilization4\Civilization4.exe FirewallRules: [{E884D376-E90A-443C-AEB6-A6D712EFCDA1}] => (Allow) E:\Spiele\Civilization4\Warlords\Civ4Warlords.exe FirewallRules: [{71AE2B11-001A-4827-BE5F-0C73F4363CA2}] => (Allow) E:\Spiele\Civilization4\Warlords\Civ4Warlords.exe FirewallRules: [{32C685D3-D801-4700-BC37-839F76491DDF}] => (Allow) E:\Spiele\Civilization4\Beyond the Sword\Civ4BeyondSword.exe FirewallRules: [{4585BCD4-F468-43BE-8107-ED694D386D37}] => (Allow) E:\Spiele\Civilization4\Beyond the Sword\Civ4BeyondSword.exe StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe] => Enabled:Spybot - Search & Destroy tray access StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe] => Enabled:Spybot-S&D 2 Scanner Service StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe] => Enabled:Spybot-S&D 2 Updater StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe] => Enabled:Spybot-S&D 2 Background update service ==================== Fehlerhafte Geräte im Gerätemanager ============= ==================== Fehlereinträge in der Ereignisanzeige: ========================= Applikationsfehler: ================== Error: (08/13/2015 09:42:56 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/13/2015 06:41:00 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Programm SDFiles.exe, Version 2.4.40.135 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: 5dc Startzeit: 01d0d5e635842ee1 Endzeit: 5 Anwendungspfad: C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFiles.exe Berichts-ID: 0adad5bf-41da-11e5-a541-b870f4ee45a6 Error: (08/13/2015 06:05:58 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Programm SDFiles.exe, Version 2.4.40.135 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: e64 Startzeit: 01d0d5e1a403984b Endzeit: 16 Anwendungspfad: C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFiles.exe Berichts-ID: 29478ffd-41d5-11e5-a541-b870f4ee45a6 Error: (08/13/2015 05:02:16 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/13/2015 10:01:55 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/12/2015 09:09:23 PM) (Source: Application Error) (EventID: 1005) (User: ) Description: Aus einem der folgenden Gründe kann nicht auf die Datei "" zugegriffen werden: Es besteht ein Problem mit der Netzwerkverbindung, dem Datenträger mit der gespeicherten Datei bzw. den auf dem Computer installierten Speichertreibern, oder der Datenträger fehlt. Das Programm Kaspersky Anti-Virus wurde wegen dieses Fehlers geschlossen. Programm: Kaspersky Anti-Virus Datei: Der Fehlerwert ist im Abschnitt "Zusätzliche Dateien" aufgelistet. Benutzeraktion 1. Öffnen Sie die Datei erneut. Diese Situation ist eventuell ein temporäres Problem, das selbstständig behoben wird, wenn das Programm erneut ausgeführt wird. 2. Wenn Sie weiterhin nicht auf die Datei zugreifen können und - diese sich im Netzwerk befindet, dann sollte der Netzwerkadministrator überprüfen, dass kein Netzwerkproblem besteht und dass eine Verbindung mit dem Server hergestellt werden kann. - diese sich auf einem Wechseldatenträger, wie z. B. einer Diskette oder einer CD, befindet, überprüfen Sie, ob der Datenträger richtig in den Computer eingelegt ist. 3. Überprüfen und reparieren Sie das Dateisystem, indem Sie CHKDSK ausführen. Klicken Sie dazu im Menü "Start" auf "Ausführen", geben Sie CMD ein, und klicken Sie auf "OK". Geben Sie an der Eingabeaufforderung CHKDSK /F ein, und drücken Sie die EINGABETASTE. 4. Stellen Sie die Datei von einer Sicherungskopie wieder her, wenn das Problem weiterhin besteht. 5. Überprüfen Sie, ob andere Dateien auf demselben Datenträger geöffnet werden können. Falls dies nicht möglich ist, ist der Datenträger eventuell beschädigt. Wenden Sie sich an den Administrator oder den Hersteller der Computerhardware, um weitere Unterstützung zu erhalten, wenn es sich um eine Festplatte handelt. Zusätzliche Daten Fehlerwert: 00000000 Datenträgertyp: 0 Error: (08/12/2015 09:09:23 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: avp.exe, Version: 15.0.1.415, Zeitstempel: 0x5401ce54 Name des fehlerhaften Moduls: klavasyswatch.dll.000000000012e400-01cff8786c05c8c5-01d0a37db48e, Version: 2.3.5.1414, Zeitstempel: 0x5568d872 Ausnahmecode: 0xc0000096 Fehleroffset: 0x0018b4ea ID des fehlerhaften Prozesses: 0x898 Startzeit der fehlerhaften Anwendung: 0xavp.exe0 Pfad der fehlerhaften Anwendung: avp.exe1 Pfad des fehlerhaften Moduls: avp.exe2 Berichtskennung: avp.exe3 Error: (08/12/2015 09:36:37 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/11/2015 11:10:31 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: plugin-container.exe, Version: 39.0.3.5696, Zeitstempel: 0x55c33d81 Name des fehlerhaften Moduls: mozalloc.dll, Version: 39.0.3.5696, Zeitstempel: 0x55c32c73 Ausnahmecode: 0x80000003 Fehleroffset: 0x00001aa1 ID des fehlerhaften Prozesses: 0x1008 Startzeit der fehlerhaften Anwendung: 0xplugin-container.exe0 Pfad der fehlerhaften Anwendung: plugin-container.exe1 Pfad des fehlerhaften Moduls: plugin-container.exe2 Berichtskennung: plugin-container.exe3 Error: (08/11/2015 11:10:30 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: plugin-container.exe, Version: 39.0.3.5696, Zeitstempel: 0x55c33d81 Name des fehlerhaften Moduls: mozalloc.dll, Version: 39.0.3.5696, Zeitstempel: 0x55c32c73 Ausnahmecode: 0x80000003 Fehleroffset: 0x00001aa1 ID des fehlerhaften Prozesses: 0x844 Startzeit der fehlerhaften Anwendung: 0xplugin-container.exe0 Pfad der fehlerhaften Anwendung: plugin-container.exe1 Pfad des fehlerhaften Moduls: plugin-container.exe2 Berichtskennung: plugin-container.exe3 Systemfehler: ============= Error: (08/13/2015 10:43:37 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Der Dienst "Peernetzwerk-Gruppenzuordnung" ist vom Dienst "Peer Name Resolution-Protokoll" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde: %%-2140993535 Error: (08/13/2015 10:43:37 PM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: Der Dienst "Peer Name Resolution-Protokoll" wurde mit folgendem Fehler beendet: %%-2140993535 Error: (08/13/2015 10:43:37 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Der Dienst "Peernetzwerk-Gruppenzuordnung" ist vom Dienst "Peer Name Resolution-Protokoll" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde: %%-2140993535 Error: (08/13/2015 10:43:37 PM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: Der Dienst "Peer Name Resolution-Protokoll" wurde mit folgendem Fehler beendet: %%-2140993535 Error: (08/13/2015 10:43:37 PM) (Source: PNRPSvc) (EventID: 102) (User: ) Description: 0x80630801 Error: (08/13/2015 10:43:37 PM) (Source: PNRPSvc) (EventID: 102) (User: ) Description: 0x80630801 Error: (08/13/2015 09:43:31 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Der Dienst "Peernetzwerk-Gruppenzuordnung" ist vom Dienst "Peer Name Resolution-Protokoll" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde: %%-2140993535 Error: (08/13/2015 09:43:31 PM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: Der Dienst "Peer Name Resolution-Protokoll" wurde mit folgendem Fehler beendet: %%-2140993535 Error: (08/13/2015 09:43:31 PM) (Source: Service Control Manager) (EventID: 7001) (User: ) Description: Der Dienst "Peernetzwerk-Gruppenzuordnung" ist vom Dienst "Peer Name Resolution-Protokoll" abhängig, der aufgrund folgenden Fehlers nicht gestartet wurde: %%-2140993535 Error: (08/13/2015 09:43:31 PM) (Source: Service Control Manager) (EventID: 7023) (User: ) Description: Der Dienst "Peer Name Resolution-Protokoll" wurde mit folgendem Fehler beendet: %%-2140993535 Microsoft Office: ========================= Error: (08/13/2015 09:42:56 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/13/2015 06:41:00 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: SDFiles.exe2.4.40.1355dc01d0d5e635842ee15C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFiles.exe0adad5bf-41da-11e5-a541-b870f4ee45a6 Error: (08/13/2015 06:05:58 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: SDFiles.exe2.4.40.135e6401d0d5e1a403984b16C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFiles.exe29478ffd-41d5-11e5-a541-b870f4ee45a6 Error: (08/13/2015 05:02:16 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/13/2015 10:01:55 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/12/2015 09:09:23 PM) (Source: Application Error) (EventID: 1005) (User: ) Description: Kaspersky Anti-Virus000000000 Error: (08/12/2015 09:09:23 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: avp.exe15.0.1.4155401ce54klavasyswatch.dll.000000000012e400-01cff8786c05c8c5-01d0a37db48e2.3.5.14145568d872c00000960018b4ea89801d0d4d18a84bbd2C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\avp.exeC:\ProgramData\Kaspersky Lab\AVP15.0.1\Bases\Cache\klavasyswatch.dll.000000000012e400-01cff8786c05c8c5-01d0a37db48e6bb3a3efef39-4125-11e5-b929-b870f4ee45a6 Error: (08/12/2015 09:36:37 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/11/2015 11:10:31 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: plugin-container.exe39.0.3.569655c33d81mozalloc.dll39.0.3.569655c32c738000000300001aa1100801d0d47910853629C:\Program Files (x86)\Mozilla Firefox\plugin-container.exeC:\Program Files (x86)\Mozilla Firefox\mozalloc.dll65c0ddcb-406d-11e5-a1bd-b870f4ee45a6 Error: (08/11/2015 11:10:30 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: plugin-container.exe39.0.3.569655c33d81mozalloc.dll39.0.3.569655c32c738000000300001aa184401d0d47913cb1e9eC:\Program Files (x86)\Mozilla Firefox\plugin-container.exeC:\Program Files (x86)\Mozilla Firefox\mozalloc.dll64c255d1-406d-11e5-a1bd-b870f4ee45a6 CodeIntegrity: =================================== Date: 2015-03-10 12:18:03.285 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\ELAMBKUP\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2015-03-10 12:18:03.285 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\ELAMBKUP\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2015-03-10 12:18:03.275 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\ELAMBKUP\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2015-03-10 12:18:03.265 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\KLELAMX64\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2015-03-10 12:18:03.265 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\KLELAMX64\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2015-03-10 12:18:03.255 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\KLELAMX64\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2015-03-07 13:14:38.942 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\ELAMBKUP\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2015-03-07 13:14:38.939 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\ELAMBKUP\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2015-03-07 13:14:38.936 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\ELAMBKUP\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2015-03-07 13:14:38.920 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\KLELAMX64\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. ==================== Speicherinformationen =========================== Processor: Intel(R) Core(TM) i7-2670QM CPU @ 2.20GHz Prozentuale Nutzung des RAM: 44% Installierter physikalischer RAM: 8043.86 MB Verfügbarer physikalischer RAM: 4441.26 MB Summe virtueller Speicher: 16085.92 MB Verfügbarer virtueller Speicher: 12219.42 MB ==================== Laufwerke ================================ Drive c: (Acer) (Fixed) (Total:602.41 GB) (Free:457.94 GB) NTFS Drive d: (CIV4_COMPLETE) (CDROM) (Total:2.54 GB) (Free:0 GB) UDF Drive e: (Spiele) (Fixed) (Total:78.12 GB) (Free:68.22 GB) NTFS ==================== MBR & Partitionstabelle ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 698.6 GB) (Disk ID: 3855C932) Partition 1: (Not Active) - (Size=18 GB) - (Type=27) Partition 2: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=602.4 GB) - (Type=07 NTFS) Partition 4: (Not Active) - (Size=78.1 GB) - (Type=OF Extended) ==================== Ende von Ergebnis ============================ |
13.08.2015, 22:57 | #6 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Kaspersky findet angebliche Trojaner, Malwarebytes und Spybot nicht Ist rel. unauffällig. Bitte mal mit MBAR fortfahren: Malwarebytes Anti-Rootkit (MBAR) Downloade dir bitte Malwarebytes Anti-Rootkit und speichere es auf deinem Desktop.
Starte keine andere Datei in diesem Ordner ohne Anweisung eines Helfers
__________________ --> Kaspersky findet angebliche Trojaner, Malwarebytes und Spybot nicht |
13.08.2015, 23:13 | #7 |
| Kaspersky findet angebliche Trojaner, Malwarebytes und Spybot nicht Noch vor der Installation bekomm ich die Nachricht: "Registry value "AppInit_Dlls" has been found, which may be caused by rootkit activity. Note: Press No, if you're not sure. If the tool crasher or terminates unexpectedly during a system scan, restart the tool an press Yes should appear this mesage again. Do you want to remove this value and restart the tool? Yes oder No? Was soll ich da auswählen? |
13.08.2015, 23:27 | #8 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Kaspersky findet angebliche Trojaner, Malwarebytes und Spybot nicht Da auf 'no' für nein klicken
__________________ Logfiles bitte immer in CODE-Tags posten |
14.08.2015, 00:06 | #9 |
| Kaspersky findet angebliche Trojaner, Malwarebytes und Spybot nicht MBAR findet auch nichts, allerdings meldet Kaspersky bei meiner Freundin wohl auch Troajner seit heute, gleicher Name, gleicher Ordner. Wir haben beide gestern Nacht Windows Updates laufen gehabt, das kommt von der uhrzeit zu 00:43 hin.. Kann das irgendwas damit zu tun haben? |
14.08.2015, 08:25 | #10 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Kaspersky findet angebliche Trojaner, Malwarebytes und Spybot nicht Was haben Windows-Update mit dem Firefox-Cache zu tun? Adware/Junkware/Toolbars entfernen Alte Versionen von adwCleaner und falls vorhanden JRT vorher löschen, danach neu runterladen auf den Desktop! Virenscanner jetzt vor dem Einsatz dieser Tools bitte komplett deaktivieren! 1. Schritt: adwCleaner Downloade Dir bitte AdwCleaner auf deinen Desktop.
2. Schritt: JRT - Junkware Removal Tool Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
__________________ Logfiles bitte immer in CODE-Tags posten |
14.08.2015, 09:36 | #11 |
| Kaspersky findet angebliche Trojaner, Malwarebytes und Spybot nicht AdW Cleaner: Code:
ATTFilter # AdwCleaner v4.208 - Bericht erstellt 14/08/2015 um 10:13:57 # Aktualisiert 09/07/2015 von Xplode # Datenbank : 2015-08-12.1 [Server] # Betriebssystem : Windows 7 Home Premium Service Pack 1 (x64) # Benutzername : Kris - KRIS-PC # Gestarted von : C:\Users\Kris\Desktop\AdwCleaner_4.208.exe # Option : Löschen ***** [ Dienste ] ***** ***** [ Dateien / Ordner ] ***** Ordner Gelöscht : C:\Users\Kris\AppData\Roaming\dvdvideosoftiehelpers Ordner Gelöscht : C:\Users\Kris\AppData\Roaming\pdfforge Datei Gelöscht : C:\Users\Public\Desktop\eBay.lnk Datei Gelöscht : C:\Users\Kris\AppData\Roaming\Mozilla\Firefox\Profiles\fzohv65g.default\user.js ***** [ Geplante Tasks ] ***** ***** [ Verknüpfungen ] ***** ***** [ Registrierungsdatenbank ] ***** Schlüssel Gelöscht : HKCU\Software\OCS Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{EE171732-BEB4-4576-887D-CB62727F01CA} Daten Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings [ProxyOverride] - *.local ***** [ Internetbrowser ] ***** -\\ Internet Explorer v11.0.9600.17937 -\\ Mozilla Firefox v40.0 (x86 de) ************************* AdwCleaner[R0].txt - [1380 Bytes] - [14/08/2015 10:09:15] AdwCleaner[S0].txt - [1254 Bytes] - [14/08/2015 10:13:57] ########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [1313 Bytes] ########## Code:
ATTFilter ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Junkware Removal Tool (JRT) by Malwarebytes Version: 7.5.6 (08.10.2015:1) OS: Windows 7 Home Premium x64 Ran by Kris on 14.08.2015 at 10:23:29,46 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ ~~~ Services ~~~ Tasks Successfully deleted: [Task] C:\Windows\system32\tasks\EgisUpdate ~~~ Registry Values ~~~ Registry Keys ~~~ Files Successfully deleted: [File] C:\Windows\SysWOW64\sho3095.tmp Successfully deleted: [File] C:\Windows\SysWOW64\sho5279.tmp Successfully deleted: [File] C:\Windows\SysWOW64\sho67D7.tmp Successfully deleted: [File] C:\Windows\SysWOW64\sho8EB3.tmp Successfully deleted: [File] C:\Windows\SysWOW64\sho9424.tmp Successfully deleted: [File] C:\Windows\SysWOW64\shoA8C2.tmp Successfully deleted: [File] C:\Windows\SysWOW64\shoB0CE.tmp Successfully deleted: [File] C:\Windows\SysWOW64\shoC8F0.tmp ~~~ Folders Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{00088974-02A2-4216-B04A-86AD0CD8E94F} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{001E93E0-9B00-4E36-B496-6E873A5EC6AB} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{0035780C-E302-47C0-ACAB-808EB525E3A2} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{00482AED-A3BE-4475-A7DA-2098EFBB0DAD} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{00693A51-2228-478B-AD64-EDE0793110E2} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{00D40E5F-5C4D-40C7-B299-16ED04BF7C3B} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{01077C1C-0B7E-4917-B276-51BA75202E03} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{0130A73E-00A0-4E59-BBCE-F4AD64DB0D19} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{0135B9F4-FD07-45DF-B521-D5A28A007626} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{01A92B2B-13EC-4BCD-BACC-39A8057DFBF9} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{01BD66CB-7E85-4F00-BFD4-0A18CCCCBA7D} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{01E498B4-9F08-409A-9A17-09DA075FD537} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{021EEED2-2642-4125-8EC0-C3B316CD2C6F} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{02265021-39FB-4610-A579-D31E08BD0A87} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{0238AA09-365A-49D6-AAAC-44D2B33C97FD} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{025F86F5-CF75-41D2-A1DD-C2C4CFF37A01} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{029035F5-7E2A-47BD-9234-B47BF89E9D6F} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{029267FE-8C23-44AC-A713-8C675A1316BC} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{02AB6AD7-7A77-4C96-BE63-65D1D9343280} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{02D7BB04-39A1-45B2-BAED-ECEE5C903E80} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{0300F245-866C-438E-829C-F59ED47DE7A6} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{035A188D-8BC3-41EC-9D80-7B741AF3FFDC} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{038B0826-7262-4981-8AB5-74292A55DB09} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{0393DA7C-A51B-4389-8035-F44FC483D398} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{03E7538F-B4D9-4145-90BA-1484E987FFA2} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{04468E20-3FE2-4C2C-B191-BC47D350B67A} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{04A3EF68-F239-48D5-A05E-CCC6035F9270} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{04A55182-5718-48DB-8D3D-0FA559013A9A} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{04D3C73F-C85F-4BE3-8B05-67E92633E8E8} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{051A82E7-5646-4060-8895-D17B6061E275} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{05243194-40EA-4A8A-86BC-3892FC97E27A} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{053F455A-5015-48E5-9789-EE752DD61005} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{0609E404-CBA7-40FB-AFE5-904D9A2463C2} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{060C4600-A243-4A99-B179-582B7B3F089A} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{0648AEAE-88A9-45C0-8C58-C006AE00FEA5} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{066270CA-638F-4412-B335-F9F56FDC8153} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{06B6B70F-642C-453C-A4A2-875D037B3984} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{06E0EC40-44ED-4D41-BEA6-A230E5B6F905} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{0700BA8A-8A5C-42B2-BB30-1DDDCDA612CA} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{0707C3A4-4FB1-474A-830B-00B916B4795A} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{07297D55-85B4-42CA-90C5-6A6CAA0877A8} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{072A776C-C306-42E2-A0E5-6C9D8B64FC1A} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{0744419C-84BB-4209-A56B-A5A4B2FD7F8D} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{07970F80-38D6-4299-95CE-5E673875EAFF} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{081A4865-F9DF-477E-B8A8-4986797E3972} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{081D8E22-148D-47B0-8858-BDBDE498E123} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{0867B505-F977-4144-ADE5-470CCA52ABF1} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{08865635-3702-4C1E-9ECA-16BE3AE015D1} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{089ED69D-6995-4DD2-90D2-40AB31A5B893} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{09271567-2A8C-4083-AE49-C3DFAF33F780} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{09918CFC-0A78-4A48-9E26-80BDAEB1E15D} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{0A1E6DE3-D0C4-42A2-B436-11990A61CD14} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{0A63AC21-CE87-46DC-85CD-6FBF8D098B82} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{0A97826F-D9B1-47B8-9EAE-4F7689F54D2D} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{0AB9D917-5247-44ED-AC61-3A35236225DF} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{0AF73988-4906-424E-88A0-87360B1BDB4D} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{0AF9A1B3-4907-46D3-8C60-F79B6D8FCC35} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{0AFB2835-6CC7-478F-A4B7-12B77F64825A} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{0B0F99FB-CF1D-47A4-A6D2-19E5D0B53C6C} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{0B4DB669-9566-405B-B24A-9715B7544206} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{0B74B57D-BBF0-4BDF-984E-0D0ECC07CCD1} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{0B87A2AA-9E8D-4C7B-8042-0E29B373EB64} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{0BB3A76F-4CDE-4EF9-A6CB-522C5264755E} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{0C3CB27C-EC07-4B84-B30B-DD9AAF26E219} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{0C6F4F63-EAD4-4DD2-86B7-5B073D8FEC76} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{0C826C73-1EA8-4C99-962A-B1907525FF2F} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{0CAEF1AE-BC06-4C28-97B5-93D2ACED29AB} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{0CCCFB3E-9288-4D33-9072-AEB2F4526142} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{0CF0A177-2C51-4316-9686-50A77CCC9AE0} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{0D189A0E-0CA9-4595-885C-4F337AB61897} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{0D29BABA-C869-41A2-AE80-A253486E1285} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{0D45CDCA-EACB-4854-9EE9-6EDA7C0BC054} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{0D4B7C8A-E531-4E09-BB14-96D16873B5FA} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{0DA6A976-3B38-40E6-B87A-F84C3747C109} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{0DBE0535-D742-44A6-92DE-65DA30F9BD2F} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{0DBEFA60-3098-4EC0-B6F4-859D84ECFFF3} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{0E40984D-0D1D-450E-BE22-95C71DBA5804} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{0E521B5C-6E52-40D6-9658-FF75AF306D13} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{0E5903D7-709F-4B32-BFA3-0ECD01464651} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{0E6658FA-F347-4459-8437-3B06E1338979} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{0EF3F913-4C8B-494C-B157-D9781EB06F5E} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{0EF8FEAB-A73D-4D62-99C4-8AA03C0D294A} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{0F7C351C-F02A-41E4-8EE2-C364BEFA9DE1} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{102E560B-61C8-46AB-AD90-2A665429FFF8} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{10437E47-4EEE-4336-9DE3-AD5BBDC29799} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{107EB958-3075-45A5-A479-3C36CB490F9E} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{112003C1-D376-4C75-A4EB-A0C47D4BBED2} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{116E2845-0C33-4457-B0E5-150D30439C85} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{118E1D1B-1DE6-498B-808D-E16BBCC3FC6C} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{11CBF913-371F-48AF-97B8-9F4A78E6367D} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{12668180-48EE-4D67-A53C-2951A805A729} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{12AEA833-060D-47F5-9026-8722364F6FB5} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{12EB11C1-9A0A-49A4-8A93-2A41199D0BC7} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{12F22644-53B0-42A0-AC12-EFC393A07D91} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{12FF0B43-EEB4-4293-913E-5A4EF71A1FE6} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{13517913-5FC5-4E4A-A904-BBAE525905E9} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{136C7676-9546-4612-A45D-C2CC186DEB62} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{136CB4C6-0D11-4B50-BFB5-E2FDDB2B6F83} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{13B6144E-A56C-4CF5-B6FA-47A831A46DF1} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{14266C11-12D5-481E-90F3-B5AEB0A3BA06} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{146A9778-1FC8-4E1F-B207-FD30A52C6DC1} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{147B8714-7A94-403D-974F-15F22386A022} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{148164BD-EF65-46AF-975F-65B12B284936} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{14970307-C206-4A71-9E57-6C05C3306E8A} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{14EEF1FD-192E-4156-A16F-67CECF5988F6} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{14F6C715-01D2-49CD-BB31-54C53EABF0A6} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{152D95D7-C5E6-43A2-B9A9-DD705DA93C32} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{1593BA60-9128-42A2-B91D-AE2ABB83FE47} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{15B00560-5278-41F1-964D-A1697E6DA020} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{15BCB8E5-C805-4B95-A076-3CCE728132F8} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{15BF9918-B413-43D9-85A4-E49D64CFC1D7} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{1608E0F2-C87E-4EF0-8A3F-67D141268848} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{16109D4E-C860-48E2-8A4A-70A6441F2EAD} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{16AAF680-C2A5-41D4-A2FB-1C1B69AB4955} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{16C69825-6B3C-40A8-9575-F281BB3C46D2} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{1796EA1C-A6FD-4790-858D-B2155E6327D7} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{17A2C5CD-7611-4D10-94C8-C597C371A3D3} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{17C0FA3A-99B5-4E4C-B849-872F18E944A6} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{17E1A0E2-4DE0-4102-A12D-F455D054825D} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{18C1109D-1433-4BAE-8195-7D0DE5EB47B0} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{18D2D32D-0B92-43E9-8531-00983E161952} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{18EF2EBE-A63D-4B80-8A04-A35916F18ACC} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{1900F541-D52C-46F3-97F6-E994285800BB} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{19096B61-E828-450F-AFBC-6043E37FF13D} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{194E427F-EBA6-457A-8FA3-4C2CE0301C06} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{196147C2-A630-49D2-A7A6-77E660006CA4} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{19ADD36E-1CC7-484C-861E-E7C4FFE5530B} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{19CED681-4830-4401-80ED-398C44C617ED} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{19E48E4A-00F1-479B-A610-271B4A00FC5B} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{19EEA561-F8B7-4309-91A5-3F51775AFAEA} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{19F12106-A53D-4E78-925E-D3004610340A} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{19F2F498-90C9-4973-BD76-BF74D8BD01DC} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{1A1A6D4C-6BC6-4FC4-A122-6755F32240BE} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{1A7CCE5D-88AD-42B1-AE8C-313784625B2A} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{1AB492D2-B2A3-49E1-A70C-F003B7EC1D4F} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{1AF41B09-54FC-4BEB-A23C-56101455A916} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{1B59C70D-69B0-4DBA-ADDC-FE9D3683D7F5} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{1BA5A068-E45A-494A-AB87-E64F18079D83} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{1BD62044-6CA8-40BF-9C67-E4E7A239DBE3} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{1C6F90BF-6F21-4936-AC17-EB09B6C9461B} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{1CF35BFB-9A56-4479-A618-C7B318ADC17B} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{1D3EDD1E-002E-4D53-BC50-E4D9C1F7DF53} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{1D70A394-32FD-49E3-8071-FE5A3E7F177B} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{1DD5E0BF-86EE-43EA-A91C-D4E5263DCF28} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{1E160699-4003-404A-B4E5-6E6E95789CBD} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{1E5B548D-754A-47E2-A1B6-863736B698E9} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{1E6D09C1-F0F6-4928-A13C-F47D113EEE41} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{1E7FE88A-42A5-4726-9FF0-1655B18ABD50} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{1ECC8CFC-BA00-4291-A17B-0A077A43531F} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{1F18FABE-9053-48B2-B8B6-DD94A84744AC} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{1F1B194E-FD78-443D-957F-3ECC7626C4AE} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{1F3396C4-33F2-49EA-B149-3893ADFC8129} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{1F352B12-5073-4DCA-9861-29945DA2E132} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{1F5F6EBF-4773-4BF7-8F58-A4F158574F07} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{202D0445-0852-4BC8-B0F3-25BB2FE1D5E4} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{203A166F-FDB9-4647-9836-8178B6C85F60} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{20657C81-CE2C-48B0-AB8B-4C7671C3F0DC} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{20BEFA1D-D8CA-4ABA-B918-045647E5FE6A} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{20CBF756-0ABF-4D50-9E94-D8DD98738E5F} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{20DA214C-DB2A-4768-8B7F-697E256D0B5E} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{20F406BA-C195-4726-89F6-AAC2F09139D4} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{212D7E51-B4A8-445C-B17F-B5AB2C1394BB} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{21464B04-57B3-4E10-A837-3A8F0CC98081} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{2155F2E5-2209-4224-B800-EED4DF89EA16} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{215C4456-A711-4E1E-887B-EEE8EB0007ED} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{215F15A7-99E8-4598-A870-A79EEA6F99E4} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{21677902-11C4-43E2-B032-FE3BC50BF550} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{21C686E7-6F24-4410-8919-14EE6A73B69B} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{2217C5DB-0B11-41BA-A140-699C7F9EAA5B} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{225E1C9F-A3F6-4608-A6B4-5AE0B277EF9A} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{226DD9C8-0AD5-4780-B771-7A91F31EAC35} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{228280B4-8C03-490C-A171-82811869F99C} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{22911629-B9DD-416B-9EEA-DE6985EA83F4} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{229DB2B9-A8A8-4977-8450-CF37C87A9883} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{22A689DF-704A-43A4-BE89-2FFFF228CD7A} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{22A75A3B-22D6-4A3A-B689-8CE80F290BEB} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{22FB7FA9-6B43-4A8E-B31C-A2495193C32E} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{234DF1A8-31AE-4409-A58D-12E39FA2A27E} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{23729008-471E-46CE-A661-D471EF2E6EFD} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{23C26BF2-0CFD-4E5E-962D-C977606580D7} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{23D99D82-0FE5-4028-8CCD-33968819EDDD} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{24316412-36D4-42FE-9730-575B2D19EBF5} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{24A118F7-4F73-417E-88EE-120CA83B5A63} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{24E6B47B-D0A1-45B3-BA5B-13CA558D223D} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{24FA508B-95DB-49AE-82FE-9B5F1967362B} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{2549272A-68B1-46E9-BF21-C5CB28D01DBD} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{2554B063-B6B2-44A8-A93B-BA00A0142F13} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{2597F627-9F0B-4854-A662-3731E16B1F31} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{259FC7FA-B82F-4329-88CA-A5A655B99A25} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{25B54B09-79FB-4F84-94EB-B87A4FDD7246} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{25DA2B34-F3AA-478D-8B27-70880E99468B} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{26124FA6-AD3C-4F1F-BE1A-A5EC60629D03} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{26281160-3D92-41A5-B654-7ED57E711BBF} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{2630EA46-B2D8-48F3-BEDB-97C4F32FA123} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{26C290FD-E8EF-497A-A7B0-710F5A0EBB75} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{26D1C874-BB5E-451C-9D49-6C8124CEA932} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{272F0DDB-685F-46DA-9737-6A9689087666} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{273A4B52-FCCD-4928-A347-B1CCC179928D} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{27506070-8C99-43F2-8E00-7E093337E44B} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{2761F4C4-2480-4BFC-BFE4-330BD165335D} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{277E78F2-F1A0-47FF-8262-E5FB2BC72785} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{2832DFC9-26D6-4A5C-90F3-312C9EA0B5E8} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{283BEC91-1B51-44E5-8296-38968F2522B6} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{2869EB99-C27E-4389-978E-33FD2E859E5D} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{29054378-C770-492F-8E1B-C756C1AD5631} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{292FF73E-51DE-4F8E-8605-BAFBAC08983A} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{2935E351-23E2-4794-BC58-ABD653466A5F} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{293E603E-AC66-42C9-BBA4-245BF2474CE7} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{294EBAC8-55FD-4952-93F8-529D958A2D46} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{2950AEB0-D0B5-426F-818A-9CEF93E5651B} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{29653924-234E-4BFF-ADF3-F140E5E59588} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{29D62797-E5E8-4B32-B5B8-13F892DDC625} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{2A823ADC-3126-47CB-983B-F9326E033E3A} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{2ABE5FB8-3670-4A7D-9672-4ABDC6852018} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{2ADC20FE-C7A4-44DA-AE7E-C16DCA6F0357} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{2AE75ED5-2122-45B6-84A5-D4637000A5A8} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{2B10C19C-34EE-4A73-9A2E-03A551FEE87C} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{2BEA9221-8D81-4BC5-BD74-24C4AAD7D0E4} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{2C273336-1D0B-4B3D-BD67-9592DC53ECCF} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{2C2C8239-898A-48AC-BADA-E01886813378} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{2C4EA243-C58C-478A-A793-5E3D954E5C9F} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{2C6747F8-35AE-4614-8FD4-9707E81ACD2E} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{2C72FAFE-4BDD-49CA-9E91-D3B9A7CBA151} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{2CFF74C5-438B-406F-9F3B-771AF010D801} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{2D948B7E-4747-4F05-A20A-0986774F5575} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{2DF484B2-B13C-4AFB-B5CC-02D2E71FEFF4} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{2E8C2C25-C3C1-44D7-881B-59E4CE3FCE3D} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{2ECD5082-7721-4258-91A7-C4F220117400} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{2ED6FEFD-03A2-4AC9-9B22-483C24D64D43} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{2F6AB25D-69F0-4952-BAC7-90AEF12B1325} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{2FBB51A1-636D-4482-B84B-6CFBF99DF413} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{2FEB2E16-DDA6-4CDE-A490-C2DF181C4307} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{30C31C66-442F-4A74-BE45-F649263EF9F2} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{30D64B69-4B59-40D1-BA95-93957AE58095} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{3101B4E6-40A1-4231-A2FC-A018CC7A9E78} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{3108C1BD-F71F-464C-8BB1-7EA2264895A1} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{315788F8-117D-48B6-9263-DC0D9B6F998E} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{316983E7-27AE-4A2D-BE25-6FAE8C7E3E41} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{31AC397B-F1E2-43C8-AD13-4100D298B536} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{31C7A30D-F4A0-47BF-A3C0-D69707CF684B} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{31E2CC88-EBE3-4BB0-98F6-613C97A52DCA} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{32290216-AA73-4750-9DB1-FFA7569DC425} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{332E4C59-8EF9-4544-A2B0-03DAA047C1A2} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{333CDE4A-E5A9-4E74-9A25-6F80E410367E} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{3355E86D-189C-49F6-A01D-1576A4F22DD2} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{3360858E-88FC-44C1-90F4-81A6A330C874} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{337F5FE6-F364-4E37-AF77-246B7F7C9F9B} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{33DE5723-F679-4932-8886-1DD6F4372190} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{347DB1B7-172C-49C5-87A5-C6F13E222A60} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{347EB06A-CD41-4F4A-99D9-3307E8A05AD0} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{34ABF57B-EDB8-4658-83C4-4F6541A9E24F} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{350E3DB1-274E-4D03-81B4-24B8986CAEBF} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{350EF6AB-0A1B-42B1-9653-AF672B4CB5A4} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{351D1C0C-4AF2-471C-9712-8E45EF62B722} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{35A64C26-0DF7-4D72-9F80-8B99A9EFFAE5} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{35AD1EE9-0954-4F75-A7B0-DDF23B8B3CF6} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{36226A32-5468-4767-AE84-98C8F19FB19B} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{363A73C1-C225-46A2-9CC9-6D7826BF79DD} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{372CDC81-4768-41B4-9376-AEE405FFB95F} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{376C475D-7B48-4163-90AA-EFB060859C5D} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{378DEEDB-A3A9-4ABB-B0DE-5E325FBB4C5E} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{37C81174-1D4F-403D-B894-4578BE8F9B82} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{37FE599F-71BD-4B6C-88A5-591953B69E99} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{381BC397-AAC2-4D38-98BB-316BA5E00D69} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{3845680C-33F9-475B-AED5-4DF4B7266F94} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{38622D61-A8F0-46AB-9E1F-9AE0E637023E} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{38A55A4F-AA46-41D7-9567-0420F17DD10E} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{3928703E-1484-4B5F-8B2C-86FAFA0B6F7B} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{3950193E-1752-450D-96F0-80DAB6617FF5} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{39ACC6DF-99B9-4F95-B456-4DBD653B9065} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{39E8EB13-F9DC-4099-8A83-05F899662736} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{3A12879A-95FA-40AC-AE12-45D81DF99C6A} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{3A2ADE46-DE8B-4FE4-AEDC-044CD2F61A2D} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{3A44E707-EB5A-4764-AE1D-C566D05AAEA9} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{3AA7A49E-2974-45C6-A32C-BF3EAC57BAE5} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{3AAA0C4D-DF84-46C8-A00D-EB3EBD3C05DD} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{3AC61823-C5C4-4FA3-880E-E87762B156EE} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{3B199742-CC4D-4BAE-93F5-018F27525839} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{3B201B98-F56D-453C-8E50-723A926FB9A2} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{3B68802F-145C-40B1-9B7B-D10CCBA8B31A} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{3B917066-7050-4043-BC7D-ACAEFEE83144} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{3B9D8EA2-DA21-4D0B-BCC0-65C899B4A8DB} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{3BDA986F-2DAD-47F3-AC0F-6E75CD0B5A6F} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{3C018632-913D-4972-8617-A2555DBCF8F0} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{3C061CD6-3CE3-45F5-B5E0-87967D03671E} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{3C4CFE6F-8B4F-4814-9A2B-C778BA68F86B} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{3C94440A-5C8D-4645-B938-937698428EF1} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{3CD312D9-C190-46C4-A66E-29C261575837} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{3CE80EA1-5D6D-4EC5-B500-9A5A82BF8EC6} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{3D0633DF-D3AC-4089-AA5A-C43B80F3B252} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{3DC1EC01-138F-45D5-9629-4C96DE10811A} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{3E32BB1F-6550-401B-97ED-155824C1F52C} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{3E4508F5-0602-4AE8-B06F-70A840812AE3} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{3E61597A-5D1B-45DD-988D-2CFADC8A33B7} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{3E71B897-82F6-42C9-A7E5-B4ED085B4374} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{3E8CE0E3-C2BE-4135-9B78-DC87734735FE} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{3EC2B461-F41A-4117-9987-10D89FC6F0F1} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{3EEE53B7-5782-41D6-988C-441C42769125} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{3F38AE2C-80CA-4F33-B951-873785B845F8} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{3F8508F4-D002-4F51-9DB5-B47C4886EDBD} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{3FB02C34-9C36-499E-BB9E-4BD2848C5ED4} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{3FBED5A9-A56E-46E2-9230-1A6278950416} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{3FC75812-969C-4D73-A02E-2C10AA64083B} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{401B0704-559A-4B3C-A425-1767F119DE04} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{4023EE2C-3344-4BC2-83F4-FB0BCF799E74} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{403EF640-4D85-48C8-81C4-20391B9DAE33} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{4073B980-CBD6-425D-9AF6-97E4F0280E80} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{4078BAC8-FD34-4702-B1D8-103570830B21} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{40A66A8E-725D-4DA8-A5D0-FBDFBE585F17} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{410950E6-A278-4F0B-B0FF-8A1BFA87C4F4} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{4116BA86-16E5-46E1-8627-6AE5EF33665C} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{4137A447-8B2E-432D-A2C1-E96DEC586934} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{4146512B-5139-4BCE-9803-41795F37B08C} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{41E54E8E-27A0-451C-A7B8-B4A9CA144C45} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{4216E81A-6484-478B-9127-AE96A8C990DF} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{4244C6BA-3624-44AC-88A0-B3661FB8B138} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{4248E172-436C-4215-9AC5-F0573777AB2B} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{42E5A21E-C42B-40AC-B94F-ACB9167B5B5A} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{42EC1D1A-26AA-430A-A9B9-AEEEC4E2FF7A} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{4339A912-3043-4762-930F-9F84AE835F89} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{43A775D8-D416-4D46-8171-05A9213154CD} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{43C91A8E-4B77-4F1D-9A37-3233F28AF6C6} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{43D0C0DF-34B4-4C50-9D75-518A80F2A9E7} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{43D82549-85FE-44B2-A204-824858BCEA5E} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{4418E6AE-CBC5-4D22-94E9-7B3DCAFA3F68} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{4437D939-ADF6-470B-AED7-D809CE021F08} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{449CEDC2-4341-43FD-ABAC-BCD79456DCF1} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{44B8EF83-0225-4E5C-9ADD-D110BCC243A6} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{44D9198F-3D2B-4D64-A213-BD745E733E1B} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{4574873A-1703-4E33-BB72-4ECBCBE78F2A} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{45A75F20-5E87-4718-8DD9-CD7FA051E8CD} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{45D42D3C-45E9-42EC-A711-CE0ADB2FD29B} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{45E91B5E-94E5-404B-8F55-E4A8CCE0D9FC} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{461CECA5-13E2-4DE7-B2DB-1845568E7971} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{469EF0B2-E350-4087-9C12-9228D186927C} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{46A6BE74-6A1B-4624-9EE7-6E8D388B5AF6} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{46B4B7CE-9781-4DFD-8661-875AFCCE44EA} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{474DFA2E-FB14-4D6E-9205-ACAD02A7D518} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{4852164D-FC94-4A85-96FD-BAC2B860BF51} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{4859247D-CC80-494D-8473-B66A6B4F4147} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{48D63FE7-2B5A-4C6F-974A-60B3476CF167} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{48F41ACE-7CF9-4F68-A1AC-4A0C22148562} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{4937FC40-1EC1-4261-8D72-FBE77A5C522D} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{49395A73-4F15-4AF9-8861-66EB5373399D} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{4962A4BA-5731-47E9-A34D-0E50D5733E81} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{4968F609-527A-440C-BD6E-8A2C3D0D5876} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{4982674C-74BC-439D-8368-0991C4449B05} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{49B68B35-932A-4CAA-B4F8-3235C0517BC2} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{49D6126A-606A-4F26-8DB8-1448E8574073} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{4A3AB4D7-FC12-431B-B3E2-8BDEA66AEBC2} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{4A9A7116-1582-4721-9689-33AF32C1B21C} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{4AA3790B-345C-4D44-B9A1-A2E47764A996} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{4AB0F3F9-4BFF-46A8-B158-81BDAD3408C8} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{4AC5C53C-641D-4B00-8F39-60FCDBCCCDF3} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{4AE2DB91-13C9-4BDE-B63B-E186112815ED} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{4B04766B-D5A9-43F6-B6D5-D96D37F4EC3D} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{4B4C5754-A03E-42D2-81D7-89CF17106771} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{4B62E14D-CAA5-446F-BA72-0C089BFAEE76} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{4B67B46A-A21E-49BA-90E8-697CDCBAFD46} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{4B9A7A4E-E413-4A7C-B739-4F6760384F6F} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{4BDF8F1C-081C-4398-9A6D-966396A102DF} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{4C0688B1-8EDC-41E8-9B7B-CB4C9246BBC5} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{4C103D9C-EADC-4402-8357-88C23923EC8D} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{4C28B004-3E8F-475A-8D23-2330E96D51FC} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{4C645FB5-CB3F-4397-A9E7-F8DA0A527C39} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{4C99C000-3CB7-4C25-A4A1-2BC8454ED30A} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{4CAA7EE0-6DD0-47F9-B058-A495B55ECDA2} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{4CF90BA9-5666-4768-A0F4-1DBF661D54A1} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{4D11ADDB-7200-4540-BF52-A9DA8296737C} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{4D21A16A-43E0-4E5B-A6D4-BE29C6DA179A} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{4D4E0070-10FF-486E-9201-D0DACA90B88F} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{4D6516A1-D193-4E3C-A6C7-93A7E15730B9} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{4DDC9729-CF0A-4551-BA0A-585430423737} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{4DE4ADC3-645F-4C02-BDBB-4C8753095A28} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{4E2945AA-B218-4F32-B403-2545C0981ABD} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{4E6BA21D-4DBA-414E-88EC-74EE735499EA} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{4E9C08CC-FC88-499C-8AE6-BED19960746D} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{4F187760-B7C0-43A8-BDE6-BF55CF2E3A7A} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{4F4F895D-D3CC-4D1D-AB92-781448F7CC11} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{4F855CA0-A4F0-4F81-93AC-FABF16E3B744} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{4FBCF95F-799E-453A-A3C7-35577092584C} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{4FCB5277-6F58-4F2A-8D4B-214F27192CA3} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{4FCD0684-6D97-45BA-8365-6317EB71DABA} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{4FE32DB5-CB1A-42FE-B1A2-EEE67DB1F161} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{4FE9AB6F-C760-49D8-B9D8-FDC5BF6B57C3} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{500B6B4D-C834-4B7F-971C-B7DB4E81CDC4} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{5056E399-9620-459D-8FED-FE6DDA9B78B4} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{505DEA53-7264-492C-841F-46E3B2858F34} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{5093C219-4113-4818-B350-6E367976D483} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{5102A71D-6BEE-4802-BCF9-687469BDEDE0} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{51704C36-4309-4646-9654-1D5B90D394FF} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{5177051B-1FA1-40E4-8945-C4D70170C771} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{517BE339-DA68-40A6-9B58-7B823ED0F808} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{51A8DC53-2F1F-4BDF-81F0-981AE66EB160} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{51BC822E-6FB0-4BB1-8375-6111ACE33C50} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{51C47ECB-FF4E-4F77-BD35-0C8D1DA9EBD9} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{5206DCD9-592B-40F9-BEA2-46F98346A7BF} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{52A6F521-5784-42A5-9372-269E101C19BF} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{530137AE-E887-495A-B52F-91302422E430} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{53494B5A-9CB6-4678-A1B4-5DBE3BDC0D94} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{536C384C-6173-4D06-A61D-7277C7B78FDE} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{53A14C0D-BBD4-42F8-885E-9DD7BAF9DCD6} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{53B7F948-76DB-461E-B270-9C39826EA8E1} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{53D09DC3-8F3C-4AD7-A421-62D1C3B05EDE} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{53E560BA-62F5-4C73-AD2A-30EBDBB76957} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{542C260B-B50F-400D-A515-B987DB7589F7} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{54325641-C312-4E08-94A2-C4B9A7C0C737} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{546CD4B8-AF9C-4B18-9B56-1D4CF236E71E} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{54A16A33-354E-4AB3-A7C8-36C5758D532C} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{54A49C5C-2DA5-4DF9-99F9-925A1EF79EFD} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{55007942-B58B-4DBE-B86B-ECC865025CD0} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{551724D0-8826-4F75-8F10-0A3F4452BCCC} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{5580DDBA-D2A3-47F4-81FB-CCCFF3C2CB87} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{55A76E0D-1131-4834-9BFD-F84CC859D498} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{56015250-7EC9-4BAD-BD58-A53A9F78A3BF} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{5617F081-2FDF-41C9-BDC5-E3FB71690617} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{56E40C66-66C3-4D31-BAC0-CE4893999925} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{577C9104-8E51-4A5C-AB8F-59F6CA67E07B} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{57E89171-4238-4F62-B782-332C3F2C1A2C} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{58F07DF7-1D65-44E8-B6E6-F09A76F78D33} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{593106DA-9898-4FE1-9589-E70E89455A06} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{5941C039-7E66-4301-BEFC-EE9BE2B1F476} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{596815F8-F4A1-48A2-B5F7-FBBE12B1D4FE} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{597FB7ED-EC52-48DC-80BD-7216881886C9} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{59B04780-A112-4A65-B718-E05185BBFC66} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{59B6961F-8D7C-4851-AC42-4F58D974B05F} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{5A2075DF-705C-47B4-B875-08F849BD8FF2} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{5A37BE77-2A5B-4E58-9FD8-57FDFA6D04F8} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{5A6606D9-0AE4-4890-9E6E-2231BF04E8C0} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{5AAB8060-DC5B-4A06-A61B-28E91A807DB4} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{5ABE82DF-75CE-4907-8C92-FFDCEF25FC27} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{5ADD3E14-2EF6-4980-901C-4BCB4F56D016} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{5B26ABE1-50EE-47A2-9059-5A1CD262EC23} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{5B4D7176-98A0-4AC1-BA39-1ABB3CA04F58} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{5C1A8014-7CEA-425B-8475-38FB6D6189EF} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{5C1CD83C-C8F5-489E-B736-626659262AC2} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{5C43A3E4-DC42-4DC6-A012-CBE48A276428} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{5C4A9914-9ADA-4BE7-A3C8-9671EC91CB89} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{5C541D40-CE5B-4116-BDF3-73F0FB72F0C3} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{5CB8D323-3096-4021-9B34-8F1237E9DE21} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{5CE7ADA8-6253-4B69-9F0E-FC1A79C701E5} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{5D518E37-43FE-4AF8-BC5A-39FF78087490} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{5D5C74FD-B874-4786-AFA1-99BDA39484CF} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{5DDA75E5-11B2-4CF9-9300-7C1250ECAA29} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{5E6B8516-70FC-460C-96FA-8AD369655946} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{5ED3AF9C-31E4-4CAE-AACC-48041AAB6F10} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{5EE4ECE8-98EA-433B-BDB5-ED36BCD03A3F} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{5F1F4002-2461-451E-98C2-5E99B282DB64} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{5F5C2B38-8DC2-415E-A376-0D40DFEFD500} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{5F5E7818-9405-4048-9FED-E2B6D079EC89} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{5F9761A8-E491-4A71-B517-2F87FC871D02} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{60091117-B57B-447F-B0AB-F6546BE39568} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{602D310B-ABF4-4AE2-A30E-AE2678F9D919} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{608ECDB8-6033-4263-BA33-FE76F25C4D1D} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{60A32420-BD26-4FE3-82F5-2D15B1F77D5A} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{60F864B6-9DEB-438A-8454-13EB04FD86A7} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{612B6105-E243-429E-A492-43598F3DCA83} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{618C1BE2-48CE-440D-B91D-9C745679A7A3} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{61B780EA-CE2B-4BB0-94D9-2AFD4D360F71} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{61BE89FA-AE60-4AA6-A614-5FFC1BBAB0C9} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{61D8A624-384F-4726-BB7B-6F020D4F5D26} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{6257E3E8-B588-4943-8C0A-53EC7F44FF6E} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{628690DF-ED28-495C-99C7-2C2D6D354709} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{629CB82F-FAA6-4701-B464-0710756D39FF} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{62A111CB-E70A-4632-8941-C82075F33F79} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{62AAFA37-A184-4590-854D-1174C12A06FF} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{6347025C-C85C-42E1-9A12-974A339DA69D} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{63644A14-11DC-49F1-9D1E-032332BADACC} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{6385E2D2-C4EB-41AD-BF86-376DD0CFECB9} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{63B3A7F9-FC90-433C-997E-7C22CAFF5B59} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{63FF0080-7470-4BD9-8486-7CBBEA59193C} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{642AB53B-A37C-4AC3-83B4-56240E50B492} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{6476D97E-174A-4E43-BB97-FBDF51E50FEB} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{648ECB7F-E2ED-4CC7-964E-3335797D3060} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{649C156F-7C96-40B2-917A-9F3F28BC3E96} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{64F4779B-35FA-4A8F-B005-CEC3D90F3361} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{65560538-A17F-47CC-B65E-9CD074228A52} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{65AC4CF0-E14A-4C56-AF69-0CCE6FF71FC5} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{65E1E68F-7AB3-469C-85D3-B41C2D274D2B} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{65F67F67-FBF9-4F50-82C2-426DB0B913AE} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{660A9DA8-6942-47CC-8647-90369B144BD0} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{663383BE-3C37-4CAB-BFAF-277DC35F0972} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{66483C93-0A98-41C1-891F-0A4605586A6E} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{669D60F1-92BA-4B0F-B7AA-5F8E15D2D77D} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{674B0527-A1EF-4CD3-AC58-C5821BF383C1} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{67628C65-FC8C-485E-A006-3581E1375435} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{67763364-31FB-42BB-A792-677BD4EF704B} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{6797B95B-B4F2-4301-A674-09E458341574} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{67AAAA54-47DC-450F-96F0-6742D343142B} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{67E401A8-47BD-44D0-9183-DBDE25E6BB04} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{67FEDE6B-EA8C-4901-B51B-23747951CB6D} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{6809D767-A428-409D-8017-9A6D1D88AB86} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{681CD3D3-9FA2-41C1-A28B-F65A7A2108FF} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{6847D726-C504-4DF8-9C47-551B238BC835} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{686344D4-4EF9-4F9F-9A8B-687FB3472764} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{68E6ADC5-E5CF-46B3-9383-F89EEB1FD747} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{696168B5-0E6F-4F1A-8602-58A29A678FE8} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{697848DF-DDBA-4DF5-B91A-4EBBF9614638} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{698BC021-D638-4939-87F8-4EA692F01976} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{69BE6FAA-C9FE-4673-AB33-C42AB05A25D8} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{6A0B2991-42FD-41CA-ACD9-8D01FF26B306} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{6A54009D-F48B-4E7E-9EF1-3EB0D90707D2} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{6A6F4B78-686B-45B2-9E36-D12A9984798F} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{6A73874B-AD8F-48C4-B19D-4972B240E279} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{6A8CE3DE-E9B1-4CFC-816F-23BD6D5A86D1} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{6A8DBCE5-D43B-4312-8859-64948ED46678} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{6ABD7EE3-EA04-4A91-8408-0A5A745C3952} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{6B299B0B-DC42-4DDB-A47F-93AB3D741EA2} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{6B566825-4A8C-46A0-A7D9-F02A9CF9A750} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{6B57F048-88D1-4F95-81ED-BD301AE08C59} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{6B6F7256-96F8-4BCB-9522-DAC35B48A9A4} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{6B842479-7BE9-48BE-87BF-BEE97568C0BA} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{6BD36EF5-665B-4CD8-B55C-206CF5B2E1F3} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{6BE7B201-6CF9-46A3-A476-636405BADB5A} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{6C448F5B-56BC-446B-AD0F-C5864897C5CF} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{6C4E868F-399B-4C10-9017-05FD60FA0B9A} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{6C8B7168-E65C-4D96-B979-20A8D4876CCE} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{6C9C6E19-AA58-4A1C-A924-2BF8D0C240EA} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{6CA42372-7E8A-4994-AA87-96D381C39C9B} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{6CE57857-1F4D-4F78-8BE2-06410BF90964} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{6D0C2D38-FF7B-4AF4-9032-F6A4FB8D7A93} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{6D36CFD4-A36D-412D-9732-167A1A342F94} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{6D9546C2-E3C7-4A97-9F1D-6B0709EA1223} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{6D9B317C-A4AB-4666-9A5B-578E8BD1FB20} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{6DF5AD6C-6D90-40F6-A211-B752ADF91622} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{6F07488D-29AC-4FDB-9CFE-3EBADBF00617} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{6F12C196-2F4F-45DC-8CC8-D16781240974} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{6F1BCF4C-8AD0-4056-9C94-6FD1B39078B6} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{6F502658-28EE-426C-BCEC-D5C171CB642B} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{6F983686-BD1F-42DD-AF82-70E5407D0902} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{6F9D7594-5FEF-4E30-A17A-FEA60DBE5D7C} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{6FD01584-8F27-470A-BE71-D6D105E29F02} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{6FF5AD3D-6B4A-4599-A515-D1485436A24E} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{7064D460-63AF-4E32-96F5-DF04D9499771} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{7097050D-6BCE-4105-8A50-249C721451F2} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{710DD1D3-B6EA-49BB-A2F1-1339DC24EF81} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{71240A9D-F8A5-4856-AFB0-BFDF58473952} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{7134A6A2-F74C-4694-86D8-7743E3A1508B} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{71389B4A-811E-4254-9CED-21A21231A009} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{71919479-19D7-4A59-806A-A027CAE48270} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{71B725B7-8AA9-4A25-94C1-BC2110C8C5E1} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{71CB20AC-A681-4429-8711-04930A4C4866} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{71F25543-E7C5-4818-8BAA-9A4CA7DE8DAE} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{721DCFC6-7750-4C76-986E-E2C9FB834088} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{72730C87-8C35-46F2-880C-E0EFDD8A7C1A} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{738382D9-260B-4EB5-A243-306E0FC36BAF} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{74099448-99CC-4AE0-B78B-5ECB6F32BE8B} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{74F030BD-8D86-461C-B226-76FA8C99D7E1} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{7527CDB8-CB6C-4189-89C2-BACB8F731F67} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{75941D29-6B48-46F8-AA22-257614865EE1} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{75ABC9CF-D9A7-45ED-A6F1-D21A1515934C} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{76241779-BE5F-48FD-8B03-257EA79CB7C5} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{762E612A-B795-480A-9A8E-EB142055D4AA} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{76416823-08F6-40D5-8716-E6EA4FA1C228} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{76469EE1-AC41-4458-8E8E-A8728F6456DD} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{7652B431-549C-4185-B3A9-723CE68E8208} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{76C780C4-9C38-4251-83AD-3E83D242FE4A} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{76FDB1B9-F837-4035-B780-12F9FFEC2F0C} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{770819A4-5899-4E50-9DC6-FE76E4BA09E0} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{77554725-ED38-45A1-B6BC-B988CB98BC20} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{77980CFA-358D-414D-B08D-2A3F41D69CD2} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{77CD7E20-6818-4BA2-8358-84BD592F60A7} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{77D1B9D0-0869-4B74-AA29-FB3AFE677382} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{77FD0A05-5918-4704-BFAC-2D1A9564F6D6} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{7838EB67-8E74-4534-A002-5E1B6AF23804} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{78556E52-2C34-4497-A1A3-3E4F8AA0130B} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{7881E291-85D1-49E2-93D0-87EA1283549D} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{7887873C-AA3C-4831-B3CE-8F3162FA81F0} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{78A2B879-94FC-4C05-BED6-93A44E9A8FD1} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{7991284B-16B1-45AA-80E1-A515D81FEF26} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{7A29A122-004F-4A2D-B3EF-3427217882BA} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{7A61BE9C-40C2-42C5-B9D9-E2EA22A4CC6F} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{7A6DC94F-E241-4DC9-82DA-9E7D2DBA85B4} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{7A9E6F0D-A5C6-47BB-9009-D77B24BFF633} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{7AD6B478-65F8-4CBE-8AEA-7EB35002C921} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{7AD9A7A5-F0DF-4CB2-B856-5C04E0FA58D0} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{7AEDB141-6F63-4B61-8C47-8B42EB6C09D7} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{7B154A34-AFEE-4F62-BA4A-705FE27F5049} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{7B5E0A7D-7C99-4A08-A753-3BAB90744659} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{7B86127A-AA87-4B31-BE71-20FDE6DB9C14} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{7B89D124-F75B-445F-9D37-10AA360865AC} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{7BD45645-D355-423B-88A9-08227C6F208F} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{7C832849-9AA1-4285-B528-D189C59C7BE5} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{7C8DA13A-C0FA-4F43-9F00-4161ABB09CAD} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{7CCC39FC-6CB5-4E92-8ED4-086C3559A8C7} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{7D85A565-D891-4280-BDD8-BBDEFD80491B} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{7D9102CF-0798-45BC-825A-B1EC747A4402} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{7DFC6863-9332-417F-A1D8-C7146314F6E2} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{7E35D8A0-CAED-4C2A-A50D-DC9964CBB216} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{7E481943-4AA3-45A6-AFC9-9B471EEC2754} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{7F511C75-5EB7-4DCB-A8D6-392C62C78F0E} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{7F883AE9-ADC9-4244-8EFF-AE0EC2D63BEF} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{7F97C34A-B91D-4303-A921-8C91AFBA7063} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{7FA1C58C-06E2-4A15-BE5A-817BD649200A} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{7FA8F1BE-25B3-49C4-93B0-4CEDCDC8EE76} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{7FAD3D50-B91B-4811-BB24-C6AEC3540029} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{7FB09297-F7E5-47D0-A185-94C19C76B0A7} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{7FBE8C4D-CBEE-49BA-9B64-E4BDB2803B4C} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{8047DC69-19E4-46D4-9F0C-CCC1D76D375A} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{8099F763-D6DA-48A6-8DCD-5E70E4CEC1C3} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{80DDEB09-7225-40FA-B4D4-52DE0EB88E9E} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{80E09707-E1CD-4C72-A73F-D5EB0E68444D} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{8107880C-B934-45BA-87B4-2DFD3D70111A} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{812FDEF3-FE83-4DDF-911C-E7EC47FB6777} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{8170380B-DEAC-468D-9D93-1A914EFE4C7C} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{8189396B-F5DE-4E8B-985B-75CEE5017AF9} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{818D5944-5F32-4BAA-B76D-3D02A29943A0} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{8214319E-990A-4A17-B633-F8E407B4A33F} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{82147CA9-E342-4BA9-938F-58116CEAAC1B} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{822775F2-713B-4C40-BB0B-FC91E6EDA3D6} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{825F5715-B477-40E8-BD2F-CD1CE8672AA7} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{8263E685-7066-467B-AEA7-E4A5ACFE245B} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{829E964B-FE1E-4DF1-8BAF-B2E18C5B970D} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{82C425F9-515A-42C0-A64E-E290BE8C8E69} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{82D27B1D-446B-4C00-AB2C-6B95284D1AC6} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{831DD8D4-7862-4FB9-BD0E-A19C50EABD44} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{83236AB6-94AD-4C2A-AEBA-B0DC9560720C} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{83398003-B0EC-4373-9B68-44AC27B3A95B} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{833C6AFB-CFA6-4C3D-94E0-554AD9E74F38} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{83459048-6816-4E7F-BAC9-CECCB173A19F} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{839ED956-D29D-4158-AE88-964285D1D0C7} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{83A363D4-86B9-4F5B-8C40-66878F06301F} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{83BB7D2E-A966-470A-BA86-D1840DDDFE44} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{83D97236-CE5B-4E85-B357-1841D90D7AFB} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{84274AF5-EBF8-4161-AF6A-455831FF8FCC} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{8438B94C-1A7F-4FCF-B12E-B321C14DEA06} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{84B2312B-2CEB-4DFC-8F6B-8856BCC0E0C0} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{84BD3146-418E-4F23-B5C5-46DE6CAAC9F8} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{84C3B62D-2012-4345-8D88-B1322468ADE1} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{84EE40D8-42F5-4F39-90E1-50EF8C021325} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{8510B1F4-0082-427B-B124-BC016FF543B9} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{85946AEB-4F4B-4EB9-B501-AF6FC372438A} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{859EB126-A8A9-4EFA-B0E9-C726363556E0} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{85BADB0E-33C4-43AF-BF72-55E0D8EA33A5} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{85C7EBF5-BB14-45A1-991D-2EA43A05CDBB} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{8610D8D6-8102-42E6-9B7C-704AEE5CCD1A} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{861FF93E-C358-4B9D-A941-4840ABD8E995} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{869FF8AB-91FE-4FE1-99A6-69A827866963} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{86C125DF-9A34-4EB8-848F-7C80E531295E} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{86C4E899-7F22-4F0F-AE5A-BD0A55E337EA} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{86F6ECEF-5060-4706-B0B8-5BBF6C699578} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{871BE1D6-C4C0-4536-9B83-36231498E346} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{8723B6C6-6F32-4FD8-8578-DB0D6407A893} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{8766269B-A880-4CBB-A764-6789D96814DF} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{8776ECB5-A5D3-4949-8B81-97410856518A} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{87B85EE3-7D35-42F2-8BE3-F08FBF79E079} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{8813C47D-64D5-425E-B1B5-DF1232280B2E} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{8815FAE4-EE03-4BAA-90CF-87BD39D43800} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{881B419D-AEFA-4A86-99A0-593A0F2609DD} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{88A573BE-8157-4527-AF5A-92305328448C} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{88D1F135-B76B-4897-B86F-BD5F1661DDE1} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{88E32A83-CA2A-4295-8995-FCEC25E6C633} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{88ECA826-7E40-48E0-9638-B632687467E2} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{891F747D-E275-4D41-8500-D41382DFC282} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{89A26485-B906-40BE-9982-CA91753A6B73} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{89E203BF-B00F-42F4-A25C-78D5BB815858} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{89E9F864-D6C6-4F49-9729-1D7CE1FB628D} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{89FE67BF-2B42-456F-B763-2CDAF9EB2116} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{8A2B8A40-527B-44F4-ADB4-B07BAA431FEC} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{8A61DC53-3115-44E6-9C2A-0A23648BBEC8} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{8A7F1591-B88B-4193-A012-9A101BB0AF38} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{8A8E88D6-E0E8-42AD-AD54-045059D94FEE} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{8A9DB7C6-B746-436C-866D-1A4AF381042A} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{8B5D034B-4F3B-4452-A6EC-983F22BFEC3B} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{8B9BB29A-A9DF-4785-A504-6C8F7AE8BCB9} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{8BDEF1E3-60E3-4810-89F5-44ACDB446C9E} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{8BE34BB1-6937-41A8-AB43-C5631FE94E82} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{8BECA0A5-D21B-436A-9C8E-FF389A709578} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{8C319E11-A773-4953-B41F-A819AE372B22} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{8C491EC8-E3CC-4792-8BE8-CCD9F8CF196A} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{8C4B4A9A-E51F-43D3-AA8B-ABC74532C890} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{8CDD6CAC-65CE-4420-A336-78E4F28503A7} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{8CE35F3D-64D8-4135-890B-999FA1F76E2D} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{8CED2EB5-205F-4874-AC4A-C5F4E883F744} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{8D01C4B6-C43C-40ED-8422-57EE2E4B71B8} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{8D18B28A-169D-4797-B089-90E029C3B861} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{8D741A2C-DFF2-4BA0-91E9-750F35F04650} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{8D8C4D3D-3C21-4DC2-A883-6168ACFFDAC2} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{8DEFE3B9-F746-491B-8AA9-47AEDF0965FE} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{8E989518-FC63-48F0-99E1-2243DC416F6D} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{8EC284A4-7D57-4323-8826-A19BA7C37483} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{8EE51C5C-7612-4E20-9AD2-95DC668DAEF5} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{8F37B778-27D9-4472-9001-4FE9E38B4CB1} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{8F7C03E5-9BC7-4396-A6FA-5911BCF9AC8F} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{9006EBF7-000C-40F8-AFFB-09DB13326DB9} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{9014719F-5857-4DB7-84CD-E1234DE70C36} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{902D1F84-3F94-4FEE-9180-1076BEF715C6} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{90458DCF-62BF-4F96-9A90-32F815A59344} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{9057F8AB-CB22-4E77-9A46-99025828E6ED} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{90D01809-794D-4AED-81C4-8E21DEF35A87} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{90D4AFEA-2E99-4B05-A403-668C5572002F} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{91051205-9CEE-4067-B621-FB00053F9EA6} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{9122E77B-98D7-4596-AAE1-7A4AC6E62AFE} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{914A1F1C-467F-4EC6-83F0-79F5BC8E6E0C} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{91608471-1685-4F9C-91B6-6382D082DDD8} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{91956490-6322-4590-B5D2-EAF0DE261721} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{91D46473-8388-4A47-87B7-CDFE4FCD56EB} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{926071F2-9457-4022-A86B-D2D100F8487A} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{929FD1D4-0B06-4F7E-920F-033E67D6A90D} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{93173246-4CDC-405E-B4C6-43C8171A3068} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{9344E5A9-9A39-48CC-8F3A-3462933CD192} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{9348621D-C6BE-412C-93D4-44EFECF54056} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{93B5C41B-B24B-4721-9186-CA2D8E328D3D} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{93CAE432-8881-4225-A5EC-E1B9F3A260A2} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{9409B7D8-6AA4-4E20-9E32-B50B4D3C5EF5} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{94157260-4330-44D4-8C7C-DB7BD6AF9504} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{941A385D-384E-4B65-9421-43C54AA39BCD} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{94900A08-5057-4734-AF76-391E48849AE0} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{950B943D-8500-4441-9AD2-437D45DAE10C} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{9519777D-C6DD-4327-8D47-3ACC6D2831D5} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{954C91A6-85BD-451B-9C7E-5B43F0FF44D8} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{955B65D5-634C-4221-A297-5A47B03A0BB0} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{95780550-F6A2-489D-A84D-753DE19F552D} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{95A53607-97E1-4912-A07B-6DE6458FEE9A} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{95DDB908-56F2-447B-917E-F58FE09787CC} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{9620E614-0E91-4062-AFEC-EEB4E0845431} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{963ACD79-154B-4871-B235-F100441068C2} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{968559A1-7BFF-435D-8A0B-238DA9A352A5} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{968943BA-6EA1-4880-AD55-500D57E7B54F} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{968A9125-86FF-4D2F-A87E-B17C36480D29} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{971E3CF8-B62D-441D-B5A3-C3D580E4A50C} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{9754FE21-FBF7-443C-9580-78F7FFA75170} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{976E0DEB-BFA7-4498-9A89-E3F40C8C4C6F} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{97EFAFBF-1788-4F4B-9670-5C9DE27898FD} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{9819D417-6EB8-4CE2-83B7-1AE3647E6488} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{98359FC0-018D-4498-8562-E3150B074EB8} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{98407305-A812-4AF2-9B96-DC80A7A88295} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{997DD2A1-4B9F-4D1D-A768-B6A3D888CB4F} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{998004C7-1400-4AAE-91D1-AA5309FA76EA} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{999CEBBD-3081-436B-BEF7-6651ADC8651A} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{9A0327E1-0252-4DF3-820E-3088281E4C66} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{9A142ED5-8503-49D2-9C28-6043784DD311} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{9A66F3D5-DCAE-4346-BA71-CE66667CECB8} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{9A8009C9-A491-4898-B6D1-57E55450DBEA} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{9AF18BEB-C0DF-4759-8754-E6331BC64A5D} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{9B28153F-BFD7-465F-9ACB-C89ACB0C3DBD} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{9B6CA78A-737C-48B1-88B3-57D95F0D3156} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{9B72E247-826A-4DDA-AF1C-35AD0A19664F} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{9BBD2AA6-1DD1-40BB-9DB7-0F915B9AC916} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{9C276F23-4853-4F29-8653-04E6403E2CD3} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{9C5E192C-751D-4202-94A2-18A947CA4134} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{9CAB6A8C-5955-469B-841A-811EED721518} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{9CDFB825-07E8-47F2-B696-4BBE0ED160E1} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{9D338F98-C98B-476B-8189-4DA8BBA3EA7C} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{9DEDEECC-B620-4292-9410-1BB93C4C284D} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{9E2C7738-10AF-4B73-8CA5-FFD09B775484} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{9E42412F-321D-44B1-88AA-D80D3E920E38} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{9E4B706B-39A3-45A7-A8F7-BF9CDA092D33} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{9EF15D51-9F56-43FE-A38B-A5B801A1B05F} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{9F2C2F4C-EE0A-4C92-B537-4D2AF8C1093B} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{9F3C2C88-425E-43B0-AB48-8E21D3D4EAED} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{9F4220D9-75FD-4B9A-8324-984707F7E9CF} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{9F58BDA2-4D01-4948-B67B-6F12817752C0} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{9F70A4FD-CCBF-4E34-9191-A77E22876772} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{9FB418B3-3D02-47D5-BCDE-5E7DFF04D5E9} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{9FCC32D0-B892-4013-8338-780C6AA64D53} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{A0596DF5-7406-432E-9311-AFD273D48FB4} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{A09B8A71-24E9-4296-AAD5-B84B38667798} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{A0BDB397-C533-467A-BECC-66C359517DDC} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{A1B4D74D-D6DE-41E3-BCA4-F93C5804E738} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{A269AE92-BE70-4125-86C4-0CC9E16B3530} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{A2BB8268-E637-4977-9B3D-D0B460ED0E43} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{A2CA6521-1267-41A8-96A5-EC7BDEC32DD6} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{A2CE0B4C-7C61-45F1-B84F-3889C7FFA608} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{A2CE6CD6-5D13-4A95-926E-0FD3FF08A995} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{A399ECC7-2ADA-4CBC-B00B-B8D703C6C865} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{A3D1764D-D353-44F7-8F94-DFD1533606AF} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{A3FB658D-B5A1-419E-8386-DAC911454977} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{A4256161-5D85-48EF-8125-88D8DE91DEAA} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{A4831689-AF4A-405E-8FFB-C60938F26D6E} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{A495C88A-6788-40BF-A445-D81DFA7CF832} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{A49E89FC-A2AA-4C41-8E3B-9D1D787CC344} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{A4B060FC-90B6-41EC-A929-CF5D692297AD} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{A5047A2A-1BD4-43EC-9C46-AB8395E9A2BB} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{A531C4B6-0457-423E-BA14-904D39CD437A} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{A53B41ED-362E-44BE-ACCB-773147829765} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{A557FBE9-BF78-4EE1-8A54-D1E5A3BEA48A} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{A566FBA3-1A09-4E64-8F73-87AEE024D896} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{A57C3ED2-A9DE-4E37-BDDC-165347A68C2E} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{A5FCDE7E-AC10-44D2-9D7F-902150C6C7F6} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{A6701FA2-2C42-4018-8187-9FF0212D529E} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{A6879CC8-29B4-420E-AD38-86069498B8C2} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{A68FDBD2-8FB2-4C61-BFCD-BF43163EBF8B} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{A708339B-9975-4369-BE05-ABC60750ABA6} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{A73FFEC4-0400-4CFD-9148-05805F5EF809} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{A748EB81-C44D-459E-8BE4-E1B6FD849753} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{A75DD4C3-2DDF-4F48-BB56-B2B1BCE25F45} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{A7FAEB14-6F02-48DE-A4B8-CE101D1C9CBD} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{A8477DDE-0359-48CB-B718-973730B9E1A9} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{A89134AA-F878-440F-8027-E3BCED303D67} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{A937DD00-0980-4FE9-B691-5D3C780791DF} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{A93A1FCB-5B35-46E5-913F-BE904249B782} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{A9825FB0-997C-4911-9595-66C5074001C1} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{A995C22C-1F54-498E-A4A2-49B70A12AD72} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{AB4CECC6-0DEE-4232-A3B9-4F9483FE01E6} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{AB606917-B58E-44B5-BB1F-51423EEFE2A3} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{ABC778F1-291C-4644-A2A8-BB25F25FE063} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{AC19532F-DF83-4088-9091-589876FCFE20} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{AC6931E3-7AF8-4F72-BBD3-1668212DE9DC} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{AC7D0983-40D6-4FF5-926B-59FCC690EE95} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{AC9E6F68-912E-482D-A7E7-3F4E4BB23460} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{ACE2DD62-5DCC-4AAD-BC46-D524BB5724FD} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{ACF7DCA4-AE4A-4977-AB75-7F164C5895D7} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{AD08417A-9F4B-4424-9EBE-3BBE1F2DCD74} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{AD21FD6F-4DBC-4220-97FA-7CF3F39719F5} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{AD29F4A0-FCD1-4F48-BACF-BEB70AEC8763} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{AD43B926-4993-447F-BA92-F0C9E7CA1C72} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{AD96E6CE-3B7B-4DED-B4F7-BC8E41A9AF0E} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{ADE2BFE7-39FE-4FC2-9572-5C52A0F9DB75} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{AE0DA43F-9005-48AA-975F-292F4908FFED} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{AE3A3469-BFDF-44A9-BA6A-1FD8BCE78641} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{AE3EF3C4-F9FD-4F56-859E-1A0615C7AB40} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{AE4C9A2E-8D08-4745-A38F-EE0051E034C9} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{AEAA16C6-76A6-4B2D-A08C-A1E1ECE88EFA} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{AEDD5D26-8143-49A0-9DE2-27423EE944A9} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{AEF48073-3F8F-4032-A928-3673DDB1ED1A} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{AF0DE91F-0DF1-464F-B3AF-CA5880C97F3D} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{AF16B6C7-148C-4149-9CEF-E7A86C77D52B} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{AF5ABEA1-4712-498A-BA33-299EC438835B} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{AF5D765F-E141-48B4-A405-96F0DA4ECFE1} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{AFD74E8A-DD50-420A-87D0-84EF6EB183FC} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{B02A35E3-532D-4573-A23F-CAF6D8A7916B} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{B0417E23-5BB2-417A-BA29-49A4AD600902} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{B05CBF3D-D23D-46C2-8745-0625143DF71D} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{B086FEC6-9848-4A96-AE7E-30D87FE8CD76} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{B0929EED-4B5A-4D1E-9274-484C2E1EE7D1} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{B0AB2FE3-8128-4CF2-8671-08EEC7221F02} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{B1387BD0-2C1C-4A77-8978-0A16DB312AA3} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{B175E5F8-E86C-4177-86B0-4234D7090AA7} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{B196E943-7C37-4123-AC3D-3BA46488A8F5} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{B1A1A2C0-51A5-4713-A0E6-BA94FB43555A} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{B1EE083B-8CDE-4B5C-8C3B-44A44919BD91} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{B203EF70-110D-446D-A98B-8E478712ED96} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{B23BF38B-5606-4296-8EAB-C5F0C8108B8C} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{B25C9FDA-D069-4AC5-B7DB-D9EE6F8B3EAD} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{B328879C-2DDD-48A2-BED0-0E0A56B86007} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{B330DADA-3667-478B-B396-1362E9B9F1F0} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{B3363E17-F675-4342-8DB5-DCC98676DACD} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{B3DC14EC-AB3F-4E12-A229-FC8766891D82} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{B3E581B1-F620-47EA-B46A-6909E6C01054} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{B4B0A178-7943-4D84-BEE4-812A0FF6F285} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{B4B14695-6F9E-4552-BE34-3F02A6287036} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{B4B24CD8-A21E-4708-8FC5-EC5E6555BC3E} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{B5FE5278-C6C1-4BFD-9F6D-FEABA1151CED} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{B623E163-2EBB-4F56-B916-6B918DA58563} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{B67C123B-B23A-4FD9-ADD0-11C8A4D4C51A} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{B6A03AAB-8BB0-4072-AAC8-5934EAD09C0D} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{B6BC0FCA-0F2C-49AA-945E-487F591CD470} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{B6E64692-B071-483D-B742-59937D8819BE} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{B75D7650-FA77-4935-AE80-F9A063B016C4} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{B7EDE9D8-F7A3-4646-9412-397B0DF42999} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{B86CF245-6FD2-4877-B3FC-D2BA9987AE14} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{B89A8FFC-D818-486D-A4EB-7737911E43CD} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{B9170FFB-1427-4BC7-A0D8-071D65D87F26} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{B91943F7-1734-4D35-B726-91000235A666} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{B92F5850-9A3E-4FA3-8862-B2558D8ABA32} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{B95DCB24-4EBA-4F87-ACD5-37877BC49CC3} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{B97078C9-77A6-4076-A12B-6AEDB2B9240B} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{B9A86DB9-EFEB-4D65-8D18-59A07B9E86A8} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{B9AEFA74-B331-4FBA-A872-7ED81B0F25A5} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{B9C8A789-4D4E-4308-9791-449174362071} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{B9E9F498-020D-4C1F-A101-F65000A5D356} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{BA687B58-14E1-442D-ADF0-060CE128DD86} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{BB94FBC7-5AE4-4AB2-B3C5-9897B1CCB329} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{BBB0F7D2-D364-4F9B-BD4F-C454F46E6230} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{BBB6A925-F415-46CA-9A9D-5053A36D40C6} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{BBE05469-46F9-4D46-8F88-8573378CAB4C} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{BC241A86-BADE-48E8-B56D-96B5A5F6EB6B} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{BC3C36A9-A26F-43AC-8521-C5927F738017} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{BC945560-DCBD-4A4B-B9EE-1BD07EFB166B} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{BC9CFE16-19BB-4235-9BB1-53BBBB41CD5B} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{BD1570C3-8F91-44C9-8B45-3468303828DD} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{BD333110-36B1-41C5-8E2B-4178FD570DF8} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{BD6356B1-9AD7-49AC-A4AA-2F0B2A26092F} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{BD6B94F1-68EA-4850-B664-0E650B45422E} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{BDA065BB-32FC-4075-AB0A-1649DB76CD8A} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{BDACF7CB-EA56-4048-B231-688375B88961} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{BDE6AEBA-B4ED-4107-BB31-2E37E52AA0AA} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{BE165187-DE34-4455-AB01-707A2C6E5437} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{BE495123-7A70-44BD-A657-3FBDC123C392} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{BE617818-7DD1-4AFE-87BD-F091BCA11E1D} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{BE64B4F8-AD2B-4CA1-8A45-B894940E4ED6} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{BE6E6D49-A1E7-4C81-9262-E602B1903A68} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{BE78A9BE-F62F-44EA-A8B4-7E511B9868B0} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{BE92588B-B497-4C2A-A9D0-310E052D44A2} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{BEE81502-9322-4D28-A1D6-38EC0EEA1C66} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{BF1956F9-E630-4849-83FD-DF14D73329F6} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{BF2F4810-5638-41CE-8866-144D4023EF50} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{BF68F409-56BD-477E-BA85-8C1ACC3BEDBD} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{BFB62113-AE85-4401-B869-1FCF068CE97A} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{BFD6E864-7678-4C2A-9FC8-27C7D9C29442} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{C0127022-A8F6-493A-A5B2-EDB5C647A6F5} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{C04153BE-D8CB-4337-B97E-3F8C64D6699C} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{C04DB7F7-F576-4DAA-9B28-9F47F6C13E00} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{C0550891-8155-414E-AE64-53AAA53D7142} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{C075D73C-8975-405A-B3C3-325B7A498C6F} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{C082C35A-5CDA-4F0A-9271-066CEB87B7FB} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{C0CE46CB-0E13-40ED-AE71-E52374E79C7C} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{C0E36BC9-37C5-4CA0-9B3C-8E367338F34C} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{C1840A8E-5C04-4ADD-804D-F94114BEAF45} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{C1A10B36-2630-4398-A111-4A3B359ACE0F} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{C1AE6CC2-42BE-4673-BF4E-AB06B1AE5228} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{C1E4D805-2E58-4AAF-9984-88B1BCB1FC89} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{C21CC061-13D1-4BC9-AACF-6C95180DDA6E} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{C2822C17-E2C4-48E3-962E-E9672ECAF243} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{C2BDB330-6DF1-4AFB-B827-F26288976A78} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{C3889C99-33F8-41F8-8B1C-2E5A4101487C} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{C43173D3-8FAA-4FD8-8A43-C2824A10D984} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{C45D0B17-B6A1-4F67-8E24-466041B8DEFE} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{C48ADB4B-F800-4B96-8310-D9ABD1DE6B2B} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{C492EB94-F81F-42F7-9FE3-FE89BD476A78} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{C496BCD1-3B38-4159-A0E8-A0588744665C} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{C4B77227-2702-4A65-BCB6-1AEECB7A0FAE} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{C50416DA-7B9B-43F6-9A5B-A50F816EDFB5} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{C5143C17-F92C-4AB4-B87C-E99219002B60} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{C5B5DBAA-34CE-4C10-8D91-B9EF1229BBD4} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{C5D1DDFE-CFB3-42D0-94F8-2737CF94D3F3} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{C6297032-E7CA-4406-B3A0-89CFCF8CABD0} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{C6E973C8-5220-40E6-919E-F6CA9578A99C} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{C6EEF6D0-7C8C-4765-967F-C923BAA7F329} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{C6F3780F-1D44-4AFF-B12F-B94A50D5B246} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{C732774E-8C55-4195-A4F3-CA713B346C24} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{C7AC2BD2-F9D7-407E-982F-197F0CD3769F} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{C8406C81-C552-4093-B497-131F35D66458} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{C8E1DE3A-538C-478E-B220-D47C79C98BAC} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{C8E83401-EDE7-4262-A026-2BF3AAFC9B02} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{C91C830F-C6F1-4740-A482-B92D22924154} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{C96EA2AE-CD5D-41ED-9910-C1725DB96676} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{C974E9CD-E5AD-43B5-8B24-2EBB0F72FD3C} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{C9A87181-E9DA-4540-8D98-9C4A6A53F8B0} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{C9B00AF3-6359-41DD-A16B-CADB3A174202} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{CA771075-777B-4DF1-AEC5-DB0433C911F8} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{CA9A8898-7876-4AF0-BFE3-17CE982C6AAD} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{CAA263DF-D672-47BC-9950-2CDD7C3505BB} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{CAF7B2E2-290D-4965-9B6C-D443C543D25E} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{CB13ACE8-87DA-420D-ABF7-B9749DE13556} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{CB75146B-67FA-4EB2-8F73-755C9CB1D15A} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{CB8585D4-7BE0-4A4D-A434-C4B05176ADE8} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{CBB0E4F9-B86F-4300-8C89-EC254C850050} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{CC0437C9-AFDC-452A-AF01-A0CA3235DBE0} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{CC29A9AB-942E-40BC-B618-BC8268F81D06} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{CC35B441-C154-4254-95FF-49B8A9BDEBED} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{CC768785-E854-4F4E-822A-BE326AB8C997} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{CC9C4D57-CA95-413A-A157-0BE1F041CE56} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{CCB3E70F-68D2-484C-BB29-96A59F984453} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{CD2E75A4-C7E2-497F-924C-12D1305F01DF} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{CD328AB5-3BED-4883-93EF-371EBD547E0F} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{CD992E91-90AB-432D-8F0C-F8978A2BD41B} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{CDB0CD68-3076-498C-BD5A-ED36CD2A023A} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{CF09482E-7A62-4D41-8271-C6D4EE9CE636} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{CF165B27-C2C9-41E8-822E-3DBBEBC24F86} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{CF4A82AC-96FE-4AF0-B314-3F3E6B1FE290} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{CF6CC4E3-89EE-4BF1-89AD-BA308C2A886A} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{CF7D07E1-5585-4BBC-8D45-B8E248238D84} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{CFB60D82-E3E2-4A9E-9C45-4EB894FAD20A} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{D04E7C02-CCE4-412E-8DCF-B2193E4ED4F8} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{D0681D08-13B9-4939-A63F-D9AA52293A0C} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{D06FFF92-1098-4978-9D3F-E506D75B9436} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{D09303E3-37C9-4BD7-9B7A-756E59D4DD50} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{D0A5FC42-AB41-4BFE-B569-272B480BD7F1} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{D17485FC-8501-42C4-9681-781832F51917} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{D1771CAF-BA24-4041-8B69-66E747D03663} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{D19689F7-6A8A-460B-90AE-94780886A72F} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{D1DD8A6A-515C-46BF-B157-DD1A5DACA4E4} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{D1E4D9FE-A057-4D57-8AFF-5641FED47D47} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{D1F00AF6-CCDA-4286-9239-295D1FE41031} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{D1F7AD8A-CD5B-42E7-8C08-665F4A5595A4} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{D21429FC-3A44-4690-A4B0-7F199482AA1F} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{D2542674-3477-4E21-BDD5-0E24E6BC33FA} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{D2DD6C2B-5142-4CEC-89A5-9B878ABD27AC} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{D2E2B83C-32A1-40EE-B962-E1668BC747DE} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{D31DFB7A-3C00-4642-BABA-0DC9BAC92D1F} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{D3495C87-0ED7-4E31-9BB0-EE2F2B32244D} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{D356717F-93FE-437A-945C-8CA08B9FEAEB} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{D36F3462-5EA0-47EE-A012-D5DFAF6EE92D} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{D3853052-42DC-49C9-9A3F-163F2C6B8C1F} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{D3A31A80-13FA-4E48-B750-5C5353977413} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{D3E88F60-3888-4B20-B632-66988C79B133} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{D423EA19-59BD-437B-BC3D-09969A53DB2A} |
14.08.2015, 09:37 | #12 |
| Kaspersky findet angebliche Trojaner, Malwarebytes und Spybot nicht 2. Teil von JRT: Code:
ATTFilter Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{D42FF564-265F-4398-9F43-AD90C66AF1BB} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{D4356F0A-EDF6-4B2F-8F9A-EBBC85472272} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{D4473A8F-8850-4DC1-8E12-95A55BAF248A} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{D4D63942-BA39-43DE-8845-27E8E6A4F7A7} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{D4E13A37-5BC4-44E1-A396-F285281EFFB9} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{D4E8966E-700F-4418-A9FC-E105A31F8270} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{D54F364A-3572-43D2-84FB-ACB289C9A295} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{D5A4C407-D648-4B00-8BAA-87A438020DFB} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{D640E15D-DBE0-455A-8326-B8E39762F271} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{D64EB69F-F2BF-46E7-8711-2B70A5DA02F7} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{D669EADA-ACDB-491E-B6CE-F13A1BD5A794} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{D6897389-7B8E-4C3D-812E-16A39731C727} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{D68C3371-B09F-47B7-8BFC-EA04112D64CD} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{D6BCDCF7-4204-4C7F-8958-92DAA0D157E1} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{D6C0DFF0-77BC-4215-B04A-9B71F48A354E} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{D7287939-D713-43D9-A52E-EE5A987AC8AA} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{D78744E4-B034-4BC5-A264-1E334E4F2E7B} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{D7B970E2-8C74-4614-A9CE-BA71B65BB8E9} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{D8892D8D-626A-47BE-9FC3-AB4396433076} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{D88DF969-D3CB-4A98-9877-7CEA59788190} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{D8AEE8FE-0943-467C-97A4-7F33985EB816} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{D8DB11B8-DFC3-48B4-816E-1ABF4A33A19B} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{D946983F-A8CF-4ECD-9FB5-187B2B14DA92} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{D999EAEF-C4F4-456D-851E-B07CA185AF27} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{DA1D54A1-CC32-4A86-BA28-C2FC9AFCD70B} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{DA8B573D-F6E0-4862-A8EE-CB5343F07DFC} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{DA9C9CCF-9CB6-41CD-9545-A5F8FE1CA622} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{DACBFD74-8A2C-4B12-ADEA-B3A15BD01351} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{DB240650-0182-4B11-BAD7-C0F5E19C6498} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{DB46908D-295F-4A63-BE6B-B3A5BB408D4A} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{DBCB3E26-8F60-4514-886E-F33C671388B5} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{DCD5B7ED-B48A-4B8A-A843-4EC4DAEB576E} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{DCE06CF9-3F76-4C30-883B-497BD2F14CDB} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{DD526440-E07A-40C3-918D-54F67364C004} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{DD76351F-E890-4363-B398-CA7F8690315D} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{DE183032-3373-4EEC-B1E5-14EE14181C25} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{DE1DEE08-51A8-4E24-9323-D85E4CA4C433} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{DE5636F6-A58C-4D90-B966-C6B759B6C250} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{DED0640B-BE0A-40A3-A3A1-5A859AAE750C} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{DEF73A8B-74FB-4242-A8BD-6E5489E81A5A} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{DF01B62D-F589-4B0E-AA5A-5D55090DB838} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{DF1D91EE-1388-4D76-A234-EF26D3B0272B} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{DF41E911-DC36-4171-8D59-A3795321FB6E} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{DF756BC7-5609-4936-B27A-2FA750069A12} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{DFE28BC3-B82E-4C5C-89A4-66FD7E691AA8} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{DFFADEC6-C112-44C3-877E-EB6B5A0039ED} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{E00DDB44-5FD4-4C52-95DA-84AD402CBE04} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{E01727F1-CBFD-4C03-9B4B-1D1006C30299} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{E0783D33-E506-478B-AEFD-9A8AE729E20E} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{E083B73F-51D4-46F8-88EC-EC3B979A5EB2} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{E09025D1-9EE7-47ED-85A3-D044CFB2B135} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{E0C35862-C54C-4A4D-8E40-EF60F2C6AB3C} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{E0D8DAFB-17C1-4969-88B5-837596A75A8A} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{E1556616-A19C-4975-8C48-AD0C7168BEE7} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{E1BBA0F3-0BD5-479D-AB4D-51F7886C061A} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{E1BCFDA6-7D76-4D3C-AC70-306691C22CBD} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{E25AC64F-BEDA-4EC7-AE5C-EBBBDB4F1CAB} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{E260310B-D6D6-49CC-AB1B-AD76A9C38D92} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{E307C65F-4E29-4B8C-B34A-E30742BDFB7E} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{E3172B10-78FC-4628-B049-B9760E5F8785} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{E326C67D-48C1-47BE-94CA-A16F682661A8} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{E33AE058-4494-4905-BA2B-AB23EB931F63} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{E38949B7-5F05-4468-B53B-65D0226FFA21} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{E3A22F9F-E447-4035-9A77-9D9331B9A084} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{E3B05E78-9674-45B5-8D76-8C75ACB5910D} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{E3BE8A2B-FD3F-4DAE-9553-1BE4F800E877} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{E3C6DD79-0D1D-43B8-9A06-8044BA835B9E} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{E3D0FB3F-8DC1-4926-B63A-042C80B6184C} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{E3DBC388-F14D-4E5A-ABEE-E9556CCA2646} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{E43E063B-B8B6-4ACB-8429-89DBE47C4EB9} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{E467C784-93F9-49C8-A8BB-DF9A8ED0A54E} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{E4FFF255-599E-4166-9670-C75A15E1F4B5} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{E5167E8F-24E4-4D47-BAB6-A1D7067C19CE} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{E5511DAD-A896-4DFF-97C3-73D52CEF06D1} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{E5A74D0A-FD7F-4FD3-AF9E-513266B0DC99} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{E5A8F49A-BBC9-46AD-A80B-E409FC244692} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{E5D44B0C-2E39-4044-89DD-A474BA7725B6} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{E5FDBF89-81E1-4F1E-9C5B-49FBEDAA1BDB} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{E62FCBBB-6013-4C12-B9AA-58957C3011D1} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{E645E324-659A-44CF-AC22-E3DD36013336} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{E64952F3-12A6-408F-A619-83F628798C11} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{E6495C90-7978-4419-BAC1-36DAC6AEB08A} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{E6837432-BE5C-49FA-B2D5-F0DBC93DF7AF} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{E691438F-0B2E-42B5-AFF3-0B7086193F8F} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{E7148553-4C48-4336-B33B-60EE7AB648F8} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{E7284AD1-2B96-4532-AAAC-E10DB2E8B5F0} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{E759A495-3530-45E9-AE53-08DBE37A3905} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{E7A89A77-973C-4A11-8954-FAC1230A3FFA} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{E7B27084-9D2C-4F8C-91F2-1C91249CC531} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{E816643A-DBAD-4D94-A05C-FD10D7ABC303} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{E81C70D0-BE55-4700-9205-B41DB7693599} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{E8A682ED-10A3-42C9-887F-384D86F2AED1} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{E8DB4734-CD22-4CF8-AD15-FCD74E31A857} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{E9174389-3D61-41D6-8877-C77654F11F63} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{E9B206BF-27C6-4149-886C-A952CC1AFE1B} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{E9C6032D-26C7-417A-A1C9-A91AFF9FE023} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{E9F2903D-E4F6-45E8-83A8-128F907CCDFC} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{EA8468E2-6171-43FF-940B-7B3140A35624} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{EA997AB4-175D-4E9B-8F06-6BD5340CFD66} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{EB2CF316-3B66-42B3-B0A2-42DE06783D5A} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{EB5151B3-6A3F-49BD-B570-9750A337E576} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{EBFEC83E-DD0D-4216-AB17-24C2FD9770A7} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{ECA5A673-8103-43AE-B34B-906D3CE45C0D} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{ED7A8400-2B6D-4353-AD06-DFC6E1284B9B} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{EDA2B719-1E94-4096-A7B0-7B15C5A0DEF0} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{EDA84393-4D44-499C-BE9D-5467A5066F1B} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{EE343B04-8D34-4904-B3AA-E5CC78F3A23E} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{EE8F9C52-0CDB-49FB-A237-63876017B579} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{EE9F18BE-AF80-487B-90F8-2BD62109DDE8} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{EEA24152-42E8-484E-9705-19136829F686} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{EF421076-E23A-4411-8779-3FCCBFF78683} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{EF86F805-019D-4259-9F8E-65248B6C099A} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{EFA55682-F5F7-4FBD-B332-52DE8D502580} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{F08C7E3E-B361-4789-9938-5F76A4702CA5} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{F0A6EC4F-2461-42FD-9384-FF220FA2F006} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{F0C1CBB7-A90E-4AEC-8404-C2811DF7C13A} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{F0D6AB3A-B719-4174-BFB6-B8ABC598D8DE} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{F1177E8D-709A-4B87-863C-64C36480AFF4} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{F11D2D4A-5C89-428B-9654-F43DF35D5BC9} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{F127325E-9DEC-48DB-AB38-233C526EABDC} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{F160FA92-B8F9-4F5D-92F4-D6C6818B3E76} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{F1A019D9-2B3A-4CD1-BA17-9CD3F073E1A7} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{F1DFCE2C-64B9-4CFB-9306-033C62A9AECA} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{F1FFE709-0FD2-4F07-AA50-402A233CDBD9} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{F232A263-43BB-46EE-B9C2-E80E31DFF781} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{F263D500-FC1A-4B68-885C-EEAD57645032} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{F2BED0FE-4440-4667-93BB-2A2A0A938B69} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{F2E3A0BB-4DDB-4B5A-8E25-959C615E7717} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{F310E822-769A-4E87-8E6B-9579A1C18D22} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{F31188C0-BCCB-4DFF-BFC2-D456B1D6F029} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{F31F46C3-3549-4801-9A99-BF15511E9035} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{F3231F08-6E03-42BE-9511-6866B115F1A4} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{F34FDFAD-313A-4F9C-830B-D7B933BAD46D} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{F3654A8D-9AE4-4A5D-AC22-064E3C840B57} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{F3924FF7-3747-4FDF-AD60-C619DD5F9295} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{F3A2F7E8-474F-4EFE-8040-892C1A15C998} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{F3AB2679-4487-45AF-8CFF-80D292E314EE} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{F3C4A9FE-8F50-42A7-847D-18AF31EA84A1} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{F3C7E2DC-876B-4C72-A5F2-6AD77F6A958A} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{F41E4A26-E586-42D7-ABF1-AE4822CADB53} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{F4445199-031A-4896-8CBB-3CECE4DB2809} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{F4BB240B-9AD0-4F1E-917F-2A39E674DA54} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{F4FC54AE-739D-4E02-B73B-F7FC9AD5DCEA} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{F5697C0C-B578-4BD4-A0EF-2C81CB1819CA} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{F57DAD88-A1C9-46B3-8382-B6F178E96AED} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{F5B8885F-3573-4475-AF69-5D26305DCFB3} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{F5F95946-76DE-4FB0-9014-387804073BDB} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{F621C0E6-1777-433A-8CA1-5ABE196BFEBD} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{F67FEB78-B211-4649-97AA-35E6BAD3838F} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{F74230FC-17C3-4391-BCCA-8737A2FA9AA9} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{F7B90717-20E6-43FA-BBD9-9DC019CB3521} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{F7FEE3A6-541A-42FA-BAB2-B5F44A5E71C3} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{F8683648-5E6D-4A47-8138-12024FB5B4E1} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{F8E2BE41-4603-465F-848D-A99738350D97} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{F9241AAD-7982-4403-8495-127A3BC4F632} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{F92D6963-4D01-47A0-83A8-9B1464A62682} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{F9609F3D-775F-41AB-9D40-38AD520A70C1} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{F9755D45-9502-43C3-922C-C00C7F9DB131} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{FA467EF2-D969-4440-A6BF-E2636CBE9D19} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{FA636C98-1387-4ED7-A3C1-8F6042F17D99} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{FAB36C7A-5236-417D-8022-DEDFCCDD48C5} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{FADE0FC4-41C7-46FA-848F-63AE81CA0FC4} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{FB052FF7-BA09-474B-BE1C-85B0FE846DC4} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{FB281FE4-DE9A-493E-A808-B450435265FD} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{FB7B133C-6F62-417B-85CE-006CE20968E6} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{FB95BE4C-AB55-4556-A81E-C3D0400BC431} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{FBC19BC8-84F9-41B8-A595-AAB86BC87FE5} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{FC09CFDC-DE85-42B2-995F-CD2567FA8465} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{FC2C9A3A-815C-4C7C-AD12-9196289F3123} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{FC33B581-69F7-4B65-A19B-F6DC800921A9} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{FC57FCE8-D556-4DEC-971D-2CA4CD9EE497} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{FCD63ED0-7D09-436F-9AE4-353FAF6F393C} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{FCDA23EC-5D98-4D4C-BF4D-35D43138DE0E} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{FD394112-AD55-4E8E-861E-DACC22B86BDD} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{FD6FFC10-ABEE-4805-B296-CB44F611DE8C} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{FD7256C1-FF87-401B-AE77-C91F472B2AF5} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{FD8BA0CF-6D74-48F6-A410-970C72305DE9} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{FDE4552E-F133-4C9C-B236-B654ED65D5D8} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{FE0E9B39-A200-46C9-83A1-D4416073268E} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{FE2EE79D-5B27-4C0A-A58C-54CFA22E7604} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{FE59590E-BE8F-4E39-AC73-5FCAD4671B65} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{FEBA5426-CAEC-4C4F-A7E0-5CAE0857FA1E} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{FEBF75B1-6A14-4609-AEBF-987BB70A9FD5} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{FF2184B9-134C-458E-B751-A7AF861511E7} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{FF56D572-3ED3-4B19-AF12-1C84775F5A5E} Successfully deleted: [Empty Folder] C:\Users\Kris\Appdata\Local\{FFB876FC-C354-40DE-8695-7A446B4FF417} ~~~ FireFox Emptied folder: C:\Users\Kris\AppData\Roaming\mozilla\firefox\profiles\fzohv65g.default\minidumps [675 files] ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Scan was completed on 14.08.2015 at 10:28:40,84 End of JRT log ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ |
14.08.2015, 09:46 | #13 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Kaspersky findet angebliche Trojaner, Malwarebytes und Spybot nicht Dann zeig mal frische FRST Logs. Haken setzen bei addition.txt dann auf Untersuchen klicken
__________________ Logfiles bitte immer in CODE-Tags posten |
14.08.2015, 09:51 | #14 |
| Kaspersky findet angebliche Trojaner, Malwarebytes und Spybot nicht FRST: Code:
ATTFilter Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version:13-08-2015 durchgeführt von Kris (Administrator) auf KRIS-PC (14-08-2015 10:47:53) Gestartet von C:\Users\Kris\Downloads Geladene Profile: Kris (Verfügbare Profile: UpdatusUser & Kris) Platform: Windows 7 Home Premium Service Pack 1 (X64) Sprache: Deutsch (Deutschland) Internet Explorer Version 11 (Standard-Browser: FF) Start-Modus: Normal Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Prozesse (Nicht auf der Ausnahmeliste) ================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.) (Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\avp.exe (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe (Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\avpui.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Dritek System Inc.) C:\Program Files (x86)\Launch Manager\dsiwmis.exe (Dritek System Inc.) C:\Program Files (x86)\Launch Manager\LMworker.exe (Dritek System Inc.) C:\Program Files (x86)\Launch Manager\LMutilps32.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe (Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe (Egis Technology Inc.) C:\Program Files\EgisTec IPS\PmmUpdate.exe (Microsoft Corporation) C:\Windows\SysWOW64\notepad.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_18_0_0_209.exe (Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_18_0_0_209.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe ==================== Registry (Nicht auf der Ausnahmeliste) ================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.) HKLM\...\Run: [IntelTBRunOnce] => wscript.exe //b //nologo "C:\Program Files\Intel\TurboBoost\RunTBGadgetOnce.vbs" HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2280232 2010-07-30] (Synaptics Incorporated) HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [11786344 2011-03-28] (Realtek Semiconductor) HKLM\...\Run: [RtHDVBg] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2207848 2011-03-21] (Realtek Semiconductor) HKLM-x32\...\Run: [LManager] => C:\Program Files (x86)\Launch Manager\LManager.exe [1103440 2011-07-01] (Dritek System Inc.) HKLM-x32\...\Run: [NUSB3MON] => C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe [113288 2010-11-17] (Renesas Electronics Corporation) HKLM-x32\...\Run: [SDTray] => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe [4101576 2014-06-24] (Safer-Networking Ltd.) Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation) Winlogon\Notify\SDWinLogon-x32: SDWinLogon.dll [X] HKU\S-1-5-19\...\RunOnce: [IsMyWinLockerReboot] => msiexec.exe /qn /x{voidguid} HKU\S-1-5-20\...\RunOnce: [IsMyWinLockerReboot] => msiexec.exe /qn /x{voidguid} HKU\S-1-5-21-262824916-1322527339-1189251063-1001\...\Run: [SpybotPostWindows10UpgradeReInstall] => C:\Program Files\Common Files\AV\Spybot - Search and Destroy\Test.exe [1011200 2015-07-28] (Safer-Networking Ltd.) HKU\S-1-5-18\...\RunOnce: [IsMyWinLockerReboot] => msiexec.exe /qn /x{voidguid} AppInit_DLLs: C:\Windows\system32\nvinitx.dll => C:\Windows\system32\nvinitx.dll [226920 2011-03-31] (NVIDIA Corporation) AppInit_DLLs-x32: C:\Windows\SysWOW64\nvinit.dll => C:\Windows\SysWOW64\nvinit.dll [193128 2011-03-31] (NVIDIA Corporation) BootExecute: autocheck autochk * sdnclean64.exe ==================== Internet (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt..) HKU\S-1-5-21-262824916-1322527339-1189251063-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://acer.msn.com HKU\S-1-5-21-262824916-1322527339-1189251063-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://acer.msn.com SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = BHO: Content Blocker Plugin -> {03C04F0A-E2A3-4F7F-BA30-BFA06FFD1358} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\x64\IEExt\ie_plugin.dll [2014-11-20] (Kaspersky Lab ZAO) BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2011-03-29] (Microsoft Corp.) BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation) BHO: Virtual Keyboard Plugin -> {B5D5BB14-C8E2-478D-9C97-574AC10AF9E8} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\x64\IEExt\ie_plugin.dll [2014-11-20] (Kaspersky Lab ZAO) BHO: Safe Money Plugin -> {E3D96E85-529D-4269-AC6A-97CF9E2221E3} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\x64\IEExt\ie_plugin.dll [2014-11-20] (Kaspersky Lab ZAO) BHO-x32: Content Blocker Plugin -> {03C04F0A-E2A3-4F7F-BA30-BFA06FFD1358} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\IEExt\ie_plugin.dll [2014-11-20] (Kaspersky Lab ZAO) BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\ssv.dll [2014-10-15] (Oracle Corporation) BHO-x32: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2011-03-29] (Microsoft Corp.) BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation) BHO-x32: Virtual Keyboard Plugin -> {B5D5BB14-C8E2-478D-9C97-574AC10AF9E8} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\IEExt\ie_plugin.dll [2014-11-20] (Kaspersky Lab ZAO) BHO-x32: Bing Bar Helper -> {d2ce3e00-f94a-4740-988e-03dc2f38c34f} -> C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll [2011-06-07] (Microsoft Corporation.) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\jp2ssv.dll [2014-10-15] (Oracle Corporation) BHO-x32: Safe Money Plugin -> {E3D96E85-529D-4269-AC6A-97CF9E2221E3} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\IEExt\ie_plugin.dll [2014-11-20] (Kaspersky Lab ZAO) Toolbar: HKLM-x32 - Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll [2011-06-07] (Microsoft Corporation.) DPF: HKLM-x32 {C3F79A2B-B9B4-4A66-B012-3EE46475B072} hxxp://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab Tcpip\Parameters: [DhcpNameServer] 10.0.0.138 Tcpip\..\Interfaces\{48E83A8E-05AE-477C-9F86-5F34E4C9BDE8}: [DhcpNameServer] 10.0.0.138 FireFox: ======== FF ProfilePath: C:\Users\Kris\AppData\Roaming\Mozilla\Firefox\Profiles\fzohv65g.default FF NetworkProxy: "no_proxies_on", "*.local" FF NetworkProxy: "type", 0 FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_18_0_0_209.dll [2015-07-15] () FF Plugin: @java.com/DTPlugin,version=10.17.2 -> C:\Windows\system32\npDeployJava1.dll [2013-03-18] (Oracle Corporation) FF Plugin: @microsoft.com/GENUINE -> disabled [Keine Datei] FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.40728.0\npctrl.dll [2015-07-28] ( Microsoft Corporation) FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_18_0_0_209.dll [2015-07-15] () FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll [2011-07-29] () FF Plugin-x32: @java.com/DTPlugin,version=11.25.2 -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\dtplugin\npDeployJava1.dll [2014-10-15] (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.25.2 -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\plugin2\npjp2.dll [2014-10-15] (Oracle Corporation) FF Plugin-x32: @kaspersky.com/content_blocker_6418E0D362104DADA084DC312DFA8ABC -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\FFExt\content_blocker@kaspersky.com [2014-11-20] () FF Plugin-x32: @kaspersky.com/online_banking_69A4E213815F42BD863D889007201D82 -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\FFExt\online_banking@kaspersky.com [2014-11-20] () FF Plugin-x32: @kaspersky.com/virtual_keyboard_294FF26A1D5B455495946778FDE7CEDB -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\FFExt\virtual_keyboard@kaspersky.com [2014-11-20] () FF Plugin-x32: @microsoft.com/GENUINE -> disabled [Keine Datei] FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.40728.0\npctrl.dll [2015-07-28] ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~4\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~4\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2012-03-08] (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3538.0513 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2012-03-08] (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3555.0308 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2012-03-08] (Microsoft Corporation) FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 -> C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll [2010-12-08] () FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2013-05-11] (Adobe Systems Inc.) FF user.js: detected! => C:\ProgramData\Kaspersky Lab\SafeBrowser\S-1-5-21-262824916-1322527339-1189251063-1001\FireFox\user.js [2014-11-04] FF Extension: Ghostery - C:\Users\Kris\AppData\Roaming\Mozilla\Firefox\Profiles\fzohv65g.default\Extensions\firefox@ghostery.com.xpi [2014-07-08] FF Extension: Adblock Plus - C:\Users\Kris\AppData\Roaming\Mozilla\Firefox\Profiles\fzohv65g.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2014-07-08] FF HKLM-x32\...\Firefox\Extensions: [content_blocker_6418E0D362104DADA084DC312DFA8ABC@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\FFExt\content_blocker@kaspersky.com FF Extension: Dangerous Websites Blocker - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\FFExt\content_blocker@kaspersky.com [2014-11-04] FF HKLM-x32\...\Firefox\Extensions: [virtual_keyboard_294FF26A1D5B455495946778FDE7CEDB@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\FFExt\virtual_keyboard@kaspersky.com FF Extension: Virtual Keyboard - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\FFExt\virtual_keyboard@kaspersky.com [2014-11-04] FF HKLM-x32\...\Firefox\Extensions: [online_banking_69A4E213815F42BD863D889007201D82@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\FFExt\online_banking@kaspersky.com FF Extension: Safe Money - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\FFExt\online_banking@kaspersky.com [2014-11-04] Chrome: ======= CHR HKLM\...\Chrome\Extension: [dbhjdbfgekjfcfkkfjjmlmojhbllhbho] - https://chrome.google.com/webstore/detail/dbhjdbfgekjfcfkkfjjmlmojhbllhbho CHR HKLM-x32\...\Chrome\Extension: [dbhjdbfgekjfcfkkfjjmlmojhbllhbho] - https://chrome.google.com/webstore/detail/dbhjdbfgekjfcfkkfjjmlmojhbllhbho ==================== Dienste (Nicht auf der Ausnahmeliste) ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) S2 ABBYY.Licensing.FineReader.Sprint.9.0; C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe [759048 2009-05-14] (ABBYY) R2 AVP15.0.1; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\avp.exe [234520 2014-08-30] (Kaspersky Lab ZAO) S2 EpsonBidirectionalService; C:\Program Files (x86)\Common Files\EPSON\EBAPI\eEBSVC.exe [94208 2006-12-19] (SEIKO EPSON CORPORATION) [Datei ist nicht signiert] S2 MBAMService; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe [1133880 2015-06-18] (Malwarebytes Corporation) S2 NOBU; C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe [2804568 2010-06-02] (Symantec Corporation) S2 NTI IScheduleSvc; C:\Program Files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe [256832 2011-04-24] (NTI Corporation) S3 SandraAgentSrv; C:\Program Files\SiSoftware\SiSoftware Sandra Lite 2012.SP1c\RpcAgentSrv.exe [95896 2009-01-05] (SiSoftware) [Datei ist nicht signiert] R2 SDScannerService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [1738168 2014-06-24] (Safer-Networking Ltd.) R2 SDUpdateService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [2088408 2014-06-27] (Safer-Networking Ltd.) R2 SDWSCService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [171928 2014-04-25] (Safer-Networking Ltd.) R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation) S2 McAfee SiteAdvisor Service; c:\PROGRA~2\mcafee\SITEAD~1\mcsacore.exe [X] ===================== Treiber (Nicht auf der Ausnahmeliste) ========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R0 cm_km_w; C:\Windows\System32\DRIVERS\cm_km_w.sys [238288 2013-01-14] (Kaspersky Lab UK Ltd) R0 kl1; C:\Windows\System32\DRIVERS\kl1.sys [468576 2014-03-31] (Kaspersky Lab ZAO) R2 kldisk; C:\Windows\System32\DRIVERS\kldisk.sys [46144 2014-07-02] (Kaspersky Lab ZAO) R3 klflt; C:\Windows\System32\DRIVERS\klflt.sys [150536 2014-11-20] (Kaspersky Lab ZAO) R1 klhk; C:\Windows\System32\DRIVERS\klhk.sys [246456 2014-08-12] (Kaspersky Lab ZAO) R1 KLIF; C:\Windows\System32\DRIVERS\klif.sys [819896 2015-03-11] (Kaspersky Lab ZAO) R1 KLIM6; C:\Windows\System32\DRIVERS\klim6.sys [30304 2014-02-25] (Kaspersky Lab ZAO) R3 klkbdflt; C:\Windows\System32\DRIVERS\klkbdflt.sys [28768 2014-03-28] (Kaspersky Lab ZAO) R3 klmouflt; C:\Windows\System32\DRIVERS\klmouflt.sys [29280 2013-08-08] (Kaspersky Lab ZAO) R1 klpd; C:\Windows\System32\DRIVERS\klpd.sys [15456 2013-04-12] (Kaspersky Lab ZAO) R1 kltdi; C:\Windows\System32\DRIVERS\kltdi.sys [55872 2014-06-05] (Kaspersky Lab ZAO) R1 Klwtp; C:\Windows\System32\DRIVERS\klwtp.sys [77512 2014-11-20] (Kaspersky Lab ZAO) R1 kneps; C:\Windows\System32\DRIVERS\kneps.sys [179776 2014-07-09] (Kaspersky Lab ZAO) R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2015-06-18] (Malwarebytes Corporation) S3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [63704 2015-06-18] (Malwarebytes Corporation) S3 ALSysIO; \??\C:\Users\Kris\AppData\Local\Temp\ALSysIO64.sys [X] ==================== NetSvcs (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Ein Monat: Erstellte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2015-08-14 10:28 - 2015-08-14 10:28 - 00123630 _____ C:\Users\Kris\Desktop\JRT.txt 2015-08-14 10:22 - 2015-08-14 10:22 - 01791580 _____ (Malwarebytes Corporation) C:\Users\Kris\Downloads\JRT.exe 2015-08-14 10:22 - 2015-08-14 10:22 - 01791580 _____ (Malwarebytes Corporation) C:\Users\Kris\Desktop\JRT.exe 2015-08-14 10:08 - 2015-08-14 10:14 - 00000000 ____D C:\AdwCleaner 2015-08-14 10:08 - 2015-08-14 10:07 - 02248704 _____ C:\Users\Kris\Desktop\AdwCleaner_4.208.exe 2015-08-14 10:07 - 2015-08-14 10:07 - 02248704 _____ C:\Users\Kris\Downloads\AdwCleaner_4.208.exe 2015-08-14 00:31 - 2015-08-14 09:55 - 00000000 ____D C:\ProgramData\Malwarebytes' Anti-Malware (portable) 2015-08-14 00:15 - 2015-08-14 00:15 - 00008490 _____ C:\Users\Kris\Desktop\Scan Results.150814-0014.txt 2015-08-14 00:01 - 2015-08-14 01:22 - 00000000 ____D C:\Users\Kris\Desktop\mbar 2015-08-13 23:59 - 2015-08-13 23:59 - 16502728 _____ (Malwarebytes Corp.) C:\Users\Kris\Downloads\mbar-1.09.1.1004.exe 2015-08-13 23:28 - 2015-08-14 10:47 - 00016774 _____ C:\Users\Kris\Downloads\FRST.txt 2015-08-13 23:28 - 2015-08-13 23:29 - 00054970 _____ C:\Users\Kris\Downloads\Addition.txt 2015-08-13 23:27 - 2015-08-14 10:47 - 00000000 ____D C:\FRST 2015-08-13 23:27 - 2015-08-13 23:27 - 02173952 _____ (Farbar) C:\Users\Kris\Downloads\FRST64.exe 2015-08-13 23:23 - 2015-08-13 23:23 - 00002512 _____ C:\Users\Kris\Documents\KIS.txt 2015-08-13 17:53 - 2015-08-13 17:53 - 00000000 ____D C:\Program Files\Common Files\AV 2015-08-13 17:53 - 2015-07-28 17:52 - 00821920 _____ (Safer-Networking Ltd. ) C:\Users\Public\Desktop\Post Win10 Spybot-install.exe 2015-08-13 17:45 - 2015-08-13 17:45 - 00000000 ____D C:\Windows\System32\Tasks\Safer-Networking 2015-08-13 17:44 - 2015-08-13 19:34 - 00000000 ____D C:\ProgramData\Spybot - Search & Destroy 2015-08-13 17:44 - 2015-08-13 17:52 - 00000000 ____D C:\Program Files (x86)\Spybot - Search & Destroy 2 2015-08-13 17:44 - 2015-08-13 17:44 - 00001395 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot-S&D Start Center.lnk 2015-08-13 17:44 - 2015-08-13 17:44 - 00001383 _____ C:\Users\Public\Desktop\Spybot-S&D Start Center.lnk 2015-08-13 17:44 - 2015-08-13 17:44 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy 2 2015-08-13 17:44 - 2013-09-20 10:49 - 00021040 _____ (Safer Networking Limited) C:\Windows\system32\sdnclean64.exe 2015-08-13 17:36 - 2015-08-13 17:37 - 46525608 _____ (Safer-Networking Ltd. ) C:\Users\Kris\Downloads\spybot-2.4.exe 2015-08-13 10:03 - 2015-08-13 21:41 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2015-08-13 00:54 - 2015-07-30 15:13 - 00124624 _____ (Microsoft Corporation) C:\Windows\system32\PresentationCFFRasterizerNative_v0300.dll 2015-08-13 00:54 - 2015-07-30 15:13 - 00103120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationCFFRasterizerNative_v0300.dll 2015-08-12 10:01 - 2015-07-28 22:09 - 00017344 _____ (Microsoft Corporation) C:\Windows\system32\CompatTelRunner.exe 2015-08-12 10:01 - 2015-07-28 22:05 - 01116672 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll 2015-08-12 10:01 - 2015-07-28 22:05 - 00774656 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll 2015-08-12 10:01 - 2015-07-28 22:05 - 00743424 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll 2015-08-12 10:01 - 2015-07-28 22:05 - 00437760 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll 2015-08-12 10:01 - 2015-07-28 22:05 - 00227328 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll 2015-08-12 10:01 - 2015-07-28 22:05 - 00069120 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll 2015-08-12 10:01 - 2015-07-28 21:55 - 01148416 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll 2015-08-12 10:01 - 2015-07-21 02:39 - 00389840 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2015-08-12 10:01 - 2015-07-21 02:12 - 00342736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2015-08-12 10:01 - 2015-07-16 23:14 - 25192448 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2015-08-12 10:01 - 2015-07-16 22:54 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2015-08-12 10:01 - 2015-07-16 22:54 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2015-08-12 10:01 - 2015-07-16 22:37 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2015-08-12 10:01 - 2015-07-16 22:36 - 00584192 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2015-08-12 10:01 - 2015-07-16 22:36 - 00417792 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2015-08-12 10:01 - 2015-07-16 22:36 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2015-08-12 10:01 - 2015-07-16 22:35 - 02885632 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2015-08-12 10:01 - 2015-07-16 22:35 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2015-08-12 10:01 - 2015-07-16 22:27 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2015-08-12 10:01 - 2015-07-16 22:26 - 05923328 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2015-08-12 10:01 - 2015-07-16 22:26 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2015-08-12 10:01 - 2015-07-16 22:23 - 00615936 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2015-08-12 10:01 - 2015-07-16 22:21 - 00816640 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2015-08-12 10:01 - 2015-07-16 22:21 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2015-08-12 10:01 - 2015-07-16 22:21 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2015-08-12 10:01 - 2015-07-16 22:21 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2015-08-12 10:01 - 2015-07-16 22:20 - 19870208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2015-08-12 10:01 - 2015-07-16 22:12 - 00968704 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2015-08-12 10:01 - 2015-07-16 22:08 - 00490496 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2015-08-12 10:01 - 2015-07-16 22:06 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2015-08-12 10:01 - 2015-07-16 22:00 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2015-08-12 10:01 - 2015-07-16 21:55 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2015-08-12 10:01 - 2015-07-16 21:54 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2015-08-12 10:01 - 2015-07-16 21:51 - 00504320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2015-08-12 10:01 - 2015-07-16 21:51 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2015-08-12 10:01 - 2015-07-16 21:51 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2015-08-12 10:01 - 2015-07-16 21:50 - 00341504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2015-08-12 10:01 - 2015-07-16 21:50 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2015-08-12 10:01 - 2015-07-16 21:49 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2015-08-12 10:01 - 2015-07-16 21:45 - 02279424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2015-08-12 10:01 - 2015-07-16 21:43 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2015-08-12 10:01 - 2015-07-16 21:43 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2015-08-12 10:01 - 2015-07-16 21:41 - 00479232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2015-08-12 10:01 - 2015-07-16 21:39 - 00664064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2015-08-12 10:01 - 2015-07-16 21:39 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2015-08-12 10:01 - 2015-07-16 21:38 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2015-08-12 10:01 - 2015-07-16 21:36 - 00801280 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2015-08-12 10:01 - 2015-07-16 21:35 - 00720384 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2015-08-12 10:01 - 2015-07-16 21:34 - 14451200 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2015-08-12 10:01 - 2015-07-16 21:33 - 01359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2015-08-12 10:01 - 2015-07-16 21:32 - 02125824 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2015-08-12 10:01 - 2015-07-16 21:29 - 00418304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2015-08-12 10:01 - 2015-07-16 21:24 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2015-08-12 10:01 - 2015-07-16 21:20 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2015-08-12 10:01 - 2015-07-16 21:19 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2015-08-12 10:01 - 2015-07-16 21:17 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2015-08-12 10:01 - 2015-07-16 21:12 - 04520448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2015-08-12 10:01 - 2015-07-16 21:12 - 02427904 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2015-08-12 10:01 - 2015-07-16 21:10 - 12856832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2015-08-12 10:01 - 2015-07-16 21:06 - 02052608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2015-08-12 10:01 - 2015-07-16 21:06 - 00689152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2015-08-12 10:01 - 2015-07-16 21:05 - 01155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2015-08-12 10:01 - 2015-07-16 21:01 - 01545728 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2015-08-12 10:01 - 2015-07-16 20:49 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2015-08-12 10:01 - 2015-07-16 20:42 - 01951232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2015-08-12 10:01 - 2015-07-16 20:38 - 01310720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2015-08-12 10:01 - 2015-07-16 20:37 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2015-08-12 10:01 - 2015-07-15 20:15 - 05568960 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe 2015-08-12 10:01 - 2015-07-15 20:15 - 00155584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys 2015-08-12 10:01 - 2015-07-15 20:15 - 00095680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys 2015-08-12 10:01 - 2015-07-15 20:15 - 00094656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mountmgr.sys 2015-08-12 10:01 - 2015-07-15 20:12 - 01730496 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll 2015-08-12 10:01 - 2015-07-15 20:11 - 00362496 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll 2015-08-12 10:01 - 2015-07-15 20:11 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll 2015-08-12 10:01 - 2015-07-15 20:11 - 00215040 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll 2015-08-12 10:01 - 2015-07-15 20:11 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll 2015-08-12 10:01 - 2015-07-15 20:11 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll 2015-08-12 10:01 - 2015-07-15 20:10 - 01743360 _____ (Microsoft Corporation) C:\Windows\system32\sysmain.dll 2015-08-12 10:01 - 2015-07-15 20:10 - 01461760 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2015-08-12 10:01 - 2015-07-15 20:10 - 01216512 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll 2015-08-12 10:01 - 2015-07-15 20:10 - 01163264 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll 2015-08-12 10:01 - 2015-07-15 20:10 - 00729088 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll 2015-08-12 10:01 - 2015-07-15 20:10 - 00503808 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll 2015-08-12 10:01 - 2015-07-15 20:10 - 00424960 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll 2015-08-12 10:01 - 2015-07-15 20:10 - 00342016 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll 2015-08-12 10:01 - 2015-07-15 20:10 - 00315392 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll 2015-08-12 10:01 - 2015-07-15 20:10 - 00309760 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll 2015-08-12 10:01 - 2015-07-15 20:10 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe 2015-08-12 10:01 - 2015-07-15 20:10 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll 2015-08-12 10:01 - 2015-07-15 20:10 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe 2015-08-12 10:01 - 2015-07-15 20:10 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll 2015-08-12 10:01 - 2015-07-15 20:10 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll 2015-08-12 10:01 - 2015-07-15 20:10 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\cryptbase.dll 2015-08-12 10:01 - 2015-07-15 20:10 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll 2015-08-12 10:01 - 2015-07-15 20:10 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe 2015-08-12 10:01 - 2015-07-15 20:10 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll 2015-08-12 10:01 - 2015-07-15 20:10 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll 2015-08-12 10:01 - 2015-07-15 20:10 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll 2015-08-12 10:01 - 2015-07-15 20:10 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll 2015-08-12 10:01 - 2015-07-15 20:10 - 00011264 _____ (Microsoft Corporation) C:\Windows\system32\msmmsp.dll 2015-08-12 10:01 - 2015-07-15 20:09 - 00338432 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe 2015-08-12 10:01 - 2015-07-15 20:09 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe 2015-08-12 10:01 - 2015-07-15 20:05 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll 2015-08-12 10:01 - 2015-07-15 20:05 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll 2015-08-12 10:01 - 2015-07-15 20:00 - 00686080 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll 2015-08-12 10:01 - 2015-07-15 20:00 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll 2015-08-12 10:01 - 2015-07-15 20:00 - 00006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 20:00 - 00005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 20:00 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 20:00 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 20:00 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 20:00 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 20:00 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 20:00 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 20:00 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 20:00 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 20:00 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 20:00 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 20:00 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 20:00 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 20:00 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 20:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 20:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 20:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 20:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 20:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 20:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 20:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 20:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 20:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 20:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 20:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 20:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 20:00 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 19:59 - 03989952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe 2015-08-12 10:01 - 2015-07-15 19:59 - 03934656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe 2015-08-12 10:01 - 2015-07-15 19:56 - 01311768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll 2015-08-12 10:01 - 2015-07-15 19:55 - 00248832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll 2015-08-12 10:01 - 2015-07-15 19:55 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll 2015-08-12 10:01 - 2015-07-15 19:55 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll 2015-08-12 10:01 - 2015-07-15 19:55 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll 2015-08-12 10:01 - 2015-07-15 19:55 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll 2015-08-12 10:01 - 2015-07-15 19:54 - 00552960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll 2015-08-12 10:01 - 2015-07-15 19:54 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll 2015-08-12 10:01 - 2015-07-15 19:54 - 00221184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll 2015-08-12 10:01 - 2015-07-15 19:54 - 00036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptbase.dll 2015-08-12 10:01 - 2015-07-15 19:54 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe 2015-08-12 10:01 - 2015-07-15 19:54 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll 2015-08-12 10:01 - 2015-07-15 19:54 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll 2015-08-12 10:01 - 2015-07-15 19:53 - 01114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll 2015-08-12 10:01 - 2015-07-15 19:53 - 00665088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll 2015-08-12 10:01 - 2015-07-15 19:53 - 00274944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll 2015-08-12 10:01 - 2015-07-15 19:53 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll 2015-08-12 10:01 - 2015-07-15 19:53 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\auditpol.exe 2015-08-12 10:01 - 2015-07-15 19:53 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll 2015-08-12 10:01 - 2015-07-15 19:49 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msobjs.dll 2015-08-12 10:01 - 2015-07-15 19:48 - 00146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll 2015-08-12 10:01 - 2015-07-15 19:44 - 00686080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll 2015-08-12 10:01 - 2015-07-15 19:44 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll 2015-08-12 10:01 - 2015-07-15 19:44 - 00005120 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 19:44 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 19:44 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 19:44 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 19:44 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 19:44 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 19:44 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 19:44 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 19:44 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 19:44 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 19:44 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 19:44 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 19:44 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 19:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 19:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 19:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 19:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 19:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 19:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 19:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 19:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 19:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 19:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 19:44 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 18:46 - 00290816 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys 2015-08-12 10:01 - 2015-07-15 18:46 - 00159232 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys 2015-08-12 10:01 - 2015-07-15 18:46 - 00129024 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys 2015-08-12 10:01 - 2015-07-15 18:37 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe 2015-08-12 10:01 - 2015-07-15 18:37 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe 2015-08-12 10:01 - 2015-07-15 18:34 - 00006144 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 18:34 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 18:34 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 18:34 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll 2015-08-12 10:01 - 2015-07-15 05:19 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\basesrv.dll 2015-08-12 10:01 - 2015-07-10 19:51 - 03722752 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll 2015-08-12 10:01 - 2015-07-10 19:51 - 00158720 _____ (Microsoft Corporation) C:\Windows\system32\aaclient.dll 2015-08-12 10:01 - 2015-07-10 19:51 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll 2015-08-12 10:01 - 2015-07-10 19:34 - 03221504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll 2015-08-12 10:01 - 2015-07-10 19:34 - 00036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll 2015-08-12 10:01 - 2015-07-10 19:33 - 00131584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aaclient.dll 2015-08-12 10:00 - 2015-07-30 20:06 - 02565120 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll 2015-08-12 10:00 - 2015-07-30 20:06 - 01648128 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll 2015-08-12 10:00 - 2015-07-30 20:06 - 01180160 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll 2015-08-12 10:00 - 2015-07-30 20:06 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll 2015-08-12 10:00 - 2015-07-30 20:06 - 00046080 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll 2015-08-12 10:00 - 2015-07-30 20:06 - 00041984 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll 2015-08-12 10:00 - 2015-07-30 20:06 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll 2015-08-12 10:00 - 2015-07-30 19:57 - 01987584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll 2015-08-12 10:00 - 2015-07-30 19:57 - 01251328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll 2015-08-12 10:00 - 2015-07-30 19:57 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll 2015-08-12 10:00 - 2015-07-30 19:57 - 00034304 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll 2015-08-12 10:00 - 2015-07-30 19:57 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll 2015-08-12 10:00 - 2015-07-30 19:55 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll 2015-08-12 10:00 - 2015-07-30 18:56 - 03208192 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2015-08-12 10:00 - 2015-07-30 18:52 - 00372736 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll 2015-08-12 10:00 - 2015-07-30 18:49 - 00299520 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll 2015-08-12 10:00 - 2015-07-20 20:12 - 03154944 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll 2015-08-12 10:00 - 2015-07-20 20:12 - 02606080 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll 2015-08-12 10:00 - 2015-07-20 20:12 - 00696320 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll 2015-08-12 10:00 - 2015-07-20 20:12 - 00192000 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll 2015-08-12 10:00 - 2015-07-20 20:12 - 00139776 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe 2015-08-12 10:00 - 2015-07-20 20:12 - 00098304 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll 2015-08-12 10:00 - 2015-07-20 20:12 - 00091136 _____ (Microsoft Corporation) C:\Windows\system32\WinSetupUI.dll 2015-08-12 10:00 - 2015-07-20 20:12 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll 2015-08-12 10:00 - 2015-07-20 20:12 - 00037376 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe 2015-08-12 10:00 - 2015-07-20 20:12 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll 2015-08-12 10:00 - 2015-07-20 20:12 - 00012288 _____ (Microsoft Corporation) C:\Windows\system32\wu.upgrade.ps.dll 2015-08-12 10:00 - 2015-07-20 19:56 - 00566784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll 2015-08-12 10:00 - 2015-07-20 19:56 - 00173056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll 2015-08-12 10:00 - 2015-07-20 19:56 - 00093184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll 2015-08-12 10:00 - 2015-07-20 19:56 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe 2015-08-12 10:00 - 2015-07-20 19:56 - 00030208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll 2015-08-12 10:00 - 2015-07-15 05:19 - 02004992 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll 2015-08-12 10:00 - 2015-07-15 05:19 - 01887232 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll 2015-08-12 10:00 - 2015-07-15 05:14 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml6r.dll 2015-08-12 10:00 - 2015-07-15 05:13 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll 2015-08-12 10:00 - 2015-07-15 04:55 - 01390592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll 2015-08-12 10:00 - 2015-07-15 04:55 - 01241088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll 2015-08-12 10:00 - 2015-07-15 04:51 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6r.dll 2015-08-12 10:00 - 2015-07-15 04:51 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll 2015-08-12 10:00 - 2015-07-10 19:51 - 14177280 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll 2015-08-12 10:00 - 2015-07-10 19:34 - 12875776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll 2015-08-12 10:00 - 2015-07-09 19:57 - 00193536 _____ (Microsoft Corporation) C:\Windows\system32\notepad.exe 2015-08-12 10:00 - 2015-07-09 19:57 - 00193536 _____ (Microsoft Corporation) C:\Windows\notepad.exe 2015-08-12 10:00 - 2015-07-09 19:42 - 00179712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\notepad.exe 2015-08-12 10:00 - 2015-07-01 22:49 - 00260096 _____ (Microsoft Corporation) C:\Windows\system32\WebClnt.dll 2015-08-12 10:00 - 2015-07-01 22:48 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\davclnt.dll 2015-08-12 10:00 - 2015-07-01 22:30 - 00206848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WebClnt.dll 2015-08-12 10:00 - 2015-07-01 22:30 - 00082432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\davclnt.dll 2015-08-12 10:00 - 2015-05-09 20:26 - 00493504 _____ (Microsoft Corporation) C:\Windows\system32\mcupdate_GenuineIntel.dll 2015-07-30 08:14 - 2015-07-30 08:14 - 00270416 _____ C:\Windows\Minidump\073015-21824-01.dmp 2015-07-17 21:20 - 2015-07-17 21:20 - 00270416 _____ C:\Windows\Minidump\071715-43181-01.dmp 2015-07-15 18:05 - 2015-06-17 19:47 - 00404992 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll 2015-07-15 18:05 - 2015-06-17 19:37 - 00312320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll 2015-07-15 18:05 - 2015-06-02 02:07 - 00254976 _____ (Microsoft Corporation) C:\Windows\system32\cewmdm.dll 2015-07-15 18:05 - 2015-06-02 01:47 - 00210432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cewmdm.dll 2015-07-15 18:03 - 2015-07-04 20:07 - 02087424 _____ (Microsoft Corporation) C:\Windows\system32\ole32.dll 2015-07-15 18:03 - 2015-07-04 19:48 - 01414656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ole32.dll 2015-07-15 18:03 - 2015-06-15 23:50 - 00112064 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe 2015-07-15 18:03 - 2015-06-15 23:45 - 03242496 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll 2015-07-15 18:03 - 2015-06-15 23:45 - 01941504 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll 2015-07-15 18:03 - 2015-06-15 23:45 - 00504320 _____ (Microsoft Corporation) C:\Windows\system32\msihnd.dll 2015-07-15 18:03 - 2015-06-15 23:45 - 00070656 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll 2015-07-15 18:03 - 2015-06-15 23:44 - 00128000 _____ (Microsoft Corporation) C:\Windows\system32\msiexec.exe 2015-07-15 18:03 - 2015-06-15 23:43 - 02364416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll 2015-07-15 18:03 - 2015-06-15 23:43 - 01805824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll 2015-07-15 18:03 - 2015-06-15 23:43 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msihnd.dll 2015-07-15 18:03 - 2015-06-15 23:42 - 00073216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msiexec.exe 2015-07-15 18:03 - 2015-06-15 23:42 - 00025088 _____ (Microsoft Corporation) C:\Windows\system32\msimsg.dll 2015-07-15 18:03 - 2015-06-15 23:37 - 00025088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msimsg.dll 2015-07-15 18:03 - 2015-04-27 21:23 - 01480192 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll 2015-07-15 18:03 - 2015-04-27 21:23 - 00229376 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll 2015-07-15 18:03 - 2015-04-27 21:23 - 00188416 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll 2015-07-15 18:03 - 2015-04-27 21:23 - 00140288 _____ (Microsoft Corporation) C:\Windows\system32\cryptnet.dll 2015-07-15 18:03 - 2015-04-27 21:05 - 00179200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll 2015-07-15 18:03 - 2015-04-27 21:04 - 01174528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll 2015-07-15 18:03 - 2015-04-27 21:04 - 00143872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptsvc.dll 2015-07-15 18:03 - 2015-04-27 21:04 - 00103936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptnet.dll ==================== Ein Monat: Geänderte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2015-08-14 10:32 - 2009-07-14 06:45 - 00024608 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2015-08-14 10:32 - 2009-07-14 06:45 - 00024608 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2015-08-14 10:21 - 2011-09-10 21:46 - 02033468 _____ C:\Windows\WindowsUpdate.log 2015-08-14 10:20 - 2012-01-02 21:10 - 00000000 ____D C:\ProgramData\Kaspersky Lab 2015-08-14 10:16 - 2012-01-02 21:02 - 00000000 ____D C:\ProgramData\clear.fi 2015-08-14 10:15 - 2009-07-14 07:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2015-08-14 10:15 - 2009-07-14 06:51 - 00169683 _____ C:\Windows\setupact.log 2015-08-14 09:55 - 2010-11-21 05:47 - 00210378 _____ C:\Windows\PFRO.log 2015-08-14 01:02 - 2014-08-10 01:25 - 00136408 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2015-08-14 01:01 - 2014-08-10 01:25 - 00107736 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys 2015-08-14 00:57 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\Vss 2015-08-13 21:49 - 2014-08-10 01:25 - 00001106 _____ C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2015-08-13 21:49 - 2014-08-10 01:25 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 2015-08-13 21:49 - 2014-08-10 01:25 - 00000000 ____D C:\Program Files (x86)\ Malwarebytes Anti-Malware 2015-08-13 21:41 - 2012-05-25 22:02 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2015-08-13 20:21 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\rescache 2015-08-13 17:03 - 2015-05-16 20:24 - 00001177 _____ C:\Windows\wininit.ini 2015-08-13 10:02 - 2012-03-15 18:30 - 00000000 ___RD C:\Users\Kris\Podcasts 2015-08-13 10:01 - 2009-07-14 06:45 - 00412736 _____ C:\Windows\system32\FNTCACHE.DAT 2015-08-13 09:59 - 2015-04-17 09:13 - 00000000 ____D C:\Windows\system32\appraiser 2015-08-13 09:59 - 2014-05-06 16:42 - 00000000 ___SD C:\Windows\system32\CompatTel 2015-08-13 00:54 - 2013-03-15 00:21 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight 2015-08-13 00:53 - 2013-03-15 00:21 - 00000000 ____D C:\Program Files\Microsoft Silverlight 2015-08-13 00:53 - 2013-03-15 00:21 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight 2015-08-13 00:50 - 2012-01-25 20:48 - 00000000 ____D C:\ProgramData\Microsoft Help 2015-08-13 00:45 - 2009-07-14 04:34 - 00000510 _____ C:\Windows\win.ini 2015-08-13 00:42 - 2013-08-09 15:49 - 00000000 ____D C:\Windows\system32\MRT 2015-08-13 00:24 - 2012-01-07 03:35 - 132483416 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe 2015-08-12 19:58 - 2012-01-25 21:36 - 00000000 ____D C:\Users\Kris\Documents\Outlook-Dateien 2015-08-03 23:22 - 2012-01-02 23:27 - 00000000 ____D C:\Users\Kris\Documents\Songtexte 2015-08-02 12:32 - 2015-07-10 19:28 - 00000000 ___HD C:\$Windows.~BT 2015-08-02 12:09 - 2007-07-12 03:49 - 00000000 ____D C:\Windows\Panther 2015-07-30 08:14 - 2012-09-23 18:56 - 642822074 _____ C:\Windows\MEMORY.DMP 2015-07-30 08:14 - 2012-09-23 18:56 - 00000000 ____D C:\Windows\Minidump 2015-07-25 09:44 - 2015-04-05 00:20 - 00000000 ___SD C:\Windows\system32\GWX 2015-07-20 11:00 - 2009-07-14 07:08 - 00032640 _____ C:\Windows\Tasks\SCHEDLGU.TXT 2015-07-16 22:39 - 2015-04-05 00:20 - 00000000 ___SD C:\Windows\SysWOW64\GWX 2015-07-16 09:43 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\PolicyDefinitions 2015-07-15 22:08 - 2013-03-18 22:35 - 00778416 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2015-07-15 22:08 - 2011-08-12 10:54 - 00142512 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2015-07-15 22:07 - 2014-08-31 16:56 - 00000000 ____D C:\Users\Kris\AppData\Local\Adobe ==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse ======= 2012-01-19 21:50 - 2012-01-19 22:37 - 11407360 _____ () C:\Users\Kris\AppData\Roaming\Sandra.mdb 2012-01-09 23:45 - 2014-08-20 01:04 - 0007610 _____ () C:\Users\Kris\AppData\Local\resmon.resmoncfg 2012-01-02 21:11 - 2012-01-02 21:11 - 0017408 _____ () C:\Users\Kris\AppData\Local\WebpageIcons.db 2011-09-10 22:11 - 2011-09-10 22:13 - 0015230 _____ () C:\ProgramData\ArcadeDeluxe5.log Dateien, die verschoben oder gelöscht werden sollten: ==================== C:\Users\Kris\backup_428660531.bat Einige Dateien in TEMP: ==================== C:\Users\Kris\AppData\Local\Temp\CmdLineExt02.dll C:\Users\Kris\AppData\Local\Temp\drm_dialogs.dll C:\Users\Kris\AppData\Local\Temp\drm_dyndata_7330017.dll C:\Users\Kris\AppData\Local\Temp\firefoxjre_exe-1.exe C:\Users\Kris\AppData\Local\Temp\firefoxjre_exe-2.exe C:\Users\Kris\AppData\Local\Temp\firefoxjre_exe.exe C:\Users\Kris\AppData\Local\Temp\incredibar_installer.exe C:\Users\Kris\AppData\Local\Temp\jre-7u17-windows-i586-iftw.exe C:\Users\Kris\AppData\Local\Temp\jre-7u7-windows-i586-iftw.exe C:\Users\Kris\AppData\Local\Temp\Quarantine.exe C:\Users\Kris\AppData\Local\Temp\sfamcc00001.dll C:\Users\Kris\AppData\Local\Temp\sfamcc00002.dll C:\Users\Kris\AppData\Local\Temp\sfextra.dll C:\Users\Kris\AppData\Local\Temp\SIntf16.dll C:\Users\Kris\AppData\Local\Temp\SIntf32.dll C:\Users\Kris\AppData\Local\Temp\SIntfNT.dll C:\Users\Kris\AppData\Local\Temp\sqlite3.dll C:\Users\Kris\AppData\Local\Temp\_is28E6.exe C:\Users\Kris\AppData\Local\Temp\_isD233.exe ==================== Bamital & volsnap ================= (Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.) C:\Windows\system32\winlogon.exe => Datei ist digital signiert C:\Windows\system32\wininit.exe => Datei ist digital signiert C:\Windows\SysWOW64\wininit.exe => Datei ist digital signiert C:\Windows\explorer.exe => Datei ist digital signiert C:\Windows\SysWOW64\explorer.exe => Datei ist digital signiert C:\Windows\system32\svchost.exe => Datei ist digital signiert C:\Windows\SysWOW64\svchost.exe => Datei ist digital signiert C:\Windows\system32\services.exe => Datei ist digital signiert C:\Windows\system32\User32.dll => Datei ist digital signiert C:\Windows\SysWOW64\User32.dll => Datei ist digital signiert C:\Windows\system32\userinit.exe => Datei ist digital signiert C:\Windows\SysWOW64\userinit.exe => Datei ist digital signiert C:\Windows\system32\rpcss.dll => Datei ist digital signiert C:\Windows\system32\dnsapi.dll => Datei ist digital signiert C:\Windows\SysWOW64\dnsapi.dll => Datei ist digital signiert C:\Windows\system32\Drivers\volsnap.sys => Datei ist digital signiert LastRegBack: 2015-08-12 11:02 ==================== Ende von Ergebnis ============================ Code:
ATTFilter Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version:13-08-2015 durchgeführt von Kris (2015-08-14 10:48:44) Gestartet von C:\Users\Kris\Downloads Start-Modus: Normal ========================================================== ==================== Konten: ============================= Administrator (S-1-5-21-262824916-1322527339-1189251063-500 - Administrator - Disabled) Gast (S-1-5-21-262824916-1322527339-1189251063-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-262824916-1322527339-1189251063-1003 - Limited - Enabled) Kris (S-1-5-21-262824916-1322527339-1189251063-1001 - Administrator - Enabled) => C:\Users\Kris UpdatusUser (S-1-5-21-262824916-1322527339-1189251063-1000 - Limited - Enabled) => C:\Users\UpdatusUser ==================== Sicherheits-Center ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.) AV: Kaspersky Internet Security (Enabled - Up to date) {179979E8-273D-D14E-0543-2861940E4886} AS: Kaspersky Internet Security (Enabled - Up to date) {ACF8980C-0107-DEC0-3FF3-1313EF89023B} AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Spybot - Search and Destroy (Enabled - Up to date) {9BC38DF1-3CCA-732D-A930-C1CA5F20A4B0} FW: Kaspersky Internet Security (Enabled) {2FA2F8CD-6D52-D016-2E1C-81546ADD0FFD} ==================== Installierte Programme ====================== (Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.) ABBYY FineReader 9.0 Sprint (HKLM-x32\...\ABBYY FineReader 9.0 Sprint) (Version: 9.01.513.58212 - ABBYY) ABBYY FineReader 9.0 Sprint (x32 Version: 9.01.513.58212 - ABBYY) Hidden Acer Backup Manager (HKLM-x32\...\InstallShield_{0B61BBD5-DA3C-409A-8730-0C3DC3B0F270}) (Version: 3.0.0.99 - NTI Corporation) Acer Crystal Eye Webcam (HKLM-x32\...\InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}) (Version: 1.0.1904 - CyberLink Corp.) Acer Crystal Eye Webcam (x32 Version: 1.0.1904 - CyberLink Corp.) Hidden Acer ePower Management (HKLM-x32\...\{3DB0448D-AD82-4923-B305-D001E521A964}) (Version: 6.00.3008 - Acer Incorporated) Acer eRecovery Management (HKLM-x32\...\{7F811A54-5A09-4579-90E1-C93498E230D9}) (Version: 5.00.3502 - Acer Incorporated) Acer Games (HKLM-x32\...\WildTangent acer Master Uninstall) (Version: 1.0.2.5 - WildTangent) Acer Registration (HKLM-x32\...\Acer Registration) (Version: 1.04.3503 - Acer Incorporated) Acer ScreenSaver (HKLM-x32\...\Acer Screensaver) (Version: 1.1.0519.2011 - Acer Incorporated) ActiveX контрола на Windows Live Mesh за отдалечени връзки (HKLM-x32\...\{B3BA4D1C-23EF-4859-9C11-1B2CCB7FADBB}) (Version: 15.4.5722.2 - Microsoft Corporation) ActiveX-kontroll för fjärranslutningar för Windows Live Mesh (HKLM-x32\...\{376D59B1-42D9-4FA2-B6CC-E346B6BE14F5}) (Version: 15.4.5722.2 - Microsoft Corporation) Adobe Flash Player 14 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 14.0.0.145 - Adobe Systems Incorporated) Adobe Flash Player 18 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 18.0.0.209 - Adobe Systems Incorporated) Adobe Reader XI (11.0.03) - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AB0000000001}) (Version: 11.0.03 - Adobe Systems Incorporated) Agatha Christie - Death on the Nile (x32 Version: 2.2.0.98 - WildTangent) Hidden Amazon Kindle (HKU\S-1-5-21-262824916-1322527339-1189251063-1001\...\Amazon Kindle) (Version: - Amazon) Amazon Music (HKU\S-1-5-21-262824916-1322527339-1189251063-1001\...\Amazon Amazon Music) (Version: 3.0.0.564 - Amazon Services LLC) ANNO 1503 (HKLM-x32\...\{EBBB1DEF-8878-4CB8-BC0D-1196B30E7527}) (Version: - ) Apple Application Support (HKLM-x32\...\{46F044A5-CE8B-4196-984E-5BD6525E361D}) (Version: 2.3.6 - Apple Inc.) Apple Mobile Device Support (HKLM\...\{439760BC-7737-4386-9B1D-A90A3E8A22EA}) (Version: 3.4.1.2 - Apple Inc.) Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.) Backup Manager V3 (x32 Version: 3.0.0.99 - NTI Corporation) Hidden Bejeweled 2 Deluxe (x32 Version: 2.2.0.95 - WildTangent) Hidden Bing Bar (HKLM-x32\...\{C28D96C0-6A90-459E-A077-A6706F4EC0FC}) (Version: 7.0.765.0 - Microsoft Corporation) Bonjour (HKLM\...\{CA0D2F09-F811-48D4-843E-C87696C6A9D9}) (Version: 3.0.0.2 - Apple Inc.) Broadcom Card Reader Driver Installer (HKLM\...\{4710662C-8204-4334-A977-B1AC9E547819}) (Version: 14.8.2.2 - Broadcom Corporation) Broadcom NetLink Controller (HKLM\...\{C91DCB72-F5BB-410D-A91A-314F5D1B4284}) (Version: 14.8.4.1 - Broadcom Corporation) Chuzzle Deluxe (x32 Version: 2.2.0.95 - WildTangent) Hidden clear.fi (HKLM-x32\...\InstallShield_{2637C347-9DAD-11D6-9EA2-00055D0CA761}) (Version: 1.0.1720.00 - CyberLink Corp.) clear.fi (x32 Version: 1.0.1517_36458 - CyberLink Corp.) Hidden clear.fi (x32 Version: 1.0.1720.00 - CyberLink Corp.) Hidden clear.fi (x32 Version: 9.0.7709 - CyberLink Corp.) Hidden clear.fi Client (HKLM-x32\...\{43AAE145-83CF-4C96-9A5E-756CEFCE879F}) (Version: 1.00.3500 - Acer Incorporated) Control ActiveX de Windows Live Mesh para conexiones remotas (HKLM-x32\...\{04668DF2-D32F-4555-9C7E-35523DCD6544}) (Version: 15.4.5722.2 - Microsoft Corporation) Control ActiveX del Windows Live Mesh per a connexions remotes (HKLM-x32\...\{76C064E2-BB99-4453-8FDA-42BC01AD0734}) (Version: 15.4.5722.2 - Microsoft Corporation) Control ActiveX Windows Live Mesh pentru conexiuni la distanță (HKLM-x32\...\{260E3D78-94E6-47EC-8E29-46301572BB1E}) (Version: 15.4.5722.2 - Microsoft Corporation) Controle ActiveX do Windows Live Mesh para Conexões Remotas (HKLM-x32\...\{39B3184E-0BFB-40FA-ADDC-E7E2D535CDA9}) (Version: 15.4.5722.2 - Microsoft Corporation) Contrôle ActiveX Windows Live Mesh pour connexions à distance (HKLM-x32\...\{55D003F4-9599-44BF-BA9E-95D060730DD3}) (Version: 15.4.5722.2 - Microsoft Corporation) Controlo ActiveX do Windows Live Mesh para Ligações Remotas (HKLM-x32\...\{E54EEB5D-41ED-40FE-B4A8-8565DB81469B}) (Version: 15.4.5722.2 - Microsoft Corporation) Crazy Chicken Kart 2 (x32 Version: 2.2.0.97 - WildTangent) Hidden D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden Dolby Advanced Audio v2 (HKLM-x32\...\{B9E70C7A-9F85-4A39-A4A3-BFA3C3BF7613}) (Version: 7.2.7000.4 - Dolby Laboratories Inc) DriveImage XML (Private Edition) (HKLM-x32\...\{F7E1CA14-B39D-452A-960B-39423DDDD933}) (Version: 2.50.000 - Runtime Software) Druckerdeinstallation für EPSON SX620FW Series (HKLM\...\EPSON SX620FW Series) (Version: - SEIKO EPSON Corporation) eBay Worldwide (HKLM-x32\...\{D3E5A972-9A15-427D-AE78-8181A5FD943C}) (Version: 2.2.0409 - OEM) Epson FAX Utility (HKLM-x32\...\{0CBE6C93-CB2E-4378-91EE-12BE6D4E2E4A}) (Version: 1.10.00 - SEIKO EPSON CORPORATION) Epson PC-FAX Driver (HKLM-x32\...\EPSON PC-FAX Driver 2) (Version: - ) EPSON Scan (HKLM-x32\...\EPSON Scanner) (Version: - Seiko Epson Corporation) EPSON SX620FW Series Handbuch (HKLM-x32\...\EPSON SX620FW Series Manual) (Version: - ) EPSON SX620FW Series Netzwerk-Handbuch (HKLM-x32\...\EPSON SX620FW Series Network Guide) (Version: - ) EpsonNet Print (HKLM-x32\...\{3E31400D-274E-4647-916C-2CACC3741799}) (Version: 2.5.00 - SEIKO EPSON CORPORATION) EpsonNet Setup 3.3 (HKLM-x32\...\{C9D8A041-2963-4B31-8FFC-1500F3DB9293}) (Version: 3.3a - SEIKO EPSON CORPORATION) FATE (x32 Version: 2.2.0.97 - WildTangent) Hidden FileZilla Client 3.6.0.2 (HKU\S-1-5-21-262824916-1322527339-1189251063-1001\...\FileZilla Client) (Version: 3.6.0.2 - FileZilla Project) Final Drive: Nitro (x32 Version: 2.2.0.95 - WildTangent) Hidden Formant ActiveX programu Windows Live Mesh odpowiedzialny za obsługę połączeń zdalnych (HKLM-x32\...\{B04A0E2F-1E4C-4E61-B18E-3B2BD6779CA7}) (Version: 15.4.5722.2 - Microsoft Corporation) Fotogalerija Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden FUSSBALL MANAGER 08 (HKLM-x32\...\FUSSBALL MANAGER 08) (Version: - Electronic Arts) Galeria de Fotografias do Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Galería fotográfica de Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Galeria fotogràfica del Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Galeria fotografii usługi Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Galerie de photos Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Galerie foto Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Identity Card (HKLM-x32\...\Identity Card) (Version: 1.00.3501 - Acer Incorporated) Insaniquarium Deluxe (x32 Version: 2.2.0.97 - WildTangent) Hidden Intel(R) Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1007 - Intel Corporation) Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 7.0.0.1144 - Intel Corporation) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 8.15.10.2418 - Intel Corporation) Intel(R) Rapid Storage Technology (HKLM-x32\...\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: 10.5.0.1026 - Intel Corporation) iTunes (HKLM\...\{997C9EC4-B53D-479D-81B7-0AEC8D174BA1}) (Version: 10.4.1.10 - Apple Inc.) IZArc 4.1.7 (HKLM-x32\...\{97C82B44-D408-4F14-9252-47FC1636D23E}_is1) (Version: 4.1.7 - Ivan Zahariev) Java 8 Update 25 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218025F0}) (Version: 8.0.250 - Oracle Corporation) JavaFX 2.1.1 (HKLM-x32\...\{1111706F-666A-4037-7777-211328764D10}) (Version: 2.1.1 - Oracle Corporation) Jewel Match 3 (x32 Version: 2.2.0.97 - WildTangent) Hidden Jewel Quest Solitaire (x32 Version: 2.2.0.95 - WildTangent) Hidden John Deere Drive Green (x32 Version: 2.2.0.95 - WildTangent) Hidden Junk Mail filter update (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Kaspersky Internet Security (HKLM-x32\...\InstallWIX_{8ED07EBD-22AD-415A-B71E-C1AD86862C2E}) (Version: 15.0.1.415 - Kaspersky Lab) Kaspersky Internet Security (x32 Version: 15.0.1.415 - Kaspersky Lab) Hidden Kontrola Windows Live Mesh ActiveX za daljinske veze (HKLM-x32\...\{19CBDE24-2761-49A5-816B-D2BA65D0CA8D}) (Version: 15.4.5722.2 - Microsoft Corporation) Kontrolnik Windows Live Mesh ActiveX za oddaljene povezave (HKLM-x32\...\{CA227A9D-09BE-4BFB-9764-48FED2DA5454}) (Version: 15.4.5722.2 - Microsoft Corporation) Launch Manager (HKLM-x32\...\LManager) (Version: 5.1.7 - Acer Inc.) Malwarebytes Anti-Malware Version 2.1.8.1057 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.1.8.1057 - Malwarebytes Corporation) Mesh Runtime (x32 Version: 15.4.5722.2 - Microsoft Corporation) Hidden Microsoft .NET Framework 4.5.1 (Deutsch) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1031) (Version: 4.5.50938 - Microsoft Corporation) Microsoft .NET Framework 4.5.2 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.51209 - Microsoft Corporation) Microsoft Mathematics-Add-In (32 Bit) (HKLM-x32\...\{E2C98732-F973-4985-A9C5-DC06178E16EE}) (Version: 2.0.041222.01 - Microsoft Corporation) Microsoft Office Klick-und-Los 2010 (HKLM-x32\...\Office14.Click2Run) (Version: 14.0.4763.1000 - Microsoft Corporation) Microsoft Office Outlook Connector (HKLM-x32\...\{95140000-0081-0407-0000-0000000FF1CE}) (Version: 14.0.6123.5001 - Microsoft Corporation) Microsoft Office Professional 2010 (HKLM-x32\...\Office14.SingleImage) (Version: 14.0.7015.1000 - Microsoft Corporation) Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.40728.0 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (HKLM-x32\...\{770657D0-A123-3C07-8E44-1C83EC895118}) (Version: 8.0.50727.4053 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation) Microsoft Visual Studio 2010-Tools für Office-Laufzeit (x64) Language Pack - DEU (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64) Language Pack - DEU) (Version: 10.0.50903 - Microsoft Corporation) Mozilla Firefox 40.0 (x86 de) (HKLM-x32\...\Mozilla Firefox 40.0 (x86 de)) (Version: 40.0 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 40.0.0.5697 - Mozilla) Mystery of Mortlake Mansion (x32 Version: 2.2.0.98 - WildTangent) Hidden MyWinLocker (Version: 4.0.14.27 - Egis Technology Inc.) Hidden MyWinLocker 4 (x32 Version: 4.0.14.27 - Egis Technology Inc.) Hidden MyWinLocker Suite (HKLM-x32\...\InstallShield_{17DF9714-60C9-43C9-A9C2-32BCAED44CBE}) (Version: 4.0.14.18 - Egis Technology Inc.) MyWinLocker Suite (x32 Version: 4.0.14.18 - Egis Technology Inc.) Hidden newsXpresso (HKLM-x32\...\InstallShield_{613C0AC5-3A67-4B94-8B13-9176AD83F5BF}) (Version: 1.0.0.40 - esobi Inc.) newsXpresso (x32 Version: 1.0.0.40 - esobi Inc.) Hidden Norton Online Backup (HKLM-x32\...\{40A66DF6-22D3-44B5-A7D3-83B118A2C0DC}) (Version: 2.1.17869 - Symantec Corporation) NTI Media Maker 9 (HKLM-x32\...\InstallShield_{D3D5C4E8-040F-4C6F-8105-41D43CF94F44}) (Version: 9.0.2.8942 - NTI Corporation) NTI Media Maker 9 (x32 Version: 9.0.2.8942 - NTI Corporation) Hidden NVIDIA Grafiktreiber 268.00 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 268.00 - NVIDIA Corporation) NVIDIA PhysX (HKLM-x32\...\{B9DB4C76-01A4-46D5-8910-F7AA6376DBAF}) (Version: 9.10.0514 - NVIDIA Corporation) Ovládací prvek ActiveX platformy Windows Live Mesh pro vzdálená připojení (HKLM-x32\...\{B6190387-0036-4BEB-8D74-A0AFC5F14706}) (Version: 15.4.5722.2 - Microsoft Corporation) Ovládací prvok ActiveX programu Windows Live Mesh pre vzdialené pripojenia (HKLM-x32\...\{C2FD7DB5-FE30-49B6-8A2F-C5652E053C31}) (Version: 15.4.5722.2 - Microsoft Corporation) PDFCreator (HKLM-x32\...\{0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}) (Version: 1.5.0 - Frank Heindörfer, Philip Chinery) Penguins! (x32 Version: 2.2.0.95 - WildTangent) Hidden PhotoScape (HKLM-x32\...\PhotoScape) (Version: - ) Plants vs. Zombies - Game of the Year (x32 Version: 2.2.0.95 - WildTangent) Hidden Poczta usługi Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Podstawowe programy Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Polar Bowler (x32 Version: 2.2.0.97 - WildTangent) Hidden Pošta Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Prison Tycoon (HKLM-x32\...\Prison Tycoon) (Version: 1.0.0.7 - Valu Soft) QuickTime 7 (HKLM-x32\...\{111EE7DF-FC45-40C7-98A7-753AC46B12FB}) (Version: 7.75.80.95 - Apple Inc.) Raccolta foto di Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6339 - Realtek Semiconductor Corp.) Renesas Electronics USB 3.0 Host Controller Driver (HKLM-x32\...\InstallShield_{5442DAB8-7177-49E1-8B22-09A049EA5996}) (Version: 2.0.34.0 - Renesas Electronics Corporation) Renesas Electronics USB 3.0 Host Controller Driver (x32 Version: 2.0.34.0 - Renesas Electronics Corporation) Hidden Safari (HKLM-x32\...\{C779648B-410E-4BBA-B75B-5815BCEFE71D}) (Version: 5.34.57.2 - Apple Inc.) Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{DE28B448-32E8-4E8F-84F0-A52B21A49B5B}) (Version: - Microsoft) Shredder (Version: 2.0.8.9 - Egis Technology Inc.) Hidden Shredder (x32 Version: 2.0.8.9 - Egis Technology Inc.) Hidden Sid Meier's Civilization 4 Complete (HKU\S-1-5-21-262824916-1322527339-1189251063-1001\...\{30D1F3D2-54CF-481D-A005-F94B0E98FEEC}) (Version: 1.74 - Firaxis Games) Sid Meier's Civilization V (HKLM-x32\...\Steam App 8930) (Version: - 2K Games, Inc.) SiSoftware Sandra Lite 2012.SP1c (HKLM\...\{C3113E55-7BCB-4de3-8EBF-60E6CE6B2296}_is1) (Version: 18.28.2012.2 - SiSoftware) Skype™ 7.0 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.0.102 - Skype Technologies S.A.) Slingo Deluxe (x32 Version: 2.2.0.95 - WildTangent) Hidden SpeedFan (remove only) (HKLM-x32\...\SpeedFan) (Version: - ) Spybot - Search & Destroy (HKLM-x32\...\{B4092C6D-E886-4CB2-BA68-FE5A99D31DE7}_is1) (Version: 2.4.40 - Safer-Networking Ltd.) Steam (HKLM-x32\...\{048298C9-A4D3-490B-9FF9-AB023A9238F3}) (Version: 1.0.0.0 - Valve Corporation) Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 15.1.6.0 - Synaptics Incorporated) Torchlight (x32 Version: 2.2.0.97 - WildTangent) Hidden Überwachungstool für die Intel® Turbo-Boost-Technik 2.0 (HKLM\...\{B77EFA0B-9BD3-4122-9F9A-15A963B5EA24}) (Version: 2.1.23.0 - Intel) Update Installer for WildTangent Games App (x32 Version: - WildTangent) Hidden Uzak Bağlantılar İçin Windows Live Mesh ActiveX Denetimi (HKLM-x32\...\{241E7104-937A-4366-AD57-8FDDDB003939}) (Version: 15.4.5722.2 - Microsoft Corporation) Virtual Villagers 4 - The Tree of Life (x32 Version: 2.2.0.97 - WildTangent) Hidden Warcraft II BNE (HKLM-x32\...\Warcraft II BNE) (Version: - ) Wedding Dash (x32 Version: 2.2.0.95 - WildTangent) Hidden Welcome Center (HKLM-x32\...\Acer Welcome Center) (Version: 1.02.3503 - Acer Incorporated) WildTangent Games App (Acer Games) (x32 Version: 4.0.5.14 - WildTangent) Hidden Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 15.4.3555.0308 - Microsoft Corporation) Windows Live Mesh - ActiveX-besturingselement voor externe verbindingen (HKLM-x32\...\{C32CE55C-12BA-4951-8797-0967FDEF556F}) (Version: 15.4.5722.2 - Microsoft Corporation) Windows Live Mesh ActiveX Control for Remote Connections (HKLM-x32\...\{2902F983-B4C1-44BA-B85D-5C6D52E2C441}) (Version: 15.4.5722.2 - Microsoft Corporation) Windows Live Mesh ActiveX control for remote connections (HKLM-x32\...\{C5398A89-516C-4DAF-BA07-EE7949090E56}) (Version: 15.4.5722.2 - Microsoft Corporation) Windows Live Mesh ActiveX Control for Remote Connections (HKLM-x32\...\{C63A1E60-B6A4-440B-89A5-1FC6E4AC1C94}) (Version: 15.4.5722.2 - Microsoft Corporation) Windows Live Mesh ActiveX-kontroll for eksterne tilkoblinger (HKLM-x32\...\{09B7C7EB-3140-4B5E-842F-9C79A7137139}) (Version: 15.4.5722.2 - Microsoft Corporation) Windows Live Mesh ActiveX-objekt til fjernforbindelser (HKLM-x32\...\{57220148-3B2B-412A-A2E0-82B9DF423696}) (Version: 15.4.5722.2 - Microsoft Corporation) Windows Live Mesh ActiveX-vezérlő távoli kapcsolatokhoz (HKLM-x32\...\{6E29C4F7-C2C2-4B18-A15C-E09B92065F15}) (Version: 15.4.5722.2 - Microsoft Corporation) Windows Live Meshin etäyhteyksien ActiveX-komponentti (HKLM-x32\...\{4CF6F287-5121-483C-A5A2-07BDE19D8B4E}) (Version: 15.4.5722.2 - Microsoft Corporation) Zuma Deluxe (x32 Version: 2.2.0.95 - WildTangent) Hidden Zune (HKLM\...\Zune) (Version: 04.08.2345.00 - Microsoft Corporation) Στοιχείο ελέγχου ActiveX του Windows Live Mesh για απομακρυσμένες συνδέσεις (HKLM-x32\...\{F665F3B8-01B4-46A9-8E47-FF8DC2208C9F}) (Version: 15.4.5722.2 - Microsoft Corporation) Συλλογή φωτογραφιών του Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Основные компоненты Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Почта Windows Live (x32 Version: 15.4.3502.0922 - Корпорация Майкрософт) Hidden Фотоальбом Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Фотогалерия на Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden Элемент управления Windows Live Mesh ActiveX для удаленных подключений (HKLM-x32\...\{BCB0D6F7-7EAB-4009-A6F2-8E0E7F317773}) (Version: 15.4.5722.2 - Microsoft Corporation) גלריית התמונות של Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden פקד ActiveX של Windows Live Mesh עבור חיבורים מרוחקים (HKLM-x32\...\{9D4C7DFA-CBBB-4F06-BDAC-94D831406DF0}) (Version: 15.4.5722.2 - Microsoft Corporation) بريد Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden عنصر تحكم ActiveX الخاص بـ Windows Live Mesh للاتصالات البعيدة (HKLM-x32\...\{E18B30AA-6E2D-480C-B918-AF61009F4010}) (Version: 15.4.5722.2 - Microsoft Corporation) معرض صور Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden ตัวควบคุม ActiveX ใน Windows Live Mesh สำหรับการเชื่อมต่อระยะไกล (ไทย) (HKLM-x32\...\{A2EDAEEB-C981-46D5-8163-CF8F5F640EEE}) (Version: 15.4.5722.2 - Microsoft Corporation) 適用遠端連線的 Windows Live Mesh ActiveX 控制項 (HKLM-x32\...\{622DE1BE-9EDE-49D3-B349-29D64760342A}) (Version: 15.4.5722.2 - Microsoft Corporation) ==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Wiederherstellungspunkte ========================= 02-08-2015 11:03:07 Windows Update 06-08-2015 10:34:08 Windows Update 10-08-2015 09:58:08 Windows Update 13-08-2015 00:23:19 Windows Update 14-08-2015 00:56:54 Malwarebytes Anti-Rootkit Restore Point 14-08-2015 10:23:36 JRT Pre-Junkware Removal ==================== Hosts Inhalt: =============================== (Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.) 2009-07-14 04:34 - 2009-06-10 23:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) ============= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) Task: {1518B86F-D05C-4311-AEDF-277C69C3F515} - System32\Tasks\clear.fiAgent => C:\Program Files (x86)\Acer\clear.fi\MVP\clear.fiAgent.exe [2011-05-20] (CyberLink Corp.) Task: {294B81D7-7A5C-45FC-B3FA-84ADD3325BA1} - System32\Tasks\Microsoft\Windows\Application Experience\ProgramDataUpdater => Rundll32.exe invagent.dll,RunUpdate -noappraiser Task: {326717C7-4CC3-4523-9002-37EC8635E412} - System32\Tasks\Adobe ARM => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-05-11] (Adobe Systems Incorporated) Task: {3B169C6C-75E3-45E9-BD6B-CEF4F2DA2F72} - System32\Tasks\PMMUpdate => C:\Program Files\EgisTec IPS\PMMUpdate.exe [2011-03-29] (Egis Technology Inc.) Task: {5C710D0A-C456-4B99-9C72-9C8D11D4B3C7} - System32\Tasks\clear.fi => C:\Program Files (x86)\Acer\clear.fi\MVP\clear.fi.exe [2011-05-20] (Acer Incorporated) Task: {65886FC5-8685-4E98-9785-221399A111E9} - System32\Tasks\Adobe Reader Speed Launcher => C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe Task: {81217CAA-3FE7-470A-80CC-58A28038F211} - System32\Tasks\DMREngine => C:\Program Files (x86)\Acer\clear.fi\MVP\.\Kernel\DMR\DMREngine.exe [2011-05-20] (CyberLink) Task: {8F0BECC8-C05E-4C76-AF62-8853F482490B} - System32\Tasks\{A1752E45-252B-4FC9-A9F1-66411B395080} => pcalua.exe -a D:\SETUP.EXE -d D:\ Task: {9CE06E33-4936-467A-99C8-21D988E3C38A} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Scan the system => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDScan.exe [2014-06-24] (Safer-Networking Ltd.) Task: {A115C201-3DAB-4D8A-8DD7-4BADE1EB2A84} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Check for updates => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe [2014-06-27] (Safer-Networking Ltd.) Task: {D7F8FE3D-7B9A-4DE6-9DE3-91C0FD872A8D} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Refresh immunization => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDImmunize.exe [2014-06-24] (Safer-Networking Ltd.) (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.) ==================== Geladene Module (Nicht auf der Ausnahmeliste) ============== 2010-01-02 16:42 - 2010-01-02 16:42 - 00098304 _____ () C:\Program Files (x86)\FileZilla FTP Client\fzshellext_64.dll 2009-01-22 01:45 - 2009-01-22 01:45 - 01401856 _____ () C:\Program Files (x86)\EgisTec MyWinLocker\x64\LIBEAY32.dll 2012-12-04 23:32 - 2012-07-20 15:39 - 02469888 _____ () C:\Program Files (x86)\IZArc\IZArcCM64.dll 2014-08-30 18:12 - 2014-08-30 18:12 - 01269952 _____ () C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\kpcengine.2.3.dll 2015-08-13 17:44 - 2014-05-13 12:04 - 00109400 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\snlThirdParty150.bpl 2015-08-13 17:44 - 2014-05-13 12:04 - 00416600 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\DEC150.bpl 2015-08-13 17:44 - 2014-05-13 12:04 - 00167768 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\snlFileFormats150.bpl 2015-08-13 17:44 - 2012-08-23 10:38 - 00574840 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\sqlite3.dll 2015-08-13 17:44 - 2012-04-03 17:06 - 00565640 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\av\BDSmartDB.dll 2014-08-30 18:12 - 2014-11-20 12:36 - 00332584 _____ () C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\FFExt\online_banking@kaspersky.com\nponlinebanking.dll 2014-08-30 18:12 - 2014-11-20 12:36 - 00459048 _____ () C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\FFExt\content_blocker@kaspersky.com\npcontentblocker.dll 2014-08-30 18:12 - 2014-11-20 12:36 - 00587048 _____ () C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\FFExt\virtual_keyboard@kaspersky.com\npvkplugin.dll 2015-07-15 22:08 - 2015-07-15 22:08 - 17448624 _____ () C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_18_0_0_209.dll ==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) ========= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.) ==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.) ==================== EXE Verknüpfungen (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.) ==================== Internet Explorer Vertrauenswürdig/Eingeschränkt =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.) ==================== Andere Bereiche ============================ (Aktuell gibt es keinen automatisierten Fix für diesen Bereich.) HKU\S-1-5-21-262824916-1322527339-1189251063-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Kris\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 10.0.0.138 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Windows Firewall ist aktiviert. ==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge == (Aktuell gibt es keinen automatisierten Fix für diesen Bereich.) MSCONFIG\startupreg: Adobe ARM => "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" MSCONFIG\startupreg: Amazon Music => "C:\Users\Kris\AppData\Local\Amazon Music\Amazon Music Helper.exe" MSCONFIG\startupreg: APSDaemon => "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" MSCONFIG\startupreg: ArcadeMovieService => "C:\Program Files (x86)\Acer\clear.fi\Movie\clear.fiMovieService.exe" MSCONFIG\startupreg: BackupManagerTray => "C:\Program Files (x86)\NTI\Acer Backup Manager\BackupManagerTray.exe" -h -k MSCONFIG\startupreg: Dolby Advanced Audio v2 => "C:\Dolby PCEE4\pcee4.exe" -autostart MSCONFIG\startupreg: Epson Stylus SX620FW(Netzwerk) => C:\Windows\system32\spool\DRIVERS\x64\3\E_IATIGBE.EXE /FU "C:\Users\Kris\AppData\Local\Temp\E_S148.tmp" /EF "HKCU" MSCONFIG\startupreg: FUFAXSTM => "C:\Program Files (x86)\Epson Software\FAX Utility\FUFAXSTM.exe" MSCONFIG\startupreg: HotKeysCmds => C:\Windows\system32\hkcmd.exe MSCONFIG\startupreg: IgfxTray => C:\Windows\system32\igfxtray.exe MSCONFIG\startupreg: iTunesHelper => "C:\Program Files (x86)\iTunes\iTunesHelper.exe" MSCONFIG\startupreg: msnmsgr => "C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe" /background MSCONFIG\startupreg: Norton Online Backup => C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuClient.exe MSCONFIG\startupreg: Persistence => C:\Windows\system32\igfxpers.exe MSCONFIG\startupreg: Power Management => C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe MSCONFIG\startupreg: QuickTime Task => "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime MSCONFIG\startupreg: Steam => "E:\Spiele\Steam\Steam.exe" -silent MSCONFIG\startupreg: SuiteTray => "C:\Program Files (x86)\EgisTec MyWinLockerSuite\x86\SuiteTray.exe" MSCONFIG\startupreg: SunJavaUpdateSched => "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" MSCONFIG\startupreg: Zune Launcher => "C:\Program Files\Zune\ZuneLauncher.exe" ==================== Firewall Regeln (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) FirewallRules: [{DCD0764F-F2FC-4692-AC00-6182656DB809}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe FirewallRules: [{E9B97517-DFAA-447B-81DA-A324A90DC5B5}] => (Allow) C:\Program Files\Common Files\mcafee\mcsvchost\McSvHost.exe FirewallRules: [{206D17A3-0E47-4E5E-A791-E070EEE3C58E}] => (Allow) C:\Program Files\Common Files\mcafee\mcsvchost\McSvHost.exe FirewallRules: [{4C66A1DB-2E1D-4DA4-8163-41FAE4C345F5}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe FirewallRules: [{3888A507-1516-4ED1-821E-977521D6B78C}] => (Allow) LPort=2869 FirewallRules: [{31121F76-DD69-40E4-89B8-C263E364B915}] => (Allow) LPort=1900 FirewallRules: [{70A03D02-C530-4568-B384-44A71E4A26EC}] => (Allow) C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe FirewallRules: [{2440E1B4-BA41-497F-9494-B7F27A366469}] => (Allow) C:\Program Files (x86)\Windows Live\Mesh\MOE.exe FirewallRules: [{008D549B-1138-4B96-A806-6663B6ADF4BC}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe FirewallRules: [{501A0238-8668-4D5A-A47A-44AED3808E55}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe FirewallRules: [{DE60B046-3F8F-42FD-8BB3-9685C4C620C4}] => (Allow) C:\Program Files (x86)\Acer\clear.fi\MVP\clear.fi.exe FirewallRules: [{66A83454-45C5-4E40-954B-D3D4E1A06F24}] => (Allow) C:\Program Files (x86)\Acer\clear.fi\MVP\clear.fiAgent.exe FirewallRules: [{5F599C0B-A6C5-4A5C-8964-0AB7DA63AB6A}] => (Allow) C:\Program Files (x86)\Acer\clear.fi\MVP\Kernel\CLML\CLMLSvc.exe FirewallRules: [{B9F0BA9F-6E72-4E24-B5FF-1966A68D11AA}] => (Allow) C:\Program Files (x86)\Acer\clear.fi\MVP\Kernel\DMR\DMREngine.exe FirewallRules: [{D7E11B14-4845-46F3-BCC9-57694B8E8E04}] => (Allow) C:\Program Files (x86)\Acer\clear.fi\MVP\Kernel\DMR\DMREngine.exe FirewallRules: [{6F983765-AB85-4DEB-98EE-419EDFA9AC95}] => (Block) C:\Program Files (x86)\Acer\clear.fi\MVP\Kernel\DMR\DMREngine.exe FirewallRules: [{AB534C3B-9B71-488C-8623-A78E6D7D20D6}] => (Allow) C:\Program Files (x86)\Acer\clear.fi\Movie\TouchMovie.exe FirewallRules: [{16DAC731-11C4-4551-B743-C60F3D31CAC4}] => (Allow) C:\Program Files (x86)\Acer\clear.fi\Movie\TouchMovieService.exe FirewallRules: [{0F554F09-26AE-47A4-B382-EF723442EC1E}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{761109E6-F792-41B2-906D-2F0D3E8F8BCC}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{CAB7C3E0-1638-4249-BD63-5C46C9814587}] => (Allow) C:\Program Files (x86)\iTunes\iTunes.exe FirewallRules: [{5093C363-4A8F-485D-80D8-26A9FB84B940}] => (Allow) C:\Program Files (x86)\EpsonNet\EpsonNet Setup\tool10\ENEasyApp.exe FirewallRules: [{CCD54A46-D59F-4B1F-B1D0-C408184C140D}] => (Allow) C:\Program Files (x86)\EpsonNet\EpsonNet Setup\tool10\ENEasyApp.exe FirewallRules: [{4C09937D-E661-4768-89C9-85D635E81364}] => (Allow) C:\Program Files\SiSoftware\SiSoftware Sandra Lite 2012.SP1c\RpcAgentSrv.exe FirewallRules: [{9B0EAC11-C4EE-4724-A0A4-EA04152E359D}] => (Allow) %ProgramFiles%\Zune\Zune.exe FirewallRules: [{AD705649-E8B2-4CD7-869F-FE14A9B3B971}] => (Allow) %ProgramFiles%\Zune\ZuneNSS.exe FirewallRules: [{822CE9B1-7E3B-40F8-A16E-6478CA47687D}] => (Allow) %ProgramFiles%\Zune\ZuneNSS.exe FirewallRules: [{1EC86722-ADC5-42D9-9E50-215957B8564C}] => (Allow) %ProgramFiles%\Zune\ZuneNSS.exe FirewallRules: [{61B1B376-9A1D-4F0D-B869-D261C8EAB204}] => (Allow) %ProgramFiles%\Zune\ZuneNSS.exe FirewallRules: [{F1D112B0-D4A5-4600-BD8B-981A803E728D}] => (Allow) %ProgramFiles%\Zune\ZuneNSS.exe FirewallRules: [{37A1E45E-7AE3-448D-85C8-D502C83224F0}] => (Allow) %ProgramFiles%\Zune\ZuneNSS.exe FirewallRules: [{7947403B-8CBA-44FB-B6E5-E599C24E4EC9}] => (Allow) %ProgramFiles%\Zune\ZuneNSS.exe FirewallRules: [{EC5A3046-8B16-41E8-B953-A0A1367C8F22}] => (Allow) %ProgramFiles%\Zune\ZuneNSS.exe FirewallRules: [TCP Query User{DDD18997-1632-4390-ABED-59A4A74DBBB4}C:\program files (x86)\java\jre7\bin\java.exe] => (Allow) C:\program files (x86)\java\jre7\bin\java.exe FirewallRules: [UDP Query User{CCA9D285-0019-485F-A81B-8CE24E4FC752}C:\program files (x86)\java\jre7\bin\java.exe] => (Allow) C:\program files (x86)\java\jre7\bin\java.exe FirewallRules: [{F3EB9AEB-B3A7-4EE8-9B97-88C621935CA3}] => (Allow) E:\Spiele\Steam\Steam.exe FirewallRules: [{6CCD3EA4-DE21-4A40-B445-6554FA58262D}] => (Allow) E:\Spiele\Steam\Steam.exe FirewallRules: [TCP Query User{680ACDF5-200E-49FB-96A0-FAC7A0AC26DA}E:\spiele\steam\steamapps\common\sid meier's civilization v\civilizationv.exe] => (Block) E:\spiele\steam\steamapps\common\sid meier's civilization v\civilizationv.exe FirewallRules: [UDP Query User{BB45D3B1-11B4-4768-883B-0A3FE2EBAF29}E:\spiele\steam\steamapps\common\sid meier's civilization v\civilizationv.exe] => (Block) E:\spiele\steam\steamapps\common\sid meier's civilization v\civilizationv.exe FirewallRules: [{AC4186D7-E934-4204-9EB0-8DDE682846C1}] => (Allow) C:\Program Files\SiSoftware\SiSoftware Sandra Lite 2012.SP1c\WNt500x64\RpcSandraSrv.exe FirewallRules: [TCP Query User{2FE5177A-BB17-4E85-B77A-C65CE74B661E}E:\spiele\steam\steamapps\common\sid meier's civilization v\civilizationv.exe] => (Block) E:\spiele\steam\steamapps\common\sid meier's civilization v\civilizationv.exe FirewallRules: [UDP Query User{E45401B1-994E-43C7-B718-D45F6354EC84}E:\spiele\steam\steamapps\common\sid meier's civilization v\civilizationv.exe] => (Block) E:\spiele\steam\steamapps\common\sid meier's civilization v\civilizationv.exe FirewallRules: [{89FE9F95-2F51-4728-887C-CD7F3A1D8A64}] => (Allow) E:\Spiele\Steam\SteamApps\common\Sid Meier's Civilization V\Launcher.exe FirewallRules: [{88B509E8-47A0-43AB-A6D1-DF4DADB45DE3}] => (Allow) E:\Spiele\Steam\SteamApps\common\Sid Meier's Civilization V\Launcher.exe FirewallRules: [{45A400A7-B9AF-4869-996D-E3B44E8148C8}] => (Allow) E:\Spiele\Steam\SteamApps\common\Sid Meier's Civilization V\Launcher.exe FirewallRules: [{375A30AD-519F-440E-9F7C-2933171DB831}] => (Allow) E:\Spiele\Steam\SteamApps\common\Sid Meier's Civilization V\Launcher.exe FirewallRules: [{2F7DF12E-0150-4BB5-91FA-BB94EDC9D1D3}] => (Allow) E:\Spiele\Steam\Steam.exe FirewallRules: [{B90B6130-6C67-4D2A-A288-506268B6C140}] => (Allow) E:\Spiele\Steam\Steam.exe FirewallRules: [{3A0A43B6-9CC8-4376-875A-A3A3785EAC59}] => (Allow) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\WebKit2WebProcess.exe FirewallRules: [{4D1F220A-6429-46E6-B186-C88E2C2A99A1}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{0ECE1F68-908C-4990-BAF8-C40DAE9B87A1}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{ED0A8107-777B-43BE-B714-258FE9EF543E}] => (Allow) E:\Spiele\Civilization4\Civilization4.exe FirewallRules: [{E8AF3B10-445F-4C2C-95ED-AAD9ECB5D94B}] => (Allow) E:\Spiele\Civilization4\Civilization4.exe FirewallRules: [{E884D376-E90A-443C-AEB6-A6D712EFCDA1}] => (Allow) E:\Spiele\Civilization4\Warlords\Civ4Warlords.exe FirewallRules: [{71AE2B11-001A-4827-BE5F-0C73F4363CA2}] => (Allow) E:\Spiele\Civilization4\Warlords\Civ4Warlords.exe FirewallRules: [{32C685D3-D801-4700-BC37-839F76491DDF}] => (Allow) E:\Spiele\Civilization4\Beyond the Sword\Civ4BeyondSword.exe FirewallRules: [{4585BCD4-F468-43BE-8107-ED694D386D37}] => (Allow) E:\Spiele\Civilization4\Beyond the Sword\Civ4BeyondSword.exe StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe] => Enabled:Spybot - Search & Destroy tray access StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe] => Enabled:Spybot-S&D 2 Scanner Service StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe] => Enabled:Spybot-S&D 2 Updater StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe] => Enabled:Spybot-S&D 2 Background update service ==================== Fehlerhafte Geräte im Gerätemanager ============= ==================== Fehlereinträge in der Ereignisanzeige: ========================= Applikationsfehler: ================== Error: (08/14/2015 10:16:11 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/14/2015 09:56:18 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/14/2015 01:00:17 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/13/2015 09:42:56 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/13/2015 06:41:00 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Programm SDFiles.exe, Version 2.4.40.135 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: 5dc Startzeit: 01d0d5e635842ee1 Endzeit: 5 Anwendungspfad: C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFiles.exe Berichts-ID: 0adad5bf-41da-11e5-a541-b870f4ee45a6 Error: (08/13/2015 06:05:58 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Programm SDFiles.exe, Version 2.4.40.135 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: e64 Startzeit: 01d0d5e1a403984b Endzeit: 16 Anwendungspfad: C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFiles.exe Berichts-ID: 29478ffd-41d5-11e5-a541-b870f4ee45a6 Error: (08/13/2015 05:02:16 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/13/2015 10:01:55 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/12/2015 09:09:23 PM) (Source: Application Error) (EventID: 1005) (User: ) Description: Aus einem der folgenden Gründe kann nicht auf die Datei "" zugegriffen werden: Es besteht ein Problem mit der Netzwerkverbindung, dem Datenträger mit der gespeicherten Datei bzw. den auf dem Computer installierten Speichertreibern, oder der Datenträger fehlt. Das Programm Kaspersky Anti-Virus wurde wegen dieses Fehlers geschlossen. Programm: Kaspersky Anti-Virus Datei: Der Fehlerwert ist im Abschnitt "Zusätzliche Dateien" aufgelistet. Benutzeraktion 1. Öffnen Sie die Datei erneut. Diese Situation ist eventuell ein temporäres Problem, das selbstständig behoben wird, wenn das Programm erneut ausgeführt wird. 2. Wenn Sie weiterhin nicht auf die Datei zugreifen können und - diese sich im Netzwerk befindet, dann sollte der Netzwerkadministrator überprüfen, dass kein Netzwerkproblem besteht und dass eine Verbindung mit dem Server hergestellt werden kann. - diese sich auf einem Wechseldatenträger, wie z. B. einer Diskette oder einer CD, befindet, überprüfen Sie, ob der Datenträger richtig in den Computer eingelegt ist. 3. Überprüfen und reparieren Sie das Dateisystem, indem Sie CHKDSK ausführen. Klicken Sie dazu im Menü "Start" auf "Ausführen", geben Sie CMD ein, und klicken Sie auf "OK". Geben Sie an der Eingabeaufforderung CHKDSK /F ein, und drücken Sie die EINGABETASTE. 4. Stellen Sie die Datei von einer Sicherungskopie wieder her, wenn das Problem weiterhin besteht. 5. Überprüfen Sie, ob andere Dateien auf demselben Datenträger geöffnet werden können. Falls dies nicht möglich ist, ist der Datenträger eventuell beschädigt. Wenden Sie sich an den Administrator oder den Hersteller der Computerhardware, um weitere Unterstützung zu erhalten, wenn es sich um eine Festplatte handelt. Zusätzliche Daten Fehlerwert: 00000000 Datenträgertyp: 0 Error: (08/12/2015 09:09:23 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: avp.exe, Version: 15.0.1.415, Zeitstempel: 0x5401ce54 Name des fehlerhaften Moduls: klavasyswatch.dll.000000000012e400-01cff8786c05c8c5-01d0a37db48e, Version: 2.3.5.1414, Zeitstempel: 0x5568d872 Ausnahmecode: 0xc0000096 Fehleroffset: 0x0018b4ea ID des fehlerhaften Prozesses: 0x898 Startzeit der fehlerhaften Anwendung: 0xavp.exe0 Pfad der fehlerhaften Anwendung: avp.exe1 Pfad des fehlerhaften Moduls: avp.exe2 Berichtskennung: avp.exe3 Systemfehler: ============= Error: (08/14/2015 10:25:05 AM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Dienst "Application Virtualization Client" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert. Error: (08/14/2015 10:25:04 AM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Dienst "Intel(R) Management and Security Application User Notification Service" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert. Error: (08/14/2015 10:25:04 AM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Dienst "NVIDIA Update Service Daemon" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert. Error: (08/14/2015 10:25:04 AM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Dienst "Intel(R) Rapid Storage Technology" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert. Error: (08/14/2015 10:25:04 AM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Der Dienst "Software Protection" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 120000 Millisekunden durchgeführt: Neustart des Diensts. Error: (08/14/2015 10:25:03 AM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Der Dienst "Windows Media Player-Netzwerkfreigabedienst" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 30000 Millisekunden durchgeführt: Neustart des Diensts. Error: (08/14/2015 10:25:02 AM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Dienst "Client Virtualization Handler" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert. Error: (08/14/2015 10:25:02 AM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Der Dienst "Spybot-S&D 2 Security Center Service" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 60000 Millisekunden durchgeführt: Neustart des Diensts. Error: (08/14/2015 10:25:02 AM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Dienst "Application Virtualization Service Agent" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert. Error: (08/14/2015 10:25:02 AM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Der Dienst "Spybot-S&D 2 Updating Service" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 60000 Millisekunden durchgeführt: Neustart des Diensts. Microsoft Office: ========================= Error: (08/14/2015 10:16:11 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/14/2015 09:56:18 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/14/2015 01:00:17 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/13/2015 09:42:56 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/13/2015 06:41:00 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: SDFiles.exe2.4.40.1355dc01d0d5e635842ee15C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFiles.exe0adad5bf-41da-11e5-a541-b870f4ee45a6 Error: (08/13/2015 06:05:58 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: SDFiles.exe2.4.40.135e6401d0d5e1a403984b16C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFiles.exe29478ffd-41d5-11e5-a541-b870f4ee45a6 Error: (08/13/2015 05:02:16 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/13/2015 10:01:55 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003 Error: (08/12/2015 09:09:23 PM) (Source: Application Error) (EventID: 1005) (User: ) Description: Kaspersky Anti-Virus000000000 Error: (08/12/2015 09:09:23 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: avp.exe15.0.1.4155401ce54klavasyswatch.dll.000000000012e400-01cff8786c05c8c5-01d0a37db48e2.3.5.14145568d872c00000960018b4ea89801d0d4d18a84bbd2C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\avp.exeC:\ProgramData\Kaspersky Lab\AVP15.0.1\Bases\Cache\klavasyswatch.dll.000000000012e400-01cff8786c05c8c5-01d0a37db48e6bb3a3efef39-4125-11e5-b929-b870f4ee45a6 CodeIntegrity: =================================== Date: 2015-03-10 12:18:03.285 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\ELAMBKUP\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2015-03-10 12:18:03.285 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\ELAMBKUP\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2015-03-10 12:18:03.275 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\ELAMBKUP\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2015-03-10 12:18:03.265 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\KLELAMX64\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2015-03-10 12:18:03.265 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\KLELAMX64\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2015-03-10 12:18:03.255 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\KLELAMX64\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2015-03-07 13:14:38.942 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\ELAMBKUP\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2015-03-07 13:14:38.939 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\ELAMBKUP\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2015-03-07 13:14:38.936 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\ELAMBKUP\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2015-03-07 13:14:38.920 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume3\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\KLELAMX64\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. ==================== Speicherinformationen =========================== Processor: Intel(R) Core(TM) i7-2670QM CPU @ 2.20GHz Prozentuale Nutzung des RAM: 35% Installierter physikalischer RAM: 8043.86 MB Verfügbarer physikalischer RAM: 5186.28 MB Summe virtueller Speicher: 16085.92 MB Verfügbarer virtueller Speicher: 13041 MB ==================== Laufwerke ================================ Drive c: (Acer) (Fixed) (Total:602.41 GB) (Free:460.23 GB) NTFS Drive d: (CIV4_COMPLETE) (CDROM) (Total:2.54 GB) (Free:0 GB) UDF Drive e: (Spiele) (Fixed) (Total:78.12 GB) (Free:68.22 GB) NTFS ==================== MBR & Partitionstabelle ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or 8) (Size: 698.6 GB) (Disk ID: 3855C932) Partition 1: (Not Active) - (Size=18 GB) - (Type=27) Partition 2: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=602.4 GB) - (Type=07 NTFS) Partition 4: (Not Active) - (Size=78.1 GB) - (Type=OF Extended) ==================== Ende von Ergebnis ============================ |
14.08.2015, 10:11 | #15 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Kaspersky findet angebliche Trojaner, Malwarebytes und Spybot nicht FRST-Fix Virenscanner jetzt bitte komplett deaktivieren, damit sichergestellt ist, dass der Fix sauber durchläuft! Drücke bitte die Windowstaste + R Taste und schreibe notepad in das Ausführen Fenster. Kopiere nun folgenden Text aus der Code-Box in das leere Textdokument Code:
ATTFilter cmd: type C:\Users\Kris\backup_428660531.bat C:\Users\Kris\backup_428660531.bat EmptyTemp: Speichere diese bitte als Fixlist.txt auf deinem Desktop (oder dem Verzeichnis in dem sich FRST befindet).
__________________ Logfiles bitte immer in CODE-Tags posten |
Themen zu Kaspersky findet angebliche Trojaner, Malwarebytes und Spybot nicht |
angezeigt, archive, cache, einfach, entdeck, entdeckt, firefox, gelöscht, heute, kaspersky, kaspersky lab, kis, malwarebytes, namen, nichts, ordner, panik, plötzlich, problem, rojaner gefunden, spybot, trojaner, uhrzeit, wirklich, überhaupt, zahlen |