Malwarebytes Anti-Malware (Test) 1.75.0.1300
Malwarebytes : Free Anti-Malware
Datenbank Version: v2014.02.03.04
Windows 7 Service Pack 1 x64 NTFS
Internet Explorer 11.0.9600.16476
Blacks :: BLACKS-PC [Administrator]
Schutz: Deaktiviert
03.02.2014 17:16:14
mbam-log-2014-02-03 (17-16-14).txt
Art des Suchlaufs: Quick-Scan
Aktivierte Suchlaufeinstellungen: Speicher | Autostart | Registrierung | Dateisystem | Heuristiks/Extra | HeuristiKs/Shuriken | PUP | PUM
Deaktivierte Suchlaufeinstellungen: P2P
Durchsuchte Objekte: 263783
Laufzeit: 3 Minute(n), 55 Sekunde(n)
Infizierte Speicherprozesse: 0
(Keine bösartigen Objekte gefunden)
Infizierte Speichermodule: 0
(Keine bösartigen Objekte gefunden)
Infizierte Registrierungsschlüssel: 6
HKCU\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86} (PUP.Optional.Qone8) -> Erfolgreich gelöscht und in Quarantäne gestellt.
HKCU\Software\1ClickDownload (PUP.Optional.1ClickDownload.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
HKLM\SOFTWARE\Google\Chrome\Extensions\pfmopbbadnfoelckkcmjjeaaegjpjjbk (PUP.Optional.Gophoto.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
HKLM\SYSTEM\CurrentControlSet\Services\CltMngSvc (PUP.Optional.ConduitSearchProtect) -> Erfolgreich gelöscht und in Quarantäne gestellt.
HKLM\Software\Torntv V6.0 (PUP.Optional.TornTV.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Torntv V6.0 (PUP.Optional.TornTV.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
Infizierte Registrierungswerte: 0
(Keine bösartigen Objekte gefunden)
Infizierte Dateiobjekte der Registrierung: 0
(Keine bösartigen Objekte gefunden)
Infizierte Verzeichnisse: 2
C:\Program Files (x86)\Gophoto.it (PUP.Optional.Gophoto.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
C:\Program Files (x86)\Torntv V6.0 (PUP.Optional.TornTV.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
Infizierte Dateien: 24
C:\Users\Blacks\AppData\Local\Temp\ICReinstall_the.secret.garden.1994.rerip.dvdrip.xvid-phobos_BitLord.exe (PUP.Optional.InstallCore) -> Erfolgreich gelöscht und in Quarantäne gestellt.
C:\Users\Blacks\AppData\Local\Temp\nse52DD.exe (PUP.Optional.SearchProtect.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
C:\Users\Blacks\AppData\Local\Temp\nsk8718.exe (PUP.Optional.SearchProtect.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
C:\Users\Blacks\AppData\Local\Temp\nsp88BE.exe (PUP.Optional.SearchProtect.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
C:\Users\Blacks\AppData\Local\Temp\nsz5137.exe (PUP.Optional.SearchProtect.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
C:\Users\Blacks\AppData\Local\Temp\setup__270.exe (PUP.Optional.Amonetize) -> Erfolgreich gelöscht und in Quarantäne gestellt.
C:\Users\Blacks\AppData\Local\Temp\nsj32FC\SpSetup.exe (PUP.Optional.Conduit.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
C:\Users\Blacks\Downloads\Tom_and_Jerry_The_Ultimate_Classic_Collection (1).exe (PUP.Optional.OneClickDownloader.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
C:\Users\Blacks\Downloads\Tom_and_Jerry_The_Ultimate_Classic_Collection.exe (PUP.Optional.OneClickDownloader.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
C:\Users\Blacks\Downloads\Tom_und_Jerry_The_Ultimate_Classic_Collection_DVDRIP_AC3_h264.exe (PUP.Optional.OneClickDownloader.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
C:\Windows\Tasks\Torntv V6.0-chromeinstaller.job (PUP.Optional.TornTV.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
C:\Windows\Tasks\Torntv V6.0-codedownloader.job (PUP.Optional.TornTV.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
C:\Windows\Tasks\Torntv V6.0-firefoxinstaller.job (PUP.Optional.TornTV.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
C:\Program Files (x86)\Gophoto.it\gophotoit16.crx (PUP.Optional.Gophoto.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
C:\Program Files (x86)\Torntv V6.0\45960.crx (PUP.Optional.TornTV.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
C:\Program Files (x86)\Torntv V6.0\45960.xpi (PUP.Optional.TornTV.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
C:\Program Files (x86)\Torntv V6.0\Torntv V6.0-buttonutil.dll (PUP.Optional.TornTV.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
C:\Program Files (x86)\Torntv V6.0\Torntv V6.0-buttonutil.exe (PUP.Optional.TornTV.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
C:\Program Files (x86)\Torntv V6.0\Torntv V6.0-buttonutil64.dll (PUP.Optional.TornTV.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
C:\Program Files (x86)\Torntv V6.0\Torntv V6.0-buttonutil64.exe (PUP.Optional.TornTV.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
C:\Program Files (x86)\Torntv V6.0\Torntv V6.0-chromeinstaller.exe (PUP.Optional.TornTV.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
C:\Program Files (x86)\Torntv V6.0\Torntv V6.0-helper.exe (PUP.Optional.TornTV.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
C:\Program Files (x86)\Torntv V6.0\Torntv V6.0.ico (PUP.Optional.TornTV.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
C:\Program Files (x86)\Torntv V6.0\Uninstall.exe (PUP.Optional.TornTV.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
(Ende)
AdwCleaner Logfile:
Code:
# AdwCleaner v3.018 - Bericht erstellt am 03/02/2014 um 17:35:01
# Updated 28/01/2014 von Xplode
# Betriebssystem : Windows 7 Home Premium Service Pack 1 (64 bits)
# Benutzername : Blacks - BLACKS-PC
# Gestartet von : C:\Users\Blacks\Downloads\adwcleaner.exe
# Option : Löschen
***** [ Dienste ] *****
***** [ Dateien / Ordner ] *****
Ordner Gelöscht : C:\Users\Blacks\AppData\Local\Searchprotect
Ordner Gelöscht : C:\Users\Blacks\AppData\Local\Google\Chrome\User Data\Default\Extensions\ocoombckbcnabpaghmokhaapnbngahck
***** [ Verknüpfungen ] *****
***** [ Registrierungsdatenbank ] *****
Wert Gelöscht : [x64] HKLM\SOFTWARE\Mozilla\Firefox\Extensions [{336D0C35-8A85-403A-B9D2-65C292C39087}]
Schlüssel Gelöscht : HKLM\SOFTWARE\Google\Chrome\Extensions\bbffdhejhaoiflnpooogkckfdcmmjppn
Schlüssel Gelöscht : HKLM\SOFTWARE\Google\Chrome\Extensions\dlnembnfbcpjnepmfjmngjenhhajpdfd
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Google\Chrome\Extensions\dlnembnfbcpjnepmfjmngjenhhajpdfd
Schlüssel Gelöscht : HKLM\SOFTWARE\Google\Chrome\Extensions\leocdeigfnkaojcapikdjcdbedcjmffc
Schlüssel Gelöscht : HKLM\SOFTWARE\Google\Chrome\Extensions\ogccgbmabaphcakpiclgcnmcnimhokcj
Schlüssel Gelöscht : HKCU\Software\Google\Chrome\Extensions\ocoombckbcnabpaghmokhaapnbngahck
Schlüssel Gelöscht : HKLM\SOFTWARE\Google\Chrome\Extensions\ocoombckbcnabpaghmokhaapnbngahck
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\esrv.IncredibarESrvc
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\esrv.IncredibarESrvc.1
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\FTDownloader
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Prod.cap
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\PROTOCOLS\Handler\inbox
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASAPI32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASMANCS
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\apntoolbarinstaller_RASAPI32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\apntoolbarinstaller_RASMANCS
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\App24x7Help_RASAPI32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\App24x7Help_RASMANCS
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\askpartnercobrandingtool_rasapi32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\askpartnercobrandingtool_rasmancs
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\AskSLib_RASAPI32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\AskSLib_RASMANCS
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\au__rasapi32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\au__rasmancs
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\BingBar_RASMANCS
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\ConduitInstaller_RASAPI32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\ConduitInstaller_RASMANCS
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\datamngrUI_RASAPI32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\datamngrUI_RASMANCS
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\incredibar_installer_RASAPI32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\incredibar_installer_RASMANCS
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\IncredibarToolbar_RASAPI32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\IncredibarToolbar_RASMANCS
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\MyBabylontb_RASAPI32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\MyBabylontb_RASMANCS
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\sweetim_rasapi32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\sweetim_rasmancs
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\sweetimsetup_rasapi32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\sweetimsetup_rasmancs
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\sweetpacksupdatemanager_rasapi32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\SweetPacksUpdateManager_RASMANCS
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\TaskScheduler_RASAPI32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\TaskScheduler_RASMANCS
Schlüssel Gelöscht : HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\DeskSvc
Schlüssel Gelöscht : HKCU\Software\5257d6debd69ea46
Schlüssel Gelöscht : HKLM\SOFTWARE\5257d6debd69ea46
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_fuer_bittorrent_RASAPI32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_fuer_bittorrent_RASMANCS
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_fuer_cheat-engine_RASAPI32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_fuer_cheat-engine_RASMANCS
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_fuer_pc-fixer_RASAPI32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_fuer_pc-fixer_RASMANCS
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_fuer_utorrent_RASAPI32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_fuer_utorrent_RASMANCS
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_fuer_windows-live-messenger_RASAPI32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_fuer_windows-live-messenger_RASMANCS
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{608D3067-77E8-463D-9084-908966806826}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{CFE8AAFD-A0F3-4329-84E9-6B679EC93EC2}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{AE07101B-46D4-4A98-AF68-0333EA26E113}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{C01315C7-B4E2-4864-B43D-5FAFC414D179}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{CC99A798-FD3D-4AB4-969E-6071612524F9}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{22B0769F-794B-4422-AC84-47B123C8986D}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{255E0B2A-D747-4EEF-B7CE-159D73A3656D}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{28ED590D-F5ED-4E05-A87F-1D759F1C6169}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{31E3BC75-2A09-4CFF-9C92-8D0ED8D1DC0F}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{45D5B93F-E2ED-4AF2-915E-DCDDBDA8C33C}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{771B99AB-636F-4A11-9039-8DFEB927B061}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{A8321AA2-2227-40C7-8525-6C2F4E1B0EBE}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{AA41A731-6814-4A70-A6F1-C0A20FBBFBD5}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{ABBB8A9E-D8AF-40D1-94BE-5175077465FC}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{BF737694-56F6-46FA-9FDC-FA99A5B25FAD}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{CFCD164E-8AC9-478E-9ECC-B616A932016C}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{D5961CC0-B442-4567-8030-67E241EF4CC2}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{E450067F-1C93-41A7-928E-07E5C2EEC680}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{F977D9F2-4BDC-44A6-B508-7C0284C61EED}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{1F6F39C1-00A8-4752-A94C-D0EA92D978B6}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{8736C681-37A0-40C6-A0F0-4C083409151C}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{CC99A798-FD3D-4AB4-969E-6071612524F9}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{DF7770F7-832F-4BDF-B144-100EDDD0C3AE}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{F9E4A054-E9B1-4BC3-83A3-76A1AE736170}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{1F6F39C1-00A8-4752-A94C-D0EA92D978B6}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{6F6A5334-78E9-4D9B-8182-8B41EA8C39EF}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{CCB69577-088B-4004-9ED8-FF5BCC83A039}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{D3D233D5-9F6D-436C-B6C7-E63F77503B30}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{D7E97865-918F-41E4-9CD0-25AB1C574CE8}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{1F6F39C1-00A8-4752-A94C-D0EA92D978B6}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{5354D921-3F52-47C5-938D-77A2FB6DEFE7}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{71144427-1368-4D18-8DC9-2AE3CC4C4F83}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{ED345812-2722-4DCA-9976-D01832DB44EE}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{612AD33D-9824-4E87-8396-92374E91C4BB}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{74C36554-31F0-49DD-8857-ED6A64DF45BE}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E1103F7F-8B0B-4E41-B3B2-BD1D01AC6D3A}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E0FA53AE-5D61-475C-8FF1-18682FC07ADB}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C445ADF4-CB46-4B0B-B672-FD5587D3DA8F}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{014DB5FA-EAFB-4592-A95B-F44D3EE87FA9}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD21}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{006EE092-9658-4FD6-BD8E-A21A348E59F5}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD21}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{EEE6C360-6118-11DC-9C72-001320C79847}
Wert Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{AE07101B-46D4-4A98-AF68-0333EA26E113}]
Wert Gelöscht : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{BA14329E-9550-4989-B3F2-9732E92D17CC}]
Wert Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks [{C840E246-6B95-475E-9BD7-CAA1C7ECA9F2}]
Wert Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks [{E9DF9360-97F8-4690-AFE6-996C80790DA4}]
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\CLSID\{4AA46D49-459F-4358-B4D1-169048547C23}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\CLSID\{AE07101B-46D4-4A98-AF68-0333EA26E113}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\CLSID\{F9E4A054-E9B1-4BC3-83A3-76A1AE736170}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{1AD2049E-E483-4425-8555-8E0775ACB631}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{22B0769F-794B-4422-AC84-47B123C8986D}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{255E0B2A-D747-4EEF-B7CE-159D73A3656D}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{28C3737A-32D1-492D-B76B-8D75EBBFB887}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{28ED590D-F5ED-4E05-A87F-1D759F1C6169}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{2D73F2D0-2FAB-458E-977D-2F9050E0ED60}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{31E3BC75-2A09-4CFF-9C92-8D0ED8D1DC0F}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{3E9469AF-E866-4476-B767-810630F1F6E7}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{45D5B93F-E2ED-4AF2-915E-DCDDBDA8C33C}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{47700C35-9E3E-4DAD-934C-0CE28A87237C}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{716E443D-7CAA-44F1-866B-F45D00E712CC}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{72063D77-7590-4DA9-A7F8-F5ECAF3632C4}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{771B99AB-636F-4A11-9039-8DFEB927B061}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{7FC87AC5-FA93-476E-A32C-A941229DED0B}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{A8321AA2-2227-40C7-8525-6C2F4E1B0EBE}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{AA41A731-6814-4A70-A6F1-C0A20FBBFBD5}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{ABBB8A9E-D8AF-40D1-94BE-5175077465FC}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{BF737694-56F6-46FA-9FDC-FA99A5B25FAD}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{CE057E0D-2D7E-4DFF-A890-07BA69B8C762}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{CFCD164E-8AC9-478E-9ECC-B616A932016C}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{D5961CC0-B442-4567-8030-67E241EF4CC2}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{E450067F-1C93-41A7-928E-07E5C2EEC680}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{F977D9F2-4BDC-44A6-B508-7C0284C61EED}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F9E4A054-E9B1-4BC3-83A3-76A1AE736170}
Wert Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{AE07101B-46D4-4A98-AF68-0333EA26E113}]
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{014DB5FA-EAFB-4592-A95B-F44D3EE87FA9}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD21}
Schlüssel Gelöscht : HKCU\Software\APN PIP
Schlüssel Gelöscht : HKCU\Software\Conduit
Schlüssel Gelöscht : HKCU\Software\IM
Schlüssel Gelöscht : HKCU\Software\Imesh
Schlüssel Gelöscht : HKCU\Software\ImInstaller
Schlüssel Gelöscht : HKCU\Software\PIP
Schlüssel Gelöscht : HKCU\Software\Softonic
Schlüssel Gelöscht : HKCU\Software\AppDataLow\Software\Conduit
Schlüssel Gelöscht : HKCU\Software\AppDataLow\Software\ConduitSearchScopes
Schlüssel Gelöscht : HKCU\Software\AppDataLow\Software\mediabarim
Schlüssel Gelöscht : HKCU\Software\AppDataLow\Software\PriceGong
Schlüssel Gelöscht : HKCU\Software\AppDataLow\Software\Search Settings
Schlüssel Gelöscht : HKCU\Software\AppDataLow\Software\smartbar
Schlüssel Gelöscht : HKCU\Software\AppDataLow\Software\uTorrentBar_DE
Schlüssel Gelöscht : HKCU\Software\AppDataLow\Software\uTorrentControl
Schlüssel Gelöscht : HKLM\Software\Babylon
Schlüssel Gelöscht : HKLM\Software\Conduit
Schlüssel Gelöscht : HKLM\Software\DataMngr
Schlüssel Gelöscht : HKLM\Software\Desksvc
Schlüssel Gelöscht : HKLM\Software\Freeze.com
Schlüssel Gelöscht : HKLM\Software\IB Updater
Schlüssel Gelöscht : HKLM\Software\incredibar.com
Schlüssel Gelöscht : HKLM\Software\PIP
Schlüssel Gelöscht : HKLM\Software\SearchProtect
Schlüssel Gelöscht : HKLM\Software\SP Global
Schlüssel Gelöscht : HKLM\Software\SProtector
Schlüssel Gelöscht : HKLM\Software\V9
Schlüssel Gelöscht : HKLM\Software\uTorrentBar_DE
Schlüssel Gelöscht : HKLM\Software\uTorrentControl
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\IB Updater
***** [ Browser ] *****
-\\ Internet Explorer v11.0.9600.16428
Einstellung Wiederhergestellt : HKCU\Software\Microsoft\Internet Explorer\SearchUrl [Default]
Einstellung Wiederhergestellt : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchUrl [Default]
-\\ Mozilla Firefox v
-\\ Google Chrome v29.0.1547.66
[ Datei : C:\Users\Blacks\AppData\Local\Google\Chrome\User Data\Default\preferences ]
Gelöscht : homepage
[ Datei : C:\Users\Cassandra\AppData\Local\Google\Chrome\User Data\Default\preferences ]
*************************
AdwCleaner[R0].txt - [32194 octets] - [27/01/2014 10:26:20]
AdwCleaner[R1].txt - [16958 octets] - [03/02/2014 17:32:09]
AdwCleaner[S0].txt - [3946 octets] - [27/01/2014 10:29:47]
AdwCleaner[S1].txt - [15852 octets] - [03/02/2014 17:35:01]
########## EOF - C:\AdwCleaner\AdwCleaner[S1].txt - [15913 octets] ##########
--- --- ---JRT Logfile:
Code:
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.1.0 (01.07.2014:1)
OS: Windows 7 Home Premium x64
Ran by Blacks on 03.02.2014 at 17:41:26.40
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~ Services
~~~ Registry Values
Successfully repaired: [Registry Value] HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows\\AppInit_DLLs
~~~ Registry Keys
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{80922EE0-8A76-46AE-95D5-BD3C3FE0708D}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchScopes\{cf6e4b1c-dbde-457e-9cef-ab8ecac8a5e8}
~~~ Files
~~~ Folders
Successfully deleted: [Folder] "C:\Users\Blacks\appdata\local\cre"
Successfully deleted: [Folder] "C:\Users\Blacks\appdata\locallow\datamngr"
Successfully deleted: [Folder] "C:\Program Files (x86)\video download converter"
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{00531BB2-89E9-43FE-B915-A5821D0197C1}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{00BDB8FD-7617-4D8F-AEB2-060CD313FF5A}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{00F52EE0-59B4-46DC-ADCE-7C99346E4C01}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{01760157-D1A7-4AEF-83F9-16B75570DBFB}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{03811DB7-B88A-4769-87C2-2B20A3A15802}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{03923BAE-8E93-4D00-A48F-B0E3DC5AF494}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{03D0F6E5-B6D9-4134-9832-AA1D4318F60E}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{044129EE-08BC-46DA-B22F-995E918DB4F9}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{0486B0E1-1384-42C8-BD50-2CEBA75EDBD8}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{055F8178-60C9-44EF-89DA-F56A44C50B06}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{061351BC-CBD3-4E70-9659-36FEEEB23F29}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{076A4A2E-E97A-4BCC-B798-C6300850BB75}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{08159FB9-4CA3-404E-AEDD-F9659ABFB004}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{0886239D-43E5-4536-9795-DC701C7FE28D}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{0A6E6B24-E6F0-40D3-B8E6-AC5E80EFEB84}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{0E749CA4-62A2-424A-A5F4-6242CB2CC385}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{0E8F0E1A-E228-4FC1-A855-16BDB26CC2C2}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{12FEB734-9D55-4352-A9D2-89206F5AB0FA}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{1300F797-6EFB-4619-8685-D1C9073E4604}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{13396425-5430-49B8-84EF-D9F595DE917C}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{13CC7B57-9FF8-4A2E-9B51-C72C20E0B63F}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{148D263B-BADE-4BD8-9D57-8202A516C8AB}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{15953D8A-08D4-472E-B0F9-11AC34FA76D6}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{1640BF84-1723-4CC2-9E1C-C466CB794A54}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{167F6974-E101-47CA-9467-158FEC703867}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{1779A8B5-592E-4F64-9CD4-1DBF3BF82691}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{17E533B9-95D5-47B7-B3F9-5612A6860277}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{18B64F26-E912-49DE-A16C-0B27B8666A95}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{194DB789-A53F-450F-B30F-F0974992DC5E}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{1A190570-C58C-45CF-9457-6CD4888A9878}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{1AAF19D1-EA7F-4857-98A8-532010133008}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{1B4F4D50-896B-46BD-AF7D-574FAA33DA4C}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{1C8F45A8-F83F-4049-923E-217791EF2895}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{1D8CE149-6D2B-46D0-AE47-E9733647CEB3}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{1E4CBD9A-3513-461F-817D-0E7CE265FA55}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{20F849C6-94AD-42BB-A28C-7E3F8C98A854}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{22E9617C-2825-413B-8B24-730079CCA7A5}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{24241535-0C66-4A96-96EA-5B089474527B}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{2480B1D3-6B8D-4490-A400-DF3DE2014DF9}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{25042D30-450B-4C1E-842D-1661A359F66A}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{25DD245B-7EC8-45E7-A04B-979220613641}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{26124C43-39A6-4B8C-AC03-62156FD3D20D}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{27044236-B64E-4064-A23B-5B2B5978FEE3}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{2711D487-6A6B-4016-B3ED-A8E6D22FAB38}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{27374936-7A99-466E-8329-6046A710D33C}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{27A79BEC-9D81-46E8-9D28-510BC2F4889B}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{27D19355-9303-48E8-A717-4D02BF1E0E91}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{27E0605C-2ECB-447C-8BEF-4C2F4E05E760}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{2879D7DC-F482-4995-8713-40AA16434CA7}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{2887AAA8-BC56-4201-A7C2-C58E36A6DD6F}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{28C158CF-2DB3-401E-A8D2-BC07F4D2C11E}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{29262EF3-0214-4172-A6CE-D64E990BC006}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{2A5918B3-AB17-4759-8964-53B79EFC5693}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{2ADB6B06-74C2-41B1-835D-60F86F4AF91E}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{2B96DC8B-CDFB-4365-BE64-F33DB77DC4E3}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{2BF26142-D39F-4D73-8773-629FC3418935}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{2C4F0872-403F-45ED-A69B-FDED0B089556}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{2C592713-E4E1-49C9-8858-29BF4EEDEF92}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{2DE9D7EF-4337-4281-A436-AD35A0B6B6D9}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{2FF3C2A3-0DDA-4C54-AFB7-B095F525DF64}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{3082CF5A-C818-448C-A2D3-77B659EF02FA}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{309E3F0C-D3AA-420E-99A0-3532B26DC0C8}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{30C59A40-B5CE-482F-97BF-881B064FC8A6}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{30FA3455-3FFB-4C29-8DB4-4025C8C9B61B}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{314790A5-58B6-4CBB-A4B8-9115DBC65867}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{32348860-DBE7-4D99-9E55-44981BE20479}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{32B1C4BD-9DC9-4D98-85C9-8C9AC7AE9007}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{346F13F7-F528-4737-9E1F-DEFAB609566F}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{347908DE-C228-41DF-AC6A-035B78B3208D}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{34B7A537-EED7-4359-870C-FE21D66377EF}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{39B83E05-3775-436B-82CD-0106E3473EF7}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{3A51577B-BC65-4163-8512-CC9B36F53A0F}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{3AAEF73E-C815-4E57-BC88-815E995304EE}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{3AF04ADB-3E7E-45B6-BA2F-D579AC7183B8}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{3C1B3065-FEB6-4C18-8A4E-C8D48AEA14A7}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{3C26B802-70B6-466A-A3D6-3AD420765111}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{3CC9F647-205F-4797-80CC-9EA24D699EF7}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{3D649F7C-89FE-4075-A6D2-643811D782D1}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{3EBF6C6F-4DE6-4B55-869F-501351F26661}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{3EC14661-25C3-44E1-999F-681DEF7129C0}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{3EC1898D-ECE7-44F6-87EF-BDE312996A8B}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{4054E27F-24C9-4964-903C-656D929C8AFF}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{406D3605-8FB0-4021-8592-DDC303D3F1FB}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{40876EEB-2B11-49FE-AE7D-7173D1E06535}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{40BDDAE0-D49A-4692-8DA2-540D9E5CE646}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{4137E45C-BC8C-4E30-A154-CD7783601D19}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{4254BC93-F3A6-438D-ACED-EFF8FBF65ABB}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{42D9E89C-2BF4-4BDD-9EFE-F904973EB39E}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{445F88AC-4570-468F-BB30-D9646EAE7AD7}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{4523AEC4-2BB8-4F66-9585-EEB298E83CCD}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{45545336-D19C-4CC3-84D5-C7B3DAE83802}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{45DF4F19-6B7D-447A-8493-A10E02155CA0}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{47EB2E6F-F2C4-4B28-B8BC-AE3B69B03ECB}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{487447AF-EC25-4CDD-B7AA-E0B0A4A635A2}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{49E23FEF-9009-4045-B764-FB18AB03DAAE}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{4B155136-68EF-436D-AB6F-4A9346925829}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{4B23AF37-8A6A-44F0-BA79-88F83C211903}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{4C29B8C6-54EA-4C37-82C0-FBEB77F4D06D}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{4E192D0E-CDBD-4596-9F58-C3F841B9F661}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{4F33A729-25E8-439A-BB7D-03F208BFA9A5}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{50F18F69-1740-4BDC-8A53-AE2F601FAA52}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{524429E7-B253-4FEB-93BE-1B38049B1636}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{5396583F-16BA-4A76-A5C0-FE3D31C881F2}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{55FA9623-D200-4A48-9913-AFB9D5B951F9}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{57892A5E-0FCA-4ED3-BEE1-3030A1442DEC}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{57CC61C4-C110-45F7-B22D-E72C88071A49}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{5C39A3E8-2B39-46EF-B392-C8DB6C72CCA6}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{5D8EF27C-B9D1-4821-95A3-D6C68629D0CA}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{5DCBF872-550E-4308-8330-99AE4FDAC26C}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{5E826914-039D-4751-AA72-641FCF4F6414}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{5EA88793-099B-4F73-A414-98262D61705A}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{602D5020-0974-4889-9487-50059E29EE51}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{61C94DC6-F4E8-4FCC-9F91-A37693B4D212}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{61EB4D75-C37C-4575-9F00-7A7687080E11}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{62E73AF5-71F1-4E8D-BCBE-91B5292A088F}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{62F3B4A8-2856-4382-B781-069E00185E3A}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{63303E8E-4437-4162-A65B-ADA7695D3F8D}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{6457DCC0-8809-4253-A82D-331E56E19B3C}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{64B34187-E994-4172-9CE8-D744738654A1}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{65345E16-90F3-44C0-9C0A-9A510D5E1F84}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{6788BB8D-D5A0-41A2-B9DB-61B1D772723C}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{67B0B490-62F9-41AB-A94A-09D8BCC17ACB}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{68618063-FCBA-4110-890E-494BA82BCA8F}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{68E2E49E-9DB9-4EB1-8E92-59384995F5DD}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{68F2F74C-9F3E-4DD1-A75E-EA59130412C2}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{6B3774E7-0010-40C5-AD1C-B51FD253D0B8}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{6B708026-FA8D-47B3-B823-7A4BEA19FCBB}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{6C81230D-0A80-4B5D-A564-679499927D9A}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{6CF4C02A-1B27-41C3-94EE-E8592B2DD37C}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{6DADEB5A-6E4F-4D7A-829F-A49B9C68C74C}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{6F3F886F-541E-4A8E-8D5B-C1E8555FE142}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{713FC50F-5C9C-4B35-BB5E-4343B4281B02}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{7195AD5E-AB3F-4E49-9A67-28EDAC9D3710}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{72EF1C93-C092-4D94-B567-261D3022B08D}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{72F48FEA-B009-4E0E-91A5-FF4CE01F0DB3}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{72F4E199-F37E-4748-B43D-283C080A21EC}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{74CB23D3-6389-4DEF-B980-D0540801CE02}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{74D631F2-4972-4A57-A2E5-294341F397D0}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{74DF553E-9D66-453C-9F96-5C67439950A4}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{752BE8DC-C3B9-4828-8EC1-0F806B4563F3}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{7545800F-0F7B-4DE7-B6CD-9A3560DF099A}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{75886CF2-020A-4777-9238-A9E4BD4A511F}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{75DAF28E-7949-4A42-88F2-91715CB1070E}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{76AA6752-2905-41FC-93E4-C5220AC0D141}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{76CDDD05-CC06-4EEE-8D97-AC125041385F}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{76D81DB7-E662-4FA0-B1A5-1D5259F90BBE}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{7764999C-EDB3-4214-950E-20C99802B8CD}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{7875C536-CB67-4876-9582-815748F2AC2B}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{7876F03A-717D-4DDA-AED2-6B414EC1B10F}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{788933B7-061B-4776-A319-3ED6ED33D473}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{7B8EF75B-ABDA-4112-88A2-35801D643C8C}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{7BD1DFBC-DC1A-447B-BAA8-768317BF10E4}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{7C257560-B736-44EC-8266-54BA1836D82D}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{7C368F88-E2FD-42CC-B485-4D74E9F57020}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{7D1C9123-A47C-4578-888A-FB3F7253AE4A}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{7DE63D99-AE48-471B-A7A3-F8C804EC232D}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{7E1A32FB-3D58-45E0-B7B2-FC0785839F85}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{7E8EDF09-BE75-4A2B-BA97-D8EF2C0F04C4}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{8035C176-7B08-41CA-B138-3621CA3E1323}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{81FC9891-540F-492E-83A7-D2210F9E3428}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{82EE970C-15FE-4CD4-9789-7D326B73A447}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{84254BEA-A5BA-49E1-ADF3-7F9AD5AB134C}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{84D3360B-5516-4E0E-9E69-9B2C30AB261A}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{85A25255-127A-411B-8EDD-B0FE956A7B5B}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{85E75769-FA98-4E8C-B3B0-44A470BA8169}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{85FF62A0-6358-4894-AA88-E3A4334F722B}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{87E28BCB-DA1B-49F3-9E2D-F1CA7DEA3802}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{889B0186-0F19-4527-A8FA-EB57ACD5DA2F}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{88A86920-E11F-4A63-8109-4D59D448941E}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{89DA7B0F-7A14-469E-8655-3C762D421C80}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{89E98DF9-31AF-448B-A4AA-FA013B55561A}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{8A089A51-F83A-4A51-A441-2DE1C1D21C43}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{8AC4892F-7E28-4830-B73B-49E12514BFE2}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{8AC6E5A8-4B6D-4BC5-A0FA-C3141F1726A6}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{8C7CBC1F-4E81-4EE7-9190-687A9F815480}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{8D464EE7-E671-4D85-AF1C-405330C72283}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{8F5499E0-FD7E-46B2-B122-9E6B2AAB5D75}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{8F586024-612C-470A-8B6F-B4429F5E64F0}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{90E370B6-1529-4BAA-9908-7F801A3FE749}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{915D0B36-9462-4A61-8C8D-3F4A9B2DFEDA}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{925DF335-33F8-47DF-9447-C829BB7DAFDF}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{92DB71C0-2483-4F34-A886-4A949D74408D}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{9596E960-E720-4AF4-882C-D7B0E605630E}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{962A040D-FA07-4E69-9C25-3D5AAB645C52}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{9653262E-EE82-4B3A-A7A7-70E21A255338}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{997DEE8C-824F-43A9-9049-3FF01D09C9B7}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{99D7B1A0-2A8A-4B24-8EBF-2CF07271CAE4}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{9A6CFB00-5C6E-4836-AB41-716FDCD34E4C}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{9B48E15B-0F8E-478A-BEE8-6352059039BD}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{9C21330C-B3A7-4359-B7CC-DAA6389E4F42}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{9CE8FA5C-CE19-4DDA-9FCD-274193200391}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{9D16361B-D757-4FF0-B183-41ECED774CF9}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{9E38949B-9C22-4005-B799-46B7B655EC92}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{9FC5CEC5-6F21-4518-986C-A4AA96402703}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{A121619D-A0B0-43D0-A888-8C8C82831EF4}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{A257331E-4365-4AF5-97BC-2D1ECBC4910C}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{A454E091-61ED-475A-AE96-789F89279AF3}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{A62DD0C2-EF30-494A-BBC9-CCE052D529AA}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{A78EA27F-B9E7-4AFA-8019-090E253B4571}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{A89E08E9-6FA0-43CB-A070-BD2FFFF2A392}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{A9129368-A3B0-4251-A5B5-3FB94621615D}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{A9B43A3B-54B0-4855-912D-4D5729EB6671}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{ACCEBAC7-F611-4C1F-B515-6E985CE07A5F}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{AD6202C3-6EC6-4D3C-8865-719FB5424268}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{AE4A8B59-7D3C-40AD-9A43-D92E9816695A}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{AEA6C30C-DD79-4AA4-A249-5E2F50C9460F}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{B0A46151-2E95-4205-9DD5-82B7C7FC718A}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{B0FC5140-F5CE-4F43-905E-FFF20A3154C6}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{B1191FD4-AA45-4C5E-9061-BD1655E0A5E7}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{B160A494-FBC7-434E-B6DA-A062E827BCA2}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{B20102B7-3387-4C6C-A9CE-9F66CE081CD6}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{B21AAACA-2228-4CB4-A19F-148A23DDA5B7}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{B3603042-B82D-45CF-B192-1B40DE219C76}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{B385EBDD-EC52-4417-9BFE-EB0891F25C44}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{B397CA2B-221C-4CA1-BE31-06DD60B74C34}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{B3CA019B-3F2B-4BAB-A48A-59A1E19FF8BF}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{B442C3F4-0772-4E81-9260-25AD2FD19A20}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{B50D285C-D67E-4384-A9F4-DC365D878A75}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{B518D911-F9FD-4D3F-A3F7-4E1EC521CF1D}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{B5A3CFB5-427F-4016-8645-75C0038E7698}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{B6387150-BEB1-44B4-A712-830379CF5E04}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{B64C3AF9-78B0-4EF7-824A-508A27694429}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{B69E260A-F3DD-4944-AE2E-801A8402C37D}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{B87DAFB2-07AB-45D8-8DA7-828CF2BB58DE}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{B8E44F70-4E54-43CF-BF80-61DD961A9648}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{B9D9EC33-AC52-49C3-B3A1-BB65EA8737AD}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{BA5EE408-D0CA-406B-8028-9258E960774B}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{BAAB58DD-515B-4BF4-95E4-638DBBBD931C}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{BAE7BEE4-42F8-4FDE-97E4-CF0A36C265FB}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{BAF3AEB5-0EEB-4158-8C70-57621659CAAE}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{BBF3058D-9FA5-4174-86E3-9D038BC2B973}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{BCDB8AD6-A443-4A36-AC1E-70A242DDC897}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{BE55559E-5296-4D9C-A9CD-C1F6C988E7D4}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{BF7F1F54-D3AB-490C-BBC4-B4009701B1C2}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{C03F969B-3414-41A7-BCD9-EC3CFAF8A520}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{C1D20838-A15A-440D-8505-0463B6BC6D7A}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{C1D55AC8-1064-4FC0-AFE4-0A863F14DCA6}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{C212F058-4EED-4197-8B3F-7676E29231E0}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{C4C41612-73B7-42B5-9EF4-DA077393EAF0}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{C60076EB-DC3D-4E38-9FA5-562D7FCD9163}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{C7026A3B-B553-4591-A1E5-B074CD8F2524}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{C74FD2D2-32AB-412A-A90F-69AF4CB01228}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{C875CFA8-DFDC-43B0-92C5-3D22AD25DD88}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{C9CACFFB-4AFE-4753-9F74-3CF96EC0797E}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{C9E22135-2A8D-4612-89E2-C6909F26057E}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{CA1D4C6D-6134-4873-8C8C-53AA3A529AEE}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{CBC82636-2EA8-4EC4-9A1B-9678C2BC01F0}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{CC302748-E3D8-43CB-B6AA-7AD31B1D984E}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{CD1A5EC1-28E1-4953-A0F5-A1BF83B5EAB9}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{CD417DBA-982E-453D-AB6C-B3253EED0E31}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{CD423191-C88D-4261-A3BB-D8A3A5A6D65C}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{CDE1142F-9E7A-4BCF-9814-3D235AB2E3F5}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{CDE6889A-6C7F-42B2-B0E6-0B06B67182A6}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{D083900F-73EE-4482-A27E-D0F7EECBFBCA}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{D0B4AE56-DB20-4261-AA69-D561E7D57802}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{D0DBB55D-C91A-4C46-95C5-28ECDD33EC42}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{D13E8F19-7750-42EB-B1BF-E418A8CD4840}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{D1F84C82-54A4-4A7C-9AE6-2536607CBD29}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{D2213777-1A1A-4AA7-9585-D550E1C13632}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{D263E55C-50D2-4A99-A86E-455AA7DF43CA}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{D2C0ADD2-2702-4515-AB42-9A2291C3E3CA}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{D31AE493-F907-48BA-BC5D-73053195A9B5}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{D343A48F-47A1-48E2-BE3D-48985373FE0A}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{D5E2B157-1890-4B54-AB8E-1EA1D04E9878}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{D62AB399-F147-44DD-81D6-BE578824D10A}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{D79BDF6B-70C5-4F8D-A9EF-11E0B9930065}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{D884F19F-7CB2-4B96-8EBC-81E002ED0D0A}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{D94F4D84-A8B1-4B31-A831-83AC38BE0BB4}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{D9AAD0B8-8240-486C-972E-0185FD4E5096}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{D9EDAB3C-16A6-498A-8BF1-95BD61EDF22C}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{DA9E9897-199C-4FE2-B63D-C0D12DEB5A2C}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{DADE17C6-71AA-4F2F-8DCA-D9FBC54231F1}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{DBA34A89-0490-4E39-9B25-A24EF6668DB7}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{DBC8D9B5-1675-40CB-847E-9B8153DA936B}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{DC47E15F-B750-41FC-8C4F-9871AC02CB1F}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{E1975C65-A344-4DF4-A6B9-EE7CE268EFF6}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{E2966FE8-9436-423D-914F-B23139ECD13C}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{E2FBB223-D1F3-4F5C-B62C-0BF45F59D652}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{E5A91E5A-E3C6-411C-9FB8-EFBE8D967CCF}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{E6222A2B-93DB-46E4-BCE8-B092D91EDCF7}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{E671AD36-D102-4714-9D36-3CD9DF9EFE1D}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{E88DF914-E3A6-48DA-A41D-7CB2292D231B}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{E9F1134B-706B-431B-8428-305C2664E929}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{EAFCC6AF-4D39-4DA3-9B93-E3421BBED5BE}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{EB37F2F7-E91C-4A5D-B7A7-2FF6FA3CD697}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{EBDD24E0-6372-475D-9975-7478AEB7A651}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{ECD4A0A6-2E91-40A5-8DE7-ABCBA53B5A20}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{ED37B554-7E03-4D29-B99A-6A6F5BCAD570}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{EE8B3D9C-7368-4024-B49E-2554558F386C}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{EEA7E734-5946-46C1-9681-CA7272E5D21E}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{EEEC7019-FFDB-4D25-B97F-82D2A783E312}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{EF24A64C-35CB-4A5D-B86E-AC1E4E12560F}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{EFD4FB38-FDED-4D49-A4AA-24D457CD1338}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{F09EC08E-0250-49E0-AB9C-E46357D4A75F}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{F10C2191-27E1-4D7C-9595-8EE963F6370C}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{F14C07FE-537C-4D3F-8E07-6A6C9B7CDB93}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{F230147E-CD5D-4867-B935-6FEE419B70BA}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{F464FE1D-51FB-43FD-8660-C0ED2D5A3722}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{F5069BAB-177B-4005-806A-84546FDF8A43}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{F581B069-6675-46F6-A538-3B34A4109213}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{F802EAED-19C6-4533-A0D5-9E8C50E04E6C}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{F837EB54-CEED-46A9-BE6B-29A102779D6C}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{F86C3968-825E-491C-9558-DA1AEB0079FC}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{F8E3DFE6-6860-49F4-AC18-0E3701AFC1CC}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{F9AEEEA1-49CD-4DDC-A60A-955C2EF64CCC}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{FA957215-FB84-4277-8FF6-D421F23E86FE}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{FC332C50-75EF-4458-91CD-71B5D044880F}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{FD001796-A6E5-40AC-8211-32BF06337101}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{FD0307A8-B491-46AE-BFF2-D0D5DB322871}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{FD09D571-FEB0-4986-B261-335826354423}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{FD94CD9C-6374-455C-B155-C0CD0A8DF825}
Successfully deleted: [Empty Folder] C:\Users\Blacks\appdata\local\{FDE89C94-4172-4EAF-B131-31D39E8BF3DA}
~~~ Event Viewer Logs were cleared
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 03.02.2014 at 17:47:14.97
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
--- --- ---
Shortcut Cleaner 1.2.8 by Lawrence Abrams (Grinler)
Bleeping Computer - Technical Support and Computer Help
Copyright 2008-2014 BleepingComputer.com
More Information about Shortcut Cleaner can be found at this link:
Shortcut Cleaner Download
Windows Version: Windows 7 Home Premium Service Pack 1
Program started at: 02/03/2014 05:48:47 PM.
Scanning for registry hijacks:
* No issues found in the Registry.
Searching for Hijacked Shortcuts:
Searching C:\Users\Blacks\AppData\Roaming\Microsoft\Windows\Start Menu\
* Shortcut Cleaned: C:\Users\Blacks\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk => C:\Program Files\Internet Explorer\iexplore.exe Awesomehp
* Shortcut Cleaned: C:\Users\Blacks\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk => C:\Program Files\Internet Explorer\iexplore.exe Awesomehp
Searching C:\ProgramData\Microsoft\Windows\Start Menu\
Searching C:\Users\Blacks\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\
* Shortcut Cleaned: C:\Users\Blacks\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk => C:\Program Files (x86)\Internet Explorer\iexplore.exe Awesomehp
* Shortcut Cleaned: C:\Users\Blacks\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Internet Explorer.lnk => C:\Program Files\Internet Explorer\iexplore.exe Awesomehp
Searching C:\Users\Public\Desktop\
Searching C:\Users\Blacks\Desktop
4 bad shortcuts found.
Program finished at: 02/03/2014 05:48:47 PM
Execution time: 0 hours(s), 0 minute(s), and 0 seconds(s)
Shortcut Cleaner 1.2.8 by Lawrence Abrams (Grinler)
Bleeping Computer - Technical Support and Computer Help
Copyright 2008-2014 BleepingComputer.com
More Information about Shortcut Cleaner can be found at this link:
Shortcut Cleaner Download
Windows Version: Windows 7 Home Premium Service Pack 1
Program started at: 02/03/2014 05:48:47 PM.
Scanning for registry hijacks:
* No issues found in the Registry.
Searching for Hijacked Shortcuts:
Searching C:\Users\Blacks\AppData\Roaming\Microsoft\Windows\Start Menu\
* Shortcut Cleaned: C:\Users\Blacks\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk => C:\Program Files\Internet Explorer\iexplore.exe Awesomehp
* Shortcut Cleaned: C:\Users\Blacks\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk => C:\Program Files\Internet Explorer\iexplore.exe Awesomehp
Searching C:\ProgramData\Microsoft\Windows\Start Menu\
Searching C:\Users\Blacks\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\
* Shortcut Cleaned: C:\Users\Blacks\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk => C:\Program Files (x86)\Internet Explorer\iexplore.exe Awesomehp
* Shortcut Cleaned: C:\Users\Blacks\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Internet Explorer.lnk => C:\Program Files\Internet Explorer\iexplore.exe Awesomehp
Searching C:\Users\Public\Desktop\
Searching C:\Users\Blacks\Desktop
4 bad shortcuts found.
Program finished at: 02/03/2014 05:48:47 PM
Execution time: 0 hours(s), 0 minute(s), and 0 seconds(s)
Und hier noch das FRST log nach dem ganzen Prozess
FRST Logfile:
FRST Logfile:
Code:
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 01-02-2014 04
Ran by Blacks (administrator) on BLACKS-PC on 03-02-2014 17:52:13
Running from C:\Users\Blacks\Downloads
Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard
Internet Explorer Version 11
Boot Mode: Normal
The only official download link for FRST:
Download link for 32-Bit version: Downloading Farbar Recovery Scan Tool
Download link for 64-Bit Version: Downloading Farbar Recovery Scan Tool
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST: FRST Tutorial - How to use Farbar Recovery Scan Tool - Geeks to Go Forums
==================== Processes (Whitelisted) =================
(IObit) C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCService.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Logitech Inc.) C:\Program Files (x86)\Common Files\logishrd\LVMVFM\UMVPFSrv.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\NvXDSync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Acer Incorporated) C:\Program Files (x86)\Acer\Registration\GREGsvc.exe
() C:\ProgramData\HiSuiteOuc\HiSuiteOuc64.exe
() C:\ProgramData\HandSetService\HuaweiHiSuiteService64.exe
() C:\Program Files (x86)\Canon\IJPLM\ijplmsvc.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
(Symantec Corporation) C:\Program Files (x86)\Norton Internet Security\Engine\21.1.0.18\NIS.exe
(TuneUp Software) C:\Program Files (x86)\TuneUp Utilities 2012\TuneUpUtilitiesService64.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe
(IObit) C:\Program Files (x86)\IObit\Advanced SystemCare 7\Monitor.exe
(TuneUp Software) C:\Program Files (x86)\TuneUp Utilities 2012\TuneUpUtilitiesApp64.exe
(CyberLink Corp.) C:\Program Files (x86)\Acer\clear.fi\MVP\clear.fiAgent.exe
(CyberLink) C:\Program Files (x86)\Acer\clear.fi\MVP\.\Kernel\DMR\DMREngine.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(IObit) C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCTray.exe
(CyberLink Corp.) C:\Program Files (x86)\Acer\clear.fi\Movie\clear.fiMovieService.exe
() C:\Program Files (x86)\Acer\Hotkey Utility\HotkeyUtility.exe
(Dropbox, Inc.) C:\Users\Blacks\AppData\Roaming\Dropbox\bin\Dropbox.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(CyberLink) C:\Program Files (x86)\Acer\clear.fi\MVP\Kernel\DMR\CLMSService.exe
(Symantec Corporation) C:\Program Files (x86)\Norton Internet Security\Engine\21.1.0.18\NIS.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [RtHDVCpl] - C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [11580520 2010-11-11] (Realtek Semiconductor)
HKLM-x32\...\Run: [SuiteTray] - C:\Program Files (x86)\EgisTec MyWinLockerSuite\x86\SuiteTray.exe [340848 2011-04-02] (Egis Technology Inc.)
HKLM-x32\...\Run: [EgisTecPMMUpdate] - C:\Program Files (x86)\EgisTec IPS\PmmUpdate.exe [408432 2011-03-29] (Egis Technology Inc.)
HKLM-x32\...\Run: [EgisUpdate] - C:\Program Files (x86)\EgisTec IPS\EgisUpdate.exe [202608 2011-03-29] (Egis Technology Inc.)
HKLM-x32\...\Run: [Norton Online Backup] - C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuClient.exe [1155928 2010-06-01] (Symantec Corporation)
HKLM-x32\...\Run: [ArcadeMovieService] - C:\Program Files (x86)\Acer\clear.fi\Movie\clear.fiMovieService.exe [185640 2011-08-31] (CyberLink Corp.)
HKLM-x32\...\Run: [Hotkey Utility] - C:\Program Files (x86)\Acer\Hotkey Utility\HotkeyUtility.exe [627304 2011-08-11] ()
HKU\.DEFAULT\...\RunOnce: [IsMyWinLockerReboot] - msiexec.exe /qn /x{voidguid}
HKU\S-1-5-21-2596747705-3298392032-401461655-1000\...\Run: [Advanced SystemCare 7] - C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCTray.exe [2285344 2013-12-09] (IObit)
AppInit_DLLs: C:\PROGRA~2\SearchProtect\SearchProtect\bin\SPVC64Loader.dll => File Not Found
Startup: C:\Users\Blacks\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk
ShortcutTarget: Dropbox.lnk -> C:\Users\Blacks\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
Startup: C:\Users\Cassandra\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OneNote 2010 Bildschirmausschnitt- und Startprogramm.lnk
ShortcutTarget: OneNote 2010 Bildschirmausschnitt- und Startprogramm.lnk -> C:\Program Files (x86)\Microsoft Office\Office14\ONENOTEM.EXE (Microsoft Corporation)
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = Sign In
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = Yahoo Suche ? Websuche & Suchmaschine
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = Awesomehp
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.awesomehp.com/web/?type=ds&ts=1390500470&from=ild&uid=WDCXWD15EARX-22PASB0_WD-WCAZAC03461234612&q={searchTerms}
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = Awesomehp
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = Awesomehp
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.awesomehp.com/web/?type=ds&ts=1390500470&from=ild&uid=WDCXWD15EARX-22PASB0_WD-WCAZAC03461234612&q={searchTerms}
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,SearchAssistant = hxxp://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchcust.htm
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,CustomizeSearch = hxxp://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchcust.htm
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Bar = Der Such-Assistent von Internet Explorer 6 wird nicht länger unterstützt.
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,SearchURL = MSN Deutschland: Aktuelle Nachrichten, Outlook.com Email und Skype Login.
StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe
SearchScopes: HKLM - DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL =
SearchScopes: HKCU - DefaultScope {F4409B63-E685-4FCD-866C-BB646368F363} URL = hxxp://ch.search.yahoo.com/search?fr=chr-greentree_ie&ei=utf-8&ilc=12&type=198484&p={searchTerms}
SearchScopes: HKCU - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKCU - {F4409B63-E685-4FCD-866C-BB646368F363} URL = hxxp://ch.search.yahoo.com/search?fr=chr-greentree_ie&ei=utf-8&ilc=12&type=198484&p={searchTerms}
BHO: ExplorerWnd Helper - {10921475-03CE-4E04-90CE-E2E7EF20C814} - C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallExplorer64.dll No File
BHO: Norton Identity Protection - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files (x86)\Norton Internet Security\Engine64\21.1.0.18\coIEPlg.dll (Symantec Corporation)
BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: Adobe PDF Link Helper - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
BHO-x32: DivX Plus Web Player HTML5 <video> - {326E768D-4182-46FD-9C16-1449A49795F4} - No File
BHO-x32: Canon Easy-WebPrint EX BHO - {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll (CANON INC.)
BHO-x32: Norton Identity Protection - {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} - C:\Program Files (x86)\Norton Internet Security\Engine\21.1.0.18\coIEPlg.dll (Symantec Corporation)
BHO-x32: Norton Vulnerability Protection - {6D53EC84-6AAE-4787-AEEE-F4628F01010C} - C:\Program Files (x86)\Norton Internet Security\Engine\21.1.0.18\IPS\IPSBHO.DLL (Symantec Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre6\bin\ssv.dll (Sun Microsystems, Inc.)
BHO-x32: Windows Live ID-Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: Advanced SystemCare Browser Protection - {BA0C978D-D909-49B6-AFE2-8BDE245DC7E6} - C:\Program Files (x86)\IObit\Surfing Protection\BrowerProtect\ASCPlugin_Protection.dll (IObit)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.)
Toolbar: HKLM - No Name - !{2318C2B1-4965-11d4-9B18-009027A5CD4F} - No File
Toolbar: HKLM - No Name - !{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No File
Toolbar: HKLM - No Name - !{D7E97865-918F-41E4-9CD0-25AB1C574CE8} - No File
Toolbar: HKLM - Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton Internet Security\Engine64\21.1.0.18\coIEPlg.dll (Symantec Corporation)
Toolbar: HKLM-x32 - No Name - !{2318C2B1-4965-11d4-9B18-009027A5CD4F} - No File
Toolbar: HKLM-x32 - No Name - !{7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - No File
Toolbar: HKLM-x32 - No Name - !{c840e246-6b95-475e-9bd7-caa1c7eca9f2} - No File
Toolbar: HKLM-x32 - No Name - !{D4027C7F-154A-4066-A1AD-4243D8127440} - No File
Toolbar: HKLM-x32 - No Name - !{D7E97865-918F-41E4-9CD0-25AB1C574CE8} - No File
Toolbar: HKLM-x32 - No Name - !{e9df9360-97f8-4690-afe6-996c80790da4} - No File
Toolbar: HKLM-x32 - Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll (CANON INC.)
Toolbar: HKLM-x32 - Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files (x86)\Norton Internet Security\Engine\21.1.0.18\coIEPlg.dll (Symantec Corporation)
Toolbar: HKLM-x32 - No Name - {48586425-6bb7-4f51-8dc6-38c88e3ebb58} - No File
DPF: HKLM-x32 {D27CDB6E-AE6D-11CF-96B8-444553540000} hxxp://fpdownload2.macromedia.com/pub/shockwave/cabs/flash/swflash.cab
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
FireFox:
========
FF Plugin: @microsoft.com/GENUINE - disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @Apple.com/iTunes,version=1.0 - C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF Plugin-x32: @divx.com/DivX Browser Plugin,version=1.0.0 - C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll No File
FF Plugin-x32: @divx.com/DivX VOD Helper,version=1.0.0 - C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll No File
FF Plugin-x32: @Google.com/GoogleEarthPlugin - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF Plugin-x32: @java.com/JavaPlugin - C:\Program Files (x86)\Java\jre6\bin\plugin2\npjp2.dll (Sun Microsystems, Inc.)
FF Plugin-x32: @microsoft.com/GENUINE - disabled No File
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~2\MICROS~4\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~4\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3508.1109 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3538.0513 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3555.0308 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @VideoDownloadConverter_4z.com/Plugin - C:\Program Files (x86)\VideoDownloadConverter_4z\bar\2.bin\NP4zStub.dll No File
FF Plugin-x32: @VideoDownloadConverter_ScriptHelper.com/Plugin - C:\Program Files (x86)\VideoDownloadConverter\npVDCPlugin.dll No File
FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKCU: @Skype Limited.com/Facebook Video Calling Plugin - C:\Users\Blacks\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll (Skype Limited)
FF Extension: No Name - C:\Users\Blacks\AppData\Roaming\Mozilla\Firefox\profiles\extensions\extensions [2013-01-30]
FF Extension: FTdownloader V3.0 - C:\Users\Blacks\AppData\Roaming\Mozilla\Firefox\profiles\extensions\ftdownloader3@ftdownloader.com.xpi [2013-04-11]
FF Extension: GoPhotoIt - C:\Users\Blacks\AppData\Roaming\Mozilla\Firefox\profiles\extensions\gophoto@gophoto.it.xpi [2013-08-08]
FF Extension: Movie2kDownloader - C:\Users\Blacks\AppData\Roaming\Mozilla\Firefox\profiles\extensions\movie2kdownloader@movie2kdownloader.com.xpi [2012-12-13]
FF HKLM-x32\...\Firefox\Extensions: [{2D3F3651-74B9-4795-BDEC-6DA2F431CB62}] - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_21.1.0.18\coFFPlgn\
FF Extension: Norton Toolbar - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_21.1.0.18\coFFPlgn\ []
FF HKLM-x32\...\Firefox\Extensions: [{BBDA0591-3099-440a-AA10-41764D9DB4DB}] - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_21.1.0.18\IPSFF
FF Extension: Norton Vulnerability Protection - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NIS_21.1.0.18\IPSFF [2013-11-14]
FF HKCU\...\Firefox\Extensions: [speedtest4354@BestOffers] - C:\Users\Blacks\AppData\Roaming\Mozilla\Extensions\speedtest4354@BestOffers
FF Extension: Speed Test 127 - C:\Users\Blacks\AppData\Roaming\Mozilla\Extensions\speedtest4354@BestOffers [2014-01-19]
FF HKCU\...\Firefox\Extensions: [freegames4357@BestOffers] - C:\Users\Blacks\AppData\Roaming\Mozilla\Extensions\freegames4357@BestOffers
FF Extension: Free Games 111 - C:\Users\Blacks\AppData\Roaming\Mozilla\Extensions\freegames4357@BestOffers [2014-01-19]
Chrome:
=======
CHR HomePage: hxxp://www.google.com
CHR RestoreOnStartup: "hxxp://www.google.com/"
CHR Plugin: (Shockwave Flash) - C:\Program Files (x86)\Google\Chrome\Application\29.0.1547.66\PepperFlash\pepflashplayer.dll ()
CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer
CHR Plugin: (Native Client) - C:\Program Files (x86)\Google\Chrome\Application\29.0.1547.66\ppGoogleNaClPluginChrome.dll ()
CHR Plugin: (Chrome PDF Viewer) - C:\Program Files (x86)\Google\Chrome\Application\29.0.1547.66\pdf.dll ()
CHR Plugin: (QuickTime Plug-in 7.7.4) - C:\Program Files (x86)\QuickTime\plugins\npqtplugin.dll (Apple Inc.)
CHR Plugin: (QuickTime Plug-in 7.7.4) - C:\Program Files (x86)\QuickTime\plugins\npqtplugin2.dll (Apple Inc.)
CHR Plugin: (QuickTime Plug-in 7.7.4) - C:\Program Files (x86)\QuickTime\plugins\npqtplugin3.dll (Apple Inc.)
CHR Plugin: (QuickTime Plug-in 7.7.4) - C:\Program Files (x86)\QuickTime\plugins\npqtplugin4.dll (Apple Inc.)
CHR Plugin: (QuickTime Plug-in 7.7.4) - C:\Program Files (x86)\QuickTime\plugins\npqtplugin5.dll (Apple Inc.)
CHR Plugin: (Microsoft Office 2010) - C:\PROGRA~2\MICROS~4\Office14\NPAUTHZ.DLL (Microsoft Corporation)
CHR Plugin: (Microsoft Office 2010) - C:\PROGRA~2\MICROS~4\Office14\NPSPWRAP.DLL (Microsoft Corporation)
CHR Plugin: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
CHR Plugin: (Google Earth Plugin) - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update\1.3.22.3\npGoogleUpdate3.dll (Google Inc.)
CHR Plugin: (Java(TM) Platform SE 6 U31) - C:\Program Files (x86)\Java\jre6\bin\plugin2\npjp2.dll (Sun Microsystems, Inc.)
CHR Plugin: (Silverlight Plug-In) - C:\Program Files (x86)\Microsoft Silverlight\5.1.20913.0\npctrl.dll ( Microsoft Corporation)
CHR Plugin: (NVIDIA 3D Vision) - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll No File
CHR Plugin: (NVIDIA 3D VISION) - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll No File
CHR Plugin: (Windows Live™ Photo Gallery) - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
CHR Plugin: (iTunes Application Detector) - C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
CHR Plugin: (Facebook Video Calling Plugin) - C:\Users\Blacks\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll (Skype Limited)
CHR Plugin: (Shockwave Flash) - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_170.dll No File
CHR Extension: (Torntv V6.0) - C:\Users\Blacks\AppData\Local\Google\Chrome\User Data\Default\Extensions\ahmilhmcinpmpohfoiccaplbhgelbnim [2014-02-01]
CHR Extension: (Google Docs) - C:\Users\Blacks\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2014-01-28]
CHR Extension: (Google Drive) - C:\Users\Blacks\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2014-01-28]
CHR Extension: (YouTube) - C:\Users\Blacks\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2014-01-28]
CHR Extension: (Google-Suche) - C:\Users\Blacks\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2014-01-28]
CHR Extension: (Norton Identity Protection) - C:\Users\Blacks\AppData\Local\Google\Chrome\User Data\Default\Extensions\mkfokfffehpeedafpekjeddnmnjhmcmk [2014-01-28]
CHR Extension: (Advanced SystemCare Surfing Protection) - C:\Users\Blacks\AppData\Local\Google\Chrome\User Data\Default\Extensions\nfengeggddojhakldhlpjdlddgkkjkdd [2014-02-03]
CHR Extension: (Google Wallet) - C:\Users\Blacks\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-01-28]
CHR Extension: (Google Mail) - C:\Users\Blacks\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2014-01-28]
CHR HKLM-x32\...\Chrome\Extension: [hbcennhacfaagdopikcegfcobcadeocj] - C:\Program Files (x86)\Common Files\Spigot\GC\saebay_1.1.crx [2014-01-28]
CHR HKLM-x32\...\Chrome\Extension: [icdlfehblmklkikfigmjhbmmpmkmpooj] - C:\Program Files (x86)\Common Files\Spigot\GC\ErrorAssistant_1.3.crx [2014-01-28]
CHR HKLM-x32\...\Chrome\Extension: [mhkaekfpcppmmioggniknbnbdbcigpkk] - C:\Users\Blacks\AppData\Local\Slick Savings\coupons.crx [2014-01-28]
CHR HKLM-x32\...\Chrome\Extension: [mkfokfffehpeedafpekjeddnmnjhmcmk] - C:\Program Files (x86)\Norton Internet Security\Engine\21.1.0.18\Exts\Chrome.crx [2014-01-24]
CHR HKLM-x32\...\Chrome\Extension: [nfengeggddojhakldhlpjdlddgkkjkdd] - C:\Program Files (x86)\IObit\Surfing Protection\BrowerProtect\ASC_GhromePlugin.crx [2014-01-27]
CHR HKLM-x32\...\Chrome\Extension: [pfndaklgolladniicklehhancnlgocpp] - C:\Program Files (x86)\Common Files\Spigot\GC\saamazon_1.0.crx [2014-01-27]
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
==================== Services (Whitelisted) =================
R2 AdvancedSystemCareService7; C:\Program Files (x86)\IObit\Advanced SystemCare 7\ASCService.exe [881440 2013-12-09] (IObit)
R2 HiSuiteOuc64.exe; C:\ProgramData\HiSuiteOuc\HiSuiteOuc64.exe [137024 2013-07-11] ()
R2 HuaweiHiSuiteService64.exe; C:\ProgramData\HandSetService\HuaweiHiSuiteService64.exe [197632 2013-05-02] ()
R2 IJPLMSVC; C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE [140456 2012-03-28] ()
S2 LiveUpdateSvc; C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe [2151200 2013-12-03] (IObit)
R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376 2013-04-04] (Malwarebytes Corporation)
R2 MBAMService; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [701512 2013-04-04] (Malwarebytes Corporation)
R2 NIS; C:\Program Files (x86)\Norton Internet Security\Engine\21.1.0.18\NIS.exe [275696 2013-10-08] (Symantec Corporation)
S4 NOBU; C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe [2804568 2010-06-01] (Symantec Corporation)
R2 TuneUp.UtilitiesSvc; C:\Program Files (x86)\TuneUp Utilities 2012\TuneUpUtilitiesService64.exe [2123584 2011-12-14] (TuneUp Software)
S3 McComponentHostService; "C:\Program Files (x86)\McAfee Security Scan\2.0.181\McCHSvc.exe" [x]
==================== Drivers (Whitelisted) ====================
R1 BHDrvx64; C:\Program Files (x86)\Norton Internet Security\NortonData\21.1.0.18\Definitions\BASHDefs\20140121.001\BHDrvx64.sys [1526488 2013-12-18] (Symantec Corporation)
R1 ccSet_NIS; C:\Windows\system32\drivers\NISx64\1501000.012\ccSetx64.sys [162392 2013-09-26] (Symantec Corporation)
R1 eeCtrl; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [484952 2013-11-21] (Symantec Corporation)
R3 EraserUtilRebootDrv; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [137648 2013-11-21] (Symantec Corporation)
R1 IDSVia64; C:\Program Files (x86)\Norton Internet Security\NortonData\21.1.0.18\Definitions\IPSDefs\20140131.001\IDSvia64.sys [521944 2014-01-21] (Symantec Corporation)
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation)
R3 NAVENG; C:\Program Files (x86)\Norton Internet Security\NortonData\21.1.0.18\Definitions\VirusDefs\20140202.003\ENG64.SYS [126040 2014-01-15] (Symantec Corporation)
R3 NAVEX15; C:\Program Files (x86)\Norton Internet Security\NortonData\21.1.0.18\Definitions\VirusDefs\20140202.003\EX64.SYS [2099288 2014-01-15] (Symantec Corporation)
S3 Serial; C:\Windows\system32\drivers\serial.sys [94208 2009-07-14] (Brother Industries Ltd.)
R1 SRTSP; C:\Windows\System32\Drivers\NISx64\1501000.012\SRTSP64.SYS [858200 2013-09-27] (Symantec Corporation)
R1 SRTSPX; C:\Windows\system32\drivers\NISx64\1501000.012\SRTSPX64.SYS [36952 2013-09-10] (Symantec Corporation)
R0 SymDS; C:\Windows\System32\drivers\NISx64\1501000.012\SYMDS64.SYS [493656 2013-09-10] (Symantec Corporation)
R0 SymEFA; C:\Windows\System32\drivers\NISx64\1501000.012\SYMEFA64.SYS [1147480 2013-09-27] (Symantec Corporation)
R3 SymEvent; C:\Windows\system32\Drivers\SYMEVENT64x86.SYS [177752 2013-11-13] (Symantec Corporation)
R1 SymIRON; C:\Windows\system32\drivers\NISx64\1501000.012\Ironx64.SYS [264280 2013-09-27] (Symantec Corporation)
R1 SymNetS; C:\Windows\System32\Drivers\NISx64\1501000.012\SYMNETS.SYS [590936 2013-09-26] (Symantec Corporation)
R3 TuneUpUtilitiesDrv; C:\Program Files (x86)\TuneUp Utilities 2012\TuneUpUtilitiesDriver64.sys [11856 2011-12-12] (TuneUp Software)
U5 AppMgmt; C:\Windows\system32\svchost.exe [27136 2009-07-14] (Microsoft Corporation)
S3 catchme; \??\C:\ComboFix\catchme.sys [x]
S3 esgiguard; \??\C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys [x]
U5 hw_usbdev; C:\Windows\System32\Drivers\hw_usbdev.sys [116864 2011-10-24] (Huawei Technologies Co., Ltd.)
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2014-02-03 17:52 - 2014-02-03 17:52 - 00025632 _____ () C:\Users\Blacks\Downloads\FRST.txt
2014-02-03 17:51 - 2014-02-03 17:51 - 02080256 _____ (Farbar) C:\Users\Blacks\Downloads\FRST64.exe
2014-02-03 17:48 - 2014-02-03 17:48 - 00406264 _____ (Bleeping Computer, LLC) C:\Users\Blacks\Downloads\sc-cleaner.exe
2014-02-03 17:48 - 2014-02-03 17:48 - 00004140 _____ () C:\sc-cleaner.txt
2014-02-03 17:47 - 2014-02-03 17:47 - 00034616 _____ () C:\Users\Blacks\Desktop\JRT.txt
2014-02-03 17:41 - 2014-02-03 17:41 - 00000000 ____D () C:\Windows\ERUNT
2014-02-03 17:40 - 2014-02-03 17:40 - 01037068 _____ (Thisisu) C:\Users\Blacks\Downloads\JRT.exe
2014-02-03 17:30 - 2014-02-03 17:30 - 01166132 _____ () C:\Users\Blacks\Downloads\adwcleaner.exe
2014-02-03 17:26 - 2014-02-03 17:36 - 00000112 _____ () C:\Windows\setupact.log
2014-02-03 17:26 - 2014-02-03 17:26 - 00000000 _____ () C:\Windows\setuperr.log
2014-02-03 17:25 - 2014-02-03 17:36 - 00016752 _____ () C:\Windows\PFRO.log
2014-02-03 17:15 - 2014-02-03 17:15 - 00001113 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2014-02-03 17:15 - 2014-02-03 17:15 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes' Anti-Malware
2014-02-03 17:15 - 2013-04-04 14:50 - 00025928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2014-02-03 17:14 - 2014-02-03 17:14 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Blacks\Downloads\mbam-setup-1.75.0.1300.exe
2014-02-03 17:13 - 2014-02-03 17:13 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Blacks\Downloads\mbam-setup-1.75.0.1300 (1).exe
2014-02-03 17:00 - 2014-02-03 17:00 - 01441952 _____ (Bandoo Media Inc) C:\Users\Blacks\Downloads\jZipSetup-r113-n-bc.exe
2014-02-03 17:00 - 2014-02-03 17:00 - 00039002 _____ () C:\Users\Blacks\Downloads\BED60EDBD670CF6E695AAF747B2E1BEA51528046.torrent
2014-02-03 16:24 - 2014-02-03 16:24 - 00014738 _____ () C:\Users\Blacks\Downloads\[kickass.to]the.secret.garden.1993.ws.xvid.dvdrip.torrent
2014-02-03 14:26 - 2014-02-03 14:29 - 00000000 ____D () C:\Users\Blacks\RAV
2014-02-01 13:49 - 2014-02-01 13:49 - 00003144 _____ () C:\Windows\System32\Tasks\{F35FB6B9-F09D-4715-A0F0-598E9D3A4748}
2014-02-01 11:49 - 2014-02-01 11:57 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-02-01 11:49 - 2014-02-01 11:57 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-01-28 17:02 - 2014-01-28 17:02 - 30361888 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll
2014-01-28 17:02 - 2014-01-28 17:02 - 25257248 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll
2014-01-28 17:02 - 2014-01-28 17:02 - 22951200 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll
2014-01-28 17:02 - 2014-01-28 17:02 - 18208624 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll
2014-01-28 17:02 - 2014-01-28 17:02 - 17560352 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll
2014-01-28 17:02 - 2014-01-28 17:02 - 15862272 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll
2014-01-28 17:02 - 2014-01-28 17:02 - 12613408 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys
2014-01-28 17:02 - 2014-01-28 17:02 - 11600432 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2014-01-28 17:02 - 2014-01-28 17:02 - 11514624 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll
2014-01-28 17:02 - 2014-01-28 17:02 - 09691888 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2014-01-28 17:02 - 2014-01-28 17:02 - 09619872 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll
2014-01-28 17:02 - 2014-01-28 17:02 - 03132704 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2014-01-28 17:02 - 2014-01-28 17:02 - 03125024 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvenc.dll
2014-01-28 17:02 - 2014-01-28 17:02 - 02947872 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2014-01-28 17:02 - 2014-01-28 17:02 - 02747680 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvenc.dll
2014-01-28 17:02 - 2014-01-28 17:02 - 01884448 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6433182.dll
2014-01-28 17:02 - 2014-01-28 17:02 - 01511712 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6433182.dll
2014-01-28 17:02 - 2014-01-28 17:02 - 01242400 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll
2014-01-28 17:02 - 2014-01-28 17:02 - 00707360 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
2014-01-28 17:02 - 2014-01-28 17:02 - 00657184 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
2014-01-28 17:02 - 2014-01-28 17:02 - 00609568 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2014-01-28 17:02 - 2014-01-28 17:02 - 00562464 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2014-01-28 17:02 - 2014-01-28 17:02 - 00317472 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll
2014-01-28 17:02 - 2014-01-28 17:02 - 00266984 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll
2014-01-28 17:02 - 2014-01-28 17:02 - 00168616 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll
2014-01-28 17:02 - 2014-01-28 17:02 - 00141336 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll
2014-01-27 23:03 - 2014-01-28 17:11 - 38533120 _____ () C:\Program Files (x86)\GUTEF2D.tmp
2014-01-27 23:03 - 2014-01-28 14:21 - 00000000 ____D () C:\Program Files (x86)\GUMEF2C.tmp
2014-01-27 23:03 - 2014-01-27 23:03 - 00002259 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
2014-01-27 10:26 - 2014-02-03 17:35 - 00000000 ____D () C:\AdwCleaner
2014-01-27 09:49 - 2014-01-27 09:49 - 05773824 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll
2014-01-27 09:49 - 2014-01-27 09:49 - 04916224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll
2014-01-27 09:49 - 2014-01-27 09:49 - 03174912 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll
2014-01-27 09:49 - 2014-01-27 09:49 - 01123840 _____ (Microsoft Corporation) C:\Windows\system32\mstsc.exe
2014-01-27 09:49 - 2014-01-27 09:49 - 01048064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstsc.exe
2014-01-27 09:49 - 2014-01-27 09:49 - 00384000 _____ (Microsoft Corporation) C:\Windows\system32\wksprt.exe
2014-01-27 09:49 - 2014-01-27 09:49 - 00322560 _____ (Microsoft Corporation) C:\Windows\system32\aaclient.dll
2014-01-27 09:49 - 2014-01-27 09:49 - 00269312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aaclient.dll
2014-01-27 09:49 - 2014-01-27 09:49 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\rdpudd.dll
2014-01-27 09:49 - 2014-01-27 09:49 - 00228864 _____ (Microsoft Corporation) C:\Windows\system32\rdpendp_winip.dll
2014-01-27 09:49 - 2014-01-27 09:49 - 00192000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpendp_winip.dll
2014-01-27 09:49 - 2014-01-27 09:49 - 00062976 _____ (Microsoft Corporation) C:\Windows\system32\TSWbPrxy.exe
2014-01-27 09:49 - 2014-01-27 09:49 - 00057856 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\TsUsbFlt.sys
2014-01-27 09:49 - 2014-01-27 09:49 - 00054272 _____ (Microsoft Corporation) C:\Windows\system32\MsRdpWebAccess.dll
2014-01-27 09:49 - 2014-01-27 09:49 - 00046592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MsRdpWebAccess.dll
2014-01-27 09:49 - 2014-01-27 09:49 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll
2014-01-27 09:49 - 2014-01-27 09:49 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbGDCoInstaller.dll
2014-01-27 09:49 - 2014-01-27 09:49 - 00037376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll
2014-01-27 09:49 - 2014-01-27 09:49 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\TsUsbGD.sys
2014-01-27 09:49 - 2014-01-27 09:49 - 00019456 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpvideominiport.sys
2014-01-27 09:49 - 2014-01-27 09:49 - 00018432 _____ (Microsoft Corporation) C:\Windows\system32\wksprtPS.dll
2014-01-27 09:49 - 2014-01-27 09:49 - 00016896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wksprtPS.dll
2014-01-27 09:49 - 2014-01-27 09:49 - 00015360 _____ (Microsoft Corporation) C:\Windows\system32\RdpGroupPolicyExtension.dll
2014-01-27 09:49 - 2014-01-27 09:49 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll
2014-01-27 09:49 - 2014-01-27 09:49 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyControl.exe
2014-01-27 09:45 - 2014-01-27 09:45 - 00514560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qdvd.dll
2014-01-27 09:45 - 2014-01-27 09:45 - 00366592 _____ (Microsoft Corporation) C:\Windows\system32\qdvd.dll
2014-01-27 09:42 - 2014-01-27 09:42 - 00003096 _____ () C:\Windows\System32\Tasks\ASC7_PerformanceMonitor
2014-01-27 09:41 - 2014-02-01 13:55 - 00002209 _____ () C:\Users\Public\Desktop\Advanced SystemCare 7.lnk
2014-01-27 09:41 - 2014-01-28 17:06 - 00000000 ____D () C:\Program Files (x86)\IObit
2014-01-27 09:41 - 2014-01-28 17:00 - 00000000 ____D () C:\Users\Blacks\AppData\Roaming\IObit
2014-01-27 09:41 - 2014-01-28 17:00 - 00000000 ____D () C:\ProgramData\IObit
2014-01-27 09:41 - 2014-01-28 16:59 - 00000000 ____D () C:\ProgramData\ProductData
2014-01-27 09:41 - 2014-01-27 09:41 - 00002852 _____ () C:\Windows\System32\Tasks\ASC7_SkipUac_Blacks
2014-01-27 09:41 - 2014-01-27 09:41 - 00000000 ____D () C:\ProgramData\{3C5CBD7B-3D1D-411E-96C2-513FFCA84D2D}
2014-01-27 08:05 - 2014-01-27 08:05 - 00036596 _____ () C:\ComboFix.txt
2014-01-27 07:58 - 2011-06-26 07:45 - 00256000 _____ () C:\Windows\PEV.exe
2014-01-27 07:58 - 2010-11-07 18:20 - 00208896 _____ () C:\Windows\MBR.exe
2014-01-27 07:58 - 2009-04-20 05:56 - 00060416 _____ (NirSoft) C:\Windows\NIRCMD.exe
2014-01-27 07:58 - 2000-08-31 01:00 - 00518144 _____ (SteelWerX) C:\Windows\SWREG.exe
2014-01-27 07:58 - 2000-08-31 01:00 - 00406528 _____ (SteelWerX) C:\Windows\SWSC.exe
2014-01-27 07:58 - 2000-08-31 01:00 - 00098816 _____ () C:\Windows\sed.exe
2014-01-27 07:58 - 2000-08-31 01:00 - 00080412 _____ () C:\Windows\grep.exe
2014-01-27 07:58 - 2000-08-31 01:00 - 00068096 _____ () C:\Windows\zip.exe
2014-01-27 07:57 - 2014-01-27 08:05 - 00000000 ____D () C:\Qoobox
2014-01-27 07:57 - 2014-01-27 08:04 - 00000000 ____D () C:\Windows\erdnt
2014-01-27 07:53 - 2014-02-03 17:52 - 00000000 ____D () C:\FRST
2014-01-27 06:23 - 2014-01-27 06:23 - 00000000 _____ () C:\Users\Blacks\defogger_reenable
2014-01-27 04:38 - 2014-01-27 04:38 - 00000000 ____D () C:\Users\Blacks\AppData\Roaming\Malwarebytes
2014-01-27 04:38 - 2014-01-27 04:38 - 00000000 ____D () C:\ProgramData\Malwarebytes
2014-01-27 04:15 - 2014-01-27 07:03 - 00000000 ____D () C:\Users\Blacks\AppData\Roaming\GlarySoft
2014-01-27 03:30 - 2014-01-27 03:30 - 00000000 ____D () C:\Program Files\Enigma Software Group
2014-01-27 03:29 - 2014-01-27 04:10 - 00000000 ____D () C:\Windows\ACF5FE1B377240688B872D2A6EFD0A05.TMP
2014-01-20 00:28 - 2014-01-20 00:52 - 00000000 ____D () C:\Users\Blacks\Desktop\Foti
2014-01-19 17:31 - 2014-01-26 22:36 - 00000000 ____D () C:\Users\Blacks\AppData\Local\CatalinaGroup
2014-01-19 17:02 - 2014-01-19 17:02 - 00000857 _____ () C:\Users\Blacks\Desktop\µTorrent.lnk
2014-01-19 16:38 - 2014-01-19 16:38 - 00000000 ____D () C:\Users\Blacks\AppData\Local\cache
2014-01-19 15:29 - 2014-01-19 17:55 - 00000000 ____D () C:\Users\Blacks\Desktop\zum verchuafe
2014-01-15 21:18 - 2013-11-27 02:41 - 00343040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys
2014-01-15 21:18 - 2013-11-27 02:41 - 00325120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys
2014-01-15 21:18 - 2013-11-27 02:41 - 00099840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys
2014-01-15 21:18 - 2013-11-27 02:41 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys
2014-01-15 21:18 - 2013-11-27 02:41 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbuhci.sys
2014-01-15 21:18 - 2013-11-27 02:41 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbohci.sys
2014-01-15 21:18 - 2013-11-27 02:41 - 00007808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys
2014-01-15 21:18 - 2013-11-26 12:40 - 00376768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys
2014-01-15 21:18 - 2013-11-26 11:32 - 03156480 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
==================== One Month Modified Files and Folders =======
2014-02-03 17:52 - 2014-02-03 17:52 - 00025632 _____ () C:\Users\Blacks\Downloads\FRST.txt
2014-02-03 17:52 - 2014-01-27 07:53 - 00000000 ____D () C:\FRST
2014-02-03 17:51 - 2014-02-03 17:51 - 02080256 _____ (Farbar) C:\Users\Blacks\Downloads\FRST64.exe
2014-02-03 17:48 - 2014-02-03 17:48 - 00406264 _____ (Bleeping Computer, LLC) C:\Users\Blacks\Downloads\sc-cleaner.exe
2014-02-03 17:48 - 2014-02-03 17:48 - 00004140 _____ () C:\sc-cleaner.txt
2014-02-03 17:48 - 2012-01-30 19:06 - 00001425 _____ () C:\Users\Blacks\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-02-03 17:47 - 2014-02-03 17:47 - 00034616 _____ () C:\Users\Blacks\Desktop\JRT.txt
2014-02-03 17:44 - 2009-07-14 05:45 - 00016976 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-02-03 17:44 - 2009-07-14 05:45 - 00016976 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-02-03 17:41 - 2014-02-03 17:41 - 00000000 ____D () C:\Windows\ERUNT
2014-02-03 17:40 - 2014-02-03 17:40 - 01037068 _____ (Thisisu) C:\Users\Blacks\Downloads\JRT.exe
2014-02-03 17:38 - 2011-12-08 23:19 - 01318795 _____ () C:\Windows\WindowsUpdate.log
2014-02-03 17:37 - 2013-09-25 20:21 - 00000000 ___RD () C:\Users\Blacks\Dropbox
2014-02-03 17:37 - 2013-09-25 20:20 - 00000000 ____D () C:\Users\Blacks\AppData\Roaming\Dropbox
2014-02-03 17:37 - 2012-01-30 19:18 - 00000000 ____D () C:\ProgramData\clear.fi
2014-02-03 17:36 - 2014-02-03 17:26 - 00000112 _____ () C:\Windows\setupact.log
2014-02-03 17:36 - 2014-02-03 17:25 - 00016752 _____ () C:\Windows\PFRO.log
2014-02-03 17:36 - 2009-07-14 06:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-02-03 17:35 - 2014-01-27 10:26 - 00000000 ____D () C:\AdwCleaner
2014-02-03 17:30 - 2014-02-03 17:30 - 01166132 _____ () C:\Users\Blacks\Downloads\adwcleaner.exe
2014-02-03 17:26 - 2014-02-03 17:26 - 00000000 _____ () C:\Windows\setuperr.log
2014-02-03 17:23 - 2012-12-30 17:34 - 00000000 ____D () C:\Users\Blacks\AppData\Roaming\uTorrent
2014-02-03 17:15 - 2014-02-03 17:15 - 00001113 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2014-02-03 17:15 - 2014-02-03 17:15 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes' Anti-Malware
2014-02-03 17:14 - 2014-02-03 17:14 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Blacks\Downloads\mbam-setup-1.75.0.1300.exe
2014-02-03 17:13 - 2014-02-03 17:13 - 10285040 _____ (Malwarebytes Corporation ) C:\Users\Blacks\Downloads\mbam-setup-1.75.0.1300 (1).exe
2014-02-03 17:00 - 2014-02-03 17:00 - 01441952 _____ (Bandoo Media Inc) C:\Users\Blacks\Downloads\jZipSetup-r113-n-bc.exe
2014-02-03 17:00 - 2014-02-03 17:00 - 00039002 _____ () C:\Users\Blacks\Downloads\BED60EDBD670CF6E695AAF747B2E1BEA51528046.torrent
2014-02-03 16:38 - 2012-11-24 22:33 - 00000932 _____ () C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2596747705-3298392032-401461655-1000UA.job
2014-02-03 16:24 - 2014-02-03 16:24 - 00014738 _____ () C:\Users\Blacks\Downloads\[kickass.to]the.secret.garden.1993.ws.xvid.dvdrip.torrent
2014-02-03 15:35 - 2012-02-25 18:15 - 00000000 ____D () C:\Users\Blacks\AppData\Roaming\vlc
2014-02-03 15:06 - 2013-02-18 12:30 - 00000000 ____D () C:\Users\Blacks\Desktop\Bewerbungsunterlagen - AK
2014-02-03 14:30 - 2012-04-06 15:22 - 00000000 ____D () C:\Users\Blacks\Documents\Symantec
2014-02-03 14:29 - 2014-02-03 14:26 - 00000000 ____D () C:\Users\Blacks\RAV
2014-02-03 14:26 - 2012-01-30 19:02 - 00000000 ____D () C:\Users\Blacks
2014-02-03 14:25 - 2013-11-06 16:28 - 00000000 ____D () C:\ProgramData\CanonIJPLM
2014-02-02 22:38 - 2012-11-24 22:33 - 00000910 _____ () C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2596747705-3298392032-401461655-1000Core.job
2014-02-02 20:29 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\NDF
2014-02-01 14:27 - 2012-02-12 15:52 - 00000000 ____D () C:\Users\Blacks\Eigene Serien
2014-02-01 13:55 - 2014-01-27 09:41 - 00002209 _____ () C:\Users\Public\Desktop\Advanced SystemCare 7.lnk
2014-02-01 13:49 - 2014-02-01 13:49 - 00003144 _____ () C:\Windows\System32\Tasks\{F35FB6B9-F09D-4715-A0F0-598E9D3A4748}
2014-02-01 11:57 - 2014-02-01 11:49 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-02-01 11:57 - 2014-02-01 11:49 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-02-01 11:57 - 2012-01-30 21:57 - 00000000 ____D () C:\Users\Blacks\AppData\Local\Adobe
2014-01-30 09:54 - 2012-04-08 01:26 - 00000000 ____D () C:\Users\Blacks\AppData\Local\CrashDumps
2014-01-28 17:11 - 2014-01-27 23:03 - 38533120 _____ () C:\Program Files (x86)\GUTEF2D.tmp
2014-01-28 17:08 - 2011-07-11 09:03 - 00000000 ____D () C:\Program Files (x86)\Adobe
2014-01-28 17:06 - 2014-01-27 09:41 - 00000000 ____D () C:\Program Files (x86)\IObit
2014-01-28 17:04 - 2011-12-08 23:23 - 00000000 ____D () C:\ProgramData\NVIDIA
2014-01-28 17:03 - 2011-12-08 23:21 - 00000000 ____D () C:\Program Files (x86)\NVIDIA Corporation
2014-01-28 17:02 - 2014-01-28 17:02 - 30361888 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll
2014-01-28 17:02 - 2014-01-28 17:02 - 25257248 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll
2014-01-28 17:02 - 2014-01-28 17:02 - 22951200 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll
2014-01-28 17:02 - 2014-01-28 17:02 - 18208624 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll
2014-01-28 17:02 - 2014-01-28 17:02 - 17560352 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll
2014-01-28 17:02 - 2014-01-28 17:02 - 15862272 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll
2014-01-28 17:02 - 2014-01-28 17:02 - 12613408 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys
2014-01-28 17:02 - 2014-01-28 17:02 - 11600432 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2014-01-28 17:02 - 2014-01-28 17:02 - 11514624 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll
2014-01-28 17:02 - 2014-01-28 17:02 - 09691888 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2014-01-28 17:02 - 2014-01-28 17:02 - 09619872 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll
2014-01-28 17:02 - 2014-01-28 17:02 - 03132704 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2014-01-28 17:02 - 2014-01-28 17:02 - 03125024 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvenc.dll
2014-01-28 17:02 - 2014-01-28 17:02 - 02947872 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2014-01-28 17:02 - 2014-01-28 17:02 - 02747680 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvenc.dll
2014-01-28 17:02 - 2014-01-28 17:02 - 01884448 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6433182.dll
2014-01-28 17:02 - 2014-01-28 17:02 - 01511712 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6433182.dll
2014-01-28 17:02 - 2014-01-28 17:02 - 01242400 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll
2014-01-28 17:02 - 2014-01-28 17:02 - 00707360 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
2014-01-28 17:02 - 2014-01-28 17:02 - 00657184 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
2014-01-28 17:02 - 2014-01-28 17:02 - 00609568 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2014-01-28 17:02 - 2014-01-28 17:02 - 00562464 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2014-01-28 17:02 - 2014-01-28 17:02 - 00317472 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll
2014-01-28 17:02 - 2014-01-28 17:02 - 00266984 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll
2014-01-28 17:02 - 2014-01-28 17:02 - 00168616 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll
2014-01-28 17:02 - 2014-01-28 17:02 - 00141336 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll
2014-01-28 17:02 - 2013-02-25 23:32 - 00023754 _____ () C:\Windows\system32\nvinfo.pb
2014-01-28 17:02 - 2012-10-10 21:23 - 18293608 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll
2014-01-28 17:02 - 2012-10-10 21:23 - 03069608 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll
2014-01-28 17:02 - 2012-10-10 21:23 - 01436528 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll
2014-01-28 17:02 - 2012-10-10 21:22 - 15218504 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll
2014-01-28 17:02 - 2012-10-10 21:22 - 02697248 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll
2014-01-28 17:00 - 2014-01-27 09:41 - 00000000 ____D () C:\Users\Blacks\AppData\Roaming\IObit
2014-01-28 17:00 - 2014-01-27 09:41 - 00000000 ____D () C:\ProgramData\IObit
2014-01-28 16:59 - 2014-01-27 09:41 - 00000000 ____D () C:\ProgramData\ProductData
2014-01-28 14:21 - 2014-01-27 23:03 - 00000000 ____D () C:\Program Files (x86)\GUMEF2C.tmp
2014-01-28 13:37 - 2012-02-11 17:42 - 00000000 ____D () C:\Users\Blacks\AppData\Local\Google
2014-01-27 23:03 - 2014-01-27 23:03 - 00002259 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
2014-01-27 23:03 - 2012-02-11 17:42 - 00000000 ____D () C:\Program Files (x86)\Google
2014-01-27 17:46 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\rescache
2014-01-27 10:29 - 2013-01-26 14:17 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-01-27 09:50 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\PolicyDefinitions
2014-01-27 09:49 - 2014-01-27 09:49 - 05773824 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll
2014-01-27 09:49 - 2014-01-27 09:49 - 04916224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll
2014-01-27 09:49 - 2014-01-27 09:49 - 03174912 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll
2014-01-27 09:49 - 2014-01-27 09:49 - 01123840 _____ (Microsoft Corporation) C:\Windows\system32\mstsc.exe
2014-01-27 09:49 - 2014-01-27 09:49 - 01048064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstsc.exe
2014-01-27 09:49 - 2014-01-27 09:49 - 00384000 _____ (Microsoft Corporation) C:\Windows\system32\wksprt.exe
2014-01-27 09:49 - 2014-01-27 09:49 - 00322560 _____ (Microsoft Corporation) C:\Windows\system32\aaclient.dll
2014-01-27 09:49 - 2014-01-27 09:49 - 00269312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aaclient.dll
2014-01-27 09:49 - 2014-01-27 09:49 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\rdpudd.dll
2014-01-27 09:49 - 2014-01-27 09:49 - 00228864 _____ (Microsoft Corporation) C:\Windows\system32\rdpendp_winip.dll
2014-01-27 09:49 - 2014-01-27 09:49 - 00192000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpendp_winip.dll
2014-01-27 09:49 - 2014-01-27 09:49 - 00062976 _____ (Microsoft Corporation) C:\Windows\system32\TSWbPrxy.exe
2014-01-27 09:49 - 2014-01-27 09:49 - 00057856 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\TsUsbFlt.sys
2014-01-27 09:49 - 2014-01-27 09:49 - 00054272 _____ (Microsoft Corporation) C:\Windows\system32\MsRdpWebAccess.dll
2014-01-27 09:49 - 2014-01-27 09:49 - 00046592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MsRdpWebAccess.dll
2014-01-27 09:49 - 2014-01-27 09:49 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll
2014-01-27 09:49 - 2014-01-27 09:49 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbGDCoInstaller.dll
2014-01-27 09:49 - 2014-01-27 09:49 - 00037376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll
2014-01-27 09:49 - 2014-01-27 09:49 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\TsUsbGD.sys
2014-01-27 09:49 - 2014-01-27 09:49 - 00019456 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpvideominiport.sys
2014-01-27 09:49 - 2014-01-27 09:49 - 00018432 _____ (Microsoft Corporation) C:\Windows\system32\wksprtPS.dll
2014-01-27 09:49 - 2014-01-27 09:49 - 00016896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wksprtPS.dll
2014-01-27 09:49 - 2014-01-27 09:49 - 00015360 _____ (Microsoft Corporation) C:\Windows\system32\RdpGroupPolicyExtension.dll
2014-01-27 09:49 - 2014-01-27 09:49 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll
2014-01-27 09:49 - 2014-01-27 09:49 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyControl.exe
2014-01-27 09:45 - 2014-01-27 09:45 - 00514560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qdvd.dll
2014-01-27 09:45 - 2014-01-27 09:45 - 00366592 _____ (Microsoft Corporation) C:\Windows\system32\qdvd.dll
2014-01-27 09:45 - 2007-07-12 02:49 - 00000000 ____D () C:\Windows\Panther
2014-01-27 09:42 - 2014-01-27 09:42 - 00003096 _____ () C:\Windows\System32\Tasks\ASC7_PerformanceMonitor
2014-01-27 09:41 - 2014-01-27 09:41 - 00002852 _____ () C:\Windows\System32\Tasks\ASC7_SkipUac_Blacks
2014-01-27 09:41 - 2014-01-27 09:41 - 00000000 ____D () C:\ProgramData\{3C5CBD7B-3D1D-411E-96C2-513FFCA84D2D}
2014-01-27 09:41 - 2012-01-31 20:26 - 00000000 ____D () C:\Users\Blacks\AppData\Roaming\Apple Computer
2014-01-27 08:05 - 2014-01-27 08:05 - 00036596 _____ () C:\ComboFix.txt
2014-01-27 08:05 - 2014-01-27 07:57 - 00000000 ____D () C:\Qoobox
2014-01-27 08:04 - 2014-01-27 07:57 - 00000000 ____D () C:\Windows\erdnt
2014-01-27 08:03 - 2009-07-14 03:34 - 00000215 _____ () C:\Windows\system.ini
2014-01-27 07:03 - 2014-01-27 04:15 - 00000000 ____D () C:\Users\Blacks\AppData\Roaming\GlarySoft
2014-01-27 06:23 - 2014-01-27 06:23 - 00000000 _____ () C:\Users\Blacks\defogger_reenable
2014-01-27 05:49 - 2012-02-01 07:34 - 00000000 ___RD () C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2014-01-27 05:49 - 2012-02-01 07:34 - 00000000 ___RD () C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2014-01-27 05:23 - 2012-01-30 19:52 - 00000000 ____D () C:\Users\Blacks\AppData\Roaming\TuneUp Software
2014-01-27 04:46 - 2012-02-11 17:42 - 00001110 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-01-27 04:46 - 2012-02-11 17:42 - 00001106 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-01-27 04:38 - 2014-01-27 04:38 - 00000000 ____D () C:\Users\Blacks\AppData\Roaming\Malwarebytes
2014-01-27 04:38 - 2014-01-27 04:38 - 00000000 ____D () C:\ProgramData\Malwarebytes
2014-01-27 04:27 - 2013-02-09 11:01 - 00000000 ____D () C:\Program Files (x86)\EasyTax
2014-01-27 04:26 - 2013-11-06 16:25 - 00000000 ____D () C:\Program Files (x86)\Canon
2014-01-27 04:24 - 2012-10-23 19:05 - 00000000 ____D () C:\ProgramData\MAGIX
2014-01-27 04:10 - 2014-01-27 03:29 - 00000000 ____D () C:\Windows\ACF5FE1B377240688B872D2A6EFD0A05.TMP
2014-01-27 03:58 - 2012-02-11 17:42 - 00004118 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2014-01-27 03:58 - 2012-02-11 17:42 - 00003866 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2014-01-27 03:30 - 2014-01-27 03:30 - 00000000 ____D () C:\Program Files\Enigma Software Group
2014-01-27 03:26 - 2012-07-04 20:27 - 00000000 ____D () C:\Users\Blacks\AppData\Roaming\Azureus
2014-01-27 03:26 - 2012-01-30 21:16 - 00000000 ____D () C:\Users\Blacks\AppData\Roaming\Skype
2014-01-27 03:25 - 2012-09-24 16:40 - 00000000 ____D () C:\Windows\Minidump
2014-01-26 22:36 - 2014-01-19 17:31 - 00000000 ____D () C:\Users\Blacks\AppData\Local\CatalinaGroup
2014-01-23 16:47 - 2011-12-05 16:33 - 00654150 _____ () C:\Windows\system32\perfh007.dat
2014-01-23 16:47 - 2011-12-05 16:33 - 00130022 _____ () C:\Windows\system32\perfc007.dat
2014-01-23 16:47 - 2009-07-14 06:13 - 01498742 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-01-21 03:00 - 2009-07-14 04:20 - 00000000 ____D () C:\Program Files\Common Files\Microsoft Shared
2014-01-20 00:52 - 2014-01-20 00:28 - 00000000 ____D () C:\Users\Blacks\Desktop\Foti
2014-01-19 17:55 - 2014-01-19 15:29 - 00000000 ____D () C:\Users\Blacks\Desktop\zum verchuafe
2014-01-19 17:02 - 2014-01-19 17:02 - 00000857 _____ () C:\Users\Blacks\Desktop\µTorrent.lnk
2014-01-19 16:45 - 2012-07-05 20:37 - 00000000 ____D () C:\Users\Blacks\.frostwire5
2014-01-19 16:38 - 2014-01-19 16:38 - 00000000 ____D () C:\Users\Blacks\AppData\Local\cache
2014-01-19 16:26 - 2012-01-30 19:06 - 00000000 ___RD () C:\Users\Blacks\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
2014-01-19 16:23 - 2012-02-11 21:18 - 00000000 ____D () C:\Users\Blacks\AppData\Roaming\Mozilla
2014-01-16 23:21 - 2013-09-25 20:20 - 00000000 ____D () C:\Users\Blacks\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox
2014-01-16 03:19 - 2009-07-14 05:45 - 00344328 _____ () C:\Windows\system32\FNTCACHE.DAT
2014-01-16 03:02 - 2013-07-30 02:04 - 00000000 ____D () C:\Windows\system32\MRT
2014-01-16 03:00 - 2012-02-01 07:00 - 86054176 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-01-07 11:08 - 2012-11-07 20:08 - 00000000 ____D () C:\Program Files (x86)\HiSuite
2014-01-06 11:37 - 2013-10-27 16:24 - 00000000 ____D () C:\Users\Cassandra\Documents\Stick rot 27.10.2013
Some content of TEMP:
====================
C:\Users\Blacks\AppData\Local\Temp\install_flashplayer12x32ax_gtba_chra_dy_aaa_aih.exe
C:\Users\Blacks\AppData\Local\Temp\Quarantine.exe
==================== Bamital & volsnap Check =================
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\rpcss.dll => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
LastRegBack: 2014-01-30 18:08
==================== End Of Log ============================
--- --- ---
--- --- ---