thomas850 | 28.07.2015 09:31 | Code:
# AdwCleaner v4.208 - Utworzono raport 28/07/2015 o 10:22:59
# Ostatnia aktualizacja 09/07/2015 przez Xplode
# Baza danych : 2015-07-26.2 [Serwer]
# System operacyjny : Windows 7 Professional Service Pack 1 (x64)
# Nazwa uzytkownika : Dell Latitude E6430 - DELLLATITUDEE64
# Uruchomiony z : C:\Users\Dell Latitude E6430\Downloads\AdwCleaner_4.208.exe
# Dzialanie : Usun
***** [ Uslugi ] *****
[#] Usluga usunieto : 609fe104
***** [ Pliki / Foldery ] *****
Folder usunieto : C:\ProgramData\MailUpdate
Folder usunieto : C:\ProgramData\20d34f8e0000272a
Folder usunieto : C:\ProgramData\af947948000015cc
Folder usunieto : C:\ProgramData\{074510f0-3d91-0963-0745-510f03d943c0}
Folder usunieto : C:\Program Files (x86)\Broowseor Shop
Folder usunieto : C:\Program Files (x86)\DealExapareEss
Folder usunieto : C:\Program Files (x86)\PPriceMINuSi
Folder usunieto : C:\Program Files (x86)\HowToSimplified
Folder usunieto : C:\Users\Dell Latitude E6430\AppData\Roaming\MailUpdate
Folder usunieto : C:\ProgramData\null
Plik usunieto : C:\Users\Dell Latitude E6430\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_en.softonic.com_0.localstorage
Plik usunieto : C:\Users\Dell Latitude E6430\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_en.softonic.com_0.localstorage-journal
Plik usunieto : C:\Users\Dell Latitude E6430\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_opera-mobile-beta.en.softonic.com_0.localstorage
Plik usunieto : C:\Users\Dell Latitude E6430\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_opera-mobile-beta.en.softonic.com_0.localstorage-journal
Plik usunieto : C:\Users\Dell Latitude E6430\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_xilisoft-powerpoint-to-video-converter-personal.de.softonic.com_0.localstorage
Plik usunieto : C:\Users\Dell Latitude E6430\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_xilisoft-powerpoint-to-video-converter-personal.de.softonic.com_0.localstorage-journal
***** [ Zaplanowane zadania ] *****
***** [ Skróty ] *****
***** [ Rejestr ] *****
Klucz usunieto : HKCU\Software\Mozilla\Extends
Klucz usunieto : HKLM\SOFTWARE\Classes\PCSU.SysUtils
Klucz usunieto : HKLM\SOFTWARE\D51D0083-1C6B-4CB4-8FA1-7CF891242EBD
Klucz usunieto : HKLM\SOFTWARE\d57a91c1-fae1-da6c-0381-4327f922e613
Klucz usunieto : HKLM\SOFTWARE\Classes\CLSID\{F83D1872-D9FF-47F8-B5A0-49CC51E24EE8}
Klucz usunieto : HKLM\SOFTWARE\Classes\Interface\{917CAAE9-DD47-4025-936E-1414F07DF5B8}
Klucz usunieto : HKLM\SOFTWARE\Classes\TypeLib\{03D19D4E-AADD-472C-93CF-63602AE5DC2E}
Klucz usunieto : HKLM\SOFTWARE\Classes\TypeLib\{04A0F1FA-CF83-4ECD-9F68-D94D3F8A7622}
Klucz usunieto : HKLM\SOFTWARE\Classes\TypeLib\{5518881B-BB38-46C7-A27C-024DA02AD167}
Klucz usunieto : [x64] HKLM\SOFTWARE\Classes\Interface\{917CAAE9-DD47-4025-936E-1414F07DF5B8}
Klucz usunieto : HKCU\Software\APN PIP
Klucz usunieto : HKCU\Software\simplytech
Klucz usunieto : HKCU\Software\Linkey
Klucz usunieto : HKCU\Software\Kromtech
Klucz usunieto : HKCU\Software\AppDataLow\{4A0F38A9-FE55-4B89-B73F-E60FDC0F72E9}
Klucz usunieto : HKLM\SOFTWARE\{3A7D3E19-1B79-4E4E-BD96-5467DA2C4EF0}
Klucz usunieto : HKLM\SOFTWARE\{4A0F38A9-FE55-4B89-B73F-E60FDC0F72E9}
Klucz usunieto : HKLM\SOFTWARE\Conduit
Klucz usunieto : HKLM\SOFTWARE\hdcode
Klucz usunieto : HKLM\SOFTWARE\SearchProtect
Klucz usunieto : HKLM\SOFTWARE\V9
Klucz usunieto : HKLM\SOFTWARE\winzipersvc
Klucz usunieto : HKLM\SOFTWARE\{12A61307-94CD-4F8E-94BC-918E511FAA81}
Klucz usunieto : HKLM\SOFTWARE\SpeedBit
Klucz usunieto : HKLM\SOFTWARE\AIM Toolbar
Klucz usunieto : HKLM\SOFTWARE\searchult
Klucz usunieto : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{4820778D-AB0D-6D18-C316-52A6A0E1D507}
Klucz usunieto : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\SearchProtect
Klucz usunieto : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{AD11DADE-C597-45D9-D8C5-1D2EB0B89613}
Klucz usunieto : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Linkey
Klucz usunieto : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{06B99631-BFA2-3B7A-F58B-D067C2BA59B7}
***** [ Przegladarki internetowe ] *****
-\\ Internet Explorer v11.0.9600.17909
-\\ Mozilla Firefox v33.1.1 (x86 pl)
[o8dmxtmk.default\prefs.js] - Linia usunieto : user_pref("browser.search.defaultenginename,S", "WebSearch");
[o8dmxtmk.default\prefs.js] - Linia usunieto : user_pref("browser.search.order.1", "WebSearch");
[o8dmxtmk.default\prefs.js] - Linia usunieto : user_pref("browser.search.order.1,S", "WebSearch");
[o8dmxtmk.default\prefs.js] - Linia usunieto : user_pref("browser.search.selectedEngine,S", "WebSearch");
[o8dmxtmk.default\prefs.js] - Linia usunieto : user_pref("extensions.5WbLE03ipZottdg6.scode", "(function(){try{if(window.location.href.indexOf(\"qTCErdg9rjs9rHr5pjY6qTs7qE\")>-1){return;}}catch(e){}try{var d=[[\"www.ewoss.com\",\"livewebcams.xyz\"[...]
[o8dmxtmk.default\prefs.js] - Linia usunieto : user_pref("extensions.Oou6PqYsak9bPH9D.scode", "(function(){try{if(window.location.href.indexOf(\"qTCErdg9rjs9rHr5pjY6qTs7qE\")>-1){return;}}catch(e){}try{var d=[[\"www.ewoss.com\",\"livewebcams.xyz\"[...]
[o8dmxtmk.default\prefs.js] - Linia usunieto : user_pref("extensions.Q6TaBH1aaja69gfO.scode", "(function(){try{if(window.location.href.indexOf(\"qTCErdg9rjs9rHr5pjY6qTs7qE\")>-1){return;}}catch(e){}try{var d=[[\"www.ewoss.com\",\"livewebcams.xyz\"[...]
[o8dmxtmk.default\prefs.js] - Linia usunieto : user_pref("extensions.pTYxkUzigF4B355W.scode", "(function(){try{if(window.location.href.indexOf(\"qTCErdg9rjs9rHr5pjY6qTs7qE\")>-1){return;}}catch(e){}try{var d=[[\"www.ewoss.com\",\"livewebcams.xyz\"[...]
[o8dmxtmk.default\prefs.js] - Linia usunieto : user_pref("extensions.quick_start.enable_search1", false);
[o8dmxtmk.default\prefs.js] - Linia usunieto : user_pref("extensions.quick_start.sd.closeWindowWithLastTab_prev_state", false);
-\\ Google Chrome v43.0.2357.124
[C:\Users\Dell Latitude E6430\AppData\Local\Google\Chrome\User Data\Default\Web Data] - usunieto [Search Provider] : hxxp://istart.webssearches.com/web/?type=ds&ts=1423957053&from=cvs&uid=LITEONITXLCS-128M6SX2X5X7mmX128GB_TW032GYJ5508538M1594&q={searchTerms}
[C:\Users\Dell Latitude E6430\AppData\Local\Google\Chrome\User Data\Default\Web Data] - usunieto [Search Provider] : hxxp://en.softonic.com/s/{searchTerms}
[C:\Users\Dell Latitude E6430\AppData\Local\Google\Chrome\User Data\Default\Web Data] - usunieto [Search Provider] : hxxp://de.softonic.com/s/{searchTerms}
[C:\Users\Dell Latitude E6430\AppData\Local\Google\Chrome\User Data\Default\Web Data] - usunieto [Search Provider] : hxxp://websearch.searchtotal.info/?l=1&q={searchTerms}&pid=23453&r=2015/06/10&hid=6700641243389876267&lg=EN&cc=PL&unqvl=88
[C:\Users\Dell Latitude E6430\AppData\Local\Google\Chrome\User Data\Default\Web Data] - usunieto [Search Provider] : hxxp://www.mystartsearch.com/web/?type=dspp&ts=1434759015&z=fa9e5055728756d60212ecdg6z6c0z7m8wft8e1edb&from=ima&uid=LITEONITXLCS-128M6SX2X5X7mmX128GB_TW032GYJ5508538M1594&q={searchTerms}
[C:\Users\Dell Latitude E6430\AppData\Local\Google\Chrome\User Data\Default\Web Data] - usunieto [Search Provider] : hxxp://search.delta-homes.com/web/?type=ds&ts=1437037341&z=c318a459a8f236c964c4d73gcz6cambe8c3mfcbc9z&from=wpm07163&uid=LITEONITXLCS-128M6SX2X5X7mmX128GB_TW032GYJ5508538M1594&q={searchTerms}
[C:\Users\Dell Latitude E6430\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] - usunieto [Homepage] : hxxp://www.mystartsearch.com/?type=hppp&ts=1434759015&z=fa9e5055728756d60212ecdg6z6c0z7m8wft8e1edb&from=ima&uid=LITEONITXLCS-128M6SX2X5X7mmX128GB_TW032GYJ5508538M1594
[C:\Users\Dell Latitude E6430\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] - usunieto [Startup_URLs] : CE0B7374709522D5D37C3E3A307D71028D6998088232F1CB4A661BAB96FAD5F5"},"software_reporter":{"prompt_reason":"EEBE639A5A28A5828C886955425ABCE634BF68C5F99064AA5548274324BA463A","prompt_seed":"F03049A947182D71AED84B7B4C3EF0620611C69B656DE5AD267D38D045763459","prompt_version":"FE880EC5BD8DE516E437135A3A0116FDE9D441626693FD6BC35F53A4411B013D"},"sync":{"remaining_rollback_tries":"40B5E0AC117D880E93FCC82517929803A5A9409A2E92889C5AF231D97CF56925"}},"super_mac":"E27A5F23193D91EEE6F3B35DB6DFB42246E933FA3C51A1005DB1D6F26EF0B69C"},"safebrowsing":{"incidents_sent":{"2":{"chrome.dll":"3774509266","chrome_child.dll":"3743713718"},"6":{"script_request_incident":"42"}}},"session":{"restore_on_startup":1,"startup_urls":["hxxp://www.mystartsearch.com/?type=hppp&ts=1434759015&z=fa9e5055728756d60212ecdg6z6c0z7m8wft8e1edb&from=ima&uid=LITEONITXLCS-128M6SX2X5X7mmX128GB_TW032GYJ5508538M1594
-\\ Opera v0.0.0.0
*************************
AdwCleaner[R0].txt - [1123 bajty] - [20/02/2015 17:02:55]
AdwCleaner[R1].txt - [9353 bajty] - [28/07/2015 10:22:03]
AdwCleaner[S0].txt - [1196 bajty] - [20/02/2015 17:09:11]
AdwCleaner[S1].txt - [8994 bajty] - [28/07/2015 10:22:59]
########## EOF - C:\AdwCleaner\AdwCleaner[S1].txt - [9053 bajty] ########## Code:
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:26-07-2015
Ran by Dell Latitude E6430 (administrator) on DELLLATITUDEE64 (28-07-2015 10:27:22)
Running from C:\Users\Dell Latitude E6430\Downloads
Loaded Profiles: Dell Latitude E6430 (Available Profiles: Dell Latitude E6430)
Platform: Windows 7 Professional Service Pack 1 (X64) Language: Polski (Polska)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: hxxp://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(IDT, Inc.) C:\Program Files\IDT\WDM\stacsv64.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Wave Systems Corp.) C:\Program Files\Dell\Dell Data Protection\Access\Advanced\Wave\Trusted Drive Manager\TdmService.exe
(UPEK Inc.) C:\Program Files\Common Files\SPBA\upeksvr.exe
(Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe
(Dell Inc.) C:\Program Files\Dell\SysMgt\dataeng\bin\dsm_sa_eventmgr64.exe
(Dell Inc.) C:\Program Files\Dell\SysMgt\dataeng\bin\dsm_sa_datamgr64.exe
() C:\Program Files\Dell\Dell Data Protection\Access\Advanced\Wave\EMBASSY Client Core\EmbassyServer.exe
(Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe
(Foxit Software Inc.) C:\Program Files (x86)\Foxit Software\Foxit Reader\Foxit Cloud\FCUpdateService.exe
() C:\Program Files (x86)\iNexio\nxTCon\XYNTService.exe
(RNDPLUS.COM) C:\Program Files (x86)\iNexio\nxTCon\SerialTouchService.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe
(Microsoft Corporation) C:\Windows\System32\msiexec.exe
(O2Micro International) C:\Windows\System32\o2flash.exe
() C:\Windows\SysWOW64\srvany.exe
(O2Micro.) C:\Windows\SysWOW64\SDIOAssist.exe
(Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
(Wave Systems Corp.) C:\Program Files\Dell\Dell Data Protection\Access\Advanced\Wave\Authentication Manager\WaveAMService.exe
(Ericsson AB) C:\Program Files (x86)\Dell\Dell WWAN\WMCore\mini_WMCore.exe
(Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
(Dell Inc.) C:\Program Files\Dell\Feature Enhancement Pack\DFEPService.exe
(RNDPLUS.COM) C:\Program Files (x86)\iNexio\nxTCon\UsbTouchService.exe
(Alps Electric Co., Ltd.) C:\Program Files\DellTPad\Apoint.exe
(Wave Systems Corp.) C:\Program Files\Dell\Dell Data Protection\Access\Advanced\Wave\Trusted Drive Manager\TdmNotify.exe
(IDT, Inc.) C:\Program Files\IDT\WDM\sttray64.exe
(Dell Inc.) C:\Program Files\Dell\Feature Enhancement Pack\DFEPApplication.exe
(Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Alps Electric Co., Ltd.) C:\Program Files\DellTPad\ApMsgFwd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Ericsson AB) C:\Program Files (x86)\Dell\Dell Mobile Broadband Manager\WirelessManager.exe
(Microsoft Corporation) C:\Windows\System32\StikyNot.exe
(Alps Electric Co., Ltd.) C:\Program Files\DellTPad\hidfind.exe
(Alps Electric Co., Ltd.) C:\Program Files\DellTPad\ApntEx.exe
(Renesas Electronics Corporation) C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
(Hewlett-Packard) C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe
(Geek Software GmbH) C:\Program Files (x86)\PDF24\pdf24.exe
(NEXIO CO., LTD.) C:\Program Files (x86)\iNexio\nxTCon\nxGestureAction.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Microsoft Corporation) C:\Windows\System32\alg.exe
(Microsoft Corporation) C:\Windows\System32\GWX\GWX.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PrivacyIconClient.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\System32\PrintIsolationHost.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [Apoint] => C:\Program Files\DellTPad\Apoint.exe [626552 2012-01-25] (Alps Electric Co., Ltd.)
HKLM\...\Run: [TdmNotify] => C:\Program Files\Dell\Dell Data Protection\Access\Advanced\Wave\Trusted Drive Manager\TdmNotify.exe [381296 2011-12-08] (Wave Systems Corp.)
HKLM\...\Run: [SysTrayApp] => C:\Program Files\IDT\WDM\sttray64.exe [1425408 2012-02-13] (IDT, Inc.)
HKLM\...\Run: [DFEPApplication] => C:\Program Files\Dell\Feature Enhancement Pack\DFEPApplication.exe [7078424 2012-05-08] (Dell Inc.)
HKLM\...\Run: [IntelPROSet] => C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe [4756240 2012-03-29] (Intel(R) Corporation)
HKLM\...\Run: [Andy] => "C:\Program Files\Andy\HandyAndy.exe"
HKLM-x32\...\Run: [NUSB3MON] => C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe [113288 2010-11-17] (Renesas Electronics Corporation)
HKLM-x32\...\Run: [USB3MON] => C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [291608 2012-02-27] (Intel Corporation)
HKLM-x32\...\Run: [IMSS] => C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe [133400 2012-02-28] (Intel Corporation)
HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe [49208 2011-10-28] (Hewlett-Packard)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [PDFPrint] => C:\Program Files (x86)\PDF24\pdf24.exe [191016 2014-05-14] (Geek Software GmbH)
HKLM-x32\...\Run: [nxGestureAction] => C:\Program Files (x86)\iNexio\nxTCon\nxGestureAction.exe [49152 2011-08-04] (NEXIO CO., LTD.)
HKLM-x32\...\Run: [Adobe Creative Cloud] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe [2584240 2015-04-20] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [BCSSync] => C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [89184 2012-11-05] (Microsoft Corporation)
HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [59720 2013-09-13] (Apple Inc.)
HKLM-x32\...\Run: [QuickTime Task] => C:\Program Files (x86)\QuickTime\QTTask.exe [421888 2015-06-17] (Apple Inc.)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
Winlogon\Notify\spba: C:\Program Files\Common Files\SPBA\homefus2.dll (UPEK Inc.)
HKU\S-1-5-21-390905103-1377331367-2787750936-1000\...\Run: [WirelessManager] => C:\Program Files (x86)\Dell\Dell Mobile Broadband Manager\WirelessManager.exe [20480 2011-12-08] (Ericsson AB)
HKU\S-1-5-21-390905103-1377331367-2787750936-1000\...\Run: [RESTART_STICKY_NOTES] => C:\Windows\System32\StikyNot.exe [427520 2009-07-14] (Microsoft Corporation)
Lsa: [Notification Packages] scecli C:\Program Files\WIDCOMM\Bluetooth Software\BtwProximityCP.dll
Startup: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Smart Settings.lnk [2014-04-17]
ShortcutTarget: Smart Settings.lnk -> C:\Program Files\Dell\Feature Enhancement Pack\SmartSettings.exe (Dell Inc.)
Startup: C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Smart Settings.lnk [2014-04-17]
ShortcutTarget: Smart Settings.lnk -> C:\Program Files\Dell\Feature Enhancement Pack\SmartSettings.exe (Dell Inc.)
ShellIconOverlayIdentifiers: [ AccExtIco1] -> {AB9CF9F8-8A96-4F9D-BF21-CE85714C3A47} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll [2015-04-16] ()
ShellIconOverlayIdentifiers: [ AccExtIco2] -> {853B7E05-C47D-4985-909A-D0DC5C6D7303} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll [2015-04-16] ()
ShellIconOverlayIdentifiers: [ AccExtIco3] -> {42D38F2E-98E9-4382-B546-E24E4D6D04BB} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll [2015-04-16] ()
ShellIconOverlayIdentifiers: [EnabledUnlockedFDEIconOverlay] -> {30D3C2AF-9709-4D05-9CF4-13335F3C1E4A} => C:\Program Files\Dell\Dell Data Protection\Access\Advanced\Wave\Trusted Drive Manager\TdmIconOverlay.dll [2011-12-08] (Wave Systems Corp.)
ShellIconOverlayIdentifiers: [UninitializedFdeIconOverlay] -> {CF08DA3E-C97D-4891-A66B-E39B28DD270F} => C:\Program Files\Dell\Dell Data Protection\Access\Advanced\Wave\Trusted Drive Manager\TdmIconOverlay.dll [2011-12-08] (Wave Systems Corp.)
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
CHR HKU\S-1-5-21-390905103-1377331367-2787750936-1000\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKU\S-1-5-21-390905103-1377331367-2787750936-1000\SOFTWARE\Policies\Microsoft\Internet Explorer: Policy restriction <======= ATTENTION
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=msnhome
HKU\S-1-5-21-390905103-1377331367-2787750936-1000\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
Tcpip\Parameters: [DhcpNameServer] 10.0.0.1
Tcpip\..\Interfaces\{64300E22-83CD-431B-A812-8DA5B1F4F0E3}: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{A5475C1D-211B-47F0-89CC-DCC22A55B672}: [DhcpNameServer] 10.0.0.1
FireFox:
========
FF ProfilePath: C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default
FF DefaultSearchEngine: delta-homes
FF SelectedSearchEngine: delta-homes
FF Homepage: https://www.malwarebytes.org/restorebrowser/&ts=1434759015&z=fa9e5055728756d60212ecdg6z6c0z7m8wft8e1edb&from=ima&uid=LITEONITXLCS-128M6SX2X5X7mmX128GB_TW032GYJ5508538M1594
FF Plugin: @java.com/DTPlugin,version=10.79.2 -> C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll [2015-06-20] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.79.2 -> C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll [2015-06-20] (Oracle Corporation)
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.40416.0\npctrl.dll [2015-04-16] ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin: @videolan.org/vlc,version=2.1.4 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2014-02-28] (VideoLAN)
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll [2015-04-20] (Adobe Systems)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.0.59 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2012-01-06] (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2012-01-06] (Intel Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.40416.0\npctrl.dll [2015-04-15] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~3\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~3\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.27.5\npGoogleUpdate3.dll [2015-05-15] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.27.5\npGoogleUpdate3.dll [2015-05-15] (Google Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2015-07-03] (Adobe Systems Inc.)
FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll [2015-04-20] (Adobe Systems)
FF Plugin-x32: PDF Architect 2 -> C:\Program Files (x86)\PDF Architect 2\np-previewer.dll [2014-04-30] (pdfforge GmbH)
FF Extension: Avira Browser Safety - C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\Extensions\abs@avira.com [2015-07-02]
FF Extension: StartRevApp - C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\Extensions\syvwgwuw_mvktygnkq@gvtkbppqpnxbdm.com [2015-07-28]
FF Extension: Deutsch (DE) Language Pack - C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\Extensions\langpack-de@firefox.mozilla.org.xpi [2014-05-12]
FF Extension: Adblock Plus - C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2015-07-02]
StartMenuInternet: FIREFOX.EXE - firefox.exe
Chrome:
=======
CHR dev: Chrome dev build detected! <======= ATTENTION
CHR Profile: C:\Users\Dell Latitude E6430\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Avira Browser Safety) - C:\Users\Dell Latitude E6430\AppData\Local\Google\Chrome\User Data\Default\Extensions\flliilndjeohchalpbbcdekjklbdgfkk [2015-07-28]
CHR HKLM\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - https://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - https://clients2.google.com/service/update2/crx
==================== Services (Whitelisted) =================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 dcevt64; C:\Program Files\Dell\SysMgt\dataeng\bin\dsm_sa_eventmgr64.exe [222144 2012-01-16] (Dell Inc.)
R2 dcstor64; C:\Program Files\Dell\SysMgt\dataeng\bin\dsm_sa_datamgr64.exe [293824 2012-01-16] (Dell Inc.)
R2 DFEPService; C:\Program Files\Dell\Feature Enhancement Pack\DFEPService.exe [2279960 2012-05-08] (Dell Inc.)
R2 EmbassyService; C:\Program Files\Dell\Dell Data Protection\Access\Advanced\Wave\EMBASSY Client Core\EmbassyServer.exe [218504 2012-01-17] ()
R2 FoxitCloudUpdateService; C:\Program Files (x86)\Foxit Software\Foxit Reader\Foxit Cloud\FCUpdateService.exe [244392 2015-06-02] (Foxit Software Inc.)
R2 iNexioTouchDriverService; C:\Program Files (x86)\iNexio\nxTCon\XYNTService.exe [45056 2011-08-04] () [File not signed]
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [161560 2012-02-28] (Intel Corporation)
S2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [1133880 2015-06-18] (Malwarebytes Corporation)
S3 McComponentHostService; C:\Program Files\McAfee Security Scan\3.11.149\McCHSvc.exe [289256 2015-06-26] (McAfee, Inc.)
S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [273168 2012-03-29] ()
R2 O2FLASH; C:\Windows\system32\o2flash.exe [244328 2011-11-16] (O2Micro International)
R2 O2SDIOAssist; C:\Windows\SysWOW64\srvany.exe [8192 2003-04-18] () [File not signed]
S3 PDF Architect 2; C:\Program Files (x86)\PDF Architect 2\ws.exe [1716264 2014-04-30] (pdfforge GmbH)
S3 pdfforge CrashHandler; C:\Program Files (x86)\PDF Architect 2\crash-handler-ws.exe [861736 2014-04-30] (pdfforge GmbH)
S2 tcsd_win32.exe; C:\Program Files (x86)\NTRU Cryptosystems\NTRU TCG Software Stack\bin\tcsd_win32.exe [1637888 2011-10-08] () [File not signed]
R2 Wave Authentication Manager Service; C:\Program Files\Dell\Dell Data Protection\Access\Advanced\Wave\Authentication Manager\WaveAMService.exe [1679872 2012-01-05] (Wave Systems Corp.) [File not signed]
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)
R2 WMCoreService; C:\Program Files (x86)\Dell\Dell WWAN\WMCore\mini_WMCore.exe [689560 2012-10-18] (Ericsson AB)
S3 WvPCR; C:\Program Files\Dell\Dell Data Protection\Access\Advanced\Wave\Common\WvPCR.exe [198144 2012-01-16] (Wave Systems Corp.) [File not signed]
R2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [2669840 2012-03-29] (Intel® Corporation)
S4 gupdate; "C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /svc [X]
S4 gupdatem; "C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /medsvc [X]
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 bcbtums; C:\Windows\System32\drivers\bcbtums.sys [135720 2014-04-17] (Broadcom Corporation.)
R3 d554gps; C:\Windows\System32\DRIVERS\d554gps64.sys [103184 2012-03-01] (Ericsson AB)
R3 d554scard; C:\Windows\System32\DRIVERS\d554scard.sys [61992 2011-01-14] (Ericsson AB)
R3 dcdbas; C:\Windows\System32\DRIVERS\dcdbas64.sys [38472 2012-03-03] (Dell Inc.)
R3 ecnssndis; C:\Windows\System32\Drivers\wwuss64.sys [26664 2011-10-05] (Ericsson AB)
R3 ecnssndisfltr; C:\Windows\System32\Drivers\wwussf64.sys [29736 2011-10-05] (Ericsson AB)
S3 HCWF9BDA; C:\Windows\System32\Drivers\hcwF9b64.sys [188376 2013-09-25] (ITE )
R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2015-06-18] (Malwarebytes Corporation)
S3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [63704 2015-06-18] (Malwarebytes Corporation)
R3 Mbm3CBus; C:\Windows\System32\DRIVERS\Mbm3CBus.sys [443208 2012-10-02] (MCCI Corporation)
R3 Mbm3DevMt; C:\Windows\System32\DRIVERS\Mbm3DevMt.sys [453960 2012-10-02] (MCCI Corporation)
R3 Mbm3mdfl; C:\Windows\System32\DRIVERS\Mbm3mdfl.sys [21832 2012-10-02] (MCCI Corporation)
R3 Mbm3Mdm; C:\Windows\System32\DRIVERS\Mbm3Mdm.sys [506184 2012-10-02] (MCCI Corporation)
S3 nusb3hub; C:\Windows\system32\drivers\nusb3hub.sys [80384 2010-09-30] (Renesas Electronics Corporation) [File not signed]
S3 nusb3xhc; C:\Windows\system32\drivers\nusb3xhc.sys [180736 2010-09-30] (Renesas Electronics Corporation) [File not signed]
R1 PStrip64; C:\Windows\System32\drivers\pstrip64.sys [13008 2006-09-30] ()
R3 WwanUsbServ; C:\Windows\System32\DRIVERS\WwanUsbMp64.sys [280448 2012-12-21] (Ericsson AB)
S3 catchme; \??\C:\ComboFix\catchme.sys [X]
S3 VBoxDrv; \??\C:\Program Files\Oracle\Virtualbox\VBoxDrv.sys [X]
S3 VBoxNetFlt; system32\DRIVERS\VBoxNetFlt.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-07-28 10:27 - 2015-07-28 10:27 - 00000000 ____D C:\Users\Dell Latitude E6430\Downloads\FRST-OlderVersion
2015-07-28 10:21 - 2015-07-28 10:21 - 02248704 _____ C:\Users\Dell Latitude E6430\Downloads\AdwCleaner_4.208.exe
2015-07-28 10:03 - 2015-07-28 10:19 - 00113880 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
2015-07-28 10:03 - 2015-07-28 10:04 - 00001102 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2015-07-28 10:03 - 2015-07-28 10:04 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2015-07-28 10:03 - 2015-07-28 10:04 - 00000000 ____D C:\Program Files (x86)\Malwarebytes Anti-Malware
2015-07-28 10:03 - 2015-06-18 08:41 - 00109272 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbamchameleon.sys
2015-07-28 10:03 - 2015-06-18 08:41 - 00063704 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
2015-07-28 10:03 - 2015-06-18 08:41 - 00025816 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mbam.sys
2015-07-28 10:02 - 2015-07-28 10:03 - 21546080 _____ (Malwarebytes Corporation ) C:\Users\Dell Latitude E6430\Downloads\mbam-setup-2.1.6.1022.exe
2015-07-27 19:59 - 2015-07-27 19:59 - 00043177 _____ C:\ComboFix.txt
2015-07-27 19:49 - 2015-07-27 19:48 - 05633622 ____R (Swearware) C:\Users\Dell Latitude E6430\Desktop\ComboFix.exe
2015-07-27 19:48 - 2015-07-27 19:48 - 05633622 _____ (Swearware) C:\Users\Dell Latitude E6430\Downloads\ComboFix (1).exe
2015-07-27 19:46 - 2015-07-27 19:46 - 00000000 ____D C:\ProgramData\9ffbe2a00007fd2
2015-07-27 19:41 - 2015-07-27 19:41 - 00001264 _____ C:\Users\Dell Latitude E6430\Desktop\Revo Uninstaller.lnk
2015-07-27 19:41 - 2015-07-27 19:41 - 00000000 ____D C:\Program Files (x86)\VS Revo Group
2015-07-27 19:40 - 2015-07-27 19:40 - 02623656 _____ (VS Revo Group Ltd.) C:\Users\Dell Latitude E6430\Downloads\revosetup95.exe
2015-07-27 18:41 - 2015-07-27 18:42 - 00380416 _____ C:\Users\Dell Latitude E6430\Downloads\Gmer-19357 (1).exe
2015-07-27 18:33 - 2015-07-27 18:33 - 02146816 _____ (Farbar) C:\Users\Dell Latitude E6430\Downloads\Niepotwierdzony 269470.crdownload
2015-07-27 18:17 - 2015-07-27 18:17 - 00050477 _____ C:\Users\Dell Latitude E6430\Downloads\Defogger (1).exe
2015-07-27 01:07 - 2015-07-27 01:07 - 00000000 ____D C:\Users\Default\AppData\Local\Microsoft Help
2015-07-27 01:07 - 2015-07-27 01:07 - 00000000 ____D C:\Users\Default User\AppData\Local\Microsoft Help
2015-07-25 19:31 - 2015-07-25 19:31 - 00000000 ____D C:\Windows\rescache
2015-07-24 23:13 - 2015-07-24 23:13 - 01190632 _____ (Adobe Systems Incorporated) C:\Users\Dell Latitude E6430\Downloads\readerdc_pl_d_install (1).exe
2015-07-24 23:13 - 2015-07-24 23:13 - 01190632 _____ (Adobe Systems Incorporated) C:\Users\Dell Latitude E6430\Downloads\readerdc_de_d_install.exe
2015-07-24 22:45 - 2015-07-24 22:45 - 00000000 ____D C:\Users\Dell Latitude E6430\AppData\Local\CEF
2015-07-24 22:39 - 2015-07-24 22:39 - 01190632 _____ (Adobe Systems Incorporated) C:\Users\Dell Latitude E6430\Downloads\readerdc_de_d_install (1).exe
2015-07-24 22:36 - 2015-07-24 22:36 - 01190632 _____ (Adobe Systems Incorporated) C:\Users\Dell Latitude E6430\Downloads\readerdc_pl_d_install.exe
2015-07-24 22:25 - 2015-07-15 05:19 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll
2015-07-24 22:25 - 2015-07-15 05:19 - 00046080 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2015-07-24 22:25 - 2015-07-15 05:19 - 00041984 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll
2015-07-24 22:25 - 2015-07-15 05:19 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll
2015-07-24 22:25 - 2015-07-15 04:55 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll
2015-07-24 22:25 - 2015-07-15 04:55 - 00034304 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll
2015-07-24 22:25 - 2015-07-15 04:55 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll
2015-07-24 22:25 - 2015-07-15 04:54 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll
2015-07-24 22:25 - 2015-07-15 03:59 - 00372224 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2015-07-24 22:25 - 2015-07-15 03:52 - 00299008 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll
2015-07-23 20:58 - 2015-07-23 20:58 - 00000000 ____D C:\7e3238667fae037d35378662fc2066
2015-07-23 18:52 - 2015-07-27 01:06 - 00000000 ____D C:\Users\Dell Latitude E6430\Desktop\clip
2015-07-23 12:32 - 2015-07-23 12:28 - 294608054 _____ C:\Users\Dell Latitude E6430\Desktop\DO Video Abend ERF 2015 präsentation mit Videos v7.pptx
2015-07-23 00:33 - 2015-07-28 10:17 - 00000000 ____D C:\Program Files (x86)\Poised Measurement
2015-07-22 20:07 - 2015-07-22 20:07 - 00000000 ____D C:\Users\Dell Latitude E6430\AppData\Roaming\Apple Computer
2015-07-22 20:05 - 2015-07-22 20:05 - 00001845 _____ C:\Users\Public\Desktop\QuickTime Player.lnk
2015-07-22 20:05 - 2015-07-22 20:05 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime
2015-07-22 20:05 - 2015-07-22 20:05 - 00000000 ____D C:\ProgramData\Apple Computer
2015-07-22 20:05 - 2015-07-22 20:05 - 00000000 ____D C:\Program Files (x86)\QuickTime
2015-07-22 20:04 - 2015-07-22 20:04 - 00002519 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk
2015-07-22 20:04 - 2015-07-22 20:04 - 00000000 ____D C:\Users\Dell Latitude E6430\AppData\Local\Apple
2015-07-22 20:04 - 2015-07-22 20:04 - 00000000 ____D C:\Program Files (x86)\Apple Software Update
2015-07-22 20:03 - 2015-07-22 20:04 - 41908568 _____ (Apple Inc.) C:\Users\Dell Latitude E6430\Downloads\QuickTimeInstaller.exe
2015-07-22 19:56 - 2015-07-22 19:04 - 294605680 _____ C:\Users\Dell Latitude E6430\Desktop\DO Video Abend ERF 2015 präsentation mit Videos v6.pptx
2015-07-22 19:44 - 2015-07-27 01:07 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
2015-07-22 19:44 - 2015-07-22 19:44 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SharePoint
2015-07-22 19:44 - 2015-07-22 19:44 - 00000000 ____D C:\Program Files (x86)\Microsoft Synchronization Services
2015-07-22 19:43 - 2015-07-22 19:43 - 00000000 ____D C:\Windows\System32\Tasks\OfficeSoftwareProtectionPlatform
2015-07-22 19:43 - 2015-07-22 19:43 - 00000000 ____D C:\Windows\PCHEALTH
2015-07-22 19:43 - 2015-07-22 19:43 - 00000000 ____D C:\Program Files (x86)\Microsoft Sync Framework
2015-07-22 19:43 - 2015-07-22 19:43 - 00000000 ____D C:\Program Files (x86)\Microsoft SQL Server Compact Edition
2015-07-22 19:42 - 2015-07-22 19:42 - 00000000 ____D C:\Program Files\Microsoft Office
2015-07-22 19:42 - 2015-07-22 19:42 - 00000000 ____D C:\Program Files (x86)\Microsoft Visual Studio 8
2015-07-22 19:41 - 2015-07-27 01:10 - 00000000 ____D C:\ProgramData\Microsoft Help
2015-07-22 19:41 - 2015-07-22 19:41 - 00000000 ___RD C:\MSOCache
2015-07-22 19:41 - 2015-07-22 19:41 - 00000000 ____D C:\Users\Dell Latitude E6430\AppData\Local\Microsoft Help
2015-07-22 19:41 - 2015-07-22 19:41 - 00000000 ____D C:\Program Files (x86)\Microsoft Analysis Services
2015-07-15 11:14 - 2015-07-15 11:14 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee Security Scan Plus
2015-07-15 11:14 - 2015-07-15 11:14 - 00000000 ____D C:\Program Files\McAfee Security Scan
2015-07-15 11:14 - 2015-06-25 20:09 - 00389832 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2015-07-15 11:14 - 2015-06-25 19:43 - 00342736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2015-07-15 11:14 - 2015-06-20 22:06 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2015-07-15 11:14 - 2015-06-20 21:50 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2015-07-15 11:14 - 2015-06-20 21:49 - 00584192 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2015-07-15 11:14 - 2015-06-20 21:49 - 00417792 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2015-07-15 11:14 - 2015-06-20 21:49 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2015-07-15 11:14 - 2015-06-20 21:48 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2015-07-15 11:14 - 2015-06-20 21:40 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2015-07-15 11:14 - 2015-06-20 21:39 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2015-07-15 11:14 - 2015-06-20 21:34 - 00816640 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2015-07-15 11:14 - 2015-06-20 21:34 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2015-07-15 11:14 - 2015-06-20 21:34 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2015-07-15 11:14 - 2015-06-20 21:25 - 00968704 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2015-07-15 11:14 - 2015-06-20 21:21 - 00490496 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2015-07-15 11:14 - 2015-06-20 21:13 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2015-07-15 11:14 - 2015-06-20 21:08 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2015-07-15 11:14 - 2015-06-20 21:07 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2015-07-15 11:14 - 2015-06-20 21:05 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2015-07-15 11:14 - 2015-06-20 20:48 - 00801280 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2015-07-15 11:14 - 2015-06-20 20:48 - 00720384 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2015-07-15 11:14 - 2015-06-20 20:46 - 02125824 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2015-07-15 11:14 - 2015-06-20 20:46 - 01359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2015-07-15 11:14 - 2015-06-20 20:26 - 02427392 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2015-07-15 11:14 - 2015-06-20 20:02 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2015-07-15 11:14 - 2015-06-19 20:25 - 00504320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2015-07-15 11:14 - 2015-06-19 20:25 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2015-07-15 11:14 - 2015-06-19 20:24 - 00341504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2015-07-15 11:14 - 2015-06-19 20:24 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2015-07-15 11:14 - 2015-06-19 20:23 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2015-07-15 11:14 - 2015-06-19 20:17 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2015-07-15 11:14 - 2015-06-19 20:16 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2015-07-15 11:14 - 2015-06-19 20:13 - 00664064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2015-07-15 11:14 - 2015-06-19 20:13 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2015-07-15 11:14 - 2015-06-19 20:03 - 00418304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2015-07-15 11:14 - 2015-06-19 19:57 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2015-07-15 11:14 - 2015-06-19 19:53 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2015-07-15 11:14 - 2015-06-19 19:52 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2015-07-15 11:14 - 2015-06-19 19:51 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2015-07-15 11:14 - 2015-06-19 19:40 - 02052608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2015-07-15 11:14 - 2015-06-19 19:40 - 00689152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2015-07-15 11:14 - 2015-06-19 19:39 - 01155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2015-07-15 11:14 - 2015-06-19 19:15 - 01951232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2015-07-15 11:14 - 2015-06-19 19:11 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2015-07-15 11:13 - 2015-07-09 19:58 - 03154944 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2015-07-15 11:13 - 2015-07-09 19:58 - 02603008 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2015-07-15 11:13 - 2015-07-09 19:58 - 00696320 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2015-07-15 11:13 - 2015-07-09 19:58 - 00192000 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
2015-07-15 11:13 - 2015-07-09 19:58 - 00139776 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2015-07-15 11:13 - 2015-07-09 19:58 - 00098304 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
2015-07-15 11:13 - 2015-07-09 19:58 - 00091136 _____ (Microsoft Corporation) C:\Windows\system32\WinSetupUI.dll
2015-07-15 11:13 - 2015-07-09 19:58 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2015-07-15 11:13 - 2015-07-09 19:58 - 00037376 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
2015-07-15 11:13 - 2015-07-09 19:58 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2015-07-15 11:13 - 2015-07-09 19:58 - 00012288 _____ (Microsoft Corporation) C:\Windows\system32\wu.upgrade.ps.dll
2015-07-15 11:13 - 2015-07-09 19:43 - 00566784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll
2015-07-15 11:13 - 2015-07-09 19:43 - 00173056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll
2015-07-15 11:13 - 2015-07-09 19:43 - 00093184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll
2015-07-15 11:13 - 2015-07-09 19:43 - 00030208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll
2015-07-15 11:13 - 2015-07-09 19:42 - 00034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe
2015-07-15 11:13 - 2015-06-27 04:47 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2015-07-15 11:13 - 2015-06-27 04:43 - 05923840 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2015-07-15 11:13 - 2015-06-27 03:58 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2015-07-15 11:13 - 2015-06-27 03:39 - 04520448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2015-07-15 11:13 - 2015-06-25 10:57 - 03207168 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2015-07-15 11:13 - 2015-06-17 19:47 - 00404992 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2015-07-15 11:13 - 2015-06-17 19:37 - 00312320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll
2015-07-15 11:13 - 2015-06-02 02:07 - 00254976 _____ (Microsoft Corporation) C:\Windows\system32\cewmdm.dll
2015-07-15 11:13 - 2015-06-02 01:47 - 00210432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cewmdm.dll
2015-07-15 11:12 - 2015-07-02 23:21 - 19877376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2015-07-15 11:12 - 2015-07-02 23:08 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2015-07-15 11:12 - 2015-07-02 22:50 - 02279424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2015-07-15 11:12 - 2015-07-02 22:49 - 25193984 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2015-07-15 11:12 - 2015-07-02 22:46 - 00479232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2015-07-15 11:12 - 2015-07-02 22:40 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2015-07-15 11:12 - 2015-07-02 22:23 - 02885632 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2015-07-15 11:12 - 2015-07-02 22:19 - 12855296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2015-07-15 11:12 - 2015-07-02 22:12 - 00615936 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2015-07-15 11:12 - 2015-07-02 21:55 - 01310720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2015-07-15 11:12 - 2015-07-02 21:20 - 14453248 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2015-07-15 11:12 - 2015-07-02 20:59 - 01545728 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2015-07-15 09:12 - 2015-07-04 20:07 - 02087424 _____ (Microsoft Corporation) C:\Windows\system32\ole32.dll
2015-07-15 09:12 - 2015-07-04 19:48 - 01414656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ole32.dll
2015-07-15 09:12 - 2015-07-01 22:56 - 00155584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2015-07-15 09:12 - 2015-07-01 22:56 - 00095680 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2015-07-15 09:12 - 2015-07-01 22:49 - 01461760 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2015-07-15 09:12 - 2015-07-01 22:49 - 01216512 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2015-07-15 09:12 - 2015-07-01 22:49 - 00729088 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2015-07-15 09:12 - 2015-07-01 22:49 - 00342016 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2015-07-15 09:12 - 2015-07-01 22:49 - 00315392 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2015-07-15 09:12 - 2015-07-01 22:49 - 00309760 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2015-07-15 09:12 - 2015-07-01 22:49 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2015-07-15 09:12 - 2015-07-01 22:49 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2015-07-15 09:12 - 2015-07-01 22:49 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2015-07-15 09:12 - 2015-07-01 22:49 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2015-07-15 09:12 - 2015-07-01 22:49 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2015-07-15 09:12 - 2015-07-01 22:48 - 00044032 _____ (Microsoft Corporation) C:\Windows\system32\cryptbase.dll
2015-07-15 09:12 - 2015-07-01 22:48 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2015-07-15 09:12 - 2015-07-01 22:47 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe
2015-07-15 09:12 - 2015-07-01 22:47 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2015-07-15 09:12 - 2015-07-01 22:43 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2015-07-15 09:12 - 2015-07-01 22:43 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll
2015-07-15 09:12 - 2015-07-01 22:39 - 00686080 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2015-07-15 09:12 - 2015-07-01 22:30 - 00552960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2015-07-15 09:12 - 2015-07-01 22:30 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2015-07-15 09:12 - 2015-07-01 22:30 - 00248832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2015-07-15 09:12 - 2015-07-01 22:30 - 00221184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll
2015-07-15 09:12 - 2015-07-01 22:30 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll
2015-07-15 09:12 - 2015-07-01 22:30 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
2015-07-15 09:12 - 2015-07-01 22:30 - 00036864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptbase.dll
2015-07-15 09:12 - 2015-07-01 22:30 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2015-07-15 09:12 - 2015-07-01 22:30 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll
2015-07-15 09:12 - 2015-07-01 22:29 - 00665088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
2015-07-15 09:12 - 2015-07-01 22:29 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2015-07-15 09:12 - 2015-07-01 22:29 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\auditpol.exe
2015-07-15 09:12 - 2015-07-01 22:27 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msobjs.dll
2015-07-15 09:12 - 2015-07-01 22:26 - 00146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll
2015-07-15 09:12 - 2015-07-01 22:24 - 00686080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll
2015-07-15 09:12 - 2015-07-01 21:27 - 00159232 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2015-07-15 09:12 - 2015-07-01 21:26 - 00290816 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
2015-07-15 09:12 - 2015-07-01 21:26 - 00129024 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
2015-07-15 09:12 - 2015-04-27 21:23 - 01480192 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll
2015-07-15 09:12 - 2015-04-27 21:23 - 00229376 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll
2015-07-15 09:12 - 2015-04-27 21:23 - 00188416 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll
2015-07-15 09:12 - 2015-04-27 21:23 - 00140288 _____ (Microsoft Corporation) C:\Windows\system32\cryptnet.dll
2015-07-15 09:12 - 2015-04-27 21:05 - 00179200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll
2015-07-15 09:12 - 2015-04-27 21:04 - 01174528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll
2015-07-15 09:12 - 2015-04-27 21:04 - 00143872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptsvc.dll
2015-07-15 09:12 - 2015-04-27 21:04 - 00103936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptnet.dll
2015-07-15 09:11 - 2015-07-09 19:59 - 00017856 _____ (Microsoft Corporation) C:\Windows\system32\CompatTelRunner.exe
2015-07-15 09:11 - 2015-07-09 19:58 - 01085440 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll
2015-07-15 09:11 - 2015-07-09 19:58 - 00765440 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll
2015-07-15 09:11 - 2015-07-09 19:58 - 00726528 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2015-07-15 09:11 - 2015-07-09 19:58 - 00433664 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
2015-07-15 09:11 - 2015-07-09 19:58 - 00227328 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2015-07-15 09:11 - 2015-07-09 19:58 - 00067584 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll
2015-07-15 09:11 - 2015-07-09 19:50 - 01145856 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2015-07-15 09:11 - 2015-06-15 23:50 - 00112064 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe
2015-07-15 09:11 - 2015-06-15 23:45 - 03242496 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
2015-07-15 09:11 - 2015-06-15 23:45 - 01941504 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll
2015-07-15 09:11 - 2015-06-15 23:45 - 00504320 _____ (Microsoft Corporation) C:\Windows\system32\msihnd.dll
2015-07-15 09:11 - 2015-06-15 23:45 - 00070656 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll
2015-07-15 09:11 - 2015-06-15 23:44 - 00128000 _____ (Microsoft Corporation) C:\Windows\system32\msiexec.exe
2015-07-15 09:11 - 2015-06-15 23:43 - 02364416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
2015-07-15 09:11 - 2015-06-15 23:43 - 01805824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll
2015-07-15 09:11 - 2015-06-15 23:43 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msihnd.dll
2015-07-15 09:11 - 2015-06-15 23:42 - 00073216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msiexec.exe
2015-07-15 09:11 - 2015-06-15 23:42 - 00025088 _____ (Microsoft Corporation) C:\Windows\system32\msimsg.dll
2015-07-15 09:11 - 2015-06-15 23:37 - 00025088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msimsg.dll
2015-07-14 09:08 - 2015-07-14 09:08 - 00000154 ____H C:\Users\Dell Latitude E6430\Downloads\.~lock.Szablon CV2 od praca.gratka.pl.doc#
2015-07-13 13:37 - 2015-07-13 13:43 - 00000000 ____D C:\Users\Dell Latitude E6430\AppData\Roaming\Foxit Software
2015-07-13 13:37 - 2015-07-13 13:37 - 00001351 _____ C:\Users\Public\Desktop\Foxit Reader.lnk
2015-07-13 13:37 - 2015-07-13 13:37 - 00000000 ____D C:\Users\Public\Foxit Software
2015-07-13 13:37 - 2015-07-13 13:37 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Foxit Reader
2015-07-13 13:36 - 2015-07-13 13:36 - 00000000 ____D C:\Program Files (x86)\Foxit Software
2015-07-13 13:35 - 2015-07-13 13:36 - 36816072 _____ (Foxit Software Inc. ) C:\Users\Dell Latitude E6430\Downloads\FoxitReader715.0425_prom_enu_Setup.exe
2015-07-11 08:33 - 2015-07-24 22:46 - 00000000 ____D C:\ProgramData\Adobe
2015-07-11 08:33 - 2015-07-24 22:45 - 00000000 ____D C:\Users\Dell Latitude E6430\AppData\Local\Adobe
2015-07-11 08:33 - 2015-07-11 08:33 - 00000000 ____D C:\Users\Dell Latitude E6430\AppData\Roaming\Adobe
2015-07-10 20:05 - 2015-07-10 20:05 - 01190632 _____ (Adobe Systems Incorporated) C:\Users\Dell Latitude E6430\Downloads\readerdc_de_ga_install.exe
2015-07-10 15:17 - 2015-07-07 16:58 - 00012753 _____ C:\Users\Dell Latitude E6430\Documents\umowapolsko-niemiecka.doc_0_1.odt
2015-07-10 15:17 - 2015-07-07 16:30 - 00471097 _____ C:\Users\Dell Latitude E6430\Documents\papier.doc_0_2.odt
2015-07-10 14:39 - 2015-07-10 14:39 - 03725912 _____ C:\Users\Dell Latitude E6430\Downloads\DBSV_09_Film.zip
2015-07-10 10:28 - 2015-07-24 22:45 - 00003886 _____ C:\Windows\System32\Tasks\Adobe Acrobat Update Task
2015-07-10 10:28 - 2015-07-24 22:45 - 00002441 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2015-07-10 10:28 - 2015-07-15 11:14 - 00001934 _____ C:\Users\Public\Desktop\McAfee Security Scan Plus.lnk
2015-07-10 10:28 - 2015-07-10 15:15 - 00000000 ____D C:\ProgramData\Adobe-BackupByPhotoshopCS6Portable
2015-07-10 10:28 - 2015-07-10 10:28 - 00002047 _____ C:\Users\Public\Desktop\Acrobat Reader DC.lnk
2015-07-10 10:28 - 2015-07-10 10:28 - 00000000 ____D C:\ProgramData\McAfee Security Scan
2015-07-10 10:28 - 2015-07-10 10:28 - 00000000 ____D C:\ProgramData\McAfee
2015-07-10 10:24 - 2015-07-10 10:24 - 00000000 _____ C:\Users\Dell Latitude E6430\AppData\Local\Temp.dat
2015-07-09 19:58 - 2015-07-10 10:29 - 00000000 ____D C:\Users\Dell Latitude E6430\AppData\Roaming\Adobe-BackupByPhotoshopCS6Portable
2015-07-09 13:23 - 2015-07-11 09:24 - 00001496 _____ C:\Users\Dell Latitude E6430\AppData\Local\Adobe Zapisz dla Internetu 12.0 Prefs
2015-07-08 20:10 - 2015-07-28 10:17 - 00000000 ____D C:\Program Files (x86)\Steep Sex
2015-07-07 16:13 - 2015-06-28 16:33 - 00471097 _____ C:\Users\Dell Latitude E6430\Documents\papier.doc_0_1.odt
2015-07-07 16:13 - 2015-06-28 10:47 - 00013800 _____ C:\Users\Dell Latitude E6430\Documents\umowapolsko-niemiecka.doc_0.odt
2015-07-06 09:59 - 2015-07-06 09:59 - 00000383 _____ C:\ftconfig.ini
2015-07-02 16:13 - 2015-07-02 16:13 - 00946636 _____ C:\Users\Dell Latitude E6430\Downloads\adblock_plus-2.6.9-an+sm+tb+fx.xpi
2015-07-02 15:51 - 2015-07-02 15:51 - 00358604 _____ C:\Users\Dell Latitude E6430\Downloads\nickmsg_216058_a24330bf-d6c8-455b-8a5a-689cb71282c2.wav
2015-06-28 10:32 - 2015-07-10 15:16 - 00000154 ____H C:\Users\Dell Latitude E6430\Downloads\.~lock.umowapolsko-niemiecka.doc#
2015-06-28 10:32 - 2015-06-10 14:45 - 00471092 _____ C:\Users\Dell Latitude E6430\Documents\papier.doc_0.odt
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-07-28 10:27 - 2015-02-19 01:17 - 00020905 _____ C:\Users\Dell Latitude E6430\Downloads\FRST.txt
2015-07-28 10:27 - 2015-02-19 01:17 - 00000000 ____D C:\FRST
2015-07-28 10:27 - 2015-02-19 01:16 - 02146816 _____ (Farbar) C:\Users\Dell Latitude E6430\Downloads\FRST64.exe
2015-07-28 10:24 - 2014-04-17 22:45 - 00732486 _____ C:\Windows\system32\perfh015.dat
2015-07-28 10:24 - 2014-04-17 22:45 - 00156064 _____ C:\Windows\system32\perfc015.dat
2015-07-28 10:24 - 2009-07-14 07:13 - 01670518 _____ C:\Windows\system32\PerfStringBackup.INI
2015-07-28 10:23 - 2015-03-06 11:09 - 00000442 _____ C:\Windows\system32\Drivers\etc\hosts.ics
2015-07-28 10:23 - 2015-02-20 17:02 - 00000000 ____D C:\AdwCleaner
2015-07-28 10:23 - 2015-02-17 22:52 - 00311896 _____ C:\Windows\PFRO.log
2015-07-28 10:23 - 2015-02-17 22:52 - 00018194 _____ C:\Windows\setupact.log
2015-07-28 10:23 - 2014-04-17 13:52 - 02086645 _____ C:\Windows\WindowsUpdate.log
2015-07-28 10:23 - 2009-07-14 07:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2015-07-28 10:22 - 2009-07-14 06:45 - 00031312 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-07-28 10:22 - 2009-07-14 06:45 - 00031312 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-07-28 10:15 - 2014-11-28 23:16 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2015-07-28 10:15 - 2014-11-16 10:01 - 00002189 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2015-07-28 10:15 - 2014-05-11 08:48 - 00001049 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk
2015-07-28 10:15 - 2014-04-17 13:52 - 00000000 ____D C:\Users\Dell Latitude E6430
2015-07-28 10:15 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\SchCache
2015-07-27 19:59 - 2015-02-20 11:10 - 00000000 ____D C:\Qoobox
2015-07-27 19:57 - 2009-07-14 04:34 - 87293952 _____ C:\Windows\system32\config\SOFTWARE.bak
2015-07-27 19:57 - 2009-07-14 04:34 - 44302336 _____ C:\Windows\system32\config\COMPONENTS.bak
2015-07-27 19:57 - 2009-07-14 04:34 - 20709376 _____ C:\Windows\system32\config\SYSTEM.bak
2015-07-27 19:57 - 2009-07-14 04:34 - 00524288 _____ C:\Windows\system32\config\DEFAULT.bak
2015-07-27 19:57 - 2009-07-14 04:34 - 00065536 _____ C:\Windows\system32\config\SAM.bak
2015-07-27 19:57 - 2009-07-14 04:34 - 00024576 _____ C:\Windows\system32\config\SECURITY.bak
2015-07-27 19:57 - 2009-07-14 04:34 - 00000215 _____ C:\Windows\system.ini
2015-07-27 19:56 - 2015-02-20 11:10 - 00000000 ____D C:\Windows\erdnt
2015-07-27 18:40 - 2015-02-19 01:18 - 00038989 _____ C:\Users\Dell Latitude E6430\Downloads\Addition.txt
2015-07-27 18:19 - 2015-02-19 01:13 - 00000500 _____ C:\Users\Dell Latitude E6430\Downloads\defogger_disable.log
2015-07-27 01:30 - 2015-04-06 07:58 - 00000000 ___SD C:\Windows\system32\GWX
2015-07-27 01:27 - 2014-07-24 22:34 - 00000000 ____D C:\Users\Dell Latitude E6430\AppData\Roaming\vlc
2015-07-27 01:26 - 2009-07-14 06:45 - 00547104 _____ C:\Windows\system32\FNTCACHE.DAT
2015-07-27 01:07 - 2015-06-15 08:35 - 00000024 _____ C:\Users\Dell Latitude E6430\AppData\Roaming\appdataFr25.bin
2015-07-27 01:07 - 2009-07-14 04:34 - 00000478 _____ C:\Windows\win.ini
2015-07-24 23:03 - 2015-04-06 07:58 - 00000000 ___SD C:\Windows\SysWOW64\GWX
2015-07-24 23:03 - 2014-12-15 10:33 - 00000000 ____D C:\Windows\system32\appraiser
2015-07-24 23:03 - 2014-05-11 08:33 - 00000000 ___SD C:\Windows\system32\CompatTel
2015-07-24 23:03 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\PolicyDefinitions
2015-07-23 20:59 - 2009-07-14 07:08 - 00032520 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2015-07-23 20:58 - 2014-05-11 09:03 - 00000000 ____D C:\Windows\system32\MRT
2015-07-22 20:07 - 2014-04-17 15:12 - 00000000 ____D C:\Users\Dell Latitude E6430\AppData\Roaming\WirelessManager
2015-07-22 19:48 - 2014-04-17 14:29 - 00165088 _____ C:\Users\Dell Latitude E6430\AppData\Local\GDIPFONTCACHEV1.DAT
2015-07-22 19:44 - 2010-11-21 09:17 - 00000000 ____D C:\Windows\ShellNew
2015-07-22 19:44 - 2009-07-14 07:32 - 00000000 ____D C:\Program Files (x86)\MSBuild
2015-07-22 19:43 - 2015-05-26 22:05 - 00000000 ____D C:\Program Files (x86)\Microsoft Office
2015-07-22 19:42 - 2009-07-14 05:20 - 00000000 ____D C:\Program Files\Common Files\Microsoft Shared
2015-07-17 19:02 - 2014-09-11 14:41 - 00000000 ____D C:\Users\Dell Latitude E6430\Desktop\motory
2015-07-16 10:04 - 2014-08-14 11:17 - 00000000 ____D C:\Users\Dell Latitude E6430\Desktop\gotgolsad
2015-07-13 13:43 - 2015-05-05 18:45 - 00000000 ____D C:\ProgramData\Package Cache
2015-07-10 16:16 - 2015-05-07 08:24 - 00000000 ____D C:\Users\Dell Latitude E6430\Desktop\changhong
2015-07-10 10:29 - 2014-05-09 11:00 - 00000000 ____D C:\Users\Dell Latitude E6430\AppData\Local\Adobe-BackupByPhotoshopCS6Portable
2015-07-10 10:28 - 2014-05-09 11:00 - 00000000 ____D C:\Program Files (x86)\Adobe
2015-07-09 13:12 - 2014-08-04 12:30 - 00000000 ____D C:\Users\Dell Latitude E6430\Desktop\64
2015-07-07 16:15 - 2015-04-20 11:09 - 00000000 ____D C:\Users\Dell Latitude E6430\Desktop\Firmenpapier
2015-07-07 13:40 - 2009-07-14 07:09 - 00000000 ____D C:\Windows\System32\Tasks\WPD
2015-07-03 08:43 - 2014-05-11 09:03 - 130333168 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2015-07-02 15:51 - 2009-07-14 06:57 - 00001547 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk
==================== Files in the root of some directories =======
2015-06-15 08:35 - 2015-07-27 01:07 - 0000024 _____ () C:\Users\Dell Latitude E6430\AppData\Roaming\appdataFr25.bin
2015-02-24 01:49 - 2015-04-12 10:06 - 0009306 _____ () C:\Users\Dell Latitude E6430\AppData\Roaming\PStrip.bak
2015-03-03 14:50 - 2015-04-12 10:05 - 0009306 _____ () C:\Users\Dell Latitude E6430\AppData\Roaming\PStrip.bk!
2015-03-03 14:50 - 2015-04-12 10:06 - 0009306 _____ () C:\Users\Dell Latitude E6430\AppData\Roaming\PStrip.bko
2015-02-24 00:05 - 2015-04-12 14:26 - 0009306 _____ () C:\Users\Dell Latitude E6430\AppData\Roaming\PStrip.ini
2015-07-09 13:23 - 2015-07-11 09:24 - 0001496 _____ () C:\Users\Dell Latitude E6430\AppData\Local\Adobe Zapisz dla Internetu 12.0 Prefs
2015-05-07 09:42 - 2015-06-08 08:17 - 0001496 _____ () C:\Users\Dell Latitude E6430\AppData\Local\Adobe Zapisz dla Internetu 13.0 Prefs
2015-01-10 18:05 - 2015-01-10 18:05 - 0007603 _____ () C:\Users\Dell Latitude E6430\AppData\Local\Resmon.ResmonCfg
2015-07-10 10:24 - 2015-07-10 10:24 - 0000000 _____ () C:\Users\Dell Latitude E6430\AppData\Local\Temp.dat
2014-05-09 10:53 - 2014-05-09 10:53 - 0000057 _____ () C:\ProgramData\Ament.ini
Some files in TEMP:
====================
C:\Users\Dell Latitude E6430\AppData\Local\Temp\Quarantine.exe
C:\Users\Dell Latitude E6430\AppData\Local\Temp\sqlite3.dll
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2015-07-23 09:10
==================== End of log ============================ Code:
Malwarebytes Anti-Malware
www.malwarebytes.org
Suchlaufdatum: 28.07.2015
Suchlaufzeit: 10:05
Protokolldatei: mal.txt
Administrator: Ja
Version: 2.1.8.1057
Malware-Datenbank: v2015.07.28.01
Rootkit-Datenbank: v2015.07.22.01
Lizenz: Kostenlose Version
Malware-Schutz: Deaktiviert
Schutz vor bösartigen Websites: Deaktiviert
Selbstschutz: Deaktiviert
Betriebssystem: Windows 7 Service Pack 1
CPU: x64
Dateisystem: NTFS
Benutzer: Dell Latitude E6430
Suchlauftyp: Bedrohungssuchlauf
Ergebnis: Abgeschlossen
Durchsuchte Objekte: 371790
Abgelaufene Zeit: 7 Min., 53 Sek.
Speicher: Aktiviert
Start: Aktiviert
Dateisystem: Aktiviert
Archive: Aktiviert
Rootkits: Deaktiviert
Heuristik: Aktiviert
PUP: Aktiviert
PUM: Aktiviert
Prozesse: 0
(keine bösartigen Elemente erkannt)
Module: 2
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\msvcp110.dll, Löschen bei Neustart, [0918e304701a3ff7ee0ee32533d0649c],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\msvcr110.dll, Löschen bei Neustart, [0918e304701a3ff7ee0ee32533d0649c],
Registrierungsschlüssel: 0
(keine bösartigen Elemente erkannt)
Registrierungswerte: 0
(keine bösartigen Elemente erkannt)
Registrierungsdaten: 0
(keine bösartigen Elemente erkannt)
Ordner: 97
PUP.Optional.WPM.A, C:\ProgramData\WindowsMangerProtect, Löschen bei Neustart, [7aa76681e2a85dd9856a688226dcdc24],
PUP.Optional.WPM.A, C:\ProgramData\WindowsMangerProtect\update, In Quarantäne, [7aa76681e2a85dd9856a688226dcdc24],
PUP.Optional.IHProtectUpDate.A, C:\ProgramData\IHProtectUpDate, In Quarantäne, [39e8d1162d5d80b68b6a30ced9295da3],
PUP.Optional.IHProtectUpDate.A, C:\ProgramData\IHProtectUpDate\update, In Quarantäne, [39e8d1162d5d80b68b6a30ced9295da3],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab, Löschen bei Neustart, [0918e304701a3ff7ee0ee32533d0649c],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\skin, In Quarantäne, [0918e304701a3ff7ee0ee32533d0649c],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\skin\image, In Quarantäne, [0918e304701a3ff7ee0ee32533d0649c],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web, In Quarantäne, [0918e304701a3ff7ee0ee32533d0649c],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\img, In Quarantäne, [0918e304701a3ff7ee0ee32533d0649c],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\js, In Quarantäne, [0918e304701a3ff7ee0ee32533d0649c],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\_locales, In Quarantäne, [0918e304701a3ff7ee0ee32533d0649c],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\_locales\en-US, In Quarantäne, [0918e304701a3ff7ee0ee32533d0649c],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\_locales\es-419, In Quarantäne, [0918e304701a3ff7ee0ee32533d0649c],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\_locales\es-ES, In Quarantäne, [0918e304701a3ff7ee0ee32533d0649c],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\_locales\fr-BE, In Quarantäne, [0918e304701a3ff7ee0ee32533d0649c],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\_locales\fr-CA, In Quarantäne, [0918e304701a3ff7ee0ee32533d0649c],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\_locales\fr-CH, In Quarantäne, [0918e304701a3ff7ee0ee32533d0649c],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\_locales\fr-FR, In Quarantäne, [0918e304701a3ff7ee0ee32533d0649c],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\_locales\fr-LU, In Quarantäne, [0918e304701a3ff7ee0ee32533d0649c],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\_locales\it-CH, In Quarantäne, [0918e304701a3ff7ee0ee32533d0649c],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\_locales\it-IT, In Quarantäne, [0918e304701a3ff7ee0ee32533d0649c],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\_locales\pl, In Quarantäne, [0918e304701a3ff7ee0ee32533d0649c],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\_locales\pt, In Quarantäne, [0918e304701a3ff7ee0ee32533d0649c],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\_locales\pt-BR, In Quarantäne, [0918e304701a3ff7ee0ee32533d0649c],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\_locales\ru, In Quarantäne, [0918e304701a3ff7ee0ee32533d0649c],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\_locales\ru-MO, In Quarantäne, [0918e304701a3ff7ee0ee32533d0649c],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\_locales\tr-TR, In Quarantäne, [0918e304701a3ff7ee0ee32533d0649c],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\_locales\vi-VI, In Quarantäne, [0918e304701a3ff7ee0ee32533d0649c],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\_locales\zh-CN, In Quarantäne, [0918e304701a3ff7ee0ee32533d0649c],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\_locales\zh-TW, In Quarantäne, [0918e304701a3ff7ee0ee32533d0649c],
PUP.Optional.SupTab.A, C:\Users\Dell Latitude E6430\SupTab, In Quarantäne, [24fde5023c4ef244bff63acfd0332ad6],
PUP.Optional.DefaultNewTab.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\default_newtabff@gmail.com, In Quarantäne, [8e9392554941c571420048c22cd79d63],
PUP.Optional.DefaultNewTab.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\default_newtabff@gmail.com\chrome, In Quarantäne, [8e9392554941c571420048c22cd79d63],
PUP.Optional.DefaultNewTab.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\default_newtabff@gmail.com\chrome\content, In Quarantäne, [8e9392554941c571420048c22cd79d63],
PUP.Optional.DefaultNewTab.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\default_newtabff@gmail.com\chrome\content\include, In Quarantäne, [8e9392554941c571420048c22cd79d63],
PUP.Optional.DefaultNewTab.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\default_newtabff@gmail.com\chrome\content\include\tools, In Quarantäne, [8e9392554941c571420048c22cd79d63],
PUP.Optional.DefaultNewTab.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\default_newtabff@gmail.com\chrome\content\js, In Quarantäne, [8e9392554941c571420048c22cd79d63],
PUP.Optional.DefaultNewTab.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\default_newtabff@gmail.com\chrome\content\js\lib, In Quarantäne, [8e9392554941c571420048c22cd79d63],
PUP.Optional.DefaultNewTab.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\default_newtabff@gmail.com\chrome\content\js\module, In Quarantäne, [8e9392554941c571420048c22cd79d63],
PUP.Optional.DefaultNewTab.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\default_newtabff@gmail.com\chrome\content\js\pack, In Quarantäne, [8e9392554941c571420048c22cd79d63],
PUP.Optional.DefaultNewTab.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\default_newtabff@gmail.com\chrome\locale, In Quarantäne, [8e9392554941c571420048c22cd79d63],
PUP.Optional.DefaultNewTab.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\default_newtabff@gmail.com\chrome\locale\en, In Quarantäne, [8e9392554941c571420048c22cd79d63],
PUP.Optional.DefaultNewTab.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\default_newtabff@gmail.com\chrome\locale\en-US, In Quarantäne, [8e9392554941c571420048c22cd79d63],
PUP.Optional.DefaultNewTab.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\default_newtabff@gmail.com\chrome\locale\es, In Quarantäne, [8e9392554941c571420048c22cd79d63],
PUP.Optional.DefaultNewTab.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\default_newtabff@gmail.com\chrome\locale\es-419, In Quarantäne, [8e9392554941c571420048c22cd79d63],
PUP.Optional.DefaultNewTab.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\default_newtabff@gmail.com\chrome\locale\fr, In Quarantäne, [8e9392554941c571420048c22cd79d63],
PUP.Optional.DefaultNewTab.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\default_newtabff@gmail.com\chrome\locale\fr-BE, In Quarantäne, [8e9392554941c571420048c22cd79d63],
PUP.Optional.DefaultNewTab.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\default_newtabff@gmail.com\chrome\locale\fr-CA, In Quarantäne, [8e9392554941c571420048c22cd79d63],
PUP.Optional.DefaultNewTab.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\default_newtabff@gmail.com\chrome\locale\fr-CH, In Quarantäne, [8e9392554941c571420048c22cd79d63],
PUP.Optional.DefaultNewTab.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\default_newtabff@gmail.com\chrome\locale\fr-LU, In Quarantäne, [8e9392554941c571420048c22cd79d63],
PUP.Optional.DefaultNewTab.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\default_newtabff@gmail.com\chrome\locale\it, In Quarantäne, [8e9392554941c571420048c22cd79d63],
PUP.Optional.DefaultNewTab.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\default_newtabff@gmail.com\chrome\locale\it-CH, In Quarantäne, [8e9392554941c571420048c22cd79d63],
PUP.Optional.DefaultNewTab.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\default_newtabff@gmail.com\chrome\locale\pl, In Quarantäne, [8e9392554941c571420048c22cd79d63],
PUP.Optional.DefaultNewTab.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\default_newtabff@gmail.com\chrome\locale\pt-BR, In Quarantäne, [8e9392554941c571420048c22cd79d63],
PUP.Optional.DefaultNewTab.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\default_newtabff@gmail.com\chrome\locale\ru, In Quarantäne, [8e9392554941c571420048c22cd79d63],
PUP.Optional.DefaultNewTab.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\default_newtabff@gmail.com\chrome\locale\ru-MO, In Quarantäne, [8e9392554941c571420048c22cd79d63],
PUP.Optional.DefaultNewTab.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\default_newtabff@gmail.com\chrome\locale\tr, In Quarantäne, [8e9392554941c571420048c22cd79d63],
PUP.Optional.DefaultNewTab.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\default_newtabff@gmail.com\chrome\locale\vi, In Quarantäne, [8e9392554941c571420048c22cd79d63],
PUP.Optional.DefaultNewTab.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\default_newtabff@gmail.com\chrome\locale\zh-CN, In Quarantäne, [8e9392554941c571420048c22cd79d63],
PUP.Optional.DefaultNewTab.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\default_newtabff@gmail.com\chrome\locale\zh-TW, In Quarantäne, [8e9392554941c571420048c22cd79d63],
PUP.Optional.DefaultNewTab.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\default_newtabff@gmail.com\chrome\skin, In Quarantäne, [8e9392554941c571420048c22cd79d63],
PUP.Optional.DefaultNewTab.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\default_newtabff@gmail.com\defaults, In Quarantäne, [8e9392554941c571420048c22cd79d63],
PUP.Optional.DefaultNewTab.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\default_newtabff@gmail.com\defaults\preferences, In Quarantäne, [8e9392554941c571420048c22cd79d63],
PUP.Optional.DefaultNewTab.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\default_newtabff@gmail.com\modules, In Quarantäne, [8e9392554941c571420048c22cd79d63],
PUP.Optional.DeskCut.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\deskCutv2@gmail.com, In Quarantäne, [55cc63845931112582c10efcdb285fa1],
PUP.Optional.DeskCut.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\deskCutv2@gmail.com\chrome, In Quarantäne, [55cc63845931112582c10efcdb285fa1],
PUP.Optional.DeskCut.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\deskCutv2@gmail.com\chrome\content, In Quarantäne, [55cc63845931112582c10efcdb285fa1],
PUP.Optional.DeskCut.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\deskCutv2@gmail.com\chrome\content\include, In Quarantäne, [55cc63845931112582c10efcdb285fa1],
PUP.Optional.DeskCut.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\deskCutv2@gmail.com\chrome\content\include\tools, In Quarantäne, [55cc63845931112582c10efcdb285fa1],
PUP.Optional.DeskCut.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\deskCutv2@gmail.com\chrome\content\js, In Quarantäne, [55cc63845931112582c10efcdb285fa1],
PUP.Optional.DeskCut.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\deskCutv2@gmail.com\chrome\content\js\lib, In Quarantäne, [55cc63845931112582c10efcdb285fa1],
PUP.Optional.DeskCut.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\deskCutv2@gmail.com\chrome\content\js\module, In Quarantäne, [55cc63845931112582c10efcdb285fa1],
PUP.Optional.DeskCut.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\deskCutv2@gmail.com\chrome\content\js\pack, In Quarantäne, [55cc63845931112582c10efcdb285fa1],
PUP.Optional.DeskCut.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\deskCutv2@gmail.com\chrome\locale, In Quarantäne, [55cc63845931112582c10efcdb285fa1],
PUP.Optional.DeskCut.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\deskCutv2@gmail.com\chrome\locale\en, In Quarantäne, [55cc63845931112582c10efcdb285fa1],
PUP.Optional.DeskCut.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\deskCutv2@gmail.com\chrome\locale\en-US, In Quarantäne, [55cc63845931112582c10efcdb285fa1],
PUP.Optional.DeskCut.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\deskCutv2@gmail.com\chrome\locale\es, In Quarantäne, [55cc63845931112582c10efcdb285fa1],
PUP.Optional.DeskCut.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\deskCutv2@gmail.com\chrome\locale\es-419, In Quarantäne, [55cc63845931112582c10efcdb285fa1],
PUP.Optional.DeskCut.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\deskCutv2@gmail.com\chrome\locale\fr, In Quarantäne, [55cc63845931112582c10efcdb285fa1],
PUP.Optional.DeskCut.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\deskCutv2@gmail.com\chrome\locale\fr-BE, In Quarantäne, [55cc63845931112582c10efcdb285fa1],
PUP.Optional.DeskCut.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\deskCutv2@gmail.com\chrome\locale\fr-CA, In Quarantäne, [55cc63845931112582c10efcdb285fa1],
PUP.Optional.DeskCut.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\deskCutv2@gmail.com\chrome\locale\fr-CH, In Quarantäne, [55cc63845931112582c10efcdb285fa1],
PUP.Optional.DeskCut.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\deskCutv2@gmail.com\chrome\locale\fr-LU, In Quarantäne, [55cc63845931112582c10efcdb285fa1],
PUP.Optional.DeskCut.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\deskCutv2@gmail.com\chrome\locale\it, In Quarantäne, [55cc63845931112582c10efcdb285fa1],
PUP.Optional.DeskCut.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\deskCutv2@gmail.com\chrome\locale\it-CH, In Quarantäne, [55cc63845931112582c10efcdb285fa1],
PUP.Optional.DeskCut.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\deskCutv2@gmail.com\chrome\locale\pl, In Quarantäne, [55cc63845931112582c10efcdb285fa1],
PUP.Optional.DeskCut.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\deskCutv2@gmail.com\chrome\locale\pt-BR, In Quarantäne, [55cc63845931112582c10efcdb285fa1],
PUP.Optional.DeskCut.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\deskCutv2@gmail.com\chrome\locale\ru, In Quarantäne, [55cc63845931112582c10efcdb285fa1],
PUP.Optional.DeskCut.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\deskCutv2@gmail.com\chrome\locale\ru-MO, In Quarantäne, [55cc63845931112582c10efcdb285fa1],
PUP.Optional.DeskCut.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\deskCutv2@gmail.com\chrome\locale\tr, In Quarantäne, [55cc63845931112582c10efcdb285fa1],
PUP.Optional.DeskCut.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\deskCutv2@gmail.com\chrome\locale\vi, In Quarantäne, [55cc63845931112582c10efcdb285fa1],
PUP.Optional.DeskCut.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\deskCutv2@gmail.com\chrome\locale\zh-CN, In Quarantäne, [55cc63845931112582c10efcdb285fa1],
PUP.Optional.DeskCut.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\deskCutv2@gmail.com\chrome\locale\zh-TW, In Quarantäne, [55cc63845931112582c10efcdb285fa1],
PUP.Optional.DeskCut.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\deskCutv2@gmail.com\chrome\skin, In Quarantäne, [55cc63845931112582c10efcdb285fa1],
PUP.Optional.DeskCut.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\deskCutv2@gmail.com\defaults, In Quarantäne, [55cc63845931112582c10efcdb285fa1],
PUP.Optional.DeskCut.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\deskCutv2@gmail.com\defaults\preferences, In Quarantäne, [55cc63845931112582c10efcdb285fa1],
PUP.Optional.DeskCut.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\deskCutv2@gmail.com\modules, In Quarantäne, [55cc63845931112582c10efcdb285fa1],
Dateien: 0
(keine bösartigen Elemente erkannt)
Physische Sektoren: 0
(keine bösartigen Elemente erkannt)
(end) Code:
Malwarebytes Anti-Malware
www.malwarebytes.org
Suchlaufdatum: 28.07.2015
Suchlaufzeit: 10:05
Protokolldatei: mal1.txt
Administrator: Ja
Version: 2.1.8.1057
Malware-Datenbank: v2015.07.28.01
Rootkit-Datenbank: v2015.07.22.01
Lizenz: Kostenlose Version
Malware-Schutz: Deaktiviert
Schutz vor bösartigen Websites: Deaktiviert
Selbstschutz: Deaktiviert
Betriebssystem: Windows 7 Service Pack 1
CPU: x64
Dateisystem: NTFS
Benutzer: Dell Latitude E6430
Suchlauftyp: Bedrohungssuchlauf
Ergebnis: Abgeschlossen
Durchsuchte Objekte: 371790
Abgelaufene Zeit: 7 Min., 53 Sek.
Speicher: Aktiviert
Start: Aktiviert
Dateisystem: Aktiviert
Archive: Aktiviert
Rootkits: Deaktiviert
Heuristik: Aktiviert
PUP: Aktiviert
PUM: Aktiviert
Prozesse: 0
(keine bösartigen Elemente erkannt)
Module: 2
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\msvcp110.dll, Löschen bei Neustart, [0918e304701a3ff7ee0ee32533d0649c],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\msvcr110.dll, Löschen bei Neustart, [0918e304701a3ff7ee0ee32533d0649c],
Registrierungsschlüssel: 0
(keine bösartigen Elemente erkannt)
Registrierungswerte: 0
(keine bösartigen Elemente erkannt)
Registrierungsdaten: 0
(keine bösartigen Elemente erkannt)
Ordner: 97
PUP.Optional.WPM.A, C:\ProgramData\WindowsMangerProtect, Löschen bei Neustart, [7aa76681e2a85dd9856a688226dcdc24],
PUP.Optional.WPM.A, C:\ProgramData\WindowsMangerProtect\update, In Quarantäne, [7aa76681e2a85dd9856a688226dcdc24],
PUP.Optional.IHProtectUpDate.A, C:\ProgramData\IHProtectUpDate, In Quarantäne, [39e8d1162d5d80b68b6a30ced9295da3],
PUP.Optional.IHProtectUpDate.A, C:\ProgramData\IHProtectUpDate\update, In Quarantäne, [39e8d1162d5d80b68b6a30ced9295da3],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab, Löschen bei Neustart, [0918e304701a3ff7ee0ee32533d0649c],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\skin, In Quarantäne, [0918e304701a3ff7ee0ee32533d0649c],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\skin\image, In Quarantäne, [0918e304701a3ff7ee0ee32533d0649c],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web, In Quarantäne, [0918e304701a3ff7ee0ee32533d0649c],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\img, In Quarantäne, [0918e304701a3ff7ee0ee32533d0649c],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\js, In Quarantäne, [0918e304701a3ff7ee0ee32533d0649c],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\_locales, In Quarantäne, [0918e304701a3ff7ee0ee32533d0649c],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\_locales\en-US, In Quarantäne, [0918e304701a3ff7ee0ee32533d0649c],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\_locales\es-419, In Quarantäne, [0918e304701a3ff7ee0ee32533d0649c],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\_locales\es-ES, In Quarantäne, [0918e304701a3ff7ee0ee32533d0649c],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\_locales\fr-BE, In Quarantäne, [0918e304701a3ff7ee0ee32533d0649c],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\_locales\fr-CA, In Quarantäne, [0918e304701a3ff7ee0ee32533d0649c],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\_locales\fr-CH, In Quarantäne, [0918e304701a3ff7ee0ee32533d0649c],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\_locales\fr-FR, In Quarantäne, [0918e304701a3ff7ee0ee32533d0649c],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\_locales\fr-LU, In Quarantäne, [0918e304701a3ff7ee0ee32533d0649c],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\_locales\it-CH, In Quarantäne, [0918e304701a3ff7ee0ee32533d0649c],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\_locales\it-IT, In Quarantäne, [0918e304701a3ff7ee0ee32533d0649c],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\_locales\pl, In Quarantäne, [0918e304701a3ff7ee0ee32533d0649c],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\_locales\pt, In Quarantäne, [0918e304701a3ff7ee0ee32533d0649c],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\_locales\pt-BR, In Quarantäne, [0918e304701a3ff7ee0ee32533d0649c],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\_locales\ru, In Quarantäne, [0918e304701a3ff7ee0ee32533d0649c],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\_locales\ru-MO, In Quarantäne, [0918e304701a3ff7ee0ee32533d0649c],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\_locales\tr-TR, In Quarantäne, [0918e304701a3ff7ee0ee32533d0649c],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\_locales\vi-VI, In Quarantäne, [0918e304701a3ff7ee0ee32533d0649c],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\_locales\zh-CN, In Quarantäne, [0918e304701a3ff7ee0ee32533d0649c],
PUP.Optional.MiuiTab.A, C:\Program Files (x86)\MiuiTab\web\_locales\zh-TW, In Quarantäne, [0918e304701a3ff7ee0ee32533d0649c],
PUP.Optional.SupTab.A, C:\Users\Dell Latitude E6430\SupTab, In Quarantäne, [24fde5023c4ef244bff63acfd0332ad6],
PUP.Optional.DefaultNewTab.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\default_newtabff@gmail.com, In Quarantäne, [8e9392554941c571420048c22cd79d63],
PUP.Optional.DefaultNewTab.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\default_newtabff@gmail.com\chrome, In Quarantäne, [8e9392554941c571420048c22cd79d63],
PUP.Optional.DefaultNewTab.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\default_newtabff@gmail.com\chrome\content, In Quarantäne, [8e9392554941c571420048c22cd79d63],
PUP.Optional.DefaultNewTab.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\default_newtabff@gmail.com\chrome\content\include, In Quarantäne, [8e9392554941c571420048c22cd79d63],
PUP.Optional.DefaultNewTab.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\default_newtabff@gmail.com\chrome\content\include\tools, In Quarantäne, [8e9392554941c571420048c22cd79d63],
PUP.Optional.DefaultNewTab.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\default_newtabff@gmail.com\chrome\content\js, In Quarantäne, [8e9392554941c571420048c22cd79d63],
PUP.Optional.DefaultNewTab.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\default_newtabff@gmail.com\chrome\content\js\lib, In Quarantäne, [8e9392554941c571420048c22cd79d63],
PUP.Optional.DefaultNewTab.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\default_newtabff@gmail.com\chrome\content\js\module, In Quarantäne, [8e9392554941c571420048c22cd79d63],
PUP.Optional.DefaultNewTab.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\default_newtabff@gmail.com\chrome\content\js\pack, In Quarantäne, [8e9392554941c571420048c22cd79d63],
PUP.Optional.DefaultNewTab.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\default_newtabff@gmail.com\chrome\locale, In Quarantäne, [8e9392554941c571420048c22cd79d63],
PUP.Optional.DefaultNewTab.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\default_newtabff@gmail.com\chrome\locale\en, In Quarantäne, [8e9392554941c571420048c22cd79d63],
PUP.Optional.DefaultNewTab.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\default_newtabff@gmail.com\chrome\locale\en-US, In Quarantäne, [8e9392554941c571420048c22cd79d63],
PUP.Optional.DefaultNewTab.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\default_newtabff@gmail.com\chrome\locale\es, In Quarantäne, [8e9392554941c571420048c22cd79d63],
PUP.Optional.DefaultNewTab.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\default_newtabff@gmail.com\chrome\locale\es-419, In Quarantäne, [8e9392554941c571420048c22cd79d63],
PUP.Optional.DefaultNewTab.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\default_newtabff@gmail.com\chrome\locale\fr, In Quarantäne, [8e9392554941c571420048c22cd79d63],
PUP.Optional.DefaultNewTab.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\default_newtabff@gmail.com\chrome\locale\fr-BE, In Quarantäne, [8e9392554941c571420048c22cd79d63],
PUP.Optional.DefaultNewTab.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\default_newtabff@gmail.com\chrome\locale\fr-CA, In Quarantäne, [8e9392554941c571420048c22cd79d63],
PUP.Optional.DefaultNewTab.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\default_newtabff@gmail.com\chrome\locale\fr-CH, In Quarantäne, [8e9392554941c571420048c22cd79d63],
PUP.Optional.DefaultNewTab.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\default_newtabff@gmail.com\chrome\locale\fr-LU, In Quarantäne, [8e9392554941c571420048c22cd79d63],
PUP.Optional.DefaultNewTab.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\default_newtabff@gmail.com\chrome\locale\it, In Quarantäne, [8e9392554941c571420048c22cd79d63],
PUP.Optional.DefaultNewTab.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\default_newtabff@gmail.com\chrome\locale\it-CH, In Quarantäne, [8e9392554941c571420048c22cd79d63],
PUP.Optional.DefaultNewTab.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\default_newtabff@gmail.com\chrome\locale\pl, In Quarantäne, [8e9392554941c571420048c22cd79d63],
PUP.Optional.DefaultNewTab.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\default_newtabff@gmail.com\chrome\locale\pt-BR, In Quarantäne, [8e9392554941c571420048c22cd79d63],
PUP.Optional.DefaultNewTab.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\default_newtabff@gmail.com\chrome\locale\ru, In Quarantäne, [8e9392554941c571420048c22cd79d63],
PUP.Optional.DefaultNewTab.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\default_newtabff@gmail.com\chrome\locale\ru-MO, In Quarantäne, [8e9392554941c571420048c22cd79d63],
PUP.Optional.DefaultNewTab.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\default_newtabff@gmail.com\chrome\locale\tr, In Quarantäne, [8e9392554941c571420048c22cd79d63],
PUP.Optional.DefaultNewTab.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\default_newtabff@gmail.com\chrome\locale\vi, In Quarantäne, [8e9392554941c571420048c22cd79d63],
PUP.Optional.DefaultNewTab.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\default_newtabff@gmail.com\chrome\locale\zh-CN, In Quarantäne, [8e9392554941c571420048c22cd79d63],
PUP.Optional.DefaultNewTab.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\default_newtabff@gmail.com\chrome\locale\zh-TW, In Quarantäne, [8e9392554941c571420048c22cd79d63],
PUP.Optional.DefaultNewTab.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\default_newtabff@gmail.com\chrome\skin, In Quarantäne, [8e9392554941c571420048c22cd79d63],
PUP.Optional.DefaultNewTab.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\default_newtabff@gmail.com\defaults, In Quarantäne, [8e9392554941c571420048c22cd79d63],
PUP.Optional.DefaultNewTab.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\default_newtabff@gmail.com\defaults\preferences, In Quarantäne, [8e9392554941c571420048c22cd79d63],
PUP.Optional.DefaultNewTab.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\default_newtabff@gmail.com\modules, In Quarantäne, [8e9392554941c571420048c22cd79d63],
PUP.Optional.DeskCut.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\deskCutv2@gmail.com, In Quarantäne, [55cc63845931112582c10efcdb285fa1],
PUP.Optional.DeskCut.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\deskCutv2@gmail.com\chrome, In Quarantäne, [55cc63845931112582c10efcdb285fa1],
PUP.Optional.DeskCut.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\deskCutv2@gmail.com\chrome\content, In Quarantäne, [55cc63845931112582c10efcdb285fa1],
PUP.Optional.DeskCut.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\deskCutv2@gmail.com\chrome\content\include, In Quarantäne, [55cc63845931112582c10efcdb285fa1],
PUP.Optional.DeskCut.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\deskCutv2@gmail.com\chrome\content\include\tools, In Quarantäne, [55cc63845931112582c10efcdb285fa1],
PUP.Optional.DeskCut.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\deskCutv2@gmail.com\chrome\content\js, In Quarantäne, [55cc63845931112582c10efcdb285fa1],
PUP.Optional.DeskCut.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\deskCutv2@gmail.com\chrome\content\js\lib, In Quarantäne, [55cc63845931112582c10efcdb285fa1],
PUP.Optional.DeskCut.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\deskCutv2@gmail.com\chrome\content\js\module, In Quarantäne, [55cc63845931112582c10efcdb285fa1],
PUP.Optional.DeskCut.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\deskCutv2@gmail.com\chrome\content\js\pack, In Quarantäne, [55cc63845931112582c10efcdb285fa1],
PUP.Optional.DeskCut.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\deskCutv2@gmail.com\chrome\locale, In Quarantäne, [55cc63845931112582c10efcdb285fa1],
PUP.Optional.DeskCut.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\deskCutv2@gmail.com\chrome\locale\en, In Quarantäne, [55cc63845931112582c10efcdb285fa1],
PUP.Optional.DeskCut.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\deskCutv2@gmail.com\chrome\locale\en-US, In Quarantäne, [55cc63845931112582c10efcdb285fa1],
PUP.Optional.DeskCut.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\deskCutv2@gmail.com\chrome\locale\es, In Quarantäne, [55cc63845931112582c10efcdb285fa1],
PUP.Optional.DeskCut.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\deskCutv2@gmail.com\chrome\locale\es-419, In Quarantäne, [55cc63845931112582c10efcdb285fa1],
PUP.Optional.DeskCut.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\deskCutv2@gmail.com\chrome\locale\fr, In Quarantäne, [55cc63845931112582c10efcdb285fa1],
PUP.Optional.DeskCut.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\deskCutv2@gmail.com\chrome\locale\fr-BE, In Quarantäne, [55cc63845931112582c10efcdb285fa1],
PUP.Optional.DeskCut.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\deskCutv2@gmail.com\chrome\locale\fr-CA, In Quarantäne, [55cc63845931112582c10efcdb285fa1],
PUP.Optional.DeskCut.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\deskCutv2@gmail.com\chrome\locale\fr-CH, In Quarantäne, [55cc63845931112582c10efcdb285fa1],
PUP.Optional.DeskCut.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\deskCutv2@gmail.com\chrome\locale\fr-LU, In Quarantäne, [55cc63845931112582c10efcdb285fa1],
PUP.Optional.DeskCut.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\deskCutv2@gmail.com\chrome\locale\it, In Quarantäne, [55cc63845931112582c10efcdb285fa1],
PUP.Optional.DeskCut.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\deskCutv2@gmail.com\chrome\locale\it-CH, In Quarantäne, [55cc63845931112582c10efcdb285fa1],
PUP.Optional.DeskCut.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\deskCutv2@gmail.com\chrome\locale\pl, In Quarantäne, [55cc63845931112582c10efcdb285fa1],
PUP.Optional.DeskCut.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\deskCutv2@gmail.com\chrome\locale\pt-BR, In Quarantäne, [55cc63845931112582c10efcdb285fa1],
PUP.Optional.DeskCut.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\deskCutv2@gmail.com\chrome\locale\ru, In Quarantäne, [55cc63845931112582c10efcdb285fa1],
PUP.Optional.DeskCut.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\deskCutv2@gmail.com\chrome\locale\ru-MO, In Quarantäne, [55cc63845931112582c10efcdb285fa1],
PUP.Optional.DeskCut.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\deskCutv2@gmail.com\chrome\locale\tr, In Quarantäne, [55cc63845931112582c10efcdb285fa1],
PUP.Optional.DeskCut.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\deskCutv2@gmail.com\chrome\locale\vi, In Quarantäne, [55cc63845931112582c10efcdb285fa1],
PUP.Optional.DeskCut.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\deskCutv2@gmail.com\chrome\locale\zh-CN, In Quarantäne, [55cc63845931112582c10efcdb285fa1],
PUP.Optional.DeskCut.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\deskCutv2@gmail.com\chrome\locale\zh-TW, In Quarantäne, [55cc63845931112582c10efcdb285fa1],
PUP.Optional.DeskCut.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\deskCutv2@gmail.com\chrome\skin, In Quarantäne, [55cc63845931112582c10efcdb285fa1],
PUP.Optional.DeskCut.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\deskCutv2@gmail.com\defaults, In Quarantäne, [55cc63845931112582c10efcdb285fa1],
PUP.Optional.DeskCut.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\deskCutv2@gmail.com\defaults\preferences, In Quarantäne, [55cc63845931112582c10efcdb285fa1],
PUP.Optional.DeskCut.A, C:\Users\Dell Latitude E6430\AppData\Roaming\Mozilla\Firefox\Profiles\o8dmxtmk.default\extensions\deskCutv2@gmail.com\modules, In Quarantäne, [55cc63845931112582c10efcdb285fa1],
Dateien: 0
(keine bösartigen Elemente erkannt)
Physische Sektoren: 0
(keine bösartigen Elemente erkannt)
(end) |