Code:
Malwarebytes Anti-Malware
www.malwarebytes.org
Suchlauf Datum: 01.12.2014
Suchlauf-Zeit: 15:04:44
Logdatei: mbam.txt
Administrator: Ja
Version: 2.00.3.1025
Malware Datenbank: v2014.12.01.03
Rootkit Datenbank: v2014.12.01.01
Lizenz: Kostenlos
Malware Schutz: Deaktiviert
Bösartiger Webseiten Schutz: Deaktiviert
Selbstschutz: Deaktiviert
Betriebssystem: Windows 7 Service Pack 1
CPU: x64
Dateisystem: NTFS
Benutzer: Carolin
Suchlauf-Art: Bedrohungs-Suchlauf
Ergebnis: Abgeschlossen
Durchsuchte Objekte: 332980
Verstrichene Zeit: 28 Min, 8 Sek
Speicher: Aktiviert
Autostart: Aktiviert
Dateisystem: Aktiviert
Archive: Aktiviert
Rootkits: Deaktiviert
Heuristik: Aktiviert
PUP: Aktiviert
PUM: Aktiviert
Prozesse: 0
(Keine schädliche Elemente erkannt)
Module: 0
(Keine schädliche Elemente erkannt)
Registrierungsschlüssel: 6
PUP.Optional.WebSteroids.A, HKLM\SOFTWARE\CLASSES\CLSID\{051E9166-B275-4683-907B-372FAE22BC7C}, In Quarantäne, [4e59a6b76a120b2bba9152778181867a],
PUP.Optional.DynConIE.A, HKLM\SOFTWARE\CLASSES\CLSID\{E5A7A645-8318-4895-B85C-EDC606B80DB6}, In Quarantäne, [cfd82e2fdaa232043ae0ab1e4bb7ad53],
PUP.Optional.InstallBrain.A, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-1\SOFTWARE\WNLT, Löschen bei Neustart, [1d8a1b42d0ac46f071ecdac436ce52ae],
PUP.Optional.Vosteran.A, HKU\S-1-5-21-2453086613-2554175977-1139649338-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-1\SOFTWARE\Vosteran Browser, Löschen bei Neustart, [188f77e63f3d1026e5c58f317c8827d9],
PUP.Optional.InstallCore.A, HKU\S-1-5-21-2453086613-2554175977-1139649338-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-1\SOFTWARE\INSTALLCORE\1I1T1Q1S, Löschen bei Neustart, [dacdb5a874081d19ef4ca8d90ff4a45c],
PUP.Optional.InstallCore.A, HKU\S-1-5-21-2453086613-2554175977-1139649338-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-1\SOFTWARE\INSTALLCORE, Löschen bei Neustart, [dacdc7962656072fcc96afe84abab54b],
Registrierungswerte: 2
PUP.Optional.InstallBrain.A, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-1\SOFTWARE\WNLT|URL, MYSTART, Löschen bei Neustart, [1d8a1b42d0ac46f071ecdac436ce52ae]
PUP.Optional.InstallCore.A, HKU\S-1-5-21-2453086613-2554175977-1139649338-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-1\SOFTWARE\INSTALLCORE|tb, 0H1N1M, Löschen bei Neustart, [dacdc7962656072fcc96afe84abab54b]
Registrierungsdaten: 0
(Keine schädliche Elemente erkannt)
Ordner: 10
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\index-dir, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\databases, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\GPUCache, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\IndexedDB, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\IndexedDB\file__0.indexeddb.leveldb, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Local Storage, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Vosteran.A, C:\Users\Carolin\AppData\Roaming\WSE_Vosteran, In Quarantäne, [5a4d73ea37456bcb0bf87bc5778c3dc3],
PUP.Optional.Vosteran.A, C:\Users\Carolin\AppData\Roaming\WSE_Vosteran\icons_3.6.2.0, In Quarantäne, [5a4d73ea37456bcb0bf87bc5778c3dc3],
Dateien: 250
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\QuotaManager-journal, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\cookies, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\cookies-journal, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\QuotaManager, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\website.ico, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\001735803f796f8f_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\0408fc51385990cb_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\051d4e0dd1430da4_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\05ff7aa027ded9b9_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\06103210ae5eb92b_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\08dcc3c80119ece9_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\0b655bef5d51299b_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\1041015f9233625e_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\10ba1a6dd717f76d_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\1374982dcefea341_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\138afe9274867956_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\157cd8dce60f44aa_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\173098b248f33804_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\17fca90648de2a7e_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\18dbbb8aeff06df6_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\19d84e595d8acdd8_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\1a3f72f0d8975a73_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\1b9bef7bba1060d2_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\4daf3cbc2c7e199f_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\4fc1d6c2f5c967dd_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\50466526f188839c_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\5065f3c1667cc082_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\520e78909e638ec3_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\52f9d971f9fffd4d_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\5684415dc850b43f_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\59a941cdbf22d32f_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\59f8199c46c0ac72_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\5b7b59ae10b8b23b_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\5d677256294bbc6c_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\8d9b7f9ce7bfa5d2_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\8fcbe2524daa747e_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\913787319d131647_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\917325962359bacc_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\93553d7c681879ee_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\939c6cbd3da9e4db_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\94615c9a6099d7d2_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\94a1ffff7bd7748b_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\95ddd53adf512dbc_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\966b0ac998502c6b_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\9680692657d0cc3e_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\97dd353c55aff7f8_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\ce493313d2de60b2_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\ce6fbf4de7522baf_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\cf48e2ae03bdb6fe_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\cff1632e7061b0bc_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\d0366b73f7b2ed1e_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\d2676e44c5b8f6cf_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\d274aacf4914b051_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\d3c58d3a88f5618a_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\d699a61ecca6efc4_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\d72a8ff07d6ab523_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\d9a56f39095d6987_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\32d1a7bf2fd22eb9_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\33ced451b69ca934_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\34c65f273f242ede_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\37fc838ee2be5b06_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\38628010c0fdbeaf_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\38cc0f090b62cf68_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\3a09a1778dac4cd8_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\3a19fdba0364ccf0_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\3b411fc9b97a578b_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\3df4a90b8035cf06_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\3ef6dbe6593282ea_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\3fa5417f6e76bc1b_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\4072898f086bea98_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\4135096ca3006aa4_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\6a71d92608defeb5_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\6c09d27c456ddc05_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\6d29b13cbce58c4e_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\6dac20393f1cb876_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\6e38abbb47ff7603_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\71a1acc6dd7dbbe0_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\7207e431f88720a6_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\724344affef6866f_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\74e4bd9e85c1a988_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\75798acc8e061e61_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\76b0bbeb3d6ea87e_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\76dddbb58cb7031b_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\8bc50c9e79c921a0_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\982f0068645f3564_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\a67a7318862561a7_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\aec9c1de677d8508_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\b9ebb4a57955dedd_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\cb209d890c623e2e_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\d9ba3aa2fec10a15_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\e43e080c22aa06c2_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\ecfb11388b7aa485_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\a682a844981d4e40_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\a86801df6b023421_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\a8d39bd6a3465001_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\a97e6f295497c542_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\aa8bbc37287750f0_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\aaeefa4ab6eecc50_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\ab1f72ad52727565_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\ad16b48903615445_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\ae467bf4d8a02bb2_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\e4c789087aaa4ca2_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\e685b2ebc644ef56_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\e7fdd705d01def2b_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\e8e2ce151826761e_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\e925032b5f6cbb40_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\e962b4d6a8543b52_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\e96840897e658496_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\ea34829245485817_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\eb6c84d93c82f411_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\ebc1c2f8753462f5_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\ebfd932e35eb1606_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\1c325b0fedda10c3_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\1caf73052db05b2b_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\1cdb38c77167c95d_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\1dafb2ed7113577d_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\1f8f5fca9233ffa9_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\20d08ebe23d790a4_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\230ade3994337dd5_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\2448a43a96461def_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\24bcae3e734b7106_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\2575125dea43782b_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\25aba580c575808f_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\27528875bfe556ae_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\2880752fbf2f8a0e_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\28b0dc98176c4830_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\b1e7940236a29ef6_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\b289f232b5094c1c_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\b2eeb85f3a1054e9_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\b34b31529a0685e1_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\b615169b2fff45cb_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\b624bbc4af899bcd_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\b6373e418169c0b3_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\b83e7ffac8564306_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\43ece9ea66cb240c_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\443020de7126a1bf_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\45ee192c038ba8e3_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\46d2da73ec8d780f_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\479e9eec3cf3c4bd_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\47cff2ba15008159_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\496f1e3e02729144_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\4ac268fea08f9a6e_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\4b62fe917181ed62_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\4d8b0ec340eda99d_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\4daa83b954ff2aca_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\81539e679d7be64f_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\8460ab8abbd96802_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\86285c0e2a5ab7a8_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\8739e51dbc5e742c_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\87bf08b981fcf8bc_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\897389294b86da38_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\89b9b503b0ce51b9_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\8a2abd4eed83e9d6_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\8a89305e64fa0dc3_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\8a9b9ad687ecd7b4_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\8b1d5f5103fc4b11_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\9873f2673c3d8526_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\99f140bef69bad02_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\9ae29e3aa2842aa4_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\9b2d4542638c8d16_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\9c7627e2abfdccd9_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\9cff279bd7e1dd80_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\9eea2f74124ab8f6_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\a1ddd97daab636f2_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\a2a95531eff70714_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\a2dddcfecba50c3f_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\a3a3a3767b54d2dd_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\5e9b31b2ec8de803_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\5ff63e69bbe8fa3c_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\60d9f2a6a79f8042_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\6178533ae51adf36_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\62bf316258658c73_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\6466a95e7616537a_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\64c22857400ec2b2_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\66a9f53cbcd70817_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\67b8233399ef3c0a_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\6a46777b47d8863e_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\293068ee270b7086_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\29925e8f793b2638_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\2a86ec1f57b76e95_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\2ae4c6c7a9b3ec27_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\2bb0aa6672fdbc9b_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\2ed7a48cdf691d09_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\305fcbb0ccbceb0d_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\309f40fa19c1be75_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\315a39b606bc4359_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\326681c59067d23a_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\327e2f346370c855_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\ee368c55bdf4deb0_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\ee8d29d2b0c4c6fd_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\f3834b93bea27c02_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\f513ae53fec4d002_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\f7a72a7b132e4405_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\fa5495a6feaa9571_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\fa9c8e31c5c82704_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\fccf5632132c6cc6_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\fe1f01c6a55426dd_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\fec96253078ad67b_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\ff2c0c29a898bff9_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\index, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\d9c95b39bd8f1bde_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\d9f01ea22ddf2738_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\da24bfa92a7221db_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\da2e46844335ecb3_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\dcc705af1dde36ad_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\de3ec9ddc2b44a14_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\de81922a3c2b99ba_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\e0ea107913adae0a_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\e1b1d76dc4ca4ed1_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\e230c510df2ba988_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\e2ff00fabf95e97c_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\78b5d58c6802da34_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\78fa97c61d0a0e2b_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\7ade1f7adc3228cf_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\7c000d76bf1f0157_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\7cc07ed3c66ea2df_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\7d7788f272892c29_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\7df5781bee4c5b95_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\7fafab1ae6b8e774_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\802e1cc210ea0e8a_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\80d8a78baca93ac9_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\812e122ccafd9697_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\bcd6fa17b808a62b_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\beafa097ae5f5b0c_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\c1cd701984339593_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\c3dd050331c890ff_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\c60412d4185bac29_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\c7731f12b73fad99_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\c89f38f36e14b01c_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\c97e1c023a3691fd_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\ca72a476d9fcf918_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Cache\index-dir\the-real-index, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\databases\Databases.db, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\databases\Databases.db-journal, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\GPUCache\data_0, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\GPUCache\data_1, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\GPUCache\data_2, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\GPUCache\data_3, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\GPUCache\index, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\IndexedDB\file__0.indexeddb.leveldb\000005.bak, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\IndexedDB\file__0.indexeddb.leveldb\000005.ldb, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\IndexedDB\file__0.indexeddb.leveldb\000006.log, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\IndexedDB\file__0.indexeddb.leveldb\CURRENT, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\IndexedDB\file__0.indexeddb.leveldb\LOCK, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\IndexedDB\file__0.indexeddb.leveldb\LOG, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\IndexedDB\file__0.indexeddb.leveldb\LOG.old, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\IndexedDB\file__0.indexeddb.leveldb\MANIFEST-000004, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Local Storage\file__0.localstorage, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Gameo.A, C:\Users\Carolin\AppData\Local\Gameo\Local Storage\file__0.localstorage-journal, In Quarantäne, [abfc77e6c8b491a5a93f2a883dc74fb1],
PUP.Optional.Vosteran.A, C:\Users\Carolin\AppData\Roaming\Mozilla\Firefox\Profiles\edhq3wp5.default\searchplugins\Vosteran.xml, In Quarantäne, [f2b54a1389f3d0668ab9c4fc45bf10f0],
Physische Sektoren: 0
(Keine schädliche Elemente erkannt)
(end) Code:
# AdwCleaner v4.103 - Bericht erstellt am 01/12/2014 um 16:52:29
# Aktualisiert 01/12/2014 von Xplode
# Database : 2014-12-01.2 [Live]
# Betriebssystem : Windows 7 Home Premium Service Pack 1 (64 bits)
# Benutzername : Carolin - CAROLIN-PC
# Gestartet von : C:\Users\Carolin\Downloads\AdwCleaner_4.103.exe
# Option : Löschen
***** [ Dienste ] *****
***** [ Dateien / Ordner ] *****
Ordner Gelöscht : C:\Program Files (x86)\PC Speed Maximizer
Ordner Gelöscht : C:\Users\Carolin\AppData\Roaming\Gameo
Ordner Gelöscht : C:\Users\Carolin\Documents\PC Speed Maximizer
Datei Gelöscht : C:\Users\Carolin\AppData\LocalLow\SkwConfig.bin
Datei Gelöscht : C:\Users\Carolin\AppData\Roaming\Mozilla\Firefox\Profiles\edhq3wp5.default\user.js
***** [ Tasks ] *****
***** [ Verknüpfungen ] *****
***** [ Registrierungsdatenbank ] *****
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{2830488C-079B-45C2-88B6-AFE4EAA2DF85}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{DC91FAFB-6CEA-49E5-BB74-9CEE75D09B77}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{DC91FAFB-6CEA-49E5-BB74-9CEE75D09B77}
Schlüssel Gelöscht : HKCU\Software\SecuredDownload
Schlüssel Gelöscht : HKCU\Software\gameo
Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\delta-search.com
Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\incredibar.com
***** [ Browser ] *****
-\\ Internet Explorer v11.0.9600.16428
-\\ Mozilla Firefox v33.1 (x86 de)
[edhq3wp5.default\prefs.js] - Zeile gelöscht : user_pref("extensions.srchvstrn.hmpgUrl", "hxxp://Vosteran.com/?f=1&a=vst_secureddownload_14_46_ff&cd=2XzuyEtN2Y1L1Qzu0F0EzzyD0D0EtCtB0ByD0CtB0B0C0BtAtN0D0Tzu0StCtDyEzytN1L2XzutAtFyCtFtBtFtDtN1L1CzutC[...]
[edhq3wp5.default\prefs.js] - Zeile gelöscht : user_pref("extensions.srchvstrn.newTabUrl", "hxxp://Vosteran.com/?f=2&a=vst_secureddownload_14_46_ff&cd=2XzuyEtN2Y1L1Qzu0F0EzzyD0D0EtCtB0ByD0CtB0B0C0BtAtN0D0Tzu0StCtDyEzytN1L2XzutAtFyCtFtBtFtDtN1L1Czu[...]
[edhq3wp5.default\prefs.js] - Zeile gelöscht : user_pref("extensions.srchvstrn.prtnrId", "WSE_Vosteran");
[edhq3wp5.default\prefs.js] - Zeile gelöscht : user_pref("extensions.srchvstrn.srchPrvdr", "Vosteran");
[edhq3wp5.default\prefs.js] - Zeile gelöscht : user_pref("extensions.srchvstrn.tlbrSrchUrl", "hxxp://Vosteran.com/?f=3&a=vst_secureddownload_14_46_ff&cd=2XzuyEtN2Y1L1Qzu0F0EzzyD0D0EtCtB0ByD0CtB0B0C0BtAtN0D0Tzu0StCtDyEzytN1L2XzutAtFyCtFtBtFtDtN1L1C[...]
-\\ Google Chrome v
*************************
AdwCleaner[R0].txt - [2957 octets] - [01/12/2014 16:47:10]
AdwCleaner[S0].txt - [2687 octets] - [01/12/2014 16:52:29]
########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [2747 octets] ########## Code:
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.4.0 (11.29.2014:1)
OS: Windows 7 Home Premium x64
Ran by Carolin on 01.12.2014 at 16:59:23,38
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~ Services
~~~ Registry Values
~~~ Registry Keys
~~~ Files
~~~ Folders
Successfully deleted: [Empty Folder] C:\Users\Carolin\appdata\local\{000FE3C8-7D45-4FC3-AAC6-699370142227}
Successfully deleted: [Empty Folder] C:\Users\Carolin\appdata\local\{0684B4FD-501A-4967-A395-8766FB4905E9}
Successfully deleted: [Empty Folder] C:\Users\Carolin\appdata\local\{0750090B-6622-44FF-B146-928B4F24E499}
Successfully deleted: [Empty Folder] C:\Users\Carolin\appdata\local\{1212C16E-1F65-4BBE-8A28-24B84E0042F6}
Successfully deleted: [Empty Folder] C:\Users\Carolin\appdata\local\{15800F6D-DAB7-492D-A76D-8FDA79119D72}
Successfully deleted: [Empty Folder] C:\Users\Carolin\appdata\local\{1644F8DA-1E14-4C78-8BE4-19887B6569C0}
Successfully deleted: [Empty Folder] C:\Users\Carolin\appdata\local\{34D5024E-5A42-4178-AB30-D4CB413614EE}
Successfully deleted: [Empty Folder] C:\Users\Carolin\appdata\local\{50365705-3FA3-4EC5-8B8D-36F67B25ECA9}
Successfully deleted: [Empty Folder] C:\Users\Carolin\appdata\local\{53343AED-CBDB-41FC-B080-BAAA543FFCA6}
Successfully deleted: [Empty Folder] C:\Users\Carolin\appdata\local\{54DDF609-0655-49F6-A40C-AF49120BEE18}
Successfully deleted: [Empty Folder] C:\Users\Carolin\appdata\local\{5B67CB88-8E29-4D38-8B87-1156456FF427}
Successfully deleted: [Empty Folder] C:\Users\Carolin\appdata\local\{5DABAAF4-06FA-464C-B452-95F8260DF394}
Successfully deleted: [Empty Folder] C:\Users\Carolin\appdata\local\{6261A5B8-89DF-4E48-BD26-63F803D65BF1}
Successfully deleted: [Empty Folder] C:\Users\Carolin\appdata\local\{64D2F1B7-2BE5-4356-A390-A9BD78EA115D}
Successfully deleted: [Empty Folder] C:\Users\Carolin\appdata\local\{65D36D0D-A916-4ABB-B5ED-42474CB7D260}
Successfully deleted: [Empty Folder] C:\Users\Carolin\appdata\local\{67C6F9BE-9DC3-45D7-8C42-3538FA2FE7CB}
Successfully deleted: [Empty Folder] C:\Users\Carolin\appdata\local\{67F8DD91-5BF0-4B56-AA1C-0AA02F7EC84C}
Successfully deleted: [Empty Folder] C:\Users\Carolin\appdata\local\{6C0F1534-9FDD-444B-BAAE-E1FA8C817EE4}
Successfully deleted: [Empty Folder] C:\Users\Carolin\appdata\local\{748061FF-401B-4BC0-A547-1ACEC35E11BA}
Successfully deleted: [Empty Folder] C:\Users\Carolin\appdata\local\{7D4B3669-07E7-4AED-92CA-2C7A6938616C}
Successfully deleted: [Empty Folder] C:\Users\Carolin\appdata\local\{84ABDA1C-4774-4A75-830A-CCA5594049C9}
Successfully deleted: [Empty Folder] C:\Users\Carolin\appdata\local\{92E3FFC4-4666-4B35-94D0-B1CE6E5DA680}
Successfully deleted: [Empty Folder] C:\Users\Carolin\appdata\local\{94E3B8E1-A317-41EF-BBAB-F06B98867289}
Successfully deleted: [Empty Folder] C:\Users\Carolin\appdata\local\{9E956FC2-995F-4B45-9AC8-5FC54CAD8AF7}
Successfully deleted: [Empty Folder] C:\Users\Carolin\appdata\local\{9FE03A96-27FF-4979-B376-427EE39D5FD6}
Successfully deleted: [Empty Folder] C:\Users\Carolin\appdata\local\{A7DA896A-7C02-4A2C-A961-5B5E48236414}
Successfully deleted: [Empty Folder] C:\Users\Carolin\appdata\local\{AF0D80E3-134A-4B3F-BED8-3BA47DDCAB89}
Successfully deleted: [Empty Folder] C:\Users\Carolin\appdata\local\{B633FAB1-94A3-4DDB-91A9-D7E4DADD376B}
Successfully deleted: [Empty Folder] C:\Users\Carolin\appdata\local\{CA186682-B63B-4A4B-9A74-C88515165431}
Successfully deleted: [Empty Folder] C:\Users\Carolin\appdata\local\{CB819B6F-3232-4DDE-903A-33D340FD1E47}
Successfully deleted: [Empty Folder] C:\Users\Carolin\appdata\local\{CFBD820E-3340-4EE0-B2D4-400A30C68B3B}
Successfully deleted: [Empty Folder] C:\Users\Carolin\appdata\local\{D22E3B89-FB81-4605-9C27-6295CF66C693}
Successfully deleted: [Empty Folder] C:\Users\Carolin\appdata\local\{D3053E24-E658-4B72-A7AB-A6555F72C69B}
Successfully deleted: [Empty Folder] C:\Users\Carolin\appdata\local\{D764689F-610F-41F3-8145-F22EB70B6BAD}
Successfully deleted: [Empty Folder] C:\Users\Carolin\appdata\local\{D923E9FD-14A0-43DE-841B-08BB18CDC273}
Successfully deleted: [Empty Folder] C:\Users\Carolin\appdata\local\{D95E0C24-01F0-410C-9448-7B94026516B0}
Successfully deleted: [Empty Folder] C:\Users\Carolin\appdata\local\{E252B46F-EEFB-4ADD-B461-1D03DF42D86A}
Successfully deleted: [Empty Folder] C:\Users\Carolin\appdata\local\{E256F40B-86BF-4C62-B43F-C9C73DE0E855}
Successfully deleted: [Empty Folder] C:\Users\Carolin\appdata\local\{F01E82A3-9F6D-4138-9487-B26AB1B7829D}
Successfully deleted: [Empty Folder] C:\Users\Carolin\appdata\local\{F3B3D917-B04C-4CF5-B896-1A6FA0DD1F80}
Successfully deleted: [Empty Folder] C:\Users\Carolin\appdata\local\{F5A1679D-310A-4BBF-8C6C-470D326FD095}
Successfully deleted: [Empty Folder] C:\Users\Carolin\appdata\local\{FCEAAB85-A84E-4B20-95DD-AB263852D089}
Successfully deleted: [Empty Folder] C:\Users\Carolin\appdata\local\{FDA5C626-0D40-4A0E-91E6-6E1DA3F4FF72}
Successfully deleted: [Empty Folder] C:\Users\Carolin\appdata\local\{FEDFA32B-132C-4687-A43A-D761DB7CD5D9}
~~~ FireFox
Successfully deleted: [File] C:\user.js
Successfully deleted the following from C:\Users\Carolin\AppData\Roaming\mozilla\firefox\profiles\edhq3wp5.default\prefs.js
user_pref("{336D0C35-8A85-403a-B9D2-65C292C39087}.ScriptData_WSG_dateValidation", "us.yhs4.search.yahoo.com|||1353358106722");
user_pref("{FE1DEEEA-DB6D-44b8-83F0-34FC0F9D1052}.ScriptData_WSG_referrer", "hxxp://us.yhs4.search.yahoo.com/yhs/search?fr=altavista&itag=ody&q=hxxp://us.yhs4.search.yahoo.com
user_pref("{FE1DEEEA-DB6D-44b8-83F0-34FC0F9D1052}.ScriptData_WSG_temp_referer", "hxxp://us.yhs4.search.yahoo.com/yhs/search?fr=altavista&itag=ody&q=hxxp://www.google.de/|#|old
Emptied folder: C:\Users\Carolin\AppData\Roaming\mozilla\firefox\profiles\edhq3wp5.default\minidumps [113 files]
~~~ Event Viewer Logs were cleared
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 01.12.2014 at 17:09:34,74
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
FRST Logfile:
FRST Logfile: Code:
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 01-12-2014
Ran by Carolin (administrator) on CAROLIN-PC on 01-12-2014 17:26:17
Running from C:\Users\Carolin\Downloads
Loaded Profile: Carolin (Available profiles: Carolin)
Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: Deutsch (Deutschland)
Internet Explorer Version 11
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(AMD) C:\Windows\System32\atiesrxx.exe
(AMD) C:\Windows\System32\atieclxx.exe
(Microsoft Corporation) C:\Windows\System32\wisptis.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
(Advanced Micro Devices, Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
(ASUS) C:\Program Files (x86)\ASUS\InstantOn for NB\InsOnSrv.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe
(VIA Technologies, Inc.) C:\Windows\System32\ViakaraokeSrv.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
() C:\Program Files (x86)\XSManager\WTGService.exe
(Atheros) C:\Program Files (x86)\Qualcomm Atheros WiFi Driver Installation\Ath_WlanAgent.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe
(Microsoft Corporation) C:\Program Files (x86)\Common Files\microsoft shared\Virtualization Handler\CVHSVC.EXE
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe
(Microsoft Corporation) C:\Windows\System32\alg.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe
(ASUS) C:\Program Files (x86)\ASUS\InstantOn for NB\InsOnWMI.exe
(Microsoft Corporation) C:\Windows\System32\wisptis.exe
(ASUS) C:\Program Files\ASUS\P4G\BatteryLife.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\FaceLogon\sensorsrv.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\ASUS Virtual Touch\QuickGesture\x86\QuickGesture.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\ASUS Virtual Touch\QuickGesture\x64\QuickGesture64.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ATKOSD.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\KBFiltr.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\WDC.exe
(Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe
(VIA) C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
(ASUS) C:\Program Files (x86)\ASUS\Splendid\ACMON.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Geek Software GmbH) C:\Program Files (x86)\PDF24\pdf24.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe
(ASUSTeK) C:\Windows\SysWOW64\ACEngSvr.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\ink\InputPersonalization.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_15_0_0_239.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_15_0_0_239.exe
(Microsoft Corporation) C:\Program Files (x86)\Common Files\microsoft shared\Virtualization Handler\CVH.EXE
() C:\Program Files (x86)\Common Files\microsoft shared\Virtualization Handler\OFFICEVIRT.EXE
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM-x32\...\Run: [ASUSPRP] => C:\Program Files (x86)\ASUS\APRP\APRP.EXE [3331312 2012-02-24] (ASUSTek Computer Inc.)
HKLM-x32\...\Run: [HDAudDeck] => C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe [5138032 2012-04-02] (VIA)
HKLM-x32\...\Run: [ATKOSD2] => C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe [318080 2011-12-23] (ASUSTek Computer Inc.)
HKLM-x32\...\Run: [ATKMEDIA] => C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe [174720 2011-10-25] (ASUS)
HKLM-x32\...\Run: [HControlUser] => C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe [105016 2009-06-19] (ASUS)
HKLM-x32\...\Run: [ACMON] => C:\Program Files (x86)\ASUS\Splendid\ACMON.exe [102568 2012-02-07] (ASUS)
HKLM-x32\...\Run: [Wireless Console 3] => C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe [2321072 2012-02-03] (ASUSTeK Computer Inc.)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959176 2014-08-21] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [PDFPrint] => C:\Program Files (x86)\PDF24\pdf24.exe [183808 2014-05-06] (Geek Software GmbH)
HKLM-x32\...\Run: [Avira Systray] => C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe [124208 2014-10-22] (Avira Operations GmbH & Co. KG)
HKLM-x32\...\Run: [avgnt] => C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [703736 2014-10-23] (Avira Operations GmbH & Co. KG)
HKU\S-1-5-21-2453086613-2554175977-1139649338-1001\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [22065760 2014-10-01] (Skype Technologies S.A.)
ShellIconOverlayIdentifiers: [AsusWSShellExt_B] -> {6D4133E5-0742-4ADC-8A8C-9303440F7190} => C:\Program Files (x86)\ASUS\ASUS WebStorage\3.0.108.222\ASUSWSShellExt64.dll (eCareme Technologies, Inc.)
ShellIconOverlayIdentifiers: [AsusWSShellExt_O] -> {64174815-8D98-4CE6-8646-4C039977D808} => C:\Program Files (x86)\ASUS\ASUS WebStorage\3.0.108.222\ASUSWSShellExt64.dll (eCareme Technologies, Inc.)
ShellIconOverlayIdentifiers: [DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Carolin\AppData\Roaming\Dropbox\bin\DropboxExt64.19.dll No File
ShellIconOverlayIdentifiers: [DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Carolin\AppData\Roaming\Dropbox\bin\DropboxExt64.19.dll No File
ShellIconOverlayIdentifiers: [DropboxExt3] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Carolin\AppData\Roaming\Dropbox\bin\DropboxExt64.19.dll No File
ShellIconOverlayIdentifiers: [DropboxExt4] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Carolin\AppData\Roaming\Dropbox\bin\DropboxExt64.19.dll No File
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKU\S-1-5-21-2453086613-2554175977-1139649338-1001\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=msnhome
HKU\S-1-5-21-2453086613-2554175977-1139649338-1001\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\S-1-5-21-2453086613-2554175977-1139649338-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.de/
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank
StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe
SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=ASUTDF&pc=NP06&src=IE-SearchBox
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=ASUTDF&pc=NP06&src=IE-SearchBox
SearchScopes: HKLM-x32 -> DefaultScope value is missing.
SearchScopes: HKU\S-1-5-21-2453086613-2554175977-1139649338-1001 -> DefaultScope {DC91FAFB-6CEA-49E5-BB74-9CEE75D09B77} URL =
SearchScopes: HKU\S-1-5-21-2453086613-2554175977-1139649338-1001 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1 192.168.0.2
FireFox:
========
FF ProfilePath: C:\Users\Carolin\AppData\Roaming\Mozilla\Firefox\Profiles\edhq3wp5.default
FF NewTab: www.google.de
FF DefaultSearchEngine: Google
FF SelectedSearchEngine: Google
FF Homepage: www.google.de
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_15_0_0_239.dll ()
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_239.dll ()
FF Plugin-x32: @java.com/DTPlugin,version=10.51.2 -> C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.51.2 -> C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3538.0513 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @pandonetworks.com/PandoWebPlugin -> C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll No File
FF Plugin-x32: @videolan.org/vlc,version=2.0.3 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.1.2 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Extension: Avira Browser Safety - C:\Users\Carolin\AppData\Roaming\Mozilla\Firefox\Profiles\edhq3wp5.default\Extensions\abs@avira.com [2014-11-23]
FF HKLM-x32\...\Firefox\Extensions: [{D19CA586-DD6C-4a0a-96F8-14644F340D60}] - C:\Program Files (x86)\Common Files\McAfee\SystemCore
FF HKU\S-1-5-21-2453086613-2554175977-1139649338-1001\...\Firefox\Extensions: [{72273571-743d-427e-a1c1-0538fbc2ddd3}] - C:\Program Files (x86)\LyricsSeeker\133.xpi
Chrome:
=======
CHR Profile: C:\Users\Carolin\AppData\Local\Google\Chrome\User Data\Default
==================== Services (Whitelisted) =================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R2 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [361984 2011-12-06] (Advanced Micro Devices, Inc.) [File not signed]
R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [432888 2014-10-23] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [432888 2014-10-23] (Avira Operations GmbH & Co. KG)
R2 ASUS InstantOn; C:\Program Files (x86)\ASUS\InstantOn for NB\InsOnSrv.exe [92800 2011-12-01] (ASUS)
R2 Avira.OE.ServiceHost; C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe [164656 2014-10-22] (Avira Operations GmbH & Co. KG)
R2 VIAKaraokeService; C:\Windows\system32\viakaraokesrv.exe [27760 2012-03-23] (VIA Technologies, Inc.)
R2 WTGService; C:\Program Files (x86)\XSManager\WTGService.exe [329168 2010-04-12] ()
R2 ZAtheros Wlan Agent; C:\Program Files (x86)\Qualcomm Atheros WiFi Driver Installation\Ath_WlanAgent.exe [77824 2012-06-19] (Atheros) [File not signed]
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R3 AiCharger; C:\Windows\SysWOW64\DRIVERS\AiCharger.sys [17152 2012-02-29] (ASUSTek Computer Inc.)
U5 AppMgmt; C:\Windows\system32\svchost.exe [27136 2009-07-14] (Microsoft Corporation)
R3 AsusVBus; C:\Windows\System32\DRIVERS\AsusVBus.sys [35968 2011-12-21] (Windows (R) Win 7 DDK provider)
R3 AsusVTouch; C:\Windows\System32\DRIVERS\AsusVTouch.sys [16512 2011-11-08] (Windows (R) Win 7 DDK provider)
R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [119272 2014-10-23] (Avira Operations GmbH & Co. KG)
R1 avgtp; C:\Windows\system32\drivers\avgtpx64.sys [46368 2014-01-31] (AVG Technologies)
R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [131608 2014-10-23] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [28600 2014-10-23] (Avira Operations GmbH & Co. KG)
S3 cmnsusbser; C:\Windows\System32\DRIVERS\cmnsusbser.sys [117888 2012-11-27] (Mobile Connector)
S3 InputFilter_Hid_FlexDef2b; C:\Windows\System32\DRIVERS\InputFilter_FlexDef2b.sys [17920 2010-06-19] (Siliten)
R3 kbfiltr; C:\Windows\System32\DRIVERS\kbfiltr.sys [15416 2009-07-20] ( )
S3 Serial; C:\Windows\system32\drivers\serial.sys [94208 2009-07-14] (Brother Industries Ltd.)
S3 catchme; \??\C:\ComboFix\catchme.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
==================== One Month Created Files and Folders ========
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-12-01 17:25 - 2014-12-01 17:25 - 00000000 ____D () C:\Users\Carolin\Downloads\FRST-OlderVersion
2014-12-01 17:09 - 2014-12-01 17:09 - 00006166 _____ () C:\Users\Carolin\Desktop\JRT.txt
2014-12-01 16:58 - 2014-12-01 16:58 - 01707646 _____ (Thisisu) C:\Users\Carolin\Downloads\JRT.exe
2014-12-01 16:47 - 2014-12-01 16:52 - 00000000 ____D () C:\AdwCleaner
2014-12-01 16:46 - 2014-12-01 16:46 - 02154496 _____ () C:\Users\Carolin\Downloads\AdwCleaner_4.103.exe
2014-12-01 16:43 - 2014-12-01 16:43 - 00038407 _____ () C:\Users\Carolin\Desktop\mbam.txt
2014-12-01 15:02 - 2014-12-01 15:02 - 00001108 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2014-12-01 15:02 - 2014-12-01 15:02 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2014-12-01 15:01 - 2014-12-01 15:02 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes Anti-Malware
2014-12-01 15:01 - 2014-12-01 15:01 - 19828376 _____ (Malwarebytes Corporation ) C:\Users\Carolin\Downloads\mbam-setup-2.0.3.1025.exe
2014-12-01 15:01 - 2014-10-01 11:11 - 00093400 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2014-12-01 15:01 - 2014-10-01 11:11 - 00063704 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2014-12-01 15:01 - 2014-10-01 11:11 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2014-11-26 22:30 - 2014-06-30 23:24 - 00008856 _____ (Microsoft Corporation) C:\Windows\system32\icardres.dll
2014-11-26 22:30 - 2014-06-30 23:14 - 00008856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardres.dll
2014-11-26 22:30 - 2014-06-06 07:16 - 00035480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TsWpfWrp.exe
2014-11-26 22:30 - 2014-06-06 07:12 - 00035480 _____ (Microsoft Corporation) C:\Windows\system32\TsWpfWrp.exe
2014-11-26 22:30 - 2014-03-09 22:48 - 01389208 _____ (Microsoft Corporation) C:\Windows\system32\icardagt.exe
2014-11-26 22:30 - 2014-03-09 22:48 - 00171160 _____ (Microsoft Corporation) C:\Windows\system32\infocardapi.dll
2014-11-26 22:30 - 2014-03-09 22:47 - 00619672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardagt.exe
2014-11-26 22:30 - 2014-03-09 22:47 - 00099480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\infocardapi.dll
2014-11-26 22:21 - 2014-09-09 23:11 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
2014-11-26 22:21 - 2014-09-09 22:47 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll
2014-11-26 22:08 - 2014-06-05 15:45 - 01460736 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2014-11-26 22:08 - 2014-06-05 15:26 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2014-11-26 22:08 - 2014-06-05 15:25 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2014-11-26 22:08 - 2014-04-12 03:22 - 00155072 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2014-11-26 22:08 - 2014-04-12 03:22 - 00095680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2014-11-26 22:08 - 2014-04-12 03:19 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2014-11-26 22:08 - 2014-04-12 03:19 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2014-11-26 22:08 - 2014-04-12 03:19 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2014-11-26 22:08 - 2014-04-12 03:19 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2014-11-26 22:08 - 2014-03-04 10:44 - 00728064 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2014-11-26 22:08 - 2014-03-04 10:44 - 00340992 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2014-11-26 22:08 - 2014-03-04 10:44 - 00314880 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2014-11-26 22:08 - 2014-03-04 10:44 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2014-11-26 22:08 - 2014-03-04 10:44 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2014-11-26 22:08 - 2014-03-04 10:43 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2014-11-26 22:08 - 2014-03-04 10:17 - 00550912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2014-11-26 22:08 - 2014-03-04 10:17 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2014-11-26 22:08 - 2014-03-04 10:17 - 00247808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2014-11-26 22:08 - 2014-03-04 10:17 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll
2014-11-26 22:08 - 2014-03-04 10:17 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
2014-11-26 22:08 - 2014-03-04 10:17 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll
2014-11-26 21:04 - 2014-11-26 21:01 - 00043064 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avnetflt.sys
2014-11-26 21:01 - 2014-11-26 21:01 - 00000000 ____D () C:\Users\Carolin\AppData\Roaming\Avira
2014-11-26 20:57 - 2014-10-23 14:02 - 00131608 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avipbb.sys
2014-11-26 20:57 - 2014-10-23 14:02 - 00028600 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avkmgr.sys
2014-11-26 20:57 - 2014-10-23 14:01 - 00119272 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avgntflt.sys
2014-11-26 20:54 - 2014-11-26 20:59 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira
2014-11-26 20:54 - 2014-11-26 20:57 - 00000000 ____D () C:\ProgramData\Avira
2014-11-26 20:54 - 2014-11-26 20:57 - 00000000 ____D () C:\Program Files (x86)\Avira
2014-11-26 20:54 - 2014-11-26 20:54 - 00001139 _____ () C:\Users\Public\Desktop\Avira.lnk
2014-11-26 20:54 - 2014-11-26 20:54 - 00000000 ____D () C:\ProgramData\Package Cache
2014-11-26 20:53 - 2014-11-26 20:53 - 04583464 _____ (Avira Operations GmbH & Co. KG) C:\Users\Carolin\Downloads\avira_de_av___ws.exe
2014-11-26 20:37 - 2014-11-26 20:39 - 151804352 _____ () C:\Users\Carolin\Downloads\avira_free_antivirus_de_14.0.7.342.exe
2014-11-26 20:33 - 2014-11-26 20:33 - 00700980 _____ () C:\Users\Carolin\Downloads\adblock_edge-2.0.7-sm+an+tb+fx-windows.xpi
2014-11-26 20:33 - 2014-11-26 20:33 - 00700980 _____ () C:\Users\Carolin\Downloads\adblock_edge-2.0.7-sm+an+tb+fx-windows(1).xpi
2014-11-26 20:23 - 2014-11-26 20:23 - 00018999 _____ () C:\ComboFix.txt
2014-11-26 19:01 - 2011-06-26 07:45 - 00256000 _____ () C:\Windows\PEV.exe
2014-11-26 19:01 - 2010-11-07 18:20 - 00208896 _____ () C:\Windows\MBR.exe
2014-11-26 19:01 - 2009-04-20 05:56 - 00060416 _____ (NirSoft) C:\Windows\NIRCMD.exe
2014-11-26 19:01 - 2000-08-31 01:00 - 00518144 _____ (SteelWerX) C:\Windows\SWREG.exe
2014-11-26 19:01 - 2000-08-31 01:00 - 00406528 _____ (SteelWerX) C:\Windows\SWSC.exe
2014-11-26 19:01 - 2000-08-31 01:00 - 00098816 _____ () C:\Windows\sed.exe
2014-11-26 19:01 - 2000-08-31 01:00 - 00080412 _____ () C:\Windows\grep.exe
2014-11-26 19:01 - 2000-08-31 01:00 - 00068096 _____ () C:\Windows\zip.exe
2014-11-26 19:00 - 2014-11-26 20:23 - 00000000 ____D () C:\Qoobox
2014-11-26 18:59 - 2014-11-26 20:21 - 00000000 ____D () C:\Windows\erdnt
2014-11-26 18:59 - 2014-11-26 18:59 - 05599228 ____R (Swearware) C:\Users\Carolin\Desktop\ComboFix.exe
2014-11-26 18:50 - 2014-11-26 18:50 - 00001270 _____ () C:\Users\Carolin\Desktop\Revo Uninstaller.lnk
2014-11-26 18:50 - 2014-11-26 18:50 - 00000000 ____D () C:\Program Files (x86)\VS Revo Group
2014-11-26 18:49 - 2014-11-26 18:49 - 02623656 _____ (VS Revo Group Ltd.) C:\Users\Carolin\Downloads\revosetup95.exe
2014-11-25 13:56 - 2014-11-25 13:58 - 00000000 ____D () C:\Users\Carolin\Desktop\noch zu erledigen
2014-11-25 13:23 - 2014-11-25 13:24 - 00027402 _____ () C:\Users\Carolin\Downloads\Addition.txt
2014-11-25 13:21 - 2014-12-01 17:26 - 00015704 _____ () C:\Users\Carolin\Downloads\FRST.txt
2014-11-25 13:21 - 2014-12-01 17:26 - 00000000 ____D () C:\FRST
2014-11-25 13:20 - 2014-12-01 17:25 - 02117120 _____ (Farbar) C:\Users\Carolin\Downloads\FRST64.exe
2014-11-23 17:53 - 2014-11-23 17:55 - 00000000 ____D () C:\Program Files (x86)\Qualcomm Atheros WiFi Driver Installation
2014-11-23 17:53 - 2012-06-25 22:00 - 00073638 ____N () C:\Windows\system32\athrextx.cat
2014-11-23 17:53 - 2012-06-11 23:52 - 02811904 ____N (Qualcomm Atheros Communications, Inc.) C:\Windows\system32\athrx.sys
2014-11-23 17:53 - 2012-06-11 23:52 - 02811904 _____ (Qualcomm Atheros Communications, Inc.) C:\Windows\system32\Drivers\athrx.sys
2014-11-23 17:35 - 2014-06-25 03:05 - 14175744 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2014-11-23 17:35 - 2014-04-05 03:47 - 01903552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2014-11-23 17:35 - 2014-04-05 03:47 - 00288192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS
2014-11-23 17:35 - 2013-11-26 12:40 - 00376768 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys
2014-11-23 17:34 - 2014-06-25 02:41 - 12874240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2014-11-23 16:02 - 2014-07-14 03:02 - 01216000 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2014-11-23 16:02 - 2014-07-14 02:40 - 00664064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
2014-11-23 16:02 - 2013-08-28 02:12 - 00461312 _____ (Microsoft Corporation) C:\Windows\system32\scavengeui.dll
2014-11-23 15:59 - 2014-10-03 03:12 - 00500224 _____ (Microsoft Corporation) C:\Windows\system32\AUDIOKSE.dll
2014-11-23 15:59 - 2014-10-03 03:11 - 00680960 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll
2014-11-23 15:59 - 2014-10-03 03:11 - 00440832 _____ (Microsoft Corporation) C:\Windows\system32\AudioEng.dll
2014-11-23 15:59 - 2014-10-03 03:11 - 00296448 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll
2014-11-23 15:59 - 2014-10-03 03:11 - 00284672 _____ (Microsoft Corporation) C:\Windows\system32\EncDump.dll
2014-11-23 15:59 - 2014-10-03 02:44 - 00442880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AUDIOKSE.dll
2014-11-23 15:59 - 2014-10-03 02:44 - 00374784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioEng.dll
2014-11-23 15:59 - 2014-10-03 02:44 - 00195584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioSes.dll
2014-11-23 15:59 - 2014-08-12 03:02 - 00878080 _____ (Microsoft Corporation) C:\Windows\system32\IMJP10K.DLL
2014-11-23 15:59 - 2014-08-12 02:36 - 00701440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IMJP10K.DLL
2014-11-23 15:58 - 2014-03-04 10:44 - 01163264 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
2014-11-23 15:58 - 2014-03-04 10:44 - 00362496 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll
2014-11-23 15:58 - 2014-03-04 10:44 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll
2014-11-23 15:58 - 2014-03-04 10:44 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll
2014-11-23 15:58 - 2014-03-04 10:44 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll
2014-11-23 15:58 - 2014-03-04 10:17 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll
2014-11-23 15:58 - 2014-03-04 10:16 - 01114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll
2014-11-23 15:58 - 2014-03-04 10:16 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe
2014-11-23 15:58 - 2014-03-04 10:16 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll
2014-11-23 15:58 - 2014-03-04 09:09 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe
2014-11-23 15:58 - 2014-03-04 09:09 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe
2014-11-23 15:58 - 2014-02-04 03:32 - 01424384 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
2014-11-23 15:58 - 2014-02-04 03:04 - 01230336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll
2014-11-23 15:17 - 2014-10-18 03:05 - 00861696 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll
2014-11-23 15:17 - 2014-10-18 02:33 - 00571904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll
2014-11-23 14:20 - 2014-05-14 17:23 - 02477536 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2014-11-23 14:20 - 2014-05-14 17:23 - 00700384 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2014-11-23 14:20 - 2014-05-14 17:23 - 00581600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll
2014-11-23 14:20 - 2014-05-14 17:23 - 00058336 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2014-11-23 14:20 - 2014-05-14 17:23 - 00044512 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2014-11-23 14:20 - 2014-05-14 17:23 - 00038880 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2014-11-23 14:20 - 2014-05-14 17:23 - 00036320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll
2014-11-23 14:20 - 2014-05-14 17:21 - 02620928 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2014-11-23 14:20 - 2014-05-14 17:20 - 00097792 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
2014-11-23 14:20 - 2014-05-14 17:17 - 00092672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll
2014-11-23 14:20 - 2014-05-14 09:23 - 00198600 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
2014-11-23 14:20 - 2014-05-14 09:23 - 00179656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll
2014-11-23 14:20 - 2014-05-14 09:20 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
2014-11-23 14:20 - 2014-05-14 09:17 - 00033792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe
2014-11-16 13:03 - 2012-02-19 19:16 - 00252712 _____ (ELAN Microelectronics Corp.) C:\Windows\ETDUninst.dll
2014-11-15 01:43 - 2014-11-15 01:43 - 00000000 ___HD () C:\Users\Carolin\AppData\Roaming\GoldenGate
2014-11-15 01:43 - 2014-11-15 01:43 - 00000000 ____D () C:\Users\Carolin\AppData\Local\StormFall
2014-11-15 01:37 - 2014-11-15 01:37 - 00001427 _____ () C:\Users\Carolin\Downloads\install_reader11_de_ltr5x64d_awc_aih(1).exe - Verknüpfung.lnk
2014-11-15 01:16 - 2014-11-15 01:22 - 327964808 _____ (Microsoft Corporation) C:\Users\Carolin\Downloads\X16-32694.exe
2014-11-12 20:06 - 2014-11-12 20:07 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
==================== One Month Modified Files and Folders =======
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-12-01 17:27 - 2009-07-14 04:20 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories
2014-12-01 17:26 - 2012-10-12 22:01 - 00060664 _____ () C:\Users\Carolin\AppData\Local\GDIPFONTCACHEV1.DAT
2014-12-01 17:25 - 2013-10-22 09:33 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-12-01 17:02 - 2009-07-14 05:45 - 00009696 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-12-01 17:02 - 2009-07-14 05:45 - 00009696 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-12-01 17:01 - 2012-08-09 02:15 - 01503742 _____ () C:\Windows\WindowsUpdate.log
2014-12-01 17:00 - 2011-02-19 05:24 - 00697322 _____ () C:\Windows\system32\perfh007.dat
2014-12-01 17:00 - 2011-02-19 05:24 - 00148328 _____ () C:\Windows\system32\perfc007.dat
2014-12-01 17:00 - 2009-07-14 06:13 - 01614100 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-12-01 16:59 - 2014-03-25 11:48 - 00000000 ____D () C:\Windows\ERUNT
2014-12-01 16:56 - 2012-10-12 22:07 - 00000380 _____ () C:\Users\Carolin\AppData\Roaming\sp_data.sys
2014-12-01 16:54 - 2009-07-14 06:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-12-01 16:54 - 2009-07-14 05:51 - 00073086 _____ () C:\Windows\setupact.log
2014-12-01 16:53 - 2012-02-24 02:34 - 00566454 _____ () C:\Windows\PFRO.log
2014-12-01 16:41 - 2014-03-25 12:28 - 00129752 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2014-12-01 16:36 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\Speech
2014-12-01 16:07 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\rescache
2014-11-30 20:20 - 2012-10-12 21:45 - 00000000 ____D () C:\Users\Carolin\AppData\Roaming\Skype
2014-11-28 13:25 - 2013-10-22 09:33 - 00003822 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2014-11-28 13:25 - 2012-10-16 10:21 - 00701104 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-11-28 13:25 - 2012-10-16 10:21 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-11-26 22:39 - 2014-03-26 11:40 - 00000000 ____D () C:\Windows\system32\MRT
2014-11-26 20:23 - 2009-07-14 04:20 - 00000000 __RHD () C:\Users\Default
2014-11-26 20:18 - 2009-07-14 03:34 - 00000215 _____ () C:\Windows\system.ini
2014-11-26 19:16 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\NDF
2014-11-26 19:04 - 2012-10-17 19:01 - 00000000 ____D () C:\Users\Carolin\AppData\Roaming\SoftGrid Client
2014-11-25 15:44 - 2014-06-03 12:21 - 00000000 ____D () C:\Users\Carolin\Documents\Konya
2014-11-25 15:18 - 2014-01-31 13:01 - 00000000 ____D () C:\Users\Carolin\Documents\Bewerbung
2014-11-25 15:17 - 2013-09-13 21:18 - 00936448 ___SH () C:\Users\Carolin\Downloads\Thumbs.db
2014-11-25 13:56 - 2012-11-30 11:20 - 00519680 ___SH () C:\Users\Carolin\Desktop\Thumbs.db
2014-11-23 17:53 - 2012-08-09 02:27 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2014-11-23 14:23 - 2012-11-19 11:27 - 00000000 ____D () C:\Program Files (x86)\Pando Networks
2014-11-23 14:21 - 2012-08-09 02:42 - 00000000 ____D () C:\Program Files (x86)\CyberLink
2014-11-23 14:21 - 2012-02-24 03:50 - 00000000 ____D () C:\ProgramData\Asus
2014-11-16 13:22 - 2012-02-24 03:42 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Game Park
2014-11-16 13:07 - 2012-08-09 02:36 - 00003230 _____ () C:\Windows\System32\Tasks\SidebarExecute
2014-11-16 13:06 - 2013-08-19 11:10 - 00000000 ____D () C:\Program Files (x86)\JDownloader
2014-11-16 13:04 - 2013-09-11 22:09 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVDVideoSoft
2014-11-16 13:04 - 2013-09-11 22:08 - 00000000 ____D () C:\Users\Carolin\AppData\Roaming\DVDVideoSoft
2014-11-16 13:04 - 2009-07-14 06:32 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2014-11-16 13:01 - 2012-02-24 03:42 - 00000000 ____D () C:\ProgramData\Deadtime Stories
2014-11-16 13:00 - 2014-02-23 11:54 - 00000000 ____D () C:\Program Files (x86)\Steam
2014-11-15 01:14 - 2012-11-26 17:00 - 00000000 ____D () C:\Users\Carolin\AppData\Roaming\CyberLink
2014-11-12 19:59 - 2014-08-27 18:51 - 00000374 _____ () C:\Windows\system32\Drivers\etc\hosts.ics
2014-11-04 14:30 - 2014-02-21 21:04 - 00275080 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2014-11-01 22:00 - 2012-10-12 22:13 - 00000000 ____D () C:\Windows\System32\Tasks\Games
Some content of TEMP:
====================
C:\Users\Carolin\AppData\Local\Temp\avgnt.exe
C:\Users\Carolin\AppData\Local\Temp\Quarantine.exe
C:\Users\Carolin\AppData\Local\Temp\sqlite3.dll
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2014-11-15 03:33
==================== End Of Log ============================ --- --- ---
--- --- --- |