so hier ist der log von combfix Code:
ComboFix 13-12-10.01 - test 12.12.2013 9:39.3.4 - x64
Microsoft Windows 7 Home Premium 6.1.7601.1.1252.49.1031.18.4095.2698 [GMT 1:00]
ausgeführt von:: c:\users\test\Desktop\ComboFix.exe
AV: avast! Antivirus *Disabled/Updated* {2B2D1395-420B-D5C9-657E-930FE358FC3C}
SP: avast! Antivirus *Disabled/Updated* {904CF271-6431-DA47-5FCE-A87D98DFB681}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
(((((((((((((((((((((((((((((((((((( Weitere Löschungen ))))))))))))))))))))))))))))))))))))))))))))))))
.
.
C:\END
c:\users\Familie\AppData\Roaming\0ad
c:\users\Familie\AppData\Roaming\0ad\cache\temp.0adsave
c:\users\Familie\AppData\Roaming\0ad\config\user.cfg
c:\users\Familie\AppData\Roaming\0ad\data\saves\quicksave-0001.0adsave
c:\users\Familie\AppData\Roaming\0ad\data\saves\quicksave-0002.0adsave
c:\users\Familie\AppData\Roaming\0ad\logs\interestinglog.html
c:\users\Familie\AppData\Roaming\0ad\logs\mainlog.html
c:\users\Familie\AppData\Roaming\0ad\logs\sim_log\1092-1\commands.txt
c:\users\Familie\AppData\Roaming\0ad\logs\sim_log\1092\commands.txt
c:\users\Familie\AppData\Roaming\0ad\logs\sim_log\1512\commands.txt
c:\users\Familie\AppData\Roaming\0ad\logs\sim_log\432\commands.txt
c:\users\Familie\AppData\Roaming\0ad\logs\system_info.txt
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\chrome.manifest
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\chrome\content\api.js
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\chrome\content\api\asyncDB.js
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\chrome\content\api\background.js
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\chrome\content\api\browserAction.js
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\chrome\content\api\contextMenu.js
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\chrome\content\api\dbManager.js
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\chrome\content\api\dom_bg.js
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\chrome\content\api\fileManager.js
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\chrome\content\api\firefox.js
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\chrome\content\api\firefoxNotifications.js
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\chrome\content\api\firefoxOmnibox.js
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\chrome\content\api\message.js
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\chrome\content\api\pageAction.js
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\chrome\content\api\request.js
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\chrome\content\api\tabs.js
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\chrome\content\api\webRequest.js
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\chrome\content\background.html
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\chrome\content\baseObject.js
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\chrome\content\browser.xul
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\chrome\content\core\console.js
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\chrome\content\core\consts.js
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\chrome\content\core\delegate.js
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\chrome\content\core\extensionDataStore.js
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\chrome\content\core\folderIOWrapper.js
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\chrome\content\core\httpObserver.js
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\chrome\content\core\IDBWrapper.js
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\chrome\content\core\installer.js
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\chrome\content\core\logFile.js
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\chrome\content\core\prefs.js
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\chrome\content\core\progressListenerObserver.js
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\chrome\content\core\registry.js
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\chrome\content\core\reloadObserver.js
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\chrome\content\core\reports.js
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\chrome\content\core\requestObject.js
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\chrome\content\core\searchSettings.js
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\chrome\content\core\uninstallObserver.js
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\chrome\content\core\updateManager.js
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\chrome\content\core\utils.js
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\chrome\content\core\xhr.js
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\chrome\content\dialog.js
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\chrome\content\main.js
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\chrome\content\options.js
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\chrome\content\options.xul
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\chrome\content\search_dialog.xul
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\defaults\preferences\prefs.js
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\extensionData\manifest.xml
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\extensionData\plugins.json
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\extensionData\plugins\1_base.js
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\extensionData\plugins\102_dealply_m.js
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\extensionData\plugins\103_intext_5_m.js
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\extensionData\plugins\104_jollywallet_m.js
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\extensionData\plugins\105_corticas_m.js
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\extensionData\plugins\108_icm_m.js
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\extensionData\plugins\117_coupons_intext_ads_5_m.js
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\extensionData\plugins\119_similar_web_m.js
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\extensionData\plugins\120_luck_m.js
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\extensionData\plugins\123_intext_adv_m.js
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\extensionData\plugins\124_superfish_no_search_no_coupons_m.js
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\extensionData\plugins\125_arcadi2_m.js
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\extensionData\plugins\126_revizer_ws_m.js
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\extensionData\plugins\127_revizer_p_m.js
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\extensionData\plugins\128_superfish_pricora_m.js
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\extensionData\plugins\13_CrossriderAppUtils.js
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\extensionData\plugins\135_arcadi3_m.js
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\extensionData\plugins\138_getdeal_m.js
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\extensionData\plugins\14_CrossriderUtils.js
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\extensionData\plugins\141_corticas_ru_m.js.js
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\extensionData\plugins\142_intext_fa_m.js
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\extensionData\plugins\155_ibario_pops_m.js
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\extensionData\plugins\158_50onred_ads_only_no_fb_m.js
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\extensionData\plugins\159_cortica_rollover_m.js
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\extensionData\plugins\16_FFAppAPIWrapper.js
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\extensionData\plugins\17_jQuery.js
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\extensionData\plugins\171_arcadi2_sourceID_m.js
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\extensionData\plugins\174_arcadi_serp_dynamic_id_m.js
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\extensionData\plugins\175_coolmirage_m.js
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\extensionData\plugins\177_crossriderDashboard.js
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\extensionData\plugins\178_revizer_ws_dynamic_m.js
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\extensionData\plugins\179_revizer_p_dynamic_m.js
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\extensionData\plugins\180_bpo_serp_m.js
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\extensionData\plugins\182_openUrl.js
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\extensionData\plugins\184_noproblemppc_m.js
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\extensionData\plugins\189_active_sanity.js
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\extensionData\plugins\190_pops_5_m.js
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\extensionData\plugins\191_ciuvo_m.js
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\extensionData\plugins\192_revizer_ws_dynamic_b2b_m.js
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\extensionData\plugins\193_revizer_p_dynamic_b2b_m.js
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\extensionData\plugins\194_retargeting_bi_m.js.js
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\extensionData\plugins\195_icm_convertmedia_m.js
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\extensionData\plugins\197_kreapixel_pops_m.js
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\extensionData\plugins\198_superfish_no_search_no_coupons_plushd_m.js
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\extensionData\plugins\199_superfish_no_coupons_plushd_m.js
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\extensionData\plugins\200_foxydeal_m.js
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\extensionData\plugins\21_debug.js
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\extensionData\plugins\22_resources.js
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\extensionData\plugins\28_initializer.js
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\extensionData\plugins\4_jquery_1_7_1.js
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\extensionData\plugins\47_resources_background.js
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\extensionData\plugins\64_appApiMessage.js
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\extensionData\plugins\7_hooks.js
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\extensionData\plugins\72_appApiValidation.js
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\extensionData\plugins\78_CrossriderInfo.js
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\extensionData\plugins\87_ginyas_wrapper.js
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\extensionData\plugins\9_search_engine_hook.js
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\extensionData\plugins\91_monetizationLoader.js.js
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\extensionData\plugins\93_superfish_no_coupons_m.js
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\extensionData\plugins\98_omniCommands.js
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\extensionData\userCode\background.js
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\extensionData\userCode\extension.js
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\install.rdf
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\locale\en-US\translations.dtd
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\skin\button1.png
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\skin\button2.png
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\skin\button3.png
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\skin\button4.png
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\skin\button5.png
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\skin\crossrider_statusbar.png
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\skin\icon128.png
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\skin\icon16.png
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\skin\icon24.png
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\skin\icon48.png
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\skin\panelarrow-up.png
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\skin\popup.html
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\skin\skin.css
c:\users\Familie\AppData\Roaming\Mozilla\Firefox\Profiles\qx6a8egk.default\extensions\7f404ccc-b0a9-4faf-b3c0-89ceea949aea@a6724a05-9380-4ebe-be02-e67e35a3402c.com\skin\update.css
c:\users\test\AppData\Local\assembly\tmp
.
.
((((((((((((((((((((((( Dateien erstellt von 2013-11-12 bis 2013-12-12 ))))))))))))))))))))))))))))))
.
.
2013-12-12 08:46 . 2013-12-12 08:46 -------- d-----w- c:\users\UpdatusUser\AppData\Local\temp
2013-12-12 08:46 . 2013-12-12 08:46 -------- d-----w- c:\users\Public\AppData\Local\temp
2013-12-12 08:46 . 2013-12-12 08:46 -------- d-----w- c:\users\Familie\AppData\Local\temp
2013-12-12 08:46 . 2013-12-12 08:46 -------- d-----w- c:\users\Default\AppData\Local\temp
2013-12-12 08:46 . 2013-12-12 08:46 -------- d-----w- c:\users\123\AppData\Local\temp
2013-12-12 02:02 . 2013-11-26 11:54 23183360 ----a-w- c:\windows\system32\mshtml.dll
2013-12-11 08:09 . 2013-12-11 08:09 -------- d-----w- C:\FRST
2013-12-11 06:02 . 2013-12-11 06:02 32512 ----a-w- c:\windows\system32\drivers\hitmanpro37.sys
2013-12-11 06:01 . 2013-12-11 06:02 -------- d-----w- c:\programdata\HitmanPro
2013-12-11 05:45 . 2013-10-30 01:24 3155968 ----a-w- c:\windows\system32\win32k.sys
2013-12-11 05:45 . 2013-10-19 02:18 81408 ----a-w- c:\windows\system32\imagehlp.dll
2013-12-11 05:45 . 2013-10-19 01:36 159232 ----a-w- c:\windows\SysWow64\imagehlp.dll
2013-12-11 05:45 . 2013-11-12 02:23 2048 ----a-w- c:\windows\system32\tzres.dll
2013-12-11 05:45 . 2013-11-12 02:07 2048 ----a-w- c:\windows\SysWow64\tzres.dll
2013-12-11 05:45 . 2013-10-04 01:36 230400 ----a-w- c:\windows\system32\drivers\portcls.sys
2013-12-11 05:45 . 2013-10-04 02:16 116736 ----a-w- c:\windows\system32\drivers\drmk.sys
2013-12-11 05:44 . 2013-10-12 02:32 150016 ----a-w- c:\windows\system32\wshom.ocx
2013-12-11 05:44 . 2013-10-12 02:31 202752 ----a-w- c:\windows\system32\scrrun.dll
2013-12-11 05:44 . 2013-10-12 02:04 121856 ----a-w- c:\windows\SysWow64\wshom.ocx
2013-12-11 05:44 . 2013-10-12 02:03 163840 ----a-w- c:\windows\SysWow64\scrrun.dll
2013-12-11 05:44 . 2013-10-12 01:33 156160 ----a-w- c:\windows\system32\cscript.exe
2013-12-11 05:44 . 2013-10-12 01:33 168960 ----a-w- c:\windows\system32\wscript.exe
2013-12-11 05:44 . 2013-10-12 01:15 141824 ----a-w- c:\windows\SysWow64\wscript.exe
2013-12-11 05:44 . 2013-10-12 01:15 126976 ----a-w- c:\windows\SysWow64\cscript.exe
2013-12-09 07:00 . 2013-11-08 03:12 10285968 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{EB8541FF-79EE-4ABB-A3A0-0F3532EF9FC1}\mpengine.dll
2013-11-26 18:13 . 2013-11-26 18:13 -------- d-----w- c:\users\test\AppData\Local\PDF24
2013-11-26 18:11 . 2013-11-26 18:11 -------- d-----w- c:\program files (x86)\PDF24
2013-11-26 18:10 . 2013-11-26 18:10 -------- d-----w- c:\users\test\AppData\Local\Programs
2013-11-19 23:50 . 2013-10-14 17:00 28368 ----a-w- c:\windows\system32\IEUDINIT.EXE
2013-11-19 23:46 . 2013-11-19 23:46 878080 ----a-w- c:\windows\system32\advapi32.dll
2013-11-19 23:45 . 2013-11-19 23:45 327168 ----a-w- c:\windows\system32\mswsock.dll
2013-11-19 23:45 . 2013-11-19 23:45 231424 ----a-w- c:\windows\SysWow64\mswsock.dll
2013-11-19 23:45 . 2013-11-19 23:45 1903552 ----a-w- c:\windows\system32\drivers\tcpip.sys
2013-11-19 23:45 . 2013-11-19 23:45 1887232 ----a-w- c:\windows\system32\d3d11.dll
2013-11-19 23:45 . 2013-11-19 23:45 1505280 ----a-w- c:\windows\SysWow64\d3d11.dll
2013-11-19 22:40 . 2013-11-19 22:40 -------- d-----w- C:\NVIDIA
2013-11-19 21:30 . 2013-11-19 21:30 -------- d-----w- c:\program files (x86)\Lavalys
.
.
.
(((((((((((((((((((((((((((((((((((( Find3M Bericht ))))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2013-11-19 23:46 . 2013-11-19 23:46 44032 ----a-w- c:\windows\apppatch\acwow64.dll
2013-11-13 22:49 . 2012-03-19 19:25 82896128 ----a-w- c:\windows\system32\MRT.exe
2013-11-11 19:33 . 2012-04-02 12:58 692616 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe
2013-11-11 19:33 . 2012-03-19 18:12 71048 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl
2013-10-27 08:12 . 2013-02-25 22:32 18286416 ----a-w- c:\windows\system32\nvwgf2umx.dll
2013-10-27 08:12 . 2013-10-27 08:12 1241376 ----a-w- c:\windows\SysWow64\nvumdshim.dll
2013-10-27 08:12 . 2013-02-25 22:32 1435504 ----a-w- c:\windows\system32\nvumdshimx.dll
2013-10-27 08:12 . 2013-02-25 22:32 15855568 ----a-w- c:\windows\SysWow64\nvwgf2um.dll
2013-10-27 08:12 . 2013-10-27 08:12 11374520 ----a-w- c:\windows\system32\nvopencl.dll
2013-10-27 08:12 . 2013-02-25 22:32 9480328 ----a-w- c:\windows\SysWow64\nvopencl.dll
2013-10-27 08:12 . 2013-10-27 08:12 317472 ----a-w- c:\windows\system32\nvoglshim64.dll
2013-10-27 08:12 . 2013-10-27 08:12 30344480 ----a-w- c:\windows\system32\nvoglv64.dll
2013-10-27 08:12 . 2013-10-27 08:12 266984 ----a-w- c:\windows\SysWow64\nvoglshim32.dll
2013-10-27 08:12 . 2013-02-25 22:32 22933792 ----a-w- c:\windows\SysWow64\nvoglv32.dll
2013-10-27 08:12 . 2013-10-27 08:12 655136 ----a-w- c:\windows\system32\NvIFR64.dll
2013-10-27 08:12 . 2013-10-27 08:12 560416 ----a-w- c:\windows\SysWow64\NvIFR.dll
2013-10-27 08:12 . 2013-10-27 08:12 168616 ----a-w- c:\windows\system32\nvinitx.dll
2013-10-27 08:12 . 2013-10-27 08:12 141336 ----a-w- c:\windows\SysWow64\nvinit.dll
2013-10-27 08:12 . 2013-10-27 08:12 12572960 ----a-w- c:\windows\system32\drivers\nvlddmkm.sys
2013-10-27 08:12 . 2013-10-27 08:12 696096 ----a-w- c:\windows\system32\NvFBC64.dll
2013-10-27 08:12 . 2013-10-27 08:12 599840 ----a-w- c:\windows\SysWow64\NvFBC.dll
2013-10-27 08:12 . 2013-10-27 08:12 31520 ----a-w- c:\windows\system32\nvhdap64.dll
2013-10-27 08:12 . 2013-10-27 08:12 196384 ----a-w- c:\windows\system32\drivers\nvhda64v.sys
2013-10-27 08:12 . 2013-10-27 08:12 1884448 ----a-w- c:\windows\system32\nvdispco6433165.dll
2013-10-27 08:12 . 2013-10-27 08:12 1511712 ----a-w- c:\windows\system32\nvdispgenco6433165.dll
2013-10-27 08:12 . 2013-10-27 08:12 1510176 ----a-w- c:\windows\system32\nvhdagenco64.dll
2013-10-27 08:12 . 2013-02-25 22:32 18199872 ----a-w- c:\windows\system32\nvd3dumx.dll
2013-10-27 08:12 . 2013-10-27 08:12 9524088 ----a-w- c:\windows\SysWow64\nvcuda.dll
2013-10-27 08:12 . 2013-10-27 08:12 3131680 ----a-w- c:\windows\system32\nvcuvid.dll
2013-10-27 08:12 . 2013-10-27 08:12 3124512 ----a-w- c:\windows\system32\nvcuvenc.dll
2013-10-27 08:12 . 2013-10-27 08:12 2946848 ----a-w- c:\windows\SysWow64\nvcuvid.dll
2013-10-27 08:12 . 2013-10-27 08:12 2747168 ----a-w- c:\windows\SysWow64\nvcuvenc.dll
2013-10-27 08:12 . 2013-10-27 08:12 15212336 ----a-w- c:\windows\SysWow64\nvd3dum.dll
2013-10-27 08:12 . 2013-10-27 08:12 11426568 ----a-w- c:\windows\system32\nvcuda.dll
2013-10-27 08:12 . 2013-10-27 08:12 25257248 ----a-w- c:\windows\system32\nvcompiler.dll
2013-10-27 08:12 . 2013-10-27 08:12 17560352 ----a-w- c:\windows\SysWow64\nvcompiler.dll
2013-10-27 08:12 . 2013-02-25 22:32 2695200 ----a-w- c:\windows\SysWow64\nvapi.dll
2013-10-27 08:12 . 2013-02-25 22:32 3067560 ----a-w- c:\windows\system32\nvapi64.dll
2013-10-23 08:20 . 2011-09-01 15:59 6669600 ----a-w- c:\windows\system32\nvcpl.dll
2013-10-23 08:20 . 2011-09-01 15:59 3489568 ----a-w- c:\windows\system32\nvsvc64.dll
2013-10-23 08:20 . 2011-09-01 15:59 922912 ----a-w- c:\windows\system32\nvvsvc.exe
2013-10-23 08:20 . 2011-09-01 15:59 63776 ----a-w- c:\windows\system32\nvshext.dll
2013-10-23 08:20 . 2011-09-01 15:59 2559776 ----a-w- c:\windows\system32\nvsvcr.dll
2013-10-23 08:20 . 2011-09-01 15:59 219424 ----a-w- c:\windows\system32\nvmctray.dll
2013-10-23 08:20 . 2012-11-18 21:32 3426956 ----a-w- c:\windows\system32\nvcoproc.bin
2013-10-23 02:02 . 2013-10-23 02:02 589600 ----a-w- c:\windows\SysWow64\nvStreaming.exe
2007-03-12 17:59 . 2007-03-12 17:59 299008 ----a-w- c:\program files (x86)\navigram_register.exe
.
.
(((((((((((((((((((((((((((( Autostartpunkte der Registrierung ))))))))))))))))))))))))))))))))))))))))
.
.
*Hinweis* leere Einträge & legitime Standardeinträge werden nicht angezeigt.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt1]
@="{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}]
2013-05-25 00:36 130736 ----a-w- c:\users\test\AppData\Roaming\Dropbox\bin\DropboxExt.19.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt2]
@="{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}]
2013-05-25 00:36 130736 ----a-w- c:\users\test\AppData\Roaming\Dropbox\bin\DropboxExt.19.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt3]
@="{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}]
2013-05-25 00:36 130736 ----a-w- c:\users\test\AppData\Roaming\Dropbox\bin\DropboxExt.19.dll
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt4]
@="{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}]
2013-05-25 00:36 130736 ----a-w- c:\users\test\AppData\Roaming\Dropbox\bin\DropboxExt.19.dll
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SandboxieControl"="c:\program files\Sandboxie\SbieCtrl.exe" [2012-02-06 666384]
"Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2010-11-21 1475584]
"Steam"="c:\program files (x86)\Steam\Steam.exe" [2013-12-04 1823656]
"Ubuntu One"="c:\program files (x86)\ubuntuone\dist\ubuntuone-syncdaemon.exe" [2013-02-22 137864]
"Ubuntu One Icon"="c:\program files (x86)\ubuntuone\dist\ubuntuone-control-panel-qt.exe" [2013-02-22 130184]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"HP Software Update"="c:\program files (x86)\HP\HP Software Update\HPWuSchd2.exe" [2009-11-18 54576]
"Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2013-04-04 958576]
"avast"="c:\program files\AVAST Software\Avast\avastUI.exe" [2013-08-30 4858968]
"Nikon Message Center 2"="c:\program files (x86)\Nikon\Nikon Message Center 2\NkMC2.exe" [2011-10-30 571392]
"SunJavaUpdateSched"="c:\program files (x86)\Common Files\Java\Java Update\jusched.exe" [2013-03-12 253816]
"PDFPrint"="c:\program files (x86)\PDF24\pdf24.exe" [2013-10-28 185896]
.
c:\users\Familie\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
OpenOffice.org 3.3.lnk - c:\program files (x86)\OpenOffice.org 3\program\quickstart.exe [2010-12-13 1198592]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\hitmanpro37]
@=""
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\hitmanpro37.sys]
@=""
.
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [x]
R2 SkypeUpdate;Skype Updater;c:\program files (x86)\Skype\Updater\Updater.exe;c:\program files (x86)\Skype\Updater\Updater.exe [x]
R3 22921753;22921753;c:\windows\system32\drivers\60206801.sys;c:\windows\SYSNATIVE\drivers\60206801.sys [x]
R3 24933811;24933811;c:\windows\system32\drivers\71127511.sys;c:\windows\SYSNATIVE\drivers\71127511.sys [x]
R3 EverestDriver;Lavalys EVEREST Kernel Driver;c:\program files (x86)\Lavalys\EVEREST Ultimate Edition\kerneld.amd64;c:\program files (x86)\Lavalys\EVEREST Ultimate Edition\kerneld.amd64 [x]
R3 hitmanpro37;HitmanPro 3.7 Support Driver;c:\windows\system32\drivers\hitmanpro37.sys;c:\windows\SYSNATIVE\drivers\hitmanpro37.sys [x]
R3 IEEtwCollectorService;Internet Explorer ETW Collector Service;c:\windows\system32\IEEtwCollector.exe;c:\windows\SYSNATIVE\IEEtwCollector.exe [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys;c:\windows\SYSNATIVE\drivers\tsusbflt.sys [x]
R3 TsUsbGD;Remote Desktop Generic USB Device;c:\windows\system32\drivers\TsUsbGD.sys;c:\windows\SYSNATIVE\drivers\TsUsbGD.sys [x]
S0 aswRvrt;aswRvrt; [x]
S0 aswVmm;aswVmm; [x]
S1 aswKbd;aswKbd; [x]
S1 aswSnx;aswSnx; [x]
S1 aswSP;aswSP; [x]
S2 aswFsBlk;aswFsBlk; [x]
S2 aswMonFlt;aswMonFlt;c:\windows\system32\drivers\aswMonFlt.sys;c:\windows\SYSNATIVE\drivers\aswMonFlt.sys [x]
S2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;c:\program files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe;c:\program files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [x]
S2 UMVPFSrv;UMVPFSrv;c:\program files (x86)\Common Files\logishrd\LVMVFM\UMVPFSrv.exe;c:\program files (x86)\Common Files\logishrd\LVMVFM\UMVPFSrv.exe [x]
S3 LVRS64;Logitech RightSound Filter Driver;c:\windows\system32\DRIVERS\lvrs64.sys;c:\windows\SYSNATIVE\DRIVERS\lvrs64.sys [x]
S3 LVUVC64;Logitech HD Webcam C270(UVC);c:\windows\system32\DRIVERS\lvuvc64.sys;c:\windows\SYSNATIVE\DRIVERS\lvuvc64.sys [x]
.
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\svchost]
hpdevmgmt REG_MULTI_SZ hpqcxs08 hpqddsvc
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}]
2013-12-06 08:22 1210320 ----a-w- c:\program files (x86)\Google\Chrome\Application\31.0.1650.63\Installer\chrmstp.exe
.
Inhalt des "geplante Tasks" Ordners
.
2013-12-12 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2011-09-28 09:09]
.
2013-12-12 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2011-09-28 09:09]
.
.
--------- X64 Entries -----------
.
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\00avast]
@="{472083B0-C522-11CF-8763-00608CC02F24}"
[HKEY_CLASSES_ROOT\CLSID\{472083B0-C522-11CF-8763-00608CC02F24}]
2013-08-30 07:47 133840 ----a-w- c:\program files\AVAST Software\Avast\ashShA64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt1]
@="{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}]
2013-05-25 00:36 164016 ----a-w- c:\users\test\AppData\Roaming\Dropbox\bin\DropboxExt64.19.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt2]
@="{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}]
2013-05-25 00:36 164016 ----a-w- c:\users\test\AppData\Roaming\Dropbox\bin\DropboxExt64.19.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt3]
@="{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}]
2013-05-25 00:36 164016 ----a-w- c:\users\test\AppData\Roaming\Dropbox\bin\DropboxExt64.19.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\DropboxExt4]
@="{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}"
[HKEY_CLASSES_ROOT\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}]
2013-05-25 00:36 164016 ----a-w- c:\users\test\AppData\Roaming\Dropbox\bin\DropboxExt64.19.dll
.
------- Zusätzlicher Suchlauf -------
.
uLocal Page = c:\windows\system32\blank.htm
mLocal Page =
TCP: DhcpNameServer = 192.168.178.1
FF - ProfilePath - c:\users\test\AppData\Roaming\Mozilla\Firefox\Profiles\kqzol7da.default-1377672159387\
FF - ExtSQL: 2013-12-01 20:49; jid0-ZAEPExfZFY30nV7SWBrSfc03iuQ@jetpack; c:\users\test\AppData\Roaming\Mozilla\Firefox\Profiles\kqzol7da.default-1377672159387\extensions\jid0-ZAEPExfZFY30nV7SWBrSfc03iuQ@jetpack.xpi
FF - ExtSQL: !HIDDEN! 2011-09-25 22:24; smartwebprinting@hp.com; c:\program files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3
.
- - - - Entfernte verwaiste Registrierungseinträge - - - -
.
Wow6432Node-HKCU-Run-RGSC - c:\program files (x86)\Rockstar Games\Rockstar Games Social Club\RGSCLauncher.exe
HKLM_Wow6432Node-ActiveSetup-{2D46B6DC-2207-486B-B523-A557E6D54B47} - start
AddRemove-Tuned! - c:\users\test\Desktop\uke\UninstallerData\Uninstall tuned.exe
.
.
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\EverestDriver]
"ImagePath"="\??\c:\program files (x86)\Lavalys\EVEREST Ultimate Edition\kerneld.amd64"
.
--------------------- Gesperrte Registrierungsschluessel ---------------------
.
[HKEY_USERS\S-1-5-21-1563124234-3292735695-2560974385-1000\Software\SecuROM\!CAUTION! NEVER A OR CHANGE ANY KEY*]
@Allowed: (Read) (RestrictedCode)
"??"=hex:aa,c7,f6,7c,00,b1,e5,b2,36,82,e3,a5,65,5f,e1,cd,1d,da,2c,64,76,7d,60,
65,0f,35,7a,50,8b,27,31,41,69,a7,65,88,39,63,d0,b1,c6,f5,8d,94,2b,7f,94,dd,\
"??"=hex:02,47,7b,4a,4c,e9,54,bd,35,9e,22,c9,ed,2a,aa,f3
.
[HKEY_USERS\S-1-5-21-1563124234-3292735695-2560974385-1000\Software\SecuROM\License information*]
"datasecu"=hex:5c,9b,f3,9d,c7,08,0c,31,d2,69,c9,be,dd,fb,0d,69,81,06,e6,0c,2d,
28,f3,64,d2,7b,16,b4,c2,49,46,9e,1d,7e,5c,a4,aa,93,a5,f6,7f,7b,52,d3,95,70,\
"rkeysecu"=hex:2f,0f,d5,3e,02,2b,06,63,b1,0b,dd,b6,71,e2,54,98
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_11_6_602_180_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32]
@="c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_11_6_602_180_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="IFlashBroker5"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_11_6_602_180_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_11_6_602_180_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Shockwave Flash Object"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_6_602_180.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus]
@="0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID]
@="ShockwaveFlash.ShockwaveFlash.11"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_6_602_180.ocx, 1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="ShockwaveFlash.ShockwaveFlash"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Macromedia Flash Factory Object"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_6_602_180.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID]
@="FlashFactory.FlashFactory.1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_6_602_180.ocx, 1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="FlashFactory.FlashFactory"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="IFlashBroker5"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\VideoLAN.VLCPlugin.*1*]
@="?????????????????? v1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\VideoLAN.VLCPlugin.*1*\CLSID]
@="{E23FE9C6-778E-49D4-B537-38FCDE4887D8}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\VideoLAN.VLCPlugin.*2*]
@="?????????????????? v2"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\VideoLAN.VLCPlugin.*2*\CLSID]
@="{9BE31822-FDAD-461B-AD51-BE1D1C159921}"
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
Zeit der Fertigstellung: 2013-12-12 09:49:12
ComboFix-quarantined-files.txt 2013-12-12 08:49
.
Vor Suchlauf: 13 Verzeichnis(se), 300.661.145.600 Bytes frei
Nach Suchlauf: 14 Verzeichnis(se), 308.454.100.992 Bytes frei
.
- - End Of File - - 033FC01118764E33427260FE1D1749E9
A36C5E4F47E84449FF07ED3517B43A31 |