![]() |
| |||||||
Plagegeister aller Art und deren Bekämpfung: Wie bekämpfe ich Spy Hunter und Delta Search?Windows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
![]() |
| | #1 |
![]() ![]() | Wie bekämpfe ich Spy Hunter und Delta Search? Hallo, ich bin neu hier und muss vorab sagen, dass ich kein PC Genie bin, nichts programmieren kann o.ä. Mein Wissen beschränkt sich wirklich nur auf die "normalen" PC Kenntnisse, Logfiles & Co sind für mich böhmische Dörfer, bin aber lernfähig ;-) und hoffe, dass ihr mir trotzdem helfen könnt. Als ich vorgestern im Internet unterwegs war, fiel mir auf einmal dieses Fenster mit "Fehler beim laden, Player neu installieren" auf. Habe mir erst nichts dabei gedacht, aber dann wurde es nervig. Im Internet geschaut und auf einer Microsoft Seite wurde Spy Hunter empfohlen... super Idee. Nun habe ich beide Quälgeister. Habe Spy Hunter deinstalliert, aber trotzdem geht hin und wieder ein Fenster auf mit der Warnung zig Viren usw. Was muss ich tun, damit mein PC (Toshiba Laptop) wieder "rein" ist? LG Diana Habe ganz vergessen: habe Avira und Spybot auf dem PC und beide haben nichts gebracht bei der Bekämpfung. |
| | #2 |
| /// the machine /// TB-Ausbilder ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() | Wie bekämpfe ich Spy Hunter und Delta Search? Hi,
__________________Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: (Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
__________________ |
| | #3 |
![]() ![]() | Wie bekämpfe ich Spy Hunter und Delta Search? FRST Logfile:
__________________FRST Logfile: FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 19-07-2013
Ran by Schneball (administrator) on 21-07-2013 10:36:18
Running from C:\Users\Schneball\Downloads
Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard
Internet Explorer Version 10
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(AMD) C:\Windows\system32\atiesrxx.exe
(AMD) C:\Windows\system32\atieclxx.exe
() C:\Windows\System32\GFNEXSrv.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe
(TOSHIBA Corporation) C:\Windows\system32\TODDSrv.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\TECO\TecoService.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe
(Microsoft Corporation) C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
(TOSHIBA CORPORATION) C:\Program Files (x86)\TOSHIBA\ConfigFree\CFIWmxSvcs64.exe
(TOSHIBA CORPORATION) C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSvcs.exe
(Nero AG) c:\Program Files (x86)\Nero\Update\NASvc.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\BulletinBoard\TosNcCore.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\ReelTime\TosReelTimeMonitor.exe
(Toshiba Europe GmbH) C:\Program Files (x86)\Toshiba TEMPRO\TemproTray.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\Power Saver\TPwrMain.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\FlashCards\TCrdMain.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\TECO\Teco.exe
(TOSHIBA) C:\Program Files (x86)\TOSHIBA\TOSHIBA Online Product Information\TOPI.exe
(Nokia) C:\Program Files (x86)\Nokia\Nokia Suite\NokiaSuite.exe
(Toshiba) C:\Program Files\TOSHIBA\TOSHIBA Places Icon Utility\TosDIMonitor.exe
(Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(TOSHIBA Corporation) C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\ToshibaServiceStation.exe
(Geek Software GmbH) C:\Program Files (x86)\PDF24\pdf24.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Nokia) C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe
(ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(TOSHIBA CORPORATION) C:\Program Files (x86)\TOSHIBA\ConfigFree\NDSTray.exe
(TOSHIBA CORPORATION) C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSwMgr.exe
(TOSHIBA Corporation) C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\TPHM\TPCHSrv.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSENotify.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\TPHM\TPCHWMsg.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Nokia) C:\Program Files (x86)\PC Connectivity Solution\Transports\NclUSBSrv64.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [TosNC] - C:\Program Files\Toshiba\BulletinBoard\TosNcCore.exe [597928 2011-03-03] (TOSHIBA Corporation)
HKLM\...\Run: [TosReelTimeMonitor] - C:\Program Files\TOSHIBA\ReelTime\TosReelTimeMonitor.exe [38304 2011-03-30] (TOSHIBA Corporation)
HKLM\...\Run: [Toshiba TEMPRO] - C:\Program Files (x86)\Toshiba TEMPRO\TemproTray.exe [1546720 2011-02-10] (Toshiba Europe GmbH)
HKLM\...\Run: [TPwrMain] - C:\Program Files\TOSHIBA\Power Saver\TPwrMain.EXE [566696 2011-03-02] (TOSHIBA Corporation)
HKLM\...\Run: [HSON] - C:\Program Files\TOSHIBA\TBS\HSON.exe [296824 2010-09-25] (TOSHIBA Corporation)
HKLM\...\Run: [TCrdMain] - C:\Program Files\TOSHIBA\FlashCards\TCrdMain.exe [967544 2011-03-09] (TOSHIBA Corporation)
HKLM\...\Run: [RtHDVCpl] - C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [11775592 2011-01-12] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg] - C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2186856 2011-01-10] (Realtek Semiconductor)
HKLM\...\Run: [SynTPEnh] - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2679592 2011-02-03] (Synaptics Incorporated)
HKLM\...\Run: [Teco] - C:\Program Files\TOSHIBA\TECO\Teco.exe [1544104 2011-04-07] (TOSHIBA Corporation)
HKLM\...\Run: [TosSENotify] - C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosWaitSrv.exe [710040 2010-12-08] (TOSHIBA Corporation)
HKLM\...\Run: [TosWaitSrv] - C:\Program Files\TOSHIBA\TPHM\TosWaitSrv.exe [711576 2011-04-05] (TOSHIBA Corporation)
HKLM\...\Run: [TosVolRegulator] - C:\Program Files\TOSHIBA\TosVolRegulator\TosVolRegulator.exe [24376 2009-11-11] (TOSHIBA Corporation)
HKLM\...\Run: [Toshiba Registration] - C:\Program Files\TOSHIBA\Registration\ToshibaReminder.exe [150992 2011-08-01] (Toshiba Europe GmbH)
HKCU\...\Run: [TOPI.EXE] - C:\Program Files (x86)\TOSHIBA\TOSHIBA Online Product Information\topi.exe [846936 2011-05-16] (TOSHIBA)
HKCU\...\Run: [] - [x]
HKCU\...\Run: [NokiaSuite.exe] - C:\Program Files (x86)\Nokia\Nokia Suite\NokiaSuite.exe [1090040 2012-12-21] (Nokia)
HKCU\...\Run: [Spybot-S&D Cleaning] - C:\Program Files (x86)\Spybot - Search & Destroy 2\SDCleaner.exe [3642312 2013-05-16] (Safer-Networking Ltd.)
HKLM-x32\...\Run: [NBAgent] - "c:\Program Files (x86)\Nero\Nero 10\Nero BackItUp\NBAgent.exe" /WinStart [1409424 2011-06-29] (Nero AG)
HKLM-x32\...\Run: [StartCCC] - "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun [336384 2011-04-20] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [TSleepSrv] - %ProgramFiles(x86)%\TOSHIBA\TOSHIBA Sleep Utility\TSleepSrv.exe [x]
HKLM-x32\...\Run: [ToshibaServiceStation] - C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\ToshibaServiceStation.exe /hide:60 [1294712 2010-11-29] (TOSHIBA Corporation)
HKLM-x32\...\Run: [APSDaemon] - "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" [59240 2011-11-02] (Apple Inc.)
HKLM-x32\...\Run: [PDFPrint] - C:\Program Files (x86)\PDF24\pdf24.exe [163000 2012-12-12] (Geek Software GmbH)
HKLM-x32\...\Run: [avgnt] - "C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe" /min [345144 2013-06-27] (Avira Operations GmbH & Co. KG)
HKLM-x32\...\Run: [SunJavaUpdateSched] - "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" [253816 2013-03-12] (Oracle Corporation)
HKLM-x32\...\Run: [Adobe ARM] - "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [958576 2013-05-11] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [SDTray] - "C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe" [3830224 2013-05-16] (Safer-Networking Ltd.)
HKU\Default\...\Run: [TOPI.EXE] - C:\Program Files (x86)\TOSHIBA\TOSHIBA Online Product Information\topi.exe /STAR [846936 2011-05-16] (TOSHIBA)
HKU\Default User\...\Run: [TOPI.EXE] - C:\Program Files (x86)\TOSHIBA\TOSHIBA Online Product Information\topi.exe /STAR [846936 2011-05-16] (TOSHIBA)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Toshiba Places Icon Utility.lnk
ShortcutTarget: Toshiba Places Icon Utility.lnk -> C:\Program Files\TOSHIBA\TOSHIBA Places Icon Utility\TosDIMonitor.exe (Toshiba)
Startup: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\TRDCReminder.lnk
ShortcutTarget: TRDCReminder.lnk -> C:\Program Files (x86)\TOSHIBA\TRDCReminder\TRDCReminder.exe (TOSHIBA Europe)
Startup: C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\TRDCReminder.lnk
ShortcutTarget: TRDCReminder.lnk -> C:\Program Files (x86)\TOSHIBA\TRDCReminder\TRDCReminder.exe (TOSHIBA Europe)
BootExecute: autocheck autochk * sdnclean64.exe
==================== Internet (Whitelisted) ====================
ProxyServer: localhost:21320
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.bing.com
SearchScopes: HKCU - {4327FABE-3C22-4689-8DBF-D226CF777FE9} URL = hxxp://www.searchplusnetwork.com/?sp=vit4&q={searchTerms}
BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\PROGRA~2\mcafee\SITEAD~1\x64\mcieplg.dll (McAfee, Inc.)
BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: LyricsContainer - {463B0ED4-8AFA-404B-90E7-4063A0708050} - C:\Program Files (x86)\LyricsContainer\120.dll No File
BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll (Microsoft Corporation)
BHO-x32: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll (McAfee, Inc.)
BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~3\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: TOSHIBA Media Controller Plug-in - {F3C88694-EFFA-4d78-B409-54B7B2535B14} - C:\Program Files (x86)\TOSHIBA\TOSHIBA Media Controller Plug-in\TOSHIBAMediaControllerIE.dll (<TOSHIBA>)
Toolbar: HKLM - McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\PROGRA~2\mcafee\SITEAD~1\x64\mcieplg.dll (McAfee, Inc.)
Toolbar: HKLM-x32 - McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll (McAfee, Inc.)
Toolbar: HKCU - No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File
Handler: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\x64\mcieplg.dll (McAfee, Inc.)
Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\x64\mcieplg.dll (McAfee, Inc.)
Handler-x32: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll (McAfee, Inc.)
Handler-x32: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll (McAfee, Inc.)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 192.168.178.1
Chrome:
=======
CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - C:\Program Files (x86)\McAfee\SiteAdvisor\McChPlg.crx
==================== Services (Whitelisted) =================
R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [84024 2013-06-27] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [108088 2013-06-27] (Avira Operations GmbH & Co. KG)
R2 GFNEXSrv; C:\Windows\System32\GFNEXSrv.exe [162824 2010-09-09] ()
R2 McAfee SiteAdvisor Service; c:\PROGRA~2\mcafee\SITEAD~1\McSACore.exe [120592 2013-05-22] (McAfee, Inc.)
R2 SDScannerService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [1817560 2013-05-16] (Safer-Networking Ltd.)
R2 SDUpdateService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [1033688 2013-05-16] (Safer-Networking Ltd.)
R2 SDWSCService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [171928 2013-05-15] (Safer-Networking Ltd.)
S3 TemproMonitoringService; C:\Program Files (x86)\Toshiba TEMPRO\TemproSvc.exe [112080 2011-02-10] (Toshiba Europe GmbH)
==================== Drivers (Whitelisted) ====================
R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [100712 2013-03-30] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [130016 2013-03-30] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [28600 2013-03-30] (Avira Operations GmbH & Co. KG)
S3 esgiguard; \??\C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys [x]
S3 TDEIO; \??\c:\Windows\SysWOW64\sysprep\Bootprio\tdeio64.sys [x]
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2013-07-21 10:36 - 2013-07-21 10:36 - 00000000 ____D C:\FRST
2013-07-21 10:35 - 2013-07-21 10:35 - 01779345 _____ (Farbar) C:\Users\Schneball\Downloads\FRST64.exe
2013-07-21 09:03 - 2013-07-21 09:03 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\{0827DFEF-44CE-46E5-80D1-71391EF12D51}
2013-07-20 13:33 - 2013-07-20 13:33 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\{4F763048-97A7-4592-BC08-794BE95F4872}
2013-07-20 07:41 - 2013-07-20 07:41 - 00000000 _____ C:\autoexec.bat
2013-07-20 07:40 - 2013-07-20 07:40 - 00000000 ____D C:\Program Files\Enigma Software Group
2013-07-20 07:39 - 2013-07-20 14:20 - 00000000 ____D C:\Windows\8AE3CFB678B24F55A7BE618FCFF43A03.TMP
2013-07-20 07:38 - 2013-07-20 07:38 - 00726464 _____ (Enigma Software Group USA, LLC.) C:\Users\Schneball\Downloads\SpyHunter-Installer (1).exe
2013-07-19 12:15 - 2013-07-19 12:18 - 00003652 _____ C:\Windows\wininit.ini
2013-07-19 10:21 - 2013-07-19 12:19 - 00000000 ____D C:\ProgramData\Spybot - Search & Destroy
2013-07-19 10:21 - 2013-07-19 10:21 - 00001390 _____ C:\Users\Public\Desktop\Spybot-S&D Start Center.lnk
2013-07-19 10:21 - 2013-07-19 10:21 - 00000000 ____D C:\Windows\System32\Tasks\Safer-Networking
2013-07-19 10:20 - 2013-07-19 10:30 - 00000000 ____D C:\Program Files (x86)\Spybot - Search & Destroy 2
2013-07-19 10:20 - 2009-01-25 13:14 - 00017272 _____ (Safer Networking Limited) C:\Windows\system32\sdnclean64.exe
2013-07-19 10:19 - 2013-07-19 10:20 - 36271144 _____ (Safer-Networking Ltd. ) C:\Users\Schneball\Downloads\spybot-2.1.exe
2013-07-19 10:18 - 2013-07-19 10:18 - 01624136 _____ (Bandoo Media Inc) C:\Users\Schneball\Downloads\iLividSetup-r394-n-bc.exe
2013-07-19 07:38 - 2013-07-19 07:38 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\{FAE227F2-332F-441D-AE33-1A9418EEE8CA}
2013-07-18 18:32 - 2013-07-18 18:32 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\{213AA2E3-A9CF-4B33-A87E-82ECB31CAFEC}
2013-07-18 18:25 - 2013-07-18 18:25 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\{8F095D3B-8869-4217-93CA-4F17703ED375}
2013-07-18 13:37 - 2013-07-18 13:37 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\{23ED01D4-EB87-468B-8E82-21BA22749A4A}
2013-07-17 18:39 - 2013-07-17 18:40 - 02828552 _____ (AVAST Software) C:\Users\Schneball\Downloads\avast-browser-cleanup_8.0.1484.29.exe
2013-07-17 18:35 - 2013-07-17 18:35 - 00726464 _____ (Enigma Software Group USA, LLC.) C:\Users\Schneball\Downloads\SpyHunter-Installer.exe
2013-07-17 18:11 - 2013-07-17 18:11 - 00000000 ____D C:\Windows\SysWOW64\searchplugins
2013-07-17 18:11 - 2013-07-17 18:11 - 00000000 ____D C:\Windows\SysWOW64\Extensions
2013-07-17 18:11 - 2013-07-17 18:11 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2013-07-17 18:10 - 2013-07-17 18:10 - 00283160 _____ C:\Users\Schneball\Downloads\Setup (2).exe
2013-07-17 18:10 - 2013-07-17 18:10 - 00283160 _____ C:\Users\Schneball\Downloads\Setup (1).exe
2013-07-17 18:06 - 2013-07-17 18:06 - 00283160 _____ C:\Users\Schneball\Downloads\Setup.exe
2013-07-17 07:34 - 2013-07-17 07:35 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\{E4535409-5BB5-4AB6-BC35-56515CEEDB5F}
2013-07-16 10:41 - 2013-07-16 10:41 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\{3C5B896A-9757-4034-AFC6-EC7230344E3A}
2013-07-15 20:46 - 2013-07-15 20:46 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\{2ED72EED-B589-4E9B-BBDE-8FBEE72040F8}
2013-07-15 07:26 - 2013-07-15 07:26 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\{715F5D3A-9D81-49C6-8639-ECFCB5651BF8}
2013-07-14 20:57 - 2013-07-14 20:57 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\{E385478B-6D89-43EB-841A-BF4895777136}
2013-07-14 07:53 - 2013-07-14 07:53 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\{E44EEDCF-2757-4EE1-9980-7B3D1084E143}
2013-07-13 06:50 - 2013-06-12 01:43 - 02877440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2013-07-13 06:50 - 2013-06-12 01:43 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2013-07-13 06:50 - 2013-06-12 01:43 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2013-07-13 06:50 - 2013-06-12 01:42 - 02046976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2013-07-13 06:50 - 2013-06-12 01:42 - 00391168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2013-07-13 06:50 - 2013-06-12 01:42 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2013-07-13 06:50 - 2013-06-12 01:42 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2013-07-13 06:50 - 2013-06-12 01:42 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2013-07-13 06:50 - 2013-06-12 01:26 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2013-07-13 06:50 - 2013-06-12 01:25 - 03958784 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2013-07-13 06:50 - 2013-06-12 01:25 - 02648576 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2013-07-13 06:50 - 2013-06-12 01:25 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2013-07-13 06:50 - 2013-06-12 01:25 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2013-07-13 06:50 - 2013-06-12 01:25 - 00526336 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2013-07-13 06:50 - 2013-06-12 01:25 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2013-07-13 06:50 - 2013-06-12 01:25 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2013-07-13 06:50 - 2013-06-12 01:25 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2013-07-13 06:50 - 2013-06-12 00:51 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe
2013-07-13 06:50 - 2013-06-12 00:50 - 00089600 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe
2013-07-13 06:50 - 2013-06-07 05:22 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2013-07-13 06:50 - 2013-06-07 04:37 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2013-07-13 06:49 - 2013-06-12 01:43 - 14329856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2013-07-13 06:49 - 2013-06-12 01:43 - 01767936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2013-07-13 06:49 - 2013-06-12 01:43 - 01141248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2013-07-13 06:49 - 2013-06-12 01:43 - 00039424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2013-07-13 06:49 - 2013-06-12 01:42 - 13760512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2013-07-13 06:49 - 2013-06-12 01:26 - 02241024 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2013-07-13 06:49 - 2013-06-12 01:26 - 01365504 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2013-07-13 06:49 - 2013-06-12 01:25 - 19238912 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2013-07-13 06:49 - 2013-06-12 01:25 - 15404032 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2013-07-13 06:49 - 2013-06-12 01:25 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2013-07-12 17:13 - 2013-07-12 17:14 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\{329285EC-4108-420C-BD86-EDE1D1DE299D}
2013-07-12 07:15 - 2013-06-05 05:34 - 03153920 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2013-07-12 07:15 - 2013-06-04 08:00 - 00624128 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll
2013-07-12 07:15 - 2013-06-04 06:53 - 00509440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll
2013-07-12 07:15 - 2013-05-06 08:03 - 01887744 _____ (Microsoft Corporation) C:\Windows\system32\WMVDECOD.DLL
2013-07-12 07:15 - 2013-05-06 06:56 - 01620480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVDECOD.DLL
2013-07-12 07:14 - 2013-04-10 01:34 - 01247744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll
2013-07-12 07:14 - 2013-04-03 00:51 - 01643520 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll
2013-07-11 18:48 - 2013-07-11 18:48 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\{6CEA7E80-1E8E-4BFE-8AC9-3A42CA1A8444}
2013-07-10 19:22 - 2013-07-10 19:22 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\{29DC684E-AA35-4954-8110-0C10D49413C7}
2013-07-09 20:01 - 2013-07-09 20:01 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\{FFB2C419-C238-4880-8A70-487B2DB31366}
2013-07-08 07:11 - 2013-07-08 07:11 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\{902A4874-2722-46FD-BEB5-309A019046A4}
2013-07-06 14:35 - 2013-07-06 14:35 - 00029137 _____ C:\Users\Schneball\Downloads\eBayISAPI (3).gz
2013-07-06 14:35 - 2013-07-06 14:35 - 00029119 _____ C:\Users\Schneball\Downloads\eBayISAPI (4).gz
2013-07-04 12:26 - 2013-07-04 12:26 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\{C46A6931-D793-4CA0-83ED-9A3E8E9BCDF5}
2013-07-04 12:24 - 2013-07-04 12:24 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\{2933BAC2-E257-4F83-80EA-7D0E89B7E6B0}
2013-07-02 18:27 - 2013-07-02 18:27 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\{72B7CF76-96EF-4D81-8513-5F3F07AA5446}
2013-07-01 08:44 - 2013-07-01 08:44 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\{0E291496-2066-4486-BC8B-F9F763C1F66F}
2013-06-30 10:14 - 2013-06-30 10:14 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\{5AC1FEC2-8921-4228-AECB-480360C6E5AB}
2013-06-27 13:17 - 2013-06-27 13:18 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\{7D1E9546-AC11-45F4-9C9E-6B834698CBA3}
2013-06-27 09:51 - 2013-06-27 09:51 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\{408D87FD-B2B3-43F7-8B85-544B921BF84F}
2013-06-26 16:10 - 2013-06-26 16:11 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\{136AE38C-92AA-4458-9EE3-1EF099318131}
2013-06-25 10:08 - 2013-06-25 10:08 - 00202234 _____ C:\Users\Schneball\Downloads\fax (7).tif
2013-06-25 09:47 - 2013-06-25 09:47 - 00202888 _____ C:\Users\Schneball\Downloads\fax (6).tif
2013-06-25 08:25 - 2013-06-25 08:26 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\{33758960-BCAF-47A9-8F29-4AF537CC74D6}
2013-06-24 17:08 - 2013-06-24 17:08 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\{2BF4CD7B-8247-4502-A933-1BD33CC3D347}
2013-06-23 19:52 - 2013-06-23 19:52 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\{9DF9A6BD-36DE-4B1B-AB7F-D8D3E7FE2BD5}
==================== One Month Modified Files and Folders =======
2013-07-21 10:36 - 2013-07-21 10:36 - 00000000 ____D C:\FRST
2013-07-21 10:35 - 2013-07-21 10:35 - 01779345 _____ (Farbar) C:\Users\Schneball\Downloads\FRST64.exe
2013-07-21 10:31 - 2013-06-16 09:23 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2013-07-21 10:31 - 2011-08-01 13:10 - 00001124 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2013-07-21 09:30 - 2011-08-01 13:10 - 00000000 ____D C:\Program Files (x86)\Google
2013-07-21 09:28 - 2011-12-25 12:16 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\Google
2013-07-21 09:28 - 2011-08-01 13:10 - 00000000 ____D C:\ProgramData\Google
2013-07-21 09:25 - 2012-07-26 20:23 - 00000000 ____D C:\Users\Schneball\AppData\Roaming\BrowserCompanion
2013-07-21 09:25 - 2012-07-26 20:22 - 00000000 ____D C:\Program Files (x86)\BrowserCompanion
2013-07-21 09:25 - 2011-12-25 10:40 - 00000000 ___RD C:\Users\Schneball\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
2013-07-21 09:17 - 2012-04-08 22:12 - 00003970 _____ C:\Windows\System32\Tasks\User_Feed_Synchronization-{293B7530-1DF2-4F3C-8BCF-32E681E5FE98}
2013-07-21 09:03 - 2013-07-21 09:03 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\{0827DFEF-44CE-46E5-80D1-71391EF12D51}
2013-07-21 08:49 - 2009-07-14 06:45 - 00025120 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2013-07-21 08:49 - 2009-07-14 06:45 - 00025120 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2013-07-21 08:47 - 2011-02-11 10:21 - 00654400 _____ C:\Windows\system32\perfh007.dat
2013-07-21 08:47 - 2011-02-11 10:21 - 00130240 _____ C:\Windows\system32\perfc007.dat
2013-07-21 08:47 - 2009-07-14 07:13 - 01498742 _____ C:\Windows\system32\PerfStringBackup.INI
2013-07-21 08:46 - 2011-11-17 08:40 - 01908464 _____ C:\Windows\WindowsUpdate.log
2013-07-21 08:45 - 2011-08-01 13:10 - 00001120 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2013-07-21 08:42 - 2012-12-28 09:32 - 00023321 _____ C:\Windows\setupact.log
2013-07-21 08:42 - 2009-07-14 07:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2013-07-20 14:20 - 2013-07-20 07:39 - 00000000 ____D C:\Windows\8AE3CFB678B24F55A7BE618FCFF43A03.TMP
2013-07-20 14:20 - 2011-12-25 13:52 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\Windows Live
2013-07-20 13:33 - 2013-07-20 13:33 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\{4F763048-97A7-4592-BC08-794BE95F4872}
2013-07-20 07:55 - 2011-12-25 11:51 - 00002087 _____ C:\Users\Public\Desktop\Toshiba-Garantieregistrierung.lnk
2013-07-20 07:41 - 2013-07-20 07:41 - 00000000 _____ C:\autoexec.bat
2013-07-20 07:40 - 2013-07-20 07:40 - 00000000 ____D C:\Program Files\Enigma Software Group
2013-07-20 07:38 - 2013-07-20 07:38 - 00726464 _____ (Enigma Software Group USA, LLC.) C:\Users\Schneball\Downloads\SpyHunter-Installer (1).exe
2013-07-19 14:16 - 2010-11-21 05:47 - 00161060 _____ C:\Windows\PFRO.log
2013-07-19 12:19 - 2013-07-19 10:21 - 00000000 ____D C:\ProgramData\Spybot - Search & Destroy
2013-07-19 12:18 - 2013-07-19 12:15 - 00003652 _____ C:\Windows\wininit.ini
2013-07-19 10:30 - 2013-07-19 10:20 - 00000000 ____D C:\Program Files (x86)\Spybot - Search & Destroy 2
2013-07-19 10:21 - 2013-07-19 10:21 - 00001390 _____ C:\Users\Public\Desktop\Spybot-S&D Start Center.lnk
2013-07-19 10:21 - 2013-07-19 10:21 - 00000000 ____D C:\Windows\System32\Tasks\Safer-Networking
2013-07-19 10:20 - 2013-07-19 10:19 - 36271144 _____ (Safer-Networking Ltd. ) C:\Users\Schneball\Downloads\spybot-2.1.exe
2013-07-19 10:18 - 2013-07-19 10:18 - 01624136 _____ (Bandoo Media Inc) C:\Users\Schneball\Downloads\iLividSetup-r394-n-bc.exe
2013-07-19 07:38 - 2013-07-19 07:38 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\{FAE227F2-332F-441D-AE33-1A9418EEE8CA}
2013-07-18 18:32 - 2013-07-18 18:32 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\{213AA2E3-A9CF-4B33-A87E-82ECB31CAFEC}
2013-07-18 18:25 - 2013-07-18 18:25 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\{8F095D3B-8869-4217-93CA-4F17703ED375}
2013-07-18 13:37 - 2013-07-18 13:37 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\{23ED01D4-EB87-468B-8E82-21BA22749A4A}
2013-07-17 18:40 - 2013-07-17 18:39 - 02828552 _____ (AVAST Software) C:\Users\Schneball\Downloads\avast-browser-cleanup_8.0.1484.29.exe
2013-07-17 18:40 - 2013-03-21 20:50 - 00000000 ____D C:\Users\Schneball\Documents\My Digital Editions
2013-07-17 18:40 - 2011-12-27 18:25 - 00000000 ____D C:\Program Files (x86)\Adobe
2013-07-17 18:35 - 2013-07-17 18:35 - 00726464 _____ (Enigma Software Group USA, LLC.) C:\Users\Schneball\Downloads\SpyHunter-Installer.exe
2013-07-17 18:11 - 2013-07-17 18:11 - 00000000 ____D C:\Windows\SysWOW64\searchplugins
2013-07-17 18:11 - 2013-07-17 18:11 - 00000000 ____D C:\Windows\SysWOW64\Extensions
2013-07-17 18:11 - 2013-07-17 18:11 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2013-07-17 18:10 - 2013-07-17 18:10 - 00283160 _____ C:\Users\Schneball\Downloads\Setup (2).exe
2013-07-17 18:10 - 2013-07-17 18:10 - 00283160 _____ C:\Users\Schneball\Downloads\Setup (1).exe
2013-07-17 18:06 - 2013-07-17 18:06 - 00283160 _____ C:\Users\Schneball\Downloads\Setup.exe
2013-07-17 07:35 - 2013-07-17 07:34 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\{E4535409-5BB5-4AB6-BC35-56515CEEDB5F}
2013-07-16 10:41 - 2013-07-16 10:41 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\{3C5B896A-9757-4034-AFC6-EC7230344E3A}
2013-07-16 08:09 - 2011-12-27 10:43 - 00000000 ____D C:\Users\Schneball\Desktop\Diana
2013-07-15 20:46 - 2013-07-15 20:46 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\{2ED72EED-B589-4E9B-BBDE-8FBEE72040F8}
2013-07-15 07:26 - 2013-07-15 07:26 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\{715F5D3A-9D81-49C6-8639-ECFCB5651BF8}
2013-07-14 20:57 - 2013-07-14 20:57 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\{E385478B-6D89-43EB-841A-BF4895777136}
2013-07-14 07:54 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files\Windows Defender
2013-07-14 07:54 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files (x86)\Windows Defender
2013-07-14 07:53 - 2013-07-14 07:53 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\{E44EEDCF-2757-4EE1-9980-7B3D1084E143}
2013-07-13 16:17 - 2009-07-14 06:45 - 00342240 _____ C:\Windows\system32\FNTCACHE.DAT
2013-07-13 16:16 - 2012-05-18 21:53 - 00000000 ____D C:\Program Files\Microsoft Silverlight
2013-07-13 16:16 - 2012-05-18 21:53 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight
2013-07-13 12:27 - 2010-11-21 09:17 - 00000000 ____D C:\Program Files\Windows Journal
2013-07-13 12:25 - 2011-12-25 11:57 - 00000000 ____D C:\ProgramData\Microsoft Help
2013-07-13 06:52 - 2011-12-29 16:41 - 78185248 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2013-07-13 06:39 - 2011-08-01 13:10 - 00004120 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2013-07-13 06:39 - 2011-08-01 13:10 - 00003868 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2013-07-12 17:14 - 2013-07-12 17:13 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\{329285EC-4108-420C-BD86-EDE1D1DE299D}
2013-07-11 18:48 - 2013-07-11 18:48 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\{6CEA7E80-1E8E-4BFE-8AC9-3A42CA1A8444}
2013-07-10 19:22 - 2013-07-10 19:22 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\{29DC684E-AA35-4954-8110-0C10D49413C7}
2013-07-09 20:01 - 2013-07-09 20:01 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\{FFB2C419-C238-4880-8A70-487B2DB31366}
2013-07-08 07:11 - 2013-07-08 07:11 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\{902A4874-2722-46FD-BEB5-309A019046A4}
2013-07-06 14:35 - 2013-07-06 14:35 - 00029137 _____ C:\Users\Schneball\Downloads\eBayISAPI (3).gz
2013-07-06 14:35 - 2013-07-06 14:35 - 00029119 _____ C:\Users\Schneball\Downloads\eBayISAPI (4).gz
2013-07-04 20:08 - 2013-06-02 20:44 - 00000000 ____D C:\Users\Schneball\AppData\Roaming\PhotoMania
2013-07-04 12:26 - 2013-07-04 12:26 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\{C46A6931-D793-4CA0-83ED-9A3E8E9BCDF5}
2013-07-04 12:24 - 2013-07-04 12:24 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\{2933BAC2-E257-4F83-80EA-7D0E89B7E6B0}
2013-07-02 18:27 - 2013-07-02 18:27 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\{72B7CF76-96EF-4D81-8513-5F3F07AA5446}
2013-07-01 08:44 - 2013-07-01 08:44 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\{0E291496-2066-4486-BC8B-F9F763C1F66F}
2013-06-30 10:14 - 2013-06-30 10:14 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\{5AC1FEC2-8921-4228-AECB-480360C6E5AB}
2013-06-27 16:03 - 2013-05-07 11:54 - 00083672 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avnetflt.sys
2013-06-27 13:18 - 2013-06-27 13:17 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\{7D1E9546-AC11-45F4-9C9E-6B834698CBA3}
2013-06-27 09:51 - 2013-06-27 09:51 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\{408D87FD-B2B3-43F7-8B85-544B921BF84F}
2013-06-27 08:13 - 2011-08-01 12:51 - 00000000 ____D C:\Program Files (x86)\McAfee
2013-06-26 16:11 - 2013-06-26 16:10 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\{136AE38C-92AA-4458-9EE3-1EF099318131}
2013-06-26 14:51 - 2013-01-31 09:16 - 00000000 ____D C:\Program Files\McAfee
2013-06-25 10:08 - 2013-06-25 10:08 - 00202234 _____ C:\Users\Schneball\Downloads\fax (7).tif
2013-06-25 09:47 - 2013-06-25 09:47 - 00202888 _____ C:\Users\Schneball\Downloads\fax (6).tif
2013-06-25 09:39 - 2013-05-02 17:17 - 00000000 ____D C:\Users\Schneball\Desktop\Oma
2013-06-25 08:26 - 2013-06-25 08:25 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\{33758960-BCAF-47A9-8F29-4AF537CC74D6}
2013-06-24 17:08 - 2013-06-24 17:08 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\{2BF4CD7B-8247-4502-A933-1BD33CC3D347}
2013-06-23 19:52 - 2013-06-23 19:52 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\{9DF9A6BD-36DE-4B1B-AB7F-D8D3E7FE2BD5}
2013-06-21 12:56 - 2011-12-25 11:50 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\VirtualStore
==================== Bamital & volsnap Check =================
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
LastRegBack: 2013-07-14 13:15
==================== End Of Log ============================
--- --- --- --- --- --- Code:
ATTFilter Additional scan result of Farbar Recovery Scan Tool (x64) Version: 19-07-2013
Ran by Schneball at 2013-07-21 10:37:38
Running from C:\Users\Schneball\Downloads
Boot Mode: Normal
==========================================================
==================== Installed Programs =======================
Adobe Flash Player 11 ActiveX (x32 Version: 11.7.700.224)
Adobe Reader XI (11.0.03) - Deutsch (x32 Version: 11.0.03)
Amazon MP3-Downloader 1.0.17 (x32 Version: 1.0.17)
AMD VISION Engine Control Center (x32 Version: 2011.0420.1613.27244)
Apple Application Support (x32 Version: 2.1.6)
Apple Mobile Device Support (Version: 4.0.0.97)
Apple Software Update (x32 Version: 2.1.3.127)
ATI Catalyst Install Manager (Version: 3.0.820.0)
Avira Free Antivirus (x32 Version: 13.0.0.3737)
Bejeweled 2 Deluxe (x32 Version: 2.2.0.95)
Bejeweled 3 (x32 Version: 2.2.0.97)
Bonjour (Version: 3.0.0.10)
Catalyst Control Center - Branding (x32 Version: 1.00.0000)
Catalyst Control Center Graphics Previews Common (x32 Version: 2011.0420.1613.27244)
Catalyst Control Center Localization All (x32 Version: 2011.0420.1613.27244)
CCC Help Chinese Standard (x32 Version: 2011.0420.1612.27244)
CCC Help Chinese Traditional (x32 Version: 2011.0420.1612.27244)
CCC Help Czech (x32 Version: 2011.0420.1612.27244)
CCC Help Danish (x32 Version: 2011.0420.1612.27244)
CCC Help Dutch (x32 Version: 2011.0420.1612.27244)
CCC Help English (x32 Version: 2011.0420.1612.27244)
CCC Help Finnish (x32 Version: 2011.0420.1612.27244)
CCC Help French (x32 Version: 2011.0420.1612.27244)
CCC Help German (x32 Version: 2011.0420.1612.27244)
CCC Help Greek (x32 Version: 2011.0420.1612.27244)
CCC Help Hungarian (x32 Version: 2011.0420.1612.27244)
CCC Help Italian (x32 Version: 2011.0420.1612.27244)
CCC Help Japanese (x32 Version: 2011.0420.1612.27244)
CCC Help Korean (x32 Version: 2011.0420.1612.27244)
CCC Help Norwegian (x32 Version: 2011.0420.1612.27244)
CCC Help Polish (x32 Version: 2011.0420.1612.27244)
CCC Help Portuguese (x32 Version: 2011.0420.1612.27244)
CCC Help Russian (x32 Version: 2011.0420.1612.27244)
CCC Help Spanish (x32 Version: 2011.0420.1612.27244)
CCC Help Swedish (x32 Version: 2011.0420.1612.27244)
CCC Help Thai (x32 Version: 2011.0420.1612.27244)
CCC Help Turkish (x32 Version: 2011.0420.1612.27244)
ccc-utility64 (Version: 2011.0420.1613.27244)
Chicken Invaders 3 - Revenge of the Yolk (x32 Version: 2.2.0.95)
Chuzzle Deluxe (x32 Version: 2.2.0.95)
Complément Messenger (x32 Version: 15.4.3502.0922)
Contrôle ActiveX Windows Live Mesh pour connexions à distance (x32 Version: 15.4.5722.2)
D3DX10 (x32 Version: 15.4.2368.0902)
Definition Update for Microsoft Office 2010 (KB982726) 32-Bit Edition (x32)
Diner Dash 2 Restaurant Rescue (x32 Version: 2.2.0.95)
dows-Treiberpaket - Nokia pccsmcfd LegacyDriver (05/31/2012 7.1.2.0) (Version: 05/31/2012 7.1.2.0)
ElsterFormular (x32 Version: 13.2.0.8623p)
FATE (x32 Version: 2.2.0.97)
Final Drive: Nitro (x32 Version: 2.2.0.95)
Galerie de photos Windows Live (x32 Version: 15.4.3502.0922)
Google Chrome (x32 Version: 28.0.1500.72)
Google Update Helper (x32 Version: 1.3.21.153)
High-Definition Video Playback (x32 Version: 7.3.10900.8.0)
Insaniquarium Deluxe (x32 Version: 2.2.0.97)
IrfanView (remove only) (x32 Version: 4.32)
Java 7 Update 21 (x32 Version: 7.0.210)
Java Auto Updater (x32 Version: 2.1.9.5)
Java(TM) 6 Update 31 (x32 Version: 6.0.310)
JavaFX 2.1.1 (x32 Version: 2.1.1)
Junk Mail filter update (x32 Version: 15.4.3502.0922)
king.com (remove only) (x32)
McAfee SiteAdvisor (Version: 3.3.1.133)
McAfee SiteAdvisor (x32 Version: 3.6.168)
Mesh Runtime (x32 Version: 15.4.5722.2)
Messenger Companion (x32 Version: 15.4.3502.0922)
Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319)
Microsoft Application Error Reporting (Version: 12.0.6015.5000)
Microsoft Office 2010 Service Pack 1 (SP1) (x32)
Microsoft Office Access MUI (German) 2010 (x32 Version: 14.0.6029.1000)
Microsoft Office Excel MUI (German) 2010 (x32 Version: 14.0.6029.1000)
Microsoft Office Home and Student 2010 (x32 Version: 14.0.6029.1000)
Microsoft Office Office 64-bit Components 2010 (Version: 14.0.6029.1000)
Microsoft Office OneNote MUI (German) 2010 (x32 Version: 14.0.6029.1000)
Microsoft Office Outlook MUI (German) 2010 (x32 Version: 14.0.6029.1000)
Microsoft Office PowerPoint MUI (German) 2010 (x32 Version: 14.0.6029.1000)
Microsoft Office Proof (English) 2010 (x32 Version: 14.0.6029.1000)
Microsoft Office Proof (French) 2010 (x32 Version: 14.0.6029.1000)
Microsoft Office Proof (German) 2010 (x32 Version: 14.0.6029.1000)
Microsoft Office Proof (Italian) 2010 (x32 Version: 14.0.6029.1000)
Microsoft Office Proofing (German) 2010 (x32 Version: 14.0.6029.1000)
Microsoft Office Publisher MUI (German) 2010 (x32 Version: 14.0.6029.1000)
Microsoft Office Shared 64-bit MUI (German) 2010 (Version: 14.0.6029.1000)
Microsoft Office Shared MUI (German) 2010 (x32 Version: 14.0.6029.1000)
Microsoft Office Single Image 2010 (x32 Version: 14.0.6029.1000)
Microsoft Office Word MUI (German) 2010 (x32 Version: 14.0.6029.1000)
Microsoft Primary Interoperability Assemblies 2005 (x32 Version: 9.0.21022)
Microsoft Silverlight (Version: 5.1.20513.0)
Microsoft SQL Server 2005 Compact Edition [ENU] (x32 Version: 3.1.0000)
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (x32 Version: 8.0.50727.4053)
Microsoft Visual C++ 2005 Redistributable (x32 Version: 8.0.61001)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (Version: 9.0.30729)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (Version: 9.0.30729.6161)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (x32 Version: 9.0.30729)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (x32 Version: 9.0.30729.4148)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (x32 Version: 9.0.30729.6161)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319 (Version: 10.0.30319)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (x32 Version: 10.0.40219)
Microsoft_VC100_CRT_SP1_x64 (Version: 10.0.40219.1)
Microsoft_VC100_CRT_SP1_x86 (x32 Version: 10.0.40219.1)
MSVC80_x64_v2 (Version: 1.0.3.0)
MSVC80_x86_v2 (x32 Version: 1.0.3.0)
MSVC90_x64 (Version: 1.0.1.2)
MSVC90_x86 (x32 Version: 1.0.1.2)
MSVCRT (x32 Version: 15.4.2862.0708)
MSVCRT_amd64 (x32 Version: 15.4.2862.0708)
MSXML 4.0 SP2 (KB954430) (x32 Version: 4.20.9870.0)
MSXML 4.0 SP2 (KB973688) (x32 Version: 4.20.9876.0)
Nero 10 Movie ThemePack Basic (x32 Version: 10.6.10000.1.0)
Nero BackItUp 10 (x32 Version: 5.8.10900.8.100)
Nero BackItUp 10 Help (CHM) (x32 Version: 10.6.10700)
Nero BurnRights 10 (x32 Version: 4.4.10400.2.100)
Nero BurnRights 10 Help (CHM) (x32 Version: 10.6.10700)
Nero Control Center 10 (x32 Version: 10.6.12700.0.7)
Nero ControlCenter 10 Help (CHM) (x32 Version: 10.6.10800)
Nero Core Components 10 (x32 Version: 2.0.20000.9.12)
Nero Express 10 (x32 Version: 10.6.10700.5.100)
Nero Express 10 Help (CHM) (x32 Version: 10.6.10700)
Nero InfoTool 10 (x32 Version: 7.4.10300.1.100)
Nero InfoTool 10 Help (CHM) (x32 Version: 10.6.10700)
Nero Kwik Media (x32 Version: 1.6.15100.59.100)
Nero Multimedia Suite 10 Essentials (x32 Version: 10.6.10300)
Nero RescueAgent 10 (x32 Version: 3.6.10500.3.100)
Nero RescueAgent 10 Help (CHM) (x32 Version: 10.6.10800)
Nero StartSmart 10 (x32 Version: 10.6.10500.3.100)
Nero StartSmart 10 Help (CHM) (x32 Version: 10.6.10700)
Nero Update (x32 Version: 1.0.10900.31.0)
NeroKwikMedia Help (CHM) (x32 Version: 10.6.10900)
Nokia Connectivity Cable Driver (x32 Version: 7.1.101.0)
Nokia Suite (x32 Version: 3.7.22.0)
PC Connectivity Solution (x32 Version: 12.0.76.0)
PDF24 Creator 5.2.0 (x32)
Penguins! (x32 Version: 2.2.0.95)
PhotoMania (x32 Version: 1)
Photomania Bundle by SweetPacks (x32 Version: 1.0.0.0)
PhotoScape (x32)
Plants vs. Zombies - Game of the Year (x32 Version: 2.2.0.95)
PlayReady PC Runtime amd64 (Version: 1.3.0)
Polar Bowler (x32 Version: 2.2.0.97)
Raccolta foto di Windows Live (x32 Version: 15.4.3502.0922)
Realtek Ethernet Controller Driver (x32 Version: 7.38.113.2011)
Realtek High Definition Audio Driver (x32 Version: 6.0.1.6289)
Realtek USB 2.0 Card Reader (x32 Version: 6.1.7600.30126)
Realtek WLAN Driver (x32 Version: 2.00.0016)
Skype™ 5.10 (x32 Version: 5.10.116)
Slingo Deluxe (x32 Version: 2.2.0.95)
Spybot - Search & Destroy (x32 Version: 2.1.19)
Synaptics Pointing Device Driver (Version: 15.2.11.1)
TOSHIBA Assist (x32 Version: 4.02.02)
TOSHIBA Bulletin Board (Version: 2.1.10.64)
TOSHIBA Bulletin Board (x32 Version: 2.1.10.64)
TOSHIBA ConfigFree (x32 Version: 8.0.38)
TOSHIBA Disc Creator (Version: 2.1.0.9 for x64)
TOSHIBA eco Utility (Version: 1.3.2.64)
TOSHIBA Face Recognition (Version: 3.1.8.64)
TOSHIBA Face Recognition (x32 Version: 3.1.8.64)
TOSHIBA Hardware Setup (x32 Version: 2.00.0012)
TOSHIBA HDD/SSD Alert (Version: 3.1.64.8)
Toshiba Manuals (x32 Version: 10.02)
TOSHIBA Media Controller (x32 Version: 1.0.86.2)
TOSHIBA Media Controller Plug-in (x32 Version: 1.0.6.1)
TOSHIBA Online Product Information (x32 Version: 4.01.0000)
TOSHIBA PC Health Monitor (Version: 1.7.7.64)
TOSHIBA Places Icon Utility (x32 Version: 1.1.1.4)
TOSHIBA Recovery Media Creator (x32 Version: 2.1.3.10010)
TOSHIBA Recovery Media Creator Reminder (x32 Version: 1.00.0019)
TOSHIBA ReelTime (Version: 1.7.18.64)
TOSHIBA ReelTime (x32 Version: 1.7.18.64)
TOSHIBA Resolution+ Plug-in for Windows Media Player (x32 Version: 1.1.0)
TOSHIBA Service Station (x32 Version: 2.1.52)
TOSHIBA Sleep Utility (x32 Version: 1.4.2.8)
TOSHIBA Supervisor Password (x32 Version: 2.00.0007)
TOSHIBA TEMPRO (x32 Version: 3.35)
TOSHIBA Value Added Package (Version: 1.5.10.64)
TOSHIBA Value Added Package (x32 Version: 1.5.10.64)
TOSHIBA Web Camera Application (x32 Version: 2.0.0.21)
TOSHIBA Wireless LAN Indicator (x32 Version: 1.0.4)
TRORMCLauncher (Version: 1.0.0.10)
TRORMCLauncher (x32 Version: )
Update for Microsoft .NET Framework 4 Client Profile (KB2468871) (x32 Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (x32 Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2600217) (x32 Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2836939) (x32 Version: 1)
Update for Microsoft Office 2010 (KB2494150) (x32)
Update for Microsoft Office 2010 (KB2553065) (x32)
Update for Microsoft Office 2010 (KB2553181) 32-Bit Edition (x32)
Update for Microsoft Office 2010 (KB2553267) 32-Bit Edition (x32)
Update for Microsoft Office 2010 (KB2553270) 32-Bit Edition (x32)
Update for Microsoft Office 2010 (KB2553310) 32-Bit Edition (x32)
Update for Microsoft Office 2010 (KB2553378) 32-Bit Edition (x32)
Update for Microsoft Office 2010 (KB2566458) (x32)
Update for Microsoft Office 2010 (KB2596964) 32-Bit Edition (x32)
Update for Microsoft Office 2010 (KB2598242) 32-Bit Edition (x32)
Update for Microsoft Office 2010 (KB2687503) 32-Bit Edition (x32)
Update for Microsoft Office 2010 (KB2687509) 32-Bit Edition (x32)
Update for Microsoft Office 2010 (KB2760631) 32-Bit Edition (x32)
Update for Microsoft Office 2010 (KB2767886) 32-Bit Edition (x32)
Update for Microsoft OneNote 2010 (KB2553290) 32-Bit Edition (x32)
Update for Microsoft Outlook 2010 (KB2597090) 32-Bit Edition (x32)
Update for Microsoft Outlook 2010 (KB2687623) 32-Bit Edition (x32)
Update for Microsoft Outlook Social Connector 2010 (KB2553406) 32-Bit Edition (x32)
Update for Microsoft PowerPoint 2010 (KB2598240) 32-Bit Edition (x32)
Update for Microsoft SharePoint Workspace 2010 (KB2589371) 32-Bit Edition (x32)
Update Installer for WildTangent Games App (x32)
Wedding Dash 2 - Rings Around the World (x32 Version: 2.2.0.95)
WildTangent Games (x32 Version: 1.0.2.5)
WildTangent Games App (Toshiba Games) (x32 Version: 4.0.5.5)
Windows Live (x32 Version: 15.4.3502.0922)
Windows Live Communications Platform (x32 Version: 15.4.3502.0922)
Windows Live Essentials (x32 Version: 15.4.3502.0922)
Windows Live Essentials (x32 Version: 15.4.3555.0308)
Windows Live Family Safety (Version: 15.4.3555.0308)
Windows Live Fotogalerie (x32 Version: 15.4.3502.0922)
Windows Live ID Sign-in Assistant (Version: 7.250.4232.0)
Windows Live Installer (x32 Version: 15.4.3502.0922)
Windows Live Language Selector (Version: 15.4.3555.0308)
Windows Live Mail (x32 Version: 15.4.3502.0922)
Windows Live Mesh - ActiveX-besturingselement voor externe verbindingen (x32 Version: 15.4.5722.2)
Windows Live Mesh (x32 Version: 15.4.3502.0922)
Windows Live Mesh ActiveX Control for Remote Connections (x32 Version: 15.4.5722.2)
Windows Live Mesh ActiveX control for remote connections (x32 Version: 15.4.5722.2)
Windows Live Messenger (x32 Version: 15.4.3538.0513)
Windows Live Messenger Companion Core (x32 Version: 15.4.3502.0922)
Windows Live MIME IFilter (Version: 15.4.3502.0922)
Windows Live Movie Maker (x32 Version: 15.4.3502.0922)
Windows Live Photo Common (x32 Version: 15.4.3502.0922)
Windows Live Photo Gallery (x32 Version: 15.4.3502.0922)
Windows Live PIMT Platform (x32 Version: 15.4.3508.1109)
Windows Live Remote Client (Version: 15.4.5722.2)
Windows Live Remote Client Resources (Version: 15.4.5722.2)
Windows Live Remote Service (Version: 15.4.5722.2)
Windows Live Remote Service Resources (Version: 15.4.5722.2)
Windows Live SOXE (x32 Version: 15.4.3502.0922)
Windows Live SOXE Definitions (x32 Version: 15.4.3502.0922)
Windows Live UX Platform (x32 Version: 15.4.3502.0922)
Windows Live UX Platform Language Pack (x32 Version: 15.4.3508.1109)
Windows Live Writer (x32 Version: 15.4.3502.0922)
Windows Live Writer Resources (x32 Version: 15.4.3502.0922)
WMV9/VC-1 Video Playback (Version: 1.00.0000)
Zuma Deluxe (x32 Version: 2.2.0.95)
==================== Restore Points =========================
16-06-2013 06:49:13 Windows Update
27-06-2013 18:39:54 Geplanter Prüfpunkt
11-07-2013 09:14:00 Geplanter Prüfpunkt
13-07-2013 04:37:41 Windows Update
13-07-2013 10:26:20 Windows Update
14-07-2013 05:52:56 Windows Update
19-07-2013 10:16:11 S
19-07-2013 10:17:12 S
20-07-2013 05:39:52 Installed SpyHunter
20-07-2013 12:18:45 Removed SpyHunter
20-07-2013 13:40:33 S
21-07-2013 07:26:43 Removed Google Earth.
21-07-2013 07:29:21 Removed Google Earth.
==================== Hosts content: ==========================
2009-07-14 04:34 - 2009-06-10 23:00 - 00000824 ____N C:\Windows\system32\Drivers\etc\hosts
==================== Scheduled Tasks (whitelisted) =============
Task: {0619A694-7B38-4DAB-A76A-0F0AD9792326} - System32\Tasks\Microsoft\Windows Live\SOXE\Extractor Definitions Update Task
Task: {0CB5A41C-9069-4A3E-900A-5CB5D2119161} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Refresh immunization => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDImmunize.exe No File
Task: {0DBBD840-A647-4F5D-B652-B80D85251E9A} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2011-08-01] (Google Inc.)
Task: {35772080-8F21-46B3-AE76-63C2841DC019} - System32\Tasks\Microsoft\Windows\MUI\Lpksetup => C:\Windows\System32\lpksetup.exe [2010-11-21] (Microsoft Corporation)
Task: {54D7E5BC-F8BD-4665-803A-AEBCA8B81CF4} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2011-08-01] (Google Inc.)
Task: {7814A23C-6F5E-465B-9EF6-5563592BC2EC} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Check for updates => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe No File
Task: {972CA534-9F7A-4E2D-BB29-675274619837} - System32\Tasks\User_Feed_Synchronization-{293B7530-1DF2-4F3C-8BCF-32E681E5FE98} => C:\Windows\system32\msfeedssync.exe [2013-03-15] (Microsoft Corporation)
Task: {B5539CA9-021E-4B27-A641-2A3198A0D810} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Scan the system => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDScan.exe No File
Task: {C4BAA095-DF9A-47B9-8349-10002B73F7B2} - System32\Tasks\ConfigFree Startup Programs => C:\Program Files (x86)\TOSHIBA\ConfigFree\NDSTray.exe [2010-12-03] (TOSHIBA CORPORATION)
Task: {D89CA803-4E7C-4134-99B2-4BA7E104DC54} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.)
Task: {F3A23EC8-0A79-4ECD-9494-B7459F0562E7} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-06-16] (Adobe Systems Incorporated)
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
==================== Faulty Device Manager Devices =============
==================== Event log errors: =========================
Application errors:
==================
Error: (07/21/2013 10:31:45 AM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 2985079
Error: (07/21/2013 10:31:45 AM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 2985079
Error: (07/21/2013 10:31:45 AM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second
Error: (07/21/2013 09:42:08 AM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 8112
Error: (07/21/2013 09:42:08 AM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 8112
Error: (07/21/2013 09:42:08 AM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second
Error: (07/21/2013 09:42:07 AM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 7113
Error: (07/21/2013 09:42:07 AM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 7113
Error: (07/21/2013 09:42:07 AM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second
Error: (07/21/2013 09:42:06 AM) (Source: Bonjour Service) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 6115
System errors:
=============
Error: (07/20/2013 03:41:53 PM) (Source: DCOM) (User: )
Description: {F9717507-6651-4EDB-BFF7-AE615179BCCF}
Error: (07/19/2013 02:16:56 PM) (Source: Service Control Manager) (User: )
Description: Der Dienst "Spybot-S&D 2 Scanner Service" wurde aufgrund folgenden Fehlers nicht gestartet:
%%1053
Error: (07/19/2013 02:16:56 PM) (Source: Service Control Manager) (User: )
Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Spybot-S&D 2 Scanner Service erreicht.
Error: (07/19/2013 07:44:30 AM) (Source: DCOM) (User: )
Description: {4EB61BAC-A3B6-4760-9581-655041EF4D69}
Error: (07/18/2013 10:13:17 PM) (Source: Disk) (User: )
Description: Der Treiber hat einen Controllerfehler auf \Device\Harddisk1\DR1 gefunden.
Error: (07/18/2013 08:54:00 PM) (Source: Disk) (User: )
Description: Der Treiber hat einen Controllerfehler auf \Device\Harddisk1\DR1 gefunden.
Error: (07/18/2013 01:37:55 PM) (Source: Disk) (User: )
Description: Der Treiber hat einen Controllerfehler auf \Device\Harddisk1\DR1 gefunden.
Error: (07/17/2013 10:04:47 PM) (Source: Disk) (User: )
Description: Der Treiber hat einen Controllerfehler auf \Device\Harddisk1\DR1 gefunden.
Error: (07/17/2013 07:44:30 AM) (Source: DCOM) (User: )
Description: {4EB61BAC-A3B6-4760-9581-655041EF4D69}
Error: (07/17/2013 07:44:00 AM) (Source: Service Control Manager) (User: )
Description: Dienst "Google Update Service (gupdate)" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert.
Microsoft Office Sessions:
=========================
Error: (07/21/2013 10:31:45 AM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 2985079
Error: (07/21/2013 10:31:45 AM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: m->NextScheduledEvent 2985079
Error: (07/21/2013 10:31:45 AM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: Continuously busy for more than a second
Error: (07/21/2013 09:42:08 AM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 8112
Error: (07/21/2013 09:42:08 AM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: m->NextScheduledEvent 8112
Error: (07/21/2013 09:42:08 AM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: Continuously busy for more than a second
Error: (07/21/2013 09:42:07 AM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 7113
Error: (07/21/2013 09:42:07 AM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: m->NextScheduledEvent 7113
Error: (07/21/2013 09:42:07 AM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: Continuously busy for more than a second
Error: (07/21/2013 09:42:06 AM) (Source: Bonjour Service)(User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 6115
==================== Memory info ===========================
Percentage of memory in use: 45%
Total physical RAM: 3562.12 MB
Available physical RAM: 1933.86 MB
Total Pagefile: 7122.42 MB
Available Pagefile: 4481.24 MB
Total Virtual: 8192 MB
Available Virtual: 8191.82 MB
==================== Drives ================================
Drive c: (WINDOWS) (Fixed) (Total:299.02 GB) (Free:218.63 GB) NTFS (Disk=0 Partition=2)
Drive d: (Data) (Fixed) (Total:296.76 GB) (Free:285.16 GB) NTFS (Disk=0 Partition=3)
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 596 GB) (Disk ID: F8D79D6B)
Partition 1: (Active) - (Size=400 MB) - (Type=27)
Partition 2: (Not Active) - (Size=299 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=297 GB) - (Type=07 NTFS)
==================== End Of Log ============================
war das so richtig??? Danke auch für die schnelle Antwort! |
| | #4 | |
| /// the machine /// TB-Ausbilder ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() | Wie bekämpfe ich Spy Hunter und Delta Search? Perfekt ![]() Combofix sollte ausschließlich ausgeführt werden, wenn dies von einem Teammitglied angewiesen wurde!Downloade dir bitte Combofix vom folgenden Downloadspiegel Link 1 WICHTIG - Speichere Combofix auf deinem Desktop
Wenn Combofix fertig ist, wird es eine Logfile erstellen. Bitte poste die C:\Combofix.txt in deiner nächsten Antwort. Hinweis: Solltest du nach dem Neustart folgende Fehlermeldung erhalten Zitat:
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
| | #5 |
![]() ![]() | Wie bekämpfe ich Spy Hunter und Delta Search?Code:
ATTFilter ComboFix 13-07-20.03 - Schneball 21.07.2013 17:16:25.1.4 - x64
Microsoft Windows 7 Home Premium 6.1.7601.1.1252.49.1031.18.3562.1939 [GMT 2:00]
ausgeführt von:: c:\users\Schneball\Downloads\ComboFix.exe
AV: Avira Desktop *Disabled/Updated* {F67B4DE5-C0B4-6C3F-0EFF-6C83BD5D0C2C}
SP: Avira Desktop *Disabled/Updated* {4D1AAC01-E68E-63B1-344F-57F1C6DA4691}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
(((((((((((((((((((((((((((((((((((( Weitere Löschungen ))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\program files (x86)\BrowserCompanion
c:\program files (x86)\BrowserCompanion\logo.ico
c:\program files (x86)\BrowserCompanion\terms.lnk.url
c:\users\Schneball\4.0
c:\users\Schneball\AppData\Local\Microsoft\Windows\Temporary Internet Files\{2E51AADA-68A6-4FB8-AB9A-C95D1F4E7BE9}.xps
.
.
((((((((((((((((((((((( Dateien erstellt von 2013-06-21 bis 2013-07-21 ))))))))))))))))))))))))))))))
.
.
2013-07-21 15:24 . 2013-07-21 15:24 -------- d-----w- c:\users\Default\AppData\Local\temp
2013-07-21 08:36 . 2013-07-21 08:36 -------- d-----w- C:\FRST
2013-07-20 05:40 . 2013-07-20 05:40 -------- d-----w- c:\program files\Enigma Software Group
2013-07-20 05:39 . 2013-07-20 12:20 -------- d-----w- c:\windows\8AE3CFB678B24F55A7BE618FCFF43A03.TMP
2013-07-19 08:21 . 2013-07-19 10:19 -------- d-----w- c:\programdata\Spybot - Search & Destroy
2013-07-19 08:20 . 2013-07-21 14:51 -------- d-----w- c:\program files (x86)\Spybot - Search & Destroy 2
2013-07-17 16:11 . 2013-07-17 16:11 -------- d-----w- c:\windows\SysWow64\Extensions
2013-07-17 16:11 . 2013-07-17 16:11 -------- d-----w- c:\windows\SysWow64\searchplugins
2013-07-13 04:49 . 2013-06-11 23:43 817664 ----a-w- c:\program files (x86)\Common Files\Microsoft Shared\VGX\VGX.dll
2013-07-13 04:49 . 2013-06-11 23:43 108032 ----a-w- c:\program files (x86)\Internet Explorer\jsdebuggeride.dll
2013-07-13 04:49 . 2013-06-11 23:26 1084928 ----a-w- c:\program files\Common Files\Microsoft Shared\VGX\VGX.dll
2013-07-13 04:49 . 2013-06-11 23:26 1365504 ----a-w- c:\windows\system32\urlmon.dll
2013-07-13 04:49 . 2013-06-11 23:25 53248 ----a-w- c:\windows\system32\jsproxy.dll
2013-07-13 04:49 . 2013-06-11 23:43 1767936 ----a-w- c:\windows\SysWow64\wininet.dll
2013-07-13 04:49 . 2013-06-11 23:26 2241024 ----a-w- c:\windows\system32\wininet.dll
2013-07-13 04:49 . 2013-06-11 23:25 15404032 ----a-w- c:\windows\system32\ieframe.dll
2013-07-13 04:49 . 2013-06-11 23:25 19238912 ----a-w- c:\windows\system32\mshtml.dll
2013-07-12 05:14 . 2013-04-09 23:34 1247744 ----a-w- c:\windows\SysWow64\DWrite.dll
2013-07-12 05:14 . 2013-04-02 22:51 1643520 ----a-w- c:\windows\system32\DWrite.dll
.
.
.
(((((((((((((((((((((((((((((((((((( Find3M Bericht ))))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2013-07-13 04:52 . 2011-12-29 14:41 78185248 ----a-w- c:\windows\system32\MRT.exe
2013-06-27 14:03 . 2013-05-07 09:54 83672 ----a-w- c:\windows\system32\drivers\avnetflt.sys
2013-06-16 07:23 . 2013-06-16 07:23 692104 ----a-w- c:\windows\SysWow64\FlashPlayerApp.exe
2013-06-16 07:23 . 2012-02-10 07:41 71048 ----a-w- c:\windows\SysWow64\FlashPlayerCPLApp.cpl
2013-05-16 12:32 . 2013-06-02 18:33 1277744 ------w- c:\windows\system32\dmwu.exe_old
2013-05-16 12:31 . 2013-06-02 18:33 35328 ------w- c:\windows\system32\ImHttpComm.dll_old
2013-05-16 12:02 . 2011-02-19 21:51 608080 ----a-w- c:\windows\system32\msvcp100.dll
2013-05-16 12:02 . 2011-02-18 23:52 829264 ----a-w- c:\windows\system32\msvcr100.dll
2013-05-13 05:51 . 2013-06-12 17:21 184320 ----a-w- c:\windows\system32\cryptsvc.dll
2013-05-13 05:51 . 2013-06-12 17:21 1464320 ----a-w- c:\windows\system32\crypt32.dll
2013-05-13 05:51 . 2013-06-12 17:21 139776 ----a-w- c:\windows\system32\cryptnet.dll
2013-05-13 05:50 . 2013-06-12 17:21 52224 ----a-w- c:\windows\system32\certenc.dll
2013-05-13 04:45 . 2013-06-12 17:21 1160192 ----a-w- c:\windows\SysWow64\crypt32.dll
2013-05-13 04:45 . 2013-06-12 17:21 140288 ----a-w- c:\windows\SysWow64\cryptsvc.dll
2013-05-13 04:45 . 2013-06-12 17:21 103936 ----a-w- c:\windows\SysWow64\cryptnet.dll
2013-05-13 03:43 . 2013-06-12 17:21 1192448 ----a-w- c:\windows\system32\certutil.exe
2013-05-13 03:08 . 2013-06-12 17:21 903168 ----a-w- c:\windows\SysWow64\certutil.exe
2013-05-13 03:08 . 2013-06-12 17:21 43008 ----a-w- c:\windows\SysWow64\certenc.dll
2013-05-10 06:14 . 2011-03-28 16:36 22240 ----a-w- c:\programdata\Microsoft\IdentityCRL\production\ppcrlconfig600.dll
2013-05-10 05:49 . 2013-06-12 17:21 30720 ----a-w- c:\windows\system32\cryptdlg.dll
2013-05-10 03:20 . 2013-06-12 17:21 24576 ----a-w- c:\windows\SysWow64\cryptdlg.dll
2013-05-08 06:39 . 2013-06-12 17:22 1910632 ----a-w- c:\windows\system32\drivers\tcpip.sys
2013-04-26 05:51 . 2013-06-12 17:22 751104 ----a-w- c:\windows\system32\win32spl.dll
2013-04-26 04:55 . 2013-06-12 17:22 492544 ----a-w- c:\windows\SysWow64\win32spl.dll
2013-04-25 23:30 . 2013-06-12 17:21 1505280 ----a-w- c:\windows\SysWow64\d3d11.dll
.
.
(((((((((((((((((((((((((((( Autostartpunkte der Registrierung ))))))))))))))))))))))))))))))))))))))))
.
.
*Hinweis* leere Einträge & legitime Standardeinträge werden nicht angezeigt.
REGEDIT4
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"TOPI.EXE"="c:\program files (x86)\TOSHIBA\TOSHIBA Online Product Information\topi.exe" [2011-05-16 846936]
"NokiaSuite.exe"="c:\program files (x86)\Nokia\Nokia Suite\NokiaSuite.exe" [2012-12-21 1090040]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"NBAgent"="c:\program files (x86)\Nero\Nero 10\Nero BackItUp\NBAgent.exe" [2011-06-29 1409424]
"StartCCC"="c:\program files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" [2011-04-20 336384]
"ToshibaServiceStation"="c:\program files (x86)\TOSHIBA\TOSHIBA Service Station\ToshibaServiceStation.exe" [2010-11-29 1294712]
"APSDaemon"="c:\program files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" [2011-11-01 59240]
"PDFPrint"="c:\program files (x86)\PDF24\pdf24.exe" [2012-12-12 163000]
"avgnt"="c:\program files (x86)\Avira\AntiVir Desktop\avgnt.exe" [2013-06-27 345144]
"SunJavaUpdateSched"="c:\program files (x86)\Common Files\Java\Java Update\jusched.exe" [2013-03-12 253816]
"Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2013-05-11 958576]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"TOPI.EXE"="c:\program files (x86)\TOSHIBA\TOSHIBA Online Product Information\topi.exe" [2011-05-16 846936]
.
c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
Toshiba Places Icon Utility.lnk - c:\program files\TOSHIBA\TOSHIBA Places Icon Utility\TosDIMonitor.exe [2011-8-1 1492352]
.
c:\users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
TRDCReminder.lnk - c:\program files (x86)\TOSHIBA\TRDCReminder\TRDCReminder.exe [2009-9-1 481184]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
"EnableLinkedConnections"= 1 (0x1)
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\windows]
"LoadAppInit_DLLs"=1 (0x1)
.
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\session manager]
BootExecute REG_MULTI_SZ autocheck autochk *\0\0sdnclean64.exe
.
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS]
@=""
.
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [x]
R2 SkypeUpdate;Skype Updater;c:\program files (x86)\Skype\Updater\Updater.exe;c:\program files (x86)\Skype\Updater\Updater.exe [x]
R3 esgiguard;esgiguard;c:\program files\Enigma Software Group\SpyHunter\esgiguard.sys;c:\program files\Enigma Software Group\SpyHunter\esgiguard.sys [x]
R3 GamesAppService;GamesAppService;c:\program files (x86)\WildTangent Games\App\GamesAppService.exe;c:\program files (x86)\WildTangent Games\App\GamesAppService.exe [x]
R3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader;c:\windows\system32\Drivers\RtsUStor.sys;c:\windows\SYSNATIVE\Drivers\RtsUStor.sys [x]
R3 TDEIO;TDEIO;c:\windows\SysWOW64\sysprep\Bootprio\tdeio64.sys;c:\windows\SysWOW64\sysprep\Bootprio\tdeio64.sys [x]
R3 TemproMonitoringService;Notebook Performance Tuning Service (TEMPRO);c:\program files (x86)\Toshiba TEMPRO\TemproSvc.exe;c:\program files (x86)\Toshiba TEMPRO\TemproSvc.exe [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys;c:\windows\SYSNATIVE\drivers\tsusbflt.sys [x]
R3 TsUsbGD;Remote Desktop Generic USB Device;c:\windows\system32\drivers\TsUsbGD.sys;c:\windows\SYSNATIVE\drivers\TsUsbGD.sys [x]
R3 WatAdminSvc;Windows-Aktivierungstechnologieservice;c:\windows\system32\Wat\WatAdminSvc.exe;c:\windows\SYSNATIVE\Wat\WatAdminSvc.exe [x]
R4 wlcrasvc;Windows Live Mesh remote connections service;c:\program files\Windows Live\Mesh\wlcrasvc.exe;c:\program files\Windows Live\Mesh\wlcrasvc.exe [x]
S1 avkmgr;avkmgr;c:\windows\system32\DRIVERS\avkmgr.sys;c:\windows\SYSNATIVE\DRIVERS\avkmgr.sys [x]
S2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe;c:\windows\SYSNATIVE\atiesrxx.exe [x]
S2 AntiVirSchedulerService;Avira Planer;c:\program files (x86)\Avira\AntiVir Desktop\sched.exe;c:\program files (x86)\Avira\AntiVir Desktop\sched.exe [x]
S2 cfWiMAXService;ConfigFree WiMAX Service;c:\program files (x86)\TOSHIBA\ConfigFree\CFIWmxSvcs64.exe;c:\program files (x86)\TOSHIBA\ConfigFree\CFIWmxSvcs64.exe [x]
S2 ConfigFree Service;ConfigFree Service;c:\program files (x86)\TOSHIBA\ConfigFree\CFSvcs.exe;c:\program files (x86)\TOSHIBA\ConfigFree\CFSvcs.exe [x]
S2 GFNEXSrv;GFNEX Service;c:\windows\System32\GFNEXSrv.exe;c:\windows\SYSNATIVE\GFNEXSrv.exe [x]
S2 McAfee SiteAdvisor Service;McAfee SiteAdvisor Service;c:\progra~2\mcafee\SITEAD~1\McSACore.exe;c:\progra~2\mcafee\SITEAD~1\McSACore.exe [x]
S2 NAUpdate;Nero Update;c:\program files (x86)\Nero\Update\NASvc.exe;c:\program files (x86)\Nero\Update\NASvc.exe [x]
S2 TOSHIBA eco Utility Service;TOSHIBA eco Utility Service;c:\program files\TOSHIBA\TECO\TecoService.exe;c:\program files\TOSHIBA\TECO\TecoService.exe [x]
S2 TVALZFL;TOSHIBA ACPI-Based Value Added Logical and General Purpose Device Filter Driver;c:\windows\system32\DRIVERS\TVALZFL.sys;c:\windows\SYSNATIVE\DRIVERS\TVALZFL.sys [x]
S3 AtiHDAudioService;ATI Function Driver for HD Audio Service;c:\windows\system32\drivers\AtihdW76.sys;c:\windows\SYSNATIVE\drivers\AtihdW76.sys [x]
S3 PGEffect;Pangu effect driver;c:\windows\system32\DRIVERS\pgeffect.sys;c:\windows\SYSNATIVE\DRIVERS\pgeffect.sys [x]
S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys;c:\windows\SYSNATIVE\DRIVERS\Rt64win7.sys [x]
S3 RTL8192Ce;Realtek Wireless LAN 802.11n PCI-E NIC Driver;c:\windows\system32\DRIVERS\rtl8192Ce.sys;c:\windows\SYSNATIVE\DRIVERS\rtl8192Ce.sys [x]
S3 TMachInfo;TMachInfo;c:\program files (x86)\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe;c:\program files (x86)\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe [x]
S3 TOSHIBA HDD SSD Alert Service;TOSHIBA HDD SSD Alert Service;c:\program files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe;c:\program files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe [x]
S3 TPCHSrv;TPCH Service;c:\program files\TOSHIBA\TPHM\TPCHSrv.exe;c:\program files\TOSHIBA\TPHM\TPCHSrv.exe [x]
.
.
--- Andere Dienste/Treiber im Speicher ---
.
*NewlyCreated* - WS2IFSL
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}]
2013-07-17 16:27 1173456 ----a-w- c:\program files (x86)\Google\Chrome\Application\28.0.1500.72\Installer\chrmstp.exe
.
Inhalt des "geplante Tasks" Ordners
.
2013-07-21 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-06-16 07:23]
.
2013-07-21 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2011-08-01 11:10]
.
2013-07-21 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2011-08-01 11:10]
.
.
--------- X64 Entries -----------
.
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Toshiba TEMPRO"="c:\program files (x86)\Toshiba TEMPRO\TemproTray.exe" [2011-02-10 1546720]
"RtHDVCpl"="c:\program files\Realtek\Audio\HDA\RAVCpl64.exe" [2011-01-12 11775592]
"RtHDVBg"="c:\program files\Realtek\Audio\HDA\RAVBg64.exe" [2011-01-10 2186856]
"TosSENotify"="c:\program files\TOSHIBA\TOSHIBA HDD SSD Alert\TosWaitSrv.exe" [2010-12-08 710040]
"TosVolRegulator"="c:\program files\TOSHIBA\TosVolRegulator\TosVolRegulator.exe" [2009-11-11 24376]
"Toshiba Registration"="c:\program files\TOSHIBA\Registration\ToshibaReminder.exe" [2011-08-01 150992]
.
------- Zusätzlicher Suchlauf -------
.
uLocal Page = c:\windows\system32\blank.htm
uStart Page = hxxp://www.bing.com
mLocal Page = c:\windows\SysWOW64\blank.htm
uInternet Settings,ProxyOverride = *.local
IE: An OneNote s&enden - c:\progra~2\MICROS~3\Office14\ONBttnIE.dll/105
IE: Nach Microsoft E&xcel exportieren - c:\progra~2\MICROS~3\Office14\EXCEL.EXE/3000
IE: Zu TOSHIBA Bulletin Board hinzufügen - c:\program files\TOSHIBA\BulletinBoard\TosBBCom.dll/1000
TCP: DhcpNameServer = 192.168.178.1
.
- - - - Entfernte verwaiste Registrierungseinträge - - - -
.
BHO-{463B0ED4-8AFA-404B-90E7-4063A0708050} - c:\program files (x86)\LyricsContainer\120.dll
Toolbar-Locked - (no file)
Wow6432Node-HKLM-Run-TSleepSrv - %ProgramFiles(x86)%\TOSHIBA\TOSHIBA Sleep Utility\TSleepSrv.exe
HKLM_Wow6432Node-ActiveSetup-{2D46B6DC-2207-486B-B523-A557E6D54B47} - start
Toolbar-Locked - (no file)
HKLM-Run-TosNC - c:\program files (x86)\Toshiba\BulletinBoard\TosNcCore.exe
HKLM-Run-TosReelTimeMonitor - c:\program files (x86)\TOSHIBA\ReelTime\TosReelTimeMonitor.exe
HKLM-Run-TPwrMain - c:\program files (x86)\TOSHIBA\Power Saver\TPwrMain.EXE
HKLM-Run-HSON - c:\program files (x86)\TOSHIBA\TBS\HSON.exe
HKLM-Run-TCrdMain - c:\program files (x86)\TOSHIBA\FlashCards\TCrdMain.exe
HKLM-Run-SynTPEnh - c:\program files (x86)\Synaptics\SynTP\SynTPEnh.exe
HKLM-Run-Teco - c:\program files (x86)\TOSHIBA\TECO\Teco.exe
HKLM-Run-TosWaitSrv - c:\program files (x86)\TOSHIBA\TPHM\TosWaitSrv.exe
AddRemove-Photomania Bundle by SweetPacks - c:\program files (x86)\sweetpacks bundle uninstaller\uninstaller.exe
.
.
.
--------------------- Gesperrte Registrierungsschluessel ---------------------
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_11_7_700_224_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32]
@="c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_11_7_700_224_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="IFlashBroker5"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_11_7_700_224_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_11_7_700_224_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Shockwave Flash Object"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_7_700_224.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus]
@="0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID]
@="ShockwaveFlash.ShockwaveFlash.11"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_7_700_224.ocx, 1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="ShockwaveFlash.ShockwaveFlash"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Macromedia Flash Factory Object"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_7_700_224.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID]
@="FlashFactory.FlashFactory.1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_7_700_224.ocx, 1"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="FlashFactory.FlashFactory"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="IFlashBroker5"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\McAfee]
"SymbolicLinkValue"=hex(6):5c,00,72,00,65,00,67,00,69,00,73,00,74,00,72,00,79,
00,5c,00,6d,00,61,00,63,00,68,00,69,00,6e,00,65,00,5c,00,53,00,6f,00,66,00,\
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Office\Common\Smart Tag\Actions\{B7EFF951-E52F-45CC-9EF7-57124F2177CC}]
@Denied: (A) (Everyone)
"Solution"="{15727DE6-F92D-4E46-ACB4-0E2C58B31A18}"
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Schema Library\ActionsPane3]
@Denied: (A) (Everyone)
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Schema Library\ActionsPane3\0]
"Key"="ActionsPane3"
"Location"="c:\\Program Files (x86)\\Common Files\\Microsoft Shared\\VSTO\\ActionsPane3.xsd"
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
Zeit der Fertigstellung: 2013-07-21 17:30:21
ComboFix-quarantined-files.txt 2013-07-21 15:30
.
Vor Suchlauf: 8 Verzeichnis(se), 235.904.172.032 Bytes frei
Nach Suchlauf: 11 Verzeichnis(se), 236.585.693.184 Bytes frei
.
- - End Of File - - 6ED0B577601FA083B83BECAD7255D545
A36C5E4F47E84449FF07ED3517B43A31
|
| | #6 |
| /// the machine /// TB-Ausbilder ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() | Wie bekämpfe ich Spy Hunter und Delta Search? Einfach aus dem Download Ordner rüberziehen auf den Desktop ![]() Downloade Dir bitte
Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
und ein frisches FRST log bitte.
__________________ --> Wie bekämpfe ich Spy Hunter und Delta Search? |
| | #7 |
![]() ![]() | Wie bekämpfe ich Spy Hunter und Delta Search? Guten Morgen, das mit dem Adw.cleaner Download klappt nicht??? Normalerweise geht dann unten rechts ein mini Fenster auf, das ich dann nach dem Download öffnen muss. Auch im Download Ordner ist nichts zu finden. Habe es mehrfach probiert. Avira ist ausgestellt. Gruß äh,unten links ;-) Jetzt ging es. Das war aber auch etwas verwirrend, nicht auf den blauen Download Button, sondern einfach nur oben drüber "Download: adwcleaner" anklicken :-) Code:
ATTFilter # AdwCleaner v2.306 - Datei am 22/07/2013 um 07:59:57 erstellt
# Aktualisiert am 19/07/2013 von Xplode
# Betriebssystem : Windows 7 Home Premium Service Pack 1 (64 bits)
# Benutzer : Schneball - SCHNEBALL-TOSH
# Bootmodus : Normal
# Ausgeführt unter : C:\Users\Schneball\Downloads\adwcleaner.exe
# Option [Löschen]
**** [Dienste] ****
***** [Dateien / Ordner] *****
Datei Gelöscht : C:\Users\Public\Desktop\eBay.lnk
Ordner Gelöscht : C:\ProgramData\Partner
Ordner Gelöscht : C:\Users\Schneball\AppData\Roaming\BrowserCompanion
***** [Registrierungsdatenbank] *****
Schlüssel Gelöscht : HKCU\Software\AppDataLow\Software\Crossrider
Schlüssel Gelöscht : HKCU\Software\AppDataLow\Software\LyricsContainer
Schlüssel Gelöscht : HKCU\Software\Blabbers
Schlüssel Gelöscht : HKCU\Software\IM
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\grusskartencenter.com
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\grusskartencenter.com
Schlüssel Gelöscht : HKCU\Software\Softonic
Schlüssel Gelöscht : HKCU\Software\WNLT
Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{4327FABE-3C22-4689-8DBF-D226CF777FE9}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Prod.cap
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{2BF2028E-3F3C-4C05-AB45-B2F1DCFE0759}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{DB538320-D3C5-433C-BCA9-C4081A054FCF}
Schlüssel Gelöscht : HKLM\Software\DataMngr
Schlüssel Gelöscht : HKLM\Software\Iminent
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\Iminent_RASAPI32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\Iminent_RASMANCS
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\5948f8bb03be515
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{02054E11-5113-4BE3-8153-AA8DFB5D3761}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\CLSID\{463B0ED4-8AFA-404B-90E7-4063A0708050}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{021B4049-F57D-4565-A693-FD3B04786BFA}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{0362AA09-808D-48E9-B360-FB51A8CBCE09}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{06844020-CD0B-3D3D-A7FE-371153013E49}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{0ADC01BB-303B-3F8E-93DA-12C140E85460}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{10D3722F-23E6-3901-B6C1-FF6567121920}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{1675E62B-F911-3B7B-A046-EB57261212F3}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{192929F2-9273-3894-91B0-F54671C4C861}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{2932897E-3036-43D9-8A64-B06447992065}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{2DE92D29-A042-3C37-BFF8-07C7D8893EFA}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{32B80AD6-1214-45F4-994E-78A5D482C000}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{3A8E103F-B2B7-3BEF-B3B0-88E29B2420E4}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{478CE5D3-D38E-3FFE-8DBE-8C4A0F1C4D8D}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{48B7DA4E-69ED-39E3-BAD5-3E3EFF22CFB0}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{5982F405-44E4-3BBB-BAC4-CF8141CBBC5C}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{5D8C3CC3-3C05-38A1-B244-924A23115FE9}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{641593AF-D9FD-30F7-B783-36E16F7A2E08}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{711FC48A-1356-3932-94D8-A8B733DBC7E4}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{72227B7F-1F02-3560-95F5-592E68BACC0C}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{7B5E8CE3-4722-4C0E-A236-A6FF731BEF37}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{813A22E0-3E2B-4188-9BDA-ECA9878B8D48}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{890D4F59-5ED0-3CB4-8E0E-74A5A86E7ED0}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{8C68913C-AC3C-4494-8B9C-984D87C85003}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{8D019513-083F-4AA5-933F-7D43A6DA82C4}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{923F6FB8-A390-370E-A0D2-DD505432481D}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{9BBB26EF-B178-35D6-9D3D-B485F4279FE5}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{A62DDBE0-8D2A-339A-B089-8CBCC5CD322A}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{A82AD04D-0B8E-3A49-947B-6A69A8A9C96D}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{ADEB3CC9-A05D-4FCC-BD09-9025456AA3EA}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{B06D4521-D09C-3F41-8E39-9D784CCA2A75}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{BCFF5F55-6F44-11D2-86F8-00104B265ED5}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{C06DAD42-6F39-4CE1-83CC-9A8B9105E556}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{C2E799D0-43A5-3477-8A98-FC5F3677F35C}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{D16107CD-2AD5-46A8-BA59-303B7C32C500}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{D25B101F-8188-3B43-9D85-201F372BC205}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{D2BA7595-5E44-3F1E-880F-03B3139FA5ED}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{D35F5C81-17D9-3E1C-A1FC-4472542E1D25}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{D8FA96CA-B250-312C-AF34-4FF1DD72589D}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{DAFC1E63-3359-416D-9BC2-E7DCA6F7B0F3}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{DC5E5C44-80FD-3697-9E65-9F286D92F3E7}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{E1B4C9DE-D741-385F-981E-6745FACE6F01}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{E7B623F5-9715-3F9F-A671-D1485A39F8A2}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{ED916A7B-7C68-3198-B87D-2DABC30A5587}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{EFA1BDB2-BB3D-3D9A-8EB5-D0D22E0F64F4}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{F4CBF4DD-F8FE-35BA-BB7E-68304DAAB70B}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Classes\Interface\{FC32005D-E27C-32E0-ADFA-152F598B75E7}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{628F3201-34D0-49C0-BB9A-82A26AEFB291}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{68B81CCD-A80C-4060-8947-5AE69ED01199}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E6B969FB-6D33-48D2-9061-8BBD4899EB08}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{463B0ED4-8AFA-404B-90E7-4063A0708050}
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\Photomania Bundle by SweetPacks
Schlüssel Gelöscht : HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\SearchTheWebARP
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{021B4049-F57D-4565-A693-FD3B04786BFA}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{0362AA09-808D-48E9-B360-FB51A8CBCE09}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{06844020-CD0B-3D3D-A7FE-371153013E49}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{0ADC01BB-303B-3F8E-93DA-12C140E85460}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{10D3722F-23E6-3901-B6C1-FF6567121920}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{1675E62B-F911-3B7B-A046-EB57261212F3}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{192929F2-9273-3894-91B0-F54671C4C861}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{2932897E-3036-43D9-8A64-B06447992065}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{2DE92D29-A042-3C37-BFF8-07C7D8893EFA}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{32B80AD6-1214-45F4-994E-78A5D482C000}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{3A8E103F-B2B7-3BEF-B3B0-88E29B2420E4}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{478CE5D3-D38E-3FFE-8DBE-8C4A0F1C4D8D}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{48B7DA4E-69ED-39E3-BAD5-3E3EFF22CFB0}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{5982F405-44E4-3BBB-BAC4-CF8141CBBC5C}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{5D8C3CC3-3C05-38A1-B244-924A23115FE9}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{641593AF-D9FD-30F7-B783-36E16F7A2E08}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{711FC48A-1356-3932-94D8-A8B733DBC7E4}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{72227B7F-1F02-3560-95F5-592E68BACC0C}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{7B5E8CE3-4722-4C0E-A236-A6FF731BEF37}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{813A22E0-3E2B-4188-9BDA-ECA9878B8D48}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{890D4F59-5ED0-3CB4-8E0E-74A5A86E7ED0}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{8C68913C-AC3C-4494-8B9C-984D87C85003}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{8D019513-083F-4AA5-933F-7D43A6DA82C4}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{923F6FB8-A390-370E-A0D2-DD505432481D}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{9BBB26EF-B178-35D6-9D3D-B485F4279FE5}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{A62DDBE0-8D2A-339A-B089-8CBCC5CD322A}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{A82AD04D-0B8E-3A49-947B-6A69A8A9C96D}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{ADEB3CC9-A05D-4FCC-BD09-9025456AA3EA}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{B06D4521-D09C-3F41-8E39-9D784CCA2A75}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{BCFF5F55-6F44-11D2-86F8-00104B265ED5}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{C06DAD42-6F39-4CE1-83CC-9A8B9105E556}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{C2E799D0-43A5-3477-8A98-FC5F3677F35C}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{D16107CD-2AD5-46A8-BA59-303B7C32C500}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{D25B101F-8188-3B43-9D85-201F372BC205}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{D2BA7595-5E44-3F1E-880F-03B3139FA5ED}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{D35F5C81-17D9-3E1C-A1FC-4472542E1D25}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{D8FA96CA-B250-312C-AF34-4FF1DD72589D}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{DAFC1E63-3359-416D-9BC2-E7DCA6F7B0F3}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{DC5E5C44-80FD-3697-9E65-9F286D92F3E7}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{E1B4C9DE-D741-385F-981E-6745FACE6F01}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{E7B623F5-9715-3F9F-A671-D1485A39F8A2}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{ED916A7B-7C68-3198-B87D-2DABC30A5587}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{EFA1BDB2-BB3D-3D9A-8EB5-D0D22E0F64F4}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{F4CBF4DD-F8FE-35BA-BB7E-68304DAAB70B}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{FC32005D-E27C-32E0-ADFA-152F598B75E7}
Schlüssel Gelöscht : HKLM\SOFTWARE\Software
***** [Internet Browser] *****
-\\ Internet Explorer v10.0.9200.16635
[OK] Die Registrierungsdatenbank ist sauber.
-\\ Google Chrome v28.0.1500.72
Datei : C:\Users\Schneball\AppData\Local\Google\Chrome\User Data\Default\Preferences
Gelöscht [l.2035] : homepage = "hxxp://www1.delta-search.com/?babsrc=HP_ss&mntrId=22AB74DE2B970710&affID=119557&tsp=[...]
*************************
AdwCleaner[S1].txt - [12351 octets] - [22/07/2013 07:59:57]
########## EOF - C:\AdwCleaner[S1].txt - [12412 octets] ##########
Code:
ATTFilter ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 5.2.0 (07.21.2013:1)
OS: Windows 7 Home Premium x64
Ran by Schneball on 22.07.2013 at 8:19:32,40
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~ Services
~~~ Registry Values
~~~ Registry Keys
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\tracing\apnstub_rasapi32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\tracing\apnstub_rasmancs
~~~ Files
~~~ Folders
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{00272D37-E760-4BD8-8B22-A38A63946A7B}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{003ECE4D-5762-4A98-8818-22FD68CDFCF6}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{004D6BF5-673B-4A16-AE1A-CED8664CCA68}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{005D3B0E-02A9-480A-83E9-C8F443A05932}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{00E95E92-A9EF-4A69-A50E-9D2CA29730FB}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{01132AD8-DFC5-427F-8BF9-4D9594624542}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{014B5110-48DA-4154-8087-3E5D39025606}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{020A4CA7-A9C0-4C50-8ECB-47ADB43C6327}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{023C3318-DEB6-4176-A760-F010E0209C3A}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{026892A7-1E98-4359-821C-E1E0F5DA319C}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{028CE71A-C18A-4B97-8A74-A51864D6FF70}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{02C615F7-4761-409B-8DFA-791BDA816ABC}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{033001EF-8DB1-4131-800E-6FFB7A1B0FFC}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{0337CDDC-E14E-4346-9065-DCA3B4E993F7}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{03933BDC-B871-417E-BC0F-B183A9919C40}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{03B152EB-9D1F-4270-BE98-0BF7E598DDE5}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{03D2A27F-D77E-404C-9E60-A363CA741931}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{0417F3D5-3469-4A45-908C-0A20AC96C65C}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{0444F334-2112-4A23-B0D5-FFBF93FF46AA}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{0446DF9D-455A-4683-9266-DE7344193C28}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{04F19074-C134-42FC-87F9-45DBE2BA9FCD}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{05802A5A-212E-460B-A376-3B768565F267}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{0611F8CF-63C4-4070-B0B2-2FA5F5D08368}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{06E8B139-AD5B-4676-93A9-49B4F8E19F04}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{071D3F2D-90C1-44CD-8086-C88966DCFB06}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{0725C055-BA46-499A-8773-A643FD0C3C12}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{075E776B-D9D7-4E58-833B-72B1D3094D1F}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{07E19A03-911C-47C5-8E29-EBA28FC1DEF2}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{07E37093-6770-4808-A2C5-AF31F5B281C8}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{080AB3AD-BEAF-4C8B-AE67-B836AF5CFAA6}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{0827DFEF-44CE-46E5-80D1-71391EF12D51}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{088BA9E6-A464-4628-A9EA-3BE4A252D67E}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{088F78E5-A7CA-420F-B29D-AB9C315AEC32}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{08A695D4-5AD8-4D66-9004-2CC244C0CACB}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{093736D2-C62D-46A4-A494-36F28F2C7830}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{0943689F-6815-42E9-8314-8D9311F0D8AA}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{0952C8B1-7129-4931-93BC-0928D6DE9A11}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{09DF776A-021B-4499-9948-941D83C28AF4}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{09EAFF5C-E139-47A1-9B6C-C1D80263A38D}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{0A73696A-6842-45DB-8970-85893DCF17F3}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{0AF9F51B-D538-4243-B6A6-EC476FC5813F}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{0B5E12DB-FA61-40B7-9FAF-8277D805AA46}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{0B8705AA-896B-4BB0-AF53-D27B13F8C65C}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{0BE2DBCF-8117-4376-9A90-79253F46CF1B}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{0C0744CF-933C-4B3F-8076-2CA305FD8660}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{0C2F8E56-2203-4154-975D-5B26A3D3CF2F}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{0C85F7F8-26A4-4922-A60F-E336E4E9912C}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{0C9E76E0-E9A2-44BA-83BD-9141D1ECC80F}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{0CE0DBFA-344C-43B1-8181-24FCDD29F820}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{0CEA3586-D791-46D5-A327-01EA13600370}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{0D182042-AD49-42C5-A7F2-BE81B76FF70A}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{0D276245-1350-45D2-88AC-7E526C5F59E8}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{0D312F27-F94E-46C3-8D20-26850C8ADD02}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{0E1FBB55-06CF-4496-AEE0-3BE84FB7476D}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{0E24AF8B-C413-47CE-B0ED-CF71B4566F47}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{0E291496-2066-4486-BC8B-F9F763C1F66F}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{0EE85FAD-1949-4D63-A7B6-83C4E82E4F9E}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{0F44A105-D1B7-483C-A6C7-CA8D8A918CB5}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{0F7C00EE-F8C5-48D5-A9BA-347C6B89268D}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{106B29C7-776D-4D97-B1FC-EBF9E4261D10}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{1081A9A3-009C-4BB5-80F1-5F801FE9DC3F}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{10F2C84D-F2ED-43E1-8634-B6B197A3C783}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{11086470-FA8B-4205-AF4C-8F3F2B64927A}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{123DC1A5-EB7A-4691-A542-05A2C0D89F47}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{12930620-0911-4BC5-B662-D5767CDDCA40}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{136AE38C-92AA-4458-9EE3-1EF099318131}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{138EC93A-8578-44EA-89B8-A097CCFDF3D2}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{138F3FFE-FA11-48DB-903B-303D32EF6BBE}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{13B99CE4-5DE2-44FB-9F81-136F435DBA4B}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{13C0351E-2591-4EC2-9438-17C804B3D844}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{13D0FDDB-4694-4278-AD49-1737CAA669F3}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{14057DDF-0AC5-42B3-A8D1-55F15C83CA1E}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{143C7FFA-F492-47A7-8330-D6D8B3458067}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{143EE4FC-346E-4251-BC25-FBC6E79BB1BF}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{14670CB2-A7B3-4C04-B855-21136A5FFB0A}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{146C6C00-22A0-4FDC-B0DA-BC85B73A2D73}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{146E1E0F-ABC3-4F04-A7F9-9BA78A04303E}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{1479A378-566E-43B6-8626-00E5A148A4E7}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{1480B6F2-A139-45F0-814C-FF45B394E132}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{148BFE2D-8182-403D-B1C3-F761F1B2B7FC}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{14A98EB6-C019-4E2C-BEE8-F57E9F17604D}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{14CE0723-DF1E-41F4-9E3F-8E28D55A1635}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{14D30462-5ABB-4ABD-8C3D-E6532226D6F1}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{14F59CEC-EDB8-484F-9F0E-BF5AAA029317}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{152247F2-5555-45A2-B7B9-AAEFE55B58C0}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{1565F086-81AF-4626-A83A-BF77B20449F8}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{15D3C420-B828-4762-AC28-5F23B4CEC415}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{15F8A176-7230-489A-8AFB-4DEC4F30EDB5}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{163A78AF-2824-4D1E-8957-9E8A12500688}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{166C6E5E-8FAF-4B99-BBA8-D082C9119E76}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{1678E76A-2634-4B12-86CE-AF01A23810D6}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{16A42E6D-564F-4943-8AD9-DCC5A95576C8}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{16CD1451-8497-4F62-8FC4-2E341CD7B9C0}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{16DB41DE-7701-49C2-BDD6-FCE1266A9F90}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{1701E5ED-2C67-43F5-93BC-D38A74C1639F}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{176A92E2-9552-4186-B2E6-278455D1D37C}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{1787A21C-526A-4B96-B018-7703AAFE70F8}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{179EF6B0-CC41-4082-A303-C21355C44405}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{17E700F4-C934-4091-AD37-A54956D04718}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{17EEBD96-083F-476B-97F9-AF5716443F3E}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{187B8226-D750-4174-B9F1-2F029FE7632A}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{188DF25A-9465-4467-BF8C-267E2F698C8E}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{18F5A78A-CFAE-4A0B-B5AF-1B16793B92AC}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{190E6B79-9711-4B3B-9D77-786AC58BA333}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{190EA98B-DECE-43C6-AB63-EFD62591AB5E}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{1A90C2F0-7EE9-4FEB-96BD-B4DE1DB39CDF}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{1AA8B8FE-4A63-4DF6-BB9B-3AC7558A190A}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{1AE69FC1-485A-42D5-8826-7C8554C48349}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{1B45B819-8077-4E82-B8D7-7A8CE6A32BC5}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{1BE977EA-9DE3-4960-9251-97CC237472B1}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{1BF6EEFF-3409-4A2A-89E5-ACEBC158D10C}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{1C6D6288-F49B-4DA2-ADD9-D40650E13CD5}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{1E1426DF-EEF9-4897-83E6-BA60840A23A3}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{1E8E2E7C-51AC-4273-B2F9-31B34F36FB26}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{1EB6A028-9814-4B3C-83FE-2E7A72D8CA13}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{1EE3D133-B8F6-43DD-AF89-DEDA2B1B0EC0}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{1F38CE7E-E0F3-46CE-900B-301F83B91F28}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{2082CCAE-F1B5-4EAC-8B46-F183693E835A}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{2088B667-9DEA-43B1-8136-D0FF4F2350C0}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{20C2C87A-3F6E-46F5-8CD2-DA5DCD7248C6}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{20DD6C38-3499-4482-B03B-44445AD89B37}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{213AA2E3-A9CF-4B33-A87E-82ECB31CAFEC}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{21450D04-34A5-4EAC-B9C8-348AEDB9D001}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{2160CF1E-63B4-4154-9329-3E2183B4F684}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{21624361-9546-43A5-9001-D03A59418DBB}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{22134C79-FA68-4E36-BD01-298F201E9D96}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{22801095-F6AF-439F-B8E8-8E374AF13CDF}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{22822CA6-5EF9-4254-9810-CB98E5E44DE0}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{228E6E94-E484-4C72-A2FB-AA3244E13C5E}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{2297EAFE-AEA8-4CEB-AB31-6996C2B31026}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{22B53F49-970E-43A9-B33D-74F6BEB25B90}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{22C24A86-FFE4-44FB-AC87-84F9DCAB27B3}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{22CC2578-757B-4EE2-B14C-A918A1FB5D81}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{22EAAA70-24C3-4B19-AF72-9F38CDAC863D}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{22F88814-C9CF-49CE-8089-E822C5C3E775}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{2362C8C1-D754-49B4-8ECF-12F0BD77A456}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{23685FD9-35A4-46EC-9597-4DB983713980}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{2377ECA0-B06E-4B11-82CF-4881478F7D7C}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{237ABBEB-066D-422A-8597-A24C26807B6E}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{239B5E66-97D4-4305-B14B-EC2C8A920056}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{23ED01D4-EB87-468B-8E82-21BA22749A4A}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{24135BB6-03D7-4A2B-AAF4-DEB7926A5FEC}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{2468FE15-5970-40F2-A7C9-1824048C5D69}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{248E8AB9-24C6-40A2-AA64-7D6DACBE292E}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{24932E04-52C0-4D3E-AC67-29233574FFAB}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{25CC3A96-20E7-4692-8760-624C2705BBA2}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{260716CD-E102-4EEF-8056-8799DC12F867}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{26378258-B464-494B-B9EC-194483C526A0}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{2674E7A5-DD58-4E62-B43A-6D6EA6656D90}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{26E675B9-A8E8-429A-8523-ABE3CD8702F9}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{274EC5C1-04BC-49E1-9BF5-85DB4B0E652B}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{27C9B60D-1646-46F3-8B41-49E278043E5C}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{2845BC05-DA74-4B77-AE55-6F22BD858897}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{2858E7B6-C660-4265-8C34-6EA37530D0DA}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{28F781F2-6413-4728-A88D-18AD44ED0D45}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{2933BAC2-E257-4F83-80EA-7D0E89B7E6B0}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{29343333-A9D2-4155-918F-7608B538B15F}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{2957B775-8DDB-45F3-9288-6E5C338AC078}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{297F51AB-BCFD-421C-833F-73F0A115A969}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{29B38D4E-FC7E-40A4-9F5A-FBB935B83EF2}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{29CFD681-7E51-456B-830F-626497C394E3}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{29DC684E-AA35-4954-8110-0C10D49413C7}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{29E0B198-5ADB-409C-BC5D-1C8BE1078099}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{29F0D1A7-938F-419B-AAB4-4EDC611EA3FF}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{2A092FF0-3263-4EAE-97B1-B084BFCCC991}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{2A79DCCC-4F3E-4937-AFFA-5FB08C03B85C}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{2A806D79-CD59-48CE-AEDA-40EC0D6F420F}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{2BF4CD7B-8247-4502-A933-1BD33CC3D347}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{2C092CD7-1B98-4BCE-BA84-5FAD7B603E3C}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{2C3EB5AC-C71E-4D6D-8C0A-6F971423F92F}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{2C798B11-9456-4C96-8BA0-37F3747D1949}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{2CB1B0EF-B2BE-4565-A724-2490DC846109}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{2CDBBD9A-254C-4A70-A088-2C11F5ACF478}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{2D5F4EBB-55A4-4A67-B47B-AD9652C39BCA}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{2D8F2E8D-7FAD-4FC4-9EFC-574B7B5319FB}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{2E4F182E-0B71-4817-ADF7-1AE1180073DE}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{2E5BE28C-CBEF-45F3-B723-ED57B9F975A5}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{2E9533C9-271F-41DE-A240-9542A70FAF59}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{2ED72EED-B589-4E9B-BBDE-8FBEE72040F8}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{2F9EC2E6-0A4C-4703-88A9-29E0A4A7BAFC}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{2FC13C4A-A162-4523-AECD-E6FF55E62189}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{30115A9E-8E0D-4099-9DFD-D02025CE289C}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{301F8D83-F06D-4AF6-8931-A9F3435BA0AC}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{3027D7B3-05B7-4682-A67B-B8CE5B4ED873}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{31D1D8D5-F202-4415-919A-B05EDBD0EE4D}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{31F1A96C-9388-44D5-B4C1-E81E22DFFC50}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{32236923-9388-48F5-A077-537AC4BE602E}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{32447CE3-197F-45A3-B935-31DCC1B05109}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{329285EC-4108-420C-BD86-EDE1D1DE299D}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{32CDC7A6-9333-442A-8164-A111B6A27D9D}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{3330BA4E-9A7C-4F7A-84BA-7F6EB77B4478}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{33758960-BCAF-47A9-8F29-4AF537CC74D6}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{337CBE35-0D51-4A40-A031-4D1739357152}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{33B6F5DD-83FD-4021-B46B-309E602927D4}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{33C60C87-CE1D-4FB0-9FE3-8B267B156904}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{3442A6C0-6BBE-49A7-B88D-1B5A5C80CEA9}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{3445242F-E43C-43B3-A249-8547D4F4F945}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{344D1C44-90B0-4ED4-9936-2E98B9286C81}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{34856612-5E4D-4876-AE72-A69652CB030F}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{355C78EE-7ED6-4386-9A23-60B4293BF832}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{3586D961-2B6C-4EFD-9A87-B98470CEDCB5}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{35A51AD6-947D-4FDE-B873-2F855CB738DA}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{35ABE5C6-A346-4727-B3FC-7D5DA30F3364}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{35E5AE8A-3799-4F51-9BF2-A3E802AD4E8C}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{35E69E1A-810D-4EAD-A6B1-11CFEAB3CEE8}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{364EB396-5239-4DFC-9111-443FD11FD4F6}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{3668B129-3C6E-4E9D-A90E-BE2AF0262CA8}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{36A1341F-D7BF-4194-A75F-B42A81E60B4F}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{36C9AFAA-A5ED-4EC4-83CC-9E231BEF6864}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{37731522-ACFF-4D28-A145-6CFADEE7F790}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{37E477AB-C649-4B89-96E2-CB9950DE8C5F}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{38105AB7-77D7-4D9F-B3B4-FE86D8E2BDE8}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{3812CA95-84EE-4AD2-AFA7-D9598B6374E3}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{38191753-59D4-4A76-B611-30ADD1F4C11A}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{384FE913-C502-4D9C-977C-0BBF1CB60E89}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{3865A747-8D9E-4501-B2F6-1441063DDF9D}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{38A9C691-630B-49C1-A128-7A8E5BFDF786}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{395030B3-F30E-480F-8525-5CAE8649DE8C}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{39806F6A-3636-4101-A411-FF66C6D59201}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{3A0A286C-4328-42B8-9D51-CF29E4DCDC4A}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{3A412411-8D05-4F93-9504-BF4DFAB76A5A}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{3A8FE633-70D3-436B-ABD8-9B403719647F}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{3AB79E4B-8DD5-47F9-B031-461238AFB02B}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{3B085AED-95AD-419A-8831-728C3F532C33}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{3B3DA4E1-E94F-47F9-B024-1A2E05F0FB49}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{3B3E6F8E-16F9-46A3-A3E8-F121BBEF4D57}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{3B943827-FD03-4C89-A8CF-67D9907D3C5E}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{3C5B896A-9757-4034-AFC6-EC7230344E3A}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{3C7DB56B-95B7-45E1-B73A-42F5BE94F331}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{3CC05E39-2531-409B-98BE-2A76E336A7B9}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{3CC33922-D78A-44AE-B0B0-6B1F1712530F}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{3CD980EA-49DA-4BEE-9E1B-634899C1AC3B}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{3CF531E7-FE34-427E-8FDD-0E041373C057}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{3D0C39E3-1990-4408-A79C-C5A989BE9397}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{3D58894A-843E-4950-9A80-54719F32B549}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{3E462658-BF65-43D9-856A-66534D8556CB}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{3E686679-63E9-4BF5-8BE7-2B58F596078E}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{3F332B4F-A68C-49D9-B54E-DCCCD892DE50}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{3F72CB15-33FA-4578-BA29-4C308F5A6251}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{3FCBE219-3B5D-4FC5-A606-9E02D9756B6F}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{400307AD-4905-4D3C-A827-039DAF7E436E}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{400CA94A-B188-4842-B50B-E404345F0DC7}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{4019A260-4EFB-498D-8C7D-71B2DD805E35}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{408D87FD-B2B3-43F7-8B85-544B921BF84F}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{40D83A43-3EC1-44A2-AE83-F454F53D5030}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{41B52A59-3865-42CC-A533-E673B69DE762}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{41C16A02-F172-4B67-94B7-0D7879A65728}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{41D419AF-0B82-4505-9903-C4C50DB04AE2}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{41F19381-C0A9-4BF4-B57E-4CCF4147A366}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{422153EF-AA7E-46B5-B17D-C99D9B9EB5F0}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{42260C13-42E2-4611-AFBE-04F031A53F13}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{4288E0F6-249F-4D7B-B553-BE5880402417}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{42F25DD7-8C09-4286-B97E-24C2181F11D6}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{43339528-593B-40DF-8DDB-31BDBFCB0EE2}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{43F0A5DE-D4D9-4F57-8600-C32B7BDF8B39}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{446239FA-C172-4805-BFA9-052453C16675}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{44FDFBD9-6857-48A8-9A52-6FDC9A8EFD09}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{4551B4BF-EEE3-4CBA-8520-1466177F269F}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{4553E208-799A-4AF6-952A-7256CA1E4A82}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{45F5C518-2FB2-4323-B142-2CE8B261E799}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{46423E01-E628-4B08-AF9D-3F967461951B}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{4642DB69-7F49-4ECD-AC3A-4FE03F05BC53}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{46566485-1B33-41D3-B47B-164D288A8BCA}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{465C82D1-E4FB-4D41-97E1-F009C18BEA94}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{4685E60C-4FDF-445E-8683-AD046E8F600B}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{46D898F7-94C1-43DC-9D41-40AD8F07D9B2}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{46F4BD3C-B124-4903-B466-BC0FAF40AE11}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{470D2769-788C-41F2-8F7B-16037ADB9C02}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{477AE052-4EB8-4136-BE4A-EABBC163197C}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{478522F6-1C37-407B-9A87-812A73E1280E}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{48906078-829F-48EA-9D99-C7CC3396A827}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{48AB678D-7E8C-428F-958E-8643FA7B3997}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{492D5ECF-68F4-4393-BB56-E5A0E4ED4D0A}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{492FC0A9-E116-4EB1-9C13-0FE08F6AF3E0}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{4A314B21-700C-4EB2-A695-ACBC520E975E}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{4A4038C4-38A8-468B-B2DF-1B6051354925}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{4A52DBD8-FD7C-4807-9FC8-D267705F8CC5}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{4A75A387-930D-47F1-A4F3-C19E71AE0239}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{4A7BA46C-1025-4FD4-A572-FEDEF9429A08}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{4ADDEA16-BA06-4A23-94E3-A7ED5272F875}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{4AF907F0-CC93-4B98-A98E-8A3BE47FBE7E}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{4B2DD77F-2C77-4A13-86CA-FDC8AF772BED}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{4B443F6C-0175-451F-B936-1C4F896F73D5}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{4B88C35F-F569-4D78-856E-BE59B430CB27}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{4C0C077C-1E60-467E-93D3-F34D34A1C274}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{4C3A6302-F29E-4E7E-8EF9-70F84B956D6D}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{4C4B783B-73C5-4A1B-B646-846C4EE21012}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{4C779826-6F8D-4AD0-A7C5-58DEBD04E0D5}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{4C91F66F-4116-41AF-B97B-93582E267753}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{4CBDC779-D632-4962-A9E1-CF0AD0825331}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{4CCE7CA8-11CA-4ABE-9BA9-0C28EEF9E9D7}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{4D1E4121-8E21-4853-AE61-0A119DCAD3A4}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{4D56D8B1-07D6-47E7-9EC2-ED2F6D6A28DA}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{4D65A40A-728C-4744-AACB-5B6B1B822337}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{4DB9A2AA-C87D-41E7-B6AE-24D6D0481338}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{4E53D34E-101B-46B5-B9B5-40156718BAD1}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{4E77317B-5DDB-488E-9437-80F0AE7E85B1}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{4EBC50FD-4DCF-48F3-80A8-B46AAF0E08E2}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{4ECF1DCB-3AED-43AF-81FD-AA103AD7B869}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{4EECBCAD-F575-4AE2-8C40-3855696D4429}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{4F38EBBF-8337-4ADB-BDF7-F8A6A5A524FE}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{4F5A6932-26FD-4BEC-90C5-49DB3E2891EA}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{4F763048-97A7-4592-BC08-794BE95F4872}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{4F84A615-A2E6-4EDF-9503-55C0E492C618}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{4F8BB659-C149-4D2F-AFEA-BF5F9EF29F4E}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{4FA6CD2E-9844-4978-B8F0-53FB32E508A0}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{4FCD56AD-9DCA-4F7C-96F4-5EDE5A0CA7CE}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{504FA430-EE67-458F-90F0-4C1AB347EB17}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{514372F0-00C2-4D08-A9D5-6BB16B790B19}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{51588A2C-9D30-4BC5-B079-2672F7E714FD}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{5172F5E9-C026-4530-8EFC-069FBF6A103E}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{5237B051-18F8-480B-8696-4AC6674132C1}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{5238B3CB-4E98-45B9-98B0-00C8A5F96D55}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{525E1CD3-8EC6-4BF8-897F-ACB3B0328072}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{5286DC2A-37B3-4D9F-A6B7-7FED52145D5F}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{52DB8CD0-DF83-482C-868C-438EA5CDEC19}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{53D7AA58-4550-446D-A9BA-60FC323D38AD}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{543E26EB-32A3-4410-B6ED-5CB88D2AB15C}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{543F8925-411B-47CD-8F78-573E2F275655}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{5545E068-B388-479F-9A3B-292A3F2BBC47}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{556A7730-8B30-46B7-980D-CE77DA9FFEF2}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{55E35F24-BD6E-436F-982E-662FE5FFEF90}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{5609654F-5FB6-4BA4-9316-99099B5181AA}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{562A6599-F5A2-43A6-A0DE-F66B3942D3FB}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{567BCB9B-7BA9-4CA0-8C08-9BDDDBFDD57E}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{56B9F089-4D0B-4AE4-B9B2-B502F93DEC24}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{5712157B-143E-43E2-9077-654DA8552E89}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{574A42BA-223D-4603-8028-DC8B58976D61}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{57AD3F52-6881-4076-A46C-011AF0D73A6B}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{57C76BF8-0A13-413A-A079-5C0DC1B3E6B1}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{58CFA418-EC4C-4B3D-A0AA-537B6BBAC58B}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{58D3C276-C943-4CBD-914F-91B02BFD0E5A}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{5956BDCD-3E81-49C6-8D3D-BB5A74AB1995}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{5A2BAC59-E975-4C0D-A8B2-FC634EE5988B}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{5A4C6A93-E366-493B-AD62-8DA7A80DA6FF}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{5A556B14-B7A8-4BFE-B89E-FABDE19DF219}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{5A57A4A8-3A00-41BE-BD00-EB7C08E0951A}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{5AC1FEC2-8921-4228-AECB-480360C6E5AB}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{5BBCCCC3-A891-4090-9645-FC71FA32301D}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{5BCA140D-C966-4BE5-8F60-78B079A0986A}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{5BCB2F15-E55C-452C-9353-AC51FBE3FE7B}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{5BF450CF-5D99-4359-BFCA-1F51986354CB}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{5C2F08CF-40CB-43C0-9536-D77559AA0EEA}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{5D0256BD-B2F8-41D3-98A7-45DF4FAE345C}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{5D239777-3156-40E8-8140-DEFBCAA2D98D}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{5D6850AB-5F89-4460-92DE-824E98796BFB}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{5D7B5DC0-A315-4629-834E-A0866BEE5451}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{5DCCC4A0-663B-4D41-AEDC-C84B35901A6F}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{5DCD3DDE-F982-46D9-ABE3-FEE3A303C79A}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{5E585CAB-FD3D-45F8-8143-9CEB32E4C571}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{5EB7177D-754D-4AE4-B64A-54865EF64784}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{5F1E2BA2-806F-4A31-A8A9-BDFB43DB94A8}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{5F6D15EE-3E9D-4F7D-8288-DD05EC731BE5}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{5F77BDB4-1504-48A4-8E9B-7FCA37D6609C}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{606F2EA9-143F-4284-AD12-FE3BDBADB733}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{6098AEE9-A0EA-41F3-8461-C45A4C7D5093}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{61258718-9EBB-432B-A9F5-9F12FF992631}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{61635E07-9DFD-42CE-97BD-A5F661C3138D}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{61801AA0-2C66-4400-AA5A-3208E48BC927}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{6195EBEB-4C51-4521-A6DF-265F63268DC3}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{61A4944D-E343-49D3-AA2A-B1DF9715E145}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{61CEDB43-5AF9-43D9-AB16-09F044E7067F}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{61F7BA5E-6A3C-48A0-9260-9DB6C60CF8A3}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{62009346-B54A-41E7-9C97-F3263D4B5F61}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{623B8708-FE16-4468-9ED9-1FE59050DDA8}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{6316ED6E-106D-4801-AF79-9EA7BF3C5A1B}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{6330DA28-4A79-4661-BCEF-21631C486012}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{637B0373-335E-4F64-BCC5-5966D7B0772F}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{6413FD35-0BB7-4EBB-8F78-60267B339312}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{6456FA82-C7B7-478C-8DDE-2F772A99E64A}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{652CB739-39FD-4A14-B87A-21A576A292D3}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{65BA3084-3E36-492A-B01A-F50D39911AA8}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{666578DE-B60C-457E-9D29-B39892E9DECD}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{666C6890-58AA-4F26-B7C3-541E90164BA3}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{668603DF-5D20-4627-B962-3A7704C2BC15}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{66C9C1A0-6AFE-4AD5-B535-3278049FED56}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{675C1A86-A306-4277-8A71-94B5F0677B49}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{67808DB8-EF77-45C1-A90A-A309F9AC8B9D}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{67D62C2E-DF59-40C4-A8B4-1E7849ADF360}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{67DD9184-D480-4D6F-BEF1-573C5E0FA3C8}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{6805A891-92C4-4FA1-828F-815C082A83FC}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{6862766F-D239-47AF-88E9-B1B39FF20A0B}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{6898E326-0B80-4E87-BCC3-BF6560FC673B}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{68A2ED47-5DE9-47FC-89C5-38923C17DEE0}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{68E5F0DB-7FB3-499A-9180-EE3E661783FE}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{68FA8B59-DE77-4E1E-92D1-747D10FF84D2}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{6942FCA4-16DC-47CB-8661-D3D115809051}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{69F75BDA-D14A-4CD1-A7AA-7E817932D4C9}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{6A209426-B978-492B-B708-47AC9EFC8C90}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{6AAE1B0A-6323-451D-9471-A1A665614AFF}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{6AD050CD-C80F-492F-96B2-94E1F2461E07}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{6BC6616B-93F0-4BFF-88A3-C1FE0AAC8C9C}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{6C048B00-23F4-4A66-9C77-93271EEABDE8}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{6C453CC7-3714-4408-A243-C9C610809F4B}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{6C779EF4-27F3-4CF2-81A0-83C1A8A78C86}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{6CAEA475-A67B-43F0-A769-EDCAE9D1894D}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{6CC1D482-8078-4E83-A5AB-12F6ED41E487}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{6CEA7E80-1E8E-4BFE-8AC9-3A42CA1A8444}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{6CED1F78-2660-4E85-9035-C20B1B38FB5D}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{6D7B7C5E-9CE5-4329-BCC2-6D6CE12FF0BD}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{6DD0A87A-1EF3-4F2B-8D49-1FEFB44C87FC}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{6DEA9422-2333-423A-8D75-8C06B53993F9}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{6E4728D6-E221-4540-B351-A601D3BEDDE0}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{6E4956FC-3A4B-4461-A847-0D4192B1680E}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{6E73FD9C-0535-4BBC-81A8-44DC32711F47}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{6E8C8257-D7E4-455E-82BC-61D381EA384E}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{6F013BFB-A113-40B1-A086-AA31D3ED657A}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{6F476140-CAEE-4692-B8F8-9EF23E2789FB}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{6F60584C-54C0-43EC-9F73-12DE287791FD}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{6FBE5362-60BA-48B2-8D96-A6E7A52D51D0}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{7025862A-8459-4A00-A524-7D56281BE091}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{715F5D3A-9D81-49C6-8639-ECFCB5651BF8}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{71AB4638-81DB-4635-8749-21AAC1E01E58}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{7222DDCC-6CB1-4858-8DB3-940D9FFE21D3}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{72A319B9-2BDC-4178-ABE6-C94BEF16F54E}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{72B0A816-459B-45BE-87E4-6426770072C1}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{72B7CF76-96EF-4D81-8513-5F3F07AA5446}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{732C2A3F-F7CD-483A-9A29-5A241D1C4ACD}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{7380EB34-B729-4EE2-8D06-59064A1DA831}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{73A45111-B00B-40CC-A1A2-C5F089A2AFC9}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{73EDC083-8917-4A80-A210-DF3422CC29DB}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{74E6C6B0-4E39-48A2-AB68-E69D403F3C4D}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{75A21F67-06A8-4A12-B7A9-7AB94BF262A0}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{76013C93-561D-4941-92E9-D663F133533C}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{7606F96E-472E-4D30-AE40-07FCF45D7E73}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{76166F1B-8BA7-461F-9CD2-D480C0CF27DC}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{76F49F5D-D23D-45A5-8423-B2E8C5D73855}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{76FBED18-1BF2-47AB-844B-B01DFD3DF304}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{770C022D-8EE3-475D-A117-E0AF94447749}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{771FBF82-3DFD-40DD-9BA5-162F2027BA03}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{77299E67-8B41-4399-94BF-19152F14EAB3}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{778D9FD4-7346-473B-816F-4F906347F8F4}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{77ACCF11-A00E-44F0-BFF2-BB8D0985AE3C}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{781B4132-473D-40A9-8FE6-12D34E00A0BC}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{7856345A-9356-4719-ADCB-6503AF768BD6}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{7904F1FB-4973-4289-8904-7F574D60CA48}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{7935A1C4-1507-4A6F-8C9B-AC690328B319}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{795CABD9-2995-47DC-81DE-9FCCA2A81282}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{79B7EFAE-C60F-4A69-972B-A4C65292A4DE}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{7A44EBDF-2F76-427D-94A7-FD806A1C68C4}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{7A8E6572-7DEF-461E-854C-FAA7A3EB3B61}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{7B06AE9F-D1B4-4802-84F9-799591330192}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{7BE7080B-38F4-4C05-9FF1-6A63D5176430}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{7CAB70A7-4486-4156-B55F-9A99704A4306}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{7CE4FB70-300D-4B28-AE0A-6DC250917EB1}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{7D0BAF1C-7DF3-4E8B-9F26-BE731DC614D1}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{7D1E9546-AC11-45F4-9C9E-6B834698CBA3}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{7DD2039F-B153-45CC-9262-AB169AC515FE}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{7E1DC06D-C29E-4315-AACE-ADB07D7BDC30}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{7EF6B049-B348-4291-A92A-7E009938AA01}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{7F526A39-F8AF-4F31-A4F2-03D8F4BE148F}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{7FBFF7B6-0621-4E42-950C-9BC2085ED003}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{80717576-DF96-48F6-88A0-9A5848AE1D9A}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{80CEA8B2-A4A9-4C4F-AFD2-22528C2907AF}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{817B4780-4D03-405F-BAC8-4360D2F1DBD3}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{818B3DDA-359B-4048-B48A-06E2A73AEC88}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{81A099B7-BFBB-48AC-944E-C04FE3570C73}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{81AAE501-8654-46E2-96D0-B2E2D7738ECD}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{81E3C338-C569-4F0C-A611-B4A602FEA03E}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{8244349D-09E6-4AED-884C-55ACAE2A6B07}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{824BE841-DB49-4682-926D-A679B7A0E42B}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{82BA5422-7CA4-48D0-B2CE-FA7E2A19F8D7}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{82C1DC8A-943D-42BB-8E46-22DDC114BA7F}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{82EB675B-2804-4DF7-A2F5-68821A9353C1}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{83AE7660-04A9-4B29-8A2E-707924431513}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{83BB24C5-E514-43E9-B327-B525EFA92B69}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{8423292E-8BB9-4B1F-8554-44B222708018}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{84B3B73E-6887-407D-9255-D899DECF9EAF}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{84CE0EF7-7038-4125-A8A7-97204DC701A6}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{84E9A5D6-739E-4427-BBA7-6A637B1D8EB4}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{853A45F2-FDA1-43F9-B940-587C1CF21109}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{855387CE-3A34-4EE4-940A-66F6F1671163}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{85AAB295-0E0A-45BE-A1D5-90F95E34F50F}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{85AB624F-779F-40C8-B956-8723A3D17598}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{85DF2F4B-41A0-42AF-B816-EA14CDFA29B4}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{85F60712-053B-4AAA-96C9-4B08F83577C5}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{86EE926E-86BC-406B-B11F-4C070820BCBD}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{8846D1AE-08BB-44DB-BE91-3B838F58D01E}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{886D58F7-8583-4113-AB51-358CCD774809}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{890258A1-04B5-49D6-B90F-81A6B5AD9C04}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{891F2A5B-7D96-4721-A4A5-173A839D7203}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{8951719D-3741-4B8B-AD34-BA762E078597}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{89712827-30A8-4AF2-A6C2-E4FF36875AB1}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{8989AA2C-B42F-4047-93F9-17C86DC0E5AE}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{89B0AE1D-052E-44F4-B474-621AA81A3D92}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{8A8400B6-4CE0-4504-BF00-D73C36BDEDB4}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{8AB89E73-67B7-421C-AE56-3D8AB53FDFFE}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{8ADD664E-02B0-4E47-AA42-7B454526510F}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{8B5D6148-4A71-405E-9284-6CD9B1EB6095}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{8B64D8DC-05D4-4287-B06B-893E70A3EE04}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{8B76628D-A396-43DF-B7D8-47A1036CE29F}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{8B77ED61-282D-4CBC-8747-F18017EDF21D}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{8B9CCC66-4416-46A7-ACD7-747B418E94B5}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{8BF3FEBC-ADAA-44EA-B89F-1CBCF7CF3FB3}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{8BF65D65-8CFF-4B42-8381-9CDD79D891CA}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{8C8FE0AC-7002-421A-A959-4F244134AEEA}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{8CCB305F-CA29-4478-B899-84F0E12BBB36}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{8D3E6B97-6E0D-4019-9DBC-D4891EA4AFD2}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{8E089587-A223-4D8C-9CAF-FC213414CD24}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{8EA7A5D8-597F-4C96-A6E8-95CAA2FEE109}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{8ECFC54C-81A2-4E3A-9D92-81B1D97A3E77}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{8EE02CD1-4377-41AE-A0E8-927366FE1E57}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{8F095D3B-8869-4217-93CA-4F17703ED375}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{8F859DFD-81A2-420C-BCEE-C498A636FAEC}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{8F8E4550-96A8-4758-89F0-8E44DC4AEE49}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{8F9A6637-01BB-48DC-8BE4-162BE88539D4}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{8FA9C68A-DA20-404E-B528-B639F53FB931}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{8FB5598F-E648-47B0-8EF2-7B5BB7020D49}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{8FC315D4-CEDB-4AEE-8DCC-4022B83C7CAA}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{8FD8E6E4-3AE0-43CD-9F3A-F255B764C97C}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{8FEDAB74-72ED-4F77-8093-FF7300A0200E}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{902A4874-2722-46FD-BEB5-309A019046A4}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{905CB9D6-9942-46E3-B826-FDF90711B55A}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{9070F6F0-63F1-48C8-8955-AC084DA744A4}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{90CAA841-C633-430D-94E0-EC03A0247968}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{90CADE91-175D-4421-99E4-FC1FFCAB0697}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{9153834D-5727-4980-AC28-C17FDA635C72}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{919A84D5-09FA-4438-A408-8B6D2117A971}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{91CA5D82-2A1A-47AC-A0DE-E404F2C78E49}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{91D00F5C-040A-4180-B048-AA586BA16402}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{92C4BAE0-0353-4FEA-AC0A-BFC2C5CA7FD7}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{93A63F7A-2381-4B0F-B2AA-1A155B1DDB9E}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{949AD78B-7BD6-4CF4-965D-083C050FD668}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{94A938E8-C866-4A00-A3D5-AAFBE87DCF07}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{94CEA028-0D0F-4B2D-86B7-36021B9BD6D3}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{9501E2DD-CB60-4DC3-B039-9F3F3B9207FF}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{9505C00E-8A36-46FE-AA29-B4A471E38802}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{955325CD-84F8-44C3-A286-0821F20EB4FC}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{968543B0-148E-4C09-B384-1ADEB92564E9}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{9694A4FF-C7D0-43DE-821B-F39A66008D8B}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{96A797F5-64EA-44C4-8BE8-7A5B8C595FE7}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{96BF8AC2-F8F7-4956-A4B1-D6CCBA521204}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{96D071DC-DC7D-427F-B3A7-1F5BB74E5253}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{974E886E-7D46-4CD8-B400-7F1557CE9496}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{9785B78A-9AB1-4B98-9565-B210DC6C96AE}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{97A27C35-0590-4AC2-A184-392BF699BBCE}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{97C62A6C-AA58-4CF4-8CE1-DEFF5555365B}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{97FDFDD4-A4DB-471B-9F8B-3C195DFDEE36}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{980B5D8B-2F74-426F-A13C-5D36E5B0F296}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{980D1DEB-1C0D-4B40-8F61-D5AF4A6216DA}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{987A0C47-6D4F-4854-9FDF-B17B21C7946C}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{98850E29-AC87-4E82-A9EE-E37E7875A92F}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{98A94077-67EB-4D04-B2B0-23332A84E8CA}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{98BB8C85-9B2F-4DDC-B251-3EBCB815CF23}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{98D8660B-FEC9-47C4-B01F-7B7D955A07F1}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{98DE04AB-BD83-4A5E-B3DD-F36E79E75FC7}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{9939EBA1-A566-4BA4-9794-E3DDBD294A33}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{9963BE4B-9202-4F06-AC18-8BA83FCA4D28}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{996FB164-A294-40DD-9DAD-09E97772EED7}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{9A0DA842-3373-4AC0-B36C-7185C3368DAC}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{9A178052-9902-4B7B-8403-8F459D529C14}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{9A2CEEEB-BF47-41BD-BEC2-2D34D57B7F27}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{9A738096-7D58-4413-A518-03288452B971}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{9B0F3C77-E14B-4152-9540-A3C1B822E9FC}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{9B146D7F-B1B1-4356-A7DB-64F9B451E174}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{9B1CB861-498F-4F3C-B237-0AD5904A0CAF}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{9B6BD41D-CE5E-42C8-827D-22A279FE678E}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{9B6F7637-D7A3-4BD1-AF8B-2912EF20F1F5}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{9B8808D2-4C88-45BB-AE39-A39EC0BD860C}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{9BC5D7BB-96B0-46CE-ADCD-6E72DC62548C}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{9C1954DB-7A49-4390-9A5C-5B2DA1976B1C}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{9C656AAE-05AF-4B52-90EF-E194933D1B6A}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{9C708565-60F9-48B6-AC2B-1BAA18BE2D2A}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{9C7FFECF-79FB-47E1-A698-37A490FEEC13}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{9C8761B7-3104-4ACC-98E0-5C1016B729C9}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{9CA26488-B6E5-4C49-94F3-A3D920EF0623}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{9CE272A0-CFC9-4DA6-9FC2-E4A94105AE70}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{9CE77EE9-442F-4B3B-A507-4388DBDCF446}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{9CFF2912-1775-4FDF-AAA7-84C1710B16F1}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{9DA1355E-4ACE-4553-8F45-FC15FEC6BD7A}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{9DBC3355-FD2E-4E0F-87D7-964ECC9910E1}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{9DCD6F9C-D5A1-4EE9-9ED0-F960B974FA9C}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{9DE7D8B3-F807-40EE-8962-98634A25EB34}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{9DF9A6BD-36DE-4B1B-AB7F-D8D3E7FE2BD5}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{9E0BDAC7-AC33-4BEF-B521-E1EE95EE78D4}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{9E0D1F22-E6C4-40F4-B280-EDDC496CF05D}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{9E213294-86C1-46C5-AAE5-87C40F0C3F7A}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{9E6EFD56-A20A-48D6-A193-AAEC6B4D285F}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{9E6F8AAC-80D9-4D67-BFF1-E527F57943B2}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{9EC1C6AE-D0EF-45AF-9AE5-A6D7E9954BD6}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{9F04DE7A-A9BC-4DFA-8FE1-37E9D3605CF4}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{9F05A1D9-0C3E-42ED-AED8-8581452C5730}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{9F2181EC-DA1A-4E35-833B-0F1669C20D44}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{9F254659-38AA-4427-B1D8-BF098074EB96}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{9F2A284D-57CE-4D23-B2FC-F7B0192D87CC}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{9F8D2BB0-345D-4EAF-9929-72AC37D02C6E}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{9FB63D53-71A4-4FC1-B8FF-0B823E6E009E}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{9FE9B614-A82F-4543-A524-0D9B542613AE}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{9FF45D10-D9BD-4A96-9199-23B15B540C34}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{A00434A8-DDD1-4364-A5CD-836FB4A81EF6}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{A0284CB1-739A-4035-8A7A-615763AF0B93}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{A03DE27E-E9D6-4E57-9917-8D5F4D23F961}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{A0E2325D-0F4E-4371-BFB8-FF1D3F299DD8}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{A23B235B-5899-4B99-B8FC-AAD525763381}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{A32DC0EC-07DF-46A5-B81F-5C120266362D}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{A3385A7F-1703-47C3-AC57-BC4F9A762E5D}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{A3703B4E-2EAB-4523-AC96-56E1347DEA59}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{A3B10DBD-A8A3-4CD4-9C0E-6945241CF933}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{A42511D6-AC15-47FA-B070-355682886CD5}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{A45D93D8-B237-4A36-AE0B-D3825F7D192D}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{A465E676-9916-44B6-9739-2CC2F428B888}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{A4A5DCB2-1053-4106-B620-673EE66968DD}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{A4A9AE67-25AA-4FAD-8838-5D8350688C40}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{A4C39848-CBD8-4C3F-BB50-8AE263042BAC}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{A4CAE95F-EEDA-4687-8D6E-4108B3935F74}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{A4E27094-2415-426B-849F-B9ED52BF1CBC}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{A4E63669-40CB-475A-BA2D-B6396AE707C4}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{A50A0FBA-FAD0-4967-8C0B-A2C697D986B4}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{A52FD03E-AA8D-45E9-9E6C-FCD7643A9F77}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{A59846BC-49D1-4980-A703-AB10132AB60D}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{A5A45AD5-8CA8-4329-A02F-A1A29074BA8A}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{A5FD3D7A-F047-476D-A31A-B811485663D3}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{A608644A-EB31-4DA0-9E56-CA6CC40D995B}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{A6495115-78FB-4FB2-80ED-501F94185F89}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{A6CDAC19-FEE7-45D7-8081-D609EB6C275A}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{A6F40EA8-1C6C-4C75-A261-D9720D5A7A21}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{A77D971A-5DD0-4045-9336-1FE270222476}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{A79DA3F3-4C29-4F8E-8F97-CD8D1EC57B0F}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{A7BAE428-3202-4E55-99BA-9AA196030EF9}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{A7C57C2A-2AF2-4B88-95D8-5E17C8BFDA0E}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{A7DB1F9A-8747-4A25-A8DB-01D8BE0A19A3}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{A8165D7A-E517-404A-8008-35784AE019ED}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{A843EA6B-D849-4326-A403-825B6FEB5342}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{A8446ECC-890B-4F0E-B7C3-2314691674A2}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{A9FFB309-3066-4B05-83D9-55C534D82E0E}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{AAAC5AF2-3BD2-4044-87F6-EC90D42933CE}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{AB2963C9-FDE9-4304-809A-41DF0DF91C63}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{AB746141-4F9C-4CB1-A6BF-C2ED6F2CDFE1}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{AB8C0EA7-EA51-4C36-B03E-550DE4057BD6}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{ABC3D5D8-5504-4DD3-8B40-66AA1A7B9860}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{AC119FDD-A0E0-44D8-9ACF-31B3F27A2E3F}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{AC35D47B-A9C9-4EA1-A9EE-33C2B947662B}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{AC9ED1C4-E106-42AE-9FF6-269EF6F043DE}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{ACCDC27A-51B1-4AFF-AC61-9FF0138C1E46}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{ADAB58AE-0B4B-4B10-B801-17A418A7A99A}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{AF2506F4-486B-4459-A9A9-BA930814485C}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{AF9E802B-61E1-4B15-B8AF-0558D1718F7D}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{AFCD6DE6-C241-4727-9C6B-6FB2C7F7BCF5}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{AFE6F7EF-0416-47BE-9375-4DC4C1328CB2}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{AFE8E982-E06D-4BDA-B3CA-55F6BC54DB0B}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{B004FA44-6AA1-453C-9957-388B33EBFEA3}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{B00C6DB1-6ADB-4603-B149-2A60F4D675A8}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{B0563CFC-B133-4E48-94FD-EE14C3B74DB0}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{B070557A-0230-4AC4-98D2-B2D49F9E32B2}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{B087DC05-00CB-49A5-8C33-4DA3E1D02CA4}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{B0CBA6FE-4C53-45B0-8CB2-652E0A5FCE58}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{B182C3DE-9CD2-4D83-97AD-7D7125EECBE3}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{B194E46D-3199-421E-B042-F50B9784DA6F}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{B1DF3788-40EB-4786-BBCD-E51934A3DC0B}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{B1E9ABC0-7A50-4FC0-B9C1-435FBF62BEFF}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{B1F09083-27EF-4815-A631-EE2B614B673C}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{B2BC5099-F27F-4F23-9D30-C04DFE546536}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{B2EF66F8-6B05-432C-8F3F-96F90D7B9E38}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{B3911580-3FF2-4598-B877-AB864AA81C74}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{B3F99B35-A0AF-472B-9E0E-AD2F1A8DCD46}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{B43D67D8-19D3-4670-ACD3-CAB540FA36F9}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{B4BDE5C4-F6AD-4914-A10B-C5C5CF66DEB8}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{B55A0020-794E-49B2-BB3B-CF35EDD83ED5}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{B5A0543D-16C5-4B13-8D6F-625F7925A0A0}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{B5AEB329-C9BF-46E4-B330-E31F2EBA141D}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{B5CAE303-51D3-4476-9327-0F47D0181CAE}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{B73156EB-C0E1-42FE-B4EE-696725ADDF44}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{B733AF8B-AE96-4D83-B77E-248C2FDBD72D}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{B76D8A4E-CFEF-49F1-8EAD-C6F8B1FC5568}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{B76F82F3-EC04-4334-B33E-913B1A2F890E}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{B7751ED5-5D56-4EA7-97C7-BDB37B91FCAF}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{B78BAF7E-81F8-46F9-8719-025E0B133830}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{B7B15CEE-21EF-437E-8C40-B4955986EB54}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{B89F89A2-829D-4E6D-A906-8CCC49DFC74D}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{B8D53BDF-202A-4242-9CB3-50B81A06E510}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{B92E0810-BC6F-48B7-85DD-B988B8473A64}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{B9753736-C66F-4731-B1D7-F206462FFA0E}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{BA1E0FF1-5087-4799-A2EA-CECA7CC27450}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{BA446ABA-0425-493F-974F-5025677A2689}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{BA892F8E-C0D5-48BF-AB32-F8BF0C6BCF88}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{BACBC95C-C6CA-4CB1-8F24-6B87D557A384}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{BB31FADC-506B-4A78-941A-4B34CBFB8C7D}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{BBAA0041-9E29-4EA9-8F4D-261CA46D577B}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{BC644CBA-0F88-48AA-A5D5-B3DC9C4A116A}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{BCF94DA8-9692-4CE7-AB03-CA6F08323FEC}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{BD061459-DFEF-4761-912F-0C4734E0673C}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{BD947F50-B215-48B1-ADD0-86DD7E96D077}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{BDDAA069-1B87-4750-B139-EEE045C40B10}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{BE0185EB-F429-4DD1-91AD-42B09049D4C9}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{BF9CEF63-365F-4A2D-BF50-14F3FC1A37E3}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{BFD4962C-B1A1-418D-A028-606BFDC9B610}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{C00ECABB-29D2-43F1-B12C-962EAA9533E8}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{C0403DBA-19CC-4644-884C-6009C266559C}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{C0851755-73BD-4D51-AC50-3441EEFA8FBA}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{C0BD7AC8-647D-4282-83D1-67DBD2B25C20}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{C163ECF9-A921-429D-98C0-C19F4DFAA57C}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{C19AFE66-AEF3-40CC-9417-71DCAA28F0D0}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{C1B958E7-EE3F-4457-B9F2-18B253589F7D}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{C1D1CED6-086B-4A1C-B7CA-5349DEC04D04}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{C208E610-6D5F-40E8-B7FB-7BFBA8ACF75E}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{C214EAEE-3557-43DF-8813-BCBFA59F83C5}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{C249938D-F652-4648-A68E-AD48C3EBCBB1}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{C24D188D-6B8C-4EA9-B558-E182BB54C3C8}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{C25A36FF-75E1-46A8-8FFE-AE55E37CA50A}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{C26221C0-1B25-4079-A7F6-EC9B4C730DA2}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{C29B3894-E4DA-47FF-957F-FE86C5E7E666}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{C2D05065-9195-45BF-9350-AD6F9E3C3DFD}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{C30FD0D9-4915-466A-B6B9-8FFD74998A89}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{C34D917D-53C8-4904-972F-CEF811E8152F}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{C3814A99-4178-4C3C-8421-B8F1D00F7582}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{C3A26A41-544A-4816-A4E5-A28EF686A9DD}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{C3AB1AD3-C2AD-454D-B69C-5C11214C7050}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{C42A8E5B-05FA-4ACC-84F9-7ECBE59B4B8B}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{C46A6931-D793-4CA0-83ED-9A3E8E9BCDF5}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{C5808C67-C5C6-41D5-B2E9-A00D14628E30}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{C599B55D-9512-43B0-8C96-2DBB1598AE75}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{C6127610-4E26-4C9C-941A-26E965C91E23}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{C6173687-5E47-4D77-909F-585CFB814154}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{C7CDF330-2439-4FB2-87BA-4EB63DE5B88F}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{C7E4DB6A-A21F-48B7-A4E8-655DB97B29F9}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{C8027DC7-C044-4119-A06C-1AF2E6508269}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{C872D961-A326-46A9-BA67-E4F16C8573D5}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{C8809DCB-6276-4D4C-B31E-6D8C643FF1D8}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{C8B320FD-BD26-4C59-BC8A-FEE03A6BC317}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{C90CB9F1-67B5-445D-876D-BF8B18998192}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{C9B69375-F8B3-43F4-87EB-9DF780319316}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{C9C11C05-9E96-4AE7-8B48-7A712C7334AE}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{CA06B7BA-5F5F-492F-A59D-DB355C50AECA}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{CA5C98B2-1067-4E99-9B80-EDC6BF09CDDC}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{CA65F48C-02E4-425C-AA9B-21578A4270B5}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{CA6D5409-5DC2-49FF-9B23-581E313CC796}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{CA7CA343-FA98-42C0-B009-2722516FEF1E}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{CABBC835-E089-4475-8433-0844C96A6E94}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{CB1188CD-7895-4775-B579-DDBF5A096F3A}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{CB86B9F8-EB94-4837-B113-737226E996A4}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{CB980C4C-93EC-411A-BC22-1C2731166008}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{CBBEEAB5-8B94-4746-9BB8-B1792909359D}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{CBE91393-3FD9-4215-A35A-FD59BD43932D}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{CC09FA18-6D94-47E4-BBE8-4A750774630A}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{CC399D20-4204-4EBD-A628-85CE818F8DC4}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{CD4FECE2-ABC1-4901-9E64-A896BE979FB6}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{CD8CF962-A512-4EB0-AAD2-A7C3F6DEFBB3}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{CDD775CF-5B58-4139-A8B0-58697877D256}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{CDDBEEF1-E954-4980-8D70-5FA95DDC2CFB}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{CDF70702-0474-421C-9E68-8026D07947CE}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{CE2D13FF-021E-4411-8AEA-09564282FA26}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{CE6923B4-0158-4667-964E-BC57D3CD1B35}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{CED30237-DC08-460E-AB8E-87863398EB0C}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{CEFFA33F-8931-4478-8704-4CF0CDBF00BA}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{CF02A0A6-D437-49B4-8B07-A7509858010D}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{CF584ABD-536B-445C-B88E-2DB36CEF1FC1}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{D02CC3F4-4ABE-4262-B8A1-77F113E602D1}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{D0491085-CA36-49A9-9357-FBA34C05586E}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{D09E66F0-491B-4B35-B349-6999AB0EC168}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{D0DF2107-7308-43DA-9F57-6097B98C85D4}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{D0FEBB08-90A5-4DE1-8908-27B179BF5F23}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{D130B157-73E6-42F9-B906-DFCCCDFC4B97}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{D167D635-AD75-4F7C-B42B-303E085F7C59}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{D1B317F1-4750-4F26-937A-FD5637390490}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{D1E2D266-0869-40FC-8D6C-6D5647881F76}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{D1ECE5EE-E5D0-41C0-A367-A18880E381BB}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{D2D4491F-8606-4461-838A-506036033F9F}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{D2E17080-A791-4D0C-9657-A3C84E526C3A}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{D334D817-DB0C-4B97-A5E8-0AFF4392E876}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{D36F9B95-A181-499B-A6FE-C641161388A7}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{D3938BEC-388F-4C38-9D4C-689319B4468E}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{D3D51B6B-06C4-44E3-9FE5-9086B6939E0E}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{D45E792B-235D-4ABA-9408-85FA85A1968D}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{D48E9E79-6441-4748-A9C0-96AD56234B27}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{D521F551-936D-4708-88F0-72DDBCAFF4F6}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{D54C3CFC-63C2-4589-9D79-AC41B5488878}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{D5D353F4-2000-4C0D-AD92-218561505872}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{D631AD1F-F995-46D8-83D7-E3127C8BA4C5}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{D63359D3-9DAD-4B8F-A5D0-D84B6385DCAE}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{D66B3B8A-AB32-409A-9927-9A4F15F426F6}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{D69D4945-C426-45BD-B093-311B34D9B499}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{D6A1E014-2ED8-40CB-913E-2CDB90D064FC}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{D72094FD-0343-45CF-8600-CF72E788CAF9}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{D7C63580-959C-4948-BE86-8F5712F8F4AA}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{D7D6F8EE-733A-48AB-A3A4-E4E8DCDC143E}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{D7F48C07-7F1C-4C33-90C7-D998F2381328}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{D8B0FB39-2F5B-4A40-BDED-2B1AA5F2D36F}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{D8BB42AB-D5D3-47CE-BD72-A735C97003F3}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{D8CED3E6-D6B3-4341-BBEA-14B9D592E280}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{D94BE723-B6DC-494D-8E94-7CCED8C1CFF9}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{D953B3E1-6B68-4B48-8393-6471DDBD5835}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{D9AF5001-066F-4A07-ACAC-2589BCCFF5A5}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{DB16F4B7-54E7-49D1-B8A8-EC67074C8C17}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{DB67D5A1-51C8-41E1-879C-A507D6F681E0}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{DB76FA1D-63E3-4ADF-9CB6-AA910A5365E2}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{DC297098-A641-4B31-8373-5EFC5A682C03}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{DC510CDC-9A14-4D03-90DC-FEF95D98E43C}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{DD16E973-0D14-40EA-9491-6D0279782423}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{DD241ED7-8C95-4F7E-8555-728DE20E6DC2}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{DD9751AA-C798-4A01-8453-F76314E0E034}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{DE0BADC5-71AD-4EAB-A22F-E1FE529E014C}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{DF684E01-CB6A-4D1C-B5B3-8F39A4284CE0}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{DFB96013-BF72-4CF3-9FD2-44F99D6325EA}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{E01BDA12-B2A6-4461-AB52-EB7CABEB82EE}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{E0995144-1D30-4E94-8DE5-660EA20FCB76}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{E1A44DA0-402B-49E9-9443-DF0DAE294AC5}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{E1D8E595-64F6-41BD-9CDC-DE9BDA43A96F}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{E263F783-249A-4747-BE35-FC3E0DA50A54}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{E2DACA57-1B83-416D-AEF0-B9D10AD021EB}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{E2ED68EC-6354-446D-A085-76B14FC58A2B}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{E3527088-638D-475E-91C9-8A441056CF55}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{E3578CF6-0EC9-416A-B463-D7A07795CC30}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{E385478B-6D89-43EB-841A-BF4895777136}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{E3A148A8-542C-4A73-8113-9DDEBF68B436}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{E42FA05F-BD60-4C23-A1AF-8B9D638AC7C8}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{E436077A-7687-48D1-B972-911CF150BAD1}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{E44137C5-BB39-438B-9888-48FF16934149}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{E44EEDCF-2757-4EE1-9980-7B3D1084E143}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{E4535409-5BB5-4AB6-BC35-56515CEEDB5F}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{E69057A2-9808-4B8C-83D2-68D61F72FD07}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{E6C39C4B-E2FC-4AA2-9FC6-2BE6B3170C76}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{E6D9EF85-435D-443C-88DF-0B5B9A19F64C}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{E6F7EAD4-65B6-498E-8ED4-BEF4900C8D09}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{E6F9178F-B38C-4988-8389-D93BF0DB9486}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{E7B79101-7255-448E-AAFE-F83D8B286440}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{E86DAE09-028C-457D-A0DE-E580D3F2DF31}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{E8FD887E-5C50-465F-A4D1-DF0D3613C379}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{E91C11B7-9063-4062-998F-F4B8D6FCDCF7}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{E9331BA7-663A-4FD8-9815-F1818A078D55}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{E93D3FAC-7898-419D-9CD4-948ADEADA7C9}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{E9497348-F98D-4F0F-8B64-9BB162C13B98}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{E9A596CC-02C4-4C57-A407-8890CC29FF2D}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{E9B3AE31-738B-49EE-8485-FF6402AD7DFF}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{E9BFC748-ACB9-43A7-8BDD-05C574820706}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{E9D5B1AF-5897-415A-8947-D5F63830E566}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{E9FBE22D-48D7-494B-B40F-6BA344DDE91E}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{EA4690B5-D039-4249-BF25-5E2177DC7DED}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{EA6DB2ED-C339-4F66-84D2-CD43AC64A3EF}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{EAC64653-539B-4A07-8EB6-A59D8F7A2ED2}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{EB003408-E2A0-4CA4-8D39-85EB8DD8E632}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{EB0C715D-32B7-4C12-A576-8B0CA69F1625}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{EB63845E-4C72-46E2-8E13-B19BD3FE020C}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{EBCB4908-CD9F-4068-A647-91D6A2A1E5DD}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{EC29CE83-03F6-4FAB-BD18-51A7E7852751}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{EC44B743-881B-40AD-8C5D-66E9CEC1D492}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{ECD009E6-2714-4087-BFCE-596771F3EA02}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{ECD7EB50-CED8-489A-8F4F-14D2513178CA}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{ECD87620-CEA4-4F32-BB29-DDBAAD6B5D67}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{ED0CD77A-BA92-4AB1-87CC-19A2631C2520}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{ED6614F2-4BBA-43B9-903C-2C81E228C58F}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{EDD3660F-A246-481D-9094-3E473C6E9107}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{EE3B13FA-1D37-4C3B-8E99-0735D7EA7204}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{EE424805-BB6A-4FC2-9C56-5502121FDC93}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{EE440399-A718-4471-8771-F9588FE7C251}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{EE88A6EA-E18D-4BC7-911C-7CBFC89A17D4}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{EF2CAE5F-82F8-4E29-B70C-EE9EF167C165}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{EF7A0F28-0B2F-4B8C-B6EC-1111994C7E46}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{EFC5C2CF-E02B-47DD-9696-DD0C038EADA9}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{F0336B91-241C-4D1D-A4C7-71EEDDA3C140}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{F0343B18-0B5E-4ECC-A5A1-A3A16F10F648}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{F066659C-EFC1-4F63-9E35-E78B201E3ED9}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{F069C88F-2353-4CC5-8385-684F807D41E2}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{F08EF942-43AE-40EA-A3AE-2C1C669E2F6B}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{F0C638E5-33DB-48D6-9809-B931ABE5A3AA}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{F2466E98-B181-460E-B653-4FDBD5ED02FC}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{F267897F-5B7A-43B5-B3A9-B77E70D7BEBE}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{F274C237-E4F5-44EC-A7C6-6A0EDACF3A50}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{F29065EA-A730-49C6-9295-5E3CC43C1CB2}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{F29A5537-B4D4-4EA7-80CC-BA14502D64F0}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{F2F72ACF-2F0E-4902-83E0-CB1D3421275D}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{F301B829-FF78-4A84-9B82-CCDA5DC4A0A1}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{F316FE6B-CFCD-49BE-91FD-ED7F1BF657B2}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{F33688C5-B5EE-484D-AA64-AC9907B3DCDA}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{F3C8D6D8-505D-4A76-9F45-394863996E73}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{F3FD9708-8C6D-4E27-AC29-AD36F723B162}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{F42CBDC1-A5B3-4E95-A3E8-6CEC3364D08F}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{F461B8BC-82DF-4CF0-8D9C-F40650A85EAC}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{F4A4B378-AF33-49EA-8C99-3F5CD91F9206}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{F5FC90B1-9AC5-44D8-AD25-1C60C3FDBA25}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{F695C1CD-901C-4CCC-99F7-9704F81E6808}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{F6A586B2-991B-4714-87D0-3DA4FB1C503F}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{F6A5BA52-7398-4DCC-8ECD-C53E9BFF7A55}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{F6CC7D0E-BABB-469F-9B4E-218B6630CE54}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{F6D233CC-1AA2-4A08-A240-2CD163359F19}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{F8140447-4577-4656-B792-E4EF3538C0C5}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{F82BB36B-07BA-4D2D-940B-EE3CC7EE8E9B}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{F85023CB-43E7-4EE7-99E5-F2B5C54E51D7}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{F878CAA9-3EE7-446D-BCA1-5C415607B2F4}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{F88735C6-765F-452A-9F0F-1F5061B9B87A}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{F8FDEFE1-4560-4641-B21D-C62A8012CA53}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{F9122902-9FD8-494F-925E-21DBEF683F19}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{F952C16A-9503-4AD0-BE73-31318E7C7A40}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{F966F2F1-A6B6-4817-8741-A108EB32DB8F}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{F9759BC6-87A6-498F-9550-C4A52C1B270E}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{F9967310-E3B7-4E3B-B54E-87FE754BED52}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{F9A88D31-99CB-4561-884A-2AF6092A7C64}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{F9C63362-D728-4D47-A4CA-D100478D4C45}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{F9DE036C-0C91-482F-95A1-78B3E6802793}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{FAA7192D-0938-4A9C-915B-FE800A2ABC73}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{FAC84FE1-5D53-4407-934C-3EFC644C7C91}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{FAE227F2-332F-441D-AE33-1A9418EEE8CA}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{FB265974-E595-4E35-AB46-B26D0ABA1901}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{FB674574-B5EB-42BA-A13F-F4FA713324D3}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{FB6C99C5-3A78-434F-9873-D3841C1F3093}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{FBA7B98C-1A3C-4787-AE13-D9063B73D49A}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{FBAF53EA-E5B2-4354-9E4B-5FB93525A532}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{FBBD1C0D-E3A9-4882-843E-3E999328ACD6}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{FC160E27-628F-44D0-97F6-FE37484C6D1B}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{FC54D85D-7A6D-4826-9CDA-779D5A62C578}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{FCE715E5-5DB7-4A0F-90DE-E7780B678617}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{FD104F7A-41D1-4ECB-9EBD-0F37FC9C41F0}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{FD286209-E10C-454C-8772-8E8250089776}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{FD2AA97F-CE10-48CD-9559-6B60F6BF3A87}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{FD7D734D-2666-4852-8512-8A15C07AA8D4}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{FE19A734-AD9C-4B1C-B75B-70448E7F4639}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{FE74AF7C-0EEC-4AE5-81EC-949D38BE13D0}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{FE8CCBD3-D096-4AD4-864B-7FC55EB801BF}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{FEC69338-6E4E-45DA-8429-471A8DF9457A}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{FEC6ED44-FD54-415D-992A-1CE5AD396043}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{FF38DC10-3374-4678-9B3D-17A3E0B1BE17}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{FF51F120-CE58-4D03-878B-9720CE01F7B8}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{FF64B0F6-9E0B-4059-B34C-CEA7CDF40F93}
Successfully deleted: [Empty Folder] C:\Users\Schneball\appdata\local\{FFB2C419-C238-4880-8A70-487B2DB31366}
~~~ Event Viewer Logs were cleared
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 22.07.2013 at 8:27:08,38
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
|
| | #8 |
| /// the machine /// TB-Ausbilder ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() | Wie bekämpfe ich Spy Hunter und Delta Search?ESET Online Scanner
Downloade Dir bitte
und ein frisches FRST log bitte. Noch Probleme?
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
| | #9 |
![]() ![]() | Wie bekämpfe ich Spy Hunter und Delta Search? FRST Logfile: FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 21-07-2013
Ran by Schneball (administrator) on 22-07-2013 08:43:56
Running from C:\Users\Schneball\Desktop
Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard
Internet Explorer Version 10
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(AMD) C:\Windows\system32\atiesrxx.exe
() C:\Windows\System32\GFNEXSrv.exe
(AMD) C:\Windows\system32\atieclxx.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(TOSHIBA Corporation) C:\Windows\system32\TODDSrv.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\TECO\TecoService.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe
(Microsoft Corporation) C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
(TOSHIBA CORPORATION) C:\Program Files (x86)\TOSHIBA\ConfigFree\CFIWmxSvcs64.exe
(TOSHIBA CORPORATION) C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSvcs.exe
(Nero AG) c:\Program Files (x86)\Nero\Update\NASvc.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\BulletinBoard\TosNcCore.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\ReelTime\TosReelTimeMonitor.exe
(Toshiba Europe GmbH) C:\Program Files (x86)\Toshiba TEMPRO\TemproTray.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\Power Saver\TPwrMain.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\FlashCards\TCrdMain.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\TECO\Teco.exe
(TOSHIBA) C:\Program Files (x86)\TOSHIBA\TOSHIBA Online Product Information\TOPI.exe
(Nokia) C:\Program Files (x86)\Nokia\Nokia Suite\NokiaSuite.exe
(Toshiba) C:\Program Files\TOSHIBA\TOSHIBA Places Icon Utility\TosDIMonitor.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(TOSHIBA Corporation) C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\ToshibaServiceStation.exe
(Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(Geek Software GmbH) C:\Program Files (x86)\PDF24\pdf24.exe
(Nokia) C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Nokia) C:\Program Files (x86)\PC Connectivity Solution\Transports\NclUSBSrv64.exe
(ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(Nokia) C:\Program Files (x86)\PC Connectivity Solution\Transports\NclMSBTSrvEx.exe
(TOSHIBA Corporation) C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\TPHM\TPCHSrv.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSENotify.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\TPHM\TPCHWMsg.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [TosNC] - C:\Program Files\Toshiba\BulletinBoard\TosNcCore.exe [597928 2011-03-03] (TOSHIBA Corporation)
HKLM\...\Run: [TosReelTimeMonitor] - C:\Program Files\TOSHIBA\ReelTime\TosReelTimeMonitor.exe [38304 2011-03-30] (TOSHIBA Corporation)
HKLM\...\Run: [Toshiba TEMPRO] - C:\Program Files (x86)\Toshiba TEMPRO\TemproTray.exe [1546720 2011-02-10] (Toshiba Europe GmbH)
HKLM\...\Run: [TPwrMain] - C:\Program Files\TOSHIBA\Power Saver\TPwrMain.EXE [566696 2011-03-02] (TOSHIBA Corporation)
HKLM\...\Run: [HSON] - C:\Program Files\TOSHIBA\TBS\HSON.exe [296824 2010-09-25] (TOSHIBA Corporation)
HKLM\...\Run: [TCrdMain] - C:\Program Files\TOSHIBA\FlashCards\TCrdMain.exe [967544 2011-03-09] (TOSHIBA Corporation)
HKLM\...\Run: [RtHDVCpl] - C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [11775592 2011-01-12] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg] - C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2186856 2011-01-10] (Realtek Semiconductor)
HKLM\...\Run: [SynTPEnh] - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2679592 2011-02-03] (Synaptics Incorporated)
HKLM\...\Run: [Teco] - C:\Program Files\TOSHIBA\TECO\Teco.exe [1544104 2011-04-07] (TOSHIBA Corporation)
HKLM\...\Run: [TosSENotify] - C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosWaitSrv.exe [710040 2010-12-08] (TOSHIBA Corporation)
HKLM\...\Run: [TosWaitSrv] - C:\Program Files\TOSHIBA\TPHM\TosWaitSrv.exe [711576 2011-04-05] (TOSHIBA Corporation)
HKLM\...\Run: [TosVolRegulator] - C:\Program Files\TOSHIBA\TosVolRegulator\TosVolRegulator.exe [24376 2009-11-11] (TOSHIBA Corporation)
HKLM\...\Run: [Toshiba Registration] - C:\Program Files\TOSHIBA\Registration\ToshibaReminder.exe [150992 2011-08-01] (Toshiba Europe GmbH)
HKCU\...\Run: [TOPI.EXE] - C:\Program Files (x86)\TOSHIBA\TOSHIBA Online Product Information\topi.exe [846936 2011-05-16] (TOSHIBA)
HKCU\...\Run: [NokiaSuite.exe] - C:\Program Files (x86)\Nokia\Nokia Suite\NokiaSuite.exe [1090040 2012-12-21] (Nokia)
HKCU\...\RunOnce: [FlashPlayerUpdate] - C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_11_7_700_224_ActiveX.exe -update activex [814472 2013-06-16] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [NBAgent] - "c:\Program Files (x86)\Nero\Nero 10\Nero BackItUp\NBAgent.exe" /WinStart [1409424 2011-06-29] (Nero AG)
HKLM-x32\...\Run: [StartCCC] - "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun [336384 2011-04-20] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [ToshibaServiceStation] - C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\ToshibaServiceStation.exe /hide:60 [1294712 2010-11-29] (TOSHIBA Corporation)
HKLM-x32\...\Run: [APSDaemon] - "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" [59240 2011-11-02] (Apple Inc.)
HKLM-x32\...\Run: [PDFPrint] - C:\Program Files (x86)\PDF24\pdf24.exe [163000 2012-12-12] (Geek Software GmbH)
HKLM-x32\...\Run: [avgnt] - "C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe" /min [345144 2013-06-27] (Avira Operations GmbH & Co. KG)
HKLM-x32\...\Run: [SunJavaUpdateSched] - "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" [253816 2013-03-12] (Oracle Corporation)
HKLM-x32\...\Run: [Adobe ARM] - "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [958576 2013-05-11] (Adobe Systems Incorporated)
HKU\Default\...\Run: [TOPI.EXE] - C:\Program Files (x86)\TOSHIBA\TOSHIBA Online Product Information\topi.exe /STAR [846936 2011-05-16] (TOSHIBA)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Toshiba Places Icon Utility.lnk
ShortcutTarget: Toshiba Places Icon Utility.lnk -> C:\Program Files\TOSHIBA\TOSHIBA Places Icon Utility\TosDIMonitor.exe (Toshiba)
Startup: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\TRDCReminder.lnk
ShortcutTarget: TRDCReminder.lnk -> C:\Program Files (x86)\TOSHIBA\TRDCReminder\TRDCReminder.exe (TOSHIBA Europe)
Startup: C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\TRDCReminder.lnk
ShortcutTarget: TRDCReminder.lnk -> C:\Program Files (x86)\TOSHIBA\TRDCReminder\TRDCReminder.exe (TOSHIBA Europe)
BootExecute: autocheck autochk * sdnclean64.exe
==================== Internet (Whitelisted) ====================
ProxyServer: :0
HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.bing.com
StartMenuInternet: IEXPLORE.EXE - "C:\Program Files (x86)\Internet Explorer\iexplore.exe"
SearchScopes: HKLM - DefaultScope value is missing.
BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\PROGRA~2\mcafee\SITEAD~1\x64\mcieplg.dll (McAfee, Inc.)
BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll (Microsoft Corporation)
BHO-x32: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll (McAfee, Inc.)
BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~3\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: TOSHIBA Media Controller Plug-in - {F3C88694-EFFA-4d78-B409-54B7B2535B14} - C:\Program Files (x86)\TOSHIBA\TOSHIBA Media Controller Plug-in\TOSHIBAMediaControllerIE.dll (<TOSHIBA>)
Toolbar: HKLM - McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\PROGRA~2\mcafee\SITEAD~1\x64\mcieplg.dll (McAfee, Inc.)
Toolbar: HKLM-x32 - McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll (McAfee, Inc.)
Toolbar: HKCU - No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File
Handler: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\x64\mcieplg.dll (McAfee, Inc.)
Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\x64\mcieplg.dll (McAfee, Inc.)
Handler-x32: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll (McAfee, Inc.)
Handler-x32: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll (McAfee, Inc.)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 192.168.178.1
Chrome:
=======
CHR HomePage: hxxp://www.google.com/
CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - C:\Program Files (x86)\McAfee\SiteAdvisor\McChPlg.crx
==================== Services (Whitelisted) =================
R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [84024 2013-06-27] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [108088 2013-06-27] (Avira Operations GmbH & Co. KG)
R2 GFNEXSrv; C:\Windows\System32\GFNEXSrv.exe [162824 2010-09-09] ()
R2 McAfee SiteAdvisor Service; c:\PROGRA~2\mcafee\SITEAD~1\McSACore.exe [120592 2013-05-22] (McAfee, Inc.)
S3 TemproMonitoringService; C:\Program Files (x86)\Toshiba TEMPRO\TemproSvc.exe [112080 2011-02-10] (Toshiba Europe GmbH)
==================== Drivers (Whitelisted) ====================
R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [100712 2013-03-30] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [130016 2013-03-30] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [28600 2013-03-30] (Avira Operations GmbH & Co. KG)
S3 catchme; \??\C:\ComboFix\catchme.sys [x]
S3 esgiguard; \??\C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys [x]
S3 TDEIO; \??\c:\Windows\SysWOW64\sysprep\Bootprio\tdeio64.sys [x]
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2013-07-22 08:43 - 2013-07-22 08:43 - 01779363 _____ (Farbar) C:\Users\Schneball\Desktop\FRST64.exe
2013-07-22 08:27 - 2013-07-22 08:27 - 00101265 _____ C:\Users\Schneball\Desktop\JRT.txt
2013-07-22 08:19 - 2013-07-22 08:19 - 00000000 ____D C:\Windows\ERUNT
2013-07-22 08:18 - 2013-07-22 08:18 - 00560639 _____ (Oleg N. Scherbakov) C:\Users\Schneball\Downloads\JRT (1).exe
2013-07-22 08:17 - 2013-07-22 08:17 - 00560639 _____ (Oleg N. Scherbakov) C:\Users\Schneball\Desktop\JRT.exe
2013-07-22 07:59 - 2013-07-22 08:00 - 00012388 _____ C:\AdwCleaner[S1].txt
2013-07-22 07:57 - 2013-07-22 07:57 - 00666633 _____ C:\Users\Schneball\Downloads\adwcleaner.exe
2013-07-22 07:56 - 2013-07-22 07:56 - 00793536 _____ C:\Users\Schneball\Downloads\ZipOpenerSetup.exe
2013-07-22 07:46 - 2013-07-22 07:46 - 00001192 _____ C:\Users\Schneball\Desktop\ComboFix - Verknüpfung.lnk
2013-07-21 17:30 - 2013-07-21 17:30 - 00020873 _____ C:\Users\Schneball\Desktop\combo.txt
2013-07-21 17:30 - 2013-07-21 17:30 - 00020873 _____ C:\ComboFix.txt
2013-07-21 17:14 - 2011-06-26 08:45 - 00256000 _____ C:\Windows\PEV.exe
2013-07-21 17:14 - 2010-11-07 19:20 - 00208896 _____ C:\Windows\MBR.exe
2013-07-21 17:14 - 2009-04-20 06:56 - 00060416 _____ (NirSoft) C:\Windows\NIRCMD.exe
2013-07-21 17:14 - 2000-08-31 02:00 - 00518144 _____ (SteelWerX) C:\Windows\SWREG.exe
2013-07-21 17:14 - 2000-08-31 02:00 - 00406528 _____ (SteelWerX) C:\Windows\SWSC.exe
2013-07-21 17:14 - 2000-08-31 02:00 - 00098816 _____ C:\Windows\sed.exe
2013-07-21 17:14 - 2000-08-31 02:00 - 00080412 _____ C:\Windows\grep.exe
2013-07-21 17:14 - 2000-08-31 02:00 - 00068096 _____ C:\Windows\zip.exe
2013-07-21 17:12 - 2013-07-21 17:12 - 00001531 _____ C:\Users\Schneball\Downloads\ComboFix (1) - Verknüpfung.lnk
2013-07-21 16:55 - 2013-07-21 17:30 - 00000000 ____D C:\Qoobox
2013-07-21 16:54 - 2013-07-21 17:27 - 00000000 ____D C:\Windows\erdnt
2013-07-21 16:47 - 2013-07-21 17:11 - 05093416 ____R (Swearware) C:\Users\Schneball\Downloads\ComboFix.exe
2013-07-21 10:36 - 2013-07-21 10:36 - 00000000 ____D C:\FRST
2013-07-20 07:41 - 2013-07-20 07:41 - 00000000 _____ C:\autoexec.bat
2013-07-20 07:40 - 2013-07-20 07:40 - 00000000 ____D C:\Program Files\Enigma Software Group
2013-07-20 07:39 - 2013-07-20 14:20 - 00000000 ____D C:\Windows\8AE3CFB678B24F55A7BE618FCFF43A03.TMP
2013-07-20 07:38 - 2013-07-20 07:38 - 00726464 _____ (Enigma Software Group USA, LLC.) C:\Users\Schneball\Downloads\SpyHunter-Installer (1).exe
2013-07-19 12:15 - 2013-07-21 16:49 - 00003702 _____ C:\Windows\wininit.ini
2013-07-19 10:21 - 2013-07-19 12:19 - 00000000 ____D C:\ProgramData\Spybot - Search & Destroy
2013-07-19 10:21 - 2013-07-19 10:21 - 00000000 ____D C:\Windows\System32\Tasks\Safer-Networking
2013-07-19 10:20 - 2013-07-21 16:51 - 00000000 ____D C:\Program Files (x86)\Spybot - Search & Destroy 2
2013-07-19 10:19 - 2013-07-19 10:20 - 36271144 _____ (Safer-Networking Ltd. ) C:\Users\Schneball\Downloads\spybot-2.1.exe
2013-07-19 10:18 - 2013-07-19 10:18 - 01624136 _____ (Bandoo Media Inc) C:\Users\Schneball\Downloads\iLividSetup-r394-n-bc.exe
2013-07-17 18:39 - 2013-07-17 18:40 - 02828552 _____ (AVAST Software) C:\Users\Schneball\Downloads\avast-browser-cleanup_8.0.1484.29.exe
2013-07-17 18:35 - 2013-07-17 18:35 - 00726464 _____ (Enigma Software Group USA, LLC.) C:\Users\Schneball\Downloads\SpyHunter-Installer.exe
2013-07-17 18:11 - 2013-07-17 18:11 - 00000000 ____D C:\Windows\SysWOW64\searchplugins
2013-07-17 18:11 - 2013-07-17 18:11 - 00000000 ____D C:\Windows\SysWOW64\Extensions
2013-07-17 18:11 - 2013-07-17 18:11 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2013-07-17 18:10 - 2013-07-17 18:10 - 00283160 _____ C:\Users\Schneball\Downloads\Setup (2).exe
2013-07-17 18:10 - 2013-07-17 18:10 - 00283160 _____ C:\Users\Schneball\Downloads\Setup (1).exe
2013-07-17 18:06 - 2013-07-17 18:06 - 00283160 _____ C:\Users\Schneball\Downloads\Setup.exe
2013-07-13 06:50 - 2013-06-12 01:43 - 02877440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2013-07-13 06:50 - 2013-06-12 01:43 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2013-07-13 06:50 - 2013-06-12 01:43 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2013-07-13 06:50 - 2013-06-12 01:42 - 02046976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2013-07-13 06:50 - 2013-06-12 01:42 - 00391168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2013-07-13 06:50 - 2013-06-12 01:42 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2013-07-13 06:50 - 2013-06-12 01:42 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2013-07-13 06:50 - 2013-06-12 01:42 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2013-07-13 06:50 - 2013-06-12 01:26 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2013-07-13 06:50 - 2013-06-12 01:25 - 03958784 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2013-07-13 06:50 - 2013-06-12 01:25 - 02648576 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2013-07-13 06:50 - 2013-06-12 01:25 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2013-07-13 06:50 - 2013-06-12 01:25 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2013-07-13 06:50 - 2013-06-12 01:25 - 00526336 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2013-07-13 06:50 - 2013-06-12 01:25 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2013-07-13 06:50 - 2013-06-12 01:25 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2013-07-13 06:50 - 2013-06-12 01:25 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2013-07-13 06:50 - 2013-06-12 00:51 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe
2013-07-13 06:50 - 2013-06-12 00:50 - 00089600 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe
2013-07-13 06:50 - 2013-06-07 05:22 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2013-07-13 06:50 - 2013-06-07 04:37 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2013-07-13 06:49 - 2013-06-12 01:43 - 14329856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2013-07-13 06:49 - 2013-06-12 01:43 - 01767936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2013-07-13 06:49 - 2013-06-12 01:43 - 01141248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2013-07-13 06:49 - 2013-06-12 01:43 - 00039424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2013-07-13 06:49 - 2013-06-12 01:42 - 13760512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2013-07-13 06:49 - 2013-06-12 01:26 - 02241024 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2013-07-13 06:49 - 2013-06-12 01:26 - 01365504 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2013-07-13 06:49 - 2013-06-12 01:25 - 19238912 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2013-07-13 06:49 - 2013-06-12 01:25 - 15404032 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2013-07-13 06:49 - 2013-06-12 01:25 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2013-07-12 07:15 - 2013-06-05 05:34 - 03153920 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2013-07-12 07:15 - 2013-06-04 08:00 - 00624128 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll
2013-07-12 07:15 - 2013-06-04 06:53 - 00509440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll
2013-07-12 07:15 - 2013-05-06 08:03 - 01887744 _____ (Microsoft Corporation) C:\Windows\system32\WMVDECOD.DLL
2013-07-12 07:15 - 2013-05-06 06:56 - 01620480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVDECOD.DLL
2013-07-12 07:14 - 2013-04-10 01:34 - 01247744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll
2013-07-12 07:14 - 2013-04-03 00:51 - 01643520 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll
2013-07-06 14:35 - 2013-07-06 14:35 - 00029137 _____ C:\Users\Schneball\Downloads\eBayISAPI (3).gz
2013-07-06 14:35 - 2013-07-06 14:35 - 00029119 _____ C:\Users\Schneball\Downloads\eBayISAPI (4).gz
2013-06-25 10:08 - 2013-06-25 10:08 - 00202234 _____ C:\Users\Schneball\Downloads\fax (7).tif
2013-06-25 09:47 - 2013-06-25 09:47 - 00202888 _____ C:\Users\Schneball\Downloads\fax (6).tif
==================== One Month Modified Files and Folders =======
2013-07-22 08:44 - 2013-06-16 09:23 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2013-07-22 08:44 - 2011-08-01 13:10 - 00001124 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2013-07-22 08:43 - 2013-07-22 08:43 - 01779363 _____ (Farbar) C:\Users\Schneball\Desktop\FRST64.exe
2013-07-22 08:27 - 2013-07-22 08:27 - 00101265 _____ C:\Users\Schneball\Desktop\JRT.txt
2013-07-22 08:19 - 2013-07-22 08:19 - 00000000 ____D C:\Windows\ERUNT
2013-07-22 08:18 - 2013-07-22 08:18 - 00560639 _____ (Oleg N. Scherbakov) C:\Users\Schneball\Downloads\JRT (1).exe
2013-07-22 08:17 - 2013-07-22 08:17 - 00560639 _____ (Oleg N. Scherbakov) C:\Users\Schneball\Desktop\JRT.exe
2013-07-22 08:11 - 2009-07-14 06:45 - 00025120 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2013-07-22 08:11 - 2009-07-14 06:45 - 00025120 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2013-07-22 08:09 - 2011-02-11 10:21 - 00654400 _____ C:\Windows\system32\perfh007.dat
2013-07-22 08:09 - 2011-02-11 10:21 - 00130240 _____ C:\Windows\system32\perfc007.dat
2013-07-22 08:09 - 2009-07-14 07:13 - 01498742 _____ C:\Windows\system32\PerfStringBackup.INI
2013-07-22 08:07 - 2011-08-01 13:10 - 00001120 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2013-07-22 08:04 - 2012-12-28 09:32 - 00023657 _____ C:\Windows\setupact.log
2013-07-22 08:04 - 2009-07-14 07:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2013-07-22 08:03 - 2011-11-17 08:40 - 01973535 _____ C:\Windows\WindowsUpdate.log
2013-07-22 08:00 - 2013-07-22 07:59 - 00012388 _____ C:\AdwCleaner[S1].txt
2013-07-22 07:57 - 2013-07-22 07:57 - 00666633 _____ C:\Users\Schneball\Downloads\adwcleaner.exe
2013-07-22 07:56 - 2013-07-22 07:56 - 00793536 _____ C:\Users\Schneball\Downloads\ZipOpenerSetup.exe
2013-07-22 07:46 - 2013-07-22 07:46 - 00001192 _____ C:\Users\Schneball\Desktop\ComboFix - Verknüpfung.lnk
2013-07-21 20:08 - 2010-11-21 05:47 - 00166588 _____ C:\Windows\PFRO.log
2013-07-21 17:30 - 2013-07-21 17:30 - 00020873 _____ C:\Users\Schneball\Desktop\combo.txt
2013-07-21 17:30 - 2013-07-21 17:30 - 00020873 _____ C:\ComboFix.txt
2013-07-21 17:30 - 2013-07-21 16:55 - 00000000 ____D C:\Qoobox
2013-07-21 17:27 - 2013-07-21 16:54 - 00000000 ____D C:\Windows\erdnt
2013-07-21 17:27 - 2009-07-14 04:34 - 00000215 _____ C:\Windows\system.ini
2013-07-21 17:24 - 2011-12-25 10:40 - 00000000 ____D C:\Users\Schneball
2013-07-21 17:12 - 2013-07-21 17:12 - 00001531 _____ C:\Users\Schneball\Downloads\ComboFix (1) - Verknüpfung.lnk
2013-07-21 17:11 - 2013-07-21 16:47 - 05093416 ____R (Swearware) C:\Users\Schneball\Downloads\ComboFix.exe
2013-07-21 16:51 - 2013-07-19 10:20 - 00000000 ____D C:\Program Files (x86)\Spybot - Search & Destroy 2
2013-07-21 16:49 - 2013-07-19 12:15 - 00003702 _____ C:\Windows\wininit.ini
2013-07-21 16:44 - 2011-08-01 13:11 - 00000000 ____D C:\Program Files\Google
2013-07-21 16:44 - 2011-08-01 13:10 - 00000000 ____D C:\Program Files (x86)\Google
2013-07-21 14:19 - 2012-04-08 22:12 - 00003970 _____ C:\Windows\System32\Tasks\User_Feed_Synchronization-{293B7530-1DF2-4F3C-8BCF-32E681E5FE98}
2013-07-21 10:36 - 2013-07-21 10:36 - 00000000 ____D C:\FRST
2013-07-21 09:28 - 2011-12-25 12:16 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\Google
2013-07-21 09:28 - 2011-08-01 13:10 - 00000000 ____D C:\ProgramData\Google
2013-07-21 09:25 - 2011-12-25 10:40 - 00000000 ___RD C:\Users\Schneball\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
2013-07-20 14:20 - 2013-07-20 07:39 - 00000000 ____D C:\Windows\8AE3CFB678B24F55A7BE618FCFF43A03.TMP
2013-07-20 14:20 - 2011-12-25 13:52 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\Windows Live
2013-07-20 07:55 - 2011-12-25 11:51 - 00002087 _____ C:\Users\Public\Desktop\Toshiba-Garantieregistrierung.lnk
2013-07-20 07:41 - 2013-07-20 07:41 - 00000000 _____ C:\autoexec.bat
2013-07-20 07:40 - 2013-07-20 07:40 - 00000000 ____D C:\Program Files\Enigma Software Group
2013-07-20 07:38 - 2013-07-20 07:38 - 00726464 _____ (Enigma Software Group USA, LLC.) C:\Users\Schneball\Downloads\SpyHunter-Installer (1).exe
2013-07-19 12:19 - 2013-07-19 10:21 - 00000000 ____D C:\ProgramData\Spybot - Search & Destroy
2013-07-19 10:21 - 2013-07-19 10:21 - 00000000 ____D C:\Windows\System32\Tasks\Safer-Networking
2013-07-19 10:20 - 2013-07-19 10:19 - 36271144 _____ (Safer-Networking Ltd. ) C:\Users\Schneball\Downloads\spybot-2.1.exe
2013-07-19 10:18 - 2013-07-19 10:18 - 01624136 _____ (Bandoo Media Inc) C:\Users\Schneball\Downloads\iLividSetup-r394-n-bc.exe
2013-07-17 18:40 - 2013-07-17 18:39 - 02828552 _____ (AVAST Software) C:\Users\Schneball\Downloads\avast-browser-cleanup_8.0.1484.29.exe
2013-07-17 18:40 - 2013-03-21 20:50 - 00000000 ____D C:\Users\Schneball\Documents\My Digital Editions
2013-07-17 18:40 - 2011-12-27 18:25 - 00000000 ____D C:\Program Files (x86)\Adobe
2013-07-17 18:35 - 2013-07-17 18:35 - 00726464 _____ (Enigma Software Group USA, LLC.) C:\Users\Schneball\Downloads\SpyHunter-Installer.exe
2013-07-17 18:11 - 2013-07-17 18:11 - 00000000 ____D C:\Windows\SysWOW64\searchplugins
2013-07-17 18:11 - 2013-07-17 18:11 - 00000000 ____D C:\Windows\SysWOW64\Extensions
2013-07-17 18:11 - 2013-07-17 18:11 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2013-07-17 18:10 - 2013-07-17 18:10 - 00283160 _____ C:\Users\Schneball\Downloads\Setup (2).exe
2013-07-17 18:10 - 2013-07-17 18:10 - 00283160 _____ C:\Users\Schneball\Downloads\Setup (1).exe
2013-07-17 18:06 - 2013-07-17 18:06 - 00283160 _____ C:\Users\Schneball\Downloads\Setup.exe
2013-07-16 08:09 - 2011-12-27 10:43 - 00000000 ____D C:\Users\Schneball\Desktop\Diana
2013-07-14 07:54 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files\Windows Defender
2013-07-14 07:54 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files (x86)\Windows Defender
2013-07-13 16:17 - 2009-07-14 06:45 - 00342240 _____ C:\Windows\system32\FNTCACHE.DAT
2013-07-13 16:16 - 2012-05-18 21:53 - 00000000 ____D C:\Program Files\Microsoft Silverlight
2013-07-13 16:16 - 2012-05-18 21:53 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight
2013-07-13 12:27 - 2010-11-21 09:17 - 00000000 ____D C:\Program Files\Windows Journal
2013-07-13 12:25 - 2011-12-25 11:57 - 00000000 ____D C:\ProgramData\Microsoft Help
2013-07-13 06:52 - 2011-12-29 16:41 - 78185248 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2013-07-13 06:39 - 2011-08-01 13:10 - 00004120 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2013-07-13 06:39 - 2011-08-01 13:10 - 00003868 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2013-07-06 14:35 - 2013-07-06 14:35 - 00029137 _____ C:\Users\Schneball\Downloads\eBayISAPI (3).gz
2013-07-06 14:35 - 2013-07-06 14:35 - 00029119 _____ C:\Users\Schneball\Downloads\eBayISAPI (4).gz
2013-07-04 20:08 - 2013-06-02 20:44 - 00000000 ____D C:\Users\Schneball\AppData\Roaming\PhotoMania
2013-06-27 16:03 - 2013-05-07 11:54 - 00083672 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avnetflt.sys
2013-06-27 08:13 - 2011-08-01 12:51 - 00000000 ____D C:\Program Files (x86)\McAfee
2013-06-26 14:51 - 2013-01-31 09:16 - 00000000 ____D C:\Program Files\McAfee
2013-06-25 10:08 - 2013-06-25 10:08 - 00202234 _____ C:\Users\Schneball\Downloads\fax (7).tif
2013-06-25 09:47 - 2013-06-25 09:47 - 00202888 _____ C:\Users\Schneball\Downloads\fax (6).tif
2013-06-25 09:39 - 2013-05-02 17:17 - 00000000 ____D C:\Users\Schneball\Desktop\Oma
==================== Bamital & volsnap Check =================
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
LastRegBack: 2013-07-14 13:15
==================== End Of Log ============================
--- --- --- Sollte ich doch auch erst noch machen, oder? |
| | #10 |
| /// the machine /// TB-Ausbilder ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() | Wie bekämpfe ich Spy Hunter und Delta Search? jap, aber jetzt einfach obiges
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
| | #11 |
![]() ![]() | Wie bekämpfe ich Spy Hunter und Delta Search? Okay und nun mache ich alles aus der letzten Anweisung :-) Allmächtiger, was für eine Odysse... Das ist so unglaublich viel, aber ich vertraue Dir :-) "Cannot get update, is proxy configured"? Und nun? Also ich kann machen was ich will, es kommt immer diese Fehlermeldung. Zuerst schien Avira das Problem zu sein, habe es deinstalliert, aber es kommt immer noch diese Meldung mit "is Proxy configured" |
| | #12 |
| /// the machine /// TB-Ausbilder ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() | Wie bekämpfe ich Spy Hunter und Delta Search? Mach nen Vollscan mit Avira und poste das Logfile. Lass ESET weg und mach den Rest der Anleitung
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
| | #13 |
![]() ![]() | Wie bekämpfe ich Spy Hunter und Delta Search?Code:
ATTFilter Avira Free Antivirus
Erstellungsdatum der Reportdatei: Montag, 22. Juli 2013 11:58
Das Programm läuft als uneingeschränkte Vollversion.
Online-Dienste stehen zur Verfügung.
Lizenznehmer : Avira Free Antivirus
Seriennummer : 0000149996-ADJIE-0000001
Plattform : Windows 7 Home Premium
Windowsversion : (Service Pack 1) [6.1.7601]
Boot Modus : Normal gebootet
Benutzername : Schneball
Computername : SCHNEBALL-TOSH
Versionsinformationen:
BUILD.DAT : 13.0.0.3737 54853 Bytes 20.06.2013 15:37:00
AVSCAN.EXE : 13.6.0.1722 634936 Bytes 22.07.2013 09:55:51
AVSCANRC.DLL : 13.6.0.1550 62520 Bytes 22.07.2013 09:55:51
LUKE.DLL : 13.6.0.1550 65080 Bytes 22.07.2013 09:56:00
AVSCPLR.DLL : 13.6.0.1712 92216 Bytes 22.07.2013 09:55:51
AVREG.DLL : 13.6.0.1550 247864 Bytes 22.07.2013 09:55:50
avlode.dll : 13.6.2.1704 449592 Bytes 22.07.2013 09:55:50
avlode.rdf : 13.0.1.22 26240 Bytes 22.07.2013 09:56:14
VBASE000.VDF : 7.11.70.0 66736640 Bytes 04.04.2013 09:55:29
VBASE001.VDF : 7.11.74.226 2201600 Bytes 30.04.2013 09:55:31
VBASE002.VDF : 7.11.80.60 2751488 Bytes 28.05.2013 09:55:33
VBASE003.VDF : 7.11.85.214 2162688 Bytes 21.06.2013 09:55:34
VBASE004.VDF : 7.11.85.215 2048 Bytes 21.06.2013 09:55:34
VBASE005.VDF : 7.11.85.216 2048 Bytes 21.06.2013 09:55:34
VBASE006.VDF : 7.11.85.217 2048 Bytes 21.06.2013 09:55:34
VBASE007.VDF : 7.11.85.218 2048 Bytes 21.06.2013 09:55:34
VBASE008.VDF : 7.11.85.219 2048 Bytes 21.06.2013 09:55:34
VBASE009.VDF : 7.11.85.220 2048 Bytes 21.06.2013 09:55:34
VBASE010.VDF : 7.11.85.221 2048 Bytes 21.06.2013 09:55:34
VBASE011.VDF : 7.11.85.222 2048 Bytes 21.06.2013 09:55:34
VBASE012.VDF : 7.11.85.223 2048 Bytes 21.06.2013 09:55:35
VBASE013.VDF : 7.11.85.224 2048 Bytes 21.06.2013 09:55:35
VBASE014.VDF : 7.11.86.93 870400 Bytes 24.06.2013 09:55:35
VBASE015.VDF : 7.11.86.223 331776 Bytes 25.06.2013 09:55:35
VBASE016.VDF : 7.11.87.67 204800 Bytes 27.06.2013 09:55:36
VBASE017.VDF : 7.11.87.157 247296 Bytes 28.06.2013 09:55:36
VBASE018.VDF : 7.11.87.221 196608 Bytes 30.06.2013 09:55:36
VBASE019.VDF : 7.11.88.51 356352 Bytes 02.07.2013 09:55:36
VBASE020.VDF : 7.11.88.119 182272 Bytes 03.07.2013 09:55:36
VBASE021.VDF : 7.11.88.213 266752 Bytes 05.07.2013 09:55:37
VBASE022.VDF : 7.11.89.43 184320 Bytes 07.07.2013 09:55:37
VBASE023.VDF : 7.11.89.105 203776 Bytes 08.07.2013 09:55:37
VBASE024.VDF : 7.11.89.175 253440 Bytes 10.07.2013 09:55:37
VBASE025.VDF : 7.11.90.3 221696 Bytes 11.07.2013 09:55:37
VBASE026.VDF : 7.11.90.71 217088 Bytes 13.07.2013 09:55:37
VBASE027.VDF : 7.11.90.173 306688 Bytes 16.07.2013 09:55:38
VBASE028.VDF : 7.11.91.1 348160 Bytes 18.07.2013 09:55:38
VBASE029.VDF : 7.11.91.99 493568 Bytes 21.07.2013 09:55:38
VBASE030.VDF : 7.11.91.100 2048 Bytes 21.07.2013 09:55:38
VBASE031.VDF : 7.11.91.132 160256 Bytes 22.07.2013 09:55:38
Engineversion : 8.2.12.88
AEVDF.DLL : 8.1.3.4 102774 Bytes 22.07.2013 09:55:42
AESCRIPT.DLL : 8.1.4.134 491902 Bytes 22.07.2013 09:55:42
AESCN.DLL : 8.1.10.4 131446 Bytes 22.07.2013 09:55:42
AESBX.DLL : 8.2.5.12 606578 Bytes 22.07.2013 09:55:42
AERDL.DLL : 8.2.0.128 688504 Bytes 22.07.2013 09:55:42
AEPACK.DLL : 8.3.2.24 749945 Bytes 22.07.2013 09:55:41
AEOFFICE.DLL : 8.1.2.70 205181 Bytes 22.07.2013 09:55:41
AEHEUR.DLL : 8.1.4.486 6021498 Bytes 22.07.2013 09:55:41
AEHELP.DLL : 8.1.27.4 266617 Bytes 22.07.2013 09:55:39
AEGEN.DLL : 8.1.7.8 442742 Bytes 22.07.2013 09:55:39
AEEXP.DLL : 8.4.1.28 266615 Bytes 22.07.2013 09:55:42
AEEMU.DLL : 8.1.3.2 393587 Bytes 22.07.2013 09:55:39
AECORE.DLL : 8.1.31.6 201081 Bytes 22.07.2013 09:55:39
AEBB.DLL : 8.1.1.4 53619 Bytes 22.07.2013 09:55:39
AVWINLL.DLL : 13.6.0.1550 23608 Bytes 22.07.2013 09:54:46
AVPREF.DLL : 13.6.0.1550 48184 Bytes 22.07.2013 09:55:50
AVREP.DLL : 13.6.0.1550 175672 Bytes 22.07.2013 09:55:50
AVARKT.DLL : 13.6.0.1626 258104 Bytes 22.07.2013 09:55:47
AVEVTLOG.DLL : 13.6.0.1550 164920 Bytes 22.07.2013 09:55:48
SQLITE3.DLL : 3.7.0.1 394824 Bytes 22.07.2013 09:56:07
AVSMTP.DLL : 13.6.0.1550 59960 Bytes 22.07.2013 09:55:51
NETNT.DLL : 13.6.0.1550 13368 Bytes 22.07.2013 09:56:02
RCIMAGE.DLL : 13.4.0.360 4780832 Bytes 22.07.2013 09:54:47
RCTEXT.DLL : 13.6.0.1624 67128 Bytes 22.07.2013 09:54:47
Konfiguration für den aktuellen Suchlauf:
Job Name..............................: Schnelle Systemprüfung
Konfigurationsdatei...................: c:\program files (x86)\avira\antivir desktop\quicksysscan.avp
Protokollierung.......................: standard
Primäre Aktion........................: interaktiv
Sekundäre Aktion......................: ignorieren
Durchsuche Masterbootsektoren.........: ein
Durchsuche Bootsektoren...............: ein
Durchsuche aktive Programme...........: ein
Durchsuche Registrierung..............: ein
Suche nach Rootkits...................: aus
Integritätsprüfung von Systemdateien..: aus
Datei Suchmodus.......................: Intelligente Dateiauswahl
Durchsuche Archive....................: ein
Rekursionstiefe einschränken..........: 20
Archiv Smart Extensions...............: ein
Makrovirenheuristik...................: ein
Dateiheuristik........................: erweitert
Beginn des Suchlaufs: Montag, 22. Juli 2013 11:58
Der Suchlauf über die Masterbootsektoren wird begonnen:
Masterbootsektor HD0
[INFO] Es wurde kein Virus gefunden!
Masterbootsektor HD1
[INFO] Es wurde kein Virus gefunden!
Der Suchlauf über die Bootsektoren wird begonnen:
Der Suchlauf über gestartete Prozesse wird begonnen:
Durchsuche Prozess 'svchost.exe' - '52' Modul(e) wurden durchsucht
Durchsuche Prozess 'svchost.exe' - '39' Modul(e) wurden durchsucht
Durchsuche Prozess 'atiesrxx.exe' - '26' Modul(e) wurden durchsucht
Durchsuche Prozess 'svchost.exe' - '88' Modul(e) wurden durchsucht
Durchsuche Prozess 'svchost.exe' - '119' Modul(e) wurden durchsucht
Durchsuche Prozess 'svchost.exe' - '90' Modul(e) wurden durchsucht
Durchsuche Prozess 'svchost.exe' - '182' Modul(e) wurden durchsucht
Durchsuche Prozess 'svchost.exe' - '88' Modul(e) wurden durchsucht
Durchsuche Prozess 'GFNEXSrv.exe' - '30' Modul(e) wurden durchsucht
Durchsuche Prozess 'atieclxx.exe' - '34' Modul(e) wurden durchsucht
Durchsuche Prozess 'taskeng.exe' - '28' Modul(e) wurden durchsucht
Durchsuche Prozess 'spoolsv.exe' - '83' Modul(e) wurden durchsucht
Durchsuche Prozess 'lpksetup.exe' - '30' Modul(e) wurden durchsucht
Durchsuche Prozess 'svchost.exe' - '61' Modul(e) wurden durchsucht
Durchsuche Prozess 'armsvc.exe' - '28' Modul(e) wurden durchsucht
Durchsuche Prozess 'AppleMobileDeviceService.exe' - '72' Modul(e) wurden durchsucht
Durchsuche Prozess 'mDNSResponder.exe' - '36' Modul(e) wurden durchsucht
Durchsuche Prozess 'svchost.exe' - '60' Modul(e) wurden durchsucht
Durchsuche Prozess 'McSACore.exe' - '64' Modul(e) wurden durchsucht
Durchsuche Prozess 'svchost.exe' - '46' Modul(e) wurden durchsucht
Durchsuche Prozess 'TODDSrv.exe' - '23' Modul(e) wurden durchsucht
Durchsuche Prozess 'TosCoSrv.exe' - '26' Modul(e) wurden durchsucht
Durchsuche Prozess 'WLIDSVC.EXE' - '76' Modul(e) wurden durchsucht
Durchsuche Prozess 'TecoService.exe' - '35' Modul(e) wurden durchsucht
Durchsuche Prozess 'WLIDSvcM.exe' - '17' Modul(e) wurden durchsucht
Durchsuche Prozess 'rundll32.exe' - '16' Modul(e) wurden durchsucht
Durchsuche Prozess 'rundll32.exe' - '25' Modul(e) wurden durchsucht
Durchsuche Prozess 'rundll32.exe' - '40' Modul(e) wurden durchsucht
Durchsuche Prozess 'wmiprvse.exe' - '34' Modul(e) wurden durchsucht
Durchsuche Prozess 'PresentationFontCache.exe' - '35' Modul(e) wurden durchsucht
Durchsuche Prozess 'unsecapp.exe' - '27' Modul(e) wurden durchsucht
Durchsuche Prozess 'svchost.exe' - '37' Modul(e) wurden durchsucht
Durchsuche Prozess 'WUDFHost.exe' - '34' Modul(e) wurden durchsucht
Durchsuche Prozess 'taskhost.exe' - '69' Modul(e) wurden durchsucht
Durchsuche Prozess 'Dwm.exe' - '37' Modul(e) wurden durchsucht
Durchsuche Prozess 'Explorer.EXE' - '168' Modul(e) wurden durchsucht
Durchsuche Prozess 'TosNcCore.exe' - '35' Modul(e) wurden durchsucht
Durchsuche Prozess 'TosReelTimeMonitor.exe' - '56' Modul(e) wurden durchsucht
Durchsuche Prozess 'TemproTray.exe' - '70' Modul(e) wurden durchsucht
Durchsuche Prozess 'TPwrMain.exe' - '39' Modul(e) wurden durchsucht
Durchsuche Prozess 'TCrdMain.exe' - '90' Modul(e) wurden durchsucht
Durchsuche Prozess 'RAVCpl64.exe' - '47' Modul(e) wurden durchsucht
Durchsuche Prozess 'RAVBg64.exe' - '46' Modul(e) wurden durchsucht
Durchsuche Prozess 'SynTPEnh.exe' - '64' Modul(e) wurden durchsucht
Durchsuche Prozess 'Teco.exe' - '34' Modul(e) wurden durchsucht
Durchsuche Prozess 'SynTPHelper.exe' - '20' Modul(e) wurden durchsucht
Durchsuche Prozess 'TOPI.exe' - '79' Modul(e) wurden durchsucht
Durchsuche Prozess 'NokiaSuite.exe' - '198' Modul(e) wurden durchsucht
Durchsuche Prozess 'TosDIMonitor.exe' - '95' Modul(e) wurden durchsucht
Durchsuche Prozess 'SearchIndexer.exe' - '68' Modul(e) wurden durchsucht
Durchsuche Prozess 'ToshibaServiceStation.exe' - '98' Modul(e) wurden durchsucht
Durchsuche Prozess 'pdf24.exe' - '38' Modul(e) wurden durchsucht
Durchsuche Prozess 'jusched.exe' - '35' Modul(e) wurden durchsucht
Durchsuche Prozess 'wmpnetwk.exe' - '120' Modul(e) wurden durchsucht
Durchsuche Prozess 'MOM.exe' - '72' Modul(e) wurden durchsucht
Durchsuche Prozess 'CCC.exe' - '201' Modul(e) wurden durchsucht
Durchsuche Prozess 'ServiceLayer.exe' - '40' Modul(e) wurden durchsucht
Durchsuche Prozess 'NclUSBSrv64.exe' - '26' Modul(e) wurden durchsucht
Durchsuche Prozess 'taskeng.exe' - '32' Modul(e) wurden durchsucht
Durchsuche Prozess 'NDSTray.exe' - '94' Modul(e) wurden durchsucht
Durchsuche Prozess 'svchost.exe' - '60' Modul(e) wurden durchsucht
Durchsuche Prozess 'NclMSBTSrvEx.exe' - '37' Modul(e) wurden durchsucht
Durchsuche Prozess 'wmiprvse.exe' - '57' Modul(e) wurden durchsucht
Durchsuche Prozess 'CFSwMgr.exe' - '66' Modul(e) wurden durchsucht
Durchsuche Prozess 'DllHost.exe' - '45' Modul(e) wurden durchsucht
Durchsuche Prozess 'TMachInfo.exe' - '51' Modul(e) wurden durchsucht
Durchsuche Prozess 'CFIWmxSvcs64.exe' - '17' Modul(e) wurden durchsucht
Durchsuche Prozess 'CFSvcs.exe' - '57' Modul(e) wurden durchsucht
Durchsuche Prozess 'NASvc.exe' - '46' Modul(e) wurden durchsucht
Durchsuche Prozess 'TosSmartSrv.exe' - '40' Modul(e) wurden durchsucht
Durchsuche Prozess 'TPCHSrv.exe' - '40' Modul(e) wurden durchsucht
Durchsuche Prozess 'TosSENotify.exe' - '43' Modul(e) wurden durchsucht
Durchsuche Prozess 'TPCHWMsg.exe' - '34' Modul(e) wurden durchsucht
Durchsuche Prozess 'chrome.exe' - '141' Modul(e) wurden durchsucht
Durchsuche Prozess 'chrome.exe' - '66' Modul(e) wurden durchsucht
Durchsuche Prozess 'chrome.exe' - '44' Modul(e) wurden durchsucht
Durchsuche Prozess 'chrome.exe' - '45' Modul(e) wurden durchsucht
Durchsuche Prozess 'chrome.exe' - '44' Modul(e) wurden durchsucht
Durchsuche Prozess 'chrome.exe' - '44' Modul(e) wurden durchsucht
Durchsuche Prozess 'avira_free_antivirus (1).exe' - '43' Modul(e) wurden durchsucht
Durchsuche Prozess 'avwebloader.exe' - '90' Modul(e) wurden durchsucht
Durchsuche Prozess 'presetup.exe' - '44' Modul(e) wurden durchsucht
Durchsuche Prozess 'setup.exe' - '111' Modul(e) wurden durchsucht
Durchsuche Prozess 'SearchProtocolHost.exe' - '44' Modul(e) wurden durchsucht
Durchsuche Prozess 'SearchFilterHost.exe' - '30' Modul(e) wurden durchsucht
Durchsuche Prozess 'avguard.exe' - '88' Modul(e) wurden durchsucht
Durchsuche Prozess 'avshadow.exe' - '20' Modul(e) wurden durchsucht
Durchsuche Prozess 'sched.exe' - '45' Modul(e) wurden durchsucht
Durchsuche Prozess 'AVWEBGRD.EXE' - '72' Modul(e) wurden durchsucht
Durchsuche Prozess 'avgnt.exe' - '84' Modul(e) wurden durchsucht
Durchsuche Prozess 'avconfig.exe' - '82' Modul(e) wurden durchsucht
Durchsuche Prozess 'avcenter.exe' - '74' Modul(e) wurden durchsucht
Durchsuche Prozess 'avscan.exe' - '111' Modul(e) wurden durchsucht
Durchsuche Prozess 'chrome.exe' - '44' Modul(e) wurden durchsucht
Durchsuche Prozess 'msiexec.exe' - '57' Modul(e) wurden durchsucht
Durchsuche Prozess 'apnmcp.exe' - '32' Modul(e) wurden durchsucht
Durchsuche Prozess 'TBNotifier.exe' - '89' Modul(e) wurden durchsucht
Durchsuche Prozess 'svchost.exe' - '9' Modul(e) wurden durchsucht
Durchsuche Prozess 'DllHost.exe' - '47' Modul(e) wurden durchsucht
Durchsuche Prozess 'smss.exe' - '2' Modul(e) wurden durchsucht
Durchsuche Prozess 'csrss.exe' - '18' Modul(e) wurden durchsucht
Durchsuche Prozess 'wininit.exe' - '26' Modul(e) wurden durchsucht
Durchsuche Prozess 'csrss.exe' - '18' Modul(e) wurden durchsucht
Durchsuche Prozess 'services.exe' - '33' Modul(e) wurden durchsucht
Durchsuche Prozess 'lsass.exe' - '66' Modul(e) wurden durchsucht
Durchsuche Prozess 'lsm.exe' - '16' Modul(e) wurden durchsucht
Durchsuche Prozess 'winlogon.exe' - '31' Modul(e) wurden durchsucht
Der Suchlauf auf Verweise zu ausführbaren Dateien (Registry) wird begonnen:
Die Registry wurde durchsucht ( '10799' Dateien ).
Ende des Suchlaufs: Montag, 22. Juli 2013 12:00
Benötigte Zeit: 01:39 Minute(n)
Der Suchlauf wurde vollständig durchgeführt.
0 Verzeichnisse wurden überprüft
12070 Dateien wurden geprüft
0 Viren bzw. unerwünschte Programme wurden gefunden
0 Dateien wurden als verdächtig eingestuft
0 Dateien wurden gelöscht
0 Viren bzw. unerwünschte Programme wurden repariert
0 Dateien wurden in die Quarantäne verschoben
0 Dateien wurden umbenannt
0 Dateien konnten nicht durchsucht werden
12070 Dateien ohne Befall
312 Archive wurden durchsucht
0 Warnungen
0 Hinweise
Code:
ATTFilter Avira Free Antivirus
Erstellungsdatum der Reportdatei: Montag, 22. Juli 2013 12:05
Das Programm läuft als uneingeschränkte Vollversion.
Online-Dienste stehen zur Verfügung.
Lizenznehmer : Avira Free Antivirus
Seriennummer : 0000149996-ADJIE-0000001
Plattform : Windows 7 Home Premium
Windowsversion : (Service Pack 1) [6.1.7601]
Boot Modus : Normal gebootet
Benutzername : SYSTEM
Computername : SCHNEBALL-TOSH
Versionsinformationen:
BUILD.DAT : 13.0.0.3737 54853 Bytes 20.06.2013 15:37:00
AVSCAN.EXE : 13.6.0.1722 634936 Bytes 22.07.2013 09:55:51
AVSCANRC.DLL : 13.6.0.1550 62520 Bytes 22.07.2013 09:55:51
LUKE.DLL : 13.6.0.1550 65080 Bytes 22.07.2013 09:56:00
AVSCPLR.DLL : 13.6.0.1712 92216 Bytes 22.07.2013 09:55:51
AVREG.DLL : 13.6.0.1550 247864 Bytes 22.07.2013 09:55:50
avlode.dll : 13.6.2.1704 449592 Bytes 22.07.2013 09:55:50
avlode.rdf : 13.0.1.22 26240 Bytes 22.07.2013 09:56:14
VBASE000.VDF : 7.11.70.0 66736640 Bytes 04.04.2013 09:55:29
VBASE001.VDF : 7.11.74.226 2201600 Bytes 30.04.2013 09:55:31
VBASE002.VDF : 7.11.80.60 2751488 Bytes 28.05.2013 09:55:33
VBASE003.VDF : 7.11.85.214 2162688 Bytes 21.06.2013 09:55:34
VBASE004.VDF : 7.11.85.215 2048 Bytes 21.06.2013 09:55:34
VBASE005.VDF : 7.11.85.216 2048 Bytes 21.06.2013 09:55:34
VBASE006.VDF : 7.11.85.217 2048 Bytes 21.06.2013 09:55:34
VBASE007.VDF : 7.11.85.218 2048 Bytes 21.06.2013 09:55:34
VBASE008.VDF : 7.11.85.219 2048 Bytes 21.06.2013 09:55:34
VBASE009.VDF : 7.11.85.220 2048 Bytes 21.06.2013 09:55:34
VBASE010.VDF : 7.11.85.221 2048 Bytes 21.06.2013 09:55:34
VBASE011.VDF : 7.11.85.222 2048 Bytes 21.06.2013 09:55:34
VBASE012.VDF : 7.11.85.223 2048 Bytes 21.06.2013 09:55:35
VBASE013.VDF : 7.11.85.224 2048 Bytes 21.06.2013 09:55:35
VBASE014.VDF : 7.11.86.93 870400 Bytes 24.06.2013 09:55:35
VBASE015.VDF : 7.11.86.223 331776 Bytes 25.06.2013 09:55:35
VBASE016.VDF : 7.11.87.67 204800 Bytes 27.06.2013 09:55:36
VBASE017.VDF : 7.11.87.157 247296 Bytes 28.06.2013 09:55:36
VBASE018.VDF : 7.11.87.221 196608 Bytes 30.06.2013 09:55:36
VBASE019.VDF : 7.11.88.51 356352 Bytes 02.07.2013 09:55:36
VBASE020.VDF : 7.11.88.119 182272 Bytes 03.07.2013 09:55:36
VBASE021.VDF : 7.11.88.213 266752 Bytes 05.07.2013 09:55:37
VBASE022.VDF : 7.11.89.43 184320 Bytes 07.07.2013 09:55:37
VBASE023.VDF : 7.11.89.105 203776 Bytes 08.07.2013 09:55:37
VBASE024.VDF : 7.11.89.175 253440 Bytes 10.07.2013 09:55:37
VBASE025.VDF : 7.11.90.3 221696 Bytes 11.07.2013 09:55:37
VBASE026.VDF : 7.11.90.71 217088 Bytes 13.07.2013 09:55:37
VBASE027.VDF : 7.11.90.173 306688 Bytes 16.07.2013 09:55:38
VBASE028.VDF : 7.11.91.1 348160 Bytes 18.07.2013 09:55:38
VBASE029.VDF : 7.11.91.99 493568 Bytes 21.07.2013 09:55:38
VBASE030.VDF : 7.11.91.100 2048 Bytes 21.07.2013 09:55:38
VBASE031.VDF : 7.11.91.132 160256 Bytes 22.07.2013 09:55:38
Engineversion : 8.2.12.88
AEVDF.DLL : 8.1.3.4 102774 Bytes 22.07.2013 09:55:42
AESCRIPT.DLL : 8.1.4.134 491902 Bytes 22.07.2013 09:55:42
AESCN.DLL : 8.1.10.4 131446 Bytes 22.07.2013 09:55:42
AESBX.DLL : 8.2.5.12 606578 Bytes 22.07.2013 09:55:42
AERDL.DLL : 8.2.0.128 688504 Bytes 22.07.2013 09:55:42
AEPACK.DLL : 8.3.2.24 749945 Bytes 22.07.2013 09:55:41
AEOFFICE.DLL : 8.1.2.70 205181 Bytes 22.07.2013 09:55:41
AEHEUR.DLL : 8.1.4.486 6021498 Bytes 22.07.2013 09:55:41
AEHELP.DLL : 8.1.27.4 266617 Bytes 22.07.2013 09:55:39
AEGEN.DLL : 8.1.7.8 442742 Bytes 22.07.2013 09:55:39
AEEXP.DLL : 8.4.1.28 266615 Bytes 22.07.2013 09:55:42
AEEMU.DLL : 8.1.3.2 393587 Bytes 22.07.2013 09:55:39
AECORE.DLL : 8.1.31.6 201081 Bytes 22.07.2013 09:55:39
AEBB.DLL : 8.1.1.4 53619 Bytes 22.07.2013 09:55:39
AVWINLL.DLL : 13.6.0.1550 23608 Bytes 22.07.2013 09:54:46
AVPREF.DLL : 13.6.0.1550 48184 Bytes 22.07.2013 09:55:50
AVREP.DLL : 13.6.0.1550 175672 Bytes 22.07.2013 09:55:50
AVARKT.DLL : 13.6.0.1626 258104 Bytes 22.07.2013 09:55:47
AVEVTLOG.DLL : 13.6.0.1550 164920 Bytes 22.07.2013 09:55:48
SQLITE3.DLL : 3.7.0.1 394824 Bytes 22.07.2013 09:56:07
AVSMTP.DLL : 13.6.0.1550 59960 Bytes 22.07.2013 09:55:51
NETNT.DLL : 13.6.0.1550 13368 Bytes 22.07.2013 09:56:02
RCIMAGE.DLL : 13.4.0.360 4780832 Bytes 22.07.2013 09:54:47
RCTEXT.DLL : 13.6.0.1624 67128 Bytes 22.07.2013 09:54:47
Konfiguration für den aktuellen Suchlauf:
Job Name..............................: Vollständige Systemprüfung
Konfigurationsdatei...................: C:\Program Files (x86)\Avira\AntiVir Desktop\sysscan.avp
Protokollierung.......................: standard
Primäre Aktion........................: interaktiv
Sekundäre Aktion......................: ignorieren
Durchsuche Masterbootsektoren.........: ein
Durchsuche Bootsektoren...............: ein
Bootsektoren..........................: C:, D:,
Durchsuche aktive Programme...........: ein
Laufende Programme erweitert..........: ein
Durchsuche Registrierung..............: ein
Suche nach Rootkits...................: ein
Integritätsprüfung von Systemdateien..: aus
Datei Suchmodus.......................: Alle Dateien
Durchsuche Archive....................: ein
Rekursionstiefe einschränken..........: 20
Archiv Smart Extensions...............: ein
Makrovirenheuristik...................: ein
Dateiheuristik........................: erweitert
Beginn des Suchlaufs: Montag, 22. Juli 2013 12:05
Der Suchlauf über die Masterbootsektoren wird begonnen:
Masterbootsektor HD0
[INFO] Es wurde kein Virus gefunden!
Masterbootsektor HD1
[INFO] Es wurde kein Virus gefunden!
Der Suchlauf über die Bootsektoren wird begonnen:
Bootsektor 'C:\'
[INFO] Es wurde kein Virus gefunden!
Bootsektor 'D:\'
[INFO] Es wurde kein Virus gefunden!
Der Suchlauf nach versteckten Objekten wird begonnen.
Der Suchlauf über gestartete Prozesse wird begonnen:
Durchsuche Prozess 'svchost.exe' - '52' Modul(e) wurden durchsucht
Durchsuche Prozess 'svchost.exe' - '39' Modul(e) wurden durchsucht
Durchsuche Prozess 'atiesrxx.exe' - '26' Modul(e) wurden durchsucht
Durchsuche Prozess 'svchost.exe' - '89' Modul(e) wurden durchsucht
Durchsuche Prozess 'svchost.exe' - '119' Modul(e) wurden durchsucht
Durchsuche Prozess 'svchost.exe' - '90' Modul(e) wurden durchsucht
Durchsuche Prozess 'svchost.exe' - '179' Modul(e) wurden durchsucht
Durchsuche Prozess 'svchost.exe' - '88' Modul(e) wurden durchsucht
Durchsuche Prozess 'GFNEXSrv.exe' - '30' Modul(e) wurden durchsucht
Durchsuche Prozess 'atieclxx.exe' - '34' Modul(e) wurden durchsucht
Durchsuche Prozess 'taskeng.exe' - '28' Modul(e) wurden durchsucht
Durchsuche Prozess 'spoolsv.exe' - '83' Modul(e) wurden durchsucht
Durchsuche Prozess 'lpksetup.exe' - '30' Modul(e) wurden durchsucht
Durchsuche Prozess 'svchost.exe' - '62' Modul(e) wurden durchsucht
Durchsuche Prozess 'armsvc.exe' - '28' Modul(e) wurden durchsucht
Durchsuche Prozess 'AppleMobileDeviceService.exe' - '72' Modul(e) wurden durchsucht
Durchsuche Prozess 'mDNSResponder.exe' - '36' Modul(e) wurden durchsucht
Durchsuche Prozess 'svchost.exe' - '60' Modul(e) wurden durchsucht
Durchsuche Prozess 'McSACore.exe' - '64' Modul(e) wurden durchsucht
Durchsuche Prozess 'svchost.exe' - '46' Modul(e) wurden durchsucht
Durchsuche Prozess 'TODDSrv.exe' - '23' Modul(e) wurden durchsucht
Durchsuche Prozess 'TosCoSrv.exe' - '26' Modul(e) wurden durchsucht
Durchsuche Prozess 'WLIDSVC.EXE' - '76' Modul(e) wurden durchsucht
Durchsuche Prozess 'TecoService.exe' - '35' Modul(e) wurden durchsucht
Durchsuche Prozess 'WLIDSvcM.exe' - '17' Modul(e) wurden durchsucht
Durchsuche Prozess 'rundll32.exe' - '16' Modul(e) wurden durchsucht
Durchsuche Prozess 'rundll32.exe' - '25' Modul(e) wurden durchsucht
Durchsuche Prozess 'rundll32.exe' - '40' Modul(e) wurden durchsucht
Durchsuche Prozess 'wmiprvse.exe' - '33' Modul(e) wurden durchsucht
Durchsuche Prozess 'PresentationFontCache.exe' - '35' Modul(e) wurden durchsucht
Durchsuche Prozess 'unsecapp.exe' - '27' Modul(e) wurden durchsucht
Durchsuche Prozess 'svchost.exe' - '37' Modul(e) wurden durchsucht
Durchsuche Prozess 'WUDFHost.exe' - '34' Modul(e) wurden durchsucht
Durchsuche Prozess 'taskhost.exe' - '70' Modul(e) wurden durchsucht
Durchsuche Prozess 'Dwm.exe' - '37' Modul(e) wurden durchsucht
Durchsuche Prozess 'Explorer.EXE' - '175' Modul(e) wurden durchsucht
Durchsuche Prozess 'TosNcCore.exe' - '35' Modul(e) wurden durchsucht
Durchsuche Prozess 'TosReelTimeMonitor.exe' - '56' Modul(e) wurden durchsucht
Durchsuche Prozess 'TemproTray.exe' - '70' Modul(e) wurden durchsucht
Durchsuche Prozess 'TPwrMain.exe' - '39' Modul(e) wurden durchsucht
Durchsuche Prozess 'TCrdMain.exe' - '90' Modul(e) wurden durchsucht
Durchsuche Prozess 'RAVCpl64.exe' - '47' Modul(e) wurden durchsucht
Durchsuche Prozess 'RAVBg64.exe' - '46' Modul(e) wurden durchsucht
Durchsuche Prozess 'SynTPEnh.exe' - '64' Modul(e) wurden durchsucht
Durchsuche Prozess 'Teco.exe' - '34' Modul(e) wurden durchsucht
Durchsuche Prozess 'SynTPHelper.exe' - '20' Modul(e) wurden durchsucht
Durchsuche Prozess 'TOPI.exe' - '79' Modul(e) wurden durchsucht
Durchsuche Prozess 'NokiaSuite.exe' - '198' Modul(e) wurden durchsucht
Durchsuche Prozess 'TosDIMonitor.exe' - '95' Modul(e) wurden durchsucht
Durchsuche Prozess 'SearchIndexer.exe' - '57' Modul(e) wurden durchsucht
Durchsuche Prozess 'ToshibaServiceStation.exe' - '98' Modul(e) wurden durchsucht
Durchsuche Prozess 'pdf24.exe' - '38' Modul(e) wurden durchsucht
Durchsuche Prozess 'jusched.exe' - '35' Modul(e) wurden durchsucht
Durchsuche Prozess 'wmpnetwk.exe' - '120' Modul(e) wurden durchsucht
Durchsuche Prozess 'MOM.exe' - '72' Modul(e) wurden durchsucht
Durchsuche Prozess 'CCC.exe' - '201' Modul(e) wurden durchsucht
Durchsuche Prozess 'ServiceLayer.exe' - '40' Modul(e) wurden durchsucht
Durchsuche Prozess 'NclUSBSrv64.exe' - '26' Modul(e) wurden durchsucht
Durchsuche Prozess 'taskeng.exe' - '32' Modul(e) wurden durchsucht
Durchsuche Prozess 'NDSTray.exe' - '94' Modul(e) wurden durchsucht
Durchsuche Prozess 'svchost.exe' - '60' Modul(e) wurden durchsucht
Durchsuche Prozess 'NclMSBTSrvEx.exe' - '37' Modul(e) wurden durchsucht
Durchsuche Prozess 'wmiprvse.exe' - '57' Modul(e) wurden durchsucht
Durchsuche Prozess 'CFSwMgr.exe' - '66' Modul(e) wurden durchsucht
Durchsuche Prozess 'DllHost.exe' - '45' Modul(e) wurden durchsucht
Durchsuche Prozess 'TMachInfo.exe' - '51' Modul(e) wurden durchsucht
Durchsuche Prozess 'CFIWmxSvcs64.exe' - '17' Modul(e) wurden durchsucht
Durchsuche Prozess 'CFSvcs.exe' - '57' Modul(e) wurden durchsucht
Durchsuche Prozess 'NASvc.exe' - '46' Modul(e) wurden durchsucht
Durchsuche Prozess 'TosSmartSrv.exe' - '40' Modul(e) wurden durchsucht
Durchsuche Prozess 'TPCHSrv.exe' - '40' Modul(e) wurden durchsucht
Durchsuche Prozess 'TosSENotify.exe' - '43' Modul(e) wurden durchsucht
Durchsuche Prozess 'TPCHWMsg.exe' - '34' Modul(e) wurden durchsucht
Durchsuche Prozess 'chrome.exe' - '141' Modul(e) wurden durchsucht
Durchsuche Prozess 'chrome.exe' - '66' Modul(e) wurden durchsucht
Durchsuche Prozess 'chrome.exe' - '44' Modul(e) wurden durchsucht
Durchsuche Prozess 'avguard.exe' - '88' Modul(e) wurden durchsucht
Durchsuche Prozess 'avshadow.exe' - '29' Modul(e) wurden durchsucht
Durchsuche Prozess 'sched.exe' - '47' Modul(e) wurden durchsucht
Durchsuche Prozess 'AVWEBGRD.EXE' - '72' Modul(e) wurden durchsucht
Durchsuche Prozess 'avgnt.exe' - '95' Modul(e) wurden durchsucht
Durchsuche Prozess 'apnmcp.exe' - '43' Modul(e) wurden durchsucht
Durchsuche Prozess 'TBNotifier.exe' - '89' Modul(e) wurden durchsucht
Durchsuche Prozess 'avcenter.exe' - '95' Modul(e) wurden durchsucht
Durchsuche Prozess 'avscan.exe' - '127' Modul(e) wurden durchsucht
Durchsuche Prozess 'vssvc.exe' - '47' Modul(e) wurden durchsucht
Durchsuche Prozess 'svchost.exe' - '28' Modul(e) wurden durchsucht
Durchsuche Prozess 'SearchProtocolHost.exe' - '29' Modul(e) wurden durchsucht
Durchsuche Prozess 'SearchFilterHost.exe' - '27' Modul(e) wurden durchsucht
Durchsuche Prozess 'smss.exe' - '2' Modul(e) wurden durchsucht
Durchsuche Prozess 'csrss.exe' - '18' Modul(e) wurden durchsucht
Durchsuche Prozess 'wininit.exe' - '26' Modul(e) wurden durchsucht
Durchsuche Prozess 'csrss.exe' - '18' Modul(e) wurden durchsucht
Durchsuche Prozess 'services.exe' - '33' Modul(e) wurden durchsucht
Durchsuche Prozess 'lsass.exe' - '66' Modul(e) wurden durchsucht
Durchsuche Prozess 'lsm.exe' - '16' Modul(e) wurden durchsucht
Durchsuche Prozess 'winlogon.exe' - '31' Modul(e) wurden durchsucht
Der Suchlauf auf Verweise zu ausführbaren Dateien (Registry) wird begonnen:
Die Registry wurde durchsucht ( '10779' Dateien ).
Der Suchlauf über die ausgewählten Dateien wird begonnen:
Beginne mit der Suche in 'C:\' <WINDOWS>
Beginne mit der Suche in 'D:\' <Data>
Ende des Suchlaufs: Montag, 22. Juli 2013 13:33
Benötigte Zeit: 1:27:24 Stunde(n)
Der Suchlauf wurde vollständig durchgeführt.
27013 Verzeichnisse wurden überprüft
474779 Dateien wurden geprüft
0 Viren bzw. unerwünschte Programme wurden gefunden
0 Dateien wurden als verdächtig eingestuft
0 Dateien wurden gelöscht
0 Viren bzw. unerwünschte Programme wurden repariert
0 Dateien wurden in die Quarantäne verschoben
0 Dateien wurden umbenannt
0 Dateien konnten nicht durchsucht werden
474779 Dateien ohne Befall
5745 Archive wurden durchsucht
0 Warnungen
0 Hinweise
841111 Objekte wurden beim Rootkitscan durchsucht
0 Versteckte Objekte wurden gefunden
Code:
ATTFilter Results of screen317's Security Check version 0.99.70
Windows 7 Service Pack 1 x64 (UAC is enabled)
Internet Explorer 10
``````````````Antivirus/Firewall Check:``````````````
Avira Desktop
Antivirus up to date! (On Access scanning disabled!)
`````````Anti-malware/Other Utilities Check:`````````
McAfee SiteAdvisor
JavaFX 2.1.1
Java(TM) 6 Update 31
Java 7 Update 21
Java version out of Date!
Adobe Reader XI
Google Chrome 28.0.1500.72
````````Process Check: objlist.exe by Laurent````````
Avira Antivir avgnt.exe
Avira Antivir avguard.exe
TOSHIBA TOSHIBA Online Product Information TOPI.exe
`````````````````System Health check`````````````````
Total Fragmentation on Drive C:
````````````````````End of Log``````````````````````
FRST Logfile: FRST Logfile: FRST Logfile: Code:
ATTFilter Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 21-07-2013
Ran by Schneball (administrator) on 22-07-2013 13:48:51
Running from C:\Users\Schneball\Desktop
Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard
Internet Explorer Version 10
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(AMD) C:\Windows\system32\atiesrxx.exe
() C:\Windows\System32\GFNEXSrv.exe
(AMD) C:\Windows\system32\atieclxx.exe
(Microsoft Corporation) C:\Windows\System32\lpksetup.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(TOSHIBA Corporation) C:\Windows\system32\TODDSrv.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\TECO\TecoService.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
(Microsoft Corporation) C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\BulletinBoard\TosNcCore.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\ReelTime\TosReelTimeMonitor.exe
(Toshiba Europe GmbH) C:\Program Files (x86)\Toshiba TEMPRO\TemproTray.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\Power Saver\TPwrMain.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\FlashCards\TCrdMain.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\TECO\Teco.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(TOSHIBA) C:\Program Files (x86)\TOSHIBA\TOSHIBA Online Product Information\TOPI.exe
(Nokia) C:\Program Files (x86)\Nokia\Nokia Suite\NokiaSuite.exe
(Toshiba) C:\Program Files\TOSHIBA\TOSHIBA Places Icon Utility\TosDIMonitor.exe
(TOSHIBA Corporation) C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\ToshibaServiceStation.exe
(Geek Software GmbH) C:\Program Files (x86)\PDF24\pdf24.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(Nokia) C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe
(Nokia) C:\Program Files (x86)\PC Connectivity Solution\Transports\NclUSBSrv64.exe
(TOSHIBA CORPORATION) C:\Program Files (x86)\TOSHIBA\ConfigFree\NDSTray.exe
(Nokia) C:\Program Files (x86)\PC Connectivity Solution\Transports\NclMSBTSrvEx.exe
(TOSHIBA CORPORATION) C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSwMgr.exe
(TOSHIBA Corporation) C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe
(TOSHIBA CORPORATION) C:\Program Files (x86)\TOSHIBA\ConfigFree\CFIWmxSvcs64.exe
(TOSHIBA CORPORATION) C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSvcs.exe
(Nero AG) c:\Program Files (x86)\Nero\Update\NASvc.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSmartSrv.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\TPHM\TPCHSrv.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosSENotify.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\TPHM\TPCHWMsg.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\AVWEBGRD.EXE
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
(APN LLC.) C:\Program Files (x86)\AskPartnerNetwork\Toolbar\apnmcp.exe
(APN) C:\Program Files (x86)\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avcenter.exe
() C:\Users\Schneball\Desktop\SecurityCheck.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [TosNC] - C:\Program Files\Toshiba\BulletinBoard\TosNcCore.exe [597928 2011-03-03] (TOSHIBA Corporation)
HKLM\...\Run: [TosReelTimeMonitor] - C:\Program Files\TOSHIBA\ReelTime\TosReelTimeMonitor.exe [38304 2011-03-30] (TOSHIBA Corporation)
HKLM\...\Run: [Toshiba TEMPRO] - C:\Program Files (x86)\Toshiba TEMPRO\TemproTray.exe [1546720 2011-02-10] (Toshiba Europe GmbH)
HKLM\...\Run: [TPwrMain] - C:\Program Files\TOSHIBA\Power Saver\TPwrMain.EXE [566696 2011-03-02] (TOSHIBA Corporation)
HKLM\...\Run: [HSON] - C:\Program Files\TOSHIBA\TBS\HSON.exe [296824 2010-09-25] (TOSHIBA Corporation)
HKLM\...\Run: [TCrdMain] - C:\Program Files\TOSHIBA\FlashCards\TCrdMain.exe [967544 2011-03-09] (TOSHIBA Corporation)
HKLM\...\Run: [RtHDVCpl] - C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [11775592 2011-01-12] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg] - C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2186856 2011-01-10] (Realtek Semiconductor)
HKLM\...\Run: [SynTPEnh] - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2679592 2011-02-03] (Synaptics Incorporated)
HKLM\...\Run: [Teco] - C:\Program Files\TOSHIBA\TECO\Teco.exe [1544104 2011-04-07] (TOSHIBA Corporation)
HKLM\...\Run: [TosSENotify] - C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosWaitSrv.exe [710040 2010-12-08] (TOSHIBA Corporation)
HKLM\...\Run: [TosWaitSrv] - C:\Program Files\TOSHIBA\TPHM\TosWaitSrv.exe [711576 2011-04-05] (TOSHIBA Corporation)
HKLM\...\Run: [TosVolRegulator] - C:\Program Files\TOSHIBA\TosVolRegulator\TosVolRegulator.exe [24376 2009-11-11] (TOSHIBA Corporation)
HKLM\...\Run: [Toshiba Registration] - C:\Program Files\TOSHIBA\Registration\ToshibaReminder.exe [150992 2011-08-01] (Toshiba Europe GmbH)
HKCU\...\Run: [TOPI.EXE] - C:\Program Files (x86)\TOSHIBA\TOSHIBA Online Product Information\topi.exe [846936 2011-05-16] (TOSHIBA)
HKCU\...\Run: [NokiaSuite.exe] - C:\Program Files (x86)\Nokia\Nokia Suite\NokiaSuite.exe [1090040 2012-12-21] (Nokia)
HKLM-x32\...\Run: [NBAgent] - "c:\Program Files (x86)\Nero\Nero 10\Nero BackItUp\NBAgent.exe" /WinStart [1409424 2011-06-29] (Nero AG)
HKLM-x32\...\Run: [StartCCC] - "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun [336384 2011-04-20] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [ToshibaServiceStation] - C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\ToshibaServiceStation.exe /hide:60 [1294712 2010-11-29] (TOSHIBA Corporation)
HKLM-x32\...\Run: [APSDaemon] - "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" [59240 2011-11-02] (Apple Inc.)
HKLM-x32\...\Run: [PDFPrint] - C:\Program Files (x86)\PDF24\pdf24.exe [163000 2012-12-12] (Geek Software GmbH)
HKLM-x32\...\Run: [SunJavaUpdateSched] - "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" [253816 2013-03-12] (Oracle Corporation)
HKLM-x32\...\Run: [Adobe ARM] - "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [958576 2013-05-11] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [avgnt] - "C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe" /min [345144 2013-07-22] (Avira Operations GmbH & Co. KG)
HKLM-x32\...\Run: [ApnTBMon] - "C:\Program Files (x86)\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe" [1558480 2013-07-03] (APN)
HKU\Default\...\Run: [TOPI.EXE] - C:\Program Files (x86)\TOSHIBA\TOSHIBA Online Product Information\topi.exe /STAR [846936 2011-05-16] (TOSHIBA)
HKU\Default User\...\Run: [TOPI.EXE] - C:\Program Files (x86)\TOSHIBA\TOSHIBA Online Product Information\topi.exe /STAR [846936 2011-05-16] (TOSHIBA)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Toshiba Places Icon Utility.lnk
ShortcutTarget: Toshiba Places Icon Utility.lnk -> C:\Program Files\TOSHIBA\TOSHIBA Places Icon Utility\TosDIMonitor.exe (Toshiba)
Startup: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\TRDCReminder.lnk
ShortcutTarget: TRDCReminder.lnk -> C:\Program Files (x86)\TOSHIBA\TRDCReminder\TRDCReminder.exe (TOSHIBA Europe)
Startup: C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\TRDCReminder.lnk
ShortcutTarget: TRDCReminder.lnk -> C:\Program Files (x86)\TOSHIBA\TRDCReminder\TRDCReminder.exe (TOSHIBA Europe)
BootExecute: autocheck autochk * sdnclean64.exe
==================== Internet (Whitelisted) ====================
ProxyServer: :0
HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.bing.com
StartMenuInternet: IEXPLORE.EXE - "C:\Program Files (x86)\Internet Explorer\iexplore.exe"
SearchScopes: HKLM - DefaultScope value is missing.
BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\PROGRA~2\mcafee\SITEAD~1\x64\mcieplg.dll (McAfee, Inc.)
BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: Avira SearchFree Toolbar plus Web Protection - {41564952-412D-5637-00A7-7A786E7484D7} - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Passport.dll (APN LLC.)
BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: Windows Live Messenger Companion Helper - {9FDDE16B-836F-4806-AB1F-1455CBEFF289} - C:\Program Files (x86)\Windows Live\Companion\companioncore.dll (Microsoft Corporation)
BHO-x32: McAfee SiteAdvisor BHO - {B164E929-A1B6-4A06-B104-2CD0E90A88FF} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll (McAfee, Inc.)
BHO-x32: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~3\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: TOSHIBA Media Controller Plug-in - {F3C88694-EFFA-4d78-B409-54B7B2535B14} - C:\Program Files (x86)\TOSHIBA\TOSHIBA Media Controller Plug-in\TOSHIBAMediaControllerIE.dll (<TOSHIBA>)
Toolbar: HKLM - McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\PROGRA~2\mcafee\SITEAD~1\x64\mcieplg.dll (McAfee, Inc.)
Toolbar: HKLM-x32 - McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll (McAfee, Inc.)
Toolbar: HKLM-x32 - Avira SearchFree Toolbar plus Web Protection - {41564952-412D-5637-00A7-7A786E7484D7} - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\AVIRA-V7\Passport.dll (APN LLC.)
Toolbar: HKCU - No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File
Handler: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\x64\mcieplg.dll (McAfee, Inc.)
Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\x64\mcieplg.dll (McAfee, Inc.)
Handler-x32: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll (McAfee, Inc.)
Handler-x32: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll (McAfee, Inc.)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 192.168.178.1
FireFox:
========
FF Plugin: @microsoft.com/GENUINE - disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files\Microsoft Silverlight\5.1.20513.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.21.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @mcafee.com/SAFFPlugin - C:\Program Files (x86)\McAfee\SiteAdvisor\npmcffplg32.dll (McAfee, Inc.)
FF Plugin-x32: @microsoft.com/GENUINE - disabled No File
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files (x86)\Microsoft Silverlight\5.1.20513.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 - C:\PROGRA~2\MICROS~3\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~3\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3538.0513 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3555.0308 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @nokia.com/EnablerPlugin - C:\Program Files (x86)\Nokia\Nokia Suite\npNokiaSuiteEnabler.dll ( )
FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 - C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll ()
FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKCU: amazon.com/AmazonMP3DownloaderPlugin - C:\Program Files (x86)\Amazon\MP3 Downloader\npAmazonMP3DownloaderPlugin101727.dll (Amazon.com, Inc.)
FF HKLM-x32\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] C:\Program Files (x86)\McAfee\SiteAdvisor
FF Extension: McAfee SiteAdvisor - C:\Program Files (x86)\McAfee\SiteAdvisor
Chrome:
=======
CHR HomePage: hxxp://www.google.com/
CHR RestoreOnStartup: "hxxp://www.google.com/"
CHR DefaultSearchURL: (Google) - {google:baseURL}search?q={searchTerms}&{google:RLZ}{google:originalQueryForSuggestion}{google:assistedQueryStats}{google:searchFieldtrialParameter}{google:searchClient}{google:sourceId}{google:instantExtendedEnabledParameter}ie={inputEncoding}
CHR DefaultSuggestURL: (Google) - {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client=chrome&q={searchTerms}&{google:cursorPosition}{google:zeroPrefixUrl}sugkey={google:suggestAPIKeyParameter}
CHR Plugin: (Shockwave Flash) - C:\Program Files (x86)\Google\Chrome\Application\28.0.1500.72\PepperFlash\pepflashplayer.dll ()
CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer
CHR Plugin: (Native Client) - C:\Program Files (x86)\Google\Chrome\Application\28.0.1500.72\ppGoogleNaClPluginChrome.dll ()
CHR Plugin: (Chrome PDF Viewer) - C:\Program Files (x86)\Google\Chrome\Application\28.0.1500.72\pdf.dll ()
CHR Plugin: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\Browser\nppdf32.dll (Adobe Systems Inc.)
CHR Plugin: (Microsoft Office 2010) - C:\PROGRA~2\MICROS~3\Office14\NPAUTHZ.DLL (Microsoft Corporation)
CHR Plugin: (Microsoft Office 2010) - C:\PROGRA~2\MICROS~3\Office14\NPSPWRAP.DLL (Microsoft Corporation)
CHR Plugin: (AmazonMP3DownloaderPlugin) - C:\Program Files (x86)\Amazon\MP3 Downloader\npAmazonMP3DownloaderPlugin101727.dll (Amazon.com, Inc.)
CHR Plugin: (Google Earth Plugin) - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll No File
CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.)
CHR Plugin: (Java(TM) Platform SE 7 U21) - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
CHR Plugin: (McAfee SiteAdvisor) - C:\Program Files (x86)\McAfee\SiteAdvisor\npmcffplg32.dll (McAfee, Inc.)
CHR Plugin: (Silverlight Plug-In) - C:\Program Files (x86)\Microsoft Silverlight\5.1.20513.0\npctrl.dll ( Microsoft Corporation)
CHR Plugin: (Nokia Suite Enabler Plugin) - C:\Program Files (x86)\Nokia\Nokia Suite\npNokiaSuiteEnabler.dll ( )
CHR Plugin: (Windows Live Photo Gallery) - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
CHR HKLM-x32\...\Chrome\Extension: [aaaaacalgebmfelllfiaoknifldpngjh] - C:\ProgramData\AskPartnerNetwork\Toolbar\AVIRA-V7\CRX\ToolbarCR.crx
CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - C:\Program Files (x86)\McAfee\SiteAdvisor\McChPlg.crx
==================== Services (Whitelisted) =================
R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [84024 2013-07-22] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [108088 2013-07-22] (Avira Operations GmbH & Co. KG)
R2 AntiVirWebService; C:\Program Files (x86)\Avira\AntiVir Desktop\AVWEBGRD.EXE [589368 2013-07-22] (Avira Operations GmbH & Co. KG)
R2 APNMCP; C:\Program Files (x86)\AskPartnerNetwork\Toolbar\apnmcp.exe [168400 2013-07-03] (APN LLC.)
R2 GFNEXSrv; C:\Windows\System32\GFNEXSrv.exe [162824 2010-09-09] ()
R2 McAfee SiteAdvisor Service; c:\PROGRA~2\mcafee\SITEAD~1\McSACore.exe [120592 2013-05-22] (McAfee, Inc.)
S3 TemproMonitoringService; C:\Program Files (x86)\Toshiba TEMPRO\TemproSvc.exe [112080 2011-02-10] (Toshiba Europe GmbH)
==================== Drivers (Whitelisted) ====================
R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [100712 2013-07-22] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [130016 2013-07-22] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [28600 2013-07-22] (Avira Operations GmbH & Co. KG)
S3 catchme; \??\C:\ComboFix\catchme.sys [x]
S3 esgiguard; \??\C:\Program Files\Enigma Software Group\SpyHunter\esgiguard.sys [x]
S3 TDEIO; \??\c:\Windows\SysWOW64\sysprep\Bootprio\tdeio64.sys [x]
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2013-07-22 13:45 - 2013-07-22 13:45 - 00891062 _____ C:\Users\Schneball\Desktop\SecurityCheck.exe
2013-07-22 12:04 - 2013-07-22 12:04 - 00083672 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avnetflt.sys
2013-07-22 12:03 - 2013-07-22 12:03 - 00000000 ____D C:\Users\Schneball\AppData\Roaming\Avira
2013-07-22 11:58 - 2013-07-22 11:58 - 00000000 ____D C:\Users\Schneball\AppData\Roaming\Mozilla
2013-07-22 11:58 - 2013-07-22 11:58 - 00000000 ____D C:\ProgramData\AskPartnerNetwork
2013-07-22 11:58 - 2013-07-22 11:58 - 00000000 ____D C:\ProgramData\APN
2013-07-22 11:58 - 2013-07-22 11:58 - 00000000 ____D C:\Program Files (x86)\AskPartnerNetwork
2013-07-22 11:58 - 2013-06-06 22:41 - 00489392 _____ (Ask Partner Network) C:\Users\Schneball\Documents\APNSetup.exe
2013-07-22 11:57 - 2013-07-22 11:57 - 00002077 _____ C:\Users\Public\Desktop\Avira Control Center.lnk
2013-07-22 11:57 - 2013-07-22 11:57 - 00000000 ____D C:\ProgramData\Avira
2013-07-22 11:57 - 2013-07-22 11:57 - 00000000 ____D C:\Program Files (x86)\Avira
2013-07-22 11:57 - 2013-07-22 11:56 - 00130016 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avipbb.sys
2013-07-22 11:57 - 2013-07-22 11:56 - 00100712 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avgntflt.sys
2013-07-22 11:57 - 2013-07-22 11:56 - 00028600 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avkmgr.sys
2013-07-22 11:54 - 2013-07-22 11:54 - 02092792 _____ C:\Users\Schneball\Downloads\avira_free_antivirus (1).exe
2013-07-22 11:43 - 2013-07-22 11:44 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\{71DB5144-92B5-4E58-B9FB-D3E0D76E1C3A}
2013-07-22 10:31 - 2013-07-22 10:31 - 02347384 _____ (ESET) C:\Users\Schneball\Desktop\esetsmartinstaller_enu.exe
2013-07-22 10:31 - 2013-07-22 10:31 - 00000000 ____D C:\Program Files (x86)\ESET
2013-07-22 08:43 - 2013-07-22 08:43 - 01779363 _____ (Farbar) C:\Users\Schneball\Desktop\FRST64.exe
2013-07-22 08:27 - 2013-07-22 08:27 - 00101265 _____ C:\Users\Schneball\Desktop\JRT.txt
2013-07-22 08:19 - 2013-07-22 08:19 - 00000000 ____D C:\Windows\ERUNT
2013-07-22 08:18 - 2013-07-22 08:18 - 00560639 _____ (Oleg N. Scherbakov) C:\Users\Schneball\Downloads\JRT (1).exe
2013-07-22 08:17 - 2013-07-22 08:17 - 00560639 _____ (Oleg N. Scherbakov) C:\Users\Schneball\Desktop\JRT.exe
2013-07-22 07:59 - 2013-07-22 08:00 - 00012388 _____ C:\AdwCleaner[S1].txt
2013-07-22 07:57 - 2013-07-22 07:57 - 00666633 _____ C:\Users\Schneball\Downloads\adwcleaner.exe
2013-07-22 07:56 - 2013-07-22 07:56 - 00793536 _____ C:\Users\Schneball\Downloads\ZipOpenerSetup.exe
2013-07-22 07:46 - 2013-07-22 07:46 - 00001192 _____ C:\Users\Schneball\Desktop\ComboFix - Verknüpfung.lnk
2013-07-21 17:30 - 2013-07-21 17:30 - 00020873 _____ C:\Users\Schneball\Desktop\combo.txt
2013-07-21 17:30 - 2013-07-21 17:30 - 00020873 _____ C:\ComboFix.txt
2013-07-21 17:14 - 2011-06-26 08:45 - 00256000 _____ C:\Windows\PEV.exe
2013-07-21 17:14 - 2010-11-07 19:20 - 00208896 _____ C:\Windows\MBR.exe
2013-07-21 17:14 - 2009-04-20 06:56 - 00060416 _____ (NirSoft) C:\Windows\NIRCMD.exe
2013-07-21 17:14 - 2000-08-31 02:00 - 00518144 _____ (SteelWerX) C:\Windows\SWREG.exe
2013-07-21 17:14 - 2000-08-31 02:00 - 00406528 _____ (SteelWerX) C:\Windows\SWSC.exe
2013-07-21 17:14 - 2000-08-31 02:00 - 00098816 _____ C:\Windows\sed.exe
2013-07-21 17:14 - 2000-08-31 02:00 - 00080412 _____ C:\Windows\grep.exe
2013-07-21 17:14 - 2000-08-31 02:00 - 00068096 _____ C:\Windows\zip.exe
2013-07-21 17:12 - 2013-07-21 17:12 - 00001531 _____ C:\Users\Schneball\Downloads\ComboFix (1) - Verknüpfung.lnk
2013-07-21 16:55 - 2013-07-21 17:30 - 00000000 ____D C:\Qoobox
2013-07-21 16:54 - 2013-07-21 17:27 - 00000000 ____D C:\Windows\erdnt
2013-07-21 16:47 - 2013-07-21 17:11 - 05093416 ____R (Swearware) C:\Users\Schneball\Downloads\ComboFix.exe
2013-07-21 10:36 - 2013-07-21 10:36 - 00000000 ____D C:\FRST
2013-07-20 07:41 - 2013-07-20 07:41 - 00000000 _____ C:\autoexec.bat
2013-07-20 07:40 - 2013-07-20 07:40 - 00000000 ____D C:\Program Files\Enigma Software Group
2013-07-20 07:39 - 2013-07-20 14:20 - 00000000 ____D C:\Windows\8AE3CFB678B24F55A7BE618FCFF43A03.TMP
2013-07-20 07:38 - 2013-07-20 07:38 - 00726464 _____ (Enigma Software Group USA, LLC.) C:\Users\Schneball\Downloads\SpyHunter-Installer (1).exe
2013-07-19 12:15 - 2013-07-21 16:49 - 00003702 _____ C:\Windows\wininit.ini
2013-07-19 10:21 - 2013-07-19 12:19 - 00000000 ____D C:\ProgramData\Spybot - Search & Destroy
2013-07-19 10:21 - 2013-07-19 10:21 - 00000000 ____D C:\Windows\System32\Tasks\Safer-Networking
2013-07-19 10:20 - 2013-07-21 16:51 - 00000000 ____D C:\Program Files (x86)\Spybot - Search & Destroy 2
2013-07-19 10:19 - 2013-07-19 10:20 - 36271144 _____ (Safer-Networking Ltd. ) C:\Users\Schneball\Downloads\spybot-2.1.exe
2013-07-19 10:18 - 2013-07-19 10:18 - 01624136 _____ (Bandoo Media Inc) C:\Users\Schneball\Downloads\iLividSetup-r394-n-bc.exe
2013-07-17 18:39 - 2013-07-17 18:40 - 02828552 _____ (AVAST Software) C:\Users\Schneball\Downloads\avast-browser-cleanup_8.0.1484.29.exe
2013-07-17 18:35 - 2013-07-17 18:35 - 00726464 _____ (Enigma Software Group USA, LLC.) C:\Users\Schneball\Downloads\SpyHunter-Installer.exe
2013-07-17 18:11 - 2013-07-17 18:11 - 00000000 ____D C:\Windows\SysWOW64\searchplugins
2013-07-17 18:11 - 2013-07-17 18:11 - 00000000 ____D C:\Windows\SysWOW64\Extensions
2013-07-17 18:11 - 2013-07-17 18:11 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2013-07-17 18:10 - 2013-07-17 18:10 - 00283160 _____ C:\Users\Schneball\Downloads\Setup (2).exe
2013-07-17 18:10 - 2013-07-17 18:10 - 00283160 _____ C:\Users\Schneball\Downloads\Setup (1).exe
2013-07-17 18:06 - 2013-07-17 18:06 - 00283160 _____ C:\Users\Schneball\Downloads\Setup.exe
2013-07-13 06:50 - 2013-06-12 01:43 - 02877440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2013-07-13 06:50 - 2013-06-12 01:43 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2013-07-13 06:50 - 2013-06-12 01:43 - 00493056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2013-07-13 06:50 - 2013-06-12 01:42 - 02046976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2013-07-13 06:50 - 2013-06-12 01:42 - 00391168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2013-07-13 06:50 - 2013-06-12 01:42 - 00109056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2013-07-13 06:50 - 2013-06-12 01:42 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2013-07-13 06:50 - 2013-06-12 01:42 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2013-07-13 06:50 - 2013-06-12 01:26 - 00051712 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2013-07-13 06:50 - 2013-06-12 01:25 - 03958784 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2013-07-13 06:50 - 2013-06-12 01:25 - 02648576 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2013-07-13 06:50 - 2013-06-12 01:25 - 00855552 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2013-07-13 06:50 - 2013-06-12 01:25 - 00603136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2013-07-13 06:50 - 2013-06-12 01:25 - 00526336 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2013-07-13 06:50 - 2013-06-12 01:25 - 00136704 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2013-07-13 06:50 - 2013-06-12 01:25 - 00067072 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2013-07-13 06:50 - 2013-06-12 01:25 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2013-07-13 06:50 - 2013-06-12 00:51 - 00071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe
2013-07-13 06:50 - 2013-06-12 00:50 - 00089600 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe
2013-07-13 06:50 - 2013-06-07 05:22 - 02706432 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2013-07-13 06:50 - 2013-06-07 04:37 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2013-07-13 06:49 - 2013-06-12 01:43 - 14329856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2013-07-13 06:49 - 2013-06-12 01:43 - 01767936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2013-07-13 06:49 - 2013-06-12 01:43 - 01141248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2013-07-13 06:49 - 2013-06-12 01:43 - 00039424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2013-07-13 06:49 - 2013-06-12 01:42 - 13760512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2013-07-13 06:49 - 2013-06-12 01:26 - 02241024 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2013-07-13 06:49 - 2013-06-12 01:26 - 01365504 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2013-07-13 06:49 - 2013-06-12 01:25 - 19238912 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2013-07-13 06:49 - 2013-06-12 01:25 - 15404032 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2013-07-13 06:49 - 2013-06-12 01:25 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2013-07-12 07:15 - 2013-06-05 05:34 - 03153920 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2013-07-12 07:15 - 2013-06-04 08:00 - 00624128 _____ (Microsoft Corporation) C:\Windows\system32\qedit.dll
2013-07-12 07:15 - 2013-06-04 06:53 - 00509440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qedit.dll
2013-07-12 07:15 - 2013-05-06 08:03 - 01887744 _____ (Microsoft Corporation) C:\Windows\system32\WMVDECOD.DLL
2013-07-12 07:15 - 2013-05-06 06:56 - 01620480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVDECOD.DLL
2013-07-12 07:14 - 2013-04-10 01:34 - 01247744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll
2013-07-12 07:14 - 2013-04-03 00:51 - 01643520 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll
2013-07-06 14:35 - 2013-07-06 14:35 - 00029137 _____ C:\Users\Schneball\Downloads\eBayISAPI (3).gz
2013-07-06 14:35 - 2013-07-06 14:35 - 00029119 _____ C:\Users\Schneball\Downloads\eBayISAPI (4).gz
2013-06-25 10:08 - 2013-06-25 10:08 - 00202234 _____ C:\Users\Schneball\Downloads\fax (7).tif
2013-06-25 09:47 - 2013-06-25 09:47 - 00202888 _____ C:\Users\Schneball\Downloads\fax (6).tif
==================== One Month Modified Files and Folders =======
2013-07-22 13:45 - 2013-07-22 13:45 - 00891062 _____ C:\Users\Schneball\Desktop\SecurityCheck.exe
2013-07-22 13:44 - 2013-06-16 09:23 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2013-07-22 13:44 - 2011-08-01 13:10 - 00001124 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2013-07-22 12:43 - 2011-11-17 08:40 - 01987089 _____ C:\Windows\WindowsUpdate.log
2013-07-22 12:04 - 2013-07-22 12:04 - 00083672 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avnetflt.sys
2013-07-22 12:03 - 2013-07-22 12:03 - 00000000 ____D C:\Users\Schneball\AppData\Roaming\Avira
2013-07-22 11:58 - 2013-07-22 11:58 - 00000000 ____D C:\Users\Schneball\AppData\Roaming\Mozilla
2013-07-22 11:58 - 2013-07-22 11:58 - 00000000 ____D C:\ProgramData\AskPartnerNetwork
2013-07-22 11:58 - 2013-07-22 11:58 - 00000000 ____D C:\ProgramData\APN
2013-07-22 11:58 - 2013-07-22 11:58 - 00000000 ____D C:\Program Files (x86)\AskPartnerNetwork
2013-07-22 11:57 - 2013-07-22 11:57 - 00002077 _____ C:\Users\Public\Desktop\Avira Control Center.lnk
2013-07-22 11:57 - 2013-07-22 11:57 - 00000000 ____D C:\ProgramData\Avira
2013-07-22 11:57 - 2013-07-22 11:57 - 00000000 ____D C:\Program Files (x86)\Avira
2013-07-22 11:56 - 2013-07-22 11:57 - 00130016 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avipbb.sys
2013-07-22 11:56 - 2013-07-22 11:57 - 00100712 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avgntflt.sys
2013-07-22 11:56 - 2013-07-22 11:57 - 00028600 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avkmgr.sys
2013-07-22 11:54 - 2013-07-22 11:54 - 02092792 _____ C:\Users\Schneball\Downloads\avira_free_antivirus (1).exe
2013-07-22 11:44 - 2013-07-22 11:43 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\{71DB5144-92B5-4E58-B9FB-D3E0D76E1C3A}
2013-07-22 11:43 - 2012-04-08 22:12 - 00003970 _____ C:\Windows\System32\Tasks\User_Feed_Synchronization-{293B7530-1DF2-4F3C-8BCF-32E681E5FE98}
2013-07-22 11:04 - 2009-07-14 06:45 - 00025120 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2013-07-22 11:04 - 2009-07-14 06:45 - 00025120 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2013-07-22 11:02 - 2011-02-11 10:21 - 00654400 _____ C:\Windows\system32\perfh007.dat
2013-07-22 11:02 - 2011-02-11 10:21 - 00130240 _____ C:\Windows\system32\perfc007.dat
2013-07-22 11:02 - 2009-07-14 07:13 - 01498742 _____ C:\Windows\system32\PerfStringBackup.INI
2013-07-22 10:57 - 2012-12-28 09:32 - 00023713 _____ C:\Windows\setupact.log
2013-07-22 10:57 - 2011-08-01 13:10 - 00001120 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2013-07-22 10:57 - 2010-11-21 05:47 - 00166922 _____ C:\Windows\PFRO.log
2013-07-22 10:57 - 2009-07-14 07:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2013-07-22 10:31 - 2013-07-22 10:31 - 02347384 _____ (ESET) C:\Users\Schneball\Desktop\esetsmartinstaller_enu.exe
2013-07-22 10:31 - 2013-07-22 10:31 - 00000000 ____D C:\Program Files (x86)\ESET
2013-07-22 08:43 - 2013-07-22 08:43 - 01779363 _____ (Farbar) C:\Users\Schneball\Desktop\FRST64.exe
2013-07-22 08:27 - 2013-07-22 08:27 - 00101265 _____ C:\Users\Schneball\Desktop\JRT.txt
2013-07-22 08:19 - 2013-07-22 08:19 - 00000000 ____D C:\Windows\ERUNT
2013-07-22 08:18 - 2013-07-22 08:18 - 00560639 _____ (Oleg N. Scherbakov) C:\Users\Schneball\Downloads\JRT (1).exe
2013-07-22 08:17 - 2013-07-22 08:17 - 00560639 _____ (Oleg N. Scherbakov) C:\Users\Schneball\Desktop\JRT.exe
2013-07-22 08:00 - 2013-07-22 07:59 - 00012388 _____ C:\AdwCleaner[S1].txt
2013-07-22 07:57 - 2013-07-22 07:57 - 00666633 _____ C:\Users\Schneball\Downloads\adwcleaner.exe
2013-07-22 07:56 - 2013-07-22 07:56 - 00793536 _____ C:\Users\Schneball\Downloads\ZipOpenerSetup.exe
2013-07-22 07:46 - 2013-07-22 07:46 - 00001192 _____ C:\Users\Schneball\Desktop\ComboFix - Verknüpfung.lnk
2013-07-21 17:30 - 2013-07-21 17:30 - 00020873 _____ C:\Users\Schneball\Desktop\combo.txt
2013-07-21 17:30 - 2013-07-21 17:30 - 00020873 _____ C:\ComboFix.txt
2013-07-21 17:30 - 2013-07-21 16:55 - 00000000 ____D C:\Qoobox
2013-07-21 17:27 - 2013-07-21 16:54 - 00000000 ____D C:\Windows\erdnt
2013-07-21 17:27 - 2009-07-14 04:34 - 00000215 _____ C:\Windows\system.ini
2013-07-21 17:24 - 2011-12-25 10:40 - 00000000 ____D C:\Users\Schneball
2013-07-21 17:12 - 2013-07-21 17:12 - 00001531 _____ C:\Users\Schneball\Downloads\ComboFix (1) - Verknüpfung.lnk
2013-07-21 17:11 - 2013-07-21 16:47 - 05093416 ____R (Swearware) C:\Users\Schneball\Downloads\ComboFix.exe
2013-07-21 16:51 - 2013-07-19 10:20 - 00000000 ____D C:\Program Files (x86)\Spybot - Search & Destroy 2
2013-07-21 16:49 - 2013-07-19 12:15 - 00003702 _____ C:\Windows\wininit.ini
2013-07-21 16:44 - 2011-08-01 13:11 - 00000000 ____D C:\Program Files\Google
2013-07-21 16:44 - 2011-08-01 13:10 - 00000000 ____D C:\Program Files (x86)\Google
2013-07-21 10:36 - 2013-07-21 10:36 - 00000000 ____D C:\FRST
2013-07-21 09:28 - 2011-12-25 12:16 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\Google
2013-07-21 09:28 - 2011-08-01 13:10 - 00000000 ____D C:\ProgramData\Google
2013-07-21 09:25 - 2011-12-25 10:40 - 00000000 ___RD C:\Users\Schneball\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
2013-07-20 14:20 - 2013-07-20 07:39 - 00000000 ____D C:\Windows\8AE3CFB678B24F55A7BE618FCFF43A03.TMP
2013-07-20 14:20 - 2011-12-25 13:52 - 00000000 ____D C:\Users\SCHNEB~1\AppData\Local\Windows Live
2013-07-20 07:55 - 2011-12-25 11:51 - 00002087 _____ C:\Users\Public\Desktop\Toshiba-Garantieregistrierung.lnk
2013-07-20 07:41 - 2013-07-20 07:41 - 00000000 _____ C:\autoexec.bat
2013-07-20 07:40 - 2013-07-20 07:40 - 00000000 ____D C:\Program Files\Enigma Software Group
2013-07-20 07:38 - 2013-07-20 07:38 - 00726464 _____ (Enigma Software Group USA, LLC.) C:\Users\Schneball\Downloads\SpyHunter-Installer (1).exe
2013-07-19 12:19 - 2013-07-19 10:21 - 00000000 ____D C:\ProgramData\Spybot - Search & Destroy
2013-07-19 10:21 - 2013-07-19 10:21 - 00000000 ____D C:\Windows\System32\Tasks\Safer-Networking
2013-07-19 10:20 - 2013-07-19 10:19 - 36271144 _____ (Safer-Networking Ltd. ) C:\Users\Schneball\Downloads\spybot-2.1.exe
2013-07-19 10:18 - 2013-07-19 10:18 - 01624136 _____ (Bandoo Media Inc) C:\Users\Schneball\Downloads\iLividSetup-r394-n-bc.exe
2013-07-17 18:40 - 2013-07-17 18:39 - 02828552 _____ (AVAST Software) C:\Users\Schneball\Downloads\avast-browser-cleanup_8.0.1484.29.exe
2013-07-17 18:40 - 2013-03-21 20:50 - 00000000 ____D C:\Users\Schneball\Documents\My Digital Editions
2013-07-17 18:40 - 2011-12-27 18:25 - 00000000 ____D C:\Program Files (x86)\Adobe
2013-07-17 18:35 - 2013-07-17 18:35 - 00726464 _____ (Enigma Software Group USA, LLC.) C:\Users\Schneball\Downloads\SpyHunter-Installer.exe
2013-07-17 18:11 - 2013-07-17 18:11 - 00000000 ____D C:\Windows\SysWOW64\searchplugins
2013-07-17 18:11 - 2013-07-17 18:11 - 00000000 ____D C:\Windows\SysWOW64\Extensions
2013-07-17 18:11 - 2013-07-17 18:11 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2013-07-17 18:10 - 2013-07-17 18:10 - 00283160 _____ C:\Users\Schneball\Downloads\Setup (2).exe
2013-07-17 18:10 - 2013-07-17 18:10 - 00283160 _____ C:\Users\Schneball\Downloads\Setup (1).exe
2013-07-17 18:06 - 2013-07-17 18:06 - 00283160 _____ C:\Users\Schneball\Downloads\Setup.exe
2013-07-16 08:09 - 2011-12-27 10:43 - 00000000 ____D C:\Users\Schneball\Desktop\Diana
2013-07-14 07:54 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files\Windows Defender
2013-07-14 07:54 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files (x86)\Windows Defender
2013-07-13 16:17 - 2009-07-14 06:45 - 00342240 _____ C:\Windows\system32\FNTCACHE.DAT
2013-07-13 16:16 - 2012-05-18 21:53 - 00000000 ____D C:\Program Files\Microsoft Silverlight
2013-07-13 16:16 - 2012-05-18 21:53 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight
2013-07-13 12:27 - 2010-11-21 09:17 - 00000000 ____D C:\Program Files\Windows Journal
2013-07-13 12:25 - 2011-12-25 11:57 - 00000000 ____D C:\ProgramData\Microsoft Help
2013-07-13 06:52 - 2011-12-29 16:41 - 78185248 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2013-07-13 06:39 - 2011-08-01 13:10 - 00004120 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2013-07-13 06:39 - 2011-08-01 13:10 - 00003868 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2013-07-06 14:35 - 2013-07-06 14:35 - 00029137 _____ C:\Users\Schneball\Downloads\eBayISAPI (3).gz
2013-07-06 14:35 - 2013-07-06 14:35 - 00029119 _____ C:\Users\Schneball\Downloads\eBayISAPI (4).gz
2013-07-04 20:08 - 2013-06-02 20:44 - 00000000 ____D C:\Users\Schneball\AppData\Roaming\PhotoMania
2013-06-27 08:13 - 2011-08-01 12:51 - 00000000 ____D C:\Program Files (x86)\McAfee
2013-06-26 14:51 - 2013-01-31 09:16 - 00000000 ____D C:\Program Files\McAfee
2013-06-25 10:08 - 2013-06-25 10:08 - 00202234 _____ C:\Users\Schneball\Downloads\fax (7).tif
2013-06-25 09:47 - 2013-06-25 09:47 - 00202888 _____ C:\Users\Schneball\Downloads\fax (6).tif
2013-06-25 09:39 - 2013-05-02 17:17 - 00000000 ____D C:\Users\Schneball\Desktop\Oma
==================== Bamital & volsnap Check =================
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
LastRegBack: 2013-07-14 13:15
==================== End Of Log ============================
--- --- --- --- --- --- Ich glaube die Viren sind weg :-) passiert jedenfalls nichts momentan. |
| | #14 |
| /// the machine /// TB-Ausbilder ![]() ![]() ![]() ![]() ![]() ![]() ![]() ![]() | Wie bekämpfe ich Spy Hunter und Delta Search? Java updaten. SiteAdvisor ist keine malware, ist von McAfee ![]() Fertig ![]() Die Reihenfolge ist hier entscheidend.
Hier noch ein paar Tipps zur Absicherung deines Systems. Ich kann garnicht zu oft erwähnen, wie wichtig es ist, dass dein System Up to Date ist.
Anti- Viren Software
Zusätzlicher Schutz
Sicheres Browsen
Alternative Browser Andere Browser tendieren zu etwas mehr Sicherheit als der IE, da diese keine Active X Elemente verwenden. Diese können von Spyware zur Infektion deines Systems missbraucht werden.
Performance Bereinige regelmäßig deine Temp Files. Ich empfehle hierzu TFC Halte dich fern von jedlichen Registry Cleanern. Diese Schaden deinem System mehr als sie helfen. Hier ein paar ( englishe ) Links Miekemoes Blogspot ( MVP ) Bill Castner ( MVP ) Don'ts
Hinweis: Bitte gib mir eine kurze Rückmeldung wenn alles erledigt ist und keine Fragen mehr vorhanden sind, so das ich diesen Thread aus meinen Abos löschen kann.
__________________ gruß, schrauber Proud Member of UNITE and ASAP since 2009 Spenden Anleitungen und Hilfestellungen Trojaner-Board Facebook-Seite Keine Hilfestellung via PM! |
| | #15 |
![]() ![]() | Wie bekämpfe ich Spy Hunter und Delta Search? Hallo schrauber, vielen, vielen Dank für alles! Ich arbeite das jetzt nach und nach ab und gebe Dir sofort Bescheid, ob alles gut ist. Ich nutze Google Chrome, auch wegen dem schnelleren Seitenaufbau. Denkst Du das ist ein Problem? Gruß Alles erledigt! Super!!! Danke, danke, danke! |
![]() |
| Themen zu Wie bekämpfe ich Spy Hunter und Delta Search? |
| beschränkt, deinstalliert, delta, fehler, fenster, hunter, installieren, interne, internet, laden, laptop, logfiles, microsoft, neu, nichts, player, search, seite, spy, super, toshiba, unterwegs, viren, viren usw., warnung, wirklich, wissen |