justin970 | 05.10.2015 17:24 | Ok hab ich gemacht hier die LOG.txt
Ich kann sie nicht hochladen weil da steht die Datei ist zu gross.Aber ich kann den text kopieren
Combofix Logfile: Code:
ComboFix 15-10-01.01 - Sandra&Paddy 05.10.2015 17:42:59.1.2 - x64
Microsoft Windows 7 Professional 6.1.7601.1.1252.49.1031.18.4095.2734 [GMT 2:00]
ausgeführt von:: c:\users\Sandra&Paddy\Desktop\ComboFix.exe
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
(((((((((((((((((((((((((((((((((((( Weitere Löschungen ))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\programdata\ntuser.pol
c:\users\Sandra&Paddy\AppData\Local\Installer\Installshopperpro_8734
c:\users\Sandra&Paddy\AppData\Local\Microsoft\Windows\Temporary Internet Files\result.xml
c:\users\Sandra&Paddy\AppData\Local\nsg1852.tmp
c:\users\Sandra&Paddy\AppData\Local\nsr5755.tmp
c:\users\Sandra&Paddy\AppData\Local\pcc.exe
c:\users\Sandra&Paddy\AppData\Roaming\70851e4ead3aa0fc37ba2d87b2b907972
c:\windows\SysWow64\32
c:\windows\SysWow64\32\44.0.2383.0.manifest
c:\windows\SysWow64\32\chrome.dll
c:\windows\SysWow64\32\chrome_child.dll
c:\windows\SysWow64\32\chrome_elf.dll
c:\windows\SysWow64\32\chrome_watcher.dll
c:\windows\SysWow64\32\chromex.exe
c:\windows\SysWow64\32\d3dcompiler_47.dll
c:\windows\SysWow64\32\Data\Profiles\Certificate Revocation Lists
c:\windows\SysWow64\32\Data\Profiles\Default\Application Cache\Cache\data_0
c:\windows\SysWow64\32\Data\Profiles\Default\Application Cache\Cache\data_1
c:\windows\SysWow64\32\Data\Profiles\Default\Application Cache\Cache\data_2
c:\windows\SysWow64\32\Data\Profiles\Default\Application Cache\Cache\data_3
c:\windows\SysWow64\32\Data\Profiles\Default\Application Cache\Cache\f_00006e
c:\windows\SysWow64\32\Data\Profiles\Default\Application Cache\Cache\f_000070
c:\windows\SysWow64\32\Data\Profiles\Default\Application Cache\Cache\f_000071
c:\windows\SysWow64\32\Data\Profiles\Default\Application Cache\Cache\f_00007d
c:\windows\SysWow64\32\Data\Profiles\Default\Application Cache\Cache\f_00007e
c:\windows\SysWow64\32\Data\Profiles\Default\Application Cache\Cache\f_00007f
c:\windows\SysWow64\32\Data\Profiles\Default\Application Cache\Cache\index
c:\windows\SysWow64\32\Data\Profiles\Default\Application Cache\Index-journal
c:\windows\SysWow64\32\Data\Profiles\Default\Application Cache\Index
c:\windows\SysWow64\32\Data\Profiles\Default\Bookmarks
c:\windows\SysWow64\32\Data\Profiles\Default\Bookmarks.bak
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\data_0
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\data_1
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\data_2
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\data_3
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_000001
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_000002
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_000003
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_000004
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_000005
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_000006
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_000007
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_000008
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_000009
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_00000a
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_00000b
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_00000c
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_00000d
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_00000e
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_00000f
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_000010
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_000011
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_000012
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_000013
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_000014
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_000015
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_000016
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_000017
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_000018
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_000019
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_00001a
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_00001b
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_00001c
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_00001d
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_00001e
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_00001f
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_000020
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_000021
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_000022
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_000023
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_000024
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_000025
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_000026
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_000027
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_000028
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_000029
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_00002a
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_00002b
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_00002c
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_00002d
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_00002e
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_000030
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_000031
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_000032
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_000034
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_000038
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_000039
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_00003b
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_00003c
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_00003d
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_00003e
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_00003f
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_000040
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_000041
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_000042
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_000043
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_000044
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_000045
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_000046
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_000047
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_000048
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_00004a
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_00004b
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_00004c
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_00004d
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_00004e
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_00004f
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_000050
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_000051
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_000052
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_000053
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_000054
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_000055
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_000056
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_000057
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_000058
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_000059
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_00005a
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_00005b
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_00005c
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_00005d
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_00005e
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_00005f
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_000060
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_000061
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_000062
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_000070
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_000071
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_000072
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_000073
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_000074
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_000076
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_000077
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_000078
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_00007c
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_00007d
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_000080
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_000081
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_000082
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_000083
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_000086
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_000087
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_000088
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_000089
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_00008a
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_00008d
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_00008e
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_000090
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_000091
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_000093
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_000095
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_000096
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_000097
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_000098
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_00009c
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_00009d
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_00009e
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_0000a0
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_0000a1
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_0000a3
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_0000a7
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_0000a9
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_0000aa
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_0000ac
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_0000b3
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_0000b4
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_0000b5
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_0000b6
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_0000b7
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_0000b8
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_0000b9
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_0000ba
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_0000bb
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_0000bc
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_0000bd
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_0000be
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_0000bf
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_0000c0
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_0000c1
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_0000c2
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_0000c4
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_0000c5
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_0000c6
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_0000c7
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_0000c8
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_0000c9
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_0000ca
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_0000cb
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_0000cc
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_0000cd
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_0000cf
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_0000d0
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_0000d1
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_0000d2
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_0000d3
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_0000d4
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_0000d5
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_0000d6
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_0000d7
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_0000d8
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_0000da
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_0000db
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_0000dc
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_0000dd
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_0000de
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_0000df
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_0000e0
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_0000e1
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_0000e2
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_0000e3
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_0000e4
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_0000e5
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_0000e6
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_0000e7
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_0000e8
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_0000e9
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_0000ea
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_0000eb
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_0000ec
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_0000ed
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_0000ee
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_0000ef
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_0000f0
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_0000f1
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_0000f2
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_0000f3
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_0000f4
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_0000f5
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_0000f6
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_0000f7
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_0000f8
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_0000f9
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_0000fa
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_0000fb
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_0000fc
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_0000fd
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_0000fe
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_0000ff
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_000100
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_000101
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_000102
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_000103
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_000104
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_000105
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_000106
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_000107
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_000108
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_000109
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_00010a
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_00010b
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\f_00010e
c:\windows\SysWow64\32\Data\Profiles\Default\Cache\index
c:\windows\SysWow64\32\Data\Profiles\Default\ChromeDWriteFontCache
c:\windows\SysWow64\32\Data\Profiles\Default\Cookies-journal
c:\windows\SysWow64\32\Data\Profiles\Default\Cookies
c:\windows\SysWow64\32\Data\Profiles\Default\Current Session
c:\windows\SysWow64\32\Data\Profiles\Default\Current Tabs
c:\windows\SysWow64\32\Data\Profiles\Default\databases\Databases.db-journal
c:\windows\SysWow64\32\Data\Profiles\Default\databases\Databases.db
c:\windows\SysWow64\32\Data\Profiles\Default\Extension Cookies-journal
c:\windows\SysWow64\32\Data\Profiles\Default\Extension Cookies
c:\windows\SysWow64\32\Data\Profiles\Default\Extension State\000005.ldb
c:\windows\SysWow64\32\Data\Profiles\Default\Extension State\000008.ldb
c:\windows\SysWow64\32\Data\Profiles\Default\Extension State\000010.log
c:\windows\SysWow64\32\Data\Profiles\Default\Extension State\000011.ldb
c:\windows\SysWow64\32\Data\Profiles\Default\Extension State\CURRENT
c:\windows\SysWow64\32\Data\Profiles\Default\Extension State\LOCK
c:\windows\SysWow64\32\Data\Profiles\Default\Extension State\LOG
c:\windows\SysWow64\32\Data\Profiles\Default\Extension State\LOG.old
c:\windows\SysWow64\32\Data\Profiles\Default\Extension State\MANIFEST-000001
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cknebhggccemgcnbidipinkifmmegdel\3.3_0\_metadata\verified_contents.json
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cknebhggccemgcnbidipinkifmmegdel\3.3_0\css\content\menu.css
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cknebhggccemgcnbidipinkifmmegdel\3.3_0\css\content\menupopup.css
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cknebhggccemgcnbidipinkifmmegdel\3.3_0\css\content\override.css
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cknebhggccemgcnbidipinkifmmegdel\3.3_0\css\content\private.css
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cknebhggccemgcnbidipinkifmmegdel\3.3_0\css\content\toolbar.css
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cknebhggccemgcnbidipinkifmmegdel\3.3_0\css\options.css
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cknebhggccemgcnbidipinkifmmegdel\3.3_0\css\welcome.css
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cknebhggccemgcnbidipinkifmmegdel\3.3_0\defaults\preferences\buttons.js
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cknebhggccemgcnbidipinkifmmegdel\3.3_0\defaults\preferences\install.js
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cknebhggccemgcnbidipinkifmmegdel\3.3_0\defaults\preferences\preferences.js
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cknebhggccemgcnbidipinkifmmegdel\3.3_0\html\background.html
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cknebhggccemgcnbidipinkifmmegdel\3.3_0\html\content\javascript_button.html
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cknebhggccemgcnbidipinkifmmegdel\3.3_0\html\content\menu.html
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cknebhggccemgcnbidipinkifmmegdel\3.3_0\html\content\menupopup.html
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cknebhggccemgcnbidipinkifmmegdel\3.3_0\html\content\toolbar.html
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cknebhggccemgcnbidipinkifmmegdel\3.3_0\html\options.html
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cknebhggccemgcnbidipinkifmmegdel\3.3_0\html\popup.html
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cknebhggccemgcnbidipinkifmmegdel\3.3_0\html\welcome.html
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cknebhggccemgcnbidipinkifmmegdel\3.3_0\images\0.png
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cknebhggccemgcnbidipinkifmmegdel\3.3_0\images\1.png
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cknebhggccemgcnbidipinkifmmegdel\3.3_0\images\1px-trans.png
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cknebhggccemgcnbidipinkifmmegdel\3.3_0\images\2.png
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cknebhggccemgcnbidipinkifmmegdel\3.3_0\images\3.png
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cknebhggccemgcnbidipinkifmmegdel\3.3_0\images\4.png
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cknebhggccemgcnbidipinkifmmegdel\3.3_0\images\5.png
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cknebhggccemgcnbidipinkifmmegdel\3.3_0\images\6.png
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cknebhggccemgcnbidipinkifmmegdel\3.3_0\images\7.png
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cknebhggccemgcnbidipinkifmmegdel\3.3_0\images\8.png
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cknebhggccemgcnbidipinkifmmegdel\3.3_0\images\9.png
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cknebhggccemgcnbidipinkifmmegdel\3.3_0\images\a.png
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cknebhggccemgcnbidipinkifmmegdel\3.3_0\images\arrowdown.png
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cknebhggccemgcnbidipinkifmmegdel\3.3_0\images\arrowdown_white.png
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cknebhggccemgcnbidipinkifmmegdel\3.3_0\images\b-opaque-background.png
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cknebhggccemgcnbidipinkifmmegdel\3.3_0\images\b.png
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cknebhggccemgcnbidipinkifmmegdel\3.3_0\images\bg.png
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cknebhggccemgcnbidipinkifmmegdel\3.3_0\images\blank.gif
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cknebhggccemgcnbidipinkifmmegdel\3.3_0\images\bullet.gif
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cknebhggccemgcnbidipinkifmmegdel\3.3_0\images\button-end-yellow.gif
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cknebhggccemgcnbidipinkifmmegdel\3.3_0\images\button-end-yellow.png
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cknebhggccemgcnbidipinkifmmegdel\3.3_0\images\button-yellow.gif
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cknebhggccemgcnbidipinkifmmegdel\3.3_0\images\button-yellow.png
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cknebhggccemgcnbidipinkifmmegdel\3.3_0\images\c.png
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cknebhggccemgcnbidipinkifmmegdel\3.3_0\images\d.png
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cknebhggccemgcnbidipinkifmmegdel\3.3_0\images\divider.png
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cknebhggccemgcnbidipinkifmmegdel\3.3_0\images\drop-down-checkmark.png
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cknebhggccemgcnbidipinkifmmegdel\3.3_0\images\e.png
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cknebhggccemgcnbidipinkifmmegdel\3.3_0\images\f.png
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cknebhggccemgcnbidipinkifmmegdel\3.3_0\images\g.png
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cknebhggccemgcnbidipinkifmmegdel\3.3_0\images\h.png
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cknebhggccemgcnbidipinkifmmegdel\3.3_0\images\icon-128x128.png
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cknebhggccemgcnbidipinkifmmegdel\3.3_0\images\icon-19x19.png
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cknebhggccemgcnbidipinkifmmegdel\3.3_0\images\icon-48x48.png
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cknebhggccemgcnbidipinkifmmegdel\3.3_0\images\logo.png
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cknebhggccemgcnbidipinkifmmegdel\3.3_0\images\middot.png
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cknebhggccemgcnbidipinkifmmegdel\3.3_0\images\no-img-sm.png
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cknebhggccemgcnbidipinkifmmegdel\3.3_0\images\option-logo-alexa-white.png
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cknebhggccemgcnbidipinkifmmegdel\3.3_0\images\stars.png
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cknebhggccemgcnbidipinkifmmegdel\3.3_0\images\x.png
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cknebhggccemgcnbidipinkifmmegdel\3.3_0\js\alxtb2gg.js
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cknebhggccemgcnbidipinkifmmegdel\3.3_0\js\api_early.js
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cknebhggccemgcnbidipinkifmmegdel\3.3_0\js\api_late.js
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cknebhggccemgcnbidipinkifmmegdel\3.3_0\js\basic.js
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cknebhggccemgcnbidipinkifmmegdel\3.3_0\js\content\alxtb2gg.js
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cknebhggccemgcnbidipinkifmmegdel\3.3_0\js\content\api.js
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cknebhggccemgcnbidipinkifmmegdel\3.3_0\js\content\dc.js
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cknebhggccemgcnbidipinkifmmegdel\3.3_0\js\content\menu.js
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cknebhggccemgcnbidipinkifmmegdel\3.3_0\js\content\menupopup.js
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cknebhggccemgcnbidipinkifmmegdel\3.3_0\js\content\message.js
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cknebhggccemgcnbidipinkifmmegdel\3.3_0\js\content\override.js
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cknebhggccemgcnbidipinkifmmegdel\3.3_0\js\content\private.js
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cknebhggccemgcnbidipinkifmmegdel\3.3_0\js\content\render.js
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cknebhggccemgcnbidipinkifmmegdel\3.3_0\js\content\results.js
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cknebhggccemgcnbidipinkifmmegdel\3.3_0\js\content\toolbar.js
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cknebhggccemgcnbidipinkifmmegdel\3.3_0\js\helper.js
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cknebhggccemgcnbidipinkifmmegdel\3.3_0\js\message.js
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cknebhggccemgcnbidipinkifmmegdel\3.3_0\js\overlay.js
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cknebhggccemgcnbidipinkifmmegdel\3.3_0\js\popup.js
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cknebhggccemgcnbidipinkifmmegdel\3.3_0\js\prefDone.js
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cknebhggccemgcnbidipinkifmmegdel\3.3_0\js\results.js
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cknebhggccemgcnbidipinkifmmegdel\3.3_0\js\simpleJSInherit.js
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cknebhggccemgcnbidipinkifmmegdel\3.3_0\js\util\base64.js
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cknebhggccemgcnbidipinkifmmegdel\3.3_0\js\util\md5.js
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cknebhggccemgcnbidipinkifmmegdel\3.3_0\js\welcome.js
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cknebhggccemgcnbidipinkifmmegdel\3.3_0\manifest.json
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cknebhggccemgcnbidipinkifmmegdel\3.3_0\xml\default.xml
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\_metadata\verified_contents.json
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\AlertFoxLoginDialog.html
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\AlertFoxLoginDialog.js
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\AsyncFileIO.js
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\badge.js
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\beforePlay.html
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\beforePlay.js
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\bg.html
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\bg.js
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\browse.html
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\browse.js
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\communicator.js
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\content_scripts\bookmarks_handler.js
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\content_scripts\connector.js
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\content_scripts\player.js
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\content_scripts\recorder.js
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\content_scripts\si_listener.js
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\context.js
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\editor\editarea\edit_area\autocompletion.js
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\editor\editarea\edit_area\edit_area.css
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\editor\editarea\edit_area\edit_area.js
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\editor\editarea\edit_area\edit_area_functions.js
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\editor\editarea\edit_area\edit_area_loader.js
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\editor\editarea\edit_area\elements_functions.js
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\editor\editarea\edit_area\highlight.js
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\editor\editarea\edit_area\images\autocompletion.gif
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\editor\editarea\edit_area\images\close.gif
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\editor\editarea\edit_area\images\fullscreen.gif
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\editor\editarea\edit_area\images\go_to_line.gif
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\editor\editarea\edit_area\images\help.gif
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\editor\editarea\edit_area\images\highlight.gif
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\editor\editarea\edit_area\images\load.gif
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\editor\editarea\edit_area\images\move.gif
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\editor\editarea\edit_area\images\newdocument.gif
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\editor\editarea\edit_area\images\opacity.png
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\editor\editarea\edit_area\images\processing.gif
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\editor\editarea\edit_area\images\redo.gif
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\editor\editarea\edit_area\images\reset_highlight.gif
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\editor\editarea\edit_area\images\save.gif
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\editor\editarea\edit_area\images\search.gif
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\editor\editarea\edit_area\images\smooth_selection.gif
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\editor\editarea\edit_area\images\spacer.gif
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\editor\editarea\edit_area\images\statusbar_resize.gif
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\editor\editarea\edit_area\images\undo.gif
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\editor\editarea\edit_area\images\word_wrap.gif
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\editor\editarea\edit_area\keyboard.js
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\editor\editarea\edit_area\langs\bg.js
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\editor\editarea\edit_area\langs\cs.js
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\editor\editarea\edit_area\langs\de.js
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\editor\editarea\edit_area\langs\dk.js
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\editor\editarea\edit_area\langs\en.js
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\editor\editarea\edit_area\langs\eo.js
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\editor\editarea\edit_area\langs\es.js
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\editor\editarea\edit_area\langs\fi.js
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\editor\editarea\edit_area\langs\fr.js
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\editor\editarea\edit_area\langs\hr.js
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\editor\editarea\edit_area\langs\it.js
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\editor\editarea\edit_area\langs\ja.js
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\editor\editarea\edit_area\langs\mk.js
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\editor\editarea\edit_area\langs\nl.js
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\editor\editarea\edit_area\langs\pl.js
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\editor\editarea\edit_area\langs\pt.js
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\editor\editarea\edit_area\langs\ru.js
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\editor\editarea\edit_area\langs\sk.js
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\editor\editarea\edit_area\langs\zh.js
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\editor\editarea\edit_area\manage_area.js
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\editor\editarea\edit_area\reg_syntax.js
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\editor\editarea\edit_area\reg_syntax\imacro.js
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\editor\editarea\edit_area\reg_syntax\js.js
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\editor\editarea\edit_area\regexp.js
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\editor\editarea\edit_area\resize_area.js
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\editor\editarea\edit_area\search_replace.js
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\editor\editarea\edit_area\template.html
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\editor\editarea\imacro.css
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\editor\editarea\imacro.html
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\editor\editarea\imacro.js
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\editor\editarea\license_apache.txt
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\editor\editarea\license_bsd.txt
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\editor\editarea\license_lgpl.txt
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\editor\editor.html
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\editor\editor.js
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\editor\saveAsDialog.html
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\editor\saveAsDialog.js
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\extractDialog.html
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\extractDialog.js
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\fileView.html
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\fileView.js
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\folderView.html
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\folderView.js
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\loginDialog.html
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\loginDialog.js
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\macroView.html
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\macroView.js
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\manifest.json
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\mktree.js
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\mplayer.js
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\mrecorder.js
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\nm_connector.js
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\npimr.dll
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\options.html
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\options.js
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\panel.html
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\panel.js
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\passwordDialog.html
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\passwordDialog.js
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\rijndael.js
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\samples\Address.csv
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\samples\ArchivePage.iim
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\samples\Eval.iim
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\samples\Extract.iim
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\samples\ExtractAndFill.iim
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\samples\ExtractRelative.iim
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\samples\ExtractTable.iim
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\samples\ExtractURL.iim
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\samples\FillForm-XPath.iim
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\samples\FillForm.iim
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\samples\Frame.iim
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\samples\Loop-Csv-2-Web.iim
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\samples\Open6Tabs.iim
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\samples\Profiler.xsl
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\samples\SaveAs.iim
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\samples\SlideShow.iim
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\samples\Stopwatch.iim
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\samples\TagPosition.iim
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\sandbox.html
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\sandbox.js
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\skin\AlertFoxLoginDialog.css
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\skin\beforePlay.css
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\skin\browse.css
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\skin\browse.png
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\skin\cancel.png
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\skin\capture.png
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\skin\close.png
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\skin\common.css
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\skin\disk.png
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\skin\edit-disabled.png
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\skin\edit.png
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\skin\editor.css
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\skin\extractDialog.css
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\skin\folder-index.png
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\skin\folder-up.png
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\skin\folderClosed.png
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\skin\folderOpen.png
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\skin\help.png
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\skin\imglog.png
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\skin\lock.png
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\skin\loginDialog.css
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\skin\logo128.png
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\skin\logo16.png
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\skin\logo19.png
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\skin\logo24.png
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\skin\logo38.png
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\skin\logo48.png
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\skin\loop-disabled.png
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\skin\loop.png
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\skin\macroView.css
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\skin\mycomputer.png
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\skin\ok.png
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\skin\options.css
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\skin\panel.css
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\skin\passwordDialog.css
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\skin\pause.png
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\skin\play-disabled.png
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\skin\play.png
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\skin\record.png
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\skin\save.png
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\skin\saveas.png
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\skin\saveAsDialog.css
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\skin\settings.png
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\skin\stop.png
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\skin\treeView.css
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\skin\waiting_16x16.gif
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\SOAPClient.js
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\treeView.html
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\treeView.js
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\utils.js
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\cplklnmnlbnpmjogncfgfijoopmnlemp\8.0.7_0\version.js
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\djflhoibgkdhkhhcedjiklpkjnoahfmg\1.0.43_0\_metadata\verified_contents.json
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\djflhoibgkdhkhhcedjiklpkjnoahfmg\1.0.43_0\background.js
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\djflhoibgkdhkhhcedjiklpkjnoahfmg\1.0.43_0\Chevron-right.png
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\djflhoibgkdhkhhcedjiklpkjnoahfmg\1.0.43_0\delete.png
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\djflhoibgkdhkhhcedjiklpkjnoahfmg\1.0.43_0\delete_hover.png
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\djflhoibgkdhkhhcedjiklpkjnoahfmg\1.0.43_0\jquery.js
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\djflhoibgkdhkhhcedjiklpkjnoahfmg\1.0.43_0\manifest.json
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\djflhoibgkdhkhhcedjiklpkjnoahfmg\1.0.43_0\options.html
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\djflhoibgkdhkhhcedjiklpkjnoahfmg\1.0.43_0\options.js
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\djflhoibgkdhkhhcedjiklpkjnoahfmg\1.0.43_0\popup.html
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\djflhoibgkdhkhhcedjiklpkjnoahfmg\1.0.43_0\popup.js
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\djflhoibgkdhkhhcedjiklpkjnoahfmg\1.0.43_0\schema.json
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\djflhoibgkdhkhhcedjiklpkjnoahfmg\1.0.43_0\spoofer-128.png
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\djflhoibgkdhkhhcedjiklpkjnoahfmg\1.0.43_0\spoofer-16.png
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\djflhoibgkdhkhhcedjiklpkjnoahfmg\1.0.43_0\spoofer-32.png
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\djflhoibgkdhkhhcedjiklpkjnoahfmg\1.0.43_0\spoofer-small-tile.jpg
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\djflhoibgkdhkhhcedjiklpkjnoahfmg\1.0.43_0\spoofer-small-tile.png
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\djflhoibgkdhkhhcedjiklpkjnoahfmg\1.0.43_0\spoofer.css
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\djflhoibgkdhkhhcedjiklpkjnoahfmg\1.0.43_0\spoofer.js
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\djflhoibgkdhkhhcedjiklpkjnoahfmg\1.0.43_0\spoofer.png
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\djflhoibgkdhkhhcedjiklpkjnoahfmg\1.0.43_0\spoofer_cs.js
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\hnkcfpcejkafcihlgbojoidoihckciin\0.58_0\_metadata\verified_contents.json
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\hnkcfpcejkafcihlgbojoidoihckciin\0.58_0\chrome\content\background.html
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\hnkcfpcejkafcihlgbojoidoihckciin\0.58_0\chrome\content\blockJavascriptReferer.js
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\hnkcfpcejkafcihlgbojoidoihckciin\0.58_0\chrome\content\jquery-1.7.1.min.js
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\hnkcfpcejkafcihlgbojoidoihckciin\0.58_0\chrome\content\jquery.appear-1.1.1.min.js
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\hnkcfpcejkafcihlgbojoidoihckciin\0.58_0\chrome\content\options.css
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\hnkcfpcejkafcihlgbojoidoihckciin\0.58_0\chrome\content\options.html
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\hnkcfpcejkafcihlgbojoidoihckciin\0.58_0\chrome\content\options.js
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\hnkcfpcejkafcihlgbojoidoihckciin\0.58_0\chrome\content\refererControl.js
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\hnkcfpcejkafcihlgbojoidoihckciin\0.58_0\chrome\content\skin\delete.png
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\hnkcfpcejkafcihlgbojoidoihckciin\0.58_0\chrome\content\skin\logo.png
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\hnkcfpcejkafcihlgbojoidoihckciin\0.58_0\icons\icon-128.png
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\hnkcfpcejkafcihlgbojoidoihckciin\0.58_0\icons\icon-16.png
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\hnkcfpcejkafcihlgbojoidoihckciin\0.58_0\icons\icon-32.png
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\hnkcfpcejkafcihlgbojoidoihckciin\0.58_0\icons\icon-48.png
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\hnkcfpcejkafcihlgbojoidoihckciin\0.58_0\manifest.json
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\bg\messages.json
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\ca\messages.json
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\cs\messages.json
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\da\messages.json
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\de\messages.json
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\el\messages.json
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\en\messages.json
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\en_GB\messages.json
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\es\messages.json
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\es_419\messages.json
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\et\messages.json
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\fi\messages.json
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\fil\messages.json
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\fr\messages.json
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\hi\messages.json
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\hr\messages.json
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\hu\messages.json
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\id\messages.json
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\it\messages.json
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\ja\messages.json
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\ko\messages.json
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\lt\messages.json
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\lv\messages.json
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\nb\messages.json
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\nl\messages.json
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\pl\messages.json
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\pt_BR\messages.json
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\pt_PT\messages.json
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\ro\messages.json
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\ru\messages.json
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\sk\messages.json
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\sl\messages.json
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\sr\messages.json
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\sv\messages.json
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\th\messages.json
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\tr\messages.json
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\uk\messages.json
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\vi\messages.json
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\zh_CN\messages.json
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_locales\zh_TW\messages.json
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\_metadata\verified_contents.json
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\craw_background.js
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\craw_window.js
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\css\craw_window.css
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\html\craw_window.html
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\images\flapper.gif
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\images\icon_128.png
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\images\icon_16.png
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\images\topbar_floating_button.png
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\images\topbar_floating_button_close.png
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\images\topbar_floating_button_hover.png
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\images\topbar_floating_button_maximize.png
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\images\topbar_floating_button_pressed.png
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.1.1.0_0\manifest.json
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\obldlamadkihjlkdjblncejeblbogmnb\1.3.5_0\_metadata\verified_contents.json
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\obldlamadkihjlkdjblncejeblbogmnb\1.3.5_0\css\style.css
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\obldlamadkihjlkdjblncejeblbogmnb\1.3.5_0\images\cookheaders16.png
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\obldlamadkihjlkdjblncejeblbogmnb\1.3.5_0\images\cookheaders48.png
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\obldlamadkihjlkdjblncejeblbogmnb\1.3.5_0\images\export_csv_icon.png
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\obldlamadkihjlkdjblncejeblbogmnb\1.3.5_0\images\mysettings.png
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\obldlamadkihjlkdjblncejeblbogmnb\1.3.5_0\images\refreshicon.png
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\obldlamadkihjlkdjblncejeblbogmnb\1.3.5_0\images\sort_asc.png
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\obldlamadkihjlkdjblncejeblbogmnb\1.3.5_0\images\sort_both.png
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\obldlamadkihjlkdjblncejeblbogmnb\1.3.5_0\images\sort_desc.png
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\obldlamadkihjlkdjblncejeblbogmnb\1.3.5_0\images\toggleDown.png
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\obldlamadkihjlkdjblncejeblbogmnb\1.3.5_0\images\toggleUp.png
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\obldlamadkihjlkdjblncejeblbogmnb\1.3.5_0\images\transparent.png
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\obldlamadkihjlkdjblncejeblbogmnb\1.3.5_0\js\background.js
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\obldlamadkihjlkdjblncejeblbogmnb\1.3.5_0\js\lib\require.js
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\obldlamadkihjlkdjblncejeblbogmnb\1.3.5_0\js\main.js
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\obldlamadkihjlkdjblncejeblbogmnb\1.3.5_0\manager.html
c:\windows\SysWow64\32\Data\Profiles\Default\Extensions\obldlamadkihjlkdjblncejeblbogmnb\1.3.5_0\manifest.json
c:\windows\SysWow64\32\Data\Profiles\Default\Favicons-journal
c:\windows\SysWow64\32\Data\Profiles\Default\Favicons
c:\windows\SysWow64\32\Data\Profiles\Default\GCM Store\000003.log
c:\windows\SysWow64\32\Data\Profiles\Default\GCM Store\CURRENT
c:\windows\SysWow64\32\Data\Profiles\Default\GCM Store\LOCK
c:\windows\SysWow64\32\Data\Profiles\Default\GCM Store\LOG
c:\windows\SysWow64\32\Data\Profiles\Default\GCM Store\LOG.old
c:\windows\SysWow64\32\Data\Profiles\Default\GCM Store\MANIFEST-000001
c:\windows\SysWow64\32\Data\Profiles\Default\GPUCache\data_0
c:\windows\SysWow64\32\Data\Profiles\Default\GPUCache\data_1
c:\windows\SysWow64\32\Data\Profiles\Default\GPUCache\data_2
c:\windows\SysWow64\32\Data\Profiles\Default\GPUCache\data_3
c:\windows\SysWow64\32\Data\Profiles\Default\GPUCache\index
c:\windows\SysWow64\32\Data\Profiles\Default\History-journal
c:\windows\SysWow64\32\Data\Profiles\Default\History Provider Cache
c:\windows\SysWow64\32\Data\Profiles\Default\History
c:\windows\SysWow64\32\Data\Profiles\Default\IndexedDB\https_www.google.ca_0.indexeddb.leveldb\000003.log
c:\windows\SysWow64\32\Data\Profiles\Default\IndexedDB\https_www.google.ca_0.indexeddb.leveldb\000005.bak
c:\windows\SysWow64\32\Data\Profiles\Default\IndexedDB\https_www.google.ca_0.indexeddb.leveldb\000005.ldb
c:\windows\SysWow64\32\Data\Profiles\Default\IndexedDB\https_www.google.ca_0.indexeddb.leveldb\000006.log
c:\windows\SysWow64\32\Data\Profiles\Default\IndexedDB\https_www.google.ca_0.indexeddb.leveldb\CURRENT
c:\windows\SysWow64\32\Data\Profiles\Default\IndexedDB\https_www.google.ca_0.indexeddb.leveldb\LOCK
c:\windows\SysWow64\32\Data\Profiles\Default\IndexedDB\https_www.google.ca_0.indexeddb.leveldb\LOG
c:\windows\SysWow64\32\Data\Profiles\Default\IndexedDB\https_www.google.ca_0.indexeddb.leveldb\LOG.old
c:\windows\SysWow64\32\Data\Profiles\Default\IndexedDB\https_www.google.ca_0.indexeddb.leveldb\MANIFEST-000001
c:\windows\SysWow64\32\Data\Profiles\Default\JumpListIcons\D75A.tmp
c:\windows\SysWow64\32\Data\Profiles\Default\JumpListIcons\D76C.tmp
c:\windows\SysWow64\32\Data\Profiles\Default\JumpListIcons\D76D.tmp
c:\windows\SysWow64\32\Data\Profiles\Default\JumpListIconsOld\D737.tmp
c:\windows\SysWow64\32\Data\Profiles\Default\JumpListIconsOld\D748.tmp
c:\windows\SysWow64\32\Data\Profiles\Default\JumpListIconsOld\D749.tmp
c:\windows\SysWow64\32\Data\Profiles\Default\Last Session
c:\windows\SysWow64\32\Data\Profiles\Default\Last Tabs
c:\windows\SysWow64\32\Data\Profiles\Default\Local Extension Settings\djflhoibgkdhkhhcedjiklpkjnoahfmg\000003.log
c:\windows\SysWow64\32\Data\Profiles\Default\Local Extension Settings\djflhoibgkdhkhhcedjiklpkjnoahfmg\CURRENT
c:\windows\SysWow64\32\Data\Profiles\Default\Local Extension Settings\djflhoibgkdhkhhcedjiklpkjnoahfmg\LOCK
c:\windows\SysWow64\32\Data\Profiles\Default\Local Extension Settings\djflhoibgkdhkhhcedjiklpkjnoahfmg\LOG
c:\windows\SysWow64\32\Data\Profiles\Default\Local Extension Settings\djflhoibgkdhkhhcedjiklpkjnoahfmg\LOG.old
c:\windows\SysWow64\32\Data\Profiles\Default\Local Extension Settings\djflhoibgkdhkhhcedjiklpkjnoahfmg\MANIFEST-000001
c:\windows\SysWow64\32\Data\Profiles\Default\Local Extension Settings\pafkbggdmjlpgkdkcbjmhmfcdpncadgh\000003.log
c:\windows\SysWow64\32\Data\Profiles\Default\Local Extension Settings\pafkbggdmjlpgkdkcbjmhmfcdpncadgh\CURRENT
c:\windows\SysWow64\32\Data\Profiles\Default\Local Extension Settings\pafkbggdmjlpgkdkcbjmhmfcdpncadgh\LOCK
c:\windows\SysWow64\32\Data\Profiles\Default\Local Extension Settings\pafkbggdmjlpgkdkcbjmhmfcdpncadgh\LOG
c:\windows\SysWow64\32\Data\Profiles\Default\Local Extension Settings\pafkbggdmjlpgkdkcbjmhmfcdpncadgh\LOG.old
c:\windows\SysWow64\32\Data\Profiles\Default\Local Extension Settings\pafkbggdmjlpgkdkcbjmhmfcdpncadgh\MANIFEST-000001
c:\windows\SysWow64\32\Data\Profiles\Default\Local Storage\chrome-extension_cknebhggccemgcnbidipinkifmmegdel_0.localstorage-journal
c:\windows\SysWow64\32\Data\Profiles\Default\Local Storage\chrome-extension_cknebhggccemgcnbidipinkifmmegdel_0.localstorage
c:\windows\SysWow64\32\Data\Profiles\Default\Local Storage\chrome-extension_cplklnmnlbnpmjogncfgfijoopmnlemp_0.localstorage-journal
c:\windows\SysWow64\32\Data\Profiles\Default\Local Storage\chrome-extension_cplklnmnlbnpmjogncfgfijoopmnlemp_0.localstorage
c:\windows\SysWow64\32\Data\Profiles\Default\Local Storage\chrome-extension_djflhoibgkdhkhhcedjiklpkjnoahfmg_0.localstorage-journal
c:\windows\SysWow64\32\Data\Profiles\Default\Local Storage\chrome-extension_djflhoibgkdhkhhcedjiklpkjnoahfmg_0.localstorage
c:\windows\SysWow64\32\Data\Profiles\Default\Local Storage\chrome-extension_hnkcfpcejkafcihlgbojoidoihckciin_0.localstorage-journal
c:\windows\SysWow64\32\Data\Profiles\Default\Local Storage\chrome-extension_hnkcfpcejkafcihlgbojoidoihckciin_0.localstorage
c:\windows\SysWow64\32\Data\Profiles\Default\Local Storage\chrome-extension_obldlamadkihjlkdjblncejeblbogmnb_0.localstorage-journal
c:\windows\SysWow64\32\Data\Profiles\Default\Local Storage\chrome-extension_obldlamadkihjlkdjblncejeblbogmnb_0.localstorage
c:\windows\SysWow64\32\Data\Profiles\Default\Local Storage\chrome-extension_pafkbggdmjlpgkdkcbjmhmfcdpncadgh_0.localstorage-journal
c:\windows\SysWow64\32\Data\Profiles\Default\Local Storage\chrome-extension_pafkbggdmjlpgkdkcbjmhmfcdpncadgh_0.localstorage
c:\windows\SysWow64\32\Data\Profiles\Default\Local Storage\https_chrome.google.com_0.localstorage-journal
c:\windows\SysWow64\32\Data\Profiles\Default\Local Storage\https_chrome.google.com_0.localstorage
c:\windows\SysWow64\32\Data\Profiles\Default\Local Storage\https_m.youtube.com_0.localstorage-journal
c:\windows\SysWow64\32\Data\Profiles\Default\Local Storage\https_m.youtube.com_0.localstorage
c:\windows\SysWow64\32\Data\Profiles\Default\Local Storage\https_www.google.ca_0.localstorage-journal
c:\windows\SysWow64\32\Data\Profiles\Default\Local Storage\https_www.google.ca_0.localstorage
c:\windows\SysWow64\32\Data\Profiles\Default\Local Storage\https_www.youtube.com_0.localstorage-journal
c:\windows\SysWow64\32\Data\Profiles\Default\Local Storage\https_www.youtube.com_0.localstorage
c:\windows\SysWow64\32\Data\Profiles\Default\Login Data-journal
c:\windows\SysWow64\32\Data\Profiles\Default\Login Data
c:\windows\SysWow64\32\Data\Profiles\Default\Managed Extension Settings\djflhoibgkdhkhhcedjiklpkjnoahfmg\000003.log
c:\windows\SysWow64\32\Data\Profiles\Default\Managed Extension Settings\djflhoibgkdhkhhcedjiklpkjnoahfmg\CURRENT
c:\windows\SysWow64\32\Data\Profiles\Default\Managed Extension Settings\djflhoibgkdhkhhcedjiklpkjnoahfmg\LOCK
c:\windows\SysWow64\32\Data\Profiles\Default\Managed Extension Settings\djflhoibgkdhkhhcedjiklpkjnoahfmg\LOG
c:\windows\SysWow64\32\Data\Profiles\Default\Managed Extension Settings\djflhoibgkdhkhhcedjiklpkjnoahfmg\LOG.old
c:\windows\SysWow64\32\Data\Profiles\Default\Managed Extension Settings\djflhoibgkdhkhhcedjiklpkjnoahfmg\MANIFEST-000001
c:\windows\SysWow64\32\Data\Profiles\Default\Media Cache\data_0
c:\windows\SysWow64\32\Data\Profiles\Default\Media Cache\data_1
c:\windows\SysWow64\32\Data\Profiles\Default\Media Cache\data_2
c:\windows\SysWow64\32\Data\Profiles\Default\Media Cache\data_3
c:\windows\SysWow64\32\Data\Profiles\Default\Media Cache\f_000001
c:\windows\SysWow64\32\Data\Profiles\Default\Media Cache\f_000002
c:\windows\SysWow64\32\Data\Profiles\Default\Media Cache\index
c:\windows\SysWow64\32\Data\Profiles\Default\Network Action Predictor-journal
c:\windows\SysWow64\32\Data\Profiles\Default\Network Action Predictor
c:\windows\SysWow64\32\Data\Profiles\Default\Origin Bound Certs-journal
c:\windows\SysWow64\32\Data\Profiles\Default\Origin Bound Certs
c:\windows\SysWow64\32\Data\Profiles\Default\Pepper Data\Shockwave Flash\CacheWritableAdobeRoot\AssetCache\8TFVBNHK\381814F6F5270FFBB27E244D6138BC023AF911D5.heu
c:\windows\SysWow64\32\Data\Profiles\Default\Pepper Data\Shockwave Flash\CacheWritableAdobeRoot\AssetCache\8TFVBNHK\381814F6F5270FFBB27E244D6138BC023AF911D5.swz
c:\windows\SysWow64\32\Data\Profiles\Default\Pepper Data\Shockwave Flash\CacheWritableAdobeRoot\AssetCache\8TFVBNHK\440AE73B017A477382DEFF7C0DBE4896FED21079.heu
c:\windows\SysWow64\32\Data\Profiles\Default\Pepper Data\Shockwave Flash\CacheWritableAdobeRoot\AssetCache\8TFVBNHK\440AE73B017A477382DEFF7C0DBE4896FED21079.swz
c:\windows\SysWow64\32\Data\Profiles\Default\Pepper Data\Shockwave Flash\CacheWritableAdobeRoot\AssetCache\8TFVBNHK\6344DCC80A9A6A3676DCEA0C92C8C45EFD2F3220.heu
c:\windows\SysWow64\32\Data\Profiles\Default\Pepper Data\Shockwave Flash\CacheWritableAdobeRoot\AssetCache\8TFVBNHK\6344DCC80A9A6A3676DCEA0C92C8C45EFD2F3220.swz
c:\windows\SysWow64\32\Data\Profiles\Default\Pepper Data\Shockwave Flash\CacheWritableAdobeRoot\AssetCache\8TFVBNHK\6DDB94AE3365798230849FA0F931AC132FE417D1.heu
c:\windows\SysWow64\32\Data\Profiles\Default\Pepper Data\Shockwave Flash\CacheWritableAdobeRoot\AssetCache\8TFVBNHK\6DDB94AE3365798230849FA0F931AC132FE417D1.swz
c:\windows\SysWow64\32\Data\Profiles\Default\Pepper Data\Shockwave Flash\CacheWritableAdobeRoot\AssetCache\8TFVBNHK\871F12AF0853C06E4EB80A1CCAB295CEADBB817A.heu
c:\windows\SysWow64\32\Data\Profiles\Default\Pepper Data\Shockwave Flash\CacheWritableAdobeRoot\AssetCache\8TFVBNHK\871F12AF0853C06E4EB80A1CCAB295CEADBB817A.swz
c:\windows\SysWow64\32\Data\Profiles\Default\Pepper Data\Shockwave Flash\CacheWritableAdobeRoot\AssetCache\8TFVBNHK\C3306B26751D6A80EB1FCB651912469AE18819AB.heu
c:\windows\SysWow64\32\Data\Profiles\Default\Pepper Data\Shockwave Flash\CacheWritableAdobeRoot\AssetCache\8TFVBNHK\C3306B26751D6A80EB1FCB651912469AE18819AB.swz
c:\windows\SysWow64\32\Data\Profiles\Default\Pepper Data\Shockwave Flash\CacheWritableAdobeRoot\AssetCache\8TFVBNHK\cacheSize.txt
c:\windows\SysWow64\32\Data\Profiles\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\59T4E6GM\macromedia.com\support\flashplayer\sys\#s.ytimg.com\settings.sol
c:\windows\SysWow64\32\Data\Profiles\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\59T4E6GM\macromedia.com\support\flashplayer\sys\settings.sol
c:\windows\SysWow64\32\Data\Profiles\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\SXFF66PN\macromedia.com\support\flashplayer\sys\settings.sol
c:\windows\SysWow64\32\Data\Profiles\Default\Pepper Data\Shockwave Flash\WritableRoot\#SharedObjects\ZB56QCWE\macromedia.com\support\flashplayer\sys\settings.sol
c:\windows\SysWow64\32\Data\Profiles\Default\Platform Notifications\000003.log
c:\windows\SysWow64\32\Data\Profiles\Default\Platform Notifications\CURRENT
c:\windows\SysWow64\32\Data\Profiles\Default\Platform Notifications\LOCK
c:\windows\SysWow64\32\Data\Profiles\Default\Platform Notifications\LOG
c:\windows\SysWow64\32\Data\Profiles\Default\Platform Notifications\LOG.old
c:\windows\SysWow64\32\Data\Profiles\Default\Platform Notifications\MANIFEST-000001
c:\windows\SysWow64\32\Data\Profiles\Default\Preferences
c:\windows\SysWow64\32\Data\Profiles\Default\QuotaManager-journal
c:\windows\SysWow64\32\Data\Profiles\Default\QuotaManager
c:\windows\SysWow64\32\Data\Profiles\Default\README
c:\windows\SysWow64\32\Data\Profiles\Default\Secure Preferences
c:\windows\SysWow64\32\Data\Profiles\Default\Service Worker\Cache\data_0
c:\windows\SysWow64\32\Data\Profiles\Default\Service Worker\Cache\data_1
c:\windows\SysWow64\32\Data\Profiles\Default\Service Worker\Cache\data_2
c:\windows\SysWow64\32\Data\Profiles\Default\Service Worker\Cache\data_3
c:\windows\SysWow64\32\Data\Profiles\Default\Service Worker\Cache\index
c:\windows\SysWow64\32\Data\Profiles\Default\Service Worker\CacheStorage\783e7ccd1569e6f0af8b16953519e77950ae84e4\5c195cff73e351e95bc1adc3b6262f6318208d0b\index-dir\the-real-index
c:\windows\SysWow64\32\Data\Profiles\Default\Service Worker\Database\000003.log
c:\windows\SysWow64\32\Data\Profiles\Default\Service Worker\Database\CURRENT
c:\windows\SysWow64\32\Data\Profiles\Default\Service Worker\Database\LOCK
c:\windows\SysWow64\32\Data\Profiles\Default\Service Worker\Database\LOG
c:\windows\SysWow64\32\Data\Profiles\Default\Service Worker\Database\LOG.old
c:\windows\SysWow64\32\Data\Profiles\Default\Service Worker\Database\MANIFEST-000001
c:\windows\SysWow64\32\Data\Profiles\Default\Session Storage\000009.ldb
c:\windows\SysWow64\32\Data\Profiles\Default\Session Storage\000011.log
c:\windows\SysWow64\32\Data\Profiles\Default\Session Storage\000012.ldb
c:\windows\SysWow64\32\Data\Profiles\Default\Session Storage\CURRENT
c:\windows\SysWow64\32\Data\Profiles\Default\Session Storage\LOCK
c:\windows\SysWow64\32\Data\Profiles\Default\Session Storage\LOG
c:\windows\SysWow64\32\Data\Profiles\Default\Session Storage\LOG.old
c:\windows\SysWow64\32\Data\Profiles\Default\Session Storage\MANIFEST-000001
c:\windows\SysWow64\32\Data\Profiles\Default\Shortcuts-journal
c:\windows\SysWow64\32\Data\Profiles\Default\Shortcuts
c:\windows\SysWow64\32\Data\Profiles\Default\Sync Extension Settings\hnkcfpcejkafcihlgbojoidoihckciin\000003.log
c:\windows\SysWow64\32\Data\Profiles\Default\Sync Extension Settings\hnkcfpcejkafcihlgbojoidoihckciin\CURRENT
c:\windows\SysWow64\32\Data\Profiles\Default\Sync Extension Settings\hnkcfpcejkafcihlgbojoidoihckciin\LOCK
c:\windows\SysWow64\32\Data\Profiles\Default\Sync Extension Settings\hnkcfpcejkafcihlgbojoidoihckciin\LOG
c:\windows\SysWow64\32\Data\Profiles\Default\Sync Extension Settings\hnkcfpcejkafcihlgbojoidoihckciin\LOG.old
c:\windows\SysWow64\32\Data\Profiles\Default\Sync Extension Settings\hnkcfpcejkafcihlgbojoidoihckciin\MANIFEST-000001
c:\windows\SysWow64\32\Data\Profiles\Default\Top Sites-journal
c:\windows\SysWow64\32\Data\Profiles\Default\Top Sites
c:\windows\SysWow64\32\Data\Profiles\Default\TransportSecurity
c:\windows\SysWow64\32\Data\Profiles\Default\Visited Links
c:\windows\SysWow64\32\Data\Profiles\Default\Web Applications\_crx_cplklnmnlbnpmjogncfgfijoopmnlemp\iMacros for Chrome.ico
c:\windows\SysWow64\32\Data\Profiles\Default\Web Applications\_crx_cplklnmnlbnpmjogncfgfijoopmnlemp\iMacros for Chrome.ico.md5
c:\windows\SysWow64\32\Data\Profiles\Default\Web Data-journal
c:\windows\SysWow64\32\Data\Profiles\Default\Web Data
c:\windows\SysWow64\32\Data\Profiles\Default\WebRTCIdentityStore-journal
c:\windows\SysWow64\32\Data\Profiles\Default\WebRTCIdentityStore
c:\windows\SysWow64\32\Data\Profiles\Dictionaries\en-US-6-1.bdic
c:\windows\SysWow64\32\Data\Profiles\ev_hashes_whitelist.bin
c:\windows\SysWow64\32\Data\Profiles\EVWhitelist\6\_metadata\verified_contents.json
c:\windows\SysWow64\32\Data\Profiles\EVWhitelist\6\_platform_specific\all\ev_hashes_whitelist.bin
c:\windows\SysWow64\32\Data\Profiles\EVWhitelist\6\manifest.fingerprint
c:\windows\SysWow64\32\Data\Profiles\EVWhitelist\6\manifest.json
c:\windows\SysWow64\32\Data\Profiles\Local State
c:\windows\SysWow64\32\Data\Profiles\pnacl\0.2.0.208\_metadata\verified_contents.json
c:\windows\SysWow64\32\Data\Profiles\pnacl\0.2.0.208\_platform_specific\x86_64\pnacl_public_pnacl_json
c:\windows\SysWow64\32\Data\Profiles\pnacl\0.2.0.208\_platform_specific\x86_64\pnacl_public_x86_64_crtbegin_o
c:\windows\SysWow64\32\Data\Profiles\pnacl\0.2.0.208\_platform_specific\x86_64\pnacl_public_x86_64_crtend_o
c:\windows\SysWow64\32\Data\Profiles\pnacl\0.2.0.208\_platform_specific\x86_64\pnacl_public_x86_64_ld_nexe
c:\windows\SysWow64\32\Data\Profiles\pnacl\0.2.0.208\_platform_specific\x86_64\pnacl_public_x86_64_libcrt_platform_a
c:\windows\SysWow64\32\Data\Profiles\pnacl\0.2.0.208\_platform_specific\x86_64\pnacl_public_x86_64_libgcc_a
c:\windows\SysWow64\32\Data\Profiles\pnacl\0.2.0.208\_platform_specific\x86_64\pnacl_public_x86_64_libpnacl_irt_shim_a
c:\windows\SysWow64\32\Data\Profiles\pnacl\0.2.0.208\_platform_specific\x86_64\pnacl_public_x86_64_pnacl_llc_nexe
c:\windows\SysWow64\32\Data\Profiles\pnacl\0.2.0.208\manifest.fingerprint
c:\windows\SysWow64\32\Data\Profiles\pnacl\0.2.0.208\manifest.json
c:\windows\SysWow64\32\Data\Profiles\PnaclTranslationCache\data_0
c:\windows\SysWow64\32\Data\Profiles\PnaclTranslationCache\data_1
c:\windows\SysWow64\32\Data\Profiles\PnaclTranslationCache\data_2
c:\windows\SysWow64\32\Data\Profiles\PnaclTranslationCache\data_3
c:\windows\SysWow64\32\Data\Profiles\PnaclTranslationCache\index
c:\windows\SysWow64\32\Data\Profiles\Safe Browsing Bloom Prefix Set
c:\windows\SysWow64\32\Data\Profiles\Safe Browsing Bloom
c:\windows\SysWow64\32\Data\Profiles\Safe Browsing Cookies-journal
c:\windows\SysWow64\32\Data\Profiles\Safe Browsing Cookies
c:\windows\SysWow64\32\Data\Profiles\Safe Browsing Csd Whitelist
c:\windows\SysWow64\32\Data\Profiles\Safe Browsing Download Whitelist
c:\windows\SysWow64\32\Data\Profiles\Safe Browsing Download
c:\windows\SysWow64\32\Data\Profiles\Safe Browsing Extension Blacklist
c:\windows\SysWow64\32\Data\Profiles\Safe Browsing Inclusion Whitelist
c:\windows\SysWow64\32\Data\Profiles\Safe Browsing IP Blacklist
c:\windows\SysWow64\32\Data\Profiles\Safe Browsing UwS List Prefix Set
c:\windows\SysWow64\32\Data\Profiles\Safe Browsing UwS List
c:\windows\SysWow64\32\Data\Profiles\SwReporter\3.21.0\_metadata\verified_contents.json
c:\windows\SysWow64\32\Data\Profiles\SwReporter\3.21.0\manifest.fingerprint
c:\windows\SysWow64\32\Data\Profiles\SwReporter\3.21.0\manifest.json
c:\windows\SysWow64\32\Data\Profiles\SwReporter\3.21.0\software_reporter_tool.exe
c:\windows\SysWow64\32\Data\Profiles\SwReporter\3.21.0\software_reporter_tool.log
c:\windows\SysWow64\32\debug.log
c:\windows\SysWow64\32\ffmpegsumo.dll
c:\windows\SysWow64\32\libegl.dll
c:\windows\SysWow64\32\libexif.dll
c:\windows\SysWow64\32\libglesv2.dll
c:\windows\SysWow64\32\nacl_irt_x86_32.nexe
c:\windows\SysWow64\32\nacl_irt_x86_64.nexe
c:\windows\SysWow64\32\nacl64.exe
c:\windows\SysWow64\32\natives_blob.bin
c:\windows\SysWow64\32\snapshot_blob.bin
c:\windows\SysWow64\32\wow_helper.exe
c:\windows\SysWow64\64.dat
c:\windows\SysWow64\sn.txt
c:\windows\SysWow64\tmp58AB.tmp
c:\windows\SysWow64\tmpEC86.tmp
c:\windows\SysWow64\tmpED13.tmp
D:\install.exe
.
.
((((((((((((((((((((((( Dateien erstellt von 2015-09-05 bis 2015-10-05 ))))))))))))))))))))))))))))))
.
.
2015-10-05 16:10 . 2015-10-05 16:10 -------- d-----w- c:\users\Gast\AppData\Local\temp
2015-10-05 16:10 . 2015-10-05 16:10 -------- d-----w- c:\users\Default\AppData\Local\temp
2015-10-05 14:01 . 2015-10-05 14:01 -------- d-----w- c:\program files (x86)\Microsoft ASP.NET
2015-10-05 13:14 . 2015-10-05 14:22 -------- d-----w- c:\users\Sandra&Paddy\Microsoft
2015-10-04 18:45 . 2015-10-04 18:45 -------- d-----w- c:\windows\de
2015-10-04 18:21 . 2015-10-04 18:21 889416 -c--a-w- c:\program files (x86)\Common Files\Windows Live\.cache\8950fab01d0fed101\dotNetFx40_Full_setup.exe
2015-10-04 16:28 . 2015-10-04 16:35 -------- d-----w- C:\FRST
2015-10-03 14:29 . 2015-10-03 14:29 -------- d-----w- c:\windows\SysWow64\wbem\en-US
2015-10-03 14:29 . 2015-10-03 14:29 -------- d-----w- c:\windows\system32\wbem\en-US
2015-10-02 21:07 . 2015-10-02 21:07 -------- d-----w- c:\windows\Panther
2015-10-02 12:27 . 2015-10-02 12:27 -------- d-----w- c:\program files (x86)\MAGIX
2015-10-02 11:27 . 2014-09-14 06:14 0 ----a-w- c:\users\Sandra&Paddy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\dub-Microsoft.vbs
2015-10-02 06:12 . 2015-08-31 22:45 11062400 ----a-w- c:\programdata\Microsoft\Windows Defender\Definition Updates\{E962040C-3761-4EB2-8935-6292055E4057}\mpengine.dll
2015-10-01 11:20 . 2015-07-18 13:08 63840 ----a-w- c:\windows\system32\api-ms-win-crt-private-l1-1-0.dll
2015-10-01 11:19 . 2015-08-27 18:18 2004480 ----a-w- c:\windows\system32\msxml6.dll
2015-10-01 11:19 . 2015-08-27 18:18 1887232 ----a-w- c:\windows\system32\msxml3.dll
2015-10-01 11:19 . 2015-08-27 18:13 2048 ----a-w- c:\windows\system32\msxml6r.dll
2015-10-01 11:19 . 2015-08-27 18:13 2048 ----a-w- c:\windows\system32\msxml3r.dll
2015-10-01 11:19 . 2015-08-27 17:58 1391104 ----a-w- c:\windows\SysWow64\msxml6.dll
2015-10-01 11:19 . 2015-08-27 17:58 1241088 ----a-w- c:\windows\SysWow64\msxml3.dll
2015-10-01 11:19 . 2015-08-27 17:51 2048 ----a-w- c:\windows\SysWow64\msxml6r.dll
2015-10-01 11:19 . 2015-08-27 17:51 2048 ----a-w- c:\windows\SysWow64\msxml3r.dll
2015-09-26 14:42 . 2015-07-30 13:13 103120 ----a-w- c:\windows\SysWow64\PresentationCFFRasterizerNative_v0300.dll
2015-09-26 14:42 . 2015-07-30 13:13 124624 ----a-w- c:\windows\system32\PresentationCFFRasterizerNative_v0300.dll
2015-09-26 14:20 . 2015-08-26 18:07 98304 ----a-w- c:\windows\system32\wudriver.dll
2015-09-26 10:29 . 2015-09-26 10:29 -------- d-----w- c:\users\Sandra&Paddy\AppData\Roaming\OpenOffice
2015-09-26 10:14 . 2015-09-26 10:14 -------- d-----w- c:\program files (x86)\OpenOffice 4
2015-09-20 18:45 . 2015-09-20 18:48 -------- d-----w- C:\AdwCleaner
2015-09-14 18:08 . 2015-09-14 18:10 -------- d-----w- c:\users\Sandra&Paddy\AppData\Roaming\SpaceEngineers
2015-09-14 18:06 . 2015-09-14 18:06 1170413 ----a-w- c:\program files (x86)\unins000.exe
2015-09-14 17:24 . 2015-09-14 17:24 -------- d-----w- c:\users\Sandra&Paddy\AppData\Local\MxS_Elite
2015-09-14 16:57 . 2015-09-14 16:57 -------- d-----w- c:\users\Sandra&Paddy\AppData\Roaming\MxS Elite
2015-09-08 14:49 . 2015-07-16 19:12 6131200 ----a-w- c:\windows\SysWow64\mstscax.dll
2015-09-08 14:49 . 2015-07-16 19:11 7077376 ----a-w- c:\windows\system32\mstscax.dll
2015-09-08 14:49 . 2015-07-11 13:15 429568 ----a-w- c:\windows\system32\wksprt.exe
2015-09-08 14:49 . 2015-07-16 19:12 856064 ----a-w- c:\windows\SysWow64\rdvidcrl.dll
2015-09-08 14:49 . 2015-07-16 19:12 53248 ----a-w- c:\windows\SysWow64\tsgqec.dll
2015-09-08 14:49 . 2015-07-16 19:11 62976 ----a-w- c:\windows\system32\tsgqec.dll
2015-09-08 14:49 . 2015-07-16 19:11 1057792 ----a-w- c:\windows\system32\rdvidcrl.dll
2015-09-08 14:32 . 2015-06-09 18:03 3180544 ----a-w- c:\windows\system32\rdpcorets.dll
2015-09-08 14:32 . 2015-06-09 18:03 16384 ----a-w- c:\windows\system32\RdpGroupPolicyExtension.dll
2015-09-08 14:32 . 2015-06-03 20:17 243200 ----a-w- c:\windows\system32\rdpudd.dll
2015-09-08 14:31 . 2014-12-11 17:47 87040 ----a-w- c:\windows\system32\TSWbPrxy.exe
2015-09-07 15:02 . 2013-10-02 04:51 3584 ----a-w- c:\windows\system32\drivers\de-DE\tsusbflt.sys.mui
2015-09-07 15:02 . 2013-10-02 01:10 44544 ----a-w- c:\windows\system32\TsUsbGDCoInstaller.dll
2015-09-07 15:02 . 2013-10-02 02:22 56832 ----a-w- c:\windows\system32\drivers\TsUsbFlt.sys
2015-09-07 15:02 . 2013-10-02 02:11 13824 ----a-w- c:\windows\system32\TsUsbRedirectionGroupPolicyControl.exe
2015-09-07 15:02 . 2013-10-02 02:08 12800 ----a-w- c:\windows\system32\TsUsbRedirectionGroupPolicyExtension.dll
2015-09-07 15:02 . 2013-10-02 01:48 56832 ----a-w- c:\windows\system32\MsRdpWebAccess.dll
2015-09-07 15:02 . 2013-10-02 01:48 18944 ----a-w- c:\windows\system32\wksprtPS.dll
2015-09-07 15:02 . 2013-10-02 00:14 50176 ----a-w- c:\windows\SysWow64\MsRdpWebAccess.dll
2015-09-07 15:02 . 2013-10-02 00:14 17920 ----a-w- c:\windows\SysWow64\wksprtPS.dll
2015-09-07 15:02 . 2013-10-01 23:31 1147392 ----a-w- c:\windows\system32\mstsc.exe
2015-09-07 15:02 . 2013-10-01 22:34 1068544 ----a-w- c:\windows\SysWow64\mstsc.exe
2015-09-07 14:59 . 2012-08-23 14:10 19456 ----a-w- c:\windows\system32\drivers\rdpvideominiport.sys
2015-09-07 14:59 . 2012-08-23 14:08 30208 ----a-w- c:\windows\system32\drivers\TsUsbGD.sys
2015-09-07 14:59 . 2012-08-23 11:12 192000 ----a-w- c:\windows\SysWow64\rdpendp_winip.dll
2015-09-07 14:59 . 2012-08-23 10:51 228864 ----a-w- c:\windows\system32\rdpendp_winip.dll
2015-09-06 17:38 . 2015-09-06 17:38 -------- d-----w- C:\NVIDIA
.
.
.
(((((((((((((((((((((((((((((((((((( Find3M Bericht ))))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2015-10-05 13:51 . 2015-05-06 17:45 113880 ----a-w- c:\windows\system32\drivers\MBAMSwissArmy.sys
2015-09-24 11:47 . 2015-07-27 21:31 780488 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe
2015-09-24 11:47 . 2015-07-27 21:31 142536 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl
2015-08-28 12:10 . 2014-11-19 14:05 97888 ----a-w- c:\windows\SysWow64\WindowsAccessBridge-32.dll
2015-08-27 00:37 . 2014-12-16 16:22 1423120 ----a-w- c:\windows\SysWow64\nvspcap.dll
2015-08-27 00:37 . 2014-12-16 16:22 1316000 ----a-w- c:\windows\SysWow64\nvspbridge.dll
2015-08-27 00:36 . 2014-12-16 16:22 1756424 ----a-w- c:\windows\system32\nvspbridge64.dll
2015-08-27 00:36 . 2014-12-16 16:22 1710568 ----a-w- c:\windows\system32\nvspcap64.dll
2015-08-26 16:37 . 2014-07-06 13:37 134753440 ----a-w- c:\windows\system32\MRT.exe
2015-08-18 08:48 . 2015-08-27 14:59 31520 ----a-w- c:\windows\system32\nvhdap64.dll
2015-08-18 08:48 . 2015-08-27 14:59 197408 ----a-w- c:\windows\system32\drivers\nvhda64v.sys
2015-08-18 08:48 . 2015-08-27 14:59 31515256 ----a-w- c:\windows\system32\nvoglv64.dll
2015-08-18 08:48 . 2015-08-27 14:59 13916600 ----a-w- c:\windows\system32\nvopencl.dll
2015-08-18 08:48 . 2015-08-27 14:59 945456 ----a-w- c:\windows\system32\NvIFR64.dll
2015-08-18 08:48 . 2015-08-27 14:59 908592 ----a-w- c:\windows\SysWow64\NvIFR.dll
2015-08-18 08:48 . 2015-08-27 14:59 903472 ----a-w- c:\windows\system32\NvFBC64.dll
2015-08-18 08:48 . 2015-08-27 14:59 870008 ----a-w- c:\windows\SysWow64\NvFBC.dll
2015-08-18 08:48 . 2015-08-27 14:59 24200312 ----a-w- c:\windows\SysWow64\nvoglv32.dll
2015-08-18 08:48 . 2015-08-27 14:59 1908528 ----a-w- c:\windows\system32\nvdispco6434181.dll
2015-08-18 08:48 . 2015-08-27 14:59 1556656 ----a-w- c:\windows\system32\nvdispgenco6434181.dll
2015-08-18 08:48 . 2015-08-27 14:59 12896432 ----a-w- c:\windows\system32\drivers\nvlddmkm.sys
2015-08-18 08:48 . 2015-08-27 14:59 11272048 ----a-w- c:\windows\SysWow64\nvopencl.dll
2015-08-18 08:48 . 2015-08-27 14:59 4245808 ----a-w- c:\windows\system32\nvcuvid.dll
2015-08-18 08:48 . 2015-08-27 14:59 3987760 ----a-w- c:\windows\SysWow64\nvcuvid.dll
2015-08-18 08:48 . 2015-08-27 14:59 13828032 ----a-w- c:\windows\system32\nvcuda.dll
2015-08-18 08:48 . 2015-08-27 14:59 11209376 ----a-w- c:\windows\SysWow64\nvcuda.dll
2015-08-18 08:48 . 2015-08-27 14:59 22992048 ----a-w- c:\windows\system32\nvcompiler.dll
2015-08-18 08:48 . 2015-08-27 14:59 15294072 ----a-w- c:\windows\SysWow64\nvcompiler.dll
2015-08-18 08:48 . 2015-03-05 07:55 17559240 ----a-w- c:\windows\system32\nvd3dumx.dll
2015-08-18 08:48 . 2015-03-05 07:55 16128576 ----a-w- c:\windows\SysWow64\nvwgf2um.dll
2015-08-18 08:48 . 2015-03-05 07:55 2824176 ----a-w- c:\windows\SysWow64\nvapi.dll
2015-08-18 08:48 . 2014-07-06 12:27 72880 ----a-w- c:\windows\system32\OpenCL.dll
2015-08-18 08:48 . 2014-07-06 12:27 60720 ----a-w- c:\windows\SysWow64\OpenCL.dll
2015-08-18 08:48 . 2014-07-06 12:21 18634264 ----a-w- c:\windows\system32\nvwgf2umx.dll
2015-08-18 08:48 . 2014-07-06 12:21 1515296 ----a-w- c:\windows\system32\nvhdagenco6420103.dll
2015-08-18 08:48 . 2014-07-06 12:21 14497760 ----a-w- c:\windows\SysWow64\nvd3dum.dll
2015-08-18 08:48 . 2014-07-06 12:21 3209736 ----a-w- c:\windows\system32\nvapi64.dll
2015-08-18 00:07 . 2014-07-06 12:28 6783280 ----a-w- c:\windows\system32\nvcpl.dll
2015-08-18 00:07 . 2014-07-06 12:28 3522168 ----a-w- c:\windows\system32\nvsvc64.dll
2015-08-18 00:07 . 2014-07-06 12:28 933168 ----a-w- c:\windows\system32\nvvsvc.exe
2015-08-18 00:07 . 2014-07-06 12:28 62768 ----a-w- c:\windows\system32\nvshext.dll
2015-08-18 00:07 . 2014-07-06 12:28 385144 ----a-w- c:\windows\system32\nvmctray.dll
2015-08-18 00:07 . 2014-07-06 12:28 2558768 ----a-w- c:\windows\system32\nvsvcr.dll
2015-08-18 00:06 . 2014-07-06 12:28 5147024 ----a-w- c:\windows\system32\nvcoproc.bin
2015-08-17 21:43 . 2015-08-27 15:02 608048 ----a-w- c:\windows\SysWow64\nvStreaming.exe
2015-08-13 14:52 . 2015-08-13 14:53 422400 ----a-w- c:\windows\system32\LavasoftTcpService64.dll
2015-08-13 14:52 . 2015-08-13 14:53 342016 ----a-w- c:\windows\SysWow64\LavasoftTcpService.dll
2015-08-11 04:52 . 2015-08-27 14:55 69416 ----a-w- c:\windows\SysWow64\nvaudcap32v.dll
2015-08-11 04:52 . 2015-08-27 14:55 50472 ----a-w- c:\windows\system32\drivers\nvvad64v.sys
2015-08-11 04:52 . 2014-12-16 16:22 72504 ----a-w- c:\windows\system32\nvaudcap64v.dll
2015-08-03 18:00 . 2015-08-13 14:51 126976 ----a-w- c:\windows\system32\ff_vfw.dll
2015-08-03 18:00 . 2015-08-13 14:51 112128 ----a-w- c:\windows\SysWow64\ff_vfw.dll
2015-07-30 18:06 . 2015-08-11 19:10 1648128 ----a-w- c:\windows\system32\DWrite.dll
2015-07-30 18:06 . 2015-08-11 19:10 1180160 ----a-w- c:\windows\system32\FntCache.dll
2015-07-30 18:06 . 2015-08-11 19:10 2565120 ----a-w- c:\windows\system32\d3d10warp.dll
2015-07-30 17:57 . 2015-08-11 19:10 1251328 ----a-w- c:\windows\SysWow64\DWrite.dll
2015-07-30 17:57 . 2015-08-11 19:10 1987584 ----a-w- c:\windows\SysWow64\d3d10warp.dll
2015-07-28 20:09 . 2015-08-11 19:21 17344 ----a-w- c:\windows\system32\CompatTelRunner.exe
2015-07-28 20:05 . 2015-08-11 19:21 774656 ----a-w- c:\windows\system32\invagent.dll
2015-07-28 20:05 . 2015-08-11 19:21 743424 ----a-w- c:\windows\system32\generaltel.dll
2015-07-28 20:05 . 2015-08-11 19:21 437760 ----a-w- c:\windows\system32\devinv.dll
2015-07-28 20:05 . 2015-08-11 19:21 1116672 ----a-w- c:\windows\system32\appraiser.dll
2015-07-28 20:05 . 2015-08-11 19:21 69120 ----a-w- c:\windows\system32\acmigration.dll
2015-07-28 20:05 . 2015-08-11 19:21 227328 ----a-w- c:\windows\system32\aepdu.dll
2015-07-28 19:55 . 2015-08-11 19:21 1148416 ----a-w- c:\windows\system32\aeinv.dll
2015-07-24 20:01 . 2015-07-24 20:02 1199079 ----a-w- c:\windows\unins000.exe
2015-07-22 17:53 . 2015-10-01 11:20 44032 ----a-w- c:\windows\apppatch\acwow64.dll
2015-07-18 23:05 . 2015-07-18 23:06 44032 ----a-w- c:\windows\SysWow64\nircmd.exe
2015-07-15 18:15 . 2015-08-11 19:16 94656 ----a-w- c:\windows\system32\drivers\mountmgr.sys
2015-07-15 18:10 . 2015-08-11 19:16 1743360 ----a-w- c:\windows\system32\sysmain.dll
2015-07-15 18:10 . 2015-08-11 19:16 11264 ----a-w- c:\windows\system32\msmmsp.dll
2015-07-15 03:19 . 2015-08-11 19:16 52736 ----a-w- c:\windows\system32\basesrv.dll
2015-07-12 11:54 . 2015-07-12 11:54 30264 ----a-w- c:\windows\system32\drivers\dtlitescsibus.sys
2015-07-10 17:51 . 2015-08-11 19:09 14177280 ----a-w- c:\windows\system32\shell32.dll
2015-07-09 17:57 . 2015-08-11 19:09 193536 ----a-w- c:\windows\system32\notepad.exe
2015-07-09 17:57 . 2015-08-11 19:09 193536 ----a-w- c:\windows\notepad.exe
2015-07-09 17:42 . 2015-08-11 19:09 179712 ----a-w- c:\windows\SysWow64\notepad.exe
.
.
(((((((((((((((((((((((((((( Autostartpunkte der Registrierung ))))))))))))))))))))))))))))))))))))))))
.
.
*Hinweis* leere Einträge & legitime Standardeinträge werden nicht angezeigt.
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Sidebar"="c:\program files\Windows Sidebar\sidebar.exe" [2010-11-21 1475584]
"HP-CFG-Host"="c:\users\Sandra&Paddy\AppData\Roaming\HPData_653\cfghost.exe" [2015-07-31 6005760]
"DAEMON Tools Lite Automount"="d:\apps\DAEMON Tools Lite\DTAgent.exe" [2015-06-18 4468056]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"SunJavaUpdateSched"="c:\program files (x86)\Common Files\Java\Java Update\jusched.exe" [2015-08-04 597552]
.
c:\users\Sandra&Paddy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
dub-Microsoft.vbs [2014-9-14 0]
Tintenwarnungen überwachen - HP Officejet 2620 series.lnk - c:\windows\system32\RunDll32.exe "c:\program files\HP\HP Officejet 2620 series\bin\HPStatusBL.dll",RunDLLEntry SERIALNUMBER=CN3CP1GHNT0600;CONNECTION=USB;MONITOR=1; [2009-7-14 45568]
.
c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
TP-LINK-Konfigurationstool.lnk - c:\program files (x86)\TP-LINK\TP-LINK-Konfigurationstool\TWCU.exe -nogui [2014-9-1 846848]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\run-]
"HP Software Update"=c:\program files (x86)\Hp\HP Software Update\HPWuSchd2.exe
"SunJavaUpdateSched"="c:\program files (x86)\Common Files\Java\Java Update\jusched.exe"
.
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [x]
R2 MAGIX StartUp Analyze Service;MAGIX StartUp Analyze Service;c:\program files (x86)\MAGIX\PC_Check_Tuning_Free_2011\MXSAS.exe;c:\program files (x86)\MAGIX\PC_Check_Tuning_Free_2011\MXSAS.exe [x]
R2 MBAMService;MBAMService;d:\apps\Malwarebytes Anti-Malware\mbamservice.exe;d:\apps\Malwarebytes Anti-Malware\mbamservice.exe [x]
R3 BEService;BattlEye Service;c:\program files (x86)\Common Files\BattlEye\BEService.exe;c:\program files (x86)\Common Files\BattlEye\BEService.exe [x]
R3 Disc Soft Lite Bus Service;Disc Soft Lite Bus Service;d:\apps\DAEMON Tools Lite\DiscSoftBusService.exe;d:\apps\DAEMON Tools Lite\DiscSoftBusService.exe [x]
R3 dmvsc;dmvsc;c:\windows\system32\drivers\dmvsc.sys;c:\windows\SYSNATIVE\drivers\dmvsc.sys [x]
R3 EagleX64;EagleX64;c:\windows\system32\drivers\EagleX64.sys;c:\windows\SYSNATIVE\drivers\EagleX64.sys [x]
R3 EasyAntiCheat;EasyAntiCheat;c:\windows\system32\EasyAntiCheat.exe;c:\windows\SYSNATIVE\EasyAntiCheat.exe [x]
R3 FirebirdServerMAGIXInstance;Firebird Server - MAGIX Instance;c:\program files (x86)\Common Files\MAGIX Services\Database\bin\fbserver.exe;c:\program files (x86)\Common Files\MAGIX Services\Database\bin\fbserver.exe [x]
R3 ggflt;SOMC USB Flash Driver Filter;c:\windows\system32\DRIVERS\ggflt.sys;c:\windows\SYSNATIVE\DRIVERS\ggflt.sys [x]
R3 ggsomc;SOMC USB Flash Driver;c:\windows\system32\DRIVERS\ggsomc.sys;c:\windows\SYSNATIVE\DRIVERS\ggsomc.sys [x]
R3 MBAMWebAccessControl;MBAMWebAccessControl;c:\windows\system32\drivers\mwac.sys;c:\windows\SYSNATIVE\drivers\mwac.sys [x]
R3 Origin Client Service;Origin Client Service;d:\apps\Origin\OriginClientService.exe;d:\apps\Origin\OriginClientService.exe [x]
R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys;c:\windows\SYSNATIVE\drivers\rdpvideominiport.sys [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys;c:\windows\SYSNATIVE\drivers\tsusbflt.sys [x]
R3 TsUsbGD;Remote Desktop Generic USB Device;c:\windows\system32\drivers\TsUsbGD.sys;c:\windows\SYSNATIVE\drivers\TsUsbGD.sys [x]
R3 USBAAPL64;Apple Mobile USB Driver;c:\windows\system32\Drivers\usbaapl64.sys;c:\windows\SYSNATIVE\Drivers\usbaapl64.sys [x]
S1 epp64;epp64;d:\spiele\bin\epp64.sys;d:\spiele\bin\epp64.sys [x]
S2 Apple Mobile Device Service;Apple Mobile Device Service;c:\program files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe;c:\program files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [x]
S2 DiagTrack;Diagnostics Tracking Service;c:\windows\System32\svchost.exe;c:\windows\SYSNATIVE\svchost.exe [x]
S2 Fabs;FABS - Helping agent for MAGIX media database;c:\program files (x86)\Common Files\MAGIX Services\Database\bin\FABS.exe;c:\program files (x86)\Common Files\MAGIX Services\Database\bin\FABS.exe [x]
S2 GfExperienceService;NVIDIA GeForce Experience Service;c:\program files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe;c:\program files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [x]
S2 NvNetworkService;NVIDIA Network Service;c:\program files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe;c:\program files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [x]
S2 NvStreamSvc;NVIDIA Streamer Service;c:\program files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe;c:\program files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [x]
S2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service;c:\program files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe;c:\program files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [x]
S3 dtlitescsibus;DAEMON Tools Lite Virtual SCSI Bus;c:\windows\system32\DRIVERS\dtlitescsibus.sys;c:\windows\SYSNATIVE\DRIVERS\dtlitescsibus.sys [x]
S3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys;c:\windows\SYSNATIVE\drivers\mbam.sys [x]
S3 NvStreamKms;NvStreamKms;c:\program files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys;c:\program files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [x]
S3 nvvad_WaveExtensible;NVIDIA Virtual Audio Device (Wave Extensible) (WDM);c:\windows\system32\drivers\nvvad64v.sys;c:\windows\SYSNATIVE\drivers\nvvad64v.sys [x]
S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys;c:\windows\SYSNATIVE\DRIVERS\Rt64win7.sys [x]
S3 RTL8192cu;300Mbps Wireless USB Adapter;c:\windows\system32\DRIVERS\RTL8192cu.sys;c:\windows\SYSNATIVE\DRIVERS\RTL8192cu.sys [x]
.
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}]
2015-10-02 20:53 997704 ----a-w- c:\program files (x86)\Google\Chrome\Application\45.0.2454.101\Installer\chrmstp.exe
.
Inhalt des "geplante Tasks" Ordners
.
2015-06-10 c:\windows\Tasks\0215piiUpdateInfo.job
- c:\programdata\Avg_Update_0215pii\0215pii_AVG-Secure-Search-Update.exe [2015-06-10 13:29]
.
2015-10-05 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2015-07-27 11:47]
.
2015-10-05 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2015-10-02 20:45]
.
2015-10-05 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2015-10-02 20:45]
.
2015-10-05 c:\windows\Tasks\PCCT - MAGIX AG.job
- c:\program files (x86)\MAGIX\PC_Check_Tuning_Free_2011\MxTray.exe [2010-11-08 16:08]
.
.
--------- X64 Entries -----------
.
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ShadowPlay"="c:\windows\system32\nvspcap64.dll" [2015-08-27 1710568]
"NvBackend"="c:\program files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe" [2015-08-27 2634872]
"CmPCIaudio"="c:\windows\Syswow64\CMICNFG3.dll" [2009-10-30 8151040]
.
------- Zusätzlicher Suchlauf -------
.
uLocal Page = c:\windows\system32\blank.htm
uStart Page = hxxp://www.google.com/
mDefault_Search_URL = www.google.com
mSearch Page = www.google.com
IE: {{c0e8ae32-0758-4c8d-ab71-23b361fe8964}
Trusted Zone: localhost
Trusted Zone: webcompanion.com
TCP: DhcpNameServer = 192.168.178.1
.
- - - - Entfernte verwaiste Registrierungseinträge - - - -
.
Wow6432Node-HKLM-Run-<NO NAME> - (no file)
c:\users\Sandra&Paddy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OpenOffice.org 2.4.lnk - c:\program files (x86)\OpenOffice.org 2.4\program\quickstart.exe
SafeBoot-CleanHlp
SafeBoot-CleanHlp.sys
.
.
.
--------------------- Gesperrte Registrierungsschluessel ---------------------
.
[HKEY_USERS\S-1-5-21-815102615-2614035713-1222597038-1001\Software\SecuROM\!CAUTION! NEVER A OR CHANGE ANY KEY*]
"??"=hex:11,a2,bd,0c,71,62,61,12,31,a5,a4,b4,00,8a,3e,9f,ab,d1,75,81,cf,b4,cc,
f8,23,63,8a,16,5c,0e,0e,e7,1d,95,f3,39,57,f9,47,ef,4a,7a,12,4a,00,8b,6b,cb,\
"??"=hex:69,dd,8b,14,ae,72,df,17,e5,4e,0b,98,91,f6,4a,77
.
[HKEY_USERS\S-1-5-21-815102615-2614035713-1222597038-1001\Software\SecuROM\License information*]
"datasecu"=hex:e5,56,d7,13,f3,a0,5c,f1,86,d8,ac,d1,77,db,e8,b3,8a,f0,f4,86,fc,
1e,06,ff,4e,e2,ae,15,e3,fc,34,77,00,6e,47,7f,39,71,74,ae,aa,8d,ec,2e,7d,d6,\
"rkeysecu"=hex:7d,00,c2,4a,3a,01,5d,e4,6c,ac,d1,67,83,c8,9b,f0
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_19_0_0_185_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\LocalServer32]
@="c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_19_0_0_185_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}]
@Denied: (A 2) (Everyone)
@="IFlashBroker6"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_19_0_0_185_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\LocalServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_19_0_0_185_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{B019E3BF-E7E5-453C-A2E4-D2C18CA0866F}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Shockwave Flash Object"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_19_0_0_185.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus]
@="0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID]
@="ShockwaveFlash.ShockwaveFlash.19"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_19_0_0_185.ocx, 1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="ShockwaveFlash.ShockwaveFlash"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Macromedia Flash Factory Object"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_19_0_0_185.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID]
@="FlashFactory.FlashFactory.1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_19_0_0_185.ocx, 1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="FlashFactory.FlashFactory"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}]
@Denied: (A 2) (Everyone)
@="IFlashBroker6"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{299817DA-1FAC-4CE2-8F48-A108237013BD}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
------------------------ Weitere laufende Prozesse ------------------------
.
c:\program files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
.
**************************************************************************
.
Zeit der Fertigstellung: 2015-10-05 18:18:52 - PC wurde neu gestartet
ComboFix-quarantined-files.txt 2015-10-05 16:18
.
Vor Suchlauf: 11 Verzeichnis(se), 22.335.774.720 Bytes frei
Nach Suchlauf: 16 Verzeichnis(se), 23.163.990.016 Bytes frei
.
- - End Of File - - 23ABBD901A9FDA6A08FAD5A309464830 --- --- ---
A36C5E4F47E84449FF07ED3517B43A31 |