Zurück   Trojaner-Board > Malware entfernen > Plagegeister aller Art und deren Bekämpfung

Plagegeister aller Art und deren Bekämpfung: Run.dll - Problem beim Starten von C:\Program Files\HomeTab\TBUpdater.dll

Windows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen.

Antwort
Alt 16.11.2013, 21:06   #1
Ruffy D
 
Run.dll - Problem beim Starten von C:\Program Files\HomeTab\TBUpdater.dll - Standard

Run.dll - Problem beim Starten von C:\Program Files\HomeTab\TBUpdater.dll



Hallo, nach dem Starten und auch mal zwischen durch bekomme ich die Fehlermeldung
< RunDll >
- Problem beim Starten von C:\Program Files\HomeTab\TBUpdater.dll
- Das angegebene Modul wurde nicht gefunden.
Mein Rechner ist dadurch noch erheblich langsamer als vorher (OS Win7). Diese Fehlermeldung bekomme ich nachdem ich Free System Utilities 1.0 einmal zu oft verwendet habe. Meine Paswörter aus dem Firefox wurden dabei auch gelöscht. Ich habe bisher alle Probleme die ich mit Viren, Malware und Systemfehlern hatte, alleine geregelt bekommen aber hier komme ich ohne Hilfe nicht weiter. Ich bin nicht ganz unerfahren, aber kein Crack. Ich eigne mir bei Bedarf immer nur das notwendigste an und das reicht bei diesen Problem leider nicht. Ich hoffe das hier jemand ist der bereit ist mir zu helfen, danke schonmal im voraus.

Alt 17.11.2013, 00:03   #2
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
Run.dll - Problem beim Starten von C:\Program Files\HomeTab\TBUpdater.dll - Standard

Run.dll - Problem beim Starten von C:\Program Files\HomeTab\TBUpdater.dll



Hallo und

Hast du noch weitere Logs (mit Funden)? Malwarebytes und/oder andere Virenscanner, sind die mal fündig geworden?

Ich frage deswegen nach => http://www.trojaner-board.de/125889-...tml#post941520

Bitte keine neuen Virenscans machen sondern erst nur schon vorhandene Logs in CODE-Tags posten!
Relevant sind nur Logs der letzten 7 Tage bzw. seitdem das Problem besteht!




Zudem bitte auch ein Log mit Farbars Tool machen:

Scan mit Farbar's Recovery Scan Tool (FRST)

Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST Download FRST 32-Bit | FRST 64-Bit
(Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
  • Starte jetzt FRST.
  • Ändere ungefragt keine der Checkboxen und klicke auf Untersuchen.
  • Die Logdateien werden nun erstellt und befinden sich danach auf deinem Desktop.
  • Poste mir die FRST.txt und nach dem ersten Scan auch die Addition.txt in deinem Thread (#-Symbol im Eingabefenster der Webseite anklicken)



Lesestoff:
Posten in CODE-Tags
Die Logfiles anzuhängen oder sogar vorher in ein ZIP, RAR, 7Z-Archive zu packen erschwert mir massiv die Arbeit, es sei denn natürlich die Datei wäre ansonsten zu gross für das Forum. Um die Logfiles in eine CODE-Box zu stellen gehe so vor:
  • Markiere das gesamte Logfile (geht meist mit STRG+A) und kopiere es in die Zwischenablage mit STRG+C.
  • Klicke im Editor auf das #-Symbol. Es erscheinen zwei Klammerausdrücke [CODE] [/CODE].
  • Setze den Curser zwischen die CODE-Tags und drücke STRG+V.
  • Klicke auf Erweitert/Vorschau, um so prüfen, ob du es richtig gemacht hast. Wenn alles stimmt ... auf Antworten.
__________________

__________________

Alt 18.11.2013, 23:08   #3
Ruffy D
 
Run.dll - Problem beim Starten von C:\Program Files\HomeTab\TBUpdater.dll - Standard

Run.dll - Problem beim Starten von C:\Program Files\HomeTab\TBUpdater.dll



Code:
ATTFilter
Search results from Spybot - Search & Destroy

16.11.13 12:47:33
Scan took 02:16:12.
81 items found.

Babylon.Toolbar: [SBI $3BE29F71] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\AppID\{BDB69379-802F-4eaf-B541-F8DE92DD98DB}

SimplyGen.Toolbar: [SBI $5476DC0C] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\Software\Microsoft\Internet Explorer\SearchScopes\TopResultURLFallback

SimplyGen.Toolbar: [SBI $81A00AE4] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\Software\Microsoft\Internet Explorer\SearchScopes\URL

SimplyGen.Toolbar: [SBI $35ED56AD] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\Software\Microsoft\Internet Explorer\SearchURI\(Default)

SimplyGen.Toolbar: [SBI $8F7C0998] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\Software\Microsoft\Internet Explorer\SearchUrl\(Default)

SimplyGen.Toolbar: [SBI $8080EEE2] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\Software\Microsoft\Internet Explorer\AboutURLs\Tabs

SimplyGen.Toolbar: [SBI $509C97AB] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\Software\Microsoft\Internet Explorer\Search\Default_Search_URL

SimplyGen.Toolbar: [SBI $6610EF24] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\Software\Microsoft\Internet Explorer\Search\Search Bar

SimplyGen.Toolbar: [SBI $A640B99D] Settings (Registry Change, nothing done)
  HKEY_CLASSES_ROOT\Software\Microsoft\Internet Explorer\Search\Search Page

SimplyGen.Toolbar: [SBI $C773531B] Settings (Registry Key, nothing done)
  HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}

SimplyGen.Toolbar: [SBI $4F65F2AA] Settings (Registry Change, nothing done)
  HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\AboutURLs\Tabs

SimplyGen.Toolbar: [SBI $C1B8B439] Settings (Registry Change, nothing done)
  HKEY_LOCAL_MACHINE\Software\Classes\Software\Microsoft\Internet Explorer\Main\Default_Search_URL

SimplyGen.Toolbar: [SBI $FEB43ED4] Settings (Registry Change, nothing done)
  HKEY_LOCAL_MACHINE\Software\Classes\Software\Microsoft\Internet Explorer\Main\Search Bar

SimplyGen.Toolbar: [SBI $1B65EF50] Settings (Registry Change, nothing done)
  HKEY_LOCAL_MACHINE\Software\Classes\Software\Microsoft\Internet Explorer\Main\Search Page

SimplyGen.Toolbar: [SBI $2E8E7839] Settings (Registry Change, nothing done)
  HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Search\Search Bar

SimplyGen.Toolbar: [SBI $C50E4BD3] Settings (Registry Change, nothing done)
  HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Search\Search Page

SimplyGen.Toolbar: [SBI $A4EA74C8] Settings (Registry Change, nothing done)
  HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchURI\(Default)

SimplyGen.Toolbar: [SBI $1E7B2BFD] Settings (Registry Change, nothing done)
  HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\SearchUrl\(Default)

SimplyGen.Toolbar: [SBI $0DE5E1D7] Settings (Registry Change, nothing done)
  HKEY_USERS\S-1-5-21-2524179397-3888794832-3099966248-1000\Software\Microsoft\Internet Explorer\AboutURLs\Tabs

SimplyGen.Toolbar: [SBI $FEF041CA] Settings (Registry Change, nothing done)
  HKEY_USERS\S-1-5-21-2524179397-3888794832-3099966248-1000\Software\Microsoft\Internet Explorer\Search\Search Bar

SimplyGen.Toolbar: [SBI $E16A964C] Settings (Registry Change, nothing done)
  HKEY_USERS\S-1-5-21-2524179397-3888794832-3099966248-1000\Software\Microsoft\Internet Explorer\Search\Search Page

SimplyGen.Toolbar: [SBI $C47E9EC0] Settings (Registry Change, nothing done)
  HKEY_USERS\S-1-5-21-2524179397-3888794832-3099966248-1000\Software\Microsoft\Internet Explorer\SearchURI\(Default)

SimplyGen.Toolbar: [SBI $7EEFC1F5] Settings (Registry Change, nothing done)
  HKEY_USERS\S-1-5-21-2524179397-3888794832-3099966248-1000\Software\Microsoft\Internet Explorer\SearchUrl\(Default)

Yontoo.Pagerage: [SBI $7EA79EE0] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\CLSID\{80922ee0-8a76-46ae-95d5-bd3c3fe0708d}

Banyan.eSafe: [SBI $F482B9B1] Settings (Registry Key, nothing done)
  HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Eventlog\Application\WsysSvc

Banyan.eSafe: [SBI $1F28F10C] Settings (Registry Key, nothing done)
  HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\Eventlog\Application\WsysSvc

Banyan.eSafe: [SBI $043C19FB] Program directory (Directory, nothing done)
  C:\ProgramData\eSafe\
  Directory.subfile=C:\ProgramData\eSafe\log\eGdpSvc.LOG
  Directory.subfile.size=11850
  Directory.subfile.md5=05A28949F3C0E19427DA610622919E1E
  Directory.subfile.filedate=1383690558
  Directory.subfile.filedatetext=2013-11-05 23:29:17

Barowwsoe2Save: [SBI $F5174E26] Program directory (Directory, nothing done)
  C:\Program Files\Optimizer Pro\

Elex.Desk365: [SBI $C6008D91] Settings (Registry Key, nothing done)
  HKEY_LOCAL_MACHINE\SOFTWARE\deskSvc

Elex.Desk365: [SBI $487B5F3A] Settings (Registry Key, nothing done)
  HKEY_LOCAL_MACHINE\SOFTWARE\V9

Elex.Desk365: [SBI $C8478A32] Settings (Registry Key, nothing done)
  HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\Eventlog\Application\desksvc

Elex.Desk365: [SBI $1BFEF581] Settings (Registry Key, nothing done)
  HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Eventlog\Application\desksvc

Elex.Desk365: [SBI $5898CD7C] Program directory (Directory, nothing done)
  C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\
  Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\accelerate
  Directory.subfile.size=0
  Directory.subfile.md5=D41D8CD98F00B204E9800998ECF8427E
  Directory.subfile.filedate=1383689158
  Directory.subfile.filedatetext=2013-11-05 23:05:58
  Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\desk_bkg_list.xml
  Directory.subfile.size=1434
  Directory.subfile.md5=292ECDA960D994D90A33A5E7C3EA9F81
  Directory.subfile.filedate=1383689164
  Directory.subfile.filedatetext=2013-11-05 23:06:04
  Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\desk_list.xml
  Directory.subfile.size=4318
  Directory.subfile.md5=3FA9E205526B13074690CD6FFEF27AE1
  Directory.subfile.filedate=1383689667
  Directory.subfile.filedatetext=2013-11-05 23:14:27
  Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\desk_settings.ini
  Directory.subfile.size=80
  Directory.subfile.md5=6E8ECBF4B96757DFC8B42989C7B4C0BA
  Directory.subfile.filedate=1383689165
  Directory.subfile.filedatetext=2013-11-05 23:06:05
  Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\firstrun
  Directory.subfile.size=0
  Directory.subfile.md5=D41D8CD98F00B204E9800998ECF8427E
  Directory.subfile.filedate=1383689158
  Directory.subfile.filedatetext=2013-11-05 23:05:58
  Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\process_mgr.xml
  Directory.subfile.size=220
  Directory.subfile.md5=0FBAFD0F852466354337E54EEF679AC2
  Directory.subfile.filedate=1383689849
  Directory.subfile.filedatetext=2013-11-05 23:17:28
  Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\promote.xml
  Directory.subfile.size=5926
  Directory.subfile.md5=B4D81B2192BB4FF7AC68105E338DF78D
  Directory.subfile.filedate=1383689165
  Directory.subfile.filedatetext=2013-11-05 23:06:04
  Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\components\component_libcef_1.1364.1123.exe
  Directory.subfile.size=10434864
  Directory.subfile.md5=8E390845A88CB1E0406CE350F570CF4B
  Directory.subfile.filedate=1383689259
  Directory.subfile.filedatetext=2013-11-05 23:07:39
  Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\desk_bkg\desk_bkg_1.png
  Directory.subfile.size=79965
  Directory.subfile.md5=39CB48E50C1687943D9D8243534A978C
  Directory.subfile.filedate=1383689159
  Directory.subfile.filedatetext=2013-11-05 23:05:59
  Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\desk_bkg\desk_bkg_2.png
  Directory.subfile.size=262007
  Directory.subfile.md5=600C71AC313C6D8CB86C8DBF97808CB2
  Directory.subfile.filedate=1383689159
  Directory.subfile.filedatetext=2013-11-05 23:05:59
  Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\desk_bkg\desk_bkg_3.png
  Directory.subfile.size=109761
  Directory.subfile.md5=35361BC157F356FA8B05238790C70C1E
  Directory.subfile.filedate=1383689159
  Directory.subfile.filedatetext=2013-11-05 23:05:59
  Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\desk_bkg\desk_bkg_4.png
  Directory.subfile.size=311068
  Directory.subfile.md5=472564D9BE514897A479679A16AF6295
  Directory.subfile.filedate=1383689160
  Directory.subfile.filedatetext=2013-11-05 23:05:59
  Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\desk_bkg\desk_bkg_5.png
  Directory.subfile.size=201084
  Directory.subfile.md5=7BA3473A9526CDB3680E823C3823AA0C
  Directory.subfile.filedate=1383689160
  Directory.subfile.filedatetext=2013-11-05 23:05:59
  Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\desk_bkg\desk_bkg_default.png
  Directory.subfile.size=2031
  Directory.subfile.md5=F5B39121E867C9936CCB6268837A1894
  Directory.subfile.filedate=1383689160
  Directory.subfile.filedatetext=2013-11-05 23:06:00
  Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\icons\337_7c9140b13c049fd26989f7fa25b77cb1_48_48.png
  Directory.subfile.size=3387
  Directory.subfile.md5=0F81CB54F5E938AA0DF1647C9E91F944
  Directory.subfile.filedate=1383689369
  Directory.subfile.filedatetext=2013-11-05 23:09:29
  Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\icons\angrybirds_00ff92c12703baaf0130d6aec427d047_48_48.png
  Directory.subfile.size=3497
  Directory.subfile.md5=FB4E1DEAFC3145BE69A525D646982649
  Directory.subfile.filedate=1383689349
  Directory.subfile.filedatetext=2013-11-05 23:09:09
  Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\icons\Barbie_00a67ff4ef657679a6c88553135d62ad_48_48.png
  Directory.subfile.size=6469
  Directory.subfile.md5=6FEC5304BA5E57CD34F7FB9818BEF420
  Directory.subfile.filedate=1383689372
  Directory.subfile.filedatetext=2013-11-05 23:09:31
  Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\icons\BigFarm_de933b0e5218a4db24bebe3d55ed3558_48_48.png
  Directory.subfile.size=6293
  Directory.subfile.md5=E646335099C567E2B8EDC0BE23FAE1E7
  Directory.subfile.filedate=1383689351
  Directory.subfile.filedatetext=2013-11-05 23:09:11
  Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\icons\CCleaner_dee5cce01ac81d7a7a6794a92a62bfa4.ico
  Directory.subfile.size=71313
  Directory.subfile.md5=7674A834A680252C5086098DD5DFCFA2
  Directory.subfile.filedate=1383689656
  Directory.subfile.filedatetext=2013-11-05 23:14:16
  Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\icons\CCleaner_dee5cce01ac81d7a7a6794a92a62bfa4_48_48.png
  Directory.subfile.size=4857
  Directory.subfile.md5=67DC0EB2B9EA9969E2C9623BD3BE36D1
  Directory.subfile.filedate=1383689662
  Directory.subfile.filedatetext=2013-11-05 23:14:21
  Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\icons\Empire_22b42f57d1c467841280810e218d5510_48_48.png
  Directory.subfile.size=4485
  Directory.subfile.md5=523516E00F26A9DCC3179D2F710A5D97
  Directory.subfile.filedate=1383689355
  Directory.subfile.filedatetext=2013-11-05 23:09:14
  Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\icons\ESPN_a7b078f5f5f5b87efcef66ab5783cf9d_48_48.png
  Directory.subfile.size=1673
  Directory.subfile.md5=81A6E66F91C4CB5AC3E1EFC7A38CB632
  Directory.subfile.filedate=1383689362
  Directory.subfile.filedatetext=2013-11-05 23:09:21
  Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\icons\Facebook_aab07bc79cf599b25c0110f32d46a3ef_48_48.png
  Directory.subfile.size=2947
  Directory.subfile.md5=5889699F0C98BAAE054385EE602765ED
  Directory.subfile.filedate=1383689374
  Directory.subfile.filedatetext=2013-11-05 23:09:33
  Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\icons\gcalendar_50b3e3c5fc202f0cfcae8032b2465c1b_48_48.png
  Directory.subfile.size=1678
  Directory.subfile.md5=0562CFC214EC26501CF3DBA7706BD0B6
  Directory.subfile.filedate=1383689364
  Directory.subfile.filedatetext=2013-11-05 23:09:23
  Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\icons\Gmail_731b6d011bd9f67463a916a496775935_48_48.png
  Directory.subfile.size=1578
  Directory.subfile.md5=3688623FB3CD88347C4FFF62849275F0
  Directory.subfile.filedate=1383689359
  Directory.subfile.filedatetext=2013-11-05 23:09:18
  Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\icons\Google_60d75cb277f0c452fa60dba8350caf65_48_48.png
  Directory.subfile.size=5539
  Directory.subfile.md5=C561A91188026FD2BE462838BB8495F0
  Directory.subfile.filedate=1383689379
  Directory.subfile.filedatetext=2013-11-05 23:09:38
  Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\icons\iexplore_fc981e830600c8c44f26996ccab29414.ico
  Directory.subfile.size=82151
  Directory.subfile.md5=12CE4FAE05C5CC52955D83002528FD53
  Directory.subfile.filedate=1383689346
  Directory.subfile.filedatetext=2013-11-05 23:09:06
  Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\icons\iexplore_fc981e830600c8c44f26996ccab29414_48_48.png
  Directory.subfile.size=4985
  Directory.subfile.md5=89DF0607A2148022E73CF816E7C9C000
  Directory.subfile.filedate=1383689346
  Directory.subfile.filedatetext=2013-11-05 23:09:06
  Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\icons\Mario_52934d81761dc31187a93a3a0be7fecc_48_48.png
  Directory.subfile.size=7410
  Directory.subfile.md5=8E2C1FB25D5A43E50050DA1E75B8E829
  Directory.subfile.filedate=1383689371
  Directory.subfile.filedatetext=2013-11-05 23:09:31
  Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\icons\Opera_8594f203304b300fc83e95129a80b002.ico
  Directory.subfile.size=367958
  Directory.subfile.md5=65526D895A005097710560E854E4BD40
  Directory.subfile.filedate=1383689346
  Directory.subfile.filedatetext=2013-11-05 23:09:05
  Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\icons\Opera_8594f203304b300fc83e95129a80b002_48_48.png
  Directory.subfile.size=4257
  Directory.subfile.md5=30780730CCCB29DC735299A344DB7023
  Directory.subfile.filedate=1383689346
  Directory.subfile.filedatetext=2013-11-05 23:09:05
  Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\icons\Outlook_6f817b67fa6af1a9c8abfa3813a8595c_48_48.png
  Directory.subfile.size=1034
  Directory.subfile.md5=12A0577A36B6102DE489C120629282DB
  Directory.subfile.filedate=1383689360
  Directory.subfile.filedatetext=2013-11-05 23:09:20
  Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\icons\pulse_b5a242da04cc06eacd02b1ca41e3583c_48_48.png
  Directory.subfile.size=1471
  Directory.subfile.md5=C7BABCC90709D35E29604DAC0F62192C
  Directory.subfile.filedate=1383689366
  Directory.subfile.filedatetext=2013-11-05 23:09:25
  Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\icons\sys_computer_48_48.png
  Directory.subfile.size=4955
  Directory.subfile.md5=11828301476D2EB5811BE13684251EC5
  Directory.subfile.filedate=1383689345
  Directory.subfile.filedatetext=2013-11-05 23:09:05
  Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\icons\sys_control_panel_48_48.png
  Directory.subfile.size=4451
  Directory.subfile.md5=97196978D6E6ADF86B46094BA17FBD24
  Directory.subfile.filedate=1383689346
  Directory.subfile.filedatetext=2013-11-05 23:09:06
  Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\icons\sys_my_documents_48_48.png
  Directory.subfile.size=3987
  Directory.subfile.md5=BD685DC2A0ADE90D4D9E48A79AA41DB7
  Directory.subfile.filedate=1383689347
  Directory.subfile.filedatetext=2013-11-05 23:09:06
  Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\icons\Twitter_ebddd85ec04b7b94a2b2e97b73a90a4a_48_48.png
  Directory.subfile.size=3696
  Directory.subfile.md5=390D15807C142DFC7630D11F9DC022F6
  Directory.subfile.filedate=1383689375
  Directory.subfile.filedatetext=2013-11-05 23:09:35
  Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\icons\Youtube_bf18fdfc4aefd6417a8bacae4be5b415_48_48.png
  Directory.subfile.size=4469
  Directory.subfile.md5=5E075D860EA8A7D9DD510F44BB82C2E5
  Directory.subfile.filedate=1383689376
  Directory.subfile.filedatetext=2013-11-05 23:09:36
  Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\promote\337.ico
  Directory.subfile.size=15086
  Directory.subfile.md5=761DD2166214981120FAD0FF9F43C479
  Directory.subfile.filedate=1383689164
  Directory.subfile.filedatetext=2013-11-05 23:06:04
  Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\promote\337_7c9140b13c049fd26989f7fa25b77cb1.ico
  Directory.subfile.size=15086
  Directory.subfile.md5=761DD2166214981120FAD0FF9F43C479
  Directory.subfile.filedate=1383689369
  Directory.subfile.filedatetext=2013-11-05 23:09:29
  Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\promote\barbie.ico
  Directory.subfile.size=15086
  Directory.subfile.md5=690F18A933D2602125041B2613992063
  Directory.subfile.filedate=1383689164
  Directory.subfile.filedatetext=2013-11-05 23:06:04
  Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\promote\Barbie_00a67ff4ef657679a6c88553135d62ad.ico
  Directory.subfile.size=15086
  Directory.subfile.md5=690F18A933D2602125041B2613992063
  Directory.subfile.filedate=1383689372
  Directory.subfile.filedatetext=2013-11-05 23:09:31
  Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\promote\facebook.ico
  Directory.subfile.size=13942
  Directory.subfile.md5=6BF7864D2BC71231FF1E9B22DAE7F627
  Directory.subfile.filedate=1383689164
  Directory.subfile.filedatetext=2013-11-05 23:06:04
  Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\promote\Facebook_aab07bc79cf599b25c0110f32d46a3ef.ico
  Directory.subfile.size=13942
  Directory.subfile.md5=6BF7864D2BC71231FF1E9B22DAE7F627
  Directory.subfile.filedate=1383689374
  Directory.subfile.filedatetext=2013-11-05 23:09:33
  Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\promote\GameCenter.ico
  Directory.subfile.size=13942
  Directory.subfile.md5=C43C4159B62E4EAED3C7677902627806
  Directory.subfile.filedate=1383689164
  Directory.subfile.filedatetext=2013-11-05 23:06:04
  Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\promote\google.ico
  Directory.subfile.size=13942
  Directory.subfile.md5=638D1346BB53FCF63CA208A6A566528E
  Directory.subfile.filedate=1383689164
  Directory.subfile.filedatetext=2013-11-05 23:06:04
  Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\promote\Google_60d75cb277f0c452fa60dba8350caf65.ico
  Directory.subfile.size=13942
  Directory.subfile.md5=638D1346BB53FCF63CA208A6A566528E
  Directory.subfile.filedate=1383689378
  Directory.subfile.filedatetext=2013-11-05 23:09:37
  Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\promote\mario.ico
  Directory.subfile.size=15086
  Directory.subfile.md5=2A35CB9031362A53D31436247DB07EBA
  Directory.subfile.filedate=1383689164
  Directory.subfile.filedatetext=2013-11-05 23:06:04
  Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\promote\Mario_52934d81761dc31187a93a3a0be7fecc.ico
  Directory.subfile.size=15086
  Directory.subfile.md5=2A35CB9031362A53D31436247DB07EBA
  Directory.subfile.filedate=1383689370
  Directory.subfile.filedatetext=2013-11-05 23:09:30
  Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\promote\twitter.ico
  Directory.subfile.size=13942
  Directory.subfile.md5=E559051E49401DADC174EB19B59C7CA7
  Directory.subfile.filedate=1383689164
  Directory.subfile.filedatetext=2013-11-05 23:06:04
  Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\promote\Twitter_ebddd85ec04b7b94a2b2e97b73a90a4a.ico
  Directory.subfile.size=13942
  Directory.subfile.md5=E559051E49401DADC174EB19B59C7CA7
  Directory.subfile.filedate=1383689375
  Directory.subfile.filedatetext=2013-11-05 23:09:35
  Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\promote\v9.ico
  Directory.subfile.size=13942
  Directory.subfile.md5=BD31640E318030A99D4E7A1228D9FC1F
  Directory.subfile.filedate=1383689164
  Directory.subfile.filedatetext=2013-11-05 23:06:04
  Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\promote\youtube.ico
  Directory.subfile.size=13942
  Directory.subfile.md5=71DA62EE593F47DB9D9560E680989B9D
  Directory.subfile.filedate=1383689164
  Directory.subfile.filedatetext=2013-11-05 23:06:04
  Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\promote\Youtube_bf18fdfc4aefd6417a8bacae4be5b415.ico
  Directory.subfile.size=13942
  Directory.subfile.md5=71DA62EE593F47DB9D9560E680989B9D
  Directory.subfile.filedate=1383689376
  Directory.subfile.filedatetext=2013-11-05 23:09:36
  Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\sysicons\0737cc0646562366bf607aa1fa2a03bd_21.ico
  Directory.subfile.size=29926
  Directory.subfile.md5=7CBF0F9132A73607AF671090D299095E
  Directory.subfile.filedate=1383689346
  Directory.subfile.filedatetext=2013-11-05 23:09:06
  Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\sysicons\07584c03a5dd11a6104e45e8ad03b3fe_104.ico
  Directory.subfile.size=99567
  Directory.subfile.md5=AA7F7C9CA7C2A3E8B33C99338E0020D3
  Directory.subfile.filedate=1383689345
  Directory.subfile.filedatetext=2013-11-05 23:09:04
  Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\sysicons\07584c03a5dd11a6104e45e8ad03b3fe_107.ico
  Directory.subfile.size=79781
  Directory.subfile.md5=F0CFA464CDD86350DAE8E1AC6E3A25C3
  Directory.subfile.filedate=1383689347
  Directory.subfile.filedatetext=2013-11-05 23:09:06
  Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\wp\r0.jpg
  Directory.subfile.size=218023
  Directory.subfile.md5=7C45B7F001DBA3370D041B53EE843075
  Directory.subfile.filedate=1383689350
  Directory.subfile.filedatetext=2013-11-05 23:09:10
  Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\wp\r1.jpg
  Directory.subfile.size=191011
  Directory.subfile.md5=BFF12C91F2DCA192FB2AF51321CCEA71
  Directory.subfile.filedate=1383689348
  Directory.subfile.filedatetext=2013-11-05 23:09:07
  Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\wp\r2.jpg
  Directory.subfile.size=283094
  Directory.subfile.md5=D33F802276360250E4C7E6B985E3624C
  Directory.subfile.filedate=1383689349
  Directory.subfile.filedatetext=2013-11-05 23:09:09
  Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\wp\r3.jpg
  Directory.subfile.size=106599
  Directory.subfile.md5=25AB52919B7370C84485C2F1508EF9B2
  Directory.subfile.filedate=1383689351
  Directory.subfile.filedatetext=2013-11-05 23:09:10
  Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\wp\r4.jpg
  Directory.subfile.size=135948
  Directory.subfile.md5=7D84542B52308B3FA42595929F8832F1
  Directory.subfile.filedate=1383689349
  Directory.subfile.filedatetext=2013-11-05 23:09:09
  Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\wp\r5.jpg
  Directory.subfile.size=134889
  Directory.subfile.md5=AEABC8EE5D6A8476F7622CC208DD207D
  Directory.subfile.filedate=1383689348
  Directory.subfile.filedatetext=2013-11-05 23:09:07
  Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\wp\r6.jpg
  Directory.subfile.size=73669
  Directory.subfile.md5=44896DB973A2CBA4672280036F74A699
  Directory.subfile.filedate=1383689349
  Directory.subfile.filedatetext=2013-11-05 23:09:09
  Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\wp\r7.jpg
  Directory.subfile.size=120720
  Directory.subfile.md5=653EA736D13D96169483EA89C4A67082
  Directory.subfile.filedate=1383689349
  Directory.subfile.filedatetext=2013-11-05 23:09:09
  Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\wp\r8.jpg
  Directory.subfile.size=272547
  Directory.subfile.md5=ACFCDE97F94696639696C975B54AA1F4
  Directory.subfile.filedate=1383689349
  Directory.subfile.filedatetext=2013-11-05 23:09:08
  Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\wp\r9.jpg
  Directory.subfile.size=108644
  Directory.subfile.md5=3C65AF383BC4ACC0A635A012B7826808
  Directory.subfile.filedate=1383689348
  Directory.subfile.filedatetext=2013-11-05 23:09:08
  Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\app\config\1\angrybirds.db
  Directory.subfile.size=836
  Directory.subfile.md5=A22A1487A1CFCE12EFE7264B837D7DC1
  Directory.subfile.filedate=1383689349
  Directory.subfile.filedatetext=2013-11-05 23:09:09
  Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\app\config\1\angrybirds.ico
  Directory.subfile.size=15086
  Directory.subfile.md5=04678F375785D80A9E22FF477C5417EF
  Directory.subfile.filedate=1383689348
  Directory.subfile.filedatetext=2013-11-05 23:09:08
  Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\app\config\3\BigFarm.db
  Directory.subfile.size=890
  Directory.subfile.md5=FEA225420438A0F53528FAE05E16A9E0
  Directory.subfile.filedate=1383689351
  Directory.subfile.filedatetext=2013-11-05 23:09:11
  Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\app\config\3\BigFarm.ico
  Directory.subfile.size=82726
  Directory.subfile.md5=91E58CABF6C3C530189E2B1031BEED59
  Directory.subfile.filedate=1383689351
  Directory.subfile.filedatetext=2013-11-05 23:09:10
  Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\app\config\35\Gmail.db
  Directory.subfile.size=778
  Directory.subfile.md5=8D16FFFB1992D48E3CB4D8404C518723
  Directory.subfile.filedate=1383689359
  Directory.subfile.filedatetext=2013-11-05 23:09:18
  Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\app\config\35\Gmail.ico
  Directory.subfile.size=13262
  Directory.subfile.md5=43E266FA15B8F01B425D381211A8791C
  Directory.subfile.filedate=1383689357
  Directory.subfile.filedatetext=2013-11-05 23:09:16
  Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\app\config\36\Outlook.db
  Directory.subfile.size=796
  Directory.subfile.md5=8DE87696714794E2552896C853386EE7
  Directory.subfile.filedate=1383689360
  Directory.subfile.filedatetext=2013-11-05 23:09:20
  Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\app\config\36\Outlook.ico
  Directory.subfile.size=13262
  Directory.subfile.md5=F8CCECACF455195E9FF5067D20A9CB06
  Directory.subfile.filedate=1383689359
  Directory.subfile.filedatetext=2013-11-05 23:09:19
  Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\app\config\39\ESPN.db
  Directory.subfile.size=920
  Directory.subfile.md5=9C78DF11E968D9DD10247231BE2CC2C7
  Directory.subfile.filedate=1383689362
  Directory.subfile.filedatetext=2013-11-05 23:09:21
  Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\app\config\39\ESPN.ico
  Directory.subfile.size=15086
  Directory.subfile.md5=9E44300746A04FC221381900153EFE3F
  Directory.subfile.filedate=1383689361
  Directory.subfile.filedatetext=2013-11-05 23:09:20
  Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\app\config\4\Empire.db
  Directory.subfile.size=872
  Directory.subfile.md5=21E8C7928D43A3B85ECBD4E1460EFF26
  Directory.subfile.filedate=1383689354
  Directory.subfile.filedatetext=2013-11-05 23:09:14
  Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\app\config\4\Empire.ico
  Directory.subfile.size=82726
  Directory.subfile.md5=5B186EA99E25E888A95A1D3931512287
  Directory.subfile.filedate=1383689353
  Directory.subfile.filedatetext=2013-11-05 23:09:12
  Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\app\config\41\gcalendar.db
  Directory.subfile.size=858
  Directory.subfile.md5=D94EFA5A58CF16DB847E542F69FD50E2
  Directory.subfile.filedate=1383689364
  Directory.subfile.filedatetext=2013-11-05 23:09:23
  Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\app\config\41\gcalendar.ico
  Directory.subfile.size=15086
  Directory.subfile.md5=03CD38BE20AF6CB71874DAC6EE7A821C
  Directory.subfile.filedate=1383689363
  Directory.subfile.filedatetext=2013-11-05 23:09:22
  Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\app\config\42\pulse.db
  Directory.subfile.size=764
  Directory.subfile.md5=10E74A23CA1F759991A6EDF3859BC717
  Directory.subfile.filedate=1383689365
  Directory.subfile.filedatetext=2013-11-05 23:09:25
  Directory.subfile=C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\app\config\42\pulse.ico
  Directory.subfile.size=15086
  Directory.subfile.md5=CCBD925EF735C7946F36FE67E63C17B3
  Directory.subfile.filedate=1383689364
  Directory.subfile.filedatetext=2013-11-05 23:09:24

Elex.Desk365: [SBI $9BC51D3A]  Configuration file (File, nothing done)
  C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\desk_bkg_list.xml
  Properties.size=1434
  Properties.md5=292ECDA960D994D90A33A5E7C3EA9F81
  Properties.filedate=1383689164
  Properties.filedatetext=2013-11-05 23:06:04

Elex.Desk365: [SBI $8D473845]  Configuration file (File, nothing done)
  C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\desk_list.xml
  Properties.size=4318
  Properties.md5=3FA9E205526B13074690CD6FFEF27AE1
  Properties.filedate=1383689667
  Properties.filedatetext=2013-11-05 23:14:27

Elex.Desk365: [SBI $C29E5543]  Configuration file (File, nothing done)
  C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\desk_settings.ini
  Properties.size=80
  Properties.md5=6E8ECBF4B96757DFC8B42989C7B4C0BA
  Properties.filedate=1383689165
  Properties.filedatetext=2013-11-05 23:06:05

Elex.Desk365: [SBI $3C87FAD7]  Configuration file (File, nothing done)
  C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\process_mgr.xml
  Properties.size=220
  Properties.md5=0FBAFD0F852466354337E54EEF679AC2
  Properties.filedate=1383689849
  Properties.filedatetext=2013-11-05 23:17:28

Elex.Desk365: [SBI $DF805F27]  Configuration file (File, nothing done)
  C:\Users\Media.Com GmbH\AppData\Roaming\Desk 365\promote.xml
  Properties.size=5926
  Properties.md5=B4D81B2192BB4FF7AC68105E338DF78D
  Properties.filedate=1383689165
  Properties.filedatetext=2013-11-05 23:06:04

Elex.Desk365: [SBI $9E0CDB3D] Program directory (Directory, nothing done)
  C:\Program Files\Desk 365\
  Directory.subfile=C:\Program Files\Desk 365\desk_bkg_list.xml
  Directory.subfile.size=1434
  Directory.subfile.md5=292ECDA960D994D90A33A5E7C3EA9F81
  Directory.subfile.filedate=1383689164
  Directory.subfile.filedatetext=2013-11-05 23:06:04
  Directory.subfile=C:\Program Files\Desk 365\desk_list.xml
  Directory.subfile.size=312
  Directory.subfile.md5=59F9E2248D06B0E2F98514F3181AA08C
  Directory.subfile.filedate=1383689165
  Directory.subfile.filedatetext=2013-11-05 23:06:04
  Directory.subfile=C:\Program Files\Desk 365\desk_settings.ini
  Directory.subfile.size=80
  Directory.subfile.md5=6E8ECBF4B96757DFC8B42989C7B4C0BA
  Directory.subfile.filedate=1383689165
  Directory.subfile.filedatetext=2013-11-05 23:06:05
  Directory.subfile=C:\Program Files\Desk 365\process_mgr.xml
  Directory.subfile.size=220
  Directory.subfile.md5=0FBAFD0F852466354337E54EEF679AC2
  Directory.subfile.filedate=1383689165
  Directory.subfile.filedatetext=2013-11-05 23:06:04
  Directory.subfile=C:\Program Files\Desk 365\promote.xml
  Directory.subfile.size=5926
  Directory.subfile.md5=B4D81B2192BB4FF7AC68105E338DF78D
  Directory.subfile.filedate=1383689165
  Directory.subfile.filedatetext=2013-11-05 23:06:04
  Directory.subfile=C:\Program Files\Desk 365\recent.xml
  Directory.subfile.size=200
  Directory.subfile.md5=4B021AF446161B9B0696D14C0A94A321
  Directory.subfile.filedate=1383689165
  Directory.subfile.filedatetext=2013-11-05 23:06:04

Elex.Desk365: [SBI $9673464D]  Configuration file (File, nothing done)
  C:\Program Files\Desk 365\desk_bkg_list.xml
  Properties.size=1434
  Properties.md5=292ECDA960D994D90A33A5E7C3EA9F81
  Properties.filedate=1383689164
  Properties.filedatetext=2013-11-05 23:06:04

Elex.Desk365: [SBI $CD3F2E88]  Configuration file (File, nothing done)
  C:\Program Files\Desk 365\desk_list.xml
  Properties.size=312
  Properties.md5=59F9E2248D06B0E2F98514F3181AA08C
  Properties.filedate=1383689165
  Properties.filedatetext=2013-11-05 23:06:04

Elex.Desk365: [SBI $CF280E34]  Configuration file (File, nothing done)
  C:\Program Files\Desk 365\desk_settings.ini
  Properties.size=80
  Properties.md5=6E8ECBF4B96757DFC8B42989C7B4C0BA
  Properties.filedate=1383689165
  Properties.filedatetext=2013-11-05 23:06:05

Elex.Desk365: [SBI $B607A6FD]  Configuration file (File, nothing done)
  C:\Program Files\Desk 365\process_mgr.xml
  Properties.size=220
  Properties.md5=0FBAFD0F852466354337E54EEF679AC2
  Properties.filedate=1383689165
  Properties.filedatetext=2013-11-05 23:06:04

Elex.Desk365: [SBI $A50DD4C3]  Configuration file (File, nothing done)
  C:\Program Files\Desk 365\promote.xml
  Properties.size=5926
  Properties.md5=B4D81B2192BB4FF7AC68105E338DF78D
  Properties.filedate=1383689165
  Properties.filedatetext=2013-11-05 23:06:04

Elex.Desk365: [SBI $55641D0D]  Configuration file (File, nothing done)
  C:\Program Files\Desk 365\recent.xml
  Properties.size=200
  Properties.md5=4B021AF446161B9B0696D14C0A94A321
  Properties.filedate=1383689165
  Properties.filedatetext=2013-11-05 23:06:04

ProDe.DownloadGuide: [SBI $48835C16] Program directory (Directory, nothing done)
  C:\Users\Media.Com GmbH\AppData\Local\DownloadGuide\
  Directory.subfile=C:\Users\Media.Com GmbH\AppData\Local\DownloadGuide\FreeSystemUtilities.exe
  Directory.subfile.size=13885848
  Directory.subfile.md5=EA294FAE71549D86FC8280035D0C0369
  Directory.subfile.filedate=1383688687
  Directory.subfile.filedatetext=2013-11-05 22:58:06
  Directory.subfile=C:\Users\Media.Com GmbH\AppData\Local\DownloadGuide\zalando.ico
  Directory.subfile.size=245862
  Directory.subfile.md5=E69943D4C22705095D80190B8B82CFE8
  Directory.subfile.filedate=1383688680
  Directory.subfile.filedatetext=2013-11-05 22:57:59
  Directory.subfile=C:\Users\Media.Com GmbH\AppData\Local\DownloadGuide\Offers\plus-hd-3-8.exe
  Directory.subfile.size=4759091
  Directory.subfile.md5=A06D525FF5C7F19D7B7E86022A393A58
  Directory.subfile.filedate=1383688693
  Directory.subfile.filedatetext=2013-11-05 22:58:12
  Directory.subfile=C:\Users\Media.Com GmbH\AppData\Local\DownloadGuide\Offers\vis.exe
  Directory.subfile.size=651264
  Directory.subfile.md5=CC3C96C61906E41F75071C2EBCC79564
  Directory.subfile.filedate=1383688688
  Directory.subfile.filedatetext=2013-11-05 22:58:07

ProDe.DownloadGuide: [SBI $03713CD0] Program directory (Directory, nothing done)
  C:\Users\Media.Com GmbH\AppData\Local\DownloadGuide\Offers\
  Directory.subfile=C:\Users\Media.Com GmbH\AppData\Local\DownloadGuide\Offers\plus-hd-3-8.exe
  Directory.subfile.size=4759091
  Directory.subfile.md5=A06D525FF5C7F19D7B7E86022A393A58
  Directory.subfile.filedate=1383688693
  Directory.subfile.filedatetext=2013-11-05 22:58:12
  Directory.subfile=C:\Users\Media.Com GmbH\AppData\Local\DownloadGuide\Offers\vis.exe
  Directory.subfile.size=651264
  Directory.subfile.md5=CC3C96C61906E41F75071C2EBCC79564
  Directory.subfile.filedate=1383688688
  Directory.subfile.filedatetext=2013-11-05 22:58:07

SimplyTech.HomeTab: [SBI $70303BAC] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\Software\Microsoft\Internet Explorer\SearchScopes\{afdbddaa-5d3f-42ee-b79c-185a7020515b}

myPCBackup: [SBI $BE3057E0] Program directory (Directory, nothing done)
  C:\Program Files\MyPC Backup\
  Directory.subfile=C:\Program Files\MyPC Backup\DEL_UnRegisterExtensions.exe
  Directory.subfile.size=15872
  Directory.subfile.md5=32CCEDC4CE079CF10C778CC75E3B40E9
  Directory.subfile.filedate=1379630278
  Directory.subfile.filedatetext=2013-09-19 23:37:58

PCUtilities.OptimizerPro: [SBI $7AF08CCA] Program directory (Directory, nothing done)
  C:\Users\Media.Com GmbH\Documents\Optimizer Pro\
  Directory.subfile=C:\Users\Media.Com GmbH\Documents\Optimizer Pro\CookiesException.txt
  Directory.subfile.size=0
  Directory.subfile.md5=D41D8CD98F00B204E9800998ECF8427E
  Directory.subfile.filedate=1383689227
  Directory.subfile.filedatetext=2013-11-05 23:07:07

SweetIM: [SBI $3C0145EF] Settings (Registry Value, nothing done)
  HKEY_LOCAL_MACHINE\SOFTWARE\SweetIM\simapp_id

SweetIM: [SBI $CA2339F3] Settings (Registry Key, nothing done)
  HKEY_LOCAL_MACHINE\SOFTWARE\SweetIM

Toolbar.Snap.do: [SBI $B8DD52AF] Settings (Registry Key, nothing done)
  HKEY_CLASSES_ROOT\CLSID\{AE07101B-46D4-4A98-AF68-0333EA26E113}

Toolbar.Snap.do: [SBI $2A1CCFF9] IE toolbar (Registry Value, nothing done)
  HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\{ae07101b-46d4-4a98-af68-0333ea26e113}

Macromedia.FlashPlayer.Cookies: [SBI $6AA61750]  Text file (File, nothing done)
  C:\Users\Media.Com GmbH\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YPW2VEDG\filenuke.com\com.jeroenwijering.sol
  Properties.size=54
  Properties.md5=76981DA4255DFA0EF911C85E93C3E8D6
  Properties.filedate=1383433950
  Properties.filedatetext=2013-11-03 00:12:30

Macromedia.FlashPlayer.Cookies: [SBI $6AA61750]  Text file (File, nothing done)
  C:\Users\Media.Com GmbH\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YPW2VEDG\is.myvideo.de\com.conviva.livePass.sol
  Properties.size=225
  Properties.md5=C1B6E73F6A626CF75596409C7589F8E0
  Properties.filedate=1383543321
  Properties.filedatetext=2013-11-04 06:35:21

Macromedia.FlashPlayer.Cookies: [SBI $6AA61750]  Text file (File, nothing done)
  C:\Users\Media.Com GmbH\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YPW2VEDG\streamcloud.eu\com.jeroenwijering.sol
  Properties.size=63
  Properties.md5=D1F80550CF4787F961C275E00676ED41
  Properties.filedate=1383681411
  Properties.filedatetext=2013-11-05 20:56:51

Macromedia.FlashPlayer.Cookies: [SBI $6AA61750]  Text file (File, nothing done)
  C:\Users\Media.Com GmbH\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YPW2VEDG\www.bet365.com\b365lipcs.sol
  Properties.size=419
  Properties.md5=C26C3323F144DB0FC09010D8C495225B
  Properties.filedate=1383847066
  Properties.filedatetext=2013-11-07 18:57:46

Macromedia.FlashPlayer.Cookies: [SBI $6AA61750]  Text file (File, nothing done)
  C:\Users\Media.Com GmbH\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YPW2VEDG\www.bet365.com\b365push.sol
  Properties.size=54
  Properties.md5=E421239FD63B79A0C7256CF24E306D02
  Properties.filedate=1383847045
  Properties.filedatetext=2013-11-07 18:57:25

Macromedia.FlashPlayer.Cookies: [SBI $6AA61750]  Text file (File, nothing done)
  C:\Users\Media.Com GmbH\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YPW2VEDG\www.bet365.com\betslip365.sol
  Properties.size=72
  Properties.md5=7DB56FCC0A174E11332701640E60060E
  Properties.filedate=1383847048
  Properties.filedatetext=2013-11-07 18:57:28

Macromedia.FlashPlayer.Cookies: [SBI $6AA61750]  Text file (File, nothing done)
  C:\Users\Media.Com GmbH\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YPW2VEDG\www.bet365.com\htrGgjy810GhjsyjwutirtizqjGifyfGhjsyjwutihttpnj.sol
  Properties.size=144
  Properties.md5=49EB3AF0C4FF1FB358D6A820096EE536
  Properties.filedate=1383847066
  Properties.filedatetext=2013-11-07 18:57:46

Macromedia.FlashPlayer.Cookies: [SBI $1EF45977]  Text file (File, nothing done)
  C:\Users\Media.Com GmbH\AppData\Roaming\Macromedia\Flash Player\#SharedObjects\YPW2VEDG\www.ajaxcdn.org\swf.swf\dm_cookie.sol
  Properties.size=416
  Properties.md5=C88F477D67925D22272FA6AD869C1FE4
  Properties.filedate=1384549088
  Properties.filedatetext=2013-11-15 21:58:07

Internet Explorer: [SBI $1E8157BE] Typed URL list (Registry Key, nothing done)
  HKEY_USERS\S-1-5-21-2524179397-3888794832-3099966248-1000\Software\Microsoft\Internet Explorer\TypedURLs

Internet Explorer: [SBI $0BC7B918] User agent (Registry Change, nothing done)
  HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent

Internet Explorer: [SBI $0BC7B918] User agent (Registry Change, nothing done)
  HKEY_USERS\S-1-5-21-2524179397-3888794832-3099966248-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent

Internet Explorer: [SBI $0BC7B918] User agent (Registry Change, nothing done)
  HKEY_USERS\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent

MS Management Console: [SBI $ECD50EAD] Recent command list (Registry Key, nothing done)
  HKEY_USERS\S-1-5-21-2524179397-3888794832-3099966248-1000\Software\Microsoft\Microsoft Management Console\Recent File List

MS Direct3D: [SBI $7FB7B83F] Most recent application (Registry Change, nothing done)
  HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Direct3D\MostRecentApplication\Name

MS Direct3D: [SBI $C2A44980] Most recent application (Registry Change, nothing done)
  HKEY_USERS\.DEFAULT\Software\Microsoft\Direct3D\MostRecentApplication\Name

MS Direct3D: [SBI $C2A44980] Most recent application (Registry Change, nothing done)
  HKEY_USERS\S-1-5-21-2524179397-3888794832-3099966248-1000\Software\Microsoft\Direct3D\MostRecentApplication\Name

MS Direct3D: [SBI $C2A44980] Most recent application (Registry Change, nothing done)
  HKEY_USERS\S-1-5-18\Software\Microsoft\Direct3D\MostRecentApplication\Name

MS DirectDraw: [SBI $EB49D5AF] Most recent application (Registry Change, nothing done)
  HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\DirectDraw\MostRecentApplication\Name

MS Paint: [SBI $07867C39] Recent file list (Registry Key, nothing done)
  HKEY_USERS\S-1-5-21-2524179397-3888794832-3099966248-1000\Software\Microsoft\Windows\CurrentVersion\Applets\Paint\Recent File List

MS Regedit: [SBI $C3B62FC1] Recent open key (Registry Change, nothing done)
  HKEY_USERS\S-1-5-21-2524179397-3888794832-3099966248-1000\Software\Microsoft\Windows\CurrentVersion\Applets\Regedit\LastKey

Windows.OpenWith: [SBI $F7204896] Open with list - .AVI extension (Registry Key, nothing done)
  HKEY_USERS\S-1-5-21-2524179397-3888794832-3099966248-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\FileExts\.AVI\OpenWithList

Windows Explorer: [SBI $AA0766B5] Stream history (Registry Key, nothing done)
  HKEY_USERS\S-1-5-21-2524179397-3888794832-3099966248-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\StreamMRU

Windows Explorer: [SBI $D20DA0AD] Recent file global history (Registry Key, nothing done)
  HKEY_USERS\S-1-5-21-2524179397-3888794832-3099966248-1000\Software\Microsoft\Windows\CurrentVersion\Explorer\RecentDocs

Cookie: [SBI $49804B54] Browser: Cookie (6) (Browser: Cookie, nothing done)
  

Cache: [SBI $49804B54] Browser: Cache (15) (Browser: Cache, nothing done)
  

Verlauf: [SBI $49804B54] Browser: History (63) (Browser: History, nothing done)
  

Verlauf: [SBI $49804B54] Browser: History (1000) (Browser: History, nothing done)
  


--- Spybot - Search & Destroy version: 2.1.18.131  DLL (build: 20130516) ---

2013-05-16 blindman.exe (2.1.18.151)
2013-05-16 explorer.exe (2.1.18.177)
2013-05-16 SDBootCD.exe (2.1.18.109)
2013-05-16 SDCleaner.exe (2.1.18.110)
2013-05-16 SDDelFile.exe (2.1.18.94)
2013-06-18 SDDisableProxy.exe
2013-05-16 SDFiles.exe (2.1.18.135)
2013-03-20 SDFileScanHelper.exe (2.1.16.1)
2013-05-16 SDFSSvc.exe (2.1.18.208)
2013-05-16 SDHookHelper.exe (2.1.18.2)
2013-05-16 SDHookInst32.exe (2.1.18.2)
2013-05-16 SDImmunize.exe (2.1.18.130)
2013-05-16 SDLogReport.exe (2.1.18.107)
2013-05-16 SDOnAccess.exe (2.1.18.4)
2013-05-16 SDPESetup.exe (2.1.18.3)
2013-05-16 SDPEStart.exe (2.1.18.86)
2013-05-16 SDPhoneScan.exe (2.1.18.28)
2013-05-16 SDPRE.exe (2.1.18.22)
2013-05-16 SDPrepPos.exe (2.1.18.10)
2013-05-16 SDQuarantine.exe (2.1.18.103)
2013-05-16 SDRootAlyzer.exe (2.1.18.116)
2013-05-16 SDSBIEdit.exe (2.1.18.39)
2013-05-16 SDScan.exe (2.1.18.177)
2013-05-16 SDScript.exe (2.1.18.53)
2013-05-16 SDSettings.exe (2.1.18.136)
2013-05-16 SDShell.exe (2.1.18.2)
2013-05-16 SDShred.exe (2.1.18.107)
2013-05-16 SDSysRepair.exe (2.1.18.101)
2013-05-16 SDTools.exe (2.1.18.150)
2013-07-25 SDTray.exe (2.1.21.129)
2013-05-16 SDUpdate.exe (2.1.18.91)
2013-05-16 SDUpdSvc.exe (2.1.18.76)
2013-07-10 SDWelcome.exe (2.1.21.129)
2013-05-15 SDWSCSvc.exe (2.1.18.2)
2013-06-19 spybotsd2-translation-frx.exe
2013-11-01 unins000.exe (51.1052.0.0)
1999-12-02 xcacls.exe
2012-08-23 borlndmm.dll (10.0.2288.42451)
2012-09-05 DelZip190.dll (1.9.0.107)
2012-09-10 libeay32.dll (1.0.0.4)
2012-09-10 libssl32.dll (1.0.0.4)
2013-05-16 SDAdvancedCheckLibrary.dll (2.1.18.98)
2013-05-16 SDAV.dll
2013-05-16 SDECon32.dll (2.1.18.113)
2013-04-05 SDEvents.dll (2.1.16.2)
2013-05-16 SDFileScanLibrary.dll (2.1.18.12)
2013-05-16 SDHook32.dll (2.1.18.2)
2013-05-16 SDImmunizeLibrary.dll (2.1.18.2)
2013-05-16 SDLicense.dll (2.1.18.0)
2013-05-16 SDLists.dll (2.1.18.4)
2013-05-16 SDResources.dll (2.1.18.7)
2013-05-16 SDScanLibrary.dll (2.1.18.131)
2013-05-16 SDTasks.dll (2.1.18.15)
2013-05-16 SDWinLogon.dll (2.1.18.0)
2012-08-23 sqlite3.dll
2012-09-10 ssleay32.dll (1.0.0.4)
2013-05-16 Tools.dll (2.1.18.36)
2013-11-12 Includes\Adware.sbi (*)
2013-11-12 Includes\AdwareC.sbi (*)
2010-08-13 Includes\Cookies.sbi (*)
2012-11-14 Includes\Dialer.sbi (*)
2012-11-14 Includes\DialerC.sbi (*)
2012-11-14 Includes\HeavyDuty.sbi (*)
2012-11-14 Includes\Hijackers.sbi (*)
2012-11-14 Includes\HijackersC.sbi (*)
2013-10-16 Includes\iPhone.sbi (*)
2013-06-25 Includes\Keyloggers.sbi (*)
2013-10-29 Includes\KeyloggersC.sbi (*)
2013-05-29 Includes\Malware.sbi (*)
2013-11-06 Includes\MalwareC.sbi (*)
2012-11-14 Includes\PUPS.sbi (*)
2013-10-22 Includes\PUPSC.sbi (*)
2012-11-14 Includes\Security.sbi (*)
2013-10-29 Includes\SecurityC.sbi (*)
2013-05-22 Includes\Spyware.sbi (*)
2013-08-06 Includes\SpywareC.sbi (*)
2011-06-07 Includes\Tracks.sbi (*)
2012-11-19 Includes\Tracks.uti (*)
2013-01-16 Includes\Trojans.sbi (*)
2013-05-13 Includes\TrojansC-02.sbi (*)
2013-11-12 Includes\TrojansC-03.sbi (*)
2013-10-22 Includes\TrojansC-04.sbi (*)
2013-05-08 Includes\TrojansC-05.sbi (*)
2013-08-06 Includes\TrojansC.sbi (*)
         

LastRegBack: 2013-11-12 21:40

==================== End Of Log ============================[/CODE]

[CODE]Additional scan result of Farbar Recovery Scan Tool (x86) Version: 18-11-2013
Ran by Media.Com GmbH at 2013-11-18 23:17:44
Running from C:\Users\Media.Com GmbH\Desktop
Boot Mode: Normal
==========================================================


==================== Security Center ========================

AV: AVG AntiVirus Free Edition 2013 (Disabled - Out of date) {0E9420C4-06B3-7FA0-3AB1-6E49CB52ECD9}
AV: Spybot - Search and Destroy (Disabled - Out of date) {20A26C15-1AF0-7CA3-9380-FAB824A7EE0D}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Spybot - Search and Destroy (Enabled - Up to date) {9BC38DF1-3CCA-732D-A930-C1CA5F20A4B0}
AS: AVG AntiVirus Free Edition 2013 (Enabled - Up to date) {B5F5C120-2089-702E-0001-553BB0D5A664}

==================== Installed Programs ======================

7-Zip 9.20
Acrobat.com (Version: 1.6.65)
Adobe AIR (Version: 2.5.1.17730)
Adobe Flash Player 11 ActiveX (Version: 11.9.900.117)
Adobe Flash Player 11 Plugin (Version: 11.9.900.152)
Adobe Reader X (10.1.4) - Deutsch (Version: 10.1.4)
Areca
ASUS WebStorage (Version: 3.0.108.222)
AsusScreensaver (Version: 1.05)
ASUSUpdate for Eee PC (Version: 1.06.03)
AsusVibe2.0 (Version: 2.0.6.125)
Atheros Client Installation Program (Version: 7.0)
Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Driver (Version: 1.0.2.43)
AVG 2013 (Version: 13.0.3408)
AVG 2013 (Version: 13.0.3426)
AVG 2013 (Version: 13.0.3629)
AVG 2013 (Version: 2013.0.3426)
AVG Security Toolbar (Version: 12.2.5.34)
Broadcom Wireless Network Adapter (Version: 1.00.0000)
Canon MP Navigator 3.1
Canon MP140 series Benutzerregistrierung
Canon Utilities Easy-PhotoPrint
CapsHook (Version: 1.0.0.7)
Contrôle ActiveX Windows Live Mesh pour connexions à distance (Version: 15.4.5722.2)
D3DX10 (Version: 15.4.2368.0902)
E-Cam (Version: 2.0.3.0)
Eee Docking 3.10.4 (Version: 3.10.4)
ExpressGateCloud (Version: 2.7.37.253)
Finger Sensing Pad Driver (Version: 9.1.3.4)
FontResizer (Version: 1.01.0011)
Galerie de photos Windows Live (Version: 15.4.3502.0922)
Game Park Console (Version: 6.2.0.3)
Hotkey Service (Version: 1.44)
InstantOn for EPC (Version: 2.1.4)
Intel(R) Graphics Media Accelerator Driver (Version: 8.14.10.2364)
Intel(R) Rapid Storage Technology (Version: 9.6.4.1002)
Internet Manager (Version: 22.001.18.00.748)
Java 7 Update 45 (Version: 7.0.450)
Java Auto Updater (Version: 2.1.9.8)
JavaFX 2.1.1 (Version: 2.1.1)
Junk Mail filter update (Version: 15.4.3502.0922)
LiveUpdate (Version: 1.29)
LocaleMe (Version: 1.3)
Mesh Runtime (Version: 15.4.5722.2)
Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319)
Microsoft .NET Framework 4 Client Profile DEU Language Pack (Version: 4.0.30319)
Microsoft Application Error Reporting (Version: 12.0.6012.5000)
Microsoft Silverlight (Version: 5.1.10411.0)
Microsoft SQL Server 2005 Compact Edition [ENU] (Version: 3.1.0000)
Microsoft Visual C++ 2005 Redistributable (Version: 8.0.59193)
Microsoft Visual C++ 2005 Redistributable (Version: 8.0.61001)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (Version: 9.0.30729)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (Version: 9.0.30729.4148)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (Version: 9.0.30729.6161)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (Version: 10.0.40219)
MotoHelper 2.1.32 Driver 5.4.0 (Version: 2.1.32)
MotoHelper MergeModules (Version: 1.2.0)
Motorola Mobile Drivers Installation 5.4.0 (Version: 5.4.0)
Mozilla Thunderbird 17.0.8 (x86 de) (Version: 17.0.8)
MSVCRT (Version: 15.4.2862.0708)
MSXML 4.0 SP2 (KB954430) (Version: 4.20.9870.0)
MSXML 4.0 SP2 (KB973688) (Version: 4.20.9876.0)
neroxml (Version: 1.0.0)
OpenOffice.org 3.3 (Version: 3.3.9567)
Opera 12.16 (Version: 12.16.1860)
Raccolta foto di Windows Live (Version: 15.4.3502.0922)
Realtek High Definition Audio Driver (Version: 6.0.1.6387)
ScanSoft OmniPage SE 4 (Version: 15.2.0020)
Spybot - Search & Destroy (Version: 2.1.21)
Super Hybrid Engine (Version: 2.19)
syncables desktop SE (Version: 5.5.746.11492)
Update for Microsoft .NET Framework 4 Client Profile (KB2468871) (Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2600217) (Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2836939) (Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2836939v3) (Version: 3)
Update for Zip Opener
ViewPassword
Visual Studio 2012 x86 Redistributables (Version: 14.0.0.1)
VLC media player 2.1.0 (Version: 2.1.0)
Windows Live (Version: 15.4.3502.0922)
Windows Live Communications Platform (Version: 15.4.3502.0922)
Windows Live Essentials (Version: 15.4.3502.0922)
Windows Live Essentials (Version: 15.4.3555.0308)
Windows Live Family Safety (Version: 15.4.3555.0308)
Windows Live Fotogalerie (Version: 15.4.3502.0922)
Windows Live ID Sign-in Assistant (Version: 7.250.4232.0)
Windows Live Installer (Version: 15.4.3502.0922)
Windows Live Mail (Version: 15.4.3502.0922)
Windows Live Mesh - ActiveX-besturingselement voor externe verbindingen (Version: 15.4.5722.2)
Windows Live Mesh (Version: 15.4.3502.0922)
Windows Live Mesh ActiveX Control for Remote Connections (Version: 15.4.5722.2)
Windows Live Messenger (Version: 15.4.3538.0513)
Windows Live MIME IFilter (Version: 15.4.3502.0922)
Windows Live Movie Maker (Version: 15.4.3502.0922)
Windows Live Photo Common (Version: 15.4.3502.0922)
Windows Live Photo Gallery (Version: 15.4.3502.0922)
Windows Live PIMT Platform (Version: 15.4.3508.1109)
Windows Live Remote Client (Version: 15.4.5722.2)
Windows Live Remote Client Resources (Version: 15.4.5722.2)
Windows Live Remote Service (Version: 15.4.5722.2)
Windows Live Remote Service Resources (Version: 15.4.5722.2)
Windows Live SOXE (Version: 15.4.3502.0922)
Windows Live SOXE Definitions (Version: 15.4.3502.0922)
Windows Live UX Platform (Version: 15.4.3502.0922)
Windows Live UX Platform Language Pack (Version: 15.4.3508.1109)
Windows Live Writer (Version: 15.4.3502.0922)
Windows Live Writer Resources (Version: 15.4.3502.0922)

==================== Restore Points =========================

10-11-2013 19:05:55 Windows-Sicherung
15-11-2013 19:48:46 Windows Update
15-11-2013 20:52:48 Windows Update
17-11-2013 16:37:38 Windows-Sicherung

==================== Hosts content: ==========================

2009-07-14 03:04 - 2013-11-09 18:06 - 00000027 ____A C:\windows\system32\Drivers\etc\hosts
127.0.0.1 localhost

==================== Scheduled Tasks (whitelisted) =============

Task: {0A1C65E5-0E26-4B09-9235-FA2790C7AD92} - System32\Tasks\{A625EF3D-6473-4F04-97A6-48DAC79495F6} => C:\Program Files\RegCleaner\RegCleanr.exe
Task: {0A629667-66B0-439E-9D86-2F13042B09E8} - System32\Tasks\MotoHelper Initial Update => C:\Program Files\Motorola\MotoHelper\MotoHelperUpdate.exe [2011-12-06] ()
Task: {12B88299-96AB-4A99-A9AA-56084136B340} - System32\Tasks\MotoHelper MUM => C:\Program Files\Motorola\MotoHelper\MotoHelperUpdate.exe [2011-12-06] ()
Task: {3937BF63-3323-4F69-AEA4-BFCD613CACA2} - System32\Tasks\Adobe-Online-Aktualisierungsprogramm => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2012-07-27] (Adobe Systems Incorporated)
Task: {44BFA5A6-1883-4DC6-A41F-914086251037} - System32\Tasks\{D80F25D4-B313-401A-B8C0-1C295ED5D7CA} => Firefox.exe
Task: {4E67436D-9DDD-4511-83B2-356F2F463F08} - System32\Tasks\ViewPassword Update => C:\Program Files\ViewPassword\ViewPassword.exe [2013-11-09] ()
Task: {4FBA8EE9-B48B-4D27-BA9A-0A7D129B314F} - System32\Tasks\{22A9C661-C2D7-46D4-91B3-8B226C716476} => D:\Program Files\RegCleaner\RegCleanr.exe
Task: {53B562C7-2010-4174-8F9E-047CD8E343D9} - System32\Tasks\Freemium1ClickMaint => D:\Down\RegCleaner\1Click.exe
Task: {54331128-04B4-4FBD-AEBF-D93188171555} - System32\Tasks\{E6014F26-2F39-4C4D-8F27-D75FB2C02259} => D:\Program Files\RegCleaner\RegCleanr.exe
Task: {6124E711-8399-4234-ADBD-6A24FFAE6234} - System32\Tasks\MotoHelper Update => C:\Program Files\Motorola\MotoHelper\MotoHelperUpdate.exe [2011-12-06] ()
Task: {63F38DD0-ED35-44F0-B690-CDFC0B9CDA55} - System32\Tasks\Desk 365 RunAsStdUser => C:\Program Files\Desk 365\desk365.exe
Task: {8C2A3830-8F91-4EEF-92A7-541F1509B70D} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\System32\Macromed\Flash\FlashPlayerUpdateService.exe [2013-11-16] (Adobe Systems Incorporated)
Task: {90F191D0-0BB0-4F91-B556-9971DF43DD65} - System32\Tasks\Browser Updater\Browser Updater => Rundll32.exe "C:\Program Files\HomeTab\TBUpdater.dll",TBCheckForUpdate
Task: {98A0E8B5-ADC0-4351-A941-DCAD21516744} - System32\Tasks\Omiga Plus RunAsStdUser => C:\Program Files\Omiga Plus\omigaplus.exe
Task: {9B214CF5-70EC-4873-8FE4-EE57A390AFD6} - System32\Tasks\ScanSoft Background Update => C:\Program Files\Common Files\ScanSoft Shared\SSBkgdUpdate\SSBkgdUpdate.exe [2006-10-25] (Nuance Communications, Inc.)
Task: {9D2DD2FF-11DE-4F67-BCA2-FB5EE9FFB471} - System32\Tasks\{3016348A-32C2-4052-9FD8-92FF34C1F7A9} => C:\Program Files\RegCleaner\RegCleanr.exe
Task: {A0A07926-4DA3-4A9D-8555-44BF3610CF1C} - System32\Tasks\Java Update Scheduler => C:\Program Files\Common Files\Java\Java Update\jusched.exe [2013-07-02] (Oracle Corporation)
Task: {A1BFCE42-3877-4240-B2E9-D580018B07DF} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Check for updates => C:\Program Files\Spybot - Search &amp; Destroy 2\SDUpdate.exe
Task: {BB3F4473-EAF0-4211-AFD4-E2406D7BFF31} - System32\Tasks\ProtectedSearch\Protected Search => C:\Program Files\HomeTab\ProtectedSearch.exe
Task: {C6CB0711-96A4-4DB9-BF46-8051B50FDAC2} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Scan the system => C:\Program Files\Spybot - Search &amp; Destroy 2\SDScan.exe
Task: {C73E3D4B-5AC1-4D59-9F64-F17616BE21DB} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Refresh immunization => C:\Program Files\Spybot - Search &amp; Destroy 2\SDImmunize.exe
Task: {C9C53D02-47D5-4527-A038-C8E7D6CA93CC} - System32\Tasks\MotoHelper Routing => C:\Program Files\Motorola\MotoHelper\MotoHelperUpdate.exe [2011-12-06] ()
Task: {FD472C52-8343-4540-8425-15D4A4D0FD13} - System32\Tasks\Microsoft\Windows\MUI\Lpksetup => C:\Windows\System32\lpksetup.exe [2010-11-20] (Microsoft Corporation)
Task: C:\windows\Tasks\Adobe Flash Player Updater.job => C:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\windows\Tasks\ViewPassword Update.job => C:\Program Files\ViewPassword\ViewPassword.exe

==================== Loaded Modules (whitelisted) =============

2010-09-02 12:08 - 2010-09-02 12:08 - 00118784 _____ () C:\Program Files\Asus\ASUS WebStorage\3.0.108.222\AsusWSShellExt.dll
2013-11-01 18:30 - 2013-05-16 10:55 - 00113496 _____ () C:\Program Files\Spybot - Search & Destroy 2\snlThirdParty150.bpl
2013-11-01 18:30 - 2013-05-16 10:55 - 00416600 _____ () C:\Program Files\Spybot - Search & Destroy 2\DEC150.bpl
2012-09-19 10:57 - 2013-08-06 21:38 - 00835584 _____ () C:\Program Files\Opera\gstreamer\gstreamer.dll
2012-09-19 10:57 - 2013-08-06 21:38 - 00093696 _____ () C:\Program Files\Opera\gstreamer\plugins\gstaudioconvert.dll
2012-09-19 10:57 - 2013-08-06 21:38 - 00094208 _____ () C:\Program Files\Opera\gstreamer\plugins\gstaudioresample.dll
2012-09-19 10:57 - 2013-08-06 21:38 - 00057344 _____ () C:\Program Files\Opera\gstreamer\plugins\gstautodetect.dll
2012-09-19 10:57 - 2013-08-06 21:38 - 00096256 _____ () C:\Program Files\Opera\gstreamer\plugins\gstcoreplugins.dll
2012-09-19 10:57 - 2013-08-06 21:38 - 00062976 _____ () C:\Program Files\Opera\gstreamer\plugins\gstdecodebin2.dll
2012-09-19 10:57 - 2013-08-06 21:38 - 00067072 _____ () C:\Program Files\Opera\gstreamer\plugins\gstdirectsound.dll
2012-09-19 10:57 - 2013-08-06 21:38 - 00158208 _____ () C:\Program Files\Opera\gstreamer\plugins\gstffmpegcolorspace.dll
2012-09-19 10:57 - 2013-08-06 21:38 - 00312832 _____ () C:\Program Files\Opera\gstreamer\plugins\gstoggdec.dll
2012-09-19 10:57 - 2013-08-06 21:38 - 00038912 _____ () C:\Program Files\Opera\gstreamer\plugins\gstwaveform.dll
2012-09-19 10:57 - 2013-08-06 21:38 - 00073728 _____ () C:\Program Files\Opera\gstreamer\plugins\gstwavparse.dll
2012-09-19 10:57 - 2013-08-06 21:38 - 00101888 _____ () C:\Program Files\Opera\gstreamer\plugins\gstwebmdec.dll



Danke für die nette Begrüßung. Ich habe ein 32-Bit System. Chkdsk und scannow brachten mir auch nix, genauso wenig wie meine Systemwiederherstellungs Versuche. Die Browser frieren öfters kurzzeitig ein (Farbar gerade auch). Ab und zu bekomme ich auch die Meldung > interaktive Dienste < wobei vorher der Bildschirm schwarz wird. Im Taskmanger erscheinen kurzzeitig (aber stetig) 3 Einträge > dllhost.exe /COM Surrogate, powercfg.exe, conhost.exe.Vllt kannst du damit etwas Anfangen. Vorsichtshalber habe ich beide Dateien hochgeladen, weil ich nicht weiß ob ich zuviel oder zuwenig gelöscht habe. Die anderen Programme habe ich schon deinstalliert.
Bis später
__________________
Angehängte Dateien
Dateityp: txt Addition.txt (22,2 KB, 122x aufgerufen)
Dateityp: txt FRST.txt (57,9 KB, 136x aufgerufen)

Alt 18.11.2013, 23:37   #4
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
Run.dll - Problem beim Starten von C:\Program Files\HomeTab\TBUpdater.dll - Standard

Run.dll - Problem beim Starten von C:\Program Files\HomeTab\TBUpdater.dll



Malwarebytes Anti-Rootkit (MBAR)

Downloade dir bitte Malwarebytes Anti-Rootkit Malwarebytes Anti-Rootkit und speichere es auf deinem Desktop.
  • Starte bitte die mbar.exe.
  • Folge den Anweisungen auf deinem Bildschirm gemäß Anleitung zu Malwarebytes Anti-Rootkit
  • Aktualisiere unbedingt die Datenbank und erlaube dem Tool, dein System zu scannen.
  • Klicke auf den CleanUp Button und erlaube den Neustart.
  • Während dem Neustart wird MBAR die gefundenen Objekte entfernen, also bleib geduldig.
  • Nach dem Neustart starte die mbar.exe erneut.
  • Sollte nochmal was gefunden werden, wiederhole den CleanUp Prozess.
Das Tool wird im erstellten Ordner eine Logfile ( mbar-log-<Jahr-Monat-Tag>.txt ) erzeugen. Bitte poste diese hier.

Starte keine andere Datei in diesem Ordner ohne Anweisung eines Helfers
__________________
"Die Wahrheit ist normalerweise nur eine Entschuldigung für einen Mangel an Fantasie." (Elim Garak)

Das Trojaner-Board unterstützen
Warum Linux besser als Windows ist!

Alt 19.11.2013, 06:26   #5
Ruffy D
 
Run.dll - Problem beim Starten von C:\Program Files\HomeTab\TBUpdater.dll - Standard

Run.dll - Problem beim Starten von C:\Program Files\HomeTab\TBUpdater.dll



Hallo,
mbar hat leider nix gefunden.


Alt 19.11.2013, 11:13   #6
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
Run.dll - Problem beim Starten von C:\Program Files\HomeTab\TBUpdater.dll - Standard

Run.dll - Problem beim Starten von C:\Program Files\HomeTab\TBUpdater.dll



Bitte das richtige Log dazu posten
__________________
--> Run.dll - Problem beim Starten von C:\Program Files\HomeTab\TBUpdater.dll

Alt 19.11.2013, 18:48   #7
Ruffy D
 
Run.dll - Problem beim Starten von C:\Program Files\HomeTab\TBUpdater.dll - Standard

Run.dll - Problem beim Starten von C:\Program Files\HomeTab\TBUpdater.dll



Code:
ATTFilter
Malwarebytes Anti-Rootkit BETA 1.07.0.1007
www.malwarebytes.org

Database version: v2013.11.19.03

Windows 7 Service Pack 1 x86 NTFS
Internet Explorer 11.0.9600.16428
Media.Com GmbH :: MEDIACOMGMBH-PC [administrator]

19.11.13 06:54:54
mbar-log-2013-11-19 (06-54-54).txt

Scan type: Quick scan
Scan options enabled: Anti-Rootkit | Drivers | MBR | Physical Sectors | Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken
Scan options disabled: 
Objects scanned: 206844
Time elapsed: 24 minute(s), 22 second(s)

Memory Processes Detected: 0
(No malicious items detected)

Memory Modules Detected: 0
(No malicious items detected)

Registry Keys Detected: 0
(No malicious items detected)

Registry Values Detected: 0
(No malicious items detected)

Registry Data Items Detected: 0
(No malicious items detected)

Folders Detected: 0
(No malicious items detected)

Files Detected: 0
(No malicious items detected)

Physical Sectors Detected: 0
(No malicious items detected)

(end)
         

Alt 19.11.2013, 22:53   #8
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
Run.dll - Problem beim Starten von C:\Program Files\HomeTab\TBUpdater.dll - Standard

Run.dll - Problem beim Starten von C:\Program Files\HomeTab\TBUpdater.dll



Ok, MBAR war auch aktuell

Adware/Junkware/Toolbars entfernen


1. Schritt: adwCleaner

Downloade Dir bitte AdwCleaner Logo Icon AdwCleaner auf deinen Desktop.
  • Schließe alle offenen Programme und Browser. Bebilderte Anleitung zu AdwCleaner.
  • Starte die AdwCleaner.exe mit einem Doppelklick.
  • Stimme den Nutzungsbedingungen zu.
  • Klicke auf Optionen und vergewissere dich, dass die folgenden Punkte ausgewählt sind:
    • "Tracing" Schlüssel löschen
    • Winsock Einstellungen zurücksetzen
    • Proxy Einstellungen zurücksetzen
    • Internet Explorer Richtlinien zurücksetzen
    • Chrome Richtlinien zurücksetzen
    • Stelle sicher, dass alle 5 Optionen wie hier dargestellt, ausgewählt sind
  • Klicke auf Suchlauf und warte bis dieser abgeschlossen ist.
  • Klicke nun auf Löschen und bestätige auftretende Hinweise mit Ok.
  • Dein Rechner wird automatisch neu gestartet. Nach dem Neustart öffnet sich eine Textdatei. Poste mir deren Inhalt mit deiner nächsten Antwort.
  • Die Logdatei findest du auch unter C:\AdwCleaner\AdwCleaner[Cx].txt. (x = fortlaufende Nummer).




2. Schritt: JRT - Junkware Removal Tool

Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
Bitte lade Junkware Removal Tool auf Deinen Desktop

  • Starte das Tool mit Doppelklick. Ab Windows Vista (oder höher) bitte mit Rechtsklick "als Administrator ausführen" starten.
  • Drücke eine beliebige Taste, um das Tool zu starten.
  • Je nach System kann der Scan eine Weile dauern.
  • Wenn das Tool fertig ist wird das Logfile (JRT.txt) auf dem Desktop gespeichert und automatisch geöffnet.
  • Bitte poste den Inhalt der JRT.txt in Deiner nächsten Antwort.




3. Schritt: Frisches Log mit FRST

Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST Download FRST 32-Bit | FRST 64-Bit
(Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
  • Starte jetzt FRST.
  • Ändere ungefragt keine der Checkboxen und klicke auf Untersuchen.
  • Die Logdateien werden nun erstellt und befinden sich danach auf deinem Desktop.
  • Poste mir die FRST.txt und nach dem ersten Scan auch die Addition.txt in deinem Thread (#-Symbol im Eingabefenster der Webseite anklicken)

__________________
"Die Wahrheit ist normalerweise nur eine Entschuldigung für einen Mangel an Fantasie." (Elim Garak)

Das Trojaner-Board unterstützen
Warum Linux besser als Windows ist!

Alt 20.11.2013, 21:02   #9
Ruffy D
 
Run.dll - Problem beim Starten von C:\Program Files\HomeTab\TBUpdater.dll - Standard

Run.dll - Problem beim Starten von C:\Program Files\HomeTab\TBUpdater.dll



Code:
ATTFilter
# AdwCleaner v3.012 - Bericht erstellt am 20/11/2013 um 20:06:53
# Updated 11/11/2013 von Xplode
# Betriebssystem : Windows 7 Starter Service Pack 1 (32 bits)
# Benutzername : Media.Com GmbH - MEDIACOMGMBH-PC
# Gestartet von : C:\Users\Media.Com GmbH\Desktop\adwcleaner.exe
# Option : Löschen

***** [ Dienste ] *****


***** [ Dateien / Ordner ] *****

Ordner Gelöscht : C:\ProgramData\apn
Ordner Gelöscht : C:\ProgramData\AVG Secure Search
Ordner Gelöscht : C:\ProgramData\Tarma Installer
Ordner Gelöscht : C:\Program Files\AVG Secure Search
Ordner Gelöscht : C:\Program Files\HDvidCodec.com
Ordner Gelöscht : C:\Program Files\Omiga Plus
Ordner Gelöscht : C:\Program Files\Searchprotect
Ordner Gelöscht : C:\Program Files\SoftwareUpdater
Ordner Gelöscht : C:\Program Files\ViewPassword
Ordner Gelöscht : C:\Program Files\WinZipper
Ordner Gelöscht : C:\Program Files\Common Files\AVG Secure Search
Ordner Gelöscht : C:\Users\Media.Com GmbH\AppData\Local\Searchprotect
Ordner Gelöscht : C:\Users\Media.Com GmbH\AppData\LocalLow\SimplyTech
Ordner Gelöscht : C:\Users\Media.Com GmbH\AppData\LocalLow\Toolbar4
Ordner Gelöscht : C:\Users\Media.Com GmbH\AppData\Roaming\DSite
Ordner Gelöscht : C:\Users\Media.Com GmbH\AppData\Roaming\Omiga Plus
Ordner Gelöscht : C:\Users\Media.Com GmbH\AppData\Roaming\OpenCandy
Ordner Gelöscht : C:\Users\Media.Com GmbH\AppData\Roaming\Systweak
Ordner Gelöscht : C:\Users\Media.Com GmbH\AppData\Roaming\WinZipper
Ordner Gelöscht : C:\Users\Media.Com GmbH\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\HDvidCodec.com
Datei Gelöscht : C:\Users\Media.Com GmbH\AppData\Roaming\Microsoft\Windows\Start Menu\Startfenster.lnk
Datei Gelöscht : C:\windows\System32\Tasks\Browser Updater
Datei Gelöscht : C:\windows\System32\Tasks\Desk 365 RunAsStdUser
Datei Gelöscht : C:\windows\System32\Tasks\Omiga Plus RunAsStdUser
Datei Gelöscht : C:\windows\System32\Tasks\ProtectedSearch

***** [ Verknüpfungen ] *****


***** [ Registrierungsdatenbank ] *****

Wert Gelöscht : HKLM\SOFTWARE\Mozilla\Firefox\Extensions [Avg@toolbar]
Wert Gelöscht : HKLM\SOFTWARE\Mozilla\Firefox\Extensions [searchpredict@speedbit.com]
Schlüssel Gelöscht : HKLM\SOFTWARE\Google\Chrome\Extensions\bgnnidmnbdkmhfkjgdnngciimpdgohok
Schlüssel Gelöscht : HKLM\SOFTWARE\Google\Chrome\Extensions\dnllcmllkjofnojidnaknldfehfhehoo
Schlüssel Gelöscht : HKLM\SOFTWARE\Google\Chrome\Extensions\ndibdjnfmopecpmkdieinmbadjfpblof
[#] Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{90F191D0-0BB0-4F91-B556-9971DF43DD65}
[#] Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{63F38DD0-ED35-44F0-B690-CDFC0B9CDA55}
[#] Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{63F38DD0-ED35-44F0-B690-CDFC0B9CDA55}
[#] Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{98A0E8B5-ADC0-4351-A941-DCAD21516744}
[#] Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{98A0E8B5-ADC0-4351-A941-DCAD21516744}
[#] Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{BB3F4473-EAF0-4211-AFD4-E2406D7BFF31}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\ScriptHelper.EXE
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\TbCommonUtils.DLL
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\TbHelper.EXE
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\ViProtocol.DLL
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AVG Secure Search.BrowserWndAPI
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AVG Secure Search.BrowserWndAPI.1
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AVG Secure Search.PugiObj
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AVG Secure Search.PugiObj.1
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\protocols\handler\viprotocol
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\SBConvert.SBConvert
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\SBConvert.SBConvert.3
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\ScriptHelper.ScriptHelperApi
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\ScriptHelper.ScriptHelperApi.1
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TbCommonUtils.CommonUtils
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TbCommonUtils.CommonUtils.1
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TbHelper.TbDownloadManager
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TbHelper.TbDownloadManager.1
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TbHelper.TbPropertyManager
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TbHelper.TbPropertyManager.1
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TbHelper.TbRequest
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TbHelper.TbRequest.1
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TbHelper.TbTask
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TbHelper.TbTask.1
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TbHelper.ToolbarHelper
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TbHelper.ToolbarHelper.1
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Toolbar3.ContextMenuNotifier
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Toolbar3.ContextMenuNotifier.1
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Toolbar3.CustomInternetSecurityImpl
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Toolbar3.CustomInternetSecurityImpl.1
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Toolbar3.SearchProviderManager
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Toolbar3.SearchProviderManager.1
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\ViProtocol.ViProtocolOLE
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\ViProtocol.ViProtocolOLE.1
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\au__rasapi32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\au__rasmancs
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\BingBar_RASMANCS
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\BundleSweetIMSetup_RASAPI32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\BundleSweetIMSetup_RASMANCS
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\HomeTab_RASAPI32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\HomeTab_RASMANCS
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\optimizerpro_rasapi32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\optimizerpro_rasmancs
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\optprostart_rasapi32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\optprostart_rasmancs
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\SnapDo_RASAPI32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\SnapDo_RASMANCS
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\SoftwareUpdater_RASAPI32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\SoftwareUpdater_RASMANCS
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\sweetimsetup_rasapi32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\sweetimsetup_rasmancs
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\systweakasp_rasapi32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\systweakasp_rasmancs
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\UpdateTask_RASAPI32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\UpdateTask_RASMANCS
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_fuer_regcleaner_RASAPI32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_fuer_regcleaner_RASMANCS
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{0A18A436-2A7A-49F3-A488-30538A2F6323}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{1FDFF5A2-7BB1-48E1-8081-7236812B12B2}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{4CE516A7-F7AC-4628-B411-8F886DC5733E}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{608D3067-77E8-463D-9084-908966806826}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{628F3201-34D0-49C0-BB9A-82A26AEFB291}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{BB711CB0-C70B-482E-9852-EC05EBD71DBB}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{BDB69379-802F-4EAF-B541-F8DE92DD98DB}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{EA28B360-05E0-4F93-8150-02891F1D8D3C}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{007EFBDF-8A5D-4930-97CC-A4B437CBA777}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{0329E7D6-6F54-462D-93F6-F5C3118BADF2}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{1C950DE5-D31E-42FB-AFB9-91B0161633D8}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{3BDF4CE9-E81D-432B-A55E-9F0570CE811F}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{4E92DB5F-AAD9-49D3-8EAB-B40CBE5B1FF7}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{80922EE0-8A76-46AE-95D5-BD3C3FE0708D}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{92A9ACF4-9333-43AE-9698-DB283326F87F}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{95B7759C-8C7F-4BF1-B163-73684A933233}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{9F34B17E-FF0D-4FAB-97C4-9713FEE79052}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{A9A56B8E-2DEB-4ED3-BC92-1FA450BCE1A5}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{AE07101B-46D4-4A98-AF68-0333EA26E113}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{AE338F6D-5A7C-4D1D-86E3-C618532079B5}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{B658800C-F66E-4EF3-AB85-6C0C227862A9}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{C339D489-FABC-41DD-B39D-276101667C70}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{D433A9D0-8267-40CB-8AD5-24F22FA5373F}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{D565B35E-B787-40FA-95E3-E3562F8FC1A0}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{D89031C2-10DA-4C90-9A62-FCED012BC46B}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{DD000E12-C224-49A5-899E-0B37DBD95F15}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{DE9028D0-5FFA-4E69-94E3-89EE8741F468}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{F25AF245-4A81-40DC-92F9-E9021F207706}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{01221FCC-4BFB-461C-B08C-F6D2DF309921}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{0FA32667-9A8A-4E9C-902F-CA3323180003}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{2A42D13C-D427-4787-821B-CF6973855778}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{3D8478AA-7B88-48A9-8BCB-B85D594411EC}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{452AE416-9A97-44CA-93DA-D0F15C36254F}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{45CDA4F7-594C-49A0-AAD1-8224517FE979}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{4897BBA6-48D9-468C-8EFA-846275D7701B}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{4D8ED2B3-DC62-43EC-ABA3-5B74F046B1BE}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{4E92DB5F-AAD9-49D3-8EAB-B40CBE5B1FF7}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{6B458F62-592F-4B25-8967-E6A350A59328}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{81E852CC-1FD5-4004-8761-79A48B975E29}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{8DA8B89E-0C65-403B-8231-AB22ECFA0687}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{95B6A271-FEB4-4160-B0FF-44394C21C8DC}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{A928E66C-F501-4E66-9953-855C712F93B2}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{B0E28FA0-DF07-44B6-95CE-48BE26DB9266}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{B2CA345D-ADB8-4F5D-AC64-4AB34322F659}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{B9F43021-60D4-42A6-A065-9BA37F38AC47}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{BF921DD3-732A-4A11-933B-A5EA49F2FD2C}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{C401D2CE-DC27-45C7-BC0C-8E6EA7F085D6}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{D83B296A-2FA6-425B-8AE8-A1F33D99FBD6}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{E67D5BC7-7129-493E-9281-F47BDAFACE4F}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{E6B4EE8F-C38E-4994-BE28-229A3F92262C}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{FCA8936E-403A-4487-A966-70F80F1D5A6A}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{FCC9CDD3-EFFF-11D1-A9F0-00A0244AC403}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{74FB6AFD-DD77-4CEB-83BD-AB2B63E63C93}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{9C049BA6-EA47-4AC3-AED6-A66D8DC9E1D8}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{C2AC8A0E-E48E-484B-A71C-C7A937FAAB94}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{95B7759C-8C7F-4BF1-B163-73684A933233}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DD000E12-C224-49A5-899E-0B37DBD95F15}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{95B7759C-8C7F-4BF1-B163-73684A933233}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{DD000E12-C224-49A5-899E-0B37DBD95F15}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{DF7770F7-832F-4BDF-B144-100EDDD0C3AE}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{F25AF245-4A81-40DC-92F9-E9021F207706}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{95B7759C-8C7F-4BF1-B163-73684A933233}
[#] Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{A25E7121-3DD8-41B3-855B-756C5BC45449}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{DD000E12-C224-49A5-899E-0B37DBD95F15}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{F25AF245-4A81-40DC-92F9-E9021F207706}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{C6FDD0C3-266A-4DC3-B459-28C697C44CDC}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{F25AF245-4A81-40DC-92F9-E9021F207706}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{603C4CC9-5DC6-4C44-873F-8281509DF953}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{628F3201-34D0-49C0-BB9A-82A26AEFB291}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F25AF245-4A81-40DC-92F9-E9021F207706}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{006EE092-9658-4FD6-BD8E-A21A348E59F5}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{95B7759C-8C7F-4BF1-B163-73684A933233}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{006EE092-9658-4FD6-BD8E-A21A348E59F5}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{AFDBDDAA-5D3F-42EE-B79C-185A7020515B}
Wert Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{95B7759C-8C7F-4BF1-B163-73684A933233}]
Wert Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{AE07101B-46D4-4A98-AF68-0333EA26E113}]
Wert Gelöscht : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{0329E7D6-6F54-462D-93F6-F5C3118BADF2}]
Wert Gelöscht : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{C424171E-592A-415A-9EB1-DFD6D95D3530}]
Schlüssel Gelöscht : HKCU\Software\1ClickDownload
Schlüssel Gelöscht : HKCU\Software\AVG Nation toolbar
Schlüssel Gelöscht : HKCU\Software\AVG Secure Search
Schlüssel Gelöscht : HKCU\Software\dsiteproducts
Schlüssel Gelöscht : HKCU\Software\InstallCore
Schlüssel Gelöscht : HKCU\Software\InstalledThirdPartyPrograms
Schlüssel Gelöscht : HKCU\Software\Softonic
Schlüssel Gelöscht : HKCU\Software\AppDataLow\{1146AC44-2F03-4431-B4FD-889BC837521F}
Schlüssel Gelöscht : HKLM\Software\AVG Nation toolbar
Schlüssel Gelöscht : HKLM\Software\AVG Secure Search
Schlüssel Gelöscht : HKLM\Software\AVG Security Toolbar
Schlüssel Gelöscht : HKLM\Software\DomaIQ
Schlüssel Gelöscht : HKLM\Software\hdcode
Schlüssel Gelöscht : HKLM\Software\InstalledThirdPartyPrograms
Schlüssel Gelöscht : HKLM\Software\omigaplusSvc
Schlüssel Gelöscht : HKLM\Software\systweak
Schlüssel Gelöscht : HKLM\Software\winzipersvc
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\AVG Secure Search
Schlüssel Gelöscht : HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\08121C32A9C319F4CB0C11FF059552A4

***** [ Browser ] *****

-\\ Internet Explorer v11.0.9600.16428

Einstellung Wiederhergestellt : HKCU\Software\Microsoft\Internet Explorer\Search [Default_Search_URL]
Einstellung Wiederhergestellt : HKCU\Software\Microsoft\Internet Explorer\Search [SearchAssistant]
Einstellung Wiederhergestellt : HKLM\SOFTWARE\Microsoft\Internet Explorer\Search [Search Bar]
Einstellung Wiederhergestellt : HKLM\SOFTWARE\Microsoft\Internet Explorer\Search [Search Page]
Einstellung Wiederhergestellt : HKCU\Software\Microsoft\Internet Explorer\SearchUrl [Default]
Einstellung Wiederhergestellt : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchUrl [(Default)]
Einstellung Wiederhergestellt : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchUrl [Default]

*************************

AdwCleaner[R0].txt - [18819 octets] - [20/11/2013 20:00:52]
AdwCleaner[S0].txt - [17955 octets] - [20/11/2013 20:06:53]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [18016 octets] ##########
         
Code:
ATTFilter
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.0.8 (11.05.2013:1)
OS: Windows 7 Starter x86
Ran by Media.Com GmbH on Mi 20.11.13 at 20:24:22,09
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




~~~ Services



~~~ Registry Values




~~~ Registry Keys

Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services\Eventlog\Application\omigaplussvc
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\ConfigTask_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\ConfigTask_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\SuperLyrics-16-codedownloader_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\SuperLyrics-16-codedownloader_RASMANCS
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\SuperLyrics-16-updater_RASAPI32
Successfully deleted: [Registry Key] HKEY_LOCAL_MACHINE\Software\Microsoft\Tracing\SuperLyrics-16-updater_RASMANCS
Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{5A817CF6-92D5-4DE5-AC38-82DF8A73EF28}



~~~ Files



~~~ Folders

Successfully deleted: [Folder] "C:\Program Files\atdhenettvapp.com"
Successfully deleted: [Folder] "C:\Users\Media.Com GmbH\AppData\Roaming\microsoft\windows\start menu\programs\atdhenettvapp.com"
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{0109FA2C-0924-4C1A-BAC3-1389E88F7D73}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{013691EF-4618-4C8D-ABF4-FDDC86B6F6EF}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{02AB6826-07E6-4516-AE59-65A77694D73C}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{03A892D6-48C0-4129-9BD1-E11BBE81F620}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{045860ED-82BB-4058-BFC7-74021839D7F4}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{05D6295A-BBD3-423A-AD68-1C8A2FDB4BB9}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{06FFF446-0275-4450-97B7-F031A710A5D1}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{074782A9-4BBD-44CA-B4B6-CBCBB4C559F1}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{0755CB7E-303A-4569-A83B-B358433252B5}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{07976D3E-039E-4786-BDF2-1E00F1A66E44}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{0800AF6A-E3AD-4AE9-B290-38C002B44764}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{098281FA-CDAD-4660-A117-6D6D3ABF3E28}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{09E23835-6605-49B5-8DFA-2C27731BBB49}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{0B68144C-DDAB-482C-A049-B7BDC3D5A68B}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{0BFA6295-092E-4F2F-B2B8-81B590AE924C}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{0C1F40CF-1B18-473D-92AA-B4DC7C0B5BBC}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{0C552646-C56B-4A1C-A596-C9CCD4323A7D}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{0D12E5C8-9F85-4D42-A8B2-F534160CD940}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{0D211046-88FC-430D-9668-EAA879AB4096}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{0DC48A0C-E425-4463-B6B8-72F0CD8C606D}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{0DFFF2F2-1723-40FD-8288-4173C40FE7C8}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{0E0388E7-5491-4475-BC6B-D4CE3D39F01A}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{0F263F3E-855A-435E-B999-0A1D0A9220CA}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{0FFFF606-F9B3-42F2-B271-F8B5853BA83D}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{10406E86-DCE9-4E05-8048-E231F85FB4CB}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{10845451-1716-4647-81DB-73ABFAC9A779}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{1242414A-635A-4043-A819-259F19B48FAD}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{1245FEB9-CFBA-43C9-8E18-848926CCD16D}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{1328F4C6-9436-443C-B184-14EC63B95F3D}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{13376E9C-76F2-485B-AA5A-946541BF45A8}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{138B9722-722D-404B-AF2A-570A9E8C694D}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{13A5E185-C625-4E5D-BDF4-78B4CD39BF10}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{14EA4C08-A9CF-4DF8-9595-FF2EBB327EE6}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{15828F4C-AFDD-40F2-9D34-59C1E32F4200}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{16553FBA-98D8-4DFD-BAB4-14FE20BD104D}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{16566A56-3E61-44BB-952F-FF3B0FAC8181}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{1A056E47-883F-4420-9C50-DF807650EFCD}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{1A87B037-BD03-4A8A-AEC3-966B41799363}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{1B0988F3-AAA8-4668-A4C9-8796A981CB53}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{1C2EDE21-E545-43DD-A26A-B396C00042FC}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{1C5EBFDC-DBE3-4CF3-A509-C3661D6E7F8F}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{1C8E913A-DFDC-46CB-BDF1-86F066293BDB}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{1CD3435B-DD38-46C5-AE58-677EFB67041D}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{1E6137B5-4B83-42EF-B70D-444E10CADDEF}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{1FB010AA-80A3-4B05-A79F-DA0B1FF5E9A8}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{21987937-E61E-4910-9C91-41AF00156970}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{21989335-CD9D-435D-8B98-05CAD427E9AE}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{2203D992-BAF0-4C89-8034-5A9E071D61CF}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{22CA7813-54EA-4317-A801-53C928553939}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{23467D68-6780-458F-A424-94268FE50533}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{2376D2AA-BFB7-41D4-B867-74102FBFCC71}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{239B0B1C-3ECC-4F21-83AA-2BB7CAB173F9}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{249D0020-81DD-441C-BB7C-3A789B45AEA6}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{24FF8A57-E58F-40DA-AF95-4F2937FAE484}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{2676753B-D6F9-4E87-A96F-96C1C2207866}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{2731ADC8-A746-41C6-AF9F-F41D00358D49}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{275AD043-9464-40DC-B2B4-A89757B7621C}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{27656B24-1B29-4617-9D2D-43A768AEA213}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{279987EE-5C46-422A-9D00-8344FEA16988}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{29FEDCC0-712F-4B6E-98F4-40A28231B84D}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{2A5AA77E-C290-4698-B653-8BB56EFFCAC0}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{2A88A980-5E83-42A4-905A-7D1D3CC0F6CE}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{2AF4B102-1EFE-45FA-AD35-46B02F63EC23}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{2B874E2F-B278-4ED6-90E4-1168AED1873F}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{2BF721B5-B067-4509-98C2-8895437B08B5}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{2D629AC9-BEC6-4843-84FD-0C52D3115FA3}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{2E1C32D1-6672-4509-B8FB-B459E41AE13B}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{2E275151-1047-4F01-B3E1-C27F3319983E}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{2EA73B5C-A2DA-45F7-9E67-212FDAC0DC02}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{30BCDFC4-97CF-47DB-A6DC-E8D4AE640F98}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{3214D6B1-F94E-44AF-9E38-6899472BC5C7}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{32F86EA0-BFF3-4F8A-855B-B556F5F40959}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{335BC36D-3653-4579-A1BC-B25D0D09532A}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{34DC4010-B1E6-4EC6-94BD-8C8EE4728A75}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{36A78561-3F02-4E07-96AF-A96A7F0CB4D4}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{3785CB49-55B4-468E-827A-8BEB60BAB134}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{37CA8875-A48C-4577-BAB9-A286FD2298CD}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{3A14A436-AC64-442D-B88F-7CF2B8BDDA1B}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{3B46CF24-B164-488F-8D7A-0D19BF713286}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{3B4ECB20-660B-4A1C-9769-13D56823DD04}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{3B728C28-2266-4BD9-985B-A5A8B196F088}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{3B88FCBC-55E5-4868-87D4-139F62369500}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{3D9EDF86-D9D6-4BC6-959A-72C8CB6C15A2}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{40EF84C1-0F12-42F4-812B-68F4B5797D5C}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{41361577-38F5-4B7E-98F5-94B37B2279BB}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{4166ECFC-B3D9-4ACD-A2B3-7471E8B4DF2D}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{427A07C8-8E10-479C-952F-B2BB65654C9E}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{42837476-C70C-4DAA-8FCD-74EF947D4ABB}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{42E2BA1C-81D2-486C-A385-0ABEB69F0B02}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{43AF1C51-01BA-48A1-B022-FF600DCA2958}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{4442B6F2-6C38-4791-917B-827636E76581}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{461027F1-2E85-4358-88DB-1F45C9BFCD38}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{47F0F173-AC77-4CE5-84D8-2B88E9A8BC90}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{48B19441-9413-4901-A237-3CA6B4FD087A}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{4AA141A7-5F6D-49B2-AF3B-86513BE54356}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{4AF65AE0-B644-48E4-BD64-E754475F1E90}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{4E32FFFF-1CDB-4D09-8DB0-C5D6BAF41DFC}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{4E5EE5A1-9B81-4380-B608-2882FCEF47CF}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{4EBBEC3C-2753-4D77-8C64-A376763398D4}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{4EFD0358-C756-4615-93B8-624AD02BFBD1}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{509102C1-3433-407D-8CBA-1CD9559BE732}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{53AE7656-A7AB-4250-AA6E-D243E446C762}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{55F45CF2-6BD9-4C93-A4A0-0238372B212D}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{56AD8DA8-C3F5-4721-A75F-A556BDDBEFD7}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{572B8110-0439-472C-8EBD-39D31044A3D3}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{5832838F-5801-45A7-A536-4D920074373A}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{583C0937-6243-48D7-BA27-2F9D1CE4D35B}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{5867CF90-09EE-43FF-A491-D853D52E158B}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{595C15C5-DC09-4731-B255-05E7F1D5DA07}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{598BE13C-F884-4AE9-A09A-2CBAD532FC82}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{5AD98065-4B0E-4D7A-AB5B-AADC18AADAF2}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{5BE71CC6-8162-4CEC-99E9-EB5F255BF89E}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{5C830EC1-D1A9-4A39-9583-C5BC72C526C0}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{5F2C07D3-8631-41FC-A1AC-A90937A6BCEF}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{6081A30E-F0F8-499F-A061-BFE94925AD96}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{61544882-4640-4DD2-BFD1-33F27784C1A2}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{63B6F76A-D400-4888-8254-3A554BB7D464}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{6424368D-9785-40B4-89FA-30974A1D81A5}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{64C09A22-CC93-4E62-A26C-CA304307F4D7}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{65674631-9FAE-4D53-AE89-34D26A51CEC3}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{65D4336E-A8F6-41F7-BF76-5C5FE884F7D4}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{66117D28-7876-4DDF-AF23-1C615AA29E90}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{66DEF883-DBDF-450A-B83E-EB5FAD7EE309}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{66F29384-742C-4833-9FF9-73EDC5B5A505}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{67A6CC53-33B9-40B8-AAEF-81752C8A298E}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{67CBE8EA-F8C6-49A6-A391-2C33011B52B5}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{68335B27-CFC4-435D-93BF-46FC52BE8197}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{6BD189A1-DA7E-4B67-83C8-650D2ED66443}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{6CB57854-F6E5-41F2-872C-07F5DF754F8A}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{6E33DC86-9829-42D9-AC1E-2851C1EAA391}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{6F1A8DFF-93E3-4683-A285-A30C91EED40A}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{6FA51BBE-078F-448F-A352-A4887E9A8C49}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{71C4CFB0-8F7E-4828-AA46-BC5F66A7473C}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{72322BB9-9726-48D9-A1E5-CE738E76FD7E}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{72C95C26-3155-4D0A-A4EA-1F939509CC14}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{73649975-1EB0-4AB0-878C-EE15D114AA9E}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{73900467-4099-440B-A01C-948D61A2C702}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{73D543EE-40D2-4143-A567-4B8BD8F56EDE}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{73E691FB-2121-4F10-97B0-0977D22B034F}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{73FAEAAD-01BD-4F75-B812-1C7D3EA9820B}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{75F90A84-F9AA-4BF8-8AE0-128BE53D09C9}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{7673C370-1FE3-4AA0-B0AF-EB0DCB98D1EC}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{7682FAA8-8D40-4165-A7B6-E0F9C0122149}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{76E5B7D1-777C-4799-B726-E112C5D2D3EA}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{76F62F8E-073E-4DC4-B4FA-06BF07EB2298}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{7779455F-507F-46AB-AD91-A1AC4B92807D}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{780A9F9D-C1B3-4FF3-86B9-830DE62E6035}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{782BD3C5-8C80-44AA-907E-50D871C48384}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{7857DA2A-EF9D-4417-B646-655B6E120528}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{789B431F-5B41-4A20-BDF6-98709F72A4BA}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{789C4C03-CC56-4ED7-B79B-E8A134A9C9C6}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{793A510F-2706-4A7F-AD88-21D22751D9F7}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{7A592228-522B-4C56-AAA5-68EF7913D3A5}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{7D68A8E1-022E-4234-8167-666566319CF7}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{7E4C7A40-515F-4DEA-AE19-4E017C9D1327}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{7F42FEF9-2171-4091-99CE-E98FE8F6BAD9}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{7F93D1CC-AD83-4E75-A7F8-56DC10907B79}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{7F9CDEEB-E2F6-410A-AEFF-C5842CD718D4}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{80452BCD-7CF4-40B1-B008-631AE75D9271}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{819C6F34-78C8-4138-9B27-6B03B3DE76CC}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{81F9BAFB-6DFE-40B3-A11B-F58584F61311}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{83A89970-952D-4A54-8B94-E1AC90388589}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{85120CA7-1060-490F-99B8-EE75D83292B1}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{8545A6FC-1655-4424-9306-8DDA4903C7C6}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{8573441B-9163-49AB-9A4C-F3BCE9ECA051}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{87140826-8F1E-4121-BC57-E77305A1E057}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{881AB0EF-F89B-4668-8BCC-392F727B20FE}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{88C55B01-E950-4057-8DE9-FE7F8F281F7A}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{88D114AB-0C7D-4572-93D4-77B05C53CA9B}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{88E50E3F-2ED5-44EF-8E82-7DDFB5424E0E}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{89158D68-9E3D-4FAB-9A50-CA762F147682}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{8AA208C0-A59A-4CDA-BC8A-13B18F1C1867}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{8B15B2CB-AB1B-4532-93FF-17F4296DEB44}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{8C35FEE3-83AA-43C3-B0E7-48A74F4AE779}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{8DD9545A-0A70-4712-BD0C-12527FC11CD1}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{8E654C85-45F4-478B-8308-857CA7E97409}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{8EE3B102-E139-44A4-BB94-82B5AB57DC4E}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{8F954F58-B0B8-49C3-B21F-09EFC60AB7CE}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{8FA9A0BA-4176-400A-95DD-1FC8B9741D86}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{901BDF30-6EDD-48B5-9E3C-33D8366AE119}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{91098C65-9BCC-4021-B957-32DA1F6BEA3C}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{91DC244F-DC90-4B4F-9C3C-2D62F5BC5D38}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{94FE190E-F336-415F-B6AA-DEE77F07A983}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{950F28D4-DEF7-4EDC-92CD-C18A0D39BD02}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{96B2C277-0BDF-458F-9E40-2432CEF38A28}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{97497415-0CF9-4FC6-A324-93D38BB9D128}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{9864E558-ED7B-4BCE-AE8A-F41AADDCC6C2}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{995D09B5-445B-4666-B4AA-6683EEEB160A}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{9A58D4D8-D6D3-473A-B95F-3E8074C5F6E6}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{9AF5CCA2-75E6-428D-98E3-DA6DAA537459}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{9B0A64C3-EEFD-4881-AB94-A7B08578DF4D}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{9B7B20D4-85DE-4A66-B0B5-A29D6D256632}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{9C8BEC6D-06B5-437F-99A9-16C2D275D03C}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{9E7721A4-4619-4FB8-ABA6-A85AFE8B3F41}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{9EB4236C-5973-47A2-9320-C5671D784E14}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{9FA4F7CD-DC82-4385-B5A3-E68319D1BBF7}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{9FFA8CAB-8951-40FB-AFB9-2489A9CCE103}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{A1471E69-10D0-4CCD-8CEA-1E4B5ECED559}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{A165F9A2-5C8C-45D3-85E3-94EF9504EBF9}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{A1963921-AA12-4A72-8988-BAD4CE8603EA}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{A1C23E74-B707-400D-9436-30E252BB6A7B}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{A20C8A06-803D-45EC-9B59-39A5E677DC23}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{A22864E1-AB45-4DCD-A761-8ECB437C77A4}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{A2C21C55-B72B-4E2B-850C-77FD1B77B223}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{A2E2DCE5-13A6-4D6A-A14E-7C0D83BF1B0D}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{A2F3B669-BB77-4874-80C8-3BA61C93143E}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{A313BE77-2FB1-4B8A-BFA3-2561026235FD}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{A31C386A-C269-4023-9268-33B09DACC5FE}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{A34AFD0F-0C09-436E-B959-183F449B281B}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{A4B01975-075F-4FC8-8A62-CCC8111128B6}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{A4BC2884-6E19-41AD-A1B4-0C85EEC32CED}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{A5B5FA41-5551-481D-A543-C251FDEFD6C5}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{A6952A39-58E4-4C36-9FD7-86486CCB9A24}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{A76EEF21-146A-4AA3-8CFB-F6E18E0D33D5}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{A8275354-9E0A-4A1B-893F-0F62206D2D4D}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{A918E11E-4FAF-45EF-A963-0537A26FB9CB}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{AB2D5BFF-71A5-4DE4-AF96-E6182E43B6CC}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{AC3348DF-70EE-495F-9E10-4AE5FDC844FD}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{AD25C34F-46DD-4E4C-A7B5-5919FAE2C2DE}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{ADA22ABC-E044-4009-BA33-92AA6214BF91}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{ADB9BD71-CA08-45ED-8F30-2A3036F8E430}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{AEFB634F-A3CA-4CA1-958B-AC71633C664C}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{AF4CAB1A-9AFC-4D9A-BBA6-B2F7862045A5}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{AFD08C0A-4827-46A1-BCAA-752A821E5092}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{B23C59A4-2422-4DE0-99EA-999A3A14657A}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{B38FC521-FE8B-4F37-9C91-1CC5531F6F56}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{B3DAFB97-3104-472A-9D11-3679C3841A4F}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{B40E384E-3DBD-44A9-A882-0663B79146A0}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{B4EE768D-F7C6-4A71-A0ED-74E707C0DBC3}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{B50FA326-64F8-4E0C-B1DE-7F6728CA0B83}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{B5B8544D-1696-4AC7-996A-FD4BC6C54970}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{B6A0199E-680E-44C8-824F-77CEF6ED6753}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{B755A3AB-D8AB-492B-B6FC-4B7F86509D0B}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{B864C08B-FCB2-4677-96F5-2BD5DC09083D}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{B8AF25CF-8E98-4B32-8721-C6AB11DCC6B1}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{B97842BA-2D95-42FA-8CDD-0FF5C4AE5D94}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{BA2CA215-E3B9-4F9A-92CF-EF2F648C013A}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{BA4CB0AE-EE8F-4FBD-9E14-7072673352AD}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{BB86BF0B-F20F-4DFD-8BAA-F5DB2AB5A8BA}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{BB8978F9-3B6C-44EE-B841-3748B9B5DF46}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{BD2CE881-44E0-425B-B9B5-38AF5F8491CA}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{BEDDAFF5-206D-40EB-A339-005BEAF357E1}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{BF83AF3E-3691-4BF2-9E46-4B74CC7C20C4}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{BF9D5856-D384-4A43-8438-D47637C0B963}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{BFF99EC7-5F73-4E4F-854C-55814201BAC2}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{C047BE96-7B14-428C-9294-72E9C5686FBF}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{C1747E89-ACE8-4F0E-9286-2BE1329E5CC0}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{C1BBCFA1-AE4C-47A5-91D7-685832B914C0}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{C1E010CA-EAB7-4C1B-B736-BB6E314D7DA5}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{C2EEF781-46C6-4D62-9B66-525D37A40B99}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{C49E9BB2-3CD9-4AC3-B178-816AD2EB7217}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{C53D3D96-6E72-4137-A1AF-664FE951A7D1}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{C7411371-4C08-4155-9C6F-0A41FCA1C1E6}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{C79C385B-B431-493C-901B-CD753CAFF0F1}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{CB11A311-2F72-4E9C-8836-32D2D710BF1F}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{CBDB8BA3-4660-4BEF-AF79-64D12444EA73}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{CD44C7A1-1F9B-44EE-9E01-2C4A4FB93BAD}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{CD9FD8CC-5C14-4E1F-992F-AE37143B400D}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{CEF2963B-347B-4F79-BB55-E0837F5AD96E}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{D00B93D2-4567-4060-A070-276E9EB5F6F4}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{D1854855-0BCF-46DF-B16E-69FBA3AA7831}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{D1AFD968-652B-4325-A2D2-AC829C72A9DA}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{D1CB77F7-AF55-4E18-81D2-EF89C6BF7CC0}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{D294DE27-E41D-4605-AE61-591E20C30D78}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{D3451523-F379-4BF4-9C36-380C67013951}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{D413C1DB-9166-475D-A7FF-DE1FA27363F5}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{D43A89E6-02BF-41C9-A835-4580CD31A23B}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{D4839536-0CB5-4608-8DBA-15219449CCFE}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{D4F085DD-01C7-4610-ACF8-D41D7BB27CCC}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{D6297A5A-84B5-4735-9D03-F3E0C1580273}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{D74CA8A5-20F6-4016-AAB8-B3348E1DE1B8}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{D757FCA8-9638-4658-A23C-A6ED4D6FF8A3}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{D7E29F72-3A1B-4C36-AF0C-D7F3CDDAA2BE}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{D80003AB-2398-4F36-BC0C-7A556E59A08B}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{D98F73D6-8966-41E8-9855-448050B727F5}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{DBFC9116-01F5-48FF-8F3E-BFEBF811E309}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{DC26C2B9-72E8-43ED-B927-E53566FB02DB}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{DDF037ED-EC8D-4A27-9683-34793B4F371D}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{DEB9BEC3-17FB-4ABB-84F3-154726A8864D}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{DED736D4-4BA0-4A0F-B101-2376B7F9A6C2}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{DEEA5B0A-B701-4C32-AB34-5E36107A15F7}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{DFB372AB-5ABC-4B3B-8D61-6CE9EB9F3F61}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{E249AEE9-6B12-42BF-8AA0-103EEA03076C}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{E2CB3591-8015-4398-B650-1ABC43E8DA9B}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{E333CA49-E30A-4F29-9B4F-198AFD61861C}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{E353B89F-6D63-4AA6-B9B9-D22920995447}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{E49CC3A0-C247-4935-9851-8AE17BE6A882}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{E53AB311-9DED-494F-8B9F-2B8F2A9E2002}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{E5E54853-38AC-406E-A4CF-33201CCC166C}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{E8498189-53FD-4FA6-8612-3B0A52132F68}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{E85E2732-827A-4A36-97BF-D07A8F0EB3AE}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{E8711892-9F2F-444F-B10A-77BF90B8802E}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{E93E47C4-6192-4E30-AE8A-8EA890D9E6BC}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{E99EC258-547C-48BE-BAF7-D25C8F305DF2}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{EA033CA6-6F46-49D4-916E-50751597EA68}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{EA50A0B2-6CF3-4D3B-B2D0-B9A6306AA920}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{EAAB0882-9696-4891-A006-6879D860C61D}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{EAD21942-2AAC-410E-9160-8CEA33EA66F0}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{EAEC9637-D08B-4A9C-BFF7-F93572609369}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{ECC42F60-4EDB-4199-A80A-23C297B027CC}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{EEF26A43-AAB0-46E9-8083-0E0E3CBC56A7}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{EF180AB2-449A-42A9-88B7-9883660FBF19}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{EF270C6F-3F2D-4993-B820-AD37BD47B71D}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{EFF96101-1AAC-4048-8EEF-B97827F6A9AD}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{F08FF102-C28F-46CA-AB87-9627A77747CC}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{F0910EA9-067F-4330-9097-BF8F4CEDDDAB}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{F0DDDC18-DE41-47EF-8E8C-C47BE58BA9F3}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{F28F8CFD-A223-4B04-A121-E7949C9335FF}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{F393A64A-E6B0-4EBD-BF78-ACE3B21881E4}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{F561C18D-4496-4339-B0A6-65FBB7C38D50}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{F626CC1B-C8E2-4662-9D8C-9FF6E088AF1C}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{F76B4A14-1ADD-433E-912D-BF9B2F3F303A}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{F8150AF3-0D13-479A-BB2D-9CBBE863BFFA}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{F822233B-A89D-4ADA-893B-9F5B5F55861B}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{F86A6791-6A61-451C-907C-878DFBF9ACD2}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{F8933290-4B3C-4C1E-831C-B6177A81D7FF}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{F8B06E49-9B27-4830-AD82-0B078BAE50CC}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{F9F8F99E-030E-47E9-833C-66EAA59F348B}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{FA3AA72D-DF91-4445-B888-18F16D36B880}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{FAA90EF6-0E94-40BE-AEBE-7490928C5670}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{FB1F29F1-7B6A-45DC-884B-A93D6239D268}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{FB3207EC-27C4-4A3A-9521-2406C18DA500}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{FCE9C7F2-AF0E-4E3F-BFE6-C257E80AAE25}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{FD578CFE-777C-445E-A5AC-514BFFDDA850}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{FD7581C6-4483-448F-A050-273234B3825F}
Successfully deleted: [Empty Folder] C:\Users\Media.Com GmbH\appdata\local\{FFC693B3-9D80-4494-AB30-A7BABE84E6EE}



~~~ Event Viewer Logs were cleared





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on Mi 20.11.13 at 20:31:26,36
Computer was rebooted
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
         
Angehängte Dateien
Dateityp: txt FRST_A.txt (54,9 KB, 117x aufgerufen)
Dateityp: txt FRST_B.txt (55,2 KB, 128x aufgerufen)

Alt 20.11.2013, 21:06   #10
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
Run.dll - Problem beim Starten von C:\Program Files\HomeTab\TBUpdater.dll - Standard

Run.dll - Problem beim Starten von C:\Program Files\HomeTab\TBUpdater.dll



Die FRST Logs bitte auch in CODE-Tags
__________________
"Die Wahrheit ist normalerweise nur eine Entschuldigung für einen Mangel an Fantasie." (Elim Garak)

Das Trojaner-Board unterstützen
Warum Linux besser als Windows ist!

Alt 20.11.2013, 21:54   #11
Ruffy D
 
Run.dll - Problem beim Starten von C:\Program Files\HomeTab\TBUpdater.dll - Standard

Run.dll - Problem beim Starten von C:\Program Files\HomeTab\TBUpdater.dll




FRST Logfile:
Code:
ATTFilter
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 18-11-2013
Ran by Media.Com GmbH (administrator) on MEDIACOMGMBH-PC on 20-11-2013 21:37:06
Running from C:\Users\Media.Com GmbH\Desktop
Microsoft Windows 7 Starter  Service Pack 1 (X86) OS Language: German Standard
Internet Explorer Version 11
Boot Mode: Normal

==================== Processes (Whitelisted) ===================

(AVG Technologies CZ, s.r.o.) C:\PROGRA~1\AVG\AVG2013\avgrsx.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2013\avgcsrvx.exe
(ASUS) C:\Program Files\Common Files\InstantOn\InsOnSrv.exe
() C:\windows\system32\AsusService.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2013\avgidsagent.exe
(ASUS) C:\Program Files\Common Files\InstantOn\InsOnWMI.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2013\avgwdsvc.exe
() C:\ProgramData\DatacardService\HWDeviceService.exe
(Huawei Technologies Co., Ltd.) C:\ProgramData\DatacardService\DCSHelper.exe
() C:\ProgramData\Internet Manager\OnlineUpdate\ouc.exe
() C:\Program Files\Motorola\MotoHelper\MotoHelperService.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2013\avgui.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Safer-Networking Ltd.) C:\Program Files\Spybot - Search & Destroy 2\SDFSSvc.exe
(Oracle Corporation) C:\Program Files\Common Files\Java\Java Update\jusched.exe
(ASUS) C:\Program Files\ASUS\CapsHook\CapsHook.exe
(Safer-Networking Ltd.) C:\Program Files\Spybot - Search & Destroy 2\SDTray.exe
() C:\Program Files\Motorola\MotoHelper\MotoHelperAgent.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2013\avgnsx.exe
(AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\AVG2013\avgemcx.exe
() C:\ExpressGateUtil\VAWinService.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Safer-Networking Ltd.) C:\Program Files\Spybot - Search & Destroy 2\SDUpdSvc.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
(Safer-Networking Ltd.) C:\Program Files\Spybot - Search & Destroy 2\SDWSCSvc.exe
(Microsoft Corporation) C:\windows\system32\UI0Detect.exe
(Opera Software) C:\Program Files\Opera\opera.exe
(Farbar) C:\Users\Media.Com GmbH\Desktop\FRST_A.exe

==================== Registry (Whitelisted) ==================

HKLM\...\Run: [AVG_UI] - C:\Program Files\AVG\AVG2013\avgui.exe [4411952 2013-09-23] (AVG Technologies CZ, s.r.o.)
HKLM\...\Run: [fspuip] - C:\Program Files\FSP\FspUip.exe [3994992 2011-06-29] (Sentelic Corporation)
HKLM\...\Run: [ASUSWebStorage] - C:\Program Files\Asus\ASUS WebStorage\3.0.108.222\AsusWSPanel.exe [737104 2011-07-29] (ecareme)
HKLM\...\Run: [HotKeysCmds] - C:\windows\system32\hkcmd.exe [ ] ()
HKLM\...\Run: [Eee Docking] - C:\Program Files\Asus\Eee Docking\Eee Docking.exe [419504 2011-04-14] (ASUSTek Computer Inc.)
HKLM\...\Run: [CapsHook] - C:\Program Files\Asus\CapsHook\CapsHook.exe [445344 2010-11-15] (ASUS)
HKLM\...\Run: [SunJavaUpdateSched] - C:\Program Files\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
HKLM\...\Run: [SDTray] - C:\Program Files\Spybot - Search & Destroy 2\SDTray.exe [5624784 2013-07-25] (Safer-Networking Ltd.)
HKCU\...\Run: [Spybot-S&D Cleaning] - C:\Program Files\Spybot - Search & Destroy 2\SDCleaner.exe [3642312 2013-05-16] (Safer-Networking Ltd.)
HKCU\...\Policies\Explorer: [NoLowDiskSpaceChecks] 1
HKU\Default\...\RunOnce: [Reboot] - C:\Windows\Reboot.exe [ 2010-12-13] (AsusTek Computer Inc.)
HKU\Default\...\RunOnce: [AskScreensaver] - C:\Program Files\Asus\AsusScreensaver\AsusScreensaver.exe [ 2011-01-27] (AsusTek Computer Inc.)
HKU\Default User\...\RunOnce: [Reboot] - C:\Windows\Reboot.exe [ 2010-12-13] (AsusTek Computer Inc.)
HKU\Default User\...\RunOnce: [AskScreensaver] - C:\Program Files\Asus\AsusScreensaver\AsusScreensaver.exe [ 2011-01-27] (AsusTek Computer Inc.)

==================== Internet (Whitelisted) ====================

ProxyServer: localhost:21320
HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://speedtest-1.unitymedia.de/
SearchScopes: HKLM - DefaultScope value is missing.
SearchScopes: HKCU - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=ASUTDF&pc=NP07&src=IE-SearchBox
SearchScopes: HKCU - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=ASUTDF&pc=NP07&src=IE-SearchBox
SearchScopes: HKCU - {09038620-190C-402B-A92F-18864E6AB22F} URL = hxxp://go.1und1.de/br/ie9_search_web/?su={searchTerms}
SearchScopes: HKCU - {6B1D1FB7-7233-4F7C-802C-21A1DDB12754} URL = hxxp://go.web.de/br/ie9_search_web/?su={searchTerms}
SearchScopes: HKCU - {81CE708B-5104-4C62-B333-94B417473B29} URL = hxxp://go.mail.com/br/ie8_search_web/?su={searchTerms}
BHO: Adobe PDF Link Helper - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\microsoft shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Handler: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} -  No File
Tcpip\Parameters: [DhcpNameServer] 192.168.178.1
Tcpip\..\Interfaces\{1AB6B156-C5F6-42A7-A1E2-8B405911BFAE}: [NameServer]10.74.210.210 10.74.210.211
Tcpip\..\Interfaces\{2A8455B8-85AE-4424-829E-0B2CF9559BDF}: [NameServer]10.74.210.210 10.74.210.211

========================== Services (Whitelisted) =================

R2 ASUS InstantOn; C:\Program Files\Common Files\InstantOn\InsOnSrv.exe [92800 2011-08-11] (ASUS)
R2 AsusService; C:\windows\system32\AsusService.exe [224680 2011-07-11] ()
R2 AVGIDSAgent; C:\Program Files\AVG\AVG2013\avgidsagent.exe [4939312 2013-07-04] (AVG Technologies CZ, s.r.o.)
R2 avgwd; C:\Program Files\AVG\AVG2013\avgwdsvc.exe [283136 2013-07-23] (AVG Technologies CZ, s.r.o.)
R2 HWDeviceService.exe; C:\ProgramData\DatacardService\HWDeviceService.exe [270176 2011-01-28] ()
S2 Internet Manager. RunOuc; C:\Program Files\T-Mobile\InternetManager_H\UpdateDog\ouc.exe [224096 2012-04-16] ()
R2 MotoHelper; C:\Program Files\Motorola\MotoHelper\MotoHelperService.exe [214896 2011-12-06] ()
R2 SDScannerService; C:\Program Files\Spybot - Search & Destroy 2\SDFSSvc.exe [1817560 2013-05-16] (Safer-Networking Ltd.)
R2 SDUpdateService; C:\Program Files\Spybot - Search & Destroy 2\SDUpdSvc.exe [1033688 2013-05-16] (Safer-Networking Ltd.)
R2 SDWSCService; C:\Program Files\Spybot - Search & Destroy 2\SDWSCSvc.exe [171928 2013-05-15] (Safer-Networking Ltd.)
R2 VideAceWindowsService; C:\ExpressGateUtil\VAWinService.exe [91464 2011-03-26] ()
S4 vToolbarUpdater12.2.6; C:\Program Files\Common Files\AVG Secure Search\vToolbarUpdater\12.2.6\ToolbarUpdater.exe [x]

==================== Drivers (Whitelisted) ====================

R1 AsIO; C:\Windows\System32\drivers\AsIO.sys [11456 2010-06-28] ()
R1 AsUpIO; C:\Windows\System32\drivers\AsUpIO.sys [11832 2010-08-03] ()
R1 AVGIDSDriver; C:\Windows\System32\DRIVERS\avgidsdriverx.sys [208184 2013-07-20] (AVG Technologies CZ, s.r.o.)
R0 AVGIDSHX; C:\Windows\System32\DRIVERS\avgidshx.sys [60216 2013-07-20] (AVG Technologies CZ, s.r.o.)
R1 AVGIDSShim; C:\Windows\System32\DRIVERS\avgidsshimx.sys [22328 2013-09-10] (AVG Technologies CZ, s.r.o.)
R1 Avgldx86; C:\Windows\System32\DRIVERS\avgldx86.sys [171320 2013-07-20] (AVG Technologies CZ, s.r.o.)
R0 Avglogx; C:\Windows\System32\DRIVERS\avglogx.sys [246072 2013-07-20] (AVG Technologies CZ, s.r.o.)
R0 Avgmfx86; C:\Windows\System32\DRIVERS\avgmfx86.sys [96568 2013-07-01] (AVG Technologies CZ, s.r.o.)
R0 Avgrkx86; C:\Windows\System32\DRIVERS\avgrkx86.sys [39224 2013-09-05] (AVG Technologies CZ, s.r.o.)
R1 Avgtdix; C:\Windows\System32\DRIVERS\avgtdix.sys [182072 2013-03-21] (AVG Technologies CZ, s.r.o.)
S4 avgtp; C:\windows\system32\drivers\avgtpx86.sys [27496 2012-09-30] (AVG Technologies)
R3 fspad_win732; C:\Windows\System32\DRIVERS\fspad_win732.sys [54640 2011-06-29] (Windows (R) Win 7 DDK provider)
S3 huawei_cdcacm; C:\Windows\System32\DRIVERS\ew_jucdcacm.sys [90112 2012-04-16] (Huawei Technologies Co., Ltd.)
S3 huawei_ext_ctrl; C:\Windows\System32\DRIVERS\ew_juextctrl.sys [26624 2012-04-16] (Huawei Technologies Co., Ltd.)
S3 huawei_wwanecm; C:\Windows\System32\DRIVERS\ew_juwwanecm.sys [181760 2012-04-16] (Huawei Technologies Co., Ltd.)
R3 kbfiltr; C:\Windows\System32\DRIVERS\kbfiltr.sys [13880 2009-07-20] ( )
U5 AppMgmt; C:\Windows\system32\svchost.exe [20992 2009-07-14] (Microsoft Corporation)
S3 btwavdt; \SystemRoot\system32\drivers\btwavdt.sys [x]
S3 btwrchid; \SystemRoot\system32\drivers\btwrchid.sys [x]
S3 catchme; \??\C:\Users\MEDIA~1.COM\AppData\Local\Temp\catchme.sys [x]

==================== NetSvcs (Whitelisted) ===================


==================== One Month Created Files and Folders ========

2013-11-20 21:32 - 2013-11-20 21:32 - 01090881 _____ (Farbar) C:\Users\Media.Com GmbH\Desktop\FRST_A.exe
2013-11-20 21:29 - 2013-11-20 21:29 - 01090881 _____ (Farbar) C:\Users\Media.Com GmbH\Downloads\FRST.exe
2013-11-20 20:31 - 2013-11-20 20:31 - 00039305 _____ C:\Users\Media.Com GmbH\Desktop\JRT.txt
2013-11-20 20:20 - 2013-11-20 20:20 - 00000000 ____D C:\windows\ERUNT
2013-11-20 20:10 - 2013-11-20 20:10 - 00018097 _____ C:\Users\Media.Com GmbH\Desktop\AdwCleaner[S0].txt
2013-11-20 20:00 - 2013-11-20 20:06 - 00000000 ____D C:\AdwCleaner
2013-11-20 05:59 - 2013-11-20 05:59 - 01034531 _____ (Thisisu) C:\Users\Media.Com GmbH\Desktop\JRT.exe
2013-11-20 05:54 - 2013-11-20 05:54 - 01085542 _____ C:\Users\Media.Com GmbH\Desktop\adwcleaner.exe
2013-11-19 06:51 - 2013-11-19 07:22 - 00000000 ____D C:\Users\Media.Com GmbH\Desktop\mbar
2013-11-19 06:48 - 2013-11-19 06:48 - 12576792 _____ (Malwarebytes Corp.) C:\Users\Media.Com GmbH\Desktop\mbar-1.07.0.1007.exe
2013-11-18 23:57 - 2013-11-19 00:08 - 00189891 _____ C:\Users\Media.Com GmbH\Desktop\18_11.txt
2013-11-18 23:17 - 2013-11-18 23:24 - 00022727 _____ C:\Users\Media.Com GmbH\Desktop\Addition.txt
2013-11-18 23:15 - 2013-11-20 21:37 - 00009317 _____ C:\Users\Media.Com GmbH\Desktop\FRST.txt
2013-11-18 23:14 - 2013-11-18 23:14 - 00000000 ____D C:\FRST
2013-11-18 23:12 - 2013-11-18 23:12 - 01090881 _____ (Farbar) C:\Users\Media.Com GmbH\Desktop\FRST.exe
2013-11-16 12:50 - 2013-11-16 12:50 - 00000833 _____ C:\windows\wininit.ini
2013-11-15 21:01 - 2013-11-15 21:01 - 02166272 _____ (Microsoft Corporation) C:\windows\system32\iertutil.dll
2013-11-15 21:01 - 2013-11-15 21:01 - 01926656 _____ (Microsoft Corporation) C:\windows\system32\inetcpl.cpl
2013-11-15 21:01 - 2013-11-15 21:01 - 01818112 _____ (Microsoft Corporation) C:\windows\system32\wininet.dll
2013-11-15 21:01 - 2013-11-15 21:01 - 01156608 _____ (Microsoft Corporation) C:\windows\system32\urlmon.dll
2013-11-15 21:01 - 2013-11-15 21:01 - 01051136 _____ (Microsoft Corporation) C:\windows\system32\mshtmlmedia.dll
2013-11-15 21:01 - 2013-11-15 21:01 - 00703488 _____ (Microsoft Corporation) C:\windows\system32\ieapfltr.dll
2013-11-15 21:01 - 2013-11-15 21:01 - 00646144 _____ (Microsoft Corporation) C:\windows\system32\MsSpellCheckingFacility.exe
2013-11-15 21:01 - 2013-11-15 21:01 - 00645120 _____ (Microsoft Corporation) C:\windows\system32\jsIntl.dll
2013-11-15 21:01 - 2013-11-15 21:01 - 00616104 _____ (Microsoft Corporation) C:\windows\system32\ieapfltr.dat
2013-11-15 21:01 - 2013-11-15 21:01 - 00367104 _____ (Microsoft Corporation) C:\windows\system32\dxtmsft.dll
2013-11-15 21:01 - 2013-11-15 21:01 - 00337408 _____ (Microsoft Corporation) C:\windows\system32\html.iec
2013-11-15 21:01 - 2013-11-15 21:01 - 00244736 _____ (Microsoft Corporation) C:\windows\system32\dxtrans.dll
2013-11-15 21:01 - 2013-11-15 21:01 - 00238288 _____ (Microsoft Corporation) C:\windows\system32\iedkcs32.dll
2013-11-15 21:01 - 2013-11-15 21:01 - 00233472 _____ (Microsoft Corporation) C:\windows\system32\url.dll
2013-11-15 21:01 - 2013-11-15 21:01 - 00208896 _____ (Microsoft Corporation) C:\windows\system32\ie4uinit.exe
2013-11-15 21:01 - 2013-11-15 21:01 - 00208384 _____ (Microsoft Corporation) C:\windows\system32\webcheck.dll
2013-11-15 21:01 - 2013-11-15 21:01 - 00194048 _____ (Microsoft Corporation) C:\windows\system32\elshyph.dll
2013-11-15 21:01 - 2013-11-15 21:01 - 00182272 _____ (Microsoft Corporation) C:\windows\system32\msls31.dll
2013-11-15 21:01 - 2013-11-15 21:01 - 00164864 _____ (Microsoft Corporation) C:\windows\system32\msrating.dll
2013-11-15 21:01 - 2013-11-15 21:01 - 00083456 _____ (Microsoft Corporation) C:\windows\system32\inseng.dll
2013-11-15 21:01 - 2013-11-15 21:01 - 00071680 _____ (Microsoft Corporation) C:\windows\system32\RegisterIEPKEYs.exe
2013-11-15 21:01 - 2013-11-15 21:01 - 00069632 _____ (Microsoft Corporation) C:\windows\system32\mshtmled.dll
2013-11-15 21:01 - 2013-11-15 21:01 - 00069120 _____ (Microsoft Corporation) C:\windows\system32\icardie.dll
2013-11-15 21:01 - 2013-11-15 21:01 - 00062464 _____ (Microsoft Corporation) C:\windows\system32\tdc.ocx
2013-11-15 21:01 - 2013-11-15 21:01 - 00061952 _____ (Microsoft Corporation) C:\windows\system32\iesetup.dll
2013-11-15 21:01 - 2013-11-15 21:01 - 00043008 _____ (Microsoft Corporation) C:\windows\system32\jsproxy.dll
2013-11-15 21:01 - 2013-11-15 21:01 - 00034816 _____ (Microsoft Corporation) C:\windows\system32\JavaScriptCollectionAgent.dll
2013-11-15 21:01 - 2013-11-15 21:01 - 00032768 _____ (Microsoft Corporation) C:\windows\system32\iernonce.dll
2013-11-15 21:01 - 2013-11-15 21:01 - 00024576 _____ (Microsoft Corporation) C:\windows\system32\licmgr10.dll
2013-11-15 21:00 - 2013-11-15 21:00 - 17142784 _____ (Microsoft Corporation) C:\windows\system32\mshtml.dll
2013-11-15 21:00 - 2013-11-15 21:00 - 11220992 _____ (Microsoft Corporation) C:\windows\system32\ieframe.dll
2013-11-15 21:00 - 2013-11-15 21:00 - 04240384 _____ (Microsoft Corporation) C:\windows\system32\jscript9.dll
2013-11-15 21:00 - 2013-11-15 21:00 - 02724864 _____ (Microsoft Corporation) C:\windows\system32\mshtml.tlb
2013-11-15 21:00 - 2013-11-15 21:00 - 00610304 _____ (Microsoft Corporation) C:\windows\system32\jscript.dll
2013-11-15 21:00 - 2013-11-15 21:00 - 00553472 _____ (Microsoft Corporation) C:\windows\system32\jscript9diag.dll
2013-11-15 21:00 - 2013-11-15 21:00 - 00523776 _____ (Microsoft Corporation) C:\windows\system32\msfeeds.dll
2013-11-15 21:00 - 2013-11-15 21:00 - 00454656 _____ (Microsoft Corporation) C:\windows\system32\vbscript.dll
2013-11-15 21:00 - 2013-11-15 21:00 - 00440832 _____ (Microsoft Corporation) C:\windows\system32\ieui.dll
2013-11-15 21:00 - 2013-11-15 21:00 - 00151552 _____ (Microsoft Corporation) C:\windows\system32\iexpress.exe
2013-11-15 21:00 - 2013-11-15 21:00 - 00139264 _____ (Microsoft Corporation) C:\windows\system32\wextract.exe
2013-11-15 21:00 - 2013-11-15 21:00 - 00127488 _____ (Microsoft Corporation) C:\windows\system32\occache.dll
2013-11-15 21:00 - 2013-11-15 21:00 - 00116736 _____ (Microsoft Corporation) C:\windows\system32\iepeers.dll
2013-11-15 21:00 - 2013-11-15 21:00 - 00112128 _____ (Microsoft Corporation) C:\windows\system32\ieUnatt.exe
2013-11-15 21:00 - 2013-11-15 21:00 - 00111616 _____ (Microsoft Corporation) C:\windows\system32\IEAdvpack.dll
2013-11-15 21:00 - 2013-11-15 21:00 - 00108032 _____ (Microsoft Corporation) C:\windows\system32\ieetwcollector.exe
2013-11-15 21:00 - 2013-11-15 21:00 - 00086016 _____ (Microsoft Corporation) C:\windows\system32\iesysprep.dll
2013-11-15 21:00 - 2013-11-15 21:00 - 00074240 _____ (Microsoft Corporation) C:\windows\system32\SetIEInstalledDate.exe
2013-11-15 21:00 - 2013-11-15 21:00 - 00061952 _____ (Microsoft Corporation) C:\windows\system32\MshtmlDac.dll
2013-11-15 21:00 - 2013-11-15 21:00 - 00056832 _____ (Microsoft Corporation) C:\windows\system32\pngfilt.dll
2013-11-15 21:00 - 2013-11-15 21:00 - 00051200 _____ (Microsoft Corporation) C:\windows\system32\ieetwproxystub.dll
2013-11-15 21:00 - 2013-11-15 21:00 - 00048640 _____ (Microsoft Corporation) C:\windows\system32\mshtmler.dll
2013-11-15 21:00 - 2013-11-15 21:00 - 00043008 _____ (Microsoft Corporation) C:\windows\system32\msfeedsbs.dll
2013-11-15 21:00 - 2013-11-15 21:00 - 00036352 _____ (Microsoft Corporation) C:\windows\system32\imgutil.dll
2013-11-15 21:00 - 2013-11-15 21:00 - 00013312 _____ (Microsoft Corporation) C:\windows\system32\mshta.exe
2013-11-15 21:00 - 2013-11-15 21:00 - 00012800 _____ (Microsoft Corporation) C:\windows\system32\msfeedssync.exe
2013-11-15 21:00 - 2013-11-15 21:00 - 00004096 _____ (Microsoft Corporation) C:\windows\system32\ieetwcollectorres.dll
2013-11-15 20:58 - 2013-11-15 20:58 - 03419136 _____ (Microsoft Corporation) C:\windows\system32\d2d1.dll
2013-11-15 20:58 - 2013-11-15 20:58 - 02284544 _____ (Microsoft Corporation) C:\windows\system32\msmpeg2vdec.dll
2013-11-15 20:58 - 2013-11-15 20:58 - 01988096 _____ (Microsoft Corporation) C:\windows\system32\d3d10warp.dll
2013-11-15 20:58 - 2013-11-15 20:58 - 01247744 _____ (Microsoft Corporation) C:\windows\system32\DWrite.dll
2013-11-15 20:58 - 2013-11-15 20:58 - 01230336 _____ (Microsoft Corporation) C:\windows\system32\WindowsCodecs.dll
2013-11-15 20:58 - 2013-11-15 20:58 - 01158144 _____ (Microsoft Corporation) C:\windows\system32\XpsPrint.dll
2013-11-15 20:58 - 2013-11-15 20:58 - 01080832 _____ (Microsoft Corporation) C:\windows\system32\d3d10.dll
2013-11-15 20:58 - 2013-11-15 20:58 - 00906240 _____ (Microsoft Corporation) C:\windows\system32\FntCache.dll
2013-11-15 20:58 - 2013-11-15 20:58 - 00604160 _____ (Microsoft Corporation) C:\windows\system32\d3d10level9.dll
2013-11-15 20:58 - 2013-11-15 20:58 - 00417792 _____ (Microsoft Corporation) C:\windows\system32\WMPhoto.dll
2013-11-15 20:58 - 2013-11-15 20:58 - 00364544 _____ (Microsoft Corporation) C:\windows\system32\XpsGdiConverter.dll
2013-11-15 20:58 - 2013-11-15 20:58 - 00293376 _____ (Microsoft Corporation) C:\windows\system32\dxgi.dll
2013-11-15 20:58 - 2013-11-15 20:58 - 00249856 _____ (Microsoft Corporation) C:\windows\system32\d3d10_1core.dll
2013-11-15 20:58 - 2013-11-15 20:58 - 00220160 _____ (Microsoft Corporation) C:\windows\system32\d3d10core.dll
2013-11-15 20:58 - 2013-11-15 20:58 - 00207872 _____ (Microsoft Corporation) C:\windows\system32\WindowsCodecsExt.dll
2013-11-15 20:58 - 2013-11-15 20:58 - 00187392 _____ (Microsoft Corporation) C:\windows\system32\UIAnimation.dll
2013-11-15 20:58 - 2013-11-15 20:58 - 00161792 _____ (Microsoft Corporation) C:\windows\system32\d3d10_1.dll
2013-11-15 20:58 - 2013-11-15 20:58 - 00010752 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll
2013-11-15 20:58 - 2013-11-15 20:58 - 00009728 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2013-11-15 20:58 - 2013-11-15 20:58 - 00005632 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2013-11-15 20:58 - 2013-11-15 20:58 - 00005632 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll
2013-11-15 20:58 - 2013-11-15 20:58 - 00004096 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll
2013-11-15 20:58 - 2013-11-15 20:58 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll
2013-11-15 20:58 - 2013-11-15 20:58 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-downlevel-version-l1-1-0.dll
2013-11-15 20:58 - 2013-11-15 20:58 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll
2013-11-15 20:58 - 2013-11-15 20:58 - 00002560 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll
2013-11-15 20:55 - 2013-11-15 21:09 - 00011601 _____ C:\windows\IE11_main.log
2013-11-15 20:48 - 2013-10-04 02:58 - 00152576 _____ (Microsoft Corporation) C:\windows\system32\SmartcardCredentialProvider.dll
2013-11-15 20:48 - 2013-10-04 02:56 - 01796096 _____ (Microsoft Corporation) C:\windows\system32\authui.dll
2013-11-15 20:48 - 2013-10-04 02:56 - 00168960 _____ (Microsoft Corporation) C:\windows\system32\credui.dll
2013-11-15 20:48 - 2013-09-25 03:01 - 00136640 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ksecpkg.sys
2013-11-15 20:48 - 2013-09-25 03:01 - 00067520 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ksecdd.sys
2013-11-15 20:48 - 2013-09-25 02:57 - 00247808 _____ (Microsoft Corporation) C:\windows\system32\schannel.dll
2013-11-15 20:48 - 2013-09-25 02:56 - 01038848 _____ (Microsoft Corporation) C:\windows\system32\lsasrv.dll
2013-11-15 20:48 - 2013-09-04 02:15 - 00258560 _____ (Microsoft Corporation) C:\windows\system32\Drivers\usbhub.sys
2013-11-15 20:48 - 2013-09-04 02:14 - 00284672 _____ (Microsoft Corporation) C:\windows\system32\Drivers\usbport.sys
2013-11-15 20:48 - 2013-09-04 02:14 - 00076288 _____ (Microsoft Corporation) C:\windows\system32\Drivers\usbccgp.sys
2013-11-15 20:48 - 2013-09-04 02:14 - 00043008 _____ (Microsoft Corporation) C:\windows\system32\Drivers\usbehci.sys
2013-11-15 20:48 - 2013-09-04 02:14 - 00024064 _____ (Microsoft Corporation) C:\windows\system32\Drivers\usbuhci.sys
2013-11-15 20:48 - 2013-09-04 02:14 - 00020480 _____ (Microsoft Corporation) C:\windows\system32\Drivers\usbohci.sys
2013-11-15 20:48 - 2013-09-04 02:14 - 00006016 _____ (Microsoft Corporation) C:\windows\system32\Drivers\usbd.sys
2013-11-15 20:48 - 2013-07-04 13:16 - 00369848 _____ (Microsoft Corporation) C:\windows\system32\Drivers\cng.sys
2013-11-15 20:47 - 2013-10-12 03:03 - 00656896 _____ (Microsoft Corporation) C:\windows\system32\nshwfp.dll
2013-11-15 20:47 - 2013-10-12 03:01 - 00679424 _____ (Microsoft Corporation) C:\windows\system32\IKEEXT.DLL
2013-11-15 20:47 - 2013-10-12 03:01 - 00216576 _____ (Microsoft Corporation) C:\windows\system32\FWPUCLNT.DLL
2013-11-15 20:47 - 2013-10-05 20:57 - 01168384 _____ (Microsoft Corporation) C:\windows\system32\crypt32.dll
2013-11-15 20:47 - 2013-10-03 02:58 - 00305152 _____ (Microsoft Corporation) C:\windows\system32\gdi32.dll
2013-11-15 20:47 - 2013-09-25 02:57 - 00099840 _____ (Microsoft Corporation) C:\windows\system32\sspicli.dll
2013-11-15 20:47 - 2013-09-25 02:57 - 00022016 _____ (Microsoft Corporation) C:\windows\system32\secur32.dll
2013-11-15 20:47 - 2013-09-25 02:56 - 00220160 _____ (Microsoft Corporation) C:\windows\system32\ncrypt.dll
2013-11-15 20:47 - 2013-09-25 01:49 - 00022016 _____ (Microsoft Corporation) C:\windows\system32\lsass.exe
2013-11-15 20:47 - 2013-09-25 01:49 - 00015872 _____ (Microsoft Corporation) C:\windows\system32\sspisrv.dll
2013-11-12 22:33 - 2013-11-12 22:33 - 00000000 ____D C:\Users\Media.Com GmbH\AppData\Local\DriverTuner
2013-11-10 21:31 - 2013-11-10 21:31 - 00000000 ____D C:\Users\Media.Com GmbH\.areca
2013-11-10 21:30 - 2013-11-10 21:30 - 00001739 _____ C:\Users\Media.Com GmbH\Desktop\Areca.lnk
2013-11-10 21:30 - 2013-11-10 21:30 - 00000000 ____D C:\Users\Media.Com GmbH\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Areca
2013-11-10 21:30 - 2013-11-10 21:30 - 00000000 ____D C:\Program Files\Areca
2013-11-09 20:15 - 2013-11-09 20:34 - 00002562 _____ C:\windows\diagwrn.xml
2013-11-09 20:15 - 2013-11-09 20:34 - 00001908 _____ C:\windows\diagerr.xml
2013-11-09 18:42 - 2013-09-14 01:48 - 00338944 _____ (Microsoft Corporation) C:\windows\system32\Drivers\afd.sys
2013-11-09 18:42 - 2013-09-08 03:07 - 01294272 _____ (Microsoft Corporation) C:\windows\system32\Drivers\tcpip.sys
2013-11-09 18:42 - 2013-09-08 03:03 - 00231424 _____ (Microsoft Corporation) C:\windows\system32\mswsock.dll
2013-11-09 18:42 - 2013-08-29 02:51 - 03969472 _____ (Microsoft Corporation) C:\windows\system32\ntkrnlpa.exe
2013-11-09 18:42 - 2013-08-29 02:51 - 03914176 _____ (Microsoft Corporation) C:\windows\system32\ntoskrnl.exe
2013-11-09 18:42 - 2013-08-29 02:50 - 01289096 _____ (Microsoft Corporation) C:\windows\system32\ntdll.dll
2013-11-09 18:42 - 2013-08-29 02:50 - 00619520 _____ (Microsoft Corporation) C:\windows\system32\tdh.dll
2013-11-09 18:42 - 2013-08-29 02:48 - 00640512 _____ (Microsoft Corporation) C:\windows\system32\advapi32.dll
2013-11-09 18:42 - 2013-08-28 02:04 - 02348544 _____ (Microsoft Corporation) C:\windows\system32\win32k.sys
2013-11-09 18:42 - 2013-08-28 01:57 - 00434688 _____ (Microsoft Corporation) C:\windows\system32\scavengeui.dll
2013-11-09 18:42 - 2013-08-05 02:56 - 00133056 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ataport.sys
2013-11-09 18:42 - 2013-08-02 02:50 - 00169984 _____ (Microsoft Corporation) C:\windows\system32\winsrv.dll
2013-11-09 18:42 - 2013-08-02 02:49 - 00868352 _____ (Microsoft Corporation) C:\windows\system32\kernel32.dll
2013-11-09 18:42 - 2013-08-02 02:49 - 00293376 _____ (Microsoft Corporation) C:\windows\system32\KernelBase.dll
2013-11-09 18:42 - 2013-08-02 02:48 - 00005120 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-file-l1-1-0.dll
2013-11-09 18:42 - 2013-08-02 02:48 - 00004608 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2013-11-09 18:42 - 2013-08-02 02:48 - 00004096 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2013-11-09 18:42 - 2013-08-02 02:48 - 00004096 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-synch-l1-1-0.dll
2013-11-09 18:42 - 2013-08-02 02:48 - 00004096 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-misc-l1-1-0.dll
2013-11-09 18:42 - 2013-08-02 02:48 - 00004096 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2013-11-09 18:42 - 2013-08-02 02:48 - 00004096 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-localization-l1-1-0.dll
2013-11-09 18:42 - 2013-08-02 02:48 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2013-11-09 18:42 - 2013-08-02 02:48 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2013-11-09 18:42 - 2013-08-02 02:48 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-memory-l1-1-0.dll
2013-11-09 18:42 - 2013-08-02 02:48 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2013-11-09 18:42 - 2013-08-02 02:48 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2013-11-09 18:42 - 2013-08-02 02:48 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-heap-l1-1-0.dll
2013-11-09 18:42 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-string-l1-1-0.dll
2013-11-09 18:42 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2013-11-09 18:42 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-profile-l1-1-0.dll
2013-11-09 18:42 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-io-l1-1-0.dll
2013-11-09 18:42 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-handle-l1-1-0.dll
2013-11-09 18:42 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2013-11-09 18:42 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2013-11-09 18:42 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2013-11-09 18:42 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-debug-l1-1-0.dll
2013-11-09 18:42 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2013-11-09 18:42 - 2013-08-02 02:48 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-console-l1-1-0.dll
2013-11-09 18:42 - 2013-08-02 01:52 - 00271360 _____ (Microsoft Corporation) C:\windows\system32\conhost.exe
2013-11-09 18:42 - 2013-08-02 01:43 - 00006144 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-security-base-l1-1-0.dll
2013-11-09 18:42 - 2013-08-02 01:43 - 00004608 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2013-11-09 18:42 - 2013-08-02 01:43 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2013-11-09 18:42 - 2013-08-02 01:43 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-util-l1-1-0.dll
2013-11-09 18:42 - 2013-08-01 12:03 - 00729024 _____ (Microsoft Corporation) C:\windows\system32\Drivers\dxgkrnl.sys
2013-11-09 18:42 - 2013-07-26 02:55 - 12872704 _____ (Microsoft Corporation) C:\windows\system32\shell32.dll
2013-11-09 18:42 - 2013-07-26 02:55 - 00180224 _____ (Microsoft Corporation) C:\windows\system32\shdocvw.dll
2013-11-09 18:42 - 2013-07-20 11:33 - 00102608 _____ (Microsoft Corporation) C:\windows\system32\PresentationCFFRasterizerNative_v0300.dll
2013-11-09 18:42 - 2013-07-12 11:08 - 00146816 _____ (Microsoft Corporation) C:\windows\system32\Drivers\usbvideo.sys
2013-11-09 18:42 - 2013-07-12 11:07 - 00086016 _____ (Microsoft Corporation) C:\windows\system32\Drivers\usbcir.sys
2013-11-09 18:42 - 2013-07-04 12:57 - 00205824 _____ (Microsoft Corporation) C:\windows\system32\WebClnt.dll
2013-11-09 18:42 - 2013-07-04 12:51 - 00081920 _____ (Microsoft Corporation) C:\windows\system32\davclnt.dll
2013-11-09 18:42 - 2013-07-04 12:50 - 00530432 _____ (Microsoft Corporation) C:\windows\system32\comctl32.dll
2013-11-09 18:42 - 2013-07-04 10:48 - 00115712 _____ (Microsoft Corporation) C:\windows\system32\Drivers\mrxdav.sys
2013-11-09 18:42 - 2013-07-03 05:02 - 00036352 _____ (Microsoft Corporation) C:\windows\system32\Drivers\usbscan.sys
2013-11-09 18:42 - 2013-07-03 04:36 - 00055808 _____ (Microsoft Corporation) C:\windows\system32\Drivers\hidclass.sys
2013-11-09 18:42 - 2013-07-03 04:36 - 00025728 _____ (Microsoft Corporation) C:\windows\system32\Drivers\hidparse.sys
2013-11-09 18:42 - 2013-06-06 05:52 - 00026112 _____ (Microsoft Corporation) C:\windows\system32\lpk.dll
2013-11-09 18:42 - 2013-06-06 05:51 - 00070656 _____ (Microsoft Corporation) C:\windows\system32\fontsub.dll
2013-11-09 18:42 - 2013-06-06 05:50 - 00010240 _____ (Microsoft Corporation) C:\windows\system32\dciman32.dll
2013-11-09 18:42 - 2013-06-06 04:01 - 00295424 _____ (Adobe Systems Incorporated) C:\windows\system32\atmfd.dll
2013-11-09 18:42 - 2013-06-06 04:01 - 00034304 _____ (Adobe Systems) C:\windows\system32\atmlib.dll
2013-11-09 18:41 - 2013-06-25 23:56 - 00527064 _____ (Microsoft Corporation) C:\windows\system32\Drivers\Wdf01000.sys
2013-11-09 18:13 - 2013-11-09 18:13 - 00022731 _____ C:\ComboFix.txt
2013-11-09 17:18 - 2011-06-26 07:45 - 00256000 _____ C:\windows\PEV.exe
2013-11-09 17:18 - 2010-11-07 18:20 - 00208896 _____ C:\windows\MBR.exe
2013-11-09 17:18 - 2000-08-31 01:00 - 00518144 _____ (SteelWerX) C:\windows\SWREG.exe
2013-11-09 17:18 - 2000-08-31 01:00 - 00406528 _____ (SteelWerX) C:\windows\SWSC.exe
2013-11-09 17:18 - 2000-08-31 01:00 - 00098816 _____ C:\windows\sed.exe
2013-11-09 17:18 - 2000-08-31 01:00 - 00080412 _____ C:\windows\grep.exe
2013-11-09 17:18 - 2000-08-31 01:00 - 00068096 _____ C:\windows\zip.exe
2013-11-09 17:15 - 2013-11-09 18:13 - 00000000 ____D C:\Qoobox
2013-11-09 17:15 - 2013-11-09 18:08 - 00000000 ____D C:\windows\erdnt
2013-11-09 13:42 - 2013-11-14 22:07 - 00000000 ____D C:\Program Files\Google
2013-11-09 13:39 - 2013-11-14 22:06 - 00000000 ____D C:\Users\Media.Com GmbH\AppData\Local\Google
2013-11-09 01:13 - 2013-11-20 20:23 - 00000392 _____ C:\windows\Tasks\ViewPassword Update.job
2013-11-09 00:29 - 2013-11-19 07:22 - 00000000 ____D C:\ProgramData\Malwarebytes' Anti-Malware (portable)
2013-11-09 00:29 - 2013-11-19 06:54 - 00105176 _____ (Malwarebytes Corporation) C:\windows\system32\Drivers\MBAMSwissArmy.sys
2013-11-09 00:29 - 2013-11-09 00:29 - 00000000 ____D C:\ProgramData\Malwarebytes
2013-11-09 00:28 - 2013-11-19 06:51 - 00075992 _____ (Malwarebytes Corporation) C:\windows\system32\Drivers\mbamchameleon.sys
2013-11-01 18:30 - 2013-11-01 18:30 - 00002083 _____ C:\Users\Public\Desktop\Spybot-S&D Start Center.lnk
2013-10-25 16:37 - 2013-11-15 20:55 - 00000000 ____D C:\windows\system32\MRT

==================== One Month Modified Files and Folders =======

2013-11-20 21:37 - 2013-11-18 23:15 - 00009317 _____ C:\Users\Media.Com GmbH\Desktop\FRST.txt
2013-11-20 21:32 - 2013-11-20 21:32 - 01090881 _____ (Farbar) C:\Users\Media.Com GmbH\Desktop\FRST_A.exe
2013-11-20 21:29 - 2013-11-20 21:29 - 01090881 _____ (Farbar) C:\Users\Media.Com GmbH\Downloads\FRST.exe
2013-11-20 21:28 - 2012-04-01 19:57 - 00000000 ____D C:\ProgramData\MFAData
2013-11-20 21:06 - 2013-09-26 05:51 - 00000884 _____ C:\windows\Tasks\Adobe Flash Player Updater.job
2013-11-20 20:48 - 2012-03-14 12:00 - 01867912 _____ C:\windows\WindowsUpdate.log
2013-11-20 20:31 - 2013-11-20 20:31 - 00039305 _____ C:\Users\Media.Com GmbH\Desktop\JRT.txt
2013-11-20 20:31 - 2009-07-14 05:34 - 00009696 ____H C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2013-11-20 20:31 - 2009-07-14 05:34 - 00009696 ____H C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2013-11-20 20:23 - 2013-11-09 01:13 - 00000392 _____ C:\windows\Tasks\ViewPassword Update.job
2013-11-20 20:23 - 2009-07-14 05:53 - 00000006 ____H C:\windows\Tasks\SA.DAT
2013-11-20 20:23 - 2009-07-14 05:39 - 00005016 _____ C:\windows\setupact.log
2013-11-20 20:20 - 2013-11-20 20:20 - 00000000 ____D C:\windows\ERUNT
2013-11-20 20:10 - 2013-11-20 20:10 - 00018097 _____ C:\Users\Media.Com GmbH\Desktop\AdwCleaner[S0].txt
2013-11-20 20:06 - 2013-11-20 20:00 - 00000000 ____D C:\AdwCleaner
2013-11-20 18:08 - 2013-10-16 04:34 - 00000000 ____D C:\Users\Media.Com GmbH\AppData\Roaming\vlc
2013-11-20 05:59 - 2013-11-20 05:59 - 01034531 _____ (Thisisu) C:\Users\Media.Com GmbH\Desktop\JRT.exe
2013-11-20 05:54 - 2013-11-20 05:54 - 01085542 _____ C:\Users\Media.Com GmbH\Desktop\adwcleaner.exe
2013-11-19 07:22 - 2013-11-19 06:51 - 00000000 ____D C:\Users\Media.Com GmbH\Desktop\mbar
2013-11-19 07:22 - 2013-11-09 00:29 - 00000000 ____D C:\ProgramData\Malwarebytes' Anti-Malware (portable)
2013-11-19 06:54 - 2013-11-09 00:29 - 00105176 _____ (Malwarebytes Corporation) C:\windows\system32\Drivers\MBAMSwissArmy.sys
2013-11-19 06:51 - 2013-11-09 00:28 - 00075992 _____ (Malwarebytes Corporation) C:\windows\system32\Drivers\mbamchameleon.sys
2013-11-19 06:48 - 2013-11-19 06:48 - 12576792 _____ (Malwarebytes Corp.) C:\Users\Media.Com GmbH\Desktop\mbar-1.07.0.1007.exe
2013-11-19 00:08 - 2013-11-18 23:57 - 00189891 _____ C:\Users\Media.Com GmbH\Desktop\18_11.txt
2013-11-18 23:24 - 2013-11-18 23:17 - 00022727 _____ C:\Users\Media.Com GmbH\Desktop\Addition.txt
2013-11-18 23:15 - 2009-07-14 03:37 - 00000000 __RHD C:\Users\Default
2013-11-18 23:14 - 2013-11-18 23:14 - 00000000 ____D C:\FRST
2013-11-18 23:12 - 2013-11-18 23:12 - 01090881 _____ (Farbar) C:\Users\Media.Com GmbH\Desktop\FRST.exe
2013-11-18 09:35 - 2012-05-14 15:19 - 01557762 _____ C:\windows\system32\PerfStringBackup.INI
2013-11-16 19:24 - 2009-07-14 03:37 - 00000000 ____D C:\windows\rescache
2013-11-16 13:09 - 2012-04-16 21:10 - 00692616 _____ (Adobe Systems Incorporated) C:\windows\system32\FlashPlayerApp.exe
2013-11-16 13:09 - 2012-03-13 21:08 - 00000000 ____D C:\Users\Media.Com GmbH\AppData\Local\Adobe
2013-11-16 13:09 - 2011-09-23 01:37 - 00071048 _____ (Adobe Systems Incorporated) C:\windows\system32\FlashPlayerCPLApp.cpl
2013-11-16 12:58 - 2011-09-23 01:10 - 00127014 _____ C:\windows\PFRO.log
2013-11-16 12:50 - 2013-11-16 12:50 - 00000833 _____ C:\windows\wininit.ini
2013-11-15 21:54 - 2011-09-23 01:38 - 00000000 ____D C:\Program Files\Microsoft Silverlight
2013-11-15 21:40 - 2009-07-14 03:37 - 00000000 ____D C:\windows\system32\nl-NL
2013-11-15 21:40 - 2009-07-14 03:37 - 00000000 ____D C:\windows\system32\it-IT
2013-11-15 21:40 - 2009-07-14 03:37 - 00000000 ____D C:\windows\system32\fr-FR
2013-11-15 21:40 - 2009-07-14 03:37 - 00000000 ____D C:\windows\system32\de-DE
2013-11-15 21:39 - 2009-07-14 03:37 - 00000000 ____D C:\windows\system32\zh-TW
2013-11-15 21:39 - 2009-07-14 03:37 - 00000000 ____D C:\windows\system32\zh-HK
2013-11-15 21:39 - 2009-07-14 03:37 - 00000000 ____D C:\windows\system32\zh-CN
2013-11-15 21:39 - 2009-07-14 03:37 - 00000000 ____D C:\windows\system32\tr-TR
2013-11-15 21:39 - 2009-07-14 03:37 - 00000000 ____D C:\windows\system32\sv-SE
2013-11-15 21:39 - 2009-07-14 03:37 - 00000000 ____D C:\windows\system32\ru-RU
2013-11-15 21:39 - 2009-07-14 03:37 - 00000000 ____D C:\windows\system32\pt-PT
2013-11-15 21:39 - 2009-07-14 03:37 - 00000000 ____D C:\windows\system32\pt-BR
2013-11-15 21:39 - 2009-07-14 03:37 - 00000000 ____D C:\windows\system32\pl-PL
2013-11-15 21:39 - 2009-07-14 03:37 - 00000000 ____D C:\windows\system32\nb-NO
2013-11-15 21:39 - 2009-07-14 03:37 - 00000000 ____D C:\windows\system32\ko-KR
2013-11-15 21:39 - 2009-07-14 03:37 - 00000000 ____D C:\windows\system32\ja-JP
2013-11-15 21:39 - 2009-07-14 03:37 - 00000000 ____D C:\windows\system32\hu-HU
2013-11-15 21:39 - 2009-07-14 03:37 - 00000000 ____D C:\windows\system32\fi-FI
2013-11-15 21:39 - 2009-07-14 03:37 - 00000000 ____D C:\windows\system32\el-GR
2013-11-15 21:09 - 2013-11-15 20:55 - 00011601 _____ C:\windows\IE11_main.log
2013-11-15 21:01 - 2013-11-15 21:01 - 02166272 _____ (Microsoft Corporation) C:\windows\system32\iertutil.dll
2013-11-15 21:01 - 2013-11-15 21:01 - 01926656 _____ (Microsoft Corporation) C:\windows\system32\inetcpl.cpl
2013-11-15 21:01 - 2013-11-15 21:01 - 01818112 _____ (Microsoft Corporation) C:\windows\system32\wininet.dll
2013-11-15 21:01 - 2013-11-15 21:01 - 01156608 _____ (Microsoft Corporation) C:\windows\system32\urlmon.dll
2013-11-15 21:01 - 2013-11-15 21:01 - 01051136 _____ (Microsoft Corporation) C:\windows\system32\mshtmlmedia.dll
2013-11-15 21:01 - 2013-11-15 21:01 - 00703488 _____ (Microsoft Corporation) C:\windows\system32\ieapfltr.dll
2013-11-15 21:01 - 2013-11-15 21:01 - 00646144 _____ (Microsoft Corporation) C:\windows\system32\MsSpellCheckingFacility.exe
2013-11-15 21:01 - 2013-11-15 21:01 - 00645120 _____ (Microsoft Corporation) C:\windows\system32\jsIntl.dll
2013-11-15 21:01 - 2013-11-15 21:01 - 00616104 _____ (Microsoft Corporation) C:\windows\system32\ieapfltr.dat
2013-11-15 21:01 - 2013-11-15 21:01 - 00367104 _____ (Microsoft Corporation) C:\windows\system32\dxtmsft.dll
2013-11-15 21:01 - 2013-11-15 21:01 - 00337408 _____ (Microsoft Corporation) C:\windows\system32\html.iec
2013-11-15 21:01 - 2013-11-15 21:01 - 00244736 _____ (Microsoft Corporation) C:\windows\system32\dxtrans.dll
2013-11-15 21:01 - 2013-11-15 21:01 - 00238288 _____ (Microsoft Corporation) C:\windows\system32\iedkcs32.dll
2013-11-15 21:01 - 2013-11-15 21:01 - 00233472 _____ (Microsoft Corporation) C:\windows\system32\url.dll
2013-11-15 21:01 - 2013-11-15 21:01 - 00208896 _____ (Microsoft Corporation) C:\windows\system32\ie4uinit.exe
2013-11-15 21:01 - 2013-11-15 21:01 - 00208384 _____ (Microsoft Corporation) C:\windows\system32\webcheck.dll
2013-11-15 21:01 - 2013-11-15 21:01 - 00194048 _____ (Microsoft Corporation) C:\windows\system32\elshyph.dll
2013-11-15 21:01 - 2013-11-15 21:01 - 00182272 _____ (Microsoft Corporation) C:\windows\system32\msls31.dll
2013-11-15 21:01 - 2013-11-15 21:01 - 00164864 _____ (Microsoft Corporation) C:\windows\system32\msrating.dll
2013-11-15 21:01 - 2013-11-15 21:01 - 00083456 _____ (Microsoft Corporation) C:\windows\system32\inseng.dll
2013-11-15 21:01 - 2013-11-15 21:01 - 00071680 _____ (Microsoft Corporation) C:\windows\system32\RegisterIEPKEYs.exe
2013-11-15 21:01 - 2013-11-15 21:01 - 00069632 _____ (Microsoft Corporation) C:\windows\system32\mshtmled.dll
2013-11-15 21:01 - 2013-11-15 21:01 - 00069120 _____ (Microsoft Corporation) C:\windows\system32\icardie.dll
2013-11-15 21:01 - 2013-11-15 21:01 - 00062464 _____ (Microsoft Corporation) C:\windows\system32\tdc.ocx
2013-11-15 21:01 - 2013-11-15 21:01 - 00061952 _____ (Microsoft Corporation) C:\windows\system32\iesetup.dll
2013-11-15 21:01 - 2013-11-15 21:01 - 00043008 _____ (Microsoft Corporation) C:\windows\system32\jsproxy.dll
2013-11-15 21:01 - 2013-11-15 21:01 - 00034816 _____ (Microsoft Corporation) C:\windows\system32\JavaScriptCollectionAgent.dll
2013-11-15 21:01 - 2013-11-15 21:01 - 00032768 _____ (Microsoft Corporation) C:\windows\system32\iernonce.dll
2013-11-15 21:01 - 2013-11-15 21:01 - 00024576 _____ (Microsoft Corporation) C:\windows\system32\licmgr10.dll
2013-11-15 21:00 - 2013-11-15 21:00 - 17142784 _____ (Microsoft Corporation) C:\windows\system32\mshtml.dll
2013-11-15 21:00 - 2013-11-15 21:00 - 11220992 _____ (Microsoft Corporation) C:\windows\system32\ieframe.dll
2013-11-15 21:00 - 2013-11-15 21:00 - 04240384 _____ (Microsoft Corporation) C:\windows\system32\jscript9.dll
2013-11-15 21:00 - 2013-11-15 21:00 - 02724864 _____ (Microsoft Corporation) C:\windows\system32\mshtml.tlb
2013-11-15 21:00 - 2013-11-15 21:00 - 00610304 _____ (Microsoft Corporation) C:\windows\system32\jscript.dll
2013-11-15 21:00 - 2013-11-15 21:00 - 00553472 _____ (Microsoft Corporation) C:\windows\system32\jscript9diag.dll
2013-11-15 21:00 - 2013-11-15 21:00 - 00523776 _____ (Microsoft Corporation) C:\windows\system32\msfeeds.dll
2013-11-15 21:00 - 2013-11-15 21:00 - 00454656 _____ (Microsoft Corporation) C:\windows\system32\vbscript.dll
2013-11-15 21:00 - 2013-11-15 21:00 - 00440832 _____ (Microsoft Corporation) C:\windows\system32\ieui.dll
2013-11-15 21:00 - 2013-11-15 21:00 - 00151552 _____ (Microsoft Corporation) C:\windows\system32\iexpress.exe
2013-11-15 21:00 - 2013-11-15 21:00 - 00139264 _____ (Microsoft Corporation) C:\windows\system32\wextract.exe
2013-11-15 21:00 - 2013-11-15 21:00 - 00127488 _____ (Microsoft Corporation) C:\windows\system32\occache.dll
2013-11-15 21:00 - 2013-11-15 21:00 - 00116736 _____ (Microsoft Corporation) C:\windows\system32\iepeers.dll
2013-11-15 21:00 - 2013-11-15 21:00 - 00112128 _____ (Microsoft Corporation) C:\windows\system32\ieUnatt.exe
2013-11-15 21:00 - 2013-11-15 21:00 - 00111616 _____ (Microsoft Corporation) C:\windows\system32\IEAdvpack.dll
2013-11-15 21:00 - 2013-11-15 21:00 - 00108032 _____ (Microsoft Corporation) C:\windows\system32\ieetwcollector.exe
2013-11-15 21:00 - 2013-11-15 21:00 - 00086016 _____ (Microsoft Corporation) C:\windows\system32\iesysprep.dll
2013-11-15 21:00 - 2013-11-15 21:00 - 00074240 _____ (Microsoft Corporation) C:\windows\system32\SetIEInstalledDate.exe
2013-11-15 21:00 - 2013-11-15 21:00 - 00061952 _____ (Microsoft Corporation) C:\windows\system32\MshtmlDac.dll
2013-11-15 21:00 - 2013-11-15 21:00 - 00056832 _____ (Microsoft Corporation) C:\windows\system32\pngfilt.dll
2013-11-15 21:00 - 2013-11-15 21:00 - 00051200 _____ (Microsoft Corporation) C:\windows\system32\ieetwproxystub.dll
2013-11-15 21:00 - 2013-11-15 21:00 - 00048640 _____ (Microsoft Corporation) C:\windows\system32\mshtmler.dll
2013-11-15 21:00 - 2013-11-15 21:00 - 00043008 _____ (Microsoft Corporation) C:\windows\system32\msfeedsbs.dll
2013-11-15 21:00 - 2013-11-15 21:00 - 00036352 _____ (Microsoft Corporation) C:\windows\system32\imgutil.dll
2013-11-15 21:00 - 2013-11-15 21:00 - 00013312 _____ (Microsoft Corporation) C:\windows\system32\mshta.exe
2013-11-15 21:00 - 2013-11-15 21:00 - 00012800 _____ (Microsoft Corporation) C:\windows\system32\msfeedssync.exe
2013-11-15 21:00 - 2013-11-15 21:00 - 00004096 _____ (Microsoft Corporation) C:\windows\system32\ieetwcollectorres.dll
2013-11-15 20:58 - 2013-11-15 20:58 - 03419136 _____ (Microsoft Corporation) C:\windows\system32\d2d1.dll
2013-11-15 20:58 - 2013-11-15 20:58 - 02284544 _____ (Microsoft Corporation) C:\windows\system32\msmpeg2vdec.dll
2013-11-15 20:58 - 2013-11-15 20:58 - 01988096 _____ (Microsoft Corporation) C:\windows\system32\d3d10warp.dll
2013-11-15 20:58 - 2013-11-15 20:58 - 01247744 _____ (Microsoft Corporation) C:\windows\system32\DWrite.dll
2013-11-15 20:58 - 2013-11-15 20:58 - 01230336 _____ (Microsoft Corporation) C:\windows\system32\WindowsCodecs.dll
2013-11-15 20:58 - 2013-11-15 20:58 - 01158144 _____ (Microsoft Corporation) C:\windows\system32\XpsPrint.dll
2013-11-15 20:58 - 2013-11-15 20:58 - 01080832 _____ (Microsoft Corporation) C:\windows\system32\d3d10.dll
2013-11-15 20:58 - 2013-11-15 20:58 - 00906240 _____ (Microsoft Corporation) C:\windows\system32\FntCache.dll
2013-11-15 20:58 - 2013-11-15 20:58 - 00604160 _____ (Microsoft Corporation) C:\windows\system32\d3d10level9.dll
2013-11-15 20:58 - 2013-11-15 20:58 - 00417792 _____ (Microsoft Corporation) C:\windows\system32\WMPhoto.dll
2013-11-15 20:58 - 2013-11-15 20:58 - 00364544 _____ (Microsoft Corporation) C:\windows\system32\XpsGdiConverter.dll
2013-11-15 20:58 - 2013-11-15 20:58 - 00293376 _____ (Microsoft Corporation) C:\windows\system32\dxgi.dll
2013-11-15 20:58 - 2013-11-15 20:58 - 00249856 _____ (Microsoft Corporation) C:\windows\system32\d3d10_1core.dll
2013-11-15 20:58 - 2013-11-15 20:58 - 00220160 _____ (Microsoft Corporation) C:\windows\system32\d3d10core.dll
2013-11-15 20:58 - 2013-11-15 20:58 - 00207872 _____ (Microsoft Corporation) C:\windows\system32\WindowsCodecsExt.dll
2013-11-15 20:58 - 2013-11-15 20:58 - 00187392 _____ (Microsoft Corporation) C:\windows\system32\UIAnimation.dll
2013-11-15 20:58 - 2013-11-15 20:58 - 00161792 _____ (Microsoft Corporation) C:\windows\system32\d3d10_1.dll
2013-11-15 20:58 - 2013-11-15 20:58 - 00010752 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll
2013-11-15 20:58 - 2013-11-15 20:58 - 00009728 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2013-11-15 20:58 - 2013-11-15 20:58 - 00005632 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2013-11-15 20:58 - 2013-11-15 20:58 - 00005632 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll
2013-11-15 20:58 - 2013-11-15 20:58 - 00004096 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll
2013-11-15 20:58 - 2013-11-15 20:58 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll
2013-11-15 20:58 - 2013-11-15 20:58 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-downlevel-version-l1-1-0.dll
2013-11-15 20:58 - 2013-11-15 20:58 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll
2013-11-15 20:58 - 2013-11-15 20:58 - 00002560 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll
2013-11-15 20:55 - 2013-10-25 16:37 - 00000000 ____D C:\windows\system32\MRT
2013-11-15 20:49 - 2012-03-22 21:12 - 80340640 _____ (Microsoft Corporation) C:\windows\system32\MRT.exe
2013-11-14 22:07 - 2013-11-09 13:42 - 00000000 ____D C:\Program Files\Google
2013-11-14 22:06 - 2013-11-09 13:39 - 00000000 ____D C:\Users\Media.Com GmbH\AppData\Local\Google
2013-11-12 22:33 - 2013-11-12 22:33 - 00000000 ____D C:\Users\Media.Com GmbH\AppData\Local\DriverTuner
2013-11-10 21:31 - 2013-11-10 21:31 - 00000000 ____D C:\Users\Media.Com GmbH\.areca
2013-11-10 21:31 - 2012-03-13 21:08 - 00000000 ____D C:\Users\Media.Com GmbH
2013-11-10 21:30 - 2013-11-10 21:30 - 00001739 _____ C:\Users\Media.Com GmbH\Desktop\Areca.lnk
2013-11-10 21:30 - 2013-11-10 21:30 - 00000000 ____D C:\Users\Media.Com GmbH\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Areca
2013-11-10 21:30 - 2013-11-10 21:30 - 00000000 ____D C:\Program Files\Areca
2013-11-09 20:34 - 2013-11-09 20:15 - 00002562 _____ C:\windows\diagwrn.xml
2013-11-09 20:34 - 2013-11-09 20:15 - 00001908 _____ C:\windows\diagerr.xml
2013-11-09 20:15 - 2009-07-14 05:39 - 00000000 _____ C:\windows\setuperr.log
2013-11-09 20:02 - 2009-07-14 05:33 - 00287752 _____ C:\windows\system32\FNTCACHE.DAT
2013-11-09 18:13 - 2013-11-09 18:13 - 00022731 _____ C:\ComboFix.txt
2013-11-09 18:13 - 2013-11-09 17:15 - 00000000 ____D C:\Qoobox
2013-11-09 18:13 - 2009-07-14 03:37 - 00000000 ___RD C:\Users\Public
2013-11-09 18:08 - 2013-11-09 17:15 - 00000000 ____D C:\windows\erdnt
2013-11-09 18:06 - 2009-07-14 03:04 - 00000215 _____ C:\windows\system.ini
2013-11-09 17:40 - 2009-07-14 03:03 - 40894464 _____ C:\windows\system32\config\software.bak
2013-11-09 17:40 - 2009-07-14 03:03 - 19398656 _____ C:\windows\system32\config\system.bak
2013-11-09 17:40 - 2009-07-14 03:03 - 00262144 _____ C:\windows\system32\config\default.bak
2013-11-09 17:40 - 2009-07-14 03:03 - 00053248 _____ C:\windows\system32\config\sam.bak
2013-11-09 17:40 - 2009-07-14 03:03 - 00020480 _____ C:\windows\system32\config\security.bak
2013-11-09 17:06 - 2009-07-14 03:37 - 00000000 ____D C:\windows\system32\LogFiles
2013-11-09 09:23 - 2013-07-27 17:26 - 00000114 _____ C:\Users\Media.Com GmbH\AppData\Roaming\WB.CFG
2013-11-09 09:23 - 2013-06-16 19:23 - 00000006 _____ C:\Users\Media.Com GmbH\AppData\Roaming\WBPU-TTL.DAT
2013-11-09 00:50 - 2009-07-14 03:37 - 00000000 ____D C:\windows\Microsoft.NET
2013-11-09 00:29 - 2013-11-09 00:29 - 00000000 ____D C:\ProgramData\Malwarebytes
2013-11-07 11:20 - 2009-07-14 05:53 - 00032632 _____ C:\windows\Tasks\SCHEDLGU.TXT
2013-11-07 10:35 - 2013-03-05 10:13 - 00000000 ____D C:\ProgramData\OnlineUpdate
2013-11-05 23:08 - 2012-03-13 21:08 - 00064648 _____ C:\Users\Media.Com GmbH\AppData\Local\GDIPFONTCACHEV1.DAT
2013-11-02 15:22 - 2012-03-23 07:02 - 00000000 ____D C:\Users\Media.Com GmbH\AppData\Roaming\Mozilla
2013-11-02 05:29 - 2012-03-23 07:01 - 00000000 ____D C:\Program Files\Mozilla Firefox
2013-11-01 18:30 - 2013-11-01 18:30 - 00002083 _____ C:\Users\Public\Desktop\Spybot-S&D Start Center.lnk
2013-11-01 18:30 - 2013-07-28 11:39 - 00000000 ____D C:\Program Files\Spybot - Search & Destroy 2
2013-11-01 16:13 - 2011-09-23 01:56 - 00000000 ____D C:\Program Files\Common Files\InstantOn
2013-11-01 16:13 - 2011-09-23 01:55 - 00000000 ____D C:\ExpressGateUtil
2013-11-01 16:13 - 2011-09-23 01:35 - 00000000 ____D C:\Program Files\E-Cam
2013-11-01 16:13 - 2009-07-14 05:52 - 00000000 ____D C:\Program Files\Windows Sidebar
2013-11-01 16:12 - 2013-04-17 21:27 - 00000000 ____D C:\Program Files\Freemake
2013-11-01 16:12 - 2012-11-01 20:01 - 00000000 ____D C:\Program Files\Microsoft CAPICOM 2.1.0.2
2013-11-01 16:12 - 2012-10-29 21:16 - 00000000 ____D C:\Program Files\Common Files\ScanSoft Shared
2013-11-01 16:12 - 2012-10-29 21:06 - 00000000 ____D C:\Program Files\Canon
2013-11-01 16:12 - 2012-09-19 10:57 - 00000000 ____D C:\Program Files\Opera
2013-11-01 16:12 - 2012-05-07 10:30 - 00000000 ____D C:\Users\Media.Com GmbH\AppData\Roaming\motorola
2013-11-01 16:12 - 2012-04-29 20:24 - 00000000 ____D C:\Program Files\Common Files\Nero
2013-11-01 16:12 - 2012-04-02 06:38 - 00000000 ____D C:\Program Files\OpenOffice.org 3
2013-11-01 16:12 - 2012-04-01 21:37 - 00000000 ____D C:\Program Files\Mozilla Thunderbird
2013-11-01 16:12 - 2012-03-13 21:09 - 00000000 ____D C:\Program Files\FSP
2013-11-01 16:12 - 2011-09-23 01:40 - 00000000 ____D C:\Program Files\Windows Live
2013-11-01 16:12 - 2011-09-23 01:35 - 00000000 ____D C:\Program Files\Common Files\Oberon Media
2013-11-01 16:12 - 2011-09-23 01:33 - 00000000 ____D C:\Program Files\Asus
2013-11-01 16:12 - 2011-09-23 01:26 - 00000000 ____D C:\Program Files\Atheros
2013-11-01 16:12 - 2011-09-23 01:23 - 00000000 ____D C:\Program Files\Realtek
2013-11-01 16:12 - 2011-09-23 01:23 - 00000000 ____D C:\Program Files\Common Files\InstallShield
2013-11-01 16:12 - 2011-09-23 01:22 - 00000000 ___HD C:\Program Files\InstallShield Installation Information
2013-11-01 16:12 - 2009-07-14 05:52 - 00000000 ____D C:\Program Files\Microsoft Games
2013-11-01 16:12 - 2009-07-14 03:37 - 00000000 ____D C:\windows\AppCompat
2013-11-01 16:12 - 2009-07-14 03:37 - 00000000 ____D C:\Program Files\Common Files\microsoft shared
2013-11-01 16:11 - 2009-07-14 03:37 - 00000000 ____D C:\windows\registration
2013-11-01 16:08 - 2013-09-28 16:59 - 00000000 ____D C:\Users\Media.Com GmbH\AppData\Local\Freemium
2013-11-01 16:08 - 2009-07-14 05:52 - 00000000 ____D C:\Program Files\Windows Photo Viewer
2013-11-01 16:08 - 2009-07-14 05:52 - 00000000 ____D C:\Program Files\Windows Defender
2013-11-01 16:08 - 2009-07-14 03:37 - 00000000 ____D C:\Program Files\Windows NT
2013-11-01 16:07 - 2012-07-03 21:10 - 00000000 ____D C:\Program Files\Oracle
2013-11-01 16:07 - 2012-04-16 20:48 - 00000000 ____D C:\Program Files\T-Mobile
2013-11-01 16:07 - 2011-09-23 01:51 - 00000000 ____D C:\Program Files\syncables
2013-11-01 16:07 - 2009-07-14 05:52 - 00000000 ____D C:\Program Files\Reference Assemblies
2013-11-01 16:06 - 2012-12-02 20:49 - 00000000 ____D C:\Program Files\Motorola
2013-11-01 16:06 - 2012-04-01 20:07 - 00000000 ____D C:\Program Files\Media.Com
2013-11-01 16:06 - 2011-09-23 01:42 - 00000000 ____D C:\Program Files\Microsoft SQL Server Compact Edition
2013-11-01 16:06 - 2009-07-14 05:52 - 00000000 ____D C:\Program Files\MSBuild
2013-11-01 16:05 - 2013-10-19 16:11 - 00000000 ____D C:\Program Files\Common Files\Java
2013-11-01 16:05 - 2013-06-22 22:38 - 00000000 ____D C:\Program Files\Java
2013-11-01 16:05 - 2012-04-29 19:52 - 00000000 ____D C:\Program Files\Common Files\Motorola Shared
2013-11-01 16:05 - 2011-09-23 01:38 - 00000000 ____D C:\Program Files\Common Files\Windows Live
2013-11-01 16:05 - 2011-09-23 01:21 - 00000000 ____D C:\Program Files\Intel
2013-11-01 16:05 - 2009-07-14 05:52 - 00000000 ____D C:\Program Files\DVD Maker
2013-11-01 16:05 - 2009-07-14 03:37 - 00000000 ____D C:\Program Files\Common Files\System
2013-11-01 16:05 - 2009-07-14 03:37 - 00000000 ____D C:\Program Files\Common Files\SpeechEngines
2013-11-01 16:04 - 2012-10-29 21:09 - 00000000 ___HD C:\Program Files\CanonBJ
2013-11-01 16:04 - 2012-04-01 19:59 - 00000000 ____D C:\Program Files\AVG
2013-11-01 16:04 - 2011-09-23 01:37 - 00000000 ____D C:\Program Files\Common Files\Adobe AIR
2013-11-01 16:04 - 2011-09-23 01:35 - 00000000 ____D C:\Program Files\Common Files\Adobe
2013-11-01 16:04 - 2011-09-23 01:35 - 00000000 ____D C:\Program Files\Adobe
2013-11-01 15:14 - 2009-07-14 03:37 - 00000000 ____D C:\windows\system32\wfp
2013-10-23 09:05 - 2012-09-30 10:14 - 00000911 _____ C:\Users\Public\Desktop\AVG 2013.lnk

Files to move or delete:
====================
C:\Users\Public\AlexaNSISPlugin.4508.dll


Some content of TEMP:
====================
C:\Users\Media.Com GmbH\AppData\Local\temp\Quarantine.exe
C:\Users\Media.Com GmbH\AppData\Local\temp\vlc-2.1.1-win32.exe


==================== Bamital & volsnap Check =================

C:\Windows\explorer.exe => MD5 is legit
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit


LastRegBack: 2013-11-20 20:42

==================== End Of Log ============================
         
--- --- ---

Code:
ATTFilter
Additional scan result of Farbar Recovery Scan Tool (x86) Version: 18-11-2013
Ran by Media.Com GmbH at 2013-11-20 21:52:06
Running from C:\Users\Media.Com GmbH\Desktop
Boot Mode: Normal
==========================================================


==================== Security Center ========================

AV: AVG AntiVirus Free Edition 2013 (Enabled - Up to date) {0E9420C4-06B3-7FA0-3AB1-6E49CB52ECD9}
AV: Spybot - Search and Destroy (Disabled - Out of date) {20A26C15-1AF0-7CA3-9380-FAB824A7EE0D}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Spybot - Search and Destroy (Enabled - Up to date) {9BC38DF1-3CCA-732D-A930-C1CA5F20A4B0}
AS: AVG AntiVirus Free Edition 2013 (Enabled - Up to date) {B5F5C120-2089-702E-0001-553BB0D5A664}

==================== Installed Programs ======================

7-Zip 9.20
Acrobat.com (Version: 1.6.65)
Adobe AIR (Version: 2.5.1.17730)
Adobe Flash Player 11 ActiveX (Version: 11.9.900.117)
Adobe Flash Player 11 Plugin (Version: 11.9.900.152)
Adobe Reader X (10.1.4) - Deutsch (Version: 10.1.4)
Areca
ASUS WebStorage (Version: 3.0.108.222)
AsusScreensaver (Version: 1.05)
ASUSUpdate for Eee PC (Version: 1.06.03)
AsusVibe2.0 (Version: 2.0.6.125)
Atheros Client Installation Program (Version: 7.0)
Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Driver (Version: 1.0.2.43)
AVG 2013 (Version: 13.0.3408)
AVG 2013 (Version: 13.0.3426)
AVG 2013 (Version: 13.0.3629)
AVG 2013 (Version: 2013.0.3426)
Broadcom Wireless Network Adapter (Version: 1.00.0000)
Canon MP Navigator 3.1
Canon MP140 series Benutzerregistrierung
Canon Utilities Easy-PhotoPrint
CapsHook (Version: 1.0.0.7)
Contrôle ActiveX Windows Live Mesh pour connexions à distance (Version: 15.4.5722.2)
D3DX10 (Version: 15.4.2368.0902)
E-Cam (Version: 2.0.3.0)
Eee Docking 3.10.4 (Version: 3.10.4)
ExpressGateCloud (Version: 2.7.37.253)
Finger Sensing Pad Driver (Version: 9.1.3.4)
FontResizer (Version: 1.01.0011)
Galerie de photos Windows Live (Version: 15.4.3502.0922)
Game Park Console (Version: 6.2.0.3)
Hotkey Service (Version: 1.44)
InstantOn for EPC (Version: 2.1.4)
Intel(R) Graphics Media Accelerator Driver (Version: 8.14.10.2364)
Intel(R) Rapid Storage Technology (Version: 9.6.4.1002)
Internet Manager (Version: 22.001.18.00.748)
Java 7 Update 45 (Version: 7.0.450)
Java Auto Updater (Version: 2.1.9.8)
JavaFX 2.1.1 (Version: 2.1.1)
Junk Mail filter update (Version: 15.4.3502.0922)
LiveUpdate (Version: 1.29)
LocaleMe (Version: 1.3)
Mesh Runtime (Version: 15.4.5722.2)
Microsoft .NET Framework 4 Client Profile (Version: 4.0.30319)
Microsoft .NET Framework 4 Client Profile DEU Language Pack (Version: 4.0.30319)
Microsoft Application Error Reporting (Version: 12.0.6012.5000)
Microsoft Silverlight (Version: 5.1.10411.0)
Microsoft SQL Server 2005 Compact Edition [ENU] (Version: 3.1.0000)
Microsoft Visual C++ 2005 Redistributable (Version: 8.0.59193)
Microsoft Visual C++ 2005 Redistributable (Version: 8.0.61001)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (Version: 9.0.30729)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (Version: 9.0.30729.4148)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (Version: 9.0.30729.6161)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (Version: 10.0.40219)
MotoHelper 2.1.32 Driver 5.4.0 (Version: 2.1.32)
MotoHelper MergeModules (Version: 1.2.0)
Motorola Mobile Drivers Installation 5.4.0 (Version: 5.4.0)
Mozilla Thunderbird 17.0.8 (x86 de) (Version: 17.0.8)
MSVCRT (Version: 15.4.2862.0708)
MSXML 4.0 SP2 (KB954430) (Version: 4.20.9870.0)
MSXML 4.0 SP2 (KB973688) (Version: 4.20.9876.0)
neroxml (Version: 1.0.0)
OpenOffice.org 3.3 (Version: 3.3.9567)
Opera 12.16 (Version: 12.16.1860)
Raccolta foto di Windows Live (Version: 15.4.3502.0922)
Realtek High Definition Audio Driver (Version: 6.0.1.6387)
ScanSoft OmniPage SE 4 (Version: 15.2.0020)
Spybot - Search & Destroy (Version: 2.1.21)
Super Hybrid Engine (Version: 2.19)
syncables desktop SE (Version: 5.5.746.11492)
Update for Microsoft .NET Framework 4 Client Profile (KB2468871) (Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2533523) (Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2600217) (Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2836939) (Version: 1)
Update for Microsoft .NET Framework 4 Client Profile (KB2836939v3) (Version: 3)
Update for Zip Opener
ViewPassword
Visual Studio 2012 x86 Redistributables (Version: 14.0.0.1)
VLC media player 2.1.0 (Version: 2.1.0)
Windows Live (Version: 15.4.3502.0922)
Windows Live Communications Platform (Version: 15.4.3502.0922)
Windows Live Essentials (Version: 15.4.3502.0922)
Windows Live Essentials (Version: 15.4.3555.0308)
Windows Live Family Safety (Version: 15.4.3555.0308)
Windows Live Fotogalerie (Version: 15.4.3502.0922)
Windows Live ID Sign-in Assistant (Version: 7.250.4232.0)
Windows Live Installer (Version: 15.4.3502.0922)
Windows Live Mail (Version: 15.4.3502.0922)
Windows Live Mesh - ActiveX-besturingselement voor externe verbindingen (Version: 15.4.5722.2)
Windows Live Mesh (Version: 15.4.3502.0922)
Windows Live Mesh ActiveX Control for Remote Connections (Version: 15.4.5722.2)
Windows Live Messenger (Version: 15.4.3538.0513)
Windows Live MIME IFilter (Version: 15.4.3502.0922)
Windows Live Movie Maker (Version: 15.4.3502.0922)
Windows Live Photo Common (Version: 15.4.3502.0922)
Windows Live Photo Gallery (Version: 15.4.3502.0922)
Windows Live PIMT Platform (Version: 15.4.3508.1109)
Windows Live Remote Client (Version: 15.4.5722.2)
Windows Live Remote Client Resources (Version: 15.4.5722.2)
Windows Live Remote Service (Version: 15.4.5722.2)
Windows Live Remote Service Resources (Version: 15.4.5722.2)
Windows Live SOXE (Version: 15.4.3502.0922)
Windows Live SOXE Definitions (Version: 15.4.3502.0922)
Windows Live UX Platform (Version: 15.4.3502.0922)
Windows Live UX Platform Language Pack (Version: 15.4.3508.1109)
Windows Live Writer (Version: 15.4.3502.0922)
Windows Live Writer Resources (Version: 15.4.3502.0922)

==================== Restore Points  =========================

10-11-2013 19:05:55 Windows-Sicherung
15-11-2013 19:48:46 Windows Update
15-11-2013 20:52:48 Windows Update
17-11-2013 16:37:38 Windows-Sicherung
20-11-2013 18:36:34 Windows-Sicherung

==================== Hosts content: ==========================

2009-07-14 03:04 - 2013-11-09 18:06 - 00000027 ____A C:\windows\system32\Drivers\etc\hosts
127.0.0.1       localhost

==================== Scheduled Tasks (whitelisted) =============

Task: {0A1C65E5-0E26-4B09-9235-FA2790C7AD92} - System32\Tasks\{A625EF3D-6473-4F04-97A6-48DAC79495F6} => C:\Program Files\RegCleaner\RegCleanr.exe
Task: {0A629667-66B0-439E-9D86-2F13042B09E8} - System32\Tasks\MotoHelper Initial Update => C:\Program Files\Motorola\MotoHelper\MotoHelperUpdate.exe [2011-12-06] ()
Task: {12B88299-96AB-4A99-A9AA-56084136B340} - System32\Tasks\MotoHelper MUM => C:\Program Files\Motorola\MotoHelper\MotoHelperUpdate.exe [2011-12-06] ()
Task: {3937BF63-3323-4F69-AEA4-BFCD613CACA2} - System32\Tasks\Adobe-Online-Aktualisierungsprogramm => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2012-07-27] (Adobe Systems Incorporated)
Task: {44BFA5A6-1883-4DC6-A41F-914086251037} - System32\Tasks\{D80F25D4-B313-401A-B8C0-1C295ED5D7CA} => Firefox.exe 
Task: {4E67436D-9DDD-4511-83B2-356F2F463F08} - System32\Tasks\ViewPassword Update => C:\Program Files\ViewPassword\ViewPassword.exe
Task: {4FBA8EE9-B48B-4D27-BA9A-0A7D129B314F} - System32\Tasks\{22A9C661-C2D7-46D4-91B3-8B226C716476} => D:\Program Files\RegCleaner\RegCleanr.exe
Task: {53B562C7-2010-4174-8F9E-047CD8E343D9} - System32\Tasks\Freemium1ClickMaint => D:\Down\RegCleaner\1Click.exe
Task: {54331128-04B4-4FBD-AEBF-D93188171555} - System32\Tasks\{E6014F26-2F39-4C4D-8F27-D75FB2C02259} => D:\Program Files\RegCleaner\RegCleanr.exe
Task: {6124E711-8399-4234-ADBD-6A24FFAE6234} - System32\Tasks\MotoHelper Update => C:\Program Files\Motorola\MotoHelper\MotoHelperUpdate.exe [2011-12-06] ()
Task: {8C2A3830-8F91-4EEF-92A7-541F1509B70D} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\System32\Macromed\Flash\FlashPlayerUpdateService.exe [2013-11-16] (Adobe Systems Incorporated)
Task: {9B214CF5-70EC-4873-8FE4-EE57A390AFD6} - System32\Tasks\ScanSoft Background Update => C:\Program Files\Common Files\ScanSoft Shared\SSBkgdUpdate\SSBkgdUpdate.exe [2006-10-25] (Nuance Communications, Inc.)
Task: {9D2DD2FF-11DE-4F67-BCA2-FB5EE9FFB471} - System32\Tasks\{3016348A-32C2-4052-9FD8-92FF34C1F7A9} => C:\Program Files\RegCleaner\RegCleanr.exe
Task: {A0A07926-4DA3-4A9D-8555-44BF3610CF1C} - System32\Tasks\Java Update Scheduler => C:\Program Files\Common Files\Java\Java Update\jusched.exe [2013-07-02] (Oracle Corporation)
Task: {A1BFCE42-3877-4240-B2E9-D580018B07DF} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Check for updates => C:\Program Files\Spybot - Search &amp; Destroy 2\SDUpdate.exe
Task: {C6CB0711-96A4-4DB9-BF46-8051B50FDAC2} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Scan the system => C:\Program Files\Spybot - Search &amp; Destroy 2\SDScan.exe
Task: {C73E3D4B-5AC1-4D59-9F64-F17616BE21DB} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Refresh immunization => C:\Program Files\Spybot - Search &amp; Destroy 2\SDImmunize.exe
Task: {C9C53D02-47D5-4527-A038-C8E7D6CA93CC} - System32\Tasks\MotoHelper Routing => C:\Program Files\Motorola\MotoHelper\MotoHelperUpdate.exe [2011-12-06] ()
Task: {FD472C52-8343-4540-8425-15D4A4D0FD13} - System32\Tasks\Microsoft\Windows\MUI\Lpksetup => C:\Windows\System32\lpksetup.exe [2010-11-20] (Microsoft Corporation)
Task: C:\windows\Tasks\Adobe Flash Player Updater.job => C:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\windows\Tasks\ViewPassword Update.job => C:\Program Files\ViewPassword\ViewPassword.exe

==================== Loaded Modules (whitelisted) =============

2012-04-16 20:51 - 2012-04-16 20:49 - 00011362 _____ () C:\ProgramData\Internet Manager\OnlineUpdate\mingwm10.dll
2012-04-16 20:51 - 2012-04-16 20:49 - 00043008 _____ () C:\ProgramData\Internet Manager\OnlineUpdate\libgcc_s_dw2-1.dll
2012-04-16 20:51 - 2012-04-16 20:49 - 02415104 _____ () C:\ProgramData\Internet Manager\OnlineUpdate\QtCore4.dll
2012-04-16 20:51 - 2012-04-16 20:49 - 01148416 _____ () C:\ProgramData\Internet Manager\OnlineUpdate\QtNetwork4.dll
2013-11-01 18:30 - 2013-05-16 10:55 - 00113496 _____ () C:\Program Files\Spybot - Search & Destroy 2\snlThirdParty150.bpl
2013-11-01 18:30 - 2013-05-16 10:55 - 00416600 _____ () C:\Program Files\Spybot - Search & Destroy 2\DEC150.bpl
2013-11-01 18:30 - 2013-05-16 10:55 - 00161112 _____ () C:\Program Files\Spybot - Search & Destroy 2\snlFileFormats150.bpl
2013-07-28 11:39 - 2012-08-23 10:38 - 00574840 _____ () C:\Program Files\Spybot - Search & Destroy 2\sqlite3.dll
2013-07-28 11:39 - 2012-04-03 16:06 - 00565640 _____ () C:\Program Files\Spybot - Search & Destroy 2\av\BDSmartDB.dll
2011-03-26 01:55 - 2011-03-26 01:55 - 00157000 _____ () C:\ExpressGateUtil\libexpat.dll
2011-03-26 01:55 - 2011-03-26 01:55 - 00061768 _____ () C:\ExpressGateUtil\netProfileDatabase.DLL
2010-09-02 12:08 - 2010-09-02 12:08 - 00118784 _____ () C:\Program Files\Asus\ASUS WebStorage\3.0.108.222\AsusWSShellExt.dll
2012-04-16 20:51 - 2012-04-16 20:49 - 09515520 _____ () C:\ProgramData\Internet Manager\OnlineUpdate\QtGui4.dll
2012-04-16 20:55 - 2012-04-16 20:49 - 00082944 _____ () C:\ProgramData\Internet Manager\OnlineUpdate\plugins\imageformats\qgif4.dll
2012-04-16 20:55 - 2012-04-16 20:49 - 00081920 _____ () C:\ProgramData\Internet Manager\OnlineUpdate\plugins\imageformats\qico4.dll

==================== Alternate Data Streams (whitelisted) =========

AlternateDataStreams: C:\ProgramData\TEMP:862BDB1A

==================== Safe Mode (whitelisted) ===================


==================== Faulty Device Manager Devices =============


==================== Event log errors: =========================

Application errors:
==================

System errors:
=============

Microsoft Office Sessions:
=========================

==================== Memory info =========================== 

Percentage of memory in use: 90%
Total physical RAM: 1014.18 MB
Available physical RAM: 99.11 MB
Total Pagefile: 2038.18 MB
Available Pagefile: 728.84 MB
Total Virtual: 2047.88 MB
Available Virtual: 1896.79 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:100 GB) (Free:74.19 GB) NTFS ==>[Drive with boot components (obtained from BCD)]
Drive d: () (Fixed) (Total:183.07 GB) (Free:110.81 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 298 GB) (Disk ID: 43B3BC89)
Partition 1: (Active) - (Size=100 GB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=15 GB) - (Type=1B)
Partition 3: (Not Active) - (Size=183 GB) - (Type=07 NTFS)
Partition 4: (Not Active) - (Size=16 MB) - (Type=EF)

==================== End Of Log ============================
         
Alles zusammen war etwas zu groß

Alt 20.11.2013, 22:17   #12
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
Run.dll - Problem beim Starten von C:\Program Files\HomeTab\TBUpdater.dll - Standard

Run.dll - Problem beim Starten von C:\Program Files\HomeTab\TBUpdater.dll



Drücke bitte die Windowstaste + R Taste und schreibe notepad in das Ausführen Fenster.

Kopiere nun folgenden Text aus der Code-Box in das leere Textdokument

Code:
ATTFilter
C:\Users\Public\AlexaNSISPlugin.4508.dll
C:\Users\Media.Com GmbH\AppData\Local\temp\Quarantine.exe
C:\Users\Media.Com GmbH\AppData\Local\temp\vlc-2.1.1-win32.exe
         

Speichere diese bitte als Fixlist.txt auf deinem Desktop (oder dem Verzeichnis in dem sich FRST befindet).
  • Starte nun FRST erneut und klicke den Entfernen Button.
  • Das Tool erstellt eine Fixlog.txt.
  • Poste mir deren Inhalt.

__________________
"Die Wahrheit ist normalerweise nur eine Entschuldigung für einen Mangel an Fantasie." (Elim Garak)

Das Trojaner-Board unterstützen
Warum Linux besser als Windows ist!

Alt 21.11.2013, 21:40   #13
Ruffy D
 
Run.dll - Problem beim Starten von C:\Program Files\HomeTab\TBUpdater.dll - Standard

Run.dll - Problem beim Starten von C:\Program Files\HomeTab\TBUpdater.dll



Code:
ATTFilter
Fix result of Farbar Recovery Tool (FRST written by Farbar) (x86) Version: 18-11-2013
Ran by Media.Com GmbH at 2013-11-21 22:37:09 Run:1
Running from C:\Users\Media.Com GmbH\Desktop
Boot Mode: Normal

==============================================

Content of fixlist:
*****************
C:\Users\Public\AlexaNSISPlugin.4508.dll
C:\Users\Media.Com GmbH\AppData\Local\temp\Quarantine.exe
C:\Users\Media.Com GmbH\AppData\Local\temp\vlc-2.1.1-win32.exe
         
*****************

C:\Users\Public\AlexaNSISPlugin.4508.dll => Moved successfully.
C:\Users\Media.Com GmbH\AppData\Local\temp\Quarantine.exe => Moved successfully.
C:\Users\Media.Com GmbH\AppData\Local\temp\vlc-2.1.1-win32.exe => Moved successfully.

==== End of Fixlog ====
         

Alt 21.11.2013, 23:32   #14
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
Run.dll - Problem beim Starten von C:\Program Files\HomeTab\TBUpdater.dll - Standard

Run.dll - Problem beim Starten von C:\Program Files\HomeTab\TBUpdater.dll



Sieht ok aus. Wir sollten fast durch sein. Mach bitte zur Kontrolle einen Quickscan mit Malwarebytes Anti-Malware (MBAM)

Hinweis: Denk bitte vorher daran, Malwarebytes Anti-Malware über den Updatebutton zu aktualisieren!

Anschließend über den OnlineScanner von ESET eine zusätzliche Meinung zu holen ist auch nicht verkehrt:


ESET Online Scanner

  • Hier findest du eine bebilderte Anleitung zu ESET Online Scanner
  • Lade und starte Eset Online Scanner
  • Setze einen Haken bei Ja, ich bin mit den Nutzungsbedingungen einverstanden und klicke auf Starten.
  • Aktiviere die "Erkennung von eventuell unerwünschten Anwendungen" und wähle folgende Einstellungen.
  • Klicke auf Starten.
  • Die Signaturen werden heruntergeladen, der Scan beginnt automatisch.
  • Klicke am Ende des Suchlaufs auf Fertig stellen.
  • Schließe das Fenster von ESET.
  • Explorer öffnen.
  • C:\Programme\Eset\EsetOnlineScanner\log.txt (bei 64 Bit auch C:\Programme (x86)\Eset\EsetOnlineScanner\log.txt) suchen und mit Deinem Editor öffnen (bebildert).
  • Logfile hier posten.
  • Deinstallation: Systemsteuerung => Software / Programme deinstallieren => Eset Online Scanner V3 entfernen.
  • Manuell folgenden Ordner löschen und Papierkorb leeren => C:\Programme\Eset

__________________
"Die Wahrheit ist normalerweise nur eine Entschuldigung für einen Mangel an Fantasie." (Elim Garak)

Das Trojaner-Board unterstützen
Warum Linux besser als Windows ist!

Alt 24.11.2013, 22:21   #15
Ruffy D
 
Run.dll - Problem beim Starten von C:\Program Files\HomeTab\TBUpdater.dll - Standard

Run.dll - Problem beim Starten von C:\Program Files\HomeTab\TBUpdater.dll



Code:
ATTFilter
 Malwarebytes Anti-Malware  (Test) 1.75.0.1300
www.malwarebytes.org

Datenbank Version: v2013.11.24.03

Windows 7 Service Pack 1 x86 NTFS
Internet Explorer 11.0.9600.16428
Media.Com GmbH :: MEDIACOMGMBH-PC [Administrator]

Schutz: Aktiviert

24.11.13 10:51:33
mbam-log-2013-11-24 (10-51-33).txt

Art des Suchlaufs: Quick-Scan
Aktivierte Suchlaufeinstellungen: Speicher | Autostart | Registrierung | Dateisystem | Heuristiks/Extra | HeuristiKs/Shuriken | PUP | PUM
Deaktivierte Suchlaufeinstellungen: P2P
Durchsuchte Objekte: 205167
Laufzeit: 16 Minute(n), 9 Sekunde(n)

Infizierte Speicherprozesse: 0
(Keine bösartigen Objekte gefunden)

Infizierte Speichermodule: 0
(Keine bösartigen Objekte gefunden)

Infizierte Registrierungsschlüssel: 0
(Keine bösartigen Objekte gefunden)

Infizierte Registrierungswerte: 0
(Keine bösartigen Objekte gefunden)

Infizierte Dateiobjekte der Registrierung: 0
(Keine bösartigen Objekte gefunden)

Infizierte Verzeichnisse: 0
(Keine bösartigen Objekte gefunden)

Infizierte Dateien: 0
(Keine bösartigen Objekte gefunden)

(Ende)
         
Mehr konnte ich noch nicht machen, hab noch etwas Geduld mit mir Bin nur am Arbeiten.

Antwort

Themen zu Run.dll - Problem beim Starten von C:\Program Files\HomeTab\TBUpdater.dll
.dll, beim starten, bereit, dll, fehlermeldung, files, firefox, free, home, hometab\tbupdater.dll, langsamer, malware, modul, problem, problem beim starten von c, probleme, rechner, run.dll, rundll, schonmal, starte, starten, system, systemfehler, utilities, verwendet, viren, win, win7



Ähnliche Themen: Run.dll - Problem beim Starten von C:\Program Files\HomeTab\TBUpdater.dll


  1. Windows 8: Problem beim Starten von C:\ Problem Files (x86)\HomeTab\TBUpdater.dll
    Plagegeister aller Art und deren Bekämpfung - 27.02.2015 (9)
  2. Problem beim starten von C:\Program Files(x86)\HomeTab\TBUpdater.dll
    Log-Analyse und Auswertung - 22.08.2014 (15)
  3. C:\Program Files\HomeTab\TBUpdater.dll problem
    Plagegeister aller Art und deren Bekämpfung - 17.08.2014 (41)
  4. Fehlermeldung: Beim Starten von C:\Program Files (x86)\HomeTab\TBUpdater.dll
    Log-Analyse und Auswertung - 29.06.2014 (11)
  5. Problem beim Starten von windows Vista C:\Program files (X86)\Hometab\TBUpdater.dll kommt nach hochfahren des PC
    Plagegeister aller Art und deren Bekämpfung - 03.06.2014 (10)
  6. Problem beim Starten von C:\Program files (X86)\Hometab\TBUpdater.dll kommt nach hochfahren des PC
    Plagegeister aller Art und deren Bekämpfung - 31.05.2014 (13)
  7. RunDLL Problem beim starten von C:\ Program Files (x86) \ Home Tab \ TBUpdater.dll Das angegebene Modul wurde nicht gefunden.
    Log-Analyse und Auswertung - 11.03.2014 (13)
  8. Fehlermeldung RunDll : Problem beim Starten C Program files (x86) HomeTab TB Updater.dll.
    Log-Analyse und Auswertung - 15.01.2014 (7)
  9. problem beim starten von c:/programm files (x86)hometab/tbupdater.dll
    Plagegeister aller Art und deren Bekämpfung - 19.12.2013 (19)
  10. Win7: Nach Neustart erscheint RunDLL-Window mit "Problem beim Starten von C:\Program Files (x86)\HomeTab\TBUpdater.dll"
    Plagegeister aller Art und deren Bekämpfung - 17.12.2013 (8)
  11. RunDLL Problem beim Starten von C:\Program Files(x86)\Home Tab\TBUpdater.dll Das angegebene Modul wurde nicht gefunden
    Log-Analyse und Auswertung - 10.11.2013 (7)
  12. Win7: Nach Neustart erscheint RunDLL-Window mit "Problem beim Starten von C:\Program Files (x86)\HomeTab\TBUpdater.dll"
    Log-Analyse und Auswertung - 04.11.2013 (7)
  13. Windows 8: RunDLL - Problem beim Starten von C:\Program Files (86x)\Home Tab\TBUpdater.dll
    Log-Analyse und Auswertung - 27.10.2013 (5)
  14. RunDLL Problem beim starten von C:\ Program Files (x86) \ Home Tab \ TBUpdater.dll Das angegebene Modul wurde nicht gefunden.
    Log-Analyse und Auswertung - 01.10.2013 (9)
  15. Problem beim Windows 7 Start program files\hometab\TBUpdater.dll
    Plagegeister aller Art und deren Bekämpfung - 20.08.2013 (13)
  16. Problem beim Starten von C:\Program Files(x86)\HomeTab\TBUpdater.dll
    Log-Analyse und Auswertung - 30.07.2013 (12)
  17. Problem beim Starten von C:\Program Files(x86)\HomeTab\TBUpdater.dll
    Plagegeister aller Art und deren Bekämpfung - 27.07.2013 (11)

Zum Thema Run.dll - Problem beim Starten von C:\Program Files\HomeTab\TBUpdater.dll - Hallo, nach dem Starten und auch mal zwischen durch bekomme ich die Fehlermeldung < RunDll > - Problem beim Starten von C:\Program Files\HomeTab\TBUpdater.dll - Das angegebene Modul wurde nicht gefunden. - Run.dll - Problem beim Starten von C:\Program Files\HomeTab\TBUpdater.dll...
Archiv
Du betrachtest: Run.dll - Problem beim Starten von C:\Program Files\HomeTab\TBUpdater.dll auf Trojaner-Board

Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.