|
Plagegeister aller Art und deren Bekämpfung: Win7: Programme/Dienste lassen sich nicht starten + Help_Decrypt BefallWindows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
13.11.2015, 21:31 | #1 |
| Win7: Programme/Dienste lassen sich nicht starten + Help_Decrypt Befall Hallo, seit einer Weile funktionieren manche Dinge mit seltsamer Fehlermeldung nicht mehr, wie z.B. Windows Update/MS Net.framework: kein installierter Dienst oder auch Malwarebytes verhindert durch Gruppenrichtlinie. Da ich hier trotz laut AVG sauberem Rechner starken Befall vermute, wollte ich die Platte dieses WE eigentlich formatieren. Doch nun, gerade als ich die Daten sichern wollte, bemerkte ich die Help_Decrypt Files, die erst seit heute drauf sein können, und habe diesen Thread gelesen: http://www.trojaner-board.de/165660-...erstellen.html der mir wenig Hoffnung gemacht hat. Immerhin habe ich Win7, aber kein Wissen über "Schattenkopien / VSS System". Außerdem habe ich hier hxxp://dieviren.de/help_decrypt/ gelesen, dass man nach Entfernung ein Datenwiederherstellungsprogramm nutzen soll und zum anderen dass dieses Cryptowall eine Popup Nachricht sendet wenn alles verschlüsselt wurde. Die habe ich nicht bekommen, weshalb ich dachte, dass es vielleicht noch läuft und ich noch was retten kann, oder ist das längst durch? Ich habe zumindest nach erstem Durschauen einer beträchtlichen Masse von Daten, festgestellt, dass .doc, .xls, .pdf und .jpg alle betroffen sind, während die Videos alle noch funktionieren (AVCHD/.mts). Außerdem geht das wichtigste .xls File von allen noch, vermutlich weil es zum Zeitpunkt des Befalls geöffnet war. Das bringt mich zu der Annahme, dass der Befall sich nicht mehr ändert. Ich als Laie kann mich aber auch gut irren und wüsste deshalb gern wie ich nun am besten weiter vorgehe, und habe deshalb noch nicht den 2. Schritt der Anleitung ausgeführt weil ich nichts verändern wollte. Ich könnte die noch lesbaren Videos jetzt sichern, aber sichere ich damit nicht evtl auch den Befall? Denn auch in deren Ordner liegen die Help_Decrypt Files. Weiterhin noch der Hinweis, dass ich diesen (einzigen) Rechner auch für mein Einzelgewerbe nutze. Ich bin aber kein größeres Unternehmen mit einem IT System, und es befinden sich auch keine sensiblen Kundendaten wie Emailadresse oder Bankverbindungen auf meinem Rechner, lediglich Monatsberichte von ebay etc die Benutzernamen und Verkaufszahlen enthalten. Liebe Grüße Geändert von GS81 (13.11.2015 um 22:22 Uhr) |
14.11.2015, 11:19 | #2 |
/// the machine /// TB-Ausbilder | Win7: Programme/Dienste lassen sich nicht starten + Help_Decrypt Befall hi,
__________________eine Entschlüsselung ist nicht möglich. Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST 32-Bit | FRST 64-Bit (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
__________________ |
14.11.2015, 17:08 | #3 |
| Win7: Programme/Dienste lassen sich nicht starten + Help_Decrypt Befall Hi,
__________________danke für die Antwort. Kannst Du mir, bevor wir gern mit der Prozerdur beginnen, noch sagen - was es mit diesen Schattenkopien auf sich hat - ob ich die funktionierenden Dateien gefahrlos sichern kann oder ergibt sich das im Laufe/nach der Reinigung und den funktionierenden Dateien kann dadurch eh nichts passieren? Ich habe inzwischen festgestellt, dass die funktionierenden Videoordner wohl nur die Help_Decrypt Infofiles enthalten, weil dort auch vereinzelte mit der Cam gemachte Fotos drin sind. Und offenbar sind nur Ordner mit bestimmten Namen (Eigene Dateien, Eigene Videos, Backup, usw) auf meiner Datenpartition betroffen, seltsamerweise der gesamte Benutzerordner auf C: aber nicht. Ich vermute den Virus trotzdem auf C:/../Temp o.ä., da alles was AVG zu dem Zeitpunkt gefunden (und angeblich gesichert hat) dort war. Beim späteren neuen Start des Rechners hat es im Übrigen noch eine böse .exe gefunden, das war aber laut Zeitstempel nach der Verschlüsselung. |
15.11.2015, 06:49 | #4 |
/// the machine /// TB-Ausbilder | Win7: Programme/Dienste lassen sich nicht starten + Help_Decrypt Befall Malware ist immer nur auf der Partition, auf der auch Windows installiert wird. Was die von da aus macht ist dann eben unterschiedlich. Es kann sein dass die Malware vom AV Programm irgendwann geblockt wurde, daher keine Message. Fakt ist aber: Was bereits verschlüsselt ist, bleibt verschlüsselt. Was genau meinst Du mit Schattenkopien? ne kurze Google Suche sollte dir ja zeigen wie man die nutzt bzw wie man sieht ob es bei dir noch Schattenkopien gibt. Was bis jetzt nicht verschlüsselt ist würde ich schleunigst sichern.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
15.11.2015, 08:57 | #5 |
| Win7: Programme/Dienste lassen sich nicht starten + Help_Decrypt Befall Moin, also das mit den Schattenkopien kann ich vergessen, da die standardmäßig nur für C: erstellt werden und die relevanten Daten dort trotz dubioser Datei "OqxVgYWvgQ" auf meinem Desktop noch lesbar sind. Ich würd ja, wenn ich eh nichts wiederherstellen kann formatieren, aber das Toshiba Program zum Erstellen des Recoverymediums startet auch nicht mehr.. Also legen wir los. Habe FRST ausgeführt und beim Überfliegen einige Ungereimtheiten (und auch Dinge die ich noch nie oder ewig nicht genutzt habe) entdeckt. Was definitiv fremd ist hab ich mal fett gedruckt (sag Bescheid wenn ich das lassen soll) und dabei auch gemerkt dass die "88d3ec48.exe", die AVG erst am Freitag um 17:05 entdeckt/gemeldet hat, bereits 12h vorher, zum Zeitpunkt des Befalls, da war und vermutlich die Ursache für die Verschlüsselung ist. Für die anderen Probleme sind die Ursachen älter. Hier die Logs: Code:
ATTFilter Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version:07-11-2015 durchgeführt von DJ Dolphin (Administrator) auf WAVEMASTER (15-11-2015 08:59:20) Gestartet von C:\Users\DJ Dolphin\Desktop Geladene Profile: DJ Dolphin (Verfügbare Profile: DJ Dolphin & Gast) Platform: Windows 7 Home Premium (X64) Sprache: Deutsch (Deutschland) Internet Explorer Version 9 (Standard-Browser: IE) Start-Modus: Normal Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Prozesse (Nicht auf der Ausnahmeliste) ================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.) (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgrsa.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgcsrva.exe (Microsoft Corporation) C:\Windows\System32\wlanext.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgidsagent.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgwdsvcx.exe (Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\avp.exe () C:\ProgramData\DatacardService\DCService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Nero AG) C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer3\TeamViewer_Service.exe (TOSHIBA Corporation) C:\Windows\System32\ThpSrv.exe (TOSHIBA Corporation) C:\Windows\System32\TODDSrv.exe (TOSHIBA Corporation) C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe (TOSHIBA Corporation) C:\Program Files\TOSHIBA\TECO\TecoService.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesService64.exe (Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgnsa.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgemca.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesApp64.exe (Huawei Technologies Co., Ltd.) C:\ProgramData\DatacardService\DCSHelper.exe (Toshiba Europe GmbH) C:\Program Files (x86)\Toshiba TEMPRO\TemproTray.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (TOSHIBA Corporation) C:\Program Files\TOSHIBA\Power Saver\TPwrMain.exe (TOSHIBA Corporation) C:\Program Files\TOSHIBA\SmoothView\SmoothView.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe (TOSHIBA Corporation) C:\Program Files\TOSHIBA\FlashCards\TCrdMain.exe (TOSHIBA Corporation) C:\Program Files\TOSHIBA\TECO\Teco.exe (TOSHIBA Corporation) C:\Windows\System32\ThpSrv.exe (Toshiba Europe GmbH) C:\Program Files\TOSHIBA\Registration\ToshibaReminder.exe (TOSHIBA CORPORATION) C:\Program Files (x86)\TOSHIBA\ConfigFree\NDSTray.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Intel Corporation) C:\Windows\System32\igfxext.exe (Intel Corporation) C:\Windows\System32\igfxsrvc.exe (Nero AG) C:\Program Files (x86)\Nero\Nero BackItUp & Burn\Nero BackItUp\NBAgent.exe (TOSHIBA CORPORATION) C:\Program Files (x86)\TOSHIBA\Bluetooth Toshiba Stack\ItSecMng.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Framework\Common\avguix.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgui.exe (TOSHIBA CORPORATION) C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSwMgr.exe (TOSHIBA CORPORATION) C:\Program Files (x86)\TOSHIBA\ConfigFree\CFIWmxSvcs64.exe (TOSHIBA CORPORATION) C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSvcs.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (TOSHIBA Corporation) C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe (TOSHIBA Corporation) C:\Program Files\TOSHIBA\TPHM\TPCHSrv.exe (TOSHIBA Corporation) C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSENotify.exe (TOSHIBA Corporation) C:\Program Files\TOSHIBA\TPHM\TPCHWMsg.exe (Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe ==================== Registry (Nicht auf der Ausnahmeliste) =========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.) HKLM\...\Run: [Toshiba TEMPRO] => C:\Program Files (x86)\Toshiba TEMPRO\TemproTray.exe [1050072 2010-05-11] (Toshiba Europe GmbH) HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [10144288 2010-04-06] (Realtek Semiconductor) HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2107176 2010-03-11] (Synaptics Incorporated) HKLM\...\Run: [TPwrMain] => C:\Program Files\TOSHIBA\Power Saver\TPwrMain.EXE [505768 2010-05-25] (TOSHIBA Corporation) HKLM\...\Run: [HSON] => C:\Program Files\TOSHIBA\TBS\HSON.exe [52600 2009-03-09] (TOSHIBA Corporation) HKLM\...\Run: [SmoothView] => C:\Program Files\Toshiba\SmoothView\SmoothView.exe [570680 2009-08-13] (TOSHIBA Corporation) HKLM\...\Run: [00TCrdMain] => C:\Program Files\TOSHIBA\FlashCards\TCrdMain.exe [915320 2010-05-10] (TOSHIBA Corporation) HKLM\...\Run: [Teco] => C:\Program Files\TOSHIBA\TECO\Teco.exe [1504608 2010-04-23] (TOSHIBA Corporation) HKLM\...\Run: [TosSENotify] => C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosWaitSrv.exe [709976 2010-02-05] (TOSHIBA Corporation) HKLM\...\Run: [ThpSrv] => C:\Windows\system32\thpsrv /logon HKLM\...\Run: [TosWaitSrv] => C:\Program Files\TOSHIBA\TPHM\TosWaitSrv.exe [705432 2010-05-10] (TOSHIBA Corporation) HKLM\...\Run: [TosVolRegulator] => C:\Program Files\TOSHIBA\TosVolRegulator\TosVolRegulator.exe [24376 2009-11-11] (TOSHIBA Corporation) HKLM\...\Run: [Toshiba Registration] => C:\Program Files\Toshiba\Registration\ToshibaReminder.exe [136136 2010-04-19] (Toshiba Europe GmbH) HKLM-x32\...\Run: [NBAgent] => c:\Program Files (x86)\Nero\Nero BackItUp & Burn\Nero BackItUp\NBAgent.exe [1086760 2010-03-09] (Nero AG) HKLM-x32\...\Run: [TOSDCR] => C:\Program Files (x86)\TOSHIBA\PasswordUtility\TOSDCR.exe [169296 2007-08-28] () HKLM-x32\...\Run: [TWebCamera] => C:\Program Files (x86)\TOSHIBA\TOSHIBA Web Camera Application\TWebCamera.exe [2454840 2010-05-01] (TOSHIBA CORPORATION.) HKLM-x32\...\Run: [ITSecMng] => C:\Program Files (x86)\TOSHIBA\Bluetooth Toshiba Stack\ItSecMng.exe [83336 2009-07-22] (TOSHIBA CORPORATION) HKLM-x32\...\Run: [TSleepSrv] => C:\Program Files (x86)\TOSHIBA\TOSHIBA Sleep Utility\TSleepSrv.exe [252728 2010-04-01] (TOSHIBA) HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [59720 2013-04-21] (Apple Inc.) HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [31016 2006-10-27] (Microsoft Corporation) HKLM-x32\...\Run: [AvgUi] => C:\Program Files (x86)\AVG\Framework\Common\avguix.exe [1130408 2015-10-16] (AVG Technologies CZ, s.r.o.) HKLM-x32\...\Run: [AVG_UI] => C:\Program Files (x86)\AVG\Av\avgui.exe [3826600 2015-10-30] (AVG Technologies CZ, s.r.o.) HKLM Group Policy restriction on software: C:\Program Files (x86)\Malwarebytes' Anti-Malware <====== ACHTUNG HKLM Group Policy restriction on software: C:\Documents and Settings\All Users\Application Data\Malwarebytes <====== ACHTUNG HKLM Group Policy restriction on software: C:\Program Files (x86)\Kaspersky Lab <====== ACHTUNG HKLM Group Policy restriction on software: C:\Documents and Settings\All Users\Application Data\Kaspersky Lab <====== ACHTUNG Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation) HKLM\...\Policies\Explorer: [NoControlPanel] 0 HKU\S-1-5-21-2290779612-799622330-4084932457-1000\...\Run: [ICQ] => C:\Program Files (x86)\ICQ7.6\ICQ.exe [127040 2011-10-10] (ICQ, LLC.) HKU\S-1-5-21-2290779612-799622330-4084932457-1000\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3696912 2014-03-04] (Disc Soft Ltd) HKU\S-1-5-21-2290779612-799622330-4084932457-1000\...\Policies\Explorer: [HideSCAHealth] 1 HKU\S-1-5-21-2290779612-799622330-4084932457-1000\...\MountPoints2: F - F:\AutoRun.exe HKU\S-1-5-21-2290779612-799622330-4084932457-1000\...\MountPoints2: {08969144-c7ff-11e3-9a3a-e839df3764ca} - F:\SETUP.EXE HKU\S-1-5-21-2290779612-799622330-4084932457-1000\...\MountPoints2: {3584fd9c-6b96-11e1-a44c-002318c83391} - F:\SETUP.EXE HKU\S-1-5-21-2290779612-799622330-4084932457-1000\...\MountPoints2: {51d3d686-9d8a-11e0-94c6-001e101fa1f5} - F:\AutoRun.exe HKU\S-1-5-21-2290779612-799622330-4084932457-1000\...\MountPoints2: {98cbb87a-9d05-11e0-bfb1-002318c83391} - F:\AutoRun.exe HKU\S-1-5-21-2290779612-799622330-4084932457-1000\...\MountPoints2: {98cbb88c-9d05-11e0-bfb1-002318c83391} - F:\AutoRun.exe HKU\S-1-5-21-2290779612-799622330-4084932457-1000\...0c966feabec1\InprocServer32: [Default-shell32] C:\Users\DJ Dolphin\AppData\Local\{f33a9fd9-8bab-5d8d-0aa8-d6b57861b4a7}\n.ACHTUNG! ====> ZeroAccess/Alureon? HKU\S-1-5-21-2290779612-799622330-4084932457-1000\...409d6c4515e9\InprocServer32: [Default-shell32] C:\$Recycle.Bin\S-1-5-21-2290779612-799622330-4084932457-1000\$f33a9fd98bab5d8d0aa8d6b57861b4a7\n.ACHTUNG! ====> ZeroAccess? HKU\S-1-5-18\...\Run: [TOSHIBA Online Product Information] => C:\Program Files (x86)\TOSHIBA\TOSHIBA Online Product Information\topi.exe [4581280 2010-03-03] (TOSHIBA) Startup: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\TRDCReminder.lnk [2010-06-08] ShortcutTarget: TRDCReminder.lnk -> C:\Program Files (x86)\TOSHIBA\TRDCReminder\TRDCReminder.exe (TOSHIBA Europe) Startup: C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\TRDCReminder.lnk [2010-06-08] ShortcutTarget: TRDCReminder.lnk -> C:\Program Files (x86)\TOSHIBA\TRDCReminder\TRDCReminder.exe (TOSHIBA Europe) ==================== Internet (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.) Tcpip\Parameters: [DhcpNameServer] 192.168.178.1 Tcpip\..\Interfaces\{008C72E9-AED1-42EC-AC7B-44109F03D9B3}: [NameServer] 193.189.244.225 193.189.244.206 Tcpip\..\Interfaces\{01A8C316-0DD0-450A-8546-EC410E51E72E}: [NameServer] 193.189.244.225 193.189.244.206 Tcpip\..\Interfaces\{D90834D8-2216-4093-B695-FD8551D08914}: [DhcpNameServer] 192.168.178.1 Tcpip\..\Interfaces\{FF0CBC07-64D7-4841-B6C9-E10BAB31C86D}: [DhcpNameServer] 192.168.178.1 Internet Explorer: ================== HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.com HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://toshiba.msn.com HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://toshiba.msn.com HKU\S-1-5-21-2290779612-799622330-4084932457-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://toshiba.msn.com/ HKU\S-1-5-21-2290779612-799622330-4084932457-1000\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://toshiba.msn.com SearchScopes: HKLM -> DefaultScope {E39C11DC-F612-45BF-9503-C474AB02C80B} URL = hxxp://www.bing.com/search?q={searchTerms}&form=TSHMDF&pc=MATM&src=IE-SearchBox SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKLM -> {E39C11DC-F612-45BF-9503-C474AB02C80B} URL = hxxp://www.bing.com/search?q={searchTerms}&form=TSHMDF&pc=MATM&src=IE-SearchBox SearchScopes: HKLM-x32 -> DefaultScope {F22327E2-9ADE-4944-8D9C-47781C53DF16} URL = SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKLM-x32 -> {8983339A-BF46-4E86-8035-2B5E03A29E7C} URL = hxxp://www.bing.com/search?q={searchTerms}&form=TSHMDF&pc=MATM&src=IE-SearchBox SearchScopes: HKU\.DEFAULT -> DefaultScope {6F9A75E1-B207-4A69-9489-01784D417B54} URL = hxxp://rover.ebay.com/rover/1/707-44556-9400-9/4?satitle={searchTerms} SearchScopes: HKU\.DEFAULT -> {6F9A75E1-B207-4A69-9489-01784D417B54} URL = hxxp://rover.ebay.com/rover/1/707-44556-9400-9/4?satitle={searchTerms} SearchScopes: HKU\.DEFAULT -> {E2665FF6-45BE-4783-B9AA-E4DFFF3D2781} URL = hxxp://www.amazon.de/gp/search?ie=UTF8&keywords={searchTerms}&tag=tochibade-win7-ie-search-21&index=blended&linkCode=ur2 SearchScopes: HKU\S-1-5-21-2290779612-799622330-4084932457-1000 -> {171DEBEB-C3D4-40b7-AC73-056A5EBA4A7E} URL = SearchScopes: HKU\S-1-5-21-2290779612-799622330-4084932457-1000 -> {8983339A-BF46-4E86-8035-2B5E03A29E7C} URL = BHO: Content Blocker Plugin -> {03C04F0A-E2A3-4F7F-BA30-BFA06FFD1358} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\x64\IEExt\ie_plugin.dll [2014-08-30] (Kaspersky Lab ZAO) BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18] (Microsoft Corporation) BHO: Virtual Keyboard Plugin -> {B5D5BB14-C8E2-478D-9C97-574AC10AF9E8} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\x64\IEExt\ie_plugin.dll [2014-08-30] (Kaspersky Lab ZAO) BHO: Safe Money Plugin -> {E3D96E85-529D-4269-AC6A-97CF9E2221E3} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\x64\IEExt\ie_plugin.dll [2014-08-30] (Kaspersky Lab ZAO) BHO-x32: Content Blocker Plugin -> {03C04F0A-E2A3-4F7F-BA30-BFA06FFD1358} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\IEExt\ie_plugin.dll [2014-08-30] (Kaspersky Lab ZAO) BHO-x32: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2012-12-18] (Adobe Systems Incorporated) BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2006-10-27] (Microsoft Corporation) BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_31\bin\ssv.dll [2015-02-05] (Oracle Corporation) BHO-x32: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18] (Microsoft Corporation) BHO-x32: Skype add-on for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2010-02-08] (Skype Technologies S.A.) BHO-x32: Virtual Keyboard Plugin -> {B5D5BB14-C8E2-478D-9C97-574AC10AF9E8} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\IEExt\ie_plugin.dll [2014-08-30] (Kaspersky Lab ZAO) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_31\bin\jp2ssv.dll [2015-02-05] (Oracle Corporation) BHO-x32: Safe Money Plugin -> {E3D96E85-529D-4269-AC6A-97CF9E2221E3} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\IEExt\ie_plugin.dll [2014-08-30] (Kaspersky Lab ZAO) BHO-x32: TOSHIBA Media Controller Plug-in -> {F3C88694-EFFA-4d78-B409-54B7B2535B14} -> C:\Program Files (x86)\TOSHIBA\TOSHIBA Media Controller Plug-in\TOSHIBAMediaControllerIE.dll [2010-03-19] (<TOSHIBA>) Toolbar: HKU\S-1-5-21-2290779612-799622330-4084932457-1000 -> Kein Name - {D4027C7F-154A-4066-A1AD-4243D8127440} - Keine Datei Toolbar: HKU\S-1-5-21-2290779612-799622330-4084932457-1000 -> Kein Name - {043C5167-00BB-4324-AF7E-62013FAEDACF} - Keine Datei DPF: HKLM-x32 {000F1EA4-5E08-4564-A29B-29076F63A37A} hxxp://launch.soe.com/plugin/web/SOEWebInstaller.cab DPF: HKLM-x32 {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} hxxp://appldnld.apple.com.edgesuite.net/content.info.apple.com/QuickTime/qtactivex/qtplugin.cab DPF: HKLM-x32 {67DABFBF-D0AB-41FA-9C46-CC0F21721616} hxxp://download.divx.com/player/DivXBrowserPlugin.cab DPF: HKLM-x32 {D27CDB6E-AE6D-11CF-96B8-444553540000} hxxp://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab Handler-x32: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.14.0.8089.0726.dll [2009-07-26] (Microsoft Corporation) Handler-x32: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.14.0.8089.0726.dll [2009-07-26] (Microsoft Corporation) Handler-x32: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2010-02-08] (Skype Technologies S.A.) Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll [2010-02-22] (Skype Technologies) FireFox: ======== FF ProfilePath: C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default FF DefaultSearchEngine: FileConverter 1.3 Customized Web Search FF SearchEngineOrder.1: Web Search FF SelectedSearchEngine: FileConverter 1.3 Customized Web Search FF Homepage: hxxp://search.conduit.com/?CUI=UN86327238471420886&ctid=CT3241949&SearchSource=13 FF Keyword.URL: hxxp://trovi.com/ResultsExt.aspx?ctid=CT3241949&SearchSource=2&CUI=UN86327238471420886&UM=false&q= FF NetworkProxy: "type", 0 FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_11_4_402_287.dll [2012-10-10] () FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_4_402_287.dll [2012-10-10] () FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2011-06-20] (Foxit Corporation) FF Plugin-x32: @Google.com/GoogleEarthPlugin -> C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll [2013-10-07] (Google) FF Plugin-x32: @java.com/DTPlugin,version=11.31.2 -> C:\Program Files (x86)\Java\jre1.8.0_31\bin\dtplugin\npDeployJava1.dll [2015-02-05] (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.31.2 -> C:\Program Files (x86)\Java\jre1.8.0_31\bin\plugin2\npjp2.dll [2015-02-05] (Oracle Corporation) FF Plugin-x32: @kaspersky.com/content_blocker_6418E0D362104DADA084DC312DFA8ABC -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\FFExt\content_blocker@kaspersky.com [2014-12-17] () FF Plugin-x32: @kaspersky.com/online_banking_69A4E213815F42BD863D889007201D82 -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\FFExt\online_banking@kaspersky.com [2014-12-17] () FF Plugin-x32: @kaspersky.com/virtual_keyboard_294FF26A1D5B455495946778FDE7CEDB -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\FFExt\virtual_keyboard@kaspersky.com [2014-12-17] () FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\3.0.40818.0\npctrl.dll [2009-08-17] ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=14.0.8081.0709 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2009-07-10] (Microsoft Corporation) FF Plugin-x32: @real.com/nppl3260;version=6.0.12.448 -> C:\Program Files (x86)\Win7codecs\rm\browser\plugins\nppl3260.dll [2010-02-04] (RealNetworks, Inc.) FF Plugin-x32: @real.com/nprpjplug;version=6.0.12.448 -> C:\Program Files (x86)\Win7codecs\rm\browser\plugins\nprpjplug.dll [2010-02-04] (RealNetworks, Inc.) FF Plugin-x32: @soe.sony.com/installer,version=1.0.3 -> C:\Windows\Downloaded Program Files\npsoe.dll [2011-06-09] () FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.28.15\npGoogleUpdate3.dll [2015-10-12] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.28.15\npGoogleUpdate3.dll [2015-10-12] (Google Inc.) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll [2012-12-18] (Adobe Systems Inc.) FF user.js: detected! => C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\user.js [2012-08-23] FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\NPOFF12.DLL [2006-10-26] (Microsoft Corporation) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nppdf32.dll [2012-12-18] (Adobe Systems Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin.dll [2013-09-02] (Apple Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin2.dll [2013-09-02] (Apple Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin3.dll [2013-09-02] (Apple Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin4.dll [2013-09-02] (Apple Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin5.dll [2013-09-02] (Apple Inc.) FF SearchPlugin: C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\searchplugins\fileconverter-13-customized-web-search-1.xml [2015-07-13] FF SearchPlugin: C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\searchplugins\fileconverter-13-customized-web-search.xml [2012-11-09] FF SearchPlugin: C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\searchplugins\startsear.xml [2012-02-27] FF Extension: FileConverter 1.3 - C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\Extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee} [2015-10-12] [ist nicht signiert] FF Extension: BrowseMark - C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\Extensions\{b99c8534-7800-48fa-bd71-519a46cdc7e1}.xpi [2014-04-12] [ist nicht signiert] FF Extension: Greasemonkey - C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\Extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}.xpi [2015-10-11] FF HKLM-x32\...\Firefox\Extensions: [content_blocker_6418E0D362104DADA084DC312DFA8ABC@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\FFExt\content_blocker@kaspersky.com FF Extension: Dangerous Websites Blocker - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\FFExt\content_blocker@kaspersky.com [2014-12-17] [ist nicht signiert] FF HKLM-x32\...\Firefox\Extensions: [virtual_keyboard_294FF26A1D5B455495946778FDE7CEDB@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\FFExt\virtual_keyboard@kaspersky.com FF Extension: Virtual Keyboard - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\FFExt\virtual_keyboard@kaspersky.com [2014-12-17] [ist nicht signiert] FF HKLM-x32\...\Firefox\Extensions: [online_banking_69A4E213815F42BD863D889007201D82@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\FFExt\online_banking@kaspersky.com FF Extension: Safe Money - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\FFExt\online_banking@kaspersky.com [2014-12-17] [ist nicht signiert] Chrome: ======= CHR HKLM-x32\...\Chrome\Extension: [dbhjdbfgekjfcfkkfjjmlmojhbllhbho] - hxxps://chrome.google.com/webstore/detail/dbhjdbfgekjfcfkkfjjmlmojhbllhbho ==================== Dienste (Nicht auf der Ausnahmeliste) ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) S3 AvgAMPS; C:\Program Files (x86)\AVG\Av\avgamps.exe [595376 2015-10-30] (AVG Technologies CZ, s.r.o.) R2 AVGIDSAgent; C:\Program Files (x86)\AVG\Av\avgidsagent.exe [3815648 2015-10-30] (AVG Technologies CZ, s.r.o.) R2 avgsvc; C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe [1046952 2015-10-16] (AVG Technologies CZ, s.r.o.) R2 avgwd; C:\Program Files (x86)\AVG\Av\avgwdsvcx.exe [579776 2015-10-30] (AVG Technologies CZ, s.r.o.) R2 AVP15.0.1; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\avp.exe [234520 2014-08-30] (Kaspersky Lab ZAO) R2 DCService.exe; C:\ProgramData\DatacardService\DCService.exe [229376 2010-05-08] () [Datei ist nicht signiert] R2 TeamViewer; C:\Program Files (x86)\TeamViewer3\TeamViewer_Service.exe [181544 2008-09-25] (TeamViewer GmbH) S3 TemproMonitoringService; C:\Program Files (x86)\Toshiba TEMPRO\TemproSvc.exe [124368 2010-05-11] (Toshiba Europe GmbH) R2 TuneUp.UtilitiesSvc; C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesService64.exe [4368808 2015-10-14] (AVG Technologies CZ, s.r.o.) ===================== Treiber (Nicht auf der Ausnahmeliste) ========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R1 Avgdiska; C:\Windows\System32\DRIVERS\avgdiska.sys [197040 2015-08-10] (AVG Technologies CZ, s.r.o.) R1 AVGIDSDriver; C:\Windows\System32\DRIVERS\avgidsdrivera.sys [313776 2015-10-19] (AVG Technologies CZ, s.r.o.) R0 AVGIDSHA; C:\Windows\System32\DRIVERS\avgidsha.sys [298416 2015-08-20] (AVG Technologies CZ, s.r.o.) R1 Avgldx64; C:\Windows\System32\DRIVERS\avgldx64.sys [284080 2015-10-21] (AVG Technologies CZ, s.r.o.) R0 Avgloga; C:\Windows\System32\DRIVERS\avgloga.sys [398256 2015-08-14] (AVG Technologies CZ, s.r.o.) R0 Avgmfx64; C:\Windows\System32\DRIVERS\avgmfx64.sys [255408 2015-10-21] (AVG Technologies CZ, s.r.o.) R0 Avgrkx64; C:\Windows\System32\DRIVERS\avgrkx64.sys [42416 2015-08-10] (AVG Technologies CZ, s.r.o.) R1 Avgtdia; C:\Windows\System32\DRIVERS\avgtdia.sys [302000 2015-10-08] (AVG Technologies CZ, s.r.o.) R0 cm_km_w; C:\Windows\System32\DRIVERS\cm_km_w.sys [238288 2013-01-14] (Kaspersky Lab UK Ltd) R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283064 2014-04-20] (Disc Soft Ltd) S3 ebdrv; C:\Windows\system32\DRIVERS\evbda.sys [3286016 2009-06-10] (Broadcom Corporation) S3 ewusbnet; C:\Windows\System32\DRIVERS\ewusbnet.sys [250368 2010-04-07] (Huawei Technologies Co., Ltd.) R0 kl1; C:\Windows\System32\DRIVERS\kl1.sys [468576 2014-03-31] (Kaspersky Lab ZAO) R2 kldisk; C:\Windows\System32\DRIVERS\kldisk.sys [46144 2014-07-02] (Kaspersky Lab ZAO) R3 klflt; C:\Windows\System32\DRIVERS\klflt.sys [150536 2014-08-18] (Kaspersky Lab ZAO) R1 klhk; C:\Windows\System32\DRIVERS\klhk.sys [246456 2014-08-12] (Kaspersky Lab ZAO) R1 KLIF; C:\Windows\System32\DRIVERS\klif.sys [820232 2014-08-20] (Kaspersky Lab ZAO) R1 KLIM6; C:\Windows\System32\DRIVERS\klim6.sys [30304 2014-02-25] (Kaspersky Lab ZAO) R3 klkbdflt; C:\Windows\System32\DRIVERS\klkbdflt.sys [28768 2014-03-28] (Kaspersky Lab ZAO) R3 klmouflt; C:\Windows\System32\DRIVERS\klmouflt.sys [29280 2013-08-08] (Kaspersky Lab ZAO) R1 klpd; C:\Windows\System32\DRIVERS\klpd.sys [15456 2013-04-12] (Kaspersky Lab ZAO) R1 kltdi; C:\Windows\System32\DRIVERS\kltdi.sys [55872 2014-06-05] (Kaspersky Lab ZAO) R1 Klwtp; C:\Windows\System32\DRIVERS\klwtp.sys [74424 2014-08-13] (Kaspersky Lab ZAO) R1 kneps; C:\Windows\System32\DRIVERS\kneps.sys [179776 2014-07-09] (Kaspersky Lab ZAO) S3 pfc; C:\Windows\SysWOW64\drivers\pfc.sys [14604 2003-08-11] (Padus, Inc.) [Datei ist nicht signiert] R3 TuneUpUtilitiesDrv; C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesDriver64.sys [31144 2015-10-14] (TuneUp Software) S3 YMIDUSBW; C:\Windows\System32\drivers\ymidusbx64.sys [51496 2013-04-04] (Yamaha Corporation) ==================== NetSvcs (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Ein Monat: Erstellte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2015-11-15 08:59 - 2015-11-15 08:59 - 00028401 _____ C:\Users\DJ Dolphin\Desktop\FRST.txt 2015-11-15 08:59 - 2015-11-15 08:59 - 00000000 ____D C:\FRST 2015-11-15 08:58 - 2015-11-15 08:58 - 02198528 _____ (Farbar) C:\Users\DJ Dolphin\Desktop\FRST64.exe 2015-11-14 09:33 - 2015-11-15 03:54 - 00000543 _____ C:\Users\DJ Dolphin\Desktop\Schaden.txt 2015-11-13 07:18 - 2015-11-13 07:18 - 00009046 _____ C:\Users\DJ Dolphin\AppData\Local\Apps\HELP_DECRYPT.HTML 2015-11-13 07:18 - 2015-11-13 07:18 - 00004846 _____ C:\Users\DJ Dolphin\AppData\Local\Apps\HELP_DECRYPT.TXT 2015-11-13 07:18 - 2015-11-13 07:18 - 00000292 _____ C:\Users\DJ Dolphin\AppData\Local\Apps\HELP_DECRYPT.URL 2015-11-13 07:01 - 2015-11-13 07:01 - 00009046 _____ C:\ProgramData\HELP_DECRYPT.HTML 2015-11-13 07:01 - 2015-11-13 07:01 - 00004846 _____ C:\ProgramData\HELP_DECRYPT.TXT 2015-11-13 07:01 - 2015-11-13 07:01 - 00000292 _____ C:\ProgramData\HELP_DECRYPT.URL 2015-11-13 05:05 - 2015-11-13 05:05 - 00000000 _____ C:\Users\DJ Dolphin\AppData\Roaming\88d3ec48.exe 2015-11-13 04:08 - 2015-11-13 17:03 - 00000000 _____ C:\Windows\SysWOW64\OqxVgYWvgQ 2015-11-13 04:08 - 2015-11-13 05:04 - 00000000 _____ C:\Users\DJ Dolphin\Desktop\OqxVgYWvgQ 2015-11-13 04:08 - 2015-11-13 04:08 - 00265728 _____ C:\Users\DJ Dolphin\AppData\Roaming\88d3ec48.dll 2015-11-13 04:07 - 2015-11-13 17:05 - 00000000 ___HD C:\88d3ec482015-11-11 21:02 - 2015-11-11 21:02 - 00000398 _____ C:\CD-Laufwerk - Verknüpfung.lnk 2015-11-09 23:25 - 2015-11-09 23:25 - 00000000 _____ C:\Users\DJ Dolphin\Downloads\DHL-Marke-BFWC8F5CB7.pdf.nm4ozc9.partial 2015-11-08 06:15 - 2015-11-08 06:15 - 00000284 _____ C:\Users\DJ Dolphin\Desktop\C14 Reprints.txt 2015-11-04 19:16 - 2015-11-04 19:16 - 00000000 ____D C:\Users\Default\AppData\Roaming\TuneUp Software 2015-11-04 19:16 - 2015-11-04 19:16 - 00000000 ____D C:\Users\Default User\AppData\Roaming\TuneUp Software 2015-11-03 21:33 - 2015-11-09 20:20 - 00001222 _____ C:\Users\DJ Dolphin\Desktop\Karten.txt 2015-10-28 19:55 - 2015-11-05 06:34 - 00000078 _____ C:\Users\DJ Dolphin\Desktop\Demnächst erledigen.txt 2015-10-21 16:16 - 2015-10-21 16:16 - 00284080 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgldx64.sys 2015-10-21 16:15 - 2015-10-21 16:15 - 00255408 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgmfx64.sys 2015-10-21 03:55 - 2015-10-21 03:55 - 00431752 _____ () C:\Users\DJ Dolphin\Desktop\setup.exe 2015-10-21 02:09 - 2015-10-21 02:09 - 00002762 _____ C:\Windows\System32\Tasks\TuneUpUtilities_Task_BkGndMaintenance2013 2015-10-20 08:10 - 2015-10-20 08:10 - 00000000 _____ C:\Windows\setuperr.log 2015-10-20 05:14 - 2015-10-21 01:59 - 00003694 _____ C:\Windows\System32\Tasks\Adobe Reader and Acrobat Manager 2015-10-20 05:14 - 2015-10-20 05:14 - 00003704 _____ C:\Windows\System32\Tasks\Java Platform SE Auto Updater 2015-10-20 01:17 - 2015-10-20 01:17 - 00002233 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG PC TuneUp.lnk 2015-10-20 01:17 - 2015-10-20 01:17 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG PC TuneUp 2015-10-20 01:17 - 2015-10-14 11:05 - 00045992 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\TURegOpt.exe 2015-10-20 01:17 - 2015-10-14 10:59 - 00037288 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\authuitu.dll 2015-10-20 01:17 - 2015-10-14 10:59 - 00032680 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\SysWOW64\authuitu.dll 2015-10-19 08:03 - 2015-10-19 08:03 - 00313776 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgidsdrivera.sys 2015-10-18 07:49 - 2015-10-18 07:49 - 00004026 _____ C:\Users\DJ Dolphin\Desktop\virenlog.csv 2015-10-18 05:14 - 2015-10-20 01:16 - 00000000 ____D C:\Users\DJ Dolphin\AppData\Roaming\AVG 2015-10-18 05:13 - 2015-11-04 19:16 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG 2015-10-18 05:13 - 2015-10-18 05:13 - 00000000 ____D C:\Users\DJ Dolphin\AppData\Roaming\TuneUp Software 2015-10-18 05:13 - 2015-10-18 05:13 - 00000000 ____D C:\Program Files\Common Files\AV 2015-10-18 05:11 - 2015-11-13 04:09 - 00000000 ___HD C:\$AVG 2015-10-18 05:04 - 2015-11-13 05:12 - 00000000 ____D C:\ProgramData\Avg 2015-10-18 05:04 - 2015-10-20 01:16 - 00000000 ____D C:\Program Files (x86)\AVG 2015-10-18 04:59 - 2015-11-04 19:14 - 00000000 ____D C:\Users\DJ Dolphin\AppData\Local\Avg 2015-10-18 04:59 - 2015-10-20 01:16 - 00000000 ____D C:\Users\DJ Dolphin\AppData\Local\AvgSetupLog 2015-10-18 04:58 - 2015-11-15 07:23 - 00000000 ____D C:\ProgramData\MFAData 2015-10-18 04:58 - 2015-10-18 04:58 - 00000000 ____D C:\Users\DJ Dolphin\AppData\Local\MFAData 2015-10-18 04:58 - 2015-10-18 04:58 - 00000000 ____D C:\Users\DJ Dolphin\AppData\Local\Avg2015 2015-10-18 04:19 - 2015-10-18 04:22 - 00053276 _____ C:\Windows\iis7.log 2015-10-18 04:19 - 2015-10-18 04:20 - 00000000 ____D C:\inetpub 2015-10-18 02:27 - 2015-10-18 02:27 - 00063893 _____ C:\Users\DJ Dolphin\Downloads\NETFx4RTM.htm ==================== Ein Monat: Geänderte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2015-11-15 08:49 - 2010-10-23 11:37 - 02106679 _____ C:\Windows\WindowsUpdate.log 2015-11-15 08:34 - 2011-08-01 23:49 - 00001110 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2015-11-15 07:34 - 2011-08-01 23:49 - 00001106 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2015-11-15 01:04 - 2014-06-08 22:42 - 00044456 _____ C:\Windows\setupact.log 2015-11-15 01:03 - 2009-07-14 19:58 - 00751824 _____ C:\Windows\system32\perfh007.dat 2015-11-15 01:03 - 2009-07-14 19:58 - 00166766 _____ C:\Windows\system32\perfc007.dat 2015-11-15 01:03 - 2009-07-14 07:13 - 01746568 _____ C:\Windows\system32\PerfStringBackup.INI 2015-11-14 05:51 - 2011-06-20 21:52 - 00003519 _____ C:\Windows\ULEAD32.INI 2015-11-13 22:59 - 2011-06-20 21:51 - 00000000 ____D C:\Program Files (x86)\PhotoImpact 8 2015-11-13 17:10 - 2009-07-14 06:45 - 00016080 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2015-11-13 17:10 - 2009-07-14 06:45 - 00016080 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2015-11-13 17:01 - 2013-03-24 19:21 - 00000000 ____D C:\ProgramData\Kaspersky Lab 2015-11-13 17:01 - 2009-07-14 07:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2015-11-13 07:18 - 2014-12-27 02:22 - 00000000 ____D C:\Users\DJ Dolphin\AppData\Local\Battle.net 2015-11-13 07:18 - 2014-08-09 03:35 - 00000000 ____D C:\Users\DJ Dolphin\AppData\Local\Apps\2.0 2015-11-13 07:18 - 2013-12-25 09:20 - 00000000 ____D C:\Users\DJ Dolphin\AppData\Local\Blizzard Entertainment 2015-11-13 07:18 - 2010-06-08 13:49 - 00000000 ____D C:\Toshiba 2015-11-13 07:17 - 2014-04-20 04:20 - 00000000 ____D C:\Spiele 2015-11-13 07:17 - 2014-03-27 23:14 - 00000000 ____D C:\Python33 2015-11-13 07:01 - 2010-06-08 15:07 - 00000000 ____D C:\ProgramData\WildTangent 2015-11-13 06:57 - 2013-07-26 02:26 - 00000000 ____D C:\ProgramData\Pinnacle VideoSpin 2015-11-13 06:57 - 2013-06-21 04:14 - 00000000 ____D C:\ProgramData\Norton 2015-11-13 06:57 - 2010-10-23 12:04 - 00000000 ____D C:\ProgramData\Toshiba 2015-11-13 06:57 - 2010-06-08 15:10 - 00000000 ____D C:\ProgramData\Skype 2015-11-13 06:57 - 2010-06-08 14:59 - 00000000 ____D C:\ProgramData\Nero 2015-11-13 06:56 - 2011-12-22 03:17 - 00000000 ____D C:\ProgramData\hps 2015-11-13 06:55 - 2014-08-09 03:54 - 00000000 ____D C:\ProgramData\Gibraltar 2015-11-13 06:55 - 2011-06-20 21:49 - 00000000 ____D C:\ProgramData\eBay 2015-11-13 05:12 - 2013-12-25 05:02 - 00000000 ____D C:\ProgramData\Battle.net 2015-11-13 05:11 - 2013-06-22 03:59 - 00000000 ____D C:\Magic The Gathering Tactics 2015-11-13 04:39 - 2011-11-16 05:59 - 00000000 ____D C:\Magic 2015-11-13 04:30 - 2012-07-20 05:36 - 00000000 ____D C:\Kaspersky Rescue Disk 10.0 2015-11-13 04:25 - 2013-12-05 06:53 - 00000000 ____D C:\Fraps 2015-11-13 04:12 - 2014-04-13 08:53 - 00000000 ____D C:\eduke32_latest 2015-11-13 04:09 - 2014-04-13 05:56 - 00000000 ____D C:\DOSBox 2015-10-21 18:30 - 2013-07-21 03:20 - 00000000 ____D C:\Temp 2015-10-21 17:43 - 2009-07-14 04:34 - 00000555 _____ C:\Windows\win.ini 2015-10-21 17:43 - 2009-07-14 04:34 - 00000245 _____ C:\Windows\system.ini 2015-10-21 17:26 - 2014-08-12 04:12 - 00002261 _____ C:\Users\DJ Dolphin\.lmmsrc.xml 2015-10-21 01:59 - 2014-12-17 02:47 - 00002982 _____ C:\Windows\System32\Tasks\{8B2F1E20-2F3B-4903-9610-936D6D0B2156} 2015-10-21 01:59 - 2014-12-17 02:47 - 00002982 _____ C:\Windows\System32\Tasks\{56FDA4F5-BD3F-4467-91DC-C4E04CCFE7EC} 2015-10-21 01:59 - 2014-12-17 02:07 - 00002982 _____ C:\Windows\System32\Tasks\{5375F3CE-7251-49A5-AB1B-A27AF5BAAB5A} 2015-10-20 08:47 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\rescache 2015-10-20 08:10 - 2010-10-23 11:33 - 00516406 _____ C:\Windows\PFRO.log 2015-10-20 05:13 - 2014-01-17 17:55 - 00000000 ____D C:\Windows\Minidump 2015-10-20 05:13 - 2012-07-16 14:35 - 00000000 ____D C:\Users\DJ Dolphin\AppData\Roaming\Skype 2015-10-20 05:13 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\sysprep 2015-10-20 05:10 - 2014-06-03 00:33 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDFCreator 2015-10-19 15:10 - 2011-06-25 23:16 - 00000000 ____D C:\Users\DJ Dolphin\Tracing 2015-10-18 05:44 - 2014-04-13 03:23 - 00000000 ____D C:\Program Files (x86)\BrowseMark 2015-10-18 04:20 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\SysWOW64\inetsrv 2015-10-18 04:20 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\inetsrv 2015-10-18 04:19 - 2011-12-28 22:23 - 01632596 _____ C:\Windows\SysWOW64\PerfStringBackup.INI 2015-10-18 03:10 - 2015-07-25 03:09 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apowersoft 2015-10-18 03:10 - 2015-07-25 03:09 - 00000000 ____D C:\Program Files (x86)\Apowersoft 2015-10-18 02:17 - 2012-02-28 05:03 - 00000000 ____D C:\Program Files (x86)\Magic Online 2015-10-18 02:13 - 2014-08-09 03:35 - 00000000 ____D C:\Users\DJ Dolphin\AppData\Local\Deployment ==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse ======= 2015-11-13 04:08 - 2015-11-13 04:08 - 0265728 _____ () C:\Users\DJ Dolphin\AppData\Roaming\88d3ec48.dll 2015-11-13 05:05 - 2015-11-13 05:05 - 0000000 _____ () C:\Users\DJ Dolphin\AppData\Roaming\88d3ec48.exe 2015-07-25 03:00 - 2015-07-25 03:00 - 0000046 _____ () C:\Users\DJ Dolphin\AppData\Roaming\Camdata.ini 2015-07-25 03:00 - 2015-07-25 03:00 - 0000408 _____ () C:\Users\DJ Dolphin\AppData\Roaming\CamLayout.ini 2015-07-25 03:00 - 2015-07-25 03:00 - 0000408 _____ () C:\Users\DJ Dolphin\AppData\Roaming\CamShapes.ini 2015-07-25 03:00 - 2015-07-25 03:02 - 0004536 _____ () C:\Users\DJ Dolphin\AppData\Roaming\CamStudio.cfg 2015-07-25 02:59 - 2015-07-30 01:05 - 0000096 _____ () C:\Users\DJ Dolphin\AppData\Roaming\version2.xml 2011-09-20 03:08 - 2011-09-20 03:08 - 0007604 _____ () C:\Users\DJ Dolphin\AppData\Local\Resmon.ResmonCfg 2012-08-23 17:46 - 2012-08-23 17:46 - 0017408 _____ () C:\Users\DJ Dolphin\AppData\Local\WebpageIcons.db 2015-11-13 07:01 - 2015-11-13 07:01 - 0009046 _____ () C:\ProgramData\HELP_DECRYPT.HTML 2015-11-13 07:01 - 2015-11-13 07:01 - 0050498 _____ () C:\ProgramData\HELP_DECRYPT.PNG 2015-11-13 07:01 - 2015-11-13 07:01 - 0004846 _____ () C:\ProgramData\HELP_DECRYPT.TXT 2015-11-13 07:01 - 2015-11-13 07:01 - 0000292 _____ () C:\ProgramData\HELP_DECRYPT.URL2014-01-01 04:11 - 2014-01-01 04:12 - 0000353 _____ () C:\ProgramData\hpzinstall.log 2012-07-20 01:04 - 2012-07-21 15:31 - 4503728 ____T () C:\ProgramData\pmt_0piot.pad ZeroAccess: C:\Windows\Installer\{f33a9fd9-8bab-5d8d-0aa8-d6b57861b4a7} C:\Windows\Installer\{f33a9fd9-8bab-5d8d-0aa8-d6b57861b4a7}\@ ZeroAccess: C:\Users\DJ Dolphin\AppData\Local\{f33a9fd9-8bab-5d8d-0aa8-d6b57861b4a7} C:\Users\DJ Dolphin\AppData\Local\{f33a9fd9-8bab-5d8d-0aa8-d6b57861b4a7}\@ Dateien, die verschoben oder gelöscht werden sollten: ==================== C:\ProgramData\pmt_0piot.pad Einige Dateien in TEMP: ==================== C:\Users\DJ Dolphin\AppData\Local\Temp\avg-a4129a31-ee55-4969-a1e2-68181e758e6a.exe ==================== Bamital & volsnap ================= (Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.) C:\Windows\system32\winlogon.exe => Datei ist digital signiert C:\Windows\system32\wininit.exe => Datei ist digital signiert C:\Windows\SysWOW64\wininit.exe => Datei ist digital signiert C:\Windows\explorer.exe => Datei ist digital signiert C:\Windows\SysWOW64\explorer.exe => Datei ist digital signiert C:\Windows\system32\svchost.exe => Datei ist digital signiert C:\Windows\SysWOW64\svchost.exe => Datei ist digital signiert C:\Windows\system32\services.exe => Datei ist digital signiert C:\Windows\system32\User32.dll => Datei ist digital signiert C:\Windows\SysWOW64\User32.dll => Datei ist digital signiert C:\Windows\system32\userinit.exe => Datei ist digital signiert C:\Windows\SysWOW64\userinit.exe => Datei ist digital signiert C:\Windows\system32\rpcss.dll => Datei ist digital signiert C:\Windows\system32\dnsapi.dll => Datei ist digital signiert C:\Windows\SysWOW64\dnsapi.dll => Datei ist digital signiert C:\Windows\system32\Drivers\volsnap.sys => Datei ist digital signiert LastRegBack: 2015-11-10 00:35 ==================== Ende von FRST.txt ============================ Code:
ATTFilter Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version:07-11-2015 durchgeführt von DJ Dolphin (2015-11-15 09:00:28) Gestartet von C:\Users\DJ Dolphin\Desktop Windows 7 Home Premium (X64) (2011-06-20 16:35:38) Start-Modus: Normal ========================================================== ==================== Konten: ============================= Administrator (S-1-5-21-2290779612-799622330-4084932457-500 - Administrator - Disabled) DJ Dolphin (S-1-5-21-2290779612-799622330-4084932457-1000 - Administrator - Enabled) => C:\Users\DJ Dolphin Gast (S-1-5-21-2290779612-799622330-4084932457-501 - Limited - Enabled) => C:\Users\Gast HomeGroupUser$ (S-1-5-21-2290779612-799622330-4084932457-1003 - Limited - Enabled) ==================== Sicherheits-Center ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.) AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installierte Programme ====================== (Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.) AC3Filter (remove only) (HKLM-x32\...\AC3Filter) (Version: - ) Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 1.5.3.9130 - Adobe Systems Inc.) Adobe Flash Player 11 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 11.4.402.287 - Adobe Systems Incorporated) Adobe Flash Player 18 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 18.0.0.160 - Adobe Systems Incorporated) Adobe Premiere Pro (HKLM-x32\...\{084709F7-38C5-4609-B55F-2417939315EB}) (Version: 7.0 - Adobe Systems, Inc.) Adobe Reader 9.5.3 - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-A95000000001}) (Version: 9.5.3 - Adobe Systems Incorporated) Advertising Center (x32 Version: 0.0.0.2 - Nero AG) Hidden Apowersoft Gratis - Audiorekorder V2.3.4 (HKLM-x32\...\{E35F91E4-C68C-43E8-BE90-35CDEE4E5730}_is1) (Version: 2.3.4 - APOWERSOFT LIMITED) Apple Application Support (HKLM-x32\...\{5D09C772-ECB3-442B-9CC6-B4341C78FDC2}) (Version: 2.3.4 - Apple Inc.) Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.) AVG (Version: 16.7.7227 - AVG Technologies) Hidden AVG 2016 (Version: 16.0.4450 - AVG Technologies) Hidden AVG PC TuneUp (HKLM-x32\...\AVG PC TuneUp) (Version: 16.3.1.24857 - AVG Technologies) AVG PC TuneUp (x32 Version: 16.3.3 - AVG Technologies) Hidden AVG Protection (HKLM\...\AVG) (Version: 2016.7.7227 - AVG Technologies) Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment) Bejeweled 2 Deluxe (x32 Version: 2.2.0.82 - WildTangent) Hidden Bluetooth Stack for Windows by Toshiba (HKLM\...\{CEBB6BFB-D708-4F99-A633-BC2600E01EF6}) (Version: v7.10.14(T) - TOSHIBA CORPORATION) Broadcom 802.11 Network Adapter (HKLM\...\Broadcom 802.11 Network Adapter) (Version: 5.60.48.42 - Broadcom Corporation) Calypso 3 (HKU\S-1-5-21-2290779612-799622330-4084932457-1000\...\Calypso3) (Version: - ) CamStudio 2.7.3 (HKLM\...\{04B83666-3A62-452B-85D3-70F8117F2329}_is1) (Version: 2.7.3 - CamStudio Open Source) Chuzzle Deluxe (x32 Version: 2.2.0.82 - WildTangent) Hidden Cool Edit Pro 2.0 (HKLM-x32\...\Cool Edit Pro 2.0) (Version: - ) DAEMON Tools Lite (HKLM-x32\...\DAEMON Tools Lite) (Version: 4.49.1.0356 - Disc Soft Ltd) DANCE 5.5 (HKLM-x32\...\{4EA3F09B-2761-4A8D-9694-43DB2B965391}_is1) (Version: - Markus Bader - MB-Softwaresolutions) DHTML Editing Component (HKLM-x32\...\{2EA870FA-585F-4187-903D-CB9FFD21E2E0}) (Version: 6.02.0001 - Microsoft Corporation) Diner Dash 2 Restaurant Rescue (x32 Version: 2.2.0.82 - WildTangent) Hidden Duke Nukem 3D (HKLM-x32\...\Duke Nukem 3D_is1) (Version: - GOG.com) EasiestSoft Video Converter 3.3.2 (HKLM-x32\...\{62540757-EAF0-B027-F7F8-CD5A8A0DC9BA}_is1) (Version: 3.3.2 - EasiestSoft International LLC.) eBay (HKLM-x32\...\{FDE58148-57E7-43BF-879A-29CCE818C078}) (Version: 1.1.9 - eBay Inc.) ElsterFormular (HKLM-x32\...\ElsterFormular) (Version: 16.0.15910 - Landesfinanzdirektion Thüringen) Emagic Logic Audio Platinum 5.5 (HKLM-x32\...\Emagic Logic Audio Platinum 5.5) (Version: - ) eMule (HKLM-x32\...\eMule) (Version: - ) FATE (x32 Version: 2.2.0.82 - WildTangent) Hidden ffdshow x64 v1.3.4532 [2014-07-17] (HKLM\...\ffdshow64_is1) (Version: 1.3.4532.0 - ) FMW 1 (Version: 1.22.2 - AVG Technologies) Hidden Foxit Reader (HKLM-x32\...\Foxit Reader) (Version: 4.3.1.323 - Foxit Corporation) Fraps (HKLM-x32\...\Fraps) (Version: - ) Google Earth (HKLM-x32\...\{4D2A6330-2F8B-11E3-9C40-B8AC6F97B88E}) (Version: 7.1.2.2041 - Google) Google Earth (HKLM-x32\...\{5A3C1721-F8ED-11E0-8AFB-B8AC6F97B88E}) (Version: 6.1.0.5001 - Google) Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden Google Update Helper (x32 Version: 1.3.28.15 - Google Inc.) Hidden HandBrake 0.9.9.1 (HKLM-x32\...\HandBrake) (Version: 0.9.9.1 - ) ICQ7.6 (HKLM-x32\...\{7644E42D-B096-457F-8B5B-901238FC81AE}) (Version: 7.6 - ICQ) ImagXpress (x32 Version: 7.0.74.0 - Nero AG) Hidden In The Groove (Nur entfernen) (HKLM-x32\...\In The Groove) (Version: - ) Intel(R) Graphics Media Accelerator Driver (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 8.15.10.2125 - Intel Corporation) Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 6.0.0.1179 - Intel Corporation) Intel(R) Network Connections Drivers (HKLM\...\PROSet) (Version: 14.8 - Intel) Intel(R) Rapid Storage Technology (HKLM-x32\...\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: 9.6.1.1001 - Intel Corporation) Java 8 Update 31 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218031F0}) (Version: 8.0.310 - Oracle Corporation) Jewel Quest II (x32 Version: 2.2.0.82 - WildTangent) Hidden Junk Mail filter update (x32 Version: 14.0.8089.726 - Microsoft Corporation) Hidden Kaspersky Internet Security (HKLM-x32\...\InstallWIX_{8ED07EBD-22AD-415A-B71E-C1AD86862C2E}) (Version: 15.0.1.415 - Kaspersky Lab) Kaspersky Internet Security (x32 Version: 15.0.1.415 - Kaspersky Lab) Hidden LMMS 1.0.3 (HKLM-x32\...\LMMS) (Version: 1.0.3 - LMMS Developers) Magic The Gathering Tactics (HKU\S-1-5-21-2290779612-799622330-4084932457-1000\...\soe-Magic The Gathering Tactics) (Version: 1.0.3.183 - Sony Online Entertainment) Magic Workstation 0.94f (HKLM-x32\...\Magic Workstation_is1) (Version: - Magic Technology) Magic Workstation 0.97 Update (HKLM-x32\...\Magic Workstation 0.97 Update_is1) (Version: - Magi-Soft Development) Malwarebytes Anti-Malware Version 1.75.0.1300 (HKLM-x32\...\Malwarebytes' Anti-Malware_is1) (Version: 1.75.0.1300 - Malwarebytes Corporation) Media Player Codec Pack 4.3.8 (HKLM-x32\...\Media Player - Codec Pack) (Version: 4.3.8 - Media Player Codec Pack) Mein CEWE FOTOBUCH (HKLM-x32\...\Mein CEWE FOTOBUCH) (Version: - ) Microsoft Office Enterprise 2007 (HKLM-x32\...\ENTERPRISE) (Version: 12.0.4518.1014 - Microsoft Corporation) Microsoft Silverlight (HKLM-x32\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 3.0.40818.0 - Microsoft Corporation) Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (HKLM-x32\...\{6AFCA4E1-9B78-3640-8F72-A7BF33448200}) (Version: 9.0.30729 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319 (HKLM\...\{DA5E371C-6333-3D8A-93A4-6FD5B20BCC6E}) (Version: 10.0.30319 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319 (HKLM-x32\...\{196BB40D-1578-3D01-B289-BEFC77A11A1E}) (Version: 10.0.30319 - Microsoft Corporation) Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{4fcf070a-daac-45e9-a8b0-6850941f7ed8}) (Version: 12.0.21005.1 - Microsoft Corporation) Mobile Partner (HKLM-x32\...\Mobile Partner) (Version: 11.302.09.04.382 - Huawei Technologies Co.,Ltd) Mozilla Firefox 37.0.2 (x86 de) (HKLM-x32\...\Mozilla Firefox 37.0.2 (x86 de)) (Version: 37.0.2 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 30.0 - Mozilla) MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation) MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation) MTG GamePack for Magic Workstation (HKLM-x32\...\MTG GamePack for Magic Workstation_is1) (Version: - Magic Technology) NEC Electronics USB 3.0 Host Controller Driver (HKLM-x32\...\InstallShield_{D7BF9739-8A68-4335-BBEE-37752AD9E86B}) (Version: 1.0.20.1 - NEC Electronics Corporation) NEC Electronics USB 3.0 Host Controller Driver (x32 Version: 1.0.20.1 - NEC Electronics Corporation) Hidden Need For Speed™ World (HKLM-x32\...\{7B2CC3DF-64FA-44AE-8F57-B0F915147E4F}_is1) (Version: 1.0.0.993 - Electronic Arts) Nero 9 Essentials (HKLM-x32\...\{27f7c177-9313-44b0-92e5-7479ddebf70c}) (Version: - Nero AG) Nero BackItUp (HKLM-x32\...\{0420F95C-11FF-4E02-B967-6CC22B188F9F}) (Version: 5.2.21001 - Nero AG) Nero BackItUp and Burn (HKLM-x32\...\{E08CC458-41FB-4BB5-9B08-2C83DB55A5B9}) (Version: 1.2.0030 - Nero AG) Nero BurnRights (HKLM-x32\...\{397516AE-7DFE-4F90-84E0-BD616D559434}) (Version: 3.6.26001 - Nero AG) Nero Express (HKLM-x32\...\{6C3CF7AC-5AB0-42D9-93C0-68166A57AFB6}) (Version: 9.6.16000 - Nero AG) Nero RescueAgent (HKLM-x32\...\{51E2F9B3-A972-4F58-B4EF-4D9676D9F5D1}) (Version: 2.6.25002 - Nero AG) PDFCreator (HKLM-x32\...\{0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}) (Version: 1.7.3 - pdfforge) Penguins! (x32 Version: 2.2.0.82 - WildTangent) Hidden Pinnacle VideoSpin (HKLM-x32\...\{FEB15887-0932-4D2D-BB85-6AC03FBF1AA8}) (Version: 2.0.0.669 - Pinnacle Systems) PL-2303 USB-to-Serial (HKLM-x32\...\{ECC3713C-08A4-40E3-95F1-7D0704F1CE5E}) (Version: 1.00.000 - Prolific Technology INC) Plants vs. Zombies (x32 Version: 2.2.0.82 - WildTangent) Hidden PlayReady PC Runtime amd64 (HKLM\...\{BCA9334F-B6C9-4F65-9A73-AC5A329A4D04}) (Version: 1.3.0 - Microsoft Corporation) PokerStars.eu (HKLM-x32\...\PokerStars.eu) (Version: - PokerStars.eu) Polar Bowler (x32 Version: 2.2.0.82 - WildTangent) Hidden PriMus Free 1.1 (Build 10723) (HKLM-x32\...\PriMus Free_is1) (Version: - Columbus Soft) Python 3.3.0 (64-bit) (HKLM\...\{290329c4-a276-3aec-b633-9f5a39d8dd96}) (Version: 3.3.150 - Python Software Foundation) QuickTime (HKLM-x32\...\{B67BAFBA-4C9F-48FA-9496-933E3B255044}) (Version: 7.74.80.86 - Apple Inc.) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6083 - Realtek Semiconductor Corp.) Recuva (HKLM\...\Recuva) (Version: 1.51 - Piriform) RICOH R5U230 Media Driver ver.2.10.03.02 (HKLM-x32\...\{022CBB38-CEF0-42BA-906A-A49BEFAE0BEE}) (Version: 2.10.03.02 - RICOH) Skype Toolbars (HKLM-x32\...\{981029E0-7FC9-4CF3-AB39-6F133621921A}) (Version: 1.0.4051 - Skype Technologies S.A.) Skype™ 4.2 (HKLM-x32\...\{D103C4BA-F905-437A-8049-DB24763BBE36}) (Version: 4.2.152 - Skype Technologies S.A.) Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 15.0.12.0 - Synaptics Incorporated) TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.12 - TeamSpeak Systems GmbH) TeamViewer 3 (HKLM-x32\...\TeamViewer 3) (Version: - TeamViewer GmbH) TOSHIBA Assist (HKLM-x32\...\{C2A276E3-154E-44DC-AAF1-FFDD7FD30E35}) (Version: 4.00.00 - TOSHIBA CORPORATION) TOSHIBA Bulletin Board (HKLM-x32\...\InstallShield_{C14518AF-1A0F-4D39-8011-69BAA01CD380}) (Version: 1.6.08.64 - TOSHIBA Corporation) TOSHIBA ConfigFree (HKLM-x32\...\{B73A66DB-7804-46EC-9A2F-BD534FDB6AD5}) (Version: 8.0.30 - TOSHIBA Corporation) TOSHIBA Disc Creator (HKLM\...\{5DA0E02F-970B-424B-BF41-513A5018E4C0}) (Version: 2.1.0.2 for x64 - TOSHIBA Corporation) TOSHIBA eco Utility (HKLM-x32\...\InstallShield_{B3FF1CD9-B2F0-4D71-BB55-5F580401C48E}) (Version: 1.2.12.64 - TOSHIBA Corporation) TOSHIBA Face Recognition (HKLM-x32\...\InstallShield_{F67FA545-D8E5-4209-86B1-AEE045D1003F}) (Version: 3.1.3.64 - TOSHIBA Corporation) TOSHIBA HDD Protection (HKLM\...\{94A90C69-71C1-470A-88F5-AA47ECC96B40}) (Version: 2.2.0.4 - TOSHIBA Corporation) TOSHIBA HDD/SSD Alert (HKLM-x32\...\InstallShield_{D4322448-B6AF-4316-B859-D8A0E84DCB38}) (Version: 3.1.64.6 - TOSHIBA Corporation) Toshiba Manuals (HKLM-x32\...\{90FF4432-21B7-4AF6-BA6E-FB8C1FED9173}) (Version: 10.01 - TOSHIBA) TOSHIBA Media Controller (HKLM-x32\...\{983CD6FE-8320-4B80-A8F6-0D0366E0AA22}) (Version: 1.0.80.7.64 - TOSHIBA CORPORATION) TOSHIBA Media Controller Plug-in (HKLM-x32\...\{F26FDF57-483E-42C8-A9C9-EEE1EDB256E0}) (Version: 1.0.5.10 - TOSHIBA CORPORATION) TOSHIBA Online Product Information (HKLM-x32\...\{2290A680-4083-410A-ADCC-7092C67FC052}) (Version: 2.09.0001 - TOSHIBA) TOSHIBA PC Health Monitor (HKLM\...\{9DECD0F9-D3E8-48B0-A390-1CF09F54E3A4}) (Version: 1.6.2.64 - TOSHIBA Corporation) TOSHIBA Recovery Media Creator (HKLM\...\{B65BBB06-1F8E-48F5-8A54-B024A9E15FDF}) (Version: 2.1.0.4 x64 - TOSHIBA Corporation) TOSHIBA Recovery Media Creator Reminder (HKLM-x32\...\InstallShield_{773970F1-5EBA-4474-ADEE-1EA3B0A59492}) (Version: 1.00.0019 - TOSHIBA) TOSHIBA ReelTime (HKLM-x32\...\InstallShield_{A0E99122-25C1-4CA4-9063-499A2A814EB6}) (Version: 1.6.06.64 - TOSHIBA Corporation) TOSHIBA Service Station (HKLM-x32\...\{AC6569FA-6919-442A-8552-073BE69E247A}) (Version: 2.1.40 - TOSHIBA) TOSHIBA Sicherheits-Assistent (HKLM-x32\...\{1E63ACB5-D45E-4856-8FC9-78F4B0D7BB80}) (Version: 2.0.8 - TOSHIBA) TOSHIBA Sleep Utility (HKLM-x32\...\{654F7484-88C5-46DC-AB32-C66BCB0E2102}) (Version: 1.4.1.3 - TOSHIBA Corporation) Toshiba TEMPRO (HKLM-x32\...\{DBB7021A-3437-446F-ACE5-7261644A972C}) (Version: 3.33 - Toshiba Europe GmbH) TOSHIBA Value Added Package (HKLM-x32\...\InstallShield_{066CFFF8-12BF-4390-A673-75F95EFF188E}) (Version: 1.3.13.64 - TOSHIBA Corporation) TOSHIBA Web Camera Application (HKLM-x32\...\{5E6F6CF3-BACC-4144-868C-E14622C658F3}) (Version: 1.1.2.13 - TOSHIBA Corporation) Turbo Lister 2 (HKLM-x32\...\{8927E07C-97F7-4A54-88FB-D976F50DD46E}) (Version: 2.00.0000 - eBay Inc.) Ulead PhotoImpact 8 ESD (HKLM-x32\...\InstallShield_{F101C58C-15CC-42B3-83D1-536CFB960634}) (Version: 8.0 - Ulead System) Ulead PhotoImpact 8 ESD (x32 Version: 8.0 - Ulead System) Hidden VC80CRTRedist - 8.0.50727.6195 (x32 Version: 1.2.0 - DivX, Inc) Hidden Virtual MIDI Piano Keyboard (HKLM-x32\...\Virtual MIDI Piano Keyboard) (Version: 0.5.0 - VMPK) Visual Studio 2012 x64 Redistributables (HKLM\...\{8C775E70-A791-4DA8-BCC3-6AB7136F4484}) (Version: 14.0.0.1 - AVG Technologies) Visual Studio 2012 x86 Redistributables (HKLM-x32\...\{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}) (Version: 14.0.0.1 - AVG Technologies CZ, s.r.o.) VLC media player 2.1.3 (HKLM-x32\...\VLC media player) (Version: 2.1.3 - VideoLAN) VSDC Free Video Editor Version 2.1.9.211 (HKLM-x32\...\VSDC Free Video Editor_is1) (Version: 2.1.9.211 - Flash-Integro LLC) WildTangent ORB Game Console (x32 Version: - WildTangent) Hidden WildTangent-Spiele (HKLM-x32\...\WildTangent toshiba Master Uninstall) (Version: 1.0.0.80 - WildTangent) Win7codecs (HKLM-x32\...\{8C0CAA7A-3272-4991-A808-2C7559DE3409}) (Version: 2.4.2 - Shark007) Windows Live Essentials (HKLM-x32\...\WinLiveSuite_Wave3) (Version: 14.0.8089.0726 - Microsoft Corporation) Windows Live ID Sign-in Assistant (HKLM\...\{9B48B0AC-C813-4174-9042-476A887592C7}) (Version: 6.500.3165.0 - Microsoft Corporation) Windows Live Sync (HKLM-x32\...\{76618402-179D-4699-A66B-D351C59436BC}) (Version: 14.0.8089.726 - Microsoft Corporation) Windows Live-Uploadtool (HKLM-x32\...\{205C6BDD-7B73-42DE-8505-9A093F35A238}) (Version: 14.0.8014.1029 - Microsoft Corporation) WinRAR Archivierer (HKLM-x32\...\WinRAR archiver) (Version: - ) World of Warcraft (HKLM-x32\...\World of Warcraft) (Version: - Blizzard Entertainment) Yamaha USB-MIDI Driver (HKLM-x32\...\InstallShield_{71E75F05-930E-41BA-BDBC-15E3134DD45B}) (Version: 3.1.3.1 - Yamaha Corporation) Yamaha USB-MIDI Driver (Version: 3.1.3.1 - Yamaha Corporation) Hidden Zuma Deluxe (x32 Version: 2.2.0.82 - WildTangent) Hidden ==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) CustomCLSID: HKU\S-1-5-21-2290779612-799622330-4084932457-1000_Classes\CLSID\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InprocServer32 -> C:\Users\DJ Dolphin\AppData\Local\{f33a9fd9-8bab-5d8d-0aa8-d6b57861b4a7}\n. => Keine Datei CustomCLSID: HKU\S-1-5-21-2290779612-799622330-4084932457-1000_Classes\CLSID\{45C6AFA5-2C13-402f-BC5D-45CC8172EF6B}\InprocServer32 -> C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\sys\x64\TosBtExt.dll (TOSHIBA) CustomCLSID: HKU\S-1-5-21-2290779612-799622330-4084932457-1000_Classes\CLSID\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InprocServer32 -> C:\$Recycle.Bin () ==================== Wiederherstellungspunkte ========================= 25-10-2015 21:42:07 Geplanter Prüfpunkt 03-11-2015 01:04:11 Geplanter Prüfpunkt 11-11-2015 01:06:45 Geplanter Prüfpunkt ==================== Hosts Inhalt: =============================== (Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.) 2009-07-14 04:34 - 2009-06-10 23:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts ==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) ============= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) Task: {01532EF4-904C-4297-A9A4-3DCD99504E5E} - System32\Tasks\TuneUpUtilities_Task_BkGndMaintenance2013 => C:\Program Files (x86)\AVG\AVG PC TuneUp\OneClick.exe [2015-10-14] (AVG Technologies CZ, s.r.o.) Task: {13CB3E1C-480F-4008-BC78-1D0703A0E4B4} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-10-12] (Google Inc.) Task: {2FE29737-6747-4D7B-9621-006DF265A688} - System32\Tasks\Adobe Reader and Acrobat Manager => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-04-04] (Adobe Systems Incorporated) Task: {76C18FC6-4859-4831-9299-E9D46F2A6892} - System32\Tasks\{CE16209A-017E-4BF7-A823-44FAC90EB002} => E:\INSTALL.EXE Task: {7990D274-6C4E-43A5-A08F-949398F2131E} - System32\Tasks\{B3109B0D-7AE5-4697-942E-B0559789A36E} => E:\INSTALL.EXE Task: {7DF6B729-ED9D-454B-83EA-14190842CDC3} - System32\Tasks\{32A9769A-00FF-4EA3-965B-276C37D421AF} => E:\INSTALL.EXE Task: {8A658252-5AAC-47F2-AC4E-A6382307D01C} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-10-12] (Google Inc.) Task: {9468E400-FA73-4189-A565-CC0AEF0B3A40} - System32\Tasks\Java Platform SE Auto Updater => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2014-12-17] (Oracle Corporation) Task: {B6EBAB26-09F1-4F92-A7AD-4D9C6169A638} - System32\Tasks\{6F719524-60BF-439C-90AC-C30403128D64} => pcalua.exe -a "C:\Program Files (x86)\ICQ\ICQUninstall.exe" -d "C:\Program Files (x86)\ICQ" Task: {C446883D-960B-4276-9B7B-A98CE57DCCA1} - System32\Tasks\{8B2F1E20-2F3B-4903-9610-936D6D0B2156} => C:\Program Files (x86)\PokerStars.EU\PokerStars.exe [2015-02-15] (PokerStars) Task: {CFA885FE-5923-4940-BAC8-CA4EE09BDA39} - System32\Tasks\ConfigFree Startup Programs => C:\Program Files (x86)\TOSHIBA\ConfigFree\NDSTray.exe [2010-05-06] (TOSHIBA CORPORATION) Task: {D3519496-8C62-4412-98DC-B7EA4C275717} - System32\Tasks\{FDA895FA-0C7D-43F1-8162-04CC7F1CE734} => E:\INSTALL.EXE Task: {F243920A-906B-4A74-84AA-0E481A75D06E} - System32\Tasks\{7B412C11-F0CD-4D82-B6CB-54F1C0469152} => E:\INSTALL.EXE Task: {F78BCAEF-BD8C-4C3E-B68A-818F3011897C} - System32\Tasks\{56FDA4F5-BD3F-4467-91DC-C4E04CCFE7EC} => C:\Program Files (x86)\PokerStars.EU\PokerStars.exe [2015-02-15] (PokerStars) Task: {FFDDBFF3-E2F6-4E27-8123-36EF886397F9} - System32\Tasks\{5375F3CE-7251-49A5-AB1B-A27AF5BAAB5A} => C:\Program Files (x86)\PokerStars.EU\PokerStars.exe [2015-02-15] (PokerStars) (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.) Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Geladene Module (Nicht auf der Ausnahmeliste) ============== 2010-05-08 13:48 - 2010-05-08 13:48 - 00229376 _____ () C:\ProgramData\DatacardService\DCService.exe 2010-04-23 18:08 - 2010-04-23 18:08 - 00578936 _____ () C:\Program Files\TOSHIBA\TECO\TecoPower.dll 2010-04-07 16:07 - 2010-04-07 16:07 - 09468728 _____ () C:\Program Files\TOSHIBA\FlashCards\BlackPng.dll 2009-11-03 13:26 - 2009-11-03 13:26 - 00053560 _____ () C:\Program Files\TOSHIBA\FlashCards\Hotkey\FnZ.dll 2010-03-03 14:15 - 2010-03-03 14:15 - 00019256 _____ () C:\Program Files\TOSHIBA\FlashCards\Hotkey\FnF10.dll 2010-03-03 14:15 - 2010-03-03 14:15 - 00019256 _____ () C:\Program Files\TOSHIBA\FlashCards\Hotkey\FnF11.dll 2010-06-08 14:47 - 2009-06-22 15:40 - 00022328 _____ () C:\Program Files\TOSHIBA\TOSHIBA Assist\NotifyX.dll 2009-03-12 20:08 - 2009-03-12 20:08 - 00048640 _____ () C:\Program Files (x86)\Toshiba\PCDiag\NotifyPCD.dll 2009-07-25 16:38 - 2009-07-25 16:38 - 00017800 _____ () C:\Program Files\TOSHIBA\TOSHIBA Disc Creator\NotifyTDC.dll 2010-02-05 17:44 - 2010-02-05 17:44 - 00079192 _____ () C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosIPCWraper.dll 2014-08-30 18:12 - 2014-08-30 18:12 - 01269952 _____ () C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\kpcengine.2.3.dll 2015-10-18 05:04 - 2015-10-18 05:01 - 40500224 _____ () C:\Program Files (x86)\AVG\UiDll\2171\libcef.dll ==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) ========= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.) ==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.) ==================== EXE Verknüpfungen (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.) ==================== Internet Explorer Vertrauenswürdig/Eingeschränkt =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.) IE trusted site: HKU\.DEFAULT\...\clonewarsadventures.com -> clonewarsadventures.com IE trusted site: HKU\.DEFAULT\...\freerealms.com -> freerealms.com IE trusted site: HKU\.DEFAULT\...\soe.com -> soe.com IE trusted site: HKU\.DEFAULT\...\sony.com -> sony.com IE trusted site: HKU\S-1-5-19\...\clonewarsadventures.com -> clonewarsadventures.com IE trusted site: HKU\S-1-5-19\...\freerealms.com -> freerealms.com IE trusted site: HKU\S-1-5-19\...\soe.com -> soe.com IE trusted site: HKU\S-1-5-19\...\sony.com -> sony.com IE trusted site: HKU\S-1-5-20\...\clonewarsadventures.com -> clonewarsadventures.com IE trusted site: HKU\S-1-5-20\...\freerealms.com -> freerealms.com IE trusted site: HKU\S-1-5-20\...\soe.com -> soe.com IE trusted site: HKU\S-1-5-20\...\sony.com -> sony.com IE trusted site: HKU\S-1-5-21-2290779612-799622330-4084932457-1000\...\clonewarsadventures.com -> clonewarsadventures.com IE trusted site: HKU\S-1-5-21-2290779612-799622330-4084932457-1000\...\freerealms.com -> freerealms.com IE trusted site: HKU\S-1-5-21-2290779612-799622330-4084932457-1000\...\soe.com -> soe.com IE trusted site: HKU\S-1-5-21-2290779612-799622330-4084932457-1000\...\sony.com -> sony.com ==================== Andere Bereiche ============================ (Aktuell gibt es keinen automatisierten Fix für diesen Bereich.) HKU\S-1-5-21-2290779612-799622330-4084932457-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\DJ Dolphin\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 192.168.178.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 0) Windows Firewall ist aktiviert. ==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge == (Aktuell gibt es keinen automatisierten Fix für diesen Bereich.) ==================== Firewall Regeln (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) FirewallRules: [{BA04009E-3BF9-4CF8-B85C-ADD06B96A019}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.2380\Agent.exe FirewallRules: [{DDD209F1-F97C-4C1D-B6B0-0DAF2E42FE19}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.2380\Agent.exe FirewallRules: [{1551D31E-A6D4-4823-B6BE-9275E8F072D2}] => (Allow) C:\Program Files (x86)\Battle.net\Battle.net.exe FirewallRules: [{C1988EC4-D34E-44C5-AF2A-88C531163DD0}] => (Allow) C:\Program Files (x86)\Battle.net\Battle.net.exe FirewallRules: [TCP Query User{785E83B6-23DD-47D3-8D8E-827ECF87C292}C:\program files (x86)\icq7.6\icq.exe] => (Allow) C:\program files (x86)\icq7.6\icq.exe FirewallRules: [UDP Query User{4A498703-574E-4F06-B1CC-CD238331F094}C:\program files (x86)\icq7.6\icq.exe] => (Allow) C:\program files (x86)\icq7.6\icq.exe FirewallRules: [{60AFA5E8-0A62-43F0-8DE5-964C9EA91D4E}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3634\Agent.exe FirewallRules: [{C46C7985-3EB2-44F8-AF6B-12972DD39165}] => (Allow) C:\ProgramData\Battle.net\Agent\Agent.3634\Agent.exe FirewallRules: [TCP Query User{28BE846C-D2AC-458F-810B-3CDE01485E99}C:\program files (x86)\emule\emule.exe] => (Allow) C:\program files (x86)\emule\emule.exe FirewallRules: [UDP Query User{B226797C-9A78-4131-8525-7D230EC88EBD}C:\program files (x86)\emule\emule.exe] => (Allow) C:\program files (x86)\emule\emule.exe FirewallRules: [{FB5B2333-FE59-4C5A-8BA8-A6938459A344}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{1814DD7A-4822-4191-A9E1-E677A7B8713C}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{E9257C3F-4885-47AA-B78B-DECB7402D674}] => (Allow) C:\Program Files (x86)\Apowersoft\Apowersoft Free Audio Recorder\Apowersoft Free Audio Recorder.exe FirewallRules: [{40909B2B-24E2-4D22-AC94-0ABF461B1872}] => (Allow) C:\Program Files (x86)\Apowersoft\Apowersoft Free Audio Recorder\Apowersoft Free Audio Recorder.exe FirewallRules: [TCP Query User{BFE22F8F-7F9C-47A9-9D64-36A113D00C3B}C:\windows\syswow64\rundll32.exe] => (Block) C:\windows\syswow64\rundll32.exe FirewallRules: [UDP Query User{4203D7CE-CA5F-4504-AAB9-3342A516486A}C:\windows\syswow64\rundll32.exe] => (Block) C:\windows\syswow64\rundll32.exe FirewallRules: [TCP Query User{AB9B8D5C-AE1A-4B88-970F-4D296B75304E}C:\windows\syswow64\rundll32.exe] => (Block) C:\windows\syswow64\rundll32.exe FirewallRules: [UDP Query User{CEE05628-9C38-4979-8EFE-C8EE9715793E}C:\windows\syswow64\rundll32.exe] => (Block) C:\windows\syswow64\rundll32.exe FirewallRules: [{ED21AAB2-296B-4F10-A7C3-A1A32DECAFE9}] => (Allow) %SystemRoot%\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\SMSvcHost.exe FirewallRules: [{5BAAF8B0-A526-4C91-96CA-05B5C6AAFCAC}] => (Allow) C:\Program Files (x86)\AVG\Av\avgmfapx.exe FirewallRules: [{E2EF597A-CFC8-4840-9E96-14B403268876}] => (Allow) C:\Program Files (x86)\AVG\Av\avgmfapx.exe FirewallRules: [{2A104D69-10A9-4AA2-9D49-8A5ADA99DF24}] => (Allow) C:\Program Files (x86)\AVG\Av\avgnsa.exe FirewallRules: [{06C0AECC-F9CA-4C06-A3BB-28FF4ABE3FD9}] => (Allow) C:\Program Files (x86)\AVG\Av\avgnsa.exe FirewallRules: [{C7035277-DD0E-4D18-ABED-78FD090F5171}] => (Allow) C:\Program Files (x86)\AVG\Av\avgdiagex.exe FirewallRules: [{EE00BF81-3FEC-4AD1-AF68-3092BD0897F4}] => (Allow) C:\Program Files (x86)\AVG\Av\avgdiagex.exe FirewallRules: [{D7607A1E-A879-41AC-A1CF-0D2B8631B547}] => (Allow) C:\Program Files (x86)\AVG\Av\avgemca.exe FirewallRules: [{175FE43E-AB76-4325-BBA4-EC3A045062D0}] => (Allow) C:\Program Files (x86)\AVG\Av\avgemca.exe ==================== Fehlerhafte Geräte im Gerätemanager ============= ==================== Fehlereinträge in der Ereignisanzeige: ========================= Applikationsfehler: ================== Error: (11/15/2015 08:56:18 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: iexplore.exe, Version: 9.0.8112.16450, Zeitstempel: 0x503723f6 Name des fehlerhaften Moduls: MSONSEXT.DLL, Version: 10.145.3810.0, Zeitstempel: 0x3a8524e8 Ausnahmecode: 0xc0000005 Fehleroffset: 0x0004f564 ID des fehlerhaften Prozesses: 0x19f4 Startzeit der fehlerhaften Anwendung: 0xiexplore.exe0 Pfad der fehlerhaften Anwendung: iexplore.exe1 Pfad des fehlerhaften Moduls: iexplore.exe2 Berichtskennung: iexplore.exe3 Error: (11/15/2015 02:54:44 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: iexplore.exe, Version: 9.0.8112.16450, Zeitstempel: 0x503723f6 Name des fehlerhaften Moduls: Flash32_18_0_0_160.ocx, Version: 18.0.0.160, Zeitstempel: 0x55650c71 Ausnahmecode: 0xc0000005 Fehleroffset: 0x00095ad3 ID des fehlerhaften Prozesses: 0x1054 Startzeit der fehlerhaften Anwendung: 0xiexplore.exe0 Pfad der fehlerhaften Anwendung: iexplore.exe1 Pfad des fehlerhaften Moduls: iexplore.exe2 Berichtskennung: iexplore.exe3 Error: (11/14/2015 05:28:38 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: python.exe, Version: 0.0.0.0, Zeitstempel: 0x5066b7ef Name des fehlerhaften Moduls: MSVCR100.dll, Version: 10.0.30319.460, Zeitstempel: 0x4db1316a Ausnahmecode: 0x40000015 Fehleroffset: 0x0000000000075fe9 ID des fehlerhaften Prozesses: 0x2138 Startzeit der fehlerhaften Anwendung: 0xpython.exe0 Pfad der fehlerhaften Anwendung: python.exe1 Pfad des fehlerhaften Moduls: python.exe2 Berichtskennung: python.exe3 Error: (11/14/2015 03:01:07 AM) (Source: SideBySide) (EventID: 35) (User: ) Description: Fehler beim Generieren des Aktivierungskontextes für "WLMFDS,processorArchitecture="AMD64",type="win32",version="1.0.0.1"1". Fehler in Manifest- oder Richtliniendatei "WLMFDS,processorArchitecture="AMD64",type="win32",version="1.0.0.1"2" in Zeile WLMFDS,processorArchitecture="AMD64",type="win32",version="1.0.0.1"3. Die im Manifest gefundene Komponenten-ID stimmt nicht mit der ID der angeforderten Komponente überein. Verweis: WLMFDS,processorArchitecture="AMD64",type="win32",version="1.0.0.1". Definition: WLMFDS,processorArchitecture="x86",type="win32",version="1.0.0.1". Verwenden Sie das Programm "sxstrace.exe" für eine detaillierte Diagnose. Error: (11/14/2015 02:58:35 AM) (Source: SideBySide) (EventID: 63) (User: ) Description: Fehler beim Generieren des Aktivierungskontextes für "assemblyIdentity1". Fehler in Manifest- oder Richtliniendatei "assemblyIdentity2" in Zeile assemblyIdentity3. Der Wert "MAJOR_VERSION.MINOR_VERSION.BUILD_NUMBER_MAJOR.BUILD_NUMBER_MINOR" des "version"-Attributs im assemblyIdentity-Element ist ungültig. Error: (11/13/2015 05:04:46 PM) (Source: VSS) (EventID: 22) (User: ) Description: Fehler im Volumenschattenkopie-Dienst: Eine vom Volumenschattenkopie-Dienst benötigte kritische Komponente ist nicht registriert. Dies kann geschehen, wenn bei der Windows-Installation oder bei der Installation eines Schattenkopieanbieters ein Fehler aufgetreten ist. Der von CoCreateInstance für die Klasse mit CLSID "{e579ab5f-1cc4-44b4-bed9-de0991ff0623}" und dem Namen "Coordinator" zurückgegebene Fehler ist [0x80040154, Klasse nicht registriert ]. Error: (11/13/2015 05:04:46 PM) (Source: VSS) (EventID: 22) (User: ) Description: Fehler im Volumenschattenkopie-Dienst: Eine vom Volumenschattenkopie-Dienst benötigte kritische Komponente ist nicht registriert. Dies kann geschehen, wenn bei der Windows-Installation oder bei der Installation eines Schattenkopieanbieters ein Fehler aufgetreten ist. Der von CoCreateInstance für die Klasse mit CLSID "{e579ab5f-1cc4-44b4-bed9-de0991ff0623}" und dem Namen "Coordinator" zurückgegebene Fehler ist [0x80040154, Klasse nicht registriert ]. Error: (11/13/2015 05:04:56 AM) (Source: VSS) (EventID: 22) (User: ) Description: Fehler im Volumenschattenkopie-Dienst: Eine vom Volumenschattenkopie-Dienst benötigte kritische Komponente ist nicht registriert. Dies kann geschehen, wenn bei der Windows-Installation oder bei der Installation eines Schattenkopieanbieters ein Fehler aufgetreten ist. Der von CoCreateInstance für die Klasse mit CLSID "{e579ab5f-1cc4-44b4-bed9-de0991ff0623}" und dem Namen "Coordinator" zurückgegebene Fehler ist [0x80040154, Klasse nicht registriert ]. Error: (11/13/2015 05:04:56 AM) (Source: VSS) (EventID: 22) (User: ) Description: Fehler im Volumenschattenkopie-Dienst: Eine vom Volumenschattenkopie-Dienst benötigte kritische Komponente ist nicht registriert. Dies kann geschehen, wenn bei der Windows-Installation oder bei der Installation eines Schattenkopieanbieters ein Fehler aufgetreten ist. Der von CoCreateInstance für die Klasse mit CLSID "{e579ab5f-1cc4-44b4-bed9-de0991ff0623}" und dem Namen "Coordinator" zurückgegebene Fehler ist [0x80040154, Klasse nicht registriert ]. Error: (11/13/2015 05:04:56 AM) (Source: VSS) (EventID: 22) (User: ) Description: Fehler im Volumenschattenkopie-Dienst: Eine vom Volumenschattenkopie-Dienst benötigte kritische Komponente ist nicht registriert. Dies kann geschehen, wenn bei der Windows-Installation oder bei der Installation eines Schattenkopieanbieters ein Fehler aufgetreten ist. Der von CoCreateInstance für die Klasse mit CLSID "{e579ab5f-1cc4-44b4-bed9-de0991ff0623}" und dem Namen "Coordinator" zurückgegebene Fehler ist [0x80040154, Klasse nicht registriert ]. Systemfehler: ============= Error: (11/15/2015 01:04:27 AM) (Source: Service Control Manager) (EventID: 7011) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Warten auf eine Transaktionsrückmeldung von Dienst avgwd erreicht. Error: (11/15/2015 01:03:57 AM) (Source: Service Control Manager) (EventID: 7011) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Warten auf eine Transaktionsrückmeldung von Dienst avgwd erreicht. Error: (11/15/2015 01:03:27 AM) (Source: Service Control Manager) (EventID: 7011) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Warten auf eine Transaktionsrückmeldung von Dienst avgwd erreicht. Error: (11/15/2015 12:56:22 AM) (Source: Service Control Manager) (EventID: 7011) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Warten auf eine Transaktionsrückmeldung von Dienst avgwd erreicht. Error: (11/15/2015 12:55:52 AM) (Source: Service Control Manager) (EventID: 7011) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Warten auf eine Transaktionsrückmeldung von Dienst avgwd erreicht. Error: (11/15/2015 12:55:22 AM) (Source: Service Control Manager) (EventID: 7011) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Warten auf eine Transaktionsrückmeldung von Dienst avgwd erreicht. Error: (11/15/2015 12:43:30 AM) (Source: Service Control Manager) (EventID: 7011) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Warten auf eine Transaktionsrückmeldung von Dienst avgwd erreicht. Error: (11/15/2015 12:43:00 AM) (Source: Service Control Manager) (EventID: 7011) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Warten auf eine Transaktionsrückmeldung von Dienst avgwd erreicht. Error: (11/15/2015 12:42:30 AM) (Source: Service Control Manager) (EventID: 7011) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Warten auf eine Transaktionsrückmeldung von Dienst avgwd erreicht. Error: (11/14/2015 10:52:24 PM) (Source: Service Control Manager) (EventID: 7011) (User: ) Description: Das Zeitlimit (30000 ms) wurde beim Warten auf eine Transaktionsrückmeldung von Dienst avgwd erreicht. CodeIntegrity: =================================== Date: 2015-11-14 03:00:01.060 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\ELAMBKUP\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2015-11-14 03:00:01.060 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\ELAMBKUP\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2015-11-14 03:00:01.020 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\ELAMBKUP\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2015-11-14 03:00:00.980 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\KLELAMX64\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2015-11-14 03:00:00.980 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\KLELAMX64\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2015-11-14 03:00:00.980 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\KLELAMX64\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2015-11-13 01:33:14.053 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\ELAMBKUP\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2015-11-13 01:33:14.043 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\ELAMBKUP\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2015-11-13 01:33:14.043 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\ELAMBKUP\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. Date: 2015-11-13 01:33:14.033 Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\KLELAMX64\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde. ==================== Speicherinformationen =========================== Prozessor: Intel(R) Core(TM) i5 CPU M 460 @ 2.53GHz Prozentuale Nutzung des RAM: 44% Installierter physikalischer RAM: 3824.43 MB Verfügbarer physikalischer RAM: 2124.92 MB Summe virtueller Speicher: 7647 MB Verfügbarer virtueller Speicher: 5007.22 MB ==================== Laufwerke ================================ Drive c: (Windows) (Fixed) (Total:232.88 GB) (Free:110.12 GB) NTFS Drive d: (Data) (Fixed) (Total:232.49 GB) (Free:34.06 GB) NTFS ==================== MBR & Partitionstabelle ================== ======================================================== Disk: 0 (MBR Code: Windows 7 or Vista) (Size: 465.8 GB) (Disk ID: CC4DCEA4) Partition 1: (Active) - (Size=400 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=232.9 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=232.5 GB) - (Type=07 NTFS) ==================== Ende von Addition.txt ============================ |
15.11.2015, 15:36 | #6 |
/// the machine /// TB-Ausbilder | Win7: Programme/Dienste lassen sich nicht starten + Help_Decrypt Befall Drücke bitte die Windowstaste + R Taste und schreibe notepad in das Ausführen Fenster. Kopiere nun folgenden Text aus der Code-Box in das leere Textdokument Code:
ATTFilter HKLM Group Policy restriction on software: C:\Program Files (x86)\Malwarebytes' Anti-Malware <====== ACHTUNG HKLM Group Policy restriction on software: C:\Documents and Settings\All Users\Application Data\Malwarebytes <====== ACHTUNG HKLM Group Policy restriction on software: C:\Program Files (x86)\Kaspersky Lab <====== ACHTUNG HKLM Group Policy restriction on software: C:\Documents and Settings\All Users\Application Data\Kaspersky Lab <====== ACHTUNG Speichere diese bitte als Fixlist.txt auf deinem Desktop (oder dem Verzeichnis in dem sich FRST befindet).
Downloade dir bitte Malwarebytes Anti-Rootkit und speichere es auf deinem Desktop.
Starte keine andere Datei in diesem Ordner ohne Anweisung eines Helfers Downloade dir bitte TDSSKiller.exe und speichere diese Datei auf dem Desktop
__________________ --> Win7: Programme/Dienste lassen sich nicht starten + Help_Decrypt Befall |
15.11.2015, 18:51 | #7 |
| Win7: Programme/Dienste lassen sich nicht starten + Help_Decrypt Befall Beim 2. MBAR Scan wurde nichts mehr gefunden. Seit dem 1. Reboot zieht Windows wieder Updates. Soll ich diese installieren oder erstmal noch nicht? FRST: Code:
ATTFilter Entferungsergebnis von Farbar Recovery Scan Tool (x64) Version:07-11-2015 durchgeführt von DJ Dolphin (2015-11-15 17:43:27) Run:1 Gestartet von C:\Users\DJ Dolphin\Desktop Geladene Profile: DJ Dolphin (Verfügbare Profile: DJ Dolphin & Gast) Start-Modus: Normal ============================================== fixlist Inhalt: ***************** HKLM Group Policy restriction on software: C:\Program Files (x86)\Malwarebytes' Anti-Malware <====== ACHTUNG HKLM Group Policy restriction on software: C:\Documents and Settings\All Users\Application Data\Malwarebytes <====== ACHTUNG HKLM Group Policy restriction on software: C:\Program Files (x86)\Kaspersky Lab <====== ACHTUNG HKLM Group Policy restriction on software: C:\Documents and Settings\All Users\Application Data\Kaspersky Lab <====== ACHTUNG ***************** HKLM Group Policy restriction on software: C:\Program Files (x86)\Malwarebytes' Anti-Malware <====== ACHTUNG => erfolgreich wiederhergestellt HKLM Group Policy restriction on software: C:\Documents and Settings\All Users\Application Data\Malwarebytes <====== ACHTUNG => erfolgreich wiederhergestellt HKLM Group Policy restriction on software: C:\Program Files (x86)\Kaspersky Lab <====== ACHTUNG => erfolgreich wiederhergestellt HKLM Group Policy restriction on software: C:\Documents and Settings\All Users\Application Data\Kaspersky Lab <====== ACHTUNG => erfolgreich wiederhergestellt ==== Ende von Fixlog 17:43:28 ==== MBAR: Code:
ATTFilter Malwarebytes Anti-Rootkit BETA 1.9.3.1001 www.malwarebytes.org Database version: main: v2015.11.15.03 rootkit: v2015.11.14.01 Windows 7 x64 NTFS Internet Explorer 9.0.8112.16421 DJ Dolphin :: WAVEMASTER [administrator] 15.11.2015 18:03:44 mbar-log-2015-11-15 (18-03-44).txt Scan type: Quick scan Scan options enabled: Anti-Rootkit | Drivers | MBR | Physical Sectors | Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken Scan options disabled: Objects scanned: 396467 Time elapsed: 33 minute(s), 56 second(s) Memory Processes Detected: 0 (No malicious items detected) Memory Modules Detected: 0 (No malicious items detected) Registry Keys Detected: 6 HKU\S-1-5-21-2290779612-799622330-4084932457-1000_Classes\CLSID\{fbeb8a05-beee-4442-804e-409d6c4515e9} (Hijack.Trojan.Siredef.C) -> Delete on reboot. [ca8594ea6a21270f0248c53c7e8211ef] HKU\S-1-5-21-2290779612-799622330-4084932457-1000_Classes\CLSID\{42AEDC87-2188-41FD-B9A3-0C966FEABEC1}\INPROCSERVER32 (Trojan.ZAccess) -> Delete on reboot. [d17e403e94f750e67f7b6b367a89a858] HKU\S-1-5-21-2290779612-799622330-4084932457-1000_Classes\CLSID\{42AEDC87-2188-41FD-B9A3-0C966FEABEC1} (Trojan.ZAccess) -> Delete on reboot. [d17e403e94f750e67f7b6b367a89a858] HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{42AEDC87-2188-41FD-B9A3-0C966FEABEC1} (Trojan.ZAccess) -> Delete on reboot. [d17e403e94f750e67f7b6b367a89a858] HKLM\SOFTWARE\CLASSES\WOW6432NODE\CLSID\{42AEDC87-2188-41FD-B9A3-0C966FEABEC1} (Trojan.ZAccess) -> Delete on reboot. [d17e403e94f750e67f7b6b367a89a858] HKU\S-1-5-21-2290779612-799622330-4084932457-1000_Classes\CLSID\{FBEB8A05-BEEE-4442-804E-409D6C4515E9}\INPROCSERVER32 (Trojan.ZAccess) -> Delete on reboot. [301f8df12467e0568972465bcd36dd23] Registry Values Detected: 2 HKU\S-1-5-21-2290779612-799622330-4084932457-1000_Classes\CLSID\{42AEDC87-2188-41FD-B9A3-0C966FEABEC1}\INPROCSERVER32| (Trojan.ZAccess) -> Data: C:\Users\DJ Dolphin\AppData\Local\{f33a9fd9-8bab-5d8d-0aa8-d6b57861b4a7}\n. -> Delete on reboot. [d17e403e94f750e67f7b6b367a89a858] HKU\S-1-5-21-2290779612-799622330-4084932457-1000_Classes\CLSID\{FBEB8A05-BEEE-4442-804E-409D6C4515E9}\INPROCSERVER32| (Trojan.ZAccess) -> Data: C:\$Recycle.Bin\S-1-5-21-2290779612-799622330-4084932457-1000\$f33a9fd98bab5d8d0aa8d6b57861b4a7\n. -> Delete on reboot. [301f8df12467e0568972465bcd36dd23] Registry Data Items Detected: 0 (No malicious items detected) Folders Detected: 0 (No malicious items detected) Files Detected: 31 C:\Program Files (x86)\Magic Workstation\Autoupdater.exe (Spyware.PasswordStealer.XGen) -> Delete on reboot. [55faa6d80388bf77dac6babdd62b32ce] C:\Program Files (x86)\Magic Workstation094f\Autoupdater.exe (Spyware.PasswordStealer.XGen) -> Delete on reboot. [044bf18de9a22016524ec8aff70a827e] C:\Users\DJ Dolphin\AppData\Local\Temp\a (Ransom.CryptoWall) -> Delete on reboot. [1a35532ba2e990a65836ced4e9181be5] C:\Users\DJ Dolphin\AppData\Local\Temp\5B59.tmp (Trojan.Injector) -> Delete on reboot. [430c88f6f49723133145891b03fe639d] C:\Users\DJ Dolphin\AppData\Local\Temp\5B7E.tmp (Trojan.Injector) -> Delete on reboot. [3b144638602b47ef8beb2d775ea34bb5] C:\Users\DJ Dolphin\AppData\Local\Temp\5C72.tmp (Trojan.Injector) -> Delete on reboot. [86c9b8c6f596e551e492dec6cf32ae52] C:\Users\DJ Dolphin\AppData\Local\Temp\5C75.tmp (Trojan.Injector) -> Delete on reboot. [fb54bdc1b1da25119cda782c9d64639d] C:\Users\DJ Dolphin\AppData\Local\Temp\5C76.tmp (Trojan.Injector) -> Delete on reboot. [3619413d335884b21d5900a47e83d52b] C:\Users\DJ Dolphin\AppData\Local\Temp\5D6B.tmp (Trojan.Injector) -> Delete on reboot. [b09f8af4513a61d52f47f0b4778a4ab6] C:\Users\DJ Dolphin\AppData\Local\Temp\5D7B.tmp (Trojan.Injector) -> Delete on reboot. [82cd403e7516e55178fec6de04fd6c94] C:\Users\DJ Dolphin\AppData\Local\Temp\5DE8.tmp (Trojan.Injector) -> Delete on reboot. [4b047d01474496a0a3d3723202ff15eb] C:\Users\DJ Dolphin\AppData\Local\Temp\5E95.tmp (Trojan.Injector) -> Delete on reboot. [99b61f5fbbd042f492e4bbe912ef57a9] C:\Users\DJ Dolphin\AppData\Local\Temp\5E96.tmp (Trojan.Injector) -> Delete on reboot. [89c6b0ce91fad1651660bce8738ee020] C:\Users\DJ Dolphin\AppData\Local\Temp\5ED2.tmp (Trojan.Injector) -> Delete on reboot. [2629a3db5635c86e65111d87b64bdc24] C:\Users\DJ Dolphin\AppData\Local\Temp\5EF1.tmp (Trojan.Injector) -> Delete on reboot. [97b8334b6f1cc4724135e4c0b34e9e62] C:\Users\DJ Dolphin\AppData\Local\Temp\5F04.tmp (Trojan.Injector) -> Delete on reboot. [91be94eaeba081b53145842019e806fa] C:\Users\DJ Dolphin\AppData\Local\Temp\23D3.tmp (Trojan.Injector) -> Delete on reboot. [eb6468160b802c0a5e189b091de4c13f] C:\Users\DJ Dolphin\AppData\Local\Temp\2404.tmp (Trojan.Injector) -> Delete on reboot. [c7885b239af18ea87303297ba9588a76] C:\Users\DJ Dolphin\AppData\Local\Temp\2406.tmp (Trojan.Injector) -> Delete on reboot. [ec631c62c9c2b1854333772d49b8b14f] C:\Users\DJ Dolphin\AppData\Local\Temp\2462.tmp (Trojan.Injector) -> Delete on reboot. [39164d31701b55e16115ddc7c63b03fd] C:\Users\DJ Dolphin\AppData\Local\Temp\24CF.tmp (Trojan.Injector) -> Delete on reboot. [fa556717741731058de9535115ecac54] C:\Users\DJ Dolphin\AppData\Local\Temp\24E3.tmp (Trojan.Injector) -> Delete on reboot. [1f30542a484378bef77f990b04fd05fb] C:\Users\DJ Dolphin\AppData\Local\Temp\2644.tmp (Trojan.Injector) -> Delete on reboot. [311e2a546625ef47a1d5a5ff46bbf60a] C:\Users\DJ Dolphin\AppData\Local\Temp\b (Trojan.Injector) -> Delete on reboot. [4609641ae9a2aa8c482e089c25dca060] C:\Users\DJ Dolphin\AppData\Local\Temp\112E.tmp (Trojan.Injector) -> Delete on reboot. [cc83dea0e5a6da5c1e58e8bc34cd6e92] C:\Users\DJ Dolphin\AppData\Local\Temp\1286.tmp (Trojan.Injector) -> Delete on reboot. [d27d314de3a812246313842018e95fa1] C:\Users\DJ Dolphin\AppData\Local\Temp\1821.tmp (Trojan.Injector) -> Delete on reboot. [8dc24a345f2c44f27ff7ffa54db431cf] C:\Users\DJ Dolphin\AppData\Local\Temp\1A24.tmp (Trojan.Injector) -> Delete on reboot. [94bb8cf2008b1d197600178d43beb44c] C:\Users\DJ Dolphin\AppData\Local\Temp\1E39.tmp (Trojan.Injector) -> Delete on reboot. [96b9fb83632865d1d6a0c0e4af52926e] C:\Users\DJ Dolphin\AppData\Local\Temp\229C.tmp (Trojan.Injector) -> Delete on reboot. [3817304e276491a5f383bee6b34ead53] C:\Windows\Installer\{f33a9fd9-8bab-5d8d-0aa8-d6b57861b4a7}\@ (Backdoor.0Access) -> Delete on reboot. [47082757d3b83402257db24ee7194eb2] Physical Sectors Detected: 0 (No malicious items detected) (end) Geändert von GS81 (15.11.2015 um 19:08 Uhr) |
15.11.2015, 19:08 | #8 |
| Win7: Programme/Dienste lassen sich nicht starten + Help_Decrypt Befall TDSSKILLER: Code:
ATTFilter 19:54:01.0359 0x0770 TDSS rootkit removing tool 3.1.0.5 Jul 24 2015 12:29:57 19:54:09.0096 0x0770 ============================================================ 19:54:09.0096 0x0770 Current date / time: 2015/11/15 19:54:09.0096 19:54:09.0096 0x0770 SystemInfo: 19:54:09.0096 0x0770 19:54:09.0096 0x0770 OS Version: 6.1.7600 ServicePack: 0.0 19:54:09.0096 0x0770 Product type: Workstation 19:54:09.0096 0x0770 ComputerName: WAVEMASTER 19:54:09.0096 0x0770 UserName: DJ Dolphin 19:54:09.0096 0x0770 Windows directory: C:\Windows 19:54:09.0096 0x0770 System windows directory: C:\Windows 19:54:09.0096 0x0770 Running under WOW64 19:54:09.0096 0x0770 Processor architecture: Intel x64 19:54:09.0096 0x0770 Number of processors: 4 19:54:09.0096 0x0770 Page size: 0x1000 19:54:09.0096 0x0770 Boot type: Normal boot 19:54:09.0096 0x0770 ============================================================ 19:54:11.0733 0x0770 KLMD registered as C:\Windows\system32\drivers\67749618.sys 19:54:14.0260 0x0770 System UUID: {18B1888F-E92B-4A0B-3DDF-E45528F29568} 19:54:15.0445 0x0770 Drive \Device\Harddisk0\DR0 - Size: 0x7470C06000 ( 465.76 Gb ), SectorSize: 0x200, Cylinders: 0xED81, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040 19:54:15.0445 0x0770 ============================================================ 19:54:15.0445 0x0770 \Device\Harddisk0\DR0: 19:54:15.0461 0x0770 MBR partitions: 19:54:15.0461 0x0770 \Device\Harddisk0\DR0\Partition1: MBR, Type 0x7, StartLBA 0x800, BlocksNum 0xC8000 19:54:15.0461 0x0770 \Device\Harddisk0\DR0\Partition2: MBR, Type 0x7, StartLBA 0xC8800, BlocksNum 0x1D1C2800 19:54:15.0461 0x0770 \Device\Harddisk0\DR0\Partition3: MBR, Type 0x7, StartLBA 0x1D28B000, BlocksNum 0x1D0FB000 19:54:15.0461 0x0770 ============================================================ 19:54:15.0508 0x0770 C: <-> \Device\Harddisk0\DR0\Partition2 19:54:15.0601 0x0770 D: <-> \Device\Harddisk0\DR0\Partition3 19:54:15.0601 0x0770 ============================================================ 19:54:15.0601 0x0770 Initialize success 19:54:15.0601 0x0770 ============================================================ 19:55:35.0817 0x0df4 ============================================================ 19:55:35.0817 0x0df4 Scan started 19:55:35.0817 0x0df4 Mode: Manual; SigCheck; TDLFS; 19:55:35.0817 0x0df4 ============================================================ 19:55:35.0817 0x0df4 KSN ping started 19:55:38.0406 0x0df4 KSN ping finished: true 19:55:41.0745 0x0df4 ================ Scan system memory ======================== 19:55:41.0745 0x0df4 System memory - ok 19:55:41.0760 0x0df4 ================ Scan services ============================= 19:55:42.0182 0x0df4 [ 1B00662092F9F9568B995902F0CC40D5, D345014CF146FA57B2682C189D5E7F27D4C78F321F2723D912D623E777C2BB70 ] 1394ohci C:\Windows\system32\DRIVERS\1394ohci.sys 19:55:42.0416 0x0df4 1394ohci - ok 19:55:42.0478 0x0df4 [ 6F11E88748CDEFD2F76AA215F97DDFE5, BD0B3561EDCDE5EFD89372793CFD09DF879709BF469542F4A049705CBA9FD060 ] ACPI C:\Windows\system32\DRIVERS\ACPI.sys 19:55:42.0509 0x0df4 ACPI - ok 19:55:42.0540 0x0df4 [ 63B05A0420CE4BF0E4AF6DCC7CADA254, 56BCC219D6B886FD42B7D335B4A7BBA3C9BC148220CBD99F8583FB505DAE63BF ] AcpiPmi C:\Windows\system32\DRIVERS\acpipmi.sys 19:55:42.0774 0x0df4 AcpiPmi - ok 19:55:42.0852 0x0df4 [ 2F6B34B83843F0C5118B63AC634F5BF4, 43E3F5FBFB5D33981AC503DEE476868EC029815D459E7C36C4ABC2D2F75B5735 ] adp94xx C:\Windows\system32\DRIVERS\adp94xx.sys 19:55:42.0884 0x0df4 adp94xx - ok 19:55:42.0962 0x0df4 [ 597F78224EE9224EA1A13D6350CED962, DA7FD99BE5E3B7B98605BF5C13BF3F1A286C0DE1240617570B46FE4605E59BDC ] adpahci C:\Windows\system32\DRIVERS\adpahci.sys 19:55:42.0993 0x0df4 adpahci - ok 19:55:43.0040 0x0df4 [ E109549C90F62FB570B9540C4B148E54, E804563735153EA00A00641814244BC8A347B578E7D63A16F43FB17566EE5559 ] adpu320 C:\Windows\system32\DRIVERS\adpu320.sys 19:55:43.0086 0x0df4 adpu320 - ok 19:55:43.0118 0x0df4 [ 4B78B431F225FD8624C5655CB1DE7B61, 198A5AF2125C7C41F531A652D200C083A55A97DC541E3C0B5B253C7329949156 ] AeLookupSvc C:\Windows\System32\aelupsvc.dll 19:55:43.0445 0x0df4 AeLookupSvc - ok 19:55:43.0492 0x0df4 [ DB9D6C6B2CD95A9CA414D045B627422E, A4A0B2ACBFE311C20EF9F06A49DBE02CE90433C2364B292F6E8F78F6C274DF88 ] AFD C:\Windows\system32\drivers\afd.sys 19:55:43.0617 0x0df4 AFD - ok 19:55:43.0648 0x0df4 [ 608C14DBA7299D8CB6ED035A68A15799, 45360F89640BF1127C82A32393BD76205E4FA067889C40C491602F370C09282A ] agp440 C:\Windows\system32\DRIVERS\agp440.sys 19:55:43.0679 0x0df4 agp440 - ok 19:55:43.0710 0x0df4 [ 3290D6946B5E30E70414990574883DDB, 0E9294E1991572256B3CDA6B031DB9F39CA601385515EE59F1F601725B889663 ] ALG C:\Windows\System32\alg.exe 19:55:43.0773 0x0df4 ALG - ok 19:55:43.0835 0x0df4 [ 5812713A477A3AD7363C7438CA2EE038, A7316299470D2E57A11499C752A711BF4A71EB11C9CBA731ED0945FF6A966721 ] aliide C:\Windows\system32\DRIVERS\aliide.sys 19:55:43.0851 0x0df4 aliide - ok 19:55:43.0882 0x0df4 [ 1FF8B4431C353CE385C875F194924C0C, 3EA3A7F426B0FFC2461EDF4FDB4B58ACC9D0730EDA5B728D1EA1346EA0A02720 ] amdide C:\Windows\system32\DRIVERS\amdide.sys 19:55:43.0913 0x0df4 amdide - ok 19:55:43.0944 0x0df4 [ 7024F087CFF1833A806193EF9D22CDA9, E7F27E488C38338388103D3B7EEDD61D05E14FB140992AEE6F492FFC821BF529 ] AmdK8 C:\Windows\system32\DRIVERS\amdk8.sys 19:55:44.0116 0x0df4 AmdK8 - ok 19:55:44.0116 0x0df4 [ 1E56388B3FE0D031C44144EB8C4D6217, E88CA76FD47BA0EB427D59CB9BE040DE133D89D4E62D03A8D622624531D27487 ] AmdPPM C:\Windows\system32\DRIVERS\amdppm.sys 19:55:44.0178 0x0df4 AmdPPM - ok 19:55:44.0241 0x0df4 [ 7A4B413614C055935567CF88A9734D38, A3BB7CDF3EE0EEF67F89263E81145E73C7142EF5F0AF265375C2ECCE74F932C4 ] amdsata C:\Windows\system32\DRIVERS\amdsata.sys 19:55:44.0272 0x0df4 amdsata - ok 19:55:44.0334 0x0df4 [ F67F933E79241ED32FF46A4F29B5120B, D6EF539058F159CC4DD14CA9B1FD924998FEAC9D325C823C7A2DD21FEF1DC1A8 ] amdsbs C:\Windows\system32\DRIVERS\amdsbs.sys 19:55:44.0350 0x0df4 amdsbs - ok 19:55:44.0366 0x0df4 [ B4AD0CACBAB298671DD6F6EF7E20679D, FB566C892D0A3DC0A523AE20F35011996958D670937DD5C1A1FCCD36AAC714D7 ] amdxata C:\Windows\system32\DRIVERS\amdxata.sys 19:55:44.0381 0x0df4 amdxata - ok 19:55:44.0444 0x0df4 [ 42FD751B27FA0E9C69BB39F39E409594, DE349CAA570957868CA1CB0BE0FAF551CD4D44FD53EBC4391B9C1C7B9CF295D2 ] AppID C:\Windows\system32\drivers\appid.sys 19:55:44.0553 0x0df4 AppID - ok 19:55:44.0584 0x0df4 [ 0BC381A15355A3982216F7172F545DE1, C33AF13CB218F7BF52E967452573DF2ADD20A95C6BF99229794FEF07C4BBE725 ] AppIDSvc C:\Windows\System32\appidsvc.dll 19:55:44.0802 0x0df4 AppIDSvc - ok 19:55:44.0865 0x0df4 [ D065BE66822847B7F127D1F90158376E, 20F911F390FF23C2C42361A449C4344DB59F1DC21EDD1E7EBC4E80914DEF7824 ] Appinfo C:\Windows\System32\appinfo.dll 19:55:44.0943 0x0df4 Appinfo - ok 19:55:44.0990 0x0df4 [ C484F8CEB1717C540242531DB7845C4E, C507CE26716EB923B864ED85E8FA0B24591E2784A2F4F0E78AEED7E9953311F6 ] arc C:\Windows\system32\DRIVERS\arc.sys 19:55:45.0005 0x0df4 arc - ok 19:55:45.0021 0x0df4 [ 019AF6924AEFE7839F61C830227FE79C, 5926B9DDFC9198043CDD6EA0B384C83B001EC225A8125628C4A45A3E6C42C72A ] arcsas C:\Windows\system32\DRIVERS\arcsas.sys 19:55:45.0052 0x0df4 arcsas - ok 19:55:45.0099 0x0df4 [ 769765CE2CC62867468CEA93969B2242, 0D8F19D49869DF93A3876B4C2E249D12E83F9CE11DAE8917D368E292043D4D26 ] AsyncMac C:\Windows\system32\DRIVERS\asyncmac.sys 19:55:45.0146 0x0df4 AsyncMac - ok 19:55:45.0255 0x0df4 [ 02062C0B390B7729EDC9E69C680A6F3C, 0261683C6DC2706DCE491A1CDC954AC9C9E649376EC30760BB4E225E18DC5273 ] atapi C:\Windows\system32\DRIVERS\atapi.sys 19:55:45.0286 0x0df4 atapi - ok 19:55:45.0442 0x0df4 [ E857EEE6B92AAA473EBB3465ADD8F7E7, 1C7E4737E649A025B3C4974A4F7D1353EAB85561FC8ED54E5C22A777E1A189B3 ] athr C:\Windows\system32\DRIVERS\athrx.sys 19:55:45.0536 0x0df4 athr - ok 19:55:45.0582 0x0df4 [ 07721A77180EDD4D39CCB865BF63C7FD, 9E8117E747C86154F98F2686D805A981029CC5D11AFB115A529429C9A4579BE5 ] AudioEndpointBuilder C:\Windows\System32\Audiosrv.dll 19:55:45.0660 0x0df4 AudioEndpointBuilder - ok 19:55:45.0754 0x0df4 [ 07721A77180EDD4D39CCB865BF63C7FD, 9E8117E747C86154F98F2686D805A981029CC5D11AFB115A529429C9A4579BE5 ] AudioSrv C:\Windows\System32\Audiosrv.dll 19:55:45.0816 0x0df4 AudioSrv - ok 19:55:46.0144 0x0df4 [ 843A45EBB934EB33992CE8C72927DA21, B65E0FA7E654908B72544E4236A0A534AA53153A321877A6CC3A01876FA6FB6D ] AvgAMPS C:\Program Files (x86)\AVG\Av\avgamps.exe 19:55:46.0191 0x0df4 AvgAMPS - ok 19:55:46.0269 0x0df4 [ 0047D8CDD760C85F0FCEE46FB10F7AF5, 312039D91C71819A58E1970330ED6443CFA462FAA0B2E00B55AC25D523C65722 ] Avgdiska C:\Windows\system32\DRIVERS\avgdiska.sys 19:55:46.0300 0x0df4 Avgdiska - ok 19:55:46.0550 0x0df4 [ 279A6B916711B54DA2B2913250E5AFF1, 16BE31BB009079AE0C8C3E9CF14354F87578C8AD6502AB2F22D918B174A51EC4 ] AVGIDSAgent C:\Program Files (x86)\AVG\Av\avgidsagent.exe 19:55:46.0721 0x0df4 AVGIDSAgent - ok 19:55:46.0830 0x0df4 [ 788FA68A9319CC73413AFE97EFD642A1, C6DF7D4A64D64A6BEAF185CDE7D910ED712A3873786EBCCF28E7E0B95A8E7905 ] AVGIDSDriver C:\Windows\system32\DRIVERS\avgidsdrivera.sys 19:55:46.0862 0x0df4 AVGIDSDriver - ok 19:55:46.0940 0x0df4 [ E9796E2C69DC0D3AEE77EC82B80F83F3, E89011A5CC74AE9FDCCD094C50289E7875A014E537A05338EA6B0152B6E992F4 ] AVGIDSHA C:\Windows\system32\DRIVERS\avgidsha.sys 19:55:46.0986 0x0df4 AVGIDSHA - ok 19:55:47.0064 0x0df4 [ D2E83AA008426FC9408272035E50D40B, 6F3B3385C5E1BDBF29343737C5A72A3C8B671016BC805EC51B4C0728807726E3 ] Avgldx64 C:\Windows\system32\DRIVERS\avgldx64.sys 19:55:47.0111 0x0df4 Avgldx64 - ok 19:55:47.0174 0x0df4 [ 6BB3E78DE490503540DD93B9A733794D, 18832B066A10EF2CF0A02F0B834B91771DD95CC3FAB24CBACB7B60E46D280B25 ] Avgloga C:\Windows\system32\DRIVERS\avgloga.sys 19:55:47.0236 0x0df4 Avgloga - ok 19:55:47.0298 0x0df4 [ 0D853D9B288298D3C61D7FC94A659DB2, B4B7C19EDE805B49645EF8A310EB6CED41E46CC606AB57D7496E0CA845161AE1 ] Avgmfx64 C:\Windows\system32\DRIVERS\avgmfx64.sys 19:55:47.0314 0x0df4 Avgmfx64 - ok 19:55:47.0423 0x0df4 [ B4551FA74295B9629B8F63B1D54EF4FB, 3C0C798D98AC8B50098ACE634ED4733A2A245D2C03B8C92397899767C11C24DD ] Avgrkx64 C:\Windows\system32\DRIVERS\avgrkx64.sys 19:55:47.0454 0x0df4 Avgrkx64 - ok 19:55:47.0610 0x0df4 [ 3FDBE5DF05A61B4418CF086CBDA4E93A, BFD2DA45C444258BA288F7A6374E86A8572217705B5128B342EE93D138A21830 ] avgsvc C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe 19:55:47.0657 0x0df4 avgsvc - ok 19:55:47.0720 0x0df4 [ E78505E4A45999570F380EAA87571239, B1A22691ABCA55C68EBCF7C68E34028735B48BB6BDBEED02DA37E03752A7328A ] Avgtdia C:\Windows\system32\DRIVERS\avgtdia.sys 19:55:47.0766 0x0df4 Avgtdia - ok 19:55:47.0844 0x0df4 [ F328F131751BBFC9BBB5EDFE4080158F, 080F05CA0B6F600C27015A0572717FC94C5828847B816F8AEEFFE14A1F1E90C7 ] avgwd C:\Program Files (x86)\AVG\Av\avgwdsvcx.exe 19:55:47.0860 0x0df4 avgwd - ok 19:55:48.0094 0x0df4 [ AB1AF0BA03DCB6A879BC22F472EACEEA, A75B73D0B1FE885F6DC2C7A0B755A6E12F9DC54CE702A1FFC3F283196793627A ] AVP15.0.1 C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\avp.exe 19:55:48.0125 0x0df4 AVP15.0.1 - ok 19:55:48.0188 0x0df4 [ B20B5FA5CA050E9926E4D1DB81501B32, 91B9038349BA07E32DE809E6798167EE44087809EB1174B84EC16580040F1BE0 ] AxInstSV C:\Windows\System32\AxInstSV.dll 19:55:48.0297 0x0df4 AxInstSV - ok 19:55:48.0359 0x0df4 [ 3E5B191307609F7514148C6832BB0842, DE011CB7AA4A2405FAF21575182E0793A1D83DFFC44E9A7864D59F3D51D8D580 ] b06bdrv C:\Windows\system32\DRIVERS\bxvbda.sys 19:55:48.0453 0x0df4 b06bdrv - ok 19:55:48.0500 0x0df4 [ B5ACE6968304A3900EEB1EBFD9622DF2, 1DAA118D8CA3F97B34DF3D3CDA1C78EAB2ED225699FEABE89D331AE0CB7679FA ] b57nd60a C:\Windows\system32\DRIVERS\b57nd60a.sys 19:55:48.0531 0x0df4 b57nd60a - ok 19:55:48.0874 0x0df4 [ 5B5C36B2EC500462A715DB6BCBAF5DA7, E90EB94C89CDA0D7D6569316BFB4015CC42961076BF837ED0C931E7CBAA2BFE5 ] BCM43XX C:\Windows\system32\DRIVERS\bcmwl664.sys 19:55:49.0014 0x0df4 BCM43XX - ok 19:55:49.0077 0x0df4 [ FDE360167101B4E45A96F939F388AEB0, 8D1457E866BBD645C4B9710DFBFF93405CC1193BF9AE42326F2382500B713B82 ] BDESVC C:\Windows\System32\bdesvc.dll 19:55:49.0155 0x0df4 BDESVC - ok 19:55:49.0186 0x0df4 [ 16A47CE2DECC9B099349A5F840654746, 77C008AEDB07FAC66413841D65C952DDB56FE7DCA5E9EF9C8F4130336B838024 ] Beep C:\Windows\system32\drivers\Beep.sys 19:55:49.0326 0x0df4 Beep - ok 19:55:49.0420 0x0df4 [ 4992C609A6315671463E30F6512BC022, 3020034556EAC25CD90F41D3BFFDD0BB2C3D1C5BAC4359F4B71B84A9FC404495 ] BFE C:\Windows\System32\bfe.dll 19:55:49.0607 0x0df4 BFE - ok 19:55:49.0732 0x0df4 [ 7F0C323FE3DA28AA4AA1BDA3F575707F, 7FF09CBC16A9E5F357A76FF79A3F0DD047957D474031F51A6BB4916C7911F005 ] BITS C:\Windows\System32\qmgr.dll 19:55:49.0841 0x0df4 BITS - ok 19:55:49.0888 0x0df4 [ 61583EE3C3A17003C4ACD0475646B4D3, 17E4BECC309C450E7E44F59A9C0BBC24D21BDC66DFBA65B8F198A00BB47A9811 ] blbdrive C:\Windows\system32\DRIVERS\blbdrive.sys 19:55:49.0935 0x0df4 blbdrive - ok 19:55:49.0966 0x0df4 [ 19D20159708E152267E53B66677A4995, 6401FA5C3EFF26BED075FEC68F868CD8D0598FDB45EA9381810615F7252F7A9A ] bowser C:\Windows\system32\DRIVERS\bowser.sys 19:55:50.0060 0x0df4 bowser - ok 19:55:50.0184 0x0df4 [ F09EEE9EDC320B5E1501F749FDE686C8, 66691114C42E12F4CC6DC4078D4D2FA4029759ACDAF1B59D17383487180E84E3 ] BrFiltLo C:\Windows\system32\DRIVERS\BrFiltLo.sys 19:55:50.0216 0x0df4 BrFiltLo - ok 19:55:50.0247 0x0df4 [ B114D3098E9BDB8BEA8B053685831BE6, 0ED23C1897F35FA00B9C2848DE4ED200E18688AA7825674888054BBC3A3EB92C ] BrFiltUp C:\Windows\system32\DRIVERS\BrFiltUp.sys 19:55:50.0262 0x0df4 BrFiltUp - ok 19:55:50.0356 0x0df4 [ 94FBC06F294D58D02361918418F996E3, 62C7CC2AF8F5A0BB0C262DACDE3F72C6AC318C3840CE60E46EE2064B32BDA5EF ] Browser C:\Windows\System32\browser.dll 19:55:50.0418 0x0df4 Browser - ok 19:55:50.0465 0x0df4 [ 43BEA8D483BF1870F018E2D02E06A5BD, 4E6F5A5FD8C796A110B0DC9FF29E31EA78C04518FC1C840EF61BABD58AB10272 ] Brserid C:\Windows\System32\Drivers\Brserid.sys 19:55:50.0512 0x0df4 Brserid - ok 19:55:50.0543 0x0df4 [ A6ECA2151B08A09CACECA35C07F05B42, E2875BB7768ABAF38C3377007AA0A3C281503474D1831E396FB6599721586B0C ] BrSerWdm C:\Windows\System32\Drivers\BrSerWdm.sys 19:55:50.0559 0x0df4 BrSerWdm - ok 19:55:50.0590 0x0df4 [ B79968002C277E869CF38BD22CD61524, 50631836502237AF4893ECDCEA43B9031C3DE97433F594D46AF7C3C77F331983 ] BrUsbMdm C:\Windows\System32\Drivers\BrUsbMdm.sys 19:55:50.0652 0x0df4 BrUsbMdm - ok 19:55:50.0684 0x0df4 [ A87528880231C54E75EA7A44943B38BF, 4C8BBB29FDA76A96840AA47A8613C15D4466F9273A13941C19507008629709C9 ] BrUsbSer C:\Windows\System32\Drivers\BrUsbSer.sys 19:55:50.0715 0x0df4 BrUsbSer - ok 19:55:50.0824 0x0df4 [ 9DA669F11D1F894AB4EB69BF546A42E8, B498B8B6CEF957B73179D1ADAF084BBB57BB3735D810F9BE2C7B1D58A4FD25A4 ] BTHMODEM C:\Windows\system32\DRIVERS\bthmodem.sys 19:55:50.0855 0x0df4 BTHMODEM - ok 19:55:50.0902 0x0df4 [ 95F9C2976059462CBBF227F7AAB10DE9, 2797AE919FF7606B070FB039CECDB0707CD2131DCAC09C5DF14F443D881C9F34 ] bthserv C:\Windows\system32\bthserv.dll 19:55:50.0964 0x0df4 bthserv - ok 19:55:50.0996 0x0df4 [ B8BD2BB284668C84865658C77574381A, 6C55BA288B626DF172FDFEA0BD7027FAEBA1F44EF20AB55160D7C7DC6E717D65 ] cdfs C:\Windows\system32\DRIVERS\cdfs.sys 19:55:51.0058 0x0df4 cdfs - ok 19:55:51.0120 0x0df4 [ 83D2D75E1EFB81B3450C18131443F7DB, F2C686C980D818E797818E75B808E1E0B51B2045840A4BFC32D860B7DB4DFA22 ] cdrom C:\Windows\system32\DRIVERS\cdrom.sys 19:55:51.0183 0x0df4 cdrom - ok 19:55:51.0230 0x0df4 [ 312E2F82AF11E79906898AC3E3D58A1F, F6CB7D8B204B94F749D5DBEFD552150AAB16A34D629F87F73823A7504465F106 ] CertPropSvc C:\Windows\System32\certprop.dll 19:55:51.0339 0x0df4 CertPropSvc - ok 19:55:51.0542 0x0df4 [ 41E7C4FA6491747402CFCA77CC1C7AAB, 676CD982A0D33B60A646AC7C0158F7421E395C8B4B12E544C55AF5C09E470CC5 ] cfWiMAXService C:\Program Files (x86)\TOSHIBA\ConfigFree\CFIWmxSvcs64.exe 19:55:51.0573 0x0df4 cfWiMAXService - ok 19:55:51.0620 0x0df4 [ D7CD5C4E1B71FA62050515314CFB52CF, 513B5A849899F379F0BC6AB3A8A05C3493C2393C95F036612B96EC6E252E1C64 ] circlass C:\Windows\system32\DRIVERS\circlass.sys 19:55:51.0635 0x0df4 circlass - ok 19:55:51.0729 0x0df4 [ FE1EC06F2253F691FE36217C592A0206, B9F122DB5E665ECDF29A5CB8BB6B531236F31A54A95769D6C5C1924C87FE70CE ] CLFS C:\Windows\system32\CLFS.sys 19:55:51.0776 0x0df4 CLFS - ok 19:55:51.0900 0x0df4 [ D88040F816FDA31C3B466F0FA0918F29, 39D3630E623DA25B8444B6D3AAAB16B98E7E289C5619E19A85D47B74C71449F3 ] clr_optimization_v2.0.50727_32 C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe 19:55:51.0947 0x0df4 clr_optimization_v2.0.50727_32 - ok 19:55:52.0088 0x0df4 [ D1CEEA2B47CB998321C579651CE3E4F8, 654013B8FD229A50017B08DEC6CA19C7DDA8CE0771260E057A92625201D539B1 ] clr_optimization_v2.0.50727_64 C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe 19:55:52.0197 0x0df4 clr_optimization_v2.0.50727_64 - ok 19:55:52.0244 0x0df4 [ 0840155D0BDDF1190F84A663C284BD33, 696039FA63CFEB33487FAA8FD7BBDB220141E9C6E529355D768DFC87999A9C3A ] CmBatt C:\Windows\system32\DRIVERS\CmBatt.sys 19:55:52.0275 0x0df4 CmBatt - ok 19:55:52.0322 0x0df4 [ E19D3F095812725D88F9001985B94EDD, 46243C5CCC4981CAC6FA6452FFCEC33329BF172448F1852D52592C9342E0E18B ] cmdide C:\Windows\system32\DRIVERS\cmdide.sys 19:55:52.0353 0x0df4 cmdide - ok 19:55:52.0446 0x0df4 [ AFA1BFF926592FD0C3AB97D838652EF9, C38BC4BBD4EDF779993B2FECF96C1FD55B085F3FBEB3E1AE3C892DFD369D611D ] cm_km_w C:\Windows\system32\DRIVERS\cm_km_w.sys 19:55:52.0493 0x0df4 cm_km_w - ok 19:55:52.0602 0x0df4 [ CA7720B73446FDDEC5C69519C1174C98, F24796765587CC1D653A04783B1659564F42E600DA3AFA3DED724592B291D033 ] CNG C:\Windows\system32\Drivers\cng.sys 19:55:52.0665 0x0df4 CNG - ok 19:55:52.0712 0x0df4 [ 102DE219C3F61415F964C88E9085AD14, CD74CB703381F1382C32CF892FF2F908F4C9412E1BC77234F8FEA5D4666E1BF1 ] Compbatt C:\Windows\system32\DRIVERS\compbatt.sys 19:55:52.0821 0x0df4 Compbatt - ok 19:55:52.0836 0x0df4 [ F26B3A86F6FA87CA360B879581AB4123, 723904362614FE47F6CC0EA0656BA1B47EA32D73BAFB61688A5E5CAE4340B1BF ] CompositeBus C:\Windows\system32\DRIVERS\CompositeBus.sys 19:55:52.0883 0x0df4 CompositeBus - ok 19:55:52.0914 0x0df4 COMSysApp - ok 19:55:52.0946 0x0df4 [ CAB0EEAF5295FC96DDD3E19DCE27E131, 87BCAC18D920153322D325AA5B93BB0B447577D67261FDCC01C5B60643CEA792 ] ConfigFree Service C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSvcs.exe 19:55:52.0961 0x0df4 ConfigFree Service - ok 19:55:53.0024 0x0df4 [ 1C827878A998C18847245FE1F34EE597, 41EF7443D8B2733AA35CAC64B4F5F74FAC8BB0DA7D3936B69EC38E2DC3972E60 ] crcdisk C:\Windows\system32\DRIVERS\crcdisk.sys 19:55:53.0055 0x0df4 crcdisk - ok 19:55:53.0117 0x0df4 [ F02786B66375292E58C8777082D4396D, EE7BCD10C014A16A06619EFD47226FAA1460A67CD7687EA8C38D63C71DBCD51B ] CryptSvc C:\Windows\system32\cryptsvc.dll 19:55:53.0211 0x0df4 CryptSvc - ok 19:55:53.0258 0x0df4 [ 7266972E86890E2B30C0C322E906B027, BFA30E85F5BD3AA933913BD7C6D2B5993DB7AFB0C98349B61A6BEF0BDC8A3680 ] DcomLaunch C:\Windows\system32\rpcss.dll 19:55:53.0336 0x0df4 DcomLaunch - ok 19:55:53.0507 0x0df4 [ CC8B5C964B777F4EC3E89F13B4B5FF0F, 75E161265CCFFCB61FCE855C9790E2E06531E6B1C3DCCB1E3018466D03AD3919 ] DCService.exe C:\ProgramData\DatacardService\DCService.exe 19:55:53.0523 0x0df4 DCService.exe - detected UnsignedFile.Multi.Generic ( 1 ) 19:55:55.0972 0x0df4 Detect skipped due to KSN trusted 19:55:55.0972 0x0df4 DCService.exe - ok 19:55:56.0050 0x0df4 [ 3CEC7631A84943677AA8FA8EE5B6B43D, 32061DAC9ED6C1EBA3B367B18D0E965AEEC2DF635DCF794EC39D086D32503AC5 ] defragsvc C:\Windows\System32\defragsvc.dll 19:55:56.0112 0x0df4 defragsvc - ok 19:55:56.0159 0x0df4 [ 9C253CE7311CA60FC11C774692A13208, 23507138576DB75AA8B7415140F7B5D8A90CB2661796223870461C721A36AEBF ] DfsC C:\Windows\system32\Drivers\dfsc.sys 19:55:56.0206 0x0df4 DfsC - ok 19:55:56.0268 0x0df4 [ CE3B9562D997F69B330D181A8875960F, 6FEE6622859198C5C13545867EF7CFE8EDC991360E976F792313DAA9C82CC5C8 ] Dhcp C:\Windows\system32\dhcpcore.dll 19:55:56.0362 0x0df4 Dhcp - ok 19:55:56.0409 0x0df4 [ 13096B05847EC78F0977F2C0F79E9AB3, 1E44981B684F3E56F5D2439BB7FA78BD1BC876BB2265AE089AEC68F241B05B26 ] discache C:\Windows\system32\drivers\discache.sys 19:55:56.0518 0x0df4 discache - ok 19:55:56.0674 0x0df4 [ 9819EEE8B5EA3784EC4AF3B137A5244C, 571BC886E87C888DA96282E381A746D273B58B9074E84D4CA91275E26056D427 ] Disk C:\Windows\system32\DRIVERS\disk.sys 19:55:56.0690 0x0df4 Disk - ok 19:55:56.0721 0x0df4 [ 85CF424C74A1D5EC33533E1DBFF9920A, 882D5FA0D5EC053D76A0C46A6047A621D607651693CF94E5506219EECCC8D079 ] Dnscache C:\Windows\System32\dnsrslvr.dll 19:55:56.0799 0x0df4 Dnscache - ok 19:55:56.0861 0x0df4 [ 14452ACDB09B70964C8C21BF80A13ACB, DA0AAAC04626EFF4256D7095FF1DDA1F1B17676E26990C418BDF5090476F2AB4 ] dot3svc C:\Windows\System32\dot3svc.dll 19:55:56.0970 0x0df4 dot3svc - ok 19:55:57.0002 0x0df4 [ 8C2BA6BEA949EE6E68385F5692BAFB94, 1047F473DCE0FB56BEA5C1B7929752C1FBAB5983C8202ABB4EEA48FCD60A353A ] DPS C:\Windows\system32\dps.dll 19:55:57.0048 0x0df4 DPS - ok 19:55:57.0111 0x0df4 [ 9B19F34400D24DF84C858A421C205754, 967AF267B4124BADA8F507CEBF25F2192D146A4D63BE71B45BFC03C5DA7F21A7 ] drmkaud C:\Windows\system32\drivers\drmkaud.sys 19:55:57.0142 0x0df4 drmkaud - ok 19:55:57.0298 0x0df4 [ 33F90B202E9DD9B7D489EB59310FDC34, 6ECF6669433E090E9CF6B1875AF18D2C06F8CDB3901D58BF89C3E2202574ABBD ] dtsoftbus01 C:\Windows\system32\DRIVERS\dtsoftbus01.sys 19:55:57.0314 0x0df4 dtsoftbus01 - ok 19:55:57.0438 0x0df4 [ 1633B9ABF52784A1331476397A48CBEF, 697780697C4C55FCCF5FB65C93FB37B3F5A43BF0C59FDBB9EF822D0E993E47BD ] DXGKrnl C:\Windows\System32\drivers\dxgkrnl.sys 19:55:57.0485 0x0df4 DXGKrnl - ok 19:55:57.0594 0x0df4 [ E6BDB3C7EF35D82FF987576B9CF07A57, 02C7EFB15A9DEF0FC3A86B838FF50D599FC731442F387686E0C82B353C914A66 ] e1kexpress C:\Windows\system32\DRIVERS\e1k62x64.sys 19:55:57.0641 0x0df4 e1kexpress - ok 19:55:57.0704 0x0df4 [ E2DDA8726DA9CB5B2C4000C9018A9633, 0C967DBC3636A76A696997192A158AA92A1AF19F01E3C66D5BF91818A8FAEA76 ] EapHost C:\Windows\System32\eapsvc.dll 19:55:57.0782 0x0df4 EapHost - ok 19:55:58.0047 0x0df4 [ DC5D737F51BE844D8C82C695EB17372F, 6D4022D9A46EDE89CEF0FAEADCC94C903234DFC460C0180D24FF9E38E8853017 ] ebdrv C:\Windows\system32\DRIVERS\evbda.sys 19:55:58.0312 0x0df4 ebdrv - ok 19:55:58.0374 0x0df4 [ 156F6159457D0AA7E59B62681B56EB90, 27B855BF79490E4CC58D38A920C077A56785494BFFF0B448A898486009B24937 ] EFS C:\Windows\System32\lsass.exe 19:55:58.0530 0x0df4 EFS - ok 19:55:58.0686 0x0df4 [ B91D81B3B54A54CCAFC03733DBC2E29E, B08CFD3136F678CF902722B32CA55C4983EEE5AEBDCEE036BEB746914742141C ] ehRecvr C:\Windows\ehome\ehRecvr.exe 19:55:58.0811 0x0df4 ehRecvr - ok 19:55:58.0842 0x0df4 [ 4705E8EF9934482C5BB488CE28AFC681, 359E9EC5693CE0BE89082E1D5D8F5C5439A5B985010FF0CB45C11E3CFE30637D ] ehSched C:\Windows\ehome\ehsched.exe 19:55:58.0905 0x0df4 ehSched - ok 19:55:58.0983 0x0df4 [ 0E5DA5369A0FCAEA12456DD852545184, 9A64AC5396F978C3B92794EDCE84DCA938E4662868250F8C18FA7C2C172233F8 ] elxstor C:\Windows\system32\DRIVERS\elxstor.sys 19:55:59.0014 0x0df4 elxstor - ok 19:55:59.0030 0x0df4 [ 34A3C54752046E79A126E15C51DB409B, 7D5B5E150C7C73666F99CBAFF759029716C86F16B927E0078D77F8A696616D75 ] ErrDev C:\Windows\system32\DRIVERS\errdev.sys 19:55:59.0092 0x0df4 ErrDev - ok 19:55:59.0170 0x0df4 [ 4166F82BE4D24938977DD1746BE9B8A0, 24121751B7306225AD1C808442D7B030DEF377E9316AA0A3C5C7460E87317881 ] EventSystem C:\Windows\system32\es.dll 19:55:59.0279 0x0df4 EventSystem - ok 19:55:59.0420 0x0df4 [ 23B79B19F49A037EBA4A9A3BB03ED91D, 2E0918B20188CBFAC0E64A5B36739DF4638A343553908888DFDD708743370F3F ] ewusbnet C:\Windows\system32\DRIVERS\ewusbnet.sys 19:55:59.0482 0x0df4 ewusbnet - ok 19:55:59.0544 0x0df4 [ E2CBB821C7CAE0EF8B56DE28ED85C740, 4AB358FEBC7B57774B2DD54705FAD3F5E0308F1E1FECBED73231DCEF11CF7D3B ] ew_hwusbdev C:\Windows\system32\DRIVERS\ew_hwusbdev.sys 19:55:59.0591 0x0df4 ew_hwusbdev - ok 19:55:59.0607 0x0df4 [ A510C654EC00C1E9BDD91EEB3A59823B, 76CD277730F7B08D375770CD373D786160F34D1481AF0536BA1A5D2727E255F5 ] exfat C:\Windows\system32\drivers\exfat.sys 19:55:59.0685 0x0df4 exfat - ok 19:55:59.0763 0x0df4 [ 0ADC83218B66A6DB380C330836F3E36D, 798D6F83B5DBCC1656595E0A96CF12087FCCBE19D1982890D0CE5F629B328B29 ] fastfat C:\Windows\system32\drivers\fastfat.sys 19:55:59.0888 0x0df4 fastfat - ok 19:56:00.0028 0x0df4 [ D607B2F1BEE3992AA6C2C92C0A2F0855, E22301C8F01DBF0A38A85165959BB070647C996CB1BCD50FDFE3DDDCA427DF2A ] Fax C:\Windows\system32\fxssvc.exe 19:56:00.0122 0x0df4 Fax - ok 19:56:00.0137 0x0df4 [ D765D19CD8EF61F650C384F62FAC00AB, 9F0A483A043D3BA873232AD3BA5F7BF9173832550A27AF3E8BD433905BD2A0EE ] fdc C:\Windows\system32\DRIVERS\fdc.sys 19:56:00.0184 0x0df4 fdc - ok 19:56:00.0231 0x0df4 [ 0438CAB2E03F4FB61455A7956026FE86, 6D4DDC2973DB25CE0C7646BC85EFBCC004EBE35EA683F62162AE317C6F1D8DFE ] fdPHost C:\Windows\system32\fdPHost.dll 19:56:00.0278 0x0df4 fdPHost - ok 19:56:00.0324 0x0df4 [ 802496CB59A30349F9A6DD22D6947644, 52D59D3D628D5661F83F090F33F744F6916E0CC1F76E5A33983E06EB66AE19F8 ] FDResPub C:\Windows\system32\fdrespub.dll 19:56:00.0402 0x0df4 FDResPub - ok 19:56:00.0465 0x0df4 [ 655661BE46B5F5F3FD454E2C3095B930, 549C8E2A2A37757E560D55FFA6BFDD838205F17E40561E67F0124C934272CD1A ] FileInfo C:\Windows\system32\drivers\fileinfo.sys 19:56:00.0496 0x0df4 FileInfo - ok 19:56:00.0512 0x0df4 [ 5F671AB5BC87EEA04EC38A6CD5962A47, 6B61D3363FF3F9C439BD51102C284972EAE96ACC0683B9DC7E12D25D0ADC51B6 ] Filetrace C:\Windows\system32\drivers\filetrace.sys 19:56:00.0668 0x0df4 Filetrace - ok 19:56:00.0714 0x0df4 [ C172A0F53008EAEB8EA33FE10E177AF5, 9175A95B323696D1B35C9EFEB7790DD64E6EE0B7021E6C18E2F81009B169D77B ] flpydisk C:\Windows\system32\DRIVERS\flpydisk.sys 19:56:00.0761 0x0df4 flpydisk - ok 19:56:00.0792 0x0df4 [ F7866AF72ABBAF84B1FA5AA195378C59, 9D522044FE9C18FB3EC327E675737C01F2A8231DDE900421D3A431596946A7F8 ] FltMgr C:\Windows\system32\drivers\fltmgr.sys 19:56:00.0808 0x0df4 FltMgr - ok 19:56:00.0933 0x0df4 [ BC00505CFDA789ED3BE95D2FF38C4875, 9CB98AFF8A9740CFB53BDFB3DD40A76EB79C160CF2DF03E5EEFF6F2109216FEB ] FontCache C:\Windows\system32\FntCache.dll 19:56:01.0089 0x0df4 FontCache - ok 19:56:01.0214 0x0df4 [ 8D89E3131C27FDD6932189CB785E1B7A, AC7DA4C5E6D2E41D1A1DE146E46F034FAF0FB11AD801F070F2D5CD08166E9EB7 ] FontCache3.0.0.0 C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe 19:56:01.0260 0x0df4 FontCache3.0.0.0 - ok 19:56:01.0292 0x0df4 [ D43703496149971890703B4B1B723EAC, F06397B2EDCA61629249D2EF1CBB7827A8BEAB8488246BD85EF6AE1363C0DA6E ] FsDepends C:\Windows\system32\drivers\FsDepends.sys 19:56:01.0307 0x0df4 FsDepends - ok 19:56:01.0338 0x0df4 [ D3E3F93D67821A2DB2B3D9FAC2DC2064, 727FAA7E15A20ED3A37668D294ABDE6EAF1C87C34EE283C99EE3303E85001404 ] Fs_Rec C:\Windows\system32\drivers\Fs_Rec.sys 19:56:01.0354 0x0df4 Fs_Rec - ok 19:56:01.0385 0x0df4 [ B8B2A6E1558F8F5DE5CE431C5B2C7B09, 24A9F04A0622681A4E4B6BCC47C45016787C6036EAD828920812D9FAD49A71E3 ] fvevol C:\Windows\system32\DRIVERS\fvevol.sys 19:56:01.0401 0x0df4 fvevol - ok 19:56:01.0432 0x0df4 [ 8C778D335C9D272CFD3298AB02ABE3B6, 85F0B13926B0F693FA9E70AA58DE47100E4B6F893772EBE4300C37D9A36E6005 ] gagp30kx C:\Windows\system32\DRIVERS\gagp30kx.sys 19:56:01.0463 0x0df4 gagp30kx - ok 19:56:01.0557 0x0df4 [ 1A0B9D84BEB3306F728BC3009D432F5C, 66BCE24D679A312148141F55D0F10BD0F771261CC481B81D6921448CA77F0974 ] GameConsoleService C:\Program Files (x86)\TOSHIBA Games\TOSHIBA Game Console\GameConsoleService.exe 19:56:01.0604 0x0df4 GameConsoleService - ok 19:56:01.0713 0x0df4 [ FE5AB4525BC2EC68B9119A6E5D40128B, 088DE37982CEE78A0C1181389A3BFF1E352DF504074B3E8F3EA244DB271BF216 ] gpsvc C:\Windows\System32\gpsvc.dll 19:56:01.0869 0x0df4 gpsvc - ok 19:56:01.0978 0x0df4 [ 053EEEE1ABAE53F044F1E386E22AE525, 195C8B78C0CF68F3DC1C08E58CE2A7146764F9273C39EF369194A366FA8EE1AD ] gupdate C:\Program Files (x86)\Google\Update\GoogleUpdate.exe 19:56:01.0994 0x0df4 gupdate - ok 19:56:02.0009 0x0df4 [ 053EEEE1ABAE53F044F1E386E22AE525, 195C8B78C0CF68F3DC1C08E58CE2A7146764F9273C39EF369194A366FA8EE1AD ] gupdatem C:\Program Files (x86)\Google\Update\GoogleUpdate.exe 19:56:02.0025 0x0df4 gupdatem - ok 19:56:02.0056 0x0df4 [ F2523EF6460FC42405B12248338AB2F0, B2F3DE8DE1F512D871BC2BC2E8D0E33AB03335BFBC07627C5F88B65024928E19 ] hcw85cir C:\Windows\system32\drivers\hcw85cir.sys 19:56:02.0181 0x0df4 hcw85cir - ok 19:56:02.0228 0x0df4 [ 6410F6F415B2A5A9037224C41DA8BF12, 5B8452BC49FDA2215281D27B22FA9BE46B0460F51C4DC70E58B687CFB541F3A5 ] HdAudAddService C:\Windows\system32\drivers\HdAudio.sys 19:56:02.0290 0x0df4 HdAudAddService - ok 19:56:02.0337 0x0df4 [ 0A49913402747A0B67DE940FB42CBDBB, 61A45DBDCEB4A2D5C3C28F6BC8C5ADC51D0240A7553DF44BCC4355FC06F72B83 ] HDAudBus C:\Windows\system32\DRIVERS\HDAudBus.sys 19:56:02.0384 0x0df4 HDAudBus - ok 19:56:02.0430 0x0df4 [ B6AC71AAA2B10848F57FC49D55A651AF, 4FAD833654E86F9FAF972AC8AF87FD4A9A765B26B96F096BBD63506B5D521A91 ] HECIx64 C:\Windows\system32\DRIVERS\HECIx64.sys 19:56:02.0555 0x0df4 HECIx64 - ok 19:56:02.0571 0x0df4 [ 78E86380454A7B10A5EB255DC44A355F, 11F3ED7ACFFA3024B9BD504F81AC39F5B4CED5A8A425E8BADF7132EFEDB9BD64 ] HidBatt C:\Windows\system32\DRIVERS\HidBatt.sys 19:56:02.0618 0x0df4 HidBatt - ok 19:56:02.0649 0x0df4 [ 7FD2A313F7AFE5C4DAB14798C48DD104, 94CBFD4506CBDE4162CEB3367BAB042D19ACA6785954DC0B554D4164B9FCD0D4 ] HidBth C:\Windows\system32\DRIVERS\hidbth.sys 19:56:02.0696 0x0df4 HidBth - ok 19:56:02.0742 0x0df4 [ 0A77D29F311B88CFAE3B13F9C1A73825, 8615DC6CEFB591505CE16E054A71A4F371B827DDFD5E980777AB4233DCFDA01D ] HidIr C:\Windows\system32\DRIVERS\hidir.sys 19:56:02.0789 0x0df4 HidIr - ok 19:56:02.0820 0x0df4 [ BD9EB3958F213F96B97B1D897DEE006D, 4D01CBF898B528B3A4E5A683DF2177300AFABD7D4CB51F1A7891B1B545499631 ] hidserv C:\Windows\system32\hidserv.dll 19:56:02.0898 0x0df4 hidserv - ok 19:56:02.0961 0x0df4 [ B3BF6B5B50006DEF50B66306D99FCF6F, D39A1DEBE7C464922919826D15199ED25E263BF58633593DD412D78F98921417 ] HidUsb C:\Windows\system32\DRIVERS\hidusb.sys 19:56:03.0039 0x0df4 HidUsb - ok 19:56:03.0070 0x0df4 [ EFA58EDE58DD74388FFD04CB32681518, 76D81F9BC1A4D85A779B79DEC23B79F1568AA236CD49247414093CDC1FCC150F ] hkmsvc C:\Windows\system32\kmsvc.dll 19:56:03.0210 0x0df4 hkmsvc - ok 19:56:03.0273 0x0df4 [ 046B2673767CA626E2CFB7FDF735E9E8, 9C932DCC5DE9B1919AB38C01D76AD7BBAF491DE6D158662407974748BC0B4C6C ] HomeGroupListener C:\Windows\system32\ListSvc.dll 19:56:03.0351 0x0df4 HomeGroupListener - ok 19:56:03.0398 0x0df4 [ 06A7422224D9865A5613710A089987DF, EF604B4B6918D3FDC8E90ED9004E6E7340E0F399C214C65CCE3A7C8C576FA1C0 ] HomeGroupProvider C:\Windows\system32\provsvc.dll 19:56:03.0460 0x0df4 HomeGroupProvider - ok 19:56:03.0507 0x0df4 [ 0886D440058F203EBA0E1825E4355914, BC49C4CEFE324A08C864A4BF4FEA9A70151FAB7CC30BDC28344F3FFD2F500070 ] HpSAMD C:\Windows\system32\DRIVERS\HpSAMD.sys 19:56:03.0522 0x0df4 HpSAMD - ok 19:56:03.0585 0x0df4 [ CEE049CAC4EFA7F4E1E4AD014414A5D4, 433AE2D845850F1D7A48275BBD87B3F0E7DD48F2282C727C4B777ECD92CC331D ] HTTP C:\Windows\system32\drivers\HTTP.sys 19:56:03.0850 0x0df4 HTTP - ok 19:56:03.0897 0x0df4 [ 08B1A06A55F068A17A51BA26618CF50F, 8ADFC9D3003208A9B3BE12DCD1418A13C4D19E13E00EFEE556EF87B70F49B2E6 ] huawei_enumerator C:\Windows\system32\DRIVERS\ew_jubusenum.sys 19:56:03.0944 0x0df4 huawei_enumerator - ok 19:56:03.0959 0x0df4 [ 6E5CD3984742A922D0C183C7E82C3C94, EE350C8736F0AC6751E18694E1F1142477112C8C2D83347C1EE9483BEC0DA117 ] hwdatacard C:\Windows\system32\DRIVERS\ewusbmdm.sys 19:56:04.0006 0x0df4 hwdatacard - ok 19:56:04.0022 0x0df4 [ F17766A19145F111856378DF337A5D79, FC1633FB865A5324EBCBE5F97D297B899FABBDD965D862C2EFC743CD36F47E62 ] hwpolicy C:\Windows\system32\drivers\hwpolicy.sys 19:56:04.0037 0x0df4 hwpolicy - ok 19:56:04.0053 0x0df4 [ FA55C73D4AFFA7EE23AC4BE53B4592D3, 65CDDC62B89A60E942C5642C9D8B539EFB69DA8069B4A2E54978154B314531CD ] i8042prt C:\Windows\system32\DRIVERS\i8042prt.sys 19:56:04.0084 0x0df4 i8042prt - ok 19:56:04.0146 0x0df4 [ 5E60DD5F090AB4A563C7204C289C4650, 7728E3877C879EF90B2DE39B312F40AFF2DCA882BE50298C923CA0A250A93636 ] iaStor C:\Windows\system32\DRIVERS\iaStor.sys 19:56:04.0162 0x0df4 iaStor - ok 19:56:04.0240 0x0df4 [ D83EFB6FD45DF9D55E9A1AFC63640D50, 0494F8F7CB3ED11FD8D0B838CB71271AF7A3CBFCB7F2CB043A9392B5106A3C7B ] iaStorV C:\Windows\system32\DRIVERS\iaStorV.sys 19:56:04.0271 0x0df4 iaStorV - ok 19:56:04.0380 0x0df4 [ 2F2BE70D3E02B6FA877921AB9516D43C, E04255EE4BD95FC1539EB1EB9F702B039F65993D31A4531DA487274543EF5226 ] idsvc C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\infocard.exe 19:56:04.0536 0x0df4 idsvc - ok 19:56:05.0238 0x0df4 [ B744E1375CD1DB3EB7B89781B8C93D9F, 99E19F80CE951052EA3FD18139C9A271F40342ED12399646029A015FA7892242 ] igfx C:\Windows\system32\DRIVERS\igdkmd64.sys 19:56:05.0831 0x0df4 igfx - ok 19:56:05.0894 0x0df4 [ 5C18831C61933628F5BB0EA2675B9D21, 5CD9DE2F8C0256623A417B5C55BF55BB2562BD7AB2C3C83BB3D9886C2FBDA4E4 ] iirsp C:\Windows\system32\DRIVERS\iirsp.sys 19:56:05.0909 0x0df4 iirsp - ok 19:56:05.0956 0x0df4 [ C5B4683680DF085B57BC53E5EF34861F, 9C06517DFCB3ED7BB1166F7EB6CCC8713E6B68283C75420C0EDC182094AA1B8F ] IKEEXT C:\Windows\System32\ikeext.dll 19:56:06.0081 0x0df4 IKEEXT - ok 19:56:06.0128 0x0df4 [ DD587A55390ED2295BCE6D36AD567DA9, AEB7DCB8EF89BEE8D9649A05FC482B1E4E3F44243D57A2577C862EB69166C48E ] Impcd C:\Windows\system32\DRIVERS\Impcd.sys 19:56:06.0206 0x0df4 Impcd - ok 19:56:06.0377 0x0df4 [ 0ADF714079AE174A39D69036143E4C50, 93184D0DB1265D94BA92922783514ADFDAB04557EB0DEF9715D8B1EF06EDD692 ] IntcAzAudAddService C:\Windows\system32\drivers\RTKVHD64.sys 19:56:06.0642 0x0df4 IntcAzAudAddService - ok 19:56:06.0674 0x0df4 [ 58CF58DEE26C909BD6F977B61D246295, 0CE27B81C091961A22B75478449D654F9C1A68E43DF80C699DB8DD3D1B288461 ] IntcDAud C:\Windows\system32\DRIVERS\IntcDAud.sys 19:56:06.0705 0x0df4 IntcDAud - ok 19:56:06.0720 0x0df4 [ F00F20E70C6EC3AA366910083A0518AA, E2F3E9FFD82C802C8BAC309893A3664ACF16A279959C0FDECCA64C3D3C60FD22 ] intelide C:\Windows\system32\DRIVERS\intelide.sys 19:56:06.0736 0x0df4 intelide - ok 19:56:06.0783 0x0df4 [ ADA036632C664CAA754079041CF1F8C1, F2386CC09AC6DE4C54189154F7D91C1DB7AA120B13FAE8BA5B579ACF99FCC610 ] intelppm C:\Windows\system32\DRIVERS\intelppm.sys 19:56:06.0830 0x0df4 intelppm - ok 19:56:06.0861 0x0df4 [ 098A91C54546A3B878DAD6A7E90A455B, 044CCE2A0DF56EBE1EFD99B4F6F0A5B9EE12498CA358CF4B2E3A1CFD872823AA ] IPBusEnum C:\Windows\system32\ipbusenum.dll 19:56:06.0954 0x0df4 IPBusEnum - ok 19:56:07.0001 0x0df4 [ 722DD294DF62483CECAAE6E094B4D695, 41ABB42EF969EA8A84B546908EBBDC2411D964DE101CE6DD3D7ECF109085E0C0 ] IpFilterDriver C:\Windows\system32\DRIVERS\ipfltdrv.sys 19:56:07.0064 0x0df4 IpFilterDriver - ok 19:56:07.0204 0x0df4 [ F8E058D17363EC580E4B7232778B6CB5, 02352919F349C57930A0B032FBDC45327FB473D310DE7AC721F4694FDE7D21FB ] iphlpsvc C:\Windows\System32\iphlpsvc.dll 19:56:07.0298 0x0df4 iphlpsvc - ok 19:56:07.0329 0x0df4 [ E2B4A4494DB7CB9B89B55CA268C337C5, C59BC4AA03D10647641EC7533F78BC7E2EA6FC48B8B2CF1A49B5148EF40A90FB ] IPMIDRV C:\Windows\system32\DRIVERS\IPMIDrv.sys 19:56:07.0344 0x0df4 IPMIDRV - ok 19:56:07.0391 0x0df4 [ AF9B39A7E7B6CAA203B3862582E9F2D0, 67128BE7EADBE6BD0205B050F96E268948E8660C4BAB259FB0BE03935153D04E ] IPNAT C:\Windows\system32\drivers\ipnat.sys 19:56:07.0485 0x0df4 IPNAT - ok 19:56:07.0532 0x0df4 [ 3ABF5E7213EB28966D55D58B515D5CE9, A352BCC5B6B9A28805B15CAFB235676F1FAFF0D2394F88C03089EB157D6188AE ] IRENUM C:\Windows\system32\drivers\irenum.sys 19:56:07.0563 0x0df4 IRENUM - ok 19:56:07.0578 0x0df4 [ 2F7B28DC3E1183E5EB418DF55C204F38, D40410A760965925D6F10959B2043F7BD4F68EAFCF5E743AF11AD860BD136548 ] isapnp C:\Windows\system32\DRIVERS\isapnp.sys 19:56:07.0594 0x0df4 isapnp - ok 19:56:07.0625 0x0df4 [ FA4D2557DE56D45B0A346F93564BE6E1, 2827EC3582FF59FFD55BBD4A4F0DDFFEAD4F2537FA043B3A69904FE920B1619C ] iScsiPrt C:\Windows\system32\DRIVERS\msiscsi.sys 19:56:07.0656 0x0df4 iScsiPrt - ok 19:56:07.0828 0x0df4 [ BC02336F1CBA7DCC7D1213BB588A68A5, 450C5BAD54CCE2AFCDFF1B6E7F8E1A8446D9D3255DF9D36C29A8F848048AAD93 ] kbdclass C:\Windows\system32\DRIVERS\kbdclass.sys 19:56:07.0844 0x0df4 kbdclass - ok 19:56:07.0906 0x0df4 [ 6DEF98F8541E1B5DCEB2C822A11F7323, F6EE4A7A6A7A1F243D32CA9241CA4816C92EB7BF2AADDD09234968C2CAAE6C0D ] kbdhid C:\Windows\system32\DRIVERS\kbdhid.sys 19:56:07.0984 0x0df4 kbdhid - ok 19:56:08.0000 0x0df4 [ 156F6159457D0AA7E59B62681B56EB90, 27B855BF79490E4CC58D38A920C077A56785494BFFF0B448A898486009B24937 ] KeyIso C:\Windows\system32\lsass.exe 19:56:08.0031 0x0df4 KeyIso - ok 19:56:08.0109 0x0df4 [ D93E72DCC2A99E67931BB79485563146, 7EF496A82E69A53465ED7D45E890275E44C979AD5E9C5E482E0DBE5DC9AD9AD3 ] kl1 C:\Windows\system32\DRIVERS\kl1.sys 19:56:08.0140 0x0df4 kl1 - ok 19:56:08.0202 0x0df4 [ CEF0410B784E8CEB0175103CDE52E7FA, 729A45D76D1886E5ECDF23F96925CEBB90A31EFA5A798D69D9C5A684380B6E36 ] kldisk C:\Windows\system32\DRIVERS\kldisk.sys 19:56:08.0218 0x0df4 kldisk - ok 19:56:08.0296 0x0df4 [ 9E6F544FCB6318DA7C84F879EC0F3D65, 1A4FDB4E4DD4F39C0BBCA91BCFF277DE8A8215A7F6E6E7C0ED54F51B487284FE ] klflt C:\Windows\system32\DRIVERS\klflt.sys 19:56:08.0390 0x0df4 klflt - ok 19:56:08.0452 0x0df4 [ 7A64190934B66C17F41D3921353BAEDD, D212A6ECB1CBCC665336DF982B5061A72CD88CB5BF6B2EB14B11B8BE756A670E ] klhk C:\Windows\system32\DRIVERS\klhk.sys 19:56:08.0468 0x0df4 klhk - ok 19:56:08.0577 0x0df4 [ 17AAB8D17B3FEE6A6BFB880E11D16463, 302926578EA0620D5C7698F2A67EE627BF3159AC5E505CAEF114A2ADA3F35787 ] KLIF C:\Windows\system32\DRIVERS\klif.sys 19:56:08.0624 0x0df4 KLIF - ok 19:56:08.0702 0x0df4 [ FEAD1F401CBE9383A642877A6EA1398F, 0529A96D406DAB1C0715692441BDBC1C05123EB62005B806A8EFF5B0B6DCD5DB ] KLIM6 C:\Windows\system32\DRIVERS\klim6.sys 19:56:08.0717 0x0df4 KLIM6 - ok 19:56:08.0733 0x0df4 [ 3FAE739F2AFEA18BCBB9C5E7DC6E889D, 5990C074BCB8E2172AE0A2AC0A31E6636B3C3EF0A5BB1F593E62D22D53FC5BF0 ] klkbdflt C:\Windows\system32\DRIVERS\klkbdflt.sys 19:56:08.0748 0x0df4 klkbdflt - ok 19:56:08.0764 0x0df4 [ 72CF64FBF38CD681FA7F37176047E967, BE5683C119DCEF7E678EE477D6CADF873E32D42372A253B7E86B8C335DF28E1C ] klmouflt C:\Windows\system32\DRIVERS\klmouflt.sys 19:56:08.0780 0x0df4 klmouflt - ok 19:56:08.0780 0x0df4 [ 8C0EC95AD65A0DE3D6C040591D02BF02, 272FB83752B73684FA7BDBE256FAFD56138E4755AAEFED9E7EF8F0E3D0ACFAF2 ] klpd C:\Windows\system32\DRIVERS\klpd.sys 19:56:08.0795 0x0df4 klpd - ok 19:56:08.0811 0x0df4 [ 43957361D346A4263873932D572613F2, 719E61CADF6FB49C24370899329BDE198E55DEB175F5701382EE16311D8576D9 ] kltdi C:\Windows\system32\DRIVERS\kltdi.sys 19:56:08.0826 0x0df4 kltdi - ok 19:56:08.0873 0x0df4 [ FF5A1F3F7ACE09FD2E00135C1A5B0AC1, BC5B2EDC82F6F959749E1B179FB5D7CD311B4AC81A5EF58DA3139113527B7B45 ] Klwtp C:\Windows\system32\DRIVERS\klwtp.sys 19:56:08.0920 0x0df4 Klwtp - ok 19:56:09.0076 0x0df4 [ D4CEEAC11C65F49D0F42E74440E829BF, 7E289BB5E400326BADDD61CBB99CB268A3E99103CF16968E1D9141C205EE309C ] kneps C:\Windows\system32\DRIVERS\kneps.sys 19:56:09.0107 0x0df4 kneps - ok 19:56:09.0170 0x0df4 [ 4F4B5FDE429416877DE7143044582EB5, A28FFEA078DBD91F3CC28088810EEEB727107B3F0F48370B44D87DC8F8C55B99 ] KSecDD C:\Windows\system32\Drivers\ksecdd.sys 19:56:09.0232 0x0df4 KSecDD - ok 19:56:09.0279 0x0df4 [ 6F40465A44ECDC1731BEFAFEC5BDD03C, 317334D414D0AF73CB4D9CA11EA80C641E786760B8800F2795D0CB38378DBB80 ] KSecPkg C:\Windows\system32\Drivers\ksecpkg.sys 19:56:09.0341 0x0df4 KSecPkg - ok 19:56:09.0388 0x0df4 [ 6869281E78CB31A43E969F06B57347C4, 866A23E69B32A78D378D6CB3B3DA3695FFDFF0FEC3C9F68C8C3F988DF417044B ] ksthunk C:\Windows\system32\drivers\ksthunk.sys 19:56:09.0450 0x0df4 ksthunk - ok 19:56:09.0544 0x0df4 [ 6AB66E16AA859232F64DEB66887A8C9C, 5F2B579BEA8098A2994B0DECECDAE7B396E7B5DC5F09645737B9F28BEEA77FFF ] KtmRm C:\Windows\system32\msdtckrm.dll 19:56:09.0731 0x0df4 KtmRm - ok 19:56:09.0778 0x0df4 [ 81F1D04D4D0E433099365127375FD501, C2A81B5A482C974E8108806486EC28CB2D81400D42639682FE7B7A9BDF14BA9B ] LanmanServer C:\Windows\system32\srvsvc.dll 19:56:09.0856 0x0df4 LanmanServer - ok 19:56:09.0872 0x0df4 [ 27026EAC8818E8A6C00A1CAD2F11D29A, A12858CCB3B2419D66C667A46B106DA7A7BA97FFFA9634BFAE95DDF193C430D5 ] LanmanWorkstation C:\Windows\System32\wkssvc.dll 19:56:09.0950 0x0df4 LanmanWorkstation - ok 19:56:09.0996 0x0df4 [ 1538831CF8AD2979A04C423779465827, E1729B0CC4CEEE494A0B8817A8E98FF232E3A32FB023566EF0BC71A090262C0C ] lltdio C:\Windows\system32\DRIVERS\lltdio.sys 19:56:10.0043 0x0df4 lltdio - ok 19:56:10.0106 0x0df4 [ C1185803384AB3FEED115F79F109427F, 0414FE73532DCAB17E906438A14711E928CECCD5F579255410C62984DD652700 ] lltdsvc C:\Windows\System32\lltdsvc.dll 19:56:10.0168 0x0df4 lltdsvc - ok 19:56:10.0199 0x0df4 [ F993A32249B66C9D622EA5592A8B76B8, EE64672A990C6145DC5601E2B8CDBE089272A72732F59AF9865DCBA8B1717E70 ] lmhosts C:\Windows\System32\lmhsvc.dll 19:56:10.0355 0x0df4 lmhosts - ok 19:56:10.0480 0x0df4 [ 23DE5B62B0445A6F874BE633C95B483E, 39A8E5BD057F5EE049FA48848C5881DCD2CFB16CD9E2A03CC9DDF35F116FEE0B ] LMS C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe 19:56:10.0511 0x0df4 LMS - ok 19:56:10.0589 0x0df4 [ 1A93E54EB0ECE102495A51266DCDB6A6, DB6AA86AA36C3A7988BE96E87B5D3251BE7617C54EE8F894D9DC2E267FE3255B ] LSI_FC C:\Windows\system32\DRIVERS\lsi_fc.sys 19:56:10.0620 0x0df4 LSI_FC - ok 19:56:10.0652 0x0df4 [ 1047184A9FDC8BDBFF857175875EE810, F2251EDB7736A26D388A0C5CC2FE5FB9C5E109CBB1E3800993554CB21D81AE4B ] LSI_SAS C:\Windows\system32\DRIVERS\lsi_sas.sys 19:56:10.0667 0x0df4 LSI_SAS - ok 19:56:10.0683 0x0df4 [ 30F5C0DE1EE8B5BC9306C1F0E4A75F93, 88D5740A4E9CC3FA80FA18035DAB441BDC5A039622D666BFDAA525CC9686BD06 ] LSI_SAS2 C:\Windows\system32\DRIVERS\lsi_sas2.sys 19:56:10.0698 0x0df4 LSI_SAS2 - ok 19:56:10.0714 0x0df4 [ 0504EACAFF0D3C8AED161C4B0D369D4A, 4D272237C189646F5C80822FD3CBA7C2728E482E2DAAF7A09C8AEF811C89C54D ] LSI_SCSI C:\Windows\system32\DRIVERS\lsi_scsi.sys 19:56:10.0730 0x0df4 LSI_SCSI - ok 19:56:10.0745 0x0df4 [ 43D0F98E1D56CCDDB0D5254CFF7B356E, 5BA498183B5C4996C694CB0A9A6B66CE6C7A460F6C91BEB9F305486FCC3B7B22 ] luafv C:\Windows\system32\drivers\luafv.sys 19:56:10.0854 0x0df4 luafv - ok 19:56:10.0917 0x0df4 [ F84C8F1000BC11E3B7B23CBD3BAFF111, BB4C4FFE3F6C9E5C16C06F6F666F177B94E1CF878397BCC0BDAF6EB3341AAED8 ] Mcx2Svc C:\Windows\system32\Mcx2Svc.dll 19:56:11.0010 0x0df4 Mcx2Svc - ok 19:56:11.0042 0x0df4 [ A55805F747C6EDB6A9080D7C633BD0F4, 2DA0E83BF3C8ADEF6F551B6CC1C0A3F6149CDBE6EC60413BA1767C4DE425A728 ] megasas C:\Windows\system32\DRIVERS\megasas.sys 19:56:11.0057 0x0df4 megasas - ok 19:56:11.0135 0x0df4 [ BAF74CE0072480C3B6B7C13B2A94D6B3, 85CBB4949C090A904464F79713A3418338753D20D7FB811E68F287FDAC1DD834 ] MegaSR C:\Windows\system32\DRIVERS\MegaSR.sys 19:56:11.0166 0x0df4 MegaSR - ok 19:56:11.0322 0x0df4 [ FAFE367D032ED82E9332B4C741A20216, 7B123766E360570E0FCB211835B7910D6A1806C25A06BCA9227AB9E993376CA8 ] Microsoft Office Groove Audit Service C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe 19:56:11.0354 0x0df4 Microsoft Office Groove Audit Service - ok 19:56:11.0400 0x0df4 [ E40E80D0304A73E8D269F7141D77250B, 0DB4AC13A264F19A84DC0BCED54E8E404014CC09C993B172002B1561EC7E265A ] MMCSS C:\Windows\system32\mmcss.dll 19:56:11.0463 0x0df4 MMCSS - ok 19:56:11.0525 0x0df4 [ 800BA92F7010378B09F9ED9270F07137, 94F9AF9E1BE80AE6AC39A2A74EF9FAB115DCAACC011D07DFA8D6A1DDC8A93342 ] Modem C:\Windows\system32\drivers\modem.sys 19:56:11.0619 0x0df4 Modem - ok 19:56:11.0666 0x0df4 [ B03D591DC7DA45ECE20B3B467E6AADAA, 701FB0CAD8138C58507BE28845D3E24CE269A040737C29885944A0D851238732 ] monitor C:\Windows\system32\DRIVERS\monitor.sys 19:56:11.0728 0x0df4 monitor - ok 19:56:11.0775 0x0df4 [ 7D27EA49F3C1F687D357E77A470AEA99, 7FE7CAF95959F127C6D932C01D539C06D80273C49A09761F6E8331C05B1A7EE7 ] mouclass C:\Windows\system32\DRIVERS\mouclass.sys 19:56:11.0790 0x0df4 mouclass - ok 19:56:11.0806 0x0df4 [ D3BF052C40B0C4166D9FD86A4288C1E6, 5E65264354CD94E844BF1838CA1B8E49080EFA34605A32CF2F6A47A2B97FC183 ] mouhid C:\Windows\system32\DRIVERS\mouhid.sys 19:56:11.0837 0x0df4 mouhid - ok 19:56:11.0884 0x0df4 [ 791AF66C4D0E7C90A3646066386FB571, BF67643099494AEADDDC85E4D97AFF1017806A1DF554F9BE6C864FFECC9EAF42 ] mountmgr C:\Windows\system32\drivers\mountmgr.sys 19:56:11.0915 0x0df4 mountmgr - ok 19:56:12.0024 0x0df4 [ 03D14BF1DC59130002F6B8BA3AD89DB9, 1729CCD8AAF51CDB86ED67569974D0B6B1CFFA5F90EF6E6004B0D8A305D88C27 ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe 19:56:12.0056 0x0df4 MozillaMaintenance - ok 19:56:12.0087 0x0df4 [ 609D1D87649ECC19796F4D76D4C15CEA, 5369F4C83FBAE9C4CFB9ACD36F07479E3F3FD784D79B82AE8D95B818B9F9CE00 ] mpio C:\Windows\system32\DRIVERS\mpio.sys 19:56:12.0227 0x0df4 mpio - ok 19:56:12.0243 0x0df4 [ 6C38C9E45AE0EA2FA5E551F2ED5E978F, 5A3FA2F110029CB4CC4384998EDB59203FDD65EC45E01B897FB684F8956EAD20 ] mpsdrv C:\Windows\system32\drivers\mpsdrv.sys 19:56:12.0321 0x0df4 mpsdrv - ok 19:56:12.0461 0x0df4 [ AECAB449567D1846DAD63ECE49E893E3, 7A67A16A3E04574B7CAD097632ABA9B361BBEFDD6B36B7B8E3A1996EC529C2DC ] MpsSvc C:\Windows\system32\mpssvc.dll 19:56:12.0539 0x0df4 MpsSvc - ok 19:56:12.0570 0x0df4 [ 30524261BB51D96D6FCBAC20C810183C, 19598A9CD0EAAE4ACBF1069E721AB2853452F33FCFB3B5113F023A88A90BF42D ] MRxDAV C:\Windows\system32\drivers\mrxdav.sys 19:56:12.0664 0x0df4 MRxDAV - ok 19:56:12.0726 0x0df4 [ 040D62A9D8AD28922632137ACDD984F2, D9457BDA88C2E3AA4E716C0657B77A4A3E212328CDABD5C18279B6440E1C1594 ] mrxsmb C:\Windows\system32\DRIVERS\mrxsmb.sys 19:56:12.0867 0x0df4 mrxsmb - ok 19:56:12.0914 0x0df4 [ F0067552F8F9B33D7C59403AB808A3CB, 698B63528E1943BB4253BF7578DC128AA824C71BD04FF0521277E68B20656C02 ] mrxsmb10 C:\Windows\system32\DRIVERS\mrxsmb10.sys 19:56:12.0960 0x0df4 mrxsmb10 - ok 19:56:12.0976 0x0df4 [ 3C142D31DE9F2F193218A53FE2632051, 026B3A932A95D5160B64E470FC414F3D388D429317D5EAEA2D476F715C4CAE75 ] mrxsmb20 C:\Windows\system32\DRIVERS\mrxsmb20.sys 19:56:13.0023 0x0df4 mrxsmb20 - ok 19:56:13.0054 0x0df4 [ 5C37497276E3B3A5488B23A326A754B7, 9982FCDAFB963868EB93A4DEF811A3167488EB5246BAC3F4AE960506FDF63967 ] msahci C:\Windows\system32\DRIVERS\msahci.sys 19:56:13.0085 0x0df4 msahci - ok 19:56:13.0101 0x0df4 [ 8D27B597229AED79430FB9DB3BCBFBD0, 3D58E08B47E8AE419D405BF263929DFA6F2F5F0C2D79FD8D6F2CED6452F6F248 ] msdsm C:\Windows\system32\DRIVERS\msdsm.sys 19:56:13.0116 0x0df4 msdsm - ok 19:56:13.0148 0x0df4 [ DE0ECE52236CFA3ED2DBFC03F28253A8, 2FBBEC4CACB5161F68D7C2935852A5888945CA0F107CF8A1C01F4528CE407DE3 ] MSDTC C:\Windows\System32\msdtc.exe 19:56:13.0163 0x0df4 MSDTC - ok 19:56:13.0179 0x0df4 [ AA3FB40E17CE1388FA1BEDAB50EA8F96, 69F93E15536644C8FD679A20190CFE577F4985D3B1B4A4AA250A168615AE1E99 ] Msfs C:\Windows\system32\drivers\Msfs.sys 19:56:13.0226 0x0df4 Msfs - ok 19:56:13.0257 0x0df4 [ F9D215A46A8B9753F61767FA72A20326, 6F76642B45E0A7EF6BCAB8B37D55CCE2EAA310ED07B76D43FCB88987C2174141 ] mshidkmdf C:\Windows\System32\drivers\mshidkmdf.sys 19:56:13.0304 0x0df4 mshidkmdf - ok 19:56:13.0491 0x0df4 [ D916874BBD4F8B07BFB7FA9B3CCAE29D, B229DA150713DEDBC4F05386C9D9DC3BC095A74F44F3081E88311AB73BC992A1 ] msisadrv C:\Windows\system32\DRIVERS\msisadrv.sys 19:56:13.0506 0x0df4 msisadrv - ok 19:56:13.0553 0x0df4 [ 808E98FF49B155C522E6400953177B08, F873F5BFF0984C5165DF67E92874D3F6EB8D86F9B5AD17013A0091CA33A1A3D5 ] MSiSCSI C:\Windows\system32\iscsiexe.dll 19:56:13.0709 0x0df4 MSiSCSI - ok 19:56:13.0709 0x0df4 msiserver - ok 19:56:13.0756 0x0df4 [ 49CCF2C4FEA34FFAD8B1B59D49439366, E5752EA57C7BDAD5F53E3BC441A415E909AC602CAE56234684FB8789A20396C7 ] MSKSSRV C:\Windows\system32\drivers\MSKSSRV.sys 19:56:13.0818 0x0df4 MSKSSRV - ok 19:56:13.0834 0x0df4 [ BDD71ACE35A232104DDD349EE70E1AB3, 27464A66868513BE6A01B75D7FC5B0D6B71842E4E20CE3F76B15C071A0618BBB ] MSPCLOCK C:\Windows\system32\drivers\MSPCLOCK.sys 19:56:13.0881 0x0df4 MSPCLOCK - ok 19:56:13.0896 0x0df4 [ 4ED981241DB27C3383D72092B618A1D0, E12F121E641249DB3491141851B59E1496F4413EDF58E863388F1C229838DFCC ] MSPQM C:\Windows\system32\drivers\MSPQM.sys 19:56:13.0943 0x0df4 MSPQM - ok 19:56:13.0990 0x0df4 [ 89CB141AA8616D8C6A4610FA26C60964, 76E72F6A0348EDC58A8E6F88C7F024B8B077670400BD5A833811DAFCF9F517CC ] MsRPC C:\Windows\system32\drivers\MsRPC.sys 19:56:14.0115 0x0df4 MsRPC - ok 19:56:14.0162 0x0df4 [ 0EED230E37515A0EAEE3C2E1BC97B288, B1D8F8A75006B6E99214CA36D27A8594EF8D952F315BEB201E9BAC9DE3E64D42 ] mssmbios C:\Windows\system32\DRIVERS\mssmbios.sys 19:56:14.0177 0x0df4 mssmbios - ok 19:56:14.0224 0x0df4 [ 2E66F9ECB30B4221A318C92AC2250779, DF175E1AB6962303E57F26DAE5C5C1E40B8640333F3E352A64F6A5F1301586CD ] MSTEE C:\Windows\system32\drivers\MSTEE.sys 19:56:14.0286 0x0df4 MSTEE - ok 19:56:14.0302 0x0df4 [ 7EA404308934E675BFFDE8EDF0757BCD, 306CD02D89CFCFE576242360ED5F9EEEDCAFC43CD43B7D2977AE960F9AEC3232 ] MTConfig C:\Windows\system32\DRIVERS\MTConfig.sys 19:56:14.0364 0x0df4 MTConfig - ok 19:56:14.0396 0x0df4 [ F9A18612FD3526FE473C1BDA678D61C8, 32F7975B5BAA447917F832D9E3499B4B6D3E90D73F478375D0B70B36C524693A ] Mup C:\Windows\system32\Drivers\mup.sys 19:56:14.0411 0x0df4 Mup - ok 19:56:14.0458 0x0df4 [ 4987E079A4530FA737A128BE54B63B12, 27E51CC7D4D90DC4397575491DE7EFE15808709F097E2828E46AA73C771A47A4 ] napagent C:\Windows\system32\qagentRT.dll 19:56:14.0520 0x0df4 napagent - ok 19:56:14.0630 0x0df4 [ 1EA3749C4114DB3E3161156FFFFA6B33, 54C2E77BCE1037711A11313AC25B8706109098C10A31AA03AEB7A185E97800D7 ] NativeWifiP C:\Windows\system32\DRIVERS\nwifi.sys 19:56:14.0786 0x0df4 NativeWifiP - ok 19:56:14.0848 0x0df4 [ CAD515DBD07D082BB317D9928CE8962C, 7AFA6D6154AC68F9FCC37B7B3324F7A170AE91035805026445F24F6EB4FB7F2E ] NDIS C:\Windows\system32\drivers\ndis.sys 19:56:14.0895 0x0df4 NDIS - ok 19:56:14.0942 0x0df4 [ 9F9A1F53AAD7DA4D6FEF5BB73AB811AC, D7E5446E83909AE25506BB98FBDD878A529C87963E3C1125C4ABAB25823572BC ] NdisCap C:\Windows\system32\DRIVERS\ndiscap.sys 19:56:14.0988 0x0df4 NdisCap - ok 19:56:15.0035 0x0df4 [ 30639C932D9FEF22B31268FE25A1B6E5, 32873D95339600F6EEFA51847D12C563FF01F320DC59055B242FA2887C99F9D6 ] NdisTapi C:\Windows\system32\DRIVERS\ndistapi.sys 19:56:15.0129 0x0df4 NdisTapi - ok 19:56:15.0160 0x0df4 [ F105BA1E22BF1F2EE8F005D4305E4BEC, 723DA09E13D0F50634D9F114590B837D16F7B36AA0DA2AB8F8C2D9991624EA8F ] Ndisuio C:\Windows\system32\DRIVERS\ndisuio.sys 19:56:15.0222 0x0df4 Ndisuio - ok 19:56:15.0238 0x0df4 [ 557DFAB9CA1FCB036AC77564C010DAD3, 8A21B342AFE5B498FB62EDDC81A3ADA9570677B7A382666090E0ABB1F85FEF29 ] NdisWan C:\Windows\system32\DRIVERS\ndiswan.sys 19:56:15.0300 0x0df4 NdisWan - ok 19:56:15.0347 0x0df4 [ 659B74FB74B86228D6338D643CD3E3CF, 83D741B7A2A204A661A80C226212749F514800060D05E217FA6DC14D62F38F80 ] NDProxy C:\Windows\system32\drivers\NDProxy.sys 19:56:15.0441 0x0df4 NDProxy - ok 19:56:15.0628 0x0df4 [ 7D2633295EB6FF2B938185874884059D, B3A4E52ABCB2E2720D8ADB0B68C222D4AB98E838D40B6A731D15EB1D6C9DEA15 ] Nero BackItUp Scheduler 4.0 c:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe 19:56:15.0690 0x0df4 Nero BackItUp Scheduler 4.0 - ok 19:56:15.0722 0x0df4 [ 86743D9F5D2B1048062B14B1D84501C4, DBF6D6A60AB774FCB0F464FF2D285A7521D0A24006687B243AB46B17D8032062 ] NetBIOS C:\Windows\system32\DRIVERS\netbios.sys 19:56:15.0784 0x0df4 NetBIOS - ok 19:56:15.0862 0x0df4 [ 9162B273A44AB9DCE5B44362731D062A, 5A1BA6DBFEBB2618DC9D4CC55FA071C170A5D22FFB24CE62DD5B3210D8B45F39 ] NetBT C:\Windows\system32\DRIVERS\netbt.sys 19:56:16.0034 0x0df4 NetBT - ok 19:56:16.0065 0x0df4 [ 156F6159457D0AA7E59B62681B56EB90, 27B855BF79490E4CC58D38A920C077A56785494BFFF0B448A898486009B24937 ] Netlogon C:\Windows\system32\lsass.exe 19:56:16.0096 0x0df4 Netlogon - ok 19:56:16.0143 0x0df4 [ 847D3AE376C0817161A14A82C8922A9E, 37AE692B3481323134125EF58F2C3CBC20177371AF2F5874F53DD32A827CB936 ] Netman C:\Windows\System32\netman.dll 19:56:16.0205 0x0df4 Netman - ok 19:56:16.0236 0x0df4 [ 5F28111C648F1E24F7DBC87CDEB091B8, 2E8645285921EDB98BB2173E11E57459C888D52E80D85791D169C869DE8813B9 ] netprofm C:\Windows\System32\netprofm.dll 19:56:16.0299 0x0df4 netprofm - ok 19:56:16.0346 0x0df4 [ 3E5A36127E201DDF663176B66828FAFE, 5A08BA9EFB1A72DF1DD839BA5FA2B8994012BA62A515588FF62333B33B60045B ] NetTcpPortSharing C:\Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\SMSvcHost.exe 19:56:16.0392 0x0df4 NetTcpPortSharing - ok 19:56:16.0439 0x0df4 [ 77889813BE4D166CDAB78DDBA990DA92, 2EF531AE502B943632EEC66A309A8BFCDD36120A5E1473F4AAF3C2393AD0E6A3 ] nfrd960 C:\Windows\system32\DRIVERS\nfrd960.sys 19:56:16.0548 0x0df4 nfrd960 - ok 19:56:16.0595 0x0df4 [ D9A0CE66046D6EFA0C61BAA885CBA0A8, 06C3331C7F3EE0E0B95E8302CB80315E965587C4D6231785B8ACF3FAE4731FAF ] NlaSvc C:\Windows\System32\nlasvc.dll 19:56:16.0673 0x0df4 NlaSvc - ok 19:56:16.0689 0x0df4 [ 1E4C4AB5C9B8DD13179BBDC75A2A01F7, D8957EF7060A69DBB3CD6B2C45B1E4143592AB8D018471E17AC04668157DC67F ] Npfs C:\Windows\system32\drivers\Npfs.sys 19:56:16.0782 0x0df4 Npfs - ok 19:56:16.0814 0x0df4 [ D54BFDF3E0C953F823B3D0BFE4732528, 497A1DCC5646EC22119273216DF10D5442D16F83E4363770F507518CF6EAA53A ] nsi C:\Windows\system32\nsisvc.dll 19:56:16.0876 0x0df4 nsi - ok 19:56:16.0892 0x0df4 [ E7F5AE18AF4168178A642A9247C63001, 133023B7E4BA8049C4CAED3282BDD25571D1CC25FAC3B820C7F981D292689D76 ] nsiproxy C:\Windows\system32\drivers\nsiproxy.sys 19:56:16.0954 0x0df4 nsiproxy - ok 19:56:17.0079 0x0df4 [ 356698A13C4630D5B31C37378D469196, BF5704AADE5C3DA370501747F12ED6E9C3349E342CCF89005AAE132B570BB42B ] Ntfs C:\Windows\system32\drivers\Ntfs.sys 19:56:17.0141 0x0df4 Ntfs - ok 19:56:17.0188 0x0df4 [ 9899284589F75FA8724FF3D16AED75C1, 181188599FD5D4DE33B97010D9E0CAEABAB9A3EF50712FE7F9AA0735CD0666D6 ] Null C:\Windows\system32\drivers\Null.sys 19:56:17.0328 0x0df4 Null - ok 19:56:17.0375 0x0df4 [ 088CD71003F21F96F01C63955150A1FB, 40EA5589926F06E79A0CE4B352AA9678846CA17B2E92346D3A5F01447078C2BC ] nusb3hub C:\Windows\system32\DRIVERS\nusb3hub.sys 19:56:17.0438 0x0df4 nusb3hub - ok 19:56:17.0484 0x0df4 [ D90A2D44E93DAEA47AEA946D9E87000F, 80BC1F59EB75975BE51812EC3B516BB940C7EA072C062CD9CBBF364A21840215 ] nusb3xhc C:\Windows\system32\DRIVERS\nusb3xhc.sys 19:56:17.0500 0x0df4 nusb3xhc - ok 19:56:17.0562 0x0df4 [ 3E38712941E9BB4DDBEE00AFFE3FED3D, 03F27CC0EF0A86D0B2DAAB6F72838CB2AB57FE5D40074828D5B7F118CD5CBEE7 ] nvraid C:\Windows\system32\DRIVERS\nvraid.sys 19:56:17.0594 0x0df4 nvraid - ok 19:56:17.0625 0x0df4 [ 477DC4D6DEB99BE37084C9AC6D013DA1, E58C4D621CAAB1C68FB4A056576F48BC87913A5EBF0B511EFFB8F38C7D3E516E ] nvstor C:\Windows\system32\DRIVERS\nvstor.sys 19:56:17.0640 0x0df4 nvstor - ok 19:56:17.0687 0x0df4 [ 270D7CD42D6E3979F6DD0146650F0E05, 752489E54C9004EDCBE1F1F208FFD864DA5C83E59A2DDE6B3E0D63ECA996F76F ] nv_agp C:\Windows\system32\DRIVERS\nv_agp.sys 19:56:17.0703 0x0df4 nv_agp - ok 19:56:17.0828 0x0df4 [ 84DE1DD996B48B05ACE31AD015FA108A, 4B9D1E4EF83ECED6C77F23D9879C124534F7053D7423E3A2D0F67A4A720CEA94 ] odserv C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE 19:56:17.0859 0x0df4 odserv - ok 19:56:17.0890 0x0df4 [ 3589478E4B22CE21B41FA1BFC0B8B8A0, AD2469FC753FE552CB809FF405A9AB23E7561292FE89117E3B3B62057EFF0203 ] ohci1394 C:\Windows\system32\DRIVERS\ohci1394.sys 19:56:17.0937 0x0df4 ohci1394 - ok 19:56:18.0155 0x0df4 [ 5A432A042DAE460ABE7199B758E8606C, 6E5D1F477D290905BE27CEBF9572BAC6B05FFEF2FAD901D3C8E11F665F8B9A71 ] ose C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE 19:56:18.0186 0x0df4 ose - ok 19:56:18.0249 0x0df4 [ 3EAC4455472CC2C97107B5291E0DCAFE, E51F373F2DBEAEE516B42BAE8C1B5BB68D00B881323E842CB6EDEC0A183CFFC3 ] p2pimsvc C:\Windows\system32\pnrpsvc.dll 19:56:18.0327 0x0df4 p2pimsvc - ok 19:56:18.0374 0x0df4 [ 927463ECB02179F88E4B9A17568C63C3, FEFD3447692C277D59EEC7BF218552C8BB6B8C98C26E973675549628408B94CE ] p2psvc C:\Windows\system32\p2psvc.dll 19:56:18.0420 0x0df4 p2psvc - ok 19:56:18.0452 0x0df4 [ 0086431C29C35BE1DBC43F52CC273887, 0D116D49EF9ABB57DA005764F25E692622210627FC2048F06A989B12FA8D0A80 ] Parport C:\Windows\system32\DRIVERS\parport.sys 19:56:18.0483 0x0df4 Parport - ok 19:56:18.0514 0x0df4 [ 90061B1ACFE8CCAA5345750FFE08D8B8, 76309683FFDF380AF9C6E1D9A52E46B011A0BF1026D747181D01F3312B7541C7 ] partmgr C:\Windows\system32\drivers\partmgr.sys 19:56:18.0530 0x0df4 partmgr - ok 19:56:18.0608 0x0df4 [ 3AEAA8B561E63452C655DC0584922257, 04C072969B58657602EB0C21CEDF24FCEE14E61B90A0F758F93925EF2C9FC32D ] PcaSvc C:\Windows\System32\pcasvc.dll 19:56:18.0654 0x0df4 PcaSvc - ok 19:56:18.0764 0x0df4 [ 5AAB2B170536885DE70A6CBA8D7CE52B, A6B30EF4D2E6B55DEB1CB7D6E15817EDABA632FA013868330D32C7F753FBA923 ] pci C:\Windows\system32\DRIVERS\pci.sys 19:56:18.0826 0x0df4 pci - ok 19:56:18.0857 0x0df4 [ B5B8B5EF2E5CB34DF8DCF8831E3534FA, F2A7CC645B96946CC65BF60E14E70DC09C848D27C7943CE5DEA0C01A6B863480 ] pciide C:\Windows\system32\DRIVERS\pciide.sys 19:56:18.0873 0x0df4 pciide - ok 19:56:18.0888 0x0df4 [ B2E81D4E87CE48589F98CB8C05B01F2F, 6763BEE7270A4873B3E131BFB92313E2750FCBD0AD73C23D1C4F98F7DF73DE14 ] pcmcia C:\Windows\system32\DRIVERS\pcmcia.sys 19:56:18.0904 0x0df4 pcmcia - ok 19:56:18.0935 0x0df4 [ D6B9C2E1A11A3A4B26A182FFEF18F603, BBA5FE08B1DDD6243118E11358FD61B10E850F090F061711C3CB207CE5FBBD36 ] pcw C:\Windows\system32\drivers\pcw.sys 19:56:18.0951 0x0df4 pcw - ok 19:56:18.0982 0x0df4 [ 68769C3356B3BE5D1C732C97B9A80D6E, FB2D61145980A2899D1B7729184C54070315B0E63C9A22400A76CCD39E00029C ] PEAUTH C:\Windows\system32\drivers\peauth.sys 19:56:19.0060 0x0df4 PEAUTH - ok 19:56:19.0341 0x0df4 [ E495E408C93141E8FC72DC0C6046DDFA, 489B957DADA0DC128A09468F1AD082DCC657E86053208EA06A12937BE86FB919 ] PerfHost C:\Windows\SysWow64\perfhost.exe 19:56:19.0512 0x0df4 PerfHost - ok 19:56:19.0575 0x0df4 pfc - ok 19:56:19.0622 0x0df4 [ 663962900E7FEA522126BA287715BB4A, 95CE12CA11E705C293BE4E18845581037D819A7EC812349BCAF4EABC8E7087B1 ] PGEffect C:\Windows\system32\DRIVERS\pgeffect.sys 19:56:19.0637 0x0df4 PGEffect - ok 19:56:19.0778 0x0df4 [ 557E9A86F65F0DE18C9B6751DFE9D3F1, 630EE5A80335929517A22D130C75CBCE882B92978372A6F36C30B9D353C7BB07 ] pla C:\Windows\system32\pla.dll 19:56:19.0934 0x0df4 pla - ok 19:56:19.0980 0x0df4 [ 98B1721B8718164293B9701B98C52D77, 27F5F00D4AA394D4D8D0A0062EDC3F944B603E07CAAEDC5CC959BA1E8C208C2A ] PlugPlay C:\Windows\system32\umpnpmgr.dll 19:56:20.0168 0x0df4 PlugPlay - ok 19:56:20.0214 0x0df4 [ 7195581CEC9BB7D12ABE54036ACC2E38, 9C4E5D6EA984148F2663DC529083408B2248DFF6DAAC85D9195F80A722782315 ] PNRPAutoReg C:\Windows\system32\pnrpauto.dll 19:56:20.0292 0x0df4 PNRPAutoReg - ok 19:56:20.0370 0x0df4 [ 3EAC4455472CC2C97107B5291E0DCAFE, E51F373F2DBEAEE516B42BAE8C1B5BB68D00B881323E842CB6EDEC0A183CFFC3 ] PNRPsvc C:\Windows\system32\pnrpsvc.dll 19:56:20.0417 0x0df4 PNRPsvc - ok 19:56:20.0526 0x0df4 [ 166EB40D1F5B47E615DE3D0FFFE5F243, E32BCCA0D25CD631C221986EBE9F6C54BF2F12DE1672D69CCC4E22AD07D0525A ] PolicyAgent C:\Windows\System32\ipsecsvc.dll 19:56:20.0604 0x0df4 PolicyAgent - ok 19:56:20.0636 0x0df4 [ 6BA9D927DDED70BD1A9CADED45F8B184, 66203CE70A5EDE053929A940F38924C6792239CCCE10DD2C1D90D5B4D6748B55 ] Power C:\Windows\system32\umpo.dll 19:56:20.0823 0x0df4 Power - ok 19:56:20.0854 0x0df4 [ 27CC19E81BA5E3403C48302127BDA717, C580FC552DDF9C163FC325B38B05C06FFD696495E4C01514BCD6346CFE4F0B40 ] PptpMiniport C:\Windows\system32\DRIVERS\raspptp.sys 19:56:20.0916 0x0df4 PptpMiniport - ok 19:56:20.0948 0x0df4 [ 0D922E23C041EFB1C3FAC2A6F943C9BF, 855418A6A58DCAFB181A1A68613B3E203AFB0A9B3D9D26D0C521F9F613B4EAD5 ] Processor C:\Windows\system32\DRIVERS\processr.sys 19:56:20.0979 0x0df4 Processor - ok 19:56:21.0026 0x0df4 [ F381975E1F4346DE875CB07339CE8D3A, 867BFC2E9A08E026289794019B8DE651A8604D06DD6A9BF166C29AFC24B6D26E ] ProfSvc C:\Windows\system32\profsvc.dll 19:56:21.0088 0x0df4 ProfSvc - ok 19:56:21.0119 0x0df4 [ 156F6159457D0AA7E59B62681B56EB90, 27B855BF79490E4CC58D38A920C077A56785494BFFF0B448A898486009B24937 ] ProtectedStorage C:\Windows\system32\lsass.exe 19:56:21.0150 0x0df4 ProtectedStorage - ok 19:56:21.0197 0x0df4 [ EE992183BD8EAEFD9973F352E587A299, 6B28930FAA0A54FAADDAF2231553D7F5D45C7227454C6D49A86DFC9EF6BC9043 ] Psched C:\Windows\system32\DRIVERS\pacer.sys 19:56:21.0244 0x0df4 Psched - ok 19:56:21.0338 0x0df4 [ A53A15A11EBFD21077463EE2C7AFEEF0, 6002B012A75045DEA62640A864A8721EADE2F8B65BEB5F5BA76D8CD819774489 ] ql2300 C:\Windows\system32\DRIVERS\ql2300.sys 19:56:21.0494 0x0df4 ql2300 - ok 19:56:21.0509 0x0df4 [ 4F6D12B51DE1AAEFF7DC58C4D75423C8, FB6ABAB741CED66A79E31A45111649F2FA3E26CEE77209B5296F789F6F7D08DE ] ql40xx C:\Windows\system32\DRIVERS\ql40xx.sys 19:56:21.0525 0x0df4 ql40xx - ok 19:56:21.0618 0x0df4 [ 906191634E99AEA92C4816150BDA3732, A0305436384104C3B559F9C73902DA19B96B518413379E397C5CDAB0B2B9418F ] QWAVE C:\Windows\system32\qwave.dll 19:56:21.0696 0x0df4 QWAVE - ok 19:56:21.0743 0x0df4 [ 76707BB36430888D9CE9D705398ADB6C, 35C1D1D05F98AC29A33D3781F497A0B40A3CB9CDF25FE1F28F574E40DDF70535 ] QWAVEdrv C:\Windows\system32\drivers\qwavedrv.sys 19:56:21.0806 0x0df4 QWAVEdrv - ok 19:56:21.0821 0x0df4 [ 5A0DA8AD5762FA2D91678A8A01311704, 8A64EB5DBAB7048A9E42A21CEB62CCD5B007A80C199892D7F8C69B48E8A255EF ] RasAcd C:\Windows\system32\DRIVERS\rasacd.sys 19:56:21.0884 0x0df4 RasAcd - ok 19:56:21.0930 0x0df4 [ 7ECFF9B22276B73F43A99A15A6094E90, 62C70DA127F48F796F8897BBFA23AB6EB080CC923F0F091DFA384A93F5C90CA1 ] RasAgileVpn C:\Windows\system32\DRIVERS\AgileVpn.sys 19:56:22.0024 0x0df4 RasAgileVpn - ok 19:56:22.0040 0x0df4 [ 8F26510C5383B8DBE976DE1CD00FC8C7, 60E618C010E8A723960636415573FA17EA0BBEF79647196B3BC0B8DEE680E090 ] RasAuto C:\Windows\System32\rasauto.dll 19:56:22.0242 0x0df4 RasAuto - ok 19:56:22.0320 0x0df4 [ 87A6E852A22991580D6D39ADC4790463, 0F757C6E5B57DFC239CE1BEC88EF16C07E7F1A40D629A9A6DF3CB6B88FB9E642 ] Rasl2tp C:\Windows\system32\DRIVERS\rasl2tp.sys 19:56:22.0430 0x0df4 Rasl2tp - ok 19:56:22.0476 0x0df4 [ 47394ED3D16D053F5906EFE5AB51CC83, FE5D1249788DB6D85C55769251B0AED738D3BBA04DF57124E03397D3C0599286 ] RasMan C:\Windows\System32\rasmans.dll 19:56:22.0523 0x0df4 RasMan - ok 19:56:22.0554 0x0df4 [ 855C9B1CD4756C5E9A2AA58A15F58C25, A514F8A9C304D54BDA8DC60F5A64259B057EC83A1CAAF6D2B58CFD55E9561F72 ] RasPppoe C:\Windows\system32\DRIVERS\raspppoe.sys 19:56:22.0601 0x0df4 RasPppoe - ok 19:56:22.0617 0x0df4 [ E8B1E447B008D07FF47D016C2B0EEECB, FEC789F82B912F3E14E49524D40FEAA4373B221156F14045E645D7C37859258C ] RasSstp C:\Windows\system32\DRIVERS\rassstp.sys 19:56:22.0710 0x0df4 RasSstp - ok 19:56:22.0757 0x0df4 [ 3BAC8142102C15D59A87757C1D41DCE5, C0C2C6887EA5A439E69221196348382ACE3E1942C9C6E0A970E153890F71724C ] rdbss C:\Windows\system32\DRIVERS\rdbss.sys 19:56:22.0851 0x0df4 rdbss - ok 19:56:22.0898 0x0df4 [ 302DA2A0539F2CF54D7C6CC30C1F2D8D, 1DF3501BBFFB56C3ECC39DBCC4287D3302216C2208CE22428B8C4967E5DE9D17 ] rdpbus C:\Windows\system32\DRIVERS\rdpbus.sys 19:56:22.0976 0x0df4 rdpbus - ok 19:56:23.0007 0x0df4 [ CEA6CC257FC9B7715F1C2B4849286D24, A78144D18352EA802C39D9D42921CF97A3E0211766B2169B6755C6FC2D77A804 ] RDPCDD C:\Windows\system32\DRIVERS\RDPCDD.sys 19:56:23.0054 0x0df4 RDPCDD - ok 19:56:23.0085 0x0df4 [ BB5971A4F00659529A5C44831AF22365, 9AAA5C0D448E821FD85589505D99DF7749715A046BBD211F139E4E652ADDE41F ] RDPENCDD C:\Windows\system32\drivers\rdpencdd.sys 19:56:23.0194 0x0df4 RDPENCDD - ok 19:56:23.0241 0x0df4 [ 216F3FA57533D98E1F74DED70113177A, 60C126A1409D1E9C39F1C9E95F70115BF4AF07780AB499F6E10A612540F173F4 ] RDPREFMP C:\Windows\system32\drivers\rdprefmp.sys 19:56:23.0303 0x0df4 RDPREFMP - ok 19:56:23.0381 0x0df4 [ 447DE7E3DEA39D422C1504F245B668B1, C54D90D2F9405E011E490D3C2F0F64488B87B969C95E367C076BBFCFD8654909 ] RDPWD C:\Windows\system32\drivers\RDPWD.sys 19:56:23.0522 0x0df4 RDPWD - ok 19:56:23.0615 0x0df4 [ E5DC9BA9E439D6DBDD79F8CAACB5BF01, 70CE6EAC4226A51508A469B3473E7A7C969E59AC50FF4076BE477DD7CCE0CB18 ] rdyboost C:\Windows\system32\drivers\rdyboost.sys 19:56:23.0646 0x0df4 rdyboost - ok 19:56:23.0693 0x0df4 [ 254FB7A22D74E5511C73A3F6D802F192, 3D0FB5840364200DE394F8CC28DA0E334C2B5FA8FF28A41656EE72287F3D3836 ] RemoteAccess C:\Windows\System32\mprdim.dll 19:56:23.0802 0x0df4 RemoteAccess - ok 19:56:23.0880 0x0df4 [ E4D94F24081440B5FC5AA556C7C62702, 147CAA03568DC480F9506E30B84891AB7E433B5EBC05F34FF10F72B00E1C6B22 ] RemoteRegistry C:\Windows\system32\regsvc.dll 19:56:23.0958 0x0df4 RemoteRegistry - ok 19:56:24.0005 0x0df4 [ 91C2AE052652E7ABD88155F11D667ED2, 3BF841DA9B1941A1B7EC688E59EFC22767A4871973546CCCE45ECAD183F473B6 ] risdpcie C:\Windows\system32\DRIVERS\risdpe64.sys 19:56:24.0146 0x0df4 risdpcie - ok 19:56:24.0192 0x0df4 [ 388D3DD1A6457280F3BADBA9F3ACD6B1, 5C534EA15195B1301C917904627AF09FE2ABA3FEE1641B5C87E8F3191BC49058 ] ROOTMODEM C:\Windows\system32\Drivers\RootMdm.sys 19:56:24.0286 0x0df4 ROOTMODEM - ok 19:56:24.0348 0x0df4 [ E4DC58CF7B3EA515AE917FF0D402A7BB, 665B5CD9FE905B0EE3F59A7B1A94760F5393EBEE729877D8584349754C2867E8 ] RpcEptMapper C:\Windows\System32\RpcEpMap.dll 19:56:24.0473 0x0df4 RpcEptMapper - ok 19:56:24.0520 0x0df4 [ D5BA242D4CF8E384DB90E6A8ED850B8C, CB4CB2608B5E31B55FB1A2CF4051E6D08A0C2A5FB231B2116F95938D7577334E ] RpcLocator C:\Windows\system32\locator.exe 19:56:24.0582 0x0df4 RpcLocator - ok 19:56:24.0614 0x0df4 [ 7266972E86890E2B30C0C322E906B027, BFA30E85F5BD3AA933913BD7C6D2B5993DB7AFB0C98349B61A6BEF0BDC8A3680 ] RpcSs C:\Windows\system32\rpcss.dll 19:56:24.0754 0x0df4 RpcSs - ok 19:56:24.0785 0x0df4 [ DDC86E4F8E7456261E637E3552E804FF, D250C69CCC75F2D88E7E624FCC51300E75637333317D53908CCA7E0F117173DD ] rspndr C:\Windows\system32\DRIVERS\rspndr.sys 19:56:24.0863 0x0df4 rspndr - ok 19:56:24.0879 0x0df4 [ 156F6159457D0AA7E59B62681B56EB90, 27B855BF79490E4CC58D38A920C077A56785494BFFF0B448A898486009B24937 ] SamSs C:\Windows\system32\lsass.exe 19:56:24.0926 0x0df4 SamSs - ok 19:56:24.0941 0x0df4 [ E3BBB89983DAF5622C1D50CF49F28227, 49370DC142D577D657BF5755AA9B8625C35D3DDAF1F9466B4888507FB8E6FF07 ] sbp2port C:\Windows\system32\DRIVERS\sbp2port.sys 19:56:24.0957 0x0df4 sbp2port - ok 19:56:24.0972 0x0df4 [ 9B7395789E3791A3B6D000FE6F8B131E, E5F067F3F212BF5481668BE1779CBEF053F511F8967589BE2E865ACB9A620024 ] SCardSvr C:\Windows\System32\SCardSvr.dll 19:56:25.0035 0x0df4 SCardSvr - ok 19:56:25.0082 0x0df4 [ C94DA20C7E3BA1DCA269BC8460D98387, E1A5629728A79233B62BA87B4354BC3A332A853CC36A60E77B34923F4BCA8A61 ] scfilter C:\Windows\system32\DRIVERS\scfilter.sys 19:56:25.0144 0x0df4 scfilter - ok 19:56:25.0206 0x0df4 [ 624D0F5FF99428BB90A5B8A4123E918E, 90A43E6F09B56CB86A3E3851F8E5ABB74905AEB70296F4B87BEDBC3027E65E86 ] Schedule C:\Windows\system32\schedsvc.dll 19:56:25.0378 0x0df4 Schedule - ok 19:56:25.0409 0x0df4 [ 312E2F82AF11E79906898AC3E3D58A1F, F6CB7D8B204B94F749D5DBEFD552150AAB16A34D629F87F73823A7504465F106 ] SCPolicySvc C:\Windows\System32\certprop.dll 19:56:25.0456 0x0df4 SCPolicySvc - ok 19:56:25.0518 0x0df4 [ 2C8D162EFAF73ABD36D8BCBB6340CAE7, DC40B08D39941D4FD0C3D5BEF279F50B66FE2D5859A0C85EF0DB11F91289DA9E ] sdbus C:\Windows\system32\DRIVERS\sdbus.sys 19:56:25.0565 0x0df4 sdbus - ok 19:56:25.0581 0x0df4 [ 765A27C3279CE11D14CB9E4F5869FCA5, B6C2EFFBA938828FEF7FE992A4C88B3154D053763C38762DCE13252FE9571FA1 ] SDRSVC C:\Windows\System32\SDRSVC.dll 19:56:25.0643 0x0df4 SDRSVC - ok 19:56:25.0674 0x0df4 [ 3EA8A16169C26AFBEB544E0E48421186, 34BBB0459C96B3DE94CCB0D73461562935C583D7BF93828DA4E20A6BC9B7301D ] secdrv C:\Windows\system32\drivers\secdrv.sys 19:56:25.0706 0x0df4 secdrv - ok 19:56:25.0737 0x0df4 [ 463B386EBC70F98DA5DFF85F7E654346, 8E27B18B04AF587719D1DAE75A042DB998E06CAE112BD68626EF046036D2DCDC ] seclogon C:\Windows\system32\seclogon.dll 19:56:25.0830 0x0df4 seclogon - ok 19:56:25.0986 0x0df4 [ C32AB8FA018EF34C0F113BD501436D21, E0EB8E80B51E45CA7EB061E705DA0BC07878759418A8519AE6E12326FE79E7C7 ] SENS C:\Windows\System32\sens.dll 19:56:26.0049 0x0df4 SENS - ok 19:56:26.0080 0x0df4 [ 0336CFFAFAAB87A11541F1CF1594B2B2, 8B8A6A33E78A12FB05E29B2E2775850626574AFD2EF88748D65E690A07B10B8D ] SensrSvc C:\Windows\system32\sensrsvc.dll 19:56:26.0127 0x0df4 SensrSvc - ok 19:56:26.0189 0x0df4 [ 45ED52A6D4C9C56C4BF58AC4771EEE71, 253A2CAE8C39BA610EF95F5CFE7EDF31A7EA4988C7776DCE174C0256CB5CF8A0 ] Ser2pl C:\Windows\system32\DRIVERS\ser2pl64.sys 19:56:26.0252 0x0df4 Ser2pl - ok 19:56:26.0283 0x0df4 [ CB624C0035412AF0DEBEC78C41F5CA1B, A4D937F11E06CAE914347CA1362F4C98EC5EE0C0C80321E360EA1ABD6726F8D4 ] Serenum C:\Windows\system32\DRIVERS\serenum.sys 19:56:26.0345 0x0df4 Serenum - ok 19:56:26.0361 0x0df4 [ C1D8E28B2C2ADFAEC4BA89E9FDA69BD6, 8F9776FB84C5D11068EAF1FF1D1A46466C655D64D256A8B1E31DC0C23B5DD22D ] Serial C:\Windows\system32\DRIVERS\serial.sys 19:56:26.0392 0x0df4 Serial - ok 19:56:26.0439 0x0df4 [ 1C545A7D0691CC4A027396535691C3E3, 065C30BE598FF4DC55C37E0BBE0CEDF10A370AE2BF5404B42EBBB867A3FFED6D ] sermouse C:\Windows\system32\DRIVERS\sermouse.sys 19:56:26.0564 0x0df4 sermouse - ok 19:56:26.0610 0x0df4 [ C3BC61CE47FF6F4E88AB8A3B429A36AF, 6CA53AD0CB7215BAE3467EC1FD490E3A18504BD6CD4F0FABF9BD37516AB9DFE0 ] SessionEnv C:\Windows\system32\sessenv.dll 19:56:26.0688 0x0df4 SessionEnv - ok 19:56:26.0720 0x0df4 [ A554811BCD09279536440C964AE35BBF, DA8F893722F803E189D7D4D6C6232ED34505B63A64ED3A0132A5BB7A2BABDE55 ] sffdisk C:\Windows\system32\DRIVERS\sffdisk.sys 19:56:26.0813 0x0df4 sffdisk - ok 19:56:26.0813 0x0df4 [ FF414F0BAEFEBA59BC6C04B3DB0B87BF, B81EF5D26AEB572CAB590F7AD7CA8C89F296420089EF5E6148E972F2DBCA1042 ] sffp_mmc C:\Windows\system32\DRIVERS\sffp_mmc.sys 19:56:26.0860 0x0df4 sffp_mmc - ok 19:56:26.0860 0x0df4 [ 178298F767FE638C9FEDCBDEF58BB5E4, 053D12CFEE5C54EA7D06F9C9CAE93544FE258A4825CDE2A14090BC81A96E1CF7 ] sffp_sd C:\Windows\system32\DRIVERS\sffp_sd.sys 19:56:26.0876 0x0df4 sffp_sd - ok 19:56:26.0907 0x0df4 [ A9D601643A1647211A1EE2EC4E433FF4, 7AC60B4AB48D4BBF1F9681C12EC2A75C72E6E12D30FABC564A24394310E9A5F9 ] sfloppy C:\Windows\system32\DRIVERS\sfloppy.sys 19:56:26.0938 0x0df4 sfloppy - ok 19:56:27.0047 0x0df4 [ B95F6501A2F8B2E78C697FEC401970CE, 758B73A32902299A313348CE7EC189B20EB4CB398D0180E4EE24B84DAD55F291 ] SharedAccess C:\Windows\System32\ipnathlp.dll 19:56:27.0141 0x0df4 SharedAccess - ok 19:56:27.0203 0x0df4 [ 0298AC45D0EFFFB2DB4BAA7DD186E7BF, 1C1D17301A4D37DBF906955CCABD2A3FDA47AFB24CBA978CF851123762249848 ] ShellHWDetection C:\Windows\System32\shsvcs.dll 19:56:27.0250 0x0df4 ShellHWDetection - ok 19:56:27.0297 0x0df4 [ 843CAF1E5FDE1FFD5FF768F23A51E2E1, 89CA9F516E42A6B905474D738CDA2C121020A07DBD4E66CFE569DD77D79D7820 ] SiSRaid2 C:\Windows\system32\DRIVERS\SiSRaid2.sys 19:56:27.0312 0x0df4 SiSRaid2 - ok 19:56:27.0390 0x0df4 [ 6A6C106D42E9FFFF8B9FCB4F754F6DA4, 87B85C66DF7EB6FDB8A2341D05FAA5261FF68A90CCFC63F0E4A03824F1E33E5E ] SiSRaid4 C:\Windows\system32\DRIVERS\sisraid4.sys 19:56:27.0437 0x0df4 SiSRaid4 - ok 19:56:27.0484 0x0df4 [ 548260A7B8654E024DC30BF8A7C5BAA4, 4A7E58331D7765A12F53DC2371739DC9A463940B13E16157CE10DB80E958D740 ] Smb C:\Windows\system32\DRIVERS\smb.sys 19:56:27.0562 0x0df4 Smb - ok 19:56:27.0609 0x0df4 [ 6313F223E817CC09AA41811DAA7F541D, D787061043BEEDB9386B048CB9E680E6A88A1CBAE9BD4A8C0209155BFB76C630 ] SNMPTRAP C:\Windows\System32\snmptrap.exe 19:56:27.0671 0x0df4 SNMPTRAP - ok 19:56:27.0687 0x0df4 [ B9E31E5CACDFE584F34F730A677803F9, 21A5130BD00089C609522A372018A719F8E37103D2DD22C59EACB393BE35A063 ] spldr C:\Windows\system32\drivers\spldr.sys 19:56:27.0702 0x0df4 spldr - ok 19:56:27.0765 0x0df4 [ F8E1FA03CB70D54A9892AC88B91D1E7B, 55EECAAD4C7EC0868BE937F4ADDA026AFDFCC614E94DE4B3248BFF2BE7FF13E8 ] Spooler C:\Windows\System32\spoolsv.exe 19:56:27.0827 0x0df4 Spooler - ok 19:56:28.0108 0x0df4 [ 913D843498553A1BC8F8DBAD6358E49F, F8B931FDABF669D642CBDCD2FF31E07F8A5E2D5F72E11D4A8FF219CCFB5825E9 ] sppsvc C:\Windows\system32\sppsvc.exe 19:56:28.0358 0x0df4 sppsvc - ok 19:56:28.0389 0x0df4 [ 93D7D61317F3D4BC4F4E9F8A96A7DE45, 36D48B23B8243BE5229707375FCD11C2DCAC96983199345365F065A0CBF33314 ] sppuinotify C:\Windows\system32\sppuinotify.dll 19:56:28.0592 0x0df4 sppuinotify - ok 19:56:28.0701 0x0df4 [ 2408C0366D96BCDF63E8F1C78E4A29C5, 66F646890695B5D80536E88B1566C8765D89CFE25954ED650F6D773EFF045016 ] srv C:\Windows\system32\DRIVERS\srv.sys 19:56:28.0763 0x0df4 srv - ok 19:56:28.0810 0x0df4 [ 76548F7B818881B47D8D1AE1BE9C11F8, 8F1356B07A6A55746FC71B6DB0322128941AE890850196F2B19BC01E6FC9B41C ] srv2 C:\Windows\system32\DRIVERS\srv2.sys 19:56:28.0872 0x0df4 srv2 - ok 19:56:28.0919 0x0df4 [ 0AF6E19D39C70844C5CAA8FB0183C36E, 4494EEFDEA7198888D32E74727E5BC0AC628FFA70B1FE7EB59DBEEDC1A95D0DD ] srvnet C:\Windows\system32\DRIVERS\srvnet.sys 19:56:28.0966 0x0df4 srvnet - ok 19:56:29.0028 0x0df4 [ 51B52FBD583CDE8AA9BA62B8B4298F33, 2E2403F8AA39E79D1281CA006B51B43139C32A5FDD64BD34DAA4B935338BD740 ] SSDPSRV C:\Windows\System32\ssdpsrv.dll 19:56:29.0169 0x0df4 SSDPSRV - ok 19:56:29.0200 0x0df4 [ AB7AEBF58DAD8DAAB7A6C45E6A8885CB, D21CDBC4C2AA0DB5B4455D5108B0CAF4282A2E664B9035708F212CC094569D9D ] SstpSvc C:\Windows\system32\sstpsvc.dll 19:56:29.0309 0x0df4 SstpSvc - ok 19:56:29.0356 0x0df4 [ F3817967ED533D08327DC73BC4D5542A, 1B204454408A690C0A86447F3E4AA9E7C58A9CFB567C94C17C21920BA648B4D5 ] stexstor C:\Windows\system32\DRIVERS\stexstor.sys 19:56:29.0387 0x0df4 stexstor - ok 19:56:29.0481 0x0df4 [ 52D0E33B681BD0F33FDC08812FEE4F7D, BBEBC0773402F6697D2F14F63E5E4FDC2180466E7FDBD306E408535B10160249 ] stisvc C:\Windows\System32\wiaservc.dll 19:56:29.0574 0x0df4 stisvc - ok 19:56:29.0590 0x0df4 [ D01EC09B6711A5F8E7E6564A4D0FBC90, 3CB922291DBADC92B46B9E28CCB6810CD8CCDA3E74518EC9522B58B998E1F969 ] swenum C:\Windows\system32\DRIVERS\swenum.sys 19:56:29.0699 0x0df4 swenum - ok 19:56:29.0762 0x0df4 [ E08E46FDD841B7184194011CA1955A0B, 9C3725BB1F08F92744C980A22ED5C874007D3B5863C7E1F140F50061052AC418 ] swprv C:\Windows\System32\swprv.dll 19:56:29.0840 0x0df4 swprv - ok 19:56:29.0918 0x0df4 [ CE9B5A79AEE330BC7E88C0441E5727BB, 315A6803DCAD670BDC30C74CC1040D73DA9B617C32F5B42FB09ABD549FCA4AE0 ] SynTP C:\Windows\system32\DRIVERS\SynTP.sys 19:56:29.0949 0x0df4 SynTP - ok 19:56:30.0183 0x0df4 [ 3C1284516A62078FB68F768DE4F1A7BE, 67ECD462335EF88773E4BAEAB230A68EC92A25F8CD8F115873F669205AE6A1A9 ] SysMain C:\Windows\system32\sysmain.dll 19:56:30.0401 0x0df4 SysMain - ok 19:56:30.0432 0x0df4 [ 238935C3CF2854886DC7CBB2A0E2CC66, BBF7A70BF218A544CC1A6FB81F75EAD29D418794162936BE197D6D61FE0DB1C4 ] TabletInputService C:\Windows\System32\TabSvc.dll 19:56:30.0479 0x0df4 TabletInputService - ok 19:56:30.0557 0x0df4 [ 884264AC597B690C5707C89723BB8E7B, 9BF209A4128019421F7EC4AFF71103C5F411DB6CFB32AAC1633E789AD7A30708 ] TapiSrv C:\Windows\System32\tapisrv.dll 19:56:30.0635 0x0df4 TapiSrv - ok 19:56:30.0682 0x0df4 [ 1BE03AC720F4D302EA01D40F588162F6, AB644862BF1D2E824FD846180DEC4E2C0FAFCC517451486DE5A92E5E78A952E4 ] TBS C:\Windows\System32\tbssvc.dll 19:56:30.0729 0x0df4 TBS - ok 19:56:30.0963 0x0df4 [ 624C5B3AA4C99B3184BB922D9ECE3FF0, DF9527CBA335A51513FBFFD95DAF3FA79A19F2B417C533EE384D397FB1E0889E ] Tcpip C:\Windows\system32\drivers\tcpip.sys 19:56:31.0166 0x0df4 Tcpip - ok 19:56:31.0275 0x0df4 [ 624C5B3AA4C99B3184BB922D9ECE3FF0, DF9527CBA335A51513FBFFD95DAF3FA79A19F2B417C533EE384D397FB1E0889E ] TCPIP6 C:\Windows\system32\DRIVERS\tcpip.sys 19:56:31.0337 0x0df4 TCPIP6 - ok 19:56:31.0415 0x0df4 [ 76D078AF6F587B162D50210F761EB9ED, 3813171036B4036306CADC29F877ADAE44B241DDF65B3699C352B7CDA9EC68C9 ] tcpipreg C:\Windows\system32\drivers\tcpipreg.sys 19:56:31.0462 0x0df4 tcpipreg - ok 19:56:31.0509 0x0df4 [ FD542B661BD22FA69CA789AD0AC58C29, 75FFAF1834B1E22DF37608ED451F161052FF1FE3C681B4E20A68DCA92CC7FD8C ] tdcmdpst C:\Windows\system32\DRIVERS\tdcmdpst.sys 19:56:31.0524 0x0df4 tdcmdpst - ok 19:56:31.0556 0x0df4 [ 3371D21011695B16333A3934340C4E7C, 7416F9BBFC1BA9D875EA7D1C7A0D912FC6977B49A865D67E3F9C4E18A965082D ] TDPIPE C:\Windows\system32\drivers\tdpipe.sys 19:56:31.0649 0x0df4 TDPIPE - ok 19:56:31.0680 0x0df4 [ 7518F7BCFD4B308ABC9192BACAF6C970, CF08E547EF4059DA3F5A2FCBA98939E84092BB6E0E37F9BBCD1E4D9EBB8A58BB ] TDTCP C:\Windows\system32\drivers\tdtcp.sys 19:56:31.0805 0x0df4 TDTCP - ok 19:56:31.0836 0x0df4 [ 079125C4B17B01FCAEEBCE0BCB290C0F, B2DF1F2317EF5DCF0A89327332E9F2770ED604005B3138C095FF01AA63B91437 ] tdx C:\Windows\system32\DRIVERS\tdx.sys 19:56:31.0899 0x0df4 tdx - ok 19:56:32.0008 0x0df4 [ E102DFB06AD5BB7B81733043F8D885B3, CB7EEA03AF30F839D38431A33A5C6B6C74B4F8C2670DED01A427D4CCFB2FCCB8 ] TeamViewer C:\Program Files (x86)\TeamViewer3\TeamViewer_Service.exe 19:56:32.0039 0x0df4 TeamViewer - ok 19:56:32.0070 0x14e8 Object required for P2P: [ 279A6B916711B54DA2B2913250E5AFF1 ] AVGIDSAgent 19:56:32.0117 0x0df4 [ 40E154B3125E17CE6F2AFAD57AFCFEB2, B059EDD520F8642F3C00E3B28B3AA356CAC519187D10D85ACB68587F93C1B0E6 ] TemproMonitoringService C:\Program Files (x86)\Toshiba TEMPRO\TemproSvc.exe 19:56:32.0148 0x0df4 TemproMonitoringService - ok 19:56:32.0195 0x0df4 [ C448651339196C0E869A355171875522, C12441CF21D7D47804952B968689D78E3BA0323A90C4C811B54A6B2E6260BAD4 ] TermDD C:\Windows\system32\DRIVERS\termdd.sys 19:56:32.0226 0x0df4 TermDD - ok 19:56:32.0351 0x0df4 [ 0F05EC2887BFE197AD82A13287D2F404, 78C8A8FE9B1101430CA79875DA34413C35B6D7A5EE1932E454C50731335437A6 ] TermService C:\Windows\System32\termsrv.dll 19:56:32.0429 0x0df4 TermService - ok 19:56:32.0460 0x0df4 [ F0344071948D1A1FA732231785A0664C, DB9886C2C858FAF45AEA15F8E42860343F73EB8685C53EC2E8CCC10586CB0832 ] Themes C:\Windows\system32\themeservice.dll 19:56:32.0507 0x0df4 Themes - ok 19:56:32.0538 0x0df4 [ C013F6ACAA9761F571BD28DADA7C157D, E57246132B36FE38D4B177AAE3367D25AF28449201CD4D02CB7957C32AF02AC6 ] Thpdrv C:\Windows\system32\DRIVERS\thpdrv.sys 19:56:32.0554 0x0df4 Thpdrv - ok 19:56:32.0554 0x0df4 [ B4E609047434ED948AF7BDEF2FA66E38, 353B7A120E532E9CDF0DE91EC39DF5B9B92A1A99B537FF4FB0D1EA13DBE30D17 ] Thpevm C:\Windows\system32\DRIVERS\Thpevm.SYS 19:56:32.0570 0x0df4 Thpevm - ok 19:56:32.0601 0x0df4 [ F6927BBA3B09AFF26A53A9191F7378F9, ECB6FD262882E9E2714DC61A634045B4C4906BF159A42ECB5D3166BD42EC65D1 ] Thpsrv C:\Windows\system32\ThpSrv.exe 19:56:32.0632 0x0df4 Thpsrv - ok 19:56:32.0663 0x0df4 [ E40E80D0304A73E8D269F7141D77250B, 0DB4AC13A264F19A84DC0BCED54E8E404014CC09C993B172002B1561EC7E265A ] THREADORDER C:\Windows\system32\mmcss.dll 19:56:32.0694 0x0df4 THREADORDER - ok 19:56:32.0772 0x0df4 [ 28644B0523D64EFF2FC7312A2EE74B0A, 09A36DE0B2B90842BD5B8353CC34B7C71C0FBBF6DD5862720FCEE760849C4561 ] TMachInfo C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe 19:56:32.0835 0x0df4 TMachInfo - ok 19:56:32.0882 0x0df4 [ ED32035BDFECED1AD66D459FD9CC1140, B82A15FAB4CBB5A633B9BF722441D5B20D946B63DD10BBE2A89D3A8BA3BE3339 ] TODDSrv C:\Windows\system32\TODDSrv.exe 19:56:32.0897 0x0df4 TODDSrv - ok 19:56:33.0038 0x0df4 [ 15CA4B185EA8AEF71DD86181E6E0157E, 9C12064CFD1EEAB7638BE0DE11EF78A43282FB307EE9F0803680DB130F592154 ] TosCoSrv C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe 19:56:33.0053 0x0df4 TosCoSrv - ok 19:56:33.0162 0x0df4 [ 8F099BE5DB17D025E19652851399B9F1, A8EC58DB1700713E9376977675BBC380255D0DDA064120FD70AA2478C5FD1CDF ] TOSHIBA Bluetooth Service C:\Program Files (x86)\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe 19:56:33.0194 0x0df4 TOSHIBA Bluetooth Service - ok 19:56:33.0256 0x0df4 [ 231153874D46A7FCB8F60B05DFF7DF69, E86B4177E9E807C032C8962DC2EED7D28D888999E7CF0F38A8E67FC628F8BFF1 ] TOSHIBA eco Utility Service C:\Program Files\TOSHIBA\TECO\TecoService.exe 19:56:33.0287 0x0df4 TOSHIBA eco Utility Service - ok 19:56:33.0334 0x0df4 [ 74C2FA8C3765EE71A9C22182EC108457, A7073FAB6CE6FB9824544A9CDCCA441D08FD87D68EB564DCB1186FC257776221 ] TOSHIBA HDD SSD Alert Service C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe 19:56:33.0350 0x0df4 TOSHIBA HDD SSD Alert Service - ok 19:56:33.0396 0x0df4 [ 8021F63311797085949FA387F7C83583, 7781994B9F06784807D32FD5A93C5406A441908870B1328BBDA9D15C5DD98C1B ] tosporte C:\Windows\system32\DRIVERS\tosporte.sys 19:56:33.0412 0x0df4 tosporte - ok 19:56:33.0443 0x0df4 [ 3FA1857F4A99AF19D1F4106697793E0E, A6C02FD32C3A6C7E3FC064066EFB3744F7CCB299B8E73727AF2BCF5565C0E581 ] tosrfbd C:\Windows\system32\DRIVERS\tosrfbd.sys 19:56:33.0459 0x0df4 tosrfbd - ok 19:56:33.0474 0x0df4 [ 62512B5277D88600F8BD4B7AEC43569D, 94724FEF7CD61E8E614921C94B24237E7E7E51DA6B9530E953F37E010F94F504 ] tosrfbnp C:\Windows\system32\Drivers\tosrfbnp.sys 19:56:33.0490 0x0df4 tosrfbnp - ok 19:56:33.0521 0x0df4 [ C523A9186C39D65CC9ADEBB2E1B93CCD, B04E73CAFFD8100512686F3487D28FE62AC3538F6A71DBC94AA724824256E2E4 ] Tosrfcom C:\Windows\system32\Drivers\tosrfcom.sys 19:56:33.0537 0x0df4 Tosrfcom - ok 19:56:33.0568 0x0df4 [ 11699D47B3491D86249C168496D55C92, BAE7DC248F44BB036641C1E60103F368B7BFE1AAFDCB4BD25FE9A3A970B3A572 ] tosrfec C:\Windows\system32\DRIVERS\tosrfec.sys 19:56:33.0584 0x0df4 tosrfec - ok 19:56:33.0615 0x0df4 [ 451B8C1815C6CC39650AF916C2A382CD, 562B90A9D15F728D76E274FD165D82AACED54B29910001C8C7DB1E3DE9386E16 ] Tosrfhid C:\Windows\system32\DRIVERS\Tosrfhid.sys 19:56:33.0615 0x0df4 Tosrfhid - ok 19:56:33.0646 0x0df4 [ B6FDC3C76FFE9C5171EEA9C37EA367C2, 4F8D4E2E37164DB91F396B836BD888CF221010103CF3FBECE00B747155819374 ] tosrfnds C:\Windows\system32\DRIVERS\tosrfnds.sys 19:56:33.0662 0x0df4 tosrfnds - ok 19:56:33.0693 0x0df4 [ 2254BC85FA003686D6BC2F76E54A60AE, 054B38EF245EF74F86E45CFFB6A041E8DD21A30FB8C8C8A52E7B78DC1E5C6029 ] TosRfSnd C:\Windows\system32\drivers\tosrfsnd.sys 19:56:33.0740 0x0df4 TosRfSnd - ok 19:56:33.0755 0x0df4 [ 6248B8AD1D0E9D7CDEBA37B843C9BF33, 1B3E790CCA04575E42567318ED78DDB84477F545FE757F306EFD60E17679BC0E ] Tosrfusb C:\Windows\system32\DRIVERS\tosrfusb.sys 19:56:33.0771 0x0df4 Tosrfusb - ok 19:56:33.0927 0x0df4 [ 1F7A27DE3F0849A31CE8909E3B3B1E1C, C95556C4CBEC278C6B440F8FB5E641F319ADBC025916A2908C4F23006FD399C4 ] TPCHSrv C:\Program Files\TOSHIBA\TPHM\TPCHSrv.exe 19:56:33.0958 0x0df4 TPCHSrv - ok 19:56:33.0989 0x0df4 [ 7E7AFD841694F6AC397E99D75CEAD49D, DE87F203FD8E6BDCCFCA1860A85F283301A365846FB703D9BB86278D8AC96B07 ] TrkWks C:\Windows\System32\trkwks.dll 19:56:34.0114 0x0df4 TrkWks - ok 19:56:34.0176 0x0df4 [ 840F7FB849F5887A49BA18C13B2DA920, A59C40A090E03C0136A865FC54508BA938E7B467C8198BC009FE263E6C275781 ] TrustedInstaller C:\Windows\servicing\TrustedInstaller.exe 19:56:34.0208 0x0df4 TrustedInstaller - ok 19:56:34.0223 0x0df4 [ 61B96C26131E37B24E93327A0BD1FB95, 7C551B6FD0447258BC3FDED72D8D41A0E8B731562170C264295592D45F85D9FF ] tssecsrv C:\Windows\system32\DRIVERS\tssecsrv.sys 19:56:34.0270 0x0df4 tssecsrv - ok 19:56:34.0660 0x14e8 Object send P2P result: true 19:56:34.0660 0x14e8 Object required for P2P: [ F328F131751BBFC9BBB5EDFE4080158F ] avgwd 19:56:34.0847 0x0df4 [ C8757FB7C986181F1A7D29B0FE5F20E2, 55FA4C6C9906396C5B73EC20D2ED78EB66A8D0DBBE433514B3AA71C520B6B640 ] TuneUp.UtilitiesSvc C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesService64.exe 19:56:34.0941 0x0df4 TuneUp.UtilitiesSvc - ok 19:56:35.0019 0x0df4 [ DB3C912A851FCA6358FED4D53DAA7E91, B35375EC9AF61D829489D9B278605E2098D6402419E79EB24C65D3B65816AEBC ] TuneUpUtilitiesDrv C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesDriver64.sys 19:56:35.0050 0x0df4 TuneUpUtilitiesDrv - ok 19:56:35.0112 0x0df4 [ 3836171A2CDF3AF8EF10856DB9835A70, 74CD0A21B4E5B47E8D762CC28282CA8D512D424EC591D90099B9F8D034AA2FC2 ] tunnel C:\Windows\system32\DRIVERS\tunnel.sys 19:56:35.0175 0x0df4 tunnel - ok 19:56:35.0237 0x0df4 [ EFFCE6E033EBDD0F3C0F14A413558F65, 576E7C8F1FBE874A0F8F7AA97FC19F472474CFD4A6F663034341E98FF5A28BB5 ] TVALZ C:\Windows\system32\DRIVERS\TVALZ.SYS 19:56:35.0268 0x0df4 TVALZ - ok 19:56:35.0315 0x0df4 [ 9C7191F4B2E49BFF47A6C1144B5923FA, DF4E663499946F4E68B7528CA399574D1EB69797FF81F681943B84F3E5E6A40E ] TVALZFL C:\Windows\system32\DRIVERS\TVALZFL.sys 19:56:35.0346 0x0df4 TVALZFL - ok 19:56:35.0362 0x0df4 [ B4DD609BD7E282BFC683CEC7EAAAAD67, EF131DB6F6411CAD36A989A421AF93F89DD61601AC524D2FF11C10FF6E3E9123 ] uagp35 C:\Windows\system32\DRIVERS\uagp35.sys 19:56:35.0393 0x0df4 uagp35 - ok 19:56:35.0440 0x0df4 [ D47BAEAD86C65D4F4069D7CE0A4EDCEB, DBAEA010F11A5EFD961B1841308EA3F220A9FFB01F364BA9B8F72200DA2BBCD8 ] udfs C:\Windows\system32\DRIVERS\udfs.sys 19:56:35.0534 0x0df4 udfs - ok 19:56:35.0596 0x0df4 [ 3CBDEC8D06B9968ABA702EBA076364A1, B8DAB8AA804FC23021BFEBD7AE4D40FBE648D6C6BA21CC008E26D1C084972F9B ] UI0Detect C:\Windows\system32\UI0Detect.exe 19:56:35.0627 0x0df4 UI0Detect - ok 19:56:35.0674 0x0df4 [ 4BFE1BC28391222894CBF1E7D0E42320, 5918B1ED2030600DF77BDACF1C808DF6EADDD8BF3E7003AF1D72050D8B102B3A ] uliagpkx C:\Windows\system32\DRIVERS\uliagpkx.sys 19:56:35.0705 0x0df4 uliagpkx - ok 19:56:35.0736 0x0df4 [ EAB6C35E62B1B0DB0D1B48B671D3A117, E65034BF757AE4D21F69D7A91A7990E326A29A0CE9F871FD704B5E6CCC821FF0 ] umbus C:\Windows\system32\DRIVERS\umbus.sys 19:56:35.0768 0x0df4 umbus - ok 19:56:35.0799 0x0df4 [ B2E8E8CB557B156DA5493BBDDCC1474D, F547509A08C0679ACB843E20C9C0CF51BED1B06530BBC529DFB0944504564A43 ] UmPass C:\Windows\system32\DRIVERS\umpass.sys 19:56:35.0814 0x0df4 UmPass - ok 19:56:36.0111 0x0df4 [ CC3775100ABA633984F73DFAE1F55CAE, 845F129289BB73FD78A6C3B497F17BA973FD691BC9242200F81993417C803FE9 ] UNS C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe 19:56:36.0173 0x0df4 UNS - ok 19:56:36.0236 0x0df4 [ D47EC6A8E81633DD18D2436B19BAF6DE, 0FB461E2D5E0B75BB5958F6362F4880BFA4C36AD930542609BCAF574941AA7AE ] upnphost C:\Windows\System32\upnphost.dll 19:56:36.0314 0x0df4 upnphost - ok 19:56:36.0360 0x0df4 [ 77B01BC848298223A95D4EC23E1785A1, 7D0FBBA746588401400226BB966507EE34EEBB2F4F16607601E3D7383CAD34E2 ] usbaudio C:\Windows\system32\drivers\usbaudio.sys 19:56:36.0407 0x0df4 usbaudio - ok 19:56:36.0438 0x0df4 [ B26AFB54A534D634523C4FB66765B026, A219C9AE32D040BEA4DD69C2C826B1C52BACE26BEBFEE799BD56DFD442C5E0D8 ] usbccgp C:\Windows\system32\DRIVERS\usbccgp.sys 19:56:36.0516 0x0df4 usbccgp - ok 19:56:36.0579 0x0df4 [ AF0892A803FDDA7492F595368E3B68E7, F263346DEB4D742EB436CF578F187AC8521D84CED52E98475E6198EC52244F07 ] usbcir C:\Windows\system32\DRIVERS\usbcir.sys 19:56:36.0641 0x0df4 usbcir - ok 19:56:36.0688 0x0df4 [ CB490987A7F6928A04BB838E3BD8A936, 51D1E6A6F17A8482B526668032CC9F563F655C2EC413101566187CE8D7B6B5F4 ] usbehci C:\Windows\system32\DRIVERS\usbehci.sys 19:56:36.0750 0x0df4 usbehci - ok 19:56:36.0797 0x0df4 [ 18124EF0A881A00EE222D02A3EE30270, 8FBD652F03C5F114BD3661BFA9A5D2A56CE5F5C8D67A5876409E0B055D97D038 ] usbhub C:\Windows\system32\DRIVERS\usbhub.sys 19:56:36.0860 0x0df4 usbhub - ok 19:56:36.0906 0x0df4 [ 58E546BBAF87664FC57E0F6081E4F609, 1DD99D57369A0069654432AB5325AFD8F7D422D531E053EA05FF664BA6BDAEF9 ] usbohci C:\Windows\system32\DRIVERS\usbohci.sys 19:56:36.0922 0x0df4 usbohci - ok 19:56:36.0984 0x0df4 [ 73188F58FB384E75C4063D29413CEE3D, B485463933306036B1D490722CB1674DC85670753D79FA0EF7EBCA7BBAAD9F7C ] usbprint C:\Windows\system32\DRIVERS\usbprint.sys 19:56:37.0031 0x0df4 usbprint - ok 19:56:37.0094 0x0df4 [ AAA2513C8AED8B54B189FD0C6B1634C0, 02FEE0B756AA559C29477A19861AC16D5A3152DC3C897C7D466423438B6A5E42 ] usbscan C:\Windows\system32\DRIVERS\usbscan.sys 19:56:37.0125 0x0df4 usbscan - ok 19:56:37.0172 0x14e8 Object send P2P result: true 19:56:37.0172 0x0df4 [ 080D3820DA6C046BE82FC8B45A893E83, EF4829A2D5B8D47AA7E06093EC85244042ED1CCFF43CC80DC44EF018B434197A ] USBSTOR C:\Windows\system32\DRIVERS\USBSTOR.SYS 19:56:37.0265 0x0df4 USBSTOR - ok 19:56:37.0281 0x0df4 [ 81FB2216D3A60D1284455D511797DB3D, 121E52B18A1832E775EA0AE2E053BAA53E5A70E9754724B1449AE5992D63B13E ] usbuhci C:\Windows\system32\DRIVERS\usbuhci.sys 19:56:37.0296 0x0df4 usbuhci - ok 19:56:37.0328 0x0df4 [ D501E12614B00A3252073101D6A1A74B, DFA3A83978125B3CE45C71DD9069E8A7938366D0F4B4B2401CDD07251253FA8C ] usbvideo C:\Windows\system32\Drivers\usbvideo.sys 19:56:37.0374 0x0df4 usbvideo - ok 19:56:37.0406 0x0df4 [ EDBB23CBCF2CDF727D64FF9B51A6070E, 7202484C8E1BFB2AFD64D8C81668F3EDE0E3BF5EB27572877A0A7B337AE5AE42 ] UxSms C:\Windows\System32\uxsms.dll 19:56:37.0437 0x0df4 UxSms - ok 19:56:37.0452 0x0df4 [ 156F6159457D0AA7E59B62681B56EB90, 27B855BF79490E4CC58D38A920C077A56785494BFFF0B448A898486009B24937 ] VaultSvc C:\Windows\system32\lsass.exe 19:56:37.0468 0x0df4 VaultSvc - ok 19:56:37.0499 0x0df4 [ C5C876CCFC083FF3B128F933823E87BD, 6FE0FBB6C3207E09300E0789E2168F76668D87C317FE9F263E733827ADCFBE0D ] vdrvroot C:\Windows\system32\DRIVERS\vdrvroot.sys 19:56:37.0515 0x0df4 vdrvroot - ok 19:56:37.0546 0x0df4 [ 44D73E0BBC1D3C8981304BA15135C2F2, 2849387BBCFB0189AF5604D2F7A631BD5D6BBB2CA73AF6E870069AF382A74DED ] vds C:\Windows\System32\vds.exe 19:56:37.0608 0x0df4 vds - ok 19:56:37.0655 0x0df4 [ DA4DA3F5E02943C2DC8C6ED875DE68DD, EDE604536DB78C512D68C92B26DA77C8811AC109D1F0A473673F0A82D15A2838 ] vga C:\Windows\system32\DRIVERS\vgapnp.sys 19:56:37.0671 0x0df4 vga - ok 19:56:37.0686 0x0df4 [ 53E92A310193CB3C03BEA963DE7D9CFC, 45898604375B42EB1246C17A22D91C2440F11C746FF6459AD38027C1BC2E3125 ] VgaSave C:\Windows\System32\drivers\vga.sys 19:56:37.0749 0x0df4 VgaSave - ok 19:56:37.0764 0x0df4 [ C82E748660F62A242B2DFAC1442F22A4, 24AD6CAA918C5AB6F461D88825885C8637C224001AAD7A80BDC240368CDB0B7E ] vhdmp C:\Windows\system32\DRIVERS\vhdmp.sys 19:56:37.0796 0x0df4 vhdmp - ok 19:56:37.0827 0x0df4 [ E5689D93FFE4E5D66C0178761240DD54, 6D35CED80681B12AAF63BFA0DA1C386E71D3838839B68A686990AA8031949D27 ] viaide C:\Windows\system32\DRIVERS\viaide.sys 19:56:37.0827 0x0df4 viaide - ok 19:56:37.0858 0x0df4 [ 2B1A3DAE2B4E70DBBA822B7A03FBD4A3, 91F2B935E1E88C5542650F7D679A75D0562F4A5812179D1EC146D4B6351361E2 ] volmgr C:\Windows\system32\DRIVERS\volmgr.sys 19:56:37.0874 0x0df4 volmgr - ok 19:56:37.0920 0x0df4 [ 99B0CBB569CA79ACAED8C91461D765FB, 5BE394A39A941DE2AA1212E66B7068F90D423FA816238657CB9B2DA8BBE69B9B ] volmgrx C:\Windows\system32\drivers\volmgrx.sys 19:56:37.0952 0x0df4 volmgrx - ok 19:56:37.0998 0x0df4 [ 58F82EED8CA24B461441F9C3E4F0BF5C, 40B8C9C9D1BEDD1507138273A3C000C753C8765E1873F2170DE63555A042928C ] volsnap C:\Windows\system32\DRIVERS\volsnap.sys 19:56:38.0014 0x0df4 volsnap - ok 19:56:38.0045 0x0df4 [ 5E2016EA6EBACA03C04FEAC5F330D997, 53106EB877459FE55A459111F7AB0EE320BB3B4C954D3DB6FA1642396001F2AC ] vsmraid C:\Windows\system32\DRIVERS\vsmraid.sys 19:56:38.0061 0x0df4 vsmraid - ok 19:56:38.0217 0x0df4 [ 787898BF9FB6D7BD87A36E2D95C899BA, A6C0C7402B1A198E7B3D6D7D283FCB5815AC429DA68FC9B54C67707F3233CCB5 ] VSS C:\Windows\system32\vssvc.exe 19:56:38.0373 0x0df4 VSS - ok 19:56:38.0388 0x0df4 [ 36D4720B72B5C5D9CB2B9C29E9DF67A1, 3254523C85C70EBA2DBAC05DB2DBA89EDF8E9195F390F7C21F96458FB6B2E3D7 ] vwifibus C:\Windows\system32\DRIVERS\vwifibus.sys 19:56:38.0404 0x0df4 vwifibus - ok 19:56:38.0435 0x0df4 [ 6A3D66263414FF0D6FA754C646612F3F, 30F6BA594B0D3B94113064015A16D97811CD989DF1715CCE21CEAB9894C1B4FB ] vwififlt C:\Windows\system32\DRIVERS\vwififlt.sys 19:56:38.0498 0x0df4 vwififlt - ok 19:56:38.0529 0x0df4 [ 6A638FC4BFDDC4D9B186C28C91BD1A01, 5521F1DC515586777EC4837E0AEAA3E613CC178AF1074031C4D0D0C695A93168 ] vwifimp C:\Windows\system32\DRIVERS\vwifimp.sys 19:56:38.0544 0x0df4 vwifimp - ok 19:56:38.0591 0x0df4 [ 1C9D80CC3849B3788048078C26486E1A, 34A89F31E53F6B6C209B286F580CC2257AE6D057E4E20741F241C9C167947962 ] W32Time C:\Windows\system32\w32time.dll 19:56:38.0638 0x0df4 W32Time - ok 19:56:38.0669 0x0df4 [ 4E9440F4F152A7B944CB1663D3935A3E, 8FE04EBD3BC612EE943A21A3E56F37E5C9B578CDACA6044048181DAD81816D53 ] WacomPen C:\Windows\system32\DRIVERS\wacompen.sys 19:56:38.0700 0x0df4 WacomPen - ok 19:56:38.0747 0x0df4 [ 47CA49400643EFFD3F1C9A27E1D69324, 7EFD3405282264F7987172B226882FCDD223F771959B9CEBEBF9ECEA317D85B0 ] WANARP C:\Windows\system32\DRIVERS\wanarp.sys 19:56:38.0810 0x0df4 WANARP - ok 19:56:38.0810 0x0df4 [ 47CA49400643EFFD3F1C9A27E1D69324, 7EFD3405282264F7987172B226882FCDD223F771959B9CEBEBF9ECEA317D85B0 ] Wanarpv6 C:\Windows\system32\DRIVERS\wanarp.sys 19:56:38.0856 0x0df4 Wanarpv6 - ok 19:56:39.0106 0x0df4 [ 5AB1BB85BD8B5089CC5D64200DEDAE68, 28777D4F3CD07C8E3465B6DA0FCA994E0B93071A3A0D4D1D64C1DF633DD1C64F ] wbengine C:\Windows\system32\wbengine.exe 19:56:39.0262 0x0df4 wbengine - ok 19:56:39.0309 0x0df4 [ 3AA101E8EDAB2DB4131333F4325C76A3, 4F7BD3DA5E58B18BFF106CFF7B45E75FD13EE556D433C695BA23EC80827E49DE ] WbioSrvc C:\Windows\System32\wbiosrvc.dll 19:56:39.0340 0x0df4 WbioSrvc - ok 19:56:39.0402 0x0df4 [ 8321C2CA3B62B61B293CDA3451984468, 856A079C2CCC75D633EA23E410D7F3ECDF368EAAAFF634CB82DDA545FD3A2F9C ] wcncsvc C:\Windows\System32\wcncsvc.dll 19:56:39.0449 0x0df4 wcncsvc - ok 19:56:39.0465 0x0df4 [ 20F7441334B18CEE52027661DF4A6129, 7B8E0247234B740FED2BE9B833E9CE8DD7453340123AB43F6B495A7E6A27B0DD ] WcsPlugInService C:\Windows\System32\WcsPlugInService.dll 19:56:39.0527 0x0df4 WcsPlugInService - ok 19:56:39.0543 0x0df4 [ 72889E16FF12BA0F235467D6091B17DC, F2FD0BBD075E33608D93F350D216F97442AB89ABD540513C2D568C78096E12A8 ] Wd C:\Windows\system32\DRIVERS\wd.sys 19:56:39.0558 0x0df4 Wd - ok 19:56:39.0590 0x0df4 [ 441BD2D7B4F98134C3A4F9FA570FD250, FF20815273014C5A27C2B75E2C70FE674809293627056199F502DFDF4CECFCA1 ] Wdf01000 C:\Windows\system32\drivers\Wdf01000.sys 19:56:39.0621 0x0df4 Wdf01000 - ok 19:56:39.0652 0x0df4 [ BF1FC3F79B863C914687A737C2F3D681, B2DF47AC4931ACFB243775767B77065CC0D98778FC0243C793A3E219EB961209 ] WdiServiceHost C:\Windows\system32\wdi.dll 19:56:39.0683 0x0df4 WdiServiceHost - ok 19:56:39.0683 0x0df4 [ BF1FC3F79B863C914687A737C2F3D681, B2DF47AC4931ACFB243775767B77065CC0D98778FC0243C793A3E219EB961209 ] WdiSystemHost C:\Windows\system32\wdi.dll 19:56:39.0699 0x0df4 WdiSystemHost - ok 19:56:39.0730 0x0df4 [ 8A438CBB8C032A0C798B0C642FFBE572, 3200B9B6A7B87C1C47295FA416C99DE1FBB2DBBA3DA78D5CC88C26DCC4189D45 ] WebClient C:\Windows\System32\webclnt.dll 19:56:39.0777 0x0df4 WebClient - ok 19:56:39.0824 0x0df4 [ C749025A679C5103E575E3B48E092C43, B71171D07EE7AB085A24BF3A1072FF2CE7EA021AAE695F6A90640E6EE8EB55C1 ] Wecsvc C:\Windows\system32\wecsvc.dll 19:56:39.0902 0x0df4 Wecsvc - ok 19:56:39.0948 0x0df4 [ 7E591867422DC788B9E5BD337A669A08, 484E6BCCDF7ADCE9A1AACAD1BC7C7D7694B9E40FA90D94B14D80C607784F6C75 ] wercplsupport C:\Windows\System32\wercplsupport.dll 19:56:40.0058 0x0df4 wercplsupport - ok 19:56:40.0089 0x0df4 [ 6D137963730144698CBD10F202E9F251, A9F522A125158D94F540544CCD4DBF47B9DCE2EA878C33675AFE40F80E8F4979 ] WerSvc C:\Windows\System32\WerSvc.dll 19:56:40.0136 0x0df4 WerSvc - ok 19:56:40.0167 0x0df4 [ 611B23304BF067451A9FDEE01FBDD725, 0AF2734B978165FC6FD22B64862132CCE32528A21C698A49D176129446E099C8 ] WfpLwf C:\Windows\system32\DRIVERS\wfplwf.sys 19:56:40.0214 0x0df4 WfpLwf - ok 19:56:40.0229 0x0df4 [ 05ECAEC3E4529A7153B3136CEB49F0EC, 9995CB2CEC70A633EA33CBB0DEAD2BB28CB67132B41E9444BDAB9E75744C9A50 ] WIMMount C:\Windows\system32\drivers\wimmount.sys 19:56:40.0245 0x0df4 WIMMount - ok 19:56:40.0276 0x0df4 WinDefend - ok 19:56:40.0276 0x0df4 WinHttpAutoProxySvc - ok 19:56:40.0370 0x0df4 [ 19B07E7E8915D701225DA41CB3877306, D6555E8D276DBB11358246E0FE215F76F1FB358791C76B88D82C2A66A42DA19F ] Winmgmt C:\Windows\system32\wbem\WMIsvc.dll 19:56:40.0432 0x0df4 Winmgmt - ok 19:56:40.0588 0x0df4 [ 41FBB751936B387F9179E7F03A74FE29, 7A73D887BEC19DFC485ED42B4E6ABEBF824555139B81EA30731A00773E707464 ] WinRM C:\Windows\system32\WsmSvc.dll 19:56:40.0728 0x0df4 WinRM - ok 19:56:40.0822 0x0df4 [ 817EAFF5D38674EDD7713B9DFB8E9791, F6E0BFC503BA7395F92989C11B454D1F1E58E29302BA203801449A2C5236E84D ] WinUsb C:\Windows\system32\DRIVERS\WinUsb.sys 19:56:40.0900 0x0df4 WinUsb - ok 19:56:40.0994 0x0df4 [ 4FADA86E62F18A1B2F42BA18AE24E6AA, CE1683386886BF34862681A46199EA7E7FB4232A186047DA7FBD8EC240AF6726 ] Wlansvc C:\Windows\System32\wlansvc.dll 19:56:41.0072 0x0df4 Wlansvc - ok 19:56:41.0368 0x0df4 [ 98F138897EF4246381D197CB81846D62, A9FA88475AFBB8883297708608EC7C1AC29F229C3299A84D557172604813A18C ] wlidsvc C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE 19:56:41.0415 0x0df4 wlidsvc - ok 19:56:41.0493 0x0df4 [ F6FF8944478594D0E414D3F048F0D778, 6F75E0AE6127B33A92A88E59D4B048FD4C15F997807BE7BF0EFE76F95235B1D9 ] WmiAcpi C:\Windows\system32\DRIVERS\wmiacpi.sys 19:56:41.0540 0x0df4 WmiAcpi - ok 19:56:41.0602 0x0df4 [ 38B84C94C5A8AF291ADFEA478AE54F93, 1AC267AC73670BEA5F3785C9AD9DB146F8E993A862C843742B21FDB90D102B2A ] wmiApSrv C:\Windows\system32\wbem\WmiApSrv.exe 19:56:41.0696 0x0df4 wmiApSrv - ok 19:56:41.0742 0x0df4 WMPNetworkSvc - ok 19:56:41.0758 0x0df4 [ 96C6E7100D724C69FCF9E7BF590D1DCA, 2E63C9B0893B4FC03B7A71BAEA6202D3D3DB1B52F3643467829B5A573FD7655B ] WPCSvc C:\Windows\System32\wpcsvc.dll 19:56:41.0789 0x0df4 WPCSvc - ok 19:56:41.0805 0x0df4 [ 2E57DDF2880A7E52E76F41C7E96D327B, D24E19B6091C197D77D71BC044CE2E5A57BE0A2F00D1BB0732E380A398230E63 ] WPDBusEnum C:\Windows\system32\wpdbusenum.dll 19:56:41.0867 0x0df4 WPDBusEnum - ok 19:56:41.0898 0x0df4 [ 6BCC1D7D2FD2453957C5479A32364E52, E48554D31FBDCF8F985C1C72524CAA9106F5B7CC2B79064F8F5E2562D517F090 ] ws2ifsl C:\Windows\system32\drivers\ws2ifsl.sys 19:56:41.0992 0x0df4 ws2ifsl - ok 19:56:42.0039 0x0df4 [ E8B1FE6669397D1772D8196DF0E57A9E, 39FE0819360719F756BD31A1884A0508A1E2371ACC723E25E005CBEC0A7B02FA ] wscsvc C:\Windows\System32\wscsvc.dll 19:56:42.0070 0x0df4 wscsvc - ok 19:56:42.0086 0x0df4 WSearch - ok 19:56:42.0226 0x0df4 [ D9EF901DCA379CFE914E9FA13B73B4C4, 3BE9693B7B2AFEE23D72AF5DA211379724D752F0EC18ACB7D3DE3DDFC5AE0004 ] wuauserv C:\Windows\system32\wuaueng.dll 19:56:42.0366 0x0df4 wuauserv - ok 19:56:42.0413 0x0df4 [ 7CADC74271DD6461C452C271B30BD378, D58C2094C36FC665C03A6A269EED80DC71F330C3DCF40A27A3C8F56AB7A96861 ] WudfPf C:\Windows\system32\drivers\WudfPf.sys 19:56:42.0444 0x0df4 WudfPf - ok 19:56:42.0491 0x0df4 [ 3B197AF0FFF08AA66B6B2241CA538D64, BC94E5EFF38B9C6A37717B2A6CA56679781A4872A0C4298056E074033571BE79 ] WUDFRd C:\Windows\system32\DRIVERS\WUDFRd.sys 19:56:42.0538 0x0df4 WUDFRd - ok 19:56:42.0569 0x0df4 [ B551D6637AA0E132C18AC6E504F7B79B, FA6495533A14E01ABB0F6689AB7503B1B439D3ADA7457DFCB7D81714A9817327 ] wudfsvc C:\Windows\System32\WUDFSvc.dll 19:56:42.0663 0x0df4 wudfsvc - ok 19:56:42.0694 0x0df4 [ 9A3452B3C2A46C073166C5CF49FAD1AE, D6F95F51D8E37BA4CF403965EC08CCFEEA9EEFDBFC7752432EAEC19925BDA115 ] WwanSvc C:\Windows\System32\wwansvc.dll 19:56:42.0803 0x0df4 WwanSvc - ok 19:56:42.0881 0x0df4 [ 50A2F5C3218D3EEF7CA407EC35D0C466, 6B67E04D0D42CB44C0994157556ADE064B861B8DD8E9D15C71DBC47CC9201A88 ] YMIDUSBW C:\Windows\system32\drivers\ymidusbx64.sys 19:56:42.0912 0x0df4 YMIDUSBW - ok 19:56:42.0959 0x0df4 ================ Scan global =============================== 19:56:42.0975 0x0df4 [ BA0CD8C393E8C9F83354106093832C7B, 18D8A4780A2BAA6CEF7FBBBDA0EF6BF2DADF146E1E578A618DD5859E8ADBF1A8 ] C:\Windows\system32\basesrv.dll 19:56:43.0022 0x0df4 [ 0CB6EBF4B461A6043353C570BD72A1E1, B6DA0AE56A7DC373F60CA1EF69E4D55E6F2EEB0D62AB78D555C5F85EB389A356 ] C:\Windows\system32\winsrv.dll 19:56:43.0053 0x0df4 [ 0CB6EBF4B461A6043353C570BD72A1E1, B6DA0AE56A7DC373F60CA1EF69E4D55E6F2EEB0D62AB78D555C5F85EB389A356 ] C:\Windows\system32\winsrv.dll 19:56:43.0115 0x0df4 [ D6160F9D869BA3AF0B787F971DB56368, 0033E6212DD8683E4EE611B290931FDB227B4795F0B17C309DC686C696790529 ] C:\Windows\system32\sxssrv.dll 19:56:43.0178 0x0df4 [ 24ACB7E5BE595468E3B9AA488B9B4FCB, 63541E3432FCE953F266AE553E7A394978D6EE3DB52388D885F668CF42C5E7E2 ] C:\Windows\system32\services.exe 19:56:43.0193 0x0df4 [ Global ] - ok 19:56:43.0193 0x0df4 ================ Scan MBR ================================== 19:56:43.0209 0x0df4 [ 5B5E648D12FCADC244C1EC30318E1EB9 ] \Device\Harddisk0\DR0 19:56:44.0316 0x0df4 \Device\Harddisk0\DR0 - ok 19:56:44.0332 0x0df4 ================ Scan VBR ================================== 19:56:44.0332 0x0df4 [ 2734A11BD708D4F947F4E276BB99261B ] \Device\Harddisk0\DR0\Partition1 19:56:44.0363 0x0df4 \Device\Harddisk0\DR0\Partition1 - ok 19:56:44.0379 0x0df4 [ ADD3F0948E81802E6B26279DE618890D ] \Device\Harddisk0\DR0\Partition2 19:56:44.0379 0x0df4 \Device\Harddisk0\DR0\Partition2 - ok 19:56:44.0426 0x0df4 [ 87C47A5F2C91CD72615DA26B8047DA0E ] \Device\Harddisk0\DR0\Partition3 19:56:44.0441 0x0df4 \Device\Harddisk0\DR0\Partition3 - ok 19:56:44.0441 0x0df4 ================ Scan generic autorun ====================== 19:56:44.0582 0x0df4 [ DDEC2BDBFE60FB73FA99BCF0FA77E249, 069333D9FAC91BEC3E33E34DD1ECE46761B7EB6E71CA8BE0F3200E2A72FB8219 ] C:\Program Files (x86)\Toshiba TEMPRO\TemproTray.exe 19:56:44.0628 0x0df4 Toshiba TEMPRO - ok 19:56:44.0675 0x0df4 [ C2CB5FA5A2CD4ECEE5058BA93772827C, 422A28A02B38C088F89814F455235006619A5755D1CC3112914924031697451E ] C:\Windows\system32\igfxtray.exe 19:56:44.0706 0x0df4 IgfxTray - ok 19:56:44.0738 0x0df4 [ 62E271FFE392797CAD6F431FFD61459B, 9A1ECB412ED4F2B33A64DF182BFA916DA063511F78C0A83520451677D3872C3C ] C:\Windows\system32\hkcmd.exe 19:56:44.0753 0x0df4 HotKeysCmds - ok 19:56:44.0847 0x0df4 [ D02EA28477DE45A7449914025AFED69C, 7DA7D0C77E63FA0964153CE9F81E7B05CF202F50D8853B5B8D4949E5D7D9B27D ] C:\Windows\system32\igfxpers.exe 19:56:44.0878 0x0df4 Persistence - ok 19:56:45.0627 0x0df4 [ EF8152CC98AFB4C40F10C2070C278AFB, E4C16E22E21F68C566A5E6CB7DBA712123F03FDD1DFEE456B3DD8CAFAF65C3EA ] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe 19:56:45.0861 0x0df4 RtHDVCpl - ok 19:56:45.0861 0x0df4 SynTPEnh - ok 19:56:45.0970 0x0df4 [ 774F8F7128D2236A044E943E0E20F8BA, 85A5CBA8132EE2BED1690C9A5C86A6155506E3A3A59F3D43CDBEDF1415749088 ] C:\Program Files\TOSHIBA\Power Saver\TPwrMain.EXE 19:56:46.0001 0x0df4 TPwrMain - ok 19:56:46.0064 0x0df4 [ A62882F40163F1262808E380DB5FED69, 22AB7D89C5C625F7EC8239E8C32868625A459C79A8B6B37B8ADD184597BCA676 ] C:\Program Files\TOSHIBA\TBS\HSON.exe 19:56:46.0095 0x0df4 HSON - ok 19:56:46.0173 0x0df4 [ FBDAF289E686A28B249E251FEE6F46BA, 95D39320EB317F0AAFBDF072CB8C413EA675D803424324514CDC4CD283B5F7B5 ] C:\Program Files\Toshiba\SmoothView\SmoothView.exe 19:56:46.0204 0x0df4 SmoothView - ok 19:56:46.0344 0x0df4 [ 32F848093F4E8FFDFC1C9CCC37D4A312, 645077FADA66D3B19B7E1B18C27FEFFCD3115AD3B48AD2DC6019416120E15120 ] C:\Program Files\TOSHIBA\FlashCards\TCrdMain.exe 19:56:46.0360 0x0df4 00TCrdMain - ok 19:56:46.0500 0x0df4 [ F43866FC6EC7513A84555F21B9C11A87, E748CDD3ABC5AC1753E1DCBEBB9617E246BA4338E0D24B7A01F986C48F808F69 ] C:\Program Files\TOSHIBA\TECO\Teco.exe 19:56:46.0532 0x0df4 Teco - ok 19:56:46.0578 0x0df4 [ F9EF20F6FDA1444C0864BD7AEDC10CAF, E6A18BD7200E7DE7599753DA27469AEC479A315931956D457547F243FCB92C2A ] C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosWaitSrv.exe 19:56:46.0594 0x0df4 TosSENotify - ok 19:56:46.0610 0x0df4 ThpSrv - ok 19:56:46.0734 0x0df4 [ B62AD7FF7F3E4AF9BA397230CFBA4354, 25B10D7D0D6A27930F6ED7781B7437DE945D7F2C9E7E05188399C9868162F862 ] C:\Program Files\TOSHIBA\TPHM\TosWaitSrv.exe 19:56:46.0797 0x0df4 TosWaitSrv - ok 19:56:46.0844 0x0df4 [ F82483A80D49ACCA81193A294FB233CD, 7EEA9E7F62A92AD98569B1A4F4809D91D7ED671821A738EB75BC6E469DB44494 ] C:\Program Files\TOSHIBA\TosVolRegulator\TosVolRegulator.exe 19:56:46.0875 0x0df4 TosVolRegulator - ok 19:56:46.0968 0x0df4 [ 104A28EA683C17D5470B3934D158142D, 286E7AF73C94D5CCD9F84C83C5343F385290D786D130701C367E56D5681A751C ] C:\Program Files\Toshiba\Registration\ToshibaReminder.exe 19:56:47.0015 0x0df4 Toshiba Registration - ok 19:56:47.0124 0x0df4 [ 80A02F5ADDDF2D615B85A4F19424DCBB, BBAC2A551CE02625FD7F3944D4EBDC7EF5C9F2C9D698449D77695C2B1DC1CE45 ] c:\Program Files (x86)\Nero\Nero BackItUp & Burn\Nero BackItUp\NBAgent.exe 19:56:47.0156 0x0df4 NBAgent - ok 19:56:47.0234 0x0df4 [ CE7648AF53E26CEB484F54866F195328, 0A9A563A83296A54EE3DD7AD8EB2FC6B50E329439C367B506592147214C0AA0E ] C:\Program Files (x86)\TOSHIBA\PasswordUtility\TOSDCR.exe 19:56:47.0265 0x0df4 TOSDCR - ok 19:56:47.0421 0x0df4 [ A1E0EC8153762B44881EACE2B8FCE14F, C1E8A00184AADC37A5D02899D3EFDE02BD1B5412D9D9B0A96450C5A29E91071F ] C:\Program Files (x86)\TOSHIBA\TOSHIBA Web Camera Application\TWebCamera.exe 19:56:47.0577 0x0df4 TWebCamera - ok 19:56:47.0624 0x0df4 [ B9FBE2C4DE9A72E8997697C8D5CAD009, EF2F8C2D4AE2D45232C97D60734B398E3EC59245702F4B5D3D7E5077DBF83B1D ] C:\Program Files (x86)\TOSHIBA\Bluetooth Toshiba Stack\ItSecMng.exe 19:56:47.0639 0x0df4 ITSecMng - ok 19:56:47.0702 0x0df4 [ 55AEB735E6B471C238F565339A63DB12, DD8547A4FE31DD35F46A16DA04B73655B6A865E7ED1EC7B3B93CE62C68465136 ] C:\Program Files (x86)\TOSHIBA\TOSHIBA Sleep Utility\TSleepSrv.exe 19:56:47.0717 0x0df4 TSleepSrv - ok 19:56:47.0811 0x0df4 [ 61E4289E91E88C90478D7F4BEB10DCF7, 1D0F4034E0111CF5758F470C15A22A0A28EB8269CB5BF07222C9C0FB07A15C55 ] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe 19:56:47.0826 0x0df4 APSDaemon - ok 19:56:47.0967 0x0df4 [ 38D198A2DD54A67120040566A38103BA, 01604BD91A5B2C0DDC7B52036511F8219952626716E75979D8464F2C56BA0114 ] C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe 19:56:47.0998 0x0df4 GrooveMonitor - ok 19:56:48.0185 0x0df4 [ 69E6AA230410AF75DE5C81B77C63BBDF, 56D6B2823695EA116FBEB3F3F49FC1023359528BF6377069D7E320EC28AE6561 ] C:\Program Files (x86)\AVG\Framework\Common\avguix.exe 19:56:48.0216 0x0df4 AvgUi - ok 19:56:48.0528 0x0df4 [ BB1597F99D85047CC586F58C5C72A552, 788392F22ABA3131EE1250AF3237205D6D5E2E0E3E1A6C492E82F936B6FCE272 ] C:\Program Files (x86)\AVG\Av\avgui.exe 19:56:48.0622 0x0df4 AVG_UI - ok 19:56:48.0747 0x0df4 [ EA6EADF6314E43783BA8EEE79F93F73C, 1A4BC2D8DFBDC37AF85C73DEE76A6EE901EBA188D43856BD2FFA96B79A126F73 ] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe 19:56:48.0872 0x0df4 Sidebar - ok 19:56:48.0918 0x0df4 [ 0FA760BF380B08D0B67B5507CD8B32AA, 0F73A7F64C4FDAB98CD3A865CC54B3A7195761530FCB115B725CC5A9FB738739 ] C:\Windows\System32\mctadmin.exe 19:56:48.0996 0x0df4 mctadmin - ok 19:56:49.0106 0x0df4 [ EA6EADF6314E43783BA8EEE79F93F73C, 1A4BC2D8DFBDC37AF85C73DEE76A6EE901EBA188D43856BD2FFA96B79A126F73 ] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe 19:56:49.0152 0x0df4 Sidebar - ok 19:56:49.0184 0x0df4 [ 0FA760BF380B08D0B67B5507CD8B32AA, 0F73A7F64C4FDAB98CD3A865CC54B3A7195761530FCB115B725CC5A9FB738739 ] C:\Windows\System32\mctadmin.exe 19:56:49.0199 0x0df4 mctadmin - ok 19:56:49.0308 0x0df4 [ C96D49795967999AD07E16BE27D8AC74, 1F72425A7003503944257BE3DE94211A8DFCF7D18A45D64FB3F2434B93680CB9 ] C:\Program Files (x86)\ICQ7.6\ICQ.exe 19:56:49.0324 0x0df4 ICQ - ok 19:56:49.0683 0x0df4 [ F73154E180105822A5F9B755BA933737, 1CD775B6CE3736A70EC5FC7A6B77A2FEDA70D59B49A66046CC20B341005501D9 ] C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe 19:56:49.0839 0x0df4 DAEMON Tools Lite - ok 19:56:50.0088 0x0df4 [ 05973FB5F863CDB65852D88ADB383A33, BD10E37E9B42D03719AA4FE595F44FEB75E0D598E7E36480506AF18D8236F21F ] C:\Program Files (x86)\TOSHIBA\TOSHIBA Online Product Information\topi.exe 19:56:50.0307 0x0df4 TOSHIBA Online Product Information - ok 19:56:50.0619 0x0df4 [ 8F4CD393FF165E8952D2D0AE3CF25C79, 32C328A11263495CCD20C4A4B3776675C9094609C0FFCCF740772BAAE85AC7F6 ] C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe 19:56:50.0822 0x0df4 msnmsgr - ok 19:56:50.0946 0x0df4 [ 9ACCBC5891BA51B5B29C1A88F80D4CE3, 4EA3D9CB239874232AE0D7F824AF8CC7AD9BB4657CB9978B41067B4447FBE71B ] C:\Program Files (x86)\QuickTime\QTTask.exe 19:56:50.0993 0x0df4 QuickTime Task - detected UnsignedFile.Multi.Generic ( 1 ) 19:56:53.0442 0x0df4 Detect skipped due to KSN trusted 19:56:53.0442 0x0df4 QuickTime Task - ok 19:56:53.0676 0x0df4 [ 0C8DF37F3FD61129F84F60415552D37D, ACA23775E956F49F70C1AE0991D695D1A0A874C1176D655E7B45D43E469109FA ] C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_18_0_0_160_ActiveX.exe 19:56:53.0739 0x0df4 FlashPlayerUpdate - ok 19:56:53.0739 0x0df4 Waiting for KSN requests completion. In queue: 149 19:56:54.0753 0x0df4 Waiting for KSN requests completion. In queue: 149 19:56:55.0455 0x1698 Object required for P2P: [ C8757FB7C986181F1A7D29B0FE5F20E2 ] TuneUp.UtilitiesSvc 19:56:55.0767 0x0df4 Waiting for KSN requests completion. In queue: 106 19:56:56.0781 0x0df4 Waiting for KSN requests completion. In queue: 105 19:56:57.0795 0x0df4 Waiting for KSN requests completion. In queue: 105 19:56:57.0982 0x1698 Object send P2P result: true 19:56:58.0949 0x0df4 AV detected via SS2: Kaspersky Internet Security, C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\wmiav.exe ( 15.0.1.415 ), 0x40000 ( disabled : updated ) 19:56:58.0965 0x0df4 AV detected via SS2: AVG AntiVirus, C:\Program Files (x86)\AVG\Av\avgwsc.exe ( 16.7.0.7227 ), 0x41000 ( enabled : updated ) 19:56:58.0996 0x0df4 FW detected via SS2: Kaspersky Internet Security, C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\wmifw.exe ( 15.0.1.415 ), 0x40010 ( disabled ) 19:56:59.0027 0x0df4 Win FW state via NFP2: enabled ( trusted ) 19:57:01.0523 0x0df4 ============================================================ 19:57:01.0523 0x0df4 Scan finished 19:57:01.0523 0x0df4 ============================================================ 19:57:01.0523 0x0ae4 Detected object count: 0 19:57:01.0523 0x0ae4 Actual detected object count: 0 |
16.11.2015, 00:35 | #9 |
/// the machine /// TB-Ausbilder | Win7: Programme/Dienste lassen sich nicht starten + Help_Decrypt Befall erstmal nicht. Scan mit Combofix
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
16.11.2015, 02:20 | #10 |
| Win7: Programme/Dienste lassen sich nicht starten + Help_Decrypt Befall ComboFix.txt: Code:
ATTFilter ComboFix 15-11-15.01 - DJ Dolphin 16.11.2015 2:29.1.4 - x64 Microsoft Windows 7 Home Premium 6.1.7600.0.1252.49.1031.18.3824.1775 [GMT 2:00] ausgeführt von:: c:\users\DJ Dolphin\Desktop\ComboFix.exe AV: AVG AntiVirus *Disabled/Updated* {4D41356F-32AD-7C42-C820-63775EE4F413} AV: Kaspersky Internet Security *Disabled/Updated* {179979E8-273D-D14E-0543-2861940E4886} FW: Kaspersky Internet Security *Disabled* {2FA2F8CD-6D52-D016-2E1C-81546ADD0FFD} SP: AVG AntiVirus *Disabled/Updated* {F620D48B-1497-73CC-F290-58052563BEAE} SP: Kaspersky Internet Security *Disabled/Updated* {ACF8980C-0107-DEC0-3FF3-1313EF89023B} SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} . . (((((((((((((((((((((((((((((((((((( Weitere Löschungen )))))))))))))))))))))))))))))))))))))))))))))))) . . c:\programdata\pmt_0piot.pad c:\users\DJ Dolphin\AppData\Roaming\88d3ec48.exe . . ((((((((((((((((((((((((((((((((((((((( Treiber/Dienste ))))))))))))))))))))))))))))))))))))))))))))))))) . . -------\Service_DCService.exe . . ((((((((((((((((((((((( Dateien erstellt von 2015-10-16 bis 2015-11-16 )))))))))))))))))))))))))))))) . . 2015-11-16 00:40 . 2015-11-16 00:40 -------- d-----w- c:\users\Gast\AppData\Local\temp 2015-11-16 00:40 . 2015-11-16 00:40 -------- d-----w- c:\users\Default\AppData\Local\temp 2015-11-16 00:40 . 2015-11-16 00:40 -------- d-----w- c:\windows\system32\config\systemprofile\AppData\Local\temp 2015-11-15 16:54 . 2015-10-20 01:33 11140960 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{10223B6C-48AF-456D-80FB-84FAAB7B8FA8}\mpengine.dll 2015-11-15 16:03 . 2015-11-16 00:45 -------- d-----w- c:\programdata\Malwarebytes' Anti-Malware (portable) 2015-11-15 16:01 . 2015-11-15 16:51 109272 ----a-w- c:\windows\system32\drivers\mbamchameleon.sys 2015-11-15 06:59 . 2015-11-15 15:43 -------- d-----w- C:\FRST 2015-11-13 02:07 . 2015-11-13 15:05 -------- d-----w- C:\88d3ec48 2015-11-04 17:16 . 2015-11-04 17:16 -------- d-----w- c:\users\Default\AppData\Roaming\TuneUp Software 2015-10-21 14:16 . 2015-10-21 14:16 284080 ----a-w- c:\windows\system32\drivers\avgldx64.sys 2015-10-21 14:15 . 2015-10-21 14:15 255408 ----a-w- c:\windows\system32\drivers\avgmfx64.sys 2015-10-19 23:17 . 2015-10-14 09:05 45992 ----a-w- c:\windows\system32\TURegOpt.exe 2015-10-19 23:17 . 2015-10-14 08:59 37288 ----a-w- c:\windows\system32\authuitu.dll 2015-10-19 23:17 . 2015-10-14 08:59 32680 ----a-w- c:\windows\SysWow64\authuitu.dll 2015-10-19 06:03 . 2015-10-19 06:03 313776 ----a-w- c:\windows\system32\drivers\avgidsdrivera.sys 2015-10-18 03:14 . 2015-10-19 23:16 -------- d-----w- c:\users\DJ Dolphin\AppData\Roaming\AVG 2015-10-18 03:13 . 2015-10-18 03:13 -------- d-----w- c:\program files\Common Files\AV 2015-10-18 03:13 . 2015-10-18 03:13 -------- d-----w- c:\users\DJ Dolphin\AppData\Roaming\TuneUp Software 2015-10-18 03:11 . 2015-11-13 02:09 -------- d-----w- C:\$AVG 2015-10-18 03:06 . 2015-10-18 03:13 -------- d-----w- c:\windows\system32\config\systemprofile\AppData\Local\Avg 2015-10-18 03:04 . 2015-11-13 03:12 -------- d-----w- c:\programdata\Avg 2015-10-18 03:04 . 2015-10-19 23:16 -------- d-----w- c:\program files (x86)\AVG 2015-10-18 02:59 . 2015-11-04 17:14 -------- d-----w- c:\users\DJ Dolphin\AppData\Local\Avg 2015-10-18 02:58 . 2015-11-15 23:27 -------- d-----w- c:\programdata\MFAData 2015-10-18 02:58 . 2015-10-18 02:58 -------- d--h--w- c:\programdata\Common Files 2015-10-18 02:58 . 2015-10-18 02:58 -------- d-----w- c:\users\DJ Dolphin\AppData\Local\MFAData 2015-10-18 02:19 . 2015-10-18 02:20 -------- d-----w- C:\inetpub . . . (((((((((((((((((((((((((((((((((((( Find3M Bericht )))))))))))))))))))))))))))))))))))))))))))))))))))))) . 2015-10-08 05:46 . 2015-10-08 05:46 302000 ----a-w- c:\windows\system32\drivers\avgtdia.sys 2015-08-20 11:58 . 2015-08-20 11:58 298416 ----a-w- c:\windows\system32\drivers\avgidsha.sys . . (((((((((((((((((((((((((((( Autostartpunkte der Registrierung )))))))))))))))))))))))))))))))))))))))) . . *Hinweis* leere Einträge & legitime Standardeinträge werden nicht angezeigt. REGEDIT4 . [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "ICQ"="c:\program files (x86)\ICQ7.6\ICQ.exe" [2011-10-10 127040] "DAEMON Tools Lite"="c:\program files (x86)\DAEMON Tools Lite\DTLite.exe" [2014-03-04 3696912] . [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run] "NBAgent"="c:\program files (x86)\Nero\Nero BackItUp & Burn\Nero BackItUp\NBAgent.exe" [2010-03-09 1086760] "TOSDCR"="c:\program files (x86)\TOSHIBA\PasswordUtility\TOSDCR.exe" [2007-08-28 169296] "TWebCamera"="c:\program files (x86)\TOSHIBA\TOSHIBA Web Camera Application\TWebCamera.exe" [2010-05-01 2454840] "ITSecMng"="c:\program files (x86)\TOSHIBA\Bluetooth Toshiba Stack\ItSecMng.exe" [2009-07-22 83336] "TSleepSrv"="c:\program files (x86)\TOSHIBA\TOSHIBA Sleep Utility\TSleepSrv.exe" [2010-04-01 252728] "APSDaemon"="c:\program files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" [2013-04-21 59720] "GrooveMonitor"="c:\program files (x86)\Microsoft Office\Office12\GrooveMonitor.exe" [2006-10-26 31016] "AvgUi"="c:\program files (x86)\AVG\Framework\Common\avguix.exe" [2015-10-16 1130408] "AVG_UI"="c:\program files (x86)\AVG\Av\avgui.exe" [2015-10-30 3826600] . [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run] "TOSHIBA Online Product Information"="c:\program files (x86)\TOSHIBA\TOSHIBA Online Product Information\topi.exe" [2010-03-03 4581280] . c:\users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\ TRDCReminder.lnk - c:\program files (x86)\TOSHIBA\TRDCReminder\TRDCReminder.exe [2009-9-1 481184] . [HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system] "ConsentPromptBehaviorAdmin"= 5 (0x5) "ConsentPromptBehaviorUser"= 3 (0x3) "EnableUIADesktopToggle"= 0 (0x0) "EnableLinkedConnections"= 1 (0x1) . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\drivers32] "aux3"=wdmaud.drv . [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS] @="" . [HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\run-] "Mirabilis ICQ"=c:\program files (x86)\ICQ\ICQNet.exe "Adobe Reader Speed Launcher"="c:\program files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe" "Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" "QuickTime Task"="c:\program files (x86)\QuickTime\QTTask.exe" -atboottime "SunJavaUpdateSched"="c:\program files (x86)\Common Files\Java\Java Update\jusched.exe" "Codec Settings UAC Manager"="c:\windows\system32\Codecs\CodecUACManager.exe" . [HKEY_LOCAL_MACHINE\software\microsoft\security center] "AntiVirusOverride"=dword:00000001 "FirewallOverride"=dword:00000001 . R3 AvgAMPS;AvgAMPS;c:\program files (x86)\AVG\Av\avgamps.exe;c:\program files (x86)\AVG\Av\avgamps.exe [x] R3 ew_hwusbdev;Huawei MobileBroadband USB PNP Device;c:\windows\system32\DRIVERS\ew_hwusbdev.sys;c:\windows\SYSNATIVE\DRIVERS\ew_hwusbdev.sys [x] R3 ewusbnet;HUAWEI USB-NDIS miniport;c:\windows\system32\DRIVERS\ewusbnet.sys;c:\windows\SYSNATIVE\DRIVERS\ewusbnet.sys [x] R3 nusb3hub;NEC Electronics USB 3.0 Hub Driver;c:\windows\system32\DRIVERS\nusb3hub.sys;c:\windows\SYSNATIVE\DRIVERS\nusb3hub.sys [x] R3 nusb3xhc;NEC Electronics USB 3.0 Host Controller Driver;c:\windows\system32\DRIVERS\nusb3xhc.sys;c:\windows\SYSNATIVE\DRIVERS\nusb3xhc.sys [x] R3 TemproMonitoringService;Notebook Performance Tuning Service (TEMPRO);c:\program files (x86)\Toshiba TEMPRO\TemproSvc.exe;c:\program files (x86)\Toshiba TEMPRO\TemproSvc.exe [x] R3 TMachInfo;TMachInfo;c:\program files (x86)\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe;c:\program files (x86)\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe [x] R3 YMIDUSBW;Yamaha USB-MIDI Driver (WDM);c:\windows\system32\drivers\ymidusbx64.sys;c:\windows\SYSNATIVE\drivers\ymidusbx64.sys [x] S0 AVGIDSHA;AVGIDSHA;c:\windows\system32\DRIVERS\avgidsha.sys;c:\windows\SYSNATIVE\DRIVERS\avgidsha.sys [x] S0 Avgloga;AVG Logging Driver;c:\windows\system32\DRIVERS\avgloga.sys;c:\windows\SYSNATIVE\DRIVERS\avgloga.sys [x] S0 Avgmfx64;AVG Mini-Filter Resident Anti-Virus Shield;c:\windows\system32\DRIVERS\avgmfx64.sys;c:\windows\SYSNATIVE\DRIVERS\avgmfx64.sys [x] S0 Avgrkx64;AVG Anti-Rootkit Driver;c:\windows\system32\DRIVERS\avgrkx64.sys;c:\windows\SYSNATIVE\DRIVERS\avgrkx64.sys [x] S0 cm_km_w;Kaspersky Lab Crypto Module (FDE PDK);c:\windows\system32\DRIVERS\cm_km_w.sys;c:\windows\SYSNATIVE\DRIVERS\cm_km_w.sys [x] S0 Thpdrv;TOSHIBA HDD Protection Driver;c:\windows\system32\DRIVERS\thpdrv.sys;c:\windows\SYSNATIVE\DRIVERS\thpdrv.sys [x] S0 Thpevm;TOSHIBA HDD Protection - Shock Sensor Driver;c:\windows\system32\DRIVERS\Thpevm.SYS;c:\windows\SYSNATIVE\DRIVERS\Thpevm.SYS [x] S1 Avgdiska;AVG Disk Driver;c:\windows\system32\DRIVERS\avgdiska.sys;c:\windows\SYSNATIVE\DRIVERS\avgdiska.sys [x] S1 AVGIDSDriver;AVGIDSDriver;c:\windows\system32\DRIVERS\avgidsdrivera.sys;c:\windows\SYSNATIVE\DRIVERS\avgidsdrivera.sys [x] S1 Avgldx64;AVG AVI Loader Driver;c:\windows\system32\DRIVERS\avgldx64.sys;c:\windows\SYSNATIVE\DRIVERS\avgldx64.sys [x] S1 Avgtdia;AVG TDI Driver;c:\windows\system32\DRIVERS\avgtdia.sys;c:\windows\SYSNATIVE\DRIVERS\avgtdia.sys [x] S1 dtsoftbus01;DAEMON Tools Virtual Bus Driver;c:\windows\system32\DRIVERS\dtsoftbus01.sys;c:\windows\SYSNATIVE\DRIVERS\dtsoftbus01.sys [x] S1 klhk;klhk;c:\windows\system32\DRIVERS\klhk.sys;c:\windows\SYSNATIVE\DRIVERS\klhk.sys [x] S1 KLIM6;Kaspersky Anti-Virus NDIS 6 Filter;c:\windows\system32\DRIVERS\klim6.sys;c:\windows\SYSNATIVE\DRIVERS\klim6.sys [x] S1 klpd;klpd;c:\windows\system32\DRIVERS\klpd.sys;c:\windows\SYSNATIVE\DRIVERS\klpd.sys [x] S1 kltdi;kltdi;c:\windows\system32\DRIVERS\kltdi.sys;c:\windows\SYSNATIVE\DRIVERS\kltdi.sys [x] S1 Klwtp;Klwtp;c:\windows\system32\DRIVERS\klwtp.sys;c:\windows\SYSNATIVE\DRIVERS\klwtp.sys [x] S1 kneps;kneps;c:\windows\system32\DRIVERS\kneps.sys;c:\windows\SYSNATIVE\DRIVERS\kneps.sys [x] S2 AVGIDSAgent;AVGIDSAgent;c:\program files (x86)\AVG\Av\avgidsagent.exe;c:\program files (x86)\AVG\Av\avgidsagent.exe [x] S2 avgsvc;AVG Service;c:\program files (x86)\AVG\Framework\Common\avgsvca.exe;c:\program files (x86)\AVG\Framework\Common\avgsvca.exe [x] S2 avgwd;AVG WatchDog;c:\program files (x86)\AVG\Av\avgwdsvcx.exe;c:\program files (x86)\AVG\Av\avgwdsvcx.exe [x] S2 AVP15.0.1;Kaspersky Anti-Virus Service 15.0.1;c:\program files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\avp.exe;c:\program files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\avp.exe [x] S2 cfWiMAXService;ConfigFree WiMAX Service;c:\program files (x86)\TOSHIBA\ConfigFree\CFIWmxSvcs64.exe;c:\program files (x86)\TOSHIBA\ConfigFree\CFIWmxSvcs64.exe [x] S2 ConfigFree Service;ConfigFree Service;c:\program files (x86)\TOSHIBA\ConfigFree\CFSvcs.exe;c:\program files (x86)\TOSHIBA\ConfigFree\CFSvcs.exe [x] S2 kldisk;kldisk;c:\windows\system32\DRIVERS\kldisk.sys;c:\windows\SYSNATIVE\DRIVERS\kldisk.sys [x] S2 risdpcie;risdpcie;c:\windows\system32\DRIVERS\risdpe64.sys;c:\windows\SYSNATIVE\DRIVERS\risdpe64.sys [x] S2 TOSHIBA eco Utility Service;TOSHIBA eco Utility Service;c:\program files\TOSHIBA\TECO\TecoService.exe;c:\program files\TOSHIBA\TECO\TecoService.exe [x] S2 TuneUp.UtilitiesSvc;AVG PC TuneUp Service;c:\program files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesService64.exe;c:\program files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesService64.exe [x] S2 TVALZFL;TOSHIBA ACPI-Based Value Added Logical and General Purpose Device Filter Driver;c:\windows\system32\DRIVERS\TVALZFL.sys;c:\windows\SYSNATIVE\DRIVERS\TVALZFL.sys [x] S2 UNS;Intel(R) Management & Security Application User Notification Service;c:\program files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe;c:\program files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [x] S3 e1kexpress;Intel(R) PRO/1000 PCI Express Network Connection Driver K;c:\windows\system32\DRIVERS\e1k62x64.sys;c:\windows\SYSNATIVE\DRIVERS\e1k62x64.sys [x] S3 HECIx64;Intel(R) Management Engine Interface;c:\windows\system32\DRIVERS\HECIx64.sys;c:\windows\SYSNATIVE\DRIVERS\HECIx64.sys [x] S3 huawei_enumerator;huawei_enumerator;c:\windows\system32\DRIVERS\ew_jubusenum.sys;c:\windows\SYSNATIVE\DRIVERS\ew_jubusenum.sys [x] S3 Impcd;Impcd;c:\windows\system32\DRIVERS\Impcd.sys;c:\windows\SYSNATIVE\DRIVERS\Impcd.sys [x] S3 IntcDAud;Intel(R) Display-Audio;c:\windows\system32\DRIVERS\IntcDAud.sys;c:\windows\SYSNATIVE\DRIVERS\IntcDAud.sys [x] S3 klflt;Kaspersky Lab Kernel DLL;c:\windows\system32\DRIVERS\klflt.sys;c:\windows\SYSNATIVE\DRIVERS\klflt.sys [x] S3 klkbdflt;Kaspersky Lab KLKBDFLT;c:\windows\system32\DRIVERS\klkbdflt.sys;c:\windows\SYSNATIVE\DRIVERS\klkbdflt.sys [x] S3 klmouflt;Kaspersky Lab KLMOUFLT;c:\windows\system32\DRIVERS\klmouflt.sys;c:\windows\SYSNATIVE\DRIVERS\klmouflt.sys [x] S3 PGEffect;Pangu effect driver;c:\windows\system32\DRIVERS\pgeffect.sys;c:\windows\SYSNATIVE\DRIVERS\pgeffect.sys [x] S3 TOSHIBA HDD SSD Alert Service;TOSHIBA HDD SSD Alert Service;c:\program files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe;c:\program files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe [x] S3 TPCHSrv;TPCH Service;c:\program files\TOSHIBA\TPHM\TPCHSrv.exe;c:\program files\TOSHIBA\TPHM\TPCHSrv.exe [x] S3 TuneUpUtilitiesDrv;TuneUpUtilitiesDrv;c:\program files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesDriver64.sys;c:\program files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesDriver64.sys [x] . . --- Andere Dienste/Treiber im Speicher --- . *NewlyCreated* - WS2IFSL . Inhalt des "geplante Tasks" Ordners . 2015-11-16 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job - c:\program files (x86)\Google\Update\GoogleUpdate.exe [2011-08-01 05:27] . 2015-11-16 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job - c:\program files (x86)\Google\Update\GoogleUpdate.exe [2011-08-01 05:27] . . --------- X64 Entries ----------- . . [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "ThpSrv"="c:\windows\system32\thpsrv" [X] "Toshiba TEMPRO"="c:\program files (x86)\Toshiba TEMPRO\TemproTray.exe" [2010-05-11 1050072] "IgfxTray"="c:\windows\system32\igfxtray.exe" [2010-05-11 161304] "HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2010-05-11 386584] "Persistence"="c:\windows\system32\igfxpers.exe" [2010-05-11 414744] "RtHDVCpl"="c:\program files\Realtek\Audio\HDA\RAVCpl64.exe" [2010-04-06 10144288] "TPwrMain"="c:\program files\TOSHIBA\Power Saver\TPwrMain.EXE" [2010-05-25 505768] "HSON"="c:\program files\TOSHIBA\TBS\HSON.exe" [2009-03-09 52600] "SmoothView"="c:\program files\Toshiba\SmoothView\SmoothView.exe" [2009-08-13 570680] "00TCrdMain"="c:\program files\TOSHIBA\FlashCards\TCrdMain.exe" [2010-05-10 915320] "Teco"="c:\program files\TOSHIBA\TECO\Teco.exe" [2010-04-23 1504608] "TosSENotify"="c:\program files\TOSHIBA\TOSHIBA HDD SSD Alert\TosWaitSrv.exe" [2010-02-05 709976] "TosWaitSrv"="c:\program files\TOSHIBA\TPHM\TosWaitSrv.exe" [2010-05-10 705432] "TosVolRegulator"="c:\program files\TOSHIBA\TosVolRegulator\TosVolRegulator.exe" [2009-11-11 24376] "Toshiba Registration"="c:\program files\Toshiba\Registration\ToshibaReminder.exe" [2010-04-19 136136] . ------- Zusätzlicher Suchlauf ------- . uLocal Page = c:\windows\system32\blank.htm mStart Page = hxxp://www.google.com mLocal Page = c:\windows\SysWOW64\blank.htm IE: Nach Microsoft &Excel exportieren - c:\progra~2\MICROS~4\Office10\EXCEL.EXE/3000 IE: Nach Microsoft E&xel exportieren - c:\progra~2\MICROS~4\Office12\EXCEL.EXE/3000 IE: {{7644E42D-B096-457F-8B5B-901238FC81AE} - c:\program files (x86)\ICQ7.6\ICQ.exe IE: {{09A10376-994C-4BBF-9121-F50CF7BA237E} - {F2A56BFE-7911-451A-BC74-A9C3C2E95126} - c:\program files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\IEExt\ie_plugin.dll Trusted Zone: clonewarsadventures.com Trusted Zone: freerealms.com Trusted Zone: soe.com Trusted Zone: sony.com TCP: DhcpNameServer = 192.168.178.1 TCP: Interfaces\{008C72E9-AED1-42EC-AC7B-44109F03D9B3}: NameServer = 193.189.244.225 193.189.244.206 TCP: Interfaces\{01A8C316-0DD0-450A-8546-EC410E51E72E}: NameServer = 193.189.244.225 193.189.244.206 FF - ProfilePath - c:\users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\ FF - prefs.js: browser.search.selectedEngine - FileConverter 1.3 Customized Web Search FF - prefs.js: browser.startup.homepage - hxxp://search.conduit.com/?CUI=UN86327238471420886&ctid=CT3241949&SearchSource=13 FF - prefs.js: keyword.URL - hxxp://trovi.com/ResultsExt.aspx?ctid=CT3241949&SearchSource=2&CUI=UN86327238471420886&UM=false&q= FF - prefs.js: network.proxy.type - 0 FF - user.js: network.cookie.cookieBehavior - 0 FF - user.js: privacy.clearOnShutdown.cookies - false FF - user.js: security.warn_viewing_mixed - false FF - user.js: security.warn_viewing_mixed.show_once - false FF - user.js: security.warn_submit_insecure - false FF - user.js: security.warn_submit_insecure.show_once - false . - - - - Entfernte verwaiste Registrierungseinträge - - - - . Toolbar-Locked - (no file) Toolbar-Locked - (no file) HKLM-Run-SynTPEnh - c:\program files (x86)\Synaptics\SynTP\SynTPEnh.exe . . . --------------------- Gesperrte Registrierungsschluessel --------------------- . [HKEY_USERS\.Default\Software\Microsoft\Internet Explorer\Approved Extensions] @Denied: (2) (LocalSystem) "{18DF081C-E8AD-4283-A596-FA578C2EBDC3}"=hex:51,66,7a,6c,4c,1d,38,12,72,0b,cc, 1c,9f,a6,ed,07,da,80,b9,17,89,70,f9,d7 "{5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F}"=hex:51,66,7a,6c,4c,1d,38,12,1d,cf,77, 51,95,a1,d1,09,ee,9c,1f,b7,fe,e1,bb,5b "{72853161-30C5-4D22-B7F9-0BBC1D38A37E}"=hex:51,66,7a,6c,4c,1d,38,12,0f,32,96, 76,f7,7e,4c,08,c8,ef,48,fc,18,66,e7,6a "{73455575-E40C-433C-9784-C78DC7761455}"=hex:51,66,7a,6c,4c,1d,38,12,1b,56,56, 77,3e,aa,52,06,e8,92,84,cd,c2,28,50,41 "{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}"=hex:51,66,7a,6c,4c,1d,38,12,d5,94,07, 72,c2,98,42,03,c9,fd,97,9a,f4,87,69,57 "{9030D464-4C02-4ABF-8ECC-5164760863C6}"=hex:51,66,7a,6c,4c,1d,38,12,0a,d7,23, 94,30,02,d1,0f,f1,da,12,24,73,56,27,d2 "{9E6D0D23-3D72-4A94-AE1F-2D167624E3D9}"=hex:51,66,7a,6c,4c,1d,38,12,4d,0e,7e, 9a,40,73,fa,0f,d1,09,6e,56,73,7a,a7,cd "{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}"=hex:51,66,7a,6c,4c,1d,38,12,07,5b,93, aa,6e,60,ba,0b,f0,6d,b2,b7,80,44,00,83 "{DBC80044-A445-435B-BC74-9C25C1C588A9}"=hex:51,66,7a,6c,4c,1d,38,12,2a,03,db, df,77,ea,35,06,c3,62,df,65,c4,9b,cc,bd "{E33CF602-D945-461A-83F0-819F76A199F8}"=hex:51,66,7a,6c,4c,1d,38,12,6c,f5,2f, e7,77,97,74,03,fc,e6,c2,df,73,ff,dd,ec "{F3C88694-EFFA-4D78-B409-54B7B2535B14}"=hex:51,66,7a,6c,4c,1d,38,12,fa,85,db, f7,c8,a1,16,08,cb,1f,17,f7,b7,0d,1f,00 "{2A541AE1-5BF6-4665-A8A3-CFA9672E4291}"=hex:51,66,7a,6c,4c,1d,38,12,8f,19,47, 2e,c4,15,0b,03,d7,b5,8c,e9,62,70,06,85 "{FF059E31-CC5A-4E2E-BF3B-96E929D65503}"=hex:51,66,7a,6c,4c,1d,38,12,5f,9d,16, fb,68,82,40,0b,c0,2d,d5,a9,2c,88,11,17 "{BDEADE7F-C265-11D0-BCED-00A0C90AB50F}"=hex:51,66,7a,6c,4c,1d,38,12,11,dd,f9, b9,57,8c,be,54,c3,fb,43,e0,cc,54,f1,1b . [HKEY_USERS\.Default\Software\Microsoft\Internet Explorer\ApprovedExtensionsMigration] @Denied: (2) (LocalSystem) "Timestamp"=hex:ac,10,9e,c0,42,d3,ce,01 . [HKEY_USERS\.Default\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.htm\UserChoice] @Denied: (2) (LocalSystem) "Progid"="IE.AssocFile.HTM" . [HKEY_USERS\.Default\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.html\UserChoice] @Denied: (2) (LocalSystem) "Progid"="IE.AssocFile.HTM" . [HKEY_USERS\.Default\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.mht\UserChoice] @Denied: (2) (LocalSystem) "Progid"="IE.AssocFile.MHT" . [HKEY_USERS\.Default\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.mhtml\UserChoice] @Denied: (2) (LocalSystem) "Progid"="IE.AssocFile.MHT" . [HKEY_USERS\.Default\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.partial\UserChoice] @Denied: (2) (LocalSystem) "Progid"="IE.AssocFile.PARTIAL" . [HKEY_USERS\.Default\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.svg\UserChoice] @Denied: (2) (LocalSystem) "Progid"="IE.AssocFile.SVG" . [HKEY_USERS\.Default\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.url\UserChoice] @Denied: (2) (LocalSystem) "Progid"="IE.AssocFile.URL" . [HKEY_USERS\.Default\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.website\UserChoice] @Denied: (2) (LocalSystem) "Progid"="IE.AssocFile.WEBSITE" . [HKEY_USERS\.Default\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.xht\UserChoice] @Denied: (2) (LocalSystem) "Progid"="IE.AssocFile.XHT" . [HKEY_USERS\.Default\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.xhtml\UserChoice] @Denied: (2) (LocalSystem) "Progid"="IE.AssocFile.XHT" . [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}] @Denied: (A 2) (Everyone) @="FlashBroker" "LocalizedString"="@c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_18_0_0_160_ActiveX.exe,-101" . [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\Elevation] "Enabled"=dword:00000001 . [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\LocalServer32] @="c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_18_0_0_160_ActiveX.exe" . [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" . [HKEY_LOCAL_MACHINE\software\Classes\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}] @Denied: (A 2) (Everyone) @="IFlashBroker6" . [HKEY_LOCAL_MACHINE\software\Classes\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}\ProxyStubClsid32] @="{00020424-0000-0000-C000-000000000046}" . [HKEY_LOCAL_MACHINE\software\Classes\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" "Version"="1.0" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}] @Denied: (A 2) (Everyone) @="FlashBroker" "LocalizedString"="@c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_18_0_0_160_ActiveX.exe,-101" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\Elevation] "Enabled"=dword:00000001 . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\LocalServer32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_18_0_0_160_ActiveX.exe" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}] @Denied: (A 2) (Everyone) @="Shockwave Flash Object" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_18_0_0_160.ocx" "ThreadingModel"="Apartment" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus] @="0" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID] @="ShockwaveFlash.ShockwaveFlash.18" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_18_0_0_160.ocx, 1" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib] @="{D27CDB6B-AE6D-11cf-96B8-444553540000}" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version] @="1.0" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID] @="ShockwaveFlash.ShockwaveFlash" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}] @Denied: (A 2) (Everyone) @="Macromedia Flash Factory Object" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_18_0_0_160.ocx" "ThreadingModel"="Apartment" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID] @="FlashFactory.FlashFactory.1" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32] @="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_18_0_0_160.ocx, 1" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib] @="{D27CDB6B-AE6D-11cf-96B8-444553540000}" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version] @="1.0" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID] @="FlashFactory.FlashFactory" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}] @Denied: (A 2) (Everyone) @="IFlashBroker6" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}\ProxyStubClsid32] @="{00020424-0000-0000-C000-000000000046}" . [HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}\TypeLib] @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}" "Version"="1.0" . [HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings] @Denied: (A) (Users) @Denied: (A) (Everyone) @Allowed: (B 1 2 3 4 5) (S-1-5-20) "BlindDial"=dword:00000000 . [HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0001\AllUserSettings] @Denied: (A) (Users) @Denied: (A) (Everyone) @Allowed: (B 1 2 3 4 5) (S-1-5-20) "BlindDial"=dword:00000000 . [HKEY_LOCAL_MACHINE\system\ControlSet001\Control\PCW\Security] @Denied: (Full) (Everyone) . ------------------------ Weitere laufende Prozesse ------------------------ . c:\program files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe c:\program files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe c:\program files (x86)\TeamViewer3\TeamViewer_Service.exe c:\program files (x86)\TOSHIBA\ConfigFree\NDSTray.exe c:\program files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\avpui.exe c:\program files (x86)\TOSHIBA\ConfigFree\CFSwMgr.exe . ************************************************************************** . Zeit der Fertigstellung: 2015-11-16 02:57:49 - PC wurde neu gestartet ComboFix-quarantined-files.txt 2015-11-16 00:57 . Vor Suchlauf: 19 Verzeichnis(se), 116.308.553.728 Bytes frei Nach Suchlauf: 24 Verzeichnis(se), 116.897.800.192 Bytes frei . - - End Of File - - A967CBD94B822074045EFA66E28A430E |
16.11.2015, 16:18 | #11 |
/// the machine /// TB-Ausbilder | Win7: Programme/Dienste lassen sich nicht starten + Help_Decrypt Befall Downloade Dir bitte Malwarebytes Anti-Malware
Downloade Dir bitte AdwCleaner auf deinen Desktop.
Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
und ein frisches FRST log bitte.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
16.11.2015, 18:50 | #12 |
| Win7: Programme/Dienste lassen sich nicht starten + Help_Decrypt Befall Malware Bytes ist bereits drauf und funktioniert jetzt auch wieder. Während ich das mache sei noch erwähnt, dass, als ich gestern, nachdem ComboFix fertig war, den IE gestartet hab, der Rechner auf einmal selbständig heruntergefahren ist und im Windows Screen "Servicepack wird aktualisiert" angezeigt hat (auch nach dem Booten), und eben gerade wieder beim Start des IE ausgelastet war und kein Seitenaufbau stattgefunden hat. Also hab ich nochmal gebootet und anschließend war noch unnatürlich lange Festplattenaktivität (LED). Jetzt ist er wieder ruhig. Hier das MBAM Scanlog in 2 Teilen. 895 Funde klingt übel. Beim 1. Speicherversuch kam die Fehlermeldung dass das Programm nicht mehr funktioniert und neu gestartet werden muss. Das hatte ich schon öfter beim Speichern von Dateien, auch mit IE und MS Excel. Hab dem keine große Bedeutung beigemessen, da es beim 2. Versuch immer ging. Kann das auch durch eine Infektionen kommen? Code:
ATTFilter Malwarebytes Anti-Malware www.malwarebytes.org Suchlaufdatum: 16.11.2015 Suchlaufzeit: 18:02 Protokolldatei: mbam.txt Administrator: Ja Version: 2.2.0.1024 Malware-Datenbank: v2015.11.16.04 Rootkit-Datenbank: v2015.11.14.01 Lizenz: Kostenlose Version Malware-Schutz: Deaktiviert Schutz vor bösartigen Websites: Deaktiviert Selbstschutz: Deaktiviert Betriebssystem: Windows 7 Service Pack 1 CPU: x64 Dateisystem: NTFS Benutzer: DJ Dolphin Suchlauftyp: Bedrohungssuchlauf Ergebnis: Abgeschlossen Durchsuchte Objekte: 407239 Abgelaufene Zeit: 26 Min., 20 Sek. Speicher: Aktiviert Start: Aktiviert Dateisystem: Aktiviert Archive: Aktiviert Rootkits: Deaktiviert Heuristik: Aktiviert PUP: Warnen PUM: Aktiviert Prozesse: 0 (keine bösartigen Elemente erkannt) Module: 0 (keine bösartigen Elemente erkannt) Registrierungsschlüssel: 5 PUP.Optional.BrowseMark, HKLM\SOFTWARE\WOW6432NODE\BrowseMark, In Quarantäne, [5d57bbc39eed9b9b7c49f27108fb08f8], PUP.Optional.BrowseMark, HKU\S-1-5-21-2290779612-799622330-4084932457-1000\SOFTWARE\BrowseMark, In Quarantäne, [e4d0fa8459325cdaf9cb70f3cd36c739], PUP.Optional.InstallCore, HKU\S-1-5-21-2290779612-799622330-4084932457-1000\SOFTWARE\InstallCore, In Quarantäne, [03b190eec6c569cd46e999e2a06307f9], PUP.Optional.Conduit, HKU\S-1-5-21-2290779612-799622330-4084932457-1000\SOFTWARE\CONDUIT\FF, In Quarantäne, [1d97fd81e5a687af3cee0c5d34cfaa56], PUP.Optional.ValueApps, HKU\S-1-5-21-2290779612-799622330-4084932457-1000\SOFTWARE\CONDUIT\ValueApps, In Quarantäne, [377d0b73187388ae3e0638632cd78b75], Registrierungswerte: 2 PUP.Optional.VShare, HKU\S-1-5-21-2290779612-799622330-4084932457-501\SOFTWARE\MICROSOFT\INTERNET EXPLORER\TOOLBAR\WEBBROWSER\{043C5167-00BB-4324-AF7E-62013FAEDACF}, In Quarantäne, [5f5592ecdfac102661c7a199a45e01ff], PUP.Optional.VShare, HKU\S-1-5-21-2290779612-799622330-4084932457-501\SOFTWARE\MICROSOFT\INTERNET EXPLORER\TOOLBAR\WEBBROWSER|{043C5167-00BB-4324-AF7E-62013FAEDACF}, ??»??T??, In Quarantäne, [5f5592ecdfac102661c7a199a45e01ff] Registrierungsdaten: 0 (keine bösartigen Elemente erkannt) Ordner: 119 PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\toolbarImages, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.BrowseMark, C:\Program Files (x86)\BrowseMark, In Quarantäne, [852f1f5f3655b3833d86481b00039c64], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\logic, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\logic\uninstall, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\logic\uninstall\dialog, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\logic\uninstall\dialog\css, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\logic\uninstall\dialog\images, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\logic\uninstall\dialog\js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\aboutBox, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\aboutBox\images, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\aboutBox\js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\ac, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\ac\css, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\ac\img, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\ac\res, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\api, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\msd, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\options, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\options\css, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\options\images, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\options\js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\options\js\resources, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\sp, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\sp\js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\sp\spbd, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\sp\spbd\images, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\sp\spsd, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\sp\spsd\images, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\ui, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\ui\dlg, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\ui\dlg\ftd, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\ui\dlg\ftd\images, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\ui\dlg\restart, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\ui\dlg\restart\images, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\ui\gadgetFrame, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\ui\gf, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\ui\gf\css, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\ui\gf\img, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\ui\gf\js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\ui\menu, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\ui\menu\css, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\ui\menu\img, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\ui\menu\js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\APPLICATION_BUTTON, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\APPLICATION_BUTTON\Js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\APPLICATION_BUTTON\resources, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\EMAIL_NOTIFIER, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\EMAIL_NOTIFIER\css, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\EMAIL_NOTIFIER\js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\HIGHLIGHTER, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\HIGHLIGHTER\css, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\HIGHLIGHTER\js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\MULTI_RSS, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\MULTI_RSS\css, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\MULTI_RSS\img, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\MULTI_RSS\js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\MULTI_RSS\js\resources, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\NOTIFICATION, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\NOTIFICATION\css, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\NOTIFICATION\images, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\NOTIFICATION\images\dark, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\NOTIFICATION\images\light, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\NOTIFICATION\js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\Optimizer, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\Optimizer\js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\PRICE_GONG, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\PRICE_GONG\agreement, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\PRICE_GONG\css, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\PRICE_GONG\css\custom-theme, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\PRICE_GONG\images, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\RADIO_PLAYER, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\RADIO_PLAYER\css, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\RADIO_PLAYER\css\custom-theme, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\RADIO_PLAYER\js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\RADIO_PLAYER\js\resources, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\SEARCH, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\SEARCH\buildSettings, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\SEARCH\Css, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\SEARCH\js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\SEARCH\resources, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\SEARCH\view, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\SEARCH\view\script, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\SEARCH\view\style, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\SEARCH\view\style\rsx, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\TWITTER, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\TWITTER\img, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\TWITTER\js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\WEATHER, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\WEATHER\css, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\WEATHER\js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\core, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\lib, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\lib\jquery.alerts, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\lib\jquery.alerts\images, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\lib\jquery.jscrollpane, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\sl, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\test, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\test\toolbar, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\test\toolbar\js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\test\toolbar\lib, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\components, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\components\mam, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\ctypes, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\defaults, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\defaults\preferences, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\lib, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\META-INF, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\modules, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Plugins, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.ValueApps, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\valueApps, In Quarantäne, [30841e60cebd68ceede4720c34ceef11], PUP.Optional.ValueApps, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\valueApps\CT3241949, In Quarantäne, [30841e60cebd68ceede4720c34ceef11], Dateien: 769 PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\tbccint.xml, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\conduit.xml, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_RAW.serviceLayer_services_translation, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.13.1.89.serviceLayer_services_toolbarSettings, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.13.1.89.serviceLayer_services_translation, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.13.40.15.serviceLayer_services_appsMetadata, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.13.40.15.serviceLayer_services_appTrackingFirstTime, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.13.40.15.serviceLayer_services_gottenAppsContextMenu, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.13.40.15.serviceLayer_services_login, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.13.40.15.serviceLayer_services_menu_769c590835a76d075fe33b9a87a87786, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.13.40.15.serviceLayer_services_menu_d32f45618f5a02bd965c56155a643855, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.13.40.15.serviceLayer_services_otherAppsContextMenu, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949.1000082.publisherStations, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949.skin, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.13.1.89.serviceLayer_services_toolbarContextMenu, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.13.40.15.serviceLayer_services_searchAPI, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.14.40.128.serviceLayer_services_menu_d32f45618f5a02bd965c56155a643855, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.14.42.7.serviceLayer_services_login, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.14.65.43.serviceLayer_services_appTrackingFirstTime, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.14.65.43.serviceLayer_services_translation, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.15.0.562.serviceLayer_services_serviceMap, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949.UserID, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.13.1.89.serviceLayer_services_appsMetadata, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.13.1.89.serviceLayer_services_appTrackingFirstTime, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.13.1.89.serviceLayer_services_gottenAppsContextMenu, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.13.1.89.serviceLayer_services_login, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.13.1.89.serviceLayer_services_menu_769c590835a76d075fe33b9a87a87786, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.13.1.89.serviceLayer_services_menu_d32f45618f5a02bd965c56155a643855, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.13.1.89.serviceLayer_services_optimizer, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.13.1.89.serviceLayer_services_otherAppsContextMenu, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.13.1.89.serviceLayer_services_searchAPI, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.13.1.89.serviceLayer_services_serviceMap, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_RAW.serviceLayer_services_appTrackingFirstTime, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_RAW.serviceLayer_services_Configuration, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_RAW.serviceLayer_services_gottenAppsContextMenu, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_RAW.serviceLayer_services_location, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_RAW.serviceLayer_services_login, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_RAW.serviceLayer_services_menu_769c590835a76d075fe33b9a87a87786, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_RAW.serviceLayer_services_menu_d32f45618f5a02bd965c56155a643855, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_RAW.serviceLayer_services_optimizer, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_RAW.serviceLayer_services_otherAppsContextMenu, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_RAW.serviceLayer_services_searchAPI, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_RAW.serviceLayer_services_serviceMap, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_RAW.serviceLayer_services_toolbarContextMenu, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.13.40.15.serviceLayer_services_serviceMap, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.13.40.15.serviceLayer_services_toolbarContextMenu, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.13.40.15.serviceLayer_services_toolbarSettings, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.13.40.15.serviceLayer_services_translation, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.14.40.128.serviceLayer_services_appsMetadata, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.14.40.128.serviceLayer_services_appTrackingFirstTime, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.14.40.128.serviceLayer_services_gottenAppsContextMenu, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.14.40.128.serviceLayer_services_login, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.14.40.128.serviceLayer_services_menu_769c590835a76d075fe33b9a87a87786, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949.1000234.weatherData, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949.129887071061272563.search.history, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949.129887071061272563.search.selectedEngineId, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949.129887071061272563.search.settings, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949.129887071061272563.search.user-settings, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949.appOptions, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949.cookiesRepo, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949.fullUserID, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949.NotificationSettings, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949.NOTIFICATION_ID.notifications-repository, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949.NOTIFICATION_ID.notifications-servicemap, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949.NOTIFICATION_ID.notifications-service_1693983, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949.pg_conf_global, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949.savedPositions, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949.searchProtectorData, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.14.40.128.serviceLayer_services_otherAppsContextMenu, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.14.40.128.serviceLayer_services_searchAPI, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.14.40.128.serviceLayer_services_serviceMap, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.14.40.128.serviceLayer_services_toolbarContextMenu, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.14.40.128.serviceLayer_services_toolbarSettings, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.14.40.128.serviceLayer_services_translation, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.14.42.7.serviceLayer_services_appsMetadata, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.14.42.7.serviceLayer_services_appTrackingFirstTime, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.14.42.7.serviceLayer_services_gottenAppsContextMenu, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.14.42.7.serviceLayer_services_menu_769c590835a76d075fe33b9a87a87786, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.14.42.7.serviceLayer_services_menu_d32f45618f5a02bd965c56155a643855, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.14.42.7.serviceLayer_services_otherAppsContextMenu, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.14.42.7.serviceLayer_services_searchAPI, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.14.42.7.serviceLayer_services_serviceMap, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.14.42.7.serviceLayer_services_toolbarContextMenu, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.14.42.7.serviceLayer_services_toolbarSettings, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.14.42.7.serviceLayer_services_translation, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.14.65.43.serviceLayer_services_appsMetadata, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.14.65.43.serviceLayer_services_gottenAppsContextMenu, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.14.65.43.serviceLayer_services_login, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.14.65.43.serviceLayer_services_menu_769c590835a76d075fe33b9a87a87786, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.14.65.43.serviceLayer_services_menu_d32f45618f5a02bd965c56155a643855, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.14.65.43.serviceLayer_services_otherAppsContextMenu, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.14.65.43.serviceLayer_services_searchAPI, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.14.65.43.serviceLayer_services_serviceMap, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.14.65.43.serviceLayer_services_toolbarContextMenu, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.14.65.43.serviceLayer_services_toolbarSettings, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.15.0.562.serviceLayer_services_appsMetadata, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.15.0.562.serviceLayer_services_appTrackingFirstTime, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.15.0.562.serviceLayer_services_gottenAppsContextMenu, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.15.0.562.serviceLayer_services_location, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.15.0.562.serviceLayer_services_login, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.15.0.562.serviceLayer_services_menu_769c590835a76d075fe33b9a87a87786, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.15.0.562.serviceLayer_services_menu_d32f45618f5a02bd965c56155a643855, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.15.0.562.serviceLayer_services_otherAppsContextMenu, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.15.0.562.serviceLayer_services_searchAPI, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.15.0.562.serviceLayer_services_toolbarContextMenu, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.15.0.562.serviceLayer_services_toolbarSettings, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.15.0.562.serviceLayer_services_translation, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.15.2.523.serviceLayer_services_appsMetadata, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.15.2.523.serviceLayer_services_appTrackingFirstTime, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.15.2.523.serviceLayer_services_gottenAppsContextMenu, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.15.2.523.serviceLayer_services_location, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.15.2.523.serviceLayer_services_login, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.15.2.523.serviceLayer_services_menu_769c590835a76d075fe33b9a87a87786, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.15.2.523.serviceLayer_services_otherAppsContextMenu, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.15.2.523.serviceLayer_services_searchAPI, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.15.2.523.serviceLayer_services_serviceMap, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.15.2.523.serviceLayer_services_toolbarContextMenu, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.15.2.523.serviceLayer_services_toolbarSettings, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.15.2.523.serviceLayer_services_translation, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.16.2.509.serviceLayer_services_appsMetadata, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.16.2.509.serviceLayer_services_appTrackingFirstTime, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.16.2.509.serviceLayer_services_gottenAppsContextMenu, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.16.2.509.serviceLayer_services_login, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.16.2.509.serviceLayer_services_menu_769c590835a76d075fe33b9a87a87786, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.16.2.509.serviceLayer_services_menu_d32f45618f5a02bd965c56155a643855, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.16.2.509.serviceLayer_services_otherAppsContextMenu, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.16.2.509.serviceLayer_services_searchAPI, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.16.2.509.serviceLayer_services_serviceMap, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.16.2.509.serviceLayer_services_toolbarContextMenu, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.16.2.509.serviceLayer_services_toolbarSettings, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.16.2.509.serviceLayer_services_translation, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.16.4.519.serviceLayer_services_appsMetadata, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.16.4.519.serviceLayer_services_appTrackingFirstTime, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.16.4.519.serviceLayer_services_Configuration, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.16.4.519.serviceLayer_services_gottenAppsContextMenu, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.16.4.519.serviceLayer_services_login, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.16.4.519.serviceLayer_services_menu_769c590835a76d075fe33b9a87a87786, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.16.4.519.serviceLayer_services_menu_d32f45618f5a02bd965c56155a643855, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.16.4.519.serviceLayer_services_otherAppsContextMenu, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.16.4.519.serviceLayer_services_searchAPI, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949.1000034.Settings, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949.1000082.currentList, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949.1000082.localStations, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949.1000082.nowPlaying, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.16.4.519.serviceLayer_services_toolbarContextMenu, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.16.4.519.serviceLayer_services_toolbarSettings, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.16.4.519.serviceLayer_services_translation, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.16.4.519.serviceLayer_services_userApps, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.16.70.505.serviceLayer_services_appsMetadata, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.16.70.505.serviceLayer_services_appTrackingFirstTime, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.16.70.505.serviceLayer_services_Configuration, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.16.70.505.serviceLayer_services_gottenAppsContextMenu, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.16.70.505.serviceLayer_services_login, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.16.70.505.serviceLayer_services_menu_d32f45618f5a02bd965c56155a643855, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.16.70.505.serviceLayer_services_otherAppsContextMenu, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.16.70.505.serviceLayer_services_searchAPI, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.16.70.505.serviceLayer_services_serviceMap, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.16.70.505.serviceLayer_services_toolbarContextMenu, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.16.70.505.serviceLayer_services_toolbarSettings, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.16.70.505.serviceLayer_services_translation, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.19.2.505.serviceLayer_services_appsMetadata, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.19.2.505.serviceLayer_services_appTrackingFirstTime, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\originalSearchEngine.xml, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\serviceLayer_userApps_added, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\serviceLayer_userApps_removed, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\toolbar_initializing_logger.txt, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\uninstallData, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\uninstallUrl, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.16.2.509.serviceLayer_services_location, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.16.2.509.serviceLayer_services_userApps, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.16.4.519.serviceLayer_services_serviceMap, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.16.70.505.serviceLayer_services_menu_769c590835a76d075fe33b9a87a87786, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.19.2.505.serviceLayer_services_Configuration, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.19.2.505.serviceLayer_services_translation, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.20.0.513.serviceLayer_services_serviceMap, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.20.1.508.serviceLayer_services_menu_d32f45618f5a02bd965c56155a643855, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.21.1.507.serviceLayer_services_gottenAppsContextMenu, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.19.2.505.serviceLayer_services_gottenAppsContextMenu, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.19.2.505.serviceLayer_services_login, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.19.2.505.serviceLayer_services_menu_769c590835a76d075fe33b9a87a87786, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.19.2.505.serviceLayer_services_menu_d32f45618f5a02bd965c56155a643855, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.19.2.505.serviceLayer_services_otherAppsContextMenu, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.19.2.505.serviceLayer_services_searchAPI, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.19.2.505.serviceLayer_services_serviceMap, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.19.2.505.serviceLayer_services_toolbarContextMenu, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.19.2.505.serviceLayer_services_toolbarSettings, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.20.0.513.serviceLayer_services_appsMetadata, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.20.0.513.serviceLayer_services_appTrackingFirstTime, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.20.0.513.serviceLayer_services_Configuration, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.20.0.513.serviceLayer_services_gottenAppsContextMenu, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.20.0.513.serviceLayer_services_login, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.20.0.513.serviceLayer_services_menu_769c590835a76d075fe33b9a87a87786, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.20.0.513.serviceLayer_services_menu_d32f45618f5a02bd965c56155a643855, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.20.0.513.serviceLayer_services_otherAppsContextMenu, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.20.0.513.serviceLayer_services_searchAPI, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.20.0.513.serviceLayer_services_toolbarContextMenu, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.20.0.513.serviceLayer_services_toolbarSettings, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.20.0.513.serviceLayer_services_translation, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.20.1.508.serviceLayer_services_appsMetadata, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.20.1.508.serviceLayer_services_appTrackingFirstTime, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.20.1.508.serviceLayer_services_Configuration, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.20.1.508.serviceLayer_services_gottenAppsContextMenu, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.20.1.508.serviceLayer_services_login, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.20.1.508.serviceLayer_services_menu_769c590835a76d075fe33b9a87a87786, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.20.1.508.serviceLayer_services_otherAppsContextMenu, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.20.1.508.serviceLayer_services_searchAPI, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.20.1.508.serviceLayer_services_serviceMap, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.20.1.508.serviceLayer_services_toolbarContextMenu, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.20.1.508.serviceLayer_services_toolbarSettings, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.20.1.508.serviceLayer_services_translation, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.21.1.507.serviceLayer_services_appsMetadata, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.21.1.507.serviceLayer_services_appTrackingFirstTime, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.21.1.507.serviceLayer_services_Configuration, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.21.1.507.serviceLayer_services_login, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.21.1.507.serviceLayer_services_menu_769c590835a76d075fe33b9a87a87786, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.21.1.507.serviceLayer_services_menu_d32f45618f5a02bd965c56155a643855, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.21.1.507.serviceLayer_services_otherAppsContextMenu, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.21.1.507.serviceLayer_services_searchAPI, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.21.1.507.serviceLayer_services_serviceMap, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.21.1.507.serviceLayer_services_toolbarContextMenu, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.21.1.507.serviceLayer_services_toolbarSettings, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.21.1.507.serviceLayer_services_translation, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.22.3.518.serviceLayer_services_appTrackingFirstTime, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.22.3.518.serviceLayer_services_Configuration, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.22.3.518.serviceLayer_services_gottenAppsContextMenu, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.22.3.518.serviceLayer_services_login, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.22.3.518.serviceLayer_services_menu_769c590835a76d075fe33b9a87a87786, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.22.3.518.serviceLayer_services_menu_d32f45618f5a02bd965c56155a643855, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.22.3.518.serviceLayer_services_otherAppsContextMenu, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.22.3.518.serviceLayer_services_searchAPI, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.22.3.518.serviceLayer_services_serviceMap, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.22.3.518.serviceLayer_services_toolbarSettings, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.22.3.518.serviceLayer_services_translation, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.22.5.510.serviceLayer_services_appsMetadata, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.22.5.510.serviceLayer_services_appTrackingFirstTime, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.22.5.510.serviceLayer_services_Configuration, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.22.5.510.serviceLayer_services_gottenAppsContextMenu, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.22.5.510.serviceLayer_services_login, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.22.5.510.serviceLayer_services_menu_769c590835a76d075fe33b9a87a87786, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.22.5.510.serviceLayer_services_menu_d32f45618f5a02bd965c56155a643855, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.22.5.510.serviceLayer_services_searchAPI, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.22.5.510.serviceLayer_services_serviceMap, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.22.5.510.serviceLayer_services_toolbarContextMenu, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.22.5.510.serviceLayer_services_toolbarSettings, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.22.5.510.serviceLayer_services_translation, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.23.0.822.serviceLayer_services_appsMetadata, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.23.0.822.serviceLayer_services_appTrackingFirstTime, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.23.0.822.serviceLayer_services_Configuration, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.23.0.822.serviceLayer_services_gottenAppsContextMenu, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.22.3.518.serviceLayer_services_toolbarContextMenu, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.22.5.510.serviceLayer_services_otherAppsContextMenu, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.23.0.822.serviceLayer_services_login, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.33.0.505.serviceLayer_services_appTrackingFirstTime, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.33.0.505.serviceLayer_services_toolbarContextMenu, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.33.0.517.serviceLayer_services_searchAPI, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.35.0.503.serviceLayer_services_menu_d32f45618f5a02bd965c56155a643855, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.37.0.508.serviceLayer_services_gottenAppsContextMenu, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.38.0.509.serviceLayer_services_appTrackingFirstTime, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_RAW.serviceLayer_services_appsMetadata, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_RAW.serviceLayer_services_toolbarSettings, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.15.2.523.serviceLayer_services_menu_d32f45618f5a02bd965c56155a643855, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.22.3.518.serviceLayer_services_appsMetadata, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.23.0.822.serviceLayer_services_menu_769c590835a76d075fe33b9a87a87786, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.23.0.822.serviceLayer_services_menu_d32f45618f5a02bd965c56155a643855, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.23.0.822.serviceLayer_services_otherAppsContextMenu, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.23.0.822.serviceLayer_services_searchAPI, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.23.0.822.serviceLayer_services_serviceMap, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.23.0.822.serviceLayer_services_toolbarContextMenu, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.23.0.822.serviceLayer_services_toolbarSettings, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.23.0.822.serviceLayer_services_translation, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.33.0.505.serviceLayer_services_appsMetadata, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.33.0.505.serviceLayer_services_clientErrorLog, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.33.0.505.serviceLayer_services_Configuration, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.33.0.505.serviceLayer_services_gottenAppsContextMenu, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.33.0.505.serviceLayer_services_login, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.33.0.505.serviceLayer_services_menu_769c590835a76d075fe33b9a87a87786, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.33.0.505.serviceLayer_services_menu_d32f45618f5a02bd965c56155a643855, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.33.0.505.serviceLayer_services_otherAppsContextMenu, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.33.0.505.serviceLayer_services_searchAPI, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.33.0.505.serviceLayer_services_serviceMap, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.33.0.505.serviceLayer_services_toolbarSettings, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.33.0.505.serviceLayer_services_translation, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.33.0.517.serviceLayer_services_appsMetadata, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.33.0.517.serviceLayer_services_appTrackingFirstTime, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.33.0.517.serviceLayer_services_Configuration, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.33.0.517.serviceLayer_services_gottenAppsContextMenu, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.33.0.517.serviceLayer_services_menu_769c590835a76d075fe33b9a87a87786, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.33.0.517.serviceLayer_services_menu_d32f45618f5a02bd965c56155a643855, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.33.0.517.serviceLayer_services_otherAppsContextMenu, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.33.0.517.serviceLayer_services_serviceMap, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.33.0.517.serviceLayer_services_toolbarContextMenu, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.33.0.517.serviceLayer_services_toolbarSettings, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.33.0.517.serviceLayer_services_translation, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.35.0.503.serviceLayer_services_appsMetadata, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.35.0.503.serviceLayer_services_appTrackingFirstTime, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.35.0.503.serviceLayer_services_Configuration, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.35.0.503.serviceLayer_services_gottenAppsContextMenu, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.35.0.503.serviceLayer_services_menu_769c590835a76d075fe33b9a87a87786, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.35.0.503.serviceLayer_services_otherAppsContextMenu, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.35.0.503.serviceLayer_services_searchAPI, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.35.0.503.serviceLayer_services_serviceMap, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.35.0.503.serviceLayer_services_toolbarContextMenu, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.35.0.503.serviceLayer_services_toolbarSettings, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.35.0.503.serviceLayer_services_translation, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.37.0.508.serviceLayer_services_appsMetadata, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.37.0.508.serviceLayer_services_appTrackingFirstTime, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.37.0.508.serviceLayer_services_Configuration, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.37.0.508.serviceLayer_services_menu_769c590835a76d075fe33b9a87a87786, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.37.0.508.serviceLayer_services_menu_d32f45618f5a02bd965c56155a643855, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.37.0.508.serviceLayer_services_otherAppsContextMenu, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.37.0.508.serviceLayer_services_searchAPI, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.37.0.508.serviceLayer_services_serviceMap, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.37.0.508.serviceLayer_services_toolbarContextMenu, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.37.0.508.serviceLayer_services_toolbarSettings, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.37.0.508.serviceLayer_services_translation, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.38.0.509.serviceLayer_services_appsMetadata, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.38.0.509.serviceLayer_services_Configuration, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.38.0.509.serviceLayer_services_gottenAppsContextMenu, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.38.0.509.serviceLayer_services_menu_769c590835a76d075fe33b9a87a87786, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.38.0.509.serviceLayer_services_menu_d32f45618f5a02bd965c56155a643855, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.38.0.509.serviceLayer_services_otherAppsContextMenu, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.38.0.509.serviceLayer_services_searchAPI, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.38.0.509.serviceLayer_services_serviceMap, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.38.0.509.serviceLayer_services_toolbarContextMenu, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.38.0.509.serviceLayer_services_toolbarSettings, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\CT3241949_10.38.0.509.serviceLayer_services_translation, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\toolbarImages\http___storage_stgbssint_com_images_ClientImages_radio.gif, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\toolbarImages\http___oryte_com_content_icons_widget.png, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\toolbarImages\http___storage_conduit_com_18_320_CT3201318_Images_634688351076901355.png, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\toolbarImages\http___storage_conduit_com_images_ClientImages_radio.gif, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\toolbarImages\http___storage_conduit_com_Images_ClientResources_mini_browser.gif, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\toolbarImages\http___storage_conduit_com_images_searchengines_search_icon.gif, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\toolbarImages\http___storage_conduit_com_MarketPlace_93_ce3_93951332-f9a7-4af7-af02-17ec3d749ce3_Appearance_634159521796627506_24x24.png, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\toolbarImages\http___storage_stgbssint_com_18_320_CT3201318_Images_634688351076901355.png, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\toolbarImages\http___storage_stgbssint_com_Images_ClientResources_mini_browser.gif, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\toolbarImages\http___storage_stgbssint_com_images_searchengines_search_icon.gif, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\toolbarImages\http___storage_stgbssint_com_MarketPlace_93_ce3_93951332-f9a7-4af7-af02-17ec3d749ce3_Appearance_634159521796627506_24x24.png, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\toolbarImages\http___tools_wiseconvert_com_images_menu_file_tools_icon.png, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], PUP.Optional.ConduitTB.Gen, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\CT3241949\toolbarImages\storage.conduit.com, In Quarantäne, [c1f3c3bb791241f5774ae0abf80a24dc], Geändert von GS81 (16.11.2015 um 19:43 Uhr) |
16.11.2015, 18:52 | #13 |
| Win7: Programme/Dienste lassen sich nicht starten + Help_Decrypt Befall Teil2: Code:
ATTFilter PUP.Optional.BrowseMark, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{b99c8534-7800-48fa-bd71-519a46cdc7e1}.xpi, In Quarantäne, [0fa53648acdf6fc7cef2d291b74c11ef], PUP.Optional.BrowseMark, C:\Program Files (x86)\BrowseMark\BrowseMark.ico, In Quarantäne, [852f1f5f3655b3833d86481b00039c64], PUP.Optional.BrowseMark, C:\Program Files (x86)\BrowseMark\7za.exe, In Quarantäne, [852f1f5f3655b3833d86481b00039c64], PUP.Optional.Conduit, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\searchplugins\fileconverter-13-customized-web-search.xml, In Quarantäne, [e3d15b234b400b2b39fed69245be55ab], PUP.Optional.StartSear, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\searchplugins\startsear.xml, In Quarantäne, [c3f1700e305bc3734f253c5917ecc23e], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\chrome.manifest, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\install.rdf, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\sspv.txt, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\version.txt, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\AbstractionLayer.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\AbstractionLayerBack.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\AbstractionLayerFront.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\BrowserContextMenuManager.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\popup.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\popup.xul, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\popupTransparent.xul, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\preferences.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\preferences.xul, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\toolbaroverlay.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\toolbaroverlay.xul, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tooltips.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\version.xul, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\logic\autoComplete.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\logic\priceGongMigration.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\logic\uninstall\dialog\MozillaRetentionDialog.html, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\logic\uninstall\dialog\RetentionDialog.html, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\logic\uninstall\dialog\css\MozillaRetentionDialog.css, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\logic\uninstall\dialog\css\RetentionDialog.css, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\logic\uninstall\dialog\images\2.0--spec--kicker.png, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\logic\uninstall\dialog\images\content-pattern.png, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\logic\uninstall\dialog\images\content-sep.png, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\logic\uninstall\dialog\images\OK-Button-Default.png, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\logic\uninstall\dialog\images\OK-Button-MouseOver.png, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\logic\uninstall\dialog\images\OK-Button-OnClick.png, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\logic\uninstall\dialog\images\x.png, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\logic\uninstall\dialog\js\MozillaRetentionDialog.view.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\logic\uninstall\dialog\js\RetentionDialog.view.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\backstage.html, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\version.txt, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\al.view.html, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\aboutBox\aboutBox.html, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\aboutBox\images\logo.png, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\aboutBox\images\OK-Button-Default.png, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\aboutBox\images\OK-Button-MouseOver.png, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\aboutBox\images\OK-Button-OnClick.png, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\aboutBox\images\truste.gif, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\aboutBox\images\x.png, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\aboutBox\js\aboutBox.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\ac\appManager.controller.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\ac\appManager.model.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\ac\appManager.view.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\ac\css\toolbar.css, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\ac\img\ajax-loader.gif, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\ac\img\buttonSprites.png, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\ac\img\chevron_sprites.png, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\ac\img\fallback24.png, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\ac\img\ie8_mouseover_button.png, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\ac\img\ie8_onclick_button.png, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\ac\img\loader-icon.png, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\ac\img\menu_arrow.png, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\ac\img\minibrowser.png, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\ac\img\minibrowser24.png, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\ac\img\mp_sprites.png, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\ac\img\new_chevron_sprites.png, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\ac\img\rounded_corners_left_transparent.png, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\ac\img\rounded_corners_left_white.png, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\ac\img\rounded_corners_left_white_34.png, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\ac\img\rounded_corners_right_transparent.png, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\ac\img\rounded_corners_right_white.png, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\ac\img\rounded_corners_right_white_34.png, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\ac\img\separator.png, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\ac\img\separator_hover.png, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\ac\img\uus.png, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\ac\res\yoxscroll.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\api\toolbarapi.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\api\webAppApi.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\api\webAppApiFront.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\msd\excanvas.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\msd\trusted.html, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\msd\trusted.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\msd\untrusted.css, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\msd\untrusted.html, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\msd\untrusted.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\options\options.html, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\options\css\jquery.jscrollpane.css, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\options\css\options.css, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\options\css\reset.css, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\options\images\bg-hide-click.png, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\options\images\bg-hide.png, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\options\images\checkbox-check-off.png, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\options\images\checkbox-check-on.png, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\options\images\ic_Closer.png, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\options\images\ic_Closer_hover.png, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\options\images\logo.png, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\options\images\minibrowser.png, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\options\images\scroller.png, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\options\images\sprite-ok-button.png, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\options\images\truste.gif, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\options\images\x.png, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\options\js\html5SupportIe.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\options\js\options.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\options\js\resources\html5shiv.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\options\js\resources\jquery.jscrollpane.min.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\options\js\resources\jquery.mousewheel.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\sp\js\searchProtectorManager.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\sp\spbd\bubble.css, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\sp\spbd\bubble.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\sp\spbd\main.html, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\sp\spbd\images\information.png, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\sp\spbd\images\x-default-LTR.png, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\sp\spbd\images\x-default-RTL.png, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\sp\spbd\images\x-mouseover-LTR.png, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\sp\spbd\images\x-mouseover-RTL.png, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\sp\spsd\main.html, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\sp\spsd\SearchProtector.css, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\sp\spsd\settings.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\sp\spsd\images\ok-button.png, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\sp\spsd\images\separation-line.png, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\sp\spsd\images\warning.png, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\ui\menus.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\ui\popups.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\ui\dlg\DialogsAPI.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\ui\dlg\excanvas.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\ui\dlg\generalDialogStyle.css, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\ui\dlg\PIE.htc, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\ui\dlg\settings.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\ui\dlg\ftd\main.html, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\ui\dlg\ftd\ToolbarFirstTimeDialog.css, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\ui\dlg\ftd\ToolbarFirstTimeDialog.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\ui\dlg\ftd\images\app-store-icon.png, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\ui\dlg\ftd\images\arrow.png, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\ui\dlg\ftd\images\dialog_tip_left.png, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\ui\dlg\ftd\images\dialog_tip_right.png, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\ui\dlg\ftd\images\divider.png, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\ui\dlg\ftd\images\emailNotifier.gif, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\ui\dlg\ftd\images\facebook.png, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\ui\dlg\ftd\images\radio.GIF, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\ui\dlg\ftd\images\Thumbs.db, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\ui\dlg\ftd\images\truste_welcome.GIF, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\ui\dlg\ftd\images\weather.GIF, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\ui\dlg\restart\main.html, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\ui\dlg\restart\restartDialog.css, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\ui\dlg\restart\restartDialog.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\ui\dlg\restart\images\2.0--spec--kicker.png, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\ui\dlg\restart\images\content-pattern.png, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\ui\dlg\restart\images\content-sep.png, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\ui\dlg\restart\images\OK-Button-Default.png, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\ui\dlg\restart\images\OK-Button-MouseOver.png, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\ui\dlg\restart\images\OK-Button-OnClick.png, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\ui\dlg\restart\images\x.png, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\ui\gadgetFrame\gf.html, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\ui\gadgetFrame\lgf.html, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\ui\gf\gf.html, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\ui\gf\lgf.html, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\ui\gf\css\gf.css, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\ui\gf\css\gf_ie.css, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\ui\gf\img\ie_back.gif, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\ui\gf\img\loader.gif, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\ui\gf\img\resize.gif, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\ui\gf\img\sprites.png, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\ui\gf\js\gf.view.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\ui\gf\js\lgf.view.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\ui\menu\popup.html, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\ui\menu\css\menu.css, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\ui\menu\img\arrow-down-strong.png, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\ui\menu\img\arrow-down.png, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\ui\menu\img\arrow-left-strong.png, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\ui\menu\img\arrow-left.png, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\ui\menu\img\arrow-right-strong.png, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\ui\menu\img\arrow-right.png, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\ui\menu\img\arrows.png, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\ui\menu\js\jquery.ellipsis.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\ui\menu\js\jquery.scrollTo-1.4.2-min.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\ui\menu\js\menu.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\ui\menu\js\renderHandler.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\ui\menu\js\scrollers.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\ui\menu\js\showHandler.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\browserAppApi.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\APPLICATION_BUTTON\bgpage.html, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\APPLICATION_BUTTON\Js\bgpage.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\APPLICATION_BUTTON\resources\defaultEngineImage.gif, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\EMAIL_NOTIFIER\bgPage.html, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\EMAIL_NOTIFIER\popup.html, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\EMAIL_NOTIFIER\css\en.css, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\EMAIL_NOTIFIER\css\en_rtl.css, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\EMAIL_NOTIFIER\css\jquery.jscrollpane.css, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\EMAIL_NOTIFIER\js\AccountManager.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\EMAIL_NOTIFIER\js\bgPage.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\EMAIL_NOTIFIER\js\EN.model.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\EMAIL_NOTIFIER\js\IMAPExecuter.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\EMAIL_NOTIFIER\js\Inboxer.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\EMAIL_NOTIFIER\js\Invoker.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\EMAIL_NOTIFIER\js\MailDecoder.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\EMAIL_NOTIFIER\js\MailMerger.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\EMAIL_NOTIFIER\js\POP3Executer.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\EMAIL_NOTIFIER\js\Popup.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\EMAIL_NOTIFIER\js\providerHelper.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\EMAIL_NOTIFIER\js\Providers.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\EMAIL_NOTIFIER\js\SettingsManager.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\EMAIL_NOTIFIER\js\Timer.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\EMAIL_NOTIFIER\js\Translation.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\EMAIL_NOTIFIER\js\Utils.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\HIGHLIGHTER\bgpage.html, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\HIGHLIGHTER\embedded.html, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\HIGHLIGHTER\popup.html, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\HIGHLIGHTER\css\embedded.css, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\HIGHLIGHTER\css\popup.css, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\HIGHLIGHTER\css\reset.css, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\HIGHLIGHTER\js\bgpage.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\HIGHLIGHTER\js\embedded.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\HIGHLIGHTER\js\higlighter_script.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\HIGHLIGHTER\js\popup.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\MULTI_RSS\bgpage.html, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\MULTI_RSS\popup.html, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\MULTI_RSS\css\popup.css, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\MULTI_RSS\img\arrows.png, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\MULTI_RSS\img\badges.png, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\MULTI_RSS\img\icons.png, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\MULTI_RSS\js\bgpage.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\MULTI_RSS\js\popup.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\MULTI_RSS\js\resources\webAppUtils.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\NOTIFICATION\bgpage.html, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\NOTIFICATION\embedded.html, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\NOTIFICATION\NotificationPopup.html, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\NOTIFICATION\Settings.html, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\NOTIFICATION\css\gadget.css, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\NOTIFICATION\css\general.css, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\NOTIFICATION\css\Main.css, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\NOTIFICATION\css\newMain.css, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\NOTIFICATION\css\settings.css, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\NOTIFICATION\css\ui.stepper.css, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\NOTIFICATION\images\closeIcon.png, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\NOTIFICATION\images\downArrow.png, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\NOTIFICATION\images\settingsIcon.png, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\NOTIFICATION\images\upArrow.png, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\NOTIFICATION\images\dark\close.png, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\NOTIFICATION\images\dark\Next.png, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\NOTIFICATION\images\dark\Next_hover.png, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\NOTIFICATION\images\dark\powered-by.png, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\NOTIFICATION\images\dark\Prev.png, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\NOTIFICATION\images\dark\Prev_hover.png, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\NOTIFICATION\images\dark\settings.png, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\NOTIFICATION\images\light\close.png, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\NOTIFICATION\images\light\Next.png, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\NOTIFICATION\images\light\Next_hover.png, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\NOTIFICATION\images\light\powered-by.png, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\NOTIFICATION\images\light\Prev.png, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\NOTIFICATION\images\light\Prev_hover.png, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\NOTIFICATION\images\light\settings.png, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\NOTIFICATION\js\AppName.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\NOTIFICATION\js\bgpage.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\NOTIFICATION\js\bgpageEarly.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\NOTIFICATION\js\commons.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\NOTIFICATION\js\jquery.ezmark.min.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\NOTIFICATION\js\notification.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\NOTIFICATION\js\NotificationSettings.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\NOTIFICATION\js\notificationUIManger.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\NOTIFICATION\js\Settings.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\NOTIFICATION\js\stepper.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\NOTIFICATION\js\ToolbarAndAppsSettings.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\Optimizer\bgpage.html, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\Optimizer\js\bgpage.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\PRICE_GONG\bgpage.html, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\PRICE_GONG\bgpage.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\PRICE_GONG\pg_offers.html, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\PRICE_GONG\pg_offers.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\PRICE_GONG\agreement\agree.html, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\PRICE_GONG\agreement\agree.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\PRICE_GONG\agreement\Close.png, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\PRICE_GONG\agreement\Image.png, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\PRICE_GONG\agreement\Logo.png, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\PRICE_GONG\agreement\OK_Btn.png, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\PRICE_GONG\agreement\Topbg.png, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\PRICE_GONG\css\gadget.css, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\PRICE_GONG\css\ie7styles.css, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\PRICE_GONG\css\iestyle.css, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\PRICE_GONG\css\custom-theme\jquery-ui-1.8.10.custom.css, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\PRICE_GONG\images\icon.png, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\RADIO_PLAYER\bgpage.html, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\RADIO_PLAYER\embedded.html, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\RADIO_PLAYER\popup2.html, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\RADIO_PLAYER\css\gadget.css, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\RADIO_PLAYER\css\jquery.jscrollpane.css, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\RADIO_PLAYER\css\reset.css, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\RADIO_PLAYER\css\stations.css, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\RADIO_PLAYER\css\custom-theme\jquery-ui-1.8.10.custom.css, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\RADIO_PLAYER\js\bgpage.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\RADIO_PLAYER\js\bgpageEarly.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\RADIO_PLAYER\js\embedded.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\RADIO_PLAYER\js\embeddedEarly.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\RADIO_PLAYER\js\localization.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\RADIO_PLAYER\js\player.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\RADIO_PLAYER\js\popup.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\RADIO_PLAYER\js\resources\BrowserDetect.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\RADIO_PLAYER\js\resources\jquery-ui-1.8.10.custom.min.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\RADIO_PLAYER\js\resources\jquery.jscrollpane.min.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\RADIO_PLAYER\js\resources\jquery.scrollTo-1.4.2-min.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\RADIO_PLAYER\js\resources\radioCommon.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\RADIO_PLAYER\js\resources\system.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\RADIO_PLAYER\js\resources\utils.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\SEARCH\bgpage.html, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\SEARCH\embedded.html, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\SEARCH\information.popup.html, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\SEARCH\buildSettings\SearchApp_Ant.xml, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\SEARCH\Css\information.popup.css, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\SEARCH\js\bgpage.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\SEARCH\js\common.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\SEARCH\js\contentManager.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\SEARCH\js\historyProvider.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\SEARCH\js\information.popup.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\SEARCH\js\layoutManager.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\SEARCH\js\searchListener.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\SEARCH\js\selectionListener.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\SEARCH\js\suggestProvider.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\SEARCH\resources\history--x-default.png, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\SEARCH\resources\history--x-mouseover.png, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\SEARCH\resources\menu.icon.apps.png, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\SEARCH\view\script\view.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\SEARCH\view\style\default.css, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\SEARCH\view\style\rsx\dd-arrow.png, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\SEARCH\view\style\rsx\ie8.png, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\TWITTER\bgpage.html, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\TWITTER\popup.css, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\TWITTER\popup.html, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\TWITTER\img\icons.png, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\TWITTER\img\inbox.png, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\TWITTER\img\scroll_down.png, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\TWITTER\img\scroll_up.png, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\TWITTER\js\bgpage.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\TWITTER\js\localization.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\TWITTER\js\popup.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\WEATHER\bgpage.html, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\WEATHER\popup.html, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\WEATHER\css\gadget.css, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\WEATHER\css\ie7styles.css, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\WEATHER\css\iestyle.css, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\WEATHER\js\bgpage.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\WEATHER\js\common.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\WEATHER\js\date-functions.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\WEATHER\js\gadget.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\WEATHER\js\jquery.autocomplete.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\WEATHER\js\jquery.textshadow.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\WEATHER\js\logic.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\WEATHER\js\main.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\al\wa\WEATHER\js\xPath.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\core\corelibs.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\core\framework.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\core\utils.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\lib\al.view.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\lib\al.viewPerformanceLog.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\lib\background.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\lib\ie_fix.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\lib\jquery.min.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\lib\jquery.mousewheel.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\lib\jquery.text-overflow.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\lib\jquery.tmpl.min.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\lib\jquery.xml2json.custom.min.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\lib\jquery.xml2json.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\lib\json2.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\lib\json2.min.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\lib\script2injectEmbedded.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\lib\script2injectPopup.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\lib\sdk.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\lib\jquery.alerts\jquery.alerts.css, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\lib\jquery.alerts\jquery.alerts.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\lib\jquery.alerts\images\help.gif, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\lib\jquery.alerts\images\important.gif, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\lib\jquery.alerts\images\info.gif, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\lib\jquery.alerts\images\title.gif, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\lib\jquery.jscrollpane\jquery.jscrollpane.css, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\lib\jquery.jscrollpane\jquery.jscrollpane.min.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\tb\sl\serviceLayer.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\test\toolbar\backstage.html, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\test\toolbar\frontstage.html, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\test\toolbar\navigationTests.html, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\test\toolbar\popup.html, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\test\toolbar\js\framework.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\test\toolbar\lib\jquery-1.4.1.min.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\test\toolbar\lib\jquery-1.5.min.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\test\toolbar\lib\jquery-1.6.2.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\test\toolbar\lib\json2.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\test\toolbar\lib\LAB.min.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\test\toolbar\lib\log4javascript.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Chrome\CT3241949\content\test\toolbar\lib\log4javascriptStub4Release.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\components\autoCompleteManager.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\components\mam\mamModule.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\ctypes\FirefoxCtype.dll, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\defaults\preferences\defaults.js, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\lib\log4conduit.jsm, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\lib\log4moz.jsm, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\META-INF\manifest.mf, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\META-INF\zigbert.rsa, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\META-INF\zigbert.sf, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\modules\BackStage.jsm, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\modules\Commons.jsm, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\modules\FrontStage.jsm, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Plugins\np-mswmp.dll, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.FileConverter, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee}\Plugins\npFirefoxPlugin.dll, In Quarantäne, [13a1ec92375496a0a643ed7c30d2639d], PUP.Optional.ValueApps, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\valueApps\CT3241949\_9B+7E0x305.txt, In Quarantäne, [30841e60cebd68ceede4720c34ceef11], PUP.Optional.ValueApps, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\valueApps\CT3241949\mam_gk_appsConfig.txt, In Quarantäne, [30841e60cebd68ceede4720c34ceef11], PUP.Optional.ValueApps, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\valueApps\CT3241949\mam_gk_eventsCache.txt, In Quarantäne, [30841e60cebd68ceede4720c34ceef11], PUP.Optional.ValueApps, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\valueApps\CT3241949\mam_gk_localization.txt, In Quarantäne, [30841e60cebd68ceede4720c34ceef11], PUP.Optional.ValueApps, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\valueApps\CT3241949\mam_gk_settings1.13.0.17.txt, In Quarantäne, [30841e60cebd68ceede4720c34ceef11], PUP.Optional.ValueApps, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\valueApps\CT3241949\_9B+7E+x305.txt, In Quarantäne, [30841e60cebd68ceede4720c34ceef11], PUP.Optional.ValueApps, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\valueApps\CT3241949\_9B+7E,x305.txt, In Quarantäne, [30841e60cebd68ceede4720c34ceef11], PUP.Optional.ValueApps, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\valueApps\CT3241949\_9B+7E-x305.txt, In Quarantäne, [30841e60cebd68ceede4720c34ceef11], PUP.Optional.ValueApps, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\valueApps\CT3241949\_9B+7E.x305.txt, In Quarantäne, [30841e60cebd68ceede4720c34ceef11], PUP.Optional.ValueApps, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\valueApps\CT3241949\_9B+7E._2z527.txt, In Quarantäne, [30841e60cebd68ceede4720c34ceef11], PUP.Optional.ValueApps, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\valueApps\CT3241949\_9B+7E1x305.txt, In Quarantäne, [30841e60cebd68ceede4720c34ceef11], PUP.Optional.ValueApps, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\valueApps\CT3241949\_9B+7E2x305.txt, In Quarantäne, [30841e60cebd68ceede4720c34ceef11], PUP.Optional.ValueApps, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\valueApps\CT3241949\_9B+7E3x305.txt, In Quarantäne, [30841e60cebd68ceede4720c34ceef11], PUP.Optional.ValueApps, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\valueApps\CT3241949\_9B+7E4x305.txt, In Quarantäne, [30841e60cebd68ceede4720c34ceef11], PUP.Optional.ValueApps, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\valueApps\CT3241949\_9B+7E5x305.txt, In Quarantäne, [30841e60cebd68ceede4720c34ceef11], PUP.Optional.ValueApps, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\valueApps\CT3241949\_9B+7E6x305.txt, In Quarantäne, [30841e60cebd68ceede4720c34ceef11], PUP.Optional.ValueApps, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\valueApps\CT3241949\_9B+7E7x305.txt, In Quarantäne, [30841e60cebd68ceede4720c34ceef11], PUP.Optional.ValueApps, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\valueApps\CT3241949\_9B+7E8x305.txt, In Quarantäne, [30841e60cebd68ceede4720c34ceef11], PUP.Optional.ValueApps, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\valueApps\CT3241949\_9B+7E9x305.txt, In Quarantäne, [30841e60cebd68ceede4720c34ceef11], PUP.Optional.ValueApps, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\valueApps\CT3241949\_9B+7E;x305.txt, In Quarantäne, [30841e60cebd68ceede4720c34ceef11], PUP.Optional.ValueApps, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\valueApps\CT3241949\_9B+7E=x305.txt, In Quarantäne, [30841e60cebd68ceede4720c34ceef11], PUP.Optional.ValueApps, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\valueApps\CT3241949\_9B+7E@x305.txt, In Quarantäne, [30841e60cebd68ceede4720c34ceef11], PUP.Optional.ValueApps, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\valueApps\CT3241949\_9B+7EAx305.txt, In Quarantäne, [30841e60cebd68ceede4720c34ceef11], PUP.Optional.ValueApps, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\valueApps\CT3241949\_9B+7EBx305.txt, In Quarantäne, [30841e60cebd68ceede4720c34ceef11], PUP.Optional.ValueApps, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\valueApps\CT3241949\_9B+7ECx305.txt, In Quarantäne, [30841e60cebd68ceede4720c34ceef11], PUP.Optional.ValueApps, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\valueApps\CT3241949\_9B+7EDx305.txt, In Quarantäne, [30841e60cebd68ceede4720c34ceef11], PUP.Optional.ValueApps, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\valueApps\CT3241949\_9B+7Etx305.txt, In Quarantäne, [30841e60cebd68ceede4720c34ceef11], PUP.Optional.ValueApps, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\valueApps\CT3241949\_9B+7E_x305.txt, In Quarantäne, [30841e60cebd68ceede4720c34ceef11], PUP.Optional.Conduit, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js, Gut: (), Schlecht: (user_pref("CT3241949.SearchFromAddressBarUrl", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT3241949&SearchSource=2&q=");), Ersetzt,[5e56c2bcb7d4aa8c347051298183c040] PUP.Optional.Trovi, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js, Gut: (), Schlecht: (user_pref("keyword.URL", "hxxp://trovi.com/ResultsExt.aspx?ctid=CT3241949&SearchSource=2&CUI=UN86327238471420886&UM=false&q=");), Ersetzt,[3f758af42d5e59dd77786a110df7f907] PUP.Optional.Conduit, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js, Gut: (browser.startup.homepage", "https://www.malwarebytes.org/restorebrowser/), Schlecht: (browser.startup.homepage", "hxxp://search.conduit.com), Ersetzt,[b8fc95e9f09b04324a41770a16ee40c0] PUP.Optional.Conduit, C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\searchplugins\fileconverter-13-customized-web-search-1.xml, In Quarantäne, [cee6344aa9e2db5b54a0fc8016eefd03], Physische Sektoren: 0 (keine bösartigen Elemente erkannt) (end) |
16.11.2015, 19:28 | #14 |
| Win7: Programme/Dienste lassen sich nicht starten + Help_Decrypt Befall AdwCleaner Log: Code:
ATTFilter # AdwCleaner v5.021 - Bericht erstellt am 16/11/2015 um 20:04:26 # Aktualisiert am 14/11/2015 von Xplode # Datenbank : 2015-11-13.3 [Server] # Betriebssystem : Windows 7 Home Premium Service Pack 1 (x64) # Benutzername : DJ Dolphin - WAVEMASTER # Gestartet von : C:\Users\DJ Dolphin\Desktop\AdwCleaner_5.021.exe # Option : Löschen # Unterstützung : hxxp://toolslib.net/forum ***** [ Dienste ] ***** ***** [ Ordner ] ***** [-] Ordner Gelöscht : C:\ProgramData\7531CC924A96F65C9AC9F64F4F147CE7 [-] Ordner Gelöscht : C:\Users\DJ Dolphin\AppData\Local\Ilivid Player [-] Ordner Gelöscht : C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\Smartbar [-] Ordner Gelöscht : C:\Users\Gast\AppData\LocalLow\AskToolbar [-] Ordner Gelöscht : C:\Users\Gast\AppData\LocalLow\vShare ***** [ Dateien ] ***** [-] Datei Gelöscht : C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\user.js ***** [ DLLs ] ***** ***** [ Verknüpfungen ] ***** ***** [ Aufgabenplanung ] ***** ***** [ Registrierungsdatenbank ] ***** [-] Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{3CCC052E-BDEE-408A-BEA7-90914EF2964B} [-] Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{61F47056-E400-43D3-AF1E-AB7DFFD4C4AD} [-] Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{E2B98EEA-EE55-4E9B-A8C1-6E5288DF785A} [-] Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{3B7599DF-3D5D-4EF5-BF51-9C2EDA788E83} [-] Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{A1B48071-416D-474E-A13B-BE5456E7FC31} [-] Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{3B7599DF-3D5D-4EF5-BF51-9C2EDA788E83} [-] Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{A1B48071-416D-474E-A13B-BE5456E7FC31} [-] Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{20ED5AF7-D9C4-409E-9EB3-D2A44A77FB6D} [-] Schlüssel Gelöscht : HKCU\Software\Conduit [-] Schlüssel Gelöscht : HKCU\Software\OCS [-] Schlüssel Gelöscht : HKCU\Software\Avg Secure Update [-] Schlüssel Gelöscht : HKU\.DEFAULT\Software\Avg Secure Update ***** [ Internetbrowser ] ***** [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.1000082.isDisplayHidden", "true"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.1000082.isPlayDisplay", "true"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.1000082.state", "{\"state\":\"stopped\",\"text\":\"Californi...\",\"description\":\"California Rock\",\"url\":\"hxxp://feedlive.net/california.asx\"}"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.1000234.TWC_TMP_city", "VERL"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.1000234.TWC_TMP_country", "DE"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.1000234.TWC_locId", "GMXX6180"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.1000234.TWC_location", "Verl, Deutschland"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.1000234.TWC_region", "DE"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.1000234.TWC_temp_dis", "c"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.1000234.TWC_wind_dis", "kmh"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.1000234.weatherData", "{\"icon\":\"33.png\",\"temperature\":\"13°C\",\"temperatureClear\":\"13°C\",\"highTemperature\":\"13°C\",\"lowTemperature\":\"12°C\",\"feelsLike\":\"13°C\",[...] [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.129498282976856742.isToggled_item0_11", "true"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.ENABALE_HISTORY", "{\"dataType\":\"string\",\"data\":\"true\"}"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.ENABLE_RETURN_WEB_SEARCH_ON_THE_PAGE", "{\"dataType\":\"string\",\"data\":\"true\"}"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.FirstTime", "true"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.FirstTimeFF3", "true"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.LoginRevertSettingsEnabled", true); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.PG_ENABLE", "dHJ1ZQ=="); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.PG_ENABLE.enc", "dHJ1ZQ=="); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.RestartDialogFirstTime", "false"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.RestartDialogShouldDisplay", "false"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.RevertSettingsEnabled", true); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.SF_JUST_INSTALLED.enc", "RkFMU0U="); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.SF_STATUS.enc", "RU5BQkxFRA=="); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.SF_USER_ID.enc", "Y2lkXzEwNjIwMTMwNDkzMDc4NTM4MjY="); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.UserID", "UN86327238471420886"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.addressBarTakeOverEnabledInHidden", "true"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.browser.search.defaultthis.engineName", true); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.cbfirsttime.enc", "U3VuIEp1biAwOSAyMDEzIDAxOjMxOjM1IEdNVCswMjAw"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.countryCode", "DE"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.enableAlerts", "always"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.enableFix404ByUser", "FALSE"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.event_data.enc", "JTVCJTVE"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.fired_events.enc", ""); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.firstTimeDialogOpened", "true"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.fixPageNotFoundErrorByUser", "TRUE"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.fixPageNotFoundErrorInHidden", "true"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.fixUrls", true); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.fullUserID", "UN86327238471420886.UP.20130626063823"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.hxxp___www_socialgrowthtechnologies_com_couponbuddy_v001.APP_WIN_FEATURES.enc", "b3BlbnBvc2l0aW9uPW9mZnNldDo1MDs1MCxzYXZlbG9jYXRpb249MCxyZXNpemFibGU9bm8sc2Nyb2xsYmFycz1ubyx0aXRsZW[...] [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.installType", "Unknown"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.isCheckedStartAsHidden", true); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.isEnableAllDialogs", "{\"dataType\":\"string\",\"data\":\"true\"}"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.isFirstTimeToolbarLoading", "false"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.isNewTabEnabled", true); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.isPerformedSmartBarTransition", "true"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.isToolbarShrinked", "{\"dataType\":\"string\",\"data\":\"true\"}"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.isWelcomPage", "{\"dataType\":\"boolean\",\"data\":\"true\"}"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.key_date.enc", "OQ=="); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.keyword", true); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.lastNewTabSettings", "{\"isEnabled\":true,\"newTabUrl\":\"hxxp://www.trovigo.com/?gd=&ctid=CT3241949&octid=CT3241949&ISID=ISID_ID&SearchSource=15&CUI=UN86327238471420886&Lay=1&UM=[...] [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.lastVersion", "10.38.0.509"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.mam_gk_appStateReportTime.enc", "MTM3MzMzNDU0NTc5MA=="); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.mam_gk_appState_CouponBuddy.enc", "b24="); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.mam_gk_appState_PriceGong.enc", "b24="); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.mam_gk_appState_WindowShopper.enc", "b24="); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.mam_gk_appsData.enc", "eyJhcHBzIjpbeyJpZCI6IlByaWNlR29uZyIsInVybCI6Imh0dHA6Ly9wcmljZWdvbmcuY29uZHVpdGFwcHMuY29tL01BTS92MS9odG1sX2NvbXAuaHRtbCIsIm9wdGlvbnNEaWFsb2ciOnsiZGlzcGxheU5h[...] [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.mam_gk_appsDefaultEnabled.enc", "bnVsbA=="); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.mam_gk_configuration.enc", "eyJjb25maWd1cmF0aW9uIjpbeyJpZCI6IkVhc3l0b2Jvb2tfdGFyZ2V0ZWQiLCJjcml0ZXJpYXMiOlt7ImNyaXRlcmlhSWQiOiJhZTZhY2VjOS1iZmNmLTQwNjktOTI3NC1kOTdjOGE4NDMzZDEiLCJ[...] [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.mam_gk_currentBadgeValue.enc", "MA=="); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.mam_gk_currentVersion.enc", "MS44LjAuNA=="); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.mam_gk_first_time.enc", "MQ=="); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.mam_gk_lastLoginTime.enc", "MTM3MzMzNDU0MjA5OA=="); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.mam_gk_localization.enc", "eyJnYWRnZXRDb250ZW50UG9saWN5Ijp7IlRleHQiOiJDb250ZW50LVJpY2h0bGluaWUifSwiZ2FkZ2V0RGVzY3JpcHRpb25QcmltYXJ5Ijp7IlRleHQiOiJWYWx1ZSBBcHBzIGJlcmVpY2hlcnQgSWhy[...] [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.mam_gk_newApps.enc", "W10="); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.mam_gk_pgUnloadedOnce.enc", "dHJ1ZQ=="); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.mam_gk_settings1.8.0.4.enc", "eyJTdGF0dXMiOiJzdWNjZWVkZWQiLCJEYXRhIjp7ImludGVydmFsIjoyNDAsInN0YW1wIjoiNDZfMCIsImlzVGVzdCI6dHJ1ZSwiVXNlckNvdW50cnlDb2RlIjoiREUiLCJpc1dlbGNvbWVFeHBlc[...] [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.mam_gk_showCloseButton.enc", "dHJ1ZQ=="); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.mam_gk_showWelcomeGadget.enc", "ZmFsc2U="); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.mam_gk_userId.enc", "NTM1OWQ3MjQtOWNiOC00NmQ3LTk0NTktNDkyODE5ZjgwM2Uy"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.migrateAppsAndComponents", true); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.navigationAliasesJson", "{\"EB_MAIN_FRAME_URL\":\"hxxp%3A%2F%2Fwww.clipfish.de%2Fspecial%2Fspielfilme%2Fvideo%2F4165154%2Fruss-meyer-die-satansweiber-von-tittfield%2F\",\"EB_MAIN_[...] [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.newSettings", "{\"dataType\":\"boolean\",\"data\":\"true\"}"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.originalHomepage", "hxxp://search.conduit.com/?ctid=CT3241949&SearchSource=13"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.originalSearchAddressUrl", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT3241949&SearchSource=2&CUI=UN86327238471420886&q="); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.originalSearchEngine", "FileConverter 1.3 Customized Web Search"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.originalSearchEngineName", "FileConverter 1.3 Customized Web Search"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.performedDomainChangesMigration", "true"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.personalApps", "{\"dataType\":\"object\",\"data\":\"[\\\"BROWSER_COMPONENT\\\"]\"}"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.search.searchAppId", "129887071061272563"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.search.searchCount", "1"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.searchInNewTabEnabledByUser", "true"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.searchInNewTabEnabledInHidden", "true"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.searchSuggestEnabledByUser", "true"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.searchUserMode", "false"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.selectToSearchBoxEnabled", "{\"dataType\":\"string\",\"data\":\"true\"}"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.serviceLayer_service_login_isFirstLoginInvoked", "{\"dataType\":\"boolean\",\"data\":\"true\"}"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.serviceLayer_service_login_loginCount", "{\"dataType\":\"number\",\"data\":\"4\"}"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.serviceLayer_service_toolbarGrouping_activeCTID", "{\"dataType\":\"string\",\"data\":\"CT3241949\"}"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.serviceLayer_service_toolbarGrouping_activeDownloadUrl", "{\"dataType\":\"string\",\"data\":\"hxxp://FileConverter13.OurToolbar.com//xpi\"}"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.serviceLayer_service_toolbarGrouping_activeToolbarName", "{\"dataType\":\"string\",\"data\":\"FileConverter 1.3 \"}"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.serviceLayer_service_toolbarGrouping_invoked", "{\"dataType\":\"string\",\"data\":\"true\"}"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.serviceLayer_service_usage_toolbarUsageCount", "{\"dataType\":\"number\",\"data\":\"2\"}"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.serviceLayer_services_Configuration_lastUpdate", "1447639234917"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.serviceLayer_services_appTrackingFirstTime_lastUpdate", "1447104169956"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.serviceLayer_services_appsMetadata_lastUpdate", "1447639233237"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.serviceLayer_services_gottenAppsContextMenu_lastUpdate", "1447104171044"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.serviceLayer_services_location_lastUpdate", "1372201814541"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.serviceLayer_services_login_10.13.1.89_lastUpdate", "1353024549346"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.serviceLayer_services_login_10.13.40.15_lastUpdate", "1358816794350"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.serviceLayer_services_login_10.14.40.128_lastUpdate", "1359431796239"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.serviceLayer_services_login_10.14.42.7_lastUpdate", "1360799096406"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.serviceLayer_services_login_10.14.65.43_lastUpdate", "1364009752430"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.serviceLayer_services_login_10.15.0.562_lastUpdate", "1370734361605"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.serviceLayer_services_login_10.16.2.509_lastUpdate", "1372202611921"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.serviceLayer_services_login_10.16.4.519_lastUpdate", "1374621724554"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.serviceLayer_services_login_10.16.70.505_lastUpdate", "1377830918176"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.serviceLayer_services_login_10.19.2.505_lastUpdate", "1378869420883"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.serviceLayer_services_login_10.20.0.513_lastUpdate", "1380687250557"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.serviceLayer_services_login_10.20.1.508_lastUpdate", "1382652739083"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.serviceLayer_services_login_10.21.1.507_lastUpdate", "1384562452267"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.serviceLayer_services_login_10.22.3.518_lastUpdate", "1385598240681"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.serviceLayer_services_login_10.22.5.510_lastUpdate", "1387260694207"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.serviceLayer_services_login_10.23.0.822_lastUpdate", "1405397680133"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.serviceLayer_services_login_10.33.0.505_lastUpdate", "1411123773197"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.serviceLayer_services_menu_769c590835a76d075fe33b9a87a87786_lastUpdate", "1447639234867"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.serviceLayer_services_menu_d32f45618f5a02bd965c56155a643855_lastUpdate", "1447639275356"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.serviceLayer_services_optimizer_lastUpdate", "1352430037798"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.serviceLayer_services_otherAppsContextMenu_lastUpdate", "1447104171122"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.serviceLayer_services_searchAPI_lastUpdate", "1447639233921"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.serviceLayer_services_serviceMap_lastUpdate", "1447639232410"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.serviceLayer_services_toolbarContextMenu_lastUpdate", "1447639232814"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.serviceLayer_services_toolbarSettings_lastUpdate", "1447639232721"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.serviceLayer_services_translation_lastUpdate", "1447639232542"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.settingsINI", true); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.showToolbarPermission", "false"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.smartbar.CTID", "CT3241949"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.smartbar.Uninstall", "0"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.smartbar.homepage", true); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.smartbar.isHidden", true); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.smartbar.toolbarName", "FileConverter 1.3 "); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.toolbarBornServerTime", "9-11-2012"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.toolbarCurrentServerTime", "17-8-2014"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.toolbarLoginClientTime", "Sun Mar 24 2013 03:41:50 GMT+0100"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949.url_history0001.enc", "aHR0cDovL3d3dy50aWJlcml1bWFsbGlhbmNlcy5jb20vZGUvbG9naW4vYXV0aDo6OmNsaWNraGFuZGxlcjo6OjEzNzIwMjMxOTc5MjMsLCxodHRwOi8vd3d3LnRpYmVyaXVtYWxsaWFuY2VzLmNvbS9kZS9s[...] [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("CT3241949_Firefox.csv", "[{\"from\":\"Abs Layer\",\"action\":\"loading toolbar\",\"time\":1447639223956,\"isWithState\":\"\",\"timeFromStart\":0,\"timeFromPrev\":0}]"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("Smartbar.ConduitHomepagesList", "hxxp://search.conduit.com/?CUI=UN86327238471420886&ctid=CT3241949&SearchSource=13"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("Smartbar.ConduitSearchEngineList", "FileConverter 1.3 Customized Web Search"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("Smartbar.ConduitSearchUrlList", "hxxp://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=3&ctid=CT3241949&CUI=UN86327238471420886"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("Smartbar.SearchFromAddressBarSavedUrl", "hxxp://startsear.ch/?aff=1&src=sp&cf=50cddec6-60cb-11e1-b1da-002318c83391&q="); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("Smartbar.TBHomepagesList", "hxxp://search.conduit.com/?CUI=UN86327238471420886&ctid=CT3241949&SearchSource=13"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("Smartbar.TBSearchEngineList", "FileConverter 1.3 Customized Web Search"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("Smartbar.TBSearchUrlList", "hxxp://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=3&ctid=CT3241949&CUI=UN86327238471420886"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("Smartbar.keywordURLSelectedCTID", "CT3241949"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("browser.search.defaultengine", "Web Search"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("browser.search.defaultenginename", "FileConverter 1.3 Customized Web Search"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("browser.search.order.1", "Web Search"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("browser.search.selectedEngine", "FileConverter 1.3 Customized Web Search"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("browser.startup.homepage", "hxxps://www.malwarebytes.org/restorebrowser//?CUI=UN86327238471420886&ctid=CT3241949&SearchSource=13"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("plugin.state.npconduitfirefoxplugin", 2); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("smartBar.searchInNewTabOwner", "CT3241949"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("smartbar.addressBarOwnerCTID", "CT3241949"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("smartbar.conduitHomepageList", "hxxp://search.conduit.com/?CUI=UN86327238471420886&ctid=CT3241949&SearchSource=13"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("smartbar.conduitSearchAddressUrlList", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT3241949&SearchSource=2&q=,hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT3241949&SearchSource=2&CU[...] [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("smartbar.defaultSearchOwnerCTID", "CT3241949"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("smartbar.homePageOwnerCTID", "CT3241949"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("smartbar.homepageList", "hxxp://search.conduit.com/?CUI=UN86327238471420886&ctid=CT3241949&SearchSource=13"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("smartbar.machineId", "P9NLDTBZGPJUNZPTVTK+MK5NWIBHNR5VWWH//TPUFKZSPNQHAEU/RZLRTTY6RWNHJ9MXDD9BQKVQJBMPBZ/+6W"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("smartbar.originalSearchAddressUrl", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT3241949&SearchSource=2&q="); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("smartbar.searchAddressUrlList", "hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT3241949&SearchSource=2&q=,hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT3241949&SearchSource=2&CUI=SB_CU[...] [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949./9B+7E+x305.storedInFile", true); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949./9B+7E,x305.storedInFile", true); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949./9B+7E-x305.storedInFile", true); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949./9B+7E.:2z527.storedInFile", true); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949./9B+7E.x305.storedInFile", true); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949./9B+7E/x305.storedInFile", true); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949./9B+7E06CG5EL8:", "6E6C716B6B7473767678"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949./9B+7E06CG5EL8:.storedInFile", false); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949./9B+7E06CG5EL;8I:K", "247E2D2F226A74727771717A797C7C7E242F4B49474F42357D5D5C3D"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949./9B+7E06CG5EL;8I:K.storedInFile", false); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949./9B+7E0x305.storedInFile", true); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949./9B+7E1x305.storedInFile", true); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949./9B+7E2x305.storedInFile", true); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949./9B+7E3x305.storedInFile", true); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949./9B+7E4x305.storedInFile", true); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949./9B+7E5x305.storedInFile", true); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949./9B+7E6x305.storedInFile", true); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949./9B+7E7x305.storedInFile", true); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949./9B+7E8x305.storedInFile", true); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949./9B+7E9x305.storedInFile", true); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949./9B+7E:x305.storedInFile", true); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949./9B+7E;x305.storedInFile", true); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949./9B+7E<x305.storedInFile", true); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949./9B+7E=x305.storedInFile", true); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949./9B+7E>x305.storedInFile", true); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949./9B+7E?x305.storedInFile", true); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949./9B+7E@x305.storedInFile", true); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949./9B+7EAx305.storedInFile", true); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949./9B+7EBE3G=;D9N9=D", "372C2D326975762E3A3C7B3A39434A494841434B265146492965504656496571734D334B57"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949./9B+7EBE3G=;D9N9=D.storedInFile", false); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949./9B+7EBx305.storedInFile", true); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949./9B+7ECx305.storedInFile", true); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949./9B+7EDx305.storedInFile", true); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949./9B+7Etx305.storedInFile", true); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949./9B-0?3G>D", "6A686F6B72413F6F7A427075782078777877254E7B22542A262821272958295A5D2F2E2F"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949./9B-0?3G>D.storedInFile", false); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949./9B-0?3G@6:5;", ""); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949./9B-0?3G@6:5;.storedInFile", false); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949./9B-0?3GFA7EF", "2B2E2C3D"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949./9B-0?3GFA7EF.storedInFile", false); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949./9B-3=3ECCJA=F>", "247E333D2C452F4135276F292A212C393D44307832332A354448584C3A23282E2E3132333435363B466068576C5E6857705A6C60606B6668563F73796F697861"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949./9B-3=3ECCJA=F>.storedInFile", false); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949./9B/>01=9A6K6<IM;KRIE@PDAWM", "6A696B7273747576"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949./9B/>01=9A6K6<IM;KRIE@PDAWM.storedInFile", false); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949./9B3=>@44I48?", "372C2D3269757633423633414847203E3D474E4D4C45474F2A554A4D2D5858585E4B554E366352564F"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949./9B3=>@44I48?.storedInFile", false); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949./9B5BA==9CJAG", "676D3F6F6F6E72757A74477573487D4B797A222052"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949./9B5BA==9CJAG.storedInFile", false); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949./9B6B11G4C56B>F;P;ANR@P", "6E6C716B6B747376776F787978"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949./9B6B11G4C56B>F;P;ANR@P.storedInFile", false); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949./9B90E@.3C;7B=?OFB>>RHIQS", "393F352F3E"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949./9B90E@.3C;7B=?OFB>>RHIQS.storedInFile", false); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949./9B9643G3/9E", "6A"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949./9B9643G3/9E.storedInFile", false); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949./9B;45>:BI9I7IE", "2B2E2C3D"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949./9B;45>:BI9I7IE.storedInFile", false); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949./9B<:222H64<", "393F352F3E"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949./9B<:222H64<.storedInFile", false); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949./9B<:222H64<L8DAJ", "6D70706E76746D7977752A7879727A7575207C"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949./9B<:222H64<L8DAJ.storedInFile", false); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949./9B=+03EH8H8J?:", "4443"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949./9B=+03EH8H8J?:.storedInFile", false); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949./9B?+E2A52D8", "372C2D326975762E3A3C7B3A39434A494841434B2651464929655046566470727951555E5E52"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949./9B?+E2A52D8.storedInFile", false); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949./9B?B0D:8AJ62<H", "6D"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949./9B?B0D:8AJ62<H.storedInFile", false); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949./9BA@0<0BI6A7GN:6@L?", "6C"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949./9BA@0<0BI6A7GN:6@L?.storedInFile", false); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949.PG_ENABLE", "74727565"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949.PG_ENABLE.storedInFile", false); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949._key_cl_active", "64333034376636362D306165612D346365662D613037352D306564313930303536383436"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949._key_cl_active.storedInFile", false); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949.mam_gk_appStateReportTime", "31343037383032303036353238"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949.mam_gk_appStateReportTime.storedInFile", false); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949.mam_gk_appState_Clarity_Active", "6F6E"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949.mam_gk_appState_Clarity_Active.storedInFile", false); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949.mam_gk_appState_CouponBuddy", "6F6666"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949.mam_gk_appState_CouponBuddy.storedInFile", false); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949.mam_gk_appState_Easytobook", "6F6666"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949.mam_gk_appState_Easytobook.storedInFile", false); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949.mam_gk_appState_Easytobook_targeted", "6F6666"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949.mam_gk_appState_Easytobook_targeted.storedInFile", false); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949.mam_gk_appState_GetDeal", "6F6666"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949.mam_gk_appState_GetDeal.storedInFile", false); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949.mam_gk_appState_WindowShopper", "6F6666"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949.mam_gk_appState_WindowShopper.storedInFile", false); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949.mam_gk_appsConfig.storedInFile", true); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949.mam_gk_appsDefaultEnabled", "6E756C6C"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949.mam_gk_appsDefaultEnabled.storedInFile", false); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949.mam_gk_calledSetupService", "31"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949.mam_gk_calledSetupService.storedInFile", false); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949.mam_gk_currentBadgeValue", "31"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949.mam_gk_currentBadgeValue.storedInFile", false); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949.mam_gk_currentVersion", "312E31332E302E3137"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949.mam_gk_currentVersion.storedInFile", false); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949.mam_gk_eventsCache", "7B2263396433626465392D393530312D346433662D386535332D366462636433636339643434223A7B22746F706963223A2273656E645573616765222C2264617461223A7B226361746[...] [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949.mam_gk_eventsCache.storedInFile", true); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949.mam_gk_existingUsersRecoveryDone", "31"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949.mam_gk_existingUsersRecoveryDone.storedInFile", false); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949.mam_gk_first_time", "31"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949.mam_gk_first_time.storedInFile", false); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949.mam_gk_gadgetOpen", "30"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949.mam_gk_gadgetOpen.storedInFile", false); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949.mam_gk_globalKeysMigratedToLocalStorage", "31"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949.mam_gk_globalKeysMigratedToLocalStorage.storedInFile", false); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949.mam_gk_lastLoginTime", "31343037383032303037313332"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949.mam_gk_lastLoginTime.storedInFile", false); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949.mam_gk_localization.storedInFile", true); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949.mam_gk_mamEnabled", "66616C7365"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949.mam_gk_mamEnabled.storedInFile", false); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949.mam_gk_migrated_from_ls", "31"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949.mam_gk_migrated_from_ls.storedInFile", false); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949.mam_gk_newApps", "5B5D"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949.mam_gk_newApps.storedInFile", false); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949.mam_gk_new_welcome_experience", "31"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949.mam_gk_new_welcome_experience.storedInFile", false); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949.mam_gk_settings1.13.0.17.storedInFile", true); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949.mam_gk_showWelcomeGadget", "66616C7365"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949.mam_gk_showWelcomeGadget.storedInFile", false); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949.mam_gk_stamp", "313130315F30"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949.mam_gk_stamp.storedInFile", false); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949.mam_gk_userBornDate", "4E2F41"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949.mam_gk_userBornDate.storedInFile", false); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949.mam_gk_userId", "65343366353932322D383632612D346533662D396333612D343536326635336630656638"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949.mam_gk_userId.storedInFile", false); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949.mam_gk_user_approval_interacted", "30"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949.mam_gk_user_approval_interacted.storedInFile", false); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949.mam_gk_welcomeDialogMode", "30"); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.CT3241949.mam_gk_welcomeDialogMode.storedInFile", false); [-] [C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\prefs.js] [Preference] Gelöscht : user_pref("valueApps.storage.mam_gk_userId", "65343366353932322D383632612D346533662D396333612D343536326635336630656638"); ************************* :: "Tracing" Schlüssel gelöscht :: Proxy Einstellungen zurückgesetzt :: Winsock Einstellungen zurückgesetzt :: Internet Explorer Richtlinien gelöscht :: Chrome Richtlinien gelöscht ########## EOF - C:\AdwCleaner\AdwCleaner[C1].txt - [60864 Bytes] ########## Code:
ATTFilter ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Junkware Removal Tool (JRT) by Malwarebytes Version: 7.6.4 (09.28.2015:1) OS: Windows 7 Home Premium x64 Ran by DJ Dolphin on 16.11.2015 at 20:19:59,04 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ ~~~ Services ~~~ Tasks Successfully deleted: [Task] C:\Windows\system32\tasks\TuneUpUtilities_Task_BkGndMaintenance2013 ~~~ Registry Values ~~~ Registry Keys Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{4858E7D9-8E12-45a3-B6A3-1CD128C9D403} Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{645FF040-5081-101B-9F08-00AA002F954E}\shell\TuneUp Undelete Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{171DEBEB-C3D4-40B7-AC73-056A5EBA4A7E} Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Policies\Microsoft\Internet Explorer ~~~ Files Successfully deleted: [File] C:\Windows\SysWOW64\sho195.tmp Successfully deleted: [File] C:\Windows\SysWOW64\sho5DB8.tmp Successfully deleted: [File] C:\Windows\SysWOW64\sho789C.tmp Successfully deleted: [File] C:\Windows\SysWOW64\sho7D99.tmp Successfully deleted: [File] C:\Windows\SysWOW64\sho81E7.tmp Successfully deleted: [File] C:\Windows\SysWOW64\shoA266.tmp Successfully deleted: [File] C:\Windows\SysWOW64\shoAFEE.tmp ~~~ Folders Successfully deleted: [Empty Folder] C:\Users\DJ Dolphin\Appdata\Local\{f33a9fd9-8bab-5d8d-0aa8-d6b57861b4a7} Successfully deleted: [Folder] C:\Users\DJ Dolphin\AppData\Roaming\pdfforge ~~~ FireFox Emptied folder: C:\Users\DJ Dolphin\AppData\Roaming\mozilla\firefox\profiles\dww49mks.default\minidumps [17 files] ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Scan was completed on 16.11.2015 at 20:24:38,43 End of JRT log ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ |
16.11.2015, 19:37 | #15 |
| Win7: Programme/Dienste lassen sich nicht starten + Help_Decrypt Befall Und nochmal FRST in 2 Teilen: Code:
ATTFilter Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version:07-11-2015 durchgeführt von DJ Dolphin (Administrator) auf WAVEMASTER (16-11-2015 20:29:07) Gestartet von C:\Users\DJ Dolphin\Desktop Geladene Profile: DJ Dolphin (Verfügbare Profile: DJ Dolphin & Gast) Platform: Windows 7 Home Premium Service Pack 1 (X64) Sprache: Deutsch (Deutschland) Internet Explorer Version 9 (Standard-Browser: IE) Start-Modus: Normal Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Prozesse (Nicht auf der Ausnahmeliste) ================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.) (Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\avp.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer3\TeamViewer_Service.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (TOSHIBA Corporation) C:\Program Files\TOSHIBA\FlashCards\TCrdMain.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgwdsvcx.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesService64.exe (Nero AG) C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe (Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesApp64.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgnsa.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgemca.exe (Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgrsa.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgcsrva.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe ==================== Registry (Nicht auf der Ausnahmeliste) =========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.) HKLM\...\Run: [Toshiba TEMPRO] => C:\Program Files (x86)\Toshiba TEMPRO\TemproTray.exe [1050072 2010-05-11] (Toshiba Europe GmbH) HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [10144288 2010-04-06] (Realtek Semiconductor) HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2107176 2010-03-11] (Synaptics Incorporated) HKLM\...\Run: [TPwrMain] => C:\Program Files\TOSHIBA\Power Saver\TPwrMain.EXE [505768 2010-05-25] (TOSHIBA Corporation) HKLM\...\Run: [HSON] => C:\Program Files\TOSHIBA\TBS\HSON.exe [52600 2009-03-09] (TOSHIBA Corporation) HKLM\...\Run: [SmoothView] => C:\Program Files\Toshiba\SmoothView\SmoothView.exe [570680 2009-08-13] (TOSHIBA Corporation) HKLM\...\Run: [00TCrdMain] => C:\Program Files\TOSHIBA\FlashCards\TCrdMain.exe [915320 2010-05-10] (TOSHIBA Corporation) HKLM\...\Run: [Teco] => C:\Program Files\TOSHIBA\TECO\Teco.exe [1504608 2010-04-23] (TOSHIBA Corporation) HKLM\...\Run: [TosSENotify] => C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosWaitSrv.exe [709976 2010-02-05] (TOSHIBA Corporation) HKLM\...\Run: [ThpSrv] => C:\Windows\system32\thpsrv /logon HKLM\...\Run: [TosWaitSrv] => C:\Program Files\TOSHIBA\TPHM\TosWaitSrv.exe [705432 2010-05-10] (TOSHIBA Corporation) HKLM\...\Run: [TosVolRegulator] => C:\Program Files\TOSHIBA\TosVolRegulator\TosVolRegulator.exe [24376 2009-11-11] (TOSHIBA Corporation) HKLM\...\Run: [Toshiba Registration] => C:\Program Files\Toshiba\Registration\ToshibaReminder.exe [136136 2010-04-19] (Toshiba Europe GmbH) HKLM-x32\...\Run: [NBAgent] => c:\Program Files (x86)\Nero\Nero BackItUp & Burn\Nero BackItUp\NBAgent.exe [1086760 2010-03-09] (Nero AG) HKLM-x32\...\Run: [TOSDCR] => C:\Program Files (x86)\TOSHIBA\PasswordUtility\TOSDCR.exe [169296 2007-08-28] () HKLM-x32\...\Run: [TWebCamera] => C:\Program Files (x86)\TOSHIBA\TOSHIBA Web Camera Application\TWebCamera.exe [2454840 2010-05-01] (TOSHIBA CORPORATION.) HKLM-x32\...\Run: [ITSecMng] => C:\Program Files (x86)\TOSHIBA\Bluetooth Toshiba Stack\ItSecMng.exe [83336 2009-07-22] (TOSHIBA CORPORATION) HKLM-x32\...\Run: [TSleepSrv] => C:\Program Files (x86)\TOSHIBA\TOSHIBA Sleep Utility\TSleepSrv.exe [252728 2010-04-01] (TOSHIBA) HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [59720 2013-04-21] (Apple Inc.) HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [31016 2006-10-27] (Microsoft Corporation) HKLM-x32\...\Run: [AvgUi] => C:\Program Files (x86)\AVG\Framework\Common\avguix.exe [1130408 2015-10-16] (AVG Technologies CZ, s.r.o.) HKLM-x32\...\Run: [AVG_UI] => C:\Program Files (x86)\AVG\Av\avgui.exe [3826600 2015-10-30] (AVG Technologies CZ, s.r.o.) Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation) HKU\S-1-5-21-2290779612-799622330-4084932457-1000\...\Run: [ICQ] => C:\Program Files (x86)\ICQ7.6\ICQ.exe [127040 2011-10-10] (ICQ, LLC.) HKU\S-1-5-21-2290779612-799622330-4084932457-1000\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3696912 2014-03-04] (Disc Soft Ltd) HKU\S-1-5-18\...\Run: [TOSHIBA Online Product Information] => C:\Program Files (x86)\TOSHIBA\TOSHIBA Online Product Information\topi.exe [4581280 2010-03-03] (TOSHIBA) HKU\S-1-5-18\...\RunOnce: [SPReview] => C:\Windows\System32\SPReview\SPReview.exe [301568 2015-11-16] (Microsoft Corporation) Startup: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\TRDCReminder.lnk [2010-06-08] ShortcutTarget: TRDCReminder.lnk -> C:\Program Files (x86)\TOSHIBA\TRDCReminder\TRDCReminder.exe (TOSHIBA Europe) Startup: C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\TRDCReminder.lnk [2010-06-08] ShortcutTarget: TRDCReminder.lnk -> C:\Program Files (x86)\TOSHIBA\TRDCReminder\TRDCReminder.exe (TOSHIBA Europe) ==================== Internet (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.) Tcpip\Parameters: [DhcpNameServer] 192.168.178.1 Tcpip\..\Interfaces\{008C72E9-AED1-42EC-AC7B-44109F03D9B3}: [NameServer] 193.189.244.225 193.189.244.206 Tcpip\..\Interfaces\{01A8C316-0DD0-450A-8546-EC410E51E72E}: [NameServer] 193.189.244.225 193.189.244.206 Tcpip\..\Interfaces\{D90834D8-2216-4093-B695-FD8551D08914}: [DhcpNameServer] 192.168.178.1 Tcpip\..\Interfaces\{FF0CBC07-64D7-4841-B6C9-E10BAB31C86D}: [DhcpNameServer] 192.168.178.1 Internet Explorer: ================== HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.com HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=msnhome HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://toshiba.msn.com HKU\S-1-5-21-2290779612-799622330-4084932457-1000\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch HKU\S-1-5-21-2290779612-799622330-4084932457-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://toshiba.msn.com/ SearchScopes: HKLM -> DefaultScope {E39C11DC-F612-45BF-9503-C474AB02C80B} URL = hxxp://www.bing.com/search?q={searchTerms}&form=TSHMDF&pc=MATM&src=IE-SearchBox SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKLM -> {E39C11DC-F612-45BF-9503-C474AB02C80B} URL = hxxp://www.bing.com/search?q={searchTerms}&form=TSHMDF&pc=MATM&src=IE-SearchBox SearchScopes: HKLM-x32 -> DefaultScope {F22327E2-9ADE-4944-8D9C-47781C53DF16} URL = SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKLM-x32 -> {8983339A-BF46-4E86-8035-2B5E03A29E7C} URL = hxxp://www.bing.com/search?q={searchTerms}&form=TSHMDF&pc=MATM&src=IE-SearchBox SearchScopes: HKU\S-1-5-21-2290779612-799622330-4084932457-1000 -> {8983339A-BF46-4E86-8035-2B5E03A29E7C} URL = BHO: Content Blocker Plugin -> {03C04F0A-E2A3-4F7F-BA30-BFA06FFD1358} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\x64\IEExt\ie_plugin.dll [2014-08-30] (Kaspersky Lab ZAO) BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18] (Microsoft Corporation) BHO: Virtual Keyboard Plugin -> {B5D5BB14-C8E2-478D-9C97-574AC10AF9E8} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\x64\IEExt\ie_plugin.dll [2014-08-30] (Kaspersky Lab ZAO) BHO: Safe Money Plugin -> {E3D96E85-529D-4269-AC6A-97CF9E2221E3} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\x64\IEExt\ie_plugin.dll [2014-08-30] (Kaspersky Lab ZAO) BHO-x32: Content Blocker Plugin -> {03C04F0A-E2A3-4F7F-BA30-BFA06FFD1358} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\IEExt\ie_plugin.dll [2014-08-30] (Kaspersky Lab ZAO) BHO-x32: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2012-12-18] (Adobe Systems Incorporated) BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2006-10-27] (Microsoft Corporation) BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_31\bin\ssv.dll [2015-02-05] (Oracle Corporation) BHO-x32: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-08-18] (Microsoft Corporation) BHO-x32: Skype add-on for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2010-02-08] (Skype Technologies S.A.) BHO-x32: Virtual Keyboard Plugin -> {B5D5BB14-C8E2-478D-9C97-574AC10AF9E8} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\IEExt\ie_plugin.dll [2014-08-30] (Kaspersky Lab ZAO) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_31\bin\jp2ssv.dll [2015-02-05] (Oracle Corporation) BHO-x32: Safe Money Plugin -> {E3D96E85-529D-4269-AC6A-97CF9E2221E3} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\IEExt\ie_plugin.dll [2014-08-30] (Kaspersky Lab ZAO) BHO-x32: TOSHIBA Media Controller Plug-in -> {F3C88694-EFFA-4d78-B409-54B7B2535B14} -> C:\Program Files (x86)\TOSHIBA\TOSHIBA Media Controller Plug-in\TOSHIBAMediaControllerIE.dll [2010-03-19] (<TOSHIBA>) DPF: HKLM-x32 {000F1EA4-5E08-4564-A29B-29076F63A37A} hxxp://launch.soe.com/plugin/web/SOEWebInstaller.cab DPF: HKLM-x32 {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} hxxp://appldnld.apple.com.edgesuite.net/content.info.apple.com/QuickTime/qtactivex/qtplugin.cab DPF: HKLM-x32 {67DABFBF-D0AB-41FA-9C46-CC0F21721616} hxxp://download.divx.com/player/DivXBrowserPlugin.cab DPF: HKLM-x32 {D27CDB6E-AE6D-11CF-96B8-444553540000} hxxp://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab Handler-x32: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.14.0.8089.0726.dll [2009-07-26] (Microsoft Corporation) Handler-x32: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.14.0.8089.0726.dll [2009-07-26] (Microsoft Corporation) Handler-x32: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll [2010-02-08] (Skype Technologies S.A.) Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll [2010-02-22] (Skype Technologies) FireFox: ======== FF ProfilePath: C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default FF NetworkProxy: "type", 0 FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_11_4_402_287.dll [2012-10-10] () FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_4_402_287.dll [2012-10-10] () FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2011-06-20] (Foxit Corporation) FF Plugin-x32: @Google.com/GoogleEarthPlugin -> C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll [2013-10-07] (Google) FF Plugin-x32: @java.com/DTPlugin,version=11.31.2 -> C:\Program Files (x86)\Java\jre1.8.0_31\bin\dtplugin\npDeployJava1.dll [2015-02-05] (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.31.2 -> C:\Program Files (x86)\Java\jre1.8.0_31\bin\plugin2\npjp2.dll [2015-02-05] (Oracle Corporation) FF Plugin-x32: @kaspersky.com/content_blocker_6418E0D362104DADA084DC312DFA8ABC -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\FFExt\content_blocker@kaspersky.com [2014-12-17] () FF Plugin-x32: @kaspersky.com/online_banking_69A4E213815F42BD863D889007201D82 -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\FFExt\online_banking@kaspersky.com [2014-12-17] () FF Plugin-x32: @kaspersky.com/virtual_keyboard_294FF26A1D5B455495946778FDE7CEDB -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\FFExt\virtual_keyboard@kaspersky.com [2014-12-17] () FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\3.0.40818.0\npctrl.dll [2009-08-17] ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=14.0.8081.0709 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2009-07-10] (Microsoft Corporation) FF Plugin-x32: @real.com/nppl3260;version=6.0.12.448 -> C:\Program Files (x86)\Win7codecs\rm\browser\plugins\nppl3260.dll [2010-02-04] (RealNetworks, Inc.) FF Plugin-x32: @real.com/nprpjplug;version=6.0.12.448 -> C:\Program Files (x86)\Win7codecs\rm\browser\plugins\nprpjplug.dll [2010-02-04] (RealNetworks, Inc.) FF Plugin-x32: @soe.sony.com/installer,version=1.0.3 -> C:\Windows\Downloaded Program Files\npsoe.dll [2011-06-09] () FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.28.15\npGoogleUpdate3.dll [2015-10-12] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.28.15\npGoogleUpdate3.dll [2015-10-12] (Google Inc.) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll [2012-12-18] (Adobe Systems Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\NPOFF12.DLL [2006-10-26] (Microsoft Corporation) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nppdf32.dll [2012-12-18] (Adobe Systems Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin.dll [2013-09-02] (Apple Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin2.dll [2013-09-02] (Apple Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin3.dll [2013-09-02] (Apple Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin4.dll [2013-09-02] (Apple Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npqtplugin5.dll [2013-09-02] (Apple Inc.) FF Extension: Greasemonkey - C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\Extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}.xpi [2015-10-11] FF HKLM-x32\...\Firefox\Extensions: [content_blocker_6418E0D362104DADA084DC312DFA8ABC@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\FFExt\content_blocker@kaspersky.com FF Extension: Dangerous Websites Blocker - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\FFExt\content_blocker@kaspersky.com [2014-12-17] [ist nicht signiert] FF HKLM-x32\...\Firefox\Extensions: [virtual_keyboard_294FF26A1D5B455495946778FDE7CEDB@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\FFExt\virtual_keyboard@kaspersky.com FF Extension: Virtual Keyboard - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\FFExt\virtual_keyboard@kaspersky.com [2014-12-17] [ist nicht signiert] FF HKLM-x32\...\Firefox\Extensions: [online_banking_69A4E213815F42BD863D889007201D82@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\FFExt\online_banking@kaspersky.com FF Extension: Safe Money - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\FFExt\online_banking@kaspersky.com [2014-12-17] [ist nicht signiert] FF Extension: Kein Name - C:\Users\DJ Dolphin\AppData\Roaming\Mozilla\Firefox\Profiles\dww49mks.default\extensions\{78e516ef-11de-47a1-8364-a99b917ec5ee} [nicht gefunden] Chrome: ======= CHR HKLM-x32\...\Chrome\Extension: [dbhjdbfgekjfcfkkfjjmlmojhbllhbho] - hxxps://chrome.google.com/webstore/detail/dbhjdbfgekjfcfkkfjjmlmojhbllhbho ==================== Dienste (Nicht auf der Ausnahmeliste) ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) S3 AvgAMPS; C:\Program Files (x86)\AVG\Av\avgamps.exe [595376 2015-10-30] (AVG Technologies CZ, s.r.o.) S2 AVGIDSAgent; C:\Program Files (x86)\AVG\Av\avgidsagent.exe [3815648 2015-10-30] (AVG Technologies CZ, s.r.o.) R2 avgsvc; C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe [1046952 2015-10-16] (AVG Technologies CZ, s.r.o.) R2 avgwd; C:\Program Files (x86)\AVG\Av\avgwdsvcx.exe [579776 2015-10-30] (AVG Technologies CZ, s.r.o.) R2 AVP15.0.1; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 15.0.1\avp.exe [234520 2014-08-30] (Kaspersky Lab ZAO) S2 MBAMService; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe [1135416 2015-10-05] (Malwarebytes) R2 TeamViewer; C:\Program Files (x86)\TeamViewer3\TeamViewer_Service.exe [181544 2008-09-25] (TeamViewer GmbH) S3 TemproMonitoringService; C:\Program Files (x86)\Toshiba TEMPRO\TemproSvc.exe [124368 2010-05-11] (Toshiba Europe GmbH) R2 TuneUp.UtilitiesSvc; C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesService64.exe [4368808 2015-10-14] (AVG Technologies CZ, s.r.o.) S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2009-07-14] (Microsoft Corporation) ===================== Treiber (Nicht auf der Ausnahmeliste) ========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) U5 AppMgmt; C:\Windows\system32\svchost.exe [27136 2009-07-14] (Microsoft Corporation) R1 Avgdiska; C:\Windows\System32\DRIVERS\avgdiska.sys [197040 2015-08-10] (AVG Technologies CZ, s.r.o.) R1 AVGIDSDriver; C:\Windows\System32\DRIVERS\avgidsdrivera.sys [313776 2015-10-19] (AVG Technologies CZ, s.r.o.) R0 AVGIDSHA; C:\Windows\System32\DRIVERS\avgidsha.sys [298416 2015-08-20] (AVG Technologies CZ, s.r.o.) R1 Avgldx64; C:\Windows\System32\DRIVERS\avgldx64.sys [284080 2015-10-21] (AVG Technologies CZ, s.r.o.) R0 Avgloga; C:\Windows\System32\DRIVERS\avgloga.sys [398256 2015-08-14] (AVG Technologies CZ, s.r.o.) R0 Avgmfx64; C:\Windows\System32\DRIVERS\avgmfx64.sys [255408 2015-10-21] (AVG Technologies CZ, s.r.o.) R0 Avgrkx64; C:\Windows\System32\DRIVERS\avgrkx64.sys [42416 2015-08-10] (AVG Technologies CZ, s.r.o.) R1 Avgtdia; C:\Windows\System32\DRIVERS\avgtdia.sys [302000 2015-10-08] (AVG Technologies CZ, s.r.o.) R0 cm_km_w; C:\Windows\System32\DRIVERS\cm_km_w.sys [238288 2013-01-14] (Kaspersky Lab UK Ltd) R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283064 2014-04-20] (Disc Soft Ltd) S3 ebdrv; C:\Windows\system32\DRIVERS\evbda.sys [3286016 2009-06-10] (Broadcom Corporation) S3 ewusbnet; C:\Windows\System32\DRIVERS\ewusbnet.sys [250368 2010-04-07] (Huawei Technologies Co., Ltd.) R0 kl1; C:\Windows\System32\DRIVERS\kl1.sys [468576 2014-03-31] (Kaspersky Lab ZAO) R2 kldisk; C:\Windows\System32\DRIVERS\kldisk.sys [46144 2014-07-02] (Kaspersky Lab ZAO) R3 klflt; C:\Windows\System32\DRIVERS\klflt.sys [150536 2014-08-18] (Kaspersky Lab ZAO) R1 klhk; C:\Windows\System32\DRIVERS\klhk.sys [246456 2014-08-12] (Kaspersky Lab ZAO) R1 KLIF; C:\Windows\System32\DRIVERS\klif.sys [820232 2014-08-20] (Kaspersky Lab ZAO) R1 KLIM6; C:\Windows\System32\DRIVERS\klim6.sys [30304 2014-02-25] (Kaspersky Lab ZAO) R3 klkbdflt; C:\Windows\System32\DRIVERS\klkbdflt.sys [28768 2014-03-28] (Kaspersky Lab ZAO) R3 klmouflt; C:\Windows\System32\DRIVERS\klmouflt.sys [29280 2013-08-08] (Kaspersky Lab ZAO) R1 klpd; C:\Windows\System32\DRIVERS\klpd.sys [15456 2013-04-12] (Kaspersky Lab ZAO) R1 kltdi; C:\Windows\System32\DRIVERS\kltdi.sys [55872 2014-06-05] (Kaspersky Lab ZAO) R1 Klwtp; C:\Windows\System32\DRIVERS\klwtp.sys [74424 2014-08-13] (Kaspersky Lab ZAO) R1 kneps; C:\Windows\System32\DRIVERS\kneps.sys [179776 2014-07-09] (Kaspersky Lab ZAO) R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2015-10-05] (Malwarebytes) S3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [63704 2015-10-05] (Malwarebytes Corporation) S3 pfc; C:\Windows\SysWOW64\drivers\pfc.sys [14604 2003-08-11] (Padus, Inc.) [Datei ist nicht signiert] R3 TuneUpUtilitiesDrv; C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesDriver64.sys [31144 2015-10-14] (TuneUp Software) S3 YMIDUSBW; C:\Windows\System32\drivers\ymidusbx64.sys [51496 2013-04-04] (Yamaha Corporation) S3 catchme; \??\C:\ComboFix\catchme.sys [X] ==================== NetSvcs (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Ein Monat: Erstellte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2015-11-16 20:24 - 2015-11-16 20:24 - 00001945 _____ C:\Users\DJ Dolphin\Desktop\JRT.txt 2015-11-16 20:18 - 2015-11-16 20:18 - 01798976 _____ (Malwarebytes) C:\Users\DJ Dolphin\Desktop\JRT.exe 2015-11-16 20:01 - 2015-11-16 20:04 - 00000000 ____D C:\AdwCleaner 2015-11-16 19:55 - 2015-11-16 19:55 - 01732096 _____ C:\Users\DJ Dolphin\Desktop\AdwCleaner_5.021.exe 2015-11-16 19:42 - 2015-11-16 19:42 - 00222735 _____ C:\Users\DJ Dolphin\Desktop\mbam.txt 2015-11-16 17:50 - 2015-11-16 19:41 - 00192216 _____ (Malwarebytes) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2015-11-16 17:50 - 2015-11-16 17:50 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 2015-11-16 17:50 - 2015-11-16 17:50 - 00000000 ____D C:\Program Files (x86)\ Malwarebytes Anti-Malware 2015-11-16 17:50 - 2015-10-05 09:50 - 00063704 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys 2015-11-16 16:51 - 2014-05-14 18:23 - 02477536 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll 2015-11-16 16:51 - 2014-05-14 18:23 - 00058336 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe 2015-11-16 16:51 - 2014-05-14 18:23 - 00044512 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll 2015-11-16 16:51 - 2014-05-14 18:21 - 02620928 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll 2015-11-16 16:50 - 2014-05-14 09:23 - 00198600 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll 2015-11-16 16:50 - 2014-05-14 09:23 - 00179656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll 2015-11-16 16:50 - 2014-05-14 09:20 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe 2015-11-16 16:50 - 2014-05-14 09:17 - 00033792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe 2015-11-16 03:13 - 2015-11-16 03:18 - 00000000 ____D C:\Windows\system32\MRT 2015-11-16 03:02 - 2015-11-16 03:02 - 00000000 ____D C:\Windows\system32\SPReview 2015-11-16 03:01 - 2015-11-16 03:01 - 00000000 ____D C:\Windows\system32\EventProviders 2015-11-16 02:57 - 2015-11-16 02:57 - 00027176 _____ C:\ComboFix.txt 2015-11-16 02:25 - 2015-11-16 02:59 - 00000000 ____D C:\Qoobox 2015-11-16 02:25 - 2011-06-26 08:45 - 00256000 _____ C:\Windows\PEV.exe 2015-11-16 02:25 - 2010-11-07 19:20 - 00208896 _____ C:\Windows\MBR.exe 2015-11-16 02:25 - 2009-04-20 06:56 - 00060416 _____ (NirSoft) C:\Windows\NIRCMD.exe 2015-11-16 02:25 - 2000-08-31 02:00 - 00518144 _____ (SteelWerX) C:\Windows\SWREG.exe 2015-11-16 02:25 - 2000-08-31 02:00 - 00406528 _____ (SteelWerX) C:\Windows\SWSC.exe 2015-11-16 02:25 - 2000-08-31 02:00 - 00098816 _____ C:\Windows\sed.exe 2015-11-16 02:25 - 2000-08-31 02:00 - 00080412 _____ C:\Windows\grep.exe 2015-11-16 02:25 - 2000-08-31 02:00 - 00068096 _____ C:\Windows\zip.exe 2015-11-16 02:24 - 2015-11-16 02:55 - 00000000 ____D C:\Windows\erdnt 2015-11-16 02:16 - 2015-11-16 02:16 - 05637834 ____R (Swearware) C:\Users\DJ Dolphin\Desktop\ComboFix.exe 2015-11-15 19:53 - 2010-11-20 15:27 - 03715584 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll 2015-11-15 19:53 - 2010-11-20 15:27 - 00012288 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll 2015-11-15 19:53 - 2010-11-20 15:26 - 01838080 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll 2015-11-15 19:53 - 2010-11-20 14:19 - 03215872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll 2015-11-15 19:53 - 2010-11-20 13:07 - 00059392 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\TsUsbFlt.sys 2015-11-15 19:53 - 2010-11-05 03:58 - 01130824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dfshim.dll 2015-11-15 19:53 - 2010-11-05 03:57 - 01942856 _____ (Microsoft Corporation) C:\Windows\system32\dfshim.dll 2015-11-15 19:53 - 2010-11-05 03:57 - 00048976 _____ (Microsoft Corporation) C:\Windows\system32\netfxperf.dll 2015-11-15 19:52 - 2010-11-20 15:39 - 05066752 _____ (Microsoft Corporation) C:\Windows\system32\AuthFWSnapin.dll 2015-11-15 19:52 - 2010-11-20 15:34 - 00295808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\volsnap.sys 2015-11-15 19:52 - 2010-11-20 15:34 - 00215936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vhdmp.sys 2015-11-15 19:52 - 2010-11-20 15:33 - 01659776 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys 2015-11-15 19:52 - 2010-11-20 15:33 - 00982912 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys 2015-11-15 19:52 - 2010-11-20 15:33 - 00951680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys 2015-11-15 19:52 - 2010-11-20 15:33 - 00376192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys 2015-11-15 19:52 - 2010-11-20 15:33 - 00366976 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msrpc.sys 2015-11-15 19:52 - 2010-11-20 15:33 - 00299392 _____ (Microsoft Corporation) C:\Windows\system32\mcupdate_GenuineIntel.dll 2015-11-15 19:52 - 2010-11-20 15:33 - 00273792 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msiscsi.sys 2015-11-15 19:52 - 2010-11-20 15:33 - 00189824 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storport.sys 2015-11-15 19:52 - 2010-11-20 15:33 - 00166272 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvstor.sys 2015-11-15 19:52 - 2010-11-20 15:33 - 00148352 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvraid.sys 2015-11-15 19:52 - 2010-11-20 15:32 - 00107904 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\amdsata.sys 2015-11-15 19:52 - 2010-11-20 15:29 - 00345600 _____ (Microsoft Corporation) C:\Windows\system32\fveapi.dll 2015-11-15 19:52 - 2010-11-20 15:27 - 14633472 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll 2015-11-15 19:52 - 2010-11-20 15:27 - 03860992 _____ (Microsoft Corporation) C:\Windows\system32\UIRibbon.dll 2015-11-15 19:52 - 2010-11-20 15:27 - 03650560 _____ (Microsoft Corporation) C:\Windows\system32\MSVidCtl.dll 2015-11-15 19:52 - 2010-11-20 15:27 - 03027968 _____ (Microsoft Corporation) C:\Windows\system32\WMVCORE.DLL 2015-11-15 19:52 - 2010-11-20 15:27 - 03008000 _____ (Microsoft Corporation) C:\Windows\system32\xpsservices.dll 2015-11-15 19:52 - 2010-11-20 15:27 - 02652160 _____ (Microsoft Corporation) C:\Windows\system32\netshell.dll 2015-11-15 19:52 - 2010-11-20 15:27 - 02543616 _____ (Microsoft Corporation) C:\Windows\system32\wpdshext.dll 2015-11-15 19:52 - 2010-11-20 15:27 - 02314752 _____ (Microsoft Corporation) C:\Windows\system32\tquery.dll 2015-11-15 19:52 - 2010-11-20 15:27 - 02223616 _____ (Microsoft Corporation) C:\Windows\system32\mssrch.dll 2015-11-15 19:52 - 2010-11-20 15:27 - 02086912 _____ (Microsoft Corporation) C:\Windows\system32\ole32.dll 2015-11-15 19:52 - 2010-11-20 15:27 - 02055680 _____ (Microsoft Corporation) C:\Windows\system32\Query.dll 2015-11-15 19:52 - 2010-11-20 15:27 - 02018304 _____ (Microsoft Corporation) C:\Windows\system32\WsmSvc.dll 2015-11-15 19:52 - 2010-11-20 15:27 - 01900544 _____ (Microsoft Corporation) C:\Windows\system32\setupapi.dll 2015-11-15 19:52 - 2010-11-20 15:27 - 01888256 _____ (Microsoft Corporation) C:\Windows\system32\WMVDECOD.DLL 2015-11-15 19:52 - 2010-11-20 15:27 - 01808384 _____ (Microsoft Corporation) C:\Windows\system32\pnidui.dll 2015-11-15 19:52 - 2010-11-20 15:27 - 01753088 _____ (Microsoft Corporation) C:\Windows\system32\vssapi.dll 2015-11-15 19:52 - 2010-11-20 15:27 - 01743360 _____ (Microsoft Corporation) C:\Windows\system32\sysmain.dll 2015-11-15 19:52 - 2010-11-20 15:27 - 01646080 _____ (Microsoft Corporation) C:\Windows\system32\wevtsvc.dll 2015-11-15 19:52 - 2010-11-20 15:27 - 01556992 _____ (Microsoft Corporation) C:\Windows\system32\RacEngn.dll 2015-11-15 19:52 - 2010-11-20 15:27 - 01509888 _____ (Microsoft Corporation) C:\Windows\system32\msdtctm.dll 2015-11-15 19:52 - 2010-11-20 15:27 - 01465344 _____ (Microsoft Corporation) C:\Windows\system32\XpsPrint.dll 2015-11-15 19:52 - 2010-11-20 15:27 - 01326080 _____ (Microsoft Corporation) C:\Windows\system32\NaturalLanguage6.dll 2015-11-15 19:52 - 2010-11-20 15:27 - 01281024 _____ (Microsoft Corporation) C:\Windows\system32\werconcpl.dll 2015-11-15 19:52 - 2010-11-20 15:27 - 01219584 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll 2015-11-15 19:52 - 2010-11-20 15:27 - 01212416 _____ (Microsoft Corporation) C:\Windows\system32\propsys.dll 2015-11-15 19:52 - 2010-11-20 15:27 - 01197056 _____ (Microsoft Corporation) C:\Windows\system32\taskschd.dll 2015-11-15 19:52 - 2010-11-20 15:27 - 01190400 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll 2015-11-15 19:52 - 2010-11-20 15:27 - 01158656 _____ (Microsoft Corporation) C:\Windows\system32\webservices.dll 2015-11-15 19:52 - 2010-11-20 15:27 - 01110016 _____ (Microsoft Corporation) C:\Windows\system32\schedsvc.dll 2015-11-15 19:52 - 2010-11-20 15:27 - 01098240 _____ (Microsoft Corporation) C:\Windows\system32\Vault.dll 2015-11-15 19:52 - 2010-11-20 15:27 - 01008128 _____ (Microsoft Corporation) C:\Windows\system32\user32.dll 2015-11-15 19:52 - 2010-11-20 15:27 - 00933888 _____ (Microsoft Corporation) C:\Windows\system32\sqlsrv32.dll 2015-11-15 19:52 - 2010-11-20 15:27 - 00867840 _____ (Microsoft Corporation) C:\Windows\system32\SearchFolder.dll 2015-11-15 19:52 - 2010-11-20 15:27 - 00849920 _____ (Microsoft Corporation) C:\Windows\system32\qmgr.dll 2015-11-15 19:52 - 2010-11-20 15:27 - 00800256 _____ (Microsoft Corporation) C:\Windows\system32\usp10.dll 2015-11-15 19:52 - 2010-11-20 15:27 - 00778752 _____ (Microsoft Corporation) C:\Windows\system32\mssvp.dll 2015-11-15 19:52 - 2010-11-20 15:27 - 00758784 _____ (Microsoft Corporation) C:\Windows\system32\samsrv.dll 2015-11-15 19:52 - 2010-11-20 15:27 - 00758272 _____ (Microsoft Corporation) C:\Windows\system32\PortableDeviceApi.dll 2015-11-15 19:52 - 2010-11-20 15:27 - 00751104 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll 2015-11-15 19:52 - 2010-11-20 15:27 - 00750080 _____ (Microsoft Corporation) C:\Windows\system32\TSWorkspace.dll 2015-11-15 19:52 - 2010-11-20 15:27 - 00720896 _____ (Microsoft Corporation) C:\Windows\system32\odbc32.dll 2015-11-15 19:52 - 2010-11-20 15:27 - 00695808 _____ (Microsoft Corporation) C:\Windows\system32\netlogon.dll 2015-11-15 19:52 - 2010-11-20 15:27 - 00680960 _____ (Microsoft Corporation) C:\Windows\system32\termsrv.dll 2015-11-15 19:52 - 2010-11-20 15:27 - 00582656 _____ (Microsoft Corporation) C:\Windows\system32\sxs.dll 2015-11-15 19:52 - 2010-11-20 15:27 - 00577536 _____ (Microsoft Corporation) C:\Windows\system32\WSDApi.dll 2015-11-15 19:52 - 2010-11-20 15:27 - 00524288 _____ (Microsoft Corporation) C:\Windows\system32\wmicmiplugin.dll 2015-11-15 19:52 - 2010-11-20 15:27 - 00519680 _____ (Microsoft Corporation) C:\Windows\system32\netcfgx.dll 2015-11-15 19:52 - 2010-11-20 15:27 - 00512000 _____ (Microsoft Corporation) C:\Windows\system32\rpcss.dll 2015-11-15 19:52 - 2010-11-20 15:27 - 00488448 _____ (Microsoft Corporation) C:\Windows\system32\secproc.dll 2015-11-15 19:52 - 2010-11-20 15:27 - 00485888 _____ (Microsoft Corporation) C:\Windows\system32\secproc_isv.dll 2015-11-15 19:52 - 2010-11-20 15:27 - 00481280 _____ (Microsoft Corporation) C:\Windows\system32\wmpps.dll 2015-11-15 19:52 - 2010-11-20 15:27 - 00476160 _____ (Microsoft Corporation) C:\Windows\system32\QAGENTRT.DLL 2015-11-15 19:52 - 2010-11-20 15:27 - 00473600 _____ (Microsoft Corporation) C:\Windows\system32\taskcomp.dll 2015-11-15 19:52 - 2010-11-20 15:27 - 00470016 _____ (Microsoft Corporation) C:\Windows\system32\XpsGdiConverter.dll 2015-11-15 19:52 - 2010-11-20 15:27 - 00457216 _____ (Microsoft Corporation) C:\Windows\system32\msdrm.dll 2015-11-15 19:52 - 2010-11-20 15:27 - 00448512 _____ (Microsoft Corporation) C:\Windows\system32\shlwapi.dll 2015-11-15 19:52 - 2010-11-20 15:27 - 00444416 _____ (Microsoft Corporation) C:\Windows\system32\winhttp.dll 2015-11-15 19:52 - 2010-11-20 15:27 - 00326144 _____ (Microsoft Corporation) C:\Windows\system32\mswsock.dll 2015-11-15 19:52 - 2010-11-20 15:27 - 00312832 _____ (Microsoft Corporation) C:\Windows\system32\Wldap32.dll 2015-11-15 19:52 - 2010-11-20 15:27 - 00312320 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll 2015-11-15 19:52 - 2010-11-20 15:27 - 00303616 _____ (Microsoft Corporation) C:\Windows\system32\nlasvc.dll 2015-11-15 19:52 - 2010-11-20 15:27 - 00299520 _____ (Microsoft Corporation) C:\Windows\system32\tsmf.dll 2015-11-15 19:52 - 2010-11-20 15:27 - 00297984 _____ (Microsoft Corporation) C:\Windows\system32\ws2_32.dll 2015-11-15 19:52 - 2010-11-20 15:27 - 00266240 _____ (Microsoft Corporation) C:\Windows\system32\QAGENT.DLL 2015-11-15 19:52 - 2010-11-20 15:27 - 00263168 _____ (Microsoft Corporation) C:\Windows\system32\spwizui.dll 2015-11-15 19:52 - 2010-11-20 15:27 - 00258560 _____ (Microsoft Corporation) C:\Windows\system32\WebClnt.dll 2015-11-15 19:52 - 2010-11-20 15:27 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\winsta.dll 2015-11-15 19:52 - 2010-11-20 15:27 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\ncsi.dll 2015-11-15 19:52 - 2010-11-20 15:27 - 00183808 _____ (Microsoft Corporation) C:\Windows\system32\prncache.dll 2015-11-15 19:52 - 2010-11-20 15:27 - 00146944 _____ (Microsoft Corporation) C:\Windows\system32\scavengeui.dll 2015-11-15 19:52 - 2010-11-20 15:27 - 00121856 _____ (Microsoft Corporation) C:\Windows\system32\SessEnv.dll 2015-11-15 19:52 - 2010-11-20 15:26 - 04120064 _____ (Microsoft Corporation) C:\Windows\system32\mf.dll 2015-11-15 19:52 - 2010-11-20 15:26 - 03391488 _____ (Microsoft Corporation) C:\Windows\system32\dbgeng.dll 2015-11-15 19:52 - 2010-11-20 15:26 - 03205120 _____ (Microsoft Corporation) C:\Windows\system32\mmcndmgr.dll 2015-11-15 19:52 - 2010-11-20 15:26 - 02565632 _____ (Microsoft Corporation) C:\Windows\system32\esent.dll 2015-11-15 19:52 - 2010-11-20 15:26 - 02067456 _____ (Microsoft Corporation) C:\Windows\system32\d3d9.dll 2015-11-15 19:52 - 2010-11-20 15:26 - 01866240 _____ (Microsoft Corporation) C:\Windows\system32\ExplorerFrame.dll 2015-11-15 19:52 - 2010-11-20 15:26 - 01632256 _____ (Microsoft Corporation) C:\Windows\system32\dwmcore.dll 2015-11-15 19:52 - 2010-11-20 15:26 - 01340416 _____ (Microsoft Corporation) C:\Windows\system32\diagperf.dll 2015-11-15 19:52 - 2010-11-20 15:26 - 01244160 _____ (Microsoft Corporation) C:\Windows\system32\imapi2fs.dll 2015-11-15 19:52 - 2010-11-20 15:26 - 01137664 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll 2015-11-15 19:52 - 2010-11-20 15:26 - 00955904 _____ (Microsoft Corporation) C:\Windows\system32\localspl.dll 2015-11-15 19:52 - 2010-11-20 15:26 - 00853504 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL 2015-11-15 19:52 - 2010-11-20 15:26 - 00828416 _____ (Microsoft Corporation) C:\Windows\system32\MPSSVC.dll 2015-11-15 19:52 - 2010-11-20 15:26 - 00787968 _____ (Microsoft Corporation) C:\Windows\system32\d3d11.dll 2015-11-15 19:52 - 2010-11-20 15:26 - 00777728 _____ (Microsoft Corporation) C:\Windows\system32\gpsvc.dll 2015-11-15 19:52 - 2010-11-20 15:26 - 00658944 _____ (Microsoft Corporation) C:\Windows\system32\dxgi.dll 2015-11-15 19:52 - 2010-11-20 15:26 - 00584192 _____ (Microsoft Corporation) C:\Windows\system32\ipsmsnap.dll 2015-11-15 19:52 - 2010-11-20 15:26 - 00422912 _____ (Microsoft Corporation) C:\Windows\system32\drvstore.dll 2015-11-15 19:52 - 2010-11-20 15:26 - 00403968 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll 2015-11-15 19:52 - 2010-11-20 15:26 - 00381440 _____ (Microsoft Corporation) C:\Windows\system32\mfds.dll 2015-11-15 19:52 - 2010-11-20 15:26 - 00321024 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1core.dll 2015-11-15 19:52 - 2010-11-20 15:26 - 00317952 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcore.dll 2015-11-15 19:52 - 2010-11-20 15:26 - 00295936 _____ (Microsoft Corporation) C:\Windows\system32\framedynos.dll 2015-11-15 19:52 - 2010-11-20 15:26 - 00281600 _____ (Microsoft) C:\Windows\system32\DShowRdpFilter.dll 2015-11-15 19:52 - 2010-11-20 15:26 - 00235008 _____ (Microsoft Corporation) C:\Windows\system32\hgprint.dll 2015-11-15 19:52 - 2010-11-20 15:26 - 00084992 _____ (Microsoft Corporation) C:\Windows\system32\dot3api.dll 2015-11-15 19:52 - 2010-11-20 15:25 - 03957760 _____ (Microsoft Corporation) C:\Windows\system32\WinSAT.exe 2015-11-15 19:52 - 2010-11-20 15:25 - 01975296 _____ (Microsoft Corporation) C:\Windows\system32\CertEnroll.dll 2015-11-15 19:52 - 2010-11-20 15:25 - 01927680 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll 2015-11-15 19:52 - 2010-11-20 15:25 - 01796096 _____ (Microsoft Corporation) C:\Windows\system32\certmgr.dll 2015-11-15 19:52 - 2010-11-20 15:25 - 01600512 _____ (Microsoft Corporation) C:\Windows\system32\VSSVC.exe 2015-11-15 19:52 - 2010-11-20 15:25 - 01504256 _____ (Microsoft Corporation) C:\Windows\system32\wbengine.exe 2015-11-15 19:52 - 2010-11-20 15:25 - 01116672 _____ (Microsoft Corporation) C:\Windows\system32\mstsc.exe 2015-11-15 19:52 - 2010-11-20 15:25 - 00958464 _____ (Microsoft Corporation) C:\Windows\system32\actxprxy.dll 2015-11-15 19:52 - 2010-11-20 15:25 - 00902144 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll 2015-11-15 19:52 - 2010-11-20 15:25 - 00897536 _____ (Microsoft Corporation) C:\Windows\system32\azroles.dll 2015-11-15 19:52 - 2010-11-20 15:25 - 00705024 _____ (Microsoft Corporation) C:\Windows\system32\BFE.DLL 2015-11-15 19:52 - 2010-11-20 15:25 - 00679424 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll 2015-11-15 19:52 - 2010-11-20 15:25 - 00598016 _____ (Microsoft Corporation) C:\Windows\system32\spinstall.exe 2015-11-15 19:52 - 2010-11-20 15:25 - 00594432 _____ (Microsoft Corporation) C:\Windows\system32\comdlg32.dll 2015-11-15 19:52 - 2010-11-20 15:25 - 00559104 _____ (Microsoft Corporation) C:\Windows\system32\spoolsv.exe 2015-11-15 19:52 - 2010-11-20 15:25 - 00464384 _____ (Microsoft Corporation) C:\Windows\system32\taskeng.exe 2015-11-15 19:52 - 2010-11-20 15:25 - 00390656 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe 2015-11-15 19:52 - 2010-11-20 15:25 - 00362496 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate_isv.exe 2015-11-15 19:52 - 2010-11-20 15:25 - 00359424 _____ (Microsoft Corporation) C:\Windows\system32\RMActivate.exe 2015-11-15 19:52 - 2010-11-20 15:25 - 00342016 _____ (Microsoft Corporation) C:\Windows\system32\apphelp.dll 2015-11-15 19:52 - 2010-11-20 15:25 - 00301568 _____ (Microsoft Corporation) C:\Windows\system32\spreview.exe 2015-11-15 19:52 - 2010-11-20 15:24 - 02872320 _____ (Microsoft Corporation) C:\Windows\explorer.exe 2015-11-15 19:52 - 2010-11-20 15:24 - 00653312 _____ (Microsoft Corporation) C:\Windows\system32\lpksetup.exe 2015-11-15 19:52 - 2010-11-20 15:24 - 00345088 _____ (Microsoft Corporation) C:\Windows\system32\cmd.exe 2015-11-15 19:52 - 2010-11-20 15:24 - 00343040 _____ (Microsoft Corporation) C:\Windows\system32\lsm.exe 2015-11-15 19:52 - 2010-11-20 15:24 - 00272896 _____ (Microsoft Corporation) C:\Windows\system32\mcbuilder.exe 2015-11-15 19:52 - 2010-11-20 14:32 - 05066752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AuthFWSnapin.dll 2015-11-15 19:52 - 2010-11-20 14:21 - 11410432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll 2015-11-15 19:52 - 2010-11-20 14:21 - 01667584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setupapi.dll 2015-11-15 19:52 - 2010-11-20 14:21 - 01619456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVDECOD.DLL 2015-11-15 19:52 - 2010-11-20 14:21 - 01548288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tquery.dll 2015-11-15 19:52 - 2010-11-20 14:21 - 01363456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Query.dll 2015-11-15 19:52 - 2010-11-20 14:21 - 01175040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WsmSvc.dll 2015-11-15 19:52 - 2010-11-20 14:21 - 01128448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vssapi.dll 2015-11-15 19:52 - 2010-11-20 14:21 - 01115136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RacEngn.dll 2015-11-15 19:52 - 2010-11-20 14:21 - 01010688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll 2015-11-15 19:52 - 2010-11-20 14:21 - 00870912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsPrint.dll 2015-11-15 19:52 - 2010-11-20 14:21 - 00646144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchFolder.dll 2015-11-15 19:52 - 2010-11-20 14:21 - 00626176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\usp10.dll 2015-11-15 19:52 - 2010-11-20 14:21 - 00597504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSWorkspace.dll 2015-11-15 19:52 - 2010-11-20 14:21 - 00505856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\taskschd.dll 2015-11-15 19:52 - 2010-11-20 14:21 - 00423936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc_isv.dll 2015-11-15 19:52 - 2010-11-20 14:21 - 00381440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wer.dll 2015-11-15 19:52 - 2010-11-20 14:21 - 00351232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winhttp.dll 2015-11-15 19:52 - 2010-11-20 14:21 - 00350208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shlwapi.dll 2015-11-15 19:52 - 2010-11-20 14:21 - 00283648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsGdiConverter.dll 2015-11-15 19:52 - 2010-11-20 14:21 - 00270848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsmf.dll 2015-11-15 19:52 - 2010-11-20 14:21 - 00206848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\upnp.dll 2015-11-15 19:52 - 2010-11-20 14:21 - 00113664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SessEnv.dll 2015-11-15 19:52 - 2010-11-20 14:20 - 01414144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ole32.dll 2015-11-15 19:52 - 2010-11-20 14:20 - 00573440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\odbc32.dll 2015-11-15 19:52 - 2010-11-20 14:20 - 00563712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netlogon.dll 2015-11-15 19:52 - 2010-11-20 14:20 - 00547840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PortableDeviceApi.dll 2015-11-15 19:52 - 2010-11-20 14:20 - 00428032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secproc.dll 2015-11-15 19:52 - 2010-11-20 14:20 - 00406528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netcfgx.dll 2015-11-15 19:52 - 2010-11-20 14:19 - 03207680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mf.dll 2015-11-15 19:52 - 2010-11-20 14:19 - 02291712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSVidCtl.dll 2015-11-15 19:52 - 2010-11-20 14:19 - 02151936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mmcndmgr.dll 2015-11-15 19:52 - 2010-11-20 14:19 - 01698816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\esent.dll 2015-11-15 19:52 - 2010-11-20 14:19 - 01493504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ExplorerFrame.dll 2015-11-15 19:52 - 2010-11-20 14:19 - 01401344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssrch.dll 2015-11-15 19:52 - 2010-11-20 14:19 - 00954752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc40.dll 2015-11-15 19:52 - 2010-11-20 14:19 - 00954288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc40u.dll 2015-11-15 19:52 - 2010-11-20 14:19 - 00732160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imapi2fs.dll 2015-11-15 19:52 - 2010-11-20 14:19 - 00341504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdrm.dll 2015-11-15 19:52 - 2010-11-20 14:19 - 00257024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll 2015-11-15 19:52 - 2010-11-20 14:18 - 02522624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dbgeng.dll 2015-11-15 19:52 - 2010-11-20 14:18 - 01828352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d9.dll 2015-11-15 19:52 - 2010-11-20 14:18 - 01792000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll 2015-11-15 19:52 - 2010-11-20 14:18 - 01371136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dwmcore.dll 2015-11-15 19:52 - 2010-11-20 14:18 - 01334272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CertEnroll.dll 2015-11-15 19:52 - 2010-11-20 14:18 - 01171456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll 2015-11-15 19:52 - 2010-11-20 14:18 - 00739840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d2d1.dll 2015-11-15 19:52 - 2010-11-20 14:18 - 00640512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll 2015-11-15 19:52 - 2010-11-20 14:18 - 00522752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d11.dll 2015-11-15 19:52 - 2010-11-20 14:18 - 00342016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certcli.dll 2015-11-15 19:52 - 2010-11-20 14:18 - 00295936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apphelp.dll 2015-11-15 19:52 - 2010-11-20 14:18 - 00252928 _____ (Microsoft) C:\Windows\SysWOW64\DShowRdpFilter.dll 2015-11-15 19:52 - 2010-11-20 14:18 - 00091136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dot3api.dll 2015-11-15 19:52 - 2010-11-20 14:17 - 02616320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\explorer.exe 2015-11-15 19:52 - 2010-11-20 14:17 - 01049600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstsc.exe 2015-11-15 19:52 - 2010-11-20 14:17 - 00327168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate_isv.exe 2015-11-15 19:52 - 2010-11-20 14:17 - 00322048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RMActivate.exe 2015-11-15 19:52 - 2010-11-20 14:17 - 00220672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mcbuilder.exe 2015-11-15 19:52 - 2010-11-20 13:05 - 00274944 _____ (Microsoft Corporation) C:\Windows\system32\rdpdd.dll 2015-11-15 19:52 - 2010-11-20 11:25 - 00753664 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\http.sys 2015-11-15 19:52 - 2010-11-20 11:23 - 00261632 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netbt.sys 2015-11-15 19:52 - 2010-11-20 11:21 - 00119296 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tdx.sys 2015-11-15 19:52 - 2010-11-20 05:52 - 00419880 _____ C:\Windows\SysWOW64\locale.nls 2015-11-15 19:52 - 2010-11-20 05:52 - 00419880 _____ C:\Windows\system32\locale.nls 2015-11-15 19:52 - 2010-11-05 04:20 - 00347904 _____ C:\Windows\system32\systemsf.ebd 2015-11-15 19:52 - 2010-11-05 03:58 - 00297808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscoree.dll 2015-11-15 19:52 - 2010-11-05 03:58 - 00049488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netfxperf.dll 2015-11-15 19:52 - 2010-11-05 03:57 - 00444752 _____ (Microsoft Corporation) C:\Windows\system32\mscoree.dll 2015-11-15 19:52 - 2010-11-05 03:53 - 00320352 _____ (Microsoft Corporation) C:\Windows\system32\PresentationHost.exe 2015-11-15 19:52 - 2010-11-05 03:53 - 00295264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationHost.exe 2015-11-15 19:52 - 2010-11-05 03:53 - 00109928 _____ (Microsoft Corporation) C:\Windows\system32\PresentationHostProxy.dll 2015-11-15 19:52 - 2010-11-05 03:53 - 00099176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PresentationHostProxy.dll 2015-11-15 19:52 - 2009-07-14 03:16 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tcpmonui.dll 2015-11-15 19:51 - 2010-11-20 15:44 - 01077248 _____ (Microsoft Corporation) C:\Windows\system32\Narrator.exe 2015-11-15 19:51 - 2010-11-20 15:34 - 00363392 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\volmgrx.sys 2015-11-15 19:51 - 2010-11-20 15:34 - 00071552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\volmgr.sys 2015-11-15 19:51 - 2010-11-20 15:33 - 00410496 _____ (Intel Corporation) C:\Windows\system32\Drivers\iaStorV.sys 2015-11-15 19:51 - 2010-11-20 15:33 - 00289664 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fltMgr.sys 2015-11-15 19:51 - 2010-11-20 15:33 - 00263040 _____ (Microsoft Corporation) C:\Windows\system32\hal.dll 2015-11-15 19:51 - 2010-11-20 15:33 - 00213888 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdyboost.sys 2015-11-15 19:51 - 2010-11-20 15:33 - 00184704 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pci.sys 2015-11-15 19:51 - 2010-11-20 15:33 - 00171392 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\scsiport.sys 2015-11-15 19:51 - 2010-11-20 15:33 - 00140672 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msdsm.sys 2015-11-15 19:51 - 2010-11-20 15:33 - 00103808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\sbp2port.sys 2015-11-15 19:51 - 2010-11-20 15:33 - 00094592 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mountmgr.sys 2015-11-15 19:51 - 2010-11-20 15:33 - 00078720 _____ (Hewlett-Packard Company) C:\Windows\system32\Drivers\HpSAMD.sys 2015-11-15 19:51 - 2010-11-20 15:33 - 00063360 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\termdd.sys 2015-11-15 19:51 - 2010-11-20 15:33 - 00031104 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msahci.sys 2015-11-15 19:51 - 2010-11-20 15:33 - 00027520 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Diskdump.sys 2015-11-15 19:51 - 2010-11-20 15:33 - 00014720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hwpolicy.sys 2015-11-15 19:51 - 2010-11-20 15:32 - 02217856 _____ (Microsoft Corporation) C:\Windows\system32\bootres.dll 2015-11-15 19:51 - 2010-11-20 15:32 - 00334208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\acpi.sys 2015-11-15 19:51 - 2010-11-20 15:32 - 00179072 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Classpnp.sys 2015-11-15 19:51 - 2010-11-20 15:32 - 00155520 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ataport.sys 2015-11-15 19:51 - 2010-11-20 15:32 - 00112000 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe 2015-11-15 19:51 - 2010-11-20 15:32 - 00027008 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\amdxata.sys 2015-11-15 19:51 - 2010-11-20 15:28 - 00780008 _____ (Microsoft Corporation) C:\Windows\system32\ci.dll 2015-11-15 19:51 - 2010-11-20 15:28 - 00298104 _____ (Microsoft Corporation) C:\Windows\system32\bcryptprimitives.dll 2015-11-15 19:51 - 2010-11-20 15:28 - 00223248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fvevol.sys 2015-11-15 19:51 - 2010-11-20 15:28 - 00166784 _____ (Microsoft Corporation) C:\Windows\system32\basecsp.dll 2015-11-15 19:51 - 2010-11-20 15:27 - 03211776 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll 2015-11-15 19:51 - 2010-11-20 15:27 - 02851840 _____ (Microsoft Corporation) C:\Windows\system32\themeui.dll 2015-11-15 19:51 - 2010-11-20 15:27 - 02262528 _____ (Microsoft Corporation) C:\Windows\system32\SyncCenter.dll 2015-11-15 19:51 - 2010-11-20 15:27 - 02250752 _____ (Microsoft Corporation) C:\Windows\system32\SensorsCpl.dll 2015-11-15 19:51 - 2010-11-20 15:27 - 02193920 _____ (Microsoft Corporation) C:\Windows\system32\themecpl.dll 2015-11-15 19:51 - 2010-11-20 15:27 - 02072576 _____ (Microsoft Corporation) C:\Windows\system32\WMPEncEn.dll 2015-11-15 19:51 - 2010-11-20 15:27 - 01689600 _____ (Microsoft Corporation) C:\Windows\system32\netcenter.dll 2015-11-15 19:51 - 2010-11-20 15:27 - 01441280 _____ (Microsoft Corporation) C:\Windows\system32\wlanpref.dll 2015-11-15 19:51 - 2010-11-20 15:27 - 01389056 _____ (Microsoft Corporation) C:\Windows\system32\pla.dll 2015-11-15 19:51 - 2010-11-20 15:27 - 01363968 _____ (Microsoft Corporation) C:\Windows\system32\wdc.dll 2015-11-15 19:51 - 2010-11-20 15:27 - 01243136 _____ (Microsoft Corporation) C:\Windows\system32\WMNetMgr.dll 2015-11-15 19:51 - 2010-11-20 15:27 - 01160192 _____ (Microsoft Corporation) C:\Windows\system32\MSMPEG2ENC.DLL 2015-11-15 19:51 - 2010-11-20 15:27 - 01120768 _____ (Microsoft Corporation) C:\Windows\system32\sdengin2.dll 2015-11-15 19:51 - 2010-11-20 15:27 - 01082880 _____ (Microsoft Corporation) C:\Windows\system32\sppobjs.dll 2015-11-15 19:51 - 2010-11-20 15:27 - 01050624 _____ (Microsoft Corporation) C:\Windows\system32\printui.dll 2015-11-15 19:51 - 2010-11-20 15:27 - 01024512 _____ (Microsoft Corporation) C:\Windows\system32\wmpmde.dll 2015-11-15 19:51 - 2010-11-20 15:27 - 00933376 _____ (Microsoft Corporation) C:\Windows\system32\SmiEngine.dll 2015-11-15 19:51 - 2010-11-20 15:27 - 00812032 _____ (Microsoft Corporation) C:\Windows\system32\wpccpl.dll 2015-11-15 19:51 - 2010-11-20 15:27 - 00799744 _____ (Microsoft Corporation) C:\Windows\system32\msftedit.dll 2015-11-15 19:51 - 2010-11-20 15:27 - 00769536 _____ (Microsoft Corporation) C:\Windows\system32\sud.dll 2015-11-15 19:51 - 2010-11-20 15:27 - 00691200 _____ (Microsoft Corporation) C:\Windows\system32\VAN.dll 2015-11-15 19:51 - 2010-11-20 15:27 - 00658432 _____ (Microsoft Corporation) C:\Windows\system32\PerfCenterCPL.dll 2015-11-15 19:51 - 2010-11-20 15:27 - 00633344 _____ (Microsoft Corporation) C:\Windows\system32\riched20.dll 2015-11-15 19:51 - 2010-11-20 15:27 - 00625664 _____ (Microsoft Corporation) C:\Windows\system32\usercpl.dll 2015-11-15 19:51 - 2010-11-20 15:27 - 00625664 _____ (Microsoft Corporation) C:\Windows\system32\mscms.dll 2015-11-15 19:51 - 2010-11-20 15:27 - 00624128 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll 2015-11-15 19:51 - 2010-11-20 15:27 - 00611840 _____ (Microsoft Corporation) C:\Windows\system32\wpd_ci.dll 2015-11-15 19:51 - 2010-11-20 15:27 - 00605696 _____ (Microsoft Corporation) C:\Windows\system32\wmpeffects.dll 2015-11-15 19:51 - 2010-11-20 15:27 - 00580096 _____ (Microsoft Corporation) C:\Windows\system32\wiaservc.dll 2015-11-15 19:51 - 2010-11-20 15:27 - 00571904 _____ (Microsoft Corporation) C:\Windows\system32\mspbda.dll 2015-11-15 19:51 - 2010-11-20 15:27 - 00552960 _____ (Microsoft Corporation) C:\Windows\system32\msdri.dll 2015-11-15 19:51 - 2010-11-20 15:27 - 00509952 _____ (Microsoft Corporation) C:\Windows\system32\ntshrui.dll 2015-11-15 19:51 - 2010-11-20 15:27 - 00501248 _____ (Microsoft Corporation) C:\Windows\system32\WinSATAPI.dll 2015-11-15 19:51 - 2010-11-20 15:27 - 00486400 _____ (Microsoft Corporation) C:\Windows\system32\powercpl.dll 2015-11-15 19:51 - 2010-11-20 15:27 - 00483840 _____ (Microsoft Corporation) C:\Windows\system32\StructuredQuery.dll 2015-11-15 19:51 - 2010-11-20 15:27 - 00475136 _____ (Microsoft Corporation) C:\Windows\system32\wlangpui.dll 2015-11-15 19:51 - 2010-11-20 15:27 - 00462336 _____ (Microsoft Corporation) C:\Windows\system32\wiadefui.dll 2015-11-15 19:51 - 2010-11-20 15:27 - 00455168 _____ (Microsoft Corporation) C:\Windows\system32\nshipsec.dll 2015-11-15 19:51 - 2010-11-20 15:27 - 00429568 _____ (Microsoft Corporation) C:\Windows\system32\puiobj.dll 2015-11-15 19:51 - 2010-11-20 15:27 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\rastls.dll 2015-11-15 19:51 - 2010-11-20 15:27 - 00418816 _____ (Microsoft Corporation) C:\Windows\system32\sppwinob.dll 2015-11-15 19:51 - 2010-11-20 15:27 - 00416256 _____ (Microsoft Corporation) C:\Windows\system32\prnfldr.dll 2015-11-15 19:51 - 2010-11-20 15:27 - 00414208 _____ (Microsoft Corporation) C:\Windows\system32\wlanui.dll 2015-11-15 19:51 - 2010-11-20 15:27 - 00409600 _____ (Microsoft Corporation) C:\Windows\system32\photowiz.dll 2015-11-15 19:51 - 2010-11-20 15:27 - 00406016 _____ (Microsoft Corporation) C:\Windows\system32\scesrv.dll 2015-11-15 19:51 - 2010-11-20 15:27 - 00403968 _____ (Microsoft Corporation) C:\Windows\system32\untfs.dll 2015-11-15 19:51 - 2010-11-20 15:27 - 00372736 _____ (Microsoft Corporation) C:\Windows\system32\mtxclu.dll 2015-11-15 19:51 - 2010-11-20 15:27 - 00370688 _____ (Microsoft Corporation) C:\Windows\system32\shsvcs.dll 2015-11-15 19:51 - 2010-11-20 15:27 - 00367104 _____ (Microsoft Corporation) C:\Windows\system32\wcncsvc.dll 2015-11-15 19:51 - 2010-11-20 15:27 - 00366080 _____ (Microsoft Corporation) C:\Windows\system32\zipfldr.dll 2015-11-15 19:51 - 2010-11-20 15:27 - 00357888 _____ (Microsoft Corporation) C:\Windows\system32\sharemediacpl.dll 2015-11-15 19:51 - 2010-11-20 15:27 - 00344064 _____ (Microsoft Corporation) C:\Windows\system32\rasmans.dll 2015-11-15 19:51 - 2010-11-20 15:27 - 00340992 _____ (Microsoft Corporation) C:\Windows\system32\srchadmin.dll 2015-11-15 19:51 - 2010-11-20 15:27 - 00335360 _____ (Microsoft Corporation) C:\Windows\system32\msieftp.dll 2015-11-15 19:51 - 2010-11-20 15:27 - 00324096 _____ (Microsoft Corporation) C:\Windows\system32\netdiagfx.dll 2015-11-15 19:51 - 2010-11-20 15:27 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\tapisrv.dll 2015-11-15 19:51 - 2010-11-20 15:27 - 00303616 _____ (Microsoft Corporation) C:\Windows\system32\scansetting.dll 2015-11-15 19:51 - 2010-11-20 15:27 - 00300032 _____ (Microsoft Corporation) C:\Windows\system32\pdh.dll 2015-11-15 19:51 - 2010-11-20 15:27 - 00268288 _____ (Microsoft Corporation) C:\Windows\system32\MSAC3ENC.DLL 2015-11-15 19:51 - 2010-11-20 15:27 - 00264192 _____ (Microsoft Corporation) C:\Windows\system32\upnp.dll 2015-11-15 19:51 - 2010-11-20 15:27 - 00263168 _____ (Microsoft Corporation) C:\Windows\system32\vpnike.dll 2015-11-15 19:51 - 2010-11-20 15:27 - 00257024 _____ (Microsoft Corporation) C:\Windows\system32\stobject.dll 2015-11-15 19:51 - 2010-11-20 15:27 - 00253440 _____ (Microsoft Corporation) C:\Windows\system32\tcpipcfg.dll 2015-11-15 19:51 - 2010-11-20 15:27 - 00244224 _____ (Microsoft Corporation) C:\Windows\system32\spp.dll 2015-11-15 19:51 - 2010-11-20 15:27 - 00236032 _____ (Microsoft Corporation) C:\Windows\system32\srvsvc.dll 2015-11-15 19:51 - 2010-11-20 15:27 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\onex.dll 2015-11-15 19:51 - 2010-11-20 15:27 - 00232960 _____ (Microsoft Corporation) C:\Windows\system32\scecli.dll 2015-11-15 19:51 - 2010-11-20 15:27 - 00232448 _____ (Microsoft Corporation) C:\Windows\system32\sppcomapi.dll 2015-11-15 19:51 - 2010-11-20 15:27 - 00229888 _____ (Microsoft Corporation) C:\Windows\system32\XpsRasterService.dll 2015-11-15 19:51 - 2010-11-20 15:27 - 00225280 _____ (Microsoft Corporation) C:\Windows\system32\SndVolSSO.dll 2015-11-15 19:51 - 2010-11-20 15:27 - 00223232 _____ (Microsoft Corporation) C:\Windows\system32\wmpsrcwp.dll 2015-11-15 19:51 - 2010-11-20 15:27 - 00223232 _____ (Microsoft Corporation) C:\Windows\system32\QSHVHOST.DLL 2015-11-15 19:51 - 2010-11-20 15:27 - 00222720 _____ (Microsoft Corporation) C:\Windows\system32\wwanconn.dll 2015-11-15 19:51 - 2010-11-20 15:27 - 00215552 _____ (Microsoft Corporation) C:\Windows\system32\netiohlp.dll 2015-11-15 19:51 - 2010-11-20 15:27 - 00211456 _____ (Microsoft Corporation) C:\Windows\system32\rasppp.dll 2015-11-15 19:51 - 2010-11-20 15:27 - 00209920 _____ (Microsoft Corporation) C:\Windows\system32\profsvc.dll 2015-11-15 19:51 - 2010-11-20 15:27 - 00196608 _____ (Microsoft Corporation) C:\Windows\system32\shdocvw.dll 2015-11-15 19:51 - 2010-11-20 15:27 - 00188928 _____ (Microsoft Corporation) C:\Windows\system32\netjoin.dll 2015-11-15 19:51 - 2010-11-20 15:27 - 00187904 _____ (Microsoft Corporation) C:\Windows\system32\rpchttp.dll 2015-11-15 19:51 - 2010-11-20 15:27 - 00187904 _____ (Microsoft Corporation) C:\Windows\system32\provsvc.dll 2015-11-15 19:51 - 2010-11-20 15:27 - 00165376 _____ (Microsoft Corporation) C:\Windows\system32\netid.dll 2015-11-15 19:51 - 2010-11-20 15:27 - 00161792 _____ (Microsoft Corporation) C:\Windows\system32\ocsetapi.dll 2015-11-15 19:51 - 2010-11-20 15:27 - 00156160 _____ (Microsoft Corporation) C:\Windows\system32\prntvpt.dll 2015-11-15 19:51 - 2010-11-20 15:27 - 00148992 _____ (Microsoft Corporation) C:\Windows\system32\t2embed.dll 2015-11-15 19:51 - 2010-11-20 15:27 - 00130048 _____ (Microsoft Corporation) C:\Windows\system32\shsetup.dll 2015-11-15 19:51 - 2010-11-20 15:27 - 00118784 _____ (Microsoft Corporation) C:\Windows\system32\wkssvc.dll 2015-11-15 19:51 - 2010-11-20 15:27 - 00117248 _____ (Microsoft Corporation) C:\Windows\system32\wpdbusenum.dll 2015-11-15 19:51 - 2010-11-20 15:27 - 00115200 _____ (Microsoft Corporation) C:\Windows\system32\WPDShServiceObj.dll 2015-11-15 19:51 - 2010-11-20 15:27 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\thumbcache.dll 2015-11-15 19:51 - 2010-11-20 15:27 - 00109056 _____ (Microsoft Corporation) C:\Windows\system32\userenv.dll 2015-11-15 19:51 - 2010-11-20 15:27 - 00107520 _____ (Microsoft Corporation) C:\Windows\system32\QUTIL.DLL 2015-11-15 19:51 - 2010-11-20 15:27 - 00095232 _____ (Microsoft Corporation) C:\Windows\system32\regapi.dll 2015-11-15 19:51 - 2010-11-20 15:27 - 00092672 _____ (Microsoft Corporation) C:\Windows\system32\TabSvc.dll 2015-11-15 19:51 - 2010-11-20 15:27 - 00090112 _____ (Microsoft Corporation) C:\Windows\system32\nci.dll 2015-11-15 19:51 - 2010-11-20 15:27 - 00078848 _____ (Microsoft Corporation) C:\Windows\system32\WUDFSvc.dll 2015-11-15 19:51 - 2010-11-20 15:27 - 00070656 _____ (Microsoft Corporation) C:\Windows\system32\nlaapi.dll 2015-11-15 19:51 - 2010-11-20 15:27 - 00067584 _____ (Microsoft Corporation) C:\Windows\system32\samcli.dll 2015-11-15 19:51 - 2010-11-20 15:27 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\RpcRtRemote.dll 2015-11-15 19:51 - 2010-11-20 15:27 - 00063488 _____ (Microsoft Corporation) C:\Windows\system32\wscapi.dll 2015-11-15 19:51 - 2010-11-20 15:27 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\rtutils.dll 2015-11-15 19:51 - 2010-11-20 15:27 - 00046592 _____ (Microsoft Corporation) C:\Windows\system32\msasn1.dll 2015-11-15 19:51 - 2010-11-20 15:27 - 00040960 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbGDCoInstaller.dll 2015-11-15 19:51 - 2010-11-20 15:27 - 00038912 _____ (Microsoft Corporation) C:\Windows\system32\vpnikeapi.dll 2015-11-15 19:51 - 2010-11-20 15:26 - 02746880 _____ (Microsoft Corporation) C:\Windows\system32\gameux.dll 2015-11-15 19:51 - 2010-11-20 15:26 - 01457664 _____ (Microsoft Corporation) C:\Windows\system32\DxpTaskSync.dll 2015-11-15 19:51 - 2010-11-20 15:26 - 01202176 _____ (Microsoft Corporation) C:\Windows\system32\DiagCpl.dll 2015-11-15 19:51 - 2010-11-20 15:26 - 01066496 _____ (Microsoft Corporation) C:\Windows\system32\Display.dll 2015-11-15 19:51 - 2010-11-20 15:26 - 01009152 _____ (Microsoft Corporation) C:\Windows\system32\mcmde.dll 2015-11-15 19:51 - 2010-11-20 15:26 - 00934912 _____ (Microsoft Corporation) C:\Windows\system32\FirewallControlPanel.dll 2015-11-15 19:51 - 2010-11-20 15:26 - 00861184 _____ (Microsoft Corporation) C:\Windows\system32\fontext.dll 2015-11-15 19:51 - 2010-11-20 15:26 - 00675328 _____ (Microsoft Corporation) C:\Windows\system32\DXPTaskRingtone.dll 2015-11-15 19:51 - 2010-11-20 15:26 - 00630272 _____ (Microsoft Corporation) C:\Windows\system32\evr.dll 2015-11-15 19:51 - 2010-11-20 15:26 - 00569344 _____ (Microsoft Corporation) C:\Windows\system32\iphlpsvc.dll 2015-11-15 19:51 - 2010-11-20 15:26 - 00551936 _____ (Microsoft Corporation) C:\Windows\system32\localsec.dll 2015-11-15 19:51 - 2010-11-20 15:26 - 00508928 _____ (Microsoft Corporation) C:\Windows\system32\DeviceCenter.dll 2015-11-15 19:51 - 2010-11-20 15:26 - 00503296 _____ (Microsoft Corporation) C:\Windows\system32\imapi2.dll 2015-11-15 19:51 - 2010-11-20 15:26 - 00501248 _____ (Microsoft Corporation) C:\Windows\system32\IPSECSVC.DLL 2015-11-15 19:51 - 2010-11-20 15:26 - 00459776 _____ (Microsoft Corporation) C:\Windows\system32\DXP.dll 2015-11-15 19:51 - 2010-11-20 15:26 - 00355328 _____ (Microsoft Corporation) C:\Windows\system32\Faultrep.dll 2015-11-15 19:51 - 2010-11-20 15:26 - 00348160 _____ (Microsoft Corporation) C:\Windows\system32\eapp3hst.dll 2015-11-15 19:51 - 2010-11-20 15:26 - 00332288 _____ (Microsoft Corporation) C:\Windows\system32\hgcpl.dll 2015-11-15 19:51 - 2010-11-20 15:26 - 00303616 _____ (Microsoft Corporation) C:\Windows\system32\eapphost.dll 2015-11-15 19:51 - 2010-11-20 15:26 - 00279552 _____ (Microsoft Corporation) C:\Windows\system32\dxdiagn.dll 2015-11-15 19:51 - 2010-11-20 15:26 - 00279040 _____ (Microsoft Corporation) C:\Windows\system32\framedyn.dll 2015-11-15 19:51 - 2010-11-20 15:26 - 00257024 _____ (Microsoft Corporation) C:\Windows\system32\mfreadwrite.dll 2015-11-15 19:51 - 2010-11-20 15:26 - 00252416 _____ (Microsoft Corporation) C:\Windows\system32\dot3svc.dll 2015-11-15 19:51 - 2010-11-20 15:26 - 00239616 _____ (Microsoft Corporation) C:\Windows\system32\dskquoui.dll 2015-11-15 19:51 - 2010-11-20 15:26 - 00233984 _____ (Microsoft Corporation) C:\Windows\system32\defaultlocationcpl.dll 2015-11-15 19:51 - 2010-11-20 15:26 - 00232448 _____ (Microsoft Corporation) C:\Windows\system32\ListSvc.dll 2015-11-15 19:51 - 2010-11-20 15:26 - 00221184 _____ (Microsoft Corporation) C:\Windows\system32\mprapi.dll 2015-11-15 19:51 - 2010-11-20 15:26 - 00217088 _____ (Microsoft Corporation) C:\Windows\system32\iasrad.dll 2015-11-15 19:51 - 2010-11-20 15:26 - 00211456 _____ (Microsoft Corporation) C:\Windows\system32\mprddm.dll 2015-11-15 19:51 - 2010-11-20 15:26 - 00186880 _____ (Microsoft Corporation) C:\Windows\system32\logoncli.dll 2015-11-15 19:51 - 2010-11-20 15:26 - 00171520 _____ (Microsoft Corporation) C:\Windows\system32\fde.dll 2015-11-15 19:51 - 2010-11-20 15:26 - 00166912 _____ (Microsoft Corporation) C:\Windows\system32\inetpp.dll 2015-11-15 19:51 - 2010-11-20 15:26 - 00162816 _____ (Microsoft Corporation) C:\Windows\system32\dps.dll 2015-11-15 19:51 - 2010-11-20 15:26 - 00145920 _____ (Microsoft Corporation) C:\Windows\system32\IPHLPAPI.DLL 2015-11-15 19:51 - 2010-11-20 15:26 - 00128512 _____ (Microsoft Corporation) C:\Windows\system32\dwmredir.dll 2015-11-15 19:51 - 2010-11-20 15:26 - 00118272 _____ (Microsoft Corporation) C:\Windows\system32\dnscmmc.dll 2015-11-15 19:51 - 2010-11-20 15:26 - 00116224 _____ (Windows (R) Codename Longhorn DDK provider) C:\Windows\system32\fms.dll 2015-11-15 19:51 - 2010-11-20 15:26 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\iasacct.dll 2015-11-15 19:51 - 2010-11-20 15:26 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\davclnt.dll 2015-11-15 19:51 - 2010-11-20 15:26 - 00078848 _____ (Microsoft Corporation) C:\Windows\system32\hbaapi.dll 2015-11-15 19:51 - 2010-11-20 15:26 - 00072192 _____ (Microsoft Corporation) C:\Windows\system32\fdeploy.dll 2015-11-15 19:51 - 2010-11-20 15:26 - 00069120 _____ (Microsoft Corporation) C:\Windows\system32\dot3cfg.dll 2015-11-15 19:51 - 2010-11-20 15:26 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\lsmproxy.dll 2015-11-15 19:51 - 2010-11-20 15:26 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\mimefilt.dll 2015-11-15 19:51 - 2010-11-20 15:25 - 03745792 _____ (Microsoft Corporation) C:\Windows\system32\accessibilitycpl.dll 2015-11-15 19:51 - 2010-11-20 15:25 - 03524608 _____ (Microsoft Corporation) C:\Windows\system32\sppsvc.exe 2015-11-15 19:51 - 2010-11-20 15:25 - 01264640 _____ (Microsoft Corporation) C:\Windows\system32\sdclt.exe 2015-11-15 19:51 - 2010-11-20 15:25 - 00749568 _____ (Microsoft Corporation) C:\Windows\system32\batmeter.dll 2015-11-15 19:51 - 2010-11-20 15:25 - 00726528 _____ (Microsoft Corporation) C:\Windows\system32\AuxiliaryDisplayCpl.dll 2015-11-15 19:51 - 2010-11-20 15:25 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\comctl32.dll 2015-11-15 19:51 - 2010-11-20 15:25 - 00533504 _____ (Microsoft Corporation) C:\Windows\system32\vds.exe 2015-11-15 19:51 - 2010-11-20 15:25 - 00504320 _____ (Microsoft Corporation) C:\Windows\system32\biocpl.dll 2015-11-15 19:51 - 2010-11-20 15:25 - 00412160 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll 2015-11-15 19:51 - 2010-11-20 15:25 - 00405504 _____ (Microsoft Corporation) C:\Windows\system32\wisptis.exe 2015-11-15 19:51 - 2010-11-20 15:25 - 00349696 _____ (Microsoft Corporation) C:\Windows\system32\slui.exe 2015-11-15 19:51 - 2010-11-20 15:25 - 00314368 _____ (Microsoft Corporation) C:\Windows\system32\clusapi.dll 2015-11-15 19:51 - 2010-11-20 15:25 - 00307200 _____ (Microsoft Corporation) C:\Windows\system32\wusa.exe 2015-11-15 19:51 - 2010-11-20 15:25 - 00296448 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll 2015-11-15 19:51 - 2010-11-20 15:25 - 00285696 _____ (Microsoft Corporation) C:\Windows\system32\schtasks.exe 2015-11-15 19:51 - 2010-11-20 15:25 - 00273920 _____ (Microsoft Corporation) C:\Windows\system32\SndVol.exe 2015-11-15 19:51 - 2010-11-20 15:25 - 00257024 _____ (Microsoft Corporation) C:\Windows\system32\taskmgr.exe 2015-11-15 19:51 - 2010-11-20 15:25 - 00199168 _____ (Microsoft Corporation) C:\Windows\system32\PkgMgr.exe 2015-11-15 19:51 - 2010-11-20 15:25 - 00197120 _____ (Microsoft Corporation) C:\Windows\system32\credui.dll 2015-11-15 19:51 - 2010-11-20 15:25 - 00186368 _____ (Microsoft Corporation) C:\Windows\system32\ocsetup.exe 2015-11-15 19:51 - 2010-11-20 15:25 - 00168448 _____ (Microsoft Corporation) C:\Windows\system32\bcdsrv.dll 2015-11-15 19:51 - 2010-11-20 15:25 - 00158720 _____ (Microsoft Corporation) C:\Windows\system32\aaclient.dll 2015-11-15 19:51 - 2010-11-20 15:25 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\cabview.dll 2015-11-15 19:51 - 2010-11-20 15:25 - 00128000 _____ (Microsoft) C:\Windows\system32\Robocopy.exe 2015-11-15 19:51 - 2010-11-20 15:25 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\AxInstSv.dll 2015-11-15 19:51 - 2010-11-20 15:25 - 00088576 _____ (Microsoft Corporation) C:\Windows\system32\setupcl.exe 2015-11-15 19:51 - 2010-11-20 15:25 - 00069120 _____ (Microsoft Corporation) C:\Windows\system32\taskhost.exe 2015-11-15 19:51 - 2010-11-20 15:25 - 00067072 _____ (Microsoft Corporation) C:\Windows\splwow64.exe 2015-11-15 19:51 - 2010-11-20 15:25 - 00031744 _____ (Microsoft Corporation) C:\Windows\system32\proquota.exe 2015-11-15 19:51 - 2010-11-20 15:25 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\userinit.exe 2015-11-15 19:51 - 2010-11-20 15:25 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll 2015-11-15 19:51 - 2010-11-20 15:24 - 00957440 _____ (Microsoft Corporation) C:\Windows\system32\mblctr.exe 2015-11-15 19:51 - 2010-11-20 15:24 - 00850944 _____ (Microsoft Corporation) C:\Windows\system32\mmsys.cpl 2015-11-15 19:51 - 2010-11-20 15:24 - 00793088 _____ (Microsoft Corporation) C:\Windows\system32\autoconv.exe 2015-11-15 19:51 - 2010-11-20 15:24 - 00777728 _____ (Microsoft Corporation) C:\Windows\system32\autochk.exe 2015-11-15 19:51 - 2010-11-20 15:24 - 00763904 _____ (Microsoft Corporation) C:\Windows\system32\autofmt.exe 2015-11-15 19:51 - 2010-11-20 15:24 - 00726528 _____ (Microsoft Corporation) C:\Windows\system32\appwiz.cpl 2015-11-15 19:51 - 2010-11-20 15:24 - 00689152 _____ (Microsoft Corporation) C:\Windows\system32\FXSSVC.exe 2015-11-15 19:51 - 2010-11-20 15:24 - 00684032 _____ (Microsoft Corporation) C:\Windows\system32\TabletPC.cpl 2015-11-15 19:51 - 2010-11-20 15:24 - 00515584 _____ (Microsoft Corporation) C:\Windows\system32\timedate.cpl 2015-11-15 19:51 - 2010-11-20 15:24 - 00477696 _____ (Microsoft Corporation) C:\Windows\system32\PhotoScreensaver.scr 2015-11-15 19:51 - 2010-11-20 15:24 - 00442368 _____ (Microsoft Corporation) C:\Windows\system32\winspool.drv 2015-11-15 19:51 - 2010-11-20 15:24 - 00378880 _____ (Microsoft Corporation) C:\Windows\system32\msinfo32.exe 2015-11-15 19:51 - 2010-11-20 15:24 - 00359936 _____ (Microsoft Corporation) C:\Windows\system32\eudcedit.exe 2015-11-15 19:51 - 2010-11-20 15:24 - 00300032 _____ (Microsoft Corporation) C:\Windows\system32\msconfig.exe 2015-11-15 19:51 - 2010-11-20 15:24 - 00250880 _____ (Microsoft Corporation) C:\Windows\system32\ksproxy.ax 2015-11-15 19:51 - 2010-11-20 15:24 - 00217088 _____ (Microsoft Corporation) C:\Windows\system32\wdmaud.drv 2015-11-15 19:51 - 2010-11-20 15:24 - 00126464 _____ (Microsoft Corporation) C:\Windows\system32\audiodg.exe 2015-11-15 19:51 - 2010-11-20 15:24 - 00122880 _____ (Microsoft Corporation) C:\Windows\system32\aitagent.exe 2015-11-15 19:51 - 2010-11-20 15:24 - 00098304 _____ (Microsoft Corporation) C:\Windows\system32\WSTPager.ax 2015-11-15 19:51 - 2010-11-20 14:55 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\cdd.dll 2015-11-15 19:51 - 2010-11-20 14:51 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll 2015-11-15 19:51 - 2010-11-20 14:23 - 00144768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\basecsp.dll 2015-11-15 19:51 - 2010-11-20 14:21 - 02983424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIRibbon.dll 2015-11-15 19:51 - 2010-11-20 14:21 - 02755072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\themeui.dll 2015-11-15 19:51 - 2010-11-20 14:21 - 02311168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wpdshext.dll 2015-11-15 19:51 - 2010-11-20 14:21 - 02202624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SensorsCpl.dll 2015-11-15 19:51 - 2010-11-20 14:21 - 02157568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\themecpl.dll 2015-11-15 19:51 - 2010-11-20 14:21 - 02146304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SyncCenter.dll 2015-11-15 19:51 - 2010-11-20 14:21 - 01712640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xpsservices.dll 2015-11-15 19:51 - 2010-11-20 14:21 - 01624064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPEncEn.dll 2015-11-15 19:51 - 2010-11-20 14:21 - 01326592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlanpref.dll 2015-11-15 19:51 - 2010-11-20 14:21 - 01227776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdc.dll 2015-11-15 19:51 - 2010-11-20 14:21 - 01003008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMNetMgr.dll 2015-11-15 19:51 - 2010-11-20 14:21 - 00933376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Vault.dll 2015-11-15 19:51 - 2010-11-20 14:21 - 00782336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webservices.dll 2015-11-15 19:51 - 2010-11-20 14:21 - 00778240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sqlsrv32.dll 2015-11-15 19:51 - 2010-11-20 14:21 - 00560128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll 2015-11-15 19:51 - 2010-11-20 14:21 - 00492032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32spl.dll 2015-11-15 19:51 - 2010-11-20 14:21 - 00458752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSDApi.dll 2015-11-15 19:51 - 2010-11-20 14:21 - 00416768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wiadefui.dll 2015-11-15 19:51 - 2010-11-20 14:21 - 00411648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlangpui.dll 2015-11-15 19:51 - 2010-11-20 14:21 - 00380416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sxs.dll 2015-11-15 19:51 - 2010-11-20 14:21 - 00372224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rastls.dll 2015-11-15 19:51 - 2010-11-20 14:21 - 00363520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\StructuredQuery.dll 2015-11-15 19:51 - 2010-11-20 14:21 - 00352768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\termmgr.dll 2015-11-15 19:51 - 2010-11-20 14:21 - 00352256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmpeffects.dll 2015-11-15 19:51 - 2010-11-20 14:21 - 00346624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\untfs.dll 2015-11-15 19:51 - 2010-11-20 14:21 - 00335872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WinSATAPI.dll 2015-11-15 19:51 - 2010-11-20 14:21 - 00328192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shsvcs.dll 2015-11-15 19:51 - 2010-11-20 14:21 - 00307712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scesrv.dll 2015-11-15 19:51 - 2010-11-20 14:21 - 00305152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\taskcomp.dll 2015-11-15 19:51 - 2010-11-20 14:21 - 00301568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srchadmin.dll 2015-11-15 19:51 - 2010-11-20 14:21 - 00276992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wcncsvc.dll 2015-11-15 19:51 - 2010-11-20 14:21 - 00269824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Wldap32.dll 2015-11-15 19:51 - 2010-11-20 14:21 - 00246272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scansetting.dll 2015-11-15 19:51 - 2010-11-20 14:21 - 00242176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tapisrv.dll 2015-11-15 19:51 - 2010-11-20 14:21 - 00228352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\stobject.dll 2015-11-15 19:51 - 2010-11-20 14:21 - 00206848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ws2_32.dll 2015-11-15 19:51 - 2010-11-20 14:21 - 00204800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WebClnt.dll 2015-11-15 19:51 - 2010-11-20 14:21 - 00194048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winmm.dll 2015-11-15 19:51 - 2010-11-20 14:21 - 00193536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sppcomapi.dll 2015-11-15 19:51 - 2010-11-20 14:21 - 00181760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tcpipcfg.dll 2015-11-15 19:51 - 2010-11-20 14:21 - 00176640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasppp.dll 2015-11-15 19:51 - 2010-11-20 14:21 - 00175616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scecli.dll 2015-11-15 19:51 - 2010-11-20 14:21 - 00172544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\spp.dll 2015-11-15 19:51 - 2010-11-20 14:21 - 00156672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winsta.dll 2015-11-15 19:51 - 2010-11-20 14:21 - 00139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpchttp.dll 2015-11-15 19:51 - 2010-11-20 14:21 - 00135168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsRasterService.dll 2015-11-15 19:51 - 2010-11-20 14:21 - 00134656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WinSCard.dll 2015-11-15 19:51 - 2010-11-20 14:21 - 00111104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shsetup.dll 2015-11-15 19:51 - 2010-11-20 14:21 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\t2embed.dll 2015-11-15 19:51 - 2010-11-20 14:21 - 00082944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\thumbcache.dll 2015-11-15 19:51 - 2010-11-20 14:21 - 00081920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\userenv.dll 2015-11-15 19:51 - 2010-11-20 14:21 - 00072192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\regapi.dll 2015-11-15 19:51 - 2010-11-20 14:21 - 00051712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wscapi.dll 2015-11-15 19:51 - 2010-11-20 14:21 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\samcli.dll 2015-11-15 19:51 - 2010-11-20 14:21 - 00046080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RpcRtRemote.dll 2015-11-15 19:51 - 2010-11-20 14:20 - 02504192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVCORE.DLL 2015-11-15 19:51 - 2010-11-20 14:20 - 02494464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netshell.dll 2015-11-15 19:51 - 2010-11-20 14:20 - 01750528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pnidui.dll 2015-11-15 19:51 - 2010-11-20 14:20 - 01508864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pla.dll 2015-11-15 19:51 - 2010-11-20 14:20 - 00988160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\propsys.dll 2015-11-15 19:51 - 2010-11-20 14:20 - 00932352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\printui.dll 2015-11-15 19:51 - 2010-11-20 14:20 - 00801280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NaturalLanguage6.dll 2015-11-15 19:51 - 2010-11-20 14:20 - 00442880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntshrui.dll 2015-11-15 19:51 - 2010-11-20 14:20 - 00441856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\powercpl.dll 2015-11-15 19:51 - 2010-11-20 14:20 - 00324608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\puiobj.dll 2015-11-15 19:51 - 2010-11-20 14:20 - 00225792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netdiagfx.dll 2015-11-15 19:51 - 2010-11-20 14:20 - 00199168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\onex.dll 2015-11-15 19:51 - 2010-11-20 14:20 - 00171520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\QAGENT.DLL 2015-11-15 19:51 - 2010-11-20 14:20 - 00167936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\QSHVHOST.DLL 2015-11-15 19:51 - 2010-11-20 14:20 - 00166400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netiohlp.dll 2015-11-15 19:51 - 2010-11-20 14:20 - 00152064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncsi.dll 2015-11-15 19:51 - 2010-11-20 14:20 - 00117248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netid.dll 2015-11-15 19:51 - 2010-11-20 14:20 - 00116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\prncache.dll 2015-11-15 19:51 - 2010-11-20 14:20 - 00078848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nci.dll 2015-11-15 19:51 - 2010-11-20 14:19 - 02576384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gameux.dll 2015-11-15 19:51 - 2010-11-20 14:19 - 02341376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll 2015-11-15 19:51 - 2010-11-20 14:19 - 00856576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FirewallControlPanel.dll 2015-11-15 19:51 - 2010-11-20 14:19 - 00830464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSMPEG2ENC.DLL 2015-11-15 19:51 - 2010-11-20 14:19 - 00828928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontext.dll 2015-11-15 19:51 - 2010-11-20 14:19 - 00666624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssvp.dll 2015-11-15 19:51 - 2010-11-20 14:19 - 00488448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\evr.dll 2015-11-15 19:51 - 2010-11-20 14:19 - 00481792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscms.dll 2015-11-15 19:51 - 2010-11-20 14:19 - 00429056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\localsec.dll 2015-11-15 19:51 - 2010-11-20 14:19 - 00400896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ipsmsnap.dll 2015-11-15 19:51 - 2010-11-20 14:19 - 00392192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imapi2.dll 2015-11-15 19:51 - 2010-11-20 14:19 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msihnd.dll 2015-11-15 19:51 - 2010-11-20 14:19 - 00320512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mtxclu.dll 2015-11-15 19:51 - 2010-11-20 14:19 - 00312832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\hgcpl.dll 2015-11-15 19:51 - 2010-11-20 14:19 - 00296448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfds.dll 2015-11-15 19:51 - 2010-11-20 14:19 - 00232448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mswsock.dll 2015-11-15 19:51 - 2010-11-20 14:19 - 00216576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FWPUCLNT.DLL 2015-11-15 19:51 - 2010-11-20 14:19 - 00213504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MMDevAPI.dll 2015-11-15 19:51 - 2010-11-20 14:19 - 00206336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\framedynos.dll 2015-11-15 19:51 - 2010-11-20 14:19 - 00202752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\framedyn.dll 2015-11-15 19:51 - 2010-11-20 14:19 - 00197120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssphtb.dll 2015-11-15 19:51 - 2010-11-20 14:19 - 00196608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfreadwrite.dll 2015-11-15 19:51 - 2010-11-20 14:19 - 00167936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msutb.dll 2015-11-15 19:51 - 2010-11-20 14:19 - 00127488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\logoncli.dll 2015-11-15 19:51 - 2010-11-20 14:19 - 00124416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fde.dll 2015-11-15 19:51 - 2010-11-20 14:19 - 00103936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IPHLPAPI.DLL 2015-11-15 19:51 - 2010-11-20 14:19 - 00066560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\hbaapi.dll 2015-11-15 19:51 - 2010-11-20 14:19 - 00042496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mimefilt.dll 2015-11-15 19:51 - 2010-11-20 14:19 - 00034304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msasn1.dll 2015-11-15 19:51 - 2010-11-20 14:18 - 01555456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certmgr.dll 2015-11-15 19:51 - 2010-11-20 14:18 - 01400320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DxpTaskSync.dll 2015-11-15 19:51 - 2010-11-20 14:18 - 01040384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Display.dll 2015-11-15 19:51 - 2010-11-20 14:18 - 00854016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dbghelp.dll 2015-11-15 19:51 - 2010-11-20 14:18 - 00762880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\azroles.dll 2015-11-15 19:51 - 2010-11-20 14:18 - 00665600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AuxiliaryDisplayCpl.dll 2015-11-15 19:51 - 2010-11-20 14:18 - 00630784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DXPTaskRingtone.dll 2015-11-15 19:51 - 2010-11-20 14:18 - 00530432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comctl32.dll 2015-11-15 19:51 - 2010-11-20 14:18 - 00508416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxgi.dll 2015-11-15 19:51 - 2010-11-20 14:18 - 00485888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comdlg32.dll 2015-11-15 19:51 - 2010-11-20 14:18 - 00323072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\drvstore.dll 2015-11-15 19:51 - 2010-11-20 14:18 - 00309760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\actxprxy.dll 2015-11-15 19:51 - 2010-11-20 14:18 - 00254464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcore.dll 2015-11-15 19:51 - 2010-11-20 14:18 - 00222208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eapphost.dll 2015-11-15 19:51 - 2010-11-20 14:18 - 00219136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1core.dll 2015-11-15 19:51 - 2010-11-20 14:18 - 00195584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioSes.dll 2015-11-15 19:51 - 2010-11-20 14:18 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credui.dll 2015-11-15 19:51 - 2010-11-20 14:18 - 00132608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cabview.dll 2015-11-15 19:51 - 2010-11-20 14:18 - 00131584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aaclient.dll 2015-11-15 19:51 - 2010-11-20 14:18 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dnscmmc.dll 2015-11-15 19:51 - 2010-11-20 14:18 - 00080384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\davclnt.dll 2015-11-15 19:51 - 2010-11-20 14:17 - 00303104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msinfo32.exe 2015-11-15 19:51 - 2010-11-20 14:17 - 00302592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cmd.exe 2015-11-15 19:51 - 2010-11-20 14:17 - 00288256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eudcedit.exe 2015-11-15 19:51 - 2010-11-20 14:17 - 00227328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\taskmgr.exe 2015-11-15 19:51 - 2010-11-20 14:17 - 00192000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\taskeng.exe 2015-11-15 19:51 - 2010-11-20 14:17 - 00179712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schtasks.exe 2015-11-15 19:51 - 2010-11-20 14:17 - 00142336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\net1.exe |
Themen zu Win7: Programme/Dienste lassen sich nicht starten + Help_Decrypt Befall |
anleitung, backdoor.0access, befall, besten, dienst, emailadresse, fehlermeldung, festgestellt, funktionieren, hijack.trojan.siredef.c, malwarebytes, nicht mehr, nichts, ransom.cryptowall, rechner, retten, spyware.passwordstealer.xgen, starten, system, trojan.injector, trojan.zaccess, verhindert, windows |