Garnichtda | 25.04.2013 17:29 | hier die Logfiles! Code:
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 4.8.9 (04.22.2013:1)
OS: Windows 7 Home Premium x64
Ran by ACER 5253 on 25.04.2013 at 17:48:27,12
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~ Services
~~~ Registry Values
~~~ Registry Keys
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\1clickdownload
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\im
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\iminstaller
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\softonic
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\sweetim
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\yourfiledownloader
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\yourfiledownloader
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\tracing\bundlesweetimsetup_rasapi32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\tracing\bundlesweetimsetup_rasmancs
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\tracing\sweetim_rasapi32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\tracing\sweetim_rasmancs
~~~ Files
~~~ Folders
Failed to delete: [Folder] "C:\ProgramData\boost_interprocess"
Successfully deleted: [Folder] "C:\Users\ACER 5253\AppData\Roaming\dvdvideosoftiehelpers"
Successfully deleted: [Folder] "C:\Users\ACER 5253\AppData\Roaming\yourfiledownloader"
Successfully deleted: [Folder] "C:\Program Files (x86)\yourfiledownloader"
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{00E481BE-C5D5-4349-AC03-27367DB7DFA8}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{012736DE-8199-409E-973D-A8F21E595B4B}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{02FE9EBE-EEA4-4608-BD7E-145001B0637B}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{03CA78D5-5439-4363-894C-BDB914B304F9}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{082C0356-66CC-4689-88AE-EF1AE13A5734}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{0903842B-C225-42EE-8BC1-3F591B2AF3FE}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{09AB06A6-06EE-4902-B4D5-B46304F3EE02}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{0B4B4C7E-6E71-46E6-84F2-7143C872983B}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{0B509277-131E-41AA-ADEC-C774D64D4C67}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{0C14BA76-1D22-4813-82F4-F92FF2AD2C99}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{0D281077-2C27-41A5-823F-91E12E5C1FD2}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{0E075977-04D2-44FA-8812-F22C3068BA2A}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{0F07B1B5-28BE-4BAD-A2D4-821649EF48AB}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{0F682E6A-2C58-46DB-BF0F-10232AA1CA52}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{126ED1EE-63AF-4744-9054-362D77A742D9}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{1715D246-3A79-4E11-BECD-48605D1260F6}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{17357CCA-36F4-4588-8CD0-4EDFDDC4230B}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{177402CE-0554-41AB-B9FC-021A0476502B}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{17C0FDAF-C473-4306-A8A1-BDAA950687BA}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{18A591F8-0465-41E6-A9F2-4531CB70F71D}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{1990310A-3408-4D3E-AE29-D5DFED1579A5}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{19AB74B6-1DF3-4B54-B4A9-B01BC6CB2EAD}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{1B90495A-F121-4922-9DEB-C574D22E7477}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{1E8DB32D-1A4E-4A78-9A00-8BE886BA2503}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{1FAE1ECC-94E6-444A-A050-97BC7850748B}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{21A690F8-929D-4252-AA70-9D00CBC5FC61}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{22967AC8-E6A3-4797-AF8D-5036CA7DA17F}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{22D2C129-8C0F-463F-B18C-6F1ACF160C17}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{23EBF220-ED6F-447E-B5FE-22AF41C09390}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{2483E360-7BE3-4E59-A199-BF671FFE1CF2}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{25098A1D-3D5F-4266-BE7D-1676F5CA7D38}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{266E18A3-CFFA-4849-982F-498679F47718}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{27173F00-3EFC-494F-B1A5-0E04A07AF5B3}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{2848FE90-BFCF-476B-B468-3762DFD83EF5}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{28E9EAF0-CD61-4383-A648-61535A8E4D82}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{294E1D2D-FCDB-42A2-89C8-DCA8E390EAAE}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{29C02CDB-C23F-42D7-B41F-BB8868EF7958}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{2B24DEE5-F059-4B15-8E08-EF0795F91D19}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{2BB872D9-AAC8-475D-A798-AC9F6DCC40D2}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{2C02E40B-CB1D-4E8F-8DD4-E88AF0CDBBB7}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{2C9CEDCA-78E7-4188-B7C4-0941C466E324}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{2EAABEA8-7C54-4B5E-870D-414A03AFF86D}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{302C2E58-E80E-4BD3-8EF9-46B4075B6C82}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{33ADE81C-99C7-4547-986B-E0F887192B65}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{342BED1B-67D3-44EB-9922-7126A1EC7256}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{355CD84F-2691-4F15-B9FA-667805682E81}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{37E42E28-F25C-41F4-AC0F-FEB00E8EDB16}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{39B12485-C952-44B2-82A0-53C79566A64B}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{3B418BA1-A913-489B-8F36-8454DCDAA922}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{3F10955F-9BF4-4962-B77A-214857CE6477}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{3F1D735D-A56C-4FD1-9F32-976C4EF40648}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{3F3DCEC9-BDF2-4B63-A072-2DD854FDA74C}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{3FF3A44C-0A58-49E1-ACCB-7140A5E75D36}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{4021137C-218C-4DAB-A3FF-702C12E8858C}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{425626CB-C2A0-4691-96F5-6BBDEE8CB63A}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{44A506A1-85A6-4A89-914C-A54B09FF971F}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{44B789D4-3A0C-42CA-B0B1-55D3E9E7A96D}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{44D45B8A-550A-48C4-8868-7FF9193F02EC}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{460E3807-BE89-45C5-8905-5A4BB0C565C9}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{49D4A6AC-75A8-49B7-82B7-F1EA89016355}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{50AD23F9-82F5-4F94-AD58-DEC67E887B5E}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{50B691A5-E9FE-4444-A581-6E90C47774E7}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{51FE24D7-295A-4C59-B313-787250FF8AAB}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{5490B851-55F4-4984-9173-6524855A06F8}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{559CC8C9-8047-405A-BE52-DA07EBCDFE30}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{5691AFF6-F52A-4B7E-AE6A-F260DCF5782F}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{5780DDE3-8F2C-4394-A137-39170A46FAF1}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{596B82B6-9F27-4F07-B87E-A4EEAF078AE6}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{5A0D841F-A854-424D-BBFA-16CE2DE31A54}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{5ADC8CF1-FF79-41EE-AEA4-1A12A8C3DB17}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{5B7D2484-1FE7-48E0-93CB-2F7500337463}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{5E69E783-9D80-4BDC-9925-6AB18BF1A6F4}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{5F109883-C381-4012-BAB7-088C75F98696}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{6042E210-960F-41A1-9B99-5D0FB94E85A7}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{611960C8-4345-4D26-AA7F-BAE4D20E47E4}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{6148BA04-6737-4290-A8BF-0B256CE6DA93}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{6214A70C-2C9D-4544-8275-DB4254CD2890}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{63E7109D-1070-4AE5-9C30-35B5717D759A}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{656E4507-D726-4B4D-979A-85C031C1C51A}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{6597110B-7E06-46E6-8B30-AE8C280C4886}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{666CCA36-EFCC-4188-AD2E-05417D3FBFFF}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{684966D4-CA8B-4272-991C-D450B0EB11B1}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{69D97EAA-AC52-40B8-A42C-3F4CFA60486B}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{6AFC8A81-93DD-4021-B709-2F8A683B98F7}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{6D9BEDE1-E310-4F25-AC28-06995212C504}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{6DB3A979-34B5-43B1-9E41-01780BA0D48D}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{6E38646E-5804-4306-980B-A1F2B062332F}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{6F122F3B-B957-4291-AF49-BF40F43AC52A}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{6F5D1660-94F4-4293-A5B6-EE4933778E6B}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{7050ABA9-2B01-419B-88A8-F4C30362692B}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{7344D912-811A-4688-BE11-2B0F54922A14}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{74F3C538-9501-476F-8E00-C33FF1614FF4}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{74F4BD44-831E-437F-AAAF-72BC6692E961}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{75D875CA-B9CB-40FB-B916-58C9716C88DA}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{76712AAE-74FB-45A2-BFCA-308F517F720B}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{774F9A0C-9A0E-44EE-8284-36C465F67697}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{781DDD38-4EA0-4F07-8943-4677D5D5E4C0}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{7B33B26C-89D3-4DB3-B948-450065D4919D}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{7CB71202-0EE5-4627-850F-677B78FB5689}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{7DEB4A17-E9AE-440E-9BFD-58621098A7E3}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{7FB79897-C4D3-4D91-B7C9-E5657EE65395}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{7FF71E0E-F577-4947-A132-354D36C401E2}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{82326E5F-ACBA-4748-85B5-9E580C02D785}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{849FB453-CA5D-46F6-BCBD-0959162F46F3}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{84A839F6-0BF4-4515-AC1C-3433C7D6F5A1}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{856E36E4-C374-4A60-ACCD-4FBF3C1491C1}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{861C2731-B0B6-465E-BE03-7455806F2DF9}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{8661DB76-44DE-4EE9-B016-F72BA6D5BB95}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{8765F27C-76F5-4F76-B11B-D01EA5F7A485}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{89594C88-5117-492D-B1A4-886224AEBD5A}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{8965BF34-5236-4A5D-94E3-668D5BF9AC95}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{8982F4FC-CD5B-4DB0-9CD5-C16696954BFC}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{8A819420-A74D-4BEE-A181-3801DF23E709}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{8C71A87E-7B8B-44A7-9DF3-779AB71521A2}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{8E5FADD1-D9E5-47E1-B318-21D00B17BF75}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{8E62F549-D78C-4E61-AD78-262701BAABBF}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{8FC9DB91-AD40-4BC6-957C-6ECC5B4F42EA}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{916DE822-E1BE-43F7-AD2A-D78160405996}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{919AA1F6-D252-403F-A450-4E25CD0CEBD9}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{930131DD-D5BC-4068-924E-289A512851A9}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{93DE7191-F858-41B7-8232-4C9AAF020CAF}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{94087B2A-5C81-40C8-ACE6-A925A0A5F209}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{94B401C9-612E-43F4-A242-57B1A47B2D90}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{95B94893-6F9F-47D2-9517-517621E6BC73}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{96F9F6C2-1D3B-4E45-83F5-0BF6DAA094EE}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{97A2A126-D3C0-44D5-902E-DD62133E0D77}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{98147E42-7F01-49B7-AD89-38628CED262D}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{99202C80-4F31-4094-8082-ADB6A98D13FB}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{9B24DA3A-4EA7-4FA4-A1B2-DB1690E6576D}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{9B4EA569-1CAE-42A7-9D70-06271020C201}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{9BD44638-B6B7-4C73-A88F-AD8A398D429A}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{9C35E9E4-EA3E-4EAA-9367-00D66D480211}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{9D2402A1-78B1-46AF-8099-C64AD2565F38}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{9F74D870-E29B-4828-9E7C-EDF9B9FD0CDF}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{9F8FB2EB-1AB2-404E-AED7-6F9ECA503B8D}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{A00045F2-0E2C-4263-919A-6A5C58A4EECE}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{A0D6F724-0D25-426B-B48E-939BE852550F}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{A17A1125-C518-415A-9D29-01CADEAD4912}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{A2CCFC50-D159-41EA-A146-18CAA1372661}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{A3E01BE3-D96B-44F4-990E-589A65A8D60F}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{A5920C04-DFC1-480B-8E69-D00198322106}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{A5A02FC2-3C05-47E2-B686-B50EF6C537AC}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{A64A35E6-50B6-4D9B-B21C-DF67F1142034}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{A7840259-CE68-4B7E-B117-052CA6D42117}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{A90BC38D-EABB-43FF-879C-3A2D5930A4DD}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{AB80230C-9B75-41F7-AF4C-473B272B3873}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{AC1624F7-1BBE-4368-87E0-A879F6D85FB0}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{ACAC4864-70D2-4385-BA12-B2490689AB10}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{AD0241B5-5B68-429D-A3E6-79AD2C6AD1F9}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{ADB79F96-D49C-41A6-956F-46A69B226B1B}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{AFC04821-39C1-41A8-9B21-288EC1449BCC}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{B40F0B05-14E2-48CA-A7FF-4D051095B05E}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{B67F0120-32F4-4B6C-9218-D622ACE9EC1E}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{B6A065B1-56A9-40C8-99E4-75C1D415F7C3}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{B6A7A5D9-832A-43F4-B6F4-3C215E53CC28}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{B742C7BE-8F71-4DA0-A0BD-0015726815DC}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{B8F25407-40D4-4606-8C4B-9128F127C0B2}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{B94A666F-7B02-41BE-8664-C51A96D7B987}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{B9D0DD3A-B08A-40C2-9636-EB135C546F08}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{BAD63A99-25C9-4D85-9FF7-98F46675F50C}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{BAF5118E-C76B-4BCE-ADC3-57A8E27A05A3}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{BB131200-2E29-4F08-8CD8-E0443C120391}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{BCD4A30B-7F18-4810-B258-C799F0688944}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{BE1EE091-9184-4B39-8DE3-0DAB786D6E7B}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{BE3BEBFF-0746-413E-BF5C-BE39B639A7FE}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{BED192F6-F1AB-4DD8-8999-0190509E28C7}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{BF027C54-B735-4BA7-A787-23ED5B782876}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{C0CC7569-BFA6-49BB-B42F-D6D170397472}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{C34DC23B-BD67-4DD5-B632-03F32185CBFC}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{C3F27D56-69E5-42A0-9776-55502DFB1DE3}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{C47325B6-4736-4E78-9F2B-B12703E8B6FF}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{C5B1C434-0778-4316-BB31-562AB011F357}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{C66EAB19-F381-4392-8FA6-7302F316127A}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{C73D1A6B-C646-4F2E-A8B8-A167192A08B5}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{C7543E9C-B3F8-4006-BD9C-A4A936FE018A}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{C8465A8F-6FFD-407F-B379-1894E1B3FC87}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{C9A985C6-B43F-4C75-B05B-E962BE3DF4E0}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{CA184172-2BD5-4668-B904-07DA218A8433}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{CD02DE2A-DA60-4802-BFD4-FF091F635D1F}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{CD61665F-06BC-4C80-A3C2-D343C7ACF930}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{CEC0248D-73D3-4886-99C4-E783AA54284A}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{CEEC8CB1-2355-45E7-A0CB-6C4AC53B06EC}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{CF08007B-CEF1-4F89-AE65-CD873ADD4598}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{CF84BF30-EBC6-4E48-B6EF-1E3E9DAF2543}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{CFD4608A-9830-4015-B162-11F6A614E73F}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{CFEA563C-B46A-425C-9911-48A388945A9B}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{D2419BE1-8E62-4B64-A3AF-B49A43EE6326}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{D331B769-47B4-40C8-A60A-C4128B09A0BE}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{D46AC0AE-A2FE-42C5-AEFF-C607033E801E}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{D514406B-BBD2-41C6-A1D6-30C91A226491}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{D6DFB141-B9FE-40BA-8A59-942E6C2DEAED}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{D79CB2A0-0D69-4B00-A87A-CE592791F4BA}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{D9888219-6D6C-4BDA-82DA-4E888B3E6098}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{DA44E844-906C-4131-B800-CD2DB80D7B36}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{DB259DC6-833D-44C6-8ECA-80DD4D28926E}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{DEAE8BEA-339E-4E78-AEB8-524277F28163}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{DED1DEE4-115D-4300-B84D-3407448D155A}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{DF44C5BB-178B-4F9F-878E-3D571B203C26}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{E1AF5301-F342-4D59-9EA9-B6249B762F32}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{E282485A-C8ED-4149-A683-0744530EFC20}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{E2A5F074-679D-401F-92F3-3A3CFC97E5C9}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{E32B0EDB-BD94-493B-A7D7-F9A95D185D5E}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{E3BD13BF-7BB8-4BA3-9A40-7A2451DD2168}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{E6381B64-8308-456B-B653-CA28CD5A3CD5}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{E6D4D45A-84BD-4103-BDF3-6A1EED83DACA}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{E90C6BA1-F24C-4209-BC73-DC20F666565E}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{E92F9AB0-75B8-42DE-BF23-9E8182DF8EFA}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{E9A9F245-5AED-4F5B-A3C0-598873814BCB}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{EA9B2C24-FA1B-45D6-B799-591F0BBE2093}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{EABBD90B-FA44-4979-842A-42525B434261}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{EE7EBB46-B324-45D4-A12B-610B8687787D}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{EEA8A449-73F7-4894-B7DE-FD8B63F3B45D}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{EEC8CFD9-0D96-4F6B-B158-B07FDD7EA71C}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{EFBBA085-FB13-465A-8F35-D3D9AE969152}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{F1E48090-6776-4004-9F71-CD9B1BEA216E}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{F2BE2C04-4546-4A3C-933A-1F6F60FD0902}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{F3C59EBA-62B7-4E9C-A841-10FFF072C471}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{F4356AF8-DF3B-4550-9422-E6A37A55D491}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{F487ED63-8E23-4A1C-8811-C66E50403AC1}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{F5D28F29-F54D-48FE-8E00-C39515DCFEE9}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{F5D92DEC-8153-422C-80DF-437E9E47FB04}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{F5E74090-0F8E-4639-BE99-8367FCDB5408}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{F6139FB9-3A26-405F-A2B5-D2E4231502A5}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{F7A44BCF-EE09-4769-B799-CF839E7045A3}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{F7FA8B91-F615-4F08-B258-85ABF1DD864F}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{F8757E94-B41A-48B4-B7CF-A6AED4F223AC}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{FD53216D-00F5-402B-A31D-BF67FD864986}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{FDA85549-74C9-4C1D-A18E-34BC3FDA92C4}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{FE06B73F-35CD-43E3-8B77-176BD80C726D}
Successfully deleted: [Empty Folder] C:\Users\ACER 5253\appdata\local\{FFC422E3-C3E7-4492-ACE9-8A52E237D708}
~~~ FireFox
Successfully deleted: [File] C:\Users\ACER 5253\AppData\Roaming\mozilla\firefox\profiles\y2pg6a1s.default\searchplugins\sweetim search.xml
Successfully deleted: [Folder] C:\Users\ACER 5253\AppData\Roaming\mozilla\firefox\profiles\y2pg6a1s.default\jetpack
Successfully deleted: [Registry Value] hkey_local_machine\software\mozilla\firefox\extensions\\{acaa314b-eeba-48e4-ad47-84e31c44796c}
Successfully deleted the following from C:\Users\ACER 5253\AppData\Roaming\mozilla\firefox\profiles\y2pg6a1s.default\prefs.js
user_pref("browser.search.defaultenginename", "SweetIM Search");
Emptied folder: C:\Users\ACER 5253\AppData\Roaming\mozilla\firefox\profiles\y2pg6a1s.default\minidumps [186 files]
~~~ Event Viewer Logs were cleared
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 25.04.2013 at 17:56:40,45
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Code:
# AdwCleaner v2.202 - Datei am 25/04/2013 um 17:58:01 erstellt
# Aktualisiert am 23/04/2013 von Xplode
# Betriebssystem : Windows 7 Home Premium Service Pack 1 (64 bits)
# Benutzer : ACER 5253 - ACER5253-PC
# Bootmodus : Normal
# Ausgeführt unter : C:\Users\ACER 5253\Downloads\adwcleaner.exe
# Option [Löschen]
**** [Dienste] ****
***** [Dateien / Ordner] *****
Ordner Gelöscht : C:\ProgramData\boost_interprocess
Ordner Gelöscht : C:\Users\ACER 5253\AppData\Local\PutLockerDownloader
Ordner Gelöscht : C:\Users\ACER 5253\AppData\Roaming\Mozilla\Firefox\Profiles\y2pg6a1s.default\jetpack
***** [Registrierungsdatenbank] *****
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{F1AF26F8-1828-4279-ABCE-074EF3235BD7}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{F1AF26F8-1828-4279-ABCE-074EF3235BD7}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{162E06EC-4E38-4809-AE76-BF2400D34334}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{F1AF26F8-1828-4279-ABCE-074EF3235BD7}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F1AF26F8-1828-4279-ABCE-074EF3235BD7}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\1ClickDownload
***** [Internet Browser] *****
-\\ Internet Explorer v10.0.9200.16537
Ersetzt : [HKCU\Software\Microsoft\Internet Explorer\Main - Start Page] = hxxp://www.hiergehtslos.de --> hxxp://www.google.com
-\\ Mozilla Firefox v20.0.1 (de)
Datei : C:\Users\ACER 5253\AppData\Roaming\Mozilla\Firefox\Profiles\y2pg6a1s.default\prefs.js
[OK] Die Datei ist sauber.
Datei : C:\Users\Gast\AppData\Roaming\Mozilla\Firefox\Profiles\mv99lqmn.default\prefs.js
[OK] Die Datei ist sauber.
*************************
AdwCleaner[S1].txt - [1865 octets] - [25/04/2013 17:58:01]
########## EOF - C:\AdwCleaner[S1].txt - [1925 octets] ########## Code:
OTL logfile created on: 25.04.2013 18:04:27 - Run 2
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\ACER 5253\Downloads
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.10.9200.16540)
Locale: 00000407 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy
2,73 Gb Total Physical Memory | 1,71 Gb Available Physical Memory | 62,57% Memory free
5,46 Gb Paging File | 4,09 Gb Available in Paging File | 74,96% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 282,99 Gb Total Space | 201,29 Gb Free Space | 71,13% Space Free | Partition Type: NTFS
Computer Name: ACER5253-PC | User Name: ACER 5253 | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - C:\Users\ACER 5253\Downloads\OTL.exe (OldTimer Tools)
PRC - C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe (Avira Operations GmbH & Co. KG)
PRC - C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe (Avira Operations GmbH & Co. KG)
PRC - C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe (Avira Operations GmbH & Co. KG)
PRC - C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe (TeamViewer GmbH)
PRC - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe (Safer-Networking Ltd.)
PRC - C:\Programme\Acer\Acer Updater\UpdaterService.exe (Acer Incorporated)
PRC - C:\Program Files (x86)\Launch Manager\LManager.exe (Dritek System Inc.)
PRC - C:\Program Files (x86)\Launch Manager\dsiwmis.exe (Dritek System Inc.)
PRC - C:\Program Files (x86)\Launch Manager\LMworker.exe (Dritek System Inc.)
PRC - C:\Program Files (x86)\Acer\clear.fi\Movie\clear.fiMovieService.exe (CyberLink Corp.)
PRC - C:\Program Files (x86)\Acer\clear.fi\MVP\clear.fiAgent.exe (CyberLink Corp.)
PRC - C:\Program Files (x86)\Acer\clear.fi\MVP\.\Kernel\DMR\DMREngine.exe ()
PRC - C:\Program Files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe (NTI Corporation)
PRC - C:\Program Files (x86)\NTI\Acer Backup Manager\BackupManagerTray.exe (NTI Corporation)
PRC - C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe (ArcSoft Inc.)
PRC - C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ArcCon.ac (ArcSoft Inc.)
PRC - C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe (ArcSoft Inc.)
PRC - C:\Program Files (x86)\Acer\Registration\GREGsvc.exe (Acer Incorporated)
PRC - C:\Windows\SysWOW64\PSIService.exe ()
========== Modules (No Company Name) ==========
MOD - C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll ()
MOD - C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll ()
MOD - C:\Program Files (x86)\Spybot - Search & Destroy 2\snlFileFormats150.bpl ()
MOD - C:\Program Files (x86)\Spybot - Search & Destroy 2\snlThirdParty150.bpl ()
MOD - C:\Program Files (x86)\Spybot - Search & Destroy 2\VirtualTreesDXE150.bpl ()
MOD - C:\Program Files (x86)\Spybot - Search & Destroy 2\JSDialogPack150.bpl ()
MOD - C:\Program Files (x86)\Spybot - Search & Destroy 2\DEC150.bpl ()
MOD - C:\Program Files (x86)\Acer\clear.fi\MVP\Kernel\DMR\CLNetMediaDMA.dll ()
MOD - C:\Program Files (x86)\Acer\clear.fi\MVP\.\Kernel\DMR\DMREngine.exe ()
MOD - C:\Program Files (x86)\NTI\Acer Backup Manager\sqlite3.dll ()
========== Services (SafeList) ==========
SRV:64bit: - (CxAudMsg) -- C:\Windows\SysNative\CxAudMsg64.exe (Conexant Systems Inc.)
SRV:64bit: - (AMD FUEL Service) -- C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe (Advanced Micro Devices, Inc.)
SRV:64bit: - (AMD External Events Utility) -- C:\Windows\SysNative\atiesrxx.exe (AMD)
SRV - (MozillaMaintenance) -- C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe (Mozilla Foundation)
SRV - (AntiVirSchedulerService) -- C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe (Avira Operations GmbH & Co. KG)
SRV - (AntiVirService) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe (Avira Operations GmbH & Co. KG)
SRV - (TeamViewer8) -- C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe (TeamViewer GmbH)
SRV - (SkypeUpdate) -- C:\Program Files (x86)\Skype\Updater\Updater.exe (Skype Technologies)
SRV - (Live Updater Service) -- C:\Programme\Acer\Acer Updater\UpdaterService.exe (Acer Incorporated)
SRV - (FLEXnet Licensing Service) -- C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe (Acresso Software Inc.)
SRV - (DsiWMIService) -- C:\Program Files (x86)\Launch Manager\dsiwmis.exe (Dritek System Inc.)
SRV - (NTI IScheduleSvc) -- C:\Program Files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe (NTI Corporation)
SRV - (ePowerSvc) -- C:\Programme\Acer\Acer ePower Management\ePowerSvc.exe (Acer Incorporated)
SRV - (AMD Reservation Manager) -- C:\Programme\ATI Technologies\ATI.ACE\Reservation Manager\AMD Reservation Manager.exe (Advanced Micro Devices)
SRV - (clr_optimization_v4.0.30319_32) -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe (Microsoft Corporation)
SRV - (ACDaemon) -- C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe (ArcSoft Inc.)
SRV - (GREGService) -- C:\Program Files (x86)\Acer\Registration\GREGsvc.exe (Acer Incorporated)
SRV - (clr_optimization_v2.0.50727_32) -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe (Microsoft Corporation)
SRV - (ProtexisLicensing) -- C:\Windows\SysWOW64\PSIService.exe ()
========== Driver Services (SafeList) ==========
DRV:64bit: - (CnxtHdAudService) -- C:\Windows\SysNative\drivers\CHDRT64.sys (Conexant Systems Inc.)
DRV:64bit: - (avipbb) -- C:\Windows\SysNative\drivers\avipbb.sys (Avira Operations GmbH & Co. KG)
DRV:64bit: - (avgntflt) -- C:\Windows\SysNative\drivers\avgntflt.sys (Avira Operations GmbH & Co. KG)
DRV:64bit: - (avkmgr) -- C:\Windows\SysNative\drivers\avkmgr.sys (Avira Operations GmbH & Co. KG)
DRV:64bit: - (USBAAPL64) -- C:\Windows\SysNative\drivers\usbaapl64.sys (Apple, Inc.)
DRV:64bit: - (GEARAspiWDM) -- C:\Windows\SysNative\drivers\GEARAspiWDM.sys (GEAR Software Inc.)
DRV:64bit: - (Fs_Rec) -- C:\Windows\SysNative\drivers\fs_rec.sys (Microsoft Corporation)
DRV:64bit: - (amdsata) -- C:\Windows\SysNative\drivers\amdsata.sys (Advanced Micro Devices)
DRV:64bit: - (amdxata) -- C:\Windows\SysNative\drivers\amdxata.sys (Advanced Micro Devices)
DRV:64bit: - (HpSAMD) -- C:\Windows\SysNative\drivers\HpSAMD.sys (Hewlett-Packard Company)
DRV:64bit: - (TsUsbFlt) -- C:\Windows\SysNative\drivers\TsUsbFlt.sys (Microsoft Corporation)
DRV:64bit: - (AtiHDAudioService) -- C:\Windows\SysNative\drivers\AtihdW76.sys (Advanced Micro Devices)
DRV:64bit: - (ETD) -- C:\Windows\SysNative\drivers\ETD.sys (ELAN Microelectronics Corp.)
DRV:64bit: - (amdkmdag) -- C:\Windows\SysNative\drivers\atikmdag.sys (ATI Technologies Inc.)
DRV:64bit: - (amdkmdap) -- C:\Windows\SysNative\drivers\atikmpag.sys (Advanced Micro Devices, Inc.)
DRV:64bit: - (L1C) -- C:\Windows\SysNative\drivers\L1C62x64.sys (Atheros Communications, Inc.)
DRV:64bit: - (UBHelper) -- C:\Windows\SysNative\drivers\UBHelper.sys (NTI Corporation)
DRV:64bit: - (RSUSBSTOR) -- C:\Windows\SysNative\drivers\RtsUStor.sys (Realtek Semiconductor Corp.)
DRV:64bit: - (athr) -- C:\Windows\SysNative\drivers\athrx.sys (Atheros Communications, Inc.)
DRV:64bit: - (usbfilter) -- C:\Windows\SysNative\drivers\usbfilter.sys (Advanced Micro Devices)
DRV:64bit: - (NTIDrvr) -- C:\Windows\SysNative\drivers\NTIDrvr.sys (NTI Corporation)
DRV:64bit: - (amdiox64) -- C:\Windows\SysNative\drivers\amdiox64.sys (Advanced Micro Devices)
DRV:64bit: - (amdsbs) -- C:\Windows\SysNative\drivers\amdsbs.sys (AMD Technologies Inc.)
DRV:64bit: - (LSI_SAS2) -- C:\Windows\SysNative\drivers\lsi_sas2.sys (LSI Corporation)
DRV:64bit: - (stexstor) -- C:\Windows\SysNative\drivers\stexstor.sys (Promise Technology)
DRV:64bit: - (ebdrv) -- C:\Windows\SysNative\drivers\evbda.sys (Broadcom Corporation)
DRV:64bit: - (b06bdrv) -- C:\Windows\SysNative\drivers\bxvbda.sys (Broadcom Corporation)
DRV:64bit: - (b57nd60a) -- C:\Windows\SysNative\drivers\b57nd60a.sys (Broadcom Corporation)
DRV:64bit: - (hcw85cir) -- C:\Windows\SysNative\drivers\hcw85cir.sys (Hauppauge Computer Works, Inc.)
DRV - (WIMMount) -- C:\Windows\SysWOW64\drivers\wimmount.sys (Microsoft Corporation)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE:64bit: - HKLM\..\SearchScopes,DefaultScope =
IE:64bit: - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = hxxp://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKLM\..\SearchScopes,DefaultScope =
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = hxxp://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKU\.DEFAULT\..\SearchScopes,DefaultScope =
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-18\..\SearchScopes,DefaultScope =
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-19\..\SearchScopes,DefaultScope =
IE - HKU\S-1-5-20\..\SearchScopes,DefaultScope =
IE - HKU\S-1-5-21-661073328-3994563355-608488981-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.com
IE - HKU\S-1-5-21-661073328-3994563355-608488981-1000\..\SearchScopes,DefaultScope =
IE - HKU\S-1-5-21-661073328-3994563355-608488981-1000\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = hxxp://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE8SRC
IE - HKU\S-1-5-21-661073328-3994563355-608488981-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-661073328-3994563355-608488981-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local
========== FireFox ==========
FF - prefs.js..browser.search.defaulturl: ""
FF - prefs.js..browser.search.selectedEngine: "Google"
FF - prefs.js..browser.search.update: false
FF - prefs.js..browser.startup.homepage: "hxxp://www.google.de/"
FF - prefs.js..extensions.enabledAddons: %7Ba0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7%7D:20130402
FF - prefs.js..extensions.enabledAddons: %7BACAA314B-EEBA-48e4-AD47-84E31C44796C%7D:4.2.1.9
FF - prefs.js..extensions.enabledAddons: %7BCAFEEFAC-0016-0000-0035-ABCDEFFEDCBA%7D:6.0.35
FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:20.0.1
FF - user.js - File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF64_11_6_602_180.dll File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files\Microsoft Silverlight\5.1.20125.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_6_602_180.dll ()
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=: File not found
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.17.2: C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files (x86)\Java\jre1.6.0_22\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files (x86)\Microsoft Silverlight\5.1.20125.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll File not found
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3538.0513: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll File not found
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 9.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKCU\Software\MozillaPlugins\amazon.com/AmazonMP3DownloaderPlugin: C:\Program Files (x86)\Amazon\MP3 Downloader\npAmazonMP3DownloaderPlugin101727.dll (Amazon.com, Inc.)
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 20.0.1\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2013.04.13 14:02:31 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 20.0.1\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins
FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 20.0.1\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components [2013.04.13 14:02:31 | 000,000,000 | ---D | M]
FF - HKEY_CURRENT_USER\software\mozilla\Mozilla Firefox 20.0.1\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins
[2011.11.05 08:43:23 | 000,000,000 | ---D | M] (No name found) -- C:\Users\ACER 5253\AppData\Roaming\mozilla\Extensions
[2013.04.04 20:49:03 | 000,000,000 | ---D | M] (No name found) -- C:\Users\ACER 5253\AppData\Roaming\mozilla\Firefox\Profiles\y2pg6a1s.default\extensions
[2013.04.04 20:49:03 | 000,000,000 | ---D | M] (WOT) -- C:\Users\ACER 5253\AppData\Roaming\mozilla\Firefox\Profiles\y2pg6a1s.default\extensions\{a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7}
[2012.11.15 19:30:12 | 000,214,020 | ---- | M] () (No name found) -- C:\Users\ACER 5253\AppData\Roaming\mozilla\firefox\profiles\y2pg6a1s.default\extensions\socksharedownloader@socksharedownloader.com.xpi
[2013.04.03 18:59:56 | 000,542,511 | ---- | M] () (No name found) -- C:\Users\ACER 5253\AppData\Roaming\mozilla\firefox\profiles\y2pg6a1s.default\extensions\toolbar@web.de.xpi
[2012.12.12 12:37:37 | 000,036,098 | ---- | M] () (No name found) -- C:\Users\ACER 5253\AppData\Roaming\mozilla\firefox\profiles\y2pg6a1s.default\extensions\{ACAA314B-EEBA-48e4-AD47-84E31C44796C}.xpi
[2013.02.19 20:18:33 | 000,817,280 | ---- | M] () (No name found) -- C:\Users\ACER 5253\AppData\Roaming\mozilla\firefox\profiles\y2pg6a1s.default\extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
[2013.04.13 14:02:22 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\mozilla firefox\extensions
[2013.04.13 14:02:22 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files (x86)\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0033-ABCDEFFEDCBA}
[2013.04.13 14:02:23 | 000,000,000 | ---D | M] (Java Console) -- C:\Program Files (x86)\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0035-ABCDEFFEDCBA}
[2013.04.13 14:02:31 | 000,263,064 | ---- | M] (Mozilla Foundation) -- C:\Program Files (x86)\mozilla firefox\components\browsercomps.dll
[2013.03.27 05:32:09 | 000,001,392 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\amazondotcom-de.xml
[2013.03.27 05:32:09 | 000,002,465 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\bing.xml
[2013.03.27 05:32:09 | 000,001,153 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\eBay-de.xml
[2013.03.27 05:32:09 | 000,006,805 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\leo_ende_de.xml
[2013.03.27 05:32:09 | 000,001,178 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\wikipedia-de.xml
[2013.03.27 05:32:09 | 000,001,105 | ---- | M] () -- C:\Program Files (x86)\mozilla firefox\searchplugins\yahoo-de.xml
O1 HOSTS File: ([2013.04.25 15:24:28 | 000,000,027 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O2:64bit: - BHO: (DVDVideoSoft WebPageAdjuster Class) - {EE932B49-D5C0-4D19-A3DA-CE0849258DE6} - C:\Program Files (x86)\Common Files\DVDVideoSoft\bin\IEDownloadMenuAndBtns64.dll (DVDVideoSoft Ltd.)
O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.6.0_22\bin\ssv.dll (Sun Microsystems, Inc.)
O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.6.0_22\bin\jp2ssv.dll (Sun Microsystems, Inc.)
O2 - BHO: (DVDVideoSoft WebPageAdjuster Class) - {EE932B49-D5C0-4D19-A3DA-CE0849258DE6} - C:\Program Files (x86)\Common Files\DVDVideoSoft\bin\IEDownloadMenuAndBtns.dll (DVDVideoSoft Ltd.)
O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O4:64bit: - HKLM..\Run: [Acer ePower Management] C:\Programme\Acer\Acer ePower Management\ePowerTray.exe (Acer Incorporated)
O4:64bit: - HKLM..\Run: [ETDCtrl] C:\Programme\Elantech\ETDCtrl.exe (ELAN Microelectronics Corp.)
O4 - HKLM..\Run: [APSDaemon] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc.)
O4 - HKLM..\Run: [ArcadeMovieService] C:\Program Files (x86)\Acer\clear.fi\Movie\clear.fiMovieService.exe (CyberLink Corp.)
O4 - HKLM..\Run: [ArcSoft Connection Service] C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe (ArcSoft Inc.)
O4 - HKLM..\Run: [avgnt] C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe (Avira Operations GmbH & Co. KG)
O4 - HKLM..\Run: [BackupManagerTray] C:\Program Files (x86)\NTI\Acer Backup Manager\BackupManagerTray.exe (NTI Corporation)
O4 - HKLM..\Run: [ControlCenter3] C:\Program Files (x86)\Brother\ControlCenter3\brctrcen.exe (Brother Industries, Ltd.)
O4 - HKLM..\Run: [LManager] C:\Program Files (x86)\Launch Manager\LManager.exe (Dritek System Inc.)
O4 - HKLM..\Run: [MDS_Menu] C:\Program Files (x86)\Acer\clear.fi\MediaEspresso\MUITransfer\MUIStartMenu.exe (CyberLink Corp.)
O4 - HKLM..\Run: [OOTag] C:\Program Files (x86)\Acer\OOBEOffer\OOTag.exe (Microsoft)
O4 - HKLM..\Run: [QuickFinder Scheduler] C:\Program Files (x86)\WordPerfect Office X3\Programs\QFSCHD130.EXE (Corel Corporation)
O4 - HKLM..\Run: [SDTray] C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe (Safer-Networking Ltd.)
O4 - HKLM..\Run: [StartCCC] C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe (Advanced Micro Devices, Inc.)
O4 - HKU\S-1-5-21-661073328-3994563355-608488981-1000..\Run: [Spybot-S&D Cleaning] C:\Program Files (x86)\Spybot - Search & Destroy 2\SDCleaner.exe (Safer-Networking Ltd.)
O6 - HKLM\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O7 - HKU\.DEFAULT\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-18\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-19\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-20\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-21-661073328-3994563355-608488981-1000\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKU\S-1-5-21-661073328-3994563355-608488981-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDrives = 0
O8:64bit: - Extra context menu item: Free YouTube Download - C:\Program Files (x86)\Common Files\DVDVideoSoft\plugins\freeytvdownloader.htm ()
O8:64bit: - Extra context menu item: Free YouTube to MP3 Converter - C:\Program Files (x86)\Common Files\DVDVideoSoft\plugins\freeytmp3downloader.htm ()
O8:64bit: - Extra context menu item: Öffnen mit WordPerfect - C:\Program Files (x86)\WordPerfect Office X3\Programs\WPLauncher.hta ()
O8 - Extra context menu item: Free YouTube Download - C:\Program Files (x86)\Common Files\DVDVideoSoft\plugins\freeytvdownloader.htm ()
O8 - Extra context menu item: Free YouTube to MP3 Converter - C:\Program Files (x86)\Common Files\DVDVideoSoft\plugins\freeytmp3downloader.htm ()
O8 - Extra context menu item: Öffnen mit WordPerfect - C:\Program Files (x86)\WordPerfect Office X3\Programs\WPLauncher.hta ()
O9:64bit: - Extra Button: Free YouTube Download - {EE932B49-D5C0-4D19-A3DA-CE0849258DE6} - C:\Program Files (x86)\Common Files\DVDVideoSoft\bin\IEDownloadMenuAndBtns64.dll (DVDVideoSoft Ltd.)
O9:64bit: - Extra 'Tools' menuitem : Free YouTube Download - {EE932B49-D5C0-4D19-A3DA-CE0849258DE6} - C:\Program Files (x86)\Common Files\DVDVideoSoft\bin\IEDownloadMenuAndBtns64.dll (DVDVideoSoft Ltd.)
O9 - Extra Button: Free YouTube Download - {EE932B49-D5C0-4D19-A3DA-CE0849258DE6} - C:\Program Files (x86)\Common Files\DVDVideoSoft\bin\IEDownloadMenuAndBtns.dll (DVDVideoSoft Ltd.)
O9 - Extra 'Tools' menuitem : Free YouTube Download - {EE932B49-D5C0-4D19-A3DA-CE0849258DE6} - C:\Program Files (x86)\Common Files\DVDVideoSoft\bin\IEDownloadMenuAndBtns.dll (DVDVideoSoft Ltd.)
O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000007 [] - C:\Programme\Bonjour\mdnsNSP.dll (Apple Inc.)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000007 [] - C:\Program Files (x86)\Bonjour\mdnsNSP.dll (Apple Inc.)
O13 - gopher Prefix: missing
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab (Java Plug-in 1.6.0_22)
O16 - DPF: {CAFEEFAC-0016-0000-0022-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab (Java Plug-in 1.6.0_22)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_22-windows-i586.cab (Java Plug-in 10.17.2)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.2.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{1A118C30-2CA8-4B2E-B4B4-C286496D948D}: DhcpNameServer = 192.168.1.250
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{FC0146CB-D635-4396-9061-C318A621634F}: DhcpNameServer = 192.168.2.1
O18:64bit: - Protocol\Handler\ms-itss - No CLSID value found
O18:64bit: - Protocol\Handler\skype4com - No CLSID value found
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL (Skype Technologies)
O20:64bit: - HKLM Winlogon: Shell - (Explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (userinit.exe) - C:\Windows\SysWow64\userinit.exe (Microsoft Corporation)
O20 - Winlogon\Notify\SDWinLogon: DllName - (SDWinLogon.dll) - File not found
O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O32 - HKLM CDRom: AutoRun - 1
O34 - HKLM BootExecute: (autocheck autochk *)
O35:64bit: - HKLM\..comfile [open] -- "%1" %*
O35:64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:64bit: - HKLM\...com [@ = ComFile] -- "%1" %*
O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = ComFile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)
========== Files/Folders - Created Within 30 Days ==========
[2013.04.25 18:00:29 | 000,000,000 | ---D | C] -- C:\ProgramData\boost_interprocess
[2013.04.25 17:48:22 | 000,000,000 | ---D | C] -- C:\Windows\ERUNT
[2013.04.25 17:47:24 | 000,000,000 | ---D | C] -- C:\JRT
[2013.04.25 16:29:05 | 000,000,000 | -HSD | C] -- C:\$RECYCLE.BIN
[2013.04.25 15:04:36 | 000,518,144 | ---- | C] (SteelWerX) -- C:\Windows\SWREG.exe
[2013.04.25 15:04:36 | 000,406,528 | ---- | C] (SteelWerX) -- C:\Windows\SWSC.exe
[2013.04.25 15:04:36 | 000,060,416 | ---- | C] (NirSoft) -- C:\Windows\NIRCMD.exe
[2013.04.25 14:51:00 | 000,000,000 | ---D | C] -- C:\Users\ACER 5253\Documents\ProcAlyzer Dumps
[2013.04.25 14:47:44 | 000,000,000 | ---D | C] -- C:\Qoobox
[2013.04.25 14:47:10 | 000,000,000 | ---D | C] -- C:\Windows\erdnt
[2013.04.23 21:38:33 | 000,000,000 | ---D | C] -- C:\Users\ACER 5253\Desktop\lalilu
[2013.04.23 21:22:40 | 000,000,000 | ---D | C] -- C:\Users\ACER 5253\Desktop\mbar
[2013.04.23 19:19:07 | 000,000,000 | ---D | C] -- C:\ProgramData\Spybot - Search & Destroy
[2013.04.23 19:19:01 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy 2
[2013.04.23 19:18:51 | 000,017,272 | ---- | C] (Safer Networking Limited) -- C:\Windows\SysNative\sdnclean64.exe
[2013.04.23 19:18:43 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Spybot - Search & Destroy 2
[2013.04.16 19:15:27 | 000,198,784 | ---- | C] (Conexant Systems Inc.) -- C:\Windows\SysNative\CxAudMsg64.exe
[2013.04.16 19:12:57 | 000,498,816 | ---- | C] (Conexant Systems, Inc.) -- C:\Windows\SysNative\UCI64A69.dll
[2013.04.16 19:12:56 | 001,548,416 | ---- | C] (Conexant Systems Inc.) -- C:\Windows\SysNative\CX64AP40.dll
[2013.04.16 19:12:56 | 001,495,680 | ---- | C] (Conexant Systems Inc.) -- C:\Windows\SysNative\drivers\CHDRT64.sys
[2013.04.15 19:56:39 | 000,000,000 | ---D | C] -- C:\Users\ACER 5253\Desktop\Lisl und Sascha
[2013.04.14 19:31:35 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
[2013.04.14 19:31:30 | 000,033,240 | ---- | C] (GEAR Software Inc.) -- C:\Windows\SysNative\drivers\GEARAspiWDM.sys
[2013.04.14 19:31:05 | 000,000,000 | ---D | C] -- C:\Program Files\iPod
[2013.04.14 19:31:03 | 000,000,000 | ---D | C] -- C:\Program Files\iTunes
[2013.04.14 19:31:03 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\iTunes
[2013.04.14 19:31:03 | 000,000,000 | ---D | C] -- C:\ProgramData\34BE82C4-E596-4e99-A191-52C6199EBF69
[2013.04.14 19:29:37 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Apple Software Update
[2013.04.14 19:28:59 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Apple
[2013.04.14 19:28:39 | 000,000,000 | ---D | C] -- C:\Program Files\Bonjour
[2013.04.14 19:28:39 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Bonjour
[2013.04.13 14:02:21 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Mozilla Firefox
[2013.04.10 19:17:40 | 000,391,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieui.dll
[2013.04.10 19:17:39 | 000,526,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieui.dll
[2013.04.10 19:17:38 | 000,051,712 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ie4uinit.exe
[2013.04.10 19:17:36 | 000,071,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\RegisterIEPKEYs.exe
[2013.04.10 19:17:36 | 000,067,072 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iesetup.dll
[2013.04.10 19:17:36 | 000,061,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iesetup.dll
[2013.04.10 19:17:36 | 000,039,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iernonce.dll
[2013.04.10 19:17:36 | 000,033,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iernonce.dll
[2013.04.10 19:17:35 | 000,136,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iesysprep.dll
[2013.04.10 19:17:35 | 000,109,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iesysprep.dll
[2013.04.10 19:17:35 | 000,089,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\RegisterIEPKEYs.exe
[2013.04.10 19:17:34 | 000,603,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msfeeds.dll
[2013.04.10 19:17:30 | 000,855,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jscript.dll
[2013.04.10 19:17:30 | 000,690,688 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\jscript.dll
[2013.04.10 19:17:29 | 003,958,784 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jscript9.dll
[2013.04.09 19:08:25 | 003,717,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mstscax.dll
[2013.04.09 19:08:22 | 003,217,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mstscax.dll
[2013.04.09 19:08:20 | 000,158,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\aaclient.dll
[2013.04.09 19:08:20 | 000,131,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\aaclient.dll
[2013.04.09 19:08:19 | 000,044,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\tsgqec.dll
[2013.04.09 19:08:19 | 000,036,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\tsgqec.dll
[2013.04.09 19:07:59 | 005,550,424 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ntoskrnl.exe
[2013.04.09 19:07:58 | 003,968,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ntkrnlpa.exe
[2013.04.09 19:07:58 | 003,913,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ntoskrnl.exe
[2013.04.09 19:07:57 | 000,112,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\smss.exe
[2013.04.09 19:07:57 | 000,043,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\csrsrv.dll
[2013.04.09 19:07:57 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\apisetschema.dll
[2013.04.09 19:06:39 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Mozilla Maintenance Service
[2013.04.05 03:07:39 | 001,054,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MsSpellCheckingFacility.exe
[2013.04.05 03:07:39 | 000,226,304 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\elshyph.dll
[2013.04.05 03:07:39 | 000,185,344 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\elshyph.dll
[2013.04.05 03:07:38 | 000,719,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmlmedia.dll
[2013.04.05 03:07:38 | 000,163,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msrating.dll
[2013.04.05 03:07:38 | 000,150,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iexpress.exe
[2013.04.05 03:07:38 | 000,138,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wextract.exe
[2013.04.05 03:07:38 | 000,082,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\inseng.dll
[2013.04.05 03:07:38 | 000,079,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmled.dll
[2013.04.05 03:07:38 | 000,057,344 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\pngfilt.dll
[2013.04.05 03:07:37 | 000,137,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieUnatt.exe
[2013.04.05 03:07:37 | 000,125,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\occache.dll
[2013.04.05 03:07:37 | 000,117,248 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\iepeers.dll
[2013.04.05 03:07:37 | 000,110,592 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\IEAdvpack.dll
[2013.04.05 03:07:37 | 000,073,728 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\SetIEInstalledDate.exe
[2013.04.05 03:07:37 | 000,048,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmler.dll
[2013.04.05 03:07:37 | 000,011,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msfeedssync.exe
[2013.04.05 03:07:36 | 001,441,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\inetcpl.cpl
[2013.04.05 03:07:36 | 001,400,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieapfltr.dat
[2013.04.05 03:07:36 | 000,629,248 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieapfltr.dll
[2013.04.05 03:07:36 | 000,361,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\html.iec
[2013.04.05 03:07:36 | 000,232,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\url.dll
[2013.04.05 03:07:36 | 000,069,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\icardie.dll
[2013.04.05 03:07:36 | 000,061,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\tdc.ocx
[2013.04.05 03:07:36 | 000,023,040 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\licmgr10.dll
[2013.04.05 03:07:35 | 000,216,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msls31.dll
[2013.04.05 03:07:35 | 000,197,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msrating.dll
[2013.04.05 03:07:34 | 001,509,376 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\inetcpl.cpl
[2013.04.05 03:07:34 | 001,400,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieapfltr.dat
[2013.04.05 03:07:34 | 000,905,728 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mshtmlmedia.dll
[2013.04.05 03:07:34 | 000,762,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieapfltr.dll
[2013.04.05 03:07:34 | 000,452,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dxtmsft.dll
[2013.04.05 03:07:34 | 000,441,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\html.iec
[2013.04.05 03:07:34 | 000,281,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dxtrans.dll
[2013.04.05 03:07:34 | 000,235,008 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\url.dll
[2013.04.05 03:07:34 | 000,167,424 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iexpress.exe
[2013.04.05 03:07:34 | 000,144,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wextract.exe
[2013.04.05 03:07:34 | 000,102,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\inseng.dll
[2013.04.05 03:07:34 | 000,097,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mshtmled.dll
[2013.04.05 03:07:34 | 000,081,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\icardie.dll
[2013.04.05 03:07:34 | 000,027,648 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\licmgr10.dll
[2013.04.05 03:07:33 | 000,599,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\vbscript.dll
[2013.04.05 03:07:33 | 000,173,568 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieUnatt.exe
[2013.04.05 03:07:33 | 000,149,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\occache.dll
[2013.04.05 03:07:33 | 000,136,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\iepeers.dll
[2013.04.05 03:07:33 | 000,135,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\IEAdvpack.dll
[2013.04.05 03:07:33 | 000,092,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\SetIEInstalledDate.exe
[2013.04.05 03:07:33 | 000,062,976 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\pngfilt.dll
[2013.04.05 03:07:33 | 000,051,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\imgutil.dll
[2013.04.05 03:07:33 | 000,048,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mshtmler.dll
[2013.04.05 03:07:33 | 000,013,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mshta.exe
[2013.04.05 03:07:33 | 000,012,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msfeedssync.exe
[2013.04.05 03:07:32 | 000,077,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\tdc.ocx
[2013.04.05 03:05:11 | 000,009,728 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
[2013.04.05 03:05:11 | 000,009,728 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-downlevel-shlwapi-l1-1-0.dll
[2013.04.05 03:05:11 | 000,005,632 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-downlevel-shlwapi-l2-1-0.dll
[2013.04.05 03:05:11 | 000,005,632 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-downlevel-shlwapi-l2-1-0.dll
[2013.04.05 03:05:11 | 000,005,632 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-downlevel-ole32-l1-1-0.dll
[2013.04.05 03:05:11 | 000,005,632 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-downlevel-ole32-l1-1-0.dll
[2013.04.05 03:05:11 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-downlevel-user32-l1-1-0.dll
[2013.04.05 03:05:11 | 000,004,096 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-downlevel-user32-l1-1-0.dll
[2013.04.05 03:05:11 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-downlevel-advapi32-l2-1-0.dll
[2013.04.05 03:05:11 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-downlevel-version-l1-1-0.dll
[2013.04.05 03:05:11 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-downlevel-version-l1-1-0.dll
[2013.04.05 03:05:11 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-downlevel-shell32-l1-1-0.dll
[2013.04.05 03:05:11 | 000,003,072 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-downlevel-shell32-l1-1-0.dll
[2013.04.05 03:05:11 | 000,002,560 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-downlevel-normaliz-l1-1-0.dll
[2013.04.05 03:05:10 | 003,928,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d2d1.dll
[2013.04.05 03:05:10 | 002,776,576 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msmpeg2vdec.dll
[2013.04.05 03:05:10 | 002,565,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3d10warp.dll
[2013.04.05 03:05:10 | 002,284,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msmpeg2vdec.dll
[2013.04.05 03:05:10 | 001,887,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3d11.dll
[2013.04.05 03:05:10 | 001,682,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XpsPrint.dll
[2013.04.05 03:05:10 | 001,643,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\DWrite.dll
[2013.04.05 03:05:10 | 001,504,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\d3d11.dll
[2013.04.05 03:05:10 | 001,424,384 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WindowsCodecs.dll
[2013.04.05 03:05:10 | 001,238,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3d10.dll
[2013.04.05 03:05:10 | 001,158,144 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XpsPrint.dll
[2013.04.05 03:05:10 | 000,648,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3d10level9.dll
[2013.04.05 03:05:10 | 000,522,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XpsGdiConverter.dll
[2013.04.05 03:05:10 | 000,465,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WMPhoto.dll
[2013.04.05 03:05:10 | 000,417,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WMPhoto.dll
[2013.04.05 03:05:10 | 000,364,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XpsGdiConverter.dll
[2013.04.05 03:05:10 | 000,363,008 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dxgi.dll
[2013.04.05 03:05:10 | 000,333,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3d10_1core.dll
[2013.04.05 03:05:10 | 000,296,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3d10core.dll
[2013.04.05 03:05:10 | 000,245,248 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WindowsCodecsExt.dll
[2013.04.05 03:05:10 | 000,221,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\UIAnimation.dll
[2013.04.05 03:05:10 | 000,194,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3d10_1.dll
[2013.04.05 03:05:10 | 000,187,392 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\UIAnimation.dll
[2013.04.05 03:05:10 | 000,010,752 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-downlevel-advapi32-l1-1-0.dll
[2013.04.05 03:05:10 | 000,010,752 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-downlevel-advapi32-l1-1-0.dll
[2013.04.05 03:05:10 | 000,003,584 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-downlevel-advapi32-l2-1-0.dll
[2013.04.05 03:05:10 | 000,002,560 | -H-- | C] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-downlevel-normaliz-l1-1-0.dll
[2013.04.04 22:57:08 | 000,153,376 | ---- | C] (Sun Microsystems, Inc.) -- C:\Windows\SysWow64\javaws.exe
[2013.03.27 23:04:17 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\SockshareDownloader
[2013.03.27 23:04:12 | 000,000,000 | ---D | C] -- C:\Users\ACER 5253\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SockshareDownloader.com
[2013.03.27 23:04:12 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\SockshareDownloader.com
[2013.03.27 21:49:49 | 000,130,016 | ---- | C] (Avira Operations GmbH & Co. KG) -- C:\Windows\SysNative\drivers\avipbb.sys
[2013.03.27 21:49:49 | 000,100,712 | ---- | C] (Avira Operations GmbH & Co. KG) -- C:\Windows\SysNative\drivers\avgntflt.sys
[2013.03.27 21:49:49 | 000,028,600 | ---- | C] (Avira Operations GmbH & Co. KG) -- C:\Windows\SysNative\drivers\avkmgr.sys
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
========== Files - Modified Within 30 Days ==========
[2013.04.25 18:07:39 | 000,009,696 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2013.04.25 18:07:39 | 000,009,696 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2013.04.25 18:00:13 | 000,000,400 | ---- | M] () -- C:\Windows\tasks\FinalTorrent Update Checker.job
[2013.04.25 17:59:48 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2013.04.25 17:59:44 | 2197,999,616 | -HS- | M] () -- C:\hiberfil.sys
[2013.04.25 17:13:51 | 000,014,444 | ---- | M] () -- C:\Users\ACER 5253\Desktop\lauftraining.odt
[2013.04.25 17:11:01 | 001,498,742 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2013.04.25 17:11:01 | 000,654,400 | ---- | M] () -- C:\Windows\SysNative\perfh007.dat
[2013.04.25 17:11:01 | 000,616,242 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2013.04.25 17:11:01 | 000,130,240 | ---- | M] () -- C:\Windows\SysNative\perfc007.dat
[2013.04.25 17:11:01 | 000,106,622 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2013.04.25 15:24:28 | 000,000,027 | ---- | M] () -- C:\Windows\SysNative\drivers\etc\hosts
[2013.04.24 22:51:45 | 000,036,145 | ---- | M] () -- C:\Users\ACER 5253\Desktop\023.jpg
[2013.04.24 22:51:38 | 000,040,592 | ---- | M] () -- C:\Users\ACER 5253\Desktop\026.jpg
[2013.04.24 22:51:30 | 000,007,549 | ---- | M] () -- C:\Users\ACER 5253\Desktop\Bild002.gif
[2013.04.24 22:51:21 | 000,033,780 | ---- | M] () -- C:\Users\ACER 5253\Desktop\024.jpg
[2013.04.24 22:51:09 | 000,032,842 | ---- | M] () -- C:\Users\ACER 5253\Desktop\Lieben045.jpg
[2013.04.24 22:42:22 | 000,012,482 | ---- | M] () -- C:\Users\ACER 5253\Desktop\index.jpg
[2013.04.24 22:41:53 | 000,009,263 | ---- | M] () -- C:\Users\ACER 5253\Desktop\images.jpg
[2013.04.23 21:35:37 | 000,000,000 | ---- | M] () -- C:\Users\ACER 5253\defogger_reenable
[2013.04.16 19:12:57 | 000,498,816 | ---- | M] (Conexant Systems, Inc.) -- C:\Windows\SysNative\UCI64A69.dll
[2013.04.16 19:12:57 | 000,030,895 | ---- | M] () -- C:\Windows\SysNative\drivers\Mixer.ini
[2013.04.16 19:12:56 | 001,548,416 | ---- | M] (Conexant Systems Inc.) -- C:\Windows\SysNative\CX64AP40.dll
[2013.04.16 19:12:56 | 001,495,680 | ---- | M] (Conexant Systems Inc.) -- C:\Windows\SysNative\drivers\CHDRT64.sys
[2013.04.16 19:12:54 | 000,198,784 | ---- | M] (Conexant Systems Inc.) -- C:\Windows\SysNative\CxAudMsg64.exe
[2013.04.10 19:29:12 | 000,378,504 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT
[2013.04.09 19:06:44 | 000,001,151 | ---- | M] () -- C:\Users\Public\Desktop\Mozilla Firefox.lnk
[2013.04.05 03:07:39 | 001,054,720 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\MsSpellCheckingFacility.exe
[2013.04.05 03:07:39 | 000,226,304 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\elshyph.dll
[2013.04.05 03:07:39 | 000,185,344 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\elshyph.dll
[2013.04.05 03:07:38 | 000,719,360 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmlmedia.dll
[2013.04.05 03:07:38 | 000,163,840 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\msrating.dll
[2013.04.05 03:07:38 | 000,150,528 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\iexpress.exe
[2013.04.05 03:07:38 | 000,138,752 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\wextract.exe
[2013.04.05 03:07:38 | 000,082,432 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\inseng.dll
[2013.04.05 03:07:38 | 000,079,872 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmled.dll
[2013.04.05 03:07:38 | 000,057,344 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\pngfilt.dll
[2013.04.05 03:07:37 | 000,137,216 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\ieUnatt.exe
[2013.04.05 03:07:37 | 000,125,440 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\occache.dll
[2013.04.05 03:07:37 | 000,117,248 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\iepeers.dll
[2013.04.05 03:07:37 | 000,110,592 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\IEAdvpack.dll
[2013.04.05 03:07:37 | 000,073,728 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\SetIEInstalledDate.exe
[2013.04.05 03:07:37 | 000,048,640 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmler.dll
[2013.04.05 03:07:37 | 000,011,776 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\msfeedssync.exe
[2013.04.05 03:07:36 | 001,441,280 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\inetcpl.cpl
[2013.04.05 03:07:36 | 001,400,416 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\ieapfltr.dat
[2013.04.05 03:07:36 | 000,629,248 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\ieapfltr.dll
[2013.04.05 03:07:36 | 000,361,984 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\html.iec
[2013.04.05 03:07:36 | 000,232,960 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\url.dll
[2013.04.05 03:07:36 | 000,069,120 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\icardie.dll
[2013.04.05 03:07:36 | 000,061,952 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\tdc.ocx
[2013.04.05 03:07:36 | 000,025,185 | ---- | M] () -- C:\Windows\SysWow64\ieuinit.inf
[2013.04.05 03:07:36 | 000,023,040 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\licmgr10.dll
[2013.04.05 03:07:35 | 000,216,064 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\msls31.dll
[2013.04.05 03:07:35 | 000,197,120 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\msrating.dll
[2013.04.05 03:07:34 | 001,509,376 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\inetcpl.cpl
[2013.04.05 03:07:34 | 001,400,416 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\ieapfltr.dat
[2013.04.05 03:07:34 | 000,905,728 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\mshtmlmedia.dll
[2013.04.05 03:07:34 | 000,762,368 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\ieapfltr.dll
[2013.04.05 03:07:34 | 000,452,096 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\dxtmsft.dll
[2013.04.05 03:07:34 | 000,441,856 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\html.iec
[2013.04.05 03:07:34 | 000,281,600 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\dxtrans.dll
[2013.04.05 03:07:34 | 000,235,008 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\url.dll
[2013.04.05 03:07:34 | 000,167,424 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\iexpress.exe
[2013.04.05 03:07:34 | 000,144,896 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\wextract.exe
[2013.04.05 03:07:34 | 000,102,912 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\inseng.dll
[2013.04.05 03:07:34 | 000,097,280 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\mshtmled.dll
[2013.04.05 03:07:34 | 000,081,408 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\icardie.dll
[2013.04.05 03:07:34 | 000,027,648 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\licmgr10.dll
[2013.04.05 03:07:34 | 000,025,185 | ---- | M] () -- C:\Windows\SysNative\ieuinit.inf
[2013.04.05 03:07:33 | 000,599,552 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\vbscript.dll
[2013.04.05 03:07:33 | 000,173,568 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\ieUnatt.exe
[2013.04.05 03:07:33 | 000,149,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\occache.dll
[2013.04.05 03:07:33 | 000,136,192 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\iepeers.dll
[2013.04.05 03:07:33 | 000,135,680 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\IEAdvpack.dll
[2013.04.05 03:07:33 | 000,092,160 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\SetIEInstalledDate.exe
[2013.04.05 03:07:33 | 000,062,976 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\pngfilt.dll
[2013.04.05 03:07:33 | 000,051,200 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\imgutil.dll
[2013.04.05 03:07:33 | 000,048,640 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\mshtmler.dll
[2013.04.05 03:07:33 | 000,013,824 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\mshta.exe
[2013.04.05 03:07:33 | 000,012,800 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\msfeedssync.exe
[2013.04.05 03:07:32 | 000,077,312 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\tdc.ocx
[2013.04.05 03:05:11 | 000,009,728 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
[2013.04.05 03:05:11 | 000,009,728 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-downlevel-shlwapi-l1-1-0.dll
[2013.04.05 03:05:11 | 000,005,632 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-downlevel-shlwapi-l2-1-0.dll
[2013.04.05 03:05:11 | 000,005,632 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-downlevel-shlwapi-l2-1-0.dll
[2013.04.05 03:05:11 | 000,005,632 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-downlevel-ole32-l1-1-0.dll
[2013.04.05 03:05:11 | 000,005,632 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-downlevel-ole32-l1-1-0.dll
[2013.04.05 03:05:11 | 000,004,096 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-downlevel-user32-l1-1-0.dll
[2013.04.05 03:05:11 | 000,004,096 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-downlevel-user32-l1-1-0.dll
[2013.04.05 03:05:11 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-downlevel-advapi32-l2-1-0.dll
[2013.04.05 03:05:11 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-downlevel-version-l1-1-0.dll
[2013.04.05 03:05:11 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-downlevel-version-l1-1-0.dll
[2013.04.05 03:05:11 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-downlevel-shell32-l1-1-0.dll
[2013.04.05 03:05:11 | 000,003,072 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-downlevel-shell32-l1-1-0.dll
[2013.04.05 03:05:11 | 000,002,560 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-downlevel-normaliz-l1-1-0.dll
[2013.04.05 03:05:10 | 003,928,064 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\d2d1.dll
[2013.04.05 03:05:10 | 002,776,576 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\msmpeg2vdec.dll
[2013.04.05 03:05:10 | 002,565,120 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\d3d10warp.dll
[2013.04.05 03:05:10 | 002,284,544 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\msmpeg2vdec.dll
[2013.04.05 03:05:10 | 001,887,232 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\d3d11.dll
[2013.04.05 03:05:10 | 001,682,432 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\XpsPrint.dll
[2013.04.05 03:05:10 | 001,643,520 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\DWrite.dll
[2013.04.05 03:05:10 | 001,504,768 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\d3d11.dll
[2013.04.05 03:05:10 | 001,424,384 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\WindowsCodecs.dll
[2013.04.05 03:05:10 | 001,238,528 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\d3d10.dll
[2013.04.05 03:05:10 | 001,158,144 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\XpsPrint.dll
[2013.04.05 03:05:10 | 000,648,192 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\d3d10level9.dll
[2013.04.05 03:05:10 | 000,522,752 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\XpsGdiConverter.dll
[2013.04.05 03:05:10 | 000,465,920 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\WMPhoto.dll
[2013.04.05 03:05:10 | 000,417,792 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\WMPhoto.dll
[2013.04.05 03:05:10 | 000,364,544 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\XpsGdiConverter.dll
[2013.04.05 03:05:10 | 000,363,008 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\dxgi.dll
[2013.04.05 03:05:10 | 000,333,312 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\d3d10_1core.dll
[2013.04.05 03:05:10 | 000,296,960 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\d3d10core.dll
[2013.04.05 03:05:10 | 000,245,248 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\WindowsCodecsExt.dll
[2013.04.05 03:05:10 | 000,221,184 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\UIAnimation.dll
[2013.04.05 03:05:10 | 000,194,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\d3d10_1.dll
[2013.04.05 03:05:10 | 000,187,392 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\UIAnimation.dll
[2013.04.05 03:05:10 | 000,010,752 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\api-ms-win-downlevel-advapi32-l1-1-0.dll
[2013.04.05 03:05:10 | 000,010,752 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-downlevel-advapi32-l1-1-0.dll
[2013.04.05 03:05:10 | 000,003,584 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-downlevel-advapi32-l2-1-0.dll
[2013.04.05 03:05:10 | 000,002,560 | -H-- | M] (Microsoft Corporation) -- C:\Windows\SysNative\api-ms-win-downlevel-normaliz-l1-1-0.dll
[2013.04.04 22:56:43 | 000,861,088 | ---- | M] (Oracle Corporation) -- C:\Windows\SysWow64\npdeployJava1.dll
[2013.04.04 22:56:43 | 000,782,240 | ---- | M] (Oracle Corporation) -- C:\Windows\SysWow64\deployJava1.dll
[2013.03.27 21:49:18 | 000,130,016 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Windows\SysNative\drivers\avipbb.sys
[2013.03.27 21:49:18 | 000,100,712 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Windows\SysNative\drivers\avgntflt.sys
[2013.03.27 21:49:18 | 000,028,600 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Windows\SysNative\drivers\avkmgr.sys
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
========== Files Created - No Company Name ==========
[2013.04.25 15:04:36 | 000,256,000 | ---- | C] () -- C:\Windows\PEV.exe
[2013.04.25 15:04:36 | 000,208,896 | ---- | C] () -- C:\Windows\MBR.exe
[2013.04.25 15:04:36 | 000,098,816 | ---- | C] () -- C:\Windows\sed.exe
[2013.04.25 15:04:36 | 000,080,412 | ---- | C] () -- C:\Windows\grep.exe
[2013.04.25 15:04:36 | 000,068,096 | ---- | C] () -- C:\Windows\zip.exe
[2013.04.24 22:51:45 | 000,036,145 | ---- | C] () -- C:\Users\ACER 5253\Desktop\023.jpg
[2013.04.24 22:51:37 | 000,040,592 | ---- | C] () -- C:\Users\ACER 5253\Desktop\026.jpg
[2013.04.24 22:51:29 | 000,007,549 | ---- | C] () -- C:\Users\ACER 5253\Desktop\Bild002.gif
[2013.04.24 22:51:20 | 000,033,780 | ---- | C] () -- C:\Users\ACER 5253\Desktop\024.jpg
[2013.04.24 22:51:07 | 000,032,842 | ---- | C] () -- C:\Users\ACER 5253\Desktop\Lieben045.jpg
[2013.04.24 22:42:22 | 000,012,482 | ---- | C] () -- C:\Users\ACER 5253\Desktop\index.jpg
[2013.04.24 22:41:50 | 000,009,263 | ---- | C] () -- C:\Users\ACER 5253\Desktop\images.jpg
[2013.04.23 21:35:37 | 000,000,000 | ---- | C] () -- C:\Users\ACER 5253\defogger_reenable
[2013.04.23 19:19:01 | 000,002,189 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot-S&D Start Center.lnk
[2013.04.16 19:12:57 | 000,030,895 | ---- | C] () -- C:\Windows\SysNative\drivers\Mixer.ini
[2013.04.14 19:29:38 | 000,002,519 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk
[2013.04.08 18:32:55 | 000,001,163 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
[2013.04.05 03:07:36 | 000,025,185 | ---- | C] () -- C:\Windows\SysWow64\ieuinit.inf
[2013.04.05 03:07:34 | 000,025,185 | ---- | C] () -- C:\Windows\SysNative\ieuinit.inf
[2013.02.26 22:40:53 | 000,012,288 | -H-- | C] () -- C:\Users\ACER 5253\photothumb.db
[2012.11.05 04:05:29 | 001,768,720 | ---- | C] () -- C:\Users\ACER 5253\IMG_0038.JPG
[2012.11.05 04:05:29 | 001,614,327 | ---- | C] () -- C:\Users\ACER 5253\IMG_0040.JPG
[2012.11.03 23:06:06 | 001,750,798 | ---- | C] () -- C:\Users\ACER 5253\IMG_0900.JPG
[2012.11.03 23:06:06 | 001,740,119 | ---- | C] () -- C:\Users\ACER 5253\IMG_0899.JPG
[2012.11.03 23:06:06 | 001,729,771 | ---- | C] () -- C:\Users\ACER 5253\IMG_0896.JPG
[2012.11.03 23:06:06 | 001,721,021 | ---- | C] () -- C:\Users\ACER 5253\IMG_0898.JPG
[2012.11.03 23:06:06 | 001,718,344 | ---- | C] () -- C:\Users\ACER 5253\IMG_0905.JPG
[2012.11.03 23:06:06 | 001,717,199 | ---- | C] () -- C:\Users\ACER 5253\IMG_0904.JPG
[2012.11.03 23:06:06 | 001,704,746 | ---- | C] () -- C:\Users\ACER 5253\IMG_0897.JPG
[2012.11.03 23:06:06 | 001,697,340 | ---- | C] () -- C:\Users\ACER 5253\IMG_0902.JPG
[2012.11.03 23:06:06 | 001,682,390 | ---- | C] () -- C:\Users\ACER 5253\IMG_0903.JPG
[2012.11.03 23:06:06 | 001,653,794 | ---- | C] () -- C:\Users\ACER 5253\IMG_0901.JPG
[2012.01.17 14:23:27 | 000,000,236 | ---- | C] () -- C:\Users\ACER 5253\AppData\Roaming\wklnhst.dat
[2011.11.21 21:48:37 | 000,000,425 | ---- | C] () -- C:\Windows\BRWMARK.INI
[2011.11.21 21:48:37 | 000,000,027 | ---- | C] () -- C:\Windows\BRPP2KA.INI
[2011.11.21 21:42:42 | 000,000,302 | ---- | C] () -- C:\Windows\Brpfx04a.ini
[2011.11.21 21:42:42 | 000,000,093 | ---- | C] () -- C:\Windows\brpcfx.ini
[2011.11.21 21:40:01 | 000,000,000 | ---- | C] () -- C:\Windows\brdfxspd.dat
[2011.11.18 19:52:20 | 000,000,952 | -HS- | C] () -- C:\Windows\SysWow64\KGyGaAvL.sys
[2011.11.04 17:57:24 | 000,000,000 | ---- | C] () -- C:\Windows\ativpsrm.bin
========== ZeroAccess Check ==========
[2009.07.14 06:55:00 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini
[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64
[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
"" = C:\Windows\SysNative\shell32.dll -- [2012.06.09 07:43:10 | 014,172,672 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shell32.dll -- [2012.06.09 06:41:00 | 012,873,728 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\fastprox.dll -- [2009.07.14 03:40:51 | 000,909,312 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2010.11.20 05:19:04 | 000,606,208 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\wbemess.dll -- [2009.07.14 03:41:56 | 000,505,856 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
========== Alternate Data Streams ==========
@Alternate Data Stream - 135 bytes -> C:\ProgramData\Temp:E36F5B57
< End of report > Code:
OTL Extras logfile created on: 25.04.2013 18:04:27 - Run 2
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\ACER 5253\Downloads
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.10.9200.16540)
Locale: 00000407 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy
2,73 Gb Total Physical Memory | 1,71 Gb Available Physical Memory | 62,57% Memory free
5,46 Gb Paging File | 4,09 Gb Available in Paging File | 74,96% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 282,99 Gb Total Space | 201,29 Gb Free Space | 71,13% Space Free | Partition Type: NTFS
Computer Name: ACER5253-PC | User Name: ACER 5253 | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
========== Extra Registry (SafeList) ==========
========== File Associations ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.html[@ = FirefoxHTML] -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation)
.url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation)
.html [@ = FirefoxHTML] -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation)
[HKEY_USERS\S-1-5-21-661073328-3994563355-608488981-1000\SOFTWARE\Classes\<extension>]
.html [@ = FirefoxHTML] -- C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation)
========== Shell Spawning ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [edit] -- Reg Error: Key error.
htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [print] -- rundll32.exe %SystemRoot%\system32\mshtml.dll,PrintHTML "%1" (Microsoft Corporation)
http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
https [open] -- "C:\Program Files (x86)\Mozilla Firefox\firefox.exe" -osint -url "%1" (Mozilla Corporation)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation)
InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" ()
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" ()
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- "C:\Program Files\Internet Explorer\iexplore.exe" (Microsoft Corporation)
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [edit] -- Reg Error: Key error.
htmlfile [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
htmlfile [opennew] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
http [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
https [open] -- "C:\Program Files (x86)\Mozilla Firefox\firefox.exe" -osint -url "%1" (Mozilla Corporation)
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [AddToPlaylistVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --playlist-enqueue "%1" ()
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [PlayWithVLC] -- "C:\Program Files (x86)\VideoLAN\VLC\vlc.exe" --started-from-file --no-playlist-enqueue "%1" ()
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Applications\iexplore.exe [open] -- "C:\Program Files\Internet Explorer\iexplore.exe" %1 (Microsoft Corporation)
CLSID\{871C5380-42A0-1069-A2EA-08002B30309D} [OpenHomePage] -- Reg Error: Value error.
========== Security Center Settings ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1
"FirewallDisableNotify" = 0
"AntiVirusDisableNotify" = 0
"UpdatesDisableNotify" = 0
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = 28 4D B2 76 41 04 CA 01 [binary data]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
========== System Restore Settings ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"DisableSR" = 0
========== Firewall Settings ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall]
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile]
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile]
[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile]
[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\StandardProfile]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
========== Authorized Applications List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe" = C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe:*:Enabled:Spybot-S&D 2 Tray Icon -- (Safer-Networking Ltd.)
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe" = C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe:*:Enabled:Spybot-S&D 2 Scanner Service -- (Safer-Networking Ltd.)
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe" = C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe:*:Enabled:Spybot-S&D 2 Updater -- (Safer-Networking Ltd.)
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe" = C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe:*:Enabled:Spybot-S&D 2 Background update service -- (Safer-Networking Ltd.)
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe" = C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe:*:Enabled:Spybot-S&D 2 Tray Icon -- (Safer-Networking Ltd.)
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe" = C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe:*:Enabled:Spybot-S&D 2 Scanner Service -- (Safer-Networking Ltd.)
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe" = C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe:*:Enabled:Spybot-S&D 2 Updater -- (Safer-Networking Ltd.)
"C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe" = C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe:*:Enabled:Spybot-S&D 2 Background update service -- (Safer-Networking Ltd.)
========== Vista Active Open Ports Exception List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{07C0B29B-5F31-48BE-BA60-7344E340B5B4}" = lport=rpc-epmap | protocol=6 | dir=in | svc=rpcss | name=@firewallapi.dll,-28539 |
"{133DBA6E-38C2-4061-AAAD-00406D558BE0}" = lport=rpc | protocol=6 | dir=in | svc=spooler | app=%systemroot%\system32\spoolsv.exe |
"{1509F1AF-59DF-4260-AF6B-99A3C8197ED0}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{1CBE3BF4-64BF-4203-B44D-15A00E2F577A}" = rport=10243 | protocol=6 | dir=out | app=system |
"{1E90A8CF-7B79-48C7-BA51-36936D935E34}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{2C477880-8C07-4677-A731-A8480B256A7F}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{4C3DC845-5A1F-45E2-92E1-8CA9DCE13385}" = lport=445 | protocol=6 | dir=in | app=system |
"{4EC3DF6A-06A8-4FF6-84E1-3D5F91DCDA36}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{55B5FDDD-7242-405F-A963-2FF1BDF10721}" = rport=445 | protocol=6 | dir=out | app=system |
"{5613D96F-27AB-4995-B379-90487AE616D5}" = lport=139 | protocol=6 | dir=in | app=system |
"{5AB39441-529B-4C99-881C-DE864CACBA27}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe |
"{5B7677E5-CDDC-4671-B488-F809FE379CFD}" = rport=139 | protocol=6 | dir=out | app=system |
"{5DE62171-2FA5-4C00-BAFA-47F405A8776A}" = rport=138 | protocol=17 | dir=out | app=system |
"{85F4C852-3907-400A-A69E-1F71064BF90B}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{9D59C4ED-893B-452A-B93A-B951E3654B22}" = lport=138 | protocol=17 | dir=in | app=system |
"{A86B845F-46F1-4A4C-8BBB-C635441221D7}" = lport=137 | protocol=17 | dir=in | app=system |
"{B46FE14B-A010-4A3A-852C-BF0F810A5E19}" = lport=10243 | protocol=6 | dir=in | app=system |
"{D44EA264-4AD0-42FA-B227-EC62043A812C}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe |
"{DBD88D76-7710-42F0-B948-A1F14B9CFA8A}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe |
"{E70EB191-CBAE-433E-AC68-EE0173C51755}" = rport=137 | protocol=17 | dir=out | app=system |
"{FEC154A7-7B38-40C7-90DA-F70C19B9AB5E}" = lport=2869 | protocol=6 | dir=in | app=system |
========== Vista Active Application Exception List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{0201957F-22AF-4787-8314-D0F4939E7EE7}" = protocol=17 | dir=in | app=c:\program files (x86)\teamviewer\version8\teamviewer.exe |
"{03EF4071-5674-4E91-AA64-D2B6381DAAB2}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{03FC83C7-5F3E-42FE-94AA-7F2345077443}" = dir=in | app=c:\program files (x86)\acer\clear.fi\mvp\clear.fiagent.exe |
"{050ACF9A-C393-4012-9CA6-0DE858316012}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{0702FE44-1AFC-482B-8191-F0E6A3A39AB5}" = protocol=6 | dir=in | app=c:\program files (x86)\teamviewer\version8\teamviewer_service.exe |
"{09773290-DA77-4684-945E-C64E73C3ABA1}" = protocol=58 | dir=in | name=@firewallapi.dll,-28545 |
"{24958058-21DC-441F-B221-1A14D37B6FE5}" = protocol=17 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
"{28970A55-5E4F-478B-9212-AC736869A435}" = dir=in | app=c:\program files (x86)\acer\clear.fi\mvp\.\kernel\dmr\dmrengine.exe |
"{37512B6D-22BF-41C2-B77B-50EE70509526}" = protocol=6 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe |
"{454B48F3-0953-41A7-9F51-FBBCD53D64E3}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{49F7F48B-0709-4337-9711-A613D261EF00}" = protocol=17 | dir=in | app=c:\program files (x86)\teamviewer\version8\teamviewer_service.exe |
"{50061AC2-1332-4001-9DCC-14EAA2E94662}" = protocol=17 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe |
"{56295C30-A299-4251-A10C-4A888FFB1FE0}" = protocol=6 | dir=out | app=system |
"{56B83162-D760-4A46-8C83-D11D9F1DC7F0}" = dir=in | app=c:\program files (x86)\acer\clear.fi\mvp\clear.fi.exe |
"{5727F47C-43B4-404C-B4CE-4239EA461116}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe |
"{6002A672-0EA9-46EB-8C3D-0489F8123312}" = protocol=1 | dir=in | name=@firewallapi.dll,-28543 |
"{69DE4B57-51A1-4804-B081-9DC4F55CC677}" = dir=in | app=c:\program files (x86)\acer\clear.fi\mvp\.\kernel\dmr\dmrengine.exe |
"{7C810439-DCCF-44B4-8E2D-1A9CAF80BCF8}" = protocol=6 | dir=in | app=c:\program files (x86)\teamviewer\version8\teamviewer.exe |
"{855D22A1-E287-48C2-8200-270C464346F0}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{921C2B3F-D005-49DF-9663-348E0E58CB6F}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{93601BE4-4AD8-4405-8A6A-E3D0F0C5CD9E}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{94FDD36E-BC92-4172-A4B4-BA9145E58420}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe |
"{9D45C406-2947-461F-99AD-C370563BCAD1}" = dir=in | app=c:\program files (x86)\itunes\itunes.exe |
"{9D7828C7-786F-4A7F-B870-3C1660C45B87}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{A0C575F4-ED0B-428B-A2C4-BE84C768D930}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe |
"{A0D17912-09D6-471A-81AC-E2925F5E165E}" = protocol=6 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe |
"{A5F7BAD3-D1EB-40DA-9A0A-A899D81F92A0}" = protocol=1 | dir=out | name=@firewallapi.dll,-28544 |
"{BD8B6D26-D3A2-4596-A113-B2868C78B5BB}" = dir=in | app=c:\program files (x86)\finaltorrent\finaltorrent.exe |
"{CE939640-D9DF-4AB3-9BB2-89F810CC4FEC}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe |
"{CFD6525F-6169-4B45-A0A9-84219811B982}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{D1E82436-5D98-4870-95AE-330AB2601F22}" = dir=in | app=c:\program files (x86)\acer\clear.fi\mvp\.\kernel\clml\clmlsvc.exe |
"{D39A445E-4639-45D6-8092-0D7B62CDE8B1}" = dir=in | app=c:\program files (x86)\common files\apple\apple application support\webkit2webprocess.exe |
"{DCF714DE-01D6-4FD5-BE38-A045165369E1}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe |
"{E65A60D4-8CA6-44EC-8332-FFC3BE43A6ED}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe |
"{F048686C-1E7D-47B1-A9A3-6F7BD52001E8}" = dir=in | app=c:\program files (x86)\acer\clear.fi\mvp\.\kernel\dmr\dmrengine.exe |
"{F0839961-BE3B-48D5-B2D3-28A73930D016}" = dir=in | app=c:\program files (x86)\finaltorrent\ftcheckforupdates.exe |
"{F67F82A5-56D9-4759-9BA9-F45743C4985D}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe |
"{F9AC9E5D-0BE3-4C96-916B-26D260702BBC}" = protocol=58 | dir=out | name=@firewallapi.dll,-28546 |
"TCP Query User{6107EAAA-3C63-4E33-86EC-C178A5ABDD69}C:\games\world_of_tanks\worldoftanks.exe" = protocol=6 | dir=in | app=c:\games\world_of_tanks\worldoftanks.exe |
"TCP Query User{6739B211-31E8-49AC-ABD8-F8D472182BC5}C:\games\world_of_tanks\wotlauncher.exe" = protocol=6 | dir=in | app=c:\games\world_of_tanks\wotlauncher.exe |
"TCP Query User{FE4315CB-ECE1-4532-AB2D-B649AFE60838}C:\program files (x86)\icq7.7\icq.exe" = protocol=6 | dir=in | app=c:\program files (x86)\icq7.7\icq.exe |
"UDP Query User{935CC34D-5B91-44A3-8E0B-B1801A39ED0D}C:\games\world_of_tanks\wotlauncher.exe" = protocol=17 | dir=in | app=c:\games\world_of_tanks\wotlauncher.exe |
"UDP Query User{A50DD400-4011-4900-A419-2A9BFA9FFBB8}C:\games\world_of_tanks\worldoftanks.exe" = protocol=17 | dir=in | app=c:\games\world_of_tanks\worldoftanks.exe |
"UDP Query User{C986506E-759F-4F38-9E40-E862AA5EE2FC}C:\program files (x86)\icq7.7\icq.exe" = protocol=17 | dir=in | app=c:\program files (x86)\icq7.7\icq.exe |
========== HKEY_LOCAL_MACHINE Uninstall List ==========
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{0225AD21-F3E2-4916-BFF3-65D3F9052582}" = iTunes
"{0E3DAF3D-FF69-345A-A99E-1FED304CA083}" = Microsoft .NET Framework 4 Client Profile DEU Language Pack
"{2F72F540-1F60-4266-9506-952B21D6640D}" = Apple Mobile Device Support
"{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148
"{4F125E8B-3B58-B80D-51E5-4FD110D1EF58}" = ATI Catalyst Install Manager
"{56D8EE9D-5411-4DEE-6CFB-C720A07FDCAB}" = ccc-utility64
"{5850E3A0-1096-5C2D-C296-D9C2B00E8855}" = AMD Fuel
"{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161
"{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}" = Bonjour
"{8220EEFE-38CD-377E-8595-13398D740ACE}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{EE24C28A-6BE1-5138-7CC7-854E9EB3757C}" = WMV9/VC-1 Video Playback
"{F5B09CFD-F0B2-36AF-8DF4-1DF6B63FC7B4}" = Microsoft .NET Framework 4 Client Profile
"CCleaner" = CCleaner
"CNXT_AUDIO_HDA" = Conexant HD Audio
"Elantech" = ETDWare PS/2-X64 8.0.6.0_WHQL
"Microsoft .NET Framework 4 Client Profile" = Microsoft .NET Framework 4 Client Profile
"Microsoft .NET Framework 4 Client Profile DEU Language Pack" = Microsoft .NET Framework 4 Client Profile DEU Language Pack
"TeamSpeak 3 Client" = TeamSpeak 3 Client
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"_{54DB13F1-0CE0-4BAB-BD5F-7DE150C043C8}" = WordPerfect Office X3
"{0959BCF5-05D5-9F2B-0965-1A27A533C492}" = CCC Help Polish
"{0B61BBD5-DA3C-409A-8730-0C3DC3B0F270}" = Backup Manager V3
"{1292DD8E-474E-7D7C-5FF9-B4A7639D435A}" = CCC Help Czech
"{1EAC1D02-C6AC-4FA6-9A44-96258C37C812}_is1" = World of Tanks
"{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
"{2637C347-9DAD-11D6-9EA2-00055D0CA761}" = clear.fi
"{26A24AE4-039D-4CA4-87B4-2F83216022F0}" = Java(TM) 6 Update 22
"{287ECFA4-719A-2143-A09B-D6A12DE54E40}" = Acrobat.com
"{2D234FAE-7FE2-5002-2B63-8CDEA2BD0B60}" = CCC Help Hungarian
"{3108C217-BE83-42E4-AE9E-A56A2A92E549}" = Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Driver
"{35168310-7EE6-AD4E-84F3-73960642561C}" = Catalyst Control Center Localization All
"{366234D5-16FC-9EA2-5881-08B8CC44D36D}" = CCC Help Greek
"{37AAE8BF-DC98-1937-CDE9-9CE61833A252}" = CCC Help Japanese
"{39D0E034-1042-4905-BECB-5502909FCB7C}" = Microsoft Works
"{3A915C0E-0168-0E43-B5A4-949136DF0C33}" = Catalyst Control Center Profiles Mobile
"{3DB0448D-AD82-4923-B305-D001E521A964}" = Acer ePower Management
"{4286716B-1287-48E7-9078-3DC8248DBA96}" = OpenOffice.org 3.3
"{43AAE145-83CF-4C96-9A5E-756CEFCE879F}" = clear.fi Client
"{45C56AA7-ED1B-4800-A97F-EDDF3F3520B1}" = Apple Application Support
"{45CBA375-6ECC-EA3C-5EC3-E06A16DFD9A8}" = CCC Help Thai
"{477878A3-24BC-98D5-B447-417E4FF30218}" = CCC Help Korean
"{4968622A-4D3F-489E-9ACE-5FEC4CC0BDE3}" = MediaEspresso
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{4E76FF7E-AEBA-4C87-B788-CD47E5425B9D}" = Skype™ 6.1
"{4EF87BA4-A1C8-818D-81B4-A211B8D817C7}" = CCC Help Portuguese
"{508457D2-6156-EE57-2F7D-8DCB90B2BCF2}" = CCC Help Russian
"{52D36E31-AE4A-8E99-8B6B-F04A306AC4E7}" = CCC Help Chinese Standard
"{54D986DF-0B7F-244D-9A36-A52CF36D8633}" = CCC Help Norwegian
"{54DB13F1-0CE0-4BAB-BD5F-7DE150C043C8}" = WordPerfect Office X3
"{58F4D244-314F-4D26-B5EF-C28AB32E22CB}_is1" = Acer GameZone Console
"{5A4D2D53-D233-4FAE-FB7D-9101B46C9F53}" = CCC Help Italian
"{5A8EBCAE-71F2-F101-E86E-8E128A47401C}" = CCC Help French
"{5D43581B-77CC-CA01-5D4F-34215870EBE8}" = CCC Help Swedish
"{624B8C52-419F-48BF-704F-0DE2BEC1E323}" = Catalyst Control Center InstallProxy
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
"{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}" = Apple Software Update
"{7F811A54-5A09-4579-90E1-C93498E230D9}" = Acer eRecovery Management
"{7FDDD338-24AD-E75E-E0A7-82CDAE803378}" = CCC Help Danish
"{823FB107-94F5-405C-8B3D-6F6E66C3A310}" = Catalyst Control Center - Branding
"{837b34e3-7c30-493c-8f6a-2b0f04e2912c}" = Microsoft Visual C++ 2005 Redistributable
"{90120000-0020-0407-0000-0000000FF1CE}" = Compatibility Pack für 2007 Office System
"{903E5724-3250-163F-017F-33030AAEA16B}" = CCC Help Spanish
"{95140000-0070-0000-0000-0000000FF1CE}" = Microsoft Office 2010
"{96AE7E41-E34E-47D0-AC07-1091A8127911}" = Realtek USB 2.0 Card Reader
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{9C0E3DA8-408A-39D3-855D-3440E38F3D83}" = ccc-core-static
"{9E9AED59-2E4B-C3BB-D036-9392A3898E20}" = CCC Help English
"{9EC9754D-CA34-4293-B5DB-3BD245A88A43}" = ArcSoft MediaImpression
"{A0382E3C-7384-429A-9BFA-AF5888E5A193}" = Acer Crystal Eye Webcam
"{A2BCA9F1-566C-4805-97D1-7FDC93386723}" = Adobe AIR
"{A3FEC306-FBFF-4B0D-95B9-F9C67C65079E}" = Brother MFL-Pro Suite
"{AC76BA86-7AD7-FFFF-7B44-A91000000001}" = Adobe Reader 9.5.4 MUI
"{B4092C6D-E886-4CB2-BA68-FE5A99D31DE7}_is1" = Spybot - Search & Destroy
"{B906C11A-D193-4143-9FA7-E2EE8A5A8F21}" = clear.fi
"{C5398A89-516C-4DAF-BA07-EE7949090E56}" = Windows Live Mesh ActiveX control for remote connections
"{CABA6C97-8680-D8C4-7DAA-A8D1CC230370}" = Catalyst Control Center Graphics Previews Common
"{D3D5C4E8-040F-4C6F-8105-41D43CF94F44}" = NTI Media Maker 9
"{DB9AA311-9119-5466-BE82-6CD37304FE42}" = CCC Help Dutch
"{E15555E9-386B-B748-7C94-4F2591ADCB63}" = CCC Help Chinese Traditional
"{EE171732-BEB4-4576-887D-CB62727F01CA}" = Acer Updater
"{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219
"{F5FCABF0-E2AF-6A70-3971-67C8B1310480}" = CCC Help Finnish
"{FEE720F0-7A20-A61E-D56B-90DB02655B78}" = CCC Help German
"Acer Registration" = Acer Registration
"Acer Screensaver" = Acer ScreenSaver
"Acer Welcome Center" = Welcome Center
"Adobe AIR" = Adobe AIR
"Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin
"Amazon MP3-Downloader" = Amazon MP3-Downloader 1.0.17
"Avira AntiVir Desktop" = Avira Free Antivirus
"FinalTorrent_is1" = FinalTorrent 2011
"Free YouTube to MP3 Converter_is1" = Free YouTube to MP3 Converter version 3.12.0.128
"Identity Card" = Identity Card
"InstallShield_{0B61BBD5-DA3C-409A-8730-0C3DC3B0F270}" = Acer Backup Manager
"InstallShield_{2637C347-9DAD-11D6-9EA2-00055D0CA761}" = clear.fi
"InstallShield_{A0382E3C-7384-429A-9BFA-AF5888E5A193}" = Acer Crystal Eye Webcam
"InstallShield_{D3D5C4E8-040F-4C6F-8105-41D43CF94F44}" = NTI Media Maker 9
"LManager" = Launch Manager
"Malwarebytes' Anti-Malware_is1" = Malwarebytes Anti-Malware Version 1.70.0.1100
"Minecraft Cracked" = Minecraft Cracked
"Mozilla Firefox 20.0.1 (x86 de)" = Mozilla Firefox 20.0.1 (x86 de)
"MozillaMaintenanceService" = Mozilla Maintenance Service
"PhotoScape" = PhotoScape
"TeamViewer 8" = TeamViewer 8
"Trusted Software Assistant_is1" = File Type Assistant
"VLC media player" = VLC media player 1.1.9
========== Last 20 Event Log Errors ==========
[ Spybot - Search and Destroy Events ]
Error - 23.04.2013 14:40:08 | Computer Name = ACER5253-PC | Source = SDCleaner | ID = 100
Description = LoadCleaningInstructions
[ System Events ]
Error - 25.04.2013 12:00:01 | Computer Name = ACER5253-PC | Source = Service Control Manager | ID = 7009
Description = Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst
AMD FUEL Service erreicht.
Error - 25.04.2013 12:00:01 | Computer Name = ACER5253-PC | Source = Service Control Manager | ID = 7000
Description = Der Dienst "AMD FUEL Service" wurde aufgrund folgenden Fehlers nicht
gestartet: %%1053
< End of report > |