Windows 7: Proxy-Server reagiert nicht - Standard

Windows 7: Proxy-Server reagiert nicht

Hallo Zusammen,

seit einiger Zeit habe ich öfters den Fehler, dass bei Firefox immer wieder die Fehlermeldung "Proxyserver reagiert nicht" kommt. Der Fehler kommt nicht immer und auch nicht bei bestimmten Websites vor. Hier die logfiles:

Vielen Dank für die Hilfe!


defogger_disable by jpshortstuff (
Log created at 05:31 on 13/08/2014 (HP)

Checking for autostart values...
HKCU\~\Run values retrieved.
HKLM\~\Run values retrieved.

Checking for services/drivers...


FRST Logfile:
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 13-08-2014
Ran by HP (administrator) on HP-PC on 13-08-2014 05:34:47
Running from C:\Users\HP\Desktop\TrojanerBoard
Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: Deutsch (Deutschland)
Internet Explorer Version 11
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Microsoft Corporation) C:\Program Files\Microsoft Security Client\Antimalware\MsMpEng.exe
(Elex do Brasil Participações Ltda) C:\Program Files (x86)\iSafe\iSafeSvc.exe
(Elex do Brasil Participações Ltda) C:\Program Files (x86)\iSafe\iSafeSvc2.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RTKAUDIOSERVICE64.EXE
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Taiwan Shui Mu Chih Ching Technology Limited.) C:\Program Files (x86)\WinZipper\winzipersvc.exe
(Andrea Electronics Corporation) C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(IVT Corporation) C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BlueSoleilCS.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Malwarebytes Corporation) C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamscheduler.exe
(Tlapia) C:\Program Files (x86)\sysTPL\sysTPLMonitor.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(IVT Corporation) C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BsHelpCS.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\Antimalware\NisSrv.exe
() C:\Program Files (x86)\iSafe\ipcdl.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Realsil Microelectronics Inc.) C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Elex do Brasil Participações Ltda) C:\Program Files (x86)\iSafe\iSafeTray.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Spotify Ltd) C:\Users\HP\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe
(McAfee, Inc.) C:\Program Files\McAfee Security Scan\3.8.150\SSScheduler.exe
(Dropbox, Inc.) C:\Users\HP\AppData\Roaming\Dropbox\bin\Dropbox.exe
(IVT Corporation) C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BtTray.exe
(Tlapia) C:\Program Files (x86)\sysTPL\sysTPL.exe
(Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(CyberLink) C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Malwarebytes Corporation) C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbam.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(Tlapia) C:\Program Files (x86)\sysTPL\sysTPLService.exe

==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [6960864 2012-12-25] (Realtek Semiconductor)
HKLM\...\Run: [MSC] => c:\Program Files\Microsoft Security Client\msseces.exe [1436224 2010-11-30] (Microsoft Corporation)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2837288 2011-10-13] (Synaptics Incorporated)
HKLM-x32\...\Run: [IAStorIcon] => C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [285240 2012-12-11] (Intel Corporation)
HKLM-x32\...\Run: [BtTray] => C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BtTray.exe [371976 2012-09-19] (IVT Corporation)
HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [43848 2014-04-23] (Apple Inc.)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [sysTPL] => C:\Program Files (x86)\sysTPL\sysTPL.exe [1244440 2014-03-13] (Tlapia)
HKLM-x32\...\Run: [iTunesHelper] => C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2014-05-26] (Apple Inc.)
HKLM-x32\...\RunOnce: [ Malwarebytes Anti-Malware  (cleanup)] => C:\ProgramData\Malwarebytes\ Malwarebytes Anti-Malware \mbamdor.exe [54072 2014-05-12] (Malwarebytes Corporation)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKU\S-1-5-21-3555238676-2185496674-898315862-1000\...\Run: [Spotify] => C:\Users\HP\AppData\Roaming\Spotify\Spotify.exe [5955072 2013-11-17] (Spotify Ltd)
HKU\S-1-5-21-3555238676-2185496674-898315862-1000\...\Run: [Spotify Web Helper] => C:\Users\HP\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe [1168896 2013-11-17] (Spotify Ltd)
HKU\S-1-5-21-3555238676-2185496674-898315862-1000\...\Run: [SSync] => C:\Users\HP\AppData\Roaming\SSync\SSync.exe [36864 2013-04-09] ()
HKU\S-1-5-21-3555238676-2185496674-898315862-1000\...\Run: [SCheck] => C:\Users\HP\AppData\Roaming\SCheck\SCheck.exe [37376 2013-12-09] ()
HKU\S-1-5-21-3555238676-2185496674-898315862-1000\...\Run: [Snoozer] => C:\Users\HP\AppData\Roaming\Snz\Snz.exe [1209625 2013-12-24] ()
HKU\S-1-5-21-3555238676-2185496674-898315862-1000\...\Run: [Intermediate] => C:\Users\HP\AppData\Roaming\Intermediate\Intermediate.exe [37376 2013-12-09] ()
HKU\S-1-5-21-3555238676-2185496674-898315862-1000\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [21446272 2014-05-08] (Skype Technologies S.A.)
HKU\S-1-5-21-3555238676-2185496674-898315862-1000\...\MountPoints2: {40a8a29e-6d66-11e3-b10b-f4b7e2ace1d4} - E:\SISetup.exe
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk
ShortcutTarget: McAfee Security Scan Plus.lnk -> C:\Program Files\McAfee Security Scan\3.8.150\SSScheduler.exe (McAfee, Inc.)
Startup: C:\Users\HP\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk
ShortcutTarget: Dropbox.lnk -> C:\Users\HP\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
ShellIconOverlayIdentifiers: DropboxExt1 -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\HP\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: DropboxExt2 -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\HP\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: DropboxExt3 -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\HP\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: DropboxExt4 -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\HP\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: DropboxExt1 -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\HP\AppData\Roaming\Dropbox\bin\DropboxExt.24.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: DropboxExt2 -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\HP\AppData\Roaming\Dropbox\bin\DropboxExt.24.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: DropboxExt3 -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\HP\AppData\Roaming\Dropbox\bin\DropboxExt.24.dll (Dropbox, Inc.)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

ProxyEnable: Internet Explorer proxy is enabled.
ProxyServer: http=
HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.nationzoom.com/web/?type=ds&ts=1386680568&from=tugs&uid=HGSTXHTS545050A7E380_TW8513L90AAWXP0AAWXPX&q={searchTerms}
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://de.msn.com/?ocid=iehp
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0xFF0185A20D73CE01
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de
HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = hxxp://www.google.com/ie
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.nationzoom.com/web/?type=ds&ts=1386680568&from=tugs&uid=HGSTXHTS545050A7E380_TW8513L90AAWXP0AAWXPX&q={searchTerms}
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.delta-homes.com/?type=hp&ts=1402576632&from=wpm0612&uid=HGSTXHTS545050A7E380_TW8513L90AAWXP0AAWXPX
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://search.fbdownloader.com/?channel=sfde203fbdgy21
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.delta-homes.com/?type=hp&ts=1402576632&from=wpm0612&uid=HGSTXHTS545050A7E380_TW8513L90AAWXP0AAWXPX
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.delta-homes.com/?type=hp&ts=1402576632&from=wpm0612&uid=HGSTXHTS545050A7E380_TW8513L90AAWXP0AAWXPX
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.delta-homes.com/?type=hp&ts=1402576632&from=wpm0612&uid=HGSTXHTS545050A7E380_TW8513L90AAWXP0AAWXPX
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.delta-homes.com/?type=hp&ts=1402576632&from=wpm0612&uid=HGSTXHTS545050A7E380_TW8513L90AAWXP0AAWXPX
SearchScopes: HKCU - DefaultScope {95B7759C-8C7F-4BF1-B163-73684A933233} URL = hxxp://search.fbdownloader.com/search.php?channel=sfde203fbdgy21&q={searchTerms}
SearchScopes: HKCU - {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = hxxp://www.google.com/search?q={sear
SearchScopes: HKCU - {95B7759C-8C7F-4BF1-B163-73684A933233} URL = hxxp://search.fbdownloader.com/search.php?channel=sfde203fbdgy21&q={searchTerms}
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: MSS+ Identifier -> {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} -> C:\Program Files\McAfee Security Scan\3.8.150\McAfeeMSS_IE.dll (McAfee, Inc.)
BHO-x32: Microsoft-Konto-Anmelde-Hilfsprogramm -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
DPF: HKLM-x32 {73ECB3AA-4717-450C-A2AB-D00DAD9EE203} hxxp://h20614.www2.hp.com/ediags/gmd/Install/Cab/hpdetect1262.cab
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer]

FF ProfilePath: C:\Users\HP\AppData\Roaming\Mozilla\Firefox\Profiles\8h2jagw8.default
FF NewTab: chrome://quick_start/content/index.html
FF Homepage: hxxp://www.bild.de/
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_14_0_0_145.dll ()
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~3\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_14_0_0_145.dll ()
FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF Plugin-x32: @google.com/npPicasa3,version=3.0.0 -> C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll (Google, Inc.)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=3.0.72 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~2\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3508.0205 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF SearchPlugin: C:\Users\HP\AppData\Roaming\Mozilla\Firefox\Profiles\8h2jagw8.default\searchplugins\bingp.xml
FF SearchPlugin: C:\Users\HP\AppData\Roaming\Mozilla\Firefox\Profiles\8h2jagw8.default\searchplugins\fbdownloader_search.xml
FF SearchPlugin: C:\Users\HP\AppData\Roaming\Mozilla\Firefox\Profiles\8h2jagw8.default\searchplugins\search.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml
FF Extension: shortcut - C:\Users\HP\AppData\Roaming\Mozilla\Firefox\Profiles\8h2jagw8.default\Extensions\shortcutff@gmail.com [2014-07-30]
FF Extension: Simple New Tab - C:\Users\HP\AppData\Roaming\Mozilla\Firefox\Profiles\8h2jagw8.default\Extensions\snt@dotlabs.co.xpi [2013-12-16]
FF Extension: Adblock Plus - C:\Users\HP\AppData\Roaming\Mozilla\Firefox\Profiles\8h2jagw8.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2013-12-11]
FF HKLM-x32\...\Firefox\Extensions: [shortcutff@gmail.com] - C:\Users\HP\AppData\Roaming\Mozilla\Firefox\Profiles\8h2jagw8.default\extensions\shortcutff@gmail.com
FF HKCU\...\Firefox\Extensions: [{4d14b136-5d8b-4df3-8d9c-86b41de6c32d}] - C:\Program Files (x86)\Re-markit\136.xpi
FF HKCU\...\Firefox\Extensions: [{e4f94d1e-2f53-401e-8885-681602c0ddd8}] - C:\ProgramData\McAfee Security Scan\Extensions\{e4f94d1e-2f53-401e-8885-681602c0ddd8}.xpi
FF Extension: McAfee Security Scan Plus - C:\ProgramData\McAfee Security Scan\Extensions\{e4f94d1e-2f53-401e-8885-681602c0ddd8}.xpi [2014-04-04]

CHR HomePage: http:\/\/search.fbdownloader.com\/?channel=sfde203fbdgy21
CHR RestoreOnStartup: "http:\/\/search.fbdownloader.com\/?channel=sfde203fbdgy21"
CHR NewTab: "chrome-extension:\/\/pmgkeimkiojpjcoiiipekfjaopchhjga\/snt.html",
CHR DefaultSearchKeyword: Search
CHR DefaultSearchProvider: Search
CHR DefaultSearchURL: http:\/\/search.fbdownloader.com\/search.php?channel=sfde203fbdgy21&q={searchTerms}
CHR Extension: (Google Docs) - C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2013-12-10]
CHR Extension: (Lightning Newtab) - C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\ifohbjbgfchkkfhphahclmkpgejiplfo [2014-02-26]
CHR Extension: (Google Wallet) - C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-12-10]
CHR Extension: (Extended Protection) - C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\ogfjmhfnldnajmfaofeiaepghjenbgjo [2014-06-12]
CHR HKLM-x32\...\Chrome\Extension: [ainbkicbloikcngphmjfpjdemblcojdd] - C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\slidebar.crx [2014-06-12]
CHR HKLM-x32\...\Chrome\Extension: [ogfjmhfnldnajmfaofeiaepghjenbgjo] - C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\ep.crx [2014-02-26]

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 BlueSoleilCS; C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BlueSoleilCS.exe [1612552 2012-09-26] (IVT Corporation)
R3 BsHelpCS; C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BsHelpCS.exe [146184 2012-09-19] (IVT Corporation)
R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [732160 2012-12-10] (Intel(R) Corporation) [File not signed]
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [803872 2012-12-10] (Intel(R) Corporation)
R2 iSafeService; C:\Program Files (x86)\iSafe\iSafeSvc.exe [118048 2014-07-16] (Elex do Brasil Participações Ltda)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-01-23] (Intel Corporation)
R2 MBAMScheduler; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamscheduler.exe [1809720 2014-05-12] (Malwarebytes Corporation)
S2 MBAMService; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe [860472 2014-05-12] (Malwarebytes Corporation)
S3 McComponentHostService; C:\Program Files\McAfee Security Scan\3.8.150\McCHSvc.exe [289256 2014-04-09] (McAfee, Inc.)
R2 MsMpSvc; c:\Program Files\Microsoft Security Client\Antimalware\MsMpEng.exe [12784 2010-11-11] (Microsoft Corporation)
R3 NisSrv; c:\Program Files\Microsoft Security Client\Antimalware\NisSrv.exe [282616 2010-11-11] (Microsoft Corporation)
R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [201872 2012-12-05] (Realtek Semiconductor)
R2 sysTPLMonitor.exe; C:\Program Files (x86)\sysTPL\sysTPLMonitor.exe [399640 2014-03-13] (Tlapia)
R2 sysTPLService.exe; C:\Program Files (x86)\sysTPL\sysTPLService.exe [400664 2014-03-13] (Tlapia)
R2 winzipersvc; C:\Program Files (x86)\WinZipper\winzipersvc.exe [425104 2014-02-26] (Taiwan Shui Mu Chih Ching Technology Limited.)

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

U5 BlueletAudio; C:\Windows\System32\Drivers\BlueletAudio.sys [34912 2012-06-15] (Ralink Corporation.)
R3 BtAudioBusSrv; C:\Windows\System32\Drivers\BtAudioBus.sys [23136 2012-06-15] (IVT Corporation)
R3 BthL2caScoIfSrv; C:\Windows\System32\Drivers\BtL2caScoIf.sys [56904 2012-07-19] (Ralink Corporation)
R3 btUrbFilterDrv; C:\Windows\System32\Drivers\IvtUrbBtFlt.sys [48608 2012-10-02] (Ralink Corporation)
R0 iaStorF; C:\Windows\System32\DRIVERS\iaStorF.sys [28216 2012-12-11] (Intel Corporation)
R1 iSafeKrnl; C:\Program Files (x86)\iSafe\iSafeKrnl.sys [247488 2014-07-16] (Elex do Brasil Participações Ltda)
R1 iSafeKrnlKit; C:\Program Files (x86)\iSafe\iSafeKrnlKit.sys [78016 2014-07-16] (Elex do Brasil Participações Ltda)
R1 iSafeKrnlR3; C:\Program Files (x86)\iSafe\iSafeKrnlR3.sys [65216 2014-07-16] (Elex do Brasil Participações Ltda)
R1 iSafeNetFilter; C:\Program Files (x86)\iSafe\iSafeNetFilter.sys [48640 2014-07-09] (Elex do Brasil Participações Ltda)
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2014-05-12] (Malwarebytes Corporation)
R3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [122584 2014-08-12] (Malwarebytes Corporation)
S3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [63704 2014-05-12] (Malwarebytes Corporation)
S3 MOSUMAC; C:\Windows\System32\DRIVERS\M7830A64.SYS [48128 2008-07-25] (--)
R1 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [188928 2010-10-24] (Microsoft Corporation)
R3 NisDrv; C:\Windows\System32\DRIVERS\NisDrvWFP.sys [72064 2010-10-24] (Microsoft Corporation)
R3 RSP2STOR; C:\Windows\System32\DRIVERS\RtsP2Stor.sys [273040 2012-09-06] (Realtek Semiconductor Corp.)
R3 rtbth; C:\Windows\System32\DRIVERS\rtbth.sys [692832 2012-10-02] (Ralink Technology, Corp.)
U5 BlueletAudio; C:\Windows\SysWOW64\Drivers\BlueletAudio.sys [34912 2012-06-15] (Ralink Corporation.)
S3 iSafeKrnlBoot; \??\system32\DRIVERS\iSafeKrnlBoot.sys [X]
S3 RTL8192su; system32\DRIVERS\RTL8192su.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)

==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-08-13 05:34 - 2014-08-13 05:35 - 00000000 ____D () C:\FRST
2014-08-13 05:31 - 2014-08-13 05:31 - 00000000 _____ () C:\Users\HP\defogger_reenable
2014-08-13 05:30 - 2014-08-13 05:30 - 00050477 _____ () C:\Users\HP\Downloads\Defogger(1).exe
2014-08-13 05:29 - 2014-08-13 05:29 - 00000466 _____ () C:\Users\HP\Downloads\defogger_disable.log
2014-08-13 05:29 - 2014-08-13 05:29 - 00000238 _____ () C:\Users\HP\Downloads\defogger_enable.log
2014-08-13 05:27 - 2014-08-13 05:34 - 00000000 ____D () C:\Users\HP\Desktop\TrojanerBoard
2014-08-13 05:26 - 2014-08-13 05:26 - 00050477 _____ () C:\Users\HP\Downloads\Defogger.exe
2014-08-09 02:44 - 2014-08-09 02:44 - 00000000 ____D () C:\Users\HP\Documents\UNI ERLANGEN
2014-08-06 14:49 - 2014-08-06 14:49 - 00000000 __SHD () C:\Users\HP\AppData\Local\EmieUserList
2014-08-06 14:49 - 2014-08-06 14:49 - 00000000 __SHD () C:\Users\HP\AppData\Local\EmieSiteList
2014-07-31 17:58 - 2014-05-14 11:23 - 02477536 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2014-07-31 17:58 - 2014-05-14 11:23 - 00058336 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2014-07-31 17:58 - 2014-05-14 11:23 - 00044512 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2014-07-31 17:58 - 2014-05-14 11:21 - 02620928 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2014-07-31 17:57 - 2014-05-14 11:23 - 00700384 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2014-07-31 17:57 - 2014-05-14 11:23 - 00581600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll
2014-07-31 17:57 - 2014-05-14 11:23 - 00038880 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2014-07-31 17:57 - 2014-05-14 11:23 - 00036320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll
2014-07-31 17:57 - 2014-05-14 11:20 - 00097792 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
2014-07-31 17:57 - 2014-05-14 11:17 - 00092672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll
2014-07-31 17:57 - 2014-05-14 09:23 - 00198600 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
2014-07-31 17:57 - 2014-05-14 09:23 - 00179656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll
2014-07-31 17:57 - 2014-05-14 09:20 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
2014-07-31 17:57 - 2014-05-14 09:17 - 00033792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe
2014-07-31 11:09 - 2014-07-31 11:10 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-08-13 05:35 - 2014-08-13 05:34 - 00000000 ____D () C:\FRST
2014-08-13 05:34 - 2014-08-13 05:27 - 00000000 ____D () C:\Users\HP\Desktop\TrojanerBoard
2014-08-13 05:32 - 2013-12-10 08:05 - 00001102 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-08-13 05:31 - 2014-08-13 05:31 - 00000000 _____ () C:\Users\HP\defogger_reenable
2014-08-13 05:31 - 2013-02-22 07:59 - 00000000 ____D () C:\Users\HP
2014-08-13 05:30 - 2014-08-13 05:30 - 00050477 _____ () C:\Users\HP\Downloads\Defogger(1).exe
2014-08-13 05:29 - 2014-08-13 05:29 - 00000466 _____ () C:\Users\HP\Downloads\defogger_disable.log
2014-08-13 05:29 - 2014-08-13 05:29 - 00000238 _____ () C:\Users\HP\Downloads\defogger_enable.log
2014-08-13 05:28 - 2013-06-30 14:04 - 00000000 ____D () C:\Users\HP\AppData\Roaming\Skype
2014-08-13 05:26 - 2014-08-13 05:26 - 00050477 _____ () C:\Users\HP\Downloads\Defogger.exe
2014-08-13 05:17 - 2013-02-22 07:56 - 02015699 _____ () C:\Windows\WindowsUpdate.log
2014-08-13 05:05 - 2012-09-26 02:53 - 00000950 _____ () C:\Windows\SysWOW64\bscs.ini
2014-08-13 05:02 - 2013-06-27 04:42 - 00003620 _____ () C:\Windows\SysWOW64\LOCALSERVICE.INI
2014-08-13 05:02 - 2013-06-27 04:42 - 00000088 _____ () C:\Windows\SysWOW64\LOCALDEVICE.INI
2014-08-13 05:01 - 2013-12-10 08:03 - 00000000 ____D () C:\Program Files (x86)\iSafe
2014-08-13 04:59 - 2013-06-30 14:10 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-08-13 04:57 - 2013-11-11 20:51 - 00000093 _____ () C:\Windows\SysWOW64\REMOTEDEVICE.INI
2014-08-12 09:46 - 2014-06-22 08:11 - 00122584 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2014-08-12 09:45 - 2014-04-06 11:40 - 00000000 ___RD () C:\Users\HP\Dropbox
2014-08-12 09:45 - 2014-04-06 11:30 - 00000000 ____D () C:\Users\HP\AppData\Roaming\Dropbox
2014-08-12 09:45 - 2013-07-27 10:20 - 00000000 ____D () C:\Users\HP\AppData\Roaming\Spotify
2014-08-12 09:44 - 2013-12-10 08:05 - 00001098 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-08-12 09:43 - 2009-07-13 23:45 - 00021264 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-08-12 09:43 - 2009-07-13 23:45 - 00021264 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-08-12 09:38 - 2014-02-26 09:52 - 00000000 ____D () C:\Program Files (x86)\WinZipper
2014-08-12 09:35 - 2014-06-18 08:00 - 00004827 _____ () C:\Windows\setupact.log
2014-08-12 09:35 - 2009-07-14 00:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-08-09 15:13 - 2013-07-06 10:52 - 00000000 ____D () C:\Users\HP\Documents\Youcam
2014-08-09 09:15 - 2013-06-30 16:33 - 00026112 _____ () C:\Users\HP\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2014-08-09 02:44 - 2014-08-09 02:44 - 00000000 ____D () C:\Users\HP\Documents\UNI ERLANGEN
2014-08-07 11:40 - 2010-11-21 01:50 - 00702820 _____ () C:\Windows\system32\perfh007.dat
2014-08-07 11:40 - 2010-11-21 01:50 - 00151326 _____ () C:\Windows\system32\perfc007.dat
2014-08-07 11:40 - 2009-07-14 00:13 - 01630698 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-08-06 14:49 - 2014-08-06 14:49 - 00000000 __SHD () C:\Users\HP\AppData\Local\EmieUserList
2014-08-06 14:49 - 2014-08-06 14:49 - 00000000 __SHD () C:\Users\HP\AppData\Local\EmieSiteList
2014-08-06 14:38 - 2014-05-04 09:25 - 00000000 ____D () C:\Users\HP\Documents\Studium
2014-07-31 22:47 - 2013-07-27 07:15 - 00000000 ____D () C:\Program Files (x86)\sysTPL
2014-07-31 17:38 - 2014-06-18 08:00 - 00126094 _____ () C:\Windows\PFRO.log
2014-07-31 17:38 - 2013-06-30 11:50 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2014-07-31 11:59 - 2013-12-10 08:04 - 00000000 ____D () C:\Program Files (x86)\MyPC Backup
2014-07-31 11:31 - 2014-06-12 07:38 - 00000000 ____D () C:\Users\HP\AppData\Roaming\337Games
2014-07-31 11:27 - 2009-07-13 22:20 - 00000000 ____D () C:\Windows\Branding
2014-07-31 11:26 - 2013-06-30 14:10 - 00000000 ____D () C:\Users\HP\AppData\Roaming\DataMgr
2014-07-31 11:10 - 2014-07-31 11:09 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-07-28 17:52 - 2013-07-12 07:26 - 00000000 ____D () C:\Users\HP\Documents\MEXICO
2014-07-25 16:31 - 2014-04-06 11:40 - 00000970 _____ () C:\Users\HP\Desktop\Dropbox.lnk
2014-07-25 16:31 - 2014-04-06 11:38 - 00000000 ____D () C:\Users\HP\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox
2014-07-25 08:47 - 2013-07-06 11:51 - 00000000 ____D () C:\Program Files\Microsoft Silverlight
2014-07-25 08:47 - 2013-07-06 11:51 - 00000000 ____D () C:\Program Files (x86)\Microsoft Silverlight
2014-07-25 07:26 - 2013-07-06 11:52 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
2014-07-22 00:31 - 2009-07-13 22:20 - 00000000 ____D () C:\Windows\system32\NDF
2014-07-20 16:46 - 2013-12-10 08:03 - 00000000 ____D () C:\Users\HP\AppData\Roaming\iSafe
2014-07-16 04:39 - 2014-04-22 20:12 - 00045248 _____ (Elex do Brasil Participações Ltda) C:\Windows\system32\Drivers\iSafeKrnlBoot.sys

Some content of TEMP:

==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed

LastRegBack: 2014-08-12 06:15

==================== End Of Log ============================
--- --- ---


GMER 2.1.19357 - hxxp://www.gmer.net
Rootkit scan 2014-08-13 06:08:00
Windows 6.1.7601 Service Pack 1 x64 \Device\Harddisk0\DR0 -> \Device\00000063 ATA_____ rev.AC90 465,76GB
Running: Gmer-19357.exe; Driver: C:\Users\HP\AppData\Local\Temp\pxldipoc.sys

---- Kernel code sections - GMER 2.1 ----

INITKDBG  C:\Windows\system32\ntoskrnl.exe!ExDeleteNPagedLookasideList + 528                                                                                                                                             fffff80003007000 59 bytes [8B, 47, 10, 89, 0C, D0, 85, ...]
INITKDBG  C:\Windows\system32\ntoskrnl.exe!ExDeleteNPagedLookasideList + 588                                                                                                                                             fffff8000300703c 81 bytes {IN AL, DX; XOR EBP, EBP; JMP 0x57264}

---- User code sections - GMER 2.1 ----

.text     C:\Program Files (x86)\iSafe\ipcdl.exe[3524] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 69                                                                                                           00000000753b1465 2 bytes [3B, 75]
.text     C:\Program Files (x86)\iSafe\ipcdl.exe[3524] C:\Windows\syswow64\PSAPI.DLL!GetModuleInformation + 155                                                                                                          00000000753b14bb 2 bytes [3B, 75]
.text     ...                                                                                                                                                                                                            * 2

---- Threads - GMER 2.1 ----

Thread    C:\Windows\SysWOW64\ntdll.dll [848:872]                                                                                                                                                                        00000000002b13fe
---- Processes - GMER 2.1 ----

Library   C:\Users\HP\AppData\Roaming\Dropbox\bin\wxmsw28uh_vc.dll (*** suspicious ***) @ C:\Users\HP\AppData\Roaming\Dropbox\bin\Dropbox.exe [4220](2014-07-21 20:53:38)                                                0000000003c50000
Library   c:\users\hp\appdata\local\temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpmz4_5a.dll (*** suspicious ***) @ C:\Users\HP\AppData\Roaming\Dropbox\bin\Dropbox.exe [4220](2014-08-12 14:45:17)  0000000004090000
Library   C:\Users\HP\AppData\Roaming\Dropbox\bin\libcef.dll (*** suspicious ***) @ C:\Users\HP\AppData\Roaming\Dropbox\bin\Dropbox.exe [4220](2013-10-18 23:55:02)                                                      000000005aec0000
Library   C:\Users\HP\AppData\Roaming\Dropbox\bin\icudt.dll (*** suspicious ***) @ C:\Users\HP\AppData\Roaming\Dropbox\bin\Dropbox.exe [4220] (ICU Data DLL/The ICU Project)(2013-10-18 23:55:00)                        000000005a530000

---- Registry - GMER 2.1 ----

Reg       HKLM\SYSTEM\CurrentControlSet\services\BTHPORT\Parameters\Keys\f4b7e2acb05a                                                                                                                                    
Reg       HKLM\SYSTEM\CurrentControlSet\services\BTHPORT\Parameters\Keys\f4b7e2ace1d4                                                                                                                                    
Reg       HKLM\SYSTEM\CurrentControlSet\services\BTHPORT\Parameters\Keys\f4b7e2ace1d4@2847aa2bbb93                                                                                                                       0xD8 0x1A 0xA0 0x45 ...
Reg       HKLM\SYSTEM\ControlSet002\services\BTHPORT\Parameters\Keys\f4b7e2acb05a (not active ControlSet)                                                                                                                
Reg       HKLM\SYSTEM\ControlSet002\services\BTHPORT\Parameters\Keys\f4b7e2ace1d4 (not active ControlSet)                                                                                                                
Reg       HKLM\SYSTEM\ControlSet002\services\BTHPORT\Parameters\Keys\f4b7e2ace1d4@2847aa2bbb93                                                                                                                           0xD8 0x1A 0xA0 0x45 ...

---- EOF - GMER 2.1 ----

 Malwarebytes Anti-Malware 

Scan Date: 12.08.2014
Scan Time: 09:54:04
Logfile: Malwarebytes.txt
Administrator: Yes

Malware Database: v2014.08.12.05
Rootkit Database: v2014.08.04.01
License: Free
Malware Protection: Disabled
Malicious Website Protection: Disabled
Self-protection: Disabled

OS: Windows 7 Service Pack 1
CPU: x64
File System: NTFS
User: HP

Scan Type: Threat Scan
Result: Completed
Objects Scanned: 336253
Time Elapsed: 15 min, 38 sec

Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Disabled
Heuristics: Enabled
PUP: Enabled
PUM: Enabled

Processes: 0
(No malicious items detected)

Modules: 0
(No malicious items detected)

Registry Keys: 0
(No malicious items detected)

Registry Values: 0
(No malicious items detected)

Registry Data: 5
PUP.Optional.Delta.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Default_Page_URL, hxxp://www.delta-homes.com/?type=hp&ts=1402576632&from=wpm0612&uid=HGSTXHTS545050A7E380_TW8513L90AAWXP0AAWXPX, Good: (www.google.com), Bad: (hxxp://www.delta-homes.com/?type=hp&ts=1402576632&from=wpm0612&uid=HGSTXHTS545050A7E380_TW8513L90AAWXP0AAWXPX),Delete-on-Reboot,[b5008342d6a5d56187528c40d82c40c0]
PUP.Optional.Delta.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Start Page, hxxp://www.delta-homes.com/?type=hp&ts=1402576632&from=wpm0612&uid=HGSTXHTS545050A7E380_TW8513L90AAWXP0AAWXPX, Good: (www.google.com), Bad: (hxxp://www.delta-homes.com/?type=hp&ts=1402576632&from=wpm0612&uid=HGSTXHTS545050A7E380_TW8513L90AAWXP0AAWXPX),Delete-on-Reboot,[bcf9bd08d3a856e0eaf305c7bd47bb45]
PUP.Optional.Delta.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\MAIN|Default_Page_URL, hxxp://www.delta-homes.com/?type=hp&ts=1402576632&from=wpm0612&uid=HGSTXHTS545050A7E380_TW8513L90AAWXP0AAWXPX, Good: (www.google.com), Bad: (hxxp://www.delta-homes.com/?type=hp&ts=1402576632&from=wpm0612&uid=HGSTXHTS545050A7E380_TW8513L90AAWXP0AAWXPX),Delete-on-Reboot,[dcd9cff64536cf674b8e12baae569c64]
PUP.Optional.Delta.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\MAIN|Start Page, hxxp://www.delta-homes.com/?type=hp&ts=1402576632&from=wpm0612&uid=HGSTXHTS545050A7E380_TW8513L90AAWXP0AAWXPX, Good: (www.google.com), Bad: (hxxp://www.delta-homes.com/?type=hp&ts=1402576632&from=wpm0612&uid=HGSTXHTS545050A7E380_TW8513L90AAWXP0AAWXPX),Delete-on-Reboot,[3b7a6c59bdbeb4829d40725a58acac54]
PUP.Optional.Delta.A, HKU\S-1-5-21-3555238676-2185496674-898315862-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Default_Page_URL, hxxp://www.delta-homes.com/?type=hp&ts=1402576632&from=wpm0612&uid=HGSTXHTS545050A7E380_TW8513L90AAWXP0AAWXPX, Good: (www.google.com), Bad: (hxxp://www.delta-homes.com/?type=hp&ts=1402576632&from=wpm0612&uid=HGSTXHTS545050A7E380_TW8513L90AAWXP0AAWXPX),Replaced,[c5f08f36b6c5bd7936a46d5fde26dd23]

Folders: 0
(No malicious items detected)

Files: 9
PUP.Optional.QuickStart.A, C:\Users\HP\AppData\Roaming\Mozilla\Firefox\Profiles\8h2jagw8.default\prefs.js, Good: (), Bad: (user_pref("browser.newtab.url", "chrome://quick_start/content/index.html");), Removal Failed,[773ed1f4dba02a0c63d87586996bd030]
PUP.Optional.MySearchDial.A, C:\Users\HP\AppData\Roaming\Mozilla\Firefox\Profiles\8h2jagw8.default\prefs.js, Good: (), Bad: (user_pref("extensions.mysearchdial.cntry", "MX");), Removal Failed,[bbfa3f86f9828aacc6be30cc62a2e11f]
PUP.Optional.MySearchDial.A, C:\Users\HP\AppData\Roaming\Mozilla\Firefox\Profiles\8h2jagw8.default\prefs.js, Good: (), Bad: (user_pref("extensions.mysearchdial.dpkLst", "3654782829,1334533236,1121012847,231756876,1895130307,603719297,4288797614,3754950497,426401714,3046281807,752626116,1657571787,3224935090,2597085128,1828564131,3396905322,2787570089,1850357963,3855095921,1516386922,3836221436,2015489896,270173904,3729539987,424611005,965674394,609003582,2041931190,3874294282,2774755777,931959409,398575749,3999997753,1104451911,1233863968,4280856088,1554076246,1949401179,1770772786,3253391265,3778438159,1649478750,2848156272,2476712966,3103989719,475488147,1715867073,3594694113,3774606882,4036647035,1593922001,4110151693,2941033654,3206511613");), Removal Failed,[8233c6ff92e93105156f41bbee1602fe]
PUP.Optional.MySearchDial.A, C:\Users\HP\AppData\Roaming\Mozilla\Firefox\Profiles\8h2jagw8.default\prefs.js, Good: (), Bad: (user_pref("extensions.mysearchdial.hdrMd5", "");), Removal Failed,[4f66c0054e2d86b0176d51abe61efe02]
PUP.Optional.MySearchDial.A, C:\Users\HP\AppData\Roaming\Mozilla\Firefox\Profiles\8h2jagw8.default\prefs.js, Good: (), Bad: (user_pref("extensions.mysearchdial.lastB", "chrome://branding/locale/browserconfig.properties");), Removal Failed,[08ad14b194e7270f671d51abc440728e]
PUP.Optional.MySearchDial.A, C:\Users\HP\AppData\Roaming\Mozilla\Firefox\Profiles\8h2jagw8.default\prefs.js, Good: (), Bad: (user_pref("extensions.mysearchdial.lastVrsnTs", "");), Removal Failed,[6055f7ce1962f93dd1b3a359729222de]
PUP.Optional.MySearchDial.A, C:\Users\HP\AppData\Roaming\Mozilla\Firefox\Profiles\8h2jagw8.default\prefs.js, Good: (), Bad: (user_pref("extensions.mysearchdial.pnu_base", "{\"newVrsn\":\"96\",\"lastVrsn\":\"96\",\"vrsnLoad\":\"\",\"showMsg\":\"false\",\"showSilent\":\"false\",\"msgTs\":0,\"lstMsgTs\":\"0\"}");), Removal Failed,[4273269f5526082e236129d3cf35c53b]
PUP.Optional.MySearchDial.A, C:\Users\HP\AppData\Roaming\Mozilla\Firefox\Profiles\8h2jagw8.default\prefs.js, Good: (), Bad: (user_pref("extensions.mysearchdial.sg", "{smplGrp}");), Removal Failed,[edc8a81ddd9ee1554f35718b52b29e62]
PUP.Optional.MySearchDial.A, C:\Users\Party\AppData\Roaming\Mozilla\Firefox\Profiles\yrb97ks2.default\prefs.js, Good: (), Bad: (user_pref("browser.startup.homepage", "hxxp://start.mysearchdial.com/?f=1&a=ir_14_15_ff&cd=2XzuyEtN2Y1L1Qzu0FyE0ByB0EtB0A0C0EtC0DyEtDtCyC0CtN0D0Tzu0SzztBzytN1L2XzutBtFtCzztFtBtFtDtN1L1CzutCyEtDtAtDyD1V1StN1L1G1B1V1N2Y1L1Qzu2StCtA0F0F0BtB0D0CtGyC0EtAyBtGtB0D0D0BtGzytD0FzztGyCtByCtCzztD0AtCzyyCzy0E2QtN1M1F1B2Z1V1N2Y1L1Qzu2StB0D0B0F0ByD0EtCtG0FtAtByEtG0EtDtA0EtG0Bzz0DyDtGtC0F0AtC0E0F0DyB0BtCtBtD2Q&cr=1872811687&ir=");), Removal Failed,[1e97fcc9f6856ec8a8110bf136ced12f]

Physical Sectors: 0
(No malicious items detected)


Geändert von donscholzo (13.08.2014 um 12:28 Uhr) Grund: QUOTE durch CODE ersetzt

/// TB-Ausbilder
Windows 7: Proxy-Server reagiert nicht - Standard

Windows 7: Proxy-Server reagiert nicht

Mein Name ist Matthias und ich werde dir bei der Bereinigung deines Computers helfen.

Bitte beachte folgende Hinweise:
  • Falls wir Hinweise auf illegal erworbene Software finden, werden wir den Support unterbrechen bis jegliche Art von illegaler Software vom Rechner entfernt wurde.
  • Lies dir die Anleitungen sorgfältig durch. Solltest du Probleme haben, stoppe mit deiner Bearbeitung und beschreibe mir dein Problem so gut es geht.
  • Solltest du mir nicht innerhalb von 3 Tagen antworten, gehe ich davon aus, dass du keine Hilfe mehr benötigst. Dann lösche ich dein Thema aus meinem Abo.
    Solltest du einmal länger abwesend sein, so gib mir bitte Bescheid!
  • Während der Bereinigung bitte nichts installieren oder deinstallieren, außer ich bitte dich darum!
  • Alle zu verwendenen Programme sind auf dem Desktop abzuspeichern und von dort zu starten!

Bitte arbeite alle Schritte in der vorgegebenen Reihefolge nacheinander ab und poste alle Logdateien in CODE-Tags:
So funktioniert es:
Posten in CODE-Tags
Die Logfiles anzuhängen oder sogar vorher in ein ZIP, RAR, 7Z-Archive zu packen erschwert deinem Helfer massiv die Arbeit, es sei denn natürlich die Datei wäre ansonsten zu groß für das Forum. Um die Logfiles in eine CODE-Box zu stellen gehe so vor:
  • Markiere das gesamte Logfile (geht meist mit STRG+A) und kopiere es in die Zwischenablage mit STRG+C.
  • Klicke im Editor auf das #-Symbol. Es erscheinen zwei Klammerausdrücke [CODE] [/CODE].
  • Setze den Curser zwischen die CODE-Tags und drücke STRG+V.
  • Klicke aauf Erweitert/Vorschau, um so prüfen, ob du es richtig gemacht hast. Wenn alles stimmt ... auf Antworten.

Danke für deine Mitarbeit!

Schritt 1
Downloade Dir bitte AdwCleaner Logo Icon AdwCleaner auf deinen Desktop.
  • Schließe alle offenen Programme und Browser. Bebilderte Anleitung zu AdwCleaner.
  • Starte die AdwCleaner.exe mit einem Doppelklick.
  • Stimme den Nutzungsbedingungen zu.
  • Klicke auf Optionen und vergewissere dich, dass die folgenden Punkte ausgewählt sind:
    • "Tracing" Schlüssel löschen
    • Winsock Einstellungen zurücksetzen
    • Proxy Einstellungen zurücksetzen
    • Internet Explorer Richtlinien zurücksetzen
    • Chrome Richtlinien zurücksetzen
    • Stelle sicher, dass alle 5 Optionen wie hier dargestellt, ausgewählt sind
  • Klicke auf Suchlauf und warte bis dieser abgeschlossen ist.
  • Klicke nun auf Löschen und bestätige auftretende Hinweise mit Ok.
  • Dein Rechner wird automatisch neu gestartet. Nach dem Neustart öffnet sich eine Textdatei. Poste mir deren Inhalt mit deiner nächsten Antwort.
  • Die Logdatei findest du auch unter C:\AdwCleaner\AdwCleaner[Cx].txt. (x = fortlaufende Nummer).

Schritt 2
Downloade Dir bitte Malwarebytes Anti-Malware
  • Installiere das Programm in den vorgegebenen Pfad. (Bebilderte Anleitung zu MBAM)
  • Starte Malwarebytes' Anti-Malware (MBAM).
  • Klicke im Anschluss auf Scannen, wähle den Bedrohungssuchlauf aus und klicke auf Suchlauf starten.
  • Lass am Ende des Suchlaufs alle Funde (falls vorhanden) in die Quarantäne verschieben. Klicke dazu auf Auswahl entfernen.
  • Lass deinen Rechner ggf. neu starten, um die Bereinigung abzuschließen.
  • Starte MBAM, klicke auf Verlauf und dann auf Anwendungsprotokolle.
  • Wähle das neueste Scan-Protokoll aus und klicke auf Export. Wähle Textdatei (.txt) aus und speichere die Datei als mbam.txt auf dem Desktop ab. Das Logfile von MBAM findest du hier.
  • Füge den Inhalt der mbam.txt mit deiner nächsten Antwort hinzu.

Schritt 3

Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
Bitte lade Junkware Removal Tool auf Deinen Desktop

  • Starte das Tool mit Doppelklick. Ab Windows Vista (oder höher) bitte mit Rechtsklick "als Administrator ausführen" starten.
  • Drücke eine beliebige Taste, um das Tool zu starten.
  • Je nach System kann der Scan eine Weile dauern.
  • Wenn das Tool fertig ist wird das Logfile (JRT.txt) auf dem Desktop gespeichert und automatisch geöffnet.
  • Bitte poste den Inhalt der JRT.txt in Deiner nächsten Antwort.

Schritt 4
  • Starte die FRST.exe erneut. Setze einen Haken vor Addition.txt und drücke auf Scan.
  • FRST erstellt wieder zwei Logdateien (FRST.txt und Addition.txt).
  • Poste mir beide Logdateien mit deiner nächsten Antwort.

Bitte poste mit deiner nächsten Antwort
  • die Logdatei von AdwCleaner,
  • die Logdatei von JRT,
  • die Logdatei von MBAM,
  • die beiden neuen Logdateien von FRST.

Windows 7: Proxy-Server reagiert nicht - Standard

Windows 7: Proxy-Server reagiert nicht

Hier die neuen Logfiles:

Grüße und vielen Dank schonmal

Adw Cleaner:

# AdwCleaner v3.304 - Bericht erstellt am 13/08/2014 um 06:31:53
# Aktualisiert 08/08/2014 von Xplode
# Betriebssystem : Windows 7 Home Premium Service Pack 1 (64 bits)
# Benutzername : HP - HP-PC
# Gestartet von : C:\Users\HP\Desktop\adwcleaner_3.304.exe
# Option : Löschen

***** [ Dienste ] *****

Dienst Gelöscht : winzipersvc

***** [ Dateien / Ordner ] *****

Ordner Gelöscht : C:\ProgramData\WPM
Ordner Gelöscht : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinZipper
Ordner Gelöscht : C:\Program Files (x86)\driver-soft
[!] Ordner Gelöscht : C:\Program Files (x86)\iSafe
Ordner Gelöscht : C:\Program Files (x86)\MyPC Backup
Ordner Gelöscht : C:\Program Files (x86)\WinZipper
Ordner Gelöscht : C:\Program Files\Uninstaller
Ordner Gelöscht : C:\Users\HP\AppData\Roaming\337Games
Ordner Gelöscht : C:\Users\HP\AppData\Roaming\Common\LuaRT
Ordner Gelöscht : C:\Users\HP\AppData\Roaming\DataMgr
Ordner Gelöscht : C:\Users\HP\AppData\Roaming\eCyber
Ordner Gelöscht : C:\Users\HP\AppData\Roaming\fbDownloader
Ordner Gelöscht : C:\Users\HP\AppData\Roaming\Intermediate
Ordner Gelöscht : C:\Users\HP\AppData\Roaming\iSafe
Ordner Gelöscht : C:\Users\HP\AppData\Roaming\SCheck
Ordner Gelöscht : C:\Users\HP\AppData\Roaming\Snz
Ordner Gelöscht : C:\Users\HP\AppData\Roaming\SSync
Ordner Gelöscht : C:\Users\HP\AppData\Roaming\Tlapia
Ordner Gelöscht : C:\Users\HP\AppData\Roaming\WinZipper
Ordner Gelöscht : C:\Users\HP\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\fbDownloader
Ordner Gelöscht : C:\Users\Party\AppData\Roaming\Mozilla\Firefox\Profiles\yrb97ks2.default\Extensions\staged\{ad9a41d2-9a49-4fa6-a79e-71a0785364c8}
Ordner Gelöscht : C:\Users\Party\AppData\Roaming\Mozilla\Firefox\Profiles\yrb97ks2.default\Extensions\staged\ffxtlbr@mysearchdial.com
Ordner Gelöscht : C:\Users\HP\AppData\Roaming\Mozilla\Firefox\Profiles\8h2jagw8.default\Extensions\shortcutff@gmail.com
Ordner Gelöscht : C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\ifohbjbgfchkkfhphahclmkpgejiplfo
Ordner Gelöscht : C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\ogfjmhfnldnajmfaofeiaepghjenbgjo
Datei Gelöscht : C:\Users\HP\AppData\Roaming\Mozilla\Firefox\Profiles\8h2jagw8.default\Extensions\snt@dotlabs.co.xpi
Datei Gelöscht : C:\Users\HP\AppData\Roaming\Mozilla\Firefox\Profiles\8h2jagw8.default\invalidprefs.js
Datei Gelöscht : C:\Users\HP\AppData\Roaming\Mozilla\Firefox\Profiles\8h2jagw8.default\searchplugins\bingp.xml
Datei Gelöscht : C:\Users\HP\AppData\Roaming\Mozilla\Firefox\Profiles\8h2jagw8.default\searchplugins\fbdownloader_search.xml
Datei Gelöscht : C:\Users\HP\AppData\Roaming\Mozilla\Firefox\Profiles\8h2jagw8.default\searchplugins\search.xml
Datei Gelöscht : C:\Users\Party\AppData\Roaming\Mozilla\Firefox\Profiles\yrb97ks2.default\user.js
Datei Gelöscht : C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\ep.crx
Datei Gelöscht : C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_ifohbjbgfchkkfhphahclmkpgejiplfo_0.localstorage

***** [ Tasks ] *****

Task Gelöscht : LaunchApp

***** [ Verknüpfungen ] *****

Verknüpfung Desinfiziert : C:\Users\Public\Desktop\Mozilla Firefox.lnk
Verknüpfung Desinfiziert : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
Verknüpfung Desinfiziert : C:\Users\HP\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
Verknüpfung Desinfiziert : C:\Users\HP\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk
Verknüpfung Desinfiziert : C:\Users\HP\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk
Verknüpfung Desinfiziert : C:\Users\HP\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Mozilla Firefox.lnk
Verknüpfung Desinfiziert : C:\Users\HP\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\StartMenu\Internet Explorer.lnk

***** [ Registrierungsdatenbank ] *****

Wert Gelöscht : HKLM\SOFTWARE\Mozilla\Firefox\Extensions [shortcutff@gmail.com]
Schlüssel Gelöscht : HKLM\SOFTWARE\Google\Chrome\Extensions\ainbkicbloikcngphmjfpjdemblcojdd
Schlüssel Gelöscht : HKLM\SOFTWARE\Google\Chrome\Extensions\bopakagnckmlgajfccecajhnimjiiedh
Schlüssel Gelöscht : HKLM\SOFTWARE\Google\Chrome\Extensions\ogfjmhfnldnajmfaofeiaepghjenbgjo
Wert Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [Intermediate]
Wert Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [scheck]
Wert Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [Snoozer]
Wert Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [ssync]
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\escort.DLL
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\escortApp.DLL
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\escortEng.DLL
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\escorTlbr.DLL
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\esrv.EXE
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\BrowseMark_RASAPI32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\BrowseMark_RASMANCS
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\IminentSetup_RASAPI32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\IminentSetup_RASMANCS
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\updateBrowseMark_RASAPI32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\updateBrowseMark_RASMANCS
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\utilBrowseMark_RASAPI32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\utilBrowseMark_RASMANCS
Schlüssel Gelöscht : HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\IePluginServices
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_fuer_picasa_RASAPI32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_fuer_picasa_RASMANCS
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{09C554C3-109B-483C-A06B-F14172F1A947}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{4E1E9D45-8BF9-4139-915C-9F83CC3D5921}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{B12E99ED-69BD-437C-86BE-C862B9E5444D}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{C292AD0A-C11F-479B-B8DB-743E72D283B0}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{D7EE8177-D51E-4F89-92B6-83EA2EC40800}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{4E1E9D45-8BF9-4139-915C-9F83CC3D5921}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{D7EE8177-D51E-4F89-92B6-83EA2EC40800}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{95B7759C-8C7F-4BF1-B163-73684A933233}
Schlüssel Gelöscht : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{95B7759C-8C7F-4BF1-B163-73684A933233}
Schlüssel Gelöscht : HKCU\Software\ClickConnect
Schlüssel Gelöscht : HKCU\Software\FBDownloader
Schlüssel Gelöscht : HKCU\Software\OfferMosquito
Schlüssel Gelöscht : HKCU\Software\Protector
Schlüssel Gelöscht : HKCU\Software\Softonic
Schlüssel Gelöscht : HKCU\Software\V9
Schlüssel Gelöscht : HKCU\Software\AppDataLow\Software\Re_Markit
Schlüssel Gelöscht : HKLM\Software\Driver-Soft
Schlüssel Gelöscht : HKLM\Software\hdcode
Schlüssel Gelöscht : HKLM\Software\IePlugin
Schlüssel Gelöscht : HKLM\Software\InstallCore
Schlüssel Gelöscht : HKLM\Software\iSafe
Schlüssel Gelöscht : HKLM\Software\SupDp
Schlüssel Gelöscht : HKLM\Software\SupTab
Schlüssel Gelöscht : HKLM\Software\supWPM
Schlüssel Gelöscht : HKLM\Software\V9
Schlüssel Gelöscht : HKLM\Software\winzipersvc
Schlüssel Gelöscht : HKLM\Software\Wpm
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\FBDownloader
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\iSafe
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\winzipper

***** [ Browser ] *****

-\\ Internet Explorer v11.0.9600.17207

Einstellung Wiederhergestellt : HKCU\Software\Microsoft\Internet Explorer\Main [Search Page]
Einstellung Wiederhergestellt : HKCU\Software\Microsoft\Internet Explorer\Main [Default_Search_URL]
Einstellung Wiederhergestellt : HKCU\Software\Microsoft\Internet Explorer\Main [Default_Page_URL]
Einstellung Wiederhergestellt : HKCU\Software\Microsoft\Internet Explorer\Main [Start Page]
Einstellung Wiederhergestellt : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Page_URL]
Einstellung Wiederhergestellt : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page]
Einstellung Wiederhergestellt : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Page_URL]
Einstellung Wiederhergestellt : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page]

-\\ Mozilla Firefox v31.0 (x86 de)

[ Datei : C:\Users\HP\AppData\Roaming\Mozilla\Firefox\Profiles\8h2jagw8.default\prefs.js ]

Zeile gelöscht : user_pref("extensions.mysearchdial.cntry", "MX");
Zeile gelöscht : user_pref("extensions.mysearchdial.dpkLst", "3654782829,1334533236,1121012847,231756876,1895130307,603719297,4288797614,3754950497,426401714,3046281807,752626116,1657571787,3224935090,2597085128,18285[...]
Zeile gelöscht : user_pref("extensions.mysearchdial.hdrMd5", "");
Zeile gelöscht : user_pref("extensions.mysearchdial.lastB", "chrome://branding/locale/browserconfig.properties");
Zeile gelöscht : user_pref("extensions.mysearchdial.lastVrsnTs", "");
Zeile gelöscht : user_pref("extensions.mysearchdial.pnu_base", "{\"newVrsn\":\"96\",\"lastVrsn\":\"96\",\"vrsnLoad\":\"\",\"showMsg\":\"false\",\"showSilent\":\"false\",\"msgTs\":0,\"lstMsgTs\":\"0\"}");
Zeile gelöscht : user_pref("extensions.mysearchdial.sg", "{smplGrp}");

[ Datei : C:\Users\Party\AppData\Roaming\Mozilla\Firefox\Profiles\yrb97ks2.default\prefs.js ]

Zeile gelöscht : user_pref("browser.search.selectedEngine", "Mysearchdial");
Zeile gelöscht : user_pref("browser.startup.homepage", "hxxp://start.mysearchdial.com/?f=1&a=ir_14_15_ff&cd=2XzuyEtN2Y1L1Qzu0FyE0ByB0EtB0A0C0EtC0DyEtDtCyC0CtN0D0Tzu0SzztBzytN1L2XzutBtFtCzztFtBtFtDtN1L1CzutCyEtDtAtDyD1[...]

-\\ Google Chrome v35.0.1916.153

[ Datei : C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\preferences ]

Gelöscht [Search Provider] : hxxp://start.mysearchdial.com/results.php?f=4&q={searchTerms}&a=ir_14_15_ff&cd=2XzuyEtN2Y1L1Qzu0FyE0ByB0EtB0A0C0EtC0DyEtDtCyC0CtN0D0Tzu0SzztBzytN1L2XzutBtFtCzztFtBtFtDtN1L1CzutCyEtDtAtDyD1V1StN1L1G1B1V1N2Y1L1Qzu2StCtA0F0F0BtB0D0CtGyC0EtAyBtGtB0D0D0BtGzytD0FzztGyCtByCtCzztD0AtCzyyCzy0E2QtN1M1F1B2Z1V1N2Y1L1Qzu2StB0D0B0F0ByD0EtCtG0FtAtByEtG0EtDtA0EtG0Bzz0DyDtGtC0F0AtC0E0F0DyB0BtCtBtD2Q&cr=1872811687&ir=
Gelöscht [Search Provider] : hxxp://search.delta-homes.com/web/?type=ds&ts=1402576632&from=wpm0612&uid=HGSTXHTS545050A7E380_TW8513L90AAWXP0AAWXPX&q={searchTerms}
Gelöscht [Search Provider] : hxxp://search.fbdownloader.com/search.php?channel=sfde203fbdgy21&q={searchTerms}
Gelöscht [Homepage] : hxxp://search.fbdownloader.com/?channel=sfde203fbdgy21
Gelöscht [Extension] : ifohbjbgfchkkfhphahclmkpgejiplfo
Gelöscht [Extension] : gbmdkmlcnbapgegninelmjbfibaghdmk
Gelöscht [Extension] : pmgkeimkiojpjcoiiipekfjaopchhjga
Gelöscht [Extension] : ogfjmhfnldnajmfaofeiaepghjenbgjo
Gelöscht [Extension] : dcpfhaghaadpjpgocojgnlhjcieeooel


AdwCleaner[R0].txt - [13543 octets] - [13/08/2014 06:31:03]
AdwCleaner[S0].txt - [11503 octets] - [13/08/2014 06:31:53]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [11564 octets] ##########

Junkware Removal Tool (JRT) by Thisisu
Version: 6.1.4 (04.06.2014:1)
OS: Windows 7 Home Premium x64
Ran by HP on 13.08.2014 at  7:07:51,97

~~~ Services

Failed to stop: [Service] isafekrnl 
Failed to stop: [Service] isafeservice 

~~~ Registry Values

~~~ Registry Keys

Failed to delete: [Registry Key] HKEY_LOCAL_MACHINE\Software\isafe
Failed to delete: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{95B7759C-8C7F-4BF1-B163-73684A933233}

~~~ Files

~~~ Folders

Successfully deleted: [Folder] "C:\ProgramData\drivergenius"
Successfully deleted: [Folder] "C:\Users\HP\AppData\Roaming\isafe"
Failed to delete: [Folder] "C:\Program Files (x86)\isafe"
Successfully deleted: [Folder] "C:\Windows\syswow64\ai_recyclebin"

~~~ FireFox

Emptied folder: C:\Users\HP\AppData\Roaming\mozilla\firefox\profiles\8h2jagw8.default\minidumps [567 files]

~~~ Chrome

Successfully deleted: [Folder] C:\Users\HP\appdata\local\Google\Chrome\User Data\Default\Extensions\ifohbjbgfchkkfhphahclmkpgejiplfo

~~~ Event Viewer Logs were cleared

Scan was completed on 13.08.2014 at  7:15:54,68
End of JRT log

 Malwarebytes Anti-Malware 

Suchlauf Datum: 13.08.2014
Suchlauf-Zeit: 06:39:26
Logdatei: Malwarebytes2.txt
Administrator: Ja

Malware Datenbank: v2014.08.13.03
Rootkit Datenbank: v2014.08.04.01
Lizenz: Kostenlos
Malware Schutz: Deaktiviert
Bösartiger Webseiten Schutz: Deaktiviert
Self-protection: Deaktiviert

Betriebssystem: Windows 7 Service Pack 1
CPU: x64
Dateisystem: NTFS
Benutzer: HP

Suchlauf-Art: Bedrohungs-Suchlauf
Ergebnis: Abgeschlossen
Durchsuchte Objekte: 336962
Verstrichene Zeit: 15 Min, 7 Sek

Speicher: Aktiviert
Autostart: Aktiviert
Dateisystem: Aktiviert
Archive: Aktiviert
Rootkits: Deaktiviert
Heuristics: Aktiviert
PUP: Aktiviert
PUM: Aktiviert

Prozesse: 0
(No malicious items detected)

Module: 0
(No malicious items detected)

Registrierungsschlüssel: 0
(No malicious items detected)

Registrierungswerte: 0
(No malicious items detected)

Registrierungsdaten: 0
(No malicious items detected)

Ordner: 0
(No malicious items detected)

Dateien: 0
(No malicious items detected)

Physische Sektoren: 0
(No malicious items detected)


FRST Logfile:
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 13-08-2014
Ran by HP (administrator) on HP-PC on 13-08-2014 07:18:43
Running from C:\Users\HP\Desktop
Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: Deutsch (Deutschland)
Internet Explorer Version 11
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Microsoft Corporation) C:\Program Files\Microsoft Security Client\Antimalware\MsMpEng.exe
(Elex do Brasil Participações Ltda) C:\Program Files (x86)\iSafe\iSafeSvc.exe
(Elex do Brasil Participações Ltda) C:\Program Files (x86)\iSafe\iSafeSvc2.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RTKAUDIOSERVICE64.EXE
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Andrea Electronics Corporation) C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(IVT Corporation) C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BlueSoleilCS.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Malwarebytes Corporation) C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamscheduler.exe
(Tlapia) C:\Program Files (x86)\sysTPL\sysTPLMonitor.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(IVT Corporation) C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BsHelpCS.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\Antimalware\NisSrv.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(CyberLink) C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe
(Spotify Ltd) C:\Users\HP\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe
(McAfee, Inc.) C:\Program Files\McAfee Security Scan\3.8.150\SSScheduler.exe
(Dropbox, Inc.) C:\Users\HP\AppData\Roaming\Dropbox\bin\Dropbox.exe
(IVT Corporation) C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BtTray.exe
(Tlapia) C:\Program Files (x86)\sysTPL\sysTPL.exe
(Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
() C:\Program Files (x86)\iSafe\ipcdl.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Realsil Microelectronics Inc.) C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Malwarebytes Corporation) C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbam.exe
(Tlapia) C:\Program Files (x86)\sysTPL\sysTPLService.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe

==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [6960864 2012-12-25] (Realtek Semiconductor)
HKLM\...\Run: [MSC] => c:\Program Files\Microsoft Security Client\msseces.exe [1436224 2010-11-30] (Microsoft Corporation)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2837288 2011-10-13] (Synaptics Incorporated)
HKLM-x32\...\Run: [IAStorIcon] => C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [285240 2012-12-11] (Intel Corporation)
HKLM-x32\...\Run: [BtTray] => C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BtTray.exe [371976 2012-09-19] (IVT Corporation)
HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [43848 2014-04-23] (Apple Inc.)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [sysTPL] => C:\Program Files (x86)\sysTPL\sysTPL.exe [1244440 2014-03-13] (Tlapia)
HKLM-x32\...\Run: [iTunesHelper] => C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2014-05-26] (Apple Inc.)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKU\S-1-5-21-3555238676-2185496674-898315862-1000\...\Run: [Spotify] => C:\Users\HP\AppData\Roaming\Spotify\Spotify.exe [5955072 2013-11-17] (Spotify Ltd)
HKU\S-1-5-21-3555238676-2185496674-898315862-1000\...\Run: [Spotify Web Helper] => C:\Users\HP\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe [1168896 2013-11-17] (Spotify Ltd)
HKU\S-1-5-21-3555238676-2185496674-898315862-1000\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [21446272 2014-05-08] (Skype Technologies S.A.)
HKU\S-1-5-21-3555238676-2185496674-898315862-1000\...\MountPoints2: {40a8a29e-6d66-11e3-b10b-f4b7e2ace1d4} - E:\SISetup.exe
HKU\S-1-5-21-3555238676-2185496674-898315862-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Run: [Spotify] => C:\Users\HP\AppData\Roaming\Spotify\Spotify.exe [5955072 2013-11-17] (Spotify Ltd)
HKU\S-1-5-21-3555238676-2185496674-898315862-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Run: [Spotify Web Helper] => C:\Users\HP\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe [1168896 2013-11-17] (Spotify Ltd)
HKU\S-1-5-21-3555238676-2185496674-898315862-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [21446272 2014-05-08] (Skype Technologies S.A.)
HKU\S-1-5-21-3555238676-2185496674-898315862-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\...\MountPoints2: {40a8a29e-6d66-11e3-b10b-f4b7e2ace1d4} - E:\SISetup.exe
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk
ShortcutTarget: McAfee Security Scan Plus.lnk -> C:\Program Files\McAfee Security Scan\3.8.150\SSScheduler.exe (McAfee, Inc.)
Startup: C:\Users\HP\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk
ShortcutTarget: Dropbox.lnk -> C:\Users\HP\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
ShellIconOverlayIdentifiers: DropboxExt1 -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\HP\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: DropboxExt2 -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\HP\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: DropboxExt3 -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\HP\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: DropboxExt4 -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\HP\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: DropboxExt1 -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\HP\AppData\Roaming\Dropbox\bin\DropboxExt.24.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: DropboxExt2 -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\HP\AppData\Roaming\Dropbox\bin\DropboxExt.24.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: DropboxExt3 -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\HP\AppData\Roaming\Dropbox\bin\DropboxExt.24.dll (Dropbox, Inc.)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

ProxyEnable: Internet Explorer proxy is enabled.
ProxyServer: http=
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://de.msn.com/?ocid=iehp
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0xFF0185A20D73CE01
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de
HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = hxxp://www.google.com/ie
SearchScopes: HKCU - {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = hxxp://www.google.com/search?q={sear
SearchScopes: HKCU - {95B7759C-8C7F-4BF1-B163-73684A933233} URL = hxxp://search.fbdownloader.com/search.php?channel=sfde203fbdgy21&q={searchTerms}
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: MSS+ Identifier -> {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} -> C:\Program Files\McAfee Security Scan\3.8.150\McAfeeMSS_IE.dll (McAfee, Inc.)
BHO-x32: Microsoft-Konto-Anmelde-Hilfsprogramm -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
DPF: HKLM-x32 {73ECB3AA-4717-450C-A2AB-D00DAD9EE203} hxxp://h20614.www2.hp.com/ediags/gmd/Install/Cab/hpdetect1262.cab
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer]

FF ProfilePath: C:\Users\HP\AppData\Roaming\Mozilla\Firefox\Profiles\8h2jagw8.default
FF NewTab: chrome://quick_start/content/index.html
FF Homepage: hxxp://www.bild.de/
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_14_0_0_145.dll ()
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~3\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_14_0_0_145.dll ()
FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF Plugin-x32: @google.com/npPicasa3,version=3.0.0 -> C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll (Google, Inc.)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=3.0.72 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~2\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3508.0205 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml
FF Extension: Adblock Plus - C:\Users\HP\AppData\Roaming\Mozilla\Firefox\Profiles\8h2jagw8.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2013-12-11]
FF HKCU\...\Firefox\Extensions: [{4d14b136-5d8b-4df3-8d9c-86b41de6c32d}] - C:\Program Files (x86)\Re-markit\136.xpi
FF HKCU\...\Firefox\Extensions: [{e4f94d1e-2f53-401e-8885-681602c0ddd8}] - C:\ProgramData\McAfee Security Scan\Extensions\{e4f94d1e-2f53-401e-8885-681602c0ddd8}.xpi
FF Extension: McAfee Security Scan Plus - C:\ProgramData\McAfee Security Scan\Extensions\{e4f94d1e-2f53-401e-8885-681602c0ddd8}.xpi [2014-04-04]

CHR HomePage: hxxp://www.google.com/
CHR RestoreOnStartup: "hxxp://search.fbdownloader.com/?channel=sfde203fbdgy21"
CHR NewTab: "chrome-extension://pmgkeimkiojpjcoiiipekfjaopchhjga/snt.html",
CHR DefaultSearchKeyword: Search
CHR DefaultSearchProvider: Search
CHR DefaultSearchURL: hxxp://search.fbdownloader.com/search.php?channel=sfde203fbdgy21&q={searchTerms}
CHR Extension: (Google Docs) - C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2013-12-10]
CHR Extension: (Google Wallet) - C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-12-10]
CHR Extension: (No Name) - C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\ogfjmhfnldnajmfaofeiaepghjenbgjo [2014-06-12]

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 BlueSoleilCS; C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BlueSoleilCS.exe [1612552 2012-09-26] (IVT Corporation)
R3 BsHelpCS; C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BsHelpCS.exe [146184 2012-09-19] (IVT Corporation)
R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [732160 2012-12-10] (Intel(R) Corporation) [File not signed]
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [803872 2012-12-10] (Intel(R) Corporation)
R2 iSafeService; C:\Program Files (x86)\iSafe\iSafeSvc.exe [118048 2014-07-16] (Elex do Brasil Participações Ltda)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-01-23] (Intel Corporation)
R2 MBAMScheduler; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamscheduler.exe [1809720 2014-05-12] (Malwarebytes Corporation)
S2 MBAMService; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe [860472 2014-05-12] (Malwarebytes Corporation)
S3 McComponentHostService; C:\Program Files\McAfee Security Scan\3.8.150\McCHSvc.exe [289256 2014-04-09] (McAfee, Inc.)
R2 MsMpSvc; c:\Program Files\Microsoft Security Client\Antimalware\MsMpEng.exe [12784 2010-11-11] (Microsoft Corporation)
R3 NisSrv; c:\Program Files\Microsoft Security Client\Antimalware\NisSrv.exe [282616 2010-11-11] (Microsoft Corporation)
R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [201872 2012-12-05] (Realtek Semiconductor)
R2 sysTPLMonitor.exe; C:\Program Files (x86)\sysTPL\sysTPLMonitor.exe [399640 2014-03-13] (Tlapia)
R2 sysTPLService.exe; C:\Program Files (x86)\sysTPL\sysTPLService.exe [400664 2014-03-13] (Tlapia)

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

U5 BlueletAudio; C:\Windows\System32\Drivers\BlueletAudio.sys [34912 2012-06-15] (Ralink Corporation.)
R3 BtAudioBusSrv; C:\Windows\System32\Drivers\BtAudioBus.sys [23136 2012-06-15] (IVT Corporation)
R3 BthL2caScoIfSrv; C:\Windows\System32\Drivers\BtL2caScoIf.sys [56904 2012-07-19] (Ralink Corporation)
R3 btUrbFilterDrv; C:\Windows\System32\Drivers\IvtUrbBtFlt.sys [48608 2012-10-02] (Ralink Corporation)
R0 iaStorF; C:\Windows\System32\DRIVERS\iaStorF.sys [28216 2012-12-11] (Intel Corporation)
R1 iSafeKrnl; C:\Program Files (x86)\iSafe\iSafeKrnl.sys [247488 2014-07-16] (Elex do Brasil Participações Ltda)
R1 iSafeKrnlKit; C:\Program Files (x86)\iSafe\iSafeKrnlKit.sys [78016 2014-07-16] (Elex do Brasil Participações Ltda)
R1 iSafeKrnlR3; C:\Program Files (x86)\iSafe\iSafeKrnlR3.sys [65216 2014-07-16] (Elex do Brasil Participações Ltda)
R1 iSafeNetFilter; C:\Program Files (x86)\iSafe\iSafeNetFilter.sys [48640 2014-07-09] (Elex do Brasil Participações Ltda)
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2014-05-12] (Malwarebytes Corporation)
R3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [122584 2014-08-13] (Malwarebytes Corporation)
S3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [63704 2014-05-12] (Malwarebytes Corporation)
S3 MOSUMAC; C:\Windows\System32\DRIVERS\M7830A64.SYS [48128 2008-07-25] (--)
R1 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [188928 2010-10-24] (Microsoft Corporation)
R3 NisDrv; C:\Windows\System32\DRIVERS\NisDrvWFP.sys [72064 2010-10-24] (Microsoft Corporation)
R3 RSP2STOR; C:\Windows\System32\DRIVERS\RtsP2Stor.sys [273040 2012-09-06] (Realtek Semiconductor Corp.)
R3 rtbth; C:\Windows\System32\DRIVERS\rtbth.sys [692832 2012-10-02] (Ralink Technology, Corp.)
U5 BlueletAudio; C:\Windows\SysWOW64\Drivers\BlueletAudio.sys [34912 2012-06-15] (Ralink Corporation.)
S3 iSafeKrnlBoot; \??\system32\DRIVERS\iSafeKrnlBoot.sys [X]
S3 RTL8192su; system32\DRIVERS\RTL8192su.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)

==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-08-13 07:18 - 2014-08-13 07:19 - 00019351 _____ () C:\Users\HP\Desktop\FRST.txt
2014-08-13 07:07 - 2014-08-13 07:07 - 00000000 ____D () C:\Windows\ERUNT
2014-08-13 06:31 - 2014-08-13 06:33 - 00000000 ____D () C:\AdwCleaner
2014-08-13 06:31 - 2010-08-30 08:34 - 00536576 _____ (SQLite Development Team) C:\Windows\SysWOW64\sqlite3.dll
2014-08-13 05:34 - 2014-08-13 07:18 - 00000000 ____D () C:\FRST
2014-08-13 05:33 - 2014-08-13 05:33 - 02100224 _____ (Farbar) C:\Users\HP\Desktop\FRST64.exe
2014-08-13 05:31 - 2014-08-13 05:31 - 00000000 _____ () C:\Users\HP\defogger_reenable
2014-08-13 05:30 - 2014-08-13 05:30 - 00050477 _____ () C:\Users\HP\Downloads\Defogger(1).exe
2014-08-13 05:29 - 2014-08-13 05:29 - 00000466 _____ () C:\Users\HP\Downloads\defogger_disable.log
2014-08-13 05:29 - 2014-08-13 05:29 - 00000238 _____ () C:\Users\HP\Downloads\defogger_enable.log
2014-08-13 05:27 - 2014-08-13 07:18 - 00000000 ____D () C:\Users\HP\Desktop\TrojanerBoard
2014-08-13 05:26 - 2014-08-13 05:26 - 00050477 _____ () C:\Users\HP\Downloads\Defogger.exe
2014-08-09 02:44 - 2014-08-09 02:44 - 00000000 ____D () C:\Users\HP\Documents\UNI ERLANGEN
2014-08-06 14:49 - 2014-08-06 14:49 - 00000000 __SHD () C:\Users\HP\AppData\Local\EmieUserList
2014-08-06 14:49 - 2014-08-06 14:49 - 00000000 __SHD () C:\Users\HP\AppData\Local\EmieSiteList
2014-07-31 17:58 - 2014-05-14 11:23 - 02477536 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2014-07-31 17:58 - 2014-05-14 11:23 - 00058336 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2014-07-31 17:58 - 2014-05-14 11:23 - 00044512 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2014-07-31 17:58 - 2014-05-14 11:21 - 02620928 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2014-07-31 17:57 - 2014-05-14 11:23 - 00700384 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2014-07-31 17:57 - 2014-05-14 11:23 - 00581600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll
2014-07-31 17:57 - 2014-05-14 11:23 - 00038880 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2014-07-31 17:57 - 2014-05-14 11:23 - 00036320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll
2014-07-31 17:57 - 2014-05-14 11:20 - 00097792 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
2014-07-31 17:57 - 2014-05-14 11:17 - 00092672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll
2014-07-31 17:57 - 2014-05-14 09:23 - 00198600 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
2014-07-31 17:57 - 2014-05-14 09:23 - 00179656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll
2014-07-31 17:57 - 2014-05-14 09:20 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
2014-07-31 17:57 - 2014-05-14 09:17 - 00033792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe
2014-07-31 11:09 - 2014-07-31 11:10 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-08-13 07:19 - 2014-08-13 07:18 - 00019351 _____ () C:\Users\HP\Desktop\FRST.txt
2014-08-13 07:18 - 2014-08-13 05:34 - 00000000 ____D () C:\FRST
2014-08-13 07:18 - 2014-08-13 05:27 - 00000000 ____D () C:\Users\HP\Desktop\TrojanerBoard
2014-08-13 07:09 - 2013-07-27 07:15 - 00000000 ____D () C:\Program Files (x86)\sysTPL
2014-08-13 07:08 - 2012-09-26 02:53 - 00000950 _____ () C:\Windows\SysWOW64\bscs.ini
2014-08-13 07:07 - 2014-08-13 07:07 - 00000000 ____D () C:\Windows\ERUNT
2014-08-13 07:05 - 2013-06-30 14:10 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-08-13 07:05 - 2013-06-27 04:42 - 00003620 _____ () C:\Windows\SysWOW64\LOCALSERVICE.INI
2014-08-13 07:05 - 2013-06-27 04:42 - 00000088 _____ () C:\Windows\SysWOW64\LOCALDEVICE.INI
2014-08-13 07:05 - 2013-02-22 07:56 - 02039542 _____ () C:\Windows\WindowsUpdate.log
2014-08-13 06:56 - 2013-11-11 20:51 - 00000093 _____ () C:\Windows\SysWOW64\REMOTEDEVICE.INI
2014-08-13 06:43 - 2009-07-13 23:45 - 00021264 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-08-13 06:43 - 2009-07-13 23:45 - 00021264 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-08-13 06:39 - 2014-06-22 08:11 - 00122584 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2014-08-13 06:39 - 2013-12-10 08:03 - 00000000 ____D () C:\Program Files (x86)\iSafe
2014-08-13 06:38 - 2014-04-06 11:40 - 00000000 ___RD () C:\Users\HP\Dropbox
2014-08-13 06:37 - 2014-04-06 11:30 - 00000000 ____D () C:\Users\HP\AppData\Roaming\Dropbox
2014-08-13 06:37 - 2013-06-30 14:04 - 00000000 ____D () C:\Users\HP\AppData\Roaming\Skype
2014-08-13 06:36 - 2013-07-27 10:20 - 00000000 ____D () C:\Users\HP\AppData\Roaming\Spotify
2014-08-13 06:35 - 2013-12-10 08:05 - 00001098 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-08-13 06:34 - 2014-06-18 08:00 - 00681674 _____ () C:\Windows\PFRO.log
2014-08-13 06:34 - 2014-06-18 08:00 - 00004883 _____ () C:\Windows\setupact.log
2014-08-13 06:34 - 2009-07-14 00:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-08-13 06:33 - 2014-08-13 06:31 - 00000000 ____D () C:\AdwCleaner
2014-08-13 06:33 - 2013-06-30 14:34 - 00000989 _____ () C:\Users\HP\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-08-13 06:33 - 2013-06-30 11:50 - 00001061 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2014-08-13 06:33 - 2013-06-30 11:50 - 00001049 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk
2014-08-13 06:32 - 2013-12-10 08:05 - 00001102 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-08-13 06:32 - 2013-06-30 14:10 - 00000000 ____D () C:\Users\HP\AppData\Roaming\Common
2014-08-13 05:33 - 2014-08-13 05:33 - 02100224 _____ (Farbar) C:\Users\HP\Desktop\FRST64.exe
2014-08-13 05:31 - 2014-08-13 05:31 - 00000000 _____ () C:\Users\HP\defogger_reenable
2014-08-13 05:31 - 2013-02-22 07:59 - 00000000 ____D () C:\Users\HP
2014-08-13 05:30 - 2014-08-13 05:30 - 00050477 _____ () C:\Users\HP\Downloads\Defogger(1).exe
2014-08-13 05:29 - 2014-08-13 05:29 - 00000466 _____ () C:\Users\HP\Downloads\defogger_disable.log
2014-08-13 05:29 - 2014-08-13 05:29 - 00000238 _____ () C:\Users\HP\Downloads\defogger_enable.log
2014-08-13 05:26 - 2014-08-13 05:26 - 00050477 _____ () C:\Users\HP\Downloads\Defogger.exe
2014-08-09 15:13 - 2013-07-06 10:52 - 00000000 ____D () C:\Users\HP\Documents\Youcam
2014-08-09 09:15 - 2013-06-30 16:33 - 00026112 _____ () C:\Users\HP\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2014-08-09 02:44 - 2014-08-09 02:44 - 00000000 ____D () C:\Users\HP\Documents\UNI ERLANGEN
2014-08-07 11:40 - 2010-11-21 01:50 - 00702820 _____ () C:\Windows\system32\perfh007.dat
2014-08-07 11:40 - 2010-11-21 01:50 - 00151326 _____ () C:\Windows\system32\perfc007.dat
2014-08-07 11:40 - 2009-07-14 00:13 - 01630698 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-08-06 14:49 - 2014-08-06 14:49 - 00000000 __SHD () C:\Users\HP\AppData\Local\EmieUserList
2014-08-06 14:49 - 2014-08-06 14:49 - 00000000 __SHD () C:\Users\HP\AppData\Local\EmieSiteList
2014-08-06 14:38 - 2014-05-04 09:25 - 00000000 ____D () C:\Users\HP\Documents\Studium
2014-07-31 17:38 - 2013-06-30 11:50 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2014-07-31 11:27 - 2009-07-13 22:20 - 00000000 ____D () C:\Windows\Branding
2014-07-31 11:10 - 2014-07-31 11:09 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-07-28 17:52 - 2013-07-12 07:26 - 00000000 ____D () C:\Users\HP\Documents\MEXICO
2014-07-25 16:31 - 2014-04-06 11:40 - 00000970 _____ () C:\Users\HP\Desktop\Dropbox.lnk
2014-07-25 16:31 - 2014-04-06 11:38 - 00000000 ____D () C:\Users\HP\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox
2014-07-25 08:47 - 2013-07-06 11:51 - 00000000 ____D () C:\Program Files\Microsoft Silverlight
2014-07-25 08:47 - 2013-07-06 11:51 - 00000000 ____D () C:\Program Files (x86)\Microsoft Silverlight
2014-07-25 07:26 - 2013-07-06 11:52 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
2014-07-22 00:31 - 2009-07-13 22:20 - 00000000 ____D () C:\Windows\system32\NDF
2014-07-16 04:39 - 2014-04-22 20:12 - 00045248 _____ (Elex do Brasil Participações Ltda) C:\Windows\system32\Drivers\iSafeKrnlBoot.sys

Some content of TEMP:

==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed

LastRegBack: 2014-08-12 06:15

==================== End Of Log ============================
--- --- ---

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 13-08-2014
Ran by HP at 2014-08-13 07:19:30
Running from C:\Users\HP\Desktop
Boot Mode: Normal

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Microsoft Security Essentials (Enabled - Up to date) {108DAC43-C256-20B7-BB05-914135DA5160}
AS: Microsoft Security Essentials (Enabled - Up to date) {ABEC4DA7-E46C-2F39-81B5-AA334E5D1BDD}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Adobe Flash Player 14 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: - Adobe Systems Incorporated)
Adobe Flash Player 14 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: - Adobe Systems Incorporated)
Adobe Reader XI (11.0.07) - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AB0000000001}) (Version: 11.0.07 - Adobe Systems Incorporated)
Apple Application Support (HKLM-x32\...\{D9DAD0FF-495A-472B-9F10-BAE430A26682}) (Version: 3.0.3 - Apple Inc.)
Apple Mobile Device Support (HKLM\...\{787136D2-F0F8-4625-AA3F-72D7795AC842}) (Version: - Apple Inc.)
Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: - Apple Inc.)
Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: - Apple Inc.)
CCleaner (HKLM\...\CCleaner) (Version: 4.05 - Piriform)
CyberLink YouCam (HKLM-x32\...\InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}) (Version: - CyberLink Corp.)
CyberLink YouCam (x32 Version: - CyberLink Corp.) Hidden
D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden
Definition Update for Microsoft Office 2010 (KB982726) 32-Bit Edition (HKLM-x32\...\{90140000-0012-0000-0000-0000000FF1CE}_Office14.STANDARD_{5C78021E-3C8E-4EDF-97EA-E9B8D808FD6D}) (Version:  - Microsoft)
Dropbox (HKCU\...\Dropbox) (Version: 2.10.3 - Dropbox, Inc.)
Fotogalerie (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 35.0.1916.153 - Google Inc.)
Google Update Helper (x32 Version: - Google Inc.) Hidden
Google+ Auto Backup (HKLM-x32\...\{D4C4A751-F7F3-4DCA-B825-9AC391BFFC3F}) (Version: - Google)
HP Product Detection (HKLM-x32\...\{ACAA0152-96A4-4D93-92F5-1B4728C3D984}) (Version: 11.15.0008 - HP)
Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: - Intel Corporation)
Intel(R) OpenCL CPU Runtime (HKLM-x32\...\{FCB3772C-B7D0-4933-B1A9-3707EBACC573}) (Version:  - Intel Corporation)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: - Intel Corporation)
Intel(R) Rapid Storage Technology (HKLM-x32\...\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: - Intel Corporation)
Intel® Trusted Connect Service Client (Version: 1.27.757.1 - Intel Corporation) Hidden
iTunes (HKLM\...\{5A68A656-979F-4168-8795-E2E368AA4DC2}) (Version: - Apple Inc.)
Junk Mail filter update (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Malwarebytes Anti-Malware Version (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: - Malwarebytes Corporation)
McAfee Security Scan Plus (HKLM\...\McAfee Security Scan) (Version: - McAfee, Inc.)
Microsoft .NET Framework 4.5.1 (DEU) (Version: 4.5.50938 - Microsoft Corporation) Hidden
Microsoft .NET Framework 4.5.1 (Deutsch) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1031) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 (Version: 4.5.50938 - Microsoft Corporation) Hidden
Microsoft Antimalware (Version: 3.0.8107.0 - Microsoft Corporation) Hidden
Microsoft Antimalware Service DE-DE Language Pack (Version: 3.0.8107.0 - Microsoft Corporation) Hidden
Microsoft Application Error Reporting (Version: 12.0.6015.5000 - Microsoft Corporation) Hidden
Microsoft Office Excel MUI (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Office 64-bit Components 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office OneNote MUI (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Outlook Connector (HKLM-x32\...\{95140000-007A-0407-0000-0000000FF1CE}) (Version: 14.0.5118.5000 - Microsoft Corporation)
Microsoft Office Outlook MUI (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office PowerPoint MUI (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (English) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (French) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (Italian) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Proofing (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Publisher MUI (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Shared 64-bit MUI (German) 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Shared MUI (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Standard 2010 (HKLM-x32\...\Office14.STANDARD) (Version: 14.0.7015.1000 - Microsoft Corporation)
Microsoft Office Standard 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Word MUI (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Outlook Social Connector Provider for Windows Live Messenger 32-bit (HKLM-x32\...\{95140000-007D-0409-0000-0000000FF1CE}) (Version: 14.0.5120.5000 - Microsoft Corporation)
Microsoft Security Client (Version: 2.0.0657.0 - Microsoft Corporation) Hidden
Microsoft Security Client DE-DE Language Pack (Version: 2.0.0657.0 - Microsoft Corporation) Hidden
Microsoft Security Essentials (HKLM\...\Microsoft Security Client) (Version: 2.0.657.0 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation)
Microsoft SkyDrive (HKCU\...\SkyDriveSetup.exe) (Version: 16.4.6013.0910 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022 (HKLM\...\{350AA351-21FA-3270-8B7A-835434E766AD}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Movie Maker (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Mozilla Firefox 31.0 (x86 de) (HKLM-x32\...\Mozilla Firefox 31.0 (x86 de)) (Version: 31.0 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 29.0.1 - Mozilla)
MSVCRT (x32 Version: 15.4.2862.0708 - Microsoft) Hidden
MSVCRT_amd64 (x32 Version: 15.4.2862.0708 - Microsoft) Hidden
MSVCRT110 (x32 Version: 16.4.1108.0727 - Microsoft) Hidden
MSVCRT110_amd64 (Version: 16.4.1109.0912 - Microsoft) Hidden
Photo Common (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Photo Gallery (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Picasa 3 (HKLM-x32\...\Picasa 3) (Version: 3.9 - Google, Inc.)
QuickEngine (HKLM-x32\...\QuickEngine 1.0.1) (Version: 1.0.1 - Tlapia) <==== ATTENTION
QuickEngine (x32 Version: 1.0.1 - Tlapia) Hidden <==== ATTENTION
Ralink Bluetooth Stack64 (HKLM\...\{95DF815D-BE2D-9118-F549-39794C5869CF}) (Version: 9.0.725.0 - Ralink Corporation)
Ralink RT3290 802.11bgn 1x1 Wi-Fi Adapter (HKLM-x32\...\{8FC4F1DD-F7FD-4766-804D-3C8FF1D309AF}) (Version: - Ralink)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.67.1226.2012 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: - Realtek Semiconductor Corp.)
Realtek PCIE Card Reader (HKLM-x32\...\{C1594429-8296-4652-BF54-9DBE4932A44C}) (Version: 6.2.9200.29038 - Realtek Semiconductor Corp.)
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-0012-0000-0000-0000000FF1CE}_Office14.STANDARD_{DE28B448-32E8-4E8F-84F0-A52B21A49B5B}) (Version:  - Microsoft)
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (x32 Version:  - Microsoft) Hidden
Skype™ 6.16 (HKLM-x32\...\{7A3C7E05-EE37-47D6-99E1-2EB05A3DA3F7}) (Version: 6.16.105 - Skype Technologies S.A.)
Spotify (HKCU\...\Spotify) (Version: - Spotify AB)
Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: - Synaptics Incorporated)
sysTPL (HKLM-x32\...\{59E3B807-2D5A-4AAE-A6C7-62F9A1615E84}) (Version: 1.0.0 - Tlapia) <==== ATTENTION
Update for Microsoft Excel 2010 (KB2837600) 32-Bit Edition (HKLM-x32\...\{90140000-0012-0000-0000-0000000FF1CE}_Office14.STANDARD_{4ACD847E-547D-493F-9A86-F73EAE1B5174}) (Version:  - Microsoft)
Update for Microsoft Filter Pack 2.0 (KB2878281) 32-Bit Edition (HKLM-x32\...\{90140000-0012-0000-0000-0000000FF1CE}_Office14.STANDARD_{302A8FE3-EBF5-486C-A431-16A1CD914443}) (Version:  - Microsoft)
Update for Microsoft Filter Pack 2.0 (KB2878281) 32-Bit Edition (HKLM-x32\...\{90140000-002A-0000-1000-0000000FF1CE}_Office14.STANDARD_{302A8FE3-EBF5-486C-A431-16A1CD914443}) (Version:  - Microsoft)
Update for Microsoft InfoPath 2010 (KB2817369) 32-Bit Edition (HKLM-x32\...\{90140000-0012-0000-0000-0000000FF1CE}_Office14.STANDARD_{4EEA3D3E-989C-4DF4-AB0A-3042C0C12AA3}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2589298) 32-Bit Edition (HKLM-x32\...\{90140000-0012-0000-0000-0000000FF1CE}_Office14.STANDARD_{DADF7E25-FFA4-4D02-BE84-1DAE62C18516}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2589352) 32-Bit Edition (HKLM-x32\...\{90140000-0012-0000-0000-0000000FF1CE}_Office14.STANDARD_{F4284D93-7AE8-4309-8CF3-9AD394F35F3A}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2589352) 32-Bit Edition (HKLM-x32\...\{90140000-002A-0000-1000-0000000FF1CE}_Office14.STANDARD_{F4284D93-7AE8-4309-8CF3-9AD394F35F3A}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2589375) 32-Bit Edition (HKLM-x32\...\{90140000-0012-0000-0000-0000000FF1CE}_Office14.STANDARD_{287A1E92-9E41-4BC1-8920-B3D0E9220800}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2597087) 32-Bit Edition (HKLM-x32\...\{90140000-0012-0000-0000-0000000FF1CE}_Office14.STANDARD_{9D69691D-823D-4C3E-9B12-563A3F520366}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2760598) 32-Bit Edition (HKLM-x32\...\{90140000-0012-0000-0000-0000000FF1CE}_Office14.STANDARD_{ECFE33A3-B8B7-439A-ADE4-59FBD29EF9B8}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2760598) 32-Bit Edition (HKLM-x32\...\{90140000-002A-0000-1000-0000000FF1CE}_Office14.STANDARD_{ECFE33A3-B8B7-439A-ADE4-59FBD29EF9B8}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2760631) 32-Bit Edition (HKLM-x32\...\{90140000-0012-0000-0000-0000000FF1CE}_Office14.STANDARD_{35698CB7-AAA2-4577-B505-DBFF504AEF23}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2794737) 32-Bit Edition (HKLM-x32\...\{90140000-0012-0000-0000-0000000FF1CE}_Office14.STANDARD_{5AA578BB-759C-40FD-9661-A737C0884541}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2825635) 32-Bit Edition (HKLM-x32\...\{90140000-0012-0000-0000-0000000FF1CE}_Office14.STANDARD_{F1A20C69-9FE5-40FD-9CD5-84EABC2EF64A}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2837581) 32-Bit Edition (HKLM-x32\...\{90140000-0012-0000-0000-0000000FF1CE}_Office14.STANDARD_{334FB202-28D7-4BA4-8BC9-4FE4AB233EA0}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2837606) 32-Bit Edition (HKLM-x32\...\{90140000-0012-0000-0000-0000000FF1CE}_Office14.STANDARD_{B0D672F7-883E-4279-8E75-D97A5445AB46}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2878252) 32-Bit Edition (HKLM-x32\...\{90140000-0012-0000-0000-0000000FF1CE}_Office14.STANDARD_{B0DB9F71-E0F7-4FE6-8925-35B860CAC0C4}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2881028) 32-Bit Edition (HKLM-x32\...\{90140000-001F-0407-0000-0000000FF1CE}_Office14.STANDARD_{EAD7BEF9-B28C-425F-B2C5-538CB27EF013}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2881028) 32-Bit Edition (HKLM-x32\...\{90140000-001F-0409-0000-0000000FF1CE}_Office14.STANDARD_{C0BDC1DE-C35E-422B-8CBD-C1D555468720}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2881028) 32-Bit Edition (HKLM-x32\...\{90140000-001F-040C-0000-0000000FF1CE}_Office14.STANDARD_{089DBFD7-8211-43B2-AAAE-5BDD8C23E3A8}) (Version:  - Microsoft)
Update for Microsoft OneNote 2010 (KB2837595) 32-Bit Edition (HKLM-x32\...\{90140000-0012-0000-0000-0000000FF1CE}_Office14.STANDARD_{51CCA922-A0CC-47C4-8910-6936D97CAC2E}) (Version:  - Microsoft)
Update for Microsoft OneNote 2010 (KB2837595) 32-Bit Edition (HKLM-x32\...\{90140000-002A-0000-1000-0000000FF1CE}_Office14.STANDARD_{51CCA922-A0CC-47C4-8910-6936D97CAC2E}) (Version:  - Microsoft)
Update for Microsoft Outlook 2010 (KB2687567) 32-Bit Edition (HKLM-x32\...\{90140000-0012-0000-0000-0000000FF1CE}_Office14.STANDARD_{2AB483F1-C86E-427A-83B4-23889B03512D}) (Version:  - Microsoft)
Update for Microsoft Outlook 2010 (KB2687567) 32-Bit Edition (HKLM-x32\...\{90140000-001A-0407-0000-0000000FF1CE}_Office14.STANDARD_{A0657506-69DC-44AE-8DC1-58E7C6F5B1C9}) (Version:  - Microsoft)
Update for Microsoft PowerPoint 2010 (KB2837579) 32-Bit Edition (HKLM-x32\...\{90140000-0012-0000-0000-0000000FF1CE}_Office14.STANDARD_{2BA40F82-F3A4-441C-BF1A-ED4C42FF4872}) (Version:  - Microsoft)
Update for Microsoft PowerPoint 2010 (KB2837579) 32-Bit Edition (HKLM-x32\...\{90140000-0018-0407-0000-0000000FF1CE}_Office14.STANDARD_{40EC8FB1-5202-469D-9232-C28FB1C6FC64}) (Version:  - Microsoft)
Update for Microsoft SharePoint Workspace 2010 (KB2760601) 32-Bit Edition (HKLM-x32\...\{90140000-002A-0000-1000-0000000FF1CE}_Office14.STANDARD_{F9F5A080-AF38-4966-9A6B-C43DCA465035}) (Version:  - Microsoft)
Update for Microsoft Word 2010 (KB2880529) 32-Bit Edition (HKLM-x32\...\{90140000-0012-0000-0000-0000000FF1CE}_Office14.STANDARD_{B9B89E01-5B6B-4F73-BC34-B2C0D8ACB4CD}) (Version:  - Microsoft)
Windows Live Communications Platform (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3508.0205 - Microsoft Corporation)
Windows Live Essentials (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Windows Live Family Safety (Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Windows Live Family Safety (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Windows Live ID Sign-in Assistant (Version: 7.250.4311.0 - Microsoft Corporation) Hidden
Windows Live Installer (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Windows Live Mail (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Windows Live Messenger (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Windows Live MIME IFilter (Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Windows Live Photo Common (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Windows Live PIMT Platform (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Windows Live SOXE (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Windows Live SOXE Definitions (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Windows Live UX Platform (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Windows Live UX Platform Language Pack (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Windows Live Writer (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Windows Live Writer Resources (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Yet Another Cleaner! (HKLM-x32\...\iSafe) (Version:  - ELEX DO BRASIL PARTICIPAÇÕES LTDA)

==================== Custom CLSID (selected items): ==========================

(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)

CustomCLSID: HKU\S-1-5-21-3555238676-2185496674-898315862-1000_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\HP\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3555238676-2185496674-898315862-1000_Classes\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}\InprocServer32 -> C:\Users\HP\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64\SkyDriveShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3555238676-2185496674-898315862-1000_Classes\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524}\InprocServer32 -> C:\Users\HP\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64\SkyDriveShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3555238676-2185496674-898315862-1000_Classes\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A}\InprocServer32 -> C:\Users\HP\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64\SkyDriveShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3555238676-2185496674-898315862-1000_Classes\CLSID\{F8071786-1FD0-4A66-81A1-3CBE29274458}\InprocServer32 -> C:\Users\HP\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64\FileSyncApi64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3555238676-2185496674-898315862-1000_Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\HP\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3555238676-2185496674-898315862-1000_Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\HP\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3555238676-2185496674-898315862-1000_Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\HP\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3555238676-2185496674-898315862-1000_Classes\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\HP\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3555238676-2185496674-898315862-1000_Classes\CLSID\{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\HP\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3555238676-2185496674-898315862-1000_Classes\CLSID\{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\HP\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3555238676-2185496674-898315862-1000_Classes\CLSID\{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\HP\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3555238676-2185496674-898315862-1000_Classes\CLSID\{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\HP\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.)

==================== Restore Points  =========================

09-07-2014 00:01:15 Windows Update
10-07-2014 04:34:21 Windows Update
11-07-2014 02:14:12 Windows Update
14-07-2014 23:21:22 Windows Update
18-07-2014 20:36:43 Windows Update
22-07-2014 02:51:05 Windows Update
25-07-2014 06:24:06 Windows Update
31-07-2014 00:49:52 Windows Update
31-07-2014 22:56:00 Windows Update
04-08-2014 12:15:22 Windows Update
07-08-2014 20:21:49 Windows Update
12-08-2014 08:04:26 Windows Update

==================== Hosts content: ==========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2009-07-13 21:34 - 2009-06-10 16:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts

==================== Scheduled Tasks (whitelisted) =============

(If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)

Task: {1F9210BC-D832-4C7E-ACE4-ADBDA3EFB172} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-07-08] (Adobe Systems Incorporated)
Task: {1FFCF2B4-10DB-4258-B5AF-793BEF5B5D3E} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2013-08-21] (Piriform Ltd)
Task: {259A1F1C-5DD6-4275-8CE9-751564150EF8} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: {41E33F8A-B65E-49A2-B52D-A20306154C87} - System32\Tasks\Microsoft\Microsoft Antimalware\MpIdleTask => c:\Program Files\Microsoft Security Client\Antimalware\MpCmdRun.exe [2010-11-11] (Microsoft Corporation)
Task: {78DF7C9D-BFCE-4D2B-8684-D0505400CC75} - System32\Tasks\Microsoft\Microsoft Antimalware\MP Scheduled Scan => c:\Program Files\Microsoft Security Client\Antimalware\MpCmdRun.exe [2010-11-11] (Microsoft Corporation)
Task: {BA7B6727-B912-45B7-9A77-5CCCD6FF96B6} - System32\Tasks\MirageAgent => C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe [2012-07-27] (CyberLink)
Task: {EBF8FDDB-AFDA-47BE-A16D-B491E6CC926E} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.)
Task: {F5D4B817-3005-4C94-911C-CDB4E96766E7} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

==================== Loaded Modules (whitelisted) =============

2012-09-19 11:37 - 2012-09-19 11:37 - 00017160 _____ () C:\Windows\system32\BsHelpCSps.dll
2013-02-03 20:09 - 2013-01-16 06:27 - 00094208 _____ () C:\Windows\System32\IccLibDll_x64.dll
2014-07-20 19:21 - 2014-07-16 04:34 - 02228896 ____N () C:\Program Files (x86)\iSafe\ipcdl.exe
2012-09-19 11:37 - 2012-09-19 11:37 - 00029960 _____ () C:\Windows\system32\BsTrace.dll
2014-04-22 20:12 - 2014-07-16 04:34 - 00065696 ____N () C:\Program Files (x86)\iSafe\zlib1.dll
2014-04-22 20:12 - 2014-07-16 04:34 - 00092320 ____N () C:\Program Files (x86)\iSafe\curlpp.dll
2014-07-20 19:21 - 2014-07-16 04:34 - 00427168 ____N () C:\Program Files (x86)\iSafe\ipcproxy.dll
2013-12-25 08:14 - 2014-07-09 07:48 - 00176976 ____N () C:\Program Files (x86)\iSafe\tws\unrar.dll
2013-12-25 08:14 - 2014-07-09 07:48 - 00068432 ____N () C:\Program Files (x86)\iSafe\tws\zlib1.dll
2013-12-25 08:14 - 2014-07-09 07:48 - 00087744 ____N () C:\Program Files (x86)\iSafe\tws\unacev2.dll
2014-04-23 16:05 - 2014-04-23 16:05 - 00073544 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll
2014-04-23 16:04 - 2014-04-23 16:04 - 01044808 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll
2012-09-24 07:27 - 2012-09-24 07:27 - 00335176 _____ () C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\Driver\USB\tl_filter.dll
2012-05-02 10:28 - 2012-05-02 10:28 - 00012800 _____ () C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\Driver\AMP\IVTAMPRL.dll
2014-08-13 06:36 - 2014-08-13 06:36 - 00043008 _____ () c:\users\hp\appdata\local\temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmp8rskgs.dll
2013-10-18 18:55 - 2013-10-18 18:55 - 25100288 _____ () C:\Users\HP\AppData\Roaming\Dropbox\bin\libcef.dll
2012-09-19 11:37 - 2012-09-19 11:37 - 00079624 _____ () C:\Windows\system32\BsProfilefunc.dll
2012-09-19 11:37 - 2012-09-19 11:37 - 00363784 _____ () C:\Windows\system32\BsExtendFunc.dll
2014-02-28 04:09 - 2014-02-28 04:09 - 00017920 _____ () C:\Windows\assembly\NativeImages_v4.0.30319_32\PSIClient\0818bbec4f228582cd475b2eded32a93\PSIClient.ni.dll
2013-02-22 09:43 - 2013-01-23 16:57 - 01199576 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll
2014-07-31 11:09 - 2014-07-31 11:09 - 03800688 _____ () C:\Program Files (x86)\Mozilla Firefox\mozjs.dll

==================== Alternate Data Streams (whitelisted) =========

(If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)

==================== Safe Mode (whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

==================== EXE Association (whitelisted) =============

(If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)

==================== MSCONFIG/TASK MANAGER disabled items =========

(Currently there is no automatic fix for this section.)

==================== Faulty Device Manager Devices =============

Name: Teredo Tunneling Pseudo-Interface
Description: Microsoft-Teredo-Tunneling-Adapter
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: Microsoft
Service: tunnel
Problem: : This device cannot start. (Code10)
Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device.
On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard.

==================== Event log errors: =========================

Application errors:

System errors:

Microsoft Office Sessions:

==================== Memory info =========================== 

Processor: Intel(R) Pentium(R) CPU 2020M @ 2.40GHz
Percentage of memory in use: 47%
Total physical RAM: 3991.36 MB
Available physical RAM: 2092.38 MB
Total Pagefile: 7980.9 MB
Available Pagefile: 5877.26 MB
Total Virtual: 8192 MB
Available Virtual: 8191.85 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:465.66 GB) (Free:362.36 GB) NTFS

==================== MBR & Partition Table ==================

Disk: 0 (MBR Code: Windows 7 or 8) (Size: 466 GB) (Disk ID: F40231D6)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=466 GB) - (Type=07 NTFS)

==================== End Of Log ============================

/// TB-Ausbilder
Windows 7: Proxy-Server reagiert nicht - Standard

Windows 7: Proxy-Server reagiert nicht

So geht es weiter:

Schritt 1
Drücke bitte die Windowstaste + R Taste und schreibe notepad in das Ausführen Fenster.

Kopiere nun folgenden Text aus der Code-Box in das leere Textdokument

(Tlapia) C:\Program Files (x86)\sysTPL\sysTPLMonitor.exe
(Tlapia) C:\Program Files (x86)\sysTPL\sysTPL.exe
() C:\Program Files (x86)\iSafe\ipcdl.exe
(Tlapia) C:\Program Files (x86)\sysTPL\sysTPLService.exe
R2 sysTPLMonitor.exe; C:\Program Files (x86)\sysTPL\sysTPLMonitor.exe [399640 2014-03-13] (Tlapia)
R2 sysTPLService.exe; C:\Program Files (x86)\sysTPL\sysTPLService.exe [400664 2014-03-13] (Tlapia)
R1 iSafeKrnl; C:\Program Files (x86)\iSafe\iSafeKrnl.sys [247488 2014-07-16] (Elex do Brasil Participações Ltda)
R1 iSafeKrnlKit; C:\Program Files (x86)\iSafe\iSafeKrnlKit.sys [78016 2014-07-16] (Elex do Brasil Participações Ltda)
R1 iSafeKrnlR3; C:\Program Files (x86)\iSafe\iSafeKrnlR3.sys [65216 2014-07-16] (Elex do Brasil Participações Ltda)
R1 iSafeNetFilter; C:\Program Files (x86)\iSafe\iSafeNetFilter.sys [48640 2014-07-09] (Elex do Brasil Participações Ltda)
HKLM-x32\...\Run: [sysTPL] => C:\Program Files (x86)\sysTPL\sysTPL.exe [1244440 2014-03-13] (Tlapia)
C:\Program Files (x86)\sysTPL
C:\Program Files (x86)\iSafe
ProxyEnable: Internet Explorer proxy is enabled.
ProxyServer: http=
FF HKCU\...\Firefox\Extensions: [{4d14b136-5d8b-4df3-8d9c-86b41de6c32d}] - C:\Program Files (x86)\Re-markit\136.xpi
C:\Program Files (x86)\Re-markit
S3 iSafeKrnlBoot; \??\system32\DRIVERS\iSafeKrnlBoot.sys [X]

Speichere diese bitte als Fixlist.txt auf deinem Desktop (oder dem Verzeichnis in dem sich FRST befindet).
  • Starte nun FRST erneut und klicke den Entfernen Button.
  • Das Tool erstellt eine Fixlog.txt.
  • Poste mir deren Inhalt.

Schritt 2
  • Starte die FRST.exe erneut. Setze einen Haken vor Addition und drücke auf Scan.
  • FRST erstellt wieder zwei Logdateien (FRST.txt und Addition.txt).
  • Poste mir beide Logdateien mit deiner nächsten Antwort.

Schritt 3
Lade dir die passende Version von SystemLook vom folgenden Spiegel herunter und speichere das Tool auf dem Desktop:
SystemLook (32 bit) | SystemLook (64 bit)
  • Doppelklicke auf die SystemLook.exe, um das Tool zu starten.
  • Kopiere den Inhalt der folgenden Codebox in das Textfeld des Tools:

    Yet Another Cleaner
  • Klicke nun auf den Button Look, um den Scan zu starten.
  • Der Suchlauf kann einige Zeit dauern.
  • Wenn der Suchlauf beendet ist, wird sich dein Editor mit den Ergebnissen öffnen, poste diese in deinen Thread.
  • Die Ergebnisse werden auch auf dem Desktop als SystemLook.txt gespeichert.

Bitte poste mit deiner nächsten Antwort
  • die Logdatei des FRST-Fix,
  • die beiden neuen Logdateien von FRST.

Geändert von M-K-D-B (13.08.2014 um 19:34 Uhr)

Alt 13.08.2014, 22:44   #5
Windows 7: Proxy-Server reagiert nicht - Standard

Windows 7: Proxy-Server reagiert nicht

Fixlog Teil 1


Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 13-08-2014
Ran by HP at 2014-08-13 16:16:30 Run:2
Running from C:\Users\HP\Desktop
Boot Mode: Normal

Content of fixlist:
(Tlapia) C:\Program Files (x86)\sysTPL\sysTPLMonitor.exe
(Tlapia) C:\Program Files (x86)\sysTPL\sysTPL.exe
() C:\Program Files (x86)\iSafe\ipcdl.exe
(Tlapia) C:\Program Files (x86)\sysTPL\sysTPLService.exe
R2 sysTPLMonitor.exe; C:\Program Files (x86)\sysTPL\sysTPLMonitor.exe [399640 2014-03-13] (Tlapia)
R2 sysTPLService.exe; C:\Program Files (x86)\sysTPL\sysTPLService.exe [400664 2014-03-13] (Tlapia)
R1 iSafeKrnl; C:\Program Files (x86)\iSafe\iSafeKrnl.sys [247488 2014-07-16] (Elex do Brasil Participações Ltda)
R1 iSafeKrnlKit; C:\Program Files (x86)\iSafe\iSafeKrnlKit.sys [78016 2014-07-16] (Elex do Brasil Participações Ltda)
R1 iSafeKrnlR3; C:\Program Files (x86)\iSafe\iSafeKrnlR3.sys [65216 2014-07-16] (Elex do Brasil Participações Ltda)
R1 iSafeNetFilter; C:\Program Files (x86)\iSafe\iSafeNetFilter.sys [48640 2014-07-09] (Elex do Brasil Participações Ltda)
HKLM-x32\...\Run: [sysTPL] => C:\Program Files (x86)\sysTPL\sysTPL.exe [1244440 2014-03-13] (Tlapia)
C:\Program Files (x86)\sysTPL
C:\Program Files (x86)\iSafe
ProxyEnable: Internet Explorer proxy is enabled.
ProxyServer: http=
FF HKCU\...\Firefox\Extensions: [{4d14b136-5d8b-4df3-8d9c-86b41de6c32d}] - C:\Program Files (x86)\Re-markit\136.xpi
C:\Program Files (x86)\Re-markit
S3 iSafeKrnlBoot; \??\system32\DRIVERS\iSafeKrnlBoot.sys [X]

C:\Program Files (x86)\sysTPL\sysTPLMonitor.exe => No running process found
C:\Program Files (x86)\sysTPL\sysTPL.exe => No running process found
C:\Program Files (x86)\iSafe\ipcdl.exe => Failed to close process.
C:\Program Files (x86)\sysTPL\sysTPLService.exe => No running process found
sysTPLMonitor.exe => Service not found.
sysTPLService.exe => Service not found.
iSafeKrnl => Unable to stop service
iSafeKrnl => Error deleting Service
iSafeKrnlKit => Unable to stop service
iSafeKrnlKit => Error deleting Service
iSafeKrnlR3 => Unable to stop service
iSafeKrnlR3 => Service deleted successfully.
iSafeNetFilter => Unable to stop service
iSafeNetFilter => Error deleting Service
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\sysTPL => Value not found.
"C:\Program Files (x86)\sysTPL" => File/Directory not found.

"C:\Program Files (x86)\iSafe" directory move:

Could not move "C:\Program Files (x86)\iSafe\bugreport.exe" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\curlpp.dll" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\dup.exe" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\eDelayinfo.edb" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\feedback.exe" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\IC.dll" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\iCommu.dll" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\iCore.dll" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\ipcdl.exe" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\ipcproxy.dll" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\iPluginDetector.dll" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\iSafe.exe" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\isafebase.dll" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\iSafeBugReport.exe" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\isafece.dll" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\isafeclc.dll" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\isafeclcv.dll" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\iSafeDisp.dll" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\iSafeEngine.dll" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\isafehrv.dll" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\iSafeKrnl.sys" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\iSafeKrnlBoot.sys" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\iSafeKrnlCall.dll" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\iSafeKrnlCall64.dll" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\iSafeKrnlKit.sys" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\iSafeKrnlR3.sys" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\isafemadwc.dll" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\isafemadwv.dll" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\isafembp.dll" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\isafembpv.dll" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\isafemc.dll" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\isafemclv.dll" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\isafemgc.dll" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\isafemnv.dll" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\iSafeMon.dll" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\iSafeMon64.dll" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\isafemoptv.dll" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\isafemsmv.dll" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\isafemvsv.dll" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\iSafeNetFilter.sys" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\iSafenpf.dll" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\isafepxy.dll" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\iSafeRKScanShell64.dll" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\isaferpt.dll" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\iSafeScan.exe" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\isafesmgr.dll" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\isafesopt.dll" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\isafesptv.dll" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\iSafeSrvMon64.dll" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\isafesv.dll" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\iSafeSvc.exe" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\iSafeSvc2.exe" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\iSafeTHlp.exe" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\iSafeTHlp64.exe" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\iSafeTray.exe" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\isafeupbiz.dll" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\iSafeUpdate.exe" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\iStart.exe" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\iSvc.dll" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\iSvc2.dll" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\libcurl.dll" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\libpng.dll" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\main" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\msvcp110.dll" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\msvcr110.dll" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\ouilibx.dll" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\sqlite3.dll" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\sqlite3x64.dll" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\TrayDownloader.exe" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\uninstall.exe" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\uninstall.inst" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\zlib1.dll" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\user\co.dat" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\user\dbrepl.dat" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\user\eui.dat" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\user\gcignore.dat" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\user\ruo.dat" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\user\sie.dat" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\user\softcache2.dat" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\user\srd.dat" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\update\ipcdl.dat" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\update\temp\dlcfg.ini" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\update\temp\upcfg.ini" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\update\1\4.dat.apptdl" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\tws\antirk.dll" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\tws\common.ini" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\tws\ctools.dll" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\tws\decexp.dll" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\tws\emlib.dll" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\tws\falgorit.dll" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\tws\fddsdb.dat" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\tws\fddslog.txt" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\tws\fgui.dll" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\tws\filau.dll" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\tws\filcmn.dll" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\tws\filcpt.dll" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\tws\filppi.dll" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\tws\filpps.ini" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\tws\filup.dat" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\tws\filup.ini" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\tws\filuplog.txt" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\tws\filvss.dll" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\tws\filvss.ini" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\tws\fsrexc.dat" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\tws\fupd.dll" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\tws\iSafeUpdate.exe" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\tws\leave.dat" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\tws\lsf.dll" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\tws\mca.dll" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\tws\message.dll" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\tws\plugmgr.dll" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\tws\psmgr.dll" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\tws\quarantine.dll" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\tws\tsc.dll" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\tws\twsdk.dll" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\tws\twsupd.dll" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\tws\twsupd.ini" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\tws\unacev2.dll" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\tws\unchm.dll" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\tws\unemb.dll" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\tws\unmisc.dll" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\tws\unrar.dll" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\tws\unsevzip.dll" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\tws\unzip32.dll" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\exam_tree_expand.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\exam_tree_expand_green.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\exam_tree_expand_red.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\exam_tree_protect.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\exam_tree_rubbish.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\exam_tree_warning.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\exit.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\fast-scan.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\firefox_16.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\floaty_arrow_down.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\floaty_btn_mem.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\floaty_btn_net.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\floaty_cloud.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\floaty_cloud2.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\floaty_cloud3.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\floaty_flow.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\floaty_flow_bk.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\floaty_number.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\floaty_num_hover.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\floaty_num_norm.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\floaty_pop.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\floaty_rock.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\floaty_tb_acc_bk.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\floaty_tb_acc_bk2.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\floaty_tb_flow_bk.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\floaty_tb_meter.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\flow_used.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\google_16_16.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\griditembk.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\head_checked.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\head_indeteminate.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\head_unchecked.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\homepage.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\hover_bk_large.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\hover_bk_small.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\icon_adw_clean.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\icon_appstore.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\icon_avira.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\icon_complete_36.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\icon_deep_clean.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\icon_exam.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\icon_netmon.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\icon_optimize.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\icon_plugin.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\icon_protect.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\icon_quick_clean.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\icon_recovery.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\icon_setting.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\icon_softmgr.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\icon_virusscan.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\icon_warning_36.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\ie_16_16.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\if_block.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\if_prompt.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\if_question.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\if_warning.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\inst_bg1.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\inst_close_btn.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\inst_cover_bg.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\inst_inst_btn.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\inst_wheel.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\isafe_16.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\language_btn_bk.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\language_selected_bk.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\like.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\like_count.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\line1.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\line2.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\listctrlbtn.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\listitem_bk.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\listtabbg.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\listtitlebg.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\list_header.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\list_setting.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\Location_ico.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\menubg.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\menu_bkg.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\menu_bkg2.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\menu_item_over.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\menu_nation_iconlist.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\menu_setting_over.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\msgbox_bk.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\netbutton_icon.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\netbutton_left.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\network_protect_uncheck.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\new_abovebg.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\new_notify_bk_safe.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\notify_bk_dang.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\notify_bk_safe.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\notify_bk_warning.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\num_blue.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\open_folder.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\opera_16.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\p2cBtn.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\percent_green.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\pic-error.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\pic-info.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\pic-question.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\pic-warning.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\plugin.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\pop_arrow.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\pop_arrow_fail.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\pop_block.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\pop_block_btn.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\pop_block_mbtn.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\pop_clean.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\pop_icon.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\pop_ok.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\pop_startupass_comb_bg.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\pop_startupass_vscoll.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\pop_startup_clock.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\pop_startup_fast.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\pop_startup_fast_bg.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\pop_startup_nomall_button.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\pop_startup_safe.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\pop_startup_safe_weather.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\pop_startup_slow.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\pop_startup_slow_bg.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\pop_startup_unsafe.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\pop_startup_unsafe_weather.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\pop_startup_warning_button.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\pop_sys_blue_number.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\pop_sys_button2.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\pop_sys_close.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\pop_sys_number.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\pop_sys_star.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\pop_sys_yellow_number.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\pop_title.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\pop_unkownweb.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\pop_unlock.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\pop_warning.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\progressbar_anim.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\progressbar_bk.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\progressbar_image.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\protect_icon_blue.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\protect_icon_gray.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\pvb_skin.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\query_bk_dang.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\query_bk_safe.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\query_bk_warning.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\query_btn_dang.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\query_btn_safe.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\query_btn_warning.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\radio_checked.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\radio_unchecked.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\recovery.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\resource.xml" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\risk.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\rubbish.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\scancheck.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\scan_animate.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\score_bg0.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\score_bg1.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\score_bg2.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\score_bg3.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\score_bg4.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\score_bg5.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\score_number.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\separateline.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\setting.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\setting_bg.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\setting_img_list.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\slidebutton_bg.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\small_download.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\small_progress.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\small_progress_bk.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\softmgr_dlg_bk.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\special_line.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\srfe.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\startmenu_deepclean.ico" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\startup_acclate.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\startup_on.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\submenu_arrow.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\sub_toggle_btn.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\suspended_bg.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\suspenditembk.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\suspend_close.png" => Scheduled to move on reboot.

Geändert von donscholzo (13.08.2014 um 22:54 Uhr)

Alt 13.08.2014, 22:51   #7
Windows 7: Proxy-Server reagiert nicht - Standard

Windows 7: Proxy-Server reagiert nicht

Fixlog Teil 3

Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\switch_button_off.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\switch_button_on.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\sys_boost.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\sys_imglist.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\tab_bg.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\tab_separator.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\tab_vert_line.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\testspeed_arrow.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\testspeed_bk.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\testspeed_light.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\testspeed_light1.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\tobutton1.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\toggletbar_bg.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\traymenu_bk.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\traymenu_btn_bk.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\traymenu_dlg_bk2.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\traymenu_iconlist.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\traymenu_pop_bk.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\traymenu_pop_cancel_btn.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\traymenu_pop_close_btn.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\traymenu_pop_confirm_btn.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\traymenu_pop_ico_query.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\traymenu_pop_ico_sleep.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\tray_radio_checked.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\tray_radio_unchecked.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\unlocked_icon_16.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\unlocked_icon_32.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\update.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\updatedlg_ok_btn_bk.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\update_chk_err.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\update_chk_ok.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\update_client_icon.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\update_icon.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\update_server_icon.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\v9_16_16.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\VirScanner_Report_BG.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\VirScanReportDlg_close_btn.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\VirScan_btn_bg.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\VirScan_PassBtn_bg.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\virscan_tips_ico.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\virscan_warning_ico.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\vscroll.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\weather_icon.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\weather_small_icon.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\yac_mx.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\yac_search.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\yahoo_16_16.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\exam\bk_bag.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\exam\bk_green.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\exam\bk_orange.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\exam\bk_red.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\exam\btn_repair.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\exam\dial_bag.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\exam\dial_green.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\exam\dial_red.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\exam\dial_yellow.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\exam\exam_back_btn_bk.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\exam\exam_back_btn_tip_bk.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\exam\exam_cancel.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\exam\exam_do.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\exam\exam_number_0.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\exam\exam_result_number_hover.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\exam\exam_result_number_normal.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\exam\exam_result_number_pressed.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\exam\exam_result_ok_icon.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\exam\exam_rubbish_icon.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\exam\exam_rubbish_icon_warning.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\exam\exam_safe_protect_icon.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\exam\exam_safe_protect_icon_warning.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\exam\exam_scanning_mid.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\exam\exam_scanning_pic.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\exam\exam_scanning_small.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\exam\exam_sys_opt_icon.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\exam\exam_sys_opt_icon_warning.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\exam\exam_tip_wnd_arrow_bk.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\exam\exam_tip_wnd_bk.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\exam\exam_tip_wnd_bk2.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\exam\exam_type_btn_bottom_line.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\exam\exam_unit_gb.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\exam\exam_unit_kb.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\exam\exam_unit_mb.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\exam\exam_vscroll.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\exam\green_right.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\exam\ignore_icon.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\exam\number_big_green.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\exam\number_big_red.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\exam\number_big_red2.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\exam\opt_arrow_down.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\exam\opt_arrow_up.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\exam\right_green.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\exam\score_none.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\exam\warning_blue.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\exam\warning_gray.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\exam\warning_red.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\exam\warning_yellow.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\app\image\new\exam\yellow_wrong.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\adwclean\layout\default\AdwCleanView.xml" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\adwclean\image\default\adcl_full_scan_virus_btn_bk.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\adwclean\image\default\adcl_scan_check.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\adwclean\image\default\adcl_share_btn_bk.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\adwclean\image\default\adw_clean_iconlist.png" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\skin2\adwclean\image\default\resource.xml" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\log\bugreport.zip" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\log\iSafe.LOG" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\log\iSafeKrnlCall.log" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\log\iSafeSvc.LOG" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\log\iSafeSvc2.LOG" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\log\iSafeTHlp64.LOG" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\log\iSafeUpdate.LOG" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\log\iStart.LOG" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\lang\adwclean_lang.xml" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\lang\appstore_lang.xml" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\lang\asbsn_lang.xml" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\lang\asfeature_lang.xml" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\lang\asgame_lang.xml" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\lang\ashome_lang.xml" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\lang\asmyapps_lang.xml" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\lang\astaskcenter_lang.xml" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\lang\bugreport.xml" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\lang\clean_lang.xml" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\lang\common_lang.xml" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\lang\dl_install_lang.xml" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\lang\fblang.xml" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\lang\gameplayer_lang.xml" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\lang\HistoryRecord_lang.xml" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\lang\iSafeRKScanShell.lang" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\lang\iSafeSet_lang.xml" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\lang\lang.xml" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\lang\net_lang.xml" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\lang\optimize_lang.xml" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\lang\PCClinicUI_lang.xml" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\lang\plugin_lang.xml" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\lang\pu_lang.xml" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\lang\safeprotect_lang.xml" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\lang\shell.xml" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\lang\softmgr_lang.xml" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\lang\startup_lang.xml" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\lang\taskhelper_lang.xml" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\lang\tray_lang.xml" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\lang\uninstall_lang.xml" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\lang\virusScanner_lang.xml" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\lang\virusscan_lang.xml" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\font\segoeui.ttf" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\font\segoeuib.ttf" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\data\bas.dat" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\data\bts.dat" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\data\bwd.dat" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\data\cls.dat" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\data\clx.dat" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\data\eas.dat" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\data\ess.dat" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\data\gcs.dat" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\data\gcx.dat" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\data\nlu.dat" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\data\rms.dat" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\data\sta.dat" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\data\stu.dat" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\data\uis.dat" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\data\was.dat" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\cfg\ccc.dat" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\cfg\config.dat" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\cfg\customscan.dat" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\cfg\fullscan.dat" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\cfg\isafe.dat" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\cfg\iSafeUpdate.ini" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\cfg\ors.dat" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe\cfg\quickscan.dat" => Scheduled to move on reboot.
Could not move "C:\Program Files (x86)\iSafe" directory. => Scheduled to move on reboot.

HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyEnable => value deleted successfully.
HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\\ProxyServer => Value not found.
HKCU\Software\Mozilla\Firefox\Extensions\\{4d14b136-5d8b-4df3-8d9c-86b41de6c32d} => Value not found.
"C:\Program Files (x86)\Re-markit" => File/Directory not found.
iSafeKrnlBoot => Service not found.
"C:\Windows\system32\DRIVERS\iSafeKrnlBoot.sys" => File/Directory not found.

=> Result of Scheduled Files to move (Boot Mode: Normal) (Date&Time: 2014-08-13 16:22:10)<=

"C:\Program Files (x86)\iSafe\bugreport.exe" => File could not move.
"C:\Program Files (x86)\iSafe\curlpp.dll" => File could not move.
"C:\Program Files (x86)\iSafe\dup.exe" => File could not move.
"C:\Program Files (x86)\iSafe\eDelayinfo.edb" => File could not move.
"C:\Program Files (x86)\iSafe\feedback.exe" => File could not move.
"C:\Program Files (x86)\iSafe\IC.dll" => File could not move.
"C:\Program Files (x86)\iSafe\iCommu.dll" => File could not move.
"C:\Program Files (x86)\iSafe\iCore.dll" => File could not move.
"C:\Program Files (x86)\iSafe\ipcdl.exe" => File could not move.
"C:\Program Files (x86)\iSafe\ipcproxy.dll" => File could not move.
"C:\Program Files (x86)\iSafe\iPluginDetector.dll" => File could not move.
"C:\Program Files (x86)\iSafe\iSafe.exe" => File could not move.
"C:\Program Files (x86)\iSafe\isafebase.dll" => File could not move.
"C:\Program Files (x86)\iSafe\iSafeBugReport.exe" => File could not move.
"C:\Program Files (x86)\iSafe\isafece.dll" => File could not move.
"C:\Program Files (x86)\iSafe\isafeclc.dll" => File could not move.
"C:\Program Files (x86)\iSafe\isafeclcv.dll" => File could not move.
"C:\Program Files (x86)\iSafe\iSafeDisp.dll" => File could not move.
"C:\Program Files (x86)\iSafe\iSafeEngine.dll" => File could not move.
"C:\Program Files (x86)\iSafe\isafehrv.dll" => File could not move.
"C:\Program Files (x86)\iSafe\iSafeKrnl.sys" => File could not move.
"C:\Program Files (x86)\iSafe\iSafeKrnlBoot.sys" => File could not move.
"C:\Program Files (x86)\iSafe\iSafeKrnlCall.dll" => File could not move.
"C:\Program Files (x86)\iSafe\iSafeKrnlCall64.dll" => File could not move.
"C:\Program Files (x86)\iSafe\iSafeKrnlKit.sys" => File could not move.
"C:\Program Files (x86)\iSafe\iSafeKrnlR3.sys" => File could not move.
"C:\Program Files (x86)\iSafe\isafemadwc.dll" => File could not move.
"C:\Program Files (x86)\iSafe\isafemadwv.dll" => File could not move.
"C:\Program Files (x86)\iSafe\isafembp.dll" => File could not move.
"C:\Program Files (x86)\iSafe\isafembpv.dll" => File could not move.
"C:\Program Files (x86)\iSafe\isafemc.dll" => File could not move.
"C:\Program Files (x86)\iSafe\isafemclv.dll" => File could not move.
"C:\Program Files (x86)\iSafe\isafemgc.dll" => File could not move.
"C:\Program Files (x86)\iSafe\isafemnv.dll" => File could not move.
"C:\Program Files (x86)\iSafe\iSafeMon.dll" => File could not move.
"C:\Program Files (x86)\iSafe\iSafeMon64.dll" => File could not move.
"C:\Program Files (x86)\iSafe\isafemoptv.dll" => File could not move.
"C:\Program Files (x86)\iSafe\isafemsmv.dll" => File could not move.
"C:\Program Files (x86)\iSafe\isafemvsv.dll" => File could not move.
"C:\Program Files (x86)\iSafe\iSafeNetFilter.sys" => File could not move.
"C:\Program Files (x86)\iSafe\iSafenpf.dll" => File could not move.
"C:\Program Files (x86)\iSafe\isafepxy.dll" => File could not move.
"C:\Program Files (x86)\iSafe\iSafeRKScanShell64.dll" => File could not move.
"C:\Program Files (x86)\iSafe\isaferpt.dll" => File could not move.
"C:\Program Files (x86)\iSafe\iSafeScan.exe" => File could not move.
"C:\Program Files (x86)\iSafe\isafesmgr.dll" => File could not move.
"C:\Program Files (x86)\iSafe\isafesopt.dll" => File could not move.
"C:\Program Files (x86)\iSafe\isafesptv.dll" => File could not move.
"C:\Program Files (x86)\iSafe\iSafeSrvMon64.dll" => File could not move.
"C:\Program Files (x86)\iSafe\isafesv.dll" => File could not move.
"C:\Program Files (x86)\iSafe\iSafeSvc.exe" => File could not move.
"C:\Program Files (x86)\iSafe\iSafeSvc2.exe" => File could not move.
"C:\Program Files (x86)\iSafe\iSafeTHlp.exe" => File could not move.
"C:\Program Files (x86)\iSafe\iSafeTHlp64.exe" => File could not move.
"C:\Program Files (x86)\iSafe\iSafeTray.exe" => File could not move.
"C:\Program Files (x86)\iSafe\isafeupbiz.dll" => File could not move.
"C:\Program Files (x86)\iSafe\iSafeUpdate.exe" => File could not move.
"C:\Program Files (x86)\iSafe\iStart.exe" => File could not move.
"C:\Program Files (x86)\iSafe\iSvc.dll" => File could not move.
"C:\Program Files (x86)\iSafe\iSvc2.dll" => File could not move.
"C:\Program Files (x86)\iSafe\libcurl.dll" => File could not move.
"C:\Program Files (x86)\iSafe\libpng.dll" => File could not move.
"C:\Program Files (x86)\iSafe\main" => File could not move.
"C:\Program Files (x86)\iSafe\msvcp110.dll" => File could not move.
"C:\Program Files (x86)\iSafe\msvcr110.dll" => File could not move.
"C:\Program Files (x86)\iSafe\ouilibx.dll" => File could not move.
"C:\Program Files (x86)\iSafe\sqlite3.dll" => File could not move.
"C:\Program Files (x86)\iSafe\sqlite3x64.dll" => File could not move.
"C:\Program Files (x86)\iSafe\TrayDownloader.exe" => File could not move.
"C:\Program Files (x86)\iSafe\uninstall.exe" => File could not move.
"C:\Program Files (x86)\iSafe\uninstall.inst" => File could not move.
"C:\Program Files (x86)\iSafe\zlib1.dll" => File could not move.
"C:\Program Files (x86)\iSafe\user\co.dat" => File could not move.
"C:\Program Files (x86)\iSafe\user\dbrepl.dat" => File could not move.
"C:\Program Files (x86)\iSafe\user\eui.dat" => File could not move.
"C:\Program Files (x86)\iSafe\user\gcignore.dat" => File could not move.
"C:\Program Files (x86)\iSafe\user\ruo.dat" => File could not move.
"C:\Program Files (x86)\iSafe\user\sie.dat" => File could not move.
"C:\Program Files (x86)\iSafe\user\softcache2.dat" => File could not move.
"C:\Program Files (x86)\iSafe\user\srd.dat" => File could not move.
"C:\Program Files (x86)\iSafe\update\ipcdl.dat" => File could not move.
"C:\Program Files (x86)\iSafe\update\temp\dlcfg.ini" => File could not move.
"C:\Program Files (x86)\iSafe\update\temp\upcfg.ini" => File could not move.
"C:\Program Files (x86)\iSafe\update\1\4.dat.apptdl" => File could not move.
"C:\Program Files (x86)\iSafe\tws\antirk.dll" => File could not move.
"C:\Program Files (x86)\iSafe\tws\common.ini" => File could not move.
"C:\Program Files (x86)\iSafe\tws\ctools.dll" => File could not move.
"C:\Program Files (x86)\iSafe\tws\decexp.dll" => File could not move.
"C:\Program Files (x86)\iSafe\tws\emlib.dll" => File could not move.
"C:\Program Files (x86)\iSafe\tws\falgorit.dll" => File could not move.
"C:\Program Files (x86)\iSafe\tws\fddsdb.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\fddslog.txt" => File could not move.
"C:\Program Files (x86)\iSafe\tws\fgui.dll" => File could not move.
"C:\Program Files (x86)\iSafe\tws\filau.dll" => File could not move.
"C:\Program Files (x86)\iSafe\tws\filcmn.dll" => File could not move.
"C:\Program Files (x86)\iSafe\tws\filcpt.dll" => File could not move.
"C:\Program Files (x86)\iSafe\tws\filppi.dll" => File could not move.
"C:\Program Files (x86)\iSafe\tws\filpps.ini" => File could not move.
"C:\Program Files (x86)\iSafe\tws\filup.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\filup.ini" => File could not move.
"C:\Program Files (x86)\iSafe\tws\filuplog.txt" => File could not move.
"C:\Program Files (x86)\iSafe\tws\filvss.dll" => File could not move.
"C:\Program Files (x86)\iSafe\tws\filvss.ini" => File could not move.
"C:\Program Files (x86)\iSafe\tws\fsrexc.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\fupd.dll" => File could not move.
"C:\Program Files (x86)\iSafe\tws\iSafeUpdate.exe" => File could not move.
"C:\Program Files (x86)\iSafe\tws\leave.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\lsf.dll" => File could not move.
"C:\Program Files (x86)\iSafe\tws\mca.dll" => File could not move.
"C:\Program Files (x86)\iSafe\tws\message.dll" => File could not move.
"C:\Program Files (x86)\iSafe\tws\plugmgr.dll" => File could not move.
"C:\Program Files (x86)\iSafe\tws\psmgr.dll" => File could not move.
"C:\Program Files (x86)\iSafe\tws\quarantine.dll" => File could not move.
"C:\Program Files (x86)\iSafe\tws\tsc.dll" => File could not move.
"C:\Program Files (x86)\iSafe\tws\twsdk.dll" => File could not move.
"C:\Program Files (x86)\iSafe\tws\twsupd.dll" => File could not move.
"C:\Program Files (x86)\iSafe\tws\twsupd.ini" => File could not move.
"C:\Program Files (x86)\iSafe\tws\unacev2.dll" => File could not move.
"C:\Program Files (x86)\iSafe\tws\unchm.dll" => File could not move.
"C:\Program Files (x86)\iSafe\tws\unemb.dll" => File could not move.
"C:\Program Files (x86)\iSafe\tws\unmisc.dll" => File could not move.
"C:\Program Files (x86)\iSafe\tws\unrar.dll" => File could not move.
"C:\Program Files (x86)\iSafe\tws\unsevzip.dll" => File could not move.
"C:\Program Files (x86)\iSafe\tws\unzip32.dll" => File could not move.
"C:\Program Files (x86)\iSafe\tws\vfst.dll" => File could not move.
"C:\Program Files (x86)\iSafe\tws\w32tools.dll" => File could not move.
"C:\Program Files (x86)\iSafe\tws\zipexp.dll" => File could not move.
"C:\Program Files (x86)\iSafe\tws\zlib1.dll" => File could not move.
"C:\Program Files (x86)\iSafe\tws\x64\psmgr.dll" => File could not move.
"C:\Program Files (x86)\iSafe\tws\quarantine\catalog.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\plugins\filavutd.dll" => File could not move.
"C:\Program Files (x86)\iSafe\tws\plugins\virut.tpl" => File could not move.
"C:\Program Files (x86)\iSafe\tws\logs\twister.log" => File could not move.
"C:\Program Files (x86)\iSafe\tws\filwls\figs000.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\filwls\fils000.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\filwls\fols000.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\filwls\fwgs000.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\filwls\fwls000.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\filwls\fwls001.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\filwls\fwls002.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\filwls\fwls003.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\filwls\fwls004.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\filwls\fwls005.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\filwls\fwls006.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\filwls\fwls007.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\filwls\fwls008.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\filwls\fwls009.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\filwls\fwls010.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\filwls\fwls011.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\filwls\fwls012.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\base0000.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\base0001.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\base0002.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\base0003.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\base0004.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\base0005.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\base0006.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\base0007.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\base0008.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\base0009.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\base0010.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\base0011.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\base0012.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\base0013.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\base0014.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\base0015.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\base0016.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\base0017.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\base0018.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\base0019.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\base0020.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\base0021.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\base0022.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\base0023.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\base0024.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\base0025.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\base0026.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\base0027.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\base0028.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\base0029.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\base0030.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\base0031.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\base0032.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\base0033.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\base0034.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\base0035.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\base0036.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\base0037.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\base0038.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\base0039.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\base0040.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\base0041.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\base0042.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\base0043.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\base0044.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\base0045.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\base0046.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\base0047.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\base0048.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\base0049.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\base0050.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\base0051.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\base0052.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\base0053.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\base0054.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\base0055.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\base0056.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\base0057.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\base0058.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\base0059.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\base0060.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\base0061.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\base0062.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\base0063.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\base0064.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\base0065.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\base0066.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\base0067.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\base0068.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\base0069.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\base0070.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\base0071.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\base0072.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\base0073.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\base0074.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\base0075.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\base0076.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\base0077.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\base0078.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\base0079.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\base0080.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\base0081.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\base0082.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\catalog.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0000.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0001.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0002.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0003.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0004.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0005.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0006.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0007.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0008.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0009.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0010.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0011.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0012.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0013.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0014.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0015.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0016.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0017.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0018.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0019.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0020.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0021.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0022.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0023.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0024.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0025.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0026.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0027.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0028.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0029.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0030.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0031.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0032.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0033.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0034.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0035.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0036.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0037.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0038.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0039.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0040.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0041.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0042.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0043.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0044.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0045.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0046.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0047.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0048.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0049.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0050.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0051.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0052.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0053.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0054.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0055.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0056.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0057.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0058.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0059.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0060.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0061.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0062.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0063.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0064.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0065.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0066.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0067.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0068.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0069.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0070.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0071.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0072.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0073.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0074.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0075.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0076.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0077.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0078.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0079.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0080.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0081.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0082.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0083.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0084.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0085.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0086.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0087.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0088.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0089.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0090.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0091.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0092.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0093.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0094.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0095.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0096.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0097.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0098.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0099.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0100.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0101.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0102.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0103.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0104.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0105.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0106.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0107.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0108.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0109.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0110.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0111.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0112.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0113.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0114.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0115.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0116.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0117.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0118.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0119.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0120.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0121.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0122.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0123.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0124.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0125.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0126.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0127.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0128.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0129.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0130.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0131.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0132.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0133.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0134.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0135.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0136.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0137.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0138.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0139.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0140.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0141.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0142.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0143.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0144.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0145.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0146.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0147.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0148.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0149.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0150.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0151.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0152.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0153.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0154.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0155.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0156.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0157.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0158.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0159.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0160.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0161.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0162.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0163.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0164.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0165.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0166.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0167.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0168.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0169.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0170.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0171.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0172.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0173.dat" => File could not move.
"C:\Program Files (x86)\iSafe\tws\defs\gen0174.dat" => File could not move.
C:\Program Files (x86)\iSafe\tmp\8131d37087fd89a4e8b683ac3d3eeb39.dat => Is moved successfully.
"C:\Program Files (x86)\iSafe\tmp\c36b9a19ca6b7293f0edd89be5392e91.dat" => File could not move.
C:\Program Files (x86)\iSafe\tmp\e02bb37778eefa37632be188d8bd570e.dat => Is moved successfully.
"C:\Program Files (x86)\iSafe\skin2\yLite\image\lite_state_bk.gif" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\yLite\image\main_bk_lite.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\yLite\image\resource.xml" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\VirusScanner\style\VirusScanner_style.xml" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\VirusScanner\layout\default\msgbox.xml" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\VirusScanner\layout\default\VirusScannerDlg.xml" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\VirusScanner\layout\default\VirusScanner_Report.xml" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\VirusScanner\image\default\app_icon.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\VirusScanner\image\default\btn_close.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\VirusScanner\image\default\btn_min.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\VirusScanner\image\default\cfgclose.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\VirusScanner\image\default\if_block.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\VirusScanner\image\default\if_prompt.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\VirusScanner\image\default\if_question.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\VirusScanner\image\default\if_warning.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\VirusScanner\image\default\msgbox_bk.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\VirusScanner\image\default\open_folder.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\VirusScanner\image\default\pop_sys_button.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\VirusScanner\image\default\pop_sys_close.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\VirusScanner\image\default\pvb_line.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\VirusScanner\image\default\pvb_skin.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\VirusScanner\image\default\tobutton1.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\VirusScanner\image\default\VirScannerReportDlg_close_btn.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\VirusScanner\image\default\VirScanner_btn_bg.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\VirusScanner\image\default\VirScanner_PassBtn_bg.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\VirusScanner\image\default\VirScanner_PassBtn_Splitline.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\VirusScanner\image\default\VirScanner_Report_BG.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\VirusScanner\image\default\virscanner_tips_ico.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\VirusScanner\image\default\virscanner_warning_ico.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\VirusScanner\image\default\VirusScanner_Check_Checked.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\VirusScanner\image\default\VirusScanner_Check_Indeterminate.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\VirusScanner\image\default\VirusScanner_Check_Uncheck.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\VirusScanner\image\default\VirusScanner_CurrentScan_Arrow_Ico.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\VirusScanner\image\default\VirusScanner_ListTitle_bg.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\VirusScanner\image\default\VirusScanner_res.xml" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\VirusScanner\image\default\VirusScanner_Scanning.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\VirusScanner\image\default\vscroll.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\VirusScan\style\VirusScan_style.xml" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\VirusScan\layout\default\VirusScanView.xml" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\VirusScan\layout\default\virusscan_settingdlg.xml" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\VirusScan\image\default\VirusScan_Btn_BG.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\VirusScan\image\default\VirusScan_Loading.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\VirusScan\image\default\VirusScan_res.xml" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\VirusScan\image\default\VirusScan_SetDlg_BG.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\VirusScan\image\default\VirusScan_SetDlg_Cancel_BTN_BG.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\VirusScan\image\default\VirusScan_SetDlg_EditSkin.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\VirusScan\image\default\VirusScan_Tab_Vert_Line.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\VirusScan\image\default\virus_custom_scan.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\VirusScan\image\default\virus_delete_btn.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\VirusScan\image\default\virus_full_scan.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\VirusScan\image\default\virus_quick_scan.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\VirusScan\image\default\virus_restore_btn.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\VirusScan\image\default\virus_setting_icon.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\uninstall\style\style.xml" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\uninstall\layout\cover.xml" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\uninstall\layout\install.xml" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\uninstall\layout\uninstallpro.xml" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\uninstall\layout\uninstall_logo_fade.xml" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\uninstall\layout\upgrade.xml" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\uninstall\image\av_authority_bk.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\uninstall\image\combo_list.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\uninstall\image\custom_check.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\uninstall\image\custom_uncheck.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\uninstall\image\install_bk.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\uninstall\image\install_logo.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\uninstall\image\install_prog_bk.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\uninstall\image\install_prog_meter.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\uninstall\image\inst_cover_bg.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\uninstall\image\open_dir.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\uninstall\image\popup_bk.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\uninstall\image\resource.xml" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\uninstall\image\soft_cof_button_bk.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\uninstall\image\soft_remove_button_bk.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\uninstall\image\uninstall_bg.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\uninstall\image\uninst_acc.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\uninstall\image\uninst_btn_bg1.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\uninstall\image\uninst_btn_bg2.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\uninstall\image\uninst_clean.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\uninstall\image\uninst_complete.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\uninstall\image\uninst_cry.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\uninstall\image\uninst_func1.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\uninstall\image\uninst_func3.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\uninstall\image\uninst_func_intr.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\uninstall\image\uninst_func_up.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\uninstall\image\uninst_homepage.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\uninstall\image\uninst_input.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\uninstall\image\uninst_progress.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\uninstall\image\uninst_prog_bg.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\uninstall\image\uninst_protect.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\uninstall\image\uninst_spliter.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\uninstall\image\yac_side_ico.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\tray\style\style.xml" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\tray\layout\msgbox.xml" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\tray\layout\traydlg.xml" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\tray\layout\trayfloaty.xml" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\tray\layout\trayfloatypop.xml" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\tray\layout\traymenudlg2.xml" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\tray\layout\traymenupop.xml" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\tray\layout\pop\blockblacklist.xml" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\tray\layout\pop\blockmodify.xml" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\tray\layout\pop\cleartrash.xml" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\tray\layout\pop\daily_news.xml" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\tray\layout\pop\downloadprotect.xml" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\tray\layout\pop\install_plugin.xml" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\tray\layout\pop\lock_guide.xml" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\tray\layout\pop\modifydefaultsearch.xml" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\tray\layout\pop\modifystartup.xml" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\tray\layout\pop\querymodify.xml" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\tray\layout\pop\shortcut.xml" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\tray\layout\pop\startup_assist.xml" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\tray\layout\pop\startup_assist_weather.xml" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\tray\layout\pop\tippop.xml" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\tray\layout\pop\updatedb.xml" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\tray\image\app_icon.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\tray\image\arrowdown_green.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\tray\image\arrowup_orange.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\tray\image\bing_16_16.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\tray\image\button_icon.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\tray\image\combo_browser2.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\tray\image\combo_browser_dropdown_bk.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\tray\image\combo_skin4.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\tray\image\floaty_arrow_down.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\tray\image\floaty_btn_mem.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\tray\image\floaty_btn_net.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\tray\image\floaty_cloud.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\tray\image\floaty_cloud2.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\tray\image\floaty_cloud3.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\tray\image\floaty_flow.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\tray\image\floaty_flow_bk.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\tray\image\floaty_number.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\tray\image\floaty_num_hover.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\tray\image\floaty_num_norm.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\tray\image\floaty_pop.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\tray\image\floaty_rock.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\tray\image\floaty_tb_acc_bk.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\tray\image\floaty_tb_acc_bk2.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\tray\image\floaty_tb_flow_bk.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\tray\image\floaty_tb_meter.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\tray\image\google_16_16.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\tray\image\griditembk.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\tray\image\hover_bk_large.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\tray\image\ie_16_16.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\tray\image\if_block.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\tray\image\if_prompt.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\tray\image\if_question.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\tray\image\if_warning.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\tray\image\isafe_16.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\tray\image\Location_ico.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\tray\image\menu_bkg.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\tray\image\menu_item_over.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\tray\image\msgbox_bk.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\tray\image\notify_bk_dang.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\tray\image\notify_bk_safe.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\tray\image\notify_bk_warning.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\tray\image\pop_arrow.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\tray\image\pop_arrow_fail.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\tray\image\pop_assistant_blue_number.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\tray\image\pop_assistant_yellow_number.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\tray\image\pop_block.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\tray\image\pop_dp_safe.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\tray\image\pop_dp_scan.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\tray\image\pop_dp_unknow.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\tray\image\pop_dp_unsafe.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\tray\image\pop_icon.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\tray\image\pop_next_ico.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\tray\image\pop_previous_ico.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\tray\image\pop_startupass_comb_bg.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\tray\image\pop_startupass_vscoll.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\tray\image\pop_startup_fast.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\tray\image\pop_startup_fast_bg.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\tray\image\pop_startup_nomall_button.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\tray\image\pop_startup_slow.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\tray\image\pop_startup_slow_bg.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\tray\image\pop_startup_warning_button.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\tray\image\pop_sys_blue_number.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\tray\image\pop_sys_button2.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\tray\image\pop_sys_close.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\tray\image\pop_sys_number.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\tray\image\pop_sys_Setting.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\tray\image\pop_sys_star.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\tray\image\pop_sys_yellow_number.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\tray\image\pop_title.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\tray\image\pop_unkownweb.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\tray\image\pop_warning.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\tray\image\query_bk_dang.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\tray\image\query_bk_safe.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\tray\image\query_bk_warning.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\tray\image\query_btn_dang.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\tray\image\query_btn_safe.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\tray\image\query_btn_warning.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\tray\image\resource.xml" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\tray\image\rubbish.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\tray\image\suspend_close.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\tray\image\sys_imglist.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\tray\image\testspeed_arrow.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\tray\image\testspeed_bk.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\tray\image\testspeed_light.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\tray\image\testspeed_light1.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\tray\image\traymenu_dlg_bk2.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\tray\image\traymenu_iconlist.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\tray\image\traymenu_pop_cancel_btn2.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\tray\image\traymenu_pop_ico_query.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\tray\image\tray_radio_checked.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\tray\image\tray_radio_unchecked.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\tray\image\vscroll.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\tray\image\weather_icon.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\tray\image\yahoo_16_16.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\TaskHelper\style\style.xml" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\TaskHelper\layout\default\softuninstallwnd.xml" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\TaskHelper\image\default\resource.xml" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\TaskHelper\image\default\res\bg.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\TaskHelper\image\default\res\btn_bg_1.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\TaskHelper\image\default\res\btn_bg_2.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\TaskHelper\image\default\res\smell_ico.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\TaskHelper\image\default\res\sorry_ico.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\TaskHelper\image\default\res\vscroll.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\TaskHelper\image\default\res\wait.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\TaskHelper\image\default\res\wait_ico.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\style\style_new.xml" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\softmgr\style\softmgr_style.xml" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\softmgr\layout\default\SoftMgrView.xml" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\softmgr\layout\default\softmgr_guide.xml" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\softmgr\layout\default\softmgr_result.xml" => File could not move.

Alt 13.08.2014, 22:53   #8
Windows 7: Proxy-Server reagiert nicht - Standard

Windows 7: Proxy-Server reagiert nicht

Fixlog Teil 4
"C:\Program Files (x86)\iSafe\skin2\softmgr\image\default\sm_boottime_btn_bk.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\softmgr\image\default\sm_common_btn_bk1.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\softmgr\image\default\sm_common_btn_bk2.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\softmgr\image\default\sm_complete_ico.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\softmgr\image\default\sm_ctrl_close_btn_bk.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\softmgr\image\default\sm_guide_dlg_bk.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\softmgr\image\default\sm_guide_dlg_bk2.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\softmgr\image\default\sm_guide_whirling_pic.gif" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\softmgr\image\default\sm_intercept_btn_bk.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\softmgr\image\default\sm_intercept_info_bk.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\softmgr\image\default\sm_menu_bkg.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\softmgr\image\default\sm_menu_item_over.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\softmgr\image\default\sm_netflow_iconlist.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\softmgr\image\default\sm_rating_bar_bk.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\softmgr\image\default\sm_rating_bar_indicator.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\softmgr\image\default\sm_remain_ctrl_iconlist.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\softmgr\image\default\sm_remove_bar_gray.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\softmgr\image\default\sm_remove_bar_green.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\softmgr\image\default\sm_remove_bar_orange.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\softmgr\image\default\sm_remove_bar_red.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\softmgr\image\default\sm_result_dlg_bk.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\softmgr\image\default\sm_result_dlg_bk2.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\softmgr\image\default\sm_software_def_ico_20.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\softmgr\image\default\sm_software_def_ico_32.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\softmgr\image\default\sm_startup_info_bk.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\softmgr\image\default\sm_treeitem_collapse.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\softmgr\image\default\sm_treeitem_expand.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\softmgr\image\default\sm_treeitem_line.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\softmgr\image\default\sm_treeitem_line_half.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\softmgr\image\default\sm_uninst_arrow_ico.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\softmgr\image\default\sm_uninst_btn_ico.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\softmgr\image\default\sm_uninst_ok_ico.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\softmgr\image\default\sm_view_info_bk.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\softmgr\image\default\sm_warning_ico.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\softmgr\image\default\softmgr_res.xml" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\SafeProtect\style\SafeProtect_style.xml" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\SafeProtect\layout\default\SafeProtectView.xml" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\SafeProtect\layout\default\suspend_interception.xml" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\SafeProtect\image\default\bing_16_16.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\SafeProtect\image\default\bing_ico.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\SafeProtect\image\default\blank_ico.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\SafeProtect\image\default\cdbh.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\SafeProtect\image\default\cdsh.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\SafeProtect\image\default\check.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\SafeProtect\image\default\chph.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\SafeProtect\image\default\chrome_16.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\SafeProtect\image\default\chrome_ico.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\SafeProtect\image\default\cseh.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\SafeProtect\image\default\defaultbrowser_handler.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\SafeProtect\image\default\defaultsearch_handler.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\SafeProtect\image\default\dp.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\SafeProtect\image\default\edit_bg.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\SafeProtect\image\default\edit_ico.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\SafeProtect\image\default\firefix_ico.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\SafeProtect\image\default\firefox_16.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\SafeProtect\image\default\google_16_16.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\SafeProtect\image\default\google_ico.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\SafeProtect\image\default\google_small.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\SafeProtect\image\default\homepage_handler.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\SafeProtect\image\default\ie_16_16.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\SafeProtect\image\default\IE_default.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\SafeProtect\image\default\ie_ico.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\SafeProtect\image\default\interception_bk.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\SafeProtect\image\default\iph.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\SafeProtect\image\default\isafe_16.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\SafeProtect\image\default\lastsession_ico.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\SafeProtect\image\default\locked_ico.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\SafeProtect\image\default\lock_ico.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\SafeProtect\image\default\num_green.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\SafeProtect\image\default\opera_16.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\SafeProtect\image\default\opera_ico.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\SafeProtect\image\default\plugin_handler.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\SafeProtect\image\default\pwb.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\SafeProtect\image\default\SafeProtect_Combo_Browser.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\SafeProtect\image\default\SafeProtect_Combo_Browser_Dropdown_BK.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\SafeProtect\image\default\SafeProtect_Combo_Skin.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\SafeProtect\image\default\SafeProtect_Intercept_History_iconlist.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\SafeProtect\image\default\SafeProtect_ListTitle_BG.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\SafeProtect\image\default\SafeProtect_Lock_State_List.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\SafeProtect\image\default\SafeProtect_Online_Shopping.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\SafeProtect\image\default\SafeProtect_Plugin.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\SafeProtect\image\default\SafeProtect_Protect_bk.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\SafeProtect\image\default\SafeProtect_res.xml" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\SafeProtect\image\default\SafeProtect_Shortcut.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\SafeProtect\image\default\SafeProtect_Sub_Toggle_Btn.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\SafeProtect\image\default\SafeProtect_Switch_Button_Off.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\SafeProtect\image\default\SafeProtect_Switch_Button_On.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\SafeProtect\image\default\savebtn_bg.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\SafeProtect\image\default\shortcut_handler.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\SafeProtect\image\default\startup_handler.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\SafeProtect\image\default\startup_hasitem_handler.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\SafeProtect\image\default\unlocked_ico.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\SafeProtect\image\default\unlocked_icon_16.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\SafeProtect\image\default\unlocked_icon_32.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\SafeProtect\image\default\v9_16_16.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\SafeProtect\image\default\YAC_16.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\SafeProtect\image\default\yac_ico.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\SafeProtect\image\default\yahoo_16_16.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\SafeProtect\image\default\yahoo_ico.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\SafeProtect\image\default\yahoo_small.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\plugin\style\plugin_style.xml" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\plugin\layout\default\PluginView.xml" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\plugin\image\default\plugin_res.xml" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\plugin\image\default\plug_ico.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\plugin\image\default\plug_norm.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\plugin\image\default\plug_sec_level.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\plugin\image\default\plug_should_del.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\plugin\image\default\plug_should_dis.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\optimize\style\optimize_style.xml" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\optimize\layout\default\boottimedlg.xml" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\optimize\layout\default\disable_warnings.xml" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\optimize\layout\default\OptimizeView.xml" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\optimize\image\default\optimize_res.xml" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\optimize\image\default\opt_arrow_down.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\optimize\image\default\opt_arrow_up.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\optimize\image\default\opt_boottime_dlg_bk.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\optimize\image\default\opt_boottime_header.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\optimize\image\default\opt_boottime_nodata_ico.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\optimize\image\default\opt_boottime_scanning_pic.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\optimize\image\default\opt_boottime_tip_blue.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\optimize\image\default\opt_boottime_tip_orange.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\optimize\image\default\opt_boottime_tip_red.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\optimize\image\default\opt_common_button_bk.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\optimize\image\default\opt_line.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\optimize\image\default\opt_num_green.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\optimize\image\default\opt_num_pink.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\optimize\image\default\opt_optimize_ico.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\optimize\image\default\opt_opt_btn_bk.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\optimize\image\default\opt_quick_clean_iconlist.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\optimize\image\default\opt_reg_iconlist.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\optimize\image\default\opt_startup_handler.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\optimize\image\default\opt_startup_hasitem_handler.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\optimize\image\default\opt_startup_opt_btn_bk.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\optimize\image\default\opt_syssvc_ico.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\optimize\image\default\opt_warning_dlg_bk.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\optimize\image\default\opt_warning_dlg_close_btn.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\optimize\image\default\opt_warning_ico.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\optimize\image\default\opt_warning_opt_btn_bk.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\Net\layout\NetView.xml" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\Net\image\netbutton.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\Net\image\netbutton_icon.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\Net\image\netbutton_left.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\Net\image\netbutton_right.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\Net\image\net_item_bk.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\Net\image\net_res.xml" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\layout\new\aboutdlg.xml" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\layout\new\boottimedlg.xml" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\layout\new\CleanScanResultDlg.xml" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\layout\new\cover.xml" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\layout\new\disable_warnings.xml" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\layout\new\install.xml" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\layout\new\language_select.xml" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\layout\new\maindlg.xml" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\layout\new\msgbox.xml" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\layout\new\revertdlg.xml" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\layout\new\softmgr_guide.xml" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\layout\new\softmgr_result.xml" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\layout\new\suspended.xml" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\layout\new\suspendinfo.xml" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\layout\new\suspend_interception.xml" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\layout\new\traydlg.xml" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\layout\new\traymenudlg.xml" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\layout\new\uninstall.xml" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\layout\new\uninstall2.xml" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\layout\new\uninstall_animation.xml" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\layout\new\uninstall_logo_fade.xml" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\layout\new\upgrade.xml" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\layout\new\VirusScannerDlg.xml" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\layout\new\virusscan_customdlg.xml" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\layout\new\virusscan_settingdlg.xml" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\layout\new\pop\blockblacklist.xml" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\layout\new\pop\blockmodify.xml" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\layout\new\pop\cleartrash.xml" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\layout\new\pop\install_plugin.xml" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\layout\new\pop\lock_guide.xml" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\layout\new\pop\modifydefaultsearch.xml" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\layout\new\pop\modifystartup.xml" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\layout\new\pop\querymodify.xml" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\layout\new\pop\shortcut.xml" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\layout\new\pop\startup_assist.xml" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\layout\new\pop\updatedb.xml" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\iSafeSet\style\iSafeSet_style.xml" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\iSafeSet\layout\default\iSafeSetView.xml" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\iSafeSet\image\default\about.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\iSafeSet\image\default\bep.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\iSafeSet\image\default\bth.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\iSafeSet\image\default\check.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\iSafeSet\image\default\dse.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\iSafeSet\image\default\fw.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\iSafeSet\image\default\general.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\iSafeSet\image\default\iSafeSet_res.xml" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\iSafeSet\image\default\jfm.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\iSafeSet\image\default\lang.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\iSafeSet\image\default\lang_btn_bg.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\iSafeSet\image\default\nation_icon_list.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\about_bg.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\about_update.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\activity.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\activity_bk.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\app_icon.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\arrowdown-green.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\arrowdown-jadegreen.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\arrowup-orange.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\arrowup-yellow.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\arrow_down.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\arrow_up.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\BG.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\bing_16_16.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\block_more.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\boost_btn_bk.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\boost_computer.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\boost_icon_blue.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\boost_icon_gray.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\boottime_bk.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\boot_time_arrow.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\boot_time_icon.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\boot_time_nodata.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\boot_time_scanning.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\boot_time_tip_blue.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\boot_time_tip_orange.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\boot_time_tip_red.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\browser_icon_list.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\browser_protect_bk.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\btnbg_35.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\btn_close.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\btn_close_about.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\btn_min.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\btn_set.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\button-small.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\button_icon.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\cfgclose.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\check_checked.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\check_indeterminate.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\check_uncheck.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\chrome_16.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\cleanscanresultdlg_bg.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\clean_icon_blue.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\clean_icon_gray.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\clean_ok.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\clean_reg_icon.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\clean_waiting.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\clear_list.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\clear_tip.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\cm_iconlist.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\combo_browser.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\combo_browser_dropdown_bk.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\combo_skin.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\combo_skin2.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\combo_skin3.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\common_button_bk.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\defaultbrowser_handler.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\defaultsearch_handler.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\disable_startup.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\donate.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\edit_skin.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\edit_skin_op.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\exam_%.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\exam_animate_bk.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\exam_arrow.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\exam_btn.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\exam_icon.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\exam_icon_list.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\exam_left.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\exam_logo.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\exam_num.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\exam_option_ok.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\exam_option_ok_green.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\exam_option_ok_point.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\exam_tree_ boost.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\exam_tree_collapse.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\exam_tree_collapse_green.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\exam_tree_collapse_red.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\exam_tree_error.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\exam_tree_expand.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\exam_tree_expand_green.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\exam_tree_expand_red.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\exam_tree_protect.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\exam_tree_rubbish.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\exam_tree_warning.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\exit.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\fast-scan.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\firefox_16.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\flow_used.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\google_16_16.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\head_checked.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\head_indeteminate.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\head_unchecked.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\homepage_handler.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\hover_bk_large.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\hover_bk_small.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\icon_complete_36.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\icon_deep_clean.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\icon_exam.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\icon_netmon.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\icon_optimize.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\icon_plugin.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\icon_protect.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\icon_quick_clean.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\icon_setting.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\icon_softmgr.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\icon_virusscan.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\icon_warning_36.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\ie_16_16.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\IE_default.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\if_block.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\if_prompt.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\if_question.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\if_warning.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\inst_bg1.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\inst_close_btn.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\inst_cover_bg.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\inst_inst_btn.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\inst_wheel.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\interception_bk.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\intercept_delete.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\intercept_history_iconlist.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\isafe_16.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\language_btn_bk.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\like.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\like_count.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\line1.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\line2.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\listctrlbtn.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\listitem_bk.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\listtabbg.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\listtitlebg.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\list_header.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\list_setting.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\lock_state_list.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\menubg.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\menu_bkg.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\menu_bkg2.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\menu_item_over.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\menu_setting_over.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\msgbox_bk.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\nation_icon_list.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\netbutton.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\netbutton_icon.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\netbutton_left.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\netbutton_right.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\network_protect_lock.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\network_protect_uncheck.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\network_protect_unlock.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\new_abovebg.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\num_blue.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\num_green.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\num_pink.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\one_click_startup.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\one_key_cookie.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\one_key_reg.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\one_key_rubbish.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\one_key_trace.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\online_shopping.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\open_folder.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\opera_16.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\p2cBtn.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\percent_green.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\pic-error.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\pic-info.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\pic-question.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\pic-warning.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\plugin.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\plugin_handler.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\plugin_normal.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\plugin_security_level.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\plugin_should_delete.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\plugin_should_disable.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\pop_arrow.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\pop_arrow_fail.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\pop_block.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\pop_block_btn.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\pop_block_mbtn.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\pop_clean.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\pop_icon.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\pop_mon_highrisk.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\pop_mon_prompt.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\pop_mon_warning.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\pop_ok.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\pop_startup_clock.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\pop_startup_fast.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\pop_startup_normal.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\pop_startup_safe.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\pop_startup_slow.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\pop_startup_unsafe.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\pop_sys_button2.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\pop_sys_close.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\pop_sys_number.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\pop_sys_star.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\progressbar_anim.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\progressbar_bk.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\progressbar_image.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\progress_end.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\progress_end_bk.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\progress_header.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\progress_header_bk.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\progress_middle.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\progress_middle_bk.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\protect_icon_blue.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\protect_icon_gray.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\pvb_line.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\pvb_skin.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\quick_clean_icon_list.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\radio_checked.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\radio_unchecked.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\resource.xml" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\revert_bk.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\revert_cancel.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\revert_ok.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\revocation.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\risk.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\scancheck.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\scan_animate.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\scan_complete.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\scan_scanning.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\scan_warning.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\score_bg.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\score_bg0.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\score_bg1.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\score_bg2.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\score_bg3.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\score_bg4.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\score_bg5.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\score_number.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\search_engine_icon_list.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\separateline.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\setting_bg.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\setting_img_list.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\shortcut.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\shortcut_handler.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\softmgr_dlg_bk.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\softmgr_result_dlg_bk.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\softremain_icon_list.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\software_mgr.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\image\new\soft_rating_bk.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\menu_setting_over.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\msgbox_bk.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\netbutton_icon.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\netbutton_left.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\network_protect_uncheck.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\new_abovebg.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\new_notify_bk_safe.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\notify_bk_dang.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\notify_bk_safe.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\notify_bk_warning.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\num_blue.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\open_folder.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\opera_16.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\p2cBtn.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\percent_green.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\pic-error.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\pic-info.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\pic-question.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\pic-warning.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\plugin.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\pop_arrow.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\pop_arrow_fail.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\pop_block.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\pop_block_btn.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\pop_block_mbtn.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\pop_clean.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\pop_icon.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\pop_ok.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\pop_startupass_comb_bg.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\pop_startupass_vscoll.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\pop_startup_clock.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\pop_startup_fast.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\pop_startup_fast_bg.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\pop_startup_nomall_button.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\pop_startup_safe.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\pop_startup_safe_weather.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\pop_startup_slow.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\pop_startup_slow_bg.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\pop_startup_unsafe.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\pop_startup_unsafe_weather.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\pop_startup_warning_button.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\pop_sys_blue_number.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\pop_sys_button2.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\pop_sys_close.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\pop_sys_number.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\pop_sys_star.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\pop_sys_yellow_number.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\pop_title.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\pop_unkownweb.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\pop_unlock.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\pop_warning.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\progressbar_anim.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\progressbar_bk.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\progressbar_image.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\protect_icon_blue.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\protect_icon_gray.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\pvb_skin.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\query_bk_dang.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\query_bk_safe.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\query_bk_warning.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\query_btn_dang.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\query_btn_safe.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\query_btn_warning.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\radio_checked.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\radio_unchecked.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\recovery.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\resource.xml" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\risk.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\rubbish.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\scancheck.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\scan_animate.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\score_bg0.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\score_bg1.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\score_bg2.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\score_bg3.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\score_bg4.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\score_bg5.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\score_number.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\separateline.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\setting.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\setting_bg.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\setting_img_list.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\slidebutton_bg.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\small_download.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\small_progress.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\small_progress_bk.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\softmgr_dlg_bk.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\special_line.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\srfe.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\startmenu_deepclean.ico" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\startup_acclate.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\startup_on.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\submenu_arrow.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\sub_toggle_btn.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\suspended_bg.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\suspenditembk.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\suspend_close.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\switch_button_off.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\switch_button_on.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\sys_boost.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\sys_imglist.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\tab_bg.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\tab_separator.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\tab_vert_line.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\testspeed_arrow.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\testspeed_bk.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\testspeed_light.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\testspeed_light1.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\tobutton1.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\toggletbar_bg.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\traymenu_bk.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\traymenu_btn_bk.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\traymenu_dlg_bk2.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\traymenu_iconlist.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\traymenu_pop_bk.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\traymenu_pop_cancel_btn.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\traymenu_pop_close_btn.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\traymenu_pop_confirm_btn.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\traymenu_pop_ico_query.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\traymenu_pop_ico_sleep.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\tray_radio_checked.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\tray_radio_unchecked.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\unlocked_icon_16.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\unlocked_icon_32.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\update.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\updatedlg_ok_btn_bk.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\update_chk_err.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\update_chk_ok.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\update_client_icon.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\update_icon.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\update_server_icon.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\v9_16_16.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\VirScanner_Report_BG.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\VirScanReportDlg_close_btn.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\VirScan_btn_bg.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\VirScan_PassBtn_bg.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\virscan_tips_ico.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\virscan_warning_ico.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\vscroll.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\weather_icon.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\weather_small_icon.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\yac_mx.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\yac_search.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\yahoo_16_16.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\exam\bk_bag.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\exam\bk_green.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\exam\bk_orange.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\exam\bk_red.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\exam\btn_repair.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\exam\dial_bag.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\exam\dial_green.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\exam\dial_red.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\exam\dial_yellow.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\exam\exam_back_btn_bk.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\exam\exam_back_btn_tip_bk.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\exam\exam_cancel.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\exam\exam_do.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\exam\exam_number_0.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\exam\exam_result_number_hover.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\exam\exam_result_number_normal.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\exam\exam_result_number_pressed.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\exam\exam_result_ok_icon.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\exam\exam_rubbish_icon.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\exam\exam_rubbish_icon_warning.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\exam\exam_safe_protect_icon.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\exam\exam_safe_protect_icon_warning.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\exam\exam_scanning_mid.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\exam\exam_scanning_pic.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\exam\exam_scanning_small.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\exam\exam_sys_opt_icon.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\exam\exam_sys_opt_icon_warning.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\exam\exam_tip_wnd_arrow_bk.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\exam\exam_tip_wnd_bk.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\exam\exam_tip_wnd_bk2.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\exam\exam_type_btn_bottom_line.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\exam\exam_unit_gb.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\exam\exam_unit_kb.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\exam\exam_unit_mb.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\exam\exam_vscroll.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\exam\green_right.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\exam\ignore_icon.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\exam\number_big_green.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\exam\number_big_red.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\exam\number_big_red2.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\exam\opt_arrow_down.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\exam\opt_arrow_up.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\exam\right_green.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\exam\score_none.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\exam\warning_blue.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\exam\warning_gray.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\exam\warning_red.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\exam\warning_yellow.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\app\image\new\exam\yellow_wrong.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\adwclean\layout\default\AdwCleanView.xml" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\adwclean\image\default\adcl_full_scan_virus_btn_bk.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\adwclean\image\default\adcl_scan_check.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\adwclean\image\default\adcl_share_btn_bk.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\adwclean\image\default\adw_clean_iconlist.png" => File could not move.
"C:\Program Files (x86)\iSafe\skin2\adwclean\image\default\resource.xml" => File could not move.
"C:\Program Files (x86)\iSafe\log\bugreport.zip" => File could not move.
"C:\Program Files (x86)\iSafe\log\iSafe.LOG" => File could not move.
"C:\Program Files (x86)\iSafe\log\iSafeKrnlCall.log" => File could not move.
"C:\Program Files (x86)\iSafe\log\iSafeSvc.LOG" => File could not move.
"C:\Program Files (x86)\iSafe\log\iSafeSvc2.LOG" => File could not move.
"C:\Program Files (x86)\iSafe\log\iSafeTHlp64.LOG" => File could not move.
"C:\Program Files (x86)\iSafe\log\iSafeUpdate.LOG" => File could not move.
"C:\Program Files (x86)\iSafe\log\iStart.LOG" => File could not move.
"C:\Program Files (x86)\iSafe\lang\adwclean_lang.xml" => File could not move.
"C:\Program Files (x86)\iSafe\lang\appstore_lang.xml" => File could not move.
"C:\Program Files (x86)\iSafe\lang\asbsn_lang.xml" => File could not move.
"C:\Program Files (x86)\iSafe\lang\asfeature_lang.xml" => File could not move.
"C:\Program Files (x86)\iSafe\lang\asgame_lang.xml" => File could not move.
"C:\Program Files (x86)\iSafe\lang\ashome_lang.xml" => File could not move.
"C:\Program Files (x86)\iSafe\lang\asmyapps_lang.xml" => File could not move.
"C:\Program Files (x86)\iSafe\lang\astaskcenter_lang.xml" => File could not move.
"C:\Program Files (x86)\iSafe\lang\bugreport.xml" => File could not move.
"C:\Program Files (x86)\iSafe\lang\clean_lang.xml" => File could not move.
"C:\Program Files (x86)\iSafe\lang\common_lang.xml" => File could not move.
"C:\Program Files (x86)\iSafe\lang\dl_install_lang.xml" => File could not move.
"C:\Program Files (x86)\iSafe\lang\fblang.xml" => File could not move.
"C:\Program Files (x86)\iSafe\lang\gameplayer_lang.xml" => File could not move.
"C:\Program Files (x86)\iSafe\lang\HistoryRecord_lang.xml" => File could not move.
"C:\Program Files (x86)\iSafe\lang\iSafeRKScanShell.lang" => File could not move.
"C:\Program Files (x86)\iSafe\lang\iSafeSet_lang.xml" => File could not move.
"C:\Program Files (x86)\iSafe\lang\lang.xml" => File could not move.
"C:\Program Files (x86)\iSafe\lang\net_lang.xml" => File could not move.
"C:\Program Files (x86)\iSafe\lang\optimize_lang.xml" => File could not move.
"C:\Program Files (x86)\iSafe\lang\PCClinicUI_lang.xml" => File could not move.
"C:\Program Files (x86)\iSafe\lang\plugin_lang.xml" => File could not move.
"C:\Program Files (x86)\iSafe\lang\pu_lang.xml" => File could not move.
"C:\Program Files (x86)\iSafe\lang\safeprotect_lang.xml" => File could not move.
"C:\Program Files (x86)\iSafe\lang\shell.xml" => File could not move.
"C:\Program Files (x86)\iSafe\lang\softmgr_lang.xml" => File could not move.
"C:\Program Files (x86)\iSafe\lang\startup_lang.xml" => File could not move.
"C:\Program Files (x86)\iSafe\lang\taskhelper_lang.xml" => File could not move.
"C:\Program Files (x86)\iSafe\lang\tray_lang.xml" => File could not move.
"C:\Program Files (x86)\iSafe\lang\uninstall_lang.xml" => File could not move.
"C:\Program Files (x86)\iSafe\lang\virusScanner_lang.xml" => File could not move.
"C:\Program Files (x86)\iSafe\lang\virusscan_lang.xml" => File could not move.
"C:\Program Files (x86)\iSafe\font\segoeui.ttf" => File could not move.
"C:\Program Files (x86)\iSafe\font\segoeuib.ttf" => File could not move.
"C:\Program Files (x86)\iSafe\data\bas.dat" => File could not move.
"C:\Program Files (x86)\iSafe\data\bts.dat" => File could not move.
"C:\Program Files (x86)\iSafe\data\bwd.dat" => File could not move.
"C:\Program Files (x86)\iSafe\data\cls.dat" => File could not move.
"C:\Program Files (x86)\iSafe\data\clx.dat" => File could not move.
"C:\Program Files (x86)\iSafe\data\eas.dat" => File could not move.
"C:\Program Files (x86)\iSafe\data\ess.dat" => File could not move.
"C:\Program Files (x86)\iSafe\data\gcs.dat" => File could not move.
"C:\Program Files (x86)\iSafe\data\gcx.dat" => File could not move.
"C:\Program Files (x86)\iSafe\data\nlu.dat" => File could not move.
"C:\Program Files (x86)\iSafe\data\rms.dat" => File could not move.
"C:\Program Files (x86)\iSafe\data\sta.dat" => File could not move.
"C:\Program Files (x86)\iSafe\data\stu.dat" => File could not move.
"C:\Program Files (x86)\iSafe\data\uis.dat" => File could not move.
"C:\Program Files (x86)\iSafe\data\was.dat" => File could not move.
"C:\Program Files (x86)\iSafe\cfg\ccc.dat" => File could not move.
"C:\Program Files (x86)\iSafe\cfg\config.dat" => File could not move.
"C:\Program Files (x86)\iSafe\cfg\customscan.dat" => File could not move.
"C:\Program Files (x86)\iSafe\cfg\fullscan.dat" => File could not move.
"C:\Program Files (x86)\iSafe\cfg\isafe.dat" => File could not move.
"C:\Program Files (x86)\iSafe\cfg\iSafeUpdate.ini" => File could not move.
"C:\Program Files (x86)\iSafe\cfg\ors.dat" => File could not move.
"C:\Program Files (x86)\iSafe\cfg\quickscan.dat" => File could not move.
"C:\Program Files (x86)\iSafe" => Directory could not move.

==== End of Fixlog ====

Alt 13.08.2014, 22:55   #9
Windows 7: Proxy-Server reagiert nicht - Standard

Windows 7: Proxy-Server reagiert nicht

FRST Logfile:
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 13-08-2014
Ran by HP (administrator) on HP-PC on 13-08-2014 16:24:40
Running from C:\Users\HP\Desktop
Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: Deutsch (Deutschland)
Internet Explorer Version 11
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Microsoft Corporation) C:\Program Files\Microsoft Security Client\Antimalware\MsMpEng.exe
(Elex do Brasil Participações Ltda) C:\Program Files (x86)\iSafe\iSafeSvc.exe
(Elex do Brasil Participações Ltda) C:\Program Files (x86)\iSafe\iSafeSvc2.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RTKAUDIOSERVICE64.EXE
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Andrea Electronics Corporation) C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(IVT Corporation) C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BlueSoleilCS.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Malwarebytes Corporation) C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamscheduler.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(IVT Corporation) C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BsHelpCS.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\Antimalware\NisSrv.exe
(Elex do Brasil Participações Ltda) C:\Program Files (x86)\iSafe\iSafeTray.exe
(CyberLink) C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe
() C:\Program Files (x86)\iSafe\ipcdl.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Spotify Ltd) C:\Users\HP\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe
(Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe
(McAfee, Inc.) C:\Program Files\McAfee Security Scan\3.8.150\SSScheduler.exe
(Dropbox, Inc.) C:\Users\HP\AppData\Roaming\Dropbox\bin\Dropbox.exe
(IVT Corporation) C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BtTray.exe
(Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Realsil Microelectronics Inc.) C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Skype Technologies) C:\Program Files (x86)\Skype\Updater\Updater.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe

==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [6960864 2012-12-25] (Realtek Semiconductor)
HKLM\...\Run: [MSC] => c:\Program Files\Microsoft Security Client\msseces.exe [1436224 2010-11-30] (Microsoft Corporation)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2837288 2011-10-13] (Synaptics Incorporated)
HKLM-x32\...\Run: [IAStorIcon] => C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [285240 2012-12-11] (Intel Corporation)
HKLM-x32\...\Run: [BtTray] => C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BtTray.exe [371976 2012-09-19] (IVT Corporation)
HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [43848 2014-04-23] (Apple Inc.)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959904 2013-11-21] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [iTunesHelper] => C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2014-05-26] (Apple Inc.)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKU\S-1-5-21-3555238676-2185496674-898315862-1000\...\Run: [Spotify] => C:\Users\HP\AppData\Roaming\Spotify\Spotify.exe [5955072 2013-11-17] (Spotify Ltd)
HKU\S-1-5-21-3555238676-2185496674-898315862-1000\...\Run: [Spotify Web Helper] => C:\Users\HP\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe [1168896 2013-11-17] (Spotify Ltd)
HKU\S-1-5-21-3555238676-2185496674-898315862-1000\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [21446272 2014-05-08] (Skype Technologies S.A.)
HKU\S-1-5-21-3555238676-2185496674-898315862-1000\...\MountPoints2: {40a8a29e-6d66-11e3-b10b-f4b7e2ace1d4} - E:\SISetup.exe
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk
ShortcutTarget: McAfee Security Scan Plus.lnk -> C:\Program Files\McAfee Security Scan\3.8.150\SSScheduler.exe (McAfee, Inc.)
Startup: C:\Users\HP\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk
ShortcutTarget: Dropbox.lnk -> C:\Users\HP\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
ShellIconOverlayIdentifiers: DropboxExt1 -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\HP\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: DropboxExt2 -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\HP\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: DropboxExt3 -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\HP\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers: DropboxExt4 -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\HP\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: DropboxExt1 -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\HP\AppData\Roaming\Dropbox\bin\DropboxExt.24.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: DropboxExt2 -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\HP\AppData\Roaming\Dropbox\bin\DropboxExt.24.dll (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: DropboxExt3 -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\HP\AppData\Roaming\Dropbox\bin\DropboxExt.24.dll (Dropbox, Inc.)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://de.msn.com/?ocid=iehp
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache_TIMESTAMP = 0xFF0185A20D73CE01
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache AcceptLangs = de
HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = hxxp://www.google.com/ie
SearchScopes: HKCU - {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = hxxp://www.google.com/search?q={sear
SearchScopes: HKCU - {95B7759C-8C7F-4BF1-B163-73684A933233} URL = hxxp://search.fbdownloader.com/search.php?channel=sfde203fbdgy21&q={searchTerms}
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: MSS+ Identifier -> {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} -> C:\Program Files\McAfee Security Scan\3.8.150\McAfeeMSS_IE.dll (McAfee, Inc.)
BHO-x32: Microsoft-Konto-Anmelde-Hilfsprogramm -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
DPF: HKLM-x32 {73ECB3AA-4717-450C-A2AB-D00DAD9EE203} hxxp://h20614.www2.hp.com/ediags/gmd/Install/Cab/hpdetect1262.cab
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer]

FF ProfilePath: C:\Users\HP\AppData\Roaming\Mozilla\Firefox\Profiles\8h2jagw8.default
FF NewTab: chrome://quick_start/content/index.html
FF Homepage: hxxp://www.bild.de/
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_14_0_0_145.dll ()
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~3\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_14_0_0_145.dll ()
FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF Plugin-x32: @google.com/npPicasa3,version=3.0.0 -> C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll (Google, Inc.)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=3.0.72 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~2\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3508.0205 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml
FF Extension: Adblock Plus - C:\Users\HP\AppData\Roaming\Mozilla\Firefox\Profiles\8h2jagw8.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2013-12-11]
FF HKCU\...\Firefox\Extensions: [{e4f94d1e-2f53-401e-8885-681602c0ddd8}] - C:\ProgramData\McAfee Security Scan\Extensions\{e4f94d1e-2f53-401e-8885-681602c0ddd8}.xpi
FF Extension: No Name - C:\ProgramData\McAfee Security Scan\Extensions\{e4f94d1e-2f53-401e-8885-681602c0ddd8}.xpi [2014-04-04]

CHR HomePage: hxxp://www.google.com/
CHR RestoreOnStartup: "hxxp://search.fbdownloader.com/?channel=sfde203fbdgy21"
CHR NewTab: "chrome-extension://pmgkeimkiojpjcoiiipekfjaopchhjga/snt.html",
CHR DefaultSearchKeyword: Search
CHR DefaultSearchProvider: Search
CHR DefaultSearchURL: hxxp://search.fbdownloader.com/search.php?channel=sfde203fbdgy21&q={searchTerms}
CHR Extension: (Google Docs) - C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2013-12-10]
CHR Extension: (Google Wallet) - C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-12-10]
CHR Extension: (No Name) - C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\ogfjmhfnldnajmfaofeiaepghjenbgjo [2014-06-12]

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 BlueSoleilCS; C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BlueSoleilCS.exe [1612552 2012-09-26] (IVT Corporation)
R3 BsHelpCS; C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BsHelpCS.exe [146184 2012-09-19] (IVT Corporation)
R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [732160 2012-12-10] (Intel(R) Corporation) [File not signed]
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [803872 2012-12-10] (Intel(R) Corporation)
R2 iSafeService; C:\Program Files (x86)\iSafe\iSafeSvc.exe [118048 2014-07-16] (Elex do Brasil Participações Ltda)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-01-23] (Intel Corporation)
R2 MBAMScheduler; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamscheduler.exe [1809720 2014-05-12] (Malwarebytes Corporation)
S2 MBAMService; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe [860472 2014-05-12] (Malwarebytes Corporation)
S3 McComponentHostService; C:\Program Files\McAfee Security Scan\3.8.150\McCHSvc.exe [289256 2014-04-09] (McAfee, Inc.)
R2 MsMpSvc; c:\Program Files\Microsoft Security Client\Antimalware\MsMpEng.exe [12784 2010-11-11] (Microsoft Corporation)
R3 NisSrv; c:\Program Files\Microsoft Security Client\Antimalware\NisSrv.exe [282616 2010-11-11] (Microsoft Corporation)
R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [201872 2012-12-05] (Realtek Semiconductor)

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

U5 BlueletAudio; C:\Windows\System32\Drivers\BlueletAudio.sys [34912 2012-06-15] (Ralink Corporation.)
R3 BtAudioBusSrv; C:\Windows\System32\Drivers\BtAudioBus.sys [23136 2012-06-15] (IVT Corporation)
R3 BthL2caScoIfSrv; C:\Windows\System32\Drivers\BtL2caScoIf.sys [56904 2012-07-19] (Ralink Corporation)
R3 btUrbFilterDrv; C:\Windows\System32\Drivers\IvtUrbBtFlt.sys [48608 2012-10-02] (Ralink Corporation)
R0 iaStorF; C:\Windows\System32\DRIVERS\iaStorF.sys [28216 2012-12-11] (Intel Corporation)
R1 iSafeKrnl; C:\Program Files (x86)\iSafe\iSafeKrnl.sys [247488 2014-07-16] (Elex do Brasil Participações Ltda)
R1 iSafeKrnlKit; C:\Program Files (x86)\iSafe\iSafeKrnlKit.sys [78016 2014-07-16] (Elex do Brasil Participações Ltda)
R1 iSafeKrnlR3; C:\Program Files (x86)\iSafe\iSafeKrnlR3.sys [65216 2014-07-16] (Elex do Brasil Participações Ltda)
R1 iSafeNetFilter; C:\Program Files (x86)\iSafe\iSafeNetFilter.sys [48640 2014-07-09] (Elex do Brasil Participações Ltda)
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2014-05-12] (Malwarebytes Corporation)
S3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [63704 2014-05-12] (Malwarebytes Corporation)
S3 MOSUMAC; C:\Windows\System32\DRIVERS\M7830A64.SYS [48128 2008-07-25] (--)
R1 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [188928 2010-10-24] (Microsoft Corporation)
R3 NisDrv; C:\Windows\System32\DRIVERS\NisDrvWFP.sys [72064 2010-10-24] (Microsoft Corporation)
R3 RSP2STOR; C:\Windows\System32\DRIVERS\RtsP2Stor.sys [273040 2012-09-06] (Realtek Semiconductor Corp.)
R3 rtbth; C:\Windows\System32\DRIVERS\rtbth.sys [692832 2012-10-02] (Ralink Technology, Corp.)
U5 BlueletAudio; C:\Windows\SysWOW64\Drivers\BlueletAudio.sys [34912 2012-06-15] (Ralink Corporation.)
S3 RTL8192su; system32\DRIVERS\RTL8192su.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)

==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-08-13 16:28 - 2014-08-13 16:28 - 00165376 _____ () C:\Users\HP\Desktop\SystemLook_x64.exe
2014-08-13 16:24 - 2014-08-13 16:27 - 00017895 _____ () C:\Users\HP\Desktop\FRST.txt
2014-08-13 07:20 - 2014-08-13 07:20 - 00000000 ____D () C:\Users\HP\AppData\Roaming\isafe
2014-08-13 07:20 - 2014-08-13 07:20 - 00000000 ____D () C:\Users\HP\AppData\Roaming\eCyber
2014-08-13 07:07 - 2014-08-13 07:07 - 00000000 ____D () C:\Windows\ERUNT
2014-08-13 06:31 - 2014-08-13 06:33 - 00000000 ____D () C:\AdwCleaner
2014-08-13 06:31 - 2010-08-30 08:34 - 00536576 _____ (SQLite Development Team) C:\Windows\SysWOW64\sqlite3.dll
2014-08-13 05:34 - 2014-08-13 16:25 - 00000000 ____D () C:\FRST
2014-08-13 05:33 - 2014-08-13 05:33 - 02100224 _____ (Farbar) C:\Users\HP\Desktop\FRST64.exe
2014-08-13 05:31 - 2014-08-13 05:31 - 00000000 _____ () C:\Users\HP\defogger_reenable
2014-08-13 05:30 - 2014-08-13 05:30 - 00050477 _____ () C:\Users\HP\Downloads\Defogger(1).exe
2014-08-13 05:29 - 2014-08-13 05:29 - 00000466 _____ () C:\Users\HP\Downloads\defogger_disable.log
2014-08-13 05:29 - 2014-08-13 05:29 - 00000238 _____ () C:\Users\HP\Downloads\defogger_enable.log
2014-08-13 05:27 - 2014-08-13 16:23 - 00000000 ____D () C:\Users\HP\Desktop\TrojanerBoard
2014-08-13 05:26 - 2014-08-13 05:26 - 00050477 _____ () C:\Users\HP\Downloads\Defogger.exe
2014-08-09 02:44 - 2014-08-09 02:44 - 00000000 ____D () C:\Users\HP\Documents\UNI ERLANGEN
2014-08-06 14:49 - 2014-08-06 14:49 - 00000000 __SHD () C:\Users\HP\AppData\Local\EmieUserList
2014-08-06 14:49 - 2014-08-06 14:49 - 00000000 __SHD () C:\Users\HP\AppData\Local\EmieSiteList
2014-07-31 17:58 - 2014-05-14 11:23 - 02477536 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2014-07-31 17:58 - 2014-05-14 11:23 - 00058336 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2014-07-31 17:58 - 2014-05-14 11:23 - 00044512 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2014-07-31 17:58 - 2014-05-14 11:21 - 02620928 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2014-07-31 17:57 - 2014-05-14 11:23 - 00700384 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2014-07-31 17:57 - 2014-05-14 11:23 - 00581600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll
2014-07-31 17:57 - 2014-05-14 11:23 - 00038880 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2014-07-31 17:57 - 2014-05-14 11:23 - 00036320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll
2014-07-31 17:57 - 2014-05-14 11:20 - 00097792 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
2014-07-31 17:57 - 2014-05-14 11:17 - 00092672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll
2014-07-31 17:57 - 2014-05-14 09:23 - 00198600 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
2014-07-31 17:57 - 2014-05-14 09:23 - 00179656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll
2014-07-31 17:57 - 2014-05-14 09:20 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
2014-07-31 17:57 - 2014-05-14 09:17 - 00033792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe
2014-07-31 11:09 - 2014-07-31 11:10 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-08-13 16:28 - 2014-08-13 16:28 - 00165376 _____ () C:\Users\HP\Desktop\SystemLook_x64.exe
2014-08-13 16:27 - 2014-08-13 16:24 - 00017895 _____ () C:\Users\HP\Desktop\FRST.txt
2014-08-13 16:27 - 2013-06-30 14:04 - 00000000 ____D () C:\Users\HP\AppData\Roaming\Skype
2014-08-13 16:27 - 2013-02-22 07:56 - 01073693 _____ () C:\Windows\WindowsUpdate.log
2014-08-13 16:25 - 2014-08-13 05:34 - 00000000 ____D () C:\FRST
2014-08-13 16:25 - 2014-04-06 11:40 - 00000000 ___RD () C:\Users\HP\Dropbox
2014-08-13 16:25 - 2013-12-10 08:03 - 00000000 ____D () C:\Program Files (x86)\iSafe
2014-08-13 16:24 - 2014-04-06 11:30 - 00000000 ____D () C:\Users\HP\AppData\Roaming\Dropbox
2014-08-13 16:24 - 2013-07-27 10:20 - 00000000 ____D () C:\Users\HP\AppData\Roaming\Spotify
2014-08-13 16:23 - 2014-08-13 05:27 - 00000000 ____D () C:\Users\HP\Desktop\TrojanerBoard
2014-08-13 16:23 - 2013-06-27 04:42 - 00003620 _____ () C:\Windows\SysWOW64\LOCALSERVICE.INI
2014-08-13 16:23 - 2012-09-26 02:53 - 00000950 _____ () C:\Windows\SysWOW64\bscs.ini
2014-08-13 16:21 - 2013-12-10 08:05 - 00001098 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-08-13 16:20 - 2014-06-18 08:00 - 02218092 _____ () C:\Windows\PFRO.log
2014-08-13 16:20 - 2014-06-18 08:00 - 00004995 _____ () C:\Windows\setupact.log
2014-08-13 16:20 - 2013-06-27 04:42 - 00000088 _____ () C:\Windows\SysWOW64\LOCALDEVICE.INI
2014-08-13 16:20 - 2009-07-14 00:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-08-13 16:18 - 2009-07-13 23:45 - 00021264 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-08-13 16:18 - 2009-07-13 23:45 - 00021264 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-08-13 15:58 - 2013-12-10 08:05 - 00001102 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-08-13 15:58 - 2013-06-30 14:10 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-08-13 10:21 - 2013-11-11 20:51 - 00000093 _____ () C:\Windows\SysWOW64\REMOTEDEVICE.INI
2014-08-13 07:20 - 2014-08-13 07:20 - 00000000 ____D () C:\Users\HP\AppData\Roaming\isafe
2014-08-13 07:20 - 2014-08-13 07:20 - 00000000 ____D () C:\Users\HP\AppData\Roaming\eCyber
2014-08-13 07:07 - 2014-08-13 07:07 - 00000000 ____D () C:\Windows\ERUNT
2014-08-13 06:39 - 2014-06-22 08:11 - 00122584 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2014-08-13 06:33 - 2014-08-13 06:31 - 00000000 ____D () C:\AdwCleaner
2014-08-13 06:33 - 2013-06-30 14:34 - 00000989 _____ () C:\Users\HP\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-08-13 06:33 - 2013-06-30 11:50 - 00001061 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2014-08-13 06:33 - 2013-06-30 11:50 - 00001049 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk
2014-08-13 06:32 - 2013-06-30 14:10 - 00000000 ____D () C:\Users\HP\AppData\Roaming\Common
2014-08-13 05:33 - 2014-08-13 05:33 - 02100224 _____ (Farbar) C:\Users\HP\Desktop\FRST64.exe
2014-08-13 05:31 - 2014-08-13 05:31 - 00000000 _____ () C:\Users\HP\defogger_reenable
2014-08-13 05:31 - 2013-02-22 07:59 - 00000000 ____D () C:\Users\HP
2014-08-13 05:30 - 2014-08-13 05:30 - 00050477 _____ () C:\Users\HP\Downloads\Defogger(1).exe
2014-08-13 05:29 - 2014-08-13 05:29 - 00000466 _____ () C:\Users\HP\Downloads\defogger_disable.log
2014-08-13 05:29 - 2014-08-13 05:29 - 00000238 _____ () C:\Users\HP\Downloads\defogger_enable.log
2014-08-13 05:26 - 2014-08-13 05:26 - 00050477 _____ () C:\Users\HP\Downloads\Defogger.exe
2014-08-09 15:13 - 2013-07-06 10:52 - 00000000 ____D () C:\Users\HP\Documents\Youcam
2014-08-09 09:15 - 2013-06-30 16:33 - 00026112 _____ () C:\Users\HP\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2014-08-09 02:44 - 2014-08-09 02:44 - 00000000 ____D () C:\Users\HP\Documents\UNI ERLANGEN
2014-08-07 11:40 - 2010-11-21 01:50 - 00702820 _____ () C:\Windows\system32\perfh007.dat
2014-08-07 11:40 - 2010-11-21 01:50 - 00151326 _____ () C:\Windows\system32\perfc007.dat
2014-08-07 11:40 - 2009-07-14 00:13 - 01630698 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-08-06 14:49 - 2014-08-06 14:49 - 00000000 __SHD () C:\Users\HP\AppData\Local\EmieUserList
2014-08-06 14:49 - 2014-08-06 14:49 - 00000000 __SHD () C:\Users\HP\AppData\Local\EmieSiteList
2014-08-06 14:38 - 2014-05-04 09:25 - 00000000 ____D () C:\Users\HP\Documents\Studium
2014-07-31 17:38 - 2013-06-30 11:50 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2014-07-31 11:27 - 2009-07-13 22:20 - 00000000 ____D () C:\Windows\Branding
2014-07-31 11:10 - 2014-07-31 11:09 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-07-28 17:52 - 2013-07-12 07:26 - 00000000 ____D () C:\Users\HP\Documents\MEXICO
2014-07-25 16:31 - 2014-04-06 11:40 - 00000970 _____ () C:\Users\HP\Desktop\Dropbox.lnk
2014-07-25 16:31 - 2014-04-06 11:38 - 00000000 ____D () C:\Users\HP\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox
2014-07-25 08:47 - 2013-07-06 11:51 - 00000000 ____D () C:\Program Files\Microsoft Silverlight
2014-07-25 08:47 - 2013-07-06 11:51 - 00000000 ____D () C:\Program Files (x86)\Microsoft Silverlight
2014-07-25 07:26 - 2013-07-06 11:52 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
2014-07-22 00:31 - 2009-07-13 22:20 - 00000000 ____D () C:\Windows\system32\NDF

Some content of TEMP:

==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed

LastRegBack: 2014-08-12 06:15

==================== End Of Log ============================
--- --- ---

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 13-08-2014
Ran by HP at 2014-08-13 16:29:00
Running from C:\Users\HP\Desktop
Boot Mode: Normal

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Microsoft Security Essentials (Enabled - Up to date) {108DAC43-C256-20B7-BB05-914135DA5160}
AS: Microsoft Security Essentials (Enabled - Up to date) {ABEC4DA7-E46C-2F39-81B5-AA334E5D1BDD}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Adobe Flash Player 14 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: - Adobe Systems Incorporated)
Adobe Flash Player 14 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: - Adobe Systems Incorporated)
Adobe Reader XI (11.0.07) - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AB0000000001}) (Version: 11.0.07 - Adobe Systems Incorporated)
Apple Application Support (HKLM-x32\...\{D9DAD0FF-495A-472B-9F10-BAE430A26682}) (Version: 3.0.3 - Apple Inc.)
Apple Mobile Device Support (HKLM\...\{787136D2-F0F8-4625-AA3F-72D7795AC842}) (Version: - Apple Inc.)
Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: - Apple Inc.)
Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: - Apple Inc.)
CCleaner (HKLM\...\CCleaner) (Version: 4.05 - Piriform)
CyberLink YouCam (HKLM-x32\...\InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}) (Version: - CyberLink Corp.)
CyberLink YouCam (x32 Version: - CyberLink Corp.) Hidden
D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden
Definition Update for Microsoft Office 2010 (KB982726) 32-Bit Edition (HKLM-x32\...\{90140000-0012-0000-0000-0000000FF1CE}_Office14.STANDARD_{5C78021E-3C8E-4EDF-97EA-E9B8D808FD6D}) (Version:  - Microsoft)
Dropbox (HKCU\...\Dropbox) (Version: 2.10.3 - Dropbox, Inc.)
Fotogalerie (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 35.0.1916.153 - Google Inc.)
Google Update Helper (x32 Version: - Google Inc.) Hidden
Google+ Auto Backup (HKLM-x32\...\{D4C4A751-F7F3-4DCA-B825-9AC391BFFC3F}) (Version: - Google)
HP Product Detection (HKLM-x32\...\{ACAA0152-96A4-4D93-92F5-1B4728C3D984}) (Version: 11.15.0008 - HP)
Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: - Intel Corporation)
Intel(R) OpenCL CPU Runtime (HKLM-x32\...\{FCB3772C-B7D0-4933-B1A9-3707EBACC573}) (Version:  - Intel Corporation)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: - Intel Corporation)
Intel(R) Rapid Storage Technology (HKLM-x32\...\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: - Intel Corporation)
Intel® Trusted Connect Service Client (Version: 1.27.757.1 - Intel Corporation) Hidden
iTunes (HKLM\...\{5A68A656-979F-4168-8795-E2E368AA4DC2}) (Version: - Apple Inc.)
Junk Mail filter update (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Malwarebytes Anti-Malware Version (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: - Malwarebytes Corporation)
McAfee Security Scan Plus (HKLM\...\McAfee Security Scan) (Version: - McAfee, Inc.)
Microsoft .NET Framework 4.5.1 (DEU) (Version: 4.5.50938 - Microsoft Corporation) Hidden
Microsoft .NET Framework 4.5.1 (Deutsch) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1031) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 (Version: 4.5.50938 - Microsoft Corporation) Hidden
Microsoft Antimalware (Version: 3.0.8107.0 - Microsoft Corporation) Hidden
Microsoft Antimalware Service DE-DE Language Pack (Version: 3.0.8107.0 - Microsoft Corporation) Hidden
Microsoft Application Error Reporting (Version: 12.0.6015.5000 - Microsoft Corporation) Hidden
Microsoft Office Excel MUI (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Office 64-bit Components 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office OneNote MUI (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Outlook Connector (HKLM-x32\...\{95140000-007A-0407-0000-0000000FF1CE}) (Version: 14.0.5118.5000 - Microsoft Corporation)
Microsoft Office Outlook MUI (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office PowerPoint MUI (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (English) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (French) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (Italian) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Proofing (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Publisher MUI (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Shared 64-bit MUI (German) 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Shared MUI (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Standard 2010 (HKLM-x32\...\Office14.STANDARD) (Version: 14.0.7015.1000 - Microsoft Corporation)
Microsoft Office Standard 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Word MUI (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Outlook Social Connector Provider for Windows Live Messenger 32-bit (HKLM-x32\...\{95140000-007D-0409-0000-0000000FF1CE}) (Version: 14.0.5120.5000 - Microsoft Corporation)
Microsoft Security Client (Version: 2.0.0657.0 - Microsoft Corporation) Hidden
Microsoft Security Client DE-DE Language Pack (Version: 2.0.0657.0 - Microsoft Corporation) Hidden
Microsoft Security Essentials (HKLM\...\Microsoft Security Client) (Version: 2.0.657.0 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation)
Microsoft SkyDrive (HKCU\...\SkyDriveSetup.exe) (Version: 16.4.6013.0910 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022 (HKLM\...\{350AA351-21FA-3270-8B7A-835434E766AD}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Movie Maker (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Mozilla Firefox 31.0 (x86 de) (HKLM-x32\...\Mozilla Firefox 31.0 (x86 de)) (Version: 31.0 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 29.0.1 - Mozilla)
MSVCRT (x32 Version: 15.4.2862.0708 - Microsoft) Hidden
MSVCRT_amd64 (x32 Version: 15.4.2862.0708 - Microsoft) Hidden
MSVCRT110 (x32 Version: 16.4.1108.0727 - Microsoft) Hidden
MSVCRT110_amd64 (Version: 16.4.1109.0912 - Microsoft) Hidden
Photo Common (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Photo Gallery (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Picasa 3 (HKLM-x32\...\Picasa 3) (Version: 3.9 - Google, Inc.)
QuickEngine (HKLM-x32\...\QuickEngine 1.0.1) (Version: 1.0.1 - Tlapia) <==== ATTENTION
QuickEngine (x32 Version: 1.0.1 - Tlapia) Hidden <==== ATTENTION
Ralink Bluetooth Stack64 (HKLM\...\{95DF815D-BE2D-9118-F549-39794C5869CF}) (Version: 9.0.725.0 - Ralink Corporation)
Ralink RT3290 802.11bgn 1x1 Wi-Fi Adapter (HKLM-x32\...\{8FC4F1DD-F7FD-4766-804D-3C8FF1D309AF}) (Version: - Ralink)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.67.1226.2012 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: - Realtek Semiconductor Corp.)
Realtek PCIE Card Reader (HKLM-x32\...\{C1594429-8296-4652-BF54-9DBE4932A44C}) (Version: 6.2.9200.29038 - Realtek Semiconductor Corp.)
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-0012-0000-0000-0000000FF1CE}_Office14.STANDARD_{DE28B448-32E8-4E8F-84F0-A52B21A49B5B}) (Version:  - Microsoft)
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (x32 Version:  - Microsoft) Hidden
Skype™ 6.16 (HKLM-x32\...\{7A3C7E05-EE37-47D6-99E1-2EB05A3DA3F7}) (Version: 6.16.105 - Skype Technologies S.A.)
Spotify (HKCU\...\Spotify) (Version: - Spotify AB)
Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: - Synaptics Incorporated)
sysTPL (HKLM-x32\...\{59E3B807-2D5A-4AAE-A6C7-62F9A1615E84}) (Version: 1.0.0 - Tlapia) <==== ATTENTION
Update for Microsoft Excel 2010 (KB2837600) 32-Bit Edition (HKLM-x32\...\{90140000-0012-0000-0000-0000000FF1CE}_Office14.STANDARD_{4ACD847E-547D-493F-9A86-F73EAE1B5174}) (Version:  - Microsoft)
Update for Microsoft Filter Pack 2.0 (KB2878281) 32-Bit Edition (HKLM-x32\...\{90140000-0012-0000-0000-0000000FF1CE}_Office14.STANDARD_{302A8FE3-EBF5-486C-A431-16A1CD914443}) (Version:  - Microsoft)
Update for Microsoft Filter Pack 2.0 (KB2878281) 32-Bit Edition (HKLM-x32\...\{90140000-002A-0000-1000-0000000FF1CE}_Office14.STANDARD_{302A8FE3-EBF5-486C-A431-16A1CD914443}) (Version:  - Microsoft)
Update for Microsoft InfoPath 2010 (KB2817369) 32-Bit Edition (HKLM-x32\...\{90140000-0012-0000-0000-0000000FF1CE}_Office14.STANDARD_{4EEA3D3E-989C-4DF4-AB0A-3042C0C12AA3}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2589298) 32-Bit Edition (HKLM-x32\...\{90140000-0012-0000-0000-0000000FF1CE}_Office14.STANDARD_{DADF7E25-FFA4-4D02-BE84-1DAE62C18516}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2589352) 32-Bit Edition (HKLM-x32\...\{90140000-0012-0000-0000-0000000FF1CE}_Office14.STANDARD_{F4284D93-7AE8-4309-8CF3-9AD394F35F3A}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2589352) 32-Bit Edition (HKLM-x32\...\{90140000-002A-0000-1000-0000000FF1CE}_Office14.STANDARD_{F4284D93-7AE8-4309-8CF3-9AD394F35F3A}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2589375) 32-Bit Edition (HKLM-x32\...\{90140000-0012-0000-0000-0000000FF1CE}_Office14.STANDARD_{287A1E92-9E41-4BC1-8920-B3D0E9220800}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2597087) 32-Bit Edition (HKLM-x32\...\{90140000-0012-0000-0000-0000000FF1CE}_Office14.STANDARD_{9D69691D-823D-4C3E-9B12-563A3F520366}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2760598) 32-Bit Edition (HKLM-x32\...\{90140000-0012-0000-0000-0000000FF1CE}_Office14.STANDARD_{ECFE33A3-B8B7-439A-ADE4-59FBD29EF9B8}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2760598) 32-Bit Edition (HKLM-x32\...\{90140000-002A-0000-1000-0000000FF1CE}_Office14.STANDARD_{ECFE33A3-B8B7-439A-ADE4-59FBD29EF9B8}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2760631) 32-Bit Edition (HKLM-x32\...\{90140000-0012-0000-0000-0000000FF1CE}_Office14.STANDARD_{35698CB7-AAA2-4577-B505-DBFF504AEF23}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2794737) 32-Bit Edition (HKLM-x32\...\{90140000-0012-0000-0000-0000000FF1CE}_Office14.STANDARD_{5AA578BB-759C-40FD-9661-A737C0884541}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2825635) 32-Bit Edition (HKLM-x32\...\{90140000-0012-0000-0000-0000000FF1CE}_Office14.STANDARD_{F1A20C69-9FE5-40FD-9CD5-84EABC2EF64A}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2837581) 32-Bit Edition (HKLM-x32\...\{90140000-0012-0000-0000-0000000FF1CE}_Office14.STANDARD_{334FB202-28D7-4BA4-8BC9-4FE4AB233EA0}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2837606) 32-Bit Edition (HKLM-x32\...\{90140000-0012-0000-0000-0000000FF1CE}_Office14.STANDARD_{B0D672F7-883E-4279-8E75-D97A5445AB46}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2878252) 32-Bit Edition (HKLM-x32\...\{90140000-0012-0000-0000-0000000FF1CE}_Office14.STANDARD_{B0DB9F71-E0F7-4FE6-8925-35B860CAC0C4}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2881028) 32-Bit Edition (HKLM-x32\...\{90140000-001F-0407-0000-0000000FF1CE}_Office14.STANDARD_{EAD7BEF9-B28C-425F-B2C5-538CB27EF013}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2881028) 32-Bit Edition (HKLM-x32\...\{90140000-001F-0409-0000-0000000FF1CE}_Office14.STANDARD_{C0BDC1DE-C35E-422B-8CBD-C1D555468720}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2881028) 32-Bit Edition (HKLM-x32\...\{90140000-001F-040C-0000-0000000FF1CE}_Office14.STANDARD_{089DBFD7-8211-43B2-AAAE-5BDD8C23E3A8}) (Version:  - Microsoft)
Update for Microsoft OneNote 2010 (KB2837595) 32-Bit Edition (HKLM-x32\...\{90140000-0012-0000-0000-0000000FF1CE}_Office14.STANDARD_{51CCA922-A0CC-47C4-8910-6936D97CAC2E}) (Version:  - Microsoft)
Update for Microsoft OneNote 2010 (KB2837595) 32-Bit Edition (HKLM-x32\...\{90140000-002A-0000-1000-0000000FF1CE}_Office14.STANDARD_{51CCA922-A0CC-47C4-8910-6936D97CAC2E}) (Version:  - Microsoft)
Update for Microsoft Outlook 2010 (KB2687567) 32-Bit Edition (HKLM-x32\...\{90140000-0012-0000-0000-0000000FF1CE}_Office14.STANDARD_{2AB483F1-C86E-427A-83B4-23889B03512D}) (Version:  - Microsoft)
Update for Microsoft Outlook 2010 (KB2687567) 32-Bit Edition (HKLM-x32\...\{90140000-001A-0407-0000-0000000FF1CE}_Office14.STANDARD_{A0657506-69DC-44AE-8DC1-58E7C6F5B1C9}) (Version:  - Microsoft)
Update for Microsoft PowerPoint 2010 (KB2837579) 32-Bit Edition (HKLM-x32\...\{90140000-0012-0000-0000-0000000FF1CE}_Office14.STANDARD_{2BA40F82-F3A4-441C-BF1A-ED4C42FF4872}) (Version:  - Microsoft)
Update for Microsoft PowerPoint 2010 (KB2837579) 32-Bit Edition (HKLM-x32\...\{90140000-0018-0407-0000-0000000FF1CE}_Office14.STANDARD_{40EC8FB1-5202-469D-9232-C28FB1C6FC64}) (Version:  - Microsoft)
Update for Microsoft SharePoint Workspace 2010 (KB2760601) 32-Bit Edition (HKLM-x32\...\{90140000-002A-0000-1000-0000000FF1CE}_Office14.STANDARD_{F9F5A080-AF38-4966-9A6B-C43DCA465035}) (Version:  - Microsoft)
Update for Microsoft Word 2010 (KB2880529) 32-Bit Edition (HKLM-x32\...\{90140000-0012-0000-0000-0000000FF1CE}_Office14.STANDARD_{B9B89E01-5B6B-4F73-BC34-B2C0D8ACB4CD}) (Version:  - Microsoft)
Windows Live Communications Platform (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3508.0205 - Microsoft Corporation)
Windows Live Essentials (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Windows Live Family Safety (Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Windows Live Family Safety (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Windows Live ID Sign-in Assistant (Version: 7.250.4311.0 - Microsoft Corporation) Hidden
Windows Live Installer (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Windows Live Mail (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Windows Live Messenger (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Windows Live MIME IFilter (Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Windows Live Photo Common (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Windows Live PIMT Platform (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Windows Live SOXE (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Windows Live SOXE Definitions (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Windows Live UX Platform (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Windows Live UX Platform Language Pack (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Windows Live Writer (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Windows Live Writer Resources (x32 Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Yet Another Cleaner! (HKLM-x32\...\iSafe) (Version:  - ELEX DO BRASIL PARTICIPAÇÕES LTDA)

==================== Custom CLSID (selected items): ==========================

(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)

CustomCLSID: HKU\S-1-5-21-3555238676-2185496674-898315862-1000_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\HP\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3555238676-2185496674-898315862-1000_Classes\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}\InprocServer32 -> C:\Users\HP\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64\SkyDriveShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3555238676-2185496674-898315862-1000_Classes\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524}\InprocServer32 -> C:\Users\HP\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64\SkyDriveShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3555238676-2185496674-898315862-1000_Classes\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A}\InprocServer32 -> C:\Users\HP\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64\SkyDriveShell64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3555238676-2185496674-898315862-1000_Classes\CLSID\{F8071786-1FD0-4A66-81A1-3CBE29274458}\InprocServer32 -> C:\Users\HP\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64\FileSyncApi64.dll (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3555238676-2185496674-898315862-1000_Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\HP\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3555238676-2185496674-898315862-1000_Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\HP\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3555238676-2185496674-898315862-1000_Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\HP\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3555238676-2185496674-898315862-1000_Classes\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\HP\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3555238676-2185496674-898315862-1000_Classes\CLSID\{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\HP\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3555238676-2185496674-898315862-1000_Classes\CLSID\{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\HP\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3555238676-2185496674-898315862-1000_Classes\CLSID\{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\HP\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3555238676-2185496674-898315862-1000_Classes\CLSID\{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\HP\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.)

==================== Restore Points  =========================

09-07-2014 00:01:15 Windows Update
10-07-2014 04:34:21 Windows Update
11-07-2014 02:14:12 Windows Update
14-07-2014 23:21:22 Windows Update
18-07-2014 20:36:43 Windows Update
22-07-2014 02:51:05 Windows Update
25-07-2014 06:24:06 Windows Update
31-07-2014 00:49:52 Windows Update
31-07-2014 22:56:00 Windows Update
04-08-2014 12:15:22 Windows Update
07-08-2014 20:21:49 Windows Update
12-08-2014 08:04:26 Windows Update

==================== Hosts content: ==========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2009-07-13 21:34 - 2009-06-10 16:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts

==================== Scheduled Tasks (whitelisted) =============

(If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)

Task: {1F9210BC-D832-4C7E-ACE4-ADBDA3EFB172} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-07-08] (Adobe Systems Incorporated)
Task: {1FFCF2B4-10DB-4258-B5AF-793BEF5B5D3E} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2013-08-21] (Piriform Ltd)
Task: {259A1F1C-5DD6-4275-8CE9-751564150EF8} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: {26E14A02-ED4C-4DA9-9569-5F3A064029BA} - System32\Tasks\Microsoft\Microsoft Antimalware\MpIdleTask => c:\Program Files\Microsoft Security Client\Antimalware\MpCmdRun.exe [2010-11-11] (Microsoft Corporation)
Task: {6428D027-BA91-4CD5-BEA4-E3DECAA2A6A4} - System32\Tasks\Microsoft\Microsoft Antimalware\MP Scheduled Scan => c:\Program Files\Microsoft Security Client\Antimalware\MpCmdRun.exe [2010-11-11] (Microsoft Corporation)
Task: {BA7B6727-B912-45B7-9A77-5CCCD6FF96B6} - System32\Tasks\MirageAgent => C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe [2012-07-27] (CyberLink)
Task: {EBF8FDDB-AFDA-47BE-A16D-B491E6CC926E} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.)
Task: {F5D4B817-3005-4C94-911C-CDB4E96766E7} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

==================== Loaded Modules (whitelisted) =============

2012-09-19 11:37 - 2012-09-19 11:37 - 00017160 _____ () C:\Windows\system32\BsHelpCSps.dll
2012-09-19 11:37 - 2012-09-19 11:37 - 00029960 _____ () C:\Windows\system32\BsTrace.dll
2014-07-20 19:21 - 2014-07-16 04:34 - 02228896 ____N () C:\Program Files (x86)\iSafe\ipcdl.exe
2013-02-03 20:09 - 2013-01-16 06:27 - 00094208 _____ () C:\Windows\System32\IccLibDll_x64.dll
2014-04-22 20:12 - 2014-07-16 04:34 - 00065696 ____N () C:\Program Files (x86)\iSafe\zlib1.dll
2014-04-22 20:12 - 2014-07-16 04:34 - 00092320 ____N () C:\Program Files (x86)\iSafe\curlpp.dll
2014-07-20 19:21 - 2014-07-16 04:34 - 00427168 ____N () C:\Program Files (x86)\iSafe\ipcproxy.dll
2013-12-25 08:14 - 2014-07-09 07:48 - 00176976 ____N () C:\Program Files (x86)\iSafe\tws\unrar.dll
2013-12-25 08:14 - 2014-07-09 07:48 - 00068432 ____N () C:\Program Files (x86)\iSafe\tws\zlib1.dll
2013-12-25 08:14 - 2014-07-09 07:48 - 00087744 ____N () C:\Program Files (x86)\iSafe\tws\unacev2.dll
2014-04-23 16:05 - 2014-04-23 16:05 - 00073544 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll
2014-04-23 16:04 - 2014-04-23 16:04 - 01044808 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll
2012-09-24 07:27 - 2012-09-24 07:27 - 00335176 _____ () C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\Driver\USB\tl_filter.dll
2012-05-02 10:28 - 2012-05-02 10:28 - 00012800 _____ () C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\Driver\AMP\IVTAMPRL.dll
2013-12-10 08:03 - 2014-07-16 04:34 - 00185640 ____N () C:\Program Files (x86)\iSafe\libpng.dll
2014-02-28 04:09 - 2014-02-28 04:09 - 00017920 _____ () C:\Windows\assembly\NativeImages_v4.0.30319_32\PSIClient\0818bbec4f228582cd475b2eded32a93\PSIClient.ni.dll
2014-08-13 16:23 - 2014-08-13 16:23 - 00043008 _____ () c:\users\hp\appdata\local\temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmptu2bsq.dll
2013-10-18 18:55 - 2013-10-18 18:55 - 25100288 _____ () C:\Users\HP\AppData\Roaming\Dropbox\bin\libcef.dll
2012-09-19 11:37 - 2012-09-19 11:37 - 00079624 _____ () C:\Windows\system32\BsProfilefunc.dll
2012-09-19 11:37 - 2012-09-19 11:37 - 00363784 _____ () C:\Windows\system32\BsExtendFunc.dll
2013-02-22 09:43 - 2013-01-23 16:57 - 01199576 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll
2014-07-31 11:09 - 2014-07-31 11:09 - 03800688 _____ () C:\Program Files (x86)\Mozilla Firefox\mozjs.dll

==================== Alternate Data Streams (whitelisted) =========

(If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)

==================== Safe Mode (whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

==================== EXE Association (whitelisted) =============

(If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)

==================== MSCONFIG/TASK MANAGER disabled items =========

(Currently there is no automatic fix for this section.)

==================== Faulty Device Manager Devices =============

Name: Teredo Tunneling Pseudo-Interface
Description: Microsoft-Teredo-Tunneling-Adapter
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: Microsoft
Service: tunnel
Problem: : This device cannot start. (Code10)
Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device.
On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard.

==================== Event log errors: =========================

Application errors:
Error: (08/13/2014 04:21:52 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (08/13/2014 04:11:52 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

System errors:
Error: (08/13/2014 04:20:55 PM) (Source: Microsoft Antimalware) (EventID: 3002) (User: )
Description: Fehler in %%860-Echtzeitschutzfunktion.

	Funktion: %%835

	Fehlercode: 0x80004005

	Fehlerbeschreibung: Unbekannter Fehler 

	Ursache: %%842

Error: (08/13/2014 04:18:26 PM) (Source: DCOM) (EventID: 10010) (User: )
Description: {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5}

Error: (08/13/2014 04:10:54 PM) (Source: Microsoft Antimalware) (EventID: 3002) (User: )
Description: Fehler in %%860-Echtzeitschutzfunktion.

	Funktion: %%835

	Fehlercode: 0x80004005

	Fehlerbeschreibung: Unbekannter Fehler 

	Ursache: %%842

Error: (08/13/2014 04:07:13 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Dienst "sysTPLService" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert.

Error: (08/13/2014 04:07:12 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Dienst "sysTPLMonitor" wurde unerwartet beendet. Dies ist bereits 1 Mal passiert.

Error: (08/13/2014 07:34:46 AM) (Source: DCOM) (EventID: 10010) (User: )
Description: {995C996E-D918-4A8C-A302-45719A6F4EA7}

Microsoft Office Sessions:
Error: (08/13/2014 04:21:52 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (08/13/2014 04:11:52 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

==================== Memory info =========================== 

Processor: Intel(R) Pentium(R) CPU 2020M @ 2.40GHz
Percentage of memory in use: 66%
Total physical RAM: 3991.36 MB
Available physical RAM: 1322.07 MB
Total Pagefile: 7980.9 MB
Available Pagefile: 4493.98 MB
Total Virtual: 8192 MB
Available Virtual: 8191.85 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:465.66 GB) (Free:362.33 GB) NTFS

==================== MBR & Partition Table ==================

Disk: 0 (MBR Code: Windows 7 or 8) (Size: 466 GB) (Disk ID: F40231D6)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=466 GB) - (Type=07 NTFS)

==================== End Of Log ============================

SystemLook 30.07.11 by jpshortstuff
Log created at 16:31 on 13/08/2014 by HP
Administrator - Elevation successful

========== filefind ==========

Searching for "*iSafe*"
C:\AdwCleaner\Quarantine\C\Users\HP\AppData\Roaming\iSafe\log\iSafeStarts.log.vir	--a---- 6146 bytes	[15:37 05/01/2014]	[14:45 12/08/2014] 033CE81A775F2A80A8DA80A605F70FD1
C:\AdwCleaner\Quarantine\C\Users\HP\AppData\Roaming\iSafe\log\iSafeTaskHelper.log.vir	--a---- 5870 bytes	[13:01 09/05/2014]	[12:30 12/05/2014] 121AF80899DAA4688245D20C36E21B36
C:\AdwCleaner\Quarantine\C\Users\HP\AppData\Roaming\iSafe\log\iSafeTray.log.vir	--a---- 2470856 bytes	[13:15 25/12/2013]	[11:29 13/08/2014] 7B779B5480CF3B87FF77E694C4688566
C:\AdwCleaner\Quarantine\C\Users\HP\AppData\Roaming\iSafe\log_bak\iSafeKrnlCall.log.vir	--a---- 4482692 bytes	[21:46 20/07/2014]	[21:46 20/07/2014] 6E75E5619A2F4D483D6B4659DAA00D05
C:\AdwCleaner\Quarantine\C\Users\HP\AppData\Roaming\iSafe\log_bak\iSafeSvc.LOG.vir	--a---- 3226610 bytes	[21:46 20/07/2014]	[21:46 20/07/2014] DBA19E74696C59748E56CE3CE0AE03DF
C:\AdwCleaner\Quarantine\C\Users\HP\AppData\Roaming\iSafe\log_bak\iSafeSvc2.LOG.vir	--a---- 3786318 bytes	[21:46 20/07/2014]	[21:46 20/07/2014] 161A85CEA8718C7245756F1F7F7A64BA
C:\AdwCleaner\Quarantine\C\Users\HP\AppData\Roaming\iSafe\log_bak\iSafeUpdate.LOG.vir	--a---- 257358 bytes	[21:46 20/07/2014]	[20:46 20/07/2014] 16C86C37BC590AAA8B63EE4871248FEA
C:\AdwCleaner\Quarantine\C\Users\HP\AppData\Roaming\iSafe\update\isafe_update_v3.7.51.exe.vir	--a---- 6362280 bytes	[05:01 25/12/2013]	[05:03 25/12/2013] D638488CB518A27000FAB6314D9CEBF8
C:\AdwCleaner\Quarantine\C\Users\HP\AppData\Roaming\iSafe\update\isafe_update_v4.4.32.exe.vir	--a---- 8989864 bytes	[00:11 23/04/2014]	[00:18 23/04/2014] 822C28B0725BA9032963C1BB6E93DD95
C:\AdwCleaner\Quarantine\C\Users\HP\AppData\Roaming\iSafe\update\isafe_update_v4.4.34.exe.vir	--a---- 8991912 bytes	[11:34 24/04/2014]	[11:35 24/04/2014] 2F51A62F94209DC4D9FC150A3403EA6E
C:\AdwCleaner\Quarantine\C\Users\HP\AppData\Roaming\iSafe\update\isafe_update_v4.4.50.exe.vir	--a---- 9154048 bytes	[14:57 23/05/2014]	[15:06 23/05/2014] 2CA3A7FBC32A338621D87477CEA4BF9A
C:\AdwCleaner\Quarantine\C\Users\HP\AppData\Roaming\iSafe\update\isafe_update_v4.4.51.exe.vir	--a---- 9158824 bytes	[03:44 10/06/2014]	[03:45 10/06/2014] 6440C6ADA16351F4B67210AE1A7D0594
C:\AdwCleaner\Quarantine\C\Users\HP\AppData\Roaming\iSafe\update\isafe_update_v4.9.54.exe.vir	--a---- 10088072 bytes	[15:23 19/07/2014]	[15:25 19/07/2014] 9A1A88F09A92E181DFEB12ACD08A7582
C:\FRST\Quarantine\C\Windows\system32\DRIVERS\iSafeKrnlBoot.sys.xBAD	--a---- 45248 bytes	[01:12 23/04/2014]	[09:39 16/07/2014] CD7FB7F9DA362D0360A797E241A8DCC1
C:\Program Files (x86)\iSafe\iSafe.exe	------- 903496 bytes	[13:03 10/12/2013]	[09:40 16/07/2014] 9BFD3E95E7073BCADF24ED7FDD77F67A
C:\Program Files (x86)\iSafe\isafebase.dll	------- 583496 bytes	[00:21 21/07/2014]	[09:35 16/07/2014] AA3155CFA04CC4C2B29B4FFA9D8AA394
C:\Program Files (x86)\iSafe\iSafeBugReport.exe	------- 303432 bytes	[01:12 23/04/2014]	[09:40 16/07/2014] 0CD4FFE1C62C1FBAD0F0C131AD66E2AE
C:\Program Files (x86)\iSafe\isafece.dll	------- 131912 bytes	[01:12 23/04/2014]	[09:40 16/07/2014] FD0C06F9F379A5F3F106035FA06FEDF0
C:\Program Files (x86)\iSafe\isafeclc.dll	------- 280736 bytes	[00:21 21/07/2014]	[09:36 16/07/2014] 1F6480FE56FA76E2E5CD7F5278BF2920
C:\Program Files (x86)\iSafe\isafeclcv.dll	------- 112968 bytes	[00:21 21/07/2014]	[09:35 16/07/2014] 64B5683C07D6D63897D70ECC5B5A4EF4
C:\Program Files (x86)\iSafe\iSafeDisp.dll	------- 327496 bytes	[00:21 21/07/2014]	[09:39 16/07/2014] FBD429008D79F545091F3355EB3B9CE2
C:\Program Files (x86)\iSafe\iSafeEngine.dll	------- 246088 bytes	[13:15 25/12/2013]	[09:40 16/07/2014] B11549C2B355B9E821FA4F4362175549
C:\Program Files (x86)\iSafe\isafehrv.dll	------- 321352 bytes	[00:21 21/07/2014]	[09:38 16/07/2014] DB3F9EC213EE95DAD438ED3A4531FF7A
C:\Program Files (x86)\iSafe\iSafeKrnl.sys	------- 247488 bytes	[13:03 10/12/2013]	[09:39 16/07/2014] 630A0E25477D2032025F15008777BF09
C:\Program Files (x86)\iSafe\iSafeKrnlBoot.sys	------- 45248 bytes	[01:12 23/04/2014]	[09:39 16/07/2014] CD7FB7F9DA362D0360A797E241A8DCC1
C:\Program Files (x86)\iSafe\iSafeKrnlCall.dll	------- 184648 bytes	[13:03 10/12/2013]	[09:39 16/07/2014] F89D808DAC96508612F9E13595AB73C7
C:\Program Files (x86)\iSafe\iSafeKrnlCall64.dll	------- 147272 bytes	[13:03 10/12/2013]	[09:39 16/07/2014] B3BD83D192D3307907A38539A171DD07
C:\Program Files (x86)\iSafe\iSafeKrnlKit.sys	------- 78016 bytes	[01:12 23/04/2014]	[09:39 16/07/2014] BA4183AEC7DB28E24C75001E9A468CD7
C:\Program Files (x86)\iSafe\iSafeKrnlR3.sys	------- 65216 bytes	[00:21 21/07/2014]	[09:39 16/07/2014] 5264D3DF1A1D7BFCA48DE33E430A136C
C:\Program Files (x86)\iSafe\isafemadwc.dll	------- 439624 bytes	[01:12 23/04/2014]	[09:36 16/07/2014] 75B7E1BBCE3E8B8DB278A0776A984B21
C:\Program Files (x86)\iSafe\isafemadwv.dll	------- 411976 bytes	[01:12 23/04/2014]	[09:36 16/07/2014] 8E08FDB6170ACABD0E1D9D23A3C8B137
C:\Program Files (x86)\iSafe\isafembp.dll	------- 463176 bytes	[01:12 23/04/2014]	[09:37 16/07/2014] AB2A0F4C00DEA54BC4553E33814D034E
C:\Program Files (x86)\iSafe\isafembpv.dll	------- 345928 bytes	[01:12 23/04/2014]	[09:36 16/07/2014] B784D675CD37A91B51328A43387699DD
C:\Program Files (x86)\iSafe\isafemc.dll	------- 32072 bytes	[01:12 23/04/2014]	[09:35 16/07/2014] EC57A4F934A0451ACD5DB979C410FD32
C:\Program Files (x86)\iSafe\isafemclv.dll	------- 641352 bytes	[01:12 23/04/2014]	[09:37 16/07/2014] FE781AB8BA39053C3A163C3D6D5D1D28
C:\Program Files (x86)\iSafe\isafemgc.dll	------- 618824 bytes	[01:12 23/04/2014]	[09:37 16/07/2014] B45A920E5CF7D2E48EFFB50B66FD8A99
C:\Program Files (x86)\iSafe\isafemnv.dll	------- 218440 bytes	[01:12 23/04/2014]	[09:36 16/07/2014] 3F21D3EB1459EF319181BFFB88CEFCF9
C:\Program Files (x86)\iSafe\iSafeMon.dll	------- 295752 bytes	[00:21 21/07/2014]	[09:39 16/07/2014] 446F865331ACE552FA8DAEA9A4CDA19A
C:\Program Files (x86)\iSafe\iSafeMon64.dll	------- 343880 bytes	[00:21 21/07/2014]	[09:39 16/07/2014] 3C1CE64799ADAFB8C738EDCF315D18D7
C:\Program Files (x86)\iSafe\isafemoptv.dll	------- 608584 bytes	[01:12 23/04/2014]	[09:37 16/07/2014] 7B302A83E3FDB6544D6C93D0510D5B46
C:\Program Files (x86)\iSafe\isafemsmv.dll	------- 464200 bytes	[01:12 23/04/2014]	[09:36 16/07/2014] 8C1507708F6081BE1D44A019166CBB60
C:\Program Files (x86)\iSafe\isafemvsv.dll	------- 332616 bytes	[01:12 23/04/2014]	[09:38 16/07/2014] 37EDAED05A985D56CA25D22A0BC63009
C:\Program Files (x86)\iSafe\iSafeNetFilter.sys	------- 48640 bytes	[13:03 10/12/2013]	[12:48 09/07/2014] D3496D4FADB2BAED2FBEA849CFAB8E55
C:\Program Files (x86)\iSafe\iSafenpf.dll	------- 176968 bytes	[17:18 23/05/2014]	[09:38 16/07/2014] C3BC2F7AD01484A6248636938D0F2E45
C:\Program Files (x86)\iSafe\isafepxy.dll	------- 165704 bytes	[01:12 23/04/2014]	[09:35 16/07/2014] 32AD8665B2721346751A94E9F93CA8D6
C:\Program Files (x86)\iSafe\iSafeRKScanShell64.dll	------- 497480 bytes	[01:12 23/04/2014]	[12:48 09/07/2014] CFFE8781751C845EF912F427ECFF25B5
C:\Program Files (x86)\iSafe\isaferpt.dll	------- 339784 bytes	[01:12 23/04/2014]	[09:35 16/07/2014] 96962CFFB0CFAAFAA17358680389DBF9
C:\Program Files (x86)\iSafe\iSafeScan.exe	------- 463176 bytes	[13:15 25/12/2013]	[09:40 16/07/2014] 78E7A756ACED0095BD469ABF765C18C8
C:\Program Files (x86)\iSafe\isafesmgr.dll	------- 451912 bytes	[01:12 23/04/2014]	[09:37 16/07/2014] 7C2229E0A8A057817116D1E30A5F990E
C:\Program Files (x86)\iSafe\isafesopt.dll	------- 611144 bytes	[01:12 23/04/2014]	[09:37 16/07/2014] 2964B74E1480BBF00323B12413BA82A6
C:\Program Files (x86)\iSafe\isafesptv.dll	------- 405320 bytes	[01:12 23/04/2014]	[09:38 16/07/2014] FE2D3CAAB165C60C9F6E2A7A8D22CE45
C:\Program Files (x86)\iSafe\iSafeSrvMon64.dll	------- 310088 bytes	[00:21 21/07/2014]	[09:39 16/07/2014] 513224FD1020584C1135FAC012D569FB
C:\Program Files (x86)\iSafe\isafesv.dll	------- 197448 bytes	[00:21 21/07/2014]	[09:40 16/07/2014] E1CC1932BC0D8148300E22D0A25C973E
C:\Program Files (x86)\iSafe\iSafeSvc.exe	------- 118048 bytes	[13:03 10/12/2013]	[09:34 16/07/2014] 11F6F9216D8F77EAC196B07D66E819EA
C:\Program Files (x86)\iSafe\iSafeSvc2.exe	------- 118048 bytes	[13:03 10/12/2013]	[09:34 16/07/2014] A03A95B389479B2ADE3A288FA2EA11D1
C:\Program Files (x86)\iSafe\iSafeTHlp.exe	------- 426312 bytes	[01:12 23/04/2014]	[09:40 16/07/2014] 73EDD59877F7E5D0BBCA89397BAC8910
C:\Program Files (x86)\iSafe\iSafeTHlp64.exe	------- 426312 bytes	[00:21 21/07/2014]	[09:38 16/07/2014] 7DED89C76230A1DC9B06883A67685512
C:\Program Files (x86)\iSafe\iSafeTray.exe	------- 1018696 bytes	[13:03 10/12/2013]	[09:40 16/07/2014] 2A55A49DFC412C5029692469A97A92DC
C:\Program Files (x86)\iSafe\isafeupbiz.dll	------- 164680 bytes	[00:21 21/07/2014]	[09:35 16/07/2014] 61EB257245CD20E7BB5D99C6B015D396
C:\Program Files (x86)\iSafe\iSafeUpdate.exe	------- 241480 bytes	[13:15 25/12/2013]	[09:40 16/07/2014] 3C72ACCEC91A11E5896F56DA80BB85F4
C:\Program Files (x86)\iSafe\cfg\isafe.dat	------- 114 bytes	[13:03 10/12/2013]	[11:08 13/08/2014] 9C514C4BA1E4DCB2ACAF7E40489C4F0B
C:\Program Files (x86)\iSafe\cfg\iSafeUpdate.ini	------- 245 bytes	[13:15 25/12/2013]	[10:00 21/07/2014] 458237B2A218CE17CC1333E35BD9C2FA
C:\Program Files (x86)\iSafe\lang\iSafeRKScanShell.lang	------- 237 bytes	[01:12 23/04/2014]	[12:48 09/07/2014] AD8F3E5CCDECA9067E273EC3BD07FF66
C:\Program Files (x86)\iSafe\lang\iSafeSet_lang.xml	------- 63916 bytes	[00:21 21/07/2014]	[09:34 16/07/2014] 4C30C5C05A7885E108BDAF7DA6727939
C:\Program Files (x86)\iSafe\log\iSafe.LOG	--a---- 28766 bytes	[11:08 13/08/2014]	[12:20 13/08/2014] 3A73ECAE55B29178785B5F16F240FE89
C:\Program Files (x86)\iSafe\log\iSafeKrnlCall.log	--a---- 4949998 bytes	[00:22 21/07/2014]	[21:30 13/08/2014] 1FE5701861890BF83C798C04D5D1D6D4
C:\Program Files (x86)\iSafe\log\iSafeSvc.LOG	--a---- 3616216 bytes	[00:22 21/07/2014]	[21:30 13/08/2014] 06F1E7A10B04C921C94C3709131EFBED
C:\Program Files (x86)\iSafe\log\iSafeSvc2.LOG	--a---- 2342068 bytes	[00:22 21/07/2014]	[21:31 13/08/2014] B79122CDE8D5AE594A77EEC8F832E7CC
C:\Program Files (x86)\iSafe\log\iSafeTHlp64.LOG	--a---- 136596 bytes	[00:22 21/07/2014]	[21:20 13/08/2014] D3210555D5F31C9CC9506767080AC868
C:\Program Files (x86)\iSafe\log\iSafeUpdate.LOG	------- 1090 bytes	[10:00 21/07/2014]	[10:00 21/07/2014] 26D3A3E4BAA95F70DB5350DC4999A485
C:\Program Files (x86)\iSafe\skin2\app\image\new\isafe_16.png	------- 1292 bytes	[01:12 23/04/2014]	[08:21 21/04/2014] A927AD511655ADF159DDFB3310514EB6
C:\Program Files (x86)\iSafe\skin2\image\new\isafe_16.png	------- 1292 bytes	[13:03 10/12/2013]	[10:52 27/12/2013] A927AD511655ADF159DDFB3310514EB6
C:\Program Files (x86)\iSafe\skin2\iSafeSet\image\default\iSafeSet_res.xml	------- 1754 bytes	[00:21 21/07/2014]	[12:47 09/07/2014] 13818495E647B5B09E5ABE2D9926375A
C:\Program Files (x86)\iSafe\skin2\iSafeSet\layout\default\iSafeSetView.xml	------- 801 bytes	[00:21 21/07/2014]	[12:47 09/07/2014] F099A81637518896D1ACA525BD8E7CCC
C:\Program Files (x86)\iSafe\skin2\iSafeSet\style\iSafeSet_style.xml	------- 188 bytes	[00:21 21/07/2014]	[12:47 09/07/2014] 2ABD72D145933C6EFADD4D70EC8E9E4D
C:\Program Files (x86)\iSafe\skin2\SafeProtect\image\default\isafe_16.png	------- 1292 bytes	[01:12 23/04/2014]	[08:21 21/04/2014] A927AD511655ADF159DDFB3310514EB6
C:\Program Files (x86)\iSafe\skin2\tray\image\isafe_16.png	------- 1292 bytes	[00:21 21/07/2014]	[12:47 09/07/2014] A927AD511655ADF159DDFB3310514EB6
C:\Program Files (x86)\iSafe\tws\iSafeUpdate.exe	------- 247976 bytes	[01:13 23/04/2014]	[09:35 22/04/2014] 1CA5CAB08B18C693893B10F1E541E598
C:\Users\HP\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\V9E3QKOH\iSafe_upgrade_Release_win32_4.9.54.13304_2014.07.16[1].exe	--a---- 10088072 bytes	[15:23 19/07/2014]	[15:25 19/07/2014] 9A1A88F09A92E181DFEB12ACD08A7582
C:\Users\HP\AppData\Local\Temp\iSafeRightKeyScan\iSafeRKScan.log	--a---- 92040 bytes	[00:18 18/06/2014]	[21:30 13/08/2014] 9C0B3674BB58B75607D7FEE810BD6D24
C:\Users\HP\AppData\Roaming\isafe\log\iSafeStarts.log	--a---- 5522 bytes	[21:11 13/08/2014]	[21:22 13/08/2014] 88FE83D9D3443DECE033975B7E4D63AC
C:\Users\HP\AppData\Roaming\isafe\log\iSafeTray.log	--a---- 14448 bytes	[12:20 13/08/2014]	[21:28 13/08/2014] CCA74C456504F735C65A552B759695EB
C:\Windows\Prefetch\ISAFEUPDATE.EXE-4A3C2440.pf	--a---- 56192 bytes	[18:29 03/05/2014]	[10:00 21/07/2014] 7A9006BA986CA768C441384283E41A7A
C:\Windows\System32\log\iSafeKrnlCall.log	--a---- 9474 bytes	[13:03 10/12/2013]	[00:22 21/07/2014] FFE97A74838B4FB816F078C8B093E007

Searching for "*sysTPL*"
C:\FRST\Quarantine\C\Program Files (x86)\sysTPL\sysTPL.exe	--a---- 1244440 bytes	[15:25 23/07/2013]	[22:10 13/03/2014] 1DEE34C2698609FCA287D794BA29CE02
C:\FRST\Quarantine\C\Program Files (x86)\sysTPL\sysTPL.exe.config	--a---- 204 bytes	[11:53 15/04/2013]	[11:53 15/04/2013] 4E3942558C352D502BB90EA7F3FEA1F6
C:\FRST\Quarantine\C\Program Files (x86)\sysTPL\sysTPLLauncher.exe	--a---- 17688 bytes	[15:25 23/07/2013]	[15:25 23/07/2013] CD7A70640663559EA5105855ABEB062A
C:\FRST\Quarantine\C\Program Files (x86)\sysTPL\sysTPLMonitor.exe	--a---- 399640 bytes	[15:25 23/07/2013]	[22:10 13/03/2014] 53E7C464578C196424128CAA4050F4A3
C:\FRST\Quarantine\C\Program Files (x86)\sysTPL\sysTPLMonitor.exe.config	--a---- 204 bytes	[11:53 15/04/2013]	[11:53 15/04/2013] 4E3942558C352D502BB90EA7F3FEA1F6
C:\FRST\Quarantine\C\Program Files (x86)\sysTPL\sysTPLService.exe	--a---- 400664 bytes	[15:25 23/07/2013]	[22:11 13/03/2014] 7A6A1B5E88506A6195D7CC938E1A3A31
C:\FRST\Quarantine\C\Program Files (x86)\sysTPL\sysTPLService.exe.config	--a---- 204 bytes	[11:53 15/04/2013]	[11:53 15/04/2013] 4E3942558C352D502BB90EA7F3FEA1F6
C:\FRST\Quarantine\C\Program Files (x86)\sysTPL\sysTPLUninstal.exe	--a---- 16664 bytes	[15:25 23/07/2013]	[15:25 23/07/2013] F2D7584C4D99203DF3B7FF5E7C9C1155
C:\FRST\Quarantine\C\Program Files (x86)\sysTPL\sysTPLUtil.dll	--a---- 50456 bytes	[15:23 23/07/2013]	[22:11 13/03/2014] 0E8614E34A9109D9D8E16648B16CC3A3
C:\FRST\Quarantine\C\Program Files (x86)\sysTPL\updt\sysTPLLauncher.exe	--a---- 382744 bytes	[21:53 17/11/2013]	[22:11 13/03/2014] 0E77F97FDF8D4123FCDB68BE178F5A15
C:\FRST\Quarantine\C\Program Files (x86)\sysTPL\updt\sysTPLUninstall.exe	--a---- 382232 bytes	[21:53 17/11/2013]	[22:11 13/03/2014] 3F66898E4B225969DAF5AE49F539A99B
C:\Windows\Prefetch\SYSTPL.EXE-450E36D7.pf	--a---- 140706 bytes	[13:36 24/05/2014]	[14:45 12/08/2014] 105C182F03BC7827EDE856650059BD0D
C:\Windows\Prefetch\SYSTPLSERVICE.EXE-310A5EF4.pf	--a---- 78532 bytes	[02:53 27/05/2014]	[20:58 13/08/2014] 509781A70579D914E2DB2520901E5BBB

Searching for "*QuickEngine*"
No files found.

Searching for "*Tlapia*"
No files found.

========== folderfind ==========

Searching for "*iSafe*"
C:\AdwCleaner\Quarantine\C\Program Files (x86)\iSafe	d------	[11:31 13/08/2014]
C:\AdwCleaner\Quarantine\C\Program Files (x86)\iSafe\skin2\iSafeSet	d------	[11:32 13/08/2014]
C:\AdwCleaner\Quarantine\C\Users\HP\AppData\Roaming\iSafe	d------	[11:32 13/08/2014]
C:\FRST\Quarantine\C\Program Files (x86)\iSafe	d------	[21:07 13/08/2014]
C:\FRST\Quarantine\C\Program Files (x86)\iSafe\skin2\iSafeSet	d------	[21:08 13/08/2014]
C:\Program Files (x86)\iSafe	d------	[13:03 10/12/2013]
C:\Program Files (x86)\iSafe\skin2\iSafeSet	d------	[00:21 21/07/2014]
C:\Users\HP\AppData\Local\Temp\iSafeRightKeyScan	d------	[00:18 18/06/2014]
C:\Users\HP\AppData\Roaming\isafe	d------	[12:20 13/08/2014]

Searching for "*sysTPL*"
C:\FRST\Quarantine\C\Program Files (x86)\sysTPL	d------	[12:15 27/07/2013]
C:\Program Files (x86)\enginesysTPL	d------	[12:15 27/07/2013]
C:\ProgramData\Microsoft\Windows\WER\ReportArchive\AppHang_sysTPLMonitor.ex_fa96c651e4a82cc384fb89f5c6e1d1e9dd1747a_0641d538	d----c-	[13:32 27/01/2014]
C:\Users\All Users\Microsoft\Windows\WER\ReportArchive\AppHang_sysTPLMonitor.ex_fa96c651e4a82cc384fb89f5c6e1d1e9dd1747a_0641d538	d----c-	[13:32 27/01/2014]

Searching for "*QuickEngine*"
C:\AdwCleaner\Quarantine\C\Users\HP\AppData\Roaming\Tlapia\QuickEngine 1.0.1	d------	[11:32 13/08/2014]

Searching for "*Tlapia*"
C:\AdwCleaner\Quarantine\C\Users\HP\AppData\Roaming\Tlapia	d------	[11:32 13/08/2014]

========== regfind ==========

Searching for "iSafe"
@="C:\Program Files (x86)\iSafe\iSafeRKScanShell64.dll"
"Icon"="C:\Program Files (x86)\iSafe\iStart.exe,-109"
@=""C:\Program Files (x86)\iSafe\iStart.exe" -iSafeRightKeyShell -isafeRKShell_opt=isafeRKShell_opt_deepclean -isafeRKShell_executorPath="C:\Program Files (x86)\iSafe\iSafe.exe""
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved]
"{5411D116-5A37-47D4-B154-5F7FCD9062F0}"="iSafeRKScan Shell Extension"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved]
"{0EB9B9FE-3CEF-43E1-882A-853FC80021CE}"="iSafeRKScan Shell Extension"
"path"="C:\Program Files (x86)\iSafe\"
"DisplayIcon"="C:\Program Files (x86)\iSafe\uninstall.exe"
"UninstallString"="C:\Program Files (x86)\iSafe\uninstall.exe"
"path"="C:\Program Files (x86)\iSafe\"
"InstallLocation"="C:\Program Files (x86)\iSafe\"
"ProgramPath"="C:\Program Files (x86)\iSafe"
"DeviceDesc"="iSafeKrnl Kit Driver"
"DeviceDesc"="iSafeKrnl Ring3 Driver"
"ImagePath"="\??\C:\Program Files (x86)\iSafe\iSafeKrnl.sys"
"DisplayName"="iSafeKrnl Mini-Filter Driver"
"Description"="iSafeKrnl Mini-Filter Driver"
"DefaultInstance"="iSafeKrnl Instance"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\services\iSafeKrnl\Instances\iSafeKrnl Instance]
"InstallPath"="C:\Program Files (x86)\iSafe\"
"ImagePath"="\??\C:\Program Files (x86)\iSafe\iSafeKrnlKit.sys"
"DisplayName"="iSafeKrnl Kit Driver"
"ImagePath"="\??\C:\Program Files (x86)\iSafe\iSafeKrnlR3.sys"
"DisplayName"="iSafeKrnl Ring3 Driver"
"ImagePath"="\??\C:\Program Files (x86)\iSafe\iSafeNetFilter.sys"
"DisplayName"="iSafeNetFilter NDIS Driver"
"ImagePath"="C:\Program Files (x86)\iSafe\iSafeSvc.exe"
"Description"="iSafe Service"
"ProgramPath"="C:\Program Files (x86)\iSafe"
"DeviceDesc"="iSafeKrnl Kit Driver"
"DeviceDesc"="iSafeKrnl Ring3 Driver"
"ImagePath"="\??\C:\Program Files (x86)\iSafe\iSafeKrnl.sys"
"DisplayName"="iSafeKrnl Mini-Filter Driver"
"Description"="iSafeKrnl Mini-Filter Driver"
"DefaultInstance"="iSafeKrnl Instance"
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\services\iSafeKrnl\Instances\iSafeKrnl Instance]
"InstallPath"="C:\Program Files (x86)\iSafe\"
"ImagePath"="\??\C:\Program Files (x86)\iSafe\iSafeKrnlKit.sys"
"DisplayName"="iSafeKrnl Kit Driver"
"ImagePath"="\??\C:\Program Files (x86)\iSafe\iSafeKrnlR3.sys"
"DisplayName"="iSafeKrnl Ring3 Driver"
"ImagePath"="\??\C:\Program Files (x86)\iSafe\iSafeNetFilter.sys"
"DisplayName"="iSafeNetFilter NDIS Driver"
"ImagePath"="C:\Program Files (x86)\iSafe\iSafeSvc.exe"
"Description"="iSafe Service"
"ProgramPath"="C:\Program Files (x86)\iSafe"
"DeviceDesc"="iSafeKrnl Kit Driver"
"DeviceDesc"="iSafeKrnl Ring3 Driver"
"ImagePath"="\??\C:\Program Files (x86)\iSafe\iSafeKrnl.sys"
"DisplayName"="iSafeKrnl Mini-Filter Driver"
"Description"="iSafeKrnl Mini-Filter Driver"
"DefaultInstance"="iSafeKrnl Instance"
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\iSafeKrnl\Instances\iSafeKrnl Instance]
"InstallPath"="C:\Program Files (x86)\iSafe\"
"ImagePath"="\??\C:\Program Files (x86)\iSafe\iSafeKrnlKit.sys"
"DisplayName"="iSafeKrnl Kit Driver"
"ImagePath"="\??\C:\Program Files (x86)\iSafe\iSafeKrnlR3.sys"
"DisplayName"="iSafeKrnl Ring3 Driver"
"ImagePath"="\??\C:\Program Files (x86)\iSafe\iSafeNetFilter.sys"
"DisplayName"="iSafeNetFilter NDIS Driver"
"ImagePath"="C:\Program Files (x86)\iSafe\iSafeSvc.exe"
"Description"="iSafe Service"

Searching for "sysTPL"
"C:\Program Files (x86)\sysTPL\updt\"="1"
"C:\Program Files (x86)\sysTPL\"="1"
"C:\Program Files (x86)\sysTPL\data\"="1"
"C:\Program Files (x86)\sysTPL\temp\"="1"
"C:\Program Files (x86)\enginesysTPL\wget\"=""
"C:\Program Files (x86)\enginesysTPL\"=""
"708B3E95A5D2EAA46A7C269F1A16E548"="C:\Program Files (x86)\sysTPL\sysTPLMonitor.exe"
"3C5CF1EF90A6F3D40B48A62588FA8E9F"="C:\Program Files (x86)\enginesysTPL\wget\libintl3.dll"
"708B3E95A5D2EAA46A7C269F1A16E548"="C:\Program Files (x86)\sysTPL\sysTPL.exe"
"708B3E95A5D2EAA46A7C269F1A16E548"="C:\Program Files (x86)\sysTPL\sysTPLUninstal.exe"
"3C5CF1EF90A6F3D40B48A62588FA8E9F"="C:\Program Files (x86)\enginesysTPL\wget\wget.exe"
"708B3E95A5D2EAA46A7C269F1A16E548"="C:\Program Files (x86)\sysTPL\sysTPLService.exe"
"3C5CF1EF90A6F3D40B48A62588FA8E9F"="C:\Program Files (x86)\enginesysTPL\wget\msvcp60.dll"
"708B3E95A5D2EAA46A7C269F1A16E548"="C:\Program Files (x86)\sysTPL\data\"
"708B3E95A5D2EAA46A7C269F1A16E548"="C:\Program Files (x86)\sysTPL\sysTPLLauncher.exe"
"708B3E95A5D2EAA46A7C269F1A16E548"="C:\Program Files (x86)\sysTPL\sysTPLUtil.dll"
"708B3E95A5D2EAA46A7C269F1A16E548"="C:\Program Files (x86)\sysTPL\makecert.exe"
"708B3E95A5D2EAA46A7C269F1A16E548"="C:\Program Files (x86)\sysTPL\sysTPLMonitor.exe.config"
"3C5CF1EF90A6F3D40B48A62588FA8E9F"="C:\Program Files (x86)\enginesysTPL\wget\libiconv2.dll"
"3C5CF1EF90A6F3D40B48A62588FA8E9F"="C:\Program Files (x86)\enginesysTPL\wget\libeay32.dll"
"708B3E95A5D2EAA46A7C269F1A16E548"="C:\Program Files (x86)\sysTPL\updt\"
"708B3E95A5D2EAA46A7C269F1A16E548"="C:\Program Files (x86)\sysTPL\temp\"
"708B3E95A5D2EAA46A7C269F1A16E548"="C:\Program Files (x86)\sysTPL\FiddlerCore.dll"
"3C5CF1EF90A6F3D40B48A62588FA8E9F"="C:\Program Files (x86)\enginesysTPL\wget\libssl32.dll"
"Comments"="This installer database contains the logic and data required to install sysTPL."
"InstallLocation"="C:\Program Files (x86)\sysTPL\"
"Comments"="This installer database contains the logic and data required to install sysTPL."
"InstallLocation"="C:\Program Files (x86)\sysTPL\"

Searching for "QuickEngine"
"LastUsedSource"="n;1;C:\Users\HP\AppData\Roaming\Tlapia\QuickEngine 1.0.1\install\8AFE8F9\"
"1"="C:\Users\HP\AppData\Roaming\Tlapia\QuickEngine 1.0.1\install\8AFE8F9\"
"3C5CF1EF90A6F3D40B48A62588FA8E9F"="02:\Software\Microsoft\Windows\CurrentVersion\Uninstall\QuickEngine 1.0.1\NoModify"
"3C5CF1EF90A6F3D40B48A62588FA8E9F"="02:\Software\Microsoft\Windows\CurrentVersion\Uninstall\QuickEngine 1.0.1\DisplayName"
"Comments"="This installer database contains the logic and data required to install QuickEngine."
"InstallLocation"="C:\Program Files (x86)\Tlapia\QuickEngine\"
"InstallSource"="C:\Users\HP\AppData\Roaming\Tlapia\QuickEngine 1.0.1\install\8AFE8F9\"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\QuickEngine 1.0.1]
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\QuickEngine 1.0.1]
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\QuickEngine 1.0.1]
"InstallLocation"="C:\Program Files (x86)\Tlapia\QuickEngine\"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\QuickEngine 1.0.1]
"Comments"="This installer database contains the logic and data required to install QuickEngine."
"Comments"="This installer database contains the logic and data required to install QuickEngine."
"InstallLocation"="C:\Program Files (x86)\Tlapia\QuickEngine\"
"InstallSource"="C:\Users\HP\AppData\Roaming\Tlapia\QuickEngine 1.0.1\install\8AFE8F9\"

Searching for "Tlapia"
"LastUsedSource"="n;1;C:\Users\HP\AppData\Roaming\Tlapia\QuickEngine 1.0.1\install\8AFE8F9\"
"1"="C:\Users\HP\AppData\Roaming\Tlapia\QuickEngine 1.0.1\install\8AFE8F9\"
"InstallLocation"="C:\Program Files (x86)\Tlapia\QuickEngine\"
"InstallSource"="C:\Users\HP\AppData\Roaming\Tlapia\QuickEngine 1.0.1\install\8AFE8F9\"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\QuickEngine 1.0.1]
"InstallLocation"="C:\Program Files (x86)\Tlapia\QuickEngine\"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\QuickEngine 1.0.1]
"InstallLocation"="C:\Program Files (x86)\Tlapia\QuickEngine\"
"InstallSource"="C:\Users\HP\AppData\Roaming\Tlapia\QuickEngine 1.0.1\install\8AFE8F9\"

Searching for "Yet Another Cleaner"
"DisplayName"="Yet Another Cleaner!"

-= EOF =-

Gute Nacht

Alt 14.08.2014, 11:04   #10
/// TB-Ausbilder
Windows 7: Proxy-Server reagiert nicht - Standard

Windows 7: Proxy-Server reagiert nicht


die Adware schützt sich mit diversen Treibern, daher machen wir so weiter:

Scan mit Combofix
Combofix sollte ausschließlich ausgeführt werden, wenn dies von einem Teammitglied angewiesen wurde!

Downloade dir bitte Combofix vom folgenden Downloadspiegel: Link
  • WICHTIG: Speichere Combofix auf deinem Desktop.
  • Deaktiviere bitte alle deine Antivirensoftware sowie Malware/Spyware Scanner. Diese können Combofix bei der Arbeit stören. Combofix meckert auch manchmal trotzdem noch, das kannst du dann ignorieren, mir aber bitte mitteilen.
  • Starte die Combofix.exe und folge den Anweisungen auf dem Bildschirm.
  • Während Combofix läuft bitte nicht am Computer arbeiten, die Maus bewegen oder ins Combofixfenster klicken!
  • Wenn Combofix fertig ist, wird es ein Logfile erstellen.
  • Bitte poste die C:\Combofix.txt in deiner nächsten Antwort (möglichst in CODE-Tags).
Hinweis: Solltest du nach dem Neustart folgende Fehlermeldung erhalten
Es wurde versucht, einen Registrierungsschlüssel einem ungültigen Vorgang zu unterziehen, der zum Löschen markiert wurde.
starte den Rechner einfach neu. Dies sollte das Problem beheben.

Geändert von M-K-D-B (14.08.2014 um 11:16 Uhr)

Alt 14.08.2014, 22:06   #11
Windows 7: Proxy-Server reagiert nicht - Standard

Windows 7: Proxy-Server reagiert nicht

Hier der Log:

Die nächsten 2 Wochen ist meine Internetverbindung nicht gesichert, also falls ich nicht antworte nichts dabei denken. ich bin weiter dabei


ComboFix 14-08-15.01 - HP 14.08.2014  15:50:11.1.2 - x64
Microsoft Windows 7 Home Premium   6.1.7601.1.1252.49.1031.18.3991.2391 [GMT -5:00]
ausgeführt von:: c:\users\HP\Desktop\ComboFix.exe
AV: Microsoft Security Essentials *Enabled/Updated* {108DAC43-C256-20B7-BB05-914135DA5160}
SP: Microsoft Security Essentials *Enabled/Updated* {ABEC4DA7-E46C-2F39-81B5-AA334E5D1BDD}
SP: Windows Defender *Disabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
 * Neuer Wiederherstellungspunkt wurde erstellt
(((((((((((((((((((((((   Dateien erstellt von 2014-07-14 bis 2014-08-14  ))))))))))))))))))))))))))))))
2014-08-14 21:01 . 2014-08-14 21:01	--------	d-----w-	c:\users\Party\AppData\Local\temp
2014-08-14 21:01 . 2014-08-14 21:01	--------	d-----w-	c:\users\Default\AppData\Local\temp
2014-08-13 12:20 . 2014-08-13 12:20	--------	d-----w-	c:\users\HP\AppData\Roaming\eCyber
2014-08-13 12:20 . 2014-08-13 21:47	--------	d-----w-	c:\users\HP\AppData\Roaming\isafe
2014-08-13 12:07 . 2014-08-13 12:07	--------	d-----w-	c:\windows\ERUNT
2014-08-13 11:31 . 2010-08-30 13:34	536576	----a-w-	c:\windows\SysWow64\sqlite3.dll
2014-08-13 11:31 . 2014-08-13 11:33	--------	d-----w-	C:\AdwCleaner
2014-08-13 10:34 . 2014-08-13 21:29	--------	d-----w-	C:\FRST
2014-08-13 10:16 . 2014-07-02 03:09	10924376	----a-w-	c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\{AE02A924-BBE9-454D-A854-590D26B907DE}\mpengine.dll
2014-08-06 19:49 . 2014-08-06 19:49	--------	d-sh--w-	c:\users\HP\AppData\Local\EmieUserList
2014-08-06 19:49 . 2014-08-06 19:49	--------	d-sh--w-	c:\users\HP\AppData\Local\EmieSiteList
2014-07-31 22:58 . 2014-05-14 16:23	44512	----a-w-	c:\windows\system32\wups2.dll
2014-07-31 22:58 . 2014-05-14 16:23	58336	----a-w-	c:\windows\system32\wuauclt.exe
2014-07-31 22:58 . 2014-05-14 16:23	2477536	----a-w-	c:\windows\system32\wuaueng.dll
2014-07-31 22:58 . 2014-05-14 16:21	2620928	----a-w-	c:\windows\system32\wucltux.dll
2014-07-31 22:57 . 2014-05-14 16:23	38880	----a-w-	c:\windows\system32\wups.dll
2014-07-31 22:57 . 2014-05-14 16:20	97792	----a-w-	c:\windows\system32\wudriver.dll
2014-07-31 22:57 . 2014-05-14 16:17	92672	----a-w-	c:\windows\SysWow64\wudriver.dll
2014-07-31 22:57 . 2014-05-14 16:23	36320	----a-w-	c:\windows\SysWow64\wups.dll
2014-07-31 22:57 . 2014-05-14 16:23	700384	----a-w-	c:\windows\system32\wuapi.dll
2014-07-31 22:57 . 2014-05-14 16:23	581600	----a-w-	c:\windows\SysWow64\wuapi.dll
2014-07-31 22:57 . 2014-05-14 14:23	198600	----a-w-	c:\windows\system32\wuwebv.dll
2014-07-31 22:57 . 2014-05-14 14:23	179656	----a-w-	c:\windows\SysWow64\wuwebv.dll
2014-07-31 22:57 . 2014-05-14 14:20	36864	----a-w-	c:\windows\system32\wuapp.exe
2014-07-31 22:57 . 2014-05-14 14:17	33792	----a-w-	c:\windows\SysWow64\wuapp.exe
((((((((((((((((((((((((((((((((((((   Find3M Bericht   ))))))))))))))))))))))))))))))))))))))))))))))))))))))
2014-08-13 21:50 . 2014-06-22 13:11	122584	----a-w-	c:\windows\system32\drivers\MBAMSwissArmy.sys
2014-07-10 11:59 . 2013-07-06 16:32	96441528	----a-w-	c:\windows\system32\MRT.exe
2014-07-09 00:59 . 2013-06-30 19:10	699056	----a-w-	c:\windows\SysWow64\FlashPlayerApp.exe
2014-07-09 00:59 . 2013-06-30 19:10	71344	----a-w-	c:\windows\SysWow64\FlashPlayerCPLApp.cpl
2014-07-02 03:09 . 2013-07-01 17:36	10924376	----a-w-	c:\programdata\Microsoft\Microsoft Antimalware\Definition Updates\Backup\mpengine.dll
2014-06-30 02:09 . 2014-07-09 13:57	519168	----a-w-	c:\windows\system32\aepdu.dll
2014-06-30 02:04 . 2014-07-09 13:57	424448	----a-w-	c:\windows\system32\aeinv.dll
2014-06-20 20:14 . 2014-07-09 13:56	266424	----a-w-	c:\windows\system32\iedkcs32.dll
2014-06-19 01:39 . 2014-07-09 13:56	23464448	----a-w-	c:\windows\system32\mshtml.dll
2014-06-19 01:06 . 2014-07-09 13:56	2724864	----a-w-	c:\windows\system32\mshtml.tlb
2014-06-19 01:06 . 2014-07-09 13:56	4096	----a-w-	c:\windows\system32\ieetwcollectorres.dll
2014-06-19 00:48 . 2014-07-09 13:56	2768384	----a-w-	c:\windows\system32\iertutil.dll
2014-06-19 00:42 . 2014-07-09 13:56	548352	----a-w-	c:\windows\system32\vbscript.dll
2014-06-19 00:42 . 2014-07-09 13:56	66048	----a-w-	c:\windows\system32\iesetup.dll
2014-06-19 00:41 . 2014-07-09 13:56	48640	----a-w-	c:\windows\system32\ieetwproxystub.dll
2014-06-19 00:41 . 2014-07-09 13:56	83968	----a-w-	c:\windows\system32\MshtmlDac.dll
2014-06-19 00:32 . 2014-07-09 13:56	51200	----a-w-	c:\windows\system32\jsproxy.dll
2014-06-19 00:31 . 2014-07-09 13:56	33792	----a-w-	c:\windows\system32\iernonce.dll
2014-06-19 00:26 . 2014-07-09 13:56	598016	----a-w-	c:\windows\system32\ieui.dll
2014-06-19 00:24 . 2014-07-09 13:56	139264	----a-w-	c:\windows\system32\ieUnatt.exe
2014-06-19 00:24 . 2014-07-09 13:56	111616	----a-w-	c:\windows\system32\ieetwcollector.exe
2014-06-19 00:23 . 2014-07-09 13:56	752640	----a-w-	c:\windows\system32\jscript9diag.dll
2014-06-19 00:14 . 2014-07-09 13:56	940032	----a-w-	c:\windows\system32\MsSpellCheckingFacility.exe
2014-06-19 00:09 . 2014-07-09 13:56	452608	----a-w-	c:\windows\system32\dxtmsft.dll
2014-06-18 23:59 . 2014-07-09 13:56	38400	----a-w-	c:\windows\system32\JavaScriptCollectionAgent.dll
2014-06-18 23:56 . 2014-07-09 13:56	2724864	----a-w-	c:\windows\SysWow64\mshtml.tlb
2014-06-18 23:53 . 2014-07-09 13:56	195584	----a-w-	c:\windows\system32\msrating.dll
2014-06-18 23:51 . 2014-07-09 13:56	5721088	----a-w-	c:\windows\system32\jscript9.dll
2014-06-18 23:50 . 2014-07-09 13:56	85504	----a-w-	c:\windows\system32\mshtmled.dll
2014-06-18 23:48 . 2014-07-09 13:56	292864	----a-w-	c:\windows\system32\dxtrans.dll
2014-06-18 23:39 . 2014-07-09 13:56	608768	----a-w-	c:\windows\system32\ie4uinit.exe
2014-06-18 23:38 . 2014-07-09 13:56	455168	----a-w-	c:\windows\SysWow64\vbscript.dll
2014-06-18 23:37 . 2014-07-09 13:56	61952	----a-w-	c:\windows\SysWow64\iesetup.dll
2014-06-18 23:36 . 2014-07-09 13:56	51200	----a-w-	c:\windows\SysWow64\ieetwproxystub.dll
2014-06-18 23:35 . 2014-07-09 13:56	62464	----a-w-	c:\windows\SysWow64\MshtmlDac.dll
2014-06-18 23:33 . 2014-07-09 13:56	631808	----a-w-	c:\windows\system32\msfeeds.dll
2014-06-18 23:27 . 2014-07-09 13:56	1249280	----a-w-	c:\windows\system32\mshtmlmedia.dll
2014-06-18 23:27 . 2014-07-09 13:56	2040832	----a-w-	c:\windows\system32\inetcpl.cpl
2014-06-18 23:23 . 2014-07-09 13:56	112128	----a-w-	c:\windows\SysWow64\ieUnatt.exe
2014-06-18 23:22 . 2014-07-09 13:56	592896	----a-w-	c:\windows\SysWow64\jscript9diag.dll
2014-06-18 23:06 . 2014-07-09 13:56	32256	----a-w-	c:\windows\SysWow64\JavaScriptCollectionAgent.dll
2014-06-18 22:58 . 2014-07-09 13:56	2266112	----a-w-	c:\windows\system32\wininet.dll
2014-06-18 22:52 . 2014-07-09 13:56	4254720	----a-w-	c:\windows\SysWow64\jscript9.dll
2014-06-18 22:51 . 2014-07-09 13:56	13527040	----a-w-	c:\windows\system32\ieframe.dll
2014-06-18 22:46 . 2014-07-09 13:56	1068032	----a-w-	c:\windows\SysWow64\mshtmlmedia.dll
2014-06-18 22:45 . 2014-07-09 13:56	1964544	----a-w-	c:\windows\SysWow64\inetcpl.cpl
2014-06-18 22:34 . 2014-07-09 13:56	1393664	----a-w-	c:\windows\system32\urlmon.dll
2014-06-18 22:15 . 2014-07-09 13:56	846336	----a-w-	c:\windows\system32\ieapfltr.dll
2014-06-18 22:13 . 2014-07-09 13:56	1791488	----a-w-	c:\windows\SysWow64\wininet.dll
2014-06-18 02:18 . 2014-07-09 13:57	692736	----a-w-	c:\windows\system32\osk.exe
2014-06-18 01:51 . 2014-07-09 13:57	646144	----a-w-	c:\windows\SysWow64\osk.exe
2014-06-18 01:10 . 2014-07-09 13:57	3157504	----a-w-	c:\windows\system32\win32k.sys
2014-06-06 10:10 . 2014-07-09 13:57	624128	----a-w-	c:\windows\system32\qedit.dll
2014-06-06 09:44 . 2014-07-09 13:57	509440	----a-w-	c:\windows\SysWow64\qedit.dll
2014-06-05 14:45 . 2014-07-09 13:54	1460736	----a-w-	c:\windows\system32\lsasrv.dll
2014-06-05 14:26 . 2014-07-09 13:54	22016	----a-w-	c:\windows\SysWow64\secur32.dll
2014-06-05 14:25 . 2014-07-09 13:54	96768	----a-w-	c:\windows\SysWow64\sspicli.dll
2014-05-30 08:08 . 2014-07-09 13:57	210944	----a-w-	c:\windows\system32\wdigest.dll
2014-05-30 08:08 . 2014-07-09 13:57	86528	----a-w-	c:\windows\system32\TSpkg.dll
2014-05-30 08:08 . 2014-07-09 13:57	340992	----a-w-	c:\windows\system32\schannel.dll
2014-05-30 08:08 . 2014-07-09 13:57	314880	----a-w-	c:\windows\system32\msv1_0.dll
2014-05-30 08:08 . 2014-07-09 13:57	307200	----a-w-	c:\windows\system32\ncrypt.dll
2014-05-30 08:08 . 2014-07-09 13:57	728064	----a-w-	c:\windows\system32\kerberos.dll
2014-05-30 08:08 . 2014-07-09 13:57	22016	----a-w-	c:\windows\system32\credssp.dll
2014-05-30 07:52 . 2014-07-09 13:57	172032	----a-w-	c:\windows\SysWow64\wdigest.dll
2014-05-30 07:52 . 2014-07-09 13:57	65536	----a-w-	c:\windows\SysWow64\TSpkg.dll
2014-05-30 07:52 . 2014-07-09 13:57	247808	----a-w-	c:\windows\SysWow64\schannel.dll
2014-05-30 07:52 . 2014-07-09 13:57	220160	----a-w-	c:\windows\SysWow64\ncrypt.dll
2014-05-30 07:52 . 2014-07-09 13:57	259584	----a-w-	c:\windows\SysWow64\msv1_0.dll
2014-05-30 07:52 . 2014-07-09 13:57	550912	----a-w-	c:\windows\SysWow64\kerberos.dll
2014-05-30 07:52 . 2014-07-09 13:57	17408	----a-w-	c:\windows\SysWow64\credssp.dll
2014-05-30 06:45 . 2014-07-09 13:57	497152	----a-w-	c:\windows\system32\drivers\afd.sys
((((((((((((((((((((((((((((   Autostartpunkte der Registrierung   ))))))))))))))))))))))))))))))))))))))))
*Hinweis* leere Einträge & legitime Standardeinträge werden nicht angezeigt. 
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrive1]
2014-04-09 03:59	220632	----a-w-	c:\users\HP\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\SkyDriveShell.dll
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrive2]
2014-04-09 03:59	220632	----a-w-	c:\users\HP\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\SkyDriveShell.dll
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrive3]
2014-04-09 03:59	220632	----a-w-	c:\users\HP\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\SkyDriveShell.dll
2014-06-24 22:04	131480	----a-w-	c:\users\HP\AppData\Roaming\Dropbox\bin\DropboxExt.24.dll
2014-06-24 22:04	131480	----a-w-	c:\users\HP\AppData\Roaming\Dropbox\bin\DropboxExt.24.dll
2014-06-24 22:04	131480	----a-w-	c:\users\HP\AppData\Roaming\Dropbox\bin\DropboxExt.24.dll
"Spotify"="c:\users\HP\AppData\Roaming\Spotify\Spotify.exe" [2013-11-18 5955072]
"Spotify Web Helper"="c:\users\HP\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe" [2013-11-18 1168896]
"Skype"="c:\program files (x86)\Skype\Phone\Skype.exe" [2014-05-08 21446272]
"IAStorIcon"="c:\program files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe" [2012-12-20 56720]
"BtTray"="c:\program files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BtTray.exe" [2012-09-19 371976]
"APSDaemon"="c:\program files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe" [2014-04-23 43848]
"Adobe ARM"="c:\program files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2013-11-21 959904]
"iTunesHelper"="c:\program files (x86)\iTunes\iTunesHelper.exe" [2014-05-27 152392]
c:\users\HP\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\
Dropbox.lnk - c:\users\HP\AppData\Roaming\Dropbox\bin\Dropbox.exe /systemstartup [2014-7-21 35464216]
c:\programdata\Microsoft\Windows\Start Menu\Programs\Startup\
McAfee Security Scan Plus.lnk - c:\program files\McAfee Security Scan\3.8.150\SSScheduler.exe [2014-4-9 332016]
"ConsentPromptBehaviorAdmin"= 5 (0x5)
"ConsentPromptBehaviorUser"= 3 (0x3)
"EnableUIADesktopToggle"= 0 (0x0)
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\drivers32]
R2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe;c:\windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [x]
R2 MBAMScheduler;MBAMScheduler;c:\program files (x86)\ Malwarebytes Anti-Malware \mbamscheduler.exe;c:\program files (x86)\ Malwarebytes Anti-Malware \mbamscheduler.exe [x]
R2 MBAMService;MBAMService;c:\program files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe;c:\program files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe [x]
R2 SkypeUpdate;Skype Updater;c:\program files (x86)\Skype\Updater\Updater.exe;c:\program files (x86)\Skype\Updater\Updater.exe [x]
R3 IEEtwCollectorService;Internet Explorer ETW Collector Service;c:\windows\system32\IEEtwCollector.exe;c:\windows\SYSNATIVE\IEEtwCollector.exe [x]
R3 Intel(R) Capability Licensing Service TCP IP Interface;Intel(R) Capability Licensing Service TCP IP Interface;c:\program files\Intel\iCLS Client\SocketHeciServer.exe;c:\program files\Intel\iCLS Client\SocketHeciServer.exe [x]
R3 MBAMProtector;MBAMProtector;c:\windows\system32\drivers\mbam.sys;c:\windows\SYSNATIVE\drivers\mbam.sys [x]
R3 MBAMWebAccessControl;MBAMWebAccessControl;c:\windows\system32\drivers\mwac.sys;c:\windows\SYSNATIVE\drivers\mwac.sys [x]
R3 McComponentHostService;McAfee Security Scan Component Host Service;c:\program files\McAfee Security Scan\3.8.150\McCHSvc.exe;c:\program files\McAfee Security Scan\3.8.150\McCHSvc.exe [x]
R3 MOSUMAC;USB-Ethernet Driver;c:\windows\system32\DRIVERS\M7830A64.SYS;c:\windows\SYSNATIVE\DRIVERS\M7830A64.SYS [x]
R3 MpNWMon;Microsoft Malware Protection Network Driver;c:\windows\system32\DRIVERS\MpNWMon.sys;c:\windows\SYSNATIVE\DRIVERS\MpNWMon.sys [x]
R3 RdpVideoMiniport;Remote Desktop Video Miniport Driver;c:\windows\system32\drivers\rdpvideominiport.sys;c:\windows\SYSNATIVE\drivers\rdpvideominiport.sys [x]
R3 RTL8192su;Realtek RTL8192SU Wireless LAN 802.11n USB 2.0 Network Adapter;c:\windows\system32\DRIVERS\RTL8192su.sys;c:\windows\SYSNATIVE\DRIVERS\RTL8192su.sys [x]
R3 TsUsbFlt;TsUsbFlt;c:\windows\system32\drivers\tsusbflt.sys;c:\windows\SYSNATIVE\drivers\tsusbflt.sys [x]
R3 TsUsbGD;Remote Desktop Generic USB Device;c:\windows\system32\drivers\TsUsbGD.sys;c:\windows\SYSNATIVE\drivers\TsUsbGD.sys [x]
R3 USBAAPL64;Apple Mobile USB Driver;c:\windows\system32\Drivers\usbaapl64.sys;c:\windows\SYSNATIVE\Drivers\usbaapl64.sys [x]
R3 WatAdminSvc;Windows-Aktivierungstechnologieservice;c:\windows\system32\Wat\WatAdminSvc.exe;c:\windows\SYSNATIVE\Wat\WatAdminSvc.exe [x]
S0 iaStorA;iaStorA;c:\windows\system32\DRIVERS\iaStorA.sys;c:\windows\SYSNATIVE\DRIVERS\iaStorA.sys [x]
S0 iaStorF;iaStorF;c:\windows\system32\DRIVERS\iaStorF.sys;c:\windows\SYSNATIVE\DRIVERS\iaStorF.sys [x]
S1 iSafeKrnl;iSafeKrnl Mini-Filter Driver;c:\program files (x86)\iSafe\iSafeKrnl.sys;c:\program files (x86)\iSafe\iSafeKrnl.sys [x]
S1 iSafeKrnlKit;iSafeKrnl Kit Driver;c:\program files (x86)\iSafe\iSafeKrnlKit.sys;c:\program files (x86)\iSafe\iSafeKrnlKit.sys [x]
S1 iSafeKrnlR3;iSafeKrnl Ring3 Driver;c:\program files (x86)\iSafe\iSafeKrnlR3.sys;c:\program files (x86)\iSafe\iSafeKrnlR3.sys [x]
S1 iSafeNetFilter;iSafeNetFilter NDIS Driver;c:\program files (x86)\iSafe\iSafeNetFilter.sys;c:\program files (x86)\iSafe\iSafeNetFilter.sys [x]
S2 AERTFilters;Andrea RT Filters Service;c:\program files\Realtek\Audio\HDA\AERTSr64.exe;c:\program files\Realtek\Audio\HDA\AERTSr64.exe [x]
S2 IAStorDataMgrSvc;Intel(R) Rapid Storage-Technologie;c:\program files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe;c:\program files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [x]
S2 IconMan_R;IconMan_R;c:\program files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe;c:\program files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe [x]
S2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface;c:\program files\Intel\iCLS Client\HeciServer.exe;c:\program files\Intel\iCLS Client\HeciServer.exe [x]
S2 iSafeService;iSafeService;c:\program files (x86)\iSafe\iSafeSvc.exe;c:\program files (x86)\iSafe\iSafeSvc.exe [x]
S2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service;c:\program files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe;c:\program files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [x]
S2 RtkAudioService;Realtek Audio Service;c:\program files\Realtek\Audio\HDA\RtkAudioService64.exe;c:\program files\Realtek\Audio\HDA\RtkAudioService64.exe [x]
S3 BtAudioBusSrv;Ralink Bluetooth Audio Bus Service;c:\windows\system32\Drivers\BtAudioBus.sys;c:\windows\SYSNATIVE\Drivers\BtAudioBus.sys [x]
S3 BthL2caScoIfSrv;Bluetooth Profile Interface Driver Service;c:\windows\system32\Drivers\BtL2caScoIf.sys;c:\windows\SYSNATIVE\Drivers\BtL2caScoIf.sys [x]
S3 btUrbFilterDrv;IVT URB Bluetooth Filter Driver Service;c:\windows\system32\Drivers\IvtUrbBtFlt.sys;c:\windows\SYSNATIVE\Drivers\IvtUrbBtFlt.sys [x]
S3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS;c:\program files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe;c:\program files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [x]
S3 IntcDAud;Intel(R) Display-Audio;c:\windows\system32\DRIVERS\IntcDAud.sys;c:\windows\SYSNATIVE\DRIVERS\IntcDAud.sys [x]
S3 netr28x;Ralink 802.11n Extensible Wireless Driver;c:\windows\system32\DRIVERS\netr28x.sys;c:\windows\SYSNATIVE\DRIVERS\netr28x.sys [x]
S3 NisDrv;Microsoft Network Inspection System;c:\windows\system32\DRIVERS\NisDrvWFP.sys;c:\windows\SYSNATIVE\DRIVERS\NisDrvWFP.sys [x]
S3 NisSrv;Microsoft-Netzwerkinspektion;c:\program files\Microsoft Security Client\Antimalware\NisSrv.exe;c:\program files\Microsoft Security Client\Antimalware\NisSrv.exe [x]
S3 RSP2STOR;Realtek PCIE CardReader Driver - P2;c:\windows\system32\DRIVERS\RtsP2Stor.sys;c:\windows\SYSNATIVE\DRIVERS\RtsP2Stor.sys [x]
S3 rtbth;RTBTH Bluetooth Device Driver;c:\windows\system32\DRIVERS\rtbth.sys;c:\windows\SYSNATIVE\DRIVERS\rtbth.sys [x]
S3 RTL8167;Realtek 8167 NT Driver;c:\windows\system32\DRIVERS\Rt64win7.sys;c:\windows\SYSNATIVE\DRIVERS\Rt64win7.sys [x]
[HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}]
2014-06-12 00:33	1091912	----a-w-	c:\program files (x86)\Google\Chrome\Application\35.0.1916.153\Installer\chrmstp.exe
Inhalt des "geplante Tasks" Ordners
2014-08-14 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2013-06-30 00:59]
--------- X64 Entries -----------
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrive1]
2014-04-09 03:59	244696	----a-w-	c:\users\HP\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64\SkyDriveShell64.dll
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrive2]
2014-04-09 03:59	244696	----a-w-	c:\users\HP\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64\SkyDriveShell64.dll
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shelliconoverlayidentifiers\ SkyDrive3]
2014-04-09 03:59	244696	----a-w-	c:\users\HP\AppData\Local\Microsoft\SkyDrive\16.4.6013.0910\amd64\SkyDriveShell64.dll
2014-06-24 22:04	164760	----a-w-	c:\users\HP\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll
2014-06-24 22:04	164760	----a-w-	c:\users\HP\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll
2014-06-24 22:04	164760	----a-w-	c:\users\HP\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll
2014-06-24 22:04	164760	----a-w-	c:\users\HP\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll
"RTHDVCPL"="c:\program files\Realtek\Audio\HDA\RtkNGUI64.exe" [2012-12-26 6960864]
"MSC"="c:\program files\Microsoft Security Client\msseces.exe" [2010-11-30 1436224]
"IgfxTray"="c:\windows\system32\igfxtray.exe" [2012-12-14 172144]
"HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2012-12-14 399984]
"Persistence"="c:\windows\system32\igfxpers.exe" [2012-12-14 441968]
------- Zusätzlicher Suchlauf -------
uLocal Page = c:\windows\system32\blank.htm
uDefault_Search_URL = hxxp://www.google.com
uStart Page = hxxp://www.google.com
mDefault_Search_URL = hxxp://www.google.com
mDefault_Page_URL = hxxp://www.google.com
mStart Page = hxxp://www.google.com
mLocal Page = c:\windows\SysWOW64\blank.htm
mSearch Page = hxxp://www.google.com
uInternet Settings,ProxyOverride = *.local
uSearchAssistant = hxxp://www.google.com/ie
uSearchURL,(Default) = hxxp://www.google.com/search?q=%s
IE: Add to Google Photos Screensa&ver - c:\windows\system32\GPhotos.scr/200
IE: An OneNote s&enden - c:\progra~2\MICROS~2\Office14\ONBttnIE.dll/105
IE: Nach Microsoft E&xcel exportieren - c:\progra~2\MICROS~2\Office14\EXCEL.EXE/3000
TCP: DhcpNameServer =
FF - ProfilePath - c:\users\HP\AppData\Roaming\Mozilla\Firefox\Profiles\8h2jagw8.default\
FF - prefs.js: browser.startup.homepage - hxxp://www.bild.de/
- - - - Entfernte verwaiste Registrierungseinträge - - - -
HKLM_Wow6432Node-ActiveSetup-{2D46B6DC-2207-486B-B523-A557E6D54B47} - start
HKLM-Run-SynTPEnh - c:\program files (x86)\Synaptics\SynTP\SynTPEnh.exe
--------------------- Gesperrte Registrierungsschluessel ---------------------
@Denied: (A 2) (Everyone)
@Denied: (A 2) (Everyone)
@Denied: (A 2) (Everyone)
@Denied: (A 2) (Everyone)
@="Shockwave Flash Object"
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_14_0_0_145.ocx, 1"
@Denied: (A 2) (Everyone)
@="Macromedia Flash Factory Object"
@="c:\\Windows\\SysWOW64\\Macromed\\Flash\\Flash32_14_0_0_145.ocx, 1"
@Denied: (A 2) (Everyone)
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Office\Common\Smart Tag\Actions\{B7EFF951-E52F-45CC-9EF7-57124F2177CC}]
@Denied: (A) (Everyone)
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Schema Library\ActionsPane3]
@Denied: (A) (Everyone)
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Schema Library\ActionsPane3\0]
"Location"="c:\\Program Files (x86)\\Common Files\\Microsoft Shared\\VSTO\\ActionsPane3.xsd"
@Denied: (A) (Users)
@Denied: (A) (Everyone)
@Allowed: (B 1 2 3 4 5) (S-1-5-20)
@Denied: (Full) (Everyone)
Zeit der Fertigstellung: 2014-08-14  16:05:13
ComboFix-quarantined-files.txt  2014-08-14 21:05
Vor Suchlauf: 10 Verzeichnis(se), 389.897.842.688 Bytes frei
Nach Suchlauf: 14 Verzeichnis(se), 390.613.942.272 Bytes frei
- - End Of File - - 653974C43B45DB283E53E54C3ECD0BD6

Alt 15.08.2014, 12:37   #12
/// TB-Ausbilder
Windows 7: Proxy-Server reagiert nicht - Standard

Windows 7: Proxy-Server reagiert nicht

Zitat von donscholzo Beitrag anzeigen
Die nächsten 2 Wochen ist meine Internetverbindung nicht gesichert, also falls ich nicht antworte nichts dabei denken. ich bin weiter dabei
Alles klar, danke für die Information.

So geht es weiter:

Schritt 1
Folgendes ComboFix Skript ist ausschließlich für diesen User in dieser Situtation erstellt worden.
Auf keinen Fall auf anderen Rechnern anwenden, das kann andere Systeme nachhaltig schädigen!

  • Lösche die vorhandene Combofix.exe von deinem Desktop und lade das Programm von folgenden Download-Spiegel neu herunter: Link
  • Speichere es erneut auf dem Desktop (nicht woanders hin, das ist wichtig)!
  • Drücke die Windows + R Taste --> notepad (hinein schreiben) --> OK
  • Kopiere nun den Text aus der folgenden Codebox komplett in das leere Textdokument.

    c:\program files (x86)\iSafe
    C:\Program Files (x86)\enginesysTPL
    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved]
    [-HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\QuickEngine 1.0.1]
  • Speichere dies als CFScript.txt auf deinem Desktop.
  • Wichtig: Stelle deine Anti Viren Software temporär ab. Dies kann ComboFix nämlich bei der Arbeit behindern.
    Danach wieder anstellen nicht vergessen!
  • Schließe alle laufenden Programme damit ComboFix ungehindert arbeiten kann.
  • Ziehe CFScript.txt in die ComboFix.exe wie in diesem Bild:
  • Mache nichts am Computer, bewege nicht die Maus über das ComboFix-Fenster oder klicke in dieses hinein. Dies kann dazu führen, dass ComboFix sich aufhängt.
  • Wenn ComboFix fertig ist wird es ein Log erstellen: C:\ComboFix.txt
    Bitte füge es hier als Antwort (in CODE-Tags mit dem #-Button des Editors) ein.

Suspect:: und Collect::
Falls im Skript diese Anweisungen enthalten sind, sollen Dateien zur Analyse eingeschickt werden. Es erscheint eine Message-Box, nachdem Combofix fertig ist. Klicke OK und folge den Aufforderungen/Anweisungen, um die Dateien hochzuladen. Teile mir unbedingt mit, ob der Upload geklappt hat!

Schritt 2
  • Starte die FRST.exe erneut. Setze einen Haken vor Addition.txt und drücke auf Scan.
  • FRST erstellt wieder zwei Logdateien (FRST.txt und Addition.txt).
  • Poste mir beide Logdateien mit deiner nächsten Antwort.

Schritt 3
Lade dir die passende Version von SystemLook vom folgenden Spiegel herunter und speichere das Tool auf dem Desktop:
SystemLook (32 bit) | SystemLook (64 bit)
  • Doppelklicke auf die SystemLook.exe, um das Tool zu starten.
  • Kopiere den Inhalt der folgenden Codebox in das Textfeld des Tools:

    Yet Another Cleaner
  • Klicke nun auf den Button Look, um den Scan zu starten.
  • Der Suchlauf kann einige Zeit dauern.
  • Wenn der Suchlauf beendet ist, wird sich dein Editor mit den Ergebnissen öffnen, poste diese in deinen Thread.
  • Die Ergebnisse werden auch auf dem Desktop als SystemLook.txt gespeichert.

Bitte poste mit deiner nächsten Antwort
  • die Logdatei von ComboFix,
  • die beiden neuen Logdateien von FRST,
  • die Logdatei von SystemLook.


