![]() |
|
Plagegeister aller Art und deren Bekämpfung: CPU Andauernt auf 100%!Windows 7 Wenn Du nicht sicher bist, ob Du dir Malware oder Trojaner eingefangen hast, erstelle hier ein Thema. Ein Experte wird sich mit weiteren Anweisungen melden und Dir helfen die Malware zu entfernen oder Unerwünschte Software zu deinstallieren bzw. zu löschen. Bitte schildere dein Problem so genau wie möglich. Sollte es ein Trojaner oder Viren Problem sein wird ein Experte Dir bei der Beseitigug der Infektion helfen. |
![]() | #1 |
| ![]() CPU Andauernt auf 100%! Hallo, Also wie im Titel schon beschrieben läuft mein CPU meines Sony Vaio Laptop´s dauernt auf 100%. Ich hatte im Taskmanager mal geschaut welches Programm am meisten die Prozente hoch steigen lässt es ist Diensthost: Lokaler Dienst. Aber ich glaube das nur der Diensthost alleine schuld ist. Habe auch schon einen OTL Scan gemacht und die log files unten eingefügt Bitte um Hilfe. ![]() Code:
ATTFilter OTL logfile created on: 16.01.2014 00:55:52 - Run 1 OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Rezer\Downloads 64bit- An unknown product (Version = 6.2.9200) - Type = NTWorkstation Internet Explorer (Version = 9.11.9600.16476) Locale: 00000407 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy 3,95 Gb Total Physical Memory | 1,47 Gb Available Physical Memory | 37,24% Memory free 15,95 Gb Paging File | 10,97 Gb Available in Paging File | 68,80% Paging File free Paging file location(s): ?:\pagefile.sys [binary data] %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files (x86) Drive C: | 428,71 Gb Total Space | 324,00 Gb Free Space | 75,58% Space Free | Partition Type: NTFS Drive E: | 465,76 Gb Total Space | 48,64 Gb Free Space | 10,44% Space Free | Partition Type: NTFS Computer Name: REZER_PC | User Name: Rezer | Logged in as Administrator. Boot Mode: Normal | Scan Mode: Current user | Include 64bit Scans Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days ========== Processes (SafeList) ========== PRC - C:\Users\Rezer\Downloads\OTL.exe (OldTimer Tools) PRC - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\apnmcp.exe (APN LLC.) PRC - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe (APN) PRC - C:\ProgramData\WPM\wprotectmanager.exe (Cherished Technololgy LIMITED) PRC - C:\Program Files (x86)\Mobogenie\DaemonProcess.exe () PRC - C:\Program Files (x86)\Microsoft\BingBar\7.3.124.0\SeaPort.exe (Microsoft Corporation.) PRC - C:\Program Files (x86)\Opera\18.0.1284.68\opera_crashreporter.exe () PRC - C:\Program Files (x86)\Opera\18.0.1284.68\opera.exe (Opera Software) PRC - C:\Program Files (x86)\Common Files\Umbrella\umbrella.exe (Iminent) PRC - C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe (Avira Operations GmbH & Co. KG) PRC - C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe (Avira Operations GmbH & Co. KG) PRC - C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe (Avira Operations GmbH & Co. KG) PRC - C:\Users\Rezer\AppData\Local\Smartbar\Application\SnapDo.exe (Smartbar) PRC - C:\Users\Rezer\AppData\Roaming\Tepfel\dat\NSupport\bclient.exe (SSL) PRC - C:\Users\Rezer\AppData\Roaming\Tepfel\WebCakeDesktop.exe (Bake Cake) PRC - C:\Program Files (x86)\Tepfel\WebCakeDesktop.Updater.exe (cake bake) PRC - C:\Programme\McAfeeEx\MOCP\core\OcpTray.exe (McAfee, Inc.) PRC - C:\Program Files (x86)\Aeria Games\Ignite\aeriaignite.exe (Aeria Games & Entertainment) PRC - C:\Users\Rezer\AppData\Local\Akamai\netsession_win.exe (Akamai Technologies, Inc.) PRC - C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe (Atheros) PRC - C:\Programme\Sony\VAIO Care\VCService.exe (Sony Corporation) PRC - C:\Program Files (x86)\Intel\IntelAppStore\bin\ismagent.exe (Intel Corporation) PRC - c:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (Adobe Systems Incorporated) PRC - C:\Program Files (x86)\Sony\VAIO Control Center\VESMgrSub.exe (Sony Corporation) PRC - C:\Program Files (x86)\Sony\VAIO Control Center\VESMgr.exe (Sony Corporation) PRC - C:\Program Files (x86)\Sony\ISB Utility\ISBMgr.exe (Sony Corporation) PRC - C:\Programme\Sony\VAIO Care\listener.exe () PRC - C:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe (Sony Corporation) PRC - C:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe (Sony Corporation) PRC - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (Intel Corporation) PRC - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel Corporation) PRC - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe (Intel Corporation) PRC - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (Intel Corporation) PRC - C:\Users\Rezer\Desktop\virtualdj_pro.exe (Atomix Productions) ========== Modules (No Company Name) ========== MOD - C:\Program Files (x86)\Mobogenie\DaemonProcess.exe () MOD - C:\Program Files (x86)\Opera\18.0.1284.68\libglesv2.dll () MOD - C:\Program Files (x86)\Opera\18.0.1284.68\libegl.dll () MOD - C:\Program Files (x86)\Opera\18.0.1284.68\ffmpegsumo.dll () MOD - C:\Program Files (x86)\Opera\18.0.1284.68\opera_crashreporter.exe () MOD - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_170.dll () MOD - C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\WindowsForm0b574481#\afb23fbeab3f42a296d2267ff818226b\WindowsFormsIntegration.ni.dll () MOD - C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\UIAutomationTypes\dce9de99d0b6d6951b3e4bb96cdf8eb2\UIAutomationTypes.ni.dll () MOD - C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Web.Services\e6dc080a4287b7bd34a8df7bc3060287\System.Web.Services.ni.dll () MOD - C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Configuration\1b66c3a9184d6f58a4ea4c9fda959ae1\System.Configuration.ni.dll () MOD - C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Xml\9e55130078215e51257977a651b0696b\System.Xml.ni.dll () MOD - C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\eac55000ab752ad6469e74bc2031a3ef\System.Windows.Forms.ni.dll () MOD - C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System.Drawing\e846f72e7c00312a5d9c04e7f70fa4a8\System.Drawing.ni.dll () MOD - C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\System\5a86b00da9227fe7c9a1f6ca95c1850c\System.ni.dll () MOD - C:\WINDOWS\assembly\NativeImages_v2.0.50727_32\mscorlib\0cc1da9cd31b490f4ec04cb6c2aa0519\mscorlib.ni.dll () MOD - C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System.Xml\7c74d7aeea0b6338a41a568338ac0d44\System.Xml.ni.dll () MOD - C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System.Xaml\38576feb5219017651ccabc47d762721\System.Xaml.ni.dll () MOD - C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System.Windows.Forms\5bfb986816df97dad53f0f8805034c13\System.Windows.Forms.ni.dll () MOD - C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System.Transactions\236909def26d8a0afa1e3a3c1a565029\System.Transactions.ni.dll () MOD - C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System.Runteb92aa12#\bcf96bb3f336510eb9cb0528246b6286\System.Runtime.Serialization.ni.dll () MOD - C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System.Management\f81d9811e7e3e49c6368eae04b82821e\System.Management.ni.dll () MOD - C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System.Drawing\7fc996267c8fdbf5f4a99648b2b4a764\System.Drawing.ni.dll () MOD - C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System.Data\a91958b0b36fad1117db357453c678e6\System.Data.ni.dll () MOD - C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System.Configuration\4de0819b5866a864a353b401accbe99f\System.Configuration.ni.dll () MOD - C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\Presentatioaec034ca#\09a79e2680eb455c3bd86986a1a3ebc6\PresentationFramework.Aero2.ni.dll () MOD - C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\Presentatio5ae0f00f#\43edf387058448969f5b045416e7a61f\PresentationFramework.ni.dll () MOD - C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\PresentationCore\cd8b0635d40858825092519b467e2051\PresentationCore.ni.dll () MOD - C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\WindowsBase\360aceaa71f85cd70876356d6f4a5019\WindowsBase.ni.dll () MOD - C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System.Core\c4998b0a19973793e409d92b5ffb39de\System.Core.ni.dll () MOD - C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\System\7fb8b50f254a60f46417d8698735943a\System.ni.dll () MOD - C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\mscorlib\f53cfbc3ae73aedfcdab4e4cfe531a4b\mscorlib.ni.dll () MOD - C:\Users\Rezer\AppData\Local\Smartbar\Application\srut.dll () MOD - C:\Users\Rezer\AppData\Local\Smartbar\Application\srsbs.dll () MOD - C:\Users\Rezer\AppData\Local\Smartbar\Application\srpdm.dll () MOD - C:\Users\Rezer\AppData\Local\Smartbar\Application\srns.dll () MOD - C:\Users\Rezer\AppData\Local\Smartbar\Application\srau.dll () MOD - C:\Users\Rezer\AppData\Local\Smartbar\Application\spbl.dll () MOD - C:\Users\Rezer\AppData\Local\Smartbar\Application\sppsm.dll () MOD - C:\Users\Rezer\AppData\Local\Smartbar\Application\Smartbar.Resources.SocialNetsSharer.dll () MOD - C:\Users\Rezer\AppData\Local\Smartbar\Application\Smartbar.Resources.HistoryAndStatsWrapper.dll () MOD - C:\Users\Rezer\AppData\Local\Smartbar\Application\Smartbar.Resources.LanguageSettings.dll () MOD - C:\Users\Rezer\AppData\Local\Smartbar\Application\Smartbar.Infrastructure.Utilities.dll () MOD - C:\Users\Rezer\AppData\Local\Smartbar\Application\Smartbar.Personalization.Common.dll () MOD - C:\Users\Rezer\AppData\Local\Smartbar\Application\Smartbar.GUI.MainClient.dll () MOD - C:\Users\Rezer\AppData\Local\Smartbar\Application\Smartbar.Infrastructure.Core.dll () MOD - C:\Users\Rezer\AppData\Local\Smartbar\Application\Smartbar.Infrastructure.BusinessEntities.dll () MOD - C:\Users\Rezer\AppData\Local\Smartbar\Application\Smartbar.GUI.Controls.dll () MOD - C:\Users\Rezer\AppData\Local\Smartbar\Application\Smartbar.GUI.Docking.dll () MOD - C:\Users\Rezer\AppData\Local\Smartbar\Application\siem.dll () MOD - C:\Users\Rezer\AppData\Local\Smartbar\Application\sgml.dll () MOD - C:\Users\Rezer\AppData\Local\Smartbar\Application\MACTrackBarLib.dll () MOD - C:\Users\Rezer\AppData\Local\Smartbar\Application\de\Smartbar.Resources.LanguageSettings.resources.dll () MOD - C:\Users\Rezer\AppData\Local\Smartbar\Application\sgmu.dll () MOD - C:\Users\Rezer\AppData\Local\Smartbar\Application\AxInterop.WMPLib.dll () MOD - C:\Programme\McAfeeEx\MOCP\core\OCP_LD.dll () MOD - C:\Users\Rezer\AppData\Roaming\BabSolution\Shared\enhancedNT.dll () MOD - C:\WINDOWS\assembly\GAC_MSIL\System.Xml\2.0.0.0__b77a5c561934e089\System.Xml.dll () MOD - C:\WINDOWS\assembly\GAC_32\System.Web\2.0.0.0__b03f5f7f11d50a3a\System.Web.dll () MOD - C:\WINDOWS\assembly\GAC_MSIL\System.Windows.Forms\2.0.0.0__b77a5c561934e089\System.Windows.Forms.dll () MOD - C:\WINDOWS\assembly\GAC_MSIL\System.Management\2.0.0.0__b03f5f7f11d50a3a\System.Management.dll () MOD - C:\WINDOWS\assembly\GAC_MSIL\System\2.0.0.0__b77a5c561934e089\System.dll () MOD - C:\WINDOWS\assembly\GAC_MSIL\System.Configuration\2.0.0.0__b03f5f7f11d50a3a\System.Configuration.dll () MOD - C:\WINDOWS\assembly\GAC_MSIL\System.Xml.resources\2.0.0.0_de_b77a5c561934e089\System.Xml.resources.dll () MOD - C:\WINDOWS\assembly\GAC_MSIL\mscorlib.resources\2.0.0.0_de_b77a5c561934e089\mscorlib.resources.dll () MOD - C:\WINDOWS\assembly\GAC_MSIL\System.resources\2.0.0.0_de_b77a5c561934e089\System.resources.dll () MOD - C:\Users\Rezer\AppData\Roaming\Tepfel\dat\NSupport\zlib1.dll () MOD - C:\Program Files (x86)\Aeria Games\Ignite\AGAkamai.dll () MOD - C:\Program Files (x86)\Intel\IntelAppStore\bin\sqlite3.dll () MOD - C:\Program Files (x86)\Intel\IntelAppStore\bin\zlib1.dll () MOD - C:\Program Files (x86)\Intel\IntelAppStore\bin\log4cplus.dll () MOD - C:\Program Files (x86)\Intel\IntelAppStore\bin\libgsoap.dll () MOD - C:\Program Files (x86)\Intel\IntelAppStore\bin\osEvents.dll () MOD - C:\Program Files (x86)\Intel\IntelAppStore\bin\eventsSender.dll () MOD - C:\Program Files (x86)\Intel\IntelAppStore\bin\featureController.dll () MOD - C:\Program Files (x86)\Intel\IntelAppStore\bin\serviceManagerStarter.dll () MOD - C:\Program Files (x86)\Intel\IntelAppStore\bin\deviceProfile.dll () MOD - C:\Programme\Sony\VAIO Care\listener.exe () MOD - C:\Users\Rezer\Documents\VirtualDJ\Plugins\SoundEffect\dsp_Phaser.dll () MOD - C:\Users\Rezer\Documents\VirtualDJ\Plugins\VideoTransition\satelliteboom.dll () MOD - C:\Users\Rezer\Documents\VirtualDJ\Plugins\SoundEffect\brake.dll () MOD - C:\Users\Rezer\Documents\VirtualDJ\Plugins\SoundEffect\backspin.dll () MOD - C:\Users\Rezer\Documents\VirtualDJ\Plugins\VideoEffect\Sonique.dll () MOD - C:\Users\Rezer\Documents\VirtualDJ\Plugins\SoundEffect\BeatGrid.dll () ========== Services (SafeList) ========== SRV:64bit: - (AMD External Events Utility) -- C:\Windows\SysNative\atiesrxx.exe (AMD) SRV:64bit: - (WSService) -- C:\Windows\SysNative\WSService.dll (Microsoft Corporation) SRV:64bit: - (workfolderssvc) -- C:\Windows\SysNative\workfolderssvc.dll (Microsoft Corporation) SRV:64bit: - (AppReadiness) -- C:\Windows\SysNative\AppReadiness.dll (Microsoft Corporation) SRV:64bit: - (IEEtwCollectorService) -- C:\WINDOWS\SysNative\IEEtwCollector.exe (Microsoft Corporation) SRV:64bit: - (AppXSvc) -- C:\Windows\SysNative\AppXDeploymentServer.dll (Microsoft Corporation) SRV:64bit: - (Wcmsvc) -- C:\Windows\SysNative\wcmsvc.dll (Microsoft Corporation) SRV:64bit: - (wlidsvc) -- C:\Windows\SysNative\wlidsvc.dll (Microsoft Corporation) SRV:64bit: - (lfsvc) -- C:\Windows\SysNative\GeofenceMonitorService.dll (Microsoft Corporation) SRV:64bit: - (BrokerInfrastructure) -- C:\Windows\SysNative\bisrv.dll (Microsoft Corporation) SRV:64bit: - (PrintNotify) -- C:\Windows\SysNative\spool\drivers\x64\3\PrintConfig.dll (Microsoft Corporation) SRV:64bit: - (WEPHOSTSVC) -- C:\Windows\SysNative\wephostsvc.dll (Microsoft Corporation) SRV:64bit: - (EFS) -- C:\Windows\SysNative\efssvc.dll (Microsoft Corporation) SRV:64bit: - (WiaRpc) -- C:\Windows\SysNative\wiarpc.dll (Microsoft Corporation) SRV:64bit: - (svsvc) -- C:\Windows\SysNative\svsvc.dll (Microsoft Corporation) SRV:64bit: - (fhsvc) -- C:\Windows\SysNative\fhsvc.dll (Microsoft Corporation) SRV:64bit: - (NcaSvc) -- C:\Windows\SysNative\NcaSvc.dll (Microsoft Corporation) SRV:64bit: - (vmicvss) -- C:\Windows\SysNative\icsvc.dll (Microsoft Corporation) SRV:64bit: - (vmictimesync) -- C:\Windows\SysNative\icsvc.dll (Microsoft Corporation) SRV:64bit: - (vmicshutdown) -- C:\Windows\SysNative\icsvc.dll (Microsoft Corporation) SRV:64bit: - (vmicrdv) -- C:\Windows\SysNative\icsvc.dll (Microsoft Corporation) SRV:64bit: - (vmickvpexchange) -- C:\Windows\SysNative\icsvc.dll (Microsoft Corporation) SRV:64bit: - (vmicheartbeat) -- C:\Windows\SysNative\icsvc.dll (Microsoft Corporation) SRV:64bit: - (vmicguestinterface) -- C:\Windows\SysNative\icsvc.dll (Microsoft Corporation) SRV:64bit: - (LSM) -- C:\Windows\SysNative\lsm.dll (Microsoft Corporation) SRV:64bit: - (smphost) -- C:\Windows\SysNative\smphost.dll (Microsoft Corporation) SRV:64bit: - (Netlogon) -- C:\Windows\SysNative\netlogon.dll (Microsoft Corporation) SRV:64bit: - (SystemEventsBroker) -- C:\Windows\SysNative\SystemEventsBrokerServer.dll (Microsoft Corporation) SRV:64bit: - (ScDeviceEnum) -- C:\Windows\SysNative\ScDeviceEnum.dll (Microsoft Corporation) SRV:64bit: - (KeyIso) -- C:\Windows\SysNative\keyiso.dll (Microsoft Corporation) SRV:64bit: - (TimeBroker) -- C:\Windows\SysNative\TimeBrokerServer.dll (Microsoft Corporation) SRV:64bit: - (netprofm) -- C:\Windows\SysNative\netprofmsvc.dll (Microsoft Corporation) SRV:64bit: - (NcbService) -- C:\Windows\SysNative\ncbservice.dll (Microsoft Corporation) SRV:64bit: - (VaultSvc) -- C:\Windows\SysNative\vaultsvc.dll (Microsoft Corporation) SRV:64bit: - (DeviceAssociationService) -- C:\Windows\SysNative\das.dll (Microsoft Corporation) SRV:64bit: - (AudioEndpointBuilder) -- C:\Windows\SysNative\AudioEndpointBuilder.dll (Microsoft Corporation) SRV:64bit: - (DsmSvc) -- C:\Windows\SysNative\DeviceSetupManager.dll (Microsoft Corporation) SRV:64bit: - (NcdAutoSetup) -- C:\Windows\SysNative\NcdAutoSetup.dll (Microsoft Corporation) SRV:64bit: - (SampleCollector) -- C:\Program Files\Sony\VAIO Care\VCPerfService.exe () SRV - (APNMCP) -- C:\Program Files (x86)\AskPartnerNetwork\Toolbar\apnmcp.exe (APN LLC.) SRV - (Wpm) -- C:\ProgramData\WPM\wprotectmanager.exe (Cherished Technololgy LIMITED) SRV - (BBUpdate) -- C:\Program Files (x86)\Microsoft\BingBar\7.3.124.0\SeaPort.exe (Microsoft Corporation.) SRV - (BBSvc) -- C:\Program Files (x86)\Microsoft\BingBar\7.3.124.0\BBSvc.exe (Microsoft Corporation.) SRV - (SProtection) -- C:\Program Files (x86)\Common Files\Umbrella\umbrella.exe (Iminent) SRV - (AdobeFlashPlayerUpdateSvc) -- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe (Adobe Systems Incorporated) SRV - (OverwolfUpdaterService) -- C:\Program Files (x86)\Overwolf\OverwolfUpdater.exe (Overwolf) SRV - (AntiVirSchedulerService) -- C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe (Avira Operations GmbH & Co. KG) SRV - (AntiVirWebService) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe (Avira Operations GmbH & Co. KG) SRV - (AntiVirService) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe (Avira Operations GmbH & Co. KG) SRV - (BRSptSvc) -- C:\ProgramData\BitRaider\BRSptSvc.exe (BitRaider, LLC) SRV - (lfsvc) -- C:\Windows\SysWOW64\GeofenceMonitorService.dll (Microsoft Corporation) SRV - (NetworkSupport) -- C:\Program Files (x86)\Sony\VAIO Control Center\NetworkSetting\NetworkSupport.exe (Sony Corporation) SRV - (BackupStack) -- C:\Program Files (x86)\MyPC Backup\BackupStack.exe (Just Develop It) SRV - (PrintNotify) -- C:\Windows\system32\spool\drivers\x64\3\PrintConfig.dll (Microsoft Corporation) SRV - (StorSvc) -- C:\Windows\SysWOW64\StorSvc.dll (Microsoft Corporation) SRV - (smphost) -- C:\Windows\SysWOW64\smphost.dll (Microsoft Corporation) SRV - (Update WL) -- C:\Program Files (x86)\Web Layers\updateWebLayers.exe () SRV - (WebCakeUpdater) -- C:\Program Files (x86)\Tepfel\WebCakeDesktop.Updater.exe (cake bake) SRV - (mfeicfcoreocp) -- C:\Programme\McAfeeEx\MOCP\core\mfeicfcore.exe (McAfee, Inc.) SRV - (VUAgent) -- C:\Programme\Sony\VAIO Update\VUAgent.exe (Sony Corporation) SRV - (AtherosSvc) -- C:\Program Files (x86)\Bluetooth Suite\adminservice.exe (Qualcomm Atheros Commnucations) SRV - (ZAtheros Bt and Wlan Coex Agent) -- C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe (Atheros) SRV - (SOHDms) -- C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDms.exe (Sony Corporation) SRV - (SOHDs) -- C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDs.exe (Sony Corporation) SRV - (SOHCImp) -- C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHCImp.exe (Sony Corporation) SRV - (VCService) -- C:\Programme\Sony\VAIO Care\VCService.exe (Sony Corporation) SRV - (IconMan_R) -- C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe (Realsil Microelectronics Inc.) SRV - (VCFw) -- C:\Program Files (x86)\Common Files\Sony Shared\VAIO Content Folder Watcher\VCFw.exe (Sony Corporation) SRV - (AdobeARMservice) -- c:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (Adobe Systems Incorporated) SRV - (VAIO Event Service) -- C:\Program Files (x86)\Sony\VAIO Control Center\VESMgr.exe (Sony Corporation) SRV - (PMBDeviceInfoProvider) -- C:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe (Sony Corporation) SRV - (VAIO Power Management) -- C:\Programme\Sony\VAIO Power Management\SPMService.exe (Sony Corporation) SRV - (UNS) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (Intel Corporation) SRV - (LMS) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel Corporation) SRV - (Intel(R) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe (Intel Corporation) SRV - (jhi_service) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (Intel Corporation) SRV - (Intel(R) -- C:\Programme\Intel\iCLS Client\HeciServer.exe (Intel(R) Corporation) SRV - (SpfService) -- C:\Programme\Common Files\Sony Shared\VAIO Entertainment Platform\SPF\SpfService64.exe (Sony Corporation) SRV - (GamesAppService) -- C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe (WildTangent, Inc.) ========== Driver Services (SafeList) ========== DRV:64bit: - (amdkmdag) -- C:\Windows\SysNative\drivers\atikmdag.sys (Advanced Micro Devices, Inc.) DRV:64bit: - (amdkmdap) -- C:\Windows\SysNative\drivers\atikmpag.sys (Advanced Micro Devices, Inc.) DRV:64bit: - (stornvme) -- C:\Windows\SysNative\drivers\stornvme.sys (Microsoft Corporation) DRV:64bit: - (WFPLWFS) -- C:\Windows\SysNative\drivers\wfplwfs.sys (Microsoft Corporation) DRV:64bit: - (avipbb) -- C:\Windows\SysNative\drivers\avipbb.sys (Avira Operations GmbH & Co. KG) DRV:64bit: - (avgntflt) -- C:\Windows\SysNative\drivers\avgntflt.sys (Avira Operations GmbH & Co. KG) DRV:64bit: - (avnetflt) -- C:\Windows\SysNative\drivers\avnetflt.sys (Avira Operations GmbH & Co. KG) DRV:64bit: - (avkmgr) -- C:\Windows\SysNative\drivers\avkmgr.sys (Avira Operations GmbH & Co. KG) DRV:64bit: - (intelpep) -- C:\Windows\SysNative\drivers\intelpep.sys (Microsoft Corporation) DRV:64bit: - (USBXHCI) -- C:\Windows\SysNative\drivers\USBXHCI.SYS (Microsoft Corporation) DRV:64bit: - (pdc) -- C:\Windows\SysNative\drivers\pdc.sys (Microsoft Corporation) DRV:64bit: - (spaceport) -- C:\Windows\SysNative\drivers\spaceport.sys (Microsoft Corporation) DRV:64bit: - (ssudmdm) -- C:\Windows\SysNative\drivers\ssudmdm.sys (DEVGURU Co., LTD.(www.devguru.co.kr)) DRV:64bit: - (dg_ssudbus) -- C:\Windows\SysNative\drivers\ssudbus.sys (DEVGURU Co., LTD.(www.devguru.co.kr)) DRV:64bit: - (SerCx2) -- C:\Windows\SysNative\drivers\SerCx2.sys (Microsoft Corporation) DRV:64bit: - (VerifierExt) -- C:\Windows\SysNative\drivers\VerifierExt.sys (Microsoft Corporation) DRV:64bit: - (USBHUB3) -- C:\Windows\SysNative\drivers\USBHUB3.SYS (Microsoft Corporation) DRV:64bit: - (sdbus) -- C:\Windows\SysNative\drivers\sdbus.sys (Microsoft Corporation) DRV:64bit: - (RdpVideoMiniport) -- C:\Windows\SysNative\drivers\rdpvideominiport.sys (Microsoft Corporation) DRV:64bit: - (terminpt) -- C:\Windows\SysNative\drivers\terminpt.sys (Microsoft Corporation) DRV:64bit: - (condrv) -- C:\Windows\SysNative\drivers\condrv.sys (Microsoft Corporation) DRV:64bit: - (Fs_Rec) -- C:\WINDOWS\SysNative\drivers\fs_rec.sys (Microsoft Corporation) DRV:64bit: - (dam) -- C:\Windows\SysNative\drivers\dam.sys (Microsoft Corporation) DRV:64bit: - (acpiex) -- C:\Windows\SysNative\drivers\acpiex.sys (Microsoft Corporation) DRV:64bit: - (TPM) -- C:\Windows\SysNative\drivers\tpm.sys (Microsoft Corporation) DRV:64bit: - (mvumis) -- C:\Windows\SysNative\drivers\mvumis.sys (Marvell Semiconductor, Inc.) DRV:64bit: - (GPIOClx0101) -- C:\Windows\SysNative\drivers\msgpioclx.sys (Microsoft Corporation) DRV:64bit: - (msgpiowin32) -- C:\Windows\SysNative\drivers\msgpiowin32.sys (Microsoft Corporation) DRV:64bit: - (ebdrv) -- C:\Windows\SysNative\drivers\evbda.sys (Broadcom Corporation) DRV:64bit: - (LSI_SAS2) -- C:\Windows\SysNative\drivers\lsi_sas2.sys (LSI Corporation) DRV:64bit: - (LSI_SSS) -- C:\Windows\SysNative\drivers\lsi_sss.sys (LSI Corporation) DRV:64bit: - (HpSAMD) -- C:\Windows\SysNative\drivers\HpSAMD.sys (Hewlett-Packard Company) DRV:64bit: - (LSI_SAS3) -- C:\Windows\SysNative\drivers\lsi_sas3.sys (LSI Corporation) DRV:64bit: - (ADP80XX) -- C:\Windows\SysNative\drivers\adp80xx.sys (PMC-Sierra) DRV:64bit: - (b06bdrv) -- C:\Windows\SysNative\drivers\bxvbda.sys (Broadcom Corporation) DRV:64bit: - (amdsbs) -- C:\Windows\SysNative\drivers\amdsbs.sys (AMD Technologies Inc.) DRV:64bit: - (3ware) -- C:\Windows\SysNative\drivers\3ware.sys (LSI) DRV:64bit: - (amdsata) -- C:\Windows\SysNative\drivers\amdsata.sys (Advanced Micro Devices) DRV:64bit: - (EhStorTcgDrv) -- C:\Windows\SysNative\drivers\EhStorTcgDrv.sys (Microsoft Corporation) DRV:64bit: - (EhStorClass) -- C:\Windows\SysNative\drivers\EhStorClass.sys (Microsoft Corporation) DRV:64bit: - (amdxata) -- C:\Windows\SysNative\drivers\amdxata.sys (Advanced Micro Devices) DRV:64bit: - (VSTXRAID) -- C:\Windows\SysNative\drivers\VSTXRAID.SYS (VIA Corporation) DRV:64bit: - (UCX01000) -- C:\Windows\SysNative\drivers\UCX01000.SYS (Microsoft Corporation) DRV:64bit: - (UASPStor) -- C:\Windows\SysNative\drivers\uaspstor.sys (Microsoft Corporation) DRV:64bit: - (sdstor) -- C:\Windows\SysNative\drivers\sdstor.sys (Microsoft Corporation) DRV:64bit: - (stexstor) -- C:\Windows\SysNative\drivers\stexstor.sys (Promise Technology, Inc.) DRV:64bit: - (storahci) -- C:\Windows\SysNative\drivers\storahci.sys (Microsoft Corporation) DRV:64bit: - (SpbCx) -- C:\Windows\SysNative\drivers\SpbCx.sys (Microsoft Corporation) DRV:64bit: - (SerCx) -- C:\Windows\SysNative\drivers\SerCx.sys (Microsoft Corporation) DRV:64bit: - (wpcfltr) -- C:\Windows\SysNative\drivers\wpcfltr.sys (Microsoft Corporation) DRV:64bit: - (CLFS) -- C:\Windows\SysNative\drivers\clfs.sys (Microsoft Corporation) DRV:64bit: - (ReFS) -- C:\WINDOWS\SysNative\drivers\refs.sys (Microsoft Corporation) DRV:64bit: - (UEFI) -- C:\Windows\SysNative\drivers\uefi.sys (Microsoft Corporation) DRV:64bit: - (vpci) -- C:\Windows\SysNative\drivers\vpci.sys (Microsoft Corporation) DRV:64bit: - (WpdUpFltr) -- C:\Windows\SysNative\drivers\WpdUpFltr.sys (Microsoft Corporation) DRV:64bit: - (WdFilter) -- C:\Windows\SysNative\drivers\WdFilter.sys (Microsoft Corporation) DRV:64bit: - (WdNisDrv) -- C:\Windows\SysNative\drivers\WdNisDrv.sys (Microsoft Corporation) DRV:64bit: - (WdBoot) -- C:\Windows\SysNative\drivers\WdBoot.sys (Microsoft Corporation) DRV:64bit: - (ahcache) -- C:\Windows\SysNative\drivers\ahcache.sys (Microsoft Corporation) DRV:64bit: - (BasicDisplay) -- C:\Windows\SysNative\drivers\BasicDisplay.sys (Microsoft Corporation) DRV:64bit: - (BasicRender) -- C:\Windows\SysNative\drivers\BasicRender.sys (Microsoft Corporation) DRV:64bit: - (HyperVideo) -- C:\Windows\SysNative\drivers\HyperVideo.sys (Microsoft Corporation) DRV:64bit: - (mshidumdf) -- C:\Windows\SysNative\drivers\mshidumdf.sys (Microsoft Corporation) DRV:64bit: - (acpitime) -- C:\Windows\SysNative\drivers\acpitime.sys (Microsoft Corporation) DRV:64bit: - (acpipagr) -- C:\Windows\SysNative\drivers\acpipagr.sys (Microsoft Corporation) DRV:64bit: - (BthAvrcpTg) -- C:\Windows\SysNative\drivers\BthAvrcpTg.sys (Microsoft Corporation) DRV:64bit: - (kdnic) -- C:\Windows\SysNative\drivers\kdnic.sys (Microsoft Corporation) DRV:64bit: - (gencounter) -- C:\Windows\SysNative\drivers\vmgencounter.sys (Microsoft Corporation) DRV:64bit: - (npsvctrig) -- C:\Windows\SysNative\drivers\npsvctrig.sys (Microsoft Corporation) DRV:64bit: - (bthhfhid) -- C:\Windows\SysNative\drivers\BthhfHid.sys (Microsoft Corporation) DRV:64bit: - (hyperkbd) -- C:\Windows\SysNative\drivers\hyperkbd.sys (Microsoft Corporation) DRV:64bit: - (TsUsbGD) -- C:\Windows\SysNative\drivers\TsUsbGD.sys (Microsoft Corporation) DRV:64bit: - (BthHFEnum) -- C:\Windows\SysNative\drivers\bthhfenum.sys (Microsoft Corporation) DRV:64bit: - (TsUsbFlt) -- C:\Windows\SysNative\drivers\TsUsbFlt.sys (Microsoft Corporation) DRV:64bit: - (hidi2c) -- C:\Windows\SysNative\drivers\hidi2c.sys (Microsoft Corporation) DRV:64bit: - (dmvsc) -- C:\Windows\SysNative\drivers\dmvsc.sys (Microsoft Corporation) DRV:64bit: - (netvsc) -- C:\Windows\SysNative\drivers\netvsc63.sys (Microsoft Corporation) DRV:64bit: - (BthLEEnum) -- C:\Windows\SysNative\drivers\BthLEEnum.sys (Microsoft Corporation) DRV:64bit: - (NdisVirtualBus) -- C:\Windows\SysNative\drivers\NdisVirtualBus.sys (Microsoft Corporation) DRV:64bit: - (NdisImPlatform) -- C:\Windows\SysNative\drivers\NdisImPlatform.sys (Microsoft Corporation) DRV:64bit: - (MsLldp) -- C:\Windows\SysNative\drivers\mslldp.sys (Microsoft Corporation) DRV:64bit: - (Ndu) -- C:\Windows\SysNative\drivers\Ndu.sys (Microsoft Corporation) DRV:64bit: - (StillCam) -- C:\Windows\SysNative\drivers\serscan.sys (Microsoft Corporation) DRV:64bit: - (FxPPM) -- C:\Windows\SysNative\drivers\fxppm.sys (Microsoft Corporation) DRV:64bit: - (bcmfn2) -- C:\Windows\SysNative\drivers\bcmfn2.sys (Windows (R) Win 7 DDK provider) DRV:64bit: - (iaStorAV) -- C:\Windows\SysNative\drivers\iaStorAV.sys (Intel Corporation) DRV:64bit: - (iaLPSSi_GPIO) -- C:\Windows\SysNative\drivers\iaLPSSi_GPIO.sys (Intel Corporation) DRV:64bit: - (iaLPSSi_I2C) -- C:\Windows\SysNative\drivers\iaLPSSi_I2C.sys (Intel Corporation) DRV:64bit: - (RTL8168) -- C:\Windows\SysNative\drivers\Rt630x64.sys (Realtek ) DRV:64bit: - (athr) -- C:\Windows\SysNative\drivers\athw8x.sys (Qualcomm Atheros Communications, Inc.) DRV:64bit: - (mferkdet) -- C:\Windows\SysNative\drivers\mferkdet.sys (McAfee, Inc.) DRV:64bit: - (iaStorA) -- C:\Windows\SysNative\drivers\iaStorA.sys (Intel Corporation) DRV:64bit: - (BtFilter) -- C:\Windows\SysNative\drivers\btfilter.sys (Qualcomm Atheros) DRV:64bit: - (BTATH_VDP) -- C:\Windows\SysNative\drivers\btath_vdp.sys (Qualcomm Atheros) DRV:64bit: - (BTATH_RCP) -- C:\Windows\SysNative\drivers\btath_rcp.sys (Qualcomm Atheros) DRV:64bit: - (BTATH_LWFLT) -- C:\Windows\SysNative\drivers\btath_lwflt.sys (Qualcomm Atheros) DRV:64bit: - (BTATH_HCRP) -- C:\Windows\SysNative\drivers\btath_hcrp.sys (Qualcomm Atheros) DRV:64bit: - (AthBTPort) -- C:\Windows\SysNative\drivers\btath_flt.sys (Qualcomm Atheros) DRV:64bit: - (BTATH_A2DP) -- C:\Windows\SysNative\drivers\btath_a2dp.sys (Qualcomm Atheros) DRV:64bit: - (btath_avdt) -- C:\Windows\SysNative\drivers\btath_avdt.sys (Qualcomm Atheros) DRV:64bit: - (BTATH_BUS) -- C:\Windows\SysNative\drivers\btath_bus.sys (Qualcomm Atheros) DRV:64bit: - (SynTP) -- C:\Windows\SysNative\drivers\SynTP.sys (Synaptics Incorporated) DRV:64bit: - (SmbDrvI) -- C:\Windows\SysNative\drivers\Smb_driver_Intel.sys (Synaptics Incorporated) DRV:64bit: - (AtiHDAudioService) -- C:\Windows\SysNative\drivers\AtihdW86.sys (Advanced Micro Devices) DRV:64bit: - (RSPCIESTOR) -- C:\Windows\SysNative\drivers\RtsPStor.sys (Realtek Semiconductor Corp.) DRV:64bit: - (SFEP) -- C:\Windows\SysNative\drivers\SFEP.sys (Sony Corporation) DRV:64bit: - (MEIx64) -- C:\Windows\SysNative\drivers\HECIx64.sys (Intel Corporation) DRV:64bit: - (CLVirtualDrive) -- C:\Windows\SysNative\drivers\CLVirtualDrive.sys (CyberLink) DRV:64bit: - (SOWS) -- C:\Windows\SysNative\drivers\sows.sys (Sony Corporation) DRV:64bit: - (HipShieldK) -- C:\Windows\SysNative\drivers\HipShieldK.sys (McAfee, Inc.) ========== Standard Registry (SafeList) ========== ========== Internet Explorer ========== IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.sweet-page.com/?type=hp&ts=1389395095&from=cor&uid=TOSHIBAXMQ01ABD050_Y2QGC1G9TXXY2QGC1G9T IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.sweet-page.com/web/?type=ds&ts=1389395095&from=cor&uid=TOSHIBAXMQ01ABD050_Y2QGC1G9TXXY2QGC1G9T&q={searchTerms} IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.sweet-page.com/web/?type=ds&ts=1389395095&from=cor&uid=TOSHIBAXMQ01ABD050_Y2QGC1G9TXXY2QGC1G9T&q={searchTerms} IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.sweet-page.com/?type=hp&ts=1389395095&from=cor&uid=TOSHIBAXMQ01ABD050_Y2QGC1G9TXXY2QGC1G9T IE:64bit: - HKLM\..\SearchScopes,DefaultScope = {33BB0A4E-99AF-4226-BDF6-49120163DE86} IE:64bit: - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = hxxp://www.bing.com/search?q={searchTerms}&FORM=IE8SRC IE:64bit: - HKLM\..\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}: "URL" = hxxp://www.sweet-page.com/web/?type=ds&ts=1389395095&from=cor&uid=TOSHIBAXMQ01ABD050_Y2QGC1G9TXXY2QGC1G9T&q={searchTerms} IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.sweet-page.com/?type=hp&ts=1389395095&from=cor&uid=TOSHIBAXMQ01ABD050_Y2QGC1G9TXXY2QGC1G9T IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.sweet-page.com/web/?type=ds&ts=1389395095&from=cor&uid=TOSHIBAXMQ01ABD050_Y2QGC1G9TXXY2QGC1G9T&q={searchTerms} IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.sweet-page.com/web/?type=ds&ts=1389395095&from=cor&uid=TOSHIBAXMQ01ABD050_Y2QGC1G9TXXY2QGC1G9T&q={searchTerms} IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.sweet-page.com/?type=hp&ts=1389395095&from=cor&uid=TOSHIBAXMQ01ABD050_Y2QGC1G9TXXY2QGC1G9T IE - HKLM\..\URLSearchHook: {525ba996-1ce4-4677-91c5-9fc4ead2d245} - C:\Program Files (x86)\appbarioDE\prxtbappb.dll (Conduit Ltd.) IE - HKLM\..\SearchScopes,DefaultScope = {33BB0A4E-99AF-4226-BDF6-49120163DE86} IE - HKLM\..\SearchScopes\{006ee092-9658-4fd6-bd8e-a21a348e59f5}: "URL" = hxxp://feed.snapdo.com/?publisher=Bundlore&dpid=Bundlore&co=DE&userid=bf21a708-efc3-f61b-02d1-4a88a18074b9&searchtype=ds&q={searchTerms}&installDate=29/08/2013 IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = hxxp://www.bing.com/search?q={searchTerms}&FORM=IE8SRC IE - HKLM\..\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}: "URL" = hxxp://www.sweet-page.com/web/?type=ds&ts=1389395095&from=cor&uid=TOSHIBAXMQ01ABD050_Y2QGC1G9TXXY2QGC1G9T&q={searchTerms} IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.sweet-page.com/?type=hp&ts=1389395095&from=cor&uid=TOSHIBAXMQ01ABD050_Y2QGC1G9TXXY2QGC1G9T IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = hxxp://vaioportal.sony.eu [binary data] IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Bar = hxxp://feed.snapdo.com/?publisher=Bundlore&dpid=Bundlore&co=DE&userid=bf21a708-efc3-f61b-02d1-4a88a18074b9&searchtype=ds&q={searchTerms}&installDate=29/08/2013 IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = hxxp://feed.snapdo.com/?publisher=Bundlore&dpid=Bundlore&co=DE&userid=bf21a708-efc3-f61b-02d1-4a88a18074b9&searchtype=ds&q={searchTerms}&installDate=29/08/2013 IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,SearchDefaultBranded = 1 IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://vaioportal.sony.eu [binary data] IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = hxxp://search.conduit.com?SearchSource=10&CUI=UN21121999732636817&UM=2&ctid=CT3312331 IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,Default_Search_URL = hxxp://feed.snapdo.com/?publisher=Bundlore&dpid=Bundlore&co=DE&userid=bf21a708-efc3-f61b-02d1-4a88a18074b9&searchtype=ds&q={searchTerms}&installDate=29/08/2013 IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Search,SearchAssistant = hxxp://feed.snapdo.com/?publisher=Bundlore&dpid=Bundlore&co=DE&userid=bf21a708-efc3-f61b-02d1-4a88a18074b9&searchtype=ds&q={searchTerms}&installDate=29/08/2013 IE - HKCU\..\SearchScopes,DefaultScope = {1B1754E0-DAFA-4969-BE0A-AFA8D9D69EAB} IE - HKCU\..\SearchScopes\{006ee092-9658-4fd6-bd8e-a21a348e59f5}: "URL" = hxxp://feed.snapdo.com/?publisher=Bundlore&dpid=Bundlore&co=DE&userid=bf21a708-efc3-f61b-02d1-4a88a18074b9&searchtype=ds&q={searchTerms}&installDate=29/08/2013 IE - HKCU\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = hxxp://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE11SR IE - HKCU\..\SearchScopes\{1B1754E0-DAFA-4969-BE0A-AFA8D9D69EAB}: "URL" = hxxp://search.conduit.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT3312331&CUI=UN21121999732636817&UM=2 IE - HKCU\..\SearchScopes\{248E7D94-A51C-47C2-A4E2-3B9A7A1E9F54}: "URL" = hxxp://rover.ebay.com/rover/1/707-37276-16609-27/4?mpre=hxxp://shop.ebay.de/?oemInLn=ieSrch-Q113&_nkw={searchTerms} IE - HKCU\..\SearchScopes\{33BB0A4E-99AF-4226-BDF6-49120163DE86}: "URL" = hxxp://www.sweet-page.com/web/?type=ds&ts=1389395095&from=cor&uid=TOSHIBAXMQ01ABD050_Y2QGC1G9TXXY2QGC1G9T&q={searchTerms} IE - HKCU\..\SearchScopes\{98D8DE1A-26F3-41F6-9D9E-A488FDF1975A}: "URL" = hxxp://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=MASEJS IE - HKCU\..\SearchScopes\{EEC7FB7A-1844-4173-83DC-C6B09E0A6DB2}: "URL" = hxxp://search.softonic.com/MOY00621/tb_v1?q={searchTerms}&SearchSource=4&cc=&mi=0ebbb5bf000000000000161731e9add1&r=812 IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0 IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = <local> ========== FireFox ========== FF:64bit: - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS\system32\Macromed\Flash\NPSWF64_11_9_900_170.dll File not found FF:64bit: - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.9.2: C:\Windows\system32\npDeployJava1.dll File not found FF:64bit: - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.9.2: C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF:64bit: - HKLM\Software\MozillaPlugins\@mcafee.com/MSC,version=10: C:\Program Files\mcafee\msc\npMcSnFFPl64.dll File not found FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_11_9_900_170.dll () FF - HKLM\Software\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42: C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation) FF - HKLM\Software\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI updater: C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation) FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.45.2: C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation) FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.45.2: C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation) FF - HKLM\Software\MozillaPlugins\@mcafee.com/MSC,version=10: C:\Program Files (x86)\McAfee\msc\npMcSnFFPl.dll File not found FF - HKLM\Software\MozillaPlugins\@WildTangent.com/GamesAppPresenceDetector,Version=1.0: C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll () FF - HKLM\Software\MozillaPlugins\Adobe Reader: c:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.) FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\seesimilar02@SeeSimilar.com: C:\Users\Rezer\AppData\Roaming\Mozilla\Extensions\seesimilar02@SeeSimilar.com [2013.09.28 20:52:16 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\zulagames@ZulaGames.com: C:\Users\Rezer\AppData\Roaming\Mozilla\Extensions\zulagames@ZulaGames.com [2013.09.28 20:52:16 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\speedanalysis02@SpeedAnalysis.com: C:\Users\Rezer\AppData\Roaming\Mozilla\Extensions\speedanalysis02@SpeedAnalysis.com [2013.09.28 20:52:16 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\speedtestanalysis@SpeedAnalysis.com: C:\Users\Rezer\AppData\Roaming\Mozilla\Extensions\speedtestanalysis@SpeedAnalysis.com [2013.12.31 14:52:57 | 000,000,000 | ---D | M] FF - HKEY_LOCAL_MACHINE\software\mozilla\Thunderbird\Extensions\\msktbird@mcafee.com: C:\Program Files\McAfee\MSK FF - HKEY_CURRENT_USER\software\mozilla\Firefox\Extensions\\seesimilar02@SeeSimilar.com: C:\Users\Rezer\AppData\Roaming\Mozilla\Extensions\seesimilar02@SeeSimilar.com [2013.09.28 20:52:16 | 000,000,000 | ---D | M] FF - HKEY_CURRENT_USER\software\mozilla\Firefox\Extensions\\zulagames@ZulaGames.com: C:\Users\Rezer\AppData\Roaming\Mozilla\Extensions\zulagames@ZulaGames.com [2013.09.28 20:52:16 | 000,000,000 | ---D | M] FF - HKEY_CURRENT_USER\software\mozilla\Firefox\Extensions\\speedanalysis02@SpeedAnalysis.com: C:\Users\Rezer\AppData\Roaming\Mozilla\Extensions\speedanalysis02@SpeedAnalysis.com [2013.09.28 20:52:16 | 000,000,000 | ---D | M] FF - HKEY_CURRENT_USER\software\mozilla\Firefox\Extensions\\speedtestanalysis@SpeedAnalysis.com: C:\Users\Rezer\AppData\Roaming\Mozilla\Extensions\speedtestanalysis@SpeedAnalysis.com [2013.12.31 14:52:57 | 000,000,000 | ---D | M] [2013.12.31 14:52:57 | 000,000,000 | ---D | M] (No name found) -- C:\Users\Rezer\AppData\Roaming\mozilla\Extensions [2013.09.28 20:52:16 | 000,000,000 | ---D | M] (SeeSimilar02) -- C:\Users\Rezer\AppData\Roaming\mozilla\Extensions\seesimilar02@SeeSimilar.com [2013.09.28 20:52:16 | 000,000,000 | ---D | M] (Speed Analysis 2) -- C:\Users\Rezer\AppData\Roaming\mozilla\Extensions\speedanalysis02@SpeedAnalysis.com [2013.12.31 14:52:57 | 000,000,000 | ---D | M] (Speed Test Analysis) -- C:\Users\Rezer\AppData\Roaming\mozilla\Extensions\speedtestanalysis@SpeedAnalysis.com [2013.09.28 20:52:16 | 000,000,000 | ---D | M] (Zula Games) -- C:\Users\Rezer\AppData\Roaming\mozilla\Extensions\zulagames@ZulaGames.com [2013.08.20 01:42:14 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\mozilla firefox\extensions O1 HOSTS File: ([2013.08.22 14:25:41 | 000,000,824 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts O2:64bit: - BHO: (Plus-HD-4.9) - {11111111-1111-1111-1111-110411591118} - C:\Program Files (x86)\Plus-HD-4.9\Plus-HD-4.9-bho64.dll (Plus HD) O2:64bit: - BHO: (Bing Bar Helper) - {1dad3af3-ef2f-4f64-ac4b-11789189fcb6} - C:\Program Files (x86)\Microsoft\BingBar\7.3.124.0\amd64\BingExt.dll (Microsoft Corporation.) O2:64bit: - BHO: (Speed Test Analysis) - {310D38FE-EB4C-467C-8781-B7C2AEB7847D} - C:\Program Files (x86)\Speed Test Analysis\ScriptHost64.dll (SpeedAnalysis.com) O2:64bit: - BHO: (Ask Toolbar) - {4F524A2D-5637-006A-76A7-7A786E7484D7} - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\ORJ-V7\Passport_x64.dll (APN LLC.) O2:64bit: - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Programme\Java\jre7\bin\ssv.dll (Oracle Corporation) O2:64bit: - BHO: (CIESpeechBHO Class) - {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll (Qualcomm Atheros Commnucations) O2:64bit: - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Programme\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) O2 - BHO: (Plus-HD-4.9) - {11111111-1111-1111-1111-110411591118} - C:\Program Files (x86)\Plus-HD-4.9\Plus-HD-4.9-bho.dll (Plus HD) O2 - BHO: (Speed Analysis 2) - {18DBB6CE-3148-4FEC-B481-103CB3290427} - C:\Program Files (x86)\Speed Analysis 2\ScriptHost.dll (SpeedAnalysis.com) O2 - BHO: (Bing Bar Helper) - {1dad3af3-ef2f-4f64-ac4b-11789189fcb6} - C:\Program Files (x86)\Microsoft\BingBar\7.3.124.0\BingExt.dll (Microsoft Corporation.) O2 - BHO: (Speed Test Analysis) - {310D38FE-EB4C-467C-8781-B7C2AEB7847D} - C:\Program Files (x86)\Speed Test Analysis\ScriptHost.dll (SpeedAnalysis.com) O2 - BHO: (Ask Toolbar) - {4F524A2D-5637-006A-76A7-7A786E7484D7} - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\ORJ-V7\Passport.dll (APN LLC.) O2 - BHO: (appbarioDE Toolbar) - {525ba996-1ce4-4677-91c5-9fc4ead2d245} - C:\Program Files (x86)\appbarioDE\prxtbappb.dll (Conduit Ltd.) O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation) O2 - BHO: (SeeSimilar02) - {93488930-185C-4CED-AFEB-0FD4930F8423} - C:\Program Files (x86)\SeeSimilar02\ScriptHost.dll (SeeSimilar.com) O2 - BHO: (Web Layers) - {976d7863-9e6c-4066-8c67-0993db9de35f} - C:\Program Files (x86)\Web Layers\WebLayersbho.dll (Web Layers) O2 - BHO: (IMinent WebBooster (BHO)) - {A09AB6EB-31B5-454C-97EC-9B294D92EE2A} - C:\Program Files (x86)\Iminent\Iminent.WebBooster.InternetExplorer.dll (SIEN) O2 - BHO: (Zula Games) - {A9337080-7CBF-4E3E-80C1-3867BEDD88E0} - C:\Program Files (x86)\Zula Games\ScriptHost.dll (ZulaGames.com) O2 - BHO: (delta Helper Object) - {C1AF5FA5-852C-4C90-812E-A7F75E011D87} - C:\Program Files (x86)\Delta\delta\1.8.24.5\bh\delta.dll (Delta-search.com) O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation) O2 - BHO: (Softonic Helper Object) - {E87806B5-E908-45FD-AF5E-957D83E58E68} - C:\Program Files (x86)\Softonic\Softonic\1.8.21.14\bh\Softonic.dll (Softonic.com) O3:64bit: - HKLM\..\Toolbar: (Ask Toolbar) - {4F524A2D-5637-006A-76A7-7A786E7484D7} - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\ORJ-V7\Passport_x64.dll (APN LLC.) O3:64bit: - HKLM\..\Toolbar: (Bing Bar) - {eec0f710-38b5-4aba-99bf-ec87564a4e13} - C:\Program Files (x86)\Microsoft\BingBar\7.3.124.0\amd64\BingExt.dll (Microsoft Corporation.) O3 - HKLM\..\Toolbar: (Ask Toolbar) - {4F524A2D-5637-006A-76A7-7A786E7484D7} - C:\Program Files (x86)\AskPartnerNetwork\Toolbar\ORJ-V7\Passport.dll (APN LLC.) O3 - HKLM\..\Toolbar: (Softonic Toolbar) - {5018CFD2-804D-4C99-9F81-25EAEA2769DE} - C:\Program Files (x86)\Softonic\Softonic\1.8.21.14\SoftonicTlbr.dll (Softonic.com) O3 - HKLM\..\Toolbar: (appbarioDE Toolbar) - {525ba996-1ce4-4677-91c5-9fc4ead2d245} - C:\Program Files (x86)\appbarioDE\prxtbappb.dll (Conduit Ltd.) O3 - HKLM\..\Toolbar: (Delta Toolbar) - {82E1477C-B154-48D3-9891-33D83C26BCD3} - C:\Program Files (x86)\Delta\delta\1.8.24.5\deltaTlbr.dll (Delta-search.com) O3 - HKLM\..\Toolbar: (Bing Bar) - {eec0f710-38b5-4aba-99bf-ec87564a4e13} - C:\Program Files (x86)\Microsoft\BingBar\7.3.124.0\BingExt.dll (Microsoft Corporation.) O3 - HKCU\..\Toolbar\WebBrowser: (appbarioDE Toolbar) - {525BA996-1CE4-4677-91C5-9FC4EAD2D245} - C:\Program Files (x86)\appbarioDE\prxtbappb.dll (Conduit Ltd.) O4:64bit: - HKLM..\Run: [BtTray] C:\Program Files (x86)\Bluetooth Suite\BtTray.exe (Qualcomm Atheros) O4:64bit: - HKLM..\Run: [BtvStack] C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe (Atheros Communications) O4:64bit: - HKLM..\Run: [RtHDVBg] C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Realtek Semiconductor) O4 - HKLM..\Run: [] File not found O4 - HKLM..\Run: [Aeria Ignite] C:\Program Files (x86)\Aeria Games\Ignite\aeriaignite.exe (Aeria Games & Entertainment) O4 - HKLM..\Run: [ApnTBMon] C:\Program Files (x86)\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe (APN) O4 - HKLM..\Run: [avgnt] C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe (Avira Operations GmbH & Co. KG) O4 - HKLM..\Run: [Iminent] C:\Program Files (x86)\Iminent\Iminent.exe (Iminent) O4 - HKLM..\Run: [IminentMessenger] C:\Program Files (x86)\Iminent\Iminent.Messengers.exe (Iminent) O4 - HKLM..\Run: [Intel AppUp(R) center] C:\Program Files (x86)\Intel\IntelAppStore\bin\ismagent.exe (Intel Corporation) O4 - HKLM..\Run: [ISBMgr.exe] C:\Program Files (x86)\Sony\ISB Utility\ISBMgr.exe (Sony Corporation) O4 - HKLM..\Run: [mcui_exe] "C:\Program Files\McAfee.com\Agent\mcagent.exe" /runkey File not found O4 - HKLM..\Run: [mobilegeni daemon] C:\Program Files (x86)\Mobogenie\DaemonProcess.exe () O4 - HKLM..\Run: [PMBVolumeWatcher] C:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe (Sony Corporation) O4 - HKLM..\Run: [StartCCC] C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe (Advanced Micro Devices, Inc.) O4 - HKCU..\Run: [Akamai NetSession Interface] C:\Users\Rezer\AppData\Local\Akamai\netsession_win.exe (Akamai Technologies, Inc.) O4 - HKCU..\Run: [BackgroundContainer] C:\Users\Rezer\AppData\Local\Conduit\BackgroundContainer\BackgroundContainer.dll (Conduit Ltd.) O4 - HKCU..\Run: [Browser Infrastructure Helper] C:\Users\Rezer\AppData\Local\Smartbar\Application\SnapDo.exe (Smartbar) O4 - HKCU..\Run: [HP Deskjet 3520 series (NET)] C:\Program Files\HP\HP Deskjet 3520 series\Bin\ScanToPCActivationApp.exe (Hewlett-Packard Co.) O4 - HKCU..\Run: [NextLive] C:\Users\Rezer\AppData\Roaming\newnext.me\nengine.dll (NewNextDotMe) O4 - HKCU..\Run: [NTRedirect] C:\Users\Rezer\AppData\Roaming\BabSolution\Shared\enhancedNT.dll () O4 - HKCU..\Run: [Overwolf] C:\Program Files (x86)\Overwolf\Overwolf.exe (Overwolf) O4 - HKCU..\Run: [WebCake Desktop] C:\Users\Rezer\AppData\Roaming\Tepfel\WebCakeDesktop.exe (Bake Cake) O4 - HKCU..\RunOnce: [FlashPlayerUpdate] C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_11_9_900_170_Plugin.exe (Adobe Systems Incorporated) O4 - Startup: C:\Users\Rezer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MyPC Backup.lnk = C:\Program Files (x86)\MyPC Backup\MyPC Backup.exe (MyPCBackup.com) O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoControlPanel = 0 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableCursorSuppression = 1 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3 O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: DisableCAD = 1 O9:64bit: - Extra 'Tools' menuitem : Send by Bluetooth to - {7815BE26-237D-41A8-A98F-F7BD75F71086} - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll (Qualcomm Atheros Commnucations) O1364bit: - gopher Prefix: missing O13 - gopher Prefix: missing O15 - HKCU\..Trusted Domains: aeriagames.com ([]http in Trusted sites) O15 - HKCU\..Trusted Domains: aeriagames.com ([]https in Trusted sites) O15 - HKCU\..Trusted Domains: clonewarsadventures.com ([]* in Trusted sites) O15 - HKCU\..Trusted Domains: freerealms.com ([]* in Trusted sites) O15 - HKCU\..Trusted Domains: soe.com ([]* in Trusted sites) O15 - HKCU\..Trusted Domains: sony.com ([]* in Trusted sites) O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.1.1 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{1A0A1E4C-842E-4469-B497-F2B174B1A3C7}: DhcpNameServer = 192.168.1.1 O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{E60843F7-BC1D-4A43-93B3-C9627732CE7A}: DhcpNameServer = 192.54.112.29 O18:64bit: - Protocol\Handler\skype4com - No CLSID value found O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL (Skype Technologies) O20:64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation) O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation) O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\WINDOWS\SysWow64\explorer.exe (Microsoft Corporation) O20 - HKLM Winlogon: UserInit - (userinit.exe) - C:\WINDOWS\SysWow64\userinit.exe (Microsoft Corporation) O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found. O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found. O30 - LSA: Security Packages - (livessp) - File not found O32 - HKLM CDRom: AutoRun - 1 O33 - MountPoints2\{482c464e-5b0b-11e3-824f-806e6f6e6963}\Shell - "" = AutoRun O33 - MountPoints2\{482c464e-5b0b-11e3-824f-806e6f6e6963}\Shell\AutoRun\command - "" = "D:\setup.exe" O34 - HKLM BootExecute: (autocheck autochk *) O35:64bit: - HKLM\..comfile [open] -- "%1" %* O35:64bit: - HKLM\..exefile [open] -- "%1" %* O35 - HKLM\..comfile [open] -- "%1" %* O35 - HKLM\..exefile [open] -- "%1" %* O37:64bit: - HKLM\...com [@ = comfile] -- "%1" %* O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %* O37 - HKLM\...com [@ = comfile] -- "%1" %* O37 - HKLM\...exe [@ = exefile] -- "%1" %* O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3) O38 - SubSystems\\Windows: (ServerDll=sxssrv,4) ========== Files/Folders - Created Within 30 Days ========== [2014.01.14 00:42:48 | 000,000,000 | ---D | C] -- C:\Users\Rezer\AppData\Local\Sony Online Entertainment [2014.01.11 21:04:23 | 000,000,000 | -HSD | C] -- C:\Config.Msi [2014.01.11 01:49:36 | 000,000,000 | ---D | C] -- C:\Users\Rezer\Desktop\Ordner vom 11.01 [2014.01.11 00:07:13 | 000,000,000 | ---D | C] -- C:\Users\Rezer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VASoftOnline.org [2014.01.11 00:06:34 | 000,000,000 | ---D | C] -- C:\Users\Rezer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MyPC Backup [2014.01.11 00:06:33 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\MyPC Backup [2014.01.11 00:05:57 | 000,000,000 | ---D | C] -- C:\Users\Rezer\AppData\Local\Deployment [2014.01.11 00:05:43 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced System Protector [2014.01.11 00:05:40 | 000,000,000 | ---D | C] -- C:\ProgramData\Systweak [2014.01.11 00:05:38 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Advanced System Protector [2014.01.11 00:05:22 | 000,000,000 | ---D | C] -- C:\ProgramData\WPM [2014.01.11 00:04:44 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RegClean Pro [2014.01.11 00:04:43 | 000,000,000 | ---D | C] -- C:\Users\Rezer\AppData\Roaming\systweak [2014.01.11 00:04:40 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\RegClean Pro [2014.01.10 23:54:51 | 000,000,000 | ---D | C] -- C:\Users\Rezer\AppData\Roaming\Iggels [2014.01.10 23:51:35 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Plus-HD-4.9 [2014.01.10 19:49:16 | 000,000,000 | ---D | C] -- C:\Users\Rezer\Desktop\Bilder [2014.01.09 15:50:58 | 000,000,000 | ---D | C] -- C:\Crash [2014.01.09 14:28:46 | 000,000,000 | ---D | C] -- C:\Users\Rezer\AppData\Local\SCE [2014.01.09 14:28:36 | 000,077,656 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\XAPOFX1_5.dll [2014.01.09 14:28:36 | 000,074,072 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\XAPOFX1_5.dll [2014.01.09 14:28:35 | 000,527,192 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\XAudio2_7.dll [2014.01.09 14:28:35 | 000,518,488 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\XAudio2_7.dll [2014.01.09 14:28:35 | 000,239,960 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\xactengine3_7.dll [2014.01.09 14:28:35 | 000,176,984 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\xactengine3_7.dll [2014.01.09 14:28:34 | 002,526,056 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\D3DCompiler_43.dll [2014.01.09 14:28:34 | 002,106,216 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\D3DCompiler_43.dll [2014.01.09 14:28:34 | 001,907,552 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\d3dcsx_43.dll [2014.01.09 14:28:34 | 001,868,128 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\d3dcsx_43.dll [2014.01.09 14:28:32 | 000,276,832 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\d3dx11_43.dll [2014.01.09 14:28:32 | 000,248,672 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\d3dx11_43.dll [2014.01.09 14:28:31 | 000,511,328 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\d3dx10_43.dll [2014.01.09 14:28:31 | 000,470,880 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\d3dx10_43.dll [2014.01.09 14:28:30 | 002,401,112 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysNative\D3DX9_43.dll [2014.01.09 14:28:30 | 001,998,168 | ---- | C] (Microsoft Corporation) -- C:\WINDOWS\SysWow64\D3DX9_43.dll [2014.01.05 08:46:57 | 000,246,784 | ---- | C] (DelphiZip) -- C:\WINDOWS\SysWow64\DelZip179.dll [2014.01.05 08:46:57 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Berichtsheft Pro 3 [2014.01.05 08:46:54 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Berichtsheft Pro 3 [2013.12.31 15:42:53 | 000,000,000 | ---D | C] -- C:\Users\Rezer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Virtual DJ [2013.12.31 15:42:53 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Virtual DJ [2013.12.31 15:41:29 | 038,445,769 | ---- | C] (ChattChitto RG©) -- C:\Users\Rezer\Desktop\Virtual-DJ-v7.0-PRO---Crack.exe [2013.12.31 14:53:36 | 000,000,000 | ---D | C] -- C:\Users\Rezer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VirtualDJ [2013.12.31 14:53:35 | 000,000,000 | ---D | C] -- C:\Users\Rezer\Documents\VirtualDJ [2013.12.31 14:53:35 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\VirtualDJ [2013.12.31 14:52:55 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Speed Test Analysis [2013.12.31 14:52:54 | 000,000,000 | ---D | C] -- C:\Users\Rezer\.android [2013.12.31 14:52:53 | 000,000,000 | ---D | C] -- C:\Users\Rezer\AppData\Roaming\SpeedTestAnalysis [2013.12.31 14:52:52 | 000,000,000 | ---D | C] -- C:\Users\Rezer\AppData\Local\cache [2013.12.31 14:52:51 | 000,000,000 | ---D | C] -- C:\Users\Rezer\AppData\Roaming\newnext.me [2013.12.31 14:52:50 | 000,000,000 | ---D | C] -- C:\Users\Rezer\Documents\Mobogenie [2013.12.31 14:52:50 | 000,000,000 | ---D | C] -- C:\Users\Rezer\AppData\Local\Mobogenie [2013.12.31 14:52:50 | 000,000,000 | ---D | C] -- C:\Users\Rezer\AppData\Local\genienext [2013.12.31 14:52:14 | 000,000,000 | ---D | C] -- C:\Users\Rezer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Mobogenie [2013.12.31 14:52:08 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Mobogenie [2013.12.26 20:46:09 | 000,000,000 | ---D | C] -- C:\ProgramData\Oracle [2013.12.26 20:45:41 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Java [2013.12.26 20:45:36 | 000,264,616 | ---- | C] (Oracle Corporation) -- C:\WINDOWS\SysWow64\javaws.exe [2013.12.26 20:45:32 | 000,175,016 | ---- | C] (Oracle Corporation) -- C:\WINDOWS\SysWow64\javaw.exe [2013.12.26 20:45:32 | 000,174,504 | ---- | C] (Oracle Corporation) -- C:\WINDOWS\SysWow64\java.exe [2013.12.26 20:45:32 | 000,096,168 | ---- | C] (Oracle Corporation) -- C:\WINDOWS\SysWow64\WindowsAccessBridge-32.dll [2013.12.26 20:44:06 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java [2013.12.25 09:47:54 | 000,000,000 | ---D | C] -- C:\Users\Rezer\AppData\Local\Google [2013.12.25 09:47:45 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Softonic [2013.12.25 04:56:47 | 000,000,000 | ---D | C] -- C:\Users\Rezer\AppData\Roaming\Youtube Downloader HD [2013.12.25 04:56:28 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Youtube Downloader HD [2013.12.25 04:56:26 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Youtube Downloader HD [2013.12.25 04:56:26 | 000,000,000 | ---D | C] -- C:\Users\Rezer\AppData\Roaming\OpenCandy [2013.12.23 13:17:49 | 000,000,000 | ---D | C] -- C:\ProgramData\ATI [2013.12.22 05:13:37 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Advanced Micro Devices, Inc [2013.12.22 05:13:36 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center [2013.12.22 05:12:41 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\ATI Technologies [2013.12.22 05:10:25 | 000,000,000 | ---D | C] -- C:\ProgramData\Package Cache [2013.12.22 05:08:54 | 000,000,000 | ---D | C] -- C:\AMD [2013.12.22 05:05:13 | 000,000,000 | ---D | C] -- C:\Program Files\AMD [2013.12.17 16:29:09 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Skype [2013.12.17 16:29:09 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Overwolf ========== Files - Modified Within 30 Days ========== [2014.01.16 00:15:00 | 000,000,884 | ---- | M] () -- C:\WINDOWS\tasks\Adobe Flash Player Updater.job [2014.01.15 23:52:00 | 000,001,346 | ---- | M] () -- C:\WINDOWS\tasks\Plus-HD-4.9-updater.job [2014.01.15 23:52:00 | 000,001,298 | ---- | M] () -- C:\WINDOWS\tasks\Plus-HD-4.9-codedownloader.job [2014.01.15 23:52:00 | 000,001,170 | ---- | M] () -- C:\WINDOWS\tasks\Plus-HD-4.9-enabler.job [2014.01.15 23:51:02 | 000,002,014 | ---- | M] () -- C:\WINDOWS\tasks\Plus-HD-4.9-chromeinstaller.job [2014.01.15 23:51:01 | 000,002,144 | ---- | M] () -- C:\WINDOWS\tasks\Plus-HD-4.9-firefoxinstaller.job [2014.01.15 23:10:36 | 001,776,918 | ---- | M] () -- C:\WINDOWS\SysNative\PerfStringBackup.INI [2014.01.15 23:10:36 | 000,765,582 | ---- | M] () -- C:\WINDOWS\SysNative\perfh007.dat [2014.01.15 23:10:36 | 000,722,476 | ---- | M] () -- C:\WINDOWS\SysNative\perfh009.dat [2014.01.15 23:10:36 | 000,159,366 | ---- | M] () -- C:\WINDOWS\SysNative\perfc007.dat [2014.01.15 23:10:36 | 000,135,592 | ---- | M] () -- C:\WINDOWS\SysNative\perfc009.dat [2014.01.15 22:48:01 | 001,370,833 | ---- | M] () -- C:\Users\Rezer\Desktop\Planetside-2-Wallpaper.jpg [2014.01.15 17:48:50 | 000,067,584 | --S- | M] () -- C:\WINDOWS\bootstat.dat [2014.01.15 17:46:48 | 268,435,456 | -HS- | M] () -- C:\swapfile.sys [2014.01.15 17:46:46 | 3391,741,952 | -HS- | M] () -- C:\hiberfil.sys [2014.01.15 15:02:13 | 000,000,294 | ---- | M] () -- C:\WINDOWS\tasks\RegClean Pro_DEFAULT.job [2014.01.15 00:58:13 | 000,000,503 | ---- | M] () -- C:\Users\Rezer\Desktop\Neues RTF-Dokument.rtf [2014.01.15 00:05:20 | 000,000,302 | ---- | M] () -- C:\WINDOWS\tasks\RegClean Pro_UPDATES.job [2014.01.11 02:05:13 | 000,831,315 | ---- | M] () -- C:\Users\Rezer\Desktop\24008-video_games_planetside_2_wallpaper.jpg [2014.01.11 02:03:00 | 000,378,868 | ---- | M] () -- C:\Users\Rezer\Desktop\mario-mario-wallpaper-hd-games.jpg [2014.01.11 00:06:34 | 000,001,109 | ---- | M] () -- C:\Users\Rezer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MyPC Backup.lnk [2014.01.10 20:18:58 | 002,180,938 | ---- | M] () -- C:\Users\Rezer\Desktop\20140108_200421.jpg [2014.01.09 18:54:30 | 000,001,029 | ---- | M] () -- C:\Users\Rezer\Desktop\Prüfungsmenü Steven Schulz.rtf [2014.01.09 14:27:29 | 000,002,545 | ---- | M] () -- C:\Users\Rezer\Desktop\PlanetSide 2 PSG.lnk [2014.01.09 12:12:01 | 000,007,607 | ---- | M] () -- C:\Users\Rezer\AppData\Local\Resmon.ResmonCfg [2014.01.06 23:31:05 | 000,693,240 | ---- | M] (Adobe Systems Incorporated) -- C:\WINDOWS\SysWow64\FlashPlayerApp.exe [2014.01.06 23:31:05 | 000,105,464 | ---- | M] (Adobe Systems Incorporated) -- C:\WINDOWS\SysWow64\FlashPlayerCPLApp.cpl [2014.01.05 08:46:58 | 000,001,109 | ---- | M] () -- C:\Users\Public\Desktop\Berichtsheft Pro 3.lnk [2014.01.03 07:43:10 | 000,357,888 | ---- | M] () -- C:\WINDOWS\SysNative\FNTCACHE.DAT [2013.12.31 15:42:25 | 038,445,769 | ---- | M] (ChattChitto RG©) -- C:\Users\Rezer\Desktop\Virtual-DJ-v7.0-PRO---Crack.exe [2013.12.27 18:10:50 | 000,020,312 | ---- | M] (Systweak Inc., (www.systweak.com)) -- C:\WINDOWS\SysNative\roboot64.exe [2013.12.23 14:07:47 | 000,145,688 | ---- | M] () -- C:\WINDOWS\hpoins18.dat ========== Files Created - No Company Name ========== [2014.01.15 22:48:00 | 001,370,833 | ---- | C] () -- C:\Users\Rezer\Desktop\Planetside-2-Wallpaper.jpg [2014.01.15 00:00:04 | 000,000,503 | ---- | C] () -- C:\Users\Rezer\Desktop\Neues RTF-Dokument.rtf [2014.01.11 02:05:13 | 000,831,315 | ---- | C] () -- C:\Users\Rezer\Desktop\24008-video_games_planetside_2_wallpaper.jpg [2014.01.11 02:02:59 | 000,378,868 | ---- | C] () -- C:\Users\Rezer\Desktop\mario-mario-wallpaper-hd-games.jpg [2014.01.11 01:16:52 | 000,001,108 | ---- | C] () -- C:\Users\Rezer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Downloads.lnk [2014.01.11 00:06:34 | 000,001,109 | ---- | C] () -- C:\Users\Rezer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MyPC Backup.lnk [2014.01.11 00:05:38 | 000,016,896 | ---- | C] () -- C:\WINDOWS\SysNative\sasnative64.exe [2014.01.11 00:05:19 | 000,000,294 | ---- | C] () -- C:\WINDOWS\tasks\RegClean Pro_DEFAULT.job [2014.01.11 00:05:17 | 000,000,302 | ---- | C] () -- C:\WINDOWS\tasks\RegClean Pro_UPDATES.job [2014.01.10 23:52:15 | 000,001,346 | ---- | C] () -- C:\WINDOWS\tasks\Plus-HD-4.9-updater.job [2014.01.10 23:52:11 | 000,001,170 | ---- | C] () -- C:\WINDOWS\tasks\Plus-HD-4.9-enabler.job [2014.01.10 23:52:02 | 000,001,298 | ---- | C] () -- C:\WINDOWS\tasks\Plus-HD-4.9-codedownloader.job [2014.01.10 23:51:51 | 000,002,144 | ---- | C] () -- C:\WINDOWS\tasks\Plus-HD-4.9-firefoxinstaller.job [2014.01.10 23:51:36 | 000,002,014 | ---- | C] () -- C:\WINDOWS\tasks\Plus-HD-4.9-chromeinstaller.job [2014.01.10 19:49:02 | 002,180,938 | ---- | C] () -- C:\Users\Rezer\Desktop\20140108_200421.jpg [2014.01.09 14:27:29 | 000,002,575 | ---- | C] () -- C:\Users\Rezer\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PlanetSide 2 PSG.lnk [2014.01.09 14:27:29 | 000,002,545 | ---- | C] () -- C:\Users\Rezer\Desktop\PlanetSide 2 PSG.lnk [2014.01.09 12:12:01 | 000,007,607 | ---- | C] () -- C:\Users\Rezer\AppData\Local\Resmon.ResmonCfg [2014.01.05 08:46:58 | 000,001,109 | ---- | C] () -- C:\Users\Public\Desktop\Berichtsheft Pro 3.lnk [2013.12.23 14:07:46 | 000,145,688 | ---- | C] () -- C:\WINDOWS\hpoins18.dat [2013.12.23 14:07:46 | 000,006,600 | ---- | C] () -- C:\WINDOWS\hpomdl18.dat [2013.12.23 13:19:34 | 000,001,029 | ---- | C] () -- C:\Users\Rezer\Desktop\Prüfungsmenü Steven Schulz.rtf [2013.12.13 10:23:24 | 000,995,342 | ---- | C] () -- C:\WINDOWS\SysWow64\amdocl_as32.exe [2013.12.13 10:23:24 | 000,798,734 | ---- | C] () -- C:\WINDOWS\SysWow64\amdocl_ld32.exe [2013.12.13 10:23:14 | 000,123,392 | ---- | C] () -- C:\WINDOWS\SysWow64\amdhdl32.dll [2013.12.02 05:39:41 | 000,000,000 | ---- | C] () -- C:\WINDOWS\ativpsrm.bin [2013.08.29 22:21:56 | 001,169,609 | ---- | C] () -- C:\WINDOWS\unins000.exe [2013.08.29 22:21:55 | 000,086,529 | ---- | C] () -- C:\WINDOWS\unins000.dat [2013.08.22 16:36:43 | 000,215,943 | ---- | C] () -- C:\WINDOWS\SysWow64\dssec.dat [2013.08.22 16:36:42 | 000,000,741 | ---- | C] () -- C:\WINDOWS\SysWow64\NOISE.DAT [2013.08.22 15:46:23 | 000,067,584 | --S- | C] () -- C:\WINDOWS\bootstat.dat [2013.08.22 08:01:23 | 000,043,131 | ---- | C] () -- C:\WINDOWS\mib.bin [2013.08.22 04:32:36 | 000,046,080 | ---- | C] () -- C:\WINDOWS\SysWow64\BWContextHandler.dll [2013.08.22 04:17:46 | 000,103,936 | ---- | C] () -- C:\WINDOWS\SysWow64\OEMLicense.dll [2013.08.22 00:55:20 | 000,364,544 | ---- | C] () -- C:\WINDOWS\SysWow64\msjetoledb40.dll [2013.08.22 00:52:39 | 000,673,088 | ---- | C] () -- C:\WINDOWS\SysWow64\mlang.dat [2013.07.28 14:16:26 | 000,000,057 | ---- | C] () -- C:\ProgramData\Ament.ini [2013.02.21 02:52:22 | 000,157,144 | ---- | C] () -- C:\WINDOWS\SysWow64\ativvsva.dat [2013.02.21 02:52:20 | 000,026,936 | ---- | C] () -- C:\WINDOWS\SysWow64\ativvsnl.dat [2013.02.21 02:52:14 | 000,003,917 | ---- | C] () -- C:\WINDOWS\SysWow64\atipblag.dat [2013.02.21 02:52:12 | 000,000,025 | ---- | C] () -- C:\WINDOWS\SysWow64\ativvsny.dat [2013.02.21 02:52:10 | 000,204,952 | ---- | C] () -- C:\WINDOWS\SysWow64\ativvsvl.dat [2013.01.29 05:51:00 | 000,074,703 | ---- | C] () -- C:\WINDOWS\SysWow64\mfc45.dll [2012.05.10 16:35:16 | 000,029,184 | ---- | C] () -- C:\WINDOWS\SysWow64\kdbsdk32.dll [2012.04.20 13:59:44 | 000,001,536 | ---- | C] () -- C:\WINDOWS\SysWow64\IusEventLog.dll ========== ZeroAccess Check ========== [2014.01.11 00:06:52 | 000,000,227 | RHS- | M] () -- C:\WINDOWS\assembly\Desktop.ini [HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64 [HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] [HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64 [HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64 "" = C:\Windows\SysNative\shell32.dll -- [2013.12.02 05:33:06 | 021,196,664 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Apartment [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] "" = %SystemRoot%\system32\shell32.dll -- [2013.12.02 05:33:06 | 018,642,504 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Apartment [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64 "" = C:\Windows\SysNative\wbem\fastprox.dll -- [2013.08.22 10:49:49 | 000,921,088 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Free [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] "" = %systemroot%\system32\wbem\fastprox.dll -- [2013.08.22 03:45:10 | 000,691,712 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Free [HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64 "" = C:\Windows\SysNative\wbem\wbemess.dll -- [2013.08.22 10:45:17 | 000,483,840 | ---- | M] (Microsoft Corporation) "ThreadingModel" = Both [HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] ========== Files - Unicode (All) ========== [2013.11.16 00:37:15 | 104,513,208 | ---- | M] ()(C:\WINDOWS\SysWow64\??LH) -- C:\WINDOWS\SysWow64\⫙LĤ [2013.11.16 00:37:15 | 104,513,208 | ---- | C] ()(C:\WINDOWS\SysWow64\??LH) -- C:\WINDOWS\SysWow64\⫙LĤ [2013.11.07 10:37:00 | 102,894,578 | ---- | M] ()(C:\WINDOWS\SysWow64\??Lc) -- C:\WINDOWS\SysWow64\⁺釈Lċ [2013.11.07 10:37:00 | 102,894,578 | ---- | C] ()(C:\WINDOWS\SysWow64\??Lc) -- C:\WINDOWS\SysWow64\⁺釈Lċ [2013.11.05 19:49:16 | 105,017,276 | ---- | M] ()(C:\WINDOWS\SysWow64\??L?) -- C:\WINDOWS\SysWow64\ꊪL‘ [2013.11.05 00:25:46 | 105,017,276 | ---- | C] ()(C:\WINDOWS\SysWow64\??L?) -- C:\WINDOWS\SysWow64\ꊪL‘ [2013.10.26 19:40:57 | 103,214,166 | ---- | M] ()(C:\WINDOWS\SysWow64\??L?) -- C:\WINDOWS\SysWow64\冿殡LŸ [2013.10.25 20:31:18 | 103,214,166 | ---- | C] ()(C:\WINDOWS\SysWow64\??L?) -- C:\WINDOWS\SysWow64\冿殡LŸ [2013.10.25 14:30:58 | 102,975,063 | ---- | M] ()(C:\WINDOWS\SysWow64\??Ll) -- C:\WINDOWS\SysWow64\如곝Lĺ [2013.10.24 19:53:12 | 102,975,063 | ---- | C] ()(C:\WINDOWS\SysWow64\??Ll) -- C:\WINDOWS\SysWow64\如곝Lĺ ========== Alternate Data Streams ========== @Alternate Data Stream - 237 bytes -> C:\Users\Rezer\SkyDrive:ms-properties < End of report > Hab nicht sehr viel ahnung von allem . |
Themen zu CPU Andauernt auf 100%! |
100%, 100% cpu-auslastung, akamai, antivir, avira, bho, bingbar, desktop, downloader, flash player, format, home, logfile, mobogenie, mobogenie entfernen, nextlive, programm, realtek, scan, security, smartbar, sweet-page, sweet-page entfernen, taskmanager, wildtangent games, windows, youtube downloader |