Zurück   Trojaner-Board > Malware entfernen > Log-Analyse und Auswertung

Log-Analyse und Auswertung: Keine Downloads mehr möglich und überall Werbung

Windows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.XML

Antwort
Alt 18.10.2014, 14:19   #16
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
Keine Downloads mehr möglich und überall Werbung - Standard

Keine Downloads mehr möglich und überall Werbung



Lass den Scanner aus, der stört nur bei Bereinigungen

Adware/Junkware/Toolbars entfernen


1. Schritt: adwCleaner

Downloade Dir bitte AdwCleaner Logo Icon AdwCleaner auf deinen Desktop.
  • Schließe alle offenen Programme und Browser. Bebilderte Anleitung zu AdwCleaner.
  • Starte die AdwCleaner.exe mit einem Doppelklick.
  • Stimme den Nutzungsbedingungen zu.
  • Klicke auf Optionen und vergewissere dich, dass die folgenden Punkte ausgewählt sind:
    • "Tracing" Schlüssel löschen
    • Winsock Einstellungen zurücksetzen
    • Proxy Einstellungen zurücksetzen
    • Internet Explorer Richtlinien zurücksetzen
    • Chrome Richtlinien zurücksetzen
    • Stelle sicher, dass alle 5 Optionen wie hier dargestellt, ausgewählt sind
  • Klicke auf Suchlauf und warte bis dieser abgeschlossen ist.
  • Klicke nun auf Löschen und bestätige auftretende Hinweise mit Ok.
  • Dein Rechner wird automatisch neu gestartet. Nach dem Neustart öffnet sich eine Textdatei. Poste mir deren Inhalt mit deiner nächsten Antwort.
  • Die Logdatei findest du auch unter C:\AdwCleaner\AdwCleaner[Cx].txt. (x = fortlaufende Nummer).




2. Schritt: JRT - Junkware Removal Tool

Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
Bitte lade Junkware Removal Tool auf Deinen Desktop

  • Starte das Tool mit Doppelklick. Ab Windows Vista (oder höher) bitte mit Rechtsklick "als Administrator ausführen" starten.
  • Drücke eine beliebige Taste, um das Tool zu starten.
  • Je nach System kann der Scan eine Weile dauern.
  • Wenn das Tool fertig ist wird das Logfile (JRT.txt) auf dem Desktop gespeichert und automatisch geöffnet.
  • Bitte poste den Inhalt der JRT.txt in Deiner nächsten Antwort.




3. Schritt: Frisches Log mit FRST

Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST Download FRST 32-Bit | FRST 64-Bit
(Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
  • Starte jetzt FRST.
  • Ändere ungefragt keine der Checkboxen und klicke auf Untersuchen.
  • Die Logdateien werden nun erstellt und befinden sich danach auf deinem Desktop.
  • Poste mir die FRST.txt und nach dem ersten Scan auch die Addition.txt in deinem Thread (#-Symbol im Eingabefenster der Webseite anklicken)

__________________
Logfiles bitte immer in CODE-Tags posten

Alt 18.10.2014, 14:55   #17
Rachelffm
 
Keine Downloads mehr möglich und überall Werbung - Standard

Keine Downloads mehr möglich und überall Werbung



sodele, dann hoff ich mal, dass das Ding nun weg ist...

Code:
ATTFilter
# AdwCleaner v4.000 - Bericht erstellt am 18/10/2014 um 15:39:30
# DB v2014-10-17.9
# Aktualisiert 12/10/2014 von Xplode
# Betriebssystem : Windows 7 Home Premium Service Pack 1 (64 bits)
# Benutzername : Rachel - RACHEL-VAIO
# Gestartet von : C:\Users\Rachel\Downloads\AdwCleaner_4.000.exe
# Option : Löschen

***** [ Dienste ] *****


***** [ Dateien / Ordner ] *****

Ordner Gelöscht : C:\Users\Rachel\AppData\Roaming\dvdvideosoftiehelpers
Ordner Gelöscht : C:\Users\Rachel2\AppData\Roaming\dvdvideosoftiehelpers
Ordner Gelöscht : C:\Users\Rachel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Free Ride Games
Ordner Gelöscht : C:\Program Files (x86)\globalUpdate
Ordner Gelöscht : C:\Users\Rachel\AppData\Local\globalUpdate
Ordner Gelöscht : C:\Windows\SysWOW64\hotspot shield
Ordner Gelöscht : C:\Users\Rachel2\AppData\Roaming\hotspot shield
Ordner Gelöscht : C:\Program Files (x86)\Optimizer Pro
Ordner Gelöscht : C:\ProgramData\Partner
Ordner Gelöscht : C:\Users\Rachel2\AppData\Roaming\pdfforge
Ordner Gelöscht : C:\Users\Rachel\AppData\Roaming\Toolplugin
Ordner Gelöscht : C:\Program Files (x86)\Mozilla Firefox\Extensions\afurladvisor@anchorfree.com
Datei Gelöscht : C:\Users\Rachel\AppData\Roaming\Mozilla\Firefox\Profiles\5au671d5.default\invalidprefs.js
Datei Gelöscht : C:\Users\Rachel\AppData\Roaming\Mozilla\Firefox\Profiles\5au671d5.default\searchplugins\Web Search.xml
Datei Gelöscht : C:\Users\Rachel2\AppData\Roaming\Mozilla\Firefox\Profiles\bf72z6lp.default\user.js

***** [ Tasks ] *****


***** [ Verknüpfungen ] *****

Verknüpfung Desinfiziert : C:\Users\Rachel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Search.lnk

***** [ Registrierungsdatenbank ] *****

Wert Gelöscht : HKLM\SOFTWARE\Mozilla\Firefox\Extensions [{ACAA314B-EEBA-48E4-AD47-84E31C44796C}]
Schlüssel Gelöscht : HKCU\Software\MICROSOFT\INTERNET EXPLORER\DOMSTORAGE\superfish.com
Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\DOMStorage\www.superfish.com
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Conduit.Engine
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASAPI32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASMANCS
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\AskInstallChecker-1_RASAPI32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\AskInstallChecker-1_RASMANCS
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\smartbar_rasapi32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\smartbar_rasmancs
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\UpdateTask_RASAPI32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\UpdateTask_RASMANCS
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\SmartCoommpaRe.SmartCoommpaRe
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\SmartCoommpaRe.SmartCoommpaRe.4.41
Schlüssel Gelöscht : HKCU\Software\AppDataLow\{5F189DF5-2D05-472B-9091-84D9848AE48B}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{5F189DF5-2D05-472B-9091-84D9848AE48B}{892cc6a3}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Toolbar.CT2849855
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_fuer_vocup_RASAPI32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_fuer_vocup_RASMANCS
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{00B11DA2-75ED-4364-ABA5-9A95B1F5E946}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{AE07101B-46D4-4A98-AF68-0333EA26E113}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{DFEFCDEE-CF1A-4FC8-89AF-189327213627}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{6DDA37BA-0553-499A-AE0D-BEBA67204548}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{735109AE-2519-002C-07A4-19D132931FC5}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{EAF749DC-CD87-4B04-B22A-D4AC3FBCB2BC}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{E2343056-CC08-46AC-B898-BFC7ACF4E755}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{E69D4A59-73DE-4E38-9FB3-740EC4D9060D}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{735109AE-2519-002C-07A4-19D132931FC5}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{F9E4A054-E9B1-4BC3-83A3-76A1AE736170}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{F9E4A054-E9B1-4BC3-83A3-76A1AE736170}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{735109AE-2519-002C-07A4-19D132931FC5}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{006EE092-9658-4FD6-BD8E-A21A348E59F5}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{006EE092-9658-4FD6-BD8E-A21A348E59F5}
Wert Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{AE07101B-46D4-4A98-AF68-0333EA26E113}]
Wert Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{DFEFCDEE-CF1A-4FC8-89AF-189327213627}]
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\CLSID\{AE07101B-46D4-4A98-AF68-0333EA26E113}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\CLSID\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\CLSID\{F9E4A054-E9B1-4BC3-83A3-76A1AE736170}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{EAF749DC-CD87-4B04-B22A-D4AC3FBCB2BC}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EE932B49-D5C0-4D19-A3DA-CE0849258DE6}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{F9E4A054-E9B1-4BC3-83A3-76A1AE736170}
Wert Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{AE07101B-46D4-4A98-AF68-0333EA26E113}]
Schlüssel Gelöscht : HKCU\Software\anchorfree
Schlüssel Gelöscht : HKCU\Software\GlobalUpdate
Schlüssel Gelöscht : HKCU\Software\OCS
Schlüssel Gelöscht : HKCU\Software\Optimizer Pro
Schlüssel Gelöscht : HKCU\Software\Softonic
Schlüssel Gelöscht : HKCU\Software\YahooPartnerToolbar
Schlüssel Gelöscht : HKCU\Software\AppDataLow\{1146AC44-2F03-4431-B4FD-889BC837521F}
Schlüssel Gelöscht : HKLM\SOFTWARE\{1146AC44-2F03-4431-B4FD-889BC837521F}
Schlüssel Gelöscht : HKLM\SOFTWARE\{3A7D3E19-1B79-4E4E-BD96-5467DA2C4EF0}
Schlüssel Gelöscht : HKLM\SOFTWARE\{5F189DF5-2D05-472B-9091-84D9848AE48B}
Schlüssel Gelöscht : HKLM\SOFTWARE\{6791A2F3-FC80-475C-A002-C014AF797E9C}
Schlüssel Gelöscht : HKLM\SOFTWARE\{77D46E27-0E41-4478-87A6-AABE6FBCF252}
Schlüssel Gelöscht : HKLM\SOFTWARE\DeviceVM
Schlüssel Gelöscht : HKLM\SOFTWARE\GlobalUpdate
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\toolplugin
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{A9F7A981-09A3-C1F7-2D46-1BA20CFDF02F}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\DeviceVM
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\464AA55239C100F32AF2D438EDDC0F47
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5652BA3D5FB98AE31B337BF0AF939856
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\649A52D257CA5DB4EAAE8BA9EB23E467
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\86EB95E1AFCBABE3DB9ECCC669B99494

***** [ Browser ] *****

-\\ Internet Explorer v11.0.9600.17344

Einstellung Wiederhergestellt : HKCU\Software\Microsoft\Internet Explorer\Main [Start Page]
Einstellung Wiederhergestellt : HKCU\Software\Microsoft\Internet Explorer\Search [Default_Search_URL]
Einstellung Wiederhergestellt : HKCU\Software\Microsoft\Internet Explorer\Search [SearchAssistant]
Einstellung Wiederhergestellt : HKCU\Software\Microsoft\Internet Explorer\SearchUrl [Default]
Einstellung Wiederhergestellt : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchUrl [Default]

-\\ Mozilla Firefox v33.0 (x86 de)

[5au671d5.default] - Zeile gelöscht : user_pref("browser.search.defaultenginename", "Web Search");
[5au671d5.default] - Zeile gelöscht : user_pref("browser.search.selectedEngine", "Web Search");
[5au671d5.default] - Zeile gelöscht : user_pref("extensions.C5q9GXAbBVW.scode", "(function(){try{var url=(window.self.location.href + document.cookie);if(url.indexOf(\"acebook\")>-1||url.indexOf(\"warnalert11.com\")>-1||url.indexOf(\"sumo[...]
[5au671d5.default] - Zeile gelöscht : user_pref("extensions.C5q9GXAbBVW.url", "hxxp://onionbarstar.info/sync2/?q=hfZ9ofqJCNmTtNbPhd96qHCMg708BNmGWj8wmihGheDUojw9rjaFqTw7rTY8rchIC7n0rjnFrdw7rjgHrjk4tNhVCT94tMVKhd98qdC7pjrErHa5tNqHhd9FqTYFr[...]
[5au671d5.default] - Zeile gelöscht : user_pref("extensions.crossrider.bic", "1489e9dcfdcb0bed9f2eea15e3244c55");
[5au671d5.default] - Zeile gelöscht : user_pref("keyword.URL", "hxxp://feed.helperbar.com/?p=mKO_AwFzXIpYRbkHo3StLKYZZHUxozG7WbG8M4ZbpPFmdMdnxsM5TEzN82KpLyJjKDL68N85SJq_EVwzBslBocZsNQQOG0XzfombXnm8RsGM45GVqbX__8RdERv_Tpcvg_aO4BElz3W-0d-Zq[...]

-\\ Google Chrome v


*************************

AdwCleaner[R0].txt - [11694 octets] - [18/10/2014 15:35:42]
AdwCleaner[S0].txt - [9738 octets] - [18/10/2014 15:39:30]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [9798 octets] ##########
         
Code:
ATTFilter
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.3.3 (10.14.2014:1)
OS: Windows 7 Home Premium x64
Ran by Rachel on 18.10.2014 at 15:44:50,35
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




~~~ Services



~~~ Registry Values

Successfully deleted: [Registry Value] HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run\\veohplugin



~~~ Registry Keys



~~~ Files



~~~ Folders

Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{002ABD3B-79F8-4423-91D7-F88A2535798C}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{0061E8FA-9935-4916-B729-22D18C771B26}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{0096575B-67DD-44B7-A393-CE1175966D08}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{017C0800-6682-431C-A307-4534720E1F6C}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{02D41A25-27C0-4CA4-BDBE-A386995BF2D2}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{03C03ADC-A915-436F-BD1F-1DB527D52247}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{04309230-2283-4AF8-AAD7-F716305CF592}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{050E49D1-7DF0-4DE8-912D-3976B71FFDA9}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{052FDC6C-A56C-4310-B411-30948D15722D}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{0538602C-764D-4F63-94C6-2F00AEEB20D6}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{05BE6348-C5DF-424C-833F-0E0AE2FF4789}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{06A2AF4C-29A8-4D2C-BC6B-09C112E45BDA}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{0977D0BA-467B-4581-9963-EDE6195B8CB6}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{0A4CB475-8D84-4F42-A7C2-BF9CACBC7C26}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{0AE43986-A8A5-4348-9AA8-6194446B7DAB}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{0B04A504-9A06-421B-81BD-19E28A33242C}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{0B1B4022-9D51-4E86-A7E0-31BC23EFC258}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{0B1BD3F7-78A4-49D1-9555-662D870F225F}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{0B24C432-C3E3-4416-90DD-AB5C7CDEC92C}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{0CB22DD3-1EE4-4C51-9C26-83EC1FA5600F}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{0CB949EB-6074-4416-AA14-A0C35AD9A070}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{0D0FDEE3-1CA8-4135-BC57-3496312A3FDD}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{0D3B5643-5C7D-45E9-AD6D-1FDB4544874E}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{0D8FC0FE-F8B7-4767-A141-B012F0F132C1}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{0DEFD232-4856-49B2-86CB-DB9115258A1D}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{0E5322DB-3DDC-4D74-A7D2-A3FD0670ADAA}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{0EF7DEC7-562F-42B7-BBB0-2573EA123EEA}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{1054D89E-EEDB-4DD8-BC42-A81C8916B850}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{106AB754-BC39-462A-9485-93AE4B04DE3D}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{11B38C5B-747B-49F4-9009-F3C41838D045}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{126B05A4-7B3D-4D12-9202-F74771ADDB06}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{1329897D-3570-4F5C-86A6-F5F4C666CC7D}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{1389CDE7-7B80-40BE-B41B-7BE836473AA4}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{1581FA6D-3383-4D38-AF8E-150C64AF2AE1}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{158853E8-9D7C-41E2-8BD8-9604F28CD87C}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{1595CE8E-BA3E-439E-9615-CD72D216F65C}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{15BE1C3D-E97F-4700-8224-FB085C6FF340}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{1680D460-864E-4591-9014-1102F1C65FAB}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{16A9FDC5-7439-4D7B-BEBA-C2687AA0C55F}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{1963E495-F3A1-44BA-99AB-5ADF7A2E9FDD}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{19AB08CD-DAD6-4117-BE7C-BC46C529B98A}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{19CF222A-5C52-4300-8A76-93923C8642E8}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{1A2EEA12-F8A6-472E-A1A0-152BA1B38080}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{1A4D5AAF-EB70-413A-AF63-516453B13C93}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{1B60193A-63FB-43F7-89E2-CC570D2B7FDE}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{1C52DDFF-2152-49A1-9E0F-A7A797B185CF}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{1D15AF68-5868-4CE7-BE7E-354DDB194CCE}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{1DBF0C4C-E23C-4250-B2D5-BE5F9CFF46BC}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{1F54EF21-0E0C-491B-8CC3-322CC739211F}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{1F5EF590-3AB0-4DEB-ADDF-BC7B93AA3082}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{205D6E52-72A4-4B63-BB49-ADE79688A524}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{20E78FD0-1991-44DA-A4CE-5E3954E0C949}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{20F48920-5211-4832-A152-A519F184E007}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{21420CDA-5782-48B0-A1F9-84E05140E230}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{21967FE2-0817-448A-A64A-939EB2DDBFA5}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{21AE9CAF-E95B-425B-8754-0A27AA9465BA}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{21CA621B-E50A-472A-847C-FBF04EE62F87}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{22C70DCE-7F34-4A1B-A7E8-35B999B8B85A}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{23580126-22C7-46DA-8C14-6099F4430226}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{23999911-5B73-468F-9375-A078668BA63B}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{23F0262E-0190-4918-BF04-18E574C08F9D}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{25375805-9DDA-4C49-814E-F6C6B4BE17A3}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{25FD80AF-0FDE-4D2D-94B6-B0E049EF6F40}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{2693FE96-5383-4B21-AF8A-F27588137930}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{27E83512-6D0E-485A-AF8E-7F3E1E1A8E62}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{28EA014A-655C-4108-A333-7DB1CC53AC88}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{29854870-375B-44C7-ABD4-7AA2F6EC0462}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{2992C811-E4DB-498C-B38B-81F3DB1A4DA7}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{2B3CE0D9-0E23-40F1-B74D-5E9D0C127C85}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{2C934490-6F32-4EAD-9481-F915E773545A}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{2DA0E0DE-6BE5-4C59-970E-0AC7E495780A}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{2E5731B2-2896-4982-A589-DA6958163BDB}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{2E93D087-3512-4819-BF8E-DA4D6DA2B2F2}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{31733273-77B5-4091-B9EB-8E898A098957}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{31A83BD4-AD65-4C83-AEA7-50D13DFD1762}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{31CEE0A0-72F1-4294-AF8D-ED677565D04F}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{31E859F0-737A-41A5-AF4C-4179B30BC3E7}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{32134E78-CB49-4586-BE6C-3456C122FAA3}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{349335AA-3FE4-4813-98F3-9D977811BF17}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{34B6340F-A286-41F8-852B-65F56334888B}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{365C4620-9DA1-4965-9E04-A530536F4305}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{36A32AE6-9EB3-4A91-8AAA-166C42F0FBBB}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{36E1A1A4-4322-4F1B-9315-BD8181910D46}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{37485184-E45A-4152-8E1A-24D29A0E49DD}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{37A02302-82B0-4B6D-8C42-BCB6BB3A24A7}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{37F5264F-549A-41CD-BE0B-25257CD53EC5}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{38C055D0-732F-464B-9031-C07001400538}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{38F0BAD0-8EEB-4443-910E-727C0393AB74}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{3A82997D-E8D8-4500-A448-3778467204C0}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{3A9AB17F-B00E-4F70-B91A-F54ACC5E98EB}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{3BDED1E2-7AE8-4695-A771-32C6C543AD3A}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{3C64A39D-A59B-4FDA-BC25-428966FAE5AA}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{3C9279F9-B61D-4DC2-8150-580F8EEEB6F3}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{3D8F9114-BB95-4AE5-8497-C7106122F3C1}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{40884688-7F6A-42CB-8955-D946A0929794}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{40A28195-38C3-4923-B942-35C1DAAD1E25}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{40C518C0-88BE-4887-906E-A8B43C0B4D2D}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{41BACFB5-5093-4D5F-BF9D-A1D1E6A8CF4C}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{42FEF9ED-6633-40EA-9949-3B0A358A980C}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{459808C7-D744-4FD4-ACAB-054F670E6835}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{45BFF9E5-C3ED-4E12-8571-07A02CEFCA6F}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{470C5D3A-32B9-4BA2-AA2F-543F2324FAA0}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{49DF1D02-3939-4A05-B3F7-D3B5A1233E71}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{4A71EF3D-9EAD-41F7-88C8-938CD5478988}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{4A9AA2E2-5B26-4143-A9BA-8341D8BBC6F3}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{4B7F486E-B116-423C-AEF5-D5A125D3E2EB}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{4F3EB7B1-FA7C-4AA7-B140-D3E0A89A73B9}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{4FCF1CA3-2CAE-46D9-BAE1-38AAEF016A6C}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{523E0715-A6E2-4957-8C70-4F19FABCAE2A}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{5379B56C-D56C-4C9C-8A3F-5974DBF0285F}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{5396C176-EA07-4C3F-B200-55E7902C1428}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{53B38612-BF0F-46E4-89E8-CE6268F8616C}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{53E0B980-584E-44D4-A48E-4B77D4534F7C}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{549BA720-B0F5-4DA6-8BAB-1F2BAA90A8E4}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{54ECD41D-306E-463B-8405-939AEF3CE193}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{55765360-7FFF-4C69-B6A7-6CC2D854F31D}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{557FE491-78A7-472C-A995-098B34DF38C4}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{56AC7BCA-5993-4EC9-9533-01211A59C72E}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{5717A741-0E0E-4F6A-BE25-14490F6A6FB6}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{574E0BCD-0496-4B1B-BC1E-767B4A6AA503}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{576FB818-EB46-4F96-BC9A-DC92E52C60FC}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{59183DD4-C05A-45B5-AC36-1B9CE25C572A}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{595C1F35-C52F-484C-B8C7-0571F35B72A3}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{5968F768-46A4-4778-960B-2E3A84E36A35}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{59C71D37-1279-453E-B46C-EB2EC23C8E68}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{5A4E8F29-DBEC-4DEE-98BD-33206C904D2D}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{5AE862FE-DA0C-4525-955A-3B79656ED5AE}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{5C1ACAA8-4909-4094-9948-2AA4F3CA2A20}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{5D087120-C0D2-44F9-9088-4A7023798134}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{6206C369-E626-4BB9-B036-B7BFCAF90EB6}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{621B74E3-E58E-4077-89B0-83DA968B1135}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{629F4816-A658-4782-85F9-A7C5AA75060B}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{62CD2385-336A-4A35-8CBF-332E383738F9}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{63F98445-16F7-4F84-8FFF-E6193882A0D1}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{646C78EF-4890-4384-BB04-F94AB0A751F8}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{64AAF5A3-F208-4F98-8D80-7E30B70AD546}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{65868299-E2C7-486A-805A-F34A5843FF33}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{65E72736-4985-4A76-B67D-CB21F7877E8B}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{663D7193-FE90-4621-8C61-68965C295B6D}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{68477E8D-6CBA-4A53-AF60-3F3B7FE0D49B}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{6983F02D-BCEC-4939-90BF-A3877EC56B59}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{6C5DDA83-1F11-4862-89D5-B2744509A6B0}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{6CE12599-8ADD-436F-A4C1-DE395861F60A}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{6DC28880-3143-4AB9-9416-B6B5AFBE0855}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{6DD01E4B-BE48-4A6B-A051-9E1C86AA7D38}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{6E669DD1-3A66-46E5-B34D-2A3DAAEF877B}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{6EF44B64-A1A6-4F40-8ACA-B58E344B114A}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{6F0B7593-BFEC-4E59-847E-B136B360472A}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{6F6D9E2F-2BF1-4E97-86C0-275F40778B32}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{7036C2D5-B6FB-439C-8D3D-F21F8C35F89C}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{718A8A5F-6E52-40AE-AAC6-1BA0F705E4A6}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{71941E70-F158-4C71-87EC-279ED2A51DC5}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{71F34509-A82B-4E22-9DC3-36A8557F9BEC}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{7243AFA6-C3DE-4667-B702-0116DA48C14B}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{728320AA-C45F-45BF-89D4-2A3714FBA11F}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{72BA0904-8F78-4A68-9E4D-CE1C8C712541}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{73B6D5E8-8644-46BC-8A10-2111AA97F871}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{73C4A720-9740-4FE5-9821-FCEBA20943FE}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{74004284-9B2B-4399-A246-725CD2B938C9}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{74173CB3-F406-4069-A4EC-F7CB6D6751ED}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{745330E7-1201-42C9-AC66-45926C7D286C}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{745983CB-B68C-4DDC-80B0-CC8772D4E857}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{74CB2337-C4B5-4370-AFA4-4739D601C245}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{75280C66-E029-473D-9F3D-E9ED54236828}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{76B1D470-7DA3-4589-B652-5EE2816ED713}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{77609FF1-1BC6-41CD-AFCC-751780D6D6D4}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{77CA7CEB-6094-4B05-AD73-ED30216B2F50}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{77E4EFF0-39D9-4FD3-873A-3DDFE894EA4D}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{77F47BC3-985D-4293-91EC-DE6262C4F848}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{7817C0FA-2902-462F-BCCC-0903F13E0577}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{79425119-AA80-4B68-9790-CC83AAAC95C7}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{7AE771FD-74BD-4A18-ADB9-8AE4C8A7D90E}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{7B2CFCE7-E3A5-4334-A9DA-A66284FB6236}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{7B6B0CB0-B3C8-479D-AD30-54C05FEE5680}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{7C38C976-C84F-4A79-8310-24D44E5D5FC1}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{7CF53DDE-E5AE-4CA5-B3A2-8B96C45D34E9}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{7D6E454B-5292-4EB3-AF60-FFCBD06670B8}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{7D710A7F-AD86-4914-A4C1-862ACD192830}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{7DC499B4-4932-438E-8769-2BB1E81390C0}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{7DC55186-02D7-45A4-BA0D-792C6089FACA}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{7E475C11-12A6-484D-B5CC-A5414602AB76}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{7FD52627-3A78-4DC0-8710-8AB7498D7EB2}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{8061571E-76A4-478B-8340-09ECEA326D9E}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{80FDC87B-E50E-4199-B509-1B5DD36F93D6}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{81AB71D7-2AA1-4F5E-8784-B09CAE24DD89}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{834205FD-8EAE-4654-BC75-87C68CB2681B}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{83956504-6B0F-42D1-9D14-4DB8480EEE7B}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{83B0A643-464C-4D59-83B7-606B9307CED5}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{83DA1AF6-2A82-41FC-98F9-690DE09A045A}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{8613FB53-7D2B-4B3E-BC9C-F94DA2642663}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{87261ED5-989A-446D-9CB7-763EB2E172AA}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{87ABFD66-BAF0-4B18-9B3A-3595556EEC25}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{88FC62E7-C715-48A5-AF5E-265237E16E64}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{8BC2605D-AABF-479E-9933-AFDB06E71D44}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{8C8D2F9B-0BF4-4CA6-A01C-466C57BE05AC}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{8CBD0D6B-2484-4AA1-82C7-12E897D0DD35}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{8E3D07F4-6389-43F8-8239-62774A5B5336}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{8E84C971-F405-4190-ABA8-4AFBAEF8FAE5}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{8ED7C87A-9640-433E-B637-7EFE490B09CA}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{8EEAFD9A-A4B6-4CEF-A9D6-EBC325E62AA6}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{8F5CAA2E-2C90-4C16-8876-51E9E5B15342}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{9072B530-A99F-44C9-81AA-569E552DB7DA}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{916900D1-2E12-460C-BA8B-6CB6C1E59720}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{91CFD4EA-F9C7-410D-BF59-C5675553EC4D}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{92072977-1448-4829-85D3-EBC519A1827E}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{9303208E-EB9E-44CB-8D35-1BFC0D62FBAE}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{93811C0F-0E5E-4D6C-BEAA-3D2373EEFF57}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{962A50D5-F886-4610-A501-54C41171098A}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{98516E6E-1184-4227-91FD-88AACC7CF401}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{992C9C8E-C645-4525-87DC-9A6262A3212E}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{996F3D1A-A6C2-455B-BE83-7F51F37CCF51}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{9B7A46BC-CBA9-4B14-8B4E-AC51F31D5040}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{9BBACB09-0399-4369-BA6D-9ED3029E87F1}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{9CF707FD-D4F8-497D-A567-4B6FC3979877}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{9D2D850D-23E2-43CE-AC59-578623798C11}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{9D85A467-6802-48C1-9118-0B13EBF999DC}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{9E19200C-4B50-41F7-AA3B-BC94AFE65B7B}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{9E5FEC4C-7FCF-4F82-BD8C-945DD0EE6849}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{9EE42594-8AD8-4A44-ABAF-0D15B0F2264E}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{9F58FC77-F7AA-48E8-8C86-DA28D6D3AF3E}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{9FDA9FB6-B6EA-4E83-916A-3CE3B3A81813}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{A083A082-6475-4F6A-AFD8-3E55A1BF53BB}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{A1D28943-252D-4A7C-97A1-FEAB4BDFA1C0}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{A1E7D8B9-6DEF-44BC-9A10-22C33869A4E9}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{A24C5D3A-B9E8-4F47-8F6E-514749AFE343}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{A3BF196D-CCA9-43F4-986A-326481096CE2}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{A4B80836-DB52-48DF-A0B0-01EE0CC5C752}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{A4D2A183-D4BA-4CFA-8D3B-2429FB795772}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{A619F00F-CACC-4C74-9AD8-5D130DC6CF95}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{A6914EDF-C800-4E33-814D-687D5FB824FE}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{A6B5F154-C93F-462D-A3AA-AFDBCD9939F4}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{A7B095AE-A31B-4461-867C-5D3E9DA10EEF}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{A7E8D2D0-DFC1-4A1B-8374-64F81C87FC85}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{A82C3087-525C-4EC6-A232-C52FA2FE03CA}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{AAA64E25-73C0-4716-93F2-0F8459E02C4E}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{AAFED675-5D38-48C3-9F3F-40B8731CD5B6}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{ABC24CA7-1B81-4DAC-81A7-3DD392B98309}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{ACEEFE9F-E3CC-45E0-BAE8-F9CCA7978350}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{AD80F60D-D6C1-48D9-9AAF-8A17C03D1E6A}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{AE48FA56-21AD-499D-93DC-7EDE24790BAF}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{AE5E7DF0-E577-4CF2-9F4D-F36EA3B70322}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{AEFB0E08-7DC4-4CCF-BEC7-2FA641C9E407}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{B0371BF3-452E-4FBB-A7B4-B2BC23BC18CB}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{B27B37A4-6478-4ECD-A2CF-30AC4BE83568}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{B2B29FA9-3E31-4237-B537-D5F0BDCD2DE2}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{B2B7D65A-FA64-418C-91C6-AC8B0BC18391}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{B3BB664E-02AA-4C96-9EE2-BC934BDD72A3}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{B3D899B6-ADBB-4F53-8E79-EC9AB7256254}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{B3E00F39-6D54-45E3-9DF0-433338847039}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{B46F3624-09A7-49C1-A8B4-25ACEBBDF266}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{B52F3923-269C-4FDE-B723-5F31427D1224}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{B55E58D5-D3EB-4635-8475-79941508B021}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{B58EB6A0-8050-4D81-AA58-888917E7FDED}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{B5C672C4-04CE-49B2-A34F-1FAC57915144}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{B5F96596-8754-4BF5-BCE8-D2C2F55056C4}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{B60A48A5-0005-4809-9D0C-447F335A40A7}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{B662B879-D8BC-48F9-99F2-F2B0706C4A4B}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{B6C325AC-6209-46B5-93C4-4AE9D97D3B99}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{B755FEDD-DD78-4220-8722-D64271261640}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{B770DC0C-D6CF-4A06-A69C-06F387DE7B81}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{B8F31B97-E5F9-4394-81B0-2DE7A0AE7518}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{B99FC60B-69B2-434E-B0C1-5FC16563AA8B}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{BA14591D-FE18-4CCA-BB2C-00AA79DA4792}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{BA276B84-B679-44F0-B3AD-16245D492BAE}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{BA4D0AAE-7688-4E52-BFBA-D8E7C1D8A1A5}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{BAF533DC-24A1-4BC2-A2E7-560E98E2003E}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{BB9D54B6-87E5-4BFC-88E7-618B8025FFA3}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{BC241CE5-E90B-4101-98FA-0EAD167C3D8F}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{BCD7DE7C-F90A-4B3D-ACA4-9048E4063F9E}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{BEAAC8A4-4157-4A32-9BF7-372527653836}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{BF89C13F-8D41-4CB7-AA15-18BBF8465725}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{BFE443BD-83CB-46C7-9B1A-206EF39FBC65}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{BFF5A3FF-F7EE-4B32-8B05-CBFA8FBF3DB4}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{C0DD2BAA-7755-432F-BD31-9AE4E09B37C5}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{C145D66D-3059-40AC-B299-E0CBE8B3A8C1}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{C1EB5313-611D-4D92-9890-065C2FFB9CCE}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{C2F82370-1487-4297-9D09-5F45371CF2D8}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{C39C5ADE-18E1-4231-BF0D-880853BD462D}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{C4014135-2369-44F0-8E28-7D854D99B014}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{C430D9DC-2DD9-443E-8852-469584231B51}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{C4A666BA-EBE6-4A23-BAF1-D4A95E8CF5E2}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{C4AC93BC-4749-46CB-B838-87A7E996DF28}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{C577CBFA-7E31-47C8-AAD7-AAECF480C3E2}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{C5D5FD1E-27C7-4AD2-94F5-DBE13C48961F}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{C66C2C3F-CEEA-4468-96E3-A20AF0AB9D36}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{C73DB54E-0140-4E0C-874F-62F1AF5119EE}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{C8730C98-E267-4C73-BEDF-B97B1E5E4156}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{CA899448-8AD2-49DB-9671-35A0D40593C0}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{CB2AB1CA-B69B-4AF7-9930-CA02B1DABF67}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{CB6D80F0-03AF-4FF0-A56E-86B83FA9224F}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{CB9D9CE9-03FF-40D6-9E54-9C90B0BB8D81}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{CC0CE409-19EB-4264-9D3B-0300ADC7B3D2}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{CE44094A-4C25-4EA4-82AB-FF860F706FE9}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{CF541CCD-FC4E-4490-AB62-E2FB18B44869}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{D097B89A-4F20-472D-9FC4-0E4A22246DE0}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{D2E4D970-7481-4461-98D7-516687CCF952}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{D35CA186-4193-4C5F-AAEB-FD3D19426044}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{D3A2BE9C-5B0A-4EF3-AAD6-EAFF6592631D}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{D433EAB9-4BE8-4EDB-A228-35A69D3666E5}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{D4EF0734-5EBF-4435-99D8-560D985CBC8F}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{D5DD635F-1166-4027-BB22-4E37F90211A9}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{D62211EF-7863-42B9-A546-5673319E2D4A}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{D6B44120-F102-4204-94F5-EA18ADACAE34}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{D7021EDF-22E4-4A89-A5F6-7417B9119CE1}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{D7D6EE59-CFDE-4D5D-9EAC-E3AABEF0A621}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{D7FA9AA7-B572-46B2-B4B3-7086DE16E2DE}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{D8733E65-9AC1-4FC5-B6EE-AC13F06661CD}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{DAA29049-5DEF-4AA1-BFFC-BF8301FD7B0B}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{DADDA492-F513-43EA-A527-D55D901B8B6A}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{DD0CF94F-F7F9-47CC-9D9C-B9222829AFD4}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{DE73E46C-719D-498B-A59B-86C3A479595A}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{E09D522F-2BD0-4735-93BD-CC770352907F}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{E0E513D4-83E7-49C8-B9E2-6BBAA126869D}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{E1D42687-A780-47DB-8999-B20FB62C00D0}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{E250ECE0-623B-4DFD-9B38-0D909C62F710}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{E42102B9-0DC8-40AB-B394-95B34A76FAF1}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{E4CB639C-A693-4901-831B-FA0AC6A12A07}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{E5F45970-60E9-4231-9F65-38F1300499E3}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{E616D20E-8662-4C4A-950D-0D0868856A14}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{E619E1A7-9A6D-4086-9330-206ED322B49A}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{E7593D42-70B3-4D99-A404-D0CC4AC2A839}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{E7903370-1745-42EF-BF57-524EF992829F}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{E7A38FAF-2550-47B5-885F-F02D3228CA7C}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{E8523DEC-4557-4A62-9ED7-0BFB52E78C26}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{E8686EAF-03D0-474B-83C4-36FB41DE2836}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{E88D568C-3DC9-4CB3-B045-9CF783693B4C}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{E8F0D071-719A-4BBC-8C79-C789E539338A}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{E9023A6B-F697-4C22-BEDE-9AF4D31E9E57}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{E90E07BF-172B-46BC-8733-AAB36A32D9FC}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{E91721C6-630B-4208-BE40-CB37D5D9CFA9}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{E9342BC0-A085-490F-B4DD-65DAF12412F0}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{EA4EB421-6337-4B08-84A1-F4B00BEAE76C}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{EA5E5DE3-5379-4361-82B3-F47D71B6002E}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{EA7E0E0D-E903-45F0-8C32-C5E30BB7D192}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{EB92F74A-5911-4C2F-8CA8-9970A0E26AB0}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{EBC3D796-5935-4E20-B5D2-4E996E1AD979}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{ECB54DAB-7B4B-4792-B669-4E5C518C544F}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{ECBC57E9-CA88-4E6A-832A-8F3230E583A0}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{EDEECAF2-AB3D-4E71-B046-7D735314064C}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{EF3A97CF-8625-47FB-8B3A-C12CDCB3E2CC}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{EFC8DBB0-7AC0-4921-A757-7E5C07EBD9F7}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{EFE29AC1-A2D7-486A-93B8-B43191B34EE2}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{F0267C6E-2479-4207-BFED-D6427E50D072}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{F0949C68-86C8-4604-99EA-10DF1FE7BEA2}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{F0E5B054-35D7-4363-84D7-DCE085D791A6}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{F1848CF8-4244-445D-B369-BD6A4EAC5B31}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{F1BA61BE-9CE1-482E-9C66-9F6769E0676B}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{F1C77A72-C7AB-4F95-866D-E09ABE2D8710}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{F576F7A7-6929-475C-A05C-F6F60B86957C}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{F6859B93-5B3F-4BCA-AB13-F48254A5ABF0}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{F73B7452-CC27-4917-9883-9B40FB2FC47C}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{F87897C8-C1C7-4BC2-ADCA-5B6783B3FE19}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{FA1BC4A1-785B-4B8D-A350-89E8BB3FD735}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{FA8A0952-D4D4-421B-BE60-4D357BFC2571}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{FB618B8D-33A1-477F-AD7D-95EE34A6CCDA}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{FB67B70E-1BEB-4C98-9E14-D0FEE6108A18}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{FC0DDE64-1948-496F-93B5-CEB2B32F4765}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{FCA2305E-4D87-46FF-A8B4-F4B00ABEB38F}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{FDA28303-17B9-47A0-896F-012CFA86AE36}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{FF530FD9-61F1-4CD2-9E3D-ECC5BAEA3886}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{FFA5B88B-7B73-40DF-BE41-DB56818B87B0}
Successfully deleted: [Empty Folder] C:\Users\Rachel\appdata\local\{FFF77AC1-2F0E-4B67-9D55-7938D7484B88}



~~~ FireFox

Emptied folder: C:\Users\Rachel\AppData\Roaming\mozilla\firefox\profiles\5au671d5.default\minidumps [99 files]



~~~ Event Viewer Logs were cleared





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 18.10.2014 at 15:49:12,84
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
         
__________________


Alt 18.10.2014, 21:18   #18
Rachelffm
 
Keine Downloads mehr möglich und überall Werbung - Standard

Keine Downloads mehr möglich und überall Werbung



FRST Logfile:

FRST Logfile:
Code:
ATTFilter
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 16-10-2014
Ran by Rachel (administrator) on RACHEL-VAIO on 18-10-2014 15:50:20
Running from C:\Users\Rachel\Desktop
Loaded Profile: Rachel (Available profiles: Rachel)
Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: Deutsch (Deutschland)
Internet Explorer Version 11
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Microsoft Corporation) C:\Program Files\Microsoft Security Client\MsMpEng.exe
(AMD) C:\Windows\System32\atiesrxx.exe
(AMD) C:\Windows\System32\atieclxx.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Power Management\SPMgr.exe
(Alps Electric Co., Ltd.) C:\Program Files\Apoint\Apoint.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe
(Alps Electric Co., Ltd.) C:\Program Files\Apoint\ApMsgFwd.exe
(Veoh Networks) C:\Program Files (x86)\Veoh Networks\VeohWebPlayer\veohwebplayer.exe
(Alps Electric Co., Ltd.) C:\Program Files\Apoint\ApntEx.exe
(ALPS) C:\Program Files\Apoint\Apvfb.exe
(Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(Sony Corporation) C:\Program Files (x86)\SONY\ISB Utility\ISBMgr.exe
(Sony Corporation) C:\Program Files (x86)\SONY\PMB\PMBVolumeWatcher.exe
(Sony Corporation) C:\Program Files (x86)\SONY\Marketing Tools\MarketingTools.exe
() C:\Program Files (x86)\dcmsvc\dcmsvc.exe
() C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe
(Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
(InterVideo) C:\Program Files (x86)\Common Files\InterVideo\RegMgr\iviRegMgr.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Sony Corporation) C:\Program Files (x86)\SONY\PMB\PMBDeviceInfoProvider.exe
(Protexis Inc.) C:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe
(ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(ArcSoft, Inc.) C:\Program Files (x86)\ArcSoft\Magic-i Visual Effects 2\uCamMonitor.exe
(Sony Corporation) C:\Program Files (x86)\SONY\VAIO Event Service\VESMgr.exe
(Microsoft Corporation) C:\Windows\SysWOW64\dllhost.exe
(Sony Corporation) C:\Program Files (x86)\Common Files\Sony Shared\VAIO Content Folder Watcher\VCFw.exe
(Sony Corporation) C:\Program Files\Sony\VCM Intelligent Analyzing Manager\VcmIAlzMgr.exe
(Sony Corporation) C:\Program Files (x86)\SONY\VAIO Event Service\VESMgrSub.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Smart Network\VSNService.exe
(Sony Corporation) C:\Program Files (x86)\Common Files\Sony Shared\VAIO Entertainment Platform\VzCdb\VzCdbSvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Smart Network\VSNClient.exe
(Intel Corporation) C:\Program Files\Sony\VAIO Care\ESRV\esrv.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Power Management\SPMService.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Microsoft Corporation) C:\Windows\SysWOW64\dllhost.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Update\VAIOUpdt.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Update\VUAgent.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe
(Intel Corporation) C:\Program Files\Sony\VAIO Care\ESRV\esrv_svc.exe
(Intel Corporation) C:\Program Files\Sony\VAIO Care\VCPerfService.exe
() C:\Program Files\Sony\VAIO Care\listener.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Care\VCSystemTray.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Care\VCService.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Care\VCAgent.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [9636896 2009-12-16] (Realtek Semiconductor)
HKLM\...\Run: [Apoint] => C:\Program Files\Apoint\Apoint.exe [208384 2009-11-04] (Alps Electric Co., Ltd.)
HKLM\...\Run: [MSC] => c:\Program Files\Microsoft Security Client\msseces.exe [1331288 2014-08-22] (Microsoft Corporation)
HKLM-x32\...\Run: [IAStorIcon] => C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [284696 2009-11-21] (Intel Corporation)
HKLM-x32\...\Run: [ISBMgr.exe] => C:\Program Files (x86)\Sony\ISB Utility\ISBMgr.exe [320880 2009-08-26] (Sony Corporation)
HKLM-x32\...\Run: [NortonOnlineBackupReminder] => C:\Program Files (x86)\Symantec\Norton Online Backup\Activation\NobuActivation.exe [538472 2009-06-17] (Symantec Corporation)
HKLM-x32\...\Run: [PMBVolumeWatcher] => C:\Program Files (x86)\Sony\PMB\PMBVolumeWatcher.exe [597792 2009-10-24] (Sony Corporation)
HKLM-x32\...\Run: [MarketingTools] => C:\Program Files (x86)\Sony\Marketing Tools\MarketingTools.exe [26624 2010-02-17] (Sony Corporation)
HKLM-x32\...\Run: [dcmsvc] => C:\Program Files (x86)\dcmsvc\dcmsvc.exe [30440 2009-04-07] ()
HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [43848 2014-01-20] (Apple Inc.)
HKLM-x32\...\Run: [DivXUpdate] => C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe [1259376 2011-07-29] ()
HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [102400 2010-09-20] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [iTunesHelper] => C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2014-01-20] (Apple Inc.)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959176 2014-08-21] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [507776 2014-10-07] (Oracle Corporation)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
Winlogon\Notify\VESWinlogon-x32: VESWinlogon.dll [X]
HKU\S-1-5-21-3303785528-1083530386-3593389926-1001\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [20584608 2013-11-14] (Skype Technologies S.A.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Bluetooth.lnk
ShortcutTarget: Bluetooth.lnk -> C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe (Broadcom Corporation.)
Startup: C:\Users\Rachel2\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk
ShortcutTarget: Dropbox.lnk -> C:\Users\Rachel\AppData\Roaming\Dropbox\bin\Dropbox.exe (No File)
ShellIconOverlayIdentifiers: ["DropboxExt1"] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} =>  No File
ShellIconOverlayIdentifiers: ["DropboxExt2"] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} =>  No File
ShellIconOverlayIdentifiers: ["DropboxExt3"] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} =>  No File
ShellIconOverlayIdentifiers: ["DropboxExt4"] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} =>  No File
ShellIconOverlayIdentifiers: ["DropboxExt5"] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} =>  No File
ShellIconOverlayIdentifiers: ["DropboxExt6"] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} =>  No File
ShellIconOverlayIdentifiers: ["DropboxExt7"] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} =>  No File
ShellIconOverlayIdentifiers: ["DropboxExt8"] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} =>  No File
ShellIconOverlayIdentifiers-x32: ["DropboxExt1"] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} =>  No File
ShellIconOverlayIdentifiers-x32: ["DropboxExt2"] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} =>  No File
ShellIconOverlayIdentifiers-x32: ["DropboxExt3"] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} =>  No File
ShellIconOverlayIdentifiers-x32: ["DropboxExt4"] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} =>  No File
ShellIconOverlayIdentifiers-x32: ["DropboxExt5"] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} =>  No File
ShellIconOverlayIdentifiers-x32: ["DropboxExt6"] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} =>  No File
ShellIconOverlayIdentifiers-x32: ["DropboxExt7"] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} =>  No File
ShellIconOverlayIdentifiers-x32: ["DropboxExt8"] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} =>  No File

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre6\bin\jp2ssv.dll No File
BHO-x32: MSS+ Identifier -> {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} -> C:\Program Files\Sony\MSS\3.8.141\McAfeeMSS_IE.dll (McAfee, Inc.)
BHO-x32: DivX Plus Web Player HTML5 <video> -> {326E768D-4182-46FD-9C16-1449A49795F4} -> C:\Program Files (x86)\DivX\DivX Plus Web Player\ie\DivXHTML5\DivXHTML5.dll (DivX, LLC)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\ssv.dll (Oracle Corporation)
BHO-x32: Skype Browser Helper -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\jp2ssv.dll (Oracle Corporation)
DPF: HKLM-x32 {5C051655-FCD5-4969-9182-770EA5AA5565} hxxp://messenger.zone.msn.com/binary/SolitaireShowdown.cab56986.cab
DPF: HKLM-x32 {C345E174-3E87-4F41-A01C-B066A90A49B4} hxxp://trial.trymicrosoftoffice.com/trialoaa/buymsoffice_assets/framework/microsoft/wrc32.ocx
DPF: HKLM-x32 {C3F79A2B-B9B4-4A66-B012-3EE46475B072} hxxp://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} -  No File
Handler-x32: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 192.168.178.1

FireFox:
========
FF ProfilePath: C:\Users\Rachel\AppData\Roaming\Mozilla\Firefox\Profiles\5au671d5.default
FF Homepage: https://www.google.de/
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_15_0_0_152.dll ()
FF Plugin: @divx.com/DivX VOD Helper,version=1.0.0 -> C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_152.dll ()
FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF Plugin-x32: @divx.com/DivX Browser Plugin,version=1.0.0 -> C:\Program Files (x86)\DivX\DivX Plus Web Player\npdivx32.dll (DivX, LLC)
FF Plugin-x32: @divx.com/DivX VOD Helper,version=1.0.0 -> C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll (DivX, LLC.)
FF Plugin-x32: @java.com/DTPlugin,version=11.25.2 -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.25.2 -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @mcafee.com/McAfeeMssPlugin -> C:\Program Files\Sony\MSS\3.8.141\npMcAfeeMss.dll (McAfee, Inc.)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeLive,version=1.3 -> C:\Program Files (x86)\Microsoft\Office Live\npOLW.dll (Microsoft Corp.)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll No File
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nppdf32.dll (Adobe Systems Inc.)
FF SearchPlugin: C:\Users\Rachel\AppData\Roaming\Mozilla\Firefox\Profiles\5au671d5.default\searchplugins\google-images.xml
FF SearchPlugin: C:\Users\Rachel\AppData\Roaming\Mozilla\Firefox\Profiles\5au671d5.default\searchplugins\google-maps.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\amazondotcom-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\eBay-de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\leo_ende_de.xml
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\yahoo-de.xml
FF Extension: Cliqz Beta - C:\Users\Rachel\AppData\Roaming\Mozilla\Firefox\Profiles\5au671d5.default\Extensions\cliqz@cliqz.com.xpi [2014-10-18]
FF Extension: Adblock Plus - C:\Users\Rachel\AppData\Roaming\Mozilla\Firefox\Profiles\5au671d5.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2014-05-12]
FF Extension: Skype Click to Call - C:\Program Files (x86)\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A} [2014-09-25]
FF Extension: Java Console - C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0037-ABCDEFFEDCBA} [2014-09-25]
FF Extension: Java Console - C:\Program Files (x86)\Mozilla Firefox\extensions\{CAFEEFAC-0016-0000-0038-ABCDEFFEDCBA} [2014-09-25]
FF HKLM-x32\...\Firefox\Extensions: [{23fcfd51-4958-4f00-80a3-ae97e717ed8b}] - C:\Program Files (x86)\DivX\DivX Plus Web Player\firefox\DivXHTML5
FF Extension: DivX Plus Web Player HTML5 &lt;video&gt; - C:\Program Files (x86)\DivX\DivX Plus Web Player\firefox\DivXHTML5 [2012-04-30]
FF HKCU\...\Firefox\Extensions: [cliqz@cliqz.com] - C:\Users\Rachel\AppData\Roaming\Mozilla\Firefox\Profiles\5au671d5.default\extensions\cliqz@cliqz.com

Chrome: 
=======
CHR HKLM-x32\...\Chrome\Extension: [nneajnkjbffgblleaoojgaacokifdkhm] - C:\Program Files (x86)\DivX\DivX Plus Web Player\chrome\DivXHTML5\DivXHTML5.crx [2011-12-12]
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

S3 ACDaemon; C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [113152 2010-03-18] (ArcSoft Inc.)
R2 ESRV_SVC; C:\Program Files\Sony\VAIO Care\ESRV\esrv_svc.exe [377768 2013-11-01] (Intel Corporation)
S3 McComponentHostServiceSony; C:\Program Files\Sony\MSS\3.8.141\McCHSvc.exe [289256 2014-01-16] (McAfee, Inc.)
R2 MsMpSvc; c:\Program Files\Microsoft Security Client\MsMpEng.exe [23784 2014-08-22] (Microsoft Corporation)
S3 NisSrv; c:\Program Files\Microsoft Security Client\NisSrv.exe [368624 2014-08-22] (Microsoft Corporation)
S3 Roxio UPnP Renderer 10; C:\Program Files (x86)\Roxio\Digital Home 10\RoxioUPnPRenderer10.exe [313840 2009-08-31] (Sonic Solutions)
S2 Roxio Upnp Server 10; C:\Program Files (x86)\Roxio\Digital Home 10\RoxioUpnpService10.exe [362992 2009-08-31] (Sonic Solutions)
R2 SampleCollector; C:\Program Files\Sony\VAIO Care\VCPerfService.exe [266168 2013-11-01] (Intel Corporation)
S3 SOHDBSvr; C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDBSvr.exe [70952 2009-10-15] (Sony Corporation)
S3 SOHPlMgr; C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHPlMgr.exe [91432 2009-10-15] (Sony Corporation)
R2 uCamMonitor; C:\Program Files (x86)\ArcSoft\Magic-i Visual Effects 2\uCamMonitor.exe [104960 2008-09-18] (ArcSoft, Inc.)
S3 USER_ESRV_SVC; C:\Program Files\Sony\VAIO Care\ESRV\esrv_svc.exe [377768 2013-11-01] (Intel Corporation)
S3 VAIO Entertainment TV Device Arbitration Service; C:\Program Files (x86)\Common Files\Sony Shared\VAIO Entertainment Platform\VzHardwareResourceManager\VzHardwareResourceManager\VzHardwareResourceManager.exe [69632 2009-09-14] (Sony Corporation) [File not signed]
R2 VCFw; C:\Program Files (x86)\Common Files\Sony Shared\VAIO Content Folder Watcher\VCFw.exe [642416 2009-09-14] (Sony Corporation)
R2 VSNService; C:\Program Files\Sony\VAIO Smart Network\VSNService.exe [845312 2010-08-11] (Sony Corporation) [File not signed]
R3 VUAgent; C:\Program Files\Sony\VAIO Update\vuagent.exe [1642544 2014-02-28] (Sony Corporation)
R2 VzCdbSvc; C:\Program Files (x86)\Common Files\Sony Shared\VAIO Entertainment Platform\VzCdb\VzCdbSvc.exe [206336 2009-09-14] (Sony Corporation) [File not signed]
S2 892cc6a3; "C:\Windows\system32\rundll32.exe" "c:\progra~3\perfor~1\PerformanceOptimizerSvc.dll",service

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 6077757b; C:\Windows\system32\drivers\regi.sys [14112 2007-04-17] (InterVideo)
R2 6077757b; C:\Windows\SysWOW64\drivers\regi.sys [11032 2007-04-17] (InterVideo)
U5 AppMgmt; C:\Windows\system32\svchost.exe [27136 2009-07-14] (Microsoft Corporation)
R3 ArcSoftKsUFilter; C:\Windows\System32\DRIVERS\ArcSoftKsUFilter.sys [19968 2009-05-26] (ArcSoft, Inc.)
S3 ewsercd; C:\Windows\System32\DRIVERS\ewsercd.sys [112896 2013-02-09] (Huawei Technologies Co., Ltd.) [File not signed]
S3 hwdatacard; C:\Windows\System32\DRIVERS\ewusbmdm.sys [116864 2013-02-09] (Huawei Technologies Co., Ltd.) [File not signed]
S3 igfx; C:\Windows\System32\DRIVERS\igdkmd64.sys [7778176 2009-12-16] (Intel Corporation) [File not signed]
S3 IntcDAud; C:\Windows\System32\DRIVERS\IntcDAud.sys [244736 2009-12-16] (Intel(R) Corporation) [File not signed]
R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [269008 2014-07-17] (Microsoft Corporation)
S3 NisDrv; C:\Windows\System32\DRIVERS\NisDrvWFP.sys [125584 2014-07-17] (Microsoft Corporation)
S2 regi; C:\Windows\SysWOW64\drivers\regi.sys [11032 2007-04-17] (InterVideo)
R3 semav6thermal64ro; C:\Windows\system32\drivers\semav6thermal64ro.sys [13792 2014-04-20] ()
S3 taphss6; C:\Windows\System32\DRIVERS\taphss6.sys [42184 2014-03-19] (Anchorfree Inc.)
R3 yukonw7; C:\Windows\System32\DRIVERS\yk62x64.sys [395264 2009-11-12] ()
S3 catchme; \??\C:\ComboFix\catchme.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-10-18 15:50 - 2014-10-18 15:50 - 00020741 _____ () C:\Users\Rachel\Desktop\FRST.txt
2014-10-18 15:49 - 2014-10-18 15:49 - 00039613 _____ () C:\Users\Rachel\Desktop\JRT.txt
2014-10-18 15:44 - 2014-10-18 15:44 - 00000000 ____D () C:\Windows\ERUNT
2014-10-18 15:43 - 2014-10-18 15:43 - 01705698 _____ (Thisisu) C:\Users\Rachel\Desktop\JRT.exe
2014-10-18 15:41 - 2014-10-18 15:41 - 00009926 _____ () C:\Users\Rachel\Desktop\AdwCleaner[S0].txt
2014-10-18 15:35 - 2014-10-18 15:39 - 00000000 ____D () C:\AdwCleaner
2014-10-18 15:35 - 2014-10-18 15:35 - 01976320 _____ () C:\Users\Rachel\Downloads\AdwCleaner_4.000.exe
2014-10-18 14:56 - 2014-10-18 14:56 - 00031865 _____ () C:\ComboFix.txt
2014-10-18 14:20 - 2014-10-18 14:56 - 00000000 ____D () C:\ComboFix
2014-10-18 14:15 - 2011-06-26 08:45 - 00256000 _____ () C:\Windows\PEV.exe
2014-10-18 14:15 - 2010-11-07 19:20 - 00208896 _____ () C:\Windows\MBR.exe
2014-10-18 14:15 - 2009-04-20 06:56 - 00060416 _____ (NirSoft) C:\Windows\NIRCMD.exe
2014-10-18 14:15 - 2000-08-31 02:00 - 00518144 _____ (SteelWerX) C:\Windows\SWREG.exe
2014-10-18 14:15 - 2000-08-31 02:00 - 00406528 _____ (SteelWerX) C:\Windows\SWSC.exe
2014-10-18 14:15 - 2000-08-31 02:00 - 00098816 _____ () C:\Windows\sed.exe
2014-10-18 14:15 - 2000-08-31 02:00 - 00080412 _____ () C:\Windows\grep.exe
2014-10-18 14:15 - 2000-08-31 02:00 - 00068096 _____ () C:\Windows\zip.exe
2014-10-18 14:06 - 2014-10-18 14:56 - 00000000 ____D () C:\Qoobox
2014-10-18 14:05 - 2014-10-18 14:54 - 00000000 ____D () C:\Windows\erdnt
2014-10-18 14:04 - 2014-10-18 14:05 - 05583559 ____R (Swearware) C:\Users\Rachel\Downloads\ComboFix.exe
2014-10-18 10:27 - 2014-10-18 10:32 - 00050094 _____ () C:\Users\Rachel\Downloads\Addition.txt
2014-10-18 10:25 - 2014-10-18 10:32 - 00049261 _____ () C:\Users\Rachel\Downloads\FRST.txt
2014-10-18 10:24 - 2014-10-18 15:50 - 00000000 ____D () C:\FRST
2014-10-18 10:24 - 2014-10-18 10:24 - 02112000 _____ (Farbar) C:\Users\Rachel\Desktop\FRST64.exe
2014-10-18 10:22 - 2014-10-18 10:22 - 01102848 _____ (Farbar) C:\Users\Rachel\Downloads\FRST.exe
2014-10-18 02:35 - 2014-10-18 02:35 - 00416576 _____ (Kaspersky Lab) C:\Users\Rachel\Downloads\de-de.setup.exe
2014-10-18 01:30 - 2011-05-13 12:16 - 00493056 _____ ( datenhaus GmbH) C:\Windows\SysWOW64\dhRichClient3.dll
2014-10-18 01:30 - 2011-03-25 20:42 - 00338432 _____ () C:\Windows\SysWOW64\sqlite36_engine.dll
2014-10-17 21:52 - 2014-10-10 04:05 - 00507392 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2014-10-17 21:52 - 2014-10-10 04:05 - 00276480 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2014-10-17 21:52 - 2014-10-10 04:00 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2014-10-17 21:52 - 2014-10-07 04:54 - 00378552 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2014-10-17 21:52 - 2014-10-07 04:04 - 00331448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2014-10-17 21:52 - 2014-09-29 02:58 - 03198976 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2014-10-17 21:52 - 2014-09-26 00:46 - 00365056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2014-10-17 21:52 - 2014-09-26 00:46 - 00243200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2014-10-17 21:52 - 2014-09-26 00:46 - 00069632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2014-10-17 21:52 - 2014-09-26 00:43 - 11807232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-10-17 21:52 - 2014-09-26 00:32 - 02017280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2014-10-17 21:52 - 2014-09-26 00:31 - 02108416 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-10-17 21:52 - 2014-09-19 03:56 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-10-17 21:52 - 2014-09-19 03:55 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2014-10-17 21:52 - 2014-09-19 03:44 - 17484800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-10-17 21:52 - 2014-09-19 03:40 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-10-17 21:52 - 2014-09-19 03:39 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2014-10-17 21:52 - 2014-09-19 03:30 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-10-17 21:52 - 2014-09-19 03:25 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2014-10-17 21:52 - 2014-09-19 03:14 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-10-17 21:52 - 2014-09-19 03:14 - 00446464 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-10-17 21:52 - 2014-09-19 03:06 - 00072704 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-10-17 21:52 - 2014-09-19 03:01 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2014-10-17 21:52 - 2014-09-19 03:01 - 00051200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2014-10-17 21:52 - 2014-09-19 02:55 - 02187264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2014-10-17 21:52 - 2014-09-19 02:54 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2014-10-17 21:52 - 2014-09-19 02:53 - 00032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2014-10-17 21:52 - 2014-09-19 02:51 - 00440320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2014-10-17 21:52 - 2014-09-19 02:49 - 00597504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2014-10-17 21:52 - 2014-09-19 02:42 - 00731136 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-10-17 21:52 - 2014-09-19 02:42 - 00710656 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-10-17 21:52 - 2014-09-19 02:36 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2014-10-17 21:52 - 2014-09-19 02:20 - 00607744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2014-10-17 21:52 - 2014-09-19 02:14 - 01447936 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-10-17 21:52 - 2014-09-19 01:53 - 01190400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-10-17 21:52 - 2014-06-19 00:23 - 01943696 _____ (Microsoft Corporation) C:\Windows\system32\dfshim.dll
2014-10-17 21:52 - 2014-06-19 00:23 - 01131664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dfshim.dll
2014-10-17 21:52 - 2014-06-19 00:23 - 00156824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscorier.dll
2014-10-17 21:52 - 2014-06-19 00:23 - 00156312 _____ (Microsoft Corporation) C:\Windows\system32\mscorier.dll
2014-10-17 21:52 - 2014-06-19 00:23 - 00081560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscories.dll
2014-10-17 21:52 - 2014-06-19 00:23 - 00073880 _____ (Microsoft Corporation) C:\Windows\system32\mscories.dll
2014-10-17 21:51 - 2014-09-26 00:50 - 13619200 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-10-17 21:51 - 2014-09-19 04:25 - 23631360 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-10-17 21:51 - 2014-09-19 03:41 - 02796032 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-10-17 21:51 - 2014-09-19 03:40 - 00547328 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-10-17 21:51 - 2014-09-19 03:38 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2014-10-17 21:51 - 2014-09-19 03:36 - 05829632 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-10-17 21:51 - 2014-09-19 03:31 - 00051200 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-10-17 21:51 - 2014-09-19 03:27 - 00595968 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-10-17 21:51 - 2014-09-19 03:26 - 00139264 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-10-17 21:51 - 2014-09-19 03:25 - 04201472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-10-17 21:51 - 2014-09-19 03:25 - 00758272 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2014-10-17 21:51 - 2014-09-19 03:18 - 00940032 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2014-10-17 21:51 - 2014-09-19 03:02 - 00454656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2014-10-17 21:51 - 2014-09-19 03:01 - 00195584 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-10-17 21:51 - 2014-09-19 03:00 - 00085504 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-10-17 21:51 - 2014-09-19 02:59 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2014-10-17 21:51 - 2014-09-19 02:58 - 00289280 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-10-17 21:51 - 2014-09-19 02:50 - 00112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2014-10-17 21:51 - 2014-09-19 02:40 - 01249280 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2014-10-17 21:51 - 2014-09-19 02:33 - 02309632 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-10-17 21:51 - 2014-09-19 02:32 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2014-10-17 21:51 - 2014-09-19 02:18 - 01068032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2014-10-17 21:51 - 2014-09-19 01:59 - 01810944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2014-10-17 21:51 - 2014-09-19 01:59 - 00775168 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-10-17 21:51 - 2014-09-19 01:52 - 00678400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2014-10-17 21:51 - 2014-09-18 04:00 - 03241472 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
2014-10-17 21:51 - 2014-09-18 03:32 - 02363904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
2014-10-17 21:51 - 2014-09-04 07:23 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\rastls.dll
2014-10-17 21:51 - 2014-09-04 07:04 - 00372736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rastls.dll
2014-10-17 21:51 - 2014-07-17 03:39 - 03221504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll
2014-10-17 21:50 - 2014-09-13 03:58 - 00077312 _____ (Microsoft Corporation) C:\Windows\system32\packager.dll
2014-10-17 21:50 - 2014-09-13 03:40 - 00067072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\packager.dll
2014-10-17 21:50 - 2014-07-17 04:07 - 03722240 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll
2014-10-17 21:50 - 2014-07-17 04:07 - 01118720 _____ (Microsoft Corporation) C:\Windows\system32\mstsc.exe
2014-10-17 21:50 - 2014-07-17 04:07 - 00681984 _____ (Microsoft Corporation) C:\Windows\system32\termsrv.dll
2014-10-17 21:50 - 2014-07-17 04:07 - 00455168 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe
2014-10-17 21:50 - 2014-07-17 04:07 - 00235520 _____ (Microsoft Corporation) C:\Windows\system32\winsta.dll
2014-10-17 21:50 - 2014-07-17 04:07 - 00150528 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorekmts.dll
2014-10-17 21:50 - 2014-07-17 04:07 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2014-10-17 21:50 - 2014-07-17 04:07 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2014-10-17 21:50 - 2014-07-17 03:40 - 00157696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winsta.dll
2014-10-17 21:50 - 2014-07-17 03:39 - 01051136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstsc.exe
2014-10-17 21:50 - 2014-07-17 03:39 - 00131584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aaclient.dll
2014-10-17 21:50 - 2014-07-17 03:39 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
2014-10-17 21:50 - 2014-07-17 03:39 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll
2014-10-17 21:50 - 2014-07-17 03:21 - 00212480 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpwd.sys
2014-10-17 21:50 - 2014-07-17 03:21 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tssecsrv.sys
2014-10-16 18:51 - 2014-10-16 18:51 - 00638888 _____ (Oracle Corporation) C:\Users\Rachel\Downloads\jxpiinstall(5).exe
2014-10-16 18:31 - 2014-10-16 18:31 - 00000000 ____D () C:\ProgramData\b5a9dd818519d486
2014-09-30 20:50 - 2014-09-25 04:08 - 00371712 _____ (Microsoft Corporation) C:\Windows\system32\qdvd.dll
2014-09-30 20:50 - 2014-09-25 03:40 - 00519680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\qdvd.dll
2014-09-29 20:15 - 2014-09-29 20:15 - 00001145 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VAIO Update.lnk
2014-09-25 20:41 - 2014-10-18 01:31 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2014-09-24 21:11 - 2014-09-24 21:11 - 00003688 _____ () C:\Windows\System32\Tasks\klcp_update
2014-09-24 21:11 - 2014-09-24 21:11 - 00000000 ____D () C:\Users\Rachel\AppData\Roaming\MPC-HC
2014-09-24 21:11 - 2014-09-24 21:11 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack
2014-09-24 21:10 - 2014-09-24 21:10 - 00000000 ____D () C:\Program Files (x86)\K-Lite Codec Pack
2014-09-24 21:10 - 2014-09-23 20:00 - 00127488 _____ () C:\Windows\system32\ff_vfw.dll
2014-09-24 21:10 - 2014-09-23 20:00 - 00112640 _____ () C:\Windows\SysWOW64\ff_vfw.dll
2014-09-24 21:10 - 2014-07-22 20:51 - 03502080 _____ (x264vfw project) C:\Windows\system32\x264vfw64.dll
2014-09-24 21:10 - 2014-07-22 20:50 - 03510784 _____ (x264vfw project) C:\Windows\SysWOW64\x264vfw.dll
2014-09-24 21:10 - 2014-06-14 16:03 - 00260696 _____ () C:\Windows\system32\unrar64.dll
2014-09-24 21:10 - 2014-06-14 16:03 - 00218200 _____ () C:\Windows\SysWOW64\unrar.dll
2014-09-24 21:10 - 2012-07-21 12:55 - 00180736 _____ (fccHandler) C:\Windows\system32\ac3acm.acm
2014-09-24 21:10 - 2012-07-21 12:54 - 00122880 _____ (fccHandler) C:\Windows\SysWOW64\ac3acm.acm
2014-09-24 21:10 - 2011-12-07 19:37 - 00148992 _____ ( ) C:\Windows\system32\lagarith.dll
2014-09-24 21:10 - 2011-12-07 19:32 - 00216064 _____ ( ) C:\Windows\SysWOW64\lagarith.dll
2014-09-24 21:10 - 2011-06-24 16:45 - 00258560 _____ () C:\Windows\system32\xvidvfw.dll
2014-09-24 21:10 - 2011-06-24 16:44 - 00243200 _____ () C:\Windows\SysWOW64\xvidvfw.dll
2014-09-24 21:10 - 2011-06-24 16:31 - 00703488 _____ () C:\Windows\system32\xvidcore.dll
2014-09-24 21:10 - 2011-06-24 16:28 - 00650752 _____ () C:\Windows\SysWOW64\xvidcore.dll
2014-09-24 21:08 - 2014-09-24 21:43 - 00000000 ____D () C:\Windows\System32\Tasks\Abelssoft
2014-09-24 21:08 - 2014-09-24 21:43 - 00000000 ____D () C:\Program Files (x86)\CHIP Updater
2014-09-24 21:08 - 2014-09-24 21:08 - 00000000 ____D () C:\Users\Rachel\AppData\Roaming\Abelssoft
2014-09-24 21:08 - 2014-09-24 21:08 - 00000000 ____D () C:\Users\Rachel\AppData\Local\Abelssoft
2014-09-24 21:08 - 2014-09-24 21:08 - 00000000 ____D () C:\ProgramData\XDMessagingv4
2014-09-24 21:07 - 2014-09-24 21:07 - 01101648 _____ () C:\Users\Rachel\Downloads\K Lite Mega Codec Pack - CHIP-Installer.exe
2014-09-23 19:51 - 2014-09-10 00:11 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
2014-09-23 19:51 - 2014-09-09 23:47 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll
2014-09-22 20:44 - 2014-10-18 10:05 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2014-09-22 20:44 - 2014-10-18 01:31 - 00001163 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2014-09-22 20:44 - 2014-10-18 01:31 - 00001151 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk
2014-09-22 20:42 - 2014-09-22 20:42 - 35100664 _____ () C:\Users\Rachel\Downloads\Firefox_Setup_de32.0.2 (1).exe
2014-09-22 20:22 - 2014-10-18 15:39 - 00001083 _____ () C:\Users\Rachel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Search.lnk

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-10-18 15:48 - 2009-07-14 06:45 - 00022704 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-10-18 15:48 - 2009-07-14 06:45 - 00022704 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-10-18 15:47 - 2010-07-20 20:09 - 02019656 _____ () C:\Windows\WindowsUpdate.log
2014-10-18 15:40 - 2010-02-17 07:21 - 00643326 _____ () C:\Windows\PFRO.log
2014-10-18 15:40 - 2009-07-14 07:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-10-18 15:40 - 2009-07-14 06:51 - 00172343 _____ () C:\Windows\setupact.log
2014-10-18 15:18 - 2012-10-13 14:12 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-10-18 14:56 - 2009-07-14 05:20 - 00000000 __RHD () C:\Users\Default
2014-10-18 14:47 - 2009-07-14 04:34 - 00000215 _____ () C:\Windows\system.ini
2014-10-18 13:03 - 2010-02-17 16:16 - 00699682 _____ () C:\Windows\system32\perfh007.dat
2014-10-18 13:03 - 2010-02-17 16:16 - 00149790 _____ () C:\Windows\system32\perfc007.dat
2014-10-18 13:03 - 2009-07-14 07:13 - 01620684 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-10-18 10:07 - 2009-07-14 06:45 - 00408080 _____ () C:\Windows\system32\FNTCACHE.DAT
2014-10-18 03:20 - 2014-05-06 21:25 - 00000000 ___SD () C:\Windows\system32\CompatTel
2014-10-18 03:18 - 2010-02-17 07:35 - 00000000 ____D () C:\ProgramData\Microsoft Help
2014-10-18 03:12 - 2013-08-15 20:31 - 00000000 ____D () C:\Windows\system32\MRT
2014-10-18 03:02 - 2010-08-27 07:48 - 103265616 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-10-18 02:37 - 2010-07-20 20:29 - 00000000 ____D () C:\Users\Rachel\AppData\Roaming\Skype
2014-10-17 21:47 - 2010-07-20 20:13 - 00003946 _____ () C:\Windows\System32\Tasks\User_Feed_Synchronization-{18A53760-8698-4958-9D33-4614BE41870C}
2014-10-16 18:57 - 2013-10-15 23:12 - 00000000 ____D () C:\ProgramData\Oracle
2014-10-16 18:54 - 2014-08-19 17:15 - 00098216 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2014-10-16 18:54 - 2014-08-19 17:15 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2014-10-16 18:54 - 2014-08-19 17:14 - 00000000 ____D () C:\Program Files (x86)\Java
2014-10-12 20:08 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\rescache
2014-10-12 01:17 - 2010-02-17 07:29 - 00000000 ____D () C:\SPLASH.000
2014-09-30 20:42 - 2010-11-18 02:38 - 00000000 ____D () C:\Update
2014-09-29 20:15 - 2011-04-14 22:28 - 00000000 ____D () C:\Windows\System32\Tasks\Sony Corporation
2014-09-29 20:15 - 2010-02-17 07:45 - 00000000 ____D () C:\Program Files\Sony
2014-09-29 20:15 - 2010-01-30 00:44 - 00000000 ____D () C:\ProgramData\Sony Corporation
2014-09-29 20:15 - 2010-01-29 23:55 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2014-09-24 22:12 - 2010-07-20 20:09 - 00108328 _____ () C:\Users\Rachel\AppData\Local\GDIPFONTCACHEV1.DAT
2014-09-23 23:28 - 2010-07-20 20:09 - 00000000 ____D () C:\Users\Rachel
2014-09-23 20:19 - 2012-10-13 14:12 - 00701104 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-09-23 20:19 - 2012-10-13 14:12 - 00003822 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2014-09-23 20:19 - 2011-05-28 02:00 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-09-23 19:42 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\NDF
2014-09-22 20:26 - 2011-04-24 19:42 - 00000000 ____D () C:\Filme
2014-09-22 20:23 - 2010-02-17 07:29 - 00000000 ____D () C:\Program Files (x86)\Google
2014-09-22 20:05 - 2014-04-30 22:26 - 00002441 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk
2014-09-22 08:42 - 2010-09-21 00:14 - 00278152 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe

Files to move or delete:
====================
C:\Users\Public\dcmsvcsetup.exe
C:\Users\Rachel\grv.dat
C:\Users\Rachel2\grv.dat


Some content of TEMP:
====================
C:\Users\Rachel\AppData\Local\Temp\Quarantine.exe
C:\Users\Rachel\AppData\Local\Temp\sqlite3.dll


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2014-10-12 20:01

==================== End Of Log ============================
         
--- --- ---

--- --- ---


Code:
ATTFilter
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 16-10-2014
Ran by Rachel at 2014-10-18 15:51:32
Running from C:\Users\Rachel\Desktop
Boot Mode: Normal
==========================================================


==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Microsoft Security Essentials (Disabled - Up to date) {4F35CFC4-45A3-FC37-EF17-759A02E39AB1}
AS: Microsoft Security Essentials (Disabled - Up to date) {F4542E20-6399-F3B9-D5A7-4EE87964D00C}
AS: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

7-Zip 9.14 beta (HKLM-x32\...\7-Zip) (Version:  - )
Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 3.4.0.2710 - Adobe Systems Incorporated)
Adobe AIR (x32 Version: 3.4.0.2710 - Adobe Systems Incorporated) Hidden
Adobe Flash Player 15 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 15.0.0.167 - Adobe Systems Incorporated)
Adobe Flash Player 15 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 15.0.0.152 - Adobe Systems Incorporated)
Adobe Reader XI (11.0.09) - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-AB0000000001}) (Version: 11.0.09 - Adobe Systems Incorporated)
Alps Pointing-device for VAIO (HKLM\...\{9F72EF8B-AEC9-4CA5-B483-143980AFD6FD}) (Version:  - ALPS ELECTRIC CO., LTD.)
Apple Application Support (HKLM-x32\...\{A922C4B7-50E0-4787-A94C-59DBF3C65DBE}) (Version: 3.0 - Apple Inc.)
Apple Mobile Device Support (HKLM\...\{FE86CB0C-FCB3-4358-B4B0-B0A41E33B3DD}) (Version: 7.1.0.32 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.)
ArcSoft Magic-i Visual Effects 2 (HKLM-x32\...\{7BB90344-0647-468E-925A-7F69F7983421}) (Version: 2.0.1.85 - ArcSoft)
ArcSoft WebCam Companion 3 (HKLM-x32\...\{DE8AAC73-6D8D-483E-96EA-CAEDDADB9079}) (Version: 3.0.21.278 - ArcSoft)
ATI Catalyst Install Manager (HKLM\...\{5BC83141-83DD-07BE-C940-04B385540F04}) (Version: 3.0.769.0 - ATI Technologies, Inc.)
Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.)
Catalyst Control Center - Branding (x32 Version: 1.00.0000 - ATI) Hidden
Catalyst Control Center Core Implementation (x32 Version: 2010.0920.2143.37117 - ATI) Hidden
Catalyst Control Center Graphics Full Existing (x32 Version: 2010.0920.2143.37117 - ATI) Hidden
Catalyst Control Center Graphics Full New (x32 Version: 2010.0920.2143.37117 - ATI) Hidden
Catalyst Control Center Graphics Light (x32 Version: 2010.0920.2143.37117 - ATI) Hidden
Catalyst Control Center Graphics Previews Common (x32 Version: 2010.0920.2143.37117 - ATI) Hidden
Catalyst Control Center Graphics Previews Vista (x32 Version: 2010.0920.2143.37117 - ATI) Hidden
Catalyst Control Center InstallProxy (x32 Version: 2010.0113.2257.41150 - ATI Technologies, Inc.) Hidden
Catalyst Control Center InstallProxy (x32 Version: 2010.0920.2143.37117 - ATI Technologies, Inc.) Hidden
Catalyst Control Center Localization All (x32 Version: 2010.0920.2143.37117 - ATI) Hidden
CCC Help Chinese Standard (x32 Version: 2010.0920.2142.37117 - ATI) Hidden
CCC Help Chinese Traditional (x32 Version: 2010.0920.2142.37117 - ATI) Hidden
CCC Help Czech (x32 Version: 2010.0920.2142.37117 - ATI) Hidden
CCC Help Danish (x32 Version: 2010.0920.2142.37117 - ATI) Hidden
CCC Help Dutch (x32 Version: 2010.0920.2142.37117 - ATI) Hidden
CCC Help English (x32 Version: 2010.0920.2142.37117 - ATI) Hidden
CCC Help Finnish (x32 Version: 2010.0920.2142.37117 - ATI) Hidden
CCC Help French (x32 Version: 2010.0920.2142.37117 - ATI) Hidden
CCC Help German (x32 Version: 2010.0920.2142.37117 - ATI) Hidden
CCC Help Greek (x32 Version: 2010.0920.2142.37117 - ATI) Hidden
CCC Help Hungarian (x32 Version: 2010.0920.2142.37117 - ATI) Hidden
CCC Help Italian (x32 Version: 2010.0920.2142.37117 - ATI) Hidden
CCC Help Japanese (x32 Version: 2010.0920.2142.37117 - ATI) Hidden
CCC Help Korean (x32 Version: 2010.0920.2142.37117 - ATI) Hidden
CCC Help Norwegian (x32 Version: 2010.0920.2142.37117 - ATI) Hidden
CCC Help Polish (x32 Version: 2010.0920.2142.37117 - ATI) Hidden
CCC Help Portuguese (x32 Version: 2010.0920.2142.37117 - ATI) Hidden
CCC Help Russian (x32 Version: 2010.0920.2142.37117 - ATI) Hidden
CCC Help Spanish (x32 Version: 2010.0920.2142.37117 - ATI) Hidden
CCC Help Swedish (x32 Version: 2010.0920.2142.37117 - ATI) Hidden
CCC Help Thai (x32 Version: 2010.0920.2142.37117 - ATI) Hidden
CCC Help Turkish (x32 Version: 2010.0920.2142.37117 - ATI) Hidden
ccc-core-static (x32 Version: 2010.0920.2143.37117 - Ihr Firmenname) Hidden
ccc-utility64 (Version: 2010.0920.2143.37117 - ATI) Hidden
CDBurnerXP (HKLM-x32\...\{7E265513-8CDA-4631-B696-F40D983F3B07}_is1) (Version: 4.5.1.4003 - CDBurnerXP)
Click to Disc MergeModules x64 (Version: 1.0.14230 - Sony Corporation) Hidden
Compatibility Pack für 2007 Office System (HKLM-x32\...\{90120000-0020-0407-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation)
Corel WinDVD (HKLM-x32\...\{5C1F18D2-F6B7-4242-B803-B5A78648185D}) (Version: 10.0.5.164 - Corel Inc.)
dcmsvc 1.0 (HKLM-x32\...\dcmsvc_is1) (Version:  - )
Definition Update for Microsoft Office 2010 (KB982726) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{650DE870-ECA3-4E63-8D77-778512BE5D4C}) (Version:  - Microsoft)
DivX-Setup (HKLM-x32\...\DivX Setup) (Version: 2.6.1.8 - DivX, LLC)
Einstellungen für VAIO-Inhaltsüberwachung (HKLM-x32\...\{23825B69-36DF-4DAD-9CFD-118D11D80F16}) (Version: 2.4.1.09180 - Sony Corporation)
Evernote (HKLM-x32\...\{F761359C-9CED-45AE-9A51-9D6605CD55C4}) (Version: 3.5.0.545 - Evernote Corp.)
FastStone Image Viewer 4.2 (HKLM-x32\...\FastStone Image Viewer) (Version: 4.2 - FastStone Soft)
Free YouTube to iPod Converter version 3.8 (HKLM-x32\...\Free YouTube to iPod Converter_is1) (Version:  - DVDVideoSoft Limited.)
Free YouTube to MP3 Converter version 3.12.0.128 (HKLM-x32\...\Free YouTube to MP3 Converter_is1) (Version: 3.12.0.128 - DVDVideoSoft Ltd.)
Intel(R) Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1007 - Intel Corporation)
Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 6.0.0.1179 - Intel Corporation)
Intel(R) Rapid Storage Technology (HKLM-x32\...\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: 9.5.4.1001 - Intel Corporation)
Intel(R) Turbo Boost Technology Driver (HKLM-x32\...\{D6C630BF-8DBB-4042-8562-DC9A52CB6E7E}) (Version: 01.00.01.1002 - Intel Corporation)
iTunes (HKLM\...\{0D924CB2-2EA4-4044-BAF7-770202D6BD0D}) (Version: 11.1.4.62 - Apple Inc.)
Java 7 Update 67 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F03217067FF}) (Version: 7.0.670 - Oracle)
Java 8 Update 25 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218025F0}) (Version: 8.0.250 - Oracle Corporation)
Java Auto Updater (x32 Version: 2.8.25.18 - Oracle Corporation) Hidden
K-Lite Mega Codec Pack 10.7.5 (HKLM-x32\...\KLiteCodecPack_is1) (Version: 10.7.5 - )
Media Gallery (HKLM-x32\...\{DD88F979-FA58-41AC-980C-A6E1A82B61D9}) (Version: 1.1.1.11200 - Sony Corporation)
Media Gallery (x32 Version: 1.1.1.11200 - Sony Corporation) Hidden
Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 (Version: 4.5.50938 - Microsoft Corporation) Hidden
Microsoft Antimalware Service DE-DE Language Pack (Version: 3.0.8402.2 - Microsoft Corporation) Hidden
Microsoft Office Access MUI (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Excel MUI (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Home and Student 2010 (HKLM-x32\...\Office14.SingleImage) (Version: 14.0.7015.1000 - Microsoft Corporation)
Microsoft Office Live Add-in 1.3 (HKLM-x32\...\{57F0ED40-8F11-41AA-B926-4A66D0D1A9CC}) (Version: 2.0.2313.0 - Microsoft Corporation)
Microsoft Office Office 64-bit Components 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office OneNote MUI (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Outlook MUI (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office PowerPoint MUI (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office PowerPoint Viewer 2007 (German) (HKLM-x32\...\{95120000-00AF-0407-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Office Proof (English) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (French) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (Italian) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Proofing (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Publisher MUI (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Shared 64-bit MUI (German) 2010 (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Shared MUI (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Single Image 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Suite Activation Assistant (HKLM-x32\...\{E50AE784-FABE-46DA-A1F8-7B6B56DCB22E}) (Version: 2.9 - Microsoft Corporation)
Microsoft Office Word MUI (German) 2010 (x32 Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Security Client (Version: 4.6.0305.0 - Microsoft Corporation) Hidden
Microsoft Security Client DE-DE Language Pack (Version: 2.1.1116.0 - Microsoft Corporation) Hidden
Microsoft Security Essentials (HKLM\...\Microsoft Security Client) (Version: 4.6.305.0 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation)
Microsoft SQL Server Compact 3.5 SP1 English (HKLM-x32\...\{E59113EB-0285-4BFD-A37A-B79EAC6B8F4B}) (Version: 3.5.5692.0 - Microsoft Corporation)
Microsoft SQL Server Compact 3.5 SP1 x64 English (HKLM\...\{F83779DF-E1F5-43A2-A7BE-732F856FADB7}) (Version: 3.5.5692.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 ATL Update kb973923 - x64 8.0.50727.4053 (HKLM\...\{B6E3757B-5E77-3915-866A-CCFC4B8D194C}) (Version: 8.0.50727.4053 - Microsoft Corporation)
Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 (HKLM-x32\...\{770657D0-A123-3C07-8E44-1C83EC895118}) (Version: 8.0.50727.4053 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) - KB2467175 (HKLM\...\{aac9fcc4-dd9e-4add-901c-b5496a07ab2e}) (Version: 8.0.51011 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Works (HKLM-x32\...\{62F7DA7E-CCCB-439C-A760-00C3926E761F}) (Version: 9.7.0621 - Microsoft Corporation)
Mozilla Firefox 33.0 (x86 de) (HKLM-x32\...\Mozilla Firefox 33.0 (x86 de)) (Version: 33.0 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 33.0 - Mozilla)
MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
MusicStation (HKLM-x32\...\{AB259D46-F851-41B0-9AFA-AED8998AD68A}) (Version: 2.0.0.1067 - Omnifone)
Norton Online Backup (HKLM-x32\...\{C57BCDE1-7CB9-467D-B3BA-7E119916CDC1}) (Version: 1.2.20.0 - Symantec)
PDFCreator (HKLM-x32\...\{0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}) (Version: 1.7.0 - pdfforge)
PMB (HKLM-x32\...\{B6A98E5F-D6A7-46FB-9E9D-1F7BF443491C}) (Version: 5.0.00.10260 - Sony Corporation)
PMB VAIO Edition Guide (x32 Version: 1.5.00.03020 - Sony Corporation) Hidden
PMB VAIO Edition plug-in (Click to Disc) (HKLM-x32\...\InstallShield_{4DCEA9C1-4D6E-41BF-A854-28CFA8B56DBF}) (Version: 3.2.00.16060 - Sony Corporation)
PMB VAIO Edition plug-in (Click to Disc) (x32 Version: 3.2.00.16060 - Sony Corporation) Hidden
PMB VAIO Edition plug-in (VAIO Image Optimizer) (HKLM-x32\...\InstallShield_{1873FFC1-FDCB-47E1-B7C7-F418211E3530}) (Version: 1.2.00.15250 - Sony Corporation)
PMB VAIO Edition plug-in (VAIO Image Optimizer) (x32 Version: 1.2.00.15250 - Sony Corporation) Hidden
PMB VAIO Edition plug-in (VAIO Movie Story) (HKLM-x32\...\InstallShield_{B25563A0-41F4-4A81-A6C1-6DBC0911B1F3}) (Version: 2.2.00.15250 - Sony Corporation)
PMB VAIO Edition plug-in (VAIO Movie Story) (x32 Version: 2.2.00.15250 - Sony Corporation) Hidden
Realtek HDMI Audio Driver for ATI (HKLM-x32\...\{5449FB4F-1802-4D5B-A6D8-087DB1142147}) (Version: 6.0.1.5992 - Realtek Semiconductor Corp.)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.5992 - Realtek Semiconductor Corp.)
Roxio Central Audio (x32 Version: 3.8.0 - Roxio) Hidden
Roxio Central Copy (x32 Version: 3.8.0 - Roxio) Hidden
Roxio Central Core (x32 Version: 3.8.0 - Roxio) Hidden
Roxio Central Data (x32 Version: 3.8.0 - Roxio) Hidden
Roxio Central Tools (x32 Version: 3.8.0 - Roxio) Hidden
Roxio Easy Media Creator 10 LJ (HKLM-x32\...\{537BF16E-7412-448C-95D8-846E85A1D817}) (Version: 10.3 - Roxio)
Roxio Easy Media Creator Home (x32 Version: 10.3.183 - Roxio) Hidden
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{DE28B448-32E8-4E8F-84F0-A52B21A49B5B}) (Version:  - Microsoft)
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (x32 Version:  - Microsoft) Hidden
Setting Utility Series (HKLM-x32\...\{A7DA438C-2E43-4C20-BFDA-C1F4A6208558}) (Version: 5.1.0.11200 - Sony Corporation)
Skype Click to Call (HKLM-x32\...\{B6CF2967-C81E-40C0-9815-C05774FEF120}) (Version: 5.6.8442 - Skype Technologies S.A.)
Skype™ 6.11 (HKLM-x32\...\{4E76FF7E-AEBA-4C87-B788-CD47E5425B9D}) (Version: 6.11.102 - Skype Technologies S.A.)
Sony Home Network Library (HKLM-x32\...\{D03D02D8-AB64-4785-A48E-5AA8B0FB8C14}) (Version: 2.0.1.10160 - Sony Corporation)
Sony Home Network Library (x32 Version: 2.0.1.10160 - Sony Corporation) Hidden
Update for Microsoft Access 2010 (KB2553446) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{B4A38370-2ADB-46B0-A1B0-0C4A2F7DCA31}) (Version:  - Microsoft)
Update for Microsoft Excel 2010 (KB2889836) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{9179FC17-97A8-4D98-9E09-05720AF5D44E}) (Version:  - Microsoft)
Update for Microsoft Filter Pack 2.0 (KB2878281) 32-Bit Edition (HKLM-x32\...\{90140000-002A-0000-1000-0000000FF1CE}_Office14.SingleImage_{302A8FE3-EBF5-486C-A431-16A1CD914443}) (Version:  - Microsoft)
Update for Microsoft Filter Pack 2.0 (KB2878281) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{302A8FE3-EBF5-486C-A431-16A1CD914443}) (Version:  - Microsoft)
Update for Microsoft InfoPath 2010 (KB2817369) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{4EEA3D3E-989C-4DF4-AB0A-3042C0C12AA3}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2494150) (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{3FCFD88F-4D13-4F38-8625-ABABEA7F61EA}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2589298) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{DADF7E25-FFA4-4D02-BE84-1DAE62C18516}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2589352) 32-Bit Edition (HKLM-x32\...\{90140000-002A-0000-1000-0000000FF1CE}_Office14.SingleImage_{F4284D93-7AE8-4309-8CF3-9AD394F35F3A}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2589352) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{F4284D93-7AE8-4309-8CF3-9AD394F35F3A}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2589375) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{287A1E92-9E41-4BC1-8920-B3D0E9220800}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2597087) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{9D69691D-823D-4C3E-9B12-563A3F520366}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2687502) 32-Bit Edition (HKLM-x32\...\{90140000-001F-0409-0000-0000000FF1CE}_Office14.SingleImage_{7DE7DF97-82FE-4B3A-AB8D-1621F9CC464A}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2760598) 32-Bit Edition (HKLM-x32\...\{90140000-002A-0000-1000-0000000FF1CE}_Office14.SingleImage_{ECFE33A3-B8B7-439A-ADE4-59FBD29EF9B8}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2760598) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{ECFE33A3-B8B7-439A-ADE4-59FBD29EF9B8}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2760631) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{35698CB7-AAA2-4577-B505-DBFF504AEF23}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2794737) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{5AA578BB-759C-40FD-9661-A737C0884541}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2825635) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{F1A20C69-9FE5-40FD-9CD5-84EABC2EF64A}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2837581) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{334FB202-28D7-4BA4-8BC9-4FE4AB233EA0}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2837606) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{B0D672F7-883E-4279-8E75-D97A5445AB46}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2878252) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{B0DB9F71-E0F7-4FE6-8925-35B860CAC0C4}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2881028) 32-Bit Edition (HKLM-x32\...\{90140000-001F-0407-0000-0000000FF1CE}_Office14.SingleImage_{EAD7BEF9-B28C-425F-B2C5-538CB27EF013}) (Version:  - Microsoft)
Update for Microsoft Office 2010 (KB2881028) 32-Bit Edition (HKLM-x32\...\{90140000-001F-040C-0000-0000000FF1CE}_Office14.SingleImage_{089DBFD7-8211-43B2-AAAE-5BDD8C23E3A8}) (Version:  - Microsoft)
Update for Microsoft OneNote 2010 (KB2837595) 32-Bit Edition (HKLM-x32\...\{90140000-002A-0000-1000-0000000FF1CE}_Office14.SingleImage_{51CCA922-A0CC-47C4-8910-6936D97CAC2E}) (Version:  - Microsoft)
Update for Microsoft OneNote 2010 (KB2837595) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{51CCA922-A0CC-47C4-8910-6936D97CAC2E}) (Version:  - Microsoft)
Update for Microsoft Outlook 2010 (KB2687567) 32-Bit Edition (HKLM-x32\...\{90140000-001A-0407-0000-0000000FF1CE}_Office14.SingleImage_{A0657506-69DC-44AE-8DC1-58E7C6F5B1C9}) (Version:  - Microsoft)
Update for Microsoft Outlook 2010 (KB2687567) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{2AB483F1-C86E-427A-83B4-23889B03512D}) (Version:  - Microsoft)
Update for Microsoft PowerPoint 2010 (KB2837579) 32-Bit Edition (HKLM-x32\...\{90140000-0018-0407-0000-0000000FF1CE}_Office14.SingleImage_{40EC8FB1-5202-469D-9232-C28FB1C6FC64}) (Version:  - Microsoft)
Update for Microsoft PowerPoint 2010 (KB2837579) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{2BA40F82-F3A4-441C-BF1A-ED4C42FF4872}) (Version:  - Microsoft)
Update for Microsoft SharePoint Workspace 2010 (KB2760601) 32-Bit Edition (HKLM-x32\...\{90140000-002A-0000-1000-0000000FF1CE}_Office14.SingleImage_{F9F5A080-AF38-4966-9A6B-C43DCA465035}) (Version:  - Microsoft)
Update for Microsoft Visio 2010 (KB2880526) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{7B29D8B8-6A87-496C-A65E-B935E740448A}) (Version:  - Microsoft)
Update for Microsoft Visio Viewer 2010 (KB2837587) 32-Bit Edition (HKLM-x32\...\{90140000-003D-0000-0000-0000000FF1CE}_Office14.SingleImage_{38CF30E4-3348-4BD1-A859-B630C355A56F}) (Version:  - Microsoft)
VAIO - PMB VAIO Edition Guide (HKLM-x32\...\InstallShield_{339F9B4D-00CB-4C1C-BED8-EC86A9AB602A}) (Version: 1.5.00.03020 - Sony Corporation)
VAIO Care (HKLM\...\{FDCC09EA-A33E-4639-B1CD-FC1702815FA7}) (Version: 8.4.0.14281 - Sony Corporation)
VAIO Content Metadata Intelligent Analyzing Manager (HKLM-x32\...\{4882EBF5-CA37-4EF4-BCB8-9B0E78B907D0}) (Version: 3.6.0.09250 - Sony Corporation)
VAIO Content Metadata Intelligent Analyzing Manager (x32 Version: 3.6.0.09250 - Sony Corporation) Hidden
VAIO Content Metadata Intelligent Network Service Manager (HKLM-x32\...\{4427F384-B5BE-4769-B7D0-C784FC321EB1}) (Version: 3.6.0.09080 - Sony Corporation)
VAIO Content Metadata Intelligent Network Service Manager (x32 Version: 3.6.0.09080 - Sony Corporation) Hidden
VAIO Content Metadata Manager Settings (HKLM-x32\...\{12D0BE8D-538C-4AB1-86DE-C540308F50DA}) (Version: 3.6.0.09240 - Sony Corporation)
VAIO Content Metadata Manager Settings (x32 Version: 3.6.0.09240 - Sony Corporation) Hidden
VAIO Content Metadata XML Interface Library (HKLM-x32\...\{291FB4BF-EEC7-4CF9-8469-F39ED1DBC4D8}) (Version: 3.6.0.09080 - Sony Corporation)
VAIO Content Metadata XML Interface Library (x32 Version: 3.6.0.09080 - Sony Corporation) Hidden
VAIO Content Monitoring Settings (x32 Version: 2.4.1.09180 - Sony Corporation) Hidden
VAIO Control Center (HKLM-x32\...\{72042FA6-5609-489F-A8EA-3C2DD650F667}) (Version: 4.1.1.07160 - Sony Corporation)
VAIO Data Restore Tool (HKLM-x32\...\{57B955CE-B5D3-495D-AF1B-FAEE0540BFEF}) (Version: 1.2.0.09150 - Sony Corporation)
VAIO Data Restore Tool (x32 Version: 1.2.0.09150 - Sony Corporation) Hidden
VAIO DVD Menu Data (HKLM-x32\...\{596BED91-A1D8-4DF1-8CD1-1C777F7588AC}) (Version: 2.1.00.15050 - Sony Corporation)
VAIO Energie Verwaltung (HKLM-x32\...\{803E4FA5-A940-4420-B89D-A8BC2E160247}) (Version: 5.0.0.11300 - Sony Corporation)
VAIO Entertainment Platform (HKLM-x32\...\{6B1F20F2-6321-4669-A58C-33DF8E7517FF}) (Version: 3.6.0.09150 - Sony Corporation)
VAIO Entertainment Platform (x32 Version: 3.6.0.09150 - Sony Corporation) Hidden
VAIO Event Service (HKLM-x32\...\{C7477742-DDB4-43E5-AC8D-0259E1E661B1}) (Version: 5.1.0.12010 - Sony Corporation)
VAIO Gate (HKLM-x32\...\{A7C30414-2382-4086-B0D6-01A88ABA21C3}) (Version: 1.2.0.09240 - Sony Corporation)
VAIO Gate Default (HKLM-x32\...\{B7546697-2A80-4256-A24B-1C33163F535B}) (Version: 1.0.0.10290 - Sony Corporation)
VAIO Hardware Diagnostics (x32 Version: 3.9.1 - Sony Corporation) Hidden
VAIO Marketing Tools (HKLM-x32\...\MarketingTools) (Version:  - Sony Corporation)
VAIO Media plus (HKLM-x32\...\{8DE50158-80AA-4FF2-9E9F-0A7C46F71FCD}) (Version: 2.0.1.10160 - Sony Corporation)
VAIO Media plus Opening Movie (HKLM-x32\...\{9238E8A4-BEBA-43A3-B926-769BDBF194C5}) (Version: 1.2.0.09100 - Sony Corporation)
VAIO Movie Story MergeModules x64 (Version: 1.0.14240 - Sony Corporation) Hidden
VAIO Movie Story Template Data (HKLM-x32\...\InstallShield_{6FA8BA2C-052B-4072-B8E2-2302C268BE9E}) (Version: 2.2.00.15250 - Sony Corporation)
VAIO Movie Story Template Data (x32 Version: 2.0.00.09240 - Sony Corporation) Hidden
VAIO Original Function Settings (x32 Version: 2.0.0.07010 - Sony Corporation) Hidden
VAIO Original Funktion Einstellungen (HKLM-x32\...\{A63E7492-A0BC-4BB9-89A7-352965222380}) (Version: 2.0.0.07010 - Sony Corporation)
VAIO Personalization Manager (HKLM-x32\...\{A95187EF-BCF4-4468-B501-C0BAB976ADD1}) (Version: 2.0.0.06220 - Sony Corporation)
VAIO Personalization Manager (x32 Version: 2.0.0.06220 - Sony Corporation) Hidden
VAIO Premium Partners (HKLM-x32\...\VAIO Premium Partners) (Version: 1.0 - Sony Europe)
VAIO Quick Web Access (HKLM-x32\...\splashtop) (Version: 1.3.1.7 - Sony Corporation)
VAIO Quick Web Access (x32 Version: 1.3.1.7 - Sony Corporation) Hidden
VAIO screensaver (HKLM-x32\...\VAIO screensaver) (Version: 1.0.0.0 - Sony Europe)
VAIO Smart Network (HKLM-x32\...\{0899D75A-C2FC-42EA-A702-5B9A5F24EAD5}) (Version: 3.3.1.08110 - Sony Corporation)
VAIO Update (HKLM-x32\...\{9FF95DA2-7DA1-4228-93B7-DED7EC02B6B2}) (Version: 7.0.1.02280 - Sony Corporation)
VAIO Wallpaper Contents (HKLM-x32\...\{D60F97EC-EF06-4E1E-B0D1-C2CBABA62FA3}) (Version: 2.0.0.06010 - Sony Corporation)
VAIO-Support für Übertragungen (HKLM-x32\...\{5DDAFB4B-C52E-468A-9E23-3B0CEEB671BF}) (Version: 1.1.2.06030 - Sony Corporation)
VC80CRTRedist - 8.0.50727.6195 (x32 Version: 1.2.0 - DivX, Inc) Hidden
VD64Inst (Version: 1.00.0000 - Roxio, Inc.) Hidden
VLC media player 1.1.5 (HKLM-x32\...\VLC media player) (Version: 1.1.5 - VideoLAN)
VU5x64 (Version: 1.1.0 - Sony Corporation ) Hidden
VU5x86 (x32 Version: 1.0.0 - Sony Corporation ) Hidden
VU5x86 (x32 Version: 1.1.0 - Sony Corporation ) Hidden
WIDCOMM Bluetooth Software (HKLM\...\{9E9D49A4-1DF4-4138-B7DB-5D87A893088E}) (Version: 6.2.1.500 - Broadcom Corporation)
Windows Driver Package - Broadcom Bluetooth  (09/09/2009 6.2.0.9405) (HKLM\...\930E4792BDAEAFB62A9514EE7578775658A5D07C) (Version: 09/09/2009 6.2.0.9405 - Broadcom)
Windows Driver Package - Broadcom HIDClass  (07/28/2009 6.2.0.9800) (HKLM\...\3BA80AB4C7E9F8497C115C844953A3D4BEB84D21) (Version: 07/28/2009 6.2.0.9800 - Broadcom)
WinZip 15.0 (HKLM-x32\...\{CD95F661-A5C4-44F5-A6AA-ECDD91C240C1}) (Version: 15.0.9411 - WinZip Computing, S.L. )
XMedia Recode 3.0.8.5 (HKLM-x32\...\XMedia Recode) (Version: 3.0.8.5 - Sebastian Dörfler)

==================== Custom CLSID (selected items): ==========================

(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)


==================== Restore Points  =========================

24-09-2014 01:00:27 Windows Update
28-09-2014 12:23:26 Windows Update
28-09-2014 18:35:12 Windows-Sicherung
29-09-2014 18:14:01 Entfernt VAIO Update
29-09-2014 18:15:00 Installiert VAIO Update
30-09-2014 20:13:58 Windows Update
04-10-2014 21:54:08 Windows Update
05-10-2014 17:00:18 Windows-Sicherung
08-10-2014 20:12:59 Windows Update
12-10-2014 17:00:18 Windows-Sicherung
15-10-2014 19:09:55 Windows Update
18-10-2014 01:01:17 Windows Update

==================== Hosts content: ==========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2009-07-14 04:34 - 2014-10-18 14:47 - 00000027 ____A C:\Windows\system32\Drivers\etc\hosts
127.0.0.1       localhost

==================== Scheduled Tasks (whitelisted) =============

(If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)

Task: {02E166F2-977A-43F0-984F-E730625DC18B} - System32\Tasks\USER_ESRV_SVC => Wscript.exe //B //NoLogo "C:\Program Files\Sony\VAIO Care\ESRV\task.vbs"
Task: {0CE95371-120A-4414-B704-DD156D6BE5A1} - System32\Tasks\Sony Corporation\VAIO Care\UploadPOT => C:\Program Files\Sony\VAIO Care\VCSystemTray.exe [2014-02-20] (Sony Corporation)
Task: {37A77113-11FC-4E3B-B631-411200CEDF6D} - System32\Tasks\Sony Corporation\VAIO Care\CheckSystemInfo => C:\Program Files\Sony\VAIO Care\VCSystemTray.exe [2014-02-20] (Sony Corporation)
Task: {433EEC8A-A68C-42D1-8B17-D518F6CE3E3D} - System32\Tasks\RunAsStdUser Task for VeohWebPlayer => C:\Program Files (x86)\Veoh Networks\VeohWebPlayer\veohwebplayer.exe [2010-07-06] (Veoh Networks)
Task: {4A6D494E-8C0C-4C04-93DB-F266EAB0C8E3} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-09-23] (Adobe Systems Incorporated)
Task: {4A717497-6763-4E3A-A04A-5A248201FE61} - System32\Tasks\Sony Corporation\VAIO Care\VCOneClick => C:\Program Files\Sony\VAIO Care\VCSystemTray.exe [2014-02-20] (Sony Corporation)
Task: {5DE315F2-F2F1-4950-8321-3E7041975334} - System32\Tasks\Sony Corporation\VAIO Care\VCMetrics => C:\Program Files\Sony\VAIO Care\VCSystemTray.exe [2014-02-20] (Sony Corporation)
Task: {60CA9981-F877-4CF5-B687-8C9CDC27B26F} - System32\Tasks\SONY\SUS-BCF\Level4Daily => C:\Program Files (x86)\Sony\Setting Utility Series\WBCBatteryCare.exe [2009-11-20] (Sony Corporation)
Task: {693EE9F9-2473-4BF2-94A5-D2113FA09DF6} - System32\Tasks\Sony Corporation\VAIO Care\VCCheckIolo => C:\Program Files\Sony\VAIO Care\VCSystemTray.exe [2014-02-20] (Sony Corporation)
Task: {6E814914-464C-49F0-8F6F-E84F9DE8043C} - System32\Tasks\Sony Corporation\VAIO Care\VAIO Care => C:\Program Files\Sony\VAIO Care\VCSystemTray.exe [2014-02-20] (Sony Corporation)
Task: {723D98A4-0F60-455D-87D3-B48EA41EA023} - System32\Tasks\Sony Corporation\VAIO Care\GetPOTInfo => C:\Program Files\Sony\VAIO Care\VCSystemTray.exe [2014-02-20] (Sony Corporation)
Task: {7A8FA38B-37F5-4858-8E6C-3C3965DDCE36} - System32\Tasks\Sony Corporation\VAIO Care\DeployCRMflag => C:\Program Files\Sony\VAIO Care\DeployCRMflag.exe [2014-01-16] (Sony Corporation)
Task: {802F73DC-45EB-41E3-9D81-64131C8F300C} - System32\Tasks\Microsoft\Windows\WindowsBackup\AutomaticBackup => Rundll32.exe /d sdengin2.dll,ExecuteScheduledBackup
Task: {82C72CD5-65B4-4F1D-AC40-725A4A605B50} - System32\Tasks\Sony Corporation\VAIO Update\VAIO Update => C:\Program Files\Sony\VAIO Update\VAIOUpdt.exe [2014-02-28] (Sony Corporation)
Task: {849719D8-4729-4AF7-A1FD-CF795C7188E1} - System32\Tasks\Sony Corporation\VAIO Update\VAIO Update Self Repair => C:\Program Files\Sony\VAIO Update\VUSR.exe [2014-03-01] (Sony Corporation)
Task: {8D0F94FD-5059-4461-9982-5F1A1D1FAD66} - System32\Tasks\{E1CC23DB-CBB9-46AE-B398-3F87327C92D0} => C:\Program Files (x86)\Skype\Phone\Skype.exe [2013-11-14] (Skype Technologies S.A.)
Task: {8F988503-2ECE-4F44-A3F0-17A7C7E76E17} - System32\Tasks\SONY\VAIO Power Management\VPM Logon Start => C:\Program Files\Sony\VAIO Power Management\SPMgr.exe [2009-11-30] (Sony Corporation)
Task: {913340A9-6ECA-4BEA-8A79-B299E835FB20} - System32\Tasks\SONY\VAIO Gate\VAIO Gate => C:\Program Files\Sony\VAIO Gate\VAIO Gate.exe [2009-09-25] (Sony Corporation)
Task: {9499A1DC-CA3F-448E-9025-D69D7318B83D} - System32\Tasks\SONY\VAIO Power Management\VPM Unlock => C:\Program Files\Sony\VAIO Power Management\SPMgr.exe [2009-11-30] (Sony Corporation)
Task: {A3F5DABC-BAD8-42A6-9E42-FF052F5ECD34} - System32\Tasks\Sony Corporation\VAIO Care\UpdateSolution => C:\Program Files\Sony\VAIO Care\Solution.Updater.exe [2014-02-27] (Sony Corporation)
Task: {B009D77A-71FE-4CE6-B214-E37BAAC352B5} - System32\Tasks\Sony Corporation\VAIO Care\VCRLog => C:\Program Files\Sony\VAIO Care\VCSystemTray.exe [2014-02-20] (Sony Corporation)
Task: {B4A88D7E-F562-44A3-862E-36D2A40340B3} - System32\Tasks\SONY\VAIO Power Management\VPM Session Change => C:\Program Files\Sony\VAIO Power Management\SPMgr.exe [2009-11-30] (Sony Corporation)
Task: {CF0F3F8D-F854-4405-8702-FBA65979AAD1} - System32\Tasks\{89C4C448-3514-42C1-B8EC-E55F2375DF0F} => Firefox.exe hxxp://ui.skype.com/ui/0/6.3.73.105.457/de/abandoninstall?page=tsMain
Task: {D454BBB3-9951-44DB-870D-360385896654} - System32\Tasks\Sony Corporation\VAIO Care\VCSelfHeal => C:\Program Files\Sony\VAIO Care\VCSystemTray.exe [2014-02-20] (Sony Corporation)
Task: {D52F1E76-8363-43E6-8C7E-E416B8E88277} - System32\Tasks\SONY\SUS-BCF\Level4Month => C:\Program Files (x86)\Sony\Setting Utility Series\WBCBatteryCare.exe [2009-11-20] (Sony Corporation)
Task: {F2765A55-5A79-4DEE-BC79-03FB8AB2D224} - System32\Tasks\klcp_update => C:\Program Files (x86)\K-Lite Codec Pack\Tools\CodecTweakTool.exe [2014-09-23] ()
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe

==================== Loaded Modules (whitelisted) =============

2012-02-23 13:05 - 2009-04-07 14:53 - 00030440 _____ () C:\Program Files (x86)\dcmsvc\dcmsvc.exe
2011-07-29 01:08 - 2011-07-29 01:08 - 01259376 _____ () C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe
2010-08-24 15:39 - 2010-08-24 15:39 - 00016384 _____ () C:\Program Files (x86)\ATI Technologies\ATI.ACE\Branding\Branding.dll
2013-03-13 21:18 - 2013-03-13 21:18 - 00270336 _____ () C:\Windows\assembly\GAC_MSIL\CLI.Aspect.CrossDisplay.Graphics.Dashboard\1.0.0.0__90ba9c70f846762e\CLI.Aspect.CrossDisplay.Graphics.Dashboard.dll
2013-11-01 14:59 - 2013-11-01 14:59 - 00062464 _____ () C:\Program Files\Sony\VAIO Care\listener.exe
2010-06-28 14:21 - 2010-06-28 14:21 - 09905152 _____ () C:\Program Files (x86)\Veoh Networks\VeohWebPlayer\QtWebKit4.dll
2010-06-28 14:21 - 2010-06-28 14:21 - 00232960 _____ () C:\Program Files (x86)\Veoh Networks\VeohWebPlayer\phonon4.dll
2010-06-28 14:21 - 2010-06-28 14:21 - 07793152 _____ () C:\Program Files (x86)\Veoh Networks\VeohWebPlayer\QtGui4.dll
2010-06-28 14:21 - 2010-06-28 14:21 - 02094592 _____ () C:\Program Files (x86)\Veoh Networks\VeohWebPlayer\QtCore4.dll
2010-06-28 14:21 - 2010-06-28 14:21 - 02530304 _____ () C:\Program Files (x86)\Veoh Networks\VeohWebPlayer\QtXmlPatterns4.dll
2010-06-28 14:21 - 2010-06-28 14:21 - 00915456 _____ () C:\Program Files (x86)\Veoh Networks\VeohWebPlayer\QtNetwork4.dll
2010-06-28 14:21 - 2010-06-28 14:21 - 01116160 _____ () C:\Program Files (x86)\Veoh Networks\VeohWebPlayer\QtScript4.dll
2010-06-28 14:21 - 2010-06-28 14:21 - 00022016 _____ () C:\Program Files (x86)\Veoh Networks\VeohWebPlayer\imageformats\qgif4.dll
2010-06-28 14:21 - 2010-06-28 14:21 - 00120320 _____ () C:\Program Files (x86)\Veoh Networks\VeohWebPlayer\imageformats\qjpeg4.dll
2011-07-29 01:09 - 2011-07-29 01:09 - 00096112 _____ () C:\Program Files (x86)\DivX\DivX Update\DivXUpdateCheck.dll
2014-01-20 14:17 - 2014-01-20 14:17 - 00073544 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll
2014-01-20 14:16 - 2014-01-20 14:16 - 01044808 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll
2010-02-17 07:52 - 2009-12-01 23:03 - 00010752 _____ () C:\Program Files (x86)\Sony\VAIO Event Service\VESBasePS.dll
2010-02-17 07:52 - 2009-12-01 23:03 - 00009728 _____ () C:\Program Files (x86)\Sony\VAIO Event Service\VESMgrSubPS.dll
2010-01-29 23:55 - 2009-11-21 01:19 - 00058880 _____ () C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IsdiInterop.dll

==================== Alternate Data Streams (whitelisted) =========

(If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)

AlternateDataStreams: C:\ProgramData\TEMP:99AC3203

==================== Safe Mode (whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\McMPFSvc => ""="Service"

==================== EXE Association (whitelisted) =============

(If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)


==================== MSCONFIG/TASK MANAGER disabled items =========

(Currently there is no automatic fix for this section.)


========================= Accounts: ==========================

Administrator (S-1-5-21-3303785528-1083530386-3593389926-500 - Administrator - Disabled)
Gast (S-1-5-21-3303785528-1083530386-3593389926-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-3303785528-1083530386-3593389926-1002 - Limited - Enabled)
Rachel (S-1-5-21-3303785528-1083530386-3593389926-1001 - Administrator - Enabled) => C:\Users\Rachel

==================== Faulty Device Manager Devices =============

Name: regi
Description: regi
Class Guid: {8ECC055D-047F-11D1-A537-0000F8753ED1}
Manufacturer: 
Service: regi
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.


==================== Event log errors: =========================

Application errors:
==================

System errors:
=============

Microsoft Office Sessions:
=========================

CodeIntegrity Errors:
===================================
  Date: 2014-10-18 14:35:33.495
  Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume3\ComboFix\catchme.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert.

  Date: 2014-10-18 14:35:33.025
  Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume3\ComboFix\catchme.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert.

  Date: 2013-02-24 03:14:25.304
  Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\System32\drivers\usbaapl64.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert.

  Date: 2013-02-24 03:14:25.099
  Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\System32\drivers\usbaapl64.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert.

  Date: 2013-02-23 23:52:56.388
  Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\System32\drivers\usbaapl64.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert.

  Date: 2013-02-23 23:52:56.207
  Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\System32\drivers\usbaapl64.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert.

  Date: 2013-02-23 23:52:51.552
  Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\System32\drivers\usbaapl64.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert.

  Date: 2013-02-23 23:52:51.372
  Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\System32\drivers\usbaapl64.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert.

  Date: 2013-02-23 23:51:52.432
  Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\System32\drivers\usbaapl64.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert.

  Date: 2013-02-23 23:51:52.201
  Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume3\Windows\System32\drivers\usbaapl64.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert.


==================== Memory info =========================== 

Processor: Intel(R) Core(TM) i5 CPU M 430 @ 2.27GHz
Percentage of memory in use: 36%
Total physical RAM: 3950.1 MB
Available physical RAM: 2506.81 MB
Total Pagefile: 7898.38 MB
Available Pagefile: 5792.02 MB
Total Virtual: 8192 MB
Available Virtual: 8191.85 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:455.05 GB) (Free:127.83 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: AFD10471)
Partition 1: (Not Active) - (Size=10.6 GB) - (Type=27)
Partition 2: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=455.1 GB) - (Type=07 NTFS)

==================== End Of Log ============================
         
scheint weg zu sein.
Vielen, vielen Dank!!!
__________________

Alt 19.10.2014, 12:09   #19
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
Keine Downloads mehr möglich und überall Werbung - Standard

Keine Downloads mehr möglich und überall Werbung



Drücke bitte die Windowstaste + R Taste und schreibe notepad in das Ausführen Fenster.

Kopiere nun folgenden Text aus der Code-Box in das leere Textdokument

Code:
ATTFilter
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
S2 892cc6a3; "C:\Windows\system32\rundll32.exe" "c:\progra~3\perfor~1\PerformanceOptimizerSvc.dll",service
c:\progra~3\perfor~1
C:\ProgramData\b5a9dd818519d486
C:\Users\Public\dcmsvcsetup.exe
C:\Users\Rachel\grv.dat
C:\Users\Rachel2\grv.dat
C:\$Recycle.Bin\S-1-5-21-3303785528-1083530386-3593389926-1001\$70bd7d5850afbe8142e7bece87fb78c7
C:\$Recycle.Bin\S-1-5-18\$70bd7d5850afbe8142e7bece87fb78c7 
AlternateDataStreams: C:\ProgramData\TEMP:99AC3203
EmptyTemp:
Hosts:
         

Speichere diese bitte als Fixlist.txt auf deinem Desktop (oder dem Verzeichnis in dem sich FRST befindet).
  • Starte nun FRST erneut und klicke den Entfernen Button.
  • Das Tool erstellt eine Fixlog.txt.
  • Poste mir deren Inhalt.

__________________
Logfiles bitte immer in CODE-Tags posten

Alt 19.10.2014, 18:23   #20
Rachelffm
 
Keine Downloads mehr möglich und überall Werbung - Standard

Keine Downloads mehr möglich und überall Werbung



Code:
ATTFilter
Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 19-10-2014
Ran by Rachel at 2014-10-19 19:17:14 Run:1
Running from C:\Users\Rachel\Desktop
Loaded Profile: Rachel (Available profiles: Rachel)
Boot Mode: Normal
==============================================

Content of fixlist:
*****************
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
S2 892cc6a3; "C:\Windows\system32\rundll32.exe" "c:\progra~3\perfor~1\PerformanceOptimizerSvc.dll",service
c:\progra~3\perfor~1
C:\ProgramData\b5a9dd818519d486
C:\Users\Public\dcmsvcsetup.exe
C:\Users\Rachel\grv.dat
C:\Users\Rachel2\grv.dat
C:\$Recycle.Bin\S-1-5-21-3303785528-1083530386-3593389926-1001\$70bd7d5850afbe8142e7bece87fb78c7
C:\$Recycle.Bin\S-1-5-18\$70bd7d5850afbe8142e7bece87fb78c7 
AlternateDataStreams: C:\ProgramData\TEMP:99AC3203
EmptyTemp:
Hosts:
        
*****************

"HKLM\SOFTWARE\Policies\Google" => Key deleted successfully.
892cc6a3 => Service deleted successfully.
"c:\progra~3\perfor~1" => File/Directory not found.
C:\ProgramData\b5a9dd818519d486 => Moved successfully.
C:\Users\Public\dcmsvcsetup.exe => Moved successfully.
C:\Users\Rachel\grv.dat => Moved successfully.
C:\Users\Rachel2\grv.dat => Moved successfully.
"C:\$Recycle.Bin\S-1-5-21-3303785528-1083530386-3593389926-1001\$70bd7d5850afbe8142e7bece87fb78c7" => File/Directory not found.
"C:\$Recycle.Bin\S-1-5-18\$70bd7d5850afbe8142e7bece87fb78c7" => File/Directory not found.
C:\ProgramData\TEMP => ":99AC3203" ADS removed successfully.
C:\Windows\System32\Drivers\etc\hosts => Moved successfully.
Hosts was reset successfully.
EmptyTemp: => Removed 620.5 MB temporary data.


The system needed a reboot. 

==== End of Fixlog ====
         


Alt 19.10.2014, 21:37   #21
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
Keine Downloads mehr möglich und überall Werbung - Standard

Keine Downloads mehr möglich und überall Werbung



Okay, dann Kontrollscans mit MBAM und ESET bitte:

Downloade Dir bitte Malwarebytes Anti-Malware
  • Installiere das Programm in den vorgegebenen Pfad. (Bebilderte Anleitung zu MBAM)
  • Starte Malwarebytes' Anti-Malware (MBAM).
  • Klicke im Anschluss auf Scannen, wähle den Bedrohungssuchlauf aus und klicke auf Suchlauf starten.
  • Lass am Ende des Suchlaufs alle Funde (falls vorhanden) in die Quarantäne verschieben. Klicke dazu auf Auswahl entfernen.
  • Lass deinen Rechner ggf. neu starten, um die Bereinigung abzuschließen.
  • Starte MBAM, klicke auf Verlauf und dann auf Anwendungsprotokolle.
  • Wähle das neueste Scan-Protokoll aus und klicke auf Export. Wähle Textdatei (.txt) aus und speichere die Datei als mbam.txt auf dem Desktop ab. Das Logfile von MBAM findest du hier.
  • Füge den Inhalt der mbam.txt mit deiner nächsten Antwort hinzu.




ESET Online Scanner

  • Hier findest du eine bebilderte Anleitung zu ESET Online Scanner
  • Lade und starte Eset Online Scanner
  • Setze einen Haken bei Ja, ich bin mit den Nutzungsbedingungen einverstanden und klicke auf Starten.
  • Aktiviere die "Erkennung von eventuell unerwünschten Anwendungen" und wähle folgende Einstellungen.
  • Klicke auf Starten.
  • Die Signaturen werden heruntergeladen, der Scan beginnt automatisch.
  • Klicke am Ende des Suchlaufs auf Fertig stellen.
  • Schließe das Fenster von ESET.
  • Explorer öffnen.
  • C:\Programme\Eset\EsetOnlineScanner\log.txt (bei 64 Bit auch C:\Programme (x86)\Eset\EsetOnlineScanner\log.txt) suchen und mit Deinem Editor öffnen (bebildert).
  • Logfile hier posten.
  • Deinstallation: Systemsteuerung => Software / Programme deinstallieren => Eset Online Scanner V3 entfernen.
  • Manuell folgenden Ordner löschen und Papierkorb leeren => C:\Programme\Eset

__________________
--> Keine Downloads mehr möglich und überall Werbung

Alt 19.10.2014, 22:35   #22
Rachelffm
 
Keine Downloads mehr möglich und überall Werbung - Standard

Keine Downloads mehr möglich und überall Werbung



ich kann mir Malwarebyte nicht downloaden, da die Probetage rum sind.
Gibts ne Alternative?

Alt 20.10.2014, 15:46   #23
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
Keine Downloads mehr möglich und überall Werbung - Standard

Keine Downloads mehr möglich und überall Werbung



Zitat:
ich kann mir Malwarebyte nicht downloaden, da die Probetage rum sind.
Woher hast du bitte diesen Quatsch? Das gabs noch nie.

Selbst wenn die Probezeit abgelaufen ist, kann man MBAM als leicht abgespeckte Version endlos weiterverwenden.
__________________
Logfiles bitte immer in CODE-Tags posten

Alt 21.10.2014, 15:42   #24
Rachelffm
 
Keine Downloads mehr möglich und überall Werbung - Standard

Keine Downloads mehr möglich und überall Werbung



Code:
ATTFilter
 Malwarebytes Anti-Malware 
www.malwarebytes.org

Suchlauf Datum: 21.10.2014
Suchlauf-Zeit: 15:57:33
Logdatei: MWAB.txt
Administrator: Ja

Version: 2.00.3.1025
Malware Datenbank: v2014.10.21.05
Rootkit Datenbank: v2014.10.20.01
Lizenz: Kostenlos
Malware Schutz: Deaktiviert
Bösartiger Webseiten Schutz: Deaktiviert
Selbstschutz: Deaktiviert

Betriebssystem: Windows 7 Service Pack 1
CPU: x64
Dateisystem: NTFS
Benutzer: Rachel

Suchlauf-Art: Bedrohungs-Suchlauf
Ergebnis: Abgeschlossen
Durchsuchte Objekte: 377963
Verstrichene Zeit: 34 Min, 20 Sek

Speicher: Aktiviert
Autostart: Aktiviert
Dateisystem: Aktiviert
Archive: Aktiviert
Rootkits: Deaktiviert
Heuristik: Aktiviert
PUP: Warnen
PUM: Aktiviert

Prozesse: 0
(Keine schädliche Elemente erkannt)

Module: 0
(Keine schädliche Elemente erkannt)

Registrierungsschlüssel: 0
(Keine schädliche Elemente erkannt)

Registrierungswerte: 0
(Keine schädliche Elemente erkannt)

Registrierungsdaten: 0
(Keine schädliche Elemente erkannt)

Ordner: 0
(Keine schädliche Elemente erkannt)

Dateien: 0
(Keine schädliche Elemente erkannt)

Physische Sektoren: 0
(Keine schädliche Elemente erkannt)


(end)
         

Alt 21.10.2014, 21:35   #25
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
Keine Downloads mehr möglich und überall Werbung - Standard

Keine Downloads mehr möglich und überall Werbung



Ok. Was ist mit ESET?
__________________
Logfiles bitte immer in CODE-Tags posten

Alt 21.10.2014, 21:44   #26
Rachelffm
 
Keine Downloads mehr möglich und überall Werbung - Standard

Keine Downloads mehr möglich und überall Werbung



Code:
ATTFilter
C:\Gorleben\DivxUpdate.exe	Win32/Adware.ToolPlugin Anwendung
C:\Gorleben\FreeYouTubeToDVDConverter.exe	Variante von Win32/Bundled.Toolbar.Ask potenziell unsichere Anwendung
C:\Gorleben\FreeYouTubeToiPodConverter39.exe	Variante von Win32/Toolbar.Conduit.B evtl. unerwünschte Anwendung
C:\Gorleben\FreeYouTubeToMP3Converter(1).exe	Variante von Win32/Bundled.Toolbar.Ask potenziell unsichere Anwendung
C:\Gorleben\FreeYouTubeToMp3Converter.exe	Variante von Win32/Toolbar.Conduit.B evtl. unerwünschte Anwendung
C:\Qoobox\Quarantine\C\ProgramData\Performance Optimizer\PerformanceOptimizer.dll.vir	Variante von Win32/SProtector.D evtl. unerwünschte Anwendung
C:\Qoobox\Quarantine\C\ProgramData\Performance Optimizer\PerformanceOptimizerSvc.dll.vir	Variante von Win32/SProtector.D evtl. unerwünschte Anwendung
C:\Qoobox\Quarantine\C\ProgramData\Performance Optimizer\PerformanceOptimizer_x64.dll.vir	Variante von Win64/SProtector.B evtl. unerwünschte Anwendung
C:\Qoobox\Quarantine\C\ProgramData\SSmmaarTCompare\SD.dll.vir	Variante von Win32/AdWare.MultiPlug.BN Anwendung
C:\Qoobox\Quarantine\C\ProgramData\SSmmaarTCompare\SD.exe.vir	Variante von Win32/AdWare.MultiPlug.BN Anwendung
C:\Qoobox\Quarantine\C\ProgramData\SSmmaarTCompare\SD.x64.dll.vir	Variante von Win64/Adware.MultiPlug.E Anwendung
C:\Qoobox\Quarantine\C\Users\Rachel\AppData\Roaming\toolplugin\toolbar.dll.vir	Win32/Adware.ToolPlugin Anwendung
C:\Users\Rachel\Downloads\FreeYouTubeToMp3Converter36.exe	Variante von Win32/Toolbar.Conduit.B evtl. unerwünschte Anwendung
C:\Users\Rachel2\Desktop\FreeYouTubeToMP3Converter.exe	Win32/OpenCandy potenziell unsichere Anwendung
C:\Users\Rachel2\Desktop\PDFCreator-1_7_0_setup.exe	Win32/InstallMonetizer.AQ evtl. unerwünschte Anwendung
C:\Users\Rachel2\Downloads\FreeYouTubeToMP3Converter3.12.0.128.exe	Win32/OpenCandy potenziell unsichere Anwendung
C:\Users\Rachel2\Downloads\HSS-2.87-install.exe	Win32/Toolbar.Conduit evtl. unerwünschte Anwendung
         
Das hat grad ne halbe Ewigkeit gedauert. Deswegen jetzt erst das Eset

Alt 21.10.2014, 21:59   #27
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
Keine Downloads mehr möglich und überall Werbung - Standard

Keine Downloads mehr möglich und überall Werbung



Zitat:
C:\Gorleben
Wasndas für ein Ornder? Vllt mal löschen oder aufräumen? Ebenso den Kram auf dem Desktop und im Download-Ordner

Sieht soweit ok aus

Wegen Cookies und anderer Dinge im Web: Um die Pest von vornherein zu blocken (also TrackingCookies, Werbebanner etc.) müsstest du dir mal sowas wie MVPS Hosts File anschauen => Blocking Unwanted Parasites with a Hosts File - sinnvollerweise solltest du alle 4 Wochen mal bei MVPS nachsehen, ob er eine neue Hosts Datei herausgebracht hat. Ist aber nur optional. Um Usertracking zu verhindern kann man gut die Firefox-Erweiterung Ghostery verwenden.

Info: Cookies sind keine Schädlinge direkt, aber es besteht die Gefahr der missbräuchlichen Verwendung (eindeutige Wiedererkennung zB für gezielte Werbung o.ä. => HTTP-Cookie )

Ansonsten gibt es noch gute Cookiemanager, Erweiterungen für den Firefox zB wäre da CookieCuller
Wenn du aber damit leben kannst, dich bei jeder Browsersession überall neu einzuloggen (zB Facebook, Ebay, GMX, oder auch Trojaner-Board) dann stell den Browser einfach so ein, dass einfach alles beim Beenden des Browser inkl. Cookies gelöscht wird.

Ist dein System nun wieder in Ordnung oder gibt's noch andere Funde oder Probleme?
__________________
Logfiles bitte immer in CODE-Tags posten

Alt 21.10.2014, 22:46   #28
Rachelffm
 
Keine Downloads mehr möglich und überall Werbung - Standard

Keine Downloads mehr möglich und überall Werbung



Zitat:
Zitat:
C:\Gorleben
Wasndas für ein Ornder? Vllt mal löschen oder aufräumen?
Das ist, wie der Name ja schon andeuten lässt, mein Zwischenlager für Datein bei denen ich mich noch nicht entschieden habe, wo ich die final ablegen möchte

Auf dem Desktop hab ich momentan hauptsächlich die Programme und Dateien, die du mir zum Virusentfernen genannt hast.

Danke für die weiteren Tipps, ich werde sie beherzigen. Nochmal großes Dankeschön für die tolle Unterstützung!!

Zitat:
Ist dein System nun wieder in Ordnung oder gibt's noch andere Funde oder Probleme?
Mir fallen keine Probeme auf. Scheint also wirklich gelöst zu sein

Alt 21.10.2014, 22:49   #29
cosinus
/// Winkelfunktion
/// TB-Süch-Tiger™
 
Keine Downloads mehr möglich und überall Werbung - Standard

Keine Downloads mehr möglich und überall Werbung



Dann wären wir durch!


Falls du noch Lob oder Kritik loswerden möchtest => Lob, Kritik und Wünsche - Trojaner-Board

Die Programme, die hier zum Einsatz kamen, können alle deinstalliert werden. Es empfiehlt sich Malwarebytes Anti-Malware zu behalten und damit wöchentlich nach Malware zu scannen.

Helfen kann dir dabei delfix:


Die Reihenfolge ist hier entscheidend.
  1. Falls Defogger benutzt wurde: Defogger nochmal starten und auf re-enable klicken.
  2. Falls Combofix benutzt wurde: (Alternativ in uninstall.exe umbenennen und starten)
    • Windowstaste + R > Combofix /Uninstall (eingeben) > OK
    • Alternative: Combofix.exe in uninstall.exe umbenennen und starten
    • Combofix wird jetzt starten, sich evtl updaten und dann alle Reste von sich selbst entfernen.
  3. Downloade Dir bitte auf jeden Fall DelFix Download DelFix auf deinen Desktop:
    • Schließe alle offenen Programme.
    • Starte die delfix.exe mit einem Doppelklick.
    • Setze vor jede Funktion ein Häkchen.
    • Klicke auf Start.
    • Hinweis: DelFix entfernt u. a. alle verwendeten Programme, die Quarantäne unserer Scanner, den Java-Cache und löscht sich abschließend selbst.
    • Starte deinen Rechner abschließend neu.
  4. Sollten jetzt noch Programme aus unserer Bereinigung übrig sein kannst du sie bedenkenlos löschen.






Bitte abschließend noch die Updates prüfen, unten mein Leitfaden dazu. Um in Zukunft die Aktualität der installierten Programme besser im Überblick zu halten, kannst du zB Secunia PSI verwenden.
Für noch mehr Sicherheit solltest Du nach der beseitigten Infektion auch möglichst alle Passwörter ändern.


Microsoftupdate
Windows XP:Besuch mit dem IE die MS-Updateseite und lass Dir alle wichtigen Updates installieren.
Windows Vista/7: Start, Systemsteuerung, Windows-Update


PDF-Reader aktualisieren
Ein veralteter AdobeReader stellt ein großes Sicherheitsrisiko dar. Du solltest daher besser alte Versionen vom AdobeReader über Systemsteuerung => Software bzw. Programme und Funktionen deinstallieren, indem Du dort auf "Adobe Reader x.0" klickst und das Programm entfernst. (falls du AdobeReader installiert hast)

Ich empfehle einen alternativen PDF-Reader wie PDF Xchange Viewer, SumatraPDF oder Foxit PDF Reader, die sind sehr viel schlanker und flotter als der AdobeReader.

Bitte überprüf bei der Gelegenheit auch die Aktualität des Flashplayers:
Prüfen => Adobe - Flash Player
Downloadlinks findest du hier => Browsers and Plugins - FilePony.de

Alle Plugins im Firefox-Browser kannst du auch ganz einfach hier auf Aktualität prüfen => https://www.mozilla.org/de/plugincheck

Natürlich auch darauf achten, dass andere installierte Browser wie zB Firefox, Opera oder Chrome aktuell sind.


Java-Update
Veraltete Java-Installationen sind ein großes Sicherheitsrisiko, daher solltest Du die alten Versionen deinstallieren. Beende dazu alle Programme (v.a. die Browser), klick danach auf Start, Systemsteuerung, Software (bzw. Programme und Funktionen) und deinstalliere darüber alle aufgelisteten Java-Versionen. Lad Dir danach von hier das aktuelle Java SE Runtime Environment (JRE) herunter und installiere es.
__________________
Logfiles bitte immer in CODE-Tags posten

Antwort

Themen zu Keine Downloads mehr möglich und überall Werbung
antivirusprogramm, fehlercode 0x0, fehlercode 0x8007042c, fehlercode 24, fehlercode windows, microsoft essentials, nicht öffnen, performance optimizer entfernen, ssmmaartcompare entfernen, win32/adware.multiplug.bn, win32/adware.toolplugin, win32/bundled.toolbar.ask, win32/installmonetizer.aq, win32/sprotector.d, win32/toolbar.conduit, win32/toolbar.conduit.b, win64/adware.multiplug.e, win64/sprotector.b




Ähnliche Themen: Keine Downloads mehr möglich und überall Werbung


  1. Virusbefall: Browser schmiert ständig ab - Keine Downloads mehr möglich
    Plagegeister aller Art und deren Bekämpfung - 04.11.2014 (5)
  2. Win7 keine Downloads möglich, weder mit IE noch im Outlook
    Mülltonne - 02.10.2014 (3)
  3. Keine Verbindungen / Downloads mehr möglich - DNS Problem?
    Plagegeister aller Art und deren Bekämpfung - 28.07.2014 (5)
  4. Seit einiger Zeit sind keine Downloads und Updates mehr möglich.
    Plagegeister aller Art und deren Bekämpfung - 17.07.2014 (1)
  5. Keine Downloads Internet möglich, Office 2013 funktioniert nicht
    Plagegeister aller Art und deren Bekämpfung - 03.06.2014 (41)
  6. keine downloads aus dem internet mehr möglich
    Plagegeister aller Art und deren Bekämpfung - 02.05.2014 (20)
  7. Adchoice werbung überall (keine pop ups), Avira und Malewarebytes finden nix
    Plagegeister aller Art und deren Bekämpfung - 16.04.2014 (3)
  8. Windows 7 zeitweise keine Downloads möglich, Outlook verändert
    Log-Analyse und Auswertung - 15.02.2014 (5)
  9. Keine Downloads mehr möglich! Was tun?
    Plagegeister aller Art und deren Bekämpfung - 23.01.2014 (3)
  10. keine Downloads mehr möglich Win7 (angeblich Viren enthalten)
    Plagegeister aller Art und deren Bekämpfung - 03.01.2014 (9)
  11. Windows 7 SP1 keine Downloads oder Updates aus dem Internet möglich
    Log-Analyse und Auswertung - 11.11.2013 (11)
  12. Keine Downloads mehr möglich unter Windows 7
    Plagegeister aller Art und deren Bekämpfung - 22.09.2013 (19)
  13. keine Downloads möglich, 3 Fehlermeldungen : 1xDefender, 2x RunDLL
    Plagegeister aller Art und deren Bekämpfung - 20.06.2011 (9)
  14. Internet sehr langsam, keine Downloads möglich -> Winsock LSP / prxerdrv.dll im Logfile
    Log-Analyse und Auswertung - 30.09.2010 (12)
  15. Riesenproblem (Bei google wechsel andere Seiten, Keine Downloads möglich, usw.]
    Log-Analyse und Auswertung - 20.01.2009 (25)
  16. System Security / keine Downloads mehr möglich
    Mülltonne - 06.01.2009 (1)
  17. Überall Werbung ich kann sie nicht mehr sehen.....
    Alles rund um Windows - 12.09.2004 (5)

Zum Thema Keine Downloads mehr möglich und überall Werbung - Lass den Scanner aus, der stört nur bei Bereinigungen Adware/Junkware/Toolbars entfernen 1. Schritt: adwCleaner Downloade Dir bitte AdwCleaner auf deinen Desktop . Schließe alle offenen Programme und Browser. Bebilderte Anleitung - Keine Downloads mehr möglich und überall Werbung...
Archiv
Du betrachtest: Keine Downloads mehr möglich und überall Werbung auf Trojaner-Board

Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.