Zurück   Trojaner-Board > Malware entfernen > Log-Analyse und Auswertung

Log-Analyse und Auswertung: mystartsearch entfernen

Windows 7 Wenn Du Dir einen Trojaner eingefangen hast oder ständig Viren Warnungen bekommst, kannst Du hier die Logs unserer Diagnose Tools zwecks Auswertung durch unsere Experten posten. Um Viren und Trojaner entfernen zu können, muss das infizierte System zuerst untersucht werden: Erste Schritte zur Hilfe. Beachte dass ein infiziertes System nicht vertrauenswürdig ist und bis zur vollständigen Entfernung der Malware nicht verwendet werden sollte.

Antwort
Alt 26.11.2014, 17:59   #1
magnusson
 
mystartsearch entfernen - Standard

mystartsearch entfernen



Hallo ich habe ein Problem mit dieser mystartsearch Seite, die seit gestern immer beim Starten der Brower auftaucht. Parallel dazu erscheinen plötzlich auch auf jeder neuen Seite die ich öffne irgendwelche Werbefenster auf.
In einem älteren Beitrag mit dem gleichen Thema habe ich nachgelesen, dass man zunächst einen einen Vollscan mit Malwarebytes Anti-Malware machen sollte und danach einen Scan mit OTL.
Beides habe ich schon gemacht und nach dem Malwarebytes-Scan habe ich auch die Probleme bereinigt und seitdem tauchen die Werbefester zumindest bei Google Chrome nicht mehr auf, bei Firefox allerdings nach wie vor.
Ich würde jetzt als nächstes den Fix mit OTL machen, bin mir aber sehr unsicher wie das funktioniert und würde deswegen gerne mal bei euch nachfragen.
Vielen Danke schon einmal für die Hilfe

Hier sind die Logs von den Scans:

Anhang 71068

Anhang 71069

Anhang 71070

Alt 26.11.2014, 19:50   #2
schrauber
/// the machine
/// TB-Ausbilder
 

mystartsearch entfernen - Standard

mystartsearch entfernen



Hi,

Logs bitte immer in den Thread posten. Zur Not aufteilen und mehrere Posts nutzen.
Ich kann auf Arbeit keine Anhänge öffnen, danke.

So funktioniert es:
Posten in CODE-Tags
Die Logfiles anzuhängen oder sogar vorher in ein ZIP, RAR, 7Z-Archive zu packen erschwert mir massiv die Arbeit, es sei denn natürlich die Datei wäre ansonsten zu gross für das Forum. Um die Logfiles in eine CODE-Box zu stellen gehe so vor:
  • Markiere das gesamte Logfile (geht meist mit STRG+A) und kopiere es in die Zwischenablage mit STRG+C.
  • Klicke im Editor auf das #-Symbol. Es erscheinen zwei Klammerausdrücke [CODE] [/CODE].
  • Setze den Curser zwischen die CODE-Tags und drücke STRG+V.
  • Klicke auf Erweitert/Vorschau, um so prüfen, ob du es richtig gemacht hast. Wenn alles stimmt ... auf Antworten.




Bitte lade dir die passende Version von Farbar's Recovery Scan Tool auf deinen Desktop: FRST Download FRST 32-Bit | FRST 64-Bit
(Wenn du nicht sicher bist: Lade beide Versionen oder unter Start > Computer (Rechtsklick) > Eigenschaften nachschauen)
  • Starte jetzt FRST.
  • Ändere ungefragt keine der Checkboxen und klicke auf Untersuchen.
  • Die Logdateien werden nun erstellt und befinden sich danach auf deinem Desktop.
  • Poste mir die FRST.txt und nach dem ersten Scan auch die Addition.txt in deinem Thread (#-Symbol im Eingabefenster der Webseite anklicken)

__________________

__________________

Alt 26.11.2014, 20:53   #3
magnusson
 
mystartsearch entfernen - Standard

mystartsearch entfernen



Tut mir Leid, hab ich zu spät gesehen. Ich teile sie dann auf, weil sie sonst zu lang sind.

OTL:

Code:
ATTFilter
OTL logfile created on: 26.11.2014 16:55:15 - Run 1
OTL by OldTimer - Version 3.2.69.0     Folder = C:\Users\WK\Downloads
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00000407 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy
 
5,78 Gb Total Physical Memory | 2,21 Gb Available Physical Memory | 38,16% Memory free
11,56 Gb Paging File | 7,57 Gb Available in Paging File | 65,49% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
 
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 119,24 Gb Total Space | 7,48 Gb Free Space | 6,27% Space Free | Partition Type: NTFS
Drive D: | 153,85 Gb Total Space | 67,37 Gb Free Space | 43,79% Space Free | Partition Type: NTFS
 
Computer Name: *** | User Name: *** | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
 
========== Processes (SafeList) ==========
 
PRC - [2014.11.26 16:53:47 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\WK\Downloads\OTL.exe
PRC - [2014.11.25 07:39:27 | 000,856,904 | ---- | M] (Google Inc.) -- C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
PRC - [2014.11.13 07:58:58 | 035,419,192 | ---- | M] (Dropbox, Inc.) -- C:\Users\WK\AppData\Roaming\Dropbox\bin\Dropbox.exe
PRC - [2014.11.03 18:12:16 | 003,835,728 | ---- | M] (LogMeIn Inc.) -- C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe
PRC - [2014.10.30 18:24:49 | 000,166,296 | ---- | M] (APN LLC.) -- C:\Program Files (x86)\AskPartnerNetwork\Toolbar\apnmcp.exe
PRC - [2014.10.23 14:02:28 | 000,432,888 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
PRC - [2014.10.23 14:02:09 | 001,015,544 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avscan.exe
PRC - [2014.10.23 14:01:58 | 000,432,888 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
PRC - [2014.10.23 14:01:56 | 000,703,736 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
PRC - [2014.10.22 15:16:42 | 000,124,208 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe
PRC - [2014.10.22 15:16:38 | 000,164,656 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe
PRC - [2014.10.10 22:15:59 | 001,942,424 | ---- | M] (APN) -- C:\Program Files (x86)\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe
PRC - [2014.10.01 11:09:30 | 000,968,504 | ---- | M] (Malwarebytes Corporation) -- C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe
PRC - [2014.10.01 11:09:28 | 001,871,160 | ---- | M] (Malwarebytes Corporation) -- C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamscheduler.exe
PRC - [2014.10.01 11:09:20 | 007,229,752 | ---- | M] (Malwarebytes Corporation) -- C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbam.exe
PRC - [2014.07.14 17:21:46 | 001,390,176 | ---- | M] (Microsoft Corporation) -- C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe
PRC - [2014.07.14 17:21:06 | 001,767,520 | ---- | M] (Microsoft Corporation) -- C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe
PRC - [2013.12.18 19:23:04 | 000,920,872 | ---- | M] (AnchorFree Inc.) -- C:\Program Files (x86)\Hotspot Shield\bin\cmw_srv.exe
PRC - [2013.12.18 19:17:48 | 000,555,304 | ---- | M] () -- C:\Program Files (x86)\Hotspot Shield\bin\hsswd.exe
PRC - [2013.11.14 12:37:36 | 000,044,752 | ---- | M] (COMPANYVERS_NAME) -- C:\PROGRA~2\RADIOR~1\bar\1.bin\4jbarsvc.exe
PRC - [2013.07.02 08:16:32 | 000,507,264 | ---- | M] (Oracle Corporation) -- C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe
PRC - [2013.06.26 18:21:50 | 000,207,528 | ---- | M] (Microsoft Corporation) -- C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe
PRC - [2013.06.26 18:21:46 | 000,523,944 | ---- | M] (Microsoft Corporation) -- C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe
PRC - [2013.01.29 10:03:50 | 001,069,408 | ---- | M] (LULU Software) -- C:\Program Files (x86)\Soda PDF 5\HelperService.exe
PRC - [2013.01.29 10:03:50 | 000,794,464 | ---- | M] (LULU Software) -- C:\Program Files (x86)\Soda PDF 5\ConversionService.exe
PRC - [2013.01.09 16:36:06 | 000,795,208 | ---- | M] (pdfforge GbR) -- C:\Program Files (x86)\PDF Architect\ConversionService.exe
PRC - [2013.01.09 16:34:26 | 001,324,104 | ---- | M] (pdfforge GbR) -- C:\Program Files (x86)\PDF Architect\HelperService.exe
PRC - [2012.12.07 18:00:07 | 000,076,888 | ---- | M] () -- C:\Windows\SysWOW64\PnkBstrA.exe
PRC - [2012.09.27 12:35:56 | 000,202,352 | ---- | M] (Razoss Bar) -- C:\Users\WK\AppData\Local\Razoss\Application\RazossUpdater.exe
PRC - [2012.08.15 18:08:34 | 000,231,768 | ---- | M] (SweetIM Technologies Ltd.) -- C:\Program Files (x86)\SweetIM\Communicator\SweetPacksUpdateManager.exe
PRC - [2012.07.28 15:39:32 | 000,239,968 | ---- | M] () -- C:\ProgramData\Mobile Partner\OnlineUpdate\ouc.exe
PRC - [2012.05.29 14:50:04 | 000,115,032 | ---- | M] (SweetIM Technologies Ltd.) -- C:\Program Files (x86)\SweetIM\Messenger\SweetIM.exe
PRC - [2012.03.21 14:07:14 | 000,692,888 | ---- | M] () -- C:\Users\WK\AppData\Roaming\BrowserCompanion\tcbhn.exe
PRC - [2012.02.03 15:24:50 | 000,277,120 | ---- | M] (ASUS) -- C:\Program Files (x86)\ASUS\InstantOn for NB\InsOnSrv.exe
PRC - [2012.02.03 14:40:42 | 000,277,120 | ---- | M] (ASUS) -- C:\Program Files (x86)\ASUS\InstantOn for NB\InsOnWMI.exe
PRC - [2012.02.02 15:33:32 | 002,321,072 | ---- | M] (ASUSTeK Computer Inc.) -- C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe
PRC - [2012.01.09 09:09:56 | 001,556,128 | ---- | M] (ASUSTeK Computer Inc.) -- C:\Program Files (x86)\ASUS\ASUS Live Update\LiveUpdate.exe
PRC - [2011.12.23 15:39:38 | 000,174,720 | ---- | M] (ASUSTek Computer Inc.) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe
PRC - [2011.12.22 18:58:42 | 000,318,080 | ---- | M] (ASUSTek Computer Inc.) -- C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
PRC - [2011.12.08 18:45:32 | 003,058,304 | ---- | M] (ASUS) -- C:\Windows\AsScrPro.exe
PRC - [2011.11.21 13:22:08 | 000,080,512 | ---- | M] (ASUS) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe
PRC - [2011.11.21 13:19:50 | 000,096,896 | ---- | M] (ASUS) -- C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
PRC - [2011.10.24 16:20:38 | 000,174,720 | ---- | M] (ASUS) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
PRC - [2011.10.17 03:44:00 | 002,253,120 | ---- | M] (NVIDIA Corporation) -- C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe
PRC - [2011.10.03 10:46:00 | 000,760,448 | ---- | M] (ASUS) -- C:\Program Files (x86)\ASUS\FaceLogon\smartlogon.exe
PRC - [2011.10.03 10:45:58 | 000,375,424 | ---- | M] (ASUS) -- C:\Program Files (x86)\ASUS\FaceLogon\sensorsrv.exe
PRC - [2011.03.14 16:27:28 | 000,236,384 | ---- | M] (Huawei Technologies Co., Ltd.) -- C:\ProgramData\DatacardService\DCSHelper.exe
PRC - [2010.12.21 03:24:38 | 002,656,280 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
PRC - [2010.12.21 03:24:36 | 000,325,656 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
PRC - [2010.08.20 18:57:06 | 000,107,816 | ---- | M] (CyberLink) -- C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe
PRC - [2010.07.09 21:45:00 | 000,984,400 | ---- | M] (Virage Logic Corporation / Sonic Focus) -- C:\Program Files (x86)\ASUS\ASUS Sonic Focus\SonicFocusTray.exe
PRC - [2009.06.19 09:29:42 | 000,105,016 | ---- | M] (ASUS) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
PRC - [2009.06.19 09:29:26 | 002,488,888 | ---- | M] (ASUS) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ATKOSD.exe
PRC - [2009.05.06 00:06:06 | 000,222,496 | ---- | M] (Acresso Corporation) -- C:\ProgramData\FLEXnet\Connect\11\ISUSPM.exe
PRC - [2008.12.22 16:15:34 | 000,174,648 | ---- | M] (ASUS) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\WDC.exe
PRC - [2008.08.13 20:00:08 | 000,113,208 | ---- | M] (ASUS) -- C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\KBFiltr.exe
 
 
========== Modules (No Company Name) ==========
 
MOD - [2014.11.26 15:46:17 | 000,043,008 | ---- | M] () -- c:\users\wk\appdata\local\temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpufwpga.dll
MOD - [2014.11.25 07:39:25 | 014,910,280 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\39.0.2171.71\PepperFlash\pepflashplayer.dll
MOD - [2014.11.25 07:39:24 | 009,009,480 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\39.0.2171.71\pdf.dll
MOD - [2014.11.25 07:39:20 | 001,077,064 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\39.0.2171.71\libglesv2.dll
MOD - [2014.11.25 07:39:18 | 000,211,272 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\39.0.2171.71\libegl.dll
MOD - [2014.11.25 07:39:17 | 001,677,128 | ---- | M] () -- C:\Program Files (x86)\Google\Chrome\Application\39.0.2171.71\ffmpegsumo.dll
MOD - [2014.11.13 07:49:58 | 003,610,624 | ---- | M] () -- C:\Users\WK\AppData\Roaming\Dropbox\bin\wxmsw28uh_vc.dll
MOD - [2014.10.20 17:28:30 | 000,260,096 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\WindowsForm0b574481#\446bc9f0c3b5824fab519cb5fec5af1b\WindowsFormsIntegration.ni.dll
MOD - [2014.10.20 17:27:38 | 002,997,248 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.IdentityModel\92a3b88ac6300af062edd6503bc5903c\System.IdentityModel.ni.dll
MOD - [2014.10.20 17:27:34 | 019,696,640 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.ServiceModel\316b149dbb031d0e35c9d57bb2fc4b6e\System.ServiceModel.ni.dll
MOD - [2014.10.20 17:26:36 | 000,018,944 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\Presentatio49d6fefe#\38d6578b4fe29bede85ffff08e3697b6\PresentationFramework-SystemXml.ni.dll
MOD - [2014.10.20 17:26:35 | 000,016,896 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\Presentatio84a7b877#\4df6733efc348c009a4a6e0adccc42a6\PresentationFramework-SystemData.ni.dll
MOD - [2014.10.20 03:23:28 | 000,368,128 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\7b22741531a2850c807656d0298a96bd\PresentationFramework.Aero.ni.dll
MOD - [2014.10.20 03:22:45 | 014,340,096 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\PresentationFramewo#\1f539baa94516139240877cb6afd72c2\PresentationFramework.ni.dll
MOD - [2014.10.20 03:22:26 | 012,435,968 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\1453d9e9a4989833ef3db4b22549ba1a\System.Windows.Forms.ni.dll
MOD - [2014.10.20 03:22:18 | 001,593,344 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\836e10dfd0811b303553216f5cb092ef\System.Drawing.ni.dll
MOD - [2014.10.20 03:22:12 | 005,467,648 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml\d49908aa93a23c84847b1f8b1b667860\System.Xml.ni.dll
MOD - [2014.10.20 03:22:07 | 000,978,432 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System.Configuration\237d509a79aeef6e4635b09450d98f2a\System.Configuration.ni.dll
MOD - [2014.10.20 03:22:05 | 012,236,800 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\PresentationCore\3d4f835b8078dacc8d5da623e2c3f0ee\PresentationCore.ni.dll
MOD - [2014.10.20 03:21:49 | 003,348,480 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\WindowsBase\d97a5aa0eb7697aca7c6e90ae471af2b\WindowsBase.ni.dll
MOD - [2014.10.20 03:21:39 | 007,991,808 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\System\908ba9e296e92b4e14bdc2437edac603\System.ni.dll
MOD - [2014.10.20 02:50:20 | 018,813,440 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\Presentatio5ae0f00f#\3646375313dd2b8e3afecbf945960336\PresentationFramework.ni.dll
MOD - [2014.10.20 02:50:01 | 011,025,920 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\PresentationCore\006d28e7c86f3e70db90ce06ea2f33fb\PresentationCore.ni.dll
MOD - [2014.10.20 02:49:57 | 007,409,664 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Data\5d2c01ae1ca8c40ed74cdfd7b7b7dcb1\System.Data.ni.dll
MOD - [2014.10.20 02:49:57 | 001,889,792 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Xaml\8b133e0d94535a7534719f70873ca7fe\System.Xaml.ni.dll
MOD - [2014.10.20 02:49:51 | 002,542,080 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Data.Linq\5e84979fadb7eb63caedea9f4acefcc9\System.Data.Linq.ni.dll
MOD - [2014.10.20 02:49:51 | 000,470,528 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\Presentatio1c9175f8#\7971f3a1c08c4043cf981f457855b4d4\PresentationFramework.Aero.ni.dll
MOD - [2014.10.20 02:49:46 | 012,894,208 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Windows.Forms\db563d596d76daed04e9b5d25b2f4cb9\System.Windows.Forms.ni.dll
MOD - [2014.10.20 02:49:45 | 003,950,080 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\WindowsBase\94bbd298ec8575f3c6151a59538a109c\WindowsBase.ni.dll
MOD - [2014.10.20 02:49:43 | 006,990,336 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Core\691c1ad89d16f49d80e84fa06a79089a\System.Core.ni.dll
MOD - [2014.10.20 02:49:40 | 007,668,736 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Xml\7147fa233a070283dba824da40089bf1\System.Xml.ni.dll
MOD - [2014.10.20 02:49:36 | 000,223,232 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Serv759bfb78#\902843918d037f5f3511d679bf1e2216\System.ServiceProcess.ni.dll
MOD - [2014.10.20 02:49:34 | 002,822,144 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Runteb92aa12#\f9f13cd8fe1cefaad78579a7c3a41464\System.Runtime.Serialization.ni.dll
MOD - [2014.10.20 02:49:32 | 000,794,112 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Servd1dec626#\35d3a1b878542de59cb4fc0593992404\System.ServiceModel.Internals.ni.dll
MOD - [2014.10.20 02:49:31 | 001,644,544 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Drawing\b4c08872c259018b17b2801da33ac80f\System.Drawing.ni.dll
MOD - [2014.10.20 02:49:31 | 000,122,880 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\SMDiagnostics\046058f81b039ab6fd839e03e67595f8\SMDiagnostics.ni.dll
MOD - [2014.10.20 02:49:30 | 000,976,384 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Configuration\0648dbecb7e3fb9523565107e04a5caf\System.Configuration.ni.dll
MOD - [2014.10.20 02:49:28 | 010,100,736 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System\17a393b77ae757f0768501fb95ff5af6\System.ni.dll
MOD - [2014.09.19 02:57:07 | 011,497,984 | ---- | M] () -- C:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dll
MOD - [2014.07.15 08:51:09 | 000,147,968 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Numerics\4c8a153aa66fcd62db6fff269a2ef2b4\System.Numerics.ni.dll
MOD - [2014.07.15 08:50:31 | 016,953,856 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\mscorlib\ce5f61c5754789df97be8dc991c47d07\mscorlib.ni.dll
MOD - [2013.08.23 20:01:44 | 025,100,288 | ---- | M] () -- C:\Users\WK\AppData\Roaming\Dropbox\bin\libcef.dll
MOD - [2012.05.30 19:06:48 | 000,087,912 | ---- | M] () -- C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll
MOD - [2012.05.30 19:06:30 | 001,242,512 | ---- | M] () -- C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll
MOD - [2012.03.21 14:07:14 | 000,692,888 | ---- | M] () -- C:\Users\WK\AppData\Roaming\BrowserCompanion\tcbhn.exe
MOD - [2012.01.31 08:25:12 | 001,163,264 | ---- | M] () -- C:\Program Files (x86)\ASUS\Wireless Console 3\acAuth.dll
MOD - [2012.01.12 16:17:14 | 000,204,800 | ---- | M] () -- C:\Program Files (x86)\ASUS\VirtualCamera\virtualCamera.ax
MOD - [2011.02.19 05:23:39 | 000,249,856 | ---- | M] () -- C:\Windows\assembly\GAC_MSIL\PresentationFramework.resources\3.0.0.0_de_31bf3856ad364e35\PresentationFramework.resources.dll
MOD - [2011.02.19 05:23:39 | 000,090,112 | ---- | M] () -- C:\Windows\assembly\GAC_MSIL\WindowsBase.resources\3.0.0.0_de_31bf3856ad364e35\WindowsBase.resources.dll
MOD - [2010.11.13 01:08:41 | 000,315,392 | ---- | M] () -- C:\Windows\assembly\GAC_MSIL\mscorlib.resources\2.0.0.0_de_b77a5c561934e089\mscorlib.resources.dll
MOD - [2010.08.20 18:57:06 | 000,619,816 | ---- | M] () -- C:\Program Files (x86)\CyberLink\Power2Go\CLMediaLibrary.dll
MOD - [2010.08.20 18:57:00 | 000,013,096 | ---- | M] () -- C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvcPS.dll
 
 
========== Services (SafeList) ==========
 
SRV:64bit: - [2014.04.09 14:13:48 | 000,289,256 | ---- | M] (McAfee, Inc.) [On_Demand | Stopped] -- C:\Program Files\McAfee Security Scan\3.8.150\McCHSvc.exe -- (McComponentHostService)
SRV:64bit: - [2013.05.27 06:50:47 | 001,011,712 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Program Files\Windows Defender\mpsvc.dll -- (WinDefend)
SRV:64bit: - [2011.09.01 03:08:08 | 001,166,848 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe -- (AMPPALR3)
SRV:64bit: - [2011.07.28 06:04:48 | 001,517,328 | ---- | M] (Intel(R) Corporation) [Auto | Running] -- C:\Program Files\Intel\WiFi\bin\EvtEng.exe -- (EvtEng)
SRV:64bit: - [2011.07.28 05:48:34 | 000,340,240 | ---- | M] () [On_Demand | Stopped] -- C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe -- (MyWiFiDHCPDNS)
SRV:64bit: - [2011.07.28 05:44:18 | 000,844,560 | ---- | M] (Intel(R) Corporation) [Auto | Running] -- C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe -- (RegSrvc)
SRV:64bit: - [2011.06.03 21:51:38 | 000,134,928 | ---- | M] (Intel(R) Corporation) [Auto | Running] -- C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe -- (BTHSSecurityMgr)
SRV:64bit: - [2011.03.04 01:57:58 | 000,379,520 | ---- | M] (ASUSTeK Computer Inc.) [Auto | Running] -- C:\Windows\SysNative\FBAgent.exe -- (AFBAgent)
SRV:64bit: - [2010.09.23 02:10:10 | 000,057,184 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Program Files\Windows Live\Mesh\wlcrasvc.exe -- (wlcrasvc)
SRV - [2014.11.03 18:12:16 | 002,530,128 | ---- | M] (LogMeIn Inc.) [Auto | Running] -- C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe -- (Hamachi2Svc)
SRV - [2014.10.30 18:24:49 | 000,166,296 | ---- | M] (APN LLC.) [Auto | Running] -- C:\Program Files (x86)\AskPartnerNetwork\Toolbar\apnmcp.exe -- (APNMCP)
SRV - [2014.10.23 14:02:28 | 000,432,888 | ---- | M] (Avira Operations GmbH & Co. KG) [Auto | Running] -- C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe -- (AntiVirSchedulerService)
SRV - [2014.10.23 14:01:58 | 000,432,888 | ---- | M] (Avira Operations GmbH & Co. KG) [Auto | Running] -- C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe -- (AntiVirService)
SRV - [2014.10.22 15:16:38 | 000,164,656 | ---- | M] (Avira Operations GmbH & Co. KG) [Auto | Running] -- C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe -- (Avira.OE.ServiceHost)
SRV - [2014.10.21 09:51:04 | 000,417,552 | ---- | M] (LogMeIn, Inc.) [Auto | Running] -- C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe -- (LMIGuardianSvc)
SRV - [2014.10.16 09:16:40 | 000,114,288 | ---- | M] (Mozilla Foundation) [On_Demand | Stopped] -- C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe -- (MozillaMaintenance)
SRV - [2014.10.01 11:09:30 | 000,968,504 | ---- | M] (Malwarebytes Corporation) [Auto | Running] -- C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe -- (MBAMService)
SRV - [2014.10.01 11:09:28 | 001,871,160 | ---- | M] (Malwarebytes Corporation) [Auto | Running] -- C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamscheduler.exe -- (MBAMScheduler)
SRV - [2014.07.14 17:21:46 | 001,390,176 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe -- (c2cautoupdatesvc)
SRV - [2014.07.14 17:21:06 | 001,767,520 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe -- (c2cpnrsvc)
SRV - [2014.04.03 19:21:48 | 000,315,008 | R--- | M] (Skype Technologies) [Auto | Stopped] -- C:\Program Files (x86)\Skype\Updater\Updater.exe -- (SkypeUpdate)
SRV - [2014.03.20 23:49:18 | 000,067,224 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)
SRV - [2013.12.18 19:23:04 | 000,920,872 | ---- | M] (AnchorFree Inc.) [Auto | Running] -- C:\Program Files (x86)\Hotspot Shield\bin\cmw_srv.exe -- (hshld)
SRV - [2013.12.18 19:17:48 | 000,555,304 | ---- | M] () [Auto | Running] -- C:\Program Files (x86)\Hotspot Shield\bin\hsswd.exe -- (HssWd)
SRV - [2013.12.17 22:16:04 | 000,078,512 | ---- | M] () [On_Demand | Stopped] -- C:\Program Files (x86)\Hotspot Shield\bin\HssTrayService.EXE -- (HssTrayService)
SRV - [2013.09.11 20:21:54 | 000,105,144 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2013.06.26 18:21:50 | 000,207,528 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe -- (sftvsa)
SRV - [2013.06.26 18:21:46 | 000,523,944 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe -- (sftlist)
SRV - [2013.01.29 10:03:50 | 001,069,408 | ---- | M] (LULU Software) [Auto | Running] -- C:\Program Files (x86)\Soda PDF 5\HelperService.exe -- (Soda PDF 5 Helper Service)
SRV - [2013.01.29 10:03:50 | 000,794,464 | ---- | M] (LULU Software) [Auto | Running] -- C:\Program Files (x86)\Soda PDF 5\ConversionService.exe -- (Soda PDF 5 Service)
SRV - [2013.01.09 16:36:06 | 000,795,208 | ---- | M] (pdfforge GbR) [Auto | Running] -- C:\Program Files (x86)\PDF Architect\ConversionService.exe -- (PDF Architect Service)
SRV - [2013.01.09 16:34:26 | 001,324,104 | ---- | M] (pdfforge GbR) [Auto | Running] -- C:\Program Files (x86)\PDF Architect\HelperService.exe -- (PDF Architect Helper Service)
SRV - [2012.12.29 00:49:40 | 000,541,760 | ---- | M] (Valve Corporation) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Steam\SteamService.exe -- (Steam Client Service)
SRV - [2012.12.07 18:00:07 | 000,076,888 | ---- | M] () [Auto | Running] -- C:\Windows\SysWOW64\PnkBstrA.exe -- (PnkBstrA)
SRV - [2012.07.28 15:39:32 | 000,239,968 | ---- | M] () [Auto | Stopped] -- C:\Program Files (x86)\Mobile Partner\UpdateDog\ouc.exe -- (Mobile Partner. RunOuc)
SRV - [2012.02.03 15:24:50 | 000,277,120 | ---- | M] (ASUS) [Auto | Running] -- C:\Program Files (x86)\ASUS\InstantOn for NB\InsOnSrv.exe -- (ASUS InstantOn)
SRV - [2011.11.21 13:22:08 | 000,080,512 | ---- | M] (ASUS) [Auto | Running] -- C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe -- (ASLDRService)
SRV - [2011.11.21 13:19:50 | 000,096,896 | ---- | M] (ASUS) [Auto | Running] -- C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe -- (ATKGFNEXSrv)
SRV - [2011.10.17 03:44:00 | 002,253,120 | ---- | M] (NVIDIA Corporation) [Auto | Running] -- C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe -- (nvUpdatusService)
SRV - [2011.03.14 16:27:34 | 000,346,976 | ---- | M] () [Auto | Running] -- C:\ProgramData\DatacardService\HWDeviceService64.exe -- (HWDeviceService64.exe)
SRV - [2010.12.21 03:24:38 | 002,656,280 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe -- (UNS)
SRV - [2010.12.21 03:24:36 | 000,325,656 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe -- (LMS)
 
 
========== Driver Services (SafeList) ==========
 
DRV:64bit: - [2014.11.26 16:53:56 | 000,079,064 | ---- | M] (Malwarebytes Corporation) [Kernel | Boot | Unknown] -- C:\Windows\SysNative\drivers\brhhnrwd.sys -- (ajnomo)
DRV:64bit: - [2014.11.26 16:06:02 | 000,129,752 | ---- | M] (Malwarebytes Corporation) [File_System | On_Demand | Running] -- C:\Windows\SysNative\drivers\MBAMSwissArmy.sys -- (MBAMSwissArmy)
DRV:64bit: - [2014.10.23 14:02:01 | 000,028,600 | ---- | M] (Avira Operations GmbH & Co. KG) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\avkmgr.sys -- (avkmgr)
DRV:64bit: - [2014.10.23 14:02:00 | 000,131,608 | ---- | M] (Avira Operations GmbH & Co. KG) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\avipbb.sys -- (avipbb)
DRV:64bit: - [2014.10.23 14:01:57 | 000,119,272 | ---- | M] (Avira Operations GmbH & Co. KG) [File_System | Auto | Running] -- C:\Windows\SysNative\drivers\avgntflt.sys -- (avgntflt)
DRV:64bit: - [2014.10.01 11:11:26 | 000,063,704 | ---- | M] (Malwarebytes Corporation) [File_System | On_Demand | Running] -- C:\Windows\SysNative\drivers\mwac.sys -- (MBAMWebAccessControl)
DRV:64bit: - [2014.10.01 11:11:12 | 000,025,816 | ---- | M] (Malwarebytes Corporation) [File_System | On_Demand | Running] -- C:\Windows\SysNative\drivers\mbam.sys -- (MBAMProtector)
DRV:64bit: - [2013.12.17 22:11:50 | 000,044,744 | ---- | M] (AnchorFree Inc.) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\hssdrv6.sys -- (HssDRV6)
DRV:64bit: - [2013.09.17 21:33:40 | 000,042,184 | ---- | M] (Anchorfree Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\taphss6.sys -- (taphss6)
DRV:64bit: - [2013.06.26 18:21:50 | 000,023,208 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Sftvollh.sys -- (Sftvol)
DRV:64bit: - [2013.06.26 18:21:48 | 000,028,840 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Running] -- C:\Windows\SysNative\drivers\Sftredirlh.sys -- (Sftredir)
DRV:64bit: - [2013.06.26 18:21:46 | 000,273,576 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Sftplaylh.sys -- (Sftplay)
DRV:64bit: - [2013.06.26 18:21:44 | 000,767,144 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Sftfslh.sys -- (Sftfs)
DRV:64bit: - [2012.07.28 15:39:33 | 000,421,376 | ---- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ewusbwwan.sys -- (ewusbmbb)
DRV:64bit: - [2012.07.28 15:39:33 | 000,221,312 | ---- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\ewusbmdm.sys -- (hwdatacard)
DRV:64bit: - [2012.07.28 15:39:33 | 000,086,016 | ---- | M] (Huawei Technologies Co., Ltd.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\ew_jubusenum.sys -- (huawei_enumerator)
DRV:64bit: - [2012.04.25 11:11:36 | 000,052,736 | ---- | M] (Apple, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\usbaapl64.sys -- (USBAAPL64)
DRV:64bit: - [2012.03.26 13:50:12 | 000,022,528 | ---- | M] (Apple Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\netaapl64.sys -- (Netaapl)
DRV:64bit: - [2012.03.01 07:46:16 | 000,023,408 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:\Windows\SysNative\drivers\fs_rec.sys -- (Fs_Rec)
DRV:64bit: - [2011.11.22 14:21:46 | 000,395,752 | ---- | M] (ASMedia Technology Inc) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\asmtxhci.sys -- (asmtxhci)
DRV:64bit: - [2011.11.22 14:21:46 | 000,130,024 | ---- | M] (ASMedia Technology Inc) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\asmthub3.sys -- (asmthub3)
DRV:64bit: - [2011.10.19 03:56:00 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:64bit: - [2011.10.19 03:56:00 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:64bit: - [2011.10.17 03:44:00 | 000,028,992 | ---- | M] (NVIDIA Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\nvpciflt.sys -- (nvpciflt)
DRV:64bit: - [2011.09.19 08:54:46 | 000,108,656 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\L1C62x64.sys -- (L1C)
DRV:64bit: - [2011.08.08 16:32:08 | 000,299,008 | ---- | M] (Windows (R) Win 7 DDK provider) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\AmpPal.sys -- (AMPPALP)
DRV:64bit: - [2011.08.08 16:32:08 | 000,299,008 | ---- | M] (Windows (R) Win 7 DDK provider) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\AmpPal.sys -- (AMPPAL)
DRV:64bit: - [2011.08.04 02:28:32 | 008,604,672 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\NETwNs64.sys -- (NETwNs64)
DRV:64bit: - [2011.07.26 09:22:48 | 012,288,480 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\igdkmd64.sys -- (igfx)
DRV:64bit: - [2011.07.20 17:47:56 | 000,143,144 | ---- | M] (ELAN Microelectronics Corp.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\ETD.sys -- (ETD)
DRV:64bit: - [2011.05.13 23:37:54 | 000,048,488 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\fssfltr.sys -- (fssfltr)
DRV:64bit: - [2011.04.26 04:07:36 | 000,557,848 | ---- | M] (Intel Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\iaStor.sys -- (iaStor)
DRV:64bit: - [2011.03.18 06:36:18 | 000,074,840 | ---- | M] (Alcor Micro, Corp.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\AmUStor.sys -- (AmUStor)
DRV:64bit: - [2010.11.20 14:33:36 | 000,078,720 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:64bit: - [2010.11.20 12:07:06 | 000,059,392 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV:64bit: - [2010.11.20 12:07:06 | 000,031,232 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbGD.sys -- (TsUsbGD)
DRV:64bit: - [2010.10.20 01:34:26 | 000,056,344 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\HECIx64.sys -- (MEIx64)
DRV:64bit: - [2010.10.14 18:28:16 | 000,317,440 | ---- | M] (Intel(R) Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\IntcDAud.sys -- (IntcDAud)
DRV:64bit: - [2009.10.05 02:34:00 | 001,542,656 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\athrx.sys -- (athr)
DRV:64bit: - [2009.07.20 10:29:40 | 000,015,416 | ---- | M] ( ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\kbfiltr.sys -- (kbfiltr)
DRV:64bit: - [2009.07.14 02:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:64bit: - [2009.07.14 02:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:64bit: - [2009.07.14 02:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:64bit: - [2009.07.14 00:21:48 | 000,038,400 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\tpm.sys -- (TPM)
DRV:64bit: - [2009.06.10 21:35:57 | 000,056,832 | ---- | M] (Silicon Integrated Systems Corp.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\SiSG664.sys -- (SiSGbeLH)
DRV:64bit: - [2009.06.10 21:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:64bit: - [2009.06.10 21:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:64bit: - [2009.06.10 21:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
DRV:64bit: - [2009.06.10 21:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
DRV:64bit: - [2009.05.18 12:17:08 | 000,034,152 | ---- | M] (GEAR Software Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\GEARAspiWDM.sys -- (GEARAspiWDM)
DRV:64bit: - [2009.03.18 15:35:42 | 000,033,856 | -H-- | M] (LogMeIn, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\hamachi.sys -- (hamachi)
DRV:64bit: - [2008.05.23 16:27:28 | 000,154,168 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\WimFltr.sys -- (WimFltr)
DRV - [2011.09.07 08:55:04 | 000,017,536 | ---- | M] (ASUS) [Kernel | System | Running] -- C:\Program Files (x86)\ASUS\ATK Package\ATK WMIACPI\atkwmiacpi64.sys -- (ATKWMIACPIIO_)
DRV - [2009.07.14 02:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount)
DRV - [2009.07.02 16:36:14 | 000,015,416 | ---- | M] (ASUS) [Kernel | Auto | Running] -- C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys -- (ASMMAP64)
 
 
========== Standard Registry (SafeList) ==========
 
 
========== Internet Explorer ==========
 
IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank
IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = about:blank
IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = about:blankROUN
IE:64bit: - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank
IE:64bit: - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE:64bit: - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = hxxp://www.bing.com/search?q={searchTerms}&form=ASUTDF&pc=NP06&src=IE-SearchBox
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Search_URL = about:blank
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Search Page = about:blank
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank
IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = hxxp://www.bing.com/search?q={searchTerms}&form=ASUTDF&pc=NP06&src=IE-SearchBox
 
 
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
 
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
 
IE - HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
 
 
 
 
 
IE - HKU\S-1-5-21-3717476656-758687553-1952641011-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://asus.msn.com
IE - HKU\S-1-5-21-3717476656-758687553-1952641011-1000\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = hxxp://asus.msn.com
IE - HKU\S-1-5-21-3717476656-758687553-1952641011-1000\..\URLSearchHook:  - No CLSID value found
IE - HKU\S-1-5-21-3717476656-758687553-1952641011-1000\..\URLSearchHook: {00000000-6E41-4FD3-8538-502F5495E5FC} - No CLSID value found
IE - HKU\S-1-5-21-3717476656-758687553-1952641011-1000\..\URLSearchHook: {855F3B16-6D32-4fe6-8A56-BBB695989046} - No CLSID value found
IE - HKU\S-1-5-21-3717476656-758687553-1952641011-1000\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKU\S-1-5-21-3717476656-758687553-1952641011-1000\..\SearchScopes\{3F3B5FDA-795B-4CFD-8A70-E1636621C471}: "URL" = hxxp://websearch.ask.com/redirect?client=ie&tb=ORJ&o=100000027&src=kw&q={searchTerms}&locale=de_DE&apn_ptnrs=U3&apn_dtid=YYYYYYYYDE&apn_uid=84489FBA-3535-4C95-A7FD-465A237C130E&apn_sauid=8598839B-9A5D-4C02-9AB3-B265DA17FFD4
IE - HKU\S-1-5-21-3717476656-758687553-1952641011-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-3717476656-758687553-1952641011-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local
 
IE - HKU\S-1-5-21-3717476656-758687553-1952641011-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://asus.msn.com
IE - HKU\S-1-5-21-3717476656-758687553-1952641011-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = hxxp://asus.msn.com
IE - HKU\S-1-5-21-3717476656-758687553-1952641011-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\..\URLSearchHook:  - No CLSID value found
IE - HKU\S-1-5-21-3717476656-758687553-1952641011-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\..\URLSearchHook: {00000000-6E41-4FD3-8538-502F5495E5FC} - No CLSID value found
IE - HKU\S-1-5-21-3717476656-758687553-1952641011-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\..\URLSearchHook: {855F3B16-6D32-4fe6-8A56-BBB695989046} - No CLSID value found
IE - HKU\S-1-5-21-3717476656-758687553-1952641011-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKU\S-1-5-21-3717476656-758687553-1952641011-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\..\SearchScopes\{3F3B5FDA-795B-4CFD-8A70-E1636621C471}: "URL" = hxxp://websearch.ask.com/redirect?client=ie&tb=ORJ&o=100000027&src=kw&q={searchTerms}&locale=de_DE&apn_ptnrs=U3&apn_dtid=YYYYYYYYDE&apn_uid=84489FBA-3535-4C95-A7FD-465A237C130E&apn_sauid=8598839B-9A5D-4C02-9AB3-B265DA17FFD4
IE - HKU\S-1-5-21-3717476656-758687553-1952641011-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-3717476656-758687553-1952641011-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local
 
IE - HKU\S-1-5-21-3717476656-758687553-1952641011-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com
IE - HKU\S-1-5-21-3717476656-758687553-1952641011-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.com/
IE - HKU\S-1-5-21-3717476656-758687553-1952641011-1001\..\URLSearchHook:  - No CLSID value found
IE - HKU\S-1-5-21-3717476656-758687553-1952641011-1001\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKU\S-1-5-21-3717476656-758687553-1952641011-1001\..\SearchScopes\{1B286EEF-2709-4C3C-9906-FBB750E00A0F}: "URL" = hxxp://search.us.com/serp?guid={86AB995A-0AB3-41C1-9DF2-12055B7F9703}&action=default_search&serpv=5&k={searchTerms}
IE - HKU\S-1-5-21-3717476656-758687553-1952641011-1001\..\SearchScopes\{3F3B5FDA-795B-4CFD-8A70-E1636621C471}: "URL" = hxxp://websearch.ask.com/redirect?client=ie&tb=ORJ&o=100000027&src=kw&q={searchTerms}&locale=de_DE&apn_ptnrs=U3&apn_dtid=YYYYYYYYDE&apn_uid=84489FBA-3535-4C95-A7FD-465A237C130E&apn_sauid=8598839B-9A5D-4C02-9AB3-B265DA17FFD4
IE - HKU\S-1-5-21-3717476656-758687553-1952641011-1001\..\SearchScopes\{75ACFA06-2B41-4E20-86D9-F9FB1ED31F73}: "URL" = hxxp://search.yahoo.com/search?p={searchTerms}&fr=tightropetb&type=10557
IE - HKU\S-1-5-21-3717476656-758687553-1952641011-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-3717476656-758687553-1952641011-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local
 
IE - HKU\S-1-5-21-3717476656-758687553-1952641011-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\Microsoft\Internet Explorer\Main,bProtector Start Page = 
IE - HKU\S-1-5-21-3717476656-758687553-1952641011-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.mystartsearch.com/?type=hp&ts=1416935763&from=ild&uid=WDCXWD3200BPVT-80JJ5T0_WD-WXK1E81YKEH3YKEH3
IE - HKU\S-1-5-21-3717476656-758687553-1952641011-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.com/
IE - HKU\S-1-5-21-3717476656-758687553-1952641011-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\..\URLSearchHook:  - No CLSID value found
IE - HKU\S-1-5-21-3717476656-758687553-1952641011-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKU\S-1-5-21-3717476656-758687553-1952641011-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\..\SearchScopes\{1B286EEF-2709-4C3C-9906-FBB750E00A0F}: "URL" = hxxp://search.us.com/serp?guid={86AB995A-0AB3-41C1-9DF2-12055B7F9703}&action=default_search&serpv=5&k={searchTerms}
IE - HKU\S-1-5-21-3717476656-758687553-1952641011-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\..\SearchScopes\{3F3B5FDA-795B-4CFD-8A70-E1636621C471}: "URL" = hxxp://websearch.ask.com/redirect?client=ie&tb=ORJ&o=100000027&src=kw&q={searchTerms}&locale=de_DE&apn_ptnrs=U3&apn_dtid=YYYYYYYYDE&apn_uid=84489FBA-3535-4C95-A7FD-465A237C130E&apn_sauid=8598839B-9A5D-4C02-9AB3-B265DA17FFD4
IE - HKU\S-1-5-21-3717476656-758687553-1952641011-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\..\SearchScopes\{75ACFA06-2B41-4E20-86D9-F9FB1ED31F73}: "URL" = hxxp://search.yahoo.com/search?p={searchTerms}&fr=tightropetb&type=10557
IE - HKU\S-1-5-21-3717476656-758687553-1952641011-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKU\S-1-5-21-3717476656-758687553-1952641011-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = *.local
 
========== FireFox ==========
 
FF - prefs.js..browser.search.defaultenginename: "mystartsearch"
FF - prefs.js..browser.search.order.1: "Ask Search"
FF - prefs.js..browser.search.order.3: "Bing "
FF - prefs.js..browser.search.selectedEngine: "mystartsearch"
FF - prefs.js..browser.search.useDBForOrder: true
FF - prefs.js..browser.startup.homepage: "hxxp://www.mystartsearch.com/?type=hp&ts=1416935763&from=ild&uid=WDCXWD3200BPVT-80JJ5T0_WD-WXK1E81YKEH3YKEH3"
FF - prefs.js..extensions.enabledAddons: 4jffxtbr%40RadioRage_4j.com:6.72.4.54897
FF - prefs.js..extensions.enabledAddons: ffxtlbr%40delta.com:1.5.0
FF - prefs.js..extensions.enabledAddons: FFPDFArchitectConverter%40pdfarchitect.com:1.0
FF - prefs.js..extensions.enabledAddons: FFSodaPDF5Converter%40sodapdf.com:1.0
FF - prefs.js..extensions.enabledAddons: toolbar_ORJ-V7%40apn.ask.com:48.15
FF - prefs.js..extensions.enabledAddons: bbrs_002%40blabbers.com:1.0.5
FF - prefs.js..extensions.enabledAddons: a338c5448f724f94af2f11%40cc4cdd6788a64e7ca7d83cb2cd.com:0.95.69
FF - prefs.js..extensions.enabledAddons: 6cfae8cc4676442fa78d9dcdf%40bd4ea874e76d4af1994ba.com:0.95.54
FF - prefs.js..extensions.enabledAddons: afproxy%40anchorfree.com:3.23
FF - prefs.js..extensions.enabledAddons: %7B972ce4c6-7e08-4474-a285-3208198ce6fd%7D:32.0.3
FF - prefs.js..keyword.URL: "hxxp://www.bing.com/search?FORM=UP97DF&PC=UP97&q="
FF - prefs.js..network.proxy.type: 0
FF - user.js - File not found
 
FF:64bit: - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\system32\Macromed\Flash\NPSWF64_11_8_800_94.dll File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF:64bit: - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_8_800_94.dll ()
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=:  File not found
FF - HKLM\Software\MozillaPlugins\@Apple.com/iTunes,version=1.0: C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF - HKLM\Software\MozillaPlugins\@esn.me/esnsonar,version=0.70.4: C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\npesnsonar.dll File not found
FF - HKLM\Software\MozillaPlugins\@esn/esnlaunch,version=1.132.0: C:\Program Files (x86)\Battlelog Web Plugins\1.132.0\npesnlaunch.dll File not found
FF - HKLM\Software\MozillaPlugins\@esn/esnlaunch,version=1.140.0: C:\Program Files (x86)\Battlelog Web Plugins\1.140.0\npesnlaunch.dll File not found
FF - HKLM\Software\MozillaPlugins\@java.com/DTPlugin,version=10.45.2: C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin,version=10.45.2: C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE: disabled File not found
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3538.0513: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@pandonetworks.com/PandoWebPlugin: C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\ZEON/PDF,version=2.0: C:\Program Files (x86)\Nuance\PDF Reader\bin\nppdf.dll (Zeon Corporation)
FF - HKCU\Software\MozillaPlugins\pandonetworks.com/PandoWebPlugin: C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF - HKCU\Software\MozillaPlugins\ubisoft.com/uplaypc: C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\npuplaypc.dll File not found
 
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\extensions\\FFPDFArchitectConverter@pdfarchitect.com: C:\Program Files (x86)\PDF Architect\FFPDFArchitectExt [2013.04.04 15:00:37 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\extensions\\FFSodaPDF5Converter@sodapdf.com: C:\Program Files (x86)\Soda PDF 5\FFSoda5Ext [2013.04.04 15:15:23 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 32.0.3\extensions\\Components: C:\Program Files (x86)\Mozilla Firefox\components
FF - HKEY_LOCAL_MACHINE\software\mozilla\Mozilla Firefox 32.0.3\extensions\\Plugins: C:\Program Files (x86)\Mozilla Firefox\plugins
FF - HKEY_CURRENT_USER\software\mozilla\Firefox\Extensions\\{e4f94d1e-2f53-401e-8885-681602c0ddd8}: C:\ProgramData\McAfee Security Scan\Extensions\{e4f94d1e-2f53-401e-8885-681602c0ddd8}.xpi [2014.04.04 11:36:14 | 000,010,691 | ---- | M] ()
 
[2012.03.29 16:52:42 | 000,000,000 | ---D | M] (No name found) -- C:\Users\WK\AppData\Roaming\mozilla\Extensions
[2014.09.27 07:14:29 | 000,000,000 | ---D | M] (No name found) -- C:\Users\WK\AppData\Roaming\mozilla\Firefox\Profiles\atpboepw.default\extension-data
[2014.09.27 07:14:29 | 000,000,000 | ---D | M] (No name found) -- C:\Users\WK\AppData\Roaming\mozilla\Firefox\Profiles\atpboepw.default\extension-data\toolbar_ORJ-V7@apn.ask.com
[2014.11.26 16:53:42 | 000,000,000 | ---D | M] (No name found) -- C:\Users\WK\AppData\Roaming\mozilla\Firefox\Profiles\atpboepw.default\extensions
[2012.08.16 21:38:34 | 000,000,000 | ---D | M] ("ICQ Toolbar") -- C:\Users\WK\AppData\Roaming\mozilla\Firefox\Profiles\atpboepw.default\extensions\{800b5000-a755-47e1-992b-48a1c1357f07}
[2014.11.26 14:28:29 | 000,000,000 | ---D | M] (Avira Browser Safety) -- C:\Users\WK\AppData\Roaming\mozilla\Firefox\Profiles\atpboepw.default\extensions\abs@avira.com
[2012.04.30 16:33:43 | 000,000,000 | ---D | M] (Browser Companion Helper) -- C:\Users\WK\AppData\Roaming\mozilla\Firefox\Profiles\atpboepw.default\extensions\bbrs_002@blabbers.com
[2014.10.16 09:16:45 | 000,755,073 | ---- | M] () (No name found) -- C:\Users\WK\AppData\Roaming\mozilla\firefox\profiles\atpboepw.default\extensions\toolbar_ORJ-V7@apn.ask.com.xpi
[2012.05.28 22:50:31 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\WK\AppData\Roaming\mozilla\firefox\profiles\atpboepw.default\extensions\bbrs_002@blabbers.com\chrome\content\cache\01e5db4d4b4e067ef2417404c7741115_expire
[2013.07.31 11:39:52 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\WK\AppData\Roaming\mozilla\firefox\profiles\atpboepw.default\extensions\bbrs_002@blabbers.com\chrome\content\cache\0324adea3b6ec02af09ea4ae9424591b_expire
[2013.06.06 18:19:13 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\WK\AppData\Roaming\mozilla\firefox\profiles\atpboepw.default\extensions\bbrs_002@blabbers.com\chrome\content\cache\03fe40bd6af654165bc287eea782c910_expire
[2012.08.31 19:31:08 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\WK\AppData\Roaming\mozilla\firefox\profiles\atpboepw.default\extensions\bbrs_002@blabbers.com\chrome\content\cache\06e0c0d489f84bd667626125b02eb86a_expire
[2014.11.25 19:00:27 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\WK\AppData\Roaming\mozilla\firefox\profiles\atpboepw.default\extensions\bbrs_002@blabbers.com\chrome\content\cache\074de0e9170cce0e12ad4ab035a2f25e_expire
[2014.01.02 22:31:30 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\WK\AppData\Roaming\mozilla\firefox\profiles\atpboepw.default\extensions\bbrs_002@blabbers.com\chrome\content\cache\0f0773a0a4d06eb721db0d7bdc8a048a_expire
[2013.04.05 14:48:51 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\WK\AppData\Roaming\mozilla\firefox\profiles\atpboepw.default\extensions\bbrs_002@blabbers.com\chrome\content\cache\1048fa0383ec8c1a4365d4bd4fed1de5_expire
[2012.08.31 19:31:08 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\WK\AppData\Roaming\mozilla\firefox\profiles\atpboepw.default\extensions\bbrs_002@blabbers.com\chrome\content\cache\170f337942c410233f577de5778810a6_expire
[2012.12.23 22:13:35 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\WK\AppData\Roaming\mozilla\firefox\profiles\atpboepw.default\extensions\bbrs_002@blabbers.com\chrome\content\cache\1b56f16ed9915e2ddbdc7e781b9b40c4_expire
[2013.06.06 18:19:16 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\WK\AppData\Roaming\mozilla\firefox\profiles\atpboepw.default\extensions\bbrs_002@blabbers.com\chrome\content\cache\1dd4a0fdeff86d7113af5bf9018092d1_expire
[2014.01.02 22:31:29 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\WK\AppData\Roaming\mozilla\firefox\profiles\atpboepw.default\extensions\bbrs_002@blabbers.com\chrome\content\cache\211ffae2c8a2b411d85c8541ffcbfe9c_expire
[2012.06.30 15:01:31 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\WK\AppData\Roaming\mozilla\firefox\profiles\atpboepw.default\extensions\bbrs_002@blabbers.com\chrome\content\cache\21d2bb231d3c04f5b6434220b2b1cb9e_expire
[2014.11.25 19:00:24 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\WK\AppData\Roaming\mozilla\firefox\profiles\atpboepw.default\extensions\bbrs_002@blabbers.com\chrome\content\cache\2328e1768b820b18ab2f301c9ff88e2c_expire
[2012.10.17 18:46:05 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\WK\AppData\Roaming\mozilla\firefox\profiles\atpboepw.default\extensions\bbrs_002@blabbers.com\chrome\content\cache\23d2c85d4900d7bc495fc376d471f66a_expire
[2013.07.31 11:39:56 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\WK\AppData\Roaming\mozilla\firefox\profiles\atpboepw.default\extensions\bbrs_002@blabbers.com\chrome\content\cache\24779e9d2de93d13d7e07b527a1684d4_expire
[2013.04.15 00:31:29 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\WK\AppData\Roaming\mozilla\firefox\profiles\atpboepw.default\extensions\bbrs_002@blabbers.com\chrome\content\cache\292124057d00cb0fa73db6b90d079658_expire
[2013.02.19 00:01:37 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\WK\AppData\Roaming\mozilla\firefox\profiles\atpboepw.default\extensions\bbrs_002@blabbers.com\chrome\content\cache\2a86ac4f3322238b4f27d14a09839275_expire
[2014.01.02 22:31:29 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\WK\AppData\Roaming\mozilla\firefox\profiles\atpboepw.default\extensions\bbrs_002@blabbers.com\chrome\content\cache\2e699bb621ffe89ade68eaef9df0d2d9_expire
[2013.07.31 11:39:55 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\WK\AppData\Roaming\mozilla\firefox\profiles\atpboepw.default\extensions\bbrs_002@blabbers.com\chrome\content\cache\2fb6eeef60fcb337c423cc8fa7ca18c5_expire
[2012.07.22 19:23:16 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\WK\AppData\Roaming\mozilla\firefox\profiles\atpboepw.default\extensions\bbrs_002@blabbers.com\chrome\content\cache\3b507b6d0186efd3615b9b9233c5f708_expire
[2013.07.31 11:39:55 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\WK\AppData\Roaming\mozilla\firefox\profiles\atpboepw.default\extensions\bbrs_002@blabbers.com\chrome\content\cache\3cfca05430dde483b28fdb7d91075b6d_expire
[2013.11.20 15:45:25 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\WK\AppData\Roaming\mozilla\firefox\profiles\atpboepw.default\extensions\bbrs_002@blabbers.com\chrome\content\cache\40e0df7ccddfc9450ea3bbf80a0110e4_expire
[2013.07.31 11:39:55 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\WK\AppData\Roaming\mozilla\firefox\profiles\atpboepw.default\extensions\bbrs_002@blabbers.com\chrome\content\cache\421ae7eb05494481cba83a79f0496651_expire
[2013.12.30 23:30:10 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\WK\AppData\Roaming\mozilla\firefox\profiles\atpboepw.default\extensions\bbrs_002@blabbers.com\chrome\content\cache\4c0be9972fa4923fed177cfcd07ca3fa_expire
[2013.07.31 11:39:56 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\WK\AppData\Roaming\mozilla\firefox\profiles\atpboepw.default\extensions\bbrs_002@blabbers.com\chrome\content\cache\4c84596d3a88c66ad9d449a45c76dd89_expire
[2013.07.31 11:39:54 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\WK\AppData\Roaming\mozilla\firefox\profiles\atpboepw.default\extensions\bbrs_002@blabbers.com\chrome\content\cache\4d3d10bd28ff623813254a49b26be41f_expire
[2014.11.26 16:30:16 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\WK\AppData\Roaming\mozilla\firefox\profiles\atpboepw.default\extensions\bbrs_002@blabbers.com\chrome\content\cache\5353fe618a525cf84c7c3e117446f2d5_expire
[2012.05.28 22:50:33 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\WK\AppData\Roaming\mozilla\firefox\profiles\atpboepw.default\extensions\bbrs_002@blabbers.com\chrome\content\cache\5417125bc3e532bbf6507d4c7d8ac7b0_expire
[2014.11.26 16:30:12 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\WK\AppData\Roaming\mozilla\firefox\profiles\atpboepw.default\extensions\bbrs_002@blabbers.com\chrome\content\cache\5d08671f40e6e9c2ff0f3c5f3d47f726_expire
[2013.01.13 14:56:46 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\WK\AppData\Roaming\mozilla\firefox\profiles\atpboepw.default\extensions\bbrs_002@blabbers.com\chrome\content\cache\5d5c3541c8187f3a48d4f72f4374009c_expire
[2012.10.11 09:27:34 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\WK\AppData\Roaming\mozilla\firefox\profiles\atpboepw.default\extensions\bbrs_002@blabbers.com\chrome\content\cache\5f4ce27504a73ff97d1936c597c769e5_expire
[2014.01.02 22:31:30 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\WK\AppData\Roaming\mozilla\firefox\profiles\atpboepw.default\extensions\bbrs_002@blabbers.com\chrome\content\cache\6107628e8e8b45f82cd780da403f3358_expire
[2012.09.05 10:22:01 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\WK\AppData\Roaming\mozilla\firefox\profiles\atpboepw.default\extensions\bbrs_002@blabbers.com\chrome\content\cache\61e2ae11ba3d1cbe8887ea80f192e299_expire
[2013.07.31 11:39:59 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\WK\AppData\Roaming\mozilla\firefox\profiles\atpboepw.default\extensions\bbrs_002@blabbers.com\chrome\content\cache\6a8ef73701ad78f92631ccabc37a9b58_expire
[2013.12.30 23:30:10 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\WK\AppData\Roaming\mozilla\firefox\profiles\atpboepw.default\extensions\bbrs_002@blabbers.com\chrome\content\cache\6c1193d5418bb171e5b5c818429576fb_expire
[2012.12.31 00:42:59 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\WK\AppData\Roaming\mozilla\firefox\profiles\atpboepw.default\extensions\bbrs_002@blabbers.com\chrome\content\cache\6ec88a37be1bea7fa99383e8b8c69afe_expire
[2012.10.17 17:56:36 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\WK\AppData\Roaming\mozilla\firefox\profiles\atpboepw.default\extensions\bbrs_002@blabbers.com\chrome\content\cache\70ad9563d8ac7288d771eb6cbb70c26d_expire
[2014.01.02 22:31:30 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\WK\AppData\Roaming\mozilla\firefox\profiles\atpboepw.default\extensions\bbrs_002@blabbers.com\chrome\content\cache\71466e089995731fd7f41c06f77bc6db_expire
[2013.01.06 13:28:28 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\WK\AppData\Roaming\mozilla\firefox\profiles\atpboepw.default\extensions\bbrs_002@blabbers.com\chrome\content\cache\719f6985083c6f0c2a8fef7aa1f75d63_expire
[2013.03.21 23:22:07 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\WK\AppData\Roaming\mozilla\firefox\profiles\atpboepw.default\extensions\bbrs_002@blabbers.com\chrome\content\cache\72891ec935a3d247f2da6562ef29a005_expire
[2012.07.22 19:23:17 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\WK\AppData\Roaming\mozilla\firefox\profiles\atpboepw.default\extensions\bbrs_002@blabbers.com\chrome\content\cache\7acafe2d3e4c14a116bde4e028813ba7_expire
[2014.11.25 19:00:25 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\WK\AppData\Roaming\mozilla\firefox\profiles\atpboepw.default\extensions\bbrs_002@blabbers.com\chrome\content\cache\7c0022298b948a99e406a6310bffea7f_expire
[2013.01.13 14:56:47 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\WK\AppData\Roaming\mozilla\firefox\profiles\atpboepw.default\extensions\bbrs_002@blabbers.com\chrome\content\cache\7e781915f58fe108a6af37bf82ba047b_expire
[2012.10.17 17:56:36 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\WK\AppData\Roaming\mozilla\firefox\profiles\atpboepw.default\extensions\bbrs_002@blabbers.com\chrome\content\cache\7efb9aab6fcb49f138e15f423901eca1_expire
[2013.11.20 15:45:26 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\WK\AppData\Roaming\mozilla\firefox\profiles\atpboepw.default\extensions\bbrs_002@blabbers.com\chrome\content\cache\820bd66734e445389cd345860d068c9f_expire
[2013.12.30 23:30:10 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\WK\AppData\Roaming\mozilla\firefox\profiles\atpboepw.default\extensions\bbrs_002@blabbers.com\chrome\content\cache\8325c498d48945847d152e1eef78847d_expire
[2012.05.28 22:50:30 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\WK\AppData\Roaming\mozilla\firefox\profiles\atpboepw.default\extensions\bbrs_002@blabbers.com\chrome\content\cache\83ed2d62b3629381be4ff461166e8480_expire
[2014.01.02 22:31:30 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\WK\AppData\Roaming\mozilla\firefox\profiles\atpboepw.default\extensions\bbrs_002@blabbers.com\chrome\content\cache\860f295e523c85f15d93b8c9b1abb411_expire
[2012.12.17 20:26:46 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\WK\AppData\Roaming\mozilla\firefox\profiles\atpboepw.default\extensions\bbrs_002@blabbers.com\chrome\content\cache\8a8dc36effa0a0300d6fb1a383936a49_expire
[2012.09.05 10:22:03 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\WK\AppData\Roaming\mozilla\firefox\profiles\atpboepw.default\extensions\bbrs_002@blabbers.com\chrome\content\cache\8ccfda3ab1ab5bbc5d7af38840ba022b_expire
[2014.11.26 16:30:11 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\WK\AppData\Roaming\mozilla\firefox\profiles\atpboepw.default\extensions\bbrs_002@blabbers.com\chrome\content\cache\8f43b50088266b9870b42ce6ef7ffbde_expire
[2012.11.27 07:55:57 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\WK\AppData\Roaming\mozilla\firefox\profiles\atpboepw.default\extensions\bbrs_002@blabbers.com\chrome\content\cache\8ffbb13aa6f702b0cafab391f90d1db7_expire
[2013.12.30 23:30:10 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\WK\AppData\Roaming\mozilla\firefox\profiles\atpboepw.default\extensions\bbrs_002@blabbers.com\chrome\content\cache\9065ea62ce86482e48ba65c90f34af2f_expire
[2012.10.17 17:56:35 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\WK\AppData\Roaming\mozilla\firefox\profiles\atpboepw.default\extensions\bbrs_002@blabbers.com\chrome\content\cache\91ed24cba47f3cabaaaf7bdb0e620066_expire
[2012.12.18 15:33:56 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\WK\AppData\Roaming\mozilla\firefox\profiles\atpboepw.default\extensions\bbrs_002@blabbers.com\chrome\content\cache\92014bb7f6462cb491e652ca4941f1d2_expire
[2013.07.31 11:39:53 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\WK\AppData\Roaming\mozilla\firefox\profiles\atpboepw.default\extensions\bbrs_002@blabbers.com\chrome\content\cache\93aa59562815aa22d93923c7215ac7f1_expire
[2012.08.19 15:13:46 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\WK\AppData\Roaming\mozilla\firefox\profiles\atpboepw.default\extensions\bbrs_002@blabbers.com\chrome\content\cache\9803c283e94e743374151c4bbe60a5df_expire
[2014.11.25 19:00:23 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\WK\AppData\Roaming\mozilla\firefox\profiles\atpboepw.default\extensions\bbrs_002@blabbers.com\chrome\content\cache\99d788ca736751302bd0281545e1cbf7_expire
[2012.05.28 22:50:32 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\WK\AppData\Roaming\mozilla\firefox\profiles\atpboepw.default\extensions\bbrs_002@blabbers.com\chrome\content\cache\9dc8414e1b352cbe0663cc5f2b2490fb_expire
[2012.10.17 17:56:36 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\WK\AppData\Roaming\mozilla\firefox\profiles\atpboepw.default\extensions\bbrs_002@blabbers.com\chrome\content\cache\9dec145d2a2e788d627cf591d7d148b2_expire
[2013.03.21 23:22:06 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\WK\AppData\Roaming\mozilla\firefox\profiles\atpboepw.default\extensions\bbrs_002@blabbers.com\chrome\content\cache\a38dbdd1af07f4236d43e8fd995f57a6_expire
[2012.09.19 17:49:48 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\WK\AppData\Roaming\mozilla\firefox\profiles\atpboepw.default\extensions\bbrs_002@blabbers.com\chrome\content\cache\a74277a9a3c0203a3093f810f43fbc11_expire
[2013.03.21 23:22:06 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\WK\AppData\Roaming\mozilla\firefox\profiles\atpboepw.default\extensions\bbrs_002@blabbers.com\chrome\content\cache\a7e0abb80dabcdbb6dbaec920aa126a0_expire
[2014.11.25 19:00:24 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\WK\AppData\Roaming\mozilla\firefox\profiles\atpboepw.default\extensions\bbrs_002@blabbers.com\chrome\content\cache\a8e78a6006a812766277d1f827e58be6_expire
[2013.01.13 14:56:47 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\WK\AppData\Roaming\mozilla\firefox\profiles\atpboepw.default\extensions\bbrs_002@blabbers.com\chrome\content\cache\adf275b6644b3fcac86a14ffe551dede_expire
[2013.07.31 11:39:55 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\WK\AppData\Roaming\mozilla\firefox\profiles\atpboepw.default\extensions\bbrs_002@blabbers.com\chrome\content\cache\af0128cee5d2edfa094d04d99f7e4376_expire
[2012.10.12 11:29:52 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\WK\AppData\Roaming\mozilla\firefox\profiles\atpboepw.default\extensions\bbrs_002@blabbers.com\chrome\content\cache\bc8dad417f8f0fb33406e79ccd806c7f_expire
[2012.06.30 15:01:31 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\WK\AppData\Roaming\mozilla\firefox\profiles\atpboepw.default\extensions\bbrs_002@blabbers.com\chrome\content\cache\bd75b259da6df295d57bcf03a94e1ba6_expire
[2013.03.21 23:22:07 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\WK\AppData\Roaming\mozilla\firefox\profiles\atpboepw.default\extensions\bbrs_002@blabbers.com\chrome\content\cache\bf73732e1f0b76bac435293ba3880579_expire
[2012.07.22 19:23:17 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\WK\AppData\Roaming\mozilla\firefox\profiles\atpboepw.default\extensions\bbrs_002@blabbers.com\chrome\content\cache\c1c44ca1d695da7ece0f59471a8950a1_expire
[2013.12.30 23:30:10 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\WK\AppData\Roaming\mozilla\firefox\profiles\atpboepw.default\extensions\bbrs_002@blabbers.com\chrome\content\cache\c5bb86a60317fbdf092f8dfcc1828e21_expire
[2012.10.30 16:04:29 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\WK\AppData\Roaming\mozilla\firefox\profiles\atpboepw.default\extensions\bbrs_002@blabbers.com\chrome\content\cache\c6d8337e4b016a68fdbb60b29e7d254d_expire
[2014.11.25 19:00:26 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\WK\AppData\Roaming\mozilla\firefox\profiles\atpboepw.default\extensions\bbrs_002@blabbers.com\chrome\content\cache\c75261e846ce457d11060410767952c4_expire
[2012.10.28 12:24:02 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\WK\AppData\Roaming\mozilla\firefox\profiles\atpboepw.default\extensions\bbrs_002@blabbers.com\chrome\content\cache\cbb647c72e5b13b52d1392c603dcfde6_expire
[2012.08.19 15:13:46 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\WK\AppData\Roaming\mozilla\firefox\profiles\atpboepw.default\extensions\bbrs_002@blabbers.com\chrome\content\cache\cbb69a449d3e39b3a3781ffb1d7fa52b_expire
[2014.01.02 22:31:29 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\WK\AppData\Roaming\mozilla\firefox\profiles\atpboepw.default\extensions\bbrs_002@blabbers.com\chrome\content\cache\cf28706faad49b5cccfc9e9e3ebbd818_expire
[2012.12.19 07:12:37 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\WK\AppData\Roaming\mozilla\firefox\profiles\atpboepw.default\extensions\bbrs_002@blabbers.com\chrome\content\cache\d89bfd841403290d610bcf662008b443_expire
[2012.08.13 14:06:38 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\WK\AppData\Roaming\mozilla\firefox\profiles\atpboepw.default\extensions\bbrs_002@blabbers.com\chrome\content\cache\dc6668d28979688b1e2066d1dcaef0f6_expire
[2014.01.02 22:31:30 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\WK\AppData\Roaming\mozilla\firefox\profiles\atpboepw.default\extensions\bbrs_002@blabbers.com\chrome\content\cache\dealsdb_expire
[2012.10.30 16:04:29 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\WK\AppData\Roaming\mozilla\firefox\profiles\atpboepw.default\extensions\bbrs_002@blabbers.com\chrome\content\cache\df4525cd4117d8ae1c7453b139759242_expire
[2012.09.19 17:49:48 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\WK\AppData\Roaming\mozilla\firefox\profiles\atpboepw.default\extensions\bbrs_002@blabbers.com\chrome\content\cache\e02b35320e5111f1b626466c13c70a0a_expire
[2012.05.10 21:20:57 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\WK\AppData\Roaming\mozilla\firefox\profiles\atpboepw.default\extensions\bbrs_002@blabbers.com\chrome\content\cache\e05508e03bf34762151d9d19fffe93df_expire
[2013.07.31 11:39:56 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\WK\AppData\Roaming\mozilla\firefox\profiles\atpboepw.default\extensions\bbrs_002@blabbers.com\chrome\content\cache\e5e3c5241766dd74a01d5bee998994d9_expire
[2012.08.21 17:02:05 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\WK\AppData\Roaming\mozilla\firefox\profiles\atpboepw.default\extensions\bbrs_002@blabbers.com\chrome\content\cache\e7215b147326809c45f6cf0952274624_expire
[2012.11.12 19:19:11 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\WK\AppData\Roaming\mozilla\firefox\profiles\atpboepw.default\extensions\bbrs_002@blabbers.com\chrome\content\cache\e72174145ae7671ff95578a2089c26b2_expire
[2013.04.05 14:48:51 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\WK\AppData\Roaming\mozilla\firefox\profiles\atpboepw.default\extensions\bbrs_002@blabbers.com\chrome\content\cache\e7d8325da90d91d3c4e7720f0e629e17_expire
[2014.11.26 16:30:13 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\WK\AppData\Roaming\mozilla\firefox\profiles\atpboepw.default\extensions\bbrs_002@blabbers.com\chrome\content\cache\e818f8fdfd4a2719cd3ecc53f81103ea_expire
[2014.11.26 16:30:16 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\WK\AppData\Roaming\mozilla\firefox\profiles\atpboepw.default\extensions\bbrs_002@blabbers.com\chrome\content\cache\e8882aa44ad634f346a0b72f049c2e4c_expire
[2013.07.31 11:39:54 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\WK\AppData\Roaming\mozilla\firefox\profiles\atpboepw.default\extensions\bbrs_002@blabbers.com\chrome\content\cache\e919434ec29526b28593c426e4264271_expire
[2012.10.12 17:31:37 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\WK\AppData\Roaming\mozilla\firefox\profiles\atpboepw.default\extensions\bbrs_002@blabbers.com\chrome\content\cache\eb04bdda55e3827d8df8b5e1afac83a2_expire
[2012.11.12 19:19:10 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\WK\AppData\Roaming\mozilla\firefox\profiles\atpboepw.default\extensions\bbrs_002@blabbers.com\chrome\content\cache\ece5f266221b5245c6e3d7e27ddee963_expire
[2012.10.17 17:56:36 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\WK\AppData\Roaming\mozilla\firefox\profiles\atpboepw.default\extensions\bbrs_002@blabbers.com\chrome\content\cache\ece71b71690fad200cbed95871ef4bb2_expire
[2012.05.28 22:50:32 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\WK\AppData\Roaming\mozilla\firefox\profiles\atpboepw.default\extensions\bbrs_002@blabbers.com\chrome\content\cache\ed0c923c82a39debf5c71d22f5ef3dc7_expire
[2014.11.26 16:30:12 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\WK\AppData\Roaming\mozilla\firefox\profiles\atpboepw.default\extensions\bbrs_002@blabbers.com\chrome\content\cache\ee2135fec207a636822e2513020c079a_expire
[2013.04.04 15:01:53 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\WK\AppData\Roaming\mozilla\firefox\profiles\atpboepw.default\extensions\bbrs_002@blabbers.com\chrome\content\cache\f03527c67e08602d2e4c18ae7867300d_expire
[2013.07.31 11:39:55 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\WK\AppData\Roaming\mozilla\firefox\profiles\atpboepw.default\extensions\bbrs_002@blabbers.com\chrome\content\cache\f248892ef3299e9c1ff47a5eaea85394_expire
[2013.07.31 11:39:58 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\WK\AppData\Roaming\mozilla\firefox\profiles\atpboepw.default\extensions\bbrs_002@blabbers.com\chrome\content\cache\f40d602e45498a228640fb02ec51fdb6_expire
[2013.07.31 11:39:54 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\WK\AppData\Roaming\mozilla\firefox\profiles\atpboepw.default\extensions\bbrs_002@blabbers.com\chrome\content\cache\fa74672918974682c82b8d91dfbe0d6b_expire
[2014.01.02 22:31:29 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\WK\AppData\Roaming\mozilla\firefox\profiles\atpboepw.default\extensions\bbrs_002@blabbers.com\chrome\content\cache\fd2b14a1599592bd893eafc7d4583112_expire
[2013.07.31 11:39:54 | 000,000,013 | ---- | M] () (No name found) -- C:\Users\WK\AppData\Roaming\mozilla\firefox\profiles\atpboepw.default\extensions\bbrs_002@blabbers.com\chrome\content\cache\ff4d692d5e7cccbc4b3e9ef4062b1c6f_expire
[2013.09.22 16:45:57 | 000,002,545 | ---- | M] () -- C:\Users\WK\AppData\Roaming\mozilla\firefox\profiles\atpboepw.default\searchplugins\ask-search.xml
[2014.09.18 20:02:43 | 000,006,057 | ---- | M] () -- C:\Users\WK\AppData\Roaming\mozilla\firefox\profiles\atpboepw.default\searchplugins\bingp.xml
[2014.10.28 15:53:30 | 000,000,980 | ---- | M] () -- C:\Users\WK\AppData\Roaming\mozilla\firefox\profiles\atpboepw.default\searchplugins\icqplugin-1.xml
[2012.06.30 16:18:14 | 000,000,950 | ---- | M] () -- C:\Users\WK\AppData\Roaming\mozilla\firefox\profiles\atpboepw.default\searchplugins\icqplugin-2.xml
[2012.07.28 15:40:54 | 000,000,950 | ---- | M] () -- C:\Users\WK\AppData\Roaming\mozilla\firefox\profiles\atpboepw.default\searchplugins\icqplugin-3.xml
[2012.08.31 19:30:56 | 000,000,950 | ---- | M] () -- C:\Users\WK\AppData\Roaming\mozilla\firefox\profiles\atpboepw.default\searchplugins\icqplugin-4.xml
[2012.10.23 14:48:18 | 000,000,950 | ---- | M] () -- C:\Users\WK\AppData\Roaming\mozilla\firefox\profiles\atpboepw.default\searchplugins\icqplugin-5.xml
[2012.04.24 13:38:54 | 000,000,950 | ---- | M] () -- C:\Users\WK\AppData\Roaming\mozilla\firefox\profiles\atpboepw.default\searchplugins\icqplugin.xml
[2014.09.25 13:33:21 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\mozilla firefox\extensions
[2014.01.04 00:21:03 | 000,000,000 | ---D | M] (Hotspot Shield Extension) -- C:\Program Files (x86)\mozilla firefox\extensions\afproxy@anchorfree.com
[2014.09.25 13:37:32 | 000,000,000 | ---D | M] (No name found) -- C:\Program Files (x86)\mozilla firefox\browser\extensions
[2014.10.16 09:16:43 | 000,000,000 | ---D | M] (Default) -- C:\Program Files (x86)\mozilla firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
[2014.09.25 13:37:32 | 000,000,000 | ---D | M] (Hotspot Shield Extension) -- C:\Program Files (x86)\mozilla firefox\browser\extensions\afproxy@anchorfree.com
[2013.04.04 15:00:37 | 000,000,000 | ---D | M] (PDF Architect Converter For Firefox) -- C:\PROGRAM FILES (X86)\PDF ARCHITECT\FFPDFARCHITECTEXT
[2013.04.04 15:15:23 | 000,000,000 | ---D | M] (Soda PDF 5 Converter For Firefox) -- C:\PROGRAM FILES (X86)\SODA PDF 5\FFSODA5EXT
File not found (No name found) -- C:\USERS\WK\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ATPBOEPW.DEFAULT\EXTENSIONS\4JFFXTBR@RADIORAGE_4J.COM
File not found (No name found) -- C:\USERS\WK\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ATPBOEPW.DEFAULT\EXTENSIONS\6CFAE8CC4676442FA78D9DCDF@BD4EA874E76D4AF1994BA.COM
File not found (No name found) -- C:\USERS\WK\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ATPBOEPW.DEFAULT\EXTENSIONS\A338C5448F724F94AF2F11@CC4CDD6788A64E7CA7D83CB2CD.COM
File not found (No name found) -- C:\USERS\WK\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\ATPBOEPW.DEFAULT\EXTENSIONS\FFXTLBR@DELTA.COM
 
========== Chrome  ==========
 
CHR - default_search_provider:  (Enabled)
CHR - default_search_provider: search_url = 
CHR - default_search_provider: suggest_url = 
CHR - plugin: Shockwave Flash (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\39.0.2171.71\PepperFlash\pepflashplayer.dll
CHR - plugin: Chrome Remote Desktop Viewer (Enabled) = internal-remoting-viewer
CHR - plugin: Native Client (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\39.0.2171.71\ppGoogleNaClPluginChrome.dll
CHR - plugin: Chrome PDF Viewer (Enabled) = C:\Program Files (x86)\Google\Chrome\Application\39.0.2171.71\pdf.dll
CHR - plugin: Microsoft Office 2010 (Enabled) = C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL
CHR - plugin: Google Update (Enabled) = C:\Program Files (x86)\Google\Update\1.3.21.145\npGoogleUpdate3.dll
CHR - plugin: McAfee Security Scanner + (Enabled) = C:\Program Files (x86)\McAfee Security Scan\3.0.318\npMcAfeeMss.dll
CHR - plugin: Silverlight Plug-In (Enabled) = C:\Program Files (x86)\Microsoft Silverlight\5.1.20125.0\npctrl.dll
CHR - plugin: Zeon Plus (Enabled) = C:\Program Files (x86)\Nuance\PDF Reader\bin\nppdf.dll
CHR - plugin: Java(TM) Platform SE 7 U5 (Enabled) = C:\Program Files (x86)\Oracle\JavaFX 2.1 Runtime\bin\plugin2\npjp2.dll
CHR - plugin: Pando Web Plugin (Enabled) = C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll
CHR - plugin: Uplay PC (Enabled) = C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\npuplaypc.dll
CHR - plugin: Windows Live™ Photo Gallery (Enabled) = C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll
CHR - plugin: iTunes Application Detector (Enabled) = C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll
CHR - plugin: Shockwave Flash (Enabled) = C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_6_602_180.dll
CHR - plugin: Java Deployment Toolkit 7.0.50.255 (Enabled) = C:\Windows\SysWOW64\npDeployJava1.dll
CHR - Extension: No name found = C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\
CHR - Extension: No name found = C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\
CHR - Extension: No name found = C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn\0.1.1.5023_0\
CHR - Extension: No name found = C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\
CHR - Extension: No name found = C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\bodddioamolcibagionmmobehnbhiakf\1.0.5_0\
CHR - Extension: No name found = C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\bopakagnckmlgajfccecajhnimjiiedh\3.8.141.12_0\
CHR - Extension: No name found = C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\
CHR - Extension: No name found = C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\flliilndjeohchalpbbcdekjklbdgfkk\1.4.2_0\
CHR - Extension: No name found = C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.14_0\
CHR - Extension: No name found = C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\
CHR - Extension: No name found = C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0\
CHR - Extension: No name found = C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake\0.7_0\
CHR - Extension: No name found = C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\
CHR - Extension: No name found = C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn\0.1.1.5023_0\
CHR - Extension: No name found = C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\
CHR - Extension: No name found = C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\bodddioamolcibagionmmobehnbhiakf\1.0.5_0\
CHR - Extension: No name found = C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\bopakagnckmlgajfccecajhnimjiiedh\3.8.141.12_0\
CHR - Extension: No name found = C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\
CHR - Extension: No name found = C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\flliilndjeohchalpbbcdekjklbdgfkk\1.4.2_0\
CHR - Extension: No name found = C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.14_0\
CHR - Extension: No name found = C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\
CHR - Extension: No name found = C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_0\
 
O1 HOSTS File: ([2009.06.10 22:00:26 | 000,000,824 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O2:64bit: - BHO: (Skype Click to Call for Internet Explorer) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Microsoft Corporation)
O2 - BHO: (MSS+ Identifier) - {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} - C:\Program Files\McAfee Security Scan\3.8.150\McAfeeMSS_IE.dll (McAfee, Inc.)
O2 - BHO: (PDF Architect Helper) - {3A2D5EBA-F86D-4BD3-A177-019765996711} - C:\Program Files (x86)\PDF Architect\PDFIEHelper.dll (pdfforge GbR)
O2 - BHO: (Java(tm) Plug-In SSV Helper) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
O2 - BHO: (Skype Click to Call for Internet Explorer) - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Microsoft Corporation)
O2 - BHO: (Soda PDF 5 IE Helper) - {C737F472-1193-4281-BF53-A00B67AB3E19} - C:\Program Files (x86)\Soda PDF 5\PDFIEHelper.dll (LULU Software)
O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
O3:64bit: - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O3 - HKLM\..\Toolbar: (PDF Architect Toolbar) - {25A3A431-30BB-47C8-AD6A-E1063801134F} - C:\Program Files (x86)\PDF Architect\PDFIEPlugin.dll (pdfforge GbR)
O3 - HKLM\..\Toolbar: (Soda PDF 5 IE Toolbar) - {F335ABA2-FDB4-4644-92B2-5CC4B0FC91D6} - C:\Program Files (x86)\Soda PDF 5\PDFIEPlugin.dll (LULU Software)
O3 - HKLM\..\Toolbar: (no name) - Locked - No CLSID value found.
O4:64bit: - HKLM..\Run: [AmIcoSinglun64] C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe (Alcor Micro Corp.)
O4:64bit: - HKLM..\Run: [ETDCtrl] C:\Program Files\Elantech\ETDCtrl.exe (ELAN Microelectronics Corp.)
O4:64bit: - HKLM..\Run: [HotKeysCmds] C:\Windows\SysNative\hkcmd.exe (Intel Corporation)
O4:64bit: - HKLM..\Run: [IgfxTray] C:\Windows\SysNative\igfxtray.exe (Intel Corporation)
O4:64bit: - HKLM..\Run: [IntelPAN] C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe (Intel(R) Corporation)
O4:64bit: - HKLM..\Run: [Persistence] C:\Windows\SysNative\igfxpers.exe (Intel Corporation)
O4:64bit: - HKLM..\Run: [RtHDVBg] C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Realtek Semiconductor)
O4 - HKLM..\Run: [amd_dc_opt] C:\Program Files (x86)\AMD\Dual-Core Optimizer\amd_dc_opt.exe (AMD)
O4 - HKLM..\Run: [ApnTBMon] C:\Program Files (x86)\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe (APN)
O4 - HKLM..\Run: [APSDaemon] C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc.)
O4 - HKLM..\Run: [ASUSPRP] C:\Program Files (x86)\ASUS\APRP\APRP.EXE (ASUSTek Computer Inc.)
O4 - HKLM..\Run: [ASUSWebStorage] C:\Program Files (x86)\ASUS\ASUS WebStorage\3.0.108.222\AsusWSPanel.exe (ecareme)
O4 - HKLM..\Run: [ATKMEDIA] C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe (ASUS)
O4 - HKLM..\Run: [ATKOSD2] C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe (ASUSTek Computer Inc.)
O4 - HKLM..\Run: [avgnt] C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe (Avira Operations GmbH & Co. KG)
O4 - HKLM..\Run: [Avira Systray] C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe (Avira Operations GmbH & Co. KG)
O4 - HKLM..\Run: [HControlUser] C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe (ASUS)
O4 - HKLM..\Run: [LogMeIn Hamachi Ui] C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe (LogMeIn Inc.)
O4 - HKLM..\Run: [Nuance PDF Reader-reminder] C:\Program Files (x86)\Nuance\PDF Reader\Ereg\Ereg.exe (Nuance Communications, Inc.)
O4 - HKLM..\Run: [SonicMasterTray] C:\Program Files (x86)\ASUS\ASUS Sonic Focus\SonicFocusTray.exe (Virage Logic Corporation / Sonic Focus)
O4 - HKLM..\Run: [Wireless Console 3] C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe (ASUSTeK Computer Inc.)
O4 - HKU\S-1-5-19..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
O4 - HKU\S-1-5-19-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
O4 - HKU\S-1-5-20..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
O4 - HKU\S-1-5-20-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
O4 - HKU\S-1-5-21-3717476656-758687553-1952641011-1000..\Run: [ISUSPM] C:\ProgramData\FLEXnet\Connect\11\ISUSPM.exe (Acresso Corporation)
O4 - HKU\S-1-5-21-3717476656-758687553-1952641011-1000..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
O4 - HKU\S-1-5-21-3717476656-758687553-1952641011-1000..\Run: [Steam] "C:\Program Files (x86)\Steam\steam.exe" -silent File not found
O4 - HKU\S-1-5-21-3717476656-758687553-1952641011-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0..\Run: [ISUSPM] C:\ProgramData\FLEXnet\Connect\11\ISUSPM.exe (Acresso Corporation)
O4 - HKU\S-1-5-21-3717476656-758687553-1952641011-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0..\Run: [Sidebar] C:\Program Files (x86)\Windows Sidebar\Sidebar.exe (Microsoft Corporation)
O4 - HKU\S-1-5-21-3717476656-758687553-1952641011-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0..\Run: [Steam] "C:\Program Files (x86)\Steam\steam.exe" -silent File not found
O4 - HKU\S-1-5-21-3717476656-758687553-1952641011-1001..\Run: [EADM] "C:\Program Files (x86)\Origin\Origin.exe" -AutoStart File not found
O4 - HKU\S-1-5-21-3717476656-758687553-1952641011-1001..\Run: [ISUSPM] C:\ProgramData\FLEXnet\Connect\11\ISUSPM.exe (Acresso Corporation)
O4 - HKU\S-1-5-21-3717476656-758687553-1952641011-1001..\Run: [Pando Media Booster] C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe ()
O4 - HKU\S-1-5-21-3717476656-758687553-1952641011-1001..\Run: [Speech Recognition] C:\Windows\Speech\Common\sapisvr.exe (Microsoft Corporation)
O4 - HKU\S-1-5-21-3717476656-758687553-1952641011-1001..\Run: [Steam] "C:\Program Files (x86)\Steam\steam.exe" -silent File not found
O4 - HKU\S-1-5-21-3717476656-758687553-1952641011-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0..\Run: [EADM] "C:\Program Files (x86)\Origin\Origin.exe" -AutoStart File not found
O4 - HKU\S-1-5-21-3717476656-758687553-1952641011-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0..\Run: [ISUSPM] C:\ProgramData\FLEXnet\Connect\11\ISUSPM.exe (Acresso Corporation)
O4 - HKU\S-1-5-21-3717476656-758687553-1952641011-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0..\Run: [Pando Media Booster] C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe ()
O4 - HKU\S-1-5-21-3717476656-758687553-1952641011-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0..\Run: [Speech Recognition] C:\Windows\Speech\Common\sapisvr.exe (Microsoft Corporation)
O4 - HKU\S-1-5-21-3717476656-758687553-1952641011-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0..\Run: [Steam] "C:\Program Files (x86)\Steam\steam.exe" -silent File not found
O4 - HKU\S-1-5-21-3717476656-758687553-1952641011-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0..\Run: [TornTv Downloader] C:\Users\WK\AppData\Roaming\TornTV.com\Torntv Downloader.exe /c=startup File not found
O4 - HKLM..\RunOnce: [ Malwarebytes Anti-Malware  (cleanup)] C:\ProgramData\Malwarebytes\ Malwarebytes Anti-Malware \mbamdor.exe (Malwarebytes Corporation)
O4 - HKU\S-1-5-19..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
O4 - HKU\S-1-5-19-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
O4 - HKU\S-1-5-20..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
O4 - HKU\S-1-5-20-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
O4 - HKU\S-1-5-21-3717476656-758687553-1952641011-1000..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
O4 - HKU\S-1-5-21-3717476656-758687553-1952641011-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe File not found
O4 - Startup: C:\Users\WK\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk = C:\Users\WK\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
O4 - Startup: C:\Users\WK\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\RazossUpdater.lnk = C:\Users\WK\AppData\Local\Razoss\Application\RazossUpdater.exe (Razoss Bar)
O4 - Startup: C:\Users\WK\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\tcbhn.lnk = C:\Users\WK\AppData\Roaming\BrowserCompanion\tcbhn.exe ()
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 0
O7 - HKU\S-1-5-21-3717476656-758687553-1952641011-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-21-3717476656-758687553-1952641011-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 0
O7 - HKU\S-1-5-21-3717476656-758687553-1952641011-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-21-3717476656-758687553-1952641011-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 0
O7 - HKU\S-1-5-21-3717476656-758687553-1952641011-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 0
O7 - HKU\S-1-5-21-3717476656-758687553-1952641011-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O7 - HKU\S-1-5-21-3717476656-758687553-1952641011-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = 0
O7 - HKU\S-1-5-21-3717476656-758687553-1952641011-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O9:64bit: - Extra Button: Skype Click to Call settings - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Microsoft Corporation)
O9 - Extra Button: Skype Click to Call settings - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Microsoft Corporation)
O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000010 [] - C:\Program Files\Bonjour\mdnsNSP.dll (Apple Inc.)
O10 - NameSpace_Catalog5\Catalog_Entries\000000000010 [] - C:\Program Files (x86)\Bonjour\mdnsNSP.dll (Apple Inc.)
O1364bit: - gopher Prefix: missing
O13 - gopher Prefix: missing
O15 - HKU\.DEFAULT\..Trusted Domains: clonewarsadventures.com ([]* in Trusted sites)
O15 - HKU\.DEFAULT\..Trusted Domains: freerealms.com ([]* in Trusted sites)
O15 - HKU\.DEFAULT\..Trusted Domains: soe.com ([]* in Trusted sites)
O15 - HKU\.DEFAULT\..Trusted Domains: sony.com ([]* in Trusted sites)
O15 - HKU\S-1-5-18\..Trusted Domains: clonewarsadventures.com ([]* in Trusted sites)
O15 - HKU\S-1-5-18\..Trusted Domains: freerealms.com ([]* in Trusted sites)
O15 - HKU\S-1-5-18\..Trusted Domains: soe.com ([]* in Trusted sites)
O15 - HKU\S-1-5-18\..Trusted Domains: sony.com ([]* in Trusted sites)
O15 - HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\..Trusted Domains: clonewarsadventures.com ([]* in Trusted sites)
O15 - HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\..Trusted Domains: freerealms.com ([]* in Trusted sites)
O15 - HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\..Trusted Domains: soe.com ([]* in Trusted sites)
O15 - HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\..Trusted Domains: sony.com ([]* in Trusted sites)
O15 - HKU\S-1-5-19\..Trusted Domains: clonewarsadventures.com ([]* in )
O15 - HKU\S-1-5-19\..Trusted Domains: freerealms.com ([]* in )
O15 - HKU\S-1-5-19\..Trusted Domains: soe.com ([]* in )
O15 - HKU\S-1-5-19\..Trusted Domains: sony.com ([]* in )
O15 - HKU\S-1-5-19-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\..Trusted Domains: clonewarsadventures.com ([]* in )
O15 - HKU\S-1-5-19-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\..Trusted Domains: freerealms.com ([]* in )
O15 - HKU\S-1-5-19-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\..Trusted Domains: soe.com ([]* in )
O15 - HKU\S-1-5-19-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\..Trusted Domains: sony.com ([]* in )
O15 - HKU\S-1-5-20\..Trusted Domains: clonewarsadventures.com ([]* in )
O15 - HKU\S-1-5-20\..Trusted Domains: freerealms.com ([]* in )
O15 - HKU\S-1-5-20\..Trusted Domains: soe.com ([]* in )
O15 - HKU\S-1-5-20\..Trusted Domains: sony.com ([]* in )
O15 - HKU\S-1-5-20-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\..Trusted Domains: clonewarsadventures.com ([]* in )
O15 - HKU\S-1-5-20-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\..Trusted Domains: freerealms.com ([]* in )
O15 - HKU\S-1-5-20-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\..Trusted Domains: soe.com ([]* in )
O15 - HKU\S-1-5-20-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\..Trusted Domains: sony.com ([]* in )
O15 - HKU\S-1-5-21-3717476656-758687553-1952641011-1000\..Trusted Domains: clonewarsadventures.com ([]* in Trusted sites)
O15 - HKU\S-1-5-21-3717476656-758687553-1952641011-1000\..Trusted Domains: freerealms.com ([]* in Trusted sites)
O15 - HKU\S-1-5-21-3717476656-758687553-1952641011-1000\..Trusted Domains: soe.com ([]* in Trusted sites)
O15 - HKU\S-1-5-21-3717476656-758687553-1952641011-1000\..Trusted Domains: sony.com ([]* in Trusted sites)
O15 - HKU\S-1-5-21-3717476656-758687553-1952641011-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\..Trusted Domains: clonewarsadventures.com ([]* in Trusted sites)
O15 - HKU\S-1-5-21-3717476656-758687553-1952641011-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\..Trusted Domains: freerealms.com ([]* in Trusted sites)
O15 - HKU\S-1-5-21-3717476656-758687553-1952641011-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\..Trusted Domains: soe.com ([]* in Trusted sites)
O15 - HKU\S-1-5-21-3717476656-758687553-1952641011-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\..Trusted Domains: sony.com ([]* in Trusted sites)
O15 - HKU\S-1-5-21-3717476656-758687553-1952641011-1001\..Trusted Domains: clonewarsadventures.com ([]* in Trusted sites)
O15 - HKU\S-1-5-21-3717476656-758687553-1952641011-1001\..Trusted Domains: freerealms.com ([]* in Trusted sites)
O15 - HKU\S-1-5-21-3717476656-758687553-1952641011-1001\..Trusted Domains: soe.com ([]* in Trusted sites)
O15 - HKU\S-1-5-21-3717476656-758687553-1952641011-1001\..Trusted Domains: sony.com ([]* in Trusted sites)
O15 - HKU\S-1-5-21-3717476656-758687553-1952641011-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\..Trusted Domains: clonewarsadventures.com ([]* in Trusted sites)
O15 - HKU\S-1-5-21-3717476656-758687553-1952641011-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\..Trusted Domains: freerealms.com ([]* in Trusted sites)
O15 - HKU\S-1-5-21-3717476656-758687553-1952641011-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\..Trusted Domains: soe.com ([]* in Trusted sites)
O15 - HKU\S-1-5-21-3717476656-758687553-1952641011-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\..Trusted Domains: sony.com ([]* in Trusted sites)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{06141033-3538-4661-98F4-26D43E5213CE}: DhcpNameServer = 139.7.30.126 139.7.30.125
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{0C52F3F0-6F5E-43EB-AE69-8BECB36B0D4D}: DhcpNameServer = 192.168.0.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{2DE55FC2-B673-4425-B84E-120F753ED44F}: DhcpNameServer = 8.8.8.8
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{747E864C-C1A1-4C59-970E-17835798F39F}: DhcpNameServer = 217.0.43.129 217.0.43.145
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{A4B11116-6EE3-4D2E-AFE7-3E3A91FC1B2A}: DhcpNameServer = 10.74.210.210 10.74.210.211
O18:64bit: - Protocol\Handler\livecall - No CLSID value found
O18:64bit: - Protocol\Handler\msnim - No CLSID value found
O18:64bit: - Protocol\Handler\skypec2c {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Microsoft Corporation)
O18:64bit: - Protocol\Handler\wlmailhtml - No CLSID value found
O18:64bit: - Protocol\Handler\wlpg - No CLSID value found
O18 - Protocol\Handler\skypec2c {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Microsoft Corporation)
O20:64bit: - AppInit_DLLs: (C:\Windows\system32\nvinitx.dll) - C:\Windows\SysNative\nvinitx.dll (NVIDIA Corporation)
O20:64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\System32\Userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: UserInit - (bj.dll) -  File not found
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysWOW64\userinit.exe (Microsoft Corporation)
O20:64bit: - Winlogon\Notify\igfxcui: DllName - (igfxdev.dll) - C:\Windows\SysNative\igfxdev.dll (Intel Corporation)
O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O32 - HKLM CDRom: AutoRun - 1
O33 - MountPoints2\{921df4f4-c768-11e1-9279-5404a645b907}\Shell - "" = AutoRun
O33 - MountPoints2\{921df4f4-c768-11e1-9279-5404a645b907}\Shell\AutoRun\command - "" = F:\AutoRun.exe
O33 - MountPoints2\{921df502-c768-11e1-9279-5404a645b907}\Shell - "" = AutoRun
O33 - MountPoints2\{921df502-c768-11e1-9279-5404a645b907}\Shell\AutoRun\command - "" = F:\AutoRun.exe
O34 - HKLM BootExecute: (autocheck autochk *)
O35:64bit: - HKLM\..comfile [open] -- "%1" %*
O35:64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:64bit: - HKLM\...com [@ = comfile] -- "%1" %*
O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)
 
========== Files/Folders - Created Within 30 Days ==========
 
[2014.11.26 16:53:56 | 000,079,064 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\SysNative\drivers\brhhnrwd.sys
[2014.11.26 16:05:41 | 000,129,752 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\SysNative\drivers\MBAMSwissArmy.sys
[2014.11.26 16:05:25 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 
[2014.11.26 16:05:22 | 000,093,400 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\SysNative\drivers\mbamchameleon.sys
[2014.11.26 16:05:22 | 000,063,704 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\SysNative\drivers\mwac.sys
[2014.11.26 16:05:22 | 000,025,816 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\SysNative\drivers\mbam.sys
[2014.11.26 16:05:22 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\ Malwarebytes Anti-Malware 
[2014.11.26 16:05:22 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes
[2014.11.26 14:34:15 | 000,043,064 | ---- | C] (Avira Operations GmbH & Co. KG) -- C:\Windows\SysNative\drivers\avnetflt.sys
[2014.11.26 14:33:27 | 000,000,000 | ---D | C] -- C:\Users\WK\AppData\Roaming\Avira
[2014.11.26 14:30:49 | 000,131,608 | ---- | C] (Avira Operations GmbH & Co. KG) -- C:\Windows\SysNative\drivers\avipbb.sys
[2014.11.26 14:30:49 | 000,119,272 | ---- | C] (Avira Operations GmbH & Co. KG) -- C:\Windows\SysNative\drivers\avgntflt.sys
[2014.11.26 14:30:49 | 000,028,600 | ---- | C] (Avira Operations GmbH & Co. KG) -- C:\Windows\SysNative\drivers\avkmgr.sys
[2014.11.26 14:27:53 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira
[2014.11.26 14:27:52 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Avira
[2014.11.26 14:27:51 | 000,000,000 | ---D | C] -- C:\ProgramData\Avira
[2014.11.26 14:27:42 | 000,000,000 | ---D | C] -- C:\ProgramData\Package Cache
[2014.11.26 14:20:35 | 000,044,744 | ---- | C] (AnchorFree Inc.) -- C:\Windows\SysNative\drivers\hssdrv6.sys
[2014.11.25 18:34:43 | 000,000,000 | ---D | C] -- C:\Users\WK\AppData\Roaming\uTorrent
[2014.11.25 18:17:37 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\e743f1b9-82a4-47f6-832e-4665f9b967a8
[2014.11.25 18:13:51 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\d81cdd67-ab25-4a77-8bbe-2e3e7f283290
[2014.11.25 18:13:42 | 000,000,000 | ---D | C] -- C:\Users\WK\AppData\Local\globalUpdate
[2014.11.12 23:44:28 | 002,339,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jscript9.dll
[2014.11.12 23:44:27 | 000,717,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\jscript.dll
[2014.11.12 23:44:27 | 000,599,040 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\vbscript.dll
[2014.11.12 23:44:27 | 000,453,120 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dxtmsft.dll
[2014.11.12 23:44:27 | 000,176,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieui.dll
[2014.11.12 23:44:27 | 000,096,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mshtmled.dll
[2014.11.12 23:44:27 | 000,073,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmled.dll
[2014.11.12 23:44:26 | 000,816,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jscript.dll
[2014.11.12 23:44:25 | 000,282,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dxtrans.dll
[2014.11.12 23:44:25 | 000,248,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieui.dll
[2014.11.12 23:44:23 | 001,427,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\inetcpl.cpl
[2014.11.12 23:44:22 | 000,729,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msfeeds.dll
[2014.11.12 23:44:22 | 000,231,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\url.dll
[2014.11.12 23:44:22 | 000,173,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieUnatt.exe
[2014.11.12 23:44:22 | 000,012,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mshta.exe
[2014.11.12 23:44:21 | 001,494,016 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\inetcpl.cpl
[2014.11.12 23:44:21 | 000,237,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\url.dll
[2014.11.12 23:44:21 | 000,142,848 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieUnatt.exe
[2014.11.12 23:44:20 | 000,011,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msfeedssync.exe
[2014.11.12 23:44:20 | 000,010,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msfeedssync.exe
[2014.11.12 23:38:42 | 000,304,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\generaltel.dll
[2014.11.12 23:38:41 | 000,424,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\aeinv.dll
[2014.11.12 23:38:41 | 000,228,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\aepdu.dll
[2014.11.12 23:38:35 | 003,241,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msi.dll
[2014.11.12 23:38:31 | 000,681,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\adtschema.dll
[2014.11.12 23:38:31 | 000,681,984 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\adtschema.dll
[2014.11.12 23:38:30 | 001,460,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\lsasrv.dll
[2014.11.12 23:38:28 | 000,146,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msaudite.dll
[2014.11.12 23:38:28 | 000,146,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msaudite.dll
[2014.11.12 23:38:21 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msxml3r.dll
[2014.11.12 23:38:21 | 000,002,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msxml3r.dll
[2014.11.12 23:38:20 | 000,878,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\IMJP10K.DLL
[2014.11.12 23:38:20 | 000,701,440 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\IMJP10K.DLL
[2014.11.12 23:37:47 | 000,500,224 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\AUDIOKSE.dll
[2014.11.12 23:37:46 | 000,442,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\AUDIOKSE.dll
[2014.11.12 23:37:46 | 000,440,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\AudioEng.dll
[2014.11.12 23:37:46 | 000,296,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\AudioSes.dll
[2014.11.12 23:37:46 | 000,284,672 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\EncDump.dll
[2014.11.12 23:37:41 | 000,309,760 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ncrypt.dll
[2014.11.12 23:37:26 | 000,077,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\packager.dll
[2014.11.12 23:37:26 | 000,067,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\packager.dll
[2014.11.12 23:37:02 | 000,861,696 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\oleaut32.dll
[2014.11.11 14:21:10 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LogMeIn Hamachi
[2014.11.11 14:21:10 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\LogMeIn Hamachi
[2014.10.30 07:17:11 | 000,000,000 | ---D | C] -- C:\Users\WK\AppData\Local\{B725BD20-845D-4E00-85BF-AA148BC90AA7}
[2014.10.30 07:07:31 | 000,000,000 | ---D | C] -- C:\Users\WK\AppData\Local\Microsoft Help
[2014.10.30 07:07:31 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft Help
[2 C:\Windows\SysWow64\*.tmp files -> C:\Windows\SysWow64\*.tmp -> ]
[2 C:\Users\WK\Documents\*.tmp files -> C:\Users\WK\Documents\*.tmp -> ]
 
========== Files - Modified Within 30 Days ==========
 
[2014.11.26 16:53:56 | 000,079,064 | ---- | M] (Malwarebytes Corporation) -- C:\Windows\SysNative\drivers\brhhnrwd.sys
[2014.11.26 16:29:02 | 000,001,110 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2014.11.26 16:06:02 | 000,129,752 | ---- | M] (Malwarebytes Corporation) -- C:\Windows\SysNative\drivers\MBAMSwissArmy.sys
[2014.11.26 16:05:26 | 000,001,104 | ---- | M] () -- C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk
[2014.11.26 15:58:33 | 000,018,736 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2014.11.26 15:58:33 | 000,018,736 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2014.11.26 15:44:50 | 000,001,106 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2014.11.26 15:44:21 | 000,001,322 | ---- | M] () -- C:\Windows\tasks\ALQL.job
[2014.11.26 15:44:13 | 000,002,582 | ---- | M] () -- C:\Windows\SysNative\AutoRunFilter.ini
[2014.11.26 15:44:11 | 000,001,328 | ---- | M] () -- C:\Windows\tasks\CATRBVY.job
[2014.11.26 15:44:08 | 000,001,700 | ---- | M] () -- C:\Windows\SysNative\ServiceFilter.ini
[2014.11.26 15:44:08 | 000,001,318 | ---- | M] () -- C:\Windows\tasks\RS.job
[2014.11.26 15:44:01 | 000,001,674 | ---- | M] () -- C:\Windows\tasks\ONEZKDIW.job
[2014.11.26 15:43:15 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2014.11.26 15:42:58 | 360,755,199 | -HS- | M] () -- C:\hiberfil.sys
[2014.11.26 14:32:54 | 000,043,064 | ---- | M] (Avira Operations GmbH & Co. KG) -- C:\Windows\SysNative\drivers\avnetflt.sys
[2014.11.26 14:27:53 | 000,001,139 | ---- | M] () -- C:\Users\Public\Desktop\Avira.lnk
[2014.11.26 14:20:20 | 000,001,050 | ---- | M] () -- C:\Users\Public\Desktop\Hotspot Shield.lnk
[2014.11.25 18:16:10 | 000,001,350 | ---- | M] () -- C:\Users\Public\Desktop\Mozilla Firefox.lnk
[2014.11.25 18:16:09 | 000,001,607 | ---- | M] () -- C:\Users\WK\Desktop\Internet Explorer (64-bit).lnk
[2014.11.19 00:02:41 | 000,001,047 | ---- | M] () -- C:\Users\WK\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk
[2014.11.19 00:02:27 | 000,001,009 | ---- | M] () -- C:\Users\WK\Desktop\Dropbox.lnk
[2014.11.18 23:56:36 | 008,785,258 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2014.11.18 23:56:36 | 000,749,708 | ---- | M] () -- C:\Windows\SysNative\perfh00C.dat
[2014.11.18 23:56:36 | 000,749,448 | ---- | M] () -- C:\Windows\SysNative\perfh00A.dat
[2014.11.18 23:56:36 | 000,747,490 | ---- | M] () -- C:\Windows\SysNative\perfh013.dat
[2014.11.18 23:56:36 | 000,744,038 | ---- | M] () -- C:\Windows\SysNative\perfh010.dat
[2014.11.18 23:56:36 | 000,733,010 | ---- | M] () -- C:\Windows\SysNative\prfh0816.dat
[2014.11.18 23:56:36 | 000,728,592 | ---- | M] () -- C:\Windows\SysNative\perfh019.dat
[2014.11.18 23:56:36 | 000,711,530 | ---- | M] () -- C:\Windows\SysNative\perfh007.dat
[2014.11.18 23:56:36 | 000,666,328 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2014.11.18 23:56:36 | 000,610,980 | ---- | M] () -- C:\Windows\SysNative\perfh008.dat
[2014.11.18 23:56:36 | 000,412,464 | ---- | M] () -- C:\Windows\SysNative\prfh0404.dat
[2014.11.18 23:56:36 | 000,396,336 | ---- | M] () -- C:\Windows\SysNative\perfh00D.dat
[2014.11.18 23:56:36 | 000,162,612 | ---- | M] () -- C:\Windows\SysNative\perfc00A.dat
[2014.11.18 23:56:36 | 000,157,240 | ---- | M] () -- C:\Windows\SysNative\perfc013.dat
[2014.11.18 23:56:36 | 000,157,044 | ---- | M] () -- C:\Windows\SysNative\prfc0816.dat
[2014.11.18 23:56:36 | 000,154,980 | ---- | M] () -- C:\Windows\SysNative\perfc019.dat
[2014.11.18 23:56:36 | 000,153,720 | ---- | M] () -- C:\Windows\SysNative\perfc007.dat
[2014.11.18 23:56:36 | 000,153,718 | ---- | M] () -- C:\Windows\SysNative\perfc00C.dat
[2014.11.18 23:56:36 | 000,150,984 | ---- | M] () -- C:\Windows\SysNative\perfc010.dat
[2014.11.18 23:56:36 | 000,126,282 | ---- | M] () -- C:\Windows\SysNative\prfc0404.dat
[2014.11.18 23:56:36 | 000,126,282 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2014.11.18 23:56:36 | 000,115,266 | ---- | M] () -- C:\Windows\SysNative\perfc008.dat
[2014.11.18 23:56:36 | 000,088,896 | ---- | M] () -- C:\Windows\SysNative\perfc00D.dat
[2014.11.13 04:27:28 | 000,267,816 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT
[2014.11.11 14:21:11 | 000,000,928 | ---- | M] () -- C:\Users\Public\Desktop\LogMeIn Hamachi.lnk
[2014.11.05 18:56:54 | 000,304,640 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\generaltel.dll
[2014.11.05 18:56:36 | 000,228,864 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\aepdu.dll
[2014.11.05 18:52:22 | 000,424,448 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\aeinv.dll
[2014.10.27 21:13:57 | 002,339,840 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\jscript9.dll
[2014.10.27 21:05:41 | 001,494,016 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\inetcpl.cpl
[2014.10.27 21:05:26 | 000,237,056 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\url.dll
[2014.10.27 21:04:52 | 000,173,056 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\ieUnatt.exe
[2014.10.27 21:04:37 | 000,599,040 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\vbscript.dll
[2014.10.27 21:04:29 | 000,816,640 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\jscript.dll
[2014.10.27 21:04:26 | 000,729,088 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\msfeeds.dll
[2014.10.27 21:04:09 | 000,453,120 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\dxtmsft.dll
[2014.10.27 21:03:59 | 000,282,112 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\dxtrans.dll
[2014.10.27 21:03:54 | 000,011,264 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\msfeedssync.exe
[2014.10.27 21:03:41 | 000,096,768 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\mshtmled.dll
[2014.10.27 21:03:21 | 000,012,800 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\mshta.exe
[2014.10.27 21:03:05 | 000,248,320 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\ieui.dll
[2014.10.27 19:58:19 | 001,427,968 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\inetcpl.cpl
[2014.10.27 19:57:36 | 000,231,936 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\url.dll
[2014.10.27 19:56:58 | 000,142,848 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\ieUnatt.exe
[2014.10.27 19:56:15 | 000,717,824 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\jscript.dll
[2014.10.27 19:55:32 | 000,010,752 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\msfeedssync.exe
[2014.10.27 19:55:28 | 000,073,216 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmled.dll
[2014.10.27 19:54:43 | 000,176,640 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\ieui.dll
[2 C:\Windows\SysWow64\*.tmp files -> C:\Windows\SysWow64\*.tmp -> ]
[2 C:\Users\WK\Documents\*.tmp files -> C:\Users\WK\Documents\*.tmp -> ]
 
========== Files Created - No Company Name ==========
 
[2014.11.26 16:05:26 | 000,001,104 | ---- | C] () -- C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk
[2014.11.26 14:27:53 | 000,001,139 | ---- | C] () -- C:\Users\Public\Desktop\Avira.lnk
[2014.11.25 18:17:57 | 000,001,318 | ---- | C] () -- C:\Windows\tasks\RS.job
[2014.11.25 18:17:31 | 000,001,322 | ---- | C] () -- C:\Windows\tasks\ALQL.job
[2014.11.25 18:14:15 | 000,001,328 | ---- | C] () -- C:\Windows\tasks\CATRBVY.job
[2014.11.25 18:13:46 | 000,001,674 | ---- | C] () -- C:\Windows\tasks\ONEZKDIW.job
[2014.09.19 17:59:28 | 000,000,000 | ---- | C] () -- C:\Windows\SysWow64\sqlite3.dll
[2014.09.01 09:18:44 | 000,002,086 | ---- | C] () -- C:\Users\WK\AppData\Roaming\CATRBVY
[2014.09.01 09:18:44 | 000,001,248 | ---- | C] () -- C:\Users\WK\AppData\Roaming\ONEZKDIW
[2014.09.01 09:18:44 | 000,001,248 | ---- | C] () -- C:\Users\WK\AppData\Roaming\ALQL
[2012.12.11 11:06:11 | 000,009,335 | ---- | C] () -- C:\Users\WK\AppData\Local\recently-used.xbel
[2012.04.25 12:58:19 | 000,007,605 | ---- | C] () -- C:\Users\WK\AppData\Local\Resmon.ResmonCfg
[2011.10.19 05:26:32 | 000,131,984 | ---- | C] () -- C:\ProgramData\FullRemove.exe
         
__________________

Alt 26.11.2014, 20:56   #4
magnusson
 
mystartsearch entfernen - Standard

mystartsearch entfernen



OTL 2. Teil:

Code:
ATTFilter
========== ZeroAccess Check ==========
 
[2009.07.14 05:55:00 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini
 
[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
 
[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
 
[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64
 
[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]
 
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
"" = C:\Windows\SysNative\shell32.dll -- [2014.06.25 03:05:42 | 014,175,744 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
 
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shell32.dll -- [2014.06.25 02:41:30 | 012,874,240 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
 
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\fastprox.dll -- [2009.07.14 02:40:51 | 000,909,312 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
 
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2010.11.20 13:19:04 | 000,606,208 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
 
[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\wbemess.dll -- [2009.07.14 02:41:56 | 000,505,856 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both
 
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]
 
========== LOP Check ==========
 
[2012.05.01 15:22:06 | 000,000,000 | ---D | M] -- C:\Users\WK\AppData\Roaming\.minecraft
[2012.03.29 20:19:31 | 000,000,000 | ---D | M] -- C:\Users\WK\AppData\Roaming\ASUS WebStorage
[2013.06.24 11:38:43 | 000,000,000 | ---D | M] -- C:\Users\WK\AppData\Roaming\BabSolution
[2013.04.04 15:00:38 | 000,000,000 | ---D | M] -- C:\Users\WK\AppData\Roaming\Babylon
[2014.11.26 15:44:33 | 000,000,000 | ---D | M] -- C:\Users\WK\AppData\Roaming\BrowserCompanion
[2012.10.04 16:39:29 | 000,000,000 | ---D | M] -- C:\Users\WK\AppData\Roaming\Clonk
[2012.03.29 20:23:57 | 000,000,000 | ---D | M] -- C:\Users\WK\AppData\Roaming\devolo
[2014.11.26 15:48:15 | 000,000,000 | ---D | M] -- C:\Users\WK\AppData\Roaming\Dropbox
[2013.11.14 12:39:00 | 000,000,000 | ---D | M] -- C:\Users\WK\AppData\Roaming\Hotspot Shield
[2012.04.24 13:38:24 | 000,000,000 | ---D | M] -- C:\Users\WK\AppData\Roaming\ICQ Search
[2012.11.25 09:34:56 | 000,000,000 | ---D | M] -- C:\Users\WK\AppData\Roaming\LolClient
[2012.03.29 20:28:15 | 000,000,000 | ---D | M] -- C:\Users\WK\AppData\Roaming\Nuance
[2012.12.06 14:51:32 | 000,000,000 | ---D | M] -- C:\Users\WK\AppData\Roaming\Origin
[2013.04.04 15:01:57 | 000,000,000 | ---D | M] -- C:\Users\WK\AppData\Roaming\PDF Architect
[2013.04.04 15:17:34 | 000,000,000 | ---D | M] -- C:\Users\WK\AppData\Roaming\PDF Software
[2013.04.04 15:00:18 | 000,000,000 | ---D | M] -- C:\Users\WK\AppData\Roaming\pdfforge
[2012.04.30 16:49:55 | 000,000,000 | ---D | M] -- C:\Users\WK\AppData\Roaming\PhotoScape
[2014.11.13 04:19:57 | 000,000,000 | ---D | M] -- C:\Users\WK\AppData\Roaming\SoftGrid Client
[2013.06.24 12:01:57 | 000,000,000 | ---D | M] -- C:\Users\WK\AppData\Roaming\Spotify
[2012.03.29 16:44:14 | 000,000,000 | ---D | M] -- C:\Users\WK\AppData\Roaming\TeamViewer
[2012.03.29 16:42:27 | 000,000,000 | ---D | M] -- C:\Users\WK\AppData\Roaming\TP
[2014.01.28 22:24:38 | 000,000,000 | ---D | M] -- C:\Users\WK\AppData\Roaming\TS3Client
[2014.11.26 15:41:38 | 000,000,000 | ---D | M] -- C:\Users\WK\AppData\Roaming\uTorrent
[2013.04.04 14:46:09 | 000,000,000 | ---D | M] -- C:\Users\WK\AppData\Roaming\WordToPDF
[2012.03.29 20:28:13 | 000,000,000 | ---D | M] -- C:\Users\WK\AppData\Roaming\Zeon
 
========== Purity Check ==========
 
 

< End of report >
         
OTL-Extra:

Code:
ATTFilter
OTL Extras logfile created on: 26.11.2014 16:55:15 - Run 1
OTL by OldTimer - Version 3.2.69.0     Folder = C:\Users\WK\Downloads
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00000407 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy
 
5,78 Gb Total Physical Memory | 2,21 Gb Available Physical Memory | 38,16% Memory free
11,56 Gb Paging File | 7,57 Gb Available in Paging File | 65,49% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
 
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 119,24 Gb Total Space | 7,48 Gb Free Space | 6,27% Space Free | Partition Type: NTFS
Drive D: | 153,85 Gb Total Space | 67,37 Gb Free Space | 43,79% Space Free | Partition Type: NTFS
 
Computer Name: *** | User Name: *** | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days
 
========== Extra Registry (SafeList) ==========
 
 
========== File Associations ==========
 
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.url[@ = InternetShortcut] -- C:\Windows\SysNative\rundll32.exe (Microsoft Corporation)
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
.cpl [@ = cplfile] -- C:\Windows\SysWow64\control.exe (Microsoft Corporation)
 
[HKEY_USERS\S-1-5-21-3717476656-758687553-1952641011-1001\SOFTWARE\Classes\<extension>]
.html [@ = ChromeHTML] -- Reg Error: Key error. File not found
 
========== Shell Spawning ==========
 
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [edit] -- Reg Error: Key error.
htmlfile [print] -- rundll32.exe %windir%\system32\mshtml.dll,PrintHTML "%1"
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
InternetShortcut [open] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\ieframe.dll",OpenURL %l (Microsoft Corporation)
InternetShortcut [print] -- "C:\Windows\System32\rundll32.exe" "C:\Windows\System32\mshtml.dll",PrintHTML "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- Reg Error: Value error.
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
cplfile [cplopen] -- %SystemRoot%\System32\control.exe "%1",%* (Microsoft Corporation)
exefile [open] -- "%1" %*
helpfile [open] -- Reg Error: Key error.
htmlfile [edit] -- Reg Error: Key error.
htmlfile [print] -- rundll32.exe %windir%\system32\mshtml.dll,PrintHTML "%1"
inffile [install] -- %SystemRoot%\System32\InfDefaultInstall.exe "%1" (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- Reg Error: Value error.
Directory [cmd] -- cmd.exe /s /k pushd "%V" (Microsoft Corporation)
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Folder [explore] -- Reg Error: Value error.
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
 
========== Security Center Settings ==========
 
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"cval" = 1
 
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
 
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
"VistaSp1" = 28 4D B2 76 41 04 CA 01  [binary data]
"AntiVirusOverride" = 0
"AntiSpywareOverride" = 0
"FirewallOverride" = 0
 
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc\Vol]
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Svc]
 
========== Firewall Settings ==========
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
"DoNotAllowExceptions" = 0
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
"DoNotAllowExceptions" = 0
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\PublicProfile]
"DisableNotifications" = 0
"EnableFirewall" = 1
"DoNotAllowExceptions" = 0
 
========== Authorized Applications List ==========
 
 
========== Vista Active Open Ports Exception List ==========
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{02B54EF1-362B-413E-B4B1-C9D528858448}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | 
"{067C00F0-1486-451B-8975-E9FD3C592153}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | 
"{21A9C5DA-82B5-4212-97DE-8178B7A22E9C}" = rport=3702 | protocol=17 | dir=out | svc=fdphost | app=%systemroot%\system32\svchost.exe | 
"{299BA009-2F23-40A0-BF34-710D6AB1A383}" = lport=3702 | protocol=17 | dir=in | svc=fdphost | app=%systemroot%\system32\svchost.exe | 
"{2EC7ACAA-9F34-4790-90BD-D8D85F5D62F8}" = rport=2177 | protocol=6 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | 
"{563266E4-AB23-47B6-B2F7-84325E5F9846}" = lport=2177 | protocol=17 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | 
"{598FC4B1-A7B0-476B-AE38-805E41BC6BF6}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | 
"{699870AF-3545-4DE6-9D71-F717A6D8D12A}" = lport=5353 | protocol=17 | dir=in | app=c:\program files (x86)\google\chrome\application\chrome.exe | 
"{728C3760-A594-4DED-8B6E-8DD1C4E77369}" = lport=2869 | protocol=6 | dir=in | name=windows live communications platform (upnp) | 
"{741D8C6A-03DF-4C61-B496-741C0090C942}" = lport=10243 | protocol=6 | dir=in | app=system | 
"{84C4D9A4-3B79-44F3-BBB9-AEDB86AA8BB9}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | 
"{887FA32B-6839-486F-801E-7C8C7609390A}" = lport=2177 | protocol=6 | dir=in | svc=qwave | app=%systemroot%\system32\svchost.exe | 
"{897B1562-1CA2-48F2-AF22-1801C222D59F}" = rport=5355 | protocol=17 | dir=out | svc=dnscache | app=%systemroot%\system32\svchost.exe | 
"{8CF8C127-726F-43AA-AA55-EDC8CE04C84F}" = rport=10243 | protocol=6 | dir=out | app=system | 
"{9460E17C-7370-432C-AA7C-973890A5FBC2}" = rport=3702 | protocol=17 | dir=out | svc=fdrespub | app=%systemroot%\system32\svchost.exe | 
"{9CFA78AA-337E-4FFE-8C9E-6DA5293721F7}" = rport=2177 | protocol=17 | dir=out | svc=qwave | app=%systemroot%\system32\svchost.exe | 
"{A1AE79D9-53F6-4113-8948-A6ED1EFF9471}" = lport=2869 | protocol=6 | dir=in | app=system | 
"{AC882C1F-EBF3-48BF-83D5-5954B640008A}" = lport=1900 | protocol=17 | dir=in | name=windows live communications platform (ssdp) | 
"{CDB6392C-3F34-44B8-B3FB-09451DC8022D}" = rport=1900 | protocol=17 | dir=out | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | 
"{CEBE4977-10F4-4D51-B96D-28264AC49228}" = lport=1900 | protocol=17 | dir=in | svc=ssdpsrv | app=%systemroot%\system32\svchost.exe | 
"{D5C97EBC-24EC-46F1-941D-60A713912580}" = lport=3702 | protocol=17 | dir=in | svc=fdrespub | app=%systemroot%\system32\svchost.exe | 
"{F01D22C2-DC89-4101-85F5-6397890F9C94}" = lport=5355 | protocol=17 | dir=in | svc=dnscache | app=%systemroot%\system32\svchost.exe | 
 
========== Vista Active Application Exception List ==========
 
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\FirewallRules]
"{0181A3C6-2732-4BEA-A2F8-4939A76EB39B}" = protocol=6 | dir=in | app=c:\users\wk\appdata\roaming\dropbox\bin\dropbox.exe | 
"{01DFA2D0-A745-4233-AFA0-5B0C50953EC0}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\call of duty black ops ii\t6sp.exe | 
"{03C4FF9A-2EBA-4632-9179-EDEFB1E0E0B3}" = protocol=17 | dir=in | app=d:\steam\steamapps\leo_s_kill\counter-strike source\hl2.exe | 
"{0620A2FB-F917-4312-BBB1-5C0A105F4A78}" = protocol=58 | dir=out | name=@iphlpsvc.dll,-503 | 
"{075D9A97-8970-4A50-93E1-CF0F168A516C}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\call of duty black ops ii\t6sp.exe | 
"{089BE2F1-E73F-4B69-B84F-C7272CD990A5}" = protocol=6 | dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe | 
"{0D651C9D-946E-4D56-A18B-83D0C48813EA}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\call of duty modern warfare 3\iw5mp.exe | 
"{0F760489-86B6-444B-B562-C24229BFE0E4}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | 
"{0FE6223F-A407-440D-B0DB-36E63FD04348}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | 
"{10D08D47-BB11-463C-8EF6-F0A5C2A14959}" = protocol=17 | dir=in | app=c:\users\wk\appdata\roaming\utorrent\utorrent.exe | 
"{11C20B07-757D-47AE-96C1-54D956436D37}" = protocol=6 | dir=in | app=c:\program files (x86)\sweetim\communicator\sweetpacksupdatemanager.exe | 
"{139836C1-8F6D-4288-A9D6-8ECBA0AEDB95}" = protocol=6 | dir=in | app=c:\users\wk\appdata\roaming\dropbox\bin\dropbox.exe | 
"{1476AC9C-99C2-484E-AF0E-4559B7097CD2}" = protocol=17 | dir=in | app=c:\program files (x86)\wb games\batman arkham city\binaries\win32\batmanac.exe | 
"{14F81B0D-473F-4DB5-9983-AF1812F07CDB}" = dir=in | app=c:\program files (x86)\skype\phone\skype.exe | 
"{157A218A-5055-437D-995C-3C161C7610E3}" = protocol=17 | dir=in | app=c:\program files (x86)\origin games\battlefield 3\bf3.exe | 
"{1B33F2F4-FB12-49FA-B790-6B9B4D64E6C9}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\call of duty modern warfare 2\iw4mp.exe | 
"{1DF194DD-9025-4B74-B7BE-87A431CC5465}" = protocol=17 | dir=in | app=d:\farcry 3\bin\farcry3.exe | 
"{1ECA0F77-88A2-4631-B860-200E2B74D2D5}" = protocol=6 | dir=in | app=c:\users\wk\appdata\local\razoss\application\razossupdater.exe | 
"{209F67F8-9274-4899-AF62-8973792805E9}" = dir=in | app=c:\program files (x86)\windows live\mesh\moe.exe | 
"{251F86BB-94B6-4EB2-8DEE-545597B25B3A}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\call of duty modern warfare 2\iw4sp.exe | 
"{2B7156A9-42AC-44A5-9C46-E8273332311F}" = protocol=6 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe | 
"{2CD17F59-CF1B-468D-A560-6F2F1F1CD6F3}" = protocol=6 | dir=in | app=c:\program files (x86)\origin games\battlefield 3\bf3.exe | 
"{3320C41C-F555-41F9-A5E5-2FBDA8566571}" = protocol=17 | dir=in | app=c:\windows\syswow64\msiexec.exe | 
"{33D6FE8C-2D03-4D65-86A2-EC415E346FFE}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steam.exe | 
"{35BB0403-DE3D-4C56-9917-BDF1DDA1380D}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\call of duty modern warfare 3\iw5mp.exe | 
"{3F4F15D9-8935-4D2B-90E7-41309F7825AA}" = protocol=17 | dir=in | app=c:\users\wk\appdata\local\razoss\application\razossreporter.exe | 
"{3FB96C0D-201E-4839-A96A-0D38A08615DC}" = protocol=17 | dir=in | app=d:\steam\steamapps\common\call of duty black ops ii\t6zm.exe | 
"{444312FF-29B2-44ED-B4E0-AEA532F7208B}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\portal 2\portal2.exe | 
"{467C9D2C-0D80-4B91-8320-21E4EC5D3666}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\portal 2\portal2.exe | 
"{4CFEF1B4-9E05-44BC-883A-FD0FF5D30EE0}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\call of duty modern warfare 2\iw4mp.exe | 
"{4D9B82A6-E805-49A3-A5ED-EF2286821716}" = protocol=6 | dir=in | app=c:\program files (x86)\java\jre6\bin\javaw.exe | 
"{4DB94CE4-E7B5-44D8-985B-C25D61C76E52}" = protocol=17 | dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe | 
"{4FD08A95-5AC4-48DD-B62D-DC98342D7083}" = protocol=17 | dir=in | app=d:\farcry 3\bin\fc3editor.exe | 
"{5173EE00-0056-408A-8214-E4CACA65567F}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\call of duty modern warfare 2\iw4sp.exe | 
"{57963B21-4F76-4716-95C7-E24EB056D82C}" = protocol=17 | dir=in | app=c:\windows\syswow64\pnkbstra.exe | 
"{58629E3E-7D21-4FC5-8B74-2BCCDB9ECEDF}" = dir=in | app=c:\program files (x86)\windows live\messenger\msnmsgr.exe | 
"{586E8A92-B06E-4554-9115-B56203B289FB}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | 
"{596E7097-8BAA-41B4-8C38-FAA822515292}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\call of duty black ops ii\t6mp.exe | 
"{59E04FBE-5E21-4B93-90AF-F77A5FC5F8DD}" = protocol=6 | dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe | 
"{60447AD8-83F2-4480-A014-E7873B79D004}" = protocol=17 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | 
"{62CD300C-A148-4729-B77B-B21AA0592A9A}" = protocol=6 | dir=in | app=d:\farcry 3\bin\fc3editor.exe | 
"{62D80E41-9706-4A0A-AEB6-CC93897E53C7}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmpnetwk.exe | 
"{6587688F-1C96-4E6B-A8A7-CC7EF6520BF7}" = protocol=17 | dir=in | app=c:\users\wk\appdata\local\razoss\application\razossupdater.exe | 
"{66B8F00B-BAAF-4405-B3E8-533615708A32}" = protocol=6 | dir=out | app=%programfiles(x86)%\windows media player\wmplayer.exe | 
"{67350FA0-E1E8-4ECF-B7A3-26879AD11843}" = protocol=58 | dir=in | app=system | 
"{69B0C374-F317-466C-9434-28872291BE94}" = protocol=6 | dir=out | app=system | 
"{6E0F06C8-6640-4F6C-ADAD-D4CEFB64E5AD}" = protocol=17 | dir=in | app=d:\steam\steamapps\common\call of duty black ops ii\t6mp.exe | 
"{6F9073F5-931A-4060-88EB-A2AFA7C9506A}" = protocol=6 | dir=in | app=c:\program files (x86)\wb games\batman arkham city\binaries\win32\batmanac.exe | 
"{70C91D73-9388-4978-84BD-358878359CA9}" = protocol=17 | dir=in | app=c:\users\wk\appdata\roaming\dropbox\bin\dropbox.exe | 
"{7143E938-6B4D-45A0-8B51-E4E5C21A0F48}" = protocol=17 | dir=in | app=%programfiles(x86)%\windows media player\wmplayer.exe | 
"{721C4163-1F34-436E-97FB-15A2A3EA25A9}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\skyrim\skyrimlauncher.exe | 
"{75908130-158B-4397-9908-E6A58BD827BB}" = dir=in | app=c:\program files (x86)\common files\apple\apple application support\webkit2webprocess.exe | 
"{76546A15-DA94-47AD-B894-B9C3A374C1C3}" = protocol=17 | dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe | 
"{76B7837A-AE61-4F5F-A616-88285BB02F66}" = protocol=6 | dir=in | app=c:\users\wk\appdata\local\razoss\application\razossengine.exe | 
"{7B497866-66EF-4B69-8B8C-6F9578D4F452}" = protocol=17 | dir=in | app=c:\program files (x86)\java\jre6\bin\javaw.exe | 
"{7E2FD9BF-C308-4C3A-B232-E5B65D37E998}" = protocol=6 | dir=in | app=d:\steam\steamapps\common\call of duty black ops ii\t6mp.exe | 
"{7EF9F004-D581-4312-B6DB-D5AB6318C96D}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\call of duty black ops ii\t6zm.exe | 
"{818A0E5D-90DB-415E-8A72-BC13BED57A83}" = protocol=17 | dir=in | app=c:\program files (x86)\battlelog web plugins\sonar\0.70.4\sonarhost.exe | 
"{86F24DEF-A46D-4CE7-8030-814BB77764A9}" = protocol=17 | dir=in | app=d:\steam\steamapps\common\call of duty black ops ii\t6sp.exe | 
"{87378B9F-9842-416F-965A-05219E636753}" = dir=in | app=c:\program files (x86)\pando networks\media booster\pmb.exe | 
"{87FDD113-1AE3-404B-88D3-D60B34BA2867}" = protocol=6 | dir=in | app=d:\steam\steamapps\common\call of duty black ops ii\t6zm.exe | 
"{8BE2B4E5-9C46-4B35-B8D9-5E7CED247082}" = protocol=6 | dir=in | app=d:\farcry 3\bin\fc3updater.exe | 
"{90DA1B92-F0CE-4DA7-BC13-CCEF2E53135F}" = protocol=6 | dir=in | app=d:\farcry 3\bin\farcry3_d3d11.exe | 
"{97F629FE-C04C-4802-B1D3-A512506AA254}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\call of duty black ops ii\t6mp.exe | 
"{997B3F1A-EFF8-4DA9-B09D-EC8F673BB5B5}" = protocol=6 | dir=in | app=c:\users\wk\appdata\local\razoss\application\razossreporter.exe | 
"{9CF970DC-2496-4534-96C0-A35DEE7E3519}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | 
"{9FCEA6C1-C050-45CC-91AA-3EE9CD272992}" = protocol=6 | dir=in | app=c:\windows\syswow64\msiexec.exe | 
"{A23E5A76-CAA1-4898-B09B-C24960CBC39A}" = dir=in | app=c:\program files\intel\wifi\bin\pandhcpdns.exe | 
"{A31C2860-1729-4D88-AC13-FE6B7992768A}" = protocol=6 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | 
"{A3FD1037-9BE2-4D81-ADDC-DE46E3C38F95}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmplayer.exe | 
"{A4B8AEF7-8911-4EFE-92EF-2267F81C3E44}" = protocol=6 | dir=in | app=d:\steam\steamapps\common\call of duty black ops ii\t6sp.exe | 
"{A57AE11A-E5C7-431D-8452-48FD6B74C640}" = protocol=17 | dir=in | app=c:\windows\syswow64\pnkbstrb.exe | 
"{A68DF4D5-BB20-4630-BE9E-C4BF524E428C}" = protocol=17 | dir=in | app=c:\users\wk\appdata\local\razoss\application\razossengine.exe | 
"{A75BB90B-1798-41CB-A363-0FD4778CA556}" = protocol=6 | dir=in | app=c:\users\wk\appdata\roaming\utorrent\utorrent.exe | 
"{A76B9A62-5E14-45C6-9D06-879CD3B904EC}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steamapps\common\skyrim\skyrimlauncher.exe | 
"{A846AD31-2CB9-48BB-8C34-4C2501ECE75A}" = protocol=17 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe | 
"{A9C88734-2B98-43B5-8DB2-5BF6AD0DFBD6}" = protocol=17 | dir=in | app=c:\program files (x86)\bonjour\mdnsresponder.exe | 
"{B0545272-0759-4FEA-8986-DA06B17241DA}" = protocol=6 | dir=out | svc=upnphost | app=%systemroot%\system32\svchost.exe | 
"{B17A776F-40E9-45AF-80D0-A7D5E6916613}" = protocol=6 | dir=in | app=c:\program files (x86)\battlelog web plugins\sonar\0.70.4\sonarhost.exe | 
"{B611093D-1502-4B1C-93C7-BB22E57E841E}" = protocol=17 | dir=in | app=d:\farcry 3\bin\fc3updater.exe | 
"{B85CAF15-7B0F-4806-A9D5-0299C6A3E087}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | 
"{BCA72A4C-BB6A-472A-867C-88774A0201A0}" = protocol=6 | dir=in | app=c:\windows\syswow64\pnkbstrb.exe | 
"{C36CFC56-FE92-4927-B884-1B61B063BB6A}" = protocol=6 | dir=in | app=c:\program files (x86)\square enix\batman arkham asylum goty\binaries\shippingpc-bmgame.exe | 
"{C3B2AD4A-460E-46A3-B4B0-43A9791FCE66}" = protocol=17 | dir=in | app=c:\program files (x86)\square enix\batman arkham asylum goty\binaries\shippingpc-bmgame.exe | 
"{D31FF510-E960-40CE-BC0E-FB941CC4E88F}" = dir=in | app=c:\users\wk\appdata\local\tnt2\2.0.0.1676\tnt2user.exe | 
"{D4002E68-5588-40EF-90EB-47ED4BA51456}" = protocol=17 | dir=in | app=c:\users\wk\appdata\roaming\dropbox\bin\dropbox.exe | 
"{D8549064-B91C-4050-A40A-278C4B097B9A}" = protocol=6 | dir=in | app=c:\program files\bonjour\mdnsresponder.exe | 
"{D94BAA13-131E-406A-9539-8F48564C308B}" = protocol=6 | dir=in | app=d:\farcry 3\bin\farcry3.exe | 
"{DF178A2C-A151-4563-8256-2106D47CD2C8}" = protocol=17 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | 
"{E679DCBB-093C-4615-9ACB-1D0B827A5AFD}" = protocol=17 | dir=in | app=%programfiles%\windows media player\wmpnetwk.exe | 
"{E6A86712-1B77-4A9F-9A02-D315B88872D5}" = protocol=6 | dir=out | app=%programfiles%\windows media player\wmplayer.exe | 
"{E9A47DF8-4441-4AA9-9F88-15BD815F5B5D}" = protocol=6 | dir=in | app=d:\steam\steamapps\leo_s_kill\counter-strike source\hl2.exe | 
"{EAA0C72F-45F3-436F-A4C4-08CF205B59F3}" = protocol=17 | dir=in | app=d:\farcry 3\bin\farcry3_d3d11.exe | 
"{EC395F3F-7450-4122-AC7D-08732AD7F091}" = protocol=17 | dir=in | app=c:\users\wk\appdata\roaming\spotify\spotify.exe | 
"{ECB66499-7734-4E7D-AF00-676904AB56C2}" = dir=in | app=c:\program files (x86)\itunes\itunes.exe | 
"{EE0BAD19-FF08-41F4-9689-7FF3BDFE28F8}" = protocol=17 | dir=in | app=c:\program files (x86)\sweetim\communicator\sweetpacksupdatemanager.exe | 
"{F0EB7E8F-EEDA-4CF6-AED0-E3AB8BC24932}" = protocol=6 | dir=in | app=c:\windows\syswow64\pnkbstra.exe | 
"{F2D8F445-C6FA-40C8-97D6-198E88674CC5}" = protocol=17 | dir=in | app=c:\program files (x86)\steam\steamapps\common\call of duty black ops ii\t6zm.exe | 
"{FA3FB75C-53B3-45D3-912B-07492A9DE8B8}" = protocol=6 | dir=in | app=c:\users\wk\appdata\roaming\spotify\spotify.exe | 
"{FB9B731E-2072-4C4C-B845-AD1C76C2D914}" = protocol=6 | dir=in | app=c:\program files (x86)\steam\steam.exe | 
"{FDD96A5B-D830-49E1-B8D6-3C634B41B339}" = dir=in | app=c:\program files (x86)\windows live\contacts\wlcomm.exe | 
"TCP Query User{0BE081E9-F6FE-4668-8A28-8EF8400E3572}C:\program files (x86)\java\jre6\bin\javaw.exe" = protocol=6 | dir=in | app=c:\program files (x86)\java\jre6\bin\javaw.exe | 
"TCP Query User{543244FA-244F-47A4-9B98-3D83E4D195D9}D:\steam\steamapps\common\call of duty black ops ii\t6mp.exe" = protocol=6 | dir=in | app=d:\steam\steamapps\common\call of duty black ops ii\t6mp.exe | 
"TCP Query User{57AAEC39-5AD5-4690-8252-499753C7D9B4}C:\users\wk\appdata\roaming\spotify\spotify.exe" = protocol=6 | dir=in | app=c:\users\wk\appdata\roaming\spotify\spotify.exe | 
"TCP Query User{9CE6EBB5-7019-4E4F-85B8-07E41BDBA2BF}D:\steam\steamapps\leo_s_kill\counter-strike source\hl2.exe" = protocol=6 | dir=in | app=d:\steam\steamapps\leo_s_kill\counter-strike source\hl2.exe | 
"TCP Query User{CB62BF44-BD8A-42D3-93BC-02305A3BBDBE}D:\steam\steamapps\common\call of duty black ops ii\t6zm.exe" = protocol=6 | dir=in | app=d:\steam\steamapps\common\call of duty black ops ii\t6zm.exe | 
"TCP Query User{D480F0F1-00FB-4325-AE00-969C1C973A03}C:\users\wk\appdata\roaming\torntv.com\torntv downloader.exe" = protocol=6 | dir=in | app=c:\users\wk\appdata\roaming\torntv.com\torntv downloader.exe | 
"UDP Query User{19E9A661-2620-47C3-B386-C0A1D0AF36B0}D:\steam\steamapps\common\call of duty black ops ii\t6zm.exe" = protocol=17 | dir=in | app=d:\steam\steamapps\common\call of duty black ops ii\t6zm.exe | 
"UDP Query User{4B4B9C24-8FC7-43EE-BAC2-85DBBC8F3B9E}D:\steam\steamapps\leo_s_kill\counter-strike source\hl2.exe" = protocol=17 | dir=in | app=d:\steam\steamapps\leo_s_kill\counter-strike source\hl2.exe | 
"UDP Query User{6277A3B4-1E30-42FE-A8A6-8786C396CF35}D:\steam\steamapps\common\call of duty black ops ii\t6mp.exe" = protocol=17 | dir=in | app=d:\steam\steamapps\common\call of duty black ops ii\t6mp.exe | 
"UDP Query User{9B1989A1-9CEE-4D46-89FA-D5465B477877}C:\program files (x86)\java\jre6\bin\javaw.exe" = protocol=17 | dir=in | app=c:\program files (x86)\java\jre6\bin\javaw.exe | 
"UDP Query User{F22D897E-FC3B-4380-9E98-65F72632127D}C:\users\wk\appdata\roaming\spotify\spotify.exe" = protocol=17 | dir=in | app=c:\users\wk\appdata\roaming\spotify\spotify.exe | 
"UDP Query User{F6ABAAF7-84E1-4EEC-B9B2-0ABAA086251F}C:\users\wk\appdata\roaming\torntv.com\torntv downloader.exe" = protocol=17 | dir=in | app=c:\users\wk\appdata\roaming\torntv.com\torntv downloader.exe | 
 
========== HKEY_LOCAL_MACHINE Uninstall List ==========
 
64bit: [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{0919C44F-F18A-4E3B-A737-03685272CE72}" = Windows Live Remote Service Resources
"{11BA2B00-1495-47B8-BFA8-D08C605AB2CC}" = Windows Live Family Safety
"{13F4A7F3-EABC-4261-AF6B-1317777F0755}" = Fast Boot
"{17A4FD95-A507-43F1-BC92-D8572AF8340A}" = Windows Live Remote Service Resources
"{180C8888-50F1-426B-A9DC-AB83A1989C65}" = Windows Live Language Selector
"{19F09425-3C20-4730-9E2A-FC2E17C9F362}" = Windows Live Remote Service Resources
"{1ACC8FFB-9D84-4C05-A4DE-D28A9BC91698}" = Windows Live ID Sign-in Assistant
"{1D8E6291-B0D5-35EC-8441-6616F567A0F7}" = Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219
"{1EB2CFC3-E1C5-4FC4-B1F8-549DD6242C67}" = Windows Live Remote Service Resources
"{1FB31F44-D4D0-4D76-944A-A1A5D79FD321}" = Windows Live Family Safety
"{25FBDA9A-E868-4B3B-B9FF-D923818511A1}" = Intel(R) PROSet/Wireless WiFi Software
"{3CE222BA-66A6-4D18-BEE9-5D21C5798C3E}" = Windows Live Family Safety
"{3D7F836A-AE1F-4FA6-8DB9-4FE06697AB0A}" = Windows Live Family Safety
"{3E776E7A-F4C3-4A89-8EAD-535E722C8397}" = Windows Live Family Safety
"{53375A2B-FE08-42B6-8EB8-16818CD27B2C}" = Windows Live Family Safety
"{5E2CD4FB-4538-4831-8176-05D653C3E6D4}" = Windows Live Remote Service Resources
"{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161
"{5FEAD3E5-A158-4B66-B92B-0C959D7CF838}" = Windows Live Remote Service Resources
"{63919769-655A-48A8-AD6C-39B471F683ED}" = Windows Live Family Safety
"{656DEEDE-F6AC-47CA-A568-A1B4E34B5760}" = Windows Live Remote Service Resources
"{692CCE55-9EAE-4F57-A834-092882E7FE0B}" = Windows Live Remote Client Resources
"{6A76BEAF-6D1F-4273-A79B-DA8410A2E56B}" = Apple Mobile Device Support
"{6CBFDC3C-CF21-4C02-A6DC-A5A2707FAF55}" = Windows Live Remote Service Resources
"{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}" = Microsoft Visual C++ 2005 Redistributable (x64)
"{6DDCFF78-6F91-438C-9567-C5CAA9D7F56C}" = Windows Live Family Safety
"{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}" = Bonjour
"{7DEBE4EB-6B40-3766-BB35-5CBBC385DA37}" = Microsoft .NET Framework 4.5.1
"{8220EEFE-38CD-377E-8595-13398D740ACE}" = Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17
"{825C7D3F-D0B3-49D5-A42B-CBB0FBE85E99}" = Windows Live Remote Client Resources
"{840A3BAA-4C68-4581-9C7A-6F8D6CF531B9}" = iTunes
"{847B0532-55E3-4AAF-8D7B-E3A1A7CD17E5}" = Windows Live Remote Client Resources
"{8970AE69-40BE-4058-9916-0ACB1B974A3D}" = Windows Live Remote Client Resources
"{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight
"{8EB588BD-D398-40D0-ADF7-BE1CEEF7C116}" = Windows Live Remote Client Resources
"{90140000-006D-0407-1000-0000000FF1CE}" = Microsoft Office Klick-und-Los 2010
"{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033" = Microsoft .NET Framework 4.5.1
"{95120000-00B9-0409-1000-0000000FF1CE}" = Microsoft Application Error Reporting
"{9B6239BF-4E85-4590-8D72-51E30DB1A9AA}" = ASUS Power4Gear Hybrid
"{A679FBE4-BA2D-4514-8834-030982C8B31A}" = Windows Live Remote Service Resources
"{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}" = Microsoft Visual C++ 2005 Redistributable (x64)
"{B0BF8602-EA52-4B0A-A2BD-EDABB0977030}" = Windows Live Remote Client Resources
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel" = NVIDIA Control Panel 285.64
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver" = NVIDIA Graphics Driver 285.64
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Optimus" = NVIDIA Optimus 1.5.20
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_installer" = NVIDIA Install Application
"{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NVIDIA.Update" = NVIDIA Update Components
"{B36055BF-5F0E-4EAB-804D-9203DFB34ADC}" = Windows Live Family Safety
"{B750FA38-7AB0-42CB-ACBB-E7DBE9FF603F}" = Windows Live Remote Client Resources
"{C504EC13-E122-4939-BD6E-EE5A3BAA5FEC}" = Windows Live Remote Client Resources
"{C9F05151-95A9-4B9B-B534-1760E2D014A5}" = Windows Live Remote Client Resources
"{CEA21F20-DBF4-464C-8B81-28B8508AFDDD}" = Windows Live Family Safety
"{D5876F0A-B2E9-4376-B9F5-CD47B7B8D820}" = Windows Live Remote Client Resources
"{D930AF5C-5193-4616-887D-B974CEFC4970}" = Windows Live Remote Service Resources
"{DA54F80E-261C-41A2-A855-549A144F2F59}" = Windows Live MIME IFilter
"{DBEDAF67-C5A3-4C91-951D-31F3FE63AF3F}" = Windows Live Remote Client Resources
"{DF6D988A-EEA0-4277-AAB8-158E086E439B}" = Windows Live Remote Client
"{E01819BD-709F-43A1-9600-6F5E4C584C37}" = Windows Live Family Safety
"{E02A6548-6FDE-40E2-8ED9-119D7D7E641F}" = Windows Live Remote Service
"{E60F14FA-E114-4F25-AEE0-33FE9EC9B1C3}" = Windows Live Family Safety
"{EFB20CF5-1A6D-41F3-8895-223346CE6291}" = Windows Live Remote Service Resources
"{F11009B0-F4DB-463B-B717-5266E47498AA}" = Windows Live Family Safety
"{FAA3933C-6F0D-4350-B66B-9D7F7031343E}" = Windows Live Remote Service Resources
"{FAD0EC0B-753B-4A97-AD34-32AC1EC8DB69}" = Windows Live Remote Client Resources
"Elantech" = ETDWare PS/2-X64 8.0.5.5_WHQL
"GIMP-2_is1" = GIMP 2.8.2
"McAfee Security Scan" = McAfee Security Scan Plus
"ProInst" = Intel PROSet Wireless
"WinRAR archiver" = WinRAR 4.20 (64-Bit)
 
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}" = PDFCreator
"{039480EE-6933-4845-88B8-77FD0C3D059D}" = Windows Live Mesh
"{04668DF2-D32F-4555-9C7E-35523DCD6544}" = Control ActiveX de Windows Live Mesh para conexiones remotas
"{048298C9-A4D3-490B-9FF9-AB023A9238F3}" = Steam
"{05E379CC-F626-4E7D-8354-463865B303BF}" = Windows Live UX Platform Language Pack
"{062E4D94-8306-46D5-81B6-45E6AD09C799}" = Windows Live Messenger
"{0A4C4B29-5A9D-4910-A13C-B920D5758744}" = بريد Windows Live
"{0B0F231F-CE6A-483D-AA23-77B364F75917}" = Windows Live Installer
"{0D261C88-454B-46FE-B43B-640E621BDA11}" = Windows Live Mail
"{0EC0B576-90F9-43C3-8FAD-A4902DF4B8F4}" = Galeria de Fotografias do Windows Live
"{1111706F-666A-4037-7777-211328764D10}" = JavaFX 2.1.1
"{122ADF8C-DDA1-480C-9936-C88F2825B265}" = Apple Application Support
"{128133D3-037A-4C62-B1B7-55666A10587A}" = Windows Live UX Platform Language Pack
"{14B441B7-774D-4170-98EA-A13667AE6218}" = Windows Live Writer Resources
"{168E7302-890A-4138-9109-A225ACAF7AD1}" = Windows Live Photo Common
"{17F99FCE-8F03-4439-860A-25C5A5434E18}" = Windows Live Essentials
"{198EA334-8A3F-4CB2-9D61-6C10B8168A6F}" = Windows Live Writer
"{19BA08F7-C728-469C-8A35-BFBD3633BE08}" = Windows Live Movie Maker
"{19EA33FB-B34E-40EA-8B8A-61743AEB795A}" = Wireless Console 3
"{1A82AE99-84D3-486D-BAD6-675982603E14}" = Windows Live Writer
"{1BA1DBDC-5431-46FD-A66F-A17EB1C439EE}" = Windows Live Messenger
"{1DBD1F12-ED93-49C0-A7CC-56CBDE488158}" = ASUS LifeFrame3
"{1DDB95A4-FD7B-4517-B3F1-2BCAA96879E6}" = Windows Live Writer Resources
"{1F6AB0E7-8CDD-4B93-8A23-AA9EB2FEFCE4}" = Junk Mail filter update
"{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}" = CyberLink Media Suite
"{200FEC62-3C34-4D60-9CE8-EC372E01C08F}" = Windows Live SOXE Definitions
"{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}" = Skype™ 6.21
"{2511AAD7-82DF-4B97-B0B3-E1B933317010}" = Windows Live Writer Resources
"{25A381E1-0AB9-4E7A-ACCE-BA49D519CF4E}" = Windows Live Mail
"{26A24AE4-039D-4CA4-87B4-2F83217040FF}" = Java 7 Update 45
"{2902F983-B4C1-44BA-B85D-5C6D52E2C441}" = Windows Live Mesh ActiveX Control for Remote Connections
"{29373E24-AC72-424E-8F2A-FB0F9436F21F}" = Windows Live Photo Common
"{2A07C35B-8384-4DA4-9A95-442B6C89A073}" = Windows Live Essentials
"{2A3FC24C-6EC0-4519-A52B-FDA4EA9B2D24}" = Windows Live Messenger
"{2C4E06CC-1F04-4C25-8B3C-93A9049EC42C}" = Windows Live UX Platform Language Pack
"{2C865FB0-051E-4D22-AC62-428E035AEAF0}" = Windows Live Mesh
"{3108C217-BE83-42E4-AE9E-A56A2A92E549}" = Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Driver
"{32CB6BDF-F465-4BE8-9B57-1422057B61B9}" = LogMeIn Hamachi
"{3336F667-9049-4D46-98B6-4C743EEBC5B1}" = Windows Live Photo Gallery
"{34319F1F-7CF2-4CC9-B357-1AE7D2FF3AC5}" = Windows Live
"{34F4D9A4-42C2-4348-BEF4-E553C84549E7}" = Windows Live Photo Gallery
"{370F888E-42A7-4911-9E34-7D74632E17EB}" = Windows Live Photo Common
"{37B33B16-2535-49E7-8990-32668708A0A3}" = Windows Live UX Platform Language Pack
"{3B9A92DA-6374-4872-B646-253F18624D5F}" = Windows Live Writer
"{3F4143A1-9C21-4011-8679-3BC1014C6886}" = Windows Live Mesh
"{40BF1E83-20EB-11D8-97C5-0009C5020658}" = CyberLink Power2Go
"{40BFD84C-64CD-42CC-9909-8734C50429C6}" = Windows Live UX Platform Language Pack
"{4555BB9E-E715-4260-A178-E8EFD2B653E3}" = Alcor Micro USB Card Reader
"{46872828-6453-4138-BE1C-CE35FBF67978}" = Windows Live Mesh
"{48294D95-EE9A-4377-8213-44FC4265FB27}" = Windows Live Messenger
"{488F0347-C4A7-4374-91A7-30818BEDA710}" = Galerie de photos Windows Live
"{48C0DC5E-820A-44F2-890E-29B68EDD3C78}" = Windows Live Writer
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{4B28D47A-5FF0-45F8-8745-11DC2A1C9D0F}" = Windows Live Writer
"{4CB0307C-565E-4441-86BE-0DF2E4FB828C}" = Microsoft Games for Windows Marketplace
"{4D83F339-5A5C-4B21-8FD3-5D407B981E72}" = Windows Live Photo Common
"{4F524A2D-5637-006A-76A7-A758B70C1300}" = Ask Toolbar
"{506FC723-8E6C-4417-9CFF-351F99130425}" = Windows Live UX Platform Language Pack
"{55D003F4-9599-44BF-BA9E-95D060730DD3}" = Contrôle ActiveX Windows Live Mesh pour connexions à distance
"{57520FA0-AC56-469B-9983-FF1000008300}" = Batman: Arkham City™
"{579684A4-DDD5-4CA3-9EA8-7BE7D9593DB4}" = Windows Live UX Platform Language Pack
"{5D273F60-0525-48BA-A5FB-D0CAA4A952AE}" = Windows Live Movie Maker
"{622DE1BE-9EDE-49D3-B349-29D64760342A}" = 適用遠端連線的 Windows Live Mesh ActiveX 控制項
"{62687B11-58B5-4A18-9BC3-9DF4CE03F194}" = Windows Live Writer Resources
"{64452561-169F-4A36-A2FF-B5E118EC65F5}" = ASUS FaceLogon
"{65153EA5-8B6E-43B6-857B-C6E4FC25798A}" = Intel(R) Management Engine Components
"{677AAD91-1790-4FC5-B285-0E6A9D65F7DC}" = Windows Live Mail
"{6807427D-8D68-4D30-AF5B-0B38F8F948C8}" = Windows Live Writer Resources
"{682B3E4F-696A-42DE-A41C-4C07EA1678B4}" = Windows Live SOXE
"{6A4ABCDC-0A49-4132-944E-01FBCCB3465C}" = Windows Live UX Platform Language Pack
"{6CB36609-E3A6-446C-A3C1-C71E311D2B9C}" = Windows Live Movie Maker
"{6D1221A9-17BF-4EC0-81F2-27D30EC30701}" = Skype Click to Call
"{6DEC8BD5-7574-47FA-B080-492BBBE2FEA3}" = Windows Live Movie Maker
"{6E8AFC13-F7B8-41D8-88AB-F1D0CFC56305}" = Windows Live Messenger
"{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}" = Microsoft Visual C++ 2005 Redistributable
"{73FC3510-6421-40F7-9503-EDAE4D0CF70D}" = Windows Live Photo Common
"{7465A996-0FCA-4D2D-A52C-F833B0829B5B}" = Windows Live Movie Maker
"{7496FD31-E5CB-4AE4-82D3-31099558BF6A}" = Windows Live Mesh
"{749F674B-2674-47E8-879C-5626A06B2A91}" = InstantOn for NB
"{74E8A7F6-575D-42C7-9178-E87D1B3BEFE8}" = Windows Live UX Platform Language Pack
"{76285C16-411A-488A-BCE3-C83CB933D8CF}" = Battlefield 3™
"{7683B745-6060-41FD-AA75-0BBB383FEAD4}" = SweetIM for Messenger 3.7
"{77477AEA-5757-47D8-8B33-939F43D82218}" = Windows Live UX Platform Language Pack
"{77F69CA1-E53D-4D77-8BA3-FA07606CC851}" = Фотоальбом Windows Live
"{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}" = Apple Software Update
"{78DAE910-CA72-450E-AD22-772CB1A00678}" = Windows Live Mesh
"{78DBE8CE-61F6-4D6C-806C-A0FFF65F5E1D}" = Windows Live Messenger
"{7D1C7B9F-2744-4388-B128-5C75B8BCCC84}" = Windows Live Essentials
"{7E017923-16F8-4E32-94EF-0A150BD196FE}" = Windows Live Writer
"{7FF11E53-C002-4F40-8D68-6BE751E5DD62}" = Windows Live Writer Resources
"{804DE397-F82C-4867-9085-E0AA539A3294}" = Windows Live Writer
"{80A07844-CA64-4DE4-AB61-D37DDBE8074F}" = PDF Architect
"{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-113832110}" = Dream Day First Home
"{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-117948443}" = Mahjong Memoirs
"{832D9DE0-8AFC-4689-9819-4DBBDEBD3E4F}" = Microsoft Games for Windows - LIVE Redistributable
"{83C292B7-38A5-440B-A731-07070E81A64F}" = Windows Live PIMT Platform
"{841F1FB4-FDF8-461C-A496-3E1CFD84C0B5}" = Windows Live Mesh
"{84A411F9-40A5-4CDA-BF46-E09FBB2BC313}" = Windows Live Essentials
"{859D4022-B76D-40DE-96EF-C90CDA263F44}" = Windows Live Writer
"{8C6D6116-B724-4810-8F2D-D047E6B7D68E}" = Mesh Runtime
"{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}" = MSVCRT
"{8F21291E-0444-4B1D-B9F9-4370A73E346D}" = WinFlash
"{8FF3891F-01B5-4A71-BFCD-20761890471C}" = Windows Live Messenger
"{90140011-0066-0407-0000-0000000FF1CE}" = Microsoft Office Starter 2010 - Deutsch
"{92606477-9366-4D3B-8AE3-6BE4B29727AB}" = League of Legends
"{92EA4134-10D1-418A-91E1-5A0453131A38}" = Windows Live Movie Maker
"{93E464B3-D075-4989-87FD-A828B5C308B1}" = Windows Live Writer Resources
"{9480d4af-12b9-4e56-8034-4031ef6ab39d}" = Avira
"{95140000-0070-0000-0000-0000000FF1CE}" = Microsoft Office 2010
"{95140000-00AF-0407-0000-0000000FF1CE}" = Microsoft PowerPoint Viewer
"{980A182F-E0A2-4A40-94C1-AE0C1235902E}" = Pando Media Booster
"{9A25302D-30C0-39D9-BD6F-21E6EC160475}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17
"{9BD262D0-B788-4546-A0A5-F4F56EC3834B}" = Windows Live Photo Common
"{9BE518E6-ECC6-35A9-88E4-87755C07200F}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
"{9D4C7DFA-CBBB-4F06-BDAC-94D831406DF0}" = פקד ActiveX של Windows Live Mesh עבור חיבורים מרוחקים
"{9D56775A-93F3-44A3-8092-840E3826DE30}" = Windows Live Mail
"{9DB90178-B5B0-45BD-B0A7-D40A6A1DF1CA}" = Windows Live Movie Maker
"{9FAE6E8D-E686-49F5-A574-0A58DFD9580C}" = Windows Live Mail
"{9FD6F1A8-5550-46AF-8509-271DF0E768B5}" = Dual-Core Optimizer
"{A0B91308-6666-4249-8FF6-1E11AFD75FE1}" = Windows Live Mail
"{A0C91188-C88F-4E86-93E6-CD7C9A266649}" = Windows Live Mesh
"{A41A708E-3BE6-4561-855D-44027C1CF0F8}" = Windows Live Photo Common
"{A49F249F-0C91-497F-86DF-B2585E8E76B7}" = Microsoft Visual C++ 2005 Redistributable
"{A60B3BF0-954B-42AF-B8D8-2C1D34B613AA}" = Windows Live Photo Gallery
"{A726AE06-AAA3-43D1-87E3-70F510314F04}" = Windows Live Writer
"{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}" = Google Update Helper
"{A9BDCA6B-3653-467B-AC83-94367DA3BFE3}" = Windows Live Photo Common
"{AAAFC670-569B-4A2F-82B4-42945E0DE3EF}" = Windows Live Writer
"{AAF454FC-82CA-4F29-AB31-6A109485E76E}" = Windows Live Writer
"{AB5C933E-5C7D-4D30-B314-9C83A49B94BE}" = ATK Package
"{AB61A2E9-37D3-485D-9085-19FBDF8CEF4A}" = Windows Live Messenger
"{ABD534B7-E951-470E-92C2-CD5AF1735726}" = Windows Live Essentials
"{ACFBE99B-6981-4513-B17E-A2683CEB9EE5}" = Windows Live Mesh
"{ADE85655-8D1E-4E4B-BF88-5E312FB2C74F}" = Windows Live Mail
"{ADFE4AED-7F8E-4658-8D6E-742B15B9F120}" = Windows Live Photo Common
"{AF01B90A-D25C-4F60-AECD-6EEDF509DC11}" = Windows Live Mesh
"{B0002707-4F7E-4745-88A7-852DA8A88635}" = ASUS Sonic Focus
"{B113D18C-67B0-4FB7-B329-E89B66194AE6}" = Windows Live Fotogalerie
"{B1239994-A850-44E2-BED8-E70A21124E16}" = Windows Live Mail
"{B2BCA478-EC0F-45EE-A9E9-5EABE87EA72D}" = Windows Live Photo Common
"{B2E90616-C50D-4B89-A40D-92377AC669E5}" = Windows Live Messenger
"{B480904D-F73F-4673-B034-8A5F492C9184}" = Nuance PDF Reader
"{B618C3BF-5142-4630-81DD-F96864F97C7E}" = Windows Live Essentials
"{B63F0CE3-CCD0-490A-9A9C-E1A3B3A17137}" = Почта Windows Live
"{B756A738-AC20-4C26-9EFD-80810B624642}" = Soda PDF 5
"{BAEE89D5-6E87-4F89-9603-A1C100479181}" = Windows Live Messenger
"{BAF5914B-5730-4373-B038-9F436AC6A0D6}" = Rayman3
"{BCB0D6F7-7EAB-4009-A6F2-8E0E7F317773}" = Элемент управления Windows Live Mesh ActiveX для удаленных подключений
"{BF022D76-9F72-4203-B8FA-6522DC66DFDA}" = Windows Live Movie Maker
"{C00C2A91-6CB3-483F-80B3-2958E29468F1}" = Συλλογή φωτογραφιών του Windows Live
"{C29FC15D-E84B-4EEC-8505-4DED94414C59}" = Windows Live Writer Resources
"{C2AB7DC4-489E-4BE9-887A-52262FBADBE0}" = Windows Live Photo Common
"{C32CE55C-12BA-4951-8797-0967FDEF556F}" = Windows Live Mesh - ActiveX-besturingselement voor externe verbindingen
"{C3E85EE9-5892-4142-B537-BCEB3DAC4C3D}" = Internet Explorer Toolbar 4.6 by SweetPacks
"{C5398A89-516C-4DAF-BA07-EE7949090E56}" = Windows Live Mesh ActiveX control for remote connections
"{C59C179C-668D-49A9-B6EA-0121CCFC1243}" = CyberLink LabelPrint
"{C5C1C0F0-D62F-4DBF-81D4-D7EF397C228B}" = NVIDIA PhysX
"{C63A1E60-B6A4-440B-89A5-1FC6E4AC1C94}" = Windows Live Mesh ActiveX Control for Remote Connections
"{C66824E4-CBB3-4851-BB3F-E8CFD6350923}" = Windows Live Mail
"{C893D8C0-1BA0-4517-B11C-E89B65E72F70}" = Windows Live Photo Common
"{C95A5A77-622F-45CA-9540-84468FCB18B1}" = Windows Live Messenger
"{CB7224D9-6DCA-43F1-8F83-6B1E39A00F92}" = Windows Live Movie Maker
"{CBFD061C-4B27-4A89-ADD8-210316EEFA11}" = Windows Live Messenger
"{CDC39BF2-9697-4959-B893-A2EE05EF6ACB}" = Windows Live Writer
"{CE929F09-3853-4180-BD90-30764BFF7136}" = גלריית התמונות של Windows Live
"{CE95A79E-E4FC-4FFF-8A75-29F04B942FF2}" = Windows Live UX Platform
"{CFABC775-5386-4BA5-86B4-505BBD36E812}" = Batman: Arkham Asylum Game of the Year Edition
"{D0B44725-3666-492D-BEF6-587A14BD9BD9}" = MSVCRT_amd64
"{D2763B4E-5BF4-468B-BB00-9B3B121E0FB2}" = Avira
"{D299197D-CDEA-41A6-A363-F532DE4114FD}" = Windows Live UX Platform Language Pack
"{D39F0676-163E-4595-A917-E28F99BBD4D2}" = ASUS AI Recovery
"{D436F577-1695-4D2F-8B44-AC76C99E0002}" = Windows Live Photo Common
"{D45240D3-B6B3-4FF9-B243-54ECE3E10066}" = Windows Live Communications Platform
"{D588365A-AE39-4F27-BDAE-B4E72C8E900C}" = Windows Live Mail
"{D6F25CF9-4E87-43EB-B324-C12BE9CDD668}" = Windows Live UX Platform Language Pack
"{DAEF48AD-89C8-4A93-B1DD-45B7E4FB6071}" = Windows Live Movie Maker
"{DBAA2B17-D596-4195-A169-BA2166B0D69B}" = Windows Live Mail
"{DDC8BDEE-DCAC-404D-8257-3E8D4B782467}" = Windows Live Writer Resources
"{DE7C13A6-E4EA-4296-B0D5-5D7E8AD69501}" = Windows Live Writer
"{DE8F99FD-2FC7-4C98-AA67-2729FDE1F040}" = Windows Live Writer Resources
"{DECDCB7C-58CC-4865-91AF-627F9798FE48}" = Windows Live Mesh
"{DEF91E0F-D266-453D-B6F2-1BA002B40CB6}" = Windows Live Essentials
"{E09C4DB7-630C-4F06-A631-8EA7239923AF}" = D3DX10
"{E18B30AA-6E2D-480C-B918-AF61009F4010}" = عنصر تحكم ActiveX الخاص بـ Windows Live Mesh للاتصالات البعيدة
"{E3B9C5A9-BD7A-4B56-B754-FAEA7DD6FA88}" = Far Cry 3
"{E4E88B54-4777-4659-967A-2EED1E6AFD83}" = Windows Live Movie Maker
"{E4FB0B39-C991-4EE7-95DD-1A1A7857D33D}" = Asmedia ASM104x USB 3.0 Host Controller Driver
"{E54EEB5D-41ED-40FE-B4A8-8565DB81469B}" = Controlo ActiveX do Windows Live Mesh para Ligações Remotas
"{E5B21F11-6933-4E0B-A25C-7963E3C07D11}" = Windows Live Messenger
"{E62E0550-C098-43A2-B54B-03FB1E634483}" = Windows Live Writer
"{E727A662-AF9F-4DEE-81C5-F4A1686F3DFC}" = Windows Live Writer Resources
"{E83DC314-C926-4214-AD58-147691D6FE9F}" = Основные компоненты Windows Live
"{E85A4EFC-82F2-4CEE-8A8E-62FDAD353A66}" = Galería fotográfica de Windows Live
"{EA8FA6BE-29BE-4AF2-9352-841F83215EB0}" = Update Manager for SweetPacks 1.1
"{EC8BD21F-0CA0-4BBF-97D9-4A52B30041A1}" = ASUS Virtual Camera
"{ED16B700-D91F-44B0-867C-7EB5253CA38D}" = Raccolta foto di Windows Live
"{EEF99142-3357-402C-B298-DEC303E12D92}" = Windows Live 影像中心
"{EF7EAB13-46FC-49DD-8E3C-AAF8A286C5BB}" = Windows Live 程式集
"{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}" = Microsoft SQL Server 2005 Compact Edition [ENU]
"{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}" = Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219
"{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}" = Intel(R) Processor Graphics
"{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}" = Realtek High Definition Audio Driver
"{F52C5BE7-3F57-464E-8A54-908402E43CE8}" = Windows Live Writer Resources
"{F665F3B8-01B4-46A9-8E47-FF8DC2208C9F}" = Στοιχείο ελέγχου ActiveX του Windows Live Mesh για απομακρυσμένες συνδέσεις
"{F7E80BA7-A09D-4DD1-828B-C4A0274D4720}" = Windows Live Mesh
"{F8A9085D-4C7A-41a9-8A77-C8998A96C421}" = Intel(R) Control Center
"{F95E4EE0-0C6E-4273-B6B9-91FD6F071D76}" = Windows Live Essentials
"{FA540E67-095C-4A1B-97BA-4D547DEC9AF4}" = ASUS Live Update
"{FBCA06D2-4642-4F33-B20A-A7AB3F0D2E69}" = معرض صور Windows Live
"{FCDE76CB-989D-4E32-9739-6A272D2B0ED7}" = Windows Live Mesh
"{FE044230-9CA5-43F7-9B58-5AC5A28A1F33}" = Windows Live Essentials
"{FF105207-8423-4E13-B0B1-50753170B245}" = Windows Live Movie Maker
"{FF3DFA01-1E98-46B4-A065-DA8AD47C9598}" = Windows Live Movie Maker
"{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022
"7-Zip" = 7-Zip 9.20
"Adobe Flash Player ActiveX" = Adobe Flash Player 11 ActiveX
"Adobe Flash Player Plugin" = Adobe Flash Player 11 Plugin
"AmUStor" = Alcor Micro USB Card Reader
"Asus Vibe2.0" = AsusVibe2.0
"ASUS WebStorage" = ASUS WebStorage
"AsusScr_K3 Series_ENG" = AsusScr_K3 Series_ENG
"Avira AntiVir Desktop" = Avira Free Antivirus
"Battlelog Web Plugins" = Battlelog Web Plugins
"Cross Fire_is1" = Cross Fire En
"ESN Sonar-0.70.4" = ESN Sonar
"GFWL_{57520FA0-AC56-469B-9983-FF1000008300}" = Batman: Arkham City™
"Google Chrome" = Google Chrome
"HotspotShield" = Hotspot Shield 3.23
"InstallShield_{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}" = CyberLink Media Suite
"InstallShield_{40BF1E83-20EB-11D8-97C5-0009C5020658}" = CyberLink Power2Go
"InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243}" = CyberLink LabelPrint
"LogMeIn Hamachi" = LogMeIn Hamachi
"Malwarebytes Anti-Malware_is1" = Malwarebytes Anti-Malware Version 2.0.3.1025
"Mobile Partner" = Mobile Partner
"Mozilla Firefox 32.0.3 (x86 de)" = Mozilla Firefox 32.0.3 (x86 de)
"MozillaMaintenanceService" = Mozilla Maintenance Service
"Office14.Click2Run" = Microsoft Office Klick-und-Los 2010
"Origin" = Origin
"ProInst" = Intel PROSet Wireless
"PunkBusterSvc" = PunkBuster Services
"Razoss" = Chrome toolbar by SweetPacks
"Steam App 212910" = Call of Duty: Black Ops II - Zombies
"Steam App 260" = Counter-Strike: Source Beta
"TornPlusTV_version1.11" = TornPlusTV_version1.11
"TotalPlusHD-3.1V25.11" = TotalPlusHD-3.1V25.11
"Uplay" = Uplay
"WindowsMangerProtect" = WindowsMangerProtect20.0.0.1270
"WinLiveSuite" = Windows Live Essentials
 
========== HKEY_USERS Uninstall List ==========
 
[HKEY_USERS\S-1-5-21-3717476656-758687553-1952641011-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{79A765E1-C399-405B-85AF-466F52E918B0}" = Ask Toolbar Updater
"TeamSpeak 3 Client" = TeamSpeak 3 Client
 
========== HKEY_USERS Uninstall List ==========
 
[HKEY_USERS\S-1-5-21-3717476656-758687553-1952641011-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{79A765E1-C399-405B-85AF-466F52E918B0}" = Ask Toolbar Updater
"TeamSpeak 3 Client" = TeamSpeak 3 Client
 
========== HKEY_USERS Uninstall List ==========
 
[HKEY_USERS\S-1-5-21-3717476656-758687553-1952641011-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"Dropbox" = Dropbox
"Spotify" = Spotify
"TeamSpeak 3 Client" = TeamSpeak 3 Client
"uTorrent" = µTorrent
 
========== HKEY_USERS Uninstall List ==========
 
[HKEY_USERS\S-1-5-21-3717476656-758687553-1952641011-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{86AB995A-0AB3-41C1-9DF2-12055B7F9703}" = Search.us.com
"Dropbox" = Dropbox
"Spotify" = Spotify
"TeamSpeak 3 Client" = TeamSpeak 3 Client
"uTorrent" = µTorrent
 
========== Last 20 Event Log Errors ==========
 
[ Application Events ]
Error - 25.11.2014 13:24:29 | Computer Name = WK-PC | Source = MsiInstaller | ID = 11309
Description = 
 
Error - 25.11.2014 14:17:08 | Computer Name = WK-PC | Source = Application Error | ID = 1000
Description = Name der fehlerhaften Anwendung: 2d374c00-0afb-44b3-95e5-4a41d9686eee-6.exe,
 Version: 1.0.0.1, Zeitstempel: 0x5473c7fa  Name des fehlerhaften Moduls: 2d374c00-0afb-44b3-95e5-4a41d9686eee-6.exe,
 Version: 1.0.0.1, Zeitstempel: 0x5473c7fa  Ausnahmecode: 0xc0000005  Fehleroffset: 
0x0009a196  ID des fehlerhaften Prozesses: 0x1d88  Startzeit der fehlerhaften Anwendung:
 0x01d008dc013805cd  Pfad der fehlerhaften Anwendung: C:\Program Files (x86)\TotalPlusHD-3.1V25.11\2d374c00-0afb-44b3-95e5-4a41d9686eee-6.exe
Pfad
 des fehlerhaften Moduls: C:\Program Files (x86)\TotalPlusHD-3.1V25.11\2d374c00-0afb-44b3-95e5-4a41d9686eee-6.exe
Berichtskennung:
 441cd72b-74cf-11e4-9e7d-5404a645b907
 
Error - 25.11.2014 14:24:04 | Computer Name = WK-PC | Source = Application Error | ID = 1000
Description = Name der fehlerhaften Anwendung: cf43921d-02df-421d-ae05-8262e53706bf-6.exe,
 Version: 1.0.0.1, Zeitstempel: 0x547462a4  Name des fehlerhaften Moduls: cf43921d-02df-421d-ae05-8262e53706bf-6.exe,
 Version: 1.0.0.1, Zeitstempel: 0x547462a4  Ausnahmecode: 0xc0000005  Fehleroffset: 
0x00098cf3  ID des fehlerhaften Prozesses: 0x1e34  Startzeit der fehlerhaften Anwendung:
 0x01d008dcfb8eebe4  Pfad der fehlerhaften Anwendung: C:\Program Files (x86)\TornPlusTV_version1.11\cf43921d-02df-421d-ae05-8262e53706bf-6.exe
Pfad
 des fehlerhaften Moduls: C:\Program Files (x86)\TornPlusTV_version1.11\cf43921d-02df-421d-ae05-8262e53706bf-6.exe
Berichtskennung:
 3c0f8e37-74d0-11e4-9e7d-5404a645b907
 
Error - 25.11.2014 15:17:09 | Computer Name = WK-PC | Source = Application Error | ID = 1000
Description = Name der fehlerhaften Anwendung: 2d374c00-0afb-44b3-95e5-4a41d9686eee-6.exe,
 Version: 1.0.0.1, Zeitstempel: 0x5473c7fa  Name des fehlerhaften Moduls: 2d374c00-0afb-44b3-95e5-4a41d9686eee-6.exe,
 Version: 1.0.0.1, Zeitstempel: 0x5473c7fa  Ausnahmecode: 0xc0000005  Fehleroffset: 
0x0009a196  ID des fehlerhaften Prozesses: 0x2bc  Startzeit der fehlerhaften Anwendung:
 0x01d008e462fcf46b  Pfad der fehlerhaften Anwendung: C:\Program Files (x86)\TotalPlusHD-3.1V25.11\2d374c00-0afb-44b3-95e5-4a41d9686eee-6.exe
Pfad
 des fehlerhaften Moduls: C:\Program Files (x86)\TotalPlusHD-3.1V25.11\2d374c00-0afb-44b3-95e5-4a41d9686eee-6.exe
Berichtskennung:
 a67d1b64-74d7-11e4-9e7d-5404a645b907
 
Error - 25.11.2014 15:24:03 | Computer Name = WK-PC | Source = Application Error | ID = 1000
Description = Name der fehlerhaften Anwendung: cf43921d-02df-421d-ae05-8262e53706bf-6.exe,
 Version: 1.0.0.1, Zeitstempel: 0x547462a4  Name des fehlerhaften Moduls: cf43921d-02df-421d-ae05-8262e53706bf-6.exe,
 Version: 1.0.0.1, Zeitstempel: 0x547462a4  Ausnahmecode: 0xc0000005  Fehleroffset: 
0x00098cf3  ID des fehlerhaften Prozesses: 0xb34  Startzeit der fehlerhaften Anwendung:
 0x01d008e55d53cebc  Pfad der fehlerhaften Anwendung: C:\Program Files (x86)\TornPlusTV_version1.11\cf43921d-02df-421d-ae05-8262e53706bf-6.exe
Pfad
 des fehlerhaften Moduls: C:\Program Files (x86)\TornPlusTV_version1.11\cf43921d-02df-421d-ae05-8262e53706bf-6.exe
Berichtskennung:
 9d3a7af2-74d8-11e4-9e7d-5404a645b907
 
Error - 25.11.2014 17:25:08 | Computer Name = WK-PC | Source = Application Error | ID = 1000
Description = Name der fehlerhaften Anwendung: 2d374c00-0afb-44b3-95e5-4a41d9686eee-6.exe,
 Version: 1.0.0.1, Zeitstempel: 0x5473c7fa  Name des fehlerhaften Moduls: 2d374c00-0afb-44b3-95e5-4a41d9686eee-6.exe,
 Version: 1.0.0.1, Zeitstempel: 0x5473c7fa  Ausnahmecode: 0xc0000005  Fehleroffset: 
0x0009a196  ID des fehlerhaften Prozesses: 0x21dc  Startzeit der fehlerhaften Anwendung:
 0x01d008ecc4c0f0c3  Pfad der fehlerhaften Anwendung: C:\Program Files (x86)\TotalPlusHD-3.1V25.11\2d374c00-0afb-44b3-95e5-4a41d9686eee-6.exe
Pfad
 des fehlerhaften Moduls: C:\Program Files (x86)\TotalPlusHD-3.1V25.11\2d374c00-0afb-44b3-95e5-4a41d9686eee-6.exe
Berichtskennung:
 872d0044-74e9-11e4-9e7d-5404a645b907
 
Error - 25.11.2014 17:25:08 | Computer Name = WK-PC | Source = Application Error | ID = 1000
Description = Name der fehlerhaften Anwendung: cf43921d-02df-421d-ae05-8262e53706bf-6.exe,
 Version: 1.0.0.1, Zeitstempel: 0x547462a4  Name des fehlerhaften Moduls: cf43921d-02df-421d-ae05-8262e53706bf-6.exe,
 Version: 1.0.0.1, Zeitstempel: 0x547462a4  Ausnahmecode: 0xc0000005  Fehleroffset: 
0x00098cf3  ID des fehlerhaften Prozesses: 0x20fc  Startzeit der fehlerhaften Anwendung:
 0x01d008edbf17b494  Pfad der fehlerhaften Anwendung: C:\Program Files (x86)\TornPlusTV_version1.11\cf43921d-02df-421d-ae05-8262e53706bf-6.exe
Pfad
 des fehlerhaften Moduls: C:\Program Files (x86)\TornPlusTV_version1.11\cf43921d-02df-421d-ae05-8262e53706bf-6.exe
Berichtskennung:
 872f985d-74e9-11e4-9e7d-5404a645b907
 
Error - 26.11.2014 09:06:32 | Computer Name = WK-PC | Source = Application Error | ID = 1000
Description = Name der fehlerhaften Anwendung: cf43921d-02df-421d-ae05-8262e53706bf-6.exe,
 Version: 1.0.0.1, Zeitstempel: 0x547462a4  Name des fehlerhaften Moduls: cf43921d-02df-421d-ae05-8262e53706bf-6.exe,
 Version: 1.0.0.1, Zeitstempel: 0x547462a4  Ausnahmecode: 0xc0000005  Fehleroffset: 
0x00098cf3  ID des fehlerhaften Prozesses: 0x2474  Startzeit der fehlerhaften Anwendung:
 0x01d00979c7e9e107  Pfad der fehlerhaften Anwendung: C:\Program Files (x86)\TornPlusTV_version1.11\cf43921d-02df-421d-ae05-8262e53706bf-6.exe
Pfad
 des fehlerhaften Moduls: C:\Program Files (x86)\TornPlusTV_version1.11\cf43921d-02df-421d-ae05-8262e53706bf-6.exe
Berichtskennung:
 0a9f2c41-756d-11e4-9e7d-5404a645b907
 
Error - 26.11.2014 09:06:34 | Computer Name = WK-PC | Source = Application Error | ID = 1000
Description = Name der fehlerhaften Anwendung: 2d374c00-0afb-44b3-95e5-4a41d9686eee-6.exe,
 Version: 1.0.0.1, Zeitstempel: 0x5473c7fa  Name des fehlerhaften Moduls: 2d374c00-0afb-44b3-95e5-4a41d9686eee-6.exe,
 Version: 1.0.0.1, Zeitstempel: 0x5473c7fa  Ausnahmecode: 0xc0000005  Fehleroffset: 
0x0009a196  ID des fehlerhaften Prozesses: 0x247c  Startzeit der fehlerhaften Anwendung:
 0x01d00979c7ea42af  Pfad der fehlerhaften Anwendung: C:\Program Files (x86)\TotalPlusHD-3.1V25.11\2d374c00-0afb-44b3-95e5-4a41d9686eee-6.exe
Pfad
 des fehlerhaften Moduls: C:\Program Files (x86)\TotalPlusHD-3.1V25.11\2d374c00-0afb-44b3-95e5-4a41d9686eee-6.exe
Berichtskennung:
 0be25b9d-756d-11e4-9e7d-5404a645b907
 
Error - 26.11.2014 09:17:08 | Computer Name = WK-PC | Source = Application Error | ID = 1000
Description = Name der fehlerhaften Anwendung: 2d374c00-0afb-44b3-95e5-4a41d9686eee-6.exe,
 Version: 1.0.0.1, Zeitstempel: 0x5473c7fa  Name des fehlerhaften Moduls: 2d374c00-0afb-44b3-95e5-4a41d9686eee-6.exe,
 Version: 1.0.0.1, Zeitstempel: 0x5473c7fa  Ausnahmecode: 0xc0000005  Fehleroffset: 
0x0009a196  ID des fehlerhaften Prozesses: 0x1738  Startzeit der fehlerhaften Anwendung:
 0x01d0097b42cc132f  Pfad der fehlerhaften Anwendung: C:\Program Files (x86)\TotalPlusHD-3.1V25.11\2d374c00-0afb-44b3-95e5-4a41d9686eee-6.exe
Pfad
 des fehlerhaften Moduls: C:\Program Files (x86)\TotalPlusHD-3.1V25.11\2d374c00-0afb-44b3-95e5-4a41d9686eee-6.exe
Berichtskennung:
 85b10f4c-756e-11e4-9e7d-5404a645b907
 
Error - 26.11.2014 09:25:17 | Computer Name = WK-PC | Source = Application Error | ID = 1000
Description = Name der fehlerhaften Anwendung: cf43921d-02df-421d-ae05-8262e53706bf-6.exe,
 Version: 1.0.0.1, Zeitstempel: 0x547462a4  Name des fehlerhaften Moduls: cf43921d-02df-421d-ae05-8262e53706bf-6.exe,
 Version: 1.0.0.1, Zeitstempel: 0x547462a4  Ausnahmecode: 0xc0000005  Fehleroffset: 
0x00098cf3  ID des fehlerhaften Prozesses: 0x1608  Startzeit der fehlerhaften Anwendung:
 0x01d0097c3ea7646e  Pfad der fehlerhaften Anwendung: C:\Program Files (x86)\TornPlusTV_version1.11\cf43921d-02df-421d-ae05-8262e53706bf-6.exe
Pfad
 des fehlerhaften Moduls: C:\Program Files (x86)\TornPlusTV_version1.11\cf43921d-02df-421d-ae05-8262e53706bf-6.exe
Berichtskennung:
 a9335476-756f-11e4-9e7d-5404a645b907
 
[ System Events ]
Error - 21.11.2014 22:43:08 | Computer Name = WK-PC | Source = Service Control Manager | ID = 7000
Description = Der Dienst "Mobile Partner. OUC" wurde aufgrund folgenden Fehlers 
nicht gestartet:   %%1053
 
Error - 21.11.2014 22:48:46 | Computer Name = WK-PC | Source = Service Control Manager | ID = 7022
Description = Der Dienst "NVIDIA Update Service Daemon" wurde nicht richtig gestartet.
 
Error - 24.11.2014 22:06:14 | Computer Name = WK-PC | Source = Microsoft-Windows-WindowsUpdateClient | ID = 20
Description = Installationsfehler: Die Installation des folgenden Updates ist mit
 Fehler 0x80070643 fehlgeschlagen: Internet Explorer 11 für Windows 7 für x64-basierte
 Systeme
 
Error - 25.11.2014 14:59:14 | Computer Name = WK-PC | Source = volsnap | ID = 393252
Description = Die Schattenkopien von Volume "C:" wurden abgebrochen, weil der Schattenkopiespeicher
 nicht auf ein benutzerdefiniertes Limit vergrößert werden konnte.
 
Error - 26.11.2014 09:39:50 | Computer Name = WK-PC | Source = Service Control Manager | ID = 7034
Description = Dienst "WindowsMangerProtect Service" wurde unerwartet beendet. Dies
 ist bereits 1 Mal passiert.
 
Error - 26.11.2014 10:44:17 | Computer Name = WK-PC | Source = Service Control Manager | ID = 7000
Description = Der Dienst "Adobe Flash Player Update Service" wurde aufgrund folgenden
 Fehlers nicht gestartet:   %%2
 
Error - 26.11.2014 10:45:30 | Computer Name = WK-PC | Source = Service Control Manager | ID = 7009
Description = Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst
 Mobile Partner. OUC erreicht.
 
Error - 26.11.2014 10:45:30 | Computer Name = WK-PC | Source = Service Control Manager | ID = 7000
Description = Der Dienst "Mobile Partner. OUC" wurde aufgrund folgenden Fehlers 
nicht gestartet:   %%1053
 
Error - 26.11.2014 10:52:30 | Computer Name = WK-PC | Source = Service Control Manager | ID = 7022
Description = Der Dienst "NVIDIA Update Service Daemon" wurde nicht richtig gestartet.
 
Error - 26.11.2014 10:55:02 | Computer Name = WK-PC | Source = Service Control Manager | ID = 7022
Description = Der Dienst "Windows Update" wurde nicht richtig gestartet.
 
 
< End of report >
         

Alt 26.11.2014, 20:59   #5
magnusson
 
mystartsearch entfernen - Standard

mystartsearch entfernen



Mailwarebytes 1.Teil:

Code:
ATTFilter
 Malwarebytes Anti-Malware 
www.malwarebytes.org

Suchlauf Datum: 26.11.2014
Suchlauf-Zeit: 16:09:36
Logdatei: Trojaner-Board Logs.txt
Administrator: Ja

Version: 2.00.3.1025
Malware Datenbank: v2014.11.26.04
Rootkit Datenbank: v2014.11.22.01
Lizenz: Testversion
Malware Schutz: Aktiviert
Bösartiger Webseiten Schutz: Aktiviert
Selbstschutz: Deaktiviert

Betriebssystem: Windows 7 Service Pack 1
CPU: x64
Dateisystem: NTFS
Benutzer: ***

Suchlauf-Art: Bedrohungs-Suchlauf
Ergebnis: Abgeschlossen
Durchsuchte Objekte: 376259
Verstrichene Zeit: 41 Min, 46 Sek

Speicher: Aktiviert
Autostart: Aktiviert
Dateisystem: Aktiviert
Archive: Aktiviert
Rootkits: Deaktiviert
Heuristik: Aktiviert
PUP: Aktiviert
PUM: Aktiviert

Prozesse: 2
PUP.Optional.SweetIM, C:\Program Files (x86)\SweetIM\Messenger\SweetIM.exe, 3388, Löschen bei Neustart, [62fa51ef81fbc670d1a03349b64fa55b]
PUP.Optional.SweetIM, C:\Program Files (x86)\SweetIM\Communicator\SweetPacksUpdateManager.exe, 3396, Löschen bei Neustart, [86d641ff720a5dd90b66166661a48c74]

Module: 30
PUP.Optional.SweetIM, C:\Program Files (x86)\SweetIM\Messenger\mgAdaptersProxy.dll, Löschen bei Neustart, [e973cc74cfad9c9a5021c9b35aab34cc], 
PUP.Optional.SweetIM, C:\Program Files (x86)\SweetIM\Messenger\mgAdaptersProxy.dll, Löschen bei Neustart, [e973cc74cfad9c9a5021c9b35aab34cc], 
PUP.Optional.SweetIM, C:\Program Files (x86)\SweetIM\Messenger\mgAdaptersProxy.dll, Löschen bei Neustart, [e973cc74cfad9c9a5021c9b35aab34cc], 
PUP.Optional.SweetIM, C:\Program Files (x86)\SweetIM\Messenger\mgAdaptersProxy.dll, Löschen bei Neustart, [e973cc74cfad9c9a5021c9b35aab34cc], 
PUP.Optional.SweetIM, C:\Program Files (x86)\SweetIM\Messenger\mgAdaptersProxy.dll, Löschen bei Neustart, [e973cc74cfad9c9a5021c9b35aab34cc], 
PUP.Optional.SweetIM, C:\Program Files (x86)\SweetIM\Messenger\mgAdaptersProxy.dll, Löschen bei Neustart, [e973cc74cfad9c9a5021c9b35aab34cc], 
PUP.Optional.SweetIM, C:\Program Files (x86)\SweetIM\Messenger\mgAdaptersProxy.dll, Löschen bei Neustart, [e973cc74cfad9c9a5021c9b35aab34cc], 
PUP.Optional.SweetIM, C:\Program Files (x86)\SweetIM\Messenger\mgAdaptersProxy.dll, Löschen bei Neustart, [e973cc74cfad9c9a5021c9b35aab34cc], 
PUP.Optional.SweetIM, C:\Program Files (x86)\SweetIM\Messenger\mgAdaptersProxy.dll, Löschen bei Neustart, [e973cc74cfad9c9a5021c9b35aab34cc], 
PUP.Optional.SweetIM, C:\Program Files (x86)\SweetIM\Messenger\mgAdaptersProxy.dll, Löschen bei Neustart, [e973cc74cfad9c9a5021c9b35aab34cc], 
PUP.Optional.SweetIM, C:\Program Files (x86)\SweetIM\Messenger\mgAdaptersProxy.dll, Löschen bei Neustart, [e973cc74cfad9c9a5021c9b35aab34cc], 
PUP.Optional.SweetIM, C:\Program Files (x86)\SweetIM\Messenger\mgAdaptersProxy.dll, Löschen bei Neustart, [e973cc74cfad9c9a5021c9b35aab34cc], 
PUP.Optional.SweetIM, C:\Program Files (x86)\SweetIM\Messenger\mgAdaptersProxy.dll, Löschen bei Neustart, [e973cc74cfad9c9a5021c9b35aab34cc], 
PUP.Optional.SweetIM, C:\Program Files (x86)\SweetIM\Messenger\mgAdaptersProxy.dll, Löschen bei Neustart, [e973cc74cfad9c9a5021c9b35aab34cc], 
PUP.Optional.SweetIM, C:\Program Files (x86)\SweetIM\Messenger\mgAdaptersProxy.dll, Löschen bei Neustart, [e973cc74cfad9c9a5021c9b35aab34cc], 
PUP.Optional.SweetIM, C:\Program Files (x86)\SweetIM\Messenger\mgAdaptersProxy.dll, Löschen bei Neustart, [e973cc74cfad9c9a5021c9b35aab34cc], 
PUP.Optional.SweetIM, C:\Program Files (x86)\SweetIM\Messenger\mgAdaptersProxy.dll, Löschen bei Neustart, [e973cc74cfad9c9a5021c9b35aab34cc], 
PUP.Optional.SweetIM, C:\Program Files (x86)\SweetIM\Messenger\mgAdaptersProxy.dll, Löschen bei Neustart, [e973cc74cfad9c9a5021c9b35aab34cc], 
PUP.Optional.SweetIM, C:\Program Files (x86)\SweetIM\Messenger\mgAdaptersProxy.dll, Löschen bei Neustart, [e973cc74cfad9c9a5021c9b35aab34cc], 
PUP.Optional.SweetIM, C:\Program Files (x86)\SweetIM\Messenger\mgUpdateSupport.dll, Löschen bei Neustart, [8cd0053b710bec4a8be6364653b26997], 
PUP.Optional.SweetIM, C:\Program Files (x86)\SweetIM\Messenger\mgsimcommon.dll, Löschen bei Neustart, [4d0fe8585f1ddb5bc4adf884bb4ab749], 
PUP.Optional.SweetIM, C:\Program Files (x86)\SweetIM\Messenger\mgcommon.dll, Löschen bei Neustart, [d08c7ec28fed4bebd69bdba135d0ad53], 
PUP.Optional.SweetIM, C:\Program Files (x86)\SweetIM\Messenger\mgcommunication.dll, Löschen bei Neustart, [84d84ef214685adca8c95c2049bcc53b], 
PUP.Optional.SweetIM, C:\Program Files (x86)\SweetIM\Messenger\mghooking.dll, Löschen bei Neustart, [db81b888fa8249ed1e53a9d307fe12ee], 
PUP.Optional.SweetIM, C:\Program Files (x86)\SweetIM\Messenger\mgxml_wrapper.dll, Löschen bei Neustart, [d28a281814685fd77df4ed8f7a8bf10f], 
PUP.Optional.SweetIM, C:\Program Files (x86)\SweetIM\Messenger\mgconfig.dll, Löschen bei Neustart, [c39981bfc2ba7db9f9782854e520f709], 
PUP.Optional.SweetIM, C:\Program Files (x86)\SweetIM\Communicator\mgcommon.dll, Löschen bei Neustart, [70ec350b5e1eff373a37a2dabe4715eb], 
PUP.Optional.SweetIM, C:\Program Files (x86)\SweetIM\Communicator\mgxml_wrapper.dll, Löschen bei Neustart, [64f8e8587b01e056452ca2da54b16a96], 
PUP.Optional.SweetIM, C:\Program Files (x86)\SweetIM\Communicator\mgcommunication.dll, Löschen bei Neustart, [db81cb75d8a4f34372ff4834699c3dc3], 
PUP.Optional.SweetIM, C:\Program Files (x86)\SweetIM\Communicator\mgsimcommon.dll, Löschen bei Neustart, [72ea1828e498171ff77a324aa75e926e], 

Registrierungsschlüssel: 293
PUP.Optional.AudioToAudioToolBar.A, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\RadioRage_4jService, In Quarantäne, [362675cb4438181e5ba3f144dd235aa6], 
PUP.Optional.Delta.A, HKLM\SOFTWARE\CLASSES\APPID\{C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3}, In Quarantäne, [520abe82aad22f07ca63897161a114ec], 
PUP.Optional.Delta.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\APPID\{C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3}, In Quarantäne, [520abe82aad22f07ca63897161a114ec], 
PUP.Optional.Blabbers, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{00cbb66b-1d3b-46d3-9577-323a336acb50}, In Quarantäne, [91cb8fb1abd1c0767932ce04c33f2fd1], 
PUP.Optional.Blabbers, HKLM\SOFTWARE\CLASSES\TYPELIB\{8830DDF0-3042-404D-A62C-384A85E34833}, In Quarantäne, [91cb8fb1abd1c0767932ce04c33f2fd1], 
PUP.Optional.Blabbers, HKLM\SOFTWARE\CLASSES\INTERFACE\{817923CB-4744-4216-B250-CF7EDA8F1767}, In Quarantäne, [91cb8fb1abd1c0767932ce04c33f2fd1], 
PUP.Optional.Blabbers, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{817923CB-4744-4216-B250-CF7EDA8F1767}, In Quarantäne, [91cb8fb1abd1c0767932ce04c33f2fd1], 
PUP.Optional.Blabbers, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{8830DDF0-3042-404D-A62C-384A85E34833}, In Quarantäne, [91cb8fb1abd1c0767932ce04c33f2fd1], 
PUP.Optional.Blabbers, HKLM\SOFTWARE\CLASSES\wit4ie.WitBHO.2, In Quarantäne, [91cb8fb1abd1c0767932ce04c33f2fd1], 
PUP.Optional.Blabbers, HKLM\SOFTWARE\CLASSES\wit4ie.WitBHO, In Quarantäne, [91cb8fb1abd1c0767932ce04c33f2fd1], 
PUP.Optional.Blabbers, HKLM\SOFTWARE\WOW6432NODE\CLASSES\wit4ie.WitBHO, In Quarantäne, [91cb8fb1abd1c0767932ce04c33f2fd1], 
PUP.Optional.Blabbers, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{00CBB66B-1D3B-46D3-9577-323A336ACB50}, In Quarantäne, [91cb8fb1abd1c0767932ce04c33f2fd1], 
PUP.Optional.Blabbers, HKLM\SOFTWARE\WOW6432NODE\CLASSES\wit4ie.WitBHO.2, In Quarantäne, [91cb8fb1abd1c0767932ce04c33f2fd1], 
PUP.Optional.Blabbers, HKU\S-1-5-21-3717476656-758687553-1952641011-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{00CBB66B-1D3B-46D3-9577-323A336ACB50}, Löschen bei Neustart, [91cb8fb1abd1c0767932ce04c33f2fd1], 
PUP.Optional.Blabbers, HKU\S-1-5-21-3717476656-758687553-1952641011-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{00CBB66B-1D3B-46D3-9577-323A336ACB50}, Löschen bei Neustart, [91cb8fb1abd1c0767932ce04c33f2fd1], 
PUP.Optional.Blabbers, HKU\S-1-5-21-3717476656-758687553-1952641011-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{00CBB66B-1D3B-46D3-9577-323A336ACB50}, Löschen bei Neustart, [91cb8fb1abd1c0767932ce04c33f2fd1], 
PUP.Optional.Blabbers, HKU\S-1-5-21-3717476656-758687553-1952641011-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{00CBB66B-1D3B-46D3-9577-323A336ACB50}, Löschen bei Neustart, [91cb8fb1abd1c0767932ce04c33f2fd1], 
PUP.Optional.FunWebProducts.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{33119133-0854-469d-807A-171568457991}, In Quarantäne, [0a52d868ee8ed4620c787388b94902fe], 
PUP.Optional.FunWebProducts.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{13119113-0854-469d-807A-171568457991}, In Quarantäne, [0a52d868ee8ed4620c787388b94902fe], 
PUP.Optional.FunWebProducts.A, HKLM\SOFTWARE\CLASSES\RadioRage_4j.SkinLauncher.1, In Quarantäne, [0a52d868ee8ed4620c787388b94902fe], 
PUP.Optional.FunWebProducts.A, HKLM\SOFTWARE\CLASSES\RadioRage_4j.SkinLauncher, In Quarantäne, [0a52d868ee8ed4620c787388b94902fe], 
PUP.Optional.FunWebProducts.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\RadioRage_4j.SkinLauncher, In Quarantäne, [0a52d868ee8ed4620c787388b94902fe], 
PUP.Optional.FunWebProducts.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\RadioRage_4j.SkinLauncher.1, In Quarantäne, [0a52d868ee8ed4620c787388b94902fe], 
PUP.Optional.FunWebProducts.A, HKLM\SOFTWARE\CLASSES\TYPELIB\{03119103-0854-469d-807A-171568457991}, In Quarantäne, [0a52d868ee8ed4620c787388b94902fe], 
PUP.Optional.FunWebProducts.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{23119123-0854-469D-807A-171568457991}, In Quarantäne, [0a52d868ee8ed4620c787388b94902fe], 
PUP.Optional.FunWebProducts.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{23119123-0854-469D-807A-171568457991}, In Quarantäne, [0a52d868ee8ed4620c787388b94902fe], 
PUP.Optional.FunWebProducts.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{03119103-0854-469d-807A-171568457991}, In Quarantäne, [0a52d868ee8ed4620c787388b94902fe], 
PUP.Optional.FunWebProducts.A, HKLM\SOFTWARE\CLASSES\RadioRage_4j.SkinLauncherSettings.1, In Quarantäne, [0a52d868ee8ed4620c787388b94902fe], 
PUP.Optional.FunWebProducts.A, HKLM\SOFTWARE\CLASSES\RadioRage_4j.SkinLauncherSettings, In Quarantäne, [0a52d868ee8ed4620c787388b94902fe], 
PUP.Optional.FunWebProducts.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\RadioRage_4j.SkinLauncherSettings, In Quarantäne, [0a52d868ee8ed4620c787388b94902fe], 
PUP.Optional.FunWebProducts.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\RadioRage_4j.SkinLauncherSettings.1, In Quarantäne, [0a52d868ee8ed4620c787388b94902fe], 
PUP.Optional.Blabbers, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{5ACE96C0-C70A-4A4D-AF14-2E7B869345E1}, In Quarantäne, [3725af9184f8a88e2c805979ba483bc5], 
PUP.Optional.Blabbers, HKLM\SOFTWARE\CLASSES\TYPELIB\{830B56CB-FD22-44AA-9887-7898F4F4158D}, In Quarantäne, [3725af9184f8a88e2c805979ba483bc5], 
PUP.Optional.Blabbers, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{830B56CB-FD22-44AA-9887-7898F4F4158D}, In Quarantäne, [3725af9184f8a88e2c805979ba483bc5], 
PUP.Optional.Blabbers, HKLM\SOFTWARE\CLASSES\tdataprotocol.CTData.1, In Quarantäne, [3725af9184f8a88e2c805979ba483bc5], 
PUP.Optional.Blabbers, HKLM\SOFTWARE\CLASSES\tdataprotocol.CTData, In Quarantäne, [3725af9184f8a88e2c805979ba483bc5], 
PUP.Optional.Blabbers, HKLM\SOFTWARE\WOW6432NODE\CLASSES\tdataprotocol.CTData, In Quarantäne, [3725af9184f8a88e2c805979ba483bc5], 
PUP.Optional.Blabbers, HKLM\SOFTWARE\WOW6432NODE\CLASSES\tdataprotocol.CTData.1, In Quarantäne, [3725af9184f8a88e2c805979ba483bc5], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{78ba36c9-6036-482b-b48d-ecca6f964b84}, In Quarantäne, [1448d967ea921e1805155c67f70bf20e], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{9638b7d6-11f5-4406-b387-327642a11ffb}, In Quarantäne, [1448d967ea921e1805155c67f70bf20e], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\TYPELIB\{b872d222-3f52-4cd9-a4be-9d69ee4f293d}, In Quarantäne, [1448d967ea921e1805155c67f70bf20e], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{37B204F8-CD97-409B-BDBF-41C0EC0DFF24}, In Quarantäne, [1448d967ea921e1805155c67f70bf20e], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{7AFA5495-6C01-4BB8-AE21-C3BD6AB2F17C}, In Quarantäne, [1448d967ea921e1805155c67f70bf20e], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{A1448C6E-0452-4550-B852-A1CE666D4907}, In Quarantäne, [1448d967ea921e1805155c67f70bf20e], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{A25AA6E2-1CDE-4D0F-A5D4-4898D7FB3C86}, In Quarantäne, [1448d967ea921e1805155c67f70bf20e], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{A5C9CB1C-1C0A-45A2-81CC-1DD342D0A478}, In Quarantäne, [1448d967ea921e1805155c67f70bf20e], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{F2B8FCF4-73EA-4D12-AAFE-72909AFBA0A4}, In Quarantäne, [1448d967ea921e1805155c67f70bf20e], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{37B204F8-CD97-409B-BDBF-41C0EC0DFF24}, In Quarantäne, [1448d967ea921e1805155c67f70bf20e], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{7AFA5495-6C01-4BB8-AE21-C3BD6AB2F17C}, In Quarantäne, [1448d967ea921e1805155c67f70bf20e], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{A1448C6E-0452-4550-B852-A1CE666D4907}, In Quarantäne, [1448d967ea921e1805155c67f70bf20e], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{A25AA6E2-1CDE-4D0F-A5D4-4898D7FB3C86}, In Quarantäne, [1448d967ea921e1805155c67f70bf20e], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{A5C9CB1C-1C0A-45A2-81CC-1DD342D0A478}, In Quarantäne, [1448d967ea921e1805155c67f70bf20e], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{F2B8FCF4-73EA-4D12-AAFE-72909AFBA0A4}, In Quarantäne, [1448d967ea921e1805155c67f70bf20e], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{b872d222-3f52-4cd9-a4be-9d69ee4f293d}, In Quarantäne, [1448d967ea921e1805155c67f70bf20e], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\RadioRage_4j.SettingsPlugin.1, In Quarantäne, [1448d967ea921e1805155c67f70bf20e], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\RadioRage_4j.SettingsPlugin, In Quarantäne, [1448d967ea921e1805155c67f70bf20e], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\RadioRage_4j.SettingsPlugin, In Quarantäne, [1448d967ea921e1805155c67f70bf20e], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\RadioRage_4j.SettingsPlugin.1, In Quarantäne, [1448d967ea921e1805155c67f70bf20e], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\PREAPPROVED\{9638B7D6-11F5-4406-B387-327642A11FFB}, In Quarantäne, [1448d967ea921e1805155c67f70bf20e], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\RadioRage_4jbar Uninstall Firefox, In Quarantäne, [1448d967ea921e1805155c67f70bf20e], 
PUP.Optional.Blabbers, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{963B125B-8B21-49A2-A3A8-E37092276531}, In Quarantäne, [3725d46c4f2db284e1c9d6fcd52dbd43], 
PUP.Optional.Blabbers, HKLM\SOFTWARE\CLASSES\TYPELIB\{955B782E-CDC8-4CEE-B6F6-AD7D541A8D8A}, In Quarantäne, [3725d46c4f2db284e1c9d6fcd52dbd43], 
PUP.Optional.Blabbers, HKLM\SOFTWARE\CLASSES\INTERFACE\{9F0C17EB-EF2C-4278-9136-2D547656BC03}, In Quarantäne, [3725d46c4f2db284e1c9d6fcd52dbd43], 
PUP.Optional.Blabbers, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{9F0C17EB-EF2C-4278-9136-2D547656BC03}, In Quarantäne, [3725d46c4f2db284e1c9d6fcd52dbd43], 
PUP.Optional.Blabbers, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{955B782E-CDC8-4CEE-B6F6-AD7D541A8D8A}, In Quarantäne, [3725d46c4f2db284e1c9d6fcd52dbd43], 
PUP.Optional.Blabbers, HKLM\SOFTWARE\CLASSES\updatebho.TimerBHO.1, In Quarantäne, [3725d46c4f2db284e1c9d6fcd52dbd43], 
PUP.Optional.Blabbers, HKLM\SOFTWARE\CLASSES\updatebho.TimerBHO, In Quarantäne, [3725d46c4f2db284e1c9d6fcd52dbd43], 
PUP.Optional.Blabbers, HKLM\SOFTWARE\WOW6432NODE\CLASSES\updatebho.TimerBHO, In Quarantäne, [3725d46c4f2db284e1c9d6fcd52dbd43], 
PUP.Optional.Blabbers, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{963B125B-8B21-49A2-A3A8-E37092276531}, In Quarantäne, [3725d46c4f2db284e1c9d6fcd52dbd43], 
PUP.Optional.Blabbers, HKLM\SOFTWARE\WOW6432NODE\CLASSES\updatebho.TimerBHO.1, In Quarantäne, [3725d46c4f2db284e1c9d6fcd52dbd43], 
PUP.Optional.Blabbers, HKU\S-1-5-21-3717476656-758687553-1952641011-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{963B125B-8B21-49A2-A3A8-E37092276531}, Löschen bei Neustart, [3725d46c4f2db284e1c9d6fcd52dbd43], 
PUP.Optional.Blabbers, HKU\S-1-5-21-3717476656-758687553-1952641011-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{963B125B-8B21-49A2-A3A8-E37092276531}, Löschen bei Neustart, [3725d46c4f2db284e1c9d6fcd52dbd43], 
PUP.Optional.Blabbers, HKU\S-1-5-21-3717476656-758687553-1952641011-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{963B125B-8B21-49A2-A3A8-E37092276531}, Löschen bei Neustart, [3725d46c4f2db284e1c9d6fcd52dbd43], 
PUP.Optional.Blabbers, HKU\S-1-5-21-3717476656-758687553-1952641011-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{963B125B-8B21-49A2-A3A8-E37092276531}, Löschen bei Neustart, [3725d46c4f2db284e1c9d6fcd52dbd43], 
PUP.Optional.SweetPacks, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{EEE6C35C-6118-11DC-9C72-001320C79847}, In Quarantäne, [c7950c344933ab8b4452379037cb9b65], 
PUP.Optional.SweetPacks, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{EEE6C35B-6118-11DC-9C72-001320C79847}, In Quarantäne, [c7950c344933ab8b4452379037cb9b65], 
PUP.Optional.SweetPacks, HKLM\SOFTWARE\CLASSES\TYPELIB\{EEE6C35E-6118-11DC-9C72-001320C79847}, In Quarantäne, [c7950c344933ab8b4452379037cb9b65], 
PUP.Optional.SweetPacks, HKLM\SOFTWARE\CLASSES\INTERFACE\{EEE6C358-6118-11DC-9C72-001320C79847}, In Quarantäne, [c7950c344933ab8b4452379037cb9b65], 
PUP.Optional.SweetPacks, HKLM\SOFTWARE\CLASSES\INTERFACE\{EEE6C359-6118-11DC-9C72-001320C79847}, In Quarantäne, [c7950c344933ab8b4452379037cb9b65], 
PUP.Optional.SweetPacks, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{EEE6C358-6118-11DC-9C72-001320C79847}, In Quarantäne, [c7950c344933ab8b4452379037cb9b65], 
PUP.Optional.SweetPacks, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{EEE6C359-6118-11DC-9C72-001320C79847}, In Quarantäne, [c7950c344933ab8b4452379037cb9b65], 
PUP.Optional.SweetPacks, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{EEE6C35E-6118-11DC-9C72-001320C79847}, In Quarantäne, [c7950c344933ab8b4452379037cb9b65], 
PUP.Optional.SweetPacks, HKLM\SOFTWARE\CLASSES\SWEETIE.IEToolbar.1, In Quarantäne, [c7950c344933ab8b4452379037cb9b65], 
PUP.Optional.SweetPacks, HKLM\SOFTWARE\CLASSES\SWEETIE.IEToolbar, In Quarantäne, [c7950c344933ab8b4452379037cb9b65], 
PUP.Optional.SweetPacks, HKLM\SOFTWARE\WOW6432NODE\CLASSES\SWEETIE.IEToolbar, In Quarantäne, [c7950c344933ab8b4452379037cb9b65], 
PUP.Optional.SweetPacks, HKLM\SOFTWARE\WOW6432NODE\CLASSES\SWEETIE.IEToolbar.1, In Quarantäne, [c7950c344933ab8b4452379037cb9b65], 
PUP.Optional.SweetPacks, HKU\S-1-5-21-3717476656-758687553-1952641011-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{EEE6C35B-6118-11DC-9C72-001320C79847}, Löschen bei Neustart, [c7950c344933ab8b4452379037cb9b65], 
PUP.Optional.SweetPacks, HKU\S-1-5-21-3717476656-758687553-1952641011-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{EEE6C35B-6118-11DC-9C72-001320C79847}, Löschen bei Neustart, [c7950c344933ab8b4452379037cb9b65], 
PUP.Optional.SweetPacks, HKLM\SOFTWARE\CLASSES\Toolbar3.SWEETIE.1, In Quarantäne, [c7950c344933ab8b4452379037cb9b65], 
PUP.Optional.SweetPacks, HKLM\SOFTWARE\CLASSES\Toolbar3.SWEETIE, In Quarantäne, [c7950c344933ab8b4452379037cb9b65], 
PUP.Optional.SweetPacks, HKLM\SOFTWARE\WOW6432NODE\CLASSES\Toolbar3.SWEETIE, In Quarantäne, [c7950c344933ab8b4452379037cb9b65], 
PUP.Optional.SweetPacks, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{EEE6C35C-6118-11DC-9C72-001320C79847}, In Quarantäne, [c7950c344933ab8b4452379037cb9b65], 
PUP.Optional.SweetPacks, HKLM\SOFTWARE\WOW6432NODE\CLASSES\Toolbar3.SWEETIE.1, In Quarantäne, [c7950c344933ab8b4452379037cb9b65], 
PUP.Optional.SweetPacks, HKU\S-1-5-21-3717476656-758687553-1952641011-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{EEE6C35C-6118-11DC-9C72-001320C79847}, Löschen bei Neustart, [c7950c344933ab8b4452379037cb9b65], 
PUP.Optional.SweetPacks, HKU\S-1-5-21-3717476656-758687553-1952641011-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{EEE6C35C-6118-11DC-9C72-001320C79847}, Löschen bei Neustart, [c7950c344933ab8b4452379037cb9b65], 
PUP.Optional.FrostwireTB.A, HKU\S-1-5-21-3717476656-758687553-1952641011-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{D4027C7F-154A-4066-A1AD-4243D8127440}, Löschen bei Neustart, [df7d1d23790374c27e1eb9447f8333cd], 
PUP.Optional.SweetIM.A, HKU\S-1-5-21-3717476656-758687553-1952641011-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{DEDAF650-12B8-48F5-A843-BBA100716106}, Löschen bei Neustart, [3c200f31166646f05d5cfccb8181bc44], 
PUP.Optional.SupTab.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}, In Quarantäne, [37256dd39ddf59dd390a7e47fc06669a], 
PUP.Optional.SupTab.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\PREAPPROVED\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}, In Quarantäne, [37256dd39ddf59dd390a7e47fc06669a], 
PUP.Optional.Blabbers, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\BrowserCompanion, In Quarantäne, [5dfff050463689ad8bed9bc07a8ac838], 
PUP.Optional.SweetIM.A, HKLM\SOFTWARE\CLASSES\SweetIM_URLSearchHook.ToolbarURLSearchHook, In Quarantäne, [9ebe0c344d2ffe382b2d237530d47987], 
PUP.Optional.SweetIM.A, HKLM\SOFTWARE\CLASSES\SweetIM_URLSearchHook.ToolbarURLSearchHook.1, In Quarantäne, [b6a62b1594e86ec8cb8d593f7a8aef11], 
PUP.Optional.Blabbers, HKLM\SOFTWARE\CLASSES\PROTOCOLS\HANDLER\BASE64, In Quarantäne, [302c1828c4b8e5519bda75e601038977], 
PUP.Optional.Blabbers, HKLM\SOFTWARE\CLASSES\PROTOCOLS\HANDLER\CHROME, In Quarantäne, [ec7070d05725ff37f77facafe61e728e], 
PUP.Optional.Blabbers, HKLM\SOFTWARE\CLASSES\PROTOCOLS\HANDLER\PROX, In Quarantäne, [510b4ff1512bcd6970079dbe90748977], 
PUP.Optional.CrossRider.A, HKLM\SOFTWARE\INSTALLEDBROWSEREXTENSIONS\30935, In Quarantäne, [500c30104636d5611465660a45bec13f], 
PUP.Optional.CrossRider.A, HKLM\SOFTWARE\INSTALLEDBROWSEREXTENSIONS\3874, In Quarantäne, [b3a94ef227556ec8dd9c76fad2318080], 
PUP.Optional.Babylon.A, HKLM\SOFTWARE\WOW6432NODE\babylontoolbar, In Quarantäne, [d18b28181567d75f9dcd771dd92b1ae6], 
PUP.Optional.DataMangr.A, HKLM\SOFTWARE\WOW6432NODE\DataMngr, In Quarantäne, [1448aa969ede3ff733f2ed73cc37ef11], 
PUP.Optional.MyStartSearch.A, HKLM\SOFTWARE\WOW6432NODE\mystartsearchSoftware, In Quarantäne, [c795d8689fdd81b50a21db646b9847b9], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\RadioRage_4j, In Quarantäne, [6defb58b8defda5c4d18353232d1837d], 
PUP.Optional.WPM.A, HKLM\SOFTWARE\WOW6432NODE\supWindowsMangerProtect, In Quarantäne, [b8a4c7796c10b383d800ddd5937121df], 
PUP.Optional.TornTV.A, HKLM\SOFTWARE\WOW6432NODE\TornPlusTV_version1.11, In Quarantäne, [9ebeaf91c0bc0d294d1fbd813fc4b54b], 
PUP.Optional.TornTV.A, HKLM\SOFTWARE\WOW6432NODE\TornPlusTV_version1.11-nv, In Quarantäne, [5a021927720a9e982b413e0051b2c53b], 
PUP.Optional.CrossRider.A, HKLM\SOFTWARE\WOW6432NODE\TotalPlusHD-3.1V25.11, In Quarantäne, [0755a49c5e1e7fb721614301907332ce], 
PUP.Optional.CrossRider.A, HKLM\SOFTWARE\WOW6432NODE\TotalPlusHD-3.1V25.11-nv, In Quarantäne, [a7b5013f4636eb4b790952f23fc439c7], 
PUP.Optional.SweetIM.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\SweetIM_URLSearchHook.ToolbarURLSearchHook, In Quarantäne, [520a6fd17804b77f4711b4e432d2b54b], 
PUP.Optional.SweetIM.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\SweetIM_URLSearchHook.ToolbarURLSearchHook.1, In Quarantäne, [1448b88891ebc6700e4a5345887c2cd4], 
PUP.Optional.Blabbers, HKLM\SOFTWARE\WOW6432NODE\CLASSES\PROTOCOLS\HANDLER\BASE64, In Quarantäne, [66f666da057764d2d89daead1be916ea], 
PUP.Optional.Blabbers, HKLM\SOFTWARE\WOW6432NODE\CLASSES\PROTOCOLS\HANDLER\CHROME, In Quarantäne, [6bf118289ce0082e3a3c2635877d7888], 
PUP.Optional.Blabbers, HKLM\SOFTWARE\WOW6432NODE\CLASSES\PROTOCOLS\HANDLER\PROX, In Quarantäne, [03595fe11b61112515628dceef15cd33], 
PUP.Optional.GlobalUpdate.T, HKLM\SOFTWARE\WOW6432NODE\GLOBALUPDATE\UPDATE, In Quarantäne, [213baa96dca0b284fc9071e4f90ab14f], 
PUP.Optional.SweetIM.A, HKLM\SOFTWARE\WOW6432NODE\GOOGLE\CHROME\EXTENSIONS\jcdgjdiieiljkfkdcloehkohchhpekkn, In Quarantäne, [96c698a88cf053e39292ce8dca3904fc], 
PUP.Optional.CrossRider.A, HKLM\SOFTWARE\WOW6432NODE\INSTALLEDBROWSEREXTENSIONS\30935, In Quarantäne, [8dcfe15ff488999ddf9af57b43c0a957], 
PUP.Optional.CrossRider.A, HKLM\SOFTWARE\WOW6432NODE\INSTALLEDBROWSEREXTENSIONS\3874, In Quarantäne, [fa623e02611b50e6a3d6cea2c83b01ff], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\MOZILLAPLUGINS\@RadioRage_4j.com/Plugin, In Quarantäne, [3923f24eacd0310514504720a65d956b], 
PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\WOW6432NODE\MOZILLAPLUGINS\@staging.google.com/globalUpdate Update;version=10, In Quarantäne, [b1ab49f7166663d3617cf0c564a0f10f], 
PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\WOW6432NODE\MOZILLAPLUGINS\@staging.google.com/globalUpdate Update;version=4, In Quarantäne, [da829fa1de9e7bbb22bc8d282bd9cc34], 
PUP.Optional.SweetIM.A, HKLM\SOFTWARE\WOW6432NODE\SWEETIM, In Quarantäne, [392380c0fb818aac0dbdbed53bc9ff01], 
PUP.Optional.WindowsMangerProtect.A, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\EVENTLOG\APPLICATION\WindowsMangerProtect, In Quarantäne, [f76598a890ecac8a2f25053dbe45fb05], 
PUP.Optional.TornTV.A, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\TornPlusTV_version1.11-nv, Löschen bei Neustart, [e4780838b9c36dc9096451ed2fd49c64], 
PUP.Optional.TornTV.A, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\TornTv Downloader, Löschen bei Neustart, [1844122e5e1ee551e301fe4039ca9a66], 
PUP.Optional.CrossRider.A, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\TotalPlusHD-3.1V25.11-nv, Löschen bei Neustart, [8ece50f02f4de94d354eae9656ad1fe1], 
PUP.Optional.TornTV.A, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\APPDATALOW\SOFTWARE\TornPlusTV_version1.11, Löschen bei Neustart, [93c9aa967507ff375f0f7ec05ea52fd1], 
PUP.Optional.CrossRider.A, HKU\S-1-5-18-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\APPDATALOW\SOFTWARE\TotalPlusHD-3.1V25.11, Löschen bei Neustart, [b0accc74aad22c0af2927ec6f60d55ab], 
PUP.Optional.MindSpark.A, HKU\S-1-5-21-3717476656-758687553-1952641011-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\APPDATALOW\SOFTWARE\RadioRage_4j, Löschen bei Neustart, [84d875cb5e1e90a64b97abb64db6fc04], 
PUP.Optional.1ClickDownload.A, HKU\S-1-5-21-3717476656-758687553-1952641011-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\1ClickDownload, Löschen bei Neustart, [74e8bd830676bc7af53cd1c302023bc5], 
PUP.Optional.DataMngr.A, HKU\S-1-5-21-3717476656-758687553-1952641011-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\DataMngr, Löschen bei Neustart, [19437bc5027a77bf2b93137f6e96fa06], 
PUP.Optional.DataMngr.A, HKU\S-1-5-21-3717476656-758687553-1952641011-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\DataMngr_Toolbar, Löschen bei Neustart, [24381a26c0bc9d992598177b41c3ed13], 
PUP.Optional.Delta.A, HKU\S-1-5-21-3717476656-758687553-1952641011-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\delta LTD, Löschen bei Neustart, [510bb38d4e2e26108be0abe9788c5ba5], 
PUP.Optional.MindSpark.A, HKU\S-1-5-21-3717476656-758687553-1952641011-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\RadioRage_4j, Löschen bei Neustart, [73e90d33de9efd397fe71255689b1ee2], 
PUP.Optional.WebSearches.A, HKU\S-1-5-21-3717476656-758687553-1952641011-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\SupHpUISoft, Löschen bei Neustart, [97c58fb1ec90cf67b4441c32f40fd729], 
PUP.Optional.TornTV.A, HKU\S-1-5-21-3717476656-758687553-1952641011-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\TornPlusTV_version1.11-nv, Löschen bei Neustart, [26368ab6f28a33034a23b78741c219e7], 
PUP.Optional.TornTV.A, HKU\S-1-5-21-3717476656-758687553-1952641011-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\TornTv Downloader, Löschen bei Neustart, [72ea6ed2b2cadf5705df2e1042c19868], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3717476656-758687553-1952641011-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\TotalPlusHD-3.1V25.11-nv, Löschen bei Neustart, [3c20360ae19b53e3a8db0c3858abe51b], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3717476656-758687553-1952641011-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\APPDATALOW\SOFTWARE\Crossrider, Löschen bei Neustart, [f56755ebf98352e4ad6c8225db29e818], 
PUP.Optional.MindSpark.A, HKU\S-1-5-21-3717476656-758687553-1952641011-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\APPDATALOW\SOFTWARE\RadioRage_4j, Löschen bei Neustart, [24383b05e29a270fb2304120927148b8], 
PUP.Optional.TornTV.A, HKU\S-1-5-21-3717476656-758687553-1952641011-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\APPDATALOW\SOFTWARE\TornPlusTV_version1.11, Löschen bei Neustart, [fc60d16f6c10c274bdb185b97f845aa6], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3717476656-758687553-1952641011-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\APPDATALOW\SOFTWARE\TotalPlusHD-3.1V25.11, Löschen bei Neustart, [6deff54b6c10fb3b2f551e26f0137d83], 
PUP.Optional.Babylon.A, HKU\S-1-5-21-3717476656-758687553-1952641011-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\BABSOLUTION\Updater, Löschen bei Neustart, [04585be5e49832047f429ef52bd96a96], 
PUP.Optional.Delta.A, HKU\S-1-5-21-3717476656-758687553-1952641011-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\DELTA\DELTA, Löschen bei Neustart, [5507b68abcc0d066f26db1e0be46d828], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3717476656-758687553-1952641011-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\INSTALLEDBROWSEREXTENSIONS\30935, Löschen bei Neustart, [322a1e22f3899f976fedd4757c8731cf], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3717476656-758687553-1952641011-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\INSTALLEDBROWSEREXTENSIONS\3874, Löschen bei Neustart, [f369261aeb91979fa0bc381141c222de], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3717476656-758687553-1952641011-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\INSTALLEDBROWSEREXTENSIONS\HDPlus-3.1TotalV25.11, Löschen bei Neustart, [a4b881bf0e6e4de97444c8752ad933cd], 
PUP.Optional.CrossRider.A, HKU\S-1-5-21-3717476656-758687553-1952641011-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\INSTALLEDBROWSEREXTENSIONS\Qwerty, Löschen bei Neustart, [0d4f320eacd060d66cbf75c9956e59a7], 
PUP.Optional.BProtector.A, HKU\S-1-5-21-3717476656-758687553-1952641011-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\bProtectSettings, Löschen bei Neustart, [3d1fdd63304cc274a26463335da7a957], 
PUP.Optional.TidyNetwork.A, HKU\S-1-5-21-3717476656-758687553-1952641011-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MOZILLAPLUGINS\@tnt2ghost.com/Plugin, Löschen bei Neustart, [ec701c24ceae92a493e5a5d7ad5648b8], 
PUP.Optional.TidyNetwork.A, HKU\S-1-5-21-3717476656-758687553-1952641011-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MOZILLAPLUGINS\@tnt2npapi.com/Plugin, Löschen bei Neustart, [eb7147f90c700f27986018633fc4ff01], 
PUP.Optional.FastStart.A, HKU\S-1-5-21-3717476656-758687553-1952641011-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MOZILLA\EXTENDS, Löschen bei Neustart, [2834360a7b01ab8b5501e5653fc4ab55], 
PUP.Optional.Softonic.A, HKU\S-1-5-21-3717476656-758687553-1952641011-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\SOFTONIC\Universal Downloader, Löschen bei Neustart, [d884350b2359e94dbf3849228e75629e], 
PUP.Optional.SweetIM.A, HKU\S-1-5-21-3717476656-758687553-1952641011-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\SWEETIM, Löschen bei Neustart, [065687b9ceae40f60fbabdd6ef15a25e], 
PUP.Optional.SweetIM.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{EEE6C35D-6118-11DC-9C72-001320C79847}, In Quarantäne, [57052020126aab8b015ebb53976c54ac], 
PUP.Optional.SweetIM.A, HKLM\SOFTWARE\CLASSES\TYPELIB\{EEE6C35F-6118-11DC-9C72-001320C79847}, In Quarantäne, [57052020126aab8b015ebb53976c54ac], 
PUP.Optional.SweetIM.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{EEE6C35A-6118-11DC-9C72-001320C79847}, In Quarantäne, [57052020126aab8b015ebb53976c54ac], 
PUP.Optional.SweetIM.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{EEE6C35A-6118-11DC-9C72-001320C79847}, In Quarantäne, [57052020126aab8b015ebb53976c54ac], 
PUP.Optional.SweetIM.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{EEE6C35F-6118-11DC-9C72-001320C79847}, In Quarantäne, [57052020126aab8b015ebb53976c54ac], 
PUP.Optional.TidyNetwork.A, HKU\S-1-5-21-3717476656-758687553-1952641011-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\{86AB995A-0AB3-41C1-9DF2-12055B7F9703}, Löschen bei Neustart, [61fbb888b8c4350168634cc39e658b75], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{ecef0d95-32fa-48d3-8a2d-d6453b5b7361}, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\TYPELIB\{4a50e810-71eb-43a8-a665-19ed8ccd1630}, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{3C8E293A-99C8-45E1-93A3-77DAB6BB7928}, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{6E1CC883-54EB-47D3-96BC-B586CB8C2BD9}, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{FA7B5E21-57B6-4527-8863-6221854EDAA6}, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{3C8E293A-99C8-45E1-93A3-77DAB6BB7928}, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{6E1CC883-54EB-47D3-96BC-B586CB8C2BD9}, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{FA7B5E21-57B6-4527-8863-6221854EDAA6}, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{4a50e810-71eb-43a8-a665-19ed8ccd1630}, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{7e7abf2a-8c44-4562-895d-dbca3cddd1a9}, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\RadioRage_4j.DynamicBarButton.1, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\RadioRage_4j.DynamicBarButton, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\RadioRage_4j.DynamicBarButton, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\RadioRage_4j.DynamicBarButton.1, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{e23760be-23a3-4cef-9304-66af079f53db}, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\TYPELIB\{597494da-c59f-4edf-b2d1-ce137e2db9e4}, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{516434A0-985D-4312-843C-C92B3E19FC2D}, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{AC73709C-65EF-462E-A665-D893C2655BA3}, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{516434A0-985D-4312-843C-C92B3E19FC2D}, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{AC73709C-65EF-462E-A665-D893C2655BA3}, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{597494da-c59f-4edf-b2d1-ce137e2db9e4}, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\RadioRage_4j.FeedManager.1, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\RadioRage_4j.FeedManager, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\RadioRage_4j.FeedManager, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\RadioRage_4j.FeedManager.1, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{581C7D7D-F809-4E03-A631-74C069D5F04A}, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\RadioRage_4j.HTMLMenu.1, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\RadioRage_4j.HTMLMenu, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\RadioRage_4j.HTMLMenu, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\RadioRage_4j.HTMLMenu.1, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\PREAPPROVED\{581C7D7D-F809-4E03-A631-74C069D5F04A}, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{d740ad89-baf4-47d5-9b5e-343d30f07a7a}, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\TYPELIB\{0978c5fa-83c0-4118-a54f-99dacceecb8c}, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{2FDB59A0-4024-4CED-94CF-B01E217DE4E5}, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{EE54BA06-C150-4BF3-B3F3-D156767FBA12}, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{2FDB59A0-4024-4CED-94CF-B01E217DE4E5}, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{EE54BA06-C150-4BF3-B3F3-D156767FBA12}, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{0978c5fa-83c0-4118-a54f-99dacceecb8c}, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{f69fe1be-09c3-460c-ac89-8ccd9d3df1cc}, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\RadioRage_4j.MultipleButton.1, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\RadioRage_4j.MultipleButton, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\RadioRage_4j.MultipleButton, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\RadioRage_4j.MultipleButton.1, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{434fa5e9-253e-4bd0-adb6-7ce4cea114ca}, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\TYPELIB\{9e18e695-c9af-4369-8cc3-93141c2928af}, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{057DDEC7-1C8A-4C24-A896-92485CC45459}, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{A661D4DC-4BD8-48FC-964B-A24AB8157DE6}, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{C8125602-D3FF-4C38-91EE-F1A66439F5AA}, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{057DDEC7-1C8A-4C24-A896-92485CC45459}, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{A661D4DC-4BD8-48FC-964B-A24AB8157DE6}, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{C8125602-D3FF-4C38-91EE-F1A66439F5AA}, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{9e18e695-c9af-4369-8cc3-93141c2928af}, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\RadioRage_4j.XMLSessionPlugin.1, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\RadioRage_4j.XMLSessionPlugin, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\RadioRage_4j.XMLSessionPlugin, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\RadioRage_4j.XMLSessionPlugin.1, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\PREAPPROVED\{434FA5E9-253E-4BD0-ADB6-7CE4CEA114CA}, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{00a2b7c6-7487-4b99-9f6c-1fdf57fe130b}, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\RadioRage_4j.Radio.1, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\RadioRage_4j.Radio, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\RadioRage_4j.Radio, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\RadioRage_4j.Radio.1, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{dfeb941c-8b58-4899-97c3-88fe394e1285}, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\TYPELIB\{1ed65be2-ae84-46cb-8ea6-1c2b86adf768}, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{B6395E0E-3DB2-40F8-94D8-DA605C52BCA5}, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{B6395E0E-3DB2-40F8-94D8-DA605C52BCA5}, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{1ed65be2-ae84-46cb-8ea6-1c2b86adf768}, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\RadioRage_4j.RadioSettings.1, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\RadioRage_4j.RadioSettings, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\RadioRage_4j.RadioSettings, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\RadioRage_4j.RadioSettings.1, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{11d4b723-18ca-48c6-ba13-965488f19a70}, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\RadioRage_4j.ScriptButton.1, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\RadioRage_4j.ScriptButton, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\RadioRage_4j.ScriptButton, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\RadioRage_4j.ScriptButton.1, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{53855564-cf81-410c-9c1c-321c7e067816}, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\TYPELIB\{1fdad7f1-b87c-4e79-9150-de235ff80b3a}, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{30AE6757-B1D4-4CD5-8FEC-A9B6A545EF64}, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{367DFE4B-7078-41FE-B1DD-6A6318C7DFF9}, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{A126B97A-C84F-40EE-B9D0-1276892A879E}, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{D4C6D911-00C3-4B4C-A13B-F1DC381CB8E9}, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{30AE6757-B1D4-4CD5-8FEC-A9B6A545EF64}, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{367DFE4B-7078-41FE-B1DD-6A6318C7DFF9}, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{A126B97A-C84F-40EE-B9D0-1276892A879E}, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{D4C6D911-00C3-4B4C-A13B-F1DC381CB8E9}, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{1fdad7f1-b87c-4e79-9150-de235ff80b3a}, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{53855564-CF81-410C-9C1C-321C7E067816}, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{e6ad866f-ea06-476a-8432-ed943683fab1}, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{f706e19b-6c14-4272-ba98-2f16636a898d}, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\RadioRage_4j.PseudoTransparentPlugin.1, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\RadioRage_4j.PseudoTransparentPlugin, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\RadioRage_4j.PseudoTransparentPlugin, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\RadioRage_4j.PseudoTransparentPlugin.1, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\PREAPPROVED\{F706E19B-6C14-4272-BA98-2F16636A898D}, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{60b34f47-3fdd-46f8-ab6c-aaabea55c3d6}, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\TYPELIB\{569a9014-22e3-4f11-a243-ca4e3d95aded}, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{38C1B7DA-9876-4DEA-B740-19C4F57CE8E8}, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{65267FD2-5B4E-48F7-A918-8E2697AEBB39}, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{38C1B7DA-9876-4DEA-B740-19C4F57CE8E8}, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{65267FD2-5B4E-48F7-A918-8E2697AEBB39}, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{569a9014-22e3-4f11-a243-ca4e3d95aded}, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\RadioRage_4j.ThirdPartyInstaller.1, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\RadioRage_4j.ThirdPartyInstaller, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\RadioRage_4j.ThirdPartyInstaller, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\RadioRage_4j.ThirdPartyInstaller.1, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\PREAPPROVED\{60B34F47-3FDD-46F8-AB6C-AAABEA55C3D6}, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{ca41198f-c3c5-47d8-99e1-1ab199e81723}, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\RadioRage_4j.UrlAlertButton.1, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\RadioRage_4j.UrlAlertButton, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\RadioRage_4j.UrlAlertButton, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\RadioRage_4j.UrlAlertButton.1, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{68122f44-3a4a-4edb-b28f-0c0e07f89bd0}, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\TYPELIB\{4dd9eb5d-8657-4856-a804-535841b09d73}, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{A93A372A-0AD5-4939-A228-7F4152124EA6}, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{B47151A4-CF8B-4481-A41A-BCF127431C01}, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{A93A372A-0AD5-4939-A228-7F4152124EA6}, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{B47151A4-CF8B-4481-A41A-BCF127431C01}, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{4dd9eb5d-8657-4856-a804-535841b09d73}, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\RadioRage_4j.HTMLPanel.1, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\RadioRage_4j.HTMLPanel, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\RadioRage_4j.HTMLPanel, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\RadioRage_4j.HTMLPanel.1, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\PREAPPROVED\{68122F44-3A4A-4EDB-B28F-0C0E07F89BD0}, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\GOOGLEUPDATE.EXE, In Quarantäne, [7ae2d16fa9d3bb7b991e41e6e51e15eb], 
PUP.Optional.GlobalUpdate.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS NT\CURRENTVERSION\IMAGE FILE EXECUTION OPTIONS\GOOGLEUPDATE.EXE, In Quarantäne, [7ae2d16fa9d3bb7b991e41e6e51e15eb], 

Registrierungswerte: 21
PUP.Optional.SweetIM, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN|SweetIM, C:\Program Files (x86)\SweetIM\Messenger\SweetIM.exe, In Quarantäne, [62fa51ef81fbc670d1a03349b64fa55b]
PUP.Optional.SweetIM, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN|Sweetpacks Communicator, C:\Program Files (x86)\SweetIM\Communicator\SweetPacksUpdateManager.exe, In Quarantäne, [86d641ff720a5dd90b66166661a48c74]
PUP.Optional.SweetPacks, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\TOOLBAR|{EEE6C35B-6118-11DC-9C72-001320C79847}, In Quarantäne, [c7950c344933ab8b4452379037cb9b65], 
PUP.Optional.Blabbers, HKLM\SOFTWARE\CLASSES\PROTOCOLS\HANDLER\BASE64|CLSID, {5ACE96C0-C70A-4A4D-AF14-2E7B869345E1}, In Quarantäne, [302c1828c4b8e5519bda75e601038977]
PUP.Optional.Blabbers, HKLM\SOFTWARE\CLASSES\PROTOCOLS\HANDLER\CHROME|CLSID, {5ACE96C0-C70A-4A4D-AF14-2E7B869345E1}, In Quarantäne, [ec7070d05725ff37f77facafe61e728e]
PUP.Optional.Blabbers, HKLM\SOFTWARE\CLASSES\PROTOCOLS\HANDLER\PROX|CLSID, {5ACE96C0-C70A-4A4D-AF14-2E7B869345E1}, In Quarantäne, [510b4ff1512bcd6970079dbe90748977]
PUP.Optional.MindSpark, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN|RadioRage Home Page Guard 64 bit, "C:\PROGRA~2\RADIOR~1\bar\1.bin\AppIntegrator64.exe", In Quarantäne, [2537e45cfc8015214e5eccd317ed42be]
PUP.Optional.Blabbers, HKLM\SOFTWARE\WOW6432NODE\CLASSES\PROTOCOLS\HANDLER\BASE64|CLSID, {5ACE96C0-C70A-4A4D-AF14-2E7B869345E1}, In Quarantäne, [66f666da057764d2d89daead1be916ea]
PUP.Optional.Blabbers, HKLM\SOFTWARE\WOW6432NODE\CLASSES\PROTOCOLS\HANDLER\CHROME|CLSID, {5ACE96C0-C70A-4A4D-AF14-2E7B869345E1}, In Quarantäne, [6bf118289ce0082e3a3c2635877d7888]
PUP.Optional.Blabbers, HKLM\SOFTWARE\WOW6432NODE\CLASSES\PROTOCOLS\HANDLER\PROX|CLSID, {5ACE96C0-C70A-4A4D-AF14-2E7B869345E1}, In Quarantäne, [03595fe11b61112515628dceef15cd33]
PUP.Optional.GlobalUpdate.T, HKLM\SOFTWARE\WOW6432NODE\GLOBALUPDATE\UPDATE|path, C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe, In Quarantäne, [213baa96dca0b284fc9071e4f90ab14f]
PUP.Optional.MindSpark, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN|RadioRage Search Scope Monitor, "C:\PROGRA~2\RADIOR~1\bar\1.bin\4jsrchmn.exe" /m=2 /w /h, In Quarantäne, [89d3f14fc0bc3cfa0adc575c1be923dd]
PUP.Optional.FastStart.A, HKLM\SOFTWARE\WOW6432NODE\MOZILLA\FIREFOX\EXTENSIONS|faststartff@gmail.com, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\faststartff@gmail.com, In Quarantäne, [93c978c8fc8023137d74ebc651b38977]
PUP.Optional.SweetIM.A, HKLM\SOFTWARE\WOW6432NODE\SWEETIM|simapp_id, {F420EAB5-225A-492A-BEE0-438357A2750E}, In Quarantäne, [392380c0fb818aac0dbdbed53bc9ff01]
PUP.Optional.Delta.A, HKU\S-1-5-21-3717476656-758687553-1952641011-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\DELTA\DELTA|tlbrSrchUrl, Löschen bei Neustart, [5507b68abcc0d066f26db1e0be46d828], 
PUP.BProtector, HKU\S-1-5-21-3717476656-758687553-1952641011-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|bProtector Start Page, Löschen bei Neustart, [035960e09ede999d219ef999e91b827e], 
PUP.Optional.TornTV.A, HKU\S-1-5-21-3717476656-758687553-1952641011-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN|TornTv Downloader, C:\Users\WK\AppData\Roaming\TornTV.com\Torntv Downloader.exe /c=startup, Löschen bei Neustart, [a6b6e45ccab23bfb994cb08e00036a96]
PUP.Optional.FastStart.A, HKU\S-1-5-21-3717476656-758687553-1952641011-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MOZILLA\EXTENDS|appid, faststartff@gmail.com, Löschen bei Neustart, [2834360a7b01ab8b5501e5653fc4ab55]
PUP.Optional.SweetIM.A, HKU\S-1-5-21-3717476656-758687553-1952641011-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\SWEETIM|simapp_id, {F420EAB5-225A-492A-BEE0-438357A2750E}, Löschen bei Neustart, [065687b9ceae40f60fbabdd6ef15a25e]
PUP.Optional.SweetIM.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\SHAREDDLLS|C:\PROGRAM FILES (X86)\SWEETIM\TOOLBARS\INTERNET EXPLORER\MGHELPERAPP.EXE, 1, In Quarantäne, [57052020126aab8b015ebb53976c54ac]
PUP.Optional.SweetIM.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\SHAREDDLLS|C:\PROGRAM FILES (X86)\SWEETIM\TOOLBARS\INTERNET EXPLORER\MGTOOLBARPROXY.DLL, 1, In Quarantäne, [57052020126aab8b015ebb53976c54ac]

Registrierungsdaten: 3
PUP.Optional.Qone8, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES|DefaultScope, {33BB0A4E-99AF-4226-BDF6-49120163DE86}, Gut: ({0633EE93-D776-472f-A0FF-E1416B8B2E3A}), Schlecht: ({33BB0A4E-99AF-4226-BDF6-49120163DE86}),Ersetzt,[ed6fe25e77051125f3f151054fb69967]
PUP.Optional.Qone8, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES|DefaultScope, {33BB0A4E-99AF-4226-BDF6-49120163DE86}, Gut: ({0633EE93-D776-472f-A0FF-E1416B8B2E3A}), Schlecht: ({33BB0A4E-99AF-4226-BDF6-49120163DE86}),Ersetzt,[ca92b68a2f4db87e1bc9243220e534cc]
PUP.Optional.MyStartSearch.A, HKU\S-1-5-21-3717476656-758687553-1952641011-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Default_Page_URL, hxxp://www.mystartsearch.com/?type=hp&ts=1416935763&from=ild&uid=WDCXWD3200BPVT-80JJ5T0_WD-WXK1E81YKEH3YKEH3, Gut: (www.google.com), Schlecht: (hxxp://www.mystartsearch.com/?type=hp&ts=1416935763&from=ild&uid=WDCXWD3200BPVT-80JJ5T0_WD-WXK1E81YKEH3YKEH3),Löschen bei Neustart,[fd5f61df6d0fc96d5eac212a55b0956b]

Ordner: 122
PUP.Optional.Blabbers, C:\Program Files (x86)\BrowserCompanion, In Quarantäne, [5dfff050463689ad8bed9bc07a8ac838], 
PUP.Optional.Delta.A, C:\Users\WK\AppData\Roaming\Delta, In Quarantäne, [dc8028187705e155b7a92d640ef6916f], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.OpenCandy, C:\Users\WK\AppData\Roaming\OpenCandy, In Quarantäne, [59034ef2f28a9b9b44a5b15ce71cc43c], 
PUP.Optional.OpenCandy, C:\Users\WK\AppData\Roaming\OpenCandy\EB25601863D047409F07028F4A84F8BB, In Quarantäne, [59034ef2f28a9b9b44a5b15ce71cc43c], 
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars, In Quarantäne, [57052020126aab8b015ebb53976c54ac], 
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer, In Quarantäne, [57052020126aab8b015ebb53976c54ac], 
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\conf, In Quarantäne, [57052020126aab8b015ebb53976c54ac], 
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\Microsoft.VC90.CRT, In Quarantäne, [57052020126aab8b015ebb53976c54ac], 
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources, In Quarantäne, [57052020126aab8b015ebb53976c54ac], 
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\blue, In Quarantäne, [57052020126aab8b015ebb53976c54ac], 
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\green, In Quarantäne, [57052020126aab8b015ebb53976c54ac], 
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\orange, In Quarantäne, [57052020126aab8b015ebb53976c54ac], 
PUP.Optional.TidyNetwork.A, C:\Users\WK\AppData\Local\TNT2, In Quarantäne, [61fbb888b8c4350168634cc39e658b75], 
PUP.Optional.TidyNetwork.A, C:\Users\WK\AppData\Local\TNT2\2.0.0.1676, In Quarantäne, [61fbb888b8c4350168634cc39e658b75], 
PUP.Optional.TidyNetwork.A, C:\Users\WK\AppData\Local\TNT2\Common, In Quarantäne, [61fbb888b8c4350168634cc39e658b75], 
PUP.Optional.TidyNetwork.A, C:\Users\WK\AppData\Local\TNT2\Profiles, In Quarantäne, [61fbb888b8c4350168634cc39e658b75], 
PUP.Optional.TidyNetwork.A, C:\Users\WK\AppData\Local\TNT2\Profiles\10557, In Quarantäne, [61fbb888b8c4350168634cc39e658b75], 
PUP.Optional.Delta.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\ffxtlbr@delta.com, In Quarantäne, [0458e15f85f7cf67fc6661b2917216ea], 
PUP.Optional.Delta.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\ffxtlbr@delta.com\components, In Quarantäne, [0458e15f85f7cf67fc6661b2917216ea], 
PUP.Optional.Delta.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\ffxtlbr@delta.com\content, In Quarantäne, [0458e15f85f7cf67fc6661b2917216ea], 
PUP.Optional.Delta.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\ffxtlbr@delta.com\content\imgs, In Quarantäne, [0458e15f85f7cf67fc6661b2917216ea], 
PUP.Optional.Delta.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\ffxtlbr@delta.com\content\imgs\flgs, In Quarantäne, [0458e15f85f7cf67fc6661b2917216ea], 
PUP.Optional.Delta.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\ffxtlbr@delta.com\META-INF, In Quarantäne, [0458e15f85f7cf67fc6661b2917216ea], 
PUP.Optional.MindSpark.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\4jffxtbr@RadioRage_4j.com, In Quarantäne, [8bd177c95b21aa8c7102987f5aa9916f], 
PUP.Optional.MindSpark.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\4jffxtbr@RadioRage_4j.com\chrome, In Quarantäne, [8bd177c95b21aa8c7102987f5aa9916f], 
PUP.Optional.MindSpark.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\4jffxtbr@RadioRage_4j.com\META-INF, In Quarantäne, [8bd177c95b21aa8c7102987f5aa9916f], 
PUP.Optional.MindSpark.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\4jffxtbr@RadioRage_4j.com\plugins, In Quarantäne, [8bd177c95b21aa8c7102987f5aa9916f], 
PUP.Optional.MindSpark.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\RadioRage_4j, In Quarantäne, [194361df4f2d1125c2b42ceb956e40c0], 
PUP.Optional.MindSpark.A, C:\Program Files (x86)\RadioRage_4j, Löschen bei Neustart, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, C:\Program Files (x86)\RadioRage_4j\bar, Löschen bei Neustart, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, C:\Program Files (x86)\RadioRage_4j\bar\1.bin, Löschen bei Neustart, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, C:\Program Files (x86)\RadioRage_4j\bar\1.bin\chrome, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, C:\Program Files (x86)\RadioRage_4j\bar\1.bin\ThirdPartyInstallers, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, C:\Program Files (x86)\RadioRage_4j\bar\gen1, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, C:\Program Files (x86)\RadioRage_4j\bar\IE9Mesg, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, C:\Program Files (x86)\RadioRage_4j\bar\Message, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, C:\Program Files (x86)\RadioRage_4j\bar\Settings, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.SweetIM.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\jcdgjdiieiljkfkdcloehkohchhpekkn, In Quarantäne, [3824a29e3b41979f1e67fb29699a7d83], 
PUP.Optional.SweetIM.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\jcdgjdiieiljkfkdcloehkohchhpekkn\1.0.0.0_0, In Quarantäne, [3824a29e3b41979f1e67fb29699a7d83], 
PUP.Optional.FastStart.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\faststartff@gmail.com, In Quarantäne, [0d4f8ab6077588aea6e86bb9956ef60a], 
PUP.Optional.FastStart.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\faststartff@gmail.com\chrome, In Quarantäne, [0d4f8ab6077588aea6e86bb9956ef60a], 
PUP.Optional.FastStart.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\faststartff@gmail.com\chrome\content, In Quarantäne, [0d4f8ab6077588aea6e86bb9956ef60a], 
PUP.Optional.FastStart.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\faststartff@gmail.com\chrome\content\include, In Quarantäne, [0d4f8ab6077588aea6e86bb9956ef60a], 
PUP.Optional.FastStart.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\faststartff@gmail.com\chrome\content\include\tools, In Quarantäne, [0d4f8ab6077588aea6e86bb9956ef60a], 
PUP.Optional.FastStart.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\faststartff@gmail.com\chrome\content\js, In Quarantäne, [0d4f8ab6077588aea6e86bb9956ef60a], 
PUP.Optional.FastStart.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\faststartff@gmail.com\chrome\content\js\lib, In Quarantäne, [0d4f8ab6077588aea6e86bb9956ef60a], 
PUP.Optional.FastStart.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\faststartff@gmail.com\chrome\content\js\module, In Quarantäne, [0d4f8ab6077588aea6e86bb9956ef60a], 
PUP.Optional.FastStart.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\faststartff@gmail.com\chrome\content\js\pack, In Quarantäne, [0d4f8ab6077588aea6e86bb9956ef60a], 
PUP.Optional.FastStart.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\faststartff@gmail.com\chrome\locale, In Quarantäne, [0d4f8ab6077588aea6e86bb9956ef60a], 
PUP.Optional.FastStart.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\faststartff@gmail.com\chrome\locale\en, In Quarantäne, [0d4f8ab6077588aea6e86bb9956ef60a], 
PUP.Optional.FastStart.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\faststartff@gmail.com\chrome\locale\en-US, In Quarantäne, [0d4f8ab6077588aea6e86bb9956ef60a], 
PUP.Optional.FastStart.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\faststartff@gmail.com\chrome\locale\es, In Quarantäne, [0d4f8ab6077588aea6e86bb9956ef60a], 
PUP.Optional.FastStart.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\faststartff@gmail.com\chrome\locale\es-419, In Quarantäne, [0d4f8ab6077588aea6e86bb9956ef60a], 
PUP.Optional.FastStart.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\faststartff@gmail.com\chrome\locale\fr, In Quarantäne, [0d4f8ab6077588aea6e86bb9956ef60a], 
PUP.Optional.FastStart.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\faststartff@gmail.com\chrome\locale\fr-BE, In Quarantäne, [0d4f8ab6077588aea6e86bb9956ef60a], 
PUP.Optional.FastStart.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\faststartff@gmail.com\chrome\locale\fr-CA, In Quarantäne, [0d4f8ab6077588aea6e86bb9956ef60a], 
PUP.Optional.FastStart.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\faststartff@gmail.com\chrome\locale\fr-CH, In Quarantäne, [0d4f8ab6077588aea6e86bb9956ef60a], 
PUP.Optional.FastStart.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\faststartff@gmail.com\chrome\locale\fr-LU, In Quarantäne, [0d4f8ab6077588aea6e86bb9956ef60a], 
PUP.Optional.FastStart.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\faststartff@gmail.com\chrome\locale\it, In Quarantäne, [0d4f8ab6077588aea6e86bb9956ef60a], 
PUP.Optional.FastStart.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\faststartff@gmail.com\chrome\locale\it-CH, In Quarantäne, [0d4f8ab6077588aea6e86bb9956ef60a], 
PUP.Optional.FastStart.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\faststartff@gmail.com\chrome\locale\pl, In Quarantäne, [0d4f8ab6077588aea6e86bb9956ef60a], 
PUP.Optional.FastStart.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\faststartff@gmail.com\chrome\locale\pt-BR, In Quarantäne, [0d4f8ab6077588aea6e86bb9956ef60a], 
PUP.Optional.FastStart.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\faststartff@gmail.com\chrome\locale\ru, In Quarantäne, [0d4f8ab6077588aea6e86bb9956ef60a], 
PUP.Optional.FastStart.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\faststartff@gmail.com\chrome\locale\ru-MO, In Quarantäne, [0d4f8ab6077588aea6e86bb9956ef60a], 
PUP.Optional.FastStart.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\faststartff@gmail.com\chrome\locale\tr, In Quarantäne, [0d4f8ab6077588aea6e86bb9956ef60a], 
PUP.Optional.FastStart.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\faststartff@gmail.com\chrome\locale\vi, In Quarantäne, [0d4f8ab6077588aea6e86bb9956ef60a], 
PUP.Optional.FastStart.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\faststartff@gmail.com\chrome\locale\zh-CN, In Quarantäne, [0d4f8ab6077588aea6e86bb9956ef60a], 
PUP.Optional.FastStart.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\faststartff@gmail.com\chrome\locale\zh-TW, In Quarantäne, [0d4f8ab6077588aea6e86bb9956ef60a], 
PUP.Optional.FastStart.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\faststartff@gmail.com\chrome\skin, In Quarantäne, [0d4f8ab6077588aea6e86bb9956ef60a], 
PUP.Optional.FastStart.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\faststartff@gmail.com\defaults, In Quarantäne, [0d4f8ab6077588aea6e86bb9956ef60a], 
PUP.Optional.FastStart.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\faststartff@gmail.com\defaults\preferences, In Quarantäne, [0d4f8ab6077588aea6e86bb9956ef60a], 
PUP.Optional.FastStart.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\faststartff@gmail.com\modules, In Quarantäne, [0d4f8ab6077588aea6e86bb9956ef60a], 
PUP.Optional.WPM.A, C:\ProgramData\WindowsMangerProtect, In Quarantäne, [71eb1b250d6ff343d5f4200537ccec14], 
PUP.Optional.WPM.A, C:\ProgramData\WindowsMangerProtect\update, In Quarantäne, [71eb1b250d6ff343d5f4200537ccec14], 
PUP.Optional.GlobalUpdate.A, C:\Users\WK\AppData\Local\Temp\comh.184037, In Quarantäne, [7ae2d16fa9d3bb7b991e41e6e51e15eb], 
PUP.Optional.GlobalUpdate.A, C:\Users\WK\AppData\Local\Temp\comh.220626, In Quarantäne, [93c9fb45fb81a88e02b56eb9b251be42], 
PUP.Optional.GlobalUpdate.A, C:\Users\WK\AppData\Local\Temp\comh.402506, In Quarantäne, [7be1dd63c0bc3df940778e9926dd46ba], 
PUP.Optional.GlobalUpdate.A, C:\Users\WK\AppData\Local\Temp\comh.418946, In Quarantäne, [ff5d9da35a22d75ff3c42cfb659e58a8], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\chrome, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\chrome\content, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\chrome\content\api, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\chrome\content\core, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\defaults, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\defaults\preferences, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\extensionData, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\extensionData\plugins, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\extensionData\userCode, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\locale, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\locale\en-US, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\skin, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\chrome, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\chrome\content, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\chrome\content\api, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\chrome\content\core, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\defaults, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\defaults\preferences, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\extensionData, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\extensionData\plugins, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\extensionData\userCode, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\locale, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\locale\en-US, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\skin, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\extensionData, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\extensionData\plugins, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\extensionData\userCode, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\icons, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\icons\actions, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\js\api, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\js\lib, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\js\lib\popupResource, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\ljefoakgfhcoeobgicjgejglnpfpemgb, Löschen bei Neustart, [5a02fc44f98385b1df84aa8c7a89d729], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\databases\chrome-extension_ljefoakgfhcoeobgicjgejglnpfpemgb_0, Löschen bei Neustart, [7fddfb45502c59dd3b29cf67f60d2ed2], 
PUP.Optional.CrossRider.A, C:\Program Files (x86)\TotalPlusHD-3.1V25.11, In Quarantäne, [9ac239070d6fdd59ab1956e016ed669a], 
PUP.Optional.CrossRider.A, C:\Program Files (x86)\TornPlusTV_version1.11, In Quarantäne, [bba1d96735477eb853edfa41d52ed927],
         


Alt 26.11.2014, 21:05   #6
magnusson
 
mystartsearch entfernen - Standard

mystartsearch entfernen



Mailwarebytes Teil 2:

Code:
ATTFilter
Dateien: 1111
PUP.Optional.SweetIM, C:\Program Files (x86)\SweetIM\Messenger\mgAdaptersProxy.dll, Löschen bei Neustart, [e973cc74cfad9c9a5021c9b35aab34cc], 
PUP.Optional.SweetIM, C:\Program Files (x86)\SweetIM\Messenger\SweetIM.exe, Löschen bei Neustart, [62fa51ef81fbc670d1a03349b64fa55b], 
PUP.Optional.SweetIM, C:\Program Files (x86)\SweetIM\Messenger\mgUpdateSupport.dll, Löschen bei Neustart, [8cd0053b710bec4a8be6364653b26997], 
PUP.Optional.SweetIM, C:\Program Files (x86)\SweetIM\Messenger\mgsimcommon.dll, Löschen bei Neustart, [4d0fe8585f1ddb5bc4adf884bb4ab749], 
PUP.Optional.SweetIM, C:\Program Files (x86)\SweetIM\Messenger\mgcommon.dll, Löschen bei Neustart, [d08c7ec28fed4bebd69bdba135d0ad53], 
PUP.Optional.SweetIM, C:\Program Files (x86)\SweetIM\Messenger\mgcommunication.dll, Löschen bei Neustart, [84d84ef214685adca8c95c2049bcc53b], 
PUP.Optional.SweetIM, C:\Program Files (x86)\SweetIM\Messenger\mghooking.dll, Löschen bei Neustart, [db81b888fa8249ed1e53a9d307fe12ee], 
PUP.Optional.SweetIM, C:\Program Files (x86)\SweetIM\Messenger\mgxml_wrapper.dll, Löschen bei Neustart, [d28a281814685fd77df4ed8f7a8bf10f], 
PUP.Optional.SweetIM, C:\Program Files (x86)\SweetIM\Messenger\mgconfig.dll, Löschen bei Neustart, [c39981bfc2ba7db9f9782854e520f709], 
PUP.Optional.SweetIM, C:\Program Files (x86)\SweetIM\Communicator\SweetPacksUpdateManager.exe, Löschen bei Neustart, [86d641ff720a5dd90b66166661a48c74], 
PUP.Optional.SweetIM, C:\Program Files (x86)\SweetIM\Communicator\mgcommon.dll, Löschen bei Neustart, [70ec350b5e1eff373a37a2dabe4715eb], 
PUP.Optional.SweetIM, C:\Program Files (x86)\SweetIM\Communicator\mgxml_wrapper.dll, Löschen bei Neustart, [64f8e8587b01e056452ca2da54b16a96], 
PUP.Optional.SweetIM, C:\Program Files (x86)\SweetIM\Communicator\mgcommunication.dll, Löschen bei Neustart, [db81cb75d8a4f34372ff4834699c3dc3], 
PUP.Optional.SweetIM, C:\Program Files (x86)\SweetIM\Communicator\mgsimcommon.dll, Löschen bei Neustart, [72ea1828e498171ff77a324aa75e926e], 
PUP.Optional.AudioToAudioToolBar.A, C:\Program Files (x86)\RadioRage_4j\bar\1.bin\4jbarsvc.exe, Löschen bei Neustart, [362675cb4438181e5ba3f144dd235aa6], 
PUP.Optional.Blabbers, C:\Program Files (x86)\BrowserCompanion\jsloader.dll, In Quarantäne, [91cb8fb1abd1c0767932ce04c33f2fd1], 
PUP.Optional.FunWebProducts.A, C:\Program Files (x86)\RadioRage_4j\bar\1.bin\4jsknlcr.dll, In Quarantäne, [0a52d868ee8ed4620c787388b94902fe], 
PUP.Optional.Blabbers, C:\Program Files (x86)\BrowserCompanion\tdataprotocol.dll, In Quarantäne, [3725af9184f8a88e2c805979ba483bc5], 
PUP.Optional.MindSpark.A, C:\Program Files (x86)\RadioRage_4j\bar\1.bin\4jbar.dll, In Quarantäne, [1448d967ea921e1805155c67f70bf20e], 
PUP.Optional.Blabbers, C:\Program Files (x86)\BrowserCompanion\updatebhoWin32.dll, In Quarantäne, [3725d46c4f2db284e1c9d6fcd52dbd43], 
PUP.Optional.SweetPacks, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\mgToolbarIE.dll, In Quarantäne, [c7950c344933ab8b4452379037cb9b65], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\ALQL.exe, In Quarantäne, [ff5d1729aece023440d9f297689dc33d], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\CATRBVY.exe, In Quarantäne, [184474cc7903e74f49158ffb9e67f20e], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\RS.exe, In Quarantäne, [401c60e0ee8ef1451306e4a5dc29946c], 
PUP.Optional.Delta.A, C:\Users\WK\AppData\Roaming\OpenCandy\EB25601863D047409F07028F4A84F8BB\DeltaTB.exe, In Quarantäne, [114bac94e19b70c6aee437eb9e63c43c], 
PUP.Optional.Nova.A, C:\Program Files (x86)\AGEIA Technologies\127f6c63-901d-47bf-80b7-40692a1167c7.dll, In Quarantäne, [0656eb55fc809d992fcebb2bad5435cb], 
PUP.Optional.Nova.A, C:\Program Files (x86)\AGEIA Technologies\677ad259-a47a-42cc-bb65-bcb961a49700.dll, In Quarantäne, [65f77fc10c7070c650ad2cba9a67c63a], 
PUP.Optional.CrossRider.A, C:\Program Files (x86)\TornPlusTV_version1.11\TornPlusTV_version1.11-bg.exe, In Quarantäne, [62fab789710b4cea98c67515d72eb34d], 
PUP.Optional.CrossRider.A, C:\Program Files (x86)\TornPlusTV_version1.11\cf43921d-02df-421d-ae05-8262e53706bf-11.exe, In Quarantäne, [78e470d00b71c373a8b6fa9054b154ac], 
PUP.Optional.CrossRider.A, C:\Program Files (x86)\TornPlusTV_version1.11\cf43921d-02df-421d-ae05-8262e53706bf-2.exe, In Quarantäne, [1c40cd73651745f13826375317eea35d], 
PUP.Optional.CrossRider.A, C:\Program Files (x86)\TornPlusTV_version1.11\cf43921d-02df-421d-ae05-8262e53706bf-3.exe, In Quarantäne, [c79573cdafcd34027ee07416d0355ca4], 
PUP.Optional.CrossRider.A, C:\Program Files (x86)\TornPlusTV_version1.11\cf43921d-02df-421d-ae05-8262e53706bf-4.exe, In Quarantäne, [fc6085bb0478b38395c9533795709e62], 
PUP.Optional.CrossRider.A, C:\Program Files (x86)\TornPlusTV_version1.11\cf43921d-02df-421d-ae05-8262e53706bf-5.exe, In Quarantäne, [392356eac2ba69cd144ae5a51beaaf51], 
PUP.Optional.CrossRider.A, C:\Program Files (x86)\TornPlusTV_version1.11\cf43921d-02df-421d-ae05-8262e53706bf-64.exe, In Quarantäne, [3d1fb48c7c00e74fd48a32581aeb926e], 
PUP.Optional.CrossRider.A, C:\Program Files (x86)\TornPlusTV_version1.11\cf43921d-02df-421d-ae05-8262e53706bf-7.exe, In Quarantäne, [2438f14fe7956ec878e6474349bce11f], 
PUP.Optional.Nova.A, C:\Program Files (x86)\TornPlusTV_version1.11\efb9dbd1-a38f-4fff-b3a3-1510ff8ea703.dll, In Quarantäne, [91cbef510a7281b546b7b333f809b14f], 
PUP.Optional.CrossRider.A, C:\Program Files (x86)\TornPlusTV_version1.11\TornPlusTV_version1.11-buttonutil.exe, In Quarantäne, [db8198a8c7b58ea85e00a1e9b64f57a9], 
PUP.Optional.CrossRider.A, C:\Program Files (x86)\TornPlusTV_version1.11\TornPlusTV_version1.11-buttonutil64.exe, In Quarantäne, [eb7157e94e2eda5c7ce2d1b9ad58ea16], 
PUP.Optional.CrossRider.A, C:\Program Files (x86)\TornPlusTV_version1.11\TornPlusTV_version1.11-codedownloader.exe, In Quarantäne, [382493ad5c20dc5ad688444655b0ac54], 
PUP.Optional.Crossrider.A, C:\Program Files (x86)\TornPlusTV_version1.11\utils.exe, In Quarantäne, [9dbfce72d2aad75f106c38b3f20faf51], 
PUP.Optional.CrossRider.A, C:\Program Files (x86)\TotalPlusHD-3.1V25.11\2d374c00-0afb-44b3-95e5-4a41d9686eee-11.exe, In Quarantäne, [78e4e25ed1ab84b20910ea9f040140c0], 
PUP.Optional.CrossRider.A, C:\Program Files (x86)\TotalPlusHD-3.1V25.11\2d374c00-0afb-44b3-95e5-4a41d9686eee-2.exe, In Quarantäne, [87d582be59238fa795841970cb3a47b9], 
PUP.Optional.CrossRider.A, C:\Program Files (x86)\TotalPlusHD-3.1V25.11\2d374c00-0afb-44b3-95e5-4a41d9686eee-3.exe, In Quarantäne, [bd9f3a066616ce689b7eee9b26dfa060], 
PUP.Optional.CrossRider.A, C:\Program Files (x86)\TotalPlusHD-3.1V25.11\2d374c00-0afb-44b3-95e5-4a41d9686eee-4.exe, In Quarantäne, [5dfff749fa82c37301183f4afd081fe1], 
PUP.Optional.CrossRider.A, C:\Program Files (x86)\TotalPlusHD-3.1V25.11\2d374c00-0afb-44b3-95e5-4a41d9686eee-5.exe, In Quarantäne, [4e0e8db393e957df26f3781161a4b050], 
PUP.Optional.CrossRider.A, C:\Program Files (x86)\TotalPlusHD-3.1V25.11\2d374c00-0afb-44b3-95e5-4a41d9686eee-64.exe, In Quarantäne, [68f4f54b621a71c58e8b7b0ee42154ac], 
PUP.Optional.CrossRider.A, C:\Program Files (x86)\TotalPlusHD-3.1V25.11\2d374c00-0afb-44b3-95e5-4a41d9686eee-7.exe, In Quarantäne, [5c009ba53e3e72c40e0bd8b19f66d828], 
PUP.Optional.Nova.A, C:\Program Files (x86)\TotalPlusHD-3.1V25.11\c3687991-d9ea-410e-8d48-6b549f03fbcc.dll, In Quarantäne, [e8746dd33f3db680e31a826490712ed2], 
PUP.Optional.CrossRider.A, C:\Program Files (x86)\TotalPlusHD-3.1V25.11\TotalPlusHD-3.1V25.11-bg.exe, In Quarantäne, [e27a053b54289e98aa6f276217ee44bc], 
PUP.Optional.CrossRider.A, C:\Program Files (x86)\TotalPlusHD-3.1V25.11\TotalPlusHD-3.1V25.11-codedownloader.exe, In Quarantäne, [adaf78c853298bab6faab6d3fb0a758b], 
PUP.Optional.Crossrider.A, C:\Program Files (x86)\TotalPlusHD-3.1V25.11\utils.exe, In Quarantäne, [fc60d0702557290da3d9d813b948e020], 
PUP.Optional.Nova.A, C:\Program Files (x86)\d81cdd67-ab25-4a77-8bbe-2e3e7f283290\4d6076e5-fd92-461e-99ad-893bce0ea044.dll, In Quarantäne, [a0bc2d137dff2511877643a3e21f02fe], 
PUP.Optional.Nova.A, C:\Program Files (x86)\e743f1b9-82a4-47f6-832e-4665f9b967a8\78350a55-a582-4507-beb9-8ab43ced94f6.dll, In Quarantäne, [9dbf49f7e79589ada25b3ea87889cd33], 
PUP.Optional.BundleInstaller.A, C:\Users\WK\Downloads\Setup.exe, In Quarantäne, [e57767d980fc8da9e2c394cc14ed7888], 
PUP.Optional.SweetIM, C:\Windows\Installer\662a59.msi, In Quarantäne, [0953b58ba0dc62d430419ede33d210f0], 
PUP.Optional.SweetIM, C:\Windows\Installer\662a52.msi, In Quarantäne, [7ce051ef97e52a0cf37e1765c540a759], 
PUP.Optional.SweetIM, C:\Windows\Installer\662a60.msi, In Quarantäne, [a1bb5be5522a280ea3ce90ecea1bbd43], 
PUP.Optional.MyStartSearch.A, C:\Program Files (x86)\Mozilla Firefox\browser\searchplugins\mystartsearch.xml, In Quarantäne, [baa2380848341f174cdd98a739ca847c], 
PUP.Optional.TornTV.A, C:\Users\WK\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\TornTvDownloader.lnk, In Quarantäne, [f963360ae597da5cd62e42074ab9ad53], 
PUP.Optional.SweetPacks.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\{EEE6C361-6118-11DC-9C72-001320C79847}.xpi, In Quarantäne, [283479c7cab2a78fdf0289caa95af50b], 
PUP.Optional.CrossRider.T, C:\Windows\System32\Tasks\2d374c00-0afb-44b3-95e5-4a41d9686eee-1, In Quarantäne, [a6b643fddca0290d4f382f26eb182bd5], 
PUP.Optional.CrossRider.T, C:\Windows\System32\Tasks\2d374c00-0afb-44b3-95e5-4a41d9686eee-11, In Quarantäne, [2d2fbc84116b83b3b5d2480d1ee5a060], 
PUP.Optional.CrossRider.T, C:\Windows\System32\Tasks\2d374c00-0afb-44b3-95e5-4a41d9686eee-2, In Quarantäne, [5c00b48ce59764d28304be9710f33bc5], 
PUP.Optional.CrossRider.T, C:\Windows\System32\Tasks\2d374c00-0afb-44b3-95e5-4a41d9686eee-3, In Quarantäne, [c894142c304c6fc791f6aaabc0433ec2], 
PUP.Optional.CrossRider.T, C:\Windows\System32\Tasks\2d374c00-0afb-44b3-95e5-4a41d9686eee-4, In Quarantäne, [61fb3e02b7c5280e5c2bbd9825de55ab], 
PUP.Optional.CrossRider.T, C:\Windows\System32\Tasks\2d374c00-0afb-44b3-95e5-4a41d9686eee-5, In Quarantäne, [0c50ba86d5a78fa7800786cfeb1828d8], 
PUP.Optional.CrossRider.T, C:\Windows\System32\Tasks\2d374c00-0afb-44b3-95e5-4a41d9686eee-5_user, In Quarantäne, [a4b8d46ca7d5e353691eabaad33025db], 
PUP.Optional.CrossRider.T, C:\Windows\System32\Tasks\2d374c00-0afb-44b3-95e5-4a41d9686eee-6, In Quarantäne, [89d3bd838fedb6801b6cf75e5ca723dd], 
PUP.Optional.CrossRider.T, C:\Windows\System32\Tasks\2d374c00-0afb-44b3-95e5-4a41d9686eee-7, In Quarantäne, [e67617297efe5dd90a7dd77ead56d22e], 
PUP.Optional.CrossRider.T, C:\Windows\System32\Tasks\cf43921d-02df-421d-ae05-8262e53706bf-1, In Quarantäne, [60fcd9672f4dab8bc4c3df7647bc25db], 
PUP.Optional.CrossRider.T, C:\Windows\System32\Tasks\cf43921d-02df-421d-ae05-8262e53706bf-11, In Quarantäne, [3c20fd43fe7ecc6a2265371e877c25db], 
PUP.Optional.CrossRider.T, C:\Windows\System32\Tasks\cf43921d-02df-421d-ae05-8262e53706bf-2, In Quarantäne, [5dff47f975075adcea9d76dfec171be5], 
PUP.Optional.CrossRider.T, C:\Windows\System32\Tasks\cf43921d-02df-421d-ae05-8262e53706bf-3, In Quarantäne, [5dff330d651769cdf6912d28bb48bd43], 
PUP.Optional.CrossRider.T, C:\Windows\System32\Tasks\cf43921d-02df-421d-ae05-8262e53706bf-4, In Quarantäne, [510b63dd0a72e056e2a587ce9c67e917], 
PUP.Optional.CrossRider.T, C:\Windows\System32\Tasks\cf43921d-02df-421d-ae05-8262e53706bf-5, In Quarantäne, [be9ee55b6a12b87e4740ed681fe4b44c], 
PUP.Optional.CrossRider.T, C:\Windows\System32\Tasks\cf43921d-02df-421d-ae05-8262e53706bf-5_user, In Quarantäne, [9fbd3e0295e7280e7c0b61f426dd54ac], 
PUP.Optional.CrossRider.T, C:\Windows\System32\Tasks\cf43921d-02df-421d-ae05-8262e53706bf-6, In Quarantäne, [e17be15f87f51b1bc0c7df76f90a9868], 
PUP.Optional.CrossRider.T, C:\Windows\System32\Tasks\cf43921d-02df-421d-ae05-8262e53706bf-7, In Quarantäne, [4b1199a70379bf77cabdd580fc07d828], 
PUP.Optional.BrowserProtect.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\searchplugins\BrowserProtect.xml, In Quarantäne, [94c8ec549ae2181e5768cd8c758e28d8], 
PUP.Optional.SweetIM.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\searchplugins\sweetim.xml, In Quarantäne, [5a02ca76a2da78be6c8605602dd642be], 
PUP.Optional.Babylon.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\searchplugins\babylon.xml, In Quarantäne, [b7a56fd1007c5dd910dde38e8f7451af], 
PUP.Optional.BProtector.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\bProtector_extensions.sqlite, In Quarantäne, [2a32b888df9d2b0b74852b4610f334cc], 
PUP.Optional.BProtector.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\bprotector_prefs.js, In Quarantäne, [aeae45fb522a8da9e01afd74c93a25db], 
PUP.Optional.Delta.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\searchplugins\delta.xml, In Quarantäne, [69f3aa96bfbd2e08e838c6ac8182c040], 
Stolen.Data, C:\Users\WK\AppData\Roaming\RS, In Quarantäne, [362684bcf08c8ea8f99b1421ca3a58a8], 
PUP.Optional.Blabbers, C:\Program Files (x86)\BrowserCompanion\blabbers-ff-full.xpi, In Quarantäne, [5dfff050463689ad8bed9bc07a8ac838], 
PUP.Optional.Blabbers, C:\Program Files (x86)\BrowserCompanion\blabbers-ch.crx, In Quarantäne, [5dfff050463689ad8bed9bc07a8ac838], 
PUP.Optional.Blabbers, C:\Program Files (x86)\BrowserCompanion\logo.ico, In Quarantäne, [5dfff050463689ad8bed9bc07a8ac838], 
PUP.Optional.Blabbers, C:\Program Files (x86)\BrowserCompanion\toolbar.dll, In Quarantäne, [5dfff050463689ad8bed9bc07a8ac838], 
PUP.Optional.Blabbers, C:\Program Files (x86)\BrowserCompanion\uninstall.exe, In Quarantäne, [5dfff050463689ad8bed9bc07a8ac838], 
PUP.Optional.Blabbers, C:\Program Files (x86)\BrowserCompanion\updater.ini, In Quarantäne, [5dfff050463689ad8bed9bc07a8ac838], 
PUP.Optional.Blabbers, C:\Program Files (x86)\BrowserCompanion\widgetserv.exe, In Quarantäne, [5dfff050463689ad8bed9bc07a8ac838], 
PUP.Optional.Delta.A, C:\Users\WK\AppData\Roaming\Delta\sqlite3.dll, In Quarantäne, [dc8028187705e155b7a92d640ef6916f], 
PUP.Optional.BProtector.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\bProtectorPreferences, In Quarantäne, [90ccb789bcc0d66044c48c0ab64ead53], 
PUP.Optional.CrossRider.T, C:\Windows\Tasks\2d374c00-0afb-44b3-95e5-4a41d9686eee-1.job, In Quarantäne, [0755063a92ea8bab175e8f245ca84eb2], 
PUP.Optional.CrossRider.T, C:\Windows\Tasks\2d374c00-0afb-44b3-95e5-4a41d9686eee-11.job, In Quarantäne, [6def85bb6616b1851a5b2390e51f17e9], 
PUP.Optional.CrossRider.T, C:\Windows\Tasks\2d374c00-0afb-44b3-95e5-4a41d9686eee-2.job, In Quarantäne, [f468be8277053501e095b201d82cc040], 
PUP.Optional.CrossRider.T, C:\Windows\Tasks\2d374c00-0afb-44b3-95e5-4a41d9686eee-3.job, In Quarantäne, [8dcf2e122755f64013624a69b94b15eb], 
PUP.Optional.CrossRider.T, C:\Windows\Tasks\2d374c00-0afb-44b3-95e5-4a41d9686eee-4.job, In Quarantäne, [66f6340c4f2d979f1d58e9caaf55d927], 
PUP.Optional.CrossRider.T, C:\Windows\Tasks\2d374c00-0afb-44b3-95e5-4a41d9686eee-5.job, In Quarantäne, [b9a3cf71fe7eff377cf9a2113cc86f91], 
PUP.Optional.CrossRider.T, C:\Windows\Tasks\2d374c00-0afb-44b3-95e5-4a41d9686eee-5_user.job, In Quarantäne, [3a229ba57a0270c6cda890239c68e61a], 
PUP.Optional.CrossRider.T, C:\Windows\Tasks\2d374c00-0afb-44b3-95e5-4a41d9686eee-6.job, In Quarantäne, [63f976ca4636ca6c3f368b281be9c53b], 
PUP.Optional.CrossRider.T, C:\Windows\Tasks\2d374c00-0afb-44b3-95e5-4a41d9686eee-7.job, In Quarantäne, [085455eb25576accd5a0793a5ba9ff01], 
PUP.Optional.CrossRider.T, C:\Windows\Tasks\cf43921d-02df-421d-ae05-8262e53706bf-1.job, In Quarantäne, [4517132de09c4ee8581dd1e2b64e0af6], 
PUP.Optional.CrossRider.T, C:\Windows\Tasks\cf43921d-02df-421d-ae05-8262e53706bf-11.job, In Quarantäne, [db81eb554933d75f3540fab9e71d05fb], 
PUP.Optional.CrossRider.T, C:\Windows\Tasks\cf43921d-02df-421d-ae05-8262e53706bf-2.job, In Quarantäne, [9bc1400054285cdac1b40ba81ee62dd3], 
PUP.Optional.CrossRider.T, C:\Windows\Tasks\cf43921d-02df-421d-ae05-8262e53706bf-3.job, In Quarantäne, [1e3e2e1282fa7bbb30458c270df7639d], 
PUP.Optional.CrossRider.T, C:\Windows\Tasks\cf43921d-02df-421d-ae05-8262e53706bf-4.job, In Quarantäne, [fc60122e6a12270fb7be04afc53f36ca], 
PUP.Optional.CrossRider.T, C:\Windows\Tasks\cf43921d-02df-421d-ae05-8262e53706bf-5.job, In Quarantäne, [3b21f14f18649f974f2691229f65fe02], 
PUP.Optional.CrossRider.T, C:\Windows\Tasks\cf43921d-02df-421d-ae05-8262e53706bf-5_user.job, In Quarantäne, [a5b7053b83f92f078fe6842f5ba9827e], 
PUP.Optional.CrossRider.T, C:\Windows\Tasks\cf43921d-02df-421d-ae05-8262e53706bf-6.job, In Quarantäne, [4814df6195e756e0a5d01a9957ad639d], 
PUP.Optional.CrossRider.T, C:\Windows\Tasks\cf43921d-02df-421d-ae05-8262e53706bf-7.job, In Quarantäne, [66f698a8d4a89d99e98c813253b16799], 
PUP.Optional.CrossRider.A, C:\Windows\Tasks\11da2501-fe9b-4aaf-b547-1246bfcbf879.job, In Quarantäne, [e17b4bf5b8c4cf67607b942162a2d62a], 
PUP.Optional.CrossRider.A, C:\Windows\Tasks\2fea5194-b215-4ff2-addc-3ad7b5666e08.job, In Quarantäne, [ec703907fd7f41f52dae4f6610f4b848], 
PUP.Optional.CrossRider.A, C:\Windows\System32\Tasks\11da2501-fe9b-4aaf-b547-1246bfcbf879, In Quarantäne, [104c86baa6d648eea03c8332e123e11f], 
PUP.Optional.CrossRider.A, C:\Windows\System32\Tasks\2fea5194-b215-4ff2-addc-3ad7b5666e08, In Quarantäne, [baa2241cb5c7979feeee278e07fd916f], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_ljefoakgfhcoeobgicjgejglnpfpemgb_0.localstorage, Löschen bei Neustart, [75e719277efe3600ad3b694e43c12cd4], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_ljefoakgfhcoeobgicjgejglnpfpemgb_0.localstorage-journal, In Quarantäne, [70ec370997e563d30fd9d3e4f80c31cf], 
PUP.Optional.MindSpark, C:\Program Files (x86)\RadioRage_4j\bar\1.bin\AppIntegrator64.exe, Löschen bei Neustart, [2537e45cfc8015214e5eccd317ed42be], 
PUP.Optional.MindSpark, C:\Program Files (x86)\RadioRage_4j\bar\1.bin\4jSrchMn.exe, In Quarantäne, [89d3f14fc0bc3cfa0adc575c1be923dd], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\BCHelper.exe, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cmpchanged.js, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cmpguid.js, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\fix2.js, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\fixJQ1_71.js, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\fixJQ1_71_2.js, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\fixJQ1_83.js, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\icon.png, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\jquery4toolbar.js, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\jquery4toolbar183.js, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\lock.js, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\witapi.js, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\witmain.js, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\wittoolbar.js, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\witwidgetapi.js, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\xcodechange.js, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\01e5db4d4b4e067ef2417404c7741115, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\01e5db4d4b4e067ef2417404c7741115_expire, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\0227dd5d240c9bdfb9504999e66c665b_DE, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\0324adea3b6ec02af09ea4ae9424591b, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\0324adea3b6ec02af09ea4ae9424591b_expire, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\06e0c0d489f84bd667626125b02eb86a, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\06e0c0d489f84bd667626125b02eb86a_expire, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\0984d4fababb5d92394dc5b39b700075_DE, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\0b0a2599f44d1020163e8609e8c344c8, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\ddedfe6ede02f148caf19a2dec7f877d_DE, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\dealsdb, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\dealsdb_expire, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\dealsdb_gb, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\e02b35320e5111f1b626466c13c70a0a, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\e02b35320e5111f1b626466c13c70a0a_expire, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\e05508e03bf34762151d9d19fffe93df, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\e05508e03bf34762151d9d19fffe93df_expire, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\e3cd5b2c64ca319aadec7c28c6c6feba_DE, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\e6c109bf52ef89fe99f9a9379617ab0e_DE, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\e7215b147326809c45f6cf0952274624, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\e7215b147326809c45f6cf0952274624_expire, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\6a8ef73701ad78f92631ccabc37a9b58_expire, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\6c1193d5418bb171e5b5c818429576fb, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\6c1193d5418bb171e5b5c818429576fb_expire, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\6c1193d5418bb171e5b5c818429576fb_gb, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\6d091eb0bf44b762a039ee138e6b165c_DE, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\6d4100dc97e9abad47303e5e0d38b2b6_DE, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\6ec88a37be1bea7fa99383e8b8c69afe, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\6ec88a37be1bea7fa99383e8b8c69afe_expire, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\6f8b3140943075f95ae0c74c1a13b752_DE, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\70ad9563d8ac7288d771eb6cbb70c26d, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\70ad9563d8ac7288d771eb6cbb70c26d_expire, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\3ee6bbef623a0ac7077352d3a4953dd7, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\3ee6bbef623a0ac7077352d3a4953dd7_expire, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\409dc4ca65bcc01439d855c7dd3360ea, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\409dc4ca65bcc01439d855c7dd3360ea_expire, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\40e0df7ccddfc9450ea3bbf80a0110e4, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\40e0df7ccddfc9450ea3bbf80a0110e4_expire, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\40e0df7ccddfc9450ea3bbf80a0110e4_gb, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\8ffbb13aa6f702b0cafab391f90d1db7_expire, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\9065ea62ce86482e48ba65c90f34af2f, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\9065ea62ce86482e48ba65c90f34af2f_expire, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\9065ea62ce86482e48ba65c90f34af2f_gb, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\91ed24cba47f3cabaaaf7bdb0e620066, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\91ed24cba47f3cabaaaf7bdb0e620066_expire, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\92014bb7f6462cb491e652ca4941f1d2, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\92014bb7f6462cb491e652ca4941f1d2_expire, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\93aa59562815aa22d93923c7215ac7f1, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\93aa59562815aa22d93923c7215ac7f1_expire, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\9803c283e94e743374151c4bbe60a5df, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\9803c283e94e743374151c4bbe60a5df_expire, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\0b0a2599f44d1020163e8609e8c344c8_expire, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\28a66dcbc42f487b74bf7075f325b374_expire, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\2e74403c227112bec523796d5a77d77e, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\3b507b6d0186efd3615b9b9233c5f708_expire, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\6a8ef73701ad78f92631ccabc37a9b58, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\7c0022298b948a99e406a6310bffea7f_gb, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\83efd7b1964c50bb7cce4272a9a96e90, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\8ccfda3ab1ab5bbc5d7af38840ba022b, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\8ffbb13aa6f702b0cafab391f90d1db7, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\9c2afdb0a6d9bf59b300144154b58c67_DE, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\a38dbdd1af07f4236d43e8fd995f57a6, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\b3688636ecfdc491aea728939c15f43e_DE, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\c4a4e7d52f3f8044d9a639a16862ea54, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\d2458fd784f4eb7cff549c598cd14651, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\e9e14a99847657c53e1cc29cc55ab7af_DE, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\ed0c923c82a39debf5c71d22f5ef3dc7_expire, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\f533eb92f0947be539a3f9a7d664740d_expire, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\231785d024a11371bfc94ffff0a4b741_DE, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\2328e1768b820b18ab2f301c9ff88e2c, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\2328e1768b820b18ab2f301c9ff88e2c_expire, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\23d2c85d4900d7bc495fc376d471f66a, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\23d2c85d4900d7bc495fc376d471f66a_expire, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\24779e9d2de93d13d7e07b527a1684d4, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\24779e9d2de93d13d7e07b527a1684d4_expire, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\253712f62fa354f36c490a3f42ba9bfc_DE, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\277a8fa54e28ecd52962c65ae09f7923, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\277a8fa54e28ecd52962c65ae09f7923_expire, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\286965653b415f505622ea74d2bd3bbe_DE, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\28a66dcbc42f487b74bf7075f325b374, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\c4a4e7d52f3f8044d9a639a16862ea54_expire, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\c5bb86a60317fbdf092f8dfcc1828e21, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\c5bb86a60317fbdf092f8dfcc1828e21_expire, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\c5bb86a60317fbdf092f8dfcc1828e21_gb, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\c6d8337e4b016a68fdbb60b29e7d254d, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\c6d8337e4b016a68fdbb60b29e7d254d_expire, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\c75261e846ce457d11060410767952c4, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\c75261e846ce457d11060410767952c4_expire, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\c75261e846ce457d11060410767952c4_gb, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\cbb647c72e5b13b52d1392c603dcfde6, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\cbb647c72e5b13b52d1392c603dcfde6_expire, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\ee2135fec207a636822e2513020c079a, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\ee2135fec207a636822e2513020c079a_expire, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\ee2135fec207a636822e2513020c079a_gb, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\eeab68dd74d26245087956fb3caf6937_DE, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\f03527c67e08602d2e4c18ae7867300d, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\f03527c67e08602d2e4c18ae7867300d_expire, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\f533eb92f0947be539a3f9a7d664740d, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\a38dbdd1af07f4236d43e8fd995f57a6_expire, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\a4978ceb564459d3d64682b37d89bbe3, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\a4978ceb564459d3d64682b37d89bbe3_expire, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\a4978ceb564459d3d64682b37d89bbe3_gb, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\a6d4447986c4e442d92ed00b149c14f3_DE, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\a74277a9a3c0203a3093f810f43fbc11, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\a74277a9a3c0203a3093f810f43fbc11_expire, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\a7e0abb80dabcdbb6dbaec920aa126a0, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\a7e0abb80dabcdbb6dbaec920aa126a0_expire, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\5353fe618a525cf84c7c3e117446f2d5, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\5353fe618a525cf84c7c3e117446f2d5_expire, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\5353fe618a525cf84c7c3e117446f2d5_gb, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\5417125bc3e532bbf6507d4c7d8ac7b0, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\5417125bc3e532bbf6507d4c7d8ac7b0_expire, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\5c07ce6ac7fa7b9ff2f3fd7a4d77eef8, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\5c07ce6ac7fa7b9ff2f3fd7a4d77eef8_expire, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\5d08671f40e6e9c2ff0f3c5f3d47f726, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\5d08671f40e6e9c2ff0f3c5f3d47f726_expire, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\5d08671f40e6e9c2ff0f3c5f3d47f726_gb, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\5d5c3541c8187f3a48d4f72f4374009c, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\5d5c3541c8187f3a48d4f72f4374009c_expire, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\e72174145ae7671ff95578a2089c26b2, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\e72174145ae7671ff95578a2089c26b2_expire, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\e7395ccc0c22b2cca7bf3e0c7db4d8a6_DE, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\e7d8325da90d91d3c4e7720f0e629e17, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\e7d8325da90d91d3c4e7720f0e629e17_expire, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\e7d8325da90d91d3c4e7720f0e629e17_version, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\e8882aa44ad634f346a0b72f049c2e4c, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\e8882aa44ad634f346a0b72f049c2e4c_expire, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\e8882aa44ad634f346a0b72f049c2e4c_gb, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\e919434ec29526b28593c426e4264271, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\e919434ec29526b28593c426e4264271_expire, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\2e74403c227112bec523796d5a77d77e_expire, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\2f69b14b68c25849cfb7abc31c5355f8, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\2f69b14b68c25849cfb7abc31c5355f8_expire, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\30c5a5f3cac664f14898d4ff02c8b8aa, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\30c5a5f3cac664f14898d4ff02c8b8aa_expire, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\3518e1eac042730aa1274618984462b3_DE, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\38207d71d9cc86fb6daebc118ce6286c_DE, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\3b507b6d0186efd3615b9b9233c5f708, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\83efd7b1964c50bb7cce4272a9a96e90_expire, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\860f295e523c85f15d93b8c9b1abb411, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\860f295e523c85f15d93b8c9b1abb411_expire, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\860f295e523c85f15d93b8c9b1abb411_gb, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\867f10e9a70010ef71d15c41fd2874be, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\867f10e9a70010ef71d15c41fd2874be_expire, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\897979c67bed116efad1a04f5f229ecd_DE, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\8a8dc36effa0a0300d6fb1a383936a49, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\8a8dc36effa0a0300d6fb1a383936a49_expire, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\d2458fd784f4eb7cff549c598cd14651_expire, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\d5747e13728fd7df356bc13545143ea6_DE, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\d5baae4ef839769f8eb7e9f9d82d8a40_DE, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\d6418e300158fb16d8396d122d4b423b_DE, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\d6418e300158fb16d8396d122d4b423b_unknown, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\d89bfd841403290d610bcf662008b443, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\d89bfd841403290d610bcf662008b443_expire, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\d965aead622233a60676ef2349956f38_DE, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\dc6668d28979688b1e2066d1dcaef0f6, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\dc6668d28979688b1e2066d1dcaef0f6_expire, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\9c86b973456448ae01f1cbc0d6cf607a_DE, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\9c86b973456448ae01f1cbc0d6cf607a_unknown, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\9dc8414e1b352cbe0663cc5f2b2490fb, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\9dc8414e1b352cbe0663cc5f2b2490fb_expire, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\9dec145d2a2e788d627cf591d7d148b2, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\9dec145d2a2e788d627cf591d7d148b2_expire, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\a227f4517bd7937e697182f46906a6b4_DE, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\0f0773a0a4d06eb721db0d7bdc8a048a, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\0f0773a0a4d06eb721db0d7bdc8a048a_expire, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\0f0773a0a4d06eb721db0d7bdc8a048a_gb, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\1048fa0383ec8c1a4365d4bd4fed1de5, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\1048fa0383ec8c1a4365d4bd4fed1de5_expire, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\150b7566b7871fb6e0ef44753d0c6dc3_DE, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\170f337942c410233f577de5778810a6, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\170f337942c410233f577de5778810a6_expire, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\1b56f16ed9915e2ddbdc7e781b9b40c4, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\1b56f16ed9915e2ddbdc7e781b9b40c4_expire, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\71466e089995731fd7f41c06f77bc6db, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\71466e089995731fd7f41c06f77bc6db_expire, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\71466e089995731fd7f41c06f77bc6db_gb, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\719f6985083c6f0c2a8fef7aa1f75d63, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\719f6985083c6f0c2a8fef7aa1f75d63_expire, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\72891ec935a3d247f2da6562ef29a005, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\72891ec935a3d247f2da6562ef29a005_expire, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\7c0022298b948a99e406a6310bffea7f, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\7c0022298b948a99e406a6310bffea7f_expire, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\b5080fd498f4580cd85cbf8ff41766c5_DE, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\b63e329ac886600068c4acd358ff80b5, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\b63e329ac886600068c4acd358ff80b5_expire, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\bc8dad417f8f0fb33406e79ccd806c7f, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\bc8dad417f8f0fb33406e79ccd806c7f_expire, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\bd75b259da6df295d57bcf03a94e1ba6, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\bd75b259da6df295d57bcf03a94e1ba6_expire, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\bf73732e1f0b76bac435293ba3880579, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\bf73732e1f0b76bac435293ba3880579_expire, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\eb04bdda55e3827d8df8b5e1afac83a2, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\eb04bdda55e3827d8df8b5e1afac83a2_expire, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\ece5f266221b5245c6e3d7e27ddee963, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\ece5f266221b5245c6e3d7e27ddee963_expire, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\ece71b71690fad200cbed95871ef4bb2, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\ece71b71690fad200cbed95871ef4bb2_expire, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\ed0c923c82a39debf5c71d22f5ef3dc7, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\292124057d00cb0fa73db6b90d079658, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\292124057d00cb0fa73db6b90d079658_expire, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\2a86ac4f3322238b4f27d14a09839275, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\2a86ac4f3322238b4f27d14a09839275_expire, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\2e0dda2d2281da01c330dc3e12b45a9d_DE, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\2e0dda2d2281da01c330dc3e12b45a9d_unknown, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\2e699bb621ffe89ade68eaef9df0d2d9, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\2e699bb621ffe89ade68eaef9df0d2d9_expire, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\2e699bb621ffe89ade68eaef9df0d2d9_gb, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\5f4ce27504a73ff97d1936c597c769e5, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\5f4ce27504a73ff97d1936c597c769e5_expire, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\6107628e8e8b45f82cd780da403f3358, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\6107628e8e8b45f82cd780da403f3358_expire, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\6107628e8e8b45f82cd780da403f3358_gb, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\61e2ae11ba3d1cbe8887ea80f192e299, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\61e2ae11ba3d1cbe8887ea80f192e299_expire, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\62cce7d26ab5636bceb113b988d56c59_DE, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\6496a43cad388e4b78f1ecce8fcffc27_DE, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\6496a43cad388e4b78f1ecce8fcffc27_unknown, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\a8e78a6006a812766277d1f827e58be6, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\a8e78a6006a812766277d1f827e58be6_expire, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\a95092a9bd34f5cfc98f78ca74502f36_DE, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\aa36bceec49c832079e270icmc219ats, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\adbb013efd3fd71cf048206629fae313_DE, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\adf275b6644b3fcac86a14ffe551dede, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\adf275b6644b3fcac86a14ffe551dede_expire, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\b1ee91b2ef2163f40d85f38713cdc027, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\b1ee91b2ef2163f40d85f38713cdc027_expire, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\b1ee91b2ef2163f40d85f38713cdc027_gb, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\f74a531fb1de737c8688c7f788c8c80e, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\f74a531fb1de737c8688c7f788c8c80e_expire, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\fa74672918974682c82b8d91dfbe0d6b, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\fa74672918974682c82b8d91dfbe0d6b_expire, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\fd2b14a1599592bd893eafc7d4583112, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\fd2b14a1599592bd893eafc7d4583112_expire, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\fd2b14a1599592bd893eafc7d4583112_gb, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\ff4d692d5e7cccbc4b3e9ef4062b1c6f, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\ff4d692d5e7cccbc4b3e9ef4062b1c6f_expire, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\7e781915f58fe108a6af37bf82ba047b, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\7e781915f58fe108a6af37bf82ba047b_expire, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\7efb9aab6fcb49f138e15f423901eca1, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\7efb9aab6fcb49f138e15f423901eca1_expire, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\820bd66734e445389cd345860d068c9f, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\820bd66734e445389cd345860d068c9f_expire, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\820bd66734e445389cd345860d068c9f_gb, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\8325c498d48945847d152e1eef78847d, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\8325c498d48945847d152e1eef78847d_expire, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\8325c498d48945847d152e1eef78847d_gb, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\83ed2d62b3629381be4ff461166e8480, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\83ed2d62b3629381be4ff461166e8480_expire, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\1bb25568f8455e74906142466f792c87_DE, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\211ffae2c8a2b411d85c8541ffcbfe9c, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\211ffae2c8a2b411d85c8541ffcbfe9c_expire, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\211ffae2c8a2b411d85c8541ffcbfe9c_gb, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\21a6fdff5cdeec15248bec4975ed92cb, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\21a6fdff5cdeec15248bec4975ed92cb_expire, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\21d2bb231d3c04f5b6434220b2b1cb9e, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\21d2bb231d3c04f5b6434220b2b1cb9e_expire, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\8ccfda3ab1ab5bbc5d7af38840ba022b_expire, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\8f38426a71d2ff9849ef427e4cdfbea6, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\8f38426a71d2ff9849ef427e4cdfbea6_expire, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\8f43b50088266b9870b42ce6ef7ffbde, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\8f43b50088266b9870b42ce6ef7ffbde_expire, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\8f43b50088266b9870b42ce6ef7ffbde_gb, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\8fd0e5f2c42f56c41599ca329ef70350_DE, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\cbb69a449d3e39b3a3781ffb1d7fa52b, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\cbb69a449d3e39b3a3781ffb1d7fa52b_expire, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\cf28706faad49b5cccfc9e9e3ebbd818, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\cf28706faad49b5cccfc9e9e3ebbd818_expire, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\cf28706faad49b5cccfc9e9e3ebbd818_gb, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\cf7237815e1d6e308528f35aa14a7d67, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\cf7237815e1d6e308528f35aa14a7d67_expire, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\4713e82e27fb9719d76577d1585acb00_DE, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\4713e82e27fb9719d76577d1585acb00_unknown, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\477f5134e73f0099219c494cb23f6657_DE, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\4c0be9972fa4923fed177cfcd07ca3fa, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\4c0be9972fa4923fed177cfcd07ca3fa_expire, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\4c0be9972fa4923fed177cfcd07ca3fa_gb, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\4c84596d3a88c66ad9d449a45c76dd89, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\4c84596d3a88c66ad9d449a45c76dd89_expire, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\4d3d10bd28ff623813254a49b26be41f, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.Blabbers, C:\Users\WK\AppData\LocalLow\bbrs_002.tb\content\cache\4d3d10bd28ff623813254a49b26be41f_expire, In Quarantäne, [d18b45fb7804d5617c8a45c8689b38c8], 
PUP.Optional.OpenCandy, C:\Users\WK\AppData\Roaming\OpenCandy\EB25601863D047409F07028F4A84F8BB\5472.ico, In Quarantäne, [59034ef2f28a9b9b44a5b15ce71cc43c], 
PUP.Optional.OpenCandy, C:\Users\WK\AppData\Roaming\OpenCandy\EB25601863D047409F07028F4A84F8BB\EBB77268-338F-4C6A-8590-AD88FED26F4A, In Quarantäne, [59034ef2f28a9b9b44a5b15ce71cc43c], 
PUP.Optional.OpenCandy, C:\Users\WK\AppData\Roaming\OpenCandy\EB25601863D047409F07028F4A84F8BB\OCBrowserHelper_1.0.6.124.exe, In Quarantäne, [59034ef2f28a9b9b44a5b15ce71cc43c], 
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\ClearHist.exe, In Quarantäne, [57052020126aab8b015ebb53976c54ac], 
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\default.xml, In Quarantäne, [57052020126aab8b015ebb53976c54ac], 
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\mgcommon.dll, In Quarantäne, [57052020126aab8b015ebb53976c54ac], 
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\mgconfig.dll, In Quarantäne, [57052020126aab8b015ebb53976c54ac], 
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\mgHelper.dll, In Quarantäne, [57052020126aab8b015ebb53976c54ac], 
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\mgHelperApp.exe, In Quarantäne, [57052020126aab8b015ebb53976c54ac], 
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\mghooking.dll, In Quarantäne, [57052020126aab8b015ebb53976c54ac], 
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\mglogger.dll, In Quarantäne, [57052020126aab8b015ebb53976c54ac], 
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\mgsimcommon.dll, In Quarantäne, [57052020126aab8b015ebb53976c54ac], 
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\mgToolbarProxy.dll, In Quarantäne, [57052020126aab8b015ebb53976c54ac], 
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\mgxml_wrapper.dll, In Quarantäne, [57052020126aab8b015ebb53976c54ac], 
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\conf\logger.xml, In Quarantäne, [57052020126aab8b015ebb53976c54ac], 
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\Microsoft.VC90.CRT\Microsoft.VC90.CRT.manifest, In Quarantäne, [57052020126aab8b015ebb53976c54ac], 
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\Microsoft.VC90.CRT\msvcm90.dll, In Quarantäne, [57052020126aab8b015ebb53976c54ac], 
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\Microsoft.VC90.CRT\msvcp90.dll, In Quarantäne, [57052020126aab8b015ebb53976c54ac], 
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\Microsoft.VC90.CRT\msvcr90.dll, In Quarantäne, [57052020126aab8b015ebb53976c54ac], 
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\eye_icon.png, In Quarantäne, [57052020126aab8b015ebb53976c54ac], 
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\logo_32x32.png, In Quarantäne, [57052020126aab8b015ebb53976c54ac], 
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\about.html, In Quarantäne, [57052020126aab8b015ebb53976c54ac], 
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\affid.dat, In Quarantäne, [57052020126aab8b015ebb53976c54ac], 
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\basis.xml, In Quarantäne, [57052020126aab8b015ebb53976c54ac], 
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\bing.png, In Quarantäne, [57052020126aab8b015ebb53976c54ac], 
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\clear-history.png, In Quarantäne, [57052020126aab8b015ebb53976c54ac], 
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\content-notifier-anim-over.gif, In Quarantäne, [57052020126aab8b015ebb53976c54ac], 
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\content-notifier-anim.gif, In Quarantäne, [57052020126aab8b015ebb53976c54ac], 
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\content-notifier.js, In Quarantäne, [57052020126aab8b015ebb53976c54ac], 
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\dating.png, In Quarantäne, [57052020126aab8b015ebb53976c54ac], 
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\dictionary.png, In Quarantäne, [57052020126aab8b015ebb53976c54ac], 
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\eye_icon_over.png, In Quarantäne, [57052020126aab8b015ebb53976c54ac], 
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\e_cards.png, In Quarantäne, [57052020126aab8b015ebb53976c54ac], 
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\find.png, In Quarantäne, [57052020126aab8b015ebb53976c54ac], 
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\free_stuff.png, In Quarantäne, [57052020126aab8b015ebb53976c54ac], 
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\games.png, In Quarantäne, [57052020126aab8b015ebb53976c54ac], 
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\glitter.png, In Quarantäne, [57052020126aab8b015ebb53976c54ac], 
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\google.png, In Quarantäne, [57052020126aab8b015ebb53976c54ac], 
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\help.png, In Quarantäne, [57052020126aab8b015ebb53976c54ac], 
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\highlight.png, In Quarantäne, [57052020126aab8b015ebb53976c54ac], 
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\locales.xml, In Quarantäne, [57052020126aab8b015ebb53976c54ac], 
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\logo_16x16.png, In Quarantäne, [57052020126aab8b015ebb53976c54ac], 
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\logo_21x18.png, In Quarantäne, [57052020126aab8b015ebb53976c54ac], 
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\logo_about.png, In Quarantäne, [57052020126aab8b015ebb53976c54ac], 
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\MenuExt.html, In Quarantäne, [57052020126aab8b015ebb53976c54ac], 
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\more-search-providers.png, In Quarantäne, [57052020126aab8b015ebb53976c54ac], 
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\music.png, In Quarantäne, [57052020126aab8b015ebb53976c54ac], 
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\news.png, In Quarantäne, [57052020126aab8b015ebb53976c54ac], 
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\options.html, In Quarantäne, [57052020126aab8b015ebb53976c54ac], 
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\photos.png, In Quarantäne, [57052020126aab8b015ebb53976c54ac], 
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\search-current-site.png, In Quarantäne, [57052020126aab8b015ebb53976c54ac], 
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\shopping.png, In Quarantäne, [57052020126aab8b015ebb53976c54ac], 
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\SmileySmile.png, In Quarantäne, [57052020126aab8b015ebb53976c54ac], 
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\SmileyWink.png, In Quarantäne, [57052020126aab8b015ebb53976c54ac], 
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\sweetim_text.png, In Quarantäne, [57052020126aab8b015ebb53976c54ac], 
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\toolbar.xml, In Quarantäne, [57052020126aab8b015ebb53976c54ac], 
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\video.png, In Quarantäne, [57052020126aab8b015ebb53976c54ac], 
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\web-search.png, In Quarantäne, [57052020126aab8b015ebb53976c54ac], 
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\web-toolbar.js, In Quarantäne, [57052020126aab8b015ebb53976c54ac], 
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\yahoo.png, In Quarantäne, [57052020126aab8b015ebb53976c54ac], 
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\blue\search_button.png, In Quarantäne, [57052020126aab8b015ebb53976c54ac], 
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\blue\search_button_bing.png, In Quarantäne, [57052020126aab8b015ebb53976c54ac], 
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\blue\search_button_current.png, In Quarantäne, [57052020126aab8b015ebb53976c54ac], 
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\blue\search_button_dictionary.png, In Quarantäne, [57052020126aab8b015ebb53976c54ac], 
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\blue\search_button_google.png, In Quarantäne, [57052020126aab8b015ebb53976c54ac], 
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\blue\search_button_hover.png, In Quarantäne, [57052020126aab8b015ebb53976c54ac], 
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\blue\search_button_left.png, In Quarantäne, [57052020126aab8b015ebb53976c54ac], 
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\blue\search_button_photo.png, In Quarantäne, [57052020126aab8b015ebb53976c54ac], 
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\blue\search_button_video.png, In Quarantäne, [57052020126aab8b015ebb53976c54ac], 
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\blue\search_button_web.png, In Quarantäne, [57052020126aab8b015ebb53976c54ac], 
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\blue\search_button_yahoo.png, In Quarantäne, [57052020126aab8b015ebb53976c54ac], 
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\green\search_button.png, In Quarantäne, [57052020126aab8b015ebb53976c54ac], 
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\green\search_button_bing.png, In Quarantäne, [57052020126aab8b015ebb53976c54ac], 
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\green\search_button_current.png, In Quarantäne, [57052020126aab8b015ebb53976c54ac], 
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\green\search_button_dictionary.png, In Quarantäne, [57052020126aab8b015ebb53976c54ac], 
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\green\search_button_google.png, In Quarantäne, [57052020126aab8b015ebb53976c54ac], 
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\green\search_button_hover.png, In Quarantäne, [57052020126aab8b015ebb53976c54ac], 
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\green\search_button_left.png, In Quarantäne, [57052020126aab8b015ebb53976c54ac], 
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\green\search_button_photo.png, In Quarantäne, [57052020126aab8b015ebb53976c54ac], 
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\green\search_button_video.png, In Quarantäne, [57052020126aab8b015ebb53976c54ac], 
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\green\search_button_web.png, In Quarantäne, [57052020126aab8b015ebb53976c54ac], 
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\green\search_button_yahoo.png, In Quarantäne, [57052020126aab8b015ebb53976c54ac], 
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\orange\search_button.png, In Quarantäne, [57052020126aab8b015ebb53976c54ac], 
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\orange\search_button_bing.png, In Quarantäne, [57052020126aab8b015ebb53976c54ac], 
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\orange\search_button_current.png, In Quarantäne, [57052020126aab8b015ebb53976c54ac], 
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\orange\search_button_dictionary.png, In Quarantäne, [57052020126aab8b015ebb53976c54ac], 
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\orange\search_button_google.png, In Quarantäne, [57052020126aab8b015ebb53976c54ac], 
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\orange\search_button_hover.png, In Quarantäne, [57052020126aab8b015ebb53976c54ac], 
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\orange\search_button_left.png, In Quarantäne, [57052020126aab8b015ebb53976c54ac], 
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\orange\search_button_photo.png, In Quarantäne, [57052020126aab8b015ebb53976c54ac], 
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\orange\search_button_video.png, In Quarantäne, [57052020126aab8b015ebb53976c54ac], 
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\orange\search_button_web.png, In Quarantäne, [57052020126aab8b015ebb53976c54ac], 
PUP.Optional.SweetIM.A, C:\Program Files (x86)\SweetIM\Toolbars\Internet Explorer\resources\orange\search_button_yahoo.png, In Quarantäne, [57052020126aab8b015ebb53976c54ac], 
PUP.Optional.TidyNetwork.A, C:\Users\WK\AppData\Local\TNT2\2.0.0.1676\passport.dll, In Quarantäne, [61fbb888b8c4350168634cc39e658b75], 
PUP.Optional.TidyNetwork.A, C:\Users\WK\AppData\Local\TNT2\2.0.0.1676\TNT2UserPS.dll, In Quarantäne, [61fbb888b8c4350168634cc39e658b75], 
PUP.Optional.TidyNetwork.A, C:\Users\WK\AppData\Local\TNT2\2.0.0.1676\Autorun.inf, In Quarantäne, [61fbb888b8c4350168634cc39e658b75], 
PUP.Optional.TidyNetwork.A, C:\Users\WK\AppData\Local\TNT2\2.0.0.1676\crx.tar, In Quarantäne, [61fbb888b8c4350168634cc39e658b75], 
PUP.Optional.TidyNetwork.A, C:\Users\WK\AppData\Local\TNT2\2.0.0.1676\GameApps.ini, In Quarantäne, [61fbb888b8c4350168634cc39e658b75], 
PUP.Optional.TidyNetwork.A, C:\Users\WK\AppData\Local\TNT2\2.0.0.1676\GameConsole.exe, In Quarantäne, [61fbb888b8c4350168634cc39e658b75], 
PUP.Optional.TidyNetwork.A, C:\Users\WK\AppData\Local\TNT2\2.0.0.1676\GameEngine.dll, In Quarantäne, [61fbb888b8c4350168634cc39e658b75], 
PUP.Optional.TidyNetwork.A, C:\Users\WK\AppData\Local\TNT2\2.0.0.1676\GLOBALUNINSTALL.TNT, In Quarantäne, [61fbb888b8c4350168634cc39e658b75], 
PUP.Optional.TidyNetwork.A, C:\Users\WK\AppData\Local\TNT2\2.0.0.1676\hmac.1.dll, In Quarantäne, [61fbb888b8c4350168634cc39e658b75], 
PUP.Optional.TidyNetwork.A, C:\Users\WK\AppData\Local\TNT2\2.0.0.1676\iestage2.1.dll, In Quarantäne, [61fbb888b8c4350168634cc39e658b75], 
PUP.Optional.TidyNetwork.A, C:\Users\WK\AppData\Local\TNT2\2.0.0.1676\IEToolbar.dll, In Quarantäne, [61fbb888b8c4350168634cc39e658b75], 
PUP.Optional.TidyNetwork.A, C:\Users\WK\AppData\Local\TNT2\2.0.0.1676\IEToolbar64.dll, In Quarantäne, [61fbb888b8c4350168634cc39e658b75], 
PUP.Optional.TidyNetwork.A, C:\Users\WK\AppData\Local\TNT2\2.0.0.1676\INSTALL.TNT, In Quarantäne, [61fbb888b8c4350168634cc39e658b75], 
PUP.Optional.TidyNetwork.A, C:\Users\WK\AppData\Local\TNT2\2.0.0.1676\LastSession.log, In Quarantäne, [61fbb888b8c4350168634cc39e658b75], 
PUP.Optional.TidyNetwork.A, C:\Users\WK\AppData\Local\TNT2\2.0.0.1676\log.dll, In Quarantäne, [61fbb888b8c4350168634cc39e658b75], 
PUP.Optional.TidyNetwork.A, C:\Users\WK\AppData\Local\TNT2\2.0.0.1676\MinecraftShims64.dll, In Quarantäne, [61fbb888b8c4350168634cc39e658b75], 
PUP.Optional.TidyNetwork.A, C:\Users\WK\AppData\Local\TNT2\2.0.0.1676\npTNT2.dll, In Quarantäne, [61fbb888b8c4350168634cc39e658b75], 
PUP.Optional.TidyNetwork.A, C:\Users\WK\AppData\Local\TNT2\2.0.0.1676\npTNT2Ghost.dll, In Quarantäne, [61fbb888b8c4350168634cc39e658b75], 
PUP.Optional.TidyNetwork.A, C:\Users\WK\AppData\Local\TNT2\2.0.0.1676\PARTNER.TNT, In Quarantäne, [61fbb888b8c4350168634cc39e658b75], 
PUP.Optional.TidyNetwork.A, C:\Users\WK\AppData\Local\TNT2\2.0.0.1676\passport64.dll, In Quarantäne, [61fbb888b8c4350168634cc39e658b75], 
PUP.Optional.TidyNetwork.A, C:\Users\WK\AppData\Local\TNT2\2.0.0.1676\pinnedSearch.htm, In Quarantäne, [61fbb888b8c4350168634cc39e658b75], 
PUP.Optional.TidyNetwork.A, C:\Users\WK\AppData\Local\TNT2\2.0.0.1676\pinnedSearch_FindWide.htm, In Quarantäne, [61fbb888b8c4350168634cc39e658b75], 
PUP.Optional.TidyNetwork.A, C:\Users\WK\AppData\Local\TNT2\2.0.0.1676\progress.1.dll, In Quarantäne, [61fbb888b8c4350168634cc39e658b75], 
PUP.Optional.TidyNetwork.A, C:\Users\WK\AppData\Local\TNT2\2.0.0.1676\regsvr.1.dll, In Quarantäne, [61fbb888b8c4350168634cc39e658b75], 
PUP.Optional.TidyNetwork.A, C:\Users\WK\AppData\Local\TNT2\2.0.0.1676\RemoteSkin.wms, In Quarantäne, [61fbb888b8c4350168634cc39e658b75], 
PUP.Optional.TidyNetwork.A, C:\Users\WK\AppData\Local\TNT2\2.0.0.1676\sqlite.1.dll, In Quarantäne, [61fbb888b8c4350168634cc39e658b75], 
PUP.Optional.TidyNetwork.A, C:\Users\WK\AppData\Local\TNT2\2.0.0.1676\tnt2chrome.dll, In Quarantäne, [61fbb888b8c4350168634cc39e658b75], 
PUP.Optional.TidyNetwork.A, C:\Users\WK\AppData\Local\TNT2\2.0.0.1676\TNT2User.exe, In Quarantäne, [61fbb888b8c4350168634cc39e658b75], 
PUP.Optional.TidyNetwork.A, C:\Users\WK\AppData\Local\TNT2\2.0.0.1676\TNT2UserPS64.dll, In Quarantäne, [61fbb888b8c4350168634cc39e658b75], 
PUP.Optional.TidyNetwork.A, C:\Users\WK\AppData\Local\TNT2\2.0.0.1676\TntMagicDel.dll, In Quarantäne, [61fbb888b8c4350168634cc39e658b75], 
PUP.Optional.TidyNetwork.A, C:\Users\WK\AppData\Local\TNT2\2.0.0.1676\UnInjLib.dll, In Quarantäne, [61fbb888b8c4350168634cc39e658b75], 
PUP.Optional.TidyNetwork.A, C:\Users\WK\AppData\Local\TNT2\2.0.0.1676\UnInjLib64.dll, In Quarantäne, [61fbb888b8c4350168634cc39e658b75], 
PUP.Optional.TidyNetwork.A, C:\Users\WK\AppData\Local\TNT2\2.0.0.1676\UNINSTALL.TNT, In Quarantäne, [61fbb888b8c4350168634cc39e658b75], 
PUP.Optional.TidyNetwork.A, C:\Users\WK\AppData\Local\TNT2\2.0.0.1676\UninstallDlg.1.dll, In Quarantäne, [61fbb888b8c4350168634cc39e658b75], 
PUP.Optional.TidyNetwork.A, C:\Users\WK\AppData\Local\TNT2\2.0.0.1676\untar.1.dll, In Quarantäne, [61fbb888b8c4350168634cc39e658b75], 
PUP.Optional.TidyNetwork.A, C:\Users\WK\AppData\Local\TNT2\2.0.0.1676\UPDATE.TNT, In Quarantäne, [61fbb888b8c4350168634cc39e658b75], 
PUP.Optional.TidyNetwork.A, C:\Users\WK\AppData\Local\TNT2\2.0.0.1676\xpi.tar, In Quarantäne, [61fbb888b8c4350168634cc39e658b75], 
PUP.Optional.TidyNetwork.A, C:\Users\WK\AppData\Local\TNT2\2.0.0.1676\zipunzip.1.dll, In Quarantäne, [61fbb888b8c4350168634cc39e658b75], 
PUP.Optional.TidyNetwork.A,
         

Alt 26.11.2014, 21:08   #7
magnusson
 
mystartsearch entfernen - Standard

mystartsearch entfernen



Mailwarebytes Teil 3:

Code:
ATTFilter
C:\Users\WK\AppData\Local\TNT2\Common\GameConsole.exe, In Quarantäne, [61fbb888b8c4350168634cc39e658b75], 
PUP.Optional.TidyNetwork.A, C:\Users\WK\AppData\Local\TNT2\Common\pinnedSearch.htm, In Quarantäne, [61fbb888b8c4350168634cc39e658b75], 
PUP.Optional.TidyNetwork.A, C:\Users\WK\AppData\Local\TNT2\Profiles\10557\inst.ini, In Quarantäne, [61fbb888b8c4350168634cc39e658b75], 
PUP.Optional.TidyNetwork.A, C:\Users\WK\AppData\Local\TNT2\Profiles\10557\os10557.xml, In Quarantäne, [61fbb888b8c4350168634cc39e658b75], 
PUP.Optional.TidyNetwork.A, C:\Users\WK\AppData\Local\TNT2\Profiles\10557\PARTNER.1.TNT, In Quarantäne, [61fbb888b8c4350168634cc39e658b75], 
PUP.Optional.TidyNetwork.A, C:\Users\WK\AppData\Local\TNT2\Profiles\10557\partner.dat, In Quarantäne, [61fbb888b8c4350168634cc39e658b75], 
PUP.Optional.TidyNetwork.A, C:\Users\WK\AppData\Local\TNT2\Profiles\10557\passport.dll, In Quarantäne, [61fbb888b8c4350168634cc39e658b75], 
PUP.Optional.TidyNetwork.A, C:\Users\WK\AppData\Local\TNT2\Profiles\10557\passport64.dll, In Quarantäne, [61fbb888b8c4350168634cc39e658b75], 
PUP.Optional.TidyNetwork.A, C:\Users\WK\AppData\Local\TNT2\Profiles\10557\runt.ini, In Quarantäne, [61fbb888b8c4350168634cc39e658b75], 
PUP.Optional.TidyNetwork.A, C:\Users\WK\AppData\Local\TNT2\Profiles\10557\yah10557.xml, In Quarantäne, [61fbb888b8c4350168634cc39e658b75], 
PUP.Optional.Delta.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\ffxtlbr@delta.com\chrome.manifest, In Quarantäne, [0458e15f85f7cf67fc6661b2917216ea], 
PUP.Optional.Delta.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\ffxtlbr@delta.com\install.rdf, In Quarantäne, [0458e15f85f7cf67fc6661b2917216ea], 
PUP.Optional.Delta.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\ffxtlbr@delta.com\components\FFDisp.dll, In Quarantäne, [0458e15f85f7cf67fc6661b2917216ea], 
PUP.Optional.Delta.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\ffxtlbr@delta.com\content\delta.css, In Quarantäne, [0458e15f85f7cf67fc6661b2917216ea], 
PUP.Optional.Delta.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\ffxtlbr@delta.com\content\delta.xul, In Quarantäne, [0458e15f85f7cf67fc6661b2917216ea], 
PUP.Optional.Delta.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\ffxtlbr@delta.com\content\dpk.htm, In Quarantäne, [0458e15f85f7cf67fc6661b2917216ea], 
PUP.Optional.Delta.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\ffxtlbr@delta.com\content\hlprs.js, In Quarantäne, [0458e15f85f7cf67fc6661b2917216ea], 
PUP.Optional.Delta.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\ffxtlbr@delta.com\content\loader.xul, In Quarantäne, [0458e15f85f7cf67fc6661b2917216ea], 
PUP.Optional.Delta.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\ffxtlbr@delta.com\content\mtstart.js, In Quarantäne, [0458e15f85f7cf67fc6661b2917216ea], 
PUP.Optional.Delta.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\ffxtlbr@delta.com\content\serp.js, In Quarantäne, [0458e15f85f7cf67fc6661b2917216ea], 
PUP.Optional.Delta.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\ffxtlbr@delta.com\content\tmplt.js, In Quarantäne, [0458e15f85f7cf67fc6661b2917216ea], 
PUP.Optional.Delta.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\ffxtlbr@delta.com\content\imgs\arwDwn.gif, In Quarantäne, [0458e15f85f7cf67fc6661b2917216ea], 
PUP.Optional.Delta.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\ffxtlbr@delta.com\content\imgs\closeo.png, In Quarantäne, [0458e15f85f7cf67fc6661b2917216ea], 
PUP.Optional.Delta.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\ffxtlbr@delta.com\content\imgs\help_16.gif, In Quarantäne, [0458e15f85f7cf67fc6661b2917216ea], 
PUP.Optional.Delta.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\ffxtlbr@delta.com\content\imgs\home.gif, In Quarantäne, [0458e15f85f7cf67fc6661b2917216ea], 
PUP.Optional.Delta.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\ffxtlbr@delta.com\content\imgs\icon_seperator.png, In Quarantäne, [0458e15f85f7cf67fc6661b2917216ea], 
PUP.Optional.Delta.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\ffxtlbr@delta.com\content\imgs\logo.PNG, In Quarantäne, [0458e15f85f7cf67fc6661b2917216ea], 
PUP.Optional.Delta.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\ffxtlbr@delta.com\content\imgs\privecy_16_hot.gif, In Quarantäne, [0458e15f85f7cf67fc6661b2917216ea], 
PUP.Optional.Delta.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\ffxtlbr@delta.com\content\imgs\sign.jpg, In Quarantäne, [0458e15f85f7cf67fc6661b2917216ea], 
PUP.Optional.Delta.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\ffxtlbr@delta.com\content\imgs\specialoffer.gif, In Quarantäne, [0458e15f85f7cf67fc6661b2917216ea], 
PUP.Optional.Delta.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\ffxtlbr@delta.com\content\imgs\tellafriend.gif, In Quarantäne, [0458e15f85f7cf67fc6661b2917216ea], 
PUP.Optional.Delta.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\ffxtlbr@delta.com\content\imgs\uninstall.gif, In Quarantäne, [0458e15f85f7cf67fc6661b2917216ea], 
PUP.Optional.Delta.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\ffxtlbr@delta.com\content\imgs\flgs\ae.png, In Quarantäne, [0458e15f85f7cf67fc6661b2917216ea], 
PUP.Optional.Delta.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\ffxtlbr@delta.com\content\imgs\flgs\bg.png, In Quarantäne, [0458e15f85f7cf67fc6661b2917216ea], 
PUP.Optional.Delta.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\ffxtlbr@delta.com\content\imgs\flgs\ch.png, In Quarantäne, [0458e15f85f7cf67fc6661b2917216ea], 
PUP.Optional.Delta.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\ffxtlbr@delta.com\content\imgs\flgs\cn.png, In Quarantäne, [0458e15f85f7cf67fc6661b2917216ea], 
PUP.Optional.Delta.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\ffxtlbr@delta.com\content\imgs\flgs\cz.png, In Quarantäne, [0458e15f85f7cf67fc6661b2917216ea], 
PUP.Optional.Delta.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\ffxtlbr@delta.com\content\imgs\flgs\de.png, In Quarantäne, [0458e15f85f7cf67fc6661b2917216ea], 
PUP.Optional.Delta.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\ffxtlbr@delta.com\content\imgs\flgs\eg.png, In Quarantäne, [0458e15f85f7cf67fc6661b2917216ea], 
PUP.Optional.Delta.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\ffxtlbr@delta.com\content\imgs\flgs\en.png, In Quarantäne, [0458e15f85f7cf67fc6661b2917216ea], 
PUP.Optional.Delta.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\ffxtlbr@delta.com\content\imgs\flgs\es.png, In Quarantäne, [0458e15f85f7cf67fc6661b2917216ea], 
PUP.Optional.Delta.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\ffxtlbr@delta.com\content\imgs\flgs\fr.png, In Quarantäne, [0458e15f85f7cf67fc6661b2917216ea], 
PUP.Optional.Delta.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\ffxtlbr@delta.com\content\imgs\flgs\gr.png, In Quarantäne, [0458e15f85f7cf67fc6661b2917216ea], 
PUP.Optional.Delta.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\ffxtlbr@delta.com\content\imgs\flgs\he.png, In Quarantäne, [0458e15f85f7cf67fc6661b2917216ea], 
PUP.Optional.Delta.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\ffxtlbr@delta.com\content\imgs\flgs\il.png, In Quarantäne, [0458e15f85f7cf67fc6661b2917216ea], 
PUP.Optional.Delta.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\ffxtlbr@delta.com\content\imgs\flgs\it.png, In Quarantäne, [0458e15f85f7cf67fc6661b2917216ea], 
PUP.Optional.Delta.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\ffxtlbr@delta.com\content\imgs\flgs\ja.png, In Quarantäne, [0458e15f85f7cf67fc6661b2917216ea], 
PUP.Optional.Delta.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\ffxtlbr@delta.com\content\imgs\flgs\jp.png, In Quarantäne, [0458e15f85f7cf67fc6661b2917216ea], 
PUP.Optional.Delta.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\ffxtlbr@delta.com\content\imgs\flgs\nl.png, In Quarantäne, [0458e15f85f7cf67fc6661b2917216ea], 
PUP.Optional.Delta.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\ffxtlbr@delta.com\content\imgs\flgs\no.png, In Quarantäne, [0458e15f85f7cf67fc6661b2917216ea], 
PUP.Optional.Delta.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\ffxtlbr@delta.com\content\imgs\flgs\pl.png, In Quarantäne, [0458e15f85f7cf67fc6661b2917216ea], 
PUP.Optional.Delta.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\ffxtlbr@delta.com\content\imgs\flgs\pt.png, In Quarantäne, [0458e15f85f7cf67fc6661b2917216ea], 
PUP.Optional.Delta.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\ffxtlbr@delta.com\content\imgs\flgs\ro.png, In Quarantäne, [0458e15f85f7cf67fc6661b2917216ea], 
PUP.Optional.Delta.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\ffxtlbr@delta.com\content\imgs\flgs\ru.png, In Quarantäne, [0458e15f85f7cf67fc6661b2917216ea], 
PUP.Optional.Delta.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\ffxtlbr@delta.com\content\imgs\flgs\sa.png, In Quarantäne, [0458e15f85f7cf67fc6661b2917216ea], 
PUP.Optional.Delta.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\ffxtlbr@delta.com\content\imgs\flgs\se.png, In Quarantäne, [0458e15f85f7cf67fc6661b2917216ea], 
PUP.Optional.Delta.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\ffxtlbr@delta.com\content\imgs\flgs\sv.png, In Quarantäne, [0458e15f85f7cf67fc6661b2917216ea], 
PUP.Optional.Delta.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\ffxtlbr@delta.com\content\imgs\flgs\tr.png, In Quarantäne, [0458e15f85f7cf67fc6661b2917216ea], 
PUP.Optional.Delta.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\ffxtlbr@delta.com\content\imgs\flgs\ua.png, In Quarantäne, [0458e15f85f7cf67fc6661b2917216ea], 
PUP.Optional.Delta.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\ffxtlbr@delta.com\content\imgs\flgs\us.png, In Quarantäne, [0458e15f85f7cf67fc6661b2917216ea], 
PUP.Optional.Delta.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\ffxtlbr@delta.com\META-INF\manifest.mf, In Quarantäne, [0458e15f85f7cf67fc6661b2917216ea], 
PUP.Optional.Delta.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\ffxtlbr@delta.com\META-INF\zigbert.rsa, In Quarantäne, [0458e15f85f7cf67fc6661b2917216ea], 
PUP.Optional.Delta.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\ffxtlbr@delta.com\META-INF\zigbert.sf, In Quarantäne, [0458e15f85f7cf67fc6661b2917216ea], 
PUP.Optional.MindSpark.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\4jffxtbr@RadioRage_4j.com\bootstrap.js, In Quarantäne, [8bd177c95b21aa8c7102987f5aa9916f], 
PUP.Optional.MindSpark.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\4jffxtbr@RadioRage_4j.com\chrome.manifest, In Quarantäne, [8bd177c95b21aa8c7102987f5aa9916f], 
PUP.Optional.MindSpark.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\4jffxtbr@RadioRage_4j.com\install.rdf, In Quarantäne, [8bd177c95b21aa8c7102987f5aa9916f], 
PUP.Optional.MindSpark.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\4jffxtbr@RadioRage_4j.com\install_no_bootstrap.rdf, In Quarantäne, [8bd177c95b21aa8c7102987f5aa9916f], 
PUP.Optional.MindSpark.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\4jffxtbr@RadioRage_4j.com\chrome\4jffxtbr.jar, In Quarantäne, [8bd177c95b21aa8c7102987f5aa9916f], 
PUP.Optional.MindSpark.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\4jffxtbr@RadioRage_4j.com\META-INF\manifest.mf, In Quarantäne, [8bd177c95b21aa8c7102987f5aa9916f], 
PUP.Optional.MindSpark.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\4jffxtbr@RadioRage_4j.com\META-INF\zigbert.rsa, In Quarantäne, [8bd177c95b21aa8c7102987f5aa9916f], 
PUP.Optional.MindSpark.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\4jffxtbr@RadioRage_4j.com\META-INF\zigbert.sf, In Quarantäne, [8bd177c95b21aa8c7102987f5aa9916f], 
PUP.Optional.MindSpark.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\4jffxtbr@RadioRage_4j.com\plugins\NativeMessagingDispatcher.dll, In Quarantäne, [8bd177c95b21aa8c7102987f5aa9916f], 
PUP.Optional.MindSpark.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\RadioRage_4j\01810FE4-023D-435D-A901-3F6801E21B3B.sqlite, In Quarantäne, [194361df4f2d1125c2b42ceb956e40c0], 
PUP.Optional.MindSpark.A, C:\Program Files (x86)\RadioRage_4j\bar\1.bin\4jdatact.dll, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, C:\Program Files (x86)\RadioRage_4j\bar\1.bin\4jdyn.dll, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, C:\Program Files (x86)\RadioRage_4j\bar\1.bin\4jfeedmg.dll, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, C:\Program Files (x86)\RadioRage_4j\bar\1.bin\4jhighin.exe, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, C:\Program Files (x86)\RadioRage_4j\bar\1.bin\4jhkstub.dll, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, C:\Program Files (x86)\RadioRage_4j\bar\1.bin\4jhtmlmu.dll, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, C:\Program Files (x86)\RadioRage_4j\bar\1.bin\4jhttpct.dll, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, C:\Program Files (x86)\RadioRage_4j\bar\1.bin\4jidle.dll, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, C:\Program Files (x86)\RadioRage_4j\bar\1.bin\4jimpipe.exe, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, C:\Program Files (x86)\RadioRage_4j\bar\1.bin\4jmedint.exe, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, C:\Program Files (x86)\RadioRage_4j\bar\1.bin\4jmlbtn.dll, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, C:\Program Files (x86)\RadioRage_4j\bar\1.bin\4jmsg.dll, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, C:\Program Files (x86)\RadioRage_4j\bar\1.bin\4jPlugin.dll, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, C:\Program Files (x86)\RadioRage_4j\bar\1.bin\4jradio.dll, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, C:\Program Files (x86)\RadioRage_4j\bar\1.bin\4jregfft.dll, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, C:\Program Files (x86)\RadioRage_4j\bar\1.bin\4jreghk.dll, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, C:\Program Files (x86)\RadioRage_4j\bar\1.bin\4jscript.dll, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, C:\Program Files (x86)\RadioRage_4j\bar\1.bin\4jskin.dll, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, C:\Program Files (x86)\RadioRage_4j\bar\1.bin\4jskplay.exe, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, C:\Program Files (x86)\RadioRage_4j\bar\1.bin\4jtpinst.dll, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, C:\Program Files (x86)\RadioRage_4j\bar\1.bin\4juabtn.dll, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, C:\Program Files (x86)\RadioRage_4j\bar\1.bin\AppIntegratorStub64.dll, Löschen bei Neustart, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, C:\Program Files (x86)\RadioRage_4j\bar\1.bin\BOOTSTRAP.JS, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, C:\Program Files (x86)\RadioRage_4j\bar\1.bin\CHROME.MANIFEST, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, C:\Program Files (x86)\RadioRage_4j\bar\1.bin\CREXT.DLL, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, C:\Program Files (x86)\RadioRage_4j\bar\1.bin\CrExtP4j.exe, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, C:\Program Files (x86)\RadioRage_4j\bar\1.bin\DPNMNGR.DLL, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, C:\Program Files (x86)\RadioRage_4j\bar\1.bin\EXEMANAGER.DLL, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, C:\Program Files (x86)\RadioRage_4j\bar\1.bin\Hpg64.dll, Löschen bei Neustart, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, C:\Program Files (x86)\RadioRage_4j\bar\1.bin\INSTALL.RDF, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, C:\Program Files (x86)\RadioRage_4j\bar\1.bin\installKeys.js, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, C:\Program Files (x86)\RadioRage_4j\bar\1.bin\LOGO.BMP, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, C:\Program Files (x86)\RadioRage_4j\bar\1.bin\NP4jStub.dll, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, C:\Program Files (x86)\RadioRage_4j\bar\1.bin\T8EXTEX.DLL, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, C:\Program Files (x86)\RadioRage_4j\bar\1.bin\T8EXTPEX.DLL, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, C:\Program Files (x86)\RadioRage_4j\bar\1.bin\T8HTML.DLL, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, C:\Program Files (x86)\RadioRage_4j\bar\1.bin\T8RES.DLL, Löschen bei Neustart, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, C:\Program Files (x86)\RadioRage_4j\bar\1.bin\T8TICKER.DLL, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, C:\Program Files (x86)\RadioRage_4j\bar\1.bin\VERIFY.DLL, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, C:\Program Files (x86)\RadioRage_4j\bar\1.bin\chrome\4jffxtbr.jar, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, C:\Program Files (x86)\RadioRage_4j\bar\gen1\COMMON.T8S, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, C:\Program Files (x86)\RadioRage_4j\bar\IE9Mesg\COMMON.T8S, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, C:\Program Files (x86)\RadioRage_4j\bar\Message\COMMON.T8S, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, C:\Program Files (x86)\RadioRage_4j\bar\Settings\s_pid.dat, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.SweetIM.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\jcdgjdiieiljkfkdcloehkohchhpekkn\1.0.0.0_0\128.png, In Quarantäne, [3824a29e3b41979f1e67fb29699a7d83], 
PUP.Optional.SweetIM.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\jcdgjdiieiljkfkdcloehkohchhpekkn\1.0.0.0_0\16.png, In Quarantäne, [3824a29e3b41979f1e67fb29699a7d83], 
PUP.Optional.SweetIM.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\jcdgjdiieiljkfkdcloehkohchhpekkn\1.0.0.0_0\48.png, In Quarantäne, [3824a29e3b41979f1e67fb29699a7d83], 
PUP.Optional.SweetIM.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\jcdgjdiieiljkfkdcloehkohchhpekkn\1.0.0.0_0\Copy of fbsim.js, In Quarantäne, [3824a29e3b41979f1e67fb29699a7d83], 
PUP.Optional.SweetIM.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\jcdgjdiieiljkfkdcloehkohchhpekkn\1.0.0.0_0\Copy of manifest.json, In Quarantäne, [3824a29e3b41979f1e67fb29699a7d83], 
PUP.Optional.SweetIM.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\jcdgjdiieiljkfkdcloehkohchhpekkn\1.0.0.0_0\fbsim.js, In Quarantäne, [3824a29e3b41979f1e67fb29699a7d83], 
PUP.Optional.SweetIM.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\jcdgjdiieiljkfkdcloehkohchhpekkn\1.0.0.0_0\manifest.json, In Quarantäne, [3824a29e3b41979f1e67fb29699a7d83], 
PUP.Optional.FastStart.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\faststartff@gmail.com\chrome.manifest, In Quarantäne, [0d4f8ab6077588aea6e86bb9956ef60a], 
PUP.Optional.FastStart.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\faststartff@gmail.com\install.rdf, In Quarantäne, [0d4f8ab6077588aea6e86bb9956ef60a], 
PUP.Optional.FastStart.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\faststartff@gmail.com\chrome\content\index.html, In Quarantäne, [0d4f8ab6077588aea6e86bb9956ef60a], 
PUP.Optional.FastStart.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\faststartff@gmail.com\chrome\content\quick_start.js, In Quarantäne, [0d4f8ab6077588aea6e86bb9956ef60a], 
PUP.Optional.FastStart.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\faststartff@gmail.com\chrome\content\quick_start.xul, In Quarantäne, [0d4f8ab6077588aea6e86bb9956ef60a], 
PUP.Optional.FastStart.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\faststartff@gmail.com\chrome\content\include\speed_dial.js, In Quarantäne, [0d4f8ab6077588aea6e86bb9956ef60a], 
PUP.Optional.FastStart.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\faststartff@gmail.com\chrome\content\include\tools\about_blank_hook.js, In Quarantäne, [0d4f8ab6077588aea6e86bb9956ef60a], 
PUP.Optional.FastStart.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\faststartff@gmail.com\chrome\content\include\tools\misc.js, In Quarantäne, [0d4f8ab6077588aea6e86bb9956ef60a], 
PUP.Optional.FastStart.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\faststartff@gmail.com\chrome\content\include\tools\popup_image_helper.js, In Quarantäne, [0d4f8ab6077588aea6e86bb9956ef60a], 
PUP.Optional.FastStart.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\faststartff@gmail.com\chrome\content\include\tools\urlrequestor.js, In Quarantäne, [0d4f8ab6077588aea6e86bb9956ef60a], 
PUP.Optional.FastStart.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\faststartff@gmail.com\chrome\content\js\js.js, In Quarantäne, [0d4f8ab6077588aea6e86bb9956ef60a], 
PUP.Optional.FastStart.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\faststartff@gmail.com\chrome\content\js\lib\doT.min.js, In Quarantäne, [0d4f8ab6077588aea6e86bb9956ef60a], 
PUP.Optional.FastStart.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\faststartff@gmail.com\chrome\content\js\lib\jquery-2.1.0.min.js, In Quarantäne, [0d4f8ab6077588aea6e86bb9956ef60a], 
PUP.Optional.FastStart.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\faststartff@gmail.com\chrome\content\js\lib\jquery.autocomplete.js, In Quarantäne, [0d4f8ab6077588aea6e86bb9956ef60a], 
PUP.Optional.FastStart.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\faststartff@gmail.com\chrome\content\js\module\hotSearch.js, In Quarantäne, [0d4f8ab6077588aea6e86bb9956ef60a], 
PUP.Optional.FastStart.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\faststartff@gmail.com\chrome\content\js\module\mostgrid.js, In Quarantäne, [0d4f8ab6077588aea6e86bb9956ef60a], 
PUP.Optional.FastStart.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\faststartff@gmail.com\chrome\content\js\module\search.js, In Quarantäne, [0d4f8ab6077588aea6e86bb9956ef60a], 
PUP.Optional.FastStart.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\faststartff@gmail.com\chrome\content\js\module\stat.js, In Quarantäne, [0d4f8ab6077588aea6e86bb9956ef60a], 
PUP.Optional.FastStart.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\faststartff@gmail.com\chrome\content\js\pack\common.js, In Quarantäne, [0d4f8ab6077588aea6e86bb9956ef60a], 
PUP.Optional.FastStart.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\faststartff@gmail.com\chrome\skin\newtab.ico, In Quarantäne, [0d4f8ab6077588aea6e86bb9956ef60a], 
PUP.Optional.FastStart.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\faststartff@gmail.com\chrome\skin\simple.css, In Quarantäne, [0d4f8ab6077588aea6e86bb9956ef60a], 
PUP.Optional.FastStart.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\faststartff@gmail.com\chrome\skin\style.css, In Quarantäne, [0d4f8ab6077588aea6e86bb9956ef60a], 
PUP.Optional.FastStart.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\faststartff@gmail.com\defaults\preferences\fvd.js, In Quarantäne, [0d4f8ab6077588aea6e86bb9956ef60a], 
PUP.Optional.FastStart.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\faststartff@gmail.com\defaults\preferences\preferences.js, In Quarantäne, [0d4f8ab6077588aea6e86bb9956ef60a], 
PUP.Optional.FastStart.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\faststartff@gmail.com\modules\addonmanager.js, In Quarantäne, [0d4f8ab6077588aea6e86bb9956ef60a], 
PUP.Optional.FastStart.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\faststartff@gmail.com\modules\aes.js, In Quarantäne, [0d4f8ab6077588aea6e86bb9956ef60a], 
PUP.Optional.FastStart.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\faststartff@gmail.com\modules\config.js, In Quarantäne, [0d4f8ab6077588aea6e86bb9956ef60a], 
PUP.Optional.FastStart.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\faststartff@gmail.com\modules\dialogs.js, In Quarantäne, [0d4f8ab6077588aea6e86bb9956ef60a], 
PUP.Optional.FastStart.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\faststartff@gmail.com\modules\last_tab.js, In Quarantäne, [0d4f8ab6077588aea6e86bb9956ef60a], 
PUP.Optional.FastStart.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\faststartff@gmail.com\modules\misc.js, In Quarantäne, [0d4f8ab6077588aea6e86bb9956ef60a], 
PUP.Optional.FastStart.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\faststartff@gmail.com\modules\properties.js, In Quarantäne, [0d4f8ab6077588aea6e86bb9956ef60a], 
PUP.Optional.FastStart.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\faststartff@gmail.com\modules\remoterequest.js, In Quarantäne, [0d4f8ab6077588aea6e86bb9956ef60a], 
PUP.Optional.FastStart.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\faststartff@gmail.com\modules\restoreprefs.js, In Quarantäne, [0d4f8ab6077588aea6e86bb9956ef60a], 
PUP.Optional.FastStart.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\faststartff@gmail.com\modules\settings.js, In Quarantäne, [0d4f8ab6077588aea6e86bb9956ef60a], 
PUP.Optional.WPM.A, C:\ProgramData\WindowsMangerProtect\update\conf, In Quarantäne, [71eb1b250d6ff343d5f4200537ccec14], 
PUP.Optional.GlobalUpdate.A, C:\Users\WK\AppData\Local\Temp\comh.184037\GoogleCrashHandler.exe, In Quarantäne, [7ae2d16fa9d3bb7b991e41e6e51e15eb], 
PUP.Optional.GlobalUpdate.A, C:\Users\WK\AppData\Local\Temp\comh.184037\GoogleUpdate.exe, In Quarantäne, [7ae2d16fa9d3bb7b991e41e6e51e15eb], 
PUP.Optional.GlobalUpdate.A, C:\Users\WK\AppData\Local\Temp\comh.184037\GoogleUpdateBroker.exe, In Quarantäne, [7ae2d16fa9d3bb7b991e41e6e51e15eb], 
PUP.Optional.GlobalUpdate.A, C:\Users\WK\AppData\Local\Temp\comh.184037\GoogleUpdateHelper.msi, In Quarantäne, [7ae2d16fa9d3bb7b991e41e6e51e15eb], 
PUP.Optional.GlobalUpdate.A, C:\Users\WK\AppData\Local\Temp\comh.184037\GoogleUpdateOnDemand.exe, In Quarantäne, [7ae2d16fa9d3bb7b991e41e6e51e15eb], 
PUP.Optional.GlobalUpdate.A, C:\Users\WK\AppData\Local\Temp\comh.184037\goopdate.dll, In Quarantäne, [7ae2d16fa9d3bb7b991e41e6e51e15eb], 
PUP.Optional.GlobalUpdate.A, C:\Users\WK\AppData\Local\Temp\comh.184037\goopdateres_en.dll, In Quarantäne, [7ae2d16fa9d3bb7b991e41e6e51e15eb], 
PUP.Optional.GlobalUpdate.A, C:\Users\WK\AppData\Local\Temp\comh.184037\npGoogleUpdate4.dll, In Quarantäne, [7ae2d16fa9d3bb7b991e41e6e51e15eb], 
PUP.Optional.GlobalUpdate.A, C:\Users\WK\AppData\Local\Temp\comh.184037\psmachine.dll, In Quarantäne, [7ae2d16fa9d3bb7b991e41e6e51e15eb], 
PUP.Optional.GlobalUpdate.A, C:\Users\WK\AppData\Local\Temp\comh.184037\psuser.dll, In Quarantäne, [7ae2d16fa9d3bb7b991e41e6e51e15eb], 
PUP.Optional.GlobalUpdate.A, C:\Users\WK\AppData\Local\Temp\comh.220626\GoogleCrashHandler.exe, In Quarantäne, [93c9fb45fb81a88e02b56eb9b251be42], 
PUP.Optional.GlobalUpdate.A, C:\Users\WK\AppData\Local\Temp\comh.220626\GoogleUpdate.exe, In Quarantäne, [93c9fb45fb81a88e02b56eb9b251be42], 
PUP.Optional.GlobalUpdate.A, C:\Users\WK\AppData\Local\Temp\comh.220626\GoogleUpdateBroker.exe, In Quarantäne, [93c9fb45fb81a88e02b56eb9b251be42], 
PUP.Optional.GlobalUpdate.A, C:\Users\WK\AppData\Local\Temp\comh.220626\GoogleUpdateHelper.msi, In Quarantäne, [93c9fb45fb81a88e02b56eb9b251be42], 
PUP.Optional.GlobalUpdate.A, C:\Users\WK\AppData\Local\Temp\comh.220626\GoogleUpdateOnDemand.exe, In Quarantäne, [93c9fb45fb81a88e02b56eb9b251be42], 
PUP.Optional.GlobalUpdate.A, C:\Users\WK\AppData\Local\Temp\comh.220626\goopdate.dll, In Quarantäne, [93c9fb45fb81a88e02b56eb9b251be42], 
PUP.Optional.GlobalUpdate.A, C:\Users\WK\AppData\Local\Temp\comh.220626\goopdateres_en.dll, In Quarantäne, [93c9fb45fb81a88e02b56eb9b251be42], 
PUP.Optional.GlobalUpdate.A, C:\Users\WK\AppData\Local\Temp\comh.220626\npGoogleUpdate4.dll, In Quarantäne, [93c9fb45fb81a88e02b56eb9b251be42], 
PUP.Optional.GlobalUpdate.A, C:\Users\WK\AppData\Local\Temp\comh.220626\psmachine.dll, In Quarantäne, [93c9fb45fb81a88e02b56eb9b251be42], 
PUP.Optional.GlobalUpdate.A, C:\Users\WK\AppData\Local\Temp\comh.220626\psuser.dll, In Quarantäne, [93c9fb45fb81a88e02b56eb9b251be42], 
PUP.Optional.GlobalUpdate.A, C:\Users\WK\AppData\Local\Temp\comh.402506\GoogleCrashHandler.exe, In Quarantäne, [7be1dd63c0bc3df940778e9926dd46ba], 
PUP.Optional.GlobalUpdate.A, C:\Users\WK\AppData\Local\Temp\comh.402506\GoogleUpdate.exe, In Quarantäne, [7be1dd63c0bc3df940778e9926dd46ba], 
PUP.Optional.GlobalUpdate.A, C:\Users\WK\AppData\Local\Temp\comh.402506\GoogleUpdateBroker.exe, In Quarantäne, [7be1dd63c0bc3df940778e9926dd46ba], 
PUP.Optional.GlobalUpdate.A, C:\Users\WK\AppData\Local\Temp\comh.402506\GoogleUpdateHelper.msi, In Quarantäne, [7be1dd63c0bc3df940778e9926dd46ba], 
PUP.Optional.GlobalUpdate.A, C:\Users\WK\AppData\Local\Temp\comh.402506\GoogleUpdateOnDemand.exe, In Quarantäne, [7be1dd63c0bc3df940778e9926dd46ba], 
PUP.Optional.GlobalUpdate.A, C:\Users\WK\AppData\Local\Temp\comh.402506\goopdate.dll, In Quarantäne, [7be1dd63c0bc3df940778e9926dd46ba], 
PUP.Optional.GlobalUpdate.A, C:\Users\WK\AppData\Local\Temp\comh.402506\goopdateres_en.dll, In Quarantäne, [7be1dd63c0bc3df940778e9926dd46ba], 
PUP.Optional.GlobalUpdate.A, C:\Users\WK\AppData\Local\Temp\comh.402506\npGoogleUpdate4.dll, In Quarantäne, [7be1dd63c0bc3df940778e9926dd46ba], 
PUP.Optional.GlobalUpdate.A, C:\Users\WK\AppData\Local\Temp\comh.402506\psmachine.dll, In Quarantäne, [7be1dd63c0bc3df940778e9926dd46ba], 
PUP.Optional.GlobalUpdate.A, C:\Users\WK\AppData\Local\Temp\comh.402506\psuser.dll, In Quarantäne, [7be1dd63c0bc3df940778e9926dd46ba], 
PUP.Optional.GlobalUpdate.A, C:\Users\WK\AppData\Local\Temp\comh.418946\GoogleCrashHandler.exe, In Quarantäne, [ff5d9da35a22d75ff3c42cfb659e58a8], 
PUP.Optional.GlobalUpdate.A, C:\Users\WK\AppData\Local\Temp\comh.418946\GoogleUpdate.exe, In Quarantäne, [ff5d9da35a22d75ff3c42cfb659e58a8], 
PUP.Optional.GlobalUpdate.A, C:\Users\WK\AppData\Local\Temp\comh.418946\GoogleUpdateBroker.exe, In Quarantäne, [ff5d9da35a22d75ff3c42cfb659e58a8], 
PUP.Optional.GlobalUpdate.A, C:\Users\WK\AppData\Local\Temp\comh.418946\GoogleUpdateHelper.msi, In Quarantäne, [ff5d9da35a22d75ff3c42cfb659e58a8], 
PUP.Optional.GlobalUpdate.A, C:\Users\WK\AppData\Local\Temp\comh.418946\GoogleUpdateOnDemand.exe, In Quarantäne, [ff5d9da35a22d75ff3c42cfb659e58a8], 
PUP.Optional.GlobalUpdate.A, C:\Users\WK\AppData\Local\Temp\comh.418946\goopdate.dll, In Quarantäne, [ff5d9da35a22d75ff3c42cfb659e58a8], 
PUP.Optional.GlobalUpdate.A, C:\Users\WK\AppData\Local\Temp\comh.418946\goopdateres_en.dll, In Quarantäne, [ff5d9da35a22d75ff3c42cfb659e58a8], 
PUP.Optional.GlobalUpdate.A, C:\Users\WK\AppData\Local\Temp\comh.418946\npGoogleUpdate4.dll, In Quarantäne, [ff5d9da35a22d75ff3c42cfb659e58a8], 
PUP.Optional.GlobalUpdate.A, C:\Users\WK\AppData\Local\Temp\comh.418946\psmachine.dll, In Quarantäne, [ff5d9da35a22d75ff3c42cfb659e58a8], 
PUP.Optional.GlobalUpdate.A, C:\Users\WK\AppData\Local\Temp\comh.418946\psuser.dll, In Quarantäne, [ff5d9da35a22d75ff3c42cfb659e58a8], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\chrome.manifest, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\install.rdf, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\chrome\content\1b5159d8b1ba7d5f1b300c36f488de48.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\chrome\content\3c6a975dc44b6c3db170c4bd507a4138.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\chrome\content\4f6172b246c173f2d576557c5d9a25cc.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\chrome\content\85a1a1e864e4a866c9136a144cf600f8.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\chrome\content\background.html, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\chrome\content\browser.xul, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\chrome\content\c45da075a06d33f2160718f3de248d2e.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\chrome\content\ccba7490c229d9f49b34653186c4f5ca.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\chrome\content\dialog.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\chrome\content\ffCoreFilesIndex.txt, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\chrome\content\options.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\chrome\content\options.xul, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\chrome\content\search_dialog.xul, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\chrome\content\api\134d8aae21203387071f1b64d4cb9951.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\chrome\content\api\4deb54189456848d5746f9edba27cdc7.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\chrome\content\api\5b5841b5b0f8dbf617004a9100d67380.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\chrome\content\api\642e5c6150da749da7fc4f50009218dd.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\chrome\content\api\73b82b493900859222670c4e770a1eea.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\chrome\content\api\80a2f673ceb25ede8e97d207064524e9.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\chrome\content\api\8194957c49a3709202e93597b7380263.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\chrome\content\api\8a421e2fe69bd6d6e9937d575e792921.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\chrome\content\api\aab0c040daa7a486011abf363abb8354.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\chrome\content\api\b3989abb04984e5787275121b666c9a4.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\chrome\content\api\d1d82a44bfc9edf97495abaf510d7c0d.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\chrome\content\api\db54c8704259f2c215acef7c7e2148de.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\chrome\content\api\e0e0650b2f7d27ddf03a131920ac4cfb.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\chrome\content\api\e6b2dd4a61bc3069b3ca4b316bdfd1ab.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\chrome\content\api\f12121b900bf0a4562f1eba7f973a24a.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\chrome\content\api\f3c4098fba181331d3b5fb205ec76dab.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\chrome\content\core\16f8ef1407ddf022e18130c2df3749db.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\chrome\content\core\36a645f4ed63377004d6e0245985e98c.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\chrome\content\core\590945f0677af9f5c63e614994bcc7ad.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\chrome\content\core\5be92d7b50bd3750597ceb7eda88d995.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\chrome\content\core\5fa26173475f6307dd1edda2d4ed251d.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\chrome\content\core\63bcecd0043dab5d26160f0bb2fbf66f.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\chrome\content\core\7dcca4a2eda1e05fb6e80ed011889e58.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\chrome\content\core\7ddf428a9b9a488f7b2458fd96e13416.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\chrome\content\core\8178dee0133955509f29665352971f5d.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\chrome\content\core\986fab7ba0139720aa9409229b3fe369.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\chrome\content\core\b4c696b95248684e986a960f05761600.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\chrome\content\core\b712185997b9096f0047c6bff5ae4d59.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\chrome\content\core\b9c30389369a23906255a7ebb9a3950b.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\chrome\content\core\c241f5236820929667c188c664b15657.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\chrome\content\core\c52a2358f339cd49d0d00605a36de26b.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\chrome\content\core\c5d6d75f2646f510da08267d43a9e342.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\chrome\content\core\cabf0ee03bc5d82dbaa9ccaa2b96d039.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\chrome\content\core\da5e855b954902676afed64e60adff15.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\chrome\content\core\eb3ee79237c498c79432fc1bd6eebf96.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\chrome\content\core\f69121513cbedefa53019678e8959f83.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\chrome\content\core\installer.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\defaults\preferences\prefs.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\extensionData\manifest.xml, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\extensionData\plugins.json, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\extensionData\plugins\246.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\extensionData\plugins\102.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\extensionData\plugins\104.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\extensionData\plugins\119.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\extensionData\plugins\123.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\extensionData\plugins\13.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\extensionData\plugins\14.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\extensionData\plugins\16.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\extensionData\plugins\17.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\extensionData\plugins\178.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\extensionData\plugins\179.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\extensionData\plugins\180.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\extensionData\plugins\184.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\extensionData\plugins\191.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\extensionData\plugins\195.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\extensionData\plugins\220.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\extensionData\plugins\221.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\extensionData\plugins\223.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\extensionData\plugins\231.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\extensionData\plugins\232.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\extensionData\plugins\242.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\extensionData\plugins\260.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\extensionData\plugins\262.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\extensionData\plugins\263.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\extensionData\plugins\268.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\extensionData\plugins\273.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\extensionData\plugins\281.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\extensionData\plugins\286.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\extensionData\plugins\288.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\extensionData\plugins\289.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\extensionData\plugins\300.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\extensionData\plugins\302.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\extensionData\plugins\335.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\extensionData\plugins\4.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\extensionData\plugins\47.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\extensionData\plugins\64.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\extensionData\plugins\7.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\extensionData\plugins\78.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\extensionData\plugins\9.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\extensionData\plugins\91.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\extensionData\plugins\93.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\extensionData\userCode\background.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\extensionData\userCode\extension.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\locale\en-US\translations.dtd, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\skin\button1.png, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\skin\button2.png, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\skin\button3.png, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\skin\button4.png, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\skin\button5.png, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\skin\crossrider_statusbar.png, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\skin\icon128.png, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\skin\icon16.png, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\skin\icon24.png, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\skin\icon48.png, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\skin\panelarrow-up.png, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\skin\popup.html, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\skin\skin.css, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\skin\update.css, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\chrome.manifest, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\install.rdf, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\chrome\content\7282e8ce5cf6004919aaf532771a4e81.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\chrome\content\72bca7c57758108755abcf4b0b33ec1d.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\chrome\content\7cb78b648c9641d631f4a1e12b9d6987.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\chrome\content\background.html, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\chrome\content\browser.xul, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\chrome\content\ce7d214169ac6743b13a3a15b8932ff8.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\chrome\content\d46657d4d8ff596c871bbcafdd1962a9.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\chrome\content\dialog.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\chrome\content\e842da08e851f60e83c894ca9c033919.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\chrome\content\ffCoreFilesIndex.txt, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\chrome\content\options.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\chrome\content\options.xul, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\chrome\content\search_dialog.xul, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\chrome\content\api\6b69af9d91a5a62ae74275edefc77fd7.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\chrome\content\api\026bce0754420c42d573be5a1b5c2f4f.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\chrome\content\api\0d181a4d45b579575ae6f20921e02861.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\chrome\content\api\1224688300df08b34f4c98319360cdcb.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\chrome\content\api\28a78f46b9d33ee87d0bedc28ab27294.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\chrome\content\api\2ca4683889e86f9a74eb5ea3295b39d8.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\chrome\content\api\494dc224d5cbdf0a1ef140ba366f0396.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\chrome\content\api\529ecd53b6a3661a512fdcbdfa6b17c6.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\chrome\content\api\588648870f6d7e7df89def91371bc75a.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\chrome\content\api\79d5113a5f3ea84cf1b1598439e2a2e4.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\chrome\content\api\c34e415ed47b2f919343455dd5d04b85.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\chrome\content\api\d7c8a1b2d38663ef9f046ddb7b8b0c81.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\chrome\content\api\e84b43db0351947eeabd7949037a9b40.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\chrome\content\api\e9d4226b331fdb4504085d79594f5b1c.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\chrome\content\api\ece8531affc2c398441a92e34432884e.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\chrome\content\api\f695e00e3db866fb6a4c8068e846912a.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\chrome\content\core\a6c26e20a28f2aae3676cf85f065d924.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\chrome\content\core\02268151e8e8f4107ddfcdf460b7b50b.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\chrome\content\core\0bf5c76cd424aa11a622cf173a42a815.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\chrome\content\core\1538081ae52d19168f181c1e9a9b89eb.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\chrome\content\core\1a9f696356d9cc78ee6a3cc65e28b86a.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\chrome\content\core\21cd53c58c9972fd26d4e04c3bdb10c6.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\chrome\content\core\2ceda814ac378a5914b4f800fd986936.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\chrome\content\core\4f7c0ab4251d16346032d6e106ea499c.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\chrome\content\core\6178cd09849a0dd0c103ab64da25bec7.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\chrome\content\core\719dbb17d508c5ca87b28539279fa8de.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\chrome\content\core\a0346e6ff505770a74184359d0c155a3.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\chrome\content\core\a7a2b2122fb1d69c4681958c88c1b652.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\chrome\content\core\b5fa314283697105494fc111bada3f74.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\chrome\content\core\bd5e922c5aa21cc05c8d82bb8e374e3e.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\chrome\content\core\d945d1e4d7bf0c202af01e717e89c320.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\chrome\content\core\ea6353a71923b6adfc7909b832a356d0.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\chrome\content\core\ec171f82cd6894ee56c1e0b575232f68.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\chrome\content\core\f19f522ac9754dcf3dd93cbac88ccfdd.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\chrome\content\core\f296532cd9443074066ffafb33b3bd1d.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\chrome\content\core\fee2024f37e2a8753e18d89ad69f3d6a.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\chrome\content\core\installer.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\defaults\preferences\prefs.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\extensionData\manifest.xml, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\extensionData\plugins.json, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\extensionData\plugins\220.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\extensionData\plugins\1.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\extensionData\plugins\1000020.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\extensionData\plugins\1000025.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\extensionData\plugins\1000030.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\extensionData\plugins\102.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\extensionData\plugins\104.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\extensionData\plugins\123.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\extensionData\plugins\13.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\extensionData\plugins\14.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\extensionData\plugins\16.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\extensionData\plugins\17.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\extensionData\plugins\177.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\extensionData\plugins\178.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\extensionData\plugins\179.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\extensionData\plugins\180.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\extensionData\plugins\182.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\extensionData\plugins\183.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\extensionData\plugins\195.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\extensionData\plugins\207.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\extensionData\plugins\21.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\extensionData\plugins\22.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\extensionData\plugins\221.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\extensionData\plugins\223.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\extensionData\plugins\226.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\extensionData\plugins\234.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\extensionData\plugins\246.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\extensionData\plugins\262.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\extensionData\plugins\263.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\extensionData\plugins\268.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\extensionData\plugins\273.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\extensionData\plugins\28.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\extensionData\plugins\281.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\extensionData\plugins\4.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\extensionData\plugins\47.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\extensionData\plugins\64.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\extensionData\plugins\7.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\extensionData\plugins\72.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\extensionData\plugins\78.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\extensionData\plugins\9.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\extensionData\plugins\91.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\extensionData\plugins\93.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\extensionData\plugins\98.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\extensionData\userCode\background.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\extensionData\userCode\extension.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\locale\en-US\translations.dtd, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\skin\button1.png, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\skin\button2.png, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\skin\button3.png, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\skin\button4.png, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\skin\button5.png, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\skin\crossrider_statusbar.png, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\skin\icon128.png, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\skin\icon16.png, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\skin\icon24.png, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\skin\icon48.png, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\skin\panelarrow-up.png, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\skin\popup.html, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\skin\skin.css, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\skin\update.css, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\background.html, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\chromeCoreFilesIndex.txt, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\manifest.json, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\popup.html, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\Settings.json, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\extensionData\manifest.xml, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\extensionData\plugins.json, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\extensionData\plugins\260.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\extensionData\plugins\102.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\extensionData\plugins\104.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\extensionData\plugins\119.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\extensionData\plugins\123.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\extensionData\plugins\13.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\extensionData\plugins\14.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\extensionData\plugins\17.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\extensionData\plugins\178.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\extensionData\plugins\179.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\extensionData\plugins\180.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\extensionData\plugins\184.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\extensionData\plugins\19.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\extensionData\plugins\191.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\extensionData\plugins\195.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\extensionData\plugins\220.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\extensionData\plugins\221.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\extensionData\plugins\223.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\extensionData\plugins\231.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\extensionData\plugins\232.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\extensionData\plugins\242.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\extensionData\plugins\246.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\extensionData\plugins\262.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\extensionData\plugins\263.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\extensionData\plugins\267.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\extensionData\plugins\273.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\extensionData\plugins\281.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\extensionData\plugins\286.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\extensionData\plugins\288.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\extensionData\plugins\289.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\extensionData\plugins\300.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\extensionData\plugins\302.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\extensionData\plugins\4.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\extensionData\plugins\47.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\extensionData\plugins\64.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\extensionData\plugins\7.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\extensionData\plugins\78.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\extensionData\plugins\80.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\extensionData\plugins\9.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\extensionData\plugins\91.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\extensionData\plugins\93.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\extensionData\plugins\97.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\extensionData\userCode\background.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\extensionData\userCode\extension.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\icons\icon128.png, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\icons\icon16.png, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\icons\icon48.png, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\icons\actions\1.png, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\js\3a7ee6d69c4e7f74af6fa2de24334ded.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\js\780d391d2c994f19db011c74c85ab92a.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\js\main.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\js\api\64805c41407e116d4918e74e81494392.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\js\api\77c2be33c53baaef57018e38f2544735.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\js\api\8821599800ed436bbdd7d8f26c3b26f3.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\js\api\d61ece136cae38ef22b6a9187f6a420d.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\js\api\f718ccd8b8af6f333e5da57c26df7477.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\js\api\pageAction.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\js\lib\0b0e9904b0e68bc9d9adfbc194b875cb.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\js\lib\2161d92d2c0b58972005a524dc15ef97.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\js\lib\3310c1920e45b28ade68aa0cd64ee567.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\js\lib\361f5a5a27297b4668a7946dac806b98.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\js\lib\45ba00bb94061df652eb8193a5e5c071.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\js\lib\62a900b540ca13d64751a602ed907c79.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\js\lib\6a0a1bce7f6758c2fe64244d1686df90.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\js\lib\6bc5aaa08bd927dd29bb859cd470b17c.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\js\lib\747271e335113c9cf7e9daf70f9cdd0a.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\js\lib\7c616166485379d526e60c57244ce48d.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\js\lib\7f6bdf3cb88a06492804f71e4a0be858.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\js\lib\9e050bfc71c749d669df35e193d4c5ab.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\js\lib\app_api.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\js\lib\b4956998f1db4fbf219c452a4ffef344.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\js\lib\ffd99102c0a4a61b4f39eb4bb66cacfc.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\js\lib\installer.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\js\lib\popupResource\newPopup.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\js\lib\popupResource\popup.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\ljefoakgfhcoeobgicjgejglnpfpemgb\000005.ldb, Löschen bei Neustart, [5a02fc44f98385b1df84aa8c7a89d729], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\ljefoakgfhcoeobgicjgejglnpfpemgb\000011.ldb, Löschen bei Neustart, [5a02fc44f98385b1df84aa8c7a89d729], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\ljefoakgfhcoeobgicjgejglnpfpemgb\000051.log, Löschen bei Neustart, [5a02fc44f98385b1df84aa8c7a89d729], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\ljefoakgfhcoeobgicjgejglnpfpemgb\CURRENT, In Quarantäne, [5a02fc44f98385b1df84aa8c7a89d729], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\ljefoakgfhcoeobgicjgejglnpfpemgb\LOCK, Löschen bei Neustart, [5a02fc44f98385b1df84aa8c7a89d729], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\ljefoakgfhcoeobgicjgejglnpfpemgb\LOG, Löschen bei Neustart, [5a02fc44f98385b1df84aa8c7a89d729], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\ljefoakgfhcoeobgicjgejglnpfpemgb\LOG.old, In Quarantäne, [5a02fc44f98385b1df84aa8c7a89d729], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\ljefoakgfhcoeobgicjgejglnpfpemgb\MANIFEST-000049, Löschen bei Neustart, [5a02fc44f98385b1df84aa8c7a89d729], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\databases\chrome-extension_ljefoakgfhcoeobgicjgejglnpfpemgb_0\6, In Quarantäne, [7fddfb45502c59dd3b29cf67f60d2ed2], 
PUP.Optional.CrossRider.A, C:\Program Files (x86)\TotalPlusHD-3.1V25.11\c3687991-d9ea-410e-8d48-6b549f03fbcc.crx, In Quarantäne, [9ac239070d6fdd59ab1956e016ed669a], 
PUP.Optional.CrossRider.A, C:\Program Files (x86)\TotalPlusHD-3.1V25.11\1293297481.mxaddon, In Quarantäne, [9ac239070d6fdd59ab1956e016ed669a], 
PUP.Optional.CrossRider.A, C:\Program Files (x86)\TotalPlusHD-3.1V25.11\2d374c00-0afb-44b3-95e5-4a41d9686eee.crx, In Quarantäne, [9ac239070d6fdd59ab1956e016ed669a], 
PUP.Optional.CrossRider.A, C:\Program Files (x86)\TotalPlusHD-3.1V25.11\2d374c00-0afb-44b3-95e5-4a41d9686eee.xpi, In Quarantäne, [9ac239070d6fdd59ab1956e016ed669a], 
PUP.Optional.CrossRider.A, C:\Program Files (x86)\TotalPlusHD-3.1V25.11\TotalPlusHD-3.1V25.11.ico, In Quarantäne, [9ac239070d6fdd59ab1956e016ed669a], 
PUP.Optional.CrossRider.A, C:\Program Files (x86)\TotalPlusHD-3.1V25.11\456e00de-43ae-42fb-9864-561ae9c9c4ab.crx, In Quarantäne, [9ac239070d6fdd59ab1956e016ed669a], 
PUP.Optional.CrossRider.A, C:\Program Files (x86)\TotalPlusHD-3.1V25.11\background.html, In Quarantäne, [9ac239070d6fdd59ab1956e016ed669a], 
PUP.Optional.CrossRider.A, C:\Program Files (x86)\TotalPlusHD-3.1V25.11\bgNova.html, In Quarantäne, [9ac239070d6fdd59ab1956e016ed669a], 
PUP.Optional.CrossRider.A, C:\Program Files (x86)\TornPlusTV_version1.11\cf43921d-02df-421d-ae05-8262e53706bf.crx, In Quarantäne, [bba1d96735477eb853edfa41d52ed927], 
PUP.Optional.CrossRider.A, C:\Program Files (x86)\TornPlusTV_version1.11\1293297481.mxaddon, In Quarantäne, [bba1d96735477eb853edfa41d52ed927], 
PUP.Optional.CrossRider.A, C:\Program Files (x86)\TornPlusTV_version1.11\a9ccb700-1121-48dc-9d81-aa4449568617.crx, In Quarantäne, [bba1d96735477eb853edfa41d52ed927], 
PUP.Optional.CrossRider.A, C:\Program Files (x86)\TornPlusTV_version1.11\background.html, In Quarantäne, [bba1d96735477eb853edfa41d52ed927], 
PUP.Optional.CrossRider.A, C:\Program Files (x86)\TornPlusTV_version1.11\bgNova.html, In Quarantäne, [bba1d96735477eb853edfa41d52ed927], 
PUP.Optional.CrossRider.A, C:\Program Files (x86)\TornPlusTV_version1.11\cf43921d-02df-421d-ae05-8262e53706bf.xpi, In Quarantäne, [bba1d96735477eb853edfa41d52ed927], 
PUP.Optional.CrossRider.A, C:\Program Files (x86)\TornPlusTV_version1.11\efb9dbd1-a38f-4fff-b3a3-1510ff8ea703.crx, In Quarantäne, [bba1d96735477eb853edfa41d52ed927], 
PUP.Optional.CrossRider.A, C:\Program Files (x86)\TornPlusTV_version1.11\TornPlusTV_version1.11.ico, In Quarantäne, [bba1d96735477eb853edfa41d52ed927], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\prefs.js, Gut: (), Schlecht: (user_pref("extensions.crossrider.bic", "149e81c732b999b8b791f70075fa4194");), Ersetzt,[e37972ce2d4ff73f2c294f3f09fcda26]
PUP.Optional.SweetIM.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\prefs.js, Gut: (), Schlecht: (user_pref("sweetim.toolbar.previous.keyword.URL", "hxxp://search.sweetim.com/search.asp?src=2&q=");), Ersetzt,[1d3fd56b4e2ede588265dcb37c89936d]

Physische Sektoren: 0
(Keine schädliche Elemente erkannt)


(end)
         

Alt 26.11.2014, 21:15   #8
magnusson
 
mystartsearch entfernen - Standard

mystartsearch entfernen



Mailwarebytes Teil 3:

Code:
ATTFilter
C:\Users\WK\AppData\Local\TNT2\Common\GameConsole.exe, In Quarantäne, [61fbb888b8c4350168634cc39e658b75], 
PUP.Optional.TidyNetwork.A, C:\Users\WK\AppData\Local\TNT2\Common\pinnedSearch.htm, In Quarantäne, [61fbb888b8c4350168634cc39e658b75], 
PUP.Optional.TidyNetwork.A, C:\Users\WK\AppData\Local\TNT2\Profiles\10557\inst.ini, In Quarantäne, [61fbb888b8c4350168634cc39e658b75], 
PUP.Optional.TidyNetwork.A, C:\Users\WK\AppData\Local\TNT2\Profiles\10557\os10557.xml, In Quarantäne, [61fbb888b8c4350168634cc39e658b75], 
PUP.Optional.TidyNetwork.A, C:\Users\WK\AppData\Local\TNT2\Profiles\10557\PARTNER.1.TNT, In Quarantäne, [61fbb888b8c4350168634cc39e658b75], 
PUP.Optional.TidyNetwork.A, C:\Users\WK\AppData\Local\TNT2\Profiles\10557\partner.dat, In Quarantäne, [61fbb888b8c4350168634cc39e658b75], 
PUP.Optional.TidyNetwork.A, C:\Users\WK\AppData\Local\TNT2\Profiles\10557\passport.dll, In Quarantäne, [61fbb888b8c4350168634cc39e658b75], 
PUP.Optional.TidyNetwork.A, C:\Users\WK\AppData\Local\TNT2\Profiles\10557\passport64.dll, In Quarantäne, [61fbb888b8c4350168634cc39e658b75], 
PUP.Optional.TidyNetwork.A, C:\Users\WK\AppData\Local\TNT2\Profiles\10557\runt.ini, In Quarantäne, [61fbb888b8c4350168634cc39e658b75], 
PUP.Optional.TidyNetwork.A, C:\Users\WK\AppData\Local\TNT2\Profiles\10557\yah10557.xml, In Quarantäne, [61fbb888b8c4350168634cc39e658b75], 
PUP.Optional.Delta.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\ffxtlbr@delta.com\chrome.manifest, In Quarantäne, [0458e15f85f7cf67fc6661b2917216ea], 
PUP.Optional.Delta.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\ffxtlbr@delta.com\install.rdf, In Quarantäne, [0458e15f85f7cf67fc6661b2917216ea], 
PUP.Optional.Delta.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\ffxtlbr@delta.com\components\FFDisp.dll, In Quarantäne, [0458e15f85f7cf67fc6661b2917216ea], 
PUP.Optional.Delta.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\ffxtlbr@delta.com\content\delta.css, In Quarantäne, [0458e15f85f7cf67fc6661b2917216ea], 
PUP.Optional.Delta.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\ffxtlbr@delta.com\content\delta.xul, In Quarantäne, [0458e15f85f7cf67fc6661b2917216ea], 
PUP.Optional.Delta.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\ffxtlbr@delta.com\content\dpk.htm, In Quarantäne, [0458e15f85f7cf67fc6661b2917216ea], 
PUP.Optional.Delta.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\ffxtlbr@delta.com\content\hlprs.js, In Quarantäne, [0458e15f85f7cf67fc6661b2917216ea], 
PUP.Optional.Delta.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\ffxtlbr@delta.com\content\loader.xul, In Quarantäne, [0458e15f85f7cf67fc6661b2917216ea], 
PUP.Optional.Delta.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\ffxtlbr@delta.com\content\mtstart.js, In Quarantäne, [0458e15f85f7cf67fc6661b2917216ea], 
PUP.Optional.Delta.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\ffxtlbr@delta.com\content\serp.js, In Quarantäne, [0458e15f85f7cf67fc6661b2917216ea], 
PUP.Optional.Delta.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\ffxtlbr@delta.com\content\tmplt.js, In Quarantäne, [0458e15f85f7cf67fc6661b2917216ea], 
PUP.Optional.Delta.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\ffxtlbr@delta.com\content\imgs\arwDwn.gif, In Quarantäne, [0458e15f85f7cf67fc6661b2917216ea], 
PUP.Optional.Delta.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\ffxtlbr@delta.com\content\imgs\closeo.png, In Quarantäne, [0458e15f85f7cf67fc6661b2917216ea], 
PUP.Optional.Delta.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\ffxtlbr@delta.com\content\imgs\help_16.gif, In Quarantäne, [0458e15f85f7cf67fc6661b2917216ea], 
PUP.Optional.Delta.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\ffxtlbr@delta.com\content\imgs\home.gif, In Quarantäne, [0458e15f85f7cf67fc6661b2917216ea], 
PUP.Optional.Delta.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\ffxtlbr@delta.com\content\imgs\icon_seperator.png, In Quarantäne, [0458e15f85f7cf67fc6661b2917216ea], 
PUP.Optional.Delta.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\ffxtlbr@delta.com\content\imgs\logo.PNG, In Quarantäne, [0458e15f85f7cf67fc6661b2917216ea], 
PUP.Optional.Delta.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\ffxtlbr@delta.com\content\imgs\privecy_16_hot.gif, In Quarantäne, [0458e15f85f7cf67fc6661b2917216ea], 
PUP.Optional.Delta.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\ffxtlbr@delta.com\content\imgs\sign.jpg, In Quarantäne, [0458e15f85f7cf67fc6661b2917216ea], 
PUP.Optional.Delta.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\ffxtlbr@delta.com\content\imgs\specialoffer.gif, In Quarantäne, [0458e15f85f7cf67fc6661b2917216ea], 
PUP.Optional.Delta.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\ffxtlbr@delta.com\content\imgs\tellafriend.gif, In Quarantäne, [0458e15f85f7cf67fc6661b2917216ea], 
PUP.Optional.Delta.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\ffxtlbr@delta.com\content\imgs\uninstall.gif, In Quarantäne, [0458e15f85f7cf67fc6661b2917216ea], 
PUP.Optional.Delta.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\ffxtlbr@delta.com\content\imgs\flgs\ae.png, In Quarantäne, [0458e15f85f7cf67fc6661b2917216ea], 
PUP.Optional.Delta.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\ffxtlbr@delta.com\content\imgs\flgs\bg.png, In Quarantäne, [0458e15f85f7cf67fc6661b2917216ea], 
PUP.Optional.Delta.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\ffxtlbr@delta.com\content\imgs\flgs\ch.png, In Quarantäne, [0458e15f85f7cf67fc6661b2917216ea], 
PUP.Optional.Delta.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\ffxtlbr@delta.com\content\imgs\flgs\cn.png, In Quarantäne, [0458e15f85f7cf67fc6661b2917216ea], 
PUP.Optional.Delta.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\ffxtlbr@delta.com\content\imgs\flgs\cz.png, In Quarantäne, [0458e15f85f7cf67fc6661b2917216ea], 
PUP.Optional.Delta.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\ffxtlbr@delta.com\content\imgs\flgs\de.png, In Quarantäne, [0458e15f85f7cf67fc6661b2917216ea], 
PUP.Optional.Delta.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\ffxtlbr@delta.com\content\imgs\flgs\eg.png, In Quarantäne, [0458e15f85f7cf67fc6661b2917216ea], 
PUP.Optional.Delta.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\ffxtlbr@delta.com\content\imgs\flgs\en.png, In Quarantäne, [0458e15f85f7cf67fc6661b2917216ea], 
PUP.Optional.Delta.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\ffxtlbr@delta.com\content\imgs\flgs\es.png, In Quarantäne, [0458e15f85f7cf67fc6661b2917216ea], 
PUP.Optional.Delta.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\ffxtlbr@delta.com\content\imgs\flgs\fr.png, In Quarantäne, [0458e15f85f7cf67fc6661b2917216ea], 
PUP.Optional.Delta.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\ffxtlbr@delta.com\content\imgs\flgs\gr.png, In Quarantäne, [0458e15f85f7cf67fc6661b2917216ea], 
PUP.Optional.Delta.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\ffxtlbr@delta.com\content\imgs\flgs\he.png, In Quarantäne, [0458e15f85f7cf67fc6661b2917216ea], 
PUP.Optional.Delta.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\ffxtlbr@delta.com\content\imgs\flgs\il.png, In Quarantäne, [0458e15f85f7cf67fc6661b2917216ea], 
PUP.Optional.Delta.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\ffxtlbr@delta.com\content\imgs\flgs\it.png, In Quarantäne, [0458e15f85f7cf67fc6661b2917216ea], 
PUP.Optional.Delta.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\ffxtlbr@delta.com\content\imgs\flgs\ja.png, In Quarantäne, [0458e15f85f7cf67fc6661b2917216ea], 
PUP.Optional.Delta.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\ffxtlbr@delta.com\content\imgs\flgs\jp.png, In Quarantäne, [0458e15f85f7cf67fc6661b2917216ea], 
PUP.Optional.Delta.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\ffxtlbr@delta.com\content\imgs\flgs\nl.png, In Quarantäne, [0458e15f85f7cf67fc6661b2917216ea], 
PUP.Optional.Delta.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\ffxtlbr@delta.com\content\imgs\flgs\no.png, In Quarantäne, [0458e15f85f7cf67fc6661b2917216ea], 
PUP.Optional.Delta.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\ffxtlbr@delta.com\content\imgs\flgs\pl.png, In Quarantäne, [0458e15f85f7cf67fc6661b2917216ea], 
PUP.Optional.Delta.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\ffxtlbr@delta.com\content\imgs\flgs\pt.png, In Quarantäne, [0458e15f85f7cf67fc6661b2917216ea], 
PUP.Optional.Delta.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\ffxtlbr@delta.com\content\imgs\flgs\ro.png, In Quarantäne, [0458e15f85f7cf67fc6661b2917216ea], 
PUP.Optional.Delta.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\ffxtlbr@delta.com\content\imgs\flgs\ru.png, In Quarantäne, [0458e15f85f7cf67fc6661b2917216ea], 
PUP.Optional.Delta.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\ffxtlbr@delta.com\content\imgs\flgs\sa.png, In Quarantäne, [0458e15f85f7cf67fc6661b2917216ea], 
PUP.Optional.Delta.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\ffxtlbr@delta.com\content\imgs\flgs\se.png, In Quarantäne, [0458e15f85f7cf67fc6661b2917216ea], 
PUP.Optional.Delta.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\ffxtlbr@delta.com\content\imgs\flgs\sv.png, In Quarantäne, [0458e15f85f7cf67fc6661b2917216ea], 
PUP.Optional.Delta.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\ffxtlbr@delta.com\content\imgs\flgs\tr.png, In Quarantäne, [0458e15f85f7cf67fc6661b2917216ea], 
PUP.Optional.Delta.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\ffxtlbr@delta.com\content\imgs\flgs\ua.png, In Quarantäne, [0458e15f85f7cf67fc6661b2917216ea], 
PUP.Optional.Delta.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\ffxtlbr@delta.com\content\imgs\flgs\us.png, In Quarantäne, [0458e15f85f7cf67fc6661b2917216ea], 
PUP.Optional.Delta.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\ffxtlbr@delta.com\META-INF\manifest.mf, In Quarantäne, [0458e15f85f7cf67fc6661b2917216ea], 
PUP.Optional.Delta.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\ffxtlbr@delta.com\META-INF\zigbert.rsa, In Quarantäne, [0458e15f85f7cf67fc6661b2917216ea], 
PUP.Optional.Delta.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\ffxtlbr@delta.com\META-INF\zigbert.sf, In Quarantäne, [0458e15f85f7cf67fc6661b2917216ea], 
PUP.Optional.MindSpark.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\4jffxtbr@RadioRage_4j.com\bootstrap.js, In Quarantäne, [8bd177c95b21aa8c7102987f5aa9916f], 
PUP.Optional.MindSpark.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\4jffxtbr@RadioRage_4j.com\chrome.manifest, In Quarantäne, [8bd177c95b21aa8c7102987f5aa9916f], 
PUP.Optional.MindSpark.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\4jffxtbr@RadioRage_4j.com\install.rdf, In Quarantäne, [8bd177c95b21aa8c7102987f5aa9916f], 
PUP.Optional.MindSpark.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\4jffxtbr@RadioRage_4j.com\install_no_bootstrap.rdf, In Quarantäne, [8bd177c95b21aa8c7102987f5aa9916f], 
PUP.Optional.MindSpark.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\4jffxtbr@RadioRage_4j.com\chrome\4jffxtbr.jar, In Quarantäne, [8bd177c95b21aa8c7102987f5aa9916f], 
PUP.Optional.MindSpark.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\4jffxtbr@RadioRage_4j.com\META-INF\manifest.mf, In Quarantäne, [8bd177c95b21aa8c7102987f5aa9916f], 
PUP.Optional.MindSpark.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\4jffxtbr@RadioRage_4j.com\META-INF\zigbert.rsa, In Quarantäne, [8bd177c95b21aa8c7102987f5aa9916f], 
PUP.Optional.MindSpark.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\4jffxtbr@RadioRage_4j.com\META-INF\zigbert.sf, In Quarantäne, [8bd177c95b21aa8c7102987f5aa9916f], 
PUP.Optional.MindSpark.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\4jffxtbr@RadioRage_4j.com\plugins\NativeMessagingDispatcher.dll, In Quarantäne, [8bd177c95b21aa8c7102987f5aa9916f], 
PUP.Optional.MindSpark.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\RadioRage_4j\01810FE4-023D-435D-A901-3F6801E21B3B.sqlite, In Quarantäne, [194361df4f2d1125c2b42ceb956e40c0], 
PUP.Optional.MindSpark.A, C:\Program Files (x86)\RadioRage_4j\bar\1.bin\4jdatact.dll, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, C:\Program Files (x86)\RadioRage_4j\bar\1.bin\4jdyn.dll, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, C:\Program Files (x86)\RadioRage_4j\bar\1.bin\4jfeedmg.dll, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, C:\Program Files (x86)\RadioRage_4j\bar\1.bin\4jhighin.exe, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, C:\Program Files (x86)\RadioRage_4j\bar\1.bin\4jhkstub.dll, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, C:\Program Files (x86)\RadioRage_4j\bar\1.bin\4jhtmlmu.dll, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, C:\Program Files (x86)\RadioRage_4j\bar\1.bin\4jhttpct.dll, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, C:\Program Files (x86)\RadioRage_4j\bar\1.bin\4jidle.dll, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, C:\Program Files (x86)\RadioRage_4j\bar\1.bin\4jimpipe.exe, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, C:\Program Files (x86)\RadioRage_4j\bar\1.bin\4jmedint.exe, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, C:\Program Files (x86)\RadioRage_4j\bar\1.bin\4jmlbtn.dll, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, C:\Program Files (x86)\RadioRage_4j\bar\1.bin\4jmsg.dll, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, C:\Program Files (x86)\RadioRage_4j\bar\1.bin\4jPlugin.dll, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, C:\Program Files (x86)\RadioRage_4j\bar\1.bin\4jradio.dll, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, C:\Program Files (x86)\RadioRage_4j\bar\1.bin\4jregfft.dll, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, C:\Program Files (x86)\RadioRage_4j\bar\1.bin\4jreghk.dll, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, C:\Program Files (x86)\RadioRage_4j\bar\1.bin\4jscript.dll, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, C:\Program Files (x86)\RadioRage_4j\bar\1.bin\4jskin.dll, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, C:\Program Files (x86)\RadioRage_4j\bar\1.bin\4jskplay.exe, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, C:\Program Files (x86)\RadioRage_4j\bar\1.bin\4jtpinst.dll, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, C:\Program Files (x86)\RadioRage_4j\bar\1.bin\4juabtn.dll, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, C:\Program Files (x86)\RadioRage_4j\bar\1.bin\AppIntegratorStub64.dll, Löschen bei Neustart, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, C:\Program Files (x86)\RadioRage_4j\bar\1.bin\BOOTSTRAP.JS, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, C:\Program Files (x86)\RadioRage_4j\bar\1.bin\CHROME.MANIFEST, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, C:\Program Files (x86)\RadioRage_4j\bar\1.bin\CREXT.DLL, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, C:\Program Files (x86)\RadioRage_4j\bar\1.bin\CrExtP4j.exe, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, C:\Program Files (x86)\RadioRage_4j\bar\1.bin\DPNMNGR.DLL, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, C:\Program Files (x86)\RadioRage_4j\bar\1.bin\EXEMANAGER.DLL, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, C:\Program Files (x86)\RadioRage_4j\bar\1.bin\Hpg64.dll, Löschen bei Neustart, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, C:\Program Files (x86)\RadioRage_4j\bar\1.bin\INSTALL.RDF, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, C:\Program Files (x86)\RadioRage_4j\bar\1.bin\installKeys.js, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, C:\Program Files (x86)\RadioRage_4j\bar\1.bin\LOGO.BMP, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, C:\Program Files (x86)\RadioRage_4j\bar\1.bin\NP4jStub.dll, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, C:\Program Files (x86)\RadioRage_4j\bar\1.bin\T8EXTEX.DLL, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, C:\Program Files (x86)\RadioRage_4j\bar\1.bin\T8EXTPEX.DLL, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, C:\Program Files (x86)\RadioRage_4j\bar\1.bin\T8HTML.DLL, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, C:\Program Files (x86)\RadioRage_4j\bar\1.bin\T8RES.DLL, Löschen bei Neustart, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, C:\Program Files (x86)\RadioRage_4j\bar\1.bin\T8TICKER.DLL, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, C:\Program Files (x86)\RadioRage_4j\bar\1.bin\VERIFY.DLL, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, C:\Program Files (x86)\RadioRage_4j\bar\1.bin\chrome\4jffxtbr.jar, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, C:\Program Files (x86)\RadioRage_4j\bar\gen1\COMMON.T8S, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, C:\Program Files (x86)\RadioRage_4j\bar\IE9Mesg\COMMON.T8S, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, C:\Program Files (x86)\RadioRage_4j\bar\Message\COMMON.T8S, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.MindSpark.A, C:\Program Files (x86)\RadioRage_4j\bar\Settings\s_pid.dat, In Quarantäne, [f96371cfa1dbde58e2a02dea6f941ce4], 
PUP.Optional.SweetIM.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\jcdgjdiieiljkfkdcloehkohchhpekkn\1.0.0.0_0\128.png, In Quarantäne, [3824a29e3b41979f1e67fb29699a7d83], 
PUP.Optional.SweetIM.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\jcdgjdiieiljkfkdcloehkohchhpekkn\1.0.0.0_0\16.png, In Quarantäne, [3824a29e3b41979f1e67fb29699a7d83], 
PUP.Optional.SweetIM.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\jcdgjdiieiljkfkdcloehkohchhpekkn\1.0.0.0_0\48.png, In Quarantäne, [3824a29e3b41979f1e67fb29699a7d83], 
PUP.Optional.SweetIM.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\jcdgjdiieiljkfkdcloehkohchhpekkn\1.0.0.0_0\Copy of fbsim.js, In Quarantäne, [3824a29e3b41979f1e67fb29699a7d83], 
PUP.Optional.SweetIM.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\jcdgjdiieiljkfkdcloehkohchhpekkn\1.0.0.0_0\Copy of manifest.json, In Quarantäne, [3824a29e3b41979f1e67fb29699a7d83], 
PUP.Optional.SweetIM.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\jcdgjdiieiljkfkdcloehkohchhpekkn\1.0.0.0_0\fbsim.js, In Quarantäne, [3824a29e3b41979f1e67fb29699a7d83], 
PUP.Optional.SweetIM.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\jcdgjdiieiljkfkdcloehkohchhpekkn\1.0.0.0_0\manifest.json, In Quarantäne, [3824a29e3b41979f1e67fb29699a7d83], 
PUP.Optional.FastStart.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\faststartff@gmail.com\chrome.manifest, In Quarantäne, [0d4f8ab6077588aea6e86bb9956ef60a], 
PUP.Optional.FastStart.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\faststartff@gmail.com\install.rdf, In Quarantäne, [0d4f8ab6077588aea6e86bb9956ef60a], 
PUP.Optional.FastStart.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\faststartff@gmail.com\chrome\content\index.html, In Quarantäne, [0d4f8ab6077588aea6e86bb9956ef60a], 
PUP.Optional.FastStart.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\faststartff@gmail.com\chrome\content\quick_start.js, In Quarantäne, [0d4f8ab6077588aea6e86bb9956ef60a], 
PUP.Optional.FastStart.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\faststartff@gmail.com\chrome\content\quick_start.xul, In Quarantäne, [0d4f8ab6077588aea6e86bb9956ef60a], 
PUP.Optional.FastStart.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\faststartff@gmail.com\chrome\content\include\speed_dial.js, In Quarantäne, [0d4f8ab6077588aea6e86bb9956ef60a], 
PUP.Optional.FastStart.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\faststartff@gmail.com\chrome\content\include\tools\about_blank_hook.js, In Quarantäne, [0d4f8ab6077588aea6e86bb9956ef60a], 
PUP.Optional.FastStart.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\faststartff@gmail.com\chrome\content\include\tools\misc.js, In Quarantäne, [0d4f8ab6077588aea6e86bb9956ef60a], 
PUP.Optional.FastStart.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\faststartff@gmail.com\chrome\content\include\tools\popup_image_helper.js, In Quarantäne, [0d4f8ab6077588aea6e86bb9956ef60a], 
PUP.Optional.FastStart.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\faststartff@gmail.com\chrome\content\include\tools\urlrequestor.js, In Quarantäne, [0d4f8ab6077588aea6e86bb9956ef60a], 
PUP.Optional.FastStart.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\faststartff@gmail.com\chrome\content\js\js.js, In Quarantäne, [0d4f8ab6077588aea6e86bb9956ef60a], 
PUP.Optional.FastStart.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\faststartff@gmail.com\chrome\content\js\lib\doT.min.js, In Quarantäne, [0d4f8ab6077588aea6e86bb9956ef60a], 
PUP.Optional.FastStart.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\faststartff@gmail.com\chrome\content\js\lib\jquery-2.1.0.min.js, In Quarantäne, [0d4f8ab6077588aea6e86bb9956ef60a], 
PUP.Optional.FastStart.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\faststartff@gmail.com\chrome\content\js\lib\jquery.autocomplete.js, In Quarantäne, [0d4f8ab6077588aea6e86bb9956ef60a], 
PUP.Optional.FastStart.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\faststartff@gmail.com\chrome\content\js\module\hotSearch.js, In Quarantäne, [0d4f8ab6077588aea6e86bb9956ef60a], 
PUP.Optional.FastStart.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\faststartff@gmail.com\chrome\content\js\module\mostgrid.js, In Quarantäne, [0d4f8ab6077588aea6e86bb9956ef60a], 
PUP.Optional.FastStart.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\faststartff@gmail.com\chrome\content\js\module\search.js, In Quarantäne, [0d4f8ab6077588aea6e86bb9956ef60a], 
PUP.Optional.FastStart.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\faststartff@gmail.com\chrome\content\js\module\stat.js, In Quarantäne, [0d4f8ab6077588aea6e86bb9956ef60a], 
PUP.Optional.FastStart.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\faststartff@gmail.com\chrome\content\js\pack\common.js, In Quarantäne, [0d4f8ab6077588aea6e86bb9956ef60a], 
PUP.Optional.FastStart.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\faststartff@gmail.com\chrome\skin\newtab.ico, In Quarantäne, [0d4f8ab6077588aea6e86bb9956ef60a], 
PUP.Optional.FastStart.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\faststartff@gmail.com\chrome\skin\simple.css, In Quarantäne, [0d4f8ab6077588aea6e86bb9956ef60a], 
PUP.Optional.FastStart.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\faststartff@gmail.com\chrome\skin\style.css, In Quarantäne, [0d4f8ab6077588aea6e86bb9956ef60a], 
PUP.Optional.FastStart.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\faststartff@gmail.com\defaults\preferences\fvd.js, In Quarantäne, [0d4f8ab6077588aea6e86bb9956ef60a], 
PUP.Optional.FastStart.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\faststartff@gmail.com\defaults\preferences\preferences.js, In Quarantäne, [0d4f8ab6077588aea6e86bb9956ef60a], 
PUP.Optional.FastStart.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\faststartff@gmail.com\modules\addonmanager.js, In Quarantäne, [0d4f8ab6077588aea6e86bb9956ef60a], 
PUP.Optional.FastStart.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\faststartff@gmail.com\modules\aes.js, In Quarantäne, [0d4f8ab6077588aea6e86bb9956ef60a], 
PUP.Optional.FastStart.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\faststartff@gmail.com\modules\config.js, In Quarantäne, [0d4f8ab6077588aea6e86bb9956ef60a], 
PUP.Optional.FastStart.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\faststartff@gmail.com\modules\dialogs.js, In Quarantäne, [0d4f8ab6077588aea6e86bb9956ef60a], 
PUP.Optional.FastStart.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\faststartff@gmail.com\modules\last_tab.js, In Quarantäne, [0d4f8ab6077588aea6e86bb9956ef60a], 
PUP.Optional.FastStart.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\faststartff@gmail.com\modules\misc.js, In Quarantäne, [0d4f8ab6077588aea6e86bb9956ef60a], 
PUP.Optional.FastStart.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\faststartff@gmail.com\modules\properties.js, In Quarantäne, [0d4f8ab6077588aea6e86bb9956ef60a], 
PUP.Optional.FastStart.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\faststartff@gmail.com\modules\remoterequest.js, In Quarantäne, [0d4f8ab6077588aea6e86bb9956ef60a], 
PUP.Optional.FastStart.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\faststartff@gmail.com\modules\restoreprefs.js, In Quarantäne, [0d4f8ab6077588aea6e86bb9956ef60a], 
PUP.Optional.FastStart.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\faststartff@gmail.com\modules\settings.js, In Quarantäne, [0d4f8ab6077588aea6e86bb9956ef60a], 
PUP.Optional.WPM.A, C:\ProgramData\WindowsMangerProtect\update\conf, In Quarantäne, [71eb1b250d6ff343d5f4200537ccec14], 
PUP.Optional.GlobalUpdate.A, C:\Users\WK\AppData\Local\Temp\comh.184037\GoogleCrashHandler.exe, In Quarantäne, [7ae2d16fa9d3bb7b991e41e6e51e15eb], 
PUP.Optional.GlobalUpdate.A, C:\Users\WK\AppData\Local\Temp\comh.184037\GoogleUpdate.exe, In Quarantäne, [7ae2d16fa9d3bb7b991e41e6e51e15eb], 
PUP.Optional.GlobalUpdate.A, C:\Users\WK\AppData\Local\Temp\comh.184037\GoogleUpdateBroker.exe, In Quarantäne, [7ae2d16fa9d3bb7b991e41e6e51e15eb], 
PUP.Optional.GlobalUpdate.A, C:\Users\WK\AppData\Local\Temp\comh.184037\GoogleUpdateHelper.msi, In Quarantäne, [7ae2d16fa9d3bb7b991e41e6e51e15eb], 
PUP.Optional.GlobalUpdate.A, C:\Users\WK\AppData\Local\Temp\comh.184037\GoogleUpdateOnDemand.exe, In Quarantäne, [7ae2d16fa9d3bb7b991e41e6e51e15eb], 
PUP.Optional.GlobalUpdate.A, C:\Users\WK\AppData\Local\Temp\comh.184037\goopdate.dll, In Quarantäne, [7ae2d16fa9d3bb7b991e41e6e51e15eb], 
PUP.Optional.GlobalUpdate.A, C:\Users\WK\AppData\Local\Temp\comh.184037\goopdateres_en.dll, In Quarantäne, [7ae2d16fa9d3bb7b991e41e6e51e15eb], 
PUP.Optional.GlobalUpdate.A, C:\Users\WK\AppData\Local\Temp\comh.184037\npGoogleUpdate4.dll, In Quarantäne, [7ae2d16fa9d3bb7b991e41e6e51e15eb], 
PUP.Optional.GlobalUpdate.A, C:\Users\WK\AppData\Local\Temp\comh.184037\psmachine.dll, In Quarantäne, [7ae2d16fa9d3bb7b991e41e6e51e15eb], 
PUP.Optional.GlobalUpdate.A, C:\Users\WK\AppData\Local\Temp\comh.184037\psuser.dll, In Quarantäne, [7ae2d16fa9d3bb7b991e41e6e51e15eb], 
PUP.Optional.GlobalUpdate.A, C:\Users\WK\AppData\Local\Temp\comh.220626\GoogleCrashHandler.exe, In Quarantäne, [93c9fb45fb81a88e02b56eb9b251be42], 
PUP.Optional.GlobalUpdate.A, C:\Users\WK\AppData\Local\Temp\comh.220626\GoogleUpdate.exe, In Quarantäne, [93c9fb45fb81a88e02b56eb9b251be42], 
PUP.Optional.GlobalUpdate.A, C:\Users\WK\AppData\Local\Temp\comh.220626\GoogleUpdateBroker.exe, In Quarantäne, [93c9fb45fb81a88e02b56eb9b251be42], 
PUP.Optional.GlobalUpdate.A, C:\Users\WK\AppData\Local\Temp\comh.220626\GoogleUpdateHelper.msi, In Quarantäne, [93c9fb45fb81a88e02b56eb9b251be42], 
PUP.Optional.GlobalUpdate.A, C:\Users\WK\AppData\Local\Temp\comh.220626\GoogleUpdateOnDemand.exe, In Quarantäne, [93c9fb45fb81a88e02b56eb9b251be42], 
PUP.Optional.GlobalUpdate.A, C:\Users\WK\AppData\Local\Temp\comh.220626\goopdate.dll, In Quarantäne, [93c9fb45fb81a88e02b56eb9b251be42], 
PUP.Optional.GlobalUpdate.A, C:\Users\WK\AppData\Local\Temp\comh.220626\goopdateres_en.dll, In Quarantäne, [93c9fb45fb81a88e02b56eb9b251be42], 
PUP.Optional.GlobalUpdate.A, C:\Users\WK\AppData\Local\Temp\comh.220626\npGoogleUpdate4.dll, In Quarantäne, [93c9fb45fb81a88e02b56eb9b251be42], 
PUP.Optional.GlobalUpdate.A, C:\Users\WK\AppData\Local\Temp\comh.220626\psmachine.dll, In Quarantäne, [93c9fb45fb81a88e02b56eb9b251be42], 
PUP.Optional.GlobalUpdate.A, C:\Users\WK\AppData\Local\Temp\comh.220626\psuser.dll, In Quarantäne, [93c9fb45fb81a88e02b56eb9b251be42], 
PUP.Optional.GlobalUpdate.A, C:\Users\WK\AppData\Local\Temp\comh.402506\GoogleCrashHandler.exe, In Quarantäne, [7be1dd63c0bc3df940778e9926dd46ba], 
PUP.Optional.GlobalUpdate.A, C:\Users\WK\AppData\Local\Temp\comh.402506\GoogleUpdate.exe, In Quarantäne, [7be1dd63c0bc3df940778e9926dd46ba], 
PUP.Optional.GlobalUpdate.A, C:\Users\WK\AppData\Local\Temp\comh.402506\GoogleUpdateBroker.exe, In Quarantäne, [7be1dd63c0bc3df940778e9926dd46ba], 
PUP.Optional.GlobalUpdate.A, C:\Users\WK\AppData\Local\Temp\comh.402506\GoogleUpdateHelper.msi, In Quarantäne, [7be1dd63c0bc3df940778e9926dd46ba], 
PUP.Optional.GlobalUpdate.A, C:\Users\WK\AppData\Local\Temp\comh.402506\GoogleUpdateOnDemand.exe, In Quarantäne, [7be1dd63c0bc3df940778e9926dd46ba], 
PUP.Optional.GlobalUpdate.A, C:\Users\WK\AppData\Local\Temp\comh.402506\goopdate.dll, In Quarantäne, [7be1dd63c0bc3df940778e9926dd46ba], 
PUP.Optional.GlobalUpdate.A, C:\Users\WK\AppData\Local\Temp\comh.402506\goopdateres_en.dll, In Quarantäne, [7be1dd63c0bc3df940778e9926dd46ba], 
PUP.Optional.GlobalUpdate.A, C:\Users\WK\AppData\Local\Temp\comh.402506\npGoogleUpdate4.dll, In Quarantäne, [7be1dd63c0bc3df940778e9926dd46ba], 
PUP.Optional.GlobalUpdate.A, C:\Users\WK\AppData\Local\Temp\comh.402506\psmachine.dll, In Quarantäne, [7be1dd63c0bc3df940778e9926dd46ba], 
PUP.Optional.GlobalUpdate.A, C:\Users\WK\AppData\Local\Temp\comh.402506\psuser.dll, In Quarantäne, [7be1dd63c0bc3df940778e9926dd46ba], 
PUP.Optional.GlobalUpdate.A, C:\Users\WK\AppData\Local\Temp\comh.418946\GoogleCrashHandler.exe, In Quarantäne, [ff5d9da35a22d75ff3c42cfb659e58a8], 
PUP.Optional.GlobalUpdate.A, C:\Users\WK\AppData\Local\Temp\comh.418946\GoogleUpdate.exe, In Quarantäne, [ff5d9da35a22d75ff3c42cfb659e58a8], 
PUP.Optional.GlobalUpdate.A, C:\Users\WK\AppData\Local\Temp\comh.418946\GoogleUpdateBroker.exe, In Quarantäne, [ff5d9da35a22d75ff3c42cfb659e58a8], 
PUP.Optional.GlobalUpdate.A, C:\Users\WK\AppData\Local\Temp\comh.418946\GoogleUpdateHelper.msi, In Quarantäne, [ff5d9da35a22d75ff3c42cfb659e58a8], 
PUP.Optional.GlobalUpdate.A, C:\Users\WK\AppData\Local\Temp\comh.418946\GoogleUpdateOnDemand.exe, In Quarantäne, [ff5d9da35a22d75ff3c42cfb659e58a8], 
PUP.Optional.GlobalUpdate.A, C:\Users\WK\AppData\Local\Temp\comh.418946\goopdate.dll, In Quarantäne, [ff5d9da35a22d75ff3c42cfb659e58a8], 
PUP.Optional.GlobalUpdate.A, C:\Users\WK\AppData\Local\Temp\comh.418946\goopdateres_en.dll, In Quarantäne, [ff5d9da35a22d75ff3c42cfb659e58a8], 
PUP.Optional.GlobalUpdate.A, C:\Users\WK\AppData\Local\Temp\comh.418946\npGoogleUpdate4.dll, In Quarantäne, [ff5d9da35a22d75ff3c42cfb659e58a8], 
PUP.Optional.GlobalUpdate.A, C:\Users\WK\AppData\Local\Temp\comh.418946\psmachine.dll, In Quarantäne, [ff5d9da35a22d75ff3c42cfb659e58a8], 
PUP.Optional.GlobalUpdate.A, C:\Users\WK\AppData\Local\Temp\comh.418946\psuser.dll, In Quarantäne, [ff5d9da35a22d75ff3c42cfb659e58a8], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\chrome.manifest, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\install.rdf, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\chrome\content\1b5159d8b1ba7d5f1b300c36f488de48.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\chrome\content\3c6a975dc44b6c3db170c4bd507a4138.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\chrome\content\4f6172b246c173f2d576557c5d9a25cc.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\chrome\content\85a1a1e864e4a866c9136a144cf600f8.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\chrome\content\background.html, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\chrome\content\browser.xul, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\chrome\content\c45da075a06d33f2160718f3de248d2e.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\chrome\content\ccba7490c229d9f49b34653186c4f5ca.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\chrome\content\dialog.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\chrome\content\ffCoreFilesIndex.txt, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\chrome\content\options.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\chrome\content\options.xul, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\chrome\content\search_dialog.xul, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\chrome\content\api\134d8aae21203387071f1b64d4cb9951.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\chrome\content\api\4deb54189456848d5746f9edba27cdc7.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\chrome\content\api\5b5841b5b0f8dbf617004a9100d67380.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\chrome\content\api\642e5c6150da749da7fc4f50009218dd.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\chrome\content\api\73b82b493900859222670c4e770a1eea.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\chrome\content\api\80a2f673ceb25ede8e97d207064524e9.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\chrome\content\api\8194957c49a3709202e93597b7380263.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\chrome\content\api\8a421e2fe69bd6d6e9937d575e792921.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\chrome\content\api\aab0c040daa7a486011abf363abb8354.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\chrome\content\api\b3989abb04984e5787275121b666c9a4.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\chrome\content\api\d1d82a44bfc9edf97495abaf510d7c0d.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\chrome\content\api\db54c8704259f2c215acef7c7e2148de.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\chrome\content\api\e0e0650b2f7d27ddf03a131920ac4cfb.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\chrome\content\api\e6b2dd4a61bc3069b3ca4b316bdfd1ab.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\chrome\content\api\f12121b900bf0a4562f1eba7f973a24a.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\chrome\content\api\f3c4098fba181331d3b5fb205ec76dab.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\chrome\content\core\16f8ef1407ddf022e18130c2df3749db.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\chrome\content\core\36a645f4ed63377004d6e0245985e98c.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\chrome\content\core\590945f0677af9f5c63e614994bcc7ad.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\chrome\content\core\5be92d7b50bd3750597ceb7eda88d995.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\chrome\content\core\5fa26173475f6307dd1edda2d4ed251d.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\chrome\content\core\63bcecd0043dab5d26160f0bb2fbf66f.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\chrome\content\core\7dcca4a2eda1e05fb6e80ed011889e58.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\chrome\content\core\7ddf428a9b9a488f7b2458fd96e13416.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\chrome\content\core\8178dee0133955509f29665352971f5d.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\chrome\content\core\986fab7ba0139720aa9409229b3fe369.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\chrome\content\core\b4c696b95248684e986a960f05761600.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\chrome\content\core\b712185997b9096f0047c6bff5ae4d59.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\chrome\content\core\b9c30389369a23906255a7ebb9a3950b.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\chrome\content\core\c241f5236820929667c188c664b15657.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\chrome\content\core\c52a2358f339cd49d0d00605a36de26b.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\chrome\content\core\c5d6d75f2646f510da08267d43a9e342.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\chrome\content\core\cabf0ee03bc5d82dbaa9ccaa2b96d039.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\chrome\content\core\da5e855b954902676afed64e60adff15.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\chrome\content\core\eb3ee79237c498c79432fc1bd6eebf96.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\chrome\content\core\f69121513cbedefa53019678e8959f83.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\chrome\content\core\installer.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\defaults\preferences\prefs.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\extensionData\manifest.xml, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\extensionData\plugins.json, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\extensionData\plugins\246.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\extensionData\plugins\102.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\extensionData\plugins\104.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\extensionData\plugins\119.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\extensionData\plugins\123.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\extensionData\plugins\13.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\extensionData\plugins\14.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\extensionData\plugins\16.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\extensionData\plugins\17.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\extensionData\plugins\178.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\extensionData\plugins\179.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\extensionData\plugins\180.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\extensionData\plugins\184.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\extensionData\plugins\191.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\extensionData\plugins\195.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\extensionData\plugins\220.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\extensionData\plugins\221.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\extensionData\plugins\223.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\extensionData\plugins\231.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\extensionData\plugins\232.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\extensionData\plugins\242.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\extensionData\plugins\260.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\extensionData\plugins\262.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\extensionData\plugins\263.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\extensionData\plugins\268.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\extensionData\plugins\273.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\extensionData\plugins\281.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\extensionData\plugins\286.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\extensionData\plugins\288.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\extensionData\plugins\289.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\extensionData\plugins\300.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\extensionData\plugins\302.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\extensionData\plugins\335.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\extensionData\plugins\4.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\extensionData\plugins\47.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\extensionData\plugins\64.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\extensionData\plugins\7.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\extensionData\plugins\78.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\extensionData\plugins\9.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\extensionData\plugins\91.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\extensionData\plugins\93.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\extensionData\userCode\background.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\extensionData\userCode\extension.js, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\locale\en-US\translations.dtd, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\skin\button1.png, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\skin\button2.png, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\skin\button3.png, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\skin\button4.png, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\skin\button5.png, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\skin\crossrider_statusbar.png, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\skin\icon128.png, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\skin\icon16.png, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\skin\icon24.png, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\skin\icon48.png, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\skin\panelarrow-up.png, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\skin\popup.html, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\skin\skin.css, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\6cfae8cc4676442fa78d9dcdf@bd4ea874e76d4af1994ba.com\skin\update.css, In Quarantäne, [f369fa46374571c5204909273dc6f50b], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\chrome.manifest, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\install.rdf, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\chrome\content\7282e8ce5cf6004919aaf532771a4e81.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\chrome\content\72bca7c57758108755abcf4b0b33ec1d.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\chrome\content\7cb78b648c9641d631f4a1e12b9d6987.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\chrome\content\background.html, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\chrome\content\browser.xul, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\chrome\content\ce7d214169ac6743b13a3a15b8932ff8.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\chrome\content\d46657d4d8ff596c871bbcafdd1962a9.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\chrome\content\dialog.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\chrome\content\e842da08e851f60e83c894ca9c033919.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\chrome\content\ffCoreFilesIndex.txt, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\chrome\content\options.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\chrome\content\options.xul, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\chrome\content\search_dialog.xul, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\chrome\content\api\6b69af9d91a5a62ae74275edefc77fd7.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\chrome\content\api\026bce0754420c42d573be5a1b5c2f4f.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\chrome\content\api\0d181a4d45b579575ae6f20921e02861.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\chrome\content\api\1224688300df08b34f4c98319360cdcb.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\chrome\content\api\28a78f46b9d33ee87d0bedc28ab27294.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\chrome\content\api\2ca4683889e86f9a74eb5ea3295b39d8.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\chrome\content\api\494dc224d5cbdf0a1ef140ba366f0396.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\chrome\content\api\529ecd53b6a3661a512fdcbdfa6b17c6.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\chrome\content\api\588648870f6d7e7df89def91371bc75a.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\chrome\content\api\79d5113a5f3ea84cf1b1598439e2a2e4.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\chrome\content\api\c34e415ed47b2f919343455dd5d04b85.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\chrome\content\api\d7c8a1b2d38663ef9f046ddb7b8b0c81.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\chrome\content\api\e84b43db0351947eeabd7949037a9b40.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\chrome\content\api\e9d4226b331fdb4504085d79594f5b1c.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\chrome\content\api\ece8531affc2c398441a92e34432884e.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\chrome\content\api\f695e00e3db866fb6a4c8068e846912a.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\chrome\content\core\a6c26e20a28f2aae3676cf85f065d924.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\chrome\content\core\02268151e8e8f4107ddfcdf460b7b50b.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\chrome\content\core\0bf5c76cd424aa11a622cf173a42a815.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\chrome\content\core\1538081ae52d19168f181c1e9a9b89eb.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\chrome\content\core\1a9f696356d9cc78ee6a3cc65e28b86a.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\chrome\content\core\21cd53c58c9972fd26d4e04c3bdb10c6.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\chrome\content\core\2ceda814ac378a5914b4f800fd986936.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\chrome\content\core\4f7c0ab4251d16346032d6e106ea499c.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\chrome\content\core\6178cd09849a0dd0c103ab64da25bec7.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\chrome\content\core\719dbb17d508c5ca87b28539279fa8de.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\chrome\content\core\a0346e6ff505770a74184359d0c155a3.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\chrome\content\core\a7a2b2122fb1d69c4681958c88c1b652.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\chrome\content\core\b5fa314283697105494fc111bada3f74.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\chrome\content\core\bd5e922c5aa21cc05c8d82bb8e374e3e.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\chrome\content\core\d945d1e4d7bf0c202af01e717e89c320.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\chrome\content\core\ea6353a71923b6adfc7909b832a356d0.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\chrome\content\core\ec171f82cd6894ee56c1e0b575232f68.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\chrome\content\core\f19f522ac9754dcf3dd93cbac88ccfdd.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\chrome\content\core\f296532cd9443074066ffafb33b3bd1d.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\chrome\content\core\fee2024f37e2a8753e18d89ad69f3d6a.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\chrome\content\core\installer.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\defaults\preferences\prefs.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\extensionData\manifest.xml, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\extensionData\plugins.json, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\extensionData\plugins\220.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\extensionData\plugins\1.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\extensionData\plugins\1000020.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\extensionData\plugins\1000025.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\extensionData\plugins\1000030.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\extensionData\plugins\102.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\extensionData\plugins\104.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\extensionData\plugins\123.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\extensionData\plugins\13.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\extensionData\plugins\14.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\extensionData\plugins\16.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\extensionData\plugins\17.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\extensionData\plugins\177.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\extensionData\plugins\178.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\extensionData\plugins\179.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\extensionData\plugins\180.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\extensionData\plugins\182.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\extensionData\plugins\183.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\extensionData\plugins\195.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\extensionData\plugins\207.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\extensionData\plugins\21.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\extensionData\plugins\22.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\extensionData\plugins\221.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\extensionData\plugins\223.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\extensionData\plugins\226.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\extensionData\plugins\234.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\extensionData\plugins\246.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\extensionData\plugins\262.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\extensionData\plugins\263.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\extensionData\plugins\268.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\extensionData\plugins\273.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\extensionData\plugins\28.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\extensionData\plugins\281.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\extensionData\plugins\4.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\extensionData\plugins\47.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\extensionData\plugins\64.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\extensionData\plugins\7.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\extensionData\plugins\72.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\extensionData\plugins\78.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\extensionData\plugins\9.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\extensionData\plugins\91.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\extensionData\plugins\93.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\extensionData\plugins\98.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\extensionData\userCode\background.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\extensionData\userCode\extension.js, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\locale\en-US\translations.dtd, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\skin\button1.png, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\skin\button2.png, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\skin\button3.png, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\skin\button4.png, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\skin\button5.png, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\skin\crossrider_statusbar.png, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\skin\icon128.png, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\skin\icon16.png, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\skin\icon24.png, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\skin\icon48.png, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\skin\panelarrow-up.png, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\skin\popup.html, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\skin\skin.css, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\a338c5448f724f94af2f11@cc4cdd6788a64e7ca7d83cb2cd.com\skin\update.css, In Quarantäne, [86d6a39dff7d0c2abce7ae8221e244bc], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\background.html, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\chromeCoreFilesIndex.txt, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\manifest.json, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\popup.html, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\Settings.json, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\extensionData\manifest.xml, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\extensionData\plugins.json, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\extensionData\plugins\260.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\extensionData\plugins\102.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\extensionData\plugins\104.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\extensionData\plugins\119.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\extensionData\plugins\123.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\extensionData\plugins\13.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\extensionData\plugins\14.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\extensionData\plugins\17.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\extensionData\plugins\178.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\extensionData\plugins\179.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\extensionData\plugins\180.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\extensionData\plugins\184.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\extensionData\plugins\19.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\extensionData\plugins\191.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\extensionData\plugins\195.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\extensionData\plugins\220.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\extensionData\plugins\221.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\extensionData\plugins\223.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\extensionData\plugins\231.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\extensionData\plugins\232.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\extensionData\plugins\242.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\extensionData\plugins\246.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\extensionData\plugins\262.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\extensionData\plugins\263.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\extensionData\plugins\267.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\extensionData\plugins\273.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\extensionData\plugins\281.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\extensionData\plugins\286.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\extensionData\plugins\288.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\extensionData\plugins\289.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\extensionData\plugins\300.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\extensionData\plugins\302.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\extensionData\plugins\4.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\extensionData\plugins\47.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\extensionData\plugins\64.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\extensionData\plugins\7.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\extensionData\plugins\78.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\extensionData\plugins\80.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\extensionData\plugins\9.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\extensionData\plugins\91.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\extensionData\plugins\93.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\extensionData\plugins\97.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\extensionData\userCode\background.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\extensionData\userCode\extension.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\icons\icon128.png, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\icons\icon16.png, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\icons\icon48.png, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\icons\actions\1.png, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\js\3a7ee6d69c4e7f74af6fa2de24334ded.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\js\780d391d2c994f19db011c74c85ab92a.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\js\main.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\js\api\64805c41407e116d4918e74e81494392.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\js\api\77c2be33c53baaef57018e38f2544735.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\js\api\8821599800ed436bbdd7d8f26c3b26f3.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\js\api\d61ece136cae38ef22b6a9187f6a420d.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\js\api\f718ccd8b8af6f333e5da57c26df7477.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\js\api\pageAction.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\js\lib\0b0e9904b0e68bc9d9adfbc194b875cb.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\js\lib\2161d92d2c0b58972005a524dc15ef97.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\js\lib\3310c1920e45b28ade68aa0cd64ee567.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\js\lib\361f5a5a27297b4668a7946dac806b98.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\js\lib\45ba00bb94061df652eb8193a5e5c071.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\js\lib\62a900b540ca13d64751a602ed907c79.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\js\lib\6a0a1bce7f6758c2fe64244d1686df90.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\js\lib\6bc5aaa08bd927dd29bb859cd470b17c.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\js\lib\747271e335113c9cf7e9daf70f9cdd0a.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\js\lib\7c616166485379d526e60c57244ce48d.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\js\lib\7f6bdf3cb88a06492804f71e4a0be858.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\js\lib\9e050bfc71c749d669df35e193d4c5ab.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\js\lib\app_api.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\js\lib\b4956998f1db4fbf219c452a4ffef344.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\js\lib\ffd99102c0a4a61b4f39eb4bb66cacfc.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\js\lib\installer.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\js\lib\popupResource\newPopup.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ljefoakgfhcoeobgicjgejglnpfpemgb\1.26.54_0\js\lib\popupResource\popup.js, In Quarantäne, [aab2e35d6e0efb3b065ca88ed42f06fa], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\ljefoakgfhcoeobgicjgejglnpfpemgb\000005.ldb, Löschen bei Neustart, [5a02fc44f98385b1df84aa8c7a89d729], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\ljefoakgfhcoeobgicjgejglnpfpemgb\000011.ldb, Löschen bei Neustart, [5a02fc44f98385b1df84aa8c7a89d729], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\ljefoakgfhcoeobgicjgejglnpfpemgb\000051.log, Löschen bei Neustart, [5a02fc44f98385b1df84aa8c7a89d729], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\ljefoakgfhcoeobgicjgejglnpfpemgb\CURRENT, In Quarantäne, [5a02fc44f98385b1df84aa8c7a89d729], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\ljefoakgfhcoeobgicjgejglnpfpemgb\LOCK, Löschen bei Neustart, [5a02fc44f98385b1df84aa8c7a89d729], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\ljefoakgfhcoeobgicjgejglnpfpemgb\LOG, Löschen bei Neustart, [5a02fc44f98385b1df84aa8c7a89d729], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\ljefoakgfhcoeobgicjgejglnpfpemgb\LOG.old, In Quarantäne, [5a02fc44f98385b1df84aa8c7a89d729], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\ljefoakgfhcoeobgicjgejglnpfpemgb\MANIFEST-000049, Löschen bei Neustart, [5a02fc44f98385b1df84aa8c7a89d729], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\databases\chrome-extension_ljefoakgfhcoeobgicjgejglnpfpemgb_0\6, In Quarantäne, [7fddfb45502c59dd3b29cf67f60d2ed2], 
PUP.Optional.CrossRider.A, C:\Program Files (x86)\TotalPlusHD-3.1V25.11\c3687991-d9ea-410e-8d48-6b549f03fbcc.crx, In Quarantäne, [9ac239070d6fdd59ab1956e016ed669a], 
PUP.Optional.CrossRider.A, C:\Program Files (x86)\TotalPlusHD-3.1V25.11\1293297481.mxaddon, In Quarantäne, [9ac239070d6fdd59ab1956e016ed669a], 
PUP.Optional.CrossRider.A, C:\Program Files (x86)\TotalPlusHD-3.1V25.11\2d374c00-0afb-44b3-95e5-4a41d9686eee.crx, In Quarantäne, [9ac239070d6fdd59ab1956e016ed669a], 
PUP.Optional.CrossRider.A, C:\Program Files (x86)\TotalPlusHD-3.1V25.11\2d374c00-0afb-44b3-95e5-4a41d9686eee.xpi, In Quarantäne, [9ac239070d6fdd59ab1956e016ed669a], 
PUP.Optional.CrossRider.A, C:\Program Files (x86)\TotalPlusHD-3.1V25.11\TotalPlusHD-3.1V25.11.ico, In Quarantäne, [9ac239070d6fdd59ab1956e016ed669a], 
PUP.Optional.CrossRider.A, C:\Program Files (x86)\TotalPlusHD-3.1V25.11\456e00de-43ae-42fb-9864-561ae9c9c4ab.crx, In Quarantäne, [9ac239070d6fdd59ab1956e016ed669a], 
PUP.Optional.CrossRider.A, C:\Program Files (x86)\TotalPlusHD-3.1V25.11\background.html, In Quarantäne, [9ac239070d6fdd59ab1956e016ed669a], 
PUP.Optional.CrossRider.A, C:\Program Files (x86)\TotalPlusHD-3.1V25.11\bgNova.html, In Quarantäne, [9ac239070d6fdd59ab1956e016ed669a], 
PUP.Optional.CrossRider.A, C:\Program Files (x86)\TornPlusTV_version1.11\cf43921d-02df-421d-ae05-8262e53706bf.crx, In Quarantäne, [bba1d96735477eb853edfa41d52ed927], 
PUP.Optional.CrossRider.A, C:\Program Files (x86)\TornPlusTV_version1.11\1293297481.mxaddon, In Quarantäne, [bba1d96735477eb853edfa41d52ed927], 
PUP.Optional.CrossRider.A, C:\Program Files (x86)\TornPlusTV_version1.11\a9ccb700-1121-48dc-9d81-aa4449568617.crx, In Quarantäne, [bba1d96735477eb853edfa41d52ed927], 
PUP.Optional.CrossRider.A, C:\Program Files (x86)\TornPlusTV_version1.11\background.html, In Quarantäne, [bba1d96735477eb853edfa41d52ed927], 
PUP.Optional.CrossRider.A, C:\Program Files (x86)\TornPlusTV_version1.11\bgNova.html, In Quarantäne, [bba1d96735477eb853edfa41d52ed927], 
PUP.Optional.CrossRider.A, C:\Program Files (x86)\TornPlusTV_version1.11\cf43921d-02df-421d-ae05-8262e53706bf.xpi, In Quarantäne, [bba1d96735477eb853edfa41d52ed927], 
PUP.Optional.CrossRider.A, C:\Program Files (x86)\TornPlusTV_version1.11\efb9dbd1-a38f-4fff-b3a3-1510ff8ea703.crx, In Quarantäne, [bba1d96735477eb853edfa41d52ed927], 
PUP.Optional.CrossRider.A, C:\Program Files (x86)\TornPlusTV_version1.11\TornPlusTV_version1.11.ico, In Quarantäne, [bba1d96735477eb853edfa41d52ed927], 
PUP.Optional.CrossRider.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\prefs.js, Gut: (), Schlecht: (user_pref("extensions.crossrider.bic", "149e81c732b999b8b791f70075fa4194");), Ersetzt,[e37972ce2d4ff73f2c294f3f09fcda26]
PUP.Optional.SweetIM.A, C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\prefs.js, Gut: (), Schlecht: (user_pref("sweetim.toolbar.previous.keyword.URL", "hxxp://search.sweetim.com/search.asp?src=2&q=");), Ersetzt,[1d3fd56b4e2ede588265dcb37c89936d]

Physische Sektoren: 0
(Keine schädliche Elemente erkannt)


(end)
         

Alt 27.11.2014, 19:29   #9
schrauber
/// the machine
/// TB-Ausbilder
 

mystartsearch entfernen - Standard

mystartsearch entfernen



Dann noch bitte FRST wie oben angegeben
__________________
gruß,
schrauber

Proud Member of UNITE and ASAP since 2009

Spenden
Anleitungen und Hilfestellungen
Trojaner-Board Facebook-Seite

Keine Hilfestellung via PM!

Alt 27.11.2014, 21:57   #10
magnusson
 
mystartsearch entfernen - Standard

mystartsearch entfernen



Ok hier sind die FRST logs. Ich muss sie auch wieder splitten

FRST:


FRST Logfile:

FRST Logfile:

FRST Logfile:
Code:
ATTFilter
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 26-11-2014 01
Ran by WK (administrator) on WK-PC on 27-11-2014 21:45:14
Running from C:\Users\WK\Downloads
Loaded Profiles: UpdatusUser & WK (Available profiles: UpdatusUser & WK)
Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: Deutsch (Deutschland)
Internet Explorer Version 9
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(ASUSTeK Computer Inc.) C:\Windows\System32\FBAgent.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
(Intel Corporation) C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
(APN LLC.) C:\Program Files (x86)\AskPartnerNetwork\Toolbar\apnmcp.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(ASUS) C:\Program Files (x86)\ASUS\InstantOn for NB\InsOnSrv.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Intel(R) Corporation) C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe
(Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe
(AnchorFree Inc.) C:\Program Files (x86)\Hotspot Shield\bin\cmw_srv.exe
() C:\Program Files (x86)\Hotspot Shield\bin\hsswd.exe
() C:\ProgramData\DatacardService\HWDeviceService64.exe
(LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe
(Malwarebytes Corporation) C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamscheduler.exe
(Malwarebytes Corporation) C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe
() C:\ProgramData\Mobile Partner\OnlineUpdate\ouc.exe
(pdfforge GbR) C:\Program Files (x86)\PDF Architect\HelperService.exe
(pdfforge GbR) C:\Program Files (x86)\PDF Architect\ConversionService.exe
() C:\Windows\SysWOW64\PnkBstrA.exe
(Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe
(LULU Software) C:\Program Files (x86)\Soda PDF 5\HelperService.exe
(LULU Software) C:\Program Files (x86)\Soda PDF 5\ConversionService.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe
(Microsoft Corporation) C:\Program Files (x86)\Common Files\microsoft shared\Virtualization Handler\CVHSVC.EXE
(Huawei Technologies Co., Ltd.) C:\ProgramData\DatacardService\DCSHelper.exe
(Malwarebytes Corporation) C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbam.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe
(ASUS) C:\Program Files\ASUS\P4G\BatteryLife.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\ASUS Live Update\LiveUpdate.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
(ASUS) C:\Program Files (x86)\ASUS\FaceLogon\sensorsrv.exe
(ASUS) C:\Windows\AsScrPro.exe
(CyberLink) C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe
(Alcor Micro Corp.) C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe
(Acresso Corporation) C:\ProgramData\FLEXnet\Connect\11\ISUSPM.exe
(Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe
(McAfee, Inc.) C:\Program Files\McAfee Security Scan\3.8.150\SSScheduler.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe
(Dropbox, Inc.) C:\Users\WK\AppData\Roaming\Dropbox\bin\Dropbox.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
(Razoss Bar) C:\Users\WK\AppData\Local\Razoss\Application\RazossUpdater.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
() C:\Users\WK\AppData\Roaming\BrowserCompanion\tcbhn.exe
(Virage Logic Corporation / Sonic Focus) C:\Program Files (x86)\ASUS\ASUS Sonic Focus\SonicFocusTray.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe
(Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(APN) C:\Program Files (x86)\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
(ASUS) C:\Program Files (x86)\ASUS\InstantOn for NB\InsOnWMI.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ATKOSD.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\KBFiltr.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\WDC.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(AnchorFree Inc.) C:\Program Files (x86)\Hotspot Shield\bin\HSSCP.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Microsoft Corporation) C:\Windows\System32\lpremove.exe
(Microsoft Corporation) C:\Windows\System32\lpksetup.exe
(Microsoft Corporation) C:\Windows\System32\lpksetup.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [ETDCtrl] => C:\Program Files\Elantech\ETDCtrl.exe [2589992 2011-07-20] (ELAN Microelectronics Corp.)
HKLM\...\Run: [AmIcoSinglun64] => C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe [361984 2011-03-21] (Alcor Micro Corp.)
HKLM\...\Run: [RtHDVBg] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2277992 2011-11-03] (Realtek Semiconductor)
HKLM\...\Run: [IntelPAN] => C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe [1935120 2011-07-28] (Intel(R) Corporation)
HKLM-x32\...\Run: [Nuance PDF Reader-reminder] => C:\Program Files (x86)\Nuance\PDF Reader\Ereg\Ereg.exe [328992 2008-11-03] (Nuance Communications, Inc.)
HKLM-x32\...\Run: [ASUSPRP] => C:\Program Files (x86)\ASUS\APRP\APRP.EXE [3331312 2011-10-19] (ASUSTek Computer Inc.)
HKLM-x32\...\Run: [ASUSWebStorage] => C:\Program Files (x86)\ASUS\ASUS WebStorage\3.0.108.222\AsusWSPanel.exe [737104 2011-07-29] (ecareme)
HKLM-x32\...\Run: [ATKOSD2] => C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe [318080 2011-12-22] (ASUSTek Computer Inc.)
HKLM-x32\...\Run: [ATKMEDIA] => C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe [174720 2011-10-24] (ASUS)
HKLM-x32\...\Run: [HControlUser] => C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe [105016 2009-06-19] (ASUS)
HKLM-x32\...\Run: [SonicMasterTray] => C:\Program Files (x86)\ASUS\ASUS Sonic Focus\SonicFocusTray.exe [984400 2010-07-09] (Virage Logic Corporation / Sonic Focus)
HKLM-x32\...\Run: [Wireless Console 3] => C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe [2321072 2012-02-02] (ASUSTeK Computer Inc.)
HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [59280 2012-05-30] (Apple Inc.)
HKLM-x32\...\Run: [iTunesHelper] => C:\Program Files (x86)\iTunes\iTunesHelper.exe [421776 2012-06-07] (Apple Inc.)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
HKLM-x32\...\Run: [ApnTBMon] => C:\Program Files (x86)\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe [2039192 2014-11-24] (APN)
HKLM-x32\...\Run: [amd_dc_opt] => C:\Program Files (x86)\AMD\Dual-Core Optimizer\amd_dc_opt.exe [77824 2008-07-22] (AMD)
HKLM-x32\...\Run: [LogMeIn Hamachi Ui] => C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [3835728 2014-11-03] (LogMeIn Inc.)
HKLM-x32\...\Run: [Avira Systray] => C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe [124208 2014-10-22] (Avira Operations GmbH & Co. KG)
HKLM-x32\...\Run: [avgnt] => C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [703736 2014-10-23] (Avira Operations GmbH & Co. KG)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKU\S-1-5-21-3717476656-758687553-1952641011-1000\...\Run: [ISUSPM] => C:\ProgramData\FLEXnet\Connect\11\ISUSPM.exe [222496 2009-05-06] (Acresso Corporation)
HKU\S-1-5-21-3717476656-758687553-1952641011-1000\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [22065760 2014-10-01] (Skype Technologies S.A.)
HKU\S-1-5-21-3717476656-758687553-1952641011-1000\...\Run: [Steam] => "C:\Program Files (x86)\Steam\steam.exe" -silent
HKU\S-1-5-21-3717476656-758687553-1952641011-1000\...\MountPoints2: {08a408ed-21c4-11e1-bfed-806e6f6e6963} - E:\SETUP.EXE
HKU\S-1-5-21-3717476656-758687553-1952641011-1001\...\Run: [Speech Recognition] => C:\Windows\Speech\Common\sapisvr.exe [44544 2009-07-14] (Microsoft Corporation)
HKU\S-1-5-21-3717476656-758687553-1952641011-1001\...\Run: [EADM] => "C:\Program Files (x86)\Origin\Origin.exe" -AutoStart
HKU\S-1-5-21-3717476656-758687553-1952641011-1001\...\Run: [ISUSPM] => C:\ProgramData\FLEXnet\Connect\11\ISUSPM.exe [222496 2009-05-06] (Acresso Corporation)
HKU\S-1-5-21-3717476656-758687553-1952641011-1001\...\Run: [Steam] => "C:\Program Files (x86)\Steam\steam.exe" -silent
HKU\S-1-5-21-3717476656-758687553-1952641011-1001\...\Run: [Pando Media Booster] => C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe [3093624 2012-11-24] ()
HKU\S-1-5-21-3717476656-758687553-1952641011-1001\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [22065760 2014-10-01] (Skype Technologies S.A.)
HKU\S-1-5-21-3717476656-758687553-1952641011-1001\...\MountPoints2: {921df4f4-c768-11e1-9279-5404a645b907} - F:\AutoRun.exe
HKU\S-1-5-21-3717476656-758687553-1952641011-1001\...\MountPoints2: {921df502-c768-11e1-9279-5404a645b907} - F:\AutoRun.exe
AppInit_DLLs: C:\Windows\system32\nvinitx.dll => C:\Windows\system32\nvinitx.dll [241984 2011-10-17] (NVIDIA Corporation)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\AsusVibeLauncher.lnk
ShortcutTarget: AsusVibeLauncher.lnk -> C:\Program Files (x86)\ASUS\AsusVibe\AsusVibeLauncher.exe (ASUSTeK Computer Inc.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk
ShortcutTarget: McAfee Security Scan Plus.lnk -> C:\Program Files\McAfee Security Scan\3.8.150\SSScheduler.exe (McAfee, Inc.)
Startup: C:\Users\WK\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk
ShortcutTarget: Dropbox.lnk -> C:\Users\WK\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
Startup: C:\Users\WK\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\RazossUpdater.lnk
ShortcutTarget: RazossUpdater.lnk -> C:\Users\WK\AppData\Local\Razoss\Application\RazossUpdater.exe (Razoss Bar)
Startup: C:\Users\WK\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\tcbhn.lnk
ShortcutTarget: tcbhn.lnk -> C:\Users\WK\AppData\Roaming\BrowserCompanion\tcbhn.exe ()
ShellIconOverlayIdentifiers: [AsusWSShellExt_B] -> {6D4133E5-0742-4ADC-8A8C-9303440F7190} => C:\Program Files (x86)\ASUS\ASUS WebStorage\3.0.108.222\ASUSWSShellExt64.dll (eCareme Technologies, Inc.)
ShellIconOverlayIdentifiers: [AsusWSShellExt_O] -> {64174815-8D98-4CE6-8646-4C039977D808} => C:\Program Files (x86)\ASUS\ASUS WebStorage\3.0.108.222\ASUSWSShellExt64.dll (eCareme Technologies, Inc.)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKU\S-1-5-21-3717476656-758687553-1952641011-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://asus.msn.com
HKU\S-1-5-21-3717476656-758687553-1952641011-1000\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://asus.msn.com
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank
URLSearchHook: HKU\S-1-5-21-3717476656-758687553-1952641011-1000 - (No Name) - {00000000-6E41-4FD3-8538-502F5495E5FC} - No File
URLSearchHook: HKU\S-1-5-21-3717476656-758687553-1952641011-1000 - (No Name) - {855F3B16-6D32-4fe6-8A56-BBB695989046} - No File
StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe hxxp://www.mystartsearch.com/?type=sc&ts=1416935763&from=ild&uid=WDCXWD3200BPVT-80JJ5T0_WD-WXK1E81YKEH3YKEH3
SearchScopes: HKU\S-1-5-21-3717476656-758687553-1952641011-1000 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKU\S-1-5-21-3717476656-758687553-1952641011-1000 -> {3F3B5FDA-795B-4CFD-8A70-E1636621C471} URL = hxxp://websearch.ask.com/redirect?client=ie&tb=ORJ&o=100000027&src=kw&q={searchTerms}&locale=de_DE&apn_ptnrs=U3&apn_dtid=YYYYYYYYDE&apn_uid=84489FBA-3535-4C95-A7FD-465A237C130E&apn_sauid=8598839B-9A5D-4C02-9AB3-B265DA17FFD4
SearchScopes: HKU\S-1-5-21-3717476656-758687553-1952641011-1001 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKU\S-1-5-21-3717476656-758687553-1952641011-1001 -> {1B286EEF-2709-4C3C-9906-FBB750E00A0F} URL = hxxp://search.us.com/serp?guid={86AB995A-0AB3-41C1-9DF2-12055B7F9703}&action=default_search&serpv=5&k={searchTerms}
SearchScopes: HKU\S-1-5-21-3717476656-758687553-1952641011-1001 -> {3F3B5FDA-795B-4CFD-8A70-E1636621C471} URL = hxxp://websearch.ask.com/redirect?client=ie&tb=ORJ&o=100000027&src=kw&q={searchTerms}&locale=de_DE&apn_ptnrs=U3&apn_dtid=YYYYYYYYDE&apn_uid=84489FBA-3535-4C95-A7FD-465A237C130E&apn_sauid=8598839B-9A5D-4C02-9AB3-B265DA17FFD4
SearchScopes: HKU\S-1-5-21-3717476656-758687553-1952641011-1001 -> {483830EE-A4CD-4b71-B0A3-3D82E62A6909} URL = 
SearchScopes: HKU\S-1-5-21-3717476656-758687553-1952641011-1001 -> {75ACFA06-2B41-4E20-86D9-F9FB1ED31F73} URL = hxxp://search.yahoo.com/search?p={searchTerms}&fr=tightropetb&type=10557
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Microsoft Corporation)
BHO-x32: MSS+ Identifier -> {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} -> C:\Program Files\McAfee Security Scan\3.8.150\McAfeeMSS_IE.dll (McAfee, Inc.)
BHO-x32: PDF Architect Helper -> {3A2D5EBA-F86D-4BD3-A177-019765996711} -> C:\Program Files (x86)\PDF Architect\PDFIEHelper.dll (pdfforge GbR)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Microsoft Corporation)
BHO-x32: Soda PDF 5 IE Helper -> {C737F472-1193-4281-BF53-A00B67AB3E19} -> C:\Program Files (x86)\Soda PDF 5\PDFIEHelper.dll (LULU Software)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Toolbar: HKLM-x32 - PDF Architect Toolbar - {25A3A431-30BB-47C8-AD6A-E1063801134F} - C:\Program Files (x86)\PDF Architect\PDFIEPlugin.dll (pdfforge GbR)
Toolbar: HKLM-x32 - Soda PDF 5 IE Toolbar - {F335ABA2-FDB4-4644-92B2-5CC4B0FC91D6} - C:\Program Files (x86)\Soda PDF 5\PDFIEPlugin.dll (LULU Software)
Handler: BASE64 - No CLSID Value
Handler: CHROME - No CLSID Value
Handler: PROX - No CLSID Value
Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Microsoft Corporation)
Handler-x32: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Microsoft Corporation)

FireFox:
========
FF ProfilePath: C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default
FF NewTab: hxxp://www.mystartsearch.com/newtab/?type=nt&ts=1416935763&from=ild&uid=WDCXWD3200BPVT-80JJ5T0_WD-WXK1E81YKEH3YKEH3
FF DefaultSearchEngine: mystartsearch
FF SearchEngineOrder.1: Ask Search
FF SearchEngineOrder.3: Bing 
FF SelectedSearchEngine: mystartsearch
FF Homepage: hxxp://www.mystartsearch.com/?type=hp&ts=1416935763&from=ild&uid=WDCXWD3200BPVT-80JJ5T0_WD-WXK1E81YKEH3YKEH3
FF Keyword.URL: hxxp://www.bing.com/search?FORM=UP97DF&PC=UP97&q=
FF NetworkProxy: "type", 0
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_15_0_0_239.dll ()
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_239.dll ()
FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF Plugin-x32: @esn.me/esnsonar,version=0.70.4 -> C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\npesnsonar.dll No File
FF Plugin-x32: @esn/esnlaunch,version=1.132.0 -> C:\Program Files (x86)\Battlelog Web Plugins\1.132.0\npesnlaunch.dll No File
FF Plugin-x32: @esn/esnlaunch,version=1.140.0 -> C:\Program Files (x86)\Battlelog Web Plugins\1.140.0\npesnlaunch.dll No File
FF Plugin-x32: @java.com/DTPlugin,version=10.45.2 -> C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.45.2 -> C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3538.0513 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @pandonetworks.com/PandoWebPlugin -> C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: ZEON/PDF,version=2.0 -> C:\Program Files (x86)\Nuance\PDF Reader\bin\nppdf.dll (Zeon Corporation)
FF Plugin HKU\S-1-5-21-3717476656-758687553-1952641011-1001: pandonetworks.com/PandoWebPlugin -> C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF Plugin HKU\S-1-5-21-3717476656-758687553-1952641011-1001: ubisoft.com/uplaypc -> C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\npuplaypc.dll No File
FF SearchPlugin: C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\searchplugins\ask-search.xml
FF SearchPlugin: C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\searchplugins\bingp.xml
FF SearchPlugin: C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\searchplugins\icqplugin-1.xml
FF SearchPlugin: C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\searchplugins\icqplugin-2.xml
FF SearchPlugin: C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\searchplugins\icqplugin-3.xml
FF SearchPlugin: C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\searchplugins\icqplugin-4.xml
FF SearchPlugin: C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\searchplugins\icqplugin-5.xml
FF SearchPlugin: C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\searchplugins\icqplugin.xml
FF Extension: Avira Browser Safety - C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\Extensions\abs@avira.com [2014-11-26]
FF Extension: Browser Companion Helper - C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\Extensions\bbrs_002@blabbers.com [2012-04-30]
FF Extension: ICQ Toolbar - C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\Extensions\{800b5000-a755-47e1-992b-48a1c1357f07} [2012-08-16]
FF Extension: Ask Toolbar - C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\Extensions\toolbar_ORJ-V7@apn.ask.com.xpi [2013-06-06]
FF Extension: Hotspot Shield Extension - C:\Program Files (x86)\Mozilla Firefox\extensions\afproxy@anchorfree.com [2014-01-04]
FF Extension: Hotspot Shield Extension - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\afproxy@anchorfree.com [2014-09-25]
FF Extension: Skype Click to Call - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}.xpi [2014-07-14]
FF HKLM-x32\...\Firefox\Extensions: [FFPDFArchitectConverter@pdfarchitect.com] - C:\Program Files (x86)\PDF Architect\FFPDFArchitectExt
FF Extension: PDF Architect Converter For Firefox - C:\Program Files (x86)\PDF Architect\FFPDFArchitectExt [2013-04-04]
FF HKLM-x32\...\Firefox\Extensions: [FFSodaPDF5Converter@sodapdf.com] - C:\Program Files (x86)\Soda PDF 5\FFSoda5Ext
FF Extension: Soda PDF 5 Converter For Firefox - C:\Program Files (x86)\Soda PDF 5\FFSoda5Ext [2013-04-04]
FF HKU\S-1-5-21-3717476656-758687553-1952641011-1001\...\Firefox\Extensions: [{e4f94d1e-2f53-401e-8885-681602c0ddd8}] - C:\ProgramData\McAfee Security Scan\Extensions\{e4f94d1e-2f53-401e-8885-681602c0ddd8}.xpi
FF Extension: McAfee Security Scan Plus - C:\ProgramData\McAfee Security Scan\Extensions\{e4f94d1e-2f53-401e-8885-681602c0ddd8}.xpi [2014-04-04]
FF StartMenuInternet: FIREFOX.EXE - C:\Program Files (x86)\Mozilla Firefox\firefox.exe hxxp://www.mystartsearch.com/?type=sc&ts=1416935763&from=ild&uid=WDCXWD3200BPVT-80JJ5T0_WD-WXK1E81YKEH3YKEH3

Chrome: 
=======
CHR HomePage: Default -> https://www.google.de/
CHR StartupUrls: Default -> "https://www.google.de/"
CHR DefaultSuggestURL: Default -> {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client={google:suggestClient}&gs_ri={google:suggestRid}&xssi=t&q={searchTerms}&{google:inputType}{google:cursorPosition}{google:currentPageUrl}{google:pageClassification}{google:searchVersion}{google:sessionToken}{google:prefetchQuery}sugkey={google:suggestAPIKeyParameter}
CHR Plugin: (Shockwave Flash) - C:\Program Files (x86)\Google\Chrome\Application\39.0.2171.71\PepperFlash\pepflashplayer.dll ()
CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer
CHR Plugin: (Native Client) - C:\Program Files (x86)\Google\Chrome\Application\39.0.2171.71\ppGoogleNaClPluginChrome.dll No File
CHR Plugin: (Chrome PDF Viewer) - C:\Program Files (x86)\Google\Chrome\Application\39.0.2171.71\pdf.dll ()
CHR Plugin: (Microsoft Office 2010) - C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update\1.3.21.145\npGoogleUpdate3.dll No File
CHR Plugin: (McAfee Security Scanner +) - C:\Program Files (x86)\McAfee Security Scan\3.0.318\npMcAfeeMss.dll No File
CHR Plugin: (Silverlight Plug-In) - C:\Program Files (x86)\Microsoft Silverlight\5.1.20125.0\npctrl.dll No File
CHR Plugin: (Zeon Plus) - C:\Program Files (x86)\Nuance\PDF Reader\bin\nppdf.dll (Zeon Corporation)
CHR Plugin: (Java(TM) Platform SE 7 U5) - C:\Program Files (x86)\Oracle\JavaFX 2.1 Runtime\bin\plugin2\npjp2.dll (Oracle Corporation)
CHR Plugin: (Pando Web Plugin) - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
CHR Plugin: (Uplay PC) - C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\npuplaypc.dll No File
CHR Plugin: (Windows Live™ Photo Gallery) - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
CHR Plugin: (iTunes Application Detector) - C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
CHR Plugin: (Shockwave Flash) - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_6_602_180.dll No File
CHR Plugin: (Java Deployment Toolkit 7.0.50.255) - C:\Windows\SysWOW64\npDeployJava1.dll No File
CHR Profile: C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Docs) - C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2013-05-02]
CHR Extension: (Google Drive) - C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2013-05-02]
CHR Extension: (Google Voice Search Hotword (Beta)) - C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn [2014-09-17]
CHR Extension: (YouTube) - C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2013-05-02]
CHR Extension: (McAfee Security Scan+) - C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\bopakagnckmlgajfccecajhnimjiiedh [2014-03-29]
CHR Extension: (Google-Suche) - C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2013-05-02]
CHR Extension: (Avira Browserschutz) - C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\flliilndjeohchalpbbcdekjklbdgfkk [2014-11-26]
CHR Extension: (AdBlock) - C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2013-09-29]
CHR Extension: (Google Wallet) - C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-08-24]
CHR Extension: (Google Mail) - C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2013-05-02]
CHR HKLM-x32\...\Chrome\Extension: [bodddioamolcibagionmmobehnbhiakf] - C:\Program Files (x86)\BrowserCompanion\blabbers-ch.crx []
CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2014-07-14]
CHR HKLM-x32\...\Chrome\Extension: [ljlbhjeioccdadoagmkjknpdkcdoloog] - C:\Users\WK\AppData\Local\Razoss\Application\googlechrome\razoss.crx [2012-07-08]

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [432888 2014-10-23] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [432888 2014-10-23] (Avira Operations GmbH & Co. KG)
R2 APNMCP; C:\Program Files (x86)\AskPartnerNetwork\Toolbar\apnmcp.exe [166296 2014-10-30] (APN LLC.)
R2 ASUS InstantOn; C:\Program Files (x86)\ASUS\InstantOn for NB\InsOnSrv.exe [277120 2012-02-03] (ASUS)
R2 Avira.OE.ServiceHost; C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe [164656 2014-10-22] (Avira Operations GmbH & Co. KG)
R2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1390176 2014-07-14] (Microsoft Corporation)
R2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1767520 2014-07-14] (Microsoft Corporation)
R2 hshld; C:\Program Files (x86)\Hotspot Shield\bin\cmw_srv.exe [919040 2014-05-17] (AnchorFree Inc.) [File not signed]
S3 HssTrayService; C:\Program Files (x86)\Hotspot Shield\bin\HssTrayService.EXE [78512 2014-05-17] ()
R2 HssWd; C:\Program Files (x86)\Hotspot Shield\bin\hsswd.exe [430344 2014-05-16] ()
R2 HWDeviceService64.exe; C:\ProgramData\DatacardService\HWDeviceService64.exe [346976 2011-03-14] ()
R2 LMIGuardianSvc; C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe [417552 2014-10-21] (LogMeIn, Inc.)
R2 MBAMScheduler; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamscheduler.exe [1871160 2014-10-01] (Malwarebytes Corporation)
R2 MBAMService; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe [968504 2014-10-01] (Malwarebytes Corporation)
S3 McComponentHostService; C:\Program Files\McAfee Security Scan\3.8.150\McCHSvc.exe [289256 2014-04-09] (McAfee, Inc.)
S2 Mobile Partner. RunOuc; C:\Program Files (x86)\Mobile Partner\UpdateDog\ouc.exe [239968 2012-07-28] ()
S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [340240 2011-07-28] ()
R2 PDF Architect Helper Service; C:\Program Files (x86)\PDF Architect\HelperService.exe [1324104 2013-01-09] (pdfforge GbR)
R2 PDF Architect Service; C:\Program Files (x86)\PDF Architect\ConversionService.exe [795208 2013-01-09] (pdfforge GbR)
R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [76888 2012-12-07] ()
R2 Soda PDF 5 Helper Service; C:\Program Files (x86)\Soda PDF 5\HelperService.exe [1069408 2013-01-29] (LULU Software)
R2 Soda PDF 5 Service; C:\Program Files (x86)\Soda PDF 5\ConversionService.exe [794464 2013-01-29] (LULU Software)
S3 globalUpdatem; C:\Program Files (x86)\globalUpdate\Update\GoogleUpdate.exe /medsvc [X]

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R1 ATKWMIACPIIO_; C:\Program Files (x86)\ASUS\ATK Package\ATK WMIACPI\atkwmiacpi64.sys [17536 2011-09-07] (ASUS)
R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [119272 2014-10-23] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [131608 2014-10-23] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [28600 2014-10-23] (Avira Operations GmbH & Co. KG)
U5 ew_hwusbdev; C:\Windows\System32\Drivers\ew_hwusbdev.sys [117248 2012-07-28] (Huawei Technologies Co., Ltd.)
R1 HssDRV6; C:\Windows\System32\DRIVERS\hssdrv6.sys [44744 2014-05-17] (AnchorFree Inc.)
R3 kbfiltr; C:\Windows\System32\DRIVERS\kbfiltr.sys [15416 2009-07-20] ( )
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2014-10-01] (Malwarebytes Corporation)
R3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [129752 2014-11-27] (Malwarebytes Corporation)
R3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [63704 2014-10-01] (Malwarebytes Corporation)
R3 taphss6; C:\Windows\System32\DRIVERS\taphss6.sys [42184 2014-05-17] (Anchorfree Inc.)
S3 X6va015; \??\C:\Windows\SysWOW64\Drivers\X6va015 [X]
S3 X6va016; \??\C:\Windows\SysWOW64\Drivers\X6va016 [X]

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-11-27 21:45 - 2014-11-27 21:51 - 00033759 _____ () C:\Users\WK\Downloads\FRST.txt
2014-11-27 21:44 - 2014-11-27 21:47 - 00000000 ____D () C:\FRST
2014-11-27 21:39 - 2014-11-27 21:39 - 02117632 _____ (Farbar) C:\Users\WK\Downloads\FRST64.exe
2014-11-27 07:03 - 2014-11-27 07:04 - 00000165 ____H () C:\Users\WK\Downloads\~$Theoriefragen und Lösung.xlsx
2014-11-27 07:03 - 2014-11-27 07:03 - 00029200 _____ () C:\Users\WK\Downloads\Theoriefragen und Lösung.xlsx
2014-11-27 00:07 - 2014-11-27 00:07 - 00000165 ____H () C:\Users\WK\Downloads\~$P.L. Statistik am 13.11.14.xlsx
2014-11-27 00:05 - 2014-11-27 00:05 - 00013041 _____ () C:\Users\WK\Downloads\Statistik 06.11.14.xlsx
2014-11-27 00:05 - 2014-11-27 00:05 - 00010387 _____ () C:\Users\WK\Downloads\P.L. Statistik am 13.11.14.xlsx
2014-11-27 00:04 - 2014-11-27 00:04 - 00009543 _____ () C:\Users\WK\Downloads\Puls T-Test.xlsx
2014-11-26 23:57 - 2014-11-26 23:57 - 00437520 _____ () C:\Users\WK\Downloads\Stat Demo 2 Gruppe 9.rar
2014-11-26 21:24 - 2014-05-17 03:35 - 00044744 _____ (AnchorFree Inc.) C:\Windows\system32\Drivers\hssdrv6.sys
2014-11-26 20:33 - 2014-11-26 20:33 - 00038198 _____ () C:\Users\WK\Downloads\Statistik Demo 2_2014.xlsx
2014-11-26 20:33 - 2014-11-26 20:33 - 00000165 ____H () C:\Users\WK\Downloads\~$Statistik Demo 2_2014.xlsx
2014-11-26 20:28 - 2014-11-26 20:28 - 00933070 _____ () C:\Users\WK\Downloads\Stat_07_NORMAL_DIST_k.xlsx
2014-11-26 20:27 - 2014-11-26 20:27 - 00222742 _____ () C:\Users\WK\Downloads\Stat_04_SAMPLE_PARAMETER_01-02_k_1.xlsx
2014-11-26 20:26 - 2014-11-26 20:26 - 00030818 _____ () C:\Users\WK\Downloads\Stat_08_02_k.xlsx
2014-11-26 19:07 - 2014-11-26 19:07 - 00178312 _____ () C:\Users\WK\Downloads\Stat_03_01-06_k.xlsx
2014-11-26 19:02 - 2014-11-27 21:10 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-11-26 19:02 - 2014-11-26 19:10 - 00003822 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2014-11-26 17:08 - 2014-11-26 17:52 - 00116406 _____ () C:\Users\WK\Downloads\Extras.Txt
2014-11-26 17:06 - 2014-11-26 17:52 - 00242874 _____ () C:\Users\WK\Downloads\OTL.Txt
2014-11-26 16:53 - 2014-11-26 16:53 - 00602112 _____ (OldTimer Tools) C:\Users\WK\Downloads\OTL.exe
2014-11-26 16:05 - 2014-11-27 20:37 - 00129752 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2014-11-26 16:05 - 2014-11-26 16:05 - 00001104 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk
2014-11-26 16:05 - 2014-11-26 16:05 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 
2014-11-26 16:05 - 2014-11-26 16:05 - 00000000 ____D () C:\ProgramData\Malwarebytes
2014-11-26 16:05 - 2014-11-26 16:05 - 00000000 ____D () C:\Program Files (x86)\ Malwarebytes Anti-Malware 
2014-11-26 16:05 - 2014-10-01 11:11 - 00093400 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2014-11-26 16:05 - 2014-10-01 11:11 - 00063704 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2014-11-26 16:05 - 2014-10-01 11:11 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2014-11-26 16:04 - 2014-11-26 16:04 - 19828376 _____ (Malwarebytes Corporation ) C:\Users\WK\Downloads\mbam-setup-2.0.3.1025.exe
2014-11-26 14:34 - 2014-11-26 14:32 - 00043064 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avnetflt.sys
2014-11-26 14:33 - 2014-11-26 14:33 - 00000000 ____D () C:\Users\WK\AppData\Roaming\Avira
2014-11-26 14:30 - 2014-10-23 14:02 - 00131608 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avipbb.sys
2014-11-26 14:30 - 2014-10-23 14:02 - 00028600 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avkmgr.sys
2014-11-26 14:30 - 2014-10-23 14:01 - 00119272 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avgntflt.sys
2014-11-26 14:27 - 2014-11-26 14:31 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira
2014-11-26 14:27 - 2014-11-26 14:30 - 00000000 ____D () C:\ProgramData\Avira
2014-11-26 14:27 - 2014-11-26 14:30 - 00000000 ____D () C:\Program Files (x86)\Avira
2014-11-26 14:27 - 2014-11-26 14:27 - 04583464 _____ (Avira Operations GmbH & Co. KG) C:\Users\WK\Downloads\avira_de_av_5671869959__ws.exe
2014-11-26 14:27 - 2014-11-26 14:27 - 00001139 _____ () C:\Users\Public\Desktop\Avira.lnk
2014-11-26 14:27 - 2014-11-26 14:27 - 00000000 ____D () C:\ProgramData\Package Cache
2014-11-25 18:40 - 2014-11-25 18:40 - 00480280 _____ () C:\Users\WK\Downloads\Kate_Upton_all_nude_pictures_leaked_vids_TheFappening_The_Fappening_leak_Posible_Kate_Upton_SEXTAPE.exe
2014-11-25 18:34 - 2014-11-26 15:41 - 00000000 ____D () C:\Users\WK\AppData\Roaming\uTorrent
2014-11-25 18:34 - 2014-11-25 18:34 - 01720912 _____ (BitTorrent Inc.) C:\Users\WK\Downloads\uTorrent.exe
2014-11-25 18:17 - 2014-11-27 18:57 - 00001322 _____ () C:\Windows\Tasks\ALQL.job
2014-11-25 18:17 - 2014-11-27 18:57 - 00001318 _____ () C:\Windows\Tasks\RS.job
2014-11-25 18:17 - 2014-11-26 16:20 - 00000000 ____D () C:\Program Files (x86)\e743f1b9-82a4-47f6-832e-4665f9b967a8
2014-11-25 18:17 - 2014-11-25 18:17 - 00004336 _____ () C:\Windows\System32\Tasks\ALQL
2014-11-25 18:17 - 2014-11-25 18:17 - 00004332 _____ () C:\Windows\System32\Tasks\RS
2014-11-25 18:14 - 2014-11-27 18:57 - 00001328 _____ () C:\Windows\Tasks\CATRBVY.job
2014-11-25 18:14 - 2014-11-25 18:14 - 00004342 _____ () C:\Windows\System32\Tasks\CATRBVY
2014-11-25 18:13 - 2014-11-27 18:57 - 00001674 _____ () C:\Windows\Tasks\ONEZKDIW.job
2014-11-25 18:13 - 2014-11-26 16:20 - 00000000 ____D () C:\Program Files (x86)\d81cdd67-ab25-4a77-8bbe-2e3e7f283290
2014-11-25 18:13 - 2014-11-25 18:13 - 00004688 _____ () C:\Windows\System32\Tasks\ONEZKDIW
2014-11-25 18:13 - 2014-11-25 18:13 - 00000000 ____D () C:\Users\WK\AppData\Local\globalUpdate
2014-11-19 14:05 - 2014-11-11 04:08 - 00728064 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2014-11-19 14:05 - 2014-11-11 04:08 - 00241152 _____ (Microsoft Corporation) C:\Windows\system32\pku2u.dll
2014-11-19 14:05 - 2014-11-11 03:44 - 00550912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2014-11-19 14:05 - 2014-11-11 03:44 - 00186880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pku2u.dll
2014-11-12 23:44 - 2014-10-27 21:32 - 17870336 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-11-12 23:44 - 2014-10-27 21:13 - 02339840 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-11-12 23:44 - 2014-10-27 21:12 - 10921472 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-11-12 23:44 - 2014-10-27 21:07 - 01388032 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-11-12 23:44 - 2014-10-27 21:06 - 01392128 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-11-12 23:44 - 2014-10-27 21:05 - 01494016 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-11-12 23:44 - 2014-10-27 21:05 - 00237056 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2014-11-12 23:44 - 2014-10-27 21:05 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-11-12 23:44 - 2014-10-27 21:04 - 02157056 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-11-12 23:44 - 2014-10-27 21:04 - 00816640 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2014-11-12 23:44 - 2014-10-27 21:04 - 00729088 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-11-12 23:44 - 2014-10-27 21:04 - 00599040 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-11-12 23:44 - 2014-10-27 21:04 - 00453120 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-11-12 23:44 - 2014-10-27 21:04 - 00173056 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-11-12 23:44 - 2014-10-27 21:03 - 02382848 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-11-12 23:44 - 2014-10-27 21:03 - 00282112 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-11-12 23:44 - 2014-10-27 21:03 - 00248320 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-11-12 23:44 - 2014-10-27 21:03 - 00096768 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-11-12 23:44 - 2014-10-27 21:03 - 00055296 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll
2014-11-12 23:44 - 2014-10-27 21:03 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe
2014-11-12 23:44 - 2014-10-27 21:03 - 00011264 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe
2014-11-12 23:44 - 2014-10-27 20:10 - 12366848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-11-12 23:44 - 2014-10-27 20:05 - 01810944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-11-12 23:44 - 2014-10-27 20:02 - 09739776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-11-12 23:44 - 2014-10-27 19:59 - 01139712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-11-12 23:44 - 2014-10-27 19:59 - 01129472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2014-11-12 23:44 - 2014-10-27 19:58 - 01427968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2014-11-12 23:44 - 2014-10-27 19:57 - 00231936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll
2014-11-12 23:44 - 2014-10-27 19:57 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2014-11-12 23:44 - 2014-10-27 19:56 - 01802752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2014-11-12 23:44 - 2014-10-27 19:56 - 00717824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2014-11-12 23:44 - 2014-10-27 19:56 - 00607744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2014-11-12 23:44 - 2014-10-27 19:56 - 00421376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2014-11-12 23:44 - 2014-10-27 19:56 - 00142848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2014-11-12 23:44 - 2014-10-27 19:55 - 02382848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-11-12 23:44 - 2014-10-27 19:55 - 00353792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2014-11-12 23:44 - 2014-10-27 19:55 - 00223232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2014-11-12 23:44 - 2014-10-27 19:55 - 00073216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2014-11-12 23:44 - 2014-10-27 19:55 - 00041472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll
2014-11-12 23:44 - 2014-10-27 19:55 - 00011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe
2014-11-12 23:44 - 2014-10-27 19:55 - 00010752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe
2014-11-12 23:44 - 2014-10-27 19:54 - 00176640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2014-11-12 23:38 - 2014-11-05 18:56 - 00304640 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2014-11-12 23:38 - 2014-11-05 18:56 - 00228864 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2014-11-12 23:38 - 2014-11-05 18:52 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2014-11-12 23:38 - 2014-10-14 03:16 - 00155064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2014-11-12 23:38 - 2014-10-14 03:13 - 03241984 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
2014-11-12 23:38 - 2014-10-14 03:13 - 00683520 _____ (Microsoft Corporation) C:\Windows\system32\termsrv.dll
2014-11-12 23:38 - 2014-10-14 03:12 - 01460736 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2014-11-12 23:38 - 2014-10-14 03:09 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2014-11-12 23:38 - 2014-10-14 03:07 - 00681984 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2014-11-12 23:38 - 2014-10-14 02:50 - 02363904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
2014-11-12 23:38 - 2014-10-14 02:50 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2014-11-12 23:38 - 2014-10-14 02:49 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2014-11-12 23:38 - 2014-10-14 02:47 - 00146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll
2014-11-12 23:38 - 2014-10-14 02:46 - 00681984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll
2014-11-12 23:38 - 2014-08-21 07:43 - 01882624 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2014-11-12 23:38 - 2014-08-21 07:40 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll
2014-11-12 23:38 - 2014-08-21 07:26 - 01237504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll
2014-11-12 23:38 - 2014-08-21 07:23 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll
2014-11-12 23:38 - 2014-08-12 03:02 - 00878080 _____ (Microsoft Corporation) C:\Windows\system32\IMJP10K.DLL
2014-11-12 23:38 - 2014-08-12 02:36 - 00701440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IMJP10K.DLL
2014-11-12 23:37 - 2014-10-25 02:57 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\packager.dll
2014-11-12 23:37 - 2014-10-25 02:32 - 00067584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\packager.dll
2014-11-12 23:37 - 2014-10-18 03:05 - 00861696 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll
2014-11-12 23:37 - 2014-10-18 02:33 - 00571904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll
2014-11-12 23:37 - 2014-10-10 01:57 - 03198976 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2014-11-12 23:37 - 2014-10-03 03:12 - 00500224 _____ (Microsoft Corporation) C:\Windows\system32\AUDIOKSE.dll
2014-11-12 23:37 - 2014-10-03 03:11 - 00680960 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll
2014-11-12 23:37 - 2014-10-03 03:11 - 00440832 _____ (Microsoft Corporation) C:\Windows\system32\AudioEng.dll
2014-11-12 23:37 - 2014-10-03 03:11 - 00296448 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll
2014-11-12 23:37 - 2014-10-03 03:11 - 00284672 _____ (Microsoft Corporation) C:\Windows\system32\EncDump.dll
2014-11-12 23:37 - 2014-10-03 02:44 - 00442880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AUDIOKSE.dll
2014-11-12 23:37 - 2014-10-03 02:44 - 00374784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioEng.dll
2014-11-12 23:37 - 2014-10-03 02:44 - 00195584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioSes.dll
2014-11-12 23:37 - 2014-09-19 10:42 - 00342016 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2014-11-12 23:37 - 2014-09-19 10:42 - 00314880 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2014-11-12 23:37 - 2014-09-19 10:42 - 00309760 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2014-11-12 23:37 - 2014-09-19 10:42 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2014-11-12 23:37 - 2014-09-19 10:42 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2014-11-12 23:37 - 2014-09-19 10:42 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2014-11-12 23:37 - 2014-09-19 10:23 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2014-11-12 23:37 - 2014-09-19 10:23 - 00248832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2014-11-12 23:37 - 2014-09-19 10:23 - 00221184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll
2014-11-12 23:37 - 2014-09-19 10:23 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll
2014-11-12 23:37 - 2014-09-19 10:23 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
2014-11-12 23:37 - 2014-09-19 10:23 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll
2014-11-11 14:21 - 2014-11-11 14:21 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LogMeIn Hamachi
2014-11-11 14:21 - 2014-11-11 14:21 - 00000000 ____D () C:\Program Files (x86)\LogMeIn Hamachi
2014-11-05 17:29 - 2014-11-05 17:29 - 15853198 _____ () C:\Users\WK\Downloads\Physikprotokolle 2013-2014.zip
2014-11-05 17:23 - 2014-11-05 17:24 - 02344449 _____ () C:\Users\WK\Downloads\Physikprotokolle aus Toelgyesi-Gruppe.rar
2014-10-30 07:17 - 2014-10-30 07:17 - 00000000 ____D () C:\Users\WK\AppData\Local\{B725BD20-845D-4E00-85BF-AA148BC90AA7}
2014-10-30 07:07 - 2014-11-26 19:59 - 00000000 ____D () C:\ProgramData\Microsoft Help
2014-10-30 07:07 - 2014-10-30 07:07 - 00000000 ____D () C:\Users\WK\AppData\Local\Microsoft Help
2014-10-28 21:34 - 2014-10-28 21:34 - 00157153 _____ () C:\Users\WK\Downloads\Statistik 25.90.14.xlsx
2014-10-28 21:33 - 2014-10-28 21:33 - 00019383 _____ () C:\Users\WK\Downloads\Haeufigkeit Stat 18.9.14.xlsx
2014-10-28 21:14 - 2014-11-09 13:39 - 00036478 _____ () C:\Users\WK\Downloads\Unvollständige Tabelle für Froschblutzellen .xlsx
2014-10-28 21:08 - 2014-10-28 21:08 - 00011350 _____ () C:\Users\WK\Downloads\Statstik 09.10.2014.xlsx

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-11-27 21:43 - 2009-07-14 05:45 - 00018736 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-11-27 21:43 - 2009-07-14 05:45 - 00018736 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-11-27 21:29 - 2013-10-19 00:06 - 00001110 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-11-27 20:56 - 2012-04-24 13:33 - 00000000 ____D () C:\Users\WK\AppData\Roaming\Skype
2014-11-27 20:56 - 2011-12-08 18:32 - 01870662 _____ () C:\Windows\WindowsUpdate.log
2014-11-27 19:29 - 2013-10-19 00:06 - 00001106 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-11-27 14:11 - 2012-11-24 14:52 - 00000000 ____D () C:\Users\WK\AppData\Local\PMB Files
2014-11-27 13:44 - 2012-04-24 13:44 - 00000000 ____D () C:\Users\WK\AppData\Local\LogMeIn Hamachi
2014-11-27 13:43 - 2014-10-11 11:09 - 00000000 ___RD () C:\Users\WK\Dropbox
2014-11-27 13:43 - 2014-10-11 11:07 - 00000000 ____D () C:\Users\WK\AppData\Roaming\Dropbox
2014-11-27 13:41 - 2012-08-31 19:30 - 00000000 ____D () C:\ProgramData\Razoss
2014-11-27 13:41 - 2012-04-30 16:33 - 00000000 ____D () C:\Users\WK\AppData\Roaming\BrowserCompanion
2014-11-27 13:36 - 2014-09-27 07:40 - 00001008 _____ () C:\Windows\setupact.log
2014-11-27 13:36 - 2009-07-14 06:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-11-27 13:35 - 2011-10-19 04:20 - 01051470 _____ () C:\Windows\PFRO.log
2014-11-27 03:28 - 2013-11-17 15:47 - 00669236 _____ () C:\Windows\IE11_main.log
2014-11-26 21:24 - 2013-11-14 12:39 - 00000000 ____D () C:\Program Files (x86)\Hotspot Shield
2014-11-26 21:22 - 2013-11-14 12:41 - 00001050 _____ () C:\Users\Public\Desktop\Hotspot Shield.lnk
2014-11-26 21:12 - 2012-03-29 20:07 - 00058016 _____ () C:\Users\WK\AppData\Local\GDIPFONTCACHEV1.DAT
2014-11-26 19:10 - 2012-08-16 21:42 - 00701104 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-11-26 19:10 - 2012-08-16 21:42 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-11-26 19:07 - 2012-03-29 16:42 - 00000000 ____D () C:\Users\WK\AppData\Roaming\SoftGrid Client
2014-11-26 18:38 - 2011-12-08 18:45 - 00001726 _____ () C:\Windows\system32\ServiceFilter.ini
2014-11-26 18:33 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\Web
2014-11-26 16:53 - 2012-08-31 19:30 - 00000000 ____D () C:\Program Files (x86)\SweetIM
2014-11-26 16:19 - 2013-01-06 14:54 - 00000000 ____D () C:\Program Files (x86)\AGEIA Technologies
2014-11-26 15:44 - 2011-12-08 18:45 - 00002582 _____ () C:\Windows\system32\AutoRunFilter.ini
2014-11-26 15:15 - 2014-09-23 17:59 - 00000000 ____D () C:\Users\WK\AppData\Local\Windows Live
2014-11-26 14:20 - 2013-11-14 12:40 - 00000000 ____D () C:\ProgramData\Hotspot Shield
2014-11-25 18:16 - 2012-03-29 20:08 - 00001637 _____ () C:\Users\WK\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk
2014-11-25 18:16 - 2012-03-29 20:07 - 00001659 _____ () C:\Users\WK\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-11-25 18:16 - 2012-03-29 17:10 - 00001607 _____ () C:\Users\WK\Desktop\Internet Explorer (64-bit).lnk
2014-11-25 18:16 - 2012-03-29 16:52 - 00001362 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2014-11-25 18:16 - 2012-03-29 16:52 - 00001350 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk
2014-11-19 00:02 - 2014-10-11 11:09 - 00001009 _____ () C:\Users\WK\Desktop\Dropbox.lnk
2014-11-19 00:02 - 2014-10-11 11:08 - 00000000 ____D () C:\Users\WK\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox
2014-11-19 00:01 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\NDF
2014-11-18 23:56 - 2011-03-17 12:52 - 00728592 _____ () C:\Windows\system32\perfh019.dat
2014-11-18 23:56 - 2011-03-17 12:52 - 00154980 _____ () C:\Windows\system32\perfc019.dat
2014-11-18 23:56 - 2011-02-19 06:02 - 00396336 _____ () C:\Windows\system32\perfh00D.dat
2014-11-18 23:56 - 2011-02-19 06:02 - 00088896 _____ () C:\Windows\system32\perfc00D.dat
2014-11-18 23:56 - 2011-02-19 05:56 - 00610980 _____ () C:\Windows\system32\perfh008.dat
2014-11-18 23:56 - 2011-02-19 05:56 - 00115266 _____ () C:\Windows\system32\perfc008.dat
2014-11-18 23:56 - 2011-02-19 05:51 - 00412464 _____ () C:\Windows\system32\prfh0404.dat
2014-11-18 23:56 - 2011-02-19 05:51 - 00126282 _____ () C:\Windows\system32\prfc0404.dat
2014-11-18 23:56 - 2011-02-19 05:45 - 00733010 _____ () C:\Windows\system32\prfh0816.dat
2014-11-18 23:56 - 2011-02-19 05:45 - 00157044 _____ () C:\Windows\system32\prfc0816.dat
2014-11-18 23:56 - 2011-02-19 05:40 - 00747490 _____ () C:\Windows\system32\perfh013.dat
2014-11-18 23:56 - 2011-02-19 05:40 - 00157240 _____ () C:\Windows\system32\perfc013.dat
2014-11-18 23:56 - 2011-02-19 05:35 - 00744038 _____ () C:\Windows\system32\perfh010.dat
2014-11-18 23:56 - 2011-02-19 05:35 - 00150984 _____ () C:\Windows\system32\perfc010.dat
2014-11-18 23:56 - 2011-02-19 05:29 - 00749708 _____ () C:\Windows\system32\perfh00C.dat
2014-11-18 23:56 - 2011-02-19 05:29 - 00153718 _____ () C:\Windows\system32\perfc00C.dat
2014-11-18 23:56 - 2011-02-19 05:24 - 00711530 _____ () C:\Windows\system32\perfh007.dat
2014-11-18 23:56 - 2011-02-19 05:24 - 00153720 _____ () C:\Windows\system32\perfc007.dat
2014-11-18 23:56 - 2011-02-19 05:19 - 00749448 _____ () C:\Windows\system32\perfh00A.dat
2014-11-18 23:56 - 2011-02-19 05:19 - 00162612 _____ () C:\Windows\system32\perfc00A.dat
2014-11-18 23:56 - 2009-07-14 06:13 - 08785258 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-11-13 19:24 - 2013-10-19 00:06 - 00004106 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2014-11-13 19:24 - 2013-10-19 00:06 - 00003854 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2014-11-13 04:27 - 2009-07-14 05:45 - 00267816 _____ () C:\Windows\system32\FNTCACHE.DAT
2014-11-13 04:23 - 2014-07-13 14:02 - 00000000 ___SD () C:\Windows\system32\CompatTel
2014-11-13 03:13 - 2013-07-26 02:00 - 00000000 ____D () C:\Windows\system32\MRT
2014-11-13 03:03 - 2012-05-16 18:04 - 103374192 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-11-11 14:21 - 2013-11-16 17:23 - 00000928 _____ () C:\Users\Public\Desktop\LogMeIn Hamachi.lnk
2014-11-04 14:30 - 2012-03-29 16:56 - 00275080 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2014-11-03 19:35 - 2012-04-24 13:33 - 00000000 ____D () C:\ProgramData\Skype

Some content of TEMP:
====================
C:\Users\WK\AppData\Local\Temp\avgnt.exe
C:\Users\WK\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpzorgl9.dll
C:\Users\WK\AppData\Local\Temp\rootsupd.exe
C:\Users\WK\AppData\Local\Temp\Runner2.exe
C:\Users\WK\AppData\Local\Temp\Runner4.exe
C:\Users\WK\AppData\Local\Temp\SkypeSetup.exe


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2014-11-25 01:02

==================== End Of Log ============================
         
--- --- ---

--- --- ---

--- --- ---

FRST Addition:

Code:
ATTFilter
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 26-11-2014 01
Ran by WK at 2014-11-27 21:51:54
Running from C:\Users\WK\Downloads
Boot Mode: Normal
==========================================================


==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Avira Desktop (Enabled - Up to date) {4D041356-F94D-285F-8768-AAE50FA36859}
AS: Avira Desktop (Enabled - Up to date) {F665F2B2-DF77-27D1-BDD8-9197742422E4}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

µTorrent (HKU\S-1-5-21-3717476656-758687553-1952641011-1001\...\uTorrent) (Version: 3.4.2.36318 - BitTorrent Inc.)
7-Zip 9.20 (HKLM-x32\...\7-Zip) (Version:  - )
Adobe Flash Player 15 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 15.0.0.239 - Adobe Systems Incorporated)
Adobe Flash Player 15 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 15.0.0.239 - Adobe Systems Incorporated)
Alcor Micro USB Card Reader (HKLM-x32\...\AmUStor) (Version: 1.2.0117.08443 - Alcor Micro Corp.)
Alcor Micro USB Card Reader (x32 Version: 1.2.0117.08443 - Alcor Micro Corp.) Hidden
Apple Application Support (HKLM-x32\...\{122ADF8C-DDA1-480C-9936-C88F2825B265}) (Version: 2.1.9 - Apple Inc.)
Apple Mobile Device Support (HKLM\...\{6A76BEAF-6D1F-4273-A79B-DA8410A2E56B}) (Version: 5.2.0.6 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{789A5B64-9DD9-4BA5-915A-F0FC0A1B7BFE}) (Version: 2.1.3.127 - Apple Inc.)
Ask Toolbar (HKLM-x32\...\{4F524A2D-5637-006A-76A7-A758B70C1500}) (Version: 12.21.0.125 - APN, LLC) <==== ATTENTION
Ask Toolbar Updater (HKU\S-1-5-21-3717476656-758687553-1952641011-1000\...\{79A765E1-C399-405B-85AF-466F52E918B0}) (Version: 1.2.1.22229 - Ask.com) <==== ATTENTION
Asmedia ASM104x USB 3.0 Host Controller Driver (HKLM-x32\...\{E4FB0B39-C991-4EE7-95DD-1A1A7857D33D}) (Version: 1.14.4.0 - Asmedia Technology)
ASUS AI Recovery (HKLM-x32\...\{D39F0676-163E-4595-A917-E28F99BBD4D2}) (Version: 1.0.24 - ASUS)
ASUS FaceLogon (HKLM-x32\...\{64452561-169F-4A36-A2FF-B5E118EC65F5}) (Version: 1.0.0013 - ASUS)
ASUS LifeFrame3 (HKLM-x32\...\{1DBD1F12-ED93-49C0-A7CC-56CBDE488158}) (Version: 3.0.29 - ASUS)
ASUS Live Update (HKLM-x32\...\{FA540E67-095C-4A1B-97BA-4D547DEC9AF4}) (Version: 3.1.2 - ASUS)
ASUS Power4Gear Hybrid (HKLM\...\{9B6239BF-4E85-4590-8D72-51E30DB1A9AA}) (Version: 1.1.50 - ASUS)
ASUS Sonic Focus (HKLM-x32\...\{B0002707-4F7E-4745-88A7-852DA8A88635}) (Version: 1.0.0.5 - Synopsys )
ASUS Virtual Camera (HKLM-x32\...\{EC8BD21F-0CA0-4BBF-97D9-4A52B30041A1}) (Version: 1.0.25 - ASUS)
ASUS WebStorage (HKLM-x32\...\ASUS WebStorage) (Version: 3.0.108.222 - eCareme Technologies, Inc.)
AsusScr_K3 Series_ENG (HKLM-x32\...\AsusScr_K3 Series_ENG) (Version: 1.0.0001 - ASUS)
AsusVibe2.0 (HKLM-x32\...\Asus Vibe2.0) (Version: 2.0.7.142 - ASUSTEK)
Atheros Communications Inc.(R) AR81Family Gigabit/Fast Ethernet Driver (HKLM-x32\...\{3108C217-BE83-42E4-AE9E-A56A2A92E549}) (Version: 2.0.8.8 - Atheros Communications Inc.)
ATK Package (HKLM-x32\...\{AB5C933E-5C7D-4D30-B314-9C83A49B94BE}) (Version: 1.0.0015 - ASUS)
Avira (HKLM-x32\...\{9480d4af-12b9-4e56-8034-4031ef6ab39d}) (Version: 1.1.25.25607 - Avira Operations GmbH & Co. KG)
Avira (x32 Version: 1.1.25.25607 - Avira Operations GmbH & Co. KG) Hidden
Avira Free Antivirus (HKLM-x32\...\Avira AntiVir Desktop) (Version: 14.0.7.342 - Avira)
Batman: Arkham Asylum Game of the Year Edition (HKLM-x32\...\{CFABC775-5386-4BA5-86B4-505BBD36E812}) (Version: 1.0.0.0 - Square Enix Limited)
Batman: Arkham City™ (HKLM-x32\...\GFWL_{57520FA0-AC56-469B-9983-FF1000008300}) (Version: 1.0.0000.131 - WB Games)
Batman: Arkham City™ (x32 Version: 1.0.0000.131 - WB Games) Hidden
Battlefield 3™ (HKLM-x32\...\{76285C16-411A-488A-BCE3-C83CB933D8CF}) (Version: 1.0.0.0 - Electronic Arts)
Battlelog Web Plugins (HKLM-x32\...\Battlelog Web Plugins) (Version: 1.140.0 - EA Digital Illusions CE AB)
Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.)
Call of Duty: Black Ops II - Zombies (HKLM-x32\...\Steam App 212910) (Version:  - )
Chrome toolbar by SweetPacks (HKLM-x32\...\Razoss) (Version: 0.1.0.407 - SweetPacks Ltd.) <==== ATTENTION
Control ActiveX de Windows Live Mesh para conexiones remotas (HKLM-x32\...\{04668DF2-D32F-4555-9C7E-35523DCD6544}) (Version: 15.4.5722.2 - Microsoft Corporation)
Contrôle ActiveX Windows Live Mesh pour connexions à distance (HKLM-x32\...\{55D003F4-9599-44BF-BA9E-95D060730DD3}) (Version: 15.4.5722.2 - Microsoft Corporation)
Controlo ActiveX do Windows Live Mesh para Ligações Remotas (HKLM-x32\...\{E54EEB5D-41ED-40FE-B4A8-8565DB81469B}) (Version: 15.4.5722.2 - Microsoft Corporation)
Counter-Strike: Source Beta (HKLM-x32\...\Steam App 260) (Version:  - )
Cross Fire En (HKLM-x32\...\Cross Fire_is1) (Version:  - Z8Games.com)
CyberLink LabelPrint (HKLM-x32\...\InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243}) (Version: 2.5.3624 - CyberLink Corp.)
CyberLink Media Suite (HKLM-x32\...\InstallShield_{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}) (Version: 8.0.2926 - CyberLink Corp.)
CyberLink Power2Go (HKLM-x32\...\InstallShield_{40BF1E83-20EB-11D8-97C5-0009C5020658}) (Version: 7.0.0.1126 - CyberLink Corp.)
D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden
Dream Day First Home (HKLM-x32\...\{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-113832110}) (Version:  - Oberon Media)
Dropbox (HKU\S-1-5-21-3717476656-758687553-1952641011-1001\...\Dropbox) (Version: 2.10.52 - Dropbox, Inc.)
Dual-Core Optimizer (HKLM-x32\...\{9FD6F1A8-5550-46AF-8509-271DF0E768B5}) (Version: 1.1.4.0169 - AMD)
ESN Sonar (HKLM-x32\...\ESN Sonar-0.70.4) (Version: 0.70.4 - ESN Social Software AB)
ETDWare PS/2-X64 8.0.5.5_WHQL (HKLM\...\Elantech) (Version: 8.0.5.5 - ELAN Microelectronic Corp.)
Far Cry 3 (HKLM-x32\...\{E3B9C5A9-BD7A-4B56-B754-FAEA7DD6FA88}) (Version: 1.02 - Ubisoft)
Fast Boot (HKLM\...\{13F4A7F3-EABC-4261-AF6B-1317777F0755}) (Version: 1.0.10 - ASUS)
Galeria de Fotografias do Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Galería fotográfica de Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Galerie de photos Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
GIMP 2.8.2 (HKLM\...\GIMP-2_is1) (Version: 2.8.2 - The GIMP Team)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 39.0.2171.71 - Google Inc.)
Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden
Hotspot Shield 3.42 (HKLM-x32\...\HotspotShield) (Version: 3.42 - AnchorFree Inc.)
InstantOn for NB (HKLM-x32\...\{749F674B-2674-47E8-879C-5626A06B2A91}) (Version: 2.1.10 - ASUS)
Intel PROSet Wireless (x32 Version:  - ) Hidden
Intel(R) Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1007 - Intel Corporation)
Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 7.0.0.1144 - Intel Corporation)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 8.15.10.2462 - Intel Corporation)
Intel(R) PROSet/Wireless WiFi Software (HKLM\...\{25FBDA9A-E868-4B3B-B9FF-D923818511A1}) (Version: 14.2.0000 - Intel Corporation)
Internet Explorer Toolbar 4.6 by SweetPacks (HKLM-x32\...\{C3E85EE9-5892-4142-B537-BCEB3DAC4C3D}) (Version: 4.6.0004 - SweetIM Technologies Ltd.) <==== ATTENTION
iTunes (HKLM\...\{840A3BAA-4C68-4581-9C7A-6F8D6CF531B9}) (Version: 10.6.3.25 - Apple Inc.)
Java 7 Update 45 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83217040FF}) (Version: 7.0.450 - Oracle)
JavaFX 2.1.1 (HKLM-x32\...\{1111706F-666A-4037-7777-211328764D10}) (Version: 2.1.1 - Oracle Corporation)
Junk Mail filter update (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
League of Legends (HKLM-x32\...\{92606477-9366-4D3B-8AE3-6BE4B29727AB}) (Version: 1.3 - Riot Games)
LogMeIn Hamachi (HKLM-x32\...\LogMeIn Hamachi) (Version: 2.2.0.266 - LogMeIn, Inc.)
LogMeIn Hamachi (x32 Version: 2.2.0.266 - LogMeIn, Inc.) Hidden
Mahjong Memoirs (HKLM-x32\...\{82C36957-D2B8-4EF2-B88C-5FA03AA848C7-117948443}) (Version:  - Oberon Media)
Malwarebytes Anti-Malware Version 2.0.3.1025 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.3.1025 - Malwarebytes Corporation)
McAfee Security Scan Plus (HKLM\...\McAfee Security Scan) (Version: 3.8.150.1 - McAfee, Inc.)
Mesh Runtime (x32 Version: 15.4.5722.2 - Microsoft Corporation) Hidden
Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{832D9DE0-8AFC-4689-9819-4DBBDEBD3E4F}) (Version: 3.5.92.0 - Microsoft Corporation)
Microsoft Games for Windows Marketplace (HKLM-x32\...\{4CB0307C-565E-4441-86BE-0DF2E4FB828C}) (Version: 3.5.50.0 - Microsoft Corporation)
Microsoft Office 2010 (HKLM-x32\...\{95140000-0070-0000-0000-0000000FF1CE}) (Version: 14.0.4763.1000 - Microsoft Corporation)
Microsoft Office Klick-und-Los 2010 (HKLM-x32\...\Office14.Click2Run) (Version: 14.0.4763.1000 - Microsoft Corporation)
Microsoft Office Starter 2010 - Deutsch (HKLM-x32\...\{90140011-0066-0407-0000-0000000FF1CE}) (Version: 14.0.4763.1000 - Microsoft Corporation)
Microsoft PowerPoint Viewer (HKLM-x32\...\{95140000-00AF-0407-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{A49F249F-0C91-497F-86DF-B2585E8E76B7}) (Version: 8.0.50727.42 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010  x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010  x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Mobile Partner (HKLM-x32\...\Mobile Partner) (Version: 21.005.15.02.382 - Huawei Technologies Co.,Ltd)
Mozilla Firefox 32.0.3 (x86 de) (HKLM-x32\...\Mozilla Firefox 32.0.3 (x86 de)) (Version: 32.0.3 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 30.0 - Mozilla)
Nuance PDF Reader (HKLM-x32\...\{B480904D-F73F-4673-B034-8A5F492C9184}) (Version: 6.00.0041 - Nuance Communications, Inc.)
NVIDIA Graphics Driver 285.64 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 285.64 - NVIDIA Corporation)
NVIDIA PhysX (HKLM-x32\...\{C5C1C0F0-D62F-4DBF-81D4-D7EF397C228B}) (Version: 9.09.0814 - NVIDIA Corporation)
Origin (HKLM-x32\...\Origin) (Version: 9.0.11.77 - Electronic Arts, Inc.)
Pando Media Booster (HKLM-x32\...\{980A182F-E0A2-4A40-94C1-AE0C1235902E}) (Version: 2.6.0.8 - Pando Networks Inc.)
PDF Architect (HKLM-x32\...\{80A07844-CA64-4DE4-AB61-D37DDBE8074F}) (Version: 1.0.52.8917 - pdfforge)
PDFCreator (HKLM-x32\...\{0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}) (Version: 1.6.2 - pdfforge)
PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.993 - Even Balance, Inc.)
Raccolta foto di Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Rayman3 (HKLM-x32\...\{BAF5914B-5730-4373-B038-9F436AC6A0D6}) (Version: 1.00.0000 - Ubi Soft)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6499 - Realtek Semiconductor Corp.)
Skype Click to Call (HKLM-x32\...\{6D1221A9-17BF-4EC0-81F2-27D30EC30701}) (Version: 7.3.16540.9015 - Microsoft Corporation)
Skype™ 6.21 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 6.21.104 - Skype Technologies S.A.)
Soda PDF 5 (HKLM-x32\...\{B756A738-AC20-4C26-9EFD-80810B624642}) (Version: 5.0.133.9133 - LULU SOFTWARE LIMITED)
Spotify (HKU\S-1-5-21-3717476656-758687553-1952641011-1001\...\Spotify) (Version: 0.8.5.1333.g822e0de8 - Spotify AB)
Steam (HKLM-x32\...\{048298C9-A4D3-490B-9FF9-AB023A9238F3}) (Version: 1.0.0.0 - Valve Corporation)
SweetIM for Messenger 3.7 (HKLM-x32\...\{7683B745-6060-41FD-AA75-0BBB383FEAD4}) (Version: 3.7.0005 - SweetIM Technologies Ltd.) <==== ATTENTION
TeamSpeak 3 Client (HKU\S-1-5-21-3717476656-758687553-1952641011-1000\...\TeamSpeak 3 Client) (Version: 3.0.6 - TeamSpeak Systems GmbH)
TeamSpeak 3 Client (HKU\S-1-5-21-3717476656-758687553-1952641011-1001\...\TeamSpeak 3 Client) (Version: 3.0.11.1 - TeamSpeak Systems GmbH)
TornPlusTV_version1.11 (HKLM-x32\...\TornPlusTV_version1.11) (Version: 1.35.9.29 - Qwerty)
TotalPlusHD-3.1V25.11 (HKLM-x32\...\TotalPlusHD-3.1V25.11) (Version: 1.35.9.29 - HDPlus-3.1TotalV25.11) <==== ATTENTION
Update Manager for SweetPacks 1.1 (HKLM-x32\...\{EA8FA6BE-29BE-4AF2-9352-841F83215EB0}) (Version: 1.1.0008 - SweetIM Technologies Ltd.) <==== ATTENTION
Uplay (HKLM-x32\...\Uplay) (Version: 2.0 - Ubisoft)
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 15.4.3538.0513 - Microsoft Corporation)
Windows Live Mesh - ActiveX-besturingselement voor externe verbindingen (HKLM-x32\...\{C32CE55C-12BA-4951-8797-0967FDEF556F}) (Version: 15.4.5722.2 - Microsoft Corporation)
Windows Live Mesh ActiveX Control for Remote Connections (HKLM-x32\...\{2902F983-B4C1-44BA-B85D-5C6D52E2C441}) (Version: 15.4.5722.2 - Microsoft Corporation)
Windows Live Mesh ActiveX control for remote connections (HKLM-x32\...\{C5398A89-516C-4DAF-BA07-EE7949090E56}) (Version: 15.4.5722.2 - Microsoft Corporation)
Windows Live Mesh ActiveX Control for Remote Connections (HKLM-x32\...\{C63A1E60-B6A4-440B-89A5-1FC6E4AC1C94}) (Version: 15.4.5722.2 - Microsoft Corporation)
WindowsMangerProtect20.0.0.1270 (HKLM-x32\...\WindowsMangerProtect) (Version: 20.0.0.1270 - WindowsProtect LIMITED) <==== ATTENTION
WinFlash (HKLM-x32\...\{8F21291E-0444-4B1D-B9F9-4370A73E346D}) (Version: 2.41.0 - ASUS)
WinRAR 4.20 (64-Bit) (HKLM\...\WinRAR archiver) (Version: 4.20.0 - win.rar GmbH)
Wireless Console 3 (HKLM-x32\...\{19EA33FB-B34E-40EA-8B8A-61743AEB795A}) (Version: 3.0.27 - ASUS)
Στοιχείο ελέγχου ActiveX του Windows Live Mesh για απομακρυσμένες συνδέσεις (HKLM-x32\...\{F665F3B8-01B4-46A9-8E47-FF8DC2208C9F}) (Version: 15.4.5722.2 - Microsoft Corporation)
Συλλογή φωτογραφιών του Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Основные компоненты Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Почта Windows Live (x32 Version: 15.4.3502.0922 - Корпорация Майкрософт) Hidden
Фотоальбом Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Элемент управления Windows Live Mesh ActiveX для удаленных подключений (HKLM-x32\...\{BCB0D6F7-7EAB-4009-A6F2-8E0E7F317773}) (Version: 15.4.5722.2 - Microsoft Corporation)
גלריית התמונות של Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
פקד ActiveX של Windows Live Mesh עבור חיבורים מרוחקים (HKLM-x32\...\{9D4C7DFA-CBBB-4F06-BDAC-94D831406DF0}) (Version: 15.4.5722.2 - Microsoft Corporation)
بريد Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
عنصر تحكم ActiveX الخاص بـ Windows Live Mesh للاتصالات البعيدة (HKLM-x32\...\{E18B30AA-6E2D-480C-B918-AF61009F4010}) (Version: 15.4.5722.2 - Microsoft Corporation)
معرض صور Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
適用遠端連線的 Windows Live Mesh ActiveX 控制項 (HKLM-x32\...\{622DE1BE-9EDE-49D3-B349-29D64760342A}) (Version: 15.4.5722.2 - Microsoft Corporation)

==================== Custom CLSID (selected items): ==========================

(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)

CustomCLSID: HKU\S-1-5-21-3717476656-758687553-1952641011-1001_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\WK\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3717476656-758687553-1952641011-1001_Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\WK\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3717476656-758687553-1952641011-1001_Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\WK\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3717476656-758687553-1952641011-1001_Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\WK\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3717476656-758687553-1952641011-1001_Classes\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\WK\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3717476656-758687553-1952641011-1001_Classes\CLSID\{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\WK\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3717476656-758687553-1952641011-1001_Classes\CLSID\{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\WK\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3717476656-758687553-1952641011-1001_Classes\CLSID\{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\WK\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-3717476656-758687553-1952641011-1001_Classes\CLSID\{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\WK\AppData\Roaming\Dropbox\bin\DropboxExt64.24.dll (Dropbox, Inc.)

==================== Restore Points  =========================


==================== Hosts content: ==========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2009-07-14 03:34 - 2009-06-10 22:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts

==================== Scheduled Tasks (whitelisted) =============

(If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)

Task: {0525514A-8755-443C-ABED-21ABE81CC629} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2011-06-01] (Apple Inc.)
Task: {1F507848-381C-49B4-A586-0A80F7C2AC69} - System32\Tasks\{CDE43C9F-3D76-4EB0-B1E9-140446EBB99E} => Chrome.exe hxxp://ui.skype.com/ui/0/6.20.0.104/de/go/help.faq.installer?source=lightinstaller&amp;LastError=112
Task: {4F540BDB-4652-41CE-9BD9-72DB5C62178B} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-10-19] (Google Inc.)
Task: {5453628E-DFC8-44BF-9574-F5D4C556AABD} - System32\Tasks\OfficeSoftwareProtectionPlatform\SvcRestartTask => Sc.exe start osppsvc
Task: {5B4AA405-0A5A-401C-A5AD-936F61D8A8A8} - System32\Tasks\AdobeFlashPlayerUpdate 2 => C:\Windows\SysWOW64\FlashPlayerUpdateService.exe
Task: {5DE44A79-0171-46C7-91BC-39F6D0D2837B} - System32\Tasks\{749067AD-2208-40BB-9C64-C964FB07CB69} => D:\League of Legends\lol.launcher.exe [2012-10-25] ()
Task: {60838819-071A-4409-A8E6-DF842BAE18C1} - System32\Tasks\{BDCAE3A2-D846-444B-BD81-B567D7BC0E37} => Chrome.exe hxxp://ui.skype.com/ui/0/6.20.0.104/de/abandoninstall?source=lightinstaller&amp;page=tsMain
Task: {67BA568E-ECAC-449C-B2D4-F60ECEA306F2} - System32\Tasks\ASUS Live Update => C:\Program Files (x86)\ASUS\ASUS Live Update\LiveUpdate.exe [2012-01-09] (ASUSTeK Computer Inc.)
Task: {6BF9F730-7621-4C27-9A07-F62B1E0DF36F} - System32\Tasks\ATKOSD2 => C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe [2011-12-22] (ASUSTek Computer Inc.)
Task: {77129A44-9EC3-4F6D-ABCC-7AE378ABC54D} - System32\Tasks\ALQL => C:\Users\WK\AppData\Roaming\ALQL.exe <==== ATTENTION
Task: {792DCC3F-7AC4-48F8-80A3-5BFB83756D40} - System32\Tasks\CATRBVY => C:\Users\WK\AppData\Roaming\CATRBVY.exe <==== ATTENTION
Task: {7AADF075-87B6-4183-9055-3DF896A17D03} - System32\Tasks\ASUS SmartLogon Console Sensor => C:\Program Files (x86)\ASUS\FaceLogon\sensorsrv.exe [2011-10-03] (ASUS)
Task: {A5ECA008-6CC3-46BC-A23D-4A8E32AC2FEB} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-11-26] (Adobe Systems Incorporated)
Task: {BE3534EB-664B-4AF3-B9CC-2108AC22AB9A} - System32\Tasks\ASUS P4G => C:\Program Files\ASUS\P4G\BatteryLife.exe [2011-11-15] (ASUS)
Task: {D7DED88B-BD2B-44EA-877A-7AA5A6F2452F} - System32\Tasks\ONEZKDIW => C:\Users\WK\AppData\Roaming\ONEZKDIW.exe <==== ATTENTION
Task: {D8DCF0D6-A36B-4CA6-B52A-E19D535CD5C4} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-10-19] (Google Inc.)
Task: {DF561180-FC3B-4BFC-89B7-AF182293B117} - System32\Tasks\AdobeFlashPlayerUpdate => C:\Windows\SysWOW64\FlashPlayerUpdateService.exe
Task: {EC711341-532D-4E81-9B56-D4BB529B7412} - System32\Tasks\RS => C:\Users\WK\AppData\Roaming\RS.exe <==== ATTENTION
Task: {FC7ABED7-86CB-45D3-9B89-99246077ABF7} - System32\Tasks\{FEAD64C8-3587-438B-99EB-BA08DF147EC2} => Chrome.exe hxxp://ui.skype.com/ui/0/6.20.0.104/de/go/help.faq.installer?source=lightinstaller&amp;LastError=112
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\ALQL.job => C:\Users\WK\AppData\Roaming\ALQL.exe <==== ATTENTION
Task: C:\Windows\Tasks\CATRBVY.job => C:\Users\WK\AppData\Roaming\CATRBVY.exe <==== ATTENTION
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\ONEZKDIW.job => C:\Users\WK\AppData\Roaming\ONEZKDIW.exe <==== ATTENTION
Task: C:\Windows\Tasks\RS.job => C:\Users\WK\AppData\Roaming\RS.exe <==== ATTENTION

==================== Loaded Modules (whitelisted) =============

2011-07-28 05:07 - 2011-07-28 05:07 - 01501696 _____ () C:\Program Files\Common Files\Intel\WirelessCommon\Libeay32.dll
2014-05-16 23:34 - 2014-05-16 23:34 - 00430344 _____ () C:\Program Files (x86)\Hotspot Shield\bin\hsswd.exe
2011-03-14 16:27 - 2011-03-14 16:27 - 00346976 _____ () C:\ProgramData\DatacardService\HWDeviceService64.exe
2012-07-28 15:40 - 2012-07-28 15:39 - 00239968 _____ () C:\ProgramData\Mobile Partner\OnlineUpdate\ouc.exe
2012-06-11 18:27 - 2012-12-07 18:00 - 00076888 _____ () C:\Windows\SysWOW64\PnkBstrA.exe
2010-07-14 15:11 - 2010-07-14 15:11 - 00031360 _____ () C:\Program Files\ASUS\P4G\DevMng.dll
2011-11-07 10:45 - 2011-07-26 08:37 - 00094208 _____ () C:\Windows\System32\IccLibDll_x64.dll
2011-07-28 05:07 - 2011-07-28 05:07 - 01501696 _____ () C:\Program Files\Common Files\Intel\WirelessCommon\LIBEAY32.dll
2012-03-21 14:07 - 2012-03-21 14:07 - 00692888 _____ () C:\Users\WK\AppData\Roaming\BrowserCompanion\tcbhn.exe
2012-05-30 19:06 - 2012-05-30 19:06 - 00087912 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll
2012-05-30 19:06 - 2012-05-30 19:06 - 01242512 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll
2014-05-17 01:11 - 2014-05-17 01:11 - 00908584 _____ () C:\Program Files (x86)\Hotspot Shield\bin\af_proxy.dll
2014-05-17 01:37 - 2014-05-17 01:37 - 00506664 _____ () C:\Program Files (x86)\Hotspot Shield\bin\HssRep.dll
2012-07-28 15:40 - 2012-07-28 15:39 - 00011362 _____ () C:\ProgramData\Mobile Partner\OnlineUpdate\mingwm10.dll
2012-07-28 15:40 - 2012-07-28 15:39 - 00043008 _____ () C:\ProgramData\Mobile Partner\OnlineUpdate\libgcc_s_dw2-1.dll
2012-07-28 15:40 - 2012-07-28 15:39 - 02415104 _____ () C:\ProgramData\Mobile Partner\OnlineUpdate\QtCore4.dll
2012-07-28 15:40 - 2012-07-28 15:39 - 01148416 _____ () C:\ProgramData\Mobile Partner\OnlineUpdate\QtNetwork4.dll
2012-07-28 15:40 - 2012-07-28 15:39 - 00383488 _____ () C:\ProgramData\Mobile Partner\OnlineUpdate\QueryStrategy.dll
2012-07-28 15:40 - 2012-07-28 15:39 - 00398336 _____ () C:\ProgramData\Mobile Partner\OnlineUpdate\QtXml4.dll
2010-08-20 18:57 - 2010-08-20 18:57 - 00619816 _____ () C:\Program Files (x86)\CyberLink\Power2Go\CLMediaLibrary.dll
2010-08-20 18:57 - 2010-08-20 18:57 - 00013096 _____ () C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvcPS.dll
2014-11-27 13:42 - 2014-11-27 13:42 - 00043008 _____ () c:\users\wk\appdata\local\temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpzorgl9.dll
2013-08-23 20:01 - 2013-08-23 20:01 - 25100288 _____ () C:\Users\WK\AppData\Roaming\Dropbox\bin\libcef.dll
2012-01-31 08:25 - 2012-01-31 08:25 - 01163264 _____ () C:\Program Files (x86)\ASUS\Wireless Console 3\acAuth.dll
2012-01-12 16:17 - 2012-01-12 16:17 - 00204800 _____ () C:\Program Files (x86)\ASUS\VirtualCamera\virtualCamera.ax
2014-11-26 14:08 - 2014-11-25 07:39 - 01077064 _____ () C:\Program Files (x86)\Google\Chrome\Application\39.0.2171.71\libglesv2.dll
2014-11-26 14:08 - 2014-11-25 07:39 - 00211272 _____ () C:\Program Files (x86)\Google\Chrome\Application\39.0.2171.71\libegl.dll
2014-11-26 14:08 - 2014-11-25 07:39 - 09009480 _____ () C:\Program Files (x86)\Google\Chrome\Application\39.0.2171.71\pdf.dll
2014-11-26 14:08 - 2014-11-25 07:39 - 01677128 _____ () C:\Program Files (x86)\Google\Chrome\Application\39.0.2171.71\ffmpegsumo.dll

==================== Alternate Data Streams (whitelisted) =========

(If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)


==================== Safe Mode (whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Hamachi2Svc => ""="Service"

==================== EXE Association (whitelisted) =============

(If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)


==================== MSCONFIG/TASK MANAGER disabled items =========

(Currently there is no automatic fix for this section.)

MSCONFIG\startupreg: ASUS Screen Saver Protector => C:\Windows\AsScrPro.exe
MSCONFIG\startupreg: CLMLServer => "C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe"
MSCONFIG\startupreg: RtHDVCpl => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s

========================= Accounts: ==========================

Administrator (S-1-5-21-3717476656-758687553-1952641011-500 - Administrator - Disabled)
Gast (S-1-5-21-3717476656-758687553-1952641011-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-3717476656-758687553-1952641011-1003 - Limited - Enabled)
UpdatusUser (S-1-5-21-3717476656-758687553-1952641011-1000 - Limited - Enabled) => C:\Users\UpdatusUser
WK (S-1-5-21-3717476656-758687553-1952641011-1001 - Administrator - Enabled) => C:\Users\WK

==================== Faulty Device Manager Devices =============


==================== Event log errors: =========================

Application errors:
==================
Error: (11/27/2014 08:56:34 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Name der fehlerhaften Anwendung: Skype.exe, Version: 6.21.0.104, Zeitstempel: 0x542bca1d
Name des fehlerhaften Moduls: Skype.exe, Version: 6.21.0.104, Zeitstempel: 0x542bca1d
Ausnahmecode: 0xc0000005
Fehleroffset: 0x00c82ab6
ID des fehlerhaften Prozesses: 0x16c8
Startzeit der fehlerhaften Anwendung: 0xSkype.exe0
Pfad der fehlerhaften Anwendung: Skype.exe1
Pfad des fehlerhaften Moduls: Skype.exe2
Berichtskennung: Skype.exe3

Error: (11/27/2014 10:23:21 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 39858

Error: (11/27/2014 10:23:21 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 39858

Error: (11/27/2014 10:23:21 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second

Error: (11/27/2014 10:23:11 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 29952

Error: (11/27/2014 10:23:11 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 29952

Error: (11/27/2014 10:23:11 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second

Error: (11/27/2014 10:23:01 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 19937

Error: (11/27/2014 10:23:01 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 19937

Error: (11/27/2014 10:23:01 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second


System errors:
=============
Error: (11/27/2014 09:51:02 PM) (Source: Microsoft-Windows-LanguagePackSetup) (EventID: 1043) (User: NT-AUTORITÄT)
Description: Das Sprachpaket für en-US kann von CBS nicht entfernt werden. Zurückgegebener CBS-Fehlercode: 0x80073701.

Error: (11/27/2014 09:51:02 PM) (Source: Microsoft-Windows-LanguagePackSetup) (EventID: 1003) (User: NT-AUTORITÄT)
Description: CBS-Fehler 0x80073701 '' bei Verwendung des Benutzeroberflächen-Sprachpakets für en-US.

Error: (11/27/2014 09:42:16 PM) (Source: Microsoft-Windows-LanguagePackSetup) (EventID: 1043) (User: NT-AUTORITÄT)
Description: Das Sprachpaket für zh-TW kann von CBS nicht entfernt werden. Zurückgegebener CBS-Fehlercode: 0x80073701.

Error: (11/27/2014 09:42:16 PM) (Source: Microsoft-Windows-LanguagePackSetup) (EventID: 1003) (User: NT-AUTORITÄT)
Description: CBS-Fehler 0x80073701 '' bei Verwendung des Benutzeroberflächen-Sprachpakets für zh-TW.

Error: (11/27/2014 09:38:46 PM) (Source: volsnap) (EventID: 36) (User: )
Description: Die Schattenkopien von Volume "C:" wurden abgebrochen, weil der Schattenkopiespeicher nicht auf ein benutzerdefiniertes Limit vergrößert werden konnte.

Error: (11/27/2014 01:47:58 PM) (Source: Service Control Manager) (EventID: 7022) (User: )
Description: Der Dienst "NVIDIA Update Service Daemon" wurde nicht richtig gestartet.

Error: (11/27/2014 01:38:33 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "LogMeIn Hamachi Tunneling Engine" wurde aufgrund folgenden Fehlers nicht gestartet: 
%%1053

Error: (11/27/2014 01:38:33 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst LogMeIn Hamachi Tunneling Engine erreicht.

Error: (11/27/2014 01:37:27 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "Mobile Partner. OUC" wurde aufgrund folgenden Fehlers nicht gestartet: 
%%1053

Error: (11/27/2014 01:37:27 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Das Zeitlimit (30000 ms) wurde beim Verbindungsversuch mit dem Dienst Mobile Partner. OUC erreicht.


Microsoft Office Sessions:
=========================
Error: (11/27/2014 08:56:34 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Skype.exe6.21.0.104542bca1dSkype.exe6.21.0.104542bca1dc000000500c82ab616c801d00a3f651b5d4aC:\Program Files (x86)\Skype\Phone\Skype.exeC:\Program Files (x86)\Skype\Phone\Skype.exe7cb101e3-766f-11e4-954a-5404a645b907

Error: (11/27/2014 10:23:21 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 39858

Error: (11/27/2014 10:23:21 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 39858

Error: (11/27/2014 10:23:21 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second

Error: (11/27/2014 10:23:11 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 29952

Error: (11/27/2014 10:23:11 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 29952

Error: (11/27/2014 10:23:11 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second

Error: (11/27/2014 10:23:01 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 19937

Error: (11/27/2014 10:23:01 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 19937

Error: (11/27/2014 10:23:01 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second


==================== Memory info =========================== 

Processor: Intel(R) Core(TM) i3-2350M CPU @ 2.30GHz
Percentage of memory in use: 51%
Total physical RAM: 5920.06 MB
Available physical RAM: 2855.45 MB
Total Pagefile: 11838.3 MB
Available Pagefile: 8283.89 MB
Total Virtual: 8192 MB
Available Virtual: 8191.83 MB

==================== Drives ================================

Drive c: (OS) (Fixed) (Total:119.24 GB) (Free:1.14 GB) NTFS ==>[System with boot components (obtained from reading drive)]
Drive d: (DATA) (Fixed) (Total:153.85 GB) (Free:67.37 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 298.1 GB) (Disk ID: E3102A4B)
Partition 1: (Not Active) - (Size=25 GB) - (Type=1C)
Partition 2: (Active) - (Size=119.2 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=153.9 GB) - (Type=07 NTFS)

==================== End Of Log ============================
         

Alt 28.11.2014, 18:19   #11
schrauber
/// the machine
/// TB-Ausbilder
 

mystartsearch entfernen - Standard

mystartsearch entfernen



Lade Dir bitte von hier Revo Uninstaller Download Revo Uninstaller (alternativ portable Revo Uninstaller) herunter.
  • Installiere und starte das Programm. (Bebilderte Anleitung zu Revo Uninstaller)
  • Klicke auf Optionen und wähle als Sprache Deutsch.
  • Suche im Uninstallerfeld nach den Programmen:

    Ask Toolbar

    Ask Toolbar Updater

    Chrome toolbar by SweetPacks

    Internet Explorer Toolbar 4.6 by SweetPacks (HKLM-x32\...\{C3E85EE9-5892-4142-B537-BCEB3DAC4C3D}) (Version: 4.6.0004 - SweetIM Technologies Ltd.) <==== ATTENTION

    SweetIM for Messenger 3.7

    TotalPlusHD-3.1V25.11

    Update Manager for SweetPacks 1.1 (HKLM-x32\...\{EA8FA6BE-29BE-4AF2-9352-841F83215EB0}) (Version: 1.1.0008 - SweetIM Technologies Ltd.) <==== ATTENTION

    WindowsMangerProtect20.0.0.1270 (HKLM-x32\...\WindowsMangerProtect) (Version: 20.0.0.1270 - WindowsProtect LIMITED) <==== ATTENTION


  • Wähle die Programme nacheinander aus und klicke jedes Mal auf Uninstall.
  • Wähle anschließend den Modus "Moderat" aus.
  • Reste löschen:
    Klicke auf dann auf und dann auf .

 





Downloade Dir bitte AdwCleaner Logo Icon AdwCleaner auf deinen Desktop.
  • Schließe alle offenen Programme und Browser. Bebilderte Anleitung zu AdwCleaner.
  • Starte die AdwCleaner.exe mit einem Doppelklick.
  • Stimme den Nutzungsbedingungen zu.
  • Klicke auf Optionen und vergewissere dich, dass die folgenden Punkte ausgewählt sind:
    • "Tracing" Schlüssel löschen
    • Winsock Einstellungen zurücksetzen
    • Proxy Einstellungen zurücksetzen
    • Internet Explorer Richtlinien zurücksetzen
    • Chrome Richtlinien zurücksetzen
    • Stelle sicher, dass alle 5 Optionen wie hier dargestellt, ausgewählt sind
  • Klicke auf Suchlauf und warte bis dieser abgeschlossen ist.
  • Klicke nun auf Löschen und bestätige auftretende Hinweise mit Ok.
  • Dein Rechner wird automatisch neu gestartet. Nach dem Neustart öffnet sich eine Textdatei. Poste mir deren Inhalt mit deiner nächsten Antwort.
  • Die Logdatei findest du auch unter C:\AdwCleaner\AdwCleaner[Cx].txt. (x = fortlaufende Nummer).

Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
Bitte lade Junkware Removal Tool auf Deinen Desktop

  • Starte das Tool mit Doppelklick. Ab Windows Vista (oder höher) bitte mit Rechtsklick "als Administrator ausführen" starten.
  • Drücke eine beliebige Taste, um das Tool zu starten.
  • Je nach System kann der Scan eine Weile dauern.
  • Wenn das Tool fertig ist wird das Logfile (JRT.txt) auf dem Desktop gespeichert und automatisch geöffnet.
  • Bitte poste den Inhalt der JRT.txt in Deiner nächsten Antwort.


und ein frisches FRST log bitte.
__________________
gruß,
schrauber

Proud Member of UNITE and ASAP since 2009

Spenden
Anleitungen und Hilfestellungen
Trojaner-Board Facebook-Seite

Keine Hilfestellung via PM!

Alt 29.11.2014, 12:40   #12
magnusson
 
mystartsearch entfernen - Standard

mystartsearch entfernen



Ok super vielen Dank! Es läuft wieder alles und keine mystartsearch Seite wieder mehr geöffnet! Danke echt für die tolle Anweisung!

Code:
ATTFilter
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.4.0 (11.29.2014:1)
OS: Windows 7 Home Premium x64
Ran by WK on 29.11.2014 at 12:25:44,02
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~




~~~ Services



~~~ Registry Values



~~~ Registry Keys

Successfully deleted: [Registry Key] HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\SearchScopes\{1B286EEF-2709-4C3C-9906-FBB750E00A0F}



~~~ Files



~~~ Folders

Successfully deleted: [Folder] "C:\ProgramData\hotspot shield"
Successfully deleted: [Folder] "C:\Program Files (x86)\hotspot shield"
Successfully deleted: [Empty Folder] C:\Users\WK\appdata\local\{0B1B2F53-6ED0-4C8A-935F-9454D4BA05F7}
Successfully deleted: [Empty Folder] C:\Users\WK\appdata\local\{11D0C533-481F-42FF-9E86-7AE66955BF45}
Successfully deleted: [Empty Folder] C:\Users\WK\appdata\local\{1DB42B75-4726-4762-986E-42D3EB1FAE3B}
Successfully deleted: [Empty Folder] C:\Users\WK\appdata\local\{24D39F55-BF50-4C4F-B1FC-F0E7D3AC6E0B}
Successfully deleted: [Empty Folder] C:\Users\WK\appdata\local\{3B436E49-32B8-4E24-8FE0-EF6F1F940F90}
Successfully deleted: [Empty Folder] C:\Users\WK\appdata\local\{3C643A4C-047A-4AE2-80B2-CB600B85BCF5}
Successfully deleted: [Empty Folder] C:\Users\WK\appdata\local\{40E4C368-7402-4D35-99D5-D0E9788287C4}
Successfully deleted: [Empty Folder] C:\Users\WK\appdata\local\{78B97B2F-9293-4462-8EF8-10CEE1C01ED7}
Successfully deleted: [Empty Folder] C:\Users\WK\appdata\local\{B725BD20-845D-4E00-85BF-AA148BC90AA7}



~~~ FireFox

Successfully deleted: [Folder] C:\Users\WK\AppData\Roaming\mozilla\firefox\profiles\atpboepw.default\sweetpackstoolbardata
Successfully deleted the following from C:\Users\WK\AppData\Roaming\mozilla\firefox\profiles\atpboepw.default\prefs.js

user_pref("extensions.aa338c5448f724f94af2f11cc4cdd6788a64e7ca7d83cb2cdcom63311.63311.cookie.testingGaq.value", "%22hxxp%3A//extclickmedia-maynemyltf.netdna-ssl.com/Extensions
Emptied folder: C:\Users\WK\AppData\Roaming\mozilla\firefox\profiles\atpboepw.default\minidumps [51 files]



~~~ Event Viewer Logs were cleared





~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 29.11.2014 at 12:31:47,87
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
         

Code:
ATTFilter
# AdwCleaner v4.102 - Bericht erstellt am 29/11/2014 um 12:14:59
# Aktualisiert 23/11/2014 von Xplode
# Database : 2014-11-23.7 [Local]
# Betriebssystem : Windows 7 Home Premium Service Pack 1 (64 bits)
# Benutzername : WK - WK-PC
# Gestartet von : C:\Users\WK\Downloads\AdwCleaner_4.102.exe
# Option : Löschen

***** [ Dienste ] *****

[#] Dienst Gelöscht : APNMCP
[#] Dienst Gelöscht : globalUpdatem
Dienst Gelöscht : hshld
[#] Dienst Gelöscht : hsstrayservice
[#] Dienst Gelöscht : hsswd

***** [ Dateien / Ordner ] *****

Ordner Gelöscht : C:\ProgramData\apn
Ordner Gelöscht : C:\ProgramData\Ask
Ordner Gelöscht : C:\ProgramData\AskPartnerNetwork
Ordner Gelöscht : C:\ProgramData\Babylon
Ordner Gelöscht : C:\ProgramData\hotspot shield
Ordner Gelöscht : C:\ProgramData\ICQ\ICQToolbar
Ordner Gelöscht : C:\ProgramData\SweetIM
Ordner Gelöscht : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\hotspot shield
Ordner Gelöscht : C:\Program Files (x86)\AskPartnerNetwork
Ordner Gelöscht : C:\Program Files (x86)\hotspot shield
Ordner Gelöscht : C:\Windows\Installer\{7683B745-6060-41FD-AA75-0BBB383FEAD4}
Ordner Gelöscht : C:\Windows\SysWOW64\hotspot shield
Ordner Gelöscht : C:\Windows\SysWOW64\config\systemprofile\AppData\Roaming\hotspot shield
Ordner Gelöscht : C:\Users\WK\AppData\Local\AskPartnerNetwork
Ordner Gelöscht : C:\Users\WK\AppData\Local\globalUpdate
Ordner Gelöscht : C:\Users\WK\AppData\Local\Temp\apn
Ordner Gelöscht : C:\Users\WK\AppData\Roaming\BabSolution
Ordner Gelöscht : C:\Users\WK\AppData\Roaming\Babylon
Ordner Gelöscht : C:\Users\WK\AppData\Roaming\BrowserCompanion
Ordner Gelöscht : C:\Users\WK\AppData\Roaming\hotspot shield
Ordner Gelöscht : C:\Users\WK\AppData\Roaming\pdfforge
Ordner Gelöscht : C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\Extensions\{800B5000-A755-47E1-992B-48A1C1357F07}
Ordner Gelöscht : C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\Extensions\bbrs_002@blabbers.com
Ordner Gelöscht : C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\bopakagnckmlgajfccecajhnimjiiedh
Datei Gelöscht : C:\Users\WK\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\tcbhn.lnk
Datei Gelöscht : C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\searchplugins\ask-search.xml
Datei Gelöscht : C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\searchplugins\bingp.xml
Datei Gelöscht : C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\searchplugins\icqplugin.xml
Datei Gelöscht : C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\searchplugins\icqplugin-1.xml
Datei Gelöscht : C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\searchplugins\icqplugin-2.xml
Datei Gelöscht : C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\searchplugins\icqplugin-3.xml
Datei Gelöscht : C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\searchplugins\icqplugin-4.xml
Datei Gelöscht : C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\searchplugins\icqplugin-5.xml
Datei Gelöscht : C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.superfish.com_0.localstorage
Datei Gelöscht : C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.superfish.com_0.localstorage-journal
Datei Gelöscht : C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_www.superfish.com_0.localstorage
Datei Gelöscht : C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_www.superfish.com_0.localstorage-journal

***** [ Tasks ] *****


***** [ Verknüpfungen ] *****

Verknüpfung Desinfiziert : C:\Users\Public\Desktop\Mozilla Firefox.lnk
Verknüpfung Desinfiziert : C:\Users\WK\Desktop\Internet Explorer (64-bit).lnk
Verknüpfung Desinfiziert : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
Verknüpfung Desinfiziert : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome\Google Chrome.lnk
Verknüpfung Desinfiziert : C:\Users\WK\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk
Verknüpfung Desinfiziert : C:\Users\WK\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
Verknüpfung Desinfiziert : C:\Users\WK\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk
Verknüpfung Desinfiziert : C:\Users\WK\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
Verknüpfung Desinfiziert : C:\Users\WK\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk
Verknüpfung Desinfiziert : C:\Users\WK\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk
Verknüpfung Desinfiziert : C:\Users\WK\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Internet Explorer.lnk
Verknüpfung Desinfiziert : C:\Users\WK\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Mozilla Firefox.lnk

***** [ Registrierungsdatenbank ] *****

Schlüssel Gelöscht : HKLM\SOFTWARE\Google\Chrome\Extensions\bodddioamolcibagionmmobehnbhiakf
Schlüssel Gelöscht : HKLM\SOFTWARE\Google\Chrome\Extensions\bopakagnckmlgajfccecajhnimjiiedh
Schlüssel Gelöscht : HKLM\SOFTWARE\Google\Chrome\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl
Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\ICQ\ICQToolBar
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\tdataprotocol.DLL
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\updatebho.DLL
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\wit4ie.DLL
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Prod.cap
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\PROTOCOLS\Handler\base64
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\PROTOCOLS\Handler\chrome
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\PROTOCOLS\Handler\prox
Wert Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [ApnTbMon]
Schlüssel Gelöscht : HKCU\Software\5b6d68ce06ebe41
Schlüssel Gelöscht : HKLM\SOFTWARE\5b6d68ce06ebe41
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{20EDC024-43C5-423E-B7F5-FD93523E0D9F}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{3278F5CF-48F3-4253-A6BB-004CE84AF492}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{373ED12D-B306-43AC-9485-A7C5133DC34C}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{577975B8-C40E-43E6-B0DE-4C6B44088B52}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{C007DADD-132A-624C-088E-59EE6CF0711F}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\{ED6535E7-F778-48A5-A060-549D30024511}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{25A3A431-30BB-47C8-AD6A-E1063801134F}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{CFC47BB5-5FB5-4AD0-8427-6AA04334A3FC}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{E0ADB535-D7B5-4D8B-B15D-578BDD20D76A}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220622322285}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220622332211}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{A439801C-961D-452C-AB42-7848E9CBD289}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{F4EBB1E2-21F3-4786-8CF4-16EC5925867F}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550655325585}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550655335511}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660666326685}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660666336611}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{4D3B167E-5FD8-4276-8FD7-9DF19C1E4D19}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{5E5E0B49-1A81-4ACC-BD6B-FF5F4EFEF01A}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{44444444-4444-4444-4444-440644324485}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{44444444-4444-4444-4444-440644334411}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{25A3A431-30BB-47C8-AD6A-E1063801134F}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{25A3A431-30BB-47C8-AD6A-E1063801134F}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5645E0E7-FC12-43BF-A6E4-F9751942B298}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{5E89ACE9-E16B-499A-87B4-0DBF742404C1}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A661D4DC-4BD8-48FC-964B-A24AB8157DE6}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C7BF8F4B-7BC7-4F42-B944-3D28A3A86D8A}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{EEE6C367-6118-11DC-9C72-001320C79847}
Wert Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{25A3A431-30BB-47C8-AD6A-E1063801134F}]
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220622322285}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\CLSID\{22222222-2222-2222-2222-220622332211}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550655325585}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{55555555-5555-5555-5555-550655335511}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660666326685}
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Classes\Interface\{66666666-6666-6666-6666-660666336611}
Schlüssel Gelöscht : [x64] HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{483830EE-A4CD-4B71-B0A3-3D82E62A6909}
Daten Wiederhergestellt : HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command
Daten Wiederhergestellt : HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\FIREFOX.EXE\shell\open\command
Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{3F3B5FDA-795B-4CFD-8A70-E1636621C471}
Schlüssel Gelöscht : HKCU\Software\anchorfree
Schlüssel Gelöscht : HKCU\Software\AskPartnerNetwork
Schlüssel Gelöscht : HKCU\Software\BABSOLUTION
Schlüssel Gelöscht : HKCU\Software\Blabbers       
Schlüssel Gelöscht : HKCU\Software\Blabbers
Schlüssel Gelöscht : HKCU\Software\Delta
Schlüssel Gelöscht : HKCU\Software\filescout
Schlüssel Gelöscht : HKCU\Software\GlobalUpdate
Schlüssel Gelöscht : HKCU\Software\InstalledBrowserExtensions
Schlüssel Gelöscht : HKCU\Software\Softonic
Schlüssel Gelöscht : HKLM\SOFTWARE\AskPartnerNetwork
Schlüssel Gelöscht : HKLM\SOFTWARE\Babylon
Schlüssel Gelöscht : HKLM\SOFTWARE\BrowserCompanion
Schlüssel Gelöscht : HKLM\SOFTWARE\GlobalUpdate
Schlüssel Gelöscht : HKLM\SOFTWARE\hotspotshield
Schlüssel Gelöscht : HKLM\SOFTWARE\ICQ\ICQToolbar
Schlüssel Gelöscht : HKLM\SOFTWARE\InstalledBrowserExtensions
Schlüssel Gelöscht : HKLM\SOFTWARE\SweetIM
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\hotspotshield
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\InstalledBrowserExtensions
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SearchProtect
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\02F47BF73B948514FAACADD8CBBDF37D
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\07D5290CDBDAE4242926B8E6CA650501
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\080D9F5E1E95FEE4794CE438E635239E
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\08E33F7B61DEFF24BB9673ED7D467636
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0E3D8A5B48622A445A7DF73FEFF32C3F
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\12BF94BD06C95F343A77631402B9556A
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1E264E0A5959A1C46BA9175A878B12EA
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2124D8A8CF720FD44866190AF560228E
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\27A325ACED8CA4743A30127638591ADB
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2E6768B6932D112438F047C54D180635
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\34EDDB1BFB3A2D448845F3EFD0F15A43
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\350D17402BD84234EAF7D32F08172D7C
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\351716A953E21214898904032EAE2E81
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\397C771A7BCAC904697C3EC629ED33ED
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\3EE8C5F419057E1478A654868CEE60B5
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\427EA997C413D1D47907CBFC7B2DB432
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4318DF19719275242801CBE292063A4C
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\45FC115D1FEAEF849A4E1610D6EC8BF0
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\46A5861A389ADB844AF89E31BC9DF0A1
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4735D908D66E1BA46B6C2D7185A12B2B
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\49B0E1A6FF50BBE4289E4E23DE6EA0C7
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\4CCCAC049F34D0540AAC13011398BEDB
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5C4389D0BFB302C479DE4178BD5D9EBA
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\5D2B09BDEF4FE54418E6F3373CDBC7AC
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\61B65D3397A1FBF4CB1571B5E4F6B5B0
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\68E8A05C60DD9254591DBD16C94EDDBF
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\697E782CF574CC34CBB9566440BA12BC
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\69D6A6B2ED56AF24EA6335EAD6E91CA4
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6AE27A8613CF7EA4782F2886F67295E5
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\75D5168E5E176C24981B4E5DBD991078
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\76D8378E2DDAED3428720A631F6E3BF0
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7CE172051F585E04187BCB97570BFA74
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7FFA128C2B0FF414D805FC5627883401
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\86A901BA5265452499DCBF719C378EE3
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\86EDC790504E1834DBC20C9A04328FD2
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8724E58E6C7D00C48A0D4F3345EB2C26
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\88ABD1CD5C40EC84789A7F6EF86DAC5E
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\97C3D0F82E712E241A2F969F45E3351C
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\980289C22F80A7C4BB9323DC61255E4E
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\98CC8BF5A4A6E6C4ABF7051DDAB8B058
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9A001B259DB7D694E818BE29B973992C
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9A4B7EF3789F871419D9302583B20C15
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9E7F556BF224D804D96A96F0F6344789
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A189D17A469616C4688D23E192996267
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A6C53B0F76C44004A8F36716213017DB
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\AB676B0E1B9EFA049B9F7DDDA9645734
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B31BBB0B825EDEF45AB0FE7099C68C81
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B471D8D7319336B4CA89374ED0D7B806
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B59F2D8189784CC46A4597F2842480B0
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BAE2EC163C6A68A48921573E0E7E199D
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BC30043663AA2CA4DA1DAA9CA5FDCC75
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BD746FB95FB8E5B45BF66BE54D5FD91F
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BF4F885EDEE45644EB1E0C99E0162399
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C06C6662FA5B04646829E4A460857770
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CCF399FCD6D2D3F46BF02A1378654FC9
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CE21F3FD57B244142880EF15A165A156
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CEEB3E14ABE8270419B0FD762E18F7C6
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D149C1355C98DE24E82CEFBD996FE06A
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D15DAF33C220F91468A1D7D57C31ACD7
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D3BA76A44C779424889063D5098ED2D6
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D6D0EB9FDBD90C04D92A7E729058F10D
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DB59FDB786388EA4D897F3EE715683AC
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DB8DAD19CFBCC2049A4477183787E8C5
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E1C820A74ED67374BA048B52CB3C3804
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E4748F9A4181FCE46A23C13B517B9420
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EC65F200D112357449C8B1BC3CFA03D0
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\ED1B5E9A3BDB51349BF96E842C062D98
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F327D0C73C0973644A21E8CC852267A0
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F754C503375A13344B22388E18DFE87E
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FA96423FE2B98E248A3B23548D1E22D9
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FDC83385E6C239F4C876A77A37DF581D
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\FECBC2BC14DA6CD459BD59A041709836
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\547B38670606DF14AA57B0BB83F3AE4D
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\9EE58E3C298524145B73CBBED3CAC4D3
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\EB6AF8AEEB922FA4392548F13812E50B
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\789034A89BAC50E4782F0A7BDBF75632
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UpgradeCodes\A97CEC23332751B47BA4B95BAA50C9D0

***** [ Browser ] *****

-\\ Internet Explorer v9.0.8112.16592


-\\ Mozilla Firefox v32.0.3 (x86 de)

[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("avg.install.userHPSettings", "hxxp://www.delta-search.com/?affID=1215612&babsrc=HP_ss&mntrId=008E78929C761F53");
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("avg.install.userSPSettings", "Delta Search");
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("browser.newtab.url", "hxxp://www.mystartsearch.com/newtab/?type=nt&ts=1416935763&from=ild&uid=WDCXWD3200BPVT-80JJ5T0_WD-WXK1E81YKEH3YKEH3");
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("browser.search.defaultenginename", "mystartsearch");
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("browser.search.selectedEngine", "mystartsearch");
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("browser.startup.homepage", "hxxp://www.mystartsearch.com/?type=hp&ts=1416935763&from=ild&uid=WDCXWD3200BPVT-80JJ5T0_WD-WXK1E81YKEH3YKEH3");
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("extensions.APN_TB.first-previous-keyword-url", "hxxp://search.sweetim.com/search.asp?src=2&crg=2.03001.103002&q=");
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("extensions.ORJ-V7.domain", "\"www.search.ask.com\"");
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("extensions.ORJ-V7.previous-keyword-url", "\"hxxp://search.sweetim.com/search.asp?src=2&crg=2.03001.103002&q=\"");
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("extensions.a6cfae8cc4676442fa78d9dcdfbd4ea874e76d4af1994bacom63285.63285.internaldb.monetization_plugin_bundledUrls.value", "%7B%22dealply_s%22%3A%7B%22urls%22%3A%5B%22ssfiles.com%22%5D%7D%[...]
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("extensions.aa338c5448f724f94af2f11cc4cdd6788a64e7ca7d83cb2cdcom63311.63311.internaldb.monetization_plugin_bundledUrls.value", "%7B%22dealply_s%22%3A%7B%22urls%22%3A%5B%22ssfiles.com%22%5D%7[...]
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("extensions.delta.admin", false);
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("extensions.delta.aflt", "babsst");
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("extensions.delta.appId", "{C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3}");
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("extensions.delta.autoRvrt", "false");
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("extensions.delta.bbDpng", "26");
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("extensions.delta.cntry", "HU");
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("extensions.delta.dfltLng", "en");
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("extensions.delta.excTlbr", false);
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("extensions.delta.hdrMd5", "076C74CDE7AE109AED2D55545DD8F5EA");
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("extensions.delta.id", "008edbb000000000000078929c761f53");
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("extensions.delta.instlDay", "15799");
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("extensions.delta.instlRef", "sst");
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("extensions.delta.lastVrsnTs", "1.8.10.016:01:21");
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("extensions.delta.newTab", false);
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("extensions.delta.prdct", "delta");
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("extensions.delta.prtnrId", "delta");
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("extensions.delta.rvrt", "false");
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("extensions.delta.sg", "azb");
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("extensions.delta.smplGrp", "azb");
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("extensions.delta.tlbrId", "base");
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("extensions.delta.tlbrSrchUrl", "");
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("extensions.delta.vrsn", "1.8.10.0");
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("extensions.delta.vrsnTs", "1.8.10.016:01:21");
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("extensions.delta.vrsni", "1.8.10.0");
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("extensions.enabledAddons", "FFPDFArchitectConverter%40pdfarchitect.com:1.0,FFSodaPDF5Converter%40sodapdf.com:1.0,toolbar_ORJ-V7%40apn.ask.com:48.15,bbrs_002%40blabbers.com:1.0.5,afproxy%40a[...]
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("extensions.toolbar.mindspark._4jMembers_.BUTTON_STRUCTURE", "[{\"b\":221359046,\"c\":\"mindspark.magnify\",\"p\":\"L.0\"},{\"b\":221359047,\"c\":\"mindspark.entersearchterms\",\"p\":\"L.0.0[...]
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("extensions.toolbar.mindspark._4jMembers_.firstKnownVersion", "5.54.2.43283");
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("extensions.toolbar.mindspark._4jMembers_.homepage", "hxxp://home.tb.ask.com/index.jhtml?ptb=01810FE4-023D-435D-A901-3F6801E21B3B&n=77fda474&p2=^ZX^stu238^YYA^de");
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("extensions.toolbar.mindspark._4jMembers_.initialized", true);
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("extensions.toolbar.mindspark._4jMembers_.installation.contextKey", "");
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("extensions.toolbar.mindspark._4jMembers_.installation.installDate", "2013111412");
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("extensions.toolbar.mindspark._4jMembers_.installation.partnerId", "^ZX^stu238^YYA^de");
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("extensions.toolbar.mindspark._4jMembers_.installation.partnerSubId", "");
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("extensions.toolbar.mindspark._4jMembers_.installation.success", true);
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("extensions.toolbar.mindspark._4jMembers_.installation.toolbarId", "01810FE4-023D-435D-A901-3F6801E21B3B");
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("extensions.toolbar.mindspark._4jMembers_.isCompliantUninstallImplementation", true);
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("extensions.toolbar.mindspark._4jMembers_.lastActivePing", "1417015801019");
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("extensions.toolbar.mindspark._4jMembers_.lastKnownVersion", "6.72.4.54897");
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("extensions.toolbar.mindspark._4jMembers_.options.defaultSearch", false);
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("extensions.toolbar.mindspark._4jMembers_.options.homePageEnabled", false);
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("extensions.toolbar.mindspark._4jMembers_.options.keywordEnabled", false);
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("extensions.toolbar.mindspark._4jMembers_.options.tabEnabled", false);
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("extensions.toolbar.mindspark._4jMembers_.partnerPixelFired", true);
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("extensions.toolbar.mindspark._4jMembers_.toolbarCollapsed", true);
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("extensions.toolbar.mindspark._4jMembers_.weather.location", "10001");
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("extensions.toolbar.mindspark.lastInstalled", "radiorage@mindspark.com");
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("icqtoolbar.allowSendURL", false);
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("icqtoolbar.engineVerified", true);
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("icqtoolbar.firstTbRun", false);
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("icqtoolbar.geolastmodified", 1348313566);
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("icqtoolbar.history", "google%20chromehabbo%20hotel23447%20highway%2C%2016%20kitwangasoaring%20spirtisecosiagoogle%20earthsoaring%20oak%20bcgrinionyoutubegoogle");
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("icqtoolbar.icqgeo", 49);
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("icqtoolbar.installTime", "1345149515");
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("icqtoolbar.newtab_most_visited_state", "1");
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("icqtoolbar.newtab_recently_closed_state", "1");
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("icqtoolbar.numberOfSearches", 0);
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("icqtoolbar.previousFFVersion", "15.0.1");
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("icqtoolbar.showPc", false);
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("icqtoolbar.skip_default_search", "no");
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("icqtoolbar.suggestions", false);
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("icqtoolbar.uniqueID", "133509482213350950621335271099460");
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("icqtoolbar.usageStatstTimestamp", 1348673891);
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("icqtoolbar.version", "1.5.3");
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("icqtoolbar.voucherHideClicks", 0);
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("icqtoolbar.voucherMoreLinkClicks", 0);
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("icqtoolbar.voucherRedeemClicks", 0);
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("icqtoolbar.voucherWasShown", 0);
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("icqtoolbar.xmlEnableSuggestions", false);
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("icqtoolbar.xmlLanguage", "de");
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("sweetim.toolbar.Visibility.VisibilityGuardLastUnHide", "0");
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("sweetim.toolbar.Visibility.enable", "true");
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("sweetim.toolbar.Visibility.intervaldays", "7");
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("sweetim.toolbar.cargo", "2.03001.103002");
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("sweetim.toolbar.cda.DisableOveride.enable", "true");
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("sweetim.toolbar.cda.HideOveride.enable", "true");
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("sweetim.toolbar.cda.RemoveOveride.enable", "true");
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("sweetim.toolbar.cda.returnValue", "disable");
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("sweetim.toolbar.dialogs.0.enable", "true");
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("sweetim.toolbar.dialogs.0.handler", "chrome://sim_toolbar_package/content/optionsdialog-handler.js");
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("sweetim.toolbar.dialogs.0.height", "335");
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("sweetim.toolbar.dialogs.0.id", "id_options_dialog");
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("sweetim.toolbar.dialogs.0.title", "$string.config.label;");
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("sweetim.toolbar.dialogs.0.url", "hxxp://www.sweetim.com/simffbar/options_remote_ff_1_6.html");
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("sweetim.toolbar.dialogs.0.width", "761");
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("sweetim.toolbar.dialogs.1.enable", "true");
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("sweetim.toolbar.dialogs.1.handler", "chrome://sim_toolbar_package/content/exampledialog-handler.js");
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("sweetim.toolbar.dialogs.1.height", "300");
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("sweetim.toolbar.dialogs.1.id", "id_example_dialog");
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("sweetim.toolbar.dialogs.1.title", "Example (unit-test) dialog");
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("sweetim.toolbar.dialogs.1.url", "chrome://sim_toolbar_package/content/exampledialog.html");
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("sweetim.toolbar.dialogs.1.width", "500");
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("sweetim.toolbar.dialogs.2.enable", "true");
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("sweetim.toolbar.dialogs.2.handler", "chrome://sim_toolbar_package/content/cdadialog-handler.js");
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("sweetim.toolbar.dialogs.2.height", "150");
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("sweetim.toolbar.dialogs.2.id", "id_dialog_hide_disable_remove");
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("sweetim.toolbar.dialogs.2.title", "Option Dialog");
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("sweetim.toolbar.dialogs.2.url", "hxxp://www.sweetim.com/simffbar/simcdadialog.asp");
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("sweetim.toolbar.dialogs.2.width", "530");
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("sweetim.toolbar.highlight.colors", "#FFFF00,#00FFE4,#5AFF00,#0087FF,#FFCC00,#FF00F0");
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("sweetim.toolbar.logger.ConsoleHandler.MinReportLevel", "7");
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("sweetim.toolbar.logger.FileHandler.FileName", "ff-toolbar.log");
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("sweetim.toolbar.logger.FileHandler.MaxFileSize", "200000");
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("sweetim.toolbar.logger.FileHandler.MinReportLevel", "7");
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("sweetim.toolbar.mode.debug", "false");
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("sweetim.toolbar.scripts.0.addcontextdiv", "true");
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("sweetim.toolbar.scripts.0.callback", "simVerification");
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("sweetim.toolbar.scripts.0.domain-blacklist", "");
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("sweetim.toolbar.scripts.0.domain-whitelist", "hxxp://(www.apps.)?facebook\\.com.*");
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("sweetim.toolbar.scripts.0.elementid", "id_script_sim_fb");
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("sweetim.toolbar.scripts.0.enable", "true");
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("sweetim.toolbar.scripts.0.id", "id_script_fb");
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("sweetim.toolbar.scripts.0.url", "hxxp://sc.sweetim.com/apps/in/fb/infb.js");
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("sweetim.toolbar.scripts.1.addcontextdiv", "true");
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("sweetim.toolbar.scripts.1.callback", "simVerification");
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("sweetim.toolbar.scripts.1.domain-blacklist", "");
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("sweetim.toolbar.scripts.1.domain-whitelist", "hxxps://(www.apps.)?facebook\\.com.*");
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("sweetim.toolbar.scripts.1.elementid", "id_script_sim_fb");
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("sweetim.toolbar.scripts.1.enable", "false");
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("sweetim.toolbar.scripts.1.id", "id_script_fb_hxxpS");
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("sweetim.toolbar.scripts.1.url", "hxxps://sc.sweetim.com/apps/in/fb/infb.js");
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("sweetim.toolbar.scripts.2.addcontextdiv", "false");
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("sweetim.toolbar.scripts.2.callback", "");
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("sweetim.toolbar.scripts.2.domain-blacklist", ".*.google..*.*.bing..*.*.live..*.*.msn..*.*.yahoo..*.*.youtube.com.*.*ask.com.*.*.sweetim.com.*");
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("sweetim.toolbar.scripts.2.domain-whitelist", "");
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("sweetim.toolbar.scripts.2.elementid", "id_predict_include_script");
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("sweetim.toolbar.scripts.2.enable", "false");
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("sweetim.toolbar.scripts.2.id", "id_script_prad");
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("sweetim.toolbar.scripts.2.url", "hxxp://cdn1.certified-apps.com/scripts/shared/enable.js?si=3104&tid=chff1");
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("sweetim.toolbar.search.external", "<?xml version=\"1.0\"?><TOOLBAR><EXTERNAL_SEARCH engine=\"hxxp://*google.*\" param=\"q=\" /><EXTERNAL_SEARCH engine=\"hxxp://search.yahoo.com/*\" param=\"[...]
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("sweetim.toolbar.search.history.capacity", "10");
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("sweetim.toolbar.searchguard.enable", "false");
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("sweetim.toolbar.searchguard.initialized_by_rc", "true");
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("sweetim.toolbar.simapp_id", "{F420EAB5-225A-492A-BEE0-438357A2750E}");
[atpboepw.default\prefs.js] - Zeile gelöscht : user_pref("sweetim.toolbar.version", "1.6.0.3");

-\\ Google Chrome v39.0.2171.71


*************************

AdwCleaner[R0].txt - [39479 octets] - [29/11/2014 12:13:45]
AdwCleaner[S0].txt - [40624 octets] - [29/11/2014 12:14:59]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [40685 octets] ##########
         


FRST Logfile:

FRST Logfile:
Code:
ATTFilter
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 26-11-2014 01
Ran by WK (administrator) on WK-PC on 29-11-2014 12:35:37
Running from C:\Users\WK\Downloads
Loaded Profiles: UpdatusUser & WK (Available profiles: UpdatusUser & WK)
Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: Deutsch (Deutschland)
Internet Explorer Version 9
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(ASUSTeK Computer Inc.) C:\Windows\System32\FBAgent.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(ASUS) C:\Program Files (x86)\ASUS\FaceLogon\smartlogon.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
(ASUS) C:\Program Files\ASUS\P4G\BatteryLife.exe
(ASUS) C:\Program Files (x86)\ASUS\FaceLogon\sensorsrv.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\ASUS Live Update\LiveUpdate.exe
(ASUS) C:\Windows\AsScrPro.exe
(CyberLink) C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe
(Alcor Micro Corp.) C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe
(Acresso Corporation) C:\ProgramData\FLEXnet\Connect\11\ISUSPM.exe
(Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe
() C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe
(Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe
(McAfee, Inc.) C:\Program Files\McAfee Security Scan\3.8.150\SSScheduler.exe
(Dropbox, Inc.) C:\Users\WK\AppData\Roaming\Dropbox\bin\Dropbox.exe
(Intel Corporation) C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
(Virage Logic Corporation / Sonic Focus) C:\Program Files (x86)\ASUS\ASUS Sonic Focus\SonicFocusTray.exe
(ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
(ASUS) C:\Program Files (x86)\ASUS\InstantOn for NB\InsOnSrv.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Intel(R) Corporation) C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe
(Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe
() C:\ProgramData\DatacardService\HWDeviceService64.exe
(LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe
(Huawei Technologies Co., Ltd.) C:\ProgramData\DatacardService\DCSHelper.exe
(Malwarebytes Corporation) C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe
(Malwarebytes Corporation) C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbam.exe
() C:\ProgramData\Mobile Partner\OnlineUpdate\ouc.exe
(pdfforge GbR) C:\Program Files (x86)\PDF Architect\HelperService.exe
(pdfforge GbR) C:\Program Files (x86)\PDF Architect\ConversionService.exe
() C:\Windows\SysWOW64\PnkBstrA.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe
(LULU Software) C:\Program Files (x86)\Soda PDF 5\HelperService.exe
(LULU Software) C:\Program Files (x86)\Soda PDF 5\ConversionService.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe
(ASUS) C:\Program Files (x86)\ASUS\InstantOn for NB\InsOnWMI.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ATKOSD.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\KBFiltr.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\WDC.exe
(Microsoft Corporation) C:\Program Files (x86)\Common Files\microsoft shared\Virtualization Handler\CVHSVC.EXE
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Malwarebytes Corporation) C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamscheduler.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Updatus\daemonu.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Microsoft Corporation) C:\Windows\SysWOW64\notepad.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [ETDCtrl] => C:\Program Files\Elantech\ETDCtrl.exe [2589992 2011-07-20] (ELAN Microelectronics Corp.)
HKLM\...\Run: [AmIcoSinglun64] => C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe [361984 2011-03-21] (Alcor Micro Corp.)
HKLM\...\Run: [RtHDVBg] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2277992 2011-11-03] (Realtek Semiconductor)
HKLM\...\Run: [IntelPAN] => C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe [1935120 2011-07-28] (Intel(R) Corporation)
HKLM-x32\...\Run: [Nuance PDF Reader-reminder] => C:\Program Files (x86)\Nuance\PDF Reader\Ereg\Ereg.exe [328992 2008-11-03] (Nuance Communications, Inc.)
HKLM-x32\...\Run: [ASUSPRP] => C:\Program Files (x86)\ASUS\APRP\APRP.EXE [3331312 2011-10-19] (ASUSTek Computer Inc.)
HKLM-x32\...\Run: [ASUSWebStorage] => C:\Program Files (x86)\ASUS\ASUS WebStorage\3.0.108.222\AsusWSPanel.exe [737104 2011-07-29] (ecareme)
HKLM-x32\...\Run: [ATKOSD2] => C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe [318080 2011-12-22] (ASUSTek Computer Inc.)
HKLM-x32\...\Run: [ATKMEDIA] => C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe [174720 2011-10-24] (ASUS)
HKLM-x32\...\Run: [HControlUser] => C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe [105016 2009-06-19] (ASUS)
HKLM-x32\...\Run: [SonicMasterTray] => C:\Program Files (x86)\ASUS\ASUS Sonic Focus\SonicFocusTray.exe [984400 2010-07-09] (Virage Logic Corporation / Sonic Focus)
HKLM-x32\...\Run: [Wireless Console 3] => C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe [2321072 2012-02-02] (ASUSTeK Computer Inc.)
HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [59280 2012-05-30] (Apple Inc.)
HKLM-x32\...\Run: [iTunesHelper] => C:\Program Files (x86)\iTunes\iTunesHelper.exe [421776 2012-06-07] (Apple Inc.)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [254336 2013-07-02] (Oracle Corporation)
HKLM-x32\...\Run: [amd_dc_opt] => C:\Program Files (x86)\AMD\Dual-Core Optimizer\amd_dc_opt.exe [77824 2008-07-22] (AMD)
HKLM-x32\...\Run: [LogMeIn Hamachi Ui] => C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [3835728 2014-11-03] (LogMeIn Inc.)
HKLM-x32\...\Run: [Avira Systray] => C:\Program Files (x86)\Avira\My Avira\Avira.OE.Systray.exe [124208 2014-10-22] (Avira Operations GmbH & Co. KG)
HKLM-x32\...\Run: [avgnt] => C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [703736 2014-10-23] (Avira Operations GmbH & Co. KG)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKU\S-1-5-21-3717476656-758687553-1952641011-1000\...\Run: [ISUSPM] => C:\ProgramData\FLEXnet\Connect\11\ISUSPM.exe [222496 2009-05-06] (Acresso Corporation)
HKU\S-1-5-21-3717476656-758687553-1952641011-1000\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [22065760 2014-10-01] (Skype Technologies S.A.)
HKU\S-1-5-21-3717476656-758687553-1952641011-1000\...\Run: [Steam] => "C:\Program Files (x86)\Steam\steam.exe" -silent
HKU\S-1-5-21-3717476656-758687553-1952641011-1000\...\MountPoints2: {08a408ed-21c4-11e1-bfed-806e6f6e6963} - E:\SETUP.EXE
HKU\S-1-5-21-3717476656-758687553-1952641011-1001\...\Run: [Speech Recognition] => C:\Windows\Speech\Common\sapisvr.exe [44544 2009-07-14] (Microsoft Corporation)
HKU\S-1-5-21-3717476656-758687553-1952641011-1001\...\Run: [EADM] => "C:\Program Files (x86)\Origin\Origin.exe" -AutoStart
HKU\S-1-5-21-3717476656-758687553-1952641011-1001\...\Run: [ISUSPM] => C:\ProgramData\FLEXnet\Connect\11\ISUSPM.exe [222496 2009-05-06] (Acresso Corporation)
HKU\S-1-5-21-3717476656-758687553-1952641011-1001\...\Run: [Steam] => "C:\Program Files (x86)\Steam\steam.exe" -silent
HKU\S-1-5-21-3717476656-758687553-1952641011-1001\...\Run: [Pando Media Booster] => C:\Program Files (x86)\Pando Networks\Media Booster\PMB.exe [3093624 2012-11-24] ()
HKU\S-1-5-21-3717476656-758687553-1952641011-1001\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [22065760 2014-10-01] (Skype Technologies S.A.)
HKU\S-1-5-21-3717476656-758687553-1952641011-1001\...\MountPoints2: {921df4f4-c768-11e1-9279-5404a645b907} - F:\AutoRun.exe
HKU\S-1-5-21-3717476656-758687553-1952641011-1001\...\MountPoints2: {921df502-c768-11e1-9279-5404a645b907} - F:\AutoRun.exe
AppInit_DLLs: C:\Windows\system32\nvinitx.dll => C:\Windows\system32\nvinitx.dll [241984 2011-10-17] (NVIDIA Corporation)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\AsusVibeLauncher.lnk
ShortcutTarget: AsusVibeLauncher.lnk -> C:\Program Files (x86)\ASUS\AsusVibe\AsusVibeLauncher.exe (ASUSTeK Computer Inc.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk
ShortcutTarget: McAfee Security Scan Plus.lnk -> C:\Program Files\McAfee Security Scan\3.8.150\SSScheduler.exe (McAfee, Inc.)
Startup: C:\Users\WK\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk
ShortcutTarget: Dropbox.lnk -> C:\Users\WK\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
Startup: C:\Users\WK\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\RazossUpdater.lnk
ShortcutTarget: RazossUpdater.lnk -> C:\Users\WK\AppData\Local\Razoss\Application\RazossUpdater.exe (No File)
ShellIconOverlayIdentifiers: [AsusWSShellExt_B] -> {6D4133E5-0742-4ADC-8A8C-9303440F7190} => C:\Program Files (x86)\ASUS\ASUS WebStorage\3.0.108.222\ASUSWSShellExt64.dll (eCareme Technologies, Inc.)
ShellIconOverlayIdentifiers: [AsusWSShellExt_O] -> {64174815-8D98-4CE6-8646-4C039977D808} => C:\Program Files (x86)\ASUS\ASUS WebStorage\3.0.108.222\ASUSWSShellExt64.dll (eCareme Technologies, Inc.)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKU\S-1-5-21-3717476656-758687553-1952641011-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://asus.msn.com
HKU\S-1-5-21-3717476656-758687553-1952641011-1000\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://asus.msn.com
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank
URLSearchHook: HKU\S-1-5-21-3717476656-758687553-1952641011-1000 - (No Name) - {00000000-6E41-4FD3-8538-502F5495E5FC} - No File
URLSearchHook: HKU\S-1-5-21-3717476656-758687553-1952641011-1000 - (No Name) - {855F3B16-6D32-4fe6-8A56-BBB695989046} - No File
StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe
SearchScopes: HKU\S-1-5-21-3717476656-758687553-1952641011-1000 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKU\S-1-5-21-3717476656-758687553-1952641011-1000 -> {3F3B5FDA-795B-4CFD-8A70-E1636621C471} URL = hxxp://websearch.ask.com/redirect?client=ie&tb=ORJ&o=100000027&src=kw&q={searchTerms}&locale=de_DE&apn_ptnrs=U3&apn_dtid=YYYYYYYYDE&apn_uid=84489FBA-3535-4C95-A7FD-465A237C130E&apn_sauid=8598839B-9A5D-4C02-9AB3-B265DA17FFD4
SearchScopes: HKU\S-1-5-21-3717476656-758687553-1952641011-1001 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKU\S-1-5-21-3717476656-758687553-1952641011-1001 -> {75ACFA06-2B41-4E20-86D9-F9FB1ED31F73} URL = hxxp://search.yahoo.com/search?p={searchTerms}&fr=tightropetb&type=10557
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Microsoft Corporation)
BHO-x32: MSS+ Identifier -> {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} -> C:\Program Files\McAfee Security Scan\3.8.150\McAfeeMSS_IE.dll (McAfee, Inc.)
BHO-x32: PDF Architect Helper -> {3A2D5EBA-F86D-4BD3-A177-019765996711} -> C:\Program Files (x86)\PDF Architect\PDFIEHelper.dll (pdfforge GbR)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Microsoft Corporation)
BHO-x32: Soda PDF 5 IE Helper -> {C737F472-1193-4281-BF53-A00B67AB3E19} -> C:\Program Files (x86)\Soda PDF 5\PDFIEHelper.dll (LULU Software)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Toolbar: HKLM-x32 - Soda PDF 5 IE Toolbar - {F335ABA2-FDB4-4644-92B2-5CC4B0FC91D6} - C:\Program Files (x86)\Soda PDF 5\PDFIEPlugin.dll (LULU Software)
Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Microsoft Corporation)
Handler-x32: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Microsoft Corporation)
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1

FireFox:
========
FF ProfilePath: C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default
FF SearchEngineOrder.1: Ask Search
FF SearchEngineOrder.3: Bing 
FF Keyword.URL: hxxp://www.bing.com/search?FORM=UP97DF&PC=UP97&q=
FF NetworkProxy: "type", 0
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_15_0_0_239.dll ()
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_15_0_0_239.dll ()
FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF Plugin-x32: @esn.me/esnsonar,version=0.70.4 -> C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\npesnsonar.dll No File
FF Plugin-x32: @esn/esnlaunch,version=1.132.0 -> C:\Program Files (x86)\Battlelog Web Plugins\1.132.0\npesnlaunch.dll No File
FF Plugin-x32: @esn/esnlaunch,version=1.140.0 -> C:\Program Files (x86)\Battlelog Web Plugins\1.140.0\npesnlaunch.dll No File
FF Plugin-x32: @java.com/DTPlugin,version=10.45.2 -> C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.45.2 -> C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3538.0513 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @pandonetworks.com/PandoWebPlugin -> C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: ZEON/PDF,version=2.0 -> C:\Program Files (x86)\Nuance\PDF Reader\bin\nppdf.dll (Zeon Corporation)
FF Plugin HKU\S-1-5-21-3717476656-758687553-1952641011-1001: pandonetworks.com/PandoWebPlugin -> C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
FF Plugin HKU\S-1-5-21-3717476656-758687553-1952641011-1001: ubisoft.com/uplaypc -> C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\npuplaypc.dll No File
FF Extension: Avira Browser Safety - C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\Extensions\abs@avira.com [2014-11-26]
FF Extension: Ask Toolbar - C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\Extensions\toolbar_ORJ-V7@apn.ask.com.xpi [2013-06-06]
FF Extension: Hotspot Shield Extension - C:\Program Files (x86)\Mozilla Firefox\extensions\afproxy@anchorfree.com [2014-01-04]
FF Extension: Hotspot Shield Extension - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\afproxy@anchorfree.com [2014-09-25]
FF Extension: No Name - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}.xpi [2014-07-14]
FF HKLM-x32\...\Firefox\Extensions: [FFPDFArchitectConverter@pdfarchitect.com] - C:\Program Files (x86)\PDF Architect\FFPDFArchitectExt
FF Extension: PDF Architect Converter For Firefox - C:\Program Files (x86)\PDF Architect\FFPDFArchitectExt [2013-04-04]
FF HKLM-x32\...\Firefox\Extensions: [FFSodaPDF5Converter@sodapdf.com] - C:\Program Files (x86)\Soda PDF 5\FFSoda5Ext
FF Extension: Soda PDF 5 Converter For Firefox - C:\Program Files (x86)\Soda PDF 5\FFSoda5Ext [2013-04-04]
FF HKU\S-1-5-21-3717476656-758687553-1952641011-1001\...\Firefox\Extensions: [{e4f94d1e-2f53-401e-8885-681602c0ddd8}] - C:\ProgramData\McAfee Security Scan\Extensions\{e4f94d1e-2f53-401e-8885-681602c0ddd8}.xpi
FF Extension: McAfee Security Scan Plus - C:\ProgramData\McAfee Security Scan\Extensions\{e4f94d1e-2f53-401e-8885-681602c0ddd8}.xpi [2014-04-04]
FF Extension: No Name - C:\Users\WK\AppData\Roaming\Mozilla\Firefox\Profiles\atpboepw.default\extensions\bbrs_002@blabbers.com [Not Found]

Chrome: 
=======
CHR HomePage: Default -> https://www.google.de/
CHR StartupUrls: Default -> "https://www.google.de/"
CHR DefaultSuggestURL: Default -> {google:baseSuggestURL}search?{google:searchFieldtrialParameter}client={google:suggestClient}&gs_ri={google:suggestRid}&xssi=t&q={searchTerms}&{google:inputType}{google:cursorPosition}{google:currentPageUrl}{google:pageClassification}{google:searchVersion}{google:sessionToken}{google:prefetchQuery}sugkey={google:suggestAPIKeyParameter}
CHR Plugin: (Shockwave Flash) - C:\Program Files (x86)\Google\Chrome\Application\39.0.2171.71\PepperFlash\pepflashplayer.dll ()
CHR Plugin: (Chrome Remote Desktop Viewer) - internal-remoting-viewer
CHR Plugin: (Native Client) - C:\Program Files (x86)\Google\Chrome\Application\39.0.2171.71\ppGoogleNaClPluginChrome.dll No File
CHR Plugin: (Chrome PDF Viewer) - C:\Program Files (x86)\Google\Chrome\Application\39.0.2171.71\pdf.dll ()
CHR Plugin: (Microsoft Office 2010) - C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL (Microsoft Corporation)
CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update\1.3.21.145\npGoogleUpdate3.dll No File
CHR Plugin: (McAfee Security Scanner +) - C:\Program Files (x86)\McAfee Security Scan\3.0.318\npMcAfeeMss.dll No File
CHR Plugin: (Silverlight Plug-In) - C:\Program Files (x86)\Microsoft Silverlight\5.1.20125.0\npctrl.dll No File
CHR Plugin: (Zeon Plus) - C:\Program Files (x86)\Nuance\PDF Reader\bin\nppdf.dll (Zeon Corporation)
CHR Plugin: (Java(TM) Platform SE 7 U5) - C:\Program Files (x86)\Oracle\JavaFX 2.1 Runtime\bin\plugin2\npjp2.dll (Oracle Corporation)
CHR Plugin: (Pando Web Plugin) - C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll (Pando Networks)
CHR Plugin: (Uplay PC) - C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\npuplaypc.dll No File
CHR Plugin: (Windows Live™ Photo Gallery) - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
CHR Plugin: (iTunes Application Detector) - C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
CHR Plugin: (Shockwave Flash) - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_6_602_180.dll No File
CHR Plugin: (Java Deployment Toolkit 7.0.50.255) - C:\Windows\SysWOW64\npDeployJava1.dll No File
CHR Profile: C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Docs) - C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2013-05-02]
CHR Extension: (Google Drive) - C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2013-05-02]
CHR Extension: (Google Voice Search Hotword (Beta)) - C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn [2014-09-17]
CHR Extension: (YouTube) - C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2013-05-02]
CHR Extension: (Google-Suche) - C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2013-05-02]
CHR Extension: (Avira Browserschutz) - C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\flliilndjeohchalpbbcdekjklbdgfkk [2014-11-26]
CHR Extension: (AdBlock) - C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2013-09-29]
CHR Extension: (Google Wallet) - C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-08-24]
CHR Extension: (Google Mail) - C:\Users\WK\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2013-05-02]
CHR HKLM-x32\...\Chrome\Extension: [ljlbhjeioccdadoagmkjknpdkcdoloog] - C:\Users\WK\AppData\Local\Razoss\Application\googlechrome\razoss.crx []

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [432888 2014-10-23] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [432888 2014-10-23] (Avira Operations GmbH & Co. KG)
R2 ASUS InstantOn; C:\Program Files (x86)\ASUS\InstantOn for NB\InsOnSrv.exe [277120 2012-02-03] (ASUS)
R2 Avira.OE.ServiceHost; C:\Program Files (x86)\Avira\My Avira\Avira.OE.ServiceHost.exe [164656 2014-10-22] (Avira Operations GmbH & Co. KG)
R2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1390176 2014-07-14] (Microsoft Corporation)
R2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1767520 2014-07-14] (Microsoft Corporation)
R2 HWDeviceService64.exe; C:\ProgramData\DatacardService\HWDeviceService64.exe [346976 2011-03-14] ()
R2 LMIGuardianSvc; C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe [417552 2014-10-21] (LogMeIn, Inc.)
R2 MBAMScheduler; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamscheduler.exe [1871160 2014-10-01] (Malwarebytes Corporation)
R2 MBAMService; C:\Program Files (x86)\ Malwarebytes Anti-Malware \mbamservice.exe [968504 2014-10-01] (Malwarebytes Corporation)
S3 McComponentHostService; C:\Program Files\McAfee Security Scan\3.8.150\McCHSvc.exe [289256 2014-04-09] (McAfee, Inc.)
S2 Mobile Partner. RunOuc; C:\Program Files (x86)\Mobile Partner\UpdateDog\ouc.exe [239968 2012-07-28] ()
S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [340240 2011-07-28] ()
R2 PDF Architect Helper Service; C:\Program Files (x86)\PDF Architect\HelperService.exe [1324104 2013-01-09] (pdfforge GbR)
R2 PDF Architect Service; C:\Program Files (x86)\PDF Architect\ConversionService.exe [795208 2013-01-09] (pdfforge GbR)
R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [76888 2012-12-07] ()
R2 Soda PDF 5 Helper Service; C:\Program Files (x86)\Soda PDF 5\HelperService.exe [1069408 2013-01-29] (LULU Software)
R2 Soda PDF 5 Service; C:\Program Files (x86)\Soda PDF 5\ConversionService.exe [794464 2013-01-29] (LULU Software)

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R1 ATKWMIACPIIO_; C:\Program Files (x86)\ASUS\ATK Package\ATK WMIACPI\atkwmiacpi64.sys [17536 2011-09-07] (ASUS)
R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [119272 2014-10-23] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [131608 2014-10-23] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [28600 2014-10-23] (Avira Operations GmbH & Co. KG)
U5 ew_hwusbdev; C:\Windows\System32\Drivers\ew_hwusbdev.sys [117248 2012-07-28] (Huawei Technologies Co., Ltd.)
R1 HssDRV6; C:\Windows\System32\DRIVERS\hssdrv6.sys [44744 2014-05-17] (AnchorFree Inc.)
R3 kbfiltr; C:\Windows\System32\DRIVERS\kbfiltr.sys [15416 2009-07-20] ( )
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2014-10-01] (Malwarebytes Corporation)
R3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [129752 2014-11-29] (Malwarebytes Corporation)
R3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [63704 2014-10-01] (Malwarebytes Corporation)
R3 taphss6; C:\Windows\System32\DRIVERS\taphss6.sys [42184 2014-05-17] (Anchorfree Inc.)
S3 X6va015; \??\C:\Windows\SysWOW64\Drivers\X6va015 [X]
S3 X6va016; \??\C:\Windows\SysWOW64\Drivers\X6va016 [X]

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-11-29 12:31 - 2014-11-29 12:31 - 00002386 _____ () C:\Users\WK\Desktop\JRT.txt
2014-11-29 12:25 - 2014-11-29 12:25 - 00000000 ____D () C:\Windows\ERUNT
2014-11-29 12:24 - 2014-11-29 12:24 - 01707646 _____ (Thisisu) C:\Users\WK\Downloads\JRT.exe
2014-11-29 12:12 - 2014-11-29 12:15 - 00000000 ____D () C:\AdwCleaner
2014-11-29 12:12 - 2014-11-29 12:12 - 02148864 _____ () C:\Users\WK\Downloads\AdwCleaner_4.102.exe
2014-11-29 11:20 - 2014-11-29 11:20 - 00000609 _____ () C:\Users\WK\Desktop\Revo Uninstaller.lnk
2014-11-29 11:07 - 2014-11-29 11:07 - 02623656 _____ (VS Revo Group Ltd.) C:\Users\WK\Downloads\revosetup95.exe
2014-11-27 21:51 - 2014-11-27 21:54 - 00035955 _____ () C:\Users\WK\Downloads\Addition.txt
2014-11-27 21:45 - 2014-11-29 12:35 - 00029470 _____ () C:\Users\WK\Downloads\FRST.txt
2014-11-27 21:44 - 2014-11-29 12:35 - 00000000 ____D () C:\FRST
2014-11-27 21:39 - 2014-11-27 21:39 - 02117632 _____ (Farbar) C:\Users\WK\Downloads\FRST64.exe
2014-11-27 07:03 - 2014-11-27 07:04 - 00000165 ____H () C:\Users\WK\Downloads\~$Theoriefragen und Lösung.xlsx
2014-11-27 07:03 - 2014-11-27 07:03 - 00029200 _____ () C:\Users\WK\Downloads\Theoriefragen und Lösung.xlsx
2014-11-27 00:07 - 2014-11-27 00:07 - 00000165 ____H () C:\Users\WK\Downloads\~$P.L. Statistik am 13.11.14.xlsx
2014-11-27 00:05 - 2014-11-27 00:05 - 00013041 _____ () C:\Users\WK\Downloads\Statistik 06.11.14.xlsx
2014-11-27 00:05 - 2014-11-27 00:05 - 00010387 _____ () C:\Users\WK\Downloads\P.L. Statistik am 13.11.14.xlsx
2014-11-27 00:04 - 2014-11-27 00:04 - 00009543 _____ () C:\Users\WK\Downloads\Puls T-Test.xlsx
2014-11-26 23:57 - 2014-11-26 23:57 - 00437520 _____ () C:\Users\WK\Downloads\Stat Demo 2 Gruppe 9.rar
2014-11-26 21:24 - 2014-05-17 03:35 - 00044744 _____ (AnchorFree Inc.) C:\Windows\system32\Drivers\hssdrv6.sys
2014-11-26 20:33 - 2014-11-26 20:33 - 00038198 _____ () C:\Users\WK\Downloads\Statistik Demo 2_2014.xlsx
2014-11-26 20:33 - 2014-11-26 20:33 - 00000165 ____H () C:\Users\WK\Downloads\~$Statistik Demo 2_2014.xlsx
2014-11-26 20:28 - 2014-11-26 20:28 - 00933070 _____ () C:\Users\WK\Downloads\Stat_07_NORMAL_DIST_k.xlsx
2014-11-26 20:27 - 2014-11-26 20:27 - 00222742 _____ () C:\Users\WK\Downloads\Stat_04_SAMPLE_PARAMETER_01-02_k_1.xlsx
2014-11-26 20:26 - 2014-11-26 20:26 - 00030818 _____ () C:\Users\WK\Downloads\Stat_08_02_k.xlsx
2014-11-26 19:07 - 2014-11-26 19:07 - 00178312 _____ () C:\Users\WK\Downloads\Stat_03_01-06_k.xlsx
2014-11-26 19:02 - 2014-11-29 12:10 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-11-26 19:02 - 2014-11-26 19:10 - 00003822 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2014-11-26 17:08 - 2014-11-26 17:52 - 00116406 _____ () C:\Users\WK\Downloads\Extras.Txt
2014-11-26 17:06 - 2014-11-26 17:52 - 00242874 _____ () C:\Users\WK\Downloads\OTL.Txt
2014-11-26 16:53 - 2014-11-26 16:53 - 00602112 _____ (OldTimer Tools) C:\Users\WK\Downloads\OTL.exe
2014-11-26 16:05 - 2014-11-29 12:24 - 00129752 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2014-11-26 16:05 - 2014-11-26 16:05 - 00001104 _____ () C:\Users\Public\Desktop\ Malwarebytes Anti-Malware .lnk
2014-11-26 16:05 - 2014-11-26 16:05 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ Malwarebytes Anti-Malware 
2014-11-26 16:05 - 2014-11-26 16:05 - 00000000 ____D () C:\ProgramData\Malwarebytes
2014-11-26 16:05 - 2014-11-26 16:05 - 00000000 ____D () C:\Program Files (x86)\ Malwarebytes Anti-Malware 
2014-11-26 16:05 - 2014-10-01 11:11 - 00093400 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2014-11-26 16:05 - 2014-10-01 11:11 - 00063704 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2014-11-26 16:05 - 2014-10-01 11:11 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2014-11-26 16:04 - 2014-11-26 16:04 - 19828376 _____ (Malwarebytes Corporation ) C:\Users\WK\Downloads\mbam-setup-2.0.3.1025.exe
2014-11-26 14:34 - 2014-11-26 14:32 - 00043064 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avnetflt.sys
2014-11-26 14:33 - 2014-11-26 14:33 - 00000000 ____D () C:\Users\WK\AppData\Roaming\Avira
2014-11-26 14:30 - 2014-10-23 14:02 - 00131608 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avipbb.sys
2014-11-26 14:30 - 2014-10-23 14:02 - 00028600 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avkmgr.sys
2014-11-26 14:30 - 2014-10-23 14:01 - 00119272 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avgntflt.sys
2014-11-26 14:27 - 2014-11-26 14:31 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira
2014-11-26 14:27 - 2014-11-26 14:30 - 00000000 ____D () C:\ProgramData\Avira
2014-11-26 14:27 - 2014-11-26 14:30 - 00000000 ____D () C:\Program Files (x86)\Avira
2014-11-26 14:27 - 2014-11-26 14:27 - 04583464 _____ (Avira Operations GmbH & Co. KG) C:\Users\WK\Downloads\avira_de_av_5671869959__ws.exe
2014-11-26 14:27 - 2014-11-26 14:27 - 00001139 _____ () C:\Users\Public\Desktop\Avira.lnk
2014-11-26 14:27 - 2014-11-26 14:27 - 00000000 ____D () C:\ProgramData\Package Cache
2014-11-25 18:40 - 2014-11-25 18:40 - 00480280 _____ () C:\Users\WK\Downloads\Kate_Upton_all_nude_pictures_leaked_vids_TheFappening_The_Fappening_leak_Posible_Kate_Upton_SEXTAPE.exe
2014-11-25 18:34 - 2014-11-26 15:41 - 00000000 ____D () C:\Users\WK\AppData\Roaming\uTorrent
2014-11-25 18:34 - 2014-11-25 18:34 - 01720912 _____ (BitTorrent Inc.) C:\Users\WK\Downloads\uTorrent.exe
2014-11-25 18:17 - 2014-11-29 12:17 - 00001322 _____ () C:\Windows\Tasks\ALQL.job
2014-11-25 18:17 - 2014-11-29 12:17 - 00001318 _____ () C:\Windows\Tasks\RS.job
2014-11-25 18:17 - 2014-11-26 16:20 - 00000000 ____D () C:\Program Files (x86)\e743f1b9-82a4-47f6-832e-4665f9b967a8
2014-11-25 18:17 - 2014-11-25 18:17 - 00004336 _____ () C:\Windows\System32\Tasks\ALQL
2014-11-25 18:17 - 2014-11-25 18:17 - 00004332 _____ () C:\Windows\System32\Tasks\RS
2014-11-25 18:14 - 2014-11-29 12:17 - 00001328 _____ () C:\Windows\Tasks\CATRBVY.job
2014-11-25 18:14 - 2014-11-25 18:14 - 00004342 _____ () C:\Windows\System32\Tasks\CATRBVY
2014-11-25 18:13 - 2014-11-29 12:17 - 00001674 _____ () C:\Windows\Tasks\ONEZKDIW.job
2014-11-25 18:13 - 2014-11-26 16:20 - 00000000 ____D () C:\Program Files (x86)\d81cdd67-ab25-4a77-8bbe-2e3e7f283290
2014-11-25 18:13 - 2014-11-25 18:13 - 00004688 _____ () C:\Windows\System32\Tasks\ONEZKDIW
2014-11-19 14:05 - 2014-11-11 04:08 - 00728064 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2014-11-19 14:05 - 2014-11-11 04:08 - 00241152 _____ (Microsoft Corporation) C:\Windows\system32\pku2u.dll
2014-11-19 14:05 - 2014-11-11 03:44 - 00550912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2014-11-19 14:05 - 2014-11-11 03:44 - 00186880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pku2u.dll
2014-11-12 23:44 - 2014-10-27 21:32 - 17870336 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-11-12 23:44 - 2014-10-27 21:13 - 02339840 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-11-12 23:44 - 2014-10-27 21:12 - 10921472 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-11-12 23:44 - 2014-10-27 21:07 - 01388032 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-11-12 23:44 - 2014-10-27 21:06 - 01392128 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-11-12 23:44 - 2014-10-27 21:05 - 01494016 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-11-12 23:44 - 2014-10-27 21:05 - 00237056 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2014-11-12 23:44 - 2014-10-27 21:05 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-11-12 23:44 - 2014-10-27 21:04 - 02157056 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-11-12 23:44 - 2014-10-27 21:04 - 00816640 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2014-11-12 23:44 - 2014-10-27 21:04 - 00729088 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-11-12 23:44 - 2014-10-27 21:04 - 00599040 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-11-12 23:44 - 2014-10-27 21:04 - 00453120 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-11-12 23:44 - 2014-10-27 21:04 - 00173056 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-11-12 23:44 - 2014-10-27 21:03 - 02382848 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-11-12 23:44 - 2014-10-27 21:03 - 00282112 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-11-12 23:44 - 2014-10-27 21:03 - 00248320 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-11-12 23:44 - 2014-10-27 21:03 - 00096768 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-11-12 23:44 - 2014-10-27 21:03 - 00055296 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll
2014-11-12 23:44 - 2014-10-27 21:03 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe
2014-11-12 23:44 - 2014-10-27 21:03 - 00011264 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe
2014-11-12 23:44 - 2014-10-27 20:10 - 12366848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2014-11-12 23:44 - 2014-10-27 20:05 - 01810944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2014-11-12 23:44 - 2014-10-27 20:02 - 09739776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2014-11-12 23:44 - 2014-10-27 19:59 - 01139712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2014-11-12 23:44 - 2014-10-27 19:59 - 01129472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2014-11-12 23:44 - 2014-10-27 19:58 - 01427968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2014-11-12 23:44 - 2014-10-27 19:57 - 00231936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll
2014-11-12 23:44 - 2014-10-27 19:57 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2014-11-12 23:44 - 2014-10-27 19:56 - 01802752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2014-11-12 23:44 - 2014-10-27 19:56 - 00717824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2014-11-12 23:44 - 2014-10-27 19:56 - 00607744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2014-11-12 23:44 - 2014-10-27 19:56 - 00421376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2014-11-12 23:44 - 2014-10-27 19:56 - 00142848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2014-11-12 23:44 - 2014-10-27 19:55 - 02382848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2014-11-12 23:44 - 2014-10-27 19:55 - 00353792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2014-11-12 23:44 - 2014-10-27 19:55 - 00223232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2014-11-12 23:44 - 2014-10-27 19:55 - 00073216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2014-11-12 23:44 - 2014-10-27 19:55 - 00041472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll
2014-11-12 23:44 - 2014-10-27 19:55 - 00011776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe
2014-11-12 23:44 - 2014-10-27 19:55 - 00010752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe
2014-11-12 23:44 - 2014-10-27 19:54 - 00176640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2014-11-12 23:38 - 2014-11-05 18:56 - 00304640 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2014-11-12 23:38 - 2014-11-05 18:56 - 00228864 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2014-11-12 23:38 - 2014-11-05 18:52 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2014-11-12 23:38 - 2014-10-14 03:16 - 00155064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2014-11-12 23:38 - 2014-10-14 03:13 - 03241984 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
2014-11-12 23:38 - 2014-10-14 03:13 - 00683520 _____ (Microsoft Corporation) C:\Windows\system32\termsrv.dll
2014-11-12 23:38 - 2014-10-14 03:12 - 01460736 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2014-11-12 23:38 - 2014-10-14 03:09 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2014-11-12 23:38 - 2014-10-14 03:07 - 00681984 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2014-11-12 23:38 - 2014-10-14 02:50 - 02363904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
2014-11-12 23:38 - 2014-10-14 02:50 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2014-11-12 23:38 - 2014-10-14 02:49 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2014-11-12 23:38 - 2014-10-14 02:47 - 00146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll
2014-11-12 23:38 - 2014-10-14 02:46 - 00681984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll
2014-11-12 23:38 - 2014-08-21 07:43 - 01882624 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2014-11-12 23:38 - 2014-08-21 07:40 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll
2014-11-12 23:38 - 2014-08-21 07:26 - 01237504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll
2014-11-12 23:38 - 2014-08-21 07:23 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll
2014-11-12 23:38 - 2014-08-12 03:02 - 00878080 _____ (Microsoft Corporation) C:\Windows\system32\IMJP10K.DLL
2014-11-12 23:38 - 2014-08-12 02:36 - 00701440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IMJP10K.DLL
2014-11-12 23:37 - 2014-10-25 02:57 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\packager.dll
2014-11-12 23:37 - 2014-10-25 02:32 - 00067584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\packager.dll
2014-11-12 23:37 - 2014-10-18 03:05 - 00861696 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll
2014-11-12 23:37 - 2014-10-18 02:33 - 00571904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll
2014-11-12 23:37 - 2014-10-10 01:57 - 03198976 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2014-11-12 23:37 - 2014-10-03 03:12 - 00500224 _____ (Microsoft Corporation) C:\Windows\system32\AUDIOKSE.dll
2014-11-12 23:37 - 2014-10-03 03:11 - 00680960 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll
2014-11-12 23:37 - 2014-10-03 03:11 - 00440832 _____ (Microsoft Corporation) C:\Windows\system32\AudioEng.dll
2014-11-12 23:37 - 2014-10-03 03:11 - 00296448 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll
2014-11-12 23:37 - 2014-10-03 03:11 - 00284672 _____ (Microsoft Corporation) C:\Windows\system32\EncDump.dll
2014-11-12 23:37 - 2014-10-03 02:44 - 00442880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AUDIOKSE.dll
2014-11-12 23:37 - 2014-10-03 02:44 - 00374784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioEng.dll
2014-11-12 23:37 - 2014-10-03 02:44 - 00195584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioSes.dll
2014-11-12 23:37 - 2014-09-19 10:42 - 00342016 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2014-11-12 23:37 - 2014-09-19 10:42 - 00314880 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2014-11-12 23:37 - 2014-09-19 10:42 - 00309760 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2014-11-12 23:37 - 2014-09-19 10:42 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2014-11-12 23:37 - 2014-09-19 10:42 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2014-11-12 23:37 - 2014-09-19 10:42 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2014-11-12 23:37 - 2014-09-19 10:23 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2014-11-12 23:37 - 2014-09-19 10:23 - 00248832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2014-11-12 23:37 - 2014-09-19 10:23 - 00221184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll
2014-11-12 23:37 - 2014-09-19 10:23 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll
2014-11-12 23:37 - 2014-09-19 10:23 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
2014-11-12 23:37 - 2014-09-19 10:23 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll
2014-11-11 14:21 - 2014-11-11 14:21 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LogMeIn Hamachi
2014-11-11 14:21 - 2014-11-11 14:21 - 00000000 ____D () C:\Program Files (x86)\LogMeIn Hamachi
2014-11-05 17:29 - 2014-11-05 17:29 - 15853198 _____ () C:\Users\WK\Downloads\Physikprotokolle 2013-2014.zip
2014-11-05 17:23 - 2014-11-05 17:24 - 02344449 _____ () C:\Users\WK\Downloads\Physikprotokolle aus Toelgyesi-Gruppe.rar
2014-10-30 07:07 - 2014-11-26 19:59 - 00000000 ____D () C:\ProgramData\Microsoft Help
2014-10-30 07:07 - 2014-10-30 07:07 - 00000000 ____D () C:\Users\WK\AppData\Local\Microsoft Help

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-11-29 12:36 - 2012-11-24 14:52 - 00000000 ____D () C:\Users\WK\AppData\Local\PMB Files
2014-11-29 12:30 - 2009-07-14 05:45 - 00018736 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-11-29 12:30 - 2009-07-14 05:45 - 00018736 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-11-29 12:29 - 2013-10-19 00:06 - 00001110 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-11-29 12:26 - 2011-12-08 18:32 - 01986329 _____ () C:\Windows\WindowsUpdate.log
2014-11-29 12:20 - 2014-10-11 11:09 - 00000000 ___RD () C:\Users\WK\Dropbox
2014-11-29 12:20 - 2014-10-11 11:07 - 00000000 ____D () C:\Users\WK\AppData\Roaming\Dropbox
2014-11-29 12:20 - 2012-04-24 13:44 - 00000000 ____D () C:\Users\WK\AppData\Local\LogMeIn Hamachi
2014-11-29 12:19 - 2012-04-24 13:33 - 00000000 ____D () C:\Users\WK\AppData\Roaming\Skype
2014-11-29 12:18 - 2013-10-19 00:06 - 00001106 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-11-29 12:17 - 2014-09-27 07:40 - 00001064 _____ () C:\Windows\setupact.log
2014-11-29 12:17 - 2012-08-31 19:30 - 00000000 ____D () C:\Users\WK\AppData\Local\Razoss
2014-11-29 12:17 - 2011-10-19 04:20 - 01052538 _____ () C:\Windows\PFRO.log
2014-11-29 12:17 - 2009-07-14 06:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-11-29 12:15 - 2013-05-02 12:29 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
2014-11-29 12:15 - 2012-03-29 20:08 - 00000979 _____ () C:\Users\WK\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk
2014-11-29 12:15 - 2012-03-29 20:07 - 00001162 _____ () C:\Users\WK\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-11-29 12:15 - 2012-03-29 17:10 - 00000949 _____ () C:\Users\WK\Desktop\Internet Explorer (64-bit).lnk
2014-11-29 12:15 - 2012-03-29 16:52 - 00001063 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2014-11-29 12:15 - 2012-03-29 16:52 - 00001051 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk
2014-11-29 12:02 - 2012-08-31 19:30 - 00000000 ____D () C:\ProgramData\Razoss
2014-11-27 21:58 - 2012-06-12 19:39 - 00000000 ____D () C:\Users\WK\AppData\Roaming\Spotify
2014-11-27 03:28 - 2013-11-17 15:47 - 00669236 _____ () C:\Windows\IE11_main.log
2014-11-26 21:22 - 2013-11-14 12:41 - 00001050 _____ () C:\Users\Public\Desktop\Hotspot Shield.lnk
2014-11-26 21:12 - 2012-03-29 20:07 - 00058016 _____ () C:\Users\WK\AppData\Local\GDIPFONTCACHEV1.DAT
2014-11-26 19:10 - 2012-08-16 21:42 - 00701104 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-11-26 19:10 - 2012-08-16 21:42 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-11-26 19:07 - 2012-03-29 16:42 - 00000000 ____D () C:\Users\WK\AppData\Roaming\SoftGrid Client
2014-11-26 18:38 - 2011-12-08 18:45 - 00001726 _____ () C:\Windows\system32\ServiceFilter.ini
2014-11-26 18:33 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\Web
2014-11-26 16:19 - 2013-01-06 14:54 - 00000000 ____D () C:\Program Files (x86)\AGEIA Technologies
2014-11-26 15:44 - 2011-12-08 18:45 - 00002582 _____ () C:\Windows\system32\AutoRunFilter.ini
2014-11-26 15:15 - 2014-09-23 17:59 - 00000000 ____D () C:\Users\WK\AppData\Local\Windows Live
2014-11-19 00:02 - 2014-10-11 11:09 - 00001009 _____ () C:\Users\WK\Desktop\Dropbox.lnk
2014-11-19 00:02 - 2014-10-11 11:08 - 00000000 ____D () C:\Users\WK\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox
2014-11-19 00:01 - 2009-07-14 04:20 - 00000000 ____D () C:\Windows\system32\NDF
2014-11-18 23:56 - 2011-03-17 12:52 - 00728592 _____ () C:\Windows\system32\perfh019.dat
2014-11-18 23:56 - 2011-03-17 12:52 - 00154980 _____ () C:\Windows\system32\perfc019.dat
2014-11-18 23:56 - 2011-02-19 06:02 - 00396336 _____ () C:\Windows\system32\perfh00D.dat
2014-11-18 23:56 - 2011-02-19 06:02 - 00088896 _____ () C:\Windows\system32\perfc00D.dat
2014-11-18 23:56 - 2011-02-19 05:56 - 00610980 _____ () C:\Windows\system32\perfh008.dat
2014-11-18 23:56 - 2011-02-19 05:56 - 00115266 _____ () C:\Windows\system32\perfc008.dat
2014-11-18 23:56 - 2011-02-19 05:51 - 00412464 _____ () C:\Windows\system32\prfh0404.dat
2014-11-18 23:56 - 2011-02-19 05:51 - 00126282 _____ () C:\Windows\system32\prfc0404.dat
2014-11-18 23:56 - 2011-02-19 05:45 - 00733010 _____ () C:\Windows\system32\prfh0816.dat
2014-11-18 23:56 - 2011-02-19 05:45 - 00157044 _____ () C:\Windows\system32\prfc0816.dat
2014-11-18 23:56 - 2011-02-19 05:40 - 00747490 _____ () C:\Windows\system32\perfh013.dat
2014-11-18 23:56 - 2011-02-19 05:40 - 00157240 _____ () C:\Windows\system32\perfc013.dat
2014-11-18 23:56 - 2011-02-19 05:35 - 00744038 _____ () C:\Windows\system32\perfh010.dat
2014-11-18 23:56 - 2011-02-19 05:35 - 00150984 _____ () C:\Windows\system32\perfc010.dat
2014-11-18 23:56 - 2011-02-19 05:29 - 00749708 _____ () C:\Windows\system32\perfh00C.dat
2014-11-18 23:56 - 2011-02-19 05:29 - 00153718 _____ () C:\Windows\system32\perfc00C.dat
2014-11-18 23:56 - 2011-02-19 05:24 - 00711530 _____ () C:\Windows\system32\perfh007.dat
2014-11-18 23:56 - 2011-02-19 05:24 - 00153720 _____ () C:\Windows\system32\perfc007.dat
2014-11-18 23:56 - 2011-02-19 05:19 - 00749448 _____ () C:\Windows\system32\perfh00A.dat
2014-11-18 23:56 - 2011-02-19 05:19 - 00162612 _____ () C:\Windows\system32\perfc00A.dat
2014-11-18 23:56 - 2009-07-14 06:13 - 08785258 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-11-13 19:24 - 2013-10-19 00:06 - 00004106 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2014-11-13 19:24 - 2013-10-19 00:06 - 00003854 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2014-11-13 04:27 - 2009-07-14 05:45 - 00267816 _____ () C:\Windows\system32\FNTCACHE.DAT
2014-11-13 04:23 - 2014-07-13 14:02 - 00000000 ___SD () C:\Windows\system32\CompatTel
2014-11-13 03:13 - 2013-07-26 02:00 - 00000000 ____D () C:\Windows\system32\MRT
2014-11-13 03:03 - 2012-05-16 18:04 - 103374192 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-11-11 14:21 - 2013-11-16 17:23 - 00000928 _____ () C:\Users\Public\Desktop\LogMeIn Hamachi.lnk
2014-11-09 13:39 - 2014-10-28 21:14 - 00036478 _____ () C:\Users\WK\Downloads\Unvollständige Tabelle für Froschblutzellen .xlsx
2014-11-04 14:30 - 2012-03-29 16:56 - 00275080 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2014-11-03 19:35 - 2012-04-24 13:33 - 00000000 ____D () C:\ProgramData\Skype

Some content of TEMP:
====================
C:\Users\WK\AppData\Local\Temp\avgnt.exe
C:\Users\WK\AppData\Local\Temp\dropbox_sqlite_ext.{5f3e3153-5bce-5766-8f84-3e3e7ecf0d81}.tmpreep2d.dll
C:\Users\WK\AppData\Local\Temp\Quarantine.exe
C:\Users\WK\AppData\Local\Temp\rootsupd.exe
C:\Users\WK\AppData\Local\Temp\Runner2.exe
C:\Users\WK\AppData\Local\Temp\Runner4.exe
C:\Users\WK\AppData\Local\Temp\SkypeSetup.exe
C:\Users\WK\AppData\Local\Temp\sqlite3.dll


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2014-11-25 01:02

==================== End Of Log ============================
         
--- --- ---

--- --- ---

Alt 30.11.2014, 08:32   #13
schrauber
/// the machine
/// TB-Ausbilder
 

mystartsearch entfernen - Standard

mystartsearch entfernen




ESET Online Scanner

  • Hier findest du eine bebilderte Anleitung zu ESET Online Scanner
  • Lade und starte Eset Online Scanner
  • Setze einen Haken bei Ja, ich bin mit den Nutzungsbedingungen einverstanden und klicke auf Starten.
  • Aktiviere die "Erkennung von eventuell unerwünschten Anwendungen" und wähle folgende Einstellungen.
  • Klicke auf Starten.
  • Die Signaturen werden heruntergeladen, der Scan beginnt automatisch.
  • Klicke am Ende des Suchlaufs auf Fertig stellen.
  • Schließe das Fenster von ESET.
  • Explorer öffnen.
  • C:\Programme\Eset\EsetOnlineScanner\log.txt (bei 64 Bit auch C:\Programme (x86)\Eset\EsetOnlineScanner\log.txt) suchen und mit Deinem Editor öffnen (bebildert).
  • Logfile hier posten.
  • Deinstallation: Systemsteuerung => Software / Programme deinstallieren => Eset Online Scanner V3 entfernen.
  • Manuell folgenden Ordner löschen und Papierkorb leeren => C:\Programme\Eset


Downloade Dir bitte SecurityCheck und:

  • Speichere es auf dem Desktop.
  • Starte SecurityCheck.exe und folge den Anweisungen in der DOS-Box.
  • Wenn der Scan beendet wurde sollte sich ein Textdokument (checkup.txt) öffnen.
Poste den Inhalt bitte hier.

und ein frisches FRST log bitte. Noch Probleme?
__________________
gruß,
schrauber

Proud Member of UNITE and ASAP since 2009

Spenden
Anleitungen und Hilfestellungen
Trojaner-Board Facebook-Seite

Keine Hilfestellung via PM!

Antwort

Themen zu mystartsearch entfernen
ask toolbar entfernen, ask toolbar updater entfernen, chrome toolbar by sweetpacks entfernen, fehlercode 0x80073701, fehlercode 0xc0000005, fehlercode windows, mystartsearch, mystartsearch entfernen, pup.optional.audiotoaudiotoolbar.a, pup.optional.babylon.a, pup.optional.blabbers, pup.optional.crossrider.a, pup.optional.datamangr.a, pup.optional.delta.a, pup.optional.frostwiretb.a, pup.optional.funwebproducts.a, pup.optional.mindspark.a, pup.optional.mystartsearch.a, pup.optional.suptab.a, pup.optional.sweetim, pup.optional.sweetim.a, pup.optional.sweetpacks, pup.optional.wpm.a, sweetim for messenger 3.7 entfernen, totalplushd-3.1v25.11 entfernen, werbefenster



Ähnliche Themen: mystartsearch entfernen


  1. mystartsearch lässt sich nicht entfernen
    Plagegeister aller Art und deren Bekämpfung - 13.11.2015 (12)
  2. Seitenaufbau sehr langsam (mystartsearch)
    Log-Analyse und Auswertung - 11.10.2015 (15)
  3. Mystartsearch nicht zu entfernen; keine Windows Updates möglich
    Log-Analyse und Auswertung - 14.07.2015 (20)
  4. mystartsearch / oursurfing Schadsoftware?
    Plagegeister aller Art und deren Bekämpfung - 07.07.2015 (13)
  5. "mystartsearch" kann es nicht entfernen
    Plagegeister aller Art und deren Bekämpfung - 30.04.2015 (5)
  6. Problem mit MyStartSearch
    Log-Analyse und Auswertung - 19.04.2015 (11)
  7. Windows 8.1 64-bit WindowsProtectManger.A / XTab.A / MyStartSearch.A Befall
    Log-Analyse und Auswertung - 17.04.2015 (10)
  8. mystartsearch.com
    Plagegeister aller Art und deren Bekämpfung - 07.04.2015 (11)
  9. mystartsearch lässt sich einfach nicht entfernen!
    Log-Analyse und Auswertung - 16.03.2015 (9)
  10. Windows 8.1 Mystartsearch heruntergeladen
    Log-Analyse und Auswertung - 25.02.2015 (10)
  11. Mystartsearch entfernen
    Plagegeister aller Art und deren Bekämpfung - 16.02.2015 (17)
  12. bekomme mystartsearch.com nicht weg!
    Plagegeister aller Art und deren Bekämpfung - 02.02.2015 (9)
  13. MyStartSearch eingefangen und entfernen versucht
    Plagegeister aller Art und deren Bekämpfung - 21.01.2015 (19)
  14. Problem mit MyStartSearch
    Plagegeister aller Art und deren Bekämpfung - 07.01.2015 (11)
  15. Windows 7 - mystartsearch.com und Spyhunter 4 eingefangen
    Log-Analyse und Auswertung - 28.10.2014 (9)
  16. Mystartsearch windows explorer entfernen
    Plagegeister aller Art und deren Bekämpfung - 27.10.2014 (10)
  17. MyStartSearch.com entfernen
    Anleitungen, FAQs & Links - 21.09.2014 (2)

Zum Thema mystartsearch entfernen - Hallo ich habe ein Problem mit dieser mystartsearch Seite, die seit gestern immer beim Starten der Brower auftaucht. Parallel dazu erscheinen plötzlich auch auf jeder neuen Seite die ich öffne - mystartsearch entfernen...
Archiv
Du betrachtest: mystartsearch entfernen auf Trojaner-Board

Search Engine Optimization by vBSEO ©2011, Crawlability, Inc.