Hallo,
vielen Dank für's Durchschauen!
Hier sind die Dateien.
Grüße,
Susan Code:
Malwarebytes Anti-Malware
www.malwarebytes.org
Suchlauf Datum: 27.12.2014
Suchlauf-Zeit: 20:18:53
Logdatei: mbam.txt
Administrator: Ja
Version: 2.00.4.1028
Malware Datenbank: v2014.12.27.06
Rootkit Datenbank: v2014.12.23.02
Lizenz: Kostenlos
Malware Schutz: Deaktiviert
Bˆsartiger Webseiten Schutz: Deaktiviert
Selbstschutz: Deaktiviert
Betriebssystem: Windows 7 Service Pack 1
CPU: x86
Dateisystem: NTFS
Benutzer: Otto
Suchlauf-Art: Bedrohungs-Suchlauf
Ergebnis: Abgeschlossen
Durchsuchte Objekte: 440520
Verstrichene Zeit: 35 Min, 19 Sek
Speicher: Aktiviert
Autostart: Aktiviert
Dateisystem: Aktiviert
Archive: Aktiviert
Rootkits: Deaktiviert
Heuristik: Aktiviert
PUP: Aktiviert
PUM: Aktiviert
Prozesse: 0
(Keine sch‰dliche Elemente erkannt)
Module: 0
(Keine sch‰dliche Elemente erkannt)
Registrierungsschl¸ssel: 15
PUP.Optional.SupTab.A, HKLM\SOFTWARE\WOW6432NODE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\BROWSER HELPER OBJECTS\{3593C8B9-8E18-4B4B-B7D3-CB8BEB1AA42C}, In Quarant‰ne, [13bf89dea5d7aa8c4b70706e1ae8837d],
PUP.Optional.ClickCaption.A, HKLM\SOFTWARE\ClickCaption_1.10.0.2, In Quarant‰ne, [3c96412665176dc9578a98cbbb489769],
PUP.Optional.Delta.A, HKLM\SOFTWARE\delta-homesSoftware, In Quarant‰ne, [4f83e186e498bb7b3ee1492dbc47b848],
PUP.Optional.WPM.A, HKLM\SOFTWARE\supWindowsMangerProtect, In Quarant‰ne, [af23f6715527fd397ea714c2ca3a02fe],
PUP.Optional.SupTab.A, HKLM\SOFTWARE\supWPM, In Quarant‰ne, [2ca684e36913ac8a0aea84eca85b3cc4],
PUP.Optional.SweetPage.A, HKLM\SOFTWARE\sweet-pageSoftware, In Quarant‰ne, [c80a7aeddba1b68014958f3b18ec0ef2],
PUP.Optional.Qone8, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{33BB0A4E-99AF-4226-BDF6-49120163DE86}, In Quarant‰ne, [f0e2c0a7b0ccd363d3fa6f52d232dc24],
PUP.Optional.SupTab.A, HKLM\SOFTWARE\SUPTAB, In Quarant‰ne, [6c66cf98e696023406edf779ab589f61],
PUP.Optional.ClickCaption.A, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\ccnfd_1_10_0_2, In Quarant‰ne, [458db8afec90a39333ac065dc63d30d0],
PUP.Optional.IEPluginServices.A, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\EVENTLOG\APPLICATION\IePluginServices, In Quarant‰ne, [9042095e0c705cdaa176c5a1fe05c53b],
PUP.Optional.WindowsMangerProtect.A, HKLM\SYSTEM\CURRENTCONTROLSET\SERVICES\EVENTLOG\APPLICATION\WindowsMangerProtect, In Quarant‰ne, [696972f51f5dae8832e62d39eb186f91],
PUP.Optional.WebSearches.A, HKU\S-1-5-21-2147501379-2396807299-2922006312-1003-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\SupHpUISoft, In Quarant‰ne, [cf03194e1a62ff374e55383a9c677a86],
PUP.Optional.InstallCore.A, HKU\S-1-5-21-2147501379-2396807299-2922006312-1003-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\INSTALLCORE\1I1T1Q1S, In Quarant‰ne, [8949b7b0156750e6a28209977390ff01],
PUP.Optional.InstallCore.A, HKU\S-1-5-21-2147501379-2396807299-2922006312-1003-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\INSTALLCORE, In Quarant‰ne, [d002a1c60d6fb3830936b600dc283fc1],
PUP.Optional.Qone8, HKU\S-1-5-21-2147501379-2396807299-2922006312-1003-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES\{33BB0A4E-99AF-4226-BDF6-49120163DE86}, In Quarant‰ne, [577b1d4abfbd1224913bdfe2b74df808],
Registrierungswerte: 4
PUP.Optional.FastStart.A, HKLM\SOFTWARE\MOZILLA\FIREFOX\EXTENSIONS|faststartff@gmail.com, C:\Users\Otto\AppData\Roaming\Mozilla\Firefox\Profiles\d3k8asy5.default\extensions\faststartff@gmail.com, In Quarant‰ne, [c40e085f1c60b0863c0307ce976d5fa1]
PUP.Optional.ClickCaption.A, HKLM\SOFTWARE\MOZILLA\FIREFOX\EXTENSIONS|{190bc294-c8e5-471c-9466-3eb945b09542}, C:\Program Files\Mozilla Firefox\extensions\{190bc294-c8e5-471c-9466-3eb945b09542}, In Quarant‰ne, [6b6710570f6d67cf9e44392a3ac9768a]
PUP.Optional.SupTab.A, HKLM\SOFTWARE\SUPTAB|ptid, cor, In Quarant‰ne, [6c66cf98e696023406edf779ab589f61]
PUP.Optional.InstallCore.A, HKU\S-1-5-21-2147501379-2396807299-2922006312-1003-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\INSTALLCORE|tb, 0N2X1N, In Quarant‰ne, [d002a1c60d6fb3830936b600dc283fc1]
Registrierungsdaten: 6
PUP.Optional.Delta.A, HKLM\SOFTWARE\CLIENTS\STARTMENUINTERNET\FIREFOX.EXE\SHELL\OPEN\COMMAND, "C:\Program Files\Mozilla Firefox\firefox.exe" hxxp://www.delta-homes.com/?type=sc&ts=1418371158&from=wpm12123&uid=TOSHIBAXMK5055GSX_49JAP0K5TXX49JAP0K5T, Gut: (firefox.exe), Schlecht: ("C:\Program Files\Mozilla Firefox\firefox.exe" hxxp://www.delta-homes.com/?type=sc&ts=1418371158&from=wpm12123&uid=TOSHIBAXMK5055GSX_49JAP0K5TXX49JAP0K5T),Ersetzt,[4a88b4b3f18b92a428f9423e8f76e719]
PUP.Optional.Delta.A, HKLM\SOFTWARE\CLIENTS\STARTMENUINTERNET\GOOGLE CHROME\SHELL\OPEN\COMMAND, "C:\Users\susan\AppData\Local\Google\Chrome\Application\chrome.exe" hxxp://www.delta-homes.com/?type=sc&ts=1418371158&from=wpm12123&uid=TOSHIBAXMK5055GSX_49JAP0K5TXX49JAP0K5T, Gut: (Chrome.exe), Schlecht: ("C:\Users\susan\AppData\Local\Google\Chrome\Application\chrome.exe" hxxp://www.delta-homes.com/?type=sc&ts=1418371158&from=wpm12123&uid=TOSHIBAXMK5055GSX_49JAP0K5TXX49JAP0K5T),Ersetzt,[cd05baad4c30f6409a8a443c9f669d63]
PUP.Optional.Delta.A, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Start Page, hxxp://www.delta-homes.com/?type=hp&ts=1418371158&from=wpm12123&uid=TOSHIBAXMK5055GSX_49JAP0K5TXX49JAP0K5T, Gut: (www.google.com), Schlecht: (hxxp://www.delta-homes.com/?type=hp&ts=1418371158&from=wpm12123&uid=TOSHIBAXMK5055GSX_49JAP0K5TXX49JAP0K5T),Ersetzt,[d9f9bcab7ffd93a32fec90f08b7a3bc5]
PUP.Optional.Qone8, HKLM\SOFTWARE\MICROSOFT\INTERNET EXPLORER\SEARCHSCOPES|DefaultScope, {33BB0A4E-99AF-4226-BDF6-49120163DE86}, Gut: ({0633EE93-D776-472f-A0FF-E1416B8B2E3A}), Schlecht: ({33BB0A4E-99AF-4226-BDF6-49120163DE86}),Ersetzt,[a0320a5d9fdd4ee826f20d724fb62fd1]
PUP.Optional.Delta.A, HKU\S-1-5-21-2147501379-2396807299-2922006312-1003-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Start Page, hxxp://www.delta-homes.com/?type=hp&ts=1418371158&from=wpm12123&uid=TOSHIBAXMK5055GSX_49JAP0K5TXX49JAP0K5T, Gut: (www.google.com), Schlecht: (hxxp://www.delta-homes.com/?type=hp&ts=1418371158&from=wpm12123&uid=TOSHIBAXMK5055GSX_49JAP0K5TXX49JAP0K5T),Ersetzt,[686a481f27551e1872aa4f3131d4da26]
PUP.Optional.Delta.A, HKU\S-1-5-21-2147501379-2396807299-2922006312-1003-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-0\SOFTWARE\MICROSOFT\INTERNET EXPLORER\MAIN|Default_Search_URL, hxxp://search.delta-homes.com/web/?type=ds&ts=1418371158&from=wpm12123&uid=TOSHIBAXMK5055GSX_49JAP0K5TXX49JAP0K5T&q={searchTerms}, Gut: (www.google.com), Schlecht: (hxxp://search.delta-homes.com/web/?type=ds&ts=1418371158&from=wpm12123&uid=TOSHIBAXMK5055GSX_49JAP0K5TXX49JAP0K5T&q={searchTerms}),Ersetzt,[28aa85e26913fd3920fa60201ee7b947]
Ordner: 14
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\index-dir, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\databases, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\GPUCache, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\IndexedDB, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\IndexedDB\file__0.indexeddb.leveldb, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Local Storage, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.IePluginServices.A, C:\ProgramData\IePluginServices, In Quarant‰ne, [2fa38add1b612610fefd0a32857eca36],
PUP.Optional.IePluginServices.A, C:\ProgramData\IePluginServices\update, In Quarant‰ne, [2fa38add1b612610fefd0a32857eca36],
PUP.Optional.SecurityProtection.A, C:\Users\Otto\AppData\Local\Google\Chrome\User Data\Default\Extensions\noajmlkipclmeolfcnflkjhijkigpfjh, In Quarant‰ne, [943e1f48a0dcf6406d896ee9c63dd22e],
PUP.Optional.SecurityProtection.A, C:\Users\Otto\AppData\Local\Google\Chrome\User Data\Default\Extensions\noajmlkipclmeolfcnflkjhijkigpfjh\1.2.0_0, In Quarant‰ne, [943e1f48a0dcf6406d896ee9c63dd22e],
PUP.Optional.SecurityProtection.A, C:\Users\Otto\AppData\Local\Google\Chrome\User Data\Default\Extensions\noajmlkipclmeolfcnflkjhijkigpfjh\1.2.0_0\js, In Quarant‰ne, [943e1f48a0dcf6406d896ee9c63dd22e],
PUP.Optional.SecurityProtection.A, C:\Users\Otto\AppData\Local\Google\Chrome\User Data\Default\Extensions\noajmlkipclmeolfcnflkjhijkigpfjh\1.2.0_0\_metadata, In Quarant‰ne, [943e1f48a0dcf6406d896ee9c63dd22e],
Dateien: 231
PUP.Optional.OpenCandy, C:\Users\susan\Downloads\winamp5601_full_emusic-7plus_de-de(2).exe, In Quarant‰ne, [d200095eb6c6ba7c78c84560c1446c94],
PUP.Optional.Delta.A, C:\Program Files\Mozilla Firefox\browser\searchplugins\delta-homes.xml, In Quarant‰ne, [60721d4a5d1fcb6b8033403f689b5ca4],
PUP.Optional.SweetPage.A, C:\Program Files\Mozilla Firefox\browser\searchplugins\sweet-page.xml, In Quarant‰ne, [c30f5a0d90ecc6701791b911ea1a639d],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\QuotaManager-journal, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\cookies, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\cookies-journal, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\QuotaManager, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\website.ico, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\036d020b2cdf5203_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\05105909ca3729eb_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\05ff7aa027ded9b9_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\06103210ae5eb92b_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\0898a7127ee82f8f_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\08bec7baf02dd388_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\08c21ec8e180d24c_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\0c66f4929d4f9120_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\0d1f5fd2895c370d_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\0fe10c155d931070_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\1041015f9233625e_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\7555befc57c15e2e_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\76b7e83952edbb87_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\789cbf064c5319f3_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\7c000d76bf1f0157_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\7cc07ed3c66ea2df_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\7cfd55575bea9165_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\7d8223921aacb861_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\7df5781bee4c5b95_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\7fbd118247d39234_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\80978c8a24edf33c_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\8224ac356c381ff2_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\824b3be138fb8bba_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\83ea9296e607c97b_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\83ed9f2971131c74_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\34c65f273f242ede_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\38628010c0fdbeaf_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\3948342281b7053d_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\42a0acde84bf9112_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\4353d92b5ee2d173_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\43f04d8771c752b1_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\44059a10032b2e39_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\44cb828d4f3541a9_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\bb2481b9fc852316_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\bd11394dbf307379_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\bd718c23cb8e65df_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\bf7670aee4c3f5a9_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\c12f28555f02d0a9_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\c19d0db36a37dee0_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\c1aad3e247c8b661_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\c251b82ef6773921_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\c63d8bbef1db0b75_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\c89f38f36e14b01c_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\c97e1c023a3691fd_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\caa76a608f3c365a_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\df9ebf631bc8e354_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\e0ea107913adae0a_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\e151776eaff82dea_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\e1cdca04d9b27cf4_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\e52ce22c41c35c20_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\e5e7027501585977_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\e685b2ebc644ef56_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\e7d409b5bbec4258_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\e8db221e4eb41681_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\e8e2ce151826761e_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\e96840897e658496_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\ea34829245485817_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\8a89305e64fa0dc3_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\8b8e48c05eb33ff5_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\8bec6f03b5cdc1d8_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\8d75d0e7b59259a4_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\8d9b7f9ce7bfa5d2_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\92233babc21bd554_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\940a565efda6a76c_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\94615c9a6099d7d2_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\95ddd53adf512dbc_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\9873f2673c3d8526_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\9a1d1e0aea752a23_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\9a7f0e51e84c3ae9_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\9ae29e3aa2842aa4_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\9b2d4542638c8d16_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\9c7627e2abfdccd9_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\a065ea28bfbf4d0b_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\a103d8fc865402b9_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\a2a95531eff70714_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\2bb0aa6672fdbc9b_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\327e2f346370c855_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\455d361fa9a08c12_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\59a08c480a10410e_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\6823e0275be75b4c_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\74b6532e520da7e8_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\b970c3c215364457_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\cd1acf2b56f07960_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\de3ec9ddc2b44a14_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\eb604a4dc7bc84a2_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\1db229f80ff306ba_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\1e1a501785a433c5_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\20d08ebe23d790a4_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\213fbc63a47503d0_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\21b371bb179df407_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\21c75f1e6ce1ac3b_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\23f54f98f614ef01_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\25aba580c575808f_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\27528875bfe556ae_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\59f8199c46c0ac72_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\5b13f2669dfc7b01_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\5dff393ec3870f4e_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\5ff63e69bbe8fa3c_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\60ee96898e7ee95b_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\61a0c76a89c7ed26_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\64b1fea5d9e077e0_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\668acd6a85aad0a5_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\67b8233399ef3c0a_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\a4c5fdf87a1189f1_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\a67a7318862561a7_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\a682a844981d4e40_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\a78ce1837405dde0_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\a8d39bd6a3465001_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\aa8a311b12a87a1e_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\aa8bbc37287750f0_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\aaeefa4ab6eecc50_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\abca5ead98f941cb_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\b55713705711f672_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\b77c0e6a20b8b49f_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\b8c466e21683a405_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\cd4f2eb6ae4f0570_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\ce6fbf4de7522baf_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\d0157be97375e6fd_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\d0366b73f7b2ed1e_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\d09c1807079dd139_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\d3c58d3a88f5618a_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\d446f7f377e8480e_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\d5b51cb60b12967f_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\d6cbc4010a074471_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\d71ebf43ce50c9a1_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\d967c6ab41277dea_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\d9a56f39095d6987_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\d9ba3aa2fec10a15_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\eb6c84d93c82f411_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\ebfd932e35eb1606_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\ecfb11388b7aa485_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\ed6e544ff7a192f9_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\ee0215426d0ad7d5_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\ee368c55bdf4deb0_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\f17decc5b8af3a2e_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\f46ef614eb031020_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\f4861a7328e2a39e_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\f7a72a7b132e4405_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\f7e80ad0c13bc2ca_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\fcaf8670be400ffd_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\index, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\847e82c757420ef1_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\8518c67b42278061_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\86285c0e2a5ab7a8_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\86857a158574311e_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\87bf08b981fcf8bc_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\87f49684ec77da2b_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\87f5d729fe63efaa_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\88a5ce0c4a3c4fbe_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\8a2abd4eed83e9d6_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\1078a7104724118b_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\10e2ed4365d40c6e_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\12f73017bddeef3c_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\15c71719e3145bc2_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\18f9fa7cafbbc649_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\1a545cf36f88b578_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\1a97c4f174a39b46_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\1bb8bfffa09b3d63_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\1c8b9c6fb09b945f_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\1dafb2ed7113577d_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\2c731c2bc625b37d_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\2d5e1e7a317b7939_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\2d94a856d05883ea_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\2ed7a48cdf691d09_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\2f31fb8e4a00086c_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\2f49387f6de58178_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\305fcbb0ccbceb0d_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\315a39b606bc4359_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\6a46777b47d8863e_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\6bf3090eafa52352_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\6c281e881b84b6f6_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\6e38abbb47ff7603_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\6f08f27c19b0b2f7_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\7074d36e22be148f_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\717089685b09b5d3_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\724344affef6866f_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\74705bfc25daac49_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\47cff2ba15008159_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\4927ec7ef8187f4b_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\493687ceb90709b1_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\4a7bc33e9112b013_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\4b62fe917181ed62_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\4bcf00830fff346e_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\4ecd108d70996667_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\5033b9c685c92229_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\5620cf96a4a004c5_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Cache\index-dir\the-real-index, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\databases\Databases.db, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\databases\Databases.db-journal, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\GPUCache\data_0, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\GPUCache\data_1, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\GPUCache\data_2, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\GPUCache\data_3, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\GPUCache\index, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\IndexedDB\file__0.indexeddb.leveldb\000005.bak, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\IndexedDB\file__0.indexeddb.leveldb\000005.ldb, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\IndexedDB\file__0.indexeddb.leveldb\000008.bak, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\IndexedDB\file__0.indexeddb.leveldb\000008.ldb, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\IndexedDB\file__0.indexeddb.leveldb\000011.bak, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\IndexedDB\file__0.indexeddb.leveldb\000011.ldb, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\IndexedDB\file__0.indexeddb.leveldb\000014.bak, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\IndexedDB\file__0.indexeddb.leveldb\000014.ldb, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\IndexedDB\file__0.indexeddb.leveldb\000015.log, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\IndexedDB\file__0.indexeddb.leveldb\000016.bak, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\IndexedDB\file__0.indexeddb.leveldb\000016.ldb, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\IndexedDB\file__0.indexeddb.leveldb\CURRENT, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\IndexedDB\file__0.indexeddb.leveldb\LOCK, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\IndexedDB\file__0.indexeddb.leveldb\LOG, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\IndexedDB\file__0.indexeddb.leveldb\LOG.old, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\IndexedDB\file__0.indexeddb.leveldb\MANIFEST-000013, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Local Storage\file__0.localstorage, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.Gameo.A, C:\Users\Otto\AppData\Local\Gameo\Local Storage\file__0.localstorage-journal, In Quarant‰ne, [d8fa5b0c2359e94d3c8324ad8282bd43],
PUP.Optional.IePluginServices.A, C:\ProgramData\IePluginServices\update\conf, In Quarant‰ne, [2fa38add1b612610fefd0a32857eca36],
PUP.Optional.SecurityProtection.A, C:\Users\Otto\AppData\Local\Google\Chrome\User Data\Default\Extensions\noajmlkipclmeolfcnflkjhijkigpfjh\1.2.0_0\background.html, In Quarant‰ne, [943e1f48a0dcf6406d896ee9c63dd22e],
PUP.Optional.SecurityProtection.A, C:\Users\Otto\AppData\Local\Google\Chrome\User Data\Default\Extensions\noajmlkipclmeolfcnflkjhijkigpfjh\1.2.0_0\icon128.png, In Quarant‰ne, [943e1f48a0dcf6406d896ee9c63dd22e],
PUP.Optional.SecurityProtection.A, C:\Users\Otto\AppData\Local\Google\Chrome\User Data\Default\Extensions\noajmlkipclmeolfcnflkjhijkigpfjh\1.2.0_0\manifest.json, In Quarant‰ne, [943e1f48a0dcf6406d896ee9c63dd22e],
PUP.Optional.SecurityProtection.A, C:\Users\Otto\AppData\Local\Google\Chrome\User Data\Default\Extensions\noajmlkipclmeolfcnflkjhijkigpfjh\1.2.0_0\js\background.js, In Quarant‰ne, [943e1f48a0dcf6406d896ee9c63dd22e],
PUP.Optional.SecurityProtection.A, C:\Users\Otto\AppData\Local\Google\Chrome\User Data\Default\Extensions\noajmlkipclmeolfcnflkjhijkigpfjh\1.2.0_0\js\det.js, In Quarant‰ne, [943e1f48a0dcf6406d896ee9c63dd22e],
PUP.Optional.SecurityProtection.A, C:\Users\Otto\AppData\Local\Google\Chrome\User Data\Default\Extensions\noajmlkipclmeolfcnflkjhijkigpfjh\1.2.0_0\js\inject.js, In Quarant‰ne, [943e1f48a0dcf6406d896ee9c63dd22e],
PUP.Optional.SecurityProtection.A, C:\Users\Otto\AppData\Local\Google\Chrome\User Data\Default\Extensions\noajmlkipclmeolfcnflkjhijkigpfjh\1.2.0_0\js\jquery-1.11.1.min.js, In Quarant‰ne, [943e1f48a0dcf6406d896ee9c63dd22e],
PUP.Optional.SecurityProtection.A, C:\Users\Otto\AppData\Local\Google\Chrome\User Data\Default\Extensions\noajmlkipclmeolfcnflkjhijkigpfjh\1.2.0_0\_metadata\verified_contents.json, In Quarant‰ne, [943e1f48a0dcf6406d896ee9c63dd22e],
PUP.Optional.Delta.A, C:\Users\Otto\AppData\Local\Google\Chrome\User Data\Default\Preferences, Gut: (), Schlecht: ( "homepage": "hxxp://www.delta-homes.com/?type=hp&ts=1418371158&from=wpm12123&uid=TOSHIBAXMK5055GSX_49JAP0K5TXX49JAP0K5T",), Ersetzt,[d6fc98cf8af2f244bc297542d530946c]
PUP.Optional.Delta.A, C:\Users\Otto\AppData\Local\Google\Chrome\User Data\Default\Preferences, Gut: (), Schlecht: ( "search_url": "hxxp://search.delta-homes.com/web/?type=ds&ts=1418371158&from=wpm12123&uid=TOSHIBAXMK5055GSX_49JAP0K5TXX49JAP0K5T&q={searchTerms}"), Ersetzt,[90423c2b83f9bf779c4ae3d4ce3713ed]
Physische Sektoren: 0
(Keine sch‰dliche Elemente erkannt)
(end) Code:
# AdwCleaner v4.106 - Bericht erstellt am 27/12/2014 um 21:19:41
# Aktualisiert 21/12/2014 von Xplode
# Database : 2014-12-21.4 [Live]
# Betriebssystem : Windows 7 Professional Service Pack 1 (32 bits)
# Benutzername : Otto - LYKKE
# Gestartet von : C:\Users\Otto\Desktop\AdwCleaner_4.106.exe
# Option : Lˆschen
***** [ Dienste ] *****
***** [ Dateien / Ordner ] *****
Ordner Gelˆscht : C:\Program Files\WinZipper
Ordner Gelˆscht : C:\Users\Otto\AppData\Roaming\WinZipper
Ordner Gelˆscht : C:\Users\Otto\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl
Ordner Gelˆscht : C:\Users\susan\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl
***** [ Tasks ] *****
***** [ Verkn¸pfungen ] *****
Verkn¸pfung Desinfiziert : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
Verkn¸pfung Desinfiziert : C:\Users\Otto\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
Verkn¸pfung Desinfiziert : C:\Users\Otto\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk
Verkn¸pfung Desinfiziert : C:\Users\Otto\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk
Verkn¸pfung Desinfiziert : C:\Users\Otto\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Mozilla Firefox.lnk
***** [ Registrierungsdatenbank ] *****
Schl¸ssel Gelˆscht : HKLM\SOFTWARE\Google\Chrome\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl
Schl¸ssel Gelˆscht : HKCU\Software\Mozilla\Extends
Schl¸ssel Gelˆscht : HKLM\SOFTWARE\Classes\CLSID\{D2CE3E00-F94A-4740-988E-03DC2F38C34F}
Schl¸ssel Gelˆscht : HKLM\SOFTWARE\Classes\CLSID\{8DCB7100-DF86-4384-8842-8FA844297B3F}
Schl¸ssel Gelˆscht : HKLM\SOFTWARE\Classes\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Schl¸ssel Gelˆscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D2CE3E00-F94A-4740-988E-03DC2F38C34F}
Schl¸ssel Gelˆscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Schl¸ssel Gelˆscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D2CE3E00-F94A-4740-988E-03DC2F38C34F}
Schl¸ssel Gelˆscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{8DCB7100-DF86-4384-8842-8FA844297B3F}
Schl¸ssel Gelˆscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Schl¸ssel Gelˆscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{D2CE3E00-F94A-4740-988E-03DC2F38C34F}
Schl¸ssel Gelˆscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{8DCB7100-DF86-4384-8842-8FA844297B3F}
Schl¸ssel Gelˆscht : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Wert Gelˆscht : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{8DCB7100-DF86-4384-8842-8FA844297B3F}]
Schl¸ssel Gelˆscht : HKCU\Software\SecuredDownload
Schl¸ssel Gelˆscht : HKCU\Software\gameo
Schl¸ssel Gelˆscht : HKLM\SOFTWARE\hdcode
Schl¸ssel Gelˆscht : HKLM\SOFTWARE\V9
Schl¸ssel Gelˆscht : HKLM\SOFTWARE\winzipersvc
Schl¸ssel Gelˆscht : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{90120000-00B2-0409-0000-0000000FF1CE}
Schl¸ssel Gelˆscht : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\delta-homes.com
Schl¸ssel Gelˆscht : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\www.delta-homes.com
***** [ Browser ] *****
-\\ Internet Explorer v11.0.9600.17496
-\\ Mozilla Firefox v34.0.5 (x86 de)
[7i6f5wsc.default-1417030236078\prefs.js] - Zeile gelˆscht : user_pref("browser.newtab.url", "chrome://unitedtb/content/newtab/newtab-page.xhtml");
[7i6f5wsc.default-1417030236078\prefs.js] - Zeile gelˆscht : user_pref("browser.search.selectedEngine", "delta-homes");
-\\ Google Chrome v
[C:\Users\Otto\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Gelˆscht [Search Provider] : hxxp://search.delta-homes.com/web/?type=ds&ts=1418371158&from=wpm12123&uid=TOSHIBAXMK5055GSX_49JAP0K5TXX49JAP0K5T&q={searchTerms}
[C:\Users\Otto\AppData\Local\Google\Chrome\User Data\Default\preferences] - Gelˆscht [Extension] : lifbcibllhkdhoafpjfnlhfpfgnpldfl
[C:\Users\Otto\AppData\Local\Google\Chrome\User Data\Default\preferences] - Gelˆscht [Extension] : noajmlkipclmeolfcnflkjhijkigpfjh
[C:\Users\susan\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Gelˆscht [Search Provider] : hxxp://de.ask.com/web?q={searchTerms}
[C:\Users\susan\AppData\Local\Google\Chrome\User Data\Default\preferences] - Gelˆscht [Extension] : dhdepfaagokllfmhfbcfmocaeigmoebo
[C:\Users\susan\AppData\Local\Google\Chrome\User Data\Default\preferences] - Gelˆscht [Extension] : fbmimoidopbghbcmdmpkjaffffmcbmbg
[C:\Users\susan\AppData\Local\Google\Chrome\User Data\Default\preferences] - Gelˆscht [Extension] : hphibigbodkkohoglgfkddblldpfohjl
[C:\Users\susan\AppData\Local\Google\Chrome\User Data\Default\preferences] - Gelˆscht [Extension] : kdcnnmifdmlmjffdgeieikcokcogpbej
[C:\Users\susan\AppData\Local\Google\Chrome\User Data\Default\preferences] - Gelˆscht [Extension] : kincjchfokkeneeofpeefomkikfkiedl
[C:\Users\susan\AppData\Local\Google\Chrome\User Data\Default\preferences] - Gelˆscht [Extension] : kkkeikdkpjenmoiicggnnodbkebafgpc
[C:\Users\susan\AppData\Local\Google\Chrome\User Data\Default\preferences] - Gelˆscht [Extension] : pgmfkblbflahhponhjmkcnpjinenhlnc
[C:\Users\susan\AppData\Local\Google\Chrome\User Data\Default\preferences] - Gelˆscht [Extension] : lifbcibllhkdhoafpjfnlhfpfgnpldfl
[C:\Users\susan\AppData\Local\Google\Chrome\User Data\Default\preferences] - Gelˆscht [Extension] : geggofhlfbcmanadhknllmlajiafopoh
-\\ Opera v0.0.0.0
[C:\Users\Otto\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Gelˆscht [Search Provider] : hxxp://search.delta-homes.com/web/?type=ds&ts=1418371158&from=wpm12123&uid=TOSHIBAXMK5055GSX_49JAP0K5TXX49JAP0K5T&q={searchTerms}
[C:\Users\susan\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Gelˆscht [Search Provider] : hxxp://de.ask.com/web?q={searchTerms}
*************************
AdwCleaner[R0].txt - [5346 octets] - [27/12/2014 21:17:57]
AdwCleaner[S0].txt - [6310 octets] - [27/12/2014 21:19:41]
########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [6370 octets] ########## Code:
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Junkware Removal Tool (JRT) by Thisisu
Version: 6.4.0 (11.29.2014:1)
OS: Windows 7 Professional x86
Ran by Otto on 27.12.2014 at 21:24:58,46
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
~~~ Services
~~~ Registry Values
~~~ Registry Keys
~~~ Files
~~~ Folders
~~~ FireFox
Successfully deleted: [Folder] C:\Users\Otto\AppData\Roaming\mozilla\firefox\profiles\7i6f5wsc.default-1417030236078\extensions\toolbar@gmx.net
Emptied folder: C:\Users\Otto\AppData\Roaming\mozilla\firefox\profiles\7i6f5wsc.default-1417030236078\minidumps [3 files]
~~~ Event Viewer Logs were cleared
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
Scan was completed on 27.12.2014 at 21:27:32,27
End of JRT log
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
FRST Logfile: Code:
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 27-12-2014
Ran by Otto (administrator) on LYKKE on 27-12-2014 21:31:24
Running from C:\Users\Otto\Desktop
Loaded Profile: Otto (Available profiles: Otto & Gast)
Platform: Microsoft Windows 7 Professional Service Pack 1 (X86) OS Language: Deutsch (Deutschland)
Internet Explorer Version 11
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(AMD) C:\Windows\System32\atiesrxx.exe
(Cisco Systems, Inc.) C:\Program Files\Cisco\Cisco AnyConnect VPN Client\vpnagent.exe
(AMD) C:\Windows\System32\atieclxx.exe
(Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Microsoft Corporation) C:\Program Files\Microsoft\BingBar\SeaPort.EXE
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(O2Micro International) C:\Program Files\O2Micro Flash Memory Card Driver\o2flash.exe
(Toshiba Europe GmbH) C:\Program Files\Toshiba TEMPRO\TemproSvc.exe
(Nullsoft, Inc.) C:\Program Files\Winamp\winampa.exe
(TOSHIBA CORPORATION) C:\Program Files\Toshiba\Bluetooth Toshiba Stack\TosBtSrv.exe
() C:\Program Files\XSManager\WTGService.exe
(Adobe Systems Inc.) C:\Program Files\Adobe\Acrobat 9.0\Acrobat\acrotray.exe
(Conexant Systems, Inc.) C:\Program Files\CONEXANT\cAudioFilterAgent\cAudioFilterAgent.exe
(Toshiba Europe GmbH) C:\Program Files\Toshiba TEMPRO\TemproTray.exe
(ACD Systems) C:\Program Files\ACD Systems\ACDSee Pro\5.0\ACDSeeProInTouch2.exe
(Conexant Systems, Inc.) C:\Windows\System32\drivers\XAudio.exe
(Advanced Micro Devices Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(ATI Technologies Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(Apple Inc.) C:\Program Files\iTunes\iTunesHelper.exe
(Hewlett-Packard) C:\Program Files\HP\HP Software Update\hpwuschd2.exe
(Hewlett-Packard Co.) C:\Program Files\HP\HP Officejet 4620 series\Bin\ScanToPCActivationApp.exe
(Skype Technologies S.A.) C:\Program Files\Skype\Phone\Skype.exe
(Hewlett-Packard Co.) C:\Program Files\HP\HP Officejet 4620 series\Bin\HPNetworkCommunicator.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Kaspersky Lab ZAO) C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2013\avp.exe
(Kaspersky Lab ZAO) C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2013\avp.exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [WinampAgent] => C:\Program Files\Winamp\winampa.exe [74752 2010-12-09] (Nullsoft, Inc.)
HKLM\...\Run: [AdobeCS4ServiceManager] => C:\Program Files\Common Files\Adobe\CS4ServiceManager\CS4ServiceManager.exe [611712 2008-08-14] (Adobe Systems Incorporated)
HKLM\...\Run: [Adobe Acrobat Speed Launcher] => C:\Program Files\Adobe\Acrobat 9.0\Acrobat\Acrobat_sl.exe [37232 2008-06-12] (Adobe Systems Incorporated)
HKLM\...\Run: [Acrobat Assistant 8.0] => C:\Program Files\Adobe\Acrobat 9.0\Acrobat\Acrotray.exe [640376 2008-06-11] (Adobe Systems Inc.)
HKLM\...\Run: [Adobe_ID0ENQBO] => C:\Program Files\Common Files\Adobe\Adobe Version Cue CS4\Server\bin\VersionCueCS4Tray.exe [378224 2008-08-15] (Adobe Systems Incorporated)
HKLM\...\Run: [cAudioFilterAgent] => C:\Program Files\Conexant\cAudioFilterAgent\cAudioFilterAgent.exe [484920 2009-07-20] (Conexant Systems, Inc.)
HKLM\...\Run: [StartCCC] => C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [98304 2009-07-29] (Advanced Micro Devices, Inc.)
HKLM\...\Run: [Toshiba TEMPRO] => C:\Program Files\Toshiba TEMPRO\TemproTray.exe [1050072 2010-10-26] (Toshiba Europe GmbH)
HKLM\...\Run: [Adobe ARM] => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [843712 2012-01-03] (Adobe Systems Incorporated)
HKLM\...\Run: [ACPW05DE] => C:\Program Files\ACD Systems\ACDSee Pro\5.0\ACDSeeProInTouch2.exe [822384 2011-11-17] (ACD Systems)
HKLM\...\Run: [APSDaemon] => C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe [59280 2012-11-28] (Apple Inc.)
HKLM\...\Run: [QuickTime Task] => C:\Program Files\QuickTime\QTTask.exe [421888 2012-10-25] (Apple Inc.)
HKLM\...\Run: [AVP] => C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2013\avp.exe [356128 2013-12-22] (Kaspersky Lab ZAO)
HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [152544 2012-12-12] (Apple Inc.)
HKLM\...\Run: [ITSecMng] => C:\Program Files\TOSHIBA\Bluetooth Toshiba Stack\ItSecMng.exe [83336 2008-12-19] (TOSHIBA CORPORATION)
HKLM\...\Run: [HP Software Update] => C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe [96056 2013-05-30] (Hewlett-Packard)
HKU\S-1-5-21-2147501379-2396807299-2922006312-1003\...\Run: [HP Officejet 4620 series (NET)] => C:\Program Files\HP\HP Officejet 4620 series\Bin\ScanToPCActivationApp.exe [1820520 2011-12-18] (Hewlett-Packard Co.)
HKU\S-1-5-21-2147501379-2396807299-2922006312-1003\...\Run: [Skype] => C:\Program Files\Skype\Phone\Skype.exe [30877280 2014-12-11] (Skype Technologies S.A.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Microsoft Office.lnk
ShortcutTarget: Microsoft Office.lnk -> C:\Program Files\Microsoft Office\Office\OSA9.EXE (Microsoft Corporation)
Startup: C:\Users\Otto\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Tintenwarnungen überwachen - HP Officejet 4620 series.lnk
ShortcutTarget: Tintenwarnungen überwachen - HP Officejet 4620 series.lnk -> C:\Program Files\HP\HP Officejet 4620 series\Bin\HPStatusBL.dll (Hewlett-Packard Co.)
Startup: C:\Users\susan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OneNote 2007 Bildschirmausschnitt- und Startprogramm.lnk
ShortcutTarget: OneNote 2007 Bildschirmausschnitt- und Startprogramm.lnk -> C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE (Microsoft Corporation)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKU\S-1-5-21-2147501379-2396807299-2922006312-1003\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.com
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=msnhome
HKU\S-1-5-21-2147501379-2396807299-2922006312-1003\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
BHO: ContributeBHO Class -> {074C1DC5-9320-4A9A-947D-C042949C6216} -> C:\Program Files\Adobe\/Adobe Contribute CS4/contributeieplugin.dll (Adobe Systems Incorporated.)
BHO: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
BHO: Content Blocker Plugin -> {5564CC73-EFA7-4CBF-918A-5CF7FBBFFF4F} -> C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2013\IEExt\ContentBlocker\ie_content_blocker_plugin.dll (Kaspersky Lab ZAO)
BHO: Virtual Keyboard Plugin -> {73455575-E40C-433C-9784-C78DC7761455} -> C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2013\IEExt\VirtualKeyboard\ie_virtual_keyboard_plugin.dll (Kaspersky Lab ZAO)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre7\bin\ssv.dll (Oracle Corporation)
BHO: Safe Money Plugin -> {9E6D0D23-3D72-4A94-AE1F-2D167624E3D9} -> C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2013\IEExt\OnlineBanking\online_banking_bho.dll (Kaspersky Lab ZAO)
BHO: Adobe PDF Conversion Toolbar Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO: URL Advisor Plugin -> {E33CF602-D945-461A-83F0-819F76A199F8} -> C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2013\IEExt\UrlAdvisor\klwtbbho.dll (Kaspersky Lab ZAO)
BHO: SmartSelect Class -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
Toolbar: HKLM - Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
Toolbar: HKLM - Contribute Toolbar - {517BDDE4-E3A7-4570-B21E-2B52B6139FC7} - C:\Program Files\Adobe\/Adobe Contribute CS4/contributeieplugin.dll (Adobe Systems Incorporated.)
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_30-windows-i586.cab
DPF: {CAFEEFAC-0016-0000-0030-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_30-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_30-windows-i586.cab
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Winsock: Catalog5 07 C:\Program Files\Bonjour\mdnsNSP.dll [121704] (Apple Inc.)
Tcpip\Parameters: [DhcpNameServer] 192.168.2.1
FireFox:
========
FF ProfilePath: C:\Users\Otto\AppData\Roaming\Mozilla\Firefox\Profiles\7i6f5wsc.default-1417030236078
FF Homepage: hxxp://www.gmx.de/
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF32_16_0_0_235.dll ()
FF Plugin: @Apple.com/iTunes,version=1.0 -> C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll ()
FF Plugin: @canon.com/EPPEX -> C:\Program Files\Canon\Easy-PhotoPrint EX\NPEZFFPI.DLL (CANON INC.)
FF Plugin: @java.com/DTPlugin,version=10.7.2 -> C:\Windows\system32\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.7.2 -> C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin: @microsoft.com/OfficeLive,version=1.5 -> C:\Program Files\Microsoft\Office Live\npOLW.dll (Microsoft Corp.)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\np-mswmp.dll (Microsoft Corporation)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\NPOFF12.DLL (Microsoft Corporation)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\nppdf32.dll (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin2.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin3.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin4.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin5.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin6.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npqtplugin7.dll (Apple Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files\mozilla firefox\plugins\npwachk.dll (Nullsoft, Inc.)
FF Extension: Security Protection - C:\Users\Otto\AppData\Roaming\Mozilla\Firefox\Profiles\7i6f5wsc.default-1417030236078\Extensions\detgdp@gmail.com [2014-12-12]
FF Extension: Anti-Banner - C:\Program Files\Mozilla Firefox\extensions\KavAntiBanner@kaspersky.ru_bak2 [2014-12-10]
FF Extension: Modul zur Link-Untersuchung - C:\Program Files\Mozilla Firefox\extensions\linkfilter@kaspersky.ru_bak2 [2014-12-10]
FF Extension: Skype Click to Call - C:\Program Files\Mozilla Firefox\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A} [2014-12-10]
FF HKLM\...\Firefox\Extensions: [virtualKeyboard@kaspersky.ru] - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2012\FFExt\virtualKeyboard@kaspersky.ru
FF HKLM\...\Firefox\Extensions: - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2013\FFExt\url_advisor@kaspersky.com
FF Extension: Kaspersky URL Advisor - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2013\FFExt\url_advisor@kaspersky.com [2013-01-04]
FF HKLM\...\Firefox\Extensions: [virtual_keyboard@kaspersky.com] - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2013\FFExt\virtual_keyboard@kaspersky.com
FF Extension: Virtual Keyboard - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2013\FFExt\virtual_keyboard@kaspersky.com [2013-01-04]
FF HKLM\...\Firefox\Extensions: [content_blocker@kaspersky.com] - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2013\FFExt\content_blocker@kaspersky.com
FF Extension: Dangerous Websites Blocker - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2013\FFExt\content_blocker@kaspersky.com [2013-01-04]
FF HKLM\...\Firefox\Extensions: [anti_banner@kaspersky.com] - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2013\FFExt\anti_banner@kaspersky.com
FF Extension: Anti-Banner - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2013\FFExt\anti_banner@kaspersky.com [2013-01-04]
FF HKLM\...\Firefox\Extensions: [online_banking@kaspersky.com] - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2013\FFExt\online_banking@kaspersky.com
FF Extension: Safe Money - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2013\FFExt\online_banking@kaspersky.com [2013-01-04]
FF HKLM\...\Firefox\Extensions: [detgdp@gmail.com] - C:\Users\Otto\AppData\Roaming\Mozilla\Firefox\Profiles\7i6f5wsc.default-1417030236078\extensions\detgdp@gmail.com
FF Extension: No Name - C:\Users\Otto\AppData\Roaming\Mozilla\Firefox\Profiles\7i6f5wsc.default-1417030236078\extensions\toolbar@gmx.net [Not Found]
FF StartMenuInternet: FIREFOX.EXE - firefox.exe
Chrome:
=======
CHR Profile: C:\Users\Otto\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Modul zur Link-Untersuchung) - C:\Users\Otto\AppData\Local\Google\Chrome\User Data\Default\Extensions\dchlnpcodkpfdpacogkljefecpegganj [2014-12-12]
CHR Extension: (Sicherer Zahlungsverkehr) - C:\Users\Otto\AppData\Local\Google\Chrome\User Data\Default\Extensions\hakdifolhalapjijoafobooafbilfakh [2014-12-12]
CHR Extension: (Modul für das Blockieren gefährlicher Webseiten) - C:\Users\Otto\AppData\Local\Google\Chrome\User Data\Default\Extensions\hghkgaeecgjhjkannahfamoehjmkjail [2014-12-12]
CHR Extension: (Virtuelle Tastatur) - C:\Users\Otto\AppData\Local\Google\Chrome\User Data\Default\Extensions\jagncdcchgajhfhijbbhecadmaiegcmh [2014-12-12]
CHR Extension: (Google Wallet) - C:\Users\Otto\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-12-12]
CHR Extension: (Anti-Banner) - C:\Users\Otto\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjldcfjmnllhmgjclecdnfampinooman [2014-12-12]
CHR HKLM\...\Chrome\Extension: [dchlnpcodkpfdpacogkljefecpegganj] - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2013\ChromeExt\urladvisor.crx [2012-10-25]
CHR HKLM\...\Chrome\Extension: [hakdifolhalapjijoafobooafbilfakh] - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2013\ChromeExt\online_banking_chrome.crx [2012-10-25]
CHR HKLM\...\Chrome\Extension: [hghkgaeecgjhjkannahfamoehjmkjail] - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2013\ChromeExt\content_blocker_chrome.crx [2012-10-25]
CHR HKLM\...\Chrome\Extension: [jagncdcchgajhfhijbbhecadmaiegcmh] - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2013\ChromeExt\virtkbd.crx [2012-10-25]
CHR HKLM\...\Chrome\Extension: [lpoimibckejjdjcfbdnajaicnklhfplh] - https://chrome.google.com/webstore/detail/lpoimibckejjdjcfbdnajaicnklhfplh [Not Found]
CHR HKLM\...\Chrome\Extension: [pjldcfjmnllhmgjclecdnfampinooman] - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2013\ChromeExt\ab.crx [2012-10-25]
CHR StartMenuInternet: Google Chrome - Chrome.exe
========================== Services (Whitelisted) =================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
S3 Adobe Version Cue CS4; C:\Program Files\Common Files\Adobe\Adobe Version Cue CS4\Server\bin\VersionCueCS4.exe [284016 2008-08-15] (Adobe Systems Incorporated)
R2 AVP; C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2013\avp.exe [356128 2013-12-22] (Kaspersky Lab ZAO)
R2 o2flash; C:\Program Files\O2Micro Flash Memory Card Driver\o2flash.exe [65536 2007-02-12] (O2Micro International) [File not signed]
R2 TemproMonitoringService; C:\Program Files\Toshiba TEMPRO\TemproSvc.exe [124368 2010-10-26] (Toshiba Europe GmbH)
R2 WTGService; C:\Program Files\XSManager\WTGService.exe [304592 2009-06-22] ()
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
S3 cmnsusbser; C:\Windows\System32\DRIVERS\cmnsusbser.sys [103424 2008-10-31] (Mobile Connector)
R3 CnxtHdmiAudService; C:\Windows\System32\drivers\CHDMI32.sys [487936 2009-06-23] (Conexant Systems Inc.)
R0 KL1; C:\Windows\System32\DRIVERS\kl1.sys [135776 2013-12-22] (Kaspersky Lab ZAO)
R1 KLIF; C:\Windows\System32\DRIVERS\klif.sys [597600 2014-05-20] (Kaspersky Lab ZAO)
R1 KLIM6; C:\Windows\System32\DRIVERS\klim6.sys [25696 2013-12-22] (Kaspersky Lab ZAO)
R3 klkbdflt; C:\Windows\System32\DRIVERS\klkbdflt.sys [25696 2013-12-22] (Kaspersky Lab ZAO)
R3 klmouflt; C:\Windows\System32\DRIVERS\klmouflt.sys [25696 2013-12-22] (Kaspersky Lab ZAO)
R1 kltdi; C:\Windows\System32\DRIVERS\kltdi.sys [44000 2013-12-22] (Kaspersky Lab ZAO)
R1 kneps; C:\Windows\System32\DRIVERS\kneps.sys [145040 2013-05-30] (Kaspersky Lab ZAO)
S3 catchme; \??\C:\Users\Otto\AppData\Local\Temp\catchme.sys [X]
U5 klflt; C:\Windows\System32\Drivers\klflt.sys [74848 2014-05-20] (Kaspersky Lab ZAO)
S3 Tosrfcom; No ImagePath
==================== NetSvcs (Whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
==================== One Month Created Files and Folders ========
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-12-27 21:27 - 2014-12-27 21:27 - 00000913 _____ () C:\Users\Otto\Desktop\JRT.txt
2014-12-27 21:24 - 2014-12-27 21:24 - 00000000 ____D () C:\Windows\ERUNT
2014-12-27 21:17 - 2014-12-27 21:19 - 00000000 ____D () C:\AdwCleaner
2014-12-27 21:17 - 2014-12-27 21:17 - 01707646 _____ (Thisisu) C:\Users\Otto\Desktop\JRT.exe
2014-12-27 21:15 - 2014-12-27 21:15 - 02173952 _____ () C:\Users\Otto\Desktop\AdwCleaner_4.106.exe
2014-12-27 21:13 - 2014-12-27 21:13 - 00041306 _____ () C:\Users\Otto\Desktop\mbam.txt
2014-12-27 20:18 - 2014-12-27 21:11 - 00114904 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2014-12-27 20:17 - 2014-12-27 20:17 - 00001064 _____ () C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2014-12-27 20:17 - 2014-12-27 20:17 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2014-12-27 20:17 - 2014-12-27 20:17 - 00000000 ____D () C:\ProgramData\Malwarebytes
2014-12-27 20:17 - 2014-12-27 20:17 - 00000000 ____D () C:\Program Files\Malwarebytes Anti-Malware
2014-12-27 20:17 - 2014-11-21 06:14 - 00075480 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2014-12-27 20:17 - 2014-11-21 06:14 - 00051928 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2014-12-27 20:17 - 2014-11-21 06:14 - 00023256 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2014-12-27 20:16 - 2014-12-27 20:17 - 20447072 _____ (Malwarebytes Corporation ) C:\Users\Otto\Downloads\mbam-setup-2.0.4.1028.exe
2014-12-26 12:42 - 2014-12-26 12:42 - 00012690 _____ () C:\ComboFix.txt
2014-12-26 12:29 - 2014-12-26 12:42 - 00000000 ____D () C:\Windows\erdnt
2014-12-26 12:29 - 2014-12-26 12:42 - 00000000 ____D () C:\Qoobox
2014-12-26 12:29 - 2011-06-26 07:45 - 00256000 _____ () C:\Windows\PEV.exe
2014-12-26 12:29 - 2010-11-07 18:20 - 00208896 _____ () C:\Windows\MBR.exe
2014-12-26 12:29 - 2009-04-20 05:56 - 00060416 _____ (NirSoft) C:\Windows\NIRCMD.exe
2014-12-26 12:29 - 2000-08-31 01:00 - 00518144 _____ (SteelWerX) C:\Windows\SWREG.exe
2014-12-26 12:29 - 2000-08-31 01:00 - 00406528 _____ (SteelWerX) C:\Windows\SWSC.exe
2014-12-26 12:29 - 2000-08-31 01:00 - 00098816 _____ () C:\Windows\sed.exe
2014-12-26 12:29 - 2000-08-31 01:00 - 00080412 _____ () C:\Windows\grep.exe
2014-12-26 12:29 - 2000-08-31 01:00 - 00068096 _____ () C:\Windows\zip.exe
2014-12-26 12:26 - 2014-12-26 12:26 - 05603624 ____R (Swearware) C:\Users\Otto\Desktop\ComboFix.exe
2014-12-26 12:18 - 2014-12-26 12:18 - 00001226 _____ () C:\Users\Otto\Desktop\Revo Uninstaller.lnk
2014-12-26 12:18 - 2014-12-26 12:18 - 00000000 ____D () C:\Program Files\VS Revo Group
2014-12-26 12:17 - 2014-12-26 12:17 - 02623656 _____ (VS Revo Group Ltd.) C:\Users\Otto\Downloads\revosetup95.exe
2014-12-24 09:35 - 2014-12-27 21:31 - 00019344 _____ () C:\Users\Otto\Desktop\FRST.txt
2014-12-24 09:35 - 2014-12-24 09:36 - 00027885 _____ () C:\Users\Otto\Desktop\Addition.txt
2014-12-24 09:34 - 2014-12-27 21:30 - 00000000 ____D () C:\Users\Otto\Desktop\FRST-OlderVersion
2014-12-24 09:33 - 2014-12-27 21:30 - 01114624 _____ (Farbar) C:\Users\Otto\Desktop\FRST.exe
2014-12-21 10:35 - 2014-12-27 21:31 - 00000000 ____D () C:\FRST
2014-12-17 19:39 - 2014-12-13 04:33 - 00115712 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2014-12-16 19:26 - 2014-12-16 19:26 - 00262144 _____ () C:\Windows\system32\config\elam
2014-12-11 08:53 - 2014-11-27 02:10 - 00342200 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2014-12-11 08:53 - 2014-11-22 03:22 - 19749376 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2014-12-11 08:53 - 2014-11-22 03:20 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2014-12-11 08:53 - 2014-11-22 03:20 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2014-12-11 08:53 - 2014-11-22 03:07 - 00501248 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2014-12-11 08:53 - 2014-11-22 03:07 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2014-12-11 08:53 - 2014-11-22 03:06 - 00047616 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2014-12-11 08:53 - 2014-11-22 03:05 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2014-12-11 08:53 - 2014-11-22 03:01 - 02277888 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2014-12-11 08:53 - 2014-11-22 02:59 - 00047104 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2014-12-11 08:53 - 2014-11-22 02:58 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2014-12-11 08:53 - 2014-11-22 02:56 - 00478208 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2014-12-11 08:53 - 2014-11-22 02:55 - 00102912 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2014-12-11 08:53 - 2014-11-22 02:54 - 00620032 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2014-12-11 08:53 - 2014-11-22 02:48 - 00667648 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2014-12-11 08:53 - 2014-11-22 02:45 - 00418304 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2014-12-11 08:53 - 2014-11-22 02:40 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-12-11 08:53 - 2014-11-22 02:36 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2014-12-11 08:53 - 2014-11-22 02:35 - 00076288 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2014-12-11 08:53 - 2014-11-22 02:33 - 00285696 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2014-12-11 08:53 - 2014-11-22 02:29 - 04299264 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2014-12-11 08:53 - 2014-11-22 02:23 - 00688640 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2014-12-11 08:53 - 2014-11-22 02:23 - 00684544 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2014-12-11 08:53 - 2014-11-22 02:22 - 02052096 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2014-12-11 08:53 - 2014-11-22 02:21 - 01155072 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2014-12-11 08:53 - 2014-11-22 02:13 - 12836864 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2014-12-11 08:53 - 2014-11-22 02:00 - 01888256 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2014-12-11 08:53 - 2014-11-22 01:56 - 01307136 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2014-12-11 08:53 - 2014-11-22 01:54 - 00710144 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2014-12-11 08:53 - 2014-11-11 03:44 - 01230336 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
2014-12-10 13:33 - 2014-12-10 13:33 - 00000000 ____D () C:\Program Files\Mozilla Firefox
==================== One Month Modified Files and Folders =======
(If an entry is included in the fixlist, the file\folder will be moved.)
2014-12-27 21:31 - 2013-12-24 16:46 - 00000000 ____D () C:\Users\Otto\AppData\Roaming\Skype
2014-12-27 21:29 - 2010-12-24 14:51 - 00000000 ____D () C:\ProgramData\Kaspersky Lab
2014-12-27 21:29 - 2009-07-14 05:34 - 00015360 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2014-12-27 21:29 - 2009-07-14 05:34 - 00015360 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2014-12-27 21:25 - 2010-12-23 22:58 - 01154214 _____ () C:\Windows\WindowsUpdate.log
2014-12-27 21:21 - 2011-01-11 07:22 - 00095634 _____ () C:\Windows\PFRO.log
2014-12-27 21:21 - 2009-07-14 05:53 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2014-12-27 21:21 - 2009-07-14 05:39 - 00253019 _____ () C:\Windows\setupact.log
2014-12-27 21:19 - 2013-12-22 20:57 - 00001150 _____ () C:\Users\Otto\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-12-27 21:19 - 2011-05-01 08:29 - 00001023 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2014-12-27 21:11 - 2011-12-25 16:03 - 00001120 _____ () C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2147501379-2396807299-2922006312-1000UA.job
2014-12-27 21:10 - 2010-12-23 23:17 - 01612484 _____ () C:\Windows\system32\PerfStringBackup.INI
2014-12-27 20:55 - 2014-01-03 20:21 - 00000884 _____ () C:\Windows\Tasks\Adobe Flash Player Updater.job
2014-12-27 20:25 - 2011-07-08 07:04 - 00001138 _____ () C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2147501379-2396807299-2922006312-1000UA.job
2014-12-26 17:11 - 2011-12-25 16:03 - 00001068 _____ () C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-2147501379-2396807299-2922006312-1000Core.job
2014-12-26 12:42 - 2009-07-14 03:37 - 00000000 __RHD () C:\Users\Default
2014-12-26 12:42 - 2009-07-14 03:37 - 00000000 ___RD () C:\Users\Public
2014-12-26 12:41 - 2009-07-14 03:04 - 00000248 _____ () C:\Windows\system.ini
2014-12-25 15:30 - 2010-12-24 21:59 - 00000000 ___RD () C:\Program Files\Skype
2014-12-25 15:30 - 2010-12-24 21:59 - 00000000 ____D () C:\ProgramData\Skype
2014-12-21 11:25 - 2011-07-08 07:04 - 00001116 _____ () C:\Windows\Tasks\FacebookUpdateTaskUserS-1-5-21-2147501379-2396807299-2922006312-1000Core.job
2014-12-21 10:51 - 2014-02-13 19:54 - 00001109 _____ () C:\Users\Public\Desktop\Mozilla Firefox.lnk
2014-12-14 17:23 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\rescache
2014-12-13 10:30 - 2009-07-14 03:37 - 00000000 __RHD () C:\Users\Public\Libraries
2014-12-11 19:24 - 2009-07-14 03:37 - 00000000 ____D () C:\Windows\system32\de-DE
2014-12-11 16:39 - 2011-01-10 18:18 - 00000000 ____D () C:\ProgramData\Microsoft Help
2014-12-11 16:37 - 2013-12-22 21:38 - 00000000 ____D () C:\Windows\system32\MRT
2014-12-11 16:30 - 2010-12-24 16:06 - 109818608 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2014-12-11 08:41 - 2012-11-22 21:28 - 00000000 ____D () C:\Program Files\Mozilla Maintenance Service
2014-12-10 19:49 - 2014-08-02 17:16 - 00000000 ____D () C:\Users\Otto\AppData\Local\Adobe
2014-12-10 19:44 - 2014-01-03 20:21 - 00701616 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerApp.exe
2014-12-10 19:44 - 2011-11-15 16:32 - 00071344 _____ (Adobe Systems Incorporated) C:\Windows\system32\FlashPlayerCPLApp.cpl
2014-12-04 09:05 - 2014-05-01 08:00 - 00000000 ____D () C:\Users\Otto\AppData\Roaming\HpUpdate
Some content of TEMP:
====================
C:\Users\Otto\AppData\Local\Temp\Quarantine.exe
C:\Users\Otto\AppData\Local\Temp\sqlite3.dll
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2014-12-25 17:13
==================== End Of Log ============================ --- --- --- |