halbeshirn | 08.10.2018 12:51 | Vista ersetzen / 3fach-prob s3.amazonaws.com Hallo miteinander,
ich scheine mir eine heftige Mehrfachinfektion im Firefox eingefangen zu haben. Diese Probs treten erratisch auf:
s3.amazonaws.com
MS Sicherheitsalarm DW6VD36 (zusätzlich Audiohinweis durch deutsche Männerstimme)
https://winwithde04.win
Achtung ... wenn Sie nicht sofort anrufen (030...) ... wird Ihr Computer gesperrt und der Netzbehörde gemeldet
nhn.rundevoptions.com
Habe schon dutzende Dinge versucht, alle ohne dauerhafte Wirkungen :sleepy:.
Dank & Gruß Code:
Untersuchungsergebnis von Farbar Recovery Scan Tool (FRST) (x86) Version:13-04-2016
durchgeführt von froc47 (Administrator) auf FRO-C47-PAV (08-10-2018 12:27:41)
Gestartet von J:\frst 32bit
Geladene Profile: froc47 (Verfügbare Profile: froc47)
Platform: Microsoft® Windows Vista™ Business Service Pack 2 (X86) Sprache: Deutsch (Deutschland)
Internet Explorer Version 9 (Standard-Browser: FF)
Start-Modus: Normal
Anleitung für Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
==================== Prozesse (Nicht auf der Ausnahmeliste) =================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Prozess geschlossen. Die Datei wird nicht verschoben.)
(Logitech Inc.) C:\Program Files\Common Files\LogiShrd\LVMVFM\UMVPFSrv.exe
(Microsoft Corporation) C:\Windows\System32\SLsvc.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtHDVBg.exe
(Cisco Systems, Inc.) C:\Program Files\Cisco\Cisco AnyConnect Secure Mobility Client\vpnagent.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
() C:\Program Files\Hardcopy\hcdll2_ex_Win32.exe
(AVAST Software) C:\Program Files\AVAST Software\Browser\Update\AvastBrowserUpdate.exe
(AVAST Software) C:\Program Files\AVAST Software\Browser\Update\1.4.141.333\AvastBrowserCrashHandler.exe
(Google Inc.) C:\Program Files\Google\Update\1.3.33.17\GoogleCrashHandler.exe
(ABBYY InfoPoisk LLC) C:\Program Files\ABBYY FineReader 11\NetworkLicenseServer.exe
(Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Dassault Systèmes) C:\Program Files\Dassault Systemes\DraftSight\bin\dsHttpApiService.exe
() C:\Program Files\STRATO\HiDrive\Updater\MaintenanceService.exe
(Microsoft Corporation) C:\Windows\System32\inetsrv\inetinfo.exe
(KYOCERA Document Solutions Inc.) C:\Program Files\KDService\bin\KDService.exe
(Hewlett-Packard Company) C:\Program Files\Common Files\LightScribe\LSSrvc.exe
( ) C:\Windows\System32\lxdncoms.exe
() C:\Program Files\HTC\Internet Pass-Through\PassThruSvr.exe
(pdfforge GmbH) C:\Program Files\PDF Architect 2\creator-ws.exe
(ActMask Co.,Ltd - hxxp://WWW.ALL2PDF.COM) C:\Windows\System32\PrintCtrl.exe
(ActMask Co.,Ltd - hxxp://www.all2pdf.com) C:\Windows\System32\PrintDisp.exe
(ElmüSoft) C:\Program Files\PTBSync\PTBSync.exe
(ActMask Co.,Ltd - hxxp://www.all2pdf.com) C:\Windows\System32\PrintDisp.exe
(Apache Software Foundation) C:\Program Files\Snap-on Business Solutions\Global EPC\GM\Tomcat\bin\tomcat6.exe
(Transaction Software, D 81829 Munich) C:\Program Files\Snap-on Business Solutions\Global EPC\GM\Transbase\tbmux32.exe
(Microsoft Corporation) C:\Windows\System32\TCPSVCS.EXE
(Microsoft Corporation) C:\Windows\System32\snmp.exe
(DEVGURU Co., LTD.) C:\Program Files\SAMSUNG\USB Drivers\27_ssconn\conn\ss_conn_service.exe
(TeamViewer GmbH) C:\Program Files\TeamViewer\TeamViewer_Service.exe
(TomTom) C:\Program Files\TomTom HOME 2\TomTomHOMEService.exe
(Microsoft Corp.) C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVC.EXE
(Microsoft Corporation) C:\Windows\System32\mqtgsvc.exe
(Microsoft Corp.) C:\Program Files\Common Files\microsoft shared\Windows Live\WLIDSVCM.EXE
(Microsoft Corporation) C:\Windows\System32\iashost.exe
(TeamViewer GmbH) C:\Program Files\TeamViewer\TeamViewer.exe
(TeamViewer GmbH) C:\Program Files\TeamViewer\tv_w32.exe
(Transaction Software, D 81829 Munich) C:\Program Files\Snap-on Business Solutions\Global EPC\GM\Transbase\tbkern32.exe
(Renesas Electronics Corporation) C:\Program Files\Renesas Electronics\USB 3.0 Host Controller Driver\Application\rusb3mon.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe
(Microsoft Corporation) C:\Program Files\Microsoft IntelliPoint\ipoint.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(ElmüSoft) C:\Program Files\PTBSync\PTBSync.exe
(Brother Industries, Ltd.) C:\Program Files\Browny02\Brother\BrStMonW.exe
(Oracle Corporation) C:\Program Files\Common Files\Java\Java Update\jusched.exe
() C:\Program Files\Ditto\Ditto.exe
(Brother Industries, Ltd.) C:\Program Files\ControlCenter4\BrCtrlCntr.exe
(F.J. Wechselberger) C:\Program Files\MyPhoneExplorer\MyPhoneExplorer.exe
(sw4you) C:\Program Files\Hardcopy\hardcopy.exe
(Telegram Messenger LLP) C:\Users\froc47\AppData\Roaming\Telegram Desktop\Telegram.exe
(Brother Industries, Ltd.) C:\Program Files\Browny02\BrYNSvc.exe
(Microsoft Corporation) C:\Windows\System32\wbem\unsecapp.exe
(Transaction Software, D 81829 Munich) C:\Program Files\Snap-on Business Solutions\Global EPC\GM\Transbase\tbkern32.exe
(Transaction Software, D 81829 Munich) C:\Program Files\Snap-on Business Solutions\Global EPC\GM\Transbase\tbkern32.exe
(Transaction Software, D 81829 Munich) C:\Program Files\Snap-on Business Solutions\Global EPC\GM\Transbase\tbkern32.exe
(Brother Industries, Ltd.) C:\Program Files\ControlCenter4\BrCcUxSys.exe
(Microsoft Corporation) C:\Windows\System32\wbem\unsecapp.exe
() C:\Program Files\MyPhoneExplorer\DLL\adb.exe
(Microsoft Corporation) C:\Program Files\DebugDiag\DbgSvc.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(MAGIX AG) C:\Program Files\Common Files\MAGIX Services\Database\bin\FABS.exe
(Transaction Software, D 81829 Munich) C:\Program Files\Snap-on Business Solutions\Global EPC\GM\Transbase\tbkern32.exe
(EFSoftware) C:\Program Files\Commander\EFCW.EXE
==================== Registry (Nicht auf der Ausnahmeliste) ===========================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Registryeintrag auf den Standardwert zurückgesetzt oder entfernt. Die Datei wird nicht verschoben.)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [242392 2018-09-02] (AVAST Software)
HKLM\...\Run: [RUSB3MON] => C:\Program Files\Renesas Electronics\USB 3.0 Host Controller Driver\Application\rusb3mon.exe [115048 2011-09-20] (Renesas Electronics Corporation)
HKLM\...\Run: [Adobe ARM] => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1021128 2014-12-03] (Adobe Systems Incorporated)
HKLM\...\Run: [MsmqIntCert] => regsvr32 /s mqrt.dll
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [12336856 2015-06-18] (Realtek Semiconductor)
HKLM\...\Run: [PrintDisp] => C:\Windows\system32\PrintDisp.exe [593544 2016-10-22] (ActMask Co.,Ltd - hxxp://www.all2pdf.com)
HKLM\...\Run: [IntelliPoint] => C:\Program Files\Microsoft IntelliPoint\ipoint.exe [1821576 2011-08-01] (Microsoft Corporation)
HKLM\...\Run: [PTBSync] => C:\Program Files\PTBSync\PTBSync.exe [2404352 2018-03-24] (ElmüSoft)
HKLM\...\Run: [ControlCenter4] => C:\Program Files\ControlCenter4\BrCcBoot.exe [143360 2012-09-06] (Brother Industries, Ltd.)
HKLM\...\Run: [BrStsMon00] => C:\Program Files\Browny02\Brother\BrStMonW.exe [3076096 2012-06-06] (Brother Industries, Ltd.)
HKLM\...\Run: [SunJavaUpdateSched] => C:\Program Files\Common Files\Java\Java Update\jusched.exe [601424 2018-07-07] (Oracle Corporation)
HKLM\...\RunOnce: [PCDrProfiler] => C:\Program Files\PC-Doctor for Windows\RunProfiler.exe [77824 2008-09-10] (PC-Doctor, Inc.)
HKLM\...\runonceex: [Flags] => 2744
HKU\S-1-5-21-1560958874-917441584-2976602521-1000\...\Run: [Ditto] => C:\Program Files\Ditto\Ditto.exe [1433200 2012-11-08] ()
HKU\S-1-5-21-1560958874-917441584-2976602521-1000\...\Run: [Adobe Reader Synchronizer] => C:\Program Files\Adobe\Reader 11.0\Reader\AdobeCollabSync.exe [761064 2014-12-03] (Adobe Systems Incorporated)
HKU\S-1-5-21-1560958874-917441584-2976602521-1000\...\Run: [MyPhoneExplorer] => "C:\Program Files\MyPhoneExplorer\MyPhoneExplorer.exe" autorun
HKU\S-1-5-21-1560958874-917441584-2976602521-1000\...\RunOnce: [Adobe Speed Launcher] => 1538973586
HKU\S-1-5-21-1560958874-917441584-2976602521-1000\...\Policies\Explorer: [NoDriveTypeAutoRun] 0x00000000
HKU\S-1-5-21-1560958874-917441584-2976602521-1000\...\MountPoints2: N - N:\HTC_Sync_Manager_PC.exe
HKU\S-1-5-21-1560958874-917441584-2976602521-1000\...\MountPoints2: O - O:\HTC_Sync_Manager_PC.exe
HKU\S-1-5-21-1560958874-917441584-2976602521-1000\...\MountPoints2: S - S:\HTC_Sync_Manager_PC.exe
HKU\S-1-5-21-1560958874-917441584-2976602521-1000\...\MountPoints2: U - U:\HTC_Sync_Manager_PC.exe
HKU\S-1-5-21-1560958874-917441584-2976602521-1000\...\MountPoints2: {140d888f-b66b-11e4-b425-001e8c75f401} - Z:\HTC_Sync_Manager_PC.exe
HKU\S-1-5-21-1560958874-917441584-2976602521-1000\...\MountPoints2: {24bd6110-b40b-11e4-9fdb-001e8c75f401} - U:\HTC_Sync_Manager_PC.exe
HKU\S-1-5-21-1560958874-917441584-2976602521-1000\...\MountPoints2: {24bd61e6-b40b-11e4-9fdb-36dff95ade5a} - N:\HTC_Sync_Manager_PC.exe
HKU\S-1-5-21-1560958874-917441584-2976602521-1000\...\MountPoints2: {2e8b4301-4af7-11e5-8b9c-aadc0cf1773c} - O:\HTC_Sync_Manager_PC.exe
HKU\S-1-5-21-1560958874-917441584-2976602521-1000\...\MountPoints2: {360e0379-161f-11e3-91f2-806e6f6e6963} - B:\setup.exe /autorun
HKU\S-1-5-21-1560958874-917441584-2976602521-1000\...\MountPoints2: {43ce9978-7bd8-11e6-8285-001e8c75f401} - R:\HTC_Sync_Manager_PC.exe
HKU\S-1-5-21-1560958874-917441584-2976602521-1000\...\MountPoints2: {48187b44-7ca3-11e6-bd96-0a9c1488e347} - S:\HTC_Sync_Manager_PC.exe
HKU\S-1-5-21-1560958874-917441584-2976602521-1000\...\MountPoints2: {d97a7480-4a2e-11e5-aa9b-ee3906492d87} - N:\HTC_Sync_Manager_PC.exe
ShellIconOverlayIdentifiers: [ HiDriveOverlayIconCheck] -> {fa8f3afe-6ea5-3352-a1b1-91b8cdcc5856} => C:\Windows\system32\mscoree.dll [2009-11-08] (Microsoft Corporation)
ShellIconOverlayIdentifiers: [ HiDriveOverlayIconError] -> {b96ea5f1-499a-31a5-8260-39577b4c705d} => C:\Windows\system32\mscoree.dll [2009-11-08] (Microsoft Corporation)
ShellIconOverlayIdentifiers: [ HiDriveOverlayIconSync] -> {368c9485-f797-3806-8421-9e6323374ed3} => C:\Windows\system32\mscoree.dll [2009-11-08] (Microsoft Corporation)
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2018-09-02] (AVAST Software)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Hardcopy.LNK [2017-05-23]
ShortcutTarget: Hardcopy.LNK -> C:\Program Files\Hardcopy\hardcopy.exe (sw4you)
Startup: C:\Users\froc47\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Telegram.lnk [2017-08-19]
ShortcutTarget: Telegram.lnk -> C:\Users\froc47\AppData\Roaming\Telegram Desktop\Telegram.exe (Telegram Messenger LLP)
BootExecute: autocheck autochk * sdnclean.exe
==================== Internet (Nicht auf der Ausnahmeliste) ====================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird der Eintrag entfernt oder auf den Standardwert zurückgesetzt, wenn es sich um einen Registryeintrag handelt.)
ProxyEnable: [.DEFAULT] => Proxy ist aktiviert.
ProxyServer: [.DEFAULT] => http=127.0.0.1:62641;https=127.0.0.1:62641
AutoConfigURL: [.DEFAULT] => http=127.0.0.1:62641;https=127.0.0.1:62641
ProxyServer: [S-1-5-21-1560958874-917441584-2976602521-1000] => localhost:8080
AutoConfigURL: [S-1-5-21-1560958874-917441584-2976602521-1000] => localhost:8080
Winsock: Catalog5 07 C:\Program Files\Bonjour\mdnsNSP.dll [121704 2011-08-30] (Apple Inc.)
Tcpip\Parameters: [DhcpNameServer] 192.168.2.1
Tcpip\..\Interfaces\{CB7A2A2B-D37D-4F8A-876E-3C7B2D743A52}: [DhcpNameServer] 192.168.2.1
Internet Explorer:
==================
HKU\S-1-5-21-1560958874-917441584-2976602521-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.t-online.de/cpm-redir/ie-9.html
HKU\S-1-5-21-1560958874-917441584-2976602521-1000\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.t-online.de/cpm-redir/ie-9.html
SearchScopes: HKU\S-1-5-21-1560958874-917441584-2976602521-1000 -> DefaultScope {0288142B-B096-44BE-BF09-C4795AB4CBDC} URL = hxxp://suche.t-online.de/fast-cgi/tsc?mandant=toi&device=html&portallanguage=de&userlanguage=de&dia=suche&context=internet-tab&tpc=internet&ptl=std&classification=internet-tab_internet_std&q={searchTerms}&br=ie7-toi
SearchScopes: HKU\S-1-5-21-1560958874-917441584-2976602521-1000 -> {0288142B-B096-44BE-BF09-C4795AB4CBDC} URL = hxxp://suche.t-online.de/fast-cgi/tsc?mandant=toi&device=html&portallanguage=de&userlanguage=de&dia=suche&context=internet-tab&tpc=internet&ptl=std&classification=internet-tab_internet_std&q={searchTerms}&br=ie7-toi
SearchScopes: HKU\S-1-5-21-1560958874-917441584-2976602521-1000 -> {6833DAE9-211E-4D66-A315-82766D3B5A80} URL = hxxp://www.amazon.de/gp/search?ie=UTF8&keywords={searchTerms}&tag= interactivemesuche21&index=blended&linkCode=ur2&camp=1638&creative=6742
SearchScopes: HKU\S-1-5-21-1560958874-917441584-2976602521-1000 -> {C946B30E-9473-486E-BD19-DB8DE0C8009D} URL = hxxp://suche.t-online.de/fastcgi/tsc?mandant=toi&device=html&portallanguage=de&userlanguage=de&d ia=suche&context=wiki-tab&tpc=internet&ptl=std&classification=wikitab_internet_std&q={searchTerms}&br=ie7-toi
BHO: PDF Architect Helper -> {691B33B0-B86E-47F3-81C7-56E4FE3B929C} -> C:\Program Files\PDF Architect 2\creator-ie-helper.dll [2014-10-10] (pdfforge GmbH)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_181\bin\ssv.dll [2018-07-24] (Oracle Corporation)
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2011-03-28] (Microsoft Corp.)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_181\bin\jp2ssv.dll [2018-07-24] (Oracle Corporation)
Toolbar: HKLM - PDF Architect Toolbar - {DEEB13D7-CEA9-45FB-B77C-E039BEC85221} - C:\Program Files\PDF Architect 2\creator-ie-plugin.dll [2014-10-10] (pdfforge GmbH)
DPF: {74DBCB52-F298-4110-951D-AD2FF67BC8AB} hxxp://www.nvidia.com/content/DriverDownload/nforce/NvidiaSmartScan.cab
DPF: {B4CB8358-ABDB-47EE-BC2D-437B5DEBABCB} hxxp://192.168.2.24/AxViewer/AxMediaControl.cab
DPF: {CF84DAC5-A4F5-419E-A0BA-C01FFD71112F} hxxp://content.systemrequirementslab.com/bin/srldetect_intel_4.5.15.0.cab
FireFox:
========
FF ProfilePath: C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default
FF DefaultSearchEngine: Google Deutschland - aus Deutschland
FF Homepage: about:newtab
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF32_31_0_0_108.dll [2018-09-15] ()
FF Plugin: @Apple.com/iTunes,version=1.0 -> C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll [Keine Datei]
FF Plugin: @docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\npPDFXCviewNPPlugin.dll [2012-11-12] (Tracker Software Products (Canada) Ltd.)
FF Plugin: @google.com/zxwebplugin -> C:\Windows\system32\nptvswebplugin.dll [2013-09-28] ()
FF Plugin: @java.com/DTPlugin,version=11.181.2 -> C:\Program Files\Java\jre1.8.0_181\bin\dtplugin\npDeployJava1.dll [Keine Datei]
FF Plugin: @java.com/JavaPlugin,version=11.181.2 -> C:\Program Files\Java\jre1.8.0_181\bin\plugin2\npjp2.dll [2018-07-24] (Oracle Corporation)
FF Plugin: @microsoft.com/WPF,version=3.5 -> C:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll [2008-07-29] (Microsoft Corporation)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.33.17\npGoogleUpdate3.dll [2018-05-18] (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.33.17\npGoogleUpdate3.dll [2018-05-18] (Google Inc.)
FF Plugin: @videolan.org/vlc,version=2.0.8 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2017-05-24] (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.1.1 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2017-05-24] (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.1.2 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2017-05-24] (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.1.3 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2017-05-24] (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.1.5 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2017-05-24] (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.2.1 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2017-05-24] (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.2.6 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2017-05-24] (VideoLAN)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2014-12-03] (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-1560958874-917441584-2976602521-1000: @docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\npPDFXCviewNPPlugin.dll [2012-11-12] (Tracker Software Products (Canada) Ltd.)
FF user.js: detected! => C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\user.js [2016-03-03]
FF SearchPlugin: C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\searchplugins\antonym.xml [2015-04-06]
FF SearchPlugin: C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\searchplugins\bing-karten.xml [2016-06-03]
FF SearchPlugin: C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\searchplugins\das-rtliche.xml [2016-04-09]
FF SearchPlugin: C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\searchplugins\das-telefonbuch.xml [2016-04-09]
FF SearchPlugin: C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\searchplugins\dictcc-de-en.xml [2016-08-07]
FF SearchPlugin: C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\searchplugins\dictcc-de-fr.xml [2016-01-31]
FF SearchPlugin: C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\searchplugins\dictionary.xml [2016-08-14]
FF SearchPlugin: C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\searchplugins\ebay-durchsuchen.xml [2016-05-27]
FF SearchPlugin: C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\searchplugins\ebay-kleinanzeigen.xml [2016-09-20]
FF SearchPlugin: C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\searchplugins\englische-ergebnisse.xml [2015-08-28]
FF SearchPlugin: C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\searchplugins\finanztip--das-gemeinntzige-online-verbrauchermagazin.xml [2016-05-05]
FF SearchPlugin: C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\searchplugins\firefox-add-ons.xml [2015-11-17]
FF SearchPlugin: C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\searchplugins\geizhals-.xml [2016-04-21]
FF SearchPlugin: C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\searchplugins\google-bersetzer.xml [2016-01-05]
FF SearchPlugin: C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\searchplugins\google-bilder-gro.xml [2015-02-22]
FF SearchPlugin: C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\searchplugins\google-deutschland---aus-deutschland.xml [2015-09-09]
FF SearchPlugin: C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\searchplugins\google-deutschland-pdf.xml [2015-09-09]
FF SearchPlugin: C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\searchplugins\google-deutschland-ssl.xml [2015-02-22]
FF SearchPlugin: C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\searchplugins\google-maps-deutschland-classic.xml [2015-04-20]
FF SearchPlugin: C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\searchplugins\google-maps-deutschland.xml [2016-06-03]
FF SearchPlugin: C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\searchplugins\google-videos.xml [2015-02-22]
FF SearchPlugin: C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\searchplugins\gutscheine.xml [2016-07-12]
FF SearchPlugin: C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\searchplugins\ibhklein.xml [2016-05-04]
FF SearchPlugin: C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\searchplugins\idealode.xml [2016-04-21]
FF SearchPlugin: C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\searchplugins\lastminute.xml [2015-08-28]
FF SearchPlugin: C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\searchplugins\leo-fra-deu.xml [2016-02-15]
FF SearchPlugin: C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\searchplugins\meta-preisvergleich.xml [2015-02-15]
FF SearchPlugin: C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\searchplugins\metager-quantum-info-processing-en-ssl.xml [2015-02-22]
FF SearchPlugin: C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\searchplugins\metager.xml [2016-07-30]
FF SearchPlugin: C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\searchplugins\metager2.xml [2016-09-20]
FF SearchPlugin: C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\searchplugins\mycroft-project.xml [2015-02-15]
FF SearchPlugin: C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\searchplugins\preisroboter.xml [2015-10-05]
FF SearchPlugin: C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\searchplugins\qwantcom.xml [2015-05-05]
FF SearchPlugin: C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\searchplugins\radio-online.xml [2016-05-29]
FF SearchPlugin: C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\searchplugins\thunderbird-add-ons.xml [2016-04-23]
FF SearchPlugin: C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\searchplugins\webde-suche.xml [2015-08-28]
FF SearchPlugin: C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\searchplugins\wikipedia-deen---google.xml [2015-02-22]
FF SearchPlugin: C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\searchplugins\wikipedia-deutsch---google.xml [2015-03-18]
FF Extension: DownThemAll! AntiContainer - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\extensions\anticontainer@downthemall.net.xpi [2016-04-15]
FF Extension: Copy Plain Text 2 - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\extensions\copyplaintext@teo.pl.xpi [2016-08-29]
FF Extension: Email Extractor - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\extensions\emailExtractor@penzil.com.xpi [2016-09-13]
FF Extension: Form History Control - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\extensions\formhistory@yahoo.com [2016-04-15]
FF Extension: Multi Links Plus - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\extensions\multilinksplus@hugsmile.eu.xpi [2016-12-13]
FF Extension: Search on Engine Change - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\extensions\search-on-engine-change@maltekraus.de.xpi [2016-05-28]
FF Extension: Show Password - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\extensions\showpassword@pratikpoddar.xpi [2016-05-28]
FF Extension: toggleDocumentColors - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\extensions\toggleDocumentColors@darkoshi.xpi [2016-05-28]
FF Extension: Image Zoom - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\extensions\{1A2D0EC4-75F5-4c91-89C4-3656F6E44B68}.xpi [2016-05-28]
FF Extension: Print Image - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\extensions\{2990C60B-0C93-496e-90F6-176E68895AF6}.xpi [2016-05-28]
FF Extension: Email Link button - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\extensions\{2A638E17-DE1D-48d3-A4B7-39E9670FF77A}.xpi [2016-09-19]
FF Extension: Send Tab URLs - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\extensions\{4aebcd37-f454-4928-9233-174a026ed367}.xpi [2016-06-21]
FF Extension: View Cookies - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\extensions\{8F6A6FD9-0619-459f-B9D0-81DE065D4E21}.xpi [2015-12-26]
FF Extension: AuctionDefender - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\extensions\{9501BFED-4697-468c-9232-4C70AE9C1824}.xpi [2017-07-14]
FF Extension: CookieCuller - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\extensions\{99B98C2C-7274-45a3-A640-D9DF1A1C8460}.xpi [2016-12-24]
FF Extension: Tab History Menu - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\extensions\{9c491c49-071c-4039-98a5-66d3fe53b1b2}.xpi [2016-05-28]
FF Extension: Right-Click-Link - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\extensions\{AA6F0803-145A-4200-8E5E-68898D02B5B3}.xpi [2017-07-11]
FF Extension: Cookies Manager+ - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\extensions\{bb6bc1bb-f824-4702-90cd-35e2fb24f25d} [2017-07-24]
FF Extension: Universal Print - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\extensions\{BE2100B3-1D80-48eb-ACCF-D26750644378} [2016-05-21]
FF Extension: Copy Frame Address - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\extensions\{c71ff04d-f001-1fc1-1fc1-c71ff04df003}.xpi [2016-09-07]
FF Extension: Show my Password - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\extensions\{cd617372-6743-4ee4-bac4-fbf60f35719e}.xpi [2016-05-28]
FF Extension: Print - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\extensions\{f199da35-0a9a-4ce9-8f59-c68524deba93}.xpi [2016-05-28]
FF Extension: FromToGMAP - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\extensions\fromtogmap@moine.biz.xpi [2017-09-24]
FF Extension: Clippings - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\extensions\{91aa5abe-9de4-4347-b7b5-322c38dd9271} [2017-10-23]
FF Extension: Saved Password Editor - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\extensions\savedpasswordeditor@daniel.dawson.xpi [2017-11-11]
FF Extension: Resizeable Textarea - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\extensions\resizeabletextarea@bristol.ac.uk.xpi [2017-11-30] [ist nicht signiert]
FF Extension: printpdf - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\extensions\printpdf@pavlov.net.xpi [2017-12-23]
FF Extension: WebToPDF - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\extensions\manish.p05@gmail.com.xpi [2018-05-30]
FF Extension: Web2PDF converter - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\extensions\{e8f509f0-b677-11de-8a39-0800200c9a66}.xpi [2018-05-30]
FF Extension: View Source - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\extensions\viewsource@kash [2018-08-16]
FF Extension: Tab Mix Plus - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\extensions\{dc572301-7619-498c-a57d-39143191b318}.xpi [2018-09-05]
FF Extension: Classic Theme Restorer - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\extensions\ClassicThemeRestorer@ArisT2Noia4dev.xpi [2018-09-05]
FF Extension: Kein Name - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\@frame-demolition.xpi [2018-08-16]
FF Extension: Kein Name - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\@googlurl.xpi [2018-02-27]
FF Extension: Kein Name - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\@pdfit.xpi [2018-09-05]
FF Extension: Kein Name - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\@translatenow.xpi [2018-04-18]
FF Extension: WindowFrame - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\@windowframe.xpi [2018-08-16]
FF Extension: Add to Search Bar - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\add-to-searchbox@maltekraus.de.xpi [2016-05-04]
FF Extension: Addon List Dumper (restartless) - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\addonListDumper@jetpack.xpi [2016-05-28]
FF Extension: Google Docs Viewer - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\adonis.cuhk@gmail.com.xpi [2016-09-12]
FF Extension: Aero Improved - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\aeroimproved@rsjtdrjgfuzkfg.com.xpi [2014-12-15] [ist nicht signiert]
FF Extension: Kein Name - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\amazonsort@mozilla.xpi [2018-01-25]
FF Extension: Simple Amazon DE Search Button - Einfach suchen - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\andromeda.nebel@yahoo.at.xpi [2018-01-25]
FF Extension: AudioMonitor - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\audiomonitor@kevinallasso.org [2017-05-28]
FF Extension: DT Whois - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\beysim@beysim.net.xpi [2016-05-28]
FF Extension: Bookmark Deduplicator - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\bookmarkdeduplicator@foxhatdev.xpi [2016-05-28]
FF Extension: Kein Name - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\check4change-owner@mozdev.org.xpi [2017-11-30]
FF Extension: Multiple Addon Deactivator - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\ChrisLE@mozilla.org [2016-05-28]
FF Extension: Classic Opera - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\classic-opera@oele.net.xpi [2017-01-17]
FF Extension: CLEO - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\CLEO@guid.customsoftwareconsult.com [2016-05-28]
FF Extension: Add-on Compatibility Reporter - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\compatibility@addons.mozilla.org.xpi [2017-07-06]
FF Extension: CookieKeeper - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\cookiekeeper@cookiekeeper.mozdev.org.xpi [2016-12-24]
FF Extension: Cookies Export/import - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\CookiesIE@yahoo.com.xpi [2016-05-28]
FF Extension: Copy Urls Expert - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\copy-urls-expert@kashiif-gmail.com.xpi [2017-01-16]
FF Extension: IE Tab + - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\coralietab@mozdev.org [2017-05-31]
FF Extension: Element Hiding Helper for Adblock Plus - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\elemhidehelper@adblockplus.org.xpi [2018-05-03]
FF Extension: Kein Name - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\enable-right-click-and-copy@afnankhan.xpi [2017-07-17]
FF Extension: ExportHTMLFolder - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\ExportHTMLFolder@luc.pastisman.xpi [2018-01-19]
FF Extension: Add-on Exporter - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\exportify@dactyl.googlecode.com.xpi [2016-05-28]
FF Extension: Fasterfox Lite - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\FasterFox_Lite@BigRedBrent [2017-09-27]
FF Extension: Firefox 3 Aero theme for Firefox 4+ - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\ffe_ff3aeroff4@game-point.net.xpi [2014-12-15] [ist nicht signiert]
FF Extension: Flash Killer - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\flashkiller@joli.clic.xpi [2016-05-28]
FF Extension: FlashStopper - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\flashstopper@byo.co.il.xpi [2018-02-02]
FF Extension: Font Finder - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\fontfinder@bendodson.com.xpi [2016-12-13]
FF Extension: Go Parent Folder - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\goParentFolder@alice.xpi [2016-05-28]
FF Extension: History Submenus II - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\HistorySubmenus2@Merci.chao.xpi [2018-09-05]
FF Extension: Kein Name - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\ieview-we@clear-code.com.xpi [2018-06-06]
FF Extension: mp3it - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\info@mp3it.eu.xpi [2016-12-15]
FF Extension: It's All Text! - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\itsalltext@docwhat.gerf.org [2017-11-30]
FF Extension: Kein Name - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\jid0-c1av474BVPIHcGJfBp3GkhlhAa4@jetpack.xpi [2017-07-06]
FF Extension: Kein Name - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\jid0-YQz0l1jthOIz179ehuitYAOdBEs@jetpack.xpi [2018-05-30]
FF Extension: Kein Name - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\jid1-B3yalP92uSPu4w@jetpack.xpi [2017-11-30]
FF Extension: Inline Audio Player - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\jid1-FUBXJBBKIeigHQ@jetpack.xpi [2017-05-28]
FF Extension: Kein Name - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\jid1-GeRCnsiDhZiTvA@jetpack.xpi [2018-09-05]
FF Extension: Kein Name - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\jid1-JobPqtvtwG9w0A@jetpack.xpi [2017-11-30]
FF Extension: Kein Name - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\jid1-l5dUGwHjz2WXo2@jetpack.xpi [2018-06-06]
FF Extension: Kein Name - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\jid1-n8wH2cBfc2QaUj@jetpack.xpi [2018-09-05]
FF Extension: link2email - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\jid1-Se7i5XkcT3bNGQ@jetpack.xpi [2016-09-19]
FF Extension: Toggle Document Colors - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\jid1-seVepDGOivl8Sg@jetpack.xpi [2016-05-28]
FF Extension: Flash Control - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\jid1-sNL73VCI4UB0Fw@jetpack.xpi [2017-12-13]
FF Extension: Copy Extensions to Clipboard - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\jid1-yaYZ8QXoULbGtw@jetpack.xpi [2016-09-22]
FF Extension: Long URL Please - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\longurlplease@darragh.curran.xpi [2016-09-07]
FF Extension: Media Sniffer - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\MediaSniffer@hiyoko.info.xpi [2016-04-17]
FF Extension: Open in IE - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\openinie@wittersworld.com.xpi [2017-05-31]
FF Extension: PerformanceTest - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\performancetest@teesoft.info.xpi [2017-09-27]
FF Extension: Kein Name - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\printedit-we@DW-dev.xpi [2017-12-23]
FF Extension: Pure URL - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\pure-url@jetpack.xpi [2017-05-31]
FF Extension: TheRealURL - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\realurl@rod.whiteley.xpi [2016-09-07]
FF Extension: Redirect Check Client - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\redirectcheck-client@koeniglich.ch.xpi [2016-05-28]
FF Extension: Kein Name - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\save-as-pdf-ff@pdfcrowd.com.xpi [2018-05-30]
FF Extension: SavedSearchButton - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\savedsearchbutton@alice0775 [2016-05-28]
FF Extension: Search Links - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\searchlinks@yoxigen.com.xpi [2016-09-02]
FF Extension: Show Parent Folder - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\showParentFolder@alice.xpi [2016-09-13]
FF Extension: Simple White - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\Simple@White.Theme.xpi [2015-06-03]
FF Extension: SiteDelta (transition to SiteDelta Highlight and SiteDelta Watch) - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\sitedelta@schierla.de.xpi [2017-10-14]
FF Extension: Skip Addon Compatibility Check - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\skip_compatibility_check@sdrocking.com.xpi [2018-09-05]
FF Extension: Slim Add-ons Manager - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\slimaddonmanager@opendfki.de.xpi [2016-08-04]
FF Extension: Kein Name - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\smart-tab-mute@die-antwort.eu.xpi [2017-05-28]
FF Extension: Scientific Calculator - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\ststusscicalc@sunny.xpi [2016-04-21]
FF Extension: Kein Name - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\temp [2013-09-09] [ist nicht signiert]
FF Extension: Kein Name - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\textarea-cache-lite@wildsky.cc.xpi [2018-06-12]
FF Extension: Text Complete - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\textcomplete@cfavatar.com.xpi [2016-05-28]
FF Extension: Kein Name - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\tineye@ideeinc.com.xpi [2017-07-06]
FF Extension: Kein Name - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\uBlock0@raymondhill.net.xpi [2018-09-28]
FF Extension: URL Extractor - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\urlExtractor@ma3r.name.xpi [2016-09-07]
FF Extension: Video WithOut Flash - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\vwof@drev.com.xpi [2018-05-13]
FF Extension: Kein Name - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\website_pdf@lipoapps.xpi [2018-09-28]
FF Extension: Mail and Save - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\wikit@example.net.xpi [2017-02-28]
FF Extension: Remove Cookies for Site - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\{06997db0-c027-4d5f-bd37-b0d9230226ea}.xpi [2016-05-28]
FF Extension: Unshorten.It! - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\{0a566650-a8e0-11e0-8264-0800200c9a66}.xpi [2016-09-07]
FF Extension: Make Link - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\{0B6B0D55-DFAC-4006-AEE6-25667F55A2A8}.xpi [2016-05-28]
FF Extension: URL Link - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\{139a120b-c2ea-41d2-bf70-542d9f063dfd}.xpi [2017-10-10]
FF Extension: Capture & Print - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\{146f1820-2b0d-49ef-acbf-d85a6986e10c}.xpi [2017-12-23]
FF Extension: Kein Name - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\{16cbd87c-eb99-4f5c-9825-83cf13ab7ff8}.xpi [2018-04-18]
FF Extension: Kein Name - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\{18f8ea62-22ca-451e-b1f0-8df9df4430aa}.xpi [2018-05-30]
FF Extension: FlashGot - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\{19503e42-ca3c-4c27-b1e2-9cdb2170ee34}.xpi [2017-01-10]
FF Extension: IE Tab 2 (FF 3.6+) - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\{1BC9BA34-1EED-42ca-A505-6D2F1A935BBB} [2018-05-03]
FF Extension: TextMarker! - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\{1c530060-b0ae-11d9-9669-0800200c9a66} [2017-01-19]
FF Extension: Kein Name - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\{1ced4832-f06e-413f-aa14-9eb63ad40ace}.xpi [2017-10-10]
FF Extension: Remove It Permanently - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\{1dbc4a33-ea62-4330-966c-7bdad3455322} [2016-05-28]
FF Extension: Remove It Permanently [de] - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\{1dbc4a33-ea62-4330-966c-7bdad3455322}(2) [2013-09-09] [ist nicht signiert]
FF Extension: Kein Name - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\{1f50c5bd-711d-441f-8cdf-d2043bcce0f9}.xpi [2018-09-05]
FF Extension: Kein Name - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\{27d5c3f4-4c65-4335-a32d-f53c298df1c8}.xpi [2017-11-30]
FF Extension: ebayitemdescriptionshowsellerloc - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\{38fc2fbc-9500-46e7-8bc5-b128acd9e143}.xpi [2017-11-30]
FF Extension: Flashblock - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\{3d7eb24f-2740-49df-8937-200b1cc08f8a} [2016-01-04]
FF Extension: LinkChecker - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\{49f3fc85-dcfe-4e42-9301-226ebe658509}.xpi [2018-02-18]
FF Extension: Kein Name - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\{4a313247-8330-4a81-948e-b79936516f78}.xpi [2018-03-10]
FF Extension: FEBE - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\{4BBDD651-70CF-4821-84F8-2B918CF89CA3} [2016-11-20]
FF Extension: Kein Name - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\{4dc0db93-2f11-4dba-ae6a-c82e57a10599}.xpi [2018-05-30]
FF Extension: Text Link - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\{54BB9F3F-07E5-486c-9B39-C7398B99391C}.xpi [2016-04-15]
FF Extension: Kein Name - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\{5610edea-88c1-4370-b93d-86aa131971d1}.xpi [2018-05-03]
FF Extension: Searchbar Autosizer - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\{655397ca-4766-496b-b7a8-3a5b176ee4c2}.xpi [2016-05-28]
FF Extension: Telify - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\{6c5f349a-ddda-49ad-bdf0-326d3fe1f938}(2) [2013-09-09] [ist nicht signiert]
FF Extension: IE View [de] - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\{6e84150a-d526-41f1-a480-a67d3fed910d}(2) [2013-09-09] [ist nicht signiert]
FF Extension: Follow That Page - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\{7282A944-FE1F-11DA-8171-3B6D5C103D30}.xpi [2016-05-28]
FF Extension: NoScript - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\{73a6fe31-595d-460b-a920-fcc0f8843232}.xpi [2018-02-02]
FF Extension: Map With Google - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\{74591c01-3a7f-469e-ad4e-5d8d708dc4c5}.xpi [2016-01-26]
FF Extension: Kein Name - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\{754ca900-9e5f-49a2-968f-ada63db82953}.xpi [2018-09-28]
FF Extension: IE Tab - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\{77b819fa-95ad-4f2c-ac7c-486b356188a9} [2017-05-31]
FF Extension: iMacros for Firefox - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\{81BF1D23-5F17-408D-AC6B-BD6DF7CAF670}.xpi [2016-09-22]
FF Extension: Search by Image for Google - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\{ab4b5718-3998-4a2c-91ae-18a7c2db513e}.xpi [2016-05-28]
FF Extension: Complete YouTube Saver - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\{AF445D67-154C-4c69-A17B-7F392BCC36A3} [2018-03-08]
FF Extension: Kein Name - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\{b14f4076-e80d-4baa-8c7d-8c65dfd2519c}.xpi [2018-09-05]
FF Extension: Google Shortener - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\{B81B80BF-8F35-4BC0-9236-EFB3F7EE9282}.xpi [2016-05-28]
FF Extension: Kein Name - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\{b9acf540-acba-11e1-8ccb-001fd0e08bd4}.xpi [2018-09-28]
FF Extension: Download YouTube Videos as MP4 - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\{b9bfaf1c-a63f-47cd-8b9a-29526ced9060}.xpi [2017-04-20]
FF Extension: lget [de] - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\{bb117431-63c1-4a4d-8e4e-47f02268b2c6}(2) [2013-09-09] [ist nicht signiert]
FF Extension: Update Scanner - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\{c07d1a49-9894-49ff-a594-38960ede8fb9}.xpi [2017-02-28]
FF Extension: Space Next - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\{c71ff04d-f001-1fc1-1fc1-c71ff04df005}.xpi [2016-05-28]
FF Extension: Kein Name - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\{c853c31a-d96d-4394-bff3-da25ba9ab8b9}.xpi [2018-08-16]
FF Extension: Kein Name - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2018-09-05]
FF Extension: Mute Tab - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\{d3d46ca0-999d-11da-a72b-0800200c9a66}.xpi [2017-02-28]
FF Extension: Force PDF Download - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\{d7f46ca0-899d-11da-a72b-0800200c9a65}.xpi [2018-02-18]
FF Extension: DownThemAll! - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\{DDC359D1-844A-42a7-9AA1-88A850A938A8}.xpi [2016-10-20]
FF Extension: Kein Name - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\{e33788ea-0bb9-4502-9c77-bdc551afc8ab}.xpi [2017-10-10]
FF Extension: Kein Name - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\{e436d70c-fbc6-4b7d-bf4c-c33296553599}.xpi [2018-04-18]
FF Extension: Menu Editor - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\{EDA7B1D7-F793-4e03-B074-E6F303317FB0}.xpi [2014-11-11] [ist nicht signiert]
FF Extension: Kein Name - C:\Users\froc47\AppData\Roaming\Mozilla\Firefox\Profiles\lh9v0ajz.default\Extensions\{f84ae8ef-4634-49e4-a01a-0afe36d35582}.xpi [2018-05-30]
FF HKLM\...\Firefox\Extensions: [pdf_architect_2_conv@pdfarchitect.org] - C:\Program Files\PDF Architect 2\resources\pdfarchitect2firefoxextension
FF Extension: PDF Architect 2 Creator - C:\Program Files\PDF Architect 2\resources\pdfarchitect2firefoxextension [2014-12-15] [ist nicht signiert]
FF ExtraCheck: C:\Program Files\mozilla firefox\defaults\pref\itms.js [2014-05-26]
==================== Dienste (Nicht auf der Ausnahmeliste) ========================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
R2 ABBYY.Licensing.FineReader.Professional.11.0; C:\Program Files\ABBYY FineReader 11\NetworkLicenseServer.exe [821048 2013-06-17] (ABBYY InfoPoisk LLC)
S2 AcronisOSSReinstallSvc; C:\Program Files\Common Files\Acronis\Acronis Disk Director\oss_reinstall_svc.exe [2232296 2007-03-09] () [Datei ist nicht signiert]
S3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\aswidsagent.exe [6488376 2018-09-02] (AVAST Software)
S2 avast; C:\Program Files\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [164984 2018-06-26] (AVAST Software)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [322464 2018-09-02] (AVAST Software)
S3 avastm; C:\Program Files\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [164984 2018-06-26] (AVAST Software)
R3 BrYNSvc; C:\Program Files\Browny02\BrYNSvc.exe [266240 2012-06-05] (Brother Industries, Ltd.) [Datei ist nicht signiert]
R2 DbgSvc; C:\Program Files\DebugDiag\DbgSvc.exe [328840 2015-11-03] (Microsoft Corporation)
R2 DraftSight API Service; C:\Program Files\Dassault Systemes\DraftSight\bin\dsHttpApiService.exe [86016 2013-08-30] (Dassault Systèmes) [Datei ist nicht signiert]
R2 Fabs; C:\Program Files\Common Files\MAGIX Services\Database\bin\FABS.exe [1858048 2012-01-23] (MAGIX AG) [Datei ist nicht signiert]
S3 FirebirdServerMAGIXInstance; C:\Program Files\Common Files\MAGIX Services\Database\bin\fbserver.exe [2702848 2011-04-26] (MAGIX®) [Datei ist nicht signiert]
S3 FLEXnet Licensing Service; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [1044816 2014-11-09] (Flexera Software, Inc.)
S4 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [921232 2015-07-24] (NVIDIA Corporation)
S3 GSService; C:\Windows\system32\GSService.exe [444640 2014-07-28] ()
R2 HiDriveMaintenanceService; C:\Program Files\STRATO\HiDrive\Updater\MaintenanceService.exe [914096 2017-07-31] () [Datei ist nicht signiert]
R2 IISADMIN; C:\Windows\system32\inetsrv\inetinfo.exe [13824 2008-01-21] (Microsoft Corporation)
R2 KDService; C:\Program Files\KDService\bin\KDService.exe [443904 2016-07-06] (KYOCERA Document Solutions Inc.) [Datei ist nicht signiert]
R2 LightScribeService; C:\Program Files\Common Files\LightScribe\LSSrvc.exe [73728 2013-01-16] (Hewlett-Packard Company) [Datei ist nicht signiert]
R2 lxdn_device; C:\Windows\system32\lxdncoms.exe [589824 2007-11-28] ( ) [Datei ist nicht signiert]
R2 MSMQTriggers; C:\Windows\system32\mqtgsvc.exe [125952 2009-04-11] (Microsoft Corporation)
S4 NvNetworkService; C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe [1871504 2015-07-24] (NVIDIA Corporation)
R2 PassThru Service; C:\Program Files\HTC\Internet Pass-Through\PassThruSvr.exe [167424 2012-12-07] () [Datei ist nicht signiert]
S3 PDF Architect 2; C:\Program Files\PDF Architect 2\ws.exe [1771560 2014-10-10] (pdfforge GmbH)
R2 PDF Architect 2 Creator; C:\Program Files\PDF Architect 2\creator-ws.exe [738856 2014-10-10] (pdfforge GmbH)
S3 pdfforge CrashHandler; C:\Program Files\PDF Architect 2\crash-handler-ws.exe [861736 2014-10-10] (pdfforge GmbH)
R2 Printer Control; C:\Windows\system32\PrintCtrl.exe [110216 2015-10-01] (ActMask Co.,Ltd - hxxp://WWW.ALL2PDF.COM)
R2 PTBSync; C:\Program Files\PTBSync\PTBSync.exe [2404352 2018-03-24] (ElmüSoft) [Datei ist nicht signiert]
R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService.exe [255192 2015-05-22] (Realtek Semiconductor)
S3 SandraAgentSrv; C:\Program Files\SiSoftware\SiSoftware Sandra Lite 2016.RTMa\RpcAgentSrv.exe [76784 2015-12-20] (SiSoftware) [Datei ist nicht signiert]
R2 SBS_GM_TOMCAT6; C:\Program Files\Snap-on Business Solutions\Global EPC\GM\Tomcat\bin\tomcat6.exe [57344 2008-07-21] (Apache Software Foundation) [Datei ist nicht signiert]
R2 SBS_GM_TRANSBASE; C:\Program Files\Snap-on Business Solutions\Global EPC\GM\Transbase\tbmux32.exe [417792 2009-09-03] (Transaction Software, D 81829 Munich) [Datei ist nicht signiert]
S2 SkypeUpdate; C:\Program Files\Skype\Updater\Updater.exe [317400 2017-04-05] (Skype Technologies) [Datei ist nicht signiert]
R2 ss_conn_service; C:\Program Files\Samsung\USB Drivers\27_ssconn\conn\ss_conn_service.exe [752224 2017-01-16] (DEVGURU Co., LTD.)
R2 TeamViewer; C:\Program Files\TeamViewer\TeamViewer_Service.exe [11644656 2018-08-13] (TeamViewer GmbH)
R2 UMVPFSrv; C:\Program Files\Common Files\logishrd\LVMVFM\UMVPFSrv.exe [450848 2012-01-18] (Logitech Inc.)
R2 vpnagent; C:\Program Files\Cisco\Cisco AnyConnect Secure Mobility Client\vpnagent.exe [567184 2015-12-23] (Cisco Systems, Inc.)
S2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [272952 2008-01-21] (Microsoft Corporation)
S3 rpcapd; "%ProgramFiles%\WinPcap\rpcapd.exe" -d -f "%ProgramFiles%\WinPcap\rpcapd.ini" [X]
===================== Treiber (Nicht auf der Ausnahmeliste) ==========================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
S3 acsint; C:\Windows\System32\DRIVERS\acsint.sys [40304 2015-12-23] (Cisco Systems, Inc.)
S3 acsmux; C:\Windows\System32\DRIVERS\acsmux.sys [58736 2015-12-23] (Cisco Systems, Inc.)
R1 aswArPot; C:\Windows\System32\drivers\aswArPot.sys [167552 2018-09-02] (AVAST Software)
R1 aswbidsdriver; C:\Windows\System32\drivers\aswbidsdriverx.sys [188336 2018-09-02] (AVAST Software)
R0 aswbidsh; C:\Windows\System32\drivers\aswbidshx.sys [164944 2018-09-02] (AVAST Software)
R0 aswblog; C:\Windows\System32\drivers\aswblogx.sys [284320 2018-09-02] (AVAST Software)
R0 aswbuniv; C:\Windows\System32\drivers\aswbunivx.sys [57968 2018-09-02] (AVAST Software)
R1 aswHdsKe; C:\Windows\System32\drivers\aswHdsKe.sys [196008 2018-09-02] (AVAST Software)
S3 aswHwid; C:\Windows\System32\drivers\aswHwid.sys [42808 2018-09-02] (AVAST Software)
R2 aswMonFlt; C:\Windows\System32\drivers\aswMonFlt.sys [135376 2018-09-11] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\drivers\aswRvrt.sys [73264 2018-09-02] (AVAST Software)
R1 aswSnx; C:\Windows\System32\drivers\aswSnx.sys [784112 2018-09-02] (AVAST Software)
R1 aswSP; C:\Windows\System32\drivers\aswSP.sys [396536 2018-09-04] (AVAST Software)
R0 aswVmm; C:\Windows\System32\drivers\aswVmm.sys [311328 2018-09-02] (AVAST Software)
S3 BrSerIb; C:\Windows\System32\DRIVERS\BrSerIb.sys [71424 2012-04-12] (Brother Industries Ltd.) [Datei ist nicht signiert]
R1 cbfltfs3; C:\Windows\system32\drivers\cbfltfs3.sys [238784 2015-09-05] (EldoS Corporation)
S3 CompFilter; C:\Windows\System32\DRIVERS\lvbusflt.sys [19688 2012-09-21] (Logitech Inc.)
S3 dg_ssudbus; C:\Windows\System32\DRIVERS\ssudbus.sys [109184 2017-01-16] (Samsung Electronics Co., Ltd.)
S3 LUsbFilt; C:\Windows\System32\Drivers\LUsbFilt.Sys [28312 2013-05-23] (Logitech, Inc.)
R3 mf; C:\Windows\System32\DRIVERS\mf.sys [109056 2008-01-21] (Microsoft Corporation)
S3 MonitorFunction; C:\Windows\System32\DRIVERS\TVMonitor.sys [13304 2013-10-17] (TeamViewer GmbH)
S3 MTOnlPktAlyX; C:\Program Files\T-Online\T-Online_Software_6\Basis-Software\Basis1\MTOnlPktAlyX.SYS [19200 2010-08-27] (Deutsche Telekom AG AG, Marmiko IT-Solutions GmbH) [Datei ist nicht signiert]
R2 npf; C:\Windows\system32\drivers\npf.sys [36600 2017-01-02] (Riverbed Technology, Inc.)
R1 RrNetCapFilterDriver; C:\Windows\System32\DRIVERS\RrNetCapFilterDriver.sys [22184 2013-10-07] (Audials AG)
R3 rusb3hub; C:\Windows\System32\DRIVERS\rusb3hub.sys [91016 2012-08-27] (Renesas Electronics Corporation)
R3 rusb3xhc; C:\Windows\System32\DRIVERS\rusb3xhc.sys [181128 2012-08-27] (Renesas Electronics Corporation)
S3 SANDRA; C:\Program Files\SiSoftware\SiSoftware Sandra Lite 2016.RTMa\WNt600x86\Sandra.sys [23112 2009-08-07] (SiSoftware)
S3 Ser2plx86; C:\Windows\System32\DRIVERS\ser2pl.sys [139776 2013-10-17] (Prolific Technology Inc.)
S3 ssudmdm; C:\Windows\System32\DRIVERS\ssudmdm.sys [147072 2017-01-16] (Samsung Electronics Co., Ltd.)
S3 tbhsd; C:\Windows\System32\drivers\tbhsd.sys [39048 2013-10-07] (RapidSolution Software AG)
S3 Usbnic; C:\Windows\System32\DRIVERS\Usbnic.sys [12032 2016-06-01] (OTi.)
R3 USBPcap; C:\Windows\System32\DRIVERS\USBPcap.sys [41832 2016-08-03] (USBPcap) [Datei ist nicht signiert]
R2 WinRing0_1_2_0; C:\Windows\system32\Drivers\ptbring0.sys [14416 2015-08-31] (OpenLibSys.org)
S3 DRHARD; \??\C:\Windows\system32\DRIVERS\DRHARD.SYS [X]
S3 IpInIp; system32\DRIVERS\ipinip.sys [X]
S3 NwlnkFlt; system32\DRIVERS\nwlnkflt.sys [X]
S3 NwlnkFwd; system32\DRIVERS\nwlnkfwd.sys [X]
S3 SBFWIMCLMP; system32\DRIVERS\SBFWIM.sys [X]
U5 UnlockerDriver5; C:\Program Files\Unlocker\UnlockerDriver5.sys [4096 2010-07-04] () [Datei ist nicht signiert]
==================== NetSvcs (Nicht auf der Ausnahmeliste) ===================
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird er aus der Registry entfernt. Die Datei wird nicht verschoben solange sie nicht separat aufgelistet wird.)
==================== Ein Monat: Erstellte Dateien und Ordner ========
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)
2018-09-22 12:09 - 2018-09-22 12:09 - 00139328 _____ C:\Windows\Minidump\Mini092218-01.dmp
2018-09-18 13:36 - 2018-09-18 13:36 - 00139328 _____ C:\Windows\Minidump\Mini091818-02.dmp
2018-09-18 12:05 - 2018-09-18 12:05 - 00139328 _____ C:\Windows\Minidump\Mini091818-01.dmp
2018-09-17 11:44 - 2018-09-17 12:24 - 00000000 ____D C:\Users\froc47\Desktop\mbar
2018-09-17 11:44 - 2018-09-17 12:24 - 00000000 ____D C:\ProgramData\Malwarebytes' Anti-Malware (portable)
2018-09-17 11:44 - 2018-09-17 11:44 - 00222648 _____ (Malwarebytes) C:\Windows\system32\Drivers\263573B6.sys
2018-09-17 11:44 - 2018-09-17 11:44 - 00166848 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbamchameleon.sys
2018-09-17 11:42 - 2018-09-17 11:43 - 00229172 _____ C:\TDSSKiller.3.1.0.17_17.09.2018_11.42.09_log.txt
2018-09-15 16:40 - 2018-09-15 16:40 - 00139328 _____ C:\Windows\Minidump\Mini091518-02.dmp
2018-09-15 16:18 - 2018-09-15 16:18 - 00139328 _____ C:\Windows\Minidump\Mini091518-01.dmp
2018-09-13 11:23 - 2018-09-13 11:23 - 00000878 _____ C:\Users\froc47\Desktop\SM-G390F_UM_Open_Nougat_Ger_Rev.1.1_170328.pdf - Verknüpfung.lnk
2018-09-12 08:08 - 2018-09-12 08:08 - 00000000 ____D C:\Program Files\PlotSoft
2018-09-10 14:39 - 2018-09-10 14:39 - 00161824 _____ C:\Windows\Minidump\Mini091018-01.dmp
2018-09-09 23:30 - 2018-09-09 23:30 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LightScribe Direct Disc Labeling
2018-09-09 23:30 - 2018-09-09 23:30 - 00000000 ____D C:\Program Files\LightScribe Template Labeler
2018-09-09 23:28 - 2018-09-09 23:28 - 00000538 _____ C:\Users\froc47\Desktop\LightScribeTemplate1.18.5.1.exe - Verknüpfung.lnk
==================== Ein Monat: Geänderte Dateien und Ordner ========
(Wenn ein Eintrag in die Fixlist aufgenommen wird, wird die Datei/der Ordner verschoben.)
2018-10-08 12:28 - 2014-05-21 23:04 - 00000000 ____D C:\Tmp
2018-10-08 12:27 - 2017-10-06 09:33 - 00000000 ____D C:\FRST
2018-10-08 12:27 - 2016-11-20 13:51 - 00000000 ____D C:\Users\froc47\AppData\LocalLow\Mozilla
2018-10-08 12:22 - 2013-09-05 16:44 - 00000000 ____D C:\Users\froc47\AppData\Roaming\EFSoftware
2018-10-08 11:39 - 2013-09-08 09:50 - 00000584 _____ C:\Users\froc47\Documents\PTBSync-AutoExport-Froc47.ini
2018-10-08 11:19 - 2013-09-05 13:31 - 00000000 ____D C:\Temp
2018-10-08 10:37 - 2006-11-02 14:47 - 00004928 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0
2018-10-08 10:37 - 2006-11-02 14:47 - 00004928 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0
2018-10-08 09:18 - 2013-09-13 17:26 - 00000921 _____ C:\Windows\Brpfx04a.ini
2018-10-08 08:07 - 2013-09-05 21:57 - 12588016 _____ C:\Windows\system32\perfh007.dat
2018-10-08 08:07 - 2013-09-05 21:57 - 04006516 _____ C:\Windows\system32\perfc007.dat
2018-10-08 08:07 - 2006-11-02 12:33 - 00007406 _____ C:\Windows\system32\PerfStringBackup.INI
2018-10-08 06:41 - 2006-11-02 13:18 - 00000000 ____D C:\Windows\registration
2018-10-08 06:40 - 2015-07-29 15:53 - 00000000 ____D C:\Users\froc47\AppData\Roaming\Telegram Desktop
2018-10-08 06:40 - 2015-02-15 00:23 - 00000000 ____D C:\Users\froc47\AppData\Roaming\MyPhoneExplorer
2018-10-08 06:40 - 2006-11-02 13:18 - 00000000 ____D C:\Windows\system32\inetsrv
2018-10-08 06:38 - 2013-09-06 22:30 - 00000000 ____D C:\Program Files\TeamViewer
2018-10-08 06:38 - 2006-11-02 15:01 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2018-10-08 00:48 - 2016-09-16 12:14 - 00000012 _____ C:\Windows\bthservsdp.dat
2018-10-08 00:48 - 2006-11-02 15:01 - 00032554 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2018-10-07 10:23 - 2016-04-21 20:07 - 00000000 ____D C:\Users\froc47\Downloads\Telegram Desktop
2018-10-03 07:45 - 2006-11-02 13:18 - 00000000 ____D C:\Windows\inf
2018-10-01 23:20 - 2017-09-27 09:50 - 00000000 ____D C:\Users\froc47\AppData\Roaming\vlc
2018-09-27 08:06 - 2015-06-06 10:19 - 00000000 ____D C:\Program Files\SoftMaker Office 2016
2018-09-25 15:03 - 2013-09-10 16:08 - 00000000 ____D C:\Users\froc47\AppData\Roaming\XnView
2018-09-24 15:42 - 2017-07-14 19:01 - 00000000 ____D C:\Program Files\Auction Defender 3
2018-09-24 08:35 - 2015-08-31 09:26 - 00000079 _____ C:\Windows\wininit.ini
2018-09-24 03:27 - 2014-05-30 22:11 - 00000000 ____D C:\Program Files\iTunes
2018-09-22 12:09 - 2016-07-08 13:23 - 320620084 _____ C:\Windows\MEMORY.DMP
2018-09-22 12:09 - 2014-03-06 03:30 - 00000000 ____D C:\Windows\Minidump
2018-09-17 11:45 - 2015-08-27 23:45 - 00000000 ____D C:\ProgramData\Malwarebytes
2018-09-15 16:36 - 2015-11-22 19:58 - 00842240 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe
2018-09-15 16:36 - 2015-11-22 19:58 - 00175104 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl
2018-09-15 16:36 - 2013-09-07 10:52 - 00000000 ____D C:\Windows\system32\Macromed
2018-09-14 16:57 - 2017-02-23 02:04 - 00000000 ____D C:\ProgramData\Temp
2018-09-14 16:23 - 2017-09-03 18:23 - 00000000 ____D C:\AdwCleaner
2018-09-13 09:18 - 2015-08-27 23:45 - 00000000 ____D C:\Program Files\Malwarebytes Anti-Malware
2018-09-12 22:46 - 2013-09-13 20:54 - 00000000 ____D C:\Users\froc47\.mediathek3
2018-09-11 17:02 - 2014-05-31 10:01 - 00135376 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2018-09-11 07:01 - 2017-09-25 22:10 - 00000000 ____D C:\Program Files\CCleaner
2018-09-09 23:05 - 2014-12-15 12:13 - 00000000 ___RD C:\Users\froc47\Desktop\multimedia
==================== Dateien im Wurzelverzeichnis einiger Verzeichnisse =======
2016-09-15 23:15 - 2005-12-09 04:52 - 0000060 ____R () C:\Program Files\BRINST.INI
2001-09-05 22:00 - 2001-09-05 22:00 - 1700352 _____ (Microsoft Corporation) C:\Program Files\gdiplus.dll
2014-06-02 01:35 - 2015-02-15 00:48 - 0001001 _____ () C:\Users\froc47\AppData\Roaming\Rim.Desktop.Exception.log
2014-06-02 01:34 - 2016-08-09 02:57 - 0002009 _____ () C:\Users\froc47\AppData\Roaming\Rim.Desktop.HttpServerSetup.log
2014-06-02 01:35 - 2015-02-15 00:48 - 0001001 _____ () C:\Users\froc47\AppData\Roaming\Rim.DesktopHelper.Exception.log
2014-06-03 13:00 - 2015-02-15 00:48 - 0000616 _____ () C:\Users\froc47\AppData\Roaming\Rim.Transcoder.Exception.log
2016-01-16 23:18 - 2015-12-08 16:13 - 15568896 _____ () C:\Users\froc47\AppData\Roaming\Sandra.mdb
2014-03-10 21:19 - 2014-03-10 21:19 - 0000045 _____ () C:\Users\froc47\AppData\Roaming\WB.CFG
2013-09-05 12:10 - 2018-10-02 06:49 - 0008132 _____ () C:\Users\froc47\AppData\Local\d3d9caps.dat
2014-01-27 10:48 - 2017-01-13 16:26 - 0009728 _____ () C:\Users\froc47\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2013-10-03 14:14 - 2013-10-03 14:14 - 0000094 _____ () C:\Users\froc47\AppData\Local\fusioncache.dat
2014-04-07 14:50 - 2014-04-07 14:50 - 0000036 _____ () C:\Users\froc47\AppData\Local\housecall.guid.cache
2017-05-28 14:50 - 2017-05-28 14:50 - 0004096 ____H () C:\Users\froc47\AppData\Local\keyfile3.drm
2018-05-20 12:37 - 2018-05-20 12:37 - 0000218 _____ () C:\Users\froc47\AppData\Local\recently-used.xbel
2016-09-13 08:25 - 2017-02-28 12:06 - 0005252 _____ () C:\Users\froc47\AppData\Local\xecutor.xpr
2016-09-13 08:25 - 2017-02-28 12:06 - 0005252 _____ () C:\Users\froc47\AppData\Local\xecutor._xp
2014-12-24 01:12 - 2014-12-24 01:12 - 0000252 _____ () C:\ProgramData\FastPics.log
==================== Bamital & volsnap =================
(Es ist kein automatischer Fix für Dateien vorhanden, die an der Verifikation gescheitert sind.)
C:\Windows\explorer.exe => Datei ist digital signiert
C:\Windows\system32\winlogon.exe => Datei ist digital signiert
C:\Windows\system32\wininit.exe => Datei ist digital signiert
C:\Windows\system32\svchost.exe => Datei ist digital signiert
C:\Windows\system32\services.exe => Datei ist digital signiert
C:\Windows\system32\User32.dll => Datei ist digital signiert
C:\Windows\system32\userinit.exe => Datei ist digital signiert
C:\Windows\system32\rpcss.dll => Datei ist digital signiert
C:\Windows\system32\dnsapi.dll => Datei ist digital signiert
C:\Windows\system32\Drivers\volsnap.sys => Datei ist digital signiert
LastRegBack: 2018-10-08 06:47
==================== Ende vom FRST.txt ============================ |