|
Plagegeister aller Art und deren Bekämpfung: Windows 8.1 : Avira Fund pua widdit Gen4 und MBAM massenweise FundeWindows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
05.11.2016, 21:45 | #1 |
| Windows 8.1 : Avira Fund pua widdit Gen4 und MBAM massenweise Funde Hallo, ich ich habe das Notebook von der Tochter eines Bekannten stehen, der mit mit der Aussage "irgendwas ist hier komisch" übergeben wurde... Nachdem es Probleme mit dem NB gegeben hat wurde es eine ganze Weile nicht genutzt... Ich habe zunächst einmal Avira (free) aktualisiert, der mir alsbald dann auch einen Fund gemeldet und diesen in Quarantäne verschoben hat. Anschliessender Schnelldurschlauf war ohne Befund. Anschliessend mit MBAM untersucht und es wurden knapp 700 Funde gemeldet und in Quarantäne verschoben... Da ich mir nicht sicher bin, ob es sich nur um Malware handelt, würde ich mich freuen, wenn hier jemand mal draufschauen könnte. Einen ersten Scan mit FRST habe ich dann auch noch durchgeführt. Vielen Dank schonmal für Eure/Deine Mühen Volker Avira Fund: Code:
ATTFilter Free Antivirus Erstellungsdatum der Reportdatei: Samstag, 5. November 2016 18:07 Das Programm läuft als uneingeschränkte Vollversion. Online-Dienste stehen zur Verfügung. Lizenznehmer : Free Seriennummer : 0000149996-AVHOE-0000001 Plattform : Windows 8.1 Windowsversion : (plain) [6.3.9600] Boot Modus : Normal gebootet Benutzername : SYSTEM Computername : IDEA-PC Versionsinformationen: build.dat : 15.0.16.282 92460 Bytes 22.02.2016 16:45:00 AVSCAN.EXE : 15.0.16.276 1235360 Bytes 02.04.2016 18:49:22 AVSCANRC.DLL : 15.0.16.269 65256 Bytes 02.04.2016 18:49:22 LUKE.DLL : 15.0.16.273 67840 Bytes 02.04.2016 18:49:54 AVSCPLR.DLL : 15.0.16.280 130712 Bytes 02.04.2016 18:49:22 REPAIR.DLL : 15.0.16.251 596760 Bytes 02.04.2016 18:49:20 repair.rdf : 1.0.15.96 1441708 Bytes 02.04.2016 18:50:39 AVREG.DLL : 15.0.16.273 350584 Bytes 02.04.2016 18:49:19 avlode.dll : 15.0.16.276 721384 Bytes 02.04.2016 18:49:15 avlode.rdf : 14.0.5.36 94056 Bytes 02.04.2016 18:49:07 XBV00007.VDF : 8.12.37.66 2048 Bytes 17.12.2015 16:37:06 XBV00008.VDF : 8.12.37.66 2048 Bytes 17.12.2015 16:37:06 XBV00009.VDF : 8.12.37.66 2048 Bytes 17.12.2015 16:37:06 XBV00010.VDF : 8.12.37.66 2048 Bytes 17.12.2015 16:37:06 XBV00011.VDF : 8.12.37.66 2048 Bytes 17.12.2015 16:37:06 XBV00012.VDF : 8.12.37.66 2048 Bytes 17.12.2015 16:37:06 XBV00013.VDF : 8.12.37.66 2048 Bytes 17.12.2015 16:37:06 XBV00014.VDF : 8.12.37.66 2048 Bytes 17.12.2015 16:37:06 XBV00015.VDF : 8.12.37.66 2048 Bytes 17.12.2015 16:37:06 XBV00016.VDF : 8.12.37.66 2048 Bytes 17.12.2015 16:37:06 XBV00017.VDF : 8.12.37.66 2048 Bytes 17.12.2015 16:37:06 XBV00018.VDF : 8.12.37.66 2048 Bytes 17.12.2015 16:37:06 XBV00019.VDF : 8.12.37.66 2048 Bytes 17.12.2015 16:37:07 XBV00020.VDF : 8.12.37.66 2048 Bytes 17.12.2015 16:37:07 XBV00021.VDF : 8.12.37.66 2048 Bytes 17.12.2015 16:37:07 XBV00022.VDF : 8.12.37.66 2048 Bytes 17.12.2015 16:37:07 XBV00023.VDF : 8.12.37.66 2048 Bytes 17.12.2015 16:37:07 XBV00024.VDF : 8.12.37.66 2048 Bytes 17.12.2015 16:37:07 XBV00025.VDF : 8.12.37.66 2048 Bytes 17.12.2015 16:37:07 XBV00026.VDF : 8.12.37.66 2048 Bytes 17.12.2015 16:37:07 XBV00027.VDF : 8.12.37.66 2048 Bytes 17.12.2015 16:37:07 XBV00028.VDF : 8.12.37.66 2048 Bytes 17.12.2015 16:37:07 XBV00029.VDF : 8.12.37.66 2048 Bytes 17.12.2015 16:37:07 XBV00030.VDF : 8.12.37.66 2048 Bytes 17.12.2015 16:37:07 XBV00031.VDF : 8.12.37.66 2048 Bytes 17.12.2015 16:37:07 XBV00032.VDF : 8.12.37.66 2048 Bytes 17.12.2015 16:37:07 XBV00033.VDF : 8.12.37.66 2048 Bytes 17.12.2015 16:37:08 XBV00034.VDF : 8.12.37.66 2048 Bytes 17.12.2015 16:37:08 XBV00035.VDF : 8.12.37.66 2048 Bytes 17.12.2015 16:37:08 XBV00036.VDF : 8.12.37.66 2048 Bytes 17.12.2015 16:37:08 XBV00037.VDF : 8.12.37.66 2048 Bytes 17.12.2015 16:37:08 XBV00038.VDF : 8.12.37.66 2048 Bytes 17.12.2015 16:37:08 XBV00039.VDF : 8.12.37.66 2048 Bytes 17.12.2015 16:37:08 XBV00040.VDF : 8.12.37.66 2048 Bytes 17.12.2015 16:37:09 XBV00041.VDF : 8.12.37.66 2048 Bytes 17.12.2015 16:37:09 XBV00176.VDF : 8.12.71.186 2048 Bytes 19.03.2016 18:50:30 XBV00177.VDF : 8.12.71.186 2048 Bytes 19.03.2016 18:50:30 XBV00178.VDF : 8.12.71.186 2048 Bytes 19.03.2016 18:50:30 XBV00179.VDF : 8.12.71.186 2048 Bytes 19.03.2016 18:50:30 XBV00180.VDF : 8.12.71.186 2048 Bytes 19.03.2016 18:50:30 XBV00181.VDF : 8.12.71.186 2048 Bytes 19.03.2016 18:50:30 XBV00182.VDF : 8.12.71.186 2048 Bytes 19.03.2016 18:50:31 XBV00183.VDF : 8.12.71.186 2048 Bytes 19.03.2016 18:50:31 XBV00184.VDF : 8.12.71.186 2048 Bytes 19.03.2016 18:50:31 XBV00185.VDF : 8.12.71.186 2048 Bytes 19.03.2016 18:50:31 XBV00186.VDF : 8.12.71.186 2048 Bytes 19.03.2016 18:50:31 XBV00187.VDF : 8.12.71.186 2048 Bytes 19.03.2016 18:50:31 XBV00188.VDF : 8.12.71.186 2048 Bytes 19.03.2016 18:50:31 XBV00189.VDF : 8.12.71.186 2048 Bytes 19.03.2016 18:50:31 XBV00190.VDF : 8.12.71.186 2048 Bytes 19.03.2016 18:50:31 XBV00191.VDF : 8.12.71.186 2048 Bytes 19.03.2016 18:50:31 XBV00192.VDF : 8.12.71.186 2048 Bytes 19.03.2016 18:50:31 XBV00193.VDF : 8.12.71.186 2048 Bytes 19.03.2016 18:50:31 XBV00194.VDF : 8.12.71.186 2048 Bytes 19.03.2016 18:50:31 XBV00195.VDF : 8.12.71.186 2048 Bytes 19.03.2016 18:50:32 XBV00196.VDF : 8.12.71.186 2048 Bytes 19.03.2016 18:50:32 XBV00197.VDF : 8.12.71.186 2048 Bytes 19.03.2016 18:50:32 XBV00198.VDF : 8.12.71.186 2048 Bytes 19.03.2016 18:50:32 XBV00199.VDF : 8.12.71.186 2048 Bytes 19.03.2016 18:50:32 XBV00200.VDF : 8.12.71.186 2048 Bytes 19.03.2016 18:50:32 XBV00201.VDF : 8.12.71.186 2048 Bytes 19.03.2016 18:50:32 XBV00202.VDF : 8.12.71.186 2048 Bytes 19.03.2016 18:50:32 XBV00203.VDF : 8.12.71.186 2048 Bytes 19.03.2016 18:50:32 XBV00204.VDF : 8.12.71.186 2048 Bytes 19.03.2016 18:50:33 XBV00205.VDF : 8.12.71.186 2048 Bytes 19.03.2016 18:50:33 XBV00206.VDF : 8.12.71.186 2048 Bytes 19.03.2016 18:50:33 XBV00207.VDF : 8.12.71.186 2048 Bytes 19.03.2016 18:50:33 XBV00208.VDF : 8.12.71.186 2048 Bytes 19.03.2016 18:50:33 XBV00209.VDF : 8.12.71.186 2048 Bytes 19.03.2016 18:50:33 XBV00210.VDF : 8.12.71.186 2048 Bytes 19.03.2016 18:50:33 XBV00211.VDF : 8.12.71.186 2048 Bytes 19.03.2016 18:50:33 XBV00212.VDF : 8.12.71.186 2048 Bytes 19.03.2016 18:50:33 XBV00213.VDF : 8.12.71.186 2048 Bytes 19.03.2016 18:50:34 XBV00214.VDF : 8.12.71.186 2048 Bytes 19.03.2016 18:50:34 XBV00215.VDF : 8.12.71.186 2048 Bytes 19.03.2016 18:50:34 XBV00216.VDF : 8.12.71.186 2048 Bytes 19.03.2016 18:50:34 XBV00217.VDF : 8.12.71.186 2048 Bytes 19.03.2016 18:50:34 XBV00218.VDF : 8.12.71.186 2048 Bytes 19.03.2016 18:50:34 XBV00219.VDF : 8.12.71.186 2048 Bytes 19.03.2016 18:50:34 XBV00220.VDF : 8.12.71.186 2048 Bytes 19.03.2016 18:50:35 XBV00221.VDF : 8.12.71.186 2048 Bytes 19.03.2016 18:50:35 XBV00222.VDF : 8.12.71.186 2048 Bytes 19.03.2016 18:50:35 XBV00223.VDF : 8.12.71.186 2048 Bytes 19.03.2016 18:50:35 XBV00224.VDF : 8.12.71.186 2048 Bytes 19.03.2016 18:50:35 XBV00225.VDF : 8.12.71.186 2048 Bytes 19.03.2016 18:50:35 XBV00226.VDF : 8.12.71.186 2048 Bytes 19.03.2016 18:50:35 XBV00227.VDF : 8.12.71.186 2048 Bytes 19.03.2016 18:50:35 XBV00228.VDF : 8.12.71.186 2048 Bytes 19.03.2016 18:50:36 XBV00229.VDF : 8.12.71.186 2048 Bytes 19.03.2016 18:50:36 XBV00230.VDF : 8.12.71.186 2048 Bytes 19.03.2016 18:50:36 XBV00231.VDF : 8.12.71.186 2048 Bytes 19.03.2016 18:50:36 XBV00232.VDF : 8.12.71.186 2048 Bytes 19.03.2016 18:50:36 XBV00233.VDF : 8.12.71.186 2048 Bytes 19.03.2016 18:50:36 XBV00234.VDF : 8.12.71.186 2048 Bytes 19.03.2016 18:50:36 XBV00235.VDF : 8.12.71.186 2048 Bytes 19.03.2016 18:50:36 XBV00236.VDF : 8.12.71.186 2048 Bytes 19.03.2016 18:50:36 XBV00237.VDF : 8.12.71.186 2048 Bytes 19.03.2016 18:50:36 XBV00238.VDF : 8.12.71.186 2048 Bytes 19.03.2016 18:50:36 XBV00239.VDF : 8.12.71.186 2048 Bytes 19.03.2016 18:50:36 XBV00240.VDF : 8.12.71.186 2048 Bytes 19.03.2016 18:50:36 XBV00241.VDF : 8.12.71.186 2048 Bytes 19.03.2016 18:50:36 XBV00242.VDF : 8.12.71.186 2048 Bytes 19.03.2016 18:50:36 XBV00243.VDF : 8.12.71.186 2048 Bytes 19.03.2016 18:50:37 XBV00244.VDF : 8.12.71.186 2048 Bytes 19.03.2016 18:50:37 XBV00245.VDF : 8.12.71.186 2048 Bytes 19.03.2016 18:50:37 XBV00246.VDF : 8.12.71.186 2048 Bytes 19.03.2016 18:50:37 XBV00247.VDF : 8.12.71.186 2048 Bytes 19.03.2016 18:50:37 XBV00248.VDF : 8.12.71.186 2048 Bytes 19.03.2016 18:50:37 XBV00249.VDF : 8.12.71.186 2048 Bytes 19.03.2016 18:50:37 XBV00250.VDF : 8.12.71.186 2048 Bytes 19.03.2016 18:50:37 XBV00251.VDF : 8.12.71.186 2048 Bytes 19.03.2016 18:50:37 XBV00252.VDF : 8.12.71.186 2048 Bytes 19.03.2016 18:50:37 XBV00253.VDF : 8.12.71.186 2048 Bytes 19.03.2016 18:50:37 XBV00254.VDF : 8.12.71.186 2048 Bytes 19.03.2016 18:50:37 XBV00255.VDF : 8.12.71.186 2048 Bytes 19.03.2016 18:50:37 XBV00000.VDF : 7.11.70.0 66736640 Bytes 04.04.2013 18:14:08 XBV00001.VDF : 7.11.237.0 48041984 Bytes 02.06.2015 16:36:36 XBV00002.VDF : 7.12.37.36 16452096 Bytes 17.12.2015 16:37:04 XBV00003.VDF : 8.12.44.142 3948032 Bytes 09.01.2016 16:09:49 XBV00004.VDF : 8.12.52.208 4036096 Bytes 02.02.2016 18:50:08 XBV00005.VDF : 8.12.62.184 2779136 Bytes 26.02.2016 18:50:13 XBV00006.VDF : 8.12.71.186 2191360 Bytes 19.03.2016 18:50:16 XBV00042.VDF : 8.12.71.214 53248 Bytes 20.03.2016 18:50:16 XBV00043.VDF : 8.12.71.242 6656 Bytes 20.03.2016 18:50:17 XBV00044.VDF : 8.12.72.14 13312 Bytes 20.03.2016 18:50:17 XBV00045.VDF : 8.12.72.90 2048 Bytes 20.03.2016 18:50:17 XBV00046.VDF : 8.12.72.146 54272 Bytes 21.03.2016 18:50:17 XBV00047.VDF : 8.12.72.174 10240 Bytes 21.03.2016 18:50:17 XBV00048.VDF : 8.12.72.202 7680 Bytes 21.03.2016 18:50:17 XBV00049.VDF : 8.12.72.204 22528 Bytes 21.03.2016 18:50:17 XBV00050.VDF : 8.12.72.206 8704 Bytes 21.03.2016 18:50:17 XBV00051.VDF : 8.12.72.210 17408 Bytes 21.03.2016 18:50:17 XBV00052.VDF : 8.12.72.230 2048 Bytes 21.03.2016 18:50:17 XBV00053.VDF : 8.12.72.250 26112 Bytes 21.03.2016 18:50:18 XBV00054.VDF : 8.12.72.254 2048 Bytes 21.03.2016 18:50:18 XBV00055.VDF : 8.12.73.18 9728 Bytes 21.03.2016 18:50:18 XBV00056.VDF : 8.12.73.38 5120 Bytes 21.03.2016 18:50:18 XBV00057.VDF : 8.12.73.58 8704 Bytes 21.03.2016 18:50:18 XBV00058.VDF : 8.12.73.80 27136 Bytes 22.03.2016 18:50:18 XBV00059.VDF : 8.12.73.82 14848 Bytes 22.03.2016 18:50:18 XBV00060.VDF : 8.12.73.102 15872 Bytes 22.03.2016 18:50:18 XBV00061.VDF : 8.12.73.120 10752 Bytes 22.03.2016 18:50:18 XBV00062.VDF : 8.12.73.172 95232 Bytes 22.03.2016 18:50:18 XBV00063.VDF : 8.12.73.190 11264 Bytes 22.03.2016 18:50:19 XBV00064.VDF : 8.12.73.212 18432 Bytes 22.03.2016 18:50:19 XBV00065.VDF : 8.12.73.232 9216 Bytes 22.03.2016 18:50:19 XBV00066.VDF : 8.12.73.250 7680 Bytes 22.03.2016 18:50:19 XBV00067.VDF : 8.12.74.12 12800 Bytes 22.03.2016 18:50:19 XBV00068.VDF : 8.12.74.30 9728 Bytes 22.03.2016 18:50:19 XBV00069.VDF : 8.12.74.32 12288 Bytes 22.03.2016 18:50:19 XBV00070.VDF : 8.12.74.52 25600 Bytes 23.03.2016 18:50:20 XBV00071.VDF : 8.12.74.68 15872 Bytes 23.03.2016 18:50:20 XBV00072.VDF : 8.12.74.84 57856 Bytes 23.03.2016 18:50:20 XBV00073.VDF : 8.12.74.100 2048 Bytes 23.03.2016 18:50:20 XBV00074.VDF : 8.12.74.118 21504 Bytes 23.03.2016 18:50:20 XBV00075.VDF : 8.12.74.120 9728 Bytes 23.03.2016 18:50:20 XBV00076.VDF : 8.12.74.122 9728 Bytes 23.03.2016 18:50:20 XBV00077.VDF : 8.12.74.124 10240 Bytes 23.03.2016 18:50:20 XBV00078.VDF : 8.12.74.126 8704 Bytes 23.03.2016 18:50:20 XBV00079.VDF : 8.12.74.144 39936 Bytes 24.03.2016 18:50:21 XBV00080.VDF : 8.12.74.160 2048 Bytes 24.03.2016 18:50:21 XBV00081.VDF : 8.12.74.176 19456 Bytes 24.03.2016 18:50:21 XBV00082.VDF : 8.12.74.192 4096 Bytes 24.03.2016 18:50:21 XBV00083.VDF : 8.12.74.208 14336 Bytes 24.03.2016 18:50:21 XBV00084.VDF : 8.12.74.210 10240 Bytes 24.03.2016 18:50:21 XBV00085.VDF : 8.12.74.212 16896 Bytes 24.03.2016 18:50:21 XBV00086.VDF : 8.12.74.214 10752 Bytes 24.03.2016 18:50:21 XBV00087.VDF : 8.12.74.216 8192 Bytes 24.03.2016 18:50:21 XBV00088.VDF : 8.12.74.218 9728 Bytes 24.03.2016 18:50:21 XBV00089.VDF : 8.12.74.220 2048 Bytes 24.03.2016 18:50:21 XBV00090.VDF : 8.12.74.222 13312 Bytes 24.03.2016 18:50:22 XBV00091.VDF : 8.12.74.224 9216 Bytes 24.03.2016 18:50:22 XBV00092.VDF : 8.12.74.226 8704 Bytes 24.03.2016 18:50:22 XBV00093.VDF : 8.12.74.228 6656 Bytes 24.03.2016 18:50:22 XBV00094.VDF : 8.12.74.234 27136 Bytes 25.03.2016 18:50:22 XBV00095.VDF : 8.12.74.236 2560 Bytes 25.03.2016 18:50:22 XBV00096.VDF : 8.12.74.238 2560 Bytes 25.03.2016 18:50:22 XBV00097.VDF : 8.12.74.240 14848 Bytes 25.03.2016 18:50:22 XBV00098.VDF : 8.12.74.242 14848 Bytes 25.03.2016 18:50:22 XBV00099.VDF : 8.12.74.244 18432 Bytes 25.03.2016 18:50:22 XBV00100.VDF : 8.12.74.250 41472 Bytes 25.03.2016 18:50:22 XBV00101.VDF : 8.12.74.252 6656 Bytes 25.03.2016 18:50:22 XBV00102.VDF : 8.12.75.12 89600 Bytes 26.03.2016 18:50:23 XBV00103.VDF : 8.12.75.26 2048 Bytes 26.03.2016 18:50:23 XBV00104.VDF : 8.12.75.40 41472 Bytes 26.03.2016 18:50:23 XBV00105.VDF : 8.12.75.54 2048 Bytes 26.03.2016 18:50:23 XBV00106.VDF : 8.12.75.68 99840 Bytes 27.03.2016 18:50:23 XBV00107.VDF : 8.12.75.94 20992 Bytes 27.03.2016 18:50:23 XBV00108.VDF : 8.12.75.108 11776 Bytes 27.03.2016 18:50:23 XBV00109.VDF : 8.12.75.122 12288 Bytes 27.03.2016 18:50:23 XBV00110.VDF : 8.12.75.136 9728 Bytes 27.03.2016 18:50:24 XBV00111.VDF : 8.12.75.138 99328 Bytes 28.03.2016 18:50:24 XBV00112.VDF : 8.12.75.154 11776 Bytes 28.03.2016 18:50:24 XBV00113.VDF : 8.12.75.168 10752 Bytes 28.03.2016 18:50:24 XBV00114.VDF : 8.12.75.180 8192 Bytes 28.03.2016 18:50:24 XBV00115.VDF : 8.12.75.192 29696 Bytes 28.03.2016 18:50:24 XBV00116.VDF : 8.12.75.204 3072 Bytes 28.03.2016 18:50:24 XBV00117.VDF : 8.12.75.220 2048 Bytes 28.03.2016 18:50:24 XBV00118.VDF : 8.12.75.232 44032 Bytes 28.03.2016 18:50:24 XBV00119.VDF : 8.12.75.244 14848 Bytes 28.03.2016 18:50:24 XBV00120.VDF : 8.12.75.246 16384 Bytes 28.03.2016 18:50:25 XBV00121.VDF : 8.12.75.248 29184 Bytes 28.03.2016 18:50:25 XBV00122.VDF : 8.12.75.250 11264 Bytes 28.03.2016 18:50:25 XBV00123.VDF : 8.12.75.254 2048 Bytes 28.03.2016 18:50:25 XBV00124.VDF : 8.12.76.10 48128 Bytes 29.03.2016 18:50:25 XBV00125.VDF : 8.12.76.22 10752 Bytes 29.03.2016 18:50:25 XBV00126.VDF : 8.12.76.34 10752 Bytes 29.03.2016 18:50:25 XBV00127.VDF : 8.12.76.46 32768 Bytes 29.03.2016 18:50:25 XBV00128.VDF : 8.12.76.48 14848 Bytes 29.03.2016 18:50:25 XBV00129.VDF : 8.12.76.50 28672 Bytes 29.03.2016 18:50:25 XBV00130.VDF : 8.12.76.62 2048 Bytes 29.03.2016 18:50:25 XBV00131.VDF : 8.12.76.64 2560 Bytes 29.03.2016 18:50:26 XBV00132.VDF : 8.12.76.74 26112 Bytes 29.03.2016 18:50:26 XBV00133.VDF : 8.12.76.84 24064 Bytes 29.03.2016 18:50:26 XBV00134.VDF : 8.12.76.94 13312 Bytes 29.03.2016 18:50:26 XBV00135.VDF : 8.12.76.104 2048 Bytes 29.03.2016 18:50:26 XBV00136.VDF : 8.12.76.114 31744 Bytes 29.03.2016 18:50:26 XBV00137.VDF : 8.12.76.116 2048 Bytes 29.03.2016 18:50:26 XBV00138.VDF : 8.12.76.118 50688 Bytes 29.03.2016 18:50:26 XBV00139.VDF : 8.12.76.124 54784 Bytes 30.03.2016 18:50:26 XBV00140.VDF : 8.12.76.128 19456 Bytes 30.03.2016 18:50:26 XBV00141.VDF : 8.12.76.130 19456 Bytes 30.03.2016 18:50:27 XBV00142.VDF : 8.12.76.132 2048 Bytes 30.03.2016 18:50:27 XBV00143.VDF : 8.12.76.136 61952 Bytes 30.03.2016 18:50:27 XBV00144.VDF : 8.12.76.138 2048 Bytes 30.03.2016 18:50:27 XBV00145.VDF : 8.12.76.148 22528 Bytes 30.03.2016 18:50:27 XBV00146.VDF : 8.12.76.158 38400 Bytes 30.03.2016 18:50:27 XBV00147.VDF : 8.12.76.168 17920 Bytes 30.03.2016 18:50:27 XBV00148.VDF : 8.12.76.178 20480 Bytes 30.03.2016 18:50:27 XBV00149.VDF : 8.12.76.180 2048 Bytes 30.03.2016 18:50:27 XBV00150.VDF : 8.12.76.182 2048 Bytes 30.03.2016 18:50:27 XBV00151.VDF : 8.12.76.186 66048 Bytes 31.03.2016 18:50:28 XBV00152.VDF : 8.12.76.188 21504 Bytes 31.03.2016 18:50:28 XBV00153.VDF : 8.12.76.190 20992 Bytes 31.03.2016 18:50:28 XBV00154.VDF : 8.12.76.192 16896 Bytes 31.03.2016 18:50:28 XBV00155.VDF : 8.12.76.202 29696 Bytes 31.03.2016 18:50:28 XBV00156.VDF : 8.12.76.214 50176 Bytes 31.03.2016 18:50:28 XBV00157.VDF : 8.12.76.216 2048 Bytes 31.03.2016 18:50:28 XBV00158.VDF : 8.12.76.224 16896 Bytes 31.03.2016 18:50:28 XBV00159.VDF : 8.12.76.232 16384 Bytes 31.03.2016 18:50:28 XBV00160.VDF : 8.12.76.252 55808 Bytes 01.04.2016 18:50:29 XBV00161.VDF : 8.12.77.4 20480 Bytes 01.04.2016 18:50:29 XBV00162.VDF : 8.12.77.14 11264 Bytes 01.04.2016 18:50:29 XBV00163.VDF : 8.12.77.22 13312 Bytes 01.04.2016 18:50:29 XBV00164.VDF : 8.12.77.24 16896 Bytes 01.04.2016 18:50:29 XBV00165.VDF : 8.12.77.26 14848 Bytes 01.04.2016 18:50:29 XBV00166.VDF : 8.12.77.50 6656 Bytes 01.04.2016 18:50:29 XBV00167.VDF : 8.12.77.56 14848 Bytes 01.04.2016 18:50:29 XBV00168.VDF : 8.12.77.62 13824 Bytes 01.04.2016 18:50:29 XBV00169.VDF : 8.12.77.64 2048 Bytes 01.04.2016 18:50:29 XBV00170.VDF : 8.12.77.70 27136 Bytes 01.04.2016 18:50:30 XBV00171.VDF : 8.12.77.76 11264 Bytes 01.04.2016 18:50:30 XBV00172.VDF : 8.12.77.86 58880 Bytes 02.04.2016 18:50:30 XBV00173.VDF : 8.12.77.90 16896 Bytes 02.04.2016 18:50:30 XBV00174.VDF : 8.12.77.94 12288 Bytes 02.04.2016 18:50:30 XBV00175.VDF : 8.12.77.98 22528 Bytes 02.04.2016 18:50:30 LOCAL000.VDF : 8.12.77.98 148305920 Bytes 02.04.2016 18:53:24 Engineversion : 8.3.38.10 AEBB.DLL : 8.1.3.0 59296 Bytes 03.12.2015 19:42:08 AECORE.DLL : 8.3.12.4 247720 Bytes 02.04.2016 18:48:52 AEDROID.DLL : 8.4.3.348 1800104 Bytes 03.12.2015 19:42:48 AEEMU.DLL : 8.1.3.8 404328 Bytes 02.04.2016 18:48:53 AEEXP.DLL : 8.4.2.152 293744 Bytes 02.04.2016 18:49:07 AEGEN.DLL : 8.1.8.72 526240 Bytes 02.04.2016 18:48:53 AEHELP.DLL : 8.3.2.10 284584 Bytes 02.04.2016 18:48:53 AEHEUR.DLL : 8.1.4.2232 10144624 Bytes 02.04.2016 18:49:01 AEMOBILE.DLL : 8.1.8.10 301936 Bytes 03.12.2015 19:42:49 AEOFFICE.DLL : 8.3.3.22 456616 Bytes 02.04.2016 18:49:02 AEPACK.DLL : 8.4.2.14 805744 Bytes 02.04.2016 18:49:04 AERDL.DLL : 8.2.1.42 813928 Bytes 02.04.2016 18:49:04 AESBX.DLL : 8.2.21.4 1629032 Bytes 02.04.2016 18:49:06 AESCN.DLL : 8.3.4.4 142456 Bytes 02.04.2016 18:49:05 AESCRIPT.DLL : 8.3.0.82 583592 Bytes 02.04.2016 18:49:05 AEVDF.DLL : 8.3.3.4 142184 Bytes 02.04.2016 18:49:05 AVWINLL.DLL : 15.0.16.227 27680 Bytes 02.04.2016 18:48:50 AVPREF.DLL : 15.0.16.227 53944 Bytes 02.04.2016 18:49:18 AVREP.DLL : 15.0.16.227 223400 Bytes 02.04.2016 18:49:19 AVARKT.DLL : 15.0.16.227 230080 Bytes 02.04.2016 18:49:08 AVEVTLOG.DLL : 15.0.16.251 200192 Bytes 02.04.2016 18:49:11 SQLITE3.DLL : 15.0.16.227 459752 Bytes 02.04.2016 18:50:00 AVSMTP.DLL : 15.0.16.227 80200 Bytes 02.04.2016 18:49:23 NETNT.DLL : 15.0.16.227 16880 Bytes 02.04.2016 18:49:55 CommonImageRc.dll: 15.0.16.222 4307832 Bytes 02.04.2016 18:48:51 CommonTextRc.dll: 15.0.16.222 68864 Bytes 02.04.2016 18:48:51 Konfiguration für den aktuellen Suchlauf: Job Name..............................: AVGuardAsyncScan Konfigurationsdatei...................: C:\ProgramData\Avira\Antivirus\TEMP\AVGUARD_581dfe78\guard_slideup.avp Protokollierung.......................: standard Primäre Aktion........................: Reparieren Sekundäre Aktion......................: Quarantäne Durchsuche Masterbootsektoren.........: ein Durchsuche Bootsektoren...............: aus Durchsuche aktive Programme...........: ein Durchsuche Registrierung..............: aus Suche nach Rootkits...................: aus Integritätsprüfung von Systemdateien..: aus Prüfe alle Dateien....................: Alle Dateien Durchsuche Archive....................: ein Rekursionstiefe einschränken..........: 20 Archiv Smart Extensions...............: ein Makrovirenheuristik...................: ein Dateiheuristik........................: Vollständig Auszulassende Dateien.................: Beginn des Suchlaufs: Samstag, 5. November 2016 18:07 Der Suchlauf über gestartete Prozesse wird begonnen: Durchsuche Prozess 'svchost.exe' - '45' Modul(e) wurden durchsucht Durchsuche Prozess 'svchost.exe' - '31' Modul(e) wurden durchsucht Durchsuche Prozess 'dwm.exe' - '37' Modul(e) wurden durchsucht Durchsuche Prozess 'atiesrxx.exe' - '16' Modul(e) wurden durchsucht Durchsuche Prozess 'svchost.exe' - '81' Modul(e) wurden durchsucht Durchsuche Prozess 'svchost.exe' - '199' Modul(e) wurden durchsucht Durchsuche Prozess 'svchost.exe' - '67' Modul(e) wurden durchsucht Durchsuche Prozess 'atieclxx.exe' - '45' Modul(e) wurden durchsucht Durchsuche Prozess 'svchost.exe' - '112' Modul(e) wurden durchsucht Durchsuche Prozess 'svchost.exe' - '73' Modul(e) wurden durchsucht Durchsuche Prozess 'spoolsv.exe' - '74' Modul(e) wurden durchsucht Durchsuche Prozess 'sched.exe' - '70' Modul(e) wurden durchsucht Durchsuche Prozess 'svchost.exe' - '84' Modul(e) wurden durchsucht Durchsuche Prozess 'Fuel.Service.exe' - '28' Modul(e) wurden durchsucht Durchsuche Prozess 'avguard.exe' - '124' Modul(e) wurden durchsucht Durchsuche Prozess 'AppleMobileDeviceService.exe' - '63' Modul(e) wurden durchsucht Durchsuche Prozess 'mDNSResponder.exe' - '28' Modul(e) wurden durchsucht Durchsuche Prozess 'CxAudMsg64.exe' - '29' Modul(e) wurden durchsucht Durchsuche Prozess 'svchost.exe' - '59' Modul(e) wurden durchsucht Durchsuche Prozess 'dashost.exe' - '33' Modul(e) wurden durchsucht Durchsuche Prozess 'integratedoffice.exe' - '73' Modul(e) wurden durchsucht Durchsuche Prozess 'Avira.ServiceHost.exe' - '107' Modul(e) wurden durchsucht Durchsuche Prozess 'taskeng.exe' - '32' Modul(e) wurden durchsucht Durchsuche Prozess 'taskhostex.exe' - '48' Modul(e) wurden durchsucht Durchsuche Prozess 'WConnectorProductivity.exe' - '62' Modul(e) wurden durchsucht Durchsuche Prozess 'Explorer.EXE' - '233' Modul(e) wurden durchsucht Durchsuche Prozess 'YCMMirage.exe' - '41' Modul(e) wurden durchsucht Durchsuche Prozess 'skydrive.exe' - '94' Modul(e) wurden durchsucht Durchsuche Prozess 'avshadow.exe' - '23' Modul(e) wurden durchsucht Durchsuche Prozess 'SearchIndexer.exe' - '60' Modul(e) wurden durchsucht Durchsuche Prozess 'svchost.exe' - '41' Modul(e) wurden durchsucht Durchsuche Prozess 'WUDFHost.exe' - '22' Modul(e) wurden durchsucht Durchsuche Prozess 'CAudioFilterAgent64.exe' - '33' Modul(e) wurden durchsucht Durchsuche Prozess 'Energy Management.exe' - '39' Modul(e) wurden durchsucht Durchsuche Prozess 'utility.exe' - '33' Modul(e) wurden durchsucht Durchsuche Prozess 'SynTPEnh.exe' - '45' Modul(e) wurden durchsucht Durchsuche Prozess 'SpotifyWebHelper.exe' - '45' Modul(e) wurden durchsucht Durchsuche Prozess 'SSScheduler.exe' - '21' Modul(e) wurden durchsucht Durchsuche Prozess 'YouCamTray.exe' - '42' Modul(e) wurden durchsucht Durchsuche Prozess 'PDVD10Serv.exe' - '32' Modul(e) wurden durchsucht Durchsuche Prozess 'SYNTPHELPER.EXE' - '17' Modul(e) wurden durchsucht Durchsuche Prozess 'avgnt.exe' - '118' Modul(e) wurden durchsucht Durchsuche Prozess 'pdf24.exe' - '37' Modul(e) wurden durchsucht Durchsuche Prozess 'Avira.Systray.exe' - '131' Modul(e) wurden durchsucht Durchsuche Prozess 'SettingSyncHost.exe' - '114' Modul(e) wurden durchsucht Durchsuche Prozess 'rundll32.exe' - '33' Modul(e) wurden durchsucht Durchsuche Prozess 'taskhost.exe' - '44' Modul(e) wurden durchsucht Durchsuche Prozess 'DllHost.exe' - '39' Modul(e) wurden durchsucht Durchsuche Prozess 'wmiprvse.exe' - '28' Modul(e) wurden durchsucht Durchsuche Prozess 'firefox.exe' - '141' Modul(e) wurden durchsucht Durchsuche Prozess 'plugin-container.exe' - '75' Modul(e) wurden durchsucht Durchsuche Prozess 'avcenter.exe' - '124' Modul(e) wurden durchsucht Durchsuche Prozess 'update.exe' - '82' Modul(e) wurden durchsucht Durchsuche Prozess 'updrgui.exe' - '58' Modul(e) wurden durchsucht Durchsuche Prozess 'SearchProtocolHost.exe' - '37' Modul(e) wurden durchsucht Durchsuche Prozess 'SearchFilterHost.exe' - '26' Modul(e) wurden durchsucht Durchsuche Prozess 'avscan.exe' - '114' Modul(e) wurden durchsucht Durchsuche Prozess 'WBrowserKeeper.exe' - '8' Modul(e) wurden durchsucht Durchsuche Prozess 'svchost.exe' - '8' Modul(e) wurden durchsucht Durchsuche Prozess 'wininit.exe' - '15' Modul(e) wurden durchsucht Durchsuche Prozess 'winlogon.exe' - '31' Modul(e) wurden durchsucht Durchsuche Prozess 'lsass.exe' - '60' Modul(e) wurden durchsucht Der Suchlauf über die ausgewählten Dateien wird begonnen: Beginne mit der Suche in 'C:\Users\jarnds\Downloads\SafeDownload.exe' C:\Users\jarnds\Downloads\SafeDownload.exe [0] Archivtyp: Inno Setup --> {tmp}\cinshlpr.dll [FUND] Enthält Muster der Software PUA/Widdit.Gen4 [WARNUNG] Infizierte Dateien in Archiven können nicht repariert werden [HINWEIS] Die Datei wurde ins Quarantäneverzeichnis unter dem Namen '34019e45.qua' verschoben! Ende des Suchlaufs: Samstag, 5. November 2016 18:24 Benötigte Zeit: 16:52 Minute(n) Der Suchlauf wurde vollständig durchgeführt. 0 Verzeichnisse wurden überprüft 1025 Dateien wurden geprüft 1 Viren bzw. unerwünschte Programme wurden gefunden 0 Dateien wurden als verdächtig eingestuft 0 Dateien wurden gelöscht 0 Viren bzw. unerwünschte Programme wurden repariert 1 Dateien wurden in die Quarantäne verschoben 0 Dateien wurden umbenannt 0 Dateien konnten nicht durchsucht werden 1024 Dateien ohne Befall 2 Archive wurden durchsucht 1 Warnungen 1 Hinweise Code:
ATTFilter Malwarebytes Anti-Malware www.malwarebytes.org Suchlaufdatum: 05.11.2016 Suchlaufzeit: 19:08 Protokolldatei: mbam_161105_2000.txt Administrator: Ja Version: 2.2.1.1043 Malware-Datenbank: v2016.11.05.08 Rootkit-Datenbank: v2016.10.31.01 Lizenz: Testversion Malware-Schutz: Aktiviert Schutz vor bösartigen Websites: Aktiviert Selbstschutz: Deaktiviert Betriebssystem: Windows 8.1 CPU: x64 Dateisystem: NTFS Benutzer: jarnds Suchlauftyp: Bedrohungssuchlauf Ergebnis: Abgeschlossen Durchsuchte Objekte: 324154 Abgelaufene Zeit: 50 Min., 30 Sek. Speicher: Aktiviert Start: Aktiviert Dateisystem: Aktiviert Archive: Aktiviert Rootkits: Deaktiviert Heuristik: Aktiviert PUP: Aktiviert PUM: Aktiviert Prozesse: 1 PUP.Optional.HomeTab, C:\Program Files (x86)\HomeTab\WConnectorProductivity.exe, 4996, Löschen bei Neustart, [515b516b2e6c6cca0d47bbfa4bb7857b] Module: 0 (keine bösartigen Elemente erkannt) Registrierungsschlüssel: 102 PUP.Optional.Iminent, HKLM\SOFTWARE\CLASSES\APPID\{01994268-3C10-4044-A1EA-7A9C1B739A11}, In Quarantäne, [75378537e4b6a78ff6209af613efef11], PUP.Optional.Iminent, HKLM\SOFTWARE\WOW6432NODE\CLASSES\APPID\{01994268-3C10-4044-A1EA-7A9C1B739A11}, In Quarantäne, [75378537e4b6a78ff6209af613efef11], PUP.Optional.Iminent, HKLM\SOFTWARE\CLASSES\WOW6432NODE\APPID\{01994268-3C10-4044-A1EA-7A9C1B739A11}, In Quarantäne, [75378537e4b6a78ff6209af613efef11], PUP.Optional.Iminent, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{01A602A0-D0B9-445B-8081-719E4177C4A7}, In Quarantäne, [c9e39527e5b5a4921afd0d8353af9967], PUP.Optional.Iminent, HKLM\SOFTWARE\CLASSES\WOW6432NODE\CLSID\{01A602A0-D0B9-445B-8081-719E4177C4A7}, In Quarantäne, [c9e39527e5b5a4921afd0d8353af9967], PUP.Optional.Iminent, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{02054E11-5113-4BE3-8153-AA8DFB5D3761}, In Quarantäne, [307c8834257595a1c0cb296d2dd54eb2], PUP.Optional.Iminent, HKLM\SOFTWARE\CLASSES\WOW6432NODE\CLSID\{02054E11-5113-4BE3-8153-AA8DFB5D3761}, In Quarantäne, [307c8834257595a1c0cb296d2dd54eb2], PUP.Optional.Iminent, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{0af350d9-3916-454b-ac53-0b0b65f41301}, In Quarantäne, [228a64580b8f4ee82aee197710f29d63], PUP.Optional.Iminent, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{68B81CCD-A80C-4060-8947-5AE69ED01199}, In Quarantäne, [08a409b37c1e3df9938a6a2612f09769], PUP.Optional.Iminent, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{E6B969FB-6D33-48d2-9061-8BBD4899EB08}, In Quarantäne, [ebc1ffbd3a60d95d34ee315fe919b44c], PUP.Optional.PriceCongress, HKCU\SOFTWARE\CLASSES\TYPELIB\{5B191EA7-F309-4D2F-AAA5-C77D84D29CCD}, In Quarantäne, [08a48d2f7426d75fc23d2804ae5310f0], PUP.Optional.PriceCongress, HKCU\SOFTWARE\CLASSES\INTERFACE\{8DA8B89E-0C65-403B-8231-AB22ECFA0687}, In Quarantäne, [08a48d2f7426d75fc23d2804ae5310f0], PUP.Optional.PriceCongress, HKCU\SOFTWARE\CLASSES\INTERFACE\{A928E66C-F501-4E66-9953-855C712F93B2}, In Quarantäne, [08a48d2f7426d75fc23d2804ae5310f0], PUP.Optional.PriceCongress, HKCU\SOFTWARE\CLASSES\INTERFACE\{B0E28FA0-DF07-44B6-95CE-48BE26DB9266}, In Quarantäne, [08a48d2f7426d75fc23d2804ae5310f0], PUP.Optional.PriceCongress, HKCU\SOFTWARE\CLASSES\INTERFACE\{E6B4EE8F-C38E-4994-BE28-229A3F92262C}, In Quarantäne, [08a48d2f7426d75fc23d2804ae5310f0], PUP.Optional.PriceCongress, HKCU\SOFTWARE\CLASSES\INTERFACE\{FCA8936E-403A-4487-A966-70F80F1D5A6A}, In Quarantäne, [08a48d2f7426d75fc23d2804ae5310f0], PUP.Optional.Iminent, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\FinishInstall igdhbblpcellaljokkpfhcjlagemhgjl, Löschen bei Neustart, [7636526ac2d8d95d94d57630ec1739c7], PUP.Optional.ProtectedSearch, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\ProtectedSearch, Löschen bei Neustart, [812bba02c6d44de96a616c4423e0619f], PUP.Optional.HomeTab, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\SCHEDULE\TASKCACHE\TREE\SystemSockets, Löschen bei Neustart, [595323998b0f9c9abb7f5d48f0136b95], PUP.Optional.Widdit, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{74CC8551-07FB-458E-9C4F-B82033FCE189}, In Quarantäne, [5f4dc9f345556dc94db6a51753b03dc3], PUP.Optional.Widdit, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B}, In Quarantäne, [c7e501bb039758de3dc6328a26ddd828], PUP.Optional.ASK.Gen, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\{41564952-412D-5637-00A7-A758B70C0501}, In Quarantäne, [6c40c9f3fb9fe15552e585394bb8956b], PUP.Optional.APNToolBar.Gen, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\APNMCP, In Quarantäne, [bdef6c50b7e3c96da498fcddc43e11ef], PUP.Optional.HomeTab, HKU\S-1-5-21-2925157275-2194030336-170780499-1002\SOFTWARE\APPDATALOW\SOFTWARE\SIMPLYTECH\HomeTab, In Quarantäne, [f1bb516b643663d3092904a1b84bc13f], PUP.Optional.SimplyTech, HKU\S-1-5-21-2925157275-2194030336-170780499-1002\SOFTWARE\APPDATALOW\SOFTWARE\SIMPLYTECH\Toolbar, In Quarantäne, [e7c52e8ed3c73303853bab09e71c738d], PUP.Optional.Widdit, HKU\S-1-5-21-2925157275-2194030336-170780499-1002\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{74CC8551-07FB-458E-9C4F-B82033FCE189}, In Quarantäne, [b9f3ba021f7bac8a22defcc0b84b9b65], PUP.Optional.Widdit, HKU\S-1-5-21-2925157275-2194030336-170780499-1002\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B}, In Quarantäne, [2b81aa12f7a347ef54ac823a9a6923dd], PUP.Optional.APNToolBar.Gen, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{D8278076-BC68-4484-9233-6E7F1628B56C}, In Quarantäne, [298300bc58428aac84c484277092f60a], PUP.Optional.APNToolBar.Gen, HKLM\SOFTWARE\CLASSES\WOW6432NODE\CLSID\{D8278076-BC68-4484-9233-6E7F1628B56C}, In Quarantäne, [298300bc58428aac84c484277092f60a], PUP.Optional.APNToolBar.Gen, HKLM\SOFTWARE\CLASSES\TYPELIB\{9945959C-AAD8-4312-8B57-2DE11927E770}, In Quarantäne, [298300bc58428aac84c484277092f60a], PUP.Optional.APNToolBar.Gen, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{BD125908-5F10-409F-9C01-F2207CA18887}, In Quarantäne, [298300bc58428aac84c484277092f60a], PUP.Optional.APNToolBar.Gen, HKLM\SOFTWARE\CLASSES\WOW6432NODE\INTERFACE\{BD125908-5F10-409F-9C01-F2207CA18887}, In Quarantäne, [298300bc58428aac84c484277092f60a], PUP.Optional.APNToolBar.Gen, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{9945959C-AAD8-4312-8B57-2DE11927E770}, In Quarantäne, [298300bc58428aac84c484277092f60a], PUP.Optional.APNToolBar.Gen, HKLM\SOFTWARE\CLASSES\WOW6432NODE\TYPELIB\{9945959C-AAD8-4312-8B57-2DE11927E770}, In Quarantäne, [298300bc58428aac84c484277092f60a], PUP.Optional.APNToolBar.Gen, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{80703783-E415-4EE3-AB60-D36981C5A6F1}, In Quarantäne, [298300bc58428aac84c484277092f60a], PUP.Optional.APNToolBar.Gen, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{80703783-E415-4EE3-AB60-D36981C5A6F1}, In Quarantäne, [298300bc58428aac84c484277092f60a], PUP.Optional.APNToolBar.Gen, HKLM\SOFTWARE\CLASSES\WOW6432NODE\INTERFACE\{80703783-E415-4EE3-AB60-D36981C5A6F1}, In Quarantäne, [298300bc58428aac84c484277092f60a], PUP.Optional.APNToolBar.Gen, HKLM\SOFTWARE\CLASSES\WOW6432NODE\CLSID\{80703783-E415-4EE3-AB60-D36981C5A6F1}, In Quarantäne, [298300bc58428aac84c484277092f60a], PUP.Optional.APNToolBar.Gen, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{41564952-412D-5637-00A7-7A786E7484D7}, In Quarantäne, [298300bc58428aac84c484277092f60a], PUP.Optional.APNToolBar.Gen, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{41564952-412D-5637-00A7-7A786E7484D7}, In Quarantäne, [298300bc58428aac84c484277092f60a], PUP.Optional.APNToolBar.Gen, HKLM\SOFTWARE\CLASSES\WOW6432NODE\CLSID\{41564952-412D-5637-00A7-7A786E7484D7}, In Quarantäne, [298300bc58428aac84c484277092f60a], PUP.Optional.APNToolBar.Gen, HKU\S-1-5-21-2925157275-2194030336-170780499-1002\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{41564952-412D-5637-00A7-7A786E7484D7}, In Quarantäne, [298300bc58428aac84c484277092f60a], PUP.Optional.APNToolBar.Gen, HKU\S-1-5-21-2925157275-2194030336-170780499-1002\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{41564952-412D-5637-00A7-7A786E7484D7}, In Quarantäne, [298300bc58428aac84c484277092f60a], PUP.Optional.HomeTab, HKLM\SOFTWARE\CLASSES\CLSID\{25e93bf1-df51-467b-b51d-fd4bd3ddb4f9}, In Quarantäne, [1894d2ea0d8de650dd77f1c446bc6a96], PUP.Optional.HomeTab, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{25e93bf1-df51-467b-b51d-fd4bd3ddb4f9}, In Quarantäne, [1894d2ea0d8de650dd77f1c446bc6a96], PUP.Optional.HomeTab, HKLM\SOFTWARE\CLASSES\TYPELIB\{5b191ea7-f309-4d2f-aaa5-c77d84d29ccd}, In Quarantäne, [1894d2ea0d8de650dd77f1c446bc6a96], PUP.Optional.HomeTab, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{5b191ea7-f309-4d2f-aaa5-c77d84d29ccd}, In Quarantäne, [1894d2ea0d8de650dd77f1c446bc6a96], PUP.Optional.HomeTab, HKLM\SOFTWARE\CLASSES\WOW6432NODE\TYPELIB\{5b191ea7-f309-4d2f-aaa5-c77d84d29ccd}, In Quarantäne, [1894d2ea0d8de650dd77f1c446bc6a96], PUP.Optional.HomeTab, HKLM\SOFTWARE\CLASSES\wtb.SourceSinkImpl.1, In Quarantäne, [1894d2ea0d8de650dd77f1c446bc6a96], PUP.Optional.HomeTab, HKLM\SOFTWARE\CLASSES\wtb.SourceSinkImpl, In Quarantäne, [1894d2ea0d8de650dd77f1c446bc6a96], PUP.Optional.HomeTab, HKCU\SOFTWARE\CLASSES\wtb.SourceSinkImpl, In Quarantäne, [1894d2ea0d8de650dd77f1c446bc6a96], PUP.Optional.HomeTab, HKLM\SOFTWARE\WOW6432NODE\CLASSES\wtb.SourceSinkImpl, In Quarantäne, [1894d2ea0d8de650dd77f1c446bc6a96], PUP.Optional.HomeTab, HKLM\SOFTWARE\CLASSES\WOW6432NODE\wtb.SourceSinkImpl, In Quarantäne, [1894d2ea0d8de650dd77f1c446bc6a96], PUP.Optional.HomeTab, HKCU\SOFTWARE\CLASSES\wtb.SourceSinkImpl.1, In Quarantäne, [1894d2ea0d8de650dd77f1c446bc6a96], PUP.Optional.HomeTab, HKLM\SOFTWARE\WOW6432NODE\CLASSES\wtb.SourceSinkImpl.1, In Quarantäne, [1894d2ea0d8de650dd77f1c446bc6a96], PUP.Optional.HomeTab, HKLM\SOFTWARE\CLASSES\WOW6432NODE\wtb.SourceSinkImpl.1, In Quarantäne, [1894d2ea0d8de650dd77f1c446bc6a96], PUP.Optional.HomeTab, HKLM\SOFTWARE\CLASSES\WOW6432NODE\CLSID\{25E93BF1-DF51-467B-B51D-FD4BD3DDB4F9}, In Quarantäne, [1894d2ea0d8de650dd77f1c446bc6a96], PUP.Optional.HomeTab, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{6fa0479b-417c-4317-b7cd-64b238930796}, In Quarantäne, [1894d2ea0d8de650dd77f1c446bc6a96], PUP.Optional.HomeTab, HKLM\SOFTWARE\CLASSES\wtb.NotificationSource.1, In Quarantäne, [1894d2ea0d8de650dd77f1c446bc6a96], PUP.Optional.HomeTab, HKLM\SOFTWARE\CLASSES\wtb.NotificationSource, In Quarantäne, [1894d2ea0d8de650dd77f1c446bc6a96], PUP.Optional.HomeTab, HKCU\SOFTWARE\CLASSES\wtb.NotificationSource, In Quarantäne, [1894d2ea0d8de650dd77f1c446bc6a96], PUP.Optional.HomeTab, HKLM\SOFTWARE\WOW6432NODE\CLASSES\wtb.NotificationSource, In Quarantäne, [1894d2ea0d8de650dd77f1c446bc6a96], PUP.Optional.HomeTab, HKLM\SOFTWARE\CLASSES\WOW6432NODE\wtb.NotificationSource, In Quarantäne, [1894d2ea0d8de650dd77f1c446bc6a96], PUP.Optional.HomeTab, HKCU\SOFTWARE\CLASSES\wtb.NotificationSource.1, In Quarantäne, [1894d2ea0d8de650dd77f1c446bc6a96], PUP.Optional.HomeTab, HKLM\SOFTWARE\WOW6432NODE\CLASSES\wtb.NotificationSource.1, In Quarantäne, [1894d2ea0d8de650dd77f1c446bc6a96], PUP.Optional.HomeTab, HKLM\SOFTWARE\CLASSES\WOW6432NODE\wtb.NotificationSource.1, In Quarantäne, [1894d2ea0d8de650dd77f1c446bc6a96], PUP.Optional.HomeTab, HKLM\SOFTWARE\CLASSES\CLSID\{6FA0479B-417C-4317-B7CD-64B238930796}, In Quarantäne, [1894d2ea0d8de650dd77f1c446bc6a96], PUP.Optional.HomeTab, HKLM\SOFTWARE\CLASSES\WOW6432NODE\CLSID\{6FA0479B-417C-4317-B7CD-64B238930796}, In Quarantäne, [1894d2ea0d8de650dd77f1c446bc6a96], PUP.Optional.HomeTab, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{af02e7d2-e73d-468c-9bbc-87367e8a4faf}, In Quarantäne, [1894d2ea0d8de650dd77f1c446bc6a96], PUP.Optional.HomeTab, HKLM\SOFTWARE\CLASSES\wtb.ToolbarInfo.1, In Quarantäne, [1894d2ea0d8de650dd77f1c446bc6a96], PUP.Optional.HomeTab, HKLM\SOFTWARE\CLASSES\wtb.ToolbarInfo, In Quarantäne, [1894d2ea0d8de650dd77f1c446bc6a96], PUP.Optional.HomeTab, HKCU\SOFTWARE\CLASSES\wtb.ToolbarInfo, In Quarantäne, [1894d2ea0d8de650dd77f1c446bc6a96], PUP.Optional.HomeTab, HKLM\SOFTWARE\WOW6432NODE\CLASSES\wtb.ToolbarInfo, In Quarantäne, [1894d2ea0d8de650dd77f1c446bc6a96], PUP.Optional.HomeTab, HKLM\SOFTWARE\CLASSES\WOW6432NODE\wtb.ToolbarInfo, In Quarantäne, [1894d2ea0d8de650dd77f1c446bc6a96], PUP.Optional.HomeTab, HKCU\SOFTWARE\CLASSES\wtb.ToolbarInfo.1, In Quarantäne, [1894d2ea0d8de650dd77f1c446bc6a96], PUP.Optional.HomeTab, HKLM\SOFTWARE\WOW6432NODE\CLASSES\wtb.ToolbarInfo.1, In Quarantäne, [1894d2ea0d8de650dd77f1c446bc6a96], PUP.Optional.HomeTab, HKLM\SOFTWARE\CLASSES\WOW6432NODE\wtb.ToolbarInfo.1, In Quarantäne, [1894d2ea0d8de650dd77f1c446bc6a96], PUP.Optional.HomeTab, HKLM\SOFTWARE\CLASSES\CLSID\{AF02E7D2-E73D-468C-9BBC-87367E8A4FAF}, In Quarantäne, [1894d2ea0d8de650dd77f1c446bc6a96], PUP.Optional.HomeTab, HKLM\SOFTWARE\CLASSES\WOW6432NODE\CLSID\{AF02E7D2-E73D-468C-9BBC-87367E8A4FAF}, In Quarantäne, [1894d2ea0d8de650dd77f1c446bc6a96], PUP.Optional.HomeTab, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{ba696155-d96e-4281-b467-0367a0456474}, In Quarantäne, [1894d2ea0d8de650dd77f1c446bc6a96], PUP.Optional.HomeTab, HKLM\SOFTWARE\CLASSES\wtb.Band.1, In Quarantäne, [1894d2ea0d8de650dd77f1c446bc6a96], PUP.Optional.HomeTab, HKLM\SOFTWARE\CLASSES\wtb.Band, In Quarantäne, [1894d2ea0d8de650dd77f1c446bc6a96], PUP.Optional.HomeTab, HKCU\SOFTWARE\CLASSES\wtb.Band, In Quarantäne, [1894d2ea0d8de650dd77f1c446bc6a96], PUP.Optional.HomeTab, HKLM\SOFTWARE\WOW6432NODE\CLASSES\wtb.Band, In Quarantäne, [1894d2ea0d8de650dd77f1c446bc6a96], PUP.Optional.HomeTab, HKLM\SOFTWARE\CLASSES\WOW6432NODE\wtb.Band, In Quarantäne, [1894d2ea0d8de650dd77f1c446bc6a96], PUP.Optional.HomeTab, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{BA696155-D96E-4281-B467-0367A0456474}, In Quarantäne, [1894d2ea0d8de650dd77f1c446bc6a96], PUP.Optional.HomeTab, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{BA696155-D96E-4281-B467-0367A0456474}, In Quarantäne, [1894d2ea0d8de650dd77f1c446bc6a96], PUP.Optional.HomeTab, HKCU\SOFTWARE\CLASSES\wtb.Band.1, In Quarantäne, [1894d2ea0d8de650dd77f1c446bc6a96], PUP.Optional.HomeTab, HKLM\SOFTWARE\WOW6432NODE\CLASSES\wtb.Band.1, In Quarantäne, [1894d2ea0d8de650dd77f1c446bc6a96], PUP.Optional.HomeTab, HKLM\SOFTWARE\CLASSES\WOW6432NODE\wtb.Band.1, In Quarantäne, [1894d2ea0d8de650dd77f1c446bc6a96], PUP.Optional.HomeTab, HKLM\SOFTWARE\CLASSES\CLSID\{BA696155-D96E-4281-B467-0367A0456474}, In Quarantäne, [1894d2ea0d8de650dd77f1c446bc6a96], PUP.Optional.HomeTab, HKLM\SOFTWARE\CLASSES\WOW6432NODE\CLSID\{BA696155-D96E-4281-B467-0367A0456474}, In Quarantäne, [1894d2ea0d8de650dd77f1c446bc6a96], PUP.Optional.HomeTab, HKU\S-1-5-21-2925157275-2194030336-170780499-1002\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{BA696155-D96E-4281-B467-0367A0456474}, In Quarantäne, [1894d2ea0d8de650dd77f1c446bc6a96], PUP.Optional.HomeTab, HKU\S-1-5-21-2925157275-2194030336-170780499-1002\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{BA696155-D96E-4281-B467-0367A0456474}, In Quarantäne, [1894d2ea0d8de650dd77f1c446bc6a96], PUP.Optional.HomeTab, HKLM\SOFTWARE\CLASSES\CLSID\{BA696155-D96E-4281-B467-0367A0456474}\INPROCSERVER32, In Quarantäne, [1894d2ea0d8de650dd77f1c446bc6a96], PUP.Optional.HomeTab, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\stdmfpam, Löschen bei Neustart, [515b516b2e6c6cca0d47bbfa4bb7857b], PUP.Optional.HomeTab, HKLM\SOFTWARE\CLASSES\TYPELIB\{F25FAEB1-AC58-4FE7-A2EB-F58578FA4A06}, In Quarantäne, [515b516b2e6c6cca0d47bbfa4bb7857b], PUP.Optional.HomeTab, HKLM\SOFTWARE\CLASSES\INTERFACE\{746DB37C-1206-42CF-9CE1-8D5AF2205E18}, In Quarantäne, [515b516b2e6c6cca0d47bbfa4bb7857b], PUP.Optional.HomeTab, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{746DB37C-1206-42CF-9CE1-8D5AF2205E18}, In Quarantäne, [515b516b2e6c6cca0d47bbfa4bb7857b], PUP.Optional.HomeTab, HKLM\SOFTWARE\CLASSES\WOW6432NODE\INTERFACE\{746DB37C-1206-42CF-9CE1-8D5AF2205E18}, In Quarantäne, [515b516b2e6c6cca0d47bbfa4bb7857b], PUP.Optional.HomeTab, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{F25FAEB1-AC58-4FE7-A2EB-F58578FA4A06}, In Quarantäne, [515b516b2e6c6cca0d47bbfa4bb7857b], PUP.Optional.HomeTab, HKLM\SOFTWARE\CLASSES\WOW6432NODE\TYPELIB\{F25FAEB1-AC58-4FE7-A2EB-F58578FA4A06}, In Quarantäne, [515b516b2e6c6cca0d47bbfa4bb7857b], Registrierungswerte: 25 PUP.Optional.SearchCertified, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCH|Search Bar, hxxp://search.certified-toolbar.com?si=43168&tid=4003&ver=7.1&ts=1374697835185.000004&tguid=46364-3869-1383841915030-248387-b5678&st=chrome&q=, In Quarantäne, [8a220cb0f2a81e18b763ab08679cde22] PUP.Optional.Widdit, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{74CC8551-07FB-458E-9C4F-B82033FCE189}|SuggestionsURL_JSON, hxxp://api.widdit.com/suggestions/?format=ffplugin&ua=ie&src=addon&si=46364&gid=46364-3869-1383841915030-248387-b5678&dbCode=1&command={searchTerms}, In Quarantäne, [5f4dc9f345556dc94db6a51753b03dc3] PUP.Optional.Widdit, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{afdbddaa-5d3f-42ee-b79c-185a7020515b}|SuggestionsURL_JSON, hxxp://api.widdit.com/suggestions/?format=ffplugin&ua=ie&src=addon&si=43168&gid=46364-3869-1383841915030-248387-b5678&dbCode=1&command={searchTerms}, In Quarantäne, [c7e501bb039758de3dc6328a26ddd828] PUP.Optional.CertifiedTB, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{74CC8551-07FB-458E-9C4F-B82033FCE189}|URL, hxxp://search.certified-toolbar.com?si=46364&st=bs&tid=3869&ver=4.9&ts=1374697835185.000004&tguid=46364-3869-1383841915030-248387-b5678&q={searchTerms}, In Quarantäne, [b9f3ead2287296a00492d5f4fe04728e] PUP.Optional.CertifiedTB, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{74CC8551-07FB-458E-9C4F-B82033FCE189}|TopResultURLFallback, hxxp://search.certified-toolbar.com?si=46364&st=bs&tid=3869&ver=4.9&ts=1374697835185.000004&tguid=46364-3869-1383841915030-248387-b5678&q={searchTerms}, In Quarantäne, [0ba100bc9ffb4fe71e787752f012eb15] PUP.Optional.CertifiedTB, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{afdbddaa-5d3f-42ee-b79c-185a7020515b}|URL, hxxp://search.certified-toolbar.com?si=43168&st=bs&tid=4003&ver=7.1&ts=1374697835185.000004&tguid=46364-3869-1383841915030-248387-b5678&q={searchTerms}, In Quarantäne, [515bbefe396185b1e0b62b9e79895da3] PUP.Optional.CertifiedTB, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{afdbddaa-5d3f-42ee-b79c-185a7020515b}|TopResultURLFallback, hxxp://search.certified-toolbar.com?si=43168&st=bs&tid=4003&ver=7.1&ts=1374697835185.000004&tguid=46364-3869-1383841915030-248387-b5678&q={searchTerms}, In Quarantäne, [39734478aeeca78fb4e2963330d28977] PUP.Optional.CertifiedToolBar.ShrtCln, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHURI|(Default), hxxp://search.certified-toolbar.com?si=46364&st=bs&tid=3869&ver=5.7&ts=1374697835185.000004&tguid=46364-3869-1383841915030-248387-b5678&q=%s, In Quarantäne, [f4b8d8e4afebd660c77c9a4fa260f10f] PUP.Optional.SearchCertified, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHURI, hxxp://search.certified-toolbar.com?si=43168&st=bs&tid=4003&ver=7.1&ts=1374697835185.000004&tguid=46364-3869-1383841915030-248387-b5678&q=%s, In Quarantäne, [d0dc3686207a55e185962d8648bb5ba5] PUP.Optional.CertifiedToolBar.ShrtCln, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHURL|(Default), hxxp://search.certified-toolbar.com?si=46364&st=bs&tid=3869&ver=5.7&ts=1374697835185.000004&tguid=46364-3869-1383841915030-248387-b5678&q=%s, In Quarantäne, [802c23994555cb6b89bb7871b25018e8] PUP.Optional.SearchCertified, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHURL, hxxp://search.certified-toolbar.com?si=43168&st=bs&tid=4003&ver=7.1&ts=1374697835185.000004&tguid=46364-3869-1383841915030-248387-b5678&q=%s, In Quarantäne, [47658438debccb6b3fdd288bb44f639d] PUP.Optional.ASK.Gen, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\{41564952-412D-5637-00A7-A758B70C0501}|InstallSource, C:\ProgramData\APN\APN-Stub\AVIRA-V7\, In Quarantäne, [6c40c9f3fb9fe15552e585394bb8956b] PUP.Optional.Iminent, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\SHAREDACCESS\PARAMETERS\FIREWALLPOLICY\FIREWALLRULES|{35A2F0C6-7C2A-483D-836D-9C912592B3FC}, v2.20|Action=Allow|Active=TRUE|Dir=In|App=C:\Program Files (x86)\Iminent\Iminent.Messengers.exe|Name=Iminent.Messengers Firewall Rule|Edge=TRUE|, In Quarantäne, [09a31d9fa4f6e55134c5a14bb94a6d93] PUP.Optional.SearchCertified, HKU\S-1-5-21-2925157275-2194030336-170780499-1002\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCH|Search Bar, hxxp://search.certified-toolbar.com?si=43168&tid=4003&ver=7.1&ts=1374697835185.000004&tguid=46364-3869-1383841915030-248387-b5678&st=chrome&q=, In Quarantäne, [5e4ee1db89112d096cada211cb38f40c] PUP.Optional.Widdit, HKU\S-1-5-21-2925157275-2194030336-170780499-1002\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{74CC8551-07FB-458E-9C4F-B82033FCE189}|SuggestionsURL_JSON, hxxp://api.widdit.com/suggestions/?format=ffplugin&ua=ie&src=addon&si=46364&gid=46364-3869-1383841915030-248387-b5678&dbCode=1&command={searchTerms}, In Quarantäne, [b9f3ba021f7bac8a22defcc0b84b9b65] PUP.Optional.Widdit, HKU\S-1-5-21-2925157275-2194030336-170780499-1002\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{afdbddaa-5d3f-42ee-b79c-185a7020515b}|SuggestionsURL_JSON, hxxp://api.widdit.com/suggestions/?format=ffplugin&ua=ie&src=addon&si=43168&gid=46364-3869-1383841915030-248387-b5678&dbCode=1&command={searchTerms}, In Quarantäne, [2b81aa12f7a347ef54ac823a9a6923dd] PUP.Optional.CertifiedTB, HKU\S-1-5-21-2925157275-2194030336-170780499-1002\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{74CC8551-07FB-458E-9C4F-B82033FCE189}|URL, hxxp://search.certified-toolbar.com?si=46364&st=bs&tid=3869&ver=4.9&ts=1374697835185.000004&tguid=46364-3869-1383841915030-248387-b5678&q={searchTerms}, In Quarantäne, [d6d6a81471291e187322b71250b26997] PUP.Optional.CertifiedTB, HKU\S-1-5-21-2925157275-2194030336-170780499-1002\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{74CC8551-07FB-458E-9C4F-B82033FCE189}|TopResultURLFallback, hxxp://search.certified-toolbar.com?si=46364&st=bs&tid=3869&ver=4.9&ts=1374697835185.000004&tguid=46364-3869-1383841915030-248387-b5678&q={searchTerms}, In Quarantäne, [3e6e7d3ff6a47cba5243f1d8788a857b] PUP.Optional.CertifiedTB, HKU\S-1-5-21-2925157275-2194030336-170780499-1002\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{afdbddaa-5d3f-42ee-b79c-185a7020515b}|URL, hxxp://search.certified-toolbar.com?si=43168&st=bs&tid=4003&ver=7.1&ts=1374697835185.000004&tguid=46364-3869-1383841915030-248387-b5678&q={searchTerms}, In Quarantäne, [f3b94478d6c4f640dbbaeddc12f02ed2] PUP.Optional.CertifiedTB, HKU\S-1-5-21-2925157275-2194030336-170780499-1002\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{afdbddaa-5d3f-42ee-b79c-185a7020515b}|TopResultURLFallback, hxxp://search.certified-toolbar.com?si=43168&st=bs&tid=4003&ver=7.1&ts=1374697835185.000004&tguid=46364-3869-1383841915030-248387-b5678&q={searchTerms}, In Quarantäne, [0ca0e9d3c1d92115860f8c3da959af51] PUP.Optional.HomeTab, HKU\S-1-5-21-2925157275-2194030336-170780499-1002\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\INTERNET SETTINGS|AutoConfigURL, hxxp://cdn1.browsersecurity.net/safe/cloud.js?si=46364&tid=3869, In Quarantäne, [1e8ec3f97d1d4beb49eba9fcaa595ca4] PUP.Optional.APNToolBar.Gen, HKU\S-1-5-21-2925157275-2194030336-170780499-1002\SOFTWARE\MICROSOFT\INTERNET EXPLORER\TOOLBAR\WEBBROWSER|{41564952-412D-5637-00A7-7A786E7484D7}, ????????, In Quarantäne, [298300bc58428aac84c484277092f60a] PUP.Optional.APNToolBar.Gen, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\TOOLBAR|{41564952-412D-5637-00A7-7A786E7484D7}, 0, In Quarantäne, [298300bc58428aac84c484277092f60a] PUP.Optional.HomeTab, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\TOOLBAR|{BA696155-D96E-4281-B467-0367A0456474}, In Quarantäne, [1894d2ea0d8de650dd77f1c446bc6a96], PUP.Optional.HomeTab, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\TOOLBAR|{BA696155-D96E-4281-B467-0367A0456474}, In Quarantäne, [1894d2ea0d8de650dd77f1c446bc6a96], Registrierungsdaten: 16 PUP.Optional.SimplyTech, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\ABOUTURLS|newtab, %appdata%\SimplyTech\home\home.htm, Gut: (www.google.com), Schlecht: (%appdata%\SimplyTech\home\home.htm),Ersetzt,[d7d5427a88120e2841ac215632d23ac6] PUP.Optional.SimplyTech, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\ABOUTURLS|newtab, %appdata%\SimplyTech\home\home.htm, Gut: (www.google.com), Schlecht: (%appdata%\SimplyTech\home\home.htm),Ersetzt,[6943318b267470c606e7d89fb351cb35] Hijack.StartPage, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\MAIN|Search Bar, hxxp://search.certified-toolbar.com?si=43168&tid=4003&ver=7.1&ts=1374697835185.000004&tguid=46364-3869-1383841915030-248387-b5678&st=chrome&q=, Gut: (hxxp://www.google.com), Schlecht: (hxxp://search.certified-toolbar.com?si=43168&tid=4003&ver=7.1&ts=1374697835185.000004&tguid=46364-3869-1383841915030-248387-b5678&st=chrome&q=),Ersetzt,[b3f939835743ce688e41561f3fc5c838] Hijack.SearchPage, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCH|Default_Search_URL, hxxp://search.certified-toolbar.com?si=43168&tid=4003&ver=7.1&ts=1374697835185.000004&tguid=46364-3869-1383841915030-248387-b5678&st=chrome&q=, Gut: (hxxp://www.google.com/), Schlecht: (hxxp://search.certified-toolbar.com?si=43168&tid=4003&ver=7.1&ts=1374697835185.000004&tguid=46364-3869-1383841915030-248387-b5678&st=chrome&q=),Ersetzt,[b3f99f1d5f3bd95db61ab0c564a0af51] Hijack.SearchPage, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCH|Search Bar, hxxp://search.certified-toolbar.com?si=43168&tid=4003&ver=7.1&ts=1374697835185.000004&tguid=46364-3869-1383841915030-248387-b5678&st=chrome&q=, Gut: (hxxp://www.google.com/), Schlecht: (hxxp://search.certified-toolbar.com?si=43168&tid=4003&ver=7.1&ts=1374697835185.000004&tguid=46364-3869-1383841915030-248387-b5678&st=chrome&q=),Ersetzt,[25873a82fd9dae883d93a7ced3319769] Hijack.SearchPage, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCH|Search Page, hxxp://search.certified-toolbar.com?si=43168&tid=4003&ver=7.1&ts=1374697835185.000004&tguid=46364-3869-1383841915030-248387-b5678&st=chrome&q=, Gut: (hxxp://www.google.com/), Schlecht: (hxxp://search.certified-toolbar.com?si=43168&tid=4003&ver=7.1&ts=1374697835185.000004&tguid=46364-3869-1383841915030-248387-b5678&st=chrome&q=),Ersetzt,[5755e5d7e8b2bf7710c0472ef80c8977] Hijack.StartPage, HKU\S-1-5-21-2925157275-2194030336-170780499-1002\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Search Page, hxxp://search.certified-toolbar.com?si=43168&tid=4003&ver=7.1&ts=1374697835185.000004&tguid=46364-3869-1383841915030-248387-b5678&st=chrome&q=, Gut: (hxxp://www.google.com), Schlecht: (hxxp://search.certified-toolbar.com?si=43168&tid=4003&ver=7.1&ts=1374697835185.000004&tguid=46364-3869-1383841915030-248387-b5678&st=chrome&q=),Ersetzt,[5656aa127e1ccd69e5e9d2a3798b43bd] Hijack.StartPage, HKU\S-1-5-21-2925157275-2194030336-170780499-1002\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Default_Search_URL, hxxp://search.certified-toolbar.com?si=43168&tid=4003&ver=7.1&ts=1374697835185.000004&tguid=46364-3869-1383841915030-248387-b5678&st=chrome&q=, Gut: (hxxp://www.google.com), Schlecht: (hxxp://search.certified-toolbar.com?si=43168&tid=4003&ver=7.1&ts=1374697835185.000004&tguid=46364-3869-1383841915030-248387-b5678&st=chrome&q=),Ersetzt,[3a7276469efc81b5339b7df833d16c94] Hijack.StartPage, HKU\S-1-5-21-2925157275-2194030336-170780499-1002\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Search Bar, hxxp://search.certified-toolbar.com?si=43168&tid=4003&ver=7.1&ts=1374697835185.000004&tguid=46364-3869-1383841915030-248387-b5678&st=chrome&q=, Gut: (hxxp://www.google.com), Schlecht: (hxxp://search.certified-toolbar.com?si=43168&tid=4003&ver=7.1&ts=1374697835185.000004&tguid=46364-3869-1383841915030-248387-b5678&st=chrome&q=),Ersetzt,[ddcf5c60603a77bf7c528bea0301bf41] Hijack.SearchPage, HKU\S-1-5-21-2925157275-2194030336-170780499-1002\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCH|Default_Search_URL, hxxp://search.certified-toolbar.com?si=43168&tid=4003&ver=7.1&ts=1374697835185.000004&tguid=46364-3869-1383841915030-248387-b5678&st=chrome&q=, Gut: (hxxp://www.google.com/), Schlecht: (hxxp://search.certified-toolbar.com?si=43168&tid=4003&ver=7.1&ts=1374697835185.000004&tguid=46364-3869-1383841915030-248387-b5678&st=chrome&q=),Ersetzt,[44681d9f8c0e3afc2da40b6ad72d46ba] Hijack.SearchPage, HKU\S-1-5-21-2925157275-2194030336-170780499-1002\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCH|Search Bar, hxxp://search.certified-toolbar.com?si=43168&tid=4003&ver=7.1&ts=1374697835185.000004&tguid=46364-3869-1383841915030-248387-b5678&st=chrome&q=, Gut: (hxxp://www.google.com/), Schlecht: (hxxp://search.certified-toolbar.com?si=43168&tid=4003&ver=7.1&ts=1374697835185.000004&tguid=46364-3869-1383841915030-248387-b5678&st=chrome&q=),Ersetzt,[5557dbe18119ab8bf3dec1b4eb195ba5] Hijack.SearchPage, HKU\S-1-5-21-2925157275-2194030336-170780499-1002\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCH|Search Page, hxxp://search.certified-toolbar.com?si=43168&tid=4003&ver=7.1&ts=1374697835185.000004&tguid=46364-3869-1383841915030-248387-b5678&st=chrome&q=, Gut: (hxxp://www.google.com/), Schlecht: (hxxp://search.certified-toolbar.com?si=43168&tid=4003&ver=7.1&ts=1374697835185.000004&tguid=46364-3869-1383841915030-248387-b5678&st=chrome&q=),Ersetzt,[5b51c3f9900a8da970611d58f410b947] PUP.Optional.SearchCertifiedTB, HKU\S-1-5-21-2925157275-2194030336-170780499-1002\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHURI|(Default), hxxp://search.certified-toolbar.com?si=46364&st=bs&tid=3869&ver=5.7&ts=1374697835185.000004&tguid=46364-3869-1383841915030-248387-b5678&q=%s, Gut: (www.google.com), Schlecht: (hxxp://search.certified-toolbar.com?si=46364&st=bs&tid=3869&ver=5.7&ts=1374697835185.000004&tguid=46364-3869-1383841915030-248387-b5678&q=%s),Ersetzt,[218b8834cfcba69005c199de31d3ef11] PUP.Optional.SearchCertifiedTB, HKU\S-1-5-21-2925157275-2194030336-170780499-1002\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHURI, hxxp://search.certified-toolbar.com?si=43168&st=bs&tid=4003&ver=7.1&ts=1374697835185.000004&tguid=46364-3869-1383841915030-248387-b5678&q=%s, Gut: (www.google.com), Schlecht: (hxxp://search.certified-toolbar.com?si=43168&st=bs&tid=4003&ver=7.1&ts=1374697835185.000004&tguid=46364-3869-1383841915030-248387-b5678&q=%s),Ersetzt,[9715a418dcbea492f9cd0e69c143a45c] PUP.Optional.SearchCertifiedTB, HKU\S-1-5-21-2925157275-2194030336-170780499-1002\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHURL|(Default), hxxp://search.certified-toolbar.com?si=46364&st=bs&tid=3869&ver=5.7&ts=1374697835185.000004&tguid=46364-3869-1383841915030-248387-b5678&q=%s, Gut: (www.google.com/), Schlecht: (hxxp://search.certified-toolbar.com?si=46364&st=bs&tid=3869&ver=5.7&ts=1374697835185.000004&tguid=46364-3869-1383841915030-248387-b5678&q=%s),Ersetzt,[189486362773e84e586fa5d2c73def11] PUP.Optional.SearchCertifiedTB, HKU\S-1-5-21-2925157275-2194030336-170780499-1002\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHURL, hxxp://search.certified-toolbar.com?si=43168&st=bs&tid=4003&ver=7.1&ts=1374697835185.000004&tguid=46364-3869-1383841915030-248387-b5678&q=%s, Gut: (www.google.com/), Schlecht: (hxxp://search.certified-toolbar.com?si=43168&st=bs&tid=4003&ver=7.1&ts=1374697835185.000004&tguid=46364-3869-1383841915030-248387-b5678&q=%s),Ersetzt,[94189527b5e555e1ac1b90e76a9a817f] Ordner: 133 PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home, In Quarantäne, [04a879434951a88ea08deabb0003629e], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\css, In Quarantäne, [04a879434951a88ea08deabb0003629e], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\fonts, In Quarantäne, [04a879434951a88ea08deabb0003629e], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\foundation, In Quarantäne, [04a879434951a88ea08deabb0003629e], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin, In Quarantäne, [04a879434951a88ea08deabb0003629e], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\assets, In Quarantäne, [04a879434951a88ea08deabb0003629e], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\css, In Quarantäne, [04a879434951a88ea08deabb0003629e], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\font, In Quarantäne, [04a879434951a88ea08deabb0003629e], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\images, In Quarantäne, [04a879434951a88ea08deabb0003629e], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\images\gradient, In Quarantäne, [04a879434951a88ea08deabb0003629e], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\js, In Quarantäne, [04a879434951a88ea08deabb0003629e], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\videojs, In Quarantäne, [04a879434951a88ea08deabb0003629e], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\videojs\font, In Quarantäne, [04a879434951a88ea08deabb0003629e], PUP.Optional.Iminent, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Iminent, In Quarantäne, [03a904b871299f9769e0daccd03356aa], PUP.Optional.APNToolBar.Gen, C:\ProgramData\APN\APN-Stub, In Quarantäne, [3d6f38840d8d58dea79ed2d957ab47b9], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\background, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\css, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\css\themes, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\css\themes\avira, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\css\themes\imesh, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\css\themes\mindspark, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\css\themes\plain, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\css\themes\taskbar, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\css\themes\v5parity, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\images, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\images\logo, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\images\search, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\images\vanilla, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\ask-avira-homepage, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\avira-homepage, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\avira-url-cloud, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\avira-url-cloud\3.0, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\avira-webguard, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\avira-webguard\1.0, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\browser-security, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\browser-security\2.0, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\com.avira.dnt, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\com.avira.dnt\widget, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\com.avira.dnt\widget\components, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\com.avira.dnt\widget\css, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\com.avira.dnt\widget\images, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\com.avira.dnt\widget\js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\com.avira.dnt\widget\js\background, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\com.avira.dnt\widget\js\content-script, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\com.avira.dnt\widget\js\window, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\com.avira.dnt\widget\js\window\templates, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\com.avira.dnt\widget\lib, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\facebook, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\facebook\3.0, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\search-box-DLA, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\simple-email-list, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\toolbar-options, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\toolbar-options\css, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\toolbar-options\images, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\toolbar-options\js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\content_script, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\content_script\hack, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\lib, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\lib\shims, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\tb_ux, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\widgets, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\widgets\options, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\widgets\options\images, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\widgets\rebuttal, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\widgets\rebuttal\images, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\widgets\search-suggestion, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\widgets\templates, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\widgets\templates\css, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\widgets\templates\css\images, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\widgets\templates\js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\Updater, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\Updater\Config, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\Updater\Response, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\Users\jarnds\AppData\Local\AskPartnerNetwork, In Quarantäne, [05a7dbe17d1daa8c0c3bc0ebe51d7987], PUP.Optional.APNToolBar.Gen, C:\Users\jarnds\AppData\Local\AskPartnerNetwork\Toolbar, In Quarantäne, [05a7dbe17d1daa8c0c3bc0ebe51d7987], PUP.Optional.APNToolBar.Gen, C:\Users\jarnds\AppData\Local\AskPartnerNetwork\Toolbar\AVIRA-V7, In Quarantäne, [05a7dbe17d1daa8c0c3bc0ebe51d7987], PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork, In Quarantäne, [298300bc58428aac84c484277092f60a], PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar, In Quarantäne, [298300bc58428aac84c484277092f60a], PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7, In Quarantäne, [298300bc58428aac84c484277092f60a], PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX, In Quarantäne, [298300bc58428aac84c484277092f60a], PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Source, In Quarantäne, [298300bc58428aac84c484277092f60a], PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Source\appdata, In Quarantäne, [298300bc58428aac84c484277092f60a], PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Source\appdata\Mozilla, In Quarantäne, [298300bc58428aac84c484277092f60a], PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Source\appdata\Mozilla\Firefox, In Quarantäne, [298300bc58428aac84c484277092f60a], PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Source\appdata\Mozilla\Firefox\Profiles, In Quarantäne, [298300bc58428aac84c484277092f60a], PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Source\appdata\Mozilla\Firefox\Profiles\{DefaultProfilesFolder}, In Quarantäne, [298300bc58428aac84c484277092f60a], PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Source\appdata\Mozilla\Firefox\Profiles\{DefaultProfilesFolder}\extensions, In Quarantäne, [298300bc58428aac84c484277092f60a], PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Source\common appdata, In Quarantäne, [298300bc58428aac84c484277092f60a], PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Source\common appdata\AskPartnerNetwork, In Quarantäne, [298300bc58428aac84c484277092f60a], PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Source\common appdata\AskPartnerNetwork\Toolbar, In Quarantäne, [298300bc58428aac84c484277092f60a], PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Source\common appdata\AskPartnerNetwork\Toolbar\{PartnerID}, In Quarantäne, [298300bc58428aac84c484277092f60a], PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Source\common appdata\AskPartnerNetwork\Toolbar\{PartnerID}\CRX, In Quarantäne, [298300bc58428aac84c484277092f60a], PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Source\common appdata\AskPartnerNetwork\Toolbar\{PartnerID}\CRX\{Crx_Version}, In Quarantäne, [298300bc58428aac84c484277092f60a], PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Source\program files, In Quarantäne, [298300bc58428aac84c484277092f60a], PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Source\program files\AskPartnerNetwork, In Quarantäne, [298300bc58428aac84c484277092f60a], PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Source\program files\AskPartnerNetwork\Toolbar, In Quarantäne, [298300bc58428aac84c484277092f60a], PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Source\program files\AskPartnerNetwork\Toolbar\Updater, In Quarantäne, [298300bc58428aac84c484277092f60a], PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Source\program files\AskPartnerNetwork\Toolbar\Updater\{PartnerID}, In Quarantäne, [298300bc58428aac84c484277092f60a], PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Source\program files\AskPartnerNetwork\Toolbar\{PartnerID}, In Quarantäne, [298300bc58428aac84c484277092f60a], PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\Updater, In Quarantäne, [298300bc58428aac84c484277092f60a], PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\Updater\AVIRA-V7, In Quarantäne, [298300bc58428aac84c484277092f60a], PUP.Optional.BrowserUpdater, C:\Windows\System32\Tasks\Browser Updater, In Quarantäne, [44682a924d4d90a6245c8727639f16ea], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\HomeTab, In Quarantäne, [8527c4f8d7c3b58191ae219459a9758b], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\HomeTab\64, In Quarantäne, [8527c4f8d7c3b58191ae219459a9758b], PUP.Optional.HomeTab, C:\Program Files\HomeTab, In Quarantäne, [1894d2ea0d8de650dd77f1c446bc6a96], PUP.Optional.HomeTab, C:\Program Files\HomeTab\IE, In Quarantäne, [1894d2ea0d8de650dd77f1c446bc6a96], PUP.Optional.HomeTab, C:\Program Files (x86)\HomeTab, Löschen bei Neustart, [515b516b2e6c6cca0d47bbfa4bb7857b], PUP.Optional.HomeTab, C:\Program Files (x86)\HomeTab\IE, In Quarantäne, [515b516b2e6c6cca0d47bbfa4bb7857b], PUP.Optional.HomeTab, C:\Program Files (x86)\HomeTab\chrome, In Quarantäne, [515b516b2e6c6cca0d47bbfa4bb7857b], PUP.Optional.HomeTab, C:\Program Files (x86)\HomeTab\support@HomeTab.com, In Quarantäne, [515b516b2e6c6cca0d47bbfa4bb7857b], PUP.Optional.HomeTab, C:\Program Files (x86)\HomeTab\support@HomeTab.com\chrome, In Quarantäne, [515b516b2e6c6cca0d47bbfa4bb7857b], PUP.Optional.HomeTab, C:\Program Files (x86)\HomeTab\support@HomeTab.com\components, In Quarantäne, [515b516b2e6c6cca0d47bbfa4bb7857b], PUP.Optional.HomeTab, C:\Program Files (x86)\HomeTab\support@HomeTab.com\plugins, In Quarantäne, [515b516b2e6c6cca0d47bbfa4bb7857b], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\LocalLow\HomeTab, In Quarantäne, [3c706854f6a476c0b2a30da8877b11ef], PUP.Optional.Iminent, C:\ProgramData\Iminent, In Quarantäne, [07a5a01cb4e6f343b501f6bffb076799], PUP.Optional.Iminent, C:\ProgramData\Iminent\Mediator, In Quarantäne, [07a5a01cb4e6f343b501f6bffb076799], PUP.Optional.Iminent, C:\ProgramData\Iminent\Mediator\Datas, In Quarantäne, [07a5a01cb4e6f343b501f6bffb076799], PUP.Optional.Iminent, C:\ProgramData\Iminent\Mediator\Datas\Cache, In Quarantäne, [07a5a01cb4e6f343b501f6bffb076799], PUP.Optional.Iminent, C:\ProgramData\Iminent\Mediator\Datas\Cache\apix.iminent.com, In Quarantäne, [07a5a01cb4e6f343b501f6bffb076799], PUP.Optional.Iminent, C:\Users\jarnds\AppData\Roaming\Iminent, In Quarantäne, [29838e2e21797fb794226f4625ddc23e], PUP.Optional.Iminent, C:\Users\jarnds\AppData\Roaming\Iminent\Mediator, In Quarantäne, [29838e2e21797fb794226f4625ddc23e], PUP.Optional.Iminent, C:\Users\jarnds\AppData\Roaming\Iminent\Mediator\Datas, In Quarantäne, [29838e2e21797fb794226f4625ddc23e], PUP.Optional.SystemSockets, C:\Windows\System32\Tasks\SystemSockets, In Quarantäne, [2e7ee8d44f4b11258200c0febb479070], PUP.Optional.DownloadGuide, C:\Users\jarnds\AppData\Local\DownloadGuide, In Quarantäne, [aa02299305951f17d0318642de24916f], PUP.Optional.DownloadGuide, C:\Users\jarnds\AppData\Local\DownloadGuide\Offers, In Quarantäne, [aa02299305951f17d0318642de24916f], |
05.11.2016, 21:46 | #2 |
| Windows 8.1 : Avira Fund pua widdit Gen4 und MBAM massenweise Funde MBAM Teil 2:
__________________Code:
ATTFilter Dateien: 421 PUP.Optional.PriceCongress, C:\Users\jarnds\AppData\Roaming\HomeTab\HomeTab.dll, In Quarantäne, [08a48d2f7426d75fc23d2804ae5310f0], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Local\DownloadGuide\Offers\hometab.exe, In Quarantäne, [65478537821890a6043dc368a1605aa6], PUP.Optional.Iminent, C:\Users\jarnds\AppData\Local\DownloadGuide\Offers\iminent.exe, In Quarantäne, [b6f603b9ecae5ed87af8a883946d1fe1], PUP.Optional.Iminent, C:\Windows\Installer\ce5a5a8.msi, In Quarantäne, [bdef53695149a69085ed69c24eb328d8], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\home.htm, In Quarantäne, [04a879434951a88ea08deabb0003629e], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\jquery-ui-1.10.1.custom.min.js, In Quarantäne, [04a879434951a88ea08deabb0003629e], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\jquery.js, In Quarantäne, [04a879434951a88ea08deabb0003629e], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\jquery.themepunch.plugins.min.js, In Quarantäne, [04a879434951a88ea08deabb0003629e], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\jquery.themepunch.revolution.js, In Quarantäne, [04a879434951a88ea08deabb0003629e], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\jquery.themepunch.revolution.min.js, In Quarantäne, [04a879434951a88ea08deabb0003629e], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\jquiso.js, In Quarantäne, [04a879434951a88ea08deabb0003629e], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\modernizr.js, In Quarantäne, [04a879434951a88ea08deabb0003629e], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\socket.io.js, In Quarantäne, [04a879434951a88ea08deabb0003629e], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\style.css, In Quarantäne, [04a879434951a88ea08deabb0003629e], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\vars.js, In Quarantäne, [04a879434951a88ea08deabb0003629e], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\css\animate.css, In Quarantäne, [04a879434951a88ea08deabb0003629e], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\css\font-awesome.css, In Quarantäne, [04a879434951a88ea08deabb0003629e], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\css\font-awesome.min.css, In Quarantäne, [04a879434951a88ea08deabb0003629e], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\css\fontawesome-webfont.eot, In Quarantäne, [04a879434951a88ea08deabb0003629e], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\css\fontawesome-webfont.svg, In Quarantäne, [04a879434951a88ea08deabb0003629e], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\css\fontawesome-webfont.ttf, In Quarantäne, [04a879434951a88ea08deabb0003629e], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\css\fontawesome-webfont.woff, In Quarantäne, [04a879434951a88ea08deabb0003629e], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\css\FontAwesome.otf, In Quarantäne, [04a879434951a88ea08deabb0003629e], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\css\foundation.css, In Quarantäne, [04a879434951a88ea08deabb0003629e], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\css\foundation.min.css, In Quarantäne, [04a879434951a88ea08deabb0003629e], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\css\main.css, In Quarantäne, [04a879434951a88ea08deabb0003629e], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\css\normalize.css, In Quarantäne, [04a879434951a88ea08deabb0003629e], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\css\style.css, In Quarantäne, [04a879434951a88ea08deabb0003629e], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\fonts\fontawesome-webfont.eot, In Quarantäne, [04a879434951a88ea08deabb0003629e], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\fonts\fontawesome-webfont.svg, In Quarantäne, [04a879434951a88ea08deabb0003629e], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\fonts\fontawesome-webfont.ttf, In Quarantäne, [04a879434951a88ea08deabb0003629e], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\fonts\fontawesome-webfont.woff, In Quarantäne, [04a879434951a88ea08deabb0003629e], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\fonts\FontAwesome.otf, In Quarantäne, [04a879434951a88ea08deabb0003629e], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\foundation\foundation.js, In Quarantäne, [04a879434951a88ea08deabb0003629e], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\assets\arrow_left.png, In Quarantäne, [04a879434951a88ea08deabb0003629e], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\assets\arrowleft.png, In Quarantäne, [04a879434951a88ea08deabb0003629e], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\assets\arrowright.png, In Quarantäne, [04a879434951a88ea08deabb0003629e], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\assets\arrows.psd, In Quarantäne, [04a879434951a88ea08deabb0003629e], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\assets\arrow_large_left.png, In Quarantäne, [04a879434951a88ea08deabb0003629e], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\assets\arrow_large_right.png, In Quarantäne, [04a879434951a88ea08deabb0003629e], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\assets\arrow_left2.png, In Quarantäne, [04a879434951a88ea08deabb0003629e], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\assets\arrow_right.png, In Quarantäne, [04a879434951a88ea08deabb0003629e], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\assets\arrow_right2.png, In Quarantäne, [04a879434951a88ea08deabb0003629e], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\assets\black50.png, In Quarantäne, [04a879434951a88ea08deabb0003629e], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\assets\boxed_bgtile.png, In Quarantäne, [04a879434951a88ea08deabb0003629e], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\assets\bullet.png, In Quarantäne, [04a879434951a88ea08deabb0003629e], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\assets\bullets.png, In Quarantäne, [04a879434951a88ea08deabb0003629e], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\assets\bullets.psd, In Quarantäne, [04a879434951a88ea08deabb0003629e], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\assets\bullets2.png, In Quarantäne, [04a879434951a88ea08deabb0003629e], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\assets\bullet_boxed.png, In Quarantäne, [04a879434951a88ea08deabb0003629e], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\assets\coloredbg.png, In Quarantäne, [04a879434951a88ea08deabb0003629e], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\assets\grain.png, In Quarantäne, [04a879434951a88ea08deabb0003629e], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\assets\gridtile.png, In Quarantäne, [04a879434951a88ea08deabb0003629e], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\assets\gridtile_3x3.png, In Quarantäne, [04a879434951a88ea08deabb0003629e], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\assets\gridtile_3x3_white.png, In Quarantäne, [04a879434951a88ea08deabb0003629e], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\assets\gridtile_white.png, In Quarantäne, [04a879434951a88ea08deabb0003629e], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\assets\large_left.png, In Quarantäne, [04a879434951a88ea08deabb0003629e], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\assets\large_right.png, In Quarantäne, [04a879434951a88ea08deabb0003629e], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\assets\loader.gif, In Quarantäne, [04a879434951a88ea08deabb0003629e], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\assets\loader2.gif, In Quarantäne, [04a879434951a88ea08deabb0003629e], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\assets\navigdots.png, In Quarantäne, [04a879434951a88ea08deabb0003629e], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\assets\navigdots_bgtile.png, In Quarantäne, [04a879434951a88ea08deabb0003629e], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\assets\shadow1.png, In Quarantäne, [04a879434951a88ea08deabb0003629e], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\assets\shadow2.png, In Quarantäne, [04a879434951a88ea08deabb0003629e], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\assets\shadow3.png, In Quarantäne, [04a879434951a88ea08deabb0003629e], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\assets\small_arrows.psd, In Quarantäne, [04a879434951a88ea08deabb0003629e], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\assets\small_left.png, In Quarantäne, [04a879434951a88ea08deabb0003629e], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\assets\small_left_boxed.png, In Quarantäne, [04a879434951a88ea08deabb0003629e], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\assets\small_right.png, In Quarantäne, [04a879434951a88ea08deabb0003629e], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\assets\small_right_boxed.png, In Quarantäne, [04a879434951a88ea08deabb0003629e], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\assets\timer.png, In Quarantäne, [04a879434951a88ea08deabb0003629e], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\assets\timerdot.png, In Quarantäne, [04a879434951a88ea08deabb0003629e], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\assets\transparent.jpg, In Quarantäne, [04a879434951a88ea08deabb0003629e], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\assets\white50.png, In Quarantäne, [04a879434951a88ea08deabb0003629e], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\css\settings-ie8.css, In Quarantäne, [04a879434951a88ea08deabb0003629e], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\css\settings.css, In Quarantäne, [04a879434951a88ea08deabb0003629e], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\font\revicons.eot, In Quarantäne, [04a879434951a88ea08deabb0003629e], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\font\revicons.svg, In Quarantäne, [04a879434951a88ea08deabb0003629e], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\font\revicons.ttf, In Quarantäne, [04a879434951a88ea08deabb0003629e], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\font\revicons.woff, In Quarantäne, [04a879434951a88ea08deabb0003629e], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\images\decor_inside.png, In Quarantäne, [04a879434951a88ea08deabb0003629e], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\images\decor_inside_white.png, In Quarantäne, [04a879434951a88ea08deabb0003629e], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\images\decor_testimonial.png, In Quarantäne, [04a879434951a88ea08deabb0003629e], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\images\gradient\g30.png, In Quarantäne, [04a879434951a88ea08deabb0003629e], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\images\gradient\g40.png, In Quarantäne, [04a879434951a88ea08deabb0003629e], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\js\jquery.themepunch.plugins.min.js, In Quarantäne, [04a879434951a88ea08deabb0003629e], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\js\jquery.themepunch.revolution.js, In Quarantäne, [04a879434951a88ea08deabb0003629e], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\js\jquery.themepunch.revolution.min.js, In Quarantäne, [04a879434951a88ea08deabb0003629e], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\videojs\demo.captions.vtt, In Quarantäne, [04a879434951a88ea08deabb0003629e], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\videojs\demo.html, In Quarantäne, [04a879434951a88ea08deabb0003629e], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\videojs\video-js.css, In Quarantäne, [04a879434951a88ea08deabb0003629e], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\videojs\video-js.min.css, In Quarantäne, [04a879434951a88ea08deabb0003629e], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\videojs\video-js.png, In Quarantäne, [04a879434951a88ea08deabb0003629e], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\videojs\video-js.swf, In Quarantäne, [04a879434951a88ea08deabb0003629e], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\videojs\video.dev.js, In Quarantäne, [04a879434951a88ea08deabb0003629e], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\videojs\video.js, In Quarantäne, [04a879434951a88ea08deabb0003629e], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\videojs\font\vjs.eot, In Quarantäne, [04a879434951a88ea08deabb0003629e], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\videojs\font\vjs.svg, In Quarantäne, [04a879434951a88ea08deabb0003629e], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\videojs\font\vjs.ttf, In Quarantäne, [04a879434951a88ea08deabb0003629e], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\Roaming\SimplyTech\home\rs-plugin\videojs\font\vjs.woff, In Quarantäne, [04a879434951a88ea08deabb0003629e], PUP.Optional.Iminent, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Iminent\SearchTheWeb.lnk, In Quarantäne, [03a904b871299f9769e0daccd03356aa], PUP.Optional.Iminent, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Iminent\Blog.lnk, In Quarantäne, [03a904b871299f9769e0daccd03356aa], PUP.Optional.Iminent, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Iminent\FAQ.lnk, In Quarantäne, [03a904b871299f9769e0daccd03356aa], PUP.Optional.Iminent, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Iminent\Help.lnk, In Quarantäne, [03a904b871299f9769e0daccd03356aa], PUP.Optional.Iminent, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Iminent\Iminent.lnk, In Quarantäne, [03a904b871299f9769e0daccd03356aa], PUP.Optional.Iminent, C:\Windows\System32\Tasks\FinishInstall igdhbblpcellaljokkpfhcjlagemhgjl, In Quarantäne, [84287c407525d264a2a8ffa70cf72bd5], PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\apnmcp.exe, In Quarantäne, [bdef6c50b7e3c96da498fcddc43e11ef], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\icon.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\manifest.json, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\Toolbar.crx, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\background\init-bg-messaging.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\background\background-options.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\background\background.html, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\background\background.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\background\browser-action.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\background\ChromeUtilPlugin.dll, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\background\cookies.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\background\feeds.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\background\fixup-jquery-for-ie.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\background\history.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\background\ie-bg-shim.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\background\keywordSearch.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\background\lifecycle.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\background\localStorage.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\background\OneTimeCode.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\background\popup.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\background\preference.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\background\rebuttal.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\background\registry.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\background\reporting.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\background\search.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\background\security.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\background\sideByside.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\background\tabs.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\background\utils.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\build.json, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\lang-config.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\tb-config.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\test-widget-config.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\widget-config.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\chrome-options.html, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\content-script.xul, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\init-tb-stuff.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\new-tab-page.html, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\newtab-overlay.xul, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\newtab-subscript.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\toolbar.html, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\toolbar.xul, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widget-bundled.xul, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widget-hosted.xul, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\css\chrome-options.css, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\css\containers.css, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\css\new-tab.css, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\css\searchbox.css, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\css\toolbar.css, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\css\themes\avira\avira.css, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\css\themes\imesh\imesh.css, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\css\themes\mindspark\mindspark.css, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\css\themes\mindspark\new-search-button-mid.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\css\themes\mindspark\new-search-button-sides.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\css\themes\plain\plain.css, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\css\themes\taskbar\taskbar.css, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\css\themes\v5parity\v5parity.css, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\images\IDR_WEBSTORE_ICON.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\images\logo\logo_128x.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\images\logo\logo_19x.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\images\logo\logo_19x_grey.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\images\logo\logo_24x.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\images\logo\logo_32x.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\images\logo\toolbar-icons.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\images\search\btn_search_ask_taskbar.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\images\search\logo_cobrand_18px.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\images\search\logo_cobrand_24px.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\images\search\new-search-button-mid.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\images\search\new-search-button-sides.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\images\search\search-button-mid.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\images\search\search-button-sides.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\images\vanilla\badge_1.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\images\vanilla\badge_10.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\images\vanilla\badge_10plus.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\images\vanilla\badge_2.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\images\vanilla\badge_3.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\images\vanilla\badge_4.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\images\vanilla\badge_5.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\images\vanilla\badge_6.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\images\vanilla\badge_7.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\images\vanilla\badge_8.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\images\vanilla\badge_9.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\images\vanilla\badge_exclaim.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\images\vanilla\badge_numbers.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\images\vanilla\bdg-gradient.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\images\vanilla\bg.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\images\vanilla\curved-divider.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\images\vanilla\left-bg.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\ask-avira-homepage\button.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\avira-homepage\button.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\avira-url-cloud\3.0\contentScript.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\avira-webguard\1.0\button.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\browser-security\2.0\button.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\com.avira.dnt\widget\background.html, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\com.avira.dnt\widget\blank.gif, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\com.avira.dnt\widget\blank.html, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\com.avira.dnt\widget\button.html, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\com.avira.dnt\widget\button.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\com.avira.dnt\widget\config.json, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\com.avira.dnt\widget\window.html, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\com.avira.dnt\widget\components\AviraContentPolicy.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\com.avira.dnt\widget\components\IAviraContentPolicy.xpt, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\com.avira.dnt\widget\css\button.css, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\com.avira.dnt\widget\css\window.css, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\com.avira.dnt\widget\images\avira_abine_btn.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\com.avira.dnt\widget\images\btn-bg.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\com.avira.dnt\widget\images\dd-arrow.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\com.avira.dnt\widget\images\footer.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\com.avira.dnt\widget\images\header-top-plain.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\com.avira.dnt\widget\images\header-top.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\com.avira.dnt\widget\images\like.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\com.avira.dnt\widget\images\linkedin.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\com.avira.dnt\widget\images\on-off-knob.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\com.avira.dnt\widget\images\on-off.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\com.avira.dnt\widget\images\plus-minus.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\com.avira.dnt\widget\images\plusone.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\com.avira.dnt\widget\images\settings.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\com.avira.dnt\widget\images\tweet.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\com.avira.dnt\widget\js\button.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\com.avira.dnt\widget\js\common.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\com.avira.dnt\widget\js\lang-config.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\com.avira.dnt\widget\js\messaging.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\com.avira.dnt\widget\js\background\auto-update.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\com.avira.dnt\widget\js\background\background.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\com.avira.dnt\widget\js\background\config.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\com.avira.dnt\widget\js\background\content-policy.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\com.avira.dnt\widget\js\background\rules.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\com.avira.dnt\widget\js\background\tab-data.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\com.avira.dnt\widget\js\content-script\common.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\com.avira.dnt\widget\js\content-script\inpage.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\com.avira.dnt\widget\js\content-script\social-button.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\com.avira.dnt\widget\js\window\config.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\com.avira.dnt\widget\js\window\template.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\com.avira.dnt\widget\js\window\view.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\com.avira.dnt\widget\js\window\view_alert.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\com.avira.dnt\widget\js\window\view_global.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\com.avira.dnt\widget\js\window\window.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\com.avira.dnt\widget\js\window\templates\all.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\com.avira.dnt\widget\lib\ContentPolicy.dll, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\facebook\3.0\button.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\simple-email-list\button.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\simple-email-list\gmail.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\simple-email-list\hotmail.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\simple-email-list\yahoo!.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\toolbar-options\options.html, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\toolbar-options\css\options.css, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\toolbar-options\images\button-blue-1x20.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\toolbar-options\images\button-grey-1x26.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\toolbar-options\images\button.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\toolbar-options\images\icons.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\toolbar-options\images\lightblue-1x43.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\config\skin\widgets\toolbar-options\js\options.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\content_script\content-script.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\content_script\injector.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\content_script\inline-html.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\content_script\positioning.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\content_script\toolbar.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\content_script\widget-hosted.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\content_script\widget.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\content_script\hack\facebook.css, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\content_script\hack\relative.css, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\content_script\hack\static.css, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\lib\browser-shim.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\lib\constant.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\lib\default-config.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\lib\i18n.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\lib\jquery.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\lib\json.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\lib\polyfill.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\lib\protocol.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\lib\state-machine.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\lib\tb-message.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\lib\widget-messaging.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\lib\window-position.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\lib\shims\console.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\tb_ux\chrome-options.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\tb_ux\ieCS.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\tb_ux\IFrameButton.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\tb_ux\init-toolbar.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\tb_ux\new-tab-page.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\tb_ux\rebuttal.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\tb_ux\reel.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\tb_ux\searchbox.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\tb_ux\shimIE.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\tb_ux\SimpleButton.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\tb_ux\toolbar.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\widgets\options\options.css, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\widgets\options\options.html, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\widgets\options\options.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\widgets\options\images\button-blue-1x20.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\widgets\options\images\button-grey-1x26.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\widgets\options\images\button.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\widgets\options\images\icons.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\widgets\options\images\lightblue-1x43.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\widgets\rebuttal\rebuttal.css, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\widgets\rebuttal\rebuttal.html, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\widgets\rebuttal\rebuttal.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\widgets\rebuttal\images\warning.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\widgets\search-suggestion\search-suggestion.css, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\widgets\search-suggestion\search-suggestion.html, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\widgets\search-suggestion\search-suggestion.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\widgets\templates\feed.html, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\widgets\templates\menu.html, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\widgets\templates\css\menu.css, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\widgets\templates\css\images\footer_gradient.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\widgets\templates\css\images\footer_shadow.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\widgets\templates\css\images\image_placeholder.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\widgets\templates\css\images\item-bg.png, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\widgets\templates\js\api.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\widgets\templates\js\feed.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\24.57772\widgets\templates\js\menu.js, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\Updater\Config\Config.31.4.1.0-3.xml, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\Updater\Response\Response.31.4.1.0-5.xml, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\Updater\Response\Response.31.4.1.0-6.xml, In Quarantäne, [c6e6912bc3d74ee84afc62494db540c0], PUP.Optional.APNToolBar.Gen, C:\Users\jarnds\AppData\Local\AskPartnerNetwork\Toolbar\AVIRA-V7\APNStorage.stg, In Quarantäne, [05a7dbe17d1daa8c0c3bc0ebe51d7987], PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\APNSetup.exe, In Quarantäne, [298300bc58428aac84c484277092f60a], PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\searchhook.dll, In Quarantäne, [298300bc58428aac84c484277092f60a], PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\ServiceLocator.exe, In Quarantäne, [298300bc58428aac84c484277092f60a], PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\SO.dll, In Quarantäne, [298300bc58428aac84c484277092f60a], PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\toolbar.dll, In Quarantäne, [298300bc58428aac84c484277092f60a], PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\Toolbar.exe, In Quarantäne, [298300bc58428aac84c484277092f60a], PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\ToolbarPS.dll, In Quarantäne, [298300bc58428aac84c484277092f60a], PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\UpdateManager.exe, In Quarantäne, [298300bc58428aac84c484277092f60a], PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Passport.dll, In Quarantäne, [298300bc58428aac84c484277092f60a], PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Source\1031.mst, In Quarantäne, [298300bc58428aac84c484277092f60a], PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Source\1033.mst, In Quarantäne, [298300bc58428aac84c484277092f60a], PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Source\1034.mst, In Quarantäne, [298300bc58428aac84c484277092f60a], PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Source\1036.mst, In Quarantäne, [298300bc58428aac84c484277092f60a], PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Source\1040.mst, In Quarantäne, [298300bc58428aac84c484277092f60a], PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Source\1041.mst, In Quarantäne, [298300bc58428aac84c484277092f60a], PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Source\1043.mst, In Quarantäne, [298300bc58428aac84c484277092f60a], PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Source\1045.mst, In Quarantäne, [298300bc58428aac84c484277092f60a], PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Source\1049.mst, In Quarantäne, [298300bc58428aac84c484277092f60a], PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Source\2070.mst, In Quarantäne, [298300bc58428aac84c484277092f60a], PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Source\AskToolbarInstaller-12.5.1_AVIRA-V7.msi, In Quarantäne, [298300bc58428aac84c484277092f60a], PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Source\appdata\Mozilla\Firefox\Profiles\{DefaultProfilesFolder}\extensions\toolbar_AVIRA-V7@apn.ask.com.xpi, In Quarantäne, [298300bc58428aac84c484277092f60a], PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Source\common appdata\AskPartnerNetwork\Toolbar\{PartnerID}\CRX\ToolbarCR.crx, In Quarantäne, [298300bc58428aac84c484277092f60a], PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Source\common appdata\AskPartnerNetwork\Toolbar\{PartnerID}\CRX\Update.xml, In Quarantäne, [298300bc58428aac84c484277092f60a], PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Source\common appdata\AskPartnerNetwork\Toolbar\{PartnerID}\CRX\{Crx_Version}\Toolbar.crx, In Quarantäne, [298300bc58428aac84c484277092f60a], PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Source\program files\AskPartnerNetwork\Toolbar\apnmcp.exe, In Quarantäne, [298300bc58428aac84c484277092f60a], PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Source\program files\AskPartnerNetwork\Toolbar\searchhook.dll, In Quarantäne, [298300bc58428aac84c484277092f60a], PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Source\program files\AskPartnerNetwork\Toolbar\ServiceLocator.exe, In Quarantäne, [298300bc58428aac84c484277092f60a], PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Source\program files\AskPartnerNetwork\Toolbar\SO.dll, In Quarantäne, [298300bc58428aac84c484277092f60a], PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Source\program files\AskPartnerNetwork\Toolbar\toolbar.dll, In Quarantäne, [298300bc58428aac84c484277092f60a], PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Source\program files\AskPartnerNetwork\Toolbar\Toolbar.exe, In Quarantäne, [298300bc58428aac84c484277092f60a], PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Source\program files\AskPartnerNetwork\Toolbar\ToolbarPS.dll, In Quarantäne, [298300bc58428aac84c484277092f60a], PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Source\program files\AskPartnerNetwork\Toolbar\UpdateManager.exe, In Quarantäne, [298300bc58428aac84c484277092f60a], PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Source\program files\AskPartnerNetwork\Toolbar\Updater\ask-search.xml, In Quarantäne, [298300bc58428aac84c484277092f60a], PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Source\program files\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe, In Quarantäne, [298300bc58428aac84c484277092f60a], PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Source\program files\AskPartnerNetwork\Toolbar\Updater\{PartnerID}\config.xml, In Quarantäne, [298300bc58428aac84c484277092f60a], PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Source\program files\AskPartnerNetwork\Toolbar\{PartnerID}\Passport.dll, In Quarantäne, [298300bc58428aac84c484277092f60a], PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\Updater\ask-search.xml, In Quarantäne, [298300bc58428aac84c484277092f60a], PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe, In Quarantäne, [298300bc58428aac84c484277092f60a], PUP.Optional.APNToolBar.Gen, C:\Program Files (x86)\AskPartnerNetwork\Toolbar\Updater\AVIRA-V7\config.xml, In Quarantäne, [298300bc58428aac84c484277092f60a], PUP.Optional.BrowserUpdater, C:\Windows\System32\Tasks\Browser Updater\Browser Updater, In Quarantäne, [44682a924d4d90a6245c8727639f16ea], PUP.Optional.HomeTab, c:\program files\hometab\ie\hometab.dll, In Quarantäne, [1894d2ea0d8de650dd77f1c446bc6a96], PUP.Optional.HomeTab, C:\Program Files (x86)\HomeTab\IE\HomeTab.dll, In Quarantäne, [1894d2ea0d8de650dd77f1c446bc6a96], PUP.Optional.HomeTab, C:\Program Files\HomeTab\IE\wdapimng.exe, In Quarantäne, [1894d2ea0d8de650dd77f1c446bc6a96], PUP.Optional.HomeTab, C:\Program Files (x86)\HomeTab\cinshlpr.dll, Löschen bei Neustart, [515b516b2e6c6cca0d47bbfa4bb7857b], PUP.Optional.HomeTab, C:\Program Files (x86)\HomeTab\hometab_icon.ico, In Quarantäne, [515b516b2e6c6cca0d47bbfa4bb7857b], PUP.Optional.HomeTab, C:\Program Files (x86)\HomeTab\InstallHelper.dll, In Quarantäne, [515b516b2e6c6cca0d47bbfa4bb7857b], PUP.Optional.HomeTab, C:\Program Files (x86)\HomeTab\Interop.IWshRuntimeLibrary.dll, In Quarantäne, [515b516b2e6c6cca0d47bbfa4bb7857b], PUP.Optional.HomeTab, C:\Program Files (x86)\HomeTab\is-SENOO.tmp, In Quarantäne, [515b516b2e6c6cca0d47bbfa4bb7857b], PUP.Optional.HomeTab, C:\Program Files (x86)\HomeTab\Microsoft.Win32.TaskScheduler.dll, In Quarantäne, [515b516b2e6c6cca0d47bbfa4bb7857b], PUP.Optional.HomeTab, C:\Program Files (x86)\HomeTab\Microsoft.Win32.TaskScheduler.xml, In Quarantäne, [515b516b2e6c6cca0d47bbfa4bb7857b], PUP.Optional.HomeTab, C:\Program Files (x86)\HomeTab\ProtectedSearch.exe, In Quarantäne, [515b516b2e6c6cca0d47bbfa4bb7857b], PUP.Optional.HomeTab, C:\Program Files (x86)\HomeTab\ProtectedSearch.ico, In Quarantäne, [515b516b2e6c6cca0d47bbfa4bb7857b], PUP.Optional.HomeTab, C:\Program Files (x86)\HomeTab\SQLite.Designer.dll, In Quarantäne, [515b516b2e6c6cca0d47bbfa4bb7857b], PUP.Optional.HomeTab, C:\Program Files (x86)\HomeTab\SQLite.Interop.dll, In Quarantäne, [515b516b2e6c6cca0d47bbfa4bb7857b], PUP.Optional.HomeTab, C:\Program Files (x86)\HomeTab\stdmfpam.dll, Löschen bei Neustart, [515b516b2e6c6cca0d47bbfa4bb7857b], PUP.Optional.HomeTab, C:\Program Files (x86)\HomeTab\stinst.dat, In Quarantäne, [515b516b2e6c6cca0d47bbfa4bb7857b], PUP.Optional.HomeTab, C:\Program Files (x86)\HomeTab\STInst.exe, In Quarantäne, [515b516b2e6c6cca0d47bbfa4bb7857b], PUP.Optional.HomeTab, C:\Program Files (x86)\HomeTab\STInst64.dll, In Quarantäne, [515b516b2e6c6cca0d47bbfa4bb7857b], PUP.Optional.HomeTab, C:\Program Files (x86)\HomeTab\System.Data.SQLite.dll, In Quarantäne, [515b516b2e6c6cca0d47bbfa4bb7857b], PUP.Optional.HomeTab, C:\Program Files (x86)\HomeTab\TaskSchedulerCreator.exe, In Quarantäne, [515b516b2e6c6cca0d47bbfa4bb7857b], PUP.Optional.HomeTab, C:\Program Files (x86)\HomeTab\TBUpdater.dll, In Quarantäne, [515b516b2e6c6cca0d47bbfa4bb7857b], PUP.Optional.HomeTab, C:\Program Files (x86)\HomeTab\ToolbarUninstall.exe, In Quarantäne, [515b516b2e6c6cca0d47bbfa4bb7857b], PUP.Optional.HomeTab, C:\Program Files (x86)\HomeTab\unins000.dat, In Quarantäne, [515b516b2e6c6cca0d47bbfa4bb7857b], PUP.Optional.HomeTab, C:\Program Files (x86)\HomeTab\unins000.exe, In Quarantäne, [515b516b2e6c6cca0d47bbfa4bb7857b], PUP.Optional.HomeTab, C:\Program Files (x86)\HomeTab\unins000.msg, In Quarantäne, [515b516b2e6c6cca0d47bbfa4bb7857b], PUP.Optional.HomeTab, C:\Program Files (x86)\HomeTab\unins001.dat, In Quarantäne, [515b516b2e6c6cca0d47bbfa4bb7857b], PUP.Optional.HomeTab, C:\Program Files (x86)\HomeTab\unins001.exe, In Quarantäne, [515b516b2e6c6cca0d47bbfa4bb7857b], PUP.Optional.HomeTab, c:\program files (x86)\hometab\wbrowserupdate.exe, In Quarantäne, [515b516b2e6c6cca0d47bbfa4bb7857b], PUP.Optional.HomeTab, C:\Program Files (x86)\HomeTab\WConnectorProductivity.exe, Löschen bei Neustart, [515b516b2e6c6cca0d47bbfa4bb7857b], PUP.Optional.HomeTab, C:\Program Files (x86)\HomeTab\IE\HomeTab_64.dll, In Quarantäne, [515b516b2e6c6cca0d47bbfa4bb7857b], PUP.Optional.HomeTab, C:\Program Files (x86)\HomeTab\IE\wdapimng.exe, In Quarantäne, [515b516b2e6c6cca0d47bbfa4bb7857b], PUP.Optional.HomeTab, C:\Program Files (x86)\HomeTab\IE\wdapimng_64.exe, In Quarantäne, [515b516b2e6c6cca0d47bbfa4bb7857b], PUP.Optional.HomeTab, C:\Program Files (x86)\HomeTab\chrome\HomeTab.crx, In Quarantäne, [515b516b2e6c6cca0d47bbfa4bb7857b], PUP.Optional.HomeTab, C:\Program Files (x86)\HomeTab\support@HomeTab.com\chrome.manifest, In Quarantäne, [515b516b2e6c6cca0d47bbfa4bb7857b], PUP.Optional.HomeTab, C:\Program Files (x86)\HomeTab\support@HomeTab.com\install.js, In Quarantäne, [515b516b2e6c6cca0d47bbfa4bb7857b], PUP.Optional.HomeTab, C:\Program Files (x86)\HomeTab\support@HomeTab.com\install.rdf, In Quarantäne, [515b516b2e6c6cca0d47bbfa4bb7857b], PUP.Optional.HomeTab, C:\Program Files (x86)\HomeTab\support@HomeTab.com\pop.htm, In Quarantäne, [515b516b2e6c6cca0d47bbfa4bb7857b], PUP.Optional.HomeTab, C:\Program Files (x86)\HomeTab\support@HomeTab.com\chrome\HomeTab_3869.jar, In Quarantäne, [515b516b2e6c6cca0d47bbfa4bb7857b], PUP.Optional.HomeTab, C:\Program Files (x86)\HomeTab\support@HomeTab.com\components\wtb_complete.js, In Quarantäne, [515b516b2e6c6cca0d47bbfa4bb7857b], PUP.Optional.HomeTab, C:\Program Files (x86)\HomeTab\support@HomeTab.com\plugins\npwiddit.dll, In Quarantäne, [515b516b2e6c6cca0d47bbfa4bb7857b], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\LocalLow\HomeTab\contact.png, In Quarantäne, [3c706854f6a476c0b2a30da8877b11ef], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\LocalLow\HomeTab\default_logo.png, In Quarantäne, [3c706854f6a476c0b2a30da8877b11ef], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\LocalLow\HomeTab\default_search_button.png, In Quarantäne, [3c706854f6a476c0b2a30da8877b11ef], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\LocalLow\HomeTab\default_search_provider16.png, In Quarantäne, [3c706854f6a476c0b2a30da8877b11ef], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\LocalLow\HomeTab\default_seperator.ico, In Quarantäne, [3c706854f6a476c0b2a30da8877b11ef], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\LocalLow\HomeTab\help.png, In Quarantäne, [3c706854f6a476c0b2a30da8877b11ef], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\LocalLow\HomeTab\home.png, In Quarantäne, [3c706854f6a476c0b2a30da8877b11ef], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\LocalLow\HomeTab\refresh.png, In Quarantäne, [3c706854f6a476c0b2a30da8877b11ef], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\LocalLow\HomeTab\settings.dat, In Quarantäne, [3c706854f6a476c0b2a30da8877b11ef], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\LocalLow\HomeTab\shrink.png, In Quarantäne, [3c706854f6a476c0b2a30da8877b11ef], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\LocalLow\HomeTab\stbcfg.bin, In Quarantäne, [3c706854f6a476c0b2a30da8877b11ef], PUP.Optional.HomeTab, C:\Users\jarnds\AppData\LocalLow\HomeTab\upgrade.png, In Quarantäne, [3c706854f6a476c0b2a30da8877b11ef], PUP.Optional.Iminent, C:\ProgramData\Iminent\Mediator\Datas\Cache\apix.iminent.com\1031.11575f00-7bdc-4181-ba0a-b298aeab228c.dat, In Quarantäne, [07a5a01cb4e6f343b501f6bffb076799], PUP.Optional.Iminent, C:\Users\jarnds\AppData\Roaming\Iminent\Mediator\Datas\globalcache.dat, In Quarantäne, [29838e2e21797fb794226f4625ddc23e], PUP.Optional.Iminent, C:\Users\jarnds\AppData\Roaming\Iminent\Mediator\Datas\user.dat, In Quarantäne, [29838e2e21797fb794226f4625ddc23e], PUP.Optional.SystemSockets, C:\Windows\System32\Tasks\SystemSockets\SystemSockets, In Quarantäne, [2e7ee8d44f4b11258200c0febb479070], PUP.Optional.DownloadGuide, C:\Users\jarnds\AppData\Local\DownloadGuide\amazon.ico, In Quarantäne, [aa02299305951f17d0318642de24916f], PUP.Optional.DownloadGuide, C:\Users\jarnds\AppData\Local\DownloadGuide\Free_PDF_Perfect_Setup_pdf_perfect_de.exe, In Quarantäne, [aa02299305951f17d0318642de24916f], PUP.Optional.DownloadGuide, C:\Users\jarnds\AppData\Local\DownloadGuide\Offers\foxydeal.exe, In Quarantäne, [aa02299305951f17d0318642de24916f], PUP.Optional.DownloadGuide, C:\Users\jarnds\AppData\Local\DownloadGuide\Offers\pricealarm.exe, In Quarantäne, [aa02299305951f17d0318642de24916f], Physische Sektoren: 0 (keine bösartigen Elemente erkannt) (end) |
05.11.2016, 21:48 | #3 |
| Windows 8.1 : Avira Fund pua widdit Gen4 und MBAM massenweise Funde FRST:
__________________Code:
ATTFilter Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version: 04-11-2016 durchgeführt von jarnds (Administrator) auf IDEA-PC (05-11-2016 21:07:08) Gestartet von C:\Users\jarnds\Desktop Geladene Profile: jarnds (Verfügbare Profile: jarnds) Platform: Windows 8.1 (Update) (X64) Sprache: Deutsch (Deutschland) Internet Explorer Version 11 (Standard-Browser: FF) Start-Modus: Normal Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Prozesse (Nicht auf der Ausnahmeliste) ================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.) (AMD) C:\Windows\System32\atiesrxx.exe (AMD) C:\Windows\System32\atieclxx.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe (Advanced Micro Devices, Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (Conexant Systems Inc.) C:\Windows\System32\CxAudMsg64.exe (Malwarebytes) C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamscheduler.exe (Malwarebytes) C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe (Microsoft Corporation) C:\Program Files\Microsoft Office 15\ClientX64\integratedoffice.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe (CyberLink) C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe (Microsoft Corporation) C:\Windows\System32\SkyDrive.exe (Conexant Systems, Inc.) C:\Program Files\CONEXANT\cAudioFilterAgent\CAudioFilterAgent64.exe (Lenovo (Beijing) Limited) C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe (Lenovo(beijing) Limited) C:\Program Files (x86)\Lenovo\Energy Management\utility.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Spotify Ltd) C:\Users\jarnds\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe (CyberLink Corp.) C:\Program Files (x86)\Lenovo\YouCam\YouCamTray.exe (CyberLink Corp.) C:\Program Files (x86)\Lenovo\PowerDVD10\PDVD10Serv.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe (Geek Software GmbH) C:\Program Files (x86)\PDF24\pdf24.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Launcher\Avira.Systray.exe (Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe (Malwarebytes) C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbam.exe (Microsoft Corporation) C:\Windows\System32\rundll32.exe ==================== Registry (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.) HKLM\...\Run: [SmartAudio] => C:\Program Files\CONEXANT\SAII\SACpl.exe [1647616 2012-06-13] (Conexant Systems, Inc.) HKLM\...\Run: [cAudioFilterAgent] => C:\Program Files\Conexant\cAudioFilterAgent\cAudioFilterAgent64.exe [887968 2012-06-14] (Conexant Systems, Inc.) HKLM\...\Run: [Energy Management] => C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe [17079376 2012-11-24] (Lenovo (Beijing) Limited) HKLM\...\Run: [EnergyUtility] => C:\Program Files (x86)\Lenovo\Energy Management\Utility.exe [191568 2012-11-24] (Lenovo(beijing) Limited) HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2916152 2012-08-14] (Synaptics Incorporated) HKLM\...\Run: [EPSON Stylus DX4000 Series] => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_FATIBEE.EXE /FU "C:\WINDOWS\TEMP\E_S8DD9.tmp" /EF "HKLM" HKLM-x32\...\Run: [Dolby Advanced Audio v2] => C:\Program Files (x86)\Dolby Advanced Audio v2\pcee4.exe [508656 2012-07-25] (Dolby Laboratories Inc.) HKLM-x32\...\Run: [YouCam Mirage] => C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe [136488 2012-07-27] (CyberLink) HKLM-x32\...\Run: [YouCam Tray] => C:\Program Files (x86)\Lenovo\YouCam\YouCamTray.exe [167024 2012-07-27] (CyberLink Corp.) HKLM-x32\...\Run: [UpdateP2GShortCut] => C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe [217088 2012-04-18] (CyberLink Corp.) HKLM-x32\...\Run: [RemoteControl10] => C:\Program Files (x86)\Lenovo\PowerDVD10\PDVD10Serv.exe [91432 2012-03-28] (CyberLink Corp.) HKLM-x32\...\Run: [Intel AppUp(SM) center] => C:\Program Files (x86)\Intel\IntelAppStore\bin\ismagent.exe [155488 2012-07-12] (Intel Corporation) HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [59720 2013-04-21] (Apple Inc.) HKLM-x32\...\Run: [avgnt] => C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [831576 2016-11-05] (Avira Operations GmbH & Co. KG) HKLM-x32\...\Run: [PDFPrint] => C:\Program Files (x86)\PDF24\pdf24.exe [193568 2014-11-28] (Geek Software GmbH) HKLM-x32\...\Run: [Avira SystrayStartTrigger] => C:\Program Files (x86)\Avira\Launcher\Avira.SystrayStartTrigger.exe [60136 2016-08-19] (Avira Operations GmbH & Co. KG) HKU\S-1-5-19\Control Panel\Desktop\\SCRNSAVE.EXE -> HKU\S-1-5-20\Control Panel\Desktop\\SCRNSAVE.EXE -> HKU\S-1-5-21-2925157275-2194030336-170780499-1002\...\Run: [Spotify] => C:\Users\jarnds\AppData\Roaming\Spotify\Spotify.exe [4736000 2014-04-12] (Spotify Ltd) HKU\S-1-5-21-2925157275-2194030336-170780499-1002\...\Run: [Spotify Web Helper] => C:\Users\jarnds\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe [1140736 2014-04-12] (Spotify Ltd) HKU\S-1-5-21-2925157275-2194030336-170780499-1002\Control Panel\Desktop\\SCRNSAVE.EXE -> HKU\S-1-5-18\Control Panel\Desktop\\SCRNSAVE.EXE -> ShellIconOverlayIdentifiers: [SugarSyncBackedUp] -> {0C4A258A-3F3B-4FFF-80A7-9B3BEC139472} => C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll [2012-05-14] (SugarSync, Inc.) ShellIconOverlayIdentifiers: [SugarSyncPending] -> {62CCD8E3-9C21-41E1-B55E-1E26DFC68511} => C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll [2012-05-14] (SugarSync, Inc.) ShellIconOverlayIdentifiers: [SugarSyncRoot] -> {A759AFF6-5851-457D-A540-F4ECED148351} => C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll [2012-05-14] (SugarSync, Inc.) ShellIconOverlayIdentifiers: [SugarSyncShared] -> {1574C9EF-7D58-488F-B358-8B78C1538F51} => C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll [2012-05-14] (SugarSync, Inc.) Startup: C:\Users\jarnds\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\net.lnk [2016-11-05] ShortcutTarget: net.lnk -> C:\Users\jarnds\AppData\Roaming\Windows Net Data\net.exe (Windows Net) ==================== Internet (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.) Tcpip\Parameters: [DhcpNameServer] 192.168.24.150 Tcpip\..\Interfaces\{3D9DD881-644D-44E1-9FC4-EBE582EB2E77}: [DhcpNameServer] 192.168.24.150 Internet Explorer: ================== HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = about:blank HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = about:blank HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = about:blank HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = about:blank HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKU\S-1-5-21-2925157275-2194030336-170780499-1002\Software\Microsoft\Internet Explorer\Main,Start Page = about:newtab HKU\S-1-5-21-2925157275-2194030336-170780499-1002\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://lenovo13.msn.com HKU\S-1-5-21-2925157275-2194030336-170780499-1002\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = hxxp://www.lenovo.com SearchScopes: HKLM-x32 -> DefaultScope {afdbddaa-5d3f-42ee-b79c-185a7020515b} URL = SearchScopes: HKU\S-1-5-21-2925157275-2194030336-170780499-1002 -> DefaultScope {afdbddaa-5d3f-42ee-b79c-185a7020515b} URL = FireFox: ======== FF ProfilePath: C:\Users\jarnds\AppData\Roaming\Mozilla\Firefox\Profiles\6yqza5ii.default [nicht gefunden] FF ProfilePath: C:\Users\jarnds\AppData\Roaming\Mozilla\Firefox\Profiles\245ui9kl.default-1478367702295 [2016-11-05] FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_22_0_0_209.dll [2016-09-04] () FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_22_0_0_209.dll [2016-09-04] () Chrome: ======= CHR HKLM-x32\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - hxxps://clients2.google.com/service/update2/crx ==================== Dienste (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R2 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [361984 2012-08-06] (Advanced Micro Devices, Inc.) [Datei ist nicht signiert] S2 AntiVirMailService; C:\Program Files (x86)\Avira\AntiVir Desktop\avmailc7.exe [988184 2016-11-05] (Avira Operations GmbH & Co. KG) R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [470600 2016-11-05] (Avira Operations GmbH & Co. KG) R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [470600 2016-11-05] (Avira Operations GmbH & Co. KG) S2 AntiVirWebService; C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe [1453696 2016-11-05] (Avira Operations GmbH & Co. KG) R2 Avira.ServiceHost; C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe [324304 2016-08-19] (Avira Operations GmbH & Co. KG) S3 LSCWinService; C:\Program Files\Lenovo\Lenovo Solution Center\App\LSCWinService.exe [1674720 2013-09-25] () R2 MBAMScheduler; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamscheduler.exe [1514464 2016-03-10] (Malwarebytes) R2 MBAMService; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe [1136608 2016-03-10] (Malwarebytes) R2 OfficeSvc; C:\Program Files\Microsoft Office 15\ClientX64\integratedoffice.exe [1907896 2013-10-31] (Microsoft Corporation) S3 SXDS10; C:\Program Files (x86)\Common Files\soft Xpansion\sxds10.exe [234096 2013-07-24] (soft Xpansion) S3 vmicguestinterface; C:\WINDOWS\System32\ICSvc.dll [524800 2014-10-29] (Microsoft Corporation) S3 vmicheartbeat; C:\WINDOWS\System32\ICSvc.dll [524800 2014-10-29] (Microsoft Corporation) S3 vmickvpexchange; C:\WINDOWS\System32\ICSvc.dll [524800 2014-10-29] (Microsoft Corporation) S3 vmicshutdown; C:\WINDOWS\System32\ICSvc.dll [524800 2014-10-29] (Microsoft Corporation) S3 vmictimesync; C:\WINDOWS\System32\ICSvc.dll [524800 2014-10-29] (Microsoft Corporation) S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [366552 2015-07-07] (Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23824 2015-07-07] (Microsoft Corporation) ===================== Treiber (Nicht auf der Ausnahmeliste) ====================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R2 avgntflt; C:\WINDOWS\System32\DRIVERS\avgntflt.sys [144664 2016-11-05] (Avira Operations GmbH & Co. KG) R1 avipbb; C:\WINDOWS\system32\DRIVERS\avipbb.sys [154392 2016-11-05] (Avira Operations GmbH & Co. KG) R1 avkmgr; C:\WINDOWS\system32\DRIVERS\avkmgr.sys [35488 2016-01-03] (Avira Operations GmbH & Co. KG) R2 avnetflt; C:\WINDOWS\system32\DRIVERS\avnetflt.sys [78208 2016-11-05] (Avira Operations GmbH & Co. KG) R3 BCM43XX; C:\WINDOWS\system32\DRIVERS\bcmwl63a.sys [8536752 2013-07-01] (Broadcom Corporation) S0 ebdrv; C:\WINDOWS\System32\drivers\evbda.sys [3357024 2013-08-22] (Broadcom Corporation) R3 MBAMProtector; C:\WINDOWS\system32\drivers\mbam.sys [27008 2016-03-10] (Malwarebytes) R3 MBAMSwissArmy; C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys [192216 2016-11-05] (Malwarebytes) R3 MBAMWebAccessControl; C:\WINDOWS\system32\drivers\mwac.sys [65408 2016-03-10] (Malwarebytes Corporation) R3 rtsuvc; C:\WINDOWS\system32\DRIVERS\rtsuvc.sys [8222736 2012-06-15] (Realtek Semiconductor Corp.) S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [44560 2015-07-07] (Microsoft Corporation) S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [270168 2015-07-07] (Microsoft Corporation) S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [114520 2015-07-07] (Microsoft Corporation) S3 wsvd; C:\WINDOWS\system32\DRIVERS\wsvd.sys [102376 2012-06-13] ("CyberLink) ==================== NetSvcs (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Ein Monat: Erstellte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2016-11-05 21:07 - 2016-11-05 21:08 - 00013652 _____ C:\Users\jarnds\Desktop\FRST.txt 2016-11-05 20:07 - 2016-11-05 20:08 - 00000000 ____D C:\FRST 2016-11-05 19:02 - 2016-11-05 20:25 - 00192216 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys 2016-11-05 19:01 - 2016-11-05 20:17 - 00001119 _____ C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2016-11-05 19:01 - 2016-11-05 19:01 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 2016-11-05 19:01 - 2016-11-05 19:01 - 00000000 ____D C:\ProgramData\Malwarebytes 2016-11-05 19:01 - 2016-11-05 19:01 - 00000000 ____D C:\Program Files (x86)\ Malwarebytes Anti-Malware 2016-11-05 19:01 - 2016-03-10 14:09 - 00065408 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mwac.sys 2016-11-05 19:01 - 2016-03-10 14:08 - 00140672 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamchameleon.sys 2016-11-05 19:01 - 2016-03-10 14:08 - 00027008 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbam.sys 2016-11-05 18:59 - 2016-11-05 18:59 - 00000000 ____D C:\ProgramData\McAfee 2016-11-05 18:41 - 2016-11-05 18:41 - 00000000 ____D C:\Users\jarnds\Desktop\Alte Firefox-Daten 2016-11-05 18:26 - 2016-11-05 20:17 - 00001159 _____ C:\Users\Public\Desktop\Avira Launcher.lnk 2016-11-05 18:16 - 2016-11-05 18:16 - 02409984 _____ (Farbar) C:\Users\jarnds\Desktop\FRST64.exe 2016-11-05 18:11 - 2016-11-05 18:13 - 22851472 _____ (Malwarebytes ) C:\Users\jarnds\Downloads\mbam-setup-2.2.1.1043.exe 2016-11-05 15:43 - 2016-11-05 15:47 - 00000826 _____ C:\WINDOWS\system32\Drivers\etc\hosts.txt ==================== Ein Monat: Geänderte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2016-11-05 20:55 - 2013-11-14 08:27 - 01776918 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2016-11-05 20:55 - 2013-11-14 08:11 - 00765582 _____ C:\WINDOWS\system32\perfh007.dat 2016-11-05 20:55 - 2013-11-14 08:11 - 00159366 _____ C:\WINDOWS\system32\perfc007.dat 2016-11-05 20:55 - 2013-08-22 14:36 - 00000000 ____D C:\WINDOWS\Inf 2016-11-05 20:27 - 2014-03-11 23:44 - 00000884 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job 2016-11-05 20:23 - 2012-12-24 18:55 - 00003596 _____ C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-2925157275-2194030336-170780499-1002 2016-11-05 20:19 - 2014-02-09 12:02 - 00000000 ___DO C:\Users\jarnds\SkyDrive 2016-11-05 20:18 - 2014-05-20 00:48 - 00001182 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk 2016-11-05 20:18 - 2014-02-08 20:51 - 00001547 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk 2016-11-05 20:18 - 2013-07-07 20:50 - 00002519 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk 2016-11-05 20:18 - 2012-11-24 11:11 - 00002447 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Amazon.lnk 2016-11-05 20:18 - 2012-11-24 11:05 - 00001973 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lenovo Cloud Storage by SugarSync.lnk 2016-11-05 20:18 - 2012-11-24 10:54 - 00002435 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office.lnk 2016-11-05 20:18 - 2012-11-24 10:34 - 00002189 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerXpress.lnk 2016-11-05 20:17 - 2015-03-08 15:12 - 00001096 _____ C:\Users\Public\Desktop\PDF24 Creator.lnk 2016-11-05 20:17 - 2015-03-08 15:12 - 00001076 _____ C:\Users\Public\Desktop\PDF24 Fax.lnk 2016-11-05 20:17 - 2014-05-20 00:48 - 00001164 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk 2016-11-05 20:17 - 2013-11-09 09:49 - 00001996 _____ C:\Users\Public\Desktop\Lenovo Solution Center.lnk 2016-11-05 20:17 - 2012-11-24 11:20 - 00002135 _____ C:\Users\Public\Desktop\OneKey Recovery.lnk 2016-11-05 20:17 - 2012-11-24 11:18 - 00002244 _____ C:\Users\Public\Desktop\Intel AppUp(SM) center.lnk 2016-11-05 20:17 - 2012-11-24 11:10 - 00002182 _____ C:\Users\Public\Desktop\Lenovo PowerDVD 10.lnk 2016-11-05 20:17 - 2012-11-24 11:03 - 00001235 _____ C:\Users\Public\Desktop\Lenovo YouCam.lnk 2016-11-05 20:17 - 2012-11-24 10:57 - 00002077 _____ C:\Users\Public\Desktop\Benutzerhandbuch.lnk 2016-11-05 20:17 - 2012-11-24 10:56 - 00001182 _____ C:\Users\Public\Desktop\Microsoft Office 2010 Activation.lnk 2016-11-05 20:16 - 2014-02-09 11:53 - 00001461 _____ C:\Users\jarnds\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2016-11-05 20:16 - 2013-08-15 16:46 - 00001821 _____ C:\Users\jarnds\Desktop\Spotify.lnk 2016-11-05 20:16 - 2013-08-15 16:46 - 00001807 _____ C:\Users\jarnds\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Spotify.lnk 2016-11-05 20:16 - 2012-12-24 18:45 - 00001133 _____ C:\Users\jarnds\Desktop\Cyberlink Power2Go.lnk 2016-11-05 20:11 - 2013-08-22 15:45 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT 2016-11-05 20:10 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\Camera 2016-11-05 20:10 - 2013-08-22 14:25 - 00524288 ___SH C:\WINDOWS\system32\config\BBI 2016-11-05 20:09 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\AppReadiness 2016-11-05 20:04 - 2013-09-25 19:18 - 00000000 ____D C:\ProgramData\APN 2016-11-05 20:04 - 2013-07-24 21:32 - 00000000 ____D C:\Users\jarnds\AppData\Roaming\SimplyTech 2016-11-05 18:58 - 2013-08-22 16:36 - 00000000 ___HD C:\Program Files\WindowsApps 2016-11-05 18:39 - 2013-11-09 10:27 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira 2016-11-05 18:32 - 2013-11-09 10:25 - 00154392 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avipbb.sys 2016-11-05 18:32 - 2013-11-09 10:25 - 00144664 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avgntflt.sys 2016-11-05 18:32 - 2013-11-09 10:25 - 00078208 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avnetflt.sys 2016-11-05 18:26 - 2014-09-03 18:03 - 00000000 ____D C:\ProgramData\Package Cache 2016-11-05 16:56 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\system32\NDF 2016-11-05 16:00 - 2014-02-09 12:29 - 00003930 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{FEE97374-AEDC-4953-8182-67E829191DD3} 2016-11-05 15:44 - 2012-07-26 08:59 - 00000000 ____D C:\WINDOWS\CbsTemp 2016-11-05 15:03 - 2014-05-20 00:48 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2016-11-05 15:03 - 2013-08-22 15:44 - 00338016 _____ C:\WINDOWS\system32\FNTCACHE.DAT ==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse ======= 2012-11-24 10:47 - 2012-11-24 10:47 - 0000000 ____H () C:\ProgramData\DP45977C.lfl Einige Dateien in TEMP: ==================== C:\Users\jarnds\AppData\Local\Temp\avgnt.exe ==================== Bamital & volsnap ====================== (Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.) C:\WINDOWS\system32\winlogon.exe => Datei ist digital signiert C:\WINDOWS\system32\wininit.exe => Datei ist digital signiert C:\WINDOWS\explorer.exe => Datei ist digital signiert C:\WINDOWS\SysWOW64\explorer.exe => Datei ist digital signiert C:\WINDOWS\system32\svchost.exe => Datei ist digital signiert C:\WINDOWS\SysWOW64\svchost.exe => Datei ist digital signiert C:\WINDOWS\system32\services.exe => Datei ist digital signiert C:\WINDOWS\system32\User32.dll => Datei ist digital signiert C:\WINDOWS\SysWOW64\User32.dll => Datei ist digital signiert C:\WINDOWS\system32\userinit.exe => Datei ist digital signiert C:\WINDOWS\SysWOW64\userinit.exe => Datei ist digital signiert C:\WINDOWS\system32\rpcss.dll => Datei ist digital signiert C:\WINDOWS\system32\dnsapi.dll => Datei ist digital signiert C:\WINDOWS\SysWOW64\dnsapi.dll => Datei ist digital signiert C:\WINDOWS\system32\Drivers\volsnap.sys => Datei ist digital signiert LastRegBack: 2016-11-05 16:35 ==================== Ende von FRST.txt ============================ Code:
ATTFilter Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version: 04-11-2016 durchgeführt von jarnds (05-11-2016 21:09:57) Gestartet von C:\Users\jarnds\Desktop Windows 8.1 (Update) (X64) (2014-02-09 10:52:35) Start-Modus: Normal ========================================================== ==================== Konten: ============================= Administrator (S-1-5-21-2925157275-2194030336-170780499-500 - Administrator - Disabled) Gast (S-1-5-21-2925157275-2194030336-170780499-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-2925157275-2194030336-170780499-1004 - Limited - Enabled) jarnds (S-1-5-21-2925157275-2194030336-170780499-1002 - Administrator - Enabled) => C:\Users\jarnds ==================== Sicherheits-Center ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.) AV: Avira Antivirus (Disabled - Up to date) {4D041356-F94D-285F-8768-AAE50FA36859} AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Avira Antivirus (Disabled - Up to date) {F665F2B2-DF77-27D1-BDD8-9197742422E4} AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installierte Programme ====================== (Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.) Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 19.0.0.190 - Adobe Systems Incorporated) Adobe Flash Player 22 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 22.0.0.209 - Adobe Systems Incorporated) Amazon Browser App (HKLM-x32\...\{0A7D6F3C-F2AB-48ED-BE23-99791BFF87D6}) (Version: 1.0.0.0 - Amazon) <==== ACHTUNG AMD Catalyst Install Manager (HKLM\...\{DA51A69D-5D86-8A3D-1A4E-CB7CA80BA803}) (Version: 8.0.881.0 - Advanced Micro Devices, Inc.) Apple Application Support (HKLM-x32\...\{5D09C772-ECB3-442B-9CC6-B4341C78FDC2}) (Version: 2.3.4 - Apple Inc.) Apple Mobile Device Support (HKLM\...\{2F72F540-1F60-4266-9506-952B21D6640D}) (Version: 6.1.0.13 - Apple Inc.) Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.) Avira Antivirus (HKLM-x32\...\Avira Antivirus) (Version: 15.0.19.164 - Avira Operations GmbH & Co. KG) Avira Launcher (HKLM-x32\...\{82dc2ab6-088f-4e0a-8e27-bb829481d3bc}) (Version: 1.2.70.16079 - Avira Operations GmbH & Co. KG) Avira Launcher (x32 Version: 1.2.70.16079 - Avira Operations GmbH & Co. KG) Hidden Benutzerhandbuch (x32 Version: 1.0.0.9 - Lenovo) Hidden Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.) Conexant HD Audio (HKLM\...\CNXT_AUDIO_HDA) (Version: 8.54.44.50 - Conexant) Dolby Advanced Audio v2 (HKLM-x32\...\{B9E70C7A-9F85-4A39-A4A3-BFA3C3BF7613}) (Version: 7.2.8000.16 - Dolby Laboratories Inc) Energy Management (HKLM-x32\...\InstallShield_{D0956C11-0F60-43FE-99AD-524E833471BB}) (Version: 8.0.2.3 - Lenovo) Energy Management (x32 Version: 8.0.2.3 - Lenovo) Hidden Iminent (x32 Version: 6.27.21.0 - Iminent) Hidden <==== ACHTUNG Intel AppUp(SM) center (HKLM-x32\...\Intel AppUp(SM) center 33057) (Version: 3.6.1.33057.10 - Intel) Lenovo EasyCamera (HKLM-x32\...\{E0A7ED39-8CD6-4351-93C3-69CCA00D12B4}) (Version: 6.1.7600.167 - Realtek Semiconductor Corp.) Lenovo OneKey Recovery (HKLM-x32\...\InstallShield_{46F4D124-20E5-4D12-BE52-EC177A7A4B42}) (Version: 8.0.0.0828 - CyberLink Corp.) Lenovo OneKey Recovery (Version: 8.0.0.0828 - CyberLink Corp.) Hidden Lenovo PowerDVD10 (HKLM-x32\...\InstallShield_{DEC235ED-58A4-4517-A278-C41E8DAEAB3B}) (Version: 10.0.4310.52 - CyberLink Corp.) Lenovo PowerDVD10 (x32 Version: 10.0.4310.52 - CyberLink Corp.) Hidden Lenovo Solution Center (HKLM\...\{D60E3A84-5DDC-49ED-B9A5-E3466996EB36}) (Version: 2.3.002.00 - Lenovo Group Limited) Lenovo YouCam (HKLM-x32\...\InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}) (Version: 4.1.3127 - CyberLink Corp.) Lenovo YouCam (x32 Version: 4.1.3127 - CyberLink Corp.) Hidden Lenovo_Wireless_Driver (HKLM-x32\...\{5D642A72-8194-4A22-80DA-11FE610CCA8E}) (Version: 6.30.5926 - Lenovo) Microsoft Office (HKLM-x32\...\{95140000-0070-0000-0000-0000000FF1CE}) (Version: 14.0.6120.5004 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Mozilla Firefox 36.0.1 (x86 de) (HKLM-x32\...\Mozilla Firefox 36.0.1 (x86 de)) (Version: 36.0.1 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 29.0.1 - Mozilla) PIF DESIGNER (HKLM-x32\...\{B90450DF-E781-46FD-B1F1-0C86DA40E443}) (Version: - ) Power2Go (HKLM-x32\...\{40BF1E83-20EB-11D8-97C5-0009C5020658}) (Version: 5.6.0.9109 - CyberLink Corp.) PowerXpressHybrid (x32 Version: 1.00.0000 - Advanced Micro Devices, Inc.) Hidden Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 8.3.730.2012 - Realtek) Realtek USB 2.0 Card Reader (HKLM-x32\...\{96AE7E41-E34E-47D0-AC07-1091A8127911}) (Version: 6.1.8400.39030 - Realtek Semiconductor Corp.) Shared C Run-time for x64 (HKLM\...\{EF79C448-6946-4D71-8134-03407888C054}) (Version: 10.0.0 - McAfee) Spotify (HKU\S-1-5-21-2925157275-2194030336-170780499-1002\...\Spotify) (Version: 0.9.4.178.g259772ba - Spotify AB) SugarSync Manager (HKLM-x32\...\SugarSync) (Version: 1.9.61.90905 - SugarSync, Inc.) Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 16.2.10.3 - Synaptics Incorporated) UserGuide (HKLM-x32\...\InstallShield_{F07C2CF8-4C53-4EC3-8162-A6221E36EB88}) (Version: 1.0.0.9 - Lenovo) Windows Utils (HKLM-x32\...\Windows Utils) (Version: - ) Windows-Treiberpaket - Lenovo (ACPIVPC) System (06/15/2012 8.1.0.1) (HKLM\...\71BC3FD63F450BA0A957AAECBDB4A000C4F2BE42) (Version: 06/15/2012 8.1.0.1 - Lenovo) Windows-Treiberpaket - Lenovo (WUDFRd) LenovoVhid (06/19/2012 10.13.29.733) (HKLM\...\8A223E56FB1ED4F697B54E5BF96F1EB63B512684) (Version: 06/19/2012 10.13.29.733 - Lenovo) ==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) ============= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) Task: {1DF14AE3-088F-4BE5-890D-6563F6C61F4C} - \Browser Updater\Browser Updater -> Keine Datei <==== ACHTUNG Task: {30FCF0F2-59EC-4698-8D0F-88D4FBC8EEEC} - System32\Tasks\Lenovo\Lenovo Solution Center Launcher => C:\Program Files\lenovo\lenovo solution center\App\LSCService.exe [2013-09-25] (Lenovo) Task: {374BEFC5-C6E8-44C1-8E0D-3DB14FCCC3A9} - System32\Tasks\Lenovo\Lenovo Customer Feedback Program => C:\Program Files\Lenovo\Customer Feedback Program\Lenovo.TVT.CustomerFeedback.Agent.exe [2013-09-25] (Lenovo) Task: {40C8B641-12C6-41B5-9E21-FDCC90468F3F} - System32\Tasks\Adobe Flash Player Updater => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-09-04] (Adobe Systems Incorporated) Task: {4636EB35-E9A7-4698-BBB9-7680B44F840D} - \FinishInstall igdhbblpcellaljokkpfhcjlagemhgjl -> Keine Datei <==== ACHTUNG Task: {48F65704-D1F1-4934-823F-40745AC69F81} - System32\Tasks\MirageAgent => C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe [2012-07-27] (CyberLink) Task: {5AF8D227-D5EB-43AA-AC8F-FED97A4D618A} - System32\Tasks\OFFICE2010ACT => C:\ProgramData\Microsoft\Windows\OFFICEICON.vbs [2012-03-08] () Task: {89792738-EA22-4631-8F08-9B31E23D9F20} - System32\Tasks\Microsoft\Windows\PLA\LSC Memory => Rundll32.exe C:\WINDOWS\system32\pla.dll,PlaHost "LSC Memory" "$(Arg0)" Task: {8FF1B24C-0761-4E0C-A6BF-6EEFA889A378} - \SystemSockets\SystemSockets -> Keine Datei <==== ACHTUNG Task: {B0794DF4-8EBE-438D-8489-76814BCC683C} - System32\Tasks\Lenovo\LSC\LSCHardwareScanPostpone => C:\Program Files\Lenovo\Lenovo Solution Center\LSC.exe [2013-09-25] () Task: {C17D7A75-CE89-4E94-99D1-D3EEE22B6B24} - System32\Tasks\Microsoft\Office\Office First Run Task => C:\Program Files\Microsoft Office 15\ClientX64\integratedoffice.exe [2013-10-31] (Microsoft Corporation) Task: {C216D323-DEA5-45F1-B4AC-9E71C2C9C328} - System32\Tasks\Lenovo\LSC\LSCHardwareScan => C:\Program Files\Lenovo\Lenovo Solution Center\LSC.exe [2013-09-25] () Task: {E5AEEE15-714D-4984-B535-88BFE03B9620} - \ProtectedSearch\Protected Search -> Keine Datei <==== ACHTUNG (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.) Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\WINDOWS\Tasks\Synaptics TouchPad Enhancements.job => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe ==================== Verknüpfungen ============================= (Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.) ==================== Geladene Module (Nicht auf der Ausnahmeliste) ============== 2012-08-06 12:09 - 2012-08-06 12:09 - 00073728 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Container.Wlan.dll 2014-01-21 15:00 - 2013-08-23 14:45 - 00386216 _____ () C:\Program Files\Microsoft Office 15\ClientX64\c2rui.dll 2014-01-21 15:00 - 2013-10-31 09:08 - 00520872 _____ () C:\Program Files\Microsoft Office 15\ClientX64\c2r64.dll 2014-01-21 15:00 - 2013-10-31 09:07 - 00618152 _____ () C:\Program Files\Microsoft Office 15\ClientX64\StreamServer.dll 2013-04-21 20:44 - 2013-04-21 20:44 - 00087952 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll 2013-04-21 20:44 - 2013-04-21 20:44 - 01242952 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll ==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) ========= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.) ==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.) ==================== Verknüpfungen (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.) ==================== Internet Explorer Vertrauenswürdig/Eingeschränkt =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.) ==================== Hosts Inhalt: =============================== (Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.) 2013-08-22 14:25 - 2016-11-05 15:46 - 00000826 ____A C:\WINDOWS\system32\Drivers\etc\hosts ==================== Andere Bereiche ============================ (Aktuell gibt es keinen automatisierten Fix für diesen Bereich.) HKU\S-1-5-21-2925157275-2194030336-170780499-1002\Control Panel\Desktop\\Wallpaper -> C:\WINDOWS\web\wallpaper\Windows\img0.jpg DNS Servers: 192.168.24.150 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Windows Firewall ist aktiviert. ==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge == HKLM\...\StartupApproved\Run: => "SmartAudio" HKU\S-1-5-21-2925157275-2194030336-170780499-1002\...\StartupApproved\StartupFolder: => "OpenOffice.org 3.4.1.lnk" HKU\S-1-5-21-2925157275-2194030336-170780499-1002\...\StartupApproved\StartupFolder: => "net.lnk" HKU\S-1-5-21-2925157275-2194030336-170780499-1002\...\StartupApproved\Run: => "Spotify" ==================== Firewall Regeln (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139 FirewallRules: [{31590E0A-FAAE-447E-9B7A-FA87632EC5AE}] => (Allow) C:\SoloApp\IEDriverServer.exe FirewallRules: [{9AF1C3AA-33BF-4701-A0B3-D8F60FBC89E4}] => (Allow) C:\SoloApp\IEDriverServer.exe FirewallRules: [{4D266399-AE88-4B4B-ACD5-4ABC89A6CA15}] => (Allow) C:\SoloApp\chromedriver.exe FirewallRules: [{52DA6642-1AFE-4251-873A-309CA185C268}] => (Allow) C:\SoloApp\chromedriver.exe FirewallRules: [{38652F35-A200-4CF9-ACEE-330FC4F72EDE}] => (Allow) C:\SoloApp\WebDriver.dll FirewallRules: [{83A415A1-FF13-4DEB-A172-1240E42B5EFC}] => (Allow) C:\SoloApp\WebDriver.dll FirewallRules: [{E003B8C9-5E4F-402E-995B-F28E0C5A5203}] => (Allow) C:\SoloApp\SoloApp.exe FirewallRules: [{2B9BA723-70F6-4F8B-A274-C0AF47FF86AF}] => (Allow) C:\SoloApp\SoloApp.exe FirewallRules: [{951152AC-5938-463E-A4BD-1CC7A25EE652}] => (Allow) C:\Program Files (x86)\HomeTab\WConnectorProductivity.exe FirewallRules: [{911B08D9-9153-4F3F-B01F-E0B0BAFDF623}] => (Allow) C:\Program Files (x86)\HomeTab\WConnectorProductivity.exe FirewallRules: [{B539FE22-3BF6-49C5-92F4-7CCDB1FF0605}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserUpdate.exe FirewallRules: [{02D6218F-0D26-42E9-A6E5-EA98D68D91D5}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserUpdate.exe FirewallRules: [{F5268360-5A40-4CBF-B932-538D0DD8C510}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserKeeper.exe FirewallRules: [{9CD77AAA-BE42-4B8D-BEE2-555940B52F94}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserKeeper.exe FirewallRules: [{9328B87C-00CC-4143-A01E-6FF904A9F231}] => (Allow) C:\SoloApp\IEDriverServer.exe FirewallRules: [{3C2A740C-0B17-4328-88F7-28B3C1DB7CC8}] => (Allow) C:\SoloApp\IEDriverServer.exe FirewallRules: [{D5DB7653-A0FA-4F31-A589-2817D54E5859}] => (Allow) C:\SoloApp\chromedriver.exe FirewallRules: [{F7E4409A-FDDD-4CFD-9516-0968544317D3}] => (Allow) C:\SoloApp\chromedriver.exe FirewallRules: [{BC162ED2-CA18-4227-84E2-58B65194C295}] => (Allow) C:\SoloApp\WebDriver.dll FirewallRules: [{61C489B2-D70A-493D-872A-BE2838728531}] => (Allow) C:\SoloApp\WebDriver.dll FirewallRules: [{20BA8097-93B8-40BD-A6F7-170E92874CEA}] => (Allow) C:\SoloApp\SoloApp.exe FirewallRules: [{97057C07-7E9C-4CFC-A522-70F19AD1032C}] => (Allow) C:\SoloApp\SoloApp.exe FirewallRules: [{48C87C68-9932-4AC1-9AFD-EF00B5A1EC36}] => (Allow) C:\Program Files (x86)\HomeTab\SystemSockets.exe FirewallRules: [{8E595196-C629-4532-BAA4-856B1BCDF5DE}] => (Allow) C:\Program Files (x86)\HomeTab\SystemSockets.exe FirewallRules: [{53F879C1-7615-4CC3-BDB2-5EDB27AEC893}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll FirewallRules: [{014ACAD2-93CF-4CAB-A997-4362A4A0654C}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll FirewallRules: [{8035EDEA-1935-416E-8BC7-CBCAF28922F3}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe FirewallRules: [{20595299-7EF0-49B4-BEBF-CF6C98162B15}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe FirewallRules: [{F2B8D30D-D9A1-4453-9346-33F7C865E490}] => (Allow) C:\SoloApp\IEDriverServer.exe FirewallRules: [{7C53AF69-78FD-4C1F-A8A7-F77F8E698709}] => (Allow) C:\SoloApp\IEDriverServer.exe FirewallRules: [{4A0761E7-CDFD-4016-89D4-5A5124026644}] => (Allow) C:\SoloApp\chromedriver.exe FirewallRules: [{C9A39840-A786-4F7F-88D8-CBC526DB72A8}] => (Allow) C:\SoloApp\chromedriver.exe FirewallRules: [{499DE789-DD1E-4209-830C-95CF609F2F75}] => (Allow) C:\SoloApp\WebDriver.dll FirewallRules: [{37BD4560-B275-43B2-A88B-EEA988F6A573}] => (Allow) C:\SoloApp\WebDriver.dll FirewallRules: [{53DD9A22-7C68-47E9-B61B-990245D74E29}] => (Allow) C:\SoloApp\SoloApp.exe FirewallRules: [{6E89E8D7-A98A-4EE4-935E-E8A7D783A13C}] => (Allow) C:\SoloApp\SoloApp.exe FirewallRules: [{1537DDA4-8E1E-4D37-9D85-624DAF2867A6}] => (Allow) C:\Program Files (x86)\HomeTab\SystemSockets.exe FirewallRules: [{2128FB05-D1A1-49DF-A15A-DC52FB56890F}] => (Allow) C:\Program Files (x86)\HomeTab\SystemSockets.exe FirewallRules: [{FF6A9488-B212-4FF2-BA0E-A227ADA93438}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll FirewallRules: [{2C473823-E1BB-4397-A7F2-67EEF4722759}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll FirewallRules: [{0B241084-D2A6-4CE8-947F-5E7FE88324D4}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe FirewallRules: [{2C534EE3-C0C0-42B5-9C72-576C4D3AE6E4}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe FirewallRules: [{93BA86E4-D995-43D3-B8D2-324C8D221487}] => (Allow) C:\SoloApp\IEDriverServer.exe FirewallRules: [{34C4EB29-30FC-487F-A042-6C31DDA02450}] => (Allow) C:\SoloApp\IEDriverServer.exe FirewallRules: [{D2E92FA3-8BF9-430F-9F13-F046B87F3DB2}] => (Allow) C:\SoloApp\chromedriver.exe FirewallRules: [{4AE533F3-BB8F-4520-870A-524E1335605E}] => (Allow) C:\SoloApp\chromedriver.exe FirewallRules: [{8BD71011-69CA-4D20-A53F-BD1443F9FDCF}] => (Allow) C:\SoloApp\WebDriver.dll FirewallRules: [{1ACEE7CF-44BB-463C-B477-22617906C956}] => (Allow) C:\SoloApp\WebDriver.dll FirewallRules: [{948F7E6D-F190-4972-8D16-DF4B22B7B666}] => (Allow) C:\SoloApp\SoloApp.exe FirewallRules: [{F288092D-3BAE-4AEC-B95D-C6B8F4F952CB}] => (Allow) C:\SoloApp\SoloApp.exe FirewallRules: [{EB687779-4CEE-473C-989A-81EEC8B3C92D}] => (Allow) C:\Program Files (x86)\HomeTab\SystemSockets.exe FirewallRules: [{CDD6AC48-A17D-4906-B78E-EC171D56E4E3}] => (Allow) C:\Program Files (x86)\HomeTab\SystemSockets.exe FirewallRules: [{3C917DF0-2088-4B2E-BD10-2CC7680C3DEC}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll FirewallRules: [{9D7B740B-B52F-4945-A8F9-93A8E353C1F0}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll FirewallRules: [{7F3A91F9-334B-412C-AE42-A0A88B832705}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe FirewallRules: [{B701500E-5E1D-452A-A92D-23A3D4D69CC2}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe FirewallRules: [{7BE8A5A0-5F79-476F-8963-B2A7998D4E24}] => (Allow) C:\SoloApp\IEDriverServer.exe FirewallRules: [{E01A2EBB-AE86-442E-B160-406A8C9FBFF9}] => (Allow) C:\SoloApp\IEDriverServer.exe FirewallRules: [{9D6F68AD-4777-4421-BF54-2388C2F1297D}] => (Allow) C:\SoloApp\chromedriver.exe FirewallRules: [{476B36F0-9672-45BD-BF9F-EBB3F36B011B}] => (Allow) C:\SoloApp\chromedriver.exe FirewallRules: [{63600070-64BA-4C68-9A06-B5D84439B547}] => (Allow) C:\SoloApp\WebDriver.dll FirewallRules: [{20098C27-19DA-4E10-9D0E-CB18CA2FFF8B}] => (Allow) C:\SoloApp\WebDriver.dll FirewallRules: [{C2DA7802-338A-45EA-8535-9FA3003E7DD6}] => (Allow) C:\SoloApp\SoloApp.exe FirewallRules: [{C0F30C29-EF1E-4F18-AC64-3C1830AC416D}] => (Allow) C:\SoloApp\SoloApp.exe FirewallRules: [{693A86A9-189A-4236-8615-D45450DC8868}] => (Allow) C:\Program Files (x86)\HomeTab\SystemSockets.exe FirewallRules: [{A8C50975-AB94-4988-A76F-DB67CBE080FA}] => (Allow) C:\Program Files (x86)\HomeTab\SystemSockets.exe FirewallRules: [{5E8AE0F7-8651-497B-8574-34A2EACD4776}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll FirewallRules: [{4A16538D-B50F-4542-BDB9-FE3FF9FCC450}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll FirewallRules: [{BF243955-62D0-4D9F-BE34-345260D40EB9}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe FirewallRules: [{A89EF238-D275-436C-98F8-58B8ABF5767B}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe FirewallRules: [{2F656A69-11C2-4919-8753-6DCEBCAC3E09}] => (Allow) C:\SoloApp\IEDriverServer.exe FirewallRules: [{D97B3C91-6C8D-4948-A40F-74A2955E7B43}] => (Allow) C:\SoloApp\IEDriverServer.exe FirewallRules: [{1541082C-FE94-4792-A030-3C435490E22C}] => (Allow) C:\SoloApp\chromedriver.exe FirewallRules: [{1046A633-9C0C-43E7-BE0A-E02068DBFDCB}] => (Allow) C:\SoloApp\chromedriver.exe FirewallRules: [{52318557-024C-458A-AAAD-C191FED0E8BA}] => (Allow) C:\SoloApp\WebDriver.dll FirewallRules: [{CCF808D5-014D-46BB-8C0E-44ECD1C556BD}] => (Allow) C:\SoloApp\WebDriver.dll FirewallRules: [{7CCE5FAE-5891-4522-8A36-79E21D08B684}] => (Allow) C:\SoloApp\SoloApp.exe FirewallRules: [{E728B728-F9D7-4E82-BDBA-74D6CDA3B168}] => (Allow) C:\SoloApp\SoloApp.exe FirewallRules: [{C64B9D04-6013-44BF-8511-0D1BFE85D22A}] => (Allow) C:\Program Files (x86)\HomeTab\SystemSockets.exe FirewallRules: [{94CB7B4F-13AC-4B74-96BC-CA4D3F23FC78}] => (Allow) C:\Program Files (x86)\HomeTab\SystemSockets.exe FirewallRules: [{821A5ACD-982B-4AC4-9ACA-8627B413E92D}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll FirewallRules: [{29B35728-AA64-4FF9-84BE-E66B7412F9CC}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll FirewallRules: [{C4CA091C-0EC4-4289-90B9-8FA3AA499F29}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe FirewallRules: [{9ACA624B-79F7-4160-B071-4A25A58C688E}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe FirewallRules: [{CE301A57-222F-42AF-94C0-51B7F0FAECEA}] => (Allow) C:\SoloApp\IEDriverServer.exe FirewallRules: [{2CF705A1-C2AB-4E5D-B7EA-DC622DAFAC7C}] => (Allow) C:\SoloApp\IEDriverServer.exe FirewallRules: [{0233841C-A823-4887-A143-18D0A9D81440}] => (Allow) C:\SoloApp\chromedriver.exe FirewallRules: [{3435CB49-FF3E-456B-B41A-FD8A3D5CF78A}] => (Allow) C:\SoloApp\chromedriver.exe FirewallRules: [{DB43AAA0-A5BD-4767-B73F-4FCA082E6142}] => (Allow) C:\SoloApp\WebDriver.dll FirewallRules: [{7CA83588-686B-4C8A-A9B7-1639510EF125}] => (Allow) C:\SoloApp\WebDriver.dll FirewallRules: [{94C9006F-4AFB-45FE-8384-AE641CF1CD3E}] => (Allow) C:\SoloApp\SoloApp.exe FirewallRules: [{A44A047C-C09B-4325-B6F4-6144CFB71A0C}] => (Allow) C:\SoloApp\SoloApp.exe FirewallRules: [{CADAB205-56A4-4D0C-887F-60FBE60AF2C4}] => (Allow) C:\Program Files (x86)\HomeTab\SystemSockets.exe FirewallRules: [{E6ABB99B-A441-4AC4-9681-C17F60ECFE27}] => (Allow) C:\Program Files (x86)\HomeTab\SystemSockets.exe FirewallRules: [{8BF7239F-4D5C-453A-B8FE-981BC5BF9F9A}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll FirewallRules: [{472B9BA0-E489-4F3C-B74C-C0A5BC7478DF}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll FirewallRules: [{9ADA016F-DCBF-46BD-8779-C811C28A2EC8}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe FirewallRules: [{4F000579-4F4C-40CD-B1AF-0862EACE9B83}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe FirewallRules: [{EF46B84E-6601-4A07-A45B-3CC27CEFEA62}] => (Allow) C:\SoloApp\IEDriverServer.exe FirewallRules: [{ABF3B025-76A8-4798-A93C-8075F6DF0AB6}] => (Allow) C:\SoloApp\IEDriverServer.exe FirewallRules: [{D59AC634-3446-4845-A562-41292DA95DCB}] => (Allow) C:\SoloApp\chromedriver.exe FirewallRules: [{2FFCBCD9-AEA7-49A9-8768-7EFA568FF079}] => (Allow) C:\SoloApp\chromedriver.exe FirewallRules: [{770AAF42-670F-4B3E-8B12-F3E72DD2B80A}] => (Allow) C:\SoloApp\WebDriver.dll FirewallRules: [{86ACE32E-52CE-4AEB-93D7-FEEDF04E689F}] => (Allow) C:\SoloApp\WebDriver.dll FirewallRules: [{4A54BCB0-E673-4B91-BCB8-A81D682F7565}] => (Allow) C:\SoloApp\SoloApp.exe FirewallRules: [{C47693AE-5B43-44AC-AED3-CC8A8EDC542D}] => (Allow) C:\SoloApp\SoloApp.exe FirewallRules: [{790C60EB-7796-4FE6-9F8B-1F2E78792961}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll FirewallRules: [{69A3BAE8-8275-40FF-91B3-1BC71B7563CF}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll FirewallRules: [{B8609BF9-EC93-43D8-A0BE-FC224843CCB0}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe FirewallRules: [{9701986D-653C-47F8-8EC9-1412A0B3FB9C}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe FirewallRules: [{610BD408-75E4-4311-B624-E03E171A7C4A}] => (Allow) C:\SoloApp\IEDriverServer.exe FirewallRules: [{B06E2585-505A-403A-B619-677FD0602DD1}] => (Allow) C:\SoloApp\IEDriverServer.exe FirewallRules: [{503D32B1-7F38-4AE8-BC39-6C6484A905E9}] => (Allow) C:\SoloApp\chromedriver.exe FirewallRules: [{A3EB64BE-7EFF-41A8-8F62-73C4ECFF1759}] => (Allow) C:\SoloApp\chromedriver.exe FirewallRules: [{EBA85F56-B894-4730-A716-043D7C054E6F}] => (Allow) C:\SoloApp\WebDriver.dll FirewallRules: [{300C32ED-70CA-4E9D-8BB2-967A751C8279}] => (Allow) C:\SoloApp\WebDriver.dll FirewallRules: [{4C3D55E7-DE5F-46BA-9114-1493B0229134}] => (Allow) C:\SoloApp\SoloApp.exe FirewallRules: [{A5451D3F-0135-407C-AAD7-C7AF50B7CE98}] => (Allow) C:\SoloApp\SoloApp.exe FirewallRules: [{329971F4-2B7D-4DBD-A44C-14DA625A328E}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll FirewallRules: [{A980C57B-6D4E-4093-8805-436194C4D372}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll FirewallRules: [{C897E721-800C-4ABC-B263-92299E7D0F7C}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe FirewallRules: [{3A6505B5-F2A7-44A4-A80F-B07E37F241F3}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe FirewallRules: [{FE1B8DF8-DB12-4BF3-8B06-3F25D130FF15}] => (Allow) C:\SoloApp\IEDriverServer.exe FirewallRules: [{FC6C2A03-EE08-4564-9AC7-F76F35061579}] => (Allow) C:\SoloApp\IEDriverServer.exe FirewallRules: [{522E4468-2BE3-445D-A078-A4A45085ACD8}] => (Allow) C:\SoloApp\chromedriver.exe FirewallRules: [{F6B2FDBF-B457-4A62-973B-893D72342E14}] => (Allow) C:\SoloApp\chromedriver.exe FirewallRules: [{0888CA5C-4836-42E6-80FC-EDA28C714F56}] => (Allow) C:\SoloApp\WebDriver.dll FirewallRules: [{3B35E8AA-DFDE-405C-B3CD-9B6D6D06781F}] => (Allow) C:\SoloApp\WebDriver.dll FirewallRules: [{97CEB64D-315D-4796-B24C-666B2F3B1A7A}] => (Allow) C:\SoloApp\SoloApp.exe FirewallRules: [{8F848D85-E43F-4BDE-A352-519FC1A1CDC9}] => (Allow) C:\SoloApp\SoloApp.exe FirewallRules: [{7A8CFE98-57AF-4F46-A9B3-C704AC94AC01}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll FirewallRules: [{B96DDD1E-B54C-45A6-9B7C-70DECB9F137E}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll FirewallRules: [{224921CA-8021-4318-99BE-86CB06BB4E19}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe FirewallRules: [{1C2F105A-6A10-4E4B-875B-EB004EEDD5A1}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe FirewallRules: [{A9BE2356-0D5B-4DFC-BF3E-CFA1F6428232}] => (Allow) C:\SoloApp\IEDriverServer.exe FirewallRules: [{80A1E00F-1D94-4E8E-B106-4BA94EB3D63F}] => (Allow) C:\SoloApp\IEDriverServer.exe FirewallRules: [{08A43171-B012-4E94-AABA-2A48140D0B40}] => (Allow) C:\SoloApp\chromedriver.exe FirewallRules: [{FAE1DA5E-ED48-4FE2-8642-AF8E67A53D81}] => (Allow) C:\SoloApp\chromedriver.exe FirewallRules: [{2A192649-B91F-4D9F-A5C0-C1B54DADA4CC}] => (Allow) C:\SoloApp\WebDriver.dll FirewallRules: [{51F69816-7C23-4146-899D-5A09FD6D4839}] => (Allow) C:\SoloApp\WebDriver.dll FirewallRules: [{61BA7A75-D729-475B-9ECB-89E64EB560F3}] => (Allow) C:\SoloApp\SoloApp.exe FirewallRules: [{F9285331-CC32-491A-8D75-32E0AD2F76D4}] => (Allow) C:\SoloApp\SoloApp.exe FirewallRules: [{1DCFE372-F202-486B-AB2D-048A4C1CF7B8}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll FirewallRules: [{862D11D4-8E55-482D-9BBA-681DAA213ED9}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll FirewallRules: [{CFE2C457-231A-4D81-8D5B-B9BB9040F7FD}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe FirewallRules: [{C6C5D205-6380-4168-B65C-DFF86C915D50}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe FirewallRules: [{45A2FB6F-0AD9-49F5-AA09-0E07A55E190F}] => (Allow) C:\SoloApp\IEDriverServer.exe FirewallRules: [{AA06C627-D612-444D-BEEF-15B33BADBA75}] => (Allow) C:\SoloApp\IEDriverServer.exe FirewallRules: [{868F5610-B647-49E3-9064-C44D497F4F4F}] => (Allow) C:\SoloApp\chromedriver.exe FirewallRules: [{860F54BC-AA58-468F-A879-D222E24C7516}] => (Allow) C:\SoloApp\chromedriver.exe FirewallRules: [{3E9AE4D0-95E5-4A94-AA52-B3B97983F047}] => (Allow) C:\SoloApp\WebDriver.dll FirewallRules: [{4FEED6F9-7DF3-483A-AD6F-6E7689DA8B9F}] => (Allow) C:\SoloApp\WebDriver.dll FirewallRules: [{D55AC898-A67D-45E0-A9A3-35868505FC88}] => (Allow) C:\SoloApp\SoloApp.exe FirewallRules: [{9D1C5040-356F-448F-BB44-5C64E8A4840C}] => (Allow) C:\SoloApp\SoloApp.exe FirewallRules: [{4EAC440F-B86F-4B96-A4DC-F3B50F84D3D3}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll FirewallRules: [{4A0A1AC3-C263-4919-B2D4-57AFACA69717}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll FirewallRules: [{BA50EE86-6A2A-43C2-994F-F1ACEA0030E3}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe FirewallRules: [{501A1B7C-E39B-48AE-9604-B98AFCC8522A}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe FirewallRules: [{7425428F-C54E-4328-93CD-4975DA98956C}] => (Allow) C:\SoloApp\IEDriverServer.exe FirewallRules: [{94B74269-59FD-4F2B-B768-802B96FFD1A4}] => (Allow) C:\SoloApp\IEDriverServer.exe FirewallRules: [{B21FE7C4-5A1B-4D09-945B-ECD0A9205239}] => (Allow) C:\SoloApp\chromedriver.exe FirewallRules: [{C59DE696-65D2-4457-AF40-06842B393ECF}] => (Allow) C:\SoloApp\chromedriver.exe FirewallRules: [{23BB6799-7491-4032-ADE1-C5F9C9F088AE}] => (Allow) C:\SoloApp\WebDriver.dll FirewallRules: [{2E74C9C2-968D-406D-903E-140B1B273626}] => (Allow) C:\SoloApp\WebDriver.dll FirewallRules: [{A0438996-33C9-4ABE-A7C4-4EC0AF6DEFB3}] => (Allow) C:\SoloApp\SoloApp.exe FirewallRules: [{640F2EA0-4FC4-4053-9EA6-1CDD2F7564CA}] => (Allow) C:\SoloApp\SoloApp.exe FirewallRules: [{43556F8B-EC36-417E-ACD2-0D658FDE64AD}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll FirewallRules: [{C5DCF058-9442-417F-B7E6-56A6E8D6B2D0}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll FirewallRules: [{C82B50BF-370C-49E4-A0F5-E1D448495309}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe FirewallRules: [{8608DC78-80C8-4086-9FE1-3575756BDF51}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe FirewallRules: [{E8BB0448-0283-4DB2-868B-72AACDB35BAF}] => (Allow) C:\SoloApp\IEDriverServer.exe FirewallRules: [{349DF183-2772-4F5D-92EF-9F171C6F21A6}] => (Allow) C:\SoloApp\IEDriverServer.exe FirewallRules: [{F14A55C7-F424-4B89-AEA3-09F56841F687}] => (Allow) C:\SoloApp\chromedriver.exe FirewallRules: [{9AF5F166-82F4-4F13-B9D8-96F696E2E070}] => (Allow) C:\SoloApp\chromedriver.exe FirewallRules: [{8A2D7402-221E-4F7E-9B2C-DD7D6FC90F76}] => (Allow) C:\SoloApp\WebDriver.dll FirewallRules: [{C121E0F4-4157-4DAD-85E8-BE6BDED25231}] => (Allow) C:\SoloApp\WebDriver.dll FirewallRules: [{826B701C-E23B-412B-9183-0613317387C8}] => (Allow) C:\SoloApp\SoloApp.exe FirewallRules: [{0A1361BB-499C-4C17-BE0B-1EC9296E91EE}] => (Allow) C:\SoloApp\SoloApp.exe FirewallRules: [{0B96C217-51EF-4C32-8964-4CA1DF71BD2B}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll FirewallRules: [{688C33BF-4622-4BB8-BA26-6E42D39382D8}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll FirewallRules: [{87928ADE-1D57-4509-87C8-098DCB47D386}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe FirewallRules: [{F00643B8-E3CE-4775-86F6-51E79413B137}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe FirewallRules: [{22E2DFD3-B165-4BEF-A838-F5C3ACD9C859}] => (Allow) C:\SoloApp\IEDriverServer.exe FirewallRules: [{B7C4AB21-E993-4175-B509-3398A8294059}] => (Allow) C:\SoloApp\IEDriverServer.exe FirewallRules: [{68FD1505-5DA2-4605-BCCC-3A2346413B05}] => (Allow) C:\SoloApp\chromedriver.exe FirewallRules: [{BD8B2BA2-B8C4-4E75-837F-FFE3C3070191}] => (Allow) C:\SoloApp\chromedriver.exe FirewallRules: [{7477F066-FA29-4270-8B3A-15DEBCD84596}] => (Allow) C:\SoloApp\WebDriver.dll FirewallRules: [{27ECA754-5039-4254-9DB9-3E4D7E17A5FA}] => (Allow) C:\SoloApp\WebDriver.dll FirewallRules: [{F6B37D29-C842-403D-9DE6-229D2E7812B8}] => (Allow) C:\SoloApp\SoloApp.exe FirewallRules: [{0410562A-BE0E-4524-94AF-D81F9F052BD5}] => (Allow) C:\SoloApp\SoloApp.exe FirewallRules: [{597D5A60-57C5-4B8A-B685-A6A3C5716E16}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll FirewallRules: [{49985A91-FEFF-4CAE-A561-2267D67E044F}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll FirewallRules: [{BC8C0628-01A0-4D13-B6F2-4E1206909AC0}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe FirewallRules: [{A0D7CC96-F058-4BD6-B9AC-495221EB8117}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe FirewallRules: [{F199BC54-93B5-4ED2-AE6B-9241E4B030E1}] => (Allow) C:\SoloApp\IEDriverServer.exe FirewallRules: [{D6FD0F52-2394-48BD-A416-3F82CEE0783F}] => (Allow) C:\SoloApp\IEDriverServer.exe FirewallRules: [{79075692-1B8D-411E-9850-D4F466119479}] => (Allow) C:\SoloApp\chromedriver.exe FirewallRules: [{6C39E8B8-A46F-41C8-98E1-43CDF7E167B5}] => (Allow) C:\SoloApp\chromedriver.exe FirewallRules: [{E8777ECA-9981-4E03-B19C-A3CB016A13DE}] => (Allow) C:\SoloApp\WebDriver.dll FirewallRules: [{98763CE1-0BA1-4823-93B6-6EC31228FF33}] => (Allow) C:\SoloApp\WebDriver.dll FirewallRules: [{DA56AD0B-DDF4-403F-A100-FCE455329225}] => (Allow) C:\SoloApp\SoloApp.exe FirewallRules: [{BE184A7B-A579-455C-B578-2D01DE8674C4}] => (Allow) C:\SoloApp\SoloApp.exe FirewallRules: [{12099873-151E-40F8-B473-2D077BD5FFF6}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll FirewallRules: [{25011FE2-5EE9-459A-9E8D-D77BF46A854D}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll FirewallRules: [{EDE0BB71-693D-4B38-8263-27621FCB327F}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe FirewallRules: [{CF95AC47-8CB6-4073-80A9-B5A4CD1DEF87}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe FirewallRules: [{038B64F2-C6F3-4D0F-98C9-376BB96B8191}] => (Allow) C:\SoloApp\IEDriverServer.exe FirewallRules: [{F82CB92D-C3FC-47D6-9936-7F1B12E2DA94}] => (Allow) C:\SoloApp\IEDriverServer.exe FirewallRules: [{C000DC8D-E822-4C45-9431-CD3C02FC72A2}] => (Allow) C:\SoloApp\chromedriver.exe FirewallRules: [{C36F51AE-7106-4284-832D-46F7844C76B5}] => (Allow) C:\SoloApp\chromedriver.exe FirewallRules: [{9683FC4D-8B28-402C-A18C-2D2B5D5CF9E5}] => (Allow) C:\SoloApp\WebDriver.dll FirewallRules: [{EE6E0641-8D7B-49AF-90BD-1234DED64F50}] => (Allow) C:\SoloApp\WebDriver.dll FirewallRules: [{E7DE0040-D393-489E-B775-DD9DFA104580}] => (Allow) C:\SoloApp\SoloApp.exe FirewallRules: [{94EEB4DC-D75D-4D1A-BBFF-F1E588E8E9C0}] => (Allow) C:\SoloApp\SoloApp.exe FirewallRules: [{E07FC2BE-D183-4029-8871-B034E1F6F4DE}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll FirewallRules: [{C144F242-B0D1-4895-A4E6-AD1401B36070}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll FirewallRules: [{12D59EC9-BEF2-4105-AAB7-D8BB5ED0C85D}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe FirewallRules: [{A7E35E64-C4F8-492C-9B31-E90E90E556EE}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe FirewallRules: [{1CB617D2-2505-489C-949A-DC23600EF932}] => (Allow) C:\SoloApp\IEDriverServer.exe FirewallRules: [{EA0D3658-EBB3-4C7C-8926-7E3B1EC0C122}] => (Allow) C:\SoloApp\IEDriverServer.exe FirewallRules: [{6D34D0F9-0410-4AAD-991E-50D05EA692B5}] => (Allow) C:\SoloApp\chromedriver.exe FirewallRules: [{9FF90B96-F508-435F-A01B-A47052B0A256}] => (Allow) C:\SoloApp\chromedriver.exe FirewallRules: [{BCC020B5-99C8-4E29-913D-0F9691E0FCA3}] => (Allow) C:\SoloApp\WebDriver.dll FirewallRules: [{56906E79-86DB-4BB7-97A5-FBAE89F83739}] => (Allow) C:\SoloApp\WebDriver.dll FirewallRules: [{9008C01A-9D48-47F9-A396-9DE508CAB429}] => (Allow) C:\SoloApp\SoloApp.exe FirewallRules: [{3182E752-92B7-4F2F-8A98-24863288CE4E}] => (Allow) C:\SoloApp\SoloApp.exe FirewallRules: [{0B5C8683-63AB-4A72-8E5B-EDD9C4571AAE}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll FirewallRules: [{653E02C0-9625-4593-8DB9-939629144265}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll FirewallRules: [{A7CCCDE5-286C-4D23-AEEA-607F68EBE476}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe FirewallRules: [{88745674-C7B8-4A18-9062-096E7D9016FF}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe FirewallRules: [{41FBF40B-9C0C-42FE-ABF4-46A89EC818D8}] => (Allow) C:\SoloApp\IEDriverServer.exe FirewallRules: [{AA5999D3-37CA-4E3B-86ED-DC0136BB500A}] => (Allow) C:\SoloApp\IEDriverServer.exe FirewallRules: [{70FE0C02-5E55-4758-B640-82DA08071854}] => (Allow) C:\SoloApp\chromedriver.exe FirewallRules: [{DBC761AC-83DF-4EF3-B636-65CDBEAF45F8}] => (Allow) C:\SoloApp\chromedriver.exe FirewallRules: [{32F0025B-CAC6-4AB9-B511-977FA813541F}] => (Allow) C:\SoloApp\WebDriver.dll FirewallRules: [{BADB996C-7CC3-45D4-99D7-1803E13B4973}] => (Allow) C:\SoloApp\WebDriver.dll FirewallRules: [{13B4CBD4-58FB-404A-ACA2-F787E74A0E2F}] => (Allow) C:\SoloApp\SoloApp.exe FirewallRules: [{7EBD0A31-6CF6-4343-B655-F6EC023E2DE3}] => (Allow) C:\SoloApp\SoloApp.exe FirewallRules: [{A6C5C766-6BA9-4579-8020-4EAE45C009B5}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll FirewallRules: [{B0F2D13C-A47A-4BF6-A9A9-40A1A3C1782F}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll FirewallRules: [{749141CD-8077-4F59-BCE7-764829287671}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe FirewallRules: [{405C4447-A183-4A9D-BC87-EFC98180D983}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe FirewallRules: [{6C814FD0-0094-4959-A215-04DE6EDEF98B}] => (Allow) C:\SoloApp\IEDriverServer.exe FirewallRules: [{A6DCE084-3539-4421-A070-3709E87A7C25}] => (Allow) C:\SoloApp\IEDriverServer.exe FirewallRules: [{16CF2BE6-B8CE-4D03-879E-3CB788550A65}] => (Allow) C:\SoloApp\chromedriver.exe FirewallRules: [{9E321DAC-B3B8-4C5D-9656-061CBE7A8512}] => (Allow) C:\SoloApp\chromedriver.exe FirewallRules: [{716B60C1-D593-48E4-8FC0-10AA221F71A4}] => (Allow) C:\SoloApp\WebDriver.dll FirewallRules: [{9068F229-695C-4A19-BCB5-488A0A2579FA}] => (Allow) C:\SoloApp\WebDriver.dll FirewallRules: [{7B404E5B-09BA-41AC-9160-C8E52C34CC9D}] => (Allow) C:\SoloApp\SoloApp.exe FirewallRules: [{3BBDFA93-C1AC-43AB-8DEA-3DBAD02E44D9}] => (Allow) C:\SoloApp\SoloApp.exe FirewallRules: [{CD9D11BA-6FFC-4B30-B7F9-EC008CD11E62}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll FirewallRules: [{DBCDC030-3B58-480D-A38A-C2019A9E2DD3}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll FirewallRules: [{ABDE343B-78B4-4B44-A148-B9BC5F8BAB74}] => (Allow) C:\Program Files (x86)\Iminent\Iminent.exe FirewallRules: [{1D22FFEE-3D08-40BD-9A4C-8D3D3949BD83}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{415864A7-9908-4246-9F86-E1A5E31E8F87}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{428EAA71-A610-49EA-9E7F-392B8F308D25}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{793BD6DF-DCD4-4A56-B352-9D95940E9C7D}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{20A83936-11C4-400D-9615-2EE09871FD75}] => (Allow) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\WebKit2WebProcess.exe FirewallRules: [{9DCD87DF-07B0-4745-98E9-3E1084481DF8}] => (Allow) C:\Program Files\Common Files\mcafee\mcsvchost\McSvHost.exe FirewallRules: [{CC95D4E5-9334-4944-A5CD-9720B4CB26C8}] => (Allow) C:\Program Files\Common Files\mcafee\mcsvchost\McSvHost.exe FirewallRules: [{94C036E6-8C28-49C8-A6D1-BE4D52FF77C1}] => (Allow) C:\Program Files (x86)\Lenovo\PowerDVD10\PowerDVD10.EXE FirewallRules: [{22130532-8E60-4BF6-A954-4023004A95AC}] => (Allow) C:\Program Files (x86)\Lenovo\PowerDVD10\PowerDVD Cinema\PowerDVDCinema10.exe FirewallRules: [TCP Query User{398197DB-BBB5-42E4-B2E8-2322FCABEE5C}C:\users\jarnds\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\jarnds\appdata\roaming\spotify\spotify.exe FirewallRules: [UDP Query User{DE2EC066-64A1-4826-8E29-FBDC30D2980A}C:\users\jarnds\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\jarnds\appdata\roaming\spotify\spotify.exe FirewallRules: [{706D0B25-8F5A-49E4-A092-BB322D7A7CC5}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserKeeper.exe FirewallRules: [{91F479DE-C747-4F78-988E-A93B6D9C2258}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserKeeper.exe FirewallRules: [{F257BBDB-A209-44A9-9162-305CE609AD90}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserUpdate.exe FirewallRules: [{4DD5178B-61CD-43BC-9B00-BA1ABDA93A84}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserUpdate.exe FirewallRules: [{70297660-F42E-4B92-B1B5-94D31A85F393}] => (Allow) C:\Program Files (x86)\HomeTab\WConnectorProductivity.exe FirewallRules: [{17BA08DB-E255-4B76-AB97-D2AE49B86DA6}] => (Allow) C:\Program Files (x86)\HomeTab\WConnectorProductivity.exe FirewallRules: [{36C2D94F-147C-476C-9FA8-986E1994B9F7}] => (Allow) C:\SoloApp\SoloApp.exe FirewallRules: [{BF0472E3-99D2-4589-8A70-04EF63F89C96}] => (Allow) C:\SoloApp\SoloApp.exe FirewallRules: [{031BB25A-8509-4373-89B0-1F132EBD91B4}] => (Allow) C:\SoloApp\WebDriver.dll FirewallRules: [{503503CC-1003-42F4-9A54-B0F35F6894C8}] => (Allow) C:\SoloApp\WebDriver.dll FirewallRules: [{6F0318AA-12AF-4271-BCC3-25F7A0AA9E06}] => (Allow) C:\SoloApp\chromedriver.exe FirewallRules: [{0BA3770D-B148-4F0A-865A-22FD6C139713}] => (Allow) C:\SoloApp\chromedriver.exe FirewallRules: [{15E2EE43-0831-43A2-8155-A19B13332F0C}] => (Allow) C:\SoloApp\IEDriverServer.exe FirewallRules: [{59592524-F01C-4961-ABFE-31D8D906612C}] => (Allow) C:\SoloApp\IEDriverServer.exe FirewallRules: [{E2A31FFC-E0F7-44F7-8809-0622DF087C17}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserKeeper.exe FirewallRules: [{D83DC77B-C665-4363-A75E-FC081BEDD191}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserKeeper.exe FirewallRules: [{6624CBFF-0E82-436C-BE4E-28F0ED0DFD97}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserUpdate.exe FirewallRules: [{6DA21A69-8476-4D31-9CC8-555ACDAB3B06}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserUpdate.exe FirewallRules: [{EB887EF1-072C-4CEE-A53F-222A5CF1840F}] => (Allow) C:\Program Files (x86)\HomeTab\WConnectorProductivity.exe FirewallRules: [{325D826D-4AE6-4123-AA82-37C9EE0341A8}] => (Allow) C:\Program Files (x86)\HomeTab\WConnectorProductivity.exe FirewallRules: [{FCE81CCC-07BE-472B-BA0E-FAE5FDB7CD81}] => (Allow) C:\SoloApp\SoloApp.exe FirewallRules: [{91FF10B0-5791-44BA-A346-8E3F20B20DBA}] => (Allow) C:\SoloApp\SoloApp.exe FirewallRules: [{6AC3201B-F2D9-46B5-9D52-806AB0BBD50A}] => (Allow) C:\SoloApp\WebDriver.dll FirewallRules: [{6F537ECA-AC5D-46D7-8F32-A015DAC39F3C}] => (Allow) C:\SoloApp\WebDriver.dll FirewallRules: [{A6C9E89E-E9CE-4E55-B83F-D5A62297F8EC}] => (Allow) C:\SoloApp\chromedriver.exe FirewallRules: [{A88C80A9-2C62-47D3-983F-E068741FC4B5}] => (Allow) C:\SoloApp\chromedriver.exe FirewallRules: [{2C591D70-20AC-42A6-B51D-40C5DD41127B}] => (Allow) C:\SoloApp\IEDriverServer.exe FirewallRules: [{83C21D89-78E2-4AC9-B5B9-6212B62D29AC}] => (Allow) C:\SoloApp\IEDriverServer.exe FirewallRules: [TCP Query User{C2934761-D822-4864-BB08-2C60312059F1}C:\windows\system32\settingsynchost.exe] => (Block) C:\windows\system32\settingsynchost.exe FirewallRules: [UDP Query User{BCAF1FFB-A14D-4D05-A55F-95B55E9DBA6F}C:\windows\system32\settingsynchost.exe] => (Block) C:\windows\system32\settingsynchost.exe FirewallRules: [{6CB4D00D-EDE5-4A86-89AE-C8A6E15B0888}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserKeeper.exe FirewallRules: [{5F748ADD-F759-4CA1-8DB3-2757976044A7}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserKeeper.exe FirewallRules: [{59AD263C-6B51-422E-8930-A0406CCF3CD5}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserUpdate.exe FirewallRules: [{71BDC5D6-A6EF-4BA9-8A4A-EADA018F8483}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserUpdate.exe FirewallRules: [{8A195016-EBAE-46D5-AD01-A929EB9D6048}] => (Allow) C:\Program Files (x86)\HomeTab\WConnectorProductivity.exe FirewallRules: [{F8E040BB-53E9-46DA-B3C3-9ADA2DADB83B}] => (Allow) C:\Program Files (x86)\HomeTab\WConnectorProductivity.exe FirewallRules: [{42FFD4EA-04B1-4A91-9831-7C831C27A2F7}] => (Allow) C:\SoloApp\SoloApp.exe FirewallRules: [{0BD01A86-0249-44EB-A4AA-EAC51F0AA84D}] => (Allow) C:\SoloApp\SoloApp.exe FirewallRules: [{8E452D66-D046-41DA-A018-3704BCCBC16F}] => (Allow) C:\SoloApp\WebDriver.dll FirewallRules: [{B74ECE61-A8AA-4B6A-B4F1-E23ED68DFF97}] => (Allow) C:\SoloApp\WebDriver.dll FirewallRules: [{492D74C7-EE95-40D4-B16E-83A6E0C99A11}] => (Allow) C:\SoloApp\chromedriver.exe FirewallRules: [{F9635B67-F3BD-4F0E-8C45-9E19115E397D}] => (Allow) C:\SoloApp\chromedriver.exe FirewallRules: [{649DE97B-6335-4F8D-A618-FD5653C9682A}] => (Allow) C:\SoloApp\IEDriverServer.exe FirewallRules: [{7819A9DE-C509-4894-B451-9C1E632DD45A}] => (Allow) C:\SoloApp\IEDriverServer.exe FirewallRules: [{053C0C1F-15C9-4FF3-B93B-F3DF39ED83DD}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserKeeper.exe FirewallRules: [{4C62D7DE-1371-4148-A557-6BCC08D79995}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserKeeper.exe FirewallRules: [{60F9F069-6D70-47B9-915B-09C9524226A6}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserUpdate.exe FirewallRules: [{735637BF-9406-445C-AFB8-04D3CC6F4884}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserUpdate.exe FirewallRules: [{E71CFAAD-84CB-44D1-97B5-2EC93EB74338}] => (Allow) C:\Program Files (x86)\HomeTab\WConnectorProductivity.exe FirewallRules: [{6000085B-525E-4554-981C-AD9D606DC35F}] => (Allow) C:\Program Files (x86)\HomeTab\WConnectorProductivity.exe FirewallRules: [{5FFB4236-6DB6-4384-A55C-F9B4013CB927}] => (Allow) C:\SoloApp\SoloApp.exe FirewallRules: [{3DF20882-D778-4A89-9580-70A40B2AD9AD}] => (Allow) C:\SoloApp\SoloApp.exe FirewallRules: [{9EDC2681-A33A-470F-90BA-7FC9178DC72C}] => (Allow) C:\SoloApp\WebDriver.dll FirewallRules: [{B763D42E-A30B-4A75-9739-E79CA77395D5}] => (Allow) C:\SoloApp\WebDriver.dll FirewallRules: [{4179F09D-4086-467B-A821-D54701973C8C}] => (Allow) C:\SoloApp\chromedriver.exe FirewallRules: [{6406F1A1-A104-42DC-99B4-252BFE515FE5}] => (Allow) C:\SoloApp\chromedriver.exe FirewallRules: [{1EF125B0-495A-4AE0-B226-48DAACA72C16}] => (Allow) C:\SoloApp\IEDriverServer.exe FirewallRules: [{F7D78CE8-4DDB-4568-94A6-65077085B46B}] => (Allow) C:\SoloApp\IEDriverServer.exe FirewallRules: [{988A2686-7ABE-40BE-9833-713FAF1D21B9}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserKeeper.exe FirewallRules: [{833406FE-D17C-487A-BDD8-3DA3DC014FAC}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserKeeper.exe FirewallRules: [{0D6EC598-BB65-45D0-A429-1C3A633E65D7}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserUpdate.exe FirewallRules: [{9E8A2B25-B995-464D-A4CC-542E2DC69B25}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserUpdate.exe FirewallRules: [{67B8C221-4A00-4743-BB74-13FEFC9021E7}] => (Allow) C:\Program Files (x86)\HomeTab\WConnectorProductivity.exe FirewallRules: [{790B64F2-387D-4F22-87D6-3816B8664750}] => (Allow) C:\Program Files (x86)\HomeTab\WConnectorProductivity.exe FirewallRules: [{CA2CC5EC-51EB-4CB6-8803-DAC82943877E}] => (Allow) C:\SoloApp\SoloApp.exe FirewallRules: [{2BD181B4-BFB9-4EBF-A6EB-762FC05F0F17}] => (Allow) C:\SoloApp\SoloApp.exe FirewallRules: [{317FA637-1153-4422-84BE-A0D4A348BD4F}] => (Allow) C:\SoloApp\WebDriver.dll FirewallRules: [{E4BAAB0D-F2A5-4521-941E-E37F4323A425}] => (Allow) C:\SoloApp\WebDriver.dll FirewallRules: [{C4CA3589-08D4-43BB-9810-A9000825F61B}] => (Allow) C:\SoloApp\chromedriver.exe FirewallRules: [{07B4D4BE-C20C-4A8F-BD5F-A127740B0EC3}] => (Allow) C:\SoloApp\chromedriver.exe FirewallRules: [{367EE6D9-C351-4BD7-A824-A3CC1224866E}] => (Allow) C:\SoloApp\IEDriverServer.exe FirewallRules: [{7AC8D249-BD35-404C-AD0B-B239AF0B1308}] => (Allow) C:\SoloApp\IEDriverServer.exe FirewallRules: [{483F804F-2FAE-40FF-9862-763EE177AF2B}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserKeeper.exe FirewallRules: [{7F141270-9A23-498D-AA6D-4BBF55219B36}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserKeeper.exe FirewallRules: [{598115EC-2488-4CB7-8ED5-A67911F28860}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserUpdate.exe FirewallRules: [{980C7CF4-4799-4E58-B1AE-968F20C4909A}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserUpdate.exe FirewallRules: [{E516CAB4-9275-4DF5-ADAC-FC08BB6C463F}] => (Allow) C:\Program Files (x86)\HomeTab\WConnectorProductivity.exe FirewallRules: [{12F6B406-3C7C-479B-B594-50F7A832BE11}] => (Allow) C:\Program Files (x86)\HomeTab\WConnectorProductivity.exe FirewallRules: [{A11F19F8-4A64-4AC2-8FCB-BA8F52CA3912}] => (Allow) C:\SoloApp\SoloApp.exe FirewallRules: [{9B4FF904-C223-49E3-AA6C-02CB5CFAB61B}] => (Allow) C:\SoloApp\SoloApp.exe FirewallRules: [{1AB2677D-6D04-41FE-868E-DB4EEFE216AF}] => (Allow) C:\SoloApp\WebDriver.dll FirewallRules: [{7BC657FA-3358-427D-A249-3E51C2CC1D2A}] => (Allow) C:\SoloApp\WebDriver.dll FirewallRules: [{E9CC747E-848E-4E28-B954-9FEAC8165CEF}] => (Allow) C:\SoloApp\chromedriver.exe FirewallRules: [{45BB6DBD-49EA-41B3-936C-609E6FD0F625}] => (Allow) C:\SoloApp\chromedriver.exe FirewallRules: [{BC2AA80B-D18F-4E45-9C42-EEA12D986289}] => (Allow) C:\SoloApp\IEDriverServer.exe FirewallRules: [{72D5AB06-49C4-449C-89FB-4D3CF1E8900F}] => (Allow) C:\SoloApp\IEDriverServer.exe FirewallRules: [{FD8EC38E-3100-453D-80E0-556B9B689254}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserKeeper.exe FirewallRules: [{1D27C5A3-0D8C-4A17-9857-C24CF49F9A64}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserKeeper.exe FirewallRules: [{46633FB3-D418-4F81-99A7-2AA0712DF0EF}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserUpdate.exe FirewallRules: [{81F48220-AF5F-4529-9C00-23E5ACA88788}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserUpdate.exe FirewallRules: [{06DD50F3-2A08-48AB-8020-EBBF57167AAD}] => (Allow) C:\Program Files (x86)\HomeTab\WConnectorProductivity.exe FirewallRules: [{225DE175-DCD5-4FC2-BD4F-FD8B31C8B85E}] => (Allow) C:\Program Files (x86)\HomeTab\WConnectorProductivity.exe FirewallRules: [{EC687276-60EC-4DC3-83FB-0CA7BCEF1BA4}] => (Allow) C:\SoloApp\SoloApp.exe FirewallRules: [{592BBFC3-8637-44F8-B881-AE1B977422E7}] => (Allow) C:\SoloApp\SoloApp.exe FirewallRules: [{71F90671-ABDC-40DB-81D0-C9A7417AB9ED}] => (Allow) C:\SoloApp\WebDriver.dll FirewallRules: [{7EAF8E20-6972-425D-8A2C-45538F6EB327}] => (Allow) C:\SoloApp\WebDriver.dll FirewallRules: [{757F9A66-6F84-4312-8DA2-D94F3742725F}] => (Allow) C:\SoloApp\chromedriver.exe FirewallRules: [{E34CCF70-560D-4AAC-9907-AC07A4819010}] => (Allow) C:\SoloApp\chromedriver.exe FirewallRules: [{314B8DCD-4662-4621-8A38-21C618496255}] => (Allow) C:\SoloApp\IEDriverServer.exe FirewallRules: [{08FCB74A-84DE-44E8-921F-EBE798F09C3F}] => (Allow) C:\SoloApp\IEDriverServer.exe FirewallRules: [{C5BF1D58-5A58-4AFF-B841-31A5CB76990C}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserKeeper.exe FirewallRules: [{4A823372-ABB7-4576-A3CA-EAFE0448C988}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserKeeper.exe FirewallRules: [{3A07D5AC-01DF-40DF-A0D7-F7C234378AC9}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserUpdate.exe FirewallRules: [{EC02A358-5179-4A5D-A1F3-EA1CF8D0DFE2}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserUpdate.exe FirewallRules: [{1944CFBA-931E-4DEF-81E3-8B2E4AE0B268}] => (Allow) C:\Program Files (x86)\HomeTab\WConnectorProductivity.exe FirewallRules: [{D79D63FF-E808-48A3-877D-E48C777ADD5C}] => (Allow) C:\Program Files (x86)\HomeTab\WConnectorProductivity.exe FirewallRules: [{4F23B67D-ED14-43D6-B414-73C9B478261A}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{F4505983-B86D-4C28-A59D-BA5CD43ACBF0}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [TCP Query User{36F15323-E970-40F7-B583-FC14DA4095D5}C:\program files (x86)\mozilla firefox\firefox.exe] => (Block) C:\program files (x86)\mozilla firefox\firefox.exe FirewallRules: [UDP Query User{BD1E0414-7266-4F2C-9D7F-964FC8A95D76}C:\program files (x86)\mozilla firefox\firefox.exe] => (Block) C:\program files (x86)\mozilla firefox\firefox.exe ==================== Wiederherstellungspunkte ========================= 01-11-2015 16:58:08 Windows Update 02-01-2016 23:56:28 Windows Update 02-04-2016 17:46:05 Windows Update 04-09-2016 14:20:47 Removed iTunes 05-11-2016 16:34:50 Windows Update ==================== Fehlerhafte Geräte im Gerätemanager ============= ==================== Fehlereinträge in der Ereignisanzeige: ========================= Applikationsfehler: ================== Error: (11/05/2016 08:54:06 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 967922 Error: (11/05/2016 08:54:06 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledEvent 967922 Error: (11/05/2016 08:54:06 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: Continuously busy for more than a second Error: (11/05/2016 08:22:48 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Programm avscan.exe, Version 15.0.19.163 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: 1360 Startzeit: 01d23799ce70844e Endzeit: 15039 Anwendungspfad: C:\Program Files (x86)\Avira\AntiVir Desktop\avscan.exe Berichts-ID: 327a2e84-a38d-11e6-bebb-b888e3999fb4 Vollständiger Name des fehlerhaften Pakets: Anwendungs-ID, die relativ zum fehlerhaften Paket ist: Error: (11/05/2016 08:10:11 PM) (Source: COM) (EventID: 18221) (User: NT-AUTORITÄT) Description: Beim Herstellen der Verbindung mit dem RPCSS-Dienst wurde dem Benutzer "Nicht verfügbar\Nicht verfügbar" (SID: S-1-5-18) der Zugriff auf die COM-Serveranwendung "C:\WINDOWS\system32\schtasks.exe" im Anwendungscontainer "Nicht verfügbar" (SID: Nicht verfügbar) verweigert. Wahrscheinlichste Ursache: Dem Benutzer oder der Anwendung werden aufgrund der computerweiten Zugriffslimits keine lokalen Zugriffsberechtigungen gewährt. Die Zugriffslimits können mit dem Verwaltungstool für Komponentendienste geändert werden. Error: (11/05/2016 07:17:36 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Programm avscan.exe, Version 15.0.19.163 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: aac Startzeit: 01d23790923011a0 Endzeit: 4294967295 Anwendungspfad: c:\program files (x86)\avira\antivir desktop\avscan.exe Berichts-ID: 1e94aeb3-a384-11e6-beba-b888e3999fb4 Vollständiger Name des fehlerhaften Pakets: Anwendungs-ID, die relativ zum fehlerhaften Paket ist: Error: (11/05/2016 06:54:59 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 15266 Error: (11/05/2016 06:54:59 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledEvent 15266 Error: (11/05/2016 06:54:59 PM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: Continuously busy for more than a second Error: (11/05/2016 06:50:54 PM) (Source: Application Hang) (EventID: 1002) (User: ) Description: Programm avscan.exe, Version 15.0.19.163 kann nicht mehr unter Windows ausgeführt werden und wurde beendet. Überprüfen Sie den Problemverlauf in der Wartungscenter-Systemsteuerung, um nach weiteren Informationen zum Problem zu suchen. Prozess-ID: e1c Startzeit: 01d2378cb81580d7 Endzeit: 57333 Anwendungspfad: C:\Program Files (x86)\Avira\AntiVir Desktop\avscan.exe Berichts-ID: 42a77c10-a380-11e6-beba-b888e3999fb4 Vollständiger Name des fehlerhaften Pakets: Anwendungs-ID, die relativ zum fehlerhaften Paket ist: Systemfehler: ============= Error: (11/05/2016 08:19:30 PM) (Source: ACPI) (EventID: 13) (User: ) Description: : Der eingebettete Controller (EC) hat nicht innerhalb des angegebenen Zeitlimits reagiert. Dies deutet auf einen Fehler in der EC-Hardware oder -Firmware hin bzw. darauf, dass das BIOS auf falsche Art auf den EC zugreift. Fragen Sie den Computerhersteller nach einem aktualisierten BIOS. Dieser Fehler kann in einigen Situationen zur Folge haben, dass der Computer fehlerhaft läuft. Error: (11/05/2016 08:13:32 PM) (Source: DCOM) (EventID: 10010) (User: NT-AUTORITÄT) Description: Der Server "{DDCFD26B-FEED-44CD-B71D-79487D2E5E5A}" konnte innerhalb des angegebenen Zeitabschnitts mit DCOM nicht registriert werden. Error: (11/05/2016 08:09:34 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT-AUTORITÄT) Description: Installationsfehler: Die Installation des folgenden Updates ist mit Fehler 0x80070490 fehlgeschlagen: Microsoft.ZuneVideo Error: (11/05/2016 08:08:51 PM) (Source: DCOM) (EventID: 10010) (User: IDEA-PC) Description: Der Server "{AB8902B4-09CA-4BB6-B78D-A8F59079A8D5}" konnte innerhalb des angegebenen Zeitabschnitts mit DCOM nicht registriert werden. Error: (11/05/2016 03:23:26 PM) (Source: DCOM) (EventID: 10010) (User: NT-AUTORITÄT) Description: Der Server "{DDCFD26B-FEED-44CD-B71D-79487D2E5E5A}" konnte innerhalb des angegebenen Zeitabschnitts mit DCOM nicht registriert werden. Error: (11/05/2016 03:19:23 PM) (Source: Service Control Manager) (EventID: 7043) (User: ) Description: Der Dienst Windows Update konnte nach dem Empfang eines Preshutdown-Steuerelements nicht richtig heruntergefahren werden. Error: (11/05/2016 03:01:27 PM) (Source: Service Control Manager) (EventID: 7043) (User: ) Description: Der Dienst Windows Update konnte nach dem Empfang eines Preshutdown-Steuerelements nicht richtig heruntergefahren werden. Error: (04/08/2016 04:56:30 PM) (Source: DCOM) (EventID: 10010) (User: IDEA-PC) Description: Der Server "{4AA0A5C4-1B9B-4F2E-99D7-99C6AEC83474}" konnte innerhalb des angegebenen Zeitabschnitts mit DCOM nicht registriert werden. Error: (04/08/2016 04:56:30 PM) (Source: DCOM) (EventID: 10010) (User: IDEA-PC) Description: Der Server "{4AA0A5C4-1B9B-4F2E-99D7-99C6AEC83474}" konnte innerhalb des angegebenen Zeitabschnitts mit DCOM nicht registriert werden. Error: (04/02/2016 09:59:45 PM) (Source: DCOM) (EventID: 10010) (User: IDEA-PC) Description: Der Server "{4AA0A5C4-1B9B-4F2E-99D7-99C6AEC83474}" konnte innerhalb des angegebenen Zeitabschnitts mit DCOM nicht registriert werden. ==================== Speicherinformationen =========================== Prozessor: AMD E1-1200 APU with Radeon(tm) HD Graphics Prozentuale Nutzung des RAM: 64% Installierter physikalischer RAM: 1606.26 MB Verfügbarer physikalischer RAM: 568.97 MB Summe virtueller Speicher: 3142.26 MB Verfügbarer virtueller Speicher: 1475.91 MB ==================== Laufwerke ================================ Drive c: (Windows8_OS) (Fixed) (Total:250.42 GB) (Free:206.6 GB) NTFS ==>[System mit Startkomponenten (eingeholt von Laufwerk)] Drive d: (LENOVO) (Fixed) (Total:25 GB) (Free:23.27 GB) NTFS ==================== MBR & Partitionstabelle ================== ======================================================== Disk: 0 (Size: 298.1 GB) (Disk ID: 1A079A73) Partition: GPT. ==================== Ende von Addition.txt ============================ |
10.11.2016, 14:50 | #4 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Windows 8.1 : Avira Fund pua widdit Gen4 und MBAM massenweise Funde Hallo und +++ WICHTIGER HINWEIS +++ Während der Analyse und Bereinigung nimmst du KEINERLEI Änderungen auf eigene Faust vor, d.h. du installierst oder deinstallierst keine Software ohne Absprache. Auch veränderst du keine Systemeinstellungen, solange wir deinen Fall bearbeiten. Änderungen, Installationen oder Deinstallationen machst du AUSSCHLIESSLICH nur auf Anweisung! Es wird erforderlich sein, deinen Virenscanner zu deaktivieren und in bestimmten Fällen auch zu deinstallieren, damit vernünftig bereinigt werden kann. Dein System ist daher erst wenn wir hier fertig sind wieder für den alltäglichen Gebrauch wie surfen oder mailen von mir freigegeben. Gelesen und verstanden? Bitte Avira deinstallieren. Das Teil empfehlen wir schon seit Jahren aus mehreren Gründen nicht mehr. Ein Grund ist ne rel. hohe Fehlalarmquote, der zweite Hauptgrund ist, dass die immer noch mit ASK zusammenarbeiten (Avira Suchfunktion geht über ASK). Auch andere Freewareanbieter wie AVG, Avast oder Panda sprangen auf diesen Zug auf; so was ist bei Sicherheitssoftware einfach inakzeptabel. Vgl. Antivirensoftware: Schutz Für Ihre Dateien, Aber Auf Kosten Ihrer Privatsphäre? | Emsisoft Blog Gib Bescheid wenn Avira weg ist; wenn wir hier durch sind, kannst du auf einen anderen Virenscanner umsteigen, Infos folgen dann im Abschlussposting. Bitte JETZT nix mehr ohne Absprache installieren!
__________________ Logfiles bitte immer in CODE-Tags posten |
10.11.2016, 20:27 | #5 |
| Windows 8.1 : Avira Fund pua widdit Gen4 und MBAM massenweise Funde Hallo Cosinus, Vielen Dank schonmal für Deine Unterstützung. Avira habe ich soeben deinstalliert. Den Rest habe ich gelesen und verstanden ;-) warte auf weitere Anweisungen. |
10.11.2016, 21:59 | #6 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Windows 8.1 : Avira Fund pua widdit Gen4 und MBAM massenweise Funde 1. Schritt: Malwarebytes Anti-Rootkit (MBAR) Downloade dir bitte Malwarebytes Anti-Rootkit und speichere es auf deinem Desktop.
Starte keine andere Datei in diesem Ordner ohne Anweisung eines Helfers 2. Schritt: Kaspersky TDSS-Killer Downloade dir bitte TDSSKiller.exe und speichere diese Datei auf dem Desktop
Lesestoff: Posten in CODE-Tags Die Logfiles anzuhängen oder sogar vorher in ein ZIP, RAR oder 7Z-Archiv zu packen erschwert mir massiv die Arbeit. Auch wenn die Logs für einen Beitrag zu groß sein sollten, bitte ich dich die Logs direkt und notfalls über mehrere Beiträge verteilt zu posten. Um die Logfiles in eine CODE-Box zu stellen gehe so vor:
__________________ --> Windows 8.1 : Avira Fund pua widdit Gen4 und MBAM massenweise Funde |
11.11.2016, 02:07 | #7 |
| Windows 8.1 : Avira Fund pua widdit Gen4 und MBAM massenweise Funde beides ohne Funde: mbar: Code:
ATTFilter Malwarebytes Anti-Rootkit BETA 1.9.3.1001 www.malwarebytes.org Database version: main: v2016.11.10.10 rootkit: v2016.10.31.01 Windows 8.1 x64 NTFS Internet Explorer 11.0.9600.18053 jarnds :: IDEA-PC [administrator] 10.11.2016 23:38:31 mbar-log-2016-11-10 (23-38-31).txt Scan type: Quick scan Scan options enabled: Anti-Rootkit | Drivers | MBR | Physical Sectors | Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken Scan options disabled: Objects scanned: 301340 Time elapsed: 36 minute(s), 58 second(s) Memory Processes Detected: 0 (No malicious items detected) Memory Modules Detected: 0 (No malicious items detected) Registry Keys Detected: 0 (No malicious items detected) Registry Values Detected: 0 (No malicious items detected) Registry Data Items Detected: 0 (No malicious items detected) Folders Detected: 0 (No malicious items detected) Files Detected: 0 (No malicious items detected) Physical Sectors Detected: 0 (No malicious items detected) (end) Code:
ATTFilter 02:00:51.0206 0x0414 TDSS rootkit removing tool 3.1.0.12 Nov 7 2016 07:10:01 02:00:51.0224 0x0414 UEFI system 02:00:58.0081 0x0414 ============================================================ 02:00:58.0081 0x0414 Current date / time: 2016/11/11 02:00:58.0081 02:00:58.0082 0x0414 SystemInfo: 02:00:58.0082 0x0414 02:00:58.0082 0x0414 OS Version: 6.3.9600 ServicePack: 0.0 02:00:58.0082 0x0414 Product type: Workstation 02:00:58.0082 0x0414 ComputerName: IDEA-PC 02:00:58.0083 0x0414 UserName: jarnds 02:00:58.0083 0x0414 Windows directory: C:\WINDOWS 02:00:58.0083 0x0414 System windows directory: C:\WINDOWS 02:00:58.0083 0x0414 Running under WOW64 02:00:58.0083 0x0414 Processor architecture: Intel x64 02:00:58.0083 0x0414 Number of processors: 2 02:00:58.0083 0x0414 Page size: 0x1000 02:00:58.0083 0x0414 Boot type: Normal boot 02:00:58.0083 0x0414 CodeIntegrityOptions = 0x00000001 02:00:58.0083 0x0414 ============================================================ 02:00:58.0656 0x0414 KLMD registered as C:\WINDOWS\system32\drivers\17556757.sys 02:00:58.0656 0x0414 KLMD ARK init status: drvProperties = 0xFFF00, osBuild = 9600.18066, osProperties = 0x19 02:00:59.0121 0x0414 System UUID: {769E906D-200A-0C92-B449-10341E2432B4} 02:01:00.0592 0x0414 Drive \Device\Harddisk0\DR0 - Size: 0x4A85D56000 ( 298.09 Gb ), SectorSize: 0x200, Cylinders: 0x9801, SectorsPerTrack: 0x3F, TracksPerCylinder: 0xFF, Type 'K0', Flags 0x00000040 02:01:00.0614 0x0414 ============================================================ 02:01:00.0615 0x0414 \Device\Harddisk0\DR0: 02:01:00.0615 0x0414 GPT partitions: 02:01:00.0616 0x0414 \Device\Harddisk0\DR0\Partition1: GPT, TypeGUID: {DE94BBA4-06D1-4D40-A16A-BFD50179D6AC}, UniqueGUID: {FA3B1158-CAF0-455E-B1A5-105AA893863B}, Name: Basic data partition, StartLBA 0x800, BlocksNum 0x1F4000 02:01:00.0616 0x0414 \Device\Harddisk0\DR0\Partition2: GPT, TypeGUID: {C12A7328-F81F-11D2-BA4B-00A0C93EC93B}, UniqueGUID: {404F6E88-9F3A-4A37-847C-9DD1372882D9}, Name: EFI system partition, StartLBA 0x1F4800, BlocksNum 0x82000 02:01:00.0616 0x0414 \Device\Harddisk0\DR0\Partition3: GPT, TypeGUID: {BFBFAFE7-A34F-448A-9A5B-6213EB736C22}, UniqueGUID: {E651E3A0-9408-4A60-8AF2-AC840ABDDE3F}, Name: Basic data partition, StartLBA 0x276800, BlocksNum 0x1F4000 02:01:00.0616 0x0414 \Device\Harddisk0\DR0\Partition4: GPT, TypeGUID: {E3C9E316-0B5C-4DB8-817D-F92DF00215AE}, UniqueGUID: {5554BE3B-6484-47F0-B8AD-B2BF10F579CD}, Name: Microsoft reserved partition, StartLBA 0x46A800, BlocksNum 0x40000 02:01:00.0616 0x0414 \Device\Harddisk0\DR0\Partition5: GPT, TypeGUID: {EBD0A0A2-B9E5-4433-87C0-68B6B72699C7}, UniqueGUID: {B2324A29-DEDE-40CD-9B87-94F2FE8F927A}, Name: Basic data partition, StartLBA 0x4AA800, BlocksNum 0x1F4D5000 02:01:00.0616 0x0414 \Device\Harddisk0\DR0\Partition6: GPT, TypeGUID: {DE94BBA4-06D1-4D40-A16A-BFD50179D6AC}, UniqueGUID: {F444E5E3-2A00-4FDB-A2FE-A0F6054772EC}, Name: , StartLBA 0x1F97F800, BlocksNum 0xAF000 02:01:00.0616 0x0414 \Device\Harddisk0\DR0\Partition7: GPT, TypeGUID: {EBD0A0A2-B9E5-4433-87C0-68B6B72699C7}, UniqueGUID: {9894E6C9-B037-4764-B757-9B3CE66FD676}, Name: Basic data partition, StartLBA 0x1FA2E800, BlocksNum 0x3200000 02:01:00.0616 0x0414 \Device\Harddisk0\DR0\Partition8: GPT, TypeGUID: {DE94BBA4-06D1-4D40-A16A-BFD50179D6AC}, UniqueGUID: {69476984-44CD-494F-8B9B-B63CE99304A8}, Name: Basic data partition, StartLBA 0x22C2E800, BlocksNum 0x2800000 02:01:00.0617 0x0414 MBR partitions: 02:01:00.0617 0x0414 ============================================================ 02:01:00.0653 0x0414 C: <-> \Device\Harddisk0\DR0\Partition5 02:01:00.0778 0x0414 D: <-> \Device\Harddisk0\DR0\Partition7 02:01:00.0778 0x0414 ============================================================ 02:01:00.0778 0x0414 Initialize success 02:01:00.0778 0x0414 ============================================================ 02:03:01.0776 0x0a9c ============================================================ 02:03:01.0776 0x0a9c Scan started 02:03:01.0776 0x0a9c Mode: Manual; SigCheck; TDLFS; 02:03:01.0776 0x0a9c ============================================================ 02:03:01.0776 0x0a9c KSN ping started 02:03:04.0230 0x0a9c KSN ping finished: true 02:03:10.0100 0x0a9c ================ Scan system memory ======================== 02:03:10.0100 0x0a9c System memory - ok 02:03:10.0102 0x0a9c ================ Scan services ============================= 02:03:10.0338 0x0a9c [ E1832BD9FD7E0FC2DC9FA5935DE3E8C1, 41FF7418887AFC8B9C96EF21C5950DD342CC9E3C0D87AFD60A05B988C1D6CC23 ] 1394ohci C:\WINDOWS\System32\drivers\1394ohci.sys 02:03:10.0542 0x0a9c 1394ohci - ok 02:03:10.0651 0x0a9c [ AD508A1A46EC21B740AB31C28EFDFDB1, 9B1046CF0B80723149BD359B55CC0B8B3ABBEAA9038469F542A4C345C503FB02 ] 3ware C:\WINDOWS\system32\drivers\3ware.sys 02:03:10.0686 0x0a9c 3ware - ok 02:03:10.0845 0x0a9c [ E796AE43DDD1844281DB4D57294D17C0, 21AE69615044A96041E46476BE814B52C22624B6C7EA6BFC77BB64F69C3C21F5 ] ACPI C:\WINDOWS\system32\drivers\ACPI.sys 02:03:10.0915 0x0a9c ACPI - ok 02:03:10.0970 0x0a9c [ AC8279D229398BCF05C3154ADCA86813, 083E86CBE53244D24C334DB1511C77025133AE7875191845764B890A8CA5AFA9 ] acpiex C:\WINDOWS\system32\Drivers\acpiex.sys 02:03:11.0005 0x0a9c acpiex - ok 02:03:11.0031 0x0a9c [ A8970D9BF23CD309E0403978A1B58F3F, 9946C8477104EEC7DB197E2222F9905307F101C398CCED4B5FD0F86A5622C791 ] acpipagr C:\WINDOWS\System32\drivers\acpipagr.sys 02:03:11.0093 0x0a9c acpipagr - ok 02:03:11.0137 0x0a9c [ 111A89C99C5B4F1A7BCE5F643DD86F65, 41A2E49FF443927D05F7EF638518108227852984E68D4663C8761178C0B84A45 ] AcpiPmi C:\WINDOWS\System32\drivers\acpipmi.sys 02:03:11.0218 0x0a9c AcpiPmi - ok 02:03:11.0242 0x0a9c [ 5758387D68A20AE7D3245011B07E36E7, 77832E200E8B0D259552F6F60FE454A887E3EBBB9EA2F3590E6645289A04E293 ] acpitime C:\WINDOWS\System32\drivers\acpitime.sys 02:03:11.0287 0x0a9c acpitime - ok 02:03:11.0338 0x0a9c [ 3B42D95D20CD2AACDB0564471AE43ED7, BF49568D7060159F61D5F6DE7ECDECCCD1F920A2881544BA83CF420C822F6653 ] ACPIVPC C:\WINDOWS\System32\drivers\AcpiVpc.sys 02:03:11.0424 0x0a9c ACPIVPC - ok 02:03:11.0654 0x0a9c [ 9BAF21BA600EC4E5FD9A66AD3E4FF5A6, 5E02E5E80557F6EC870EB7CC2DE95169D4225B87A2FE7E796736205F51C15816 ] AdobeFlashPlayerUpdateSvc C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe 02:03:11.0691 0x0a9c AdobeFlashPlayerUpdateSvc - ok 02:03:11.0774 0x0a9c [ 7C1FDF1B48298CBA7CE4BDD4978951AD, 80F4D536E1231B30E836F72ADC8814AE6AA9FEC573FB5F3F965FAC8ABCCAF0F8 ] ADP80XX C:\WINDOWS\system32\drivers\ADP80XX.SYS 02:03:11.0865 0x0a9c ADP80XX - ok 02:03:11.0989 0x0a9c [ BCD58DACAA1EAAADC115EDD940478F6D, F31613F583C302F62A00E6766B031531C9E193CAED563689B178BA257715B992 ] AeLookupSvc C:\WINDOWS\System32\aelupsvc.dll 02:03:12.0140 0x0a9c AeLookupSvc - ok 02:03:12.0300 0x0a9c [ 374E27295F0A9DCAA8FC96370F9BEEA5, 51C394E0C2322D7D093941A1B8766171B5D1F47DF2FE0834209492891EA7D999 ] AFD C:\WINDOWS\system32\drivers\afd.sys 02:03:12.0557 0x0a9c AFD - ok 02:03:12.0654 0x0a9c [ 7DFAEBA9AD62D20102B576D5CAC45EC8, 9FA5207335303D1E8E9A3C9E1FB82C09AD21B04382F69D777A67E48EE91D2093 ] agp440 C:\WINDOWS\system32\drivers\agp440.sys 02:03:12.0698 0x0a9c agp440 - ok 02:03:12.0752 0x0a9c [ FE14D249D39368CA62D8DA6BC94AC694, E1036E22BFBD3750FD2D3DA6AB939B2DD54E824F4BD3E6539EF0E45AB5453DD1 ] ahcache C:\WINDOWS\system32\DRIVERS\ahcache.sys 02:03:12.0858 0x0a9c ahcache - ok 02:03:12.0926 0x0a9c [ 14A45BE6F5678339F0EC5752D9849410, DD0F60E96FAC68FBD5B86382E541408C613BD0F871D0E0A1EF9AB6E7B26E545C ] ALG C:\WINDOWS\System32\alg.exe 02:03:13.0040 0x0a9c ALG - ok 02:03:13.0104 0x0a9c [ 66B54471B5856E314947881E28263A6D, 2D60706B52A2CE98FF806337D62CD010C1DEB2AEDDF899C7B67173928B2D7C4C ] AMD External Events Utility C:\WINDOWS\system32\atiesrxx.exe 02:03:13.0213 0x0a9c AMD External Events Utility - ok 02:03:13.0267 0x0a9c AMD FUEL Service - ok 02:03:13.0300 0x0a9c [ 7589DE749DB6F71A68489DCE04158729, 5F35EDD50737985595C9D6703237CA2ADE49AA5443331020899698EB5114A0FB ] AmdK8 C:\WINDOWS\System32\drivers\amdk8.sys 02:03:13.0367 0x0a9c AmdK8 - ok 02:03:14.0369 0x0a9c [ FBB35875FEFE53D4280259842069ED72, B1A1B5799A6C50C244182CD201A1E9FCB7BE3B5ED4BB2E2E6BCF8E1BF53B75DB ] amdkmdag C:\WINDOWS\system32\DRIVERS\atikmdag.sys 02:03:15.0444 0x0a9c amdkmdag - ok 02:03:15.0588 0x0a9c [ A32BCAD9377E3B75D034CAFBA463A0AE, F504895D9C9CD1B4607806BCAF15A1CBFBAC2E5824903277A1350C9F35045602 ] amdkmdap C:\WINDOWS\system32\DRIVERS\atikmpag.sys 02:03:15.0684 0x0a9c amdkmdap - ok 02:03:15.0737 0x0a9c [ B46D2D89AFF8A9490FA8C98C7A5616E3, BE0765B5423B690E0F097FECD9717FAA95BFDFFDC6CF1B93DE5A19A1B7797879 ] AmdPPM C:\WINDOWS\System32\drivers\amdppm.sys 02:03:15.0787 0x0a9c AmdPPM - ok 02:03:15.0832 0x0a9c [ D2BF2F94A47D332814910FD47C6BBCD2, FE273D77D119D958676E1197D9EA7B008E3B05C6192B1962A81D4223ED204C35 ] amdsata C:\WINDOWS\system32\drivers\amdsata.sys 02:03:15.0870 0x0a9c amdsata - ok 02:03:15.0916 0x0a9c [ A8E04943C7BBA7219AA50400272C3C6E, 794C0BD12DF0392654E9A37AE4A24B5BE2D83F1F24F74DD48A1A0BF3AB8B1FF8 ] amdsbs C:\WINDOWS\system32\drivers\amdsbs.sys 02:03:15.0965 0x0a9c amdsbs - ok 02:03:15.0991 0x0a9c [ CEA5F4F27CFC08E3A44D576811B35F50, 89DF64B81BD109BAABAE93A4603C1617241219F38DDAF325EFE6BD35FF6FD717 ] amdxata C:\WINDOWS\system32\drivers\amdxata.sys 02:03:16.0032 0x0a9c amdxata - ok 02:03:16.0081 0x0a9c [ 415DD71628795197F7AFC176CBADC74E, 5F0359053A6CD6EE239139E0E6F46E1FA9A73F017C0CE9B7BC052216B2C846EC ] AppID C:\WINDOWS\system32\drivers\appid.sys 02:03:16.0187 0x0a9c AppID - ok 02:03:16.0211 0x0a9c [ 88358135810B9DFD830A9D3A8C3D149A, DF914DA3828EE2310895D156342E3B3DF5E8C6F6F9B851C359E82A1F48180D4B ] AppIDSvc C:\WINDOWS\System32\appidsvc.dll 02:03:16.0261 0x0a9c AppIDSvc - ok 02:03:16.0319 0x0a9c [ 680BFB820C5A943AB709BAA2B1EF27F2, A51D2A7976A762FE470C13C6D1BA0319A0FB19C9E66BF02AA44F83EAEC7130F8 ] Appinfo C:\WINDOWS\System32\appinfo.dll 02:03:16.0450 0x0a9c Appinfo - ok 02:03:16.0581 0x0a9c [ 4FE5C6D40664AE07BE5105874357D2ED, 70DD05EE80B77EB2F781E0919885D1BBB1119EA1A8955935AF5AECD05E30F14A ] Apple Mobile Device C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe 02:03:16.0607 0x0a9c Apple Mobile Device - ok 02:03:16.0679 0x0a9c [ 35E28923A23ADABAA5A1B43256D0AB58, A5F3AF8BBEE58B2165BAFACC5FF8B167B55B020998D3D1565C2229ED8753B269 ] AppReadiness C:\WINDOWS\system32\AppReadiness.dll 02:03:16.0811 0x0a9c AppReadiness - ok 02:03:16.0996 0x0a9c [ 573542B5E97772021B73E854DA861DAA, C3FD00FA28060F8D7CDFD455BBB5FF8239CB76DDFFF2BDAE6AA944674DD993D3 ] AppXSvc C:\WINDOWS\system32\appxdeploymentserver.dll 02:03:17.0164 0x0a9c AppXSvc - ok 02:03:17.0197 0x0a9c [ 65045784366F7EC5FB4E71BCF923187B, 53C215C64FF12E44B097F7CB88E8482438CE0ACBD3C68D8FD38BA0D0D8747FAA ] arcsas C:\WINDOWS\system32\drivers\arcsas.sys 02:03:17.0234 0x0a9c arcsas - ok 02:03:17.0275 0x0a9c [ 74B14192CF79A72F7536B27CB8814FBD, 0CF6BBB63FFE0C12777664D80B2797923844C8392D0FD81D7962EE5EE2C3C3D9 ] atapi C:\WINDOWS\system32\drivers\atapi.sys 02:03:17.0304 0x0a9c atapi - ok 02:03:17.0364 0x0a9c [ 431FE56F5A2F5937994CB2DA330B47DB, E5AED551529A21494114959251FDF566802DD6D9B9D86A937A0EECE53338CAC7 ] AudioEndpointBuilder C:\WINDOWS\System32\AudioEndpointBuilder.dll 02:03:17.0463 0x0a9c AudioEndpointBuilder - ok 02:03:17.0602 0x0a9c [ 0F03CC00645D7F841879A048787D6AC7, 3ECD2486157469F2EDB63D4868338D1445F2909153DF0AFFE432083730EEE3F5 ] Audiosrv C:\WINDOWS\System32\Audiosrv.dll 02:03:17.0702 0x0a9c Audiosrv - ok 02:03:17.0767 0x0a9c [ 3C6ED74AF41DD1A5585CE5EF3D00915F, A742F576407776634E5A8E49C60023FFDF395DE0B2DE36662A23F85B79405ED2 ] AxInstSV C:\WINDOWS\System32\AxInstSV.dll 02:03:17.0850 0x0a9c AxInstSV - ok 02:03:17.0973 0x0a9c [ A4A73F631FE2AA2826FBE4A399B04DEF, 973AACE8DC8DA669D0DF20F17EFDEEABB90AA046AC980948D16A62D39A606A79 ] b06bdrv C:\WINDOWS\system32\drivers\bxvbda.sys 02:03:18.0041 0x0a9c b06bdrv - ok 02:03:18.0092 0x0a9c [ 8CC7F7E4AFCBA605921B137ED7992C68, 71406E6D6E9964740A6D90B05329D5492BB90AF40E0630CF2FBF4BA4BA14F2DD ] BasicDisplay C:\WINDOWS\System32\drivers\BasicDisplay.sys 02:03:18.0136 0x0a9c BasicDisplay - ok 02:03:18.0205 0x0a9c [ 38A82F4EE8C416A6744B6D30381ED768, 9EAAE5F43BA09359130AC04B1DCA0F5D4DF32ED89C02DC5CEB640918948847F7 ] BasicRender C:\WINDOWS\System32\drivers\BasicRender.sys 02:03:18.0245 0x0a9c BasicRender - ok 02:03:18.0975 0x0a9c [ 9A4EF701A4FC835F7DDD8956D930010F, 28A555B98098ECE47912C40A74CA92AFA76F51A711F2DEFF1A498FF212505F23 ] BCM43XX C:\WINDOWS\system32\DRIVERS\bcmwl63a.sys 02:03:19.0693 0x0a9c BCM43XX - ok 02:03:19.0802 0x0a9c [ C1ABB0F7E3BEA48A0417BDF6FF14AB21, 1CAC63A1A0FB9855A27EE977794576A860F6650C9EF7667FFB27F2A2FF721857 ] bcmfn2 C:\WINDOWS\System32\drivers\bcmfn2.sys 02:03:19.0821 0x0a9c bcmfn2 - ok 02:03:19.0902 0x0a9c [ 4B6F61BD394DCEDA9B06D702836531C2, 83C739467BD9A00FE09BCE83BB9409EA2DA62FCDD2384F9EE98626226223E918 ] BDESVC C:\WINDOWS\System32\bdesvc.dll 02:03:20.0010 0x0a9c BDESVC - ok 02:03:20.0071 0x0a9c [ EC19013E4CF87609534165DF897274D6, 8ED45537CF2D58D759A587CCBFDADD5580C7447B0C3B172CF19ECC7585E073FC ] Beep C:\WINDOWS\system32\drivers\Beep.sys 02:03:20.0188 0x0a9c Beep - ok 02:03:20.0281 0x0a9c [ 8F2AD111B47A190F325EE7495D3C1803, C61F1506E74A9EFBB61B8A06B30886B6E891C33211F755F30B924EBA202ECEC5 ] BFE C:\WINDOWS\System32\bfe.dll 02:03:20.0430 0x0a9c BFE - ok 02:03:20.0549 0x0a9c [ 48554994279BFE17A3D2B00076D0CB1A, 6521B1EC0BC6B01F63976370D89FE7DC2E7404899F68B6FAC37A9173B9C5D489 ] BITS C:\WINDOWS\System32\qmgr.dll 02:03:23.0076 0x0a9c BITS - ok 02:03:23.0193 0x0a9c [ EBBCD5DFBB1DE70E8F4AF8FA59E401FD, 17BFFC5DF609CE3B2F0CAB4BD6C118608C66A3AD86116A47E90B2BB7D8954122 ] Bonjour Service C:\Program Files\Bonjour\mDNSResponder.exe 02:03:23.0246 0x0a9c Bonjour Service - ok 02:03:23.0286 0x0a9c [ 6B4FFFDDC618FCF64473CAA86E305697, 29EA66071D5822920F5C50533673ADAB5204F8B25C11027AD27450D881F1142D ] bowser C:\WINDOWS\system32\DRIVERS\bowser.sys 02:03:23.0403 0x0a9c bowser - ok 02:03:23.0485 0x0a9c [ FA601515FF2B59F25FDD8EDB1D2A1104, 21DFB53241F8E880F7546B9ADF38F47D6AD0782EC7F8F0284ED69DE7CEF7DCB9 ] BrokerInfrastructure C:\WINDOWS\System32\bisrv.dll 02:03:23.0612 0x0a9c BrokerInfrastructure - ok 02:03:23.0680 0x0a9c [ BC111AADACD0BF59D56547461D13AB6E, 91E3619930C29EE4B2683683888BA7EE3CF6B1DDB0C19A14E0880470CBE40EF4 ] Browser C:\WINDOWS\System32\browser.dll 02:03:23.0742 0x0a9c Browser - ok 02:03:23.0784 0x0a9c [ A8F23D453A424FF4DE04989C4727ECC7, AE4A9081395C7379F1C947EF8243F7609F90C843E086B8E77E1A2C06E36D4381 ] BthAvrcpTg C:\WINDOWS\System32\drivers\BthAvrcpTg.sys 02:03:23.0833 0x0a9c BthAvrcpTg - ok 02:03:23.0873 0x0a9c [ 272A62B660A48AEF366F8A1836CED19F, 78EFAC6B1B2313482329BBFFBF0DDA6462BD88E5BE3C817C5E8E0EAF3074C925 ] BthHFEnum C:\WINDOWS\System32\drivers\bthhfenum.sys 02:03:23.0965 0x0a9c BthHFEnum - ok 02:03:24.0013 0x0a9c [ 71FE2A48E4C93DDB9798C024880B6C07, 8E93DE29C61A5FA64216231228CB3C4A1A693FE87CAA2C070BCAD7BE2D8ED000 ] bthhfhid C:\WINDOWS\System32\drivers\BthHFHid.sys 02:03:24.0065 0x0a9c bthhfhid - ok 02:03:24.0137 0x0a9c [ 9307A4B743D277C499CDA8E19E5687AC, 7A01989EC3D54581F292BDEDC9B9445F2ABD50165102617E3089BDD061C63A19 ] BthHFSrv C:\WINDOWS\System32\BthHFSrv.dll 02:03:24.0240 0x0a9c BthHFSrv - ok 02:03:24.0280 0x0a9c [ 07E33226AD218A2A162662A05CAFB52F, 0AC3D8B79EDA6DA232FA4E1CAF6592420A9EDE96350D1F0504C2434261684F0B ] BTHMODEM C:\WINDOWS\System32\drivers\bthmodem.sys 02:03:24.0335 0x0a9c BTHMODEM - ok 02:03:24.0385 0x0a9c [ 043A0F37631BF453F16D478B71320F46, C368296B802984F438852927B8A40EA3F4205724A05828F3173F08EC17228356 ] bthserv C:\WINDOWS\system32\bthserv.dll 02:03:24.0500 0x0a9c bthserv - ok 02:03:24.0537 0x0a9c [ 2FA6510E33F7DEFEC03658B74101A9B9, 61C8C8E3F09B427711464C974EE22E1E01C48E10DB54A4EC9901F482FC36C978 ] cdfs C:\WINDOWS\system32\DRIVERS\cdfs.sys 02:03:24.0628 0x0a9c cdfs - ok 02:03:24.0670 0x0a9c [ C6796EA22B513E3457514D92DCDB1A3D, 2B893F3950C6B913B934C2089B69F3B0B77F229AE1820907E598455CBB78139C ] cdrom C:\WINDOWS\System32\drivers\cdrom.sys 02:03:24.0719 0x0a9c cdrom - ok 02:03:24.0792 0x0a9c [ 41C0D7B1A6D4AD119BA6AC0487EA5C8E, 516C2B34BA7507D0DA4148B4ABC0A8C36286570D4EA5C60B28647B1249C15018 ] CertPropSvc C:\WINDOWS\System32\certprop.dll 02:03:24.0870 0x0a9c CertPropSvc - ok 02:03:24.0944 0x0a9c [ BE9936EDD3267FAAFF94A7835867F00B, 3CEEF2377D45ED38C7CD3CE4C746EC5EA7277EFEC728A5438F0EF5F62FC7C859 ] circlass C:\WINDOWS\System32\drivers\circlass.sys 02:03:24.0989 0x0a9c circlass - ok 02:03:25.0048 0x0a9c [ 8EB7E70C2D348FE2476A2E3F2D585E3D, 2B5D407FACF1D049261026CC552A7C93B028A661B0F4E959815EAE7670054127 ] CLFS C:\WINDOWS\system32\drivers\CLFS.sys 02:03:25.0104 0x0a9c CLFS - ok 02:03:25.0186 0x0a9c [ EF6EF85DADC3184A10D8F2F7159973CB, 42FCB286CED95A5DEBC5C0C894FCBC4818A2C818BB71087142FB51A08A0BE96B ] CmBatt C:\WINDOWS\System32\drivers\CmBatt.sys 02:03:25.0232 0x0a9c CmBatt - ok 02:03:25.0366 0x0a9c [ 5E5AB950693F2C6D6ACBEE3A74697ED7, 3790A7DD0AC65F47A697A577744FDFA4CC1CA3422884C84E499F97AC91BA84F3 ] CNG C:\WINDOWS\system32\Drivers\cng.sys 02:03:25.0439 0x0a9c CNG - ok 02:03:25.0605 0x0a9c [ 1F925AA990A6A446E8BA926B2D0A5201, F278C272E3F40C37D04935CE19938C4B63A4BC2AA378D0F56C32FE78308D6993 ] CnxtHdAudService C:\WINDOWS\system32\drivers\CHDRT64.sys 02:03:25.0724 0x0a9c CnxtHdAudService - ok 02:03:25.0796 0x0a9c [ 03AAED827C36F35D70900558B8274905, 8E44A23C6013FFAE7769F99CAA3B1D6288DE00A38937F9056903AC265B503AFA ] CompositeBus C:\WINDOWS\System32\drivers\CompositeBus.sys 02:03:25.0838 0x0a9c CompositeBus - ok 02:03:25.0854 0x0a9c COMSysApp - ok 02:03:25.0899 0x0a9c [ A1FF7DFBFBE164CF92603C651D304DD2, 470ACE5A75E64FC62C950037201199857E974803625DC73BEDBCF6FA4DDD496C ] condrv C:\WINDOWS\system32\drivers\condrv.sys 02:03:26.0003 0x0a9c condrv - ok 02:03:26.0084 0x0a9c [ 6324F0D18FB52833BA64BC828E29054C, 04118FA1BDFC512F76E4A81FEF34C78B6BD98429DB1D65123B6802B4A1E30584 ] CryptSvc C:\WINDOWS\system32\cryptsvc.dll 02:03:26.0231 0x0a9c CryptSvc - ok 02:03:26.0296 0x0a9c [ 48AED45DF009081AF3F5144F7D624674, 4425C15EB9E1177EE5134A33F63DAF7FF876577946DBF1EAD92C5614025113BB ] CxAudMsg C:\WINDOWS\system32\CxAudMsg64.exe 02:03:26.0325 0x0a9c CxAudMsg - ok 02:03:26.0353 0x0a9c [ 315BA4BC19316D72B2E037534E048B93, 69613635DB23E6A935673B1025C2010ED3E195473D25368CF74234C4C36910BE ] dam C:\WINDOWS\system32\drivers\dam.sys 02:03:26.0386 0x0a9c dam - ok 02:03:26.0526 0x0a9c [ A6F17C299A03BAFEFB9257C462A19E00, EB68967D28355271897166D7B6FD963D1E546D3C24AE1AEAAC561F94357A9345 ] DcomLaunch C:\WINDOWS\system32\rpcss.dll 02:03:26.0720 0x0a9c DcomLaunch - ok 02:03:26.0839 0x0a9c [ 95E1ABFB27F8A62ED764805775F0D2F3, 692865DA60C93481E01592883678B2C51FD9AC9A835DFB00A8E3F2DFEE7AB0ED ] defragsvc C:\WINDOWS\System32\defragsvc.dll 02:03:26.0995 0x0a9c defragsvc - ok 02:03:27.0062 0x0a9c [ FF086DEF5995558CCB1B5AAC2110195D, CED52FF01F9247BFDAFC5C7EFC538F8638146ED715574A422496EE0F846CB079 ] DeviceAssociationService C:\WINDOWS\system32\das.dll 02:03:27.0146 0x0a9c DeviceAssociationService - ok 02:03:27.0192 0x0a9c [ 2C02AFF8383D893F8DBEB07A84F6E77C, 7CC34BAC67E2988E3D16DD6EB6F6785CD2460E3EF7FBD0BD5F86E49793BD473E ] DeviceInstall C:\WINDOWS\system32\umpnpmgr.dll 02:03:27.0271 0x0a9c DeviceInstall - ok 02:03:27.0347 0x0a9c [ A03F362C5557E238CBFA914689C77248, BAD0A1124E6A384C15028FBE121ADF650F7716442555AD3737B9EA1F58A69246 ] Dfsc C:\WINDOWS\system32\Drivers\dfsc.sys 02:03:27.0474 0x0a9c Dfsc - ok 02:03:27.0556 0x0a9c [ 3EEAADA3125431980E5804ED7143458A, 381E12C83E3211C255B321D35536F4049D67E31061F8D82155E4D4509E97F43D ] Dhcp C:\WINDOWS\system32\dhcpcore.dll 02:03:27.0691 0x0a9c Dhcp - ok 02:03:27.0957 0x0a9c [ 21EDAD8188372C912B7BB9B1C6CB0D38, 4A102745DE8A2A82D2C069B30503BF9FF2312A035A82854F84EF9C27E3533CEE ] DiagTrack C:\WINDOWS\system32\diagtrack.dll 02:03:28.0194 0x0a9c DiagTrack - ok 02:03:28.0260 0x0a9c [ 4D40C9B33F738797CF50E77CB7C53E85, 7BA341342A47DEB15B51971C97A5237ACD8BDAD9033F63DF0000892BE43F8E13 ] disk C:\WINDOWS\system32\drivers\disk.sys 02:03:28.0301 0x0a9c disk - ok 02:03:28.0352 0x0a9c [ EB70A894708D1BC176AFD690FF06085F, 0DD2A97F5E1B38D1F7C0D44E50F09EA222B18B3B074CC9C8CD25A7526CB1A112 ] dmvsc C:\WINDOWS\System32\drivers\dmvsc.sys 02:03:28.0488 0x0a9c dmvsc - ok 02:03:28.0552 0x0a9c [ 33ADFB7453BF3271463712C4BCE61AD1, A1DB30F874BA7B2C4C653494D70B46B94BF7D39D0DD8559F6CA7A14B676FD617 ] Dnscache C:\WINDOWS\System32\dnsrslvr.dll 02:03:28.0615 0x0a9c Dnscache - ok 02:03:28.0691 0x0a9c [ 811EACBCC7C51A03AE11F13CC27B2AB6, FAB94F84950FFB7D3649BAFB8D96D43B880D7FDE8D5B879472AE26C4BC4203B0 ] dot3svc C:\WINDOWS\System32\dot3svc.dll 02:03:28.0857 0x0a9c dot3svc - ok 02:03:28.0927 0x0a9c [ B99CB575986789A93A683DCF292A43A1, 6ACEA31C723B74003E106FC8303542FCC6DBC4952B6B523F6590D006BE57238D ] DPS C:\WINDOWS\system32\dps.dll 02:03:29.0002 0x0a9c DPS - ok 02:03:29.0028 0x0a9c [ 00C594D5A1DBD22AD8B2902B9F6EFF94, 2920D62B5F7C49A8AFA80FCAD1E834BBAA670AEBDD7E6F21F0496D1D3CCB4E90 ] drmkaud C:\WINDOWS\system32\drivers\drmkaud.sys 02:03:29.0065 0x0a9c drmkaud - ok 02:03:29.0116 0x0a9c [ 263625A4F616538EB867B6306A6590DB, 2A064720C247EAA3446EFDCC9E01D84CBA875905D78DFED0FBD62D1EE422D416 ] DsmSvc C:\WINDOWS\System32\DeviceSetupManager.dll 02:03:29.0172 0x0a9c DsmSvc - ok 02:03:29.0381 0x0a9c [ E1BB0B6F00F470B451AB45EA13EBA0B3, 3A2FC2175B69A5EB98D6C2D563DBFDCB320647AB87A14E47FAE800423DCACDAB ] DXGKrnl C:\WINDOWS\System32\drivers\dxgkrnl.sys 02:03:29.0570 0x0a9c DXGKrnl - ok 02:03:29.0609 0x0a9c [ E253530BD5EDE28F1FF6AF93C4D8034D, 787A70C3E946348F066FB8EB81FCE60157217D93FD78ADC631B5835E8D76A253 ] Eaphost C:\WINDOWS\System32\eapsvc.dll 02:03:29.0721 0x0a9c Eaphost - ok 02:03:30.0121 0x0a9c [ 114BCFDF367FF37C3F1B0A96AF542E4D, D385BC1D91BC1406091C8C3691C07A90BD60EDE05B1384E5AA3506FCB909C857 ] ebdrv C:\WINDOWS\system32\drivers\evbda.sys 02:03:30.0474 0x0a9c ebdrv - ok 02:03:30.0551 0x0a9c [ 382100E75B6F4668AEAEF228C6CEFFAD, 9C7229F10F11D18E1FED6395391A46225A84B421034B9AB6F81AF7430FDC556F ] EFS C:\WINDOWS\System32\lsass.exe 02:03:30.0584 0x0a9c EFS - ok 02:03:30.0623 0x0a9c [ 43531A5993380CC5113242C29D265FD9, EE0076D96F7F3CF29884AC7A67C08A429115A7201354A1FB5DE45FD63ABB4960 ] EhStorClass C:\WINDOWS\system32\drivers\EhStorClass.sys 02:03:30.0661 0x0a9c EhStorClass - ok 02:03:30.0696 0x0a9c [ 6F8E738A9505A388B1157FDDE7B3101B, 3696CA634102B41EEA11EB9DCA0B24439D8636AED4A7190C138C5E64A2EFB514 ] EhStorTcgDrv C:\WINDOWS\system32\drivers\EhStorTcgDrv.sys 02:03:30.0733 0x0a9c EhStorTcgDrv - ok 02:03:30.0761 0x0a9c [ DFFFAE1442BA4076E18EED5E406FA0D3, 329FC6FB8D14BEACDBE2A5D4C496EDEA485E838B1DF27566E278F8F8E0D8E82E ] ErrDev C:\WINDOWS\System32\drivers\errdev.sys 02:03:30.0805 0x0a9c ErrDev - ok 02:03:30.0947 0x0a9c [ F00C593994D57C75273F820653440536, 2DC986D9890EC907405FB2045E6F55ACC384169B45F0B56CCB1A953CF71D9A5D ] EventSystem C:\WINDOWS\system32\es.dll 02:03:31.0076 0x0a9c EventSystem - ok 02:03:31.0141 0x0a9c [ 7729D294A555C7AEB281ED8E4D0E01E4, 7269E79D72CCE477AC108294D0DDFB59CF533B03C587599C5AB0507C43A0B6D4 ] exfat C:\WINDOWS\system32\drivers\exfat.sys 02:03:31.0266 0x0a9c exfat - ok 02:03:31.0317 0x0a9c [ 7C4E0D5900B2A1D11EDD626D6DDB937B, 732F310F8F6016C56F432A81636B13CE0124A802FE8DD91287B618EED22C9A1D ] fastfat C:\WINDOWS\system32\drivers\fastfat.sys 02:03:31.0362 0x0a9c fastfat - ok 02:03:31.0438 0x0a9c [ 304B6AEC4639A7CCCCF544C6BA6177B2, B75CDD52FD3890B3008E06C503945D1E36478F0EC5E067C8DBC2822D7935D24B ] Fax C:\WINDOWS\system32\fxssvc.exe 02:03:31.0564 0x0a9c Fax - ok 02:03:31.0601 0x0a9c [ 5D8402613E778B3BD45E687A8372710B, EE9EA10805168D309A609B9019AEC5961EE46D18207B5E0EA2DE4064A5770AF8 ] fdc C:\WINDOWS\System32\drivers\fdc.sys 02:03:31.0650 0x0a9c fdc - ok 02:03:31.0700 0x0a9c [ 020D2F29009F893ADEFF4405B4B44565, 9F8501064C72933D1442DA00E70392B30D0207EB7D60F50E6648FF363799E6F1 ] fdPHost C:\WINDOWS\system32\fdPHost.dll 02:03:31.0779 0x0a9c fdPHost - ok 02:03:31.0828 0x0a9c [ E80D2EDD2F88B6E20076A0A4F5A5A245, E3CD6E0BE152B22E8A7340EFFD10CCDB1B632CD3EDF487E83F697D2E22A7D594 ] FDResPub C:\WINDOWS\system32\fdrespub.dll 02:03:31.0878 0x0a9c FDResPub - ok 02:03:31.0924 0x0a9c [ 47AB7D16EDE434B934AA4D661456C2D5, D375A92FB3E4BB0A8DA5270DACC888E53FB9F514516039FE6DAE4D4EF6B9A970 ] fhsvc C:\WINDOWS\system32\fhsvc.dll 02:03:32.0023 0x0a9c fhsvc - ok 02:03:32.0059 0x0a9c [ BCFD8B149B3ADF92D0DB1E909CAF0265, 002B085C131473642450176B4B8359F3E5B04350AFB659B9C0F9EB587D1181E7 ] FileInfo C:\WINDOWS\system32\drivers\fileinfo.sys 02:03:32.0092 0x0a9c FileInfo - ok 02:03:32.0142 0x0a9c [ A1A66C4FDAFD6B0289523232AFB7D8AF, 0F5832F626BB62190D5F3A088CE6E048D8A400CCF9EA527F06973CAD96D3A81C ] Filetrace C:\WINDOWS\system32\drivers\filetrace.sys 02:03:32.0197 0x0a9c Filetrace - ok 02:03:32.0224 0x0a9c [ BE743083CF7063C486A4398E3AEFE59A, 85796D89943DD6FE3932C1ED6CF01470C1B4DFD243C390B07055FFDA3C231551 ] flpydisk C:\WINDOWS\System32\drivers\flpydisk.sys 02:03:32.0275 0x0a9c flpydisk - ok 02:03:32.0344 0x0a9c [ C1FB505A73FA2E9019D32444AB33B75A, 765F0635C18295855CA4C0394192E8B94BA2EA1C4D74F86B720358ABA019FFAA ] FltMgr C:\WINDOWS\system32\drivers\fltmgr.sys 02:03:32.0398 0x0a9c FltMgr - ok 02:03:32.0522 0x0a9c [ 1E93CBB75D167CDF85501A8C790097A8, C9E5DD090C94E7855939CE1F416460DB408EFF897C2CD52E0D52A734D8ED18B7 ] FontCache C:\WINDOWS\system32\FntCache.dll 02:03:32.0714 0x0a9c FontCache - ok 02:03:32.0850 0x0a9c [ 1C52387BF5A127F5F3BFB31288F30D93, 90D13F60170CD74304F3036A90D596AA3E1E134455A780310BDF67AC7815F2E7 ] FontCache3.0.0.0 C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe 02:03:32.0880 0x0a9c FontCache3.0.0.0 - ok 02:03:32.0923 0x0a9c [ A7C31B168F371E8E6796219F23E354DB, C51C9BF568F1E96CBBE57D2432B38F93F40520086DDB6AAAAC48CBCD1691B441 ] FsDepends C:\WINDOWS\system32\drivers\FsDepends.sys 02:03:32.0960 0x0a9c FsDepends - ok 02:03:32.0988 0x0a9c [ 09F460AFEDCA03F3BF6E07D1CCC9AC42, B832091BC9B2C2FE38A4BCA132ABB58251E851F21EC6F39636E73777AB9A5791 ] Fs_Rec C:\WINDOWS\system32\drivers\Fs_Rec.sys 02:03:33.0018 0x0a9c Fs_Rec - ok 02:03:33.0124 0x0a9c [ F152D55E497E12256290C43B31C7D0CE, FFC54B14CCFBC1548948C07FB3866E40A11D0C05AC352BD000E71CEF053F6A6E ] fvevol C:\WINDOWS\system32\DRIVERS\fvevol.sys 02:03:33.0196 0x0a9c fvevol - ok 02:03:33.0248 0x0a9c [ 9591D0B9351ED489EAFD9D1CE52A8015, AC64C236C3AE545FCE8ED44A4A87FB86265A453BA60026EC9A4DE2B631E99996 ] FxPPM C:\WINDOWS\System32\drivers\fxppm.sys 02:03:33.0293 0x0a9c FxPPM - ok 02:03:33.0319 0x0a9c [ FC3EF65EE20D39F8749C2218DBA681CA, 12980F1DE99B25E6920A33556F3ABDA5EC9BFE4757BE602130B5E939D8D25CE3 ] gagp30kx C:\WINDOWS\system32\drivers\gagp30kx.sys 02:03:33.0367 0x0a9c gagp30kx - ok 02:03:33.0421 0x0a9c [ 0BF5CAD281E25F1418E5B8875DC5ADD1, 0929AD8437DD78234553D8B2CDF0D6838FD54ACDE1918AFEBE48684EB32A07A3 ] gencounter C:\WINDOWS\System32\drivers\vmgencounter.sys 02:03:33.0463 0x0a9c gencounter - ok 02:03:33.0502 0x0a9c [ 8DF1254093B5C354CE725EB6B9B0DE19, DE6C5661CC076DA44B8A5D044FDB7280EDCF38D322A98C14FDC82E25586B3014 ] GPIOClx0101 C:\WINDOWS\system32\Drivers\msgpioclx.sys 02:03:33.0541 0x0a9c GPIOClx0101 - ok 02:03:33.0729 0x0a9c [ 0D03F87D4FF4ADBAF8336DD80548155A, BC10CFA88EA2F41A8D96CB810B7953A4C168B79273A3E804A9F020F49AB58CD3 ] gpsvc C:\WINDOWS\System32\gpsvc.dll 02:03:33.0871 0x0a9c gpsvc - ok 02:03:33.0927 0x0a9c [ D4B7ED39C7900384D9E5C1283F1E7926, F93F98858067B40F1C071EAD0F8E85442A78B95342BC692AF4D726540634923F ] HDAudBus C:\WINDOWS\System32\drivers\HDAudBus.sys 02:03:33.0978 0x0a9c HDAudBus - ok 02:03:34.0008 0x0a9c [ 10A70BC1871CD955D85CD88372724906, 2480A74854D0A89FF028EE9BA41224D4B2F9B0863066BFC43097920794FEE08D ] HidBatt C:\WINDOWS\System32\drivers\HidBatt.sys 02:03:34.0040 0x0a9c HidBatt - ok 02:03:34.0088 0x0a9c [ 42F88B57CAE42FC10059C887B3FCFCEA, 9363AA2B8E839A6935A7C6A36C491938DF78024886DCCE6D29CB18E1D6A6D806 ] HidBth C:\WINDOWS\System32\drivers\hidbth.sys 02:03:34.0222 0x0a9c HidBth - ok 02:03:34.0262 0x0a9c [ C241A8BAFBBFC90176EA0F5240EACC17, 571E20B87818618BE9179986177D55739A240F04D1F740B3C1B7809B9427B767 ] hidi2c C:\WINDOWS\System32\drivers\hidi2c.sys 02:03:34.0302 0x0a9c hidi2c - ok 02:03:34.0355 0x0a9c [ 9BDDEE26255421017E161CCB9D5EDA95, B766FD5E31708F29384F69418FC33C4BCC6E3064AA553D5B1D30EE0B8B1BFB40 ] HidIr C:\WINDOWS\System32\drivers\hidir.sys 02:03:34.0388 0x0a9c HidIr - ok 02:03:34.0429 0x0a9c [ EA85B5093DF7B5C3E80362B053740AE2, 1D4251385402A2ADEE8FA1642F54180304F88337DA74989BDE44025ABB145FE5 ] hidserv C:\WINDOWS\system32\hidserv.dll 02:03:34.0511 0x0a9c hidserv - ok 02:03:34.0557 0x0a9c [ 8DB8EAB9D0C6A5DF0BDCADEA239220B4, EDA23E6909EB83E5E148816DFB16CC29EA01BD6BD2F73AA46B3D820B85FB9C83 ] HidUsb C:\WINDOWS\System32\drivers\hidusb.sys 02:03:34.0598 0x0a9c HidUsb - ok 02:03:34.0648 0x0a9c [ 93C4315F47F8D635C6DB0DF49FCE10EE, 70C52B8927D54ACD23F27948780B522974250FD5CD81AA9801C3F158C402889F ] hkmsvc C:\WINDOWS\system32\kmsvc.dll 02:03:34.0740 0x0a9c hkmsvc - ok 02:03:34.0800 0x0a9c [ AC49522ED106BD4B545D6614D71C2445, 40BD738A301170378ECFC031635EB04E2F812B676376CADDD6607ECABEC9255F ] HomeGroupListener C:\WINDOWS\system32\ListSvc.dll 02:03:34.0930 0x0a9c HomeGroupListener - ok 02:03:35.0022 0x0a9c [ 99932E30CE0283B73BB6E5019E150394, 1F88C2F56A7B8E1F75E6359281F418F9661DA4FB7B7D7B14FA7F718B15D4DCE0 ] HomeGroupProvider C:\WINDOWS\system32\provsvc.dll 02:03:35.0098 0x0a9c HomeGroupProvider - ok 02:03:35.0139 0x0a9c [ A6AACEA4C785789BDA5912AD1FEDA80D, D197012A5DA6AB3F76FF298336DF0CF027C07ECC71267BAEF5912DE12893E096 ] HpSAMD C:\WINDOWS\system32\drivers\HpSAMD.sys 02:03:35.0176 0x0a9c HpSAMD - ok 02:03:35.0365 0x0a9c [ E87A6D3B8FECD5B93BC0CFBB48C27970, 55C49B6F3822450447C082B40A263F3370694DB53AD0018ADEB911E4A9F65A88 ] HTTP C:\WINDOWS\system32\drivers\HTTP.sys 02:03:35.0469 0x0a9c HTTP - ok 02:03:35.0522 0x0a9c [ 90656C0B3864804B090434EFC582404F, BDB60050B729AACB9E009AC7129BEBD6298BBD8A9DB14B817D02E8E13669BD6E ] hwpolicy C:\WINDOWS\system32\drivers\hwpolicy.sys 02:03:35.0562 0x0a9c hwpolicy - ok 02:03:35.0614 0x0a9c [ 6D6F9E3BF0484967E52F7E846BFF1CA1, C982966BDE6A3E6773D9441ADA7A3B08D13511DFC68D04DF303248B942423F38 ] hyperkbd C:\WINDOWS\System32\drivers\hyperkbd.sys 02:03:35.0659 0x0a9c hyperkbd - ok 02:03:35.0691 0x0a9c [ 907C870F8C31F8DDD6F090857B46AB25, 308664A31717383D06185875E76C6612407A9F04E7DB28404F574A5706C6715D ] HyperVideo C:\WINDOWS\system32\DRIVERS\HyperVideo.sys 02:03:35.0736 0x0a9c HyperVideo - ok 02:03:35.0777 0x0a9c [ 49EE0AE9E5B64FFBBD06D55C4984B598, 8866627F9241B24A59C81D8BCC67A4DCA87576F589599BA291D0E323F679EB4D ] i8042prt C:\WINDOWS\System32\drivers\i8042prt.sys 02:03:35.0838 0x0a9c i8042prt - ok 02:03:35.0889 0x0a9c [ 5D90E32E36CE5D4C535D17CE08AEAF05, 976A463343E8C8308AFBE9E64DF56C430D2241DE002430D00318AB065EB72E4A ] iaLPSSi_GPIO C:\WINDOWS\System32\drivers\iaLPSSi_GPIO.sys 02:03:35.0922 0x0a9c iaLPSSi_GPIO - ok 02:03:35.0954 0x0a9c [ DD05E7E80F52ADE9AEB292819920F32C, E71AB6A50B0F90C8F94569CE89F66F915A0A4A00D4AC091B2E5E750D88CFC334 ] iaLPSSi_I2C C:\WINDOWS\System32\drivers\iaLPSSi_I2C.sys 02:03:35.0980 0x0a9c iaLPSSi_I2C - ok 02:03:36.0110 0x0a9c [ 08BFE413B0B4AA8DFA4B5684CE06D3DC, 95DEEBB203E12EE6E191F5247A74C04AEC0E16DE981FADDC4D6C42EE41D8D079 ] iaStorAV C:\WINDOWS\system32\drivers\iaStorAV.sys 02:03:36.0172 0x0a9c iaStorAV - ok 02:03:36.0251 0x0a9c [ A2200C3033FA4EF249FC096A7A7D02A2, 5819F5C2020DE2EEE339B0C08CD4B1E3490EAFBBEA1277CE649DB5A5150986B0 ] iaStorV C:\WINDOWS\system32\drivers\iaStorV.sys 02:03:36.0314 0x0a9c iaStorV - ok 02:03:36.0331 0x0a9c IEEtwCollectorService - ok 02:03:36.0513 0x0a9c [ AF8A43C376F83A4A1E7DA16461EDE114, EBA10519B074888355A4FC11D52FF1E6A52F88F754B7F1F9863A8313638645CB ] IKEEXT C:\WINDOWS\System32\ikeext.dll 02:03:36.0668 0x0a9c IKEEXT - ok 02:03:36.0711 0x0a9c [ 4E448FCFFD00E8D657CD9E48D3E47157, 4A958CF0BF8DAEAE5E008500BA67CE89B21388592811274331EE39CAC1043A00 ] intelide C:\WINDOWS\system32\drivers\intelide.sys 02:03:36.0742 0x0a9c intelide - ok 02:03:36.0779 0x0a9c [ A770340FC02B999EF0DE6C2A6BC8437C, 214567BE706B21BEA7EC13AF6B10FBFF658000511DBBA79BAA28D1D4EFD029A7 ] intelpep C:\WINDOWS\system32\drivers\intelpep.sys 02:03:36.0812 0x0a9c intelpep - ok 02:03:36.0862 0x0a9c [ 47E74A8E53C7C24DCE38311E1451C1D9, 79B06E37A552C8A847404D4C572CDB8CF525354D8AE3BEBC06892B7C3B330761 ] intelppm C:\WINDOWS\System32\drivers\intelppm.sys 02:03:36.0908 0x0a9c intelppm - ok 02:03:36.0938 0x0a9c [ 9DB76D7F9E4E53EFE5DD8C53DE837514, 07BA4EDA9BE9139A689A2C3EFC1D1A4F3D1216625ED145F313398292A2CD5703 ] IpFilterDriver C:\WINDOWS\system32\DRIVERS\ipfltdrv.sys 02:03:37.0039 0x0a9c IpFilterDriver - ok 02:03:37.0220 0x0a9c [ A5800036E4EA06697A34742A24ACFBE1, BA67060526E9213000B4206F86A74F904999AD7018EFCBE4FE9708650DA9D973 ] iphlpsvc C:\WINDOWS\System32\iphlpsvc.dll 02:03:37.0322 0x0a9c iphlpsvc - ok 02:03:37.0382 0x0a9c [ 9C096BF5E10CA8BFA56F32522A89FAF1, 6C1151160799338DA351C7237AB049926C6C15F24F5E154BBF5929B4A96C0B8D ] IPMIDRV C:\WINDOWS\System32\drivers\IPMIDrv.sys 02:03:37.0571 0x0a9c IPMIDRV - ok 02:03:37.0623 0x0a9c [ B7342B3C58E91107F6E946A93D9D4EFD, D5DA3C02C5C5A343785745EF6983CC9B5FBD3FB8D49FE9B450523E50212D1A32 ] IPNAT C:\WINDOWS\system32\drivers\ipnat.sys 02:03:37.0736 0x0a9c IPNAT - ok 02:03:37.0773 0x0a9c [ AE44C526AB5F8A487D941CEB57B10C97, A783A2EAF7A6FF450FB3F189A5930036FA60D125C42171AC44B6FE2E3DBD6F7A ] IRENUM C:\WINDOWS\system32\drivers\irenum.sys 02:03:37.0834 0x0a9c IRENUM - ok 02:03:37.0884 0x0a9c [ 8AFEEA3955AA43616A60F133B1D25F21, E99359A4F1D653790133F145CF7C9F97399FD75C5E135AA7E5F989BB660789AF ] isapnp C:\WINDOWS\system32\drivers\isapnp.sys 02:03:37.0913 0x0a9c isapnp - ok 02:03:37.0973 0x0a9c [ D90AB68D0FAC9F357F663670FDBB511E, A82AAA5DF1B38EFBDCF834535A0C520D1BB2D7A4A906C18CFDD22BCF16BDB97D ] iScsiPrt C:\WINDOWS\System32\drivers\msiscsi.sys 02:03:38.0021 0x0a9c iScsiPrt - ok 02:03:38.0065 0x0a9c [ 5917AFE4A3F695A54B99C1849C8207FE, DD57638966F2F0387DCF9DA4BBAEE3CDD8CC6F1A2D49581A0374D46A565BED4F ] kbdclass C:\WINDOWS\System32\drivers\kbdclass.sys 02:03:38.0097 0x0a9c kbdclass - ok 02:03:38.0124 0x0a9c [ 8CD840A062F6BDF41DDE3ACB96164B72, AEAE867F3557C1CE6B931E19D7144A3BD3CBABD81B1542667680D54FC24DEBE1 ] kbdhid C:\WINDOWS\System32\drivers\kbdhid.sys 02:03:38.0207 0x0a9c kbdhid - ok 02:03:38.0248 0x0a9c [ 813871C7D402A05F2E3A7075F9584A05, FF0C2F87EB083F8CE74C679D80C845CDFBFBBC70BE818F899F3336BBB54A3FFB ] kdnic C:\WINDOWS\system32\DRIVERS\kdnic.sys 02:03:38.0280 0x0a9c kdnic - ok 02:03:38.0318 0x0a9c [ 382100E75B6F4668AEAEF228C6CEFFAD, 9C7229F10F11D18E1FED6395391A46225A84B421034B9AB6F81AF7430FDC556F ] KeyIso C:\WINDOWS\system32\lsass.exe 02:03:38.0350 0x0a9c KeyIso - ok 02:03:38.0400 0x0a9c [ 4E829B18D5BAEC29893792A3C671A847, 64C3B99F53A9D1ACA802B46B09E820AD210B667D5A1CD0ADAF1F12944B15B52E ] KSecDD C:\WINDOWS\system32\Drivers\ksecdd.sys 02:03:38.0437 0x0a9c KSecDD - ok 02:03:38.0532 0x0a9c [ 46711F40D0F9E63F786ED23F9BD5215E, 1FBC5101D843E5B43184C98B3D9AF3015C9409EEA6C7BB01B143FD08D4946FC0 ] KSecPkg C:\WINDOWS\system32\Drivers\ksecpkg.sys 02:03:38.0582 0x0a9c KSecPkg - ok 02:03:38.0621 0x0a9c [ 11AFB527AA370B1DAFD5C36F35F6D45F, 757AD234284467ADB826F7CA0251F58D48866B91995BC867DEA4BAF676947163 ] ksthunk C:\WINDOWS\system32\drivers\ksthunk.sys 02:03:38.0661 0x0a9c ksthunk - ok 02:03:38.0709 0x0a9c [ C1591A66028C71147A3E2EAB0B1CCB7E, 82F3D5DCC1614398A144D9791E4BAA814DBA9112677341FD57D5E9834CEDEB41 ] KtmRm C:\WINDOWS\system32\msdtckrm.dll 02:03:38.0766 0x0a9c KtmRm - ok 02:03:38.0891 0x0a9c [ CA2828DDE4B09FEFFDB7CE68B3D8D00A, B514792FF1EF36C678BB51644A1C420105D5E2CD6DD5A89A3FB252D08277A40C ] LanmanServer C:\WINDOWS\system32\srvsvc.dll 02:03:38.0973 0x0a9c LanmanServer - ok 02:03:39.0049 0x0a9c [ 3DBD9100745F9B8506B8FEC6FE6CCDE3, C3EF2856A1680AFDE133887E48946CF9CAB6755C3BDC07F0326965DCD4096F62 ] LanmanWorkstation C:\WINDOWS\System32\wkssvc.dll 02:03:39.0132 0x0a9c LanmanWorkstation - ok 02:03:39.0235 0x0a9c [ 8B9F3796EC1762CF255BDB324E5529C8, F73D6BEF19BE20AEB18DA82CB63E9D8B50ACBBE4ED9B646EF0C9F598F6B81F94 ] lfsvc C:\WINDOWS\System32\GeofenceMonitorService.dll 02:03:39.0348 0x0a9c lfsvc - ok 02:03:39.0397 0x0a9c [ BE166935083F9C38EDFDC21B9A7A679B, 89C64DBE58E1B974208AAAA5CC757C599B1439C205C3C48BF16BA054A06DBC94 ] LHDmgr C:\WINDOWS\system32\DRIVERS\LhdX64.sys 02:03:39.0417 0x0a9c LHDmgr - ok 02:03:39.0459 0x0a9c [ C09010B3680860131631F53E8FE7BAD8, 35F2A06D5F29478D22ABDCC20DA893EF9D96504C65594A0CEA674D1C21B04FF8 ] lltdio C:\WINDOWS\system32\DRIVERS\lltdio.sys 02:03:39.0517 0x0a9c lltdio - ok 02:03:39.0573 0x0a9c [ DAE98CC96C5EE308BF4EA7B18F226CB8, 7A6CC56BF075010707715AB6608764291E358EDF27C806A025532869004C686B ] lltdsvc C:\WINDOWS\System32\lltdsvc.dll 02:03:39.0637 0x0a9c lltdsvc - ok 02:03:39.0693 0x0a9c [ 1E2662D847B7D9995C65D90D254A7E0F, AFD4063D2071FFCB6B0EAC0715276D986F42326919C86E525DCE12E1109A93E2 ] lmhosts C:\WINDOWS\System32\lmhsvc.dll 02:03:39.0780 0x0a9c lmhosts - ok 02:03:40.0119 0x0a9c [ 649982D990F825800FAA8BDAD98A1C30, 1871CDA2817F89F7A563B76EBE60913843CA09917DFE3EB1CD78F674DF1578B9 ] LSCWinService C:\Program Files\Lenovo\Lenovo Solution Center\App\LSCWinService.exe 02:03:40.0290 0x0a9c LSCWinService - ok 02:03:40.0346 0x0a9c [ C755AE4635457AA2A11F79C0DF857ABC, E03D1ACAC155287291FE1BD0B653953ADC94279A74D0152088D698FAA796460F ] LSI_SAS C:\WINDOWS\system32\drivers\lsi_sas.sys 02:03:40.0388 0x0a9c LSI_SAS - ok 02:03:40.0417 0x0a9c [ ADAC09CBE7A2040B7F68B5E5C9A75141, 7865DA7E91404F3642BC444B97F6B7AA42B9523D5EDD7F6365DA236B8EC3410F ] LSI_SAS2 C:\WINDOWS\system32\drivers\lsi_sas2.sys 02:03:40.0458 0x0a9c LSI_SAS2 - ok 02:03:40.0496 0x0a9c [ 04D1274BB9BBCCF12BD12374002AA191, 4B9618F8D25F2278DE1610A70ACAADB074D171D162C3AF27D464F5DC800A8E60 ] LSI_SAS3 C:\WINDOWS\system32\drivers\lsi_sas3.sys 02:03:40.0537 0x0a9c LSI_SAS3 - ok 02:03:40.0588 0x0a9c [ 327469EEF3833D0C584B7E88A76AEC0C, 3D88B5A2D68F93F01B39C6E3D8D5C7A2A20686EFC756086E66AFFF1BC3019B85 ] LSI_SSS C:\WINDOWS\system32\drivers\lsi_sss.sys 02:03:40.0629 0x0a9c LSI_SSS - ok 02:03:40.0726 0x0a9c [ 9A7A7E45DAED2E8C2816716D8D28236A, C94787988826E546A8DC752BD6BE4EA7423DC3762B2D371DB297A63F865A95FF ] LSM C:\WINDOWS\System32\lsm.dll 02:03:40.0881 0x0a9c LSM - ok 02:03:40.0940 0x0a9c [ DDEE191AB32DFC22C6465002ECDF5EE4, 190C3930A8449118F9FEDF43C482837EF1C255E6D67F9651156E66A1E2BC6553 ] luafv C:\WINDOWS\system32\drivers\luafv.sys 02:03:41.0025 0x0a9c luafv - ok 02:03:41.0103 0x0a9c [ 78BFF5425E044086E74E78650A359FBB, 294738C10F3ED933D4EC40EA0659372FCF19A3C6D45D356917438CA495F2CB45 ] MBAMProtector C:\WINDOWS\system32\drivers\mbam.sys 02:03:41.0128 0x0a9c MBAMProtector - ok 02:03:41.0329 0x0a9c [ 9611577752E293259C7DCE19E9026362, 8CB5DFD63FA15603BB6FA6B501E09ED7F4DE0E8F68CB28B78CECAC3711BEFD24 ] MBAMScheduler C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamscheduler.exe 02:03:41.0444 0x0a9c MBAMScheduler - ok 02:03:41.0562 0x0a9c [ F1A89A34388B5626F1548D393B23ECB1, EA00AC76C4C8C9340753B58A3313C9177A9B98F9F1BDE08F184CD0F53D0C186F ] MBAMService C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe 02:03:41.0656 0x0a9c MBAMService - ok 02:03:41.0705 0x0a9c [ 898415AC0B5F1D2A9A48ABCB68A6DC4B, E1FD9AE5E22E3E5A18288E66A6184E92A4B63A1274DCE147A7728BB09C6A225E ] MBAMWebAccessControl C:\WINDOWS\system32\drivers\mwac.sys 02:03:41.0730 0x0a9c MBAMWebAccessControl - ok 02:03:41.0781 0x0a9c [ EB5C03A070F30D64A6DF80E53B22F53F, 12051B6AEBDEE1E28F24364F25A52BA3A6E282ECF86D6290E34BD38E6D4E066D ] megasas C:\WINDOWS\system32\drivers\megasas.sys 02:03:41.0822 0x0a9c megasas - ok 02:03:41.0880 0x0a9c [ F6F13533196DE7A582D422B0241E4363, B3CD9B08937AFFF12141B38634AF3A56F5AC5FF3EF03941802B9841DEC559469 ] megasr C:\WINDOWS\system32\drivers\megasr.sys 02:03:41.0953 0x0a9c megasr - ok 02:03:42.0013 0x0a9c [ 4C5179DB61B9E14BEC15CDC4B152B2E9, 9048BEC7AD6A3F4B640E99B1F0365AC9A46740B188758FBB2C160EF30AD6E64B ] MMCSS C:\WINDOWS\system32\mmcss.dll 02:03:42.0093 0x0a9c MMCSS - ok 02:03:42.0138 0x0a9c [ 8B38C44F69259987C95135C9627E2378, E698B82D4EFFF56D66C7FC9866369BA5736FDBDBE2028CC421C51E70DEA74727 ] Modem C:\WINDOWS\system32\drivers\modem.sys 02:03:42.0196 0x0a9c Modem - ok 02:03:42.0224 0x0a9c [ 601589000CC90F0DF8DA2CC254A3CCC9, D1238A386C41B6C368D9A44B7C112C943995B5403E2A5B4B7346B266DDB0C5A0 ] monitor C:\WINDOWS\System32\drivers\monitor.sys 02:03:42.0262 0x0a9c monitor - ok 02:03:42.0292 0x0a9c [ 08374E4E5B8914DE6067CBA99F61E930, CBB1390D6523FC968BEDF78FD13699488621ACB2CD1DF55D1606316090548661 ] mouclass C:\WINDOWS\System32\drivers\mouclass.sys 02:03:42.0324 0x0a9c mouclass - ok 02:03:42.0346 0x0a9c [ 5FCBAB60598AE119E02B4C27DE6B99EA, 36F30094F700DE41C293047ACB49ED1961DD927BEDAD8DFDAB7023D4D24CB0DE ] mouhid C:\WINDOWS\System32\drivers\mouhid.sys 02:03:42.0507 0x0a9c mouhid - ok 02:03:42.0548 0x0a9c [ 9A788037D768809DFD677F4BA08A224A, E0686B3318F924E440ADA439D6671D44D3FF97C13D45C2E0A3A7B9E23DA38350 ] mountmgr C:\WINDOWS\system32\drivers\mountmgr.sys 02:03:42.0590 0x0a9c mountmgr - ok 02:03:42.0698 0x0a9c [ 81E8AF6407EC3F41908FE37F054353EA, 756C7656ED68AEAE4225E952ED1CED0717264D3378DB8DF0B2D70B6EBC67C62F ] MozillaMaintenance C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe 02:03:42.0729 0x0a9c MozillaMaintenance - ok 02:03:42.0782 0x0a9c [ 6FC047578785B0435F4E2660946D1ADC, 8AEA5659F01FC2F75160922C69622502DABA39F33CB90D5178DD679A1CDE617D ] mpsdrv C:\WINDOWS\system32\drivers\mpsdrv.sys 02:03:42.0857 0x0a9c mpsdrv - ok 02:03:42.0943 0x0a9c [ C18AA14126ADC66478E8E962B2DFAA98, A6F8CE9D88D590DC083253004392572C3BD02C33433CD6C0D9117D2AA7171EEC ] MpsSvc C:\WINDOWS\system32\mpssvc.dll 02:03:43.0047 0x0a9c MpsSvc - ok 02:03:43.0109 0x0a9c [ DB32958F0E704EFBF7F15161A569E39F, 8A26448B954F8A16EE9BA72EF47F6C549A75B30BD13FEB5A29EB099A74D8F678 ] MRxDAV C:\WINDOWS\system32\drivers\mrxdav.sys 02:03:43.0189 0x0a9c MRxDAV - ok 02:03:43.0265 0x0a9c [ 6FBDF2B1B025A8E6E069234362FFFFB7, CF1AFC088F59AD61037F4C4650F3BAEE7FE37C40B3A27B903475F005410F8155 ] mrxsmb C:\WINDOWS\system32\DRIVERS\mrxsmb.sys 02:03:43.0400 0x0a9c mrxsmb - ok 02:03:43.0522 0x0a9c [ BCBD64220AD85C26823453FF1DC3EFBD, 0245E3659E9135B9276F3CCFBEA0CEFFC4F4C0826F6D19B6329057620235F087 ] mrxsmb10 C:\WINDOWS\system32\DRIVERS\mrxsmb10.sys 02:03:43.0680 0x0a9c mrxsmb10 - ok 02:03:43.0719 0x0a9c [ 57C2473D501331211D6885FD59F3E44B, 10253703DB32A32291C61B6962A79E374B5DF7DD14A6B6AFD08A99EF26206619 ] mrxsmb20 C:\WINDOWS\system32\DRIVERS\mrxsmb20.sys 02:03:43.0804 0x0a9c mrxsmb20 - ok 02:03:43.0858 0x0a9c [ F3C060444777A59FC63D920719E43CCD, 8766A2746E3DFB0749E902F458141269335CA6F0CEDCA3D5F8C204637C19E783 ] MsBridge C:\WINDOWS\system32\DRIVERS\bridge.sys 02:03:43.0915 0x0a9c MsBridge - ok 02:03:43.0980 0x0a9c [ 915747E010A9414B069173284A9B93F4, 8A335C28FE1EF96DD71485877F2E86155D24B5614ACE05468F4B07E2ACD56331 ] MSDTC C:\WINDOWS\System32\msdtc.exe 02:03:44.0021 0x0a9c MSDTC - ok 02:03:44.0072 0x0a9c [ D13329FBF8345B28AB30F44CC247DC08, 9C7EC2D4D65E6510EB5B9E61BB0D14F725D7E8FE98D65161C3971E43EF1AB6EB ] Msfs C:\WINDOWS\system32\drivers\Msfs.sys 02:03:44.0117 0x0a9c Msfs - ok 02:03:44.0162 0x0a9c [ C6B474E46F9E543B875981ED3FFE6ADD, E16687E52FB649C23D92159A1F036CB662202C1E58D961EECDAA528AA4FA669A ] msgpiowin32 C:\WINDOWS\System32\drivers\msgpiowin32.sys 02:03:44.0197 0x0a9c msgpiowin32 - ok 02:03:44.0234 0x0a9c [ 65C92EB9D08DB5C69F28C7FFD4E84E31, D709BA4723225321F665B1157A33A4AE230420752308EF535DA9A41CAC164628 ] mshidkmdf C:\WINDOWS\System32\drivers\mshidkmdf.sys 02:03:44.0284 0x0a9c mshidkmdf - ok 02:03:44.0307 0x0a9c [ 52299F086AC2DAFD100DD5DC4A8614BA, B36BE0FC96798E5EB8C193C318970E3906961E3ABC3BFAAD73138C76D9A95B0B ] mshidumdf C:\WINDOWS\System32\drivers\mshidumdf.sys 02:03:44.0374 0x0a9c mshidumdf - ok 02:03:44.0411 0x0a9c [ 36D92AF3343C3A3E57FEF11C449AEA4C, ECC85AA1E530DF55B4A4545798219F87F0FCA66DDD2E37BCEF0850D3C9129DD2 ] msisadrv C:\WINDOWS\system32\drivers\msisadrv.sys 02:03:44.0453 0x0a9c msisadrv - ok 02:03:44.0497 0x0a9c [ 4EAEEBAC8CFF4E0D717DFA920BC58A90, A65CB1BB3392B6A04B978348CAC18A414560A6B04A727F22DFC0ADB20DD3AF6B ] MSiSCSI C:\WINDOWS\system32\iscsiexe.dll 02:03:44.0559 0x0a9c MSiSCSI - ok 02:03:44.0572 0x0a9c msiserver - ok 02:03:44.0601 0x0a9c [ A9BBBD2BAE6142253B9195E949AC2E8D, 599D2952D4E0B0B3E02D91E38A30F4900B1ADA330716B887B156A1CB9A3E6EE9 ] MSKSSRV C:\WINDOWS\system32\drivers\MSKSSRV.sys 02:03:44.0653 0x0a9c MSKSSRV - ok 02:03:44.0724 0x0a9c [ 51B3AC0560848CD6D65AC2033E293113, 73A27E88774C6929328E6C9FC9C389F4DF76D4D4D5CBFC4F51651CC308829628 ] MsLldp C:\WINDOWS\system32\DRIVERS\mslldp.sys 02:03:44.0820 0x0a9c MsLldp - ok 02:03:44.0854 0x0a9c [ 7B2128EB875DCBC006E6A913211006D6, 97BBD7FF770741FBFC0F181A609AD0954EA926DA203B742E8F08C89AD8FE476E ] MSPCLOCK C:\WINDOWS\system32\drivers\MSPCLOCK.sys 02:03:44.0912 0x0a9c MSPCLOCK - ok 02:03:44.0950 0x0a9c [ 1E88171579B218115C7A772F8DE04BD8, B9EAA835D0BF8F9C4DF8403D95EF1400E8AE38F28F9DBA87657DE2129FEF02D2 ] MSPQM C:\WINDOWS\system32\drivers\MSPQM.sys 02:03:44.0996 0x0a9c MSPQM - ok 02:03:45.0063 0x0a9c [ BBE2A455053E63BECBF42C2F9B21FAE0, 7C5DF563499DF59DF9895A1581E47ADF5FD54C94ECEF6C886CDB60E5E95A6DAE ] MsRPC C:\WINDOWS\system32\drivers\MsRPC.sys 02:03:45.0121 0x0a9c MsRPC - ok 02:03:45.0155 0x0a9c [ 8D6B7D515C5CBCDB75B928A0B73C3C5E, 1EB4DC3DD21D2627C78EC3F9931D9E5D033169087E43B5D7C17BF1FF2A0028CD ] mssmbios C:\WINDOWS\System32\drivers\mssmbios.sys 02:03:45.0185 0x0a9c mssmbios - ok 02:03:45.0205 0x0a9c [ 115019AE01E0EB9C048530D2928AB4A2, 6E2275E85EACF2D0FC784792E0D72A165589D33CBAB3BCFA8E271CA09566C925 ] MSTEE C:\WINDOWS\system32\drivers\MSTEE.sys 02:03:45.0251 0x0a9c MSTEE - ok 02:03:45.0295 0x0a9c [ 96D604A35070360F0DD4A7A8AF410B5E, F94DD1A3566C7C8D0A76D6E1E2530552A9B7F99C5DA0DE11829325EAB9F8B7ED ] MTConfig C:\WINDOWS\System32\drivers\MTConfig.sys 02:03:45.0328 0x0a9c MTConfig - ok 02:03:45.0361 0x0a9c [ 619CA29326B82372621DB2C0964D8365, 4091F08E266DB45A6E33A4A8B1CE9FA78BB294B3111526AA9E3868620F30AFDF ] Mup C:\WINDOWS\system32\Drivers\mup.sys 02:03:45.0407 0x0a9c Mup - ok 02:03:45.0437 0x0a9c [ B8C35C94DCB2DFEAF03BB42131F2F77F, F0FCF367CA8F722D6ABCF7F363CD406D890D71452E91C3FC6677B47AD74D6324 ] mvumis C:\WINDOWS\system32\drivers\mvumis.sys 02:03:45.0475 0x0a9c mvumis - ok 02:03:45.0583 0x0a9c [ 8DF30698BDD9492A9D45A4B94FB4A82A, 26B1B2D7E785E29B8BCB74C467C66AE4EBDD481ACFF36334F3BDF4506B778244 ] napagent C:\WINDOWS\system32\qagentRT.dll 02:03:45.0658 0x0a9c napagent - ok 02:03:45.0771 0x0a9c [ 008F7CED69FD5B30CBDE1E03C6F36A27, D4ADA7834C470B17A3CD976012DC5A511B32545B9F91D23D09A85722E0B75320 ] NativeWifiP C:\WINDOWS\system32\DRIVERS\nwifi.sys 02:03:45.0894 0x0a9c NativeWifiP - ok 02:03:45.0978 0x0a9c [ BFCE1225D10619029E68946929CEB64C, 499F560331FFBA82E3D673B47F027FDAB7BEE4F2CB5B811D69E0218839F6E6A5 ] NcaSvc C:\WINDOWS\System32\ncasvc.dll 02:03:46.0077 0x0a9c NcaSvc - ok 02:03:46.0142 0x0a9c [ 267C97373110B7AFD3B46DF60B6CBB85, CEBB99F71D47634BB9C04DF2836DF6B47F15B3073FEFC237F85526DF01E4E38B ] NcbService C:\WINDOWS\System32\ncbservice.dll 02:03:46.0239 0x0a9c NcbService - ok 02:03:46.0296 0x0a9c [ 0813B71EAF097208DC76CE0605B48AF0, A93A2E6A8FB77B58AC4D580E6F8BF307A25BADC9493994F9BE235EBFB0E1DB22 ] NcdAutoSetup C:\WINDOWS\System32\NcdAutoSetup.dll 02:03:46.0390 0x0a9c NcdAutoSetup - ok 02:03:46.0590 0x0a9c [ 97DC5967F65503213FD1F1B3E4A6F983, 3EC515856C7CE9B30032F963DC04190F66EE62402A819781DC45B7D088C84229 ] NDIS C:\WINDOWS\system32\drivers\ndis.sys 02:03:46.0724 0x0a9c NDIS - ok 02:03:46.0802 0x0a9c [ 8CECC8DA55F3274181FD1EA28AD76664, 188112424CEF97FB926A0FB915260B803555A775DD2E1846725A9C8616300F42 ] NdisCap C:\WINDOWS\system32\DRIVERS\ndiscap.sys 02:03:46.0856 0x0a9c NdisCap - ok 02:03:46.0901 0x0a9c [ 269882812E9A68FFF1AFE1283D428322, 50B99EBC42DA9B46A8C2C28C9BADCF58AE3079535CDD1227D0F5C86291C715FF ] NdisImPlatform C:\WINDOWS\system32\DRIVERS\NdisImPlatform.sys 02:03:46.0978 0x0a9c NdisImPlatform - ok 02:03:47.0019 0x0a9c [ 82821F4EEC776B4CF11695A38F3ABA46, 23184F9D31E662855DC4D23EFE7C2FE00E5487D3762B6024704A5D8C87762E1C ] NdisTapi C:\WINDOWS\system32\DRIVERS\ndistapi.sys 02:03:47.0087 0x0a9c NdisTapi - ok 02:03:47.0129 0x0a9c [ B832B35055BA2B7B4181861FF94D8E59, 2E60E5D503E88D27E35ECFEE265D51328E93A9C7B9B931F86D9CBC947636BB00 ] Ndisuio C:\WINDOWS\system32\DRIVERS\ndisuio.sys 02:03:47.0222 0x0a9c Ndisuio - ok 02:03:47.0251 0x0a9c [ 1F58E48EF75F34C35D8E93A0DC535CFE, D65619A6C4B1747F8B05DA08A44EF0E46B5CC384880E04E4755A2BA6CDB3C4EA ] NdisVirtualBus C:\WINDOWS\System32\drivers\NdisVirtualBus.sys 02:03:47.0313 0x0a9c NdisVirtualBus - ok 02:03:47.0354 0x0a9c [ DEC29080202D4F9F17F55E18BCFCC41A, F7E543741B1F4F637A99C40543D6AEC6EBF893F74359BBA769D1F882E0AFB571 ] NdisWan C:\WINDOWS\system32\DRIVERS\ndiswan.sys 02:03:47.0423 0x0a9c NdisWan - ok 02:03:47.0447 0x0a9c [ DEC29080202D4F9F17F55E18BCFCC41A, F7E543741B1F4F637A99C40543D6AEC6EBF893F74359BBA769D1F882E0AFB571 ] NdisWanLegacy C:\WINDOWS\system32\DRIVERS\ndiswan.sys 02:03:47.0498 0x0a9c NdisWanLegacy - ok 02:03:47.0568 0x0a9c [ DDD7F92A83F74D1476B71FBA9530A8DC, D3F94FC9F48854E09B0B77CE5E1C1DB948D54EAC63C5583437051BB893B5A386 ] NDProxy C:\WINDOWS\system32\drivers\NDProxy.sys 02:03:47.0607 0x0a9c NDProxy - ok 02:03:47.0658 0x0a9c [ 3083926D1CC5B56EA0786527B557DD1B, 3C3F0CA0D43398576DBE8F677B353ADDA7E8F56829874958CE668E31261C1590 ] Ndu C:\WINDOWS\system32\drivers\Ndu.sys 02:03:47.0754 0x0a9c Ndu - ok 02:03:47.0792 0x0a9c [ 42FF4975D032CAE558AE4BB8448F6E5A, 0B8FACF3382443DED79A8004A6AA14C32471A6A1C6BAA543AA9F3FEC52620A6D ] NetBIOS C:\WINDOWS\system32\DRIVERS\netbios.sys 02:03:47.0859 0x0a9c NetBIOS - ok 02:03:47.0934 0x0a9c [ 0217532E19A748F0E5D569307363D5FD, C40C2E7AFA276057E7327A7BB173122689D6CEC9AE443C3850C3F94AF03DFBF5 ] NetBT C:\WINDOWS\system32\DRIVERS\netbt.sys 02:03:48.0029 0x0a9c NetBT - ok 02:03:48.0063 0x0a9c [ 382100E75B6F4668AEAEF228C6CEFFAD, 9C7229F10F11D18E1FED6395391A46225A84B421034B9AB6F81AF7430FDC556F ] Netlogon C:\WINDOWS\system32\lsass.exe 02:03:48.0096 0x0a9c Netlogon - ok 02:03:48.0179 0x0a9c [ 8F074B62E66B6117D9598C62A12069C5, 5FDB19045D3E2F6D0F0C5158AC2ECB0D5404CD2AF7A319755D7E3753CA3B7CF3 ] Netman C:\WINDOWS\System32\netman.dll 02:03:48.0249 0x0a9c Netman - ok 02:03:48.0384 0x0a9c [ 4A04B1CD5BFB4A978C5F60E86D6C3E45, A946922C1C38ADD3CF9D3B09DDCC301AE4DAC960A081B2F42B32BE1E7095B3FD ] netprofm C:\WINDOWS\System32\netprofmsvc.dll 02:03:48.0466 0x0a9c netprofm - ok 02:03:48.0604 0x0a9c [ 1092B3190E69E0C5ECBCE90F171DE047, C16106EEFC324EE80E5F659CB71A5DD69FA800D36D829F5B0E6AD3393BD1BAF7 ] NetTcpPortSharing C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe 02:03:48.0666 0x0a9c NetTcpPortSharing - ok 02:03:48.0738 0x0a9c [ D4DCE03870314D3354F3501F9DDD4123, 5BFE8299B3F72B8C39A4965365CBF5BA151024451F02DD872FAD1CC35CF94CEA ] netvsc C:\WINDOWS\System32\drivers\netvsc63.sys 02:03:48.0853 0x0a9c netvsc - ok 02:03:48.0973 0x0a9c [ E94EB2A95D7D016E119C4D6868788831, 3E4A925D23262FBA0A6432DD635FBE94B0CEF76BD9BB323254B66977497FEE2A ] NlaSvc C:\WINDOWS\System32\nlasvc.dll 02:03:49.0096 0x0a9c NlaSvc - ok 02:03:49.0142 0x0a9c [ 8F44A2F57C9F1A19AC9C6288C10FB351, 310274DDBAC0FE4BE54ECD3B90C97D82A0F9F5CFCA7A35711A36164DE4B94074 ] Npfs C:\WINDOWS\system32\drivers\Npfs.sys 02:03:49.0212 0x0a9c Npfs - ok 02:03:49.0258 0x0a9c [ CBDB4F0871C88DF930FC0E8588CA67FC, 7E4AA3EA81A9D532F236FD7896744F07ED07CA9B37A9F18A9778BCCCC67490F2 ] npsvctrig C:\WINDOWS\System32\drivers\npsvctrig.sys 02:03:49.0342 0x0a9c npsvctrig - ok 02:03:49.0405 0x0a9c [ 0F12A72A753CFD7FB0631EE8D08FE983, 860A96471F6CD90DDA9AB3A48E95CEAD826C87D2FA98A00EF91B61C44A4C8B82 ] nsi C:\WINDOWS\system32\nsisvc.dll 02:03:49.0510 0x0a9c nsi - ok 02:03:49.0571 0x0a9c [ 0E046FF5823B95326D10CF1B4AF23541, 39D22715003746527AB4BFEDED8C34B695DAF589091AE7F3A2A2C4B8A35675A9 ] nsiproxy C:\WINDOWS\system32\drivers\nsiproxy.sys 02:03:49.0626 0x0a9c nsiproxy - ok 02:03:49.0935 0x0a9c [ 7F68063A5A0461E02BC860CE0E6BFDDC, 47E9F75D27B97278B74034B7D3951A26B1644911ED321455E08D935731C858DE ] Ntfs C:\WINDOWS\system32\drivers\Ntfs.sys 02:03:50.0162 0x0a9c Ntfs - ok 02:03:50.0213 0x0a9c [ EF1B290FC9F0E47CC0B537292BEE5904, DBC07BBC54EBC2D2E576B23A4CE116B3DA988577AD0D96CB7289A6748A60F9EA ] Null C:\WINDOWS\system32\drivers\Null.sys 02:03:50.0266 0x0a9c Null - ok 02:03:50.0296 0x0a9c [ BC6B5942AFF25EBAF62DE43C3807EDF8, CB0FA194084B8C309039D571B5760FDA800E9531B8660C499B4F9977BA5C36D5 ] nvraid C:\WINDOWS\system32\drivers\nvraid.sys 02:03:50.0335 0x0a9c nvraid - ok 02:03:50.0396 0x0a9c [ 1F43ABFFAC3D6CA356851D517392966E, 6FD7621F67BA94B0E1D8F43BEC2951DBCDEEA1E848BB265AC169E27C01DA68F2 ] nvstor C:\WINDOWS\system32\drivers\nvstor.sys 02:03:50.0436 0x0a9c nvstor - ok 02:03:50.0485 0x0a9c [ 6934A936A7369DFE37B7DBA93F5E5E49, 0900FEEB0CE8D09F0FC60630B5B986034A8BCD3882ED66E47170810C32492892 ] nv_agp C:\WINDOWS\system32\drivers\nv_agp.sys 02:03:50.0525 0x0a9c nv_agp - ok 02:03:50.0692 0x0a9c [ E7D8C7748AAED52F1700D048A0087158, 3DD1652460C3AC9809A01DFC39326614C738CBF8196AC1DB73D88231EB860C90 ] OfficeSvc C:\Program Files\Microsoft Office 15\ClientX64\integratedoffice.exe 02:03:50.0829 0x0a9c OfficeSvc - ok 02:03:50.0976 0x0a9c [ 26657F3B4F39A0E64AF859278B599C4E, 3DD65E0BCEF3045DBA29FB8171CA3FCC9781AED3A1C7A160CF26388CE80A3683 ] p2pimsvc C:\WINDOWS\system32\pnrpsvc.dll 02:03:51.0107 0x0a9c p2pimsvc - ok 02:03:51.0187 0x0a9c [ FD8F61F0D1F64BBB3D835F39A3F979C9, E5C5F86576488EA7F605E26C06EE5AFB36506A446F60C894D55E0A148BF7F02D ] p2psvc C:\WINDOWS\system32\p2psvc.dll 02:03:51.0284 0x0a9c p2psvc - ok 02:03:51.0350 0x0a9c [ 764B1121867B2D9B31C491668AC72B2B, 32C04B6FCE1DDD09697B81473A23BDCED8BEEFBCD0D2D58DDC9A11A33C756967 ] Parport C:\WINDOWS\System32\drivers\parport.sys 02:03:51.0401 0x0a9c Parport - ok 02:03:51.0446 0x0a9c [ BAFF6122CFC9F95CA175AD8C348179A4, 079A912D951DF6A57BC1BDB0D182977EE9592751EC9DDCDA2932BDEDB333850C ] partmgr C:\WINDOWS\system32\drivers\partmgr.sys 02:03:51.0479 0x0a9c partmgr - ok 02:03:51.0588 0x0a9c [ ABE95ABE27A8BD9701782BBCD82C9925, AE3BA1E9ECDE692374D8DAC95A8DAA289DD2470E3D8D58EFAD9F83A37F3AC8E5 ] PcaSvc C:\WINDOWS\System32\pcasvc.dll 02:03:51.0665 0x0a9c PcaSvc - ok 02:03:51.0760 0x0a9c [ 91ED124E261EA8FAA1C0FFDF2A71B0C4, 20E41A38067395D03184938983A9BE459717A1941352972DBC28D83D542319EC ] pci C:\WINDOWS\system32\drivers\pci.sys 02:03:51.0808 0x0a9c pci - ok 02:03:51.0833 0x0a9c [ 346E38FCC6859A727DD28AFAD1F0AFF4, FF3DA26F79B3BC3A5B8A8AA0B9139B9EF70297F4EA1203B1E68FB5A212C3AA58 ] pciide C:\WINDOWS\system32\drivers\pciide.sys 02:03:51.0864 0x0a9c pciide - ok 02:03:51.0941 0x0a9c [ 4D3BDCC1C7B40C9D7B6AD990E6DEC397, 27A7AF2127B699F4579CB77936F38DC102211E26E5E2947DB808756FE06FC98E ] pcmcia C:\WINDOWS\system32\drivers\pcmcia.sys 02:03:51.0980 0x0a9c pcmcia - ok 02:03:52.0005 0x0a9c [ BF28771D1436C88BE1D297D3098B0F7D, 5F7630916A76A8CF31289E9C577F522B999C74C39E541CD40E62BD53004BEF74 ] pcw C:\WINDOWS\system32\drivers\pcw.sys 02:03:52.0036 0x0a9c pcw - ok 02:03:52.0073 0x0a9c [ 24A8DFC07E4BAF29AEA26E383D4CC886, 1B903FE52CD816662D37A8113930B4B7019B6996D49F1982D8F42933A3525A67 ] pdc C:\WINDOWS\system32\drivers\pdc.sys 02:03:52.0107 0x0a9c pdc - ok 02:03:52.0186 0x0a9c [ 0ECEE590F2E2EF969FB74A6FC583A1E6, 1C611D9225C863CF32125F684B324C58BDE1942F4F283F5674133200AC505D44 ] PEAUTH C:\WINDOWS\system32\drivers\peauth.sys 02:03:52.0317 0x0a9c PEAUTH - ok 02:03:52.0539 0x0a9c [ 8E3C640FFF5A963F570233AE99C0FFF3, 3DE978B005BF2E88BA858CE37D9E27BD3584642B8412E22C300A1E739743838A ] PerfHost C:\WINDOWS\SysWow64\perfhost.exe 02:03:52.0653 0x0a9c PerfHost - ok 02:03:52.0871 0x0a9c [ 70B39E7241F750A248798CE82C44596D, 54A72199EB277EE586611DCBC21654786FD2196F91D5884C4F531297893CC3EC ] pla C:\WINDOWS\system32\pla.dll 02:03:53.0028 0x0a9c pla - ok 02:03:53.0093 0x0a9c [ 2C02AFF8383D893F8DBEB07A84F6E77C, 7CC34BAC67E2988E3D16DD6EB6F6785CD2460E3EF7FBD0BD5F86E49793BD473E ] PlugPlay C:\WINDOWS\system32\umpnpmgr.dll 02:03:53.0134 0x0a9c PlugPlay - ok 02:03:53.0176 0x0a9c [ 4570F8A37D221660F3A09D6F4DD4BA94, 0EA190CFFA53DF9CCA2D53A4EF1BCB837BA3F2489A3AC5BD11F6D6ED811D118E ] PNRPAutoReg C:\WINDOWS\system32\pnrpauto.dll 02:03:53.0229 0x0a9c PNRPAutoReg - ok 02:03:53.0321 0x0a9c [ 26657F3B4F39A0E64AF859278B599C4E, 3DD65E0BCEF3045DBA29FB8171CA3FCC9781AED3A1C7A160CF26388CE80A3683 ] PNRPsvc C:\WINDOWS\system32\pnrpsvc.dll 02:03:53.0383 0x0a9c PNRPsvc - ok 02:03:53.0472 0x0a9c [ BDD52AB4AEBB8B1904568DBD0CCB70CB, C3D1DBA349C79B43DCDD9EF5255C5EE973EFB844235B808B5EF9B63A51FF00AA ] PolicyAgent C:\WINDOWS\System32\ipsecsvc.dll 02:03:53.0542 0x0a9c PolicyAgent - ok 02:03:53.0598 0x0a9c [ C8DD82C3035E60D671B8CC5DF128D3A9, 6AABF632CBEDA9A7B553BC9134FF100CB6FDC88000D499D2883408FCEDD97576 ] Power C:\WINDOWS\system32\umpo.dll 02:03:53.0702 0x0a9c Power - ok 02:03:54.0979 0x0a9c [ E3514CE7CB4AF80ECCA383F065BC77C0, 1EA06D358A07EB9DFB703CEFC4EB834B947B899E0ACFE1C494E2DAED63F1D4B5 ] PrintNotify C:\WINDOWS\system32\spool\drivers\x64\3\PrintConfig.dll 02:03:55.0504 0x0a9c PrintNotify - ok 02:03:55.0586 0x0a9c [ ECD373F9571C745894367CC2635EA44F, E08B2A1017DAE1BF10B986DAFAD14BDE20D79703E0EF3A8C700A3753908C1392 ] Processor C:\WINDOWS\System32\drivers\processr.sys 02:03:55.0648 0x0a9c Processor - ok 02:03:55.0711 0x0a9c [ 6E409D818C6B342544EAE741B1422B85, B4ADFB7809FC42C432C984C3AC13FAFD1B7AD53BCC7FB16E86371DE4C829DD1A ] ProfSvc C:\WINDOWS\system32\profsvc.dll 02:03:55.0815 0x0a9c ProfSvc - ok 02:03:55.0899 0x0a9c [ FC0141B4A5AD6D637D883C1A89FC45C5, DCE8942C02EEDAE7A57707CA60CAC3A8CD6BA68E6571E405CA882D4DD6D69E43 ] Psched C:\WINDOWS\system32\DRIVERS\pacer.sys 02:03:55.0969 0x0a9c Psched - ok 02:03:56.0022 0x0a9c [ DAA9DEE0A5D5F238C4EE54C2C7FB67C5, 7EC8C603BD92699AC35BDCD294F13BEE90D5C2C195FD93A3F16928BFCF53CA93 ] QWAVE C:\WINDOWS\system32\qwave.dll 02:03:56.0122 0x0a9c QWAVE - ok 02:03:56.0173 0x0a9c [ 83868EB2924E6BC21A54337C65D614D1, 8D1BE01EBD190231153B867C32120DC8FBFBD32050448A778134D435D76A0B07 ] QWAVEdrv C:\WINDOWS\system32\drivers\qwavedrv.sys 02:03:56.0242 0x0a9c QWAVEdrv - ok 02:03:56.0285 0x0a9c [ B337B1F1E82A83E20A1743E008E25C0F, A2E8AF041B4CAB78AEE28A2147A189FF0F9D2FCEFB167D60FBBA0A787A5A5BE7 ] RasAcd C:\WINDOWS\system32\DRIVERS\rasacd.sys 02:03:56.0357 0x0a9c RasAcd - ok 02:03:56.0402 0x0a9c [ 044638489B4A5FE5334F46C5314A0826, E06CC2A9EF369794DAD69FBB5AFD1676D4283DDAB2AD5E3EFE454C473F62F955 ] RasAuto C:\WINDOWS\System32\rasauto.dll 02:03:56.0474 0x0a9c RasAuto - ok 02:03:56.0622 0x0a9c [ F83B38FCD4F69157B3D158433FA149CC, AB103BD3E2B3B134CB355C556DF70BCF0CF4DB11EFF7DB4A9876D5AA43D81293 ] RasMan C:\WINDOWS\System32\rasmans.dll 02:03:56.0724 0x0a9c RasMan - ok 02:03:56.0776 0x0a9c [ 5247F308C4103CDC4FE12AE1D235800A, E567CD33CA1897D53795E071B7AFBAF98B2C8F725F8BED0BA90F5EF611520E48 ] RasPppoe C:\WINDOWS\system32\DRIVERS\raspppoe.sys 02:03:56.0847 0x0a9c RasPppoe - ok 02:03:56.0973 0x0a9c [ A1A5E79C0D1352AFDC08328A623DA051, 01546DDE6F1FF159A7EB7F2BF104910445D3D863F1F37DEA695579BA60D84280 ] rdbss C:\WINDOWS\system32\DRIVERS\rdbss.sys 02:03:57.0150 0x0a9c rdbss - ok 02:03:57.0216 0x0a9c [ 6B21EBF892CD8CACB71669B35AB5DE32, 0AD8E14FEF16FB2559F5FC8AFBC9D49E4E24F43CF65F480DBF9FAB593269B419 ] rdpbus C:\WINDOWS\System32\drivers\rdpbus.sys 02:03:57.0258 0x0a9c rdpbus - ok 02:03:57.0295 0x0a9c [ 680C1DAE268B6FB67FA21B389A8B79EF, 856911F77BDD8830C3D683EBE8AF399FB3A54C7D8D0B34EA37D903377F0A39BD ] RDPDR C:\WINDOWS\system32\drivers\rdpdr.sys 02:03:57.0390 0x0a9c RDPDR - ok 02:03:57.0439 0x0a9c [ BC8A79C625568DDB7DCA49D0C2741A64, AB0A7ED9EC2282EC0356D27EA4F70515943E41C2112428B787636B8BEC278933 ] RdpVideoMiniport C:\WINDOWS\system32\drivers\rdpvideominiport.sys 02:03:57.0480 0x0a9c RdpVideoMiniport - ok 02:03:57.0567 0x0a9c [ A26AEC49F318FEE141DDDB2C5F99B3E6, 246AD79FF27E79DEDCB0AAA7C22A8EA6349DEDAC863413A1E378E68FD94C9C4F ] rdyboost C:\WINDOWS\system32\drivers\rdyboost.sys 02:03:57.0621 0x0a9c rdyboost - ok 02:03:57.0859 0x0a9c [ 615DFD97DEA56CE1C3A52185A3038FF8, 707BF5F9FAE478A12656D15013F507CC1335E7B72BD21CA99BB813CB95E37BC0 ] ReFS C:\WINDOWS\system32\drivers\ReFS.sys 02:03:57.0967 0x0a9c ReFS - ok 02:03:58.0048 0x0a9c [ 0CF7CB56BF2D5E9DBCEE0185CB626FAD, 2BD2E2FB1D2EADD1F70EF55E8523C353F95D4FEB1BAD5017FA4D94F790F27825 ] RemoteAccess C:\WINDOWS\System32\mprdim.dll 02:03:58.0113 0x0a9c RemoteAccess - ok 02:03:58.0206 0x0a9c [ AC8785B53F8436058C90450DA1840AE7, CC1FFC2713910211F8A6AD532DBB9253ACD188CBD784F1BE6613DF382825A3C1 ] RemoteRegistry C:\WINDOWS\system32\regsvc.dll 02:03:58.0287 0x0a9c RemoteRegistry - ok 02:03:58.0344 0x0a9c [ 65B9FDE300A6DECC03BA44C4616DCAD6, CAD992982733DD20282A3453DC4E554AE1FC077C35479C0CA4E8BC3A9DCD3BB0 ] RpcEptMapper C:\WINDOWS\System32\RpcEpMap.dll 02:03:58.0406 0x0a9c RpcEptMapper - ok 02:03:58.0473 0x0a9c [ A737B433ABAF3F2DCB2BD7B4CC582B26, 3B5706B0CF0969A9F82060FD4DCC745F2D83C066B663FE8A4F0F493B64032C9C ] RpcLocator C:\WINDOWS\system32\locator.exe 02:03:58.0551 0x0a9c RpcLocator - ok 02:03:58.0753 0x0a9c [ A6F17C299A03BAFEFB9257C462A19E00, EB68967D28355271897166D7B6FD963D1E546D3C24AE1AEAAC561F94357A9345 ] RpcSs C:\WINDOWS\system32\rpcss.dll 02:03:58.0841 0x0a9c RpcSs - ok 02:03:58.0899 0x0a9c [ 2D05A5508F4685412F2B89E8C2189ABC, 82F12B4E0E73411A121EFD35FBD3B44CBBC0AE96ACFBB45D8C3C3777E2EA320D ] rspndr C:\WINDOWS\system32\DRIVERS\rspndr.sys 02:03:58.0954 0x0a9c rspndr - ok 02:03:59.0054 0x0a9c [ 8EB6DCEB7473C232D8BC9A886E3183AC, D81B089443306AD9D89F59DBC5F9C2F5B6A86112B4AB59316B97EE7D8B97D2FA ] RSUSBVSTOR C:\WINDOWS\System32\Drivers\RtsUVStor.sys 02:03:59.0091 0x0a9c RSUSBVSTOR - ok 02:03:59.0246 0x0a9c [ 19764658C1468C2C0CEF133D28414A6B, 87AD4056F6C67052433A366B200B75613148B69B9B9D502AD926A7F7F037B8DE ] RTL8168 C:\WINDOWS\system32\DRIVERS\Rt630x64.sys 02:03:59.0326 0x0a9c RTL8168 - ok 02:03:59.0994 0x0a9c [ 5B51809556BCAB9EAE08C0665D9A658C, DE851A7FB79D802CC0AF376A92D1A701918E035A6673555B10D3205BBAA34650 ] rtsuvc C:\WINDOWS\system32\DRIVERS\rtsuvc.sys 02:04:00.0658 0x0a9c rtsuvc - ok 02:04:00.0775 0x0a9c [ 1A063730F221B2746FF00457AE17E4F0, 39A3C258CBFE3BC566C63528C9020A3BC9409736AE5289C08A7BA471D8409263 ] s3cap C:\WINDOWS\System32\drivers\vms3cap.sys 02:04:00.0854 0x0a9c s3cap - ok 02:04:00.0885 0x0a9c [ 382100E75B6F4668AEAEF228C6CEFFAD, 9C7229F10F11D18E1FED6395391A46225A84B421034B9AB6F81AF7430FDC556F ] SamSs C:\WINDOWS\system32\lsass.exe 02:04:00.0918 0x0a9c SamSs - ok 02:04:00.0954 0x0a9c [ C624A1B32211C3166EDB3F4AB02A30B7, 6B2A4607DB52D74242787ED9DF9067058983D310431D8612D2B0236E6201E681 ] sbp2port C:\WINDOWS\system32\drivers\sbp2port.sys 02:04:00.0991 0x0a9c sbp2port - ok 02:04:01.0071 0x0a9c [ 74A3B67F03877D06B09B1B40C5ED582E, A8FF9BF416F0BF365BFB4E1796859825C811A74B5E54DDDCE8345193BEEBE206 ] SCardSvr C:\WINDOWS\System32\SCardSvr.dll 02:04:01.0130 0x0a9c SCardSvr - ok 02:04:01.0228 0x0a9c [ 8B9C4D55B4A536FB01C360DDB9533574, 9B939FE68F6F9C171ED0D91E2CE1E67515295D34EC23606BCDFD097DCC8CFD4A ] ScDeviceEnum C:\WINDOWS\System32\ScDeviceEnum.dll 02:04:01.0298 0x0a9c ScDeviceEnum - ok 02:04:01.0340 0x0a9c [ 13BEA6C882D4D877A5A85CA149C86BC1, 8E9BE5C2A36D5881D9985C3A31309FE03966EA13A3541D3C5B542AB67FA0D55F ] scfilter C:\WINDOWS\system32\DRIVERS\scfilter.sys 02:04:01.0390 0x0a9c scfilter - ok 02:04:01.0528 0x0a9c [ 3151A020E03DDE31AAC49F35C5EFB4DB, 5ABB1103009979F86C862357E28F37C2744979F2C99F7CF6ABB4EB1B8416B3F6 ] Schedule C:\WINDOWS\system32\schedsvc.dll 02:04:01.0678 0x0a9c Schedule - ok 02:04:01.0756 0x0a9c [ 41C0D7B1A6D4AD119BA6AC0487EA5C8E, 516C2B34BA7507D0DA4148B4ABC0A8C36286570D4EA5C60B28647B1249C15018 ] SCPolicySvc C:\WINDOWS\System32\certprop.dll 02:04:01.0798 0x0a9c SCPolicySvc - ok 02:04:01.0842 0x0a9c [ C54B6B2170BF628FD42F799A66956D75, BCF460A124CAA6F1F1A9A7BCBDCC2D5E39B0404D96B7C9FFAC806E041782B91E ] sdbus C:\WINDOWS\System32\drivers\sdbus.sys 02:04:01.0888 0x0a9c sdbus - ok 02:04:01.0946 0x0a9c [ 0B1E929D11A8E358106955603FAC65E8, A5EC91BFC0873EC6AB1D0DB4E91654BD35339BD680E7E82DA2DC64996B4AE515 ] sdstor C:\WINDOWS\System32\drivers\sdstor.sys 02:04:01.0982 0x0a9c sdstor - ok 02:04:02.0038 0x0a9c [ 3EA8A16169C26AFBEB544E0E48421186, 34BBB0459C96B3DE94CCB0D73461562935C583D7BF93828DA4E20A6BC9B7301D ] secdrv C:\WINDOWS\system32\drivers\secdrv.sys 02:04:02.0123 0x0a9c secdrv - ok 02:04:02.0178 0x0a9c [ BA24CEA7152239F42ECD04AFB7C89D24, A2A11EABB0C283772B74667C7544B61BEB1B9745FBF065E831542129EB585AFA ] seclogon C:\WINDOWS\system32\seclogon.dll 02:04:02.0245 0x0a9c seclogon - ok 02:04:02.0291 0x0a9c [ 81FE9A81EDF8016816C9E91FBFBF7D35, 87FB92A3D15F312F0B9C423EF851061A944B013E5668D8C9A441B4DC0EB690AF ] SENS C:\WINDOWS\System32\sens.dll 02:04:02.0343 0x0a9c SENS - ok 02:04:02.0416 0x0a9c [ 6E4012AE67F09F867EF620C8D5524C0B, 63933E51F8E413E63481369CE2F9FD224560550FBD3BD2B4573E9F4AD88708A2 ] SensrSvc C:\WINDOWS\system32\sensrsvc.dll 02:04:02.0493 0x0a9c SensrSvc - ok 02:04:02.0548 0x0a9c [ DB2FF24CE0BDD15FE75870AFE312BA89, 7DB0D978C92CD0A0A81F7AB46FE323B4929CEA01585B0F330921E6DFA7DE1B85 ] SerCx C:\WINDOWS\system32\drivers\SerCx.sys 02:04:02.0586 0x0a9c SerCx - ok 02:04:02.0651 0x0a9c [ 0044B31F93946D5D41982314381FE431, 95B8A94BA9EF770F29ACD5B23D447EC2B6CF1CB3D0030343BA1550AC31F6E2A5 ] SerCx2 C:\WINDOWS\system32\drivers\SerCx2.sys 02:04:02.0696 0x0a9c SerCx2 - ok 02:04:02.0725 0x0a9c [ 3CD600C089C1251BEEB4CD4CD5164F9E, D9F81951B4454B24E821E33ACA53A851A61F3135E8EC6FBE6761A1A3E1CDCBE2 ] Serenum C:\WINDOWS\System32\drivers\serenum.sys 02:04:02.0773 0x0a9c Serenum - ok 02:04:02.0832 0x0a9c [ D864381BC9C725FAB01D94C060660166, 132FED95222BBE3B0B25B3F1F0EFC5903D04564BD047BA4D2042AD51E3FDA724 ] Serial C:\WINDOWS\System32\drivers\serial.sys 02:04:02.0886 0x0a9c Serial - ok 02:04:02.0925 0x0a9c [ 148195AE95D9BC7375A08846439FDAC1, 3A2F78FD18AA7A6D659921E19335E943894530874AC5AB5E7219CEF28FA54F7A ] sermouse C:\WINDOWS\System32\drivers\sermouse.sys 02:04:02.0975 0x0a9c sermouse - ok 02:04:03.0167 0x0a9c [ 3A2F1A7472C3B7CC9B89C8516C726488, 9BCBBAC10C900EA7B30822B463A77EE5067F217C4B490857A09E5277983CB89B ] SessionEnv C:\WINDOWS\system32\sessenv.dll 02:04:03.0279 0x0a9c SessionEnv - ok 02:04:03.0317 0x0a9c [ 472B7A5AC181C050888DB454663DD764, C950A8615D57BFD455E18880398350642B2E1D6B951EC9754FD8D429F3418835 ] sfloppy C:\WINDOWS\System32\drivers\sfloppy.sys 02:04:03.0366 0x0a9c sfloppy - ok 02:04:03.0532 0x0a9c [ 8081FF3DAE8159FE8956B09BC29CE983, AC0F305AEE8B1AB2E1275F1D33EC1D2F3E23F234F831BD9D41F415A94A19D3AB ] SharedAccess C:\WINDOWS\System32\ipnathlp.dll 02:04:03.0615 0x0a9c SharedAccess - ok 02:04:03.0701 0x0a9c [ 7FD9A61A3523A61FC135D61D6E160314, 409E1CF7A62FD90CBC31AEAFBB7230B02DBEC6CFCA2D266D221A7643FAEBA13B ] ShellHWDetection C:\WINDOWS\System32\shsvcs.dll 02:04:03.0873 0x0a9c ShellHWDetection - ok 02:04:03.0916 0x0a9c [ 2F518D13DD6F3053837FE606F1A2EA1F, 64109296CE95BD233525688A350D575CF97B9464659AA07CF78B307B6ADBC835 ] SiSRaid2 C:\WINDOWS\system32\drivers\SiSRaid2.sys 02:04:03.0946 0x0a9c SiSRaid2 - ok 02:04:03.0992 0x0a9c [ 1AC9A200A9C49C4508F04AAFFCA34A3F, 972BCB2A39169155F74111FAC74ACCD8F50E34EADCF087833B0980827627BBF4 ] SiSRaid4 C:\WINDOWS\system32\drivers\sisraid4.sys 02:04:04.0032 0x0a9c SiSRaid4 - ok 02:04:04.0066 0x0a9c [ 3C84DCCE5B322F745A75CA8BA3A0F6B3, 1FB94A8A1C63D6FDB82E28ED5B696B3CB1F64183A89A3B5153B266C292CB7815 ] smphost C:\WINDOWS\System32\smphost.dll 02:04:04.0157 0x0a9c smphost - ok 02:04:04.0223 0x0a9c [ D0EB0DF8C603BBA084351A92732B1CBE, E24ED8F78EF41C1BC17386AE4BBCE0DC892C5B89B12C03FC9FB61D359B13F1B4 ] SNMPTRAP C:\WINDOWS\System32\snmptrap.exe 02:04:04.0271 0x0a9c SNMPTRAP - ok 02:04:04.0359 0x0a9c [ D24B1945ED1F9C96DA786DBBF1E983CE, B46CB0B72B7A3DF94A46B8D65E38535C5F8E72A55CF2DC48EFA1F9A0108691C4 ] spaceport C:\WINDOWS\system32\drivers\spaceport.sys 02:04:04.0416 0x0a9c spaceport - ok 02:04:04.0484 0x0a9c [ F337BE11071818FC3F5DC2940B6BDE34, D5CFF00E5DF37045F71AEE101AC9B270EBB29F372F404757B58600E9966C7E4D ] SpbCx C:\WINDOWS\system32\drivers\SpbCx.sys 02:04:04.0530 0x0a9c SpbCx - ok 02:04:04.0620 0x0a9c [ FCB156A6745631A67DEA61827061D483, 9275ABFA1E1E595969A71C0DA228D18D1B868BF46E097E1276142BD80F8A32C9 ] Spooler C:\WINDOWS\System32\spoolsv.exe 02:04:04.0755 0x0a9c Spooler - ok 02:04:05.0355 0x0a9c [ C993A0B97BECD3AAF5158E3869878465, 8B86F37DEFCBE55DE507D830EC4980EBB39B3CCA30C2B3E76B588AAB282A50FC ] sppsvc C:\WINDOWS\system32\sppsvc.exe 02:04:06.0006 0x0a9c sppsvc - ok 02:04:06.0122 0x0a9c [ 6416E79A58A8FCC33A447A4DDDD3BF04, 839E3107ACCD520C309BD6C8324DF7A8EB724EAD442AB1F1CACB0D83F84BE488 ] srv C:\WINDOWS\system32\DRIVERS\srv.sys 02:04:06.0323 0x0a9c srv - ok 02:04:06.0520 0x0a9c [ 00D8AC8E3053290BDE6EA2FB6810D2FC, 957FEF84CBBAE71829529AE99A1B24F52D7831BD666442D0132FBB825409A75D ] srv2 C:\WINDOWS\system32\DRIVERS\srv2.sys 02:04:06.0673 0x0a9c srv2 - ok 02:04:06.0724 0x0a9c [ D047CD668E6277FD80F0C613946F034C, BD0209E7FD89F9295D4DE48C9652DF2A2990277C16AFA473B96704B1CBD2F338 ] srvnet C:\WINDOWS\system32\DRIVERS\srvnet.sys 02:04:06.0855 0x0a9c srvnet - ok 02:04:06.0950 0x0a9c [ CF6C3037839CF78421A94F9060C2886F, CA98C180AE03F5BE8FEFFBA75BD98DEE2AD4FA975E1EF83215C9CD2476946811 ] SSDPSRV C:\WINDOWS\System32\ssdpsrv.dll 02:04:07.0021 0x0a9c SSDPSRV - ok 02:04:07.0098 0x0a9c [ 198A737DBA666F4808D62E9A8277A6B7, 90B6E5E2ACE95D850C913A3A1DA1F966C44955C530004C228FA93B2A536F5C27 ] SstpSvc C:\WINDOWS\system32\sstpsvc.dll 02:04:07.0200 0x0a9c SstpSvc - ok 02:04:07.0225 0x0a9c [ 366DEA74BBA65B362BCCFC6FC2ADFD8B, 4D28122AB9D8DAB724021E6513B4474BD34FCEDF47769B1D27AC7551FCA002F8 ] stexstor C:\WINDOWS\system32\drivers\stexstor.sys 02:04:07.0255 0x0a9c stexstor - ok 02:04:07.0467 0x0a9c [ 63E9CE568CF1192771A5F0460DE7D2B9, C27B21FD2C14AD41A59EF62EB8AC95C08EB13CCB1CEECD8378B8CDD4DC352E69 ] stisvc C:\WINDOWS\System32\wiaservc.dll 02:04:07.0616 0x0a9c stisvc - ok 02:04:07.0664 0x0a9c [ 0ED2E318ABB68C1A35A8B8038BDB4C90, 5C3ABC245F4BCFE64E646D9C0E2F5E211244956C84D03084C71FF6A7E0CDED30 ] storahci C:\WINDOWS\system32\drivers\storahci.sys 02:04:07.0699 0x0a9c storahci - ok 02:04:07.0734 0x0a9c [ 8B9486B64E5FC17FB9CC04CA10B77A34, C1EAC9D27DC83E4C56B890D97988C3CCFAE3877309610601F2E3FFFE97686D43 ] storflt C:\WINDOWS\system32\drivers\vmstorfl.sys 02:04:07.0782 0x0a9c storflt - ok 02:04:07.0849 0x0a9c [ 6B06E2D11E604BE2B1A406C4CB3B90DE, 2DDEA1568A85AD64FCE5D10D348304FCD9BE6E96C2313353EF70A2933306D188 ] stornvme C:\WINDOWS\system32\drivers\stornvme.sys 02:04:07.0880 0x0a9c stornvme - ok 02:04:07.0935 0x0a9c [ A45F5AC9D8069D0EC66E3CA73103073B, 996788F1C58E016E8E5CF3FD1D220A3C40AFFD6C21361A34636415DB12E0D381 ] StorSvc C:\WINDOWS\system32\storsvc.dll 02:04:08.0033 0x0a9c StorSvc - ok 02:04:08.0117 0x0a9c [ 548759755BC73DAD663250239D7E0B9F, D31A05A8CE800B539420B6E545F1F4BF6E4B02EAF8366DE89CAF13A83C6CA48D ] storvsc C:\WINDOWS\system32\drivers\storvsc.sys 02:04:08.0160 0x0a9c storvsc - ok 02:04:08.0226 0x0a9c [ E395BE02F80A79A6CF973BA38DBB8135, 4C6F85B0EB8E7725BA720F9742561D229726C0D7C17505D1E79F19A5626F6325 ] svsvc C:\WINDOWS\system32\svsvc.dll 02:04:08.0343 0x0a9c svsvc - ok 02:04:08.0426 0x0a9c [ 65454187E0F8B6C0DCECB0287D06EC43, 87550000CF5B3C1DF3E69633934AFE8554AE40B6638F190D3185AD63F1D7A2EE ] swenum C:\WINDOWS\System32\drivers\swenum.sys 02:04:08.0454 0x0a9c swenum - ok 02:04:08.0614 0x0a9c [ 1C71D72D4997A284128FBEE770726330, 21682BDE74A1108FED1124FB1EA35A03CBFA94ABE1B89CC0FADB4DD82596C43E ] swprv C:\WINDOWS\System32\swprv.dll 02:04:08.0735 0x0a9c swprv - ok 02:04:08.0874 0x0a9c [ B54FD2CFB84FAC78D136434530461BA4, 5FEDAD9CD96B73ABA43223CAA66CFF981C09CFE188BFBEA2BE9018663A9444F0 ] SXDS10 C:\Program Files (x86)\Common Files\soft Xpansion\sxds10.exe 02:04:08.0909 0x0a9c SXDS10 - ok 02:04:08.0979 0x0a9c [ 3675657B3A4A2868A2C2B2A160E4A3C9, 1E2D115D2454596B139360815B24574CF331920513E71EA151324DC2922BC59B ] SynTP C:\WINDOWS\system32\DRIVERS\SynTP.sys 02:04:09.0026 0x0a9c SynTP - ok 02:04:09.0158 0x0a9c [ 7E85DB0463AD2403AE84AD162B162279, 996C42ECAFC6E24C623068AFAFCC0A2612526333AF9315F7536C6D40C2570632 ] SysMain C:\WINDOWS\system32\sysmain.dll 02:04:09.0347 0x0a9c SysMain - ok 02:04:09.0428 0x0a9c [ D73DBBB96CEE90C2856164AAD8543425, D11ADB5D4C5DD355314CA656D375D0062CAE7462E866F94F1B26D5803F65DCB2 ] SystemEventsBroker C:\WINDOWS\System32\SystemEventsBrokerServer.dll 02:04:09.0546 0x0a9c SystemEventsBroker - ok 02:04:09.0613 0x0a9c [ D6A71B95ACF71ACA63B67232059F1BCD, C5CEC032E7AB507500D1CC7A4E65DA6322412C798201A9D770CBDE892E50DFC8 ] TabletInputService C:\WINDOWS\System32\TabSvc.dll 02:04:09.0714 0x0a9c TabletInputService - ok 02:04:09.0780 0x0a9c [ 5A5BAB1CA9621E73E25EE4744B67CDA6, 479EBD7BAE1E2AD431153FDC016742F7A8D824716EAB1A4CA87EBBD21D61DECD ] TapiSrv C:\WINDOWS\System32\tapisrv.dll 02:04:09.0886 0x0a9c TapiSrv - ok 02:04:10.0346 0x0a9c [ 746DDF7D59AB8D721C88D48434597E8D, 78BDBAB8D1E86A11804FEB19B355C0FAD04ACE8DD4BDDFDADCE5461E259BCE82 ] Tcpip C:\WINDOWS\system32\drivers\tcpip.sys 02:04:10.0605 0x0a9c Tcpip - ok 02:04:10.0827 0x0a9c [ 746DDF7D59AB8D721C88D48434597E8D, 78BDBAB8D1E86A11804FEB19B355C0FAD04ACE8DD4BDDFDADCE5461E259BCE82 ] TCPIP6 C:\WINDOWS\system32\DRIVERS\tcpip.sys 02:04:11.0099 0x0a9c TCPIP6 - ok 02:04:11.0194 0x0a9c [ 41CF802064F72E55F50CA0A221FD36D4, 70ABCDF9E96611E8C83042C581575E26649FE479475E8E118CD3FF6CB1C84C3F ] tcpipreg C:\WINDOWS\system32\drivers\tcpipreg.sys 02:04:11.0277 0x0a9c tcpipreg - ok 02:04:11.0383 0x0a9c [ FFF28F9F6823EB1756C60F1649560BBF, 208DFF8BF0329D0D4761C7E31527AEED7FF5F3C36C5005953D01477F35408D5C ] tdx C:\WINDOWS\system32\DRIVERS\tdx.sys 02:04:11.0434 0x0a9c tdx - ok 02:04:11.0500 0x0a9c [ 232D185D2337F141311D0CF1983E1431, 02EB56D3F26174AF1741C1A444CE30DE84D5BAF583C1A52C7A953BCC52445547 ] terminpt C:\WINDOWS\System32\drivers\terminpt.sys 02:04:11.0543 0x0a9c terminpt - ok 02:04:11.0722 0x0a9c [ C50997E282576DA492EBA66B059D4196, EBD793CB396F9503376207FA60353F5672DEDB620C8E01C8D6AE0030B3B03339 ] TermService C:\WINDOWS\System32\termsrv.dll 02:04:11.0882 0x0a9c TermService - ok 02:04:11.0944 0x0a9c [ 2180DBCE75B914E5E5BBFFFAAE97AA21, 8000AECC8855903DB50ABA7E304396D1FCEAE8DC9ADD4FC50275CF24B4D914DE ] Themes C:\WINDOWS\system32\themeservice.dll 02:04:11.0991 0x0a9c Themes - ok 02:04:12.0037 0x0a9c [ 4C5179DB61B9E14BEC15CDC4B152B2E9, 9048BEC7AD6A3F4B640E99B1F0365AC9A46740B188758FBB2C160EF30AD6E64B ] THREADORDER C:\WINDOWS\system32\mmcss.dll 02:04:12.0073 0x0a9c THREADORDER - ok 02:04:12.0209 0x0a9c [ B5ED9CC61798C7D44BD535D40B89EFB5, 1BDCEAA9AF2096381870D92129C748F4EE06A1167ABA9367B9DD43BAF27E3F5B ] TimeBroker C:\WINDOWS\System32\TimeBrokerServer.dll 02:04:12.0302 0x0a9c TimeBroker - ok 02:04:12.0410 0x0a9c [ 80A2FC1A089A71F2DBE5D8394FFB009F, DEA30E751F6EA42E43E16869713FC7E37832B15DAFA0062B1798DFA476981385 ] TPM C:\WINDOWS\system32\drivers\tpm.sys 02:04:12.0453 0x0a9c TPM - ok 02:04:12.0493 0x0a9c [ 884113C2BB703FE806C8608B75F34831, 24DE5750CA4363455412BABB0B1FAB08497153E8F158ED44958F100410F93506 ] TrkWks C:\WINDOWS\System32\trkwks.dll 02:04:12.0543 0x0a9c TrkWks - ok 02:04:12.0646 0x0a9c [ 44A94FB4C76528D2382FFE04B05827C3, B0BCDF7CD1D65E61A9061D539D83527A89B69583958F8A26C6BF9766C1B61E0C ] TrustedInstaller C:\WINDOWS\servicing\TrustedInstaller.exe 02:04:12.0730 0x0a9c TrustedInstaller - ok 02:04:12.0761 0x0a9c [ BF8F54CA37E9C9D6582C31C5761F8C93, 337C566792F6FB9B7FD5D1D4384B767CFE4CF5DBB2E4688CCC36CBB018A0DD0F ] TsUsbFlt C:\WINDOWS\system32\drivers\tsusbflt.sys 02:04:12.0846 0x0a9c TsUsbFlt - ok 02:04:12.0908 0x0a9c [ 20185BEB7512EDE4EFECDFA148AC9F99, 6F539478493C0F87F3DDF67A4A6D4D41E9474EEF21434E856350CE149A34EA9F ] TsUsbGD C:\WINDOWS\System32\drivers\TsUsbGD.sys 02:04:13.0005 0x0a9c TsUsbGD - ok 02:04:13.0099 0x0a9c [ E85916632CD3B9E9B546968DB950BF42, DECE3852C763CC6293C7D1B772296C43A0AE1E47BBCC4979C96B3B2AD70413F3 ] tunnel C:\WINDOWS\system32\DRIVERS\tunnel.sys 02:04:13.0202 0x0a9c tunnel - ok 02:04:13.0244 0x0a9c [ F6EEAD052943B5A3104C1405BB856C54, FE422813E6C1012E9F392EFF2AE4C6D3A4DBD9CB2BD5E6A5CAB57D4E89A29468 ] uagp35 C:\WINDOWS\system32\drivers\uagp35.sys 02:04:13.0286 0x0a9c uagp35 - ok 02:04:13.0312 0x0a9c [ FE6067B1FD4E63650C667B33D080565B, 2C330ED00E49BA55E25564230E0DFB8A35F2B5320EB18D4AF7CAACFA9A449044 ] UASPStor C:\WINDOWS\System32\drivers\uaspstor.sys 02:04:13.0359 0x0a9c UASPStor - ok 02:04:13.0461 0x0a9c [ 807F8CF3E973305FC435C61CBBEE2A49, 43CDEAC2BFC5091C11DFC0E7F7171AF9A598AE56CB056C3CF382AE7807F79EF0 ] UCX01000 C:\WINDOWS\System32\drivers\ucx01000.sys 02:04:13.0502 0x0a9c UCX01000 - ok 02:04:13.0614 0x0a9c [ C61EAF8E1E4B2F62BA4FDF457440B2C6, 961F76A789925234AC27F56AAE34556FA06088D71580B42C24B0BC209EAFD67E ] udfs C:\WINDOWS\system32\DRIVERS\udfs.sys 02:04:13.0712 0x0a9c udfs - ok 02:04:13.0748 0x0a9c [ 9578691F297E1B1F519970FE6D47CB21, 080C352AAF22A16A4F3C4AB4DCEA5BFA656457C73F735CEBA30516FDACCF6301 ] UEFI C:\WINDOWS\System32\drivers\UEFI.sys 02:04:13.0792 0x0a9c UEFI - ok 02:04:13.0861 0x0a9c [ A867F0F978EE64C87FADC3B100869EE4, 2686BE85F963D0D0BB275E92E5B543280D8742CF10772303E3189D0719B6A277 ] UI0Detect C:\WINDOWS\system32\UI0Detect.exe 02:04:13.0942 0x0a9c UI0Detect - ok 02:04:13.0987 0x0a9c [ 5EAB5117DDB24FC4D39E6FFFCF1837B9, 2BC709240867F161E94BE6625A04F478EAAA3EEE7BC7C37ED0DFA9EEA5928E98 ] uliagpkx C:\WINDOWS\system32\drivers\uliagpkx.sys 02:04:14.0022 0x0a9c uliagpkx - ok 02:04:14.0051 0x0a9c [ DA34C39A18E60E7C3FA0630566408034, 2F162504214053894C72760D9933D01DBF3578609FE5E2376C3272818599FE32 ] umbus C:\WINDOWS\System32\drivers\umbus.sys 02:04:14.0110 0x0a9c umbus - ok 02:04:14.0140 0x0a9c [ AE8294875E5446E359B1E8035D40C05E, AE0357BAB47C07C3576BC76951CD258C009BC5A1B93259D2122A841BD9CDA8FA ] UmPass C:\WINDOWS\System32\drivers\umpass.sys 02:04:14.0185 0x0a9c UmPass - ok 02:04:14.0284 0x0a9c [ A023F267A262D5DA6CE1436D9C5E8FD9, 92AD7AF91184C244A7E392F49663143193A80D5D81114546A00F18227DE31D23 ] UmRdpService C:\WINDOWS\System32\umrdp.dll 02:04:14.0406 0x0a9c UmRdpService - ok 02:04:14.0588 0x0a9c [ C98493DD8E6A50154FAC75C15E1C36BB, CECD1C826C8F7AF05468871BF6A0ACDBB6B0202F4F87F48C6D367E5BD699E800 ] upnphost C:\WINDOWS\System32\upnphost.dll 02:04:14.0658 0x0a9c upnphost - ok 02:04:14.0720 0x0a9c [ C9E9D59C0099A9FF51697E9306A44240, 78D9A7A5E5742962B6978F475BF06CB32262F1D214699D3D40538476A58012A1 ] USBAAPL64 C:\WINDOWS\System32\Drivers\usbaapl64.sys 02:04:14.0849 0x0a9c USBAAPL64 - ok 02:04:14.0906 0x0a9c [ FF78D053A05E5A394F4E3C1816CC65A8, 5DAE02414271231F5FDBB751AFEB99874779B467947020815D4AE54432D4269D ] usbccgp C:\WINDOWS\System32\drivers\usbccgp.sys 02:04:14.0944 0x0a9c usbccgp - ok 02:04:14.0978 0x0a9c [ 0139248F6B95CF0D837B5B46A2722D40, 38E3E704E0364F07732DB418AEBD126B040FB3CDB7D78EA36E8605D50D528A80 ] usbcir C:\WINDOWS\System32\drivers\usbcir.sys 02:04:15.0038 0x0a9c usbcir - ok 02:04:15.0135 0x0a9c [ 48BA326A3DBA5B5BEB5F2777F4618696, B9EC8155F11A3A7644BD9DC8910681B46AE44AE3BF53F052DF50E9C5555E3229 ] usbehci C:\WINDOWS\System32\drivers\usbehci.sys 02:04:15.0169 0x0a9c usbehci - ok 02:04:15.0316 0x0a9c [ FEF0BC107812B36849741C3211BA6B60, B3EF738BE1E6B6027F29C9713CD3F367EA067D2BE46580AFBC0FB58046EF6BBD ] usbhub C:\WINDOWS\System32\drivers\usbhub.sys 02:04:15.0398 0x0a9c usbhub - ok 02:04:15.0513 0x0a9c [ 95B0179BDA907252025DEEA183699FB3, A6BDFB93EE9418A83407024204A41640A08638C60E2BE75C249D102601DC1D80 ] USBHUB3 C:\WINDOWS\System32\drivers\UsbHub3.sys 02:04:15.0576 0x0a9c USBHUB3 - ok 02:04:15.0661 0x0a9c [ 3019097FB6C985EF24C058090FF3BDBD, 24AC518D34E338D94BF3D5B3F72E53F8A1369BAA7F32FEA3EDBCF928C4FF1D17 ] usbohci C:\WINDOWS\System32\drivers\usbohci.sys 02:04:15.0825 0x0a9c usbohci - ok 02:04:15.0861 0x0a9c [ 4D655E3B684BE9B0F7FFD8A2935C348C, 3A7FC1748C5AEA8CFE0E7C22ADC77E3DCA475455FC16D9C6A5C16EB5E949A516 ] usbprint C:\WINDOWS\System32\drivers\usbprint.sys 02:04:15.0896 0x0a9c usbprint - ok 02:04:15.0974 0x0a9c [ F04D164C4168701A4E7835607722E5F1, 6F743CF2CF73945B4A4B1C4402744BC2FE1624F1346C194493AD2F7110F9EB35 ] usbscan C:\WINDOWS\system32\DRIVERS\usbscan.sys 02:04:16.0032 0x0a9c usbscan - ok 02:04:16.0080 0x0a9c [ 66732C13628BDB1AB0D6FD46027327C2, B582C0F348D8F79419CA5A58F10CA151E06D7CA3BE162344CADA46D9D7FED97C ] USBSTOR C:\WINDOWS\System32\drivers\USBSTOR.SYS 02:04:16.0120 0x0a9c USBSTOR - ok 02:04:16.0176 0x0a9c [ 064260B3A5868AC894A4943543BC7AB7, D3534E98B34C4AC9A430D7E0AB301A0E5E1511E3117C2FEA392636B0DE2C38E2 ] usbuhci C:\WINDOWS\System32\drivers\usbuhci.sys 02:04:16.0247 0x0a9c usbuhci - ok 02:04:16.0336 0x0a9c [ 44603DA5A87FB491EF59C889EBBB4DDB, 59AA9B6B0B5D66F9312CD3F999D0D9F12F1A2C5D230365AD7287CD71FD86961C ] USBXHCI C:\WINDOWS\System32\drivers\USBXHCI.SYS 02:04:16.0395 0x0a9c USBXHCI - ok 02:04:16.0419 0x0a9c [ 382100E75B6F4668AEAEF228C6CEFFAD, 9C7229F10F11D18E1FED6395391A46225A84B421034B9AB6F81AF7430FDC556F ] VaultSvc C:\WINDOWS\system32\lsass.exe 02:04:16.0453 0x0a9c VaultSvc - ok 02:04:16.0485 0x0a9c [ FEB26E3B8345A7E8D62F945C4AE86562, 3AAFE87C402FC8E92542DFE60EC9540559863065F88D429A16D7B1BF829223FF ] vdrvroot C:\WINDOWS\system32\drivers\vdrvroot.sys 02:04:16.0516 0x0a9c vdrvroot - ok 02:04:16.0792 0x0a9c [ 8A4D808D1EC7C1C47B2C8BF488A9A07A, 63C07312ADB6F8A8BDE93361C30AC63DAB4DE1141AF54630EEF11E54B0BF983D ] vds C:\WINDOWS\System32\vds.exe 02:04:16.0949 0x0a9c vds - ok 02:04:17.0014 0x0a9c [ A026EDEAA5EECAE0B08E2748B616D4BD, 2525A54DC7F49DDFBB999C22BF3FAB6D9E9F70C0806E58D81E90AC59F9F46089 ] VerifierExt C:\WINDOWS\system32\drivers\VerifierExt.sys 02:04:17.0058 0x0a9c VerifierExt - ok 02:04:17.0175 0x0a9c [ C06E8481E068F170A258441639AC5792, 2F550530BACB511A195D5047F003B01CB6E04FA9A0DCCF638CB3D51FF5467DC7 ] vhdmp C:\WINDOWS\System32\drivers\vhdmp.sys 02:04:17.0245 0x0a9c vhdmp - ok 02:04:17.0301 0x0a9c [ 06D38968028E9AB19DE9B618C7B6D199, 62022297A47F440D1C82CA0B0E57C0C8E9D5033D83DD3B40492B218DF65EBF68 ] viaide C:\WINDOWS\system32\drivers\viaide.sys 02:04:17.0332 0x0a9c viaide - ok 02:04:17.0393 0x0a9c [ 511AD3FF957A0127E6BD336FF6F89C38, 55325BFD0857A1204F7F6F8ED8C91C07B0E20A50402105708E7365ECD9E25A21 ] vmbus C:\WINDOWS\system32\drivers\vmbus.sys 02:04:17.0435 0x0a9c vmbus - ok 02:04:17.0479 0x0a9c [ DA40BEA0A863CE768C940CA9723BF81F, 567C0C3F422325635808B0CF76E05D3B6187F96845C33F85F92F98C9FE53A5B8 ] VMBusHID C:\WINDOWS\System32\drivers\VMBusHID.sys 02:04:17.0520 0x0a9c VMBusHID - ok 02:04:17.0584 0x0a9c [ C42C38E15C0DC39D4B0BDF34F733E468, 7264680C44FA68BB1FC0A490FE3988AFDE19892295F7458943D8CBEE6C01D4F0 ] vmicguestinterface C:\WINDOWS\System32\ICSvc.dll 02:04:17.0676 0x0a9c vmicguestinterface - ok 02:04:17.0730 0x0a9c [ C42C38E15C0DC39D4B0BDF34F733E468, 7264680C44FA68BB1FC0A490FE3988AFDE19892295F7458943D8CBEE6C01D4F0 ] vmicheartbeat C:\WINDOWS\System32\ICSvc.dll 02:04:17.0792 0x0a9c vmicheartbeat - ok 02:04:17.0834 0x0a9c [ C42C38E15C0DC39D4B0BDF34F733E468, 7264680C44FA68BB1FC0A490FE3988AFDE19892295F7458943D8CBEE6C01D4F0 ] vmickvpexchange C:\WINDOWS\System32\ICSvc.dll 02:04:17.0897 0x0a9c vmickvpexchange - ok 02:04:17.0939 0x0a9c [ C42C38E15C0DC39D4B0BDF34F733E468, 7264680C44FA68BB1FC0A490FE3988AFDE19892295F7458943D8CBEE6C01D4F0 ] vmicrdv C:\WINDOWS\System32\ICSvc.dll 02:04:18.0000 0x0a9c vmicrdv - ok 02:04:18.0043 0x0a9c [ C42C38E15C0DC39D4B0BDF34F733E468, 7264680C44FA68BB1FC0A490FE3988AFDE19892295F7458943D8CBEE6C01D4F0 ] vmicshutdown C:\WINDOWS\System32\ICSvc.dll 02:04:18.0106 0x0a9c vmicshutdown - ok 02:04:18.0152 0x0a9c [ C42C38E15C0DC39D4B0BDF34F733E468, 7264680C44FA68BB1FC0A490FE3988AFDE19892295F7458943D8CBEE6C01D4F0 ] vmictimesync C:\WINDOWS\System32\ICSvc.dll 02:04:18.0275 0x0a9c vmictimesync - ok 02:04:18.0330 0x0a9c [ C42C38E15C0DC39D4B0BDF34F733E468, 7264680C44FA68BB1FC0A490FE3988AFDE19892295F7458943D8CBEE6C01D4F0 ] vmicvss C:\WINDOWS\System32\ICSvc.dll 02:04:18.0394 0x0a9c vmicvss - ok 02:04:18.0469 0x0a9c [ 55D7D963DE85162F1C49721E502F9744, 5AD34D6DB707EF3E5242BD8CA67B21D6258EE7E7FC477D5227BD15500AE7F45F ] volmgr C:\WINDOWS\system32\drivers\volmgr.sys 02:04:18.0507 0x0a9c volmgr - ok 02:04:18.0601 0x0a9c [ CCB9E901F7254BF96D28EB1B0E5329B7, F0E3CA4EFA544CDAEF4092284CF3EC7DF07F806A770285E281816457AD8813F5 ] volmgrx C:\WINDOWS\system32\drivers\volmgrx.sys 02:04:18.0658 0x0a9c volmgrx - ok 02:04:18.0766 0x0a9c [ 64CA2B4A49A8EAF495E435623ECCE7DB, 81151F295A54DE2B8B88C7F48C86BF58CDFF96F98493509C06D6F41484594386 ] volsnap C:\WINDOWS\system32\drivers\volsnap.sys 02:04:18.0817 0x0a9c volsnap - ok 02:04:18.0866 0x0a9c [ EF31713EE4C7CCFE4049F7E7F15645A2, 35D198D3F1061E19A7EF89FA1E75377049CD6BCA9702F8076B9F95BB8737E0D4 ] vpci C:\WINDOWS\System32\drivers\vpci.sys 02:04:18.0905 0x0a9c vpci - ok 02:04:18.0975 0x0a9c [ 4539F45F9F4C9757A86A56C949421E07, DEC362314B2C66414F39354AFE79C02B18BF4EEF90787FB58307F6EB62237E2C ] vsmraid C:\WINDOWS\system32\drivers\vsmraid.sys 02:04:19.0015 0x0a9c vsmraid - ok 02:04:19.0275 0x0a9c [ 94FAFD473CDD80CE19A21FB9503D7ED1, 953E5E8C753C0017E1258695A76F60CC05D283F7476B9D9C5C8AC78B8E3FCE18 ] VSS C:\WINDOWS\system32\vssvc.exe 02:04:19.0443 0x0a9c VSS - ok 02:04:19.0532 0x0a9c [ 0849B7260F26FE05EA56DED0672E2F4B, 7EAC0E7988F45CB4133A15932955B7B03CE715C967A3BAC9999D81543EBCAEC5 ] VSTXRAID C:\WINDOWS\system32\drivers\vstxraid.sys 02:04:19.0586 0x0a9c VSTXRAID - ok 02:04:19.0640 0x0a9c [ BE970C369E43B509C1EDA2B8FA7CECB0, 18951F2AA842A0795AA79A4E164EE925A35E6270EBE4C4CDB19D0A891830E383 ] vwifibus C:\WINDOWS\System32\drivers\vwifibus.sys 02:04:19.0728 0x0a9c vwifibus - ok 02:04:19.0772 0x0a9c [ 35BF5C5F5E3C9902C98978C7640574DA, C61E50B04000DCEC72365723F0C0725C2E005529DAF2777A59E624C14DA29E55 ] vwififlt C:\WINDOWS\system32\DRIVERS\vwififlt.sys 02:04:19.0838 0x0a9c vwififlt - ok 02:04:19.0870 0x0a9c [ 65ED7B9CFEA893DF7748D5FF692690DE, 73AB9D8BB928B3247BDFC7BB47AD7FCA763B375DC250C251DB4E0573531040E8 ] vwifimp C:\WINDOWS\system32\DRIVERS\vwifimp.sys 02:04:19.0915 0x0a9c vwifimp - ok 02:04:20.0034 0x0a9c [ DC821E811EFBB65CDD77FBB8B6ECA385, B7C8AACDF81DBA298F2F384983D36B269876C31F0398D89BF9070217A069B96F ] W32Time C:\WINDOWS\system32\w32time.dll 02:04:20.0213 0x0a9c W32Time - ok 02:04:20.0254 0x0a9c [ 0910AB9ED404C1434E2D0376C2AD5D8B, 62585CA5F1375BDA440D28D5DF1ADDC9DE3DDFA196D49BBFF3456A5A09EE1C6B ] WacomPen C:\WINDOWS\System32\drivers\wacompen.sys 02:04:20.0299 0x0a9c WacomPen - ok 02:04:20.0477 0x0a9c [ A81988DCC4FA440AA88B84CA452F5E22, 3573AAA09971E8ADB6FEFA778E02B2D8EE5E4249267CF37A524D9F019CC836FB ] wbengine C:\WINDOWS\system32\wbengine.exe 02:04:20.0687 0x0a9c wbengine - ok 02:04:20.0781 0x0a9c [ 0F1DFA2FED73FA78B8C3CDE332A870F6, 1089F6F585F5350D349A640EBD3117832DF6B3657EB6667CB00AE217E04ACA17 ] WbioSrvc C:\WINDOWS\System32\wbiosrvc.dll 02:04:20.0927 0x0a9c WbioSrvc - ok 02:04:21.0040 0x0a9c [ 0EAEC313B24837613621B4A2536ED382, 61C194ED7FA7D65BBE61A546D5FCA52F52AB08324E084D3EC23C9706E9BF0175 ] Wcmsvc C:\WINDOWS\System32\wcmsvc.dll 02:04:21.0115 0x0a9c Wcmsvc - ok 02:04:21.0258 0x0a9c [ F6B4C2280FF7C7156AC8A4687B9DA35E, 1899D584D7469BB49355D84080051E2575B033E6312009D9C6C1DD3F7F9AA4C5 ] wcncsvc C:\WINDOWS\System32\wcncsvc.dll 02:04:21.0339 0x0a9c wcncsvc - ok 02:04:21.0398 0x0a9c [ B7BF1D783F5B2484E8CE1C0C78257F16, 468601199FCCF63DBAE86EE6B8825EA85B2A1EE177413353FFA2CC9CA5249FCD ] WcsPlugInService C:\WINDOWS\System32\WcsPlugInService.dll 02:04:21.0497 0x0a9c WcsPlugInService - ok 02:04:21.0529 0x0a9c [ 81285DDC994F03379DB46419300B2DCB, 98D3622E11F375718AEA1DE3B5F0104DDAB4F96B6D4C19788C14F7B338A6F235 ] WdBoot C:\WINDOWS\system32\drivers\WdBoot.sys 02:04:21.0560 0x0a9c WdBoot - ok 02:04:21.0746 0x0a9c [ CB6C63FF8342B467E2EF76E98D5B934D, BE017CE91E3BAB293DE6ECF143797CCE3F33CC63024437472B4E38C6961AD884 ] Wdf01000 C:\WINDOWS\system32\drivers\Wdf01000.sys 02:04:21.0831 0x0a9c Wdf01000 - ok 02:04:21.0927 0x0a9c [ 26B8FED3F3B85F5F0C4BD03FD00B9941, 7F94FE7954498223B33C025258DB588A3AC9FF25C58EEAD204514FD20652FE40 ] WdFilter C:\WINDOWS\system32\drivers\WdFilter.sys 02:04:21.0974 0x0a9c WdFilter - ok 02:04:22.0049 0x0a9c [ F581F9C9D6953FABFA24E67105F0B614, 5A7BB72523D1C53BBE68700537D7AE0D150BC7E4B8227A916B2E29EE4CA267A9 ] WdiServiceHost C:\WINDOWS\system32\wdi.dll 02:04:22.0113 0x0a9c WdiServiceHost - ok 02:04:22.0127 0x0a9c [ F581F9C9D6953FABFA24E67105F0B614, 5A7BB72523D1C53BBE68700537D7AE0D150BC7E4B8227A916B2E29EE4CA267A9 ] WdiSystemHost C:\WINDOWS\system32\wdi.dll 02:04:22.0173 0x0a9c WdiSystemHost - ok 02:04:22.0231 0x0a9c [ CE67080F00E0AF32755096CEA6430ABA, 0E5D626F9F76C0BC63B2D246AD66D9CBF7D92F34B56398417BCFD0C331DBD282 ] WdNisDrv C:\WINDOWS\system32\Drivers\WdNisDrv.sys 02:04:22.0271 0x0a9c WdNisDrv - ok 02:04:22.0305 0x0a9c WdNisSvc - ok 02:04:22.0395 0x0a9c [ 40F83492DB9ABBA59773A45FB487C8B2, 0D0DE0B0C9B929FEFD2674CCF17F5F2FC4B16EAB8E1981BBCE51B0305FD7D75E ] WebClient C:\WINDOWS\System32\webclnt.dll 02:04:22.0487 0x0a9c WebClient - ok 02:04:22.0545 0x0a9c [ 384E1D04FE20845B2559D292F17A9FA1, AD3B0B2B2219691AC30FEEC8AFDB3BBB74B51BB7D02038AE2B4DEA514E245315 ] Wecsvc C:\WINDOWS\system32\wecsvc.dll 02:04:22.0606 0x0a9c Wecsvc - ok 02:04:22.0647 0x0a9c [ 455014F4E48B67EBE0F032E2B0E06BF2, A36435784A034B27056A0E606683A20C69F1B0AB2B6BAEDEAEAA190F6287CAEF ] WEPHOSTSVC C:\WINDOWS\system32\wephostsvc.dll 02:04:22.0696 0x0a9c WEPHOSTSVC - ok 02:04:22.0745 0x0a9c [ F13DBA57CEA9B7074B95EDCA6AD2635E, 1D9BA4841EF1343A5D9096B5FE27FC65DC1901D6683DD13516171638549666B5 ] wercplsupport C:\WINDOWS\System32\wercplsupport.dll 02:04:22.0838 0x0a9c wercplsupport - ok 02:04:22.0891 0x0a9c [ FD7E58B6AA3EABF2D12B9762A20E11E4, 4C5E2E246C5C70074866BB3DBC2AAF483ECE4345004CCB8D1FE285047268685D ] WerSvc C:\WINDOWS\System32\WerSvc.dll 02:04:22.0954 0x0a9c WerSvc - ok 02:04:23.0006 0x0a9c [ 715ABA3DD164D06457A2A3C92F6EA9D5, E6F8269D2FFC4A548B65724C0A3F53756ED15E47229861FBD40B656EE40FE166 ] WFPLWFS C:\WINDOWS\system32\DRIVERS\wfplwfs.sys 02:04:23.0049 0x0a9c WFPLWFS - ok 02:04:23.0108 0x0a9c [ 8C840E1FD7584E74BD0CC1EA581EC187, 148E534A94B4882E7396B13FABE17407802292E7890713540080D03D5629C81D ] WiaRpc C:\WINDOWS\System32\wiarpc.dll 02:04:23.0171 0x0a9c WiaRpc - ok 02:04:23.0203 0x0a9c [ 5F66B7BB330AA80067FC66149A692620, 92C5D7115A168A23108B65EEEB5FBA8FA43D781855355792596D2419160263C2 ] WIMMount C:\WINDOWS\system32\drivers\wimmount.sys 02:04:23.0245 0x0a9c WIMMount - ok 02:04:23.0253 0x0a9c WinDefend - ok 02:04:23.0374 0x0a9c [ 10DAD6A7FC617A221313BD584E3C3A00, F139B878668ECF38FE59831E8595A207D5CEEE76C6FFDA8C9F735435E601A763 ] WinHttpAutoProxySvc C:\WINDOWS\system32\winhttp.dll 02:04:23.0471 0x0a9c WinHttpAutoProxySvc - ok 02:04:23.0593 0x0a9c [ FC8BD690321216C32BB58B035B6D5674, D61698DB19D9DB2593B60B6BA13F7B7735667206F41D751D507135469D6D3CDD ] Winmgmt C:\WINDOWS\system32\wbem\WMIsvc.dll 02:04:23.0699 0x0a9c Winmgmt - ok 02:04:24.0002 0x0a9c [ 75436315AA383CF527695C6D49D0CA59, E3D55F2ACBD45D4D031FA6CA799394459C89BE50FF6ADE4FE36F2CAB2D2E63D0 ] WinRM C:\WINDOWS\system32\WsmSvc.dll 02:04:24.0278 0x0a9c WinRM - ok 02:04:24.0365 0x0a9c [ AC263C2F66405589528995AA41040599, 81B46E551D6130A2C3D113EC3B563CEDB5A06BB340986C0E03136CE5BE729481 ] WinUsb C:\WINDOWS\System32\drivers\WinUsb.sys 02:04:24.0443 0x0a9c WinUsb - ok 02:04:24.0793 0x0a9c [ DC079BA8390089E4EBCA63D27EEA3ECB, 4D549217A68292E2B16C09FD9F84317011EE54A2DAF4E2AB85554267DF0D3249 ] WlanSvc C:\WINDOWS\System32\wlansvc.dll 02:04:24.0978 0x0a9c WlanSvc - ok 02:04:25.0166 0x0a9c [ 06BF5897949A8F24893F792E876B71F5, 9D3719492A86BF52A56E2EA798FD6FDB5862A03F6D360FCC4B0CEA9BE9792AE4 ] wlidsvc C:\WINDOWS\system32\wlidsvc.dll 02:04:25.0320 0x0a9c wlidsvc - ok 02:04:25.0377 0x0a9c [ 2834D9D3B4F554A39C72F00EA3F0E128, D10124343C67FE9A0B711AD569BB8080495FCEA0ECEF9AC3F3FBD6865F436A44 ] WmiAcpi C:\WINDOWS\System32\drivers\wmiacpi.sys 02:04:25.0452 0x0a9c WmiAcpi - ok 02:04:25.0549 0x0a9c [ B96F7A1236C3F21212DE2C40A3DDB005, 5A29EBB6DA036E303611EB1304192655021405BB05452FD37886DDE604FF0D9D ] wmiApSrv C:\WINDOWS\system32\wbem\WmiApSrv.exe 02:04:25.0618 0x0a9c wmiApSrv - ok 02:04:25.0654 0x0a9c WMPNetworkSvc - ok 02:04:25.0716 0x0a9c [ 7FC5667DF73D4B04AA457CC3A4180E09, CB7B014945DCA16B6D120DBE0E5876C4C867A4ACD3C3536AEADC14B908613D4E ] Wof C:\WINDOWS\system32\drivers\Wof.sys 02:04:25.0757 0x0a9c Wof - ok 02:04:25.0987 0x0a9c [ 588040D595BBF0856CA1ADD941A8ED17, CBC92BB5453FE1BEA6F33239B7CE884F312559591383408EA5F95A006156C5D3 ] workfolderssvc C:\WINDOWS\system32\workfolderssvc.dll 02:04:26.0203 0x0a9c workfolderssvc - ok 02:04:26.0250 0x0a9c [ A2468CC3509394A33C4C32F99563D845, 62690C7D41F382DF74B8F4B942647842858E37DE35FF2DE028192E4D09ABB2C5 ] wpcfltr C:\WINDOWS\system32\DRIVERS\wpcfltr.sys 02:04:26.0294 0x0a9c wpcfltr - ok 02:04:26.0335 0x0a9c [ 19F4DF69876DA7E9C4965351560FE6B7, 127247A7964F55EE3AF842D25120F5ACD387632BEE2BF3D28FAC05840CEA19BA ] WPCSvc C:\WINDOWS\System32\wpcsvc.dll 02:04:26.0415 0x0a9c WPCSvc - ok 02:04:26.0453 0x0a9c [ 2ADE11F3D84709C5F6781E4C59F11683, F003C43396CF8FCF44EAB87583650DB4D2A233322D28D6A78D1694945D9073BB ] WPDBusEnum C:\WINDOWS\system32\wpdbusenum.dll 02:04:26.0553 0x0a9c WPDBusEnum - ok 02:04:26.0615 0x0a9c [ 9F2904B55F6CECCD1A8D986B5CE2609A, E19ED4DD3CEF3A22C058FC324824604FB3FC98A029C94E6C2A3389F938D680B6 ] WpdUpFltr C:\WINDOWS\system32\drivers\WpdUpFltr.sys 02:04:26.0649 0x0a9c WpdUpFltr - ok 02:04:26.0692 0x0a9c [ AE072B0339D0A18E455DC21666CAD572, AB1DAEA25E2C7AD610818D4B4783F6D4190D85EBB3963BBAD410E8CEA7899EDB ] ws2ifsl C:\WINDOWS\system32\drivers\ws2ifsl.sys 02:04:26.0751 0x0a9c ws2ifsl - ok 02:04:26.0799 0x0a9c [ 5596C0960ED6ED7494BF2A55DE428684, C95CF09A657F37F421CC80E16F2F95B8EC59A8D5D48F104551155EAC8E53DCB2 ] wscsvc C:\WINDOWS\System32\wscsvc.dll 02:04:26.0890 0x0a9c wscsvc - ok 02:04:26.0901 0x0a9c WSearch - ok 02:04:27.0462 0x0a9c [ 6B2D71124C1EA86B74412F414C42431D, 078CC6C9667EF6BDA3E6900BC26A5A5B030CAA66928A6BBB7B7DC43C5C199EDC ] WSService C:\WINDOWS\System32\WSService.dll 02:04:27.0831 0x0a9c WSService - ok 02:04:27.0900 0x0a9c [ 72B4E9DF6456C43C42A1419B09486045, 536BA7377B5BEA7EA46864453933111DB88DB8FB689C68915ACD7261A996E61D ] wsvd C:\WINDOWS\system32\DRIVERS\wsvd.sys 02:04:27.0930 0x0a9c wsvd - ok 02:04:28.0593 0x0a9c [ FA2F8EA0DFACE3B3E935B106EDEF4150, 7BFFFAE521BF579CD33463DEB7E19CE83C69A5AB40BB71AF96C3FE141C7B16FD ] wuauserv C:\WINDOWS\system32\wuaueng.dll 02:04:28.0976 0x0a9c wuauserv - ok 02:04:29.0036 0x0a9c [ 481286719402E4BAEFEA0604AB1B5113, F3CF65DF2AB39F79AE4C1335831408418E40726706E0242677E8B96B0FAD988F ] WudfPf C:\WINDOWS\system32\drivers\WudfPf.sys 02:04:29.0121 0x0a9c WudfPf - ok 02:04:29.0203 0x0a9c [ D7B4859227B02BCC1055B279A63C937F, 82C99844CC596C2723523B1B98573488FF23337947B78AA04BA21E58394BB751 ] WUDFRd C:\WINDOWS\System32\drivers\WUDFRd.sys 02:04:29.0268 0x0a9c WUDFRd - ok 02:04:29.0294 0x0a9c [ D7B4859227B02BCC1055B279A63C937F, 82C99844CC596C2723523B1B98573488FF23337947B78AA04BA21E58394BB751 ] WUDFSensorLP C:\WINDOWS\System32\drivers\WUDFRd.sys 02:04:29.0348 0x0a9c WUDFSensorLP - ok 02:04:29.0410 0x0a9c [ 51D28F7F1F888DDCF2C67DCF3B79A5D3, 74FF2936AFCEB9A36175D5B00EB91A5AD614B52BE3FB3FA9B994A025A484D2B7 ] wudfsvc C:\WINDOWS\System32\WUDFSvc.dll 02:04:29.0481 0x0a9c wudfsvc - ok 02:04:29.0548 0x0a9c [ D7B4859227B02BCC1055B279A63C937F, 82C99844CC596C2723523B1B98573488FF23337947B78AA04BA21E58394BB751 ] WUDFWpdFs C:\WINDOWS\System32\drivers\WUDFRd.sys 02:04:29.0590 0x0a9c WUDFWpdFs - ok 02:04:29.0620 0x0a9c [ D7B4859227B02BCC1055B279A63C937F, 82C99844CC596C2723523B1B98573488FF23337947B78AA04BA21E58394BB751 ] WUDFWpdMtp C:\WINDOWS\System32\drivers\WUDFRd.sys 02:04:29.0663 0x0a9c WUDFWpdMtp - ok 02:04:29.0770 0x0a9c [ A0900F8F628B5AF6841414EB3CF11E50, 8A531F2472FF4B4D895D469D28C215C834ECADBEF539894B8F3F606079A86184 ] WwanSvc C:\WINDOWS\System32\wwansvc.dll 02:04:29.0874 0x0a9c WwanSvc - ok 02:04:29.0924 0x0a9c ================ Scan global =============================== 02:04:29.0975 0x0a9c [ 05B08C20B8428ECE088CB5635696A48D, 471642A2D0E5C3BB235962FC8D86A49AC30D7DDE80B97E348425BBFCDE4DCDC3 ] C:\WINDOWS\system32\basesrv.dll 02:04:30.0025 0x0a9c [ EAB311B0A7A8EA0346F14F08D4BC8F46, 11168E4074679F8A69DA714C0ABD0C68BA49D171B379343F14783C9C563202CA ] C:\WINDOWS\system32\winsrv.dll 02:04:30.0090 0x0a9c [ 3600ED7EA8AED849E20700551C0BD63B, 4A8C346C1646E80B58EF93F87F915A41E05CA2E993BB1C96955AE62A0669AF66 ] C:\WINDOWS\system32\sxssrv.dll 02:04:30.0155 0x0a9c [ E0C7813A97CA7947FF5C18A8F3B61A45, 083BB4F3B20419C87DB656F1465E5F782ACDE76838CDE6207F26AAD035C69DE0 ] C:\WINDOWS\system32\services.exe 02:04:30.0190 0x0a9c [ Global ] - ok 02:04:30.0191 0x0a9c ================ Scan MBR ================================== 02:04:30.0212 0x0a9c [ 5FB38429D5D77768867C76DCBDB35194 ] \Device\Harddisk0\DR0 02:04:30.0451 0x0a9c \Device\Harddisk0\DR0 - ok 02:04:30.0452 0x0a9c ================ Scan VBR ================================== 02:04:30.0510 0x0a9c [ 9F90FE19A379A604E82F2698BD36CBF3 ] \Device\Harddisk0\DR0\Partition1 02:04:30.0545 0x0a9c \Device\Harddisk0\DR0\Partition1 - ok 02:04:30.0570 0x0a9c [ 849601DCDBECCB66D67458B5E0D08284 ] \Device\Harddisk0\DR0\Partition2 02:04:30.0597 0x0a9c \Device\Harddisk0\DR0\Partition2 - ok 02:04:30.0618 0x0a9c [ 9252910AD9B6BC8C455A6BEAE8631DD5 ] \Device\Harddisk0\DR0\Partition3 02:04:30.0621 0x0a9c \Device\Harddisk0\DR0\Partition3 - ok 02:04:30.0636 0x0a9c [ 4618E6A167D6C4D83D2202CFEA88C509 ] \Device\Harddisk0\DR0\Partition4 02:04:30.0637 0x0a9c \Device\Harddisk0\DR0\Partition4 - ok 02:04:30.0671 0x0a9c [ 094444FB72804184DD6BB65D2B221016 ] \Device\Harddisk0\DR0\Partition5 02:04:30.0711 0x0a9c \Device\Harddisk0\DR0\Partition5 - ok 02:04:30.0749 0x0a9c [ F833A2A0F7C98696D68DB3273D45695B ] \Device\Harddisk0\DR0\Partition6 02:04:30.0807 0x0a9c \Device\Harddisk0\DR0\Partition6 - ok 02:04:30.0837 0x0a9c [ C136D13C5ADA1DAAC78059BC885DD936 ] \Device\Harddisk0\DR0\Partition7 02:04:30.0862 0x0a9c \Device\Harddisk0\DR0\Partition7 - ok 02:04:30.0890 0x0a9c [ BAC77A71A9A89F0339928A27551B102D ] \Device\Harddisk0\DR0\Partition8 02:04:30.0921 0x0a9c \Device\Harddisk0\DR0\Partition8 - ok 02:04:30.0923 0x0a9c ================ Scan generic autorun ====================== 02:04:31.0374 0x0a9c [ 8970A59A838FF1CDC3D62D85823AA61E, 5842DAFD20C1A024CF8984652A08D12DBA1DE15788794D01FF6070D4E24D2479 ] C:\Program Files\CONEXANT\SAII\SACpl.exe 02:04:31.0561 0x0a9c SmartAudio - detected UnsignedFile.Multi.Generic ( 1 ) 02:04:33.0963 0x0a9c Detect skipped due to KSN trusted 02:04:33.0964 0x0a9c SmartAudio - ok 02:04:34.0060 0x0a9c [ DD8C5A331E1F83510C5A788CB9AA8727, BDEDB9B9D3B0C16B217A67B9B02C9E339E133E4FE05E144DCB344D80C6786078 ] C:\Program Files\Conexant\cAudioFilterAgent\cAudioFilterAgent64.exe 02:04:34.0131 0x0a9c cAudioFilterAgent - ok 02:04:35.0324 0x0a9c [ 65EE16AACAEBAF3D8EDEA422177B2DA0, D15F841043D04ACE2F3D376F0EA2A3F42B4FAAE78C82913529EB8576608D0B22 ] C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe 02:04:36.0558 0x0a9c Energy Management - ok 02:04:36.0646 0x0a9c [ 5EAF38FC08B9DE07AE8A3D814A3CF959, F9F1844F20106EE77664B848A056D6E06105647C61FC2F2B64BDFD05F76E7E3D ] C:\Program Files (x86)\Lenovo\Energy Management\Utility.exe 02:04:36.0675 0x0a9c EnergyUtility - ok 02:04:36.0677 0x0a9c SynTPEnh - ok 02:04:36.0751 0x0a9c EPSON Stylus DX4000 Series - ok 02:04:36.0816 0x0a9c [ 5C80FBEE03ED1CBF108AFC029D73D857, 472508F140286868051D0AF557D11EB8FF2ACC6352C278970BB4D94F02428B6B ] C:\Program Files (x86)\Dolby Advanced Audio v2\pcee4.exe 02:04:36.0866 0x0a9c Dolby Advanced Audio v2 - ok 02:04:36.0940 0x0a9c [ A1741C3B79F9DF8895E05EF43579E74B, 446094FDBA93518ABE1CDEC50E24AB60BC7CA78022A289AF5C21461778FD8001 ] C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe 02:04:36.0964 0x0a9c YouCam Mirage - ok 02:04:36.0994 0x0a9c [ 79EDDBCBFFC23585BC1495AFC03CC4D7, 325A6C067A52BAD7070C1C758EA69645FD8083AC6D0ABA8340BDBE1A712E005F ] C:\Program Files (x86)\Lenovo\YouCam\YouCamTray.exe 02:04:37.0022 0x0a9c YouCam Tray - ok 02:04:37.0114 0x0a9c [ 16D807D8B07A868298A8044E576BE419, 148399752A497E7FEA07C59C89834E266652AC1C0793B5C9C429FDBB37AB7617 ] C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe 02:04:37.0151 0x0a9c UpdateP2GShortCut - detected UnsignedFile.Multi.Generic ( 1 ) 02:04:39.0553 0x0a9c Detect skipped due to KSN trusted 02:04:39.0553 0x0a9c UpdateP2GShortCut - ok 02:04:39.0638 0x0a9c [ B7995C675014EEBE77A0BEB7AFCCFC08, 41D186C63273301CF0A1C1EE7B6EB0BB75A251DD441532C5CEB7A4095FB103CD ] C:\Program Files (x86)\Lenovo\PowerDVD10\PDVD10Serv.exe 02:04:39.0659 0x0a9c RemoteControl10 - ok 02:04:39.0795 0x0a9c [ 43E946AAD268FEAFB1E286677E70CB5D, 7798926B3CF11D1CF7DFF9B3D67AD3DC67010A62F3132CAEA273EB299A61B176 ] C:\Program Files (x86)\Intel\IntelAppStore\bin\ismagent.exe 02:04:39.0828 0x0a9c Intel AppUp(SM) center - ok 02:04:39.0911 0x0a9c [ 61E4289E91E88C90478D7F4BEB10DCF7, 1D0F4034E0111CF5758F470C15A22A0A28EB8269CB5BF07222C9C0FB07A15C55 ] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe 02:04:39.0937 0x0a9c APSDaemon - ok 02:04:40.0034 0x0a9c [ 2199723879C9F75A709680E2935C052F, DDD5B5CC86463284D9137372CB8541D1258AC020EA811F1AD3735809F314B086 ] C:\Program Files (x86)\PDF24\pdf24.exe 02:04:40.0084 0x0a9c PDFPrint - ok 02:04:40.0899 0x0a9c [ AEE2CE1C695EAC531F5DA07D48CC7C9C, 88BA80E318E6DCA59C89EB222CCE33E7AD143F1A4A7EB7DB71327B4245901812 ] C:\Users\jarnds\AppData\Roaming\Spotify\Spotify.exe 02:04:41.0308 0x0a9c Spotify - ok 02:04:41.0446 0x0a9c [ 6B6B7E9192854FD8812D3B0CAEF6F0FE, D56B071EA7660F8F2F5B80269E641AE33DC409FBC2583E9749551E92E23FE30D ] C:\Users\jarnds\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe 02:04:41.0532 0x0a9c Spotify Web Helper - ok 02:04:41.0538 0x0a9c Waiting for KSN requests completion. In queue: 12 02:04:42.0539 0x0a9c Waiting for KSN requests completion. In queue: 12 02:04:43.0540 0x0a9c Waiting for KSN requests completion. In queue: 12 02:04:44.0933 0x0a9c AV detected via SS2: Windows Defender, C:\Program Files\Windows Defender\MSASCui.exe ( 4.8.207.0 ), 0x61110 ( enabled : outofdate ) 02:04:44.0982 0x0a9c Win FW state via NFP2: enabled ( trusted ) 02:04:47.0360 0x0a9c ============================================================ 02:04:47.0360 0x0a9c Scan finished 02:04:47.0360 0x0a9c ============================================================ 02:04:47.0384 0x0ed4 Detected object count: 0 02:04:47.0384 0x0ed4 Actual detected object count: 0 |
11.11.2016, 02:25 | #8 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Windows 8.1 : Avira Fund pua widdit Gen4 und MBAM massenweise Funde Adware/Junkware/Toolbars entfernen Alte Versionen von adwCleaner und falls vorhanden JRT vorher löschen, danach neu runterladen auf den Desktop! Virenscanner jetzt vor dem Einsatz dieser Tools bitte komplett deaktivieren! 1. Schritt: adwCleaner Downloade Dir bitte AdwCleaner auf deinen Desktop.
2. Schritt: JRT - Junkware Removal Tool Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
__________________ Logfiles bitte immer in CODE-Tags posten |
11.11.2016, 08:32 | #9 |
| Windows 8.1 : Avira Fund pua widdit Gen4 und MBAM massenweise Funde Guten Morgen, AdwCleaner ist beim Löschen in der Registry abgestürzt, beim Zweiten Mal dann durchgelaufen - vom Ersten lauf gibt es keinen "Cx" log nur "S0" soll ich den noch nachreichen? Hier der Log vom zweiten Durchlauf: Code:
ATTFilter # AdwCleaner v6.030 - Bericht erstellt am 11/11/2016 um 08:20:06 # Aktualisiert am 19/10/2016 von Malwarebytes # Datenbank : 2016-11-10.1 [Server] # Betriebssystem : Windows 8.1 (X64) # Benutzername : jarnds - IDEA-PC # Gestartet von : C:\Users\jarnds\Desktop\AdwCleaner_6.030.exe # Modus: Löschen # Unterstützung : hxxps://www.malwarebytes.com/support ***** [ Dienste ] ***** ***** [ Ordner ] ***** ***** [ Dateien ] ***** ***** [ DLL ] ***** ***** [ WMI ] ***** ***** [ Verknüpfungen ] ***** ***** [ Aufgabenplanung ] ***** ***** [ Registrierungsdatenbank ] ***** [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\CLSID\{479BF2D6-E362-4A99-B1AB-BC764D7B97AE} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\CLSID\{492A108F-51D0-4BD8-899D-AD4AB2893064} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\CLSID\{4B6D6E60-FBD2-4E79-BF4B-886BC98F1797} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\CLSID\{60893E02-2E5B-43F9-A93A-BAD60C2DF6EF} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\CLSID\{6D39931F-451E-4BDD-BAF4-37FB96DBBA5D} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\CLSID\{76C684D2-C35D-4284-976A-D862F53ADB81} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\CLSID\{796D822A-C3F9-4A97-BAAB-42FE7628EA63} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\CLSID\{79EF3691-EC1A-4705-A01A-D2E36EC11758} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\CLSID\{82F41418-8E64-47EB-A7F1-4702A974D289} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\CLSID\{85D920CE-63A7-46DC-8992-41D1D2E07FAD} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\CLSID\{895ED5E8-ABB4-40C3-A0CA-2571964268E2} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\CLSID\{8AAC123A-1959-4A45-BFC5-E2D50783098A} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\CLSID\{A07956CD-81F8-4A03-B524-5D87E690DC83} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\CLSID\{B5E3B26B-6E5C-4865-A63D-58D04B10E245} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\CLSID\{B84D2DC5-42B2-4E5E-BF61-7B48152FF8EF} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\CLSID\{B89D5309-0367-4494-A92F-3D4C94F88307} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\CLSID\{C014EBF8-8854-448B-B5A4-557C4090EDCE} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\CLSID\{C31191DB-2F64-464C-B97C-6AC81ACB7AAC} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\CLSID\{C342C7A7-F622-4EF3-8B7F-ABB9FBE73F14} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\CLSID\{C4765B07-BC2F-477B-925C-B2BF24887823} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\CLSID\{C875C0A1-09E3-48D5-9F8E-BD337796FD14} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\CLSID\{CD126DA6-FF5B-4181-AC13-54A62240D2FA} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\CLSID\{D8F01233-2DE6-4EE7-8988-37263F00651B} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\CLSID\{DD438708-AAB4-422D-A322-B619589F5680} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\CLSID\{E812AE43-7799-4E67-8CF8-4104297A2D16} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\CLSID\{F0BAAEC7-9AE0-49FF-9C4B-86E774FF397F} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\CLSID\{F297534D-7B06-459D-BC19-2DD8EF69297B} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\CLSID\{F92193FD-2243-4401-9ACC-49FF30885898} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\CLSID\{FD21B8A2-910B-45AC-9C10-45E6A8B84984} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\CLSID\{7017502F-0194-46B2-AA5A-F713E6C0E366} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\Interface\{021B4049-F57D-4565-A693-FD3B04786BFA} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\Interface\{0362AA09-808D-48E9-B360-FB51A8CBCE09} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\Interface\{06844020-CD0B-3D3D-A7FE-371153013E49} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\Interface\{0ADC01BB-303B-3F8E-93DA-12C140E85460} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\Interface\{10D3722F-23E6-3901-B6C1-FF6567121920} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\Interface\{1675E62B-F911-3B7B-A046-EB57261212F3} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\Interface\{192929F2-9273-3894-91B0-F54671C4C861} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\Interface\{2932897E-3036-43D9-8A64-B06447992065} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\Interface\{2DE92D29-A042-3C37-BFF8-07C7D8893EFA} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\Interface\{32B80AD6-1214-45F4-994E-78A5D482C000} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\Interface\{3A8E103F-B2B7-3BEF-B3B0-88E29B2420E4} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\Interface\{478CE5D3-D38E-3FFE-8DBE-8C4A0F1C4D8D} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\Interface\{48B7DA4E-69ED-39E3-BAD5-3E3EFF22CFB0} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\Interface\{5982F405-44E4-3BBB-BAC4-CF8141CBBC5C} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\Interface\{5D8C3CC3-3C05-38A1-B244-924A23115FE9} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\Interface\{641593AF-D9FD-30F7-B783-36E16F7A2E08} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\Interface\{711FC48A-1356-3932-94D8-A8B733DBC7E4} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\Interface\{72227B7F-1F02-3560-95F5-592E68BACC0C} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\Interface\{7B5E8CE3-4722-4C0E-A236-A6FF731BEF37} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\Interface\{890D4F59-5ED0-3CB4-8E0E-74A5A86E7ED0} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\Interface\{8C68913C-AC3C-4494-8B9C-984D87C85003} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\Interface\{8D019513-083F-4AA5-933F-7D43A6DA82C4} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\Interface\{923F6FB8-A390-370E-A0D2-DD505432481D} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\Interface\{9BBB26EF-B178-35D6-9D3D-B485F4279FE5} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\Interface\{A62DDBE0-8D2A-339A-B089-8CBCC5CD322A} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\Interface\{A82AD04D-0B8E-3A49-947B-6A69A8A9C96D} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\Interface\{ACA608DB-A210-4253-B799-3FD24E9A7BF5} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\Interface\{ADEB3CC9-A05D-4FCC-BD09-9025456AA3EA} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\Interface\{B06D4521-D09C-3F41-8E39-9D784CCA2A75} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\Interface\{C06DAD42-6F39-4CE1-83CC-9A8B9105E556} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\Interface\{C2E799D0-43A5-3477-8A98-FC5F3677F35C} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\Interface\{D16107CD-2AD5-46A8-BA59-303B7C32C500} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\Interface\{D25B101F-8188-3B43-9D85-201F372BC205} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\Interface\{D2BA7595-5E44-3F1E-880F-03B3139FA5ED} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\Interface\{D35F5C81-17D9-3E1C-A1FC-4472542E1D25} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\Interface\{D8FA96CA-B250-312C-AF34-4FF1DD72589D} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\Interface\{DAFC1E63-3359-416D-9BC2-E7DCA6F7B0F3} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\Interface\{DC5E5C44-80FD-3697-9E65-9F286D92F3E7} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\Interface\{E1B4C9DE-D741-385F-981E-6745FACE6F01} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\Interface\{E7B623F5-9715-3F9F-A671-D1485A39F8A2} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\Interface\{ED916A7B-7C68-3198-B87D-2DABC30A5587} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\Interface\{EFA1BDB2-BB3D-3D9A-8EB5-D0D22E0F64F4} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\Interface\{F4CBF4DD-F8FE-35BA-BB7E-68304DAAB70B} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\Interface\{FC32005D-E27C-32E0-ADFA-152F598B75E7} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\Interface\{94952EC4-DB66-3F32-BE4C-F0BB875EA98E} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\TypeLib\{2BF2028E-3F3C-4C05-AB45-B2F1DCFE0759} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\TypeLib\{DB538320-D3C5-433C-BCA9-C4081A054FCF} [-] Wert gelöscht: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Ext\CLSID [{58124A0B-DC32-4180-9BFF-E0E21AE34026}] [-] Wert gelöscht: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Ext\CLSID [{977AE9CC-AF83-45E8-9E03-E2798216E2D5}] [-] Wert gelöscht: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Ext\CLSID [{A09AB6EB-31B5-454C-97EC-9B294D92EE2A}] [-] Schlüssel gelöscht: HKU\S-1-5-21-2925157275-2194030336-170780499-1002\Software\foxydeal [-] Schlüssel gelöscht: HKU\S-1-5-21-2925157275-2194030336-170780499-1002\Software\AppDataLow\Software\simplytech [#] Schlüssel mit Neustart gelöscht: HKU\S-1-5-21-2925157275-2194030336-170780499-1002\Software\AppDataLow\Software\SIMPLYTECH [-] Schlüssel gelöscht: HKCU\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-2925157275-2194030336-170780499-1002\Software\AskPartnerNetwork [#] Schlüssel mit Neustart gelöscht: HKCU\Software\foxydeal [#] Schlüssel mit Neustart gelöscht: HKCU\Software\AppDataLow\Software\simplytech [#] Schlüssel mit Neustart gelöscht: HKCU\Software\AppDataLow\Software\SIMPLYTECH [-] Schlüssel gelöscht: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{0A7D6F3C-F2AB-48ED-BE23-99791BFF87D6} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{5CDCDBCD-119A-4AE1-9C55-B816DBBE4245} [-] Schlüssel gelöscht: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SearchTheWebARP [#] Schlüssel mit Neustart gelöscht: [x64] HKCU\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-2925157275-2194030336-170780499-1002\Software\AskPartnerNetwork [#] Schlüssel mit Neustart gelöscht: [x64] HKCU\Software\foxydeal [#] Schlüssel mit Neustart gelöscht: [x64] HKCU\Software\AppDataLow\Software\simplytech [#] Schlüssel mit Neustart gelöscht: [x64] HKCU\Software\AppDataLow\Software\SIMPLYTECH [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\Installer\Features\C3F6D7A0BA2FDE84EB329997B1FF786D [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\Installer\Products\C3F6D7A0BA2FDE84EB329997B1FF786D [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\Installer\UpgradeCodes\F1057DD419AED0B468AD8888429E139A [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\Installer\UpgradeCodes\7AB5857A57A0687786597A857BFFFFFF [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\C3F6D7A0BA2FDE84EB329997B1FF786D [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0238BBE24EA3A70408B81E4BB89C15E5 [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0702826FCAC36EE52AC0441EEEEE2170 [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1198E28F40C3E185E9958608554D4253 [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\14C66209FCA938858B9729645C666684 [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\15A073601B9AEC3549BE4A9314794615 [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1F7C80F9CE5CDF44E9AADDC99402534C [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\206AF45B775E3A445B3B2273827DA85F [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\225C3CBCEB850204D860A6C7CC7724AF [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2310FC151CD4F185798FA0996B3524D7 [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\28572D2E2DE533256AC6B560EA573C22 [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\29799DE249E7DBC459FC6C8F07EB8375 [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\29C79786B109AC443B0DC7BFD61B1896 [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2ABB56EABB920EB59B04BDDD26A62083 [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2DABA02DFED47E352A2FA2EBDD6F6187 [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\311567B4A9A002050BB9423FD73FB880 [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\373FCED70D7F84E5FB5F3F7B76BEE024 [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3BE992C130B235E53A2937391FDCA35B [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3DA5F64B3483DE549947A9164ACBAD21 [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3ED93605BB9B6635E9D0D86615AF31F1 [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\43C098337DB065A49B665D4EA7F16D1C [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4759B017032BA185F9BA6F7DBC95A2D4 [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4A78ABCBB54E46E5482A3EE0AD66C39E [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4F9E947B6B895EB5A86757FC5D3DB862 [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4FEEA83BF72B97E43A2DF0EE4BE4F261 [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\509EC7EFB89B7D942997574AB14037A4 [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\50A730A9A3A61BF5BA70CA8A3B7C133B [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\51A95A1D4CDE4F958A9451FBB39BF54A [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\536133807DE80465BA6CD0A9742B7DE5 [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5E25036E68895D45B95E72D1C3C58C74 [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\60ECC80C54085B141A40437A96CA2618 [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\60FD8CD5BE007315CA3B5C7E41F24017 [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\618E7D05458C4F257909ED9C8CDC0D66 [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\621C21014D3C152529E2460FA6304EE3 [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6241FF6F317CABD4EBBEE0DE9076BD94 [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\636B9C23C79154B57AB561F39A139BFD [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\65AAF0F0CB7F0B45F900FDF19CEAAF2B [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6879A5E348601C45986308CA84958E94 [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6A6F3B7A9805E1F5492A1020EEDF2341 [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6B1F5D204E4EEB342A5AD1D7E60D61BF [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7005A2A4DCF9DD7548137AB17E3A3AF3 [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\712EAF07EE73CC65C822CC3BAE3B2483 [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\75FF6D97AF9FC004A9521D4B83FA6321 [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7947B301B2446E752A3FE06EAD7D26B5 [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7987CE52D13E16258B0E1E3DB1BB0974 [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7BEED197C514FDA53901AE8DD8EF0891 [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7DFDCF03D46C34159BDE29FBDBF1ACF5 [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\87EC9ACEAFE8ECD52A529663CD35213F [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\890F436B85B790A55A582B7307DA12CE [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8C13DA6755F685B529615C8E92B3CA39 [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8D07CD9CB3E6BE652872BF06A1CCA782 [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\90841B1FC98200349925C88999866F17 [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\94194FDD4DF523E53A888D65722A135D [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\95266D07D008D2E4E9B6F8E0DD15432A [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A4223BBC9438CAD49BBE10B4E344B1DD [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A71991503412AEB42838B02C5ED9F9CD [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A72F23B1D745C27508518132197BC982 [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A89E2B6FB14D8275DA63D075171DA184 [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A9C43CD4001E9E4518B274AF9A0EFDA9 [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\AABA081CF7F19915FBB80B3BAF47CE63 [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\AC2A0FFD0A1686D53A4E24D6E96949E4 [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\AE5BDB2750259915D8442D4591A7717B [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B1A79C71D5DC1C150B76B6ED11195DFC [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B6D497DB33974935488761F7C4C3D755 [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B752EF3300008394886C402CC27B474F [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B8C8BCC1206978D51A8B9EECBF806C53 [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BAD3576CEA646895B962F94754612791 [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BB4091512C8F4295E99CE2D061ED2020 [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BEE6BBC9A31531F598794A62120B51C7 [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C19162788CA4D235E829F88E2F771567 [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C71F07DA356B66B5484A8E7F2ADEB7DC [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C96AD15EE8E887B56BAF2136A9088503 [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C9E6B66ECC49D155888399C51D05C49E [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CA360F24F0B214744BE40657FDA0B727 [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CB13D869D7D092348847B7481BB59E27 [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CE85F265816AE2D4E9B73C3E207E679C [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D5389AEEA4A1E20428D045E86BCF643B [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D5B62BB7BC607FB539585E2B7B6AFD16 [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DB027F01D4D53765C8E4FBE7DB77E07E [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DC2EB492393411F5ABE8ED13C59FBF20 [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DDA2534BD056D1F44B6EC96AAA7F1F6E [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DDCA763D4C48A105086B4CCCEE78043F [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DEF7558C7CD27EF46AF802AFBE402675 [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E05B987540A9E2849AAF9E5B06C27DA8 [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E09F4A6B9D2A08B599AE9E38BFC93CD6 [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E27B6535D0D94A24E91047C7D86F27BC [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E45D171E075A5425CBACF6631A45FA39 [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E513C2076D90AD04F888BD762143F191 [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E8F4C985459564F5B8DCFF2B3C7EBD27 [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E96E33222BAC06B57A1FA9D72951C945 [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EAA46CE9007F70A5CAFA5F26E5DDEBE5 [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EE43FF091A8714A599F33EF2533FB59A [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EE790015CF30DAA569960905FF1651A0 [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EEB44C47185BD304D80FDF5A4BBE8F54 [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F214EB834D2EC474CA76C1CDE306CF3A [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F25491036D0FA5D5FA6742F5742F151A [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F2E0D3DD9E5E4B74CA43BCE77815E287 [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F4D1BA8B482D9734E943EE260A7ADEF2 [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F6704141BAAF6884785EC6843143D6A7 [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F7507D4D4C310125E9A22BD909A41FB6 [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F7652513C62FF63448CFF05163719DB7 [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F79C21D785419125595AC59458A6142D [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FA15C90F092A60F53A4E0F88CED02968 [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FA1CF130B3D58B553833ACB6BE8AFAD4 [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FB0F1A18E4F0DBD509A42F4D4C05C02A [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FD17ED194F1C2B457B4F6EF4AE8DEAF3 [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8036C72171EF4ba46856BF57969F6A36 [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\89BB7852687BDC34B9A81E01C7FF9173 [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8CBC85D72B148084ABE8C2F072F781F4 [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8CC5A38A64D6098468BC8395BA0EFF03 [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8DF9A1AC557F56c49B56F6B83E293C15 [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A97C590397DCC454AA8923563BAB10E4 [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C6A54B56C58C82a4688AFB93F42EA17B [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CFA51B44D54927c4E9B7BC1D3FD1E49F [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D14A7F65792054F418578C78367D13F7 [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DFE9F0BD163D827438CB6AD6B100EC48 [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F739A19A8327dc64C9A8B641A9E89646 [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\158D6D9E3FE81fa428925F22ACB3A965 [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\15E6C514FEFC09f45BAFAAE1D7546ED4 [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1DB42320A8525634AA089F0BEC86473B [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\22468B0D6050b2e46B9C4B67A8F59577 [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2251BF05A2F606d43BB064BD63CBD87E [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3255D95681398614190EDF0A4F3F77DB [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3CDF313E9B28c944FBC7579CF4949414 [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\71E54748EDD3dc1468548785DC856EDA [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\754590DD06DE8d249B526503432F99D4 [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\18C9E3869A16248439FE3FF9EB02207A [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5D8011310B2622942868A458964FFDC5 [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6C63F7979DCC2154CB9591969A5CB89D [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6DD31E6C1A73B334383DF186676F4D20 [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\AB3204F747B20694B8D49EF92D8DC94B [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C81E33A400B6F814E90C7A3354E2A3A5 [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EDBF68C5F16790341B7C6FD7C7F8E4FC [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FFA531D0F3A71504DA7AC6A11CE33739 [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3038A20B9089EC34D8F74220191FAB30 [#] Schlüssel mit Neustart gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\C3F6D7A0BA2FDE84EB329997B1FF786D [#] Schlüssel mit Neustart gelöscht: [x64] HKLM\SOFTWARE\Classes\Installer\Features\C3F6D7A0BA2FDE84EB329997B1FF786D [#] Schlüssel mit Neustart gelöscht: [x64] HKLM\SOFTWARE\Classes\Installer\Products\C3F6D7A0BA2FDE84EB329997B1FF786D [#] Schlüssel mit Neustart gelöscht: [x64] HKLM\SOFTWARE\Classes\Installer\UpgradeCodes\F1057DD419AED0B468AD8888429E139A [#] Schlüssel mit Neustart gelöscht: [x64] HKLM\SOFTWARE\Classes\Installer\UpgradeCodes\7AB5857A57A0687786597A857BFFFFFF [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\F1057DD419AED0B468AD8888429E139A [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\7AB5857A57A0687786597A857BFFFFFF [-] Daten wiederhergestellt: HKLM\SOFTWARE\Classes\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL] [-] Daten wiederhergestellt: HKLM\SOFTWARE\Classes\SOFTWARE\Microsoft\Internet Explorer\Main [Search Bar] [-] Daten wiederhergestellt: HKLM\SOFTWARE\Classes\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page] [-] Daten wiederhergestellt: HKLM\SOFTWARE\Classes\SOFTWARE\Microsoft\Internet Explorer\Search [Default_Search_URL] [-] Daten wiederhergestellt: HKLM\SOFTWARE\Classes\SOFTWARE\Microsoft\Internet Explorer\Search [Search Bar] [-] Daten wiederhergestellt: HKLM\SOFTWARE\Classes\SOFTWARE\Microsoft\Internet Explorer\Search [Search Page] [-] Daten wiederhergestellt: HKLM\SOFTWARE\Classes\SOFTWARE\Microsoft\Internet Explorer\SearchURI [(Default)] [-] Daten wiederhergestellt: HKLM\SOFTWARE\Classes\SOFTWARE\Microsoft\Internet Explorer\SearchURI [] [-] Daten wiederhergestellt: HKLM\SOFTWARE\Classes\SOFTWARE\Microsoft\Internet Explorer\SearchUrl [(Default)] [-] Daten wiederhergestellt: HKLM\SOFTWARE\Classes\SOFTWARE\Microsoft\Internet Explorer\SearchUrl [] [-] Daten wiederhergestellt: [x64] HKLM\SOFTWARE\Classes\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL] [-] Daten wiederhergestellt: [x64] HKLM\SOFTWARE\Classes\SOFTWARE\Microsoft\Internet Explorer\Main [Search Bar] [-] Daten wiederhergestellt: [x64] HKLM\SOFTWARE\Classes\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page] [-] Daten wiederhergestellt: [x64] HKLM\SOFTWARE\Classes\SOFTWARE\Microsoft\Internet Explorer\Search [Default_Search_URL] [-] Daten wiederhergestellt: [x64] HKLM\SOFTWARE\Classes\SOFTWARE\Microsoft\Internet Explorer\Search [Search Bar] [-] Daten wiederhergestellt: [x64] HKLM\SOFTWARE\Classes\SOFTWARE\Microsoft\Internet Explorer\Search [Search Page] [-] Daten wiederhergestellt: [x64] HKLM\SOFTWARE\Classes\SOFTWARE\Microsoft\Internet Explorer\SearchURI [(Default)] [-] Daten wiederhergestellt: [x64] HKLM\SOFTWARE\Classes\SOFTWARE\Microsoft\Internet Explorer\SearchURI [] [-] Daten wiederhergestellt: [x64] HKLM\SOFTWARE\Classes\SOFTWARE\Microsoft\Internet Explorer\SearchUrl [(Default)] [-] Daten wiederhergestellt: [x64] HKLM\SOFTWARE\Classes\SOFTWARE\Microsoft\Internet Explorer\SearchUrl [] [-] Wert gelöscht: HKLM\SOFTWARE\Classes\SOFTWARE\Microsoft\Internet Explorer\SearchScopes [DisplayName] [-] Wert gelöscht: HKLM\SOFTWARE\Classes\SOFTWARE\Microsoft\Internet Explorer\SearchScopes [-] Wert gelöscht: HKLM\SOFTWARE\Classes\SOFTWARE\Microsoft\Internet Explorer\SearchScopes [TopResultURLFallback] [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b} [-] Daten wiederhergestellt: HKLM\SOFTWARE\Classes\SOFTWARE\Microsoft\Internet Explorer\SearchScopes [DefaultScope] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [#] Wert mit Neustart gelöscht: [x64] HKLM\SOFTWARE\Classes\SOFTWARE\Microsoft\Internet Explorer\SearchScopes [DisplayName] [#] Wert mit Neustart gelöscht: [x64] HKLM\SOFTWARE\Classes\SOFTWARE\Microsoft\Internet Explorer\SearchScopes [#] Wert mit Neustart gelöscht: [x64] HKLM\SOFTWARE\Classes\SOFTWARE\Microsoft\Internet Explorer\SearchScopes [TopResultURLFallback] [#] Schlüssel mit Neustart gelöscht: [x64] HKLM\SOFTWARE\Classes\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b} [-] Daten wiederhergestellt: [x64] HKLM\SOFTWARE\Classes\SOFTWARE\Microsoft\Internet Explorer\SearchScopes [DefaultScope] {0633EE93-D776-472f-A0FF-E1416B8B2E3A} [-] Schlüssel gelöscht: HKCU\Software\Microsoft\Internet Explorer\DOMStorage\superfish.com [-] Schlüssel gelöscht: HKCU\Software\Microsoft\Internet Explorer\DOMStorage\www.superfish.com [#] Schlüssel mit Neustart gelöscht: [x64] HKCU\Software\Microsoft\Internet Explorer\DOMStorage\superfish.com [#] Schlüssel mit Neustart gelöscht: [x64] HKCU\Software\Microsoft\Internet Explorer\DOMStorage\www.superfish.com [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\AppID\HomeTab.DLL [-] Schlüssel gelöscht: HKLM\SOFTWARE\Classes\AppID\wdapimng.exe [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Browser Updater ***** [ Browser ] ***** ************************* :: "Tracing" Schlüssel gelöscht :: Winsock Einstellungen zurückgesetzt :: Proxy Einstellungen zurückgesetzt :: Internet Explorer Richtlinien gelöscht :: Chrome Richtlinien gelöscht ************************* C:\AdwCleaner\AdwCleaner[C0].txt - [35743 Bytes] - [11/11/2016 08:20:06] C:\AdwCleaner\AdwCleaner[S0].txt - [40048 Bytes] - [11/11/2016 08:11:12] C:\AdwCleaner\AdwCleaner[S1].txt - [37312 Bytes] - [11/11/2016 08:17:06] ########## EOF - C:\AdwCleaner\AdwCleaner[C0].txt - [35965 Bytes] ########## Code:
ATTFilter ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Junkware Removal Tool (JRT) by Malwarebytes Version: 8.0.9 (09.30.2016) Operating System: Windows 8.1 x64 Ran by jarnds (Administrator) on 11.11.2016 at 8:23:50,97 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ File System: 1 Successfully deleted: C:\WINDOWS\prefetch\SPEEDUP.EXE-CD38A4B5.pf (File) Registry: 0 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Scan was completed on 11.11.2016 at 8:28:37,68 End of JRT log ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ |
11.11.2016, 10:26 | #10 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Windows 8.1 : Avira Fund pua widdit Gen4 und MBAM massenweise Funde Ok, bitte mal den adwCleaner wiederholen, oder findest es nix mehr, hast das schon geprüft?
__________________ Logfiles bitte immer in CODE-Tags posten |
11.11.2016, 19:41 | #11 |
| Windows 8.1 : Avira Fund pua widdit Gen4 und MBAM massenweise Funde Hallo Cosinus, nur damit wir uns richtig verstehen: a. mit AdwCleaner ersten Scan durchgeführt und es gab Funde in Ordnern, Dateien, Registry etc. b. weiter mit Löschen - Ordner und Dateien wurde abgearbeitet, beim Löschen in der Registry kam Windows Fenster" AdwCleaner funktioniert nicht mehr mit Schliessen Button. Von der bis dahin gelaufenen Entfernung gibt es keinen logfile, vermutlich wegen dem Absturz. c. ohne Neustart o.ä. AdwCleaner erneut gestartet, zweiter Scan und es gab keine Funde mehr bei Ordnern oder Dateien, jedoch bei Registry aber etwa 25-50 weniger als zuvor. d. weiter mit Löschen - lief dann ohne Absturz durch und Neustart. e. JRT laufen lassen f. logs gepostet : AdwCleaner der nach dem zweiten Lauf und Neustart: "AdwCleaner[C0].txt" der gehört zum Suchlauf "AdwCleaner[S1].txt" Macht es für's Verständnis Sinn die "AdwCleaner[C0].txt" in "AdwCleaner[C1].txt" umzubenenen, damit die Zurdnung zum Scan gegeben ist? Wenn ich heute am Nachmittag wieder zu hause bin werde ich den AdwCleaner nochmal laufen lassen... Vielen Dank schonmal Volker Hallo Cosinus, nochmal gescannt und einen Fund, gelöscht, automatischer neustart manuell nochmal neustart, nochmal gescannt gleicher Fund erneut aufgetreten nochmal gelöscht...: Code:
ATTFilter # AdwCleaner v6.030 - Bericht erstellt am 11/11/2016 um 19:17:16 # Aktualisiert am 19/10/2016 von Malwarebytes # Datenbank : 2016-11-10.1 [Server] # Betriebssystem : Windows 8.1 (X64) # Benutzername : jarnds - IDEA-PC # Gestartet von : C:\Users\jarnds\Desktop\AdwCleaner_6.030.exe # Modus: Löschen # Unterstützung : hxxps://www.malwarebytes.com/support ***** [ Dienste ] ***** ***** [ Ordner ] ***** ***** [ Dateien ] ***** ***** [ DLL ] ***** ***** [ WMI ] ***** ***** [ Verknüpfungen ] ***** ***** [ Aufgabenplanung ] ***** ***** [ Registrierungsdatenbank ] ***** [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Browser Updater ***** [ Browser ] ***** ************************* :: "Tracing" Schlüssel gelöscht :: Winsock Einstellungen zurückgesetzt :: Proxy Einstellungen zurückgesetzt :: Internet Explorer Richtlinien gelöscht :: Chrome Richtlinien gelöscht ************************* C:\AdwCleaner\AdwCleaner[C0].txt - [0 Bytes] - [11/11/2016 19:08:29] C:\AdwCleaner\AdwCleaner[C1].txt - [36704 Bytes] - [11/11/2016 08:20:06] C:\AdwCleaner\AdwCleaner[C3].txt - [1186 Bytes] - [11/11/2016 19:17:16] C:\AdwCleaner\AdwCleaner[S0].txt - [40048 Bytes] - [11/11/2016 08:11:12] C:\AdwCleaner\AdwCleaner[S1].txt - [37312 Bytes] - [11/11/2016 08:17:06] C:\AdwCleaner\AdwCleaner[S2].txt - [1676 Bytes] - [11/11/2016 19:16:37] ########## EOF - C:\AdwCleaner\AdwCleaner[C3].txt - [1480 Bytes] ########## Code:
ATTFilter # AdwCleaner v6.030 - Bericht erstellt am 11/11/2016 um 19:33:22 # Aktualisiert am 19/10/2016 von Malwarebytes # Datenbank : 2016-11-10.1 [Server] # Betriebssystem : Windows 8.1 (X64) # Benutzername : jarnds - IDEA-PC # Gestartet von : C:\Users\jarnds\Desktop\AdwCleaner_6.030.exe # Modus: Löschen # Unterstützung : hxxps://www.malwarebytes.com/support ***** [ Dienste ] ***** ***** [ Ordner ] ***** ***** [ Dateien ] ***** ***** [ DLL ] ***** ***** [ WMI ] ***** ***** [ Verknüpfungen ] ***** ***** [ Aufgabenplanung ] ***** ***** [ Registrierungsdatenbank ] ***** [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Browser Updater ***** [ Browser ] ***** ************************* :: "Tracing" Schlüssel gelöscht :: Winsock Einstellungen zurückgesetzt :: Proxy Einstellungen zurückgesetzt :: Internet Explorer Richtlinien gelöscht :: Chrome Richtlinien gelöscht ************************* C:\AdwCleaner\AdwCleaner[C0].txt - [0 Bytes] - [11/11/2016 19:08:29] C:\AdwCleaner\AdwCleaner[C1].txt - [36704 Bytes] - [11/11/2016 08:20:06] C:\AdwCleaner\AdwCleaner[C3].txt - [1563 Bytes] - [11/11/2016 19:17:16] C:\AdwCleaner\AdwCleaner[C4].txt - [1259 Bytes] - [11/11/2016 19:33:22] C:\AdwCleaner\AdwCleaner[S0].txt - [40048 Bytes] - [11/11/2016 08:11:12] C:\AdwCleaner\AdwCleaner[S1].txt - [37312 Bytes] - [11/11/2016 08:17:06] C:\AdwCleaner\AdwCleaner[S2].txt - [1676 Bytes] - [11/11/2016 19:16:37] C:\AdwCleaner\AdwCleaner[S3].txt - [1822 Bytes] - [11/11/2016 19:31:22] ########## EOF - C:\AdwCleaner\AdwCleaner[C4].txt - [1626 Bytes] ########## edit: war immernoch da und ich gehe davon aus das auch diese Löschung nicht von Dauer war: Code:
ATTFilter # AdwCleaner v6.030 - Bericht erstellt am 11/11/2016 um 19:52:37 # Aktualisiert am 19/10/2016 von Malwarebytes # Datenbank : 2016-11-10.1 [Server] # Betriebssystem : Windows 8.1 (X64) # Benutzername : jarnds - IDEA-PC # Gestartet von : C:\Users\jarnds\Desktop\AdwCleaner_6.030.exe # Modus: Löschen # Unterstützung : hxxps://www.malwarebytes.com/support ***** [ Dienste ] ***** ***** [ Ordner ] ***** ***** [ Dateien ] ***** ***** [ DLL ] ***** ***** [ WMI ] ***** ***** [ Verknüpfungen ] ***** ***** [ Aufgabenplanung ] ***** ***** [ Registrierungsdatenbank ] ***** [-] Schlüssel gelöscht: [x64] HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Browser Updater ***** [ Browser ] ***** ************************* :: "Tracing" Schlüssel gelöscht :: Winsock Einstellungen zurückgesetzt :: Proxy Einstellungen zurückgesetzt :: Internet Explorer Richtlinien gelöscht :: Chrome Richtlinien gelöscht ************************* C:\AdwCleaner\AdwCleaner[C0].txt - [0 Bytes] - [11/11/2016 19:08:29] C:\AdwCleaner\AdwCleaner[C1].txt - [36704 Bytes] - [11/11/2016 08:20:06] C:\AdwCleaner\AdwCleaner[C3].txt - [1563 Bytes] - [11/11/2016 19:17:16] C:\AdwCleaner\AdwCleaner[C4].txt - [1709 Bytes] - [11/11/2016 19:33:22] C:\AdwCleaner\AdwCleaner[C5].txt - [1332 Bytes] - [11/11/2016 19:52:37] C:\AdwCleaner\AdwCleaner[S0].txt - [40048 Bytes] - [11/11/2016 08:11:12] C:\AdwCleaner\AdwCleaner[S1].txt - [37312 Bytes] - [11/11/2016 08:17:06] C:\AdwCleaner\AdwCleaner[S2].txt - [1676 Bytes] - [11/11/2016 19:16:37] C:\AdwCleaner\AdwCleaner[S3].txt - [1822 Bytes] - [11/11/2016 19:31:22] C:\AdwCleaner\AdwCleaner[S4].txt - [1968 Bytes] - [11/11/2016 19:51:58] ########## EOF - C:\AdwCleaner\AdwCleaner[C5].txt - [1772 Bytes] ########## Geändert von Specht (11.11.2016 um 19:56 Uhr) Grund: logfile C5 hinzu |
11.11.2016, 22:27 | #12 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Windows 8.1 : Avira Fund pua widdit Gen4 und MBAM massenweise Funde Dann zeig mal frische FRST Logs. Haken setzen bei addition.txt dann auf Untersuchen klicken
__________________ Logfiles bitte immer in CODE-Tags posten |
11.11.2016, 23:49 | #13 |
| Windows 8.1 : Avira Fund pua widdit Gen4 und MBAM massenweise Funde Bitte sehr: Code:
ATTFilter Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version: 04-11-2016 durchgeführt von jarnds (Administrator) auf IDEA-PC (11-11-2016 23:45:13) Gestartet von C:\Users\jarnds\Desktop Geladene Profile: jarnds (Verfügbare Profile: jarnds) Platform: Windows 8.1 (Update) (X64) Sprache: Deutsch (Deutschland) Internet Explorer Version 11 (Standard-Browser: FF) Start-Modus: Normal Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Prozesse (Nicht auf der Ausnahmeliste) ================= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.) (AMD) C:\Windows\System32\atiesrxx.exe (Advanced Micro Devices, Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe (Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (Conexant Systems Inc.) C:\Windows\System32\CxAudMsg64.exe (Microsoft Corporation) C:\Program Files\Microsoft Office 15\ClientX64\integratedoffice.exe (Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe (Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe (Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe (Microsoft Corporation) C:\Windows\System32\rundll32.exe (AMD) C:\Windows\System32\atieclxx.exe (Microsoft Corporation) C:\Windows\System32\SkyDrive.exe (Conexant Systems, Inc.) C:\Program Files\CONEXANT\cAudioFilterAgent\CAudioFilterAgent64.exe (Lenovo (Beijing) Limited) C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe (Lenovo(beijing) Limited) C:\Program Files (x86)\Lenovo\Energy Management\utility.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe (Spotify Ltd) C:\Users\jarnds\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe (CyberLink) C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe (CyberLink Corp.) C:\Program Files (x86)\Lenovo\YouCam\YouCamTray.exe (CyberLink Corp.) C:\Program Files (x86)\Lenovo\PowerDVD10\PDVD10Serv.exe (Geek Software GmbH) C:\Program Files (x86)\PDF24\pdf24.exe (Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe ==================== Registry (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.) HKLM\...\Run: [SmartAudio] => C:\Program Files\CONEXANT\SAII\SACpl.exe [1647616 2012-06-13] (Conexant Systems, Inc.) HKLM\...\Run: [cAudioFilterAgent] => C:\Program Files\Conexant\cAudioFilterAgent\cAudioFilterAgent64.exe [887968 2012-06-14] (Conexant Systems, Inc.) HKLM\...\Run: [Energy Management] => C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe [17079376 2012-11-24] (Lenovo (Beijing) Limited) HKLM\...\Run: [EnergyUtility] => C:\Program Files (x86)\Lenovo\Energy Management\Utility.exe [191568 2012-11-24] (Lenovo(beijing) Limited) HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2916152 2012-08-14] (Synaptics Incorporated) HKLM\...\Run: [EPSON Stylus DX4000 Series] => C:\WINDOWS\system32\spool\DRIVERS\x64\3\E_FATIBEE.EXE /FU "C:\WINDOWS\TEMP\E_S8DD9.tmp" /EF "HKLM" HKLM-x32\...\Run: [Dolby Advanced Audio v2] => C:\Program Files (x86)\Dolby Advanced Audio v2\pcee4.exe [508656 2012-07-25] (Dolby Laboratories Inc.) HKLM-x32\...\Run: [YouCam Mirage] => C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe [136488 2012-07-27] (CyberLink) HKLM-x32\...\Run: [YouCam Tray] => C:\Program Files (x86)\Lenovo\YouCam\YouCamTray.exe [167024 2012-07-27] (CyberLink Corp.) HKLM-x32\...\Run: [UpdateP2GShortCut] => C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe [217088 2012-04-18] (CyberLink Corp.) HKLM-x32\...\Run: [RemoteControl10] => C:\Program Files (x86)\Lenovo\PowerDVD10\PDVD10Serv.exe [91432 2012-03-28] (CyberLink Corp.) HKLM-x32\...\Run: [Intel AppUp(SM) center] => C:\Program Files (x86)\Intel\IntelAppStore\bin\ismagent.exe [155488 2012-07-12] (Intel Corporation) HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [59720 2013-04-21] (Apple Inc.) HKLM-x32\...\Run: [PDFPrint] => C:\Program Files (x86)\PDF24\pdf24.exe [193568 2014-11-28] (Geek Software GmbH) HKU\S-1-5-19\Control Panel\Desktop\\SCRNSAVE.EXE -> HKU\S-1-5-20\Control Panel\Desktop\\SCRNSAVE.EXE -> HKU\S-1-5-21-2925157275-2194030336-170780499-1002\...\Run: [Spotify] => C:\Users\jarnds\AppData\Roaming\Spotify\Spotify.exe [4736000 2014-04-12] (Spotify Ltd) HKU\S-1-5-21-2925157275-2194030336-170780499-1002\...\Run: [Spotify Web Helper] => C:\Users\jarnds\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe [1140736 2014-04-12] (Spotify Ltd) HKU\S-1-5-21-2925157275-2194030336-170780499-1002\Control Panel\Desktop\\SCRNSAVE.EXE -> HKU\S-1-5-18\Control Panel\Desktop\\SCRNSAVE.EXE -> ShellIconOverlayIdentifiers: [SugarSyncBackedUp] -> {0C4A258A-3F3B-4FFF-80A7-9B3BEC139472} => C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll [2012-05-14] (SugarSync, Inc.) ShellIconOverlayIdentifiers: [SugarSyncPending] -> {62CCD8E3-9C21-41E1-B55E-1E26DFC68511} => C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll [2012-05-14] (SugarSync, Inc.) ShellIconOverlayIdentifiers: [SugarSyncRoot] -> {A759AFF6-5851-457D-A540-F4ECED148351} => C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll [2012-05-14] (SugarSync, Inc.) ShellIconOverlayIdentifiers: [SugarSyncShared] -> {1574C9EF-7D58-488F-B358-8B78C1538F51} => C:\Program Files (x86)\SugarSync\SugarSyncShellExt_x64.dll [2012-05-14] (SugarSync, Inc.) ==================== Internet (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.) Tcpip\Parameters: [DhcpNameServer] 192.168.179.1 Tcpip\..\Interfaces\{3D9DD881-644D-44E1-9FC4-EBE582EB2E77}: [DhcpNameServer] 192.168.179.1 Internet Explorer: ================== HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = about:blank HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = about:blank HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = about:blank HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = about:blank HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKU\S-1-5-21-2925157275-2194030336-170780499-1002\Software\Microsoft\Internet Explorer\Main,Start Page = about:newtab HKU\S-1-5-21-2925157275-2194030336-170780499-1002\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://lenovo13.msn.com HKU\S-1-5-21-2925157275-2194030336-170780499-1002\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = hxxp://www.lenovo.com SearchScopes: HKLM-x32 -> DefaultScope {afdbddaa-5d3f-42ee-b79c-185a7020515b} URL = SearchScopes: HKU\S-1-5-21-2925157275-2194030336-170780499-1002 -> DefaultScope {afdbddaa-5d3f-42ee-b79c-185a7020515b} URL = FireFox: ======== FF DefaultProfile: 34iib2ul.Standard-Benutzer FF ProfilePath: C:\Users\jarnds\AppData\Roaming\Mozilla\Firefox\Profiles\6yqza5ii.default [nicht gefunden] FF ProfilePath: C:\Users\jarnds\AppData\Roaming\Mozilla\Firefox\Profiles\245ui9kl.default-1478367702295 [2016-11-05] FF ProfilePath: C:\Users\jarnds\AppData\Roaming\Mozilla\Firefox\Profiles\34iib2ul.Standard-Benutzer [2016-11-11] FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_23_0_0_207.dll [2016-11-10] () FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_23_0_0_207.dll [2016-11-10] () Chrome: ======= CHR HKLM-x32\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - hxxps://clients2.google.com/service/update2/crx ==================== Dienste (Nicht auf der Ausnahmeliste) ==================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R2 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [361984 2012-08-06] (Advanced Micro Devices, Inc.) [Datei ist nicht signiert] S3 LSCWinService; C:\Program Files\Lenovo\Lenovo Solution Center\App\LSCWinService.exe [1674720 2013-09-25] () S4 MBAMScheduler; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamscheduler.exe [1514464 2016-03-10] (Malwarebytes) S2 MBAMService; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe [1136608 2016-03-10] (Malwarebytes) R2 OfficeSvc; C:\Program Files\Microsoft Office 15\ClientX64\integratedoffice.exe [1907896 2013-10-31] (Microsoft Corporation) S3 SXDS10; C:\Program Files (x86)\Common Files\soft Xpansion\sxds10.exe [234096 2013-07-24] (soft Xpansion) S3 vmicguestinterface; C:\WINDOWS\System32\ICSvc.dll [524800 2014-10-29] (Microsoft Corporation) S3 vmicheartbeat; C:\WINDOWS\System32\ICSvc.dll [524800 2014-10-29] (Microsoft Corporation) S3 vmickvpexchange; C:\WINDOWS\System32\ICSvc.dll [524800 2014-10-29] (Microsoft Corporation) S3 vmicshutdown; C:\WINDOWS\System32\ICSvc.dll [524800 2014-10-29] (Microsoft Corporation) S3 vmictimesync; C:\WINDOWS\System32\ICSvc.dll [524800 2014-10-29] (Microsoft Corporation) S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [366552 2015-07-07] (Microsoft Corporation) R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23824 2015-07-07] (Microsoft Corporation) ===================== Treiber (Nicht auf der Ausnahmeliste) ====================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) R3 BCM43XX; C:\WINDOWS\system32\DRIVERS\bcmwl63a.sys [8536752 2013-07-01] (Broadcom Corporation) S0 ebdrv; C:\WINDOWS\System32\drivers\evbda.sys [3357024 2013-08-22] (Broadcom Corporation) R3 MBAMProtector; C:\WINDOWS\system32\drivers\mbam.sys [27008 2016-03-10] (Malwarebytes) S3 MBAMWebAccessControl; C:\WINDOWS\system32\drivers\mwac.sys [65408 2016-03-10] (Malwarebytes Corporation) R3 rtsuvc; C:\WINDOWS\system32\DRIVERS\rtsuvc.sys [8222736 2012-06-15] (Realtek Semiconductor Corp.) S0 WdBoot; C:\WINDOWS\System32\drivers\WdBoot.sys [44560 2015-07-07] (Microsoft Corporation) R0 WdFilter; C:\WINDOWS\System32\drivers\WdFilter.sys [270168 2015-07-07] (Microsoft Corporation) S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [114520 2015-07-07] (Microsoft Corporation) S3 wsvd; C:\WINDOWS\system32\DRIVERS\wsvd.sys [102376 2012-06-13] ("CyberLink) ==================== NetSvcs (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Ein Monat: Erstellte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2016-11-11 23:45 - 2016-11-11 23:46 - 00011533 _____ C:\Users\jarnds\Desktop\FRST.txt 2016-11-11 23:45 - 2016-11-11 23:45 - 00000000 ____D C:\Users\jarnds\Desktop\FRST-OlderVersion 2016-11-11 08:06 - 2016-11-11 19:52 - 00000000 ____D C:\AdwCleaner 2016-11-11 02:00 - 2016-11-11 02:10 - 00212572 _____ C:\TDSSKiller.3.1.0.12_11.11.2016_02.00.51_log.txt 2016-11-11 01:57 - 2016-11-11 01:57 - 04747704 _____ (AO Kaspersky Lab) C:\Users\jarnds\Desktop\tdsskiller.exe 2016-11-11 00:18 - 2016-11-11 00:18 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2016-11-10 23:38 - 2016-11-11 01:56 - 00000000 ____D C:\ProgramData\Malwarebytes' Anti-Malware (portable) 2016-11-10 23:36 - 2016-11-11 01:56 - 00000000 ____D C:\Users\jarnds\Desktop\mbar 2016-11-10 23:30 - 2016-11-10 23:31 - 16563352 _____ (Malwarebytes Corp.) C:\Users\jarnds\Desktop\mbar-1.09.3.1001.exe 2016-11-05 22:17 - 2016-11-05 22:17 - 01631928 _____ (Malwarebytes) C:\Users\jarnds\Desktop\JRT.exe 2016-11-05 22:13 - 2016-11-05 22:13 - 03910208 _____ C:\Users\jarnds\Desktop\AdwCleaner_6.030.exe 2016-11-05 20:07 - 2016-11-11 23:45 - 00000000 ____D C:\FRST 2016-11-05 19:02 - 2016-11-10 23:38 - 00192216 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys 2016-11-05 19:01 - 2016-11-10 23:38 - 00000000 ____D C:\ProgramData\Malwarebytes 2016-11-05 19:01 - 2016-11-10 23:36 - 00109272 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamchameleon.sys 2016-11-05 19:01 - 2016-11-05 20:17 - 00001119 _____ C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk 2016-11-05 19:01 - 2016-11-05 19:01 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 2016-11-05 19:01 - 2016-11-05 19:01 - 00000000 ____D C:\Program Files (x86)\ Malwarebytes Anti-Malware 2016-11-05 19:01 - 2016-03-10 14:09 - 00065408 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mwac.sys 2016-11-05 19:01 - 2016-03-10 14:08 - 00027008 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbam.sys 2016-11-05 18:59 - 2016-11-05 18:59 - 00000000 ____D C:\ProgramData\McAfee 2016-11-05 18:41 - 2016-11-05 18:41 - 00000000 ____D C:\Users\jarnds\Desktop\Alte Firefox-Daten 2016-11-05 18:16 - 2016-11-11 23:45 - 02410496 _____ (Farbar) C:\Users\jarnds\Desktop\FRST64.exe 2016-11-05 18:11 - 2016-11-05 18:13 - 22851472 _____ (Malwarebytes ) C:\Users\jarnds\Downloads\mbam-setup-2.2.1.1043.exe 2016-11-05 15:43 - 2016-11-05 15:47 - 00000826 _____ C:\WINDOWS\system32\Drivers\etc\hosts.txt ==================== Ein Monat: Geänderte Dateien und Ordner ======== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.) 2016-11-11 23:47 - 2012-12-24 18:55 - 00003596 _____ C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-2925157275-2194030336-170780499-1002 2016-11-11 23:43 - 2014-02-09 12:02 - 00000000 __RDO C:\Users\jarnds\SkyDrive 2016-11-11 23:43 - 2013-11-14 08:27 - 01776918 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2016-11-11 23:43 - 2013-11-14 08:11 - 00765582 _____ C:\WINDOWS\system32\perfh007.dat 2016-11-11 23:43 - 2013-11-14 08:11 - 00159366 _____ C:\WINDOWS\system32\perfc007.dat 2016-11-11 23:43 - 2013-08-22 14:36 - 00000000 ____D C:\WINDOWS\Inf 2016-11-11 19:54 - 2013-08-22 15:45 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT 2016-11-11 19:27 - 2014-03-11 23:44 - 00000884 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job 2016-11-11 19:06 - 2014-02-09 12:29 - 00003930 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{FEE97374-AEDC-4953-8182-67E829191DD3} 2016-11-11 19:02 - 2014-05-20 00:48 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2016-11-11 19:02 - 2013-08-22 14:25 - 00524288 ___SH C:\WINDOWS\system32\config\BBI 2016-11-11 08:12 - 2012-11-24 11:11 - 00000000 ____D C:\Program Files (x86)\Amazon 2016-11-10 20:34 - 2013-08-22 16:36 - 00000000 ___HD C:\Program Files\WindowsApps 2016-11-10 20:34 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\AppReadiness 2016-11-10 20:27 - 2014-03-11 23:44 - 00003772 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater 2016-11-10 20:27 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\SysWOW64\Macromed 2016-11-10 20:27 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\system32\Macromed 2016-11-10 20:25 - 2013-11-09 10:24 - 00000000 ____D C:\ProgramData\Avira 2016-11-10 20:16 - 2013-11-09 10:34 - 00000000 ____D C:\Users\jarnds\AppData\Roaming\Avira 2016-11-05 20:18 - 2014-05-20 00:48 - 00001182 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk 2016-11-05 20:18 - 2014-02-08 20:51 - 00001547 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk 2016-11-05 20:18 - 2013-07-07 20:50 - 00002519 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk 2016-11-05 20:18 - 2012-11-24 11:11 - 00002447 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Amazon.lnk 2016-11-05 20:18 - 2012-11-24 11:05 - 00001973 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lenovo Cloud Storage by SugarSync.lnk 2016-11-05 20:18 - 2012-11-24 10:54 - 00002435 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office.lnk 2016-11-05 20:18 - 2012-11-24 10:34 - 00002189 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerXpress.lnk 2016-11-05 20:17 - 2015-03-08 15:12 - 00001096 _____ C:\Users\Public\Desktop\PDF24 Creator.lnk 2016-11-05 20:17 - 2015-03-08 15:12 - 00001076 _____ C:\Users\Public\Desktop\PDF24 Fax.lnk 2016-11-05 20:17 - 2014-05-20 00:48 - 00001164 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk 2016-11-05 20:17 - 2013-11-09 09:49 - 00001996 _____ C:\Users\Public\Desktop\Lenovo Solution Center.lnk 2016-11-05 20:17 - 2012-11-24 11:20 - 00002135 _____ C:\Users\Public\Desktop\OneKey Recovery.lnk 2016-11-05 20:17 - 2012-11-24 11:18 - 00002244 _____ C:\Users\Public\Desktop\Intel AppUp(SM) center.lnk 2016-11-05 20:17 - 2012-11-24 11:10 - 00002182 _____ C:\Users\Public\Desktop\Lenovo PowerDVD 10.lnk 2016-11-05 20:17 - 2012-11-24 11:03 - 00001235 _____ C:\Users\Public\Desktop\Lenovo YouCam.lnk 2016-11-05 20:17 - 2012-11-24 10:57 - 00002077 _____ C:\Users\Public\Desktop\Benutzerhandbuch.lnk 2016-11-05 20:17 - 2012-11-24 10:56 - 00001182 _____ C:\Users\Public\Desktop\Microsoft Office 2010 Activation.lnk 2016-11-05 20:16 - 2014-02-09 11:53 - 00001461 _____ C:\Users\jarnds\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2016-11-05 20:16 - 2013-08-15 16:46 - 00001821 _____ C:\Users\jarnds\Desktop\Spotify.lnk 2016-11-05 20:16 - 2013-08-15 16:46 - 00001807 _____ C:\Users\jarnds\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Spotify.lnk 2016-11-05 20:16 - 2012-12-24 18:45 - 00001133 _____ C:\Users\jarnds\Desktop\Cyberlink Power2Go.lnk 2016-11-05 20:10 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\Camera 2016-11-05 16:56 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\system32\NDF 2016-11-05 15:44 - 2012-07-26 08:59 - 00000000 ____D C:\WINDOWS\CbsTemp 2016-11-05 15:03 - 2013-08-22 15:44 - 00338016 _____ C:\WINDOWS\system32\FNTCACHE.DAT ==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse ======= 2012-11-24 10:47 - 2012-11-24 10:47 - 0000000 ____H () C:\ProgramData\DP45977C.lfl Einige Dateien in TEMP: ==================== C:\Users\jarnds\AppData\Local\Temp\avgnt.exe C:\Users\jarnds\AppData\Local\Temp\libeay32.dll C:\Users\jarnds\AppData\Local\Temp\msvcr120.dll C:\Users\jarnds\AppData\Local\Temp\sqlite3.dll ==================== Bamital & volsnap ====================== (Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.) C:\WINDOWS\system32\winlogon.exe => Datei ist digital signiert C:\WINDOWS\system32\wininit.exe => Datei ist digital signiert C:\WINDOWS\explorer.exe => Datei ist digital signiert C:\WINDOWS\SysWOW64\explorer.exe => Datei ist digital signiert C:\WINDOWS\system32\svchost.exe => Datei ist digital signiert C:\WINDOWS\SysWOW64\svchost.exe => Datei ist digital signiert C:\WINDOWS\system32\services.exe => Datei ist digital signiert C:\WINDOWS\system32\User32.dll => Datei ist digital signiert C:\WINDOWS\SysWOW64\User32.dll => Datei ist digital signiert C:\WINDOWS\system32\userinit.exe => Datei ist digital signiert C:\WINDOWS\SysWOW64\userinit.exe => Datei ist digital signiert C:\WINDOWS\system32\rpcss.dll => Datei ist digital signiert C:\WINDOWS\system32\dnsapi.dll => Datei ist digital signiert C:\WINDOWS\SysWOW64\dnsapi.dll => Datei ist digital signiert C:\WINDOWS\system32\Drivers\volsnap.sys => Datei ist digital signiert LastRegBack: 2016-11-05 16:35 ==================== Ende von FRST.txt ============================ Code:
ATTFilter Zusätzliches Untersuchungsergebnis von Farbar Recovery Scan Tool (x64) Version: 04-11-2016 durchgeführt von jarnds (11-11-2016 23:47:44) Gestartet von C:\Users\jarnds\Desktop Windows 8.1 (Update) (X64) (2014-02-09 10:52:35) Start-Modus: Normal ========================================================== ==================== Konten: ============================= Administrator (S-1-5-21-2925157275-2194030336-170780499-500 - Administrator - Disabled) Gast (S-1-5-21-2925157275-2194030336-170780499-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-2925157275-2194030336-170780499-1004 - Limited - Enabled) jarnds (S-1-5-21-2925157275-2194030336-170780499-1002 - Administrator - Enabled) => C:\Users\jarnds ==================== Sicherheits-Center ======================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er entfernt.) AV: Windows Defender (Enabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} AS: Windows Defender (Enabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installierte Programme ====================== (Nur Adware-Programme mit dem Zusatz "Hidden" können in die Fixlist aufgenommen werden, um sie sichtbar zu machen. Die Adware-Programme sollten manuell deinstalliert werden.) Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 19.0.0.190 - Adobe Systems Incorporated) Adobe Flash Player 23 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 23.0.0.207 - Adobe Systems Incorporated) AMD Catalyst Install Manager (HKLM\...\{DA51A69D-5D86-8A3D-1A4E-CB7CA80BA803}) (Version: 8.0.881.0 - Advanced Micro Devices, Inc.) Apple Application Support (HKLM-x32\...\{5D09C772-ECB3-442B-9CC6-B4341C78FDC2}) (Version: 2.3.4 - Apple Inc.) Apple Mobile Device Support (HKLM\...\{2F72F540-1F60-4266-9506-952B21D6640D}) (Version: 6.1.0.13 - Apple Inc.) Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.) Benutzerhandbuch (x32 Version: 1.0.0.9 - Lenovo) Hidden Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.) Conexant HD Audio (HKLM\...\CNXT_AUDIO_HDA) (Version: 8.54.44.50 - Conexant) Dolby Advanced Audio v2 (HKLM-x32\...\{B9E70C7A-9F85-4A39-A4A3-BFA3C3BF7613}) (Version: 7.2.8000.16 - Dolby Laboratories Inc) Energy Management (HKLM-x32\...\InstallShield_{D0956C11-0F60-43FE-99AD-524E833471BB}) (Version: 8.0.2.3 - Lenovo) Energy Management (x32 Version: 8.0.2.3 - Lenovo) Hidden Intel AppUp(SM) center (HKLM-x32\...\Intel AppUp(SM) center 33057) (Version: 3.6.1.33057.10 - Intel) Lenovo EasyCamera (HKLM-x32\...\{E0A7ED39-8CD6-4351-93C3-69CCA00D12B4}) (Version: 6.1.7600.167 - Realtek Semiconductor Corp.) Lenovo OneKey Recovery (HKLM-x32\...\InstallShield_{46F4D124-20E5-4D12-BE52-EC177A7A4B42}) (Version: 8.0.0.0828 - CyberLink Corp.) Lenovo OneKey Recovery (Version: 8.0.0.0828 - CyberLink Corp.) Hidden Lenovo PowerDVD10 (HKLM-x32\...\InstallShield_{DEC235ED-58A4-4517-A278-C41E8DAEAB3B}) (Version: 10.0.4310.52 - CyberLink Corp.) Lenovo PowerDVD10 (x32 Version: 10.0.4310.52 - CyberLink Corp.) Hidden Lenovo Solution Center (HKLM\...\{D60E3A84-5DDC-49ED-B9A5-E3466996EB36}) (Version: 2.3.002.00 - Lenovo Group Limited) Lenovo YouCam (HKLM-x32\...\InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}) (Version: 4.1.3127 - CyberLink Corp.) Lenovo YouCam (x32 Version: 4.1.3127 - CyberLink Corp.) Hidden Lenovo_Wireless_Driver (HKLM-x32\...\{5D642A72-8194-4A22-80DA-11FE610CCA8E}) (Version: 6.30.5926 - Lenovo) Microsoft Office (HKLM-x32\...\{95140000-0070-0000-0000-0000000FF1CE}) (Version: 14.0.6120.5004 - Microsoft Corporation) Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Mozilla Firefox 43.0.1 (x86 de) (HKLM-x32\...\Mozilla Firefox 43.0.1 (x86 de)) (Version: 43.0.1 - Mozilla) Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 43.0.1.5828 - Mozilla) PIF DESIGNER (HKLM-x32\...\{B90450DF-E781-46FD-B1F1-0C86DA40E443}) (Version: - ) Power2Go (HKLM-x32\...\{40BF1E83-20EB-11D8-97C5-0009C5020658}) (Version: 5.6.0.9109 - CyberLink Corp.) PowerXpressHybrid (x32 Version: 1.00.0000 - Advanced Micro Devices, Inc.) Hidden Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 8.3.730.2012 - Realtek) Realtek USB 2.0 Card Reader (HKLM-x32\...\{96AE7E41-E34E-47D0-AC07-1091A8127911}) (Version: 6.1.8400.39030 - Realtek Semiconductor Corp.) Shared C Run-time for x64 (HKLM\...\{EF79C448-6946-4D71-8134-03407888C054}) (Version: 10.0.0 - McAfee) Spotify (HKU\S-1-5-21-2925157275-2194030336-170780499-1002\...\Spotify) (Version: 0.9.4.178.g259772ba - Spotify AB) SugarSync Manager (HKLM-x32\...\SugarSync) (Version: 1.9.61.90905 - SugarSync, Inc.) Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 16.2.10.3 - Synaptics Incorporated) UserGuide (HKLM-x32\...\InstallShield_{F07C2CF8-4C53-4EC3-8162-A6221E36EB88}) (Version: 1.0.0.9 - Lenovo) Windows Utils (HKLM-x32\...\Windows Utils) (Version: - ) Windows-Treiberpaket - Lenovo (ACPIVPC) System (06/15/2012 8.1.0.1) (HKLM\...\71BC3FD63F450BA0A957AAECBDB4A000C4F2BE42) (Version: 06/15/2012 8.1.0.1 - Lenovo) Windows-Treiberpaket - Lenovo (WUDFRd) LenovoVhid (06/19/2012 10.13.29.733) (HKLM\...\8A223E56FB1ED4F697B54E5BF96F1EB63B512684) (Version: 06/19/2012 10.13.29.733 - Lenovo) ==================== Benutzerdefinierte CLSID (Nicht auf der Ausnahmeliste): ========================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) ==================== Geplante Aufgaben (Nicht auf der Ausnahmeliste) ============= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) Task: {30FCF0F2-59EC-4698-8D0F-88D4FBC8EEEC} - System32\Tasks\Lenovo\Lenovo Solution Center Launcher => C:\Program Files\lenovo\lenovo solution center\App\LSCService.exe [2013-09-25] (Lenovo) Task: {374BEFC5-C6E8-44C1-8E0D-3DB14FCCC3A9} - System32\Tasks\Lenovo\Lenovo Customer Feedback Program => C:\Program Files\Lenovo\Customer Feedback Program\Lenovo.TVT.CustomerFeedback.Agent.exe [2013-09-25] (Lenovo) Task: {40C8B641-12C6-41B5-9E21-FDCC90468F3F} - System32\Tasks\Adobe Flash Player Updater => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-11-10] (Adobe Systems Incorporated) Task: {4636EB35-E9A7-4698-BBB9-7680B44F840D} - \FinishInstall igdhbblpcellaljokkpfhcjlagemhgjl -> Keine Datei <==== ACHTUNG Task: {48F65704-D1F1-4934-823F-40745AC69F81} - System32\Tasks\MirageAgent => C:\Program Files (x86)\Lenovo\YouCam\YCMMirage.exe [2012-07-27] (CyberLink) Task: {5AF8D227-D5EB-43AA-AC8F-FED97A4D618A} - System32\Tasks\OFFICE2010ACT => C:\ProgramData\Microsoft\Windows\OFFICEICON.vbs [2012-03-08] () Task: {89792738-EA22-4631-8F08-9B31E23D9F20} - System32\Tasks\Microsoft\Windows\PLA\LSC Memory => Rundll32.exe C:\WINDOWS\system32\pla.dll,PlaHost "LSC Memory" "$(Arg0)" Task: {8FF1B24C-0761-4E0C-A6BF-6EEFA889A378} - \SystemSockets\SystemSockets -> Keine Datei <==== ACHTUNG Task: {B0794DF4-8EBE-438D-8489-76814BCC683C} - System32\Tasks\Lenovo\LSC\LSCHardwareScanPostpone => C:\Program Files\Lenovo\Lenovo Solution Center\LSC.exe [2013-09-25] () Task: {C17D7A75-CE89-4E94-99D1-D3EEE22B6B24} - System32\Tasks\Microsoft\Office\Office First Run Task => C:\Program Files\Microsoft Office 15\ClientX64\integratedoffice.exe [2013-10-31] (Microsoft Corporation) Task: {C216D323-DEA5-45F1-B4AC-9E71C2C9C328} - System32\Tasks\Lenovo\LSC\LSCHardwareScan => C:\Program Files\Lenovo\Lenovo Solution Center\LSC.exe [2013-09-25] () Task: {E5AEEE15-714D-4984-B535-88BFE03B9620} - \ProtectedSearch\Protected Search -> Keine Datei <==== ACHTUNG (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Aufgabe verschoben. Die Datei, die durch die Aufgabe gestartet wird, wird nicht verschoben.) Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe Task: C:\WINDOWS\Tasks\Synaptics TouchPad Enhancements.job => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe ==================== Verknüpfungen ============================= (Die Einträge können gelistet werden, um sie zurückzusetzen oder zu entfernen.) ==================== Geladene Module (Nicht auf der Ausnahmeliste) ============== 2012-08-06 12:09 - 2012-08-06 12:09 - 00073728 _____ () C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Container.Wlan.dll 2014-01-21 15:00 - 2013-08-23 14:45 - 00386216 _____ () C:\Program Files\Microsoft Office 15\ClientX64\c2rui.dll 2014-01-21 15:00 - 2013-10-31 09:08 - 00520872 _____ () C:\Program Files\Microsoft Office 15\ClientX64\c2r64.dll 2014-01-21 15:00 - 2013-10-31 09:07 - 00618152 _____ () C:\Program Files\Microsoft Office 15\ClientX64\StreamServer.dll 2013-04-21 20:44 - 2013-04-21 20:44 - 00087952 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll 2013-04-21 20:44 - 2013-04-21 20:44 - 01242952 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll ==================== Alternate Data Streams (Nicht auf der Ausnahmeliste) ========= (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird nur der ADS entfernt.) ==================== Abgesicherter Modus (Nicht auf der Ausnahmeliste) =================== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Der Wert "AlternateShell" wird wiederhergestellt.) ==================== Verknüpfungen (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt.) ==================== Internet Explorer Vertrauenswürdig/Eingeschränkt =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt.) ==================== Hosts Inhalt: =============================== (Wenn benötigt kann der Hosts: Schalter in die Fixlist aufgenommen werden um die Hosts Datei zurückzusetzen.) 2013-08-22 14:25 - 2016-11-05 15:46 - 00000826 ____A C:\WINDOWS\system32\Drivers\etc\hosts ==================== Andere Bereiche ============================ (Aktuell gibt es keinen automatisierten Fix für diesen Bereich.) HKU\S-1-5-21-2925157275-2194030336-170780499-1002\Control Panel\Desktop\\Wallpaper -> C:\WINDOWS\web\wallpaper\Windows\img0.jpg DNS Servers: 192.168.179.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) Windows Firewall ist aktiviert. ==================== MSCONFIG/TASK MANAGER Deaktivierte Einträge == HKLM\...\StartupApproved\Run: => "SmartAudio" HKU\S-1-5-21-2925157275-2194030336-170780499-1002\...\StartupApproved\StartupFolder: => "OpenOffice.org 3.4.1.lnk" HKU\S-1-5-21-2925157275-2194030336-170780499-1002\...\StartupApproved\StartupFolder: => "net.lnk" HKU\S-1-5-21-2925157275-2194030336-170780499-1002\...\StartupApproved\Run: => "Spotify" ==================== Firewall Regeln (Nicht auf der Ausnahmeliste) =============== (Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.) FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139 FirewallRules: [{31590E0A-FAAE-447E-9B7A-FA87632EC5AE}] => (Allow) C:\SoloApp\IEDriverServer.exe FirewallRules: [{9AF1C3AA-33BF-4701-A0B3-D8F60FBC89E4}] => (Allow) C:\SoloApp\IEDriverServer.exe FirewallRules: [{4D266399-AE88-4B4B-ACD5-4ABC89A6CA15}] => (Allow) C:\SoloApp\chromedriver.exe FirewallRules: [{52DA6642-1AFE-4251-873A-309CA185C268}] => (Allow) C:\SoloApp\chromedriver.exe FirewallRules: [{38652F35-A200-4CF9-ACEE-330FC4F72EDE}] => (Allow) C:\SoloApp\WebDriver.dll FirewallRules: [{83A415A1-FF13-4DEB-A172-1240E42B5EFC}] => (Allow) C:\SoloApp\WebDriver.dll FirewallRules: [{E003B8C9-5E4F-402E-995B-F28E0C5A5203}] => (Allow) C:\SoloApp\SoloApp.exe FirewallRules: [{2B9BA723-70F6-4F8B-A274-C0AF47FF86AF}] => (Allow) C:\SoloApp\SoloApp.exe FirewallRules: [{951152AC-5938-463E-A4BD-1CC7A25EE652}] => (Allow) C:\Program Files (x86)\HomeTab\WConnectorProductivity.exe FirewallRules: [{911B08D9-9153-4F3F-B01F-E0B0BAFDF623}] => (Allow) C:\Program Files (x86)\HomeTab\WConnectorProductivity.exe FirewallRules: [{B539FE22-3BF6-49C5-92F4-7CCDB1FF0605}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserUpdate.exe FirewallRules: [{02D6218F-0D26-42E9-A6E5-EA98D68D91D5}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserUpdate.exe FirewallRules: [{F5268360-5A40-4CBF-B932-538D0DD8C510}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserKeeper.exe FirewallRules: [{9CD77AAA-BE42-4B8D-BEE2-555940B52F94}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserKeeper.exe FirewallRules: [{9328B87C-00CC-4143-A01E-6FF904A9F231}] => (Allow) C:\SoloApp\IEDriverServer.exe FirewallRules: [{3C2A740C-0B17-4328-88F7-28B3C1DB7CC8}] => (Allow) C:\SoloApp\IEDriverServer.exe FirewallRules: [{D5DB7653-A0FA-4F31-A589-2817D54E5859}] => (Allow) C:\SoloApp\chromedriver.exe FirewallRules: [{F7E4409A-FDDD-4CFD-9516-0968544317D3}] => (Allow) C:\SoloApp\chromedriver.exe FirewallRules: [{BC162ED2-CA18-4227-84E2-58B65194C295}] => (Allow) C:\SoloApp\WebDriver.dll FirewallRules: [{61C489B2-D70A-493D-872A-BE2838728531}] => (Allow) C:\SoloApp\WebDriver.dll FirewallRules: [{20BA8097-93B8-40BD-A6F7-170E92874CEA}] => (Allow) C:\SoloApp\SoloApp.exe FirewallRules: [{97057C07-7E9C-4CFC-A522-70F19AD1032C}] => (Allow) C:\SoloApp\SoloApp.exe FirewallRules: [{48C87C68-9932-4AC1-9AFD-EF00B5A1EC36}] => (Allow) C:\Program Files (x86)\HomeTab\SystemSockets.exe FirewallRules: [{8E595196-C629-4532-BAA4-856B1BCDF5DE}] => (Allow) C:\Program Files (x86)\HomeTab\SystemSockets.exe FirewallRules: [{53F879C1-7615-4CC3-BDB2-5EDB27AEC893}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll FirewallRules: [{014ACAD2-93CF-4CAB-A997-4362A4A0654C}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll FirewallRules: [{8035EDEA-1935-416E-8BC7-CBCAF28922F3}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe FirewallRules: [{20595299-7EF0-49B4-BEBF-CF6C98162B15}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe FirewallRules: [{F2B8D30D-D9A1-4453-9346-33F7C865E490}] => (Allow) C:\SoloApp\IEDriverServer.exe FirewallRules: [{7C53AF69-78FD-4C1F-A8A7-F77F8E698709}] => (Allow) C:\SoloApp\IEDriverServer.exe FirewallRules: [{4A0761E7-CDFD-4016-89D4-5A5124026644}] => (Allow) C:\SoloApp\chromedriver.exe FirewallRules: [{C9A39840-A786-4F7F-88D8-CBC526DB72A8}] => (Allow) C:\SoloApp\chromedriver.exe FirewallRules: [{499DE789-DD1E-4209-830C-95CF609F2F75}] => (Allow) C:\SoloApp\WebDriver.dll FirewallRules: [{37BD4560-B275-43B2-A88B-EEA988F6A573}] => (Allow) C:\SoloApp\WebDriver.dll FirewallRules: [{53DD9A22-7C68-47E9-B61B-990245D74E29}] => (Allow) C:\SoloApp\SoloApp.exe FirewallRules: [{6E89E8D7-A98A-4EE4-935E-E8A7D783A13C}] => (Allow) C:\SoloApp\SoloApp.exe FirewallRules: [{1537DDA4-8E1E-4D37-9D85-624DAF2867A6}] => (Allow) C:\Program Files (x86)\HomeTab\SystemSockets.exe FirewallRules: [{2128FB05-D1A1-49DF-A15A-DC52FB56890F}] => (Allow) C:\Program Files (x86)\HomeTab\SystemSockets.exe FirewallRules: [{FF6A9488-B212-4FF2-BA0E-A227ADA93438}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll FirewallRules: [{2C473823-E1BB-4397-A7F2-67EEF4722759}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll FirewallRules: [{0B241084-D2A6-4CE8-947F-5E7FE88324D4}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe FirewallRules: [{2C534EE3-C0C0-42B5-9C72-576C4D3AE6E4}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe FirewallRules: [{93BA86E4-D995-43D3-B8D2-324C8D221487}] => (Allow) C:\SoloApp\IEDriverServer.exe FirewallRules: [{34C4EB29-30FC-487F-A042-6C31DDA02450}] => (Allow) C:\SoloApp\IEDriverServer.exe FirewallRules: [{D2E92FA3-8BF9-430F-9F13-F046B87F3DB2}] => (Allow) C:\SoloApp\chromedriver.exe FirewallRules: [{4AE533F3-BB8F-4520-870A-524E1335605E}] => (Allow) C:\SoloApp\chromedriver.exe FirewallRules: [{8BD71011-69CA-4D20-A53F-BD1443F9FDCF}] => (Allow) C:\SoloApp\WebDriver.dll FirewallRules: [{1ACEE7CF-44BB-463C-B477-22617906C956}] => (Allow) C:\SoloApp\WebDriver.dll FirewallRules: [{948F7E6D-F190-4972-8D16-DF4B22B7B666}] => (Allow) C:\SoloApp\SoloApp.exe FirewallRules: [{F288092D-3BAE-4AEC-B95D-C6B8F4F952CB}] => (Allow) C:\SoloApp\SoloApp.exe FirewallRules: [{EB687779-4CEE-473C-989A-81EEC8B3C92D}] => (Allow) C:\Program Files (x86)\HomeTab\SystemSockets.exe FirewallRules: [{CDD6AC48-A17D-4906-B78E-EC171D56E4E3}] => (Allow) C:\Program Files (x86)\HomeTab\SystemSockets.exe FirewallRules: [{3C917DF0-2088-4B2E-BD10-2CC7680C3DEC}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll FirewallRules: [{9D7B740B-B52F-4945-A8F9-93A8E353C1F0}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll FirewallRules: [{7F3A91F9-334B-412C-AE42-A0A88B832705}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe FirewallRules: [{B701500E-5E1D-452A-A92D-23A3D4D69CC2}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe FirewallRules: [{7BE8A5A0-5F79-476F-8963-B2A7998D4E24}] => (Allow) C:\SoloApp\IEDriverServer.exe FirewallRules: [{E01A2EBB-AE86-442E-B160-406A8C9FBFF9}] => (Allow) C:\SoloApp\IEDriverServer.exe FirewallRules: [{9D6F68AD-4777-4421-BF54-2388C2F1297D}] => (Allow) C:\SoloApp\chromedriver.exe FirewallRules: [{476B36F0-9672-45BD-BF9F-EBB3F36B011B}] => (Allow) C:\SoloApp\chromedriver.exe FirewallRules: [{63600070-64BA-4C68-9A06-B5D84439B547}] => (Allow) C:\SoloApp\WebDriver.dll FirewallRules: [{20098C27-19DA-4E10-9D0E-CB18CA2FFF8B}] => (Allow) C:\SoloApp\WebDriver.dll FirewallRules: [{C2DA7802-338A-45EA-8535-9FA3003E7DD6}] => (Allow) C:\SoloApp\SoloApp.exe FirewallRules: [{C0F30C29-EF1E-4F18-AC64-3C1830AC416D}] => (Allow) C:\SoloApp\SoloApp.exe FirewallRules: [{693A86A9-189A-4236-8615-D45450DC8868}] => (Allow) C:\Program Files (x86)\HomeTab\SystemSockets.exe FirewallRules: [{A8C50975-AB94-4988-A76F-DB67CBE080FA}] => (Allow) C:\Program Files (x86)\HomeTab\SystemSockets.exe FirewallRules: [{5E8AE0F7-8651-497B-8574-34A2EACD4776}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll FirewallRules: [{4A16538D-B50F-4542-BDB9-FE3FF9FCC450}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll FirewallRules: [{BF243955-62D0-4D9F-BE34-345260D40EB9}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe FirewallRules: [{A89EF238-D275-436C-98F8-58B8ABF5767B}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe FirewallRules: [{2F656A69-11C2-4919-8753-6DCEBCAC3E09}] => (Allow) C:\SoloApp\IEDriverServer.exe FirewallRules: [{D97B3C91-6C8D-4948-A40F-74A2955E7B43}] => (Allow) C:\SoloApp\IEDriverServer.exe FirewallRules: [{1541082C-FE94-4792-A030-3C435490E22C}] => (Allow) C:\SoloApp\chromedriver.exe FirewallRules: [{1046A633-9C0C-43E7-BE0A-E02068DBFDCB}] => (Allow) C:\SoloApp\chromedriver.exe FirewallRules: [{52318557-024C-458A-AAAD-C191FED0E8BA}] => (Allow) C:\SoloApp\WebDriver.dll FirewallRules: [{CCF808D5-014D-46BB-8C0E-44ECD1C556BD}] => (Allow) C:\SoloApp\WebDriver.dll FirewallRules: [{7CCE5FAE-5891-4522-8A36-79E21D08B684}] => (Allow) C:\SoloApp\SoloApp.exe FirewallRules: [{E728B728-F9D7-4E82-BDBA-74D6CDA3B168}] => (Allow) C:\SoloApp\SoloApp.exe FirewallRules: [{C64B9D04-6013-44BF-8511-0D1BFE85D22A}] => (Allow) C:\Program Files (x86)\HomeTab\SystemSockets.exe FirewallRules: [{94CB7B4F-13AC-4B74-96BC-CA4D3F23FC78}] => (Allow) C:\Program Files (x86)\HomeTab\SystemSockets.exe FirewallRules: [{821A5ACD-982B-4AC4-9ACA-8627B413E92D}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll FirewallRules: [{29B35728-AA64-4FF9-84BE-E66B7412F9CC}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll FirewallRules: [{C4CA091C-0EC4-4289-90B9-8FA3AA499F29}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe FirewallRules: [{9ACA624B-79F7-4160-B071-4A25A58C688E}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe FirewallRules: [{CE301A57-222F-42AF-94C0-51B7F0FAECEA}] => (Allow) C:\SoloApp\IEDriverServer.exe FirewallRules: [{2CF705A1-C2AB-4E5D-B7EA-DC622DAFAC7C}] => (Allow) C:\SoloApp\IEDriverServer.exe FirewallRules: [{0233841C-A823-4887-A143-18D0A9D81440}] => (Allow) C:\SoloApp\chromedriver.exe FirewallRules: [{3435CB49-FF3E-456B-B41A-FD8A3D5CF78A}] => (Allow) C:\SoloApp\chromedriver.exe FirewallRules: [{DB43AAA0-A5BD-4767-B73F-4FCA082E6142}] => (Allow) C:\SoloApp\WebDriver.dll FirewallRules: [{7CA83588-686B-4C8A-A9B7-1639510EF125}] => (Allow) C:\SoloApp\WebDriver.dll FirewallRules: [{94C9006F-4AFB-45FE-8384-AE641CF1CD3E}] => (Allow) C:\SoloApp\SoloApp.exe FirewallRules: [{A44A047C-C09B-4325-B6F4-6144CFB71A0C}] => (Allow) C:\SoloApp\SoloApp.exe FirewallRules: [{CADAB205-56A4-4D0C-887F-60FBE60AF2C4}] => (Allow) C:\Program Files (x86)\HomeTab\SystemSockets.exe FirewallRules: [{E6ABB99B-A441-4AC4-9681-C17F60ECFE27}] => (Allow) C:\Program Files (x86)\HomeTab\SystemSockets.exe FirewallRules: [{8BF7239F-4D5C-453A-B8FE-981BC5BF9F9A}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll FirewallRules: [{472B9BA0-E489-4F3C-B74C-C0A5BC7478DF}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll FirewallRules: [{9ADA016F-DCBF-46BD-8779-C811C28A2EC8}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe FirewallRules: [{4F000579-4F4C-40CD-B1AF-0862EACE9B83}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe FirewallRules: [{EF46B84E-6601-4A07-A45B-3CC27CEFEA62}] => (Allow) C:\SoloApp\IEDriverServer.exe FirewallRules: [{ABF3B025-76A8-4798-A93C-8075F6DF0AB6}] => (Allow) C:\SoloApp\IEDriverServer.exe FirewallRules: [{D59AC634-3446-4845-A562-41292DA95DCB}] => (Allow) C:\SoloApp\chromedriver.exe FirewallRules: [{2FFCBCD9-AEA7-49A9-8768-7EFA568FF079}] => (Allow) C:\SoloApp\chromedriver.exe FirewallRules: [{770AAF42-670F-4B3E-8B12-F3E72DD2B80A}] => (Allow) C:\SoloApp\WebDriver.dll FirewallRules: [{86ACE32E-52CE-4AEB-93D7-FEEDF04E689F}] => (Allow) C:\SoloApp\WebDriver.dll FirewallRules: [{4A54BCB0-E673-4B91-BCB8-A81D682F7565}] => (Allow) C:\SoloApp\SoloApp.exe FirewallRules: [{C47693AE-5B43-44AC-AED3-CC8A8EDC542D}] => (Allow) C:\SoloApp\SoloApp.exe FirewallRules: [{790C60EB-7796-4FE6-9F8B-1F2E78792961}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll FirewallRules: [{69A3BAE8-8275-40FF-91B3-1BC71B7563CF}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll FirewallRules: [{B8609BF9-EC93-43D8-A0BE-FC224843CCB0}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe FirewallRules: [{9701986D-653C-47F8-8EC9-1412A0B3FB9C}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe FirewallRules: [{610BD408-75E4-4311-B624-E03E171A7C4A}] => (Allow) C:\SoloApp\IEDriverServer.exe FirewallRules: [{B06E2585-505A-403A-B619-677FD0602DD1}] => (Allow) C:\SoloApp\IEDriverServer.exe FirewallRules: [{503D32B1-7F38-4AE8-BC39-6C6484A905E9}] => (Allow) C:\SoloApp\chromedriver.exe FirewallRules: [{A3EB64BE-7EFF-41A8-8F62-73C4ECFF1759}] => (Allow) C:\SoloApp\chromedriver.exe FirewallRules: [{EBA85F56-B894-4730-A716-043D7C054E6F}] => (Allow) C:\SoloApp\WebDriver.dll FirewallRules: [{300C32ED-70CA-4E9D-8BB2-967A751C8279}] => (Allow) C:\SoloApp\WebDriver.dll FirewallRules: [{4C3D55E7-DE5F-46BA-9114-1493B0229134}] => (Allow) C:\SoloApp\SoloApp.exe FirewallRules: [{A5451D3F-0135-407C-AAD7-C7AF50B7CE98}] => (Allow) C:\SoloApp\SoloApp.exe FirewallRules: [{329971F4-2B7D-4DBD-A44C-14DA625A328E}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll FirewallRules: [{A980C57B-6D4E-4093-8805-436194C4D372}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll FirewallRules: [{C897E721-800C-4ABC-B263-92299E7D0F7C}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe FirewallRules: [{3A6505B5-F2A7-44A4-A80F-B07E37F241F3}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe FirewallRules: [{FE1B8DF8-DB12-4BF3-8B06-3F25D130FF15}] => (Allow) C:\SoloApp\IEDriverServer.exe FirewallRules: [{FC6C2A03-EE08-4564-9AC7-F76F35061579}] => (Allow) C:\SoloApp\IEDriverServer.exe FirewallRules: [{522E4468-2BE3-445D-A078-A4A45085ACD8}] => (Allow) C:\SoloApp\chromedriver.exe FirewallRules: [{F6B2FDBF-B457-4A62-973B-893D72342E14}] => (Allow) C:\SoloApp\chromedriver.exe FirewallRules: [{0888CA5C-4836-42E6-80FC-EDA28C714F56}] => (Allow) C:\SoloApp\WebDriver.dll FirewallRules: [{3B35E8AA-DFDE-405C-B3CD-9B6D6D06781F}] => (Allow) C:\SoloApp\WebDriver.dll FirewallRules: [{97CEB64D-315D-4796-B24C-666B2F3B1A7A}] => (Allow) C:\SoloApp\SoloApp.exe FirewallRules: [{8F848D85-E43F-4BDE-A352-519FC1A1CDC9}] => (Allow) C:\SoloApp\SoloApp.exe FirewallRules: [{7A8CFE98-57AF-4F46-A9B3-C704AC94AC01}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll FirewallRules: [{B96DDD1E-B54C-45A6-9B7C-70DECB9F137E}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll FirewallRules: [{224921CA-8021-4318-99BE-86CB06BB4E19}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe FirewallRules: [{1C2F105A-6A10-4E4B-875B-EB004EEDD5A1}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe FirewallRules: [{A9BE2356-0D5B-4DFC-BF3E-CFA1F6428232}] => (Allow) C:\SoloApp\IEDriverServer.exe FirewallRules: [{80A1E00F-1D94-4E8E-B106-4BA94EB3D63F}] => (Allow) C:\SoloApp\IEDriverServer.exe FirewallRules: [{08A43171-B012-4E94-AABA-2A48140D0B40}] => (Allow) C:\SoloApp\chromedriver.exe FirewallRules: [{FAE1DA5E-ED48-4FE2-8642-AF8E67A53D81}] => (Allow) C:\SoloApp\chromedriver.exe FirewallRules: [{2A192649-B91F-4D9F-A5C0-C1B54DADA4CC}] => (Allow) C:\SoloApp\WebDriver.dll FirewallRules: [{51F69816-7C23-4146-899D-5A09FD6D4839}] => (Allow) C:\SoloApp\WebDriver.dll FirewallRules: [{61BA7A75-D729-475B-9ECB-89E64EB560F3}] => (Allow) C:\SoloApp\SoloApp.exe FirewallRules: [{F9285331-CC32-491A-8D75-32E0AD2F76D4}] => (Allow) C:\SoloApp\SoloApp.exe FirewallRules: [{1DCFE372-F202-486B-AB2D-048A4C1CF7B8}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll FirewallRules: [{862D11D4-8E55-482D-9BBA-681DAA213ED9}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll FirewallRules: [{CFE2C457-231A-4D81-8D5B-B9BB9040F7FD}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe FirewallRules: [{C6C5D205-6380-4168-B65C-DFF86C915D50}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe FirewallRules: [{45A2FB6F-0AD9-49F5-AA09-0E07A55E190F}] => (Allow) C:\SoloApp\IEDriverServer.exe FirewallRules: [{AA06C627-D612-444D-BEEF-15B33BADBA75}] => (Allow) C:\SoloApp\IEDriverServer.exe FirewallRules: [{868F5610-B647-49E3-9064-C44D497F4F4F}] => (Allow) C:\SoloApp\chromedriver.exe FirewallRules: [{860F54BC-AA58-468F-A879-D222E24C7516}] => (Allow) C:\SoloApp\chromedriver.exe FirewallRules: [{3E9AE4D0-95E5-4A94-AA52-B3B97983F047}] => (Allow) C:\SoloApp\WebDriver.dll FirewallRules: [{4FEED6F9-7DF3-483A-AD6F-6E7689DA8B9F}] => (Allow) C:\SoloApp\WebDriver.dll FirewallRules: [{D55AC898-A67D-45E0-A9A3-35868505FC88}] => (Allow) C:\SoloApp\SoloApp.exe FirewallRules: [{9D1C5040-356F-448F-BB44-5C64E8A4840C}] => (Allow) C:\SoloApp\SoloApp.exe FirewallRules: [{4EAC440F-B86F-4B96-A4DC-F3B50F84D3D3}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll FirewallRules: [{4A0A1AC3-C263-4919-B2D4-57AFACA69717}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll FirewallRules: [{BA50EE86-6A2A-43C2-994F-F1ACEA0030E3}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe FirewallRules: [{501A1B7C-E39B-48AE-9604-B98AFCC8522A}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe FirewallRules: [{7425428F-C54E-4328-93CD-4975DA98956C}] => (Allow) C:\SoloApp\IEDriverServer.exe FirewallRules: [{94B74269-59FD-4F2B-B768-802B96FFD1A4}] => (Allow) C:\SoloApp\IEDriverServer.exe FirewallRules: [{B21FE7C4-5A1B-4D09-945B-ECD0A9205239}] => (Allow) C:\SoloApp\chromedriver.exe FirewallRules: [{C59DE696-65D2-4457-AF40-06842B393ECF}] => (Allow) C:\SoloApp\chromedriver.exe FirewallRules: [{23BB6799-7491-4032-ADE1-C5F9C9F088AE}] => (Allow) C:\SoloApp\WebDriver.dll FirewallRules: [{2E74C9C2-968D-406D-903E-140B1B273626}] => (Allow) C:\SoloApp\WebDriver.dll FirewallRules: [{A0438996-33C9-4ABE-A7C4-4EC0AF6DEFB3}] => (Allow) C:\SoloApp\SoloApp.exe FirewallRules: [{640F2EA0-4FC4-4053-9EA6-1CDD2F7564CA}] => (Allow) C:\SoloApp\SoloApp.exe FirewallRules: [{43556F8B-EC36-417E-ACD2-0D658FDE64AD}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll FirewallRules: [{C5DCF058-9442-417F-B7E6-56A6E8D6B2D0}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll FirewallRules: [{C82B50BF-370C-49E4-A0F5-E1D448495309}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe FirewallRules: [{8608DC78-80C8-4086-9FE1-3575756BDF51}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe FirewallRules: [{E8BB0448-0283-4DB2-868B-72AACDB35BAF}] => (Allow) C:\SoloApp\IEDriverServer.exe FirewallRules: [{349DF183-2772-4F5D-92EF-9F171C6F21A6}] => (Allow) C:\SoloApp\IEDriverServer.exe FirewallRules: [{F14A55C7-F424-4B89-AEA3-09F56841F687}] => (Allow) C:\SoloApp\chromedriver.exe FirewallRules: [{9AF5F166-82F4-4F13-B9D8-96F696E2E070}] => (Allow) C:\SoloApp\chromedriver.exe FirewallRules: [{8A2D7402-221E-4F7E-9B2C-DD7D6FC90F76}] => (Allow) C:\SoloApp\WebDriver.dll FirewallRules: [{C121E0F4-4157-4DAD-85E8-BE6BDED25231}] => (Allow) C:\SoloApp\WebDriver.dll FirewallRules: [{826B701C-E23B-412B-9183-0613317387C8}] => (Allow) C:\SoloApp\SoloApp.exe FirewallRules: [{0A1361BB-499C-4C17-BE0B-1EC9296E91EE}] => (Allow) C:\SoloApp\SoloApp.exe FirewallRules: [{0B96C217-51EF-4C32-8964-4CA1DF71BD2B}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll FirewallRules: [{688C33BF-4622-4BB8-BA26-6E42D39382D8}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll FirewallRules: [{87928ADE-1D57-4509-87C8-098DCB47D386}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe FirewallRules: [{F00643B8-E3CE-4775-86F6-51E79413B137}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe FirewallRules: [{22E2DFD3-B165-4BEF-A838-F5C3ACD9C859}] => (Allow) C:\SoloApp\IEDriverServer.exe FirewallRules: [{B7C4AB21-E993-4175-B509-3398A8294059}] => (Allow) C:\SoloApp\IEDriverServer.exe FirewallRules: [{68FD1505-5DA2-4605-BCCC-3A2346413B05}] => (Allow) C:\SoloApp\chromedriver.exe FirewallRules: [{BD8B2BA2-B8C4-4E75-837F-FFE3C3070191}] => (Allow) C:\SoloApp\chromedriver.exe FirewallRules: [{7477F066-FA29-4270-8B3A-15DEBCD84596}] => (Allow) C:\SoloApp\WebDriver.dll FirewallRules: [{27ECA754-5039-4254-9DB9-3E4D7E17A5FA}] => (Allow) C:\SoloApp\WebDriver.dll FirewallRules: [{F6B37D29-C842-403D-9DE6-229D2E7812B8}] => (Allow) C:\SoloApp\SoloApp.exe FirewallRules: [{0410562A-BE0E-4524-94AF-D81F9F052BD5}] => (Allow) C:\SoloApp\SoloApp.exe FirewallRules: [{597D5A60-57C5-4B8A-B685-A6A3C5716E16}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll FirewallRules: [{49985A91-FEFF-4CAE-A561-2267D67E044F}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll FirewallRules: [{BC8C0628-01A0-4D13-B6F2-4E1206909AC0}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe FirewallRules: [{A0D7CC96-F058-4BD6-B9AC-495221EB8117}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe FirewallRules: [{F199BC54-93B5-4ED2-AE6B-9241E4B030E1}] => (Allow) C:\SoloApp\IEDriverServer.exe FirewallRules: [{D6FD0F52-2394-48BD-A416-3F82CEE0783F}] => (Allow) C:\SoloApp\IEDriverServer.exe FirewallRules: [{79075692-1B8D-411E-9850-D4F466119479}] => (Allow) C:\SoloApp\chromedriver.exe FirewallRules: [{6C39E8B8-A46F-41C8-98E1-43CDF7E167B5}] => (Allow) C:\SoloApp\chromedriver.exe FirewallRules: [{E8777ECA-9981-4E03-B19C-A3CB016A13DE}] => (Allow) C:\SoloApp\WebDriver.dll FirewallRules: [{98763CE1-0BA1-4823-93B6-6EC31228FF33}] => (Allow) C:\SoloApp\WebDriver.dll FirewallRules: [{DA56AD0B-DDF4-403F-A100-FCE455329225}] => (Allow) C:\SoloApp\SoloApp.exe FirewallRules: [{BE184A7B-A579-455C-B578-2D01DE8674C4}] => (Allow) C:\SoloApp\SoloApp.exe FirewallRules: [{12099873-151E-40F8-B473-2D077BD5FFF6}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll FirewallRules: [{25011FE2-5EE9-459A-9E8D-D77BF46A854D}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll FirewallRules: [{EDE0BB71-693D-4B38-8263-27621FCB327F}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe FirewallRules: [{CF95AC47-8CB6-4073-80A9-B5A4CD1DEF87}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe FirewallRules: [{038B64F2-C6F3-4D0F-98C9-376BB96B8191}] => (Allow) C:\SoloApp\IEDriverServer.exe FirewallRules: [{F82CB92D-C3FC-47D6-9936-7F1B12E2DA94}] => (Allow) C:\SoloApp\IEDriverServer.exe FirewallRules: [{C000DC8D-E822-4C45-9431-CD3C02FC72A2}] => (Allow) C:\SoloApp\chromedriver.exe FirewallRules: [{C36F51AE-7106-4284-832D-46F7844C76B5}] => (Allow) C:\SoloApp\chromedriver.exe FirewallRules: [{9683FC4D-8B28-402C-A18C-2D2B5D5CF9E5}] => (Allow) C:\SoloApp\WebDriver.dll FirewallRules: [{EE6E0641-8D7B-49AF-90BD-1234DED64F50}] => (Allow) C:\SoloApp\WebDriver.dll FirewallRules: [{E7DE0040-D393-489E-B775-DD9DFA104580}] => (Allow) C:\SoloApp\SoloApp.exe FirewallRules: [{94EEB4DC-D75D-4D1A-BBFF-F1E588E8E9C0}] => (Allow) C:\SoloApp\SoloApp.exe FirewallRules: [{E07FC2BE-D183-4029-8871-B034E1F6F4DE}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll FirewallRules: [{C144F242-B0D1-4895-A4E6-AD1401B36070}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll FirewallRules: [{12D59EC9-BEF2-4105-AAB7-D8BB5ED0C85D}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe FirewallRules: [{A7E35E64-C4F8-492C-9B31-E90E90E556EE}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe FirewallRules: [{1CB617D2-2505-489C-949A-DC23600EF932}] => (Allow) C:\SoloApp\IEDriverServer.exe FirewallRules: [{EA0D3658-EBB3-4C7C-8926-7E3B1EC0C122}] => (Allow) C:\SoloApp\IEDriverServer.exe FirewallRules: [{6D34D0F9-0410-4AAD-991E-50D05EA692B5}] => (Allow) C:\SoloApp\chromedriver.exe FirewallRules: [{9FF90B96-F508-435F-A01B-A47052B0A256}] => (Allow) C:\SoloApp\chromedriver.exe FirewallRules: [{BCC020B5-99C8-4E29-913D-0F9691E0FCA3}] => (Allow) C:\SoloApp\WebDriver.dll FirewallRules: [{56906E79-86DB-4BB7-97A5-FBAE89F83739}] => (Allow) C:\SoloApp\WebDriver.dll FirewallRules: [{9008C01A-9D48-47F9-A396-9DE508CAB429}] => (Allow) C:\SoloApp\SoloApp.exe FirewallRules: [{3182E752-92B7-4F2F-8A98-24863288CE4E}] => (Allow) C:\SoloApp\SoloApp.exe FirewallRules: [{0B5C8683-63AB-4A72-8E5B-EDD9C4571AAE}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll FirewallRules: [{653E02C0-9625-4593-8DB9-939629144265}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll FirewallRules: [{A7CCCDE5-286C-4D23-AEEA-607F68EBE476}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe FirewallRules: [{88745674-C7B8-4A18-9062-096E7D9016FF}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe FirewallRules: [{41FBF40B-9C0C-42FE-ABF4-46A89EC818D8}] => (Allow) C:\SoloApp\IEDriverServer.exe FirewallRules: [{AA5999D3-37CA-4E3B-86ED-DC0136BB500A}] => (Allow) C:\SoloApp\IEDriverServer.exe FirewallRules: [{70FE0C02-5E55-4758-B640-82DA08071854}] => (Allow) C:\SoloApp\chromedriver.exe FirewallRules: [{DBC761AC-83DF-4EF3-B636-65CDBEAF45F8}] => (Allow) C:\SoloApp\chromedriver.exe FirewallRules: [{32F0025B-CAC6-4AB9-B511-977FA813541F}] => (Allow) C:\SoloApp\WebDriver.dll FirewallRules: [{BADB996C-7CC3-45D4-99D7-1803E13B4973}] => (Allow) C:\SoloApp\WebDriver.dll FirewallRules: [{13B4CBD4-58FB-404A-ACA2-F787E74A0E2F}] => (Allow) C:\SoloApp\SoloApp.exe FirewallRules: [{7EBD0A31-6CF6-4343-B655-F6EC023E2DE3}] => (Allow) C:\SoloApp\SoloApp.exe FirewallRules: [{A6C5C766-6BA9-4579-8020-4EAE45C009B5}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll FirewallRules: [{B0F2D13C-A47A-4BF6-A9A9-40A1A3C1782F}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll FirewallRules: [{749141CD-8077-4F59-BCE7-764829287671}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe FirewallRules: [{405C4447-A183-4A9D-BC87-EFC98180D983}] => (Allow) C:\Program Files (x86)\HomeTab\ProtectedSearch.exe FirewallRules: [{6C814FD0-0094-4959-A215-04DE6EDEF98B}] => (Allow) C:\SoloApp\IEDriverServer.exe FirewallRules: [{A6DCE084-3539-4421-A070-3709E87A7C25}] => (Allow) C:\SoloApp\IEDriverServer.exe FirewallRules: [{16CF2BE6-B8CE-4D03-879E-3CB788550A65}] => (Allow) C:\SoloApp\chromedriver.exe FirewallRules: [{9E321DAC-B3B8-4C5D-9656-061CBE7A8512}] => (Allow) C:\SoloApp\chromedriver.exe FirewallRules: [{716B60C1-D593-48E4-8FC0-10AA221F71A4}] => (Allow) C:\SoloApp\WebDriver.dll FirewallRules: [{9068F229-695C-4A19-BCB5-488A0A2579FA}] => (Allow) C:\SoloApp\WebDriver.dll FirewallRules: [{7B404E5B-09BA-41AC-9160-C8E52C34CC9D}] => (Allow) C:\SoloApp\SoloApp.exe FirewallRules: [{3BBDFA93-C1AC-43AB-8DEA-3DBAD02E44D9}] => (Allow) C:\SoloApp\SoloApp.exe FirewallRules: [{CD9D11BA-6FFC-4B30-B7F9-EC008CD11E62}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll FirewallRules: [{DBCDC030-3B58-480D-A38A-C2019A9E2DD3}] => (Allow) C:\Program Files (x86)\HomeTab\TBUpdater.dll FirewallRules: [{ABDE343B-78B4-4B44-A148-B9BC5F8BAB74}] => (Allow) C:\Program Files (x86)\Iminent\Iminent.exe FirewallRules: [{1D22FFEE-3D08-40BD-9A4C-8D3D3949BD83}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{415864A7-9908-4246-9F86-E1A5E31E8F87}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe FirewallRules: [{428EAA71-A610-49EA-9E7F-392B8F308D25}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{793BD6DF-DCD4-4A56-B352-9D95940E9C7D}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe FirewallRules: [{20A83936-11C4-400D-9615-2EE09871FD75}] => (Allow) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\WebKit2WebProcess.exe FirewallRules: [{9DCD87DF-07B0-4745-98E9-3E1084481DF8}] => (Allow) C:\Program Files\Common Files\mcafee\mcsvchost\McSvHost.exe FirewallRules: [{CC95D4E5-9334-4944-A5CD-9720B4CB26C8}] => (Allow) C:\Program Files\Common Files\mcafee\mcsvchost\McSvHost.exe FirewallRules: [{94C036E6-8C28-49C8-A6D1-BE4D52FF77C1}] => (Allow) C:\Program Files (x86)\Lenovo\PowerDVD10\PowerDVD10.EXE FirewallRules: [{22130532-8E60-4BF6-A954-4023004A95AC}] => (Allow) C:\Program Files (x86)\Lenovo\PowerDVD10\PowerDVD Cinema\PowerDVDCinema10.exe FirewallRules: [TCP Query User{398197DB-BBB5-42E4-B2E8-2322FCABEE5C}C:\users\jarnds\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\jarnds\appdata\roaming\spotify\spotify.exe FirewallRules: [UDP Query User{DE2EC066-64A1-4826-8E29-FBDC30D2980A}C:\users\jarnds\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\jarnds\appdata\roaming\spotify\spotify.exe FirewallRules: [{706D0B25-8F5A-49E4-A092-BB322D7A7CC5}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserKeeper.exe FirewallRules: [{91F479DE-C747-4F78-988E-A93B6D9C2258}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserKeeper.exe FirewallRules: [{F257BBDB-A209-44A9-9162-305CE609AD90}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserUpdate.exe FirewallRules: [{4DD5178B-61CD-43BC-9B00-BA1ABDA93A84}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserUpdate.exe FirewallRules: [{70297660-F42E-4B92-B1B5-94D31A85F393}] => (Allow) C:\Program Files (x86)\HomeTab\WConnectorProductivity.exe FirewallRules: [{17BA08DB-E255-4B76-AB97-D2AE49B86DA6}] => (Allow) C:\Program Files (x86)\HomeTab\WConnectorProductivity.exe FirewallRules: [{36C2D94F-147C-476C-9FA8-986E1994B9F7}] => (Allow) C:\SoloApp\SoloApp.exe FirewallRules: [{BF0472E3-99D2-4589-8A70-04EF63F89C96}] => (Allow) C:\SoloApp\SoloApp.exe FirewallRules: [{031BB25A-8509-4373-89B0-1F132EBD91B4}] => (Allow) C:\SoloApp\WebDriver.dll FirewallRules: [{503503CC-1003-42F4-9A54-B0F35F6894C8}] => (Allow) C:\SoloApp\WebDriver.dll FirewallRules: [{6F0318AA-12AF-4271-BCC3-25F7A0AA9E06}] => (Allow) C:\SoloApp\chromedriver.exe FirewallRules: [{0BA3770D-B148-4F0A-865A-22FD6C139713}] => (Allow) C:\SoloApp\chromedriver.exe FirewallRules: [{15E2EE43-0831-43A2-8155-A19B13332F0C}] => (Allow) C:\SoloApp\IEDriverServer.exe FirewallRules: [{59592524-F01C-4961-ABFE-31D8D906612C}] => (Allow) C:\SoloApp\IEDriverServer.exe FirewallRules: [{E2A31FFC-E0F7-44F7-8809-0622DF087C17}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserKeeper.exe FirewallRules: [{D83DC77B-C665-4363-A75E-FC081BEDD191}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserKeeper.exe FirewallRules: [{6624CBFF-0E82-436C-BE4E-28F0ED0DFD97}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserUpdate.exe FirewallRules: [{6DA21A69-8476-4D31-9CC8-555ACDAB3B06}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserUpdate.exe FirewallRules: [{EB887EF1-072C-4CEE-A53F-222A5CF1840F}] => (Allow) C:\Program Files (x86)\HomeTab\WConnectorProductivity.exe FirewallRules: [{325D826D-4AE6-4123-AA82-37C9EE0341A8}] => (Allow) C:\Program Files (x86)\HomeTab\WConnectorProductivity.exe FirewallRules: [{FCE81CCC-07BE-472B-BA0E-FAE5FDB7CD81}] => (Allow) C:\SoloApp\SoloApp.exe FirewallRules: [{91FF10B0-5791-44BA-A346-8E3F20B20DBA}] => (Allow) C:\SoloApp\SoloApp.exe FirewallRules: [{6AC3201B-F2D9-46B5-9D52-806AB0BBD50A}] => (Allow) C:\SoloApp\WebDriver.dll FirewallRules: [{6F537ECA-AC5D-46D7-8F32-A015DAC39F3C}] => (Allow) C:\SoloApp\WebDriver.dll FirewallRules: [{A6C9E89E-E9CE-4E55-B83F-D5A62297F8EC}] => (Allow) C:\SoloApp\chromedriver.exe FirewallRules: [{A88C80A9-2C62-47D3-983F-E068741FC4B5}] => (Allow) C:\SoloApp\chromedriver.exe FirewallRules: [{2C591D70-20AC-42A6-B51D-40C5DD41127B}] => (Allow) C:\SoloApp\IEDriverServer.exe FirewallRules: [{83C21D89-78E2-4AC9-B5B9-6212B62D29AC}] => (Allow) C:\SoloApp\IEDriverServer.exe FirewallRules: [TCP Query User{C2934761-D822-4864-BB08-2C60312059F1}C:\windows\system32\settingsynchost.exe] => (Block) C:\windows\system32\settingsynchost.exe FirewallRules: [UDP Query User{BCAF1FFB-A14D-4D05-A55F-95B55E9DBA6F}C:\windows\system32\settingsynchost.exe] => (Block) C:\windows\system32\settingsynchost.exe FirewallRules: [{6CB4D00D-EDE5-4A86-89AE-C8A6E15B0888}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserKeeper.exe FirewallRules: [{5F748ADD-F759-4CA1-8DB3-2757976044A7}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserKeeper.exe FirewallRules: [{59AD263C-6B51-422E-8930-A0406CCF3CD5}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserUpdate.exe FirewallRules: [{71BDC5D6-A6EF-4BA9-8A4A-EADA018F8483}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserUpdate.exe FirewallRules: [{8A195016-EBAE-46D5-AD01-A929EB9D6048}] => (Allow) C:\Program Files (x86)\HomeTab\WConnectorProductivity.exe FirewallRules: [{F8E040BB-53E9-46DA-B3C3-9ADA2DADB83B}] => (Allow) C:\Program Files (x86)\HomeTab\WConnectorProductivity.exe FirewallRules: [{42FFD4EA-04B1-4A91-9831-7C831C27A2F7}] => (Allow) C:\SoloApp\SoloApp.exe FirewallRules: [{0BD01A86-0249-44EB-A4AA-EAC51F0AA84D}] => (Allow) C:\SoloApp\SoloApp.exe FirewallRules: [{8E452D66-D046-41DA-A018-3704BCCBC16F}] => (Allow) C:\SoloApp\WebDriver.dll FirewallRules: [{B74ECE61-A8AA-4B6A-B4F1-E23ED68DFF97}] => (Allow) C:\SoloApp\WebDriver.dll FirewallRules: [{492D74C7-EE95-40D4-B16E-83A6E0C99A11}] => (Allow) C:\SoloApp\chromedriver.exe FirewallRules: [{F9635B67-F3BD-4F0E-8C45-9E19115E397D}] => (Allow) C:\SoloApp\chromedriver.exe FirewallRules: [{649DE97B-6335-4F8D-A618-FD5653C9682A}] => (Allow) C:\SoloApp\IEDriverServer.exe FirewallRules: [{7819A9DE-C509-4894-B451-9C1E632DD45A}] => (Allow) C:\SoloApp\IEDriverServer.exe FirewallRules: [{053C0C1F-15C9-4FF3-B93B-F3DF39ED83DD}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserKeeper.exe FirewallRules: [{4C62D7DE-1371-4148-A557-6BCC08D79995}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserKeeper.exe FirewallRules: [{60F9F069-6D70-47B9-915B-09C9524226A6}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserUpdate.exe FirewallRules: [{735637BF-9406-445C-AFB8-04D3CC6F4884}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserUpdate.exe FirewallRules: [{E71CFAAD-84CB-44D1-97B5-2EC93EB74338}] => (Allow) C:\Program Files (x86)\HomeTab\WConnectorProductivity.exe FirewallRules: [{6000085B-525E-4554-981C-AD9D606DC35F}] => (Allow) C:\Program Files (x86)\HomeTab\WConnectorProductivity.exe FirewallRules: [{5FFB4236-6DB6-4384-A55C-F9B4013CB927}] => (Allow) C:\SoloApp\SoloApp.exe FirewallRules: [{3DF20882-D778-4A89-9580-70A40B2AD9AD}] => (Allow) C:\SoloApp\SoloApp.exe FirewallRules: [{9EDC2681-A33A-470F-90BA-7FC9178DC72C}] => (Allow) C:\SoloApp\WebDriver.dll FirewallRules: [{B763D42E-A30B-4A75-9739-E79CA77395D5}] => (Allow) C:\SoloApp\WebDriver.dll FirewallRules: [{4179F09D-4086-467B-A821-D54701973C8C}] => (Allow) C:\SoloApp\chromedriver.exe FirewallRules: [{6406F1A1-A104-42DC-99B4-252BFE515FE5}] => (Allow) C:\SoloApp\chromedriver.exe FirewallRules: [{1EF125B0-495A-4AE0-B226-48DAACA72C16}] => (Allow) C:\SoloApp\IEDriverServer.exe FirewallRules: [{F7D78CE8-4DDB-4568-94A6-65077085B46B}] => (Allow) C:\SoloApp\IEDriverServer.exe FirewallRules: [{988A2686-7ABE-40BE-9833-713FAF1D21B9}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserKeeper.exe FirewallRules: [{833406FE-D17C-487A-BDD8-3DA3DC014FAC}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserKeeper.exe FirewallRules: [{0D6EC598-BB65-45D0-A429-1C3A633E65D7}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserUpdate.exe FirewallRules: [{9E8A2B25-B995-464D-A4CC-542E2DC69B25}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserUpdate.exe FirewallRules: [{67B8C221-4A00-4743-BB74-13FEFC9021E7}] => (Allow) C:\Program Files (x86)\HomeTab\WConnectorProductivity.exe FirewallRules: [{790B64F2-387D-4F22-87D6-3816B8664750}] => (Allow) C:\Program Files (x86)\HomeTab\WConnectorProductivity.exe FirewallRules: [{CA2CC5EC-51EB-4CB6-8803-DAC82943877E}] => (Allow) C:\SoloApp\SoloApp.exe FirewallRules: [{2BD181B4-BFB9-4EBF-A6EB-762FC05F0F17}] => (Allow) C:\SoloApp\SoloApp.exe FirewallRules: [{317FA637-1153-4422-84BE-A0D4A348BD4F}] => (Allow) C:\SoloApp\WebDriver.dll FirewallRules: [{E4BAAB0D-F2A5-4521-941E-E37F4323A425}] => (Allow) C:\SoloApp\WebDriver.dll FirewallRules: [{C4CA3589-08D4-43BB-9810-A9000825F61B}] => (Allow) C:\SoloApp\chromedriver.exe FirewallRules: [{07B4D4BE-C20C-4A8F-BD5F-A127740B0EC3}] => (Allow) C:\SoloApp\chromedriver.exe FirewallRules: [{367EE6D9-C351-4BD7-A824-A3CC1224866E}] => (Allow) C:\SoloApp\IEDriverServer.exe FirewallRules: [{7AC8D249-BD35-404C-AD0B-B239AF0B1308}] => (Allow) C:\SoloApp\IEDriverServer.exe FirewallRules: [{483F804F-2FAE-40FF-9862-763EE177AF2B}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserKeeper.exe FirewallRules: [{7F141270-9A23-498D-AA6D-4BBF55219B36}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserKeeper.exe FirewallRules: [{598115EC-2488-4CB7-8ED5-A67911F28860}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserUpdate.exe FirewallRules: [{980C7CF4-4799-4E58-B1AE-968F20C4909A}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserUpdate.exe FirewallRules: [{E516CAB4-9275-4DF5-ADAC-FC08BB6C463F}] => (Allow) C:\Program Files (x86)\HomeTab\WConnectorProductivity.exe FirewallRules: [{12F6B406-3C7C-479B-B594-50F7A832BE11}] => (Allow) C:\Program Files (x86)\HomeTab\WConnectorProductivity.exe FirewallRules: [{A11F19F8-4A64-4AC2-8FCB-BA8F52CA3912}] => (Allow) C:\SoloApp\SoloApp.exe FirewallRules: [{9B4FF904-C223-49E3-AA6C-02CB5CFAB61B}] => (Allow) C:\SoloApp\SoloApp.exe FirewallRules: [{1AB2677D-6D04-41FE-868E-DB4EEFE216AF}] => (Allow) C:\SoloApp\WebDriver.dll FirewallRules: [{7BC657FA-3358-427D-A249-3E51C2CC1D2A}] => (Allow) C:\SoloApp\WebDriver.dll FirewallRules: [{E9CC747E-848E-4E28-B954-9FEAC8165CEF}] => (Allow) C:\SoloApp\chromedriver.exe FirewallRules: [{45BB6DBD-49EA-41B3-936C-609E6FD0F625}] => (Allow) C:\SoloApp\chromedriver.exe FirewallRules: [{BC2AA80B-D18F-4E45-9C42-EEA12D986289}] => (Allow) C:\SoloApp\IEDriverServer.exe FirewallRules: [{72D5AB06-49C4-449C-89FB-4D3CF1E8900F}] => (Allow) C:\SoloApp\IEDriverServer.exe FirewallRules: [{FD8EC38E-3100-453D-80E0-556B9B689254}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserKeeper.exe FirewallRules: [{1D27C5A3-0D8C-4A17-9857-C24CF49F9A64}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserKeeper.exe FirewallRules: [{46633FB3-D418-4F81-99A7-2AA0712DF0EF}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserUpdate.exe FirewallRules: [{81F48220-AF5F-4529-9C00-23E5ACA88788}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserUpdate.exe FirewallRules: [{06DD50F3-2A08-48AB-8020-EBBF57167AAD}] => (Allow) C:\Program Files (x86)\HomeTab\WConnectorProductivity.exe FirewallRules: [{225DE175-DCD5-4FC2-BD4F-FD8B31C8B85E}] => (Allow) C:\Program Files (x86)\HomeTab\WConnectorProductivity.exe FirewallRules: [{EC687276-60EC-4DC3-83FB-0CA7BCEF1BA4}] => (Allow) C:\SoloApp\SoloApp.exe FirewallRules: [{592BBFC3-8637-44F8-B881-AE1B977422E7}] => (Allow) C:\SoloApp\SoloApp.exe FirewallRules: [{71F90671-ABDC-40DB-81D0-C9A7417AB9ED}] => (Allow) C:\SoloApp\WebDriver.dll FirewallRules: [{7EAF8E20-6972-425D-8A2C-45538F6EB327}] => (Allow) C:\SoloApp\WebDriver.dll FirewallRules: [{757F9A66-6F84-4312-8DA2-D94F3742725F}] => (Allow) C:\SoloApp\chromedriver.exe FirewallRules: [{E34CCF70-560D-4AAC-9907-AC07A4819010}] => (Allow) C:\SoloApp\chromedriver.exe FirewallRules: [{314B8DCD-4662-4621-8A38-21C618496255}] => (Allow) C:\SoloApp\IEDriverServer.exe FirewallRules: [{08FCB74A-84DE-44E8-921F-EBE798F09C3F}] => (Allow) C:\SoloApp\IEDriverServer.exe FirewallRules: [{C5BF1D58-5A58-4AFF-B841-31A5CB76990C}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserKeeper.exe FirewallRules: [{4A823372-ABB7-4576-A3CA-EAFE0448C988}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserKeeper.exe FirewallRules: [{3A07D5AC-01DF-40DF-A0D7-F7C234378AC9}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserUpdate.exe FirewallRules: [{EC02A358-5179-4A5D-A1F3-EA1CF8D0DFE2}] => (Allow) C:\Program Files (x86)\HomeTab\WBrowserUpdate.exe FirewallRules: [{1944CFBA-931E-4DEF-81E3-8B2E4AE0B268}] => (Allow) C:\Program Files (x86)\HomeTab\WConnectorProductivity.exe FirewallRules: [{D79D63FF-E808-48A3-877D-E48C777ADD5C}] => (Allow) C:\Program Files (x86)\HomeTab\WConnectorProductivity.exe FirewallRules: [{4F23B67D-ED14-43D6-B414-73C9B478261A}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [{F4505983-B86D-4C28-A59D-BA5CD43ACBF0}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe FirewallRules: [TCP Query User{36F15323-E970-40F7-B583-FC14DA4095D5}C:\program files (x86)\mozilla firefox\firefox.exe] => (Block) C:\program files (x86)\mozilla firefox\firefox.exe FirewallRules: [UDP Query User{BD1E0414-7266-4F2C-9D7F-964FC8A95D76}C:\program files (x86)\mozilla firefox\firefox.exe] => (Block) C:\program files (x86)\mozilla firefox\firefox.exe ==================== Wiederherstellungspunkte ========================= 02-01-2016 23:56:28 Windows Update 02-04-2016 17:46:05 Windows Update 04-09-2016 14:20:47 Removed iTunes 05-11-2016 16:34:50 Windows Update 11-11-2016 08:23:58 JRT Pre-Junkware Removal ==================== Fehlerhafte Geräte im Gerätemanager ============= ==================== Fehlereinträge in der Ereignisanzeige: ========================= Applikationsfehler: ================== Error: (11/11/2016 08:12:18 AM) (Source: Application Error) (EventID: 1000) (User: ) Description: Name der fehlerhaften Anwendung: AdwCleaner_6.030.exe, Version: 6.0.3.0, Zeitstempel: 0x58078d71 Name des fehlerhaften Moduls: AdwCleaner_6.030.exe, Version: 6.0.3.0, Zeitstempel: 0x58078d71 Ausnahmecode: 0xc0000005 Fehleroffset: 0x000211de ID des fehlerhaften Prozesses: 0xac0 Startzeit der fehlerhaften Anwendung: 0x01d23bea21bcc909 Pfad der fehlerhaften Anwendung: C:\Users\jarnds\Desktop\AdwCleaner_6.030.exe Pfad des fehlerhaften Moduls: C:\Users\jarnds\Desktop\AdwCleaner_6.030.exe Berichtskennung: 2dd1bc52-a7de-11e6-bebd-b888e3999fb4 Vollständiger Name des fehlerhaften Pakets: Anwendungs-ID, die relativ zum fehlerhaften Paket ist: Error: (11/11/2016 05:11:46 AM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 16171 Error: (11/11/2016 05:11:46 AM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledEvent 16171 Error: (11/11/2016 05:11:46 AM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: Continuously busy for more than a second Error: (11/11/2016 05:11:44 AM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 14468 Error: (11/11/2016 05:11:44 AM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledEvent 14468 Error: (11/11/2016 05:11:44 AM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: Continuously busy for more than a second Error: (11/11/2016 05:11:42 AM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledSPRetry 12718 Error: (11/11/2016 05:11:42 AM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: m->NextScheduledEvent 12718 Error: (11/11/2016 05:11:42 AM) (Source: Bonjour Service) (EventID: 100) (User: ) Description: Task Scheduling Error: Continuously busy for more than a second Systemfehler: ============= Error: (11/11/2016 08:07:26 PM) (Source: DCOM) (EventID: 10010) (User: IDEA-PC) Description: Der Server "{4545DEA0-2DFC-4906-A728-6D986BA399A9}" konnte innerhalb des angegebenen Zeitabschnitts mit DCOM nicht registriert werden. Error: (11/11/2016 08:07:26 PM) (Source: DCOM) (EventID: 10010) (User: IDEA-PC) Description: Der Server "{4545DEA0-2DFC-4906-A728-6D986BA399A9}" konnte innerhalb des angegebenen Zeitabschnitts mit DCOM nicht registriert werden. Error: (11/11/2016 07:53:22 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Der Dienst "Apple Mobile Device" wurde aufgrund folgenden Fehlers nicht gestartet: Die Pipe wurde beendet. Error: (11/11/2016 07:52:20 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Der Dienst "Windows Search" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 30000 Millisekunden durchgeführt: Neustart des Diensts. Error: (11/11/2016 07:52:19 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Der Dienst "Microsoft Office-Dienst" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 0 Millisekunden durchgeführt: Neustart des Diensts. Error: (11/11/2016 07:52:19 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Dienst "Conexant Audio Message Service" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert. Error: (11/11/2016 07:52:19 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Dienst "Dienst "Bonjour"" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert. Error: (11/11/2016 07:52:18 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Der Dienst "Apple Mobile Device" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 60000 Millisekunden durchgeführt: Neustart des Diensts. Error: (11/11/2016 07:52:18 PM) (Source: Service Control Manager) (EventID: 7034) (User: ) Description: Dienst "AMD FUEL Service" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert. Error: (11/11/2016 07:52:18 PM) (Source: Service Control Manager) (EventID: 7031) (User: ) Description: Der Dienst "Druckwarteschlange" wurde unerwartet beendet. Dies ist bereits 1 Mal vorgekommen. Folgende Korrekturmaßnahmen werden in 5000 Millisekunden durchgeführt: Neustart des Diensts. ==================== Speicherinformationen =========================== Prozessor: AMD E1-1200 APU with Radeon(tm) HD Graphics Prozentuale Nutzung des RAM: 44% Installierter physikalischer RAM: 1606.26 MB Verfügbarer physikalischer RAM: 896.16 MB Summe virtueller Speicher: 3142.26 MB Verfügbarer virtueller Speicher: 2299.39 MB ==================== Laufwerke ================================ Drive c: (Windows8_OS) (Fixed) (Total:250.42 GB) (Free:213.11 GB) NTFS ==>[System mit Startkomponenten (eingeholt von Laufwerk)] Drive d: (LENOVO) (Fixed) (Total:25 GB) (Free:23.27 GB) NTFS ==================== MBR & Partitionstabelle ================== ======================================================== Disk: 0 (Size: 298.1 GB) (Disk ID: 1A079A73) Partition: GPT. ==================== Ende von Addition.txt ============================ |
11.11.2016, 23:51 | #14 |
/// Winkelfunktion /// TB-Süch-Tiger™ | Windows 8.1 : Avira Fund pua widdit Gen4 und MBAM massenweise Funde FRST-Fix Virenscanner jetzt bitte komplett deaktivieren, damit sichergestellt ist, dass der Fix sauber durchläuft! Drücke bitte die Windowstaste + R Taste und schreibe notepad in das Ausführen Fenster. Kopiere nun folgenden Text aus der Code-Box in das leere Textdokument Code:
ATTFilter Task: {4636EB35-E9A7-4698-BBB9-7680B44F840D} - \FinishInstall igdhbblpcellaljokkpfhcjlagemhgjl -> Keine Datei <==== ACHTUNG Task: {8FF1B24C-0761-4E0C-A6BF-6EEFA889A378} - \SystemSockets\SystemSockets -> Keine Datei <==== ACHTUNG Task: {E5AEEE15-714D-4984-B535-88BFE03B9620} - \ProtectedSearch\Protected Search -> Keine Datei <==== ACHTUNG emptytemp: Speichere diese bitte als Fixlist.txt auf deinem Desktop (oder dem Verzeichnis in dem sich FRST befindet).
__________________ Logfiles bitte immer in CODE-Tags posten |
12.11.2016, 00:10 | #15 |
| Windows 8.1 : Avira Fund pua widdit Gen4 und MBAM massenweise Funde Fixlog: Code:
ATTFilter Entferungsergebnis von Farbar Recovery Scan Tool (x64) Version: 04-11-2016 durchgeführt von jarnds (12-11-2016 00:05:56) Run:1 Gestartet von C:\Users\jarnds\Desktop Geladene Profile: jarnds (Verfügbare Profile: jarnds) Start-Modus: Normal ============================================== fixlist Inhalt: ***************** Task: {4636EB35-E9A7-4698-BBB9-7680B44F840D} - \FinishInstall igdhbblpcellaljokkpfhcjlagemhgjl -> Keine Datei <==== ACHTUNG Task: {8FF1B24C-0761-4E0C-A6BF-6EEFA889A378} - \SystemSockets\SystemSockets -> Keine Datei <==== ACHTUNG Task: {E5AEEE15-714D-4984-B535-88BFE03B9620} - \ProtectedSearch\Protected Search -> Keine Datei <==== ACHTUNG emptytemp: ***************** "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{4636EB35-E9A7-4698-BBB9-7680B44F840D}" => Schlüssel erfolgreich entfernt "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{4636EB35-E9A7-4698-BBB9-7680B44F840D}" => Schlüssel erfolgreich entfernt HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\FinishInstall igdhbblpcellaljokkpfhcjlagemhgjl => Schlüssel nicht gefunden. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{8FF1B24C-0761-4E0C-A6BF-6EEFA889A378}" => Schlüssel erfolgreich entfernt "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{8FF1B24C-0761-4E0C-A6BF-6EEFA889A378}" => Schlüssel erfolgreich entfernt HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\SystemSockets\SystemSockets => Schlüssel nicht gefunden. "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{E5AEEE15-714D-4984-B535-88BFE03B9620}" => Schlüssel erfolgreich entfernt "HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E5AEEE15-714D-4984-B535-88BFE03B9620}" => Schlüssel erfolgreich entfernt HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\ProtectedSearch\Protected Search => Schlüssel nicht gefunden. =========== EmptyTemp: ========== BITS transfer queue => 25165824 B DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 30606676 B Java, Flash, Steam htmlcache => 47338 B Windows/system/drivers => 79209612 B Edge => 0 B Chrome => 0 B Firefox => 117169643 B Opera => 0 B Temp, IE cache, history, cookies, recent: Default => 0 B ProgramData => 0 B Public => 0 B systemprofile => 3797 B systemprofile32 => 128 B LocalService => 2330226 B NetworkService => 108464750 B jarnds => 453375816 B RecycleBin => 642 B EmptyTemp: => 778.6 MB temporäre Dateien entfernt. ================================ Das System musste neu gestartet werden. ==== Ende von Fixlog 00:08:51 ==== |
Themen zu Windows 8.1 : Avira Fund pua widdit Gen4 und MBAM massenweise Funde |
askbar, avira, browser-security, datei, dllhost.exe, explorer.exe, free, infizierte, lsass.exe, malware, modul, namen, notebook, pdf, probleme, programm, prozesse, rundll, rundll32.exe, scan, software, spoolsv.exe, svchost.exe, temp, tmp, warnung, windows, winlogon.exe |