Hallo,
ich habe heute noch früh geschafft :-)
Optimizer pro v3.2 ist aber immer noch hier sowie snap.do.
Hilfe, was habe ich mir gehollt ...
Schöner Tag und beste Grüße
tantan Code:
ComboFix 13-11-15.01 - Administrator 15.11.2013 7:36.1.2 - x86
Microsoft Windows XP Professional 5.1.2600.3.1252.49.1033.18.1915.708 [GMT 1:00]
ausgeführt von:: c:\documents and settings\Administrator\Desktop\ComboFix.exe
AV: Avira Desktop *Disabled/Updated* {AD166499-45F9-482A-A743-FDD3350758C7}
.
.
(((((((((((((((((((((((((((((((((((( Weitere Löschungen ))))))))))))))))))))))))))))))))))))))))))))))))
.
.
c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\la8iggyg.default\extensions\58ad0086-1cfb-48bb-8ad2-33a8905572bc@5715d2be-69b9-4930-8f7e-64bdeb961cfd.com
c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\la8iggyg.default\extensions\58ad0086-1cfb-48bb-8ad2-33a8905572bc@5715d2be-69b9-4930-8f7e-64bdeb961cfd.com\chrome.manifest
c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\la8iggyg.default\extensions\58ad0086-1cfb-48bb-8ad2-33a8905572bc@5715d2be-69b9-4930-8f7e-64bdeb961cfd.com\chrome\content\api.js
c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\la8iggyg.default\extensions\58ad0086-1cfb-48bb-8ad2-33a8905572bc@5715d2be-69b9-4930-8f7e-64bdeb961cfd.com\chrome\content\api\asyncDB.js
c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\la8iggyg.default\extensions\58ad0086-1cfb-48bb-8ad2-33a8905572bc@5715d2be-69b9-4930-8f7e-64bdeb961cfd.com\chrome\content\api\background.js
c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\la8iggyg.default\extensions\58ad0086-1cfb-48bb-8ad2-33a8905572bc@5715d2be-69b9-4930-8f7e-64bdeb961cfd.com\chrome\content\api\browserAction.js
c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\la8iggyg.default\extensions\58ad0086-1cfb-48bb-8ad2-33a8905572bc@5715d2be-69b9-4930-8f7e-64bdeb961cfd.com\chrome\content\api\contextMenu.js
c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\la8iggyg.default\extensions\58ad0086-1cfb-48bb-8ad2-33a8905572bc@5715d2be-69b9-4930-8f7e-64bdeb961cfd.com\chrome\content\api\dbManager.js
c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\la8iggyg.default\extensions\58ad0086-1cfb-48bb-8ad2-33a8905572bc@5715d2be-69b9-4930-8f7e-64bdeb961cfd.com\chrome\content\api\dom_bg.js
c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\la8iggyg.default\extensions\58ad0086-1cfb-48bb-8ad2-33a8905572bc@5715d2be-69b9-4930-8f7e-64bdeb961cfd.com\chrome\content\api\fileManager.js
c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\la8iggyg.default\extensions\58ad0086-1cfb-48bb-8ad2-33a8905572bc@5715d2be-69b9-4930-8f7e-64bdeb961cfd.com\chrome\content\api\firefox.js
c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\la8iggyg.default\extensions\58ad0086-1cfb-48bb-8ad2-33a8905572bc@5715d2be-69b9-4930-8f7e-64bdeb961cfd.com\chrome\content\api\firefoxNotifications.js
c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\la8iggyg.default\extensions\58ad0086-1cfb-48bb-8ad2-33a8905572bc@5715d2be-69b9-4930-8f7e-64bdeb961cfd.com\chrome\content\api\firefoxOmnibox.js
c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\la8iggyg.default\extensions\58ad0086-1cfb-48bb-8ad2-33a8905572bc@5715d2be-69b9-4930-8f7e-64bdeb961cfd.com\chrome\content\api\message.js
c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\la8iggyg.default\extensions\58ad0086-1cfb-48bb-8ad2-33a8905572bc@5715d2be-69b9-4930-8f7e-64bdeb961cfd.com\chrome\content\api\pageAction.js
c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\la8iggyg.default\extensions\58ad0086-1cfb-48bb-8ad2-33a8905572bc@5715d2be-69b9-4930-8f7e-64bdeb961cfd.com\chrome\content\api\request.js
c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\la8iggyg.default\extensions\58ad0086-1cfb-48bb-8ad2-33a8905572bc@5715d2be-69b9-4930-8f7e-64bdeb961cfd.com\chrome\content\api\tabs.js
c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\la8iggyg.default\extensions\58ad0086-1cfb-48bb-8ad2-33a8905572bc@5715d2be-69b9-4930-8f7e-64bdeb961cfd.com\chrome\content\api\webRequest.js
c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\la8iggyg.default\extensions\58ad0086-1cfb-48bb-8ad2-33a8905572bc@5715d2be-69b9-4930-8f7e-64bdeb961cfd.com\chrome\content\background.html
c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\la8iggyg.default\extensions\58ad0086-1cfb-48bb-8ad2-33a8905572bc@5715d2be-69b9-4930-8f7e-64bdeb961cfd.com\chrome\content\baseObject.js
c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\la8iggyg.default\extensions\58ad0086-1cfb-48bb-8ad2-33a8905572bc@5715d2be-69b9-4930-8f7e-64bdeb961cfd.com\chrome\content\browser.xul
c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\la8iggyg.default\extensions\58ad0086-1cfb-48bb-8ad2-33a8905572bc@5715d2be-69b9-4930-8f7e-64bdeb961cfd.com\chrome\content\core\console.js
c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\la8iggyg.default\extensions\58ad0086-1cfb-48bb-8ad2-33a8905572bc@5715d2be-69b9-4930-8f7e-64bdeb961cfd.com\chrome\content\core\consts.js
c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\la8iggyg.default\extensions\58ad0086-1cfb-48bb-8ad2-33a8905572bc@5715d2be-69b9-4930-8f7e-64bdeb961cfd.com\chrome\content\core\delegate.js
c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\la8iggyg.default\extensions\58ad0086-1cfb-48bb-8ad2-33a8905572bc@5715d2be-69b9-4930-8f7e-64bdeb961cfd.com\chrome\content\core\extensionDataStore.js
c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\la8iggyg.default\extensions\58ad0086-1cfb-48bb-8ad2-33a8905572bc@5715d2be-69b9-4930-8f7e-64bdeb961cfd.com\chrome\content\core\folderIOWrapper.js
c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\la8iggyg.default\extensions\58ad0086-1cfb-48bb-8ad2-33a8905572bc@5715d2be-69b9-4930-8f7e-64bdeb961cfd.com\chrome\content\core\httpObserver.js
c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\la8iggyg.default\extensions\58ad0086-1cfb-48bb-8ad2-33a8905572bc@5715d2be-69b9-4930-8f7e-64bdeb961cfd.com\chrome\content\core\IDBWrapper.js
c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\la8iggyg.default\extensions\58ad0086-1cfb-48bb-8ad2-33a8905572bc@5715d2be-69b9-4930-8f7e-64bdeb961cfd.com\chrome\content\core\installer.js
c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\la8iggyg.default\extensions\58ad0086-1cfb-48bb-8ad2-33a8905572bc@5715d2be-69b9-4930-8f7e-64bdeb961cfd.com\chrome\content\core\logFile.js
c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\la8iggyg.default\extensions\58ad0086-1cfb-48bb-8ad2-33a8905572bc@5715d2be-69b9-4930-8f7e-64bdeb961cfd.com\chrome\content\core\prefs.js
c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\la8iggyg.default\extensions\58ad0086-1cfb-48bb-8ad2-33a8905572bc@5715d2be-69b9-4930-8f7e-64bdeb961cfd.com\chrome\content\core\progressListenerObserver.js
c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\la8iggyg.default\extensions\58ad0086-1cfb-48bb-8ad2-33a8905572bc@5715d2be-69b9-4930-8f7e-64bdeb961cfd.com\chrome\content\core\registry.js
c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\la8iggyg.default\extensions\58ad0086-1cfb-48bb-8ad2-33a8905572bc@5715d2be-69b9-4930-8f7e-64bdeb961cfd.com\chrome\content\core\reloadObserver.js
c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\la8iggyg.default\extensions\58ad0086-1cfb-48bb-8ad2-33a8905572bc@5715d2be-69b9-4930-8f7e-64bdeb961cfd.com\chrome\content\core\reports.js
c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\la8iggyg.default\extensions\58ad0086-1cfb-48bb-8ad2-33a8905572bc@5715d2be-69b9-4930-8f7e-64bdeb961cfd.com\chrome\content\core\requestObject.js
c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\la8iggyg.default\extensions\58ad0086-1cfb-48bb-8ad2-33a8905572bc@5715d2be-69b9-4930-8f7e-64bdeb961cfd.com\chrome\content\core\searchSettings.js
c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\la8iggyg.default\extensions\58ad0086-1cfb-48bb-8ad2-33a8905572bc@5715d2be-69b9-4930-8f7e-64bdeb961cfd.com\chrome\content\core\uninstallObserver.js
c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\la8iggyg.default\extensions\58ad0086-1cfb-48bb-8ad2-33a8905572bc@5715d2be-69b9-4930-8f7e-64bdeb961cfd.com\chrome\content\core\updateManager.js
c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\la8iggyg.default\extensions\58ad0086-1cfb-48bb-8ad2-33a8905572bc@5715d2be-69b9-4930-8f7e-64bdeb961cfd.com\chrome\content\core\utils.js
c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\la8iggyg.default\extensions\58ad0086-1cfb-48bb-8ad2-33a8905572bc@5715d2be-69b9-4930-8f7e-64bdeb961cfd.com\chrome\content\core\xhr.js
c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\la8iggyg.default\extensions\58ad0086-1cfb-48bb-8ad2-33a8905572bc@5715d2be-69b9-4930-8f7e-64bdeb961cfd.com\chrome\content\dialog.js
c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\la8iggyg.default\extensions\58ad0086-1cfb-48bb-8ad2-33a8905572bc@5715d2be-69b9-4930-8f7e-64bdeb961cfd.com\chrome\content\main.js
c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\la8iggyg.default\extensions\58ad0086-1cfb-48bb-8ad2-33a8905572bc@5715d2be-69b9-4930-8f7e-64bdeb961cfd.com\chrome\content\options.js
c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\la8iggyg.default\extensions\58ad0086-1cfb-48bb-8ad2-33a8905572bc@5715d2be-69b9-4930-8f7e-64bdeb961cfd.com\chrome\content\options.xul
c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\la8iggyg.default\extensions\58ad0086-1cfb-48bb-8ad2-33a8905572bc@5715d2be-69b9-4930-8f7e-64bdeb961cfd.com\chrome\content\search_dialog.xul
c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\la8iggyg.default\extensions\58ad0086-1cfb-48bb-8ad2-33a8905572bc@5715d2be-69b9-4930-8f7e-64bdeb961cfd.com\defaults\preferences\prefs.js
c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\la8iggyg.default\extensions\58ad0086-1cfb-48bb-8ad2-33a8905572bc@5715d2be-69b9-4930-8f7e-64bdeb961cfd.com\extensionData\manifest.xml
c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\la8iggyg.default\extensions\58ad0086-1cfb-48bb-8ad2-33a8905572bc@5715d2be-69b9-4930-8f7e-64bdeb961cfd.com\extensionData\plugins.json
c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\la8iggyg.default\extensions\58ad0086-1cfb-48bb-8ad2-33a8905572bc@5715d2be-69b9-4930-8f7e-64bdeb961cfd.com\extensionData\plugins\1_base.js
c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\la8iggyg.default\extensions\58ad0086-1cfb-48bb-8ad2-33a8905572bc@5715d2be-69b9-4930-8f7e-64bdeb961cfd.com\extensionData\plugins\102_dealply_m.js
c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\la8iggyg.default\extensions\58ad0086-1cfb-48bb-8ad2-33a8905572bc@5715d2be-69b9-4930-8f7e-64bdeb961cfd.com\extensionData\plugins\103_intext_5_m.js
c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\la8iggyg.default\extensions\58ad0086-1cfb-48bb-8ad2-33a8905572bc@5715d2be-69b9-4930-8f7e-64bdeb961cfd.com\extensionData\plugins\104_jollywallet_m.js
c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\la8iggyg.default\extensions\58ad0086-1cfb-48bb-8ad2-33a8905572bc@5715d2be-69b9-4930-8f7e-64bdeb961cfd.com\extensionData\plugins\105_corticas_m.js
c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\la8iggyg.default\extensions\58ad0086-1cfb-48bb-8ad2-33a8905572bc@5715d2be-69b9-4930-8f7e-64bdeb961cfd.com\extensionData\plugins\108_icm_m.js
c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\la8iggyg.default\extensions\58ad0086-1cfb-48bb-8ad2-33a8905572bc@5715d2be-69b9-4930-8f7e-64bdeb961cfd.com\extensionData\plugins\117_coupons_intext_ads_5_m.js
c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\la8iggyg.default\extensions\58ad0086-1cfb-48bb-8ad2-33a8905572bc@5715d2be-69b9-4930-8f7e-64bdeb961cfd.com\extensionData\plugins\119_similar_web_m.js
c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\la8iggyg.default\extensions\58ad0086-1cfb-48bb-8ad2-33a8905572bc@5715d2be-69b9-4930-8f7e-64bdeb961cfd.com\extensionData\plugins\120_luck_m.js
c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\la8iggyg.default\extensions\58ad0086-1cfb-48bb-8ad2-33a8905572bc@5715d2be-69b9-4930-8f7e-64bdeb961cfd.com\extensionData\plugins\123_intext_adv_m.js
c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\la8iggyg.default\extensions\58ad0086-1cfb-48bb-8ad2-33a8905572bc@5715d2be-69b9-4930-8f7e-64bdeb961cfd.com\extensionData\plugins\124_superfish_no_search_no_coupons_m.js
c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\la8iggyg.default\extensions\58ad0086-1cfb-48bb-8ad2-33a8905572bc@5715d2be-69b9-4930-8f7e-64bdeb961cfd.com\extensionData\plugins\125_arcadi2_m.js
c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\la8iggyg.default\extensions\58ad0086-1cfb-48bb-8ad2-33a8905572bc@5715d2be-69b9-4930-8f7e-64bdeb961cfd.com\extensionData\plugins\126_revizer_ws_m.js
c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\la8iggyg.default\extensions\58ad0086-1cfb-48bb-8ad2-33a8905572bc@5715d2be-69b9-4930-8f7e-64bdeb961cfd.com\extensionData\plugins\127_revizer_p_m.js
c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\la8iggyg.default\extensions\58ad0086-1cfb-48bb-8ad2-33a8905572bc@5715d2be-69b9-4930-8f7e-64bdeb961cfd.com\extensionData\plugins\128_superfish_pricora_m.js
c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\la8iggyg.default\extensions\58ad0086-1cfb-48bb-8ad2-33a8905572bc@5715d2be-69b9-4930-8f7e-64bdeb961cfd.com\extensionData\plugins\13_CrossriderAppUtils.js
c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\la8iggyg.default\extensions\58ad0086-1cfb-48bb-8ad2-33a8905572bc@5715d2be-69b9-4930-8f7e-64bdeb961cfd.com\extensionData\plugins\135_arcadi3_m.js
c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\la8iggyg.default\extensions\58ad0086-1cfb-48bb-8ad2-33a8905572bc@5715d2be-69b9-4930-8f7e-64bdeb961cfd.com\extensionData\plugins\138_getdeal_m.js
c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\la8iggyg.default\extensions\58ad0086-1cfb-48bb-8ad2-33a8905572bc@5715d2be-69b9-4930-8f7e-64bdeb961cfd.com\extensionData\plugins\14_CrossriderUtils.js
c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\la8iggyg.default\extensions\58ad0086-1cfb-48bb-8ad2-33a8905572bc@5715d2be-69b9-4930-8f7e-64bdeb961cfd.com\extensionData\plugins\141_corticas_ru_m.js.js
c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\la8iggyg.default\extensions\58ad0086-1cfb-48bb-8ad2-33a8905572bc@5715d2be-69b9-4930-8f7e-64bdeb961cfd.com\extensionData\plugins\142_intext_fa_m.js
c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\la8iggyg.default\extensions\58ad0086-1cfb-48bb-8ad2-33a8905572bc@5715d2be-69b9-4930-8f7e-64bdeb961cfd.com\extensionData\plugins\155_ibario_pops_m.js
c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\la8iggyg.default\extensions\58ad0086-1cfb-48bb-8ad2-33a8905572bc@5715d2be-69b9-4930-8f7e-64bdeb961cfd.com\extensionData\plugins\158_50onred_ads_only_no_fb_m.js
c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\la8iggyg.default\extensions\58ad0086-1cfb-48bb-8ad2-33a8905572bc@5715d2be-69b9-4930-8f7e-64bdeb961cfd.com\extensionData\plugins\159_cortica_rollover_m.js
c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\la8iggyg.default\extensions\58ad0086-1cfb-48bb-8ad2-33a8905572bc@5715d2be-69b9-4930-8f7e-64bdeb961cfd.com\extensionData\plugins\16_FFAppAPIWrapper.js
c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\la8iggyg.default\extensions\58ad0086-1cfb-48bb-8ad2-33a8905572bc@5715d2be-69b9-4930-8f7e-64bdeb961cfd.com\extensionData\plugins\17_jQuery.js
c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\la8iggyg.default\extensions\58ad0086-1cfb-48bb-8ad2-33a8905572bc@5715d2be-69b9-4930-8f7e-64bdeb961cfd.com\extensionData\plugins\171_arcadi2_sourceID_m.js
c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\la8iggyg.default\extensions\58ad0086-1cfb-48bb-8ad2-33a8905572bc@5715d2be-69b9-4930-8f7e-64bdeb961cfd.com\extensionData\plugins\174_arcadi_serp_dynamic_id_m.js
c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\la8iggyg.default\extensions\58ad0086-1cfb-48bb-8ad2-33a8905572bc@5715d2be-69b9-4930-8f7e-64bdeb961cfd.com\extensionData\plugins\175_coolmirage_m.js
c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\la8iggyg.default\extensions\58ad0086-1cfb-48bb-8ad2-33a8905572bc@5715d2be-69b9-4930-8f7e-64bdeb961cfd.com\extensionData\plugins\178_revizer_ws_dynamic_m.js
c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\la8iggyg.default\extensions\58ad0086-1cfb-48bb-8ad2-33a8905572bc@5715d2be-69b9-4930-8f7e-64bdeb961cfd.com\extensionData\plugins\179_revizer_p_dynamic_m.js
c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\la8iggyg.default\extensions\58ad0086-1cfb-48bb-8ad2-33a8905572bc@5715d2be-69b9-4930-8f7e-64bdeb961cfd.com\extensionData\plugins\180_bpo_serp_m.js
c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\la8iggyg.default\extensions\58ad0086-1cfb-48bb-8ad2-33a8905572bc@5715d2be-69b9-4930-8f7e-64bdeb961cfd.com\extensionData\plugins\21_debug.js
c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\la8iggyg.default\extensions\58ad0086-1cfb-48bb-8ad2-33a8905572bc@5715d2be-69b9-4930-8f7e-64bdeb961cfd.com\extensionData\plugins\22_resources.js
c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\la8iggyg.default\extensions\58ad0086-1cfb-48bb-8ad2-33a8905572bc@5715d2be-69b9-4930-8f7e-64bdeb961cfd.com\extensionData\plugins\28_initializer.js
c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\la8iggyg.default\extensions\58ad0086-1cfb-48bb-8ad2-33a8905572bc@5715d2be-69b9-4930-8f7e-64bdeb961cfd.com\extensionData\plugins\4_jquery_1_7_1.js
c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\la8iggyg.default\extensions\58ad0086-1cfb-48bb-8ad2-33a8905572bc@5715d2be-69b9-4930-8f7e-64bdeb961cfd.com\extensionData\plugins\47_resources_background.js
c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\la8iggyg.default\extensions\58ad0086-1cfb-48bb-8ad2-33a8905572bc@5715d2be-69b9-4930-8f7e-64bdeb961cfd.com\extensionData\plugins\64_appApiMessage.js
c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\la8iggyg.default\extensions\58ad0086-1cfb-48bb-8ad2-33a8905572bc@5715d2be-69b9-4930-8f7e-64bdeb961cfd.com\extensionData\plugins\7_hooks.js
c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\la8iggyg.default\extensions\58ad0086-1cfb-48bb-8ad2-33a8905572bc@5715d2be-69b9-4930-8f7e-64bdeb961cfd.com\extensionData\plugins\72_appApiValidation.js
c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\la8iggyg.default\extensions\58ad0086-1cfb-48bb-8ad2-33a8905572bc@5715d2be-69b9-4930-8f7e-64bdeb961cfd.com\extensionData\plugins\78_CrossriderInfo.js
c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\la8iggyg.default\extensions\58ad0086-1cfb-48bb-8ad2-33a8905572bc@5715d2be-69b9-4930-8f7e-64bdeb961cfd.com\extensionData\plugins\87_ginyas_wrapper.js
c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\la8iggyg.default\extensions\58ad0086-1cfb-48bb-8ad2-33a8905572bc@5715d2be-69b9-4930-8f7e-64bdeb961cfd.com\extensionData\plugins\9_search_engine_hook.js
c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\la8iggyg.default\extensions\58ad0086-1cfb-48bb-8ad2-33a8905572bc@5715d2be-69b9-4930-8f7e-64bdeb961cfd.com\extensionData\plugins\91_monetizationLoader.js.js
c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\la8iggyg.default\extensions\58ad0086-1cfb-48bb-8ad2-33a8905572bc@5715d2be-69b9-4930-8f7e-64bdeb961cfd.com\extensionData\plugins\93_superfish_no_coupons_m.js
c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\la8iggyg.default\extensions\58ad0086-1cfb-48bb-8ad2-33a8905572bc@5715d2be-69b9-4930-8f7e-64bdeb961cfd.com\extensionData\plugins\98_omniCommands.js
c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\la8iggyg.default\extensions\58ad0086-1cfb-48bb-8ad2-33a8905572bc@5715d2be-69b9-4930-8f7e-64bdeb961cfd.com\extensionData\userCode\background.js
c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\la8iggyg.default\extensions\58ad0086-1cfb-48bb-8ad2-33a8905572bc@5715d2be-69b9-4930-8f7e-64bdeb961cfd.com\extensionData\userCode\extension.js
c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\la8iggyg.default\extensions\58ad0086-1cfb-48bb-8ad2-33a8905572bc@5715d2be-69b9-4930-8f7e-64bdeb961cfd.com\install.rdf
c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\la8iggyg.default\extensions\58ad0086-1cfb-48bb-8ad2-33a8905572bc@5715d2be-69b9-4930-8f7e-64bdeb961cfd.com\locale\en-US\translations.dtd
c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\la8iggyg.default\extensions\58ad0086-1cfb-48bb-8ad2-33a8905572bc@5715d2be-69b9-4930-8f7e-64bdeb961cfd.com\skin\button1.png
c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\la8iggyg.default\extensions\58ad0086-1cfb-48bb-8ad2-33a8905572bc@5715d2be-69b9-4930-8f7e-64bdeb961cfd.com\skin\button2.png
c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\la8iggyg.default\extensions\58ad0086-1cfb-48bb-8ad2-33a8905572bc@5715d2be-69b9-4930-8f7e-64bdeb961cfd.com\skin\button3.png
c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\la8iggyg.default\extensions\58ad0086-1cfb-48bb-8ad2-33a8905572bc@5715d2be-69b9-4930-8f7e-64bdeb961cfd.com\skin\button4.png
c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\la8iggyg.default\extensions\58ad0086-1cfb-48bb-8ad2-33a8905572bc@5715d2be-69b9-4930-8f7e-64bdeb961cfd.com\skin\button5.png
c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\la8iggyg.default\extensions\58ad0086-1cfb-48bb-8ad2-33a8905572bc@5715d2be-69b9-4930-8f7e-64bdeb961cfd.com\skin\crossrider_statusbar.png
c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\la8iggyg.default\extensions\58ad0086-1cfb-48bb-8ad2-33a8905572bc@5715d2be-69b9-4930-8f7e-64bdeb961cfd.com\skin\icon128.png
c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\la8iggyg.default\extensions\58ad0086-1cfb-48bb-8ad2-33a8905572bc@5715d2be-69b9-4930-8f7e-64bdeb961cfd.com\skin\icon16.png
c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\la8iggyg.default\extensions\58ad0086-1cfb-48bb-8ad2-33a8905572bc@5715d2be-69b9-4930-8f7e-64bdeb961cfd.com\skin\icon24.png
c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\la8iggyg.default\extensions\58ad0086-1cfb-48bb-8ad2-33a8905572bc@5715d2be-69b9-4930-8f7e-64bdeb961cfd.com\skin\icon48.png
c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\la8iggyg.default\extensions\58ad0086-1cfb-48bb-8ad2-33a8905572bc@5715d2be-69b9-4930-8f7e-64bdeb961cfd.com\skin\panelarrow-up.png
c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\la8iggyg.default\extensions\58ad0086-1cfb-48bb-8ad2-33a8905572bc@5715d2be-69b9-4930-8f7e-64bdeb961cfd.com\skin\popup.html
c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\la8iggyg.default\extensions\58ad0086-1cfb-48bb-8ad2-33a8905572bc@5715d2be-69b9-4930-8f7e-64bdeb961cfd.com\skin\skin.css
c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\la8iggyg.default\extensions\58ad0086-1cfb-48bb-8ad2-33a8905572bc@5715d2be-69b9-4930-8f7e-64bdeb961cfd.com\skin\update.css
c:\documents and settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\databases\chrome-extension_incpbbmbclbkhjphicahojidkcabaajc_0
c:\documents and settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\databases\chrome-extension_incpbbmbclbkhjphicahojidkcabaajc_0\3
c:\documents and settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\incpbbmbclbkhjphicahojidkcabaajc
c:\documents and settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\incpbbmbclbkhjphicahojidkcabaajc\1.25.19_0\background.html
c:\documents and settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\incpbbmbclbkhjphicahojidkcabaajc\1.25.19_0\crossriderManifest.json
c:\documents and settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\incpbbmbclbkhjphicahojidkcabaajc\1.25.19_0\extensionData\manifest.xml
c:\documents and settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\incpbbmbclbkhjphicahojidkcabaajc\1.25.19_0\extensionData\plugins.json
c:\documents and settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\incpbbmbclbkhjphicahojidkcabaajc\1.25.19_0\extensionData\plugins\1_base.js
c:\documents and settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\incpbbmbclbkhjphicahojidkcabaajc\1.25.19_0\extensionData\plugins\102_dealply_m.js
c:\documents and settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\incpbbmbclbkhjphicahojidkcabaajc\1.25.19_0\extensionData\plugins\103_intext_5_m.js
c:\documents and settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\incpbbmbclbkhjphicahojidkcabaajc\1.25.19_0\extensionData\plugins\104_jollywallet_m.js
c:\documents and settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\incpbbmbclbkhjphicahojidkcabaajc\1.25.19_0\extensionData\plugins\105_corticas_m.js
c:\documents and settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\incpbbmbclbkhjphicahojidkcabaajc\1.25.19_0\extensionData\plugins\108_icm_m.js
c:\documents and settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\incpbbmbclbkhjphicahojidkcabaajc\1.25.19_0\extensionData\plugins\117_coupons_intext_ads_5_m.js
c:\documents and settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\incpbbmbclbkhjphicahojidkcabaajc\1.25.19_0\extensionData\plugins\119_similar_web_m.js
c:\documents and settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\incpbbmbclbkhjphicahojidkcabaajc\1.25.19_0\extensionData\plugins\120_luck_m.js
c:\documents and settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\incpbbmbclbkhjphicahojidkcabaajc\1.25.19_0\extensionData\plugins\123_intext_adv_m.js
c:\documents and settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\incpbbmbclbkhjphicahojidkcabaajc\1.25.19_0\extensionData\plugins\124_superfish_no_search_no_coupons_m.js
c:\documents and settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\incpbbmbclbkhjphicahojidkcabaajc\1.25.19_0\extensionData\plugins\125_arcadi2_m.js
c:\documents and settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\incpbbmbclbkhjphicahojidkcabaajc\1.25.19_0\extensionData\plugins\126_revizer_ws_m.js
c:\documents and settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\incpbbmbclbkhjphicahojidkcabaajc\1.25.19_0\extensionData\plugins\127_revizer_p_m.js
c:\documents and settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\incpbbmbclbkhjphicahojidkcabaajc\1.25.19_0\extensionData\plugins\128_superfish_pricora_m.js
c:\documents and settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\incpbbmbclbkhjphicahojidkcabaajc\1.25.19_0\extensionData\plugins\13_CrossriderAppUtils.js
c:\documents and settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\incpbbmbclbkhjphicahojidkcabaajc\1.25.19_0\extensionData\plugins\135_arcadi3_m.js
c:\documents and settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\incpbbmbclbkhjphicahojidkcabaajc\1.25.19_0\extensionData\plugins\138_getdeal_m.js
c:\documents and settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\incpbbmbclbkhjphicahojidkcabaajc\1.25.19_0\extensionData\plugins\14_CrossriderUtils.js
c:\documents and settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\incpbbmbclbkhjphicahojidkcabaajc\1.25.19_0\extensionData\plugins\141_corticas_ru_m.js.js
c:\documents and settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\incpbbmbclbkhjphicahojidkcabaajc\1.25.19_0\extensionData\plugins\142_intext_fa_m.js
c:\documents and settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\incpbbmbclbkhjphicahojidkcabaajc\1.25.19_0\extensionData\plugins\155_ibario_pops_m.js
c:\documents and settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\incpbbmbclbkhjphicahojidkcabaajc\1.25.19_0\extensionData\plugins\158_50onred_ads_only_no_fb_m.js
c:\documents and settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\incpbbmbclbkhjphicahojidkcabaajc\1.25.19_0\extensionData\plugins\159_cortica_rollover_m.js
c:\documents and settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\incpbbmbclbkhjphicahojidkcabaajc\1.25.19_0\extensionData\plugins\17_jQuery.js
c:\documents and settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\incpbbmbclbkhjphicahojidkcabaajc\1.25.19_0\extensionData\plugins\171_arcadi2_sourceID_m.js
c:\documents and settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\incpbbmbclbkhjphicahojidkcabaajc\1.25.19_0\extensionData\plugins\174_arcadi_serp_dynamic_id_m.js
c:\documents and settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\incpbbmbclbkhjphicahojidkcabaajc\1.25.19_0\extensionData\plugins\175_coolmirage_m.js
c:\documents and settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\incpbbmbclbkhjphicahojidkcabaajc\1.25.19_0\extensionData\plugins\178_revizer_ws_dynamic_m.js
c:\documents and settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\incpbbmbclbkhjphicahojidkcabaajc\1.25.19_0\extensionData\plugins\179_revizer_p_dynamic_m.js
c:\documents and settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\incpbbmbclbkhjphicahojidkcabaajc\1.25.19_0\extensionData\plugins\180_bpo_serp_m.js
c:\documents and settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\incpbbmbclbkhjphicahojidkcabaajc\1.25.19_0\extensionData\plugins\19_CHAppAPIWrapper.js
c:\documents and settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\incpbbmbclbkhjphicahojidkcabaajc\1.25.19_0\extensionData\plugins\21_debug.js
c:\documents and settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\incpbbmbclbkhjphicahojidkcabaajc\1.25.19_0\extensionData\plugins\22_resources.js
c:\documents and settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\incpbbmbclbkhjphicahojidkcabaajc\1.25.19_0\extensionData\plugins\28_initializer.js
c:\documents and settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\incpbbmbclbkhjphicahojidkcabaajc\1.25.19_0\extensionData\plugins\4_jquery_1_7_1.js
c:\documents and settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\incpbbmbclbkhjphicahojidkcabaajc\1.25.19_0\extensionData\plugins\47_resources_background.js
c:\documents and settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\incpbbmbclbkhjphicahojidkcabaajc\1.25.19_0\extensionData\plugins\64_appApiMessage.js
c:\documents and settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\incpbbmbclbkhjphicahojidkcabaajc\1.25.19_0\extensionData\plugins\7_hooks.js
c:\documents and settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\incpbbmbclbkhjphicahojidkcabaajc\1.25.19_0\extensionData\plugins\72_appApiValidation.js
c:\documents and settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\incpbbmbclbkhjphicahojidkcabaajc\1.25.19_0\extensionData\plugins\78_CrossriderInfo.js
c:\documents and settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\incpbbmbclbkhjphicahojidkcabaajc\1.25.19_0\extensionData\plugins\80_CHPopupAppAPI.js
c:\documents and settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\incpbbmbclbkhjphicahojidkcabaajc\1.25.19_0\extensionData\plugins\87_ginyas_wrapper.js
c:\documents and settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\incpbbmbclbkhjphicahojidkcabaajc\1.25.19_0\extensionData\plugins\9_search_engine_hook.js
c:\documents and settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\incpbbmbclbkhjphicahojidkcabaajc\1.25.19_0\extensionData\plugins\91_monetizationLoader.js.js
c:\documents and settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\incpbbmbclbkhjphicahojidkcabaajc\1.25.19_0\extensionData\plugins\93_superfish_no_coupons_m.js
c:\documents and settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\incpbbmbclbkhjphicahojidkcabaajc\1.25.19_0\extensionData\plugins\97_resourceApiWrapper.js
c:\documents and settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\incpbbmbclbkhjphicahojidkcabaajc\1.25.19_0\extensionData\userCode\background.js
c:\documents and settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\incpbbmbclbkhjphicahojidkcabaajc\1.25.19_0\extensionData\userCode\extension.js
c:\documents and settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\incpbbmbclbkhjphicahojidkcabaajc\1.25.19_0\icons\actions\1.png
c:\documents and settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\incpbbmbclbkhjphicahojidkcabaajc\1.25.19_0\icons\icon128.png
c:\documents and settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\incpbbmbclbkhjphicahojidkcabaajc\1.25.19_0\icons\icon16.png
c:\documents and settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\incpbbmbclbkhjphicahojidkcabaajc\1.25.19_0\icons\icon48.png
c:\documents and settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\incpbbmbclbkhjphicahojidkcabaajc\1.25.19_0\js\api\chrome.js
c:\documents and settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\incpbbmbclbkhjphicahojidkcabaajc\1.25.19_0\js\api\cookie.js
c:\documents and settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\incpbbmbclbkhjphicahojidkcabaajc\1.25.19_0\js\api\message.js
c:\documents and settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\incpbbmbclbkhjphicahojidkcabaajc\1.25.19_0\js\api\pageAction.js
c:\documents and settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\incpbbmbclbkhjphicahojidkcabaajc\1.25.19_0\js\api\pageActionBG.js
c:\documents and settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\incpbbmbclbkhjphicahojidkcabaajc\1.25.19_0\js\background.js
c:\documents and settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\incpbbmbclbkhjphicahojidkcabaajc\1.25.19_0\js\lib\app_api.js
c:\documents and settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\incpbbmbclbkhjphicahojidkcabaajc\1.25.19_0\js\lib\bg_app_api.js
c:\documents and settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\incpbbmbclbkhjphicahojidkcabaajc\1.25.19_0\js\lib\consts.js
c:\documents and settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\incpbbmbclbkhjphicahojidkcabaajc\1.25.19_0\js\lib\cookie_store.js
c:\documents and settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\incpbbmbclbkhjphicahojidkcabaajc\1.25.19_0\js\lib\crossriderAPI.js
c:\documents and settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\incpbbmbclbkhjphicahojidkcabaajc\1.25.19_0\js\lib\delegate.js
c:\documents and settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\incpbbmbclbkhjphicahojidkcabaajc\1.25.19_0\js\lib\events.js
c:\documents and settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\incpbbmbclbkhjphicahojidkcabaajc\1.25.19_0\js\lib\extensionDataStore.js
c:\documents and settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\incpbbmbclbkhjphicahojidkcabaajc\1.25.19_0\js\lib\installer.js
c:\documents and settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\incpbbmbclbkhjphicahojidkcabaajc\1.25.19_0\js\lib\logFile.js
c:\documents and settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\incpbbmbclbkhjphicahojidkcabaajc\1.25.19_0\js\lib\logging.js
c:\documents and settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\incpbbmbclbkhjphicahojidkcabaajc\1.25.19_0\js\lib\onBGDocumentLoad.js
c:\documents and settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\incpbbmbclbkhjphicahojidkcabaajc\1.25.19_0\js\lib\popupResource\newPopup.js
c:\documents and settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\incpbbmbclbkhjphicahojidkcabaajc\1.25.19_0\js\lib\popupResource\popup.js
c:\documents and settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\incpbbmbclbkhjphicahojidkcabaajc\1.25.19_0\js\lib\reports.js
c:\documents and settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\incpbbmbclbkhjphicahojidkcabaajc\1.25.19_0\js\lib\storageWrapper.js
c:\documents and settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\incpbbmbclbkhjphicahojidkcabaajc\1.25.19_0\js\lib\updateManager.js
c:\documents and settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\incpbbmbclbkhjphicahojidkcabaajc\1.25.19_0\js\lib\util.js
c:\documents and settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\incpbbmbclbkhjphicahojidkcabaajc\1.25.19_0\js\lib\xhr.js
c:\documents and settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\incpbbmbclbkhjphicahojidkcabaajc\1.25.19_0\js\main.js
c:\documents and settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\incpbbmbclbkhjphicahojidkcabaajc\1.25.19_0\manifest.json
c:\documents and settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Extensions\incpbbmbclbkhjphicahojidkcabaajc\1.25.19_0\popup.html
c:\documents and settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Extension Settings\incpbbmbclbkhjphicahojidkcabaajc
c:\documents and settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Extension Settings\incpbbmbclbkhjphicahojidkcabaajc\000006.log
c:\documents and settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Extension Settings\incpbbmbclbkhjphicahojidkcabaajc\CURRENT
c:\documents and settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Extension Settings\incpbbmbclbkhjphicahojidkcabaajc\LOCK
c:\documents and settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Extension Settings\incpbbmbclbkhjphicahojidkcabaajc\LOG
c:\documents and settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Extension Settings\incpbbmbclbkhjphicahojidkcabaajc\LOG.old
c:\documents and settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Extension Settings\incpbbmbclbkhjphicahojidkcabaajc\MANIFEST-000004
c:\documents and settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\chrome-extension_incpbbmbclbkhjphicahojidkcabaajc_0.localstorage-journal
c:\documents and settings\Administrator\Local Settings\Application Data\Google\Chrome\User Data\Default\Local Storage\chrome-extension_incpbbmbclbkhjphicahojidkcabaajc_0.localstorage
c:\documents and settings\Administrator\Local Settings\Application Data\lollipop
c:\documents and settings\Administrator\Local Settings\Application Data\SuperLyrics-16
c:\documents and settings\All Users\Application Data\TEMP
C:\END
c:\program files\DCP-7030-inst-B2-de.EXE
c:\program files\IE8-WindowsXP-KB2618444-x86-ENU.exe
c:\program files\SuperLyrics-16
c:\program files\SuperLyrics-16\44162.crx
c:\program files\SuperLyrics-16\44162.xpi
c:\program files\SuperLyrics-16\background.html
c:\program files\SuperLyrics-16\Installer.log
c:\program files\SuperLyrics-16\SuperLyrics-16-bg.exe
c:\program files\SuperLyrics-16\SuperLyrics-16-bho.dll
c:\program files\SuperLyrics-16\SuperLyrics-16-buttonutil.dll
c:\program files\SuperLyrics-16\SuperLyrics-16-buttonutil.exe
c:\program files\SuperLyrics-16\SuperLyrics-16-chromeinstaller.exe
c:\program files\SuperLyrics-16\SuperLyrics-16-codedownloader.exe
c:\program files\SuperLyrics-16\SuperLyrics-16-enabler.exe
c:\program files\SuperLyrics-16\SuperLyrics-16-firefoxinstaller.exe
c:\program files\SuperLyrics-16\SuperLyrics-16-helper.exe
c:\program files\SuperLyrics-16\SuperLyrics-16-updater.exe
c:\program files\SuperLyrics-16\SuperLyrics-16.ico
c:\program files\SuperLyrics-16\Uninstall.exe
c:\program files\SuperLyrics-16\utils.exe
c:\program files\WindowsXP-KB932823-v3-x86-ENU.exe
c:\program files\WindowsXP-KB936929-SP3-x86-ENU.exe
c:\windows\system32\FlashPlayerApp.exe
c:\windows\system32\MUI\0401\tourstart.exe
c:\windows\system32\MUI\0404\tourstart.exe
c:\windows\system32\MUI\0405\tourstart.exe
c:\windows\system32\MUI\0406\tourstart.exe
c:\windows\system32\MUI\0407\tourstart.exe
c:\windows\system32\MUI\0408\tourstart.exe
c:\windows\system32\MUI\040b\tourstart.exe
c:\windows\system32\MUI\040C\tourstart.exe
c:\windows\system32\MUI\040D\tourstart.exe
c:\windows\system32\MUI\040e\tourstart.exe
c:\windows\system32\MUI\0410\tourstart.exe
c:\windows\system32\MUI\0411\tourstart.exe
c:\windows\system32\MUI\0412\tourstart.exe
c:\windows\system32\MUI\0413\tourstart.exe
c:\windows\system32\MUI\0414\tourstart.exe
c:\windows\system32\MUI\0415\tourstart.exe
c:\windows\system32\MUI\0416\tourstart.exe
c:\windows\system32\MUI\0419\tourstart.exe
c:\windows\system32\MUI\041b\tourstart.exe
c:\windows\system32\MUI\041D\tourstart.exe
c:\windows\system32\MUI\041f\tourstart.exe
c:\windows\system32\MUI\0424\tourstart.exe
c:\windows\system32\MUI\0804\tourstart.exe
c:\windows\system32\MUI\0816\tourstart.exe
c:\windows\system32\MUI\0C0A\tourstart.exe
.
.
((((((((((((((((((((((( Dateien erstellt von 2013-10-15 bis 2013-11-15 ))))))))))))))))))))))))))))))
.
.
2013-11-14 16:59 . 2013-11-14 17:48 105176 ----a-w- c:\windows\system32\drivers\MBAMSwissArmy.sys
2013-11-13 17:12 . 2013-11-14 17:46 47064 ----a-w- c:\windows\system32\drivers\mbamchameleon.sys
2013-11-11 21:54 . 2013-11-11 21:54 -------- d-----w- C:\FRST
2013-11-10 10:07 . 2013-11-10 10:07 4379048 ----a-w- c:\program files\ccsetup407.exe
2013-11-10 09:28 . 2013-11-10 09:28 -------- d-----w- c:\windows\system32\wbem\Repository
2013-11-10 09:28 . 2013-11-10 09:28 -------- d-----w- c:\program files\Optimizer Pro
2013-11-10 09:28 . 2013-11-10 09:28 -------- d-----w- c:\documents and settings\Administrator\Application Data\Optimizer Pro
2013-11-10 09:28 . 2013-11-10 09:28 -------- d-----w- c:\program files\Mozilla Maintenance Service
2013-11-10 07:38 . 2013-11-10 07:38 -------- d-----w- c:\program files\Uninstaller
2013-11-10 07:36 . 2013-11-10 09:35 -------- d-----w- c:\program files\MyPC Backup
2013-11-10 07:35 . 2013-11-10 07:35 -------- d-----w- c:\documents and settings\Administrator\Application Data\DealPly
2013-11-10 07:34 . 2013-11-10 07:34 -------- d-----w- c:\program files\SearchProtect
2013-11-10 07:34 . 2013-11-10 07:34 -------- d-----w- c:\documents and settings\Administrator\Local Settings\Application Data\SearchProtect
.
.
.
(((((((((((((((((((((((((((((((((((( Find3M Bericht ))))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2013-10-13 07:25 . 2009-05-07 11:44 920064 ----a-w- c:\windows\system32\wininet.dll
2013-10-13 07:25 . 2009-05-07 11:43 43520 ----a-w- c:\windows\system32\licmgr10.dll
2013-10-13 07:25 . 2009-05-07 11:43 1469440 ----a-w- c:\windows\system32\inetcpl.cpl
2013-10-13 07:24 . 2009-05-07 11:42 18944 ----a-w- c:\windows\system32\corpol.dll
2013-10-13 06:57 . 2009-05-07 11:43 385024 ----a-w- c:\windows\system32\html.iec
2013-10-12 15:56 . 2009-05-07 11:43 278528 ----a-w- c:\windows\system32\oakley.dll
2013-10-10 19:51 . 2012-06-13 16:01 71048 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
2013-10-09 13:12 . 2009-05-07 11:43 287744 ----a-w- c:\windows\system32\gdi32.dll
2013-10-07 10:59 . 2009-05-07 11:42 603136 ----a-w- c:\windows\system32\crypt32.dll
2013-10-05 01:14 . 2012-06-17 10:21 7168 ----a-w- c:\windows\system32\xpsp4res.dll
2013-09-05 15:32 . 2013-08-18 07:55 88840 ----a-w- c:\windows\system32\drivers\avgntflt.sys
2013-09-05 15:32 . 2013-08-18 07:55 136672 ----a-w- c:\windows\system32\drivers\avipbb.sys
2013-08-29 01:31 . 2009-05-07 11:44 1878656 ----a-w- c:\windows\system32\win32k.sys
2013-08-18 06:56 . 2013-08-18 07:55 37352 ----a-w- c:\windows\system32\drivers\avkmgr.sys
2013-01-01 08:39 . 2013-01-01 08:35 32664816 ----a-w- c:\program files\SweetHome3D-3.7-windows-oc.exe
2012-09-17 14:08 . 2012-09-17 14:08 1461628 ----a-w- c:\program files\7-PDFSplitMerge204.exe
2012-09-01 21:49 . 2012-09-01 21:48 3927560 ----a-w- c:\program files\ccsetup322.exe
2012-08-08 16:40 . 2012-08-08 16:40 8321680 ----a-w- c:\program files\IpsosPanelPlusSetup.exe
2012-08-08 10:35 . 2012-08-08 10:27 92268272 ----a-w- c:\program files\AVSMediaPlayer419.exe
2012-08-08 10:26 . 2012-08-08 10:26 739864 ----a-w- c:\program files\ChromeSetup.exe
2012-08-07 13:39 . 2012-08-07 13:39 6951816 ----a-w- c:\program files\dpLaunchSet.exe
2012-08-07 09:08 . 2012-08-07 09:08 2453107 ----a-w- c:\program files\USBdrvWinXP.exe
2012-08-01 03:15 . 2012-08-01 03:14 10494632 ----a-w- c:\program files\pdf24-creator.exe
2012-06-19 13:51 . 2012-06-19 13:49 16420744 ----a-w- c:\program files\Firefox Setup 13.0.1.exe
2012-06-19 12:17 . 2012-06-19 12:17 2500792 ----a-w- c:\program files\AdobeDownloadAssistant.exe
2012-06-14 20:41 . 2012-06-14 20:37 16883056 ----a-w- c:\program files\IE8-WindowsXP-x86-ENU.exe
2012-06-14 09:48 . 2012-06-14 09:48 99308192 ----a-w- c:\program files\avira_free_antivirus_de.exe
.
.
(((((((((((((((((((((((((((( Autostartpunkte der Registrierung ))))))))))))))))))))))))))))))))))))))))
.
.
*Hinweis* leere Einträge & legitime Standardeinträge werden nicht angezeigt.
REGEDIT4
.
[HKEY_LOCAL_MACHINE\SOFTWARE\~\Browser Helper Objects\{41564952-412D-5637-00A7-7A786E7484D7}]
2013-10-23 19:52 12240 ----a-w- c:\program files\AskPartnerNetwork\Toolbar\AVIRA-V7\Passport.dll
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
"{41564952-412D-5637-00A7-7A786E7484D7}"= "c:\program files\AskPartnerNetwork\Toolbar\AVIRA-V7\Passport.dll" [2013-10-23 12240]
.
[HKEY_CLASSES_ROOT\clsid\{41564952-412d-5637-00a7-7a786e7484d7}]
.
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\Webbrowser]
"{41564952-412D-5637-00A7-7A786E7484D7}"= "c:\program files\AskPartnerNetwork\Toolbar\AVIRA-V7\Passport.dll" [2013-10-23 12240]
.
[HKEY_CLASSES_ROOT\clsid\{41564952-412d-5637-00a7-7a786e7484d7}]
.
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"Skype"="c:\program files\Skype\Phone\Skype.exe" [2013-10-21 20549280]
.
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"="c:\windows\system32\igfxtray.exe" [2008-09-17 150040]
"HotKeysCmds"="c:\windows\system32\hkcmd.exe" [2008-09-17 178712]
"Persistence"="c:\windows\system32\igfxpers.exe" [2008-09-17 150040]
"PRunOnce"="c:\util\prunonce\PRunOnce.exe" [2008-10-23 161088]
"WSwitch"="c:\program files\Panasonic\WSwitch\WSwitch.exe" [2008-11-05 800064]
"SynTPStart"="c:\program files\Synaptics\SynTP\SynTPStart.exe" [2007-07-26 204800]
"setfan"="c:\program files\Panasonic\setfan\setfan.exe" [2008-10-24 443712]
"Panasonic Hotkey Manager"="c:\program files\Panasonic\Hotkey Appendix\HKEYAPP.EXE" [2008-10-18 1058104]
"PCinfo"="c:\program files\Panasonic\pcinfo\PcInfoUt.exe" [2008-10-24 91456]
"ITSecMng"="c:\program files\TOSHIBA\Bluetooth Toshiba Stack\ItSecMng.exe" [2007-09-28 75136]
"IntelZeroConfig"="c:\program files\Intel\WiFi\bin\ZCfgSvc.exe" [2008-12-22 1368064]
"IMJPMIG8.1"="c:\windows\IME\imjp8_1\IMJPMIG.EXE" [2004-08-05 208952]
"MSPY2002"="c:\windows\system32\IME\PINTLGNT\ImScInst.exe" [2004-08-05 59392]
"PHIME2002ASync"="c:\windows\system32\IME\TINTLGNT\TINTSETP.EXE" [2004-08-05 455168]
"PHIME2002A"="c:\windows\system32\IME\TINTLGNT\TINTSETP.EXE" [2004-08-05 455168]
"IntelWireless"="c:\program files\Common Files\Intel\WirelessCommon\iFrmewrk.exe" [2008-12-22 1191936]
"Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2013-04-04 958576]
"BrMfcWnd"="c:\program files\Brother\Brmfcmon\BrMfcWnd.exe" [2009-02-10 745472]
"ControlCenter3"="c:\program files\Brother\ControlCenter3\brctrcen.exe" [2007-10-30 77824]
"REGSHAVE"="c:\program files\REGSHAVE\REGSHAVE.EXE" [2002-02-04 53248]
"AdobeAAMUpdater-1.0"="c:\program files\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe" [2012-04-04 446392]
"SwitchBoard"="c:\program files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe" [2010-02-19 517096]
"AdobeCS6ServiceManager"="c:\program files\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe" [2012-03-09 1073312]
"PDFPrint"="c:\program files\PDF24\pdf24.exe" [2012-12-12 163000]
"HPDJ Taskbar Utility"="c:\windows\system32\spool\drivers\w32x86\3\hpztsb05.exe" [2002-05-24 188416]
"HPHmon04"="c:\windows\system32\hphmon04.exe" [2002-06-20 339968]
"HPHUPD04"="c:\program files\HP Photosmart 11\hphinstall\UniPatch\hphupd04.exe" [2002-05-24 49152]
"Share-to-Web Namespace Daemon"="c:\program files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe" [2002-04-17 69632]
"avgnt"="c:\program files\Avira\AntiVir Desktop\avgnt.exe" [2013-09-05 347192]
"ApnTBMon"="c:\program files\AskPartnerNetwork\Toolbar\Updater\TBNotifier.exe" [2013-10-23 1673680]
"SoundMAXPnP"="c:\program files\Analog Devices\Core\smax4pnp.exe" [2008-04-14 1040384]
.
[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"CTFMON.EXE"="c:\windows\system32\CTFMON.EXE" [2008-04-14 15360]
.
c:\documents and settings\All Users\Start Menu\Programs\Startup\
Bluetooth Manager.lnk - c:\program files\Toshiba\Bluetooth Toshiba Stack\TosBtMng1.exe [2007-11-1 421888]
Economy Mode(ECO) Setting Utility.lnk - c:\program files\Panasonic\CHGBMODE\ChgBmode.exe /NOMSG [2009-5-7 308544]
McAfee Security Scan Plus.lnk - c:\program files\McAfee Security Scan\3.8.130\SSScheduler.exe [2013-9-6 273296]
Optical Disc Drive Power-Saving Utility.lnk - c:\program files\Panasonic\OPDOFF\opdoff.exe [2009-5-7 1516856]
PC Information Popup.lnk - c:\program files\Panasonic\PPopup\ppopup.exe /startup [2009-5-7 689472]
RAMASST.lnk - c:\windows\system32\RAMAsst.exe [2009-5-8 266240]
Touch Pad Utility.lnk - c:\program files\Panasonic\WheelPad\Touchpad.exe [2009-5-7 456000]
.
[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"c:\\Program Files\\Microsoft Office\\Office14\\ONENOTE.EXE"=
"c:\\Program Files\\Skype\\Phone\\Skype.exe"=
.
R1 avkmgr;avkmgr;c:\windows\system32\drivers\avkmgr.sys [18.08.2013 08:55 37352]
R2 AntiVirSchedulerService;Avira Planer;c:\program files\Avira\AntiVir Desktop\sched.exe [18.08.2013 08:55 84024]
R2 APNMCP;Ask Aktualisierungsdienst;c:\program files\AskPartnerNetwork\Toolbar\apnmcp.exe [23.10.2013 20:52 166352]
R2 ETMService;Intel(R) Dynamic Power Performance Management Service Application;c:\windows\system32\etmservice.exe [07.05.2009 21:04 223768]
R2 OPDOFFSV;Panasonic Opdoff Utility;c:\program files\Panasonic\OPDOFF\opdoffsv.exe [07.05.2009 22:23 206136]
R2 PcInfoPi;Panasonic PC Information Viewer Service 2;c:\program files\Panasonic\pcinfo\PcInfoPi.exe [07.05.2009 22:46 54592]
R2 PcInfoSV;Panasonic PC Information Viewer;c:\program files\Panasonic\pcinfo\PCInfoSV.exe [07.05.2009 22:46 193856]
R2 regi;regi;c:\windows\system32\drivers\regi.sys [17.04.2007 19:09 11032]
R2 Skype C2C Service;Skype C2C Service;c:\documents and settings\All Users\Application Data\Skype\Toolbars\Skype C2C Service\c2c_service.exe [14.08.2013 10:10 3291008]
R3 e1yexpress;Intel(R) Gigabit Network Connections Driver;c:\windows\system32\drivers\e1y5132.sys [07.05.2009 12:50 244368]
R3 EtmCpu;EtmCpu;c:\windows\system32\drivers\EtmDevCpu.sys [07.05.2009 21:04 25088]
R3 EtmDevGen;EtmDevGen;c:\windows\system32\drivers\EtmDevGen.sys [07.05.2009 21:04 18944]
R3 EtmDrvMgr;EtmDrvMgr;c:\windows\system32\drivers\EtmDrvMgr.sys [07.05.2009 21:04 46592]
R3 EtmFan;EtmFan;c:\windows\system32\drivers\EtmDevFan.sys [07.05.2009 21:04 11264]
R3 EtmGmchMem;EtmGmchMem;c:\windows\system32\drivers\EtmDevGmch.sys [07.05.2009 21:04 98304]
R3 IFXTPM;IFXTPM;c:\windows\system32\drivers\ifxtpm.sys [07.05.2009 12:51 44800]
R3 IntcHdmiAddService;Intel(R) High Definition Audio HDMI Service;c:\windows\system32\drivers\IntcHdmi.sys [07.05.2009 12:53 110080]
R3 NewMisc;Panasonic Misc Driver C;c:\windows\system32\drivers\newmisc.sys [07.05.2009 12:50 28608]
S2 AntiVirWebService;Avira Browser-Schutz;c:\program files\Avira\AntiVir Desktop\avwebgrd.exe [18.08.2013 08:55 815160]
S2 ca82e1a5;Optimizer Pro Crash Monitor;c:\progra~1\optimi~1\OptProCrash.exe [10.11.2013 08:36 143488]
S2 SkypeUpdate;Skype Updater;c:\program files\Skype\Updater\Updater.exe [05.09.2013 10:34 171680]
S3 McComponentHostService;McAfee Security Scan Component Host Service;c:\program files\McAfee Security Scan\3.8.130\McCHSvc.exe [06.09.2013 17:29 235216]
S3 SwitchBoard;SwitchBoard;c:\program files\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [19.02.2010 12:37 517096]
.
--- Andere Dienste/Treiber im Speicher ---
.
*NewlyCreated* - WS2IFSL
.
[HKEY_LOCAL_MACHINE\software\microsoft\active setup\installed components\{8A69D345-D564-463c-AFF1-A69D9E530F96}]
2013-10-19 03:24 1185744 ----a-w- c:\program files\Google\Chrome\Application\30.0.1599.101\Installer\chrmstp.exe
.
Inhalt des "geplante Tasks" Ordners
.
2013-11-14 c:\windows\Tasks\Adobe Flash Player Updater.job
- c:\windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2012-06-13 19:51]
.
2013-03-04 c:\windows\Tasks\AdobeAAMUpdater-1.0-YOUR-8E8F8D6E2D-Administrator.job
- c:\program files\Common Files\Adobe\OOBE\PDApp\UWA\updaterstartuputility.exe [2012-08-08 04:09]
.
2013-11-15 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
- c:\program files\Google\Update\GoogleUpdate.exe [2012-08-30 06:47]
.
2013-11-14 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
- c:\program files\Google\Update\GoogleUpdate.exe [2012-08-30 06:47]
.
.
------- Zusätzlicher Suchlauf -------
.
uStart Page = hxxp://feed.snapdo.com/?publisher=Tuguu&dpid=TuguuCR&co=DE&userid=c27c7a0f-aa1d-70a0-db72-1929caf785a5&searchtype=hp&installDate=10/11/2013
uSearchAssistant = hxxp://feed.snapdo.com/?publisher=Tuguu&dpid=TuguuCR&co=DE&userid=c27c7a0f-aa1d-70a0-db72-1929caf785a5&searchtype=ds&q={searchTerms}&installDate=10/11/2013
IE: An OneNote s&enden - c:\progra~1\MICROS~2\Office14\ONBttnIE.dll/105
IE: Nach Microsoft E&xcel exportieren - c:\progra~1\MICROS~2\Office14\EXCEL.EXE/3000
LSP: c:\program files\Avira\AntiVir Desktop\avsda.dll
TCP: DhcpNameServer = 192.168.178.1
FF - ProfilePath - c:\documents and settings\Administrator\Application Data\Mozilla\Firefox\Profiles\la8iggyg.default\
FF - prefs.js: browser.search.selectedEngine - Web Search
FF - prefs.js: browser.startup.homepage - hxxp://feed.snapdo.com/?publisher=Tuguu&dpid=TuguuCR&co=DE&userid=c27c7a0f-aa1d-70a0-db72-1929caf785a5&searchtype=hp&installDate=10/11/2013
FF - prefs.js: keyword.URL - hxxp://feed.snapdo.com/?publisher=Tuguu&dpid=TuguuCR&co=DE&userid=c27c7a0f-aa1d-70a0-db72-1929caf785a5&searchtype=ds&installDate=10/11/2013&q=
.
- - - - Entfernte verwaiste Registrierungseinträge - - - -
.
AddRemove-BetterAds - c:\program files\BetterAds\uninstall.exe
AddRemove-SuperLyrics-16 - c:\program files\SuperLyrics-16\Uninstall.exe
.
.
.
**************************************************************************
.
catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, hxxp://www.gmer.net
Rootkit scan 2013-11-15 07:58
Windows 5.1.2600 Service Pack 3 NTFS
.
Scanne versteckte Prozesse...
.
Scanne versteckte Autostarteinträge...
.
Scanne versteckte Dateien...
.
Scan erfolgreich abgeschlossen
versteckte Dateien: 0
.
**************************************************************************
.
--------------------- Gesperrte Registrierungsschluessel ---------------------
.
[HKEY_USERS\S-1-5-21-3402263254-3905192389-2916328827-500\Software\Microsoft\Internet Explorer\User Preferences]
@Denied: (2) (Administrator)
"88D7D0879DAB32E14DE5B3A805A34F98AFF34F5977"=hex:01,00,00,00,d0,8c,9d,df,01,15,
d1,11,8c,7a,00,c0,4f,c2,97,eb,01,00,00,00,f9,5e,58,ef,33,d9,f8,4c,b6,72,38,\
"2D53CFFC5C1A3DD2E97B7979AC2A92BD59BC839E81"=hex:01,00,00,00,d0,8c,9d,df,01,15,
d1,11,8c,7a,00,c0,4f,c2,97,eb,01,00,00,00,f9,5e,58,ef,33,d9,f8,4c,b6,72,38,\
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="FlashBroker"
"LocalizedString"="@c:\\WINDOWS\\system32\\Macromed\\Flash\\FlashUtil32_11_9_900_117_ActiveX.exe,-101"
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\Elevation]
"Enabled"=dword:00000001
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\LocalServer32]
@="c:\\WINDOWS\\system32\\Macromed\\Flash\\FlashUtil32_11_9_900_117_ActiveX.exe"
.
[HKEY_LOCAL_MACHINE\software\Classes\CLSID\{73C9DFA0-750D-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}]
@Denied: (A 2) (Everyone)
@="IFlashBroker5"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\ProxyStubClsid32]
@="{00020424-0000-0000-C000-000000000046}"
.
[HKEY_LOCAL_MACHINE\software\Classes\Interface\{6AE38AE0-750C-11E1-B0C4-0800200C9A66}\TypeLib]
@="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
"Version"="1.0"
.
--------------------- Durch laufende Prozesse gestartete DLLs ---------------------
.
- - - - - - - > 'winlogon.exe'(1196)
c:\windows\system32\netprovcredman.dll
c:\windows\system32\igfxdev.dll
.
- - - - - - - > 'lsass.exe'(1252)
c:\program files\Avira\AntiVir Desktop\avsda.dll
.
- - - - - - - > 'explorer.exe'(4092)
c:\windows\system32\WININET.dll
c:\windows\system32\ieframe.dll
c:\windows\system32\webcheck.dll
c:\windows\system32\WPDShServiceObj.dll
c:\windows\system32\PortableDeviceTypes.dll
c:\windows\system32\PortableDeviceApi.dll
.
------------------------ Weitere laufende Prozesse ------------------------
.
c:\program files\Intel\WiFi\bin\S24EvMon.exe
c:\windows\system32\igfxsrvc.exe
c:\program files\Synaptics\SynTP\SynTPEnh.exe
c:\program files\Brother\ControlCenter3\brccMCtl.exe
c:\program files\Panasonic\CHGBMODE\ChgBmode.exe
c:\program files\Brother\Brmfcmon\BrMfcmon.exe
c:\program files\Toshiba\Bluetooth Toshiba Stack\TosBtMng.exe
c:\program files\Hewlett-Packard\HP Share-to-Web\hpgs2wnf.exe
c:\program files\Panasonic\PPopup\ppopup.exe
c:\program files\Avira\AntiVir Desktop\avguard.exe
c:\program files\Toshiba\Bluetooth Toshiba Stack\TosA2dp.exe
c:\windows\System32\DVDRAMSV.exe
c:\program files\Intel\WiFi\bin\EvtEng.exe
c:\program files\Toshiba\Bluetooth Toshiba Stack\TosBtHid.exe
c:\program files\Common Files\InterVideo\RegMgr\iviRegMgr.exe
c:\program files\Common Files\Intel\WirelessCommon\RegSrvc.exe
c:\program files\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe
c:\windows\system32\wbem\unsecapp.exe
c:\program files\Avira\AntiVir Desktop\avshadow.exe
.
**************************************************************************
.
Zeit der Fertigstellung: 2013-11-15 08:04:53 - PC wurde neu gestartet
ComboFix-quarantined-files.txt 2013-11-15 07:04
.
Vor Suchlauf: 192.288.673.792 bytes free
Nach Suchlauf: 192.295.698.432 bytes free
.
WindowsXP-KB310994-SP2-Pro-BootDisk-DEU.exe
[boot loader]
timeout=2
default=multi(0)disk(0)rdisk(0)partition(1)\WINDOWS
[operating systems]
c:\cmdcons\BOOTSECT.DAT="Microsoft Windows Recovery Console" /cmdcons
UnsupportedDebug="do not select this" /debug
multi(0)disk(0)rdisk(0)partition(1)\WINDOWS="Microsoft Windows XP Professional" /noexecute=optin /fastdetect
.
- - End Of File - - DA5BF5B7037BCFE743015C8C416C3567
8F558EB6672622401DA993E1E865C861 |