Kadaniya | 05.09.2015 14:25 | Dankeschön Vielen Dank !!!
Wird sofort erledigt!
:dankeschoen:
Revo uninstaller hat Folgendes nicht gefunden :
Hukkster
MozBar
Mozilla Gecko Tab
saveRon
SavErrPro
SmaarTCeoampare
Super Optimizer v3.2
ddeal2deoaolitt
DDiscountLocAtor
dealppeaku
Disconnect
Games-desktop 014.12
FRST Logfile: Code:
Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x64) Version:31-08-2015
durchgeführt von Niklas (Administrator) auf NIKLASLAPTOP (05-09-2015 15:15:23)
Gestartet von C:\Users\Niklas\OneDrive\Programme
Geladene Profile: Niklas (Verfügbare Profile: UpdatusUser & Niklas)
Platform: Windows 8.1 (X64) Sprache: Deutsch (Deutschland)
Internet Explorer Version 11 (Standard-Browser: IE)
Start-Modus: Normal
Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
==================== Prozesse (Nicht auf der Ausnahmeliste) =================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.)
(LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Dritek System Inc.) C:\Program Files (x86)\Launch Manager\dsiwmis.exe
(Dritek System Inc.) C:\Program Files (x86)\Launch Manager\LMutilps32.exe
(Dritek System Inc.) C:\Program Files (x86)\Launch Manager\LManager.exe
(Dritek System Inc.) C:\Program Files (x86)\Launch Manager\MMDx64Fx.exe
(Intel Corporation) C:\Windows\System32\igfxext.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Dritek System INC.) C:\Windows\RfBtnSvc64.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe
(Microsoft Corporation) C:\Windows\SysWOW64\notepad.exe
(Egis Technology Inc.) C:\Program Files\EgisTec IPS\PmmUpdate.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbam.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
==================== Registry (Nicht auf der Ausnahmeliste) ===========================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.)
HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [12503184 2012-06-11] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_Dolby] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1212048 2012-06-07] (Realtek Semiconductor)
HKLM\...\Run: [FAHConsole] => C:\Program Files\File Association Helper\FAHConsole.exe [729272 2014-01-28] (Nico Mak Computing)
HKLM\...\Run: [Cm106Sound] => C:\Program Files\Roccat\Kave XTD Headset\KaveXTDMonitor.exe [2200688 2013-11-12] (CMedia)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2917176 2012-09-13] (Synaptics Incorporated)
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2631824 2015-07-14] (NVIDIA Corporation)
HKLM\...\Run: [ShadowPlay] => C:\WINDOWS\system32\rundll32.exe C:\WINDOWS\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM-x32\...\Run: [Dolby Home Theater v4] => C:\Dolby PCEE4\pcee4.exe [508256 2012-04-23] (Dolby Laboratories Inc.)
HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation)
HKLM-x32\...\Run: [iTunesHelper] => C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2014-02-21] (Apple Inc.)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [334896 2015-04-30] (Oracle Corporation)
HKLM-x32\...\Run: [LogMeIn Hamachi Ui] => C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [5579624 2015-08-03] (LogMeIn Inc.)
HKLM\...\Policies\Explorer\Run: [BtvStack] => C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe [132736 2013-01-28] (Atheros Communications)
HKLM\...\Policies\Explorer: [NoControlPanel] 0
HKU\S-1-5-21-2126457660-3419697741-3186924015-1002\...\Run: [Cheba] => C:\Users\Niklas\AppData\Local\Cheba\Cheba.exe [115200 2015-03-24] (Cheba)
HKU\S-1-5-21-2126457660-3419697741-3186924015-1002\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8322328 2015-05-08] (Piriform Ltd)
HKU\S-1-5-21-2126457660-3419697741-3186924015-1002\...\Run: [msnmsgr] => C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe [4272840 2014-03-31] (Microsoft Corporation)
HKU\S-1-5-21-2126457660-3419697741-3186924015-1002\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [53729824 2015-08-07] (Skype Technologies S.A.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Acer Backup Manager Tray.lnk [2012-11-02]
ShortcutTarget: Acer Backup Manager Tray.lnk -> C:\Program Files (x86)\NTI\Acer Backup Manager\BackupManagerTray.exe (NTI Corporation)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Inhaltsmanager-Assistent für PlayStation(R).lnk [2014-06-17]
ShortcutTarget: Inhaltsmanager-Assistent für PlayStation(R).lnk -> C:\Program Files (x86)\Sony\Content Manager Assistant\CMA.exe (Sony Computer Entertainment Inc.)
GroupPolicy: Gruppenrichtline auf Chrome erkannt <======= ACHTUNG
CHR HKLM\SOFTWARE\Policies\Google: Richtlinienbeschränkung <======= ACHTUNG
==================== Internet (Nicht auf der Ausnahmeliste) ====================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt..)
Tcpip\..\Interfaces\{4D50B0B2-C12F-4611-8FA0-6CAEC322879C}: [DhcpNameServer] 192.168.178.1
Tcpip\..\Interfaces\{9D62974B-FAF1-4013-BF5F-750DE55947F8}: [DhcpNameServer] 192.168.178.1
Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.msn.com/?pc=MSE1
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.msn.com/?pc=MSE1
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKU\S-1-5-21-2126457660-3419697741-3186924015-1002\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.msn.com/?pc=MSE1
SearchScopes: HKLM -> DefaultScope {80c554b9-c7f8-4a21-9471-06d606da78a2} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1
SearchScopes: HKLM -> {31090377-0740-419E-BEFC-A56E50500D5B} URL =
SearchScopes: HKLM -> {80c554b9-c7f8-4a21-9471-06d606da78a2} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1
SearchScopes: HKLM-x32 -> DefaultScope {80c554b9-c7f8-4a21-9471-06d606da78a2} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1
SearchScopes: HKLM-x32 -> {80c554b9-c7f8-4a21-9471-06d606da78a2} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1
SearchScopes: HKU\S-1-5-21-2126457660-3419697741-3186924015-1002 -> {80c554b9-c7f8-4a21-9471-06d606da78a2} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSE1
DPF: HKLM-x32 {166B1BCA-3F9C-11CF-8075-444553540000} hxxp://download.macromedia.com/pub/shockwave/cabs/director/sw.cab
DPF: HKLM-x32 {C8BC46C7-921C-4102-B67D-F1F7E65FB0BE} hxxps://battlefield.play4free.com/static/updater/BP4FUpdater_1.0.96.0.cab
Handler: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll [2015-09-02] (McAfee, Inc.)
Handler-x32: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll [2015-09-02] (McAfee, Inc.)
Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll [2015-09-02] (McAfee, Inc.)
Handler-x32: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll [2015-09-02] (McAfee, Inc.)
FireFox:
========
FF ProfilePath: C:\Users\Niklas\AppData\Roaming\Mozilla\Firefox\Profiles\glopksua.default
FF Homepage: hxxps://www.malwarebytes.org/restorebrowser//?aff=p
FF NewTab: about:newtab
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_18_0_0_232.dll [2015-08-15] ()
FF Plugin: @java.com/DTPlugin,version=10.71.2 -> C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll [2015-06-25] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.71.2 -> C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll [2015-06-25] (Oracle Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_18_0_0_232.dll [2015-08-15] ()
FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll [2014-02-20] ()
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2012-06-07] (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2012-06-07] (Intel Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=11.45.2 -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\dtplugin\npDeployJava1.dll [2015-06-25] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.45.2 -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\plugin2\npjp2.dll [2015-06-25] (Oracle Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.28.1\npGoogleUpdate3.dll [2015-07-16] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.28.1\npGoogleUpdate3.dll [2015-07-16] (Google Inc.)
FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 -> C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\1\NP_wtapp.dll [2013-08-06] ()
FF Plugin HKU\S-1-5-21-2126457660-3419697741-3186924015-1002: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Niklas\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2014-02-20] (Unity Technologies ApS)
FF user.js: detected! => C:\Users\Niklas\AppData\Roaming\Mozilla\Firefox\Profiles\glopksua.default\user.js [2015-02-02]
FF HKLM\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files (x86)\McAfee\SiteAdvisor
FF Extension: McAfee WebAdvisor - C:\Program Files (x86)\McAfee\SiteAdvisor [2012-11-02]
FF HKLM-x32\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files (x86)\McAfee\SiteAdvisor
FF Extension: Kein Name - C:\Program Files (x86)\ver2SpeedCheck\184.xpi [nicht gefunden]
FF Extension: Kein Name - C:\Users\Niklas\AppData\Roaming\Mozilla\Firefox\Profiles\glopksua.default\extensions\b6e4f54065ff48dd97db30ca@c9b45f807bf54a45a4669e51c.com [nicht gefunden]
FF Extension: Kein Name - C:\Users\Niklas\AppData\Roaming\Mozilla\Firefox\Profiles\glopksua.default\extensions\jid0-jJRRRBMgoShUhb07IvnxTBAl29w@jetpack [nicht gefunden]
Chrome:
=======
CHR dev: Chrome dev build erkannt! <======= ACHTUNG
CHR StartupUrls: Default -> "https://www.malwarebytes.org/restorebrowser/"
CHR Profile: C:\Users\Niklas\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Slides) - C:\Users\Niklas\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-03-14]
CHR Extension: (Google Docs) - C:\Users\Niklas\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-03-14]
CHR Extension: (Google Drive) - C:\Users\Niklas\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-03-14]
CHR Extension: (YouTube) - C:\Users\Niklas\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-03-14]
CHR Extension: (Google Search) - C:\Users\Niklas\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-03-14]
CHR Extension: (Google Sheets) - C:\Users\Niklas\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-03-14]
CHR Extension: (SiteAdvisor) - C:\Users\Niklas\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho [2015-07-04]
CHR Extension: (Chrome Hotword Shared Module) - C:\Users\Niklas\AppData\Local\Google\Chrome\User Data\Default\Extensions\lccekmodgklaepjeofjdjpbminllajkg [2015-08-15]
CHR Extension: (Google Wallet) - C:\Users\Niklas\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-03-14]
CHR Extension: (Gmail) - C:\Users\Niklas\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-03-14]
CHR HKLM\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - C:\Program Files (x86)\McAfee\SiteAdvisor\McChPlg.crx [2015-09-04]
CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - C:\Program Files (x86)\McAfee\SiteAdvisor\McChPlg.crx [2015-09-04]
==================== Dienste (Nicht auf der Ausnahmeliste) ========================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
S4 AtherosSvc; C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\adminservice.exe [227456 2013-01-28] (Qualcomm Atheros Commnucations) [Datei ist nicht signiert]
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [441216 2015-05-09] ()
S2 BrcmCardReader; C:\Program Files\Broadcom\MemoryCard\BrcmCardReader.exe [176640 2012-08-20] (Broadcom Corp.) [Datei ist nicht signiert]
S2 CCDMonitorService; C:\Program Files (x86)\Acer\Acer Cloud\CCDMonitorService.exe [2435728 2012-08-23] (Acer Incorporated)
S3 DeviceFastLaneService; C:\Program Files\Acer\Acer Device Fast-lane\DeviceFastLaneSvc.exe [468624 2012-08-23] (Acer Incorporated)
S3 EasyAntiCheat; C:\WINDOWS\SysWOW64\EasyAntiCheat.exe [237352 2015-04-19] (EasyAntiCheat Ltd)
S3 ePowerSvc; C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe [658576 2012-08-22] (Acer Incorporated)
S4 GamesAppIntegrationService; C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe [227904 2014-05-25] (WildTangent)
S2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1155216 2015-07-14] (NVIDIA Corporation)
S3 IDriverT; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [69632 2005-04-04] (Macrovision Corporation) [Datei ist nicht signiert]
S2 igfxCUIService1.0.0.0; C:\Windows\system32\igfxCUIService.exe [319376 2014-10-01] (Intel Corporation)
S2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [165760 2012-07-18] (Intel Corporation)
R2 LMIGuardianSvc; C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe [417552 2015-08-03] (LogMeIn, Inc.)
R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [1871160 2015-06-18] (Malwarebytes Corporation)
R2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [1133880 2015-06-18] (Malwarebytes Corporation)
S2 McAfee SiteAdvisor Service; C:\Program Files (x86)\McAfee\SiteAdvisor\McSACore.exe [157928 2015-09-02] (McAfee, Inc.)
S2 MfeASUM; C:\Program Files\McAfee\AppStats\MfeASUM.exe [335216 2013-09-22] (McAfee, Inc.)
S2 NTI IScheduleSvc; C:\Program Files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe [259136 2012-08-23] (NTI Corporation)
S2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1871504 2015-07-14] (NVIDIA Corporation)
S2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [5544592 2015-07-14] (NVIDIA Corporation)
S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [1930608 2015-03-26] (Electronic Arts)
R2 RfButtonDriverService; C:\Windows\RfBtnSvc64.exe [93296 2012-12-19] (Dritek System INC.)
S2 TuneUp.UtilitiesSvc; C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesService64.exe [2970424 2015-06-29] (AVG Technologies)
R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [366552 2015-07-07] (Microsoft Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23824 2015-07-07] (Microsoft Corporation)
S2 gupdate; "C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /svc [X]
S3 gupdatem; "C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /medsvc [X]
===================== Treiber (Nicht auf der Ausnahmeliste) ==========================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
S3 BTATH_LWFLT; C:\Windows\system32\DRIVERS\btath_lwflt.sys [77464 2013-01-28] (Qualcomm Atheros)
S3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [226304 2014-11-21] (Microsoft Corporation)
S3 dot4; C:\Windows\system32\DRIVERS\Dot4.sys [151968 2012-10-19] (Windows (R) Win 7 DDK provider)
S3 Dot4Print; C:\Windows\System32\drivers\Dot4Prt.sys [27040 2012-10-19] (Windows (R) Win 7 DDK provider)
S0 ebdrv; C:\Windows\System32\drivers\evbda.sys [3357024 2013-08-22] (Broadcom Corporation)
R3 Hamachi; C:\Windows\system32\DRIVERS\Hamdrv.sys [45680 2015-08-03] (LogMeIn Inc.)
R3 MBAMProtector; C:\WINDOWS\system32\drivers\mbam.sys [25816 2015-06-18] (Malwarebytes Corporation)
R3 MBAMSwissArmy; C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys [113880 2015-09-05] (Malwarebytes Corporation)
R3 MBAMWebAccessControl; C:\WINDOWS\system32\drivers\mwac.sys [64216 2015-06-18] (Malwarebytes Corporation)
R1 MfeASKM; C:\Program Files\McAfee\AppStats\MfeASKM.sys [31408 2013-09-22] (McAfee, Inc.)
R3 mfesapsn; C:\Program Files (x86)\McAfee\SiteAdvisor\x64\mfesapsn.sys [37960 2015-09-02] (McAfee, Inc.)
R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [47976 2015-07-03] (NVIDIA Corporation)
R3 Ps2Kb2Hid; C:\Windows\System32\drivers\aPs2Kb2Hid.sys [26736 2012-12-19] (Dritek System Inc.)
R3 ROCCATKV; C:\Windows\system32\DRIVERS\ROCCATKV.SYS [578560 2013-11-05] (C-Media Inc.)
R3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [43832 2012-09-13] (Synaptics Incorporated)
R3 TuneUpUtilitiesDrv; C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesDriver64.sys [31144 2015-06-25] (TuneUp Software)
==================== NetSvcs (Nicht auf der Ausnahmeliste) ===================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
==================== Ein Monat: Erstellte Dateien und Ordner ========
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)
2015-09-05 15:14 - 2015-09-05 15:14 - 00233420 _____ C:\Users\Niklas\Desktop\mbam.txt
2015-09-05 15:12 - 2015-09-05 15:12 - 00005376 _____ C:\Users\Niklas\Desktop\JRT.txt
2015-09-05 14:56 - 2015-09-05 14:56 - 00000080 _____ C:\Users\Public\Desktop\SimCityT.lnk
2015-09-05 14:17 - 2015-09-05 15:14 - 00113880 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys
2015-09-05 14:17 - 2015-09-05 14:56 - 00001116 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2015-09-05 14:17 - 2015-09-05 14:17 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2015-09-05 14:17 - 2015-09-05 14:17 - 00000000 ____D C:\ProgramData\Malwarebytes
2015-09-05 14:17 - 2015-09-05 14:17 - 00000000 ____D C:\Program Files (x86)\Malwarebytes Anti-Malware
2015-09-05 14:17 - 2015-06-18 08:42 - 00064216 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mwac.sys
2015-09-05 14:17 - 2015-06-18 08:41 - 00109272 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbamchameleon.sys
2015-09-05 14:17 - 2015-06-18 08:41 - 00025816 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mbam.sys
2015-09-05 13:42 - 2015-09-05 14:56 - 00001288 _____ C:\Users\Niklas\Desktop\Revo Uninstaller.lnk
2015-09-05 13:42 - 2015-09-05 13:42 - 00000000 ____D C:\Program Files (x86)\VS Revo Group
2015-09-05 10:15 - 2015-09-05 14:56 - 00002709 _____ C:\Users\Public\Desktop\Skype.lnk
2015-09-05 10:15 - 2015-09-05 10:15 - 00000000 ___RD C:\Program Files (x86)\Skype
2015-09-05 10:15 - 2015-09-05 10:15 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2015-09-02 20:26 - 2015-09-01 17:25 - 00001192 _____ C:\Users\Niklas\Documents\Addition_01-09-2015_17-22-55 - Verknüpfung.lnk
2015-09-02 20:26 - 2015-09-01 17:25 - 00001156 _____ C:\Users\Niklas\Documents\FRST_01-09-2015_17-22-55 - Verknüpfung.lnk
2015-09-01 17:26 - 2015-09-01 17:26 - 00000000 ____D C:\Users\Niklas\Desktop\FRST
2015-09-01 17:19 - 2015-09-05 15:15 - 00000000 ____D C:\FRST
2015-09-01 17:18 - 2015-09-01 17:18 - 00000000 ___HD C:\OneDriveTemp
2015-08-24 18:33 - 2015-09-05 14:56 - 00001354 _____ C:\Users\Public\Desktop\Euro Truck Simulator 2.lnk
2015-08-24 18:33 - 2015-09-01 20:42 - 00000000 ____D C:\Users\Niklas\Documents\Euro Truck Simulator 2
2015-08-24 18:33 - 2015-08-24 18:33 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Euro Truck Simulator 2
2015-08-24 18:31 - 2015-08-24 18:33 - 00000000 ____D C:\Program Files (x86)\Euro Truck Simulator 2
2015-08-19 10:33 - 2015-08-11 03:20 - 25191936 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2015-08-19 10:33 - 2015-08-11 02:20 - 19871232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2015-08-17 12:43 - 2015-08-17 12:43 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LogMeIn Hamachi
2015-08-17 12:43 - 2015-08-17 12:43 - 00000000 ____D C:\Program Files (x86)\LogMeIn Hamachi
2015-08-16 10:38 - 2015-09-01 17:22 - 00000000 ____D C:\Program Files (x86)\SmaarTCeoampare
2015-08-16 10:34 - 2015-09-01 17:24 - 00000000 ____D C:\Program Files (x86)\Disconnect
2015-08-16 10:33 - 2015-07-30 16:04 - 00124624 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2015-08-16 10:33 - 2015-07-30 15:48 - 00103120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2015-08-15 11:25 - 2015-07-07 11:40 - 00270168 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdFilter.sys
2015-08-15 11:25 - 2015-07-07 11:40 - 00114520 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdNisDrv.sys
2015-08-15 11:25 - 2015-07-07 11:40 - 00044560 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdBoot.sys
2015-08-15 11:25 - 2015-06-09 20:27 - 00411133 _____ C:\WINDOWS\system32\ApnDatabase.xml
2015-08-15 11:24 - 2015-07-29 01:24 - 00025776 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe
2015-08-15 11:24 - 2015-07-28 16:24 - 01148416 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll
2015-08-15 11:24 - 2015-07-28 16:24 - 01116160 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
2015-08-15 11:24 - 2015-07-28 16:24 - 00774144 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll
2015-08-15 11:24 - 2015-07-28 16:24 - 00743424 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll
2015-08-15 11:24 - 2015-07-28 16:24 - 00437248 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll
2015-08-15 11:24 - 2015-07-28 16:24 - 00069120 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll
2015-08-15 11:24 - 2015-07-14 23:59 - 01113944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys
2015-08-15 11:24 - 2015-07-14 23:59 - 00487256 _____ (Microsoft Corporation) C:\WINDOWS\system32\netcfgx.dll
2015-08-15 11:24 - 2015-07-14 23:59 - 00393560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netcfgx.dll
2015-08-15 11:24 - 2015-06-12 19:03 - 18823680 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2015-08-15 11:24 - 2015-06-12 18:36 - 15159296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2015-08-15 11:24 - 2015-06-11 22:12 - 02476376 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2015-08-15 11:24 - 2015-06-11 22:12 - 00428888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\FWPKCLNT.SYS
2015-08-15 11:06 - 2015-07-19 03:58 - 00136904 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
2015-08-15 11:06 - 2015-07-18 20:51 - 03704320 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2015-08-15 11:06 - 2015-07-18 20:31 - 00140288 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuwebv.dll
2015-08-15 11:06 - 2015-07-18 20:31 - 00095744 _____ (Microsoft Corporation) C:\WINDOWS\system32\wudriver.dll
2015-08-15 11:06 - 2015-07-18 20:31 - 00035840 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapp.exe
2015-08-15 11:06 - 2015-07-18 20:29 - 00409088 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUSettingsProvider.dll
2015-08-15 11:06 - 2015-07-18 20:29 - 00124928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuwebv.dll
2015-08-15 11:06 - 2015-07-18 20:29 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapp.exe
2015-08-15 11:06 - 2015-07-18 20:28 - 00081920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wudriver.dll
2015-08-15 11:06 - 2015-07-18 20:12 - 02228736 _____ (Microsoft Corporation) C:\WINDOWS\system32\wucltux.dll
2015-08-15 11:06 - 2015-07-18 20:10 - 00891904 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll
2015-08-15 11:06 - 2015-07-18 20:09 - 00721920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll
2015-08-15 11:03 - 2015-07-16 22:36 - 00584192 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2015-08-15 11:03 - 2015-07-16 22:36 - 00417792 _____ (Microsoft Corporation) C:\WINDOWS\system32\html.iec
2015-08-15 11:03 - 2015-07-16 22:35 - 02885632 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2015-08-15 11:03 - 2015-07-16 22:26 - 05923328 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2015-08-15 11:03 - 2015-07-16 22:23 - 00615936 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieui.dll
2015-08-15 11:03 - 2015-07-16 22:21 - 00816640 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2015-08-15 11:03 - 2015-07-16 21:53 - 00145408 _____ (Microsoft Corporation) C:\WINDOWS\system32\iepeers.dll
2015-08-15 11:03 - 2015-07-16 21:51 - 00504320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2015-08-15 11:03 - 2015-07-16 21:50 - 00341504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\html.iec
2015-08-15 11:03 - 2015-07-16 21:45 - 02279424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2015-08-15 11:03 - 2015-07-16 21:45 - 01032704 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcomm.dll
2015-08-15 11:03 - 2015-07-16 21:41 - 00479232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieui.dll
2015-08-15 11:03 - 2015-07-16 21:39 - 00664064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2015-08-15 11:03 - 2015-07-16 21:38 - 00262144 _____ (Microsoft Corporation) C:\WINDOWS\system32\webcheck.dll
2015-08-15 11:03 - 2015-07-16 21:36 - 00801280 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2015-08-15 11:03 - 2015-07-16 21:34 - 14451200 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2015-08-15 11:03 - 2015-07-16 21:32 - 02125824 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2015-08-15 11:03 - 2015-07-16 21:14 - 02880000 _____ (Microsoft Corporation) C:\WINDOWS\system32\actxprxy.dll
2015-08-15 11:03 - 2015-07-16 21:13 - 00880128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcomm.dll
2015-08-15 11:03 - 2015-07-16 21:12 - 04520448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2015-08-15 11:03 - 2015-07-16 21:12 - 02427904 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2015-08-15 11:03 - 2015-07-16 21:10 - 12856832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2015-08-15 11:03 - 2015-07-16 21:06 - 00689152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll
2015-08-15 11:03 - 2015-07-16 21:01 - 01545728 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2015-08-15 11:03 - 2015-07-16 20:52 - 01048576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\actxprxy.dll
2015-08-15 11:03 - 2015-07-16 20:49 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll
2015-08-15 11:03 - 2015-07-16 20:42 - 01951232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2015-08-15 11:03 - 2015-07-16 20:38 - 01310720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2015-08-15 11:03 - 2015-07-16 20:37 - 00710144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll
2015-08-15 11:02 - 2015-07-16 02:29 - 07458648 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2015-08-15 11:02 - 2015-07-16 02:29 - 01735000 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2015-08-15 11:02 - 2015-07-16 02:29 - 00101720 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mountmgr.sys
2015-08-15 11:02 - 2015-07-16 02:28 - 01499920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2015-08-15 11:02 - 2015-07-10 19:54 - 01217024 _____ (Microsoft Corporation) C:\WINDOWS\system32\sysmain.dll
2015-08-15 11:02 - 2015-07-02 00:19 - 00228864 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebClnt.dll
2015-08-15 11:02 - 2015-07-02 00:16 - 00104448 _____ (Microsoft Corporation) C:\WINDOWS\system32\davclnt.dll
2015-08-15 11:02 - 2015-07-01 23:37 - 00198656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WebClnt.dll
2015-08-15 11:02 - 2015-07-01 23:35 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\davclnt.dll
2015-08-15 11:00 - 2015-07-14 05:22 - 02529880 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll
2015-08-15 11:00 - 2015-07-14 05:21 - 01901776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll
2015-08-15 11:00 - 2015-07-13 21:46 - 00059392 _____ (Microsoft Corporation) C:\WINDOWS\system32\csrsrv.dll
2015-08-15 11:00 - 2015-07-13 21:45 - 00059392 _____ (Microsoft Corporation) C:\WINDOWS\system32\basesrv.dll
2015-08-15 11:00 - 2015-07-10 19:42 - 02345472 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll
2015-08-15 11:00 - 2015-07-10 18:47 - 01556992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3.dll
2015-08-15 11:00 - 2015-07-09 19:13 - 00221184 _____ (Microsoft Corporation) C:\WINDOWS\system32\notepad.exe
2015-08-15 11:00 - 2015-07-09 19:13 - 00221184 _____ (Microsoft Corporation) C:\WINDOWS\notepad.exe
2015-08-15 11:00 - 2015-07-09 18:30 - 00212992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\notepad.exe
2015-08-15 10:59 - 2015-07-10 20:19 - 01101824 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdvidcrl.dll
2015-08-15 10:59 - 2015-07-10 19:14 - 00856064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdvidcrl.dll
2015-08-15 10:59 - 2015-07-10 19:13 - 07032320 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2015-08-15 10:59 - 2015-07-10 18:31 - 06213120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll
2015-08-15 10:58 - 2015-07-29 16:37 - 01994752 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll
2015-08-15 10:58 - 2015-07-29 16:30 - 01381888 _____ (Microsoft Corporation) C:\WINDOWS\system32\FntCache.dll
2015-08-15 10:58 - 2015-07-29 16:23 - 01559552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWrite.dll
2015-08-15 10:58 - 2015-07-24 20:57 - 04177408 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2015-08-15 10:58 - 2015-07-24 20:57 - 00358912 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll
2015-08-15 10:58 - 2015-07-24 20:52 - 00044032 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll
2015-08-15 10:58 - 2015-07-24 19:27 - 00301568 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\atmfd.dll
2015-08-15 10:58 - 2015-07-24 19:23 - 00035840 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll
==================== Ein Monat: Geänderte Dateien und Ordner ========
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)
2015-09-05 15:11 - 2015-02-21 17:01 - 01496080 _____ C:\WINDOWS\WindowsUpdate.log
2015-09-05 15:10 - 2015-05-28 17:41 - 00000530 _____ C:\WINDOWS\Tasks\cool_deals_helper_service.job
2015-09-05 15:09 - 2013-09-12 20:28 - 00003598 _____ C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-2126457660-3419697741-3186924015-1002
2015-09-05 15:08 - 2015-07-29 12:45 - 00000000 ____D C:\Users\Niklas\AppData\Roaming\Skype
2015-09-05 15:06 - 2015-07-25 14:19 - 00000000 ____D C:\Users\Niklas\Tracing
2015-09-05 15:06 - 2015-07-19 15:57 - 00016244 _____ C:\WINDOWS\setupact.log
2015-09-05 15:06 - 2015-02-21 20:54 - 00000000 ___DO C:\Users\Niklas\OneDrive
2015-09-05 15:06 - 2014-11-15 19:50 - 00000000 ____D C:\Users\Niklas\AppData\Local\LogMeIn Hamachi
2015-09-05 15:03 - 2015-07-20 20:30 - 00232480 _____ C:\WINDOWS\PFRO.log
2015-09-05 15:03 - 2015-04-02 13:17 - 00001052 _____ C:\WINDOWS\Tasks\Bwa1hhv6KwB8Tocwm5xaDSFbj.job
2015-09-05 15:03 - 2013-08-22 16:45 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2015-09-05 14:58 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\FileManager
2015-09-05 14:58 - 2013-08-22 15:25 - 00262144 ___SH C:\WINDOWS\system32\config\BBI
2015-09-05 14:57 - 2015-07-25 11:59 - 00001313 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Movie Maker.lnk
2015-09-05 14:57 - 2015-07-25 11:58 - 00001382 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Photo Gallery.lnk
2015-09-05 14:57 - 2015-07-25 11:55 - 00001466 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live Mail.lnk
2015-09-05 14:57 - 2015-07-25 11:54 - 00002494 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live Messenger.lnk
2015-09-05 14:57 - 2015-07-23 16:18 - 00000946 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GIMP 2.lnk
2015-09-05 14:57 - 2015-07-16 19:24 - 00002225 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG PC TuneUp 2015.lnk
2015-09-05 14:57 - 2015-02-21 17:19 - 00001511 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk
2015-09-05 14:57 - 2014-06-17 14:21 - 00001275 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Inhaltsmanager-Assistent für PlayStation(R).lnk
2015-09-05 14:57 - 2014-04-28 17:40 - 00000000 ____D C:\Program Files (x86)\Steam
2015-09-05 14:57 - 2014-04-01 06:50 - 00002507 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk
2015-09-05 14:57 - 2012-12-19 21:20 - 00001673 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acer User's Manual.lnk
2015-09-05 14:57 - 2012-12-19 21:20 - 00001655 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acer Quick Guide.lnk
2015-09-05 14:57 - 2012-12-19 21:05 - 00002423 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office.lnk
2015-09-05 14:57 - 2012-12-19 20:57 - 00001927 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spotify.lnk
2015-09-05 14:57 - 2012-11-02 05:33 - 00002418 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WildTangent Games App - acer.lnk
2015-09-05 14:56 - 2015-07-29 13:39 - 00001227 _____ C:\Users\Niklas\Desktop\FTB_Launcher - Verknüpfung.lnk
2015-09-05 14:56 - 2015-07-20 21:14 - 00000424 _____ C:\Users\Niklas\Desktop\Dieser PC - Verknüpfung.lnk
2015-09-05 14:56 - 2015-07-16 19:24 - 00002243 _____ C:\Users\Public\Desktop\AVG 1-Klick-Wartung.lnk
2015-09-05 14:56 - 2015-07-16 19:24 - 00002219 _____ C:\Users\Public\Desktop\AVG PC TuneUp 2015.lnk
2015-09-05 14:56 - 2015-07-16 18:54 - 00002299 _____ C:\Users\Public\Desktop\Risen 3 - Titan Lords.lnk
2015-09-05 14:56 - 2015-07-14 10:11 - 00002574 _____ C:\Users\Niklas\Desktop\Die Siedler II - Die nächste Generation.lnk
2015-09-05 14:56 - 2015-07-06 15:05 - 00001209 _____ C:\Users\Public\Desktop\Heroes of the Storm.lnk
2015-09-05 14:56 - 2015-02-21 17:46 - 00001458 _____ C:\Users\Niklas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2015-09-05 14:56 - 2015-02-21 17:10 - 00000469 _____ C:\Users\Niklas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Documents.lnk
2015-09-05 14:56 - 2015-02-21 17:10 - 00000467 _____ C:\Users\Niklas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pictures.lnk
2015-09-05 14:56 - 2014-12-16 14:35 - 00000419 _____ C:\Users\Niklas\Desktop\CD-Laufwerk - Verknüpfung.lnk
2015-09-05 14:56 - 2014-12-16 14:20 - 00001259 _____ C:\Users\Public\Desktop\theHunter.lnk
2015-09-05 14:56 - 2014-11-12 16:44 - 00000444 _____ C:\Users\Niklas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\DVD-RW-Laufwerk (D) Siedler 2 DNG.lnk
2015-09-05 14:56 - 2014-07-10 18:16 - 00002008 _____ C:\Users\Niklas\Desktop\ROCCAT Kave XTD.lnk
2015-09-05 14:56 - 2014-04-28 17:40 - 00000921 _____ C:\Users\Niklas\Desktop\Steam.lnk
2015-09-05 14:56 - 2014-04-17 11:16 - 00000000 ____D C:\AdwCleaner
2015-09-05 14:56 - 2014-04-01 06:52 - 00001781 _____ C:\Users\Public\Desktop\iTunes.lnk
2015-09-05 14:56 - 2014-02-21 18:30 - 00001247 _____ C:\Users\Niklas\Desktop\Skiregion Simulator 2012 .lnk
2015-09-05 14:56 - 2014-02-20 19:26 - 00001962 _____ C:\Users\Public\Desktop\ANNO 1503 GOLD spielen.lnk
2015-09-05 14:56 - 2012-11-02 05:42 - 00002121 _____ C:\Users\Niklas\Desktop\Acer Backup Manager.lnk
2015-09-05 14:56 - 2012-11-02 05:33 - 00002412 _____ C:\Users\Public\Desktop\WildTangent Games App - acer.lnk
2015-09-05 14:55 - 2014-11-02 18:17 - 00000000 ____D C:\ProgramData\cheapdeals
2015-09-05 14:54 - 2014-12-21 22:02 - 00000884 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2015-09-05 14:31 - 2015-06-24 14:26 - 00000000 ____D C:\Program Files (x86)\dealpaeak
2015-09-05 14:30 - 2015-06-03 15:10 - 00000000 ____D C:\Program Files (x86)\deal44reAll
2015-09-05 14:02 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\sru
2015-09-05 13:53 - 2015-04-02 14:17 - 00000004 _____ C:\WINDOWS\SysWOW64\029B560A371F4E00AB32838EBC01B9E7
2015-09-05 13:43 - 2012-11-02 05:37 - 00000000 ____D C:\ProgramData\McAfee
2015-09-05 10:15 - 2015-07-29 12:44 - 00000000 ____D C:\ProgramData\Skype
2015-09-05 10:07 - 2012-11-02 05:37 - 00000000 ____D C:\Program Files (x86)\McAfee
2015-09-04 16:36 - 2015-06-25 18:03 - 00000000 ____D C:\ftb
2015-09-04 16:36 - 2015-06-25 17:37 - 00000000 ____D C:\Users\Niklas\AppData\Local\ftblauncher
2015-09-04 16:36 - 2013-09-23 18:51 - 00000000 ____D C:\Users\Niklas\Desktop\Was ich nicht brauch
2015-09-04 15:41 - 2014-11-26 17:21 - 00000000 ____D C:\Users\Niklas\AppData\Local\Battle.net
2015-09-04 15:40 - 2015-07-06 14:12 - 00000000 ____D C:\Program Files (x86)\Heroes of the Storm
2015-09-04 15:28 - 2014-04-17 10:52 - 00000507 _____ C:\Users\Niklas\AppData\Roaming\Microsoft\Windows\Start Menu\Google.website
2015-09-04 14:57 - 2014-03-04 13:59 - 00000000 ____D C:\Program Files (x86)\Google
2015-09-04 14:10 - 2014-04-22 16:28 - 00000277 _____ C:\Users\Niklas\AppData\Roaming\WB.CFG
2015-09-01 17:24 - 2015-06-24 14:27 - 00000000 ____D C:\Program Files (x86)\dealppeaku
2015-09-01 17:23 - 2015-04-24 13:53 - 00000000 ____D C:\Program Files (x86)\Hukkster
2015-09-01 17:22 - 2015-06-24 14:27 - 00000000 ____D C:\Program Files (x86)\MozBar
2015-09-01 17:22 - 2015-06-03 15:10 - 00000000 ____D C:\Program Files (x86)\Mozilla Gecko Tab
2015-09-01 17:22 - 2015-05-14 07:50 - 00000000 ____D C:\Program Files (x86)\SavErrPro
2015-09-01 17:22 - 2015-05-14 07:50 - 00000000 ____D C:\Program Files (x86)\iSlide
2015-09-01 17:22 - 2015-04-24 13:53 - 00000000 ____D C:\Program Files (x86)\topdeAlo
2015-09-01 17:22 - 2015-04-24 13:53 - 00000000 ____D C:\Program Files (x86)\saveRon
2015-08-31 18:44 - 2015-07-06 13:59 - 00000000 ____D C:\Program Files (x86)\Battle.net
2015-08-31 15:48 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\AppReadiness
2015-08-23 08:56 - 2014-12-26 18:33 - 00000000 ____D C:\Users\Niklas\AppData\Roaming\.minecraft
2015-08-22 21:46 - 2015-02-21 17:10 - 00000000 ____D C:\Users\Niklas
2015-08-22 21:46 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\NDF
2015-08-20 16:49 - 2014-04-28 18:22 - 00000000 ____D C:\Users\Niklas\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2015-08-19 10:38 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\rescache
2015-08-19 10:37 - 2012-07-26 09:59 - 00000000 ____D C:\WINDOWS\CbsTemp
2015-08-17 16:29 - 2014-11-21 05:35 - 01776918 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2015-08-17 16:29 - 2014-11-21 04:45 - 00765582 _____ C:\WINDOWS\system32\perfh007.dat
2015-08-17 16:29 - 2014-11-21 04:45 - 00159366 _____ C:\WINDOWS\system32\perfc007.dat
2015-08-17 16:27 - 2015-07-25 11:39 - 00000000 ____D C:\Users\Niklas\AppData\Local\Windows Live
2015-08-17 16:21 - 2013-08-22 16:44 - 00548272 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2015-08-17 16:14 - 2015-02-27 20:12 - 00000000 ____D C:\WINDOWS\system32\appraiser
2015-08-17 16:14 - 2014-11-21 12:51 - 00000000 ___SD C:\WINDOWS\system32\CompatTel
2015-08-17 16:14 - 2013-08-22 17:36 - 00000000 ___RD C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2015-08-17 16:14 - 2013-08-22 17:36 - 00000000 ___RD C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2015-08-17 16:14 - 2013-08-22 17:36 - 00000000 ___RD C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2015-08-17 16:14 - 2013-08-22 17:36 - 00000000 ___RD C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2015-08-17 16:14 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files\Windows Defender
2015-08-17 16:14 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files (x86)\Windows Defender
2015-08-17 12:42 - 2015-07-19 15:02 - 00002800 _____ C:\WINDOWS\System32\Tasks\CCleanerSkipUAC
2015-08-17 12:42 - 2013-10-28 18:50 - 00003088 _____ C:\WINDOWS\System32\Tasks\Tomb Raider - Underworld
2015-08-16 10:35 - 2013-10-03 09:04 - 00000000 ____D C:\ProgramData\Microsoft Help
2015-08-16 10:30 - 2013-09-26 12:19 - 00000000 ____D C:\WINDOWS\system32\MRT
2015-08-16 10:13 - 2013-09-26 12:19 - 132483416 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2015-08-15 10:55 - 2014-12-21 22:02 - 00003772 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater
2015-08-08 15:55 - 2015-07-20 20:38 - 00794088 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2015-08-08 15:55 - 2015-07-20 20:38 - 00179688 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse =======
2015-03-31 10:14 - 2015-03-31 10:14 - 0005655 _____ () C:\Users\Niklas\AppData\Roaming\Bwa1hhv6KwB8Tocwm5xaDSFbj
2014-06-18 15:00 - 2014-06-18 15:15 - 0000096 _____ () C:\Users\Niklas\AppData\Roaming\Camdata.ini
2014-06-18 15:00 - 2014-06-18 15:15 - 0000408 _____ () C:\Users\Niklas\AppData\Roaming\CamLayout.ini
2014-06-18 15:00 - 2014-06-18 15:15 - 0000408 _____ () C:\Users\Niklas\AppData\Roaming\CamShapes.ini
2014-06-18 15:00 - 2014-06-18 15:15 - 0004535 _____ () C:\Users\Niklas\AppData\Roaming\CamStudio.cfg
2015-07-26 12:02 - 2015-07-26 12:02 - 0000000 ___RH () C:\Users\Niklas\AppData\Roaming\e3d6cc2dc6780f6122d830461cf01da22
2014-12-16 14:36 - 2014-12-21 21:50 - 0000097 _____ () C:\Users\Niklas\AppData\Roaming\LauncherSettings_live.cfg
2014-12-16 15:18 - 2014-12-20 17:53 - 0008144 _____ () C:\Users\Niklas\AppData\Roaming\TheHunterSettings_live.bin
2014-12-16 15:04 - 2014-12-20 17:53 - 0000039 _____ () C:\Users\Niklas\AppData\Roaming\TheHunterSettings_live.cfg
2014-06-18 14:59 - 2014-06-18 15:14 - 0000096 _____ () C:\Users\Niklas\AppData\Roaming\version2.xml
2014-04-22 16:28 - 2015-09-04 14:10 - 0000277 _____ () C:\Users\Niklas\AppData\Roaming\WB.CFG
2013-09-25 16:44 - 2015-04-30 17:34 - 0006656 _____ () C:\Users\Niklas\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2015-07-25 11:36 - 2015-07-25 11:36 - 0007022 _____ () C:\Users\Niklas\AppData\Local\recently-used.xbel
2012-12-19 20:48 - 2012-12-19 20:48 - 0000000 ____H () C:\ProgramData\DP45977C.lfl
Einige Dateien in TEMP:
====================
C:\Users\Niklas\AppData\Local\Temp\24466.exe
C:\Users\Niklas\AppData\Local\Temp\25299.exe
C:\Users\Niklas\AppData\Local\Temp\27953.exe
C:\Users\Niklas\AppData\Local\Temp\31025.exe
C:\Users\Niklas\AppData\Local\Temp\31723.exe
C:\Users\Niklas\AppData\Local\Temp\31934.exe
C:\Users\Niklas\AppData\Local\Temp\67913_updater.exe
C:\Users\Niklas\AppData\Local\Temp\7458.exe
C:\Users\Niklas\AppData\Local\Temp\drm_dialogs.dll
C:\Users\Niklas\AppData\Local\Temp\drm_dyndata_7270006.dll
C:\Users\Niklas\AppData\Local\Temp\drm_dyndata_7380012.dll
C:\Users\Niklas\AppData\Local\Temp\DseShExt-x64.dll
C:\Users\Niklas\AppData\Local\Temp\DseShExt-x86.dll
C:\Users\Niklas\AppData\Local\Temp\SDShelEx-win32.dll
C:\Users\Niklas\AppData\Local\Temp\SDShelEx-x64.dll
C:\Users\Niklas\AppData\Local\Temp\sqlite-3.7.2-sqlitejdbc.dll
C:\Users\Niklas\AppData\Local\Temp\sqlite3.dll
==================== Bamital & volsnap =================
(Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.)
C:\WINDOWS\system32\winlogon.exe => Datei ist digital signiert
C:\WINDOWS\system32\wininit.exe => Datei ist digital signiert
C:\WINDOWS\explorer.exe => Datei ist digital signiert
C:\WINDOWS\SysWOW64\explorer.exe => Datei ist digital signiert
C:\WINDOWS\system32\svchost.exe => Datei ist digital signiert
C:\WINDOWS\SysWOW64\svchost.exe => Datei ist digital signiert
C:\WINDOWS\system32\services.exe => Datei ist digital signiert
C:\WINDOWS\system32\User32.dll => Datei ist digital signiert
C:\WINDOWS\SysWOW64\User32.dll => Datei ist digital signiert
C:\WINDOWS\system32\userinit.exe => Datei ist digital signiert
C:\WINDOWS\SysWOW64\userinit.exe => Datei ist digital signiert
C:\WINDOWS\system32\rpcss.dll => Datei ist digital signiert
C:\WINDOWS\system32\dnsapi.dll => Datei ist digital signiert
C:\WINDOWS\SysWOW64\dnsapi.dll => Datei ist digital signiert
C:\WINDOWS\system32\Drivers\volsnap.sys => Datei ist digital signiert
LastRegBack: 2015-08-23 09:08
==================== Ende von FRST.txt ============================ --- --- ---
Meine mbam Datei ist zu groß, so dass ich sie nicht poste kann !
Hilfe! Code:
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Malwarebytes
Version: 7.6.0 (08.31.2015:1)
OS: Windows 8.1 x64
Ran by Niklas on 05.09.2015 at 15:07:57,29
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~ Services
~~~ Tasks
Successfully deleted: [Task] C:\WINDOWS\system32\tasks\dress4u_notification_service
Successfully deleted: [Task] C:\WINDOWS\system32\tasks\EgisUpdate
Successfully deleted: [Task] C:\WINDOWS\system32\tasks\iuBrowserIEAgent
Successfully deleted: [Task] C:\WINDOWS\system32\tasks\TuneUpUtilities_Task_BkGndMaintenance2013
Successfully deleted: [Task] C:\WINDOWS\Tasks\dress4u_notification_service.job
~~~ Registry Values
Successfully repaired: [Registry Value] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Search\\SearchAssistant
~~~ Registry Keys
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{4858E7D9-8E12-45a3-B6A3-1CD128C9D403}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\CLSID\{645FF040-5081-101B-9F08-00AA002F954E}\shell\TuneUp Undelete
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Allin1Convert_8h.SettingsPlugin
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Allin1Convert_8h.SettingsPlugin.1
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Interface\{55555555-5555-5555-5555-550655795513}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Interface\{66666666-6666-6666-6666-660666796613}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\TypeLib\{44444444-4444-4444-4444-440644794413}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Wow6432Node\Interface\{55555555-5555-5555-5555-550655795513}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Wow6432Node\Interface\{66666666-6666-6666-6666-660666796613}
Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Wow6432Node\TypeLib\{44444444-4444-4444-4444-440644794413}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Policies\Microsoft\Internet Explorer
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\Interface\{55555555-5555-5555-5555-550655795513}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\Interface\{66666666-6666-6666-6666-660666796613}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\TypeLib\{44444444-4444-4444-4444-440644794413}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\Wow6432Node\Interface\{55555555-5555-5555-5555-550655795513}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\Wow6432Node\Interface\{66666666-6666-6666-6666-660666796613}
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Classes\Wow6432Node\TypeLib\{44444444-4444-4444-4444-440644794413}
~~~ Files
Successfully deleted: [File] C:\Users\Niklas\Appdata\Local\nsg8473.tmp
Successfully deleted: [File] C:\Users\Niklas\Appdata\Local\nsq660F.tmp
Successfully deleted: [File] C:\Users\Niklas\Appdata\Local\nsz8812.tmp
Successfully deleted: [File] C:\Users\Niklas\AppData\Roaming\appdataFr25.bin
Successfully deleted: [File] C:\Users\Niklas\AppData\Roaming\appdataFr3.bin
Successfully deleted: [File] C:\Users\Niklas\Appdata\Local\google\chrome\user data\default\local storage\chrome-extension_ogminpmldncgcmokldnmmapddoccmhfl_0.localstorage
~~~ Folders
Successfully deleted: [Folder] C:\Program Files (x86)\ddeal2deoaolitt
Successfully deleted: [Folder] C:\Program Files (x86)\predm
Successfully deleted: [Folder] C:\ProgramData\apn
Successfully deleted: [Folder] C:\ProgramData\browser
Successfully deleted: [Folder] C:\ProgramData\Microsoft\Windows\Start Menu\Programs\pepperzip
Successfully deleted: [Folder] C:\ProgramData\trusted publisher
Successfully deleted: [Folder] C:\Users\Niklas\Appdata\Local\chromatic browser
Successfully deleted: [Folder] C:\Users\Niklas\Appdata\Local\com
Successfully deleted: [Folder] C:\Users\Niklas\Appdata\Local\crashrpt
Successfully deleted: [Folder] C:\Users\Niklas\Appdata\Local\globalupdate
Successfully deleted: [Folder] C:\Users\Niklas\Appdata\Local\torch
Successfully deleted: [Folder] C:\Users\Niklas\Documents\add-in express
Successfully deleted: [Folder] C:\ProgramData\11150417144356734879UL
Successfully deleted: [Folder] C:\ProgramData\e3cee1bc00007d28
Successfully deleted: [Folder] C:\ProgramData\FinedBBesttDeal
Successfully deleted: [Folder] C:\ProgramData\IsaiVer
Successfully deleted: [Folder] C:\ProgramData\SaverExtension
Successfully deleted: [Folder] C:\ProgramData\SSaveRoPPro
Successfully deleted: [Folder] C:\ProgramData\TTakkeeTiheCoouPon
~~~ Chrome
[C:\Users\Niklas\Appdata\Local\Google\Chrome\User Data\Default\Preferences] - default search provider reset
[C:\Users\Niklas\Appdata\Local\Google\Chrome\User Data\Default\Preferences] - Extensions Deleted:
[C:\Users\Niklas\Appdata\Local\Google\Chrome\User Data\Default\Secure Preferences] - default search provider reset
[C:\Users\Niklas\Appdata\Local\Google\Chrome\User Data\Default\Secure Preferences] - Extensions Deleted:
[
ogminpmldncgcmokldnmmapddoccmhfl
]
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 05.09.2015 at 15:12:27,15
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ AdwCleaner Logfile: Code:
# AdwCleaner v5.005 - Bericht erstellt am 05/09/2015 um 14:56:11
# Aktualisiert am 31/08/2015 von Xplode
# Datenbank : 2015-09-04.4 [Server]
# Betriebssystem : Windows 8.1 (x64)
# Benutzername : Niklas - NIKLASLAPTOP
# Gestartet von : C:\Users\Niklas\OneDrive\Programme\AdwCleaner_5.005.exe
# Option : Suchlauf
# Unterstützung : hxxp://toolslib.net/forum
***** [ Dienste ] *****
Dienst Gefunden : CMWFP
Dienst Gefunden : ColorMedia
Dienst Gefunden : FastPlayerUpdaterService
Dienst Gefunden : PicColor Service
Dienst Gefunden : webinstrNewH
***** [ Ordner ] *****
Ordner Gefunden : C:\ftb
Ordner Gefunden : C:\Program Files (x86)\predm
Ordner Gefunden : C:\Program Files (x86)\FastPlayer
Ordner Gefunden : C:\Program Files (x86)\dress4u
Ordner Gefunden : C:\Program Files (x86)\ddeal2deoaolitt
Ordner Gefunden : C:\Program Files (x86)\deal44reAll
Ordner Gefunden : C:\Program Files (x86)\dealpaeak
Ordner Gefunden : C:\Program Files (x86)\dealppeaku
Ordner Gefunden : C:\Program Files (x86)\DiscounTeLoCattorr
Ordner Gefunden : C:\Program Files (x86)\LucukkyCouPoono
Ordner Gefunden : C:\Program Files (x86)\PrinceuCouppon
Ordner Gefunden : C:\Program Files (x86)\saveiTukeep
Ordner Gefunden : C:\Program Files (x86)\saveRon
Ordner Gefunden : C:\Program Files (x86)\SavErrPro
Ordner Gefunden : C:\Program Files (x86)\SmaarTCeoampare
Ordner Gefunden : C:\Program Files (x86)\topdeAlo
Ordner Gefunden : C:\Program Files (x86)\Allin1Convert_8h
Ordner Gefunden : C:\Program Files (x86)\ClickCaption_1.10.0.5
Ordner Gefunden : C:\Program Files (x86)\FastPlayer
Ordner Gefunden : C:\ProgramData\apn
Ordner Gefunden : C:\ProgramData\Browser
Ordner Gefunden : C:\ProgramData\Trusted Publisher
Ordner Gefunden : C:\ProgramData\PicColor Utility
Ordner Gefunden : C:\ProgramData\The AdBlocker
Ordner Gefunden : C:\ProgramData\11150417144356734879UL
Ordner Gefunden : C:\ProgramData\e3cee1bc00007d28
Ordner Gefunden : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PepperZip
Ordner Gefunden : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FastPlayer
Ordner Gefunden : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FastPlayer
Ordner Gefunden : C:\Users\Niklas\AppData\Local\Chromatic Browser
Ordner Gefunden : C:\Users\Niklas\AppData\Local\globalUpdate
Ordner Gefunden : C:\Users\Niklas\AppData\Local\torch
Ordner Gefunden : C:\Users\Niklas\AppData\Local\cheba
Ordner Gefunden : C:\Users\Niklas\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\agkocbbjgcfpodcpdfpenidadocpcmlj
Ordner Gefunden : C:\Users\Niklas\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\cgmnfnmlficgeijcalkgnnkigkefkbhd
Ordner Gefunden : C:\Users\Niklas\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\idfkioegmofgdaemfgcficmhcdachloi
Ordner Gefunden : C:\Users\Niklas\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\neefhcehjchkkfipjnaicajhnlkfdobf
Ordner Gefunden : C:\Users\Niklas\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\cgmnfnmlficgeijcalkgnnkigkefkbhd
Ordner Gefunden : C:\Users\Niklas\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\idfkioegmofgdaemfgcficmhcdachloi
Ordner Gefunden : C:\Users\Niklas\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\neefhcehjchkkfipjnaicajhnlkfdobf
Ordner Gefunden : C:\Users\Niklas\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\cgmnfnmlficgeijcalkgnnkigkefkbhd
Ordner Gefunden : C:\Users\Niklas\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\idfkioegmofgdaemfgcficmhcdachloi
Ordner Gefunden : C:\Users\Niklas\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\neefhcehjchkkfipjnaicajhnlkfdobf
Ordner Gefunden : C:\Users\Niklas\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\cgmnfnmlficgeijcalkgnnkigkefkbhd
Ordner Gefunden : C:\Users\Niklas\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\idfkioegmofgdaemfgcficmhcdachloi
Ordner Gefunden : C:\Users\Niklas\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\neefhcehjchkkfipjnaicajhnlkfdobf
Ordner Gefunden : C:\Users\Niklas\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\agkocbbjgcfpodcpdfpenidadocpcmlj
Ordner Gefunden : C:\Users\Niklas\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\cgmnfnmlficgeijcalkgnnkigkefkbhd
Ordner Gefunden : C:\Users\Niklas\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\idfkioegmofgdaemfgcficmhcdachloi
Ordner Gefunden : C:\Users\Niklas\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\neefhcehjchkkfipjnaicajhnlkfdobf
Ordner Gefunden : C:\Users\Niklas\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\cgmnfnmlficgeijcalkgnnkigkefkbhd
Ordner Gefunden : C:\Users\Niklas\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\idfkioegmofgdaemfgcficmhcdachloi
Ordner Gefunden : C:\Users\Niklas\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\neefhcehjchkkfipjnaicajhnlkfdobf
Ordner Gefunden : C:\Users\Niklas\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\cgmnfnmlficgeijcalkgnnkigkefkbhd
Ordner Gefunden : C:\Users\Niklas\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\idfkioegmofgdaemfgcficmhcdachloi
Ordner Gefunden : C:\Users\Niklas\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\neefhcehjchkkfipjnaicajhnlkfdobf
Ordner Gefunden : C:\Users\Niklas\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\cgmnfnmlficgeijcalkgnnkigkefkbhd
Ordner Gefunden : C:\Users\Niklas\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\idfkioegmofgdaemfgcficmhcdachloi
Ordner Gefunden : C:\Users\Niklas\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\neefhcehjchkkfipjnaicajhnlkfdobf
Ordner Gefunden : C:\Users\UpdatusUser\AppData\Local\Chromatic Browser
Ordner Gefunden : C:\Users\UpdatusUser\AppData\Local\torch
Ordner Gefunden : C:\Users\UpdatusUser\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\cgmnfnmlficgeijcalkgnnkigkefkbhd
Ordner Gefunden : C:\Users\UpdatusUser\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\idfkioegmofgdaemfgcficmhcdachloi
Ordner Gefunden : C:\Users\UpdatusUser\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\neefhcehjchkkfipjnaicajhnlkfdobf
Ordner Gefunden : C:\Users\UpdatusUser\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\cgmnfnmlficgeijcalkgnnkigkefkbhd
Ordner Gefunden : C:\Users\UpdatusUser\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\idfkioegmofgdaemfgcficmhcdachloi
Ordner Gefunden : C:\Users\UpdatusUser\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\neefhcehjchkkfipjnaicajhnlkfdobf
Ordner Gefunden : C:\Users\UpdatusUser\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\cgmnfnmlficgeijcalkgnnkigkefkbhd
Ordner Gefunden : C:\Users\UpdatusUser\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\idfkioegmofgdaemfgcficmhcdachloi
Ordner Gefunden : C:\Users\UpdatusUser\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\neefhcehjchkkfipjnaicajhnlkfdobf
Ordner Gefunden : C:\Users\UpdatusUser\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\cgmnfnmlficgeijcalkgnnkigkefkbhd
Ordner Gefunden : C:\Users\UpdatusUser\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\idfkioegmofgdaemfgcficmhcdachloi
Ordner Gefunden : C:\Users\UpdatusUser\AppData\Local\Comodo\Dragon\User Data\Default\Extensions\neefhcehjchkkfipjnaicajhnlkfdobf
Ordner Gefunden : C:\Users\UpdatusUser\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\cgmnfnmlficgeijcalkgnnkigkefkbhd
Ordner Gefunden : C:\Users\UpdatusUser\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\idfkioegmofgdaemfgcficmhcdachloi
Ordner Gefunden : C:\Users\UpdatusUser\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\neefhcehjchkkfipjnaicajhnlkfdobf
Ordner Gefunden : C:\Users\UpdatusUser\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\cgmnfnmlficgeijcalkgnnkigkefkbhd
Ordner Gefunden : C:\Users\UpdatusUser\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\idfkioegmofgdaemfgcficmhcdachloi
Ordner Gefunden : C:\Users\UpdatusUser\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\neefhcehjchkkfipjnaicajhnlkfdobf
Ordner Gefunden : C:\Users\UpdatusUser\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\cgmnfnmlficgeijcalkgnnkigkefkbhd
Ordner Gefunden : C:\Users\UpdatusUser\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\idfkioegmofgdaemfgcficmhcdachloi
Ordner Gefunden : C:\Users\UpdatusUser\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\neefhcehjchkkfipjnaicajhnlkfdobf
Ordner Gefunden : C:\Users\UpdatusUser\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\cgmnfnmlficgeijcalkgnnkigkefkbhd
Ordner Gefunden : C:\Users\UpdatusUser\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\idfkioegmofgdaemfgcficmhcdachloi
Ordner Gefunden : C:\Users\UpdatusUser\AppData\Local\Google\Chrome SxS\User Data\Default\Extensions\neefhcehjchkkfipjnaicajhnlkfdobf
***** [ Dateien ] *****
Datei Gefunden : C:\Users\Niklas\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_search.gboxapp.com_0.localstorage
Datei Gefunden : C:\Users\Niklas\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_search.gboxapp.com_0.localstorage-journal
Datei Gefunden : C:\Users\Niklas\AppData\Roaming\Mozilla\Firefox\Profiles\glopksua.default\user.js
***** [ Verknüpfungen ] *****
***** [ Geplante Tasks ] *****
Task Gefunden : Optimizer Pro Schedule
Task Gefunden : dress4u_notification_service
***** [ Registrierungsdatenbank ] *****
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\AppID\escortEng.DLL
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\mysearchdial.mysearchdialappCore
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\protector_dll.protectorbho
Schlüssel Gefunden : HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\Wpm
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\Allin1Convert_8h.SettingsPlugin
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\Allin1Convert_8h.SettingsPlugin.1
Schlüssel Gefunden : HKCU\Software\AppDataLow\{5F189DF5-2D05-472B-9091-84D9848AE48B}
Schlüssel Gefunden : HKLM\SOFTWARE\21d0558b-0022-d3c9-e131-8d5355c344c9
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\AppID\{3278F5CF-48F3-4253-A6BB-004CE84AF492}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\AppID\{577975B8-C40E-43E6-B0DE-4C6B44088B52}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\CLSID\{02A96331-0CA6-40E2-A87D-C224601985EB}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\CLSID\{3278F5CF-48F3-4253-A6BB-004CE84AF492}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\CLSID\{3B5702BA-7F4C-4D1A-B026-1E9A01D43978}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\CLSID\{577975B8-C40E-43E6-B0DE-4C6B44088B52}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\CLSID\{7E49F793-B3CD-4BF7-8419-B34B8BD30E61}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\CLSID\{AE07101B-46D4-4A98-AF68-0333EA26E113}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\Interface\{4E6354DE-9115-4AEE-BD21-C46C3E8A49DB}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\Interface\{FC073BDA-C115-4A1D-9DF9-9B5C461482E5}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\TypeLib\{968EDCE0-C10A-47BB-B3B6-FDF09F2A417D}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\TypeLib\{230332DF-D235-47EE-BC42-60860EF144CD}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\TypeLib\{598DCD74-3F5B-4E16-8749-057F426F232A}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\TypeLib\{5DEBC66A-136E-4F2C-84CC-8A984EBA1195}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\TypeLib\{832008D4-0A5E-4F74-A62E-7284F91F7681}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\TypeLib\{E0D6077D-7186-48B2-A6C6-2F7C533E8CFF}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\TypeLib\{76FC1003-0825-48BD-B59B-3B7A5754972C}
Schlüssel Gefunden : HKLM\SOFTWARE\Classes\TypeLib\{B48AC2CD-9662-47E0-A3C0-3B01BB3F463E}
Schlüssel Gefunden : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{38122A36-83B2-46B8-B39A-EC72A4614A07}
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{38122A36-83B2-46B8-B39A-EC72A4614A07}
Wert Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Ext\CLSID [{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}]
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5E89ACE9-E16B-499A-87B4-0DBF742404C1}
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
Schlüssel Gefunden : [x64] HKLM\SOFTWARE\Classes\CLSID\{5A4E3A41-FA55-4BDA-AED7-CEBE6E7BCB52}
Schlüssel Gefunden : [x64] HKLM\SOFTWARE\Classes\CLSID\{AE07101B-46D4-4A98-AF68-0333EA26E113}
Schlüssel Gefunden : [x64] HKLM\SOFTWARE\Classes\Interface\{0400EBCA-042C-4000-AA89-9713FBEDB671}
Schlüssel Gefunden : [x64] HKLM\SOFTWARE\Classes\Interface\{0BD19251-4B4B-4B94-AB16-617106245BB7}
Schlüssel Gefunden : [x64] HKLM\SOFTWARE\Classes\Interface\{3281114F-BCAB-45E3-80D9-A6CD64D4E636}
Schlüssel Gefunden : [x64] HKLM\SOFTWARE\Classes\Interface\{44533FCB-F9FB-436A-8B6B-CF637B2D465A}
Schlüssel Gefunden : [x64] HKLM\SOFTWARE\Classes\Interface\{44B29DDD-CF7A-454A-A275-A322A398D93F}
Schlüssel Gefunden : [x64] HKLM\SOFTWARE\Classes\Interface\{4E6354DE-9115-4AEE-BD21-C46C3E8A49DB}
Schlüssel Gefunden : [x64] HKLM\SOFTWARE\Classes\Interface\{917CAAE9-DD47-4025-936E-1414F07DF5B8}
Schlüssel Gefunden : [x64] HKLM\SOFTWARE\Classes\Interface\{A4DE94DB-DF03-45A3-8A5D-D1B7464B242D}
Schlüssel Gefunden : [x64] HKLM\SOFTWARE\Classes\Interface\{AA0F50A8-2618-4AE4-A779-9F7378555A8F}
Schlüssel Gefunden : [x64] HKLM\SOFTWARE\Classes\Interface\{B2DB115C-8278-4947-9A07-57B53D1C4215}
Schlüssel Gefunden : [x64] HKLM\SOFTWARE\Classes\Interface\{B97FC455-DB33-431D-84DB-6F1514110BD5}
Schlüssel Gefunden : [x64] HKLM\SOFTWARE\Classes\Interface\{C67281E0-78F5-4E49-9FAE-4B1B2ADAF17B}
Schlüssel Gefunden : [x64] HKLM\SOFTWARE\Classes\Interface\{E72E9312-0367-4216-BFC7-21485FA8390B}
Schlüssel Gefunden : [x64] HKLM\SOFTWARE\Classes\Interface\{F6CCB6C9-127E-44AE-8552-B94356F39FFE}
Schlüssel Gefunden : [x64] HKLM\SOFTWARE\Classes\Interface\{FC073BDA-C115-4A1D-9DF9-9B5C461482E5}
Schlüssel Gefunden : [x64] HKLM\SOFTWARE\Classes\Interface\{FFD25630-2734-4AE9-88E6-21BF6525F3FE}
Schlüssel Gefunden : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{31090377-0740-419E-BEFC-A56E50500D5B}
Schlüssel Gefunden : HKCU\Software\GlobalUpdate
Schlüssel Gefunden : HKCU\Software\InetStat
Schlüssel Gefunden : HKCU\Software\InstalledBrowserExtensions
Schlüssel Gefunden : HKCU\Software\OCS
Schlüssel Gefunden : HKCU\Software\RegisteredApplicationsEx
Schlüssel Gefunden : HKCU\Software\Tutorials
Schlüssel Gefunden : HKCU\Software\Wnkey
Schlüssel Gefunden : HKCU\Software\AppDataLow\{4A0F38A9-FE55-4B89-B73F-E60FDC0F72E9}
Schlüssel Gefunden : HKCU\Software\AppDataLow\{5F189DF5-2D05-472B-9091-84D9848AE48B}
Schlüssel Gefunden : HKLM\SOFTWARE\{3A7D3E19-1B79-4E4E-BD96-5467DA2C4EF0}
Schlüssel Gefunden : HKLM\SOFTWARE\{4A0F38A9-FE55-4B89-B73F-E60FDC0F72E9}
Schlüssel Gefunden : HKLM\SOFTWARE\{5F189DF5-2D05-472B-9091-84D9848AE48B}
Schlüssel Gefunden : HKLM\SOFTWARE\{77D46E27-0E41-4478-87A6-AABE6FBCF252}
Schlüssel Gefunden : HKLM\SOFTWARE\GlobalUpdate
Schlüssel Gefunden : HKLM\SOFTWARE\InstalledBrowserExtensions
Schlüssel Gefunden : HKLM\SOFTWARE\Vittalia
Schlüssel Gefunden : HKLM\SOFTWARE\Clara
Schlüssel Gefunden : HKLM\SOFTWARE\{12A61307-94CD-4F8E-94BC-918E511FAA81}
Schlüssel Gefunden : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{C87834EB-A2A0-B9D4-AA9A-C263D1191051}
Schlüssel Gefunden : [x64] HKCU\Software\GlobalUpdate
Schlüssel Gefunden : [x64] HKCU\Software\InetStat
Schlüssel Gefunden : [x64] HKCU\Software\InstalledBrowserExtensions
Schlüssel Gefunden : [x64] HKCU\Software\OCS
Schlüssel Gefunden : [x64] HKCU\Software\RegisteredApplicationsEx
Schlüssel Gefunden : [x64] HKCU\Software\Tutorials
Schlüssel Gefunden : [x64] HKCU\Software\Wnkey
Schlüssel Gefunden : [x64] HKLM\SOFTWARE\InstalledBrowserExtensions
Schlüssel Gefunden : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{C168639F-5810-4EC8-B1E8-0251AA8A771C}
Schlüssel Gefunden : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\649A52D257CA5DB4EAAE8BA9EB23E467
***** [ Internetbrowser ] *****
[C:\Users\Niklas\AppData\Roaming\Mozilla\Firefox\Profiles\glopksua.default\prefs.js] [Preference] Gefunden : user_pref("CT3309350.searchProtector.notifyChanges", "{\"dataType\":\"string\",\"data\":\"false\"}");
[C:\Users\Niklas\AppData\Roaming\Mozilla\Firefox\Profiles\glopksua.default\prefs.js] [Preference] Gefunden : user_pref("extensions.ab6e4f54065ff48dd97db30cac9b45f807bf54a45a4669e51ccom67913.67913.internaldb.monetization_plugin_bundledUrls.value", "%7B%22dealply_s%22%3A%7B%22urls%22%3A%5B%22ssfiles.com%22%5D%[...]
[C:\Users\Niklas\AppData\Roaming\Mozilla\Firefox\Profiles\glopksua.default\prefs.js] [Preference] Gefunden : user_pref("iminent.BirthDate", "1420397840");
[C:\Users\Niklas\AppData\Roaming\Mozilla\Firefox\Profiles\glopksua.default\prefs.js] [Preference] Gefunden : user_pref("iminent.adapters", "{\"le.newupgradenow.com\":{\"CountryCode\":\"DE\",\"NoAds\":false,\"Status\":2,\"AdapterKey\":\"default_adapter\",\"v\":true,\"p\":0,\"t\":1,\"th\":1.1,\"expireTime\":\"[...]
[C:\Users\Niklas\AppData\Roaming\Mozilla\Firefox\Profiles\glopksua.default\prefs.js] [Preference] Gefunden : user_pref("iminent.externalScripts", "{\"value\":[{\"addonUid\":\"b7110a40-a16f-4a12-a411-bd0b6014905a\",\"name\":\"Superfish\",\"addonId\":2,\"url\":\"//www.superfish.com/ws/sf_main.jsp\",\"urlhxxps\[...]
[C:\Users\Niklas\AppData\Roaming\Mozilla\Firefox\Profiles\glopksua.default\prefs.js] [Preference] Gefunden : user_pref("iminent.trackingInfo", "{\"state\":0,\"samplingRate\":0}");
[C:\Users\Niklas\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Extension] Gefunden : eakacpaijcpapndcfffdgphdiccmpknp
[C:\Users\Niklas\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Extension] Gefunden : jpalbmbgpoekgolgbahfhobfgfcdbofl
########## EOF - C:\AdwCleaner\AdwCleaner[S2].txt - [18494 Bytes] ########## --- --- ---
[/CODE] |