Zurück   Trojaner-Board > Malware entfernen > Plagegeister aller Art und deren Bekämpfung

Plagegeister aller Art und deren Bekämpfung: Trojaner TR/Fakeadb.A

Windows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen.

Antwort
Alt 10.09.2013, 21:37   #1
k.karl
 
Trojaner TR/Fakeadb.A - Standard

Trojaner TR/Fakeadb.A



Hallo zusammen,

wie ich sehe, bin ich nicht der erste mit dem og Problem!
Seit heute Vormittag meldet Avira den og Fund.

Hier die vorbereiteten Logfiles:

Avira:
Code:
ATTFilter
Avira Antivirus Premium
Erstellungsdatum der Reportdatei: Dienstag, 10. September 2013  21:32


Das Programm läuft als uneingeschränkte Vollversion.
Online-Dienste stehen zur Verfügung.

Lizenznehmer   : Drago xxx
Seriennummer   : 2224023008-PEPWE-0000001
Plattform      : Windows 7 Home Premium
Windowsversion : (plain)  [6.1.7600]
Boot Modus     : Normal gebootet
Benutzername   : SYSTEM
Computername   : xxx-HP

Versionsinformationen:
BUILD.DAT      : 13.0.0.4052    57473 Bytes  29.08.2013 18:00:00
AVSCAN.EXE     : 13.6.20.2100   639032 Bytes  20.08.2013 08:42:56
AVSCANRC.DLL   : 13.6.20.2174    63544 Bytes  20.08.2013 08:42:56
LUKE.DLL       : 13.6.20.2174    65080 Bytes  20.08.2013 08:43:28
AVSCPLR.DLL    : 13.6.20.2174    92216 Bytes  20.08.2013 08:42:56
AVREG.DLL      : 13.6.20.2174   250424 Bytes  20.08.2013 08:42:56
avlode.dll     : 13.6.20.2174   497720 Bytes  20.08.2013 08:42:52
avlode.rdf     : 13.0.1.42      26846 Bytes  28.08.2013 09:18:46
VBASE000.VDF   : 7.11.70.0   66736640 Bytes  04.04.2013 20:42:29
VBASE001.VDF   : 7.11.74.226  2201600 Bytes  30.04.2013 20:42:32
VBASE002.VDF   : 7.11.80.60   2751488 Bytes  28.05.2013 20:42:34
VBASE003.VDF   : 7.11.85.214  2162688 Bytes  21.06.2013 20:42:37
VBASE004.VDF   : 7.11.91.176  3903488 Bytes  23.07.2013 20:42:41
VBASE005.VDF   : 7.11.98.186  6822912 Bytes  29.08.2013 10:48:36
VBASE006.VDF   : 7.11.98.187     2048 Bytes  29.08.2013 10:48:36
VBASE007.VDF   : 7.11.98.188     2048 Bytes  29.08.2013 10:48:36
VBASE008.VDF   : 7.11.98.189     2048 Bytes  29.08.2013 10:48:36
VBASE009.VDF   : 7.11.98.190     2048 Bytes  29.08.2013 10:48:36
VBASE010.VDF   : 7.11.98.191     2048 Bytes  29.08.2013 10:48:36
VBASE011.VDF   : 7.11.98.192     2048 Bytes  29.08.2013 10:48:36
VBASE012.VDF   : 7.11.98.193     2048 Bytes  29.08.2013 10:48:36
VBASE013.VDF   : 7.11.99.52    270848 Bytes  30.08.2013 19:15:59
VBASE014.VDF   : 7.11.99.167   210944 Bytes  02.09.2013 09:02:49
VBASE015.VDF   : 7.11.100.3    265216 Bytes  03.09.2013 11:15:52
VBASE016.VDF   : 7.11.100.95   220160 Bytes  04.09.2013 10:09:35
VBASE017.VDF   : 7.11.100.197   143872 Bytes  05.09.2013 09:35:57
VBASE018.VDF   : 7.11.101.11   227840 Bytes  06.09.2013 09:33:53
VBASE019.VDF   : 7.11.101.79   148480 Bytes  07.09.2013 09:06:41
VBASE020.VDF   : 7.11.101.169   305664 Bytes  10.09.2013 10:28:31
VBASE021.VDF   : 7.11.101.170     2048 Bytes  10.09.2013 10:28:31
VBASE022.VDF   : 7.11.101.171     2048 Bytes  10.09.2013 10:28:31
VBASE023.VDF   : 7.11.101.172     2048 Bytes  10.09.2013 10:28:31
VBASE024.VDF   : 7.11.101.173     2048 Bytes  10.09.2013 10:28:31
VBASE025.VDF   : 7.11.101.174     2048 Bytes  10.09.2013 10:28:31
VBASE026.VDF   : 7.11.101.175     2048 Bytes  10.09.2013 10:28:31
VBASE027.VDF   : 7.11.101.176     2048 Bytes  10.09.2013 10:28:31
VBASE028.VDF   : 7.11.101.177     2048 Bytes  10.09.2013 10:28:31
VBASE029.VDF   : 7.11.101.178     2048 Bytes  10.09.2013 10:28:31
VBASE030.VDF   : 7.11.101.179     2048 Bytes  10.09.2013 10:28:31
VBASE031.VDF   : 7.11.101.210    96256 Bytes  10.09.2013 16:28:31
Engineversion  : 8.2.12.118
AEVDF.DLL      : 8.1.3.4       102774 Bytes  14.08.2013 20:42:56
AESCRIPT.DLL   : 8.1.4.148     516478 Bytes  06.09.2013 09:33:57
AESCN.DLL      : 8.1.10.4      131446 Bytes  14.08.2013 20:42:55
AESBX.DLL      : 8.2.16.26    1245560 Bytes  23.08.2013 12:41:54
AERDL.DLL      : 8.2.0.128     688504 Bytes  14.08.2013 20:42:55
AEPACK.DLL     : 8.3.2.24      749945 Bytes  14.08.2013 20:42:55
AEOFFICE.DLL   : 8.1.2.76      205181 Bytes  14.08.2013 20:42:54
AEHEUR.DLL     : 8.1.4.608    6148474 Bytes  06.09.2013 09:33:57
AEHELP.DLL     : 8.1.27.6      266617 Bytes  27.08.2013 12:21:37
AEGEN.DLL      : 8.1.7.14      446839 Bytes  06.09.2013 09:33:54
AEEXP.DLL      : 8.4.1.60      323959 Bytes  06.09.2013 09:33:58
AEEMU.DLL      : 8.1.3.2       393587 Bytes  14.08.2013 20:42:51
AECORE.DLL     : 8.1.32.0      201081 Bytes  23.08.2013 12:41:49
AEBB.DLL       : 8.1.1.4        53619 Bytes  14.08.2013 20:42:50
AVWINLL.DLL    : 13.6.20.2174    23608 Bytes  20.08.2013 08:42:48
AVPREF.DLL     : 13.6.20.2174    48184 Bytes  20.08.2013 08:42:55
AVREP.DLL      : 13.6.20.2174   175672 Bytes  20.08.2013 08:42:56
AVARKT.DLL     : 13.6.20.2174   258104 Bytes  20.08.2013 08:42:50
AVEVTLOG.DLL   : 13.6.20.2174   165432 Bytes  20.08.2013 08:42:51
SQLITE3.DLL    : 3.7.0.1       394824 Bytes  14.08.2013 20:43:42
AVSMTP.DLL     : 13.6.20.2174    60472 Bytes  20.08.2013 08:42:57
NETNT.DLL      : 13.6.20.2174    13368 Bytes  20.08.2013 08:43:28
RCIMAGE.DLL    : 13.6.20.2174  4831800 Bytes  20.08.2013 08:42:48
RCTEXT.DLL     : 13.6.20.2174    68152 Bytes  20.08.2013 08:42:48

Konfiguration für den aktuellen Suchlauf:
Job Name..............................: AVGuardAsyncScan
Konfigurationsdatei...................: C:\ProgramData\Avira\AntiVir Desktop\TEMP\AVGUARD_522eb9a3\guard_slideup.avp
Protokollierung.......................: standard
Primäre Aktion........................: Interaktiv
Sekundäre Aktion......................: Quarantäne
Durchsuche Masterbootsektoren.........: ein
Durchsuche Bootsektoren...............: aus
Durchsuche aktive Programme...........: ein
Durchsuche Registrierung..............: aus
Suche nach Rootkits...................: aus
Integritätsprüfung von Systemdateien..: aus
Prüfe alle Dateien....................: Alle Dateien
Durchsuche Archive....................: ein
Rekursionstiefe einschränken..........: 20
Archiv Smart Extensions...............: ein
Makrovirenheuristik...................: ein
Dateiheuristik........................: Vollständig

Beginn des Suchlaufs: Dienstag, 10. September 2013  21:32
Der Systemwiederstellungspunkt wurde erfolgreich angelegt.
Der Registrierungseintrag <HKEY_USERS\S-1-5-21-4138529036-2260153085-4193991026-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings\WarnOnPostRedirect> wurde erfolgreich repariert.
Der Registrierungseintrag <HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\BITS\Start> wurde erfolgreich repariert.
Der Registrierungseintrag <HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\wscsvc\Start> wurde erfolgreich repariert.
Der Registrierungseintrag <HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Schedule\Start> wurde erfolgreich repariert.
Der Registrierungseintrag <HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\AdobeFlashPlayerUpdateSvc> wurde erfolgreich entfernt.
Der Registrierungseintrag <HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\AdobeFlashPlayerUpdateSvc> wurde erfolgreich entfernt.
Der Registrierungseintrag <HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\AdobeFlashPlayerUpdateSvc> wurde erfolgreich entfernt.

Der Suchlauf über gestartete Prozesse wird begonnen:
Durchsuche Prozess 'svchost.exe' - '52' Modul(e) wurden durchsucht
Durchsuche Prozess 'svchost.exe' - '39' Modul(e) wurden durchsucht
Durchsuche Prozess 'atiesrxx.exe' - '26' Modul(e) wurden durchsucht
Durchsuche Prozess 'svchost.exe' - '86' Modul(e) wurden durchsucht
Durchsuche Prozess 'svchost.exe' - '109' Modul(e) wurden durchsucht
Durchsuche Prozess 'svchost.exe' - '166' Modul(e) wurden durchsucht
Durchsuche Prozess 'STacSV64.exe' - '44' Modul(e) wurden durchsucht
Durchsuche Prozess 'svchost.exe' - '64' Modul(e) wurden durchsucht
Durchsuche Prozess 'Hpservice.exe' - '28' Modul(e) wurden durchsucht
Durchsuche Prozess 'atieclxx.exe' - '38' Modul(e) wurden durchsucht
Durchsuche Prozess 'svchost.exe' - '88' Modul(e) wurden durchsucht
Durchsuche Prozess 'WLANExt.exe' - '35' Modul(e) wurden durchsucht
Durchsuche Prozess 'conhost.exe' - '14' Modul(e) wurden durchsucht
Durchsuche Prozess 'spoolsv.exe' - '84' Modul(e) wurden durchsucht
Durchsuche Prozess 'sched.exe' - '46' Modul(e) wurden durchsucht
Durchsuche Prozess 'taskhost.exe' - '57' Modul(e) wurden durchsucht
Durchsuche Prozess 'Dwm.exe' - '34' Modul(e) wurden durchsucht
Durchsuche Prozess 'Explorer.EXE' - '177' Modul(e) wurden durchsucht
Durchsuche Prozess 'svchost.exe' - '67' Modul(e) wurden durchsucht
Durchsuche Prozess 'svchost.exe' - '38' Modul(e) wurden durchsucht
Durchsuche Prozess 'armsvc.exe' - '28' Modul(e) wurden durchsucht
Durchsuche Prozess 'FlashPlayerUpdateService.exe' - '43' Modul(e) wurden durchsucht
  Modul ist infiziert -> <C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe>
  [FUND]      Ist das Trojanische Pferd TR/Fakeadb.A
  [HINWEIS]   Prozess 'FlashPlayerUpdateService.exe' wurde beendet
  [HINWEIS]   Die Datei wurde ins Quarantäneverzeichnis unter dem Namen '556eda06.qua' verschoben!
  [HINWEIS]   Der Registrierungseintrag <HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\AdobeFlashPlayerUpdateSvc\ImagePath> wurde erfolgreich repariert.
  [HINWEIS]   Der Registrierungseintrag <HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\AdobeFlashPlayerUpdateSvc\ImagePath> wurde erfolgreich repariert.
  [HINWEIS]   Der Registrierungseintrag <HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\AdobeFlashPlayerUpdateSvc\ImagePath> wurde erfolgreich repariert.
Durchsuche Prozess 'AESTSr64.exe' - '8' Modul(e) wurden durchsucht
Durchsuche Prozess 'avguard.exe' - '114' Modul(e) wurden durchsucht
Durchsuche Prozess 'ezSharedSvcHost.exe' - '33' Modul(e) wurden durchsucht
Durchsuche Prozess 'fbguard.exe' - '29' Modul(e) wurden durchsucht
Durchsuche Prozess 'HPWMISVC.exe' - '36' Modul(e) wurden durchsucht
Durchsuche Prozess 'svchost.exe' - '46' Modul(e) wurden durchsucht
Durchsuche Prozess 'TeamViewer_Service.exe' - '86' Modul(e) wurden durchsucht
Durchsuche Prozess 'tor.exe' - '41' Modul(e) wurden durchsucht
Durchsuche Prozess 'igfxpers.exe' - '33' Modul(e) wurden durchsucht
Durchsuche Prozess 'SynTPEnh.exe' - '56' Modul(e) wurden durchsucht
Durchsuche Prozess 'sttray64.exe' - '41' Modul(e) wurden durchsucht
Durchsuche Prozess 'RocketDock.exe' - '61' Modul(e) wurden durchsucht
Durchsuche Prozess 'PureSyncTray.exe' - '70' Modul(e) wurden durchsucht
Durchsuche Prozess 'WLIDSVC.EXE' - '61' Modul(e) wurden durchsucht
Durchsuche Prozess 'MusicManager.exe' - '74' Modul(e) wurden durchsucht
Durchsuche Prozess 'rundll32.exe' - '65' Modul(e) wurden durchsucht
Durchsuche Prozess 'HPMSGSVC.exe' - '69' Modul(e) wurden durchsucht
Durchsuche Prozess 'avgnt.exe' - '94' Modul(e) wurden durchsucht
Durchsuche Prozess 'WLIDSvcM.exe' - '17' Modul(e) wurden durchsucht
Durchsuche Prozess 'wmiprvse.exe' - '33' Modul(e) wurden durchsucht
Durchsuche Prozess 'taskeng.exe' - '30' Modul(e) wurden durchsucht
Durchsuche Prozess 'YCMMirage.exe' - '42' Modul(e) wurden durchsucht
Durchsuche Prozess 'avshadow.exe' - '20' Modul(e) wurden durchsucht
Durchsuche Prozess 'avmailc.exe' - '48' Modul(e) wurden durchsucht
Durchsuche Prozess 'AVWEBGRD.EXE' - '67' Modul(e) wurden durchsucht
Durchsuche Prozess 'hpqWmiEx.exe' - '46' Modul(e) wurden durchsucht
Durchsuche Prozess 'SearchIndexer.exe' - '57' Modul(e) wurden durchsucht
Durchsuche Prozess 'fbserver.exe' - '47' Modul(e) wurden durchsucht
Durchsuche Prozess 'svchost.exe' - '38' Modul(e) wurden durchsucht
Durchsuche Prozess 'WUDFHost.exe' - '34' Modul(e) wurden durchsucht
Durchsuche Prozess 'wmpnetwk.exe' - '73' Modul(e) wurden durchsucht
Durchsuche Prozess 'SynTPHelper.exe' - '17' Modul(e) wurden durchsucht
Durchsuche Prozess 'schtasks.exe' - '28' Modul(e) wurden durchsucht
Durchsuche Prozess 'conhost.exe' - '14' Modul(e) wurden durchsucht
Durchsuche Prozess 'wmiprvse.exe' - '53' Modul(e) wurden durchsucht
Durchsuche Prozess 'HPWA_Main.exe' - '84' Modul(e) wurden durchsucht
Durchsuche Prozess 'hpsa_service.exe' - '56' Modul(e) wurden durchsucht
Durchsuche Prozess 'HPWA_Service.exe' - '72' Modul(e) wurden durchsucht
Durchsuche Prozess 'LMS.exe' - '33' Modul(e) wurden durchsucht
Durchsuche Prozess 'UNS.exe' - '68' Modul(e) wurden durchsucht
Durchsuche Prozess 'SeaPort.exe' - '55' Modul(e) wurden durchsucht
Durchsuche Prozess 'svchost.exe' - '28' Modul(e) wurden durchsucht
Durchsuche Prozess 'avscan.exe' - '106' Modul(e) wurden durchsucht
Durchsuche Prozess 'avcenter.exe' - '95' Modul(e) wurden durchsucht
Durchsuche Prozess 'smss.exe' - '2' Modul(e) wurden durchsucht
Durchsuche Prozess 'csrss.exe' - '18' Modul(e) wurden durchsucht
Durchsuche Prozess 'wininit.exe' - '26' Modul(e) wurden durchsucht
Durchsuche Prozess 'csrss.exe' - '18' Modul(e) wurden durchsucht
Durchsuche Prozess 'services.exe' - '36' Modul(e) wurden durchsucht
Durchsuche Prozess 'lsass.exe' - '69' Modul(e) wurden durchsucht
Durchsuche Prozess 'lsm.exe' - '16' Modul(e) wurden durchsucht
Durchsuche Prozess 'winlogon.exe' - '31' Modul(e) wurden durchsucht
Durchsuche Prozess 'vssvc.exe' - '52' Modul(e) wurden durchsucht
Durchsuche Prozess 'svchost.exe' - '28' Modul(e) wurden durchsucht
Durchsuche Prozess 'SearchProtocolHost.exe' - '29' Modul(e) wurden durchsucht
Durchsuche Prozess 'SearchFilterHost.exe' - '27' Modul(e) wurden durchsucht

Der Suchlauf auf Verweise zu ausführbaren Dateien (Registry) wird begonnen:
C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
  [FUND]      Ist das Trojanische Pferd TR/Fakeadb.A
  [HINWEIS]   Die Datei konnte nicht ins Quarantäneverzeichnis verschoben werden!
  [HINWEIS]   Die Datei existiert nicht!

Der Suchlauf über die ausgewählten Dateien wird begonnen:

Beginne mit der Suche in 'C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe'
Der zu durchsuchende Pfad C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe konnte nicht geöffnet werden!
Systemfehler [2]: Das System kann die angegebene Datei nicht finden.


Ende des Suchlaufs: Dienstag, 10. September 2013  21:34
Benötigte Zeit: 01:44 Minute(n)

Der Suchlauf wurde vollständig durchgeführt.

      0 Verzeichnisse wurden überprüft
   4761 Dateien wurden geprüft
      2 Viren bzw. unerwünschte Programme wurden gefunden
      0 Dateien wurden als verdächtig eingestuft
      0 Dateien wurden gelöscht
      0 Viren bzw. unerwünschte Programme wurden repariert
      1 Dateien wurden in die Quarantäne verschoben
      0 Dateien wurden umbenannt
      0 Dateien konnten nicht durchsucht werden
   4759 Dateien ohne Befall
     39 Archive wurden durchsucht
      0 Warnungen
      2 Hinweise
         
FRST:
Code:
ATTFilter
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 09-09-2013 01
Ran by xxx (administrator) on xxx-HP on 10-09-2013 21:51:54
Running from C:\Users\xxx\Desktop
Windows 7 Home Premium (X64) OS Language: German Standard
Internet Explorer Version 8
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(AMD) C:\Windows\system32\atiesrxx.exe
(IDT, Inc.) C:\Program Files\IDT\WDM\STacSV64.exe
(Hewlett-Packard Company) C:\Windows\system32\Hpservice.exe
(AMD) C:\Windows\system32\atieclxx.exe
(Microsoft Corporation) C:\Windows\system32\WLANExt.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
(Andrea Electronics Corporation) C:\Program Files\IDT\WDM\AESTSr64.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
(EasyBits Software AS) C:\Windows\SysWOW64\ezSharedSvcHost.exe
(FirebirdSQL Project) C:\Program Files (x86)\Firebird\Firebird_2_0\bin\fbguard.exe
(Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version7\TeamViewer_Service.exe
() C:\Program Files (x86)\Tor\tor.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(IDT, Inc.) C:\Program Files\IDT\WDM\sttray64.exe
() C:\Program Files (x86)\RocketDock\RocketDock.exe
(Jumping Bytes) C:\Program Files (x86)\PureSync\PureSyncTray.exe
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Google Inc.) C:\Users\xxx\AppData\Local\Programs\Google\MusicManager\MusicManager.exe
(Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
(CyberLink) C:\Program Files (x86)\Hewlett-Packard\Media\Webcam\YCMMirage.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avmailc.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\AVWEBGRD.EXE
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
(FirebirdSQL Project) C:\Program Files (x86)\Firebird\Firebird_2_0\bin\fbserver.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Microsoft Corporation) C:\Windows\SysWOW64\schtasks.exe
(Hewlett-Packard Company) C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Main.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe
(Hewlett-Packard Company) C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Microsoft Corporation.) C:\Program Files (x86)\Microsoft\BingBar\7.1.391.0\SeaPort.exe
(Avira Operations GmbH & Co. KG) C:\program files (x86)\avira\antivir desktop\avcenter.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_8_800_94.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_8_800_94.exe

==================== Registry (Whitelisted) ==================

HKLM\...\Run: [HotKeysCmds] - C:\Windows\system32\hkcmd.exe [ ] ()
HKLM\...\Run: [SynTPEnh] - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2480936 2010-12-17] (Synaptics Incorporated)
HKLM\...\Run: [SysTrayApp] - C:\Program Files\IDT\WDM\sttray64.exe [487424 2010-06-18] (IDT, Inc.)
HKLM\...\Run: [HPWirelessAssistant] - C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Main.exe [363064 2010-06-18] (Hewlett-Packard Company)
HKLM\...\Policies\Explorer: [EnableShellExecuteHooks] 1
HKLM\...\Policies\Explorer: [HideSCAHealth] 1
HKCU\...\Run: [RocketDock] - C:\Program Files (x86)\RocketDock\RocketDock.exe [495616 2007-09-02] ()
HKCU\...\Run: [PureSync] - C:\Program Files (x86)\PureSync\PureSyncTray.exe [907808 2013-04-29] (Jumping Bytes)
HKCU\...\Run: [MusicManager] - C:\Users\xxx\AppData\Local\Programs\Google\MusicManager\MusicManager.exe [7345664 2013-06-21] (Google Inc.)
HKCU\...\Run: [NTRedirect] - C:\Windows\SysWOW64\rundll32.exe "C:\Users\xxx\AppData\Roaming\BabSolution\Shared\enhancedNT.dll",Run
HKCU\...\Policies\system: [DisableLockWorkstation] 0
HKCU\...\Policies\system: [DisableChangePassword] 0
HKLM-x32\...\Run: [GrooveMonitor] - C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation)
HKLM-x32\...\Run: [HP Quick Launch] - C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe [578944 2012-03-05] (Hewlett-Packard Development Company, L.P.)
HKLM-x32\...\Run: [avgnt] - C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [347192 2013-08-20] (Avira Operations GmbH & Co. KG)
HKU\Default\...\Run: [HPAdvisorDock] - C:\Program Files (x86)\Hewlett-Packard\HP Advisor\DOCK\HPAdvisorDock.exe [1712184 2010-02-09] ()

==================== Internet (Whitelisted) ====================

HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www2.delta-search.com/?babsrc=HP_ss&mntrId=525D5CAC4C6DE85E&affID=121564&tsp=4987
HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://g.uk.msn.com/HPNOT/4
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://g.uk.msn.com/HPNOT/4
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://g.uk.msn.com/HPNOT/4
StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe
SearchScopes: HKLM - DefaultScope value is missing.
SearchScopes: HKLM - {452CC30F-3D62-48E2-A5A8-B3172A3E0C1F} URL = hxxp://de.search.yahoo.com/search?p={searchTerms}&ei={inputEncoding}&fr=chr-hp-psg&type=HPNTDF
SearchScopes: HKLM - {D866DD77-F8CC-4D3E-93C9-3F4D89EAE252} URL = hxxp://de.wikipedia.org/wiki/Special:Search?search={searchTerms}
SearchScopes: HKLM-x32 - {452CC30F-3D62-48E2-A5A8-B3172A3E0C1F} URL = hxxp://de.search.yahoo.com/search?p={searchTerms}&ei={inputEncoding}&fr=chr-hp-psg&type=HPNTDF
SearchScopes: HKCU - {0ECDF796-C2DC-4d79-A620-CCE0C0A66CC9} URL = hxxp://www2.delta-search.com/?q={searchTerms}&babsrc=SP_ss&mntrId=525D5CAC4C6DE85E&affID=121564&tsp=4987
SearchScopes: HKCU - {452CC30F-3D62-48E2-A5A8-B3172A3E0C1F} URL = hxxp://de.search.yahoo.com/search?p={searchTerms}&ei={inputEncoding}&fr=chr-hp-psg&type=HPNTDF
BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll No File
BHO: DVDVideoSoft WebPageAdjuster Class - {EE932B49-D5C0-4D19-A3DA-CE0849258DE6} - C:\Program Files (x86)\Common Files\DVDVideoSoft\bin\IEDownloadMenuAndBtns64.dll (DVDVideoSoft Ltd.)
BHO-x32: No Name - {5C255C8A-E604-49b4-9D64-90988571CECB} -  No File
BHO-x32: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation)
BHO-x32: delta Helper Object - {C1AF5FA5-852C-4C90-812E-A7F75E011D87} - C:\Program Files (x86)\Delta\delta\1.8.24.6\bh\delta.dll (Delta-search.com)
BHO-x32: Bing Bar Helper - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files (x86)\Microsoft\BingBar\7.1.391.0\BingExt.dll (Microsoft Corporation.)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll (Hewlett-Packard)
BHO-x32: DVDVideoSoft WebPageAdjuster Class - {EE932B49-D5C0-4D19-A3DA-CE0849258DE6} - C:\Program Files (x86)\Common Files\DVDVideoSoft\bin\IEDownloadMenuAndBtns.dll (DVDVideoSoft Ltd.)
Toolbar: HKLM-x32 - Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files (x86)\Microsoft\BingBar\7.1.391.0\BingExt.dll (Microsoft Corporation.)
Toolbar: HKLM-x32 - Delta Toolbar - {82E1477C-B154-48D3-9891-33D83C26BCD3} - C:\Program Files (x86)\Delta\delta\1.8.24.6\deltaTlbr.dll (Delta-search.com)
DPF: HKLM-x32 {6E718D87-6909-4FCE-92D4-EDCB2F725727} hxxp://www.navigram.com/engine/v1026/Navigram.cab
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} -  No File
Handler-x32: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.14.0.8117.0416.dll (Microsoft Corporation)
Handler-x32: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.14.0.8117.0416.dll (Microsoft Corporation)
Handler-x32: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
ShellExecuteHooks-x32:  - UPB:{B5A7F190-DDA6-4420-B3BA-52453494E6CD} -  No File [ ]
Tcpip\Parameters: [DhcpNameServer] 213.153.32.129 213.153.32.1

FireFox:
========
FF ProfilePath: C:\Users\xxx\AppData\Roaming\Mozilla\Firefox\Profiles\l3x2e4p1.default
FF user.js: detected! => C:\Users\xxx\AppData\Roaming\Mozilla\Firefox\Profiles\l3x2e4p1.default\user.js
FF NewTab: hxxp://www2.delta-search.com/?babsrc=NT_ss&mntrId=525D5CAC4C6DE85E&affID=121564&tsp=4987
FF Homepage: hxxp://www.google.at/ig
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_8_800_94.dll ()
FF Plugin: @microsoft.com/GENUINE - disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.20513.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: adobe.com/AdobeAAMDetect - C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll No File
FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_8_800_94.dll ()
FF Plugin-x32: @adobe.com/ShockwavePlayer - C:\Windows\SysWOW64\Adobe\Director\np32dsw_1200112.dll (Adobe Systems, Inc.)
FF Plugin-x32: @Google.com/GoogleEarthPlugin - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF Plugin-x32: @java.com/DTPlugin,version=10.25.2 - C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.25.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE - disabled No File
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.20513.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeLive,version=1.5 - C:\Program Files (x86)\Microsoft\Office Live\npOLW.dll (Microsoft Corp.)
FF Plugin-x32: @microsoft.com/WLPG,version=14.0.8117.0416 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKCU: @tools.google.com/Google Update;version=3 - C:\Users\xxx\AppData\Local\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.)
FF Plugin HKCU: @tools.google.com/Google Update;version=9 - C:\Users\xxx\AppData\Local\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.)
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml
FF Extension: Delta Toolbar - C:\Users\xxx\AppData\Roaming\Mozilla\Firefox\Profiles\l3x2e4p1.default\Extensions\ffxtlbr@delta.com
FF Extension: LavaFox V2 - C:\Users\xxx\AppData\Roaming\Mozilla\Firefox\Profiles\l3x2e4p1.default\Extensions\info@djzig.com
FF Extension: NASA Night Launch - C:\Users\xxx\AppData\Roaming\Mozilla\Firefox\Profiles\l3x2e4p1.default\Extensions\nasanightlaunch@example(2).com
FF Extension: NASA Night Launch - C:\Users\xxx\AppData\Roaming\Mozilla\Firefox\Profiles\l3x2e4p1.default\Extensions\nasanightlaunch@example(3).com
FF Extension: NASA Night Launch - C:\Users\xxx\AppData\Roaming\Mozilla\Firefox\Profiles\l3x2e4p1.default\Extensions\nasanightlaunch@example.com
FF Extension: IE Tab 2 (FF 3.6+) - C:\Users\xxx\AppData\Roaming\Mozilla\Firefox\Profiles\l3x2e4p1.default\Extensions\{1BC9BA34-1EED-42ca-A505-6D2F1A935BBB}
FF Extension: Flashblock - C:\Users\xxx\AppData\Roaming\Mozilla\Firefox\Profiles\l3x2e4p1.default\Extensions\{3d7eb24f-2740-49df-8937-200b1cc08f8a}
FF Extension: No Name - C:\Users\xxx\AppData\Roaming\Mozilla\Firefox\Profiles\l3x2e4p1.default\Extensions\{5B52016C-D097-4aec-BE61-9F129D8FDDBA}
FF Extension: Black Steel - C:\Users\xxx\AppData\Roaming\Mozilla\Firefox\Profiles\l3x2e4p1.default\Extensions\{e2c58150-9d72-11dd-ad8b-0800200c9a66}(2)
FF Extension: nasanightlaunch - C:\Users\xxx\AppData\Roaming\Mozilla\Firefox\Profiles\l3x2e4p1.default\Extensions\nasanightlaunch@example.com.xpi
FF Extension: No Name - C:\Users\xxx\AppData\Roaming\Mozilla\Firefox\Profiles\l3x2e4p1.default\Extensions\{46551EC9-40F0-4e47-8E18-8E5CF550CFB8}.xpi
FF Extension: No Name - C:\Users\xxx\AppData\Roaming\Mozilla\Firefox\Profiles\l3x2e4p1.default\Extensions\{ACAA314B-EEBA-48e4-AD47-84E31C44796C}.xpi
FF Extension: No Name - C:\Users\xxx\AppData\Roaming\Mozilla\Firefox\Profiles\l3x2e4p1.default\Extensions\{ef4e370e-d9f0-4e00-b93e-a4f274cfdd5a}.xpi
FF Extension: Skype Click to Call - C:\Program Files (x86)\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}
FF HKLM-x32\...\Firefox\Extensions: [{ACAA314B-EEBA-48e4-AD47-84E31C44796C}] C:\Program Files (x86)\Common Files\DVDVideoSoft\plugins\ff\
FF Extension: No Name - C:\Program Files (x86)\Common Files\DVDVideoSoft\plugins\ff\

Chrome: 
=======
CHR HomePage: hxxp://www.google.com
CHR HKLM-x32\...\Chrome\Extension: [eooncjejnppfjjklapaamhcdmjbilmde] - C:\Users\xxx\AppData\Roaming\BabSolution\CR\Delta.crx

==================== Services (Whitelisted) =================

R2 AntiVirMailService; C:\Program Files (x86)\Avira\AntiVir Desktop\avmailc.exe [622648 2013-09-03] (Avira Operations GmbH & Co. KG)
R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [84024 2013-08-20] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [108088 2013-08-20] (Avira Operations GmbH & Co. KG)
R2 AntiVirWebService; C:\Program Files (x86)\Avira\AntiVir Desktop\AVWEBGRD.EXE [815160 2013-08-20] (Avira Operations GmbH & Co. KG)
R2 FirebirdGuardianDefaultInstance; C:\Program Files (x86)\Firebird\Firebird_2_0\bin\fbguard.exe [77824 2006-10-31] (FirebirdSQL Project)
R3 FirebirdServerDefaultInstance; C:\Program Files (x86)\Firebird\Firebird_2_0\bin\fbserver.exe [1990656 2006-10-31] (FirebirdSQL Project)
S4 NOBU; C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe [2804568 2010-06-01] (Symantec Corporation)
R2 tor; C:\Program Files (x86)\Tor\tor.exe [3233806 2013-09-03] ()
S2 AviraUpgradeService; "C:\Windows\TEMP\AVSETUP_520a7452\avupgsvc.exe" /TEMPSTART:""C:\Windows\TEMP\AVSETUP_520a7452\setup.exe" /NOTEMPCLEANUP /CROSSUPGRADE" [x]

==================== Drivers (Whitelisted) ====================

R2 atksgt; C:\Windows\System32\DRIVERS\atksgt.sys [314016 2011-10-03] ()
R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [105344 2013-09-03] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [132088 2013-08-20] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [28600 2013-08-14] (Avira Operations GmbH & Co. KG)
S3 hwusbdev; C:\Windows\System32\DRIVERS\ewusbdev.sys [114560 2011-01-07] (Huawei Technologies Co., Ltd.)
R2 lirsgt; C:\Windows\System32\DRIVERS\lirsgt.sys [43680 2011-10-03] ()
U5 AppMgmt; C:\Windows\system32\svchost.exe [27136 2009-07-14] (Microsoft Corporation)
S3 catchme; \??\C:\ComboFix\catchme.sys [x]

==================== NetSvcs (Whitelisted) ===================


==================== One Month Created Files and Folders ========

2013-09-10 08:18 - 2013-09-10 20:28 - 96985259 _____ C:\Windows\SysWOW64\磤盷B
2013-09-03 16:59 - 2013-09-03 16:59 - 95638383 _____ C:\Windows\SysWOW64\鷻룭‚
2013-09-03 09:09 - 2013-09-03 09:09 - 00000000 ____D C:\Program Files (x86)\Tor
2013-08-27 09:19 - 2013-08-27 09:19 - 00003406 _____ C:\Windows\System32\Tasks\EPUpdater
2013-08-27 09:19 - 2013-08-27 09:19 - 00001402 _____ C:\Users\Public\Desktop\Free YouTube to MP3 Converter.lnk
2013-08-27 09:19 - 2013-08-27 09:19 - 00001243 _____ C:\Users\Public\Desktop\DVDVideoSoft Free Studio.lnk
2013-08-27 09:19 - 2013-08-27 09:19 - 00000000 ____D C:\Users\xxx\AppData\Roaming\DVDVideoSoftIEHelpers
2013-08-27 09:19 - 2013-08-27 09:19 - 00000000 ____D C:\Users\xxx\AppData\Roaming\Delta
2013-08-27 09:19 - 2013-08-27 09:19 - 00000000 ____D C:\Users\xxx\AppData\Roaming\Babylon
2013-08-27 09:19 - 2013-08-27 09:19 - 00000000 ____D C:\Users\xxx\AppData\Roaming\BabSolution
2013-08-27 09:19 - 2013-08-27 09:19 - 00000000 ____D C:\ProgramData\Babylon
2013-08-27 09:19 - 2013-08-27 09:19 - 00000000 ____D C:\Program Files (x86)\Delta
2013-08-27 09:18 - 2013-08-27 09:18 - 00000000 ____D C:\Users\xxx\AppData\Roaming\OpenCandy
2013-08-27 09:16 - 2013-08-27 09:16 - 30190416 _____ (DVDVideoSoft Ltd.                                           ) C:\Users\xxx\Desktop\FreeYouTubeToMP3Converter-3-.exe
2013-08-27 08:49 - 2013-08-27 08:49 - 00392056 _____ (Softonic                                        ) C:\Users\xxx\Downloads\SoftonicDownloader_fuer_free-youtube-to-mp3-converter(1).exe
2013-08-27 08:47 - 2013-08-27 08:47 - 00392056 _____ (Softonic                                        ) C:\Users\xxx\Downloads\SoftonicDownloader_fuer_free-youtube-to-mp3-converter.exe
2013-08-20 10:41 - 2013-08-20 10:41 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2013-08-20 07:02 - 2013-08-20 07:02 - 00204568 _____ (DEVGURU Co., LTD.(www.devguru.co.kr)) C:\Windows\system32\Drivers\ssudmdm.sys
2013-08-20 07:02 - 2013-08-20 07:02 - 00103576 _____ (DEVGURU Co., LTD.(www.devguru.co.kr)) C:\Windows\system32\Drivers\ssudbus.sys
2013-08-15 22:02 - 2013-08-15 22:02 - 02347384 _____ (ESET) C:\Users\xxx\Downloads\esetsmartinstaller_enu.exe
2013-08-14 22:48 - 2013-08-20 10:45 - 00081112 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avnetflt.sys
2013-08-14 22:46 - 2013-08-14 22:46 - 00000000 ____D C:\Users\xxx\AppData\Roaming\Avira
2013-08-14 22:45 - 2013-09-03 11:15 - 00105344 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avgntflt.sys
2013-08-14 22:45 - 2013-08-20 10:45 - 00132088 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avipbb.sys
2013-08-14 22:45 - 2013-08-14 22:45 - 00002070 _____ C:\Users\Public\Desktop\Avira Control Center.lnk
2013-08-14 22:45 - 2013-08-14 22:45 - 00000000 ____D C:\Program Files (x86)\Avira
2013-08-14 22:45 - 2013-08-14 22:43 - 00028600 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avkmgr.sys
2013-08-14 22:40 - 2013-08-14 22:40 - 02083256 _____ C:\Users\xxx\Downloads\avira_antivirus_premium.exe
2013-08-14 20:30 - 2013-08-14 20:30 - 00000000 ____D C:\Windows\ERUNT
2013-08-14 20:22 - 2013-08-14 20:23 - 00006531 _____ C:\AdwCleaner[S1].txt
2013-08-14 20:09 - 2013-08-14 20:09 - 10285040 _____ (Malwarebytes Corporation                                    ) C:\Users\xxx\Downloads\mbam-setup-1.75.0.1300.exe
2013-08-13 20:28 - 2013-08-13 20:28 - 00024474 _____ C:\ComboFix.txt
2013-08-13 20:07 - 2011-06-26 08:45 - 00256000 _____ C:\Windows\PEV.exe
2013-08-13 20:07 - 2010-11-07 19:20 - 00208896 _____ C:\Windows\MBR.exe
2013-08-13 20:07 - 2009-04-20 06:56 - 00060416 _____ (NirSoft) C:\Windows\NIRCMD.exe
2013-08-13 20:07 - 2000-08-31 02:00 - 00518144 _____ (SteelWerX) C:\Windows\SWREG.exe
2013-08-13 20:07 - 2000-08-31 02:00 - 00406528 _____ (SteelWerX) C:\Windows\SWSC.exe
2013-08-13 20:07 - 2000-08-31 02:00 - 00098816 _____ C:\Windows\sed.exe
2013-08-13 20:07 - 2000-08-31 02:00 - 00080412 _____ C:\Windows\grep.exe
2013-08-13 20:07 - 2000-08-31 02:00 - 00068096 _____ C:\Windows\zip.exe
2013-08-13 20:02 - 2013-08-13 20:29 - 00000000 ____D C:\Qoobox
2013-08-13 20:02 - 2013-08-13 20:26 - 00000000 ____D C:\Windows\erdnt
2013-08-13 00:56 - 2013-08-13 00:56 - 00278632 _____ C:\Windows\Minidump\081313-21715-01.dmp
2013-08-13 00:40 - 2013-08-13 00:40 - 00000000 ____D C:\FRST
2013-08-13 00:16 - 2013-08-15 21:04 - 00000000 ____D C:\Program Files (x86)\Mozilla Thunderbird

==================== One Month Modified Files and Folders =======

2013-09-10 21:49 - 2013-09-10 21:49 - 01949196 _____ (Farbar) C:\Users\xxx\Desktop\FRST64.exe
2013-09-10 21:45 - 2011-02-21 21:21 - 00001114 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2013-09-10 21:35 - 2013-04-28 22:15 - 00001132 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-4138529036-2260153085-4193991026-1000UA.job
2013-09-10 21:08 - 2010-12-31 19:27 - 00000000 ____D C:\Users\xxx\AppData\Roaming\Skype
2013-09-10 21:01 - 2012-04-11 19:26 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2013-09-10 20:28 - 2013-09-10 08:18 - 96985259 _____ C:\Windows\SysWOW64\磤盷B
2013-09-10 13:35 - 2010-08-19 01:43 - 01317524 _____ C:\Windows\WindowsUpdate.log
2013-09-10 08:25 - 2009-07-14 06:45 - 00023248 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2013-09-10 08:25 - 2009-07-14 06:45 - 00023248 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2013-09-10 08:17 - 2012-12-31 16:32 - 00047554 _____ C:\Windows\setupact.log
2013-09-10 08:17 - 2011-02-21 21:21 - 00001110 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2013-09-10 08:17 - 2009-07-14 07:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2013-09-09 19:33 - 2011-11-05 15:33 - 00000000 _____ C:\Windows\system32\HP_ActiveX_Patch_NOT_DETECTED.txt
2013-09-09 19:33 - 2011-01-01 10:34 - 00000052 _____ C:\Windows\SysWOW64\DOErrors.log
2013-09-08 00:35 - 2013-04-28 22:15 - 00001080 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-4138529036-2260153085-4193991026-1000Core.job
2013-09-07 21:58 - 2011-07-24 19:10 - 00003204 _____ C:\Windows\System32\Tasks\HPCeeScheduleForxxx
2013-09-07 21:58 - 2011-07-24 19:10 - 00000344 _____ C:\Windows\Tasks\HPCeeScheduleForxxx.job
2013-09-07 15:14 - 2013-07-20 23:37 - 00000000 ____D C:\Users\xxx\AppData\Roaming\vlc
2013-09-03 16:59 - 2013-09-03 16:59 - 95638383 _____ C:\Windows\SysWOW64\鷻룭‚
2013-09-03 11:15 - 2013-08-14 22:45 - 00105344 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avgntflt.sys
2013-09-03 09:09 - 2013-09-03 09:09 - 00000000 ____D C:\Program Files (x86)\Tor
2013-09-02 17:33 - 2011-01-31 22:17 - 00000000 ____D C:\Users\xxx\AppData\Local\FreePDF_XP
2013-09-02 11:10 - 2011-01-13 20:29 - 00000000 ____D C:\Users\xxx\Documents\Haushalt
2013-08-29 15:26 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\NDF
2013-08-27 12:53 - 2013-02-21 10:36 - 00290230 _____ C:\Windows\PFRO.log
2013-08-27 09:19 - 2013-08-27 09:19 - 00003406 _____ C:\Windows\System32\Tasks\EPUpdater
2013-08-27 09:19 - 2013-08-27 09:19 - 00001402 _____ C:\Users\Public\Desktop\Free YouTube to MP3 Converter.lnk
2013-08-27 09:19 - 2013-08-27 09:19 - 00001243 _____ C:\Users\Public\Desktop\DVDVideoSoft Free Studio.lnk
2013-08-27 09:19 - 2013-08-27 09:19 - 00000000 ____D C:\Users\xxx\AppData\Roaming\DVDVideoSoftIEHelpers
2013-08-27 09:19 - 2013-08-27 09:19 - 00000000 ____D C:\Users\xxx\AppData\Roaming\Delta
2013-08-27 09:19 - 2013-08-27 09:19 - 00000000 ____D C:\Users\xxx\AppData\Roaming\Babylon
2013-08-27 09:19 - 2013-08-27 09:19 - 00000000 ____D C:\Users\xxx\AppData\Roaming\BabSolution
2013-08-27 09:19 - 2013-08-27 09:19 - 00000000 ____D C:\ProgramData\Babylon
2013-08-27 09:19 - 2013-08-27 09:19 - 00000000 ____D C:\Program Files (x86)\Delta
2013-08-27 09:19 - 2011-01-09 18:11 - 00000000 ____D C:\Program Files (x86)\DVDVideoSoft
2013-08-27 09:18 - 2013-08-27 09:18 - 00000000 ____D C:\Users\xxx\AppData\Roaming\OpenCandy
2013-08-27 09:18 - 2011-12-24 00:03 - 00000000 ____D C:\Users\xxx\AppData\Roaming\DVDVideoSoft
2013-08-27 09:16 - 2013-08-27 09:16 - 30190416 _____ (DVDVideoSoft Ltd.                                           ) C:\Users\xxx\Desktop\FreeYouTubeToMP3Converter-3-.exe
2013-08-27 08:49 - 2013-08-27 08:49 - 00392056 _____ (Softonic                                        ) C:\Users\xxx\Downloads\SoftonicDownloader_fuer_free-youtube-to-mp3-converter(1).exe
2013-08-27 08:47 - 2013-08-27 08:47 - 00392056 _____ (Softonic                                        ) C:\Users\xxx\Downloads\SoftonicDownloader_fuer_free-youtube-to-mp3-converter.exe
2013-08-23 20:17 - 2013-04-29 22:09 - 00000020 ____H C:\ProgramData\PKP_DLev.DAT
2013-08-22 08:08 - 2012-06-07 14:38 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2013-08-22 08:08 - 2011-12-28 14:05 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware
2013-08-20 10:45 - 2013-08-14 22:48 - 00081112 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avnetflt.sys
2013-08-20 10:45 - 2013-08-14 22:45 - 00132088 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avipbb.sys
2013-08-20 10:41 - 2013-08-20 10:41 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2013-08-20 07:02 - 2013-08-20 07:02 - 00204568 _____ (DEVGURU Co., LTD.(www.devguru.co.kr)) C:\Windows\system32\Drivers\ssudmdm.sys
2013-08-20 07:02 - 2013-08-20 07:02 - 00103576 _____ (DEVGURU Co., LTD.(www.devguru.co.kr)) C:\Windows\system32\Drivers\ssudbus.sys
2013-08-19 09:41 - 2009-07-14 07:08 - 00032640 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2013-08-15 22:02 - 2013-08-15 22:02 - 02347384 _____ (ESET) C:\Users\xxx\Downloads\esetsmartinstaller_enu.exe
2013-08-15 21:04 - 2013-08-13 00:16 - 00000000 ____D C:\Program Files (x86)\Mozilla Thunderbird
2013-08-14 23:10 - 2010-12-31 16:40 - 00000000 ____D C:\ProgramData\Microsoft Help
2013-08-14 23:09 - 2013-07-27 23:13 - 00000000 ____D C:\Windows\system32\MRT
2013-08-14 23:07 - 2011-01-03 10:58 - 78161360 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2013-08-14 22:46 - 2013-08-14 22:46 - 00000000 ____D C:\Users\xxx\AppData\Roaming\Avira
2013-08-14 22:45 - 2013-08-14 22:45 - 00002070 _____ C:\Users\Public\Desktop\Avira Control Center.lnk
2013-08-14 22:45 - 2013-08-14 22:45 - 00000000 ____D C:\Program Files (x86)\Avira
2013-08-14 22:45 - 2010-12-31 17:10 - 00000000 ____D C:\ProgramData\Avira
2013-08-14 22:43 - 2013-08-14 22:45 - 00028600 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avkmgr.sys
2013-08-14 22:40 - 2013-08-14 22:40 - 02083256 _____ C:\Users\xxx\Downloads\avira_antivirus_premium.exe
2013-08-14 20:30 - 2013-08-14 20:30 - 00000000 ____D C:\Windows\ERUNT
2013-08-14 20:23 - 2013-08-14 20:22 - 00006531 _____ C:\AdwCleaner[S1].txt
2013-08-14 20:09 - 2013-08-14 20:09 - 10285040 _____ (Malwarebytes Corporation                                    ) C:\Users\xxx\Downloads\mbam-setup-1.75.0.1300.exe
2013-08-13 20:29 - 2013-08-13 20:02 - 00000000 ____D C:\Qoobox
2013-08-13 20:28 - 2013-08-13 20:28 - 00024474 _____ C:\ComboFix.txt
2013-08-13 20:26 - 2013-08-13 20:02 - 00000000 ____D C:\Windows\erdnt
2013-08-13 20:20 - 2009-07-14 04:34 - 00000215 _____ C:\Windows\system.ini
2013-08-13 00:56 - 2013-08-13 00:56 - 00278632 _____ C:\Windows\Minidump\081313-21715-01.dmp
2013-08-13 00:56 - 2012-11-16 14:05 - 00000000 ____D C:\Windows\Minidump
2013-08-13 00:55 - 2013-04-09 18:43 - 559255184 _____ C:\Windows\MEMORY.DMP
2013-08-13 00:40 - 2013-08-13 00:40 - 00000000 ____D C:\FRST
2013-08-13 00:07 - 2013-05-13 23:50 - 00000000 ____D C:\Program Files (x86)\MyFree Codec
2013-08-13 00:05 - 2011-10-02 22:47 - 00000000 ____D C:\Program Files (x86)\Ubisoft
2013-08-13 00:05 - 2010-07-21 10:19 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2013-08-12 20:24 - 2013-04-29 22:09 - 00000020 ____H C:\ProgramData\PKP_DLet.DAT
2013-08-11 01:18 - 2012-04-11 19:26 - 00692104 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2013-08-11 01:18 - 2011-05-18 07:10 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2013-08-11 01:18 - 2010-12-31 23:20 - 00000000 ____D C:\Users\xxx\AppData\Local\Adobe

Files to move or delete:
====================
C:\ProgramData\PKP_DLdu.DAT
C:\ProgramData\PKP_DLeo.DAT
C:\ProgramData\PKP_DLes.DAT
C:\ProgramData\PKP_DLet.DAT
C:\ProgramData\PKP_DLev.DAT
C:\Users\xxx\AppData\Local\Temp\Softonic_chr_1-8-21-14.exe

==================== Bamital & volsnap Check =================

C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit


LastRegBack: 2013-09-01 10:40

==================== End Of Log ============================
         

GMER:
Code:
ATTFilter
GMER 2.1.19163 - hxxp://www.gmer.net
Rootkit scan 2013-09-10 22:19:39
Windows 6.1.7600  x64 \Device\Harddisk0\DR0 -> \Device\Ide\IAAStorageDevice-1 Hitachi_ rev.PC3O 298,09GB
Running: gmer_2.1.19163.exe; Driver: C:\Users\xxx\AppData\Local\Temp\uxlorkow.sys


---- Disk sectors - GMER 2.1 ----

Disk  \Device\Harddisk0\DR0  unknown MBR code

---- EOF - GMER 2.1 ----
         

Alt 11.09.2013, 05:04   #2
schrauber
/// the machine
/// TB-Ausbilder
 

Trojaner TR/Fakeadb.A - Standard

Trojaner TR/Fakeadb.A



hi,
Combofix sollte ausschließlich ausgeführt werden, wenn dies von einem Teammitglied angewiesen wurde!
Downloade dir bitte Combofix vom folgenden Downloadspiegel

Link 1


WICHTIG - Speichere Combofix auf deinem Desktop
  • Deaktiviere bitte all deine Anti Viren sowie Anti Malware/Spyware Scanner. Diese können Combofix bei der Arbeit stören.
Starte die Combofix.exe und folge den Anweisungen auf dem Bildschirm.

Wenn Combofix fertig ist, wird es eine Logfile erstellen. Bitte poste die C:\Combofix.txt in deiner nächsten Antwort.


Hinweis: Solltest du nach dem Neustart folgende Fehlermeldung erhalten
Zitat:
Es wurde versucht, einen Registrierungsschlüssel einem ungültigen Vorgang zu unterziehen, der zum Löschen markiert wurde.
starte den Rechner einfach neu. Dies sollte das Problem beheben.
__________________

__________________

Alt 11.09.2013, 20:13   #3
k.karl
 
Trojaner TR/Fakeadb.A - Standard

Trojaner TR/Fakeadb.A



Code:
ATTFilter
ComboFix 13-09-10.03 - xxx 11.09.2013  20:49:30.2.4 - x64
Microsoft Windows 7 Home Premium   6.1.7600.0.1252.43.1031.18.3894.2512 [GMT 2:00]
ausgeführt von:: c:\users\xxx\Desktop\ComboFix.exe
AV: Avira Desktop *Disabled/Updated* {F67B4DE5-C0B4-6C3F-0EFF-6C83BD5D0C2C}
SP: Avira Desktop *Disabled/Updated* {4D1AAC01-E68E-63B1-344F-57F1C6DA4691}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
.
.
((((((((((((((((((((((((((((((((((((   Weitere Löschungen   ))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\program files (x86)\Delta\delta\1.8.24.6\bh\delta.dll
c:\program files (x86)\Delta\delta\1.8.24.6\deltaApp.dll
c:\program files (x86)\Delta\delta\1.8.24.6\deltaEng.dll
c:\program files (x86)\Delta\delta\1.8.24.6\deltasrv.exe
c:\program files (x86)\Delta\delta\1.8.24.6\deltaTlbr.dll
.
.
(((((((((((((((((((((((   Dateien erstellt von 2013-08-11 bis 2013-09-11  ))))))))))))))))))))))))))))))
.
.
2013-09-11 18:59 . 2013-09-11 18:59	--------	d-----w-	c:\users\Default\AppData\Local\temp
2013-09-11 18:59 . 2013-09-11 18:59	--------	d-----w-	c:\users\Administrator\AppData\Local\temp
2013-09-03 07:09 . 2013-09-03 07:09	--------	d-----w-	c:\program files (x86)\Tor
2013-08-27 07:19 . 2013-08-27 07:19	--------	d-----w-	c:\program files (x86)\Delta
2013-08-27 07:19 . 2013-08-27 07:19	--------	d-----w-	c:\users\xxx\AppData\Roaming\Delta
2013-08-27 07:19 . 2013-08-27 07:19	--------	d-----w-	c:\users\xxx\AppData\Roaming\BabSolution
2013-08-27 07:19 . 2013-08-27 07:19	--------	d-----w-	c:\users\xxx\AppData\Roaming\DVDVideoSoftIEHelpers
2013-08-27 07:19 . 2013-08-27 07:19	--------	d-----w-	c:\users\xxx\AppData\Roaming\Babylon
2013-08-27 07:19 . 2013-08-27 07:19	--------	d-----w-	c:\programdata\Babylon
2013-08-27 07:18 . 2013-08-27 07:18	--------	d-----w-	c:\users\xxx\AppData\Roaming\OpenCandy
2013-08-20 05:02 . 2013-08-20 05:02	204568	----a-w-	c:\windows\system32\drivers\ssudmdm.sys
2013-08-20 05:02 . 2013-08-20 05:02	103576	----a-w-	c:\windows\system32\drivers\ssudbus.sys
2013-08-14 20:48 . 2013-08-20 08:45	81112	----a-w-	c:\windows\system32\drivers\avnetflt.sys
2013-08-14 20:46 . 2013-08-14 20:46	--------	d-----w-	c:\users\xxx\AppData\Roaming\Avira
2013-08-14 20:45 . 2013-09-03 09:15	105344	----a-w-	c:\windows\system32\drivers\avgntflt.sys
2013-08-14 20:45 . 2013-08-20 08:45	132088	----a-w-	c:\windows\system32\drivers\avipbb.sys
2013-08-14 20:45 . 2013-08-14 20:45	--------	d-----w-	c:\program files (x86)\Avira
2013-08-14 20:45 . 2013-08-14 20:43	28600	----a-w-	c:\windows\system32\drivers\avkmgr.sys
2013-08-14 20:37 . 2013-07-15 01:34	9460976	----a-w-	c:\programdata\Microsoft\Windows Defender\Definition Updates\{20F5FF7F-A947-4334-A76D-8F3EAAD5719A}\mpengine.dll
2013-08-14 18:30 . 2013-08-14 18:30	--------	d-----w-	c:\windows\ERUNT
2013-08-12 22:40 . 2013-08-12 22:40	--------	d-----w-	C:\FRST
2013-08-12 22:16 . 2013-08-15 19:04	--------	d-----w-	c:\program files (x86)\Mozilla Thunderbird
.
.
.
((((((((((((((((((((((((((((((((((((   Find3M Bericht   ))))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2013-08-14 21:07 . 2011-01-03 08:58	78161360	----a-w-	c:\windows\system32\MRT.exe
2013-08-10 23:18 . 2012-04-11 17:26	692104	----a-w-	c:\windows\SysWow64\FlashPlayerApp.exe
2013-08-10 23:18 . 2011-05-18 05:10	71048	----a-w-	c:\windows\SysWow64\FlashPlayerCPLApp.cpl
2013-06-23 12:36 . 2013-06-23 12:36	96168	----a-w-	c:\windows\SysWow64\WindowsAccessBridge-32.dll
2013-06-23 12:36 . 2012-09-03 20:54	867240	----a-w-	c:\windows\SysWow64\npDeployJava1.dll
2013-06-23 12:36 . 2010-07-21 11:07	789416	----a-w-	c:\windows\SysWow64\deployJava1.dll
2007-03-12 17:59 . 2007-03-12 17:59	299008	----a-w-	c:\program files (x86)\navigram_register.exe
.
.
((((((((((((((((((((((((((((   Autostartpunkte der Registrierung   ))))))))))))))))))))))))))))))))))))))))
.
.
*Hinweis* leere Einträge & legitime Standardeinträge werden nicht angezeigt. 
REGEDIT4
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\~\Browser Helper Objects\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6}]
2013-08-15 15:40	277560	----a-w-	c:\program files (x86)\Common Files\DVDVideoSoft\bin\IEDownloadMenuAndBtns.dll
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"RocketDock"="c:\program files (x86)\RocketDock\RocketDock.exe" [2007-09-02 495616]
"PureSync"="c:\program files (x86)\PureSync\PureSyncTray.exe" [2013-04-29 907808]
"MusicManager"="c:\users\xxx\AppData\Local\Programs\Google\MusicManager\MusicManager.exe" [2013-06-20 7345664]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run]
"GrooveMonitor"="c:\program files (x86)\Microsoft Office\Office12\GrooveMonitor.exe" [2009-02-26 30040]
"HP Quick Launch"="c:\program files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe" [2012-03-05 578944]
"avgnt"="c:\program files (x86)\Avira\AntiVir Desktop\avgnt.exe" [2013-08-20 347192]
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\system]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
"HideFastUserSwitching"= 0 (0x0)
"EnableLinkedConnections"= 1 (0x1)
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\policies\explorer]
"EnableShellExecuteHooks"= 1 (0x1)
"HideSCAHealth"= 1 (0x1)
.
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\windows]
"LoadAppInit_DLLs"=1 (0x1)
.
R2 AviraUpgradeService;Avira Upgrade Service;c:\windows\TEMP\AVSETUP_520a7452\avupgsvc.exe;c:\windows\TEMP\AVSETUP_520a7452\avupgsvc.exe [x]
R2 BBSvc;BingBar Service;c:\program files (x86)\Microsoft\BingBar\7.2.241.0\BBSvc.exe;c:\program files (x86)\Microsoft\BingBar\7.2.241.0\BBSvc.exe [x]
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [x]
R2 SkypeUpdate;Skype Updater;c:\program files (x86)\Skype\Updater\Updater.exe;c:\program files (x86)\Skype\Updater\Updater.exe [x]
R2 tor;Tor Win32 Service;c:\program files (x86)\Tor\tor.exe;c:\program files (x86)\Tor\tor.exe [x]
R3 androidusb;SAMSUNG Android Composite ADB Interface Driver;c:\windows\system32\Drivers\ssadadb.sys;c:\windows\SYSNATIVE\Drivers\ssadadb.sys [x]
R3 dg_ssudbus;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.);c:\windows\system32\DRIVERS\ssudbus.sys;c:\windows\SYSNATIVE\DRIVERS\ssudbus.sys [x]
R3 hwusbdev;Huawei DataCard USB PNP Device;c:\windows\system32\DRIVERS\ewusbdev.sys;c:\windows\SYSNATIVE\DRIVERS\ewusbdev.sys [x]
R3 netw5v64;Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows Vista 64 Bit;c:\windows\system32\DRIVERS\netw5v64.sys;c:\windows\SYSNATIVE\DRIVERS\netw5v64.sys [x]
R3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys;c:\windows\SYSNATIVE\DRIVERS\Rt64win7.sys [x]
R3 SrvHsfHDA;SrvHsfHDA;c:\windows\system32\DRIVERS\VSTAZL6.SYS;c:\windows\SYSNATIVE\DRIVERS\VSTAZL6.SYS [x]
R3 SrvHsfV92;SrvHsfV92;c:\windows\system32\DRIVERS\VSTDPV6.SYS;c:\windows\SYSNATIVE\DRIVERS\VSTDPV6.SYS [x]
R3 SrvHsfWinac;SrvHsfWinac;c:\windows\system32\DRIVERS\VSTCNXT6.SYS;c:\windows\SYSNATIVE\DRIVERS\VSTCNXT6.SYS [x]
R3 ssadbus;SAMSUNG Android USB Composite Device driver (WDM);c:\windows\system32\DRIVERS\ssadbus.sys;c:\windows\SYSNATIVE\DRIVERS\ssadbus.sys [x]
R3 ssadmdfl;SAMSUNG Android USB Modem (Filter);c:\windows\system32\DRIVERS\ssadmdfl.sys;c:\windows\SYSNATIVE\DRIVERS\ssadmdfl.sys [x]
R3 ssadmdm;SAMSUNG Android USB Modem Drivers;c:\windows\system32\DRIVERS\ssadmdm.sys;c:\windows\SYSNATIVE\DRIVERS\ssadmdm.sys [x]
R3 sscebus;SAMSUNG USB Composite Device V2 driver (WDM);c:\windows\system32\DRIVERS\sscebus.sys;c:\windows\SYSNATIVE\DRIVERS\sscebus.sys [x]
R3 sscemdfl;SAMSUNG Mobile Modem V2 Filter;c:\windows\system32\DRIVERS\sscemdfl.sys;c:\windows\SYSNATIVE\DRIVERS\sscemdfl.sys [x]
R3 sscemdm;SAMSUNG Mobile Modem V2 Drivers;c:\windows\system32\DRIVERS\sscemdm.sys;c:\windows\SYSNATIVE\DRIVERS\sscemdm.sys [x]
R3 ssudmdm;SAMSUNG  Mobile USB Modem Drivers (DEVGURU Ver.);c:\windows\system32\DRIVERS\ssudmdm.sys;c:\windows\SYSNATIVE\DRIVERS\ssudmdm.sys [x]
R3 WatAdminSvc;Windows-Aktivierungstechnologieservice;c:\windows\system32\Wat\WatAdminSvc.exe;c:\windows\SYSNATIVE\Wat\WatAdminSvc.exe [x]
R3 yukonw7;NDIS6.2 Miniport Driver for Marvell Yukon Ethernet Controller;c:\windows\system32\DRIVERS\yk62x64.sys;c:\windows\SYSNATIVE\DRIVERS\yk62x64.sys [x]
R4 NOBU;Norton Online Backup;c:\program files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe SERVICE;c:\program files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe SERVICE [x]
S1 avkmgr;avkmgr;c:\windows\system32\DRIVERS\avkmgr.sys;c:\windows\SYSNATIVE\DRIVERS\avkmgr.sys [x]
S2 AESTFilters;Andrea ST Filters Service;c:\program files\IDT\WDM\AESTSr64.exe;c:\program files\IDT\WDM\AESTSr64.exe [x]
S2 AMD External Events Utility;AMD External Events Utility;c:\windows\system32\atiesrxx.exe;c:\windows\SYSNATIVE\atiesrxx.exe [x]
S2 AntiVirMailService;Avira Email Schutz;c:\program files (x86)\Avira\AntiVir Desktop\avmailc.exe;c:\program files (x86)\Avira\AntiVir Desktop\avmailc.exe [x]
S2 AntiVirSchedulerService;Avira Planer;c:\program files (x86)\Avira\AntiVir Desktop\sched.exe;c:\program files (x86)\Avira\AntiVir Desktop\sched.exe [x]
S2 AntiVirWebService;Avira Browser-Schutz;c:\program files (x86)\Avira\AntiVir Desktop\AVWEBGRD.EXE;c:\program files (x86)\Avira\AntiVir Desktop\AVWEBGRD.EXE [x]
S2 ezSharedSvc;Easybits Services for Windows;c:\windows\System32\ezSharedSvcHost.exe;c:\windows\SYSNATIVE\ezSharedSvcHost.exe [x]
S2 FirebirdGuardianDefaultInstance;Firebird Guardian - DefaultInstance;c:\program files (x86)\Firebird\Firebird_2_0\bin\fbguard.exe;c:\program files (x86)\Firebird\Firebird_2_0\bin\fbguard.exe [x]
S2 HP Support Assistant Service;HP Support Assistant Service;c:\program files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe;c:\program files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe [x]
S2 HP Wireless Assistant Service;HP Wireless Assistant Service;c:\program files\Hewlett-Packard\HP Wireless Assistant\HPWA_Service.exe;c:\program files\Hewlett-Packard\HP Wireless Assistant\HPWA_Service.exe [x]
S2 hpsrv;HP Service;c:\windows\system32\Hpservice.exe;c:\windows\SYSNATIVE\Hpservice.exe [x]
S2 HPWMISVC;HPWMISVC;c:\program files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe;c:\program files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe [x]
S2 TeamViewer7;TeamViewer 7;c:\program files (x86)\TeamViewer\Version7\TeamViewer_Service.exe;c:\program files (x86)\TeamViewer\Version7\TeamViewer_Service.exe [x]
S2 UNS;Intel(R) Management & Security Application User Notification Service;c:\program files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe;c:\program files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [x]
S3 BBUpdate;BBUpdate;c:\program files (x86)\Microsoft\BingBar\7.2.241.0\SeaPort.exe;c:\program files (x86)\Microsoft\BingBar\7.2.241.0\SeaPort.exe [x]
S3 clwvd;HP Webcam Splitter;c:\windows\system32\DRIVERS\clwvd.sys;c:\windows\SYSNATIVE\DRIVERS\clwvd.sys [x]
S3 FirebirdServerDefaultInstance;Firebird Server - DefaultInstance;c:\program files (x86)\Firebird\Firebird_2_0\bin\fbserver.exe;c:\program files (x86)\Firebird\Firebird_2_0\bin\fbserver.exe [x]
S3 HECIx64;Intel(R) Management Engine Interface;c:\windows\system32\DRIVERS\HECIx64.sys;c:\windows\SYSNATIVE\DRIVERS\HECIx64.sys [x]
S3 Impcd;Impcd;c:\windows\system32\DRIVERS\Impcd.sys;c:\windows\SYSNATIVE\DRIVERS\Impcd.sys [x]
S3 intelkmd;intelkmd;c:\windows\system32\DRIVERS\igdpmd64.sys;c:\windows\SYSNATIVE\DRIVERS\igdpmd64.sys [x]
S3 RSUSBSTOR;RtsUStor.Sys Realtek USB Card Reader;c:\windows\system32\Drivers\RtsUStor.sys;c:\windows\SYSNATIVE\Drivers\RtsUStor.sys [x]
.
.
Inhalt des "geplante Tasks" Ordners
.
2013-09-10 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2011-02-21 19:21]
.
2013-09-10 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files (x86)\Google\Update\GoogleUpdate.exe [2011-02-21 19:21]
.
2013-09-07 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-4138529036-2260153085-4193991026-1000Core.job
- c:\users\xxx\AppData\Local\Google\Update\GoogleUpdate.exe [2013-04-28 20:15]
.
2013-09-10 c:\windows\Tasks\GoogleUpdateTaskUserS-1-5-21-4138529036-2260153085-4193991026-1000UA.job
- c:\users\xxx\AppData\Local\Google\Update\GoogleUpdate.exe [2013-04-28 20:15]
.
2013-09-07 c:\windows\Tasks\HPCeeScheduleForxxx.job
- c:\program files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [2010-01-05 01:53]
.
.
--------- X64 Entries -----------
.
.
[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6}]
2013-08-15 15:40	336952	----a-w-	c:\program files (x86)\Common Files\DVDVideoSoft\bin\IEDownloadMenuAndBtns64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveBlacklistedOverlay]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42}"
[HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42}]
2013-06-27 14:11	778704	----a-w-	c:\program files (x86)\Google\Drive\googledrivesync64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveSharedEditOverlay]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44}"
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveSharedOverlay]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44}"
[HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44}]
2013-06-27 14:11	778704	----a-w-	c:\program files (x86)\Google\Drive\googledrivesync64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveSharedEditOverlay]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44}"
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveSharedOverlay]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44}"
[HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D44}]
2013-06-27 14:11	778704	----a-w-	c:\program files (x86)\Google\Drive\googledrivesync64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveSharedViewOverlay]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D43}"
[HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D43}]
2013-06-27 14:11	778704	----a-w-	c:\program files (x86)\Google\Drive\googledrivesync64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveSyncedOverlay]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40}"
[HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40}]
2013-06-27 14:11	778704	----a-w-	c:\program files (x86)\Google\Drive\googledrivesync64.dll
.
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\GDriveSyncingOverlay]
@="{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41}"
[HKEY_CLASSES_ROOT\CLSID\{81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41}]
2013-06-27 14:11	778704	----a-w-	c:\program files (x86)\Google\Drive\googledrivesync64.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"="c:\windows\system32\igfxtray.exe" [2010-06-22 161304]
"HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2010-06-22 386584]
"Persistence"="c:\windows\system32\igfxpers.exe" [2010-06-22 414744]
"SynTPEnh"="c:\program files (x86)\Synaptics\SynTP\SynTPEnh.exe" [BU]
"SysTrayApp"="c:\program files\IDT\WDM\sttray64.exe" [2010-06-18 487424]
"HPWirelessAssistant"="c:\program files\Hewlett-Packard\HP Wireless Assistant\DelayedAppStarter.exe" [2010-06-18 8192]
.
------- Zusätzlicher Suchlauf -------
.
uStart Page = hxxp://www2.delta-search.com/?babsrc=HP_ss&mntrId=525D5CAC4C6DE85E&affID=121564&tsp=4987
uLocal Page = c:\windows\system32\blank.htm
mLocal Page = c:\windows\SysWOW64\blank.htm
uInternet Settings,ProxyOverride = 127.0.0.1:9421;<local>
IE: Free YouTube Download - c:\users\xxx\AppData\Roaming\DVDVideoSoftIEHelpers\freeyoutubedownload.htm
IE: Free YouTube to MP3 Converter - c:\program files (x86)\Common Files\DVDVideoSoft\plugins\freeytmp3downloader.htm
IE: Nach Microsoft E&xel exportieren - c:\progra~2\MICROS~3\Office12\EXCEL.EXE/3000
IE: {{EE932B49-D5C0-4D19-A3DA-CE0849258DE6} - {EE932B49-D5C0-4D19-A3DA-CE0849258DE6} - c:\program files (x86)\Common Files\DVDVideoSoft\bin\IEDownloadMenuAndBtns.dll
LSP: c:\program files (x86)\Avira\AntiVir Desktop\avsda.dll
Trusted Zone: clonewarsadventures.com
Trusted Zone: freerealms.com
Trusted Zone: soe.com
Trusted Zone: sony.com
TCP: DhcpNameServer = 213.153.32.129 213.153.32.1
FF - ProfilePath - c:\users\xxx\AppData\Roaming\Mozilla\Firefox\Profiles\l3x2e4p1.default\
FF - prefs.js: browser.startup.homepage - hxxp://www.google.at/ig
FF - ExtSQL: 2013-08-27 09:19; ffxtlbr@delta.com; c:\users\xxx\AppData\Roaming\Mozilla\Firefox\Profiles\l3x2e4p1.default\extensions\ffxtlbr@delta.com
FF - ExtSQL: 2049-12-31 14:00; {ef4e370e-d9f0-4e00-b93e-a4f274cfdd5a}; c:\users\xxx\AppData\Roaming\Mozilla\Firefox\Profiles\l3x2e4p1.default\extensions\{ef4e370e-d9f0-4e00-b93e-a4f274cfdd5a}.xpi
FF - ExtSQL: !HIDDEN! 2013-08-27 09:19; {ACAA314B-EEBA-48e4-AD47-84E31C44796C}; c:\program files (x86)\Common Files\DVDVideoSoft\plugins\ff
FF - user.js: extensions.delta.tlbrSrchUrl - 
FF - user.js: extensions.delta.id - 525dc6650000000000005cac4c6de85e
FF - user.js: extensions.delta.appId - {C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3}
FF - user.js: extensions.delta.instlDay - 15944
FF - user.js: extensions.delta.vrsn - 1.8.24.6
FF - user.js: extensions.delta.vrsni - 1.8.24.6
FF - user.js: extensions.delta.vrsnTs - 1.8.24.69:19
FF - user.js: extensions.delta.prtnrId - delta
FF - user.js: extensions.delta.prdct - delta
FF - user.js: extensions.delta.aflt - babsst
FF - user.js: extensions.delta.smplGrp - none
FF - user.js: extensions.delta.tlbrId - base
FF - user.js: extensions.delta.instlRef - sst
FF - user.js: extensions.delta.dfltLng - de
FF - user.js: extensions.delta.excTlbr - false
FF - user.js: extensions.delta.ffxUnstlRst - true
FF - user.js: extensions.delta.admin - false
FF - user.js: extensions.delta_i.babTrack - affID=121564&tsp=4987
FF - user.js: extensions.delta_i.babExt - 
FF - user.js: extensions.delta_i.srcExt - ss
FF - user.js: extensions.delta.autoRvrt - false
FF - user.js: extensions.delta.rvrt - false
FF - user.js: extensions.delta.newTab - false
.
- - - - Entfernte verwaiste Registrierungseinträge - - - -
.
BHO-{C1AF5FA5-852C-4C90-812E-A7F75E011D87} - c:\program files (x86)\Delta\delta\1.8.24.6\bh\delta.dll
Toolbar-{82E1477C-B154-48D3-9891-33D83C26BCD3} - c:\program files (x86)\Delta\delta\1.8.24.6\deltaTlbr.dll
ShellIconOverlayIdentifiers-{FB314ED9-A251-47B7-93E1-CDD82E34AF8B} - (no file)
ShellIconOverlayIdentifiers-{FB314EDA-A251-47B7-93E1-CDD82E34AF8B} - (no file)
ShellIconOverlayIdentifiers-{FB314EDB-A251-47B7-93E1-CDD82E34AF8B} - (no file)
ShellIconOverlayIdentifiers-{FB314EDC-A251-47B7-93E1-CDD82E34AF8B} - (no file)
AddRemove-Uninstall_is1 - c:\program files (x86)\Common Files\DVDVideoSoft\unins000.exe
AddRemove-{EE202411-2C26-49E8-9784-1BC1DBF7DE96} - c:\program files (x86)\InstallShield Installation Information\{EE202411-2C26-49E8-9784-1BC1DBF7DE96}\setup.exe
.
.
.
--------------------- Gesperrte Registrierungsschluessel ---------------------
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_11_7_700_224_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32]
@="c:\\Windows\\system32\\Macromed\\Flash\\FlashUtil64_11_7_700_224_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="IFlashBroker5"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_11_7_700_224_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\FlashUtil32_11_7_700_224_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Shockwave Flash Object"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_7_700_224.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\MiscStatus]
@="0"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ProgID]
@="ShockwaveFlash.ShockwaveFlash.11"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_7_700_224.ocx, 1"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB6E-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="ShockwaveFlash.ShockwaveFlash"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}]
@Denied: (A 2) (Everyone)
@="Macromedia Flash Factory Object"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\InprocServer32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_7_700_224.ocx"
"ThreadingModel"="Apartment"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ProgID]
@="FlashFactory.FlashFactory.1"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\ToolboxBitmap32]
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_11_7_700_224.ocx, 1"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\TypeLib]
@="{D27CDB6B-AE6D-11cf-96B8-444553540000}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\Version]
@="1.0"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\CLSID\{D27CDB70-AE6D-11cf-96B8-444553540000}\VersionIndependentProgID]
@="FlashFactory.FlashFactory"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="IFlashBroker5"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Wow6432Node\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0001\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0002\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0003\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0004\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0005\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0006\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0007\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0008\AllUserSettings]
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
"BlindDial"=dword:00000000
.
[HKEY_LOCAL_MACHINE\system\ControlSet001\Control\PCW\Security]
@Denied: (Full) (Everyone)
.
Zeit der Fertigstellung: 2013-09-11  21:10:37
ComboFix-quarantined-files.txt  2013-09-11 19:10
ComboFix2.txt  2013-08-13 18:28
.
Vor Suchlauf: 20 Verzeichnis(se), 137.294.434.304 Bytes frei
Nach Suchlauf: 21 Verzeichnis(se), 137.038.753.792 Bytes frei
.
- - End Of File - - E9622848D0AE73C038B813EE489E0799
         
__________________

Alt 12.09.2013, 09:42   #4
schrauber
/// the machine
/// TB-Ausbilder
 

Trojaner TR/Fakeadb.A - Standard

Trojaner TR/Fakeadb.A



Downloade Dir bitte Malwarebytes Anti-Malware
  • Installiere das Programm in den vorgegebenen Pfad. (Bebilderte Anleitung zu MBAM)
  • Starte Malwarebytes' Anti-Malware (MBAM).
  • Klicke im Anschluss auf Scannen, wähle den Bedrohungssuchlauf aus und klicke auf Suchlauf starten.
  • Lass am Ende des Suchlaufs alle Funde (falls vorhanden) in die Quarantäne verschieben. Klicke dazu auf Auswahl entfernen.
  • Lass deinen Rechner ggf. neu starten, um die Bereinigung abzuschließen.
  • Starte MBAM, klicke auf Verlauf und dann auf Anwendungsprotokolle.
  • Wähle das neueste Scan-Protokoll aus und klicke auf Export. Wähle Textdatei (.txt) aus und speichere die Datei als mbam.txt auf dem Desktop ab. Das Logfile von MBAM findest du hier.
  • Füge den Inhalt der mbam.txt mit deiner nächsten Antwort hinzu.


Downloade Dir bitte AdwCleaner Logo Icon AdwCleaner auf deinen Desktop.
  • Schließe alle offenen Programme und Browser. Bebilderte Anleitung zu AdwCleaner.
  • Starte die AdwCleaner.exe mit einem Doppelklick.
  • Stimme den Nutzungsbedingungen zu.
  • Klicke auf Optionen und vergewissere dich, dass die folgenden Punkte ausgewählt sind:
    • "Tracing" Schlüssel löschen
    • Winsock Einstellungen zurücksetzen
    • Proxy Einstellungen zurücksetzen
    • Internet Explorer Richtlinien zurücksetzen
    • Chrome Richtlinien zurücksetzen
    • Stelle sicher, dass alle 5 Optionen wie hier dargestellt, ausgewählt sind
  • Klicke auf Suchlauf und warte bis dieser abgeschlossen ist.
  • Klicke nun auf Löschen und bestätige auftretende Hinweise mit Ok.
  • Dein Rechner wird automatisch neu gestartet. Nach dem Neustart öffnet sich eine Textdatei. Poste mir deren Inhalt mit deiner nächsten Antwort.
  • Die Logdatei findest du auch unter C:\AdwCleaner\AdwCleaner[Cx].txt. (x = fortlaufende Nummer).

Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
Bitte lade Junkware Removal Tool auf Deinen Desktop

  • Starte das Tool mit Doppelklick. Ab Windows Vista (oder höher) bitte mit Rechtsklick "als Administrator ausführen" starten.
  • Drücke eine beliebige Taste, um das Tool zu starten.
  • Je nach System kann der Scan eine Weile dauern.
  • Wenn das Tool fertig ist wird das Logfile (JRT.txt) auf dem Desktop gespeichert und automatisch geöffnet.
  • Bitte poste den Inhalt der JRT.txt in Deiner nächsten Antwort.


und ein frisches FRST log bitte.
__________________
gruß,
schrauber

Proud Member of UNITE and ASAP since 2009

Spenden
Anleitungen und Hilfestellungen
Trojaner-Board Facebook-Seite

Keine Hilfestellung via PM!

Alt 12.09.2013, 19:27   #5
k.karl
 
Trojaner TR/Fakeadb.A - Standard

Trojaner TR/Fakeadb.A



Code:
ATTFilter
Malwarebytes Anti-Malware 1.75.0.1300
www.malwarebytes.org

Datenbank Version: v2013.09.12.09

Windows 7 x64 NTFS
Internet Explorer 8.0.7600.16385
xxx :: xxx-HP [Administrator]

12.09.2013 19:53:10
mbam-log-2013-09-12 (19-53-10).txt

Art des Suchlaufs: Quick-Scan
Aktivierte Suchlaufeinstellungen: Speicher | Autostart | Registrierung | Dateisystem | Heuristiks/Extra | HeuristiKs/Shuriken | PUP | PUM
Deaktivierte Suchlaufeinstellungen: P2P
Durchsuchte Objekte: 251983
Laufzeit: 7 Minute(n), 7 Sekunde(n)

Infizierte Speicherprozesse: 0
(Keine bösartigen Objekte gefunden)

Infizierte Speichermodule: 0
(Keine bösartigen Objekte gefunden)

Infizierte Registrierungsschlüssel: 12
HKCR\AppID\{C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3} (PUP.Optional.Delta.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
HKCR\CLSID\{261DD098-8A3E-43D4-87AA-63324FA897D8} (PUP.Optional.Delta) -> Erfolgreich gelöscht und in Quarantäne gestellt.
HKCR\CLSID\{82E1477C-B154-48D3-9891-33D83C26BCD3} (PUP.Optional.Delta.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
HKCR\CLSID\{C1AF5FA5-852C-4C90-812E-A7F75E011D87} (PUP.Optional.Delta.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C1AF5FA5-852C-4C90-812E-A7F75E011D87} (PUP.Optional.Delta.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
HKCR\Typelib\{4599D05A-D545-4069-BB42-5895B4EAE05B} (PUP.Optional.Delta.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
HKCR\Interface\{1231839B-064E-4788-B865-465A1B5266FD} (PUP.Optional.Delta.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{348C2DF3-1191-4C3E-92A6-B3A89A9D9C85} (PUP.Optional.Delta.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
HKCU\SOFTWARE\DELTA\DELTA (PUP.Optional.Delta.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
HKLM\SOFTWARE\Google\Chrome\Extensions\eooncjejnppfjjklapaamhcdmjbilmde (PUP.Optional.Delta.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Delta Chrome Toolbar (PUP.Optional.BabSolution.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\delta (PUP.Optional.Delta.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.

Infizierte Registrierungswerte: 3
HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar|{82E1477C-B154-48D3-9891-33D83C26BCD3} (PUP.Optional.Delta.A) -> Daten: Delta Toolbar -> Erfolgreich gelöscht und in Quarantäne gestellt.
HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar\{82E1477C-B154-48D3-9891-33D83C26BCD3} (PUP.Optional.Delta.A) -> Daten:  -> Erfolgreich gelöscht und in Quarantäne gestellt.
HKCU\SOFTWARE\Delta\Delta|tlbrSrchUrl (PUP.Optional.Delta.A) -> Daten:  -> Erfolgreich gelöscht und in Quarantäne gestellt.

Infizierte Dateiobjekte der Registrierung: 1
HKCU\SOFTWARE\Microsoft\Internet Explorer\Main|Start Page (PUP.Optional.StartPage) -> Bösartig: (hxxp://www2.delta-search.com/?babsrc=HP_ss&mntrId=525D5CAC4C6DE85E&affID=121564&tsp=4987) Gut: (hxxp://www.google.com) -> Erfolgreich ersetzt und in Quarantäne gestellt.

Infizierte Verzeichnisse: 10
C:\Users\xxx\AppData\Roaming\Babylon (PUP.Optional.Babylon.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
C:\Users\xxx\AppData\Roaming\Delta (PUP.Optional.Delta.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
C:\Users\xxx\AppData\Roaming\BabSolution (PUP.Optional.BabSolution.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
C:\Users\xxx\AppData\Roaming\BabSolution\CR (PUP.Optional.BabSolution.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
C:\Users\xxx\AppData\Roaming\BabSolution\Shared (PUP.Optional.BabSolution.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
C:\Program Files (x86)\Delta\delta\1.8.24.6 (PUP.Optional.Delta.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
C:\Program Files (x86)\Delta\delta\1.8.24.6\bh (PUP.Optional.Delta.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
C:\Users\xxx\AppData\Roaming\OpenCandy (PUP.Optional.OpenCandy) -> Erfolgreich gelöscht und in Quarantäne gestellt.
C:\Users\xxx\AppData\Roaming\OpenCandy\3B083452E0E04C1FA905B747E58D6A62 (PUP.Optional.OpenCandy) -> Erfolgreich gelöscht und in Quarantäne gestellt.
C:\Users\xxx\AppData\Roaming\OpenCandy\EA4AEA7A5F534FC9AB36A2352C7B2F86 (PUP.Optional.OpenCandy) -> Erfolgreich gelöscht und in Quarantäne gestellt.

Infizierte Dateien: 18
C:\Users\xxx\AppData\Roaming\BabSolution\Shared\BabMaint.exe (PUP.Optional.Babylon.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
C:\Users\xxx\AppData\Roaming\OpenCandy\3B083452E0E04C1FA905B747E58D6A62\DeltaTB.exe (PUP.Optional.Babylon.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
C:\Users\xxx\AppData\Roaming\OpenCandy\EA4AEA7A5F534FC9AB36A2352C7B2F86\LatestDLMgr.exe (PUP.Optional.OpenCandy.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
C:\Users\xxx\Desktop\FreeYouTubeToMP3Converter-3-.exe (PUP.Optional.OpenCandy) -> Erfolgreich gelöscht und in Quarantäne gestellt.
C:\Users\xxx\Downloads\SoftonicDownloader_fuer_free-youtube-to-mp3-converter(1).exe (PUP.Optional.Softonic) -> Erfolgreich gelöscht und in Quarantäne gestellt.
C:\Users\xxx\Downloads\SoftonicDownloader_fuer_free-youtube-to-mp3-converter.exe (PUP.Optional.Softonic) -> Erfolgreich gelöscht und in Quarantäne gestellt.
C:\Users\xxx\AppData\Roaming\Babylon\log_file.txt (PUP.Optional.Babylon.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
C:\Users\xxx\AppData\Roaming\Delta\sqlite3.dll (PUP.Optional.Delta.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
C:\Users\xxx\AppData\Roaming\BabSolution\CR\Delta.crx (PUP.Optional.BabSolution.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
C:\Users\xxx\AppData\Roaming\BabSolution\Shared\BUSolution.dll (PUP.Optional.BabSolution.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
C:\Users\xxx\AppData\Roaming\BabSolution\Shared\chu.js (PUP.Optional.BabSolution.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
C:\Users\xxx\AppData\Roaming\BabSolution\Shared\Delta.ico (PUP.Optional.BabSolution.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
C:\Users\xxx\AppData\Roaming\BabSolution\Shared\enhancedNT.dll (PUP.Optional.BabSolution.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
C:\Users\xxx\AppData\Roaming\BabSolution\Shared\GUninstaller.exe (PUP.Optional.BabSolution.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
C:\Users\xxx\AppData\Roaming\BabSolution\Shared\SetupParams.ini (PUP.Optional.BabSolution.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
C:\Users\xxx\AppData\Roaming\BabSolution\Shared\sqlite3.dll (PUP.Optional.BabSolution.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
C:\Program Files (x86)\Delta\delta\1.8.24.6\GUninstaller.exe (PUP.Optional.Delta.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.
C:\Program Files (x86)\Delta\delta\1.8.24.6\uninstall.exe (PUP.Optional.Delta.A) -> Erfolgreich gelöscht und in Quarantäne gestellt.

(Ende)
         

Code:
ATTFilter
# AdwCleaner v3.003 - Bericht erstellt am 12/09/2013 um 20:08:42
# Updated 07/09/2013 von Xplode
# Betriebssystem : Windows 7 Home Premium  (64 bits)
# Benutzername : xxx - xxx-HP
# Gestartet von : C:\Users\xxx\Desktop\adwcleaner.exe
# Option : Löschen

***** [ Dienste ] *****


***** [ Dateien / Ordner ] *****

Ordner Gelöscht : C:\ProgramData\Babylon
Ordner Gelöscht : C:\Program Files (x86)\delta
Ordner Gelöscht : C:\Users\xxx\AppData\Roaming\dvdvideosoftiehelpers
Ordner Gelöscht : C:\Users\xxx\AppData\Roaming\Mozilla\Firefox\Profiles\l3x2e4p1.default\Extensions\ffxtlbr@delta.com
Datei Gelöscht : C:\Windows\System32\roboot64.exe
Datei Gelöscht : C:\Users\xxx\AppData\Roaming\Mozilla\Firefox\Profiles\l3x2e4p1.default\user.js
Datei Gelöscht : C:\Windows\System32\Tasks\EPUpdater

***** [ Verknüpfungen ] *****


***** [ Registrierungsdatenbank ] *****

Wert Gelöscht : HKLM\SOFTWARE\Mozilla\Firefox\Extensions [{ACAA314B-EEBA-48E4-AD47-84E31C44796C}]
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\escort.DLL
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\escortApp.DLL
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\escortEng.DLL
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\escorTlbr.DLL
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\esrv.EXE
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\delta.deltaappCore
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\delta.deltaappCore.1
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\escort.escortIEPane
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\escort.escortIEPane.1
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Prod.cap
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{09C554C3-109B-483C-A06B-F14172F1A947}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{39CB8175-E224-4446-8746-00566302DF8D}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{4E1E9D45-8BF9-4139-915C-9F83CC3D5921}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{B12E99ED-69BD-437C-86BE-C862B9E5444D}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{D7EE8177-D51E-4F89-92B6-83EA2EC40800}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{4FCB4630-2A1C-4AA1-B422-345E8DC8A6DE}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{86838207-681D-469D-9511-D0DCC6F19F9B}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{E97A663B-81A6-49C5-A6D3-BCB05BA1DE26}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{2DAC2231-CC35-482B-97C5-CED1D4185080}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{3F1CD84C-04A3-4EA0-9EA1-7D134FD66C82}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{3F83A9CA-B5F0-44EC-9357-35BB3E84B07F}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{47E520EA-CAD2-4F51-8F30-613B3A1C33EB}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{57C91446-8D81-4156-A70E-624551442DE9}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{70AFB7B2-9FB5-4A70-905B-0E9576142E1D}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{7AD65FD1-79E0-406D-B03C-DD7C14726D69}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{97DD820D-2E20-40AD-B01E-6730B2FCE630}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{B177446D-54A4-4869-BABC-8566110B4BE0}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{D9D1DFC5-502D-43E4-B1BB-4D0B7841489A}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{E0B07188-A528-4F9E-B2F7-C7FDE8680AE4}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{F05B12E1-ADE8-4485-B45B-898748B53C37}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{D7EE8177-D51E-4F89-92B6-83EA2EC40800}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4D79-A620-CCE0C0A66CC9}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\CLSID\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6}
Schlüssel Gelöscht : HKCU\Software\Delta
Schlüssel Gelöscht : HKCU\Software\Softonic
Schlüssel Gelöscht : HKLM\Software\Delta

***** [ Browser ] *****

-\\ Internet Explorer v8.0.7600.17267

Einstellung Wiederhergestellt : HKLM\SOFTWARE\Microsoft\Internet Explorer\AboutURls [Tabs]

-\\ Mozilla Firefox v23.0.1 (de)

[ Datei : C:\Users\xxx\AppData\Roaming\Mozilla\Firefox\Profiles\l3x2e4p1.default\prefs.js ]

Zeile gelöscht : user_pref("browser.newtab.url", "hxxp://www2.delta-search.com/?babsrc=NT_ss&mntrId=525D5CAC4C6DE85E&affID=121564&tsp=4987");
Zeile gelöscht : user_pref("extensions.delta.admin", false);
Zeile gelöscht : user_pref("extensions.delta.aflt", "babsst");
Zeile gelöscht : user_pref("extensions.delta.appId", "{C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3}");
Zeile gelöscht : user_pref("extensions.delta.autoRvrt", "false");
Zeile gelöscht : user_pref("extensions.delta.dfltLng", "de");
Zeile gelöscht : user_pref("extensions.delta.excTlbr", false);
Zeile gelöscht : user_pref("extensions.delta.ffxUnstlRst", true);
Zeile gelöscht : user_pref("extensions.delta.id", "525dc6650000000000005cac4c6de85e");
Zeile gelöscht : user_pref("extensions.delta.instlDay", "15944");
Zeile gelöscht : user_pref("extensions.delta.instlRef", "sst");
Zeile gelöscht : user_pref("extensions.delta.newTab", false);
Zeile gelöscht : user_pref("extensions.delta.prdct", "delta");
Zeile gelöscht : user_pref("extensions.delta.prtnrId", "delta");
Zeile gelöscht : user_pref("extensions.delta.rvrt", "false");
Zeile gelöscht : user_pref("extensions.delta.smplGrp", "none");
Zeile gelöscht : user_pref("extensions.delta.tlbrId", "base");
Zeile gelöscht : user_pref("extensions.delta.tlbrSrchUrl", "");
Zeile gelöscht : user_pref("extensions.delta.vrsn", "1.8.24.6");
Zeile gelöscht : user_pref("extensions.delta.vrsnTs", "1.8.24.69:19:33");
Zeile gelöscht : user_pref("extensions.delta.vrsni", "1.8.24.6");
Zeile gelöscht : user_pref("extensions.delta_i.babExt", "");
Zeile gelöscht : user_pref("extensions.delta_i.babTrack", "affID=121564&tsp=4987");
Zeile gelöscht : user_pref("extensions.delta_i.srcExt", "ss");

-\\ Google Chrome v

[ Datei : C:\Users\xxx\AppData\Local\Google\Chrome\User Data\Default\preferences ]


*************************

AdwCleaner[R0].txt - [7225 octets] - [12/09/2013 20:07:39]
AdwCleaner[S0].txt - [6841 octets] - [12/09/2013 20:08:42]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [6901 octets] ##########
         

Code:
ATTFilter
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.0.0 (09.12.2013:1)
OS: Windows 7 Home Premium x64
Ran by xxx on 12.09.2013 at 20:13:54,94
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




~~~ Services



~~~ Registry Values



~~~ Registry Keys

Successfully deleted: [Registry Key] HKEY_CLASSES_ROOT\Interface\{2CE4D4CF-B278-4126-AD1E-B622DA2E8339}
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\InternetRegistry\REGISTRY\USER\S-1-5-21-4138529036-2260153085-4193991026-1000\Software\SweetIM



~~~ Files



~~~ Folders



~~~ FireFox

Emptied folder: C:\Users\xxx\AppData\Roaming\mozilla\firefox\profiles\l3x2e4p1.default\minidumps [42 files]



~~~ Event Viewer Logs were cleared





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 12.09.2013 at 20:20:35,67
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
         


FRST Logfile:
Code:
ATTFilter
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 11-09-2013 02
Ran by xxx (administrator) on xxx-HP on 12-09-2013 20:23:22
Running from C:\Users\xxx\Desktop
Windows 7 Home Premium (X64) OS Language: German Standard
Internet Explorer Version 8
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(AMD) C:\Windows\system32\atiesrxx.exe
(IDT, Inc.) C:\Program Files\IDT\WDM\STacSV64.exe
(Hewlett-Packard Company) C:\Windows\system32\Hpservice.exe
(AMD) C:\Windows\system32\atieclxx.exe
(Microsoft Corporation) C:\Windows\system32\WLANExt.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
(Andrea Electronics Corporation) C:\Program Files\IDT\WDM\AESTSr64.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
(Microsoft Corporation.) C:\Program Files (x86)\Microsoft\BingBar\7.2.241.0\BBSvc.exe
(EasyBits Software AS) C:\Windows\SysWOW64\ezSharedSvcHost.exe
(FirebirdSQL Project) C:\Program Files (x86)\Firebird\Firebird_2_0\bin\fbguard.exe
(Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version7\TeamViewer_Service.exe
() C:\Program Files (x86)\Tor\tor.exe
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(IDT, Inc.) C:\Program Files\IDT\WDM\sttray64.exe
() C:\Program Files (x86)\RocketDock\RocketDock.exe
(Jumping Bytes) C:\Program Files (x86)\PureSync\PureSyncTray.exe
(Google Inc.) C:\Users\xxx\AppData\Local\Programs\Google\MusicManager\MusicManager.exe
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
(Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avmailc.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\AVWEBGRD.EXE
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
(FirebirdSQL Project) C:\Program Files (x86)\Firebird\Firebird_2_0\bin\fbserver.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Hewlett-Packard Company) C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Main.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe
(Hewlett-Packard Company) C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Microsoft Corporation.) C:\Program Files (x86)\Microsoft\BingBar\7.2.241.0\SeaPort.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_8_800_94.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_8_800_94.exe

==================== Registry (Whitelisted) ==================

HKLM\...\Run: [HotKeysCmds] - C:\Windows\system32\hkcmd.exe [ ] ()
HKLM\...\Run: [SynTPEnh] - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2480936 2010-12-17] (Synaptics Incorporated)
HKLM\...\Run: [SysTrayApp] - C:\Program Files\IDT\WDM\sttray64.exe [487424 2010-06-18] (IDT, Inc.)
HKLM\...\Run: [HPWirelessAssistant] - C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Main.exe [363064 2010-06-18] (Hewlett-Packard Company)
HKLM\...\Policies\Explorer: [EnableShellExecuteHooks] 1
HKLM\...\Policies\Explorer: [HideSCAHealth] 1
HKCU\...\Run: [RocketDock] - C:\Program Files (x86)\RocketDock\RocketDock.exe [495616 2007-09-02] ()
HKCU\...\Run: [PureSync] - C:\Program Files (x86)\PureSync\PureSyncTray.exe [907808 2013-04-29] (Jumping Bytes)
HKCU\...\Run: [MusicManager] - C:\Users\xxx\AppData\Local\Programs\Google\MusicManager\MusicManager.exe [7345664 2013-06-21] (Google Inc.)
HKCU\...\Policies\system: [DisableLockWorkstation] 0
HKCU\...\Policies\system: [DisableChangePassword] 0
HKLM-x32\...\Run: [GrooveMonitor] - C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation)
HKLM-x32\...\Run: [HP Quick Launch] - C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe [578944 2012-03-05] (Hewlett-Packard Development Company, L.P.)
HKLM-x32\...\Run: [avgnt] - C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [347192 2013-08-20] (Avira Operations GmbH & Co. KG)
HKU\Default\...\Run: [HPAdvisorDock] - C:\Program Files (x86)\Hewlett-Packard\HP Advisor\DOCK\HPAdvisorDock.exe [1712184 2010-02-09] ()

==================== Internet (Whitelisted) ====================

HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://g.uk.msn.com/HPNOT/4
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://g.uk.msn.com/HPNOT/4
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://g.uk.msn.com/HPNOT/4
StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe
SearchScopes: HKLM - DefaultScope value is missing.
SearchScopes: HKLM - {452CC30F-3D62-48E2-A5A8-B3172A3E0C1F} URL = hxxp://de.search.yahoo.com/search?p={searchTerms}&ei={inputEncoding}&fr=chr-hp-psg&type=HPNTDF
SearchScopes: HKLM - {D866DD77-F8CC-4D3E-93C9-3F4D89EAE252} URL = hxxp://de.wikipedia.org/wiki/Special:Search?search={searchTerms}
SearchScopes: HKLM-x32 - {452CC30F-3D62-48E2-A5A8-B3172A3E0C1F} URL = hxxp://de.search.yahoo.com/search?p={searchTerms}&ei={inputEncoding}&fr=chr-hp-psg&type=HPNTDF
SearchScopes: HKCU - {452CC30F-3D62-48E2-A5A8-B3172A3E0C1F} URL = hxxp://de.search.yahoo.com/search?p={searchTerms}&ei={inputEncoding}&fr=chr-hp-psg&type=HPNTDF
BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll No File
BHO-x32: No Name - {5C255C8A-E604-49b4-9D64-90988571CECB} -  No File
BHO-x32: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation)
BHO-x32: Bing Bar Helper - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files (x86)\Microsoft\BingBar\7.2.241.0\BingExt.dll (Microsoft Corporation.)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll (Hewlett-Packard)
Toolbar: HKLM-x32 - Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files (x86)\Microsoft\BingBar\7.2.241.0\BingExt.dll (Microsoft Corporation.)
DPF: HKLM-x32 {6E718D87-6909-4FCE-92D4-EDCB2F725727} hxxp://www.navigram.com/engine/v1026/Navigram.cab
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} -  No File
Handler-x32: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.14.0.8117.0416.dll (Microsoft Corporation)
Handler-x32: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.14.0.8117.0416.dll (Microsoft Corporation)
Handler-x32: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
ShellExecuteHooks-x32:  - UPB:{B5A7F190-DDA6-4420-B3BA-52453494E6CD} -  No File [ ]
Tcpip\Parameters: [DhcpNameServer] 213.153.32.129 213.153.32.1

FireFox:
========
FF ProfilePath: C:\Users\xxx\AppData\Roaming\Mozilla\Firefox\Profiles\l3x2e4p1.default
FF Homepage: hxxp://www.google.at/ig
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_8_800_94.dll ()
FF Plugin: @microsoft.com/GENUINE - disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.20513.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: adobe.com/AdobeAAMDetect - C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll No File
FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_8_800_94.dll ()
FF Plugin-x32: @adobe.com/ShockwavePlayer - C:\Windows\SysWOW64\Adobe\Director\np32dsw_1200112.dll (Adobe Systems, Inc.)
FF Plugin-x32: @Google.com/GoogleEarthPlugin - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF Plugin-x32: @java.com/DTPlugin,version=10.25.2 - C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.25.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE - disabled No File
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.20513.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeLive,version=1.5 - C:\Program Files (x86)\Microsoft\Office Live\npOLW.dll (Microsoft Corp.)
FF Plugin-x32: @microsoft.com/WLPG,version=14.0.8117.0416 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKCU: @tools.google.com/Google Update;version=3 - C:\Users\xxx\AppData\Local\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.)
FF Plugin HKCU: @tools.google.com/Google Update;version=9 - C:\Users\xxx\AppData\Local\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.)
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml
FF Extension: LavaFox V2 - C:\Users\xxx\AppData\Roaming\Mozilla\Firefox\Profiles\l3x2e4p1.default\Extensions\info@djzig.com
FF Extension: NASA Night Launch - C:\Users\xxx\AppData\Roaming\Mozilla\Firefox\Profiles\l3x2e4p1.default\Extensions\nasanightlaunch@example(2).com
FF Extension: NASA Night Launch - C:\Users\xxx\AppData\Roaming\Mozilla\Firefox\Profiles\l3x2e4p1.default\Extensions\nasanightlaunch@example(3).com
FF Extension: IE Tab 2 (FF 3.6+) - C:\Users\xxx\AppData\Roaming\Mozilla\Firefox\Profiles\l3x2e4p1.default\Extensions\{1BC9BA34-1EED-42ca-A505-6D2F1A935BBB}
FF Extension: Flashblock - C:\Users\xxx\AppData\Roaming\Mozilla\Firefox\Profiles\l3x2e4p1.default\Extensions\{3d7eb24f-2740-49df-8937-200b1cc08f8a}
FF Extension: No Name - C:\Users\xxx\AppData\Roaming\Mozilla\Firefox\Profiles\l3x2e4p1.default\Extensions\{5B52016C-D097-4aec-BE61-9F129D8FDDBA}
FF Extension: Black Steel - C:\Users\xxx\AppData\Roaming\Mozilla\Firefox\Profiles\l3x2e4p1.default\Extensions\{e2c58150-9d72-11dd-ad8b-0800200c9a66}(2)
FF Extension: nasanightlaunch - C:\Users\xxx\AppData\Roaming\Mozilla\Firefox\Profiles\l3x2e4p1.default\Extensions\nasanightlaunch@example.com.xpi
FF Extension: No Name - C:\Users\xxx\AppData\Roaming\Mozilla\Firefox\Profiles\l3x2e4p1.default\Extensions\{46551EC9-40F0-4e47-8E18-8E5CF550CFB8}.xpi
FF Extension: No Name - C:\Users\xxx\AppData\Roaming\Mozilla\Firefox\Profiles\l3x2e4p1.default\Extensions\{ACAA314B-EEBA-48e4-AD47-84E31C44796C}.xpi
FF Extension: No Name - C:\Users\xxx\AppData\Roaming\Mozilla\Firefox\Profiles\l3x2e4p1.default\Extensions\{ef4e370e-d9f0-4e00-b93e-a4f274cfdd5a}.xpi
FF Extension: Skype Click to Call - C:\Program Files (x86)\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}

Chrome: 
=======
CHR HomePage: hxxp://www.google.com

==================== Services (Whitelisted) =================

R2 AntiVirMailService; C:\Program Files (x86)\Avira\AntiVir Desktop\avmailc.exe [622648 2013-09-03] (Avira Operations GmbH & Co. KG)
R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [84024 2013-08-20] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [108088 2013-08-20] (Avira Operations GmbH & Co. KG)
R2 AntiVirWebService; C:\Program Files (x86)\Avira\AntiVir Desktop\AVWEBGRD.EXE [815160 2013-08-20] (Avira Operations GmbH & Co. KG)
R2 FirebirdGuardianDefaultInstance; C:\Program Files (x86)\Firebird\Firebird_2_0\bin\fbguard.exe [77824 2006-10-31] (FirebirdSQL Project)
R3 FirebirdServerDefaultInstance; C:\Program Files (x86)\Firebird\Firebird_2_0\bin\fbserver.exe [1990656 2006-10-31] (FirebirdSQL Project)
R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376 2013-04-04] (Malwarebytes Corporation)
R2 MBAMService; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [701512 2013-04-04] (Malwarebytes Corporation)
S4 NOBU; C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe [2804568 2010-06-01] (Symantec Corporation)
R2 tor; C:\Program Files (x86)\Tor\tor.exe [3233806 2013-09-03] ()
S2 AviraUpgradeService; "C:\Windows\TEMP\AVSETUP_520a7452\avupgsvc.exe" /TEMPSTART:""C:\Windows\TEMP\AVSETUP_520a7452\setup.exe" /NOTEMPCLEANUP /CROSSUPGRADE"

==================== Drivers (Whitelisted) ====================

R2 atksgt; C:\Windows\System32\DRIVERS\atksgt.sys [314016 2011-10-03] ()
R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [105344 2013-09-03] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [132088 2013-08-20] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [28600 2013-08-14] (Avira Operations GmbH & Co. KG)
S3 hwusbdev; C:\Windows\System32\DRIVERS\ewusbdev.sys [114560 2011-01-07] (Huawei Technologies Co., Ltd.)
R2 lirsgt; C:\Windows\System32\DRIVERS\lirsgt.sys [43680 2011-10-03] ()
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation)
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation)
U5 AppMgmt; C:\Windows\system32\svchost.exe [27136 2009-07-14] (Microsoft Corporation)
S3 catchme; \??\C:\ComboFix\catchme.sys [x]

==================== NetSvcs (Whitelisted) ===================


==================== One Month Created Files and Folders ========

2013-09-12 20:20 - 2013-09-12 20:20 - 00001058 _____ C:\Users\xxx\Desktop\JRT.txt
2013-09-12 20:12 - 2013-09-12 20:12 - 01029509 _____ (Thisisu) C:\Users\xxx\Desktop\JRT.exe
2013-09-12 20:10 - 2013-09-12 20:10 - 00006989 _____ C:\Users\xxx\Desktop\AdwCleaner[S0].txt
2013-09-12 20:06 - 2013-09-12 20:08 - 00000000 ____D C:\AdwCleaner
2013-09-12 20:05 - 2013-09-12 20:05 - 01037278 _____ C:\Users\xxx\Desktop\adwcleaner.exe
2013-09-12 19:50 - 2013-09-12 19:50 - 00001113 _____ C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk
2013-09-12 19:50 - 2013-04-04 14:50 - 00025928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2013-09-12 19:48 - 2013-09-12 19:48 - 10285040 _____ (Malwarebytes Corporation                                    ) C:\Users\xxx\Downloads\mbam-setup-1.75.0.1300(1).exe
2013-09-12 19:47 - 2013-09-12 19:47 - 97373152 _____ C:\Windows\SysWOW64\腍ᴾ…
2013-09-11 21:10 - 2013-09-11 21:10 - 00026867 _____ C:\ComboFix.txt
2013-09-11 20:44 - 2013-09-11 20:45 - 05124599 ____R (Swearware) C:\Users\xxx\Desktop\ComboFix.exe
2013-09-10 22:19 - 2013-09-10 22:19 - 00000382 _____ C:\Users\xxx\Desktop\gmer.txt
2013-09-10 21:53 - 2013-09-10 21:53 - 00377856 _____ C:\Users\xxx\Desktop\gmer_2.1.19163.exe
2013-09-10 21:52 - 2013-09-10 21:52 - 00031480 _____ C:\Users\xxx\Desktop\FRST_1.txt
2013-09-03 16:59 - 2013-09-03 16:59 - 95638383 _____ C:\Windows\SysWOW64\鷻룭‚
2013-09-03 09:09 - 2013-09-03 09:09 - 00000000 ____D C:\Program Files (x86)\Tor
2013-08-27 09:19 - 2013-08-27 09:19 - 00001402 _____ C:\Users\Public\Desktop\Free YouTube to MP3 Converter.lnk
2013-08-27 09:19 - 2013-08-27 09:19 - 00001243 _____ C:\Users\Public\Desktop\DVDVideoSoft Free Studio.lnk
2013-08-20 10:41 - 2013-08-20 10:41 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2013-08-20 07:02 - 2013-08-20 07:02 - 00204568 _____ (DEVGURU Co., LTD.(www.devguru.co.kr)) C:\Windows\system32\Drivers\ssudmdm.sys
2013-08-20 07:02 - 2013-08-20 07:02 - 00103576 _____ (DEVGURU Co., LTD.(www.devguru.co.kr)) C:\Windows\system32\Drivers\ssudbus.sys
2013-08-15 22:02 - 2013-08-15 22:02 - 02347384 _____ (ESET) C:\Users\xxx\Downloads\esetsmartinstaller_enu.exe
2013-08-14 22:48 - 2013-08-20 10:45 - 00081112 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avnetflt.sys
2013-08-14 22:46 - 2013-08-14 22:46 - 00000000 ____D C:\Users\xxx\AppData\Roaming\Avira
2013-08-14 22:45 - 2013-09-03 11:15 - 00105344 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avgntflt.sys
2013-08-14 22:45 - 2013-08-20 10:45 - 00132088 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avipbb.sys
2013-08-14 22:45 - 2013-08-14 22:45 - 00002070 _____ C:\Users\Public\Desktop\Avira Control Center.lnk
2013-08-14 22:45 - 2013-08-14 22:45 - 00000000 ____D C:\Program Files (x86)\Avira
2013-08-14 22:45 - 2013-08-14 22:43 - 00028600 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avkmgr.sys
2013-08-14 22:40 - 2013-08-14 22:40 - 02083256 _____ C:\Users\xxx\Downloads\avira_antivirus_premium.exe
2013-08-14 20:30 - 2013-08-14 20:30 - 00000000 ____D C:\Windows\ERUNT
2013-08-14 20:22 - 2013-08-14 20:23 - 00006531 _____ C:\AdwCleaner[S1].txt
2013-08-14 20:09 - 2013-08-14 20:09 - 10285040 _____ (Malwarebytes Corporation                                    ) C:\Users\xxx\Downloads\mbam-setup-1.75.0.1300.exe
2013-08-13 20:07 - 2011-06-26 08:45 - 00256000 _____ C:\Windows\PEV.exe
2013-08-13 20:07 - 2010-11-07 19:20 - 00208896 _____ C:\Windows\MBR.exe
2013-08-13 20:07 - 2009-04-20 06:56 - 00060416 _____ (NirSoft) C:\Windows\NIRCMD.exe
2013-08-13 20:07 - 2000-08-31 02:00 - 00518144 _____ (SteelWerX) C:\Windows\SWREG.exe
2013-08-13 20:07 - 2000-08-31 02:00 - 00406528 _____ (SteelWerX) C:\Windows\SWSC.exe
2013-08-13 20:07 - 2000-08-31 02:00 - 00098816 _____ C:\Windows\sed.exe
2013-08-13 20:07 - 2000-08-31 02:00 - 00080412 _____ C:\Windows\grep.exe
2013-08-13 20:07 - 2000-08-31 02:00 - 00068096 _____ C:\Windows\zip.exe
2013-08-13 20:02 - 2013-09-11 21:11 - 00000000 ____D C:\Qoobox
2013-08-13 20:02 - 2013-08-13 20:26 - 00000000 ____D C:\Windows\erdnt
2013-08-13 00:56 - 2013-08-13 00:56 - 00278632 _____ C:\Windows\Minidump\081313-21715-01.dmp
2013-08-13 00:40 - 2013-08-13 00:40 - 00000000 ____D C:\FRST
2013-08-13 00:16 - 2013-08-15 21:04 - 00000000 ____D C:\Program Files (x86)\Mozilla Thunderbird

==================== One Month Modified Files and Folders =======

2013-09-12 20:22 - 2013-09-12 20:22 - 01949642 _____ (Farbar) C:\Users\xxx\Desktop\FRST64.exe
2013-09-12 20:20 - 2013-09-12 20:20 - 00001058 _____ C:\Users\xxx\Desktop\JRT.txt
2013-09-12 20:17 - 2009-07-14 06:45 - 00023248 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2013-09-12 20:17 - 2009-07-14 06:45 - 00023248 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2013-09-12 20:12 - 2013-09-12 20:12 - 01029509 _____ (Thisisu) C:\Users\xxx\Desktop\JRT.exe
2013-09-12 20:10 - 2013-09-12 20:10 - 00006989 _____ C:\Users\xxx\Desktop\AdwCleaner[S0].txt
2013-09-12 20:09 - 2012-12-31 16:32 - 00048170 _____ C:\Windows\setupact.log
2013-09-12 20:08 - 2013-09-12 20:06 - 00000000 ____D C:\AdwCleaner
2013-09-12 20:08 - 2010-08-19 01:43 - 01676130 _____ C:\Windows\WindowsUpdate.log
2013-09-12 20:05 - 2013-09-12 20:05 - 01037278 _____ C:\Users\xxx\Desktop\adwcleaner.exe
2013-09-12 20:02 - 2013-02-21 10:36 - 00298248 _____ C:\Windows\PFRO.log
2013-09-12 19:50 - 2013-09-12 19:50 - 00001113 _____ C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk
2013-09-12 19:50 - 2011-12-28 14:05 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware
2013-09-12 19:48 - 2013-09-12 19:48 - 10285040 _____ (Malwarebytes Corporation                                    ) C:\Users\xxx\Downloads\mbam-setup-1.75.0.1300(1).exe
2013-09-12 19:47 - 2013-09-12 19:47 - 97373152 _____ C:\Windows\SysWOW64\腍ᴾ…
2013-09-12 18:06 - 2010-12-31 19:27 - 00000000 ____D C:\Users\xxx\AppData\Roaming\Skype
2013-09-11 22:41 - 2010-12-31 16:40 - 00000000 ____D C:\ProgramData\Microsoft Help
2013-09-11 21:42 - 2013-07-27 23:13 - 00000000 ____D C:\Windows\system32\MRT
2013-09-11 21:41 - 2011-01-03 10:58 - 79143768 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2013-09-11 21:11 - 2013-08-13 20:02 - 00000000 ____D C:\Qoobox
2013-09-11 21:10 - 2013-09-11 21:10 - 00026867 _____ C:\ComboFix.txt
2013-09-11 21:00 - 2009-07-14 04:34 - 00000215 _____ C:\Windows\system.ini
2013-09-11 20:45 - 2013-09-11 20:44 - 05124599 ____R (Swearware) C:\Users\xxx\Desktop\ComboFix.exe
2013-09-10 22:19 - 2013-09-10 22:19 - 00000382 _____ C:\Users\xxx\Desktop\gmer.txt
2013-09-10 21:53 - 2013-09-10 21:53 - 00377856 _____ C:\Users\xxx\Desktop\gmer_2.1.19163.exe
2013-09-10 21:52 - 2013-09-10 21:52 - 00031480 _____ C:\Users\xxx\Desktop\FRST_1.txt
2013-09-10 21:45 - 2011-02-21 21:21 - 00001114 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2013-09-10 21:35 - 2013-04-28 22:15 - 00001132 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-4138529036-2260153085-4193991026-1000UA.job
2013-09-10 08:17 - 2011-02-21 21:21 - 00001110 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2013-09-10 08:17 - 2009-07-14 07:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2013-09-09 19:33 - 2011-11-05 15:33 - 00000000 _____ C:\Windows\system32\HP_ActiveX_Patch_NOT_DETECTED.txt
2013-09-09 19:33 - 2011-01-01 10:34 - 00000052 _____ C:\Windows\SysWOW64\DOErrors.log
2013-09-08 00:35 - 2013-04-28 22:15 - 00001080 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-4138529036-2260153085-4193991026-1000Core.job
2013-09-07 21:58 - 2011-07-24 19:10 - 00003204 _____ C:\Windows\System32\Tasks\HPCeeScheduleForxxx
2013-09-07 21:58 - 2011-07-24 19:10 - 00000344 _____ C:\Windows\Tasks\HPCeeScheduleForxxx.job
2013-09-07 15:14 - 2013-07-20 23:37 - 00000000 ____D C:\Users\xxx\AppData\Roaming\vlc
2013-09-03 16:59 - 2013-09-03 16:59 - 95638383 _____ C:\Windows\SysWOW64\鷻룭‚
2013-09-03 11:15 - 2013-08-14 22:45 - 00105344 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avgntflt.sys
2013-09-03 09:09 - 2013-09-03 09:09 - 00000000 ____D C:\Program Files (x86)\Tor
2013-09-02 17:33 - 2011-01-31 22:17 - 00000000 ____D C:\Users\xxx\AppData\Local\FreePDF_XP
2013-09-02 11:10 - 2011-01-13 20:29 - 00000000 ____D C:\Users\xxx\Documents\Haushalt
2013-08-29 15:26 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\NDF
2013-08-27 09:19 - 2013-08-27 09:19 - 00001402 _____ C:\Users\Public\Desktop\Free YouTube to MP3 Converter.lnk
2013-08-27 09:19 - 2013-08-27 09:19 - 00001243 _____ C:\Users\Public\Desktop\DVDVideoSoft Free Studio.lnk
2013-08-27 09:19 - 2011-01-09 18:11 - 00000000 ____D C:\Program Files (x86)\DVDVideoSoft
2013-08-27 09:18 - 2011-12-24 00:03 - 00000000 ____D C:\Users\xxx\AppData\Roaming\DVDVideoSoft
2013-08-23 20:17 - 2013-04-29 22:09 - 00000020 ____H C:\ProgramData\PKP_DLev.DAT
2013-08-22 08:08 - 2012-06-07 14:38 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2013-08-20 10:45 - 2013-08-14 22:48 - 00081112 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avnetflt.sys
2013-08-20 10:45 - 2013-08-14 22:45 - 00132088 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avipbb.sys
2013-08-20 10:41 - 2013-08-20 10:41 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2013-08-20 07:02 - 2013-08-20 07:02 - 00204568 _____ (DEVGURU Co., LTD.(www.devguru.co.kr)) C:\Windows\system32\Drivers\ssudmdm.sys
2013-08-20 07:02 - 2013-08-20 07:02 - 00103576 _____ (DEVGURU Co., LTD.(www.devguru.co.kr)) C:\Windows\system32\Drivers\ssudbus.sys
2013-08-19 09:41 - 2009-07-14 07:08 - 00032640 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2013-08-15 22:02 - 2013-08-15 22:02 - 02347384 _____ (ESET) C:\Users\xxx\Downloads\esetsmartinstaller_enu.exe
2013-08-15 21:04 - 2013-08-13 00:16 - 00000000 ____D C:\Program Files (x86)\Mozilla Thunderbird
2013-08-14 22:46 - 2013-08-14 22:46 - 00000000 ____D C:\Users\xxx\AppData\Roaming\Avira
2013-08-14 22:45 - 2013-08-14 22:45 - 00002070 _____ C:\Users\Public\Desktop\Avira Control Center.lnk
2013-08-14 22:45 - 2013-08-14 22:45 - 00000000 ____D C:\Program Files (x86)\Avira
2013-08-14 22:45 - 2010-12-31 17:10 - 00000000 ____D C:\ProgramData\Avira
2013-08-14 22:43 - 2013-08-14 22:45 - 00028600 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avkmgr.sys
2013-08-14 22:40 - 2013-08-14 22:40 - 02083256 _____ C:\Users\xxx\Downloads\avira_antivirus_premium.exe
2013-08-14 20:30 - 2013-08-14 20:30 - 00000000 ____D C:\Windows\ERUNT
2013-08-14 20:23 - 2013-08-14 20:22 - 00006531 _____ C:\AdwCleaner[S1].txt
2013-08-14 20:09 - 2013-08-14 20:09 - 10285040 _____ (Malwarebytes Corporation                                    ) C:\Users\xxx\Downloads\mbam-setup-1.75.0.1300.exe
2013-08-13 20:26 - 2013-08-13 20:02 - 00000000 ____D C:\Windows\erdnt
2013-08-13 00:56 - 2013-08-13 00:56 - 00278632 _____ C:\Windows\Minidump\081313-21715-01.dmp
2013-08-13 00:56 - 2012-11-16 14:05 - 00000000 ____D C:\Windows\Minidump
2013-08-13 00:55 - 2013-04-09 18:43 - 559255184 _____ C:\Windows\MEMORY.DMP
2013-08-13 00:40 - 2013-08-13 00:40 - 00000000 ____D C:\FRST
2013-08-13 00:07 - 2013-05-13 23:50 - 00000000 ____D C:\Program Files (x86)\MyFree Codec
2013-08-13 00:05 - 2011-10-02 22:47 - 00000000 ____D C:\Program Files (x86)\Ubisoft
2013-08-13 00:05 - 2010-07-21 10:19 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information

Files to move or delete:
====================
C:\ProgramData\PKP_DLdu.DAT
C:\ProgramData\PKP_DLeo.DAT
C:\ProgramData\PKP_DLes.DAT
C:\ProgramData\PKP_DLet.DAT
C:\ProgramData\PKP_DLev.DAT
C:\Users\xxx\AppData\Local\Temp\Quarantine.exe

==================== Bamital & volsnap Check =================

C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit


LastRegBack: 2013-09-01 10:40

==================== End Of Log ============================
         
--- --- ---


Alt 13.09.2013, 08:42   #6
schrauber
/// the machine
/// TB-Ausbilder
 

Trojaner TR/Fakeadb.A - Standard

Trojaner TR/Fakeadb.A




ESET Online Scanner

  • Hier findest du eine bebilderte Anleitung zu ESET Online Scanner
  • Lade und starte Eset Online Scanner
  • Setze einen Haken bei Ja, ich bin mit den Nutzungsbedingungen einverstanden und klicke auf Starten.
  • Aktiviere die "Erkennung von eventuell unerwünschten Anwendungen" und wähle folgende Einstellungen.
  • Klicke auf Starten.
  • Die Signaturen werden heruntergeladen, der Scan beginnt automatisch.
  • Klicke am Ende des Suchlaufs auf Fertig stellen.
  • Schließe das Fenster von ESET.
  • Explorer öffnen.
  • C:\Programme\Eset\EsetOnlineScanner\log.txt (bei 64 Bit auch C:\Programme (x86)\Eset\EsetOnlineScanner\log.txt) suchen und mit Deinem Editor öffnen (bebildert).
  • Logfile hier posten.
  • Deinstallation: Systemsteuerung => Software / Programme deinstallieren => Eset Online Scanner V3 entfernen.
  • Manuell folgenden Ordner löschen und Papierkorb leeren => C:\Programme\Eset


Downloade Dir bitte SecurityCheck und:

  • Speichere es auf dem Desktop.
  • Starte SecurityCheck.exe und folge den Anweisungen in der DOS-Box.
  • Wenn der Scan beendet wurde sollte sich ein Textdokument (checkup.txt) öffnen.
Poste den Inhalt bitte hier.

und ein frisches FRST log bitte. Noch Probleme?
__________________
--> Trojaner TR/Fakeadb.A

Alt 13.09.2013, 19:08   #7
k.karl
 
Trojaner TR/Fakeadb.A - Standard

Trojaner TR/Fakeadb.A



sieht nicht gut aus......

Code:
ATTFilter
ESETSmartInstaller@High as downloader log:
all ok
# version=8
# OnlineScannerApp.exe=1.0.0.1
# OnlineScanner.ocx=1.0.0.6920
# api_version=3.0.2
# EOSSerial=a8a1586d35a27b469cfa0007cd6aa1d9
# engine=15115
# end=finished
# remove_checked=false
# archives_checked=true
# unwanted_checked=false
# unsafe_checked=false
# antistealth_checked=true
# utc_time=2013-09-13 05:35:22
# local_time=2013-09-13 07:35:22 (+0100, Mitteleuropäische Sommerzeit)
# country="Austria"
# lang=1033
# osver=6.1.7600 NT 
# compatibility_mode=5893 16776638 100 94 2581052 130723572 0 0
# scanned=276006
# found=2
# cleaned=0
# scan_time=7975
sh=60E3E4227497AD83885E859903CB98D769ED9B9C ft=1 fh=c71c0011e1c26d8e vn="Win32/Agent.PBI trojan" ac=I fn="C:\Windows\System32\config\systemprofile\AppData\Local\Windows Internet Name Service\wins.exe"
sh=60E3E4227497AD83885E859903CB98D769ED9B9C ft=1 fh=c71c0011e1c26d8e vn="Win32/Agent.PBI trojan" ac=I fn="C:\Windows\SysWOW64\config\systemprofile\AppData\Local\Windows Internet Name Service\wins.exe"
         

Code:
ATTFilter
 Results of screen317's Security Check version 0.99.73  
 Windows 7  x64 (UAC is enabled)  
 Out of date service pack!! 
``````````````Antivirus/Firewall Check:`````````````` 
Avira Desktop   
 Antivirus up to date!  (On Access scanning disabled!) 
`````````Anti-malware/Other Utilities Check:````````` 
 SpywareBlaster 5.0    
 Secunia PSI (3.0.0.7011)   
 Malwarebytes Anti-Malware Version 1.75.0.1300  
 Java 7 Update 25  
 Adobe Flash Player 11.8.800.94  
 Adobe Reader XI  
 Mozilla Firefox (23.0.1) 
````````Process Check: objlist.exe by Laurent````````  
 Malwarebytes Anti-Malware mbamservice.exe  
 Malwarebytes Anti-Malware mbamgui.exe  
 Avira Antivir avgnt.exe 
 Avira Antivir avguard.exe 
 Malwarebytes' Anti-Malware mbamscheduler.exe   
`````````````````System Health check````````````````` 
 Total Fragmentation on Drive C:  
````````````````````End of Log``````````````````````
         


FRST Logfile:
Code:
ATTFilter
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 11-09-2013 02
Ran by xxx (administrator) on xxx-HP on 13-09-2013 19:54:31
Running from C:\Users\xxx\Desktop
Windows 7 Home Premium (X64) OS Language: German Standard
Internet Explorer Version 8
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(AMD) C:\Windows\system32\atiesrxx.exe
(IDT, Inc.) C:\Program Files\IDT\WDM\STacSV64.exe
(Hewlett-Packard Company) C:\Windows\system32\Hpservice.exe
(AMD) C:\Windows\system32\atieclxx.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
(Andrea Electronics Corporation) C:\Program Files\IDT\WDM\AESTSr64.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
(EasyBits Software AS) C:\Windows\SysWOW64\ezSharedSvcHost.exe
(Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe
(Malwarebytes Corporation) C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Secunia) C:\Program Files (x86)\Secunia\PSI\sua.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version7\TeamViewer_Service.exe
() C:\Program Files (x86)\Tor\tor.exe
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(IDT, Inc.) C:\Program Files\IDT\WDM\sttray64.exe
() C:\Program Files (x86)\RocketDock\RocketDock.exe
(Jumping Bytes) C:\Program Files (x86)\PureSync\PureSyncTray.exe
(Google Inc.) C:\Users\xxx\AppData\Local\Programs\Google\MusicManager\MusicManager.exe
(Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe
(Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avmailc.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\AVWEBGRD.EXE
(Synaptics Incorporated) C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
(Hewlett-Packard Company) C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Main.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe
(Hewlett-Packard Company) C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Microsoft Corporation.) C:\Program Files (x86)\Microsoft\BingBar\7.2.241.0\SeaPort.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_8_800_94.exe
(Adobe Systems, Inc.) C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerPlugin_11_8_800_94.exe

==================== Registry (Whitelisted) ==================

HKLM\...\Run: [HotKeysCmds] - C:\Windows\system32\hkcmd.exe [ ] ()
HKLM\...\Run: [SynTPEnh] - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2837288 2011-10-14] (Synaptics Incorporated)
HKLM\...\Run: [SysTrayApp] - C:\Program Files\IDT\WDM\sttray64.exe [487424 2010-06-18] (IDT, Inc.)
HKLM\...\Run: [HPWirelessAssistant] - C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Main.exe [363064 2010-06-18] (Hewlett-Packard Company)
HKLM\...\Policies\Explorer: [EnableShellExecuteHooks] 1
HKLM\...\Policies\Explorer: [HideSCAHealth] 1
HKCU\...\Run: [RocketDock] - C:\Program Files (x86)\RocketDock\RocketDock.exe [495616 2007-09-02] ()
HKCU\...\Run: [PureSync] - C:\Program Files (x86)\PureSync\PureSyncTray.exe [907808 2013-04-29] (Jumping Bytes)
HKCU\...\Run: [MusicManager] - C:\Users\xxx\AppData\Local\Programs\Google\MusicManager\MusicManager.exe [7345664 2013-06-21] (Google Inc.)
HKCU\...\Policies\system: [DisableLockWorkstation] 0
HKCU\...\Policies\system: [DisableChangePassword] 0
HKLM-x32\...\Run: [GrooveMonitor] - C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation)
HKLM-x32\...\Run: [HP Quick Launch] - C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPMSGSVC.exe [578944 2012-03-05] (Hewlett-Packard Development Company, L.P.)
HKLM-x32\...\Run: [avgnt] - C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [347192 2013-08-20] (Avira Operations GmbH & Co. KG)
HKLM-x32\...\Run: [Adobe ARM] - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated)
HKU\Default\...\Run: [HPAdvisorDock] - C:\Program Files (x86)\Hewlett-Packard\HP Advisor\DOCK\HPAdvisorDock.exe [1712184 2010-02-09] ()

==================== Internet (Whitelisted) ====================

HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://g.uk.msn.com/HPNOT/4
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://g.uk.msn.com/HPNOT/4
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://g.uk.msn.com/HPNOT/4
StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe
SearchScopes: HKLM - DefaultScope value is missing.
SearchScopes: HKLM - {452CC30F-3D62-48E2-A5A8-B3172A3E0C1F} URL = hxxp://de.search.yahoo.com/search?p={searchTerms}&ei={inputEncoding}&fr=chr-hp-psg&type=HPNTDF
SearchScopes: HKLM - {D866DD77-F8CC-4D3E-93C9-3F4D89EAE252} URL = hxxp://de.wikipedia.org/wiki/Special:Search?search={searchTerms}
SearchScopes: HKLM-x32 - {452CC30F-3D62-48E2-A5A8-B3172A3E0C1F} URL = hxxp://de.search.yahoo.com/search?p={searchTerms}&ei={inputEncoding}&fr=chr-hp-psg&type=HPNTDF
SearchScopes: HKCU - {452CC30F-3D62-48E2-A5A8-B3172A3E0C1F} URL = hxxp://de.search.yahoo.com/search?p={searchTerms}&ei={inputEncoding}&fr=chr-hp-psg&type=HPNTDF
BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll No File
BHO-x32: No Name - {5C255C8A-E604-49b4-9D64-90988571CECB} -  No File
BHO-x32: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation)
BHO-x32: Bing Bar Helper - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files (x86)\Microsoft\BingBar\7.2.241.0\BingExt.dll (Microsoft Corporation.)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll (Hewlett-Packard)
Toolbar: HKLM-x32 - Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files (x86)\Microsoft\BingBar\7.2.241.0\BingExt.dll (Microsoft Corporation.)
DPF: HKLM-x32 {6E718D87-6909-4FCE-92D4-EDCB2F725727} hxxp://www.navigram.com/engine/v1026/Navigram.cab
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} -  No File
Handler-x32: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.14.0.8117.0416.dll (Microsoft Corporation)
Handler-x32: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.14.0.8117.0416.dll (Microsoft Corporation)
Handler-x32: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
ShellExecuteHooks-x32:  - UPB:{B5A7F190-DDA6-4420-B3BA-52453494E6CD} -  No File [ ]
Tcpip\Parameters: [DhcpNameServer] 213.153.32.129 213.153.32.1

FireFox:
========
FF ProfilePath: C:\Users\xxx\AppData\Roaming\Mozilla\Firefox\Profiles\l3x2e4p1.default
FF Homepage: hxxp://www.google.at/ig
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_8_800_94.dll ()
FF Plugin: @microsoft.com/GENUINE - disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.20513.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: adobe.com/AdobeAAMDetect - C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll No File
FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_8_800_94.dll ()
FF Plugin-x32: @adobe.com/ShockwavePlayer - C:\Windows\SysWOW64\Adobe\Director\np32dsw_1204144.dll (Adobe Systems, Inc.)
FF Plugin-x32: @Google.com/GoogleEarthPlugin - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF Plugin-x32: @java.com/DTPlugin,version=10.25.2 - C:\Windows\SysWOW64\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.25.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE - disabled No File
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.20513.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeLive,version=1.5 - C:\Program Files (x86)\Microsoft\Office Live\npOLW.dll (Microsoft Corp.)
FF Plugin-x32: @microsoft.com/WLPG,version=14.0.8117.0416 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.0.8 - C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKCU: @tools.google.com/Google Update;version=3 - C:\Users\xxx\AppData\Local\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.)
FF Plugin HKCU: @tools.google.com/Google Update;version=9 - C:\Users\xxx\AppData\Local\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.)
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml
FF Extension: LavaFox V2 - C:\Users\xxx\AppData\Roaming\Mozilla\Firefox\Profiles\l3x2e4p1.default\Extensions\info@djzig.com
FF Extension: NASA Night Launch - C:\Users\xxx\AppData\Roaming\Mozilla\Firefox\Profiles\l3x2e4p1.default\Extensions\nasanightlaunch@example(2).com
FF Extension: NASA Night Launch - C:\Users\xxx\AppData\Roaming\Mozilla\Firefox\Profiles\l3x2e4p1.default\Extensions\nasanightlaunch@example(3).com
FF Extension: IE Tab 2 (FF 3.6+) - C:\Users\xxx\AppData\Roaming\Mozilla\Firefox\Profiles\l3x2e4p1.default\Extensions\{1BC9BA34-1EED-42ca-A505-6D2F1A935BBB}
FF Extension: Flashblock - C:\Users\xxx\AppData\Roaming\Mozilla\Firefox\Profiles\l3x2e4p1.default\Extensions\{3d7eb24f-2740-49df-8937-200b1cc08f8a}
FF Extension: No Name - C:\Users\xxx\AppData\Roaming\Mozilla\Firefox\Profiles\l3x2e4p1.default\Extensions\{5B52016C-D097-4aec-BE61-9F129D8FDDBA}
FF Extension: WOT - C:\Users\xxx\AppData\Roaming\Mozilla\Firefox\Profiles\l3x2e4p1.default\Extensions\{a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7}
FF Extension: Black Steel - C:\Users\xxx\AppData\Roaming\Mozilla\Firefox\Profiles\l3x2e4p1.default\Extensions\{e2c58150-9d72-11dd-ad8b-0800200c9a66}(2)
FF Extension: nasanightlaunch - C:\Users\xxx\AppData\Roaming\Mozilla\Firefox\Profiles\l3x2e4p1.default\Extensions\nasanightlaunch@example.com.xpi
FF Extension: No Name - C:\Users\xxx\AppData\Roaming\Mozilla\Firefox\Profiles\l3x2e4p1.default\Extensions\{46551EC9-40F0-4e47-8E18-8E5CF550CFB8}.xpi
FF Extension: No Name - C:\Users\xxx\AppData\Roaming\Mozilla\Firefox\Profiles\l3x2e4p1.default\Extensions\{73a6fe31-595d-460b-a920-fcc0f8843232}.xpi
FF Extension: No Name - C:\Users\xxx\AppData\Roaming\Mozilla\Firefox\Profiles\l3x2e4p1.default\Extensions\{ACAA314B-EEBA-48e4-AD47-84E31C44796C}.xpi
FF Extension: No Name - C:\Users\xxx\AppData\Roaming\Mozilla\Firefox\Profiles\l3x2e4p1.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi
FF Extension: No Name - C:\Users\xxx\AppData\Roaming\Mozilla\Firefox\Profiles\l3x2e4p1.default\Extensions\{ef4e370e-d9f0-4e00-b93e-a4f274cfdd5a}.xpi
FF Extension: Skype Click to Call - C:\Program Files (x86)\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}

Chrome: 
=======
CHR HomePage: hxxp://www.google.com

==================== Services (Whitelisted) =================

R2 AntiVirMailService; C:\Program Files (x86)\Avira\AntiVir Desktop\avmailc.exe [622648 2013-09-03] (Avira Operations GmbH & Co. KG)
R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [84024 2013-08-20] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [108088 2013-08-20] (Avira Operations GmbH & Co. KG)
R2 AntiVirWebService; C:\Program Files (x86)\Avira\AntiVir Desktop\AVWEBGRD.EXE [815160 2013-08-20] (Avira Operations GmbH & Co. KG)
R2 MBAMScheduler; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamscheduler.exe [418376 2013-04-04] (Malwarebytes Corporation)
R2 MBAMService; C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamservice.exe [701512 2013-04-04] (Malwarebytes Corporation)
S4 NOBU; C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe [2804568 2010-06-01] (Symantec Corporation)
S3 Secunia PSI Agent; C:\Program Files (x86)\Secunia\PSI\PSIA.exe [1228504 2013-07-03] (Secunia)
R2 Secunia Update Agent; C:\Program Files (x86)\Secunia\PSI\sua.exe [660184 2013-07-03] (Secunia)
R2 tor; C:\Program Files (x86)\Tor\tor.exe [3233806 2013-09-03] ()
S2 AviraUpgradeService; "C:\Windows\TEMP\AVSETUP_520a7452\avupgsvc.exe" /TEMPSTART:""C:\Windows\TEMP\AVSETUP_520a7452\setup.exe" /NOTEMPCLEANUP /CROSSUPGRADE"

==================== Drivers (Whitelisted) ====================

R2 atksgt; C:\Windows\System32\DRIVERS\atksgt.sys [314016 2011-10-03] ()
R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [105344 2013-09-03] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [132088 2013-08-20] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [28600 2013-08-14] (Avira Operations GmbH & Co. KG)
S3 hwusbdev; C:\Windows\System32\DRIVERS\ewusbdev.sys [114560 2011-01-07] (Huawei Technologies Co., Ltd.)
R2 lirsgt; C:\Windows\System32\DRIVERS\lirsgt.sys [43680 2011-10-03] ()
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation)
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25928 2013-04-04] (Malwarebytes Corporation)
S3 PSI; C:\Windows\System32\DRIVERS\psi_mf_amd64.sys [18456 2013-07-03] (Secunia)
U5 AppMgmt; C:\Windows\system32\svchost.exe [27136 2009-07-14] (Microsoft Corporation)
S3 catchme; \??\C:\ComboFix\catchme.sys [x]

==================== NetSvcs (Whitelisted) ===================


==================== One Month Created Files and Folders ========

2013-09-13 07:38 - 2013-09-13 19:38 - 97503480 _____ C:\Windows\SysWOW64\毲忥
2013-09-12 22:41 - 2013-09-12 22:41 - 00262844 _____ C:\Windows\msxml4-KB2758694-enu.LOG
2013-09-12 22:14 - 2013-09-12 22:14 - 02434048 _____ C:\Users\xxx\Downloads\msxml.msi
2013-09-12 21:23 - 2013-09-12 21:23 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2013-09-12 21:17 - 2013-09-12 21:17 - 00000000 ____D C:\Users\xxx\AppData\Local\Secunia PSI
2013-09-12 21:17 - 2013-09-12 21:17 - 00000000 ____D C:\Program Files (x86)\Secunia
2013-09-12 21:16 - 2013-09-12 21:16 - 03272136 _____ (Secunia) C:\Users\xxx\Downloads\PSISetup711.exe
2013-09-12 21:07 - 2013-09-12 21:07 - 00000000 ____D C:\ProgramData\Licenses
2013-09-12 21:06 - 2013-09-12 21:08 - 00000000 ____D C:\Program Files (x86)\SpywareBlaster
2013-09-12 21:06 - 2013-09-12 21:06 - 04095448 _____ (BrightFort LLC                                              ) C:\Users\xxx\Desktop\spywareblastersetup50.exe
2013-09-12 20:45 - 2013-09-12 20:45 - 00376576 _____ C:\Users\xxx\Downloads\wot_safe_surfing-20130515-fx.zip
2013-09-12 20:24 - 2013-09-12 20:24 - 00029290 _____ C:\Users\xxx\Desktop\FRST_2.txt
2013-09-12 20:22 - 2013-09-12 20:22 - 01949642 _____ (Farbar) C:\Users\xxx\Desktop\FRST64.exe
2013-09-12 20:20 - 2013-09-12 20:20 - 00001058 _____ C:\Users\xxx\Desktop\JRT.txt
2013-09-12 20:12 - 2013-09-12 20:12 - 01029509 _____ (Thisisu) C:\Users\xxx\Desktop\JRT.exe
2013-09-12 20:10 - 2013-09-12 20:10 - 00006989 _____ C:\Users\xxx\Desktop\AdwCleaner[S0].txt
2013-09-12 20:06 - 2013-09-12 20:08 - 00000000 ____D C:\AdwCleaner
2013-09-12 20:05 - 2013-09-12 20:05 - 01037278 _____ C:\Users\xxx\Desktop\adwcleaner.exe
2013-09-12 19:50 - 2013-09-12 19:50 - 00001113 _____ C:\Users\xxx\Desktop\ Malwarebytes Anti-Malware .lnk
2013-09-12 19:50 - 2013-04-04 14:50 - 00025928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2013-09-12 19:48 - 2013-09-12 19:48 - 10285040 _____ (Malwarebytes Corporation                                    ) C:\Users\xxx\Downloads\mbam-setup-1.75.0.1300(1).exe
2013-09-12 19:47 - 2013-09-12 19:47 - 97373152 _____ C:\Windows\SysWOW64\腍ᴾ…
2013-09-11 21:10 - 2013-09-11 21:10 - 00026867 _____ C:\ComboFix.txt
2013-09-11 20:44 - 2013-09-11 20:45 - 05124599 ____R (Swearware) C:\Users\xxx\Desktop\ComboFix.exe
2013-09-10 22:19 - 2013-09-10 22:19 - 00000382 _____ C:\Users\xxx\Desktop\gmer.txt
2013-09-10 21:53 - 2013-09-10 21:53 - 00377856 _____ C:\Users\xxx\Desktop\gmer_2.1.19163.exe
2013-09-10 21:52 - 2013-09-10 21:52 - 00031480 _____ C:\Users\xxx\Desktop\FRST_1.txt
2013-09-03 16:59 - 2013-09-03 16:59 - 95638383 _____ C:\Windows\SysWOW64\鷻룭‚
2013-09-03 09:09 - 2013-09-03 09:09 - 00000000 ____D C:\Program Files (x86)\Tor
2013-08-27 09:19 - 2013-08-27 09:19 - 00001402 _____ C:\Users\Public\Desktop\Free YouTube to MP3 Converter.lnk
2013-08-27 09:19 - 2013-08-27 09:19 - 00001243 _____ C:\Users\Public\Desktop\DVDVideoSoft Free Studio.lnk
2013-08-20 10:41 - 2013-08-20 10:41 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2013-08-20 07:02 - 2013-08-20 07:02 - 00204568 _____ (DEVGURU Co., LTD.(www.devguru.co.kr)) C:\Windows\system32\Drivers\ssudmdm.sys
2013-08-20 07:02 - 2013-08-20 07:02 - 00103576 _____ (DEVGURU Co., LTD.(www.devguru.co.kr)) C:\Windows\system32\Drivers\ssudbus.sys
2013-08-15 22:02 - 2013-08-15 22:02 - 02347384 _____ (ESET) C:\Users\xxx\Desktop\esetsmartinstaller_enu.exe
2013-08-14 22:48 - 2013-08-20 10:45 - 00081112 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avnetflt.sys
2013-08-14 22:46 - 2013-08-14 22:46 - 00000000 ____D C:\Users\xxx\AppData\Roaming\Avira
2013-08-14 22:45 - 2013-09-03 11:15 - 00105344 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avgntflt.sys
2013-08-14 22:45 - 2013-08-20 10:45 - 00132088 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avipbb.sys
2013-08-14 22:45 - 2013-08-14 22:45 - 00002070 _____ C:\Users\Public\Desktop\Avira Control Center.lnk
2013-08-14 22:45 - 2013-08-14 22:45 - 00000000 ____D C:\Program Files (x86)\Avira
2013-08-14 22:45 - 2013-08-14 22:43 - 00028600 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avkmgr.sys
2013-08-14 22:40 - 2013-08-14 22:40 - 02083256 _____ C:\Users\xxx\Downloads\avira_antivirus_premium.exe
2013-08-14 20:30 - 2013-08-14 20:30 - 00000000 ____D C:\Windows\ERUNT
2013-08-14 20:22 - 2013-08-14 20:23 - 00006531 _____ C:\AdwCleaner[S1].txt
2013-08-14 20:09 - 2013-08-14 20:09 - 10285040 _____ (Malwarebytes Corporation                                    ) C:\Users\xxx\Downloads\mbam-setup-1.75.0.1300.exe

==================== One Month Modified Files and Folders =======

2013-09-13 19:46 - 2013-09-13 19:46 - 00891144 _____ C:\Users\xxx\Desktop\SecurityCheck.exe
2013-09-13 19:38 - 2013-09-13 07:38 - 97503480 _____ C:\Windows\SysWOW64\毲忥
2013-09-13 19:05 - 2010-08-19 01:43 - 01943490 _____ C:\Windows\WindowsUpdate.log
2013-09-13 19:04 - 2010-12-31 16:40 - 00000000 ____D C:\ProgramData\Microsoft Help
2013-09-13 07:49 - 2011-01-17 08:56 - 00000000 ____D C:\Users\xxx\AppData\Local\Corel
2013-09-13 07:49 - 2011-01-17 08:55 - 00000000 ____D C:\Users\xxx\Documents\My PSP Files
2013-09-13 07:45 - 2009-07-14 06:45 - 00023248 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2013-09-13 07:45 - 2009-07-14 06:45 - 00023248 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2013-09-13 07:37 - 2012-12-31 16:32 - 00048805 _____ C:\Windows\setupact.log
2013-09-12 22:41 - 2013-09-12 22:41 - 00262844 _____ C:\Windows\msxml4-KB2758694-enu.LOG
2013-09-12 22:14 - 2013-09-12 22:14 - 02434048 _____ C:\Users\xxx\Downloads\msxml.msi
2013-09-12 22:14 - 2011-01-01 23:16 - 00000000 ____D C:\Program Files (x86)\MSXML 4.0
2013-09-12 22:08 - 2011-01-01 14:16 - 00000000 ____D C:\Program Files (x86)\FileZilla FTP Client
2013-09-12 21:57 - 2013-07-20 23:37 - 00000000 ____D C:\Users\xxx\AppData\Roaming\vlc
2013-09-12 21:48 - 2013-02-21 10:36 - 00299162 _____ C:\Windows\PFRO.log
2013-09-12 21:29 - 2011-12-07 18:25 - 00000000 ____D C:\Program Files (x86)\Winamp Detect
2013-09-12 21:29 - 2011-01-23 21:49 - 00000000 ____D C:\Program Files (x86)\Winamp
2013-09-12 21:23 - 2013-09-12 21:23 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2013-09-12 21:23 - 2012-04-11 19:26 - 00692616 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2013-09-12 21:23 - 2011-05-18 07:10 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2013-09-12 21:17 - 2013-09-12 21:17 - 00000000 ____D C:\Users\xxx\AppData\Local\Secunia PSI
2013-09-12 21:17 - 2013-09-12 21:17 - 00000000 ____D C:\Program Files (x86)\Secunia
2013-09-12 21:16 - 2013-09-12 21:16 - 03272136 _____ (Secunia) C:\Users\xxx\Downloads\PSISetup711.exe
2013-09-12 21:08 - 2013-09-12 21:06 - 00000000 ____D C:\Program Files (x86)\SpywareBlaster
2013-09-12 21:07 - 2013-09-12 21:07 - 00000000 ____D C:\ProgramData\Licenses
2013-09-12 21:06 - 2013-09-12 21:06 - 04095448 _____ (BrightFort LLC                                              ) C:\Users\xxx\Desktop\spywareblastersetup50.exe
2013-09-12 21:00 - 2013-04-12 20:27 - 00000000 ____D C:\Users\xxx\AppData\Roaming\TweakNow RegCleaner
2013-09-12 21:00 - 2013-04-12 20:27 - 00000000 ____D C:\Program Files (x86)\TweakNow RegCleaner
2013-09-12 20:59 - 2013-04-12 21:53 - 00000000 ____D C:\Program Files (x86)\RegSeeker
2013-09-12 20:45 - 2013-09-12 20:45 - 00376576 _____ C:\Users\xxx\Downloads\wot_safe_surfing-20130515-fx.zip
2013-09-12 20:24 - 2013-09-12 20:24 - 00029290 _____ C:\Users\xxx\Desktop\FRST_2.txt
2013-09-12 20:22 - 2013-09-12 20:22 - 01949642 _____ (Farbar) C:\Users\xxx\Desktop\FRST64.exe
2013-09-12 20:20 - 2013-09-12 20:20 - 00001058 _____ C:\Users\xxx\Desktop\JRT.txt
2013-09-12 20:12 - 2013-09-12 20:12 - 01029509 _____ (Thisisu) C:\Users\xxx\Desktop\JRT.exe
2013-09-12 20:10 - 2013-09-12 20:10 - 00006989 _____ C:\Users\xxx\Desktop\AdwCleaner[S0].txt
2013-09-12 20:08 - 2013-09-12 20:06 - 00000000 ____D C:\AdwCleaner
2013-09-12 20:05 - 2013-09-12 20:05 - 01037278 _____ C:\Users\xxx\Desktop\adwcleaner.exe
2013-09-12 19:50 - 2013-09-12 19:50 - 00001113 _____ C:\Users\xxx\Desktop\ Malwarebytes Anti-Malware .lnk
2013-09-12 19:50 - 2011-12-28 14:05 - 00000000 ____D C:\Program Files (x86)\Malwarebytes' Anti-Malware
2013-09-12 19:48 - 2013-09-12 19:48 - 10285040 _____ (Malwarebytes Corporation                                    ) C:\Users\xxx\Downloads\mbam-setup-1.75.0.1300(1).exe
2013-09-12 19:47 - 2013-09-12 19:47 - 97373152 _____ C:\Windows\SysWOW64\腍ᴾ…
2013-09-12 18:06 - 2010-12-31 19:27 - 00000000 ____D C:\Users\xxx\AppData\Roaming\Skype
2013-09-11 21:42 - 2013-07-27 23:13 - 00000000 ____D C:\Windows\system32\MRT
2013-09-11 21:41 - 2011-01-03 10:58 - 79143768 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2013-09-11 21:11 - 2013-08-13 20:02 - 00000000 ____D C:\Qoobox
2013-09-11 21:10 - 2013-09-11 21:10 - 00026867 _____ C:\ComboFix.txt
2013-09-11 21:00 - 2009-07-14 04:34 - 00000215 _____ C:\Windows\system.ini
2013-09-11 20:45 - 2013-09-11 20:44 - 05124599 ____R (Swearware) C:\Users\xxx\Desktop\ComboFix.exe
2013-09-10 22:19 - 2013-09-10 22:19 - 00000382 _____ C:\Users\xxx\Desktop\gmer.txt
2013-09-10 21:53 - 2013-09-10 21:53 - 00377856 _____ C:\Users\xxx\Desktop\gmer_2.1.19163.exe
2013-09-10 21:52 - 2013-09-10 21:52 - 00031480 _____ C:\Users\xxx\Desktop\FRST_1.txt
2013-09-10 21:45 - 2011-02-21 21:21 - 00001114 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2013-09-10 21:35 - 2013-04-28 22:15 - 00001132 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-4138529036-2260153085-4193991026-1000UA.job
2013-09-10 08:17 - 2011-02-21 21:21 - 00001110 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2013-09-10 08:17 - 2009-07-14 07:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2013-09-09 19:33 - 2011-11-05 15:33 - 00000000 _____ C:\Windows\system32\HP_ActiveX_Patch_NOT_DETECTED.txt
2013-09-09 19:33 - 2011-01-01 10:34 - 00000052 _____ C:\Windows\SysWOW64\DOErrors.log
2013-09-08 00:35 - 2013-04-28 22:15 - 00001080 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-4138529036-2260153085-4193991026-1000Core.job
2013-09-07 21:58 - 2011-07-24 19:10 - 00003204 _____ C:\Windows\System32\Tasks\HPCeeScheduleForxxx
2013-09-07 21:58 - 2011-07-24 19:10 - 00000344 _____ C:\Windows\Tasks\HPCeeScheduleForxxx.job
2013-09-03 16:59 - 2013-09-03 16:59 - 95638383 _____ C:\Windows\SysWOW64\鷻룭‚
2013-09-03 11:15 - 2013-08-14 22:45 - 00105344 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avgntflt.sys
2013-09-03 09:09 - 2013-09-03 09:09 - 00000000 ____D C:\Program Files (x86)\Tor
2013-09-02 17:33 - 2011-01-31 22:17 - 00000000 ____D C:\Users\xxx\AppData\Local\FreePDF_XP
2013-09-02 11:10 - 2011-01-13 20:29 - 00000000 ____D C:\Users\xxx\Documents\Haushalt
2013-08-29 15:26 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\NDF
2013-08-27 09:19 - 2013-08-27 09:19 - 00001402 _____ C:\Users\Public\Desktop\Free YouTube to MP3 Converter.lnk
2013-08-27 09:19 - 2013-08-27 09:19 - 00001243 _____ C:\Users\Public\Desktop\DVDVideoSoft Free Studio.lnk
2013-08-27 09:19 - 2011-01-09 18:11 - 00000000 ____D C:\Program Files (x86)\DVDVideoSoft
2013-08-27 09:18 - 2011-12-24 00:03 - 00000000 ____D C:\Users\xxx\AppData\Roaming\DVDVideoSoft
2013-08-23 20:17 - 2013-04-29 22:09 - 00000020 ____H C:\ProgramData\PKP_DLev.DAT
2013-08-22 08:08 - 2012-06-07 14:38 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2013-08-20 10:45 - 2013-08-14 22:48 - 00081112 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avnetflt.sys
2013-08-20 10:45 - 2013-08-14 22:45 - 00132088 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avipbb.sys
2013-08-20 10:41 - 2013-08-20 10:41 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2013-08-20 07:02 - 2013-08-20 07:02 - 00204568 _____ (DEVGURU Co., LTD.(www.devguru.co.kr)) C:\Windows\system32\Drivers\ssudmdm.sys
2013-08-20 07:02 - 2013-08-20 07:02 - 00103576 _____ (DEVGURU Co., LTD.(www.devguru.co.kr)) C:\Windows\system32\Drivers\ssudbus.sys
2013-08-19 09:41 - 2009-07-14 07:08 - 00032640 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2013-08-15 22:02 - 2013-08-15 22:02 - 02347384 _____ (ESET) C:\Users\xxx\Desktop\esetsmartinstaller_enu.exe
2013-08-15 21:04 - 2013-08-13 00:16 - 00000000 ____D C:\Program Files (x86)\Mozilla Thunderbird
2013-08-14 22:46 - 2013-08-14 22:46 - 00000000 ____D C:\Users\xxx\AppData\Roaming\Avira
2013-08-14 22:45 - 2013-08-14 22:45 - 00002070 _____ C:\Users\Public\Desktop\Avira Control Center.lnk
2013-08-14 22:45 - 2013-08-14 22:45 - 00000000 ____D C:\Program Files (x86)\Avira
2013-08-14 22:45 - 2010-12-31 17:10 - 00000000 ____D C:\ProgramData\Avira
2013-08-14 22:43 - 2013-08-14 22:45 - 00028600 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avkmgr.sys
2013-08-14 22:40 - 2013-08-14 22:40 - 02083256 _____ C:\Users\xxx\Downloads\avira_antivirus_premium.exe
2013-08-14 20:30 - 2013-08-14 20:30 - 00000000 ____D C:\Windows\ERUNT
2013-08-14 20:23 - 2013-08-14 20:22 - 00006531 _____ C:\AdwCleaner[S1].txt
2013-08-14 20:09 - 2013-08-14 20:09 - 10285040 _____ (Malwarebytes Corporation                                    ) C:\Users\xxx\Downloads\mbam-setup-1.75.0.1300.exe

Files to move or delete:
====================
C:\ProgramData\PKP_DLdu.DAT
C:\ProgramData\PKP_DLeo.DAT
C:\ProgramData\PKP_DLes.DAT
C:\ProgramData\PKP_DLet.DAT
C:\ProgramData\PKP_DLev.DAT

==================== Bamital & volsnap Check =================

C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit


LastRegBack: 2013-09-01 10:40

==================== End Of Log ============================
         
--- --- ---

Alt 14.09.2013, 19:38   #8
schrauber
/// the machine
/// TB-Ausbilder
 

Trojaner TR/Fakeadb.A - Standard

Trojaner TR/Fakeadb.A



Drücke bitte die Windowstaste + R Taste und schreibe notepad in das Ausführen Fenster.

Kopiere nun folgenden Text aus der Code-Box in das leere Textdokument

Code:
ATTFilter
C:\Windows\System32\config\systemprofile\AppData\Local\Windows Internet Name Service\wins.exe
C:\Windows\SysWOW64\config\systemprofile\AppData\Local\Windows Internet Name Service\wins.exe
R2 tor; C:\Program Files (x86)\Tor\tor.exe [3233806 2013-09-03] ()
C:\Program Files (x86)\Tor
C:\ProgramData\PKP_DLdu.DAT
C:\ProgramData\PKP_DLeo.DAT
C:\ProgramData\PKP_DLes.DAT
C:\ProgramData\PKP_DLet.DAT
C:\ProgramData\PKP_DLev.DAT
         

Speichere diese bitte als Fixlist.txt auf deinem Desktop (oder dem Verzeichnis in dem sich FRST befindet).
  • Starte nun FRST erneut und klicke den Entfernen Button.
  • Das Tool erstellt eine Fixlog.txt.
  • Poste mir deren Inhalt.



Unbedingt Windows updaten!
__________________
gruß,
schrauber

Proud Member of UNITE and ASAP since 2009

Spenden
Anleitungen und Hilfestellungen
Trojaner-Board Facebook-Seite

Keine Hilfestellung via PM!

Geändert von schrauber (16.09.2013 um 10:28 Uhr)

Alt 14.09.2013, 20:03   #9
k.karl
 
Trojaner TR/Fakeadb.A - Standard

Trojaner TR/Fakeadb.A



Hallo,

habe Avira nicht deaktiviert.
Als ich FRST startete kam von Avira die Meldung das die Datei C:\FRST\Quarantine\wins.exe ein Trojaner oder Virus ist!

Soll ich es in die Avira Qarantine verschieben, oder was tun?

.... und FRST benötigt nun schon relativ lange beim "Fixing in progress", schon ca. 7-8 min!

Habe FRST zum abbruch gezwungen, dabei ist ein seeeeehr langes Logfile herausgekommen!!!
Ich kanns gar nicht als Code einfügen, weils zu lange ist!

Habe ich da jetzt möglicherweise etwas falsch gemacht......??

Geändert von k.karl (14.09.2013 um 20:25 Uhr)

Alt 14.09.2013, 20:47   #10
k.karl
 
Trojaner TR/Fakeadb.A - Standard

Trojaner TR/Fakeadb.A



das ist die erstellte Fixlog.txt

Alt 15.09.2013, 10:19   #11
schrauber
/// the machine
/// TB-Ausbilder
 

Trojaner TR/Fakeadb.A - Standard

Trojaner TR/Fakeadb.A



Schalte Avira ab und wiederhole den Fix, poste die Logs bitte immer in den Thread, zur Not stückeln.
__________________
gruß,
schrauber

Proud Member of UNITE and ASAP since 2009

Spenden
Anleitungen und Hilfestellungen
Trojaner-Board Facebook-Seite

Keine Hilfestellung via PM!

Alt 15.09.2013, 17:13   #12
k.karl
 
Trojaner TR/Fakeadb.A - Standard

Trojaner TR/Fakeadb.A



Hallo schrauber,

das ist etwas ganz schlimm in die Hose gegangen!

Als ich gestern den Scan abgebrochen habe, ist mir aufgefallen, das FRST sehr sehr viele Daten in die Qarantine verschochoben hat!
Das ist imme rnoch so, die Quarantine ist voll mit alle möglichen Datein von HP, etc.!

Als ich gerade eben Avira abgeschaltet habe und erneut FRST gestartet habe, ist mir gleich aufgefallen, dass wieder etwas nicht stimmt, weil die Fixlog Datei immer größer wurde!

hier ein Auszug aus dem Fixlog von gerade eben!

Der schiebt alles mögliche in die Qurantine!!! Warum?


Code:
ATTFilter
Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 11-09-2013 02
Ran by Knezevic at 2013-09-15 18:05:32 Run:3
Running from C:\Users\Knezevic\Desktop
Boot Mode: Normal
==============================================

Content of fixlist:
*****************
C:\Windows\System32\config\systemprofile\AppData\Local\Windows Internet Name Service\wins.exe
C:\Windows\SysWOW64\config\systemprofile\AppData\Local\Windows Internet Name Service\wins.exe
R2 tor; C:\Program Files (x86)\Tor\tor.exe [3233806 2013-09-03] ()
C:\Program Files (x86)
C:\ProgramData\PKP_DLdu.DAT
C:\ProgramData\PKP_DLeo.DAT
C:\ProgramData\PKP_DLes.DAT
C:\ProgramData\PKP_DLet.DAT
C:\ProgramData\PKP_DLev.DAT
*****************

"C:\Windows\System32\config\systemprofile\AppData\Local\Windows Internet Name Service\wins.exe" => File/Directory not found.
C:\Windows\SysWOW64\config\systemprofile\AppData\Local\Windows Internet Name Service\wins.exe => Moved successfully.
tor => Service deleted successfully.

"C:\Program Files (x86)" directory move:

C:\Program Files (x86)\desktop.ini => Moved successfully.
C:\Program Files (x86)\navigram_register.exe => Moved successfully.
C:\Program Files (x86)\zebNet\Thunderbird Backup\7z.dll => Moved successfully.
C:\Program Files (x86)\zebNet\Thunderbird Backup\7z.exe => Moved successfully.
C:\Program Files (x86)\zebNet\Thunderbird Backup\BACKUP.EXE => Moved successfully.
C:\Program Files (x86)\zebNet\Thunderbird Backup\RESTORE.EXE => Moved successfully.
C:\Program Files (x86)\XBMC\glew32.dll => Moved successfully.
C:\Program Files (x86)\XBMC\MSVCP71.DLL => Moved successfully.
C:\Program Files (x86)\XBMC\msvcr71.dll => Moved successfully.
C:\Program Files (x86)\XBMC\SDL.dll => Moved successfully.
C:\Program Files (x86)\XBMC\Uninstall.exe => Moved successfully.
C:\Program Files (x86)\XBMC\XBMC.exe => Moved successfully.
C:\Program Files (x86)\XBMC\zlib1.dll => Moved successfully.
C:\Program Files (x86)\XBMC\system\cpluff.dll => Moved successfully.
C:\Program Files (x86)\XBMC\system\hdhomerun.dll => Moved successfully.
C:\Program Files (x86)\XBMC\system\ImageLib.dll => Moved successfully.
C:\Program Files (x86)\XBMC\system\libcmyth.dll => Moved successfully.
C:\Program Files (x86)\XBMC\system\libcurl.dll => Moved successfully.
C:\Program Files (x86)\XBMC\system\libeay32.dll => Moved successfully.
C:\Program Files (x86)\XBMC\system\libexif.dll => Moved successfully.
C:\Program Files (x86)\XBMC\system\libexpat.dll => Moved successfully.
C:\Program Files (x86)\XBMC\system\libid3tag.dll => Moved successfully.
C:\Program Files (x86)\XBMC\system\libidn-11.dll => Moved successfully.
C:\Program Files (x86)\XBMC\system\libssh.dll => Moved successfully.
C:\Program Files (x86)\XBMC\system\libssh2.dll => Moved successfully.
C:\Program Files (x86)\XBMC\system\libssl32.dll => Moved successfully.
C:\Program Files (x86)\XBMC\system\zlib1.dll => Moved successfully.
C:\Program Files (x86)\XBMC\system\webserver\libgcrypt-11.dll => Moved successfully.
C:\Program Files (x86)\XBMC\system\webserver\libgpg-error-0.dll => Moved successfully.
C:\Program Files (x86)\XBMC\system\webserver\libiconv-2.dll => Moved successfully.
C:\Program Files (x86)\XBMC\system\webserver\libintl-8.dll => Moved successfully.
C:\Program Files (x86)\XBMC\system\webserver\libmicrohttpd-5.dll => Moved successfully.
C:\Program Files (x86)\XBMC\system\webserver\libplibc-1.dll => Moved successfully.
C:\Program Files (x86)\XBMC\system\webserver\pthreadGC2.dll => Moved successfully.
C:\Program Files (x86)\XBMC\system\python\python24.dll => Moved successfully.
C:\Program Files (x86)\XBMC\system\python\Lib\idlelib\idle.bat => Moved successfully.
C:\Program Files (x86)\XBMC\system\python\Lib\distutils\command\wininst-6.exe => Moved successfully.
C:\Program Files (x86)\XBMC\system\python\Lib\distutils\command\wininst-7.1.exe => Moved successfully.
C:\Program Files (x86)\XBMC\system\players\paplayer\AC3Codec.dll => Moved successfully.
C:\Program Files (x86)\XBMC\system\players\paplayer\adpcm.dll => Moved successfully.
C:\Program Files (x86)\XBMC\system\players\paplayer\libFLAC.dll => Moved successfully.
C:\Program Files (x86)\XBMC\system\players\paplayer\libmodplug.dll => Moved successfully.
C:\Program Files (x86)\XBMC\system\players\paplayer\libshnplay.dll => Moved successfully.
C:\Program Files (x86)\XBMC\system\players\paplayer\libsidplay2.dll => Moved successfully.
C:\Program Files (x86)\XBMC\system\players\paplayer\NoseFart.dll => Moved successfully.
C:\Program Files (x86)\XBMC\system\players\paplayer\StSoundLibrary.dll => Moved successfully.
C:\Program Files (x86)\XBMC\system\players\paplayer\timidity.dll => Moved successfully.
C:\Program Files (x86)\XBMC\system\players\paplayer\vgmstream.dll => Moved successfully.
C:\Program Files (x86)\XBMC\system\players\paplayer\vorbisfile.dll => Moved successfully.
C:\Program Files (x86)\XBMC\system\players\paplayer\wavpack.dll => Moved successfully.
C:\Program Files (x86)\XBMC\system\players\paplayer\xbmc_asap.dll => Moved successfully.
C:\Program Files (x86)\XBMC\system\players\dvdplayer\avcodec-52.dll => Moved successfully.
C:\Program Files (x86)\XBMC\system\players\dvdplayer\avformat-52.dll => Moved successfully.
C:\Program Files (x86)\XBMC\system\players\dvdplayer\avutil-50.dll => Moved successfully.
C:\Program Files (x86)\XBMC\system\players\dvdplayer\freetype6.dll => Moved successfully.
C:\Program Files (x86)\XBMC\system\players\dvdplayer\liba52.dll => Moved successfully.
C:\Program Files (x86)\XBMC\system\players\dvdplayer\libass.dll => Moved successfully.
C:\Program Files (x86)\XBMC\system\players\dvdplayer\libbluray.dll => Moved successfully.
C:\Program Files (x86)\XBMC\system\players\dvdplayer\libdts.dll => Moved successfully.
C:\Program Files (x86)\XBMC\system\players\dvdplayer\libdvdcss-2.dll => Moved successfully.
C:\Program Files (x86)\XBMC\system\players\dvdplayer\libdvdnav.dll => Moved successfully.
C:\Program Files (x86)\XBMC\system\players\dvdplayer\libexpat-1.dll => Moved successfully.
C:\Program Files (x86)\XBMC\system\players\dvdplayer\libfaad.dll => Moved successfully.
C:\Program Files (x86)\XBMC\system\players\dvdplayer\libfontconfig-1.dll => Moved successfully.
C:\Program Files (x86)\XBMC\system\players\dvdplayer\libmad.dll => Moved successfully.
C:\Program Files (x86)\XBMC\system\players\dvdplayer\libmpeg2.dll => Moved successfully.
C:\Program Files (x86)\XBMC\system\players\dvdplayer\librtmp.dll => Moved successfully.
C:\Program Files (x86)\XBMC\system\players\dvdplayer\postproc-51.dll => Moved successfully.
C:\Program Files (x86)\XBMC\system\players\dvdplayer\swscale-0.6.1.dll => Moved successfully.
C:\Program Files (x86)\XBMC\system\cdrip\lame_enc.dll => Moved successfully.
C:\Program Files (x86)\XBMC\system\cdrip\ogg.dll => Moved successfully.
C:\Program Files (x86)\XBMC\system\cdrip\vorbis.dll => Moved successfully.
C:\Program Files (x86)\XBMC\system\cdrip\vorbisenc.dll => Moved successfully.
C:\Program Files (x86)\XBMC\media\Fonts\arial.ttf => Moved successfully.
C:\Program Files (x86)\XBMC\media\Fonts\teletext.ttf => Moved successfully.
C:\Program Files (x86)\XBMC\addons\webinterface.default\favicon.ico => Moved successfully.
C:\Program Files (x86)\XBMC\addons\webinterface.default\js\Core.js => Moved successfully.
C:\Program Files (x86)\XBMC\addons\webinterface.default\js\iscroll-min.js => Moved successfully.
C:\Program Files (x86)\XBMC\addons\webinterface.default\js\jquery-1.4.2.js => Moved successfully.
C:\Program Files (x86)\XBMC\addons\webinterface.default\js\jquery-1.4.2.min.js => Moved successfully.
C:\Program Files (x86)\XBMC\addons\webinterface.default\js\jquery.lazyload.js => Moved successfully.
C:\Program Files (x86)\XBMC\addons\webinterface.default\js\Launcher.js => Moved successfully.
C:\Program Files (x86)\XBMC\addons\webinterface.default\js\MediaLibrary.js => Moved successfully.
C:\Program Files (x86)\XBMC\addons\webinterface.default\js\NowPlayingManager.js => Moved successfully.
C:\Program Files (x86)\XBMC\addons\skin.confluence\fonts\DefaultCaps.ttf => Moved successfully.
C:\Program Files (x86)\XBMC\addons\skin.confluence\fonts\DejaVuSans-Bold-Caps.ttf => Moved successfully.
C:\Program Files (x86)\XBMC\addons\skin.confluence\fonts\DejaVuSans-Bold.ttf => Moved successfully.
C:\Program Files (x86)\XBMC\addons\skin.confluence\fonts\DejaVuSans.ttf => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\sbdrop.dll => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\settings.ini => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\sidebar.exe => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\wlsrvc.dll => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\drag.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\icon.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\logo.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\1.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\10.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\11.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\12.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\13.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\14.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\15.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\16.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\17.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\18.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\19.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\1px.gif => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\2.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\20.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\21.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\22.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\23.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\24.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\25.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\26.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\27.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\28.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\29.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\3.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\30.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\31.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\32.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\33.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\34.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\35.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\36.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\37.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\38.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\39.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\4.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\40.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\41.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\42.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\43.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\44.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\45.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\46.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\47.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\5.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\6.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\7.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\8.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\9.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\activity16v.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\alertIcon.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\btn_close_down.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\btn_close_down_BIDI.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\btn_close_over.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\btn_close_up.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\btn_search_down.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\btn_search_down_BIDI.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\btn_search_over.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\btn_search_over_BIDI.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\btn_search_up.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\btn_search_up_BIDI.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\divider-horizontal.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\divider-vertical.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\docked-loading.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\docked_black_cloudy.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\docked_black_few-showers.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\docked_black_foggy.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\docked_black_hail.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\docked_black_moon-first-quarter.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\docked_black_moon-first-quarter_partly-cloudy.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\docked_black_moon-full.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\docked_black_moon-full_partly-cloudy.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\docked_black_moon-last-quarter.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\docked_black_moon-last-quarter_partly-cloudy.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\docked_black_moon-new.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\docked_black_moon-new_partly-cloudy.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\docked_black_moon-waning-crescent.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\docked_black_moon-waning-crescent_partly-cloudy.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\docked_black_moon-waning-gibbous.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\docked_black_moon-waning-gibbous_partly-cloudy.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\docked_black_moon-waxing-crescent.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\docked_black_moon-waxing-crescent_partly-cloudy.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\docked_black_moon-waxing-gibbous.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\docked_black_moon-waxing-gibbous_partly-cloudy.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\docked_black_rainy.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\docked_black_snow.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\docked_black_thunderstorm.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\docked_black_windy.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\docked_blue_partly-cloudy.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\docked_blue_snow.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\docked_blue_sun.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\docked_blue_windy.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\docked_gray_cloudy.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\docked_gray_few-showers.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\docked_gray_foggy.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\docked_gray_hail.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\docked_gray_rainy.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\docked_gray_snow.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\docked_gray_thunderstorm.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\grayStateIcon.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\greenStateIcon.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\info.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\notConnectedStateIcon.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\redStateIcon.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\search_background.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\undocked-loading.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\undocked_black_cloudy.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\undocked_black_few-showers.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\undocked_black_foggy.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\undocked_black_hail.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\undocked_black_moon-first-quarter.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\undocked_black_moon-first-quarter_partly-cloudy.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\undocked_black_moon-full.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\undocked_black_moon-full_partly-cloudy.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\undocked_black_moon-last-quarter.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\undocked_black_moon-last-quarter_partly-cloudy.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\undocked_black_moon-new.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\undocked_black_moon-new_partly-cloudy.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\undocked_black_moon-waning-crescent.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\undocked_black_moon-waning-crescent_partly-cloudy.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\undocked_black_moon-waning-gibbous.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\undocked_black_moon-waning-gibbous_partly-cloudy.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\undocked_black_moon-waxing-crescent.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\undocked_black_moon-waxing-crescent_partly-cloudy.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\undocked_black_moon-waxing-gibbous.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\undocked_black_moon-waxing-gibbous_partly-cloudy.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\undocked_black_rainy.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\undocked_black_snow.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\undocked_black_thunderstorm.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\undocked_black_windy.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\undocked_blue_partly-cloudy.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\undocked_blue_snow.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\undocked_blue_sun.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\undocked_blue_windy.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\undocked_gray_cloudy.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\undocked_gray_few-showers.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\undocked_gray_foggy.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\undocked_gray_hail.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\undocked_gray_rainy.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\undocked_gray_snow.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\undocked_gray_thunderstorm.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\144DPI\(144DPI)alertIcon.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\144DPI\(144DPI)grayStateIcon.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\144DPI\(144DPI)greenStateIcon.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\144DPI\(144DPI)notConnectedStateIcon.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\144DPI\(144DPI)redStateIcon.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\120DPI\(120DPI)alertIcon.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\120DPI\(120DPI)grayStateIcon.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\120DPI\(120DPI)greenStateIcon.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\120DPI\(120DPI)notConnectedStateIcon.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\images\120DPI\(120DPI)redStateIcon.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\de-DE\gadget.xml => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\de-DE\settings.html => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\de-DE\weather.html => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\de-DE\js\highDpiImageSwap.js => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\de-DE\js\library.js => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\de-DE\js\localizedStrings.js => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\de-DE\js\settings.js => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\de-DE\js\weather.js => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\de-DE\css\localizedSettings.css => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\de-DE\css\settings.css => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Weather.Gadget\de-DE\css\weather.css => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\SlideShow.Gadget\drag.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\SlideShow.Gadget\icon.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\SlideShow.Gadget\logo.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\SlideShow.Gadget\images\blank.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\SlideShow.Gadget\images\next_down.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\SlideShow.Gadget\images\next_hov.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\SlideShow.Gadget\images\next_rest.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\SlideShow.Gadget\images\pause_down.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\SlideShow.Gadget\images\pause_hov.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\SlideShow.Gadget\images\pause_rest.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\SlideShow.Gadget\images\play_down.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\SlideShow.Gadget\images\play_hov.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\SlideShow.Gadget\images\play_rest.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\SlideShow.Gadget\images\prev_down.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\SlideShow.Gadget\images\prev_hov.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\SlideShow.Gadget\images\prev_rest.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\SlideShow.Gadget\images\reveal_down.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\SlideShow.Gadget\images\reveal_hov.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\SlideShow.Gadget\images\reveal_rest.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\SlideShow.Gadget\images\Tulip.jpg => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\SlideShow.Gadget\images\on_desktop\slideshow_glass_frame.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\SlideShow.Gadget\images\in_sidebar\bg_sidebar.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\SlideShow.Gadget\images\in_sidebar\slideshow_glass_frame.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\SlideShow.Gadget\de-DE\gadget.xml => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\SlideShow.Gadget\de-DE\settings.html => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\SlideShow.Gadget\de-DE\slideShow.html => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\SlideShow.Gadget\de-DE\js\slideShow.js => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\SlideShow.Gadget\de-DE\css\settings.css => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\SlideShow.Gadget\de-DE\css\slideShow.css => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\RSSFeeds.Gadget\drag.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\RSSFeeds.Gadget\icon.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\RSSFeeds.Gadget\logo.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\RSSFeeds.Gadget\images\16-on-black.gif => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\RSSFeeds.Gadget\images\buttonDown_Off.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\RSSFeeds.Gadget\images\buttonDown_On.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\RSSFeeds.Gadget\images\buttonUp_Off.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\RSSFeeds.Gadget\images\buttonUp_On.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\RSSFeeds.Gadget\images\flyoutBack.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\RSSFeeds.Gadget\images\item_hover_docked.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\RSSFeeds.Gadget\images\item_hover_floating.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\RSSFeeds.Gadget\images\item_hover_flyout.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\RSSFeeds.Gadget\images\navBack.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\RSSFeeds.Gadget\images\rssBackBlue_docked.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\RSSFeeds.Gadget\images\rssBackBlue_Undocked.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\RSSFeeds.Gadget\images\rssLogo.gif => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\RSSFeeds.Gadget\images\rss_headline_glow_docked.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\RSSFeeds.Gadget\images\rss_headline_glow_floating.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\RSSFeeds.Gadget\images\rss_headline_glow_flyout.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\RSSFeeds.Gadget\de-DE\flyout.html => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\RSSFeeds.Gadget\de-DE\gadget.xml => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\RSSFeeds.Gadget\de-DE\RSSFeeds.html => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\RSSFeeds.Gadget\de-DE\settings.html => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\RSSFeeds.Gadget\de-DE\js\RSSFeeds.js => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\RSSFeeds.Gadget\de-DE\js\settings.js => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\RSSFeeds.Gadget\de-DE\css\flyout.css => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\RSSFeeds.Gadget\de-DE\css\RSSFeeds.css => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\RSSFeeds.Gadget\de-DE\css\settings.css => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\PicturePuzzle.Gadget\drag.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\PicturePuzzle.Gadget\icon.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\PicturePuzzle.Gadget\logo.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\PicturePuzzle.Gadget\Images\0.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\PicturePuzzle.Gadget\Images\1.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\PicturePuzzle.Gadget\Images\10.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\PicturePuzzle.Gadget\Images\11.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\PicturePuzzle.Gadget\Images\2.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\PicturePuzzle.Gadget\Images\3.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\PicturePuzzle.Gadget\Images\4.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\PicturePuzzle.Gadget\Images\5.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\PicturePuzzle.Gadget\Images\6.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\PicturePuzzle.Gadget\Images\7.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\PicturePuzzle.Gadget\Images\8.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\PicturePuzzle.Gadget\Images\9.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\PicturePuzzle.Gadget\Images\background.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\PicturePuzzle.Gadget\Images\daisies.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\PicturePuzzle.Gadget\Images\glow.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\PicturePuzzle.Gadget\Images\hint_down.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\PicturePuzzle.Gadget\Images\hint_over.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\PicturePuzzle.Gadget\Images\hint_up.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\PicturePuzzle.Gadget\Images\settings_box_bottom.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\PicturePuzzle.Gadget\Images\settings_box_divider_left.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\PicturePuzzle.Gadget\Images\settings_box_divider_right.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\PicturePuzzle.Gadget\Images\settings_box_left.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\PicturePuzzle.Gadget\Images\settings_box_right.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\PicturePuzzle.Gadget\Images\settings_box_top.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\PicturePuzzle.Gadget\Images\settings_corner_bottom_left.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\PicturePuzzle.Gadget\Images\settings_corner_bottom_right.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\PicturePuzzle.Gadget\Images\settings_corner_top_left.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\PicturePuzzle.Gadget\Images\settings_corner_top_right.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\PicturePuzzle.Gadget\Images\settings_divider.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\PicturePuzzle.Gadget\Images\settings_divider_left.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\PicturePuzzle.Gadget\Images\settings_divider_right.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\PicturePuzzle.Gadget\Images\settings_left_disabled.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\PicturePuzzle.Gadget\Images\settings_left_hover.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\PicturePuzzle.Gadget\Images\settings_left_pressed.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\PicturePuzzle.Gadget\Images\settings_left_rest.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\PicturePuzzle.Gadget\Images\settings_right_disabled.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\PicturePuzzle.Gadget\Images\settings_right_hover.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\PicturePuzzle.Gadget\Images\settings_right_pressed.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\PicturePuzzle.Gadget\Images\settings_right_rest.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\PicturePuzzle.Gadget\Images\setting_back.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\PicturePuzzle.Gadget\Images\shuffle_down.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\PicturePuzzle.Gadget\Images\shuffle_over.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\PicturePuzzle.Gadget\Images\shuffle_up.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\PicturePuzzle.Gadget\Images\tile16.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\PicturePuzzle.Gadget\Images\tile_bezel.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\PicturePuzzle.Gadget\Images\tile_drop_shadow.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\PicturePuzzle.Gadget\Images\timer_down.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\PicturePuzzle.Gadget\Images\timer_over.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\PicturePuzzle.Gadget\Images\timer_up.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\PicturePuzzle.Gadget\de-DE\gadget.xml => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\PicturePuzzle.Gadget\de-DE\picturePuzzle.html => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\PicturePuzzle.Gadget\de-DE\settings.html => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\PicturePuzzle.Gadget\de-DE\js\picturePuzzle.js => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\PicturePuzzle.Gadget\de-DE\js\settings.js => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\PicturePuzzle.Gadget\de-DE\css\picturePuzzle.css => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\PicturePuzzle.Gadget\de-DE\css\settings.css => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Currency.Gadget\drag.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Currency.Gadget\icon.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Currency.Gadget\logo.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Currency.Gadget\images\activity16v.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Currency.Gadget\images\add_down.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Currency.Gadget\images\add_over.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Currency.Gadget\images\add_up.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Currency.Gadget\images\base-docked.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Currency.Gadget\images\base-undocked-2.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Currency.Gadget\images\base-undocked-3.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Currency.Gadget\images\base-undocked-4.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Currency.Gadget\images\combo-hover-left.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Currency.Gadget\images\combo-hover-middle.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Currency.Gadget\images\combo-hover-right.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Currency.Gadget\images\delete_down.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Currency.Gadget\images\delete_over.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Currency.Gadget\images\delete_up.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Currency.Gadget\images\graph_down.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Currency.Gadget\images\graph_over.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Currency.Gadget\images\graph_up.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Currency.Gadget\images\info.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Currency.Gadget\images\row_over.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Currency.Gadget\images\triangle.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Currency.Gadget\de-DE\currency.html => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Currency.Gadget\de-DE\gadget.xml => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Currency.Gadget\de-DE\js\currency.js => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Currency.Gadget\de-DE\js\init.js => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Currency.Gadget\de-DE\js\library.js => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Currency.Gadget\de-DE\js\localizedStrings.js => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Currency.Gadget\de-DE\js\service.js => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Currency.Gadget\de-DE\css\currency.css => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\CPU.Gadget\drag.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\CPU.Gadget\icon.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\CPU.Gadget\logo.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\CPU.Gadget\images\back.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\CPU.Gadget\images\back_lrg.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\CPU.Gadget\images\dial.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\CPU.Gadget\images\dialdot.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\CPU.Gadget\images\dialdot_lrg.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\CPU.Gadget\images\dial_lrg.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\CPU.Gadget\images\dial_lrg_sml.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\CPU.Gadget\images\dial_sml.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\CPU.Gadget\images\glass.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\CPU.Gadget\images\glass_lrg.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\CPU.Gadget\de-DE\cpu.html => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\CPU.Gadget\de-DE\gadget.xml => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\CPU.Gadget\de-DE\js\cpu.js => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\CPU.Gadget\de-DE\css\cpu.css => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Clock.Gadget\drag.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Clock.Gadget\icon.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Clock.Gadget\logo.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Clock.Gadget\images\cronometer.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Clock.Gadget\images\cronometer_dot.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Clock.Gadget\images\cronometer_h.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Clock.Gadget\images\cronometer_m.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Clock.Gadget\images\cronometer_s.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Clock.Gadget\images\cronometer_settings.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Clock.Gadget\images\diner.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Clock.Gadget\images\diner_dot.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Clock.Gadget\images\diner_h.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Clock.Gadget\images\diner_m.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Clock.Gadget\images\diner_s.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Clock.Gadget\images\diner_settings.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Clock.Gadget\images\flower.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Clock.Gadget\images\flower_dot.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Clock.Gadget\images\flower_h.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Clock.Gadget\images\flower_m.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Clock.Gadget\images\flower_s.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Clock.Gadget\images\flower_settings.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Clock.Gadget\images\modern.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Clock.Gadget\images\modern_dot.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Clock.Gadget\images\modern_h.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Clock.Gadget\images\modern_m.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Clock.Gadget\images\modern_s.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Clock.Gadget\images\modern_settings.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Clock.Gadget\images\novelty.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Clock.Gadget\images\novelty_dot.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Clock.Gadget\images\novelty_h.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Clock.Gadget\images\novelty_m.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Clock.Gadget\images\novelty_s.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Clock.Gadget\images\novelty_settings.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Clock.Gadget\images\settings_box_bottom.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Clock.Gadget\images\settings_box_divider_left.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Clock.Gadget\images\settings_box_divider_right.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Clock.Gadget\images\settings_box_left.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Clock.Gadget\images\settings_box_right.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Clock.Gadget\images\settings_box_top.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Clock.Gadget\images\settings_corner_bottom_left.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Clock.Gadget\images\settings_corner_bottom_right.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Clock.Gadget\images\settings_corner_top_left.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Clock.Gadget\images\settings_corner_top_right.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Clock.Gadget\images\settings_divider.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Clock.Gadget\images\settings_divider_left.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Clock.Gadget\images\settings_divider_right.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Clock.Gadget\images\settings_left_disabled.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Clock.Gadget\images\settings_left_hover.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Clock.Gadget\images\settings_left_pressed.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Clock.Gadget\images\settings_left_rest.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Clock.Gadget\images\settings_right_disabled.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Clock.Gadget\images\settings_right_hover.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Clock.Gadget\images\settings_right_pressed.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Clock.Gadget\images\settings_right_rest.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Clock.Gadget\images\spacer_highlights.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Clock.Gadget\images\square.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Clock.Gadget\images\square_dot.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Clock.Gadget\images\square_h.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Clock.Gadget\images\square_m.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Clock.Gadget\images\square_s.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Clock.Gadget\images\square_settings.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Clock.Gadget\images\system.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Clock.Gadget\images\system_dot.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Clock.Gadget\images\system_h.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Clock.Gadget\images\system_m.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Clock.Gadget\images\system_s.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Clock.Gadget\images\system_settings.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Clock.Gadget\images\trad.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Clock.Gadget\images\trad_dot.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Clock.Gadget\images\trad_h.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Clock.Gadget\images\trad_m.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Clock.Gadget\images\trad_s.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Clock.Gadget\images\trad_settings.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Clock.Gadget\de-DE\clock.html => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Clock.Gadget\de-DE\gadget.xml => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Clock.Gadget\de-DE\settings.html => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Clock.Gadget\de-DE\js\clock.js => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Clock.Gadget\de-DE\js\settings.js => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Clock.Gadget\de-DE\js\timeZones.js => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Clock.Gadget\de-DE\css\clock.css => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Clock.Gadget\de-DE\css\settings.css => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Calendar.Gadget\drag.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Calendar.Gadget\icon.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Calendar.Gadget\logo.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Calendar.Gadget\images\bg-desk.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Calendar.Gadget\images\bg-dock.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Calendar.Gadget\images\bg-today.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Calendar.Gadget\images\bNext-disable.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Calendar.Gadget\images\bNext-down.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Calendar.Gadget\images\bNext-hot.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Calendar.Gadget\images\bNext.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Calendar.Gadget\images\bPrev-disable.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Calendar.Gadget\images\bPrev-down.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Calendar.Gadget\images\bPrev-hot.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Calendar.Gadget\images\bPrev.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Calendar.Gadget\images\calendar_double.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Calendar.Gadget\images\calendar_double_bkg.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Calendar.Gadget\images\calendar_double_orange.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Calendar.Gadget\images\calendar_ring_docked.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Calendar.Gadget\images\calendar_single.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Calendar.Gadget\images\calendar_single_bkg.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Calendar.Gadget\images\calendar_single_bkg_orange.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Calendar.Gadget\images\calendar_single_orange.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Calendar.Gadget\images\corner.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Calendar.Gadget\images\curl-hot.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Calendar.Gadget\images\curl.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Calendar.Gadget\images\month.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Calendar.Gadget\images\rings-desk.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Calendar.Gadget\images\rings-dock.png => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Calendar.Gadget\de-DE\calendar.html => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Calendar.Gadget\de-DE\gadget.xml => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Calendar.Gadget\de-DE\js\calendar.js => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\Gadgets\Calendar.Gadget\de-DE\css\calendar.css => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\de-DE\sbdrop.dll.mui => Moved successfully.
C:\Program Files (x86)\Windows Sidebar\de-DE\Sidebar.exe.mui => Moved successfully.
C:\Program Files (x86)\Windows Photo Viewer\ImagingDevices.exe => Moved successfully.
C:\Program Files (x86)\Windows Photo Viewer\ImagingEngine.dll => Moved successfully.
C:\Program Files (x86)\Windows Photo Viewer\PhotoAcq.dll => Moved successfully.
C:\Program Files (x86)\Windows Photo Viewer\PhotoBase.dll => Moved successfully.
C:\Program Files (x86)\Windows Photo Viewer\PhotoViewer.dll => Moved successfully.
C:\Program Files (x86)\Windows Photo Viewer\de-DE\ImagingDevices.exe.mui => Moved successfully.
C:\Program Files (x86)\Windows Photo Viewer\de-DE\PhotoAcq.dll.mui => Moved successfully.
C:\Program Files (x86)\Windows Photo Viewer\de-DE\PhotoViewer.dll.mui => Moved successfully.
C:\Program Files (x86)\Windows NT\TableTextService\TableTextService.dll => Moved successfully.
C:\Program Files (x86)\Windows NT\TableTextService\TableTextServiceAmharic.txt => Moved successfully.
C:\Program Files (x86)\Windows NT\TableTextService\TableTextServiceArray.txt => Moved successfully.
C:\Program Files (x86)\Windows NT\TableTextService\TableTextServiceDaYi.txt => Moved successfully.
C:\Program Files (x86)\Windows NT\TableTextService\TableTextServiceSimplifiedQuanPin.txt => Moved successfully.
C:\Program Files (x86)\Windows NT\TableTextService\TableTextServiceSimplifiedShuangPin.txt => Moved successfully.
C:\Program Files (x86)\Windows NT\TableTextService\TableTextServiceSimplifiedZhengMa.txt => Moved successfully.
C:\Program Files (x86)\Windows NT\TableTextService\TableTextServiceYi.txt => Moved successfully.
C:\Program Files (x86)\Windows NT\TableTextService\de-DE\TableTextService.dll.mui => Moved successfully.
C:\Program Files (x86)\Windows NT\Accessories\wordpad.exe => Moved successfully.
C:\Program Files (x86)\Windows NT\Accessories\WordpadFilter.dll => Moved successfully.
C:\Program Files (x86)\Windows NT\Accessories\de-DE\wordpad.exe.mui => Moved successfully.
C:\Program Files (x86)\Windows Media Player\mpvis.DLL => Moved successfully.
C:\Program Files (x86)\Windows Media Player\oleacc.dll => Moved successfully.
C:\Program Files (x86)\Windows Media Player\setup_wm.exe => Moved successfully.
C:\Program Files (x86)\Windows Media Player\userenv.dll => Moved successfully.
C:\Program Files (x86)\Windows Media Player\wmlaunch.exe => Moved successfully.
C:\Program Files (x86)\Windows Media Player\wmpconfig.exe => Moved successfully.
C:\Program Files (x86)\Windows Media Player\WMPDMC.exe => Moved successfully.
C:\Program Files (x86)\Windows Media Player\WMPDMCCore.dll => Moved successfully.
C:\Program Files (x86)\Windows Media Player\wmpenc.exe => Moved successfully.
C:\Program Files (x86)\Windows Media Player\wmplayer.exe => Moved successfully.
C:\Program Files (x86)\Windows Media Player\WMPMediaSharing.dll => Moved successfully.
C:\Program Files (x86)\Windows Media Player\wmpnssci.dll => Moved successfully.
C:\Program Files (x86)\Windows Media Player\WMPNSSUI.dll => Moved successfully.
C:\Program Files (x86)\Windows Media Player\wmprph.exe => Moved successfully.
C:\Program Files (x86)\Windows Media Player\wmpshare.exe => Moved successfully.
C:\Program Files (x86)\Windows Media Player\Skins\Revert.wmz => Moved successfully.
C:\Program Files (x86)\Windows Media Player\Media Renderer\avtransport.xml => Moved successfully.
C:\Program Files (x86)\Windows Media Player\Media Renderer\connectionmanager_dmr.xml => Moved successfully.
C:\Program Files (x86)\Windows Media Player\Media Renderer\DMR_120.jpg => Moved successfully.
C:\Program Files (x86)\Windows Media Player\Media Renderer\DMR_120.png => Moved successfully.
C:\Program Files (x86)\Windows Media Player\Media Renderer\DMR_48.jpg => Moved successfully.
C:\Program Files (x86)\Windows Media Player\Media Renderer\DMR_48.png => Moved successfully.
C:\Program Files (x86)\Windows Media Player\Media Renderer\RenderingControl.xml => Moved successfully.
C:\Program Files (x86)\Windows Media Player\de-DE\mpvis.dll.mui => Moved successfully.
C:\Program Files (x86)\Windows Media Player\de-DE\setup_wm.exe.mui => Moved successfully.
C:\Program Files (x86)\Windows Media Player\de-DE\wmlaunch.exe.mui => Moved successfully.
C:\Program Files (x86)\Windows Media Player\de-DE\WMPDMC.exe.mui => Moved successfully.
C:\Program Files (x86)\Windows Media Player\de-DE\WMPDMCCore.dll.mui => Moved successfully.
C:\Program Files (x86)\Windows Media Player\de-DE\wmplayer.exe.mui => Moved successfully.
C:\Program Files (x86)\Windows Media Player\de-DE\WMPMediaSharing.dll.mui => Moved successfully.
C:\Program Files (x86)\Windows Media Player\de-DE\wmpnssci.dll.mui => Moved successfully.
C:\Program Files (x86)\Windows Media Player\de-DE\wmpnssui.dll.mui => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\dw15.exe => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Fileinfo.dll => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\mspshell.dll => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\settmp.exe => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\StreamEditor.dll => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\wmasfdist.exe => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\WMCmd.vbs => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\WMdevctl.dll => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\wmeditor.exe => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\wmedque.dll => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\wmenc.exe => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\WMEncAgt.exe => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\WMEncEng.dll => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\wmencloc.dll => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\wmencres.dll => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\wmesrcwp.dll => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\wmex.dll => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\WMexfmwp.dll => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\WMEXres.dll => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\wmfdist.exe => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\wmprevu.dll => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\WMProEdt.exe => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\wmstreamedt.exe => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\wmstypelib.exe => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Settings\d0_cbr_audio_cd.prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Settings\d0_cbr_audio_hdcd.prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Settings\d0_cbr_audio_voice.prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Settings\d0_cbr_high.prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Settings\d0_cbr_low.prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Settings\d0_cbr_medium.prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Settings\d0_vbr_audio_cd.prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Settings\d0_vbr_audio_hdcd.prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Settings\d0_vbr_audio_mc.prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Settings\d0_vbr_hd.prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Settings\d0_vbr_high.prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Settings\d0_vbr_low.prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Settings\d0_vbr_medium.prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Settings\d0_vbr_vhs.prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Settings\d1_vbr_audio_cd.prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Settings\d1_vbr_audio_fm.prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Settings\d1_vbr_audio_hdcd.prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Settings\d1_vbr_audio_mc.prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Settings\d1_vbr_peak_audio_cd.prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Settings\d1_vbr_peak_audio_fm.prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Settings\d1_vbr_peak_audio_hdcd.prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Settings\d1_vbr_peak_audio_mc.prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Settings\d1_vbr_peak_hd.prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Settings\d1_vbr_peak_high.prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Settings\d1_vbr_peak_medium.prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Settings\d1_vbr_peak_vhs.prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Settings\d2_cbr_audio_CD.prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Settings\d2_cbr_audio_FM.prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Settings\d2_cbr_audio_mbr.prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Settings\d2_cbr_audio_multichannel.prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Settings\d2_cbr_audio_voice.prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Settings\d2_cbr_company.prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Settings\d2_cbr_dvd.prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Settings\d2_cbr_film.prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Settings\d2_cbr_fullscreen.prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Settings\d2_cbr_hdvideo.prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Settings\d2_cbr_highspeed.prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Settings\d2_cbr_low.prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Settings\d2_cbr_mbr.prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Settings\d2_cbr_screen.prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Settings\d2_cbr_security.prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Settings\d2_cbr_vhs.prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Settings\d3_cbr_audio_CD.prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Settings\d3_cbr_audio_FM.prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Settings\d3_cbr_audio_multichannel.prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Settings\d3_cbr_audio_voice.prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Settings\d3_cbr_dvd.prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Settings\d3_cbr_film.prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Settings\d3_cbr_fullscreen.prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Settings\d3_cbr_hdvideo.prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Settings\d3_cbr_highspeed.prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Settings\d3_cbr_low.prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Settings\d3_cbr_screen.prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Settings\d3_cbr_vhs.prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Settings\d4_L1_audio.prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Settings\d4_L2_audio.prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Settings\d4_L3_audio.prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Settings\d4_M1_audio.prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Settings\d4_M2_audio.prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Settings\d4_main_high.prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Settings\d4_main_low.prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Settings\d4_main_medium.prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Settings\d4_S1_audio.prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Settings\d4_simple_low.prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Settings\d4_simple_medium.prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Settings\d5_cbr_cd.prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Settings\d5_cbr_pocketpc.prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Settings\d5_cbr_pocketpc_wide.prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Settings\d5_cbr_voice.prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Settings\d6_cbr_CD_audio.prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Settings\d6_cbr_FM_audio.prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Settings\d6_qvbr_100_audio.prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Settings\d6_qvbr_100_video.prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Settings\d6_qvbr_50_audio.prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Settings\d6_qvbr_75_audio.prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Settings\d6_qvbr_75_video.prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Settings\d6_qvbr_90_audio.prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Settings\d6_qvbr_95_video.prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Settings\d6_qvbr_97_video.prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Settings\ScriptHigh.prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Settings\ScriptLow.prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Settings\ScriptMedium.prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Profiles\Neptune_BestQuality.prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Profiles\Neptune_BestQuality_PAL.prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Profiles\Neptune_GoodQuality.prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Profiles\Neptune_GoodQuality_PAL.prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Profiles\Neptune_LowQuality.prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Profiles\Neptune_MediumQuality.prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Profiles\Neptune_MediumQuality_PAL.prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Profiles\schi.prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Profiles\schia.prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Profiles\sclo.prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Profiles\scloa.prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Profiles\scmed.prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Profiles\scmeda.prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Profiles\Ulead - WMV HD 1080 25p.prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Profiles\Ulead - WMV HD 1080 30p.prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Profiles\Ulead - WMV HD 720p NTSC Standard.prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Profiles\Ulead - WMV HD 720p PAL Standard.prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Profiles\Ulead - WMV Pocket PC 320x240 High Quality.prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Profiles\Ulead - WMV Smart Phone (176x144).prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Profiles\Ulead - WMV Smart Phone (220x176).prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Profiles\Ulead - WMV Zune 320x240 High Quality.prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Profiles\Ulead - WMV Zune 640x480 High Quality.prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Profiles\UleadNTSC_GoodQuality.prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Profiles\UleadPAL_GoodQuality.prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Profiles\Ulead_Neptune_BestQuality.prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Profiles\Ulead_Neptune_GoodQuality.prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Profiles\Ulead_Neptune_LowQuality.prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Profiles\Ulead_Neptune_MediumQuality.prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Profiles\Windows Media Audio 9 for Dial-up Modem (32 Kbps).prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Profiles\Windows Media Audio 9 for Dial-up Modem (CD quality 64 Kbps).prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Profiles\Windows Media Audio 9 for Dial-up Modem (FM Radio Stereo 288 Kbps).prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Profiles\Windows Media Audio 9 for Dial-up Modem (Mono 288 Kbps).prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Profiles\Windows Media Audio 9 for Dial-up Modem (Near CD quality 48 Kbps).prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Profiles\Windows Media Audio 9 for ISDN (Better than CD quality 128 Kbps).prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Profiles\Windows Media Audio 9 for ISDN (Better than CD quality 96 Kbps).prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Profiles\Windows Media Video 9 for Color Pocket PCs (150 Kbps).prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Profiles\Windows Media Video 9 for Color Pocket PCs (225 Kbps).prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Profiles\Windows Media Video 9 for Dial-up Modems (56 Kbps).prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Profiles\Windows Media Video 9 for Local Area Network (100 Kbps).prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Profiles\Windows Media Video 9 for Local Area Network (256 Kbps).prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Profiles\Windows Media Video 9 for Local Area Network (384 Kbps).prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\Profiles\Windows Media Video 9 for Local Area Network (768 Kbps).prx => Moved successfully.
C:\Program Files (x86)\Windows Media Components\Encoder\1033\dwintl.dll => Moved successfully.
C:\Program Files (x86)\Windows Mail\msoe.dll => Moved successfully.
C:\Program Files (x86)\Windows Mail\MSOERES.dll => Moved successfully.
C:\Program Files (x86)\Windows Mail\oeimport.dll => Moved successfully.
C:\Program Files (x86)\Windows Mail\wab.exe => Moved successfully.
C:\Program Files (x86)\Windows Mail\wabfind.dll => Moved successfully.
C:\Program Files (x86)\Windows Mail\wabimp.dll => Moved successfully.
C:\Program Files (x86)\Windows Mail\wabmig.exe => Moved successfully.
C:\Program Files (x86)\Windows Mail\WinMail.exe => Moved successfully.
C:\Program Files (x86)\Windows Mail\de-DE\msoeres.dll.mui => Moved successfully.
C:\Program Files (x86)\Windows Mail\de-DE\WinMail.exe.mui => Moved successfully.
C:\Program Files (x86)\Windows Live SkyDrive\Microsoft.Live.Folders.RichUpload.3.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Writer\msidcrl40.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Writer\sqmapi.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Writer\WeblogPost.ico => Moved successfully.
C:\Program Files (x86)\Windows Live\Writer\WindowsLive.Client.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Writer\WindowsLive.Writer.Api.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Writer\WindowsLive.Writer.ApplicationFramework.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Writer\WindowsLive.Writer.BlogClient.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Writer\WindowsLive.Writer.BrowserControl.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Writer\WindowsLive.Writer.Controls.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Writer\WindowsLive.Writer.CoreServices.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Writer\WindowsLive.Writer.Extensibility.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Writer\WindowsLive.Writer.FileDestinations.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Writer\WindowsLive.Writer.HtmlEditor.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Writer\WindowsLive.Writer.HtmlParser.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Writer\WindowsLive.Writer.Instrumentation.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Writer\WindowsLive.Writer.Interop.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Writer\WindowsLive.Writer.Interop.Mshtml.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Writer\WindowsLive.Writer.Interop.SHDocVw.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Writer\WindowsLive.Writer.Localization.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Writer\WindowsLive.Writer.Mshtml.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Writer\WindowsLive.Writer.Passport.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Writer\WindowsLive.Writer.PostEditor.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Writer\WindowsLive.Writer.SpellChecker.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Writer\WindowsLiveLocal.WriterPlugin.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriter.Application.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriter.Application.tlb => Moved successfully.
C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriter.exe => Moved successfully.
C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriter.exe.config => Moved successfully.
C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriter.exe.manifest => Moved successfully.
C:\Program Files (x86)\Windows Live\Writer\WindowsLiveWriter.Filter.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Writer\wlsqm.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Writer\writer.ico => Moved successfully.
C:\Program Files (x86)\Windows Live\Writer\WriterBrowserExtension.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Writer\Dictionaries\mssp7en.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Writer\Dictionaries\mssp7en.lex => Moved successfully.
C:\Program Files (x86)\Windows Live\Writer\Dictionaries\mssp7ge.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Writer\Dictionaries\mssp7GE.lex => Moved successfully.
C:\Program Files (x86)\Windows Live\Writer\de\WindowsLive.Writer.Localization.resources.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Sync\msidcrl40.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Sync\sqmapi.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Sync\WindowsLiveSync.exe => Moved successfully.
C:\Program Files (x86)\Windows Live\Sync\WindowsLiveSync.Resource.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Photo Gallery\ImagingDevice.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Photo Gallery\ImagingServices.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Photo Gallery\MetadataSys.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Photo Gallery\Microsoft.WindowsLive.PublishPlugins.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Photo Gallery\MicrosoftEffects.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Photo Gallery\msidcrl40.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Photo Gallery\PhotoViewerShim.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Photo Gallery\PhotoViewerShimx64.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Photo Gallery\PublishPluginsInterop.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Photo Gallery\RegRes.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Photo Gallery\sqmapi.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Photo Gallery\UXCalendar.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Photo Gallery\UXContacts.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Photo Gallery\UXCore.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Photo Gallery\WLDCore.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Photo Gallery\WLXAlbumDownloadWizard.exe => Moved successfully.
C:\Program Files (x86)\Windows Live\Photo Gallery\wlxclip.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Photo Gallery\WLXDSPA.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Photo Gallery\WLXGrinderScheduler.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Photo Gallery\WLXImageTranscode.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Photo Gallery\WLXMediaPublishSubscribe.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Photo Gallery\WLXPhotoAcq.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Photo Gallery\WLXPhotoAcquireWizard.exe => Moved successfully.
C:\Program Files (x86)\Windows Live\Photo Gallery\WLXPhotoBase.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Photo Gallery\WLXPhotoCinematic.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Photo Gallery\WLXPhotoClassic.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Photo Gallery\WLXPhotoGallery.exe => Moved successfully.
C:\Program Files (x86)\Windows Live\Photo Gallery\WLXPhotoGalleryRepair.exe => Moved successfully.
C:\Program Files (x86)\Windows Live\Photo Gallery\WLXPhotoLibraryDatabase.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Photo Gallery\WLXPhotoLibraryDuiResources.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Photo Gallery\WLXPhotoLibraryDuiResourcesLocalized.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Photo Gallery\WLXPhotoLibraryMain.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Photo Gallery\WLXPhotoLibraryResources.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Photo Gallery\WLXPhotoSqm.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Photo Gallery\WLXPhotoViewer.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Photo Gallery\WLXPhotoVoyager.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Photo Gallery\WLXPipeline.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Photo Gallery\WLXPipetran.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Photo Gallery\WLXQuickTimeControlHost.exe => Moved successfully.
C:\Program Files (x86)\Windows Live\Photo Gallery\WLXQuickTimeControlHostPS.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Photo Gallery\WLXQuickTimeShellExt.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Photo Gallery\WLXSendMail.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Photo Gallery\WLXSlideshow.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Photo Gallery\WLXThumbCache.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Photo Gallery\WLXVAFilt.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Photo Gallery\WLXVideoAcquireWizard.exe => Moved successfully.
C:\Program Files (x86)\Windows Live\Photo Gallery\WLXVideoCameraAutoPlayManager.exe => Moved successfully.
C:\Program Files (x86)\Windows Live\Photo Gallery\WLXVideoTrim.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Messenger\custsat.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Messenger\liveNatTrav.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Messenger\livetransport.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Messenger\msgrapp.14.0.8117.0416.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Messenger\msgsc.14.0.8117.0416.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Messenger\msgslang.14.0.8117.0416.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Messenger\msgsres.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Messenger\msgswcam.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Messenger\msidcrl40.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe => Moved successfully.
C:\Program Files (x86)\Windows Live\Messenger\msvs.exe => Moved successfully.
C:\Program Files (x86)\Windows Live\Messenger\msvsui.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Messenger\PresenceIM.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Messenger\psmsong.14.0.8117.0416.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Messenger\rtmpltfm.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Messenger\sqmapi.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Messenger\uccapi.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Messenger\uccapires.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Messenger\uxcalendar.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Messenger\uxcontacts.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Messenger\uxcore.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Messenger\vvpltfrm.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Messenger\wlchtc.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Messenger\wlcsdk.exe => Moved successfully.
C:\Program Files (x86)\Windows Live\Messenger\wlcstart.exe => Moved successfully.
C:\Program Files (x86)\Windows Live\Messenger\wlcui.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Messenger\wlcuires.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Messenger\wldcore.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Messenger\wldlog.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Messenger\wmaecdmort.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Messenger\wmv9vcm.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Mail\ABImport.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Mail\actorbas.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Mail\adorner.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Mail\aimg.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Mail\alayout.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Mail\canproxy.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Mail\canvas.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Mail\cnvsshrd.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Mail\dgeneral.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Mail\mailacct.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Mail\mailcomm.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Mail\mailimp.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Mail\maillang.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Mail\mailres2.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Mail\mailrt2.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Mail\msidcrl40.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Mail\msmail.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Mail\piBase.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Mail\piOrg.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Mail\smapi.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Mail\sqmapi.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Mail\ucspell.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Mail\uxcalendar.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Mail\uxcontacts.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Mail\uxcore.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Mail\wab32res.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Mail\wabapi.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Mail\wcics.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Mail\wcstore.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Mail\wcstoreproxy.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Mail\wcsync.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Mail\wldcore.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Mail\wldlog.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Mail\wlmail.exe => Moved successfully.
C:\Program Files (x86)\Windows Live\Mail\wlmfilter.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Mail\Stationery\Desktop.ini => Moved successfully.
C:\Program Files (x86)\Windows Live\Mail\Proof\prf0009\7\mssp7en.DLL => Moved successfully.
C:\Program Files (x86)\Windows Live\Mail\Proof\prf0009\7\mssp7en.lex => Moved successfully.
C:\Program Files (x86)\Windows Live\Mail\Proof\prf0009\7\spell.ini => Moved successfully.
C:\Program Files (x86)\Windows Live\Mail\Proof\prf0007\7\mssp7ge.DLL => Moved successfully.
C:\Program Files (x86)\Windows Live\Mail\Proof\prf0007\7\mssp7gea.lex => Moved successfully.
C:\Program Files (x86)\Windows Live\Mail\Proof\prf0007\7\spell.ini => Moved successfully.
C:\Program Files (x86)\Windows Live\Installer\wlarp.exe => Moved successfully.
C:\Program Files (x86)\Windows Live\Installer\wloobe.exe => Moved successfully.
C:\Program Files (x86)\Windows Live\Installer\wlsres.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Contacts\abssm.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Contacts\conproxy.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Contacts\consync.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Contacts\contact.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Contacts\lmcdata.dll => Moved successfully.
C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe => Moved successfully.
C:\Program Files (x86)\Windows Live\Contacts\wldlog.dll => Moved successfully.
C:\Program Files (x86)\Windows Defender\MpAsDesc.dll => Moved successfully.
C:\Program Files (x86)\Windows Defender\MpClient.dll => Moved successfully.
C:\Program Files (x86)\Windows Defender\MpOAV.dll => Moved successfully.
C:\Program Files (x86)\Windows Defender\MsMpLics.dll => Moved successfully.
C:\Program Files (x86)\Windows Defender\de-DE\MpAsDesc.dll.mui => Moved successfully.
C:\Program Files (x86)\Windows Defender\de-DE\MpEvMsg.dll.mui => Moved successfully.
C:\Program Files (x86)\Winamp Detect\iewachk.dll => Moved successfully.
C:\Program Files (x86)\Winamp Detect\UninstWaDetect.exe => Moved successfully.
C:\Program Files (x86)\Winamp\burnlib.dll => Moved successfully.
C:\Program Files (x86)\Winamp\Elevator.exe => Moved successfully.
C:\Program Files (x86)\Winamp\elevatorps.dll => Moved successfully.
C:\Program Files (x86)\Winamp\install.ini => Moved successfully.
C:\Program Files (x86)\Winamp\libFLAC.dll => Moved successfully.
C:\Program Files (x86)\Winamp\libmp4v2.dll => Moved successfully.
C:\Program Files (x86)\Winamp\libsndfile.dll => Moved successfully.
C:\Program Files (x86)\Winamp\nde.dll => Moved successfully.
C:\Program Files (x86)\Winamp\nsutil.dll => Moved successfully.
C:\Program Files (x86)\Winamp\paths.ini => Moved successfully.
C:\Program Files (x86)\Winamp\pconfig.dcf => Moved successfully.
C:\Program Files (x86)\Winamp\pxsdkpls.DLL => Moved successfully.
C:\Program Files (x86)\Winamp\tataki.dll => Moved successfully.
C:\Program Files (x86)\Winamp\UninstWA.exe => Moved successfully.
C:\Program Files (x86)\Winamp\winamp.exe => Moved successfully.
C:\Program Files (x86)\Winamp\winampa.exe => Moved successfully.
C:\Program Files (x86)\Winamp\zlib.dll => Moved successfully.
C:\Program Files (x86)\Winamp\System\aacdec.wbm => Moved successfully.
C:\Program Files (x86)\Winamp\System\adpcm.wbm => Moved successfully.
C:\Program Files (x86)\Winamp\System\h264.wbm => Moved successfully.
C:\Program Files (x86)\Winamp\System\mp4v.wbm => Moved successfully.
C:\Program Files (x86)\Winamp\System\pcm.wbm => Moved successfully.
C:\Program Files (x86)\Winamp\System\theora.wbm => Moved successfully.
C:\Program Files (x86)\Winamp\System\vlb.wbm => Moved successfully.
C:\Program Files (x86)\Winamp\System\vp6.wbm => Moved successfully.
C:\Program Files (x86)\Winamp\System\vp8.wbm => Moved successfully.
C:\Program Files (x86)\Winamp\Plugins\dsp_sps.dll => Moved successfully.
C:\Program Files (x86)\Winamp\Plugins\enc_fhgaac.dll => Moved successfully.
C:\Program Files (x86)\Winamp\Plugins\enc_flac.dll => Moved successfully.
C:\Program Files (x86)\Winamp\Plugins\enc_lame.dll => Moved successfully.
C:\Program Files (x86)\Winamp\Plugins\enc_vorbis.dll => Moved successfully.
C:\Program Files (x86)\Winamp\Plugins\enc_wav.dll => Moved successfully.
C:\Program Files (x86)\Winamp\Plugins\enc_wma.dll => Moved successfully.
C:\Program Files (x86)\Winamp\Plugins\gen_ff.dll => Moved successfully.
C:\Program Files (x86)\Winamp\Plugins\gen_hotkeys.dll => Moved successfully.
C:\Program Files (x86)\Winamp\Plugins\gen_jumpex.dll => Moved successfully.
C:\Program Files (x86)\Winamp\Plugins\gen_ml.dll => Moved successfully.
C:\Program Files (x86)\Winamp\Plugins\gen_orgler.dll => Moved successfully.
C:\Program Files (x86)\Winamp\Plugins\gen_tray.dll => Moved successfully.
C:\Program Files (x86)\Winamp\Plugins\in_avi.dll => Moved successfully.
C:\Program Files (x86)\Winamp\Plugins\in_cdda.dll => Moved successfully.
C:\Program Files (x86)\Winamp\Plugins\in_dshow.dll => Moved successfully.
C:\Program Files (x86)\Winamp\Plugins\in_flac.dll => Moved successfully.
C:\Program Files (x86)\Winamp\Plugins\in_flv.dll => Moved successfully.
C:\Program Files (x86)\Winamp\Plugins\in_linein.dll => Moved successfully.
C:\Program Files (x86)\Winamp\Plugins\in_midi.dll => Moved successfully.
C:\Program Files (x86)\Winamp\Plugins\in_mkv.dll => Moved successfully.
C:\Program Files (x86)\Winamp\Plugins\in_mod.dll => Moved successfully.
C:\Program Files (x86)\Winamp\Plugins\in_mp3.dll => Moved successfully.
C:\Program Files (x86)\Winamp\Plugins\in_mp4.dll => Moved successfully.
C:\Program Files (x86)\Winamp\Plugins\in_nsv.dll => Moved successfully.
C:\Program Files (x86)\Winamp\Plugins\in_swf.dll => Moved successfully.
C:\Program Files (x86)\Winamp\Plugins\in_vorbis.dll => Moved successfully.
C:\Program Files (x86)\Winamp\Plugins\in_wave.dll => Moved successfully.
C:\Program Files (x86)\Winamp\Plugins\in_wm.dll => Moved successfully.
C:\Program Files (x86)\Winamp\Plugins\lame_enc.dll => Moved successfully.
C:\Program Files (x86)\Winamp\Plugins\ml_addons.dll => Moved successfully.
C:\Program Files (x86)\Winamp\Plugins\ml_autotag.dll => Moved successfully.
C:\Program Files (x86)\Winamp\Plugins\ml_bookmarks.dll => Moved successfully.
C:\Program Files (x86)\Winamp\Plugins\ml_devices.dll => Moved successfully.
C:\Program Files (x86)\Winamp\Plugins\ml_disc.dll => Moved successfully.
C:\Program Files (x86)\Winamp\Plugins\ml_downloads.dll => Moved successfully.
C:\Program Files (x86)\Winamp\Plugins\ml_history.dll => Moved successfully.
C:\Program Files (x86)\Winamp\Plugins\ml_impex.dll => Moved successfully.
C:\Program Files (x86)\Winamp\Plugins\ml_local.dll => Moved successfully.
C:\Program Files (x86)\Winamp\Plugins\ml_nowplaying.dll => Moved successfully.
C:\Program Files (x86)\Winamp\Plugins\ml_online.dll => Moved successfully.
C:\Program Files (x86)\Winamp\Plugins\ml_playlists.dll => Moved successfully.
C:\Program Files (x86)\Winamp\Plugins\ml_plg.dll => Moved successfully.
C:\Program Files (x86)\Winamp\Plugins\ml_pmp.dll => Moved successfully.
C:\Program Files (x86)\Winamp\Plugins\ml_rg.dll => Moved successfully.
C:\Program Files (x86)\Winamp\Plugins\ml_transcode.dll => Moved successfully.
C:\Program Files (x86)\Winamp\Plugins\ml_wire.dll => Moved successfully.
C:\Program Files (x86)\Winamp\Plugins\nsvdec_vp3.dll => Moved successfully.
C:\Program Files (x86)\Winamp\Plugins\nsvdec_vp5.dll => Moved successfully.
C:\Program Files (x86)\Winamp\Plugins\out_disk.dll => Moved successfully.
C:\Program Files (x86)\Winamp\Plugins\out_ds.dll => Moved successfully.
C:\Program Files (x86)\Winamp\Plugins\out_wave.dll => Moved successfully.
C:\Program Files (x86)\Winamp\Plugins\pmp_activesync.dll => Moved successfully.
C:\Program Files (x86)\Winamp\Plugins\pmp_android.dll => Moved successfully.
C:\Program Files (x86)\Winamp\Plugins\pmp_ipod.dll => Moved successfully.
C:\Program Files (x86)\Winamp\Plugins\pmp_njb.dll => Moved successfully.
C:\Program Files (x86)\Winamp\Plugins\pmp_p4s.dll => Moved successfully.
C:\Program Files (x86)\Winamp\Plugins\pmp_usb.dll => Moved successfully.
C:\Program Files (x86)\Winamp\Plugins\pmp_wifi.dll => Moved successfully.
C:\Program Files (x86)\Winamp\Plugins\read_file.dll => Moved successfully.
C:\Program Files (x86)\Winamp\Plugins\ReplayGainAnalysis.dll => Moved successfully.
C:\Program Files (x86)\Winamp\Plugins\tataki.dll => Moved successfully.
C:\Program Files (x86)\Winamp\Plugins\vis_avs.dll => Moved successfully.
C:\Program Files (x86)\Winamp\Plugins\vis_milk2.dll => Moved successfully.
C:\Program Files (x86)\Winamp\Plugins\vis_nsfs.dll => Moved successfully.
C:\Program Files (x86)\Winamp\Plugins\Milkdrop2\data\vms_desktop.dll => Moved successfully.
C:\Program Files (x86)\Winamp\Plugins\Gracenote\CDDBControlWinamp.dll => Moved successfully.
C:\Program Files (x86)\Winamp\Plugins\Gracenote\CddbMusicIDWinamp.dll => Moved successfully.
C:\Program Files (x86)\Winamp\Plugins\Gracenote\CddbPlaylist2Winamp.dll => Moved successfully.
C:\Program Files (x86)\Winamp\Plugins\Gracenote\CDDBUIWinamp.dll => Moved successfully.
C:\Program Files (x86)\Winamp\Plugins\Gracenote\CddbWOManagerWinamp.dll => Moved successfully.
C:\Program Files (x86)\Winamp\Plugins\Gracenote\Cddbx1.dll => Moved successfully.
C:\Program Files (x86)\Winamp\Plugins\Gracenote\Cddbx2.dll => Moved successfully.
C:\Program Files (x86)\Winamp\Plugins\Gracenote\Cddbx3.dll => Moved successfully.
C:\Program Files (x86)\Winamp\Plugins\Gracenote\Cddbx4.dll => Moved successfully.
C:\Program Files (x86)\Winamp\Plugins\Gracenote\Cddbx5.dll => Moved successfully.
C:\Program Files (x86)\Winamp\Plugins\freeform\xml\wasabi\Scripts\debug.sym => Moved successfully.
C:\Program Files (x86)\Winamp\Plugins\freeform\xml\about\BarcodeFont.ttf => Moved successfully.
C:\Program Files (x86)\Winamp\Microsoft.VC90.CRT\Microsoft.VC90.CRT.manifest => Moved successfully.
C:\Program Files (x86)\Winamp\Microsoft.VC90.CRT\msvcr90.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\axvlc.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\axvlc.dll.manifest => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\libvlc.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\libvlccore.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll.manifest => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\uninstall.exe => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\vlc-cache-gen.exe => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\vlc.exe => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\vlc.exe.manifest => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\skins\fonts\FreeSans.ttf => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\skins\fonts\FreeSansBold.ttf => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\visualization\libgoom_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\visualization\libprojectm_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\visualization\libvisual_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\video_output\libcaca_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\video_output\libdirect2d_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\video_output\libdirect3d_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\video_output\libdirectx_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\video_output\libdrawable_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\video_output\libglwin32_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\video_output\libvdummy_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\video_output\libvmem_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\video_output\libwingdi_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\video_output\libyuv_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\video_filter\libadjust_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\video_filter\libalphamask_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\video_filter\libantiflicker_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\video_filter\libatmo_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\video_filter\libaudiobargraph_v_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\video_filter\libball_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\video_filter\libblendbench_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\video_filter\libblend_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\video_filter\libbluescreen_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\video_filter\libcanvas_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\video_filter\libchain_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\video_filter\libclone_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\video_filter\libcolorthres_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\video_filter\libcroppadd_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\video_filter\libdeinterlace_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\video_filter\liberase_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\video_filter\libextract_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\video_filter\libgaussianblur_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\video_filter\libgradfun_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\video_filter\libgradient_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\video_filter\libgrain_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\video_filter\libhqdn3d_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\video_filter\libinvert_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\video_filter\liblogo_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\video_filter\libmagnify_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\video_filter\libmarq_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\video_filter\libmirror_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\video_filter\libmosaic_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\video_filter\libmotionblur_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\video_filter\libmotiondetect_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\video_filter\libosdmenu_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\video_filter\libpanoramix_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\video_filter\libposterize_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\video_filter\libpostproc_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\video_filter\libpsychedelic_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\video_filter\libpuzzle_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\video_filter\libremoteosd_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\video_filter\libripple_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\video_filter\librotate_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\video_filter\librss_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\video_filter\libscale_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\video_filter\libscene_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\video_filter\libsepia_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\video_filter\libsharpen_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\video_filter\libsubsdelay_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\video_filter\libswscale_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\video_filter\libtransform_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\video_filter\libwall_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\video_filter\libwave_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\video_filter\libyuvp_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\video_chroma\libgrey_yuv_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\video_chroma\libi420_rgb_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\video_chroma\libi420_yuy2_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\video_chroma\libi422_i420_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\video_chroma\libi422_yuy2_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\video_chroma\librv32_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\video_chroma\libyuy2_i420_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\video_chroma\libyuy2_i422_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\text_renderer\libfreetype_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\text_renderer\libtdummy_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\stream_out\libstream_out_autodel_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\stream_out\libstream_out_bridge_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\stream_out\libstream_out_delay_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\stream_out\libstream_out_description_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\stream_out\libstream_out_display_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\stream_out\libstream_out_dummy_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\stream_out\libstream_out_duplicate_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\stream_out\libstream_out_es_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\stream_out\libstream_out_gather_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\stream_out\libstream_out_langfromtelx_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\stream_out\libstream_out_mosaic_bridge_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\stream_out\libstream_out_raop_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\stream_out\libstream_out_record_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\stream_out\libstream_out_rtp_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\stream_out\libstream_out_select_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\stream_out\libstream_out_setid_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\stream_out\libstream_out_smem_plugin.dll => Moved successfully.
         

Alt 15.09.2013, 17:16   #13
k.karl
 
Trojaner TR/Fakeadb.A - Standard

Trojaner TR/Fakeadb.A



hier noch der zweite Teil vom heutigen Fixlog! (und da habe ich einen Teil weggelassen, weil sichs sonst nicht ausgeht mit der Code-Länge)


Code:
ATTFilter
C:\Program Files (x86)\VideoLAN\VLC\plugins\audio_filter\libheadphone_channel_mixer_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\audio_filter\libkaraoke_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\audio_filter\libmono_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\audio_filter\libmpgatofixed32_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\audio_filter\libnormvol_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\audio_filter\libparam_eq_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\audio_filter\libsamplerate_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\audio_filter\libscaletempo_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\audio_filter\libsimple_channel_mixer_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\audio_filter\libspatializer_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\audio_filter\libspeex_resampler_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\audio_filter\libtrivial_channel_mixer_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\audio_filter\libugly_resampler_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\access_output\libaccess_output_dummy_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\access_output\libaccess_output_file_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\access_output\libaccess_output_http_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\access_output\libaccess_output_livehttp_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\access_output\libaccess_output_shout_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\access_output\libaccess_output_udp_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\access\libaccess_attachment_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\access\libaccess_bd_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\access\libaccess_ftp_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\access\libaccess_http_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\access\libaccess_imem_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\access\libaccess_mms_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\access\libaccess_rar_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\access\libaccess_realrtsp_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\access\libaccess_smb_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\access\libaccess_tcp_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\access\libaccess_udp_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\access\libaccess_vdr_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\access\libcdda_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\access\libdshow_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\access\libdtv_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\access\libdvdnav_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\access\libdvdread_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\access\libfilesystem_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\access\libidummy_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\access\liblibbluray_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\access\librtp_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\access\libscreen_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\access\libsdp_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\access\libstream_filter_rar_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\access\libvcd_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\access\libzip_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\plugins\3dnow\libmemcpy3dn_plugin.dll => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\osdmenu\default.cfg => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\lua\http\favicon.ico => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\lua\http\old\js\functions.js => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\lua\http\old\js\vlm.js => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\lua\http\js\common.js => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\lua\http\js\controlers.js => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\lua\http\js\jquery-1.5.1.min.js => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\lua\http\js\jquery-ui-1.8.13.custom.min.js => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\lua\http\js\jquery.jstree.js => Moved successfully.
C:\Program Files (x86)\VideoLAN\VLC\lua\http\js\ui.js => Moved successfully.
C:\Program Files (x86)\Verbatim GREEN BUTTON\GREEN BUTTON.exe => Moved successfully.
C:\Program Files (x86)\Verbatim GREEN BUTTON\SetupHelp.exe => Moved successfully.
C:\Program Files (x86)\Verbatim GREEN BUTTON\unins000.exe => Moved successfully.
C:\Program Files (x86)\Ubisoft\Register\register.exe => Moved successfully.
C:\Program Files (x86)\Ubisoft\Register\schedule.exe => Moved successfully.
C:\Program Files (x86)\Tor\tor.exe => Moved successfully.
C:\Program Files (x86)\TeamViewer\Version7\TeamViewer.exe => Moved successfully.
Could not move "C:\Program Files (x86)\TeamViewer\Version7\TeamViewer7_Logfile.log" => Scheduled to move on reboot.
C:\Program Files (x86)\TeamViewer\Version7\TeamViewer_Desktop.exe => Moved successfully.
C:\Program Files (x86)\TeamViewer\Version7\TeamViewer_Resource_ar.dll => Moved successfully.
C:\Program Files (x86)\TeamViewer\Version7\TeamViewer_Resource_bg.dll => Moved successfully.
C:\Program Files (x86)\TeamViewer\Version7\TeamViewer_Resource_cs.dll => Moved successfully.
C:\Program Files (x86)\TeamViewer\Version7\TeamViewer_Resource_da.dll => Moved successfully.
C:\Program Files (x86)\TeamViewer\Version7\TeamViewer_Resource_de.dll => Moved successfully.
C:\Program Files (x86)\TeamViewer\Version7\TeamViewer_Resource_el.dll => Moved successfully.
C:\Program Files (x86)\TeamViewer\Version7\TeamViewer_Resource_en.dll => Moved successfully.
C:\Program Files (x86)\TeamViewer\Version7\TeamViewer_Resource_es.dll => Moved successfully.
C:\Program Files (x86)\TeamViewer\Version7\TeamViewer_Resource_fi.dll => Moved successfully.
C:\Program Files (x86)\TeamViewer\Version7\TeamViewer_Resource_fr.dll => Moved successfully.
C:\Program Files (x86)\TeamViewer\Version7\TeamViewer_Resource_he.dll => Moved successfully.
C:\Program Files (x86)\TeamViewer\Version7\TeamViewer_Resource_hr.dll => Moved successfully.
C:\Program Files (x86)\TeamViewer\Version7\TeamViewer_Resource_hu.dll => Moved successfully.
C:\Program Files (x86)\TeamViewer\Version7\TeamViewer_Resource_id.dll => Moved successfully.
C:\Program Files (x86)\TeamViewer\Version7\TeamViewer_Resource_it.dll => Moved successfully.
C:\Program Files (x86)\TeamViewer\Version7\TeamViewer_Resource_ja.dll => Moved successfully.
C:\Program Files (x86)\TeamViewer\Version7\TeamViewer_Resource_ko.dll => Moved successfully.
C:\Program Files (x86)\TeamViewer\Version7\TeamViewer_Resource_lt.dll => Moved successfully.
C:\Program Files (x86)\TeamViewer\Version7\TeamViewer_Resource_nl.dll => Moved successfully.
C:\Program Files (x86)\TeamViewer\Version7\TeamViewer_Resource_no.dll => Moved successfully.
C:\Program Files (x86)\TeamViewer\Version7\TeamViewer_Resource_pl.dll => Moved successfully.
C:\Program Files (x86)\TeamViewer\Version7\TeamViewer_Resource_pt.dll => Moved successfully.
C:\Program Files (x86)\TeamViewer\Version7\TeamViewer_Resource_ro.dll => Moved successfully.
C:\Program Files (x86)\TeamViewer\Version7\TeamViewer_Resource_ru.dll => Moved successfully.
C:\Program Files (x86)\TeamViewer\Version7\TeamViewer_Resource_sk.dll => Moved successfully.
C:\Program Files (x86)\TeamViewer\Version7\TeamViewer_Resource_sr.dll => Moved successfully.
C:\Program Files (x86)\TeamViewer\Version7\TeamViewer_Resource_sv.dll => Moved successfully.
C:\Program Files (x86)\TeamViewer\Version7\TeamViewer_Resource_th.dll => Moved successfully.
C:\Program Files (x86)\TeamViewer\Version7\TeamViewer_Resource_tr.dll => Moved successfully.
C:\Program Files (x86)\TeamViewer\Version7\TeamViewer_Resource_uk.dll => Moved successfully.
C:\Program Files (x86)\TeamViewer\Version7\TeamViewer_Resource_vi.dll => Moved successfully.
C:\Program Files (x86)\TeamViewer\Version7\TeamViewer_Resource_zhCN.dll => Moved successfully.
C:\Program Files (x86)\TeamViewer\Version7\TeamViewer_Resource_zhTW.dll => Moved successfully.
C:\Program Files (x86)\TeamViewer\Version7\TeamViewer_Service.exe => Moved successfully.
C:\Program Files (x86)\TeamViewer\Version7\TeamViewer_StaticRes.dll => Moved successfully.
C:\Program Files (x86)\TeamViewer\Version7\tv_w32.dll => Moved successfully.
C:\Program Files (x86)\TeamViewer\Version7\tv_w32.exe => Moved successfully.
C:\Program Files (x86)\TeamViewer\Version7\tv_x64.dll => Moved successfully.
C:\Program Files (x86)\TeamViewer\Version7\tv_x64.exe => Moved successfully.
C:\Program Files (x86)\TeamViewer\Version7\uninstall.exe => Moved successfully.
C:\Program Files (x86)\TeamViewer\Version7\x64\teamviewervpn.cat => Moved successfully.
C:\Program Files (x86)\TeamViewer\Version7\x64\TeamViewerVPN.inf => Moved successfully.
C:\Program Files (x86)\TeamViewer\Version7\x64\tvmonitor.cat => Moved successfully.
C:\Program Files (x86)\TeamViewer\Version7\x64\TVMonitor.inf => Moved successfully.
C:\Program Files (x86)\Symantec\Norton Online Backup\ARA.exe => Moved successfully.
C:\Program Files (x86)\Symantec\Norton Online Backup\ara_config.ini => Moved successfully.
C:\Program Files (x86)\Symantec\Norton Online Backup\BuEng.dll => Moved successfully.
C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe => Moved successfully.
C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuClient.exe => Moved successfully.
C:\Program Files (x86)\Symantec\Norton Online Backup\zh-CHT\ARA.resources.dll => Moved successfully.
C:\Program Files (x86)\Symantec\Norton Online Backup\zh-CHS\ARA.resources.dll => Moved successfully.
C:\Program Files (x86)\Symantec\Norton Online Backup\tr\ARA.resources.dll => Moved successfully.
C:\Program Files (x86)\Symantec\Norton Online Backup\sv\ARA.resources.dll => Moved successfully.
C:\Program Files (x86)\Symantec\Norton Online Backup\ru\ARA.resources.dll => Moved successfully.
C:\Program Files (x86)\Symantec\Norton Online Backup\pt-PT\ARA.resources.dll => Moved successfully.
C:\Program Files (x86)\Symantec\Norton Online Backup\pt-BR\ARA.resources.dll => Moved successfully.
C:\Program Files (x86)\Symantec\Norton Online Backup\pl\ARA.resources.dll => Moved successfully.
C:\Program Files (x86)\Symantec\Norton Online Backup\no\ARA.resources.dll => Moved successfully.
C:\Program Files (x86)\Symantec\Norton Online Backup\nl\ARA.resources.dll => Moved successfully.
C:\Program Files (x86)\Symantec\Norton Online Backup\ko\ARA.resources.dll => Moved successfully.
C:\Program Files (x86)\Symantec\Norton Online Backup\ja\ARA.resources.dll => Moved successfully.
C:\Program Files (x86)\Symantec\Norton Online Backup\it\ARA.resources.dll => Moved successfully.
C:\Program Files (x86)\Symantec\Norton Online Backup\hu\ARA.resources.dll => Moved successfully.
C:\Program Files (x86)\Symantec\Norton Online Backup\fr\ARA.resources.dll => Moved successfully.
C:\Program Files (x86)\Symantec\Norton Online Backup\fi\ARA.resources.dll => Moved successfully.
C:\Program Files (x86)\Symantec\Norton Online Backup\es\ARA.resources.dll => Moved successfully.
C:\Program Files (x86)\Symantec\Norton Online Backup\de\ARA.resources.dll => Moved successfully.
C:\Program Files (x86)\Symantec\Norton Online Backup\da\ARA.resources.dll => Moved successfully.
C:\Program Files (x86)\Symantec\Norton Online Backup\cs\ARA.resources.dll => Moved successfully.
C:\Program Files (x86)\SpywareBlaster\MSCOMCTL.OCX => Moved successfully.
C:\Program Files (x86)\SpywareBlaster\sbautoupdate.exe => Moved successfully.
C:\Program Files (x86)\SpywareBlaster\sburlhelper.exe => Moved successfully.
C:\Program Files (x86)\SpywareBlaster\spywareblaster.exe => Moved successfully.
C:\Program Files (x86)\SpywareBlaster\SQLite3SB.dll => Moved successfully.
C:\Program Files (x86)\SpywareBlaster\unins000.exe => Moved successfully.
C:\Program Files (x86)\SpeedFan\speedfanevents.cfg => Moved successfully.
C:\Program Files (x86)\SopCast\dbghelp.dll => Moved successfully.
C:\Program Files (x86)\SopCast\Diagnose.exe => Moved successfully.
C:\Program Files (x86)\SopCast\install.bat => Moved successfully.
C:\Program Files (x86)\SopCast\SopCast.exe => Moved successfully.
C:\Program Files (x86)\SopCast\sopocx.ocx => Moved successfully.
C:\Program Files (x86)\SopCast\uninst.exe => Moved successfully.
C:\Program Files (x86)\SopCast\uninstall.bat => Moved successfully.
C:\Program Files (x86)\SopCast\StreamServer\msvcr71.dll => Moved successfully.
C:\Program Files (x86)\SopCast\StreamServer\StreamServer.exe => Moved successfully.
C:\Program Files (x86)\SopCast\StreamServer\plugins\libaccess_output_http_plugin.dll => Moved successfully.
C:\Program Files (x86)\SopCast\StreamServer\plugins\plugin_access_file.dll => Moved successfully.
C:\Program Files (x86)\SopCast\StreamServer\plugins\plugin_access_ftp.dll => Moved successfully.
C:\Program Files (x86)\SopCast\StreamServer\plugins\plugin_access_http.dll => Moved successfully.
C:\Program Files (x86)\SopCast\StreamServer\plugins\plugin_access_mms.dll => Moved successfully.
C:\Program Files (x86)\SopCast\StreamServer\plugins\plugin_asf.dll => Moved successfully.
C:\Program Files (x86)\SopCast\StreamServer\plugins\plugin_demuxdump.dll => Moved successfully.
C:\Program Files (x86)\SopCast\StreamServer\plugins\plugin_dummy.dll => Moved successfully.
C:\Program Files (x86)\SopCast\StreamServer\plugins\plugin_hotkeys.dll => Moved successfully.
C:\Program Files (x86)\SopCast\StreamServer\plugins\plugin_ipv4.dll => Moved successfully.
C:\Program Files (x86)\SopCast\StreamServer\plugins\plugin_memcpy.dll => Moved successfully.
C:\Program Files (x86)\SopCast\StreamServer\plugins\plugin_mux_asf.dll => Moved successfully.
C:\Program Files (x86)\SopCast\StreamServer\plugins\plugin_packetizer_copy.dll => Moved successfully.
C:\Program Files (x86)\SopCast\StreamServer\plugins\plugin_rc.dll => Moved successfully.
C:\Program Files (x86)\SopCast\CrashReport\XCrashReport.exe => Moved successfully.
C:\Program Files (x86)\SopCast\codec\sop.ocx => Moved successfully.
C:\Program Files (x86)\SopCast\adv\sopadv.dll => Moved successfully.
C:\Program Files (x86)\Skype\desktop.ini => Moved successfully.
C:\Program Files (x86)\Skype\Updater\Updater.dll => Moved successfully.
C:\Program Files (x86)\Skype\Updater\Updater.exe => Moved successfully.
C:\Program Files (x86)\Skype\Toolbars\SkypeToolbars.msi => Moved successfully.
C:\Program Files (x86)\Skype\Toolbars\Shared\SkypeBrowserOptions.dll => Moved successfully.
C:\Program Files (x86)\Skype\Toolbars\Shared\SkypePnr.dll => Moved successfully.
C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\icon.ico => Moved successfully.
C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll => Moved successfully.
C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPluginBroker.exe => Moved successfully.
C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\uninstall.ico => Moved successfully.
C:\Program Files (x86)\Skype\Phone\initdebug.nfo => Moved successfully.
C:\Program Files (x86)\Skype\Phone\Skype.exe => Moved successfully.
C:\Program Files (x86)\SEGA\Football Manager 2012\fm.exe => Moved successfully.
C:\Program Files (x86)\SEGA\Football Manager 2012\SKIDROW.exe => Moved successfully.
C:\Program Files (x86)\SEGA\Football Manager 2012\SKIDROW.ini => Moved successfully.
C:\Program Files (x86)\SEGA\Football Manager 2012\Steamclient.dll => Moved successfully.
C:\Program Files (x86)\SEGA\Football Manager 2012\steam_api.dll => Moved successfully.
C:\Program Files (x86)\SEGA\Football Manager 2012\data\updates\update-1202\events.cfg => Moved successfully.
C:\Program Files (x86)\SEGA\Football Manager 2012\data\updates\update-1202\events\events.cfg => Moved successfully.
C:\Program Files (x86)\Secunia\PSI\psi.exe => Moved successfully.
C:\Program Files (x86)\Secunia\PSI\psia.exe => Moved successfully.
C:\Program Files (x86)\Secunia\PSI\psires.dll => Moved successfully.
C:\Program Files (x86)\Secunia\PSI\psi_amd64.inf => Moved successfully.
C:\Program Files (x86)\Secunia\PSI\psi_tray.exe => Moved successfully.
C:\Program Files (x86)\Secunia\PSI\sua.exe => Moved successfully.
C:\Program Files (x86)\Secunia\PSI\Uninstall.exe => Moved successfully.
C:\Program Files (x86)\Secunia\PSI\SUA\f88e2cdc978ed9bf0f5fda0541ca11aae8057830\VLC_2.0.8_32-bit_SPS.exe => Moved successfully.
C:\Program Files (x86)\Secunia\PSI\SUA\a64b7421f4ae984a74d9bd1caaa1762661bb2e77\AdobeReader_11.0.04_de-DE_SPS.exe => Moved successfully.
C:\Program Files (x86)\Secunia\PSI\SUA\91fa336b2ac29ef07c32e849a032f313045e2d19\AdobeFlashPlayer_11.8.800.168_NPAPI_SPS.exe => Moved successfully.
C:\Program Files (x86)\Secunia\PSI\fonts\Open_Sans\OpenSans-Bold.ttf => Moved successfully.
C:\Program Files (x86)\Secunia\PSI\fonts\Open_Sans\OpenSans-Light.ttf => Moved successfully.
C:\Program Files (x86)\Secunia\PSI\fonts\Open_Sans\OpenSans-Regular.ttf => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\dgderapi.dll => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\DIFxAPI.dll => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\Uninstall.exe => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\lang\i386\lang010E.dll => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\lang\i386\lang0201.dll => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\lang\i386\lang0401.dll => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\lang\i386\lang0402.dll => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\lang\i386\lang0403.dll => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\lang\i386\lang0501.dll => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\lang\i386\lang0601.dll => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\lang\i386\lang0701.dll => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\lang\i386\lang0801.dll => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\lang\i386\lang0901.dll => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\lang\i386\lang0902.dll => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\lang\i386\lang0A01.dll => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\lang\i386\lang0B01.dll => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\lang\i386\lang0C01.dll => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\lang\i386\lang0C03.dll => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\lang\i386\lang0D01.dll => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\lang\i386\lang0E01.dll => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\lang\i386\lang1001.dll => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\lang\i386\lang1101.dll => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\lang\i386\lang1201.dll => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\lang\i386\lang1301.dll => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\lang\i386\lang1401.dll => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\lang\i386\lang1501.dll => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\lang\i386\lang1601.dll => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\lang\i386\lang1602.dll => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\lang\i386\lang1801.dll => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\lang\i386\lang1901.dll => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\lang\i386\lang1a04.dll => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\lang\i386\lang1b01.dll => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\lang\i386\lang1D01.dll => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\lang\i386\lang1E01.dll => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\lang\i386\lang1F01.dll => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\lang\i386\lang2101.dll => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\lang\i386\lang2201.dll => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\lang\i386\lang2A01.dll => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\lang\i386\lang3901.dll => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\lang\i386\lang3E01.dll => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\lang\amd64\lang010E.dll => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\lang\amd64\lang0201.dll => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\lang\amd64\lang0401.dll => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\lang\amd64\lang0402.dll => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\lang\amd64\lang0403.dll => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\lang\amd64\lang0501.dll => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\lang\amd64\lang0601.dll => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\lang\amd64\lang0701.dll => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\lang\amd64\lang0801.dll => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\lang\amd64\lang0901.dll => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\lang\amd64\lang0902.dll => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\lang\amd64\lang0A01.dll => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\lang\amd64\lang0B01.dll => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\lang\amd64\lang0C01.dll => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\lang\amd64\lang0C03.dll => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\lang\amd64\lang0D01.dll => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\lang\amd64\lang0E01.dll => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\lang\amd64\lang1001.dll => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\lang\amd64\lang1101.dll => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\lang\amd64\lang1201.dll => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\lang\amd64\lang1301.dll => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\lang\amd64\lang1401.dll => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\lang\amd64\lang1501.dll => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\lang\amd64\lang1601.dll => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\lang\amd64\lang1602.dll => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\lang\amd64\lang1801.dll => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\lang\amd64\lang1901.dll => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\lang\amd64\lang1a04.dll => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\lang\amd64\lang1b01.dll => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\lang\amd64\lang1D01.dll => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\lang\amd64\lang1E01.dll => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\lang\amd64\lang1F01.dll => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\lang\amd64\lang2101.dll => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\lang\amd64\lang2201.dll => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\lang\amd64\lang2A01.dll => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\lang\amd64\lang3901.dll => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\lang\amd64\lang3E01.dll => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\25_escape\ssudadb.cat => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\25_escape\ssudadb.inf => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\25_escape\ssudbus.cat => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\25_escape\ssudbus.inf => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\25_escape\ssuddmgr.cat => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\25_escape\ssuddmgr.inf => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\25_escape\ssudeadb.cat => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\25_escape\ssudeadb.inf => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\25_escape\ssudmarv.cat => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\25_escape\ssudmarv.inf => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\25_escape\ssudmdm.cat => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\25_escape\ssudmdm.inf => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\25_escape\ssudmtp.cat => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\25_escape\ssudmtp.inf => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\25_escape\ssudnd5.cat => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\25_escape\ssudnd5.inf => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\25_escape\ssudobex.cat => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\25_escape\ssudobex.inf => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\25_escape\ssudrmnet.cat => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\25_escape\ssudrmnet.inf => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\25_escape\ssudrmnetmp.cat => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\25_escape\ssudrmnetmp.inf => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\25_escape\ssudrnds.cat => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\25_escape\ssudrnds.inf => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\25_escape\ssudsdb.cat => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\25_escape\ssudsdb.inf => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\25_escape\ssudserd.cat => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\25_escape\ssudserd.inf => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\25_escape\i386\ssudbus.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\25_escape\i386\ssuddmgr.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\25_escape\i386\ssudeadb.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\25_escape\i386\ssudmdm.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\25_escape\i386\ssudnd5.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\25_escape\i386\ssudobex.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\25_escape\i386\ssudrmnet.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\25_escape\i386\ssudrmnetmp.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\25_escape\i386\ssudserd.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\25_escape\i386\WdfCoInstaller01007.dll => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\25_escape\i386\WinUSBCoInstaller.dll => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\25_escape\amd64\ssudbus.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\25_escape\amd64\ssuddmgr.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\25_escape\amd64\ssudeadb.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\25_escape\amd64\ssudmdm.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\25_escape\amd64\ssudnd5.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\25_escape\amd64\ssudobex.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\25_escape\amd64\ssudrmnet.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\25_escape\amd64\ssudrmnetmp.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\25_escape\amd64\ssudserd.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\25_escape\amd64\WdfCoInstaller01007.dll => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\25_escape\amd64\WinUSBCoInstaller.dll => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\24_flashusbdriver\X64\flashusb.cat => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\24_flashusbdriver\X64\flashusb.inf => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\24_flashusbdriver\X64\flashusb.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\24_flashusbdriver\WIN32\flashusb.cat => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\24_flashusbdriver\WIN32\FlashUSB.inf => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\24_flashusbdriver\WIN32\FlashUsb.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\22_WiBro_WiMAX\C7xxPhone.cat => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\22_WiBro_WiMAX\C7xxPhone.inf => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\22_WiBro_WiMAX\XP64\C7xPHNX6.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\22_WiBro_WiMAX\W764\C7xPHN76.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\22_WiBro_WiMAX\W732\C7xPHN73.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\22_WiBro_WiMAX\VT64\C7xPHNV6.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\22_WiBro_WiMAX\VT32\C7xPHNV3.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\22_WiBro_WiMAX\NT32\C7xPHNX3.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\21_Searsburg\ssaeadb.cat => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\21_Searsburg\ssaeadb2.inf => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\21_Searsburg\ssaebus.cat => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\21_Searsburg\ssaebus.inf => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\21_Searsburg\ssaemdm.cat => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\21_Searsburg\ssaemdm2.inf => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\21_Searsburg\ssaendis.inf => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\21_Searsburg\ssaeunic.cat => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\21_Searsburg\ssaeunic.inf => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\21_Searsburg\i386\ssaeadb.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\21_Searsburg\i386\ssaebus.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\21_Searsburg\i386\ssaecmnt.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\21_Searsburg\i386\ssaeCoInstaller01005.dll => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\21_Searsburg\i386\ssaecrnt.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\21_Searsburg\i386\ssaemdfl.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\21_Searsburg\i386\ssaemdm.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\21_Searsburg\i386\ssaend5.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\21_Searsburg\i386\ssaeunic.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\21_Searsburg\i386\ssaewhnt.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\21_Searsburg\amd64\ssaeadb.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\21_Searsburg\amd64\ssaebus.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\21_Searsburg\amd64\ssaecmnt.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\21_Searsburg\amd64\ssaeCoInstaller01005.dll => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\21_Searsburg\amd64\ssaecrnt.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\21_Searsburg\amd64\ssaemdfl.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\21_Searsburg\amd64\ssaemdm.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\21_Searsburg\amd64\ssaend5.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\21_Searsburg\amd64\ssaeunic.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\21_Searsburg\amd64\ssaewhnt.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\20_NXP_Driver\ssdudfu.cat => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\20_NXP_Driver\ssdudfu.inf => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\20_NXP_Driver\i386\ssdudfu.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\20_NXP_Driver\i386\ssduwhnt.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\20_NXP_Driver\amd64\ssdudfu.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\20_NXP_Driver\amd64\ssduwhnt.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\19_VIA_driver\i386\VIA_USB_MODEM\VIA_USB_MODEM.cat => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\19_VIA_driver\i386\VIA_USB_MODEM\VIA_USB_MODEM.inf => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\19_VIA_driver\i386\VIA_USB_MODEM\VIA_USB_MODEM.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\19_VIA_driver\i386\VIA_USB_HUB\VIA_USB_HUB.cat => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\19_VIA_driver\i386\VIA_USB_HUB\VIA_USB_HUB.inf => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\19_VIA_driver\i386\VIA_USB_ETS\VIA_USB_ETS.cat => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\19_VIA_driver\i386\VIA_USB_ETS\VIA_USB_ETS.inf => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\19_VIA_driver\i386\VIA_USB_ETS\VIA_USB_ETS.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\19_VIA_driver\amd64\VIA_USB_MODEM\VIA_USB_MODEM.cat => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\19_VIA_driver\amd64\VIA_USB_MODEM\VIA_USB_MODEM.inf => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\19_VIA_driver\amd64\VIA_USB_MODEM\VIA_USB_MODEM.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\19_VIA_driver\amd64\VIA_USB_HUB\VIA_USB_HUB.cat => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\19_VIA_driver\amd64\VIA_USB_HUB\VIA_USB_HUB.inf => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\19_VIA_driver\amd64\VIA_USB_ETS\VIA_USB_ETS.cat => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\19_VIA_driver\amd64\VIA_USB_ETS\VIA_USB_ETS.inf => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\19_VIA_driver\amd64\VIA_USB_ETS\VIA_USB_ETS.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\18_Zinia_Serial_Driver\WinXP\64\usb2ser.cat => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\18_Zinia_Serial_Driver\WinXP\64\usb2ser_64.inf => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\18_Zinia_Serial_Driver\WinXP\32\usb2ser.cat => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\18_Zinia_Serial_Driver\WinXP\32\usb2ser_32.inf => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\18_Zinia_Serial_Driver\Win7\64\usb2ser.cat => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\18_Zinia_Serial_Driver\Win7\64\usb2ser_64.inf => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\18_Zinia_Serial_Driver\Win7\32\usb2ser.cat => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\18_Zinia_Serial_Driver\Win7\32\usb2ser_32.inf => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\18_Zinia_Serial_Driver\Vista\64\usb2ser.cat => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\18_Zinia_Serial_Driver\Vista\64\usb2ser_64.inf => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\18_Zinia_Serial_Driver\Vista\32\usb2ser.cat => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\18_Zinia_Serial_Driver\Vista\32\usb2ser_32.inf => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\17_EMP_Chipset2\secubus.cat => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\17_EMP_Chipset2\secubus.inf => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\17_EMP_Chipset2\secumdm.cat => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\17_EMP_Chipset2\secumdm2.inf => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\17_EMP_Chipset2\i386\secubus.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\17_EMP_Chipset2\i386\secucmnt.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\17_EMP_Chipset2\i386\secucrnt.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\17_EMP_Chipset2\i386\secumdfl.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\17_EMP_Chipset2\i386\secumdm.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\17_EMP_Chipset2\i386\secuwhnt.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\17_EMP_Chipset2\amd64\secubus.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\17_EMP_Chipset2\amd64\secucmnt.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\17_EMP_Chipset2\amd64\secucrnt.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\17_EMP_Chipset2\amd64\secumdfl.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\17_EMP_Chipset2\amd64\secumdm.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\17_EMP_Chipset2\amd64\secuwhnt.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\16_Shrewsbury\ssadadb.cat => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\16_Shrewsbury\ssadadb2.inf => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\16_Shrewsbury\ssadbus.cat => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\16_Shrewsbury\ssadbus.inf => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\16_Shrewsbury\ssadmdm.cat => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\16_Shrewsbury\ssadmdm2.inf => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\16_Shrewsbury\ssadndis.cat => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\16_Shrewsbury\ssadndis.inf => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\16_Shrewsbury\ssadsdm2.inf => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\16_Shrewsbury\ssadserd.cat => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\16_Shrewsbury\i386\ssadadb.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\16_Shrewsbury\i386\ssadbus.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\16_Shrewsbury\i386\ssadcmnt.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\16_Shrewsbury\i386\ssadmdfl.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\16_Shrewsbury\i386\ssadmdm.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\16_Shrewsbury\i386\ssadserd.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\16_Shrewsbury\i386\ssadwhnt.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\16_Shrewsbury\i386\WdfCoInstaller01005.dll => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\16_Shrewsbury\amd64\ssadadb.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\16_Shrewsbury\amd64\ssadbus.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\16_Shrewsbury\amd64\ssadcmnt.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\16_Shrewsbury\amd64\ssadmdfl.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\16_Shrewsbury\amd64\ssadmdm.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\16_Shrewsbury\amd64\ssadserd.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\16_Shrewsbury\amd64\ssadwhnt.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\16_Shrewsbury\amd64\WdfCoInstaller01005.dll => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\11_HSP_Plus_Default\mbtmdm.inf => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\11_HSP_Plus_Default\mbtusbser.cat => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\11_HSP_Plus_Default\i386\mbtusbser.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\11_HSP_Plus_Default\amd64\mbtusbser.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\09_Hsp\HSPUSB.cat => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\09_Hsp\HSPUSB.inf => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\09_Hsp\i386\hspusb.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\09_Hsp\amd64\hspusb.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\08_EMPChipset\ssecbus.cat => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\08_EMPChipset\ssecbus.inf => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\08_EMPChipset\ssecmdm.cat => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\08_EMPChipset\ssecmdm2.inf => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\08_EMPChipset\ssecmgmt.cat => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\08_EMPChipset\ssecndis.inf => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\08_EMPChipset\ssecobex.cat => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\08_EMPChipset\ssecobx2.inf => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\08_EMPChipset\ssecsdm2.inf => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\08_EMPChipset\ssecunic.cat => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\08_EMPChipset\ssecunic.inf => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\08_EMPChipset\i386\ssecbus.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\08_EMPChipset\i386\sseccmnt.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\08_EMPChipset\i386\sseccrnt.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\08_EMPChipset\i386\ssecmdfl.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\08_EMPChipset\i386\ssecmdm.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\08_EMPChipset\i386\ssecmgmt.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\08_EMPChipset\i386\ssecnd5.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\08_EMPChipset\i386\ssecobex.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\08_EMPChipset\i386\ssecunic.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\08_EMPChipset\i386\ssecwhnt.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\08_EMPChipset\amd64\ssecbus.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\08_EMPChipset\amd64\sseccmnt.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\08_EMPChipset\amd64\sseccrnt.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\08_EMPChipset\amd64\ssecmdfl.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\08_EMPChipset\amd64\ssecmdm.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\08_EMPChipset\amd64\ssecmgmt.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\08_EMPChipset\amd64\ssecnd5.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\08_EMPChipset\amd64\ssecobex.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\08_EMPChipset\amd64\ssecunic.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\08_EMPChipset\amd64\ssecwhnt.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\07_Schorl\ss_bbus.cat => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\07_Schorl\ss_bbus.inf => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\07_Schorl\ss_bmdm.cat => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\07_Schorl\ss_bmdm2.inf => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\07_Schorl\ss_bsdm2.inf => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\07_Schorl\ss_bserd.cat => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\07_Schorl\i386\ss_bbus.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\07_Schorl\i386\ss_bcmnt.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\07_Schorl\i386\ss_bmdfl.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\07_Schorl\i386\ss_bmdm.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\07_Schorl\i386\ss_bserd.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\07_Schorl\i386\ss_bwhnt.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\07_Schorl\amd64\ss_bbus.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\07_Schorl\amd64\ss_bcmnt.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\07_Schorl\amd64\ss_bmdfl.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\07_Schorl\amd64\ss_bmdm.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\07_Schorl\amd64\ss_bserd.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\07_Schorl\amd64\ss_bwhnt.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\06_Spencer\ssbcbus.cat => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\06_Spencer\ssbcbus.inf => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\06_Spencer\ssbcmdm.cat => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\06_Spencer\ssbcmdm2.inf => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\06_Spencer\i386\ssbcbus.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\06_Spencer\i386\ssbccmnt.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\06_Spencer\i386\ssbccr.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\06_Spencer\i386\ssbcmdfl.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\06_Spencer\i386\ssbcmdm.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\06_Spencer\i386\ssbcwhnt.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\06_Spencer\amd64\ssbcbus.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\06_Spencer\amd64\ssbccmnt.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\06_Spencer\amd64\ssbcmdfl.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\06_Spencer\amd64\ssbcmdm.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\06_Spencer\amd64\ssbcwhnt.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\05_Sloan\sssdbus.cat => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\05_Sloan\sssdbus.inf => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\05_Sloan\sssdmdm.cat => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\05_Sloan\sssdmdm2.inf => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\05_Sloan\sssdmgmt.cat => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\05_Sloan\sssdobex.cat => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\05_Sloan\sssdobx2.inf => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\05_Sloan\sssdsdm2.inf => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\05_Sloan\i386\sssdbus.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\05_Sloan\i386\sssdcm95.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\05_Sloan\i386\sssdcmnt.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\05_Sloan\i386\sssdcomm.vxd => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\05_Sloan\i386\sssdcr.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\05_Sloan\i386\sssdmdfl.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\05_Sloan\i386\sssdmdm.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\05_Sloan\i386\sssdmgmt.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\05_Sloan\i386\sssdobex.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\05_Sloan\i386\sssdvcd.vxd => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\05_Sloan\i386\sssdvcr.vxd => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\05_Sloan\i386\sssdwh95.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\05_Sloan\i386\sssdwhnt.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\05_Sloan\amd64\sssdbus.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\05_Sloan\amd64\sssdcmnt.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\05_Sloan\amd64\sssdmdfl.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\05_Sloan\amd64\sssdmdm.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\05_Sloan\amd64\sssdmgmt.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\05_Sloan\amd64\sssdobex.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\05_Sloan\amd64\sssdwhnt.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\04_semseyite\sscebus.cat => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\04_semseyite\sscebus.inf => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\04_semseyite\sscemdm.cat => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\04_semseyite\sscemdm2.inf => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\04_semseyite\sscesdm2.inf => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\04_semseyite\ssceserd.cat => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\04_semseyite\i386\sscebus.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\04_semseyite\i386\sscecm95.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\04_semseyite\i386\sscecmnt.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\04_semseyite\i386\sscecr.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\04_semseyite\i386\sscemdfl.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\04_semseyite\i386\sscemdm.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\04_semseyite\i386\ssceserd.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\04_semseyite\i386\sscewh95.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\04_semseyite\i386\sscewhnt.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\04_semseyite\amd64\sscebus.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\04_semseyite\amd64\sscecmnt.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\04_semseyite\amd64\sscemdfl.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\04_semseyite\amd64\sscemdm.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\04_semseyite\amd64\ssceserd.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\04_semseyite\amd64\sscewhnt.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\03_Swallowtail\sscdbus.cat => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\03_Swallowtail\sscdbus.inf => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\03_Swallowtail\sscdmdm.cat => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\03_Swallowtail\sscdsdm2.inf => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\03_Swallowtail\sscdserd.cat => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\03_Swallowtail\sscdw2k.inf => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\03_Swallowtail\i386\sscdbus.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\03_Swallowtail\i386\sscdcmnt.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\03_Swallowtail\i386\sscdmdfl.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\03_Swallowtail\i386\sscdmdm.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\03_Swallowtail\i386\sscdserd.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\03_Swallowtail\i386\sscdwhnt.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\03_Swallowtail\amd64\sscdbus.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\03_Swallowtail\amd64\sscdcmnt.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\03_Swallowtail\amd64\sscdmdfl.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\03_Swallowtail\amd64\sscdmdm.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\03_Swallowtail\amd64\sscdserd.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\03_Swallowtail\amd64\sscdwhnt.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\02_Siberian\ssm_bus.cat => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\02_Siberian\ssm_bus.inf => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\02_Siberian\ssm_mdm.cat => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\02_Siberian\ssm_mdm2.inf => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\02_Siberian\ssm_ser2.inf => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\02_Siberian\i386\ssm_bus.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\02_Siberian\i386\ssm_cm95.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\02_Siberian\i386\ssm_cmnt.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\02_Siberian\i386\ssm_comm.vxd => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\02_Siberian\i386\ssm_cr.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\02_Siberian\i386\ssm_mdfl.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\02_Siberian\i386\ssm_mdm.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\02_Siberian\i386\ssm_vcd.vxd => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\02_Siberian\i386\ssm_vcr.vxd => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\02_Siberian\i386\ssm_wh95.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\02_Siberian\i386\ssm_whnt.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\02_Siberian\amd64\ssm_bus.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\02_Siberian\amd64\ssm_cmnt.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\02_Siberian\amd64\ssm_mdfl.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\02_Siberian\amd64\ssm_mdm.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\02_Siberian\amd64\ssm_whnt.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\01_Simmental\ss_bus.cat => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\01_Simmental\ss_bus.inf => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\01_Simmental\ss_mdm.cat => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\01_Simmental\ss_mdm2.inf => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\01_Simmental\i386\ss_bus.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\01_Simmental\i386\ss_cmnt.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\01_Simmental\i386\ss_cr.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\01_Simmental\i386\ss_mdfl.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\01_Simmental\i386\ss_mdm.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\01_Simmental\i386\ss_whnt.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\01_Simmental\amd64\ss_bus.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\01_Simmental\amd64\ss_cmnt.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\01_Simmental\amd64\ss_mdfl.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\01_Simmental\amd64\ss_mdm.sys => Moved successfully.
C:\Program Files (x86)\Samsung\USB Drivers\01_Simmental\amd64\ss_whnt.sys => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\AMG.Lasso.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\AMG.Lasso.LowLevelHelpers.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\app.config => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\DriverChecker.exe => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\DummyStorePlugin.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Interop.DeviceSearchLib.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Kies.exe => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Kies.exe.config => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\KiesAgent.exe => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\KiesAirMessage.exe => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\KiesAirMessageCtl.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\KiesDriverInstaller.exe => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\KiesDriverInstaller.exe.config => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\KiesLite.ico => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\KiesSilentUpdateAgent.exe => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\lame.exe => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\lame_enc.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\mfc90u.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Microsoft.VC90.CRT.manifest => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Microsoft.VC90.MFC.manifest => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\MMSCore.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\msvcp90.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\msvcr90.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Not_support_model_list.ini => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\oggenc.exe => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\System.Security.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\System.Web.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Uninstall.ico => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\USB Driver\SAMSUNG_USB_Driver_for_Mobile_Phones.exe => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Updater\CabLib.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Updater\Interop.IWshRuntimeLibrary.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Updater\Kies.Update.exe => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Updater\Kies.Update.exe.config => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Updater\Microsoft.VC90.CRT.manifest => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Updater\msvcm90.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Updater\msvcr90.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Updater\USBChecker.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Updater\zh-TW\Kies.Update.resources.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Updater\zh-HK\Kies.Update.resources.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Updater\zh-CN\Kies.Update.resources.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Updater\vi-VN\Kies.Update.resources.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Updater\uk-UA\Kies.Update.resources.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Updater\tr-TR\Kies.Update.resources.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Updater\th-TH\Kies.Update.resources.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Updater\sv-SE\Kies.Update.resources.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Updater\sl-SI\Kies.Update.resources.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Updater\sk-SK\Kies.Update.resources.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Updater\ru-RU\Kies.Update.resources.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Updater\ro-RO\Kies.Update.resources.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Updater\pt-PT\Kies.Update.resources.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Updater\pt-BR\Kies.Update.resources.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Updater\pl-PL\Kies.Update.resources.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Updater\nl-NL\Kies.Update.resources.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Updater\nb-NO\Kies.Update.resources.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Updater\ms-MY\Kies.Update.resources.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Updater\lv-LV\Kies.Update.resources.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Updater\lt-LT\Kies.Update.resources.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Updater\ko-KR\Kies.Update.resources.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Updater\ja-JP\Kies.Update.resources.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Updater\it-IT\Kies.Update.resources.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Updater\id-ID\Kies.Update.resources.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Updater\hu-HU\Kies.Update.resources.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Updater\hr-HR\Kies.Update.resources.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Updater\hi-IN\Kies.Update.resources.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Updater\he-IL\Kies.Update.resources.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Updater\fr-FR\Kies.Update.resources.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Updater\fr-CA\Kies.Update.resources.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Updater\fi-FI\Kies.Update.resources.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Updater\et-EE\Kies.Update.resources.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Updater\es-MX\Kies.Update.resources.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Updater\es-ES\Kies.Update.resources.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Updater\en-GB\Kies.Update.resources.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Updater\el-GR\Kies.Update.resources.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Updater\de-DE\Kies.Update.resources.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Updater\da-DK\Kies.Update.resources.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Updater\cs-CZ\Kies.Update.resources.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Updater\bg-BG\Kies.Update.resources.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Updater\ar-AE\Kies.Update.resources.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\UI\Kies.UI.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\UI\Kies.UI.dll.config => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Theme\Kies.Theme.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Plugins\VideoManager\VideoManager.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Plugins\VideoManager\VideoManager.dll.config => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Plugins\StoreLib\StoreLib.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Plugins\PodcastService\PodcastService.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Plugins\PodcastService\PodcastService.dll.config => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Plugins\Podcaster\Podcaster.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Plugins\Podcaster\Podcaster.dll.config => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Plugins\PhotoManager\Interop.MP3FileInfoCOMLib.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Plugins\PhotoManager\Interop.OGGFileInfoCOMLib.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Plugins\PhotoManager\Interop.P3MPINTERFACECTRLLib.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Plugins\PhotoManager\Kies.Common.MainUI.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Plugins\PhotoManager\Kies.Common.Multimedia.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Plugins\PhotoManager\Kies.Common.Util.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Plugins\PhotoManager\PhotoManager.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Plugins\PhotoManager\PhotoManager.dll.config => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Plugins\PhotoAuthorManager\PhotoAuthorManager.dll.config => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Plugins\Phonebook\Phonebook.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Plugins\Phonebook\Phonebook.dll.config => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Plugins\MusicStore\CPKTMusicPlugin.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Plugins\MusicStore\CPSevenDigitalPlugin.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Plugins\MusicStore\Interop.smdecryptionLib.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Plugins\MusicStore\MusicStore.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Plugins\MusicStore\MusicStore.dll.config => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Plugins\MusicManager\MusicManager.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Plugins\MusicManager\MusicManager.dll.config => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Plugins\EBookManager\Kies.Common.Util.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Plugins\EBookManager\StoryAlbumManager.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Plugins\EBookManager\StoryAlbumManager.dll.config => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Plugins\DummyStorePlugin\DummyStorePlugin.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Plugins\DiscRipping\DiscRipping.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Plugins\DiscRipping\DiscRipping.dll.config => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Plugins\DiscRipping\Interop.RocketDivision.StarBurnX.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Plugins\DeviceVideo\DeviceVideo.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Plugins\DeviceVideo\DeviceVideo.dll.config => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Plugins\DevicePodcast\DevicePodcast.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Plugins\DevicePodcast\DevicePodcast.dll.config => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Plugins\DevicePhoto\DevicePhoto.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Plugins\DevicePhoto\DevicePhoto.dll.config => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Plugins\DeviceMusic\DeviceMusic.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Plugins\DeviceMusic\DeviceMusic.dll.config => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Plugins\DeviceMusic\DeviceStoryAlbum.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Plugins\DeviceMusic\DeviceStoryAlbum.dll.config => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Plugins\DeviceHost\adodb.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Plugins\DeviceHost\DeviceHost.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Plugins\DeviceHost\DeviceHost.dll.config => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Plugins\DeviceHost\Interop.BackupRestoreLib.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Plugins\DeviceHost\Interop.NKTWABLib.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Plugins\DeviceHost\Interop.Redemption.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Plugins\DeviceHost\Kies.Plugin.MDGLib.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Plugins\DeviceHost\Microsoft.Contacts.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Plugins\DeviceHost\Microsoft.Office.Interop.Outlook.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Plugins\DeviceHost\office.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Plugins\DeviceHost\SyncProvider.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Plugins\DeviceCommonLib\DeviceCommonLib.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Plugins\DeviceCommonLib\DeviceCommonLib.dll.config => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Plugins\DeviceCommonLib\ZipStore.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Plugins\ContentsManagerLib\Kies.Plugin.ContentsManagerLib.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Plugins\ContentsManagerLib\Kies.Plugin.ContentsManagerLib.dll.config => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Plugins\BATPlugin\BATPlugin.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Plugins\BATPlugin\BATPlugin.dll.config => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Plugins\AStore\AStorePlugin.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Plugins\AStore\AStorePlugin.dll.config => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Plugins\AStore\Interop.AStoreMarshalLib.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\MVVM\Kies.MVVM.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Locale\Kies.Locale.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Locale\en-GB\Kies.Locale.resources.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\Locale\de-DE\Kies.Locale.resources.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\Anycall_Land.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\atl90.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\CabLib.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\drmcm.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\GongSolutions.Wpf.DragDrop.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\libguide40.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\libmmd.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\MACSSDK.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\mfc90u.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\mfcm90.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\mfcm90u.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\Microsoft.VC90.ATL.manifest => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\Microsoft.VC90.CRT.manifest => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\Microsoft.WindowsAPICodePack.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\Microsoft.WindowsAPICodePack.Shell.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\MP3HDDecoder.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\MP3HDEncoder.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\mscdecryptioncore.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\msvcm90.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\msvcp90.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\msvcr90.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\Ookii.Dialogs.Wpf.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\PRPlayerCore.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\SAPEncoder.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\smdecryption.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\SMPEncoder.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\System.Data.SQLite.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\VideoConverterLib.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\ZipStore.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\TransModules\1280_720p_10M_bps_29.97fps.prx => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\TransModules\1280_720p_20M_bps_29.97fps.prx => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\TransModules\1920_1080p_10M_bps_29.97fps.prx => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\TransModules\1920_1080p_20M_bps_29.97fps.prx => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\TransModules\720_480p_10M_bps_29.97fps.prx => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\TransModules\720_480p_20M_bps_29.97fps.prx => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\TransModules\ACFGTemp.cfg => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\TransModules\ACM_MP3_44100_S_128K.CFG => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\TransModules\EnjMp4.DLL => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\TransModules\HtTitleLib.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\TransModules\HtTransLib.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\TransModules\ICFGTemp.cfg => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\TransModules\MAContentSaferSDK.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\TransModules\MACSSDK.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\TransModules\MADRM.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\TransModules\MAFileUpdate.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\TransModules\MAMACExtract.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\TransModules\msvcp71.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\TransModules\msvcr71.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\TransModules\qscl.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\TransModules\SelfMV.exe => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\TransModules\SelfMV2.exe => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\TransModules\SmiImg.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\TransModules\SMV_ACM_SMS.CFG => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\TransModules\SMV_ICM_SMS.CFG => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\TransModules\SMV_MP3_48000_192K.CFG => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\TransModules\TG_AAC.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\TransModules\TG_AMR.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\TransModules\TG_ARESAMPLE.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\TransModules\TG_AUDIO.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\TransModules\TG_AVI.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\TransModules\TG_CAM.exe => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\TransModules\TG_COLOR.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\TransModules\TG_CROMA.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\TransModules\TG_DSHOW.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\TransModules\TG_Dump0708.DLL => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\TransModules\TG_EVRC.DLL => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\TransModules\TG_FAAD.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\TransModules\TG_H264EN.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\TransModules\TG_HtEdt.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\TransModules\TG_IMAGE.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\TransModules\TG_INKA.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\TransModules\TG_INKA2.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\TransModules\TG_JPEGW.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\TransModules\TG_LAME.DLL => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\TransModules\TG_LZW.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\TransModules\TG_MMX.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\TransModules\TG_MOVIE.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\TransModules\TG_MPEG4.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\TransModules\TG_MPEG4ENIPP.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\TransModules\TG_Photo.DLL => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\TransModules\TG_PVTR.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\TransModules\TG_QCELP.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\TransModules\TG_QTIME.DLL => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\TransModules\TG_RTF.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\TransModules\TG_SMST8.DLL => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\TransModules\TG_View0607.DLL => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\TransModules\TG_VRESIZE.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\TransModules\TG_WMV.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\TransModules\TOOLAME.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\SyncModules\Google.GData.Client.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\SyncModules\Google.GData.Contacts.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\SyncModules\Google.GData.Extensions.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\SyncModules\MetaStore2.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\SyncModules\Microsoft.Synchronization.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\SyncModules\nktwab.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\SyncModules\OAuth.Net.Common.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\SyncModules\OAuth.Net.Components.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\SyncModules\office.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\SyncModules\Redemption.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\SyncModules\secman.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\SyncModules\SecurityManager.2005.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\SyncModules\Synchronization2.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\MediaModules\ASF_cSharpAPI.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\MediaModules\AStoreMarshal.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\MediaModules\atl90.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\MediaModules\bass.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\MediaModules\Bass.Net.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\MediaModules\basscd.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\MediaModules\bassenc.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\MediaModules\bassflac.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\MediaModules\basswma.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\MediaModules\bass_aac.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\MediaModules\DCMPhotoDLL.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\MediaModules\dll_Samsung_MusicSquare_v0_5.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\MediaModules\DNSe.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\MediaModules\id3lib.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\MediaModules\LDBCShConv.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\MediaModules\LDBCShGen.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\MediaModules\LDBCShSrch.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\MediaModules\LDBCShToCdc.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\MediaModules\lib_Samsung_WitchPlaylist_v0.1.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\MediaModules\MACSReaderAVI.ax => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\MediaModules\mfc90u.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\MediaModules\Microsoft.VC90.ATL.manifest => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\MediaModules\Microsoft.VC90.CRT.manifest => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\MediaModules\Microsoft.VC90.MFC.manifest => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\MediaModules\Microsoft.VC90.OpenMP.manifest => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\MediaModules\MMTCM3EncoderDLL.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\MediaModules\MP3FileInfoCOM.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\MediaModules\msvcp90.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\MediaModules\msvcr90.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\MediaModules\MyFreeCodecPack.exe => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\MediaModules\MyPhotoEncoder.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\MediaModules\NEDFilter4Samsung.ax => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\MediaModules\OGGFileInfoCOM.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\MediaModules\Sub3.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\MediaModules\TCM2Decoder12.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\MediaModules\TCM2Decoder16.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\MediaModules\TCM2Decoder2.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\MediaModules\TCM2Decoder24.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\MediaModules\TCM2Decoder8.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\MediaModules\TCM2Encoder.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\MediaModules\TCMSEncoder.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\MediaModules\zxing.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\AdminDelegator.exe => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\Agent.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\AgentDialogs.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\AgentInstaller.exe => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\AgentModels.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\AgentModule.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\AgentUpdate.exe => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\BaseUI.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\CommonModule.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\FirmwareUpdateAgent.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\GlobalUtil.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\mfc90u.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\mfcm90.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\mfcm90u.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\Microsoft.VC90.ATL.manifest => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\Microsoft.VC90.CRT.manifest => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\Microsoft.VC90.MFC.manifest => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\Microsoft.VC90.MFCLOC.manifest => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\Microsoft.VC90.OpenMP.manifest => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\msvcp90.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\msvcr90.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\ToolkitPro1331vc90U.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\language\Microsoft.VC90.CRT.manifest => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\language\msvcr90.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\language\Resource_ar-AE.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\language\Resource_bg-BG.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\language\Resource_cs-CZ.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\language\Resource_da-DK.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\language\Resource_de-DE.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\language\Resource_el-GR.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\language\resource_en-GB.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\language\Resource_en-US.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\language\Resource_es-ES.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\language\Resource_es-MX.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\language\Resource_et-EE.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\language\Resource_fi-FI.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\language\Resource_fr-CA.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\language\Resource_fr-FR.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\language\Resource_he-IL.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\language\Resource_hi-IN.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\language\Resource_hr-HR.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\language\Resource_hu-HU.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\language\Resource_id-ID.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\language\Resource_it-IT.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\language\Resource_ja-JP.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\language\Resource_ko-KR.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\language\Resource_lt-LT.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\language\Resource_lv-LV.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\language\Resource_ms-MY.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\language\Resource_nb-NO.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\language\Resource_nl-NL.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\language\Resource_pl-PL.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\language\Resource_pt-BR.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\language\Resource_pt-PT.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\language\Resource_ro-RO.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\language\Resource_ru-RU.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\language\Resource_sk-SK.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\language\Resource_sl-SI.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\language\Resource_sv-SE.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\language\Resource_th-TH.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\language\Resource_tr-TR.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\language\Resource_uk-UA.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\language\Resource_vi-VN.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\language\Resource_zh-CN.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\language\Resource_zh-HK.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\language\Resource_zh-TW.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\DeviceModules\AMG.Lasso.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\DeviceModules\AMG.Lasso.LowLevelHelpers.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\DeviceModules\atl90.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\DeviceModules\BackupRestoreLib.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\DeviceModules\BackupRestoreWM.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\DeviceModules\BackupSYM.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\DeviceModules\CDBurnCOM.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\DeviceModules\CDRipping.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\DeviceModules\ConnectionManager.exe => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\DeviceModules\ConvLunar.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\DeviceModules\DataConversion.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\DeviceModules\DataConversionMDG.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\DeviceModules\DataParser.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\DeviceModules\DataParserMDG.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\DeviceModules\DataType.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\DeviceModules\DataTypeMDG.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\DeviceModules\DCADU.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\DeviceModules\DCAKOREAMITSOBEX.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\DeviceModules\DCAPARAGONATOBEX.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\DeviceModules\DCAPARAGONGM.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\DeviceModules\DCAPARAGONOBEX.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\DeviceModules\DCAWM.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\DeviceModules\DCInterface.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\DeviceModules\DCInterfaceMDG.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\DeviceModules\DevFileService.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\DeviceModules\DeviceCommunication.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\DeviceModules\DeviceDataService.exe => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\DeviceModules\DeviceManager.exe => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\DeviceModules\DeviceManager.exe.manifest => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\DeviceModules\DeviceSearch.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\DeviceModules\DeviceServiceCBT.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\DeviceModules\DeviceServiceCore.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\DeviceModules\DeviceServiceModelDB.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\DeviceModules\dmstpb.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\DeviceModules\drmcm.dll => Moved successfully.
C:\Program Files (x86)\Samsung\Kies\External\DeviceModules\ErrorReport.exe => Moved successfully.
         
Ich muss anmerken, dass der Fixlog von gestern ca. 5x so groß war, das heisst es sind SEEEEHR viele Daten verschoben worden!

Wie richte ich das wieder her?

Alt 15.09.2013, 22:23   #14
schrauber
/// the machine
/// TB-Ausbilder
 

Trojaner TR/Fakeadb.A - Standard

Trojaner TR/Fakeadb.A



Schieb den Ordner Program Files aus dem Ordner C:\FRST\Quarantine zurück.
__________________
gruß,
schrauber

Proud Member of UNITE and ASAP since 2009

Spenden
Anleitungen und Hilfestellungen
Trojaner-Board Facebook-Seite

Keine Hilfestellung via PM!

Alt 16.09.2013, 06:11   #15
k.karl
 
Trojaner TR/Fakeadb.A - Standard

Trojaner TR/Fakeadb.A



Hallo schrauber,

das geht nicht, es ist nicht der gesamte Ordner verschoben soder nur einzelen Dateien! Es sind aber viele Programme davon betroffen, unterschiedliche Dateien der Programme wurden verschoben!

Ich müsste also jede einzelen Datei wiederzurückschieben! Das sind 22.223 Objekte!!!

Wie gehts weiter?

Antwort

Themen zu Trojaner TR/Fakeadb.A
antivirus, bingbar, black, combofix, desktop, dvdvideosoft ltd., farbar, farbar recovery scan tool, flash player, home, iexplore.exe, installation, launch, minidump, mp3, newtab, problem, programm, pup.optional.babsolution.a, pup.optional.babylon.a, pup.optional.delta, pup.optional.delta.a, pup.optional.opencandy, pup.optional.opencandy.a, pup.optional.softonic, pup.optional.startpage, software, svchost.exe, symantec, taskhost.exe, tr/fakeadb.a, win32/agent.pbi



Ähnliche Themen: Trojaner TR/Fakeadb.A


  1. Windows Vista: Avira Antivir meldet erst ADWARE/bProtect.D einige Tage später TR/Fakeadb.A
    Log-Analyse und Auswertung - 26.10.2013 (17)
  2. Avira Meldungen: Adware/bProtect.D und TR/Fakeadb.A; Office Starter 2010 verschwunden
    Plagegeister aller Art und deren Bekämpfung - 17.10.2013 (27)
  3. TR/Fakeadb.A
    Plagegeister aller Art und deren Bekämpfung - 02.10.2013 (3)
  4. TR/Fakeadb.A
    Plagegeister aller Art und deren Bekämpfung - 27.09.2013 (16)
  5. Win 7: TR/Fakeadb.a und Adware/bProtect.D
    Log-Analyse und Auswertung - 24.09.2013 (9)
  6. Windows 7: TR/Fakeadb.A etc.
    Log-Analyse und Auswertung - 24.09.2013 (12)
  7. 'TR/Fakeadb.A' in 'C:\Windows\System32\FlashPlayerUpdateService.exe'
    Plagegeister aller Art und deren Bekämpfung - 23.09.2013 (16)
  8. TR/Fakeadb.A' in 'C:\Windows\System32\FlashPlayerUpdateService.exe
    Log-Analyse und Auswertung - 21.09.2013 (20)
  9. TR/Fakeadb.A' in 'C:\Windows\System32\FlashPlayerUpdateService.exe
    Plagegeister aller Art und deren Bekämpfung - 19.09.2013 (24)
  10. TR/Fakeadb.A und weitere Funde bei Antivir (Premium)
    Log-Analyse und Auswertung - 15.09.2013 (14)
  11. Win 7 / Avira meldet Trojaner Fakeadb.A
    Log-Analyse und Auswertung - 13.09.2013 (9)
  12. C:\Windows\System32\FlashPlayerUpdateService.exe TR/Fakeadb.A
    Plagegeister aller Art und deren Bekämpfung - 13.09.2013 (5)
  13. Trojaner? TR/fakeadb.A'
    Plagegeister aller Art und deren Bekämpfung - 11.09.2013 (10)
  14. Avira-Meldung TR/Fakeadb.A
    Log-Analyse und Auswertung - 11.09.2013 (13)

Zum Thema Trojaner TR/Fakeadb.A - Hallo zusammen, wie ich sehe, bin ich nicht der erste mit dem og Problem! Seit heute Vormittag meldet Avira den og Fund. Hier die vorbereiteten Logfiles: Avira: Code: Alles auswählen - Trojaner TR/Fakeadb.A...
Archiv
Du betrachtest: Trojaner TR/Fakeadb.A auf Trojaner-Board

Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.