|
Log-Analyse und Auswertung: Win8, versendet Spam-Emails, Malwarebytes findet vers. PUP+AdWareWindows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML. |
04.09.2015, 19:24 | #1 |
| Win8, versendet Spam-Emails, Malwarebytes findet vers. PUP+AdWare Da der PC meiner Freundin offenbar Spamemails versendet hat, habe ich mal versucht herauszufinden, ob es an Viren und ähnlichem liegt. (Ob es an gehackten Accounts und be***nen Passwörtern liegt, weiß ich gerade nicht, weil sie ausgeflogen ist.) Mein erster Versuch war ein Scan mit Avira. Den habe ich allerdings abgebrochen, weil es ziemlich langsam wurde irgendwann und sich in Schneckentempo auf die 10% zubewegt hat. Außerdem nutze ich selbst gern Malwarebytes Anti-Malware. Das war sehr schnell durch und fand folgendes: Code:
ATTFilter Malwarebytes Anti-Malware www.malwarebytes.org Suchlaufdatum: 04/09/2015 Suchlaufzeit: 19:37 Protokolldatei: Administrator: Ja Version: 2.1.8.1057 Malware-Datenbank: v2015.09.04.06 Rootkit-Datenbank: v2015.08.16.01 Lizenz: Testversion Malware-Schutz: Aktiviert Schutz vor bösartigen Websites: Aktiviert Selbstschutz: Deaktiviert Betriebssystem: Windows 8.1 CPU: x64 Dateisystem: NTFS Benutzer: B... Suchlauftyp: Bedrohungssuchlauf Ergebnis: Abgeschlossen Durchsuchte Objekte: 397994 Abgelaufene Zeit: 30 Min., 55 Sek. Speicher: Aktiviert Start: Aktiviert Dateisystem: Aktiviert Archive: Aktiviert Rootkits: Deaktiviert Heuristik: Aktiviert PUP: Aktiviert PUM: Aktiviert Prozesse: 1 PUP.Optional.DownloadProtect, C:\ProgramData\dlprotect.exe, 2488, , [ebfb64c74b40fc3aafdf820764a08878] Module: 0 (keine bösartigen Elemente erkannt) Registrierungsschlüssel: 3 Adware.LolliPop.IT, HKCU\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\lollipop_02200821, , [27bfd7540685eb4b629701352ed6ac54], PUP.Optional.DigitalSites, HKU\S-1-5-21-2739015723-2927197382-1160632269-1001\SOFTWARE\DSiteProducts, , [776f67c44744bf77c21f14742bd9916f], PUP.Optional.FoxTab, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\foxtab, , [74723dee9dee6acc83149b6eb64d18e8], Registrierungswerte: 2 PUP.Optional.DownloadProtect, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN|Download Protect, C:\ProgramData\dlprotect.exe, , [ebfb64c74b40fc3aafdf820764a08878] PUP.Optional.DownloadProtectExtension, HKLM\SOFTWARE\WOW6432NODE\MOZILLA\FIREFOX\EXTENSIONS|{26D707B4-F4E4-4231-B0B7-DF229C80C69C}, C:\WINDOWS\Installer\{5E77F78D-5628-4D37-A69B-7609753860AB}\{26D707B4-F4E4-4231-B0B7-DF229C80C69C}.xpi, , [11d577b443482115eac4c5c4aa5a10f0] Registrierungsdaten: 0 (keine bösartigen Elemente erkannt) Ordner: 7 Adware.LolliPop.IT, C:\Users\B...\AppData\Local\Lollipop, , [27bfd7540685eb4b629701352ed6ac54], PUP.Optional.DownloadProtect, C:\Windows\Installer\{37C11850-A396-447E-9BBC-767367E705D2}, , [1ec82a0191fac86eb8e22564ba4a03fd], PUP.Optional.APNToolBar.Gen, C:\ProgramData\APN\APN-Stub, , [717546e5c6c5c96dc9c30de904fe2ed2], PUP.Optional.Feven, C:\Users\B...\AppData\LocalLow\Feven 1.5, , [c323d4575b302d093ad2e52417ecc838], PUP.Optional.FoxTab, C:\Program Files (x86)\Foxtab\1.8.12.0, , [74723dee9dee6acc83149b6eb64d18e8], PUP.Optional.FoxTab, C:\Program Files (x86)\Foxtab\1.8.12.0\bh, , [74723dee9dee6acc83149b6eb64d18e8], PUP.Optional.Updater, C:\Users\B...\AppData\Roaming\FoxTab\UpdateProc, , [3ea89a91d3b8f83e330c89951de67a86], Dateien: 32 PUP.Optional.APNToolBar, C:\Users\B...\AppData\Local\Temp\utt8418.tmp.exe, , [c91da08b3a51c076b2cc982052aff907], PUP.Optional.APNToolBar, C:\Users\B...\Downloads\FreeZipOpener_Install.exe, , [d31334f7e1aa3df9017efeba669bc937], PUP.Optional.BundleInstaller, C:\Users\B...\Downloads\WinRAR_Setup_Download.exe, , [c32388a304878da9acac62f4a9578e72], PUP.Optional.OptimumInstaller, C:\Users\B...\Downloads\Updater_Setup(1).exe, , [56902605d7b41422204148754bb64fb1], PUP.Optional.OptimumInstaller, C:\Users\B...\Downloads\Updater_Setup.exe, , [b1354dde79127fb751100bb2c9386898], PUP.Optional.Bandoo, C:\Users\B...\Downloads\iLividSetup-r400-n-bc (2).exe, , [6086ae7d583356e029e5835ed22ebe42], PUP.Optional.Bandoo, C:\Users\B...\Downloads\iLividSetup-r400-n-bc.exe, , [994d5ecd34578fa78a84f5ece7197a86], PUP.Optional.OpenCandy, C:\Users\B...\Downloads\MyPhoneExplorer_Setup_1.8.5.exe, , [3da9ce5d9eedfa3c0cafd78158a84ab6], PUP.Optional.BundleInstaller, C:\Users\B...\Downloads\WinRAR_Setup_Download (1).exe, , [5e881b104546c670e573cb8b99678977], PUP.Optional.BundleInstaller, C:\Users\B...\Downloads\WinRAR_Setup_Download (2).exe, , [a34332f98efded4930285204b24ee61a], PUP.Optional.BrowseFox, C:\Users\B...\AppData\Local\DownloadGuide\Offers\ResultsAlphaSetup.exe, , [f3f392991c6f93a318bb61282fd26b95], Adware.LolliPop.IT, C:\Users\B...\AppData\Local\Lollipop\lollipop_02200821.lpd, , [27bfd7540685eb4b629701352ed6ac54], Adware.LolliPop.IT, C:\Users\B...\AppData\Local\Lollipop\logo.ico, , [27bfd7540685eb4b629701352ed6ac54], Adware.LolliPop.IT, C:\Users\B...\AppData\Local\Lollipop\lollipop_02100912.dat, , [27bfd7540685eb4b629701352ed6ac54], Adware.LolliPop.IT, C:\Users\B...\AppData\Local\Lollipop\lollipop_02112142.dat, , [27bfd7540685eb4b629701352ed6ac54], Adware.LolliPop.IT, C:\Users\B...\AppData\Local\Lollipop\lollipop_02192131.dat, , [27bfd7540685eb4b629701352ed6ac54], Adware.LolliPop.IT, C:\Users\B...\AppData\Local\Lollipop\lollipop_02200821.bat, , [27bfd7540685eb4b629701352ed6ac54], Adware.LolliPop.IT, C:\Users\B...\AppData\Local\Lollipop\lollipop_02200821.dat, , [27bfd7540685eb4b629701352ed6ac54], Adware.LolliPop.IT, C:\Users\B...\AppData\Local\Lollipop\lollipop_02200821_cfg.lpd, , [27bfd7540685eb4b629701352ed6ac54], Adware.LolliPop.IT, C:\Users\B...\AppData\Local\Lollipop\lollipop_02200821_ps.lpd, , [27bfd7540685eb4b629701352ed6ac54], PUP.Optional.DownloadProtect, C:\ProgramData\dlprotect.exe, , [ebfb64c74b40fc3aafdf820764a08878], PUP.Optional.DownloadProtect, C:\Windows\Installer\{37C11850-A396-447E-9BBC-767367E705D2}\coonhiopkbjaejihibldaaameidnkcmnlrx, , [1ec82a0191fac86eb8e22564ba4a03fd], PUP.Optional.DownloadProtect, C:\Windows\Installer\{37C11850-A396-447E-9BBC-767367E705D2}\xoonhiopkbjaejihibldaaameidnkcmnlml, , [1ec82a0191fac86eb8e22564ba4a03fd], PUP.Optional.WidgetContext, C:\Users\B...\AppData\Roaming\Mozilla\Extensions\{ec8030f7-c20a-464f-9b0e-13a3a9e97384}\{140A2D0E-85CC-4ed3-9BA5-8FA35DA7FABA}.xpi, , [eafc86a5701bc96dbec6bbff848013ed], PUP.Optional.FoxTab, C:\Program Files (x86)\Foxtab\1.8.12.0\FavIcon.ico, , [74723dee9dee6acc83149b6eb64d18e8], PUP.Optional.FoxTab, C:\Program Files (x86)\Foxtab\1.8.12.0\Sqlite3.dll, , [74723dee9dee6acc83149b6eb64d18e8], PUP.Optional.FoxTab, C:\Program Files (x86)\Foxtab\1.8.12.0\uninst.dat, , [74723dee9dee6acc83149b6eb64d18e8], PUP.Optional.FoxTab, C:\Program Files (x86)\Foxtab\1.8.12.0\uninstall.exe, , [74723dee9dee6acc83149b6eb64d18e8], PUP.Optional.Updater, C:\Users\B...\AppData\Roaming\FoxTab\UpdateProc\config.dat, , [3ea89a91d3b8f83e330c89951de67a86], PUP.Optional.Updater, C:\Users\B...\AppData\Roaming\FoxTab\UpdateProc\info.dat, , [3ea89a91d3b8f83e330c89951de67a86], PUP.Optional.Updater, C:\Users\B...\AppData\Roaming\FoxTab\UpdateProc\STTL.DAT, , [3ea89a91d3b8f83e330c89951de67a86], PUP.Optional.Updater, C:\Users\B...\AppData\Roaming\FoxTab\UpdateProc\TTL.DAT, , [3ea89a91d3b8f83e330c89951de67a86], Physische Sektoren: 0 (keine bösartigen Elemente erkannt) (end) |
04.09.2015, 19:29 | #2 |
/// the machine /// TB-Ausbilder | Win8, versendet Spam-Emails, Malwarebytes findet vers. PUP+AdWare hi,
__________________Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST 32-Bit | FRST 64-Bit (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
__________________ |
06.09.2015, 22:20 | #3 |
| Win8, versendet Spam-Emails, Malwarebytes findet vers. PUP+AdWare Sorry, ich hatte das Passwort nicht und konnte nach dem Neustart nicht weiterarbeiten.
__________________An den Logs hab ich leere Abschnitte (ohne Fund) gekürzt und auch M$ ist von mir. Hat aber nicht geklappt unter die 120k-Zeichen zu kommen. Daher jetzt doch 2 Beiträge FRST.txt FRST Logfile: FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:06-09-2015 01 Ran by B (administrator) on A (06-09-2015 22:42:50) Running from C:\Users\B\Downloads Loaded Profiles: B & (Available Profiles: B & Administrator) Platform: Windows 8.1 (X64) Language: English (United Kingdom) Internet Explorer Version 11 (Default browser: Chrome) Boot Mode: Normal Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (If an entry is included in the fixlist, the process will be closed. The file will not be moved.) (Cisco Systems, Inc.) C:\Program Files (x86)\Cisco\Cisco AnyConnect Secure Mobility Client\vpnagent.exe (M$) C:\Windows\System32\wlanext.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe (Novell, Inc.) C:\Program Files\Novell\Client\XTier\Services\xtsvcmgr.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe (M$) C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe (M$) C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe (Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe (Malwarebytes Corporation) C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamscheduler.exe (Malwarebytes Corporation) C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe (Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe (Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe (Intel Corporation) C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe (Intel(R) Corporation) C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe (M$) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.3.9600.17709_none_fa7932f59afc2e40\TiWorker.exe (Malwarebytes Corporation) C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbam.exe (Samsung Electronics CO., LTD.) C:\Program Files (x86)\Samsung\SW Update\SWMAgent.exe (M$) C:\Windows\System32\GWX\GWX.exe (Intel Corporation) C:\Windows\System32\igfxtray.exe (Intel Corporation) C:\Windows\System32\igfxsrvc.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe () C:\Program Files\Novell\Client\nwtray.exe (Dropbox, Inc.) C:\Users\B\AppData\Roaming\Dropbox\bin\Dropbox.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe (Cisco Systems, Inc.) C:\Program Files (x86)\Cisco\Cisco AnyConnect Secure Mobility Client\vpnui.exe (Samsung Electronics CO., LTD.) C:\Program Files\Samsung\S Agent\CommonAgent.exe (M$) C:\Windows\SysWOW64\wbem\WmiPrvSE.exe (M$) C:\Windows\System32\wsqmcons.exe (M$) C:\Windows\System32\CompatTelRunner.exe (M$) C:\Windows\WinStore\WSHost.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (M$) C:\Program Files\Internet Explorer\ielowutil.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (M$) C:\Windows\Temp\5BD42BF5-4B5D-4DD4-9F97-250A1AE4BE16\DismHost.exe ==================== Registry (Whitelisted) =========================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\\Run: [NWTRAY] => C:\Program Files\Novell\Client\nwtray.exe [40632 2013-09-29] () HKLM-x32\\Run: [avgnt] => C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [782008 2015-08-26] (Avira Operations GmbH & Co. KG) HKLM-x32\\Run: [Cisco AnyConnect Secure Mobility Agent for Windows] => C:\Program Files (x86)\Cisco\Cisco AnyConnect Secure Mobility Client\vpnui.exe [708496 2015-02-19] (Cisco Systems, Inc.) Winlogon\Notify\igfxcui: C:\WINDOWS\system32\igfxdev.dll (Intel Corporation) HKU\S-1-5-21-2739015723-2927197382-1160632269-1001\\Run: [Dropbox Update] => C:\Users\B\AppData\Local\Dropbox\Update\DropboxUpdate.exe [134512 2015-06-20] (Dropbox, Inc.) HKU\S-1-5-21-2739015723-2927197382-1160632269-1001\\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [53729824 2015-08-07] (Skype Technologies S.A.) HKU\S-1-5-21-2739015723-2927197382-1160632269-500-{637FE20B-9A5B-4F51-B1BE-D10045625B40}-0\\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [516608 2014-10-29] (M$) Lsa: [Authentication Packages] msv1_0 ncv1_0 ShellIconOverlayIdentifiers: [DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\B\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll [2015-08-14] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\B\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll [2015-08-14] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [DropboxExt3] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\B\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll [2015-08-14] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [DropboxExt4] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\B\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll [2015-08-14] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\B\AppData\Roaming\Dropbox\bin\DropboxExt.27.dll [2015-08-14] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\B\AppData\Roaming\Dropbox\bin\DropboxExt.27.dll [2015-08-14] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [DropboxExt3] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\B\AppData\Roaming\Dropbox\bin\DropboxExt.27.dll [2015-08-14] (Dropbox, Inc.) Startup: C:\Users\B\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk [2015-08-05] ShortcutTarget: Dropbox.lnk -> C:\Users\B\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) GroupPolicy: Group Policy on Chrome detected <======= ATTENTION CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION ==================== Internet (Whitelisted) ==================== (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.) Tcpip\Parameters: [DhcpNameServer] 192.168.0.1 Tcpip\..\Interfaces\{F777ADDD-2478-438E-85C8-BF3C873A22A6}: [DhcpNameServer] 192.168.0.1 Internet Explorer: ================== HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION HKU\S-1-5-21-2739015723-2927197382-1160632269-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://samsung13.msn.com HKU\S-1-5-21-2739015723-2927197382-1160632269-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://samsung13.msn.com SearchScopes: HKLM -> DefaultScope {216F2AAB-AC60-4908-BAF9-3DA6499FC0FE} URL = hxxp://www.google.de/search?q={searchTerms}&hl=de&gl=de&rls=com.microsoft:{language}:{referrer:source}&ie={inputEncoding?}&oe={outputEncoding?} SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKLM -> {216F2AAB-AC60-4908-BAF9-3DA6499FC0FE} URL = hxxp://www.google.de/search?q={searchTerms}&hl=de&gl=de&rls=com.microsoft:{language}:{referrer:source}&ie={inputEncoding?}&oe={outputEncoding?} SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-2739015723-2927197382-1160632269-1001 -> DefaultScope {216F2AAB-AC60-4908-BAF9-3DA6499FC0FE} URL = hxxp://www.bing.com/search?FORM=UP97DF&PC=UP97&q={searchTerms}&src=IE-SearchBox SearchScopes: HKU\S-1-5-21-2739015723-2927197382-1160632269-1001 -> {216F2AAB-AC60-4908-BAF9-3DA6499FC0FE} URL = hxxp://www.bing.com/search?FORM=UP97DF&PC=UP97&q={searchTerms}&src=IE-SearchBox BHO: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2015-05-01] (M$) BHO-x32: Citavi Picker -> {609D670F-B735-4da7-AC6D-F3BD358E325E} -> C:\WINDOWS\SysWOW64\mscoree.dll [2013-08-22] (M$) BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\ssv.dll [2015-04-17] (Oracle Corporation) BHO-x32: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2015-05-01] (M$) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\jp2ssv.dll [2015-04-17] (Oracle Corporation) Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2015-05-01] (M$) Handler-x32: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2015-05-01] (M$) FireFox: ======== FF ProfilePath: C:\Users\B\AppData\Roaming\Mozilla\Firefox\Profiles\ds5n16am.default FF Plugin-x32: @java.com/DTPlugin,version=11.45.2 -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\dtplugin\npDeployJava1.dll [2015-04-17] (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.45.2 -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\plugin2\npjp2.dll [2015-04-17] (Oracle Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.28.13\npGoogleUpdate3.dll [2015-08-29] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.28.13\npGoogleUpdate3.dll [2015-08-29] (Google Inc.) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2015-06-29] (Adobe Systems Inc.) FF user.js: detected! => C:\Users\B\AppData\Roaming\Mozilla\Firefox\Profiles\ds5n16am.default\user.js [2014-02-16] Chrome: ======= CHR Plugin: (Store) - C:\Program Files (x86)\Google\Chrome\Application\32.0.1700.102\resources\web_store No File CHR Plugin: (Google Docs) - aohghmighlieiainnegkcijnfilokake\0.9_0 No File CHR Plugin: (Google Drive) - apdfllckaahabafndbhieahigkjlhalf\14.0_0 No File CHR Plugin: (YouTube) - blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.7_0 No File CHR Plugin: (Google-Suche) - coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.30_0 No File CHR Plugin: (Foxtab Speed Dial) - C:\Program Files (x86)\Google\Chrome\Application\32.0.1700.102\resources\chrome_app No File CHR Plugin: (Chrome PDF Viewer) - pjkljhegncpnkpknbcohdijeoejaedia\8.1_0 No File CHR Profile: C:\Users\B\AppData\Local\Google\Chrome\User Data\Default CHR Extension: (Google Docs) - C:\Users\B\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-01-30] CHR Extension: (Google Drive) - C:\Users\B\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-01-30] CHR Extension: (YouTube) - C:\Users\B\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-01-30] CHR Extension: (Google Search) - C:\Users\B\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-01-30] CHR Extension: (Google Docs Offline) - C:\Users\B\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2015-09-03] CHR Extension: (AdBlock) - C:\Users\B\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2014-02-12] CHR Extension: (Chrome Hotword Shared Module) - C:\Users\B\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg [2015-03-13] CHR Extension: (Chrome Web Store Payments) - C:\Users\B\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-01-30] CHR Extension: (Citavi Picker) - C:\Users\B\AppData\Local\Google\Chrome\User Data\Default\Extensions\piehhloihgjjiomhieeddiidpekaajio [2014-01-30] CHR Extension: (Gmail) - C:\Users\B\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-01-30] CHR HKLM\\Chrome\Extension: [dchmpbaclbiioedakpcldenooikekokm] - C:\Users\B\AppData\Local\foxtab_speeddial.crx [2014-01-30] CHR HKU\S-1-5-21-2739015723-2927197382-1160632269-1001\SOFTWARE\Google\Chrome\Extensions\\Chrome\Extension: [dchmpbaclbiioedakpcldenooikekokm] - C:\Users\B\AppData\Local\foxtab_speeddial.crx [2014-01-30] CHR HKLM-x32\\Chrome\Extension: [dchmpbaclbiioedakpcldenooikekokm] - C:\Users\B\AppData\Local\foxtab_speeddial.crx [2014-01-30] CHR HKLM-x32\\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2015-05-01] CHR HKLM-x32\\Chrome\Extension: [piehhloihgjjiomhieeddiidpekaajio] - C:\ProgramData\Swiss Academic Software\Citavi Picker\Chrome\ChromePicker.crx [2014-01-30] ==================== Services (Whitelisted) ======================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) S2 AntiVirMailService; C:\Program Files (x86)\Avira\AntiVir Desktop\avmailc7.exe [887128 2015-08-07] (Avira Operations GmbH & Co. KG) R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [461672 2015-08-26] (Avira Operations GmbH & Co. KG) R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [461672 2015-08-26] (Avira Operations GmbH & Co. KG) S2 AntiVirWebService; C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe [1213072 2015-08-26] (Avira Operations GmbH & Co. KG) R2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1394816 2015-05-01] (M$) R2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1772672 2015-05-01] (M$) R2 MBAMScheduler; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamscheduler.exe [1871160 2015-06-18] (Malwarebytes Corporation) R2 MBAMService; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe [1133880 2015-06-18] (Malwarebytes Corporation) S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [273136 2013-08-28] () S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [366552 2015-07-07] (M$) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23824 2015-07-07] (M$) R2 XTSvcMgr; C:\Program Files\Novell\Client\XTier\Services\XTSvcMgr.exe [21176 2013-09-29] (Novell, Inc.) R2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [3378416 2013-08-28] (Intel® Corporation) ===================== Drivers (Whitelisted) ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [137288 2015-08-07] (Avira Operations GmbH & Co. KG) R1 avipbb; C:\Windows\system32\DRIVERS\avipbb.sys [148632 2015-08-07] (Avira Operations GmbH & Co. KG) R1 avkmgr; C:\Windows\system32\DRIVERS\avkmgr.sys [28600 2013-12-18] (Avira Operations GmbH & Co. KG) R2 avnetflt; C:\Windows\system32\DRIVERS\avnetflt.sys [43576 2015-03-10] (Avira Operations GmbH & Co. KG) S3 dot4; C:\Windows\system32\DRIVERS\Dot4.sys [151968 2012-10-19] (Windows (R) Win 7 DDK provider) S3 Dot4Print; C:\Windows\System32\drivers\Dot4Prt.sys [27040 2012-10-19] (Windows (R) Win 7 DDK provider) S0 ebdrv; C:\Windows\System32\drivers\evbda.sys [3357024 2013-08-22] (Broadcom Corporation) R3 MBAMProtector; C:\WINDOWS\system32\drivers\mbam.sys [25816 2015-06-18] (Malwarebytes Corporation) R3 MBAMSwissArmy; C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys [113880 2015-09-06] (Malwarebytes Corporation) R3 MBAMWebAccessControl; C:\WINDOWS\system32\drivers\mwac.sys [64216 2015-06-18] (Malwarebytes Corporation) R0 NCFilter; C:\Windows\System32\DRIVERS\NCFilter.sys [113336 2013-09-29] () R2 NCFSD; C:\Program Files\Novell\Client\XTier\Drivers\ncfsd.sys [116408 2013-09-29] () R2 NCIOCTL; C:\Program Files\Novell\Client\XTier\Drivers\ncioctl.sys [91320 2013-09-29] () R0 NCRecognizer; C:\Windows\System32\DRIVERS\NCRecognizer.sys [121016 2013-09-29] () R0 NCUncFilter; C:\Windows\System32\DRIVERS\NCUncFilter.sys [27320 2013-09-29] () R3 NETwNe64; C:\Windows\system32\DRIVERS\Netwew00.sys [3345376 2013-10-08] (Intel Corporation) R1 NICM; C:\Program Files\Novell\Client\XTier\Drivers\nicm.sys [32952 2013-09-29] (Novell, Inc.) R3 RadioHIDMini; C:\Windows\System32\drivers\RadioHIDMini.sys [23408 2012-07-29] (Windows (R) Win 7 DDK provider) S3 ssudserd; C:\Windows\system32\DRIVERS\ssudserd.sys [206080 2014-01-22] (DEVGURU Co., LTD.(www.devguru.co.kr)) S3 vpnva; C:\Windows\system32\DRIVERS\vpnva64-6.sys [52592 2014-08-15] (Cisco Systems, Inc.) S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44560 2015-07-07] (M$) S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [270168 2015-07-07] (M$) S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114520 2015-07-07] (M$) U3 nciom; C:\Program Files\Novell\Client\XTier\Drivers\nciom.sys [82616 2013-09-29] (Novell, Inc.) U3 ncp; C:\Program Files\Novell\Client\XTier\Drivers\ncp.sys [81080 2013-09-29] (Novell, Inc.) U3 ncpl; C:\Program Files\Novell\Client\XTier\Drivers\ncpl.sys [50360 2013-09-29] (Novell, Inc.) U3 ndm; C:\Program Files\Novell\Client\XTier\Drivers\ndm.sys [20664 2013-09-29] (Novell, Inc.) U3 ndmndap; C:\Program Files\Novell\Client\XTier\Drivers\ndmndap.sys [84664 2013-09-29] (Novell, Inc.) U3 niam; C:\Program Files\Novell\Client\XTier\Drivers\niam.sys [40120 2013-09-29] (Novell, Inc.) U3 nipctl; C:\Program Files\Novell\Client\XTier\Drivers\nipctl.sys [57016 2013-09-29] (Novell, Inc.) U3 nscm; C:\Program Files\Novell\Client\XTier\Drivers\nscm.sys [39096 2013-09-29] (Novell, Inc.) U3 nsns; C:\Program Files\Novell\Client\XTier\Drivers\nsns.sys [26296 2013-09-29] (Novell, Inc.) U3 nsvccost; C:\Program Files\Novell\Client\XTier\Drivers\nsvccost.sys [37048 2013-09-29] (Novell, Inc.) U3 xtxplat; C:\Program Files\Novell\Client\XTier\Drivers\xtxplat.sys [60600 2013-09-29] (Novell, Inc.) ==================== NetSvcs (Whitelisted) =================== ==================== One Month Created files and folders ======== (If an entry is included in the fixlist, the file/folder will be moved.) 2015-09-06 22:42 - 2015-09-06 22:42 - 00019289 _____ C:\Users\B\Downloads\FRST.txt 2015-09-06 22:41 - 2015-09-06 22:42 - 00000000 ____D C:\FRST 2015-09-06 22:41 - 2015-09-06 22:41 - 00000000 ____D C:\Users\B\Downloads\FRST-OlderVersion 2015-09-04 20:19 - 2015-09-06 22:41 - 02190336 _____ (Farbar) C:\Users\B\Downloads\FRST64.exe 2015-09-04 19:35 - 2015-09-06 22:36 - 00113880 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys 2015-09-04 19:35 - 2015-09-04 19:35 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 2015-09-04 19:35 - 2015-09-04 19:35 - 00000000 ____D C:\ProgramData\Malwarebytes 2015-09-04 19:35 - 2015-09-04 19:35 - 00000000 ____D C:\Program Files (x86)\ Malwarebytes Anti-Malware 2015-09-04 19:35 - 2015-06-18 08:42 - 00064216 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mwac.sys 2015-09-04 19:35 - 2015-06-18 08:41 - 00109272 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbamchameleon.sys 2015-09-04 19:35 - 2015-06-18 08:41 - 00025816 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbam.sys 2015-09-04 19:33 - 2015-09-04 19:34 - 24345872 _____ (Malwarebytes Corporation ) C:\Users\B\Downloads\mbam-setup-2.1.8.1057.exe 2015-09-04 16:05 - 2015-09-04 16:06 - 00000000 ____D C:\Users\B\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox 2015-09-04 13:27 - 2015-09-04 13:27 - 00004937 _____ C:\Users\B\Downloads\export.csv 2015-08-29 20:41 - 2015-08-29 20:41 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype 2015-08-26 23:34 - 2015-08-26 23:34 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_Kernel_WinUsb_01007.Wdf 2015-08-26 18:32 - 2015-08-26 18:32 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira 2015-08-19 13:51 - 2015-08-11 03:20 - 25191936 _____ (M$) C:\WINDOWS\system32\mshtml.dll 2015-08-19 13:51 - 2015-08-11 02:20 - 19871232 _____ (M$) C:\WINDOWS\SysWOW64\mshtml.dll 2015-08-13 14:10 - 2015-08-13 14:12 - 102777624 _____ (...) C:\Users\B\Downloads\ElsterFormular-16.2.24.20150630k.exe 2015-08-13 01:13 - 2015-07-30 16:04 - 00124624 _____ (M$) C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll 2015-08-13 01:13 - 2015-07-30 15:48 - 00103120 _____ (M$) C:\WINDOWS\SysWOW64\PresentationCFFRasterizerNative_v0300.dll 2015-08-13 00:17 - 2015-07-19 03:58 - 00136904 _____ (M$) C:\WINDOWS\system32\wuauclt.exe 2015-08-13 00:17 - 2015-07-18 20:51 - 03704320 _____ (M$) C:\WINDOWS\system32\wuaueng.dll 2015-08-13 00:17 - 2015-07-18 20:31 - 00140288 _____ (M$) C:\WINDOWS\system32\wuwebv.dll 2015-08-13 00:17 - 2015-07-18 20:31 - 00095744 _____ (M$) C:\WINDOWS\system32\wudriver.dll 2015-08-13 00:17 - 2015-07-18 20:31 - 00035840 _____ (M$) C:\WINDOWS\system32\wuapp.exe 2015-08-13 00:17 - 2015-07-18 20:29 - 00409088 _____ (M$) C:\WINDOWS\system32\WUSettingsProvider.dll 2015-08-13 00:17 - 2015-07-18 20:29 - 00124928 _____ (M$) C:\WINDOWS\SysWOW64\wuwebv.dll 2015-08-13 00:17 - 2015-07-18 20:29 - 00029696 _____ (M$) C:\WINDOWS\SysWOW64\wuapp.exe 2015-08-13 00:17 - 2015-07-18 20:28 - 00081920 _____ (M$) C:\WINDOWS\SysWOW64\wudriver.dll 2015-08-13 00:17 - 2015-07-18 20:12 - 02228736 _____ (M$) C:\WINDOWS\system32\wucltux.dll 2015-08-13 00:17 - 2015-07-18 20:10 - 00891904 _____ (M$) C:\WINDOWS\system32\wuapi.dll 2015-08-13 00:17 - 2015-07-18 20:09 - 00721920 _____ (M$) C:\WINDOWS\SysWOW64\wuapi.dll 2015-08-13 00:17 - 2015-07-16 02:29 - 07458648 _____ (M$) C:\WINDOWS\system32\ntoskrnl.exe 2015-08-13 00:17 - 2015-07-16 02:29 - 01735000 _____ (M$) C:\WINDOWS\system32\ntdll.dll 2015-08-13 00:17 - 2015-07-16 02:29 - 00101720 _____ (M$) C:\WINDOWS\system32\Drivers\mountmgr.sys 2015-08-13 00:17 - 2015-07-16 02:28 - 01499920 _____ (M$) C:\WINDOWS\SysWOW64\ntdll.dll 2015-08-13 00:17 - 2015-07-10 19:54 - 01217024 _____ (M$) C:\WINDOWS\system32\sysmain.dll 2015-08-13 00:16 - 2015-06-09 20:27 - 00411133 _____ C:\WINDOWS\system32\ApnDatabase.xml 2015-08-13 00:15 - 2015-07-16 22:36 - 00584192 _____ (M$) C:\WINDOWS\system32\vbscript.dll 2015-08-13 00:15 - 2015-07-16 22:36 - 00417792 _____ (M$) C:\WINDOWS\system32\html.iec 2015-08-13 00:15 - 2015-07-16 22:35 - 02885632 _____ (M$) C:\WINDOWS\system32\iertutil.dll 2015-08-13 00:15 - 2015-07-16 22:26 - 05923328 _____ (M$) C:\WINDOWS\system32\jscript9.dll 2015-08-13 00:15 - 2015-07-16 22:23 - 00615936 _____ (M$) C:\WINDOWS\system32\ieui.dll 2015-08-13 00:15 - 2015-07-16 22:21 - 00816640 _____ (M$) C:\WINDOWS\system32\jscript.dll 2015-08-13 00:15 - 2015-07-16 21:53 - 00145408 _____ (M$) C:\WINDOWS\system32\iepeers.dll 2015-08-13 00:15 - 2015-07-16 21:51 - 00504320 _____ (M$) C:\WINDOWS\SysWOW64\vbscript.dll 2015-08-13 00:15 - 2015-07-16 21:50 - 00341504 _____ (M$) C:\WINDOWS\SysWOW64\html.iec 2015-08-13 00:15 - 2015-07-16 21:45 - 02279424 _____ (M$) C:\WINDOWS\SysWOW64\iertutil.dll 2015-08-13 00:15 - 2015-07-16 21:45 - 01032704 _____ (M$) C:\WINDOWS\system32\inetcomm.dll 2015-08-13 00:15 - 2015-07-16 21:41 - 00479232 _____ (M$) C:\WINDOWS\SysWOW64\ieui.dll 2015-08-13 00:15 - 2015-07-16 21:39 - 00664064 _____ (M$) C:\WINDOWS\SysWOW64\jscript.dll 2015-08-13 00:15 - 2015-07-16 21:38 - 00262144 _____ (M$) C:\WINDOWS\system32\webcheck.dll 2015-08-13 00:15 - 2015-07-16 21:36 - 00801280 _____ (M$) C:\WINDOWS\system32\msfeeds.dll 2015-08-13 00:15 - 2015-07-16 21:34 - 14451200 _____ (M$) C:\WINDOWS\system32\ieframe.dll 2015-08-13 00:15 - 2015-07-16 21:32 - 02125824 _____ (M$) C:\WINDOWS\system32\inetcpl.cpl 2015-08-13 00:15 - 2015-07-16 21:14 - 02880000 _____ (M$) C:\WINDOWS\system32\actxprxy.dll 2015-08-13 00:15 - 2015-07-16 21:13 - 00880128 _____ (M$) C:\WINDOWS\SysWOW64\inetcomm.dll 2015-08-13 00:15 - 2015-07-16 21:12 - 04520448 _____ (M$) C:\WINDOWS\SysWOW64\jscript9.dll 2015-08-13 00:15 - 2015-07-16 21:12 - 02427904 _____ (M$) C:\WINDOWS\system32\wininet.dll 2015-08-13 00:15 - 2015-07-16 21:10 - 12856832 _____ (M$) C:\WINDOWS\SysWOW64\ieframe.dll 2015-08-13 00:15 - 2015-07-16 21:06 - 00689152 _____ (M$) C:\WINDOWS\SysWOW64\msfeeds.dll 2015-08-13 00:15 - 2015-07-16 21:01 - 01545728 _____ (M$) C:\WINDOWS\system32\urlmon.dll 2015-08-13 00:15 - 2015-07-16 20:52 - 01048576 _____ (M$) C:\WINDOWS\SysWOW64\actxprxy.dll 2015-08-13 00:15 - 2015-07-16 20:49 - 00800768 _____ (M$) C:\WINDOWS\system32\ieapfltr.dll 2015-08-13 00:15 - 2015-07-16 20:42 - 01951232 _____ (M$) C:\WINDOWS\SysWOW64\wininet.dll 2015-08-13 00:15 - 2015-07-16 20:38 - 01310720 _____ (M$) C:\WINDOWS\SysWOW64\urlmon.dll 2015-08-13 00:15 - 2015-07-16 20:37 - 00710144 _____ (M$) C:\WINDOWS\SysWOW64\ieapfltr.dll 2015-08-13 00:13 - 2015-07-29 01:24 - 00025776 _____ (M$) C:\WINDOWS\system32\CompatTelRunner.exe 2015-08-13 00:13 - 2015-07-28 16:24 - 01148416 _____ (M$) C:\WINDOWS\system32\aeinv.dll 2015-08-13 00:13 - 2015-07-28 16:24 - 01116160 _____ (M$) C:\WINDOWS\system32\appraiser.dll 2015-08-13 00:13 - 2015-07-28 16:24 - 00774144 _____ (M$) C:\WINDOWS\system32\invagent.dll 2015-08-13 00:13 - 2015-07-28 16:24 - 00743424 _____ (M$) C:\WINDOWS\system32\generaltel.dll 2015-08-13 00:13 - 2015-07-28 16:24 - 00437248 _____ (M$) C:\WINDOWS\system32\devinv.dll 2015-08-13 00:13 - 2015-07-28 16:24 - 00069120 _____ (M$) C:\WINDOWS\system32\acmigration.dll 2015-08-13 00:13 - 2015-07-07 11:40 - 00270168 _____ (M$) C:\WINDOWS\system32\Drivers\WdFilter.sys 2015-08-13 00:13 - 2015-07-07 11:40 - 00114520 _____ (M$) C:\WINDOWS\system32\Drivers\WdNisDrv.sys 2015-08-13 00:13 - 2015-07-07 11:40 - 00044560 _____ (M$) C:\WINDOWS\system32\Drivers\WdBoot.sys 2015-08-13 00:13 - 2015-07-02 00:19 - 00228864 _____ (M$) C:\WINDOWS\system32\WebClnt.dll 2015-08-13 00:13 - 2015-07-02 00:16 - 00104448 _____ (M$) C:\WINDOWS\system32\davclnt.dll 2015-08-13 00:13 - 2015-07-01 23:37 - 00198656 _____ (M$) C:\WINDOWS\SysWOW64\WebClnt.dll 2015-08-13 00:13 - 2015-07-01 23:35 - 00087040 _____ (M$) C:\WINDOWS\SysWOW64\davclnt.dll 2015-08-13 00:13 - 2015-06-12 19:03 - 18823680 _____ (M$) C:\WINDOWS\system32\Windows.UI.Xaml.dll 2015-08-13 00:13 - 2015-06-12 18:36 - 15159296 _____ (M$) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll 2015-08-13 00:12 - 2015-07-29 16:37 - 01994752 _____ (M$) C:\WINDOWS\system32\DWrite.dll 2015-08-13 00:12 - 2015-07-29 16:30 - 01381888 _____ (M$) C:\WINDOWS\system32\FntCache.dll 2015-08-13 00:12 - 2015-07-29 16:23 - 01559552 _____ (M$) C:\WINDOWS\SysWOW64\DWrite.dll 2015-08-13 00:12 - 2015-07-24 20:57 - 04177408 _____ (M$) C:\WINDOWS\system32\win32k.sys 2015-08-13 00:12 - 2015-07-24 20:57 - 00358912 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll 2015-08-13 00:12 - 2015-07-24 20:52 - 00044032 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll 2015-08-13 00:12 - 2015-07-24 19:27 - 00301568 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\atmfd.dll 2015-08-13 00:12 - 2015-07-24 19:23 - 00035840 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll 2015-08-13 00:12 - 2015-07-14 23:59 - 01113944 _____ (M$) C:\WINDOWS\system32\Drivers\ndis.sys 2015-08-13 00:12 - 2015-07-14 23:59 - 00487256 _____ (M$) C:\WINDOWS\system32\netcfgx.dll 2015-08-13 00:12 - 2015-07-14 23:59 - 00393560 _____ (M$) C:\WINDOWS\SysWOW64\netcfgx.dll 2015-08-13 00:12 - 2015-07-14 05:22 - 02529880 _____ (M$) C:\WINDOWS\system32\msxml6.dll 2015-08-13 00:12 - 2015-07-14 05:21 - 01901776 _____ (M$) C:\WINDOWS\SysWOW64\msxml6.dll 2015-08-13 00:12 - 2015-07-13 21:46 - 00059392 _____ (M$) C:\WINDOWS\system32\csrsrv.dll 2015-08-13 00:12 - 2015-07-13 21:45 - 00059392 _____ (M$) C:\WINDOWS\system32\basesrv.dll 2015-08-13 00:12 - 2015-07-10 20:19 - 01101824 _____ (M$) C:\WINDOWS\system32\rdvidcrl.dll 2015-08-13 00:12 - 2015-07-10 19:42 - 02345472 _____ (M$) C:\WINDOWS\system32\msxml3.dll 2015-08-13 00:12 - 2015-07-10 19:14 - 00856064 _____ (M$) C:\WINDOWS\SysWOW64\rdvidcrl.dll 2015-08-13 00:12 - 2015-07-10 19:13 - 07032320 _____ (M$) C:\WINDOWS\system32\mstscax.dll 2015-08-13 00:12 - 2015-07-10 18:47 - 01556992 _____ (M$) C:\WINDOWS\SysWOW64\msxml3.dll 2015-08-13 00:12 - 2015-07-10 18:31 - 06213120 _____ (M$) C:\WINDOWS\SysWOW64\mstscax.dll 2015-08-13 00:12 - 2015-07-09 19:13 - 00221184 _____ (M$) C:\WINDOWS\system32\notepad.exe 2015-08-13 00:12 - 2015-07-09 19:13 - 00221184 _____ (M$) C:\WINDOWS\notepad.exe 2015-08-13 00:12 - 2015-07-09 18:30 - 00212992 _____ (M$) C:\WINDOWS\SysWOW64\notepad.exe 2015-08-13 00:12 - 2015-06-11 22:12 - 02476376 _____ (M$) C:\WINDOWS\system32\Drivers\tcpip.sys 2015-08-13 00:12 - 2015-06-11 22:12 - 00428888 _____ (M$) C:\WINDOWS\system32\Drivers\FWPKCLNT.SYS 2015-08-13 00:12 - 2015-05-12 02:24 - 00536920 _____ (M$) C:\WINDOWS\system32\mcupdate_GenuineIntel.dll ==================== One Month Modified files and folders ======== (If an entry is included in the fixlist, the file/folder will be moved.) 2015-09-06 22:42 - 2014-08-05 09:56 - 00003922 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{BE5E01ED-998F-4E35-B8B9-6B1C7CA86A70} 2015-09-06 22:41 - 2014-07-17 21:22 - 01562125 _____ C:\WINDOWS\WindowsUpdate.log 2015-09-06 22:41 - 2014-01-30 00:28 - 00003598 _____ C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-2739015723-2927197382-1160632269-1001 2015-09-06 22:40 - 2013-06-30 23:42 - 00000000 ___RD C:\Users\B\Dropbox 2015-09-06 22:38 - 2014-10-04 18:06 - 00000000 ____D C:\Users\B\AppData\Roaming\Skype 2015-09-06 22:38 - 2014-02-02 12:47 - 00000000 ____D C:\Users\B\AppData\Roaming\Dropbox 2015-09-06 22:37 - 2014-01-30 00:37 - 00000310 _____ C:\WINDOWS\Tasks\FoxTab.job 2015-09-06 22:35 - 2014-01-30 00:28 - 00000912 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job 2015-09-06 22:35 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\sru 2015-09-06 22:35 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\AppReadiness 2015-09-04 20:28 - 2013-08-22 16:46 - 00394571 _____ C:\WINDOWS\setupact.log 2015-09-04 20:28 - 2013-08-22 16:45 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT 2015-09-04 20:27 - 2014-03-18 10:16 - 00237338 _____ C:\WINDOWS\PFRO.log 2015-09-04 20:26 - 2012-07-26 10:12 - 00000000 ____D C:\WINDOWS\AUInstallAgent 2015-09-04 20:25 - 2013-08-22 15:25 - 00262144 ___SH C:\WINDOWS\system32\config\BBI 2015-09-04 20:20 - 2015-01-10 19:18 - 00000000 ____D C:\ProgramData\APN 2015-09-04 20:20 - 2014-01-30 00:37 - 00000000 ____D C:\Users\B\AppData\Roaming\FoxTab 2015-09-04 20:20 - 2014-01-30 00:37 - 00000000 ____D C:\Program Files (x86)\Foxtab 2015-09-04 20:07 - 2015-06-20 10:56 - 00001246 _____ C:\WINDOWS\Tasks\DropboxUpdateTaskUserS-1-5-21-2739015723-2927197382-1160632269-1001UA.job 2015-09-04 19:46 - 2014-01-30 00:28 - 00000916 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job 2015-09-04 19:06 - 2014-01-30 13:06 - 00000300 _____ C:\WINDOWS\Tasks\DLL-Files FixerASKUSER.job 2015-09-04 12:07 - 2015-06-20 10:56 - 00001194 _____ C:\WINDOWS\Tasks\DropboxUpdateTaskUserS-1-5-21-2739015723-2927197382-1160632269-1001Core.job 2015-09-03 22:34 - 2015-04-18 13:43 - 00003112 _____ C:\WINDOWS\System32\Tasks\RDReminder 2015-08-29 20:42 - 2014-10-04 18:05 - 00000000 ____D C:\ProgramData\Skype 2015-08-29 20:41 - 2014-10-04 18:05 - 00000000 ___RD C:\Program Files (x86)\Skype 2015-08-29 20:41 - 2014-01-30 00:28 - 00003888 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA 2015-08-29 20:41 - 2014-01-30 00:28 - 00003652 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore 2015-08-26 23:32 - 2015-06-01 23:03 - 00000000 ____D C:\Users\B\AppData\Roaming\vlc 2015-08-24 12:50 - 2014-03-18 17:26 - 00863592 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2015-08-19 17:08 - 2014-01-30 13:04 - 00000292 _____ C:\WINDOWS\Tasks\DLL-Files.Com Fixer_MONTHLY.job 2015-08-19 13:51 - 2012-07-26 09:59 - 00000000 ____D C:\WINDOWS\CbsTemp 2015-08-17 19:20 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\rescache 2015-08-17 18:10 - 2013-08-22 16:44 - 00386432 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2015-08-13 18:00 - 2014-12-13 16:38 - 00000000 ____D C:\WINDOWS\system32\appraiser 2015-08-13 18:00 - 2014-07-12 18:27 - 00000000 ___SD C:\WINDOWS\system32\CompatTel 2015-08-13 18:00 - 2013-08-22 17:36 - 00000000 ___RD C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2015-08-13 18:00 - 2013-08-22 17:36 - 00000000 ___RD C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2015-08-13 18:00 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files\Windows Defender 2015-08-13 18:00 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files (x86)\Windows Defender 2015-08-13 14:16 - 2014-01-30 00:42 - 00000000 ____D C:\ProgramData\Package Cache 2015-08-13 13:25 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\NDF 2015-08-13 11:36 - 2014-01-31 19:48 - 00000000 ____D C:\WINDOWS\system32\MRT 2015-08-13 11:29 - 2014-01-31 19:48 - 132483416 _____ (M$) C:\WINDOWS\system32\MRT.exe 2015-08-13 01:11 - 2013-08-22 17:36 - 00000000 ___RD C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2015-08-13 01:11 - 2013-08-22 17:36 - 00000000 ___RD C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2015-08-08 15:55 - 2013-08-22 17:38 - 00794088 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe 2015-08-08 15:55 - 2013-08-22 17:38 - 00179688 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl 2015-08-07 01:02 - 2014-01-30 00:56 - 00148632 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avipbb.sys 2015-08-07 01:02 - 2014-01-30 00:56 - 00137288 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avgntflt.sys ==================== Files in the root of some directories ======= 2014-01-30 00:37 - 2014-07-19 13:37 - 0000267 _____ () C:\Users\B\AppData\Roaming\WB.CFG 2014-01-30 00:37 - 2014-01-30 00:37 - 0000005 _____ () C:\Users\B\AppData\Roaming\WBPU-TTL.DAT 2014-03-01 13:03 - 2014-08-26 22:42 - 0001776 _____ () C:\Users\B\AppData\Local\Citavi Picker Internet Explorer Protocol.txt 2014-01-30 00:37 - 2014-01-30 00:37 - 0369548 _____ () C:\Users\B\AppData\Local\foxtab_speeddial.crx 2014-01-30 14:05 - 2014-01-30 14:06 - 0000624 _____ () C:\ProgramData\NCIDebug.log Some files in TEMP: ==================== C:\Users\B\AppData\Local\Temp\avgnt.exe C:\Users\B\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpbglrd0.dll C:\Users\B\AppData\Local\Temp\jre-8u45-windows-au.exe ==================== Bamital & volsnap ================= (There is no automatic fix for files that do not pass verification.) C:\WINDOWS\system32\winlogon.exe => File is digitally signed C:\WINDOWS\system32\wininit.exe => File is digitally signed C:\WINDOWS\explorer.exe => File is digitally signed C:\WINDOWS\SysWOW64\explorer.exe => File is digitally signed C:\WINDOWS\system32\svchost.exe => File is digitally signed C:\WINDOWS\SysWOW64\svchost.exe => File is digitally signed C:\WINDOWS\system32\services.exe => File is digitally signed C:\WINDOWS\system32\User32.dll => File is digitally signed C:\WINDOWS\SysWOW64\User32.dll => File is digitally signed C:\WINDOWS\system32\userinit.exe => File is digitally signed C:\WINDOWS\SysWOW64\userinit.exe => File is digitally signed C:\WINDOWS\system32\rpcss.dll => File is digitally signed C:\WINDOWS\system32\dnsapi.dll => File is digitally signed C:\WINDOWS\SysWOW64\dnsapi.dll => File is digitally signed C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed LastRegBack: 2015-09-04 12:40 ==================== End of FRST.txt ============================ --- --- --- |
06.09.2015, 22:21 | #4 |
| Win8, versendet Spam-Emails, Malwarebytes findet vers. PUP+AdWare Addition.txt Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version:06-09-2015 01 Ran by B (2015-09-06 22:44:45) Running from C:\Users\B\Downloads Windows 8.1 (X64) (2014-07-17 19:26:01) Boot Mode: Normal ========================================================== ==================== Accounts: ============================= Administrator (S-1-5-21-2739015723-2927197382-1160632269-500 - Administrator - Disabled) => C:\Users\Administrator B (S-1-5-21-2739015723-2927197382-1160632269-1001 - Administrator - Enabled) => C:\Users\B Guest (S-1-5-21-2739015723-2927197382-1160632269-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-2739015723-2927197382-1160632269-1005 - Limited - Enabled) ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: Avira Antivirus (Disabled - Up to date) {4D041356-F94D-285F-8768-AAE50FA36859} AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Avira Antivirus (Disabled - Up to date) {F665F2B2-DF77-27D1-BDD8-9197742422E4} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installed Programs ====================== (Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) Adobe Reader XI (11.0.12) - Deutsch (HKLM-x32\\{AC76BA86-7AD7-1031-7B44-AB0000000001}) (Version: 11.0.12 - Adobe Systems Incorporated) Avira (HKLM-x32\\{9480d4af-12b9-4e56-8034-4031ef6ab39d}) (Version: 1.1.25.25607 - Avira Operations GmbH & Co. KG) Avira Antivirus (HKLM-x32\\Avira Antivirus) (Version: 15.0.12.420 - Avira Operations GmbH & Co. KG) Cisco AnyConnect Secure Mobility Client (HKLM-x32\\Cisco AnyConnect Secure Mobility Client) (Version: 3.1.07021 - Cisco Systems, Inc.) Cisco AnyConnect Secure Mobility Client (x32 Version: 3.1.07021 - Cisco Systems, Inc.) Hidden Citavi 4 (HKLM-x32\\{CC0A85B2-734A-45B3-B678-05F6A6499AC7}) (Version: 4.2.0.11 - Swiss Academic Software) Dll-Files Fixer (HKLM-x32\\Dll-Files Fixer_is1) (Version: 3.1.81 - Dll-Files.com) Download Protect (HKU\S-1-5-21-2739015723-2927197382-1160632269-1001\\{132401a7-2006-4342-b43c-ccf5f02c2b01}) (Version: - Download Protect) Dropbox (HKU\S-1-5-21-2739015723-2927197382-1160632269-1001\\Dropbox) (Version: 3.8.8 - Dropbox, Inc.) ElsterFormular (HKLM-x32\\ElsterFormular) (Version: 16.2.24.20150630 - Landesfinanzdirektion Thüringen) FoxTab (HKU\S-1-5-21-2739015723-2927197382-1160632269-1001\\FoxTab) (Version: - FoxTab) <==== ATTENTION FreeMind (HKLM-x32\\B991B020-2968-11D8-AF23-444553540000_is1) (Version: 1.0.0 - ) Google Chrome (HKLM-x32\\Google Chrome) (Version: 45.0.2454.85 - Google Inc.) Google Update Helper (x32 Version: 1.3.28.13 - Google Inc.) Hidden IBM SPSS Statistics 21 (HKLM\\{1E26B9C2-ED08-4EEA-83C8-A786502B41E5}) (Version: 21.0.0.0 - IBM Corp) IBM SPSS Statistics 22 (HKLM\\{104875A1-D083-4A34-BC4F-3F635B7F8EF7}) (Version: 22.0.0.0 - IBM Corp) Intel(R) Processor Graphics (HKLM-x32\\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.3379 - Intel Corporation) Intel® PROSet/Wireless Software (HKLM-x32\\{c9967fbd-e3c3-4ed0-992a-5b33260f2944}) (Version: 16.1.5 - Intel Corporation) Java 8 Update 45 (HKLM-x32\\{26A24AE4-039D-4CA4-87B4-2F83218045F0}) (Version: 8.0.450 - Oracle Corporation) LibreOffice 4.2.0.4 (HKLM-x32\\{E043231F-34F2-4AF5-9400-0961CC15AAAE}) (Version: 4.2.0.4 - The Document Foundation) Malwarebytes Anti-Malware Version 2.1.8.1057 (HKLM-x32\\Malwarebytes Anti-Malware_is1) (Version: 2.1.8.1057 - Malwarebytes Corporation) Microsoft PowerPoint Viewer (HKLM-x32\\{95140000-00AF-0407-0000-0000000FF1CE}) (Version: 14.0.4763.1000 - M$) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - M$) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - M$) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - M$) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\\{e6e75766-da0f-4ba2-9788-6ea593ce702d}) (Version: 12.0.30501.0 - M$) NICI U.S./Worldwide 2.77.1.0 (x32) (HKLM-x32\\{6FCC48CA-FE49-44D6-A930-7E331E62937F}) (Version: 2.77.1.0 - Novell, Inc.) NICI U.S./Worldwide 2.77.1.0 (x64) (HKLM\\{123B3157-26AF-43F5-AD46-AB200AC56292}) (Version: 2.77.1.0 - Novell, Inc.) NMAS Challenge Response Method (HKLM\\{54031C8D-F80D-47BB-B3CA-5E9BD7750C27}) (Version: 2.8.3.3 - Novell, Inc.) NMAS Client (HKLM\\{22859902-78CE-40B0-9429-6FE7A00BBF85}) (Version: 3.5.1.1 - Novell, Inc.) Novell Client for Windows (HKLM\\Novell Client for Windows) (Version: 2 SP3 (IR4) - Novell, Inc.) Open It! (HKLM-x32\\OpenIt Open It!) (Version: 1.1.1 - OpenIt) Realtek Ethernet Controller Driver (HKLM-x32\\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 8.2.612.2012 - Realtek) S Agent (Version: 1.0.7 - Samsung Electronics CO., LTD.) Hidden Skype Click to Call (HKLM-x32\\{6D1221A9-17BF-4EC0-81F2-27D30EC30701}) (Version: 7.4.0.9058 - M$) Skype™ 7.8 (HKLM-x32\\{6A0549A9-1B96-498C-ACBC-3943001FEB19}) (Version: 7.8.102 - Skype Technologies S.A.) SW Update (HKLM-x32\\{3B4E6027-AED5-4169-B030-B450E5A0F396}) (Version: 2.0.14 - Samsung Electronics CO., LTD.) Update for Zip Opener (HKU\S-1-5-21-2739015723-2927197382-1160632269-1001\\Digital Sites) (Version: - Update for Zip Opener) <==== ATTENTION VIS (HKLM-x32\\VIS) (Version: - ) <==== ATTENTION VLC media player (HKLM-x32\\VLC media player) (Version: 2.2.1 - VideoLAN) Zip Opener Packages (HKU\S-1-5-21-2739015723-2927197382-1160632269-1001\\Zip Opener Packages) (Version: - ) <==== ATTENTION ==================== Custom CLSID (Whitelisted): ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) CustomCLSID: HKU\S-1-5-21-2739015723-2927197382-1160632269-1001_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\B\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2739015723-2927197382-1160632269-1001_Classes\CLSID\{ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C}\InprocServer32 -> C:\Users\B\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2739015723-2927197382-1160632269-1001_Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\B\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2739015723-2927197382-1160632269-1001_Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\B\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2739015723-2927197382-1160632269-1001_Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\B\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2739015723-2927197382-1160632269-1001_Classes\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\B\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2739015723-2927197382-1160632269-1001_Classes\CLSID\{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\B\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2739015723-2927197382-1160632269-1001_Classes\CLSID\{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\B\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2739015723-2927197382-1160632269-1001_Classes\CLSID\{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\B\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2739015723-2927197382-1160632269-1001_Classes\CLSID\{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\B\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2739015723-2927197382-1160632269-1001_Classes\CLSID\{FBC9D74C-AF55-4309-9FB2-C426E071637F}\InprocServer32 -> C:\Users\B\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll (Dropbox, Inc.) ==================== Restore Points ========================= 19-08-2015 13:49:27 Windows Update 26-08-2015 19:00:19 Scheduled Checkpoint 03-09-2015 23:20:45 Scheduled Checkpoint ==================== Hosts content: =============================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2013-08-22 15:25 - 2013-08-22 15:25 - 00000824 ____A C:\WINDOWS\system32\Drivers\etc\hosts ==================== Scheduled Tasks (Whitelisted) ============= (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) Task: {0424C462-7CBA-4451-9CDB-69671A711AC4} - System32\Tasks\DLL-Files FixerASKUSER => C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe [2014-06-10] (Dll-FIles.Com) Task: {04868613-A1FF-46BB-820E-05B78191AE41} - System32\Tasks\RDReminder => C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe [2014-06-10] (Dll-FIles.Com) Task: {06EE4216-98F5-4E0C-ABD6-817CF44EBF9C} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-07-07] (Adobe Systems Incorporated) Task: {18EC841E-B22E-4AAE-A613-60733E354B35} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-29] (Google Inc.) Task: {2E8C3258-CD64-4AA6-9578-AD9484FBECA7} - System32\Tasks\DropboxUpdateTaskUserS-1-5-21-2739015723-2927197382-1160632269-1001Core => C:\Users\B\AppData\Local\Dropbox\Update\DropboxUpdate.exe [2015-06-20] (Dropbox, Inc.) Task: {3D1C5335-B184-41B8-8CD5-97F766C735AC} - System32\Tasks\FoxTab => C:\Users\B\AppData\Roaming\FoxTab\UPDATE~1\UPDATE~1.EXE <==== ATTENTION Task: {69739787-A141-45AD-BB92-BCE314D17EBE} - System32\Tasks\SWUpdateAgent => C:\Program Files (x86)\Samsung\SW Update\SWMAgent.exe [2012-08-22] (Samsung Electronics CO., LTD.) Task: {7AC893F1-843B-4892-9113-997600B7C3B0} - System32\Tasks\SAgent => C:\Program Files\Samsung\S Agent\CommonAgent.exe [2012-08-17] (Samsung Electronics CO., LTD.) Task: {8586951E-905A-450D-90D4-BC3CBD4C0724} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2015-08-13] (M$) Task: {953AB94F-16E9-4FAF-AA7E-4B57A6FF919E} - System32\Tasks\DLL-Files.Com Fixer_MONTHLY => C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe [2014-06-10] (Dll-FIles.Com) Task: {961112AC-C5D5-41AC-B36D-66B1297377C9} - System32\Tasks\DLL-Files.Com Fixer_Updates => C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe [2014-06-10] (Dll-FIles.Com) Task: {DDFD089E-9C8B-467F-977A-DFC1E1CB56CA} - System32\Tasks\Microsoft\Windows\Application Experience\ProgramDataUpdater => Rundll32.exe invagent.dll,RunUpdate -noappraiser Task: {E8552A9D-211F-401D-B3B4-B6F88379324D} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-29] (Google Inc.) Task: {FED916B1-B6FD-4C58-A593-51405E2D7128} - System32\Tasks\DropboxUpdateTaskUserS-1-5-21-2739015723-2927197382-1160632269-1001UA => C:\Users\B\AppData\Local\Dropbox\Update\DropboxUpdate.exe [2015-06-20] (Dropbox, Inc.) (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) Task: C:\WINDOWS\Tasks\DLL-Files FixerASKUSER.job => C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe Task: C:\WINDOWS\Tasks\DLL-Files.Com Fixer_MONTHLY.job => C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe Task: C:\WINDOWS\Tasks\DLL-Files.Com Fixer_Updates.job => C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe Task: C:\WINDOWS\Tasks\DropboxUpdateTaskUserS-1-5-21-2739015723-2927197382-1160632269-1001Core.job => C:\Users\B\AppData\Local\Dropbox\Update\DropboxUpdate.exe Task: C:\WINDOWS\Tasks\DropboxUpdateTaskUserS-1-5-21-2739015723-2927197382-1160632269-1001UA.job => C:\Users\B\AppData\Local\Dropbox\Update\DropboxUpdate.exe Task: C:\WINDOWS\Tasks\FoxTab.job => C:\Users\B\AppData\Roaming\FoxTab\UPDATE~1\UPDATE~1.EXE <==== ATTENTION Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Loaded Modules (Whitelisted) ============== 2013-09-29 16:26 - 2013-09-29 16:26 - 00049336 _____ () C:\WINDOWS\system32\ncv1_0.DLL 2013-09-30 03:19 - 2013-09-30 03:19 - 00015872 _____ () C:\WINDOWS\SYSTEM32\nls\ENGLISH\NCLangIDR.DLL 2013-12-20 20:02 - 2013-12-20 20:02 - 00094208 _____ () C:\Windows\System32\IccLibDll_x64.dll 2013-09-29 16:26 - 2013-09-29 16:26 - 00040632 _____ () C:\Program Files\Novell\Client\nwtray.exe 2013-09-29 16:26 - 2013-09-29 16:26 - 01024696 _____ () C:\WINDOWS\SYSTEM32\NCNetProvider.DLL 2013-09-29 16:26 - 2013-09-29 16:26 - 00109752 _____ () C:\WINDOWS\SYSTEM32\NCLangID.dll 2013-09-29 16:26 - 2013-09-29 16:26 - 00175288 _____ () C:\WINDOWS\SYSTEM32\MAPBASE.dll 2013-09-29 16:26 - 2013-09-29 16:26 - 00266936 _____ () C:\WINDOWS\SYSTEM32\NWSHLXNT.dll 2013-09-30 03:24 - 2013-09-30 03:24 - 00086016 _____ () C:\WINDOWS\SYSTEM32\nls\ENGLISH\MAPBASER.DLL 2013-09-30 03:24 - 2013-09-30 03:24 - 00101376 _____ () C:\WINDOWS\SYSTEM32\nls\ENGLISH\NWSHLXNTR.DLL 2013-09-30 03:25 - 2013-09-30 03:25 - 00488448 _____ () C:\WINDOWS\SYSTEM32\nls\ENGLISH\NCNetProviderR.DLL 2015-02-19 23:37 - 2015-02-19 23:37 - 00063376 _____ () C:\Program Files (x86)\Cisco\Cisco AnyConnect Secure Mobility Client\zlib1.dll 2015-09-06 22:36 - 2015-09-06 22:36 - 00071168 _____ () c:\users\B\appdata\local\temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpbglrd0.dll 2015-03-04 23:45 - 2015-08-05 07:26 - 00012800 _____ () C:\Users\B\AppData\Roaming\Dropbox\bin\QtQuick.2\qtquick2plugin.dll 2015-03-04 23:45 - 2015-08-05 07:26 - 00779776 _____ () C:\Users\B\AppData\Roaming\Dropbox\bin\QtQuick\Controls\qtquickcontrolsplugin.dll 2015-08-05 20:12 - 2015-08-05 07:26 - 00056320 _____ () C:\Users\B\AppData\Roaming\Dropbox\bin\QtQuick\Layouts\qquicklayoutsplugin.dll 2015-03-04 23:45 - 2015-08-05 07:26 - 00012288 _____ () C:\Users\B\AppData\Roaming\Dropbox\bin\QtQuick\Window.2\windowplugin.dll 2014-04-11 23:39 - 2014-04-11 23:39 - 00012288 _____ () C:\Program Files (x86)\Google\Chrome\Application\WTSAPI32.dll 2015-09-03 19:48 - 2015-08-28 02:17 - 01501512 _____ () C:\Program Files (x86)\Google\Chrome\Application\45.0.2454.85\libglesv2.dll 2015-09-03 19:48 - 2015-08-28 02:17 - 00081224 _____ () C:\Program Files (x86)\Google\Chrome\Application\45.0.2454.85\libegl.dll ==================== Alternate Data Streams (Whitelisted) ========= (If an entry is included in the fixlist, only the ADS will be removed.) AlternateDataStreams: C:\Users\B\Downloads\... ==================== Safe Mode (Whitelisted) =================== ==================== EXE Association (Whitelisted) =============== ==================== Internet Explorer trusted/restricted =============== ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-2739015723-2927197382-1160632269-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\B\Desktop\Fotos\Fotos\Kram\goldfischI.jpg HKU\S-1-5-21-2739015723-2927197382-1160632269-500-{637FE20B-9A5B-4F51-B1BE-D10045625B40}-0\Control Panel\Desktop\\Wallpaper -> C:\Windows\web\wallpaper\Windows\img0.jpg DNS Servers: 192.168.0.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Windows Firewall is enabled. ==================== MSCONFIG/TASK MANAGER disabled items == ==================== FirewallRules (Whitelisted) =============== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139 FirewallRules: [{7CB5A598-F442-469A-835E-EB5A4C650EAF}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{07C968C8-1CF5-47C5-8B47-35B5DBFD8628}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{F87E6756-C2A6-4897-A717-7425022E84DC}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{9B5347D0-9146-4BBC-A603-1069987EFFFC}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{35BF60E9-C781-43BE-8EA3-5F0D74B4A777}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{8A028AF5-4FB2-47A0-BC9E-75FD7166670E}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{28DD300B-1F4D-4D61-B30B-54DC773DDDCF}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{E9AE7028-208F-4FF8-B529-811BC9C2124B}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{AF2D1F54-D76A-49B6-925E-44C6077D2D7E}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{13225D9A-005F-401F-BBAE-9FDD2DE37651}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{0D434BAF-26D7-4685-9D89-FD2C7BDD8CF6}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{3B89B090-A91F-469A-B68B-BFCFE05EEED8}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{EF3C3358-B7A8-4F8D-AA18-BA6152ECBF2B}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{49BB0102-9AF0-4C8C-8A49-166BE55B0B63}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{1A7E5ED1-D903-453E-BD7B-EC8A825AE984}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{87290EAC-6165-4064-A8A2-CD601C6E55AD}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{326B29B0-05F0-4789-A3C5-161293EF5B73}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{AF56E68E-701F-415E-B23A-92A194AF969A}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{88AFAC94-E96B-4A9F-83D8-27528BA3A8B7}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{7B764947-EFCD-4B28-BA2B-E69D6E57CF12}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{9A9A8EFE-E116-4D3F-ACCA-759E52CCB0CD}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{92C7F871-6863-4278-B7FE-87975B9F7FA4}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{F21F2BAD-6E0C-4C5C-89D1-3DC275AC7B33}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{3CDD7CCC-66F6-4E4D-9656-752824F82A23}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{0A8F0A96-2565-4DA8-AD75-8B977B1675E7}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{6B6CF183-F3B9-41DD-895E-B28496837946}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [UDP Query User{FA54ADCB-C307-463D-9F22-A26ED2B1A539}C:\program files\ibm\spss\statistics\21\jre\bin\javaw.exe] => (Allow) C:\program files\ibm\spss\statistics\21\jre\bin\javaw.exe FirewallRules: [TCP Query User{90C84AFA-04A0-4B4F-8479-F56C3C1BB8C2}C:\program files\ibm\spss\statistics\21\jre\bin\javaw.exe] => (Allow) C:\program files\ibm\spss\statistics\21\jre\bin\javaw.exe FirewallRules: [{83F4761C-01EF-43B8-8FF6-E9F23B7B695D}] => (Allow) C:\Program Files\IBM\SPSS\Statistics\21\stats.com FirewallRules: [{ABD9B8E2-CD7E-47AA-827D-9C9D1A2BEC1F}] => (Allow) C:\Program Files\IBM\SPSS\Statistics\21\WinWrapIDE.exe FirewallRules: [{F84570BC-C695-4E91-B192-6809368D8249}] => (Allow) C:\Program Files\IBM\SPSS\Statistics\21\stats.exe FirewallRules: [{35496E8C-08D5-4119-A107-36462F994A0F}] => (Allow) C:\Program Files\IBM\SPSS\Statistics\21\stats.com FirewallRules: [{C5C8FF49-90BC-4230-B2D7-BC29C3A711BE}] => (Allow) C:\Program Files\IBM\SPSS\Statistics\21\WinWrapIDE.exe FirewallRules: [{1AF34966-5AC2-4131-B6E2-F153DC696D35}] => (Allow) C:\Program Files\IBM\SPSS\Statistics\21\stats.exe FirewallRules: [{688636DE-F112-40DF-9A5C-356A662547C7}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{3312F882-22E7-4195-87E4-1A176FD96DC7}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{984BCBAE-F08B-49EF-B354-F3E305AAF56C}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{89A9213D-5EAE-4D51-8983-AF50F09869D1}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{15A33ECA-4742-4172-BA5B-78EACAF9BF7B}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{7AA70C63-746A-4957-84A7-2F59BAE06806}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{7C1EA48A-354D-412A-84A6-686F19BD87C5}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{C1662853-AC56-454C-8B96-1118422C0588}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{3A62C829-31E6-42BD-AD18-9A7FB359335D}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{9887D463-9B79-4EB4-B391-931E321CD164}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{27648991-777F-484F-B53B-71A1B5EBDDBE}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{31C926AC-E36B-4C61-98E2-D52B6E5BEFB2}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{C469B974-8230-4AB0-B77D-1495AB1F2BB4}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{959B28B8-0C19-41E8-9798-7F39227B1F8C}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{58063523-4A51-489C-9E92-2978FBDAF05C}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{6F233303-F389-49A1-94AD-661F55E5642E}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{BBABE023-1242-4D00-A654-9E7A77DFAFAC}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{90A41D24-27FF-497F-9AA3-03A8AA548E97}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{C9A1F49A-0CD1-4939-8260-0A6ECF0CB23C}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{225BA24D-0296-4FEB-986D-503806C1415F}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{12C6E785-5FBB-40D3-9EA0-A56272BBC0E6}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{A42CD92A-AFA6-4A35-9D03-13827024A9E3}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{BC38F9F9-8555-4E9E-BBC4-0E7C95BC35DF}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{93B1068B-993A-4768-9958-E749743AA03F}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [UDP Query User{42CC2F52-CC0A-4A36-8509-14852A4F4D5B}C:\program files (x86)\libreoffice 4\program\soffice.bin] => (Allow) C:\program files (x86)\libreoffice 4\program\soffice.bin FirewallRules: [TCP Query User{98522A6E-5C02-4E6F-AAB4-AE7B7CE9B4EC}C:\program files (x86)\libreoffice 4\program\soffice.bin] => (Allow) C:\program files (x86)\libreoffice 4\program\soffice.bin FirewallRules: [{7F459D3E-99AA-40A2-8181-DDC354541FD3}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{1C7C006B-3905-48C1-B454-EAC8EB177D80}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{5F1CBF86-AE8A-4739-B687-3FB2FDD61B87}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{51F1CF77-B8A7-4B4F-840B-A6276B43CDC8}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{B1280D97-C35D-463F-A96E-D6B88DC18AAD}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{98A82EEE-5F6D-43B1-A96A-D9D74C81B75E}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{C49C5450-5889-4860-BAC7-D22333405D32}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{AEB0D2A5-9E0B-4713-A1FD-5E41686842A6}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{1AE42501-AA9A-4C05-8574-B147BB999DBE}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{7AB5F7D5-23AE-43B2-B710-E7BE9DC39EBC}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{DB99A8AA-AAA4-4D58-94A6-0C74762A96DE}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{A1A43A8A-F086-476A-9608-678D7ADDE52B}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{582A5A96-CDC3-4534-AE06-7926E743E74D}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{B0DC2055-A2B5-4F85-90E2-158E3AB1AD97}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{B3FB0593-3762-4766-BEDC-36505F4809B9}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{718924AA-C780-4D2B-A459-F006A5C5A59E}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{A98568B9-065A-4C8E-97DB-42982A43B626}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{18D1F33B-87D6-4F26-AC7E-4B89AB0E658B}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{8AAB5FD2-692C-4C67-9E53-042601440211}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{D1C5D30C-829F-4091-B028-A76459EA7742}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{68A0F742-67C5-4370-8902-5D2144A899E5}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{2A28F57B-D4BB-42B7-B874-4004152D27DB}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{4424062E-CFC7-4F8B-913E-30EA6E43287D}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{DE52E162-F97B-4B2F-A488-39DED50CD8B1}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{862C670F-3F32-4478-A269-F3A4D835C70E}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{D2CEDA26-988C-4D66-8CC4-635D8EDFAD14}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{B8DAB4A5-C56B-4260-B46E-9FFA3F7C9086}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{4C0C5FD5-F623-4F31-B77C-87CA89828F05}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{21A8B94C-7179-4C08-A475-237B73F91152}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{66682E10-B58A-4FC8-A291-9E676142EE75}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{5262701E-6C8B-403B-85A1-8D2BCCF000DF}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{A4EA3334-BFBA-4C82-9D1C-32BBD945DBE7}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{2E6DB4C2-08C7-40FD-9165-AF90805C4B45}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{A90E330D-F3D4-47F9-BA6C-1C222DED6F19}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{3AFBB46A-9FA5-4613-9839-6AFAEB01515A}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{ECB20170-6C2E-4D93-B5A0-D752A1096F84}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{D3457018-5199-45E4-AAB9-F7B6A27EEB52}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{79B1B0E9-AF93-4088-9C8A-0654B03C9260}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{00ABD13B-2245-4A5B-9242-B52DD644ED02}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{A8A771AD-E1F5-4C1C-8C5E-EDE8C354BE0F}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{1EC2FF04-4FC3-4625-B12D-062FAD951A47}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{CCB0FA5D-0A93-4827-8CB2-8E5CABF07C06}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{69D16E6D-2B77-4408-880A-1BBE4884C377}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{1B76F295-FE20-4D24-BF61-880D34A60CB8}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{27FBF0BB-7448-464E-A08B-0E11F614D6C3}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{0F5E64CD-77F5-4DE9-B2D4-73C92530AFB6}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{3FE3ACAA-E441-4149-B10F-535B9A61A9A1}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{4FB34E49-AF79-4337-9AE7-68D8F12B8B3A}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{DB9D7739-5039-411F-B9A3-0CC586B115A6}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{4C6AC77B-4791-48D8-9EB9-C5D10610485F}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{8D886B58-3E7C-46E6-869B-159EB2909E2F}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{6D1DE018-EE61-4769-8585-EBC542EF4A32}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{01D128A2-F8FA-43B8-AA08-2F6277C31545}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{6719ED6D-5BF8-484E-B558-08702CE19A14}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{5FAF9CE3-241B-4308-AB0B-4D5A94BCC226}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{B4CC27ED-09DB-4302-93F3-371BE1DA2CAB}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{DF6C9514-1CAB-42A1-945B-5D9211557878}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{7E662EB2-8071-44D7-9673-A65F201797C3}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{AEB1A5F8-3E6E-4BE0-9FA1-384B1404C4B8}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{E820C107-689F-43B3-B886-3921E0D3E64C}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{2338EE09-6347-4BF8-BBF2-2D408FF4C565}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{AFD6DF8C-953A-42C5-A1B6-5B2FC5DD4646}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{8C3F7346-5751-47D2-AB11-4E1BE769E866}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{39548725-DCE0-469A-A074-783FBDB2C16F}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{215F994A-F15E-4710-9AAF-3C8D1E7C4060}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{B9303964-B5E1-4C33-8C3A-8763F05BE711}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{1980E457-5496-48E4-B09C-C6E33D37CC42}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{FD91603B-05D5-496E-A406-7220767993A2}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{A31DC826-1893-4A0F-A9E6-C038B72FAF46}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{A9C78E61-BC13-4A6E-AA3F-DC9E22B6832A}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{FAC6C67A-18D9-4B8B-8AF4-FFE0A3E4BE96}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{124B9083-7019-43CB-B89F-0FB182A19221}] => (Allow) C:\Users\B\AppData\Roaming\Dropbox\bin\Dropbox.exe FirewallRules: [{31F8A913-3B14-49AB-A919-CCDB9A57A72E}] => (Allow) C:\Users\B\AppData\Roaming\Dropbox\bin\Dropbox.exe FirewallRules: [{04289F87-92B7-4822-B294-37AA6004F9E6}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{12ED0E05-B1D1-4DC0-8AF1-43B33DCB0448}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{E5DA7FC1-6087-4D10-A8F1-1E39D9FBAE6A}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{E7519609-F2DD-4533-BF45-EE3938469E40}] => (Allow) C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe FirewallRules: [{000E069E-39D9-4BD2-86B7-231D4A8FF8D7}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{05DFEB19-7C7A-41B1-9B20-D435DB928195}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{B203E462-F9D7-47C7-AE5A-B0C2458DE472}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{85C8A50F-609C-4C09-A2C9-49EDE591CACA}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{830C52D1-007D-4501-B708-1B8CF07ECD01}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{E1C5EFDA-3EB0-451D-8191-B52A9E217C1A}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{2B7C0A40-3E6B-4DDE-B99C-2AAC9D537B95}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{554B26E0-20C4-411E-809F-FFFE9BE4496C}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{7C27B922-E870-4502-9A02-473FD061FAFB}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{55072D10-BBC2-41FB-8A83-D129D9AC530C}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{F24A3B84-DD76-4777-9A53-12B69EE48B3F}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{5166C2DA-84FF-4E72-A8B5-8F9ACBAF59DA}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{1F4D07DE-C5A5-498E-9B80-454649488E39}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{8764DB3E-B214-480C-858E-26B9830231DC}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{9CD88EA4-8D9E-492A-8195-624FF08B8370}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{DFF2AFA9-65CC-4E28-9DBD-B848122EFDD1}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{2B360580-C313-44AD-9677-BCB8B42FD2B8}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{16BA4D95-D99C-4409-8376-17E8D9DE678A}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{85802FD6-7AFD-40ED-AA9A-9960D7ECDAA4}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{CB2C189B-6690-4CE1-8670-6D8EC33ED877}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{D47D023F-75D9-478B-90B6-73FEE97D1897}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{0321CE7B-EF51-4205-8E94-2AC155B1DD02}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{412E1FF1-5090-48C9-B11E-40F8C9F28308}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{88B5A6AC-BA35-4838-9E45-ED6C7C1D19F9}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{06EAF931-6629-4A3F-9A08-8B35F46B9DEA}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{2AB4A0DE-134A-4867-8B45-68F0E8E922BB}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{5E7E21E3-3156-4BF8-87A6-AD774F10CE20}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{6697B1AD-483F-4422-B4E0-5CCD29D38CC8}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{F2895F5C-10E7-452D-90EB-D92FE75BB604}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{DC4F67A5-E30F-4898-AF3C-9AFD10A5DCEF}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{0ED63B5D-630B-4DD8-86B6-FC8CB04DF0C3}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{B8161D5C-A97D-4767-AAC3-012197178A1F}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{E98DDB16-AD7F-4220-9168-DCE9B1AFC10B}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{71FF7BF0-CFDE-4586-B645-3301D7FF4982}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{B4009693-B6A8-4392-B74D-8ED5BA4C0C3E}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{A9B6DAC5-2E20-45FB-A910-3BFE9101F34B}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{A91DDC36-1D61-43D0-902B-ABD66178D7D6}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{B6AC9FE5-BE8F-4662-BA97-9FABA1FC82FF}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{135658B2-F7E0-425A-AE7E-2B15462E21E2}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{5F168725-2E3E-4179-9144-A75807386944}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{32103D01-FC31-4883-AC5A-0B6F7A03004F}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{7137E1B4-AA1F-4C18-A417-5611357F443F}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{47241F8B-776A-4990-83A0-3ADA33AE4445}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{5D8392F9-8D18-4483-8477-544882571A8F}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{457CC3DB-BAC8-483A-87BE-552870B04243}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{4D620C1F-0F4F-4615-A85C-67F14665774B}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{7D6E6F84-C5BD-4BAC-A051-6778C1E50C04}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{03844704-9641-4830-A4CA-6C785E981B20}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{4411A81F-DC62-444C-BE07-96E456E58A9F}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{BB92E547-6791-4157-A41E-CA9E48C67E89}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{99F1A3E8-2DEB-47F4-ADC2-413C6BB10285}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{23910B44-A155-4231-BBD2-DEBE3682E173}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{A1CF42F2-686D-4298-85B2-21B850B12A06}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [TCP Query User{DA8BDF48-13AA-42D5-BDDF-F058F684740C}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe FirewallRules: [UDP Query User{F0B558A2-5595-4727-85B8-C11932213B24}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe FirewallRules: [{E8967C6F-D6FF-4586-B2AC-A2DAFD62E9D5}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{D36C0544-2156-4BA2-AECC-876B8C292C63}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{E37C0A50-EA88-4E50-874B-093DE9FEFDD6}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{F9BD5E92-9947-4E0D-A433-54492C9F1C2B}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{470B747D-E0DD-46EA-B249-EDB4D9B7E6CA}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{B3B5184F-B9BC-48A2-9CCA-512CD5AB2B6C}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{D5F095A8-F28B-4248-B1D8-7B120B8D1ACE}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{FD366C20-0410-4C42-9C14-0B64C99101D7}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{1A75F1AD-B817-4E7F-83BE-60B80D54E8AF}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{34D70AC9-8DB2-4106-8659-3CD112DD02E9}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{EB731359-EDFA-438B-B92C-D0C11C5E7DFB}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{EF34ADB2-5918-4818-87E4-0A0253B0C2B6}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{BA06B8A1-E61A-4794-A133-FD3D263F9412}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{80B05425-8F79-4562-9FE7-42EA919B4DC6}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{5E0C3CFD-FD98-4E9F-8AAA-93563BCE2487}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{78B08FE3-CDF2-4740-83C6-E322FCF10652}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{4D3F715D-0C35-4009-9B5E-D6A15AC7C6C1}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{0B90CB6D-7FAE-47E8-9F50-E944A6BB5049}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{EF9E08E7-E203-4CC7-8E9A-929A9A278F62}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{564548C1-4CFD-4361-8C18-82F72663BADB}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{8FCD2025-75EF-4ED8-841A-69E60C1D11F8}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [TCP Query User{05D7A118-8FAF-45B7-86D8-171CCB923272}C:\users\B\appdata\roaming\dropbox\bin\dropbox.exe] => (Allow) C:\users\B\appdata\roaming\dropbox\bin\dropbox.exe FirewallRules: [UDP Query User{FDE02174-1CFF-4DD7-BCEF-8A8BB4F4FA68}C:\users\B\appdata\roaming\dropbox\bin\dropbox.exe] => (Allow) C:\users\B\appdata\roaming\dropbox\bin\dropbox.exe FirewallRules: [{0DF75C0B-EFCD-4C1F-9921-3FDD5D07EC12}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{AF86A092-3A12-4B8B-8719-6B3469E2E492}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{074C2288-F63F-46E7-AAC7-F25D49183569}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{1B73C3B8-3E90-41F1-BCEE-933DB232CC9A}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{6D8A786B-4636-40B0-A546-3B0F27D2FE32}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{345CF5E8-853C-4E0D-8711-0438D013E68F}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{9B4F09B5-6C67-4DF7-968C-473BFE1F9A04}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{8C70C46A-4295-4312-82A7-764FB79F5974}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{421D1CBA-013C-4453-950F-508A77685067}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{BAF3EEBF-18F5-44C3-9192-70C05B1D1A2D}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{ADB7CD22-737E-446C-B353-C632F1267464}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{9F5B72BF-4CBB-4C6B-BB95-266A94B1E0E8}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{0AD87AD7-60E1-4DF0-9496-489B868957AF}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{23952078-6E21-465E-9F18-CB213A9F72EA}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{0687731A-7598-49F8-9C52-9AB83846A89A}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{C8816C70-2A44-4E6B-8703-3B593D6DE352}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{B8CD5CF0-9AD7-4F6E-B0F0-C350B005157D}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{77C21546-BC9F-4B80-B3EB-826EAA4A7F86}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{6C27A70F-6E2A-45F0-B458-C4547F189A34}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{3A287ED0-D332-46C9-BEA2-32D9C51A75F6}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{5E18678B-1235-4167-8970-ECE2D1767953}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{1D9E1E72-6AF7-4445-8A1C-FE3A1706B491}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{652C7557-0843-479F-9EB7-5E23BB8A804E}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{A2E715E0-2870-4A0D-B3F7-D83F6D10FEC6}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{DC007881-C2B1-4631-9FDB-044D019BEE3F}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{8CF2964A-4C63-4971-97E9-701628C3EB52}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{9F01C6FF-5BB0-4CF7-ADD6-142C0213EB52}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{6900C594-A0DE-4805-BB2D-B8BB4E4DC5E7}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{AB6E926D-0299-431E-846D-5EDD7E7AD72E}] => (Allow) C:\Program Files\IBM\SPSS\Statistics\22\WinWrapIDE.exe FirewallRules: [{50AB286E-6406-4121-A854-17194B950631}] => (Allow) C:\Program Files\IBM\SPSS\Statistics\22\stats.exe FirewallRules: [{7663CDFD-A43E-465D-9916-9232571714FA}] => (Allow) C:\Program Files\IBM\SPSS\Statistics\22\WinWrapIDE.exe FirewallRules: [{05B3ECAC-D826-4B86-9927-FC82135C9768}] => (Allow) C:\Program Files\IBM\SPSS\Statistics\22\stats.exe FirewallRules: [{41A3BE64-BF48-4016-92A8-AB9784408C33}] => (Allow) C:\Program Files\IBM\SPSS\Statistics\22\stats.com FirewallRules: [{7B9E72C4-A925-47ED-9A18-E6BEF9BE8343}] => (Allow) C:\Program Files\IBM\SPSS\Statistics\22\stats.com FirewallRules: [{43A25CBA-2B22-4B21-8A21-7E40FE9C77FA}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [TCP Query User{1F842FE6-03B6-43B7-A22E-4EC52A3EDFDA}C:\program files\ibm\spss\statistics\22\jre\bin\javaw.exe] => (Allow) C:\program files\ibm\spss\statistics\22\jre\bin\javaw.exe FirewallRules: [UDP Query User{972652BB-89ED-433F-9D47-C3DE634A3CCD}C:\program files\ibm\spss\statistics\22\jre\bin\javaw.exe] => (Allow) C:\program files\ibm\spss\statistics\22\jre\bin\javaw.exe FirewallRules: [{D72CCF13-F921-43FE-8DCA-B8565523B740}] => (Block) C:\program files\ibm\spss\statistics\22\jre\bin\javaw.exe FirewallRules: [{2A371412-FDC6-4DED-95FB-33B86686E3B5}] => (Block) C:\program files\ibm\spss\statistics\22\jre\bin\javaw.exe FirewallRules: [TCP Query User{91F602D8-9E0E-42EF-AC72-BFD4F1B6014C}C:\program files (x86)\libreoffice 4\program\soffice.bin] => (Allow) C:\program files (x86)\libreoffice 4\program\soffice.bin FirewallRules: [UDP Query User{BE406010-BA7C-4E0B-8229-056813646A90}C:\program files (x86)\libreoffice 4\program\soffice.bin] => (Allow) C:\program files (x86)\libreoffice 4\program\soffice.bin FirewallRules: [{20505575-E12D-41E4-8857-A617558B4B21}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{52991942-F3DE-418F-ADA8-069A57EFFE63}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{E488B9E7-C4A5-4180-8EE0-C18010DBE3C1}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{23371060-2F78-4A0D-AA57-CB7792B5E021}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{48C57E3A-D26A-42A1-9991-3125B20EB1A5}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{A12EE322-D950-463D-9057-FB11BB9F4C53}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{9084CAA9-6826-4094-BBC6-715943F86EE0}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{93FD7E45-D322-44E9-86D3-9E8621A31977}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{2CD573ED-1CE6-46ED-85A3-CE76599AC760}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{89AAAACD-28B2-430E-AE04-24F0FB8F6CBD}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{5B9B8A65-92B5-41FD-8BAD-16B0AEE74739}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{62120035-CFF1-4B58-8988-2CE1DCD9BF4D}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{C0649BCE-563D-4850-AC36-782A7900A4B9}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{F6E43083-121E-47F7-B7FE-29275E875FC0}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{2A59E788-8EF3-4C5C-A0B2-FD95F478585E}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{4678EA73-DD0C-4750-8F8B-313E1CD8A696}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{CBA6DD6B-3848-451D-B7B0-15509B46A0B4}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{BB8B493E-9DE1-47BE-88B6-733A9351AE36}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{CB9AC45C-EA02-4955-A57E-8CBA609E7B36}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{7B628C20-752B-4FE6-A179-48A61CF83C36}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{DB4C7706-7742-426B-9D5B-92CACBFD9395}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{33389CEB-B099-427A-931C-3EB8DEB57343}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{ADB3C0E4-1830-494B-838D-43753A25F3DB}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{8F491404-1059-48BD-BC41-97FB6E6616D2}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{D6D9AAF3-35CD-4F92-984B-4BED571FBE67}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{575366F2-ECFB-493F-8D98-DFF58ABC3FD7}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{DF22EE69-E2EA-48E4-91E1-6F755539473F}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{4130B081-5D04-41C8-B816-A0BC81DDC1CF}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{68142EF1-1C4C-4009-99A1-4E011FF84AA3}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{4CC43D2C-8F1E-4D7F-A5B8-99BF37B47B16}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{E50DF278-291F-4E0E-9EE6-00A26440740C}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{3A571B9F-BC16-43F6-A36A-7237B04081D6}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{F9C3D41F-7F71-4D95-9E51-39B894C95030}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{3210459B-C1AD-45E4-A087-14AB5D2CB19E}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{3EFDAC87-00AF-455D-AC4C-09010B6B16FD}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{CEFF732B-C60C-488A-A2CB-FA255F1FE3AC}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{E6239F95-CDFC-42B1-BF04-0D456CE5D866}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{06A5F868-EB67-418A-A344-22C8CB8CBD6C}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{32521BF4-E9F2-4F83-80DD-20783EB10721}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{8F84D223-64A7-4DD3-BD43-598F4BA3AB92}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{649E9061-5032-4B56-95FB-32D4816B8EC2}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{7A539B1D-5F2A-4840-81B0-4CA0D065514A}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{1D004B34-2D18-40F0-8787-864C025B7F59}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{4504A027-8125-4BCD-927C-78EE61B5CF9E}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{8FCE6549-BE27-4F8B-B506-EAD14EF6482D}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{D7CD297A-E060-4398-9290-BBA46AB169B2}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{430A5418-2C6C-4982-B875-15AF8F1E2B38}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{5ED18873-8A5A-4275-BD9E-3A3B874BEDFD}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{796EAB1D-66CB-41E3-9C99-FEF600549DE2}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{9A02C318-1355-47D3-8988-391F7F5A6E86}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{F5E419B8-94BD-480E-8662-1C1A738D84DC}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{B595CD0C-632B-451D-AE80-9A725987519D}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{E42F558B-297B-4B79-A53C-D01FA9DD4872}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{ABE8E849-C757-409B-88C4-AC30E6A0102B}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{24A81D83-628A-4A59-90FE-662E1C90C015}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{394CED51-F8E6-4E88-AD59-B290BC357502}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{D16CA95C-56F9-48DD-8C45-EAA60F4D2431}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{C936ACC8-A932-4B9F-9AE9-0925F3740C93}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{273E68CE-5DCE-42D1-A758-D1BDDEA34479}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{4003C369-18A6-4380-8D57-4569A2BBFAEB}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{C5745019-DA46-498A-B027-ECF35207E807}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{770295D9-57E6-4F87-B203-201DEEFD4C97}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{CB3AA6F1-6AC7-45C8-96FD-C92633CDF6AF}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{152DBAF2-A50B-4231-BF89-464BC76FF364}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{43FB6128-4040-42EF-8F0E-DB74EC33DC4A}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{4A4E3F07-281B-4178-B40F-0282DDE15F96}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{CF77D241-9780-4B4D-88D2-F2CCEF7C5595}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{2C8EE894-E051-4FA7-8DAC-61DC7AB9A60A}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{613C039A-76D0-483F-9E00-2AE1CC341B2F}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{11CE9893-DE05-4DEF-8C27-2DB65D5E4EC5}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{8380E2E4-8513-4B10-B42C-EEA801E9D756}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{7B5155A3-ED03-4A4C-B59C-4572DAFCDDD3}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{A817E6F0-669E-41BB-A83A-6F7FA127764A}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{6B6D1865-23E0-4645-A2F1-4D08C0D878D6}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{8592B67C-4A04-47FB-8383-667BE53E25E7}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{14186838-A45F-4717-9535-BDE38D473431}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{7683686E-1E3A-4E3C-AC0F-2591430C0A5A}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{A35893AD-3F48-4A4E-BEC9-DAF0B1F8B290}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{EC1104BC-17DE-4871-ADEB-8269A914B83C}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{082083A2-0012-4C1E-9BC7-307826FACFE6}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{C6B92DE1-ED7E-4415-A925-559E2616D984}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{84769C06-CFA0-4E8B-B70A-E4729FB79618}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{ADD56F1A-515E-46C7-9364-DD0A40E77D77}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{1F39F807-B760-45FD-B8BE-2E0553B55E25}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{A26F8D2B-4D47-4C7D-825F-9390D52557F6}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{2F5F8832-A033-4219-8CB3-C1D666FEED25}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{36BFD444-9DC7-4A32-A917-CD1B6DA52463}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{174E7CE9-B103-4FE6-A541-200C6F607A62}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{50E59536-0847-49A7-BDE0-A22292A038CF}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{DD456671-E901-4F78-8C47-FF945F387689}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{1AF7D638-8E9E-465C-8A51-414313732AD9}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{3639EE0A-AE74-4133-93A3-4172D5EB60CA}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{E8942AF4-B05E-4B44-A1BC-7CA513251665}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{0B4A494E-AD2D-4EDC-ADCE-0508562BDB0C}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{FE70A16E-4C61-4F48-8E65-5FAE3DFA2F76}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{0F2616B8-7114-467E-BD8C-CBDB4F06DACF}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{635E1673-392F-4F4E-A6C4-03A4A97B445F}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{83E34A9A-93CE-46DD-B98F-E8E52EEC9C57}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{5A491911-DCAB-4C92-A82B-6136AF69D466}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{DAD3CD21-F3FE-4B35-8BAB-89D91A8984EC}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{CE9B460C-02D4-42DA-80C1-8881E84560FD}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{014B281E-22A9-44A8-88BC-F88814E60937}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{F2E348D6-C461-4B11-9924-8F767007CE1B}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{A3E82308-9073-4759-BFC9-09FD16ACC7BF}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{CA1AC067-42F0-4BAC-ADAF-6E49A867D3FB}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{F65B07EE-BD1C-47EA-9F33-692F985DAC5F}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{BEE5894A-F55D-4F33-AA81-C1A2C90D1069}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{7D1DBDCC-9CC1-4E84-A67F-6EC91400BDC6}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{6C29E18A-9225-4FCD-9F84-A4E0448C50C5}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{4C3EF363-9162-4EDE-9387-77DA8AC6F3BD}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{BE3DD44E-387F-445D-AFB9-57DCC55CCBB3}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{AE44B117-0F56-4665-B485-B36D487F7DD4}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{64971EF6-BA62-4C12-8096-97B678F128C6}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{EA42E6D5-B35B-474D-9D4B-344ED9C486FC}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{EF456CEA-B3EC-4680-A002-09AC6752BF56}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{D304E247-2504-4CBA-B959-84978AAA947C}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{4885BB91-4077-4F80-8D33-4641A4339969}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{E29BB2F1-A4C9-4B67-AAB2-C5B100912DFD}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{57BC173F-85AA-4754-8E28-17E6186E7097}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{9ACCAA12-B4BF-4113-B255-08A144960054}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{C737DD62-0109-4D19-936D-94AD9B0C1982}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{9D6863F2-A017-4EFA-858C-F058B1BBE538}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{25642FA2-41A6-4E3A-A2D6-90EFD5B29F4B}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{85BBBA7E-23D1-4728-9F6F-9C4552158FD0}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{42F5C76A-35D8-460E-BEB9-50DAF99F8F2D}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{1106D68B-39E6-43EE-B17A-75BF236A2C08}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{D30BF0BB-975C-45F2-9BD6-D2F185D6B21C}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{FD42DFAB-EC99-49F4-9100-2FFC699BF170}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{1FEDC15D-FE44-4F4E-B53A-2BBB026CF75E}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{F6864CA5-5156-49A7-828F-9570EBBE95D9}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{6D84CB5C-33C7-483E-850D-54325378F2A8}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{6ABD4DF8-EAA3-4B91-9B23-298701D8F9EF}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{4E7F0571-C383-4664-9AAD-395EF5F33037}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{BA67FC6D-2E46-4A8A-8137-4A3D88E06194}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{58D3B68D-94C1-4D77-ACC7-AEB997D3F122}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{480FAECD-68F9-4248-AD13-65BAB03C6E17}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{00B31191-92FD-4872-906A-73B64C75A54F}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{A8232883-04A9-404C-A718-CEDDB9798C8C}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{24ED0A4D-697E-49F6-BBD4-757E903F8DFD}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{D5EBECC7-9257-4A60-96AC-FDC18348B456}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{C440CFE3-963A-405E-8DA6-A07F86FF55B5}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{64E4E83C-2265-4E9C-8267-257A1DE4472E}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{E88DCE3E-7852-44B7-85F0-881976230EDE}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{0058D65F-9AEF-4ABD-8C5C-02B6D0D093E3}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{81030420-8023-4A3B-B0D5-0BE3D3C2FB5A}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{21F25125-EC75-4DC4-8EAC-2B00F3BA26F3}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{B603098C-4F0B-476F-BE41-F0584E750667}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{EBA33B90-3476-46A6-9577-B986E9237ECA}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{CDAC2559-16C5-4349-BA27-D0008BB153E1}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{C21C99F9-CC98-4F7C-99EB-25041209ECE3}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{2E2ECBBB-416D-47AC-8307-82DACD8E1061}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{E0F89939-49D1-4A8F-96B4-682898B3F5A6}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{3483E165-BFF2-434C-BB0C-05790444B4DE}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{7CB4BE43-C9C2-4C21-ADBF-BB25D010DD40}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{C5F3AA96-CE08-4545-A46C-476D38F263F1}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{8391A39C-0B30-4DB9-84A5-9EA8A2BFE95C}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{E39E0FA0-B2E4-4DF7-B08D-DC45618A1E34}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{80961219-3BC0-40D2-862E-576DB30C7589}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{7E3CED6E-921B-4701-B992-D0F26971262B}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{5A5E4369-BC24-4B9F-A211-54B0BD548BC7}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{56CA5CA0-B11B-482B-966C-CC4FBA6C452B}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{E0977337-D571-4E43-B3C0-0C2251D1B994}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{916ABCEB-1564-494C-91CB-CB8D5A1A0CD0}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{FE2C29AC-8725-4DEC-893C-A9582E46D5D6}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{3ADE3788-09DF-4BA9-A315-C22123F84F98}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{82427EDF-23D5-42B0-901C-FA01282CC99E}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{815293EE-CEDC-428B-B41A-E6C6CAB78451}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{6DA19BC2-EEAD-4E5E-BBD6-2E75A5BD5559}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{3FD014FC-9A44-47B4-8797-A74B22C7A9AF}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{6C82D88B-D338-41E6-8349-63A088750E30}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{0791E92C-7FE8-4546-87B9-8A78377B52E7}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{0E30DC8A-8AEA-4069-A9E4-678B906CEB24}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{5C7BF1A5-3995-4BA1-9D5B-78DCBEDCBAB0}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{D434F1B5-5FEB-4980-801A-BB3CFA77A63B}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{F95C87FC-B310-417E-B98E-EE1A4735FF9D}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{D721D3D0-8BE6-40A5-AE06-4B43CF6FCB44}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{66A22033-14B3-48DF-B6E5-F5AE8FC5DEAB}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{CD0D135C-6F96-44D1-B27F-A33A1DAB7242}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{7F60E047-13C4-4AC1-93F5-5AF0D23DFAC7}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{E604A28B-F551-408E-A715-75CB64F13739}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{1BC426FF-0DAD-4716-82B5-EC1FF35A1DDC}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{A5E37C2A-D69F-4E4A-8A4A-18290DEB0B3C}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{9D9D1610-E401-4B5C-A655-2A3DE01DF706}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{7AD89978-6F10-4DB1-AA9B-F3D91DAE0C8E}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{898C9BCC-C10F-4724-9CA9-84310A8BC06B}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{8864621F-E3CD-419E-BBB0-76FBA01688C2}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{31D45814-4771-46FC-AD09-97F82ADE5B14}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{BF9D7E01-6D6B-4265-9619-D5B20A43EEC3}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{5C401DB5-DDD8-41C9-9996-A86F2D0B0C1B}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{6B11AF0F-D4BF-408A-91FC-BB9362793C36}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{260147FB-0882-4B33-B5A4-7181E900899A}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{DE1B708E-E465-43AD-996E-725E15B1DCA3}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{E60CD1DD-FF2C-4CF0-9C57-E1D023303CCB}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{9EF0FD70-64A3-4078-98E2-B15EDE64BE93}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{7B915D87-02CD-4BC8-A031-16377B9347CE}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{4479D76A-FFCD-48D3-AB97-390FFAD1B727}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{D2B5B39A-C8CF-459E-ADD6-9989421E0BD2}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{97ADAEBF-04DF-451F-8148-D3E360DEE16B}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{F5FFC300-8E1B-4979-8193-F2B22E013233}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{6F32FBCC-9593-4B42-95AE-C841A9563498}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{1386D0A5-6BCF-45B4-A92D-BB543F9B2443}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{4DB0C439-6A3A-41FB-88DE-81E80F10EDAB}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{740EA435-604E-4614-B795-DE356B5C5A84}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{6894D4B4-F633-4BA4-81B5-9C4448B4B966}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{18941DFB-0F4E-4E65-A04B-7ABB5D126938}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{9237CF22-FEF6-4255-8BDA-6848CD586E97}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{F65209FD-0813-4A22-A9FE-AD9B3B649256}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{A6786229-ACAF-4355-8C57-34DAA715E359}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{C507C8C9-2FC1-40BE-B020-3ACD8CF311EC}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{E9E05BD5-4B38-4EFA-A2D3-AA735790F6E5}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{2BBB64D5-48CD-4A05-9A6B-1B31D049B8EA}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{87254172-E8DA-4146-A6B3-2E0F3D1AC51C}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{D66B2AEB-857D-46BE-B0DB-AA0C4A29DCFC}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{933D643C-9D44-4FCD-9795-E496FC1F8E3D}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{D4143CCF-5DC8-42B8-A917-D6C1BE5B64AB}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{C6C19BAF-0D45-45AD-8D12-2B11AE067811}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{A80ACC2B-0F79-4490-8D79-AB266C367F18}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{E49EE985-35F3-4B10-9015-4103D75D42A2}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{FC2A2736-ED68-4E67-8919-1085DA21B100}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{BD19B999-FC88-455F-91CC-878B15EA539A}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{3AD295CA-F0E2-4324-B382-8301136D8463}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{DAE0B890-814C-4A46-B22F-58375A2EC30E}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{795C3C8E-23B1-4A93-8497-C155D9847BBC}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{6A698116-EC88-45A1-92C0-0F25E6AB3CA6}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{7D8D5255-DAB0-4D32-98E7-5D36ADAAA176}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{DD296387-EDC5-4C16-A8B4-676C2E7C0C98}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{C79841DB-F176-491A-8287-B0824599D8EF}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{1374F1DB-4C50-45D9-9819-151DF21E5BE9}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{E3A420F0-AF15-431D-88D0-DDF9ADC22B69}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{81E7C8A5-9B8D-48A4-AADB-56C07438A4B7}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{BBC05753-D108-45B0-AA85-059C7C5B5BB2}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{826114AB-0551-420D-B10C-62C8BE01F2C9}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{5D787B76-02B6-4121-8970-3D1DCCFFC926}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{6F62490E-07C7-4461-BAA1-661C2832CA92}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{4E30BACF-3B2D-495A-AF52-5EEE0D9AA9ED}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{C9F3C4EF-651C-432A-8B9D-22E7739AEA7F}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{5D8FA62F-EFA4-4D9A-8283-8430869D57DE}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{6A88B5B2-4CEB-4A3A-965E-B3E5BA733672}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{F8CB296A-8DF9-47AA-8174-C09CD40D83E5}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{B757229A-461C-488F-8134-4E36CE2F05F3}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{3EF37F92-4B1E-48BF-A41C-D86D6BE1A21B}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{5AB92141-3547-4AEF-89BA-6F5B991B14F9}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{FA79892A-6754-4AAB-93E7-11A7985F018C}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{E61C64E5-1FBD-422A-8F11-BDD2871C047F}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{8236A082-CCA6-4808-B055-BC8B7A70D7D4}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{6D745D69-0BF1-4C36-8D11-F1626ED6DEDE}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{B918C98C-1A6D-442E-B591-578A71185709}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{304B4F98-DC39-436D-8B36-996C8747E8DF}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{D6BD20B0-92B2-48D8-8887-08E9DCBAD38D}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{10FAC1AD-2306-4395-BCCF-1353D102AD95}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{A4EFD371-F091-422E-A6BF-ED10C6054031}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{5918B79A-71BB-4DD0-8306-EAF06A431B84}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{F6BFAC92-3905-493B-80E8-8B91459C1866}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{88232D36-BC45-47F8-8481-B59D0E00A73C}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{8BD6F692-386A-4526-BEF8-CE1B241B146B}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{4E41513B-05CA-4D9F-A1AD-91CC3E388B15}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{1E5F6267-D0B7-4EAC-B242-8DA11B3CA279}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{DF55BA91-0A76-46E7-A874-9EB83543C176}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{F45C279F-3627-4217-A58B-EC4ED76D7264}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{26267357-A9BC-4B51-8B60-3E825DAA4224}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{FDB50414-0255-44FB-9BE0-1BB1D5BB7059}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{02421571-9D4E-4C70-822A-02948CFF1786}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{CEBBC47F-DB31-4E6B-9B49-3760E9DF056C}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{CE0303CB-BC38-4EAA-92BA-11996943B5E4}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe FirewallRules: [{4E831127-B2B9-4361-9FFA-2C168D25F85A}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{3D451545-F15E-42E8-990A-63856BB41C58}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{8C866010-63AE-42C6-8E24-0D389BCE3AFA}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe ==================== Faulty Device Manager Devices ============= Name: Cisco AnyConnect Secure Mobility Client Virtual Miniport Adapter for Windows x64 Description: Cisco AnyConnect Secure Mobility Client Virtual Miniport Adapter for Windows x64 Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: Cisco Systems Service: vpnva Problem: : This device is disabled. (Code 22) Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions. ==================== Event log errors: ========================= Application errors: ================== Error: (09/04/2015 07:32:27 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: A) Description: Activation of application winstore_cw5n1h2txyewy!Windows.Store failed with error: -2144927142 See the Microsoft-Windows-TWinUI/Operational log for additional information. Error: (09/04/2015 07:31:26 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: A) Description: Activation of application winstore_cw5n1h2txyewy!Windows.Store failed with error: -2144927142 See the Microsoft-Windows-TWinUI/Operational log for additional information. Error: (09/03/2015 07:05:03 PM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: ) Description: 80070005 Error: (08/31/2015 11:55:34 PM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: ) Description: 80070005 Error: (08/29/2015 09:33:28 PM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: ) Description: 80070005 Error: (08/28/2015 12:59:33 PM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: ) Description: 80070005 Error: (08/27/2015 01:30:09 PM) (Source: Winlogon) (EventID: 4005) (User: ) Description: The Windows log-on process has unexpectedly terminated. Error: (08/26/2015 06:14:01 PM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: ) Description: 80070005 Error: (08/24/2015 02:46:41 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: update.exe_Avira Product Family, version: 15.0.12.402, time stamp: 0x559fa6c4 Faulting module name: MSVCP120.dll, version: 12.0.21005.1, time stamp: 0x524f7ced Exception code: 0xc0000005 Fault offset: 0x0000e5a8 Faulting process ID: 0x11dc Faulting application start time: 0xupdate.exe_Avira Product Family0 Faulting application path: update.exe_Avira Product Family1 Faulting module path: update.exe_Avira Product Family2 Report ID: update.exe_Avira Product Family3 Faulting package full name: update.exe_Avira Product Family4 Faulting package-relative application ID: update.exe_Avira Product Family5 Error: (08/23/2015 01:05:06 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: update.exe_Avira Product Family, version: 15.0.12.402, time stamp: 0x559fa6c4 Faulting module name: MSVCP120.dll, version: 12.0.21005.1, time stamp: 0x524f7ced Exception code: 0xc0000005 Fault offset: 0x0000e5a8 Faulting process ID: 0x1220 Faulting application start time: 0xupdate.exe_Avira Product Family0 Faulting application path: update.exe_Avira Product Family1 Faulting module path: update.exe_Avira Product Family2 Report ID: update.exe_Avira Product Family3 Faulting package full name: update.exe_Avira Product Family4 Faulting package-relative application ID: update.exe_Avira Product Family5 System errors: ============= Error: (09/06/2015 10:45:03 PM) (Source: Ntfs) (EventID: 55) (User: NT AUTHORITY) Description: A corruption was discovered in the file system structure on volume ??. The Master File Table (MFT) contains a corrupted file record. The file reference number is 0x2000000000024. The name of the file is "<unable to determine file name>". Error: (09/04/2015 08:27:51 PM) (Source: BTHUSB) (EventID: 30) (User: ) Description: The local adapter does not support an important Low Energy controller state. The minimum required supported state mask is 0x1f7fffff, got 0x1f3fffff. Low Energy functionality will be disabled. Error: (09/04/2015 12:41:50 PM) (Source: DCOM) (EventID: 10010) (User: A) Description: {1B1F472E-3221-4826-97DB-2C2324D389AE} Error: (09/04/2015 12:41:19 PM) (Source: DCOM) (EventID: 10010) (User: A) Description: {BF6C1E47-86EC-4194-9CE5-13C15DCB2001} Error: (09/04/2015 11:58:34 AM) (Source: bowser) (EventID: 8003) (User: ) Description: The master browser has received a server announcement from the computer KHALED-PC that believes that it is the master browser for the domain on transport NetBT_Tcpip_{F777ADDD-2478-438E-85C8-BF3C873A22A6}. The master browser is stopping or an election is being forced. Error: (09/04/2015 01:51:02 AM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY) Description: application-specificLocalActivation{D63B10C5-BB46-4990-A94F-E40B9D520160}{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}NT AUTHORITYSYSTEMS-1-5-18LocalHost (Using LRPC)UnavailableUnavailable Error: (09/03/2015 11:11:05 PM) (Source: NetBT) (EventID: 4319) (User: ) Description: A duplicate name has been detected on the TCP network. The IP address of the computer that sent the message is in the data. Use nbtstat -n in a command window to see which name is in the Conflict state. Error: (09/03/2015 11:11:05 PM) (Source: NetBT) (EventID: 4319) (User: ) Description: A duplicate name has been detected on the TCP network. The IP address of the computer that sent the message is in the data. Use nbtstat -n in a command window to see which name is in the Conflict state. Error: (09/03/2015 11:11:05 PM) (Source: NetBT) (EventID: 4319) (User: ) Description: A duplicate name has been detected on the TCP network. The IP address of the computer that sent the message is in the data. Use nbtstat -n in a command window to see which name is in the Conflict state. Error: (09/03/2015 11:11:04 PM) (Source: NetBT) (EventID: 4319) (User: ) Description: A duplicate name has been detected on the TCP network. The IP address of the computer that sent the message is in the data. Use nbtstat -n in a command window to see which name is in the Conflict state. Microsoft Office: ========================= Error: (09/04/2015 07:32:27 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: A) Description: winstore_cw5n1h2txyewy!Windows.Store-2144927142 Error: (09/04/2015 07:31:26 PM) (Source: Microsoft-Windows-Immersive-Shell) (EventID: 5973) (User: A) Description: winstore_cw5n1h2txyewy!Windows.Store-2144927142 Error: (09/03/2015 07:05:03 PM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: ) Description: 80070005 Error: (08/31/2015 11:55:34 PM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: ) Description: 80070005 Error: (08/29/2015 09:33:28 PM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: ) Description: 80070005 Error: (08/28/2015 12:59:33 PM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: ) Description: 80070005 Error: (08/27/2015 01:30:09 PM) (Source: Winlogon) (EventID: 4005) (User: ) Description: Error: (08/26/2015 06:14:01 PM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: ) Description: 80070005 Error: (08/24/2015 02:46:41 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: update.exe_Avira Product Family15.0.12.402559fa6c4MSVCP120.dll12.0.21005.1524f7cedc00000050000e5a811dc01d0de6aeb12e851C:\Program Files (x86)\Avira\AntiVir Desktop\update.exeC:\Program Files (x86)\Avira\AntiVir Desktop\MSVCP120.dll2aaa4cac-4a5e-11e5-beb8-c48508e9dffd Error: (08/23/2015 01:05:06 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: update.exe_Avira Product Family15.0.12.402559fa6c4MSVCP120.dll12.0.21005.1524f7cedc00000050000e5a8122001d0dd938ded7430C:\Program Files (x86)\Avira\AntiVir Desktop\update.exeC:\Program Files (x86)\Avira\AntiVir Desktop\MSVCP120.dllcf79e26f-4986-11e5-beb8-c48508e9dffd ==================== Memory info =========================== Processor: Intel(R) Core(TM) i3-3217U CPU @ 1.80GHz Percentage of memory in use: 49% Total physical RAM: 3797.53 MB Available physical RAM: 1912.98 MB Total Virtual: 4757.54 MB Available Virtual: 2459.55 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:441.25 GB) (Free:279.21 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (Size: 465.8 GB) (Disk ID: 1C1CBB20) Partition: GPT. ======================================================== Disk: 1 (Size: 22.4 GB) (Disk ID: 58449395) Partition: GPT. ==================== End of Addition.txt ============================ |
07.09.2015, 18:38 | #5 |
/// the machine /// TB-Ausbilder | Win8, versendet Spam-Emails, Malwarebytes findet vers. PUP+AdWare Lade Dir bitte von hier Revo Uninstaller (alternativ portable Revo Uninstaller) herunter.
MBAM updaten, scannen, Funde löschen. Downloade Dir bitte AdwCleaner auf deinen Desktop.
Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
und ein frisches FRST log bitte.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
08.09.2015, 00:26 | #6 |
| Win8, versendet Spam-Emails, Malwarebytes findet vers. PUP+AdWare Malwarebytes Antimalware hat automatisch gescannt und noch 1 Registry-Eintrag von PUP...Lollipop entdeckt. Den hab ich dann auch gleich entfernt. Revo Uninstaller konnte VIS nicht entfernen, oder zumindest taucht es immernoch in der Liste auf. Es wurden auch keine Reste gefunden. Auch der erweiterte Modus (statt Moderat) half nicht. Jetzt nochmal den Malwarebytes Scan laufen gelassen. Nix. Ich schließe jetzt den Browser für den Rest. AdwCleaner.txt: Code:
ATTFilter # AdwCleaner v5.006 - Logfile created 07/09/2015 at 21:12:11 # Updated 06/09/2015 by Xplode # Database : 2015-09-04.4 [Server] # Operating system : Windows 8.1 (x64) # Username : B - A # Running from : C:\Users\B\Downloads\AdwCleaner_5.006.exe # Option : Cleaning # Support : hxxp://toolslib.net/forum ***** [ Services ] ***** ***** [ Folders ] ***** [-] Folder Deleted : C:\Program Files (x86)\FoxTab [-] Folder Deleted : C:\Program Files (x86)\openit [-] Folder Deleted : C:\ProgramData\apn [-] Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\open it! [-] Folder Deleted : C:\Users\B\AppData\Local\DownloadGuide [-] Folder Deleted : C:\Users\B\AppData\Roaming\DigitalSites [-] Folder Deleted : C:\Users\B\AppData\Roaming\FoxTab ***** [ Files ] ***** [-] File Deleted : C:\END [-] File Deleted : C:\Users\B\daemonprocess.txt [-] File Deleted : C:\Users\B\AppData\Local\foxtab_speeddial.crx [-] File Deleted : C:\Users\B\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_fmlgoencnlndpglbocajlimaikjohmab_0.localstorage [-] File Deleted : C:\Users\B\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_fmlgoencnlndpglbocajlimaikjohmab_0.localstorage-journal [-] File Deleted : C:\Users\B\AppData\Roaming\Mozilla\Firefox\Profiles\ds5n16am.default\user.js [-] File Deleted : C:\WINDOWS\Sysnative\roboot64.exe ***** [ Shortcuts ] ***** ***** [ Scheduled tasks ] ***** [-] Task Deleted : FoxTab [-] Task Deleted : RDReminder ***** [ Registry ] ***** [-] Key Deleted : HKCU\Software\Google\Chrome\Extensions\dchmpbaclbiioedakpcldenooikekokm [-] Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\dchmpbaclbiioedakpcldenooikekokm [-] Key Deleted : [x64] HKLM\SOFTWARE\Google\Chrome\Extensions\dchmpbaclbiioedakpcldenooikekokm [-] Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{459DD0F7-0D55-D3DC-67BC-E6BE37E9D762} [-] Key Deleted : HKCU\Software\powerpack [-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\openit open it! [-] Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\VIS [!] Key Not Deleted : [x64] HKCU\Software\powerpack ***** [ Web browsers ] ***** [-] [C:\Users\B\AppData\Local\Google\Chrome\User Data\Default\Web Data] [Search Provider] Deleted : uk.ask.com ************************* :: Proxy settings cleared :: Winsock settings cleared :: IE policies deleted :: Chrome policies deleted ########## EOF - C:\AdwCleaner\AdwCleaner[C1].txt - [2564 bytes] ########## Code:
ATTFilter ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Junkware Removal Tool (JRT) by Malwarebytes Version: 7.6.0 (08.31.2015:1) OS: Windows 8.1 x64 Ran by B on 08/09/2015 at 1:10:31.82 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ ~~~ Services ~~~ Tasks ~~~ Registry Values ~~~ Registry Keys ~~~ Files Successfully deleted: [File] C:\Users\B\Appdata\Local\google\chrome\user data\default\local storage\hxxp_static..net_0.localstorage Successfully deleted: [File] C:\Users\B\Appdata\Local\google\chrome\user data\default\local storage\hxxp_static..net_0.localstorage-journal Successfully deleted: [File] C:\Users\B\Appdata\Local\google\chrome\user data\default\local storage\hxxp_static..net_0.localstorage Successfully deleted: [File] C:\Users\B\Appdata\Local\google\chrome\user data\default\local storage\hxxp_static..net_0.localstorage-journal Successfully deleted: [File] C:\Users\B\Appdata\Local\google\chrome\user data\default\local storage\hxxp_www..com_0.localstorage Successfully deleted: [File] C:\Users\B\Appdata\Local\google\chrome\user data\default\local storage\hxxp_www..com_0.localstorage-journal Successfully deleted: [File] C:\Users\B\Appdata\Local\google\chrome\user data\default\local storage\hxxp_www..com_0.localstorage Successfully deleted: [File] C:\Users\B\Appdata\Local\google\chrome\user data\default\local storage\hxxp_www..com_0.localstorage-journal Successfully deleted: [File] C:\Users\B\Appdata\Local\google\chrome\user data\default\local storage\hxxp_www..com_0.localstorage Successfully deleted: [File] C:\Users\B\Appdata\Local\google\chrome\user data\default\local storage\hxxp_www..com_0.localstorage-journal Successfully deleted: [File] C:\Users\B\Appdata\Local\google\chrome\user data\default\local storage\hxxp_www..com_0.localstorage Successfully deleted: [File] C:\Users\B\Appdata\Local\google\chrome\user data\default\local storage\hxxp_www..com_0.localstorage-journal Successfully deleted: [File] C:\Users\B\Appdata\Local\google\chrome\user data\default\local storage\hxxp_www..com_0.localstorage Successfully deleted: [File] C:\Users\B\Appdata\Local\google\chrome\user data\default\local storage\hxxp_www..com_0.localstorage-journal Successfully deleted: [File] C:\Users\B\Appdata\Local\google\chrome\user data\default\local storage\hxxps_www..com_0.localstorage Successfully deleted: [File] C:\Users\B\Appdata\Local\google\chrome\user data\default\local storage\hxxps_www..com_0.localstorage-journal ~~~ Folders Successfully deleted: [Folder] C:\Program Files (x86)\dll-files.com fixer Successfully deleted: [Folder] C:\Users\B\AppData\Roaming\dll-files.com ~~~ Chrome [C:\Users\B\Appdata\Local\Google\Chrome\User Data\Default\Preferences] - default search provider reset [C:\Users\B\Appdata\Local\Google\Chrome\User Data\Default\Preferences] - Extensions Deleted: [C:\Users\B\Appdata\Local\Google\Chrome\User Data\Default\Secure Preferences] - default search provider reset [C:\Users\B\Appdata\Local\Google\Chrome\User Data\Default\Secure Preferences] - Extensions Deleted: ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Scan was completed on 08/09/2015 at 1:12:38.33 End of JRT log ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ FRST Logfile: FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:06-09-2015 01 Ran by B (administrator) on B (08-09-2015 01:17:45) Running from C:\Users\B\Downloads Loaded Profiles: B (Available Profiles: B & Administrator) Platform: Windows 8.1 (X64) Language: English (United Kingdom) Internet Explorer Version 11 (Default browser: Chrome) Boot Mode: Normal Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (If an entry is included in the fixlist, the process will be closed. The file will not be moved.) (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe (Novell, Inc.) C:\Program Files\Novell\Client\XTier\Services\xtsvcmgr.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe (Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe (Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe (Cisco Systems, Inc.) C:\Program Files (x86)\Cisco\Cisco AnyConnect Secure Mobility Client\vpnagent.exe (Intel(R) Corporation) C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe (Intel Corporation) C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe (PortableApps.com) C:\Users\B\Downloads\Notepad++Portable\Notepad++Portable.exe (Don HO don.h@free.fr) C:\Users\B\Downloads\Notepad++Portable\App\Notepad++\notepad++.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe ==================== Registry (Whitelisted) =========================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Run: [NWTRAY] => C:\Program Files\Novell\Client\nwtray.exe [40632 2013-09-29] () HKLM-x32\...\Run: [avgnt] => C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [782008 2015-08-26] (Avira Operations GmbH & Co. KG) HKLM-x32\...\Run: [Cisco AnyConnect Secure Mobility Agent for Windows] => C:\Program Files (x86)\Cisco\Cisco AnyConnect Secure Mobility Client\vpnui.exe [708496 2015-02-19] (Cisco Systems, Inc.) Winlogon\Notify\igfxcui: C:\WINDOWS\system32\igfxdev.dll (Intel Corporation) HKU\S-1-5-21-2739015723-2927197382-1160632269-1001\...\Run: [Dropbox Update] => C:\Users\B\AppData\Local\Dropbox\Update\DropboxUpdate.exe [134512 2015-06-20] (Dropbox, Inc.) HKU\S-1-5-21-2739015723-2927197382-1160632269-1001\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [53729824 2015-08-07] (Skype Technologies S.A.) Lsa: [Authentication Packages] msv1_0 ncv1_0 ShellIconOverlayIdentifiers: [DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\B\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll [2015-08-14] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\B\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll [2015-08-14] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [DropboxExt3] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\B\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll [2015-08-14] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [DropboxExt4] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\B\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll [2015-08-14] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\B\AppData\Roaming\Dropbox\bin\DropboxExt.27.dll [2015-08-14] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\B\AppData\Roaming\Dropbox\bin\DropboxExt.27.dll [2015-08-14] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [DropboxExt3] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\B\AppData\Roaming\Dropbox\bin\DropboxExt.27.dll [2015-08-14] (Dropbox, Inc.) Startup: C:\Users\B\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk [2015-08-05] ShortcutTarget: Dropbox.lnk -> C:\Users\B\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) ==================== Internet (Whitelisted) ==================== (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.) Tcpip\Parameters: [DhcpNameServer] 192.168.0.1 Tcpip\..\Interfaces\{F777ADDD-2478-438E-85C8-BF3C873A22A6}: [DhcpNameServer] 192.168.0.1 Internet Explorer: ================== HKU\S-1-5-21-2739015723-2927197382-1160632269-1001\Software\Microsoft\Internet Explorer\Main,Start Page = about:Tabs HKU\S-1-5-21-2739015723-2927197382-1160632269-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://samsung13.msn.com SearchScopes: HKLM -> DefaultScope {216F2AAB-AC60-4908-BAF9-3DA6499FC0FE} URL = hxxp://www.google.de/search?q={searchTerms}&hl=de&gl=de&rls=com.microsoft:{language}:{referrer:source}&ie={inputEncoding?}&oe={outputEncoding?} SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKLM -> {216F2AAB-AC60-4908-BAF9-3DA6499FC0FE} URL = hxxp://www.google.de/search?q={searchTerms}&hl=de&gl=de&rls=com.microsoft:{language}:{referrer:source}&ie={inputEncoding?}&oe={outputEncoding?} SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-2739015723-2927197382-1160632269-1001 -> DefaultScope {216F2AAB-AC60-4908-BAF9-3DA6499FC0FE} URL = hxxp://www.bing.com/search?FORM=UP97DF&PC=UP97&q={searchTerms}&src=IE-SearchBox SearchScopes: HKU\S-1-5-21-2739015723-2927197382-1160632269-1001 -> {216F2AAB-AC60-4908-BAF9-3DA6499FC0FE} URL = hxxp://www.bing.com/search?FORM=UP97DF&PC=UP97&q={searchTerms}&src=IE-SearchBox BHO: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2015-05-01] (Microsoft Corporation) BHO-x32: Citavi Picker -> {609D670F-B735-4da7-AC6D-F3BD358E325E} -> C:\WINDOWS\SysWOW64\mscoree.dll [2013-08-22] (Microsoft Corporation) BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\ssv.dll [2015-04-17] (Oracle Corporation) BHO-x32: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2015-05-01] (Microsoft Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\jp2ssv.dll [2015-04-17] (Oracle Corporation) Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2015-05-01] (Microsoft Corporation) Handler-x32: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2015-05-01] (Microsoft Corporation) FireFox: ======== FF ProfilePath: C:\Users\B\AppData\Roaming\Mozilla\Firefox\Profiles\ds5n16am.default FF Plugin-x32: @java.com/DTPlugin,version=11.45.2 -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\dtplugin\npDeployJava1.dll [2015-04-17] (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.45.2 -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\plugin2\npjp2.dll [2015-04-17] (Oracle Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.28.13\npGoogleUpdate3.dll [2015-08-29] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.28.13\npGoogleUpdate3.dll [2015-08-29] (Google Inc.) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2015-06-29] (Adobe Systems Inc.) Chrome: ======= CHR Plugin: (Store) - C:\Program Files (x86)\Google\Chrome\Application\32.0.1700.102\resources\web_store No File CHR Plugin: (Google Docs) - aohghmighlieiainnegkcijnfilokake\0.9_0 No File CHR Plugin: (Google Drive) - apdfllckaahabafndbhieahigkjlhalf\14.0_0 No File CHR Plugin: (YouTube) - blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.7_0 No File CHR Plugin: (Google-Suche) - coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.30_0 No File CHR Plugin: (Foxtab Speed Dial) - C:\Program Files (x86)\Google\Chrome\Application\32.0.1700.102\resources\chrome_app No File CHR Plugin: (Chrome PDF Viewer) - pjkljhegncpnkpknbcohdijeoejaedia\8.1_0 No File CHR Profile: C:\Users\B\AppData\Local\Google\Chrome\User Data\Default CHR Extension: (Google Docs) - C:\Users\B\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-01-30] CHR Extension: (Google Drive) - C:\Users\B\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-01-30] CHR Extension: (YouTube) - C:\Users\B\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-01-30] CHR Extension: (Google Search) - C:\Users\B\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-01-30] CHR Extension: (Google Docs Offline) - C:\Users\B\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2015-09-03] CHR Extension: (AdBlock) - C:\Users\B\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2014-02-12] CHR Extension: (Chrome Hotword Shared Module) - C:\Users\B\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg [2015-03-13] CHR Extension: (Chrome Web Store Payments) - C:\Users\B\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-01-30] CHR Extension: (Citavi Picker) - C:\Users\B\AppData\Local\Google\Chrome\User Data\Default\Extensions\piehhloihgjjiomhieeddiidpekaajio [2014-01-30] CHR Extension: (Gmail) - C:\Users\B\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-01-30] CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2015-05-01] CHR HKLM-x32\...\Chrome\Extension: [piehhloihgjjiomhieeddiidpekaajio] - C:\ProgramData\Swiss Academic Software\Citavi Picker\Chrome\ChromePicker.crx [2014-01-30] ==================== Services (Whitelisted) ======================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) S2 AntiVirMailService; C:\Program Files (x86)\Avira\AntiVir Desktop\avmailc7.exe [887128 2015-08-07] (Avira Operations GmbH & Co. KG) R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [461672 2015-08-26] (Avira Operations GmbH & Co. KG) R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [461672 2015-08-26] (Avira Operations GmbH & Co. KG) S2 AntiVirWebService; C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe [1213072 2015-08-26] (Avira Operations GmbH & Co. KG) R2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1394816 2015-05-01] (Microsoft Corporation) R2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1772672 2015-05-01] (Microsoft Corporation) S2 MBAMScheduler; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamscheduler.exe [1871160 2015-06-18] (Malwarebytes Corporation) S2 MBAMService; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe [1133880 2015-06-18] (Malwarebytes Corporation) S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [273136 2013-08-28] () S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [366552 2015-07-07] (Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23824 2015-07-07] (Microsoft Corporation) R2 XTSvcMgr; C:\Program Files\Novell\Client\XTier\Services\XTSvcMgr.exe [21176 2013-09-29] (Novell, Inc.) S2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [3378416 2013-08-28] (Intel® Corporation) ===================== Drivers (Whitelisted) ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [137288 2015-08-07] (Avira Operations GmbH & Co. KG) R1 avipbb; C:\Windows\system32\DRIVERS\avipbb.sys [148632 2015-08-07] (Avira Operations GmbH & Co. KG) R1 avkmgr; C:\Windows\system32\DRIVERS\avkmgr.sys [28600 2013-12-18] (Avira Operations GmbH & Co. KG) R2 avnetflt; C:\Windows\system32\DRIVERS\avnetflt.sys [43576 2015-03-10] (Avira Operations GmbH & Co. KG) S3 dot4; C:\Windows\system32\DRIVERS\Dot4.sys [151968 2012-10-19] (Windows (R) Win 7 DDK provider) S3 Dot4Print; C:\Windows\System32\drivers\Dot4Prt.sys [27040 2012-10-19] (Windows (R) Win 7 DDK provider) S0 ebdrv; C:\Windows\System32\drivers\evbda.sys [3357024 2013-08-22] (Broadcom Corporation) S3 MBAMProtector; C:\WINDOWS\system32\drivers\mbam.sys [25816 2015-06-18] (Malwarebytes Corporation) S3 MBAMWebAccessControl; C:\WINDOWS\system32\drivers\mwac.sys [64216 2015-06-18] (Malwarebytes Corporation) R0 NCFilter; C:\Windows\System32\DRIVERS\NCFilter.sys [113336 2013-09-29] () R2 NCFSD; C:\Program Files\Novell\Client\XTier\Drivers\ncfsd.sys [116408 2013-09-29] () R2 NCIOCTL; C:\Program Files\Novell\Client\XTier\Drivers\ncioctl.sys [91320 2013-09-29] () R0 NCRecognizer; C:\Windows\System32\DRIVERS\NCRecognizer.sys [121016 2013-09-29] () R0 NCUncFilter; C:\Windows\System32\DRIVERS\NCUncFilter.sys [27320 2013-09-29] () R3 NETwNe64; C:\Windows\system32\DRIVERS\Netwew00.sys [3345376 2013-10-08] (Intel Corporation) R1 NICM; C:\Program Files\Novell\Client\XTier\Drivers\nicm.sys [32952 2013-09-29] (Novell, Inc.) R3 RadioHIDMini; C:\Windows\System32\drivers\RadioHIDMini.sys [23408 2012-07-29] (Windows (R) Win 7 DDK provider) S3 ssudserd; C:\Windows\system32\DRIVERS\ssudserd.sys [206080 2014-01-22] (DEVGURU Co., LTD.(www.devguru.co.kr)) S3 vpnva; C:\Windows\system32\DRIVERS\vpnva64-6.sys [52592 2014-08-15] (Cisco Systems, Inc.) S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44560 2015-07-07] (Microsoft Corporation) S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [270168 2015-07-07] (Microsoft Corporation) S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114520 2015-07-07] (Microsoft Corporation) U3 nciom; C:\Program Files\Novell\Client\XTier\Drivers\nciom.sys [82616 2013-09-29] (Novell, Inc.) U3 ncp; C:\Program Files\Novell\Client\XTier\Drivers\ncp.sys [81080 2013-09-29] (Novell, Inc.) U3 ncpl; C:\Program Files\Novell\Client\XTier\Drivers\ncpl.sys [50360 2013-09-29] (Novell, Inc.) U3 ndm; C:\Program Files\Novell\Client\XTier\Drivers\ndm.sys [20664 2013-09-29] (Novell, Inc.) U3 ndmndap; C:\Program Files\Novell\Client\XTier\Drivers\ndmndap.sys [84664 2013-09-29] (Novell, Inc.) U3 ndslpp; C:\Program Files\Novell\Client\XTier\Drivers\ndslpp.sys [24760 2013-09-29] (Novell, Inc.) U3 niam; C:\Program Files\Novell\Client\XTier\Drivers\niam.sys [40120 2013-09-29] (Novell, Inc.) U3 nipctl; C:\Program Files\Novell\Client\XTier\Drivers\nipctl.sys [57016 2013-09-29] (Novell, Inc.) U3 nscm; C:\Program Files\Novell\Client\XTier\Drivers\nscm.sys [39096 2013-09-29] (Novell, Inc.) U3 nsns; C:\Program Files\Novell\Client\XTier\Drivers\nsns.sys [26296 2013-09-29] (Novell, Inc.) U3 nsvccost; C:\Program Files\Novell\Client\XTier\Drivers\nsvccost.sys [37048 2013-09-29] (Novell, Inc.) U3 xtxplat; C:\Program Files\Novell\Client\XTier\Drivers\xtxplat.sys [60600 2013-09-29] (Novell, Inc.) ==================== NetSvcs (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) ==================== One Month Created files and folders ======== (If an entry is included in the fixlist, the file/folder will be moved.) 2015-09-08 01:16 - 2015-09-08 01:16 - 00000000 ____D C:\N++RECOV 2015-09-08 01:12 - 2015-09-08 01:12 - 00003654 _____ C:\Users\B\Desktop\JRT.txt 2015-09-07 21:20 - 2015-09-07 21:21 - 01799392 _____ (Malwarebytes Corporation) C:\Users\B\Downloads\JRT_7600.exe 2015-09-07 21:08 - 2015-09-07 21:12 - 00000000 ____D C:\AdwCleaner 2015-09-07 20:47 - 2015-09-07 20:47 - 01654784 _____ C:\Users\B\Downloads\AdwCleaner_5.006.exe 2015-09-07 20:05 - 2015-09-07 20:05 - 02623656 _____ (VS Revo Group Ltd.) C:\Users\B\Downloads\revosetup95.exe 2015-09-07 20:05 - 2015-09-07 20:05 - 00000000 ____D C:\Program Files (x86)\VS Revo Group 2015-09-06 22:57 - 2015-09-06 22:57 - 00000000 ____D C:\Users\B\Downloads\Notepad++Portable 2015-09-06 22:44 - 2015-09-06 22:45 - 00091866 _____ C:\Users\B\Downloads\Addition.txt 2015-09-06 22:42 - 2015-09-08 01:17 - 00016844 _____ C:\Users\B\Downloads\FRST.txt 2015-09-06 22:41 - 2015-09-08 01:17 - 00000000 ____D C:\FRST 2015-09-06 22:41 - 2015-09-06 22:41 - 00000000 ____D C:\Users\B\Downloads\FRST-OlderVersion 2015-09-04 20:19 - 2015-09-06 22:41 - 02190336 _____ (Farbar) C:\Users\B\Downloads\FRST64.exe 2015-09-04 19:35 - 2015-09-08 01:07 - 00113880 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys 2015-09-04 19:35 - 2015-09-04 19:35 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 2015-09-04 19:35 - 2015-09-04 19:35 - 00000000 ____D C:\ProgramData\Malwarebytes 2015-09-04 19:35 - 2015-09-04 19:35 - 00000000 ____D C:\Program Files (x86)\ Malwarebytes Anti-Malware 2015-09-04 19:35 - 2015-06-18 08:42 - 00064216 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mwac.sys 2015-09-04 19:35 - 2015-06-18 08:41 - 00109272 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbamchameleon.sys 2015-09-04 19:35 - 2015-06-18 08:41 - 00025816 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbam.sys 2015-09-04 16:05 - 2015-09-04 16:06 - 00000000 ____D C:\Users\B\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox 2015-09-04 13:27 - 2015-09-04 13:27 - 00004937 _____ C:\Users\B\Downloads\export.csv 2015-08-29 20:41 - 2015-08-29 20:41 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype 2015-08-26 23:34 - 2015-08-26 23:34 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_Kernel_WinUsb_01007.Wdf 2015-08-26 18:32 - 2015-08-26 18:32 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira 2015-08-19 13:51 - 2015-08-11 03:20 - 25191936 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2015-08-19 13:51 - 2015-08-11 02:20 - 19871232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll 2015-08-13 14:16 - 2015-08-13 14:19 - 00000000 ____D C:\ProgramData\elsterformular 2015-08-13 14:16 - 2015-08-13 14:16 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ElsterFormular 2015-08-13 14:14 - 2015-08-13 14:14 - 00000000 ____D C:\Program Files (x86)\ElsterFormular 2015-08-13 14:10 - 2015-08-13 14:12 - 102777624 _____ (Landesfinanzdirektion Thüringen) C:\Users\B\Downloads\ElsterFormular-16.2.24.20150630k.exe 2015-08-13 01:13 - 2015-07-30 16:04 - 00124624 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll 2015-08-13 01:13 - 2015-07-30 15:48 - 00103120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationCFFRasterizerNative_v0300.dll 2015-08-13 00:17 - 2015-07-19 03:58 - 00136904 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe 2015-08-13 00:17 - 2015-07-18 20:51 - 03704320 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll 2015-08-13 00:17 - 2015-07-18 20:31 - 00140288 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuwebv.dll 2015-08-13 00:17 - 2015-07-18 20:31 - 00095744 _____ (Microsoft Corporation) C:\WINDOWS\system32\wudriver.dll 2015-08-13 00:17 - 2015-07-18 20:31 - 00035840 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapp.exe 2015-08-13 00:17 - 2015-07-18 20:29 - 00409088 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUSettingsProvider.dll 2015-08-13 00:17 - 2015-07-18 20:29 - 00124928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuwebv.dll 2015-08-13 00:17 - 2015-07-18 20:29 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapp.exe 2015-08-13 00:17 - 2015-07-18 20:28 - 00081920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wudriver.dll 2015-08-13 00:17 - 2015-07-18 20:12 - 02228736 _____ (Microsoft Corporation) C:\WINDOWS\system32\wucltux.dll 2015-08-13 00:17 - 2015-07-18 20:10 - 00891904 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll 2015-08-13 00:17 - 2015-07-18 20:09 - 00721920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll 2015-08-13 00:17 - 2015-07-16 02:29 - 07458648 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe 2015-08-13 00:17 - 2015-07-16 02:29 - 01735000 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll 2015-08-13 00:17 - 2015-07-16 02:29 - 00101720 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mountmgr.sys 2015-08-13 00:17 - 2015-07-16 02:28 - 01499920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll 2015-08-13 00:17 - 2015-07-10 19:54 - 01217024 _____ (Microsoft Corporation) C:\WINDOWS\system32\sysmain.dll 2015-08-13 00:16 - 2015-06-09 20:27 - 00411133 _____ C:\WINDOWS\system32\ApnDatabase.xml 2015-08-13 00:15 - 2015-07-16 22:36 - 00584192 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll 2015-08-13 00:15 - 2015-07-16 22:36 - 00417792 _____ (Microsoft Corporation) C:\WINDOWS\system32\html.iec 2015-08-13 00:15 - 2015-07-16 22:35 - 02885632 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll 2015-08-13 00:15 - 2015-07-16 22:26 - 05923328 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll 2015-08-13 00:15 - 2015-07-16 22:23 - 00615936 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieui.dll 2015-08-13 00:15 - 2015-07-16 22:21 - 00816640 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll 2015-08-13 00:15 - 2015-07-16 21:53 - 00145408 _____ (Microsoft Corporation) C:\WINDOWS\system32\iepeers.dll 2015-08-13 00:15 - 2015-07-16 21:51 - 00504320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll 2015-08-13 00:15 - 2015-07-16 21:50 - 00341504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\html.iec 2015-08-13 00:15 - 2015-07-16 21:45 - 02279424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll 2015-08-13 00:15 - 2015-07-16 21:45 - 01032704 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcomm.dll 2015-08-13 00:15 - 2015-07-16 21:41 - 00479232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieui.dll 2015-08-13 00:15 - 2015-07-16 21:39 - 00664064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll 2015-08-13 00:15 - 2015-07-16 21:38 - 00262144 _____ (Microsoft Corporation) C:\WINDOWS\system32\webcheck.dll 2015-08-13 00:15 - 2015-07-16 21:36 - 00801280 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll 2015-08-13 00:15 - 2015-07-16 21:34 - 14451200 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll 2015-08-13 00:15 - 2015-07-16 21:32 - 02125824 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl 2015-08-13 00:15 - 2015-07-16 21:14 - 02880000 _____ (Microsoft Corporation) C:\WINDOWS\system32\actxprxy.dll 2015-08-13 00:15 - 2015-07-16 21:13 - 00880128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcomm.dll 2015-08-13 00:15 - 2015-07-16 21:12 - 04520448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll 2015-08-13 00:15 - 2015-07-16 21:12 - 02427904 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll 2015-08-13 00:15 - 2015-07-16 21:10 - 12856832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll 2015-08-13 00:15 - 2015-07-16 21:06 - 00689152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll 2015-08-13 00:15 - 2015-07-16 21:01 - 01545728 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll 2015-08-13 00:15 - 2015-07-16 20:52 - 01048576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\actxprxy.dll 2015-08-13 00:15 - 2015-07-16 20:49 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll 2015-08-13 00:15 - 2015-07-16 20:42 - 01951232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll 2015-08-13 00:15 - 2015-07-16 20:38 - 01310720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll 2015-08-13 00:15 - 2015-07-16 20:37 - 00710144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll 2015-08-13 00:13 - 2015-07-29 01:24 - 00025776 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe 2015-08-13 00:13 - 2015-07-28 16:24 - 01148416 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll 2015-08-13 00:13 - 2015-07-28 16:24 - 01116160 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll 2015-08-13 00:13 - 2015-07-28 16:24 - 00774144 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll 2015-08-13 00:13 - 2015-07-28 16:24 - 00743424 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll 2015-08-13 00:13 - 2015-07-28 16:24 - 00437248 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll 2015-08-13 00:13 - 2015-07-28 16:24 - 00069120 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll 2015-08-13 00:13 - 2015-07-07 11:40 - 00270168 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdFilter.sys 2015-08-13 00:13 - 2015-07-07 11:40 - 00114520 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdNisDrv.sys 2015-08-13 00:13 - 2015-07-07 11:40 - 00044560 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdBoot.sys 2015-08-13 00:13 - 2015-07-02 00:19 - 00228864 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebClnt.dll 2015-08-13 00:13 - 2015-07-02 00:16 - 00104448 _____ (Microsoft Corporation) C:\WINDOWS\system32\davclnt.dll 2015-08-13 00:13 - 2015-07-01 23:37 - 00198656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WebClnt.dll 2015-08-13 00:13 - 2015-07-01 23:35 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\davclnt.dll 2015-08-13 00:13 - 2015-06-12 19:03 - 18823680 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll 2015-08-13 00:13 - 2015-06-12 18:36 - 15159296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll 2015-08-13 00:12 - 2015-07-29 16:37 - 01994752 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll 2015-08-13 00:12 - 2015-07-29 16:30 - 01381888 _____ (Microsoft Corporation) C:\WINDOWS\system32\FntCache.dll 2015-08-13 00:12 - 2015-07-29 16:23 - 01559552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWrite.dll 2015-08-13 00:12 - 2015-07-24 20:57 - 04177408 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys 2015-08-13 00:12 - 2015-07-24 20:57 - 00358912 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll 2015-08-13 00:12 - 2015-07-24 20:52 - 00044032 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll 2015-08-13 00:12 - 2015-07-24 19:27 - 00301568 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\atmfd.dll 2015-08-13 00:12 - 2015-07-24 19:23 - 00035840 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll 2015-08-13 00:12 - 2015-07-14 23:59 - 01113944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys 2015-08-13 00:12 - 2015-07-14 23:59 - 00487256 _____ (Microsoft Corporation) C:\WINDOWS\system32\netcfgx.dll 2015-08-13 00:12 - 2015-07-14 23:59 - 00393560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netcfgx.dll 2015-08-13 00:12 - 2015-07-14 05:22 - 02529880 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll 2015-08-13 00:12 - 2015-07-14 05:21 - 01901776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll 2015-08-13 00:12 - 2015-07-13 21:46 - 00059392 _____ (Microsoft Corporation) C:\WINDOWS\system32\csrsrv.dll 2015-08-13 00:12 - 2015-07-13 21:45 - 00059392 _____ (Microsoft Corporation) C:\WINDOWS\system32\basesrv.dll 2015-08-13 00:12 - 2015-07-10 20:19 - 01101824 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdvidcrl.dll 2015-08-13 00:12 - 2015-07-10 19:42 - 02345472 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll 2015-08-13 00:12 - 2015-07-10 19:14 - 00856064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdvidcrl.dll 2015-08-13 00:12 - 2015-07-10 19:13 - 07032320 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll 2015-08-13 00:12 - 2015-07-10 18:47 - 01556992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3.dll 2015-08-13 00:12 - 2015-07-10 18:31 - 06213120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll 2015-08-13 00:12 - 2015-07-09 19:13 - 00221184 _____ (Microsoft Corporation) C:\WINDOWS\system32\notepad.exe 2015-08-13 00:12 - 2015-07-09 19:13 - 00221184 _____ (Microsoft Corporation) C:\WINDOWS\notepad.exe 2015-08-13 00:12 - 2015-07-09 18:30 - 00212992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\notepad.exe 2015-08-13 00:12 - 2015-06-11 22:12 - 02476376 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys 2015-08-13 00:12 - 2015-06-11 22:12 - 00428888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\FWPKCLNT.SYS 2015-08-13 00:12 - 2015-05-12 02:24 - 00536920 _____ (Microsoft Corporation) C:\WINDOWS\system32\mcupdate_GenuineIntel.dll ==================== One Month Modified files and folders ======== (If an entry is included in the fixlist, the file/folder will be moved.) 2015-09-08 01:09 - 2014-10-04 18:06 - 00000000 ____D C:\Users\B\AppData\Roaming\Skype 2015-09-08 01:07 - 2015-06-20 10:56 - 00001246 _____ C:\WINDOWS\Tasks\DropboxUpdateTaskUserS-1-5-21-2739015723-2927197382-1160632269-1001UA.job 2015-09-08 01:07 - 2014-01-30 00:28 - 00000912 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job 2015-09-08 01:06 - 2013-08-22 16:46 - 00395726 _____ C:\WINDOWS\setupact.log 2015-09-08 01:06 - 2013-08-22 16:45 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT 2015-09-08 01:02 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\sru 2015-09-08 00:46 - 2014-01-30 00:28 - 00000916 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job 2015-09-07 23:33 - 2014-07-17 21:22 - 01764946 _____ C:\WINDOWS\WindowsUpdate.log 2015-09-07 23:21 - 2014-02-02 12:47 - 00000000 ____D C:\Users\B\AppData\Roaming\Dropbox 2015-09-07 23:21 - 2013-06-30 23:42 - 00000000 ___RD C:\Users\B\Dropbox 2015-09-07 21:28 - 2014-01-30 00:28 - 00003600 _____ C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-2739015723-2927197382-1160632269-1001 2015-09-07 21:14 - 2014-03-18 10:16 - 00237684 _____ C:\WINDOWS\PFRO.log 2015-09-07 21:12 - 2014-07-17 21:05 - 00000000 ____D C:\Users\B 2015-09-07 19:06 - 2014-01-30 13:06 - 00000300 _____ C:\WINDOWS\Tasks\DLL-Files FixerASKUSER.job 2015-09-07 18:11 - 2014-08-05 09:56 - 00003922 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{BE5E01ED-998F-4E35-B8B9-6B1C7CA86A70} 2015-09-06 22:35 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\AppReadiness 2015-09-04 20:26 - 2012-07-26 10:12 - 00000000 ____D C:\WINDOWS\AUInstallAgent 2015-09-04 20:25 - 2013-08-22 15:25 - 00262144 ___SH C:\WINDOWS\system32\config\BBI 2015-09-04 12:07 - 2015-06-20 10:56 - 00001194 _____ C:\WINDOWS\Tasks\DropboxUpdateTaskUserS-1-5-21-2739015723-2927197382-1160632269-1001Core.job 2015-08-29 20:42 - 2014-10-04 18:05 - 00000000 ____D C:\ProgramData\Skype 2015-08-29 20:41 - 2014-10-04 18:05 - 00000000 ___RD C:\Program Files (x86)\Skype 2015-08-29 20:41 - 2014-01-30 00:28 - 00003888 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA 2015-08-29 20:41 - 2014-01-30 00:28 - 00003652 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore 2015-08-26 23:32 - 2015-06-01 23:03 - 00000000 ____D C:\Users\B\AppData\Roaming\vlc 2015-08-24 12:50 - 2014-03-18 17:26 - 00863592 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2015-08-19 13:51 - 2012-07-26 09:59 - 00000000 ____D C:\WINDOWS\CbsTemp 2015-08-17 19:20 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\rescache 2015-08-17 18:10 - 2013-08-22 16:44 - 00386432 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2015-08-13 18:00 - 2014-12-13 16:38 - 00000000 ____D C:\WINDOWS\system32\appraiser 2015-08-13 18:00 - 2014-07-12 18:27 - 00000000 ___SD C:\WINDOWS\system32\CompatTel 2015-08-13 18:00 - 2013-08-22 17:36 - 00000000 ___RD C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2015-08-13 18:00 - 2013-08-22 17:36 - 00000000 ___RD C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools 2015-08-13 18:00 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files\Windows Defender 2015-08-13 18:00 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files (x86)\Windows Defender 2015-08-13 14:16 - 2014-01-30 00:42 - 00000000 ____D C:\ProgramData\Package Cache 2015-08-13 13:25 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\NDF 2015-08-13 11:36 - 2014-01-31 19:48 - 00000000 ____D C:\WINDOWS\system32\MRT 2015-08-13 11:29 - 2014-01-31 19:48 - 132483416 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2015-08-13 01:11 - 2013-08-22 17:36 - 00000000 ___RD C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories 2015-08-13 01:11 - 2013-08-22 17:36 - 00000000 ___RD C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories ==================== Files in the root of some directories ======= 2014-01-30 00:37 - 2014-07-19 13:37 - 0000267 _____ () C:\Users\B\AppData\Roaming\WB.CFG 2014-01-30 00:37 - 2014-01-30 00:37 - 0000005 _____ () C:\Users\B\AppData\Roaming\WBPU-TTL.DAT 2014-03-01 13:03 - 2014-08-26 22:42 - 0001776 _____ () C:\Users\B\AppData\Local\Citavi Picker Internet Explorer Protocol.txt 2014-01-30 14:05 - 2014-01-30 14:06 - 0000624 _____ () C:\ProgramData\NCIDebug.log Some files in TEMP: ==================== C:\Users\B\AppData\Local\Temp\avgnt.exe C:\Users\B\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmppc5xkf.dll C:\Users\B\AppData\Local\Temp\jre-8u45-windows-au.exe C:\Users\B\AppData\Local\Temp\sqlite3.dll ==================== Bamital & volsnap ================= (There is no automatic fix for files that do not pass verification.) C:\WINDOWS\system32\winlogon.exe => File is digitally signed C:\WINDOWS\system32\wininit.exe => File is digitally signed C:\WINDOWS\explorer.exe => File is digitally signed C:\WINDOWS\SysWOW64\explorer.exe => File is digitally signed C:\WINDOWS\system32\svchost.exe => File is digitally signed C:\WINDOWS\SysWOW64\svchost.exe => File is digitally signed C:\WINDOWS\system32\services.exe => File is digitally signed C:\WINDOWS\system32\User32.dll => File is digitally signed C:\WINDOWS\SysWOW64\User32.dll => File is digitally signed C:\WINDOWS\system32\userinit.exe => File is digitally signed C:\WINDOWS\SysWOW64\userinit.exe => File is digitally signed C:\WINDOWS\system32\rpcss.dll => File is digitally signed C:\WINDOWS\system32\dnsapi.dll => File is digitally signed C:\WINDOWS\SysWOW64\dnsapi.dll => File is digitally signed C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed LastRegBack: 2015-09-07 23:31 ==================== End of FRST.txt ============================ --- --- --- Geändert von anather (07.09.2015 um 20:20 Uhr) |
08.09.2015, 18:25 | #7 |
/// the machine /// TB-Ausbilder | Win8, versendet Spam-Emails, Malwarebytes findet vers. PUP+AdWareESET Online Scanner
Downloade Dir bitte SecurityCheck und:
und ein frisches FRST log bitte. Noch Probleme?
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
25.09.2015, 07:44 | #8 |
| Win8, versendet Spam-Emails, Malwarebytes findet vers. PUP+AdWare Eset hat was gefunden, aber die Einstellungen waren so, dass es das nicht entfernen soll? War immerhin was aus der Kategorie Trojaner dabei, wenn auch nicht klar ist, ob das immernoch ausgeführt wird. Code:
ATTFilter ESETSmartInstaller@High as downloader log: all ok # product=EOS # version=8 # OnlineScannerApp.exe=1.0.0.1 # EOSSerial=4de057367647eb46b68a6b2576d79146 # end=init # utc_time=2015-09-24 04:46:10 # local_time=2015-09-24 06:46:10 (+0100, W. Europe Summer Time) # country="Germany" # osver=6.2.9200 NT Update Init Update Download Update Finalize Updated modules version: 25925 # product=EOS # version=8 # OnlineScannerApp.exe=1.0.0.1 # EOSSerial=4de057367647eb46b68a6b2576d79146 # end=updated # utc_time=2015-09-24 04:49:16 # local_time=2015-09-24 06:49:16 (+0100, W. Europe Summer Time) # country="Germany" # osver=6.2.9200 NT # product=EOS # version=8 # OnlineScannerApp.exe=1.0.0.1 # OnlineScanner.ocx=1.0.0.7777 # api_version=3.1.1 # EOSSerial=4de057367647eb46b68a6b2576d79146 # engine=25925 # end=finished # remove_checked=false # archives_checked=true # unwanted_checked=true # unsafe_checked=false # antistealth_checked=true # utc_time=2015-09-24 10:22:33 # local_time=2015-09-25 12:22:33 (+0100, W. Europe Summer Time) # country="Germany" # lang=1031 # osver=6.2.9200 NT # compatibility_mode_1='' # compatibility_mode=5893 16776574 100 94 3651700 51492073 0 0 # scanned=260737 # found=5 # cleaned=0 # scan_time=19997 sh=A5B14941FCD21F0A0F712847036A39ACCFD01166 ft=1 fh=b5688d2eab67b337 vn="Variante von Win32/Adware.Synatix.A Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\Users\B\AppData\Local\DownloadGuide\Offers\vis-pro.exe.vir" sh=91DC006B84C4F51ADCADC1BB498E3376FC40130E ft=1 fh=c3b5952672b90e6f vn="Variante von Win64/Systweak.A evtl. unerwünschte Anwendung" ac=I fn="C:\AdwCleaner\Quarantine\C\WINDOWS\Sysnative\roboot64.exe.vir" sh=E441CAA5F2ACDCB307262B3C093698D8B0BDEEBF ft=1 fh=a7c3ffa22a32a3f2 vn="Variante von Win32/Systweak evtl. unerwünschte Anwendung" ac=I fn="C:\Users\B\Downloads\dffsetup-mfc100u.exe" sh=7707F29A6E57034D16FF0B6DD8CFC758E4D836BA ft=1 fh=571fed2a72d5a3ab vn="NSIS/TrojanDownloader.Adload.AP Trojaner" ac=I fn="C:\Users\B\Downloads\FLVPlayer-Chrome (1).exe" sh=7707F29A6E57034D16FF0B6DD8CFC758E4D836BA ft=1 fh=571fed2a72d5a3ab vn="NSIS/TrojanDownloader.Adload.AP Trojaner" ac=I fn="C:\Users\B\Downloads\FLVPlayer-Chrome.exe" Code:
ATTFilter Results of screen317's Security Check version 1.008 x64 (UAC is enabled) Internet Explorer 11 ``````````````Antivirus/Firewall Check:`````````````` Windows Firewall Enabled! Avira Antivirus Windows Defender Antivirus up to date! `````````Anti-malware/Other Utilities Check:````````` Java 8 Update 45 Java version 32-bit out of Date! Adobe Reader XI Google Chrome (45.0.2454.93) Google Chrome (45.0.2454.99) Google Chrome (wtsapi32.dll..) ````````Process Check: objlist.exe by Laurent```````` Avira Antivir avgnt.exe Avira Antivir avguard.exe `````````````````System Health check````````````````` Total Fragmentation on Drive C: % ````````````````````End of Log`````````````````````` Addition Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version:23-09-2015 Ran by B (2015-09-25 08:38:05) Running from C:\Users\B\Downloads\FRST-OlderVersion Windows 8.1 (X64) (2014-07-17 19:26:01) Boot Mode: Normal ========================================================== ==================== Accounts: ============================= Administrator (S-1-5-21-2739015723-2927197382-1160632269-500 - Administrator - Disabled) => C:\Users\Administrator B (S-1-5-21-2739015723-2927197382-1160632269-1001 - Administrator - Enabled) => C:\Users\B Guest (S-1-5-21-2739015723-2927197382-1160632269-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-2739015723-2927197382-1160632269-1005 - Limited - Enabled) ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AV: Avira Antivirus (Enabled - Up to date) {4D041356-F94D-285F-8768-AAE50FA36859} AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Avira Antivirus (Enabled - Up to date) {F665F2B2-DF77-27D1-BDD8-9197742422E4} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installed Programs ====================== (Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) Adobe Reader XI (11.0.12) - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AB0000000001}) (Version: 11.0.12 - Adobe Systems Incorporated) Avira (HKLM-x32\...\{9480d4af-12b9-4e56-8034-4031ef6ab39d}) (Version: 1.1.25.25607 - Avira Operations GmbH & Co. KG) Avira Antivirus (HKLM-x32\...\Avira Antivirus) (Version: 15.0.12.420 - Avira Operations GmbH & Co. KG) Cisco AnyConnect Secure Mobility Client (HKLM-x32\...\Cisco AnyConnect Secure Mobility Client) (Version: 3.1.07021 - Cisco Systems, Inc.) Cisco AnyConnect Secure Mobility Client (x32 Version: 3.1.07021 - Cisco Systems, Inc.) Hidden Citavi 4 (HKLM-x32\...\{CC0A85B2-734A-45B3-B678-05F6A6499AC7}) (Version: 4.2.0.11 - Swiss Academic Software) Dll-Files Fixer (HKLM-x32\...\Dll-Files Fixer_is1) (Version: 3.1.81 - Dll-Files.com) Download Protect (HKU\S-1-5-21-2739015723-2927197382-1160632269-1001\...\{132401a7-2006-4342-b43c-ccf5f02c2b01}) (Version: - Download Protect) Download Protect (HKU\S-1-5-21-2739015723-2927197382-1160632269-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\{132401a7-2006-4342-b43c-ccf5f02c2b01}) (Version: - Download Protect) Download Protect (HKU\S-1-5-21-2739015723-2927197382-1160632269-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-1\...\{132401a7-2006-4342-b43c-ccf5f02c2b01}) (Version: - Download Protect) Download Protect (HKU\S-1-5-21-2739015723-2927197382-1160632269-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-2\...\{132401a7-2006-4342-b43c-ccf5f02c2b01}) (Version: - Download Protect) Download Protect (HKU\S-1-5-21-2739015723-2927197382-1160632269-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-3\...\{132401a7-2006-4342-b43c-ccf5f02c2b01}) (Version: - Download Protect) Dropbox (HKU\S-1-5-21-2739015723-2927197382-1160632269-1001\...\Dropbox) (Version: 3.8.8 - Dropbox, Inc.) Dropbox (HKU\S-1-5-21-2739015723-2927197382-1160632269-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Dropbox) (Version: 3.8.8 - Dropbox, Inc.) Dropbox (HKU\S-1-5-21-2739015723-2927197382-1160632269-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-1\...\Dropbox) (Version: 3.8.8 - Dropbox, Inc.) Dropbox (HKU\S-1-5-21-2739015723-2927197382-1160632269-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-2\...\Dropbox) (Version: 3.8.8 - Dropbox, Inc.) Dropbox (HKU\S-1-5-21-2739015723-2927197382-1160632269-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-3\...\Dropbox) (Version: 3.8.8 - Dropbox, Inc.) ElsterFormular (HKLM-x32\...\ElsterFormular) (Version: 16.2.24.20150630 - Landesfinanzdirektion Thüringen) FreeMind (HKLM-x32\...\B991B020-2968-11D8-AF23-444553540000_is1) (Version: 1.0.0 - ) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 45.0.2454.99 - Google Inc.) Google Update Helper (x32 Version: 1.3.28.15 - Google Inc.) Hidden IBM SPSS Statistics 21 (HKLM\...\{1E26B9C2-ED08-4EEA-83C8-A786502B41E5}) (Version: 21.0.0.0 - IBM Corp) IBM SPSS Statistics 22 (HKLM\...\{104875A1-D083-4A34-BC4F-3F635B7F8EF7}) (Version: 22.0.0.0 - IBM Corp) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.3379 - Intel Corporation) Intel® PROSet/Wireless Software (HKLM-x32\...\{c9967fbd-e3c3-4ed0-992a-5b33260f2944}) (Version: 16.1.5 - Intel Corporation) Java 8 Update 45 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218045F0}) (Version: 8.0.450 - Oracle Corporation) LibreOffice 4.2.0.4 (HKLM-x32\...\{E043231F-34F2-4AF5-9400-0961CC15AAAE}) (Version: 4.2.0.4 - The Document Foundation) Malwarebytes Anti-Malware Version 2.1.8.1057 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.1.8.1057 - Malwarebytes Corporation) Microsoft PowerPoint Viewer (HKLM-x32\...\{95140000-00AF-0407-0000-0000000FF1CE}) (Version: 14.0.4763.1000 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{e6e75766-da0f-4ba2-9788-6ea593ce702d}) (Version: 12.0.30501.0 - Microsoft Corporation) NICI U.S./Worldwide 2.77.1.0 (x32) (HKLM-x32\...\{6FCC48CA-FE49-44D6-A930-7E331E62937F}) (Version: 2.77.1.0 - Novell, Inc.) NICI U.S./Worldwide 2.77.1.0 (x64) (HKLM\...\{123B3157-26AF-43F5-AD46-AB200AC56292}) (Version: 2.77.1.0 - Novell, Inc.) NMAS Challenge Response Method (HKLM\...\{54031C8D-F80D-47BB-B3CA-5E9BD7750C27}) (Version: 2.8.3.3 - Novell, Inc.) NMAS Client (HKLM\...\{22859902-78CE-40B0-9429-6FE7A00BBF85}) (Version: 3.5.1.1 - Novell, Inc.) Novell Client for Windows (HKLM\...\Novell Client for Windows) (Version: 2 SP3 (IR4) - Novell, Inc.) Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 8.2.612.2012 - Realtek) Revo Uninstaller 1.95 (HKLM-x32\...\Revo Uninstaller) (Version: 1.95 - VS Revo Group) S Agent (Version: 1.0.7 - Samsung Electronics CO., LTD.) Hidden Skype Click to Call (HKLM-x32\...\{6D1221A9-17BF-4EC0-81F2-27D30EC30701}) (Version: 7.4.0.9058 - Microsoft Corporation) Skype™ 7.8 (HKLM-x32\...\{6A0549A9-1B96-498C-ACBC-3943001FEB19}) (Version: 7.8.102 - Skype Technologies S.A.) SW Update (HKLM-x32\...\{3B4E6027-AED5-4169-B030-B450E5A0F396}) (Version: 2.0.14 - Samsung Electronics CO., LTD.) VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.1 - VideoLAN) ==================== Custom CLSID (Whitelisted): ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) CustomCLSID: HKU\S-1-5-21-2739015723-2927197382-1160632269-1001_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\B\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2739015723-2927197382-1160632269-1001_Classes\CLSID\{ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C}\InprocServer32 -> C:\Users\B\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2739015723-2927197382-1160632269-1001_Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\B\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2739015723-2927197382-1160632269-1001_Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\B\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2739015723-2927197382-1160632269-1001_Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\B\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2739015723-2927197382-1160632269-1001_Classes\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\B\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2739015723-2927197382-1160632269-1001_Classes\CLSID\{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\B\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2739015723-2927197382-1160632269-1001_Classes\CLSID\{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\B\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2739015723-2927197382-1160632269-1001_Classes\CLSID\{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\B\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2739015723-2927197382-1160632269-1001_Classes\CLSID\{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\B\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll (Dropbox, Inc.) CustomCLSID: HKU\S-1-5-21-2739015723-2927197382-1160632269-1001_Classes\CLSID\{FBC9D74C-AF55-4309-9FB2-C426E071637F}\InprocServer32 -> C:\Users\B\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll (Dropbox, Inc.) ==================== Restore Points ========================= 07-09-2015 20:07:05 Revo Uninstaller's restore point - FoxTab 09-09-2015 08:28:03 Windows Modules Installer 18-09-2015 08:47:43 Scheduled Checkpoint 24-09-2015 12:25:41 Windows Update ==================== Hosts content: =============================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2013-08-22 15:25 - 2013-08-22 15:25 - 00000824 ____A C:\WINDOWS\system32\Drivers\etc\hosts ==================== Scheduled Tasks (Whitelisted) ============= (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) Task: {0424C462-7CBA-4451-9CDB-69671A711AC4} - System32\Tasks\DLL-Files FixerASKUSER => C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe Task: {06EE4216-98F5-4E0C-ABD6-817CF44EBF9C} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-07-07] (Adobe Systems Incorporated) Task: {18EC841E-B22E-4AAE-A613-60733E354B35} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-29] (Google Inc.) Task: {2E8C3258-CD64-4AA6-9578-AD9484FBECA7} - System32\Tasks\DropboxUpdateTaskUserS-1-5-21-2739015723-2927197382-1160632269-1001Core => C:\Users\B\AppData\Local\Dropbox\Update\DropboxUpdate.exe [2015-06-20] (Dropbox, Inc.) Task: {69739787-A141-45AD-BB92-BCE314D17EBE} - System32\Tasks\SWUpdateAgent => C:\Program Files (x86)\Samsung\SW Update\SWMAgent.exe [2012-08-22] (Samsung Electronics CO., LTD.) Task: {7AC893F1-843B-4892-9113-997600B7C3B0} - System32\Tasks\SAgent => C:\Program Files\Samsung\S Agent\CommonAgent.exe [2012-08-17] (Samsung Electronics CO., LTD.) Task: {8A0DD142-60C0-4F1A-833C-B502D6A98CF6} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2015-08-26] (Microsoft Corporation) Task: {DDFD089E-9C8B-467F-977A-DFC1E1CB56CA} - System32\Tasks\Microsoft\Windows\Application Experience\ProgramDataUpdater => Rundll32.exe invagent.dll,RunUpdate -noappraiser Task: {E8552A9D-211F-401D-B3B4-B6F88379324D} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-29] (Google Inc.) Task: {FED916B1-B6FD-4C58-A593-51405E2D7128} - System32\Tasks\DropboxUpdateTaskUserS-1-5-21-2739015723-2927197382-1160632269-1001UA => C:\Users\B\AppData\Local\Dropbox\Update\DropboxUpdate.exe [2015-06-20] (Dropbox, Inc.) (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) Task: C:\WINDOWS\Tasks\DLL-Files FixerASKUSER.job => C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe Task: C:\WINDOWS\Tasks\DropboxUpdateTaskUserS-1-5-21-2739015723-2927197382-1160632269-1001Core.job => C:\Users\B\AppData\Local\Dropbox\Update\DropboxUpdate.exe Task: C:\WINDOWS\Tasks\DropboxUpdateTaskUserS-1-5-21-2739015723-2927197382-1160632269-1001UA.job => C:\Users\B\AppData\Local\Dropbox\Update\DropboxUpdate.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Loaded Modules (Whitelisted) ============== 2013-09-29 16:26 - 2013-09-29 16:26 - 00049336 _____ () C:\WINDOWS\system32\ncv1_0.DLL 2013-09-30 03:19 - 2013-09-30 03:19 - 00015872 _____ () C:\WINDOWS\SYSTEM32\nls\ENGLISH\NCLangIDR.DLL 2013-12-20 20:02 - 2013-12-20 20:02 - 00094208 _____ () C:\Windows\System32\IccLibDll_x64.dll 2013-09-29 16:26 - 2013-09-29 16:26 - 00040632 _____ () C:\Program Files\Novell\Client\nwtray.exe 2013-09-29 16:26 - 2013-09-29 16:26 - 01024696 _____ () C:\WINDOWS\SYSTEM32\NCNetProvider.DLL 2013-09-29 16:26 - 2013-09-29 16:26 - 00109752 _____ () C:\WINDOWS\SYSTEM32\NCLangID.dll 2013-09-29 16:26 - 2013-09-29 16:26 - 00175288 _____ () C:\WINDOWS\SYSTEM32\MAPBASE.dll 2013-09-29 16:26 - 2013-09-29 16:26 - 00266936 _____ () C:\WINDOWS\SYSTEM32\NWSHLXNT.dll 2013-09-30 03:24 - 2013-09-30 03:24 - 00086016 _____ () C:\WINDOWS\SYSTEM32\nls\ENGLISH\MAPBASER.DLL 2013-09-30 03:24 - 2013-09-30 03:24 - 00101376 _____ () C:\WINDOWS\SYSTEM32\nls\ENGLISH\NWSHLXNTR.DLL 2013-09-30 03:25 - 2013-09-30 03:25 - 00488448 _____ () C:\WINDOWS\SYSTEM32\nls\ENGLISH\NCNetProviderR.DLL 2015-09-25 08:19 - 2015-09-25 08:19 - 00852704 _____ () C:\Users\B\Downloads\SecurityCheck.exe 2015-02-19 23:37 - 2015-02-19 23:37 - 00063376 _____ () C:\Program Files (x86)\Cisco\Cisco AnyConnect Secure Mobility Client\zlib1.dll 2014-04-11 23:39 - 2014-04-11 23:39 - 00012288 _____ () C:\Program Files (x86)\Google\Chrome\Application\WTSAPI32.dll 2015-09-23 22:55 - 2015-09-19 00:13 - 01501512 _____ () C:\Program Files (x86)\Google\Chrome\Application\45.0.2454.99\libglesv2.dll 2015-09-23 22:55 - 2015-09-19 00:13 - 00081224 _____ () C:\Program Files (x86)\Google\Chrome\Application\45.0.2454.99\libegl.dll 2015-09-25 07:10 - 2015-09-25 07:10 - 00071168 _____ () c:\users\B\appdata\local\temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmp5rtnps.dll 2015-03-04 23:45 - 2015-08-05 07:26 - 00012800 _____ () C:\Users\B\AppData\Roaming\Dropbox\bin\QtQuick.2\qtquick2plugin.dll 2015-03-04 23:45 - 2015-08-05 07:26 - 00779776 _____ () C:\Users\B\AppData\Roaming\Dropbox\bin\QtQuick\Controls\qtquickcontrolsplugin.dll 2015-08-05 20:12 - 2015-08-05 07:26 - 00056320 _____ () C:\Users\B\AppData\Roaming\Dropbox\bin\QtQuick\Layouts\qquicklayoutsplugin.dll 2015-03-04 23:45 - 2015-08-05 07:26 - 00012288 _____ () C:\Users\B\AppData\Roaming\Dropbox\bin\QtQuick\Window.2\windowplugin.dll 2015-09-23 22:55 - 2015-09-19 00:13 - 16487752 _____ () C:\Program Files (x86)\Google\Chrome\Application\45.0.2454.99\PepperFlash\pepflashplayer.dll 2015-09-25 08:36 - 2015-09-25 08:36 - 00011264 _____ () C:\Users\B\AppData\Local\Temp\nsj1001.tmp\System.dll 2015-09-25 08:36 - 2015-09-25 08:36 - 00008704 _____ () C:\Users\B\AppData\Local\Temp\nsj1001.tmp\newadvsplash.dll 2015-09-25 08:36 - 2015-09-25 08:36 - 00029696 _____ () C:\Users\B\AppData\Local\Temp\nsj1001.tmp\registry.dll 2015-06-08 21:06 - 2015-06-08 21:06 - 00014336 _____ () C:\Users\B\Downloads\Notepad++Portable\App\Notepad++\plugins\NppExport.dll 2015-05-15 16:24 - 2015-05-15 16:24 - 02873856 _____ () C:\Users\B\Downloads\Notepad++Portable\App\Notepad++\plugins\NppFTP.dll ==================== Alternate Data Streams (Whitelisted) ========= (If an entry is included in the fixlist, only the ADS will be removed.) ==================== Safe Mode (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) ==================== EXE Association (Whitelisted) =============== (If an entry is included in the fixlist, the registry item will be restored to default or removed.) ==================== Internet Explorer trusted/restricted =============== (If an entry is included in the fixlist, it will be removed from the registry.) ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) DNS Servers: 192.168.0.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Windows Firewall is enabled. ==================== MSCONFIG/TASK MANAGER disabled items == (Currently there is no automatic fix for this section.) ==================== FirewallRules (Whitelisted) =============== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139 FirewallRules: [{7CB5A598-F442-469A-835E-EB5A4C650EAF}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{07C968C8-1CF5-47C5-8B47-35B5DBFD8628}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{F87E6756-C2A6-4897-A717-7425022E84DC}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{9B5347D0-9146-4BBC-A603-1069987EFFFC}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{35BF60E9-C781-43BE-8EA3-5F0D74B4A777}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{8A028AF5-4FB2-47A0-BC9E-75FD7166670E}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{28DD300B-1F4D-4D61-B30B-54DC773DDDCF}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{E9AE7028-208F-4FF8-B529-811BC9C2124B}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{AF2D1F54-D76A-49B6-925E-44C6077D2D7E}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{13225D9A-005F-401F-BBAE-9FDD2DE37651}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{0D434BAF-26D7-4685-9D89-FD2C7BDD8CF6}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{3B89B090-A91F-469A-B68B-BFCFE05EEED8}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{EF3C3358-B7A8-4F8D-AA18-BA6152ECBF2B}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{49BB0102-9AF0-4C8C-8A49-166BE55B0B63}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{1A7E5ED1-D903-453E-BD7B-EC8A825AE984}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{87290EAC-6165-4064-A8A2-CD601C6E55AD}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{326B29B0-05F0-4789-A3C5-161293EF5B73}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{AF56E68E-701F-415E-B23A-92A194AF969A}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{88AFAC94-E96B-4A9F-83D8-27528BA3A8B7}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{7B764947-EFCD-4B28-BA2B-E69D6E57CF12}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{9A9A8EFE-E116-4D3F-ACCA-759E52CCB0CD}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{92C7F871-6863-4278-B7FE-87975B9F7FA4}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{F21F2BAD-6E0C-4C5C-89D1-3DC275AC7B33}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{3CDD7CCC-66F6-4E4D-9656-752824F82A23}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{0A8F0A96-2565-4DA8-AD75-8B977B1675E7}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{6B6CF183-F3B9-41DD-895E-B28496837946}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [UDP Query User{FA54ADCB-C307-463D-9F22-A26ED2B1A539}C:\program files\ibm\spss\statistics\21\jre\bin\javaw.exe] => (Allow) C:\program files\ibm\spss\statistics\21\jre\bin\javaw.exe FirewallRules: [TCP Query User{90C84AFA-04A0-4B4F-8479-F56C3C1BB8C2}C:\program files\ibm\spss\statistics\21\jre\bin\javaw.exe] => (Allow) C:\program files\ibm\spss\statistics\21\jre\bin\javaw.exe FirewallRules: [{83F4761C-01EF-43B8-8FF6-E9F23B7B695D}] => (Allow) C:\Program Files\IBM\SPSS\Statistics\21\stats.com FirewallRules: [{ABD9B8E2-CD7E-47AA-827D-9C9D1A2BEC1F}] => (Allow) C:\Program Files\IBM\SPSS\Statistics\21\WinWrapIDE.exe FirewallRules: [{F84570BC-C695-4E91-B192-6809368D8249}] => (Allow) C:\Program Files\IBM\SPSS\Statistics\21\stats.exe FirewallRules: [{35496E8C-08D5-4119-A107-36462F994A0F}] => (Allow) C:\Program Files\IBM\SPSS\Statistics\21\stats.com FirewallRules: [{C5C8FF49-90BC-4230-B2D7-BC29C3A711BE}] => (Allow) C:\Program Files\IBM\SPSS\Statistics\21\WinWrapIDE.exe FirewallRules: [{1AF34966-5AC2-4131-B6E2-F153DC696D35}] => (Allow) C:\Program Files\IBM\SPSS\Statistics\21\stats.exe FirewallRules: [{688636DE-F112-40DF-9A5C-356A662547C7}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{3312F882-22E7-4195-87E4-1A176FD96DC7}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{984BCBAE-F08B-49EF-B354-F3E305AAF56C}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{89A9213D-5EAE-4D51-8983-AF50F09869D1}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{15A33ECA-4742-4172-BA5B-78EACAF9BF7B}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{7AA70C63-746A-4957-84A7-2F59BAE06806}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{7C1EA48A-354D-412A-84A6-686F19BD87C5}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{C1662853-AC56-454C-8B96-1118422C0588}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{3A62C829-31E6-42BD-AD18-9A7FB359335D}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{9887D463-9B79-4EB4-B391-931E321CD164}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{27648991-777F-484F-B53B-71A1B5EBDDBE}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{31C926AC-E36B-4C61-98E2-D52B6E5BEFB2}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{C469B974-8230-4AB0-B77D-1495AB1F2BB4}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{959B28B8-0C19-41E8-9798-7F39227B1F8C}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{58063523-4A51-489C-9E92-2978FBDAF05C}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{6F233303-F389-49A1-94AD-661F55E5642E}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{BBABE023-1242-4D00-A654-9E7A77DFAFAC}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{90A41D24-27FF-497F-9AA3-03A8AA548E97}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{C9A1F49A-0CD1-4939-8260-0A6ECF0CB23C}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{225BA24D-0296-4FEB-986D-503806C1415F}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{12C6E785-5FBB-40D3-9EA0-A56272BBC0E6}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{A42CD92A-AFA6-4A35-9D03-13827024A9E3}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{BC38F9F9-8555-4E9E-BBC4-0E7C95BC35DF}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{93B1068B-993A-4768-9958-E749743AA03F}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [UDP Query User{42CC2F52-CC0A-4A36-8509-14852A4F4D5B}C:\program files (x86)\libreoffice 4\program\soffice.bin] => (Allow) C:\program files (x86)\libreoffice 4\program\soffice.bin FirewallRules: [TCP Query User{98522A6E-5C02-4E6F-AAB4-AE7B7CE9B4EC}C:\program files (x86)\libreoffice 4\program\soffice.bin] => (Allow) C:\program files (x86)\libreoffice 4\program\soffice.bin FirewallRules: [{7F459D3E-99AA-40A2-8181-DDC354541FD3}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{1C7C006B-3905-48C1-B454-EAC8EB177D80}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{5F1CBF86-AE8A-4739-B687-3FB2FDD61B87}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{51F1CF77-B8A7-4B4F-840B-A6276B43CDC8}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{B1280D97-C35D-463F-A96E-D6B88DC18AAD}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{98A82EEE-5F6D-43B1-A96A-D9D74C81B75E}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{C49C5450-5889-4860-BAC7-D22333405D32}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{AEB0D2A5-9E0B-4713-A1FD-5E41686842A6}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{1AE42501-AA9A-4C05-8574-B147BB999DBE}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{7AB5F7D5-23AE-43B2-B710-E7BE9DC39EBC}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{DB99A8AA-AAA4-4D58-94A6-0C74762A96DE}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{A1A43A8A-F086-476A-9608-678D7ADDE52B}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{582A5A96-CDC3-4534-AE06-7926E743E74D}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{B0DC2055-A2B5-4F85-90E2-158E3AB1AD97}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{B3FB0593-3762-4766-BEDC-36505F4809B9}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{718924AA-C780-4D2B-A459-F006A5C5A59E}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{A98568B9-065A-4C8E-97DB-42982A43B626}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{18D1F33B-87D6-4F26-AC7E-4B89AB0E658B}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{8AAB5FD2-692C-4C67-9E53-042601440211}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{D1C5D30C-829F-4091-B028-A76459EA7742}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{68A0F742-67C5-4370-8902-5D2144A899E5}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{2A28F57B-D4BB-42B7-B874-4004152D27DB}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{4424062E-CFC7-4F8B-913E-30EA6E43287D}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{DE52E162-F97B-4B2F-A488-39DED50CD8B1}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{862C670F-3F32-4478-A269-F3A4D835C70E}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{D2CEDA26-988C-4D66-8CC4-635D8EDFAD14}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{B8DAB4A5-C56B-4260-B46E-9FFA3F7C9086}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{4C0C5FD5-F623-4F31-B77C-87CA89828F05}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{21A8B94C-7179-4C08-A475-237B73F91152}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{66682E10-B58A-4FC8-A291-9E676142EE75}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{5262701E-6C8B-403B-85A1-8D2BCCF000DF}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{A4EA3334-BFBA-4C82-9D1C-32BBD945DBE7}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{2E6DB4C2-08C7-40FD-9165-AF90805C4B45}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{A90E330D-F3D4-47F9-BA6C-1C222DED6F19}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{3AFBB46A-9FA5-4613-9839-6AFAEB01515A}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{ECB20170-6C2E-4D93-B5A0-D752A1096F84}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{D3457018-5199-45E4-AAB9-F7B6A27EEB52}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{79B1B0E9-AF93-4088-9C8A-0654B03C9260}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{00ABD13B-2245-4A5B-9242-B52DD644ED02}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{A8A771AD-E1F5-4C1C-8C5E-EDE8C354BE0F}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{1EC2FF04-4FC3-4625-B12D-062FAD951A47}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{CCB0FA5D-0A93-4827-8CB2-8E5CABF07C06}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{69D16E6D-2B77-4408-880A-1BBE4884C377}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{1B76F295-FE20-4D24-BF61-880D34A60CB8}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{27FBF0BB-7448-464E-A08B-0E11F614D6C3}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{0F5E64CD-77F5-4DE9-B2D4-73C92530AFB6}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{3FE3ACAA-E441-4149-B10F-535B9A61A9A1}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{4FB34E49-AF79-4337-9AE7-68D8F12B8B3A}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{DB9D7739-5039-411F-B9A3-0CC586B115A6}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{4C6AC77B-4791-48D8-9EB9-C5D10610485F}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{8D886B58-3E7C-46E6-869B-159EB2909E2F}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{6D1DE018-EE61-4769-8585-EBC542EF4A32}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{01D128A2-F8FA-43B8-AA08-2F6277C31545}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{6719ED6D-5BF8-484E-B558-08702CE19A14}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{5FAF9CE3-241B-4308-AB0B-4D5A94BCC226}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{B4CC27ED-09DB-4302-93F3-371BE1DA2CAB}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{DF6C9514-1CAB-42A1-945B-5D9211557878}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{7E662EB2-8071-44D7-9673-A65F201797C3}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{AEB1A5F8-3E6E-4BE0-9FA1-384B1404C4B8}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{E820C107-689F-43B3-B886-3921E0D3E64C}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{2338EE09-6347-4BF8-BBF2-2D408FF4C565}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{AFD6DF8C-953A-42C5-A1B6-5B2FC5DD4646}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{8C3F7346-5751-47D2-AB11-4E1BE769E866}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{39548725-DCE0-469A-A074-783FBDB2C16F}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{215F994A-F15E-4710-9AAF-3C8D1E7C4060}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{B9303964-B5E1-4C33-8C3A-8763F05BE711}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{1980E457-5496-48E4-B09C-C6E33D37CC42}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{FD91603B-05D5-496E-A406-7220767993A2}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{A31DC826-1893-4A0F-A9E6-C038B72FAF46}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{A9C78E61-BC13-4A6E-AA3F-DC9E22B6832A}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{FAC6C67A-18D9-4B8B-8AF4-FFE0A3E4BE96}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{124B9083-7019-43CB-B89F-0FB182A19221}] => (Allow) C:\Users\B\AppData\Roaming\Dropbox\bin\Dropbox.exe FirewallRules: [{31F8A913-3B14-49AB-A919-CCDB9A57A72E}] => (Allow) C:\Users\B\AppData\Roaming\Dropbox\bin\Dropbox.exe FirewallRules: [{04289F87-92B7-4822-B294-37AA6004F9E6}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{12ED0E05-B1D1-4DC0-8AF1-43B33DCB0448}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{E5DA7FC1-6087-4D10-A8F1-1E39D9FBAE6A}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{E7519609-F2DD-4533-BF45-EE3938469E40}] => (Allow) C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe FirewallRules: [{000E069E-39D9-4BD2-86B7-231D4A8FF8D7}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{05DFEB19-7C7A-41B1-9B20-D435DB928195}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{B203E462-F9D7-47C7-AE5A-B0C2458DE472}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{85C8A50F-609C-4C09-A2C9-49EDE591CACA}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{830C52D1-007D-4501-B708-1B8CF07ECD01}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{E1C5EFDA-3EB0-451D-8191-B52A9E217C1A}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{2B7C0A40-3E6B-4DDE-B99C-2AAC9D537B95}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{554B26E0-20C4-411E-809F-FFFE9BE4496C}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{7C27B922-E870-4502-9A02-473FD061FAFB}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{55072D10-BBC2-41FB-8A83-D129D9AC530C}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{F24A3B84-DD76-4777-9A53-12B69EE48B3F}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{5166C2DA-84FF-4E72-A8B5-8F9ACBAF59DA}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{1F4D07DE-C5A5-498E-9B80-454649488E39}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{8764DB3E-B214-480C-858E-26B9830231DC}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{9CD88EA4-8D9E-492A-8195-624FF08B8370}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{DFF2AFA9-65CC-4E28-9DBD-B848122EFDD1}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{2B360580-C313-44AD-9677-BCB8B42FD2B8}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{16BA4D95-D99C-4409-8376-17E8D9DE678A}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{85802FD6-7AFD-40ED-AA9A-9960D7ECDAA4}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{CB2C189B-6690-4CE1-8670-6D8EC33ED877}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{D47D023F-75D9-478B-90B6-73FEE97D1897}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{0321CE7B-EF51-4205-8E94-2AC155B1DD02}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{412E1FF1-5090-48C9-B11E-40F8C9F28308}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{88B5A6AC-BA35-4838-9E45-ED6C7C1D19F9}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{06EAF931-6629-4A3F-9A08-8B35F46B9DEA}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{2AB4A0DE-134A-4867-8B45-68F0E8E922BB}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{5E7E21E3-3156-4BF8-87A6-AD774F10CE20}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{6697B1AD-483F-4422-B4E0-5CCD29D38CC8}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{F2895F5C-10E7-452D-90EB-D92FE75BB604}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{DC4F67A5-E30F-4898-AF3C-9AFD10A5DCEF}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{0ED63B5D-630B-4DD8-86B6-FC8CB04DF0C3}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{B8161D5C-A97D-4767-AAC3-012197178A1F}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{E98DDB16-AD7F-4220-9168-DCE9B1AFC10B}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{71FF7BF0-CFDE-4586-B645-3301D7FF4982}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{B4009693-B6A8-4392-B74D-8ED5BA4C0C3E}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{A9B6DAC5-2E20-45FB-A910-3BFE9101F34B}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{A91DDC36-1D61-43D0-902B-ABD66178D7D6}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{B6AC9FE5-BE8F-4662-BA97-9FABA1FC82FF}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{135658B2-F7E0-425A-AE7E-2B15462E21E2}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{5F168725-2E3E-4179-9144-A75807386944}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{32103D01-FC31-4883-AC5A-0B6F7A03004F}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{7137E1B4-AA1F-4C18-A417-5611357F443F}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{47241F8B-776A-4990-83A0-3ADA33AE4445}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{5D8392F9-8D18-4483-8477-544882571A8F}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{457CC3DB-BAC8-483A-87BE-552870B04243}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{4D620C1F-0F4F-4615-A85C-67F14665774B}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{7D6E6F84-C5BD-4BAC-A051-6778C1E50C04}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{03844704-9641-4830-A4CA-6C785E981B20}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{4411A81F-DC62-444C-BE07-96E456E58A9F}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{BB92E547-6791-4157-A41E-CA9E48C67E89}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{99F1A3E8-2DEB-47F4-ADC2-413C6BB10285}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{23910B44-A155-4231-BBD2-DEBE3682E173}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{A1CF42F2-686D-4298-85B2-21B850B12A06}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [TCP Query User{DA8BDF48-13AA-42D5-BDDF-F058F684740C}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe FirewallRules: [UDP Query User{F0B558A2-5595-4727-85B8-C11932213B24}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe FirewallRules: [{E8967C6F-D6FF-4586-B2AC-A2DAFD62E9D5}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{D36C0544-2156-4BA2-AECC-876B8C292C63}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{E37C0A50-EA88-4E50-874B-093DE9FEFDD6}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{F9BD5E92-9947-4E0D-A433-54492C9F1C2B}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{470B747D-E0DD-46EA-B249-EDB4D9B7E6CA}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{B3B5184F-B9BC-48A2-9CCA-512CD5AB2B6C}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{D5F095A8-F28B-4248-B1D8-7B120B8D1ACE}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{FD366C20-0410-4C42-9C14-0B64C99101D7}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{1A75F1AD-B817-4E7F-83BE-60B80D54E8AF}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{34D70AC9-8DB2-4106-8659-3CD112DD02E9}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{EB731359-EDFA-438B-B92C-D0C11C5E7DFB}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{EF34ADB2-5918-4818-87E4-0A0253B0C2B6}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{BA06B8A1-E61A-4794-A133-FD3D263F9412}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{80B05425-8F79-4562-9FE7-42EA919B4DC6}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{5E0C3CFD-FD98-4E9F-8AAA-93563BCE2487}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{78B08FE3-CDF2-4740-83C6-E322FCF10652}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{4D3F715D-0C35-4009-9B5E-D6A15AC7C6C1}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{0B90CB6D-7FAE-47E8-9F50-E944A6BB5049}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{EF9E08E7-E203-4CC7-8E9A-929A9A278F62}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{564548C1-4CFD-4361-8C18-82F72663BADB}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{8FCD2025-75EF-4ED8-841A-69E60C1D11F8}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [TCP Query User{05D7A118-8FAF-45B7-86D8-171CCB923272}C:\users\B\appdata\roaming\dropbox\bin\dropbox.exe] => (Allow) C:\users\B\appdata\roaming\dropbox\bin\dropbox.exe FirewallRules: [UDP Query User{FDE02174-1CFF-4DD7-BCEF-8A8BB4F4FA68}C:\users\B\appdata\roaming\dropbox\bin\dropbox.exe] => (Allow) C:\users\B\appdata\roaming\dropbox\bin\dropbox.exe FirewallRules: [{0DF75C0B-EFCD-4C1F-9921-3FDD5D07EC12}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{AF86A092-3A12-4B8B-8719-6B3469E2E492}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{074C2288-F63F-46E7-AAC7-F25D49183569}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{1B73C3B8-3E90-41F1-BCEE-933DB232CC9A}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{6D8A786B-4636-40B0-A546-3B0F27D2FE32}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{345CF5E8-853C-4E0D-8711-0438D013E68F}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{9B4F09B5-6C67-4DF7-968C-473BFE1F9A04}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{8C70C46A-4295-4312-82A7-764FB79F5974}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{421D1CBA-013C-4453-950F-508A77685067}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{BAF3EEBF-18F5-44C3-9192-70C05B1D1A2D}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{ADB7CD22-737E-446C-B353-C632F1267464}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{9F5B72BF-4CBB-4C6B-BB95-266A94B1E0E8}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{0AD87AD7-60E1-4DF0-9496-489B868957AF}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{23952078-6E21-465E-9F18-CB213A9F72EA}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{0687731A-7598-49F8-9C52-9AB83846A89A}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{C8816C70-2A44-4E6B-8703-3B593D6DE352}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{B8CD5CF0-9AD7-4F6E-B0F0-C350B005157D}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{77C21546-BC9F-4B80-B3EB-826EAA4A7F86}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{6C27A70F-6E2A-45F0-B458-C4547F189A34}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{3A287ED0-D332-46C9-BEA2-32D9C51A75F6}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{5E18678B-1235-4167-8970-ECE2D1767953}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{1D9E1E72-6AF7-4445-8A1C-FE3A1706B491}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{652C7557-0843-479F-9EB7-5E23BB8A804E}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{A2E715E0-2870-4A0D-B3F7-D83F6D10FEC6}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{DC007881-C2B1-4631-9FDB-044D019BEE3F}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{8CF2964A-4C63-4971-97E9-701628C3EB52}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{9F01C6FF-5BB0-4CF7-ADD6-142C0213EB52}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{6900C594-A0DE-4805-BB2D-B8BB4E4DC5E7}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{AB6E926D-0299-431E-846D-5EDD7E7AD72E}] => (Allow) C:\Program Files\IBM\SPSS\Statistics\22\WinWrapIDE.exe FirewallRules: [{50AB286E-6406-4121-A854-17194B950631}] => (Allow) C:\Program Files\IBM\SPSS\Statistics\22\stats.exe FirewallRules: [{7663CDFD-A43E-465D-9916-9232571714FA}] => (Allow) C:\Program Files\IBM\SPSS\Statistics\22\WinWrapIDE.exe FirewallRules: [{05B3ECAC-D826-4B86-9927-FC82135C9768}] => (Allow) C:\Program Files\IBM\SPSS\Statistics\22\stats.exe FirewallRules: [{41A3BE64-BF48-4016-92A8-AB9784408C33}] => (Allow) C:\Program Files\IBM\SPSS\Statistics\22\stats.com FirewallRules: [{7B9E72C4-A925-47ED-9A18-E6BEF9BE8343}] => (Allow) C:\Program Files\IBM\SPSS\Statistics\22\stats.com FirewallRules: [{43A25CBA-2B22-4B21-8A21-7E40FE9C77FA}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [TCP Query User{1F842FE6-03B6-43B7-A22E-4EC52A3EDFDA}C:\program files\ibm\spss\statistics\22\jre\bin\javaw.exe] => (Allow) C:\program files\ibm\spss\statistics\22\jre\bin\javaw.exe FirewallRules: [UDP Query User{972652BB-89ED-433F-9D47-C3DE634A3CCD}C:\program files\ibm\spss\statistics\22\jre\bin\javaw.exe] => (Allow) C:\program files\ibm\spss\statistics\22\jre\bin\javaw.exe FirewallRules: [{D72CCF13-F921-43FE-8DCA-B8565523B740}] => (Block) C:\program files\ibm\spss\statistics\22\jre\bin\javaw.exe FirewallRules: [{2A371412-FDC6-4DED-95FB-33B86686E3B5}] => (Block) C:\program files\ibm\spss\statistics\22\jre\bin\javaw.exe FirewallRules: [TCP Query User{91F602D8-9E0E-42EF-AC72-BFD4F1B6014C}C:\program files (x86)\libreoffice 4\program\soffice.bin] => (Allow) C:\program files (x86)\libreoffice 4\program\soffice.bin FirewallRules: [UDP Query User{BE406010-BA7C-4E0B-8229-056813646A90}C:\program files (x86)\libreoffice 4\program\soffice.bin] => (Allow) C:\program files (x86)\libreoffice 4\program\soffice.bin FirewallRules: [{20505575-E12D-41E4-8857-A617558B4B21}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{52991942-F3DE-418F-ADA8-069A57EFFE63}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{E488B9E7-C4A5-4180-8EE0-C18010DBE3C1}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{23371060-2F78-4A0D-AA57-CB7792B5E021}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{48C57E3A-D26A-42A1-9991-3125B20EB1A5}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{A12EE322-D950-463D-9057-FB11BB9F4C53}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{9084CAA9-6826-4094-BBC6-715943F86EE0}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{93FD7E45-D322-44E9-86D3-9E8621A31977}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{2CD573ED-1CE6-46ED-85A3-CE76599AC760}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{89AAAACD-28B2-430E-AE04-24F0FB8F6CBD}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{5B9B8A65-92B5-41FD-8BAD-16B0AEE74739}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{62120035-CFF1-4B58-8988-2CE1DCD9BF4D}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{C0649BCE-563D-4850-AC36-782A7900A4B9}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{F6E43083-121E-47F7-B7FE-29275E875FC0}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{2A59E788-8EF3-4C5C-A0B2-FD95F478585E}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{4678EA73-DD0C-4750-8F8B-313E1CD8A696}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{CBA6DD6B-3848-451D-B7B0-15509B46A0B4}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{BB8B493E-9DE1-47BE-88B6-733A9351AE36}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{CB9AC45C-EA02-4955-A57E-8CBA609E7B36}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{7B628C20-752B-4FE6-A179-48A61CF83C36}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{DB4C7706-7742-426B-9D5B-92CACBFD9395}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{33389CEB-B099-427A-931C-3EB8DEB57343}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{ADB3C0E4-1830-494B-838D-43753A25F3DB}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{8F491404-1059-48BD-BC41-97FB6E6616D2}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{D6D9AAF3-35CD-4F92-984B-4BED571FBE67}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{575366F2-ECFB-493F-8D98-DFF58ABC3FD7}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{DF22EE69-E2EA-48E4-91E1-6F755539473F}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{4130B081-5D04-41C8-B816-A0BC81DDC1CF}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{68142EF1-1C4C-4009-99A1-4E011FF84AA3}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{4CC43D2C-8F1E-4D7F-A5B8-99BF37B47B16}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{E50DF278-291F-4E0E-9EE6-00A26440740C}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{3A571B9F-BC16-43F6-A36A-7237B04081D6}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{F9C3D41F-7F71-4D95-9E51-39B894C95030}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{3210459B-C1AD-45E4-A087-14AB5D2CB19E}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{3EFDAC87-00AF-455D-AC4C-09010B6B16FD}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{CEFF732B-C60C-488A-A2CB-FA255F1FE3AC}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{E6239F95-CDFC-42B1-BF04-0D456CE5D866}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{06A5F868-EB67-418A-A344-22C8CB8CBD6C}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{32521BF4-E9F2-4F83-80DD-20783EB10721}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{8F84D223-64A7-4DD3-BD43-598F4BA3AB92}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{649E9061-5032-4B56-95FB-32D4816B8EC2}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{7A539B1D-5F2A-4840-81B0-4CA0D065514A}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{1D004B34-2D18-40F0-8787-864C025B7F59}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{4504A027-8125-4BCD-927C-78EE61B5CF9E}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{8FCE6549-BE27-4F8B-B506-EAD14EF6482D}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{D7CD297A-E060-4398-9290-BBA46AB169B2}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{430A5418-2C6C-4982-B875-15AF8F1E2B38}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{5ED18873-8A5A-4275-BD9E-3A3B874BEDFD}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{796EAB1D-66CB-41E3-9C99-FEF600549DE2}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{9A02C318-1355-47D3-8988-391F7F5A6E86}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{F5E419B8-94BD-480E-8662-1C1A738D84DC}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{B595CD0C-632B-451D-AE80-9A725987519D}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{E42F558B-297B-4B79-A53C-D01FA9DD4872}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{ABE8E849-C757-409B-88C4-AC30E6A0102B}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{24A81D83-628A-4A59-90FE-662E1C90C015}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{394CED51-F8E6-4E88-AD59-B290BC357502}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{D16CA95C-56F9-48DD-8C45-EAA60F4D2431}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{C936ACC8-A932-4B9F-9AE9-0925F3740C93}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{273E68CE-5DCE-42D1-A758-D1BDDEA34479}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{4003C369-18A6-4380-8D57-4569A2BBFAEB}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{C5745019-DA46-498A-B027-ECF35207E807}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{770295D9-57E6-4F87-B203-201DEEFD4C97}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{CB3AA6F1-6AC7-45C8-96FD-C92633CDF6AF}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{152DBAF2-A50B-4231-BF89-464BC76FF364}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{43FB6128-4040-42EF-8F0E-DB74EC33DC4A}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{4A4E3F07-281B-4178-B40F-0282DDE15F96}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{CF77D241-9780-4B4D-88D2-F2CCEF7C5595}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{2C8EE894-E051-4FA7-8DAC-61DC7AB9A60A}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{613C039A-76D0-483F-9E00-2AE1CC341B2F}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{11CE9893-DE05-4DEF-8C27-2DB65D5E4EC5}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{8380E2E4-8513-4B10-B42C-EEA801E9D756}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{7B5155A3-ED03-4A4C-B59C-4572DAFCDDD3}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{A817E6F0-669E-41BB-A83A-6F7FA127764A}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{6B6D1865-23E0-4645-A2F1-4D08C0D878D6}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{8592B67C-4A04-47FB-8383-667BE53E25E7}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{14186838-A45F-4717-9535-BDE38D473431}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{7683686E-1E3A-4E3C-AC0F-2591430C0A5A}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{A35893AD-3F48-4A4E-BEC9-DAF0B1F8B290}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{EC1104BC-17DE-4871-ADEB-8269A914B83C}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{082083A2-0012-4C1E-9BC7-307826FACFE6}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{C6B92DE1-ED7E-4415-A925-559E2616D984}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{84769C06-CFA0-4E8B-B70A-E4729FB79618}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{ADD56F1A-515E-46C7-9364-DD0A40E77D77}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{1F39F807-B760-45FD-B8BE-2E0553B55E25}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{A26F8D2B-4D47-4C7D-825F-9390D52557F6}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{2F5F8832-A033-4219-8CB3-C1D666FEED25}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{36BFD444-9DC7-4A32-A917-CD1B6DA52463}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{174E7CE9-B103-4FE6-A541-200C6F607A62}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{50E59536-0847-49A7-BDE0-A22292A038CF}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{DD456671-E901-4F78-8C47-FF945F387689}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{1AF7D638-8E9E-465C-8A51-414313732AD9}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{3639EE0A-AE74-4133-93A3-4172D5EB60CA}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{E8942AF4-B05E-4B44-A1BC-7CA513251665}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{0B4A494E-AD2D-4EDC-ADCE-0508562BDB0C}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{FE70A16E-4C61-4F48-8E65-5FAE3DFA2F76}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{0F2616B8-7114-467E-BD8C-CBDB4F06DACF}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{635E1673-392F-4F4E-A6C4-03A4A97B445F}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{83E34A9A-93CE-46DD-B98F-E8E52EEC9C57}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{5A491911-DCAB-4C92-A82B-6136AF69D466}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{DAD3CD21-F3FE-4B35-8BAB-89D91A8984EC}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{CE9B460C-02D4-42DA-80C1-8881E84560FD}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{014B281E-22A9-44A8-88BC-F88814E60937}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{F2E348D6-C461-4B11-9924-8F767007CE1B}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{A3E82308-9073-4759-BFC9-09FD16ACC7BF}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{CA1AC067-42F0-4BAC-ADAF-6E49A867D3FB}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{F65B07EE-BD1C-47EA-9F33-692F985DAC5F}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{BEE5894A-F55D-4F33-AA81-C1A2C90D1069}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{7D1DBDCC-9CC1-4E84-A67F-6EC91400BDC6}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{6C29E18A-9225-4FCD-9F84-A4E0448C50C5}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{4C3EF363-9162-4EDE-9387-77DA8AC6F3BD}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{BE3DD44E-387F-445D-AFB9-57DCC55CCBB3}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{AE44B117-0F56-4665-B485-B36D487F7DD4}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{64971EF6-BA62-4C12-8096-97B678F128C6}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{EA42E6D5-B35B-474D-9D4B-344ED9C486FC}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{EF456CEA-B3EC-4680-A002-09AC6752BF56}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{D304E247-2504-4CBA-B959-84978AAA947C}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{4885BB91-4077-4F80-8D33-4641A4339969}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{E29BB2F1-A4C9-4B67-AAB2-C5B100912DFD}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{57BC173F-85AA-4754-8E28-17E6186E7097}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{9ACCAA12-B4BF-4113-B255-08A144960054}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{C737DD62-0109-4D19-936D-94AD9B0C1982}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{9D6863F2-A017-4EFA-858C-F058B1BBE538}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{25642FA2-41A6-4E3A-A2D6-90EFD5B29F4B}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{85BBBA7E-23D1-4728-9F6F-9C4552158FD0}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{42F5C76A-35D8-460E-BEB9-50DAF99F8F2D}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{1106D68B-39E6-43EE-B17A-75BF236A2C08}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{D30BF0BB-975C-45F2-9BD6-D2F185D6B21C}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{FD42DFAB-EC99-49F4-9100-2FFC699BF170}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{1FEDC15D-FE44-4F4E-B53A-2BBB026CF75E}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{F6864CA5-5156-49A7-828F-9570EBBE95D9}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{6D84CB5C-33C7-483E-850D-54325378F2A8}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{6ABD4DF8-EAA3-4B91-9B23-298701D8F9EF}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{4E7F0571-C383-4664-9AAD-395EF5F33037}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{BA67FC6D-2E46-4A8A-8137-4A3D88E06194}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{58D3B68D-94C1-4D77-ACC7-AEB997D3F122}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{480FAECD-68F9-4248-AD13-65BAB03C6E17}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{00B31191-92FD-4872-906A-73B64C75A54F}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{A8232883-04A9-404C-A718-CEDDB9798C8C}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{24ED0A4D-697E-49F6-BBD4-757E903F8DFD}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{D5EBECC7-9257-4A60-96AC-FDC18348B456}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{C440CFE3-963A-405E-8DA6-A07F86FF55B5}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{64E4E83C-2265-4E9C-8267-257A1DE4472E}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{E88DCE3E-7852-44B7-85F0-881976230EDE}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{0058D65F-9AEF-4ABD-8C5C-02B6D0D093E3}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{81030420-8023-4A3B-B0D5-0BE3D3C2FB5A}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{21F25125-EC75-4DC4-8EAC-2B00F3BA26F3}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{B603098C-4F0B-476F-BE41-F0584E750667}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{EBA33B90-3476-46A6-9577-B986E9237ECA}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{CDAC2559-16C5-4349-BA27-D0008BB153E1}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{C21C99F9-CC98-4F7C-99EB-25041209ECE3}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{2E2ECBBB-416D-47AC-8307-82DACD8E1061}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{E0F89939-49D1-4A8F-96B4-682898B3F5A6}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{3483E165-BFF2-434C-BB0C-05790444B4DE}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{7CB4BE43-C9C2-4C21-ADBF-BB25D010DD40}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{C5F3AA96-CE08-4545-A46C-476D38F263F1}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{8391A39C-0B30-4DB9-84A5-9EA8A2BFE95C}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{E39E0FA0-B2E4-4DF7-B08D-DC45618A1E34}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{80961219-3BC0-40D2-862E-576DB30C7589}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{7E3CED6E-921B-4701-B992-D0F26971262B}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{5A5E4369-BC24-4B9F-A211-54B0BD548BC7}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{56CA5CA0-B11B-482B-966C-CC4FBA6C452B}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{E0977337-D571-4E43-B3C0-0C2251D1B994}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{916ABCEB-1564-494C-91CB-CB8D5A1A0CD0}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{FE2C29AC-8725-4DEC-893C-A9582E46D5D6}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{3ADE3788-09DF-4BA9-A315-C22123F84F98}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{82427EDF-23D5-42B0-901C-FA01282CC99E}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{815293EE-CEDC-428B-B41A-E6C6CAB78451}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{6DA19BC2-EEAD-4E5E-BBD6-2E75A5BD5559}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{3FD014FC-9A44-47B4-8797-A74B22C7A9AF}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{6C82D88B-D338-41E6-8349-63A088750E30}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{0791E92C-7FE8-4546-87B9-8A78377B52E7}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{0E30DC8A-8AEA-4069-A9E4-678B906CEB24}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{5C7BF1A5-3995-4BA1-9D5B-78DCBEDCBAB0}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{D434F1B5-5FEB-4980-801A-BB3CFA77A63B}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{F95C87FC-B310-417E-B98E-EE1A4735FF9D}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{D721D3D0-8BE6-40A5-AE06-4B43CF6FCB44}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{66A22033-14B3-48DF-B6E5-F5AE8FC5DEAB}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{CD0D135C-6F96-44D1-B27F-A33A1DAB7242}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{7F60E047-13C4-4AC1-93F5-5AF0D23DFAC7}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{E604A28B-F551-408E-A715-75CB64F13739}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{1BC426FF-0DAD-4716-82B5-EC1FF35A1DDC}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{A5E37C2A-D69F-4E4A-8A4A-18290DEB0B3C}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{9D9D1610-E401-4B5C-A655-2A3DE01DF706}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{7AD89978-6F10-4DB1-AA9B-F3D91DAE0C8E}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{898C9BCC-C10F-4724-9CA9-84310A8BC06B}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{8864621F-E3CD-419E-BBB0-76FBA01688C2}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{31D45814-4771-46FC-AD09-97F82ADE5B14}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{BF9D7E01-6D6B-4265-9619-D5B20A43EEC3}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{5C401DB5-DDD8-41C9-9996-A86F2D0B0C1B}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{6B11AF0F-D4BF-408A-91FC-BB9362793C36}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{260147FB-0882-4B33-B5A4-7181E900899A}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{DE1B708E-E465-43AD-996E-725E15B1DCA3}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{E60CD1DD-FF2C-4CF0-9C57-E1D023303CCB}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{9EF0FD70-64A3-4078-98E2-B15EDE64BE93}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{7B915D87-02CD-4BC8-A031-16377B9347CE}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{4479D76A-FFCD-48D3-AB97-390FFAD1B727}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{D2B5B39A-C8CF-459E-ADD6-9989421E0BD2}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{97ADAEBF-04DF-451F-8148-D3E360DEE16B}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{F5FFC300-8E1B-4979-8193-F2B22E013233}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{6F32FBCC-9593-4B42-95AE-C841A9563498}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{1386D0A5-6BCF-45B4-A92D-BB543F9B2443}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{4DB0C439-6A3A-41FB-88DE-81E80F10EDAB}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{740EA435-604E-4614-B795-DE356B5C5A84}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{6894D4B4-F633-4BA4-81B5-9C4448B4B966}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{18941DFB-0F4E-4E65-A04B-7ABB5D126938}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{9237CF22-FEF6-4255-8BDA-6848CD586E97}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{F65209FD-0813-4A22-A9FE-AD9B3B649256}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{A6786229-ACAF-4355-8C57-34DAA715E359}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{C507C8C9-2FC1-40BE-B020-3ACD8CF311EC}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{E9E05BD5-4B38-4EFA-A2D3-AA735790F6E5}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{2BBB64D5-48CD-4A05-9A6B-1B31D049B8EA}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{87254172-E8DA-4146-A6B3-2E0F3D1AC51C}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{D66B2AEB-857D-46BE-B0DB-AA0C4A29DCFC}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{933D643C-9D44-4FCD-9795-E496FC1F8E3D}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{D4143CCF-5DC8-42B8-A917-D6C1BE5B64AB}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{C6C19BAF-0D45-45AD-8D12-2B11AE067811}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{A80ACC2B-0F79-4490-8D79-AB266C367F18}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{E49EE985-35F3-4B10-9015-4103D75D42A2}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{FC2A2736-ED68-4E67-8919-1085DA21B100}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{BD19B999-FC88-455F-91CC-878B15EA539A}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{3AD295CA-F0E2-4324-B382-8301136D8463}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{DAE0B890-814C-4A46-B22F-58375A2EC30E}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{795C3C8E-23B1-4A93-8497-C155D9847BBC}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{6A698116-EC88-45A1-92C0-0F25E6AB3CA6}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{7D8D5255-DAB0-4D32-98E7-5D36ADAAA176}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{DD296387-EDC5-4C16-A8B4-676C2E7C0C98}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{C79841DB-F176-491A-8287-B0824599D8EF}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{1374F1DB-4C50-45D9-9819-151DF21E5BE9}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{E3A420F0-AF15-431D-88D0-DDF9ADC22B69}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{81E7C8A5-9B8D-48A4-AADB-56C07438A4B7}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{BBC05753-D108-45B0-AA85-059C7C5B5BB2}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{826114AB-0551-420D-B10C-62C8BE01F2C9}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{5D787B76-02B6-4121-8970-3D1DCCFFC926}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{6F62490E-07C7-4461-BAA1-661C2832CA92}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{4E30BACF-3B2D-495A-AF52-5EEE0D9AA9ED}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{C9F3C4EF-651C-432A-8B9D-22E7739AEA7F}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{5D8FA62F-EFA4-4D9A-8283-8430869D57DE}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{6A88B5B2-4CEB-4A3A-965E-B3E5BA733672}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{F8CB296A-8DF9-47AA-8174-C09CD40D83E5}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{B757229A-461C-488F-8134-4E36CE2F05F3}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{3EF37F92-4B1E-48BF-A41C-D86D6BE1A21B}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{5AB92141-3547-4AEF-89BA-6F5B991B14F9}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{FA79892A-6754-4AAB-93E7-11A7985F018C}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{E61C64E5-1FBD-422A-8F11-BDD2871C047F}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{8236A082-CCA6-4808-B055-BC8B7A70D7D4}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{6D745D69-0BF1-4C36-8D11-F1626ED6DEDE}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{B918C98C-1A6D-442E-B591-578A71185709}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{304B4F98-DC39-436D-8B36-996C8747E8DF}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{D6BD20B0-92B2-48D8-8887-08E9DCBAD38D}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{10FAC1AD-2306-4395-BCCF-1353D102AD95}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{A4EFD371-F091-422E-A6BF-ED10C6054031}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{5918B79A-71BB-4DD0-8306-EAF06A431B84}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{F6BFAC92-3905-493B-80E8-8B91459C1866}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{88232D36-BC45-47F8-8481-B59D0E00A73C}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{8BD6F692-386A-4526-BEF8-CE1B241B146B}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{4E41513B-05CA-4D9F-A1AD-91CC3E388B15}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{1E5F6267-D0B7-4EAC-B242-8DA11B3CA279}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{DF55BA91-0A76-46E7-A874-9EB83543C176}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{F45C279F-3627-4217-A58B-EC4ED76D7264}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{26267357-A9BC-4B51-8B60-3E825DAA4224}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{FDB50414-0255-44FB-9BE0-1BB1D5BB7059}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{02421571-9D4E-4C70-822A-02948CFF1786}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{CEBBC47F-DB31-4E6B-9B49-3760E9DF056C}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{4E831127-B2B9-4361-9FFA-2C168D25F85A}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{3D451545-F15E-42E8-990A-63856BB41C58}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{8C866010-63AE-42C6-8E24-0D389BCE3AFA}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{A74E7495-8464-4235-884B-6D173B6D0813}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{B182F2AA-2EFB-402D-AE59-DB8C6B4F5AF5}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{5E91DEA5-1DE9-4B97-8ED1-2ED3F812A15D}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Faulty Device Manager Devices ============= Name: Cisco AnyConnect Secure Mobility Client Virtual Miniport Adapter for Windows x64 Description: Cisco AnyConnect Secure Mobility Client Virtual Miniport Adapter for Windows x64 Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318} Manufacturer: Cisco Systems Service: vpnva Problem: : This device is disabled. (Code 22) Resolution: In Device Manager, click "Action", and then click "Enable Device". This starts the Enable Device wizard. Follow the instructions. ==================== Event log errors: ========================= Application errors: ================== Error: (09/25/2015 08:38:30 AM) (Source: Microsoft-Windows-LocationProvider) (EventID: 2006) (User: NT AUTHORITY) Description: There was an error with the Windows Location Provider database Error: (09/25/2015 08:17:12 AM) (Source: SideBySide) (EventID: 78) (User: ) Description: Activation context generation failed for "C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17810_none_6240b9c7ecbd0bda.manifest1".Error in manifest or policy file "C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17810_none_6240b9c7ecbd0bda.manifest2" on line C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17810_none_6240b9c7ecbd0bda.manifest3. A component version required by the application conflicts with another component version already active. Conflicting components are:. Component 1: C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17810_none_6240b9c7ecbd0bda.manifest. Component 2: C:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17810_none_a9edf09f013934e0.manifest. Error: (09/25/2015 08:15:03 AM) (Source: SideBySide) (EventID: 78) (User: ) Description: Activation context generation failed for "C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17810_none_6240b9c7ecbd0bda.manifest1".Error in manifest or policy file "C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17810_none_6240b9c7ecbd0bda.manifest2" on line C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17810_none_6240b9c7ecbd0bda.manifest3. A component version required by the application conflicts with another component version already active. Conflicting components are:. Component 1: C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17810_none_6240b9c7ecbd0bda.manifest. Component 2: C:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17810_none_a9edf09f013934e0.manifest. Error: (09/24/2015 06:46:03 PM) (Source: SideBySide) (EventID: 78) (User: ) Description: Activation context generation failed for "C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17810_none_6240b9c7ecbd0bda.manifest1".Error in manifest or policy file "C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17810_none_6240b9c7ecbd0bda.manifest2" on line C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17810_none_6240b9c7ecbd0bda.manifest3. A component version required by the application conflicts with another component version already active. Conflicting components are:. Component 1: C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17810_none_6240b9c7ecbd0bda.manifest. Component 2: C:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17810_none_a9edf09f013934e0.manifest. Error: (09/24/2015 06:46:03 PM) (Source: SideBySide) (EventID: 78) (User: ) Description: Activation context generation failed for "C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17810_none_6240b9c7ecbd0bda.manifest1".Error in manifest or policy file "C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17810_none_6240b9c7ecbd0bda.manifest2" on line C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17810_none_6240b9c7ecbd0bda.manifest3. A component version required by the application conflicts with another component version already active. Conflicting components are:. Component 1: C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17810_none_6240b9c7ecbd0bda.manifest. Component 2: C:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17810_none_a9edf09f013934e0.manifest. Error: (09/24/2015 06:45:59 PM) (Source: SideBySide) (EventID: 78) (User: ) Description: Activation context generation failed for "C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17810_none_6240b9c7ecbd0bda.manifest1".Error in manifest or policy file "C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17810_none_6240b9c7ecbd0bda.manifest2" on line C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17810_none_6240b9c7ecbd0bda.manifest3. A component version required by the application conflicts with another component version already active. Conflicting components are:. Component 1: C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17810_none_6240b9c7ecbd0bda.manifest. Component 2: C:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17810_none_a9edf09f013934e0.manifest. Error: (09/24/2015 06:45:54 PM) (Source: SideBySide) (EventID: 78) (User: ) Description: Activation context generation failed for "C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17810_none_6240b9c7ecbd0bda.manifest1".Error in manifest or policy file "C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17810_none_6240b9c7ecbd0bda.manifest2" on line C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17810_none_6240b9c7ecbd0bda.manifest3. A component version required by the application conflicts with another component version already active. Conflicting components are:. Component 1: C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17810_none_6240b9c7ecbd0bda.manifest. Component 2: C:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.9600.17810_none_a9edf09f013934e0.manifest. Error: (09/18/2015 12:26:13 PM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: ) Description: 80070005 Error: (09/17/2015 09:50:38 PM) (Source: Customer Experience Improvement Program) (EventID: 1008) (User: ) Description: 80070005 Error: (09/17/2015 10:43:09 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Faulting application name: CompatTelRunner.exe, version: 10.0.10208.0, time stamp: 0x55b5cf7a Faulting module name: ntdll.dll, version: 6.3.9600.17936, time stamp: 0x55a68e0c Exception code: 0xc0000005 Fault offset: 0x000000000003d86e Faulting process ID: 0x714 Faulting application start time: 0xCompatTelRunner.exe0 Faulting application path: CompatTelRunner.exe1 Faulting module path: CompatTelRunner.exe2 Report ID: CompatTelRunner.exe3 Faulting package full name: CompatTelRunner.exe4 Faulting package-relative application ID: CompatTelRunner.exe5 System errors: ============= Error: (09/24/2015 11:42:54 PM) (Source: bowser) (EventID: 8003) (User: ) Description: The master browser has received a server announcement from the computer K-PC that believes that it is the master browser for the domain on transport NetBT_Tcpip_{F777ADDD-2478-438E-85C8-BF3C873A22A6}. The master browser is stopping or an election is being forced. Error: (09/24/2015 07:01:04 PM) (Source: bowser) (EventID: 8003) (User: ) Description: The master browser has received a server announcement from the computer K-PC that believes that it is the master browser for the domain on transport NetBT_Tcpip_{F777ADDD-2478-438E-85C8-BF3C873A22A6}. The master browser is stopping or an election is being forced. Error: (09/24/2015 06:46:50 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: The eapihdrv service failed to start due to the following error: %%1275 Error: (09/24/2015 06:46:50 PM) (Source: Application Popup) (EventID: 1060) (User: ) Description: \??\C:\Users\B\AppData\Local\Temp\ehdrv.sys Error: (09/24/2015 06:46:50 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: The eapihdrv service failed to start due to the following error: %%1275 Error: (09/24/2015 06:46:50 PM) (Source: Application Popup) (EventID: 1060) (User: ) Description: \??\C:\Users\B\AppData\Local\Temp\ehdrv.sys Error: (09/24/2015 06:46:50 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: The eapihdrv service failed to start due to the following error: %%1275 Error: (09/24/2015 06:46:49 PM) (Source: Application Popup) (EventID: 1060) (User: ) Description: \??\C:\Users\B\AppData\Local\Temp\ehdrv.sys Error: (09/24/2015 02:42:22 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY) Description: application-specificLocalActivation{D63B10C5-BB46-4990-A94F-E40B9D520160}{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}NT AUTHORITYSYSTEMS-1-5-18LocalHost (Using LRPC)UnavailableUnavailable Error: (09/24/2015 10:24:00 AM) (Source: bowser) (EventID: 8003) (User: ) Description: The master browser has received a server announcement from the computer K-PC that believes that it is the master browser for the domain on transport NetBT_Tcpip_{F777ADDD-2478-438E-85C8-BF3C873A22A6}. The master browser is stopping or an election is being forced. ==================== Memory info =========================== Processor: Intel(R) Core(TM) i3-3217U CPU @ 1.80GHz Percentage of memory in use: 56% Total physical RAM: 3797.53 MB Available physical RAM: 1665 MB Total Virtual: 5942.84 MB Available Virtual: 3050.6 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:441.25 GB) (Free:274.74 GB) NTFS ==================== MBR & Partition Table ================== ======================================================== Disk: 0 (Size: 465.8 GB) (Disk ID: 1C1CBB20) Partition: GPT. ======================================================== Disk: 1 (Size: 22.4 GB) (Disk ID: 58449395) Partition: GPT. ==================== End of Addition.txt ============================ |
25.09.2015, 07:48 | #9 |
| Win8, versendet Spam-Emails, Malwarebytes findet vers. PUP+AdWare FRST log FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:23-09-2015 Ran by B (administrator) on B (25-09-2015 08:35:56) Running from C:\Users\B\Downloads\FRST-OlderVersion Loaded Profiles: B & (Available Profiles: B & Administrator) Platform: Windows 8.1 (X64) Language: English (United Kingdom) Internet Explorer Version 11 (Default browser: Chrome) Boot Mode: Normal Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Processes (Whitelisted) ================= (If an entry is included in the fixlist, the process will be closed. The file will not be moved.) (Cisco Systems, Inc.) C:\Program Files (x86)\Cisco\Cisco AnyConnect Secure Mobility Client\vpnagent.exe (Microsoft Corporation) C:\Windows\System32\wlanext.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe (Novell, Inc.) C:\Program Files\Novell\Client\XTier\Services\xtsvcmgr.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe (Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe (Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe (Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe (Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe (Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe (Intel Corporation) C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe (Intel(R) Corporation) C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe (Samsung Electronics CO., LTD.) C:\Program Files (x86)\Samsung\SW Update\SWMAgent.exe (Intel Corporation) C:\Windows\System32\igfxtray.exe (Microsoft Corporation) C:\Windows\System32\GWX\GWX.exe (Intel Corporation) C:\Windows\System32\igfxsrvc.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe () C:\Program Files\Novell\Client\nwtray.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Dropbox, Inc.) C:\Users\B\AppData\Roaming\Dropbox\bin\Dropbox.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe (Cisco Systems, Inc.) C:\Program Files (x86)\Cisco\Cisco AnyConnect Secure Mobility Client\vpnui.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Samsung Electronics CO., LTD.) C:\Program Files\Samsung\S Agent\CommonAgent.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe () C:\Users\B\Downloads\SecurityCheck.exe (Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe ==================== Registry (Whitelisted) =========================== (If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.) HKLM\...\Run: [NWTRAY] => C:\Program Files\Novell\Client\nwtray.exe [40632 2013-09-29] () HKLM-x32\...\Run: [avgnt] => C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [782008 2015-08-26] (Avira Operations GmbH & Co. KG) HKLM-x32\...\Run: [Cisco AnyConnect Secure Mobility Agent for Windows] => C:\Program Files (x86)\Cisco\Cisco AnyConnect Secure Mobility Client\vpnui.exe [708496 2015-02-19] (Cisco Systems, Inc.) Winlogon\Notify\igfxcui: C:\WINDOWS\system32\igfxdev.dll (Intel Corporation) HKU\S-1-5-21-2739015723-2927197382-1160632269-1001\...\Run: [Dropbox Update] => C:\Users\B\AppData\Local\Dropbox\Update\DropboxUpdate.exe [134512 2015-06-20] (Dropbox, Inc.) HKU\S-1-5-21-2739015723-2927197382-1160632269-1001\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [53729824 2015-08-07] (Skype Technologies S.A.) HKU\S-1-5-21-2739015723-2927197382-1160632269-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Run: [Dropbox Update] => C:\Users\B\AppData\Local\Dropbox\Update\DropboxUpdate.exe [134512 2015-06-20] (Dropbox, Inc.) HKU\S-1-5-21-2739015723-2927197382-1160632269-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [53729824 2015-08-07] (Skype Technologies S.A.) HKU\S-1-5-21-2739015723-2927197382-1160632269-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-1\...\Run: [Dropbox Update] => C:\Users\B\AppData\Local\Dropbox\Update\DropboxUpdate.exe [134512 2015-06-20] (Dropbox, Inc.) HKU\S-1-5-21-2739015723-2927197382-1160632269-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-1\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [53729824 2015-08-07] (Skype Technologies S.A.) HKU\S-1-5-21-2739015723-2927197382-1160632269-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-2\...\Run: [Dropbox Update] => C:\Users\B\AppData\Local\Dropbox\Update\DropboxUpdate.exe [134512 2015-06-20] (Dropbox, Inc.) HKU\S-1-5-21-2739015723-2927197382-1160632269-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-2\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [53729824 2015-08-07] (Skype Technologies S.A.) HKU\S-1-5-21-2739015723-2927197382-1160632269-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-3\...\Run: [Dropbox Update] => C:\Users\B\AppData\Local\Dropbox\Update\DropboxUpdate.exe [134512 2015-06-20] (Dropbox, Inc.) HKU\S-1-5-21-2739015723-2927197382-1160632269-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-3\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [53729824 2015-08-07] (Skype Technologies S.A.) Lsa: [Authentication Packages] msv1_0 ncv1_0 ShellIconOverlayIdentifiers: [DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\B\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll [2015-08-14] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\B\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll [2015-08-14] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [DropboxExt3] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\B\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll [2015-08-14] (Dropbox, Inc.) ShellIconOverlayIdentifiers: [DropboxExt4] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\B\AppData\Roaming\Dropbox\bin\DropboxExt64.27.dll [2015-08-14] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\B\AppData\Roaming\Dropbox\bin\DropboxExt.27.dll [2015-08-14] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\B\AppData\Roaming\Dropbox\bin\DropboxExt.27.dll [2015-08-14] (Dropbox, Inc.) ShellIconOverlayIdentifiers-x32: [DropboxExt3] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\B\AppData\Roaming\Dropbox\bin\DropboxExt.27.dll [2015-08-14] (Dropbox, Inc.) Startup: C:\Users\B\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk [2015-08-05] ShortcutTarget: Dropbox.lnk -> C:\Users\B\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) ==================== Internet (Whitelisted) ==================== (If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.) Tcpip\Parameters: [DhcpNameServer] 192.168.0.1 Tcpip\..\Interfaces\{F777ADDD-2478-438E-85C8-BF3C873A22A6}: [DhcpNameServer] 192.168.0.1 Internet Explorer: ================== HKU\S-1-5-21-2739015723-2927197382-1160632269-1001\Software\Microsoft\Internet Explorer\Main,Start Page = about:Tabs HKU\S-1-5-21-2739015723-2927197382-1160632269-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://samsung13.msn.com HKU\S-1-5-21-2739015723-2927197382-1160632269-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\Microsoft\Internet Explorer\Main,Start Page = about:Tabs HKU\S-1-5-21-2739015723-2927197382-1160632269-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://samsung13.msn.com HKU\S-1-5-21-2739015723-2927197382-1160632269-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-1\Software\Microsoft\Internet Explorer\Main,Start Page = about:Tabs HKU\S-1-5-21-2739015723-2927197382-1160632269-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-1\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://samsung13.msn.com HKU\S-1-5-21-2739015723-2927197382-1160632269-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-2\Software\Microsoft\Internet Explorer\Main,Start Page = about:Tabs HKU\S-1-5-21-2739015723-2927197382-1160632269-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-2\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://samsung13.msn.com HKU\S-1-5-21-2739015723-2927197382-1160632269-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-3\Software\Microsoft\Internet Explorer\Main,Start Page = about:Tabs HKU\S-1-5-21-2739015723-2927197382-1160632269-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-3\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://samsung13.msn.com SearchScopes: HKLM -> DefaultScope {216F2AAB-AC60-4908-BAF9-3DA6499FC0FE} URL = hxxp://www.google.de/search?q={searchTerms}&hl=de&gl=de&rls=com.microsoft:{language}:{referrer:source}&ie={inputEncoding?}&oe={outputEncoding?} SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKLM -> {216F2AAB-AC60-4908-BAF9-3DA6499FC0FE} URL = hxxp://www.google.de/search?q={searchTerms}&hl=de&gl=de&rls=com.microsoft:{language}:{referrer:source}&ie={inputEncoding?}&oe={outputEncoding?} SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-2739015723-2927197382-1160632269-1001 -> DefaultScope {216F2AAB-AC60-4908-BAF9-3DA6499FC0FE} URL = hxxp://www.bing.com/search?FORM=UP97DF&PC=UP97&q={searchTerms}&src=IE-SearchBox SearchScopes: HKU\S-1-5-21-2739015723-2927197382-1160632269-1001 -> {216F2AAB-AC60-4908-BAF9-3DA6499FC0FE} URL = hxxp://www.bing.com/search?FORM=UP97DF&PC=UP97&q={searchTerms}&src=IE-SearchBox SearchScopes: HKU\S-1-5-21-2739015723-2927197382-1160632269-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0 -> DefaultScope {216F2AAB-AC60-4908-BAF9-3DA6499FC0FE} URL = hxxp://www.bing.com/search?FORM=UP97DF&PC=UP97&q={searchTerms}&src=IE-SearchBox SearchScopes: HKU\S-1-5-21-2739015723-2927197382-1160632269-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0 -> {216F2AAB-AC60-4908-BAF9-3DA6499FC0FE} URL = hxxp://www.bing.com/search?FORM=UP97DF&PC=UP97&q={searchTerms}&src=IE-SearchBox SearchScopes: HKU\S-1-5-21-2739015723-2927197382-1160632269-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-1 -> DefaultScope {216F2AAB-AC60-4908-BAF9-3DA6499FC0FE} URL = hxxp://www.bing.com/search?FORM=UP97DF&PC=UP97&q={searchTerms}&src=IE-SearchBox SearchScopes: HKU\S-1-5-21-2739015723-2927197382-1160632269-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-1 -> {216F2AAB-AC60-4908-BAF9-3DA6499FC0FE} URL = hxxp://www.bing.com/search?FORM=UP97DF&PC=UP97&q={searchTerms}&src=IE-SearchBox SearchScopes: HKU\S-1-5-21-2739015723-2927197382-1160632269-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-2 -> DefaultScope {216F2AAB-AC60-4908-BAF9-3DA6499FC0FE} URL = hxxp://www.bing.com/search?FORM=UP97DF&PC=UP97&q={searchTerms}&src=IE-SearchBox SearchScopes: HKU\S-1-5-21-2739015723-2927197382-1160632269-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-2 -> {216F2AAB-AC60-4908-BAF9-3DA6499FC0FE} URL = hxxp://www.bing.com/search?FORM=UP97DF&PC=UP97&q={searchTerms}&src=IE-SearchBox SearchScopes: HKU\S-1-5-21-2739015723-2927197382-1160632269-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-3 -> DefaultScope {216F2AAB-AC60-4908-BAF9-3DA6499FC0FE} URL = hxxp://www.bing.com/search?FORM=UP97DF&PC=UP97&q={searchTerms}&src=IE-SearchBox SearchScopes: HKU\S-1-5-21-2739015723-2927197382-1160632269-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-3 -> {216F2AAB-AC60-4908-BAF9-3DA6499FC0FE} URL = hxxp://www.bing.com/search?FORM=UP97DF&PC=UP97&q={searchTerms}&src=IE-SearchBox BHO: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2015-05-01] (Microsoft Corporation) BHO-x32: Citavi Picker -> {609D670F-B735-4da7-AC6D-F3BD358E325E} -> C:\WINDOWS\SysWOW64\mscoree.dll [2013-08-22] (Microsoft Corporation) BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\ssv.dll [2015-04-17] (Oracle Corporation) BHO-x32: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2015-05-01] (Microsoft Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\jp2ssv.dll [2015-04-17] (Oracle Corporation) Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2015-05-01] (Microsoft Corporation) Handler-x32: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2015-05-01] (Microsoft Corporation) FireFox: ======== FF ProfilePath: C:\Users\B\AppData\Roaming\Mozilla\Firefox\Profiles\ds5n16am.default FF Plugin-x32: @java.com/DTPlugin,version=11.45.2 -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\dtplugin\npDeployJava1.dll [2015-04-17] (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.45.2 -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\plugin2\npjp2.dll [2015-04-17] (Oracle Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.28.15\npGoogleUpdate3.dll [2015-09-17] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.28.15\npGoogleUpdate3.dll [2015-09-17] (Google Inc.) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2015-06-29] (Adobe Systems Inc.) Chrome: ======= CHR Profile: C:\Users\B\AppData\Local\Google\Chrome\User Data\Default CHR Extension: (Google Docs) - C:\Users\B\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-01-30] CHR Extension: (Google Drive) - C:\Users\B\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-01-30] CHR Extension: (YouTube) - C:\Users\B\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-01-30] CHR Extension: (Google Search) - C:\Users\B\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-01-30] CHR Extension: (Google Docs Offline) - C:\Users\B\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2015-09-03] CHR Extension: (AdBlock) - C:\Users\B\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2014-02-12] CHR Extension: (Chrome Hotword Shared Module) - C:\Users\B\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg [2015-03-13] CHR Extension: (Chrome Web Store Payments) - C:\Users\B\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-01-30] CHR Extension: (Citavi Picker) - C:\Users\B\AppData\Local\Google\Chrome\User Data\Default\Extensions\piehhloihgjjiomhieeddiidpekaajio [2014-01-30] CHR Extension: (Gmail) - C:\Users\B\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-01-30] CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2015-05-01] CHR HKLM-x32\...\Chrome\Extension: [piehhloihgjjiomhieeddiidpekaajio] - C:\ProgramData\Swiss Academic Software\Citavi Picker\Chrome\ChromePicker.crx [2014-01-30] ==================== Services (Whitelisted) ======================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) S2 AntiVirMailService; C:\Program Files (x86)\Avira\AntiVir Desktop\avmailc7.exe [887128 2015-08-07] (Avira Operations GmbH & Co. KG) R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [461672 2015-08-26] (Avira Operations GmbH & Co. KG) R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [461672 2015-08-26] (Avira Operations GmbH & Co. KG) S2 AntiVirWebService; C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe [1213072 2015-08-26] (Avira Operations GmbH & Co. KG) R2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1394816 2015-05-01] (Microsoft Corporation) R2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1772672 2015-05-01] (Microsoft Corporation) S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [273136 2013-08-28] () S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [366552 2015-07-07] (Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23824 2015-07-07] (Microsoft Corporation) R2 XTSvcMgr; C:\Program Files\Novell\Client\XTier\Services\XTSvcMgr.exe [21176 2013-09-29] (Novell, Inc.) R2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [3378416 2013-08-28] (Intel® Corporation) ===================== Drivers (Whitelisted) ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [137288 2015-08-07] (Avira Operations GmbH & Co. KG) R1 avipbb; C:\Windows\system32\DRIVERS\avipbb.sys [148632 2015-08-07] (Avira Operations GmbH & Co. KG) R1 avkmgr; C:\Windows\system32\DRIVERS\avkmgr.sys [28600 2013-12-18] (Avira Operations GmbH & Co. KG) R2 avnetflt; C:\Windows\system32\DRIVERS\avnetflt.sys [43576 2015-03-10] (Avira Operations GmbH & Co. KG) S3 dot4; C:\Windows\system32\DRIVERS\Dot4.sys [151968 2012-10-19] (Windows (R) Win 7 DDK provider) S3 Dot4Print; C:\Windows\System32\drivers\Dot4Prt.sys [27040 2012-10-19] (Windows (R) Win 7 DDK provider) S0 ebdrv; C:\Windows\System32\drivers\evbda.sys [3357024 2013-08-22] (Broadcom Corporation) R0 NCFilter; C:\Windows\System32\DRIVERS\NCFilter.sys [113336 2013-09-29] () R2 NCFSD; C:\Program Files\Novell\Client\XTier\Drivers\ncfsd.sys [116408 2013-09-29] () R2 NCIOCTL; C:\Program Files\Novell\Client\XTier\Drivers\ncioctl.sys [91320 2013-09-29] () R0 NCRecognizer; C:\Windows\System32\DRIVERS\NCRecognizer.sys [121016 2013-09-29] () R0 NCUncFilter; C:\Windows\System32\DRIVERS\NCUncFilter.sys [27320 2013-09-29] () R3 NETwNe64; C:\Windows\system32\DRIVERS\Netwew00.sys [3345376 2013-10-08] (Intel Corporation) R1 NICM; C:\Program Files\Novell\Client\XTier\Drivers\nicm.sys [32952 2013-09-29] (Novell, Inc.) R3 RadioHIDMini; C:\Windows\System32\drivers\RadioHIDMini.sys [23408 2012-07-29] (Windows (R) Win 7 DDK provider) S3 ssudserd; C:\Windows\system32\DRIVERS\ssudserd.sys [206080 2014-01-22] (DEVGURU Co., LTD.(www.devguru.co.kr)) S3 vpnva; C:\Windows\system32\DRIVERS\vpnva64-6.sys [52592 2014-08-15] (Cisco Systems, Inc.) S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44560 2015-07-07] (Microsoft Corporation) S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [270168 2015-07-07] (Microsoft Corporation) S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114520 2015-07-07] (Microsoft Corporation) U3 nciom; C:\Program Files\Novell\Client\XTier\Drivers\nciom.sys [82616 2013-09-29] (Novell, Inc.) U3 ncp; C:\Program Files\Novell\Client\XTier\Drivers\ncp.sys [81080 2013-09-29] (Novell, Inc.) U3 ncpl; C:\Program Files\Novell\Client\XTier\Drivers\ncpl.sys [50360 2013-09-29] (Novell, Inc.) U3 ndm; C:\Program Files\Novell\Client\XTier\Drivers\ndm.sys [20664 2013-09-29] (Novell, Inc.) U3 ndmndap; C:\Program Files\Novell\Client\XTier\Drivers\ndmndap.sys [84664 2013-09-29] (Novell, Inc.) U3 niam; C:\Program Files\Novell\Client\XTier\Drivers\niam.sys [40120 2013-09-29] (Novell, Inc.) U3 nipctl; C:\Program Files\Novell\Client\XTier\Drivers\nipctl.sys [57016 2013-09-29] (Novell, Inc.) U3 nscm; C:\Program Files\Novell\Client\XTier\Drivers\nscm.sys [39096 2013-09-29] (Novell, Inc.) U3 nsns; C:\Program Files\Novell\Client\XTier\Drivers\nsns.sys [26296 2013-09-29] (Novell, Inc.) U3 nsvccost; C:\Program Files\Novell\Client\XTier\Drivers\nsvccost.sys [37048 2013-09-29] (Novell, Inc.) U3 xtxplat; C:\Program Files\Novell\Client\XTier\Drivers\xtxplat.sys [60600 2013-09-29] (Novell, Inc.) ==================== NetSvcs (Whitelisted) =================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) ==================== One Month Created files and folders ======== (If an entry is included in the fixlist, the file/folder will be moved.) 2015-09-25 08:36 - 2015-09-25 08:36 - 00000000 ____D C:\N++RECOV 2015-09-25 08:19 - 2015-09-25 08:19 - 00852704 _____ C:\Users\B\Downloads\SecurityCheck.exe 2015-09-24 18:45 - 2015-09-24 18:45 - 02870984 _____ (ESET) C:\Users\B\Downloads\esetsmartinstaller_deu.exe 2015-09-08 22:50 - 2015-08-27 04:48 - 00136904 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe 2015-09-08 22:50 - 2015-08-26 20:00 - 00721920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll 2015-09-08 22:50 - 2015-08-26 20:00 - 00124928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuwebv.dll 2015-09-08 22:50 - 2015-08-26 20:00 - 00081920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wudriver.dll 2015-09-08 22:50 - 2015-08-26 20:00 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapp.exe 2015-09-08 22:50 - 2015-08-26 16:46 - 03705344 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll 2015-09-08 22:50 - 2015-08-26 16:29 - 02240512 _____ (Microsoft Corporation) C:\WINDOWS\system32\wucltux.dll 2015-09-08 22:50 - 2015-08-26 16:27 - 00891904 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll 2015-09-08 22:50 - 2015-08-26 16:27 - 00409088 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUSettingsProvider.dll 2015-09-08 22:50 - 2015-08-26 16:26 - 00140288 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuwebv.dll 2015-09-08 22:50 - 2015-08-26 16:26 - 00095744 _____ (Microsoft Corporation) C:\WINDOWS\system32\wudriver.dll 2015-09-08 22:50 - 2015-08-26 16:26 - 00035840 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapp.exe 2015-09-08 22:49 - 2015-09-03 04:18 - 02531400 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll 2015-09-08 22:49 - 2015-09-03 04:17 - 01903848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll 2015-09-08 22:49 - 2015-09-02 20:48 - 02345472 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll 2015-09-08 22:49 - 2015-09-02 19:09 - 01556992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3.dll 2015-09-08 22:49 - 2015-08-22 20:19 - 25188352 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2015-09-08 22:49 - 2015-08-22 19:22 - 19856384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll 2015-09-08 22:49 - 2015-07-30 19:18 - 00268288 _____ (Microsoft Corporation) C:\WINDOWS\system32\InkEd.dll 2015-09-08 22:49 - 2015-07-30 18:22 - 00230912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InkEd.dll 2015-09-08 22:49 - 2015-07-22 16:19 - 00041984 _____ (Microsoft Corporation) C:\WINDOWS\system32\UtcResources.dll 2015-09-08 22:49 - 2015-07-22 15:52 - 01633792 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll 2015-09-08 22:49 - 2015-07-17 16:15 - 00951296 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdh.dll 2015-09-08 22:49 - 2015-07-17 16:10 - 00749568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tdh.dll 2015-09-08 22:49 - 2015-06-27 13:47 - 00118616 _____ (Microsoft Corporation) C:\WINDOWS\system32\consent.exe 2015-09-08 22:48 - 2015-08-22 19:35 - 02886144 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll 2015-09-08 22:48 - 2015-08-22 19:34 - 00585216 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll 2015-09-08 22:48 - 2015-08-22 19:21 - 00817664 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll 2015-09-08 22:48 - 2015-08-22 19:20 - 05923840 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll 2015-09-08 22:48 - 2015-08-22 18:55 - 00504832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll 2015-09-08 22:48 - 2015-08-22 18:50 - 02279424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll 2015-09-08 22:48 - 2015-08-22 18:50 - 01032704 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcomm.dll 2015-09-08 22:48 - 2015-08-22 18:45 - 00665600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll 2015-09-08 22:48 - 2015-08-22 18:44 - 00262144 _____ (Microsoft Corporation) C:\WINDOWS\system32\webcheck.dll 2015-09-08 22:48 - 2015-08-22 18:41 - 14451712 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll 2015-09-08 22:48 - 2015-08-22 18:41 - 00801280 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll 2015-09-08 22:48 - 2015-08-22 18:41 - 00720384 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe 2015-09-08 22:48 - 2015-08-22 18:41 - 00374784 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll 2015-09-08 22:48 - 2015-08-22 18:39 - 02126336 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl 2015-09-08 22:48 - 2015-08-22 18:28 - 04520448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll 2015-09-08 22:48 - 2015-08-22 18:26 - 02427392 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll 2015-09-08 22:48 - 2015-08-22 18:23 - 00880128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcomm.dll 2015-09-08 22:48 - 2015-08-22 18:22 - 12857344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll 2015-09-08 22:48 - 2015-08-22 18:20 - 00230400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webcheck.dll 2015-09-08 22:48 - 2015-08-22 18:18 - 02052608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl 2015-09-08 22:48 - 2015-08-22 18:18 - 00689152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll 2015-09-08 22:48 - 2015-08-22 18:18 - 00327168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll 2015-09-08 22:48 - 2015-08-22 18:14 - 01545728 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll 2015-09-08 22:48 - 2015-08-22 18:01 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll 2015-09-08 22:48 - 2015-08-22 18:00 - 01951232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll 2015-09-08 22:48 - 2015-08-22 17:56 - 01310720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll 2015-09-08 22:48 - 2015-08-22 17:55 - 00710144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll 2015-09-08 22:47 - 2015-09-02 04:56 - 04175872 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys 2015-09-08 22:47 - 2015-09-02 04:55 - 00358912 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll 2015-09-08 22:47 - 2015-09-02 04:50 - 00044032 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll 2015-09-08 22:47 - 2015-09-02 04:17 - 00301568 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\atmfd.dll 2015-09-08 22:47 - 2015-09-02 04:13 - 00035840 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll 2015-09-08 22:47 - 2015-08-03 23:15 - 00074928 _____ (Microsoft Corporation) C:\WINDOWS\system32\appidapi.dll 2015-09-08 22:47 - 2015-08-03 23:15 - 00065600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\appidapi.dll 2015-09-08 22:47 - 2015-08-01 16:22 - 00039936 _____ (Microsoft Corporation) C:\WINDOWS\system32\appidsvc.dll 2015-09-08 22:47 - 2015-08-01 05:47 - 00229376 _____ (Microsoft Corporation) C:\WINDOWS\system32\schtasks.exe 2015-09-08 22:47 - 2015-08-01 05:45 - 00182784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\schtasks.exe 2015-09-08 22:47 - 2015-08-01 05:38 - 01265152 _____ (Microsoft Corporation) C:\WINDOWS\system32\schedsvc.dll 2015-09-08 22:47 - 2015-08-01 05:37 - 00468992 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskeng.exe 2015-09-08 22:47 - 2015-08-01 05:37 - 00359936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\taskeng.exe 2015-09-08 22:47 - 2015-07-22 16:34 - 02775552 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll 2015-09-08 22:47 - 2015-07-22 16:33 - 01728000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Immersive.dll 2015-09-08 22:47 - 2015-07-22 16:25 - 02461184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authui.dll 2015-09-08 22:47 - 2015-07-22 16:25 - 01546752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Immersive.dll 2015-09-08 22:47 - 2015-07-18 20:31 - 00194048 _____ (Microsoft Corporation) C:\WINDOWS\system32\shacct.dll 2015-09-08 22:47 - 2015-07-18 20:29 - 00655872 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSync.dll 2015-09-08 22:47 - 2015-07-18 20:29 - 00148480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shacct.dll 2015-09-08 22:47 - 2015-07-18 20:27 - 00520192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSync.dll 2015-09-08 22:47 - 2015-07-14 05:27 - 00063488 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzsync.exe 2015-09-08 22:47 - 2015-07-13 21:10 - 00411455 _____ C:\WINDOWS\system32\ApnDatabase.xml 2015-09-08 22:47 - 2015-07-10 21:06 - 00118272 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthpan.sys 2015-09-08 22:47 - 2015-07-09 18:14 - 00228864 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll 2015-09-08 22:47 - 2015-07-03 23:51 - 01380056 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll 2015-09-08 22:47 - 2015-07-03 16:00 - 01097216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32.dll 2015-09-08 22:47 - 2015-06-19 19:07 - 02819072 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers.dll 2015-09-07 21:20 - 2015-09-07 21:21 - 01799392 _____ (Malwarebytes Corporation) C:\Users\B\Downloads\JRT_7600.exe 2015-09-07 21:08 - 2015-09-07 21:12 - 00000000 ____D C:\AdwCleaner 2015-09-07 20:47 - 2015-09-07 20:47 - 01654784 _____ C:\Users\B\Downloads\AdwCleaner_5.006.exe 2015-09-07 20:05 - 2015-09-07 20:05 - 02623656 _____ (VS Revo Group Ltd.) C:\Users\B\Downloads\revosetup95.exe 2015-09-07 20:05 - 2015-09-07 20:05 - 00000000 ____D C:\Program Files (x86)\VS Revo Group 2015-09-06 22:57 - 2015-09-06 22:57 - 00000000 ____D C:\Users\B\Downloads\Notepad++Portable 2015-09-06 22:44 - 2015-09-06 22:45 - 00091866 _____ C:\Users\B\Downloads\Addition.txt 2015-09-06 22:42 - 2015-09-08 01:18 - 00037698 _____ C:\Users\B\Downloads\FRST.txt 2015-09-06 22:41 - 2015-09-25 08:36 - 00000000 ____D C:\FRST 2015-09-06 22:41 - 2015-09-25 08:35 - 00000000 ____D C:\Users\B\Downloads\FRST-OlderVersion 2015-09-04 20:19 - 2015-09-06 22:41 - 02190336 _____ (Farbar) C:\Users\B\Downloads\FRST64.exe 2015-09-04 19:35 - 2015-09-18 20:28 - 00113880 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys 2015-09-04 19:35 - 2015-09-04 19:35 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 2015-09-04 19:35 - 2015-09-04 19:35 - 00000000 ____D C:\ProgramData\Malwarebytes 2015-09-04 19:35 - 2015-09-04 19:35 - 00000000 ____D C:\Program Files (x86)\ Malwarebytes Anti-Malware 2015-09-04 19:35 - 2015-06-18 08:42 - 00064216 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mwac.sys 2015-09-04 19:35 - 2015-06-18 08:41 - 00109272 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbamchameleon.sys 2015-09-04 19:35 - 2015-06-18 08:41 - 00025816 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbam.sys 2015-09-04 16:05 - 2015-09-04 16:06 - 00000000 ____D C:\Users\B\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox 2015-09-04 13:27 - 2015-09-04 13:27 - 00004937 _____ C:\Users\B\Downloads\export.csv 2015-08-29 20:41 - 2015-08-29 20:41 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype 2015-08-26 23:34 - 2015-08-26 23:34 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_Kernel_WinUsb_01007.Wdf 2015-08-26 18:32 - 2015-08-26 18:32 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira ==================== One Month Modified files and folders ======== (If an entry is included in the fixlist, the file/folder will be moved.) 2015-09-25 08:37 - 2014-10-04 18:06 - 00000000 ____D C:\Users\B\AppData\Roaming\Skype 2015-09-25 08:07 - 2015-06-20 10:56 - 00001246 _____ C:\WINDOWS\Tasks\DropboxUpdateTaskUserS-1-5-21-2739015723-2927197382-1160632269-1001UA.job 2015-09-25 08:00 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\sru 2015-09-25 07:56 - 2013-08-22 16:46 - 00404068 _____ C:\WINDOWS\setupact.log 2015-09-25 07:52 - 2014-01-30 00:28 - 00000916 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job 2015-09-25 07:29 - 2014-07-17 21:22 - 01247200 _____ C:\WINDOWS\WindowsUpdate.log 2015-09-25 07:13 - 2013-06-30 23:42 - 00000000 ___RD C:\Users\B\Dropbox 2015-09-25 07:12 - 2014-02-02 12:47 - 00000000 ____D C:\Users\B\AppData\Roaming\Dropbox 2015-09-25 07:10 - 2014-01-30 00:28 - 00000912 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job 2015-09-25 00:18 - 2014-08-05 09:56 - 00003922 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{BE5E01ED-998F-4E35-B8B9-6B1C7CA86A70} 2015-09-24 19:06 - 2014-01-30 13:06 - 00000300 _____ C:\WINDOWS\Tasks\DLL-Files FixerASKUSER.job 2015-09-24 18:34 - 2014-05-23 21:48 - 00000000 ____D C:\Users\B\AppData\Local\javasharedresources 2015-09-24 12:27 - 2012-07-26 09:59 - 00000000 ____D C:\WINDOWS\CbsTemp 2015-09-24 12:25 - 2014-01-30 00:28 - 00003600 _____ C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-2739015723-2927197382-1160632269-1001 2015-09-24 12:07 - 2015-06-20 10:56 - 00001194 _____ C:\WINDOWS\Tasks\DropboxUpdateTaskUserS-1-5-21-2739015723-2927197382-1160632269-1001Core.job 2015-09-17 10:47 - 2014-01-30 00:28 - 00003888 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA 2015-09-17 10:47 - 2014-01-30 00:28 - 00003652 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore 2015-09-16 11:26 - 2014-07-17 21:05 - 00000000 ____D C:\Users\B 2015-09-15 03:18 - 2013-08-22 17:38 - 00812008 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe 2015-09-15 03:18 - 2013-08-22 17:38 - 00178152 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl 2015-09-14 16:10 - 2014-03-18 17:26 - 00863592 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2015-09-14 06:06 - 2014-01-30 00:28 - 00000000 ____D C:\Users\B\AppData\Local\Google 2015-09-14 06:05 - 2013-08-22 16:45 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT 2015-09-13 11:25 - 2014-08-26 15:36 - 00000419 _____ C:\WINDOWS\BRWMARK.INI 2015-09-12 06:31 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\AppReadiness 2015-09-10 18:19 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\rescache 2015-09-10 07:52 - 2013-08-22 16:44 - 00386432 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2015-09-10 07:45 - 2014-03-18 17:10 - 00000000 ____D C:\Program Files\Windows Journal 2015-09-10 07:45 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\SysWOW64\en-GB 2015-09-10 07:45 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\en-GB 2015-09-10 07:45 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\PolicyDefinitions 2015-09-09 10:59 - 2014-01-31 19:48 - 00000000 ____D C:\WINDOWS\system32\MRT 2015-09-07 21:14 - 2014-03-18 10:16 - 00237684 _____ C:\WINDOWS\PFRO.log 2015-09-04 20:26 - 2012-07-26 10:12 - 00000000 ____D C:\WINDOWS\AUInstallAgent 2015-09-04 20:25 - 2013-08-22 15:25 - 00262144 ___SH C:\WINDOWS\system32\config\BBI 2015-08-29 20:42 - 2014-10-04 18:05 - 00000000 ____D C:\ProgramData\Skype 2015-08-29 20:41 - 2014-10-04 18:05 - 00000000 ___RD C:\Program Files (x86)\Skype 2015-08-26 23:32 - 2015-06-01 23:03 - 00000000 ____D C:\Users\B\AppData\Roaming\vlc 2015-08-26 18:37 - 2014-01-31 19:48 - 134753440 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe ==================== Files in the root of some directories ======= 2014-01-30 00:37 - 2014-07-19 13:37 - 0000267 _____ () C:\Users\B\AppData\Roaming\WB.CFG 2014-01-30 00:37 - 2014-01-30 00:37 - 0000005 _____ () C:\Users\B\AppData\Roaming\WBPU-TTL.DAT 2014-03-01 13:03 - 2014-08-26 22:42 - 0001776 _____ () C:\Users\B\AppData\Local\Citavi Picker Internet Explorer Protocol.txt 2014-01-30 14:05 - 2014-01-30 14:06 - 0000624 _____ () C:\ProgramData\NCIDebug.log Some files in TEMP: ==================== C:\Users\B\AppData\Local\Temp\avgnt.exe C:\Users\B\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmp5rtnps.dll C:\Users\B\AppData\Local\Temp\jre-8u45-windows-au.exe C:\Users\B\AppData\Local\Temp\sqlite3.dll ==================== Bamital & volsnap ================= (There is no automatic fix for files that do not pass verification.) C:\WINDOWS\system32\winlogon.exe => File is digitally signed C:\WINDOWS\system32\wininit.exe => File is digitally signed C:\WINDOWS\explorer.exe => File is digitally signed C:\WINDOWS\SysWOW64\explorer.exe => File is digitally signed C:\WINDOWS\system32\svchost.exe => File is digitally signed C:\WINDOWS\SysWOW64\svchost.exe => File is digitally signed C:\WINDOWS\system32\services.exe => File is digitally signed C:\WINDOWS\system32\User32.dll => File is digitally signed C:\WINDOWS\SysWOW64\User32.dll => File is digitally signed C:\WINDOWS\system32\userinit.exe => File is digitally signed C:\WINDOWS\SysWOW64\userinit.exe => File is digitally signed C:\WINDOWS\system32\rpcss.dll => File is digitally signed C:\WINDOWS\system32\dnsapi.dll => File is digitally signed C:\WINDOWS\SysWOW64\dnsapi.dll => File is digitally signed C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed LastRegBack: 2015-09-15 12:37 ==================== End of FRST.txt ============================ |
25.09.2015, 18:18 | #10 |
/// the machine /// TB-Ausbilder | Win8, versendet Spam-Emails, Malwarebytes findet vers. PUP+AdWare Funde entfernen wir jetzt. Java updaten. Drücke bitte die Windowstaste + R Taste und schreibe notepad in das Ausführen Fenster. Kopiere nun folgenden Text aus der Code-Box in das leere Textdokument Code:
ATTFilter C:\Users\B\Downloads\dffsetup-mfc100u.exe C:\Users\B\Downloads\FLVPlayer-Chrome (1).exe C:\Users\B\Downloads\FLVPlayer-Chrome.exe Emptytemp: Speichere diese bitte als Fixlist.txt auf deinem Desktop (oder dem Verzeichnis in dem sich FRST befindet).
Cleanup: (Die Reihenfolge ist hier entscheidend) Falls Defogger verwendet wurde: Erneut starten und auf Re-enable klicken. Falls Combofix verwendet wurde: Combofix deinstallieren .
Alle Logs gepostet? Dann lade Dir bitte DelFix herunter.
Hinweis: DelFix entfernt u.a. alle verwendeten Programme, die Quarantäne unserer Scanner, den Java-Cache und löscht sich abschließend selbst. Starte Deinen Rechner abschließend neu. Sollten jetzt noch Programme aus unserer Bereinigung übrig sein, kannst Du diese bedenkenlos löschen. Wenn Du möchtest, kannst Du hier sagen, ob Du mit mir und meiner Hilfe zufrieden warst...und/oder das Forum mit einer kleinen Spende unterstützen. Absicherung: Beim Betriebsystem Windows die automatischen Updates aktivieren. Auch die sicherheitsrelevante Software sollte immer nur in der aktuellsten Version vorliegen: Browser Java Flash-Player PDF-Reader Sicherheitslücken in deren alten Versionen werden dazu ausgenutzt, um beim einfachen Besuch einer manipulierten Website per "Drive-by" Malware zu installieren. Ich empfehle z.B. die Verwendung von Mozilla Firefox statt des Internet Explorers. Zudem lassen sich mit dem Firefox auch PDF-Dokumente öffnen. Aktiviere eine Firewall. Die in Windows integrierte genügt im Normalfall völlig. Verwende ein Antivirusprogramm mit Echtzeitscanner und stets aktueller Signaturendatenbank. Meine Empfehlung: Emsisoft Zusätzlich kannst Du Deinen PC regelmäßig mit Malwarebytes Anti-Malware und ESET scannen. Optional: NoScript verhindert das Ausführen von aktiven Inhalten (Java, JavaScript, Flash,...) für sämtliche Websites. Man kann aber nach dem Prinzip einer Whitelist festlegen, auf welchen Seiten Scripts erlaubt werden sollen. Malwarebytes Anti Exploit: Schützt die Anwendungen des Computers vor der Ausnutzung bekannter Schwachstellen. Lade Software von einem sauberen Portal wie . Wähle beim Installieren von Software immer die benutzerdefinierte Option und entferne den Haken bei allen optional angebotenen Toolbars oder sonstigen, fürs Programm, irrelevanten Ergänzungen. Um Adware wieder los zu werden, empfiehlt sich zunächst die Deinstallation sowie die anschließende Resteentfernung mit Adwarecleaner . Abschließend noch ein paar grundsätzliche Bemerkungen: Ändere regelmäßig Deine wichtigen Online-Passwörter und erstelle regelmäßig Backups Deiner wichtigen Dateien oder des Systems. Der Nutzen von Registry-Cleanern, Optimizern usw. zur Performancesteigerung ist umstritten. Ich empfehle deshalb, die Finger von der Registry zu lassen und lieber die windowseigene Datenträgerbereinigung zu verwenden.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |