Kann awesomehp.com nicht entfernen. Hier mein Logfile... Kann awesomehp.com nicht entfernen. Habe alles mögliche versucht.
Hier mein Logfile:OTL Logfile: Code:
OTL logfile created on: 1/29/2014 10:51:33 PM - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\ADDISFARI\Downloads
Home Premium Edition Service Pack 1 (Version = 6.1.7600) - Type = NTWorkstation
Internet Explorer (Version = 9.11.9600.16476)
Locale: 00000409 | Country: Schweiz | Language: DES | Date Format: dd.MM.yyyy
3.97 Gb Total Physical Memory | 2.13 Gb Available Physical Memory | 53.60% Memory free
7.93 Gb Paging File | 5.97 Gb Available in Paging File | 75.30% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\windows | %ProgramFiles% = C:\Program Files
Drive C: | 252.89 Gb Total Space | 89.83 Gb Free Space | 35.52% Space Free | Partition Type: NTFS
Drive D: | 30.25 Gb Total Space | 0.01 Gb Free Space | 0.02% Space Free | Partition Type: NTFS
Computer Name: ADDISFARI-PC | User Name: ADDISFARI | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - [2014/01/29 22:51:21 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\ADDISFARI\Downloads\OTL.exe
PRC - [2014/01/29 22:23:21 | 000,388,608 | ---- | M] (Trend Micro Inc.) -- C:\Users\ADDISFARI\AppData\Local\Temp\OCS\Downloads\fc14996dfa99adfc7baae624196888c5\7b4e384f5b096b9656fee276ba88bb81\HiJackThis204.exe
PRC - [2014/01/27 23:01:51 | 001,863,048 | ---- | M] (Adobe Systems, Inc.) -- C:\Windows\System32\Macromed\Flash\FlashPlayerPlugin_12_0_0_43.exe
PRC - [2014/01/14 10:04:32 | 000,508,016 | ---- | M] (Cherished Technololgy LIMITED) -- C:\ProgramData\IePluginService\PluginService.exe
PRC - [2013/12/21 07:04:16 | 000,065,432 | ---- | M] (Adobe Systems Incorporated) -- C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
PRC - [2013/12/19 19:37:25 | 000,930,592 | ---- | M] (NVIDIA Corporation) -- C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
PRC - [2013/12/05 20:34:42 | 000,275,568 | ---- | M] (Mozilla Corporation) -- C:\Program Files\Mozilla Firefox\firefox.exe
PRC - [2013/12/04 14:57:52 | 000,009,216 | ---- | M] (Ellora Assets Corp.) -- C:\Program Files\Freemake\CaptureLib\CaptureLibService.exe
PRC - [2013/11/18 21:59:36 | 000,590,352 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG2014\avgcsrvx.exe
PRC - [2013/11/11 22:02:14 | 003,478,544 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG2014\avgidsagent.exe
PRC - [2013/11/07 22:03:50 | 004,956,176 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG2014\avgui.exe
PRC - [2013/11/07 22:00:48 | 000,680,976 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG2014\avgemcx.exe
PRC - [2013/10/28 23:24:02 | 000,729,648 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\PROGRA~1\AVG\AVG2014\avgrsx.exe
PRC - [2013/10/28 23:17:36 | 000,892,976 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG2014\avgnsx.exe
PRC - [2013/09/24 01:35:44 | 001,358,944 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG2014\avgfws.exe
PRC - [2013/09/24 01:33:08 | 000,348,008 | ---- | M] (AVG Technologies CZ, s.r.o.) -- C:\Program Files\AVG\AVG2014\avgwdsvc.exe
PRC - [2013/08/14 14:19:22 | 000,039,056 | ---- | M] () -- C:\Program Files\RealNetworks\RealDownloader\rndlresolversvc.exe
PRC - [2013/08/02 01:52:57 | 000,271,360 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\conhost.exe
PRC - [2013/07/31 16:44:44 | 000,137,528 | ---- | M] (Motorola Mobility LLC) -- C:\Program Files\Motorola Mobility\Motorola Device Manager\MotoHelperService.exe
PRC - [2013/07/31 16:38:20 | 000,698,680 | ---- | M] (Motorola Mobility LLC) -- C:\Program Files\Motorola Mobility\Motorola Device Manager\MotoHelperAgent.exe
PRC - [2013/07/25 10:19:26 | 005,624,784 | ---- | M] (Safer-Networking Ltd.) -- C:\Program Files\Spybot - Search & Destroy 2\SDTray.exe
PRC - [2013/06/25 17:00:32 | 002,878,504 | ---- | M] (GamersFirst) -- C:\Users\ADDISFARI\AppData\Local\GamersFirst\LIVE!\Live.exe
PRC - [2013/05/16 09:56:34 | 001,033,688 | ---- | M] (Safer-Networking Ltd.) -- C:\Program Files\Spybot - Search & Destroy 2\SDUpdSvc.exe
PRC - [2013/05/16 09:56:30 | 001,817,560 | ---- | M] (Safer-Networking Ltd.) -- C:\Program Files\Spybot - Search & Destroy 2\SDFSSvc.exe
PRC - [2013/05/15 12:21:32 | 000,171,928 | ---- | M] (Safer-Networking Ltd.) -- C:\Program Files\Spybot - Search & Destroy 2\SDWSCSvc.exe
PRC - [2013/04/04 14:50:32 | 000,418,376 | ---- | M] (Malwarebytes Corporation) -- C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe
PRC - [2013/04/03 03:06:10 | 000,587,912 | ---- | M] (Crawler.com) -- C:\Program Files\Spyware Terminator\st_rsser.exe
PRC - [2013/04/03 03:06:06 | 003,684,488 | ---- | M] (Crawler.com) -- C:\Program Files\Spyware Terminator\SpywareTerminatorUpdate.exe
PRC - [2013/04/03 03:05:58 | 002,777,736 | ---- | M] (Crawler.com) -- C:\Program Files\Spyware Terminator\SpywareTerminatorShield.exe
PRC - [2012/11/23 03:48:41 | 000,049,152 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\taskhost.exe
PRC - [2012/10/21 00:22:06 | 000,246,112 | ---- | M] () -- C:\ProgramData\Mobile Partner\OnlineUpdate\ouc.exe
PRC - [2012/10/02 12:13:44 | 003,064,000 | ---- | M] (Skype Technologies S.A.) -- C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
PRC - [2012/06/20 17:14:18 | 002,206,888 | ---- | M] (Nullsoft, Inc.) -- C:\Program Files\Winamp\winamp.exe
PRC - [2011/09/02 16:06:38 | 000,065,657 | ---- | M] (Motorola) -- C:\Program Files\Motorola\MotForwardDaemon\ForwardDaemon.exe
PRC - [2011/03/14 16:27:28 | 000,271,712 | ---- | M] () -- C:\ProgramData\DatacardService\HWDeviceService.exe
PRC - [2011/03/14 16:27:28 | 000,236,384 | ---- | M] (Huawei Technologies Co., Ltd.) -- C:\ProgramData\DatacardService\DCSHelper.exe
PRC - [2011/03/02 16:20:58 | 000,224,256 | ---- | M] () -- C:\Program Files\GNU\GnuPG\dirmngr.exe
PRC - [2011/02/25 06:30:54 | 002,616,320 | ---- | M] (Microsoft Corporation) -- C:\Windows\explorer.exe
PRC - [2010/11/15 08:14:18 | 000,095,568 | ---- | M] (Devguru Co., Ltd.) -- C:\Windows\System32\dgdersvc.exe
PRC - [2010/11/15 08:10:18 | 000,217,088 | ---- | M] (Teruten) -- C:\Windows\System32\FsUsbExService.Exe
PRC - [2010/08/23 11:26:10 | 002,167,632 | ---- | M] (Alexander Miehlke Softwareentwicklung) -- C:\Program Files\Browser-Anonymisierer\BrowserMaulkorb.exe
PRC - [2009/12/04 11:15:10 | 000,927,984 | ---- | M] (Cypherix Software (India) Pvt. Ltd.) -- C:\Windows\System32\cryptainersrv.exe
PRC - [2009/07/15 15:29:54 | 004,081,480 | ---- | M] (Lenovo(beijing) Limited) -- C:\Program Files\Lenovo\Energy Management\utility.exe
PRC - [2009/07/14 15:27:26 | 000,038,152 | ---- | M] (Lenovo Group Limited) -- C:\Program Files\Lenovo\ReadyComm\common\IGRS.exe
PRC - [2009/07/14 02:14:41 | 000,020,992 | ---- | M] (Microsoft Corporation) -- C:\Windows\System32\IgrsSvcs.exe
PRC - [2009/07/01 19:03:12 | 000,795,936 | ---- | M] (Broadcom Corporation.) -- C:\Program Files\Lenovo\Bluetooth Software\BTTray.exe
PRC - [2009/07/01 19:03:12 | 000,582,944 | ---- | M] (Broadcom Corporation.) -- C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe
PRC - [2009/06/25 10:46:08 | 005,064,520 | ---- | M] (Lenovo (Beijing) Limited) -- C:\Program Files\Lenovo\Energy Management\Energy Management.exe
PRC - [2009/06/04 20:03:32 | 000,186,904 | ---- | M] (Intel Corporation) -- C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe
PRC - [2009/06/04 20:03:06 | 000,354,840 | ---- | M] (Intel Corporation) -- C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTMon.exe
PRC - [2008/01/11 18:50:16 | 000,030,312 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Microsoft Small Business\Business Contact Manager\BcmSqlStartupSvc.exe
========== Modules (No Company Name) ==========
MOD - [2014/01/29 21:11:53 | 000,206,336 | ---- | M] () -- C:\Users\ADDISFARI\AppData\Local\Temp\WLZ2866.tmp\winamp.lng
MOD - [2014/01/29 21:11:53 | 000,007,680 | ---- | M] () -- C:\Users\ADDISFARI\AppData\Local\Temp\WLZ2866.tmp\vis_nsfs.lng
MOD - [2014/01/29 21:11:53 | 000,004,096 | ---- | M] () -- C:\Users\ADDISFARI\AppData\Local\Temp\WLZ2866.tmp\winampa.lng
MOD - [2014/01/29 21:11:52 | 000,156,160 | ---- | M] () -- C:\Users\ADDISFARI\AppData\Local\Temp\WLZ2866.tmp\vis_milk2.lng
MOD - [2014/01/29 21:11:52 | 000,088,064 | ---- | M] () -- C:\Users\ADDISFARI\AppData\Local\Temp\WLZ2866.tmp\vis_avs.lng
MOD - [2014/01/29 21:11:52 | 000,056,320 | ---- | M] () -- C:\Users\ADDISFARI\AppData\Local\Temp\WLZ2866.tmp\ml_local.lng
MOD - [2014/01/29 21:11:52 | 000,047,616 | ---- | M] () -- C:\Users\ADDISFARI\AppData\Local\Temp\WLZ2866.tmp\ml_disc.lng
MOD - [2014/01/29 21:11:52 | 000,047,104 | ---- | M] () -- C:\Users\ADDISFARI\AppData\Local\Temp\WLZ2866.tmp\ml_pmp.lng
MOD - [2014/01/29 21:11:52 | 000,039,424 | ---- | M] () -- C:\Users\ADDISFARI\AppData\Local\Temp\WLZ2866.tmp\pmp_wifi.lng
MOD - [2014/01/29 21:11:52 | 000,036,864 | ---- | M] () -- C:\Users\ADDISFARI\AppData\Local\Temp\WLZ2866.tmp\pmp_ipod.lng
MOD - [2014/01/29 21:11:52 | 000,036,352 | ---- | M] () -- C:\Users\ADDISFARI\AppData\Local\Temp\WLZ2866.tmp\ombrowser.lng
MOD - [2014/01/29 21:11:52 | 000,034,816 | ---- | M] () -- C:\Users\ADDISFARI\AppData\Local\Temp\WLZ2866.tmp\ml_plg.lng
MOD - [2014/01/29 21:11:52 | 000,023,040 | ---- | M] () -- C:\Users\ADDISFARI\AppData\Local\Temp\WLZ2866.tmp\in_mp3.lng
MOD - [2014/01/29 21:11:52 | 000,020,480 | ---- | M] () -- C:\Users\ADDISFARI\AppData\Local\Temp\WLZ2866.tmp\pmp_android.lng
MOD - [2014/01/29 21:11:52 | 000,020,480 | ---- | M] () -- C:\Users\ADDISFARI\AppData\Local\Temp\WLZ2866.tmp\in_midi.lng
MOD - [2014/01/29 21:11:52 | 000,018,944 | ---- | M] () -- C:\Users\ADDISFARI\AppData\Local\Temp\WLZ2866.tmp\in_mod.lng
MOD - [2014/01/29 21:11:52 | 000,016,384 | ---- | M] () -- C:\Users\ADDISFARI\AppData\Local\Temp\WLZ2866.tmp\out_ds.lng
MOD - [2014/01/29 21:11:52 | 000,015,360 | ---- | M] () -- C:\Users\ADDISFARI\AppData\Local\Temp\WLZ2866.tmp\in_wm.lng
MOD - [2014/01/29 21:11:52 | 000,014,848 | ---- | M] () -- C:\Users\ADDISFARI\AppData\Local\Temp\WLZ2866.tmp\ml_wire.lng
MOD - [2014/01/29 21:11:52 | 000,014,336 | ---- | M] () -- C:\Users\ADDISFARI\AppData\Local\Temp\WLZ2866.tmp\ml_online.lng
MOD - [2014/01/29 21:11:52 | 000,014,336 | ---- | M] () -- C:\Users\ADDISFARI\AppData\Local\Temp\WLZ2866.tmp\in_cdda.lng
MOD - [2014/01/29 21:11:52 | 000,012,800 | ---- | M] () -- C:\Users\ADDISFARI\AppData\Local\Temp\WLZ2866.tmp\ml_playlists.lng
MOD - [2014/01/29 21:11:52 | 000,011,776 | ---- | M] () -- C:\Users\ADDISFARI\AppData\Local\Temp\WLZ2866.tmp\pmp_usb.lng
MOD - [2014/01/29 21:11:52 | 000,011,776 | ---- | M] () -- C:\Users\ADDISFARI\AppData\Local\Temp\WLZ2866.tmp\in_nsv.lng
MOD - [2014/01/29 21:11:52 | 000,011,264 | ---- | M] () -- C:\Users\ADDISFARI\AppData\Local\Temp\WLZ2866.tmp\in_vorbis.lng
MOD - [2014/01/29 21:11:52 | 000,009,728 | ---- | M] () -- C:\Users\ADDISFARI\AppData\Local\Temp\WLZ2866.tmp\ml_downloads.lng
MOD - [2014/01/29 21:11:52 | 000,008,704 | ---- | M] () -- C:\Users\ADDISFARI\AppData\Local\Temp\WLZ2866.tmp\ml_history.lng
MOD - [2014/01/29 21:11:52 | 000,008,704 | ---- | M] () -- C:\Users\ADDISFARI\AppData\Local\Temp\WLZ2866.tmp\ml_devices.lng
MOD - [2014/01/29 21:11:52 | 000,008,192 | ---- | M] () -- C:\Users\ADDISFARI\AppData\Local\Temp\WLZ2866.tmp\ml_transcode.lng
MOD - [2014/01/29 21:11:52 | 000,007,680 | ---- | M] () -- C:\Users\ADDISFARI\AppData\Local\Temp\WLZ2866.tmp\out_wave.lng
MOD - [2014/01/29 21:11:52 | 000,006,656 | ---- | M] () -- C:\Users\ADDISFARI\AppData\Local\Temp\WLZ2866.tmp\ml_autotag.lng
MOD - [2014/01/29 21:11:52 | 000,006,656 | ---- | M] () -- C:\Users\ADDISFARI\AppData\Local\Temp\WLZ2866.tmp\in_wav.lng
MOD - [2014/01/29 21:11:52 | 000,006,656 | ---- | M] () -- C:\Users\ADDISFARI\AppData\Local\Temp\WLZ2866.tmp\in_dshow.lng
MOD - [2014/01/29 21:11:52 | 000,006,144 | ---- | M] () -- C:\Users\ADDISFARI\AppData\Local\Temp\WLZ2866.tmp\tagz.lng
MOD - [2014/01/29 21:11:52 | 000,006,144 | ---- | M] () -- C:\Users\ADDISFARI\AppData\Local\Temp\WLZ2866.tmp\out_disk.lng
MOD - [2014/01/29 21:11:52 | 000,005,632 | ---- | M] () -- C:\Users\ADDISFARI\AppData\Local\Temp\WLZ2866.tmp\in_wave.lng
MOD - [2014/01/29 21:11:52 | 000,005,632 | ---- | M] () -- C:\Users\ADDISFARI\AppData\Local\Temp\WLZ2866.tmp\in_flac.lng
MOD - [2014/01/29 21:11:52 | 000,005,120 | ---- | M] () -- C:\Users\ADDISFARI\AppData\Local\Temp\WLZ2866.tmp\ml_rg.lng
MOD - [2014/01/29 21:11:52 | 000,005,120 | ---- | M] () -- C:\Users\ADDISFARI\AppData\Local\Temp\WLZ2866.tmp\ml_impex.lng
MOD - [2014/01/29 21:11:52 | 000,005,120 | ---- | M] () -- C:\Users\ADDISFARI\AppData\Local\Temp\WLZ2866.tmp\ml_bookmarks.lng
MOD - [2014/01/29 21:11:52 | 000,005,120 | ---- | M] () -- C:\Users\ADDISFARI\AppData\Local\Temp\WLZ2866.tmp\in_mp4.lng
MOD - [2014/01/29 21:11:52 | 000,004,608 | ---- | M] () -- C:\Users\ADDISFARI\AppData\Local\Temp\WLZ2866.tmp\pmp_activesync.lng
MOD - [2014/01/29 21:11:52 | 000,004,608 | ---- | M] () -- C:\Users\ADDISFARI\AppData\Local\Temp\WLZ2866.tmp\ml_enqplay.lng
MOD - [2014/01/29 21:11:52 | 000,004,608 | ---- | M] () -- C:\Users\ADDISFARI\AppData\Local\Temp\WLZ2866.tmp\in_wv.lng
MOD - [2014/01/29 21:11:52 | 000,004,608 | ---- | M] () -- C:\Users\ADDISFARI\AppData\Local\Temp\WLZ2866.tmp\in_mkv.lng
MOD - [2014/01/29 21:11:52 | 000,004,096 | ---- | M] () -- C:\Users\ADDISFARI\AppData\Local\Temp\WLZ2866.tmp\pmp_p4s.lng
MOD - [2014/01/29 21:11:52 | 000,004,096 | ---- | M] () -- C:\Users\ADDISFARI\AppData\Local\Temp\WLZ2866.tmp\ml_orb.lng
MOD - [2014/01/29 21:11:52 | 000,003,584 | ---- | M] () -- C:\Users\ADDISFARI\AppData\Local\Temp\WLZ2866.tmp\pmp_njb.lng
MOD - [2014/01/29 21:11:52 | 000,003,584 | ---- | M] () -- C:\Users\ADDISFARI\AppData\Local\Temp\WLZ2866.tmp\ml_nowplaying.lng
MOD - [2014/01/29 21:11:52 | 000,003,584 | ---- | M] () -- C:\Users\ADDISFARI\AppData\Local\Temp\WLZ2866.tmp\ml_addons.lng
MOD - [2014/01/29 21:11:52 | 000,003,584 | ---- | M] () -- C:\Users\ADDISFARI\AppData\Local\Temp\WLZ2866.tmp\in_swf.lng
MOD - [2014/01/29 21:11:52 | 000,003,584 | ---- | M] () -- C:\Users\ADDISFARI\AppData\Local\Temp\WLZ2866.tmp\in_linein.lng
MOD - [2014/01/29 21:11:52 | 000,003,584 | ---- | M] () -- C:\Users\ADDISFARI\AppData\Local\Temp\WLZ2866.tmp\in_flv.lng
MOD - [2014/01/29 21:11:52 | 000,003,072 | ---- | M] () -- C:\Users\ADDISFARI\AppData\Local\Temp\WLZ2866.tmp\playlist.lng
MOD - [2014/01/29 21:11:51 | 000,069,120 | ---- | M] () -- C:\Users\ADDISFARI\AppData\Local\Temp\WLZ2866.tmp\burnlib.lng
MOD - [2014/01/29 21:11:51 | 000,041,984 | ---- | M] () -- C:\Users\ADDISFARI\AppData\Local\Temp\WLZ2866.tmp\gen_jumpex_original.lng
MOD - [2014/01/29 21:11:51 | 000,041,984 | ---- | M] () -- C:\Users\ADDISFARI\AppData\Local\Temp\WLZ2866.tmp\gen_jumpex.lng
MOD - [2014/01/29 21:11:51 | 000,023,552 | ---- | M] () -- C:\Users\ADDISFARI\AppData\Local\Temp\WLZ2866.tmp\gen_classicart.lng
MOD - [2014/01/29 21:11:51 | 000,023,040 | ---- | M] () -- C:\Users\ADDISFARI\AppData\Local\Temp\WLZ2866.tmp\gen_ff.lng
MOD - [2014/01/29 21:11:51 | 000,021,504 | ---- | M] () -- C:\Users\ADDISFARI\AppData\Local\Temp\WLZ2866.tmp\gen_ml.lng
MOD - [2014/01/29 21:11:51 | 000,014,848 | ---- | M] () -- C:\Users\ADDISFARI\AppData\Local\Temp\WLZ2866.tmp\gen_play_remove.lng
MOD - [2014/01/29 21:11:51 | 000,013,824 | ---- | M] () -- C:\Users\ADDISFARI\AppData\Local\Temp\WLZ2866.tmp\dsp_sps.lng
MOD - [2014/01/29 21:11:51 | 000,011,776 | ---- | M] () -- C:\Users\ADDISFARI\AppData\Local\Temp\WLZ2866.tmp\gen_skinmanager.lng
MOD - [2014/01/29 21:11:51 | 000,011,776 | ---- | M] () -- C:\Users\ADDISFARI\AppData\Local\Temp\WLZ2866.tmp\gen_hotkeys.lng
MOD - [2014/01/29 21:11:51 | 000,010,752 | ---- | M] () -- C:\Users\ADDISFARI\AppData\Local\Temp\WLZ2866.tmp\gen_undo.lng
MOD - [2014/01/29 21:11:51 | 000,010,752 | ---- | M] () -- C:\Users\ADDISFARI\AppData\Local\Temp\WLZ2866.tmp\auth.lng
MOD - [2014/01/29 21:11:51 | 000,010,240 | ---- | M] () -- C:\Users\ADDISFARI\AppData\Local\Temp\WLZ2866.tmp\gen_timerestore.lng
MOD - [2014/01/29 21:11:51 | 000,009,728 | ---- | M] () -- C:\Users\ADDISFARI\AppData\Local\Temp\WLZ2866.tmp\gen_nopro.lng
MOD - [2014/01/29 21:11:51 | 000,008,192 | ---- | M] () -- C:\Users\ADDISFARI\AppData\Local\Temp\WLZ2866.tmp\gen_tray.lng
MOD - [2014/01/29 21:11:51 | 000,007,168 | ---- | M] () -- C:\Users\ADDISFARI\AppData\Local\Temp\WLZ2866.tmp\gen_orgler.lng
MOD - [2014/01/29 21:11:51 | 000,007,168 | ---- | M] () -- C:\Users\ADDISFARI\AppData\Local\Temp\WLZ2866.tmp\gen_crasher.lng
MOD - [2014/01/29 21:11:51 | 000,006,656 | ---- | M] () -- C:\Users\ADDISFARI\AppData\Local\Temp\WLZ2866.tmp\enc_fhgaac.lng
MOD - [2014/01/29 21:11:51 | 000,006,144 | ---- | M] () -- C:\Users\ADDISFARI\AppData\Local\Temp\WLZ2866.tmp\enc_wma.lng
MOD - [2014/01/29 21:11:51 | 000,005,632 | ---- | M] () -- C:\Users\ADDISFARI\AppData\Local\Temp\WLZ2866.tmp\enc_lame.lng
MOD - [2014/01/29 21:11:51 | 000,005,120 | ---- | M] () -- C:\Users\ADDISFARI\AppData\Local\Temp\WLZ2866.tmp\in_avi.lng
MOD - [2014/01/29 21:11:51 | 000,004,096 | ---- | M] () -- C:\Users\ADDISFARI\AppData\Local\Temp\WLZ2866.tmp\gen_find_on_disk.lng
MOD - [2014/01/29 21:11:51 | 000,004,096 | ---- | M] () -- C:\Users\ADDISFARI\AppData\Local\Temp\WLZ2866.tmp\enc_wav.lng
MOD - [2014/01/29 21:11:51 | 000,004,096 | ---- | M] () -- C:\Users\ADDISFARI\AppData\Local\Temp\WLZ2866.tmp\enc_vorbis.lng
MOD - [2014/01/29 21:11:51 | 000,004,096 | ---- | M] () -- C:\Users\ADDISFARI\AppData\Local\Temp\WLZ2866.tmp\enc_flac.lng
MOD - [2014/01/27 23:01:50 | 016,287,624 | ---- | M] () -- C:\Windows\System32\Macromed\Flash\NPSWF32_12_0_0_43.dll
MOD - [2013/12/05 20:36:56 | 003,559,024 | ---- | M] () -- C:\Program Files\Mozilla Firefox\mozjs.dll
MOD - [2013/05/26 10:52:37 | 000,623,616 | ---- | M] () -- C:\Program Files\Winamp\System\jnetlib.w5s
MOD - [2013/05/26 10:52:37 | 000,154,624 | ---- | M] () -- C:\Program Files\Winamp\System\jpeg.w5s
MOD - [2013/05/26 10:52:37 | 000,091,136 | ---- | M] () -- C:\Program Files\Winamp\System\xml.w5s
MOD - [2013/05/26 10:52:37 | 000,087,552 | ---- | M] () -- C:\Program Files\Winamp\System\png.w5s
MOD - [2013/05/26 10:52:37 | 000,084,480 | ---- | M] () -- C:\Program Files\Winamp\System\playlist.w5s
MOD - [2013/05/26 10:52:37 | 000,083,968 | ---- | M] () -- C:\Program Files\Winamp\tataki.dll
MOD - [2013/05/26 10:52:37 | 000,064,512 | ---- | M] () -- C:\Program Files\Winamp\zlib.dll
MOD - [2013/05/26 10:52:37 | 000,044,544 | ---- | M] () -- C:\Program Files\Winamp\System\devices.w5s
MOD - [2013/05/26 10:52:37 | 000,035,328 | ---- | M] () -- C:\Program Files\Winamp\System\timer.w5s
MOD - [2013/05/26 10:52:37 | 000,021,504 | ---- | M] () -- C:\Program Files\Winamp\System\tagz.w5s
MOD - [2013/05/26 10:52:37 | 000,019,456 | ---- | M] () -- C:\Program Files\Winamp\System\gif.w5s
MOD - [2013/05/26 10:52:37 | 000,016,896 | ---- | M] () -- C:\Program Files\Winamp\System\dlmgr.w5s
MOD - [2013/05/26 10:52:37 | 000,016,384 | ---- | M] () -- C:\Program Files\Winamp\System\gracenote.w5s
MOD - [2013/05/26 10:52:37 | 000,014,336 | ---- | M] () -- C:\Program Files\Winamp\System\filereader.w5s
MOD - [2013/05/26 10:52:37 | 000,013,824 | ---- | M] () -- C:\Program Files\Winamp\System\primo.w5s
MOD - [2013/05/26 10:52:36 | 000,294,912 | ---- | M] () -- C:\Program Files\Winamp\Plugins\ml_local.dll
MOD - [2013/05/26 10:52:36 | 000,240,640 | ---- | M] () -- C:\Program Files\Winamp\Plugins\ml_pmp.dll
MOD - [2013/05/26 10:52:36 | 000,174,080 | ---- | M] () -- C:\Program Files\Winamp\System\auth.w5s
MOD - [2013/05/26 10:52:36 | 000,170,496 | ---- | M] () -- C:\Program Files\Winamp\Plugins\pmp_ipod.dll
MOD - [2013/05/26 10:52:36 | 000,124,928 | ---- | M] () -- C:\Program Files\Winamp\Plugins\ml_online.dll
MOD - [2013/05/26 10:52:36 | 000,118,272 | ---- | M] () -- C:\Program Files\Winamp\Plugins\pmp_p4s.dll
MOD - [2013/05/26 10:52:36 | 000,113,664 | ---- | M] () -- C:\Program Files\Winamp\Plugins\pmp_wifi.dll
MOD - [2013/05/26 10:52:36 | 000,084,480 | ---- | M] () -- C:\Program Files\Winamp\Plugins\ml_playlists.dll
MOD - [2013/05/26 10:52:36 | 000,083,456 | ---- | M] () -- C:\Program Files\Winamp\Plugins\ml_plg.dll
MOD - [2013/05/26 10:52:36 | 000,060,928 | ---- | M] () -- C:\Program Files\Winamp\Plugins\pmp_android.dll
MOD - [2013/05/26 10:52:36 | 000,057,344 | ---- | M] () -- C:\Program Files\Winamp\Plugins\ml_impex.dll
MOD - [2013/05/26 10:52:36 | 000,053,760 | ---- | M] () -- C:\Program Files\Winamp\Plugins\pmp_usb.dll
MOD - [2013/05/26 10:52:36 | 000,052,224 | ---- | M] () -- C:\Program Files\Winamp\Plugins\out_ds.dll
MOD - [2013/05/26 10:52:36 | 000,052,224 | ---- | M] () -- C:\Program Files\Winamp\Plugins\ml_history.dll
MOD - [2013/05/26 10:52:36 | 000,033,792 | ---- | M] () -- C:\Program Files\Winamp\Plugins\ml_rg.dll
MOD - [2013/05/26 10:52:36 | 000,032,256 | ---- | M] () -- C:\Program Files\Winamp\Plugins\ml_transcode.dll
MOD - [2013/05/26 10:52:36 | 000,023,552 | ---- | M] () -- C:\Program Files\Winamp\System\albumart.w5s
MOD - [2013/05/26 10:52:36 | 000,022,528 | ---- | M] () -- C:\Program Files\Winamp\Plugins\out_disk.dll
MOD - [2013/05/26 10:52:36 | 000,020,480 | ---- | M] () -- C:\Program Files\Winamp\Plugins\pmp_njb.dll
MOD - [2013/05/26 10:52:36 | 000,019,456 | ---- | M] () -- C:\Program Files\Winamp\System\bmp.w5s
MOD - [2013/05/26 10:52:36 | 000,018,432 | ---- | M] () -- C:\Program Files\Winamp\Plugins\out_wave.dll
MOD - [2013/05/26 10:52:35 | 000,318,976 | ---- | M] () -- C:\Program Files\Winamp\Plugins\gen_ml.dll
MOD - [2013/05/26 10:52:35 | 000,313,344 | ---- | M] () -- C:\Program Files\Winamp\Plugins\in_wm.dll
MOD - [2013/05/26 10:52:35 | 000,290,816 | ---- | M] () -- C:\Program Files\Winamp\Plugins\in_mp3.dll
MOD - [2013/05/26 10:52:35 | 000,253,440 | ---- | M] () -- C:\Program Files\Winamp\Plugins\in_vorbis.dll
MOD - [2013/05/26 10:52:35 | 000,249,856 | ---- | M] () -- C:\Program Files\Winamp\Plugins\ml_devices.dll
MOD - [2013/05/26 10:52:35 | 000,201,728 | ---- | M] () -- C:\Program Files\Winamp\Plugins\ml_disc.dll
MOD - [2013/05/26 10:52:35 | 000,185,344 | ---- | M] () -- C:\Program Files\Winamp\Plugins\gen_jumpex.dll
MOD - [2013/05/26 10:52:35 | 000,164,864 | ---- | M] () -- C:\Program Files\Winamp\Plugins\in_mod.dll
MOD - [2013/05/26 10:52:35 | 000,109,568 | ---- | M] () -- C:\Program Files\Winamp\Plugins\in_midi.dll
MOD - [2013/05/26 10:52:35 | 000,102,400 | ---- | M] () -- C:\Program Files\Winamp\Plugins\in_cdda.dll
MOD - [2013/05/26 10:52:35 | 000,075,264 | ---- | M] () -- C:\Program Files\Winamp\Plugins\in_nsv.dll
MOD - [2013/05/26 10:52:35 | 000,072,192 | ---- | M] () -- C:\Program Files\Winamp\Plugins\in_dshow.dll
MOD - [2013/05/26 10:52:35 | 000,068,608 | ---- | M] () -- C:\Program Files\Winamp\Plugins\in_avi.dll
MOD - [2013/05/26 10:52:35 | 000,061,440 | ---- | M] () -- C:\Program Files\Winamp\Plugins\in_flac.dll
MOD - [2013/05/26 10:52:35 | 000,057,344 | ---- | M] () -- C:\Program Files\Winamp\Plugins\gen_orgler.dll
MOD - [2013/05/26 10:52:35 | 000,052,736 | ---- | M] () -- C:\Program Files\Winamp\Plugins\in_mp4.dll
MOD - [2013/05/26 10:52:35 | 000,049,152 | ---- | M] () -- C:\Program Files\Winamp\Plugins\in_mkv.dll
MOD - [2013/05/26 10:52:35 | 000,043,008 | ---- | M] () -- C:\Program Files\Winamp\Plugins\in_flv.dll
MOD - [2013/05/26 10:52:35 | 000,028,672 | ---- | M] () -- C:\Program Files\Winamp\Plugins\ml_bookmarks.dll
MOD - [2013/05/26 10:52:35 | 000,028,672 | ---- | M] () -- C:\Program Files\Winamp\Plugins\ml_autotag.dll
MOD - [2013/05/26 10:52:35 | 000,025,600 | ---- | M] () -- C:\Program Files\Winamp\Plugins\gen_tray.dll
MOD - [2013/05/26 10:52:35 | 000,023,552 | ---- | M] () -- C:\Program Files\Winamp\Plugins\in_swf.dll
MOD - [2013/05/26 10:52:35 | 000,016,896 | ---- | M] () -- C:\Program Files\Winamp\Plugins\in_wave.dll
MOD - [2013/05/26 10:52:35 | 000,007,168 | ---- | M] () -- C:\Program Files\Winamp\Plugins\in_linein.dll
MOD - [2013/05/26 10:52:34 | 001,737,728 | ---- | M] () -- C:\Program Files\Winamp\Plugins\gen_ff.dll
MOD - [2013/05/26 10:52:34 | 000,028,160 | ---- | M] () -- C:\Program Files\Winamp\Plugins\gen_hotkeys.dll
MOD - [2013/05/26 10:52:33 | 000,340,992 | ---- | M] () -- C:\Program Files\Winamp\Plugins\freeform\wacs\freetype\freetype.wac
MOD - [2013/05/26 10:52:31 | 000,417,280 | ---- | M] () -- C:\Program Files\Winamp\nsutil.dll
MOD - [2013/05/26 10:52:31 | 000,253,440 | ---- | M] () -- C:\Program Files\Winamp\libsndfile.dll
MOD - [2013/05/26 10:52:31 | 000,078,848 | ---- | M] () -- C:\Program Files\Winamp\nde.dll
MOD - [2013/05/16 09:55:26 | 000,113,496 | ---- | M] () -- C:\Program Files\Spybot - Search & Destroy 2\snlThirdParty150.bpl
MOD - [2013/05/16 09:55:24 | 000,416,600 | ---- | M] () -- C:\Program Files\Spybot - Search & Destroy 2\DEC150.bpl
MOD - [2012/04/26 23:38:30 | 020,758,016 | ---- | M] () -- C:\Users\ADDISFARI\AppData\Local\GamersFirst\LIVE!\libcef.dll
MOD - [2009/07/01 19:03:24 | 000,132,384 | ---- | M] () -- C:\Program Files\Lenovo\Bluetooth Software\btkeyind.dll
MOD - [2008/12/20 04:20:50 | 000,063,304 | ---- | M] () -- C:\Program Files\Lenovo\Energy Management\kbdhook.dll
MOD - [2008/12/20 04:20:08 | 000,051,016 | ---- | M] () -- C:\Program Files\Lenovo\Energy Management\HookLib.dll
MOD - [2008/03/17 13:48:04 | 000,432,504 | ---- | M] () -- C:\Program Files\Browser-Anonymisierer\sqlite3.dll
========== Services (SafeList) ==========
SRV - File not found [Auto | Running] -- C:\Program Files\Spybot -- (SDWSCService)
SRV - File not found [Auto | Running] -- C:\Program Files\Spybot -- (SDUpdateService)
SRV - File not found [Auto | Running] -- C:\Program Files\Spybot -- (SDScannerService)
SRV - [2014/01/27 23:01:51 | 000,257,928 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Windows\System32\Macromed\Flash\FlashPlayerUpdateService.exe -- (AdobeFlashPlayerUpdateSvc)
SRV - [2014/01/14 10:04:32 | 000,508,016 | ---- | M] (Cherished Technololgy LIMITED) [Auto | Running] -- C:\ProgramData\IePluginService\PluginService.exe -- (IePluginService)
SRV - [2013/12/21 07:04:16 | 000,065,432 | ---- | M] (Adobe Systems Incorporated) [Auto | Running] -- C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe -- (AdobeARMservice)
SRV - [2013/12/20 22:30:20 | 000,119,408 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance)
SRV - [2013/12/11 20:40:36 | 000,569,768 | ---- | M] (Valve Corporation) [On_Demand | Stopped] -- C:\Program Files\Common Files\Steam\SteamService.exe -- (Steam Client Service)
SRV - [2013/12/04 14:57:52 | 000,009,216 | ---- | M] (Ellora Assets Corp.) [Auto | Running] -- C:\Program Files\Freemake\CaptureLib\CaptureLibService.exe -- (FreemakeVideoCapture)
SRV - [2013/11/26 09:29:52 | 000,108,032 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\windows\System32\IEEtwCollector.exe -- (IEEtwCollectorService)
SRV - [2013/11/11 22:02:14 | 003,478,544 | ---- | M] (AVG Technologies CZ, s.r.o.) [Auto | Running] -- C:\Program Files\AVG\AVG2014\avgidsagent.exe -- (AVGIDSAgent)
SRV - [2013/09/24 01:35:44 | 001,358,944 | ---- | M] (AVG Technologies CZ, s.r.o.) [Auto | Running] -- C:\Program Files\AVG\AVG2014\avgfws.exe -- (avgfws)
SRV - [2013/09/24 01:33:08 | 000,348,008 | ---- | M] (AVG Technologies CZ, s.r.o.) [Auto | Running] -- C:\Program Files\AVG\AVG2014\avgwdsvc.exe -- (avgwd)
SRV - [2013/08/14 14:19:22 | 000,039,056 | ---- | M] () [Auto | Running] -- C:\Program Files\RealNetworks\RealDownloader\rndlresolversvc.exe -- (RealNetworks Downloader Resolver Service)
SRV - [2013/07/31 16:44:44 | 000,137,528 | ---- | M] (Motorola Mobility LLC) [Auto | Running] -- C:\Program Files\Motorola Mobility\Motorola Device Manager\MotoHelperService.exe -- (Motorola Device Manager)
SRV - [2013/06/21 08:53:36 | 000,162,408 | R--- | M] (Skype Technologies) [Auto | Stopped] -- C:\Program Files\Skype\Updater\Updater.exe -- (SkypeUpdate)
SRV - [2013/05/27 05:57:27 | 000,680,960 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Defender\mpsvc.dll -- (WinDefend)
SRV - [2013/04/04 14:50:32 | 000,701,512 | ---- | M] (Malwarebytes Corporation) [Auto | Stopped] -- C:\Program Files\Malwarebytes' Anti-Malware\mbamservice.exe -- (MBAMService)
SRV - [2013/04/04 14:50:32 | 000,418,376 | ---- | M] (Malwarebytes Corporation) [Auto | Running] -- C:\Program Files\Malwarebytes' Anti-Malware\mbamscheduler.exe -- (MBAMScheduler)
SRV - [2013/04/03 03:06:10 | 000,587,912 | ---- | M] (Crawler.com) [Auto | Running] -- C:\Program Files\Spyware Terminator\st_rsser.exe -- (ST2012_Svc)
SRV - [2012/10/21 00:22:06 | 000,246,112 | ---- | M] () [Auto | Stopped] -- C:\Program Files\Mobile Partner\UpdateDog\ouc.exe -- (Mobile Partner. RunOuc)
SRV - [2012/10/02 12:13:44 | 003,064,000 | ---- | M] (Skype Technologies S.A.) [Auto | Running] -- C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe -- (Skype C2C Service)
SRV - [2012/04/26 09:14:06 | 002,438,696 | ---- | M] (mobile concepts GmbH) [On_Demand | Stopped] -- C:\Program Files\S.A.D\CyberGhost VPN\CGVPNCliService.exe -- (CGVPNCliSrvc)
SRV - [2011/09/02 16:06:38 | 000,065,657 | ---- | M] (Motorola) [Auto | Running] -- C:\Program Files\Motorola\MotForwardDaemon\ForwardDaemon.exe -- (PST Service)
SRV - [2011/06/08 12:02:00 | 000,633,856 | ---- | M] (Nokia) [On_Demand | Stopped] -- C:\Program Files\PC Connectivity Solution\ServiceLayer.exe -- (ServiceLayer)
SRV - [2011/03/14 16:27:28 | 000,271,712 | ---- | M] () [Auto | Running] -- C:\ProgramData\DatacardService\HWDeviceService.exe -- (HWDeviceService.exe)
SRV - [2011/03/02 16:20:58 | 000,224,256 | ---- | M] () [Auto | Running] -- C:\Program Files\GNU\GnuPG\dirmngr.exe -- (DirMngr)
SRV - [2010/11/15 08:14:18 | 000,095,568 | ---- | M] (Devguru Co., Ltd.) [Auto | Running] -- C:\Windows\System32\dgdersvc.exe -- (dgdersvc)
SRV - [2010/11/15 08:10:18 | 000,217,088 | ---- | M] (Teruten) [Auto | Running] -- C:\Windows\System32\FsUsbExService.Exe -- (FsUsbExService)
SRV - [2010/06/24 23:56:48 | 001,343,400 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\Wat\WatAdminSvc.exe -- (WatAdminSvc)
SRV - [2009/12/04 11:15:10 | 000,927,984 | ---- | M] (Cypherix Software (India) Pvt. Ltd.) [Auto | Running] -- C:\Windows\System32\cryptainersrv.exe -- (ssoftservice)
SRV - [2009/07/28 15:41:06 | 000,472,328 | ---- | M] (Lenovo Group Limited) [On_Demand | Stopped] -- C:\Program Files\Lenovo\ReadyComm\ConnSvc.exe -- (Lenovo ReadyComm ConnSvc)
SRV - [2009/07/28 15:41:04 | 000,414,984 | ---- | M] (Lenovo Group Limited) [On_Demand | Stopped] -- C:\Program Files\Lenovo\ReadyComm\AppSvc.exe -- (Lenovo ReadyComm AppSvc)
SRV - [2009/07/16 04:12:42 | 000,276,296 | ---- | M] (Lenovo Group Limited) [On_Demand | Stopped] -- C:\Program Files\Lenovo\ReadyComm\PS_MDP.dll -- (PS_MDP)
SRV - [2009/07/14 15:27:26 | 000,038,152 | ---- | M] (Lenovo Group Limited) [Auto | Running] -- C:\Program Files\Lenovo\ReadyComm\common\IGRS.exe -- (IGRS)
SRV - [2009/07/14 15:27:20 | 000,103,688 | ---- | M] (Lenovo Group Limited) [Auto | Running] -- C:\Program Files\Lenovo\ReadyComm\common\router.dll -- (ReadyComm.DirectRouter)
SRV - [2009/07/14 02:16:13 | 000,025,088 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\System32\sensrsvc.dll -- (SensrSvc)
SRV - [2009/07/01 19:03:12 | 000,582,944 | ---- | M] (Broadcom Corporation.) [Auto | Running] -- C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe -- (btwdins)
SRV - [2009/06/04 20:03:06 | 000,354,840 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files\Intel\Intel Matrix Storage Manager\IAANTMon.exe -- (IAANTMON)
SRV - [2008/01/11 18:50:16 | 000,030,312 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Microsoft Small Business\Business Contact Manager\BcmSqlStartupSvc.exe -- (BcmSqlStartupSvc)
========== Driver Services (SafeList) ==========
DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\RtsUCcid.sys -- (USBCCID)
DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\Rts516xIR.sys -- (RtsUIR)
DRV - File not found [Kernel | Auto | Stopped] -- -- (Nsynas32)
DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\motusbdevice.sys -- (motusbdevice)
DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\Motousbnet.sys -- (Motousbnet)
DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\motswch.sys -- (MotoSwitchService)
DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\motmodem.sys -- (motmodem)
DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\motccgpfl.sys -- (motccgpfl)
DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\motccgp.sys -- (motccgp)
DRV - File not found [Kernel | On_Demand | Stopped] -- C:\windows\system32\drivers\EagleXNt.sys -- (EagleXNt)
DRV - File not found [Kernel | On_Demand | Stopped] -- system32\DRIVERS\motfilt.sys -- (BTCFilterService)
DRV - [2014/01/20 14:16:18 | 010,471,712 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\nvlddmkm.sys -- (nvlddmkm)
DRV - [2014/01/20 14:14:33 | 000,027,888 | ---- | M] (Synaptics Incorporated) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\Smb_driver_Intel.sys -- (SmbDrvI)
DRV - [2014/01/07 17:28:41 | 000,161,056 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\nvhda32v.sys -- (NVHDA)
DRV - [2014/01/07 17:27:56 | 007,523,840 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\NETwNs32.sys -- (NETwNs32)
DRV - [2013/11/05 21:50:48 | 000,120,600 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | System | Running] -- C:\Windows\System32\drivers\avgdiskx.sys -- (Avgdiskx)
DRV - [2013/11/04 21:57:30 | 000,209,176 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | System | Running] -- C:\Windows\System32\drivers\avgidsdriverx.sys -- (AVGIDSDriver)
DRV - [2013/10/31 23:00:28 | 000,176,952 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | System | Running] -- C:\Windows\System32\drivers\avgldx86.sys -- (Avgldx86)
DRV - [2013/10/31 22:30:08 | 000,222,520 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | Boot | Running] -- C:\Windows\System32\drivers\avglogx.sys -- (Avglogx)
DRV - [2013/10/24 22:28:32 | 000,147,768 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | Boot | Running] -- C:\Windows\System32\drivers\avgidshx.sys -- (AVGIDSHX)
DRV - [2013/10/01 00:49:38 | 000,102,712 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | Boot | Running] -- C:\Windows\System32\drivers\avgmfx86.sys -- (Avgmfx86)
DRV - [2013/09/26 10:00:38 | 000,047,928 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | System | Running] -- C:\Windows\System32\drivers\avgfwd6x.sys -- (Avgfwfd)
DRV - [2013/09/17 00:57:26 | 000,022,840 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | System | Running] -- C:\Windows\System32\drivers\avgidsshimx.sys -- (AVGIDSShim)
DRV - [2013/09/10 00:43:20 | 000,027,448 | ---- | M] (AVG Technologies CZ, s.r.o.) [File_System | Boot | Running] -- C:\Windows\System32\drivers\avgrkx86.sys -- (Avgrkx86)
DRV - [2013/08/01 15:08:52 | 000,193,848 | ---- | M] (AVG Technologies CZ, s.r.o.) [Kernel | System | Running] -- C:\Windows\System32\drivers\avgtdix.sys -- (Avgtdix)
DRV - [2013/04/04 14:50:32 | 000,022,856 | ---- | M] (Malwarebytes Corporation) [File_System | On_Demand | Running] -- C:\Windows\System32\drivers\mbam.sys -- (MBAMProtector)
DRV - [2013/02/06 06:42:10 | 000,181,912 | ---- | M] (DEVGURU Co., LTD.(www.devguru.co.kr)) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\ssudserd.sys -- (ssudserd)
DRV - [2013/02/06 06:42:08 | 000,181,784 | ---- | M] (DEVGURU Co., LTD.(www.devguru.co.kr)) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\ssudmdm.sys -- (ssudmdm)
DRV - [2012/10/21 00:22:06 | 000,353,280 | ---- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\ewusbwwan.sys -- (ewusbmbb)
DRV - [2012/10/21 00:22:06 | 000,194,816 | ---- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\ewusbmdm.sys -- (hwdatacard)
DRV - [2012/10/21 00:22:06 | 000,102,784 | ---- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\ew_hwusbdev.sys -- (ew_hwusbdev)
DRV - [2012/10/21 00:22:06 | 000,073,216 | ---- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\ew_jubusenum.sys -- (huawei_enumerator)
DRV - [2012/08/23 15:44:32 | 000,014,848 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\rdpvideominiport.sys -- (RdpVideoMiniport)
DRV - [2012/08/23 15:40:25 | 000,049,664 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV - [2011/12/15 18:29:42 | 000,026,624 | ---- | M] (The OpenVPN Project) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\tap0901.sys -- (tap0901)
DRV - [2011/08/17 08:56:32 | 000,008,192 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\usbser_lowerfltj.sys -- (UsbserFilt)
DRV - [2011/08/17 08:56:30 | 000,008,192 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\usbser_lowerflt.sys -- (upperdev)
DRV - [2011/08/17 08:56:26 | 000,023,168 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\ccdcmbo.sys -- (nmwcdc)
DRV - [2011/08/17 08:56:22 | 000,018,176 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\ccdcmb.sys -- (nmwcd)
DRV - [2011/07/05 14:25:43 | 000,231,248 | ---- | M] (TrueCrypt Foundation) [Kernel | System | Running] -- C:\Windows\System32\drivers\truecrypt.sys -- (truecrypt)
DRV - [2011/06/21 11:24:06 | 000,032,768 | ---- | M] () [Kernel | System | Running] -- C:\Windows\System32\drivers\sp_rsdrv2.sys -- (sp_rsdrv2)
DRV - [2011/02/11 22:23:34 | 000,035,088 | ---- | M] (CACE Technologies, Inc.) [Kernel | Auto | Running] -- C:\Windows\System32\drivers\npf.sys -- (npf)
DRV - [2010/11/20 10:59:44 | 000,035,968 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\winusb.sys -- (WinUsb)
DRV - [2010/11/15 08:14:18 | 000,018,120 | ---- | M] (Devguru Co., Ltd) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\dgderdrv.sys -- (dgderdrv)
DRV - [2010/11/15 08:10:18 | 000,036,640 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\System32\FsUsbExDisk.Sys -- (FsUsbExDisk)
DRV - [2010/09/16 05:30:28 | 000,064,320 | ---- | M] (DEVGURU Co., LTD.(www.devguru.co.kr)) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\ssudbus.sys -- (dg_ssudbus)
DRV - [2010/07/28 14:33:06 | 000,121,576 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\ssadmdm.sys -- (ssadmdm)
DRV - [2010/07/28 14:33:06 | 000,098,152 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\ssadserd.sys -- (ssadserd)
DRV - [2010/07/28 14:33:06 | 000,096,488 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\ssadbus.sys -- (ssadbus)
DRV - [2010/07/28 14:33:06 | 000,030,312 | ---- | M] (Google Inc) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\ssadadb.sys -- (androidusb)
DRV - [2010/07/28 14:33:06 | 000,012,776 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\ssadmdfl.sys -- (ssadmdfl)
DRV - [2010/02/03 19:36:32 | 000,097,784 | ---- | M] (Cypherix Software (India) Pvt. Ltd.) [Kernel | System | Running] -- C:\Windows\System32\drivers\ssoftnt4.sys -- (ssoftnt4)
DRV - [2010/01/20 05:14:42 | 000,023,136 | ---- | M] (Lenovo Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\AcpiVpc.sys -- (ACPIVPC)
DRV - [2009/10/10 06:19:50 | 000,054,800 | ---- | M] () [Kernel | System | Running] -- C:\windows\System32\drivers\funfrm.sys -- (funfrm)
DRV - [2009/09/15 18:40:18 | 006,114,816 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\NETw5s32.sys -- (NETw5s32)
DRV - [2009/07/30 10:45:22 | 000,171,520 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\RtsUStor.sys -- (RSUSBSTOR)
DRV - [2009/07/28 22:09:38 | 000,063,240 | ---- | M] (Lenovo) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\wdbridge.sys -- (Bridge0)
DRV - [2009/07/21 22:14:58 | 000,081,704 | ---- | M] (CyberLink) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\wsvd.sys -- (wsvd)
DRV - [2009/07/16 13:37:14 | 000,011,792 | ---- | M] (Windows (R) Codename Longhorn DDK provider) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\WDMirror.sys -- (wdmirror)
DRV - [2009/07/14 00:52:10 | 000,014,336 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\vwifimp.sys -- (vwifimp)
DRV - [2009/07/13 23:02:49 | 000,229,888 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\k57nd60x.sys -- (k57nd60x)
DRV - [2009/06/15 03:46:22 | 000,475,648 | ---- | M] (Conexant Systems Inc.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\CHDRT32.sys -- (CnxtHdAudService)
DRV - [2009/05/14 01:40:38 | 004,231,680 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\NETw5v32.sys -- (netw5v32)
DRV - [2009/03/13 17:32:18 | 001,759,616 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\snp2uvc.sys -- (SNP2UVC)
DRV - [2008/08/26 09:26:12 | 000,018,816 | ---- | M] (Nokia) [Kernel | On_Demand | Stopped] -- C:\Windows\System32\drivers\pccsmcfd.sys -- (pccsmcfd)
DRV - [2008/08/06 13:34:16 | 000,128,104 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\System32\drivers\WimFltr.sys -- (WimFltr)
DRV - [2008/03/14 14:23:12 | 000,169,008 | ---- | M] (Alps Electric Co., Ltd.) [Kernel | On_Demand | Running] -- C:\Windows\System32\drivers\Apfiltr.sys -- (ApfiltrService)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.awesomehp.com/?type=hp&ts=1390859855&from=amt&uid=ST9320325AS_5VD1LZMRXXXX5VD1LZMR
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.awesomehp.com/web/?type=ds&ts=1390859855&from=amt&uid=ST9320325AS_5VD1LZMRXXXX5VD1LZMR&q={searchTerms}
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.awesomehp.com/web/?type=ds&ts=1390859855&from=amt&uid=ST9320325AS_5VD1LZMRXXXX5VD1LZMR&q={searchTerms}
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://www.lenovo.com/ [binary data]
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.awesomehp.com/?type=hp&ts=1390859855&from=amt&uid=ST9320325AS_5VD1LZMRXXXX5VD1LZMR
IE - HKLM\..\SearchScopes,DefaultScope =
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = hxxp://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKLM\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = hxxp://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL =
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = hxxp://www.google.com
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.google.com
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.com
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page Restore = hxxp://www.google.com
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = hxxp://www.google.com
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = hxxp://www.google.com
IE - HKCU\..\SearchScopes,DefaultScope =
IE - HKCU\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = hxxp://www.bing.com/search
IE - HKCU\..\SearchScopes\{3BD4EA07-28C4-481A-BD59-3DA70E75DE2B}: "URL" = hxxp://www.bing.com/search?FORM=WLETDF&PC=WLEM&q={searchTerms}&src=IE-SearchBox
IE - HKCU\..\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}: "URL" = hxxp://www.google.com/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7&rlz=1I7GGHP_de
IE - HKCU\..\SearchScopes\{9608064F-7E5A-4576-9DDC-20BF9A7271BF}: "URL" = hxxp://www.amazon.de/gp/bit/amazonserp/ref=bit_bds-p18_serp_ie_de_display?ie=UTF8&tag=bds-p18-serp-de-ie-21&tagbase=bds-p18&tbrId=v1_abb-channel-18_32cd4098f87b4af19a3a0a48b93d56ce_18_38_20121228_DE_ie_ds_OC1&query={searchTerms}
IE - HKCU\..\SearchScopes\{9AE7B850-ADD1-4AC9-81CD-01AAA8EA2861}: "URL" = hxxp://search.softonic.com/MOY00621/tb_v1?q={searchTerms}&SearchSource=4&cc=&mi=662550af000000000000001e65c7175f&r=698
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
========== FireFox ==========
FF - prefs.js..browser.startup.homepage: "https://www.google.de/?gws_rd=cr&ei=ytXoUuXMC4OEtAa344HgDQ"
FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:26.0
FF - user.js - File not found
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\windows\system32\Macromed\Flash\NPSWF32_12_0_0_43.dll ()
FF - HKLM\Software\MozillaPlugins\@adobe.com/ShockwavePlayer: C:\windows\system32\Adobe\Director\np32dsw_1207148.dll (Adobe Systems, Inc.)
FF - HKLM\Software\MozillaPlugins\@divx.com/DivX Player Plugin,version=1.0.0: File not found
FF - HKLM\Software\MozillaPlugins\@divx.com/DivX Plus Web Player Plug-In,version=1.0.0: C:\Program Files\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC)
FF - HKLM\Software\MozillaPlugins\@divx.com/DivX VOD Helper,version=1.0.0: C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
FF - HKLM\Software\MozillaPlugins\@Google.com/GoogleEarthPlugin: C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.51.2: C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.51.2: C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/OfficeLive,version=1.5: C:\Program Files\Microsoft\Office Live\npOLW.dll (Microsoft Corp.)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3508.1109: C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3538.0513: C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3555.0308: C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@ngm.nexoneu.com/NxGame: C:\ProgramData\NexonEU\NGM\npNxGameeu.dll (Nexon)
FF - HKLM\Software\MozillaPlugins\@pack.google.com/Google Updater;version=14: C:\Program Files\Google\Google Updater\2.4.2432.1652\npCIDetect14.dll (Google)
FF - HKLM\Software\MozillaPlugins\@pages.tvunetworks.com/WebPlayer: C:\Program Files\TVUPlayer\npTVUAx.dll (TVU networks)
FF - HKLM\Software\MozillaPlugins\@real.com/nppl3260;version=16.0.3.51: c:\program files\real\realplayer\Netscape6\nppl3260.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprndlchromebrowserrecordext;version=1.3.3: C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlchromebrowserrecordext.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprndlhtml5videoshim;version=1.3.3: C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlhtml5videoshim.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprndlpepperflashvideoshim;version=1.3.3: C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\MozillaPlugins\nprndlpepperflashvideoshim.dll (RealNetworks, Inc.)
FF - HKLM\Software\MozillaPlugins\@real.com/nprpplugin;version=16.0.3.51: c:\program files\real\realplayer\Netscape6\nprpplugin.dll (RealPlayer)
FF - HKLM\Software\MozillaPlugins\@realnetworks.com/npdlplugin;version=1: C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\npdlplugin.dll (RealDownloader)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKCU\Software\MozillaPlugins\@unity3d.com/UnityPlayer,version=1.0: C:\Users\ADDISFARI\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll (Unity Technologies ApS)
FF - HKCU\Software\MozillaPlugins\@www.flatcast.com/FlatViewer 5.2: C:\Users\ADDISF~1\AppData\Roaming\Flatcast\NpFv522.dll (1 mal 1 Software GmbH)
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\bkmrksync@nokia.com: C:\Program Files\Nokia\Nokia PC Suite 7\bkmrksync\ [2011/02/01 11:24:20 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\fmconverter@gmail.com: C:\Program Files\Freemake\Freemake Video Converter\BrowserPlugin\Firefox\ [2012/12/28 04:16:33 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{ABDE892B-13A8-4d1b-88E6-365A6E755758}: C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext [2013/09/12 23:17:20 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{23fcfd51-4958-4f00-80a3-ae97e717ed8b}: C:\Program Files\DivX\DivX Plus Web Player\firefox\DivXHTML5 [2013/05/25 18:17:58 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\fmdownloader@gmail.com: C:\Program Files\Freemake\Freemake Video Downloader\BrowserPlugin\Firefox\fmdownloader@gmail.com\ [2013/12/05 09:33:03 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\ytfmdownloader@gmail.com: C:\Program Files\Freemake\Freemake Video Downloader\BrowserPlugin\Firefox\ytfmdownloader@gmail.com\ [2013/12/05 09:33:04 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{DF153AFF-6948-45d7-AC98-4FC4AF8A08E2}: C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\Firefox\Ext\ [2013/09/12 23:17:20 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{52b0f3db-f988-4788-b9dc-861d016f4487}: C:\Program Files\Web Check\WebCheck.xpi [2013/08/12 18:48:20 | 000,005,099 | ---- | M] ()
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\lightningnewtab@gmail.com: C:\Users\ADDISFARI\AppData\Roaming\Mozilla\Firefox\Profiles\5w1bpdoi.default-1382463406057\extensions\lightningnewtab@gmail.com.xpi
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 26.0\extensions\\Plugins: C:\Program Files\Mozilla Firefox\plugins [2014/01/16 11:47:59 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 17.0.5\extensions\\Components: C:\Program Files\Mozilla Thunderbird\components [2013/05/25 01:49:06 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Thunderbird 17.0.5\extensions\\Plugins: C:\Program Files\Mozilla Thunderbird\plugins [2014/01/16 11:47:59 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Thunderbird\Extensions\\avgthb@avg.com: C:\Program Files\AVG\AVG2012\Thunderbird\
FF - HKEY_CURRENT_USER\software\mozilla\Firefox\Extensions\\{B64D9B05-48E1-4CEB-BF58-E0643994E900}: C:\Program Files\Common Files\DVDVideoSoft\plugins\ff\ [2014/01/04 17:21:27 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\Firefox\Extensions\\{b05cdfa0-c3d6-45b9-9264-2d95a4c9240e}: C:\Program Files\Show-Password\150.xpi
[2013/01/10 14:13:44 | 000,000,000 | ---D | M] (No name found) -- C:\Users\ADDISFARI\AppData\Roaming\Mozilla\Extensions
[2013/01/10 14:13:44 | 000,000,000 | ---D | M] (Smiley Bar for Facebook) -- C:\Users\ADDISFARI\AppData\Roaming\Mozilla\Extensions\statuswinks@StatusWinks
[2014/01/28 14:20:01 | 000,000,000 | ---D | M] (No name found) -- C:\Users\ADDISFARI\AppData\Roaming\Mozilla\Firefox\Profiles\5w1bpdoi.default-1382463406057\extensions
[2014/01/28 14:20:01 | 000,000,000 | ---D | M] (No name found) -- C:\Users\ADDISFARI\AppData\Roaming\Mozilla\Firefox\Profiles\5w1bpdoi.default-1382463406057\extensions\youtubeunblocker@unblocker.yt
[2014/01/28 16:24:07 | 000,000,000 | ---D | M] (No name found) -- C:\Users\ADDISFARI\AppData\Roaming\Mozilla\Firefox\Profiles\pxl660ik.default-1390915334048\extensions
[2014/01/27 22:55:54 | 000,000,000 | ---D | M] (No name found) -- C:\Users\ADDISFARI\AppData\Roaming\Mozilla\Firefox\Profiles\s7kgx5nh.default\extensions
[2014/01/28 16:24:07 | 000,940,775 | ---- | M] () (No name found) -- C:\Users\ADDISFARI\AppData\Roaming\Mozilla\Firefox\Profiles\pxl660ik.default-1390915334048\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
[2013/12/27 22:31:24 | 000,007,376 | ---- | M] () (No name found) -- C:\Users\ADDISFARI\AppData\Roaming\Mozilla\Firefox\Profiles\s7kgx5nh.default\extensions\firefox@jumpflip.net.xpi
[2014/01/07 23:41:08 | 000,009,604 | ---- | M] () (No name found) -- C:\Users\ADDISFARI\AppData\Roaming\Mozilla\Firefox\Profiles\s7kgx5nh.default\extensions\firefox@surftastic.net.xpi
[2013/12/20 22:30:11 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\mozilla firefox\extensions
[2013/12/20 22:30:11 | 000,000,000 | ---D | M] (Recorder Toolbar) -- C:\Program Files\mozilla firefox\extensions\{10743931-94DF-476f-A987-4391233C17A2}
[2013/12/20 22:30:11 | 000,000,000 | ---D | M] (Skype Click to Call) -- C:\Program Files\mozilla firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
[2013/12/20 22:30:11 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0034-ABCDEFFEDCBA}
[2013/12/20 22:30:11 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0035-ABCDEFFEDCBA}
[2013/12/20 22:30:11 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0037-ABCDEFFEDCBA}
[2014/01/21 14:41:17 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files\mozilla firefox\browser\extensions
[2014/01/21 14:41:17 | 000,000,000 | ---D | M] (Default) -- C:\Program Files\mozilla firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
[2009/09/21 10:00:44 | 001,447,328 | ---- | M] (1 mal 1 Software GmbH) -- C:\Program Files\mozilla firefox\plugins\NpFv522.dll
[2013/09/12 23:16:17 | 000,124,504 | ---- | M] (RealPlayer) -- C:\Program Files\mozilla firefox\plugins\nprpplugin.dll
[2012/06/20 17:14:20 | 000,012,800 | ---- | M] (Nullsoft, Inc.) -- C:\Program Files\mozilla firefox\plugins\npwachk.dll
========== Chrome ==========
CHR - default_search_provider: ()
CHR - default_search_provider: search_url =
CHR - default_search_provider: suggest_url =
CHR - homepage: hxxp://www.awesomehp.com/?type=hp&ts=1390859855&from=amt&uid=ST9320325AS_5VD1LZMRXXXX5VD1LZMR
CHR - Extension: No name found = C:\Users\ADDISFARI\AppData\Local\Google\Chrome\User Data\Default\Extensions\bpegkgagfojjbcpkihigfmkojdmmimdf\1.0.0_1\
CHR - Extension: No name found = C:\Users\ADDISFARI\AppData\Local\Google\Chrome\User Data\Default\Extensions\dacechnliklhcacondhhkkfobapdopee\0.1_1\
CHR - Extension: No name found = C:\Users\ADDISFARI\AppData\Local\Google\Chrome\User Data\Default\Extensions\ehgldbbpchgpcfagfpfjgoomddhccfgh\1.0.0_1\
CHR - Extension: No name found = C:\Users\ADDISFARI\AppData\Local\Google\Chrome\User Data\Default\Extensions\idhngdhcfkoamngbedgpaokgjbnpdiji\1.3.3_0\
CHR - Extension: No name found = C:\Users\ADDISFARI\AppData\Local\Google\Chrome\User Data\Default\Extensions\jbolfgndggfhhpbnkgnpjkfhinclbigj\1.0.0_1\
CHR - Extension: No name found = C:\Users\ADDISFARI\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl\6.3.0.11079_0\
CHR - Extension: No name found = C:\Users\ADDISFARI\AppData\Local\Google\Chrome\User Data\Default\Extensions\logekkkdbdidmmcgkonmmonclldogceg\1.150_1\
CHR - Extension: No name found = C:\Users\ADDISFARI\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.0_1\
CHR - Extension: No name found = C:\Users\ADDISFARI\AppData\Local\Google\Chrome\User Data\Default\Extensions\nneajnkjbffgblleaoojgaacokifdkhm\2.1.2.172_0\
O1 HOSTS File: ([2014/01/10 10:47:20 | 000,000,824 | ---- | M]) - C:\Windows\System32\drivers\etc\hosts
O2 - BHO: (Recorder Toolbar) - {120A8821-2BEE-4C29-BCDA-62C577781992} - C:\Program Files\MedienTeam66\MP3 Recorder for YouTube\IEPlugin.dll (MedienTeam66)
O2 - BHO: (RealNetworks Download and Record Plugin for Internet Explorer) - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\ProgramData\RealNetworks\RealDownloader\BrowserPlugins\IE\rndlbrowserrecordplugin.dll (RealDownloader)
O2 - BHO: (DivX Plus Web Player HTML5 <video>) - {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program Files\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll (DivX, LLC)
O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
O2 - BHO: (IeMonitorBho Class) - {bf00e119-21a3-4fd1-b178-3b8537e75c92} - C:\Program Files\Megaupload\Mega Manager\MegaIEMn.dll (Megaupload Limited)
O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
O2 - BHO: (Web Check) - {E155F23C-9931-47c6-A619-20E6FCA86D75} - C:\Program Files\Web Check\WebCheck.dll (Web Check)
O3 - HKLM\..\Toolbar: (Recorder Toolbar) - {120A8821-2BEE-4C29-BCDA-62C577781992} - C:\Program Files\MedienTeam66\MP3 Recorder for YouTube\IEPlugin.dll (MedienTeam66)
O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O4 - HKLM..\Run: [APSDaemon] C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc.)
O4 - HKLM..\Run: [AVG_UI] C:\Program Files\AVG\AVG2014\avgui.exe (AVG Technologies CZ, s.r.o.)
O4 - HKLM..\Run: [DivXMediaServer] C:\Program Files\DivX\DivX Media Server\DivXMediaServer.exe (DivX, LLC)
O4 - HKLM..\Run: [Energy Management] C:\Program Files\Lenovo\Energy Management\Energy Management.exe (Lenovo (Beijing) Limited)
O4 - HKLM..\Run: [EnergyUtility] C:\Program Files\Lenovo\Energy Management\utility.exe (Lenovo(beijing) Limited)
O4 - HKLM..\Run: [IAAnotif] C:\Program Files\Intel\Intel Matrix Storage Manager\iaanotif.exe (Intel Corporation)
O4 - HKLM..\Run: [Malwarebytes Anti-Malware (reboot)] C:\Program Files\Malwarebytes' Anti-Malware\mbam.exe (Malwarebytes Corporation)
O4 - HKLM..\Run: [SDTray] C:\Program Files\Spybot - Search & Destroy 2\SDTray.exe (Safer-Networking Ltd.)
O4 - HKLM..\Run: [SpywareTerminatorShield] C:\Program Files\Spyware Terminator\SpywareTerminatorShield.exe (Crawler.com)
O4 - HKLM..\Run: [SpywareTerminatorUpdater] C:\Program Files\Spyware Terminator\SpywareTerminatorUpdate.exe (Crawler.com)
O4 - HKLM..\Run: [UpdateP2GShortCut] C:\Program Files\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe (CyberLink Corp.)
O4 - HKCU..\Run: [Spybot-S&D Cleaning] C:\Program Files\Spybot - Search & Destroy 2\SDCleaner.exe (Safer-Networking Ltd.)
O4 - HKCU..\Run: [Steam] C:\Program Files\Steam\Steam.exe (Valve Corporation)
O4 - HKLM..\RunOnce: [Malwarebytes Anti-Malware (cleanup)] C:\ProgramData\Malwarebytes\Malwarebytes' Anti-Malware\cleanup.dll (Malwarebytes Corporation)
O4 - Startup: C:\Users\ADDISFARI\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Browser-Anonymisierer.lnk = C:\Program Files\Browser-Anonymisierer\BrowserMaulkorb.exe (Alexander Miehlke Softwareentwicklung)
O4 - Startup: C:\Users\ADDISFARI\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\GamersFirst LIVE!.lnk = C:\Users\ADDISFARI\AppData\Local\GamersFirst\LIVE!\Live.exe (GamersFirst)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 153
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 153
O8 - Extra context menu item: Bild an &Bluetooth-Gerät senden... - C:\Program Files\Lenovo\Bluetooth Software\btsendto_ie_ctx.htm ()
O8 - Extra context menu item: Download Link Using Mega Manager... - C:\Program Files\Megaupload\Mega Manager\mm_file.htm ()
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000 File not found
O8 - Extra context menu item: Free YouTube Download - Reg Error: Value error. File not found
O8 - Extra context menu item: Free YouTube to MP3 Converter - C:\Program Files\Common Files\DVDVideoSoft\plugins\freeytmp3downloader.htm ()
O8 - Extra context menu item: Google Sidewiki... - res://C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_7461B1589E8B4FB7.dll/cmsidewiki.html File not found
O8 - Extra context menu item: Seite an &Bluetooth-Gerät senden... - C:\Program Files\Lenovo\Bluetooth Software\btsendto_ie.htm ()
O9 - Extra Button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL (Microsoft Corporation)
O9 - Extra Button: @C:\Program Files\Lenovo\Bluetooth Software\btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\Lenovo\Bluetooth Software\btsendto_ie.htm ()
O9 - Extra 'Tools' menuitem : @C:\Program Files\Lenovo\Bluetooth Software\btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\Lenovo\Bluetooth Software\btsendto_ie.htm ()
O10 - NameSpace_Catalog5\Catalog_Entries\000000000006 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O13 - gopher Prefix: missing
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab (Java Plug-in 10.51.2)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab (Java Plug-in 10.51.2)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{06006141-F9D3-4D8C-A965-2CF43363E75F}: NameServer = 193.189.244.206 193.189.244.225
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{2B6B77E3-DDC6-4903-A358-F33CD11A35D3}: DhcpNameServer = 192.168.42.129
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{8DCAB006-E30A-4241-A02C-3DFA1D75B1BD}: NameServer = 193.189.244.225 193.189.244.206
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{A0D8F58D-3376-47DF-A243-65732515AA9D}: NameServer = 193.189.244.206 193.189.244.225
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{AAB04FFA-B73E-4770-ABDB-C4A2A32333D9}: DhcpNameServer = 192.168.1.1
O18 - Protocol\Handler\linkscanner - No CLSID value found
O18 - Protocol\Handler\mso-offdap11 {32505114-5902-49B2-880A-1F7738E5A384} - C:\PROGRA~1\COMMON~1\MICROS~1\WEBCOM~1\11\OWC11.DLL (Microsoft Corporation)
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL (Skype Technologies)
O18 - Protocol\Handler\skype-ie-addon-data {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
O18 - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - C:\PROGRA~1\COMMON~1\MICROS~1\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\windows\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\windows\system32\userinit.exe) - C:\Windows\System32\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:\windows\System32\SystemPropertiesPerformance.exe (Microsoft Corporation)
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2009/06/10 22:42:20 | 000,000,024 | ---- | M] () - C:\autoexec.bat -- [ NTFS ]
O33 - MountPoints2\{1d131876-64f3-11e3-9a6d-002622cd5b23}\Shell - "" = AutoRun
O33 - MountPoints2\{1d131876-64f3-11e3-9a6d-002622cd5b23}\Shell\AutoRun\command - "" = F:\setup.exe
O33 - MountPoints2\{1e22a027-1b0b-11e2-9d6f-002622cd5b23}\Shell - "" = AutoRun
O33 - MountPoints2\{1e22a027-1b0b-11e2-9d6f-002622cd5b23}\Shell\AutoRun\command - "" = F:\AutoRun.exe
O33 - MountPoints2\{1e22a036-1b0b-11e2-9d6f-002622cd5b23}\Shell - "" = AutoRun
O33 - MountPoints2\{1e22a036-1b0b-11e2-9d6f-002622cd5b23}\Shell\AutoRun\command - "" = F:\AutoRun.exe
O33 - MountPoints2\{1e22a048-1b0b-11e2-9d6f-002622cd5b23}\Shell - "" = AutoRun
O33 - MountPoints2\{1e22a048-1b0b-11e2-9d6f-002622cd5b23}\Shell\AutoRun\command - "" = F:\AutoRun.exe
O33 - MountPoints2\{f5ee37c8-87dd-11e2-ab3d-002622cd5b23}\Shell - "" = AutoRun
O33 - MountPoints2\{f5ee37c8-87dd-11e2-ab3d-002622cd5b23}\Shell\AutoRun\command - "" = F:\AutoRun.exe
O33 - MountPoints2\F\Shell - "" = AutoRun
O33 - MountPoints2\F\Shell\AutoRun\command - "" = F:\AutoRun.exe
O34 - HKLM BootExecute: (autocheck autochk *)
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)
========== Files/Folders - Created Within 30 Days ==========
[2014/01/29 11:38:35 | 000,000,000 | ---D | C] -- C:\Program Files\stinger
[2014/01/29 10:30:30 | 000,000,000 | ---D | C] -- C:\Users\ADDISFARI\Desktop\reggae NEW 2014
[2014/01/28 17:18:26 | 000,000,000 | ---D | C] -- C:\Program Files\PrivaZer
[2014/01/28 15:56:53 | 000,000,000 | ---D | C] -- C:\Users\ADDISFARI\Desktop\Neuer Ordner
[2014/01/28 00:06:05 | 000,000,000 | ---D | C] -- C:\Program Files\ESET
[2014/01/27 23:24:29 | 000,000,000 | ---D | C] -- C:\Users\ADDISFARI\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller
[2014/01/27 23:23:15 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes' Anti-Malware
[2014/01/27 23:23:14 | 000,022,856 | ---- | C] (Malwarebytes Corporation) -- C:\windows\System32\drivers\mbam.sys
[2014/01/27 23:23:14 | 000,000,000 | ---D | C] -- C:\Program Files\Malwarebytes' Anti-Malware
[2014/01/27 22:58:52 | 000,000,000 | ---D | C] -- C:\ProgramData\IePluginService
[2014/01/27 22:55:46 | 000,000,000 | ---D | C] -- C:\Program Files\Surftastic
[2014/01/24 10:02:04 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Activision
[2014/01/24 09:48:48 | 000,000,000 | ---D | C] -- C:\Program Files\Activision
[2014/01/24 09:45:04 | 000,000,000 | ---D | C] -- C:\Users\ADDISFARI\Desktop\pc gämes
[2014/01/23 00:54:18 | 000,000,000 | ---D | C] -- C:\Users\ADDISFARI\AppData\Roaming\Spyware Terminator
[2014/01/23 00:54:18 | 000,000,000 | ---D | C] -- C:\ProgramData\Spyware Terminator
[2014/01/23 00:54:16 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spyware Terminator 2012
[2014/01/23 00:54:15 | 000,000,000 | ---D | C] -- C:\Program Files\Spyware Terminator
[2014/01/21 18:04:40 | 000,000,000 | ---D | C] -- C:\windows\Repair
[2014/01/21 10:21:23 | 000,000,000 | ---D | C] -- C:\Users\ADDISFARI\Documents\VX-Software 9
[2014/01/21 10:04:23 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VISIT-X
[2014/01/21 10:04:21 | 000,000,000 | ---D | C] -- C:\Program Files\VX-Software 9
[2014/01/21 10:03:56 | 000,000,000 | ---D | C] -- C:\windows\RegisteredPackages
[2014/01/21 10:03:49 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media
[2014/01/21 10:03:47 | 000,000,000 | ---D | C] -- C:\Program Files\Windows Media Components
[2014/01/21 10:02:40 | 000,000,000 | ---D | C] -- C:\Users\ADDISFARI\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WMV9 VCM
[2014/01/21 10:02:39 | 000,000,000 | ---D | C] -- C:\Program Files\WMV9_VCM
[2014/01/20 17:54:33 | 000,000,000 | ---D | C] -- C:\Users\ADDISFARI\Desktop\conexionmusical,lena,tapete&friends
[2014/01/20 14:16:18 | 022,960,416 | ---- | C] (NVIDIA Corporation) -- C:\windows\System32\nvoglv32.dll
[2014/01/20 14:16:18 | 009,657,464 | ---- | C] (NVIDIA Corporation) -- C:\windows\System32\nvopencl.dll
[2014/01/20 14:16:17 | 017,560,352 | ---- | C] (NVIDIA Corporation) -- C:\windows\System32\nvcompiler.dll
[2014/01/20 14:16:17 | 010,471,712 | ---- | C] (NVIDIA Corporation) -- C:\windows\System32\drivers\nvlddmkm.sys
[2014/01/20 14:16:17 | 009,700,224 | ---- | C] (NVIDIA Corporation) -- C:\windows\System32\nvcuda.dll
[2014/01/20 14:16:17 | 002,947,872 | ---- | C] (NVIDIA Corporation) -- C:\windows\System32\nvcuvid.dll
[2014/01/20 14:16:17 | 002,747,680 | ---- | C] (NVIDIA Corporation) -- C:\windows\System32\nvcuvenc.dll
[2014/01/20 14:16:17 | 001,049,888 | ---- | C] (NVIDIA Corporation) -- C:\windows\System32\nvdispco3233221.dll
[2014/01/20 14:16:17 | 000,893,728 | ---- | C] (NVIDIA Corporation) -- C:\windows\System32\nvdispgenco3233221.dll
[2014/01/20 14:16:17 | 000,852,768 | ---- | C] (NVIDIA Corporation) -- C:\windows\System32\NvIFR.dll
[2014/01/20 14:16:17 | 000,847,648 | ---- | C] (NVIDIA Corporation) -- C:\windows\System32\NvFBC.dll
[2014/01/20 14:15:51 | 000,000,000 | ---D | C] -- C:\Program Files\Synaptics
[2014/01/20 14:14:37 | 001,629,040 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\WdfCoInstaller01011.dll
[2014/01/20 14:14:33 | 000,027,888 | ---- | C] (Synaptics Incorporated) -- C:\windows\System32\drivers\Smb_driver_Intel.sys
[2014/01/20 14:14:33 | 000,000,000 | ---D | C] -- C:\DrvInstall
[2014/01/20 13:34:03 | 000,000,000 | ---D | C] -- C:\Users\ADDISFARI\Documents\CAPCOM
[2014/01/20 13:01:41 | 004,178,264 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\D3DX9_41.dll
[2014/01/20 13:01:40 | 000,517,448 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\XAudio2_4.dll
[2014/01/20 13:01:40 | 000,235,352 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\xactengine3_4.dll
[2014/01/20 13:01:39 | 000,022,360 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\X3DAudio1_6.dll
[2014/01/20 13:01:38 | 002,036,576 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\D3DCompiler_40.dll
[2014/01/20 13:01:38 | 000,452,440 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\d3dx10_40.dll
[2014/01/20 13:01:37 | 004,379,984 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\D3DX9_40.dll
[2014/01/20 13:01:31 | 001,493,528 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\D3DCompiler_39.dll
[2014/01/20 13:01:31 | 000,467,984 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\d3dx10_39.dll
[2014/01/20 13:01:30 | 003,851,784 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\D3DX9_39.dll
[2014/01/20 13:01:28 | 000,507,400 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\XAudio2_1.dll
[2014/01/20 13:01:28 | 000,238,088 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\xactengine3_1.dll
[2014/01/20 13:01:28 | 000,065,032 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\XAPOFX1_0.dll
[2014/01/20 13:01:27 | 000,025,608 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\X3DAudio1_4.dll
[2014/01/20 13:01:25 | 001,491,992 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\D3DCompiler_38.dll
[2014/01/20 13:01:25 | 000,467,984 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\d3dx10_38.dll
[2014/01/20 13:01:23 | 003,850,760 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\D3DX9_38.dll
[2014/01/20 13:01:21 | 000,479,752 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\XAudio2_0.dll
[2014/01/20 13:01:21 | 000,238,088 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\xactengine3_0.dll
[2014/01/20 13:01:20 | 000,025,608 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\X3DAudio1_3.dll
[2014/01/20 13:01:17 | 000,267,272 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\xactengine2_10.dll
[2014/01/20 13:01:15 | 001,374,232 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\D3DCompiler_36.dll
[2014/01/20 13:01:15 | 000,444,776 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\d3dx10_36.dll
[2014/01/20 13:01:12 | 003,734,536 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\d3dx9_36.dll
[2014/01/20 13:01:11 | 000,267,112 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\xactengine2_9.dll
[2014/01/20 13:01:09 | 001,358,192 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\D3DCompiler_35.dll
[2014/01/20 13:01:09 | 000,444,776 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\d3dx10_35.dll
[2014/01/20 13:01:07 | 000,266,088 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\xactengine2_8.dll
[2014/01/20 13:01:07 | 000,017,928 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\X3DAudio1_2.dll
[2014/01/20 13:01:05 | 001,124,720 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\D3DCompiler_34.dll
[2014/01/20 13:01:05 | 000,443,752 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\d3dx10_34.dll
[2014/01/20 13:01:01 | 003,497,832 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\d3dx9_34.dll
[2014/01/20 13:00:57 | 000,261,480 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\xactengine2_7.dll
[2014/01/20 13:00:55 | 001,123,696 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\D3DCompiler_33.dll
[2014/01/20 13:00:55 | 000,443,752 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\d3dx10_33.dll
[2014/01/20 13:00:53 | 003,495,784 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\d3dx9_33.dll
[2014/01/20 13:00:52 | 000,255,848 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\xactengine2_6.dll
[2014/01/20 13:00:51 | 000,251,672 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\xactengine2_5.dll
[2014/01/20 13:00:50 | 000,440,080 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\d3dx10.dll
[2014/01/20 13:00:48 | 000,237,848 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\xactengine2_4.dll
[2014/01/20 13:00:47 | 000,015,128 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\x3daudio1_1.dll
[2014/01/20 13:00:45 | 000,236,824 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\xactengine2_3.dll
[2014/01/20 13:00:45 | 000,062,744 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\xinput1_2.dll
[2014/01/20 13:00:43 | 000,230,168 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\xactengine2_2.dll
[2014/01/20 12:43:59 | 000,000,000 | ---D | C] -- C:\Program Files\CAPCOM
[2014/01/20 03:44:10 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Games for Windows - LIVE
[2014/01/20 03:44:00 | 001,420,824 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\D3DCompiler_37.dll
[2014/01/20 03:43:59 | 000,462,864 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\d3dx10_37.dll
[2014/01/20 03:43:58 | 003,786,760 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\D3DX9_37.dll
[2014/01/20 03:43:06 | 000,000,000 | ---D | C] -- C:\windows\System32\xlive
[2014/01/20 03:43:05 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft Games for Windows - LIVE
[2014/01/18 17:34:09 | 000,264,616 | ---- | C] (Oracle Corporation) -- C:\windows\System32\javaws.exe
[2014/01/18 17:34:01 | 000,175,016 | ---- | C] (Oracle Corporation) -- C:\windows\System32\javaw.exe
[2014/01/18 17:34:01 | 000,174,504 | ---- | C] (Oracle Corporation) -- C:\windows\System32\java.exe
[2014/01/18 17:34:01 | 000,094,632 | ---- | C] (Oracle Corporation) -- C:\windows\System32\WindowsAccessBridge.dll
[2014/01/17 16:36:03 | 002,349,056 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\win32k.sys
[2014/01/17 16:36:01 | 000,240,576 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\drivers\netio.sys
[2014/01/17 16:35:57 | 000,284,672 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\drivers\usbport.sys
[2014/01/17 16:35:57 | 000,006,016 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\drivers\usbd.sys
[2014/01/13 10:39:48 | 002,724,864 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\mshtml.tlb
[2014/01/13 10:39:46 | 000,208,896 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\ie4uinit.exe
[2014/01/13 10:39:45 | 000,440,832 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\ieui.dll
[2014/01/13 10:39:45 | 000,043,008 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\jsproxy.dll
[2014/01/13 10:39:45 | 000,004,096 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\ieetwcollectorres.dll
[2014/01/13 10:39:44 | 000,703,488 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\ieapfltr.dll
[2014/01/13 10:39:44 | 000,553,472 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\jscript9diag.dll
[2014/01/13 10:39:44 | 000,061,952 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\iesetup.dll
[2014/01/13 10:39:44 | 000,032,768 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\iernonce.dll
[2014/01/13 10:39:42 | 000,112,128 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\ieUnatt.exe
[2014/01/13 10:39:42 | 000,108,032 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\ieetwcollector.exe
[2014/01/13 10:39:42 | 000,051,200 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\ieetwproxystub.dll
[2014/01/13 10:39:40 | 001,928,192 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\inetcpl.cpl
[2014/01/13 10:39:37 | 004,243,968 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\jscript9.dll
[2014/01/11 18:23:20 | 000,000,000 | ---D | C] -- C:\ProgramData\AVG
[2014/01/11 18:23:04 | 000,000,000 | -HSD | C] -- C:\ProgramData\{01BD4FC9-2F86-4706-A62E-774BB7E9D308}
[2014/01/11 18:05:50 | 000,000,000 | ---D | C] -- C:\Users\ADDISFARI\AppData\Roaming\AVG
[2014/01/11 13:18:27 | 012,625,408 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\wmploc.DLL
[2014/01/11 13:14:12 | 000,646,144 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\MsSpellCheckingFacility.exe
[2014/01/11 13:14:12 | 000,194,048 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\elshyph.dll
[2014/01/11 13:14:11 | 000,645,120 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\jsIntl.dll
[2014/01/11 13:14:11 | 000,367,104 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dxtmsft.dll
[2014/01/11 13:14:11 | 000,337,408 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\html.iec
[2014/01/11 13:14:11 | 000,244,736 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dxtrans.dll
[2014/01/11 13:14:11 | 000,182,272 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\msls31.dll
[2014/01/11 13:14:11 | 000,164,864 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\msrating.dll
[2014/01/11 13:14:11 | 000,071,680 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\RegisterIEPKEYs.exe
[2014/01/11 13:14:11 | 000,034,816 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\JavaScriptCollectionAgent.dll
[2014/01/11 13:14:10 | 001,051,136 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\mshtmlmedia.dll
[2014/01/11 13:14:10 | 000,616,104 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\ieapfltr.dat
[2014/01/11 13:14:10 | 000,238,288 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\iedkcs32.dll
[2014/01/11 13:14:10 | 000,233,472 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\url.dll
[2014/01/11 13:14:10 | 000,139,264 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\wextract.exe
[2014/01/11 13:14:10 | 000,083,456 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\inseng.dll
[2014/01/11 13:14:10 | 000,024,576 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\licmgr10.dll
[2014/01/11 13:14:09 | 000,523,776 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\msfeeds.dll
[2014/01/11 13:14:09 | 000,151,552 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\iexpress.exe
[2014/01/11 13:14:09 | 000,116,736 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\iepeers.dll
[2014/01/11 13:14:09 | 000,111,616 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\IEAdvpack.dll
[2014/01/11 13:14:09 | 000,061,952 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\MshtmlDac.dll
[2014/01/11 13:14:09 | 000,056,832 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\pngfilt.dll
[2014/01/11 13:14:09 | 000,043,008 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\msfeedsbs.dll
[2014/01/11 13:14:09 | 000,036,352 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\imgutil.dll
[2014/01/11 13:14:09 | 000,012,800 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\msfeedssync.exe
[2014/01/11 13:14:08 | 000,086,016 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\iesysprep.dll
[2014/01/11 13:14:08 | 000,074,240 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\SetIEInstalledDate.exe
[2014/01/11 13:14:08 | 000,048,640 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\mshtmler.dll
[2014/01/11 13:13:17 | 003,969,472 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\ntkrnlpa.exe
[2014/01/11 13:13:17 | 003,914,176 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\ntoskrnl.exe
[2014/01/11 13:13:17 | 000,619,520 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\tdh.dll
[2014/01/10 14:22:20 | 000,000,000 | ---D | C] -- C:\Users\ADDISFARI\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Start Lollipop
[2014/01/10 14:14:09 | 000,055,808 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\drivers\hidclass.sys
[2014/01/10 14:14:09 | 000,025,728 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\drivers\hidparse.sys
[2014/01/10 14:14:03 | 001,796,096 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\authui.dll
[2014/01/10 14:14:00 | 000,152,576 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\SmartcardCredentialProvider.dll
[2014/01/10 14:13:50 | 000,220,160 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\ncrypt.dll
[2014/01/10 14:13:50 | 000,015,872 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\sspisrv.dll
[2014/01/10 14:13:39 | 000,126,976 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\cscript.exe
[2014/01/10 14:13:37 | 000,417,792 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\WMPhoto.dll
[2014/01/10 14:13:32 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\tzres.dll
[2014/01/10 14:13:15 | 000,102,608 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\PresentationCFFRasterizerNative_v0300.dll
[2014/01/10 14:13:13 | 000,295,424 | ---- | C] (Adobe Systems Incorporated) -- C:\windows\System32\atmfd.dll
[2014/01/10 14:13:13 | 000,070,656 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\fontsub.dll
[2014/01/10 14:13:13 | 000,034,304 | ---- | C] (Adobe Systems) -- C:\windows\System32\atmlib.dll
[2014/01/10 14:13:13 | 000,010,240 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\dciman32.dll
[2014/01/10 14:13:10 | 000,434,688 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\scavengeui.dll
[2014/01/10 14:12:51 | 000,177,152 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\drivers\portcls.sys
[2014/01/10 14:12:51 | 000,081,408 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\drivers\drmk.sys
[2014/01/10 14:12:43 | 000,656,896 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\nshwfp.dll
[2014/01/10 14:12:43 | 000,216,576 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\FWPUCLNT.DLL
[2014/01/10 10:05:46 | 000,000,000 | ---D | C] -- C:\Program Files\Enigma Software Group
[2014/01/09 11:33:36 | 000,000,000 | ---D | C] -- C:\Users\ADDISFARI\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
[2014/01/09 11:33:36 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
[2014/01/09 11:26:12 | 000,000,000 | ---D | C] -- C:\Users\ADDISFARI\Desktop\anarchist metal
[2014/01/07 17:28:41 | 000,892,704 | ---- | C] (NVIDIA Corporation) -- C:\windows\System32\nvhdagenco3220103.dll
[2014/01/07 17:28:41 | 000,161,056 | ---- | C] (NVIDIA Corporation) -- C:\windows\System32\drivers\nvhda32v.sys
[2014/01/07 17:28:41 | 000,028,448 | ---- | C] (NVIDIA Corporation) -- C:\windows\System32\nvhdap32.dll
[2014/01/07 17:27:55 | 007,523,840 | ---- | C] (Intel Corporation) -- C:\windows\System32\drivers\NETwNs32.sys
[2014/01/07 17:27:55 | 002,760,704 | ---- | C] (Intel Corporation) -- C:\windows\System32\NETwNr32.dll
[2014/01/07 17:27:55 | 000,684,032 | ---- | C] (Intel Corporation) -- C:\windows\System32\NETwNc32.dll
[2014/01/07 17:26:27 | 000,000,000 | ---D | C] -- C:\ProgramData\NVIDIA Corporation
[2014/01/07 17:25:26 | 001,049,888 | ---- | C] (NVIDIA Corporation) -- C:\windows\System32\nvdispco3233182.dll
[2014/01/07 17:25:26 | 000,893,728 | ---- | C] (NVIDIA Corporation) -- C:\windows\System32\nvdispgenco3233182.dll
[2014/01/07 17:16:23 | 000,000,000 | ---D | C] -- C:\Users\ADDISFARI\AppData\Roaming\IObit
[2014/01/07 17:16:23 | 000,000,000 | ---D | C] -- C:\ProgramData\IObit
[2014/01/07 17:16:21 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Driver Booster
[2014/01/07 17:16:18 | 000,000,000 | ---D | C] -- C:\Program Files\IObit
[2014/01/06 21:10:50 | 000,000,000 | ---D | C] -- C:\Users\ADDISFARI\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VirtualDJ
[2014/01/06 20:17:33 | 000,000,000 | ---D | C] -- C:\ProgramData\Auslogics
[2014/01/04 22:43:23 | 000,000,000 | -HSD | C] -- C:\ProgramData\{FE8D473A-6F06-4F99-B5F4-BED72B2A038C}
[2014/01/01 13:48:51 | 000,632,064 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\msvcr80.dll
[2014/01/01 13:48:50 | 000,554,240 | ---- | C] (Microsoft Corporation) -- C:\windows\System32\msvcp80.dll
[2014/01/01 13:48:49 | 000,034,048 | ---- | C] (MicroWorld Technologies Inc.) -- C:\windows\System32\eEmpty.exe
[2014/01/01 13:48:44 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\MicroWorld
[2014/01/01 13:48:34 | 000,000,000 | ---D | C] -- C:\ProgramData\MicroWorld
[2013/08/30 22:47:05 | 000,021,504 | ---- | C] (deepxw) -- C:\Users\ADDISFARI\AppData\Local\Wtrmrk.exe
[4 C:\windows\*.tmp files -> C:\windows\*.tmp -> ]
[2 C:\*.tmp files -> C:\*.tmp -> ]
========== Files - Modified Within 30 Days ==========
[2014/01/29 22:51:00 | 000,001,104 | ---- | M] () -- C:\windows\tasks\GoogleUpdateTaskMachineUA.job
[2014/01/29 22:34:00 | 000,000,884 | ---- | M] () -- C:\windows\tasks\Adobe Flash Player Updater.job
[2014/01/29 21:18:02 | 000,018,736 | -H-- | M] () -- C:\windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2014/01/29 21:18:02 | 000,018,736 | -H-- | M] () -- C:\windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2014/01/29 21:11:17 | 000,001,935 | ---- | M] () -- C:\Users\ADDISFARI\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Browser-Anonymisierer.lnk
[2014/01/29 21:10:56 | 000,000,280 | ---- | M] () -- C:\windows\tasks\Driver Booster Update.job
[2014/01/29 21:10:51 | 000,001,100 | ---- | M] () -- C:\windows\tasks\GoogleUpdateTaskMachineCore.job
[2014/01/29 21:10:35 | 000,000,022 | ---- | M] () -- C:\windows\S.dirmngr
[2014/01/29 21:10:25 | 000,067,584 | --S- | M] () -- C:\windows\bootstat.dat
[2014/01/29 11:30:39 | 000,103,367 | ---- | M] () -- C:\Users\ADDISFARI\Desktop\OCarrot.jpg
[2014/01/28 18:44:53 | 000,000,979 | ---- | M] () -- C:\Users\Public\Desktop\Mozilla Firefox.lnk
[2014/01/28 18:26:29 | 000,535,464 | ---- | M] () -- C:\windows\System32\FNTCACHE.DAT
[2014/01/28 14:24:00 | 000,000,310 | ---- | M] () -- C:\windows\tasks\MT66 Software Update.job
[2014/01/28 14:22:21 | 000,001,316 | ---- | M] () -- C:\Users\ADDISFARI\Desktop\Mozilla Firefox.lnk
[2014/01/27 23:01:51 | 000,692,616 | ---- | M] (Adobe Systems Incorporated) -- C:\windows\System32\FlashPlayerApp.exe
[2014/01/27 23:01:51 | 000,071,048 | ---- | M] (Adobe Systems Incorporated) -- C:\windows\System32\FlashPlayerCPLApp.cpl
[2014/01/26 22:19:51 | 000,000,218 | ---- | M] () -- C:\Users\ADDISFARI\AppData\Local\recently-used.xbel
[2014/01/25 23:10:13 | 008,204,004 | ---- | M] () -- C:\windows\System32\perfh007.dat
[2014/01/25 23:10:13 | 002,952,962 | ---- | M] () -- C:\windows\System32\perfh009.dat
[2014/01/25 23:10:13 | 002,562,414 | ---- | M] () -- C:\windows\System32\perfc007.dat
[2014/01/25 23:10:13 | 002,295,940 | ---- | M] () -- C:\windows\System32\perfc009.dat
[2014/01/24 10:02:04 | 000,000,319 | ---- | M] () -- C:\windows\game.ini
[2014/01/23 09:47:24 | 000,000,000 | -H-- | M] () -- C:\windows\System32\drivers\Msft_Kernel_xusb21_01009.Wdf
[2014/01/20 14:16:18 | 022,960,416 | ---- | M] (NVIDIA Corporation) -- C:\windows\System32\nvoglv32.dll
[2014/01/20 14:16:18 | 015,877,216 | ---- | M] (NVIDIA Corporation) -- C:\windows\System32\nvwgf2um.dll
[2014/01/20 14:16:18 | 010,471,712 | ---- | M] (NVIDIA Corporation) -- C:\windows\System32\drivers\nvlddmkm.sys
[2014/01/20 14:16:18 | 009,657,464 | ---- | M] (NVIDIA Corporation) -- C:\windows\System32\nvopencl.dll
[2014/01/20 14:16:17 | 017,560,352 | ---- | M] (NVIDIA Corporation) -- C:\windows\System32\nvcompiler.dll
[2014/01/20 14:16:17 | 015,230,352 | ---- | M] (NVIDIA Corporation) -- C:\windows\System32\nvd3dum.dll
[2014/01/20 14:16:17 | 009,700,224 | ---- | M] (NVIDIA Corporation) -- C:\windows\System32\nvcuda.dll
[2014/01/20 14:16:17 | 002,947,872 | ---- | M] (NVIDIA Corporation) -- C:\windows\System32\nvcuvid.dll
[2014/01/20 14:16:17 | 002,747,680 | ---- | M] (NVIDIA Corporation) -- C:\windows\System32\nvcuvenc.dll
[2014/01/20 14:16:17 | 001,049,888 | ---- | M] (NVIDIA Corporation) -- C:\windows\System32\nvdispco3233221.dll
[2014/01/20 14:16:17 | 000,893,728 | ---- | M] (NVIDIA Corporation) -- C:\windows\System32\nvdispgenco3233221.dll
[2014/01/20 14:16:17 | 000,852,768 | ---- | M] (NVIDIA Corporation) -- C:\windows\System32\NvIFR.dll
[2014/01/20 14:16:17 | 000,847,648 | ---- | M] (NVIDIA Corporation) -- C:\windows\System32\NvFBC.dll
[2014/01/20 14:16:17 | 000,018,439 | ---- | M] () -- C:\windows\System32\nvinfo.pb
[2014/01/20 14:16:16 | 002,698,272 | ---- | M] (NVIDIA Corporation) -- C:\windows\System32\nvapi.dll
[2014/01/20 14:15:55 | 000,000,000 | -H-- | M] () -- C:\windows\System32\drivers\Msft_Kernel_Smb_driver_Intel_01011.Wdf
[2014/01/20 14:14:37 | 001,629,040 | ---- | M] (Microsoft Corporation) -- C:\windows\System32\WdfCoInstaller01011.dll
[2014/01/20 14:14:33 | 000,027,888 | ---- | M] (Synaptics Incorporated) -- C:\windows\System32\drivers\Smb_driver_Intel.sys
[2014/01/15 18:58:50 | 000,000,010 | RHS- | M] () -- C:\config.sys
[2014/01/11 13:14:12 | 000,646,144 | ---- | M] (Microsoft Corporation) -- C:\windows\System32\MsSpellCheckingFacility.exe
[2014/01/11 13:14:12 | 000,194,048 | ---- | M] (Microsoft Corporation) -- C:\windows\System32\elshyph.dll
[2014/01/11 13:14:11 | 000,645,120 | ---- | M] (Microsoft Corporation) -- C:\windows\System32\jsIntl.dll
[2014/01/11 13:14:11 | 000,367,104 | ---- | M] (Microsoft Corporation) -- C:\windows\System32\dxtmsft.dll
[2014/01/11 13:14:11 | 000,337,408 | ---- | M] (Microsoft Corporation) -- C:\windows\System32\html.iec
[2014/01/11 13:14:11 | 000,244,736 | ---- | M] (Microsoft Corporation) -- C:\windows\System32\dxtrans.dll
[2014/01/11 13:14:11 | 000,182,272 | ---- | M] (Microsoft Corporation) -- C:\windows\System32\msls31.dll
[2014/01/11 13:14:11 | 000,164,864 | ---- | M] (Microsoft Corporation) -- C:\windows\System32\msrating.dll
[2014/01/11 13:14:11 | 000,071,680 | ---- | M] (Microsoft Corporation) -- C:\windows\System32\RegisterIEPKEYs.exe
[2014/01/11 13:14:11 | 000,034,816 | ---- | M] (Microsoft Corporation) -- C:\windows\System32\JavaScriptCollectionAgent.dll
[2014/01/11 13:14:10 | 001,051,136 | ---- | M] (Microsoft Corporation) -- C:\windows\System32\mshtmlmedia.dll
[2014/01/11 13:14:10 | 000,616,104 | ---- | M] (Microsoft Corporation) -- C:\windows\System32\ieapfltr.dat
[2014/01/11 13:14:10 | 000,238,288 | ---- | M] (Microsoft Corporation) -- C:\windows\System32\iedkcs32.dll
[2014/01/11 13:14:10 | 000,233,472 | ---- | M] (Microsoft Corporation) -- C:\windows\System32\url.dll
[2014/01/11 13:14:10 | 000,139,264 | ---- | M] (Microsoft Corporation) -- C:\windows\System32\wextract.exe
[2014/01/11 13:14:10 | 000,083,456 | ---- | M] (Microsoft Corporation) -- C:\windows\System32\inseng.dll
[2014/01/11 13:14:10 | 000,024,576 | ---- | M] (Microsoft Corporation) -- C:\windows\System32\licmgr10.dll
[2014/01/11 13:14:10 | 000,016,284 | ---- | M] () -- C:\windows\System32\ieuinit.inf
[2014/01/11 13:14:09 | 000,523,776 | ---- | M] (Microsoft Corporation) -- C:\windows\System32\msfeeds.dll
[2014/01/11 13:14:09 | 000,151,552 | ---- | M] (Microsoft Corporation) -- C:\windows\System32\iexpress.exe
[2014/01/11 13:14:09 | 000,116,736 | ---- | M] (Microsoft Corporation) -- C:\windows\System32\iepeers.dll
[2014/01/11 13:14:09 | 000,111,616 | ---- | M] (Microsoft Corporation) -- C:\windows\System32\IEAdvpack.dll
[2014/01/11 13:14:09 | 000,061,952 | ---- | M] (Microsoft Corporation) -- C:\windows\System32\MshtmlDac.dll
[2014/01/11 13:14:09 | 000,056,832 | ---- | M] (Microsoft Corporation) -- C:\windows\System32\pngfilt.dll
[2014/01/11 13:14:09 | 000,043,008 | ---- | M] (Microsoft Corporation) -- C:\windows\System32\msfeedsbs.dll
[2014/01/11 13:14:09 | 000,036,352 | ---- | M] (Microsoft Corporation) -- C:\windows\System32\imgutil.dll
[2014/01/11 13:14:09 | 000,012,800 | ---- | M] (Microsoft Corporation) -- C:\windows\System32\msfeedssync.exe
[2014/01/11 13:14:08 | 000,086,016 | ---- | M] (Microsoft Corporation) -- C:\windows\System32\iesysprep.dll
[2014/01/11 13:14:08 | 000,074,240 | ---- | M] (Microsoft Corporation) -- C:\windows\System32\SetIEInstalledDate.exe
[2014/01/11 13:14:08 | 000,048,640 | ---- | M] (Microsoft Corporation) -- C:\windows\System32\mshtmler.dll
[2014/01/11 13:13:17 | 003,969,472 | ---- | M] (Microsoft Corporation) -- C:\windows\System32\ntkrnlpa.exe
[2014/01/11 13:13:17 | 003,914,176 | ---- | M] (Microsoft Corporation) -- C:\windows\System32\ntoskrnl.exe
[2014/01/11 13:13:17 | 000,619,520 | ---- | M] (Microsoft Corporation) -- C:\windows\System32\tdh.dll
[2014/01/10 20:45:57 | 001,434,497 | ---- | M] () -- C:\Users\ADDISFARI\Desktop\9630880105.pdf
[2014/01/07 17:28:41 | 000,892,704 | ---- | M] (NVIDIA Corporation) -- C:\windows\System32\nvhdagenco3220103.dll
[2014/01/07 17:28:41 | 000,161,056 | ---- | M] (NVIDIA Corporation) -- C:\windows\System32\drivers\nvhda32v.sys
[2014/01/07 17:28:41 | 000,028,448 | ---- | M] (NVIDIA Corporation) -- C:\windows\System32\nvhdap32.dll
[2014/01/07 17:27:56 | 007,523,840 | ---- | M] (Intel Corporation) -- C:\windows\System32\drivers\NETwNs32.sys
[2014/01/07 17:27:55 | 002,760,704 | ---- | M] (Intel Corporation) -- C:\windows\System32\NETwNr32.dll
[2014/01/07 17:27:55 | 000,684,032 | ---- | M] (Intel Corporation) -- C:\windows\System32\NETwNc32.dll
[2014/01/07 17:25:26 | 001,049,888 | ---- | M] (NVIDIA Corporation) -- C:\windows\System32\nvdispco3233182.dll
[2014/01/07 17:25:26 | 000,893,728 | ---- | M] (NVIDIA Corporation) -- C:\windows\System32\nvdispgenco3233182.dll
[2014/01/01 13:56:04 | 002,942,829 | ---- | M] () -- C:\Users\ADDISFARI\Documents\pinfect.zip
[2014/01/01 13:49:06 | 000,000,028 | ---- | M] () -- C:\windows\Lic.xxx
[2014/01/01 13:48:50 | 000,632,064 | ---- | M] (Microsoft Corporation) -- C:\windows\System32\msvcr80.dll
[2014/01/01 13:48:49 | 000,554,240 | ---- | M] (Microsoft Corporation) -- C:\windows\System32\msvcp80.dll
[2014/01/01 13:48:48 | 000,034,048 | ---- | M] (MicroWorld Technologies Inc.) -- C:\windows\System32\eEmpty.exe
[4 C:\windows\*.tmp files -> C:\windows\*.tmp -> ]
[2 C:\*.tmp files -> C:\*.tmp -> ]
========== Files Created - No Company Name ==========
[2014/01/29 21:10:35 | 000,000,022 | ---- | C] () -- C:\windows\S.dirmngr
[2014/01/29 11:29:42 | 000,103,367 | ---- | C] () -- C:\Users\ADDISFARI\Desktop\OCarrot.jpg
[2014/01/28 18:25:52 | 000,535,464 | ---- | C] () -- C:\windows\System32\FNTCACHE.DAT
[2014/01/26 22:19:51 | 000,000,218 | ---- | C] () -- C:\Users\ADDISFARI\AppData\Local\recently-used.xbel
[2014/01/24 10:02:04 | 000,000,319 | ---- | C] () -- C:\windows\game.ini
[2014/01/23 09:47:24 | 000,000,000 | -H-- | C] () -- C:\windows\System32\drivers\Msft_Kernel_xusb21_01009.Wdf
[2014/01/23 00:54:19 | 000,032,768 | ---- | C] () -- C:\windows\System32\drivers\sp_rsdrv2.sys
[2014/01/20 14:16:17 | 000,018,439 | ---- | C] () -- C:\windows\System32\nvinfo.pb
[2014/01/20 14:15:55 | 000,000,000 | -H-- | C] () -- C:\windows\System32\drivers\Msft_Kernel_Smb_driver_Intel_01011.Wdf
[2014/01/11 13:14:10 | 000,016,284 | ---- | C] () -- C:\windows\System32\ieuinit.inf
[2014/01/10 20:45:36 | 001,434,497 | ---- | C] () -- C:\Users\ADDISFARI\Desktop\9630880105.pdf
[2014/01/07 17:16:23 | 000,000,280 | ---- | C] () -- C:\windows\tasks\Driver Booster Update.job
[2014/01/01 13:56:04 | 002,942,829 | ---- | C] () -- C:\Users\ADDISFARI\Documents\pinfect.zip
[2014/01/01 13:49:06 | 000,000,028 | ---- | C] () -- C:\windows\Lic.xxx
[2013/12/11 09:39:38 | 000,000,306 | RHS- | C] () -- C:\ProgramData\ntuser.pol
[2013/08/30 22:52:39 | 000,007,605 | ---- | C] () -- C:\Users\ADDISFARI\AppData\Local\Resmon.ResmonCfg
[2013/08/30 22:47:05 | 002,076,309 | ---- | C] () -- C:\Users\ADDISFARI\AppData\Local\ntkrlICE.exe
[2013/08/30 22:47:05 | 000,570,073 | ---- | C] () -- C:\Users\ADDISFARI\AppData\Local\gui.exe
[2013/08/30 22:47:05 | 000,397,900 | ---- | C] () -- C:\Users\ADDISFARI\AppData\Local\4GB_GER.exe
[2013/08/30 22:47:05 | 000,397,900 | ---- | C] () -- C:\Users\ADDISFARI\AppData\Local\4GB_EN.exe
[2013/08/30 22:47:05 | 000,000,518 | ---- | C] () -- C:\Users\ADDISFARI\AppData\Local\UNAWAVE_EN.url
[2013/08/30 22:47:05 | 000,000,240 | ---- | C] () -- C:\Users\ADDISFARI\AppData\Local\UPDATE.url
[2013/08/30 22:47:05 | 000,000,216 | ---- | C] () -- C:\Users\ADDISFARI\AppData\Local\UNAWAVE_GER.url
[2013/08/30 10:27:24 | 000,001,132 | ---- | C] () -- C:\windows\wininit.ini
[2013/02/20 23:40:05 | 000,000,306 | RHS- | C] () -- C:\Users\ADDISFARI\ntuser.pol
[2013/02/09 02:57:07 | 000,001,676 | ---- | C] () -- C:\windows\System32\ASOROSet.bin
[2013/01/04 17:32:21 | 000,181,808 | ---- | C] () -- C:\windows\RegBootClean.exe
[2013/01/04 17:02:58 | 000,358,929 | ---- | C] () -- C:\Users\ADDISFARI\AppData\Local\census.cache
[2013/01/04 17:02:26 | 000,190,269 | ---- | C] () -- C:\Users\ADDISFARI\AppData\Local\ars.cache
[2012/12/20 14:45:30 | 000,139,656 | ---- | C] () -- C:\windows\System32\drivers\PnkBstrK.sys
[2012/12/20 14:45:23 | 000,138,904 | ---- | C] () -- C:\Users\ADDISFARI\AppData\Roaming\PnkBstrK.sys
[2012/12/20 14:44:57 | 000,290,776 | ---- | C] () -- C:\windows\System32\PnkBstrB.exe
[2012/12/20 14:44:54 | 000,076,888 | ---- | C] () -- C:\windows\System32\PnkBstrA.exe
[2012/12/10 13:12:28 | 000,438,272 | ---- | C] () -- C:\windows\System32\PaintX.dll
[2012/03/10 23:17:01 | 000,107,520 | RHS- | C] () -- C:\windows\System32\TAKDSDecoder.dll
[2012/01/31 23:44:41 | 000,032,256 | ---- | C] () -- C:\windows\System32\AVSredirect.dll
[2011/06/24 10:08:11 | 000,000,000 | ---- | C] () -- C:\Users\ADDISFARI\AppData\Local\{41DF0543-782F-48AE-B103-3AF956FB65FA}
[2011/05/21 15:03:23 | 000,000,000 | ---- | C] () -- C:\Users\ADDISFARI\AppData\Local\{55DB66C5-C80E-40AB-AE91-1CDC9E54948F}
[2011/01/13 14:25:54 | 000,000,036 | ---- | C] () -- C:\Users\ADDISFARI\AppData\Local\housecall.guid.cache
[2011/01/08 01:43:20 | 000,000,056 | -H-- | C] () -- C:\ProgramData\ezsidmv.dat
[2010/07/25 14:28:45 | 000,006,144 | ---- | C] () -- C:\Users\ADDISFARI\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2010/02/20 10:36:56 | 000,001,473 | ---- | C] () -- C:\Users\ADDISFARI\AppData\Local\RecConfig.xml
[2009/12/29 16:29:53 | 000,000,088 | ---- | C] () -- C:\ProgramData\profile.xml
========== ZeroAccess Check ==========
[2009/07/14 05:42:31 | 000,000,227 | RHS- | M] () -- C:\windows\assembly\Desktop.ini
[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shell32.dll -- [2013/07/26 02:55:59 | 012,872,704 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2010/11/20 13:19:02 | 000,606,208 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
"" = %systemroot%\system32\wbem\wbemess.dll -- [2009/07/14 02:16:17 | 000,342,528 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both
========== Alternate Data Streams ==========
@Alternate Data Stream - 138 bytes -> C:\ProgramData\Temp:0B4227B4
@Alternate Data Stream - 126 bytes -> C:\ProgramData\Temp:373E1720
< End of report > --- --- ---
Hoffe ihr könnt damit was anfangen und bin für jede Hilfe dankbar! |