mbam Code:
Malwarebytes Anti-Malware
www.malwarebytes.org
Suchlauf Datum: 03.06.2014
Suchlauf-Zeit: 21:04:57
Logdatei: mbam.txt
Administrator: Ja
Version: 2.00.2.1012
Malware Datenbank: v2014.06.03.06
Rootkit Datenbank: v2014.06.02.01
Lizenz: Testversion
Malware Schutz: Aktiviert
Bösartiger Webseiten Schutz: Aktiviert
Self-protection: Deaktiviert
Betriebssystem: Windows 7 Service Pack 1
CPU: x64
Dateisystem: NTFS
Benutzer: Sinitta
Suchlauf-Art: Bedrohungs-Suchlauf
Ergebnis: Abgeschlossen
Durchsuchte Objekte: 284924
Verstrichene Zeit: 17 Min, 31 Sek
Speicher: Aktiviert
Autostart: Aktiviert
Dateisystem: Aktiviert
Archive: Aktiviert
Rootkits: Deaktiviert
Heuristics: Aktiviert
PUP: Aktiviert
PUM: Aktiviert
Prozesse: 2
PUP.Optional.MindSpark, C:\Program Files (x86)\VideoDownloadConverter_4z\bar\1.bin\AppIntegrator64.exe, 4744, Löschen bei Neustart, [e032740087f460d6aeb5993ef60dc838]
PUP.Optional.MindSpark.A, C:\Program Files (x86)\VideoDownloadConverter_4z\bar\1.bin\4zbrmon.exe, 4184, Löschen bei Neustart, [c44e5f15c8b3db5b25222185d32f768a]
Module: 6
PUP.Optional.MindSpark.A, C:\Program Files (x86)\VideoDownloadConverter_4z\bar\1.bin\4zSrcAs.dll, Löschen bei Neustart, [0d05cba92c4fa6906cdf1a1dc43ef50b],
PUP.Optional.MindSpark.A, C:\Program Files (x86)\VideoDownloadConverter_4z\bar\1.bin\4zauxstb.dll, Löschen bei Neustart, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, C:\Program Files (x86)\VideoDownloadConverter_4z\bar\1.bin\4zbrstub.dll, Löschen bei Neustart, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, C:\Program Files (x86)\VideoDownloadConverter_4z\bar\1.bin\4zbrstub.dll, Löschen bei Neustart, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, C:\Program Files (x86)\VideoDownloadConverter_4z\bar\1.bin\4zdlghk.dll, Löschen bei Neustart, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, C:\Program Files (x86)\VideoDownloadConverter_4z\bar\1.bin\4zieovr.dll, Löschen bei Neustart, [39d9294b5c1fdd59ba705236f90956aa],
Registrierungsschlüssel: 200
PUP.Optional.AudioToAudioToolBar.A, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\VideoDownloadConverter_4zService, In Quarantäne, [ec26096b8feca591c3f23ef747b97c84],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{312f84fb-8970-4fd3-bddb-7012eac4afc9}, In Quarantäne, [a969047066158fa761e8b681f50d28d8],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{48586425-6bb7-4f51-8dc6-38c88e3ebb58}, In Quarantäne, [a969047066158fa761e8b681f50d28d8],
PUP.Optional.MindSpark.A, HKU\S-1-5-21-2507623652-1542659017-3101991456-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{48586425-6BB7-4F51-8DC6-38C88E3EBB58}, Löschen bei Neustart, [a969047066158fa761e8b681f50d28d8],
PUP.Optional.MindSpark.A, HKU\S-1-5-21-2507623652-1542659017-3101991456-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{48586425-6BB7-4F51-8DC6-38C88E3EBB58}, Löschen bei Neustart, [a969047066158fa761e8b681f50d28d8],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{a86782d8-7b41-452f-a217-1854f72dba54}, In Quarantäne, [a969047066158fa761e8b681f50d28d8],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\TYPELIB\{192f487e-e812-40c0-b0de-cb4bfa20f37b}, In Quarantäne, [a969047066158fa761e8b681f50d28d8],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{3BA6794F-1E38-4460-949A-0DE97D8EF5C2}, In Quarantäne, [a969047066158fa761e8b681f50d28d8],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{3CBA93EA-AEC3-4EC3-9EFD-D96A661B639D}, In Quarantäne, [a969047066158fa761e8b681f50d28d8],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{6605E3BD-7BC3-479C-BF0A-E5D5E954EA52}, In Quarantäne, [a969047066158fa761e8b681f50d28d8],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{66D59105-FE06-43A4-B292-EB0097E9EB74}, In Quarantäne, [a969047066158fa761e8b681f50d28d8],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{9103C314-C4E2-4463-8934-B19BCB46236D}, In Quarantäne, [a969047066158fa761e8b681f50d28d8],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{94E98D20-156E-4C53-BD7F-972C96E680B2}, In Quarantäne, [a969047066158fa761e8b681f50d28d8],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{3BA6794F-1E38-4460-949A-0DE97D8EF5C2}, In Quarantäne, [a969047066158fa761e8b681f50d28d8],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{3CBA93EA-AEC3-4EC3-9EFD-D96A661B639D}, In Quarantäne, [a969047066158fa761e8b681f50d28d8],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{6605E3BD-7BC3-479C-BF0A-E5D5E954EA52}, In Quarantäne, [a969047066158fa761e8b681f50d28d8],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{66D59105-FE06-43A4-B292-EB0097E9EB74}, In Quarantäne, [a969047066158fa761e8b681f50d28d8],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{9103C314-C4E2-4463-8934-B19BCB46236D}, In Quarantäne, [a969047066158fa761e8b681f50d28d8],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{94E98D20-156E-4C53-BD7F-972C96E680B2}, In Quarantäne, [a969047066158fa761e8b681f50d28d8],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{192f487e-e812-40c0-b0de-cb4bfa20f37b}, In Quarantäne, [a969047066158fa761e8b681f50d28d8],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\VideoDownloadConverter_4z.SettingsPlugin.1, In Quarantäne, [a969047066158fa761e8b681f50d28d8],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\VideoDownloadConverter_4z.SettingsPlugin, In Quarantäne, [a969047066158fa761e8b681f50d28d8],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\VideoDownloadConverter_4z.SettingsPlugin, In Quarantäne, [a969047066158fa761e8b681f50d28d8],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\VideoDownloadConverter_4z.SettingsPlugin.1, In Quarantäne, [a969047066158fa761e8b681f50d28d8],
PUP.Optional.MindSpark.A, HKU\S-1-5-21-2507623652-1542659017-3101991456-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{A86782D8-7B41-452F-A217-1854F72DBA54}, Löschen bei Neustart, [a969047066158fa761e8b681f50d28d8],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\PREAPPROVED\{A86782D8-7B41-452F-A217-1854F72DBA54}, In Quarantäne, [a969047066158fa761e8b681f50d28d8],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\UNINSTALL\VideoDownloadConverter_4zbar Uninstall Internet Explorer, In Quarantäne, [a969047066158fa761e8b681f50d28d8],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{312F84FB-8970-4FD3-BDDB-7012EAC4AFC9}, In Quarantäne, [a969047066158fa761e8b681f50d28d8],
PUP.Optional.MindSpark.A, HKU\S-1-5-21-2507623652-1542659017-3101991456-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{312F84FB-8970-4FD3-BDDB-7012EAC4AFC9}, Löschen bei Neustart, [a969047066158fa761e8b681f50d28d8],
PUP.Optional.MindSpark.A, HKU\S-1-5-21-2507623652-1542659017-3101991456-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{312F84FB-8970-4FD3-BDDB-7012EAC4AFC9}, Löschen bei Neustart, [a969047066158fa761e8b681f50d28d8],
PUP.Optional.FunWebProducts.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{33119133-0854-469d-807A-171568457991}, In Quarantäne, [39d981f35f1c152142b1b6b8c33fad53],
PUP.Optional.FunWebProducts.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{13119113-0854-469d-807A-171568457991}, In Quarantäne, [39d981f35f1c152142b1b6b8c33fad53],
PUP.Optional.FunWebProducts.A, HKLM\SOFTWARE\CLASSES\VideoDownloadConverter_4z.SkinLauncher.1, In Quarantäne, [39d981f35f1c152142b1b6b8c33fad53],
PUP.Optional.FunWebProducts.A, HKLM\SOFTWARE\CLASSES\VideoDownloadConverter_4z.SkinLauncher, In Quarantäne, [39d981f35f1c152142b1b6b8c33fad53],
PUP.Optional.FunWebProducts.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\VideoDownloadConverter_4z.SkinLauncher, In Quarantäne, [39d981f35f1c152142b1b6b8c33fad53],
PUP.Optional.FunWebProducts.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\VideoDownloadConverter_4z.SkinLauncher.1, In Quarantäne, [39d981f35f1c152142b1b6b8c33fad53],
PUP.Optional.FunWebProducts.A, HKLM\SOFTWARE\CLASSES\TYPELIB\{03119103-0854-469d-807A-171568457991}, In Quarantäne, [39d981f35f1c152142b1b6b8c33fad53],
PUP.Optional.FunWebProducts.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{23119123-0854-469D-807A-171568457991}, In Quarantäne, [39d981f35f1c152142b1b6b8c33fad53],
PUP.Optional.FunWebProducts.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{23119123-0854-469D-807A-171568457991}, In Quarantäne, [39d981f35f1c152142b1b6b8c33fad53],
PUP.Optional.FunWebProducts.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{03119103-0854-469d-807A-171568457991}, In Quarantäne, [39d981f35f1c152142b1b6b8c33fad53],
PUP.Optional.FunWebProducts.A, HKLM\SOFTWARE\CLASSES\VideoDownloadConverter_4z.SkinLauncherSettings.1, In Quarantäne, [39d981f35f1c152142b1b6b8c33fad53],
PUP.Optional.FunWebProducts.A, HKLM\SOFTWARE\CLASSES\VideoDownloadConverter_4z.SkinLauncherSettings, In Quarantäne, [39d981f35f1c152142b1b6b8c33fad53],
PUP.Optional.FunWebProducts.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\VideoDownloadConverter_4z.SkinLauncherSettings, In Quarantäne, [39d981f35f1c152142b1b6b8c33fad53],
PUP.Optional.FunWebProducts.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\VideoDownloadConverter_4z.SkinLauncherSettings.1, In Quarantäne, [39d981f35f1c152142b1b6b8c33fad53],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{c547c6c2-561b-4169-a2a5-20ba771ca93b}, In Quarantäne, [0d05cba92c4fa6906cdf1a1dc43ef50b],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{C547C6C2-561B-4169-A2A5-20BA771CA93B}, In Quarantäne, [0d05cba92c4fa6906cdf1a1dc43ef50b],
PUP.Optional.MindSpark.A, HKU\S-1-5-21-2507623652-1542659017-3101991456-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\SETTINGS\{C547C6C2-561B-4169-A2A5-20BA771CA93B}, Löschen bei Neustart, [0d05cba92c4fa6906cdf1a1dc43ef50b],
PUP.Optional.MindSpark.A, HKU\S-1-5-21-2507623652-1542659017-3101991456-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\STATS\{C547C6C2-561B-4169-A2A5-20BA771CA93B}, Löschen bei Neustart, [0d05cba92c4fa6906cdf1a1dc43ef50b],
PUP.Optional.Qone8, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{33BB0A4E-99AF-4226-BDF6-49120163DE86}, In Quarantäne, [9082acc83843ae88d95180564eb5a35d],
PUP.Optional.Qone8.A, HKLM\SOFTWARE\WOW6432NODE\qone8Software, In Quarantäne, [9a789fd52358fd3903d4f5dfac57f40c],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\VideoDownloadConverter_4z, In Quarantäne, [26ecbababfbc90a65e48ad382bd8619f],
PUP.Optional.Qone8, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{33BB0A4E-99AF-4226-BDF6-49120163DE86}, In Quarantäne, [14fea5cf81fa8aac1218f3e350b34bb5],
PUP.Optional.BonanzaDeals.A, HKU\S-1-5-21-2507623652-1542659017-3101991456-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\BonanzaDealsLive, Löschen bei Neustart, [25edda9ac5b69f974c43726093705fa1],
PUP.Optional.MindSpark.A, HKU\S-1-5-21-2507623652-1542659017-3101991456-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\VideoDownloadConverter_4z, Löschen bei Neustart, [b45ecea67b0092a43473687d51b237c9],
PUP.Optional.MindSpark.A, HKU\S-1-5-21-2507623652-1542659017-3101991456-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\APPDATALOW\SOFTWARE\VideoDownloadConverter_4z, Löschen bei Neustart, [937fc2b293e80a2cb67aa8f027dbd12f],
PUP.Optional.InstallCore.A, HKU\S-1-5-21-2507623652-1542659017-3101991456-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\INSTALLCORE\1I1T1Q1S, Löschen bei Neustart, [60b2afc5e6959f97f7694e66689a06fa],
PUP.Optional.InstallCore.A, HKU\S-1-5-21-2507623652-1542659017-3101991456-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\INSTALLCORE, Löschen bei Neustart, [030f3242ccaf91a58dde498111f2c63a],
PUP.Optional.Softonic.A, HKU\S-1-5-21-2507623652-1542659017-3101991456-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\SOFTONIC\Universal Downloader, Löschen bei Neustart, [749e631196e584b2d826c7db3cc621df],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{3719959c-1ccd-4fa7-8ebb-7d9ded86fccb}, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\TYPELIB\{37923200-6887-4b44-95d4-cae8f83ecfee}, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{35144E32-8E4C-4152-9B8C-3E2D4B46228E}, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{8B8BB3A7-2ADE-4995-931D-60B430A9B44E}, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{E14CDC24-4BE1-4B65-8452-4BFA0DCEF274}, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{35144E32-8E4C-4152-9B8C-3E2D4B46228E}, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{8B8BB3A7-2ADE-4995-931D-60B430A9B44E}, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{E14CDC24-4BE1-4B65-8452-4BFA0DCEF274}, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{37923200-6887-4b44-95d4-cae8f83ecfee}, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\VideoDownloadConverter_4z.ToolbarProtector.1, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\VideoDownloadConverter_4z.ToolbarProtector, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\VideoDownloadConverter_4z.ToolbarProtector, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\VideoDownloadConverter_4z.ToolbarProtector.1, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{dd385519-22e7-4be2-8a8d-35c66df4858e}, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\TYPELIB\{ca723163-6fad-43d4-8b93-0d8c52bd9974}, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{7FC87AC5-FA93-476E-A32C-A941229DED0B}, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{7FCD22A8-B70A-4AC7-AAF1-EBCCD2F6612D}, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{A266567F-8E5D-480C-BCE2-C360FA669FD5}, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{7FC87AC5-FA93-476E-A32C-A941229DED0B}, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{7FCD22A8-B70A-4AC7-AAF1-EBCCD2F6612D}, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{A266567F-8E5D-480C-BCE2-C360FA669FD5}, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{ca723163-6fad-43d4-8b93-0d8c52bd9974}, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{69407823-3494-4400-8d49-612549e8f4ee}, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\TYPELIB\{886f93ad-3cbb-4424-8442-a7340243540f}, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{716E443D-7CAA-44F1-866B-F45D00E712CC}, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{716E443D-7CAA-44F1-866B-F45D00E712CC}, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{886f93ad-3cbb-4424-8442-a7340243540f}, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{6bff4bcb-7a73-45a7-ac4c-389a34e1d1ef}, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\VideoDownloadConverter_4z.DynamicBarButton.1, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\VideoDownloadConverter_4z.DynamicBarButton, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\VideoDownloadConverter_4z.DynamicBarButton, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\VideoDownloadConverter_4z.DynamicBarButton.1, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{8fca5302-6d6d-4645-bf99-d43cf76ce474}, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\TYPELIB\{aa289dbc-59b6-40a5-ac7d-c90df850289c}, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{1AD2049E-E483-4425-8555-8E0775ACB631}, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{ECC69F9E-5456-4EDF-AF66-1A9DED11F9EE}, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{1AD2049E-E483-4425-8555-8E0775ACB631}, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{ECC69F9E-5456-4EDF-AF66-1A9DED11F9EE}, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{aa289dbc-59b6-40a5-ac7d-c90df850289c}, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\VideoDownloadConverter_4z.FeedManager.1, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\VideoDownloadConverter_4z.FeedManager, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\VideoDownloadConverter_4z.FeedManager, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\VideoDownloadConverter_4z.FeedManager.1, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{71144427-1368-4D18-8DC9-2AE3CC4C4F83}, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\VideoDownloadConverter_4z.HTMLMenu.1, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\VideoDownloadConverter_4z.HTMLMenu, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\VideoDownloadConverter_4z.HTMLMenu, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\VideoDownloadConverter_4z.HTMLMenu.1, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\PREAPPROVED\{71144427-1368-4D18-8DC9-2AE3CC4C4F83}, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{2a1260c1-2964-453f-b0ba-fa429472eb5f}, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\TYPELIB\{2d3826a1-f3e8-45d6-94b5-c26d8ec0073b}, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{47700C35-9E3E-4DAD-934C-0CE28A87237C}, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{5A96E574-F8A6-4F6A-B58D-79C14B698017}, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{47700C35-9E3E-4DAD-934C-0CE28A87237C}, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{5A96E574-F8A6-4F6A-B58D-79C14B698017}, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{2d3826a1-f3e8-45d6-94b5-c26d8ec0073b}, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{4128c64d-f0dd-4811-9405-d22294e8151f}, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\VideoDownloadConverter_4z.MultipleButton.1, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\VideoDownloadConverter_4z.MultipleButton, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\VideoDownloadConverter_4z.MultipleButton, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\VideoDownloadConverter_4z.MultipleButton.1, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{99e1f6fd-2e94-4cf6-8344-1ba63cd3bd9b}, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\TYPELIB\{fb0e8a09-f08c-44cf-9e15-97adac016248}, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{17B10E59-09E1-4C39-A738-6774D7AB7778}, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{2D9083CE-8758-4704-BA57-3C891D7452BD}, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{8FDA7A57-D1A8-4A62-A643-B85FDC116212}, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{17B10E59-09E1-4C39-A738-6774D7AB7778}, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{2D9083CE-8758-4704-BA57-3C891D7452BD}, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{8FDA7A57-D1A8-4A62-A643-B85FDC116212}, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{fb0e8a09-f08c-44cf-9e15-97adac016248}, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\VideoDownloadConverter_4z.XMLSessionPlugin.1, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\VideoDownloadConverter_4z.XMLSessionPlugin, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\VideoDownloadConverter_4z.XMLSessionPlugin, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\VideoDownloadConverter_4z.XMLSessionPlugin.1, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\PREAPPROVED\{99E1F6FD-2E94-4CF6-8344-1BA63CD3BD9B}, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{3b41be90-f731-4137-aff3-2ca951e7f0d9}, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\VideoDownloadConverter_4z.Radio.1, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\VideoDownloadConverter_4z.Radio, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\VideoDownloadConverter_4z.Radio, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\VideoDownloadConverter_4z.Radio.1, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{84b7b98f-e018-4dbb-ab4c-4ddd3dfcb5fb}, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\TYPELIB\{79332472-47f3-4e32-b07f-cf8df4c58499}, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{5684EAE9-72EB-4CA6-83B8-82434B7E955C}, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{5684EAE9-72EB-4CA6-83B8-82434B7E955C}, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{79332472-47f3-4e32-b07f-cf8df4c58499}, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\VideoDownloadConverter_4z.RadioSettings.1, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\VideoDownloadConverter_4z.RadioSettings, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\VideoDownloadConverter_4z.RadioSettings, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\VideoDownloadConverter_4z.RadioSettings.1, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{363d5c92-10dc-4287-93e5-1832eecc48ec}, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\VideoDownloadConverter_4z.ScriptButton.1, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\VideoDownloadConverter_4z.ScriptButton, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\VideoDownloadConverter_4z.ScriptButton, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\VideoDownloadConverter_4z.ScriptButton.1, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{1f6f39c1-00a8-4752-a94c-d0ea92d978b6}, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\TYPELIB\{fe8dbb09-c3d3-4477-80cb-d38914b94bb8}, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{3E9469AF-E866-4476-B767-810630F1F6E7}, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{46CE5380-6055-4C3A-A7E5-3A02A2335C61}, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{4F6ECF71-C575-4BD2-8EF7-548D0EF1AB1D}, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{54D99BE4-2FD7-449E-9DB4-76532CEE0B16}, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{3E9469AF-E866-4476-B767-810630F1F6E7}, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{46CE5380-6055-4C3A-A7E5-3A02A2335C61}, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{4F6ECF71-C575-4BD2-8EF7-548D0EF1AB1D}, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{54D99BE4-2FD7-449E-9DB4-76532CEE0B16}, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{fe8dbb09-c3d3-4477-80cb-d38914b94bb8}, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\VideoDownloadConverter_4z.PseudoTransparentPlugin.1, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\VideoDownloadConverter_4z.PseudoTransparentPlugin, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\VideoDownloadConverter_4z.PseudoTransparentPlugin, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\VideoDownloadConverter_4z.PseudoTransparentPlugin.1, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\PREAPPROVED\{1F6F39C1-00A8-4752-A94C-D0EA92D978B6}, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{3d429207-4689-492d-a0e5-cdc5dfbb5005}, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\LOW RIGHTS\ELEVATIONPOLICY\{3D429207-4689-492D-A0E5-CDC5DFBB5005}, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{ff48dba6-5dd8-4d10-9eb0-0fa968502e66}, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{ed345812-2722-4dca-9976-d01832db44ee}, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\TYPELIB\{f1f328eb-f5a5-432b-a54c-05f3ef5b0bd8}, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{72063D77-7590-4DA9-A7F8-F5ECAF3632C4}, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{CE4F67F6-4FD4-49DB-9D71-713CCD3D00CD}, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{72063D77-7590-4DA9-A7F8-F5ECAF3632C4}, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{CE4F67F6-4FD4-49DB-9D71-713CCD3D00CD}, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{f1f328eb-f5a5-432b-a54c-05f3ef5b0bd8}, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\VideoDownloadConverter_4z.ThirdPartyInstaller.1, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\VideoDownloadConverter_4z.ThirdPartyInstaller, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\VideoDownloadConverter_4z.ThirdPartyInstaller, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\VideoDownloadConverter_4z.ThirdPartyInstaller.1, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\PREAPPROVED\{ED345812-2722-4DCA-9976-D01832DB44EE}, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{66292684-b2c2-4c7c-b3d2-bf446e30744c}, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\VideoDownloadConverter_4z.UrlAlertButton.1, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\VideoDownloadConverter_4z.UrlAlertButton, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\VideoDownloadConverter_4z.UrlAlertButton, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\VideoDownloadConverter_4z.UrlAlertButton.1, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\CLSID\{5354d921-3f52-47c5-938d-77a2fb6defe7}, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\TYPELIB\{3ee17dd1-e28b-4aed-a3b2-9c29cb2c19d6}, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{2D73F2D0-2FAB-458E-977D-2F9050E0ED60}, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\INTERFACE\{34AD1EA7-8B9E-4D8B-B3ED-365D12C8EE73}, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{2D73F2D0-2FAB-458E-977D-2F9050E0ED60}, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\INTERFACE\{34AD1EA7-8B9E-4D8B-B3ED-365D12C8EE73}, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\TYPELIB\{3ee17dd1-e28b-4aed-a3b2-9c29cb2c19d6}, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\VideoDownloadConverter_4z.HTMLPanel.1, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\CLASSES\VideoDownloadConverter_4z.HTMLPanel, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\VideoDownloadConverter_4z.HTMLPanel, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\CLASSES\VideoDownloadConverter_4z.HTMLPanel.1, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXT\PREAPPROVED\{5354D921-3F52-47C5-938D-77A2FB6DEFE7}, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
Registrierungswerte: 6
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\TOOLBAR|{48586425-6BB7-4F51-8DC6-38C88E3EBB58}, In Quarantäne, [a969047066158fa761e8b681f50d28d8],
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\TOOLBAR\{48586425-6bb7-4f51-8dc6-38c88e3ebb58}, In Quarantäne, [e230c4b06c0fc0763317c07737cb38c8],
PUP.Optional.MindSpark, HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN|VideoDownloadConverter Home Page Guard 64 bit, "C:\PROGRA~2\VIDEOD~2\bar\1.bin\AppIntegrator64.exe", In Quarantäne, [e032740087f460d6aeb5993ef60dc838]
PUP.Optional.MindSpark, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN|VideoDownloadConverter Search Scope Monitor, "C:\PROGRA~2\VIDEOD~2\bar\1.bin\4zsrchmn.exe" /m=2 /w /h, In Quarantäne, [b260086c2952221461126b6cdc27fd03]
PUP.Optional.MindSpark.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\RUN|VideoDownloadConverter_4z Browser Plugin Loader, C:\PROGRA~2\VIDEOD~2\bar\1.bin\4zbrmon.exe, In Quarantäne, [c44e5f15c8b3db5b25222185d32f768a]
PUP.Optional.InstallCore.A, HKU\S-1-5-21-2507623652-1542659017-3101991456-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\INSTALLCORE|tb, zr2X2X1G1S1F2V1S2Q0V, Löschen bei Neustart, [030f3242ccaf91a58dde498111f2c63a]
Registrierungsdaten: 2
PUP.Optional.Qone8, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES|DefaultScope, {33BB0A4E-99AF-4226-BDF6-49120163DE86}, Gut: ({0633EE93-D776-472f-A0FF-E1416B8B2E3A}), Schlecht: ({33BB0A4E-99AF-4226-BDF6-49120163DE86}),Ersetzt,[7f93e2929edd68ceea090760dd27e917]
PUP.Optional.Qone8, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES|DefaultScope, {33BB0A4E-99AF-4226-BDF6-49120163DE86}, Gut: ({0633EE93-D776-472f-A0FF-E1416B8B2E3A}), Schlecht: ({33BB0A4E-99AF-4226-BDF6-49120163DE86}),Ersetzt,[cc46680cf388171f589b63040cf87987]
Ordner: 17
PUP.Optional.eSafe.A, C:\ProgramData\eSafe\log, In Quarantäne, [a46eb1c35328f73f4e575e524db5dc24],
PUP.Optional.BonanzaDeals.A, C:\ProgramData\BonanzaDealsLive, In Quarantäne, [f61cb9bb116ab87e1f746f12ba48f010],
PUP.Optional.BonanzaDeals.A, C:\ProgramData\BonanzaDealsLive\Update, In Quarantäne, [f61cb9bb116ab87e1f746f12ba48f010],
PUP.Optional.BonanzaDeals.A, C:\ProgramData\BonanzaDealsLive\Update\Log, In Quarantäne, [f61cb9bb116ab87e1f746f12ba48f010],
PUP.Optional.BonanzaDeals.A, C:\Users\Sinitta\AppData\Local\BonanzaDealsLive, In Quarantäne, [829091e3bac1df57f3a16c155ba7dd23],
PUP.Optional.BonanzaDeals.A, C:\Users\Sinitta\AppData\Local\BonanzaDealsLive\CrashReports, In Quarantäne, [829091e3bac1df57f3a16c155ba7dd23],
PUP.Optional.BonanzaDeals.A, C:\Program Files (x86)\BonanzaDealsLive, In Quarantäne, [ba5881f3007b31053d59add4867c639d],
PUP.Optional.BonanzaDeals.A, C:\Program Files (x86)\BonanzaDealsLive\CrashReports, In Quarantäne, [ba5881f3007b31053d59add4867c639d],
PUP.Optional.MindSpark.A, C:\Program Files (x86)\VideoDownloadConverter_4z, Löschen bei Neustart, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, C:\Program Files (x86)\VideoDownloadConverter_4z\bar, Löschen bei Neustart, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, C:\Program Files (x86)\VideoDownloadConverter_4z\bar\1.bin, Löschen bei Neustart, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, C:\Program Files (x86)\VideoDownloadConverter_4z\bar\1.bin\chrome, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, C:\Program Files (x86)\VideoDownloadConverter_4z\bar\1.bin\ThirdPartyInstallers, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, C:\Program Files (x86)\VideoDownloadConverter_4z\bar\gen1, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, C:\Program Files (x86)\VideoDownloadConverter_4z\bar\IE9Mesg, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, C:\Program Files (x86)\VideoDownloadConverter_4z\bar\Message, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, C:\Program Files (x86)\VideoDownloadConverter_4z\bar\Settings, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
Dateien: 60
PUP.Optional.AudioToAudioToolBar.A, C:\Program Files (x86)\VideoDownloadConverter_4z\bar\1.bin\4zbarsvc.exe, Löschen bei Neustart, [ec26096b8feca591c3f23ef747b97c84],
PUP.Optional.MindSpark.A, C:\Program Files (x86)\VideoDownloadConverter_4z\bar\1.bin\4zbar.dll, In Quarantäne, [a969047066158fa761e8b681f50d28d8],
PUP.Optional.FunWebProducts.A, C:\Program Files (x86)\VideoDownloadConverter_4z\bar\1.bin\4zsknlcr.dll, In Quarantäne, [39d981f35f1c152142b1b6b8c33fad53],
PUP.Optional.MindSpark.A, C:\Program Files (x86)\VideoDownloadConverter_4z\bar\1.bin\4zSrcAs.dll, Löschen bei Neustart, [0d05cba92c4fa6906cdf1a1dc43ef50b],
PUP.Optional.eSafe.A, C:\ProgramData\eSafe\log\eGdpSvc.LOG, In Quarantäne, [a46eb1c35328f73f4e575e524db5dc24],
PUP.Optional.MindSpark, C:\Program Files (x86)\VideoDownloadConverter_4z\bar\1.bin\AppIntegrator64.exe, Löschen bei Neustart, [e032740087f460d6aeb5993ef60dc838],
PUP.Optional.MindSpark, C:\Program Files (x86)\VideoDownloadConverter_4z\bar\1.bin\4zSrchMn.exe, In Quarantäne, [b260086c2952221461126b6cdc27fd03],
PUP.Optional.MindSpark.A, C:\Program Files (x86)\VideoDownloadConverter_4z\bar\1.bin\4zbrmon.exe, Löschen bei Neustart, [c44e5f15c8b3db5b25222185d32f768a],
PUP.Optional.BonanzaDeals.A, C:\ProgramData\BonanzaDealsLive\Update\Log\BonanzaDealsLive.log, In Quarantäne, [f61cb9bb116ab87e1f746f12ba48f010],
PUP.Optional.MindSpark.A, C:\Program Files (x86)\VideoDownloadConverter_4z\bar\1.bin\4zauxstb.dll, Löschen bei Neustart, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, C:\Program Files (x86)\VideoDownloadConverter_4z\bar\1.bin\4zbprtct.dll, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, C:\Program Files (x86)\VideoDownloadConverter_4z\bar\1.bin\4zbrstub.dll, Löschen bei Neustart, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, C:\Program Files (x86)\VideoDownloadConverter_4z\bar\1.bin\4zdatact.dll, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, C:\Program Files (x86)\VideoDownloadConverter_4z\bar\1.bin\4zdlghk.dll, Löschen bei Neustart, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, C:\Program Files (x86)\VideoDownloadConverter_4z\bar\1.bin\4zdyn.dll, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, C:\Program Files (x86)\VideoDownloadConverter_4z\bar\1.bin\4zfeedmg.dll, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, C:\Program Files (x86)\VideoDownloadConverter_4z\bar\1.bin\4zhighin.exe, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, C:\Program Files (x86)\VideoDownloadConverter_4z\bar\1.bin\4zhkstub.dll, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, C:\Program Files (x86)\VideoDownloadConverter_4z\bar\1.bin\4zhtmlmu.dll, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, C:\Program Files (x86)\VideoDownloadConverter_4z\bar\1.bin\4zhttpct.dll, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, C:\Program Files (x86)\VideoDownloadConverter_4z\bar\1.bin\4zidle.dll, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, C:\Program Files (x86)\VideoDownloadConverter_4z\bar\1.bin\4zieovr.dll, Löschen bei Neustart, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, C:\Program Files (x86)\VideoDownloadConverter_4z\bar\1.bin\4zimpipe.exe, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, C:\Program Files (x86)\VideoDownloadConverter_4z\bar\1.bin\4zmedint.exe, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, C:\Program Files (x86)\VideoDownloadConverter_4z\bar\1.bin\4zmlbtn.dll, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, C:\Program Files (x86)\VideoDownloadConverter_4z\bar\1.bin\4zmsg.dll, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, C:\Program Files (x86)\VideoDownloadConverter_4z\bar\1.bin\4zPlugin.dll, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, C:\Program Files (x86)\VideoDownloadConverter_4z\bar\1.bin\4zradio.dll, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, C:\Program Files (x86)\VideoDownloadConverter_4z\bar\1.bin\4zregfft.dll, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, C:\Program Files (x86)\VideoDownloadConverter_4z\bar\1.bin\4zreghk.dll, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, C:\Program Files (x86)\VideoDownloadConverter_4z\bar\1.bin\4zregiet.dll, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, C:\Program Files (x86)\VideoDownloadConverter_4z\bar\1.bin\4zscript.dll, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, C:\Program Files (x86)\VideoDownloadConverter_4z\bar\1.bin\4zskin.dll, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, C:\Program Files (x86)\VideoDownloadConverter_4z\bar\1.bin\4zskplay.exe, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, C:\Program Files (x86)\VideoDownloadConverter_4z\bar\1.bin\4ztpinst.dll, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, C:\Program Files (x86)\VideoDownloadConverter_4z\bar\1.bin\4zuabtn.dll, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, C:\Program Files (x86)\VideoDownloadConverter_4z\bar\1.bin\AppIntegratorStub64.dll, Löschen bei Neustart, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, C:\Program Files (x86)\VideoDownloadConverter_4z\bar\1.bin\BOOTSTRAP.JS, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, C:\Program Files (x86)\VideoDownloadConverter_4z\bar\1.bin\CHROME.MANIFEST, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, C:\Program Files (x86)\VideoDownloadConverter_4z\bar\1.bin\CREXT.DLL, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, C:\Program Files (x86)\VideoDownloadConverter_4z\bar\1.bin\CrExtP4z.exe, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, C:\Program Files (x86)\VideoDownloadConverter_4z\bar\1.bin\DPNMNGR.DLL, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, C:\Program Files (x86)\VideoDownloadConverter_4z\bar\1.bin\EXEMANAGER.DLL, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, C:\Program Files (x86)\VideoDownloadConverter_4z\bar\1.bin\Hpg64.dll, Löschen bei Neustart, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, C:\Program Files (x86)\VideoDownloadConverter_4z\bar\1.bin\INSTALL.RDF, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, C:\Program Files (x86)\VideoDownloadConverter_4z\bar\1.bin\installKeys.js, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, C:\Program Files (x86)\VideoDownloadConverter_4z\bar\1.bin\LOGO.BMP, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, C:\Program Files (x86)\VideoDownloadConverter_4z\bar\1.bin\NP4zStub.dll, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, C:\Program Files (x86)\VideoDownloadConverter_4z\bar\1.bin\T8EXTEX.DLL, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, C:\Program Files (x86)\VideoDownloadConverter_4z\bar\1.bin\T8EXTPEX.DLL, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, C:\Program Files (x86)\VideoDownloadConverter_4z\bar\1.bin\T8HTML.DLL, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, C:\Program Files (x86)\VideoDownloadConverter_4z\bar\1.bin\T8RES.DLL, Löschen bei Neustart, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, C:\Program Files (x86)\VideoDownloadConverter_4z\bar\1.bin\T8TICKER.DLL, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, C:\Program Files (x86)\VideoDownloadConverter_4z\bar\1.bin\VERIFY.DLL, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, C:\Program Files (x86)\VideoDownloadConverter_4z\bar\1.bin\chrome\4zffxtbr.jar, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, C:\Program Files (x86)\VideoDownloadConverter_4z\bar\1.bin\ThirdPartyInstallers\VideoDownloadConverterWrapper.exe, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, C:\Program Files (x86)\VideoDownloadConverter_4z\bar\gen1\COMMON.T8S, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, C:\Program Files (x86)\VideoDownloadConverter_4z\bar\IE9Mesg\COMMON.T8S, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, C:\Program Files (x86)\VideoDownloadConverter_4z\bar\Message\COMMON.T8S, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
PUP.Optional.MindSpark.A, C:\Program Files (x86)\VideoDownloadConverter_4z\bar\Settings\s_pid.dat, In Quarantäne, [39d9294b5c1fdd59ba705236f90956aa],
Physische Sektoren: 0
(No malicious items detected)
(end) ADW-Cleaner Code:
# AdwCleaner v3.211 - Bericht erstellt am 03/06/2014 um 21:41:43
# Aktualisiert 26/05/2014 von Xplode
# Betriebssystem : Windows 7 Home Premium Service Pack 1 (64 bits)
# Benutzername : Sinitta - SINITTA-PC
# Gestartet von : C:\Users\Sinitta\Desktop\adwcleaner_3.211.exe
# Option : Löschen
***** [ Dienste ] *****
[#] Dienst Gelöscht : BackupStack
***** [ Dateien / Ordner ] *****
Ordner Gelöscht : C:\ProgramData\eSafe
Ordner Gelöscht : C:\ProgramData\ICQ\ICQToolbar
Ordner Gelöscht : C:\Program Files (x86)\BonanzaDeals
Ordner Gelöscht : C:\Program Files (x86)\ICQ6Toolbar
Ordner Gelöscht : C:\Program Files (x86)\Whilokii
Ordner Gelöscht : C:\Users\Sinitta\AppData\Local\VideoDownloadConverter_4z
Ordner Gelöscht : C:\Users\Sinitta\AppData\LocalLow\iac
Ordner Gelöscht : C:\Users\Sinitta\AppData\LocalLow\VideoDownloadConverter_4z
Ordner Gelöscht : C:\Users\Sinitta\AppData\Roaming\dvdvideosoftiehelpers
Ordner Gelöscht : C:\Users\Sinitta\AppData\Roaming\UpdaterEX
Ordner Gelöscht : C:\Users\Sinitta\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MyPC Backup
***** [ Verknüpfungen ] *****
***** [ Registrierungsdatenbank ] *****
Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\ICQ\ICQToolBar
Wert Gelöscht : HKCU\Software\Microsoft\Internet Explorer\Main [ICQ Search]
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\AppID\WLXQuickTimeShellExt.DLL
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASAPI32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASMANCS
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\AskInstallChecker-1_RASAPI32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\AskInstallChecker-1_RASMANCS
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\askpartnercobrandingtool_rasapi32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\askpartnercobrandingtool_rasmancs
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\au__rasapi32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\au__rasmancs
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\BingBar_RASMANCS
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\updatewhilokii_rasapi32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\updatewhilokii_rasmancs
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths\mypc backup
Schlüssel Gelöscht : HKLM\SYSTEM\CurrentControlSet\Services\Eventlog\Application\WsysSvc
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader64308[1]_RASAPI32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader64308[1]_RASMANCS
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_fuer_adobe-photoshop[1]_RASAPI32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_fuer_adobe-photoshop[1]_RASMANCS
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_fuer_nero-burning-rom[1]_RASAPI32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_fuer_nero-burning-rom[1]_RASMANCS
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_fuer_photoscape[1]_RASAPI32
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Tracing\SoftonicDownloader_fuer_photoscape[1]_RASMANCS
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
Schlüssel Gelöscht : HKLM\SOFTWARE\Classes\TypeLib\{BC153A3C-0BB7-4EED-83AE-28E6E398F56E}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{02478D38-C3F9-4EFB-9B51-7695ECA05670}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{02478D38-C3F9-4EFB-9B51-7695ECA05670}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{EF99BD32-C1FB-11D2-892F-0090271D4F88}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{2D9083CE-8758-4704-BA57-3C891D7452BD}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{6552C7DD-90A4-4387-B795-F8F96747DE19}
Schlüssel Gelöscht : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{CF6E4B1C-DBDE-457E-9CEF-AB8ECAC8A5E8}
Schlüssel Gelöscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{CF6E4B1C-DBDE-457E-9CEF-AB8ECAC8A5E8}
Schlüssel Gelöscht : HKCU\Software\Conduit
Schlüssel Gelöscht : HKCU\Software\Softonic
Schlüssel Gelöscht : HKCU\Software\UpdaterEX
Schlüssel Gelöscht : HKCU\Software\YahooPartnerToolbar
Schlüssel Gelöscht : HKCU\Software\AppDataLow\{1146AC44-2F03-4431-B4FD-889BC837521F}
Schlüssel Gelöscht : HKCU\Software\AppDataLow\Software
Schlüssel Gelöscht : HKLM\Software\{3A7D3E19-1B79-4E4E-BD96-5467DA2C4EF0}
Schlüssel Gelöscht : HKLM\Software\{6791A2F3-FC80-475C-A002-C014AF797E9C}
Schlüssel Gelöscht : HKLM\Software\Conduit
Schlüssel Gelöscht : HKLM\Software\eSafeSecControl
Schlüssel Gelöscht : HKLM\Software\ICQ\ICQToolbar
Schlüssel Gelöscht : HKLM\Software\Messenger Plus!\OpenCandy
Schlüssel Gelöscht : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\MyPC Backup
***** [ Browser ] *****
-\\ Internet Explorer v11.0.9600.16521
Einstellung Wiederhergestellt : HKCU\Software\Microsoft\Internet Explorer\Main [ICQ Search]
-\\ Google Chrome v
*************************
AdwCleaner[R0].txt - [18402 octets] - [08/12/2013 13:32:10]
AdwCleaner[R1].txt - [6022 octets] - [03/06/2014 21:40:12]
AdwCleaner[S0].txt - [5424 octets] - [03/06/2014 21:41:43]
########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [5484 octets] ########## FRST
FRST Logfile: Code:
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 02-06-2014
Ran by Sinitta (administrator) on SINITTA-PC on 04-06-2014 20:11:54
Running from C:\Users\Sinitta\Desktop
Platform: Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard
Internet Explorer Version 11
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(AMD) C:\Windows\System32\atiesrxx.exe
(IDT, Inc.) C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_afc3018f8cfedd20\stacsv64.exe
(AMD) C:\Windows\System32\atieclxx.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
(McAfee, Inc.) C:\Users\Sinitta\AppData\Local\Temp\016565~1.EXE
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Microsoft Corporation) C:\Program Files (x86)\Common Files\microsoft shared\VS7Debug\mdm.exe
(O2Micro International) C:\Windows\System32\drivers\o2flash.exe
(SoftThinks SAS) C:\Program Files (x86)\Dell DataSafe Local Backup\SftService.exe
(TomTom) C:\Program Files (x86)\TomTom HOME 2\TomTomHOMEService.exe
(Yahoo! Inc.) C:\Program Files (x86)\Yahoo!\SoftwareUpdate\YahooAUService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTmon.exe
(SoftThinks - Dell) C:\Program Files (x86)\Dell DataSafe Local Backup\Toaster.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(IDT, Inc.) C:\Program Files\IDT\WDM\sttray64.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAAnotif.exe
(Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe
(TomTom) C:\Program Files (x86)\TomTom HOME 2\TomTomHOMERunner.exe
(CASIO COMPUTER CO.,LTD.) C:\Program Files (x86)\Casio\YouTube Uploader for CASIO\YStart.exe
(Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
() C:\Program Files (x86)\Dell DataSafe Online\DataSafeOnline.exe
(CyberLink Corp.) C:\Program Files (x86)\CyberLink\PowerDVD DX\PDVDDXSrv.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
(Apple Inc.) C:\Program Files (x86)\iTunes\iTunesHelper.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(Nero AG) C:\Program Files (x86)\Nero\Update\NASvc.exe
(Adobe Systems Incorporated) C:\Windows\System32\Macromed\Flash\FlashUtil64_13_0_0_214_ActiveX.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [1812776 2009-06-26] (Synaptics Incorporated)
HKLM\...\Run: [SysTrayApp] => C:\Program Files\IDT\WDM\sttray64.exe [444416 2009-06-29] (IDT, Inc.)
HKLM\...\Run: [IAAnotif] => C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\iaanotif.exe [186904 2009-06-05] (Intel Corporation)
HKLM-x32\...\Run: [StartCCC] => c:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [98304 2009-06-26] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [Dell DataSafe Online] => C:\Program Files (x86)\Dell DataSafe Online\DataSafeOnline.exe [1807600 2009-11-14] ()
HKLM-x32\...\Run: [PDVDDXSrv] => C:\Program Files (x86)\CyberLink\PowerDVD DX\PDVDDXSrv.exe [140520 2009-06-25] (CyberLink Corp.)
HKLM-x32\...\Run: [Dell Webcam Central] => C:\Program Files (x86)\Dell Webcam\Dell Webcam Central\WebcamDell2.exe [409744 2009-06-25] (Creative Technology Ltd)
HKLM-x32\...\Run: [AppleSyncNotifier] => C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleSyncNotifier.exe [59240 2011-09-27] (Apple Inc.)
HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [43848 2014-02-06] (Apple Inc.)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-04-04] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [QuickTime Task] => C:\Program Files (x86)\QuickTime\QTTask.exe [421888 2013-05-01] (Apple Inc.)
HKLM-x32\...\Run: [avgnt] => C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [689744 2014-02-21] (Avira Operations GmbH & Co. KG)
HKLM-x32\...\Run: [iTunesHelper] => C:\Program Files (x86)\iTunes\iTunesHelper.exe [152392 2014-02-06] (Apple Inc.)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [256896 2014-05-07] (Oracle Corporation)
HKLM-x32\...\RunOnce: ["C:\Program Files (x86)\Dell DataSafe Local Backup\Components\DSUpdate\DSUpdate.exe"] - "C:\Program Files (x86)\Dell DataSafe Local Backup\Components\DSUpdate\DSUpdate.exe" [559616 2011-10-10] (Dell)
HKU\S-1-5-21-2507623652-1542659017-3101991456-1001\...\Run: [TomTomHOME.exe] => C:\Program Files (x86)\TomTom HOME 2\TomTomHOMERunner.exe [247728 2011-04-22] (TomTom)
HKU\S-1-5-21-2507623652-1542659017-3101991456-1001\...\Run: [Sony PC Companion] => C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanion.exe [445624 2012-04-12] ()
HKU\S-1-5-21-2507623652-1542659017-3101991456-1001\...\Winlogon: [Shell] C:\Windows\explorer.exe [2871808 2011-02-25] (Microsoft Corporation) <==== ATTENTION
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Microsoft Office.lnk
ShortcutTarget: Microsoft Office.lnk -> C:\Program Files (x86)\Microsoft Office\Office10\OSA.EXE (Microsoft Corporation)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\YouTube Uploader for CASIO.lnk
ShortcutTarget: YouTube Uploader for CASIO.lnk -> C:\Program Files (x86)\Casio\YouTube Uploader for CASIO\YStart.exe (CASIO COMPUTER CO.,LTD.)
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.yahoo.de/
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank
StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe
SearchScopes: HKLM - DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKCU - DefaultScope {971D1F87-E6D2-419B-8CF8-5B315FBE0712} URL = hxxp://www.google.de/search?q={searchTerms}&rlz=
SearchScopes: HKCU - {971D1F87-E6D2-419B-8CF8-5B315FBE0712} URL = hxxp://www.google.de/search?q={searchTerms}&rlz=
SearchScopes: HKCU - {DA669BDB-ECB4-4094-B89B-AFE8C77DD892} URL =
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll (Sun Microsystems, Inc.)
BHO-x32: No Name - {5C255C8A-E604-49b4-9D64-90988571CECB} - No File
BHO-x32: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO-x32: Windows Live Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files (x86)\Windows Live\Toolbar\wltcore.dll (Microsoft Corporation)
Toolbar: HKLM-x32 - &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files (x86)\Windows Live\Toolbar\wltcore.dll (Microsoft Corporation)
Toolbar: HKCU - No Name - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - No File
DPF: HKLM-x32 {67DABFBF-D0AB-41FA-9C46-CC0F21721616} hxxp://download.divx.com/player/DivXBrowserPlugin.cab
DPF: HKLM-x32 {8100D56A-5661-482C-BEE8-AFECE305D968} hxxp://upload.facebook.com/controls/2009.07.28_v5.5.8.1/FacebookPhotoUploader55.cab
DPF: HKLM-x32 {888078C6-70B2-4F88-8EE7-1F50DDEA6120} https://as.photoprintit.de/ips-opdata/activex/ImageUploader6.cab
DPF: HKLM-x32 {D27CDB6E-AE6D-11CF-96B8-444553540000} hxxp://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
DPF: HKLM-x32 {E2883E8F-472F-4FB0-9522-AC9BF37916A7} hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
Handler-x32: http\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\OLE DB\msdaipp.dll (Microsoft Corporation)
Handler-x32: http\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\OLE DB\msdaipp.dll (Microsoft Corporation)
Handler-x32: https\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\OLE DB\msdaipp.dll (Microsoft Corporation)
Handler-x32: https\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\OLE DB\msdaipp.dll (Microsoft Corporation)
Handler-x32: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.14.0.8117.0416.dll (Microsoft Corporation)
Handler-x32: msdaipp\0x00000001 - {E1D2BF42-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\OLE DB\msdaipp.dll (Microsoft Corporation)
Handler-x32: msdaipp\oledb - {E1D2BF40-A96B-11d1-9C6B-0000F875AC61} - C:\Program Files (x86)\Common Files\System\OLE DB\msdaipp.dll (Microsoft Corporation)
Handler-x32: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files (x86)\Windows Live\Messenger\msgrapp.14.0.8117.0416.dll (Microsoft Corporation)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 192.168.2.1
FireFox:
========
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_13_0_0_214.dll ()
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_13_0_0_214.dll ()
FF Plugin-x32: @Apple.com/iTunes,version=1.0 - C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF Plugin-x32: @Google.com/GoogleEarthPlugin - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
FF Plugin-x32: @google.com/npPicasa3,version=3.0.0 - C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll (Google, Inc.)
FF Plugin-x32: @java.com/DTPlugin,version=10.60.2 - C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.60.2 - C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @messenger.yahoo.com/YahooMessengerStatePlugin;version=1.0.0.6 - C:\Program Files (x86)\Yahoo!\Shared\npYState.dll (Yahoo! Inc.)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - c:\Program Files (x86)\Microsoft Silverlight\5.1.30214.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeLive,version=1.5 - C:\Program Files (x86)\Microsoft\Office Live\npOLW.dll (Microsoft Corp.)
FF Plugin-x32: @microsoft.com/WLPG,version=14.0.8117.0416 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.24.7\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: Adobe Reader - C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin HKCU: @Skype Limited.com/Facebook Video Calling Plugin - C:\Users\Sinitta\AppData\Local\Facebook\Video\Skype\npFacebookVideoCalling.dll (Skype Limited)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npdeployJava1.dll (Sun Microsystems, Inc.)
Chrome:
=======
Error reading preferences. Please check "preferences" file for possible corruption. <======= ATTENTION
==================== Services (Whitelisted) =================
R2 0165651401825327mcinstcleanup; C:\Users\Sinitta\AppData\Local\Temp\016565~1.EXE [822104 2011-01-26] (McAfee, Inc.)
S3 Adobe LM Service; C:\Program Files (x86)\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe [72704 2010-07-24] (Adobe Systems)
R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [440400 2014-02-21] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [440400 2014-02-21] (Avira Operations GmbH & Co. KG)
S4 AntiVirWebService; C:\Program Files (x86)\Avira\AntiVir Desktop\AVWEBGRD.EXE [1017424 2014-02-21] (Avira Operations GmbH & Co. KG)
S4 MBAMScheduler; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe [1809720 2014-05-12] (Malwarebytes Corporation)
S2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [860472 2014-05-12] (Malwarebytes Corporation)
R2 STacSV; C:\Windows\System32\DriverStore\FileRepository\stwrt64.inf_amd64_neutral_afc3018f8cfedd20\STacSV64.exe [240128 2009-06-29] (IDT, Inc.)
==================== Drivers (Whitelisted) ====================
U5 AppMgmt; C:\Windows\system32\svchost.exe [27136 2009-07-14] (Microsoft Corporation)
R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [108440 2013-12-19] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [131576 2013-12-19] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [28600 2013-11-25] (Avira Operations GmbH & Co. KG)
S3 hitmanpro37; C:\Windows\system32\drivers\hitmanpro37.sys [32000 2013-06-20] ()
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2014-05-12] (Malwarebytes Corporation)
S3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [63704 2014-05-12] (Malwarebytes Corporation)
S3 s1018bus; C:\Windows\System32\DRIVERS\s1018bus.sys [113704 2009-03-25] (MCCI Corporation)
S3 s1018mdfl; C:\Windows\System32\DRIVERS\s1018mdfl.sys [19496 2009-03-25] (MCCI Corporation)
S3 s1018mdm; C:\Windows\System32\DRIVERS\s1018mdm.sys [153128 2009-03-25] (MCCI Corporation)
S3 s1018mgmt; C:\Windows\System32\DRIVERS\s1018mgmt.sys [133160 2009-03-25] (MCCI Corporation)
S3 s1018nd5; C:\Windows\System32\DRIVERS\s1018nd5.sys [34856 2009-03-25] (MCCI Corporation)
S3 s1018obex; C:\Windows\System32\DRIVERS\s1018obex.sys [128552 2009-03-25] (MCCI Corporation)
S3 s1018unic; C:\Windows\System32\DRIVERS\s1018unic.sys [146472 2009-03-25] (MCCI Corporation)
S3 catchme; \??\C:\ComboFix\catchme.sys [X]
S3 PcdrNdisuio; syswow64\drivers\pcdrndisuio.sys [X]
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2014-06-03 21:50 - 2014-06-03 21:50 - 01016261 _____ (Thisisu) C:\Users\Sinitta\Desktop\JRT.exe
2014-06-03 21:46 - 2014-06-03 21:46 - 00005568 _____ () C:\Users\Sinitta\Desktop\AdwCleaner[S0].txt
2014-06-03 21:41 - 2010-08-30 08:34 - 00536576 _____ (SQLite Development Team) C:\Windows\SysWOW64\sqlite3.dll
2014-06-03 21:38 - 2014-06-03 21:38 - 00048102 _____ () C:\Users\Sinitta\Desktop\mbam.txt
2014-06-03 21:37 - 2014-06-03 21:37 - 00048119 _____ () C:\Users\Sinitta\Desktop\Malwarebytes Suchlauf.txt
2014-06-03 21:04 - 2014-06-03 21:45 - 00122584 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2014-06-03 21:03 - 2014-06-03 21:03 - 00001068 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2014-06-03 21:03 - 2014-06-03 21:03 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2014-06-03 21:03 - 2014-06-03 21:03 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes Anti-Malware
2014-06-03 21:03 - 2014-05-12 07:26 - 00091352 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2014-06-03 21:03 - 2014-05-12 07:26 - 00063704 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2014-06-03 21:03 - 2014-05-12 07:25 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2014-06-03 20:59 - 2014-06-03 20:59 - 01327971 _____ () C:\Users\Sinitta\Desktop\adwcleaner_3.211.exe
2014-06-03 20:35 - 2014-06-04 20:01 - 00026532 _____ () C:\Windows\PFRO.log
2014-06-02 22:48 - 2014-06-02 22:48 - 00021873 _____ () C:\ComboFix.txt
2014-06-02 22:48 - 2014-06-02 22:48 - 00000000 ____D () C:\Users\Public\AppData\Local\temp
2014-06-02 22:48 - 2014-06-02 22:48 - 00000000 ____D () C:\Users\Default\AppData\Local\temp
2014-06-02 22:48 - 2014-06-02 22:48 - 00000000 ____D () C:\Users\Default User\AppData\Local\temp
2014-06-02 22:26 - 2010-11-07 19:20 - 00208896 _____ () C:\Windows\MBR.exe
2014-06-02 22:26 - 2009-04-20 06:56 - 00060416 _____ (NirSoft) C:\Windows\NIRCMD.exe
2014-06-02 22:24 - 2011-06-26 08:45 - 00256000 ____R () C:\Windows\PEV.exe
2014-06-02 22:24 - 2000-08-31 02:00 - 00518144 _____ (SteelWerX) C:\Windows\SWREG.exe
2014-06-02 22:24 - 2000-08-31 02:00 - 00406528 _____ (SteelWerX) C:\Windows\SWSC.exe
2014-06-02 22:24 - 2000-08-31 02:00 - 00098816 _____ () C:\Windows\sed.exe
2014-06-02 22:24 - 2000-08-31 02:00 - 00080412 _____ () C:\Windows\grep.exe
2014-06-02 22:24 - 2000-08-31 02:00 - 00068096 _____ () C:\Windows\zip.exe
2014-06-02 22:23 - 2014-06-02 22:48 - 00000000 ____D () C:\Qoobox
2014-06-02 22:23 - 2014-06-02 22:45 - 00000000 ____D () C:\Windows\erdnt
2014-06-02 22:22 - 2014-06-02 22:22 - 00003270 _____ () C:\Windows\System32\Tasks\{61E11501-7EEC-4099-A09C-1BFD04EB0F7C}
2014-06-02 22:20 - 2014-06-02 22:20 - 05203398 ____R (Swearware) C:\Users\Sinitta\Desktop\ComboFix.exe
2014-06-02 22:13 - 2014-06-02 22:13 - 00001230 _____ () C:\Users\Sinitta\Desktop\Revo Uninstaller.lnk
2014-06-02 22:13 - 2014-06-02 22:13 - 00000000 ____D () C:\Program Files (x86)\VS Revo Group
2014-06-02 21:19 - 2014-06-02 21:30 - 00033174 _____ () C:\Users\Sinitta\Desktop\Addition.txt
2014-06-02 21:17 - 2014-06-04 20:12 - 00000000 ____D () C:\FRST
2014-06-02 21:17 - 2014-06-04 20:11 - 00015924 _____ () C:\Users\Sinitta\Desktop\FRST.txt
2014-06-02 21:15 - 2014-06-02 21:15 - 02068992 _____ (Farbar) C:\Users\Sinitta\Desktop\FRST64.exe
2014-06-02 21:14 - 2014-06-02 21:14 - 00000476 _____ () C:\Users\Sinitta\Desktop\defogger_disable.log
2014-06-02 21:14 - 2014-06-02 21:14 - 00000000 _____ () C:\Users\Sinitta\defogger_reenable
2014-06-02 21:13 - 2014-06-02 21:13 - 00050477 _____ () C:\Users\Sinitta\Desktop\Defogger.exe
2014-06-02 20:59 - 2014-06-02 20:59 - 00012746 _____ () C:\Users\Sinitta\Desktop\avira scan.txt
2014-06-02 17:05 - 2014-05-07 14:59 - 00264616 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe
2014-06-02 17:04 - 2014-05-07 15:02 - 00098216 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2014-06-02 17:04 - 2014-05-07 14:59 - 00175528 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe
2014-06-02 17:04 - 2014-05-07 14:58 - 00175528 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe
2014-06-02 17:02 - 2014-06-02 17:04 - 00005661 _____ () C:\Windows\SysWOW64\jupdate-1.7.0_60-b19.log
2014-05-24 23:25 - 2014-05-24 23:25 - 493742062 _____ () C:\Windows\MEMORY.DMP
2014-05-24 23:25 - 2014-05-24 23:25 - 00278000 _____ () C:\Windows\Minidump\052414-28610-01.dmp
2014-05-24 23:05 - 2014-06-04 20:02 - 00001693 _____ () C:\Windows\setupact.log
2014-05-24 23:05 - 2014-05-24 23:05 - 00000000 _____ () C:\Windows\setuperr.log
2014-05-24 22:47 - 2014-05-24 22:47 - 00006124 _____ () C:\Users\Sinitta\Desktop\startup.txt
2014-05-24 21:56 - 2014-05-24 21:56 - 00002776 _____ () C:\Windows\System32\Tasks\CCleanerSkipUAC
2014-05-24 21:56 - 2014-05-24 21:56 - 00000824 _____ () C:\Users\Public\Desktop\CCleaner.lnk
2014-05-24 21:56 - 2014-05-24 21:56 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2014-05-24 21:56 - 2014-05-24 21:56 - 00000000 ____D () C:\Program Files\CCleaner
2014-05-23 22:06 - 2014-05-23 22:06 - 17938608 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerInstaller.exe
2014-05-22 22:10 - 2014-05-22 22:10 - 00000000 ____D () C:\11019dd6440be53efb6a
==================== One Month Modified Files and Folders =======
2014-06-04 20:13 - 2014-06-02 21:17 - 00015924 _____ () C:\Users\Sinitta\Desktop\FRST.txt
2014-06-04 20:13 - 2010-03-09 21:54 - 00000000 ____D () C:\Users\Sinitta\AppData\Local\Temp
2014-06-04 20:13 - 2009-07-14 06:45 - 00014016 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-06-04 20:13 - 2009-07-14 06:45 - 00014016 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-06-04 20:12 - 2014-06-02 21:17 - 00000000 ____D () C:\FRST
2014-06-04 20:12 - 2010-03-05 15:04 - 00000000 ____D () C:\Program Files (x86)\McAfee
2014-06-04 20:11 - 2010-03-05 15:04 - 00000000 ____D () C:\ProgramData\McAfee
2014-06-04 20:03 - 2010-08-21 14:37 - 00001108 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2014-06-04 20:03 - 2010-03-05 14:56 - 00000000 ____D () C:\Program Files (x86)\Dell DataSafe Local Backup
2014-06-04 20:02 - 2014-05-24 23:05 - 00001693 _____ () C:\Windows\setupact.log
2014-06-04 20:02 - 2009-07-14 07:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-06-04 20:01 - 2014-06-03 20:35 - 00026532 _____ () C:\Windows\PFRO.log
2014-06-03 22:39 - 2009-07-14 07:10 - 01969266 _____ () C:\Windows\WindowsUpdate.log
2014-06-03 21:57 - 2010-08-21 14:37 - 00001112 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2014-06-03 21:54 - 2012-04-01 11:25 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-06-03 21:50 - 2014-06-03 21:50 - 01016261 _____ (Thisisu) C:\Users\Sinitta\Desktop\JRT.exe
2014-06-03 21:46 - 2014-06-03 21:46 - 00005568 _____ () C:\Users\Sinitta\Desktop\AdwCleaner[S0].txt
2014-06-03 21:45 - 2014-06-03 21:04 - 00122584 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2014-06-03 21:44 - 2010-03-09 21:57 - 00000000 ____D () C:\Users\Sinitta\AppData\Local\SoftThinks
2014-06-03 21:44 - 2010-03-09 21:57 - 00000000 ____D () C:\Users\Default\AppData\Local\SoftThinks
2014-06-03 21:44 - 2010-03-09 21:57 - 00000000 ____D () C:\Users\Default User\AppData\Local\SoftThinks
2014-06-03 21:41 - 2013-12-08 13:31 - 00000000 ____D () C:\AdwCleaner
2014-06-03 21:41 - 2010-03-09 22:44 - 00000000 ____D () C:\ProgramData\ICQ
2014-06-03 21:38 - 2014-06-03 21:38 - 00048102 _____ () C:\Users\Sinitta\Desktop\mbam.txt
2014-06-03 21:37 - 2014-06-03 21:37 - 00048119 _____ () C:\Users\Sinitta\Desktop\Malwarebytes Suchlauf.txt
2014-06-03 21:03 - 2014-06-03 21:03 - 00001068 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2014-06-03 21:03 - 2014-06-03 21:03 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2014-06-03 21:03 - 2014-06-03 21:03 - 00000000 ____D () C:\Program Files (x86)\Malwarebytes Anti-Malware
2014-06-03 21:03 - 2013-08-04 22:39 - 00000000 ____D () C:\ProgramData\Malwarebytes
2014-06-03 20:59 - 2014-06-03 20:59 - 01327971 _____ () C:\Users\Sinitta\Desktop\adwcleaner_3.211.exe
2014-06-03 20:42 - 2010-03-09 23:34 - 00003946 _____ () C:\Windows\System32\Tasks\User_Feed_Synchronization-{C71FDB80-5030-4896-B6DA-B1B75E04D210}
2014-06-03 20:41 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\NDF
2014-06-02 23:11 - 2010-11-09 20:08 - 00000000 ____D () C:\Users\Sinitta\AppData\Roaming\Skype
2014-06-02 22:48 - 2014-06-02 22:48 - 00021873 _____ () C:\ComboFix.txt
2014-06-02 22:48 - 2014-06-02 22:48 - 00000000 ____D () C:\Users\Public\AppData\Local\temp
2014-06-02 22:48 - 2014-06-02 22:48 - 00000000 ____D () C:\Users\Default\AppData\Local\temp
2014-06-02 22:48 - 2014-06-02 22:48 - 00000000 ____D () C:\Users\Default User\AppData\Local\temp
2014-06-02 22:48 - 2014-06-02 22:23 - 00000000 ____D () C:\Qoobox
2014-06-02 22:48 - 2009-07-14 05:20 - 00000000 __RHD () C:\Users\Default
2014-06-02 22:45 - 2014-06-02 22:23 - 00000000 ____D () C:\Windows\erdnt
2014-06-02 22:44 - 2011-09-06 20:24 - 00001146 _____ () C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2507623652-1542659017-3101991456-1001UA.job
2014-06-02 22:43 - 2009-07-14 04:34 - 00000215 _____ () C:\Windows\system.ini
2014-06-02 22:22 - 2014-06-02 22:22 - 00003270 _____ () C:\Windows\System32\Tasks\{61E11501-7EEC-4099-A09C-1BFD04EB0F7C}
2014-06-02 22:20 - 2014-06-02 22:20 - 05203398 ____R (Swearware) C:\Users\Sinitta\Desktop\ComboFix.exe
2014-06-02 22:14 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\rescache
2014-06-02 22:13 - 2014-06-02 22:13 - 00001230 _____ () C:\Users\Sinitta\Desktop\Revo Uninstaller.lnk
2014-06-02 22:13 - 2014-06-02 22:13 - 00000000 ____D () C:\Program Files (x86)\VS Revo Group
2014-06-02 21:30 - 2014-06-02 21:19 - 00033174 _____ () C:\Users\Sinitta\Desktop\Addition.txt
2014-06-02 21:15 - 2014-06-02 21:15 - 02068992 _____ (Farbar) C:\Users\Sinitta\Desktop\FRST64.exe
2014-06-02 21:14 - 2014-06-02 21:14 - 00000476 _____ () C:\Users\Sinitta\Desktop\defogger_disable.log
2014-06-02 21:14 - 2014-06-02 21:14 - 00000000 _____ () C:\Users\Sinitta\defogger_reenable
2014-06-02 21:14 - 2010-03-09 21:54 - 00000000 ____D () C:\Users\Sinitta
2014-06-02 21:13 - 2014-06-02 21:13 - 00050477 _____ () C:\Users\Sinitta\Desktop\Defogger.exe
2014-06-02 20:59 - 2014-06-02 20:59 - 00012746 _____ () C:\Users\Sinitta\Desktop\avira scan.txt
2014-06-02 17:14 - 2013-05-25 21:22 - 00003440 _____ () C:\Windows\System32\Tasks\PCDEventLauncherTask
2014-06-02 17:05 - 2013-10-20 12:19 - 00000000 ____D () C:\ProgramData\Oracle
2014-06-02 17:04 - 2014-06-02 17:02 - 00005661 _____ () C:\Windows\SysWOW64\jupdate-1.7.0_60-b19.log
2014-06-02 17:04 - 2010-03-05 14:47 - 00000000 ____D () C:\Program Files (x86)\Java
2014-05-26 20:51 - 2013-05-25 21:20 - 00000000 ____D () C:\Program Files\My Dell
2014-05-26 20:51 - 2010-03-05 14:57 - 00000000 ____D () C:\ProgramData\PCDr
2014-05-24 23:25 - 2014-05-24 23:25 - 493742062 _____ () C:\Windows\MEMORY.DMP
2014-05-24 23:25 - 2014-05-24 23:25 - 00278000 _____ () C:\Windows\Minidump\052414-28610-01.dmp
2014-05-24 23:25 - 2010-05-07 19:13 - 00000000 ____D () C:\Windows\Minidump
2014-05-24 23:05 - 2014-05-24 23:05 - 00000000 _____ () C:\Windows\setuperr.log
2014-05-24 23:05 - 2009-07-14 07:08 - 00032632 _____ () C:\Windows\Tasks\SCHEDLGU.TXT
2014-05-24 22:59 - 2013-08-15 16:45 - 00000000 ____D () C:\Windows\system32\MRT
2014-05-24 22:56 - 2010-04-04 20:59 - 93223848 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-05-24 22:47 - 2014-05-24 22:47 - 00006124 _____ () C:\Users\Sinitta\Desktop\startup.txt
2014-05-24 22:47 - 2010-03-09 21:57 - 00000000 ___RD () C:\Users\Sinitta\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
2014-05-24 22:24 - 2013-11-13 00:35 - 00000000 ____D () C:\Users\Sinitta\AppData\Roaming\TS3Client
2014-05-24 22:24 - 2010-03-09 22:38 - 00000000 ____D () C:\Users\Sinitta\Tracing
2014-05-24 22:24 - 2010-03-05 16:22 - 00000000 ____D () C:\Windows\Panther
2014-05-24 21:56 - 2014-05-24 21:56 - 00002776 _____ () C:\Windows\System32\Tasks\CCleanerSkipUAC
2014-05-24 21:56 - 2014-05-24 21:56 - 00000824 _____ () C:\Users\Public\Desktop\CCleaner.lnk
2014-05-24 21:56 - 2014-05-24 21:56 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2014-05-24 21:56 - 2014-05-24 21:56 - 00000000 ____D () C:\Program Files\CCleaner
2014-05-23 22:10 - 2013-03-18 19:04 - 00000000 ____D () C:\Program Files\Microsoft Silverlight
2014-05-23 22:10 - 2013-03-18 19:04 - 00000000 ____D () C:\Program Files (x86)\Microsoft Silverlight
2014-05-23 22:07 - 2012-04-01 11:25 - 00692400 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2014-05-23 22:07 - 2012-04-01 11:25 - 00003822 _____ () C:\Windows\System32\Tasks\Adobe Flash Player Updater
2014-05-23 22:07 - 2011-06-08 16:48 - 00070832 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2014-05-23 22:06 - 2014-05-23 22:06 - 17938608 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerInstaller.exe
2014-05-23 22:06 - 2011-09-06 20:24 - 00001124 _____ () C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2507623652-1542659017-3101991456-1001Core.job
2014-05-22 22:11 - 2011-08-13 16:02 - 01622244 _____ () C:\Windows\SysWOW64\PerfStringBackup.INI
2014-05-22 22:11 - 2009-07-14 19:58 - 00709342 _____ () C:\Windows\system32\perfh007.dat
2014-05-22 22:11 - 2009-07-14 19:58 - 00154846 _____ () C:\Windows\system32\perfc007.dat
2014-05-22 22:11 - 2009-07-14 07:13 - 01622244 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-05-22 22:10 - 2014-05-22 22:10 - 00000000 ____D () C:\11019dd6440be53efb6a
2014-05-22 22:00 - 2013-03-18 19:06 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
2014-05-22 21:52 - 2010-08-21 14:37 - 00004108 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2014-05-22 21:52 - 2010-08-21 14:37 - 00003856 _____ () C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2014-05-12 07:26 - 2014-06-03 21:03 - 00091352 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2014-05-12 07:26 - 2014-06-03 21:03 - 00063704 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2014-05-12 07:25 - 2014-06-03 21:03 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2014-05-07 15:02 - 2014-06-02 17:04 - 00098216 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2014-05-07 14:59 - 2014-06-02 17:05 - 00264616 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaws.exe
2014-05-07 14:59 - 2014-06-02 17:04 - 00175528 _____ (Oracle Corporation) C:\Windows\SysWOW64\javaw.exe
2014-05-07 14:58 - 2014-06-02 17:04 - 00175528 _____ (Oracle Corporation) C:\Windows\SysWOW64\java.exe
Some content of TEMP:
====================
C:\Users\Sinitta\AppData\Local\Temp\0165651401825327mcinst.exe
C:\Users\Sinitta\AppData\Local\Temp\avgnt.exe
C:\Users\Sinitta\AppData\Local\Temp\Quarantine.exe
==================== Bamital & volsnap Check =================
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\rpcss.dll => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
LastRegBack: 2014-06-02 22:02
==================== End Of Log ============================ --- --- --- |