Nataliee | 24.08.2013 19:49 | FRST Logfile:
FRST Logfile: Code:
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 24-08-2013 01
Ran by Susanne (administrator) on 24-08-2013 20:35:13
Running from C:\Users\Susanne\Desktop\Downloads
Microsoft® Windows Vista™ Home Premium Service Pack 2 (X86) OS Language: English(US)
Internet Explorer Version 9
Boot Mode: Normal
==================== Processes (Whitelisted) ===================
(Microsoft Corporation) c:\Program Files\Microsoft Security Client\MsMpEng.exe
(Trusteer Ltd.) C:\Program Files\Trusteer\Rapport\bin\RapportMgmtService.exe
(ATI Technologies Inc.) C:\Windows\system32\Ati2evxx.exe
(Microsoft Corporation) C:\Windows\system32\SLsvc.exe
(ATI Technologies Inc.) C:\Windows\system32\Ati2evxx.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\sched.exe
(ABBYY) C:\Program Files\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avguard.exe
(Acer Incorporated) C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe
(EgisTec Inc.) C:\Program Files\EgisTec\MyWinLocker 3\x86\MWLService.exe
(NewTech Infosystems, Inc.) C:\Program Files\NewTech Infosystems\Acer Backup Manager\IScheduleSvc.exe
(NewTech Infosystems, Inc.) C:\Program Files\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe
(Trusteer Ltd.) C:\Program Files\Trusteer\Rapport\bin\RapportService.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
() C:\Windows\PLFSetI.exe
(Synaptics, Inc.) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Safer-Networking Ltd.) C:\Program Files\Spybot - Search & Destroy 2\SDUpdSvc.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
(Microsoft Corporation) C:\Windows\System32\mobsync.exe
(Safer-Networking Ltd.) C:\Program Files\Spybot - Search & Destroy 2\SDUpdate.exe
(Safer-Networking Ltd.) C:\Program Files\Spybot - Search & Destroy 2\SDWSCSvc.exe
(Advanced Micro Devices Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avshadow.exe
(Microsoft Corporation) c:\Program Files\Microsoft Security Client\NisSrv.exe
(Microsoft Corporation) C:\Program Files\Windows Media Player\wmpnscfg.exe
(Dritek System Inc.) C:\Program Files\Launch Manager\LManager.exe
(NewTech Infosystems, Inc.) C:\Program Files\NewTech Infosystems\Acer Backup Manager\BackupManagerTray.exe
(Acer Incorporated) C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe
(EgisTec Inc.) C:\Program Files\EgisTec Egis Software Update\EgisUpdate.exe
(EgisTec Inc.) C:\Program Files\EgisTec\MyWinLocker 3\x86\mwlDaemon.exe
(Safer-Networking Ltd.) C:\Program Files\Spybot - Search & Destroy 2\SDTray.exe
(Oracle Corporation) C:\Program Files\Common Files\Java\Java Update\jusched.exe
(sonix) C:\Windows\PLFSetL.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe
(Avira Operations GmbH & Co. KG) C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
(Microsoft Corporation) C:\Windows\ehome\ehtray.exe
(Realtek Semiconductor Corp.) C:\Users\Susanne\AppData\Local\Temp\RtkBtMnt.exe
(Microsoft Corporation) C:\Windows\ehome\ehmsas.exe
(ATI Technologies Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(Synaptics, Inc.) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\plugin-container.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\plugin-container.exe
(Adobe Systems, Inc.) C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_11_8_800_94.exe
(Adobe Systems, Inc.) C:\Windows\system32\Macromed\Flash\FlashPlayerPlugin_11_8_800_94.exe
(Safer-Networking Ltd.) C:\Program Files\Spybot - Search & Destroy 2\SDFSSvc.exe
(Farbar) C:\Users\Susanne\Desktop\Downloads\FRST(1).exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [Windows Defender] - C:\Program Files\Windows Defender\MSASCui.exe [1008184 2008-01-21] (Microsoft Corporation)
HKLM\...\Run: [StartCCC] - C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [61440 2009-03-18] (Advanced Micro Devices, Inc.)
HKLM\...\Run: [RtHDVCpl] - C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [6957600 2009-03-11] (Realtek Semiconductor)
HKLM\...\Run: [Skytel] - C:\Program Files\Realtek\Audio\HDA\Skytel.exe [1833504 2009-03-11] (Realtek Semiconductor Corp.)
HKLM\...\Run: [PLFSetI] - C:\Windows\PLFSetI.exe [200704 2011-06-22] ()
HKLM\...\Run: [SynTPEnh] - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [1410344 2008-12-05] (Synaptics, Inc.)
HKLM\...\Run: [LManager] - C:\Program Files\Launch Manager\LManager.exe [866824 2009-02-19] (Dritek System Inc.)
HKLM\...\Run: [BackupManagerTray] - C:\Program Files\NewTech Infosystems\Acer Backup Manager\BackupManagerTray.exe [249600 2009-04-01] (NewTech Infosystems, Inc.)
HKLM\...\Run: [Acer ePower Management] - C:\Program Files\Acer\Acer ePower Management\ePowerTray.exe [686624 2009-02-06] (Acer Incorporated)
HKLM\...\Run: [EgisTecLiveUpdate] - C:\Program Files\EgisTec Egis Software Update\EgisUpdate.exe [199464 2008-10-27] (EgisTec Inc.)
HKLM\...\Run: [mwlDaemon] - C:\Program Files\EgisTec\MyWinLocker 3\x86\mwlDaemon.exe [346672 2008-10-27] (EgisTec Inc.)
HKLM\...\Run: [Adobe ARM] - C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated)
HKLM\...\Run: [SDTray] - C:\Program Files\Spybot - Search & Destroy 2\SDTray.exe [3825176 2012-11-13] (Safer-Networking Ltd.)
HKLM\...\Run: [SunJavaUpdateSched] - C:\Program Files\Common Files\Java\Java Update\jusched.exe [253816 2013-03-12] (Oracle Corporation)
HKLM\...\Run: [PLFSetL] - C:\Windows\PLFSetL.exe [94208 2008-07-03] (sonix)
HKLM\...\Run: [MSC] - c:\Program Files\Microsoft Security Client\msseces.exe [995176 2013-06-20] (Microsoft Corporation)
HKLM\...\Run: [avgnt] - C:\Program Files\Avira\AntiVir Desktop\avgnt.exe [345144 2013-06-20] (Avira Operations GmbH & Co. KG)
Winlogon\Notify\!SASWinLogon: C:\Program Files\SUPERAntiSpyware\SASWINLO.DLL [X]
Winlogon\Notify\SDWinLogon: SDWinLogon.dll [X]
HKCU\...\Run: [ehTray.exe] - C:\Windows\ehome\ehTray.exe [125952 2008-01-21] (Microsoft Corporation)
HKCU\...\Run: [Spybot-S&D Cleaning] - C:\Program Files\Spybot - Search & Destroy 2\SDCleaner.exe [3713032 2012-11-13] (Safer-Networking Ltd.)
MountPoints2: {23d8f901-6543-11e2-bf11-001f16a62c49} - G:\LaunchU3.exe -a
HKU\Default\...\Run: [WindowsWelcomeCenter] - C:\Windows\System32\oobefldr.dll [ 2009-04-11] (Microsoft Corporation)
HKU\Default\...\Run: [ProductReg] - C:\Program Files\Acer\WR_PopUp\ProductReg.exe [ 2008-11-17] (Acer)
HKU\Default\...\RunOnce: [ScrSav] - C:\Windows\Screensavers\Acer\run_Acer.exe [ 2009-01-21] (TODO: <Company name>)
HKU\Default User\...\Run: [WindowsWelcomeCenter] - C:\Windows\System32\oobefldr.dll [ 2009-04-11] (Microsoft Corporation)
HKU\Default User\...\Run: [ProductReg] - C:\Program Files\Acer\WR_PopUp\ProductReg.exe [ 2008-11-17] (Acer)
HKU\Default User\...\RunOnce: [ScrSav] - C:\Windows\Screensavers\Acer\run_Acer.exe [ 2009-01-21] (TODO: <Company name>)
HKU\Guest\...\Run: [WindowsWelcomeCenter] - C:\Windows\System32\oobefldr.dll [ 2009-04-11] (Microsoft Corporation)
HKU\Guest\...\Run: [ProductReg] - C:\Program Files\Acer\WR_PopUp\ProductReg.exe [ 2008-11-17] (Acer)
Startup: C:\Users\Susanne\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk
ShortcutTarget: Dropbox.lnk -> C:\Users\Susanne\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = iGoogle Redirect
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = Acer | explore beyond limits
HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = Upgrade to Google Chrome
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = iGoogle Redirect
URLSearchHook: (No Name) - {40c3cc16-7269-4b32-9531-17f2950fb06f} - No File
URLSearchHook: (No Name) - {fc2b76fc-2132-4d80-a9a3-1f5c6e49066b} - No File
URLSearchHook: (No Name) - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - No File
URLSearchHook: (No Name) - {81017EA9-9AA8-4A6A-9734-7AF40E7D593F} - No File
SearchScopes: HKLM - DefaultScope {afdbddaa-5d3f-42ee-b79c-185a7020515b} URL = hxxp://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT2786678
SearchScopes: HKLM - {afdbddaa-5d3f-42ee-b79c-185a7020515b} URL = hxxp://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT2786678
SearchScopes: HKCU - DefaultScope {DECA3892-BA8F-44b8-A993-A466AD694AE4} URL = hxxp://de.search.yahoo.com/search?p={searchTerms}
SearchScopes: HKCU - {67A2568C-7A0A-4EED-AECC-B5405DE63B64} URL =
SearchScopes: HKCU - {afdbddaa-5d3f-42ee-b79c-185a7020515b} URL = hxxp://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT2786678
SearchScopes: HKCU - {CF539A47-E60D-4598-AEA9-DEC6C6D43C29} URL = hxxp://websearch.ask.com/redirect?client=ie&tb=FTB&o=41648107&src=kw&q={searchTerms}&locale=&apn_ptnrs=9D&apn_dtid=YYYYYYYYGB&apn_uid=56C87C83-0AF5-4ECB-99F9-06F748DA24EF&apn_sauid=20EE6725-DEC9-4BA3-B254-E9341A7087AC
SearchScopes: HKCU - {DECA3892-BA8F-44b8-A993-A466AD694AE4} URL = hxxp://de.search.yahoo.com/search?p={searchTerms}
BHO: No Name - {02478D38-C3F9-4efb-9B51-7695ECA05670} - No File
BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy 2\SDHelper.dll (Safer-Networking Ltd.)
BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files\Windows Live\Companion\companioncore.dll (Microsoft Corporation)
BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~1\MICROS~3\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO: uTorrentBar Toolbar - {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} - C:\Program Files\uTorrentBar\prxtbuTor.dll (Conduit Ltd.)
BHO: Free Download Manager - {CC59E0F9-7E43-44FA-9FAA-8377850BF205} - C:\Program Files\Free Download Manager\iefdm2.dll (FreeDownloadManager.ORG)
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Toolbar: HKLM - uTorrentBar Toolbar - {bf7380fa-e3b4-4db2-af3e-9d8783a45bfc} - C:\Program Files\uTorrentBar\prxtbuTor.dll (Conduit Ltd.)
Toolbar: HKLM - No Name - {ba696155-d96e-4281-b467-0367a0456474} - No File
Toolbar: HKCU -No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0031-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_31-windows-i586.cab
Handler: ms-itss - {0A9007C0-4076-11D3-8789-0000F8105754} - c:\Program Files\Common Files\Microsoft Shared\Information Retrieval\msitss.dll (Microsoft Corporation)
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL (Skype Technologies)
ShellExecuteHooks: - {5AE067D3-9AFB-48E0-853A-EBB7F4A000DA} - No File [ ]
Winsock: Catalog9 01 C:\Program Files\Avira\AntiVir Desktop\avsda.dll [258104] (Avira Operations GmbH & Co. KG)
Winsock: Catalog9 02 C:\Program Files\Avira\AntiVir Desktop\avsda.dll [258104] (Avira Operations GmbH & Co. KG)
Winsock: Catalog9 03 C:\Program Files\Avira\AntiVir Desktop\avsda.dll [258104] (Avira Operations GmbH & Co. KG)
Winsock: Catalog9 04 C:\Program Files\Avira\AntiVir Desktop\avsda.dll [258104] (Avira Operations GmbH & Co. KG)
Winsock: Catalog9 05 C:\Program Files\Avira\AntiVir Desktop\avsda.dll [258104] (Avira Operations GmbH & Co. KG)
Winsock: Catalog9 06 C:\Program Files\Avira\AntiVir Desktop\avsda.dll [258104] (Avira Operations GmbH & Co. KG)
Winsock: Catalog9 07 C:\Program Files\Avira\AntiVir Desktop\avsda.dll [258104] (Avira Operations GmbH & Co. KG)
Winsock: Catalog9 08 C:\Program Files\Avira\AntiVir Desktop\avsda.dll [258104] (Avira Operations GmbH & Co. KG)
Winsock: Catalog9 30 C:\Program Files\Avira\AntiVir Desktop\avsda.dll [258104] (Avira Operations GmbH & Co. KG)
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.20.1
FireFox:
========
FF ProfilePath: C:\Users\Susanne\AppData\Roaming\Mozilla\Firefox\Profiles\pjihvbmb.default
FF user.js: detected! => C:\Users\Susanne\AppData\Roaming\Mozilla\Firefox\Profiles\pjihvbmb.default\user.js
FF SelectedSearchEngine: TVdigitalGratis Customized Web Search
FF Homepage: hxxp://de.yahoo.com/
FF Keyword.URL: hxxp://search.conduit.com/ResultsExt.aspx?ctid=CT2304661&SearchSource=2&q=
FF NetworkProxy: "type", 0
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF32_11_8_800_94.dll ()
FF Plugin: @checkpoint.com/FFApi - C:\Program Files\CheckPoint\ZAForceField\TrustChecker\bin\npFFApi.dll No File
FF Plugin: @Google.com/GoogleEarthPlugin - C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF Plugin: @java.com/DTPlugin,version=10.25.2 - C:\Windows\system32\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.25.2 - C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.20513.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~1\MICROS~3\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~1\MICROS~3\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin: @microsoft.com/WLPG,version=15.4.3538.0513 - C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin: @microsoft.com/WLPG,version=15.4.3555.0308 - C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin: @microsoft.com/WPF,version=3.5 - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll (Microsoft Corporation)
FF Plugin: @tools.google.com/Google Update;version=3 - C:\Program Files\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 - C:\Program Files\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.)
FF Plugin: @videolan.org/vlc,version=2.0.1 - C:\Program Files\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin: Adobe Reader - C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF SearchPlugin: C:\Users\Susanne\AppData\Roaming\Mozilla\Firefox\Profiles\pjihvbmb.default\searchplugins\askcom.xml
FF SearchPlugin: C:\Users\Susanne\AppData\Roaming\Mozilla\Firefox\Profiles\pjihvbmb.default\searchplugins\BackupManager.list
FF Extension: TVdigitalGratis Community Toolbar - C:\Users\Susanne\AppData\Roaming\Mozilla\Firefox\Profiles\pjihvbmb.default\Extensions\{06b74428-9750-4f55-8df1-6ad17aef4595}
FF Extension: HomeTab - C:\Users\Susanne\AppData\Roaming\Mozilla\Firefox\Profiles\pjihvbmb.default\Extensions\{24532715-4abc-47ee-bd4f-a6774d0723d2}
FF Extension: Yahoo! Toolbar - C:\Users\Susanne\AppData\Roaming\Mozilla\Firefox\Profiles\pjihvbmb.default\Extensions\{635abd67-4fe9-1b23-4f01-e679fa7484c1}
FF Extension: uTorrentBar Community Toolbar - C:\Users\Susanne\AppData\Roaming\Mozilla\Firefox\Profiles\pjihvbmb.default\Extensions\{bf7380fa-e3b4-4db2-af3e-9d8783a45bfc}
FF Extension: No Name - C:\Users\Susanne\AppData\Roaming\Mozilla\Firefox\Profiles\pjihvbmb.default\Extensions\BackupManager.list
FF Extension: fdm_ffext - C:\Users\Susanne\AppData\Roaming\Mozilla\Firefox\Profiles\pjihvbmb.default\Extensions\fdm_ffext@freedownloadmanager.org
FF Extension: testpilot - C:\Users\Susanne\AppData\Roaming\Mozilla\Firefox\Profiles\pjihvbmb.default\Extensions\testpilot@labs.mozilla.com.xpi
FF Extension: No Name - C:\Users\Susanne\AppData\Roaming\Mozilla\Firefox\Profiles\pjihvbmb.default\Extensions\{ACAA314B-EEBA-48e4-AD47-84E31C44796C}.xpi
FF Extension: Default - C:\Program Files\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
FF Extension: Microsoft .NET Framework Assistant - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension\
FF HKLM\...\Firefox\Extensions: [{ACAA314B-EEBA-48e4-AD47-84E31C44796C}] C:\Program Files\Common Files\DVDVideoSoft\plugins\ff\
Chrome:
=======
CHR HomePage: about:newtab?source=home
CHR RestoreOnStartup: "about:newtab?source=home"], "restore_on_startup_migrated":true, "restore_on_startup":4}, "profile":{"avatar_index":0, "exit_type":"SessionEnded", "content_settings":{"clear_on_exit_migrated":true, "pref_version":1}, "exited_cleanly":true, "name":"First user", "is_managed":false}, "countryid_at_install":18242, "download":{"directory_upgrade":true, "extensions_to_open":""}, "extensions":{"autoupdate":{"last_check":"13003254335687715", "next_check":"13011876879675929"}, "settings":{"bndahdijlcnncjbpammoedeapmlobllc":{"blacklist":true}, "pihcfdffalbcnmbghijdfcaanagapelf":{"blacklist":true}, "lndempehphjoeimfchjflohpmhamiamf":{"blacklist":true}, "flmmgcfcpbfddenepkfmgfpbaceolcoe":{"blacklist":true}, "mfncimdpmknolnnnccdmkpnpkaofonkc":{"blacklist":true}, "loldehkdjdncebfnncknlkdchjclifbn":{"blacklist":true}, "gpgehbjbkfhngdlfpfeokjgbkmmokjhe":{"blacklist":true}, "ggkpicnfnljflddbdoeeaajjgepapcbf":{"blacklist":true}, "ojglppmhgfohhfeinlhklglifnbfebak":{"blacklist":true}, "fpbkafpphnhlpakobppekmkebmbhkoco":{"blacklist":true}, "ghgphbmpcfgkfneodjpbdanmdoemklio":{"blacklist":true}, "acomnmbomlajgjbcijkflekoojdfcldj":{"blacklist":true}, "ehgoiaffgjoinpkllmmnikghgpghnabc":{"blacklist":true}, "efbeabpbbkahnnjalakldjfhljboclkf":{"blacklist":true}, "cmjphjljejnfgdbkdgdlclaabimpknna":{"blacklist":true}, "pndadpldhngimdmhnajebjldbmcbpjol":{"blacklist":true}, "pkbbbncikcipejaiiiioboongndhmjgl":{"blacklist":true}, "nibohffepnilngkecenfdgnokfhmnkod":{"blacklist":true}, "jafnimahlamccccjbkhjjpeiipiedpik":{"blacklist":true}, "goedioiidkokkbobdnopnlnaaalniegm":{"blacklist":true}, "cbhhdkemlehgodemcigfabmcdnohhhef":{"blacklist":true}, "lceaiepehinnomgijphkmjccbigkljkj":{"blacklist":true}, "iljfgjkppapinhcgonhjnipfppfmfedh":{"blacklist":true}, "mnllienogacopjnkmhgnniopjpgjpopp":{"blacklist":true}, "ookcgejbfhcmcanfkfmmmpahflnlajbl":{"blacklist":true}, "nepfiodmbijheamafkiglonfkjebdjmf":{"blacklist":true}, "ennkphjdgehloodpbhlhldgbnhmacadg":{"from_bookmark":false, "active_permissions":{"api":["app.currentWindowInternal", "app.runtime", "app.window"], "explicit_host":["chrome://settings-frame/*"]}, "location":5, "path":"C:\\Program Files\\Google\\Chrome\\Application\\26.0.1410.64\\resources\\settings_app", "events":["app.runtime.onLaunched"], "running":false, "install_time":"13011876446159929", "creation_flags":1, "page_ordinal":"n", "manifest":{"display_in_new_tab_page":false, "permissions":["chrome://settings-frame/"], "name":"Settings", "icons":{"128":"settings_app_icon_128.png", "48":"settings_app_icon_48.png", "32":"settings_app_icon_32.png", "16":"settings_app_icon_16.png"}, "display_in_launcher":true, "version":"0.1", "app":{"background":{"scripts":["settings_app.js"]}}, "description":"Settings", "key":"MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDoVDPGX6fvKPVVgc+gnkYlGqHuuapgFDyKhsy4z7UzRLO/95zXPv8h8e5EacqbAQJLUbP6DERH5jowyNEYVxq9GJyntJMwP1ejvoz/52hnY3CCGGCmttmKzzpp5zwLuq3iZf8bslwywfflNUYtaCFSDa0TtrBZz0aOPrAAd/AhNwIDAQAB", "manifest_version":2}, "was_installed_by_default":false, "from_webstore":false, "app_launcher_ordinal":"yn"}, "nckmikohoilfkcoahbjpbgbpegcjgngm":{"blacklist":true}, "dkhkecikbdfpoiopnnpoeglbdphgflmf":{"blacklist":true}, "jbnafcjbcfgejacaanogofkkehcomamp":{"blacklist":true}, "amoobcjlpgloocplpikcldcpjjdnoeii":{"blacklist":true}, "jkmhalpofmlfeglboejbchpoijnkmcgh":{"blacklist":true}, "hcpndbchnlgojmnijaldkicigmihmdca":{"blacklist":true}, "mgdgiplcofghdmpekdeeceolepakodcb":{"blacklist":true}, "lkhcbijhgfchgdmklonlobkfbcadbokg":{"blacklist":true}, "kljhmdlkclaglodecegamnpioaflmage":{"blacklist":true}, "nloaaepkhcnmoakooihnefhhggbmemed":{"blacklist":true}, "cekdjgnecpoooikhmceokdhojckkkhmh":{"blacklist":true}, "gchbiabnbdikkgfhnkclecjncojnkmhb":{"blacklist":true}, "jpeijjbllejgmokmahkeommcodahoobm":{"blacklist":true}, "bldgnkigdcpgnbfehgbameigoohecdfl":{"blacklist":true}, "lcmpleboacinanffcdgenhhbkboclkjb":{"blacklist":true}, "kkhomejdleoonmbdhcigkhkjcghngncf":{"blacklist":true}, "jpgidahfcgiajlcbleeiaibpmmblcmnb":{"blacklist":true}, "fbjjhbijaiopkcdolheliknnjlkaekeb":{"blacklist":true}, "pkhidkonipdjidjglnkfcfhnkfnlefbk":{"blacklist":true}, "pgelifedkjaohmjehecojkfldinjlamn":{"blacklist":true}, "hjnigaibahdeadcdnpnommdehajodlhc":{"blacklist":true}, "lookpbabilcplifjdeifacodednpacmk":{"blacklist":true}, "gkjmgdpdndoaiholejnmdbbpdaafahmm":{"blacklist":true}, "ogjbodghhojomghbdfnlkppdagkfjede":{"blacklist":true}, "hecijapnccjhonbmacmkmffooodfokoo":{"blacklist":true}, "lnjgjionmhobdfdegbciceafphgemjnc":{"blacklist":true}, "kcfnnanmpghdnoompcfclakpacapnfbn":{"blacklist":true}, "fbhiehmngojjcmljddjmgpmcockbccmo":{"blacklist":true}, "eijbdinddjecmebnlienfoijpjjobkjh":{"blacklist":true}, "jjnkfllhcgkgnfbekpnmoikpfihpjfli":{"blacklist":true}, "mlmegahemifabfmdnndafagnncfbnahn":{"blacklist":true}, "nmmnodocfckpoddcgihiihcdinaonckb":{"blacklist":true}, "odeckaficnaplobiiaomegfbokokehhb":{"blacklist":true}, "jhhabiomopkibeecgngiggmopkeofacl":{"blacklist":true}, "hmmoglffhpmacaacfbbmbbkcbdkjphnc":{"blacklist":true}, "gandihaiobadcggbfkhpbkocmiemjlnf":{"blacklist":true}, "ahfgeienlihckogmohjhadlkjgocpleb":{"from_bookmark":false, "active_permissions":{"api":["appNotifications", "management", "webstorePrivate"]}, "path":"C:\\Program Files\\Google\\Chrome\\Application\\26.0.1410.64\\resources\\web_store", "location":5, "was_installed_by_default":false, "install_time":"13011876446156929", "creation_flags":1, "page_ordinal":"n", "manifest":{"icons":{"128":"webstore_icon_128.png", "16":"webstore_icon_16.png"}, "name":"Chrome Web Store", "app":{"urls":["https://chrome.google.com/webstore"], "launch":{"web_url":"https://chrome.google.com/webstore"}}, "description":"Web Store", "key":"MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCtl3tO0osjuzRsf6xtD2SKxPlTfuoy7AWoObysitBPvH5fE1NaAA1/2JkPWkVDhdLBWLaIBPYeXbzlHp3y4Vv/4XG+aN5qFE3z+1RU/NqkzVYHtIpVScf3DjTYtKVL66mzVGijSoAIwbFCC3LpGdaoe6Q1rSRDp76wR6jjFzsYwQIDAQAB", "permissions":["appNotifications", "webstorePrivate", "management"], "version":"0.1"}, "from_webstore":false, "app_launcher_ordinal":"n"}, "dinhjcapnfbffhiihdlnbdfjdjjfhcbk":{"blacklist":true}, "clapnamcglekekmamicmbahkghdcjaeh":{"blacklist":true}, "gkjeccpmibljcfpfapfljciimedljpnm":{"blacklist":true}, "bnffnggkphadlnoopcoakdnkellnifjp":{"blacklist":true}, "boclfockfmgcppbajihcgajhpggaakgl":{"blacklist":true}, "pjloefkigphblpjminnlpbhjchjafcfc":{"blacklist":true}, "hnkcpoijaeegompjgbjjhkdmljldaccg":{"blacklist":true}, "amfgdngndpfldigimkcindjalokfnmem":{"blacklist":true}, "jljfnkmkkdkppfndippkedacgfkafped":{"blacklist":true}, "kelljdoinjlkmkncffgadbebgpmlcang":{"blacklist":true}, "bhdkpmneahdelgdgfhddianklldfoell":{"blacklist":true}, "gngmkbiihflpghldjnbpemaicedhdddk":{"blacklist":true}, "hhlgbfcfbkhlmajakkcjippgpcmejkko":{"blacklist":true}, "lambangeielkjcnmioccboaphdfcffib":{"blacklist":true}, "jiofcofpcbijcnlpekdkpmgjdppajbjb":{"blacklist":true}, "pfhlnanelpgjbhndafjamnpfhkjadoip":{"blacklist":true}, "omnicnmbagoinlpamknknbcgopadcoci":{"blacklist":true}, "mknjbohhleiicbpagpgmhoaigbblmnic":{"blacklist":true}, "hgbaomphocgmdpmiohjclchaaljpaelp":{"blacklist":true}, "oidjdpbndkjhmhmgdoggibcjnippkcgo":{"blacklist":true}, "aldalonecchncedclgcndcndgilaclnk":{"blacklist":true}, "ijenlpgidnapbndonoinbkhekgjonojg":{"blacklist":true}, "eofejpelggimkodeojpeojnbijgiglgh":{"blacklist":true}, "kelcbonmemlciepjdmfcifnhloeammhj":{"blacklist":true}, "nfecfkjnlkbphobjbcnphimihniieehc":{"blacklist":true}, "iiiinekimabooeihccihfopoadcaaphn":{"blacklist":true}, "nhbfbnmmdjkjahhfdeklgphihfodfgnb":{"blacklist":true}, "fhlkffpjoajppmhcakbkjndbjfljccpi":{"blacklist":true}, "hgboiaecclcbjphldpbgfgggcbihmnai":{"blacklist":true}, "kbipembkfhbdmkkkfbigmohilmknjnof":{"blacklist":true}, "hfpfbhnmbbigpmoodjemilggabklpopj":{"blacklist":true}, "nmphbnbmgfccfhcmibikmhcgajjpelpf":{"blacklist":true}, "jdiakcmbpmcnniggjcmcjknnklpdlogc":{"blacklist":true}, "hnonhhpgjnjcjfbkjdpfbkfpaodcmncb":{"blacklist":true}, "igkdgkdiiolilocklmiolkpoohacojop":{"blacklist":true}, "doneghboglgnflpdicnkaojmmljgejkj":{"blacklist":true}, "dgkemngdheppgohkjjelnkjmdeimmfml":{"blacklist":true}, "bokkificjhapflinbdejegngffgkcgfe":{"blacklist":true}, "liomofjeffddiiccaolcnllbhnipbkhe":{"blacklist":true}, "bioeopenmokdgbekbgpgnacecjmpckbb":{"blacklist":true}, "kdfahjokahcbmecgaandpobmgiiknagf":{"blacklist":true}, "blpcfgokakmgnkcojhhkbfbldkacnbeo":{"from_bookmark":true, "active_permissions":{"api":["appNotifications"]}, "path":"blpcfgokakmgnkcojhhkbfbldkacnbeo\\4.2.5_1", "ack_external":true, "location":1, "was_installed_by_default":true, "install_time":"12997289126297000", "page_ordinal":"n", "lastpingday":"13003228805638715", "state":1, "from_webstore":true, "manifest":{"name":"YouTube", "app":{"launch":{"web_url":"hxxp://www.youtube.com/", "container":"tab"}, "web_content":{"origin":"hxxp://www.youtube.com", "enabled":true}}, "key":"MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDC/HotmFlyuz5FaHaIbVBhhL4BwbcUtsfWwzgUMpZt5ZsLB2nW/Y5xwNkkPANYGdVsJkT2GPpRRIKBO5QiJ7jPMa3EZtcZHpkygBlQLSjMhdrAKevpKgIl6YTkwzNvExY6rzVDzeE9zqnIs33eppY4S5QcoALMxuSWlMKqgFQjHQIDAQAB", "default_locale":"en", "update_url":"hxxp://clients2.google.com/service/update2/crx", "current_locale":"en_US", "icons":{"128":"128.png"}, "version":"4.2.5", "permissions":["appNotifications"], "description":"The world's most popular online video community."}, "app_launcher_ordinal":"t", "granted_permissions":{"api":["appNotifications"]}}, "aofechiiopolnegcjcddgedjabmkemhf":{"blacklist":true}, "gekkhpjigmckhgmgngadbeknekgpgolb":{"blacklist":true}, "ifbkndkaolfbjjhnnhfmkbkoclpdkpli":{"blacklist":true}, "eihjeehdobnpkonebmpanonopghepfle":{"blacklist":true}, "jabpdgllijbnknhkgjideeajfofafckp":{"blacklist":true}, "maakimnachffhlgdhfomaejeeaikgjap":{"blacklist":true}, "ejijgghlncnaphklndknkbkclebfboca":{"blacklist":true}, "mkobblpffgbncfhijabakfafmkjdmmnm":{"blacklist":true}, "fclheclkknbgfndeahkfdomollhmfkcn":{"blacklist":true}, "dfoegfajplmijblljfancdapbdaopebb":{"blacklist":true}, "kojkdbedffnppdoalcfkkeelbhbklhgp":{"blacklist":true}, "nnioepmjbjjlflmdgjanlcmbjahljeeo":{"blacklist":true}, "oomelpjfeldbopnleifpjibbpekflhlg":{"blacklist":true}, "lodollblmkailkkdiijmoccefdfjohgk":{"blacklist":true}, "hhjmkijkgojfifipdgmiemghfikbohcm":{"blacklist":true}, "oghphhcagopecifjblgdcfihjnlcbcfc":{"blacklist":true}, "jmifipgdcllamghkhdplfjffkciekbgo":{"blacklist":true}, "fihepkmlkmciffbhijldnpmifhbkiinp":{"blacklist":true}, "onpnpccdagncipgnoofbhchlbajcjnkd":{"blacklist":true}, "elcaigjcaijbfpjngaekbblphmfjdhfo":{"blacklist":true}, "diinokaoicgobepmadnmedlhdfnpehcj":{"blacklist":true}, "jindbcpkhnnnjgcjgmkjedbibibiojjf":{"blacklist":true}, "mjalegijammcloleihdmooifidcjggjp":{"blacklist":true}, "bkkchglolnigbfncnbnnbhhempjkdpkf":{"blacklist":true}, "echngajnlpjeacbanjejlhcajjfoedcc":{"blacklist":true}, "aphncaagnlabkeipnbbicmcahnamibgb":{"blacklist":true}, "bilgncckogfgfipdlejkffnbkgjkmflh":{"blacklist":true}, "jfjagidcpadkoaonbogmbgfimmnefeie":{"blacklist":true}, "hhfiljkpjapjjphcocclhhaldpfkkjbi":{"blacklist":true}, "pkbkgagehkkoajkpgnmjegibihpalfdk":{"blacklist":true}, "lnlaeblencbjjjeaanegaldcjfekeled":{"blacklist":true}, "dadcalgappognjbjpalfophhcfakoeac":{"blacklist":true}, "eiflkkehgogioennialfbilppmegcpoa":{"blacklist":true}, "fnhcgnmfccojojojacgeiaaeacefdohb":{"blacklist":true}, "kcgplbmkmfcpngilmhjmebdgkkpbdemp":{"blacklist":true}, "fnoadkjdjfgafomgmablhmffooijcfbn":{"blacklist":true}, "gplgjmecjpbfcdikpbicknafcnfcidek":{"blacklist":true}, "gifglngcdbggmlgkcombebegdaoknkho":{"blacklist":true}, "aebfkgcamgnimcbnbiopgdakknjgggnm":{"blacklist":true}, "bhmahaiplmeodpakkcchmolaihbhkpdl":{"blacklist":true}, "mogepbcllienegdibkfpmombhefhcoic":{"blacklist":true}, "fnkaadkanmfgpfbmdcllhjdgmdbgljpi":{"blacklist":true}, "eemcgdkfndhakfknompkggombfjjjeno":{"from_bookmark":false, "active_permissions":{"api":["bookmarks", "bookmarkManagerPrivate", "metricsPrivate", "systemPrivate", "tabs"], "explicit_host":["chrome://favicon/*", "chrome://resources/*"]}, "location":5, "was_installed_by_default":false, "install_time":"13011876446147929", "creation_flags":1, "manifest":{"description":"Bookmark Manager", "permissions":["bookmarks", "bookmarkManagerPrivate", "metricsPrivate", "systemPrivate", "tabs", "chrome://favicon/", "chrome://resources/"], "content_security_policy":"object-src 'none'; script-src chrome://resources 'self'", "chrome_url_overrides":{"bookmarks":"main.html"}, "name":"Bookmark Manager", "version":"0.1", "incognito":"split", "key":"MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDQcByy+eN9jzazWF/DPn7NW47sW7lgmpk6eKc0BQM18q8hvEM3zNm2n7HkJv/R6fU+X5mtqkDuKvq5skF6qqUF4oEyaleWDFhd1xFwV7JV+/DU7bZ00w2+6gzqsabkerFpoP33ZRIw7OviJenP0c0uWqDWF8EGSyMhB3txqhOtiQIDAQAB", "manifest_version":2}, "from_webstore":false, "path":"C:\\Program Files\\Google\\Chrome\\Application\\26.0.1410.64\\resources\\bookmark_manager"}, "benclngoadbppljglhphhnfknoppmjoa":{"blacklist":true}, "gbenikfjhilhpgagllmfgggdjaflbmbi":{"blacklist":true}, "iggjepemmdkieakihpomccndhdfcljdp":{"blacklist":true}, "npadaghbcdejfngcjpbnoikajdnongca":{"blacklist":true}, "ljeihpebkahejeacdalhkhmckmggppif":{"blacklist":true}, "hdnbmmfjbblajkjkcaeofolgfnljpnim":{"blacklist":true}, "mfooalpniplhaaealemjpchkchmmgdko":{"blacklist":true}, "pkbkkendemaimikinaefldfljliecapm":{"blacklist":true}, "nhboiakpmibkbkbeehchlfkggmhphpnk":{"blacklist":true}, "hcapokajkngndbglnfglpfdpoeidmpha":{"blacklist":true}, "coobgpohoikkiipiblmjeljniedjpjpf":{"from_bookmark":true, "path":"coobgpohoikkiipiblmjeljniedjpjpf\\0.0.0.19_1", "ack_external":true, "location":1, "was_installed_by_default":true, "install_time":"12997289111459000", "page_ordinal":"n", "lastpingday":"13003228805638715", "state":1, "from_webstore":true, "manifest":{"name":"Google Search", "app":{"urls":["*://www.google.com/search", "*://www.google.com/webhp", "*://www.google.com/imgres"], "launch":{"web_url":"hxxp://www.google.com/webhp?source=search_app"}}, "key":"MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDIiso3Loy5VJHL40shGhUl6it5ZG55XB9q/2EX6aa88jAxwPutbCgy5d9bm1YmBzLfSgpX4xcpgTU08ydWbd7b50fbkLsqWl1mRhxoqnN01kuNfv9Hbz9dWWYd+O4ZfD3L2XZs0wQqo0y6k64n+qeLkUMd1MIhf6MR8Xz1SOA8pwIDAQAB", "default_locale":"en", "update_url":"hxxp://clients2.google.com/service/update2/crx", "current_locale":"en_US", "icons":{"128":"128.png", "48":"48.png", "32":"32.png", "16":"16.png"}, "version":"0.0.0.19", "description":"The fastest way to search the web."}, "app_launcher_ordinal":"w"}, "jcmipejepoimfflnoapdmkdephgjinck":{"blacklist":true}, "odnamglmogfldajnhkfodmloofeokcmm":{"blacklist":true}, "emcdpbapjmnjgoannclkongdfboaabho":{"blacklist":true}, "lplmcpcnhpbffpcfiaddbeaplhhbengd":{"blacklist":true}, "efnaljpgehfilpmkhobibbjceeeondmn":{"blacklist":true}, "hjkhligcnpfjhjlapmejaiaiigibofif":{"blacklist":true}, "echjhfifjidfhoappglfmoffcpmpkigb":{"blacklist":true}, "leccghfplhenabeogpibljliijgapfgb":{"blacklist":true}, "pcaedgdgamlfffkfblocmakhgieggoak":{"blacklist":true}, "mnichagcickblneeijmfnmoiakigmmhf":{"blacklist":true}, "cfnfobbpdaccoljfahpmfjdmbfmmkeof":{"blacklist":true}, "cfogpbanfnocakdckmgafapdlmclpiln":{"blacklist":true}, "kmlebjoghkhpapfhbdikannggmmffnco":{"blacklist":true}, "cbbjhegipokkofhhicbckicchjpcpeni":{"blacklist":true}, "fpokembamndopkflopmplkklbdngnknd":{"blacklist":true}, "negkalblfongjbphdcbbhddlickhlamd":{"blacklist":true}, "nochkknnbahbhmmknnmdhagelcnfagom":{"blacklist":true}, "mplhbhmkccidaokcelbcbcmhhedebcng":{"blacklist":true}, "cbjlfaogacjpkplebfbijaakaifoflno":{"blacklist":true}, "fnnmbghphdnmmjdapccfobgjemjadeli":{"blacklist":true}, "pbdgmppmccanplobanhfkjndjkmmabgk":{"blacklist":true}, "ghmaokcegalalefnhlfcnjhnpdbanjkj":{"blacklist":true}, "jbfebbkjjmkcoldeaeelhpconkmgjhbg":{"blacklist":true}, "lgalokbapphhklmilicdefmgbjkcmldf":{"blacklist":true}, "mlnoedbhndgbjcbeadjfnmjloejlgojk":{"blacklist":true}, "fpbippbofbmgmbojjmgfcifpmdaelcmd":{"blacklist":true}, "dpaphgcjeeochbiafgbochohgmpcmlbj":{"blacklist":true}, "kdjhalklkkcmodeicjiaekcgifkcepaf":{"blacklist":true}, "ahjfgnikolodijnpakeknpilnemojlhc":{"blacklist":true}, "egljdhfnbjahogjahnigfnbpidlmdagi":{"blacklist":true}, "gncfgndgeoddelbfhlndhljnecoednaa":{"blacklist":true}, "ehmjnpjodmgeocfphkjjnheiheehcoid":{"blacklist":true}, "gkhbgnodbilglgholifcjdblbgdaieah":{"blacklist":true}, "hnbcdmfeoldeppcbnnjmjkdofohaljbn":{"blacklist":true}, "agmhonoepgcnakccfpidhjehlocaeaaj":{"blacklist":true}, "lhajoamjgchgljkdjigcgmmcehjkagan":{"blacklist":true}, "kincjchfokkeneeofpeefomkikfkiedl":{"blacklist":true}, "bcddmcejgphfgofbpoocakaeapfomlek":{"blacklist":true}, "glhhlafadlhkgbklgbjnmblfhnkfknbm":{"blacklist":true}, "megkcfpbmemnpkgadkoompnoajcolpni":{"blacklist":true}, "oilfokmpgejhjhecdjjpikloibggpenf":{"blacklist":true}, "mplpabdbfbloeiboikmdbnggfnjbjmlh":{"blacklist":true}, "hpibmhghjndideebpackbdlpncgkcppp":{"blacklist":true}, "fjjeecfjmgfnleghoellhldedkaocjfc":{"blacklist":true}, "pbglijbamgmlcpnnpbfjkbdeheejjloj":{"blacklist":true}, "loggadfheaoeabmkgolecncpfdfioefa":{"blacklist":true}, "nlgapikcofpablcmfgaoodlhiejiehhh":{"blacklist":true}, "kgdmldjagfciieddcnlhampgkajkpanc":{"blacklist":true}, "iomejadoamfilglofmeaffghddcgapmf":{"blacklist":true}, "foenbafkkmajnmfnlcmejonkfaipdmme":{"blacklist":true}, "djnahdkbfgnhgpakidinfonfcjbagkgp":{"blacklist":true}, "cepfogmgfkddnllaopgknbdfkceejmhk":{"blacklist":true}, "lojppnndedobolgfepahepphhloediji":{"blacklist":true}, "ocnlnkjmfnolmbclblfhfhcakldceiec":{"blacklist":true}, "aojicjocmihiopalnhjikigammkhgckb":{"blacklist":true}, "gaicmfjflflabagobdiodejfpjikheeo":{"blacklist":true}, "mgndgikekgjfcpckkfioiadnlibdjbkf":{"from_bookmark":false, "path":"C:\\Program Files\\Google\\Chrome\\Application\\26.0.1410.64\\resources\\chrome_app", "location":5, "was_installed_by_default":false, "install_time":"13011876446158929", "creation_flags":1, "page_ordinal":"n", "manifest":{"display_in_new_tab_page":false, "key":"MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDNuYLEQ1QPMcc5HfWI/9jiEf6FdJWqEtgRmIeI7qtjPLBM5oje+Ny2E2mTAhou5qdJiO2CHWdU1DQXY2F7Zu2gZaKZgHLfK4WimHxUT5Xd9/aro/R9PCzjguM1BLusiWYc9xlj1IsZpyiN1hcjU7SCnBhv1feQlv2WSB5KRiXwhQIDAQAB", "name":"Chrome", "icons":{"128":"product_logo_128.png", "16":"product_logo_16.png"}, "display_in_launcher":true, "version":"0.1", "app":{"launch":{"web_url":"hxxp://THIS-WILL-BE-REPLACED"}}, "description":"Chrome as an app"}, "from_webstore":false, "app_launcher_ordinal":"y"}, "pkdlpbfmpolnhligegklimbccminkioc":{"blacklist":true}, "pjdhkkcnlbfebiokpeghfffajaabahfo":{"blacklist":true}, "dmhjdbigobajgnfoabodjgmcdgoeoljm":{"blacklist":true}, "peahabnpipmmfiajjjhgfggbeigbmbgp":{"blacklist":true}, "bdgijcibmhjjccgbdohofncdjcophknj":{"blacklist":true}, "igaajdmlejbjcbmpmnigopikfdaccdcm":{"blacklist":true}, "dpmloehicimdjkibmobhmpgdndgbcced":{"blacklist":true}, "fpmajanjndhgpifbcbnklbiehgnpkgmf":{"blacklist":true}, "gjmhdmobkhfhkpfmfegnkkimlamjdldi":{"blacklist":true}, "dmkdhgkknhnfpdjeicefnpmhcpbimden":{"blacklist":true}, "noefghcilkpcabnhhilojimkkjplhcnd":{"blacklist":true}, "pfonklmafadkmcedjlodommcoipgbcde":{"blacklist":true}, "bkplhcigeaiiliajeehehiikokgocbhb":{"blacklist":true}, "iemfpgbdjfoihicbocpbjppipdbfimeh":{"blacklist":true}, "hhbihfbjoifhhebcnchglobmkmapgjkm":{"blacklist":true}, "cihlkpohodpdkdnfalhdkhhlhmhffmbe":{"blacklist":true}, "naopgnjebjeeedbbhcadkhkmeefmloho":{"blacklist":true}, "aakhlmakppmkkmfkoibponkmmpgpmjgl":{"blacklist":true}, "oanjogmonneelfpnfmdlalfddkeckdej":{"blacklist":true}, "kcanfkmhccbaheheaackijegkclkaeic":{"blacklist":true}, "obfnipbbnnhkbafmdbbfpgfgbjmmkgpm":{"blacklist":true}, "fommcgokigkhmnhlhlkckfjhefnmfohd":{"blacklist":true}, "pobponmhkpmphbnfhpjdagklbkmjhked":{"blacklist":true}, "kinhljbhjmcmoddhdoodekeklmjapjff":{"blacklist":true}, "aandpgohbohmlknpjbblpmoladhoochg":{"blacklist":true}, "pnpfkfanlgljpkpilhgiimfadggfmhcd":{"blacklist":true}, "pbekednmpdekknlffkiopooofokfmkla":{"blacklist":true}, "abfclfmhaemoockhhinpplncjehfpdbd":{"blacklist":true}, "kiipngoehgkgkackngaidmhmnchfbmio":{"blacklist":true}, "ckckpgefkpjfopjppjfcikppehdhceah":{"blacklist":true}, "pajgiddgjidlcajihkjoacjbplimkgfe":{"blacklist":true}, "hbaajkahagmlkdekmbdabikbopdgpaac":{"blacklist":true}, "mlmmbepkgelpbenpobinockmiehdahai":{"blacklist":true}, "bkhafliomebnpccanacmlfaemgfiofko":{"blacklist":true}, "oocfbmollajebjjpkahmlnclfhkjijea":{"blacklist":true}, "dhclobcklknojliojkkclgjndemadnig":{"blacklist":true}, "jfhmafmjfdblceidmfdmoihamolaaeco":{"blacklist":true}, "ihnembcpodnfgkafmiojebccomjekopm":{"blacklist":true}, "ojmdhklabgbnnkkilmkcfcemdhognifc":{"blacklist":true}, "aljdncnajablgppdcfbehhmidlmbndda":{"blacklist":true}, "idbdlnkdnaodonmgnimcfelpngbmcpjk":{"blacklist":true}, "nmgpbidjnaebdlbdbpjggenmbaolmfoi":{"blacklist":true}, "nhkmojkfnknbbmhbnacjdlodokeophkl":{"blacklist":true}, "kibgmcdcfmcglajcfbecilngejnfppjp":{"blacklist":true}, "ijecjbcgpblkacpijljpaienknanaloa":{"blacklist":true}, "kgbkdabomfdpfoibliicpmibceaoohgh":{"blacklist":true}, "cjohbbapkbkkhpohinffggbphnhoblea":{"blacklist":true}, "ejakhnjbomgngodiidgbkapjgbdckhnh":{"blacklist":true}, "jgoljhcbgajhbhnchplgjdkknendhjnn":{"blacklist":true}, "mfffdpnblflpobcnekhekiahepofaane":{"blacklist":true}, "acmpfcamncegnhjdeiodgilikjafcamg":{"blacklist":true}, "fiiblakkkkgeljngobmpeljjapemenhi":{"blacklist":true}, "phkpgooenaonkpnabopdbjjfmphclela":{"blacklist":true}, "fmcccidacjgnfiafddkngmeolkoiihil":{"blacklist":true}, "mpgehpkneknbopplhmmkfijfiniddipf":{"blacklist":true}, "clfhanhcjmgjnbpjfopldmnabimhmcmp":{"blacklist":true}, "edmnikahahfkfilbbjbdoiabnghbkmjc":{"blacklist":true}, "mcbkimglepddodbiongpohpeidioafgk":{"blacklist":true}, "hbmlheccjkodhfejcmblndjodllmnlnl":{"blacklist":true}, "fgibjgmnimooanbagcfpnkmngejcojaf":{"ack_external":true}, "epbmnbdplhcomkedpjfceakddnbgfjmf":{"blacklist":true}, "iablioliielnhdianpbiijaoncbmfend":{"blacklist":true}, "ijjmbbddenkbenbcfldgghhjgjmcnioo":{"blacklist":true}, "lnbeebaenahmkbffnimghceldeeihfak":{"blacklist":true}, "dbmdicehacbaohlockjgdglcobimmjkh":{"blacklist":true}, "fleljamdchegbjeiipbnmiebnhgheeld":{"blacklist":true}, "gnapdhmknipknfmhhnhdmhakdfhgeing":{"blacklist":true}, "afenhmponmfmdmbmccbmglppcmjhmhmh":{"blacklist":true}, "efhjelcghjkfigiagdfbfilndaffpmdj":{"blacklist":true}, "ecinfbhalenfhdhnljmkglajfjjfehoj":{"blacklist":true}, "mjgobkikdipfikmaoakdcdbicpioljgg":{"blacklist":true}, "fibgploapkhokkbncddlkcmbmiengcfp":{"blacklist":true}, "mnhcgaghminpdabllkbkecahjfkdiabk":{"blacklist":true}, "cgnegjfmdfenjojhjffejinpnpoglmlh":{"blacklist":true}, "fomljmklmcefndkgpakgifbiiidgbjej":{"blacklist":true}, "hhfffemhgkginfafaoapljdllodppana":{"blacklist":true}, "jgmpapdckakiohhebmeoemejibommimi":{"blacklist":true}, "onjaecbdddgibdijafoemfiachlbcgkj":{"blacklist":true}, "jpkdlckejfjidmplieobnhijmoiecbhl":{"blacklist":true}, "dgcfmgdfbfbgcpbendbhbkfjppboebed":{"blacklist":true}, "kdchmeaiapjkejkcbeclgjklemecieeg":{"blacklist":true}, "kffhenjbibjnbnjhlkcdlmpeccpaohio":{"blacklist":true}, "gobjcjhhebpjbmjdgmejhebbleadnceo":{"blacklist":true}, "ljcicfibknpmlcmcecddjlbgkejehhpa":{"blacklist":true}, "cdogaeccgljmkecjmoedambgiekkllij":{"blacklist":true}, "hefmoncdemhjembgbnkgglhlookbipdc":{"blacklist":true}, "dlobhinihbmedmheccecfnkcadpehmbf":{"blacklist":true}, "fpjdackpllilinpkgmhkpidkanmccblc":{"blacklist":true}, "copjbedljgpkaakkmbhgkpoaadeahido":{"blacklist":true}, "cfbdodejdeejbkffcmiaknpmojjeibpn":{"blacklist":true}, "jmeanodbelbflfmnkfdjgpikmldgjjko":{"blacklist":true}, "gfjfhihpkmehdmblhfaikkipeplpdcla":{"blacklist":true}, "pgldfhecfiofkhnbgcncepnkjkeoahlk":{"blacklist":true}, "hdijkiondgomjpehfhopomicjbiodmcm":{"blacklist":true}, "dgaehaeahdegbdlenicbmkbakhdgoeml":{"blacklist":true}, "lpgiafapdmlapiokjnmpbbfkomiceoml":{"blacklist":true}, "eopmhecjnginkckggjmhombbopmkjpam":{"blacklist":true}, "kgdkcodealpfjolmiagcogfbgmaamegh":{"blacklist":true}, "jmbkhogpjgjpfjhpdikloblkbkljkgao":{"blacklist":true}, "kleaapgdkahaekcocmkbgfainbhihccj":{"blacklist":true}, "fjhfnfakmfcejgmfkmnapemgblmehppf":{"blacklist":true}, "ldgfapfmnplpaohbbadnecegcpfkfall":{"blacklist":true}, "omceiakkomngangmllpgbjcoeloglald":{"blacklist":true}, "hkbgccpdcpbdckohbknjlamamelcnlki":{"blacklist":true}, "cpiiakoibaohkfoaijaigdnocfolnmll":{"blacklist":true}, "aemcjbfajnnmhblifaejadoecfoaebld":{"blacklist":true}, "fngolbdmkneakeaoiieafkilnogbocda":{"blacklist":true}, "hfjpjodbolkmheaehcnmfhjakjileoof":{"blacklist":true}, "ejlekamipdcfcfpgfepjmklllbpeecaj":{"blacklist":true}, "hgjgaeknhmidehalnmokomhpfhbfmpcm":{"blacklist":true}, "ehomcoocpagnlcakcbecdaknmacmedld":{"blacklist":true}, "pjkljhegncpnkpknbcohdijeoejaedia":{"from_bookmark":false, "active_permissions":{"api":["notifications"]}, "path":"pjkljhegncpnkpknbcohdijeoejaedia\\7_1", "ack_external":true, "location":1, "was_installed_by_default":true, "install_time":"12997289096966000", "page_ordinal":"n", "lastpingday":"13003228805638715", "state":1, "from_webstore":true, "manifest":{"permissions":["notifications"], "name":"Gmail", "app":{"urls":["*://mail.google.com/mail/ca"], "launch":{"web_url":"https://mail.google.com/mail/ca", "container":"tab"}}, "key":"MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDCuGglK43iAz3J9BEYK/Mz6ZhloIMMDqQSAaf3vJt4eHbTbSDsu4WdQ9dQDRcKlg8nwQdePBt0C3PSUBtiSNSS37Z3qEGfS7LCju3h6pI1Yr9MQtxw+jUa7kXXIS09VV73pEFUT/F7c6Qe8L5ZxgAcBvXBh1Fie63qb02I9XQ/CQIDAQAB", "default_locale":"en", "update_url":"hxxp://clients2.google.com/service/update2/crx", "current_locale":"en_US", "icons":{"128":"128.png"}, "version":"7", "options_page":"https://mail.google.com/mail/ca/#settings", "description":"Fast, searchable email with less spam."}, "app_launcher_ordinal":"x", "granted_permissions":{"api":["notifications"]}}, "jeehjhnmgohgpfpjneglogiholalkeip":{"blacklist":true}, "gfmmoiakbmdohkgeoekiokjgljcminig":{"blacklist":true}, "jpehgolpfgnknboibogccapmdcadjkbd":{"blacklist":true}, "ilhjicgcglhjigdehkcehjdokmkahbjl":{"blacklist":true}, "iobnpmeeecphddicmhhmdjbnlbdhjlne":{"blacklist":true}, "pjgbfgdpkbfimabdalhjmmeeelbmkcac":{"blacklist":true}, "iccblehkchfmjgfafjcpjlkjcponhdhl":{"blacklist":true}, "jaejgaoiipdjjlbnapngknalafalbkej":{"blacklist":true}, "lcfkojlnjnedeoepfemhdgkhiabkeadc":{"blacklist":true}, "pnpgiaejfbdapllkchhgchjpdbcpiooa":{"blacklist":true}, "hilncbjbdpnfepdidfchmdclhpnlegpj":{"blacklist":true}, "dbiblcmlcgdjjbdpbmbcpineegngkiip":{"blacklist":true}, "ncpdanjmicnihdlijomcggnnekloephc":{"blacklist":true}, "gjkbghdignnlcknknflbigpammebiolo":{"blacklist":true}, "fopgndklnkecillfbdmfknhmadmenikm":{"blacklist":true}, "obgljnmbldahelaakfdbjkplokjoneip":{"blacklist":true}, "jkihmglffmfjedfbpbpdbbimcodjbmdh":{"blacklist":true}, "onfbaaifbbahonepmednhkjbhdgogkbl":{"blacklist":true}, "ljmjoloiepllcndinchenhomcdcgbgef":{"blacklist":true}, "pfgmgcnbngcnhjddppmnloflcidemopc":{"blacklist":true}, "pnnbdjcjeiobikdfikegpclkcimgafpp":{"blacklist":true}, "hfcgbiofoebieldldghfocjfnnajmpej":{"blacklist":true}, "mfehgcgbbipciphmccgaenjidiccnmng":{"from_bookmark":false, "active_permissions":{"api":["cloudPrintPrivate"]}, "location":5, "was_installed_by_default":false, "install_time":"13011876446154929", "creation_flags":1, "manifest":{"name":"Cloud Print", "app":{"urls":["https://www.google.com/cloudprint/enable_chrome_connector"], "launch":{"web_url":"https://www.google.com/cloudprint"}}, "display_in_launcher":false, "description":"Cloud Print", "key":"MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDqOhnwk4+HXVfGyaNsAQdU/js1Na56diW08oF1MhZiwzSnJsEaeuMN9od9q9N4ZdK3o1xXOSARrYdE+syV7Dl31nf6qz3A6K+D5NHe6sSB9yvYlIiN37jdWdrfxxE0pRYEVYZNTe3bzq3NkcYJlOdt1UPcpJB+isXpAGUKUvt7EQIDAQAB", "permissions":["cloudPrintPrivate"], "version":"0.1"}, "from_webstore":false, "path":"C:\\Program Files\\Google\\Chrome\\Application\\26.0.1410.64\\resources\\cloud_print"}, "boaoagnmpennjoigkkmnjhecapibhfko":{"blacklist":true}, "ppmfajacidhcjbddpgmcmigffpppcadd":{"blacklist":true}, "danapgfidmepmcfbjjacceiaiiioieio":{"blacklist":true}, "ldmoahefokhfelhpbgfjpelcdbahdofk":{"blacklist":true}, "igghanohiioehififjoalfkdoicafjof":{"blacklist":true}, "jgdkappiifgomhgikcjbanhnmlekpeje":{"blacklist":true}, "jddbdddmbfencninofcgnodekclofpaj":{"blacklist":true}, "hkjcejgfmaanpncnpoidgbhoikcaeepd":{"blacklist":true}, "dbanhghadfmjndnjmmejdgfdmgidlbpm":{"blacklist":true}, "opnnngnphijodjhemhdafpnnpdjggofe":{"blacklist":true}, "imkffpjpdngdkpgadcmnlkhhmhdocijn":{"blacklist":true}, "fafoohpbicgbcejffcplajonhhooddle":{"blacklist":true}, "igbaoknfddliiaoimhehfbkfekpmmfll":{"blacklist":true}, "nifbebeekindefklojhchehidpikbjfc":{"blacklist":true}, "lkfdchejjogilmloogbbjlnlpbhgjfab":{"blacklist":true}, "ilmknaabackgdbnkgbihgpgiopnlkjek":{"blacklist":true}, "mdngbiejioalifclonjepjjfppmbgned":{"blacklist":true}, "magllcifjcllaafcdplnajmobccbcdlo":{"blacklist":true}, "abciiempgohamehppammbkhkicmkgkob":{"blacklist":true}, "gdggdkkjecogagaffaemnbfmllcoihjp":{"blacklist":true}, "ndhkiimgbjnendpcfbiadlifmangejoa":{"blacklist":true}, "mhbffdldpckobeihgebaamjalehefnia":{"blacklist":true}, "cnimdnlablahacgompaahbgohcokcclp":{"blacklist":true}, "oakhllhnbcpgagdafgbninlpjdemdmjk":{"blacklist":true}, "mbmdaiddhfoljplpdhohimgieioblfif":{"blacklist":true}, "deonbedlmakdddidplniclflladdjoep":{"blacklist":true}, "npolaghondefgiomhkbiiompikfjneep":{"blacklist":true}, "caphkimknlmnhpjoneddiaakmcaajagb":{"blacklist":true}, "mmjodihhmnpkldljaifiajmlnpflfhpm":{"blacklist":true}, "mdiehnlecbjlppbpaaipmlnhhjgepfcg":{"blacklist":true}, "jbmbiepnidbnhbbfdbgioomdkgnbcacj":{"blacklist":true}, "lgcnahanhlfpceencjmlehpfklokhojk":{"blacklist":true}, "ebdcdchjcndpjhehacedepnggfdbfkpn":{"blacklist":true}, "mjolnadmlahbpepjaemohnkhpjkbhmef":{"blacklist":true}, "deocpjmfifplhepinpkmpinpnbiemfje":{"blacklist":true}, "likifpgnijjfbdegfepoalpamlgnfofi":{"blacklist":true}, "cbbbpmlnlpnjojeplppgeilanlihoojg":{"blacklist":true}, "lbficnmfealeidppcbgdcbemgfjodbkg":{"blacklist":true}, "mndoohjdoechinpkfbkolflbonciahfo":{"blacklist":true}, "fiapkdjniadkodmdibdnchoifkpfoiid":{"blacklist":true}, "hkjfdgjkgpbbdmadbglcgljjjddkcdha":{"blacklist":true}, "aifmjmboebdkdelpjenakhaodgneempp":{"blacklist":true}, "lljnngafekbnkpdfophmcdlbfebcbcld":{"blacklist":true}, "fcfepemfihgibdacjlnlecebknaaepmj":{"blacklist":true}, "cjhklhdjonhcohlacgggcbklpnldleck":{"blacklist":true}, "hbdhabpmbbanaopgkbaondabkkepjfaf":{"blacklist":true}, "bjihddggcgnblgojnmhpnngonofbnkaj":{"blacklist":true}, "fmonlemffgbabjifjfaoamdflijecdbk":{"blacklist":true}, "coajchbkdbfhmhbgcjepiofllfjjcpfp":{"blacklist":true}, "pfcelnbmkeoaeicedjomcjkcammlkdbk":{"blacklist":true}, "pfoiaildicnbcjojocjlpcibenphhbln":{"blacklist":true}, "imfbomjbodpfgfhfahlgkkcllmhbelhk":{"blacklist":true}, "hnnebfeppcbhhbhiifeaajgcjnkljlld":{"blacklist":true}, "hncomkjbbkchfjelocejkbbflmjhlhfp":{"blacklist":true}, "lkdimamelhbiijkiljlnedmhnnkkmlbl":{"blacklist":true}, "hnipgljcblpgnnojcfldehpeknhakbgj":{"blacklist":true}, "mamfageekafifnickhgkibkofcclfefe":{"blacklist":true}, "apdmgffkfhjfeejmbjidennfjdkmmmbl":{"blacklist":true}, "mandondadnlimicalgkbkaohmeopdojj":{"blacklist":true}, "nbieffehfdniifkgdckbndjhojohbfjj":{"blacklist":true}, "mcknnlhkkdbcppajgefagceglahcafjd":{"blacklist":true}, "dmabikjmolgegjajdhmgpmgffajlmmkb":{"blacklist":true}, "hpcdoodjfcmpcpkeendjnjkeinimhkih":{"blacklist":true}, "ocmhjnhildbnglmlfimkjnnfgddelacb":{"blacklist":true}, "pkcbihpffghlanbclfmkegjmbijcpobj":{"blacklist":true}, "fpoajjnnpmledpmohlgpgbmlhbgkgahg":{"blacklist":true}, "pgjpnfpidejcmjibaaohcmehfohacckf":{"blacklist":true}, "jfalnphfjdoalcdhlnhdpekbmmopkgkj":{"blacklist":true}, "peiijdmlgbelnnmnkighhkpeihmmamio":{"blacklist":true}, "lncjcfkpannmofmpgdfoonkniofdnaba":{"blacklist":true}, "gmghjgfdialcnhadahmjefeflgnhcjeb":{"blacklist":true}, "ckphhghhpjbfddcgkpfbelfeojcciglo":{"blacklist":true}, "cgnkbnaiipmfbakpmhllalggoepniemh":{"blacklist":true}, "nidodbfomffkfabciljelkbdiabkeehe":{"blacklist":true}, "pnaiiipilbpcceggeanphcpkkihnojan":{"blacklist":true}, "anmjpohfnlopdfaojooicpemopnliimn":{"blacklist":true}, "aglmapjbjphdidmnileogpjkgpdoliep":{"blacklist":true}, "nihhbeikpchdddoillfdcdinnnnllmna":{"blacklist":true}, "dmhgenmamfphbclmhdgmffajkfommkom":{"blacklist":true}, "dejippphmhbpgckbhdidnjmdcpfccbaj":{"blacklist":true}, "ffgfbfakpcnngelphjnppokmoicdollk":{"blacklist":true}, "indfhnliadamglhalanplbajgenpjdml":{"blacklist":true}, "alfahpoknocfdebmiclonikapcnljlob":{"blacklist":true}, "aconhjfogglfnkjhkjipaifepjklolog":{"blacklist":true}, "ifeijfpkjckedpclgncedmgdiaoeahmk":{"blacklist":true}, "plfijddblbcdcnammpdmfccchkbdekmm":{"blacklist":true}, "lnahlgmhpghkhmafjppdidhcoaomipfg":{"blacklist":true}, "nidmbljkkcbdfklgdkklgjgmhejmbojn":{"blacklist":true}, "dnemhlkdpajbbniphgkgceplmnkfnhfo":{"blacklist":true}, "aieglpnmmhleoenpbmfaffppfomgjmba":{"blacklist":true}, "pfaooklcbjnkgconjjepimkohgcjmdji":{"blacklist":true}, "mfhfkclojmdocagbmecgcnlofppebebd":{"blacklist":true}, "kgdhnhadbnpeibkghaebmhmngobdafag":{"blacklist":true}, "lbaddolhebpnhdcdkicpcflhnfamcemn":{"blacklist":true}, "cmlokmkdolieoaoddlfhaidnlmiadhik":{"blacklist":true}, "aieihijcjcccdiepockaiekhpflicdii":{"blacklist":true}, "lfggokjjaanlfikbbapgnfemifmddalf":{"blacklist":true}, "alcbnnpmipohgdllkkglhkbncijplago":{"blacklist":true}, "akbdojiajlefghcdclgkgmbbljamgehd":{"blacklist":true}, "ndiogongcmocdgjciemhagfhpjamehpe":{"blacklist":true}, "kolbbghckjilleabphhgeggcgpfidofi":{"blacklist":true}, "janhdpmhnighonkkbkdpnljcoenpfkbh":{"blacklist":true}, "dpgenihgggagjjggfocjceeobjkadcbc":{"blacklist":true}, "icihfeaofpcfehanhbnjigdlpfahjlee":{"blacklist":true}, "kdcnnmifdmlmjffdgeieikcokcogpbej":{"blacklist":true}, "ajlkjjdbgcjdiklbcomhnfghjigfccoh":{"blacklist":true}, "dfafokiagoiocidlpglcanjkcdbdnioi":{"blacklist":true}}, "chrome_url_overrides":{"bookmarks":["chrome-extension://eemcgdkfndhakfknompkggombfjjjeno/main.html"]}, "alerts":{"initialized":true}, "blacklistupdate":{"lastpingday":"13003228805933715", "version":"0.0.0.138"}, "last_chrome_version":"26.0.1410.64"}, "ntp":{"app_page_names":["Apps"], "promo_build":15, "promo_platform":15}, "translate_language_blacklist":["de"], "translate_denied_count":{"de":3}, "distribution":{"oem_bubble":true, "skip_first_run_ui":true, "create_all_shortcuts":true, "import_search_engine":false, "make_chrome_default_for_user":true, "show_welcome_page":true, "do_not_launch_chrome":true, "alternate_shortcut_text":false, "verbose_logging":false, "import_history":false, "chrome_shortcut_icon_index":0, "import_home_page":false}, "dns_prefetching":{"startup_list":[1, "hxxp://bs.serving-sys.com/", "hxxp://de.yahoo.com/", "hxxp://l.yimg.com/", "hxxp://nikkomsgchannel/", "hxxp://ssl.gstatic.com/", "hxxp://www.google.co.uk/", "hxxp://www.google.com/", "hxxp://www.yahoo.de/", "https://www.google.co.uk/", "https://www.google.com/"], "host_referral_list":[2, ["hxxp://a.rfihub.com/", ["hxxp://b.scorecardresearch.com/", 2.2733802, "hxxp://cm.g.doubleclick.net/", 2.2733802, "hxxp://fw.adsafeprotected.com/", 2.6037004, "hxxp://ib.adnxs.com/", 2.2733802, "hxxp://p.rfihub.com/", 2.2733802, "hxxp://secure-us.imrworldwide.com/", 2.6037004, "hxxp://servedby.flashtalking.com/", 2.2733802]], ["hxxp://ad.yieldmanager.com/", ["hxxp://ad.yieldmanager.com/", 3.039723064, "hxxp://cm.g.doubleclick.net/", 2.2733802, "hxxp://cookex.amp.yahoo.com/", 1.830751132, "hxxp://l.yimg.com/", 2.2733802]], ["hxxp://adx.chip.de/", ["hxxp://adx.chip.de/", 1.830751132, "hxxp://show.onenetworkdirect.com/", 1.500430932, "hxxp://www.ftjcfx.com/", 2.2733802, "hxxp://www.yceml.net/", 2.2733802]], ["hxxp://cm.g.doubleclick.net/", ["hxxp://adxhm.d.chango.com/", 0.99028441512, "hxxp://cm.g.doubleclick.net/", 1.3458067250992, "hxxp://i.w55c.net/", 1.500430932, "hxxp://match.rtbidder.net/", 2.2733802, "hxxp://pixel.everesttech.net/", 0.6535877139792]], ["hxxp://ct1.addthis.com/", ["hxxp://aidps.atdmt.com/", 2.14577659904535, "hxxp://cf.addthis.com/", 2.14577659904535, "hxxp://cm.g.doubleclick.net/", 2.14577659904535, "hxxp://cs.go.affec.tv/", 2.14577659904535, "hxxp://d.turn.com/", 2.14577659904535, "hxxp://go.affec.tv/", 2.14577659904535, "hxxp://ib.adnxs.com/", 2.45755610488955, "hxxp://m.addthisedge.com/", 2.14577659904535, "hxxp://su.addthis.com/", 2.14577659904535]], ["hxxp://de.search.yahoo.com/", ["hxxp://ads.yimg.com/", 2.2733802, "hxxp://de.search.yahoo.com/", 2.2733802, "hxxp://e.yimg.com/", 2.2733802, "hxxp://ec.yimg.com/", 2.2733802, "hxxp://eu.ybinst9.ec.yimg.com/", 2.6037004, "hxxp://l.yimg.com/", 4.2553014, "hxxp://qs.ivwbox.de/", 2.2733802, "hxxp://yahoo.ivwbox.de/", 2.6037004, "hxxp://yui.yahooapis.com/", 2.2733802, "https://s.yimg.com/", 2.9340206]], ["hxxp://de.yahoo.com/", ["hxxp://ad.yieldmanager.com/", 2.6037004, "hxxp://ad2.adfarm1.adition.com/", 2.6037004, "hxxp://bs.serving-sys.com/", 2.2733802, "hxxp://clicks.beap.bc.yahoo.com/", 2.6037004, "hxxp://ds.serving-sys.com/", 3.594661, "hxxp://l.yimg.com/", 8.549464, "hxxp://l1.yimg.com/", 7.2281832, "hxxp://s.yimg.com/", 2.2733802, "hxxp://yahoo.ivwbox.de/", 2.6037004]], ["hxxp://googleads.g.doubleclick.net/", ["hxxp://a.rfihub.com/", 0.0540216062423085, "hxxp://cm.g.doubleclick.net/", 0.355957129324985, "hxxp://googleads.g.doubleclick.net/", 0.351031729229937, "hxxp://pagead2.googlesyndication.com/", 0.3450388051635, "hxxp://tca-45.tca-rtb1.rfihub.net/", 0.0540216062423085, "hxxp://www.google.com/", 0.33359926627299, "https://googleads.g.doubleclick.net/", 0.33359926627299]], ["hxxp://ih.adscale.de/", ["hxxp://dis.criteo.com/", 1.830751132, "hxxp://ih.adscale.de/", 1.830751132, "hxxp://js.adscale.de/", 1.500430932, "hxxp://rtb.adrolays.de/", 2.2733802, "hxxp://uip.semasio.net/", 2.6037004]], ["hxxp://ots-system.net/", ["hxxp://59782.r.msn.com/", 2.14577659904535, "hxxp://flex.atdmt.com/", 2.45755610488955, "hxxp://googleads.g.doubleclick.net/", 2.45755610488955, "hxxp://scripts.affiliatefuture.com/", 2.45755610488955, "hxxp://www.googleadservices.com/", 2.45755610488955, "https://flex.atdmt.com/", 2.14577659904535, "https://scripts.affiliatefuture.com/", 2.14577659904535, "https://www.airporttaxis-uk.co.uk/", 2.76933561073374, "https://www.googleadservices.com/", 2.14577659904535]], ["hxxp://pixlr.com/", ["hxxp://cdn.pixlr.com/", 3.49232100133, "hxxp://nikkomsgchannel/", 2.850489033518, "hxxp://pagead2.googlesyndication.com/", 2.208657065706, "hxxp://partner.googleadservices.com/", 2.529573049612, "hxxp://pixlr.com/", 3.171405017424, "hxxp://pubads.g.doubleclick.net/", 2.208657065706, "hxxp://www.google-analytics.com/", 3.171405017424]], ["hxxp://platform.twitter.com/", ["hxxp://cdn.api.twitter.com/", 2.2733802, "hxxp://p.twitter.com/", 2.2733802, "https://r.twimg.com/", 2.2733802]], ["hxxp://rh.adscale.de/", ["hxxp://adserver.freenet.de/", 1.830751132]], ["hxxp://www.addisonlee.com/", ["hxxp://www.addisonlee.com/", 11.4991617743712, "hxxp://www.google-analytics.com/", 2.45755610488955]], ["hxxp://www.airporttransfercars.com/", ["hxxp://api-public.addthis.com/", 2.14577659904535, "hxxp://connect.facebook.net/", 1.9337665350713, "hxxp://ct1.addthis.com/", 5.35086991912369, "hxxp://nikkomsgchannel/", 2.45755610488955, "hxxp://s7.addthis.com/", 1.9337665350713, "hxxp://static.ak.facebook.com/", 2.24554604091549, "hxxp://www.airporttransfercars.com/", 18.5952633273851, "hxxp://www.facebook.com/", 2.24554604091549, "hxxp://www.google-analytics.com/", 1.72799206121413, "https://s-static.ak.facebook.com/", 2.24554604091549]], ["hxxp://www.chip.de/", ["hxxp://adx.chip.de/", 1.500430932, "hxxp://dl.cdn.chip.de/", 1.500430932, "hxxp://googleads.g.doubleclick.net/", 1.718442264, "hxxp://ih.adscale.de/", 1.936453596, "hxxp://live.ec2.cxo.name/", 1.718442264, "hxxp://nikkomsgchannel/", 1.500430932, "hxxp://req.connect.wunderloop.net/", 1.718442264, "hxxp://static.ak.facebook.com/", 1.718442264, "hxxp://tracker.vinsight.de/", 1.500430932, "hxxp://www.chip.de/", 22.647530136]], ["hxxp://www.facebook.com/", ["hxxp://static.ak.fbcdn.net/", 0.609220353967138]], ["hxxp://www.google.co.uk/", ["hxxp://nikkomsgchannel/", 1.26553548243537, "hxxp://ssl.gstatic.com/", 1.03685774993133, "hxxp://www.google.co.uk/", 4.63031114323634, "hxxp://www.google.com/", 0.688678154392481]], ["hxxp://www.google.com/", ["hxxp://www.google.co.uk/", 0.49922837779463, "hxxp://www.google.de/", 0.479979808091026]], ["hxxp://www.google.de/", ["hxxp://nikkomsgchannel/", 2.3049318608778, "hxxp://ssl.gstatic.com/", 1.66951821274392, "hxxp://www.google.com/", 1.45771366336596, "hxxp://www.google.de/", 3.57575915714556]], ["hxxp://www.yahoo.de/", ["hxxp://de.yahoo.com/", 2.2733802]], ["https://book.addisonlee.com/", ["https://apis.google.com/", 2.45755610488955, "https://book.addisonlee.com/", 8.38136671592927, "https://connect.facebook.net/", 2.14577659904535, "https://csi.gstatic.com/", 2.76933561073374, "https://in.getclicky.com/", 2.14577659904535, "https://plusone.google.com/", 2.45755610488955, "https://s-static.ak.facebook.com/", 3.08111511657794, "https://ssl.google-analytics.com/", 2.45755610488955, "https://static.getclicky.com/", 2.14577659904535, "https://www.facebook.com/", 3.08111511657794]], ["https://ct1.addthis.com/", ["https://m.addthisedge.com/", 2.14577659904535]], ["https://live.sagepay.com/", ["https://live.sagepay.com/", 2.67073845980557]], ["https://ots-system.net/", ["https://ots-system.net/", 2.65085939851295, "https://www.ots-system.net/", 2.44508492465578]], ["https://plusone.google.com/", ["https://plusone.google.com/", 1.61466350889425, "https://ssl.gstatic.com/", 0.117055561763578]], ["https://www.airporttaxis-uk.co.uk/", ["https://csi.gstatic.com/", 3.39289462242213, "https://ct1.addthis.com/", 3.08111511657794, "https://images.liveperson.com/", 2.14577659904535, "https://ots-system.net/", 3.08111511657794, "https://plusone.google.com/", 2.45755610488955, "https://s-static.ak.facebook.com/", 2.45755610488955, "https://server.iad.liveperson.net/", 4.95179215164311, "https://ssl.google-analytics.com/", 2.14577659904535, "https://www.airporttaxis-uk.co.uk/", 10.5638232568386, "https://www.facebook.com/", 2.45755610488955]], ["https://www.facebook.com/", ["https://fbstatic-a.akamaihd.net/", 0.310165064253521]], ["https://www.securesuite.co.uk/", ["https://www.securesuite.co.uk/", 6.1989101750199]]]}, "net":{"http_server_properties":{"version":1, "servers":{"ssl.gstatic.com:443":{"settings":{"4":100, "5":2, "6":4}, "supports_spdy":true}, "r.twimg.com:443":{"supports_spdy":true}, "www.gstatic.com:443":{"settings":{"4":100, "5":32, "6":0}, "supports_spdy":true}, "maps.googleapis.com:443":{"settings":{"4":100, "5":32, "6":0}, "supports_spdy":true}, "static.doubleclick.net:443":{"supports_spdy":true}, "clients1.google.com:443":{"settings":{"4":100, "5":21, "6":0}, "supports_spdy":true}, "www.googleadservices.com:443":{"settings":{"4":100}, "supports_spdy":true}, "static.getclicky.com:443":{"settings":{"4":100}, "supports_spdy":true}, "ssl.google-analytics.com:443":{"settings":{"4":100, "5":19, "6":0}, "supports_spdy":true}, "www.google.com:443":{"settings":{"4":100, "5":16, "6":0}, "supports_spdy":true}, "csi.gstatic.com:443":{"settings":{"4":100, "5":32, "6":0}, "supports_spdy":true}, "www.google.co.uk:443":{"settings":{"4":100, "5":32, "6":0}, "supports_spdy":true}, "plusone.google.com:443":{"settings":{"4":100, "5":34, "6":0}, "supports_spdy":true}, "ad-emea.doubleclick.net:443":{"supports_spdy":true}, "apis.google.com:443":{"settings":{"4":100}, "supports_spdy":true}, "ad.doubleclick.net:443":{"settings":{"4":100}, "supports_spdy":true}, "www.facebook.com:443":{"settings":{"4":100, "5":16, "7":16384}, "supports_spdy":true}, "googleads.g.doubleclick.net:443":{"settings":{"4":100, "5":16, "6":0}, "supports_spdy":true}}}}, "homepage":"about:newtab?source=home", "default_search_provider":{"id":"2", "alternate_urls":["{google:baseURL}#q={searchTerms}", "{google:baseURL}search#q={searchTerms}", "{google:baseURL}webhp#q={searchTerms}"], "instant_url":"{google:baseURL}webhp?sourceid=chrome-instant&{google:RLZ}{google:instantEnabledParameter}{google:instantExtendedEnabledParameter}ie={inputEncoding}", "keyword":"google.co.uk", "search_terms_replacement_key":"espv", "name":"Google", "prepopulate_id":"1", "search_url":"{google:baseURL}search?q={searchTerms}&{google:RLZ}{google:acceptedSuggestion}{google:originalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}{google:searchClient}{google:sourceId}{google:instantExtendedEnabledParameter}ie={inputEncoding}", "enabled":true, "encodings":"UTF-8", "suggest_url":"{google:baseSuggestURL}search?{google:searchFieldtrialParameter}client=chrome&q={searchTerms}&{google:cursorPosition}sugkey={google:suggestAPIKeyParameter}", "icon_url":"hxxp://www.google.com/favicon.ico"}, "translate_accepted_count":{"de":0}, "browser":{"window_placement":{"work_area_top":0, "work_area_right":1366, "top":10, "left":10, "bottom":728, "maximized":false, "right":1060, "work_area_left":0, "work_area_bottom":738}, "last_prompted_google_url":"https://www.google.co.uk/", "last_known_google_url":"https://www.google.co.uk/", "show_home_button":true, "check_default_browser":false}, "selectfile":{"last_directory":"E:\\Eigene Bilder\\Adobe\\Fotos von Digitalkamera\\Weihnachten 2008"
CHR Extension: (YouTube) - C:\Users\Susanne\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.5_1
CHR Extension: (Google Search) - C:\Users\Susanne\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.19_1
CHR Extension: (Gmail) - C:\Users\Susanne\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1
CHR HKLM\...\Chrome\Extension: [bejbohlohkkgompgecdcbbglkpjfjgdj] - C:\Users\Susanne\AppData\Local\Temp\crxC675.tmp
CHR HKLM\...\Chrome\Extension: [fgibjgmnimooanbagcfpnkmngejcojaf] - C:\Program Files\HomeTab\chrome\HomeTab.crx
CHR HKLM\...\Chrome\Extension: [kincjchfokkeneeofpeefomkikfkiedl] - C:\Program Files\OApps\chromeaddon.crx
CHR HKLM\...\Chrome\Extension: [ngnjhfpfhadncgafgbneeljaginimmmk] - C:\Users\Susanne\AppData\Local\Temp\tbch.crx
========================== Services (Whitelisted) =================
R2 ABBYY.Licensing.FineReader.Sprint.9.0; C:\Program Files\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe [759048 2009-05-14] (ABBYY)
R2 AntiVirSchedulerService; C:\Program Files\Avira\AntiVir Desktop\sched.exe [84024 2013-06-20] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files\Avira\AntiVir Desktop\avguard.exe [108088 2013-06-20] (Avira Operations GmbH & Co. KG)
S4 AntiVirWebService; C:\Program Files\Avira\AntiVir Desktop\AVWEBGRD.EXE [589368 2013-06-20] (Avira Operations GmbH & Co. KG)
R2 ePowerSvc; C:\Program Files\Acer\Acer ePower Management\ePowerSvc.exe [653856 2009-02-06] (Acer Incorporated)
R2 MsMpSvc; c:\Program Files\Microsoft Security Client\MsMpEng.exe [22208 2013-06-20] (Microsoft Corporation)
R2 MWLService; C:\Program Files\EgisTec\MyWinLocker 3\x86\\MWLService.exe [306736 2008-10-27] (EgisTec Inc.)
R3 NisSrv; c:\Program Files\Microsoft Security Client\NisSrv.exe [295376 2013-06-20] (Microsoft Corporation)
R2 NTI IScheduleSvc; C:\Program Files\NewTech Infosystems\Acer Backup Manager\IScheduleSvc.exe [54528 2009-04-01] (NewTech Infosystems, Inc.)
R2 NTISchedulerSvc; C:\Program Files\NewTech Infosystems\NTI Backup Now 5\SchedulerSvc.exe [144632 2008-09-23] (NewTech Infosystems, Inc.)
R2 SDScannerService; C:\Program Files\Spybot - Search & Destroy 2\SDFSSvc.exe [1103392 2012-11-13] (Safer-Networking Ltd.)
R2 SDUpdateService; C:\Program Files\Spybot - Search & Destroy 2\SDUpdSvc.exe [1369624 2012-11-13] (Safer-Networking Ltd.)
R2 SDWSCService; C:\Program Files\Spybot - Search & Destroy 2\SDWSCSvc.exe [168384 2012-11-13] (Safer-Networking Ltd.)
S2 SystemStoreService; C:\Program Files\SoftwareUpdater\SystemStore.exe [296448 2013-08-19] ()
==================== Drivers (Whitelisted) ====================
R0 ahcix86s; C:\Windows\System32\DRIVERS\ahcix86s.sys [183312 2008-10-03] (Advanced Micro Devices, Inc)
R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [84744 2013-06-20] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [135136 2013-06-20] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [37352 2013-03-06] (Avira Operations GmbH & Co. KG)
R0 CLFS; C:\Windows\System32\CLFS.sys [245736 2009-04-11] (Microsoft Corporation)
R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [211560 2013-06-18] (Microsoft Corporation)
R2 mwlPSDFilter; C:\Windows\System32\DRIVERS\mwlPSDFilter.sys [19504 2008-10-09] (Egis Incorporated.)
R2 mwlPSDNServ; C:\Windows\System32\DRIVERS\mwlPSDNServ.sys [16432 2008-10-09] (Egis Incorporated.)
R2 mwlPSDVDisk; C:\Windows\System32\DRIVERS\mwlPSDVDisk.sys [59952 2008-10-09] (Egis Incorporated.)
S3 pbfilter; C:\Program Files\PeerBlock\pbfilter.sys [16472 2009-09-28] ()
R1 RapportCerberus_56758; C:\ProgramData\Trusteer\Rapport\store\exts\RapportCerberus\baseline\RapportCerberus32_56758.sys [330960 2013-08-21] ()
R1 RapportEI; C:\Program Files\Trusteer\Rapport\bin\RapportEI.sys [148688 2013-08-19] (Trusteer Ltd.)
R1 RapportPG; C:\Program Files\Trusteer\Rapport\bin\RapportPG.sys [222416 2013-08-19] (Trusteer Ltd.)
R3 RTHDMIAzAudService; C:\Windows\System32\drivers\RtHDMIV.sys [153952 2009-02-21] (Realtek Semiconductor Corp.)
R3 SNP2UVC; C:\Windows\System32\DRIVERS\snp2uvc.sys [1759744 2009-05-06] ()
R1 ssmdrv; C:\Windows\System32\DRIVERS\ssmdrv.sys [28520 2012-08-27] (Avira GmbH)
S3 IpInIp; system32\DRIVERS\ipinip.sys [x]
S3 NwlnkFlt; system32\DRIVERS\nwlnkflt.sys [x]
S3 NwlnkFwd; system32\DRIVERS\nwlnkfwd.sys [x]
S3 SANDRA; \??\C:\Program Files\SiSoftware\SiSoftware Sandra Lite 2011.SP4c\WNt500x86\Sandra.sys [x]
S3 vsdatant7; System32\drivers\vsdatant.win7.sys [x]
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2013-08-23 01:52 - 2013-08-23 01:52 - 00000000 ____D C:\Users\Guest\AppData\Roaming\Avira
2013-08-23 01:49 - 2013-08-23 01:49 - 00000000 ____D C:\Users\Guest\AppData\Local\Google
2013-08-23 01:45 - 2013-08-23 01:45 - 00000000 ____D C:\Users\Guest\AppData\Roaming\ATI
2013-08-23 01:45 - 2013-08-23 01:45 - 00000000 ____D C:\Users\Guest\AppData\Local\ATI
2013-08-23 01:44 - 2013-08-23 01:44 - 00088576 _____ C:\Users\Guest\AppData\Local\GDIPFONTCACHEV1.DAT
2013-08-23 01:44 - 2013-08-23 01:44 - 00000000 ____D C:\Users\Guest\AppData\Local\EgisTec
2013-08-23 01:44 - 2013-08-23 01:44 - 00000000 ____D C:\Users\Guest\AppData\Local\Acer ePower Management V4
2013-08-23 01:43 - 2013-08-23 01:50 - 00001975 _____ C:\Users\Guest\Desktop\Google Chrome.lnk
2013-08-23 01:43 - 2013-08-23 01:43 - 00000000 ____D C:\Users\Guest\AppData\Local\VirtualStore
2013-08-23 01:41 - 2013-08-23 01:41 - 00000020 ___SH C:\Users\Guest\ntuser.ini
2013-08-23 01:41 - 2012-10-30 13:23 - 00000000 ____D C:\Users\Guest\AppData\Local\Trusteer
2013-08-23 01:41 - 2011-07-04 04:10 - 00000000 ____D C:\Users\Guest\AppData\Local\Microsoft Help
2013-08-23 01:41 - 2011-06-22 01:59 - 00000000 ____D C:\Users\Guest\AppData\Roaming\Macromedia
2013-08-23 01:41 - 2009-02-23 19:45 - 00000000 ____D C:\Users\Guest\AppData\Roaming\Acer GameZone Console
2013-08-23 01:40 - 2013-08-23 01:43 - 00000000 ____D C:\Users\Guest
2013-08-22 18:54 - 2013-08-22 18:54 - 00000000 ____D C:\Users\Susanne\AppData\Roaming\Avira
2013-08-22 18:51 - 2013-08-23 11:24 - 00001851 _____ C:\Users\Public\Desktop\Avira Control Center.lnk
2013-08-22 18:51 - 2012-08-27 15:50 - 00028520 _____ (Avira GmbH) C:\Windows\system32\Drivers\ssmdrv.sys
2013-08-22 18:50 - 2013-08-23 11:24 - 00000000 ____D C:\ProgramData\Avira
2013-08-22 18:50 - 2013-08-22 18:50 - 00000000 ____D C:\Program Files\Avira
2013-08-22 18:50 - 2013-06-20 14:48 - 00135136 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avipbb.sys
2013-08-22 18:50 - 2013-06-20 14:48 - 00084744 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avgntflt.sys
2013-08-22 18:50 - 2013-03-06 16:13 - 00037352 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avkmgr.sys
2013-08-22 18:01 - 2011-10-09 13:17 - 00437862 _____ C:\Windows\system32\Drivers\etc\hosts.20130822-180149.backup
2013-08-22 17:20 - 2011-10-09 13:17 - 00437862 _____ C:\Windows\system32\Drivers\etc\hosts.20130822-172055.backup
2013-08-21 23:05 - 2013-08-21 23:05 - 00003922 ____N C:\bootex.log
2013-08-21 00:47 - 2011-10-09 13:17 - 00437862 _____ C:\Windows\system32\Drivers\etc\hosts.20130821-004758.backup
2013-08-20 10:59 - 2013-08-20 10:59 - 00000000 ___HD C:\ProgramData\CanonBJ
2013-08-20 10:58 - 2013-08-20 10:58 - 00000000 ___HD C:\Windows\system32\CanonIJ Uninstaller Information
2013-08-20 10:54 - 2013-08-20 10:54 - 00000000 ___HD C:\Program Files\CanonBJ
2013-08-19 22:23 - 2013-08-19 23:38 - 00002098 _____ C:\Windows\epplauncher.mif
2013-08-19 22:22 - 2013-08-19 22:23 - 00000000 ____D C:\Program Files\Microsoft Security Client
2013-08-19 19:53 - 2013-08-19 19:55 - 00000000 ____D C:\ProgramData\FreeDriverScout
2013-08-19 19:53 - 2013-08-19 19:53 - 00000000 ____D C:\Users\Susanne\Documents\Freemium Driver Utilities
2013-08-19 11:52 - 2013-06-27 07:14 - 00031816 _____ C:\Windows\Launcher.exe
2013-08-19 11:37 - 2013-08-19 11:38 - 00000000 ____D C:\Program Files\SoftwareUpdater
2013-08-19 11:37 - 2013-08-19 11:37 - 00001910 _____ C:\Users\Public\Desktop\Free Driver Scout.lnk
2013-08-19 11:37 - 2013-08-19 11:37 - 00000000 ____D C:\ProgramData\Package Cache
2013-08-19 11:37 - 2013-08-19 11:37 - 00000000 ____D C:\Program Files\Covus Freemium
2013-08-19 11:20 - 2008-10-09 05:00 - 00230912 _____ (CANON INC.) C:\Windows\system32\CNMLM9E.DLL
2013-08-19 11:11 - 2013-08-19 11:17 - 26035600 _____ C:\Users\Susanne\Desktop\md86-win-mp540-1_04-ea24.exe
2013-08-19 11:01 - 2013-08-19 11:01 - 00097008 _____ (Trusteer Ltd.) C:\Windows\system32\Drivers\RapportKELL.sys
2013-08-19 10:58 - 2013-08-19 10:58 - 00000000 ____D C:\ProgramData\Driver Whiz
2013-08-19 10:38 - 2013-08-19 10:38 - 00000000 ____D C:\Users\Susanne\AppData\Local\{43C994E5-D5F8-4542-82CC-4FA74FC586DE}
2013-08-19 10:32 - 2013-08-19 10:33 - 01151335 _____ C:\Users\Susanne\Desktop\P46 Anwell Vets.zip
2013-08-18 21:04 - 2013-08-18 21:05 - 00000000 ____D C:\Users\Susanne\Documents\For sale gumtree
2013-08-18 21:04 - 2013-08-18 21:04 - 00000000 ____D C:\Users\Susanne\Documents\Ich 3. Juli
2013-08-18 21:04 - 2013-08-18 21:04 - 00000000 ____D C:\Users\Susanne\Documents\Ich 25. Juni
2013-08-18 21:04 - 2013-08-18 21:04 - 00000000 ____D C:\Users\Susanne\Documents\Hanteln
2013-08-18 21:04 - 2013-08-18 21:04 - 00000000 ____D C:\Users\Susanne\Documents\Bilder fuer Julia
2013-08-18 00:14 - 2013-08-18 00:15 - 00000000 ____D C:\Program Files\Mozilla Firefox
2013-08-15 03:03 - 2013-07-25 04:40 - 12334080 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2013-08-15 03:03 - 2013-07-25 04:32 - 01800704 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2013-08-15 03:03 - 2013-07-25 04:30 - 09738752 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2013-08-15 03:03 - 2013-07-25 04:26 - 01129472 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2013-08-15 03:03 - 2013-07-25 04:26 - 01104384 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2013-08-15 03:03 - 2013-07-25 04:25 - 01427968 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2013-08-15 03:03 - 2013-07-25 04:24 - 00231936 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2013-08-15 03:03 - 2013-07-25 04:24 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2013-08-15 03:03 - 2013-07-25 04:23 - 01796096 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2013-08-15 03:03 - 2013-07-25 04:23 - 00717824 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2013-08-15 03:03 - 2013-07-25 04:23 - 00607744 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2013-08-15 03:03 - 2013-07-25 04:23 - 00420864 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2013-08-15 03:03 - 2013-07-25 04:23 - 00142848 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2013-08-15 03:03 - 2013-07-25 04:22 - 02382848 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2013-08-15 03:03 - 2013-07-25 04:22 - 00176640 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2013-08-15 03:03 - 2013-07-25 04:22 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2013-08-14 08:05 - 2013-07-17 21:41 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
2013-08-14 08:05 - 2013-07-10 11:47 - 00783360 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2013-08-14 08:05 - 2013-07-05 05:20 - 00914880 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2013-08-14 08:05 - 2013-07-05 03:43 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpipreg.sys
2013-08-14 08:05 - 2013-06-15 15:22 - 00015872 _____ (Microsoft Corporation) C:\Windows\system32\icaapi.dll
2013-08-14 08:05 - 2013-06-15 13:23 - 00024064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tssecsrv.sys
2013-08-14 08:03 - 2013-07-09 14:10 - 01205168 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2013-08-14 08:03 - 2013-07-08 06:55 - 03603904 _____ (Microsoft Corporation) C:\Windows\system32\ntkrnlpa.exe
2013-08-14 08:03 - 2013-07-08 06:55 - 03551680 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2013-08-14 08:03 - 2013-07-08 06:20 - 00172544 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll
2013-08-14 08:03 - 2013-07-08 06:16 - 00992768 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll
2013-08-14 08:03 - 2013-07-08 06:16 - 00133120 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll
2013-08-14 08:03 - 2013-07-08 06:16 - 00098304 _____ (Microsoft Corporation) C:\Windows\system32\cryptnet.dll
2013-08-14 07:58 - 2011-10-09 13:17 - 00437862 _____ C:\Windows\system32\Drivers\etc\hosts.20130814-075845.backup
2013-08-07 10:30 - 2011-10-09 13:17 - 00437862 _____ C:\Windows\system32\Drivers\etc\hosts.20130807-093015.backup
2013-08-01 00:22 - 2013-08-01 00:49 - 00007716 _____ C:\Users\Susanne\Documents\Invoice Companion Care Charlton July and August 2013.odt
2013-07-28 19:17 - 2013-07-28 19:17 - 00000000 ____D C:\Users\Susanne\AppData\Local\{B3C46E6A-4BCE-4281-8E56-C82B080712FD}
==================== One Month Modified Files and Folders =======
2013-08-24 20:24 - 2011-06-22 02:43 - 00000000 ____D C:\Users\Susanne\AppData\Roaming\vlc
2013-08-24 20:17 - 2012-04-12 23:44 - 00000830 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2013-08-24 20:06 - 2012-01-21 03:50 - 00000888 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2013-08-24 19:58 - 2013-01-05 10:27 - 00077945 _____ C:\Users\Susanne\AppData\Roaming\Safer-Networking.log
2013-08-24 19:57 - 2011-06-22 02:20 - 01313133 _____ C:\Windows\WindowsUpdate.log
2013-08-24 19:46 - 2013-03-16 18:25 - 00000000 ____D C:\Users\Susanne\AppData\Roaming\Dropbox
2013-08-24 19:44 - 2013-03-16 18:33 - 00000000 ___RD C:\Users\Susanne\Dropbox
2013-08-24 19:41 - 2012-01-21 03:50 - 00000884 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2013-08-24 19:40 - 2012-12-30 19:25 - 00000620 _____ C:\Windows\Tasks\Check for updates (Spybot - Search & Destroy).job
2013-08-24 19:39 - 2006-11-02 15:01 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2013-08-24 19:39 - 2006-11-02 14:47 - 00003216 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
2013-08-24 19:39 - 2006-11-02 14:47 - 00003216 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
2013-08-23 21:13 - 2012-12-25 19:03 - 00000000 ____D C:\Users\Susanne\AppData\Roaming\dvdcss
2013-08-23 15:14 - 2006-11-02 15:01 - 00032628 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2013-08-23 14:35 - 2013-08-23 14:35 - 00000000 ____D C:\FRST
2013-08-23 11:27 - 2012-12-30 18:23 - 00303014 _____ C:\Windows\PFRO.log
2013-08-23 11:24 - 2013-08-22 18:51 - 00001851 _____ C:\Users\Public\Desktop\Avira Control Center.lnk
2013-08-23 11:24 - 2013-08-22 18:50 - 00000000 ____D C:\ProgramData\Avira
2013-08-23 09:46 - 2012-06-29 19:06 - 00000000 ____D C:\Program Files\intellidownload
2013-08-23 01:52 - 2013-08-23 01:52 - 00000000 ____D C:\Users\Guest\AppData\Roaming\Avira
2013-08-23 01:50 - 2013-08-23 01:43 - 00001975 _____ C:\Users\Guest\Desktop\Google Chrome.lnk
2013-08-23 01:49 - 2013-08-23 01:49 - 00000000 ____D C:\Users\Guest\AppData\Local\Google
2013-08-23 01:45 - 2013-08-23 01:45 - 00000000 ____D C:\Users\Guest\AppData\Roaming\ATI
2013-08-23 01:45 - 2013-08-23 01:45 - 00000000 ____D C:\Users\Guest\AppData\Local\ATI
2013-08-23 01:44 - 2013-08-23 01:44 - 00088576 _____ C:\Users\Guest\AppData\Local\GDIPFONTCACHEV1.DAT
2013-08-23 01:44 - 2013-08-23 01:44 - 00000000 ____D C:\Users\Guest\AppData\Local\EgisTec
2013-08-23 01:44 - 2013-08-23 01:44 - 00000000 ____D C:\Users\Guest\AppData\Local\Acer ePower Management V4
2013-08-23 01:43 - 2013-08-23 01:43 - 00000000 ____D C:\Users\Guest\AppData\Local\VirtualStore
2013-08-23 01:43 - 2013-08-23 01:40 - 00000000 ____D C:\Users\Guest
2013-08-23 01:41 - 2013-08-23 01:41 - 00000020 ___SH C:\Users\Guest\ntuser.ini
2013-08-22 21:52 - 2012-12-30 20:47 - 00001328 _____ C:\Windows\wininit.ini
2013-08-22 18:54 - 2013-08-22 18:54 - 00000000 ____D C:\Users\Susanne\AppData\Roaming\Avira
2013-08-22 18:50 - 2013-08-22 18:50 - 00000000 ____D C:\Program Files\Avira
2013-08-21 23:05 - 2013-08-21 23:05 - 00003922 ____N C:\bootex.log
2013-08-21 14:21 - 2012-12-29 20:02 - 00000000 ____D C:\Users\Susanne\AppData\Roaming\uTorrent
2013-08-21 14:21 - 2011-07-09 17:36 - 00000000 ____D C:\Program Files\PeerBlock
2013-08-21 12:41 - 2012-04-12 23:44 - 00692104 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe
2013-08-21 12:41 - 2011-06-22 22:14 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl
2013-08-21 01:01 - 2012-12-30 19:25 - 00000616 _____ C:\Windows\Tasks\Refresh immunization (Spybot - Search & Destroy).job
2013-08-20 10:59 - 2013-08-20 10:59 - 00000000 ___HD C:\ProgramData\CanonBJ
2013-08-20 10:58 - 2013-08-20 10:58 - 00000000 ___HD C:\Windows\system32\CanonIJ Uninstaller Information
2013-08-20 10:58 - 2011-06-22 02:30 - 00000000 ____D C:\Users\Susanne
2013-08-20 10:58 - 2006-11-02 14:37 - 00000000 ____D C:\Windows\twain_32
2013-08-20 10:54 - 2013-08-20 10:54 - 00000000 ___HD C:\Program Files\CanonBJ
2013-08-20 00:31 - 2006-11-02 13:18 - 00000000 ____D C:\Windows\Microsoft.NET
2013-08-19 23:38 - 2013-08-19 22:23 - 00002098 _____ C:\Windows\epplauncher.mif
2013-08-19 22:44 - 2009-02-23 19:45 - 00000000 ____D C:\ProgramData\Microsoft Help
2013-08-19 22:23 - 2013-08-19 22:22 - 00000000 ____D C:\Program Files\Microsoft Security Client
2013-08-19 21:31 - 2006-11-02 12:33 - 00703516 _____ C:\Windows\system32\PerfStringBackup.INI
2013-08-19 19:55 - 2013-08-19 19:53 - 00000000 ____D C:\ProgramData\FreeDriverScout
2013-08-19 19:53 - 2013-08-19 19:53 - 00000000 ____D C:\Users\Susanne\Documents\Freemium Driver Utilities
2013-08-19 11:38 - 2013-08-19 11:37 - 00000000 ____D C:\Program Files\SoftwareUpdater
2013-08-19 11:37 - 2013-08-19 11:37 - 00001910 _____ C:\Users\Public\Desktop\Free Driver Scout.lnk
2013-08-19 11:37 - 2013-08-19 11:37 - 00000000 ____D C:\ProgramData\Package Cache
2013-08-19 11:37 - 2013-08-19 11:37 - 00000000 ____D C:\Program Files\Covus Freemium
2013-08-19 11:17 - 2013-08-19 11:11 - 26035600 _____ C:\Users\Susanne\Desktop\md86-win-mp540-1_04-ea24.exe
2013-08-19 11:01 - 2013-08-19 11:01 - 00097008 _____ (Trusteer Ltd.) C:\Windows\system32\Drivers\RapportKELL.sys
2013-08-19 10:58 - 2013-08-19 10:58 - 00000000 ____D C:\ProgramData\Driver Whiz
2013-08-19 10:38 - 2013-08-19 10:38 - 00000000 ____D C:\Users\Susanne\AppData\Local\{43C994E5-D5F8-4542-82CC-4FA74FC586DE}
2013-08-19 10:33 - 2013-08-19 10:32 - 01151335 _____ C:\Users\Susanne\Desktop\P46 Anwell Vets.zip
2013-08-19 10:07 - 2012-03-18 02:30 - 00000000 ____D C:\Program Files\Mozilla Maintenance Service
2013-08-18 21:05 - 2013-08-18 21:04 - 00000000 ____D C:\Users\Susanne\Documents\For sale gumtree
2013-08-18 21:04 - 2013-08-18 21:04 - 00000000 ____D C:\Users\Susanne\Documents\Ich 3. Juli
2013-08-18 21:04 - 2013-08-18 21:04 - 00000000 ____D C:\Users\Susanne\Documents\Ich 25. Juni
2013-08-18 21:04 - 2013-08-18 21:04 - 00000000 ____D C:\Users\Susanne\Documents\Hanteln
2013-08-18 21:04 - 2013-08-18 21:04 - 00000000 ____D C:\Users\Susanne\Documents\Bilder fuer Julia
2013-08-18 00:15 - 2013-08-18 00:14 - 00000000 ____D C:\Program Files\Mozilla Firefox
2013-08-16 21:42 - 2013-07-19 21:25 - 00000000 ____D C:\Windows\system32\MRT
2013-08-16 21:37 - 2006-11-02 12:24 - 75778376 _____ (Microsoft Corporation) C:\Windows\system32\mrt.exe
2013-08-15 04:05 - 2006-11-02 13:18 - 00000000 ____D C:\Windows\rescache
2013-08-14 22:37 - 2012-05-31 23:30 - 00017408 _____ C:\Users\Susanne\AppData\Local\WebpageIcons.db
2013-08-01 07:15 - 2012-12-30 19:25 - 00000446 _____ C:\Windows\Tasks\Scan the system (Spybot - Search & Destroy).job
2013-08-01 00:49 - 2013-08-01 00:22 - 00007716 _____ C:\Users\Susanne\Documents\Invoice Companion Care Charlton July and August 2013.odt
2013-07-28 19:17 - 2013-07-28 19:17 - 00000000 ____D C:\Users\Susanne\AppData\Local\{B3C46E6A-4BCE-4281-8E56-C82B080712FD}
2013-07-26 20:13 - 2011-06-22 02:31 - 00000000 ____D C:\Program Files\Google
2013-07-25 04:40 - 2013-08-15 03:03 - 12334080 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2013-07-25 04:32 - 2013-08-15 03:03 - 01800704 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2013-07-25 04:30 - 2013-08-15 03:03 - 09738752 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2013-07-25 04:26 - 2013-08-15 03:03 - 01129472 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2013-07-25 04:26 - 2013-08-15 03:03 - 01104384 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2013-07-25 04:25 - 2013-08-15 03:03 - 01427968 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2013-07-25 04:24 - 2013-08-15 03:03 - 00231936 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2013-07-25 04:24 - 2013-08-15 03:03 - 00065536 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2013-07-25 04:23 - 2013-08-15 03:03 - 01796096 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2013-07-25 04:23 - 2013-08-15 03:03 - 00717824 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2013-07-25 04:23 - 2013-08-15 03:03 - 00607744 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2013-07-25 04:23 - 2013-08-15 03:03 - 00420864 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2013-07-25 04:23 - 2013-08-15 03:03 - 00142848 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2013-07-25 04:22 - 2013-08-15 03:03 - 02382848 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2013-07-25 04:22 - 2013-08-15 03:03 - 00176640 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2013-07-25 04:22 - 2013-08-15 03:03 - 00073216 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
Files to move or delete:
====================
C:\Users\Guest\AppData\Local\Temp\RtkBtMnt.exe
C:\Users\Susanne\AppData\Local\Temp\RtkBtMnt.exe
==================== Bamital & volsnap Check =================
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
LastRegBack: 2013-08-24 19:48
==================== End Of Log ============================ --- --- ---
--- --- ---
FRST Additions Logfile: Code:
Additional scan result of Farbar Recovery Scan Tool (x86) Version: 24-08-2013 01
Ran by Susanne at 2013-08-24 20:47:05
Running from C:\Users\Susanne\Desktop\Downloads
Boot Mode: Normal
==========================================================
==================== Installed Programs =======================
µTorrent (Version: 3.2.3.28705)
7-Zip 9.20
ABBYY FineReader 9.0 Sprint (Version: 9.01.513.58212)
Acer Arcade Deluxe (Version: 2.5.6121)
Acer Backup Manager (Version: 1.0.0.53)
Acer Crystal Eye webcam Ver:1.1.74.216 (Version: 1.1.74.216)
Acer ePower Management (Version: 4.00.3004)
Acer eRecovery Management (Version: 4.00.3005)
Acer GridVista (Version: 2.72.317)
Acer Product Registration (Version: 3.0.0.10)
Acer ScreenSaver (Version: 1.0.0.0226)
Acrobat.com (Version: 0.0.0)
Acrobat.com (Version: 1.1.377)
Adobe AIR (Version: 1.0.4990)
Adobe AIR (Version: 1.0.8.4990)
Adobe Flash Player 11 ActiveX (Version: 11.8.800.94)
Adobe Flash Player 11 Plugin (Version: 11.8.800.94)
Adobe Reader X (10.1.7) - Deutsch (Version: 10.1.7)
Airport Mania First Flight
Amazon MP3-Downloader 1.0.9
AMD USB Audio Driver Filter (Version: 1.0.7.0031)
Apple Application Support (Version: 2.1.7)
Apple Software Update (Version: 2.1.3.127)
ATI Catalyst Install Manager (Version: 3.0.715.0)
Auslogics Disk Defrag (Version: 3.5)
Avira Free Antivirus (Version: 13.0.0.3885)
Backup Manager Basic (Version: 1.0.0.53)
Broadcom Gigabit NetLink Controller (Version: 11.34.01)
C:\Program Files\Acer GameZone\GameConsole (Version: 2.0.1.5)
Cake Mania 2
Canon MP540 series MP Drivers
Catalyst Control Center - Branding (Version: 1.00.0000)
Catalyst Control Center Core Implementation (Version: 2009.0318.2141.37097)
Catalyst Control Center Graphics Full Existing (Version: 2009.0318.2141.37097)
Catalyst Control Center Graphics Full New (Version: 2009.0318.2141.37097)
Catalyst Control Center Graphics Light (Version: 2009.0318.2141.37097)
Catalyst Control Center InstallProxy (Version: 2009.0318.2141.37097)
Catalyst Control Center Localization All (Version: 2009.0318.2141.37097)
CCC Help Chinese Standard (Version: 2009.0318.2140.37097)
CCC Help Chinese Traditional (Version: 2009.0318.2140.37097)
CCC Help Czech (Version: 2009.0318.2140.37097)
CCC Help Danish (Version: 2009.0318.2140.37097)
CCC Help Dutch (Version: 2009.0318.2140.37097)
CCC Help English (Version: 2009.0318.2140.37097)
CCC Help Finnish (Version: 2009.0318.2140.37097)
CCC Help French (Version: 2009.0318.2140.37097)
CCC Help German (Version: 2009.0318.2140.37097)
CCC Help Greek (Version: 2009.0318.2140.37097)
CCC Help Hungarian (Version: 2009.0318.2140.37097)
CCC Help Italian (Version: 2009.0318.2140.37097)
CCC Help Japanese (Version: 2009.0318.2140.37097)
CCC Help Korean (Version: 2009.0318.2140.37097)
CCC Help Norwegian (Version: 2009.0318.2140.37097)
CCC Help Polish (Version: 2009.0318.2140.37097)
CCC Help Portuguese (Version: 2009.0318.2140.37097)
CCC Help Russian (Version: 2009.0318.2140.37097)
CCC Help Spanish (Version: 2009.0318.2140.37097)
CCC Help Swedish (Version: 2009.0318.2140.37097)
CCC Help Thai (Version: 2009.0318.2140.37097)
CCC Help Turkish (Version: 2009.0318.2140.37097)
ccc-core-static (Version: 2009.0318.2141.37097)
ccc-utility (Version: 2009.0318.2141.37097)
Compatibility Pack for the 2007 Office system (Version: 12.0.6612.1000)
concept/design onlineTV 8 (Version: 8.4.0.0)
Convert AVI to MP4 1.3
Cooking Dash
Cradle of Rome
D3DX10 (Version: 15.4.2368.0902)
Dairy Dash
Definition Update for Microsoft Office 2010 (KB982726) 32-Bit Edition
Dream Day Honeymoon
Dropbox (HKCU Version: 2.0.22)
eSobi v2 (Version: 2.0.3.000223)
Free Download Manager 3.9.2
Free Driver Scout (Version: 1.0.0.101)
Free Video Dub version 2.0.17.320 (Version: 2.0.17.320)
Galapago
Google Chrome (Version: 29.0.1547.57)
Google Earth Plug-in (Version: 7.1.1.1888)
Google Update Helper (Version: 1.3.21.153)
HDAUDIO Soft Data Fax Modem with SmartCP (Version: 7.80.2.53)
HomeTab 3.7 (Version: 3.7)
Java 7 Update 25 (Version: 7.0.250)
Java Auto Updater (Version: 2.1.9.5)
Java(TM) 6 Update 31 (Version: 6.0.310)
Jewel Quest Solitaire
Junk Mail filter update (Version: 15.4.3502.0922)
Launch Manager (Version: 2.0.03)
Luxor 2
Mahjong Escape Ancient China
Mesh Runtime (Version: 15.4.5722.2)
Messenger Companion (Version: 15.4.3502.0922)
Microsoft .NET Framework 3.5 SP1
Microsoft .NET Framework 3.5 SP1 (Version: 3.5.30729)
Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319)
Microsoft Application Error Reporting (Version: 12.0.6012.5000)
Microsoft Office Access MUI (English) 2010 (Version: 14.0.7015.1000)
Microsoft Office Access Setup Metadata MUI (English) 2010 (Version: 14.0.7015.1000)
Microsoft Office Excel MUI (English) 2010 (Version: 14.0.7015.1000)
Microsoft Office File Validation Add-In (Version: 14.0.5130.5003)
Microsoft Office Home and Student 2010 (Version: 14.0.7015.1000)
Microsoft Office OneNote MUI (English) 2010 (Version: 14.0.7015.1000)
Microsoft Office Outlook MUI (English) 2010 (Version: 14.0.7015.1000)
Microsoft Office PowerPoint MUI (English) 2010 (Version: 14.0.7015.1000)
Microsoft Office PowerPoint Viewer 2007 (English) (Version: 12.0.6612.1000)
Microsoft Office Proof (English) 2010 (Version: 14.0.7015.1000)
Microsoft Office Proof (French) 2010 (Version: 14.0.7015.1000)
Microsoft Office Proof (Spanish) 2010 (Version: 14.0.7015.1000)
Microsoft Office Proofing (English) 2010 (Version: 14.0.7015.1000)
Microsoft Office Publisher MUI (English) 2010 (Version: 14.0.7015.1000)
Microsoft Office Shared MUI (English) 2010 (Version: 14.0.7015.1000)
Microsoft Office Shared Setup Metadata MUI (English) 2010 (Version: 14.0.7015.1000)
Microsoft Office Single Image 2010 (Version: 14.0.7015.1000)
Microsoft Office Suite Activation Assistant (Version: 2.9)
Microsoft Office Word MUI (English) 2010 (Version: 14.0.7015.1000)
Microsoft Security Client (Version: 4.3.0215.0)
Microsoft Security Essentials (Version: 4.3.215.0)
Microsoft Silverlight (Version: 5.1.20513.0)
Microsoft SQL Server 2005 Compact Edition [ENU] (Version: 3.1.0000)
Microsoft Visual C++ 2005 Redistributable (Version: 8.0.59193)
Microsoft Visual C++ 2005 Redistributable (Version: 8.0.61001)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (Version: 9.0.21022)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (Version: 9.0.30729.4148)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (Version: 9.0.30729.6161)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (Version: 10.0.40219)
Microsoft Works (Version: 9.7.0621)
Mozilla Firefox 23.0.1 (x86 de) (Version: 23.0.1)
Mozilla Maintenance Service (Version: 23.0.1)
MSVCRT (Version: 15.4.2862.0708)
MSXML 4.0 SP2 (KB954430) (Version: 4.20.9870.0)
MSXML 4.0 SP2 (KB973688) (Version: 4.20.9876.0)
MyWinLocker (Version: 3.1.36.0)
NTI Backup Now 5 (Version: 5.1.2.616)
NTI Backup Now Standard (Version: 5.1.2.616)
NTI Media Maker 8 (Version: 8.0.2.6509)
Ocean Express
Orion (Version: 2.5.0)
Paint.NET v3.5.8 (Version: 3.58.0)
Parking Dash
PeerBlock 1.0.0 (r181) (Version: 1.0.0.181)
Puzzle Express
QuickTime (Version: 7.72.80.56)
Rainbow Web
Rapport (Version: 3.5.1302.58)
Realtek High Definition Audio Driver (Version: 6.0.1.5807)
Realtek USB 2.0 Card Reader (Version: 6.0.6000.20121)
Segoe UI (Version: 15.4.2271.0615)
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition
Skype™ 6.6 (Version: 6.6.106)
Spybot - Search & Destroy (Version: 2.0.12)
Suite (Version: 1.00.0000)
Synaptics Pointing Device Driver (Version: 12.1.0.0)
Tradewinds 2
Tri-Peaks Solitaire To Go
Trusteer Endpoint Protection (Version: 3.5.1302.58)
Update for Microsoft .NET Framework 3.5 SP1 (KB2836940) (Version: 1)
Update for Microsoft .NET Framework 3.5 SP1 (KB963707) (Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2468871) (Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2600217) (Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2836939) (Version: 1)
Update for Microsoft Office 2010 (KB2494150)
Update for Microsoft Office 2010 (KB2760631) 32-Bit Edition
uTorrentBar Toolbar (Version: 6.3.5.3)
VC 9.0 Runtime (Version: 1.0.0)
VideoFileDownload (Version: 1.0)
VLC media player 2.0.1 (Version: 2.0.1)
Wedding Dash
Windows Live Communications Platform (Version: 15.4.3502.0922)
Windows Live Essentials (Version: 15.4.3502.0922)
Windows Live Essentials (Version: 15.4.3555.0308)
Windows Live Family Safety (Version: 15.4.3555.0308)
Windows Live Fotogalerie (Version: 15.4.3502.0922)
Windows Live ID Sign-in Assistant (Version: 7.250.4232.0)
Windows Live Installer (Version: 15.4.3502.0922)
Windows Live Mail (Version: 15.4.3502.0922)
Windows Live Mesh (Version: 15.4.3502.0922)
Windows Live Mesh ActiveX Control for Remote Connections (Version: 15.4.5722.2)
Windows Live Mesh ActiveX control for remote connections (Version: 15.4.5722.2)
Windows Live Messenger (Version: 15.4.3538.0513)
Windows Live Messenger Companion Core (Version: 15.4.3502.0922)
Windows Live MIME IFilter (Version: 15.4.3502.0922)
Windows Live Movie Maker (Version: 15.4.3502.0922)
Windows Live Photo Common (Version: 15.4.3502.0922)
Windows Live Photo Gallery (Version: 15.4.3502.0922)
Windows Live PIMT Platform (Version: 15.4.3508.1109)
Windows Live Remote Client (Version: 15.4.5722.2)
Windows Live Remote Client Resources (Version: 15.4.5722.2)
Windows Live Remote Service (Version: 15.4.5722.2)
Windows Live Remote Service Resources (Version: 15.4.5722.2)
Windows Live SOXE (Version: 15.4.3502.0922)
Windows Live SOXE Definitions (Version: 15.4.3502.0922)
Windows Live Sync (Version: 14.0.8050.1202)
Windows Live UX Platform (Version: 15.4.3502.0922)
Windows Live UX Platform Language Pack (Version: 15.4.3508.1109)
Windows Live Writer (Version: 15.4.3502.0922)
Windows Live Writer Resources (Version: 15.4.3502.0922)
Windows Media Player Firefox Plugin (Version: 1.0.0.8)
Yahoo! Software Update
Yahoo! Suche Schutzvorkehrung
Zattoo4 4.0.5 (Version: 4.0.5)
ZoneAlarm LTD Toolbar
Zuma Deluxe
==================== Restore Points =========================
21-08-2013 21:39:57 Installed Rapport
22-08-2013 16:30:28 Scheduled Checkpoint
22-08-2013 23:54:13 Windows Update
23-08-2013 08:15:23 Removed Java(TM) 6 Update 31
==================== Hosts content: ==========================
2006-11-02 12:23 - 2013-08-22 18:01 - 00449418 ____R C:\Windows\system32\Drivers\etc\hosts
127.0.0.1 localhost
127.0.0.1 www.007guard.com
127.0.0.1 007guard.com
127.0.0.1 008i.com
127.0.0.1 www.008k.com
127.0.0.1 008k.com
127.0.0.1 00hq.com
127.0.0.1 00hq.com
127.0.0.1 010402.com
127.0.0.1 www.032439.com
127.0.0.1 032439.com
127.0.0.1 Ó¢»Ê¹ú¼ÊÓéÀÖ³Ç-www.0scan.com-³¯Ñô¶«Ìú¿ó²úÆ·ÏúÊÛÓÐÏÞ¹«Ë¾
127.0.0.1 0scan.com
127.0.0.1 1000gratisproben.com
127.0.0.1 www.1000gratisproben.com
127.0.0.1 1001namen.com
127.0.0.1 f
127.0.0.1 100888290cs.com
127.0.0.1 ²©²Êͨ,²©²ÊÍø,½ð±¦²©188,²©²ÊͨÆÀ¼¶,°Ù¼ÒÀÖ,°ÂÃî°Ù¼ÒÀÖ
127.0.0.1 www.100sexlinks.com
127.0.0.1 100sexlinks.com
127.0.0.1 10sek.com
127.0.0.1 f
127.0.0.1 www.1-2005-search.com
127.0.0.1 1-2005-search.com
127.0.0.1 123fporn.info
127.0.0.1 www.123fporn.info
127.0.0.1 123haustiereundmehr.com
127.0.0.1 123haustiereundmehr.com
There are 1000 more lines.
==================== Scheduled Tasks (whitelisted) =============
Task: {0050C97E-18B7-458E-AD14-B6180864EA59} - System32\Tasks\Software Updater => C:\Program Files\SoftwareUpdater\SoftwareUpdater.Bootstrapper.exe [2013-08-19] ()
Task: {14AF79AE-C859-4B89-83B7-54986F2535A6} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [2012-01-21] (Google Inc.)
Task: {1CC81347-6204-4B83-900C-01E02F50F067} - System32\Tasks\Microsoft\Windows\MobilePC\TMM
Task: {2B07B6F0-19A9-4E42-BFB7-F86F3ADBD83E} - System32\Tasks\Microsoft\Windows\Defrag\ManualDefrag => C:\Windows\system32\defrag.exe [2008-01-21] (Microsoft Corp.)
Task: {320124A7-D70F-41DE-A9D1-D5E8E19D5D91} - System32\Tasks\Microsoft\Windows\NetworkAccessProtection\NAPStatus UI
Task: {33DE5AB2-55A5-4103-A650-5B086BB38F72} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2013-08-21] (Adobe Systems Incorporated)
Task: {3BCDF251-CA5C-4045-A1FC-8FCEF9FBDC93} - System32\Tasks\Microsoft\Windows\Shell\CrawlStartPages
Task: {3D9CE30B-E321-4324-AF14-0046E9593097} - System32\Tasks\Microsoft\Windows Live\SOXE\Extractor Definitions Update Task
Task: {44980BEE-7809-44A9-AC24-D6E578A3B7DF} - System32\Tasks\Microsoft\Windows\RAC\RACAgent => C:\Windows\system32\RacAgent.exe [2008-01-21] (Microsoft Corporation)
Task: {5E2E9612-66F0-400C-B265-A6AB80966552} - System32\Tasks\Check for updates (Spybot - Search & Destroy) => C:\Program Files\Spybot - Search & Destroy 2\SDUpdate.exe No File
Task: {849E8B85-8E74-4CA0-AFF0-8D18D09B6589} - System32\Tasks\Refresh immunization (Spybot - Search & Destroy) => C:\Program Files\Spybot - Search & Destroy 2\SDImmunize.exe No File
Task: {A61555D3-7840-45C1-A5A9-0D49851DE37A} - System32\Tasks\Microsoft\Windows\Customer Experience Improvement Program\OptinNotification => C:\Windows\System32\wsqmcons.exe [2008-01-21] (Microsoft Corporation)
Task: {B39E7D0E-C9DA-4E68-B997-021FBDED3F28} - System32\Tasks\Microsoft\Windows\Tcpip\WSHReset => C:\Windows\system32\schtasks.exe [2008-01-21] (Microsoft Corporation)
Task: {B92DF7CC-B738-45B7-B562-E4B58C61FCBE} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [2012-01-21] (Google Inc.)
Task: {BD876D10-8FB8-4DA9-95D7-FAB530F11DC7} - System32\Tasks\SmartDefrag_Startup => C:\Program Files\IObit\Smart Defrag 2\SmartDefrag.exe No File
Task: {D064D65D-E958-4C84-8CB0-E7CAF8DA3251} - System32\Tasks\Scan the system (Spybot - Search & Destroy) => C:\Program Files\Spybot - Search & Destroy 2\SDScan.exe No File
Task: {DAB9A883-5314-46DB-B664-9489E251DAF5} - System32\Tasks\Microsoft\Microsoft Antimalware\Microsoft Antimalware Scheduled Scan => c:\Program Files\Microsoft Security Client\MpCmdRun.exe [2013-06-20] (Microsoft Corporation)
Task: {E07EE8C4-CE94-4D0B-A6E0-40138EBF5CE4} - System32\Tasks\FreeDriverScout => C:\Program Files\Covus Freemium\Free Driver Scout\1Click.exe [2013-05-21] ()
Task: {E5150B95-F9B4-4D5D-95A2-7EC1ACBA95F8} - System32\Tasks\Microsoft\Windows\Wireless\GatherWirelessInfo => C:\Windows\system32\gatherWirelessInfo.vbs [2008-01-21] ()
Task: {EE6B5A5A-A9F5-4F33-AA46-C061387E02E3} - System32\Tasks\Software Updater Ui => C:\Program Files\SoftwareUpdater\SoftwareUpdater.Ui.exe [2013-08-23] ()
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\Check for updates (Spybot - Search & Destroy).job => C:\Program Files\Spybot - Search & Destroy 2\SDUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\Refresh immunization (Spybot - Search & Destroy).job => C:\Program Files\Spybot - Search & Destroy 2\SDImmunize.exe
Task: C:\Windows\Tasks\Scan the system (Spybot - Search & Destroy).job => C:\Program Files\Spybot - Search & Destroy 2\SDScan.exe
==================== Faulty Device Manager Devices =============
==================== Event log errors: =========================
Application errors:
==================
Error: (08/24/2013 08:04:49 PM) (Source: Windows Search Service) (User: )
Description: The entry <C:\USERS\SUSANNE\APPDATA\LOCAL\MOZILLA\FIREFOX\PROFILES\PJIHVBMB.DEFAULT\SAFEBROWSING-TO_DELETE> in the hash map cannot be updated.
Context: Application, SystemIndex Catalog
Details:
A device attached to the system is not functioning. (0x8007001f)
Error: (08/24/2013 08:04:49 PM) (Source: Windows Search Service) (User: )
Description: The entry <C:\USERS\SUSANNE\APPDATA\LOCAL\MOZILLA\FIREFOX\PROFILES\PJIHVBMB.DEFAULT\SAFEBROWSING-BACKUP> in the hash map cannot be updated.
Context: Application, SystemIndex Catalog
Details:
A device attached to the system is not functioning. (0x8007001f)
Error: (08/24/2013 07:40:49 PM) (Source: WinMgmt) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (08/23/2013 11:47:41 PM) (Source: Windows Search Service) (User: )
Description: The entry <C:\USERS\SUSANNE\APPDATA\LOCAL\MOZILLA\FIREFOX\PROFILES\PJIHVBMB.DEFAULT\CACHE\2\EF> in the hash map cannot be updated.
Context: Application, SystemIndex Catalog
Details:
A device attached to the system is not functioning. (0x8007001f)
Error: (08/23/2013 11:47:41 PM) (Source: Windows Search Service) (User: )
Description: The entry <C:\USERS\SUSANNE\APPDATA\LOCAL\MOZILLA\FIREFOX\PROFILES\PJIHVBMB.DEFAULT\CACHE\2\EF> in the hash map cannot be updated.
Context: Application, SystemIndex Catalog
Details:
A device attached to the system is not functioning. (0x8007001f)
Error: (08/23/2013 11:17:44 PM) (Source: Windows Search Service) (User: )
Description: The entry <C:\USERS\SUSANNE\APPDATA\LOCAL\MOZILLA\FIREFOX\PROFILES\PJIHVBMB.DEFAULT\CACHE\3\CA> in the hash map cannot be updated.
Context: Application, SystemIndex Catalog
Details:
A device attached to the system is not functioning. (0x8007001f)
Error: (08/23/2013 11:17:44 PM) (Source: Windows Search Service) (User: )
Description: The entry <C:\USERS\SUSANNE\APPDATA\LOCAL\MOZILLA\FIREFOX\PROFILES\PJIHVBMB.DEFAULT\CACHE\3\CA> in the hash map cannot be updated.
Context: Application, SystemIndex Catalog
Details:
A device attached to the system is not functioning. (0x8007001f)
Error: (08/23/2013 11:17:42 PM) (Source: Windows Search Service) (User: )
Description: The entry <C:\USERS\SUSANNE\APPDATA\LOCAL\MOZILLA\FIREFOX\PROFILES\PJIHVBMB.DEFAULT\CACHE\3\3C> in the hash map cannot be updated.
Context: Application, SystemIndex Catalog
Details:
A device attached to the system is not functioning. (0x8007001f)
Error: (08/23/2013 11:17:42 PM) (Source: Windows Search Service) (User: )
Description: The entry <C:\USERS\SUSANNE\APPDATA\LOCAL\MOZILLA\FIREFOX\PROFILES\PJIHVBMB.DEFAULT\CACHE\3\3C> in the hash map cannot be updated.
Context: Application, SystemIndex Catalog
Details:
A device attached to the system is not functioning. (0x8007001f)
Error: (08/23/2013 11:14:16 PM) (Source: Windows Search Service) (User: )
Description: The entry <C:\USERS\SUSANNE\APPDATA\LOCAL\MOZILLA\FIREFOX\PROFILES\PJIHVBMB.DEFAULT\CACHE\4\DD> in the hash map cannot be updated.
Context: Application, SystemIndex Catalog
Details:
A device attached to the system is not functioning. (0x8007001f)
System errors:
=============
Error: (08/24/2013 07:40:50 PM) (Source: Service Control Manager) (User: )
Description: Spybot-S&D 2 Scanner Service%%1053
Error: (08/24/2013 07:40:50 PM) (Source: Service Control Manager) (User: )
Description: 30000Spybot-S&D 2 Scanner Service
Error: (08/24/2013 07:40:50 PM) (Source: Service Control Manager) (User: )
Description: Parallel port driver%%1058
Error: (08/24/2013 07:39:40 PM) (Source: EventLog) (User: )
Description: The previous system shutdown at 03:21:09 on 24/08/2013 was unexpected.
Error: (08/23/2013 10:27:05 PM) (Source: Service Control Manager) (User: )
Description: Parallel port driver%%1058
Error: (08/23/2013 10:26:15 PM) (Source: EventLog) (User: )
Description: The previous system shutdown at 21:58:37 on 23/08/2013 was unexpected.
Error: (08/23/2013 08:23:52 PM) (Source: Service Control Manager) (User: )
Description: Parallel port driver%%1058
Error: (08/23/2013 02:23:55 PM) (Source: Service Control Manager) (User: )
Description: System Store%%1053
Error: (08/23/2013 02:23:55 PM) (Source: Service Control Manager) (User: )
Description: 30000System Store
Error: (08/23/2013 02:23:55 PM) (Source: Service Control Manager) (User: )
Description: Spybot-S&D 2 Scanner Service%%1053
Microsoft Office Sessions:
=========================
Error: (08/24/2013 08:04:49 PM) (Source: Windows Search Service)(User: )
Description: Context: Application, SystemIndex Catalog
Details:
A device attached to the system is not functioning. (0x8007001f)
C:\USERS\SUSANNE\APPDATA\LOCAL\MOZILLA\FIREFOX\PROFILES\PJIHVBMB.DEFAULT\SAFEBROWSING-TO_DELETE
Error: (08/24/2013 08:04:49 PM) (Source: Windows Search Service)(User: )
Description: Context: Application, SystemIndex Catalog
Details:
A device attached to the system is not functioning. (0x8007001f)
C:\USERS\SUSANNE\APPDATA\LOCAL\MOZILLA\FIREFOX\PROFILES\PJIHVBMB.DEFAULT\SAFEBROWSING-BACKUP
Error: (08/24/2013 07:40:49 PM) (Source: WinMgmt)(User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003
Error: (08/23/2013 11:47:41 PM) (Source: Windows Search Service)(User: )
Description: Context: Application, SystemIndex Catalog
Details:
A device attached to the system is not functioning. (0x8007001f)
C:\USERS\SUSANNE\APPDATA\LOCAL\MOZILLA\FIREFOX\PROFILES\PJIHVBMB.DEFAULT\CACHE\2\EF
Error: (08/23/2013 11:47:41 PM) (Source: Windows Search Service)(User: )
Description: Context: Application, SystemIndex Catalog
Details:
A device attached to the system is not functioning. (0x8007001f)
C:\USERS\SUSANNE\APPDATA\LOCAL\MOZILLA\FIREFOX\PROFILES\PJIHVBMB.DEFAULT\CACHE\2\EF
Error: (08/23/2013 11:17:44 PM) (Source: Windows Search Service)(User: )
Description: Context: Application, SystemIndex Catalog
Details:
A device attached to the system is not functioning. (0x8007001f)
C:\USERS\SUSANNE\APPDATA\LOCAL\MOZILLA\FIREFOX\PROFILES\PJIHVBMB.DEFAULT\CACHE\3\CA
Error: (08/23/2013 11:17:44 PM) (Source: Windows Search Service)(User: )
Description: Context: Application, SystemIndex Catalog
Details:
A device attached to the system is not functioning. (0x8007001f)
C:\USERS\SUSANNE\APPDATA\LOCAL\MOZILLA\FIREFOX\PROFILES\PJIHVBMB.DEFAULT\CACHE\3\CA
Error: (08/23/2013 11:17:42 PM) (Source: Windows Search Service)(User: )
Description: Context: Application, SystemIndex Catalog
Details:
A device attached to the system is not functioning. (0x8007001f)
C:\USERS\SUSANNE\APPDATA\LOCAL\MOZILLA\FIREFOX\PROFILES\PJIHVBMB.DEFAULT\CACHE\3\3C
Error: (08/23/2013 11:17:42 PM) (Source: Windows Search Service)(User: )
Description: Context: Application, SystemIndex Catalog
Details:
A device attached to the system is not functioning. (0x8007001f)
C:\USERS\SUSANNE\APPDATA\LOCAL\MOZILLA\FIREFOX\PROFILES\PJIHVBMB.DEFAULT\CACHE\3\3C
Error: (08/23/2013 11:14:16 PM) (Source: Windows Search Service)(User: )
Description: Context: Application, SystemIndex Catalog
Details:
A device attached to the system is not functioning. (0x8007001f)
C:\USERS\SUSANNE\APPDATA\LOCAL\MOZILLA\FIREFOX\PROFILES\PJIHVBMB.DEFAULT\CACHE\4\DD
CodeIntegrity Errors:
===================================
Date: 2013-08-24 20:46:50.843
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\RapportKELL.sys because the set of per-page image hashes could not be found on the system.
Date: 2013-08-24 20:46:49.990
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\RapportKELL.sys because the set of per-page image hashes could not be found on the system.
Date: 2013-08-24 20:46:49.112
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\RapportKELL.sys because the set of per-page image hashes could not be found on the system.
Date: 2013-08-24 20:46:48.269
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\RapportKELL.sys because the set of per-page image hashes could not be found on the system.
Date: 2013-08-24 20:46:47.412
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\RapportKELL.sys because the set of per-page image hashes could not be found on the system.
Date: 2013-08-24 20:46:46.557
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\RapportKELL.sys because the set of per-page image hashes could not be found on the system.
Date: 2013-08-24 20:46:45.694
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\RapportKELL.sys because the set of per-page image hashes could not be found on the system.
Date: 2013-08-24 20:46:44.849
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\RapportKELL.sys because the set of per-page image hashes could not be found on the system.
Date: 2013-08-24 20:46:08.318
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\RapportKELL.sys because the set of per-page image hashes could not be found on the system.
Date: 2013-08-24 20:46:07.440
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\drivers\RapportKELL.sys because the set of per-page image hashes could not be found on the system.
==================== Memory info ===========================
Percentage of memory in use: 57%
Total physical RAM: 2813.61 MB
Available physical RAM: 1199.01 MB
Total Pagefile: 5841.72 MB
Available Pagefile: 3963.51 MB
Total Virtual: 2047.88 MB
Available Virtual: 1931.54 MB
==================== Drives ================================
Drive c: (ACER) (Fixed) (Total:223.12 GB) (Free:34.62 GB) NTFS ==>[Drive with boot components (obtained from BCD)]
Drive e: (HD-PFU2) (Fixed) (Total:465.65 GB) (Free:20.83 GB) FAT32
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (Size: 233 GB) (Disk ID: C23E587A)
Partition 1: (Not Active) - (Size=10 GB) - (Type=27)
Partition 2: (Active) - (Size=223 GB) - (Type=07 NTFS)
========================================================
Disk: 1 (Size: 466 GB) (Disk ID: 38002698)
Partition 1: (Not Active) - (Size=466 GB) - (Type=0C)
==================== End Of Log ============================ --- --- --- |