Zurück   Trojaner-Board > Malware entfernen > Log-Analyse und Auswertung

Log-Analyse und Auswertung: PC fängt nach 10min. an zu laggen und/ oder bleibt hängen

Windows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML.

Antwort
Alt 02.07.2014, 13:34   #1
Instinct84
 
PC fängt nach 10min. an zu laggen und/ oder bleibt hängen - Standard

PC fängt nach 10min. an zu laggen und/ oder bleibt hängen



Hallöchen zusammen,

wie im Titel schon erwähnt, fängt der Rechner nach ca. 10 min. an zu laggen, so dass die Streams dann verzert sind bzw. wenn man den Explorer dann schliessen will klappt dieses auch nicht, dann kommt die Meldung "keine Rückmeldung" und runterfahren geht dann meistens auch nicht mehr wenn man Streams guckt, aber auch bei anderen sachen.

Hier einmal die Logfiles
Code:
ATTFilter
defogger_disable by jpshortstuff (23.02.10.1)
Log created at 13:48 on 02/07/2014 (Dale)

Checking for autostart values...
HKCU\~\Run values retrieved.
HKLM\~\Run values retrieved.

Checking for services/drivers...


-=E.O.F=-
         
Code:
ATTFilter
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 01-07-2014
Ran by Dale (administrator) on HOME on 02-07-2014 13:49:25
Running from C:\Users\Dale\Downloads
Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: Deutsch (Deutschland)
Internet Explorer Version 11
Boot Mode: Normal

The only official download link for FRST:
Download link for 32-Bit version: hxxp://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/81/ 
Download link for 64-Bit Version: hxxp://www.bleepingcomputer.com/download/farbar-recovery-scan-tool/dl/82/ 
Download link from any site other than Bleeping Computer is unpermitted or outdated.
See tutorial for FRST: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\avp.exe
(Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe
() C:\Windows\SysWOW64\PnkBstrA.exe
(Microsoft Corporation) C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe
(Microsoft Corporation) C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAAnotif.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Logitech, Inc.) C:\Program Files\Logitech\SetPointP\SetPoint.exe
(Research In Motion Limited) C:\Program Files (x86)\Common Files\Research In Motion\USB Drivers\RIMBBLaunchAgent.exe
(Kaspersky Lab ZAO) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\avp.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe
(Logitech, Inc.) C:\Program Files\Common Files\logishrd\KHAL3\KHALMNPR.exe
(Logitech, Inc.) C:\Program Files\Logitech\SetPointG\SetPointII.exe
() C:\ProgramData\HP Photo Creations\Communicator.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe
(TuneUp Software) C:\Program Files (x86)\TuneUp Utilities 2013\TuneUpUtilitiesService64.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Intel Corporation) C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTmon.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe
(TuneUp Software) C:\Program Files (x86)\TuneUp Utilities 2013\TuneUpUtilitiesApp64.exe
(Research In Motion Limited) C:\Program Files (x86)\Common Files\Research In Motion\USB Drivers\BbDevMgr.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe


==================== Registry (Whitelisted) ==================

HKLM\...\Run: [IAAnotif] => C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\iaanotif.exe [186904 2009-06-04] (Intel Corporation)
HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [8060960 2009-08-04] (Realtek Semiconductor)
HKLM\...\Run: [EvtMgr6] => C:\Program Files\Logitech\SetPointP\SetPoint.exe [1744152 2011-06-24] (Logitech, Inc.)
HKLM-x32\...\Run: [RIMBBLaunchAgent.exe] => C:\Program Files (x86)\Common Files\Research In Motion\USB Drivers\RIMBBLaunchAgent.exe [267792 2013-01-17] (Research In Motion Limited)
HKLM-x32\...\Run: [AVP] => C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\avp.exe [356128 2013-10-10] (Kaspersky Lab ZAO)
HKLM-x32\...\Run: [DivXMediaServer] => C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe [450560 2013-05-20] (DivX, LLC)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [SDTray] => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe [4101584 2014-04-25] (Safer-Networking Ltd.)
Winlogon\Notify\LBTWlgn: c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll (Logitech, Inc.)
Winlogon\Notify\SDWinLogon-x32: SDWinLogon.dll [X]
HKU\S-1-5-21-224901007-3534270279-3868180721-1000\...\Run: [] => C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe [844144 2013-02-13] (Samsung)
HKU\S-1-5-21-224901007-3534270279-3868180721-1000\...\Run: [KiesAirMessage] => C:\Program Files (x86)\Samsung\Kies\KiesAirMessage.exe [578560 2013-02-06] (Samsung Electronics)
HKU\S-1-5-21-224901007-3534270279-3868180721-1000\...\Run: [KiesPreload] => C:\Program Files (x86)\Samsung\Kies\Kies.exe [1509232 2013-02-13] (Samsung)
ShellIconOverlayIdentifiers:  SkyDrive1 -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} =>  No File
ShellIconOverlayIdentifiers:  SkyDrive2 -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} =>  No File
ShellIconOverlayIdentifiers:  SkyDrive3 -> {BBACC218-34EA-4666-9D7A-C78F2274A524} =>  No File
ShellIconOverlayIdentifiers-x32:  SkyDrive1 -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} =>  No File
ShellIconOverlayIdentifiers-x32:  SkyDrive2 -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} =>  No File
ShellIconOverlayIdentifiers-x32:  SkyDrive3 -> {BBACC218-34EA-4666-9D7A-C78F2274A524} =>  No File
BootExecute: autocheck autochk * sdnclean64.exe
GroupPolicy: Group Policy on Chrome detected <======= ATTENTION

==================== Internet (Whitelisted) ====================

HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.freenet.de/
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.medion.com
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = hxxp://medion.msn.com
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank
SearchScopes: HKCU - {A14E17FF-9D09-4FDD-92BA-15F00991237C} URL = hxxp://www.google.de/search?q={searchTerms}&rlz=1I7ADFA_de
BHO: Content Blocker Plugin - {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\x64\IEExt\ContentBlocker\ie_content_blocker_plugin.dll (Kaspersky Lab ZAO)
BHO: Virtual Keyboard Plugin - {73455575-E40C-433C-9784-C78DC7761455} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\x64\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll (Kaspersky Lab ZAO)
BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: Safe Money Plugin - {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\x64\IEExt\OnlineBanking\online_banking_bho.dll (Kaspersky Lab ZAO)
BHO: Skype add-on for Internet Explorer - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Skype Technologies S.A.)
BHO: URL Advisor Plugin - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\x64\IEExt\UrlAdvisor\klwtbbho.dll (Kaspersky Lab ZAO)
BHO: Hotspot Shield Class - {F9E4A054-E9B1-4BC3-83A3-76A1AE736170} -  No File
BHO-x32: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll (Hewlett-Packard Co.)
BHO-x32: DivX Plus Web Player HTML5 <video> - {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program Files (x86)\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll (DivX, LLC)
BHO-x32: Content Blocker Plugin - {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\IEExt\ContentBlocker\ie_content_blocker_plugin.dll (Kaspersky Lab ZAO)
BHO-x32: Virtual Keyboard Plugin - {73455575-E40C-433C-9784-C78DC7761455} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll (Kaspersky Lab ZAO)
BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: Microsoft-Konto-Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: Safe Money Plugin - {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\IEExt\OnlineBanking\online_banking_bho.dll (Kaspersky Lab ZAO)
BHO-x32: Skype Browser Helper - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: URL Advisor Plugin - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\IEExt\UrlAdvisor\klwtbbho.dll (Kaspersky Lab ZAO)
BHO-x32: GretechBHO Class - {F0181C6E-9218-4792-9F3C-E8DF52B2F1AC} - C:\Program Files (x86)\GRETECH\GomPicker\GomPickerBHO.dll (Gretech Corporation)
BHO-x32: HP Smart BHO Class - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll (Hewlett-Packard Co.)
Toolbar: HKCU - No Name - {21FA44EF-376D-4D53-9B0F-8A89D3229068} -  No File
Toolbar: HKCU - No Name - {E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} -  No File
Toolbar: HKCU - No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} -  No File
DPF: HKLM-x32 {02BCC737-B171-4746-94C9-0D8A0B2C0089} hxxp://office.microsoft.com/sites/production/ieawsdc32.cab
DPF: HKLM-x32 {166B1BCA-3F9C-11CF-8075-444553540000} hxxp://download.macromedia.com/pub/shockwave/cabs/director/sw.cab
DPF: HKLM-x32 {5D6F45B3-9043-443D-A792-115447494D24} hxxp://messenger.zone.msn.com/MessengerGamesContent/GameContent/de/uno1/GAME_UNO1.cab
DPF: HKLM-x32 {67DABFBF-D0AB-41FA-9C46-CC0F21721616} hxxp://download.divx.com/player/DivXBrowserPlugin.cab
DPF: HKLM-x32 {C3F79A2B-B9B4-4A66-B012-3EE46475B072} hxxp://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
DPF: HKLM-x32 {D27CDB6E-AE6D-11CF-35B8-444553540000} hxxp://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
DPF: HKLM-x32 {E2883E8F-472F-4FB0-9522-AC9BF37916A7} hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Skype Technologies S.A.)
Handler-x32: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 192.168.178.1

FireFox:
========
FF ProfilePath: C:\Users\Dale\AppData\Roaming\Mozilla\Firefox\Profiles\xsxkn1b9.default
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_13_0_0_214.dll ()
FF Plugin: @divx.com/DivX VOD Helper,version=1.0.0 - C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
FF Plugin: @microsoft.com/GENUINE - disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_13_0_0_214.dll ()
FF Plugin-x32: @adobe.com/ShockwavePlayer - C:\Windows\system32\Adobe\Director\np32dsw.dll No File
FF Plugin-x32: @Apple.com/iTunes,version=1.0 - C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF Plugin-x32: @divx.com/DivX Plus Web Player Plug-In,version=1.0.0 - C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC)
FF Plugin-x32: @divx.com/DivX VOD Helper,version=1.0.0 - C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
FF Plugin-x32: @Google.com/GoogleEarthPlugin - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF Plugin-x32: @java.com/DTPlugin,version=10.45.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.45.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE - disabled No File
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeLive,version=1.3 - C:\Program Files (x86)\Microsoft\Office Live\npOLW.dll (Microsoft Corp.)
FF Plugin-x32: @microsoft.com/OfficeLive,version=1.5 - C:\Program Files (x86)\Microsoft\Office Live\npOLW.dll (Microsoft Corp.)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3505.0912 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @pandonetworks.com/PandoWebPlugin - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF Plugin-x32: @RIM.com/WebSLLauncher,version=1.0 - C:\Program Files (x86)\Common Files\Research In Motion\BBWebSLLauncher\NPWebSLLauncher.dll ()
FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKCU: @tools.google.com/Google Update;version=3 - C:\Users\Dale\AppData\Local\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin HKCU: @tools.google.com/Google Update;version=9 - C:\Users\Dale\AppData\Local\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin HKCU: pandonetworks.com/PandoWebPlugin - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml
FF Extension: Avira Browser Safety - C:\Users\Dale\AppData\Roaming\Mozilla\Firefox\Profiles\xsxkn1b9.default\Extensions\abs@avira.com [2014-06-15]
FF HKLM-x32\...\Firefox\Extensions: [smartwebprinting@hp.com] - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3
FF Extension: HP Smart Web Printing - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 [2010-06-28]
FF HKLM-x32\...\Firefox\Extensions: [virtualKeyboard@kaspersky.ru] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2012\FFExt\virtualKeyboard@kaspersky.ru
FF HKLM-x32\...\Firefox\Extensions:  - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\FFExt\url_advisor@kaspersky.com
FF Extension: Kaspersky URL Advisor - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\FFExt\url_advisor@kaspersky.com [2013-01-02]
FF HKLM-x32\...\Firefox\Extensions: [virtual_keyboard@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\FFExt\virtual_keyboard@kaspersky.com
FF Extension: Virtual Keyboard - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\FFExt\virtual_keyboard@kaspersky.com [2013-01-02]
FF HKLM-x32\...\Firefox\Extensions: [content_blocker@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\FFExt\content_blocker@kaspersky.com
FF Extension: Dangerous Websites Blocker - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\FFExt\content_blocker@kaspersky.com [2013-01-02]
FF HKLM-x32\...\Firefox\Extensions: [anti_banner@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\FFExt\anti_banner@kaspersky.com
FF Extension: Anti-Banner - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\FFExt\anti_banner@kaspersky.com [2013-01-02]
FF HKLM-x32\...\Firefox\Extensions: [online_banking@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\FFExt\online_banking@kaspersky.com
FF Extension: Safe Money - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\FFExt\online_banking@kaspersky.com [2013-01-02]
FF HKLM-x32\...\Firefox\Extensions: [{23fcfd51-4958-4f00-80a3-ae97e717ed8b}] - C:\Program Files (x86)\DivX\DivX Plus Web Player\firefox\DivXHTML5
FF Extension: DivX Plus Web Player HTML5 &lt;video&gt; - C:\Program Files (x86)\DivX\DivX Plus Web Player\firefox\DivXHTML5 [2013-08-18]
FF HKLM-x32\...\Firefox\Extensions: [12x3q@3244516.com] - C:\Program Files (x86)\Better-Surf\ff
FF HKCU\...\Firefox\Extensions: [smartwebprinting@hp.com] - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3
FF Extension: HP Smart Web Printing - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 [2010-06-28]
FF HKCU\...\Thunderbird\Extensions: [{380AE6CB-09B9-4373-B360-D01C2462A6E7}] - C:\Program Files\BullGuard Ltd\BullGuard\files32\backup\thunderbirdbkplugin
FF HKCU\...\Thunderbird\Extensions: [{0E810812-F4BB-4309-942A-755587587A5E}] - C:\Program Files\BullGuard Ltd\BullGuard\files32\antispam\tbspamfilter

Chrome: 
=======
CHR Plugin: (Shockwave Flash) - C:\Users\Dale\AppData\Local\Google\Chrome\Application\35.0.1916.153\PepperFlash\pepflashplayer.dll ()
CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer
CHR Plugin: (Native Client) - C:\Users\Dale\AppData\Local\Google\Chrome\Application\35.0.1916.153\ppGoogleNaClPluginChrome.dll ()
CHR Plugin: (Chrome PDF Viewer) - C:\Users\Dale\AppData\Local\Google\Chrome\Application\35.0.1916.153\pdf.dll ()
CHR Plugin: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\Browser\nppdf32.dll (Adobe Systems Inc.)
CHR Plugin: (QuickTime Plug-in 7.6.9) - C:\Program Files (x86)\QuickTime\plugins\npqtplugin.dll (Apple Inc.)
CHR Plugin: (QuickTime Plug-in 7.6.9) - C:\Program Files (x86)\QuickTime\plugins\npqtplugin2.dll (Apple Inc.)
CHR Plugin: (QuickTime Plug-in 7.6.9) - C:\Program Files (x86)\QuickTime\plugins\npqtplugin3.dll (Apple Inc.)
CHR Plugin: (QuickTime Plug-in 7.6.9) - C:\Program Files (x86)\QuickTime\plugins\npqtplugin4.dll (Apple Inc.)
CHR Plugin: (QuickTime Plug-in 7.6.9) - C:\Program Files (x86)\QuickTime\plugins\npqtplugin5.dll (Apple Inc.)
CHR Plugin: (QuickTime Plug-in 7.6.9) - C:\Program Files (x86)\QuickTime\plugins\npqtplugin6.dll (Apple Inc.)
CHR Plugin: (QuickTime Plug-in 7.6.9) - C:\Program Files (x86)\QuickTime\plugins\npqtplugin7.dll (Apple Inc.)
CHR Plugin: (RIM Handheld Application Loader) - C:\Program Files (x86)\Common Files\Research In Motion\BBWebSLLauncher\NPWebSLLauncher.dll ()
CHR Plugin: (Google Earth Plugin) - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll No File
CHR Plugin: (Java(TM) Platform SE 7 U25) - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
CHR Plugin: (Microsoft Office Live Plug-in for Firefox) - C:\Program Files (x86)\Microsoft\Office Live\npOLW.dll (Microsoft Corp.)
CHR Plugin: (Photo Gallery) - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
CHR Plugin: (iTunes Application Detector) - C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
CHR Plugin: (Java Deployment Toolkit 7.0.250.17) - C:\Windows\SysWOW64\npDeployJava1.dll No File
CHR Plugin: (Shockwave for Director) - C:\Windows\system32\Adobe\Director\np32dsw.dll No File
CHR Plugin: (Silverlight Plug-In) - c:\Program Files (x86)\Microsoft Silverlight\5.1.20513.0\npctrl.dll No File
CHR Extension: (Adblock Plus) - C:\Users\Dale\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2013-10-16]
CHR Extension: (Modul zur Link-Untersuchung) - C:\Users\Dale\AppData\Local\Google\Chrome\User Data\Default\Extensions\dchlnpcodkpfdpacogkljefecpegganj [2012-04-28]
CHR Extension: (AdBlock) - C:\Users\Dale\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2013-07-28]
CHR Extension: (Sicherer Zahlungsverkehr) - C:\Users\Dale\AppData\Local\Google\Chrome\User Data\Default\Extensions\hakdifolhalapjijoafobooafbilfakh [2013-04-13]
CHR Extension: (Virtuelle Tastatur) - C:\Users\Dale\AppData\Local\Google\Chrome\User Data\Default\Extensions\jagncdcchgajhfhijbbhecadmaiegcmh [2012-04-28]
CHR Extension: (Skype Click to Call) - C:\Users\Dale\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl [2013-04-13]
CHR Extension: (Google Wallet) - C:\Users\Dale\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-08-25]
CHR Extension: (Anti-Banner) - C:\Users\Dale\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjldcfjmnllhmgjclecdnfampinooman [2012-04-28]
CHR HKCU\...\Chrome\Extension: [nikpibnbobmbdbheedjfogjlikpgpnhp] - C:\Users\Dale\AppData\Roaming\DVDVideoSoft\dvsYoutubeDownload.crx [2012-10-10]
CHR HKLM-x32\...\Chrome\Extension: [bcogddfepkkmdcldnjjgkkhpbapjpgnb] - C:\Program Files (x86)\MediaViewerV1\MediaViewerV1alpha520\ch\MediaViewerV1alpha520.crx [2012-10-10]
CHR HKLM-x32\...\Chrome\Extension: [dchlnpcodkpfdpacogkljefecpegganj] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\ChromeExt\urladvisor.crx [2012-10-25]
CHR HKLM-x32\...\Chrome\Extension: [dficblfdgkgjnjbkonnjgghpgipfefgd] - C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha1203\ch\MediaViewV1alpha1203.crx [2012-10-25]
CHR HKLM-x32\...\Chrome\Extension: [eefkbhlcfeefgfamapcpacajlbhjmlla] - C:\Program Files (x86)\MediaBuzzV1\MediaBuzzV1mode6239\ch\MediaBuzzV1mode6239.crx [2012-10-25]
CHR HKLM-x32\...\Chrome\Extension: [fkkpmdipebhedcpojaeepnplegohefko] - C:\Program Files (x86)\MediaWatchV1\MediaWatchV1home354\ch\MediaWatchV1home354.crx [2012-10-25]
CHR HKLM-x32\...\Chrome\Extension: [hakdifolhalapjijoafobooafbilfakh] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\ChromeExt\online_banking_chrome.crx [2012-10-25]
CHR HKLM-x32\...\Chrome\Extension: [hghkgaeecgjhjkannahfamoehjmkjail] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\ChromeExt\content_blocker_chrome.crx [2012-10-25]
CHR HKLM-x32\...\Chrome\Extension: [jagncdcchgajhfhijbbhecadmaiegcmh] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\ChromeExt\virtkbd.crx [2012-10-25]
CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\Skype for Chromium\skype_chrome_extension.crx [2012-10-02]
CHR HKLM-x32\...\Chrome\Extension: [lpoimibckejjdjcfbdnajaicnklhfplh] - https://chrome.google.com/webstore/detail/lpoimibckejjdjcfbdnajaicnklhfplh [2012-10-02]
CHR HKLM-x32\...\Chrome\Extension: [mdgjgedhgcondjolkaajenbpepmdabff] - C:\Program Files (x86)\WebexpEnhancedV1\WebexpEnhancedV1alpha136\ch\WebexpEnhancedV1alpha136.crx [2012-10-02]
CHR HKLM-x32\...\Chrome\Extension: [nneajnkjbffgblleaoojgaacokifdkhm] - C:\Program Files (x86)\DivX\DivX Plus Web Player\chrome\DivXHTML5\DivXHTML5.crx [2013-07-26]
CHR HKLM-x32\...\Chrome\Extension: [pjldcfjmnllhmgjclecdnfampinooman] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\ChromeExt\ab.crx [2012-10-25]

==================== Services (Whitelisted) =================

R2 AVP; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\avp.exe [356128 2013-10-10] (Kaspersky Lab ZAO)
R3 Blackberry Device Manager; C:\Program Files (x86)\Common Files\Research In Motion\USB Drivers\BbDevMgr.exe [577536 2013-01-18] (Research In Motion Limited) [File not signed]
S3 FLEXnet Licensing Service; C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [651720 2010-08-19] (Macrovision Europe Ltd.) [File not signed]
R2 Net Driver HPZ12; C:\Windows\system32\HPZinw12.dll [71680 2010-08-06] (Hewlett-Packard) [File not signed]
R2 Pml Driver HPZ12; C:\Windows\system32\HPZipm12.dll [89600 2010-08-06] (Hewlett-Packard) [File not signed]
R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [75064 2010-07-24] ()
S3 RasMan; C:\Windows\System32\rasmans.dll [0 2010-11-20] () [File not signed]
R2 SDScannerService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [1738200 2014-04-25] (Safer-Networking Ltd.)
R2 SDUpdateService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [2081752 2014-04-25] (Safer-Networking Ltd.)
R2 SDWSCService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [171928 2014-04-25] (Safer-Networking Ltd.)
S3 TapiSrv; C:\Windows\System32\tapisrv.dll [316928 2010-11-20] () [File not signed]
R2 TuneUp.UtilitiesSvc; C:\Program Files (x86)\TuneUp Utilities 2013\TuneUpUtilitiesService64.exe [2412344 2014-01-28] (TuneUp Software)
S3 wcncsvc; C:\Windows\System32\wcncsvc.dll [367104 2010-11-20] () [File not signed]

==================== Drivers (Whitelisted) ====================

S3 61883; C:\Windows\System32\DRIVERS\61883.sys [60288 2009-07-14] (Microsoft Corporation)
S3 FsUsbExDisk; C:\Windows\SysWOW64\FsUsbExDisk.SYS [37344 2013-02-05] () [File not signed]
R0 kl1; C:\Windows\System32\DRIVERS\kl1.sys [458336 2013-12-11] (Kaspersky Lab ZAO)
U5 klflt; C:\Windows\System32\Drivers\klflt.sys [91008 2014-05-20] (Kaspersky Lab ZAO)
R1 KLIF; C:\Windows\System32\DRIVERS\klif.sys [628320 2014-05-20] (Kaspersky Lab ZAO)
R1 KLIM6; C:\Windows\System32\DRIVERS\klim6.sys [29792 2013-12-11] (Kaspersky Lab ZAO)
R3 klkbdflt; C:\Windows\System32\DRIVERS\klkbdflt.sys [29280 2013-10-10] (Kaspersky Lab ZAO)
R3 klmouflt; C:\Windows\System32\DRIVERS\klmouflt.sys [29280 2013-10-10] (Kaspersky Lab ZAO)
R1 kltdi; C:\Windows\System32\DRIVERS\kltdi.sys [54368 2013-06-19] (Kaspersky Lab ZAO)
R1 kneps; C:\Windows\System32\DRIVERS\kneps.sys [178448 2013-04-24] (Kaspersky Lab ZAO)
S3 LVPr2M64; C:\Windows\System32\DRIVERS\LVPr2M64.sys [30232 2009-10-07] ()
S3 LVPr2Mon; C:\Windows\System32\DRIVERS\LVPr2M64.sys [30232 2009-10-07] ()
S2 msikbd; C:\Windows\SysWow64\Drivers\msikbd.sys [29224 1999-04-15] (Netropa Corporation) [File not signed]
S3 RimUsb; C:\Windows\System32\Drivers\RimUsb_AMD64.sys [78336 2013-01-03] (Research In Motion Limited)
R3 RimVSerPort; C:\Windows\System32\DRIVERS\RimSerial_AMD64.sys [44544 2012-12-10] (Research in Motion Ltd)
R3 TuneUpUtilitiesDrv; C:\Program Files (x86)\TuneUp Utilities 2013\TuneUpUtilitiesDriver64.sys [11880 2012-11-16] (TuneUp Software)

==================== NetSvcs (Whitelisted) ===================


==================== One Month Created Files and Folders ========

2014-07-02 13:49 - 2014-07-02 13:49 - 02083840 _____ (Farbar) C:\Users\Dale\Downloads\FRST64.exe
2014-07-02 13:49 - 2014-07-02 13:49 - 00027586 _____ () C:\Users\Dale\Downloads\FRST.txt
2014-07-02 13:49 - 2014-07-02 13:49 - 00000000 ____D () C:\FRST
2014-07-02 13:48 - 2014-07-02 13:48 - 00000470 _____ () C:\Users\Dale\Downloads\defogger_disable.log
2014-07-02 13:48 - 2014-07-02 13:48 - 00000000 _____ () C:\Users\Dale\defogger_reenable
2014-07-02 13:47 - 2014-07-02 13:47 - 00050477 _____ () C:\Users\Dale\Downloads\Defogger.exe
2014-07-02 13:38 - 2014-07-02 13:39 - 00000000 ____D () C:\Windows\LastGood
2014-06-30 16:13 - 2014-06-30 16:13 - 00000000 ____D () C:\Users\Dale\Desktop\Neuer Ordner (2)
2014-06-30 16:13 - 2013-12-10 17:20 - 00381763 _____ () C:\Users\Dale\Desktop\CoreTemp64.zip
2014-06-30 16:11 - 2014-06-30 16:11 - 00000833 _____ () C:\Users\Public\Desktop\CPUID CPU-Z.lnk
2014-06-30 16:11 - 2014-06-30 16:11 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CPUID
2014-06-30 16:11 - 2014-06-30 16:11 - 00000000 ____D () C:\Program Files\CPUID
2014-06-30 16:10 - 2014-06-30 16:10 - 01496480 _____ ( ) C:\Users\Dale\Downloads\cpu-z_1.692-setup-en.exe
2014-06-30 14:35 - 2014-06-30 14:35 - 00000340 _____ () C:\Windows\LkmdfCoInst.log
2014-06-25 19:39 - 2014-06-29 10:19 - 00010752 _____ () C:\Users\Dale\Documents\Dana Bewerbung Ferienjob Ikea.wps
2014-06-24 21:30 - 2014-06-24 21:30 - 00010240 _____ () C:\Users\Dale\Documents\Bewerbung Dana Edeka.wps
2014-06-24 21:15 - 2014-06-24 21:16 - 00016384 _____ () C:\Users\Dale\Documents\Dana Bewerbung Ferienjob Edeka.wps
2014-06-24 21:04 - 2014-06-29 10:19 - 00011264 _____ () C:\Users\Dale\Documents\Lebenslauf Dana.wps
2014-06-23 10:54 - 2014-06-23 15:25 - 00126976 _____ () C:\Users\Dale\Documents\Kündigung Hortplatz Lisa.wps
2014-06-22 11:01 - 2014-06-30 18:06 - 00000000 ____D () C:\ProgramData\Spybot - Search & Destroy
2014-06-22 11:01 - 2014-06-22 11:02 - 00000000 ____D () C:\Program Files (x86)\Spybot - Search & Destroy 2
2014-06-22 11:01 - 2014-06-22 11:01 - 00001395 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot-S&D Start Center.lnk
2014-06-22 11:01 - 2014-06-22 11:01 - 00001383 _____ () C:\Users\Public\Desktop\Spybot-S&D Start Center.lnk
2014-06-22 11:01 - 2014-06-22 11:01 - 00000000 ____D () C:\Windows\System32\Tasks\Safer-Networking
2014-06-22 11:01 - 2014-06-22 11:01 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy 2
2014-06-22 11:01 - 2013-09-20 10:49 - 00021040 _____ (Safer Networking Limited) C:\Windows\system32\sdnclean64.exe
2014-06-22 10:58 - 2014-06-22 10:58 - 00961360 _____ (Chip Digital GmbH) C:\Users\Dale\Downloads\SpyBot Search Destroy - CHIP-Installer.exe
2014-06-19 18:08 - 2014-06-19 19:14 - 00182146 _____ () C:\Windows\PFRO.log
2014-06-19 17:17 - 2014-07-02 13:37 - 00003562 _____ () C:\Windows\setupact.log
2014-06-19 17:17 - 2014-06-19 17:17 - 00000000 _____ () C:\Windows\setuperr.log
2014-06-19 16:32 - 2014-06-30 15:55 - 00122584 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2014-06-19 16:32 - 2014-06-19 16:32 - 00001106 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk
2014-06-19 16:32 - 2014-06-19 16:32 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 
2014-06-19 16:32 - 2014-06-19 16:32 - 00000000 ____D () C:\ProgramData\Malwarebytes
2014-06-19 16:32 - 2014-06-19 16:32 - 00000000 ____D () C:\Program Files (x86)\ Malwarebytes Anti-Malware 
2014-06-19 16:32 - 2014-05-12 07:26 - 00091352 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2014-06-19 16:32 - 2014-05-12 07:26 - 00063704 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2014-06-19 16:32 - 2014-05-12 07:25 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2014-06-19 16:20 - 2014-06-19 16:20 - 00002770 _____ () C:\Windows\System32\Tasks\CCleanerSkipUAC
2014-06-19 16:20 - 2014-06-19 16:20 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2014-06-19 16:20 - 2014-06-19 16:20 - 00000000 ____D () C:\Program Files\CCleaner
2014-06-19 16:14 - 2014-06-19 16:14 - 03673664 _____ (Piriform Ltd) C:\Users\Dale\Downloads\ccsetup414_slim.exe
2014-06-19 16:12 - 2014-06-19 16:12 - 17292760 _____ (Malwarebytes Corporation ) C:\Users\Dale\Downloads\mbam-setup-2.0.2.1012 (1).exe
2014-06-19 16:11 - 2014-06-19 16:12 - 17292760 _____ (Malwarebytes Corporation ) C:\Users\Dale\Downloads\mbam-setup-2.0.2.1012.exe
2014-06-15 21:05 - 2014-01-09 04:22 - 05694464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll
2014-06-15 21:05 - 2014-01-04 00:44 - 06574592 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll
2014-06-15 20:50 - 2014-04-25 04:34 - 00801280 _____ (Microsoft Corporation) C:\Windows\system32\usp10.dll
2014-06-15 20:50 - 2014-04-25 04:06 - 00626688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\usp10.dll
2014-06-15 20:50 - 2014-03-25 04:43 - 14175744 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2014-06-15 20:50 - 2014-03-25 04:09 - 12874240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2014-06-15 20:49 - 2014-04-05 04:47 - 01903552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2014-06-15 20:49 - 2014-04-05 04:47 - 00288192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS
2014-06-15 20:48 - 2014-03-26 16:44 - 02002432 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll
2014-06-15 20:48 - 2014-03-26 16:44 - 01882112 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2014-06-15 20:48 - 2014-03-26 16:41 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml6r.dll
2014-06-15 20:48 - 2014-03-26 16:41 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll
2014-06-15 20:48 - 2014-03-26 16:27 - 01389056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll
2014-06-15 20:48 - 2014-03-26 16:27 - 01237504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll
2014-06-15 20:48 - 2014-03-26 16:25 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6r.dll
2014-06-15 20:48 - 2014-03-26 16:25 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll
2014-06-15 19:51 - 2014-06-15 19:51 - 04536336 _____ (Avira Operations GmbH & Co. KG) C:\Users\Dale\Downloads\avira_de_av_4021446951__ws.exe
2014-06-15 19:39 - 2013-10-02 03:10 - 00044544 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbGDCoInstaller.dll
2014-06-15 19:38 - 2013-10-02 04:22 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\TsUsbFlt.sys
2014-06-15 19:38 - 2013-10-02 04:11 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyControl.exe
2014-06-15 19:38 - 2013-10-02 04:08 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll
2014-06-15 19:38 - 2013-10-02 03:48 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\MsRdpWebAccess.dll
2014-06-15 19:38 - 2013-10-02 03:48 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\wksprtPS.dll
2014-06-15 19:38 - 2013-10-02 03:29 - 00062976 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll
2014-06-15 19:38 - 2013-10-02 02:15 - 01057280 _____ (Microsoft Corporation) C:\Windows\system32\rdvidcrl.dll
2014-06-15 19:38 - 2013-10-02 02:14 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MsRdpWebAccess.dll
2014-06-15 19:38 - 2013-10-02 02:14 - 00017920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wksprtPS.dll
2014-06-15 19:38 - 2013-10-02 02:08 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\TSWbPrxy.exe
2014-06-15 19:38 - 2013-10-02 02:01 - 00420864 _____ (Microsoft Corporation) C:\Windows\system32\wksprt.exe
2014-06-15 19:38 - 2013-10-02 01:58 - 00053248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll
2014-06-15 19:38 - 2013-10-02 01:31 - 01147392 _____ (Microsoft Corporation) C:\Windows\system32\mstsc.exe
2014-06-15 19:38 - 2013-10-02 01:08 - 00855552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdvidcrl.dll
2014-06-15 19:38 - 2013-10-02 00:34 - 01068544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstsc.exe
2014-06-15 18:59 - 2014-06-15 18:59 - 00000000 ____D () C:\Users\Dale\AppData\Local\Microsoft Help
2014-06-15 18:56 - 2014-05-30 12:21 - 23414784 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-06-15 18:56 - 2014-05-30 12:02 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-06-15 18:56 - 2014-05-30 12:02 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2014-06-15 18:56 - 2014-05-30 11:45 - 02768384 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-06-15 18:56 - 2014-05-30 11:39 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-06-15 18:56 - 2014-05-30 11:39 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-06-15 18:56 - 2014-05-30 11:38 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2014-06-15 18:56 - 2014-05-30 11:28 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-06-15 18:56 - 2014-05-30 11:27 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-06-15 18:56 - 2014-05-30 11:24 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-06-15 18:56 - 2014-05-30 11:21 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-06-15 18:56 - 2014-05-30 11:21 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2014-06-15 18:56 - 2014-05-30 11:20 - 00752640 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2014-06-15 18:56 - 2014-05-30 11:18 - 17271296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-06-15 18:56 - 2014-05-30 11:11 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2014-06-15 18:56 - 2014-05-30 11:08 - 05782528 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-06-15 18:56 - 2014-05-30 11:06 - 00452096 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-06-15 18:56 - 2014-05-30 11:02 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-06-15 18:56 - 2014-05-30 10:55 - 00038400 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-06-15 18:56 - 2014-05-30 10:49 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-06-15 18:56 - 2014-05-30 10:46 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-06-15 18:56 - 2014-05-30 10:44 - 00455168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2014-06-15 18:56 - 2014-05-30 10:44 - 00295424 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-06-15 18:56 - 2014-05-30 10:43 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2014-06-15 18:56 - 2014-05-30 10:42 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2014-06-15 18:56 - 2014-05-30 10:38 - 02179072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2014-06-15 18:56 - 2014-05-30 10:35 - 00608768 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-06-15 18:56 - 2014-05-30 10:34 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2014-06-15 18:56 - 2014-05-30 10:33 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2014-06-15 18:56 - 2014-05-30 10:30 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2014-06-15 18:56 - 2014-05-30 10:29 - 00631808 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-06-15 18:56 - 2014-05-30 10:28 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2014-06-15 18:56 - 2014-05-30 10:27 - 00592896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2014-06-15 18:56 - 2014-05-30 10:24 - 01249280 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2014-06-15 18:56 - 2014-05-30 10:23 - 02040832 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-06-15 18:56 - 2014-05-30 10:16 - 00368128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2014-06-15 18:56 - 2014-05-30 10:10 - 00032256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2014-06-15 18:56 - 2014-05-30 10:06 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2014-06-15 18:56 - 2014-05-30 10:04 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2014-06-15 18:56 - 2014-05-30 10:02 - 00242688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2014-06-15 18:56 - 2014-05-30 09:56 - 04244992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-06-15 18:56 - 2014-05-30 09:56 - 02266112 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-06-15 18:56 - 2014-05-30 09:54 - 00526336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2014-06-15 18:56 - 2014-05-30 09:50 - 01068032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2014-06-15 18:56 - 2014-05-30 09:49 - 01964544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2014-06-15 18:56 - 2014-05-30 09:43 - 13522944 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-06-15 18:56 - 2014-05-30 09:40 - 11725312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-06-15 18:56 - 2014-05-30 09:30 - 01398272 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-06-15 18:56 - 2014-05-30 09:21 - 01790976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2014-06-15 18:56 - 2014-05-30 09:15 - 01143296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-06-15 18:56 - 2014-05-30 09:13 - 00846336 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-06-15 18:56 - 2014-05-30 09:13 - 00704512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2014-06-15 18:55 - 2014-06-08 11:13 - 00506368 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2014-06-15 18:55 - 2014-06-08 11:08 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2014-06-15 18:55 - 2014-04-12 04:22 - 00155072 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2014-06-15 18:55 - 2014-04-12 04:22 - 00095680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2014-06-15 18:55 - 2014-04-12 04:19 - 01460736 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2014-06-15 18:55 - 2014-04-12 04:19 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2014-06-15 18:55 - 2014-04-12 04:19 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2014-06-15 18:55 - 2014-04-12 04:19 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2014-06-15 18:55 - 2014-04-12 04:19 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2014-06-15 18:55 - 2014-04-12 04:12 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2014-06-15 18:55 - 2014-04-12 04:10 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2014-06-15 18:55 - 2014-03-04 11:47 - 05550016 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2014-06-15 18:55 - 2014-03-04 11:44 - 00728064 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2014-06-15 18:55 - 2014-03-04 11:44 - 00722944 _____ (Microsoft Corporation) C:\Windows\system32\objsel.dll
2014-06-15 18:55 - 2014-03-04 11:44 - 00424960 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2014-06-15 18:55 - 2014-03-04 11:44 - 00340992 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2014-06-15 18:55 - 2014-03-04 11:44 - 00314880 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2014-06-15 18:55 - 2014-03-04 11:44 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2014-06-15 18:55 - 2014-03-04 11:44 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2014-06-15 18:55 - 2014-03-04 11:44 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\wincredprovider.dll
2014-06-15 18:55 - 2014-03-04 11:43 - 00455168 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe
2014-06-15 18:55 - 2014-03-04 11:43 - 00057344 _____ (Microsoft Corporation) C:\Windows\system32\cngprovider.dll
2014-06-15 18:55 - 2014-03-04 11:43 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\adprovider.dll
2014-06-15 18:55 - 2014-03-04 11:43 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\capiprovider.dll
2014-06-15 18:55 - 2014-03-04 11:43 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\dpapiprovider.dll
2014-06-15 18:55 - 2014-03-04 11:43 - 00044544 _____ (Microsoft Corporation) C:\Windows\system32\dimsroam.dll
2014-06-15 18:55 - 2014-03-04 11:43 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2014-06-15 18:55 - 2014-03-04 11:20 - 03969984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2014-06-15 18:55 - 2014-03-04 11:20 - 03914176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2014-06-15 18:55 - 2014-03-04 11:17 - 00550912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2014-06-15 18:55 - 2014-03-04 11:17 - 00538112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\objsel.dll
2014-06-15 18:55 - 2014-03-04 11:17 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2014-06-15 18:55 - 2014-03-04 11:17 - 00247808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2014-06-15 18:55 - 2014-03-04 11:17 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll
2014-06-15 18:55 - 2014-03-04 11:17 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
2014-06-15 18:55 - 2014-03-04 11:17 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cngprovider.dll
2014-06-15 18:55 - 2014-03-04 11:17 - 00049664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adprovider.dll
2014-06-15 18:55 - 2014-03-04 11:17 - 00048128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\capiprovider.dll
2014-06-15 18:55 - 2014-03-04 11:17 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpapiprovider.dll
2014-06-15 18:55 - 2014-03-04 11:17 - 00036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dimsroam.dll
2014-06-15 18:55 - 2014-03-04 11:17 - 00035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wincredprovider.dll
2014-06-15 18:55 - 2014-03-04 11:17 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll
2014-06-15 18:55 - 2014-03-04 11:16 - 00274944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2014-06-15 18:55 - 2013-09-25 04:23 - 01030144 _____ (Microsoft Corporation) C:\Windows\system32\TSWorkspace.dll
2014-06-15 18:55 - 2013-09-25 03:57 - 00792576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSWorkspace.dll
2014-06-15 18:54 - 2014-05-08 11:32 - 03178496 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll
2014-06-15 18:54 - 2014-05-08 11:32 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\RdpGroupPolicyExtension.dll
2014-06-14 14:49 - 2014-06-14 14:52 - 00000000 ____D () C:\Users\Dale\Downloads\Pickleball
2014-06-11 19:06 - 2014-06-13 15:56 - 00049664 _____ () C:\Users\Dale\Documents\Übernachtung BTO 27.06.2014.wps
2014-06-08 08:24 - 2014-06-08 08:24 - 00000000 ____D () C:\Users\Dale\AppData\Local\Macromedia
2014-06-03 20:55 - 2014-06-03 20:53 - 00040988 _____ () C:\Users\Dale\Documents\qrcode.jpeg
2014-06-03 20:52 - 2014-06-03 20:53 - 00040988 _____ () C:\Users\Dale\Downloads\qrcode.jpeg

==================== One Month Modified Files and Folders =======

2014-07-02 13:49 - 2014-07-02 13:49 - 02083840 _____ (Farbar) C:\Users\Dale\Downloads\FRST64.exe
2014-07-02 13:49 - 2014-07-02 13:49 - 00027586 _____ () C:\Users\Dale\Downloads\FRST.txt
2014-07-02 13:49 - 2014-07-02 13:49 - 00000000 ____D () C:\FRST
2014-07-02 13:48 - 2014-07-02 13:48 - 00000470 _____ () C:\Users\Dale\Downloads\defogger_disable.log
2014-07-02 13:48 - 2014-07-02 13:48 - 00000000 _____ () C:\Users\Dale\defogger_reenable
2014-07-02 13:48 - 2009-12-28 19:44 - 00000000 ____D () C:\Users\Dale
2014-07-02 13:47 - 2014-07-02 13:47 - 00050477 _____ () C:\Users\Dale\Downloads\Defogger.exe
2014-07-02 13:47 - 2012-04-01 16:43 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-07-02 13:45 - 2010-09-13 17:09 - 00003910 _____ () C:\Windows\System32\Tasks\User_Feed_Synchronization-{463EE08C-9BDE-480E-BDAD-021B1DE03AD5}
2014-07-02 13:45 - 2009-07-14 06:45 - 00010096 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-07-02 13:45 - 2009-07-14 06:45 - 00010096 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-07-02 13:39 - 2014-07-02 13:38 - 00000000 ____D () C:\Windows\LastGood
2014-07-02 13:39 - 2009-12-28 19:44 - 01159792 _____ () C:\Windows\WindowsUpdate.log
2014-07-02 13:38 - 2014-04-03 19:20 - 00000322 _____ () C:\Windows\Tasks\HP Photo Creations Communicator.job
2014-07-02 13:38 - 2010-01-06 19:36 - 00000000 ____D () C:\ProgramData\Kaspersky Lab
2014-07-02 13:37 - 2014-06-19 17:17 - 00003562 _____ () C:\Windows\setupact.log
2014-07-02 13:37 - 2010-10-07 21:28 - 00001102 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-07-02 13:37 - 2009-07-14 07:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-07-01 19:05 - 2010-10-20 19:47 - 00001116 _____ () C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-224901007-3534270279-3868180721-1000UA.job
2014-07-01 19:05 - 2010-10-20 19:47 - 00001064 _____ () C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-224901007-3534270279-3868180721-1000Core.job
2014-06-30 19:16 - 2010-10-07 21:28 - 00001106 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-06-30 18:06 - 2014-06-22 11:01 - 00000000 ____D () C:\ProgramData\Spybot - Search & Destroy
2014-06-30 16:13 - 2014-06-30 16:13 - 00000000 ____D () C:\Users\Dale\Desktop\Neuer Ordner (2)
2014-06-30 16:11 - 2014-06-30 16:11 - 00000833 _____ () C:\Users\Public\Desktop\CPUID CPU-Z.lnk
2014-06-30 16:11 - 2014-06-30 16:11 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CPUID
2014-06-30 16:11 - 2014-06-30 16:11 - 00000000 ____D () C:\Program Files\CPUID
2014-06-30 16:10 - 2014-06-30 16:10 - 01496480 _____ ( ) C:\Users\Dale\Downloads\cpu-z_1.692-setup-en.exe
2014-06-30 15:55 - 2014-06-19 16:32 - 00122584 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2014-06-30 14:35 - 2014-06-30 14:35 - 00000340 _____ () C:\Windows\LkmdfCoInst.log
2014-06-30 14:35 - 2011-10-10 18:23 - 00018960 _____ (Logitech, Inc.) C:\Windows\system32\Drivers\LNonPnP.sys
2014-06-30 14:35 - 2010-04-30 17:02 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Logitech
2014-06-29 10:27 - 2009-07-14 19:58 - 00713974 _____ () C:\Windows\system32\perfh007.dat
2014-06-29 10:27 - 2009-07-14 19:58 - 00154090 _____ () C:\Windows\system32\perfc007.dat
2014-06-29 10:27 - 2009-07-14 07:13 - 01648728 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-06-29 10:19 - 2014-06-25 19:39 - 00010752 _____ () C:\Users\Dale\Documents\Dana Bewerbung Ferienjob Ikea.wps
2014-06-29 10:19 - 2014-06-24 21:04 - 00011264 _____ () C:\Users\Dale\Documents\Lebenslauf Dana.wps
2014-06-29 10:19 - 2009-12-29 11:27 - 00014026 _____ () C:\Users\Dale\AppData\Roaming\wklnhst.dat
2014-06-29 10:17 - 2009-07-14 07:32 - 00000000 ____D () C:\Windows\system32\FxsTmp
2014-06-25 19:00 - 2010-10-20 19:47 - 00004084 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-224901007-3534270279-3868180721-1000UA
2014-06-25 19:00 - 2010-10-20 19:47 - 00003688 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-224901007-3534270279-3868180721-1000Core
2014-06-24 21:30 - 2014-06-24 21:30 - 00010240 _____ () C:\Users\Dale\Documents\Bewerbung Dana Edeka.wps
2014-06-24 21:16 - 2014-06-24 21:15 - 00016384 _____ () C:\Users\Dale\Documents\Dana Bewerbung Ferienjob Edeka.wps
2014-06-23 20:35 - 2010-08-19 18:19 - 00000000 ____D () C:\Users\Dale\Documents\BitLord
2014-06-23 15:25 - 2014-06-23 10:54 - 00126976 _____ () C:\Users\Dale\Documents\Kündigung Hortplatz Lisa.wps
2014-06-22 17:38 - 2010-09-21 20:27 - 00000000 ____D () C:\Users\Dale\TSV SPANDAU PIC`S
2014-06-22 17:37 - 2010-09-28 20:10 - 00140288 ___SH () C:\Users\Dale\Thumbs.db
2014-06-22 12:39 - 2010-08-07 22:02 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\2mGames
2014-06-22 11:02 - 2014-06-22 11:01 - 00000000 ____D () C:\Program Files (x86)\Spybot - Search & Destroy 2
2014-06-22 11:01 - 2014-06-22 11:01 - 00001395 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot-S&D Start Center.lnk
2014-06-22 11:01 - 2014-06-22 11:01 - 00001383 _____ () C:\Users\Public\Desktop\Spybot-S&D Start Center.lnk
2014-06-22 11:01 - 2014-06-22 11:01 - 00000000 ____D () C:\Windows\System32\Tasks\Safer-Networking
2014-06-22 11:01 - 2014-06-22 11:01 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy 2
2014-06-22 10:58 - 2014-06-22 10:58 - 00961360 _____ (Chip Digital GmbH) C:\Users\Dale\Downloads\SpyBot Search Destroy - CHIP-Installer.exe
2014-06-21 16:40 - 2014-05-20 16:58 - 00011264 _____ () C:\Users\Dale\Documents\Erik Arbeitsamt Ende befristeter Vertrag.wps
2014-06-21 16:25 - 2013-10-04 17:41 - 00018944 _____ () C:\Users\Dale\Documents\Bewerbung Erik AWB.wps
2014-06-21 16:03 - 2010-01-07 23:33 - 00011776 _____ () C:\Users\Dale\Documents\Lebenslauf Erik.wps
2014-06-19 19:42 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\NDF
2014-06-19 19:14 - 2014-06-19 18:08 - 00182146 _____ () C:\Windows\PFRO.log
2014-06-19 18:24 - 2014-04-25 16:02 - 00000000 ____D () C:\Program Files (x86)\MediaBuzzV1
2014-06-19 18:24 - 2014-03-23 11:28 - 00000000 ____D () C:\Program Files (x86)\MediaWatchV1
2014-06-19 18:24 - 2014-02-28 14:59 - 00000000 ____D () C:\Program Files (x86)\MediaViewV1
2014-06-19 18:24 - 2014-02-24 22:04 - 00000000 ____D () C:\Program Files (x86)\MediaViewerV1
2014-06-19 18:24 - 2014-01-29 20:36 - 00000000 ____D () C:\Program Files (x86)\MediaPlayerV1
2014-06-19 18:24 - 2013-05-26 12:40 - 00000000 ____D () C:\Users\Dale\AppData\Roaming\Iminent
2014-06-19 18:24 - 2013-05-26 12:40 - 00000000 ____D () C:\ProgramData\Iminent
2014-06-19 18:24 - 2013-05-17 15:39 - 00000000 ____D () C:\Windows\Minidump
2014-06-19 18:23 - 2013-11-12 17:51 - 00000000 ____D () C:\Program Files (x86)\Iminent
2014-06-19 18:23 - 2013-10-06 18:17 - 00000000 ____D () C:\Program Files (x86)\CSBrowserHelper
2014-06-19 17:17 - 2014-06-19 17:17 - 00000000 _____ () C:\Windows\setuperr.log
2014-06-19 16:32 - 2014-06-19 16:32 - 00001106 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk
2014-06-19 16:32 - 2014-06-19 16:32 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 
2014-06-19 16:32 - 2014-06-19 16:32 - 00000000 ____D () C:\ProgramData\Malwarebytes
2014-06-19 16:32 - 2014-06-19 16:32 - 00000000 ____D () C:\Program Files (x86)\ Malwarebytes Anti-Malware 
2014-06-19 16:22 - 2009-12-29 15:02 - 00000000 ____D () C:\Users\Dale\Tracing
2014-06-19 16:22 - 2009-11-06 22:12 - 00000000 ____D () C:\Windows\Panther
2014-06-19 16:20 - 2014-06-19 16:20 - 00002770 _____ () C:\Windows\System32\Tasks\CCleanerSkipUAC
2014-06-19 16:20 - 2014-06-19 16:20 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2014-06-19 16:20 - 2014-06-19 16:20 - 00000000 ____D () C:\Program Files\CCleaner
2014-06-19 16:14 - 2014-06-19 16:14 - 03673664 _____ (Piriform Ltd) C:\Users\Dale\Downloads\ccsetup414_slim.exe
2014-06-19 16:12 - 2014-06-19 16:12 - 17292760 _____ (Malwarebytes Corporation ) C:\Users\Dale\Downloads\mbam-setup-2.0.2.1012 (1).exe
2014-06-19 16:12 - 2014-06-19 16:11 - 17292760 _____ (Malwarebytes Corporation ) C:\Users\Dale\Downloads\mbam-setup-2.0.2.1012.exe
2014-06-18 18:11 - 2010-10-07 21:28 - 00004102 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2014-06-18 18:11 - 2010-10-07 21:28 - 00003850 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2014-06-15 19:51 - 2014-06-15 19:51 - 04536336 _____ (Avira Operations GmbH & Co. KG) C:\Users\Dale\Downloads\avira_de_av_4021446951__ws.exe
2014-06-15 19:31 - 2013-08-10 15:02 - 00000000 ____D () C:\Windows\system32\MRT
2014-06-15 19:30 - 2009-11-06 16:54 - 00000000 ____D () C:\ProgramData\Microsoft Help
2014-06-15 19:00 - 2014-05-11 18:46 - 00000000 ___SD () C:\Windows\system32\CompatTel
2014-06-15 18:59 - 2014-06-15 18:59 - 00000000 ____D () C:\Users\Dale\AppData\Local\Microsoft Help
2014-06-15 14:06 - 2010-08-22 14:05 - 00000000 ____D () C:\Users\Dale\AppData\Local\Nero
2014-06-15 09:13 - 2009-07-14 07:08 - 00014742 _____ () C:\Windows\Tasks\SCHEDLGU.TXT
2014-06-14 14:57 - 2010-02-09 22:44 - 00000000 ____D () C:\Users\Dale\AppData\Local\Apple Computer
2014-06-14 14:52 - 2014-06-14 14:49 - 00000000 ____D () C:\Users\Dale\Downloads\Pickleball
2014-06-13 15:56 - 2014-06-11 19:06 - 00049664 _____ () C:\Users\Dale\Documents\Übernachtung BTO 27.06.2014.wps
2014-06-08 11:13 - 2014-06-15 18:55 - 00506368 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2014-06-08 11:08 - 2014-06-15 18:55 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2014-06-08 08:24 - 2014-06-08 08:24 - 00000000 ____D () C:\Users\Dale\AppData\Local\Macromedia
2014-06-08 08:24 - 2012-04-01 16:43 - 00692400 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-06-08 08:24 - 2012-04-01 16:43 - 00003822 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2014-06-08 08:24 - 2011-05-16 19:28 - 00070832 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-06-03 20:53 - 2014-06-03 20:55 - 00040988 _____ () C:\Users\Dale\Documents\qrcode.jpeg
2014-06-03 20:53 - 2014-06-03 20:52 - 00040988 _____ () C:\Users\Dale\Downloads\qrcode.jpeg
2014-06-02 18:21 - 2010-11-06 17:54 - 00000000 ____D () C:\Users\Dale\Documents\Eigene Scans

Files to move or delete:
====================
C:\ProgramData\PKP_DLeo.DAT
C:\ProgramData\PKP_DLes.DAT
C:\ProgramData\PKP_DLet.DAT
C:\ProgramData\PKP_DLev.DAT
C:\Users\Dale\Bubblets.dat
C:\Users\Dale\iTunesSetup.exe
C:\Users\Dale\OODiskRecovery664Ger.exe
C:\Users\Dale\wlsetup-web.exe
C:\Users\Public\dcmsvcsetup.exe
C:\Users\Public\invokesi.exe


Some content of TEMP:
====================
C:\Users\Dale\AppData\Local\Temp\avgnt.exe


==================== Bamital & volsnap Check =================

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2014-06-22 13:20

==================== End Of Log ============================
         
Code:
ATTFilter
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 01-07-2014
Ran by Dale at 2014-07-02 13:50:15
Running from C:\Users\Dale\Downloads
Boot Mode: Normal
==========================================================


==================== Security Center ========================

AV: Kaspersky Internet Security (Enabled - Up to date) {C3113FBF-4BCB-4461-D78D-6EDFEC9593E5}
AS: Kaspersky Internet Security (Enabled - Up to date) {7870DE5B-6DF1-4BEF-ED3D-55AD9712D958}
AS: Windows Defender (Enabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Spybot - Search and Destroy (Enabled - Out of date) {9BC38DF1-3CCA-732D-A930-C1CA5F20A4B0}
FW: Kaspersky Internet Security (Enabled) {FB2ABE9A-01A4-4539-FCD2-C7EA1246D49E}

==================== Installed Programs ======================

 Update for Microsoft Office 2007 (KB2508958) (HKLM-x32\...\{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{0C5823AA-7B6F-44E1-8D5B-8FD1FF0E6438}) (Version:  - Microsoft)
64 Bit HP CIO Components Installer (Version: 7.2.8 - Hewlett-Packard) Hidden
Activation Assistant for the 2007 Microsoft Office suites (x32 Version: 1.0 - Microsoft Corporation) Hidden
Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 2.7.1.19610 - Adobe Systems Incorporated)
Adobe AIR (x32 Version: 2.7.1.19610 - Adobe Systems Incorporated) Hidden
Adobe Anchor Service CS3 (x32 Version: 1.0 - Adobe Systems Incorporated) Hidden
Adobe Asset Services CS3 (x32 Version: 3 - Adobe Systems Incorporated) Hidden
Adobe Bridge CS4 (x32 Version: 3 - Adobe Systems Incorporated) Hidden
Adobe Bridge Start Meeting (x32 Version: 1.0 - Adobe Systems Incorporated) Hidden
Adobe CMaps (x32 Version: 1.0 - Adobe Systems Incorporated) Hidden
Adobe Color - Photoshop Specific (x32 Version: 1.0 - Adobe Systems Incorporated) Hidden
Adobe Color Common Settings (x32 Version: 1.0 - Adobe Systems Incorporated) Hidden
Adobe Color EU Extra Settings (x32 Version: 1.0 - Adobe Systems Incorporated) Hidden
Adobe Color JA Extra Settings (x32 Version: 1.0 - Adobe Systems Incorporated) Hidden
Adobe Color NA Recommended Settings (x32 Version: 1.0 - Adobe Systems Incorporated) Hidden
Adobe Default Language CS3 (x32 Version: 1.0 - Adobe Systems Incorporated) Hidden
Adobe Device Central CS3 (x32 Version: 1.0 - Adobe Systems Incorporated) Hidden
Adobe ExtendScript Toolkit 2 (x32 Version: 2.0.1 - Adobe Systems Incorporated) Hidden
Adobe Flash Player 13 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 13.0.0.214 - Adobe Systems Incorporated)
Adobe Flash Player 13 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 13.0.0.214 - Adobe Systems Incorporated)
Adobe Fonts All (x32 Version: 1.0 - Adobe Systems Incorporated) Hidden
Adobe Help Viewer CS3 (x32 Version: 1 - Adobe Systems Incorporated) Hidden
Adobe Linguistics CS3 (x32 Version: 3.0.0 - Adobe Systems Incorporated) Hidden
Adobe PDF Library Files (x32 Version: 8.0 - Adobe Systems Incorporated) Hidden
Adobe Photoshop CS4 (HKLM-x32\...\Adobe_b741c3c52d3108664cedeb2b76f6d96) (Version: 11.0 - Adobe Systems Incorporated)
Adobe Photoshop CS4 (x32 Version: 11.0 - Adobe Systems Incorporated) Hidden
Adobe Photoshop Elements 7.0 (HKLM-x32\...\Adobe Photoshop Elements 7) (Version: 7.0 - Adobe Systems Incorporated)
Adobe Photoshop Elements 7.0 (x32 Version: 7.0.0.3 - Adobe Systems Incorporated) Hidden
Adobe Photoshop Lightroom 3 64-bit (HKLM\...\{1387BA33-3FAC-49E9-B545-0E8D3BBC550B}) (Version: 3.0.2 - Adobe)
Adobe Reader XI (11.0.05) - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AB0000000001}) (Version: 11.0.05 - Adobe Systems Incorporated)
Adobe Setup (x32 Version: 1.0 - Adobe Systems Incorporated) Hidden
Adobe Shockwave Player 11.5 (HKLM-x32\...\Adobe Shockwave Player) (Version: 11.5.8.612 - Adobe Systems, Inc.)
Adobe Type Support (x32 Version: 1.0 - Adobe Systems Incorporated) Hidden
Adobe Update Manager CS3 (x32 Version: 5.1.0 - Adobe Systems Incorporated) Hidden
Adobe Version Cue CS3 Client (x32 Version: 3 - Adobe Systems Incorporated) Hidden
Adobe WinSoft Linguistics Plugin (x32 Version: 1.0 - Adobe Systems Incorporated) Hidden
Adobe XMP Panels CS3 (x32 Version: 1.0 - Adobe Systems Incorporated) Hidden
Apple Application Support (HKLM-x32\...\{AAC5D43E-816D-4C2D-8E51-55FFF35BE301}) (Version: 3.0.1 - Apple Inc.)
Apple Mobile Device Support (HKLM\...\{787136D2-F0F8-4625-AA3F-72D7795AC842}) (Version: 7.1.1.3 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.)
AVM FRITZ!Box Dokumentation (HKLM-x32\...\AVMFBox) (Version:  - AVM Berlin)
AVM FRITZ!Box Druckeranschluss (HKLM-x32\...\AVMFBoxPrinter) (Version:  - AVM Berlin)
BlackBerry Desktop Software 7.1 (HKLM-x32\...\BlackBerry_Desktop) (Version: 7.1.0.41 - Research in Motion Ltd.)
BlackBerry Desktop Software 7.1 (x32 Version: 7.1.0.41 - Research in Motion Ltd.) Hidden
BlackBerry Device Software Updater (HKLM-x32\...\{12BAA98C-F8DD-4BC9-BBE6-1C8463114197}) (Version: 6.0.1.37 - Research In Motion Ltd)
Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.)
BufferChm (x32 Version: 140.0.212.000 - Hewlett-Packard) Hidden
Camera Support Core Library (x32 Version: 7.1.0.11 - Canon) Hidden
Camera Window DS (x32 Version: 5.0 - Canon) Hidden
Camera Window DVC (x32 Version: 5.0 - Canon) Hidden
Camera Window MC (x32 Version: 5.0 - Canon) Hidden
Canon Camera Support Core Library (HKLM-x32\...\InstallShield_{91F1A0D6-23AD-49FE-8D4E-379485652214}) (Version: 7.1.0.11 - Canon)
Canon Camera Window DS for ZoomBrowser EX (HKLM-x32\...\InstallShield_{91203BD3-6C3E-472F-ADBD-F60FDC7C4010}) (Version: 5.0 - Canon)
Canon Camera Window DVC for ZoomBrowser EX (HKLM-x32\...\InstallShield_{4C96958A-6562-4143-B820-FF4890D3B734}) (Version: 5.0 - Canon)
Canon Camera Window for ZoomBrowser EX (HKLM-x32\...\InstallShield_{C7281207-4AA4-425E-B57A-0E9EF8445635}) (Version: 5.0 - Canon)
Canon Internet Library for ZoomBrowser EX (HKLM-x32\...\InstallShield_{2F81FBFC-9A37-431F-9050-14B55485DF5A}) (Version: 1.3.3 - Canon Inc.)
Canon MovieEdit Task for ZoomBrowser EX (HKLM-x32\...\InstallShield_{8AF1E098-1A5C-4336-BBE2-D047ABB401ED}) (Version: 1.2.0.21 - Canon)
Canon PhotoRecord (HKLM-x32\...\{0878E100-C0BB-41E8-B4C6-C486B61FDA7B}) (Version: 02.01.00069 - Cisra)
Canon RAW Image Task for ZoomBrowser EX (HKLM-x32\...\InstallShield_{44E24545-F317-4498-B7CD-240DE7BA8DE2}) (Version: 0.9.2 - Canon)
Canon RemoteCapture Task for ZoomBrowser EX (HKLM-x32\...\InstallShield_{28291BD5-92D2-4685-82DC-CCA925C53CCA}) (Version: 1.1 - Canon)
Canon Utilities PhotoStitch 3.1 (HKLM-x32\...\InstallShield_{218BBBE3-FE63-4BB2-81A8-7435575A84FA}) (Version: 3.1.14 - Canon)
Canon ZoomBrowser EX (HKLM-x32\...\{C1D76D7A-F3BB-47EA-A746-5B1E2FFC1DF2}) (Version: 5.00.0000 - Canon)
CCleaner (HKLM\...\CCleaner) (Version: 4.14 - Piriform)
Compatibility Pack für 2007 Office System (HKLM-x32\...\{90120000-0020-0407-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation)
CoreAAC (HKLM-x32\...\CoreAAC) (Version:  - )
CPUID CPU-Z 1.69.2 (HKLM\...\CPUID CPU-Z_is1) (Version:  - )
D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden
dcmsvc 1.0 (HKLM-x32\...\dcmsvc_is1) (Version:  - )
Destinations (x32 Version: 140.0.77.000 - Hewlett-Packard) Hidden
DeviceDiscovery (x32 Version: 140.0.212.000 - Hewlett-Packard) Hidden
DivX-Setup (HKLM-x32\...\DivX Setup) (Version: 2.6.1.44 - DivX, LLC)
dm-Fotowelt (HKLM-x32\...\dm-Fotowelt) (Version:  - )
erLT (x32 Version: 1.20.137.31 - Logitech, Inc.) Hidden
Fotogalerie (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
GOM Picker (HKLM-x32\...\GOM Picker) (Version: 1.0.0.5 - Gretech Corporation)
GOM Player (HKLM-x32\...\GOM Player) (Version: 2.2.56.5183 - Gretech Corporation)
GOM Video Converter (HKLM-x32\...\GOM Video Converter) (Version: 1.1.0.60 - Gretech Corporation)
Google Chrome (HKCU\...\Google Chrome) (Version: 35.0.1916.153 - Google Inc.)
Google Earth (HKLM-x32\...\{4D2A6330-2F8B-11E3-9C40-B8AC6F97B88E}) (Version: 7.1.2.2041 - Google)
Google Update Helper (x32 Version: 1.3.24.15 - Google Inc.) Hidden
GPBaseService2 (x32 Version: 140.0.211.000 - Hewlett-Packard) Hidden
High-Definition Video Playback (x32 Version: 7.1.13400.42.0 - Nero AG) Hidden
HP Customer Participation Program 14.0 (HKLM\...\HPExtendedCapabilities) (Version: 14.0 - HP)
HP FWUpdateEDO2 (HKLM-x32\...\{415FA9AD-DA10-4ABE-97B6-5051D4795C90}) (Version: 1.2.0.0 - Hewlett-Packard)
HP Imaging Device Functions 14.0 (HKLM\...\HP Imaging Device Functions) (Version: 14.0 - HP)
HP Photo Creations (HKLM-x32\...\HP Photo Creations) (Version: 1.0.0.12992 - HP)
HP Photosmart 5520 series - Grundlegende Software für das Gerät (HKLM\...\{4F396B08-301D-4E53-A372-95A7E93ABD04}) (Version: 28.0.1315.0 - Hewlett-Packard Co.)
HP Photosmart 5520 series Hilfe (HKLM-x32\...\{640A03B3-4E6B-4440-A350-E6A8D6348F12}) (Version: 27.0.0 - Hewlett Packard)
hp print screen utility (HKLM-x32\...\hp print screen utility) (Version:  - )
HP Smart Web Printing 4.60 (HKLM\...\HP Smart Web Printing) (Version: 4.60 - HP)
HP Solution Center 14.0 (HKLM\...\HP Solution Center & Imaging Support Tools) (Version: 14.0 - HP)
HP Update (HKLM-x32\...\{6F1C00D2-25C2-4CBA-8126-AE9A6E2E9CD5}) (Version: 5.003.003.001 - Hewlett-Packard)
HPProductAssistant (x32 Version: 140.0.212.000 - Hewlett-Packard) Hidden
HPSSupply (x32 Version: 140.0.211.000 - Hewlett-Packard) Hidden
Iminent (x32 Version: 6.21.22.0 - Iminent) Hidden <==== ATTENTION
Intel® Matrix Storage Manager (HKLM\...\{9068B2BE-D93A-4C0A-861C-5E35E2C0E09E}) (Version:  - Intel Corporation)
Internet Library (x32 Version: 1.3.3 - Canon Inc.) Hidden
iTunes (HKLM\...\{B8BA155B-1E75-405F-9CB4-8A99615D09DC}) (Version: 11.1.5.5 - Apple Inc.)
Java 7 Update 45 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83217025FF}) (Version: 7.0.450 - Oracle)
Java Auto Updater (x32 Version: 2.1.9.8 - Sun Microsystems, Inc.) Hidden
Junk Mail filter update (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Kaspersky Internet Security 2013 (HKLM-x32\...\InstallWIX_{560985FB-4B76-4121-9189-7A2CDC7886D6}) (Version: 13.0.1.4190 - Kaspersky Lab)
Kaspersky Internet Security 2013 (x32 Version: 13.0.1.4190 - Kaspersky Lab) Hidden
Logitech SetPoint 6.30 (HKLM\...\sp6) (Version: 6.30.43 - Logitech)
Logitech Vid HD (HKLM-x32\...\Logitech Vid) (Version: 7.2 (7259) - Logitech Inc..)
Logitech Webcam Software (HKLM\...\{987FE247-4E69-4A2E-A961-D14F901FDBF6}) (Version: 12.10.1113 - Logitech Inc.)
Malwarebytes Anti-Malware Version 2.0.2.1012 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.2.1012 - Malwarebytes Corporation)
MarketResearch (x32 Version: 140.0.212.000 - Hewlett-Packard) Hidden
Microsoft .NET Framework 4.5.1 (DEU) (Version: 4.5.50938 - Microsoft Corporation) Hidden
Microsoft .NET Framework 4.5.1 (Deutsch) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1031) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 (Version: 4.5.50938 - Microsoft Corporation) Hidden
Microsoft Application Error Reporting (Version: 12.0.6015.5000 - Microsoft Corporation) Hidden
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version:  - Microsoft)
Microsoft Office 2007 Service Pack 3 (SP3) (x32 Version:  - Microsoft) Hidden
Microsoft Office Excel MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office File Validation Add-In (HKLM-x32\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation)
Microsoft Office Home and Student 2007 (HKLM-x32\...\HOMESTUDENTR) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Office Home and Student 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Live Add-in 1.5 (HKLM-x32\...\{F40BBEC7-C2A4-4A00-9B24-7A055A2C5262}) (Version: 2.0.4024.1 - Microsoft Corporation)
Microsoft Office Office 64-bit Components 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office OneNote MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office PowerPoint MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office PowerPoint Viewer 2007 (German) (HKLM-x32\...\{95120000-00AF-0407-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Office Proof (English) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (French) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (Italian) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Proofing (German) 2007 (x32 Version: 12.0.4518.1014 - Microsoft Corporation) Hidden
Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) (x32 Version:  - Microsoft) Hidden
Microsoft Office Shared 64-bit MUI (German) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Shared MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Word MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Primary Interoperability Assemblies 2005 (HKLM-x32\...\{D24DB8B9-BB6C-4334-9619-BA1C650E13D3}) (Version: 8.0.50727.42 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30214.0 - Microsoft Corporation)
Microsoft SkyDrive (HKCU\...\SkyDriveSetup.exe) (Version: 16.4.6013.0910 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [DEU] (HKLM-x32\...\{BAC80EF3-E106-4AEA-8C57-F217F9BC7358}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 ATL Update kb973923 - x64 8.0.50727.4053 (HKLM\...\{B6E3757B-5E77-3915-866A-CCFC4B8D194C}) (Version: 8.0.50727.4053 - Microsoft Corporation)
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (HKLM-x32\...\{770657D0-A123-3C07-8E44-1C83EC895118}) (Version: 8.0.50727.4053 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) - KB2467175 (HKLM\...\{aac9fcc4-dd9e-4add-901c-b5496a07ab2e}) (Version: 8.0.51011 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6E8E85E8-CE4B-4FF5-91F7-04999C9FAE6A}) (Version: 8.0.50727.42 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148 (HKLM-x32\...\{002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570 (HKLM-x32\...\{86CE85E6-DBAC-3FFD-B977-E4B79F83C909}) (Version: 9.0.30729.5570 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (HKLM-x32\...\{6AFCA4E1-9B78-3640-8F72-A7BF33448200}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Works (HKLM-x32\...\{39D0E034-1042-4905-BECB-5502909FCB7C}) (Version: 9.7.0621 - Microsoft Corporation)
Microsoft-Maus- und Tastatur-Center (HKLM\...\Microsoft Mouse and Keyboard Center) (Version: 2.2.173.0 - Microsoft Corporation)
Microsoft-Maus- und Tastatur-Center (Version: 2.2.173.0 - Microsoft Corporation) Hidden
Movie Maker (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
MovieEdit Task (x32 Version: 1.2.0.21 - Canon) Hidden
Mozilla Firefox 29.0.1 (x86 de) (HKLM-x32\...\Mozilla Firefox 29.0.1 (x86 de)) (Version: 29.0.1 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 29.0 - Mozilla)
MPEG2 Codec(libmpeg2/mad) (HKLM-x32\...\MPEG2 Codec(libmpeg2/mad)) (Version:  - )
MSVCRT (x32 Version: 15.4.2862.0708 - Microsoft) Hidden
MSVCRT_amd64 (x32 Version: 15.4.2862.0708 - Microsoft) Hidden
MSVCRT110 (x32 Version: 16.4.1108.0727 - Microsoft) Hidden
MSVCRT110_amd64 (Version: 16.4.1109.0912 - Microsoft) Hidden
MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
MSXML 4.0 SP3 Parser (HKLM-x32\...\{196467F1-C11F-4F76-858B-5812ADC83B94}) (Version: 4.30.2100.0 - Microsoft Corporation)
MSXML 4.0 SP3 Parser (KB2758694) (HKLM-x32\...\{1D95BA90-F4F8-47EC-A882-441C99D30C1E}) (Version: 4.30.2117.0 - Microsoft Corporation)
MyFreeCodec (HKCU\...\MyFreeCodec) (Version:  - )
NAVIGON Fresh 3.5.1 (HKLM-x32\...\NAVIGON Fresh) (Version: 3.5.1 - NAVIGON)
Nero 10 ClipartPack (HKLM-x32\...\{96ED4B78-300E-4033-AE6C-C115CEB4DF07}) (Version: 10.2.10000.11.0 - Nero AG)
Nero 10 Menu TemplatePack 1 (HKLM-x32\...\{42C8B7DF-FEB0-4D51-B169-506B6BEC5797}) (Version: 10.2.10000.0.0 - Nero AG)
Nero 10 Menu TemplatePack 2 (HKLM-x32\...\{E712C273-7564-4C8E-AA59-0FA19BC35117}) (Version: 10.2.10000.0.0 - Nero AG)
Nero 10 Menu TemplatePack 3 (HKLM-x32\...\{92146419-AE44-4C8B-A48B-0ABB1B5EC026}) (Version: 10.2.10100.1.0 - Nero AG)
Nero 10 Menu TemplatePack Basic (x32 Version: 10.2.10000.0.0 - Nero AG) Hidden
Nero 10 Movie ThemePack 1 (HKLM-x32\...\{43FBAB46-5969-4200-9958-1FF81FEE506F}) (Version: 10.2.10000.11.0 - Nero AG)
Nero 10 Movie ThemePack 2 (HKLM-x32\...\{70F19404-B96C-4EBB-AD2B-3574F8736197}) (Version: 10.2.10100.1.0 - Nero AG)
Nero 10 Movie ThemePack Basic (x32 Version: 10.2.10000.0.0 - Nero AG) Hidden
Nero 10 Sample ImagePack (HKLM-x32\...\{ACD15FDF-FC42-4175-B477-576F92FF2256}) (Version: 10.2.10000.11.0 - Nero AG)
Nero 10 Sample Videos (HKLM-x32\...\{92A10E9D-EA00-4A46-8F22-EEA660992D61}) (Version: 10.2.10000.11.0 - Nero AG)
Nero BackItUp 10 (HKLM-x32\...\{68AB6930-5BFF-4FF6-923B-516A91984FE6}) (Version: 5.6.11000.11.100 - Nero AG)
Nero BackItUp 10 Help (CHM) (x32 Version: 10.5.10000 - Nero AG) Hidden
Nero Burning ROM 10 (HKLM-x32\...\{7A5D731D-B4B3-490E-B339-75685712BAAB}) (Version: 10.2.11000.12.100 - Nero AG)
Nero BurningROM 10 Help (CHM) (x32 Version: 10.5.10100 - Nero AG) Hidden
Nero BurnRights 10 (HKLM-x32\...\{943CFD7D-5336-47AF-9418-E02473A5A517}) (Version: 4.2.10300.0.102 - Nero AG)
Nero BurnRights 10 Help (CHM) (x32 Version: 10.5.10000 - Nero AG) Hidden
Nero Control Center 10 (x32 Version: 10.2.10600.0.6 - Nero AG) Hidden
Nero ControlCenter 10 Help (CHM) (x32 Version: 10.5.10000 - Nero AG) Hidden
Nero Core Components 10 (x32 Version: 2.0.17400.8.2 - Nero AG) Hidden
Nero CoverDesigner 10 (HKLM-x32\...\{FCF00A6E-FB58-477A-ABE9-232907105521}) (Version: 5.2.10700.7.100 - Nero AG)
Nero CoverDesigner 10 Help (CHM) (x32 Version: 10.5.10000 - Nero AG) Hidden
Nero DiscSpeed 10 (HKLM-x32\...\{34490F4E-48D0-492E-8249-B48BECF0537C}) (Version: 6.2.10300.1.100 - Nero AG)
Nero DiscSpeed 10 Help (CHM) (x32 Version: 10.5.10000 - Nero AG) Hidden
Nero Dolby Files 10 (x32 Version: 2.0.12100.0.10 - Nero AG) Hidden
Nero Express 10 (HKLM-x32\...\{70550193-1C22-445C-8FA4-564E155DB1A7}) (Version: 10.2.11100.12.100 - Nero AG)
Nero Express 10 Help (CHM) (x32 Version: 10.5.10100 - Nero AG) Hidden
Nero InfoTool 10 (HKLM-x32\...\{F412B4AF-388C-4FF5-9B2F-33DB1C536953}) (Version: 7.2.10300.5.100 - Nero AG)
Nero InfoTool 10 Help (CHM) (x32 Version: 10.5.10000 - Nero AG) Hidden
Nero MediaHub 10 (HKLM-x32\...\{1F7FB68F-52F6-46A3-B42F-38CE46295AE5}) (Version: 1.2.12300.27.100 - Nero AG)
Nero MediaHub 10 Help (CHM) (x32 Version: 10.5.10000 - Nero AG) Hidden
Nero Multimedia Suite 10 (HKLM-x32\...\{277C1559-4CF7-44FF-8D07-98AA9C13AABD}) (Version: 10.5.10500 - Nero AG)
Nero Recode 10 (HKLM-x32\...\{8ECEC853-5C3D-4B10-B5C7-FF11FF724807}) (Version: 4.8.10400.3.100 - Nero AG)
Nero Recode 10 Help (CHM) (x32 Version: 10.5.10000 - Nero AG) Hidden
Nero RescueAgent 10 (HKLM-x32\...\{E337E787-CF61-4B7B-B84F-509202A54023}) (Version: 3.2.10600.7.100 - Nero AG)
Nero RescueAgent 10 Help (CHM) (x32 Version: 10.5.10000 - Nero AG) Hidden
Nero SoundTrax 10 (HKLM-x32\...\{E1EE5339-5D32-458F-BAAB-B19F6301BCE2}) (Version: 4.8.10200.1.100 - Nero AG)
Nero SoundTrax 10 Help (CHM) (x32 Version: 10.5.10000 - Nero AG) Hidden
Nero StartSmart 10 (HKLM-x32\...\{F61D489E-6C44-49AC-AD02-7DA8ACA73A65}) (Version: 10.2.11100.10.100 - Nero AG)
Nero StartSmart 10 Help (CHM) (x32 Version: 10.5.10000 - Nero AG) Hidden
Nero Update (HKLM-x32\...\{65BB0407-4CC8-4DC7-952E-3EEFDF05602A}) (Version: 1.0.0018 - Nero AG)
Nero Vision 10 (HKLM-x32\...\{9A4297F3-2A51-4ED9-92CA-4BCB8380947E}) (Version: 7.2.14700.9.100 - Nero AG)
Nero Vision 10 Help (CHM) (x32 Version: 10.5.10000 - Nero AG) Hidden
Nero WaveEditor 10 (HKLM-x32\...\{EDCDFAD5-DF80-4600-A493-E9DAD6810230}) (Version: 5.8.10400.2.100 - Nero AG)
Nero WaveEditor 10 Help (CHM) (x32 Version: 10.5.10000 - Nero AG) Hidden
Nikon Message Center 2 (HKLM-x32\...\{B014EE44-9197-4513-9613-71E6EB1B514E}) (Version: 2.1.0 - Nikon)
Nikon Movie Editor (HKLM-x32\...\{5CAD3393-EEC0-44CE-9F93-BCAA365B77FB}) (Version: 2.7.0 - Nikon)
NVIDIA Display Control Panel (HKLM\...\NVIDIA Display Control Panel) (Version: 6.14.11.9745 - NVIDIA Corporation)
NVIDIA Drivers (HKLM\...\NVIDIA Drivers) (Version: 1.10.59.37 - NVIDIA Corporation)
NVIDIA PhysX (HKLM-x32\...\{B83FC356-B7C0-441F-8A4D-D71E088E7974}) (Version: 9.09.0428 - NVIDIA Corporation)
O&O DiskRecovery (HKLM\...\{B74F48B3-F8BB-4A7C-A7AD-9FE142322BA8}) (Version: 6.0.6236 - O&O Software GmbH)
O&O SafeErase (HKLM-x32\...\{53480280-DE8B-445F-9676-FAE6293E06E5}) (Version: 2.0.554 - O&O Software GmbH)
OGA Notifier 2.0.0048.0 (x32 Version: 2.0.0048.0 - Microsoft Corporation) Hidden
OpenOffice 4.0.1 (HKLM-x32\...\{0AEC308E-7EB3-47F7-BB59-F2C9C6166B27}) (Version: 4.01.9714 - Apache Software Foundation)
Pando Media Booster (HKLM-x32\...\{980A182F-E0A2-4A40-94C1-AE0C1235902E}) (Version: 2.6.0.7 - Pando Networks Inc.)
PDF Settings (x32 Version: 1.0 - Adobe Systems Incorporated) Hidden
Photo Gallery (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Photoshop Camera Raw (x32 Version: 5.0 - Adobe Systems Incorporated) Hidden
PhotoStitch (x32 Version: 3.1.14 - Canon) Hidden
Picture Control Utility x64 (HKLM\...\{11953C65-BB4E-4CA4-B0F0-2600A4B20040}) (Version: 1.4.11 - Nikon)
PocketShield (HKLM-x32\...\{90A5371B-D960-4F28-B7FC-F1748518642E}) (Version: 1.0.0 - JDB Pocketware)
PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.987 - Even Balance, Inc.)
PVSonyDll (Version: 1.00.0001 - NVIDIA Corporation) Hidden
QuickTime (HKLM-x32\...\{57752979-A1C9-4C02-856B-FBB27AC4E02C}) (Version: 7.69.80.9 - Apple Inc.)
RAW Image Task (x32 Version: 0.9.2 - Canon) Hidden
Realtek 8136 8168 8169 Ethernet Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 1.00.0005 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.5910 - Realtek Semiconductor Corp.)
RemoteCapture Task 1.1 (x32 Version: 1.1 - Canon) Hidden
Samsung Kies (HKLM-x32\...\InstallShield_{758C8301-2696-4855-AF45-534B1200980A}) (Version: 2.5.0.12104_15 - Samsung Electronics Co., Ltd.)
Samsung Kies (x32 Version: 2.5.0.12104_15 - Samsung Electronics Co., Ltd.) Hidden
SAMSUNG USB Driver for Mobile Phones (HKLM\...\{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}) (Version: 1.5.18.0 - SAMSUNG Electronics Co., Ltd.)
Shop for HP Supplies (HKLM\...\Shop for HP Supplies) (Version: 14.0 - HP)
Skype Click to Call (HKLM-x32\...\{B6CF2967-C81E-40C0-9815-C05774FEF120}) (Version: 6.3.11079 - Skype Technologies S.A.)
Skype™ 6.11 (HKLM-x32\...\{4E76FF7E-AEBA-4C87-B788-CD47E5425B9D}) (Version: 6.11.102 - Skype Technologies S.A.)
Smart Keyboard (HKLM-x32\...\Smart Keyboard) (Version:  - )
SmartWebPrinting (x32 Version: 140.0.186.000 - Hewlett-Packard) Hidden
SolutionCenter (x32 Version: 140.0.213.000 - Hewlett-Packard) Hidden
Spybot - Search & Destroy (HKLM-x32\...\{B4092C6D-E886-4CB2-BA68-FE5A99D31DE7}_is1) (Version: 2.3.39 - Safer-Networking Ltd.)
Status (x32 Version: 140.0.212.000 - Hewlett-Packard) Hidden
Tinypic 3.16 (HKLM-x32\...\{E3723A04-A894-4036-A78E-282E18F43C0A}_is1) (Version: Tinypic 3.16 - E. Fiedler)
TomTom HOME 2.8.3.2499 (HKLM-x32\...\TomTom HOME) (Version: 2.8.3.2499 - TomTom)
TomTom HOME Visual Studio Merge Modules (HKLM-x32\...\{8F3C31C5-9C3A-4AA8-8EFA-71290A7AD533}) (Version: 1.0.2 - TomTom International B.V.)
TrayApp (x32 Version: 140.0.212.000 - Hewlett-Packard) Hidden
TuneUp Utilities 2013 (HKLM-x32\...\TuneUp Utilities 2013) (Version: 13.0.4000.245 - TuneUp Software)
TuneUp Utilities 2013 (x32 Version: 13.0.4000.245 - TuneUp Software) Hidden
TuneUp Utilities Language Pack (de-DE) (x32 Version: 13.0.4000.245 - TuneUp Software) Hidden
TuneUp Utilities Language Pack (de-DE) (x32 Version: 9.0.6030.1 - TuneUp Software) Hidden
Update for 2007 Microsoft Office System (KB967642) (HKLM-x32\...\{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version:  - Microsoft)
Update for Microsoft Office 2007 suites (KB2596620) 32-Bit Edition (HKLM-x32\...\{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{A024FC7B-77DE-45DE-A058-1C049A17BFB3}) (Version:  - Microsoft)
Update for Microsoft Office 2007 suites (KB2767849) 32-Bit Edition (HKLM-x32\...\{90120000-002A-0000-1000-0000000FF1CE}_HOMESTUDENTR_{CB68A5B0-3508-4193-AEB9-AF636DAECE0F}) (Version:  - Microsoft)
Update for Microsoft Office 2007 suites (KB2767849) 32-Bit Edition (HKLM-x32\...\{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{CB68A5B0-3508-4193-AEB9-AF636DAECE0F}) (Version:  - Microsoft)
Update for Microsoft Office 2007 suites (KB2767916) 32-Bit Edition (HKLM-x32\...\{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{E9A82945-BA29-4EE8-8F2A-2F49545E9CF2}) (Version:  - Microsoft)
Update für Microsoft Office Excel 2007 Help (KB963678) (HKLM-x32\...\{90120000-0016-0407-0000-0000000FF1CE}_HOMESTUDENTR_{BEC163EC-7A83-48A1-BFB6-3BF47CC2F8CF}) (Version:  - Microsoft)
Update für Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM-x32\...\{90120000-0018-0407-0000-0000000FF1CE}_HOMESTUDENTR_{EA160DA3-E9B5-4D03-A518-21D306665B96}) (Version:  - Microsoft)
Update für Microsoft Office Word 2007 Help (KB963665) (HKLM-x32\...\{90120000-001B-0407-0000-0000000FF1CE}_HOMESTUDENTR_{38472199-D7B6-4833-A949-10E4EE6365A1}) (Version:  - Microsoft)
VC80CRTRedist - 8.0.50727.6195 (x32 Version: 1.2.0 - DivX, Inc) Hidden
ViewNX 2 (HKLM\...\{635BE602-BB9C-4C59-8CC5-93F9366E8A21}) (Version: 2.7.5 - Nikon)
Volumex (HKLM-x32\...\{4741828C-2C83-4052-81DE-D8DC8796B624}) (Version: 1.2 - JDB Pocketware)
Warner Bros. Digital Copy Manager (HKLM-x32\...\com.warnerbros.DigitalCopyManager.449F66ACC381FDC604DC2AA255FEECEEBBBEE1E5.1) (Version: 1.1 - Warner Bros. Entertainment Inc.)
Warner Bros. Digital Copy Manager (x32 Version: 1.1 - Warner Bros. Entertainment Inc.) Hidden
Windows Live Communications Platform (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3505.0912 - Microsoft Corporation)
Windows Live Essentials (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Windows Live Family Safety (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Windows Live Family Safety (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Windows Live ID Sign-in Assistant (Version: 7.250.4311.0 - Microsoft Corporation) Hidden
Windows Live Installer (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Windows Live Mail (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Windows Live Messenger (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Windows Live MIME IFilter (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Windows Live Photo Common (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Windows Live PIMT Platform (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Windows Live SOXE (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Windows Live SOXE Definitions (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Windows Live Sync (HKLM-x32\...\{586509F0-350D-48B5-B763-9CC2F8D96C4C}) (Version: 14.0.8117.416 - Microsoft Corporation)
Windows Live UX Platform (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Windows Live UX Platform Language Pack (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Windows Live Writer (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Windows Live Writer Resources (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Windows Mobile Device Center Driver Update (HKLM\...\{92DBCA36-9B41-4DD1-941A-AED149DD37F0}) (Version: 6.1.6965.0 - Microsoft Corporation)
Windows Mobile-Gerätecenter (HKLM\...\{626672CD-BFCF-49A9-AEFE-AB0FED3BFC5B}) (Version: 6.1.6965.0 - Microsoft Corporation)
Windows Mobile-Ressourcen (HKLM-x32\...\Windows Mobile Device Handbook) (Version: 1.0 - Microsoft Corporation)
WinRAR (HKLM\...\WinRAR archiver) (Version:  - )

==================== Restore Points  =========================


==================== Hosts content: ==========================

2009-07-14 04:34 - 2009-06-10 23:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts

==================== Scheduled Tasks (whitelisted) =============

Task: {12082054-5D35-407B-86D7-FF8266EC8A6F} - System32\Tasks\Update Manager => C:\Program Files (x86)\HP\hpcoretech\hpcmpmgr.exe
Task: {1652387A-5B44-4FB5-87B5-8DC6D9E0E021} - System32\Tasks\Microsoft_MKC_Logon_Task_itype.exe => c:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe [2013-05-13] (Microsoft Corporation)
Task: {1848F2EF-0319-41A7-BAAE-717E06E44233} - System32\Tasks\Microsoft_Hardware_Launch_mousekeyboardcenter_exe => c:\Program Files\Microsoft Mouse and Keyboard Center\mousekeyboardcenter.exe [2013-05-13] (Microsoft)
Task: {25F6D591-69CB-4FBB-84F7-2B3753069632} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2010-10-07] (Google Inc.)
Task: {2AA26DB3-218F-4F89-AAAD-DC8D6D84FFD1} - System32\Tasks\TuneUpUtilities_Task_BkGndMaintenance => C:\Program Files (x86)\TuneUp Utilities 2010\OneClick.exe
Task: {2CC66C69-3B79-4D78-89D8-AA5E59F438F9} - System32\Tasks\Java Update Scheduler => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2013-07-02] (Oracle Corporation)
Task: {30282A4B-00E4-4EF8-B0A8-2B1FAA9CCB37} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2010-10-07] (Google Inc.)
Task: {610D26F7-5422-48AE-B8BF-AC59E3F50BD7} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2014-05-20] (Piriform Ltd)
Task: {6521145A-95E8-4B68-8809-76436D2D9C4D} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-06-08] (Adobe Systems Incorporated)
Task: {6AC1E5F9-39EA-4F8E-B45B-A50CA91C5E80} - System32\Tasks\TuneUpUtilities_Task_BkGndMaintenance2013 => C:\Program Files (x86)\TuneUp Utilities 2013\OneClick.exe [2014-01-28] (TuneUp Software)
Task: {71751296-1A61-4D3C-A416-06C1A0DA7105} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-224901007-3534270279-3868180721-1000UA => C:\Users\Dale\AppData\Local\Google\Update\GoogleUpdate.exe [2010-10-07] (Google Inc.)
Task: {717D523A-B066-4EFD-99C9-9419CAC37896} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Check for updates => C:\Program Files (x86)\Spybot - Search &amp; Destroy 2\SDUpdate.exe
Task: {73E2E05B-5EBB-443A-85B4-56639C497B08} - System32\Tasks\Microsoft_Hardware_Launch_ipoint_exe => c:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe [2013-05-13] (Microsoft Corporation)
Task: {7B56D56E-B94D-4448-BB60-3FED0B7484CD} - System32\Tasks\ArcSoft Connect Daemon => C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe
Task: {80D74839-25F9-4DD4-9B33-43FFB2D9F6B9} - System32\Tasks\Microsoft\Windows\WindowsBackup\AutomaticBackup => Rundll32.exe /d sdengin2.dll,ExecuteScheduledBackup
Task: {B866E060-CA01-4BA8-9077-772B1F251088} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-224901007-3534270279-3868180721-1000Core => C:\Users\Dale\AppData\Local\Google\Update\GoogleUpdate.exe [2010-10-07] (Google Inc.)
Task: {C23B627C-3699-4DC0-A98F-2411A1B92CD5} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Refresh immunization => C:\Program Files (x86)\Spybot - Search &amp; Destroy 2\SDImmunize.exe
Task: {C46B067E-8D1A-4C5C-B7A7-37F122972BE1} - System32\Tasks\Adobe Reader and Acrobat Manager => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-04-04] (Adobe Systems Incorporated)
Task: {C5928FA2-20D1-4D7A-BB1A-05149C5B59C8} - System32\Tasks\Microsoft_Hardware_Launch_itype_exe => c:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe [2013-05-13] (Microsoft Corporation)
Task: {C7334882-ABAC-42AE-B2E3-F1FF3CA2F570} - System32\Tasks\HP-Online-Aktualisierungsprogramm => C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe [2011-10-28] (Hewlett-Packard)
Task: {D224EDB1-12F2-4F72-BA41-21E81CB4404C} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Scan the system => C:\Program Files (x86)\Spybot - Search &amp; Destroy 2\SDScan.exe
Task: {D33C9301-F0A8-4C6A-A53F-71A37A18F9CB} - System32\Tasks\DivX-Online-Aktualisierungsprogramm => C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe [2013-02-13] ()
Task: {D85C07E0-C4AF-45E3-BC00-4AD2585ED1CA} - System32\Tasks\Microsoft_MKC_Logon_Task_ipoint.exe => c:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe [2013-05-13] (Microsoft Corporation)
Task: {E323FC7C-837F-47AB-9196-2B0E1785ECE4} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.)
Task: {E921B68F-3EE7-48E5-BA36-AF3F817114B4} - System32\Tasks\Microsoft\Office Genuine Advantage\OGALogon => C:\Windows\system32\OGAExec.exe
Task: {F78002E3-8307-453E-919E-2BCA9D026368} - System32\Tasks\Google Updater and Installer => C:\Users\Dale\AppData\Local\Google\Update\GoogleUpdate.exe [2010-10-07] (Google Inc.)
Task: {FDBFDD53-9B82-44CC-AEB2-2427F502CA71} - System32\Tasks\HP online update program => C:\Program Files (x86)\Hewlett-Packard\HP Software Update\HPWuSchd2.exe
Task: {FEDF3A43-B271-4F1D-A003-D5439F389757} - System32\Tasks\HP Photo Creations Communicator => C:\ProgramData\HP Photo Creations\Communicator.exe [2014-04-03] ()
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-224901007-3534270279-3868180721-1000Core.job => C:\Users\Dale\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-224901007-3534270279-3868180721-1000UA.job => C:\Users\Dale\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\HP Photo Creations Communicator.job => C:\ProgramData\HP Photo Creations\Communicator.exe

==================== Loaded Modules (whitelisted) =============

2010-07-24 09:16 - 2010-07-24 09:16 - 00075064 _____ () C:\Windows\SysWOW64\PnkBstrA.exe
2010-01-07 21:08 - 2009-12-12 16:12 - 00166400 _____ () C:\Program Files\winrar\rarext.dll
2011-06-24 01:42 - 2011-06-24 01:42 - 01302808 _____ () C:\Program Files\Logitech\SetPointP\Macros\MacroCore.dll
2014-04-03 19:20 - 2014-04-03 19:20 - 00185920 _____ () C:\ProgramData\HP Photo Creations\Communicator.exe
2014-01-28 10:37 - 2014-01-28 10:37 - 00741176 _____ () C:\Program Files (x86)\TuneUp Utilities 2013\avgrepliba.dll
2014-02-12 21:58 - 2014-02-12 21:58 - 00073544 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll
2014-02-12 21:58 - 2014-02-12 21:58 - 01044808 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll
2012-08-17 22:39 - 2013-01-02 14:24 - 01310136 _____ () C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\kpcengine.2.2.dll
2012-08-17 22:38 - 2012-08-17 22:38 - 00479160 _____ () C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\dblite.dll
2014-06-22 11:01 - 2014-04-25 14:11 - 00109400 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\snlThirdParty150.bpl
2014-06-22 11:01 - 2014-04-25 14:11 - 00416600 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\DEC150.bpl
2014-06-22 11:01 - 2014-04-25 14:11 - 00167768 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\snlFileFormats150.bpl
2014-06-22 11:01 - 2012-08-23 10:38 - 00574840 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\sqlite3.dll
2014-06-22 11:01 - 2012-04-03 17:06 - 00565640 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\av\BDSmartDB.dll
2014-05-29 09:35 - 2014-05-29 09:35 - 03839088 _____ () C:\Program Files (x86)\Mozilla Firefox\mozjs.dll

==================== Alternate Data Streams (whitelisted) =========


==================== Safe Mode (whitelisted) ===================


==================== EXE Association (whitelisted) =============


==================== MSCONFIG/TASK MANAGER disabled items =========

MSCONFIG\Services: Apple Mobile Device => 2
MSCONFIG\Services: BBSvc => 3
MSCONFIG\Services: Bonjour Service => 2
MSCONFIG\Services: bthserv => 3
MSCONFIG\Services: Fax => 3
MSCONFIG\Services: iPod Service => 3
MSCONFIG\Services: LBTServ => 3
MSCONFIG\Services: NAUpdate => 2
MSCONFIG\Services: Skype C2C Service => 2
MSCONFIG\Services: SkypeUpdate => 2
MSCONFIG\Services: TomTomHOMEService => 2
MSCONFIG\Services: vToolbarUpdater13.2.0 => 2
MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^eBoostr Control Panel.lnk => C:\Windows\pss\eBoostr Control Panel.lnk.CommonStartup
MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^HP Digital Imaging Monitor.lnk => C:\Windows\pss\HP Digital Imaging Monitor.lnk.CommonStartup
MSCONFIG\startupfolder: C:^Users^Dale^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^OneNote 2007 Bildschirmausschnitt- und Startprogramm.lnk => C:\Windows\pss\OneNote 2007 Bildschirmausschnitt- und Startprogramm.lnk.Startup
MSCONFIG\startupreg: Adobe ARM => "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
MSCONFIG\startupreg: APSDaemon => "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"
MSCONFIG\startupreg: dcmsvc => C:\Program Files (x86)\dcmsvc\dcmsvc.exe
MSCONFIG\startupreg: Hiyo => C:\Program Files (x86)\HiYo\bin\HiYo.exe /RunFromStartup
MSCONFIG\startupreg: iTunesHelper => "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
MSCONFIG\startupreg: KiesAirMessage => C:\Program Files (x86)\Samsung\Kies\KiesAirMessage.exe -startup
MSCONFIG\startupreg: KiesPreload => C:\Program Files (x86)\Samsung\Kies\Kies.exe /preload
MSCONFIG\startupreg: KiesTrayAgent => C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe
MSCONFIG\startupreg: Logitech Vid => "C:\Program Files (x86)\Logitech\Logitech Vid\vid.exe" -bootmode
MSCONFIG\startupreg: LogitechQuickCamRibbon => "C:\Program Files\Logitech\Logitech WebCam Software\LWS.exe" /hide
MSCONFIG\startupreg: msnmsgr => "C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe" /background
MSCONFIG\startupreg: NBAgent => "C:\Program Files (x86)\Nero\Nero 10\Nero BackItUp\NBAgent.exe" /WinStart
MSCONFIG\startupreg: Nikon Message Center 2 => C:\Program Files (x86)\Nikon\Nikon Message Center 2\NkMC2.exe -s                                                                                                                                                                                                         
MSCONFIG\startupreg: QuickTime Task => "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime
MSCONFIG\startupreg: ROC_ROC_JULY_P1 => "C:\Program Files (x86)\AVG Secure Search\ROC_ROC_JULY_P1.exe" / /PROMPT /CMPID=ROC_JULY_P1
MSCONFIG\startupreg: Skype => "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
MSCONFIG\startupreg: Steam => "C:\Program Files (x86)\Steam\Steam.exe" -silent
MSCONFIG\startupreg: swg => "C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
MSCONFIG\startupreg: TomTomHOME.exe => "C:\Program Files (x86)\TomTom HOME 2\TomTomHOMERunner.exe"
MSCONFIG\startupreg: vProt => "C:\Program Files (x86)\AVG Secure Search\vprot.exe"
MSCONFIG\startupreg: Windows Mobile Device Center => %windir%\WindowsMobile\wmdc.exe

==================== Faulty Device Manager Devices =============


==================== Event log errors: =========================

Application errors:
==================
Error: (06/30/2014 02:43:26 PM) (Source: Windows Backup) (EventID: 4103) (User: )
Description: Die Sicherung wurde aufgrund eines Fehlers beim Schreiben am Sicherungsspeicherort "L:\" nicht abgeschlossen. Fehler: "Der Sicherungsort wurde nicht gefunden oder ist ungültig. Überprüfen Sie die Sicherungseinstellungen und den Sicherungsort. (0x81000006)"

Error: (06/23/2014 10:43:32 AM) (Source: Windows Backup) (EventID: 4103) (User: )
Description: Die Sicherung wurde aufgrund eines Fehlers beim Schreiben am Sicherungsspeicherort "L:\" nicht abgeschlossen. Fehler: "Der Sicherungsort wurde nicht gefunden oder ist ungültig. Überprüfen Sie die Sicherungseinstellungen und den Sicherungsort. (0x81000006)"

Error: (06/22/2014 05:32:36 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: Explorer.EXE, Version: 6.1.7601.17567, Zeitstempel: 0x4d672ee4
Name des fehlerhaften Moduls: ntdll.dll, Version: 6.1.7601.18247, Zeitstempel: 0x521eaf24
Ausnahmecode: 0xc015000f
Fehleroffset: 0x000000000006f7ba
ID des fehlerhaften Prozesses: 0x6f0
Startzeit der fehlerhaften Anwendung: 0xExplorer.EXE0
Pfad der fehlerhaften Anwendung: Explorer.EXE1
Pfad des fehlerhaften Moduls: Explorer.EXE2
Berichtskennung: Explorer.EXE3

Error: (06/22/2014 05:32:31 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: Explorer.EXE, Version: 6.1.7601.17567, Zeitstempel: 0x4d672ee4
Name des fehlerhaften Moduls: SHELL32.dll, Version: 6.1.7601.18429, Zeitstempel: 0x5330ecd9
Ausnahmecode: 0xc0000005
Fehleroffset: 0x0000000000050506
ID des fehlerhaften Prozesses: 0x6f0
Startzeit der fehlerhaften Anwendung: 0xExplorer.EXE0
Pfad der fehlerhaften Anwendung: Explorer.EXE1
Pfad des fehlerhaften Moduls: Explorer.EXE2
Berichtskennung: Explorer.EXE3

Error: (06/22/2014 00:45:20 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: SDScan.exe, Version: 2.3.39.181, Zeitstempel: 0x535a5179
Name des fehlerhaften Moduls: SDScanLibrary.dll_unloaded, Version: 0.0.0.0, Zeitstempel: 0x535a510a
Ausnahmecode: 0xc0000005
Fehleroffset: 0x055736fd
ID des fehlerhaften Prozesses: 0x588
Startzeit der fehlerhaften Anwendung: 0xSDScan.exe0
Pfad der fehlerhaften Anwendung: SDScan.exe1
Pfad des fehlerhaften Moduls: SDScan.exe2
Berichtskennung: SDScan.exe3

Error: (06/21/2014 00:11:13 PM) (Source: MsiInstaller) (EventID: 1024) (User: Home)
Description: Produkt: Adobe Reader XI - Deutsch - Update "{AC76BA86-7AD7-0000-2550-7A8C40011007}" konnte nicht installiert werden. Fehlercode 1625. Windows Installer kann Protokolle erstellen, um bei der Problembehandlung betreffend der Installation von Softwarepaketen behilflich zu sein. Verwenden Sie folgenden Link, um Anweisungen zur Aktivierung der Protokollierungsunterstützung zu erhalten: hxxp://go.microsoft.com/fwlink/?LinkId=23127

Error: (06/19/2014 05:31:18 PM) (Source: ESENT) (EventID: 455) (User: )
Description: taskhost (2876) WebCacheLocal: Fehler -1811 beim Öffnen von Protokolldatei C:\Users\Dale\AppData\Local\Microsoft\Windows\WebCache\V0104F8B.log.

Error: (06/19/2014 05:22:11 PM) (Source: Windows Search Service) (EventID: 7010) (User: )
Description: Der Index kann nicht initialisiert werden.


Details:
	Der Inhaltsindexkatalog ist fehlerhaft.  (HRESULT : 0xc0041801) (0xc0041801)

Error: (06/19/2014 05:22:11 PM) (Source: Windows Search Service) (EventID: 3058) (User: )
Description: Die Anwendung kann nicht initialisiert werden.

Kontext: Windows Anwendung


Details:
	Der Inhaltsindexkatalog ist fehlerhaft.  (HRESULT : 0xc0041801) (0xc0041801)

Error: (06/19/2014 05:22:11 PM) (Source: Windows Search Service) (EventID: 3028) (User: )
Description: Das Gatherer-Objekt kann nicht initialisiert werden.

Kontext: Windows Anwendung, SystemIndex Katalog


Details:
	Der Inhaltsindexkatalog ist fehlerhaft.  (HRESULT : 0xc0041801) (0xc0041801)


System errors:
=============
Error: (07/02/2014 01:38:58 PM) (Source: WMPNetworkSvc) (EventID: 14332) (User: )
Description: WMPNetworkSvc0x80004005

Error: (07/02/2014 01:38:42 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT)
Description: AnwendungsspezifischLokalStart{C97FCC79-E628-407D-AE68-A06AD6D8B4D1}{344ED43D-D086-4961-86A6-1106F4ACAD9B}NT-AUTORITÄTSYSTEMS-1-5-18LocalHost (unter Verwendung von LRPC)

Error: (07/02/2014 01:38:05 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "Spybot-S&D 2 Scanner Service" wurde aufgrund folgenden Fehlers nicht gestartet: 
%%1053

Error: (07/02/2014 01:38:05 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Spybot-S&D 2 Scanner Service erreicht.

Error: (07/02/2014 01:37:31 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "msikbd" wurde aufgrund folgenden Fehlers nicht gestartet: 
%%1275

Error: (07/02/2014 01:37:31 PM) (Source: Application Popup) (EventID: 1060) (User: )
Description: Aufgrund der Inkompatibilität mit diesem System wurde \SystemRoot\SysWow64\Drivers\msikbd.SYS nicht geladen. Wenden Sie sich an den Softwarehersteller, um eine kompatible Version des Treibers zu erhalten.

Error: (07/01/2014 07:15:06 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Der Dienst "Windows Modules Installer" wurde mit folgendem Fehler beendet: 
%%16405

Error: (07/01/2014 07:14:29 PM) (Source: Disk) (EventID: 11) (User: )
Description: Der Treiber hat einen Controllerfehler auf \Device\Harddisk0\DR0 gefunden.

Error: (07/01/2014 07:14:29 PM) (Source: Disk) (EventID: 11) (User: )
Description: Der Treiber hat einen Controllerfehler auf \Device\Harddisk0\DR0 gefunden.

Error: (07/01/2014 07:14:29 PM) (Source: Disk) (EventID: 11) (User: )
Description: Der Treiber hat einen Controllerfehler auf \Device\Harddisk0\DR0 gefunden.


Microsoft Office Sessions:
=========================
Error: (04/14/2011 08:27:16 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6545.5000, Microsoft Office Version: 12.0.6425.1000. This session lasted 1 seconds with 0 seconds of active time.  This session ended with a crash.


CodeIntegrity Errors:
===================================
  Date: 2014-06-17 19:24:21.452
  Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\ELAMBKUP\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.

  Date: 2014-06-17 19:24:21.450
  Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\ELAMBKUP\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.

  Date: 2014-06-17 19:24:21.417
  Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\KLELAMX64\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.

  Date: 2014-06-17 19:24:21.409
  Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\KLELAMX64\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.

  Date: 2014-06-17 19:22:49.896
  Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\ELAMBKUP\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.

  Date: 2014-06-17 19:22:49.881
  Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\KLELAMX64\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.

  Date: 2014-05-13 20:26:50.052
  Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\ELAMBKUP\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.

  Date: 2014-05-13 20:26:50.049
  Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\ELAMBKUP\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.

  Date: 2014-05-13 20:26:50.044
  Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\KLELAMX64\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.

  Date: 2014-05-13 20:26:50.042
  Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\KLELAMX64\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.


==================== Memory info =========================== 

Percentage of memory in use: 31%
Total physical RAM: 6135.11 MB
Available physical RAM: 4209.68 MB
Total Pagefile: 12268.41 MB
Available Pagefile: 10066.43 MB
Total Virtual: 8192 MB
Available Virtual: 8191.82 MB

==================== Drives ================================

Drive c: (Boot) (Fixed) (Total:905.41 GB) (Free:578.59 GB) NTFS
Drive d: (Recover) (Fixed) (Total:25 GB) (Free:15.99 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (Size: 932 GB) (Disk ID: 2BAB359D)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=905 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=25 GB) - (Type=07 NTFS)
Partition 4: (Not Active) - (Size=1 GB) - (Type=12)

==================== End Of Log ============================
         
Code:
ATTFilter
GMER 2.1.19357 - hxxp://www.gmer.net
Rootkit scan 2014-07-02 14:02:33
Windows 6.1.7601 Service Pack 1 x64 \Device\Harddisk0\DR0 -> \Device\Ide\IAAStorageDevice-1 ST310005 rev.CC44 931,51GB
Running: 6n0zzb44.exe; Driver: C:\Users\Dale\AppData\Local\Temp\fgtdipow.sys


---- User code sections - GMER 2.1 ----

.text  C:\Windows\SysWOW64\PnkBstrA.exe[1880] C:\Windows\SysWOW64\WSOCK32.dll!setsockopt + 322                                                                 0000000071c91a22 2 bytes [C9, 71]
.text  C:\Windows\SysWOW64\PnkBstrA.exe[1880] C:\Windows\SysWOW64\WSOCK32.dll!setsockopt + 496                                                                 0000000071c91ad0 2 bytes [C9, 71]
.text  C:\Windows\SysWOW64\PnkBstrA.exe[1880] C:\Windows\SysWOW64\WSOCK32.dll!setsockopt + 552                                                                 0000000071c91b08 2 bytes [C9, 71]
.text  C:\Windows\SysWOW64\PnkBstrA.exe[1880] C:\Windows\SysWOW64\WSOCK32.dll!setsockopt + 730                                                                 0000000071c91bba 2 bytes [C9, 71]
.text  C:\Windows\SysWOW64\PnkBstrA.exe[1880] C:\Windows\SysWOW64\WSOCK32.dll!setsockopt + 762                                                                 0000000071c91bda 2 bytes [C9, 71]
.text  C:\Program Files (x86)\Common Files\Research In Motion\USB Drivers\RIMBBLaunchAgent.exe[2656] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 69   00000000754e1465 2 bytes [4E, 75]
.text  C:\Program Files (x86)\Common Files\Research In Motion\USB Drivers\RIMBBLaunchAgent.exe[2656] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 155  00000000754e14bb 2 bytes [4E, 75]
.text  ...                                                                                                                                                     * 2
.text  C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe[2696] C:\Windows\syswow64\psapi.dll!GetModuleInformation + 69                             00000000754e1465 2 bytes [4E, 75]
.text  C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe[2696] C:\Windows\syswow64\psapi.dll!GetModuleInformation + 155                            00000000754e14bb 2 bytes [4E, 75]
.text  ...                                                                                                                                                     * 2
.text  C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe[4048] C:\Windows\syswow64\psapi.dll!GetModuleInformation + 69                            00000000754e1465 2 bytes [4E, 75]
.text  C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe[4048] C:\Windows\syswow64\psapi.dll!GetModuleInformation + 155                           00000000754e14bb 2 bytes [4E, 75]
.text  ...                                                                                                                                                     * 2

---- Disk sectors - GMER 2.1 ----

Disk   \Device\Harddisk0\DR0                                                                                                                                   unknown MBR code

---- EOF - GMER 2.1 ----
         
Hoffe mir kann da jemand helfen, danke schonmal im voraus.

Alt 02.07.2014, 13:53   #2
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
PC fängt nach 10min. an zu laggen und/ oder bleibt hängen - Standard

PC fängt nach 10min. an zu laggen und/ oder bleibt hängen



Hi,

nutzt du den Rechner auch gewerblich oder haben Adob CS3/CS4 andere Gründe?
Bisher schon mal irgendwelche Funde des Virenscanner dagewesen?
__________________

__________________

Alt 02.07.2014, 14:06   #3
Instinct84
 
PC fängt nach 10min. an zu laggen und/ oder bleibt hängen - Standard

PC fängt nach 10min. an zu laggen und/ oder bleibt hängen



Also vielleicht sollte ich erstmal erwähnen das dieses nicht mein Rechner sondern der eines Kumpels ist, warum da CS3/CS4 drauf ist kann ich nicht sagen, aber gewerblich wird dieser Rechner meines wissens nicht benutzt, aber ich kann gerne nochmal nachfragen.

Soweit ich weiss hatte Malwarebytes ca 30 Funde gemeldet, allerdings hatte mein Kumepel das selbst gemacht und als ich Malwarebytes laufen lies, gab es keine Funde mehr.
__________________

Alt 02.07.2014, 14:32   #4
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
PC fängt nach 10min. an zu laggen und/ oder bleibt hängen - Standard

PC fängt nach 10min. an zu laggen und/ oder bleibt hängen



Dann bitte alle Logs von Malwarebytes mit Funden posten.
__________________
Logfiles bitte immer in CODE-Tags posten

Alt 02.07.2014, 15:07   #5
Instinct84
 
PC fängt nach 10min. an zu laggen und/ oder bleibt hängen - Standard

PC fängt nach 10min. an zu laggen und/ oder bleibt hängen



Werden diese denn automatisch auf dem rechner hinterlegt? Denn ich glaube nicht das er irgentwelche logfiles angelegt hat


Alt 02.07.2014, 15:09   #6
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
PC fängt nach 10min. an zu laggen und/ oder bleibt hängen - Standard

PC fängt nach 10min. an zu laggen und/ oder bleibt hängen



Starte MBAM, klicke auf Verlauf und dann auf Anwendungsprotokolle.
Wähle das neueste Suchlauf-Protokoll aus und klicke auf Ansicht. Wähle Exportieren auf Textdatei (.txt) und speichere die Datei als mbam.txt auf dem Desktop ab.
Füge den Inhalt der mbam.txt mit deiner nächsten Antwort hinzu.
__________________
--> PC fängt nach 10min. an zu laggen und/ oder bleibt hängen

Alt 02.07.2014, 17:04   #7
Instinct84
 
PC fängt nach 10min. an zu laggen und/ oder bleibt hängen - Standard

PC fängt nach 10min. an zu laggen und/ oder bleibt hängen



Das ist der Scan-Log vom 19.06.2014, in den späteren Logs hat er nichts mehr gefunden.

Code:
ATTFilter
 Malwarebytes Anti-Malware 
www.malwarebytes.org

Scan Date: 19.06.2014
Scan Time: 18:12:17
Logfile: mbam.txt
Administrator: Yes

Version: 2.00.2.1012
Malware Database: v2014.06.19.07
Rootkit Database: v2014.06.02.01
License: Free
Malware Protection: Disabled
Malicious Website Protection: Disabled
Self-protection: Disabled

OS: Windows 7 Service Pack 1
CPU: x64
File System: NTFS
User: Dale

Scan Type: Threat Scan
Result: Completed
Objects Scanned: 294761
Time Elapsed: 9 min, 18 sec

Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Disabled
Heuristics: Enabled
PUP: Enabled
PUM: Enabled

Processes: 1
PUP.Optional.Iminent, C:\Program Files (x86)\Common Files\Umbrella\umbrella.exe, 2176, Delete-on-Reboot, [312285f50c6fa88e8d15be4d51b09070]

Modules: 0
(No malicious items detected)

Registry Keys: 149
PUP.Optional.Iminent, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\SProtection, Quarantined, [312285f50c6fa88e8d15be4d51b09070], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\CLASSES\CLSID\{A09AB6EB-31B5-454C-97EC-9B294D92EE2A}, Quarantined, [a9aa2456730863d337dc5821ae5451af], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\CLASSES\CLSID\{5C176BA0-6FC0-4EBD-8ACF-24AC592506B6}, Quarantined, [a9aa2456730863d337dc5821ae5451af], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\CLASSES\TYPELIB\{A9CAF365-EA35-45DA-BD8B-2EFA09D374AC}, Quarantined, [a9aa2456730863d337dc5821ae5451af], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{C58D664A-3DBC-4925-AE74-0382007DF113}, Quarantined, [a9aa2456730863d337dc5821ae5451af], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{C776D7F4-BA85-4B75-AAFC-3A0A11FE6E36}, Quarantined, [a9aa2456730863d337dc5821ae5451af], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{C58D664A-3DBC-4925-AE74-0382007DF113}, Quarantined, [a9aa2456730863d337dc5821ae5451af], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{C776D7F4-BA85-4B75-AAFC-3A0A11FE6E36}, Quarantined, [a9aa2456730863d337dc5821ae5451af], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{A9CAF365-EA35-45DA-BD8B-2EFA09D374AC}, Quarantined, [a9aa2456730863d337dc5821ae5451af], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\CLASSES\IminentWebBooster.ScriptExtender.1, Quarantined, [a9aa2456730863d337dc5821ae5451af], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\CLASSES\IminentWebBooster.ScriptExtender, Quarantined, [a9aa2456730863d337dc5821ae5451af], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\IminentWebBooster.ScriptExtender, Quarantined, [a9aa2456730863d337dc5821ae5451af], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\IminentWebBooster.ScriptExtender.1, Quarantined, [a9aa2456730863d337dc5821ae5451af], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{5C176BA0-6FC0-4EBD-8ACF-24AC592506B6}, Quarantined, [a9aa2456730863d337dc5821ae5451af], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{A09AB6EB-31B5-454C-97EC-9B294D92EE2A}, Quarantined, [a9aa2456730863d337dc5821ae5451af], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\CLASSES\IminentWebBooster.BrowserHelperObject.1, Quarantined, [a9aa2456730863d337dc5821ae5451af], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\CLASSES\IminentWebBooster.BrowserHelperObject, Quarantined, [a9aa2456730863d337dc5821ae5451af], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\IminentWebBooster.BrowserHelperObject, Quarantined, [a9aa2456730863d337dc5821ae5451af], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{A09AB6EB-31B5-454C-97EC-9B294D92EE2A}, Quarantined, [a9aa2456730863d337dc5821ae5451af], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{A09AB6EB-31B5-454C-97EC-9B294D92EE2A}, Quarantined, [a9aa2456730863d337dc5821ae5451af], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\IminentWebBooster.BrowserHelperObject.1, Quarantined, [a9aa2456730863d337dc5821ae5451af], 
PUP.Optional.Iminent.A, HKU\S-1-5-21-224901007-3534270279-3868180721-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{A09AB6EB-31B5-454C-97EC-9B294D92EE2A}, Quarantined, [a9aa2456730863d337dc5821ae5451af], 
PUP.Optional.Iminent.A, HKU\S-1-5-21-224901007-3534270279-3868180721-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{A09AB6EB-31B5-454C-97EC-9B294D92EE2A}, Quarantined, [a9aa2456730863d337dc5821ae5451af], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\CLASSES\CLSID\{A09AB6EB-31B5-454C-97EC-9B294D92EE2A}\INPROCSERVER32, Quarantined, [a9aa2456730863d337dc5821ae5451af], 
PUP.Optional.SoftwareUpdater, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{67BD9EEB-AA06-4329-A940-D250019300C9}, Quarantined, [b49f5723f3880c2a0b51c8841be76c94], 
PUP.Optional.SoftwareUpdater, HKLM\SOFTWARE\CLASSES\Updater.AmiUpd.1, Quarantined, [b49f5723f3880c2a0b51c8841be76c94], 
PUP.Optional.SoftwareUpdater, HKLM\SOFTWARE\CLASSES\Updater.AmiUpd, Quarantined, [b49f5723f3880c2a0b51c8841be76c94], 
PUP.Optional.SoftwareUpdater, HKLM\SOFTWARE\WOW6432NODE\CLASSES\Updater.AmiUpd, Quarantined, [b49f5723f3880c2a0b51c8841be76c94], 
PUP.Optional.SoftwareUpdater, HKLM\SOFTWARE\WOW6432NODE\CLASSES\Updater.AmiUpd.1, Quarantined, [b49f5723f3880c2a0b51c8841be76c94], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{0af350d9-3916-454b-ac53-0b0b65f41301}, Quarantined, [bf9498e224571e18e704a4d50bf7c63a], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{68B81CCD-A80C-4060-8947-5AE69ED01199}, Quarantined, [73e0fc7e6b10c670529a0376867c55ab], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{E6B969FB-6D33-48d2-9061-8BBD4899EB08}, Quarantined, [2a294f2b5526aa8cb934e29722e045bb], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\CLASSES\Iminent.Mediator.Communication.DataContracts.ShowControlCenterCommand, Quarantined, [fa593d3d25567eb81baf5425936fe31d], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\Iminent.Mediator.Communication.DataContracts.ShowControlCenterCommand, Quarantined, [3a19a4d68bf03cfa5a70a0d9ff0308f8], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\Iminent, Quarantined, [bc978ded5f1c56e0cfeb606761a1f010], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\CLASSES\iminent, Quarantined, [0a497efc2952ce6828cfe9080df6b947], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\CLASSES\Iminent.Business.Tinyfying.DownloadArgs, Quarantined, [470c0b6fe992280e12bc5e7f3ac9ed13], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\CLASSES\Iminent.Business.Tinyfying.LinkToPromoteArgs, Quarantined, [a4afd3a7116a162023ab1ebf778ca35d], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\CLASSES\Iminent.Business.Tinyfying.RawDataArgs, Quarantined, [91c23941b7c468cea727d20be71c768a], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\CLASSES\Iminent.Business.Tinyfying.TinyUrlArgs, Quarantined, [67ece3971c5f1125d0fe9c4122e121df], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\CLASSES\Iminent.Business.Tinyfying.ViralLinkArgs, Quarantined, [a1b2b2c84437b77f7757558863a0e719], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\CLASSES\Iminent.Mediator.Communication.ClientCallback, Quarantined, [044f700a8af148ee49e35a80778c639d], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\CLASSES\Iminent.Mediator.Communication.ContractBase, Quarantined, [7dd6f486bcbf82b4f53739a14db6b14f], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\CLASSES\Iminent.Mediator.Communication.DataContracts.AddToUserContentCommand, Quarantined, [f75c205a55266accfb310dcd9d66c838], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\CLASSES\Iminent.Mediator.Communication.DataContracts.CheckLoginStatusCommand, Quarantined, [70e38ded0873b3835ece34a6ed16fc04], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\CLASSES\Iminent.Mediator.Communication.DataContracts.CleanCacheCommand, Quarantined, [183b02782e4d50e667c566741ae952ae], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\CLASSES\Iminent.Mediator.Communication.DataContracts.GameOverCallback, Quarantined, [a6ad69117cff53e32606c3170df6669a], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\CLASSES\Iminent.Mediator.Communication.DataContracts.GetCreditCommand, Quarantined, [a8ab0a7022592a0c83a934a6fa09e41c], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\CLASSES\Iminent.Mediator.Communication.DataContracts.GetInstallationContextCommand, Quarantined, [aaa9d8a22457290d8f9decee16ed2fd1], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\CLASSES\Iminent.Mediator.Communication.DataContracts.GetLoginStatusCommand, Quarantined, [d47f96e46b100f27da528c4eb84b43bd], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\CLASSES\Iminent.Mediator.Communication.DataContracts.GetLoginStatusResult, Quarantined, [470cacce4e2d95a195971dbd93707789], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\CLASSES\Iminent.Mediator.Communication.DataContracts.GetVariableCommand, Quarantined, [252e91e9611a77bf111bc6148f74a858], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\CLASSES\Iminent.Mediator.Communication.DataContracts.GetVariableResult, Quarantined, [6ae9aecc7b005bdbed3f479382819769], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\CLASSES\Iminent.Mediator.Communication.DataContracts.InstallationContextResult, Quarantined, [1b380872a2d9df57c76519c1d62d0bf5], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\CLASSES\Iminent.Mediator.Communication.DataContracts.LoadContentCommand, Quarantined, [242fc0ba2952999de943a7338e75b050], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\CLASSES\Iminent.Mediator.Communication.DataContracts.LoadContentCommandResult, Quarantined, [73e0bcbed0abb5816ebee3f78c77d52b], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\CLASSES\Iminent.Mediator.Communication.DataContracts.LoginCommand, Quarantined, [a2b1a4d6433823138aa2ae2c08fbe61a], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\CLASSES\Iminent.Mediator.Communication.DataContracts.LoginStatusChangedCallback, Quarantined, [72e13446d0ab2511210b0bcfb74cb848], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\CLASSES\Iminent.Mediator.Communication.DataContracts.LogoutCommand, Quarantined, [e56ee595196273c3ad7ff6e4d82b48b8], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\CLASSES\Iminent.Mediator.Communication.DataContracts.MergeIdentityCommand, Quarantined, [3c17afcb0a711c1ad25aa733946f7d83], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\CLASSES\Iminent.Mediator.Communication.DataContracts.MyAccountCommand, Quarantined, [440f6a109dde73c3ab81a13924df7789], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\CLASSES\Iminent.Mediator.Communication.DataContracts.PlayContentCommand, Quarantined, [dc7721599edd92a4c36957833bc8a55b], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\CLASSES\Iminent.Mediator.Communication.DataContracts.PostContentCallback, Quarantined, [361deb8fdaa1f3431d0fd00a3ac9847c], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\CLASSES\Iminent.Mediator.Communication.DataContracts.RecycleViewsCommand, Quarantined, [9eb5f486bebd0e28f03c1fbb030032ce], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\CLASSES\Iminent.Mediator.Communication.DataContracts.SetVariableCommand, Quarantined, [72e1eb8f0972be781c10c812a55e7888], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\CLASSES\Iminent.Mediator.Communication.DataContracts.ShowBrowserWindowCommand, Quarantined, [d67de39789f243f3da52c91103008779], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\CLASSES\Iminent.Mediator.Communication.DataContracts.ShowPluginWindowCommand, Quarantined, [183b97e3bcbfb18589a37c5e53b01de3], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\CLASSES\Iminent.Mediator.Communication.DataContracts.TestContentCommand, Quarantined, [450e8ded3546e5518ba1ededc83bb749], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\CLASSES\Iminent.Mediator.Communication.DataContracts.UserContentChangedCallback, Quarantined, [183b3347126944f2b6761bbf7d8601ff], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\CLASSES\Iminent.Mediator.Communication.DataContracts.VariableChangedCallback, Quarantined, [66ed334766158bab9a922cae34cf7f81], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\CLASSES\Iminent.Mediator.Communication.DataContracts.WarmUpCommand, Quarantined, [ed66007a0a7152e4b874c71314efa65a], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\CLASSES\Iminent.Mediator.Communication.DataContracts.WelcomeCommand, Quarantined, [87ccfd7db3c834026dbfa43620e3bd43], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\CLASSES\Iminent.Mediator.Communication.ServerCommand, Quarantined, [dd7655250e6d48eed8546971a75c05fb], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\CLASSES\Iminent.Mediator.Communication.ServerResult, Quarantined, [aba826547a01dd590e1ec7138f74b54b], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\CLASSES\Iminent.Mediator.LightContent, Quarantined, [b1a2d3a7c8b3b97d9399c614f40f15eb], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\CLASSES\Iminent.Mediator.LightUri, Quarantined, [b2a15f1b84f77cbae349a13932d129d7], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\CLASSES\Iminent.Mediator.MediatorServiceProxy, Quarantined, [6fe4dd9d57244de9e349a139659ec040], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\CLASSES\IminentWebBooster.ActiveContentHandle.1, Quarantined, [db78db9f80fb3105a32a2bb205fe4db3], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\CLASSES\IminentWebBooster.ActiveContentHandler, Quarantined, [5300ef8ba9d2092dfdd038a5fe0558a8], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\CLASSES\IminentWebBooster.TinyUrlHandler, Quarantined, [9db609710873ae88c8057a6355ae38c8], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\CLASSES\APPID\Iminent.WebBooster.InternetExplorer.DLL, Quarantined, [ba995c1e89f22313358ef0f57c87857b], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\WOW6432NODE\Iminent, Quarantined, [2f241f5bb0cb0e28c3f744833bc7b947], 
PUP.Optional.MediaBuzz.A, HKLM\SOFTWARE\WOW6432NODE\MediaBuzzV1, Quarantined, [75dedb9f5c1fbb7b0d55644e1be7728e], 
PUP.Optional.MediaBuzz.A, HKLM\SOFTWARE\WOW6432NODE\MediaBuzzV1mode6239, Quarantined, [fd5608729fdcdc5a164c4a6832d0cc34], 
PUP.Optional.MediaPlayerAlpha.A, HKLM\SOFTWARE\WOW6432NODE\MediaPlayerV1alpha989, Quarantined, [1c371664ec8f8bab6c9d6e563cc654ac], 
PUP.Optional.MediaViewer.A, HKLM\SOFTWARE\WOW6432NODE\MediaViewerV1alpha520, Quarantined, [233088f286f5ae88491d407f9f63cf31], 
PUP.Optional.MediaView.A, HKLM\SOFTWARE\WOW6432NODE\MediaViewV1alpha1203, Quarantined, [99ba3644adce47efefcac5f929d930d0], 
PUP.Optional.MediaWatch.A, HKLM\SOFTWARE\WOW6432NODE\MediaWatchV1home354, Quarantined, [1e351f5b601b51e50310c037ab5848b8], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\iminent, Quarantined, [282b80faa7d4c6706f887e7333d0f010], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\Iminent.Business.Tinyfying.DownloadArgs, Quarantined, [b59ee69488f369cd04ca736a53b09b65], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\Iminent.Business.Tinyfying.LinkToPromoteArgs, Quarantined, [b3a08eec3447191d7b53bf1e6e95d12f], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\Iminent.Business.Tinyfying.RawDataArgs, Quarantined, [f85be09aef8c87af02cca93416ed34cc], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\Iminent.Business.Tinyfying.TinyUrlArgs, Quarantined, [42115c1ef289ce68616dc01d34cf7e82], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\Iminent.Business.Tinyfying.ViralLinkArgs, Quarantined, [73e0c0ba3f3c56e00cc207d68a797c84], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\Iminent.Mediator.Communication.ClientCallback, Quarantined, [3221c5b51269f93d0a22be1c9e65e31d], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\Iminent.Mediator.Communication.ContractBase, Quarantined, [044feb8fbfbc50e6d95357839a6957a9], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\Iminent.Mediator.Communication.DataContracts.AddToUserContentCommand, Quarantined, [ee655327a1dabf772b011dbd8f742cd4], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\Iminent.Mediator.Communication.DataContracts.CheckLoginStatusCommand, Quarantined, [a5aeef8b12693501ed3f538746bd6898], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\Iminent.Mediator.Communication.DataContracts.CleanCacheCommand, Quarantined, [73e0fe7cf4874aecc16bcb0fc241728e], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\Iminent.Mediator.Communication.DataContracts.GameOverCallback, Quarantined, [fc576119f08bbe78fd2fe4f616ed6f91], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\Iminent.Mediator.Communication.DataContracts.GetCreditCommand, Quarantined, [f261304a0873c076979526b408fba25e], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\Iminent.Mediator.Communication.DataContracts.GetInstallationContextCommand, Quarantined, [5201a9d1502bc47256d67268fa090ff1], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\Iminent.Mediator.Communication.DataContracts.GetLoginStatusCommand, Quarantined, [13401d5d65164aecb17b9d3d847f6799], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\Iminent.Mediator.Communication.DataContracts.GetLoginStatusResult, Quarantined, [5300f1894c2fba7ce6463e9c25de20e0], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\Iminent.Mediator.Communication.DataContracts.GetVariableCommand, Quarantined, [b59e354579020f2779b34892bc47b64a], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\Iminent.Mediator.Communication.DataContracts.GetVariableResult, Quarantined, [fd5678026f0c092d1814558593704db3], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\Iminent.Mediator.Communication.DataContracts.InstallationContextResult, Quarantined, [401356248deede58f23af7e33ec52cd4], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\Iminent.Mediator.Communication.DataContracts.LoadContentCommand, Quarantined, [5ef53a40f883de589993ededd52eaa56], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\Iminent.Mediator.Communication.DataContracts.LoadContentCommandResult, Quarantined, [450ea4d6fa81072f101ca733da2911ef], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\Iminent.Mediator.Communication.DataContracts.LoginCommand, Quarantined, [530082f84d2eca6c87a5974347bc6c94], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\Iminent.Mediator.Communication.DataContracts.LoginStatusChangedCallback, Quarantined, [0f44bebc106bde58be6e815925deab55], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\Iminent.Mediator.Communication.DataContracts.LogoutCommand, Quarantined, [2d2626542952ff370626e9f1eb18b64a], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\Iminent.Mediator.Communication.DataContracts.MergeIdentityCommand, Quarantined, [ba991f5b99e29d9986a6fae010f35aa6], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\Iminent.Mediator.Communication.DataContracts.MyAccountCommand, Quarantined, [96bdbcbe2f4c2e0840ec79614db69070], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\Iminent.Mediator.Communication.DataContracts.PlayContentCommand, Quarantined, [e76c3f3b067588aefb31ce0c8f7449b7], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\Iminent.Mediator.Communication.DataContracts.PostContentCallback, Quarantined, [163d4634304b072f8f9d9545f1129e62], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\Iminent.Mediator.Communication.DataContracts.RecycleViewsCommand, Quarantined, [be95c8b2c1baa78fd25a1fbbe91a59a7], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\Iminent.Mediator.Communication.DataContracts.SetVariableCommand, Quarantined, [143f8af0cbb068ceb973875345bea45c], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\Iminent.Mediator.Communication.DataContracts.ShowBrowserWindowCommand, Quarantined, [fa594a303e3d42f4ab81ba2043c0728e], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\Iminent.Mediator.Communication.DataContracts.ShowPluginWindowCommand, Quarantined, [ec677cfec1ba6accba7223b7cf348977], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\Iminent.Mediator.Communication.DataContracts.TestContentCommand, Quarantined, [084b6317344738fe5bd121b9dc27619f], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\Iminent.Mediator.Communication.DataContracts.UserContentChangedCallback, Quarantined, [57fcd6a415665adc002ceceebb480cf4], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\Iminent.Mediator.Communication.DataContracts.VariableChangedCallback, Quarantined, [b0a3a8d22a51fd3964c823b751b2eb15], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\Iminent.Mediator.Communication.DataContracts.WarmUpCommand, Quarantined, [d47f0575403b5bdb2c007565d92aa65a], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\Iminent.Mediator.Communication.DataContracts.WelcomeCommand, Quarantined, [480b90eab8c38da9e646697125de39c7], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\Iminent.Mediator.Communication.ServerCommand, Quarantined, [afa40d6de497f244101cf6e4f70c4cb4], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\Iminent.Mediator.Communication.ServerResult, Quarantined, [41123d3dafcc6fc74ce03aa0db28d729], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\Iminent.Mediator.LightContent, Quarantined, [470ca1d981fac86e86a699416d96e917], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\Iminent.Mediator.LightUri, Quarantined, [74df9fdb7308c47250dc7a60cb3848b8], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\Iminent.Mediator.MediatorServiceProxy, Quarantined, [4b08e79334471125d458ce0cef148f71], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\IminentWebBooster.ActiveContentHandle.1, Quarantined, [ff54d1a999e2b482428bd50852b1748c], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\IminentWebBooster.ActiveContentHandler, Quarantined, [53003c3ec5b62511a825518c1de6a15f], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\IminentWebBooster.TinyUrlHandler, Quarantined, [ec67f387681388ae27a6637aaf5457a9], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\APPID\Iminent.WebBooster.InternetExplorer.DLL, Quarantined, [1b382357bebd7fb75271ad3855aeaf51], 
PUP.Optional.Iminent.A, HKLM\SOFTWARE\WOW6432NODE\GOOGLE\CHROME\EXTENSIONS\igdhbblpcellaljokkpfhcjlagemhgjl, Quarantined, [5ff4f9814d2e24129623d4f3f60c5fa1], 
PUP.Optional.BetterSurf.A, HKLM\SOFTWARE\WOW6432NODE\GOOGLE\CHROME\EXTENSIONS\mmifolfpllfdhilecpdpmemhelmanajl, Quarantined, [74df037738430f279ac53277768ccf31], 
PUP.Optional.BetterSurf.A, HKLM\SOFTWARE\WOW6432NODE\GOOGLE\CHROME\EXTENSIONS\poheodfamflhhhdcmjfeggbgigeefaco, Quarantined, [94bf1e5c4536d66000d9dae0a2604ab6], 
PUP.Optional.Webexp, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\Webexp Enhanced, Quarantined, [df7425551c5f072f2b9ec501e81aff01], 
PUP.Optional.Umbrella.A, HKLM\SOFTWARE\WOW6432NODE\UMBRELLA, Quarantined, [e86b0278710a0234e084627ce71cf808], 
Adware.FLVPlayer, HKU\S-1-5-21-224901007-3534270279-3868180721-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\FLV Direct Player, Quarantined, [55fe5228b5c63bfb8030de56fc07e31d], 
PUP.Optional.Iminent.A, HKU\S-1-5-21-224901007-3534270279-3868180721-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\Iminent, Quarantined, [1e3512687308b5816a517c4bf60cd22e], 
PUP.Optional.Iminent.A, HKU\S-1-5-21-224901007-3534270279-3868180721-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\LOWREGISTRY\Iminent, Quarantined, [da797bff72092511e603357c45bd7f81], 
PUP.Optional.Softonic.A, HKU\S-1-5-21-224901007-3534270279-3868180721-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\SOFTONIC\Universal Downloader, Quarantined, [57fc3347a3d8b97ded8465509a6851af], 
Adware.WebHancer, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\2M Arcade Bubbles, Quarantined, [520169110b700e2868be453abd451de3], 
PUP.Optional.MediaPlayerAlpha.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\MediaPlayerV1alpha989, Quarantined, [480bcab078032c0aba6bf69992709e62], 
PUP.Optional.MediaViewer.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\MediaViewerV1alpha520, Quarantined, [fe55e793780304325caa147d4eb48b75], 
PUP.Optional.MediaView.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\MediaViewV1alpha1203, Quarantined, [0a49770335462b0b6ec7256c0bf701ff], 
PUP.Optional.MediaWatch.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\MediaWatchV1home354, Quarantined, [3a1945359ae191a5fb7cdab9fd0510f0], 
PUP.Optional.MediaBuzz.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\MediaBuzzV1mode6239, Quarantined, [23307208a7d410260078a5f4df23d12f], 

Registry Values: 9
PUP.Optional.BetterSurf.A, HKLM\SOFTWARE\WOW6432NODE\MOZILLA\FIREFOX\EXTENSIONS|ext@bettersurfplus.com, C:\Program Files (x86)\BetterSurf\BetterSurfPlus\ff, Quarantined, [69eabfbb0b7076c0d28e5d4c6a98cd33]
PUP.Optional.WebExpEnhanced.A, HKLM\SOFTWARE\WOW6432NODE\MOZILLA\FIREFOX\EXTENSIONS|ext@WebexpEnhancedV1alpha136.net, C:\Program Files (x86)\WebexpEnhancedV1\WebexpEnhancedV1alpha136\ff, Quarantined, [9db6b1c9007b57df644cbd0648baf808]
PUP.Optional.MediaPlayerAlpha.A, HKLM\SOFTWARE\WOW6432NODE\MOZILLA\FIREFOX\EXTENSIONS|ext@MediaPlayerV1alpha989.net, C:\Program Files (x86)\MediaPlayerV1\MediaPlayerV1alpha989\ff, Quarantined, [58fbfb7f2e4d0432f812913308fab749]
PUP.Optional.MediaViewer.A, HKLM\SOFTWARE\WOW6432NODE\MOZILLA\FIREFOX\EXTENSIONS|ext@MediaViewerV1alpha520.net, C:\Program Files (x86)\MediaViewerV1\MediaViewerV1alpha520\ff, Quarantined, [c192d5a56d0e7db9aeb91ca38c7602fe]
PUP.Optional.MediaView.A, HKLM\SOFTWARE\WOW6432NODE\MOZILLA\FIREFOX\EXTENSIONS|ext@MediaViewV1alpha1203.net, C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha1203\ff, Quarantined, [aca758223942290dd2e85b63fb0736ca]
PUP.Optional.MediaWatch.A, HKLM\SOFTWARE\WOW6432NODE\MOZILLA\FIREFOX\EXTENSIONS|ext@MediaWatchV1home354.net, C:\Program Files (x86)\MediaWatchV1\MediaWatchV1home354\ff, Quarantined, [7cd7700a730854e2fb199562798ab44c]
PUP.Optional.MediaBuzz.A, HKLM\SOFTWARE\WOW6432NODE\MOZILLA\FIREFOX\EXTENSIONS|ext@MediaBuzzV1mode6239.net, C:\Program Files (x86)\MediaBuzzV1\MediaBuzzV1mode6239\ff, Quarantined, [e96a4d2d0f6c77bf82e1cce6758d4db3]
PUP.Optional.Umbrella.A, HKLM\SOFTWARE\WOW6432NODE\UMBRELLA|MUpdBlock, {
   "MASSUPDATE" : {
      "CHROME_MBAR" : {
         "Checked" : 1,
         "RetryIdx" : 0,
         "Version" : 1
      },
      "FIREFOX_MBAR" : {
         "Checked" : 1,
         "RetryIdx" : 0,
         "Version" : 0,
         "cmd" : "",
         "url" : "hxxp://vzapp.iminent.com/vz/C2C3AC84-2B90-47A7-8E0B-A48CBCAC2CEC/1/MbarFfx.exe"
      },
      "IEXPLORE_BHO" : {
         "Checked" : 1,
         "RetryIdx" : 0,
         "Version" : 4
      }
   }
}
, Quarantined, [e86b0278710a0234e084627ce71cf808]
PUP.Optional.Iminent.A, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\SPROTECTION|ImagePath, C:\Program Files (x86)\Common Files\Umbrella\umbrella.exe, Quarantined, [fb582951e19abc7a51c9b1291ce77987]

Registry Data: 0
(No malicious items detected)

Folders: 94
PUP.Optional.Iminent.A, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Iminent, Quarantined, [f95a93e7fe7d6dc9165805d716ede917], 
PUP.Optional.DownloadGuide.A, C:\Users\Dale\AppData\Local\DownloadGuide, Quarantined, [a2b1304a90eb04320b3545a33bc806fa], 
PUP.Optional.DownloadGuide.A, C:\Users\Dale\AppData\Local\DownloadGuide\Offers, Quarantined, [a2b1304a90eb04320b3545a33bc806fa], 
Adware.WebHancer, C:\Program Files\2M Games, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\help, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\bin, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\bin\client, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\applet, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\audio, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\cmm, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\ext, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\fonts, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\i386, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\images, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\images\cursors, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\security, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Africa, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America\Indiana, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America\Kentucky, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America\North_Dakota, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Antarctica, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Asia, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Atlantic, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Australia, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Etc, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Europe, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Indian, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Pacific, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\music, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\skins, Quarantined, [520169110b700e2868be453abd451de3], 
PUP.Optional.Iminent.A, C:\ProgramData\Iminent\Mediator, Quarantined, [89ca3842bdbe181e344690fc6f93db25], 
PUP.Optional.Iminent.A, C:\ProgramData\Iminent\Mediator\Datas, Quarantined, [89ca3842bdbe181e344690fc6f93db25], 
PUP.Optional.Iminent.A, C:\ProgramData\Iminent\Mediator\Datas\Cache, Quarantined, [89ca3842bdbe181e344690fc6f93db25], 
PUP.Optional.Iminent.A, C:\ProgramData\Iminent\Mediator\Datas\Cache\api.iminent.com, Quarantined, [89ca3842bdbe181e344690fc6f93db25], 
PUP.Optional.Iminent.A, C:\ProgramData\Iminent\Mediator\Datas\Cache\apix.iminent.com, Quarantined, [89ca3842bdbe181e344690fc6f93db25], 
PUP.Optional.Iminent.A, C:\Users\Dale\AppData\Roaming\Iminent\Mediator, Quarantined, [510295e5ea911d191268d4b841c1ed13], 
PUP.Optional.Iminent.A, C:\Users\Dale\AppData\Roaming\Iminent\Mediator\Datas, Quarantined, [510295e5ea911d191268d4b841c1ed13], 
PUP.Optional.OpenCandy, C:\Users\Dale\AppData\Roaming\OpenCandy, Quarantined, [450ed2a8f58645f14867f19b50b28080], 
PUP.Optional.OpenCandy, C:\Users\Dale\AppData\Roaming\OpenCandy\34AC48FD435149258A5B2FF8529BF4B6, Quarantined, [450ed2a8f58645f14867f19b50b28080], 
PUP.Optional.OpenCandy, C:\Users\Dale\AppData\Roaming\OpenCandy\E8D07F44240C41C0AB33EC386262C19E, Quarantined, [450ed2a8f58645f14867f19b50b28080], 
PUP.Optional.Webexp, C:\Program Files (x86)\WebexpEnhancedV1, Quarantined, [044fe496106b20165549deb0986a0bf5], 
PUP.Optional.Webexp, C:\Program Files (x86)\WebexpEnhancedV1\WebexpEnhancedV1alpha136, Quarantined, [044fe496106b20165549deb0986a0bf5], 
PUP.Optional.Webexp, C:\Program Files (x86)\WebexpEnhancedV1\WebexpEnhancedV1alpha136\ch, Quarantined, [044fe496106b20165549deb0986a0bf5], 
PUP.Optional.Webexp, C:\Program Files (x86)\WebexpEnhancedV1\WebexpEnhancedV1alpha136\ff, Quarantined, [044fe496106b20165549deb0986a0bf5], 
PUP.Optional.Webexp, C:\Program Files (x86)\WebexpEnhancedV1\WebexpEnhancedV1alpha136\ff\chrome, Quarantined, [044fe496106b20165549deb0986a0bf5], 
PUP.Optional.Webexp, C:\Program Files (x86)\WebexpEnhancedV1\WebexpEnhancedV1alpha136\ff\chrome\content, Quarantined, [044fe496106b20165549deb0986a0bf5], 
PUP.Optional.Webexp, C:\Program Files (x86)\WebexpEnhancedV1\WebexpEnhancedV1alpha136\ff\chrome\content\icons, Quarantined, [044fe496106b20165549deb0986a0bf5], 
PUP.Optional.Webexp, C:\Program Files (x86)\WebexpEnhancedV1\WebexpEnhancedV1alpha136\ff\chrome\content\icons\default, Quarantined, [044fe496106b20165549deb0986a0bf5], 
PUP.Optional.Webexp, C:\Program Files (x86)\WebexpEnhancedV1\WebexpEnhancedV1alpha136\ie, Quarantined, [044fe496106b20165549deb0986a0bf5], 
PUP.Optional.MediaPlayerAlpha.A, C:\Program Files (x86)\MediaPlayerV1\MediaPlayerV1alpha989, Quarantined, [480bcab078032c0aba6bf69992709e62], 
PUP.Optional.MediaPlayerAlpha.A, C:\Program Files (x86)\MediaPlayerV1\MediaPlayerV1alpha989\ch, Quarantined, [480bcab078032c0aba6bf69992709e62], 
PUP.Optional.MediaPlayerAlpha.A, C:\Program Files (x86)\MediaPlayerV1\MediaPlayerV1alpha989\ff, Quarantined, [480bcab078032c0aba6bf69992709e62], 
PUP.Optional.MediaPlayerAlpha.A, C:\Program Files (x86)\MediaPlayerV1\MediaPlayerV1alpha989\ff\chrome, Quarantined, [480bcab078032c0aba6bf69992709e62], 
PUP.Optional.MediaPlayerAlpha.A, C:\Program Files (x86)\MediaPlayerV1\MediaPlayerV1alpha989\ff\chrome\content, Quarantined, [480bcab078032c0aba6bf69992709e62], 
PUP.Optional.MediaPlayerAlpha.A, C:\Program Files (x86)\MediaPlayerV1\MediaPlayerV1alpha989\ff\chrome\content\icons, Quarantined, [480bcab078032c0aba6bf69992709e62], 
PUP.Optional.MediaPlayerAlpha.A, C:\Program Files (x86)\MediaPlayerV1\MediaPlayerV1alpha989\ff\chrome\content\icons\default, Quarantined, [480bcab078032c0aba6bf69992709e62], 
PUP.Optional.MediaPlayerAlpha.A, C:\Program Files (x86)\MediaPlayerV1\MediaPlayerV1alpha989\ie, Quarantined, [480bcab078032c0aba6bf69992709e62], 
PUP.Optional.MediaViewer.A, C:\Program Files (x86)\MediaViewerV1\MediaViewerV1alpha520, Quarantined, [fe55e793780304325caa147d4eb48b75], 
PUP.Optional.MediaViewer.A, C:\Program Files (x86)\MediaViewerV1\MediaViewerV1alpha520\ch, Quarantined, [fe55e793780304325caa147d4eb48b75], 
PUP.Optional.MediaViewer.A, C:\Program Files (x86)\MediaViewerV1\MediaViewerV1alpha520\ff, Quarantined, [fe55e793780304325caa147d4eb48b75], 
PUP.Optional.MediaViewer.A, C:\Program Files (x86)\MediaViewerV1\MediaViewerV1alpha520\ff\chrome, Quarantined, [fe55e793780304325caa147d4eb48b75], 
PUP.Optional.MediaViewer.A, C:\Program Files (x86)\MediaViewerV1\MediaViewerV1alpha520\ff\chrome\content, Quarantined, [fe55e793780304325caa147d4eb48b75], 
PUP.Optional.MediaViewer.A, C:\Program Files (x86)\MediaViewerV1\MediaViewerV1alpha520\ff\chrome\content\icons, Quarantined, [fe55e793780304325caa147d4eb48b75], 
PUP.Optional.MediaViewer.A, C:\Program Files (x86)\MediaViewerV1\MediaViewerV1alpha520\ff\chrome\content\icons\default, Quarantined, [fe55e793780304325caa147d4eb48b75], 
PUP.Optional.MediaViewer.A, C:\Program Files (x86)\MediaViewerV1\MediaViewerV1alpha520\ie, Quarantined, [fe55e793780304325caa147d4eb48b75], 
PUP.Optional.MediaView.A, C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha1203, Quarantined, [0a49770335462b0b6ec7256c0bf701ff], 
PUP.Optional.MediaView.A, C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha1203\ch, Quarantined, [0a49770335462b0b6ec7256c0bf701ff], 
PUP.Optional.MediaView.A, C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha1203\ff, Quarantined, [0a49770335462b0b6ec7256c0bf701ff], 
PUP.Optional.MediaView.A, C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha1203\ff\chrome, Quarantined, [0a49770335462b0b6ec7256c0bf701ff], 
PUP.Optional.MediaView.A, C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha1203\ff\chrome\content, Quarantined, [0a49770335462b0b6ec7256c0bf701ff], 
PUP.Optional.MediaView.A, C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha1203\ff\chrome\content\icons, Quarantined, [0a49770335462b0b6ec7256c0bf701ff], 
PUP.Optional.MediaView.A, C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha1203\ff\chrome\content\icons\default, Quarantined, [0a49770335462b0b6ec7256c0bf701ff], 
PUP.Optional.MediaView.A, C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha1203\ie, Quarantined, [0a49770335462b0b6ec7256c0bf701ff], 
PUP.Optional.MediaWatch.A, C:\Program Files (x86)\MediaWatchV1\MediaWatchV1home354, Quarantined, [3a1945359ae191a5fb7cdab9fd0510f0], 
PUP.Optional.MediaWatch.A, C:\Program Files (x86)\MediaWatchV1\MediaWatchV1home354\ch, Quarantined, [3a1945359ae191a5fb7cdab9fd0510f0], 
PUP.Optional.MediaWatch.A, C:\Program Files (x86)\MediaWatchV1\MediaWatchV1home354\ff, Quarantined, [3a1945359ae191a5fb7cdab9fd0510f0], 
PUP.Optional.MediaWatch.A, C:\Program Files (x86)\MediaWatchV1\MediaWatchV1home354\ff\chrome, Quarantined, [3a1945359ae191a5fb7cdab9fd0510f0], 
PUP.Optional.MediaWatch.A, C:\Program Files (x86)\MediaWatchV1\MediaWatchV1home354\ff\chrome\content, Quarantined, [3a1945359ae191a5fb7cdab9fd0510f0], 
PUP.Optional.MediaWatch.A, C:\Program Files (x86)\MediaWatchV1\MediaWatchV1home354\ff\chrome\content\icons, Quarantined, [3a1945359ae191a5fb7cdab9fd0510f0], 
PUP.Optional.MediaWatch.A, C:\Program Files (x86)\MediaWatchV1\MediaWatchV1home354\ff\chrome\content\icons\default, Quarantined, [3a1945359ae191a5fb7cdab9fd0510f0], 
PUP.Optional.MediaWatch.A, C:\Program Files (x86)\MediaWatchV1\MediaWatchV1home354\ie, Quarantined, [3a1945359ae191a5fb7cdab9fd0510f0], 
PUP.Optional.MediaBuzz.A, C:\Program Files (x86)\MediaBuzzV1\MediaBuzzV1mode6239, Quarantined, [23307208a7d410260078a5f4df23d12f], 
PUP.Optional.MediaBuzz.A, C:\Program Files (x86)\MediaBuzzV1\MediaBuzzV1mode6239\ch, Quarantined, [23307208a7d410260078a5f4df23d12f], 
PUP.Optional.MediaBuzz.A, C:\Program Files (x86)\MediaBuzzV1\MediaBuzzV1mode6239\ff, Quarantined, [23307208a7d410260078a5f4df23d12f], 
PUP.Optional.MediaBuzz.A, C:\Program Files (x86)\MediaBuzzV1\MediaBuzzV1mode6239\ff\chrome, Quarantined, [23307208a7d410260078a5f4df23d12f], 
PUP.Optional.MediaBuzz.A, C:\Program Files (x86)\MediaBuzzV1\MediaBuzzV1mode6239\ff\chrome\content, Quarantined, [23307208a7d410260078a5f4df23d12f], 
PUP.Optional.MediaBuzz.A, C:\Program Files (x86)\MediaBuzzV1\MediaBuzzV1mode6239\ff\chrome\content\icons, Quarantined, [23307208a7d410260078a5f4df23d12f], 
PUP.Optional.MediaBuzz.A, C:\Program Files (x86)\MediaBuzzV1\MediaBuzzV1mode6239\ff\chrome\content\icons\default, Quarantined, [23307208a7d410260078a5f4df23d12f], 
PUP.Optional.MediaBuzz.A, C:\Program Files (x86)\MediaBuzzV1\MediaBuzzV1mode6239\ie, Quarantined, [23307208a7d410260078a5f4df23d12f], 

Files: 568
PUP.Optional.Iminent, C:\Program Files (x86)\Common Files\Umbrella\umbrella.exe, Delete-on-Reboot, [312285f50c6fa88e8d15be4d51b09070], 
PUP.Optional.Iminent.A, C:\Program Files (x86)\Iminent\Minibar.InternetExplorer.BHOx64.dll, Quarantined, [a9aa2456730863d337dc5821ae5451af], 
PUP.Optional.Iminent.A, C:\Program Files (x86)\Iminent\Minibar.InternetExplorer.BHOx86.dll, Quarantined, [a9aa2456730863d337dc5821ae5451af], 
PUP.Optional.Conduit.A, C:\Users\Dale\Documents\Downloads\shield(ip_hider).zip, Quarantined, [cd8644364437ac8a1c6f36142fd26898], 
PUP.Optional.GoForFiles.A, C:\Users\Dale\Downloads\kaspersky_internet_security_2014_[Full_Version]_downloader.exe, Quarantined, [272c6812e09b0234c8345bc3847d9967], 
PUP.Optional.Iminent.A, C:\Users\Dale\AppData\Local\DownloadGuide\Offers\iminent.exe, Quarantined, [6ce72753de9d7db9fd7d3bf64db4f30d], 
PUP.Optional.Iminent.A, C:\Windows\Installer\1912ca.msi, Quarantined, [13407901423963d33149131e21e06997], 
PUP.Optional.Iminent.A, C:\Users\Dale\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_igdhbblpcellaljokkpfhcjlagemhgjl_0.localstorage, Quarantined, [6ce70575a7d4af8706c0cce30df54bb5], 
PUP.Optional.Iminent.A, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Iminent\SearchTheWeb.lnk, Quarantined, [f95a93e7fe7d6dc9165805d716ede917], 
PUP.Optional.Iminent.A, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Iminent\Blog.lnk, Quarantined, [f95a93e7fe7d6dc9165805d716ede917], 
PUP.Optional.Iminent.A, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Iminent\FAQ.lnk, Quarantined, [f95a93e7fe7d6dc9165805d716ede917], 
PUP.Optional.Iminent.A, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Iminent\Help.lnk, Quarantined, [f95a93e7fe7d6dc9165805d716ede917], 
PUP.Optional.Iminent.A, C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Iminent\Iminent.lnk, Quarantined, [f95a93e7fe7d6dc9165805d716ede917], 
PUP.Optional.CSBrowserAssistant.A, C:\Program Files (x86)\CSBrowserHelper\cs-browser-assistant.exe, Quarantined, [1b3824566f0c8fa7316bb332d231af51], 
PUP.Optional.DownloadGuide.A, C:\Users\Dale\AppData\Local\DownloadGuide\amazon.ico, Quarantined, [a2b1304a90eb04320b3545a33bc806fa], 
PUP.Optional.DownloadGuide.A, C:\Users\Dale\AppData\Local\DownloadGuide\Free_PDF_Perfect_Setup_pdf_perfect_de.exe, Quarantined, [a2b1304a90eb04320b3545a33bc806fa], 
PUP.Optional.DownloadGuide.A, C:\Users\Dale\AppData\Local\DownloadGuide\Offers\autocompletepro.exe, Quarantined, [a2b1304a90eb04320b3545a33bc806fa], 
PUP.Optional.DownloadGuide.A, C:\Users\Dale\AppData\Local\DownloadGuide\Offers\foxydeal.exe, Quarantined, [a2b1304a90eb04320b3545a33bc806fa], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\bubbles.jar, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\LicenseUS.txt, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\ReadmeUS.txt, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\uninstall.exe, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\uninstall.ini, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\help\buttonNormal.gif, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\help\buttonEasy.gif, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\help\buttonExit.gif, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\help\buttonFullscreen.gif, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\help\buttonHard.gif, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\help\buttonHelp.gif, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\help\buttonHexagon.gif, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\help\buttonHint.gif, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\help\buttonMusic.gif, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\help\buttonPlay.gif, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\help\buttonRegister.gif, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\help\buttonSounds.gif, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\help\buttonSquare.gif, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\help\cd.gif, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\help\cdBubbles.gif, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\help\dotIcon.gif, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\help\help.htm, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\help\register.htm, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\help\register2M.htm, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\help\register5S.htm, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\bin\awt.dll, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\bin\fontmanager.dll, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\bin\game.ico, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\bin\hpi.dll, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\bin\java.dll, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\bin\javaw.exe, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\bin\jpeg.dll, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\bin\jsound.dll, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\bin\msvcrt.dll, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\bin\verify.dll, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\bin\zip.dll, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\bin\client\jvm.dll, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\bin\client\Xusage.txt, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\font.properties.GB18030, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\content-types.properties, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\flavormap.properties, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\font.properties, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\font.properties.CP1250, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\font.properties.CP1251, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\font.properties.CP1253, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\font.properties.CP1254, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\font.properties.CP1256, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\font.properties.CP1257, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\font.properties.hi, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\font.properties.iw, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\font.properties.ja, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\font.properties.ko, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\font.properties.ru, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\font.properties.th, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\font.properties.zh, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\font.properties.zh.NT, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\font.properties.zh_TW, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\font.properties.zh_TW.95, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\jawt.lib, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\jvm.hprof.txt, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\jvm.jcov.txt, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\logging.properties, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\psfont.properties.ja, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\psfontj2d.properties, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\rt.jar, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\sunrsasign.jar, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\tzmappings, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\audio\soundbank.gm, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\cmm\CIEXYZ.pf, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\cmm\GRAY.pf, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\cmm\LINEAR_RGB.pf, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\cmm\sRGB.pf, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\fonts\LucidaSansRegular.ttf, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\i386\jvm.cfg, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\images\cursors\cursors.properties, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\images\cursors\invalid32x32.gif, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\images\cursors\win32_CopyDrop32x32.gif, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\images\cursors\win32_CopyNoDrop32x32.gif, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\images\cursors\win32_LinkDrop32x32.gif, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\images\cursors\win32_LinkNoDrop32x32.gif, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\images\cursors\win32_MoveDrop32x32.gif, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\images\cursors\win32_MoveNoDrop32x32.gif, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\security\cacerts, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\security\java.policy, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\security\java.security, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\security\local_policy.jar, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\security\US_export_policy.jar, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\CET, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\EET, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\GMT, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\MET, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\WET, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\ZoneInfoMappings, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Africa\Dakar, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Africa\Lubumbashi, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Africa\Abidjan, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Africa\Accra, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Africa\Addis_Ababa, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Africa\Algiers, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Africa\Asmera, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Africa\Bamako, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Africa\Bangui, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Africa\Banjul, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Africa\Bissau, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Africa\Blantyre, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Africa\Brazzaville, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Africa\Bujumbura, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Africa\Cairo, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Africa\Casablanca, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Africa\Ceuta, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Africa\Conakry, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Africa\Dar_es_Salaam, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Africa\Djibouti, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Africa\Douala, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Africa\El_Aaiun, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Africa\Freetown, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Africa\Gaborone, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Africa\Harare, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Africa\Johannesburg, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Africa\Kampala, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Africa\Khartoum, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Africa\Kigali, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Africa\Kinshasa, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Africa\Lagos, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Africa\Libreville, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Africa\Lome, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Africa\Luanda, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Africa\Lusaka, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Africa\Malabo, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Africa\Maputo, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Africa\Maseru, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Africa\Mbabane, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Africa\Mogadishu, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Africa\Monrovia, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Africa\Nairobi, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Africa\Ndjamena, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Africa\Niamey, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Africa\Nouakchott, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Africa\Ouagadougou, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Africa\Porto-Novo, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Africa\Sao_Tome, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Africa\Timbuktu, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Africa\Tripoli, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Africa\Tunis, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Africa\Windhoek, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America\Adak, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America\Anchorage, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America\Anguilla, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America\Antigua, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America\Araguaina, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America\Aruba, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America\Asuncion, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America\Barbados, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America\Belem, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America\Belize, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America\Boa_Vista, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America\Bogota, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America\Boise, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America\Buenos_Aires, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America\Cambridge_Bay, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America\Cancun, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America\Caracas, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America\Catamarca, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America\Cayenne, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America\Cayman, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America\Chicago, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America\Chihuahua, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America\Cordoba, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America\Costa_Rica, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America\Cuiaba, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America\Curacao, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America\Danmarkshavn, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America\Dawson, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America\Dawson_Creek, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America\Detroit, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America\Dominica, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America\Edmonton, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America\Eirunepe, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America\El_Salvador, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America\Fortaleza, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America\Glace_Bay, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America\Godthab, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America\Goose_Bay, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America\Grand_Turk, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America\Grenada, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America\Guadeloupe, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America\Guatemala, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America\Guayaquil, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America\Guyana, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America\Halifax, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America\Havana, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America\Hermosillo, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America\Indianapolis, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America\Inuvik, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America\Iqaluit, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America\Jamaica, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America\Jujuy, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America\Juneau, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America\La_Paz, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America\Lima, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America\Los_Angeles, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America\Louisville, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America\Maceio, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America\Managua, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America\Manaus, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America\Martinique, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America\Mazatlan, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America\Mendoza, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America\Menominee, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America\Merida, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America\Mexico_City, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America\Miquelon, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America\Monterrey, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America\Montevideo, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America\Montserrat, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America\Nassau, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America\New_York, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America\Nipigon, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America\Nome, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America\Noronha, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America\Panama, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America\Pangnirtung, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America\Paramaribo, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America\Phoenix, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America\Port-au-Prince, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America\Porto_Velho, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America\Denver, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America\Montreal, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America\Port_of_Spain, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America\St_Johns, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America\Puerto_Rico, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America\Rainy_River, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America\Rankin_Inlet, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America\Recife, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America\Regina, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America\Rio_Branco, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America\Rosario, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America\Santiago, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America\Santo_Domingo, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America\Sao_Paulo, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America\Scoresbysund, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America\St_Kitts, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America\St_Lucia, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America\St_Thomas, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America\St_Vincent, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America\Swift_Current, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America\Tegucigalpa, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America\Thule, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America\Thunder_Bay, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America\Tijuana, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America\Tortola, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America\Vancouver, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America\Whitehorse, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America\Winnipeg, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America\Yakutat, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America\Yellowknife, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America\Indiana\Knox, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America\Indiana\Marengo, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America\Indiana\Vevay, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America\Kentucky\Monticello, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\America\North_Dakota\Center, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Antarctica\Casey, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Antarctica\Davis, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Antarctica\DumontDUrville, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Antarctica\Mawson, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Antarctica\McMurdo, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Antarctica\Palmer, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Antarctica\Syowa, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Antarctica\Vostok, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Asia\Damascus, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Asia\Krasnoyarsk, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Asia\Qatar, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Asia\Aden, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Asia\Almaty, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Asia\Amman, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Asia\Anadyr, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Asia\Aqtau, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Asia\Aqtobe, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Asia\Ashgabat, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Asia\Baghdad, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Asia\Bahrain, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Asia\Baku, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Asia\Bangkok, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Asia\Beirut, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Asia\Bishkek, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Asia\Brunei, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Asia\Calcutta, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Asia\Choibalsan, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Asia\Chongqing, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Asia\Colombo, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Asia\Dhaka, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Asia\Dili, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Asia\Dubai, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Asia\Dushanbe, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Asia\Gaza, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Asia\Harbin, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Asia\Hong_Kong, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Asia\Hovd, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Asia\Irkutsk, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Asia\Jakarta, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Asia\Jayapura, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Asia\Jerusalem, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Asia\Kabul, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Asia\Kamchatka, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Asia\Karachi, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Asia\Kashgar, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Asia\Katmandu, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Asia\Kuala_Lumpur, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Asia\Kuching, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Asia\Kuwait, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Asia\Macao, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Asia\Magadan, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Asia\Manila, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Asia\Muscat, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Asia\Nicosia, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Asia\Novosibirsk, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Asia\Omsk, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Asia\Phnom_Penh, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Asia\Pontianak, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Asia\Pyongyang, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Asia\Rangoon, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Asia\Riyadh, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Asia\Riyadh87, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Asia\Riyadh88, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Asia\Riyadh89, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Asia\Saigon, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Asia\Sakhalin, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Asia\Samarkand, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Asia\Seoul, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Asia\Shanghai, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Asia\Singapore, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Asia\Taipei, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Asia\Tashkent, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Asia\Tbilisi, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Asia\Tehran, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Asia\Thimphu, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Asia\Tokyo, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Asia\Ujung_Pandang, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Asia\Ulaanbaatar, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Asia\Urumqi, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Asia\Vientiane, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Asia\Vladivostok, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Asia\Yakutsk, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Asia\Yekaterinburg, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Asia\Yerevan, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Atlantic\Azores, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Atlantic\Bermuda, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Atlantic\Canary, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Atlantic\Cape_Verde, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Atlantic\Faeroe, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Atlantic\Madeira, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Atlantic\Reykjavik, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Atlantic\South_Georgia, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Atlantic\Stanley, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Atlantic\St_Helena, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Australia\Adelaide, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Australia\Brisbane, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Australia\Broken_Hill, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Australia\Darwin, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Australia\Hobart, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Australia\Lindeman, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Australia\Lord_Howe, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Australia\Melbourne, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Australia\Perth, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Australia\Sydney, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Etc\GMT, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Etc\GMT+1, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Etc\GMT+10, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Etc\GMT+11, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Etc\GMT+12, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Etc\GMT+2, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Etc\GMT+3, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Etc\GMT+4, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Etc\GMT+5, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Etc\GMT+6, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Etc\GMT+7, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Etc\GMT+8, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Etc\GMT+9, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Etc\GMT-1, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Etc\GMT-10, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Etc\GMT-11, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Etc\GMT-12, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Etc\GMT-13, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Etc\GMT-14, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Etc\GMT-2, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Etc\GMT-3, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Etc\GMT-4, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Etc\GMT-5, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Etc\GMT-6, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Etc\GMT-7, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Etc\GMT-8, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Etc\GMT-9, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Etc\UCT, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Etc\UTC, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Europe\Kaliningrad, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Europe\Amsterdam, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Europe\Andorra, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Europe\Athens, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Europe\Belfast, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Europe\Belgrade, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Europe\Berlin, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Europe\Brussels, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Europe\Bucharest, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Europe\Budapest, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Europe\Chisinau, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Europe\Copenhagen, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Europe\Dublin, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Europe\Gibraltar, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Europe\Helsinki, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Europe\Istanbul, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Europe\Kiev, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Europe\Lisbon, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Europe\London, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Europe\Luxembourg, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Europe\Madrid, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Europe\Malta, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Europe\Minsk, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Europe\Monaco, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Europe\Moscow, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Europe\Oslo, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Europe\Paris, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Europe\Prague, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Europe\Riga, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Europe\Rome, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Europe\Samara, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Europe\Simferopol, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Europe\Sofia, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Europe\Stockholm, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Europe\Tallinn, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Europe\Tirane, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Europe\Uzhgorod, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Europe\Vaduz, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Europe\Vienna, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Europe\Vilnius, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Europe\Warsaw, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Europe\Zaporozhye, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Europe\Zurich, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Indian\Antananarivo, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Indian\Chagos, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Indian\Christmas, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Indian\Cocos, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Indian\Comoro, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Indian\Kerguelen, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Indian\Mahe, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Indian\Maldives, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Indian\Mauritius, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Indian\Mayotte, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Indian\Reunion, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Pacific\Apia, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Pacific\Auckland, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Pacific\Chatham, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Pacific\Easter, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Pacific\Efate, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Pacific\Enderbury, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Pacific\Fakaofo, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Pacific\Fiji, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Pacific\Funafuti, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Pacific\Galapagos, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Pacific\Gambier, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Pacific\Guadalcanal, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Pacific\Guam, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Pacific\Honolulu, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Pacific\Johnston, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Pacific\Kiritimati, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Pacific\Kosrae, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Pacific\Kwajalein, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Pacific\Majuro, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Pacific\Marquesas, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Pacific\Midway, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Pacific\Nauru, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Pacific\Niue, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Pacific\Norfolk, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Pacific\Noumea, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Pacific\Pago_Pago, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Pacific\Palau, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Pacific\Pitcairn, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Pacific\Ponape, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Pacific\Port_Moresby, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Pacific\Rarotonga, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Pacific\Saipan, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Pacific\Tahiti, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Pacific\Tarawa, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Pacific\Tongatapu, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Pacific\Truk, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Pacific\Wake, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Pacific\Wallis, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\jre\lib\zi\Pacific\Yap, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\music\music01.mid, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\music\music02.mid, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\music\music03.mid, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\skins\readme.txt, Quarantined, [520169110b700e2868be453abd451de3], 
Adware.WebHancer, C:\Program Files\2M Games\Arcade Bubbles\skins\skinBubbles.2mb, Quarantined, [520169110b700e2868be453abd451de3], 
PUP.Optional.Iminent.A, C:\ProgramData\Iminent\Mediator\Datas\Cache\api.iminent.com\1031.9989bec1-6b76-4f66-bc99-f20fb99626ea.dat, Quarantined, [89ca3842bdbe181e344690fc6f93db25], 
PUP.Optional.Iminent.A, C:\ProgramData\Iminent\Mediator\Datas\Cache\apix.iminent.com\1031.11575f00-7bdc-4181-ba0a-b298aeab228c.dat, Quarantined, [89ca3842bdbe181e344690fc6f93db25], 
PUP.Optional.Iminent.A, C:\Users\Dale\AppData\Roaming\Iminent\Mediator\Datas\globalcache.dat, Quarantined, [510295e5ea911d191268d4b841c1ed13], 
PUP.Optional.Iminent.A, C:\Users\Dale\AppData\Roaming\Iminent\Mediator\Datas\user.dat, Quarantined, [510295e5ea911d191268d4b841c1ed13], 
PUP.Optional.OpenCandy, C:\Users\Dale\AppData\Roaming\OpenCandy\34AC48FD435149258A5B2FF8529BF4B6\TuneUpUtilities2012_de-DE.exe, Quarantined, [450ed2a8f58645f14867f19b50b28080], 
PUP.Optional.OpenCandy, C:\Users\Dale\AppData\Roaming\OpenCandy\E8D07F44240C41C0AB33EC386262C19E\TuneUpUtilities2013-2200217_de-DE.exe, Quarantined, [450ed2a8f58645f14867f19b50b28080], 
PUP.Optional.Webexp, C:\Program Files (x86)\WebexpEnhancedV1\WebexpEnhancedV1alpha136\uninstall.exe, Quarantined, [044fe496106b20165549deb0986a0bf5], 
PUP.Optional.Webexp, C:\Program Files (x86)\WebexpEnhancedV1\WebexpEnhancedV1alpha136\ch\WebexpEnhancedV1alpha136.crx, Quarantined, [044fe496106b20165549deb0986a0bf5], 
PUP.Optional.Webexp, C:\Program Files (x86)\WebexpEnhancedV1\WebexpEnhancedV1alpha136\ff\chrome.manifest, Quarantined, [044fe496106b20165549deb0986a0bf5], 
PUP.Optional.Webexp, C:\Program Files (x86)\WebexpEnhancedV1\WebexpEnhancedV1alpha136\ff\install.rdf, Quarantined, [044fe496106b20165549deb0986a0bf5], 
PUP.Optional.Webexp, C:\Program Files (x86)\WebexpEnhancedV1\WebexpEnhancedV1alpha136\ff\chrome\content\ffWebexpEnhancedV1alpha136.js, Quarantined, [044fe496106b20165549deb0986a0bf5], 
PUP.Optional.Webexp, C:\Program Files (x86)\WebexpEnhancedV1\WebexpEnhancedV1alpha136\ff\chrome\content\overlay.xul, Quarantined, [044fe496106b20165549deb0986a0bf5], 
PUP.Optional.Webexp, C:\Program Files (x86)\WebexpEnhancedV1\WebexpEnhancedV1alpha136\ff\chrome\content\icons\Thumbs.db, Quarantined, [044fe496106b20165549deb0986a0bf5], 
PUP.Optional.Webexp, C:\Program Files (x86)\WebexpEnhancedV1\WebexpEnhancedV1alpha136\ff\chrome\content\icons\default\WebexpEnhancedV1alpha136_32.png, Quarantined, [044fe496106b20165549deb0986a0bf5], 
PUP.Optional.MediaPlayerAlpha.A, C:\Program Files (x86)\MediaPlayerV1\MediaPlayerV1alpha989\uninstall.exe, Quarantined, [480bcab078032c0aba6bf69992709e62], 
PUP.Optional.MediaPlayerAlpha.A, C:\Program Files (x86)\MediaPlayerV1\MediaPlayerV1alpha989\ch\MediaPlayerV1alpha989.crx, Quarantined, [480bcab078032c0aba6bf69992709e62], 
PUP.Optional.MediaPlayerAlpha.A, C:\Program Files (x86)\MediaPlayerV1\MediaPlayerV1alpha989\ff\chrome.manifest, Quarantined, [480bcab078032c0aba6bf69992709e62], 
PUP.Optional.MediaPlayerAlpha.A, C:\Program Files (x86)\MediaPlayerV1\MediaPlayerV1alpha989\ff\install.rdf, Quarantined, [480bcab078032c0aba6bf69992709e62], 
PUP.Optional.MediaPlayerAlpha.A, C:\Program Files (x86)\MediaPlayerV1\MediaPlayerV1alpha989\ff\chrome\content\ffMediaPlayerV1alpha989.js, Quarantined, [480bcab078032c0aba6bf69992709e62], 
PUP.Optional.MediaPlayerAlpha.A, C:\Program Files (x86)\MediaPlayerV1\MediaPlayerV1alpha989\ff\chrome\content\overlay.xul, Quarantined, [480bcab078032c0aba6bf69992709e62], 
PUP.Optional.MediaPlayerAlpha.A, C:\Program Files (x86)\MediaPlayerV1\MediaPlayerV1alpha989\ff\chrome\content\icons\Thumbs.db, Quarantined, [480bcab078032c0aba6bf69992709e62], 
PUP.Optional.MediaPlayerAlpha.A, C:\Program Files (x86)\MediaPlayerV1\MediaPlayerV1alpha989\ff\chrome\content\icons\default\MediaPlayerV1alpha989_32.png, Quarantined, [480bcab078032c0aba6bf69992709e62], 
PUP.Optional.MediaViewer.A, C:\Program Files (x86)\MediaViewerV1\MediaViewerV1alpha520\uninstall.exe, Quarantined, [fe55e793780304325caa147d4eb48b75], 
PUP.Optional.MediaViewer.A, C:\Program Files (x86)\MediaViewerV1\MediaViewerV1alpha520\ch\MediaViewerV1alpha520.crx, Quarantined, [fe55e793780304325caa147d4eb48b75], 
PUP.Optional.MediaViewer.A, C:\Program Files (x86)\MediaViewerV1\MediaViewerV1alpha520\ff\chrome.manifest, Quarantined, [fe55e793780304325caa147d4eb48b75], 
PUP.Optional.MediaViewer.A, C:\Program Files (x86)\MediaViewerV1\MediaViewerV1alpha520\ff\install.rdf, Quarantined, [fe55e793780304325caa147d4eb48b75], 
PUP.Optional.MediaViewer.A, C:\Program Files (x86)\MediaViewerV1\MediaViewerV1alpha520\ff\chrome\content\ffMediaViewerV1alpha520.js, Quarantined, [fe55e793780304325caa147d4eb48b75], 
PUP.Optional.MediaViewer.A, C:\Program Files (x86)\MediaViewerV1\MediaViewerV1alpha520\ff\chrome\content\overlay.xul, Quarantined, [fe55e793780304325caa147d4eb48b75], 
PUP.Optional.MediaViewer.A, C:\Program Files (x86)\MediaViewerV1\MediaViewerV1alpha520\ff\chrome\content\icons\Thumbs.db, Quarantined, [fe55e793780304325caa147d4eb48b75], 
PUP.Optional.MediaViewer.A, C:\Program Files (x86)\MediaViewerV1\MediaViewerV1alpha520\ff\chrome\content\icons\default\MediaViewerV1alpha520_32.png, Quarantined, [fe55e793780304325caa147d4eb48b75], 
PUP.Optional.MediaView.A, C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha1203\uninstall.exe, Quarantined, [0a49770335462b0b6ec7256c0bf701ff], 
PUP.Optional.MediaView.A, C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha1203\ch\MediaViewV1alpha1203.crx, Quarantined, [0a49770335462b0b6ec7256c0bf701ff], 
PUP.Optional.MediaView.A, C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha1203\ff\chrome.manifest, Quarantined, [0a49770335462b0b6ec7256c0bf701ff], 
PUP.Optional.MediaView.A, C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha1203\ff\install.rdf, Quarantined, [0a49770335462b0b6ec7256c0bf701ff], 
PUP.Optional.MediaView.A, C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha1203\ff\chrome\content\ffMediaViewV1alpha1203.js, Quarantined, [0a49770335462b0b6ec7256c0bf701ff], 
PUP.Optional.MediaView.A, C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha1203\ff\chrome\content\overlay.xul, Quarantined, [0a49770335462b0b6ec7256c0bf701ff], 
PUP.Optional.MediaView.A, C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha1203\ff\chrome\content\icons\Thumbs.db, Quarantined, [0a49770335462b0b6ec7256c0bf701ff], 
PUP.Optional.MediaView.A, C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha1203\ff\chrome\content\icons\default\MediaViewV1alpha1203_32.png, Quarantined, [0a49770335462b0b6ec7256c0bf701ff], 
PUP.Optional.MediaWatch.A, C:\Program Files (x86)\MediaWatchV1\MediaWatchV1home354\uninstall.exe, Quarantined, [3a1945359ae191a5fb7cdab9fd0510f0], 
PUP.Optional.MediaWatch.A, C:\Program Files (x86)\MediaWatchV1\MediaWatchV1home354\ch\MediaWatchV1home354.crx, Quarantined, [3a1945359ae191a5fb7cdab9fd0510f0], 
PUP.Optional.MediaWatch.A, C:\Program Files (x86)\MediaWatchV1\MediaWatchV1home354\ff\chrome.manifest, Quarantined, [3a1945359ae191a5fb7cdab9fd0510f0], 
PUP.Optional.MediaWatch.A, C:\Program Files (x86)\MediaWatchV1\MediaWatchV1home354\ff\install.rdf, Quarantined, [3a1945359ae191a5fb7cdab9fd0510f0], 
PUP.Optional.MediaWatch.A, C:\Program Files (x86)\MediaWatchV1\MediaWatchV1home354\ff\chrome\content\ffMediaWatchV1home354.js, Quarantined, [3a1945359ae191a5fb7cdab9fd0510f0], 
PUP.Optional.MediaWatch.A, C:\Program Files (x86)\MediaWatchV1\MediaWatchV1home354\ff\chrome\content\ffMediaWatchV1home354ffaction.js, Quarantined, [3a1945359ae191a5fb7cdab9fd0510f0], 
PUP.Optional.MediaWatch.A, C:\Program Files (x86)\MediaWatchV1\MediaWatchV1home354\ff\chrome\content\overlay.xul, Quarantined, [3a1945359ae191a5fb7cdab9fd0510f0], 
PUP.Optional.MediaWatch.A, C:\Program Files (x86)\MediaWatchV1\MediaWatchV1home354\ff\chrome\content\icons\Thumbs.db, Quarantined, [3a1945359ae191a5fb7cdab9fd0510f0], 
PUP.Optional.MediaWatch.A, C:\Program Files (x86)\MediaWatchV1\MediaWatchV1home354\ff\chrome\content\icons\default\MediaWatchV1home354_32.png, Quarantined, [3a1945359ae191a5fb7cdab9fd0510f0], 
PUP.Optional.MediaBuzz.A, C:\Program Files (x86)\MediaBuzzV1\MediaBuzzV1mode6239\uninstall.exe, Quarantined, [23307208a7d410260078a5f4df23d12f], 
PUP.Optional.MediaBuzz.A, C:\Program Files (x86)\MediaBuzzV1\MediaBuzzV1mode6239\ch\MediaBuzzV1mode6239.crx, Quarantined, [23307208a7d410260078a5f4df23d12f], 
PUP.Optional.MediaBuzz.A, C:\Program Files (x86)\MediaBuzzV1\MediaBuzzV1mode6239\ff\chrome.manifest, Quarantined, [23307208a7d410260078a5f4df23d12f], 
PUP.Optional.MediaBuzz.A, C:\Program Files (x86)\MediaBuzzV1\MediaBuzzV1mode6239\ff\install.rdf, Quarantined, [23307208a7d410260078a5f4df23d12f], 
PUP.Optional.MediaBuzz.A, C:\Program Files (x86)\MediaBuzzV1\MediaBuzzV1mode6239\ff\chrome\content\ffMediaBuzzV1mode6239.js, Quarantined, [23307208a7d410260078a5f4df23d12f], 
PUP.Optional.MediaBuzz.A, C:\Program Files (x86)\MediaBuzzV1\MediaBuzzV1mode6239\ff\chrome\content\ffMediaBuzzV1mode6239ffaction.js, Quarantined, [23307208a7d410260078a5f4df23d12f], 
PUP.Optional.MediaBuzz.A, C:\Program Files (x86)\MediaBuzzV1\MediaBuzzV1mode6239\ff\chrome\content\overlay.xul, Quarantined, [23307208a7d410260078a5f4df23d12f], 
PUP.Optional.MediaBuzz.A, C:\Program Files (x86)\MediaBuzzV1\MediaBuzzV1mode6239\ff\chrome\content\icons\Thumbs.db, Quarantined, [23307208a7d410260078a5f4df23d12f], 
PUP.Optional.MediaBuzz.A, C:\Program Files (x86)\MediaBuzzV1\MediaBuzzV1mode6239\ff\chrome\content\icons\default\MediaBuzzV1mode6239_32.png, Quarantined, [23307208a7d410260078a5f4df23d12f], 
PUP.Optional.SearchGol.A, C:\Users\Dale\AppData\Local\Google\Chrome\User Data\Default\Preferences, Good: (), Bad: (   "homepage": "hxxp://www.searchgol.com/?babsrc=HP_ss&mntrId=6A114061865C2548&affID=125036&tsp=5033",), Replaced,[6ae98eec1a611620930a99136e966e92]
         

Alt 02.07.2014, 17:13   #8
Instinct84
 
PC fängt nach 10min. an zu laggen und/ oder bleibt hängen - Standard

PC fängt nach 10min. an zu laggen und/ oder bleibt hängen



Teil 2 des Logs, da der rest nicht in den Post davor paste

Code:
ATTFilter
PUP.Optional.SearchGol.A, C:\Users\Dale\AppData\Local\Google\Chrome\User Data\Default\Preferences, Good: (), Bad: (      "startup_urls": [ "hxxp://www.searchgol.com/?babsrc=HP_ss&mntrId=6A114061865C2548&affID=125036&tsp=5033" ],), Replaced,[bf947ffbe893d4624d828923be46b54b]

Physical Sectors: 0
(No malicious items detected)


(end)
         
P.S. bin frühstens heute Abend und 21Uhr wieder Online

Alt 03.07.2014, 08:26   #9
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
PC fängt nach 10min. an zu laggen und/ oder bleibt hängen - Standard

PC fängt nach 10min. an zu laggen und/ oder bleibt hängen



Adware/Junkware/Toolbars entfernen


1. Schritt: adwCleaner

Downloade Dir bitte AdwCleaner Logo Icon AdwCleaner auf deinen Desktop.
  • Schließe alle offenen Programme und Browser. Bebilderte Anleitung zu AdwCleaner.
  • Starte die AdwCleaner.exe mit einem Doppelklick.
  • Stimme den Nutzungsbedingungen zu.
  • Klicke auf Optionen und vergewissere dich, dass die folgenden Punkte ausgewählt sind:
    • "Tracing" Schlüssel löschen
    • Winsock Einstellungen zurücksetzen
    • Proxy Einstellungen zurücksetzen
    • Internet Explorer Richtlinien zurücksetzen
    • Chrome Richtlinien zurücksetzen
    • Stelle sicher, dass alle 5 Optionen wie hier dargestellt, ausgewählt sind
  • Klicke auf Suchlauf und warte bis dieser abgeschlossen ist.
  • Klicke nun auf Löschen und bestätige auftretende Hinweise mit Ok.
  • Dein Rechner wird automatisch neu gestartet. Nach dem Neustart öffnet sich eine Textdatei. Poste mir deren Inhalt mit deiner nächsten Antwort.
  • Die Logdatei findest du auch unter C:\AdwCleaner\AdwCleaner[Cx].txt. (x = fortlaufende Nummer).




2. Schritt: JRT - Junkware Removal Tool

Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
Bitte lade Junkware Removal Tool auf Deinen Desktop

  • Starte das Tool mit Doppelklick. Ab Windows Vista (oder höher) bitte mit Rechtsklick "als Administrator ausführen" starten.
  • Drücke eine beliebige Taste, um das Tool zu starten.
  • Je nach System kann der Scan eine Weile dauern.
  • Wenn das Tool fertig ist wird das Logfile (JRT.txt) auf dem Desktop gespeichert und automatisch geöffnet.
  • Bitte poste den Inhalt der JRT.txt in Deiner nächsten Antwort.




3. Schritt: Frisches Log mit FRST

Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST Download FRST 32-Bit | FRST 64-Bit
(Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
  • Starte jetzt FRST.
  • Ändere ungefragt keine der Checkboxen und klicke auf Untersuchen.
  • Die Logdateien werden nun erstellt und befinden sich danach auf deinem Desktop.
  • Poste mir die FRST.txt und nach dem ersten Scan auch die Addition.txt in deinem Thread (#-Symbol im Eingabefenster der Webseite anklicken)

__________________
Logfiles bitte immer in CODE-Tags posten

Alt 03.07.2014, 23:24   #10
Instinct84
 
PC fängt nach 10min. an zu laggen und/ oder bleibt hängen - Standard

PC fängt nach 10min. an zu laggen und/ oder bleibt hängen



So, hier die Logs, hat leider etwas gedauert, da der Rechner total rum gezickt hatte, konnte nicht mal mehr 2min an dem Rechner was machen ohne das er hängen blieb, lösung des Problems war, Kaspersky zu deinstallieren und Antivir drauf zu machen, nun scheind alles zu laufen.

Leider hat FRST keine Addition.txt Datei erstellt nachdem ich es habe durch laufen lassen, deswegen nur die FRST.txt

Wann kann ich den Defogger denn starten und auf Enable gehen?

Code:
ATTFilter
# AdwCleaner v3.214 - Bericht erstellt am 03/07/2014 um 18:47:33
# Aktualisiert 29/06/2014 von Xplode
# Betriebssystem : Windows 7 Home Premium Service Pack 1 (64 bits)
# Benutzername : Dale - HOME
# Gestartet von : C:\Users\Dale\Downloads\adwcleaner_3.214.exe
# Option : Löschen

***** [ Dienste ] *****


***** [ Dateien / Ordner ] *****

Ordner Gelöscht : C:\ProgramData\Iminent
Ordner Gelöscht : C:\ProgramData\NCH Software
Ordner Gelöscht : C:\ProgramData\simplitec
Ordner Gelöscht : C:\ProgramData\Uniblue
Ordner Gelöscht : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\simplitec
Ordner Gelöscht : C:\Program Files (x86)\CSBrowserHelper
Ordner Gelöscht : C:\Program Files (x86)\Iminent
Ordner Gelöscht : C:\Program Files (x86)\MediaBuzzV1
Ordner Gelöscht : C:\Program Files (x86)\MediaPlayerV1
Ordner Gelöscht : C:\Program Files (x86)\MediaViewerV1
Ordner Gelöscht : C:\Program Files (x86)\MediaViewV1
Ordner Gelöscht : C:\Program Files (x86)\MediaWatchV1
Ordner Gelöscht : C:\Program Files (x86)\NCH Software
Ordner Gelöscht : C:\Program Files (x86)\Common Files\AVG Secure Search
Ordner Gelöscht : C:\Program Files (x86)\Common Files\Umbrella
Ordner Gelöscht : C:\Users\Dale\AppData\Local\SwvUpdater
Ordner Gelöscht : C:\Users\Dale\AppData\Roaming\Iminent
Ordner Gelöscht : C:\Users\Dale\AppData\Roaming\NCH Software
Ordner Gelöscht : C:\Users\Dale\AppData\Roaming\simplitec
Ordner Gelöscht : C:\Users\Dale\AppData\Roaming\Uniblue
Datei Gelöscht : C:\END

***** [ Verknüpfungen ] *****


***** [ Registrierungsdatenbank ] *****

Wert Gelöscht : HKLM\SOFTWARE\Mozilla\Firefox\Extensions [12x3q@3244516.com]
Schlüssel Gelöscht : HKLM\SOFTWARE\Google\Chrome\Extensions\lpoimibckejjdjcfbdnajaicnklhfplh
Schlüssel Gelöscht : HKCU\Software\Google\Chrome\Extensions\nikpibnbobmbdbheedjfogjlikpgpnhp
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\secman.DLL
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\secman.OutlookSecurityManager
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\secman.OutlookSecurityManager.1
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\au__rasapi32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\au__rasmancs
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\driverscanner_RASAPI32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\driverscanner_RASMANCS
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\FreeCompressor-setup_RASAPI32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\FreeCompressor-setup_RASMANCS
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\Iminent_RASAPI32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\Iminent_RASMANCS
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader36055[1]_RASAPI32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader36055[1]_RASMANCS
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_fuer_fast-ip-changer_RASAPI32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_fuer_fast-ip-changer_RASMANCS
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_fuer_free-wav-to-mp3-converter[1]_RASAPI32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_fuer_free-wav-to-mp3-converter[1]_RASMANCS
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_fuer_invisible-browsing_RASAPI32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_fuer_invisible-browsing_RASMANCS
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{01994268-3C10-4044-A1EA-7A9C1B739A11}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{4D076AB4-7562-427A-B5D2-BD96E19DEE56}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{26C9BBE4-6D45-4AB6-A5B4-E068C9F5EF6D}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{826D7151-8D99-434B-8540-082B8C2AE556}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{BC9FD17D-30F6-4464-9E53-596A90AFF023}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{DE9028D0-5FFA-4E69-94E3-89EE8741F468}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{021B4049-F57D-4565-A693-FD3B04786BFA}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{0362AA09-808D-48E9-B360-FB51A8CBCE09}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{06844020-CD0B-3D3D-A7FE-371153013E49}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{0ADC01BB-303B-3F8E-93DA-12C140E85460}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{10D3722F-23E6-3901-B6C1-FF6567121920}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{1675E62B-F911-3B7B-A046-EB57261212F3}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{192929F2-9273-3894-91B0-F54671C4C861}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{2932897E-3036-43D9-8A64-B06447992065}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{2DE92D29-A042-3C37-BFF8-07C7D8893EFA}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{32B80AD6-1214-45F4-994E-78A5D482C000}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{3A8E103F-B2B7-3BEF-B3B0-88E29B2420E4}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{478CE5D3-D38E-3FFE-8DBE-8C4A0F1C4D8D}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{48B7DA4E-69ED-39E3-BAD5-3E3EFF22CFB0}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{5982F405-44E4-3BBB-BAC4-CF8141CBBC5C}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{5D8C3CC3-3C05-38A1-B244-924A23115FE9}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{641593AF-D9FD-30F7-B783-36E16F7A2E08}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8FFE}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{711FC48A-1356-3932-94D8-A8B733DBC7E4}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{72227B7F-1F02-3560-95F5-592E68BACC0C}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{7B5E8CE3-4722-4C0E-A236-A6FF731BEF37}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{890D4F59-5ED0-3CB4-8E0E-74A5A86E7ED0}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{8C68913C-AC3C-4494-8B9C-984D87C85003}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{8D019513-083F-4AA5-933F-7D43A6DA82C4}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{923F6FB8-A390-370E-A0D2-DD505432481D}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{9BBB26EF-B178-35D6-9D3D-B485F4279FE5}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{9EDC0C90-2B5B-4512-953E-35767BAD5C67}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{A62DDBE0-8D2A-339A-B089-8CBCC5CD322A}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{A82AD04D-0B8E-3A49-947B-6A69A8A9C96D}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{ACA608DB-A210-4253-B799-3FD24E9A7BF5}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{ADEB3CC9-A05D-4FCC-BD09-9025456AA3EA}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{B06D4521-D09C-3F41-8E39-9D784CCA2A75}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{C06DAD42-6F39-4CE1-83CC-9A8B9105E556}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{C2E799D0-43A5-3477-8A98-FC5F3677F35C}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{D16107CD-2AD5-46A8-BA59-303B7C32C500}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{D25B101F-8188-3B43-9D85-201F372BC205}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{D2BA7595-5E44-3F1E-880F-03B3139FA5ED}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{D35F5C81-17D9-3E1C-A1FC-4472542E1D25}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{D8FA96CA-B250-312C-AF34-4FF1DD72589D}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{DAFC1E63-3359-416D-9BC2-E7DCA6F7B0F3}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{DC5E5C44-80FD-3697-9E65-9F286D92F3E7}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{E1B4C9DE-D741-385F-981E-6745FACE6F01}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{E7B623F5-9715-3F9F-A671-D1485A39F8A2}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{ED916A7B-7C68-3198-B87D-2DABC30A5587}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{EFA1BDB2-BB3D-3D9A-8EB5-D0D22E0F64F4}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{F4CBF4DD-F8FE-35BA-BB7E-68304DAAB70B}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{FC32005D-E27C-32E0-ADFA-152F598B75E7}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{11549FE4-7C5A-4C17-9FC3-56FC5162A994}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{E69D4A59-73DE-4E38-9FB3-740EC4D9060D}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{F25AF245-4A81-40DC-92F9-E9021F207706}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{F9E4A054-E9B1-4BC3-83A3-76A1AE736170}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{02478D38-C3F9-4EFB-9B51-7695ECA05670}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{EF99BD32-C1FB-11D2-892F-0090271D4F88}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}
Wert Gelöscht : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{2318C2B1-4965-11D4-9B18-009027A5CD4F}]
Wert Gelöscht : HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser [{E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39}]
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\CLSID\{F9E4A054-E9B1-4BC3-83A3-76A1AE736170}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{021B4049-F57D-4565-A693-FD3B04786BFA}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{0362AA09-808D-48E9-B360-FB51A8CBCE09}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{03E2A1F3-4402-4121-8B35-733216D61217}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{06844020-CD0B-3D3D-A7FE-371153013E49}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{0ADC01BB-303B-3F8E-93DA-12C140E85460}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{10D3722F-23E6-3901-B6C1-FF6567121920}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{1675E62B-F911-3B7B-A046-EB57261212F3}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{192929F2-9273-3894-91B0-F54671C4C861}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{2932897E-3036-43D9-8A64-B06447992065}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{2DE92D29-A042-3C37-BFF8-07C7D8893EFA}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{32B80AD6-1214-45F4-994E-78A5D482C000}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{3A8E103F-B2B7-3BEF-B3B0-88E29B2420E4}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{478CE5D3-D38E-3FFE-8DBE-8C4A0F1C4D8D}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{48B7DA4E-69ED-39E3-BAD5-3E3EFF22CFB0}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{5982F405-44E4-3BBB-BAC4-CF8141CBBC5C}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{5D8C3CC3-3C05-38A1-B244-924A23115FE9}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{641593AF-D9FD-30F7-B783-36E16F7A2E08}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8EEE}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{66EEF543-A9AC-4A9D-AA3C-1ED148AC8FFE}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{711FC48A-1356-3932-94D8-A8B733DBC7E4}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{72227B7F-1F02-3560-95F5-592E68BACC0C}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{7B5E8CE3-4722-4C0E-A236-A6FF731BEF37}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{890D4F59-5ED0-3CB4-8E0E-74A5A86E7ED0}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{8C68913C-AC3C-4494-8B9C-984D87C85003}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{8D019513-083F-4AA5-933F-7D43A6DA82C4}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{923F6FB8-A390-370E-A0D2-DD505432481D}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{9BBB26EF-B178-35D6-9D3D-B485F4279FE5}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{9E3B11F6-4179-4603-A71B-A55F4BCB0BEC}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{9EDC0C90-2B5B-4512-953E-35767BAD5C67}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{A62DDBE0-8D2A-339A-B089-8CBCC5CD322A}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{A82AD04D-0B8E-3A49-947B-6A69A8A9C96D}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{ACA608DB-A210-4253-B799-3FD24E9A7BF5}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{ADEB3CC9-A05D-4FCC-BD09-9025456AA3EA}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{B06D4521-D09C-3F41-8E39-9D784CCA2A75}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{C06DAD42-6F39-4CE1-83CC-9A8B9105E556}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{C2E799D0-43A5-3477-8A98-FC5F3677F35C}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{D16107CD-2AD5-46A8-BA59-303B7C32C500}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{D25B101F-8188-3B43-9D85-201F372BC205}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{D2BA7595-5E44-3F1E-880F-03B3139FA5ED}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{D35F5C81-17D9-3E1C-A1FC-4472542E1D25}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{D8FA96CA-B250-312C-AF34-4FF1DD72589D}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{DAFC1E63-3359-416D-9BC2-E7DCA6F7B0F3}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{DC5E5C44-80FD-3697-9E65-9F286D92F3E7}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{E1B4C9DE-D741-385F-981E-6745FACE6F01}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{E7B623F5-9715-3F9F-A671-D1485A39F8A2}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{ED916A7B-7C68-3198-B87D-2DABC30A5587}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{EFA1BDB2-BB3D-3D9A-8EB5-D0D22E0F64F4}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{F4CBF4DD-F8FE-35BA-BB7E-68304DAAB70B}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{FC32005D-E27C-32E0-ADFA-152F598B75E7}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F9E4A054-E9B1-4BC3-83A3-76A1AE736170}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{6A1806CD-94D4-4689-BA73-E35EA1EA9990}
Schlüssel Gelöscht : HKCU\Software\Conduit
Schlüssel Gelöscht : HKCU\Software\Microsoft\IntelliType Pro\AppSpecific\Iminent.exe
Schlüssel Gelöscht : HKCU\Software\Myfree Codec
Schlüssel Gelöscht : HKCU\Software\OCS
Schlüssel Gelöscht : HKCU\Software\YahooPartnerToolbar
Schlüssel Gelöscht : HKCU\Software\AppDataLow\HavingFunOnline
Schlüssel Gelöscht : HKLM\Software\Conduit
Schlüssel Gelöscht : HKLM\Software\MediaPlayerV1
Schlüssel Gelöscht : HKLM\Software\MediaViewerV1
Schlüssel Gelöscht : HKLM\Software\MediaViewV1
Schlüssel Gelöscht : HKLM\Software\MediaWatchV1
Schlüssel Gelöscht : HKLM\Software\Myfree Codec
Schlüssel Gelöscht : HKLM\Software\Uniblue
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{29C7E8BE-FBD9-4D91-BC4F-B470C718D554}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\DivX\Install\Setup\WizardLayout\ConduitToolbar
Schlüssel Gelöscht : HKLM\Software\Classes\Installer\Features\EB8E7C929DBF19D4CBF44B077C815D45
Schlüssel Gelöscht : HKLM\Software\Classes\Installer\Products\EB8E7C929DBF19D4CBF44B077C815D45

***** [ Browser ] *****

-\\ Internet Explorer v11.0.9600.17126


-\\ Mozilla Firefox v29.0.1 (de)

[ Datei : C:\Users\Dale\AppData\Roaming\Mozilla\Firefox\Profiles\xsxkn1b9.default\prefs.js ]


-\\ Google Chrome v

[ Datei : C:\Users\Dale\AppData\Local\Google\Chrome\User Data\Default\preferences ]

Gelöscht [Search Provider] : hxxp://www.searchgol.com/?q={searchTerms}&babsrc=SP_ss&mntrId=6A114061865C2548&affID=125036&tsp=5033
Gelöscht [Extension] : dlfienamagdnkekbbbocojppncdambda
Gelöscht [Extension] : lpoimibckejjdjcfbdnajaicnklhfplh

*************************

AdwCleaner[R0].txt - [18233 octets] - [03/07/2014 18:44:50]
AdwCleaner[S0].txt - [17321 octets] - [03/07/2014 18:47:33]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [17382 octets] ##########
         
Code:
ATTFilter
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.1.4 (04.06.2014:1)
OS: Windows 7 Home Premium x64
Ran by Dale on 03.07.2014 at 20:26:28,29
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




~~~ Services



~~~ Registry Values



~~~ Registry Keys



~~~ Files



~~~ Folders

Successfully deleted: [Folder] "C:\ProgramData\boost_interprocess"
Successfully deleted: [Folder] "C:\Users\Dale\AppData\Roaming\getrighttogo"
Successfully deleted: [Folder] "C:\Users\Dale\appdata\locallow\boost_interprocess"
Successfully deleted: [Folder] "C:\Program Files (x86)\myfree codec"
Successfully deleted: [Folder] "C:\Windows\syswow64\ai_recyclebin"
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{0B856E2F-F068-4F00-B524-91632BB7B477}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{106C8F8C-87D0-4813-B567-54860269D23C}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{1576A559-4023-4739-9053-E29D5F10B323}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{17E38F77-0839-471D-AB33-96365F14BFE2}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{2096EBA8-8A7B-41D2-825D-19E43B2E7846}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{3683DB75-978C-4E0E-878F-49DBCC5CB494}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{3E6E6C16-15FF-4A56-9232-9CDFBFFE6C87}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{402EBBA6-17EE-456B-9AA5-1418AAD59A3A}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{46EE8F01-35A5-4420-9BA8-FAC72EEA1F7D}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{4B2DF914-E374-4F1D-B8DA-8A5B3A8A6433}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{4C6703E8-E8AB-49EF-82F9-0D6E067F9A10}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{4FD3F58C-FF4C-4CCF-A271-64435D8878F2}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{51B689F5-2759-4175-A07E-A824DF6CA02E}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{5DDF064F-3C9F-4133-86A8-BDE8F5E8ADE4}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{643C6932-5B76-4F3D-994B-4F76FC15EED8}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{6C4005AA-18B6-492B-86CA-DE52856A8EE8}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{6EA82678-9855-402C-B502-7968DA51C624}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{7558748F-240B-451B-A894-79FACFA34527}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{77303A27-6234-4975-A318-E1C5122A4B86}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{788D22E9-D6C5-487C-A5C5-A2E7651CFF4B}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{7A75C7D2-1C68-4EDC-9E32-B343F00BCBD7}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{81B688DC-76B8-4CA2-BAE3-92E3A6959DF5}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{8A29D473-13AB-4748-B464-D2FDA5C40489}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{8E351FE6-9EF0-4B62-80CD-999210EAB2E7}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{901EC084-7615-4BF3-97D9-2C9EE3B51D2E}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{936CE082-19BF-4321-AA4C-4E7653B63EA6}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{A44DADE1-803F-4404-B1B5-DD422F0593A7}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{A5B8406F-544A-4BFF-8C7F-E4F56198AF83}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{A5E1F6DF-A928-4B17-B67A-5E564E6495DA}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{AFA1BF67-1AF3-4D2A-966B-A9C2B6A9E31F}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{B17DA1F5-0C62-4714-94F9-2417904CA978}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{B3B8216F-8DE4-4465-87EC-3DA45770D3DA}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{B5EE3B3B-1E82-4AC1-B15A-613C7E11A635}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{BB2F199D-368B-4DB5-8890-02BE08CF4618}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{C927F9CD-34AD-41FC-BE0D-6627136D1D88}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{D3683825-0B9D-4A77-AD39-D6FA1919510B}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{DDC388E0-EC33-4841-B9C5-2CE370C40632}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{DDEC7C4C-62A7-4FBD-8C93-CAE1C83464EB}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{E4524A2B-9E3A-494D-A5DA-14F2C1C4D3C1}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{EB81CCA4-7C18-4498-95D8-EE0339C9B02A}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{ECA75E86-375B-4043-8951-4A280357FC6F}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{ECF015C4-4B7F-4FCE-B109-B77069680D98}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{F1DDB63A-1809-442F-8BC6-42834D5F3076}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{F284F21D-D29A-4D9A-B756-651963A6757C}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{F3871039-0437-46B6-8F1A-80369950E799}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{F4032D24-1941-444A-9F57-A5B40B867BF6}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{F4A2886D-6010-490D-81D7-D8C8E9C965EE}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{F569FFB3-3A11-44F8-8828-F1651D63DDFF}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{F6264AAF-62C9-4DA0-A76D-3CA4449FB383}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{F7DE209E-BE87-4D85-99D3-EF35DDAD8D67}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{F826D732-B0D9-410B-BAAA-B9792ED0E570}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{F9A52400-C925-4142-98D1-20CFE8FD364C}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{FAFE31B1-841B-4511-9D02-B7846233B067}
Successfully deleted: [Empty Folder] C:\Users\Dale\appdata\local\{FE2296C3-14AF-4AF5-9344-FA30BB78E90B}



~~~ FireFox

Emptied folder: C:\Users\Dale\AppData\Roaming\mozilla\firefox\profiles\xsxkn1b9.default\minidumps [2 files]



~~~ Event Viewer Logs were cleared





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 03.07.2014 at 20:49:47,76
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
         
FRST Logfile:
Code:
ATTFilter
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 01-07-2014
Ran by Dale (administrator) on HOME on 03-07-2014 21:40:00
Running from C:\Users\Dale\Downloads
Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: Deutsch (Deutschland)
Internet Explorer Version 11
Boot Mode: Normal


==================== Processes (Whitelisted) =================

(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe
() C:\Windows\SysWOW64\PnkBstrA.exe
(Microsoft Corporation) C:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe
(Microsoft Corporation) C:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAAnotif.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Logitech, Inc.) C:\Program Files\Logitech\SetPointP\SetPoint.exe
(Research In Motion Limited) C:\Program Files (x86)\Common Files\Research In Motion\USB Drivers\RIMBBLaunchAgent.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe
(Logitech, Inc.) C:\Program Files\Common Files\logishrd\KHAL3\KHALMNPR.exe
(Logitech, Inc.) C:\Program Files\Logitech\SetPointG\SetPointII.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Intel Corporation) C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTmon.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe
(Research In Motion Limited) C:\Program Files (x86)\Common Files\Research In Motion\USB Drivers\BbDevMgr.exe
() C:\ProgramData\HP Photo Creations\Communicator.exe


==================== Registry (Whitelisted) ==================

HKLM\...\Run: [IAAnotif] => C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\iaanotif.exe [186904 2009-06-04] (Intel Corporation)
HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [8060960 2009-08-04] (Realtek Semiconductor)
HKLM\...\Run: [EvtMgr6] => C:\Program Files\Logitech\SetPointP\SetPoint.exe [1744152 2011-06-24] (Logitech, Inc.)
HKLM-x32\...\Run: [RIMBBLaunchAgent.exe] => C:\Program Files (x86)\Common Files\Research In Motion\USB Drivers\RIMBBLaunchAgent.exe [267792 2013-01-17] (Research In Motion Limited)
HKLM-x32\...\Run: [AVP] => C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\avp.exe [356128 2013-10-10] (Kaspersky Lab ZAO)
HKLM-x32\...\Run: [DivXMediaServer] => C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe [450560 2013-05-20] (DivX, LLC)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [SDTray] => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe [4101584 2014-04-25] (Safer-Networking Ltd.)
Winlogon\Notify\LBTWlgn: c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll (Logitech, Inc.)
Winlogon\Notify\SDWinLogon-x32: SDWinLogon.dll [X]
HKU\S-1-5-21-224901007-3534270279-3868180721-1000\...\Run: [] => C:\Program Files (x86)\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe [844144 2013-02-13] (Samsung)
HKU\S-1-5-21-224901007-3534270279-3868180721-1000\...\Run: [KiesAirMessage] => C:\Program Files (x86)\Samsung\Kies\KiesAirMessage.exe [578560 2013-02-06] (Samsung Electronics)
HKU\S-1-5-21-224901007-3534270279-3868180721-1000\...\Run: [KiesPreload] => C:\Program Files (x86)\Samsung\Kies\Kies.exe [1509232 2013-02-13] (Samsung)
ShellIconOverlayIdentifiers:  SkyDrive1 -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} =>  No File
ShellIconOverlayIdentifiers:  SkyDrive2 -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} =>  No File
ShellIconOverlayIdentifiers:  SkyDrive3 -> {BBACC218-34EA-4666-9D7A-C78F2274A524} =>  No File
ShellIconOverlayIdentifiers-x32:  SkyDrive1 -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} =>  No File
ShellIconOverlayIdentifiers-x32:  SkyDrive2 -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} =>  No File
ShellIconOverlayIdentifiers-x32:  SkyDrive3 -> {BBACC218-34EA-4666-9D7A-C78F2274A524} =>  No File
BootExecute: autocheck autochk * sdnclean64.exe
GroupPolicy: Group Policy on Chrome detected <======= ATTENTION

==================== Internet (Whitelisted) ====================

HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.freenet.de/
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.medion.com
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = hxxp://medion.msn.com
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank
SearchScopes: HKLM - DefaultScope {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = 
SearchScopes: HKLM-x32 - DefaultScope value is missing.
SearchScopes: HKCU - {A14E17FF-9D09-4FDD-92BA-15F00991237C} URL = hxxp://www.google.de/search?q={searchTerms}&rlz=1I7ADFA_de
BHO: Content Blocker Plugin - {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\x64\IEExt\ContentBlocker\ie_content_blocker_plugin.dll (Kaspersky Lab ZAO)
BHO: Virtual Keyboard Plugin - {73455575-E40C-433C-9784-C78DC7761455} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\x64\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll (Kaspersky Lab ZAO)
BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: Safe Money Plugin - {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\x64\IEExt\OnlineBanking\online_banking_bho.dll (Kaspersky Lab ZAO)
BHO: URL Advisor Plugin - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\x64\IEExt\UrlAdvisor\klwtbbho.dll (Kaspersky Lab ZAO)
BHO-x32: HP Print Enhancer - {0347C33E-8762-4905-BF09-768834316C61} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_printenhancer.dll (Hewlett-Packard Co.)
BHO-x32: DivX Plus Web Player HTML5 <video> - {326E768D-4182-46FD-9C16-1449A49795F4} - C:\Program Files (x86)\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll (DivX, LLC)
BHO-x32: Content Blocker Plugin - {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\IEExt\ContentBlocker\ie_content_blocker_plugin.dll (Kaspersky Lab ZAO)
BHO-x32: Virtual Keyboard Plugin - {73455575-E40C-433C-9784-C78DC7761455} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll (Kaspersky Lab ZAO)
BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: Microsoft-Konto-Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: Safe Money Plugin - {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\IEExt\OnlineBanking\online_banking_bho.dll (Kaspersky Lab ZAO)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: URL Advisor Plugin - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\IEExt\UrlAdvisor\klwtbbho.dll (Kaspersky Lab ZAO)
BHO-x32: GretechBHO Class - {F0181C6E-9218-4792-9F3C-E8DF52B2F1AC} - C:\Program Files (x86)\GRETECH\GomPicker\GomPickerBHO.dll (Gretech Corporation)
BHO-x32: HP Smart BHO Class - {FFFFFFFF-CF4E-4F2B-BDC2-0E72E116A856} - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\hpswp_BHO.dll (Hewlett-Packard Co.)
Toolbar: HKCU - No Name - {21FA44EF-376D-4D53-9B0F-8A89D3229068} -  No File
DPF: HKLM-x32 {02BCC737-B171-4746-94C9-0D8A0B2C0089} hxxp://office.microsoft.com/sites/production/ieawsdc32.cab
DPF: HKLM-x32 {166B1BCA-3F9C-11CF-8075-444553540000} hxxp://download.macromedia.com/pub/shockwave/cabs/director/sw.cab
DPF: HKLM-x32 {5D6F45B3-9043-443D-A792-115447494D24} hxxp://messenger.zone.msn.com/MessengerGamesContent/GameContent/de/uno1/GAME_UNO1.cab
DPF: HKLM-x32 {67DABFBF-D0AB-41FA-9C46-CC0F21721616} hxxp://download.divx.com/player/DivXBrowserPlugin.cab
DPF: HKLM-x32 {C3F79A2B-B9B4-4A66-B012-3EE46475B072} hxxp://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
DPF: HKLM-x32 {D27CDB6E-AE6D-11CF-35B8-444553540000} hxxp://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
DPF: HKLM-x32 {E2883E8F-472F-4FB0-9522-AC9BF37916A7} hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Skype Technologies S.A.)
Handler-x32: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 192.168.178.1

FireFox:
========
FF ProfilePath: C:\Users\Dale\AppData\Roaming\Mozilla\Firefox\Profiles\xsxkn1b9.default
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_13_0_0_214.dll ()
FF Plugin: @divx.com/DivX VOD Helper,version=1.0.0 - C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
FF Plugin: @microsoft.com/GENUINE - disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_13_0_0_214.dll ()
FF Plugin-x32: @adobe.com/ShockwavePlayer - C:\Windows\system32\Adobe\Director\np32dsw.dll No File
FF Plugin-x32: @Apple.com/iTunes,version=1.0 - C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF Plugin-x32: @divx.com/DivX Plus Web Player Plug-In,version=1.0.0 - C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC)
FF Plugin-x32: @divx.com/DivX VOD Helper,version=1.0.0 - C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
FF Plugin-x32: @Google.com/GoogleEarthPlugin - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF Plugin-x32: @java.com/DTPlugin,version=10.45.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.45.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE - disabled No File
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeLive,version=1.3 - C:\Program Files (x86)\Microsoft\Office Live\npOLW.dll (Microsoft Corp.)
FF Plugin-x32: @microsoft.com/OfficeLive,version=1.5 - C:\Program Files (x86)\Microsoft\Office Live\npOLW.dll (Microsoft Corp.)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3505.0912 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @pandonetworks.com/PandoWebPlugin - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF Plugin-x32: @RIM.com/WebSLLauncher,version=1.0 - C:\Program Files (x86)\Common Files\Research In Motion\BBWebSLLauncher\NPWebSLLauncher.dll ()
FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKCU: @tools.google.com/Google Update;version=3 - C:\Users\Dale\AppData\Local\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin HKCU: @tools.google.com/Google Update;version=9 - C:\Users\Dale\AppData\Local\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF Plugin HKCU: pandonetworks.com/PandoWebPlugin - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml
FF Extension: Avira Browser Safety - C:\Users\Dale\AppData\Roaming\Mozilla\Firefox\Profiles\xsxkn1b9.default\Extensions\abs@avira.com [2014-06-15]
FF HKLM-x32\...\Firefox\Extensions: [smartwebprinting@hp.com] - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3
FF Extension: HP Smart Web Printing - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 [2010-06-28]
FF HKLM-x32\...\Firefox\Extensions: [virtualKeyboard@kaspersky.ru] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2012\FFExt\virtualKeyboard@kaspersky.ru
FF HKLM-x32\...\Firefox\Extensions:  - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\FFExt\url_advisor@kaspersky.com
FF Extension: Kaspersky URL Advisor - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\FFExt\url_advisor@kaspersky.com [2013-01-02]
FF HKLM-x32\...\Firefox\Extensions: [virtual_keyboard@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\FFExt\virtual_keyboard@kaspersky.com
FF Extension: Virtual Keyboard - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\FFExt\virtual_keyboard@kaspersky.com [2013-01-02]
FF HKLM-x32\...\Firefox\Extensions: [content_blocker@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\FFExt\content_blocker@kaspersky.com
FF Extension: Dangerous Websites Blocker - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\FFExt\content_blocker@kaspersky.com [2013-01-02]
FF HKLM-x32\...\Firefox\Extensions: [anti_banner@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\FFExt\anti_banner@kaspersky.com
FF Extension: Anti-Banner - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\FFExt\anti_banner@kaspersky.com [2013-01-02]
FF HKLM-x32\...\Firefox\Extensions: [online_banking@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\FFExt\online_banking@kaspersky.com
FF Extension: Safe Money - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\FFExt\online_banking@kaspersky.com [2013-01-02]
FF HKLM-x32\...\Firefox\Extensions: [{23fcfd51-4958-4f00-80a3-ae97e717ed8b}] - C:\Program Files (x86)\DivX\DivX Plus Web Player\firefox\DivXHTML5
FF Extension: DivX Plus Web Player HTML5 &lt;video&gt; - C:\Program Files (x86)\DivX\DivX Plus Web Player\firefox\DivXHTML5 [2013-08-18]
FF HKCU\...\Firefox\Extensions: [smartwebprinting@hp.com] - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3
FF Extension: HP Smart Web Printing - C:\Program Files (x86)\HP\Digital Imaging\Smart Web Printing\MozillaAddOn3 [2010-06-28]
FF HKCU\...\Thunderbird\Extensions: [{380AE6CB-09B9-4373-B360-D01C2462A6E7}] - C:\Program Files\BullGuard Ltd\BullGuard\files32\backup\thunderbirdbkplugin
FF HKCU\...\Thunderbird\Extensions: [{0E810812-F4BB-4309-942A-755587587A5E}] - C:\Program Files\BullGuard Ltd\BullGuard\files32\antispam\tbspamfilter

Chrome: 
=======
CHR HomePage: 
CHR Plugin: (Shockwave Flash) - C:\Users\Dale\AppData\Local\Google\Chrome\Application\35.0.1916.153\PepperFlash\pepflashplayer.dll ()
CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer
CHR Plugin: (Native Client) - C:\Users\Dale\AppData\Local\Google\Chrome\Application\35.0.1916.153\ppGoogleNaClPluginChrome.dll ()
CHR Plugin: (Chrome PDF Viewer) - C:\Users\Dale\AppData\Local\Google\Chrome\Application\35.0.1916.153\pdf.dll ()
CHR Plugin: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\Browser\nppdf32.dll (Adobe Systems Inc.)
CHR Plugin: (QuickTime Plug-in 7.6.9) - C:\Program Files (x86)\QuickTime\plugins\npqtplugin.dll (Apple Inc.)
CHR Plugin: (QuickTime Plug-in 7.6.9) - C:\Program Files (x86)\QuickTime\plugins\npqtplugin2.dll (Apple Inc.)
CHR Plugin: (QuickTime Plug-in 7.6.9) - C:\Program Files (x86)\QuickTime\plugins\npqtplugin3.dll (Apple Inc.)
CHR Plugin: (QuickTime Plug-in 7.6.9) - C:\Program Files (x86)\QuickTime\plugins\npqtplugin4.dll (Apple Inc.)
CHR Plugin: (QuickTime Plug-in 7.6.9) - C:\Program Files (x86)\QuickTime\plugins\npqtplugin5.dll (Apple Inc.)
CHR Plugin: (QuickTime Plug-in 7.6.9) - C:\Program Files (x86)\QuickTime\plugins\npqtplugin6.dll (Apple Inc.)
CHR Plugin: (QuickTime Plug-in 7.6.9) - C:\Program Files (x86)\QuickTime\plugins\npqtplugin7.dll (Apple Inc.)
CHR Plugin: (RIM Handheld Application Loader) - C:\Program Files (x86)\Common Files\Research In Motion\BBWebSLLauncher\NPWebSLLauncher.dll ()
CHR Plugin: (Google Earth Plugin) - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll No File
CHR Plugin: (Java(TM) Platform SE 7 U25) - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
CHR Plugin: (Microsoft Office Live Plug-in for Firefox) - C:\Program Files (x86)\Microsoft\Office Live\npOLW.dll (Microsoft Corp.)
CHR Plugin: (Photo Gallery) - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
CHR Plugin: (iTunes Application Detector) - C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
CHR Plugin: (Java Deployment Toolkit 7.0.250.17) - C:\Windows\SysWOW64\npDeployJava1.dll No File
CHR Plugin: (Shockwave for Director) - C:\Windows\system32\Adobe\Director\np32dsw.dll No File
CHR Plugin: (Silverlight Plug-In) - c:\Program Files (x86)\Microsoft Silverlight\5.1.20513.0\npctrl.dll No File
CHR Extension: (Adblock Plus) - C:\Users\Dale\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2013-10-16]
CHR Extension: (Modul zur Link-Untersuchung) - C:\Users\Dale\AppData\Local\Google\Chrome\User Data\Default\Extensions\dchlnpcodkpfdpacogkljefecpegganj [2012-04-28]
CHR Extension: (AdBlock) - C:\Users\Dale\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2013-07-28]
CHR Extension: (Sicherer Zahlungsverkehr) - C:\Users\Dale\AppData\Local\Google\Chrome\User Data\Default\Extensions\hakdifolhalapjijoafobooafbilfakh [2013-04-13]
CHR Extension: (Virtuelle Tastatur) - C:\Users\Dale\AppData\Local\Google\Chrome\User Data\Default\Extensions\jagncdcchgajhfhijbbhecadmaiegcmh [2012-04-28]
CHR Extension: (Skype Click to Call) - C:\Users\Dale\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl [2013-04-13]
CHR Extension: (Google Wallet) - C:\Users\Dale\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-08-25]
CHR Extension: (Anti-Banner) - C:\Users\Dale\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjldcfjmnllhmgjclecdnfampinooman [2012-04-28]
CHR HKLM-x32\...\Chrome\Extension: [bcogddfepkkmdcldnjjgkkhpbapjpgnb] - C:\Program Files (x86)\MediaViewerV1\MediaViewerV1alpha520\ch\MediaViewerV1alpha520.crx [2012-04-28]
CHR HKLM-x32\...\Chrome\Extension: [dchlnpcodkpfdpacogkljefecpegganj] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\ChromeExt\urladvisor.crx [2012-10-25]
CHR HKLM-x32\...\Chrome\Extension: [dficblfdgkgjnjbkonnjgghpgipfefgd] - C:\Program Files (x86)\MediaViewV1\MediaViewV1alpha1203\ch\MediaViewV1alpha1203.crx [2012-10-25]
CHR HKLM-x32\...\Chrome\Extension: [eefkbhlcfeefgfamapcpacajlbhjmlla] - C:\Program Files (x86)\MediaBuzzV1\MediaBuzzV1mode6239\ch\MediaBuzzV1mode6239.crx [2012-10-25]
CHR HKLM-x32\...\Chrome\Extension: [fkkpmdipebhedcpojaeepnplegohefko] - C:\Program Files (x86)\MediaWatchV1\MediaWatchV1home354\ch\MediaWatchV1home354.crx [2012-10-25]
CHR HKLM-x32\...\Chrome\Extension: [hakdifolhalapjijoafobooafbilfakh] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\ChromeExt\online_banking_chrome.crx [2012-10-25]
CHR HKLM-x32\...\Chrome\Extension: [hghkgaeecgjhjkannahfamoehjmkjail] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\ChromeExt\content_blocker_chrome.crx [2012-10-25]
CHR HKLM-x32\...\Chrome\Extension: [jagncdcchgajhfhijbbhecadmaiegcmh] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\ChromeExt\virtkbd.crx [2012-10-25]
CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\Skype for Chromium\skype_chrome_extension.crx [2012-10-02]
CHR HKLM-x32\...\Chrome\Extension: [mdgjgedhgcondjolkaajenbpepmdabff] - C:\Program Files (x86)\WebexpEnhancedV1\WebexpEnhancedV1alpha136\ch\WebexpEnhancedV1alpha136.crx [2012-10-02]
CHR HKLM-x32\...\Chrome\Extension: [nneajnkjbffgblleaoojgaacokifdkhm] - C:\Program Files (x86)\DivX\DivX Plus Web Player\chrome\DivXHTML5\DivXHTML5.crx [2013-07-26]
CHR HKLM-x32\...\Chrome\Extension: [pjldcfjmnllhmgjclecdnfampinooman] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\ChromeExt\ab.crx [2012-10-25]

==================== Services (Whitelisted) =================

S2 AVP; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\avp.exe [356128 2013-10-10] (Kaspersky Lab ZAO)
R3 Blackberry Device Manager; C:\Program Files (x86)\Common Files\Research In Motion\USB Drivers\BbDevMgr.exe [577536 2013-01-18] (Research In Motion Limited) [File not signed]
S3 FLEXnet Licensing Service; C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [651720 2010-08-19] (Macrovision Europe Ltd.) [File not signed]
R2 Net Driver HPZ12; C:\Windows\system32\HPZinw12.dll [71680 2010-08-06] (Hewlett-Packard) [File not signed]
R2 Pml Driver HPZ12; C:\Windows\system32\HPZipm12.dll [89600 2010-08-06] (Hewlett-Packard) [File not signed]
R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [75064 2010-07-24] ()
S3 RasMan; C:\Windows\System32\rasmans.dll [0 2010-11-20] () [File not signed]
R2 SDScannerService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [1738200 2014-04-25] (Safer-Networking Ltd.)
R2 SDUpdateService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [2081752 2014-04-25] (Safer-Networking Ltd.)
R2 SDWSCService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [171928 2014-04-25] (Safer-Networking Ltd.)
S3 TapiSrv; C:\Windows\System32\tapisrv.dll [316928 2010-11-20] () [File not signed]
S2 TuneUp.UtilitiesSvc; C:\Program Files (x86)\TuneUp Utilities 2013\TuneUpUtilitiesService64.exe [2412344 2014-01-28] (TuneUp Software)
S3 wcncsvc; C:\Windows\System32\wcncsvc.dll [367104 2010-11-20] () [File not signed]

==================== Drivers (Whitelisted) ====================

S3 61883; C:\Windows\System32\DRIVERS\61883.sys [60288 2009-07-14] (Microsoft Corporation)
S3 FsUsbExDisk; C:\Windows\SysWOW64\FsUsbExDisk.SYS [37344 2013-02-05] () [File not signed]
R0 kl1; C:\Windows\System32\DRIVERS\kl1.sys [458336 2013-12-11] (Kaspersky Lab ZAO)
U5 klflt; C:\Windows\System32\Drivers\klflt.sys [91008 2014-05-20] (Kaspersky Lab ZAO)
R1 KLIF; C:\Windows\System32\DRIVERS\klif.sys [628320 2014-05-20] (Kaspersky Lab ZAO)
R1 KLIM6; C:\Windows\System32\DRIVERS\klim6.sys [29792 2013-12-11] (Kaspersky Lab ZAO)
R3 klkbdflt; C:\Windows\System32\DRIVERS\klkbdflt.sys [29280 2013-10-10] (Kaspersky Lab ZAO)
R3 klmouflt; C:\Windows\System32\DRIVERS\klmouflt.sys [29280 2013-10-10] (Kaspersky Lab ZAO)
R1 kltdi; C:\Windows\System32\DRIVERS\kltdi.sys [54368 2013-06-19] (Kaspersky Lab ZAO)
R1 kneps; C:\Windows\System32\DRIVERS\kneps.sys [178448 2013-04-24] (Kaspersky Lab ZAO)
S3 LVPr2M64; C:\Windows\System32\DRIVERS\LVPr2M64.sys [30232 2009-10-07] ()
S3 LVPr2Mon; C:\Windows\System32\DRIVERS\LVPr2M64.sys [30232 2009-10-07] ()
S2 msikbd; C:\Windows\SysWow64\Drivers\msikbd.sys [29224 1999-04-15] (Netropa Corporation) [File not signed]
S3 RimUsb; C:\Windows\System32\Drivers\RimUsb_AMD64.sys [78336 2013-01-03] (Research In Motion Limited)
R3 RimVSerPort; C:\Windows\System32\DRIVERS\RimSerial_AMD64.sys [44544 2012-12-10] (Research in Motion Ltd)
S3 Serial; C:\Windows\system32\DRIVERS\serial.sys [94208 2009-07-14] (Brother Industries Ltd.)
R3 TuneUpUtilitiesDrv; C:\Program Files (x86)\TuneUp Utilities 2013\TuneUpUtilitiesDriver64.sys [11880 2012-11-16] (TuneUp Software)

==================== NetSvcs (Whitelisted) ===================


==================== One Month Created Files and Folders ========

2014-07-03 21:38 - 2014-07-03 18:47 - 00017683 _____ () C:\Users\Dale\Desktop\AdwCleaner[S0].txt
2014-07-03 20:49 - 2014-07-03 20:49 - 00006793 _____ () C:\Users\Dale\Desktop\JRT.txt
2014-07-03 18:54 - 2014-07-03 18:54 - 00000000 ____D () C:\Windows\ERUNT
2014-07-03 18:45 - 2010-08-30 08:34 - 00536576 _____ (SQLite Development Team) C:\Windows\SysWOW64\sqlite3.dll
2014-07-03 18:44 - 2014-07-03 20:05 - 00000000 ____D () C:\AdwCleaner
2014-07-03 18:44 - 2014-07-03 18:44 - 01016261 _____ (Thisisu) C:\Users\Dale\Downloads\JRT.exe
2014-07-03 18:43 - 2014-07-03 18:43 - 01346519 _____ () C:\Users\Dale\Downloads\adwcleaner_3.214.exe
2014-07-02 17:59 - 2014-07-02 17:59 - 00120037 _____ () C:\Users\Dale\Desktop\mbam.txt
2014-07-02 14:19 - 2014-07-02 14:20 - 00307952 _____ () C:\Windows\Minidump\070214-12901-01.dmp
2014-07-02 14:19 - 2014-07-02 14:19 - 709544817 _____ () C:\Windows\MEMORY.DMP
2014-07-02 14:10 - 2014-07-02 14:10 - 00078201 _____ () C:\Users\Dale\Desktop\Für alle Hilfesuchenden! Was muss ich vor der Eröffnung eines Themas beachten  - Trojaner-Board.htm
2014-07-02 14:10 - 2014-07-02 14:10 - 00000000 ____D () C:\Users\Dale\Desktop\Für alle Hilfesuchenden! Was muss ich vor der Eröffnung eines Themas beachten  - Trojaner-Board-Dateien
2014-07-02 14:02 - 2014-07-02 14:02 - 00003187 _____ () C:\Users\Dale\Downloads\Gmer.txt
2014-07-02 13:51 - 2014-07-02 13:51 - 00380416 _____ () C:\Users\Dale\Downloads\6n0zzb44.exe
2014-07-02 13:49 - 2014-07-03 21:40 - 00026381 _____ () C:\Users\Dale\Downloads\FRST.txt
2014-07-02 13:49 - 2014-07-03 21:40 - 00000000 ____D () C:\FRST
2014-07-02 13:49 - 2014-07-02 13:49 - 02083840 _____ (Farbar) C:\Users\Dale\Downloads\FRST64.exe
2014-07-02 13:48 - 2014-07-02 13:48 - 00000470 _____ () C:\Users\Dale\Downloads\defogger_disable.log
2014-07-02 13:48 - 2014-07-02 13:48 - 00000000 _____ () C:\Users\Dale\defogger_reenable
2014-07-02 13:47 - 2014-07-02 13:47 - 00050477 _____ () C:\Users\Dale\Downloads\Defogger.exe
2014-06-30 16:13 - 2014-06-30 16:13 - 00000000 ____D () C:\Users\Dale\Desktop\Neuer Ordner (2)
2014-06-30 16:13 - 2013-12-10 17:20 - 00381763 _____ () C:\Users\Dale\Desktop\CoreTemp64.zip
2014-06-30 16:11 - 2014-06-30 16:11 - 00000833 _____ () C:\Users\Public\Desktop\CPUID CPU-Z.lnk
2014-06-30 16:11 - 2014-06-30 16:11 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CPUID
2014-06-30 16:11 - 2014-06-30 16:11 - 00000000 ____D () C:\Program Files\CPUID
2014-06-30 16:10 - 2014-06-30 16:10 - 01496480 _____ ( ) C:\Users\Dale\Downloads\cpu-z_1.692-setup-en.exe
2014-06-30 14:35 - 2014-07-02 17:25 - 00000576 _____ () C:\Windows\LkmdfCoInst.log
2014-06-25 19:39 - 2014-06-29 10:19 - 00010752 _____ () C:\Users\Dale\Documents\Dana Bewerbung Ferienjob Ikea.wps
2014-06-24 21:30 - 2014-06-24 21:30 - 00010240 _____ () C:\Users\Dale\Documents\Bewerbung Dana Edeka.wps
2014-06-24 21:15 - 2014-06-24 21:16 - 00016384 _____ () C:\Users\Dale\Documents\Dana Bewerbung Ferienjob Edeka.wps
2014-06-24 21:04 - 2014-06-29 10:19 - 00011264 _____ () C:\Users\Dale\Documents\Lebenslauf Dana.wps
2014-06-23 10:54 - 2014-06-23 15:25 - 00126976 _____ () C:\Users\Dale\Documents\Kündigung Hortplatz Lisa.wps
2014-06-22 11:01 - 2014-06-30 18:06 - 00000000 ____D () C:\ProgramData\Spybot - Search & Destroy
2014-06-22 11:01 - 2014-06-22 11:02 - 00000000 ____D () C:\Program Files (x86)\Spybot - Search & Destroy 2
2014-06-22 11:01 - 2014-06-22 11:01 - 00001395 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot-S&D Start Center.lnk
2014-06-22 11:01 - 2014-06-22 11:01 - 00001383 _____ () C:\Users\Public\Desktop\Spybot-S&D Start Center.lnk
2014-06-22 11:01 - 2014-06-22 11:01 - 00000000 ____D () C:\Windows\System32\Tasks\Safer-Networking
2014-06-22 11:01 - 2014-06-22 11:01 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy 2
2014-06-22 11:01 - 2013-09-20 10:49 - 00021040 _____ (Safer Networking Limited) C:\Windows\system32\sdnclean64.exe
2014-06-22 10:58 - 2014-06-22 10:58 - 00961360 _____ (Chip Digital GmbH) C:\Users\Dale\Downloads\SpyBot Search Destroy - CHIP-Installer.exe
2014-06-19 18:08 - 2014-07-03 19:55 - 00182766 _____ () C:\Windows\PFRO.log
2014-06-19 17:17 - 2014-07-03 20:24 - 00004315 _____ () C:\Windows\setupact.log
2014-06-19 17:17 - 2014-06-19 17:17 - 00000000 _____ () C:\Windows\setuperr.log
2014-06-19 16:32 - 2014-07-02 17:51 - 00122584 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2014-06-19 16:32 - 2014-06-19 16:32 - 00001106 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk
2014-06-19 16:32 - 2014-06-19 16:32 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 
2014-06-19 16:32 - 2014-06-19 16:32 - 00000000 ____D () C:\ProgramData\Malwarebytes
2014-06-19 16:32 - 2014-06-19 16:32 - 00000000 ____D () C:\Program Files (x86)\ Malwarebytes Anti-Malware 
2014-06-19 16:32 - 2014-05-12 07:26 - 00091352 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2014-06-19 16:32 - 2014-05-12 07:26 - 00063704 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2014-06-19 16:32 - 2014-05-12 07:25 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2014-06-19 16:20 - 2014-06-19 16:20 - 00002770 _____ () C:\Windows\System32\Tasks\CCleanerSkipUAC
2014-06-19 16:20 - 2014-06-19 16:20 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2014-06-19 16:20 - 2014-06-19 16:20 - 00000000 ____D () C:\Program Files\CCleaner
2014-06-19 16:14 - 2014-06-19 16:14 - 03673664 _____ (Piriform Ltd) C:\Users\Dale\Downloads\ccsetup414_slim.exe
2014-06-19 16:12 - 2014-06-19 16:12 - 17292760 _____ (Malwarebytes Corporation ) C:\Users\Dale\Downloads\mbam-setup-2.0.2.1012 (1).exe
2014-06-19 16:11 - 2014-06-19 16:12 - 17292760 _____ (Malwarebytes Corporation ) C:\Users\Dale\Downloads\mbam-setup-2.0.2.1012.exe
2014-06-15 21:05 - 2014-01-09 04:22 - 05694464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll
2014-06-15 21:05 - 2014-01-04 00:44 - 06574592 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll
2014-06-15 20:50 - 2014-04-25 04:34 - 00801280 _____ (Microsoft Corporation) C:\Windows\system32\usp10.dll
2014-06-15 20:50 - 2014-04-25 04:06 - 00626688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\usp10.dll
2014-06-15 20:50 - 2014-03-25 04:43 - 14175744 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2014-06-15 20:50 - 2014-03-25 04:09 - 12874240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2014-06-15 20:49 - 2014-04-05 04:47 - 01903552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2014-06-15 20:49 - 2014-04-05 04:47 - 00288192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS
2014-06-15 20:48 - 2014-03-26 16:44 - 02002432 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll
2014-06-15 20:48 - 2014-03-26 16:44 - 01882112 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2014-06-15 20:48 - 2014-03-26 16:41 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml6r.dll
2014-06-15 20:48 - 2014-03-26 16:41 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll
2014-06-15 20:48 - 2014-03-26 16:27 - 01389056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll
2014-06-15 20:48 - 2014-03-26 16:27 - 01237504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll
2014-06-15 20:48 - 2014-03-26 16:25 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6r.dll
2014-06-15 20:48 - 2014-03-26 16:25 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll
2014-06-15 19:51 - 2014-06-15 19:51 - 04536336 _____ (Avira Operations GmbH & Co. KG) C:\Users\Dale\Downloads\avira_de_av_4021446951__ws.exe
2014-06-15 19:39 - 2013-10-02 03:10 - 00044544 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbGDCoInstaller.dll
2014-06-15 19:38 - 2013-10-02 04:22 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\TsUsbFlt.sys
2014-06-15 19:38 - 2013-10-02 04:11 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyControl.exe
2014-06-15 19:38 - 2013-10-02 04:08 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll
2014-06-15 19:38 - 2013-10-02 03:48 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\MsRdpWebAccess.dll
2014-06-15 19:38 - 2013-10-02 03:48 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\wksprtPS.dll
2014-06-15 19:38 - 2013-10-02 03:29 - 00062976 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll
2014-06-15 19:38 - 2013-10-02 02:15 - 01057280 _____ (Microsoft Corporation) C:\Windows\system32\rdvidcrl.dll
2014-06-15 19:38 - 2013-10-02 02:14 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MsRdpWebAccess.dll
2014-06-15 19:38 - 2013-10-02 02:14 - 00017920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wksprtPS.dll
2014-06-15 19:38 - 2013-10-02 02:08 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\TSWbPrxy.exe
2014-06-15 19:38 - 2013-10-02 02:01 - 00420864 _____ (Microsoft Corporation) C:\Windows\system32\wksprt.exe
2014-06-15 19:38 - 2013-10-02 01:58 - 00053248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll
2014-06-15 19:38 - 2013-10-02 01:31 - 01147392 _____ (Microsoft Corporation) C:\Windows\system32\mstsc.exe
2014-06-15 19:38 - 2013-10-02 01:08 - 00855552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdvidcrl.dll
2014-06-15 19:38 - 2013-10-02 00:34 - 01068544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstsc.exe
2014-06-15 18:59 - 2014-06-15 18:59 - 00000000 ____D () C:\Users\Dale\AppData\Local\Microsoft Help
2014-06-15 18:56 - 2014-05-30 12:21 - 23414784 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-06-15 18:56 - 2014-05-30 12:02 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-06-15 18:56 - 2014-05-30 12:02 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2014-06-15 18:56 - 2014-05-30 11:45 - 02768384 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-06-15 18:56 - 2014-05-30 11:39 - 00548352 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-06-15 18:56 - 2014-05-30 11:39 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-06-15 18:56 - 2014-05-30 11:38 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2014-06-15 18:56 - 2014-05-30 11:28 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-06-15 18:56 - 2014-05-30 11:27 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-06-15 18:56 - 2014-05-30 11:24 - 00574976 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-06-15 18:56 - 2014-05-30 11:21 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-06-15 18:56 - 2014-05-30 11:21 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2014-06-15 18:56 - 2014-05-30 11:20 - 00752640 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2014-06-15 18:56 - 2014-05-30 11:18 - 17271296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-06-15 18:56 - 2014-05-30 11:11 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2014-06-15 18:56 - 2014-05-30 11:08 - 05782528 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-06-15 18:56 - 2014-05-30 11:06 - 00452096 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-06-15 18:56 - 2014-05-30 11:02 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-06-15 18:56 - 2014-05-30 10:55 - 00038400 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-06-15 18:56 - 2014-05-30 10:49 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-06-15 18:56 - 2014-05-30 10:46 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-06-15 18:56 - 2014-05-30 10:44 - 00455168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2014-06-15 18:56 - 2014-05-30 10:44 - 00295424 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-06-15 18:56 - 2014-05-30 10:43 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2014-06-15 18:56 - 2014-05-30 10:42 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2014-06-15 18:56 - 2014-05-30 10:38 - 02179072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2014-06-15 18:56 - 2014-05-30 10:35 - 00608768 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-06-15 18:56 - 2014-05-30 10:34 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2014-06-15 18:56 - 2014-05-30 10:33 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2014-06-15 18:56 - 2014-05-30 10:30 - 00440832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2014-06-15 18:56 - 2014-05-30 10:29 - 00631808 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-06-15 18:56 - 2014-05-30 10:28 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2014-06-15 18:56 - 2014-05-30 10:27 - 00592896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2014-06-15 18:56 - 2014-05-30 10:24 - 01249280 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2014-06-15 18:56 - 2014-05-30 10:23 - 02040832 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-06-15 18:56 - 2014-05-30 10:16 - 00368128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2014-06-15 18:56 - 2014-05-30 10:10 - 00032256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2014-06-15 18:56 - 2014-05-30 10:06 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2014-06-15 18:56 - 2014-05-30 10:04 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2014-06-15 18:56 - 2014-05-30 10:02 - 00242688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2014-06-15 18:56 - 2014-05-30 09:56 - 04244992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-06-15 18:56 - 2014-05-30 09:56 - 02266112 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-06-15 18:56 - 2014-05-30 09:54 - 00526336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2014-06-15 18:56 - 2014-05-30 09:50 - 01068032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2014-06-15 18:56 - 2014-05-30 09:49 - 01964544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2014-06-15 18:56 - 2014-05-30 09:43 - 13522944 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-06-15 18:56 - 2014-05-30 09:40 - 11725312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-06-15 18:56 - 2014-05-30 09:30 - 01398272 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-06-15 18:56 - 2014-05-30 09:21 - 01790976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2014-06-15 18:56 - 2014-05-30 09:15 - 01143296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-06-15 18:56 - 2014-05-30 09:13 - 00846336 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-06-15 18:56 - 2014-05-30 09:13 - 00704512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2014-06-15 18:55 - 2014-06-08 11:13 - 00506368 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2014-06-15 18:55 - 2014-06-08 11:08 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2014-06-15 18:55 - 2014-04-12 04:22 - 00155072 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2014-06-15 18:55 - 2014-04-12 04:22 - 00095680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2014-06-15 18:55 - 2014-04-12 04:19 - 01460736 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2014-06-15 18:55 - 2014-04-12 04:19 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2014-06-15 18:55 - 2014-04-12 04:19 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2014-06-15 18:55 - 2014-04-12 04:19 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2014-06-15 18:55 - 2014-04-12 04:19 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2014-06-15 18:55 - 2014-04-12 04:12 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2014-06-15 18:55 - 2014-04-12 04:10 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2014-06-15 18:55 - 2014-03-04 11:47 - 05550016 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2014-06-15 18:55 - 2014-03-04 11:44 - 00728064 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2014-06-15 18:55 - 2014-03-04 11:44 - 00722944 _____ (Microsoft Corporation) C:\Windows\system32\objsel.dll
2014-06-15 18:55 - 2014-03-04 11:44 - 00424960 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2014-06-15 18:55 - 2014-03-04 11:44 - 00340992 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2014-06-15 18:55 - 2014-03-04 11:44 - 00314880 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2014-06-15 18:55 - 2014-03-04 11:44 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2014-06-15 18:55 - 2014-03-04 11:44 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2014-06-15 18:55 - 2014-03-04 11:44 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\wincredprovider.dll
2014-06-15 18:55 - 2014-03-04 11:43 - 00455168 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe
2014-06-15 18:55 - 2014-03-04 11:43 - 00057344 _____ (Microsoft Corporation) C:\Windows\system32\cngprovider.dll
2014-06-15 18:55 - 2014-03-04 11:43 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\adprovider.dll
2014-06-15 18:55 - 2014-03-04 11:43 - 00053760 _____ (Microsoft Corporation) C:\Windows\system32\capiprovider.dll
2014-06-15 18:55 - 2014-03-04 11:43 - 00052736 _____ (Microsoft Corporation) C:\Windows\system32\dpapiprovider.dll
2014-06-15 18:55 - 2014-03-04 11:43 - 00044544 _____ (Microsoft Corporation) C:\Windows\system32\dimsroam.dll
2014-06-15 18:55 - 2014-03-04 11:43 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2014-06-15 18:55 - 2014-03-04 11:20 - 03969984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2014-06-15 18:55 - 2014-03-04 11:20 - 03914176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2014-06-15 18:55 - 2014-03-04 11:17 - 00550912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2014-06-15 18:55 - 2014-03-04 11:17 - 00538112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\objsel.dll
2014-06-15 18:55 - 2014-03-04 11:17 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2014-06-15 18:55 - 2014-03-04 11:17 - 00247808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2014-06-15 18:55 - 2014-03-04 11:17 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll
2014-06-15 18:55 - 2014-03-04 11:17 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
2014-06-15 18:55 - 2014-03-04 11:17 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cngprovider.dll
2014-06-15 18:55 - 2014-03-04 11:17 - 00049664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adprovider.dll
2014-06-15 18:55 - 2014-03-04 11:17 - 00048128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\capiprovider.dll
2014-06-15 18:55 - 2014-03-04 11:17 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dpapiprovider.dll
2014-06-15 18:55 - 2014-03-04 11:17 - 00036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dimsroam.dll
2014-06-15 18:55 - 2014-03-04 11:17 - 00035328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wincredprovider.dll
2014-06-15 18:55 - 2014-03-04 11:17 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll
2014-06-15 18:55 - 2014-03-04 11:16 - 00274944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2014-06-15 18:55 - 2013-09-25 04:23 - 01030144 _____ (Microsoft Corporation) C:\Windows\system32\TSWorkspace.dll
2014-06-15 18:55 - 2013-09-25 03:57 - 00792576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSWorkspace.dll
2014-06-15 18:54 - 2014-05-08 11:32 - 03178496 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll
2014-06-15 18:54 - 2014-05-08 11:32 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\RdpGroupPolicyExtension.dll
2014-06-14 14:49 - 2014-06-14 14:52 - 00000000 ____D () C:\Users\Dale\Downloads\Pickleball
2014-06-11 19:06 - 2014-06-13 15:56 - 00049664 _____ () C:\Users\Dale\Documents\Übernachtung BTO 27.06.2014.wps
2014-06-08 08:24 - 2014-06-08 08:24 - 00000000 ____D () C:\Users\Dale\AppData\Local\Macromedia
2014-06-03 20:55 - 2014-06-03 20:53 - 00040988 _____ () C:\Users\Dale\Documents\qrcode.jpeg
2014-06-03 20:52 - 2014-06-03 20:53 - 00040988 _____ () C:\Users\Dale\Downloads\qrcode.jpeg

==================== One Month Modified Files and Folders =======

2014-07-03 21:40 - 2014-07-02 13:49 - 00026381 _____ () C:\Users\Dale\Downloads\FRST.txt
2014-07-03 21:40 - 2014-07-02 13:49 - 00000000 ____D () C:\FRST
2014-07-03 21:39 - 2009-12-28 19:44 - 01281874 _____ () C:\Windows\WindowsUpdate.log
2014-07-03 21:38 - 2014-04-03 19:20 - 00000322 _____ () C:\Windows\Tasks\HP Photo Creations Communicator.job
2014-07-03 21:16 - 2010-10-07 21:28 - 00001106 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-07-03 21:05 - 2010-10-20 19:47 - 00001116 _____ () C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-224901007-3534270279-3868180721-1000UA.job
2014-07-03 20:50 - 2009-07-14 06:45 - 00010096 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-07-03 20:50 - 2009-07-14 06:45 - 00010096 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-07-03 20:49 - 2014-07-03 20:49 - 00006793 _____ () C:\Users\Dale\Desktop\JRT.txt
2014-07-03 20:47 - 2012-04-01 16:43 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-07-03 20:35 - 2010-01-06 19:36 - 00000000 ____D () C:\ProgramData\Kaspersky Lab
2014-07-03 20:25 - 2010-10-07 21:28 - 00001102 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-07-03 20:24 - 2014-06-19 17:17 - 00004315 _____ () C:\Windows\setupact.log
2014-07-03 20:24 - 2009-07-14 07:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-07-03 20:05 - 2014-07-03 18:44 - 00000000 ____D () C:\AdwCleaner
2014-07-03 19:55 - 2014-06-19 18:08 - 00182766 _____ () C:\Windows\PFRO.log
2014-07-03 19:05 - 2010-10-20 19:47 - 00001064 _____ () C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-224901007-3534270279-3868180721-1000Core.job
2014-07-03 18:54 - 2014-07-03 18:54 - 00000000 ____D () C:\Windows\ERUNT
2014-07-03 18:47 - 2014-07-03 21:38 - 00017683 _____ () C:\Users\Dale\Desktop\AdwCleaner[S0].txt
2014-07-03 18:44 - 2014-07-03 18:44 - 01016261 _____ (Thisisu) C:\Users\Dale\Downloads\JRT.exe
2014-07-03 18:43 - 2014-07-03 18:43 - 01346519 _____ () C:\Users\Dale\Downloads\adwcleaner_3.214.exe
2014-07-02 17:59 - 2014-07-02 17:59 - 00120037 _____ () C:\Users\Dale\Desktop\mbam.txt
2014-07-02 17:52 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\rescache
2014-07-02 17:51 - 2014-06-19 16:32 - 00122584 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2014-07-02 17:25 - 2014-06-30 14:35 - 00000576 _____ () C:\Windows\LkmdfCoInst.log
2014-07-02 17:25 - 2011-10-10 18:23 - 00018960 _____ (Logitech, Inc.) C:\Windows\system32\Drivers\LNonPnP.sys
2014-07-02 14:26 - 2010-09-13 17:09 - 00003910 _____ () C:\Windows\System32\Tasks\User_Feed_Synchronization-{463EE08C-9BDE-480E-BDAD-021B1DE03AD5}
2014-07-02 14:20 - 2014-07-02 14:19 - 00307952 _____ () C:\Windows\Minidump\070214-12901-01.dmp
2014-07-02 14:19 - 2014-07-02 14:19 - 709544817 _____ () C:\Windows\MEMORY.DMP
2014-07-02 14:19 - 2013-05-17 15:39 - 00000000 ____D () C:\Windows\Minidump
2014-07-02 14:10 - 2014-07-02 14:10 - 00078201 _____ () C:\Users\Dale\Desktop\Für alle Hilfesuchenden! Was muss ich vor der Eröffnung eines Themas beachten  - Trojaner-Board.htm
2014-07-02 14:10 - 2014-07-02 14:10 - 00000000 ____D () C:\Users\Dale\Desktop\Für alle Hilfesuchenden! Was muss ich vor der Eröffnung eines Themas beachten  - Trojaner-Board-Dateien
2014-07-02 14:05 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\NDF
2014-07-02 14:02 - 2014-07-02 14:02 - 00003187 _____ () C:\Users\Dale\Downloads\Gmer.txt
2014-07-02 13:51 - 2014-07-02 13:51 - 00380416 _____ () C:\Users\Dale\Downloads\6n0zzb44.exe
2014-07-02 13:49 - 2014-07-02 13:49 - 02083840 _____ (Farbar) C:\Users\Dale\Downloads\FRST64.exe
2014-07-02 13:48 - 2014-07-02 13:48 - 00000470 _____ () C:\Users\Dale\Downloads\defogger_disable.log
2014-07-02 13:48 - 2014-07-02 13:48 - 00000000 _____ () C:\Users\Dale\defogger_reenable
2014-07-02 13:48 - 2009-12-28 19:44 - 00000000 ____D () C:\Users\Dale
2014-07-02 13:47 - 2014-07-02 13:47 - 00050477 _____ () C:\Users\Dale\Downloads\Defogger.exe
2014-06-30 18:06 - 2014-06-22 11:01 - 00000000 ____D () C:\ProgramData\Spybot - Search & Destroy
2014-06-30 16:13 - 2014-06-30 16:13 - 00000000 ____D () C:\Users\Dale\Desktop\Neuer Ordner (2)
2014-06-30 16:11 - 2014-06-30 16:11 - 00000833 _____ () C:\Users\Public\Desktop\CPUID CPU-Z.lnk
2014-06-30 16:11 - 2014-06-30 16:11 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CPUID
2014-06-30 16:11 - 2014-06-30 16:11 - 00000000 ____D () C:\Program Files\CPUID
2014-06-30 16:10 - 2014-06-30 16:10 - 01496480 _____ ( ) C:\Users\Dale\Downloads\cpu-z_1.692-setup-en.exe
2014-06-30 14:35 - 2010-04-30 17:02 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Logitech
2014-06-29 10:27 - 2009-07-14 19:58 - 00713974 _____ () C:\Windows\system32\perfh007.dat
2014-06-29 10:27 - 2009-07-14 19:58 - 00154090 _____ () C:\Windows\system32\perfc007.dat
2014-06-29 10:27 - 2009-07-14 07:13 - 01648728 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-06-29 10:19 - 2014-06-25 19:39 - 00010752 _____ () C:\Users\Dale\Documents\Dana Bewerbung Ferienjob Ikea.wps
2014-06-29 10:19 - 2014-06-24 21:04 - 00011264 _____ () C:\Users\Dale\Documents\Lebenslauf Dana.wps
2014-06-29 10:19 - 2009-12-29 11:27 - 00014026 _____ () C:\Users\Dale\AppData\Roaming\wklnhst.dat
2014-06-29 10:17 - 2009-07-14 07:32 - 00000000 ____D () C:\Windows\system32\FxsTmp
2014-06-25 19:00 - 2010-10-20 19:47 - 00004084 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-224901007-3534270279-3868180721-1000UA
2014-06-25 19:00 - 2010-10-20 19:47 - 00003688 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-224901007-3534270279-3868180721-1000Core
2014-06-24 21:30 - 2014-06-24 21:30 - 00010240 _____ () C:\Users\Dale\Documents\Bewerbung Dana Edeka.wps
2014-06-24 21:16 - 2014-06-24 21:15 - 00016384 _____ () C:\Users\Dale\Documents\Dana Bewerbung Ferienjob Edeka.wps
2014-06-23 20:35 - 2010-08-19 18:19 - 00000000 ____D () C:\Users\Dale\Documents\BitLord
2014-06-23 15:25 - 2014-06-23 10:54 - 00126976 _____ () C:\Users\Dale\Documents\Kündigung Hortplatz Lisa.wps
2014-06-22 17:38 - 2010-09-21 20:27 - 00000000 ____D () C:\Users\Dale\TSV SPANDAU PIC`S
2014-06-22 17:37 - 2010-09-28 20:10 - 00140288 ___SH () C:\Users\Dale\Thumbs.db
2014-06-22 12:39 - 2010-08-07 22:02 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\2mGames
2014-06-22 11:02 - 2014-06-22 11:01 - 00000000 ____D () C:\Program Files (x86)\Spybot - Search & Destroy 2
2014-06-22 11:01 - 2014-06-22 11:01 - 00001395 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot-S&D Start Center.lnk
2014-06-22 11:01 - 2014-06-22 11:01 - 00001383 _____ () C:\Users\Public\Desktop\Spybot-S&D Start Center.lnk
2014-06-22 11:01 - 2014-06-22 11:01 - 00000000 ____D () C:\Windows\System32\Tasks\Safer-Networking
2014-06-22 11:01 - 2014-06-22 11:01 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy 2
2014-06-22 10:58 - 2014-06-22 10:58 - 00961360 _____ (Chip Digital GmbH) C:\Users\Dale\Downloads\SpyBot Search Destroy - CHIP-Installer.exe
2014-06-21 16:40 - 2014-05-20 16:58 - 00011264 _____ () C:\Users\Dale\Documents\Erik Arbeitsamt Ende befristeter Vertrag.wps
2014-06-21 16:25 - 2013-10-04 17:41 - 00018944 _____ () C:\Users\Dale\Documents\Bewerbung Erik AWB.wps
2014-06-21 16:03 - 2010-01-07 23:33 - 00011776 _____ () C:\Users\Dale\Documents\Lebenslauf Erik.wps
2014-06-19 17:17 - 2014-06-19 17:17 - 00000000 _____ () C:\Windows\setuperr.log
2014-06-19 16:32 - 2014-06-19 16:32 - 00001106 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk
2014-06-19 16:32 - 2014-06-19 16:32 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 
2014-06-19 16:32 - 2014-06-19 16:32 - 00000000 ____D () C:\ProgramData\Malwarebytes
2014-06-19 16:32 - 2014-06-19 16:32 - 00000000 ____D () C:\Program Files (x86)\ Malwarebytes Anti-Malware 
2014-06-19 16:22 - 2009-12-29 15:02 - 00000000 ____D () C:\Users\Dale\Tracing
2014-06-19 16:22 - 2009-11-06 22:12 - 00000000 ____D () C:\Windows\Panther
2014-06-19 16:20 - 2014-06-19 16:20 - 00002770 _____ () C:\Windows\System32\Tasks\CCleanerSkipUAC
2014-06-19 16:20 - 2014-06-19 16:20 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2014-06-19 16:20 - 2014-06-19 16:20 - 00000000 ____D () C:\Program Files\CCleaner
2014-06-19 16:14 - 2014-06-19 16:14 - 03673664 _____ (Piriform Ltd) C:\Users\Dale\Downloads\ccsetup414_slim.exe
2014-06-19 16:12 - 2014-06-19 16:12 - 17292760 _____ (Malwarebytes Corporation ) C:\Users\Dale\Downloads\mbam-setup-2.0.2.1012 (1).exe
2014-06-19 16:12 - 2014-06-19 16:11 - 17292760 _____ (Malwarebytes Corporation ) C:\Users\Dale\Downloads\mbam-setup-2.0.2.1012.exe
2014-06-18 18:11 - 2010-10-07 21:28 - 00004102 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2014-06-18 18:11 - 2010-10-07 21:28 - 00003850 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2014-06-15 19:51 - 2014-06-15 19:51 - 04536336 _____ (Avira Operations GmbH & Co. KG) C:\Users\Dale\Downloads\avira_de_av_4021446951__ws.exe
2014-06-15 19:31 - 2013-08-10 15:02 - 00000000 ____D () C:\Windows\system32\MRT
2014-06-15 19:30 - 2009-11-06 16:54 - 00000000 ____D () C:\ProgramData\Microsoft Help
2014-06-15 19:00 - 2014-05-11 18:46 - 00000000 ___SD () C:\Windows\system32\CompatTel
2014-06-15 18:59 - 2014-06-15 18:59 - 00000000 ____D () C:\Users\Dale\AppData\Local\Microsoft Help
2014-06-15 14:06 - 2010-08-22 14:05 - 00000000 ____D () C:\Users\Dale\AppData\Local\Nero
2014-06-15 09:13 - 2009-07-14 07:08 - 00017262 _____ () C:\Windows\Tasks\SCHEDLGU.TXT
2014-06-14 14:57 - 2010-02-09 22:44 - 00000000 ____D () C:\Users\Dale\AppData\Local\Apple Computer
2014-06-14 14:52 - 2014-06-14 14:49 - 00000000 ____D () C:\Users\Dale\Downloads\Pickleball
2014-06-13 15:56 - 2014-06-11 19:06 - 00049664 _____ () C:\Users\Dale\Documents\Übernachtung BTO 27.06.2014.wps
2014-06-08 11:13 - 2014-06-15 18:55 - 00506368 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2014-06-08 11:08 - 2014-06-15 18:55 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2014-06-08 08:24 - 2014-06-08 08:24 - 00000000 ____D () C:\Users\Dale\AppData\Local\Macromedia
2014-06-08 08:24 - 2012-04-01 16:43 - 00692400 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-06-08 08:24 - 2012-04-01 16:43 - 00003822 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2014-06-08 08:24 - 2011-05-16 19:28 - 00070832 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-06-03 20:53 - 2014-06-03 20:55 - 00040988 _____ () C:\Users\Dale\Documents\qrcode.jpeg
2014-06-03 20:53 - 2014-06-03 20:52 - 00040988 _____ () C:\Users\Dale\Downloads\qrcode.jpeg

Files to move or delete:
====================
C:\ProgramData\PKP_DLeo.DAT
C:\ProgramData\PKP_DLes.DAT
C:\ProgramData\PKP_DLet.DAT
C:\ProgramData\PKP_DLev.DAT
C:\Users\Dale\Bubblets.dat
C:\Users\Dale\iTunesSetup.exe
C:\Users\Dale\OODiskRecovery664Ger.exe
C:\Users\Dale\wlsetup-web.exe
C:\Users\Public\dcmsvcsetup.exe
C:\Users\Public\invokesi.exe


Some content of TEMP:
====================
C:\Users\Dale\AppData\Local\Temp\avgnt.exe
C:\Users\Dale\AppData\Local\Temp\Quarantine.exe


==================== Bamital & volsnap Check =================

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2014-07-02 17:45

==================== End Of Log ============================
         
--- --- ---

Alt 04.07.2014, 09:07   #11
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
PC fängt nach 10min. an zu laggen und/ oder bleibt hängen - Standard

PC fängt nach 10min. an zu laggen und/ oder bleibt hängen



Bitte auch ne neue Addition.txt erstellen, dazu FRST starten und einen Haken setzen bei Addition.txt, dann auf Scan klicken.

__________________
Logfiles bitte immer in CODE-Tags posten

Alt 04.07.2014, 10:15   #12
Instinct84
 
PC fängt nach 10min. an zu laggen und/ oder bleibt hängen - Standard

PC fängt nach 10min. an zu laggen und/ oder bleibt hängen



Hier die Addition.txt:

Code:
ATTFilter
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 01-07-2014
Ran by Dale at 2014-07-04 11:11:31
Running from C:\Users\Dale\Downloads
Boot Mode: Normal
==========================================================


==================== Security Center ========================

AV: Avira Desktop (Enabled - Up to date) {4D041356-F94D-285F-8768-AAE50FA36859}
AS: Avira Desktop (Enabled - Up to date) {F665F2B2-DF77-27D1-BDD8-9197742422E4}
AS: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Spybot - Search and Destroy (Enabled - Out of date) {9BC38DF1-3CCA-732D-A930-C1CA5F20A4B0}

==================== Installed Programs ======================

 Update for Microsoft Office 2007 (KB2508958) (HKLM-x32\...\{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{0C5823AA-7B6F-44E1-8D5B-8FD1FF0E6438}) (Version:  - Microsoft)
64 Bit HP CIO Components Installer (Version: 7.2.8 - Hewlett-Packard) Hidden
Activation Assistant for the 2007 Microsoft Office suites (x32 Version: 1.0 - Microsoft Corporation) Hidden
Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 2.7.1.19610 - Adobe Systems Incorporated)
Adobe AIR (x32 Version: 2.7.1.19610 - Adobe Systems Incorporated) Hidden
Adobe Anchor Service CS3 (x32 Version: 1.0 - Adobe Systems Incorporated) Hidden
Adobe Asset Services CS3 (x32 Version: 3 - Adobe Systems Incorporated) Hidden
Adobe Bridge CS4 (x32 Version: 3 - Adobe Systems Incorporated) Hidden
Adobe Bridge Start Meeting (x32 Version: 1.0 - Adobe Systems Incorporated) Hidden
Adobe CMaps (x32 Version: 1.0 - Adobe Systems Incorporated) Hidden
Adobe Color - Photoshop Specific (x32 Version: 1.0 - Adobe Systems Incorporated) Hidden
Adobe Color Common Settings (x32 Version: 1.0 - Adobe Systems Incorporated) Hidden
Adobe Color EU Extra Settings (x32 Version: 1.0 - Adobe Systems Incorporated) Hidden
Adobe Color JA Extra Settings (x32 Version: 1.0 - Adobe Systems Incorporated) Hidden
Adobe Color NA Recommended Settings (x32 Version: 1.0 - Adobe Systems Incorporated) Hidden
Adobe Default Language CS3 (x32 Version: 1.0 - Adobe Systems Incorporated) Hidden
Adobe Device Central CS3 (x32 Version: 1.0 - Adobe Systems Incorporated) Hidden
Adobe ExtendScript Toolkit 2 (x32 Version: 2.0.1 - Adobe Systems Incorporated) Hidden
Adobe Flash Player 13 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 13.0.0.214 - Adobe Systems Incorporated)
Adobe Flash Player 13 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 13.0.0.214 - Adobe Systems Incorporated)
Adobe Fonts All (x32 Version: 1.0 - Adobe Systems Incorporated) Hidden
Adobe Help Viewer CS3 (x32 Version: 1 - Adobe Systems Incorporated) Hidden
Adobe Linguistics CS3 (x32 Version: 3.0.0 - Adobe Systems Incorporated) Hidden
Adobe PDF Library Files (x32 Version: 8.0 - Adobe Systems Incorporated) Hidden
Adobe Photoshop CS4 (HKLM-x32\...\Adobe_b741c3c52d3108664cedeb2b76f6d96) (Version: 11.0 - Adobe Systems Incorporated)
Adobe Photoshop CS4 (x32 Version: 11.0 - Adobe Systems Incorporated) Hidden
Adobe Photoshop Elements 7.0 (HKLM-x32\...\Adobe Photoshop Elements 7) (Version: 7.0 - Adobe Systems Incorporated)
Adobe Photoshop Elements 7.0 (x32 Version: 7.0.0.3 - Adobe Systems Incorporated) Hidden
Adobe Photoshop Lightroom 3 64-bit (HKLM\...\{1387BA33-3FAC-49E9-B545-0E8D3BBC550B}) (Version: 3.0.2 - Adobe)
Adobe Reader XI (11.0.05) - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AB0000000001}) (Version: 11.0.05 - Adobe Systems Incorporated)
Adobe Setup (x32 Version: 1.0 - Adobe Systems Incorporated) Hidden
Adobe Shockwave Player 11.5 (HKLM-x32\...\Adobe Shockwave Player) (Version: 11.5.8.612 - Adobe Systems, Inc.)
Adobe Type Support (x32 Version: 1.0 - Adobe Systems Incorporated) Hidden
Adobe Update Manager CS3 (x32 Version: 5.1.0 - Adobe Systems Incorporated) Hidden
Adobe Version Cue CS3 Client (x32 Version: 3 - Adobe Systems Incorporated) Hidden
Adobe WinSoft Linguistics Plugin (x32 Version: 1.0 - Adobe Systems Incorporated) Hidden
Adobe XMP Panels CS3 (x32 Version: 1.0 - Adobe Systems Incorporated) Hidden
Apple Application Support (HKLM-x32\...\{AAC5D43E-816D-4C2D-8E51-55FFF35BE301}) (Version: 3.0.1 - Apple Inc.)
Apple Mobile Device Support (HKLM\...\{787136D2-F0F8-4625-AA3F-72D7795AC842}) (Version: 7.1.1.3 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.)
Avira (HKLM-x32\...\{89ef9b48-b56b-48d8-b5c1-4eb9a5ca50cb}) (Version: 1.1.16.30000 - Avira Operations GmbH & Co. KG)
Avira (x32 Version: 1.1.16.30000 - Avira Operations GmbH & Co. KG) Hidden
Avira Free Antivirus (HKLM-x32\...\Avira AntiVir Desktop) (Version: 14.0.5.450 - Avira)
AVM FRITZ!Box Dokumentation (HKLM-x32\...\AVMFBox) (Version:  - AVM Berlin)
AVM FRITZ!Box Druckeranschluss (HKLM-x32\...\AVMFBoxPrinter) (Version:  - AVM Berlin)
BlackBerry Desktop Software 7.1 (HKLM-x32\...\BlackBerry_Desktop) (Version: 7.1.0.41 - Research in Motion Ltd.)
BlackBerry Desktop Software 7.1 (x32 Version: 7.1.0.41 - Research in Motion Ltd.) Hidden
BlackBerry Device Software Updater (HKLM-x32\...\{12BAA98C-F8DD-4BC9-BBE6-1C8463114197}) (Version: 6.0.1.37 - Research In Motion Ltd)
Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.)
BufferChm (x32 Version: 140.0.212.000 - Hewlett-Packard) Hidden
Camera Support Core Library (x32 Version: 7.1.0.11 - Canon) Hidden
Camera Window DS (x32 Version: 5.0 - Canon) Hidden
Camera Window DVC (x32 Version: 5.0 - Canon) Hidden
Camera Window MC (x32 Version: 5.0 - Canon) Hidden
Canon Camera Support Core Library (HKLM-x32\...\InstallShield_{91F1A0D6-23AD-49FE-8D4E-379485652214}) (Version: 7.1.0.11 - Canon)
Canon Camera Window DS for ZoomBrowser EX (HKLM-x32\...\InstallShield_{91203BD3-6C3E-472F-ADBD-F60FDC7C4010}) (Version: 5.0 - Canon)
Canon Camera Window DVC for ZoomBrowser EX (HKLM-x32\...\InstallShield_{4C96958A-6562-4143-B820-FF4890D3B734}) (Version: 5.0 - Canon)
Canon Camera Window for ZoomBrowser EX (HKLM-x32\...\InstallShield_{C7281207-4AA4-425E-B57A-0E9EF8445635}) (Version: 5.0 - Canon)
Canon Internet Library for ZoomBrowser EX (HKLM-x32\...\InstallShield_{2F81FBFC-9A37-431F-9050-14B55485DF5A}) (Version: 1.3.3 - Canon Inc.)
Canon MovieEdit Task for ZoomBrowser EX (HKLM-x32\...\InstallShield_{8AF1E098-1A5C-4336-BBE2-D047ABB401ED}) (Version: 1.2.0.21 - Canon)
Canon PhotoRecord (HKLM-x32\...\{0878E100-C0BB-41E8-B4C6-C486B61FDA7B}) (Version: 02.01.00069 - Cisra)
Canon RAW Image Task for ZoomBrowser EX (HKLM-x32\...\InstallShield_{44E24545-F317-4498-B7CD-240DE7BA8DE2}) (Version: 0.9.2 - Canon)
Canon RemoteCapture Task for ZoomBrowser EX (HKLM-x32\...\InstallShield_{28291BD5-92D2-4685-82DC-CCA925C53CCA}) (Version: 1.1 - Canon)
Canon Utilities PhotoStitch 3.1 (HKLM-x32\...\InstallShield_{218BBBE3-FE63-4BB2-81A8-7435575A84FA}) (Version: 3.1.14 - Canon)
Canon ZoomBrowser EX (HKLM-x32\...\{C1D76D7A-F3BB-47EA-A746-5B1E2FFC1DF2}) (Version: 5.00.0000 - Canon)
CCleaner (HKLM\...\CCleaner) (Version: 4.14 - Piriform)
Compatibility Pack für 2007 Office System (HKLM-x32\...\{90120000-0020-0407-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation)
CoreAAC (HKLM-x32\...\CoreAAC) (Version:  - )
CPUID CPU-Z 1.69.2 (HKLM\...\CPUID CPU-Z_is1) (Version:  - )
D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden
dcmsvc 1.0 (HKLM-x32\...\dcmsvc_is1) (Version:  - )
Destinations (x32 Version: 140.0.77.000 - Hewlett-Packard) Hidden
DeviceDiscovery (x32 Version: 140.0.212.000 - Hewlett-Packard) Hidden
DivX-Setup (HKLM-x32\...\DivX Setup) (Version: 2.6.1.44 - DivX, LLC)
dm-Fotowelt (HKLM-x32\...\dm-Fotowelt) (Version:  - )
erLT (x32 Version: 1.20.137.31 - Logitech, Inc.) Hidden
Fotogalerie (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
GOM Picker (HKLM-x32\...\GOM Picker) (Version: 1.0.0.5 - Gretech Corporation)
GOM Player (HKLM-x32\...\GOM Player) (Version: 2.2.56.5183 - Gretech Corporation)
GOM Video Converter (HKLM-x32\...\GOM Video Converter) (Version: 1.1.0.60 - Gretech Corporation)
Google Chrome (HKCU\...\Google Chrome) (Version: 35.0.1916.153 - Google Inc.)
Google Earth (HKLM-x32\...\{4D2A6330-2F8B-11E3-9C40-B8AC6F97B88E}) (Version: 7.1.2.2041 - Google)
Google Update Helper (x32 Version: 1.3.24.15 - Google Inc.) Hidden
GPBaseService2 (x32 Version: 140.0.211.000 - Hewlett-Packard) Hidden
High-Definition Video Playback (x32 Version: 7.1.13400.42.0 - Nero AG) Hidden
HP Customer Participation Program 14.0 (HKLM\...\HPExtendedCapabilities) (Version: 14.0 - HP)
HP FWUpdateEDO2 (HKLM-x32\...\{415FA9AD-DA10-4ABE-97B6-5051D4795C90}) (Version: 1.2.0.0 - Hewlett-Packard)
HP Imaging Device Functions 14.0 (HKLM\...\HP Imaging Device Functions) (Version: 14.0 - HP)
HP Photo Creations (HKLM-x32\...\HP Photo Creations) (Version: 1.0.0.12992 - HP)
HP Photosmart 5520 series - Grundlegende Software für das Gerät (HKLM\...\{4F396B08-301D-4E53-A372-95A7E93ABD04}) (Version: 28.0.1315.0 - Hewlett-Packard Co.)
HP Photosmart 5520 series Hilfe (HKLM-x32\...\{640A03B3-4E6B-4440-A350-E6A8D6348F12}) (Version: 27.0.0 - Hewlett Packard)
hp print screen utility (HKLM-x32\...\hp print screen utility) (Version:  - )
HP Smart Web Printing 4.60 (HKLM\...\HP Smart Web Printing) (Version: 4.60 - HP)
HP Solution Center 14.0 (HKLM\...\HP Solution Center & Imaging Support Tools) (Version: 14.0 - HP)
HP Update (HKLM-x32\...\{6F1C00D2-25C2-4CBA-8126-AE9A6E2E9CD5}) (Version: 5.003.003.001 - Hewlett-Packard)
HPProductAssistant (x32 Version: 140.0.212.000 - Hewlett-Packard) Hidden
HPSSupply (x32 Version: 140.0.211.000 - Hewlett-Packard) Hidden
Intel® Matrix Storage Manager (HKLM\...\{9068B2BE-D93A-4C0A-861C-5E35E2C0E09E}) (Version:  - Intel Corporation)
Internet Library (x32 Version: 1.3.3 - Canon Inc.) Hidden
iTunes (HKLM\...\{B8BA155B-1E75-405F-9CB4-8A99615D09DC}) (Version: 11.1.5.5 - Apple Inc.)
Java 7 Update 45 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83217025FF}) (Version: 7.0.450 - Oracle)
Java Auto Updater (x32 Version: 2.1.9.8 - Sun Microsystems, Inc.) Hidden
Junk Mail filter update (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Logitech SetPoint 6.30 (HKLM\...\sp6) (Version: 6.30.43 - Logitech)
Logitech Vid HD (HKLM-x32\...\Logitech Vid) (Version: 7.2 (7259) - Logitech Inc..)
Logitech Webcam Software (HKLM\...\{987FE247-4E69-4A2E-A961-D14F901FDBF6}) (Version: 12.10.1113 - Logitech Inc.)
Malwarebytes Anti-Malware Version 2.0.2.1012 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.2.1012 - Malwarebytes Corporation)
MarketResearch (x32 Version: 140.0.212.000 - Hewlett-Packard) Hidden
Microsoft .NET Framework 4.5.1 (DEU) (Version: 4.5.50938 - Microsoft Corporation) Hidden
Microsoft .NET Framework 4.5.1 (Deutsch) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1031) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 (Version: 4.5.50938 - Microsoft Corporation) Hidden
Microsoft Application Error Reporting (Version: 12.0.6015.5000 - Microsoft Corporation) Hidden
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version:  - Microsoft)
Microsoft Office 2007 Service Pack 3 (SP3) (x32 Version:  - Microsoft) Hidden
Microsoft Office Excel MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office File Validation Add-In (HKLM-x32\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation)
Microsoft Office Home and Student 2007 (HKLM-x32\...\HOMESTUDENTR) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Office Home and Student 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Live Add-in 1.5 (HKLM-x32\...\{F40BBEC7-C2A4-4A00-9B24-7A055A2C5262}) (Version: 2.0.4024.1 - Microsoft Corporation)
Microsoft Office Office 64-bit Components 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office OneNote MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office PowerPoint MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office PowerPoint Viewer 2007 (German) (HKLM-x32\...\{95120000-00AF-0407-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Office Proof (English) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (French) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (Italian) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Proofing (German) 2007 (x32 Version: 12.0.4518.1014 - Microsoft Corporation) Hidden
Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) (x32 Version:  - Microsoft) Hidden
Microsoft Office Shared 64-bit MUI (German) 2007 (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Shared MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Word MUI (German) 2007 (x32 Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Primary Interoperability Assemblies 2005 (HKLM-x32\...\{D24DB8B9-BB6C-4334-9619-BA1C650E13D3}) (Version: 8.0.50727.42 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30214.0 - Microsoft Corporation)
Microsoft SkyDrive (HKCU\...\SkyDriveSetup.exe) (Version: 16.4.6013.0910 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [DEU] (HKLM-x32\...\{BAC80EF3-E106-4AEA-8C57-F217F9BC7358}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 ATL Update kb973923 - x64 8.0.50727.4053 (HKLM\...\{B6E3757B-5E77-3915-866A-CCFC4B8D194C}) (Version: 8.0.50727.4053 - Microsoft Corporation)
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (HKLM-x32\...\{770657D0-A123-3C07-8E44-1C83EC895118}) (Version: 8.0.50727.4053 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) - KB2467175 (HKLM\...\{aac9fcc4-dd9e-4add-901c-b5496a07ab2e}) (Version: 8.0.51011 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6E8E85E8-CE4B-4FF5-91F7-04999C9FAE6A}) (Version: 8.0.50727.42 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148 (HKLM-x32\...\{002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570 (HKLM-x32\...\{86CE85E6-DBAC-3FFD-B977-E4B79F83C909}) (Version: 9.0.30729.5570 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (HKLM-x32\...\{6AFCA4E1-9B78-3640-8F72-A7BF33448200}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Works (HKLM-x32\...\{39D0E034-1042-4905-BECB-5502909FCB7C}) (Version: 9.7.0621 - Microsoft Corporation)
Microsoft-Maus- und Tastatur-Center (HKLM\...\Microsoft Mouse and Keyboard Center) (Version: 2.2.173.0 - Microsoft Corporation)
Microsoft-Maus- und Tastatur-Center (Version: 2.2.173.0 - Microsoft Corporation) Hidden
Movie Maker (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
MovieEdit Task (x32 Version: 1.2.0.21 - Canon) Hidden
Mozilla Firefox 30.0 (x86 de) (HKLM-x32\...\Mozilla Firefox 30.0 (x86 de)) (Version: 30.0 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 29.0 - Mozilla)
MPEG2 Codec(libmpeg2/mad) (HKLM-x32\...\MPEG2 Codec(libmpeg2/mad)) (Version:  - )
MSVCRT (x32 Version: 15.4.2862.0708 - Microsoft) Hidden
MSVCRT_amd64 (x32 Version: 15.4.2862.0708 - Microsoft) Hidden
MSVCRT110 (x32 Version: 16.4.1108.0727 - Microsoft) Hidden
MSVCRT110_amd64 (Version: 16.4.1109.0912 - Microsoft) Hidden
MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
MSXML 4.0 SP3 Parser (HKLM-x32\...\{196467F1-C11F-4F76-858B-5812ADC83B94}) (Version: 4.30.2100.0 - Microsoft Corporation)
MSXML 4.0 SP3 Parser (KB2758694) (HKLM-x32\...\{1D95BA90-F4F8-47EC-A882-441C99D30C1E}) (Version: 4.30.2117.0 - Microsoft Corporation)
MyFreeCodec (HKCU\...\MyFreeCodec) (Version:  - )
NAVIGON Fresh 3.5.1 (HKLM-x32\...\NAVIGON Fresh) (Version: 3.5.1 - NAVIGON)
Nero 10 ClipartPack (HKLM-x32\...\{96ED4B78-300E-4033-AE6C-C115CEB4DF07}) (Version: 10.2.10000.11.0 - Nero AG)
Nero 10 Menu TemplatePack 1 (HKLM-x32\...\{42C8B7DF-FEB0-4D51-B169-506B6BEC5797}) (Version: 10.2.10000.0.0 - Nero AG)
Nero 10 Menu TemplatePack 2 (HKLM-x32\...\{E712C273-7564-4C8E-AA59-0FA19BC35117}) (Version: 10.2.10000.0.0 - Nero AG)
Nero 10 Menu TemplatePack 3 (HKLM-x32\...\{92146419-AE44-4C8B-A48B-0ABB1B5EC026}) (Version: 10.2.10100.1.0 - Nero AG)
Nero 10 Menu TemplatePack Basic (x32 Version: 10.2.10000.0.0 - Nero AG) Hidden
Nero 10 Movie ThemePack 1 (HKLM-x32\...\{43FBAB46-5969-4200-9958-1FF81FEE506F}) (Version: 10.2.10000.11.0 - Nero AG)
Nero 10 Movie ThemePack 2 (HKLM-x32\...\{70F19404-B96C-4EBB-AD2B-3574F8736197}) (Version: 10.2.10100.1.0 - Nero AG)
Nero 10 Movie ThemePack Basic (x32 Version: 10.2.10000.0.0 - Nero AG) Hidden
Nero 10 Sample ImagePack (HKLM-x32\...\{ACD15FDF-FC42-4175-B477-576F92FF2256}) (Version: 10.2.10000.11.0 - Nero AG)
Nero 10 Sample Videos (HKLM-x32\...\{92A10E9D-EA00-4A46-8F22-EEA660992D61}) (Version: 10.2.10000.11.0 - Nero AG)
Nero BackItUp 10 (HKLM-x32\...\{68AB6930-5BFF-4FF6-923B-516A91984FE6}) (Version: 5.6.11000.11.100 - Nero AG)
Nero BackItUp 10 Help (CHM) (x32 Version: 10.5.10000 - Nero AG) Hidden
Nero Burning ROM 10 (HKLM-x32\...\{7A5D731D-B4B3-490E-B339-75685712BAAB}) (Version: 10.2.11000.12.100 - Nero AG)
Nero BurningROM 10 Help (CHM) (x32 Version: 10.5.10100 - Nero AG) Hidden
Nero BurnRights 10 (HKLM-x32\...\{943CFD7D-5336-47AF-9418-E02473A5A517}) (Version: 4.2.10300.0.102 - Nero AG)
Nero BurnRights 10 Help (CHM) (x32 Version: 10.5.10000 - Nero AG) Hidden
Nero Control Center 10 (x32 Version: 10.2.10600.0.6 - Nero AG) Hidden
Nero ControlCenter 10 Help (CHM) (x32 Version: 10.5.10000 - Nero AG) Hidden
Nero Core Components 10 (x32 Version: 2.0.17400.8.2 - Nero AG) Hidden
Nero CoverDesigner 10 (HKLM-x32\...\{FCF00A6E-FB58-477A-ABE9-232907105521}) (Version: 5.2.10700.7.100 - Nero AG)
Nero CoverDesigner 10 Help (CHM) (x32 Version: 10.5.10000 - Nero AG) Hidden
Nero DiscSpeed 10 (HKLM-x32\...\{34490F4E-48D0-492E-8249-B48BECF0537C}) (Version: 6.2.10300.1.100 - Nero AG)
Nero DiscSpeed 10 Help (CHM) (x32 Version: 10.5.10000 - Nero AG) Hidden
Nero Dolby Files 10 (x32 Version: 2.0.12100.0.10 - Nero AG) Hidden
Nero Express 10 (HKLM-x32\...\{70550193-1C22-445C-8FA4-564E155DB1A7}) (Version: 10.2.11100.12.100 - Nero AG)
Nero Express 10 Help (CHM) (x32 Version: 10.5.10100 - Nero AG) Hidden
Nero InfoTool 10 (HKLM-x32\...\{F412B4AF-388C-4FF5-9B2F-33DB1C536953}) (Version: 7.2.10300.5.100 - Nero AG)
Nero InfoTool 10 Help (CHM) (x32 Version: 10.5.10000 - Nero AG) Hidden
Nero MediaHub 10 (HKLM-x32\...\{1F7FB68F-52F6-46A3-B42F-38CE46295AE5}) (Version: 1.2.12300.27.100 - Nero AG)
Nero MediaHub 10 Help (CHM) (x32 Version: 10.5.10000 - Nero AG) Hidden
Nero Multimedia Suite 10 (HKLM-x32\...\{277C1559-4CF7-44FF-8D07-98AA9C13AABD}) (Version: 10.5.10500 - Nero AG)
Nero Recode 10 (HKLM-x32\...\{8ECEC853-5C3D-4B10-B5C7-FF11FF724807}) (Version: 4.8.10400.3.100 - Nero AG)
Nero Recode 10 Help (CHM) (x32 Version: 10.5.10000 - Nero AG) Hidden
Nero RescueAgent 10 (HKLM-x32\...\{E337E787-CF61-4B7B-B84F-509202A54023}) (Version: 3.2.10600.7.100 - Nero AG)
Nero RescueAgent 10 Help (CHM) (x32 Version: 10.5.10000 - Nero AG) Hidden
Nero SoundTrax 10 (HKLM-x32\...\{E1EE5339-5D32-458F-BAAB-B19F6301BCE2}) (Version: 4.8.10200.1.100 - Nero AG)
Nero SoundTrax 10 Help (CHM) (x32 Version: 10.5.10000 - Nero AG) Hidden
Nero StartSmart 10 (HKLM-x32\...\{F61D489E-6C44-49AC-AD02-7DA8ACA73A65}) (Version: 10.2.11100.10.100 - Nero AG)
Nero StartSmart 10 Help (CHM) (x32 Version: 10.5.10000 - Nero AG) Hidden
Nero Update (HKLM-x32\...\{65BB0407-4CC8-4DC7-952E-3EEFDF05602A}) (Version: 1.0.0018 - Nero AG)
Nero Vision 10 (HKLM-x32\...\{9A4297F3-2A51-4ED9-92CA-4BCB8380947E}) (Version: 7.2.14700.9.100 - Nero AG)
Nero Vision 10 Help (CHM) (x32 Version: 10.5.10000 - Nero AG) Hidden
Nero WaveEditor 10 (HKLM-x32\...\{EDCDFAD5-DF80-4600-A493-E9DAD6810230}) (Version: 5.8.10400.2.100 - Nero AG)
Nero WaveEditor 10 Help (CHM) (x32 Version: 10.5.10000 - Nero AG) Hidden
Nikon Message Center 2 (HKLM-x32\...\{B014EE44-9197-4513-9613-71E6EB1B514E}) (Version: 2.1.0 - Nikon)
Nikon Movie Editor (HKLM-x32\...\{5CAD3393-EEC0-44CE-9F93-BCAA365B77FB}) (Version: 2.7.0 - Nikon)
NVIDIA Display Control Panel (HKLM\...\NVIDIA Display Control Panel) (Version: 6.14.11.9745 - NVIDIA Corporation)
NVIDIA Drivers (HKLM\...\NVIDIA Drivers) (Version: 1.10.59.37 - NVIDIA Corporation)
NVIDIA PhysX (HKLM-x32\...\{B83FC356-B7C0-441F-8A4D-D71E088E7974}) (Version: 9.09.0428 - NVIDIA Corporation)
O&O DiskRecovery (HKLM\...\{B74F48B3-F8BB-4A7C-A7AD-9FE142322BA8}) (Version: 6.0.6236 - O&O Software GmbH)
O&O SafeErase (HKLM-x32\...\{53480280-DE8B-445F-9676-FAE6293E06E5}) (Version: 2.0.554 - O&O Software GmbH)
OGA Notifier 2.0.0048.0 (x32 Version: 2.0.0048.0 - Microsoft Corporation) Hidden
OpenOffice 4.0.1 (HKLM-x32\...\{0AEC308E-7EB3-47F7-BB59-F2C9C6166B27}) (Version: 4.01.9714 - Apache Software Foundation)
Pando Media Booster (HKLM-x32\...\{980A182F-E0A2-4A40-94C1-AE0C1235902E}) (Version: 2.6.0.7 - Pando Networks Inc.)
PDF Settings (x32 Version: 1.0 - Adobe Systems Incorporated) Hidden
Photo Gallery (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Photoshop Camera Raw (x32 Version: 5.0 - Adobe Systems Incorporated) Hidden
PhotoStitch (x32 Version: 3.1.14 - Canon) Hidden
Picture Control Utility x64 (HKLM\...\{11953C65-BB4E-4CA4-B0F0-2600A4B20040}) (Version: 1.4.11 - Nikon)
PocketShield (HKLM-x32\...\{90A5371B-D960-4F28-B7FC-F1748518642E}) (Version: 1.0.0 - JDB Pocketware)
PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.987 - Even Balance, Inc.)
PVSonyDll (Version: 1.00.0001 - NVIDIA Corporation) Hidden
QuickTime (HKLM-x32\...\{57752979-A1C9-4C02-856B-FBB27AC4E02C}) (Version: 7.69.80.9 - Apple Inc.)
RAW Image Task (x32 Version: 0.9.2 - Canon) Hidden
Realtek 8136 8168 8169 Ethernet Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 1.00.0005 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.5910 - Realtek Semiconductor Corp.)
RemoteCapture Task 1.1 (x32 Version: 1.1 - Canon) Hidden
Samsung Kies (HKLM-x32\...\InstallShield_{758C8301-2696-4855-AF45-534B1200980A}) (Version: 2.5.0.12104_15 - Samsung Electronics Co., Ltd.)
Samsung Kies (x32 Version: 2.5.0.12104_15 - Samsung Electronics Co., Ltd.) Hidden
SAMSUNG USB Driver for Mobile Phones (HKLM\...\{D0795B21-0CDA-4a92-AB9E-6E92D8111E44}) (Version: 1.5.18.0 - SAMSUNG Electronics Co., Ltd.)
Shop for HP Supplies (HKLM\...\Shop for HP Supplies) (Version: 14.0 - HP)
Skype Click to Call (HKLM-x32\...\{B6CF2967-C81E-40C0-9815-C05774FEF120}) (Version: 6.3.11079 - Skype Technologies S.A.)
Skype™ 6.11 (HKLM-x32\...\{4E76FF7E-AEBA-4C87-B788-CD47E5425B9D}) (Version: 6.11.102 - Skype Technologies S.A.)
Smart Keyboard (HKLM-x32\...\Smart Keyboard) (Version:  - )
SmartWebPrinting (x32 Version: 140.0.186.000 - Hewlett-Packard) Hidden
SolutionCenter (x32 Version: 140.0.213.000 - Hewlett-Packard) Hidden
Spybot - Search & Destroy (HKLM-x32\...\{B4092C6D-E886-4CB2-BA68-FE5A99D31DE7}_is1) (Version: 2.3.39 - Safer-Networking Ltd.)
Status (x32 Version: 140.0.212.000 - Hewlett-Packard) Hidden
Tinypic 3.16 (HKLM-x32\...\{E3723A04-A894-4036-A78E-282E18F43C0A}_is1) (Version: Tinypic 3.16 - E. Fiedler)
TomTom HOME 2.8.3.2499 (HKLM-x32\...\TomTom HOME) (Version: 2.8.3.2499 - TomTom)
TomTom HOME Visual Studio Merge Modules (HKLM-x32\...\{8F3C31C5-9C3A-4AA8-8EFA-71290A7AD533}) (Version: 1.0.2 - TomTom International B.V.)
TrayApp (x32 Version: 140.0.212.000 - Hewlett-Packard) Hidden
TuneUp Utilities 2013 (HKLM-x32\...\TuneUp Utilities 2013) (Version: 13.0.4000.245 - TuneUp Software)
TuneUp Utilities 2013 (x32 Version: 13.0.4000.245 - TuneUp Software) Hidden
TuneUp Utilities Language Pack (de-DE) (x32 Version: 13.0.4000.245 - TuneUp Software) Hidden
TuneUp Utilities Language Pack (de-DE) (x32 Version: 9.0.6030.1 - TuneUp Software) Hidden
Update for 2007 Microsoft Office System (KB967642) (HKLM-x32\...\{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version:  - Microsoft)
Update for Microsoft Office 2007 suites (KB2596620) 32-Bit Edition (HKLM-x32\...\{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{A024FC7B-77DE-45DE-A058-1C049A17BFB3}) (Version:  - Microsoft)
Update for Microsoft Office 2007 suites (KB2767849) 32-Bit Edition (HKLM-x32\...\{90120000-002A-0000-1000-0000000FF1CE}_HOMESTUDENTR_{CB68A5B0-3508-4193-AEB9-AF636DAECE0F}) (Version:  - Microsoft)
Update for Microsoft Office 2007 suites (KB2767849) 32-Bit Edition (HKLM-x32\...\{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{CB68A5B0-3508-4193-AEB9-AF636DAECE0F}) (Version:  - Microsoft)
Update for Microsoft Office 2007 suites (KB2767916) 32-Bit Edition (HKLM-x32\...\{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{E9A82945-BA29-4EE8-8F2A-2F49545E9CF2}) (Version:  - Microsoft)
Update für Microsoft Office Excel 2007 Help (KB963678) (HKLM-x32\...\{90120000-0016-0407-0000-0000000FF1CE}_HOMESTUDENTR_{BEC163EC-7A83-48A1-BFB6-3BF47CC2F8CF}) (Version:  - Microsoft)
Update für Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM-x32\...\{90120000-0018-0407-0000-0000000FF1CE}_HOMESTUDENTR_{EA160DA3-E9B5-4D03-A518-21D306665B96}) (Version:  - Microsoft)
Update für Microsoft Office Word 2007 Help (KB963665) (HKLM-x32\...\{90120000-001B-0407-0000-0000000FF1CE}_HOMESTUDENTR_{38472199-D7B6-4833-A949-10E4EE6365A1}) (Version:  - Microsoft)
VC80CRTRedist - 8.0.50727.6195 (x32 Version: 1.2.0 - DivX, Inc) Hidden
ViewNX 2 (HKLM\...\{635BE602-BB9C-4C59-8CC5-93F9366E8A21}) (Version: 2.7.5 - Nikon)
Volumex (HKLM-x32\...\{4741828C-2C83-4052-81DE-D8DC8796B624}) (Version: 1.2 - JDB Pocketware)
Warner Bros. Digital Copy Manager (HKLM-x32\...\com.warnerbros.DigitalCopyManager.449F66ACC381FDC604DC2AA255FEECEEBBBEE1E5.1) (Version: 1.1 - Warner Bros. Entertainment Inc.)
Warner Bros. Digital Copy Manager (x32 Version: 1.1 - Warner Bros. Entertainment Inc.) Hidden
Windows Live Communications Platform (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3505.0912 - Microsoft Corporation)
Windows Live Essentials (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Windows Live Family Safety (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Windows Live Family Safety (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Windows Live ID Sign-in Assistant (Version: 7.250.4311.0 - Microsoft Corporation) Hidden
Windows Live Installer (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Windows Live Mail (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Windows Live Messenger (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Windows Live MIME IFilter (Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Windows Live Photo Common (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Windows Live PIMT Platform (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Windows Live SOXE (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Windows Live SOXE Definitions (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Windows Live Sync (HKLM-x32\...\{586509F0-350D-48B5-B763-9CC2F8D96C4C}) (Version: 14.0.8117.416 - Microsoft Corporation)
Windows Live UX Platform (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Windows Live UX Platform Language Pack (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Windows Live Writer (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Windows Live Writer Resources (x32 Version: 16.4.3505.0912 - Microsoft Corporation) Hidden
Windows Mobile Device Center Driver Update (HKLM\...\{92DBCA36-9B41-4DD1-941A-AED149DD37F0}) (Version: 6.1.6965.0 - Microsoft Corporation)
Windows Mobile-Gerätecenter (HKLM\...\{626672CD-BFCF-49A9-AEFE-AB0FED3BFC5B}) (Version: 6.1.6965.0 - Microsoft Corporation)
Windows Mobile-Ressourcen (HKLM-x32\...\Windows Mobile Device Handbook) (Version: 1.0 - Microsoft Corporation)
WinRAR (HKLM\...\WinRAR archiver) (Version:  - )

==================== Restore Points  =========================


==================== Hosts content: ==========================

2009-07-14 04:34 - 2009-06-10 23:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts

==================== Scheduled Tasks (whitelisted) =============

Task: {12082054-5D35-407B-86D7-FF8266EC8A6F} - System32\Tasks\Update Manager => C:\Program Files (x86)\HP\hpcoretech\hpcmpmgr.exe
Task: {1652387A-5B44-4FB5-87B5-8DC6D9E0E021} - System32\Tasks\Microsoft_MKC_Logon_Task_itype.exe => c:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe [2013-05-13] (Microsoft Corporation)
Task: {1848F2EF-0319-41A7-BAAE-717E06E44233} - System32\Tasks\Microsoft_Hardware_Launch_mousekeyboardcenter_exe => c:\Program Files\Microsoft Mouse and Keyboard Center\mousekeyboardcenter.exe [2013-05-13] (Microsoft)
Task: {25F6D591-69CB-4FBB-84F7-2B3753069632} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2010-10-07] (Google Inc.)
Task: {2AA26DB3-218F-4F89-AAAD-DC8D6D84FFD1} - System32\Tasks\TuneUpUtilities_Task_BkGndMaintenance => C:\Program Files (x86)\TuneUp Utilities 2010\OneClick.exe
Task: {2CC66C69-3B79-4D78-89D8-AA5E59F438F9} - System32\Tasks\Java Update Scheduler => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2013-07-02] (Oracle Corporation)
Task: {30282A4B-00E4-4EF8-B0A8-2B1FAA9CCB37} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2010-10-07] (Google Inc.)
Task: {610D26F7-5422-48AE-B8BF-AC59E3F50BD7} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2014-05-20] (Piriform Ltd)
Task: {6521145A-95E8-4B68-8809-76436D2D9C4D} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-06-08] (Adobe Systems Incorporated)
Task: {6AC1E5F9-39EA-4F8E-B45B-A50CA91C5E80} - System32\Tasks\TuneUpUtilities_Task_BkGndMaintenance2013 => C:\Program Files (x86)\TuneUp Utilities 2013\OneClick.exe [2014-01-28] (TuneUp Software)
Task: {71751296-1A61-4D3C-A416-06C1A0DA7105} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-224901007-3534270279-3868180721-1000UA => C:\Users\Dale\AppData\Local\Google\Update\GoogleUpdate.exe [2010-10-07] (Google Inc.)
Task: {717D523A-B066-4EFD-99C9-9419CAC37896} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Check for updates => C:\Program Files (x86)\Spybot - Search &amp; Destroy 2\SDUpdate.exe
Task: {73E2E05B-5EBB-443A-85B4-56639C497B08} - System32\Tasks\Microsoft_Hardware_Launch_ipoint_exe => c:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe [2013-05-13] (Microsoft Corporation)
Task: {7B56D56E-B94D-4448-BB60-3FED0B7484CD} - System32\Tasks\ArcSoft Connect Daemon => C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACDaemon.exe
Task: {80D74839-25F9-4DD4-9B33-43FFB2D9F6B9} - System32\Tasks\Microsoft\Windows\WindowsBackup\AutomaticBackup => Rundll32.exe /d sdengin2.dll,ExecuteScheduledBackup
Task: {B866E060-CA01-4BA8-9077-772B1F251088} - System32\Tasks\GoogleUpdateTaskUserS-1-5-21-224901007-3534270279-3868180721-1000Core => C:\Users\Dale\AppData\Local\Google\Update\GoogleUpdate.exe [2010-10-07] (Google Inc.)
Task: {C23B627C-3699-4DC0-A98F-2411A1B92CD5} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Refresh immunization => C:\Program Files (x86)\Spybot - Search &amp; Destroy 2\SDImmunize.exe
Task: {C46B067E-8D1A-4C5C-B7A7-37F122972BE1} - System32\Tasks\Adobe Reader and Acrobat Manager => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-04-04] (Adobe Systems Incorporated)
Task: {C5928FA2-20D1-4D7A-BB1A-05149C5B59C8} - System32\Tasks\Microsoft_Hardware_Launch_itype_exe => c:\Program Files\Microsoft Mouse and Keyboard Center\itype.exe [2013-05-13] (Microsoft Corporation)
Task: {C7334882-ABAC-42AE-B2E3-F1FF3CA2F570} - System32\Tasks\HP-Online-Aktualisierungsprogramm => C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe [2011-10-28] (Hewlett-Packard)
Task: {D224EDB1-12F2-4F72-BA41-21E81CB4404C} - System32\Tasks\Safer-Networking\Spybot - Search and Destroy\Scan the system => C:\Program Files (x86)\Spybot - Search &amp; Destroy 2\SDScan.exe
Task: {D33C9301-F0A8-4C6A-A53F-71A37A18F9CB} - System32\Tasks\DivX-Online-Aktualisierungsprogramm => C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe [2013-02-13] ()
Task: {D85C07E0-C4AF-45E3-BC00-4AD2585ED1CA} - System32\Tasks\Microsoft_MKC_Logon_Task_ipoint.exe => c:\Program Files\Microsoft Mouse and Keyboard Center\ipoint.exe [2013-05-13] (Microsoft Corporation)
Task: {E323FC7C-837F-47AB-9196-2B0E1785ECE4} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.)
Task: {E921B68F-3EE7-48E5-BA36-AF3F817114B4} - System32\Tasks\Microsoft\Office Genuine Advantage\OGALogon => C:\Windows\system32\OGAExec.exe
Task: {F78002E3-8307-453E-919E-2BCA9D026368} - System32\Tasks\Google Updater and Installer => C:\Users\Dale\AppData\Local\Google\Update\GoogleUpdate.exe [2010-10-07] (Google Inc.)
Task: {FDBFDD53-9B82-44CC-AEB2-2427F502CA71} - System32\Tasks\HP online update program => C:\Program Files (x86)\Hewlett-Packard\HP Software Update\HPWuSchd2.exe
Task: {FEDF3A43-B271-4F1D-A003-D5439F389757} - System32\Tasks\HP Photo Creations Communicator => C:\ProgramData\HP Photo Creations\Communicator.exe [2014-04-03] ()
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-224901007-3534270279-3868180721-1000Core.job => C:\Users\Dale\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-224901007-3534270279-3868180721-1000UA.job => C:\Users\Dale\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\HP Photo Creations Communicator.job => C:\ProgramData\HP Photo Creations\Communicator.exe

==================== Loaded Modules (whitelisted) =============

2010-07-24 09:16 - 2010-07-24 09:16 - 00075064 _____ () C:\Windows\SysWOW64\PnkBstrA.exe
2011-06-24 01:42 - 2011-06-24 01:42 - 01302808 _____ () C:\Program Files\Logitech\SetPointP\Macros\MacroCore.dll
2014-01-28 10:37 - 2014-01-28 10:37 - 00741176 _____ () C:\Program Files (x86)\TuneUp Utilities 2013\avgrepliba.dll
2014-02-12 21:58 - 2014-02-12 21:58 - 00073544 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll
2014-02-12 21:58 - 2014-02-12 21:58 - 01044808 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll
2014-06-22 11:01 - 2014-04-25 14:11 - 00109400 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\snlThirdParty150.bpl
2014-06-22 11:01 - 2014-04-25 14:11 - 00416600 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\DEC150.bpl
2014-06-22 11:01 - 2014-04-25 14:11 - 00167768 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\snlFileFormats150.bpl
2014-06-30 12:08 - 2014-06-30 12:08 - 00137296 _____ () C:\Program Files (x86)\Avira\My Avira\Avira.OE.NativeCore.dll
2014-07-03 23:07 - 2014-06-30 12:08 - 00049744 _____ () C:\Users\Dale\AppData\Local\Temp\avgnt.exe\Avira.OE.ExtApi.dll
2014-06-30 12:07 - 2014-06-30 12:07 - 00065616 _____ () C:\Program Files (x86)\Avira\My Avira\Avira.OE.AvConnectorNative.dll
2014-06-22 11:01 - 2012-08-23 10:38 - 00574840 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\sqlite3.dll
2014-06-22 11:01 - 2012-04-03 17:06 - 00565640 _____ () C:\Program Files (x86)\Spybot - Search & Destroy 2\av\BDSmartDB.dll
2014-07-04 00:03 - 2014-07-04 00:03 - 03852912 _____ () C:\Program Files (x86)\Mozilla Firefox\mozjs.dll

==================== Alternate Data Streams (whitelisted) =========


==================== Safe Mode (whitelisted) ===================


==================== EXE Association (whitelisted) =============


==================== MSCONFIG/TASK MANAGER disabled items =========

MSCONFIG\Services: Apple Mobile Device => 2
MSCONFIG\Services: BBSvc => 3
MSCONFIG\Services: Bonjour Service => 2
MSCONFIG\Services: bthserv => 3
MSCONFIG\Services: Fax => 3
MSCONFIG\Services: iPod Service => 3
MSCONFIG\Services: LBTServ => 3
MSCONFIG\Services: NAUpdate => 2
MSCONFIG\Services: Skype C2C Service => 2
MSCONFIG\Services: SkypeUpdate => 2
MSCONFIG\Services: TomTomHOMEService => 2
MSCONFIG\Services: vToolbarUpdater13.2.0 => 2
MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^eBoostr Control Panel.lnk => C:\Windows\pss\eBoostr Control Panel.lnk.CommonStartup
MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^HP Digital Imaging Monitor.lnk => C:\Windows\pss\HP Digital Imaging Monitor.lnk.CommonStartup
MSCONFIG\startupfolder: C:^Users^Dale^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^OneNote 2007 Bildschirmausschnitt- und Startprogramm.lnk => C:\Windows\pss\OneNote 2007 Bildschirmausschnitt- und Startprogramm.lnk.Startup
MSCONFIG\startupreg: Adobe ARM => "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
MSCONFIG\startupreg: APSDaemon => "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"
MSCONFIG\startupreg: dcmsvc => C:\Program Files (x86)\dcmsvc\dcmsvc.exe
MSCONFIG\startupreg: Hiyo => C:\Program Files (x86)\HiYo\bin\HiYo.exe /RunFromStartup
MSCONFIG\startupreg: iTunesHelper => "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
MSCONFIG\startupreg: KiesAirMessage => C:\Program Files (x86)\Samsung\Kies\KiesAirMessage.exe -startup
MSCONFIG\startupreg: KiesPreload => C:\Program Files (x86)\Samsung\Kies\Kies.exe /preload
MSCONFIG\startupreg: KiesTrayAgent => C:\Program Files (x86)\Samsung\Kies\KiesTrayAgent.exe
MSCONFIG\startupreg: Logitech Vid => "C:\Program Files (x86)\Logitech\Logitech Vid\vid.exe" -bootmode
MSCONFIG\startupreg: LogitechQuickCamRibbon => "C:\Program Files\Logitech\Logitech WebCam Software\LWS.exe" /hide
MSCONFIG\startupreg: msnmsgr => "C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe" /background
MSCONFIG\startupreg: NBAgent => "C:\Program Files (x86)\Nero\Nero 10\Nero BackItUp\NBAgent.exe" /WinStart
MSCONFIG\startupreg: Nikon Message Center 2 => C:\Program Files (x86)\Nikon\Nikon Message Center 2\NkMC2.exe -s                                                                                                                                                                                                         
MSCONFIG\startupreg: QuickTime Task => "C:\Program Files (x86)\QuickTime\QTTask.exe" -atboottime
MSCONFIG\startupreg: ROC_ROC_JULY_P1 => "C:\Program Files (x86)\AVG Secure Search\ROC_ROC_JULY_P1.exe" / /PROMPT /CMPID=ROC_JULY_P1
MSCONFIG\startupreg: Skype => "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
MSCONFIG\startupreg: Steam => "C:\Program Files (x86)\Steam\Steam.exe" -silent
MSCONFIG\startupreg: swg => "C:\Program Files (x86)\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
MSCONFIG\startupreg: TomTomHOME.exe => "C:\Program Files (x86)\TomTom HOME 2\TomTomHOMERunner.exe"
MSCONFIG\startupreg: vProt => "C:\Program Files (x86)\AVG Secure Search\vprot.exe"
MSCONFIG\startupreg: Windows Mobile Device Center => %windir%\WindowsMobile\wmdc.exe

==================== Faulty Device Manager Devices =============


==================== Event log errors: =========================

Application errors:
==================
Error: (07/03/2014 09:10:22 PM) (Source: SideBySide) (EventID: 35) (User: )
Description: Fehler beim Generieren des Aktivierungskontextes für "NFD,type="win32",version="5.2.0.0"1". Fehler in Manifest- oder Richtliniendatei "NFD,type="win32",version="5.2.0.0"2" in Zeile  NFD,type="win32",version="5.2.0.0"3.
Die im Manifest gefundene Komponenten-ID stimmt nicht mit der ID der angeforderten Komponente überein.
Verweis: NFD,type="win32",version="5.2.0.0".
Definition: NFD,type="win32",version="5.0.0.0".
Verwenden Sie das Programm "sxstrace.exe" für eine detaillierte Diagnose.


System errors:
=============
Error: (07/04/2014 11:08:04 AM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT)
Description: AnwendungsspezifischLokalStart{C97FCC79-E628-407D-AE68-A06AD6D8B4D1}{344ED43D-D086-4961-86A6-1106F4ACAD9B}NT-AUTORITÄTSYSTEMS-1-5-18LocalHost (unter Verwendung von LRPC)

Error: (07/04/2014 11:07:34 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "Spybot-S&D 2 Scanner Service" wurde aufgrund folgenden Fehlers nicht gestartet: 
%%1053

Error: (07/04/2014 11:07:34 AM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Spybot-S&D 2 Scanner Service erreicht.

Error: (07/04/2014 11:07:00 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "msikbd" wurde aufgrund folgenden Fehlers nicht gestartet: 
%%1275

Error: (07/04/2014 11:07:00 AM) (Source: Application Popup) (EventID: 1060) (User: )
Description: Aufgrund der Inkompatibilität mit diesem System wurde \SystemRoot\SysWow64\Drivers\msikbd.SYS nicht geladen. Wenden Sie sich an den Softwarehersteller, um eine kompatible Version des Treibers zu erhalten.

Error: (07/04/2014 00:27:44 AM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT)
Description: AnwendungsspezifischLokalStart{C97FCC79-E628-407D-AE68-A06AD6D8B4D1}{344ED43D-D086-4961-86A6-1106F4ACAD9B}NT-AUTORITÄTSYSTEMS-1-5-18LocalHost (unter Verwendung von LRPC)

Error: (07/04/2014 00:27:04 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "Spybot-S&D 2 Scanner Service" wurde aufgrund folgenden Fehlers nicht gestartet: 
%%1053

Error: (07/04/2014 00:27:04 AM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Spybot-S&D 2 Scanner Service erreicht.

Error: (07/04/2014 00:26:31 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "msikbd" wurde aufgrund folgenden Fehlers nicht gestartet: 
%%1275

Error: (07/04/2014 00:26:31 AM) (Source: Application Popup) (EventID: 1060) (User: )
Description: Aufgrund der Inkompatibilität mit diesem System wurde \SystemRoot\SysWow64\Drivers\msikbd.SYS nicht geladen. Wenden Sie sich an den Softwarehersteller, um eine kompatible Version des Treibers zu erhalten.


Microsoft Office Sessions:
=========================
Error: (04/14/2011 08:27:16 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 0, Application Name: Microsoft Office Word, Application Version: 12.0.6545.5000, Microsoft Office Version: 12.0.6425.1000. This session lasted 1 seconds with 0 seconds of active time.  This session ended with a crash.


CodeIntegrity Errors:
===================================
  Date: 2014-06-17 19:24:21.452
  Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\ELAMBKUP\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.

  Date: 2014-06-17 19:24:21.450
  Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\ELAMBKUP\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.

  Date: 2014-06-17 19:24:21.417
  Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\KLELAMX64\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.

  Date: 2014-06-17 19:24:21.409
  Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\KLELAMX64\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.

  Date: 2014-06-17 19:22:49.896
  Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\ELAMBKUP\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.

  Date: 2014-06-17 19:22:49.881
  Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\KLELAMX64\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.

  Date: 2014-05-13 20:26:50.052
  Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\ELAMBKUP\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.

  Date: 2014-05-13 20:26:50.049
  Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\ELAMBKUP\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.

  Date: 2014-05-13 20:26:50.044
  Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\KLELAMX64\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.

  Date: 2014-05-13 20:26:50.042
  Description: Die Abbildintegrität der Datei "\Device\HarddiskVolume2\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 2013\KLELAMX64\klelam.sys" konnte nicht überprüft werden, da der Satz seitenbezogener Abbildhashes auf dem System nicht gefunden wurde.


==================== Memory info =========================== 

Percentage of memory in use: 30%
Total physical RAM: 6135.11 MB
Available physical RAM: 4286.38 MB
Total Pagefile: 12268.41 MB
Available Pagefile: 10244.52 MB
Total Virtual: 8192 MB
Available Virtual: 8191.82 MB

==================== Drives ================================

Drive c: (Boot) (Fixed) (Total:905.41 GB) (Free:577.06 GB) NTFS
Drive d: (Recover) (Fixed) (Total:25 GB) (Free:15.99 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (Size: 932 GB) (Disk ID: 2BAB359D)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=905 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=25 GB) - (Type=07 NTFS)
Partition 4: (Not Active) - (Size=1 GB) - (Type=12)

==================== End Of Log ============================
         

Alt 04.07.2014, 10:42   #13
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
PC fängt nach 10min. an zu laggen und/ oder bleibt hängen - Standard

PC fängt nach 10min. an zu laggen und/ oder bleibt hängen



Drücke bitte die Windowstaste + R Taste und schreibe notepad in das Ausführen Fenster.

Kopiere nun folgenden Text aus der Code-Box in das leere Textdokument

Code:
ATTFilter
GroupPolicy: Group Policy on Chrome detected <======= ATTENTION
C:\ProgramData\PKP_DLeo.DAT
C:\ProgramData\PKP_DLes.DAT
C:\ProgramData\PKP_DLet.DAT
C:\ProgramData\PKP_DLev.DAT
C:\Users\Dale\Bubblets.dat
C:\Users\Dale\iTunesSetup.exe
C:\Users\Dale\OODiskRecovery664Ger.exe
C:\Users\Dale\wlsetup-web.exe
C:\Users\Public\dcmsvcsetup.exe
C:\Users\Public\invokesi.exe
         

Speichere diese bitte als Fixlist.txt auf deinem Desktop (oder dem Verzeichnis in dem sich FRST befindet).
  • Starte nun FRST erneut und klicke den Entfernen Button.
  • Das Tool erstellt eine Fixlog.txt.
  • Poste mir deren Inhalt.

__________________
Logfiles bitte immer in CODE-Tags posten

Alt 04.07.2014, 12:02   #14
Instinct84
 
PC fängt nach 10min. an zu laggen und/ oder bleibt hängen - Standard

PC fängt nach 10min. an zu laggen und/ oder bleibt hängen



Code:
ATTFilter
Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 01-07-2014
Ran by Dale at 2014-07-04 12:57:38 Run:1
Running from C:\Users\Dale\Downloads
Boot Mode: Normal
==============================================

Content of fixlist:
*****************
GroupPolicy: Group Policy on Chrome detected <======= ATTENTION
C:\ProgramData\PKP_DLeo.DAT
C:\ProgramData\PKP_DLes.DAT
C:\ProgramData\PKP_DLet.DAT
C:\ProgramData\PKP_DLev.DAT
C:\Users\Dale\Bubblets.dat
C:\Users\Dale\iTunesSetup.exe
C:\Users\Dale\OODiskRecovery664Ger.exe
C:\Users\Dale\wlsetup-web.exe
C:\Users\Public\dcmsvcsetup.exe
C:\Users\Public\invokesi.exe
*****************

C:\Windows\system32\GroupPolicy\Machine => Moved successfully.
C:\Windows\system32\GroupPolicy\GPT.ini => Moved successfully.
C:\ProgramData\PKP_DLeo.DAT => Moved successfully.
C:\ProgramData\PKP_DLes.DAT => Moved successfully.
C:\ProgramData\PKP_DLet.DAT => Moved successfully.
C:\ProgramData\PKP_DLev.DAT => Moved successfully.
C:\Users\Dale\Bubblets.dat => Moved successfully.
C:\Users\Dale\iTunesSetup.exe => Moved successfully.
C:\Users\Dale\OODiskRecovery664Ger.exe => Moved successfully.
C:\Users\Dale\wlsetup-web.exe => Moved successfully.
C:\Users\Public\dcmsvcsetup.exe => Moved successfully.
C:\Users\Public\invokesi.exe => Moved successfully.


The system needed a reboot. 

==== End of Fixlog ====
         

Alt 04.07.2014, 12:55   #15
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
PC fängt nach 10min. an zu laggen und/ oder bleibt hängen - Standard

PC fängt nach 10min. an zu laggen und/ oder bleibt hängen



Okay, dann Kontrollscans mit MBAM und ESET bitte:

Downloade Dir bitte Malwarebytes Anti-Malware
  • Installiere das Programm in den vorgegebenen Pfad. (Bebilderte Anleitung zu MBAM)
  • Starte Malwarebytes' Anti-Malware (MBAM).
  • Klicke im Anschluss auf Scannen, wähle den Bedrohungssuchlauf aus und klicke auf Suchlauf starten.
  • Lass am Ende des Suchlaufs alle Funde (falls vorhanden) in die Quarantäne verschieben. Klicke dazu auf Auswahl entfernen.
  • Lass deinen Rechner ggf. neu starten, um die Bereinigung abzuschließen.
  • Starte MBAM, klicke auf Verlauf und dann auf Anwendungsprotokolle.
  • Wähle das neueste Scan-Protokoll aus und klicke auf Export. Wähle Textdatei (.txt) aus und speichere die Datei als mbam.txt auf dem Desktop ab. Das Logfile von MBAM findest du hier.
  • Füge den Inhalt der mbam.txt mit deiner nächsten Antwort hinzu.




ESET Online Scanner

  • Hier findest du eine bebilderte Anleitung zu ESET Online Scanner
  • Lade und starte Eset Online Scanner
  • Setze einen Haken bei Ja, ich bin mit den Nutzungsbedingungen einverstanden und klicke auf Starten.
  • Aktiviere die "Erkennung von eventuell unerwünschten Anwendungen" und wähle folgende Einstellungen.
  • Klicke auf Starten.
  • Die Signaturen werden heruntergeladen, der Scan beginnt automatisch.
  • Klicke am Ende des Suchlaufs auf Fertig stellen.
  • Schließe das Fenster von ESET.
  • Explorer öffnen.
  • C:\Programme\Eset\EsetOnlineScanner\log.txt (bei 64 Bit auch C:\Programme (x86)\Eset\EsetOnlineScanner\log.txt) suchen und mit Deinem Editor öffnen (bebildert).
  • Logfile hier posten.
  • Deinstallation: Systemsteuerung => Software / Programme deinstallieren => Eset Online Scanner V3 entfernen.
  • Manuell folgenden Ordner löschen und Papierkorb leeren => C:\Programme\Eset

__________________
Logfiles bitte immer in CODE-Tags posten

Antwort

Themen zu PC fängt nach 10min. an zu laggen und/ oder bleibt hängen
adware.flvplayer, adware.webhancer, canon, ccsetup, chromium, ebanking, fehlercode 1, hotspot, keine rückmeldung, lws.exe, pup.optional.bettersurf.a, pup.optional.conduit.a, pup.optional.csbrowserassistant.a, pup.optional.downloadguide.a, pup.optional.goforfiles.a, pup.optional.iminent, pup.optional.iminent.a, pup.optional.mediabuzz.a, pup.optional.mediaplayeralpha.a, pup.optional.mediaview.a, pup.optional.mediaviewer.a, pup.optional.mediawatch.a, pup.optional.opencandy, pup.optional.searchgol.a, pup.optional.softonic.a, pup.optional.softwareupdater, pup.optional.umbrella.a, pup.optional.webexp, pup.optional.webexpenhanced.a, refresh, safer networking, secure search, vtoolbarupdater



Ähnliche Themen: PC fängt nach 10min. an zu laggen und/ oder bleibt hängen


  1. WIN7 Prof nach Java Up 8 /51 bleibt beim Start hängen Raid1
    Alles rund um Windows - 26.07.2015 (3)
  2. PC bleibt beim anklicken von PDF-Dateien oder dem Facebook-Login mit Firefox kurz hängen
    Alles rund um Windows - 14.03.2015 (2)
  3. Streams fangen nach ca. 10min an zu laggen
    Alles rund um Windows - 30.06.2014 (1)
  4. Nach öffnen von Email bleibt Laptop hängen, nach Neustart keine Ausgabe mehr (schwarzer Bildschirm).
    Antiviren-, Firewall- und andere Schutzprogramme - 18.01.2014 (10)
  5. Desktop bleibt nach Start Weiß oder Schwarz!
    Plagegeister aller Art und deren Bekämpfung - 26.05.2013 (22)
  6. nach Avast! Update bleibt Rechner beim Booten hängen
    Plagegeister aller Art und deren Bekämpfung - 23.03.2013 (15)
  7. Win XP bleibt nach kurzer Zeit hängen
    Plagegeister aller Art und deren Bekämpfung - 09.12.2012 (17)
  8. Windows XP Pro bleibt nach Virenbekämpfung beim hochfahren hängen
    Plagegeister aller Art und deren Bekämpfung - 29.05.2012 (1)
  9. Computer bleibt nach unbestimmter Zeit hängen
    Log-Analyse und Auswertung - 16.05.2011 (2)
  10. Verdacht auf Virus/Malware nach Upgrade auf Windows 7 Kaspersky Untersuchung bleibt hängen!
    Plagegeister aller Art und deren Bekämpfung - 05.04.2011 (3)
  11. Malwarebytes Anti-Malware bleibt nach 18 Minuten hängen
    Plagegeister aller Art und deren Bekämpfung - 08.03.2011 (17)
  12. Windows bleibt nach Start hängen
    Log-Analyse und Auswertung - 12.03.2010 (1)
  13. Nach Start von XP und klick auf Benutzerkonto bleibt er genau dort hängen
    Plagegeister aller Art und deren Bekämpfung - 19.05.2009 (0)
  14. Windows bleibt hängen nach Anmeldung
    Alles rund um Windows - 06.01.2008 (1)
  15. Windows bleibt hängen !! Bitte schaut mal nach
    Mülltonne - 05.01.2008 (0)
  16. Explorer langsam oder bleibt hängen
    Log-Analyse und Auswertung - 12.08.2007 (2)
  17. PC bleibt nach dem Formatieren hängen:(
    Alles rund um Windows - 16.11.2006 (10)

Zum Thema PC fängt nach 10min. an zu laggen und/ oder bleibt hängen - Hallöchen zusammen, wie im Titel schon erwähnt, fängt der Rechner nach ca. 10 min. an zu laggen, so dass die Streams dann verzert sind bzw. wenn man den Explorer dann - PC fängt nach 10min. an zu laggen und/ oder bleibt hängen...
Archiv
Du betrachtest: PC fängt nach 10min. an zu laggen und/ oder bleibt hängen auf Trojaner-Board

Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.