![]() |
SearchPlusNetwork.com Entfernen? Hallo zusammen ich habe folgendes Problem und zwar Searchplusnetwork eine Browser Startseite die sich bei mir immer öffnet wenn ich in Google Chrome oder Mozzila Firefox gehe. Ich habe bis jetzt alles versucht was man im Internet so finden kann um Searchplusnetwork zu entfernen. Aber nichts hat geholfen! Gestern habe ich das Thema dazu gelesen hier auf Trojaner - Board und habe schon einige Anweisungen befolgt aber erfolglos. Bitte helfen Sie mir.:balla: |
:hallo: Mein Name ist Matthias und ich werde dir bei der Bereinigung deines Computers helfen. Bitte beachte folgende Hinweise:
Schritt 1 Lade Dir bitte OTL von Oldtimer herunter und speichere es auf Deinem Desktop (falls noch nicht vorhanden).
Code: activex
Schritt 2 Downloade Dir bitte defogger von jpshortstuff auf Deinem Desktop.
Schritt 3 Bitte lade dir GMER herunter: (Dateiname zufällig) Bitte poste mit deiner nächsten Antwort
|
OTL Logfile: Code: OTL logfile created on: 3/5/2013 5:55:14 PM - Run 1OTL Logfile: Code: OTL Extras logfile created on: 3/5/2013 5:55:14 PM - Run 1 |
Servus, fehlen noch die Logdateien von DeFogger und GMER. |
GMER Logfile: Code: GMER 2.1.19155 - GMER - Rootkit Detector and Removerdefogger_disable by jpshortstuff (23.02.10.1) Log created at 18:58 on 05/03/2013 (Kev) Checking for autostart values... HKCU\~\Run values retrieved. HKLM\~\Run values retrieved. Checking for services/drivers... -=E.O.F=- Servus ich denke das war alles =) Hoffe auf baldige rückmeldung Hallo nochmal ich weis jetzt nicht ob das mit dem defogger so stimmt wie ich es Gepostet habe ich hoffe |
Servus, du hast alles richtig gemacht. :) "SearchPlusNetwork" ist allerdings ein geringeres Übel auf deinem Rechner. Du bist mit einem speziellen Trojaner infiziert, dessen Aufspürung und Beseitigung nicht ganz leicht ist, aber wir schaffen das. ;) Schritt 1 Downloade Dir bitte
Schritt 2 Beende bitte Deine Schutzsoftware um eventuelle Konflikte zu vermeiden.
Schritt 3 Scan mit Combofix
Schritt 4
Code: HKEY_LOCAL_MACHINE\software\microsoft\Windows\CurrentVersion\Telephony\Providers
Bitte poste mit deiner nächsten Antwort
|
AdwCleaner Logfile: Code: # AdwCleaner v2.114 - Datei am 05/03/2013 um 19:43:05 erstellt |
Servus, sieht schon mal gut aus. Fehlen noch drei Schritte. :) |
~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Junkware Removal Tool (JRT) by Thisisu Version: 4.6.8 (03.04.2013:1) OS: Windows 7 Home Premium x64 Ran by Kev on 05.03.2013 at 19:51:59,07 ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ ~~~ Services ~~~ Registry Values Successfully deleted: [Registry Value] hkey_local_machine\software\microsoft\internet explorer\toolbar\\{ef99bd32-c1fb-11d2-892f-0090271d4f88} Successfully repaired: [Registry Value] hkey_current_user\software\microsoft\internet explorer\searchurl\\Default Successfully repaired: [Registry Value] hkey_users\S-1-5-21-4198297669-3172748106-3339997324-1000\software\microsoft\internet explorer\searchurl\\Default Successfully repaired: [Registry Value] hkey_local_machine\software\microsoft\internet explorer\searchurl\\Default ~~~ Registry Keys Successfully deleted: [Registry Key] "hkey_current_user\software\microsoft\internet explorer\internetregistry\registry\user\S-1-5-21-4198297669-3172748106-3339997324-1000\software\web assistant" Successfully deleted: [Registry Key] hkey_local_machine\software\classes\installer\upgradecodes\f928123a039649549966d4c29d35b1c9 Successfully deleted: [Registry Key] hkey_classes_root\clsid\{ef99bd32-c1fb-11d2-892f-0090271d4f88} ~~~ Files ~~~ Folders ~~~ Event Viewer Logs were cleared ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Scan was completed on 05.03.2013 at 20:00:59,90 End of JRT log ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~ Combofix Logfile: Code: ComboFix 13-03-05.01 - Kev 05.03.2013 20:08:29.1.4 - x64OTL Logfile: Code: OTL logfile created on: 3/5/2013 8:40:30 PM - Run 2 |
OTL Logfile: Code: OTL logfile created on: 3/5/2013 8:40:30 PM - Run 2So das dürfte dann wieder alles sein :D |
Servus, du hast OTL nicht wie beschrieben ausgeführt. 2. Versuch... genau lesen und 1:1 das machen was hier steht:
Code: HKEY_LOCAL_MACHINE\software\microsoft\Windows\CurrentVersion\Telephony\Providers
|
OTL Logfile: Code: OTL logfile created on: 3/7/2013 6:45:45 AM - Run 3 |
Servus, jetzt kümmern wir uns um den Trojaner. :) Schritt 1 Downloade und installiere bitte Erunt. Bitte belasse die Einstellungen wie sie sind.
Schritt 2 Fixen mit OTL
Code: :OTL
Schritt 3 Bitte downloade dir LSPFix
Schritt 4
Code: HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\LanmanWorkstation /S
Bitte poste mit deiner nächsten Antwort
|
All processes killed ========== OTL ========== Service Update-Service stopped successfully! Service Update-Service deleted successfully! C:\Windows\SysWOW64\UpdSvc.dll moved successfully. ========== REGISTRY ========== Registry value HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost\\Update-Service-Installer-Service deleted successfully. Registry value HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\svchost\\Update-Service deleted successfully. Registry value HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\svchost\\Update-Service-Installer-Service not found. Registry value HKEY_LOCAL_MACHINE\software\wow6432node\microsoft\windows nt\currentversion\svchost\\Update-Service not found. HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Dnscache\\"DisplayName"|"@%SystemRoot%\\System32\\dnsapi.dll,-101" /E : value set successfully! HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Dnscache\\"Group"|"TDI" /E : value set successfully! HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Dnscache\\"ImagePath"|hex(2):25,00,53,00,79,00,73,00,74,00,65,00,6d,00,52,00,6f,00,6f,00,74,00,25 ,00,5c,00,73,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,5c,00,73,00,76,00,63,00,68,00,6f,00,73,00,74,00,2e,00,65,00,78,00,65,00,20,00,2d,00,6b,00,20 ,00,4e,00,65,00,74,00,77,00,6f,00,72,00,6b,00,53,00,65,00,72,00,76,00,69,00,63,00,65,00,00,00 /E : value set successfully! HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Dnscache\\"Description"|"@%SystemRoot%\\System32\\dnsapi.dll,-102" /E : value set successfully! HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Dnscache\\"ObjectName"|"NT AUTHORITY\\NetworkService" /E : value set successfully! HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Dnscache\\"ErrorControl"|dword:00000001 /E : value set successfully! HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Dnscache\\"Start"|dword:00000002 /E : value set successfully! HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Dnscache\\"Type"|dword:00000020 /E : value set successfully! HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Dnscache\\"DependOnService"|hex(7):54,00,64,00,78,00,00,00,6e,00,73,00,69,00,00,00,00,00 /E : value set successfully! HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Dnscache\\"ServiceSidType"|dword:00000001 /E : value set successfully! HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Dnscache\\"RequiredPrivileges"|hex(7):53,00,65,00,43,00,68,00,61,00,6e,00,67,00,65,00,4e,00,6f,00 ,74,00,69,00,66,00,79,00,50,00,72,00,69,00,76,00,69,00,6c,00,65,00,67,00,65,00,00,00,53,00,65,00,43,00,72,00,65,00,61,00,74,00,65,00,47,00,6c,00,6f,00 ,62,00,61,00,6c,00,50,00,72,00,69,00,76,00,69,00,6c,00,65,00,67,00,65,00,00,00,00,00 /E : value set successfully! HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Dnscache\\"FailureActions"|hex:80,51,01,00,00,00,00,00,00,00,00,00,03,00,00,00,14,00,00,00,01,00, 00,00,c0,d4,01,00,01,00,00,00,e0,93,04,00,00,00,00,00,00,00,00,00 /E : value set successfully! HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Dnscache\Parameters\\"ServiceDll"|hex(2):25,00,53,00,79,00,73,00,74,00,65,00,6d,00,52,00,6f,00,6f ,00,74,00,25,00,5c,00,53,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,5c,00,64,00,6e,00,73,00,72,00,73,00,6c,00,76,00,72,00,2e,00,64,00,6c,00,6c,00,00 ,00 /E : value set successfully! HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Dnscache\Parameters\\"ServiceDllUnloadOnStop"|dword:00000001 /E : value set successfully! HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Dnscache\Parameters\\"extension"|hex(2):25,00,53,00,79,00,73,00,74,00,65,00,6d,00,52,00,6f,00,6f, 00,74,00,25,00,5c,00,53,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,5c,00,64,00,6e,00,73,00,65,00,78,00,74,00,2e,00,64,00,6c,00,6c,00,00,00 /E : value set successfully! HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Dnscache\Parameters\DnsCache\\"ShutdownOnIdle"|dword:00000000 /E : value set successfully! HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Dnscache\Security\\"Security"|hex:01,00,14,80,f8,00,00,00,04,01,00,00,14,00,00,00,30,00,00,00,02, 00,1c,00,01,00,00,00,02,80,14,00,ff,01,0f,00,01,01,00,00,00,00,00,01,00,00,00,00,02,00,c8,00,08,00,00,00,00,02,18,00,9d,01,02,00,01,02,00,00,00,00,00, 05,20,00,00,00,21,02,00,00,00,02,18,00,ff,01,0f,00,01,02,00,00,00,00,00,05,20,00,00,00,20,02,00,00,00,02,14,00,fd,01,02,00,01,01,00,00,00,00,00,05,12, 00,00,00,00,00,14,00,8d,01,02,00,01,01,00,00,00,00,00,05,04,00,00,00,00,02,14,00,8d,00,02,00,01,01,00,00,00,00,00,05,14,00,00,00,00,02,14,00,8d,00,02, 00,01,01,00,00,00,00,00,05,13,00,00,00,00,02,18,00,cd,00,02,00,01,02,00,00,00,00,00,05,20,00,00,00,2c,02,00,00,00,02,28,00,cd,01,02,00,01,06,00,00,00, 00,00,05,50,00,00,00,04,c9,44,af,94,d9,d3,e5,2b,e1,b7,1c,17,84,87,13,6e,1a,fa,65,01,01,00,00,00,00,00,05,12,00,00,00,01,01,00,00,00,00,00,05,12,00,00, 00 /E : value set successfully! HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Dnscache\TriggerInfo\0\\"Type"|dword:00000004 /E : value set successfully! HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Dnscache\TriggerInfo\0\\"Action"|dword:00000001 /E : value set successfully! HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Dnscache\TriggerInfo\0\\"GUID"|hex:07,9e,56,b7,21,84,e0,4e,ad,10,86,91,5a,fd,ad,09 /E : value set successfully! HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Dnscache\TriggerInfo\0\\"Data0"|hex:35,00,33,00,35,00,35,00,00,00,55,00,44,00,50,00,00,00,00,00 /E : value set successfully! HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\Dnscache\TriggerInfo\0\\"DataType0"|dword:00000002 /E : value set successfully! HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\LanmanWorkstation\\"DisplayName"|"@%systemroot%\\system32\\wkssvc.dll,-100" /E : value set successfully! HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\LanmanWorkstation\\"Group"|"NetworkProvider" /E : value set successfully! HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\LanmanWorkstation\\"ImagePath"|hex(2):25,00,53,00,79,00,73,00,74,00,65,00,6d,00,52,00,6f,00,6f,00 ,74,00,25,00,5c,00,53,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,5c,00,73,00,76,00,63,00,68,00,6f,00,73,00,74,00,2e,00,65,00,78,00,65,00,20,00,2d,00 ,6b,00,20,00,4e,00,65,00,74,00,77,00,6f,00,72,00,6b,00,53,00,65,00,72,00,76,00,69,00,63,00,65,00,00,00 /E : value set successfully! HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\LanmanWorkstation\\"Description"|"@%systemroot%\\system32\\wkssvc.dll,-101" /E : value set successfully! HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\LanmanWorkstation\\"ObjectName"|"NT AUTHORITY\\NetworkService" /E : value set successfully! HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\LanmanWorkstation\\"ErrorControl"|dword:00000001 /E : value set successfully! HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\LanmanWorkstation\\"Start"|dword:00000002 /E : value set successfully! HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\LanmanWorkstation\\"Type"|dword:00000020 /E : value set successfully! HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\LanmanWorkstation\\"DependOnService"|hex(7):42,00,6f,00,77,00,73,00,65,00,72,00,00,00,4d,00,52,00 ,78,00,53,00,6d,00,62,00,31,00,30,00,00,00,4d,00,52,00,78,00,53,00,6d,00,62,00,32,00,30,00,00,00,4e,00,53,00,49,00,00,00,00,00 /E : value set successfully! HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\LanmanWorkstation\\"ServiceSidType"|dword:00000001 /E : value set successfully! HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\LanmanWorkstation\\"RequiredPrivileges"|hex(7):53,00,65,00,43,00,68,00,61,00,6e,00,67,00,65,00,4e ,00,6f,00,74,00,69,00,66,00,79,00,50,00,72,00,69,00,76,00,69,00,6c,00,65,00,67,00,65,00,00,00,53,00,65,00,49,00,6d,00,70,00,65,00,72,00,73,00,6f,00,6e ,00,61,00,74,00,65,00,50,00,72,00,69,00,76,00,69,00,6c,00,65,00,67,00,65,00,00,00,53,00,65,00,41,00,75,00,64,00,69,00,74,00,50,00,72,00,69,00,76,00,69 ,00,6c,00,65,00,67,00,65,00,00,00,00,00 /E : value set successfully! HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\LanmanWorkstation\\"FailureActions"|hex:80,51,01,00,00,00,00,00,00,00,00,00,03,00,00,00,14,00,00, 00,01,00,00,00,60,ea,00,00,01,00,00,00,c0,d4,01,00,00,00,00,00,00,00,00,00 /E : value set successfully! HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\LanmanWorkstation\Linkage\\"Bind"|hex(7):5c,00,44,00,65,00,76,00,69,00,63,00,65,00,5c,00,53,00,6d ,00,62,00,5f,00,54,00,63,00,70,00,69,00,70,00,5f,00,7b,00,38,00,32,00,30,00,39,00,38,00,43,00,45,00,32,00,2d,00,39,00,35,00,45,00,33,00,2d,00,34,00,43 ,00,37,00,36,00,2d,00,41,00,42,00,41,00,37,00,2d,00,33,00,44,00,44,00,45,00,44,00,44,00,42,00,42,00,36,00,37,00,34,00,46,00,7d,00,00,00,5c,00,44,00,65 ,00,76,00,69,00,63,00,65,00,5c,00,53,00,6d,00,62,00,5f,00,54,00,63,00,70,00,69,00,70,00,36,00,5f,00,7b,00,37,00,46,00,30,00,37,00,35,00,37,00,39,00,35 ,00,2d,00,30,00,33,00,37,00,32,00,2d,00,34,00,42,00,41,00,41,00,2d,00,42,00,36,00,30,00,43,00,2d,00,34,00,36,00,41,00,31,00,37,00,41,00,34,00,31,00,41 ,00,39,00,44,00,33,00,7d,00,00,00,5c,00,44,00,65,00,76,00,69,00,63,00,65,00,5c,00,53,00,6d,00,62,00,5f,00,54,00,63,00,70,00,69,00,70,00,36,00,5f,00,7b ,00,31,00,35,00,39,00,45,00,41,00,44,00,33,00,38,00,2d,00,45,00,44,00,36,00,31,00,2d,00,34,00,35,00,30,00,33,00,2d,00,38,00,33,00,44,00,34,00,2d,00,34 ,00,43,00,37,00,35,00,42,00,36,00,37,00,42,00,41,00,32,00,39,00,43,00,7d,00,00,00,5c,00,44,00,65,00,76,00,69,00,63,00,65,00,5c,00,53,00,6d,00,62,00,5f ,00,54,00,63,00,70,00,69,00,70,00,36,00,5f,00,7b,00,38,00,32,00,30,00,39,00,38,00,43,00,45,00,32,00,2d,00,39,00,35,00,45,00,33,00,2d,00,34,00,43,00,37 ,00,36,00,2d,00,41,00,42,00,41,00,37,00,2d,00,33,00,44,00,44,00,45,00,44,00,44,00,42,00,42,00,36,00,37,00,34,00,46,00,7d,00,00,00,5c,00,44,00,65,00,76 ,00,69,00,63,00,65,00,5c,00,54,00,63,00,70,00,69,00,70,00,5f,00,7b,00,38,00,32,00,30,00,39,00,38,00,43,00,45,00,32,00,2d,00,39,00,35,00,45,00,33,00,2d ,00,34,00,43,00,37,00,36,00,2d,00,41,00,42,00,41,00,37,00,2d,00,33,00,44,00,44,00,45,00,44,00,44,00,42,00,42,00,36,00,37,00,34,00,46,00,7d,00,00,00,5c ,00,44,00,65,00,76,00,69,00,63,00,65,00,5c,00,54,00,63,00,70,00,69,00,70,00,36,00,5f,00,7b,00,37,00,46,00,30,00,37,00,35,00,37,00,39,00,35,00,2d,00,30 ,00,33,00,37,00,32,00,2d,00,34,00,42,00,41,00,41,00,2d,00,42,00,36,00,30,00,43,00,2d,00,34,00,36,00,41,00,31,00,37,00,41,00,34,00,31,00,41,00,39,00,44 ,00,33,00,7d,00,00,00,5c,00,44,00,65,00,76,00,69,00,63,00,65,00,5c,00,54,00,63,00,70,00,69,00,70,00,36,00,5f,00,7b,00,31,00,35,00,39,00,45,00,41,00,44 ,00,33,00,38,00,2d,00,45,00,44,00,36,00,31,00,2d,00,34,00,35,00,30,00,33,00,2d,00,38,00,33,00,44,00,34,00,2d,00,34,00,43,00,37,00,35,00,42,00,36,00,37 ,00,42,00,41,00,32,00,39,00,43,00,7d,00,00,00,5c,00,44,00,65,00,76,00,69,00,63,00,65,00,5c,00,54,00,63,00,70,00,69,00,70,00,36,00,5f,00,7b,00,38,00,32 ,00,30,00,39,00,38,00,43,00,45,00,32,00,2d,00,39,00,35,00,45,00,33,00,2d,00,34,00,43,00,37,00,36,00,2d,00,41,00,42,00,41,00,37,00,2d,00,33,00,44,00,44 ,00,45,00,44,00,44,00,42,00,42,00,36,00,37,00,34,00,46,00,7d,00,00,00,5c,00,44,00,65,00,76,00,69,00,63,00,65,00,5c,00,4e,00,65,00,74,00,62,00,69,00,6f ,00,73,00,53,00,6d,00,62,00,00,00,5c,00,44,00,65,00,76,00,69,00,63,00,65,00,5c,00,4e,00,65,00,74,00,42,00,54,00,5f,00,54,00,63,00,70,00,69,00,70,00,5f ,00,7b,00,38,00,32,00,30,00,39,00,38,00,43,00,45,00,32,00,2d,00,39,00,35,00,45,00,33,00,2d,00,34,00,43,00,37,00,36,00,2d,00,41,00,42,00,41,00,37,00,2d ,00,33,00,44,00,44,00,45,00,44,00,44,00,42,00,42,00,36,00,37,00,34,00,46,00,7d,00,00,00,5c,00,44,00,65,00,76,00,69,00,63,00,65,00,5c,00,4e,00,65,00,74 ,00,42,00,54,00,5f,00,54,00,63,00,70,00,69,00,70,00,36,00,5f,00,7b,00,37,00,46,00,30,00,37,00,35,00,37,00,39,00,35,00,2d,00,30,00,33,00,37,00,32,00,2d ,00,34,00,42,00,41,00,41,00,2d,00,42,00,36,00,30,00,43,00,2d,00,34,00,36,00,41,00,31,00,37,00,41,00,34,00,31,00,41,00,39,00,44,00,33,00,7d,00,00,00,5c ,00,44,00,65,00,76,00,69,00,63,00,65,00,5c,00,4e,00,65,00,74,00,42,00,54,00,5f,00,54,00,63,00,70,00,69,00,70,00,36,00,5f,00,7b,00,31,00,35,00,39,00,45 ,00,41,00,44,00,33,00,38,00,2d,00,45,00,44,00,36,00,31,00,2d,00,34,00,35,00,30,00,33,00,2d,00,38,00,33,00,44,00,34,00,2d,00,34,00,43,00,37,00,35,00,42 ,00,36,00,37,00,42,00,41,00,32,00,39,00,43,00,7d,00,00,00,5c,00,44,00,65,00,76,00,69,00,63,00,65,00,5c,00,4e,00,65,00,74,00,42,00,54,00,5f,00,54,00,63 ,00,70,00,69,00,70,00,36,00,5f,00,7b,00,38,00,32,00,30,00,39,00,38,00,43,00,45,00,32,00,2d,00,39,00,35,00,45,00,33,00,2d,00,34,00,43,00,37,00,36,00,2d ,00,41,00,42,00,41,00,37,00,2d,00,33,00,44,00,44,00,45,00,44,00,44,00,42,00,42,00,36,00,37,00,34,00,46,00,7d,00,00,00,00,00 /E : value set successfully! HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\LanmanWorkstation\Linkage\\"Route"|hex(7):22,00,53,00,6d,00,62,00,22,00,20,00,22,00,54,00,63,00,7 0,00,69,00,70,00,22,00,20,00,22,00,7b,00,38,00,32,00,30,00,39,00,38,00,43,00,45,00,32,00,2d,00,39,00,35,00,45,00,33,00,2d,00,34,00,43,00,37,00,36,00,2 d,00,41,00,42,00,41,00,37,00,2d,00,33,00,44,00,44,00,45,00,44,00,44,00,42,00,42,00,36,00,37,00,34,00,46,00,7d,00,22,00,00,00,22,00,53,00,6d,00,62,00,2 2,00,20,00,22,00,54,00,63,00,70,00,69,00,70,00,36,00,22,00,20,00,22,00,7b,00,37,00,46,00,30,00,37,00,35,00,37,00,39,00,35,00,2d,00,30,00,33,00,37,00,3 2,00,2d,00,34,00,42,00,41,00,41,00,2d,00,42,00,36,00,30,00,43,00,2d,00,34,00,36,00,41,00,31,00,37,00,41,00,34,00,31,00,41,00,39,00,44,00,33,00,7d,00,2 2,00,00,00,22,00,53,00,6d,00,62,00,22,00,20,00,22,00,54,00,63,00,70,00,69,00,70,00,36,00,22,00,20,00,22,00,7b,00,31,00,35,00,39,00,45,00,41,00,44,00,3 3,00,38,00,2d,00,45,00,44,00,36,00,31,00,2d,00,34,00,35,00,30,00,33,00,2d,00,38,00,33,00,44,00,34,00,2d,00,34,00,43,00,37,00,35,00,42,00,36,00,37,00,4 2,00,41,00,32,00,39,00,43,00,7d,00,22,00,00,00,22,00,53,00,6d,00,62,00,22,00,20,00,22,00,54,00,63,00,70,00,69,00,70,00,36,00,22,00,20,00,22,00,7b,00,3 8,00,32,00,30,00,39,00,38,00,43,00,45,00,32,00,2d,00,39,00,35,00,45,00,33,00,2d,00,34,00,43,00,37,00,36,00,2d,00,41,00,42,00,41,00,37,00,2d,00,33,00,4 4,00,44,00,45,00,44,00,44,00,42,00,42,00,36,00,37,00,34,00,46,00,7d,00,22,00,00,00,22,00,54,00,63,00,70,00,69,00,70,00,22,00,20,00,22,00,7b,00,38,00,3 2,00,30,00,39,00,38,00,43,00,45,00,32,00,2d,00,39,00,35,00,45,00,33,00,2d,00,34,00,43,00,37,00,36,00,2d,00,41,00,42,00,41,00,37,00,2d,00,33,00,44,00,4 4,00,45,00,44,00,44,00,42,00,42,00,36,00,37,00,34,00,46,00,7d,00,22,00,00,00,22,00,54,00,63,00,70,00,69,00,70,00,36,00,22,00,20,00,22,00,7b,00,37,00,4 6,00,30,00,37,00,35,00,37,00,39,00,35,00,2d,00,30,00,33,00,37,00,32,00,2d,00,34,00,42,00,41,00,41,00,2d,00,42,00,36,00,30,00,43,00,2d,00,34,00,36,00,4 1,00,31,00,37,00,41,00,34,00,31,00,41,00,39,00,44,00,33,00,7d,00,22,00,00,00,22,00,54,00,63,00,70,00,69,00,70,00,36,00,22,00,20,00,22,00,7b,00,31,00,3 5,00,39,00,45,00,41,00,44,00,33,00,38,00,2d,00,45,00,44,00,36,00,31,00,2d,00,34,00,35,00,30,00,33,00,2d,00,38,00,33,00,44,00,34,00,2d,00,34,00,43,00,3 7,00,35,00,42,00,36,00,37,00,42,00,41,00,32,00,39,00,43,00,7d,00,22,00,00,00,22,00,54,00,63,00,70,00,69,00,70,00,36,00,22,00,20,00,22,00,7b,00,38,00,3 2,00,30,00,39,00,38,00,43,00,45,00,32,00,2d,00,39,00,35,00,45,00,33,00,2d,00,34,00,43,00,37,00,36,00,2d,00,41,00,42,00,41,00,37,00,2d,00,33,00,44,00,4 4,00,45,00,44,00,44,00,42,00,42,00,36,00,37,00,34,00,46,00,7d,00,22,00,00,00,22,00,4e,00,65,00,74,00,62,00,69,00,6f,00,73,00,53,00,6d,00,62,00,22,00,0 0,00,22,00,4e,00,65,00,74,00,42,00,54,00,22,00,20,00,22,00,54,00,63,00,70,00,69,00,70,00,22,00,20,00,22,00,7b,00,38,00,32,00,30,00,39,00,38,00,43,00,4 5,00,32,00,2d,00,39,00,35,00,45,00,33,00,2d,00,34,00,43,00,37,00,36,00,2d,00,41,00,42,00,41,00,37,00,2d,00,33,00,44,00,44,00,45,00,44,00,44,00,42,00,4 2,00,36,00,37,00,34,00,46,00,7d,00,22,00,00,00,22,00,4e,00,65,00,74,00,42,00,54,00,22,00,20,00,22,00,54,00,63,00,70,00,69,00,70,00,36,00,22,00,20,00,2 2,00,7b,00,37,00,46,00,30,00,37,00,35,00,37,00,39,00,35,00,2d,00,30,00,33,00,37,00,32,00,2d,00,34,00,42,00,41,00,41,00,2d,00,42,00,36,00,30,00,43,00,2 d,00,34,00,36,00,41,00,31,00,37,00,41,00,34,00,31,00,41,00,39,00,44,00,33,00,7d,00,22,00,00,00,22,00,4e,00,65,00,74,00,42,00,54,00,22,00,20,00,22,00,5 4,00,63,00,70,00,69,00,70,00,36,00,22,00,20,00,22,00,7b,00,31,00,35,00,39,00,45,00,41,00,44,00,33,00,38,00,2d,00,45,00,44,00,36,00,31,00,2d,00,34,00,3 5,00,30,00,33,00,2d,00,38,00,33,00,44,00,34,00,2d,00,34,00,43,00,37,00,35,00,42,00,36,00,37,00,42,00,41,00,32,00,39,00,43,00,7d,00,22,00,00,00,22,00,4 e,00,65,00,74,00,42,00,54,00,22,00,20,00,22,00,54,00,63,00,70,00,69,00,70,00,36,00,22,00,20,00,22,00,7b,00,38,00,32,00,30,00,39,00,38,00,43,00,45,00,3 2,00,2d,00,39,00,35,00,45,00,33,00,2d,00,34,00,43,00,37,00,36,00,2d,00,41,00,42,00,41,00,37,00,2d,00,33,00,44,00,44,00,45,00,44,00,44,00,42,00,42,00,3 6,00,37,00,34,00,46,00,7d,00,22,00,00,00,00,00 /E : value set successfully! HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\LanmanWorkstation\Linkage\\"Export"|hex(7):5c,00,44,00,65,00,76,00,69,00,63,00,65,00,5c,00,4c,00, 61,00,6e,00,6d,00,61,00,6e,00,57,00,6f,00,72,00,6b,00,73,00,74,00,61,00,74,00,69,00,6f,00,6e,00,5f,00,53,00,6d,00,62,00,5f,00,54,00,63,00,70,00,69,00, 70,00,5f,00,7b,00,38,00,32,00,30,00,39,00,38,00,43,00,45,00,32,00,2d,00,39,00,35,00,45,00,33,00,2d,00,34,00,43,00,37,00,36,00,2d,00,41,00,42,00,41,00, 37,00,2d,00,33,00,44,00,44,00,45,00,44,00,44,00,42,00,42,00,36,00,37,00,34,00,46,00,7d,00,00,00,5c,00,44,00,65,00,76,00,69,00,63,00,65,00,5c,00,4c,00, 61,00,6e,00,6d,00,61,00,6e,00,57,00,6f,00,72,00,6b,00,73,00,74,00,61,00,74,00,69,00,6f,00,6e,00,5f,00,53,00,6d,00,62,00,5f,00,54,00,63,00,70,00,69,00, 70,00,36,00,5f,00,7b,00,37,00,46,00,30,00,37,00,35,00,37,00,39,00,35,00,2d,00,30,00,33,00,37,00,32,00,2d,00,34,00,42,00,41,00,41,00,2d,00,42,00,36,00, 30,00,43,00,2d,00,34,00,36,00,41,00,31,00,37,00,41,00,34,00,31,00,41,00,39,00,44,00,33,00,7d,00,00,00,5c,00,44,00,65,00,76,00,69,00,63,00,65,00,5c,00, 4c,00,61,00,6e,00,6d,00,61,00,6e,00,57,00,6f,00,72,00,6b,00,73,00,74,00,61,00,74,00,69,00,6f,00,6e,00,5f,00,53,00,6d,00,62,00,5f,00,54,00,63,00,70,00, 69,00,70,00,36,00,5f,00,7b,00,31,00,35,00,39,00,45,00,41,00,44,00,33,00,38,00,2d,00,45,00,44,00,36,00,31,00,2d,00,34,00,35,00,30,00,33,00,2d,00,38,00, 33,00,44,00,34,00,2d,00,34,00,43,00,37,00,35,00,42,00,36,00,37,00,42,00,41,00,32,00,39,00,43,00,7d,00,00,00,5c,00,44,00,65,00,76,00,69,00,63,00,65,00, 5c,00,4c,00,61,00,6e,00,6d,00,61,00,6e,00,57,00,6f,00,72,00,6b,00,73,00,74,00,61,00,74,00,69,00,6f,00,6e,00,5f,00,53,00,6d,00,62,00,5f,00,54,00,63,00, 70,00,69,00,70,00,36,00,5f,00,7b,00,38,00,32,00,30,00,39,00,38,00,43,00,45,00,32,00,2d,00,39,00,35,00,45,00,33,00,2d,00,34,00,43,00,37,00,36,00,2d,00, 41,00,42,00,41,00,37,00,2d,00,33,00,44,00,44,00,45,00,44,00,44,00,42,00,42,00,36,00,37,00,34,00,46,00,7d,00,00,00,5c,00,44,00,65,00,76,00,69,00,63,00, 65,00,5c,00,4c,00,61,00,6e,00,6d,00,61,00,6e,00,57,00,6f,00,72,00,6b,00,73,00,74,00,61,00,74,00,69,00,6f,00,6e,00,5f,00,54,00,63,00,70,00,69,00,70,00, 5f,00,7b,00,38,00,32,00,30,00,39,00,38,00,43,00,45,00,32,00,2d,00,39,00,35,00,45,00,33,00,2d,00,34,00,43,00,37,00,36,00,2d,00,41,00,42,00,41,00,37,00, 2d,00,33,00,44,00,44,00,45,00,44,00,44,00,42,00,42,00,36,00,37,00,34,00,46,00,7d,00,00,00,5c,00,44,00,65,00,76,00,69,00,63,00,65,00,5c,00,4c,00,61,00, 6e,00,6d,00,61,00,6e,00,57,00,6f,00,72,00,6b,00,73,00,74,00,61,00,74,00,69,00,6f,00,6e,00,5f,00,54,00,63,00,70,00,69,00,70,00,36,00,5f,00,7b,00,37,00, 46,00,30,00,37,00,35,00,37,00,39,00,35,00,2d,00,30,00,33,00,37,00,32,00,2d,00,34,00,42,00,41,00,41,00,2d,00,42,00,36,00,30,00,43,00,2d,00,34,00,36,00, 41,00,31,00,37,00,41,00,34,00,31,00,41,00,39,00,44,00,33,00,7d,00,00,00,5c,00,44,00,65,00,76,00,69,00,63,00,65,00,5c,00,4c,00,61,00,6e,00,6d,00,61,00, 6e,00,57,00,6f,00,72,00,6b,00,73,00,74,00,61,00,74,00,69,00,6f,00,6e,00,5f,00,54,00,63,00,70,00,69,00,70,00,36,00,5f,00,7b,00,31,00,35,00,39,00,45,00, 41,00,44,00,33,00,38,00,2d,00,45,00,44,00,36,00,31,00,2d,00,34,00,35,00,30,00,33,00,2d,00,38,00,33,00,44,00,34,00,2d,00,34,00,43,00,37,00,35,00,42,00, 36,00,37,00,42,00,41,00,32,00,39,00,43,00,7d,00,00,00,5c,00,44,00,65,00,76,00,69,00,63,00,65,00,5c,00,4c,00,61,00,6e,00,6d,00,61,00,6e,00,57,00,6f,00, 72,00,6b,00,73,00,74,00,61,00,74,00,69,00,6f,00,6e,00,5f,00,54,00,63,00,70,00,69,00,70,00,36,00,5f,00,7b,00,38,00,32,00,30,00,39,00,38,00,43,00,45,00, 32,00,2d,00,39,00,35,00,45,00,33,00,2d,00,34,00,43,00,37,00,36,00,2d,00,41,00,42,00,41,00,37,00,2d,00,33,00,44,00,44,00,45,00,44,00,44,00,42,00,42,00, 36,00,37,00,34,00,46,00,7d,00,00,00,5c,00,44,00,65,00,76,00,69,00,63,00,65,00,5c,00,4c,00,61,00,6e,00,6d,00,61,00,6e,00,57,00,6f,00,72,00,6b,00,73,00, 74,00,61,00,74,00,69,00,6f,00,6e,00,5f,00,4e,00,65,00,74,00,62,00,69,00,6f,00,73,00,53,00,6d,00,62,00,00,00,5c,00,44,00,65,00,76,00,69,00,63,00,65,00, 5c,00,4c,00,61,00,6e,00,6d,00,61,00,6e,00,57,00,6f,00,72,00,6b,00,73,00,74,00,61,00,74,00,69,00,6f,00,6e,00,5f,00,4e,00,65,00,74,00,42,00,54,00,5f,00, 54,00,63,00,70,00,69,00,70,00,5f,00,7b,00,38,00,32,00,30,00,39,00,38,00,43,00,45,00,32,00,2d,00,39,00,35,00,45,00,33,00,2d,00,34,00,43,00,37,00,36,00, 2d,00,41,00,42,00,41,00,37,00,2d,00,33,00,44,00,44,00,45,00,44,00,44,00,42,00,42,00,36,00,37,00,34,00,46,00,7d,00,00,00,5c,00,44,00,65,00,76,00,69,00, 63,00,65,00,5c,00,4c,00,61,00,6e,00,6d,00,61,00,6e,00,57,00,6f,00,72,00,6b,00,73,00,74,00,61,00,74,00,69,00,6f,00,6e,00,5f,00,4e,00,65,00,74,00,42,00, 54,00,5f,00,54,00,63,00,70,00,69,00,70,00,36,00,5f,00,7b,00,37,00,46,00,30,00,37,00,35,00,37,00,39,00,35,00,2d,00,30,00,33,00,37,00,32,00,2d,00,34,00, 42,00,41,00,41,00,2d,00,42,00,36,00,30,00,43,00,2d,00,34,00,36,00,41,00,31,00,37,00,41,00,34,00,31,00,41,00,39,00,44,00,33,00,7d,00,00,00,5c,00,44,00, 65,00,76,00,69,00,63,00,65,00,5c,00,4c,00,61,00,6e,00,6d,00,61,00,6e,00,57,00,6f,00,72,00,6b,00,73,00,74,00,61,00,74,00,69,00,6f,00,6e,00,5f,00,4e,00, 65,00,74,00,42,00,54,00,5f,00,54,00,63,00,70,00,69,00,70,00,36,00,5f,00,7b,00,31,00,35,00,39,00,45,00,41,00,44,00,33,00,38,00,2d,00,45,00,44,00,36,00, 31,00,2d,00,34,00,35,00,30,00,33,00,2d,00,38,00,33,00,44,00,34,00,2d,00,34,00,43,00,37,00,35,00,42,00,36,00,37,00,42,00,41,00,32,00,39,00,43,00,7d,00, 00,00,5c,00,44,00,65,00,76,00,69,00,63,00,65,00,5c,00,4c,00,61,00,6e,00,6d,00,61,00,6e,00,57,00,6f,00,72,00,6b,00,73,00,74,00,61,00,74,00,69,00,6f,00, 6e,00,5f,00,4e,00,65,00,74,00,42,00,54,00,5f,00,54,00,63,00,70,00,69,00,70,00,36,00,5f,00,7b,00,38,00,32,00,30,00,39,00,38,00,43,00,45,00,32,00,2d,00, 39,00,35,00,45,00,33,00,2d,00,34,00,43,00,37,00,36,00,2d,00,41,00,42,00,41,00,37,00,2d,00,33,00,44,00,44,00,45,00,44,00,44,00,42,00,42,00,36,00,37,00, 34,00,46,00,7d,00,00,00,00,00 /E : value set successfully! HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\LanmanWorkstation\NetworkProvider\\"DeviceName"|"\\Device\\LanmanRedirector" /E : value set successfully! HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\LanmanWorkstation\NetworkProvider\\"Name"|"Microsoft Windows Network" /E : value set successfully! HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\LanmanWorkstation\NetworkProvider\\"DisplayName"|hex(2):40,00,25,00,73,00,79,00,73,00,74,00,65,00 ,6d,00,72,00,6f,00,6f,00,74,00,25,00,5c,00,73,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,5c,00,77,00,6b,00,73,00,73,00,76,00,63,00,2e,00,64,00,6c,00 ,6c,00,2c,00,2d,00,31,00,30,00,32,00,00,00 /E : value set successfully! HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\LanmanWorkstation\NetworkProvider\\"ProviderPath"|hex(2):25,00,53,00,79,00,73,00,74,00,65,00,6d,0 0,52,00,6f,00,6f,00,74,00,25,00,5c,00,53,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,5c,00,6e,00,74,00,6c,00,61,00,6e,00,6d,00,61,00,6e,00,2e,00,64,0 0,6c,00,6c,00,00,00 /E : value set successfully! HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\LanmanWorkstation\Parameters\\"ServiceDll"|hex(2):25,00,53,00,79,00,73,00,74,00,65,00,6d,00,52,00 ,6f,00,6f,00,74,00,25,00,5c,00,53,00,79,00,73,00,74,00,65,00,6d,00,33,00,32,00,5c,00,77,00,6b,00,73,00,73,00,76,00,63,00,2e,00,64,00,6c,00,6c,00,00,00 /E : value set successfully! HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\LanmanWorkstation\Parameters\\"ServiceDllUnloadOnStop"|dword:00000001 /E : value set successfully! HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\LanmanWorkstation\Parameters\\"EnablePlainTextPassword"|dword:00000000 /E : value set successfully! HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\LanmanWorkstation\Parameters\\"EnableSecuritySignature"|dword:00000001 /E : value set successfully! HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\LanmanWorkstation\Parameters\\"RequireSecuritySignature"|dword:00000000 /E : value set successfully! HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\services\LanmanWorkstation\Parameters\\"OtherDomains"|hex(7):00,00 /E : value set successfully! ========== COMMANDS ========== [EMPTYTEMP] User: All Users User: Default ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 0 bytes User: Default User ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 0 bytes User: Gamer ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 35445 bytes ->Java cache emptied: 24488695 bytes ->FireFox cache emptied: 301992696 bytes ->Flash cache emptied: 1705 bytes User: Journal ->Temp folder emptied: 0 bytes User: Kev ->Temp folder emptied: 353278 bytes ->Temporary Internet Files folder emptied: 637238 bytes ->Java cache emptied: 145001849 bytes ->Google Chrome cache emptied: 252820700 bytes ->Apple Safari cache emptied: 12154880 bytes ->Flash cache emptied: 5331 bytes User: Public ->Temp folder emptied: 0 bytes User: RegBack ->Temp folder emptied: 0 bytes User: systemprofile ->Temp folder emptied: 0 bytes User: TxR ->Temp folder emptied: 0 bytes %systemdrive% .tmp files removed: 0 bytes %systemroot% .tmp files removed: 0 bytes %systemroot%\System32 .tmp files removed: 0 bytes %systemroot%\System32 (64bit) .tmp files removed: 0 bytes %systemroot%\System32\drivers .tmp files removed: 0 bytes Windows Temp folder emptied: 28663 bytes %systemroot%\sysnative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 3158524 bytes RecycleBin emptied: 162899058 bytes Total Files Cleaned = 862.00 mb OTL by OldTimer - Version 3.2.69.0 log created on 03082013_145043 Files\Folders moved on Reboot... C:\Users\Kev\AppData\Local\Temp\FXSAPIDebugLogFile.txt moved successfully. PendingFileRenameOperations files... Registry entries deleted on Reboot... OTL Logfile: Code: OTL logfile created on: 3/8/2013 3:01:00 PM - Run 4Hallo Matthias, Jetzt habe ich noch ein anderes Problem. Und zwar wenn ich eine CD in meinen Laptop einlege und diese Installieren will, macht mein PC garnichts wieso können Sie mir da vielleicht auch weiterhelfen? Hallo Matthias, Jetzt habe ich noch ein anderes Problem. Und zwar wenn ich eine CD in meinen Laptop einlege und diese Installieren will, macht mein PC garnichts wieso können Sie mir da vielleicht auch weiterhelfen?:killpc: |
Servus, zu dem Autostart gibt es hier einen Artikel: Autorun/Autoplay ausschalten Wenn du den Haken bei automatischer Wiedergabe setzt, sollte es wieder funktionieren. :) ich glaube nicht, dass du LSP-Fix wie beschrieben ausgeführt hast... Bitte downloade dir LSPFix
Siehst du bzw. hast du die genannte dll Datei bei dir gesehen? |
Ich habe den Haken gesetzt und es funktioniert imemr noch nicht beim Instalieren kommt eine Fehlermeldung und LSPFix funktioniert nicht! |
Servus, Rechtsklicke auf LSP-Fix.exe und wähle "Als Administrator ausführen". ;) Hat es nun funktioniert? |
ah jetz hats funktioniert xD OTL Logfile: Code: OTL logfile created on: 3/10/2013 10:53:56 AM - Run 5 |
OTL Logfile: Code: OTL logfile created on: 3/10/2013 10:53:56 AM - Run 5 |
Servus, es wird immer besser. :daumenhoc Schritt 1
Schritt 2 Fixen mit OTL
Code: :OTL
Schritt 3 Lade SystemLook von jpshortstuff vom folgenden Spiegel herunter und speichere das Tool auf dem Desktop. SystemLook (64 bit)
Gibt es noch Probleme mit SearchPlusNetwork oder der Autorun-Funktion? Wenn ja, welche? Bitte poste mit deiner nächsten Antwort
|
All processes killed ========== OTL ========== Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{187989F7-4EFC-4329-A88E-9DF8F62AFF0D}\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{187989F7-4EFC-4329-A88E-9DF8F62AFF0D}\ not found. Registry key HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{4AE6D1F9-C8B0-4514-B6E4-35E6F29AF0E7}\ deleted successfully. Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{4AE6D1F9-C8B0-4514-B6E4-35E6F29AF0E7}\ not found. Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Toolbar\\Locked deleted successfully. 64bit-Registry key HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\Free YouTube Download\ deleted successfully. 64bit-Registry key HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\Free YouTube to MP3 Converter\ deleted successfully. Registry key HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\Free YouTube Download\ not found. Registry key HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\Free YouTube to MP3 Converter\ not found. C:\Windows\DeleteOnReboot.bat moved successfully. ========== REGISTRY ========== HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\"NoDriveTypeAutoRun"|dword:00000000 /E : value set successfully! ========== COMMANDS ========== [EMPTYTEMP] User: All Users User: Default ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 0 bytes User: Default User ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 0 bytes User: Gamer ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 0 bytes ->Java cache emptied: 0 bytes ->FireFox cache emptied: 0 bytes ->Flash cache emptied: 0 bytes User: Journal ->Temp folder emptied: 0 bytes User: Kev ->Temp folder emptied: 518480 bytes ->Temporary Internet Files folder emptied: 10057607 bytes ->Java cache emptied: 0 bytes ->Google Chrome cache emptied: 192685518 bytes ->Apple Safari cache emptied: 0 bytes ->Flash cache emptied: 343 bytes User: Public ->Temp folder emptied: 0 bytes User: RegBack ->Temp folder emptied: 0 bytes User: systemprofile ->Temp folder emptied: 0 bytes User: TxR ->Temp folder emptied: 0 bytes %systemdrive% .tmp files removed: 0 bytes %systemroot% .tmp files removed: 0 bytes %systemroot%\System32 .tmp files removed: 0 bytes %systemroot%\System32 (64bit) .tmp files removed: 0 bytes %systemroot%\System32\drivers .tmp files removed: 0 bytes Windows Temp folder emptied: 47410 bytes %systemroot%\sysnative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 33170 bytes RecycleBin emptied: 0 bytes Total Files Cleaned = 194.00 mb OTL by OldTimer - Version 3.2.69.0 log created on 03102013_162130 Files\Folders moved on Reboot... C:\Users\Kev\AppData\Local\Temp\FXSAPIDebugLogFile.txt moved successfully. PendingFileRenameOperations files... Registry entries deleted on Reboot... SystemLook 30.07.11 by jpshortstuff Log created at 16:26 on 10/03/2013 by Kev Administrator - Elevation successful ========== folderfind ========== Searching for "Conduit*" No folders found. Searching for "Ask.com*" No folders found. Searching for "GinyasBrowserCompanion*" No folders found. Searching for "v-Grabber*" No folders found. Searching for "Babylon*" No folders found. Searching for "Search Settings*" No folders found. Searching for "dvdvideosoftiehelpers*" No folders found. Searching for "OpenCandy*" No folders found. Searching for "DVDVideoSoftTB*" No folders found. Searching for "AskToolbar*" No folders found. Searching for "incredibar*" No folders found. ========== regfind ========== Searching for "Conduit" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\063A857434EDED11A893800002C0A966] "AE48807DEC2E935419BD7466CCE1F5F5"="C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\iSyncConduit.dll" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\063A857434EDED11A893800002C0A966\AE48807DEC2E935419BD7466CCE1F5F5] "File"="iSyncConduit.dll" Searching for "Ask.com" [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\DOMStorage\ask.com] [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Activities\Search\ask.com] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MAPI/IPM.Task] "PreviewDetails"="prop:*System.DueDate;*System.Task.CompletionStatus;*System.Task.Owner;*System.Keywords" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\MAPI/IPM.Task] "PreviewDetails"="prop:*System.DueDate;*System.Task.CompletionStatus;*System.Task.Owner;*System.Keywords" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{1D55DAA5-04AC-4036-B0BE-DA81EE9676CD}\1.0\0\win32] @="C:\PROGRA~2\Ask.com\CALLIN~1\CIDGLO~1.EXE" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{212C2C4F-C845-4FBC-9561-C833A13D8DCE}\1.0\0\win32] @="C:\PROGRA~2\Ask.com\AbineSDK\IE\DNTPAD~1.DLL" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{212C2C4F-C845-4FBC-9561-C833A13D8DCE}\1.0\HELPDIR] @="C:\Program Files (x86)\Ask.com\AbineSDK\IE\" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{3C5D1D57-16C8-473C-A552-37B8D88596FE}\1.0\0\win32] @="C:\PROGRA~2\Ask.com\AbineSDK\IE\DNTPTY~1.DLL" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{3C5D1D57-16C8-473C-A552-37B8D88596FE}\1.0\HELPDIR] @="C:\Program Files (x86)\Ask.com\AbineSDK\IE\" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{4A115D8A-6A7B-4C72-92B1-2E2D01F36979}\1.0\0\win32] @="C:\PROGRA~2\Ask.com\AbineSDK\IE\DNTPBU~1.DLL" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{4A115D8A-6A7B-4C72-92B1-2E2D01F36979}\1.0\HELPDIR] @="C:\Program Files (x86)\Ask.com\AbineSDK\IE\" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{58CBF821-A0C7-4AE8-9430-77DD1AF38E99}\1.0\0\win32] @="C:\PROGRA~2\Ask.com\CALLIN~1\CIDWPA~1.EXE" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{72BCBFF7-2837-4CA0-B3B5-3DAED7F54601}\1.0\0\win32] @="C:\PROGRA~2\Ask.com\AVIRAC~1.DLL" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{72BCBFF7-2837-4CA0-B3B5-3DAED7F54601}\1.0\HELPDIR] @="C:\Program Files (x86)\Ask.com\" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{824125FD-7732-4DA2-9277-3A7D0A0A0813}\1.0\0\win32] @="C:\PROGRA~2\Ask.com\CALLIN~1\CIDCOR~1.DLL" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{99DF8440-814E-497F-BDDD-FB93E9E9DF96}\1.0\0\win32] @="C:\PROGRA~2\Ask.com\AbineSDK\IE\DNTPSE~1.EXE" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{99DF8440-814E-497F-BDDD-FB93E9E9DF96}\1.0\HELPDIR] @="C:\Program Files (x86)\Ask.com\AbineSDK\IE\" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{05366194-3126-4601-AC1A-DDE573E093DC}\InprocServer32] @="C:\Program Files (x86)\Ask.com\CallingIDSDK\CIDCoreLight.dll" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{061F450C-37B9-4330-9235-0F25D9F75B33}\InprocServer32] @="C:\Program Files (x86)\Ask.com\CallingIDSDK\CIDCoreLight.dll" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{19D2F415-D58B-46BC-9390-C03DCBC21EB2}\LocalServer32] @="C:\PROGRA~2\Ask.com\AbineSDK\IE\DNTPSE~1.EXE" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{22FEB0F5-0BA0-4D4B-8A66-55A21667BC31}\InprocServer32] @="C:\Program Files (x86)\Ask.com\CallingIDSDK\CIDWPADLightPS.dll" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{26249267-15F4-4DA3-8247-C5A78E4FA918}\LocalServer32] @="C:\Program Files (x86)\Ask.com\CallingIDSDK\CIDWPADLight.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{39B217B4-8C69-4E45-A8DC-8CC4DAD3CF0A}\InprocServer32] @="C:\Program Files (x86)\Ask.com\CallingIDSDK\CIDCoreLight.dll" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{3CB4CE45-8849-4638-9226-D6B615A15827}\InprocServer32] @="C:\Program Files (x86)\Ask.com\AviraCallingIDhelper.dll" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{43AB7B5D-4C40-4103-A549-7002A116A7D5}\LocalServer32] @="C:\Program Files (x86)\Ask.com\CallingIDSDK\CIDGlobalLight.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{6E45F3E8-2683-4824-A6BE-08108022FB36}\InprocServer32] @="C:\Program Files (x86)\Ask.com\AbineSDK\IE\DNTPAddon.dll" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{996ED20F-A740-47A2-A7EF-9620D422BB4E}\InprocServer32] @="C:\Program Files (x86)\Ask.com\CallingIDSDK\CIDCoreLight.dll" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{9F0F16DD-4E76-4049-A9B1-7A91E48F0323}\InprocServer32] @="C:\Program Files (x86)\Ask.com\AbineSDK\IE\DNTPAddon.dll" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D2B79F7D-2D7D-4420-B2A9-ECE52C7C83A0}\InprocServer32] @="C:\Program Files (x86)\Ask.com\CallingIDSDK\CIDGlobalLightPS.dll" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{F4288797-CB12-49CE-9DF8-7CDFA1143BEA}\InprocServer32] @="C:\Program Files (x86)\Ask.com\AbineSDK\IE\DNTPButton.dll" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\TypeLib\{1D55DAA5-04AC-4036-B0BE-DA81EE9676CD}\1.0\0\win32] @="C:\PROGRA~2\Ask.com\CALLIN~1\CIDGLO~1.EXE" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\TypeLib\{212C2C4F-C845-4FBC-9561-C833A13D8DCE}\1.0\0\win32] @="C:\PROGRA~2\Ask.com\AbineSDK\IE\DNTPAD~1.DLL" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\TypeLib\{212C2C4F-C845-4FBC-9561-C833A13D8DCE}\1.0\HELPDIR] @="C:\Program Files (x86)\Ask.com\AbineSDK\IE\" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\TypeLib\{3C5D1D57-16C8-473C-A552-37B8D88596FE}\1.0\0\win32] @="C:\PROGRA~2\Ask.com\AbineSDK\IE\DNTPTY~1.DLL" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\TypeLib\{3C5D1D57-16C8-473C-A552-37B8D88596FE}\1.0\HELPDIR] @="C:\Program Files (x86)\Ask.com\AbineSDK\IE\" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\TypeLib\{4A115D8A-6A7B-4C72-92B1-2E2D01F36979}\1.0\0\win32] @="C:\PROGRA~2\Ask.com\AbineSDK\IE\DNTPBU~1.DLL" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\TypeLib\{4A115D8A-6A7B-4C72-92B1-2E2D01F36979}\1.0\HELPDIR] @="C:\Program Files (x86)\Ask.com\AbineSDK\IE\" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\TypeLib\{58CBF821-A0C7-4AE8-9430-77DD1AF38E99}\1.0\0\win32] @="C:\PROGRA~2\Ask.com\CALLIN~1\CIDWPA~1.EXE" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\TypeLib\{72BCBFF7-2837-4CA0-B3B5-3DAED7F54601}\1.0\0\win32] @="C:\PROGRA~2\Ask.com\AVIRAC~1.DLL" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\TypeLib\{72BCBFF7-2837-4CA0-B3B5-3DAED7F54601}\1.0\HELPDIR] @="C:\Program Files (x86)\Ask.com\" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\TypeLib\{824125FD-7732-4DA2-9277-3A7D0A0A0813}\1.0\0\win32] @="C:\PROGRA~2\Ask.com\CALLIN~1\CIDCOR~1.DLL" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\TypeLib\{99DF8440-814E-497F-BDDD-FB93E9E9DF96}\1.0\0\win32] @="C:\PROGRA~2\Ask.com\AbineSDK\IE\DNTPSE~1.EXE" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\TypeLib\{99DF8440-814E-497F-BDDD-FB93E9E9DF96}\1.0\HELPDIR] @="C:\Program Files (x86)\Ask.com\AbineSDK\IE\" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders] "C:\Program Files (x86)\Ask.com\CallingIDSDK\"="" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders] "C:\Program Files (x86)\Ask.com\AbineSDK\IE\"="" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders] "C:\Program Files (x86)\Ask.com\AbineSDK\"="" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders] "C:\Program Files (x86)\Ask.com\AbineSDK\chrome\content\"="" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders] "C:\Program Files (x86)\Ask.com\AbineSDK\chrome\"="" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders] "C:\Program Files (x86)\Ask.com\AbineSDK\chrome\content\css\"="" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders] "C:\Program Files (x86)\Ask.com\AbineSDK\chrome\content\images\"="" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders] "C:\Program Files (x86)\Ask.com\AbineSDK\chrome\content\reports\"="" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders] "C:\Program Files (x86)\Ask.com\AbineSDK\chrome\content\templates\"="" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders] "C:\Program Files (x86)\Ask.com\AbineSDK\IE\css\"="" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders] "C:\Program Files (x86)\Ask.com\AbineSDK\IE\images\"="" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders] "C:\Program Files (x86)\Ask.com\AbineSDK\IE\locale\en\"="" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders] "C:\Program Files (x86)\Ask.com\AbineSDK\IE\locale\"="" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders] "C:\Program Files (x86)\Ask.com\AbineSDK\IE\locale\es\"="" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders] "C:\Program Files (x86)\Ask.com\AbineSDK\IE\locale\fr\"="" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders] "C:\Program Files (x86)\Ask.com\AbineSDK\IE\locale\it\"="" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders] "C:\Program Files (x86)\Ask.com\AbineSDK\IE\locale\nl\"="" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders] "C:\Program Files (x86)\Ask.com\AbineSDK\IE\locale\pt\"="" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders] "C:\Program Files (x86)\Ask.com\AbineSDK\IE\locale\de\"="" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\00F1A65D97AD1E11D8D76334268807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\IE\demo.html" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\029DEE7E67AD1E113852DB04268807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\IE\locale\en\messages.js" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\03576BC0A7AD1E1188A9A434268807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\IE\popup.html" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\04CFD72C0A6D1E1179AC85E3268807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\chrome\content\images\linkedin.png" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\07B0B68797AD1E118A6A4E24268807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\IE\DNTPTypes.dll" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0828D86187AD1E1129764B14268807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\IE\DNTPButton.dll" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\088A41FE97AD1E114BD41434268807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\IE\dntp.js" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\090E991ED42E1E11D93A5C2F168807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\IE\locale\pt\messages.js" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0CFE535C35F99574E8340BFA75BF92C2] "A28B4D68DEBAA244EB686953B7074FEF"="C:\Program Files (x86)\Ask.com\" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0E12F736682067FDE4D1158D5940A82E] "A28B4D68DEBAA244EB686953B7074FEF"="C:\Users\Kev\AppData\Roaming\Mozilla\Firefox\Profiles\3dpb09nz.default\extensions\toolbar@ask.com\chrome\skin\ ask_32x.png" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0F968E620A6D1E11B999E6D3268807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\chrome\content\notificationManager.js" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0FF1D43997AD1E11FA430034268807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\IE\bg.js" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1A24B5BB8521B03E0C8D908F5ABC0AE6] "A28B4D68DEBAA244EB686953B7074FEF"="C:\Program Files (x86)\Ask.com\" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2010C0B997AD1E111983F034268807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\IE\blank.html" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\20414E2897AD1E116B041F24268807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\IE\autoUpdate.js" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\241E1DAF97AD1E11CBD65434268807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\IE\json2.min.js" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\261F213D1F55267499B1F87D0CC3BCF7] "A28B4D68DEBAA244EB686953B7074FEF"="C:\Program Files (x86)\Ask.com\" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2B0D56C4F4C46D844A57FFED6F0D2852] "A28B4D68DEBAA244EB686953B7074FEF"="C:\Program Files (x86)\Ask.com\" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2BDF3E992C0908741B7C11F4B4E0F775] "A28B4D68DEBAA244EB686953B7074FEF"="C:\Program Files (x86)\Ask.com\assets\oobe\b.png" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2D5CB10287AD1E112AF1CB14268807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\IE\DNTPContentFilter.dll" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\41B9E26133CD1E114A4E096D168807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\IE\config.xml" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\42B7416F0A6D1E112971B6E3268807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\chrome\content\reports\view_report.js" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\435ED11E0A6D1E1138C146E3268807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\chrome\content\images\settings.png" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\466B1A160A6D1E11DAFD1AD3268807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\chrome\content\view_global.js" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\49D4375FE41653242AEA4C969E4E65E0] "A28B4D68DEBAA244EB686953B7074FEF"="C:\Program Files (x86)\Ask.com\" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\600642CA97AD1E11EB30A134268807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\config.xml" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\61C07F78D42E1E113849882F168807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\IE\locale\de\messages.js" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\638A55350A6D1E114AE6C9D3268807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\chrome\content\view_alert.js" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\63C6A3960A6D1E1199A78AD3268807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\chrome\content\css\popup.css" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\65BE09BB77AD1E1129594214268807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\IE\view_alert.js" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\67F9C62077AD1E11BA0CBC04268807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\IE\socialButtons.js" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6967575E4ADD1E11E9E591AF068807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\chrome\content\images\btn-bg.png" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6A0601CF0A6D1E11EA66D6E3268807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\chrome\content\templates\all.js" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6AA0923513360135B272E8289C5F13FA] "A28B4D68DEBAA244EB686953B7074FEF"="C:\Program Files (x86)\Ask.com\" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6B3BC4CF5ECE1F54BBA174C13A1AB907] "A28B4D68DEBAA244EB686953B7074FEF"="C:\Program Files (x86)\Ask.com\Updater\Updater.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6D34269C97AD1E11DAE42334268807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\IE\content.js" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6DE790BA0A6D1E111B7A93E3268807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\chrome\content\images\header-top-plain.png" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6F7467AF8F29C134CBBAB394ECCFDE96] "A28B4D68DEBAA244EB686953B7074FEF"="C:\Program Files (x86)\Ask.com\" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6F874FC077AD1E11FB2CCC04268807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\IE\view.js" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\72D3312E1E95E8C4AAA81BADB30D5FC0] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\CallingIDSDK\CIDGlobalLightPS.dll" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\741B4ADF27276464790022C965AB6DA8] "A28B4D68DEBAA244EB686953B7074FEF"="C:\Program Files (x86)\Ask.com\" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\74E6A1B4EEAA8A942B405B51643FD2FC] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\CallingIDSDK\CIDGlobalLight.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7DE196B10195F5647A2B21B761F3DE01] "A28B4D68DEBAA244EB686953B7074FEF"="C:\Program Files (x86)\Ask.com\" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\800967B40A6D1E1129B8C8D3268807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\chrome\content\view.js" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\814DDE340A6D1E11B833B8D3268807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\chrome\content\template.js" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\818F60F20A6D1E1149E987D3268807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\chrome\content\optout.js" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8225E07F67AD1E1138657C04268807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\IE\common.js" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\83011A2A97AD1E1139DD6134268807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\IE\config.js" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\85D3F53D0A6D1E112BC9F5E3268807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\chrome\content\images\plus-minus.png" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\860F3B99848D1E119B5569D6168807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Users\Kev\AppData\Roaming\Mozilla\Firefox\Profiles\3dpb09nz.default\extensions\toolbar@ask.com\plugins\npAviraC allingID.dll" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\87B1CC30A7AD1E117BC59434268807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\IE\license.js" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8849E84D67AD1E11A8881B04268807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\IE\images\demoRestricted.png" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8A7FEEA8848D1E11D8ABF7D6168807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AviraCallingIDhelper.dll" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8B065BD72ADD1E116B25978F068807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\chrome\content\config.js" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8B58DAA50A6D1E11C924D9D3268807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\chrome\content\view_allowed_sites.js" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8B8DC47DD42E1E119948EB2F168807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\IE\locale\nl\messages.js" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8BCF643B0A6D1E113A80C4E3268807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\chrome\content\images\like.png" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8C52E23087AD1E11BB364914268807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\IE\DNTPAddon.dll" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\922525DCC5199162F8935747CA3D8E59] "A28B4D68DEBAA244EB686953B7074FEF"="C:\Program Files (x86)\Ask.com\" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\980D2637EBB4E31449BDFE2D7447AE03] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\CallingIDSDK\CIDWPADLight.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9D0E499F53381f84992C7A212CF1D8F5] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AviraBrowserSecurity.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9D4F5849367142E4685ED8C25E44C5ED] "A28B4D68DEBAA244EB686953B7074FEF"="C:\Program Files (x86)\Ask.com\TaskScheduler.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A301910E5ADD1E11CBD5C1BF068807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\chrome\content\images\on-off-knob.png" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A51CAA4F77AD1E116923D714268807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\IE\ContentPolicy.js" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A5875B04372C19545BEB90D4D606C472] "A28B4D68DEBAA244EB686953B7074FEF"="C:\Program Files (x86)\Ask.com\UpdateTask.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A6EA75AD0A6D1E116B9506E3268807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\chrome\content\images\plusone.png" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A81E6B410A6D1E11B98E66D3268807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\chrome\content\common.js" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A876D9E80B896EC44A8620248CC79296] "A28B4D68DEBAA244EB686953B7074FEF"="C:\Program Files (x86)\Ask.com\GenericAskToolbar.dll" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\AD31AEF90A6D1E112B67A2E3268807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\chrome\content\images\header-top.png" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\AF79D8530A6D1E11296968D3268807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\chrome\content\rules.js" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B66FFAB725B92594C986DE826A867888] "A28B4D68DEBAA244EB686953B7074FEF"="C:\Program Files (x86)\Ask.com\" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BA82713BF2918244BB38D4D3626E2F31] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\CallingIDSDK\CIDCoreLight.dll" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BCDA179D619B91648538E3394CAC94CC] "A28B4D68DEBAA244EB686953B7074FEF"="C:\Users\Kev\AppData\Roaming\Mozilla\Firefox\Profiles\3dpb09nz.default\extensions\toolbar@ask.com\defaults\prefere nces\defaults.js" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BEABAA33A5E68374DBF197F2A00CD011] "A28B4D68DEBAA244EB686953B7074FEF"="C:\Program Files (x86)\Ask.com\" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C5A5C56BD42E1E11AA061B2F168807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\IE\locale\fr\messages.js" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C61425DC0A6D1E11488AE5E3268807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\chrome\content\images\on-off.png" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C6D6135E97AD1E11783A0434268807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\IE\demoRestricted.html" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C6D68CEE0A6D1E1129B096E3268807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\chrome\content\reports\logger.js" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CB5F24F10A6D1E118B7AD6D3268807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\chrome\content\events.js" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CB61AF52AD64B6B45930BE969F316720] "A28B4D68DEBAA244EB686953B7074FEF"="C:\Program Files (x86)\Ask.com\" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CBE5FFA897AD1E11CA349F24268807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\IE\background.html" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CC46BC9AD42E1E11B93ADA2F168807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\IE\locale\es\messages.js" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D677B1A9671D4D4004F6F2A4469E86EA] "A28B4D68DEBAA244EB686953B7074FEF"="C:\Users\Kev\AppData\Roaming\Mozilla\Firefox\Profiles\3dpb09nz.default\extensions\toolbar@ask.com\searchplugins\as kcom.xml" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DD1402A9DD4215A43ABDE169A41AFA0E] "A28B4D68DEBAA244EB686953B7074FEF"="C:\Program Files (x86)\Ask.com\" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E0B84F7CD42E1E113A65AB2F168807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\IE\locale\it\messages.js" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E0C668D287AD1E117AAAFB14268807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\IE\DNTPService.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E318FDD30A6D1E115956A8D3268807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\chrome\content\socialButtons.js" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E36E114A0EAD2AD46B381D23AD69CDDF] "A28B4D68DEBAA244EB686953B7074FEF"="C:\Users\Kev\AppData\Roaming\Mozilla\Firefox\Profiles\3dpb09nz.default\extensions\toolbar@ask.com\" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E58C26300A6D1E11EBCF16D3268807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\chrome\content\BadgeManager.js" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E81243990A6D1E117B9C52E3268807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\chrome\content\images\footer.png" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E90A558E0A6D1E111A4356E3268807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\chrome\content\images\tweet.png" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E942FF4ABC342DA42A4C40617E8ADC8C] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\CallingIDSDK\CIDWPADLightPS.dll" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EF874E5B67AD1E113A7B2A04268807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\IE\css\popup-ie.css" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EF8E618DB3AEDFBB384561B5C548F65E] "A28B4D68DEBAA244EB686953B7074FEF"="C:\Users\Kev\AppData\Roaming\Mozilla\Firefox\Profiles\3dpb09nz.default\extensions\toolbar@ask.com\chrome\content\a bout.js" [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{83CAD530-387D-40FD-82EA-B9E863D92A9B}] "AppPath"="C:\Program Files (x86)\Ask.com\AbineSDK\IE\" [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C17DC5CF-54FF-4e63-8AC7-94335D6DA231}] "AppPath"="C:\Program Files (x86)\Ask.com\CallingIDSDK\" [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D14D0EE2-2DD1-4230-BE70-3F3AD6172C40}] "AppPath"="C:\Program Files (x86)\Ask.com\CallingIDSDK\" [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F994E0D9-8335-48f1-99C2-A712C21F8D5F}] "AppPath"="C:\Program Files (x86)\Ask.com\" [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run-] "ApnUpdater"=""C:\Program Files (x86)\Ask.com\Updater\Updater.exe"" [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{05366194-3126-4601-AC1A-DDE573E093DC}\InprocServer32] @="C:\Program Files (x86)\Ask.com\CallingIDSDK\CIDCoreLight.dll" [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{061F450C-37B9-4330-9235-0F25D9F75B33}\InprocServer32] @="C:\Program Files (x86)\Ask.com\CallingIDSDK\CIDCoreLight.dll" [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{19D2F415-D58B-46BC-9390-C03DCBC21EB2}\LocalServer32] @="C:\PROGRA~2\Ask.com\AbineSDK\IE\DNTPSE~1.EXE" [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{22FEB0F5-0BA0-4D4B-8A66-55A21667BC31}\InprocServer32] @="C:\Program Files (x86)\Ask.com\CallingIDSDK\CIDWPADLightPS.dll" [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{26249267-15F4-4DA3-8247-C5A78E4FA918}\LocalServer32] @="C:\Program Files (x86)\Ask.com\CallingIDSDK\CIDWPADLight.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{39B217B4-8C69-4E45-A8DC-8CC4DAD3CF0A}\InprocServer32] @="C:\Program Files (x86)\Ask.com\CallingIDSDK\CIDCoreLight.dll" [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{3CB4CE45-8849-4638-9226-D6B615A15827}\InprocServer32] @="C:\Program Files (x86)\Ask.com\AviraCallingIDhelper.dll" [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{43AB7B5D-4C40-4103-A549-7002A116A7D5}\LocalServer32] @="C:\Program Files (x86)\Ask.com\CallingIDSDK\CIDGlobalLight.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{6E45F3E8-2683-4824-A6BE-08108022FB36}\InprocServer32] @="C:\Program Files (x86)\Ask.com\AbineSDK\IE\DNTPAddon.dll" [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{996ED20F-A740-47A2-A7EF-9620D422BB4E}\InprocServer32] @="C:\Program Files (x86)\Ask.com\CallingIDSDK\CIDCoreLight.dll" [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{9F0F16DD-4E76-4049-A9B1-7A91E48F0323}\InprocServer32] @="C:\Program Files (x86)\Ask.com\AbineSDK\IE\DNTPAddon.dll" [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{D2B79F7D-2D7D-4420-B2A9-ECE52C7C83A0}\InprocServer32] @="C:\Program Files (x86)\Ask.com\CallingIDSDK\CIDGlobalLightPS.dll" [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{F4288797-CB12-49CE-9DF8-7CDFA1143BEA}\InprocServer32] @="C:\Program Files (x86)\Ask.com\AbineSDK\IE\DNTPButton.dll" [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\TypeLib\{1D55DAA5-04AC-4036-B0BE-DA81EE9676CD}\1.0\0\win32] @="C:\PROGRA~2\Ask.com\CALLIN~1\CIDGLO~1.EXE" [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\TypeLib\{212C2C4F-C845-4FBC-9561-C833A13D8DCE}\1.0\0\win32] @="C:\PROGRA~2\Ask.com\AbineSDK\IE\DNTPAD~1.DLL" [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\TypeLib\{212C2C4F-C845-4FBC-9561-C833A13D8DCE}\1.0\HELPDIR] @="C:\Program Files (x86)\Ask.com\AbineSDK\IE\" [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\TypeLib\{3C5D1D57-16C8-473C-A552-37B8D88596FE}\1.0\0\win32] @="C:\PROGRA~2\Ask.com\AbineSDK\IE\DNTPTY~1.DLL" [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\TypeLib\{3C5D1D57-16C8-473C-A552-37B8D88596FE}\1.0\HELPDIR] @="C:\Program Files (x86)\Ask.com\AbineSDK\IE\" [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\TypeLib\{4A115D8A-6A7B-4C72-92B1-2E2D01F36979}\1.0\0\win32] @="C:\PROGRA~2\Ask.com\AbineSDK\IE\DNTPBU~1.DLL" [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\TypeLib\{4A115D8A-6A7B-4C72-92B1-2E2D01F36979}\1.0\HELPDIR] @="C:\Program Files (x86)\Ask.com\AbineSDK\IE\" [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\TypeLib\{58CBF821-A0C7-4AE8-9430-77DD1AF38E99}\1.0\0\win32] @="C:\PROGRA~2\Ask.com\CALLIN~1\CIDWPA~1.EXE" [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\TypeLib\{72BCBFF7-2837-4CA0-B3B5-3DAED7F54601}\1.0\0\win32] @="C:\PROGRA~2\Ask.com\AVIRAC~1.DLL" [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\TypeLib\{72BCBFF7-2837-4CA0-B3B5-3DAED7F54601}\1.0\HELPDIR] @="C:\Program Files (x86)\Ask.com\" [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\TypeLib\{824125FD-7732-4DA2-9277-3A7D0A0A0813}\1.0\0\win32] @="C:\PROGRA~2\Ask.com\CALLIN~1\CIDCOR~1.DLL" [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\TypeLib\{99DF8440-814E-497F-BDDD-FB93E9E9DF96}\1.0\0\win32] @="C:\PROGRA~2\Ask.com\AbineSDK\IE\DNTPSE~1.EXE" [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\TypeLib\{99DF8440-814E-497F-BDDD-FB93E9E9DF96}\1.0\HELPDIR] @="C:\Program Files (x86)\Ask.com\AbineSDK\IE\" [HKEY_USERS\S-1-5-21-4198297669-3172748106-3339997324-1000\Software\Microsoft\Internet Explorer\DOMStorage\ask.com] [HKEY_USERS\S-1-5-21-4198297669-3172748106-3339997324-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Activities\Search\ask.com] Searching for "GinyasBrowserCompanion" No data found. Searching for "v-Grabber" No data found. Searching for "Babylon" [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\LowRegistry\Audio\PolicyConfig\PropertyStore\8da617e8_0] @="{0.0.0.00000000}.{09ea8b5a-8256-4062-9d50-7d9591762c9b}|\Device\HarddiskVolume2\Program Files (x86)\Babylon\Babylon-Pro\TC\BabylonTC.exe%b{00000000-0000-0000-0000-000000000000}" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{6536801B-F50C-449B-9476-093DFD3789E3}] @="BabylonHelper" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{64B00DAC-870D-4E6A-8D34-3A6E3E427A30}\LocalServer32] @=""C:\Program Files\Babylon\Babylon-Pro\BabylonHelper64.exe"" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\AppID\{6536801B-F50C-449B-9476-093DFD3789E3}] @="BabylonHelper" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extension Compatibility\{2EECD738-5844-4A99-B4B6-146BF802613B}] "DllName"="BabylonToolbar.dll" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extension Compatibility\{97F2FF5B-260C-4CCF-834A-2DDA4E29E39E}] "DllName"="BabylonToolbar.dll" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extension Compatibility\{98889811-442D-49DD-99D7-DC866BE87DBC}] "DllName"="BabylonToolbarTlbr.dll" [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Extension Compatibility\{2EECD738-5844-4A99-B4B6-146BF802613B}] "DllName"="BabylonToolbar.dll" [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Extension Compatibility\{97F2FF5B-260C-4CCF-834A-2DDA4E29E39E}] "DllName"="BabylonToolbar.dll" [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Extension Compatibility\{98889811-442D-49DD-99D7-DC866BE87DBC}] "DllName"="BabylonToolbarTlbr.dll" [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\AppID\{6536801B-F50C-449B-9476-093DFD3789E3}] @="BabylonHelper" [HKEY_USERS\S-1-5-21-4198297669-3172748106-3339997324-1000\Software\Microsoft\Internet Explorer\LowRegistry\Audio\PolicyConfig\PropertyStore\8da617e8_0] @="{0.0.0.00000000}.{09ea8b5a-8256-4062-9d50-7d9591762c9b}|\Device\HarddiskVolume2\Program Files (x86)\Babylon\Babylon-Pro\TC\BabylonTC.exe%b{00000000-0000-0000-0000-000000000000}" Searching for "Search Settings" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\30C16B15B255BD349A1157B8A83E2AF9] "6B44B0DEF67D1764F878629CAF5C48BC"="C?\Program Files (x86)\Common Files\Spigot\Search Settings\SearchSettings.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F3157AA407841454BB0C9BE8D1982BC9] "6B44B0DEF67D1764F878629CAF5C48BC"="C:\Program Files (x86)\Common Files\Spigot\Search Settings\Lang\" Searching for "dvdvideosoftiehelpers" No data found. Searching for "OpenCandy" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\OpenCandyHelperRunOnce] Searching for "DVDVideoSoftTB" No data found. Searching for "AskToolbar" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A876D9E80B896EC44A8620248CC79296] "A28B4D68DEBAA244EB686953B7074FEF"="C:\Program Files (x86)\Ask.com\GenericAskToolbar.dll" Searching for "incredibar" [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\bmbgdmijgopggjaelphhajpjldacbnba] "path"="C:\Program Files (x86)\Incredibar.com\incredibar\1.5.11.14\incredibar.crx" Searching for " " [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "Steam"=""C:\Program Files (x86)\Steam\Steam.exe" -silent " [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "Spotify Web Helper"=""C:\Users\Kev\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe" " [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "Skype"=""C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun " [HKEY_CURRENT_USER\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache] "C:\Program Files (x86)\Common Files\DVDVideoSoft\FreeStudioManager.exe"="FreeStudioManager " [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\GameUX\Games\{2BF49C34-CAB2-4300-8663-2E4BBB5B0689}] "RatingsInfo"="<Ratings xmlns="urn:schemas-microsoft-com:GameDescription.v1"> <Rating ratingSystemID="{768BD93D-63BE-46A9-8994-0B53C4B5248F}" ratingID="{18CD34B7-7AA3-42b9-A303-5A729B2FF228}"> <Descriptor descriptorID="{9A82F712-5A9D-4409-9539-666BBCDFE12D}"/> <Descriptor descriptorID="{6AB026D3-FAD5-4a18-A53B-2CAFA358AE8F}"/> <Descriptor descriptorID="{1A796A5D-1E25-4862-9443-1550578FF4C4}"/> <Descriptor descriptorID="{E04AAEE8-950C-43c4-B75C-D87736A7FAFD}"/> <Descriptor descriptorID="{BE562A5F-2A80-4c28-9752-74C696E2ABAF}"/> </Rating> <Rating ratingSystemID="{36798944-B235-48ac-BF21-E25671F597EE}" ratingID="{CEC5DB5A-B4C9-4809-96C6-39CE715E4790}"> <Descriptor descriptorID="{F110F831-9412-40c9-860A-B489407ED374}"/> </Rating> <Rati [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\GameUX\Games\{5371C3EE-500F-4EC5-B50B-5CD4233A1F3A}] "RatingsInfo"="<Ratings xmlns="urn:schemas-microsoft-com:GameDescription.v1"> <Rating ratingSystemID="{36798944-B235-48ac-BF21-E25671F597EE}" ratingID="{CEC5DB5A-B4C9-4809-96C6-39CE715E4790}"> <Descriptor descriptorID="{F110F831-9412-40c9-860A-B489407ED374}"/> </Rating> <Rating ratingSystemID="{C705DCF4-6AFE-4f4f-BC51-21807E4E5CFB}" ratingID="{B3F8E60B-DF77-4104-88AC-F5919C64649A}"/> <Rating ratingSystemID="{EC290BBB-D618-4cb9-9963-1CAAE515443E}" ratingID="{997B7D18-2AFA-49dc-847B-0E8A69723040}"/> <Rating ratingSystemID="{768BD93D-63BE-46A9-8994-0B53C4B5248F}" ratingID="{18CD34B7-7AA3-42b9-A303-5A729B2FF228}"> <Descriptor descriptorID="{9A82F712-5A9D-4409-9539-666BBCDFE12D}"/> <Descriptor descriptorID="{BE562A5F-2A80-4c28-9752-74C696E2ABAF}"/> </Rating> <R [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\GameUX\Games\{EF647E0A-A4E2-4E6E-9B02-DACC3FC19CE9}] "RatingsInfo"="<Ratings xmlns="urn:schemas-microsoft-com:GameDescription.v1"> <Rating ratingSystemID="{768BD93D-63BE-46A9-8994-0B53C4B5248F}" ratingID="{18CD34B7-7AA3-42b9-A303-5A729B2FF228}"> <Descriptor descriptorID="{9A82F712-5A9D-4409-9539-666BBCDFE12D}"/> <Descriptor descriptorID="{6AB026D3-FAD5-4a18-A53B-2CAFA358AE8F}"/> <Descriptor descriptorID="{1A796A5D-1E25-4862-9443-1550578FF4C4}"/> <Descriptor descriptorID="{E04AAEE8-950C-43c4-B75C-D87736A7FAFD}"/> <Descriptor descriptorID="{BE562A5F-2A80-4c28-9752-74C696E2ABAF}"/> </Rating> <Rating ratingSystemID="{EC290BBB-D618-4cb9-9963-1CAAE515443E}" ratingID="{068D40C4-7809-4c67-8FEA-DA457CF990B4}"/> <Rating ratingSystemID="{36798944-B235-48ac-BF21-E25671F597EE}" ratingID="{CEC5DB5A-B4C9-4809-96C6-39CE715E4790} [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "PfNet"=""C:\Program Files\Fujitsu\Plugfree NETWORK\PfNet.exe" /r " [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "RtHDVCpl"="C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s " [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "CSRSkype"="C:\Program Files\CSR\Bluetooth Feature Pack 5.0\CSRSkype.exe " [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "CSRFTP"="C:\Program Files\CSR\Bluetooth Feature Pack 5.0\CSRBthFtpServer.exe " [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WSMAN\Plugin\Microsoft.PowerShell] "ConfigXML"=" <PlugInConfiguration xmlns="hxxp://schemas.microsoft.com/wbem/wsman/1/config/PluginConfiguration" Name="microsoft.powershell" Filename="%windir%\system32\pwrshplugin.dll" SDKVersion="1" XmlRenderingType="text" > <InitializationParameters> <Param Name="PSVersion" Value="2.0"/> </InitializationParameters> <Resources> <Resource ResourceUri="hxxp://schemas.microsoft.com/powershell/microsoft.powershell" SupportsOptions="true" ExactMatch="true"> <Security xmlns="hxxp://schemas.microsoft.com/wbem/wsman/1/config/PluginConfiguration" Uri="hxxp://schemas.microsoft.com/powershell/microsoft.powershell" ExactMatch="true" Sddl="O:NSG:BAD:P(A;;GA;;;BA)S:P(AU;FA;GA;;;WD)(AU;SA;GXGW;;;WD)"/> <Capability Type="Shell"/> </Resource> </Res [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run] "UCam_Menu"=""C:\Program Files (x86)\CyberLink\YouCam\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\YouCam" UpdateWithCreateOnce "Software\CyberLink\YouCam\3.0" " [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run] "YouCam Mirror Tray icon"=""C:\Program Files (x86)\CyberLink\YouCam\YouCamTray.exe" /s " [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run] "LogMeIn Hamachi Ui"=""C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start " [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\WSMAN\Plugin\Microsoft.PowerShell32] "ConfigXML"="<PlugInConfiguration xmlns="hxxp://schemas.microsoft.com/wbem/wsman/1/config/PluginConfiguration" Name="microsoft.powershell32" Filename="%windir%\system32\pwrshplugin.dll" SDKVersion="1" XmlRenderingType="text" Architecture="32" > <InitializationParameters> <Param Name="PSVersion" Value="2.0"/> </InitializationParameters> <Resources> <Resource ResourceUri="hxxp://schemas.microsoft.com/powershell/microsoft.powershell32" SupportsOptions="true" ExactMatch="true"> <Security xmlns="hxxp://schemas.microsoft.com/wbem/wsman/1/config/PluginConfiguration" Uri="hxxp://schemas.microsoft.com/powershell/microsoft.powershell32" ExactMatch="true" Sddl="O:NSG:BAD:P(A;;GA;;;BA)S:P(AU;FA;GA;;;WD)(AU;SA;GXGW;;;WD)"/> [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\WpdBusEnumRoot\UMB\2&37c186b&0&STORAGE#VOLUME#_??_USBSTOR#DISK&VEN_INTENSO&PROD_USB&REV_1100#AA0401290000 7475&0#] "DeviceDesc"="USB " [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\WpdBusEnumRoot\UMB\2&37c186b&0&STORAGE#VOLUME#_??_USBSTOR#DISK&VEN_INTENSO&PROD_USB&REV_1100#AA0401290000 7475&0#] "DeviceDesc"="USB " [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\WpdBusEnumRoot\UMB\2&37c186b&0&STORAGE#VOLUME#_??_USBSTOR#DISK&VEN_INTENSO&PROD_USB&REV_1100#AA040129 00007475&0#] "DeviceDesc"="USB " [HKEY_USERS\S-1-5-21-4198297669-3172748106-3339997324-1000\Software\Microsoft\Windows\CurrentVersion\Run] "Steam"=""C:\Program Files (x86)\Steam\Steam.exe" -silent " [HKEY_USERS\S-1-5-21-4198297669-3172748106-3339997324-1000\Software\Microsoft\Windows\CurrentVersion\Run] "Spotify Web Helper"=""C:\Users\Kev\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe" " [HKEY_USERS\S-1-5-21-4198297669-3172748106-3339997324-1000\Software\Microsoft\Windows\CurrentVersion\Run] "Skype"=""C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun " [HKEY_USERS\S-1-5-21-4198297669-3172748106-3339997324-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache] "C:\Program Files (x86)\Common Files\DVDVideoSoft\FreeStudioManager.exe"="FreeStudioManager " [HKEY_USERS\S-1-5-21-4198297669-3172748106-3339997324-1000_Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache] "C:\Program Files (x86)\Common Files\DVDVideoSoft\FreeStudioManager.exe"="FreeStudioManager " -= EOF =- SystemLook 30.07.11 by jpshortstuff Log created at 16:26 on 10/03/2013 by Kev Administrator - Elevation successful ========== folderfind ========== Searching for "Conduit*" No folders found. Searching for "Ask.com*" No folders found. Searching for "GinyasBrowserCompanion*" No folders found. Searching for "v-Grabber*" No folders found. Searching for "Babylon*" No folders found. Searching for "Search Settings*" No folders found. Searching for "dvdvideosoftiehelpers*" No folders found. Searching for "OpenCandy*" No folders found. Searching for "DVDVideoSoftTB*" No folders found. Searching for "AskToolbar*" No folders found. Searching for "incredibar*" No folders found. ========== regfind ========== Searching for "Conduit" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\063A857434EDED11A893800002C0A966] "AE48807DEC2E935419BD7466CCE1F5F5"="C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\iSyncConduit.dll" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\063A857434EDED11A893800002C0A966\AE48807DEC2E935419BD7466CCE1F5F5] "File"="iSyncConduit.dll" Searching for "Ask.com" [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\DOMStorage\ask.com] [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Activities\Search\ask.com] [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\MAPI/IPM.Task] "PreviewDetails"="prop:*System.DueDate;*System.Task.CompletionStatus;*System.Task.Owner;*System.Keywords" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\SystemFileAssociations\MAPI/IPM.Task] "PreviewDetails"="prop:*System.DueDate;*System.Task.CompletionStatus;*System.Task.Owner;*System.Keywords" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{1D55DAA5-04AC-4036-B0BE-DA81EE9676CD}\1.0\0\win32] @="C:\PROGRA~2\Ask.com\CALLIN~1\CIDGLO~1.EXE" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{212C2C4F-C845-4FBC-9561-C833A13D8DCE}\1.0\0\win32] @="C:\PROGRA~2\Ask.com\AbineSDK\IE\DNTPAD~1.DLL" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{212C2C4F-C845-4FBC-9561-C833A13D8DCE}\1.0\HELPDIR] @="C:\Program Files (x86)\Ask.com\AbineSDK\IE\" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{3C5D1D57-16C8-473C-A552-37B8D88596FE}\1.0\0\win32] @="C:\PROGRA~2\Ask.com\AbineSDK\IE\DNTPTY~1.DLL" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{3C5D1D57-16C8-473C-A552-37B8D88596FE}\1.0\HELPDIR] @="C:\Program Files (x86)\Ask.com\AbineSDK\IE\" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{4A115D8A-6A7B-4C72-92B1-2E2D01F36979}\1.0\0\win32] @="C:\PROGRA~2\Ask.com\AbineSDK\IE\DNTPBU~1.DLL" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{4A115D8A-6A7B-4C72-92B1-2E2D01F36979}\1.0\HELPDIR] @="C:\Program Files (x86)\Ask.com\AbineSDK\IE\" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{58CBF821-A0C7-4AE8-9430-77DD1AF38E99}\1.0\0\win32] @="C:\PROGRA~2\Ask.com\CALLIN~1\CIDWPA~1.EXE" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{72BCBFF7-2837-4CA0-B3B5-3DAED7F54601}\1.0\0\win32] @="C:\PROGRA~2\Ask.com\AVIRAC~1.DLL" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{72BCBFF7-2837-4CA0-B3B5-3DAED7F54601}\1.0\HELPDIR] @="C:\Program Files (x86)\Ask.com\" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{824125FD-7732-4DA2-9277-3A7D0A0A0813}\1.0\0\win32] @="C:\PROGRA~2\Ask.com\CALLIN~1\CIDCOR~1.DLL" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{99DF8440-814E-497F-BDDD-FB93E9E9DF96}\1.0\0\win32] @="C:\PROGRA~2\Ask.com\AbineSDK\IE\DNTPSE~1.EXE" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\TypeLib\{99DF8440-814E-497F-BDDD-FB93E9E9DF96}\1.0\HELPDIR] @="C:\Program Files (x86)\Ask.com\AbineSDK\IE\" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{05366194-3126-4601-AC1A-DDE573E093DC}\InprocServer32] @="C:\Program Files (x86)\Ask.com\CallingIDSDK\CIDCoreLight.dll" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{061F450C-37B9-4330-9235-0F25D9F75B33}\InprocServer32] @="C:\Program Files (x86)\Ask.com\CallingIDSDK\CIDCoreLight.dll" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{19D2F415-D58B-46BC-9390-C03DCBC21EB2}\LocalServer32] @="C:\PROGRA~2\Ask.com\AbineSDK\IE\DNTPSE~1.EXE" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{22FEB0F5-0BA0-4D4B-8A66-55A21667BC31}\InprocServer32] @="C:\Program Files (x86)\Ask.com\CallingIDSDK\CIDWPADLightPS.dll" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{26249267-15F4-4DA3-8247-C5A78E4FA918}\LocalServer32] @="C:\Program Files (x86)\Ask.com\CallingIDSDK\CIDWPADLight.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{39B217B4-8C69-4E45-A8DC-8CC4DAD3CF0A}\InprocServer32] @="C:\Program Files (x86)\Ask.com\CallingIDSDK\CIDCoreLight.dll" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{3CB4CE45-8849-4638-9226-D6B615A15827}\InprocServer32] @="C:\Program Files (x86)\Ask.com\AviraCallingIDhelper.dll" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{43AB7B5D-4C40-4103-A549-7002A116A7D5}\LocalServer32] @="C:\Program Files (x86)\Ask.com\CallingIDSDK\CIDGlobalLight.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{6E45F3E8-2683-4824-A6BE-08108022FB36}\InprocServer32] @="C:\Program Files (x86)\Ask.com\AbineSDK\IE\DNTPAddon.dll" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{996ED20F-A740-47A2-A7EF-9620D422BB4E}\InprocServer32] @="C:\Program Files (x86)\Ask.com\CallingIDSDK\CIDCoreLight.dll" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{9F0F16DD-4E76-4049-A9B1-7A91E48F0323}\InprocServer32] @="C:\Program Files (x86)\Ask.com\AbineSDK\IE\DNTPAddon.dll" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{D2B79F7D-2D7D-4420-B2A9-ECE52C7C83A0}\InprocServer32] @="C:\Program Files (x86)\Ask.com\CallingIDSDK\CIDGlobalLightPS.dll" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{F4288797-CB12-49CE-9DF8-7CDFA1143BEA}\InprocServer32] @="C:\Program Files (x86)\Ask.com\AbineSDK\IE\DNTPButton.dll" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\TypeLib\{1D55DAA5-04AC-4036-B0BE-DA81EE9676CD}\1.0\0\win32] @="C:\PROGRA~2\Ask.com\CALLIN~1\CIDGLO~1.EXE" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\TypeLib\{212C2C4F-C845-4FBC-9561-C833A13D8DCE}\1.0\0\win32] @="C:\PROGRA~2\Ask.com\AbineSDK\IE\DNTPAD~1.DLL" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\TypeLib\{212C2C4F-C845-4FBC-9561-C833A13D8DCE}\1.0\HELPDIR] @="C:\Program Files (x86)\Ask.com\AbineSDK\IE\" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\TypeLib\{3C5D1D57-16C8-473C-A552-37B8D88596FE}\1.0\0\win32] @="C:\PROGRA~2\Ask.com\AbineSDK\IE\DNTPTY~1.DLL" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\TypeLib\{3C5D1D57-16C8-473C-A552-37B8D88596FE}\1.0\HELPDIR] @="C:\Program Files (x86)\Ask.com\AbineSDK\IE\" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\TypeLib\{4A115D8A-6A7B-4C72-92B1-2E2D01F36979}\1.0\0\win32] @="C:\PROGRA~2\Ask.com\AbineSDK\IE\DNTPBU~1.DLL" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\TypeLib\{4A115D8A-6A7B-4C72-92B1-2E2D01F36979}\1.0\HELPDIR] @="C:\Program Files (x86)\Ask.com\AbineSDK\IE\" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\TypeLib\{58CBF821-A0C7-4AE8-9430-77DD1AF38E99}\1.0\0\win32] @="C:\PROGRA~2\Ask.com\CALLIN~1\CIDWPA~1.EXE" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\TypeLib\{72BCBFF7-2837-4CA0-B3B5-3DAED7F54601}\1.0\0\win32] @="C:\PROGRA~2\Ask.com\AVIRAC~1.DLL" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\TypeLib\{72BCBFF7-2837-4CA0-B3B5-3DAED7F54601}\1.0\HELPDIR] @="C:\Program Files (x86)\Ask.com\" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\TypeLib\{824125FD-7732-4DA2-9277-3A7D0A0A0813}\1.0\0\win32] @="C:\PROGRA~2\Ask.com\CALLIN~1\CIDCOR~1.DLL" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\TypeLib\{99DF8440-814E-497F-BDDD-FB93E9E9DF96}\1.0\0\win32] @="C:\PROGRA~2\Ask.com\AbineSDK\IE\DNTPSE~1.EXE" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\TypeLib\{99DF8440-814E-497F-BDDD-FB93E9E9DF96}\1.0\HELPDIR] @="C:\Program Files (x86)\Ask.com\AbineSDK\IE\" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders] "C:\Program Files (x86)\Ask.com\CallingIDSDK\"="" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders] "C:\Program Files (x86)\Ask.com\AbineSDK\IE\"="" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders] "C:\Program Files (x86)\Ask.com\AbineSDK\"="" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders] "C:\Program Files (x86)\Ask.com\AbineSDK\chrome\content\"="" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders] "C:\Program Files (x86)\Ask.com\AbineSDK\chrome\"="" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders] "C:\Program Files (x86)\Ask.com\AbineSDK\chrome\content\css\"="" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders] "C:\Program Files (x86)\Ask.com\AbineSDK\chrome\content\images\"="" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders] "C:\Program Files (x86)\Ask.com\AbineSDK\chrome\content\reports\"="" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders] "C:\Program Files (x86)\Ask.com\AbineSDK\chrome\content\templates\"="" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders] "C:\Program Files (x86)\Ask.com\AbineSDK\IE\css\"="" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders] "C:\Program Files (x86)\Ask.com\AbineSDK\IE\images\"="" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders] "C:\Program Files (x86)\Ask.com\AbineSDK\IE\locale\en\"="" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders] "C:\Program Files (x86)\Ask.com\AbineSDK\IE\locale\"="" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders] "C:\Program Files (x86)\Ask.com\AbineSDK\IE\locale\es\"="" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders] "C:\Program Files (x86)\Ask.com\AbineSDK\IE\locale\fr\"="" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders] "C:\Program Files (x86)\Ask.com\AbineSDK\IE\locale\it\"="" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders] "C:\Program Files (x86)\Ask.com\AbineSDK\IE\locale\nl\"="" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders] "C:\Program Files (x86)\Ask.com\AbineSDK\IE\locale\pt\"="" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\Folders] "C:\Program Files (x86)\Ask.com\AbineSDK\IE\locale\de\"="" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\00F1A65D97AD1E11D8D76334268807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\IE\demo.html" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\029DEE7E67AD1E113852DB04268807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\IE\locale\en\messages.js" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\03576BC0A7AD1E1188A9A434268807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\IE\popup.html" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\04CFD72C0A6D1E1179AC85E3268807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\chrome\content\images\linkedin.png" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\07B0B68797AD1E118A6A4E24268807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\IE\DNTPTypes.dll" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0828D86187AD1E1129764B14268807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\IE\DNTPButton.dll" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\088A41FE97AD1E114BD41434268807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\IE\dntp.js" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\090E991ED42E1E11D93A5C2F168807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\IE\locale\pt\messages.js" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0CFE535C35F99574E8340BFA75BF92C2] "A28B4D68DEBAA244EB686953B7074FEF"="C:\Program Files (x86)\Ask.com\" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0E12F736682067FDE4D1158D5940A82E] "A28B4D68DEBAA244EB686953B7074FEF"="C:\Users\Kev\AppData\Roaming\Mozilla\Firefox\Profiles\3dpb09nz.default\extensions\toolbar@ask.com\chrome\skin\ ask_32x.png" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0F968E620A6D1E11B999E6D3268807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\chrome\content\notificationManager.js" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\0FF1D43997AD1E11FA430034268807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\IE\bg.js" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\1A24B5BB8521B03E0C8D908F5ABC0AE6] "A28B4D68DEBAA244EB686953B7074FEF"="C:\Program Files (x86)\Ask.com\" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2010C0B997AD1E111983F034268807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\IE\blank.html" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\20414E2897AD1E116B041F24268807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\IE\autoUpdate.js" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\241E1DAF97AD1E11CBD65434268807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\IE\json2.min.js" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\261F213D1F55267499B1F87D0CC3BCF7] "A28B4D68DEBAA244EB686953B7074FEF"="C:\Program Files (x86)\Ask.com\" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2B0D56C4F4C46D844A57FFED6F0D2852] "A28B4D68DEBAA244EB686953B7074FEF"="C:\Program Files (x86)\Ask.com\" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2BDF3E992C0908741B7C11F4B4E0F775] "A28B4D68DEBAA244EB686953B7074FEF"="C:\Program Files (x86)\Ask.com\assets\oobe\b.png" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\2D5CB10287AD1E112AF1CB14268807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\IE\DNTPContentFilter.dll" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\41B9E26133CD1E114A4E096D168807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\IE\config.xml" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\42B7416F0A6D1E112971B6E3268807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\chrome\content\reports\view_report.js" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\435ED11E0A6D1E1138C146E3268807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\chrome\content\images\settings.png" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\466B1A160A6D1E11DAFD1AD3268807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\chrome\content\view_global.js" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\49D4375FE41653242AEA4C969E4E65E0] "A28B4D68DEBAA244EB686953B7074FEF"="C:\Program Files (x86)\Ask.com\" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\600642CA97AD1E11EB30A134268807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\config.xml" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\61C07F78D42E1E113849882F168807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\IE\locale\de\messages.js" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\638A55350A6D1E114AE6C9D3268807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\chrome\content\view_alert.js" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\63C6A3960A6D1E1199A78AD3268807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\chrome\content\css\popup.css" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\65BE09BB77AD1E1129594214268807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\IE\view_alert.js" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\67F9C62077AD1E11BA0CBC04268807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\IE\socialButtons.js" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6967575E4ADD1E11E9E591AF068807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\chrome\content\images\btn-bg.png" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6A0601CF0A6D1E11EA66D6E3268807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\chrome\content\templates\all.js" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6AA0923513360135B272E8289C5F13FA] "A28B4D68DEBAA244EB686953B7074FEF"="C:\Program Files (x86)\Ask.com\" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6B3BC4CF5ECE1F54BBA174C13A1AB907] "A28B4D68DEBAA244EB686953B7074FEF"="C:\Program Files (x86)\Ask.com\Updater\Updater.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6D34269C97AD1E11DAE42334268807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\IE\content.js" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6DE790BA0A6D1E111B7A93E3268807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\chrome\content\images\header-top-plain.png" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6F7467AF8F29C134CBBAB394ECCFDE96] "A28B4D68DEBAA244EB686953B7074FEF"="C:\Program Files (x86)\Ask.com\" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\6F874FC077AD1E11FB2CCC04268807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\IE\view.js" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\72D3312E1E95E8C4AAA81BADB30D5FC0] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\CallingIDSDK\CIDGlobalLightPS.dll" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\741B4ADF27276464790022C965AB6DA8] "A28B4D68DEBAA244EB686953B7074FEF"="C:\Program Files (x86)\Ask.com\" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\74E6A1B4EEAA8A942B405B51643FD2FC] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\CallingIDSDK\CIDGlobalLight.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\7DE196B10195F5647A2B21B761F3DE01] "A28B4D68DEBAA244EB686953B7074FEF"="C:\Program Files (x86)\Ask.com\" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\800967B40A6D1E1129B8C8D3268807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\chrome\content\view.js" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\814DDE340A6D1E11B833B8D3268807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\chrome\content\template.js" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\818F60F20A6D1E1149E987D3268807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\chrome\content\optout.js" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8225E07F67AD1E1138657C04268807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\IE\common.js" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\83011A2A97AD1E1139DD6134268807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\IE\config.js" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\85D3F53D0A6D1E112BC9F5E3268807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\chrome\content\images\plus-minus.png" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\860F3B99848D1E119B5569D6168807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Users\Kev\AppData\Roaming\Mozilla\Firefox\Profiles\3dpb09nz.default\extensions\toolbar@ask.com\plugins\npAviraC allingID.dll" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\87B1CC30A7AD1E117BC59434268807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\IE\license.js" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8849E84D67AD1E11A8881B04268807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\IE\images\demoRestricted.png" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8A7FEEA8848D1E11D8ABF7D6168807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AviraCallingIDhelper.dll" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8B065BD72ADD1E116B25978F068807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\chrome\content\config.js" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8B58DAA50A6D1E11C924D9D3268807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\chrome\content\view_allowed_sites.js" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8B8DC47DD42E1E119948EB2F168807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\IE\locale\nl\messages.js" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8BCF643B0A6D1E113A80C4E3268807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\chrome\content\images\like.png" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\8C52E23087AD1E11BB364914268807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\IE\DNTPAddon.dll" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\922525DCC5199162F8935747CA3D8E59] "A28B4D68DEBAA244EB686953B7074FEF"="C:\Program Files (x86)\Ask.com\" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\980D2637EBB4E31449BDFE2D7447AE03] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\CallingIDSDK\CIDWPADLight.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9D0E499F53381f84992C7A212CF1D8F5] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AviraBrowserSecurity.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\9D4F5849367142E4685ED8C25E44C5ED] "A28B4D68DEBAA244EB686953B7074FEF"="C:\Program Files (x86)\Ask.com\TaskScheduler.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A301910E5ADD1E11CBD5C1BF068807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\chrome\content\images\on-off-knob.png" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A51CAA4F77AD1E116923D714268807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\IE\ContentPolicy.js" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A5875B04372C19545BEB90D4D606C472] "A28B4D68DEBAA244EB686953B7074FEF"="C:\Program Files (x86)\Ask.com\UpdateTask.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A6EA75AD0A6D1E116B9506E3268807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\chrome\content\images\plusone.png" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A81E6B410A6D1E11B98E66D3268807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\chrome\content\common.js" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A876D9E80B896EC44A8620248CC79296] "A28B4D68DEBAA244EB686953B7074FEF"="C:\Program Files (x86)\Ask.com\GenericAskToolbar.dll" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\AD31AEF90A6D1E112B67A2E3268807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\chrome\content\images\header-top.png" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\AF79D8530A6D1E11296968D3268807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\chrome\content\rules.js" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\B66FFAB725B92594C986DE826A867888] "A28B4D68DEBAA244EB686953B7074FEF"="C:\Program Files (x86)\Ask.com\" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BA82713BF2918244BB38D4D3626E2F31] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\CallingIDSDK\CIDCoreLight.dll" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BCDA179D619B91648538E3394CAC94CC] "A28B4D68DEBAA244EB686953B7074FEF"="C:\Users\Kev\AppData\Roaming\Mozilla\Firefox\Profiles\3dpb09nz.default\extensions\toolbar@ask.com\defaults\prefere nces\defaults.js" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\BEABAA33A5E68374DBF197F2A00CD011] "A28B4D68DEBAA244EB686953B7074FEF"="C:\Program Files (x86)\Ask.com\" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C5A5C56BD42E1E11AA061B2F168807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\IE\locale\fr\messages.js" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C61425DC0A6D1E11488AE5E3268807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\chrome\content\images\on-off.png" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C6D6135E97AD1E11783A0434268807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\IE\demoRestricted.html" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\C6D68CEE0A6D1E1129B096E3268807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\chrome\content\reports\logger.js" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CB5F24F10A6D1E118B7AD6D3268807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\chrome\content\events.js" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CB61AF52AD64B6B45930BE969F316720] "A28B4D68DEBAA244EB686953B7074FEF"="C:\Program Files (x86)\Ask.com\" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CBE5FFA897AD1E11CA349F24268807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\IE\background.html" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\CC46BC9AD42E1E11B93ADA2F168807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\IE\locale\es\messages.js" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\D677B1A9671D4D4004F6F2A4469E86EA] "A28B4D68DEBAA244EB686953B7074FEF"="C:\Users\Kev\AppData\Roaming\Mozilla\Firefox\Profiles\3dpb09nz.default\extensions\toolbar@ask.com\searchplugins\as kcom.xml" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\DD1402A9DD4215A43ABDE169A41AFA0E] "A28B4D68DEBAA244EB686953B7074FEF"="C:\Program Files (x86)\Ask.com\" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E0B84F7CD42E1E113A65AB2F168807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\IE\locale\it\messages.js" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E0C668D287AD1E117AAAFB14268807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\IE\DNTPService.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E318FDD30A6D1E115956A8D3268807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\chrome\content\socialButtons.js" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E36E114A0EAD2AD46B381D23AD69CDDF] "A28B4D68DEBAA244EB686953B7074FEF"="C:\Users\Kev\AppData\Roaming\Mozilla\Firefox\Profiles\3dpb09nz.default\extensions\toolbar@ask.com\" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E58C26300A6D1E11EBCF16D3268807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\chrome\content\BadgeManager.js" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E81243990A6D1E117B9C52E3268807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\chrome\content\images\footer.png" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E90A558E0A6D1E111A4356E3268807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\chrome\content\images\tweet.png" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\E942FF4ABC342DA42A4C40617E8ADC8C] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\CallingIDSDK\CIDWPADLightPS.dll" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EF874E5B67AD1E113A7B2A04268807B9] "A28B4D68DEBAA244EB686953B7074FEF"="C?\Program Files (x86)\Ask.com\AbineSDK\IE\css\popup-ie.css" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\EF8E618DB3AEDFBB384561B5C548F65E] "A28B4D68DEBAA244EB686953B7074FEF"="C:\Users\Kev\AppData\Roaming\Mozilla\Firefox\Profiles\3dpb09nz.default\extensions\toolbar@ask.com\chrome\content\a bout.js" [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{83CAD530-387D-40FD-82EA-B9E863D92A9B}] "AppPath"="C:\Program Files (x86)\Ask.com\AbineSDK\IE\" [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{C17DC5CF-54FF-4e63-8AC7-94335D6DA231}] "AppPath"="C:\Program Files (x86)\Ask.com\CallingIDSDK\" [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{D14D0EE2-2DD1-4230-BE70-3F3AD6172C40}] "AppPath"="C:\Program Files (x86)\Ask.com\CallingIDSDK\" [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F994E0D9-8335-48f1-99C2-A712C21F8D5F}] "AppPath"="C:\Program Files (x86)\Ask.com\" [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run-] "ApnUpdater"=""C:\Program Files (x86)\Ask.com\Updater\Updater.exe"" [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{05366194-3126-4601-AC1A-DDE573E093DC}\InprocServer32] @="C:\Program Files (x86)\Ask.com\CallingIDSDK\CIDCoreLight.dll" [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{061F450C-37B9-4330-9235-0F25D9F75B33}\InprocServer32] @="C:\Program Files (x86)\Ask.com\CallingIDSDK\CIDCoreLight.dll" [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{19D2F415-D58B-46BC-9390-C03DCBC21EB2}\LocalServer32] @="C:\PROGRA~2\Ask.com\AbineSDK\IE\DNTPSE~1.EXE" [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{22FEB0F5-0BA0-4D4B-8A66-55A21667BC31}\InprocServer32] @="C:\Program Files (x86)\Ask.com\CallingIDSDK\CIDWPADLightPS.dll" [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{26249267-15F4-4DA3-8247-C5A78E4FA918}\LocalServer32] @="C:\Program Files (x86)\Ask.com\CallingIDSDK\CIDWPADLight.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{39B217B4-8C69-4E45-A8DC-8CC4DAD3CF0A}\InprocServer32] @="C:\Program Files (x86)\Ask.com\CallingIDSDK\CIDCoreLight.dll" [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{3CB4CE45-8849-4638-9226-D6B615A15827}\InprocServer32] @="C:\Program Files (x86)\Ask.com\AviraCallingIDhelper.dll" [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{43AB7B5D-4C40-4103-A549-7002A116A7D5}\LocalServer32] @="C:\Program Files (x86)\Ask.com\CallingIDSDK\CIDGlobalLight.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{6E45F3E8-2683-4824-A6BE-08108022FB36}\InprocServer32] @="C:\Program Files (x86)\Ask.com\AbineSDK\IE\DNTPAddon.dll" [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{996ED20F-A740-47A2-A7EF-9620D422BB4E}\InprocServer32] @="C:\Program Files (x86)\Ask.com\CallingIDSDK\CIDCoreLight.dll" [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{9F0F16DD-4E76-4049-A9B1-7A91E48F0323}\InprocServer32] @="C:\Program Files (x86)\Ask.com\AbineSDK\IE\DNTPAddon.dll" [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{D2B79F7D-2D7D-4420-B2A9-ECE52C7C83A0}\InprocServer32] @="C:\Program Files (x86)\Ask.com\CallingIDSDK\CIDGlobalLightPS.dll" [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\CLSID\{F4288797-CB12-49CE-9DF8-7CDFA1143BEA}\InprocServer32] @="C:\Program Files (x86)\Ask.com\AbineSDK\IE\DNTPButton.dll" [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\TypeLib\{1D55DAA5-04AC-4036-B0BE-DA81EE9676CD}\1.0\0\win32] @="C:\PROGRA~2\Ask.com\CALLIN~1\CIDGLO~1.EXE" [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\TypeLib\{212C2C4F-C845-4FBC-9561-C833A13D8DCE}\1.0\0\win32] @="C:\PROGRA~2\Ask.com\AbineSDK\IE\DNTPAD~1.DLL" [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\TypeLib\{212C2C4F-C845-4FBC-9561-C833A13D8DCE}\1.0\HELPDIR] @="C:\Program Files (x86)\Ask.com\AbineSDK\IE\" [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\TypeLib\{3C5D1D57-16C8-473C-A552-37B8D88596FE}\1.0\0\win32] @="C:\PROGRA~2\Ask.com\AbineSDK\IE\DNTPTY~1.DLL" [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\TypeLib\{3C5D1D57-16C8-473C-A552-37B8D88596FE}\1.0\HELPDIR] @="C:\Program Files (x86)\Ask.com\AbineSDK\IE\" [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\TypeLib\{4A115D8A-6A7B-4C72-92B1-2E2D01F36979}\1.0\0\win32] @="C:\PROGRA~2\Ask.com\AbineSDK\IE\DNTPBU~1.DLL" [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\TypeLib\{4A115D8A-6A7B-4C72-92B1-2E2D01F36979}\1.0\HELPDIR] @="C:\Program Files (x86)\Ask.com\AbineSDK\IE\" [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\TypeLib\{58CBF821-A0C7-4AE8-9430-77DD1AF38E99}\1.0\0\win32] @="C:\PROGRA~2\Ask.com\CALLIN~1\CIDWPA~1.EXE" [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\TypeLib\{72BCBFF7-2837-4CA0-B3B5-3DAED7F54601}\1.0\0\win32] @="C:\PROGRA~2\Ask.com\AVIRAC~1.DLL" [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\TypeLib\{72BCBFF7-2837-4CA0-B3B5-3DAED7F54601}\1.0\HELPDIR] @="C:\Program Files (x86)\Ask.com\" [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\TypeLib\{824125FD-7732-4DA2-9277-3A7D0A0A0813}\1.0\0\win32] @="C:\PROGRA~2\Ask.com\CALLIN~1\CIDCOR~1.DLL" [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\TypeLib\{99DF8440-814E-497F-BDDD-FB93E9E9DF96}\1.0\0\win32] @="C:\PROGRA~2\Ask.com\AbineSDK\IE\DNTPSE~1.EXE" [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\TypeLib\{99DF8440-814E-497F-BDDD-FB93E9E9DF96}\1.0\HELPDIR] @="C:\Program Files (x86)\Ask.com\AbineSDK\IE\" [HKEY_USERS\S-1-5-21-4198297669-3172748106-3339997324-1000\Software\Microsoft\Internet Explorer\DOMStorage\ask.com] [HKEY_USERS\S-1-5-21-4198297669-3172748106-3339997324-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Activities\Search\ask.com] Searching for "GinyasBrowserCompanion" No data found. Searching for "v-Grabber" No data found. Searching for "Babylon" [HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\LowRegistry\Audio\PolicyConfig\PropertyStore\8da617e8_0] @="{0.0.0.00000000}.{09ea8b5a-8256-4062-9d50-7d9591762c9b}|\Device\HarddiskVolume2\Program Files (x86)\Babylon\Babylon-Pro\TC\BabylonTC.exe%b{00000000-0000-0000-0000-000000000000}" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\AppID\{6536801B-F50C-449B-9476-093DFD3789E3}] @="BabylonHelper" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{64B00DAC-870D-4E6A-8D34-3A6E3E427A30}\LocalServer32] @=""C:\Program Files\Babylon\Babylon-Pro\BabylonHelper64.exe"" [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Wow6432Node\AppID\{6536801B-F50C-449B-9476-093DFD3789E3}] @="BabylonHelper" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extension Compatibility\{2EECD738-5844-4A99-B4B6-146BF802613B}] "DllName"="BabylonToolbar.dll" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extension Compatibility\{97F2FF5B-260C-4CCF-834A-2DDA4E29E39E}] "DllName"="BabylonToolbar.dll" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extension Compatibility\{98889811-442D-49DD-99D7-DC866BE87DBC}] "DllName"="BabylonToolbarTlbr.dll" [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Extension Compatibility\{2EECD738-5844-4A99-B4B6-146BF802613B}] "DllName"="BabylonToolbar.dll" [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Extension Compatibility\{97F2FF5B-260C-4CCF-834A-2DDA4E29E39E}] "DllName"="BabylonToolbar.dll" [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\Extension Compatibility\{98889811-442D-49DD-99D7-DC866BE87DBC}] "DllName"="BabylonToolbarTlbr.dll" [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Classes\AppID\{6536801B-F50C-449B-9476-093DFD3789E3}] @="BabylonHelper" [HKEY_USERS\S-1-5-21-4198297669-3172748106-3339997324-1000\Software\Microsoft\Internet Explorer\LowRegistry\Audio\PolicyConfig\PropertyStore\8da617e8_0] @="{0.0.0.00000000}.{09ea8b5a-8256-4062-9d50-7d9591762c9b}|\Device\HarddiskVolume2\Program Files (x86)\Babylon\Babylon-Pro\TC\BabylonTC.exe%b{00000000-0000-0000-0000-000000000000}" Searching for "Search Settings" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\30C16B15B255BD349A1157B8A83E2AF9] "6B44B0DEF67D1764F878629CAF5C48BC"="C?\Program Files (x86)\Common Files\Spigot\Search Settings\SearchSettings.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\F3157AA407841454BB0C9BE8D1982BC9] "6B44B0DEF67D1764F878629CAF5C48BC"="C:\Program Files (x86)\Common Files\Spigot\Search Settings\Lang\" Searching for "dvdvideosoftiehelpers" No data found. Searching for "OpenCandy" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\OpenCandyHelperRunOnce] Searching for "DVDVideoSoftTB" No data found. Searching for "AskToolbar" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Components\A876D9E80B896EC44A8620248CC79296] "A28B4D68DEBAA244EB686953B7074FEF"="C:\Program Files (x86)\Ask.com\GenericAskToolbar.dll" Searching for "incredibar" [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\bmbgdmijgopggjaelphhajpjldacbnba] "path"="C:\Program Files (x86)\Incredibar.com\incredibar\1.5.11.14\incredibar.crx" Searching for " " [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "Steam"=""C:\Program Files (x86)\Steam\Steam.exe" -silent " [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "Spotify Web Helper"=""C:\Users\Kev\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe" " [HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run] "Skype"=""C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun " [HKEY_CURRENT_USER\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache] "C:\Program Files (x86)\Common Files\DVDVideoSoft\FreeStudioManager.exe"="FreeStudioManager " [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\GameUX\Games\{2BF49C34-CAB2-4300-8663-2E4BBB5B0689}] "RatingsInfo"="<Ratings xmlns="urn:schemas-microsoft-com:GameDescription.v1"> <Rating ratingSystemID="{768BD93D-63BE-46A9-8994-0B53C4B5248F}" ratingID="{18CD34B7-7AA3-42b9-A303-5A729B2FF228}"> <Descriptor descriptorID="{9A82F712-5A9D-4409-9539-666BBCDFE12D}"/> <Descriptor descriptorID="{6AB026D3-FAD5-4a18-A53B-2CAFA358AE8F}"/> <Descriptor descriptorID="{1A796A5D-1E25-4862-9443-1550578FF4C4}"/> <Descriptor descriptorID="{E04AAEE8-950C-43c4-B75C-D87736A7FAFD}"/> <Descriptor descriptorID="{BE562A5F-2A80-4c28-9752-74C696E2ABAF}"/> </Rating> <Rating ratingSystemID="{36798944-B235-48ac-BF21-E25671F597EE}" ratingID="{CEC5DB5A-B4C9-4809-96C6-39CE715E4790}"> <Descriptor descriptorID="{F110F831-9412-40c9-860A-B489407ED374}"/> </Rating> <Rati [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\GameUX\Games\{5371C3EE-500F-4EC5-B50B-5CD4233A1F3A}] "RatingsInfo"="<Ratings xmlns="urn:schemas-microsoft-com:GameDescription.v1"> <Rating ratingSystemID="{36798944-B235-48ac-BF21-E25671F597EE}" ratingID="{CEC5DB5A-B4C9-4809-96C6-39CE715E4790}"> <Descriptor descriptorID="{F110F831-9412-40c9-860A-B489407ED374}"/> </Rating> <Rating ratingSystemID="{C705DCF4-6AFE-4f4f-BC51-21807E4E5CFB}" ratingID="{B3F8E60B-DF77-4104-88AC-F5919C64649A}"/> <Rating ratingSystemID="{EC290BBB-D618-4cb9-9963-1CAAE515443E}" ratingID="{997B7D18-2AFA-49dc-847B-0E8A69723040}"/> <Rating ratingSystemID="{768BD93D-63BE-46A9-8994-0B53C4B5248F}" ratingID="{18CD34B7-7AA3-42b9-A303-5A729B2FF228}"> <Descriptor descriptorID="{9A82F712-5A9D-4409-9539-666BBCDFE12D}"/> <Descriptor descriptorID="{BE562A5F-2A80-4c28-9752-74C696E2ABAF}"/> </Rating> <R [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\GameUX\Games\{EF647E0A-A4E2-4E6E-9B02-DACC3FC19CE9}] "RatingsInfo"="<Ratings xmlns="urn:schemas-microsoft-com:GameDescription.v1"> <Rating ratingSystemID="{768BD93D-63BE-46A9-8994-0B53C4B5248F}" ratingID="{18CD34B7-7AA3-42b9-A303-5A729B2FF228}"> <Descriptor descriptorID="{9A82F712-5A9D-4409-9539-666BBCDFE12D}"/> <Descriptor descriptorID="{6AB026D3-FAD5-4a18-A53B-2CAFA358AE8F}"/> <Descriptor descriptorID="{1A796A5D-1E25-4862-9443-1550578FF4C4}"/> <Descriptor descriptorID="{E04AAEE8-950C-43c4-B75C-D87736A7FAFD}"/> <Descriptor descriptorID="{BE562A5F-2A80-4c28-9752-74C696E2ABAF}"/> </Rating> <Rating ratingSystemID="{EC290BBB-D618-4cb9-9963-1CAAE515443E}" ratingID="{068D40C4-7809-4c67-8FEA-DA457CF990B4}"/> <Rating ratingSystemID="{36798944-B235-48ac-BF21-E25671F597EE}" ratingID="{CEC5DB5A-B4C9-4809-96C6-39CE715E4790} [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "PfNet"=""C:\Program Files\Fujitsu\Plugfree NETWORK\PfNet.exe" /r " [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "RtHDVCpl"="C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s " [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "CSRSkype"="C:\Program Files\CSR\Bluetooth Feature Pack 5.0\CSRSkype.exe " [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "CSRFTP"="C:\Program Files\CSR\Bluetooth Feature Pack 5.0\CSRBthFtpServer.exe " [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WSMAN\Plugin\Microsoft.PowerShell] "ConfigXML"=" <PlugInConfiguration xmlns="hxxp://schemas.microsoft.com/wbem/wsman/1/config/PluginConfiguration" Name="microsoft.powershell" Filename="%windir%\system32\pwrshplugin.dll" SDKVersion="1" XmlRenderingType="text" > <InitializationParameters> <Param Name="PSVersion" Value="2.0"/> </InitializationParameters> <Resources> <Resource ResourceUri="hxxp://schemas.microsoft.com/powershell/microsoft.powershell" SupportsOptions="true" ExactMatch="true"> <Security xmlns="hxxp://schemas.microsoft.com/wbem/wsman/1/config/PluginConfiguration" Uri="hxxp://schemas.microsoft.com/powershell/microsoft.powershell" ExactMatch="true" Sddl="O:NSG:BAD:P(A;;GA;;;BA)S:P(AU;FA;GA;;;WD)(AU;SA;GXGW;;;WD)"/> <Capability Type="Shell"/> </Resource> </Res [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run] "UCam_Menu"=""C:\Program Files (x86)\CyberLink\YouCam\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\YouCam" UpdateWithCreateOnce "Software\CyberLink\YouCam\3.0" " [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run] "YouCam Mirror Tray icon"=""C:\Program Files (x86)\CyberLink\YouCam\YouCamTray.exe" /s " [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run] "LogMeIn Hamachi Ui"=""C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start " [HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\WSMAN\Plugin\Microsoft.PowerShell32] "ConfigXML"="<PlugInConfiguration xmlns="hxxp://schemas.microsoft.com/wbem/wsman/1/config/PluginConfiguration" Name="microsoft.powershell32" Filename="%windir%\system32\pwrshplugin.dll" SDKVersion="1" XmlRenderingType="text" Architecture="32" > <InitializationParameters> <Param Name="PSVersion" Value="2.0"/> </InitializationParameters> <Resources> <Resource ResourceUri="hxxp://schemas.microsoft.com/powershell/microsoft.powershell32" SupportsOptions="true" ExactMatch="true"> <Security xmlns="hxxp://schemas.microsoft.com/wbem/wsman/1/config/PluginConfiguration" Uri="hxxp://schemas.microsoft.com/powershell/microsoft.powershell32" ExactMatch="true" Sddl="O:NSG:BAD:P(A;;GA;;;BA)S:P(AU;FA;GA;;;WD)(AU;SA;GXGW;;;WD)"/> [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Enum\WpdBusEnumRoot\UMB\2&37c186b&0&STORAGE#VOLUME#_??_USBSTOR#DISK&VEN_INTENSO&PROD_USB&REV_1100#AA0401290000 7475&0#] "DeviceDesc"="USB " [HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Enum\WpdBusEnumRoot\UMB\2&37c186b&0&STORAGE#VOLUME#_??_USBSTOR#DISK&VEN_INTENSO&PROD_USB&REV_1100#AA0401290000 7475&0#] "DeviceDesc"="USB " [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\WpdBusEnumRoot\UMB\2&37c186b&0&STORAGE#VOLUME#_??_USBSTOR#DISK&VEN_INTENSO&PROD_USB&REV_1100#AA040129 00007475&0#] "DeviceDesc"="USB " [HKEY_USERS\S-1-5-21-4198297669-3172748106-3339997324-1000\Software\Microsoft\Windows\CurrentVersion\Run] "Steam"=""C:\Program Files (x86)\Steam\Steam.exe" -silent " [HKEY_USERS\S-1-5-21-4198297669-3172748106-3339997324-1000\Software\Microsoft\Windows\CurrentVersion\Run] "Spotify Web Helper"=""C:\Users\Kev\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe" " [HKEY_USERS\S-1-5-21-4198297669-3172748106-3339997324-1000\Software\Microsoft\Windows\CurrentVersion\Run] "Skype"=""C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun " [HKEY_USERS\S-1-5-21-4198297669-3172748106-3339997324-1000\Software\Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache] "C:\Program Files (x86)\Common Files\DVDVideoSoft\FreeStudioManager.exe"="FreeStudioManager " [HKEY_USERS\S-1-5-21-4198297669-3172748106-3339997324-1000_Classes\Local Settings\Software\Microsoft\Windows\Shell\MuiCache] "C:\Program Files (x86)\Common Files\DVDVideoSoft\FreeStudioManager.exe"="FreeStudioManager " -= EOF =- Ja ich habe noch fragen und zwar wichtige wenn ich eine CD ins cd Laufwerk lege, tut soch garniichts und wenn ich sie instalieren will ohne Autorund blockt windows ab uns sagt iwie sowas mit no location |
Servus, Folge dem Pfad: Start > Systemsteuerung > Hardware und Sound > Automatische Wiedergabe Setze einen Haken bei Automatische Wiedergabe für alle Medien und Geräte verwenden Darunter kannst du auswählen, wie entsprechende CDs, DVDs, etc. gestartet werden sollen Klicken rechts unten auf Speichern. Schritt 1 Fixen mit OTL
Code: :reg
Schritt 2 Starte bitte OTL.exe und drücke den Quick Scan Button. Poste die OTL.txt hier in deinen Thread. Gibt es immer noch Probleme mit der AutoRun Funktion? Wie sieht es mit SearchPlusNetwork aus? Bitte poste mit deiner nächsten Antwort
|
Hi Searchplusnetwork macht kein problem mehr daher in dieser Hinsicht schon mal vielen dank für alles auserdem sind auf meinem Desktop 3 Datein aufgetaucht seit dem letzten fix mit OTL und zwar: desktop.ini dann nochmal desktop.ini und Thumbs.db was bedeuten die und nach dem fix hat OTL keine Logdatei erstellt ich habe auch auf den ihnen gennnanten Systemlink nachgesehn der Ordner war leer OTL Logfile: Code: OTL logfile created on: 3/11/2013 10:17:12 PM - Run 6Aber der autorun und das instalieren der CD funktioniert leider immer noch nicht :( |
Servus, Schritt 1 Downloade bitte Grinlers unhide.exe auf deinem Desktop
Schritt 2 Downloade dir bitte
Poste bitte den Inhalt hier. Bitte poste mit deiner nächsten Antwort
|
Unhide by Lawrence Abrams (Grinler) Bleeping Computer - Technical Support and Computer Help Copyright 2008-2013 BleepingComputer.com More Information about Unhide.exe can be found at this link: Unhide.exe - A introduction as to what this program does - BleepingComputer.com Program started at: 03/12/2013 05:14:20 PM Windows Version: Windows 7 Please be patient while your files are made visible again. Processing the C:\ drive Finished processing the C:\ drive. 246418 files processed. Processing the D:\ drive Finished processing the D:\ drive. 69270 files processed. The C:\Users\Kev\AppData\Local\Temp\smtmp\ folder does not exist!! Unhide cannot restore your missing shortcuts!! Please see this topic in order to learn how to restore default Start Menu shortcuts: Unhide.exe - A introduction as to what this program does - BleepingComputer.com Searching for Windows Registry changes made by FakeHDD rogues. - Checking HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer - Checking HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer - Checking HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System - Checking HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\ActiveDesktop - Checking HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\Advanced No registry changes detected. Program finished at: 03/12/2013 05:24:44 PM Execution time: 0 hours(s), 10 minute(s), and 24 seconds(s) Farbar Service Scanner Version: 03-03-2013 Ran by Kev (administrator) on 12-03-2013 at 17:27:44 Running from "C:\Users\Kev\Downloads" Windows 7 Home Premium Service Pack 1 (X64) Boot Mode: Normal **************************************************************** Internet Services: ============ Connection Status: ============== Localhost is accessible. LAN connected. Google IP is accessible. Google.com is accessible. Yahoo IP is accessible. Yahoo.com is accessible. Windows Firewall: ============= Firewall Disabled Policy: ================== System Restore: ============ System Restore Disabled Policy: ======================== Action Center: ============ Windows Update: ============ Windows Autoupdate Disabled Policy: ============================ Windows Defender: ============== Other Services: ============== File Check: ======== C:\Windows\System32\nsisvc.dll => MD5 is legit C:\Windows\System32\drivers\nsiproxy.sys => MD5 is legit C:\Windows\System32\dhcpcore.dll => MD5 is legit C:\Windows\System32\drivers\afd.sys => MD5 is legit C:\Windows\System32\drivers\tdx.sys => MD5 is legit C:\Windows\System32\Drivers\tcpip.sys => MD5 is legit C:\Windows\System32\dnsrslvr.dll => MD5 is legit C:\Windows\System32\mpssvc.dll => MD5 is legit C:\Windows\System32\bfe.dll => MD5 is legit C:\Windows\System32\drivers\mpsdrv.sys => MD5 is legit C:\Windows\System32\SDRSVC.dll => MD5 is legit C:\Windows\System32\vssvc.exe => MD5 is legit C:\Windows\System32\wscsvc.dll => MD5 is legit C:\Windows\System32\wbem\WMIsvc.dll => MD5 is legit C:\Windows\System32\wuaueng.dll => MD5 is legit C:\Windows\System32\qmgr.dll => MD5 is legit C:\Windows\System32\es.dll => MD5 is legit C:\Windows\System32\cryptsvc.dll => MD5 is legit C:\Program Files\Windows Defender\MpSvc.dll => MD5 is legit C:\Windows\System32\ipnathlp.dll => MD5 is legit C:\Windows\System32\iphlpsvc.dll => MD5 is legit C:\Windows\System32\svchost.exe => MD5 is legit C:\Windows\System32\rpcss.dll => MD5 is legit **** End of log **** |
Servus, Du hast folgendes geschrieben: Zitat:
"iwie sowas mit location" hilft mir wenig. Sag mir bitte die genaue Fehlermeldung, die erscheint. Von den Einstellungen sollte es eigentlich so passen. Werden die drei "neuen" Dateien immer noch auf dem Desktop angezeigt? |
Ich hab es jetzt mit15 anderen CDs ausprobiert es passiert immer noch nichts. ja die 3 Datein sind noch am Desktop :( |
Servus, wegen den drei Dateien: Gehe bitte auf Start --> Systemsteuerung --> Extras --> Ordneroptionen. Wechsle auf den Reiter Ansicht.
Lösche keinesfalls Ordner oder Dateien ohne Anweisung Wegen der AutoRun Funktion TuneUp Utilities deinstallieren und OTL nochmal starten: Ich sehe, dass du sog. Registry Cleaner auf dem System hast. In deinem Fall TuneUp Utilities. Wir empfehlen auf keinen Fall jegliche Art von Registry Cleaner. Der Grund ist ganz einfach: Die Registry ist das Hirn des Systems. Funktioniert das Hirn nicht, funktioniert der Rest nicht mehr wirklich. Wir lesen oft genug von Hilfesuchenden, dass deren System nach der Nutzung von Registry Cleanern nicht mehr booted.
Zerstörst Du die Registry, zerstörst Du Windows. Ich empfehle dir hiermit die oben genannte Software zu deinstallieren und in Zukunft auf solche Art von Software zu verzichten. Am Ende empfehle ich dir ein anderes Tool, mit dem du deine temporären Dateien entfernen kannst. Starte bitte OTL.exe und drücke den Quick Scan Button. Poste die OTL.txt hier in deinen Thread. |
Fehlende Rückmeldung Dieses Thema wurde aus den Abos gelöscht. Somit bekomme ich keine Benachrichtigung über neue Antworten. PM an mich falls Du denoch weiter machen willst. Hinweis: Das Verschwinden der Symptome bedeutet nicht, dass Dein Rechner schon sauber ist. Jeder andere bitte hier klicken und einen eigenen Thread erstellen! |
Bin in den nächsten Tagen beschäftigt und kann daher nicht gleich die datein senden OTL Logfile: Code: OTL logfile created on: 3/17/2013 5:24:15 PM - Run 7 |
Servus, wie sieht es mit den drei Dateien auf dem Desktop und der AutoRun Funktion aus? |
Servus, Die 3 Datein sind weg und die Autorun Funktion Funktioniert teilweise etwas also wenn ich ein Handy am PC anschliese funktioniert sie wieder. Aber wenn ich eine Instalierte CD einlege oder eine CD instalierwn will passiert immer noch nichts. USB werden aber angezeigt. |
Servus, langsam gehen mir die Ideen aus, ich frag mal intern im Team nach. Ich bitte um etwas Geduld. :) Edit: Mit der AutoRun Funktion auf deinem Rechner ist alles in Ordnung. Es liegt ein prinzipielles Problem mit deinem CD/DVD Laufwerk vor. Lege eine CD/DVD ins Laufwerk ein und gib mir die genaue Fehlermeldung an, die erscheint. Du hast einmal was von "no location" gesprochen... das reicht nicht. Ich brauche die gesamte Fehlermeldung! |
Die Fehlermeldung kam als ich die CD Manuell Instalieren eollte da hat her das gebracht also Mein PC Verweigert Praktisch die Instalation. Aber jetzt Tut sich nicht mal mehr was wenn ich ne Instalierte CD einlege. |
Servus, Drücke bitte die http://larusso.trojaner-board.de/Images/windows.jpg + R Taste und schreibe notepad in das Ausführen Fenster. Kopiere nun folgenden Text aus der Code-Box in das leere Textdokument Code: @Echo off
Es öffnet sich eine Textdatei. Poste deren Inhalt mit deiner nächsten Antwort. |
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\policies\Explorer NoDrives REG_DWORD 0x0 HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\policies\Explorer\run HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\policies\Explorer NoDriveTypeAutoRun REG_DWORD 0x91 NoDrives REG_DWORD 0x0 HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\policies\Explorer\Run HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Cdrom AutoRun REG_DWORD 0x1 HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Cdrom AutoRunAlwaysDisable REG_MULTI_SZ NEC MBR-7 \0NEC MBR-7.4 \0PIONEER CHANGR DRM-1804X\0PIONEER CD-ROM DRM-6324X\0PIONEER CD-ROM DRM-624X \0TORiSAN CD-ROM CDR_C36 HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\IniFileMapping\Autorun.inf (Standard) REG_SZ @SYS:Software\Swearware\dump Da hat sich noch ein schwarzes Fenster geöffnet da wo dreimal gestanden ist FEHLER Die Datei wurde nicht gefunden. |
Servus, Drücke bitte die http://larusso.trojaner-board.de/Images/windows.jpg + R Taste und schreibe notepad in das Ausführen Fenster. Kopiere nun folgenden Text aus der Code-Box in das leere Textdokument Code: @Echo off
Starte deinen Rechner neu auf und berichte, ob das Problem mit dem CD Laufwerk behoben wurde. |
Jaaaaaaaaaaaaaaaaa es geht danke danke danke wie kann ich Ihnen nur Danken =D |
Servus, sehr gut. :abklatsch: Ich würde mich freuen, wenn du bis zum Ende dabei bleibst. :) Wir kontrollieren nochmal alles: Schritt 1 Fixen mit OTL
Code: :Commands
Schritt 2
Schritt 3 ESET Online Scanner
Schritt 4 Downloade Dir bitte
Bitte poste mit deiner nächsten Antwort
|
All processes killed ========== COMMANDS ========== [EMPTYTEMP] User: All Users User: Default ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 0 bytes User: Default User ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 0 bytes User: Gamer ->Temp folder emptied: 0 bytes ->Temporary Internet Files folder emptied: 0 bytes ->Java cache emptied: 0 bytes ->FireFox cache emptied: 0 bytes ->Flash cache emptied: 0 bytes User: Journal ->Temp folder emptied: 0 bytes User: Kev ->Temp folder emptied: 104937708 bytes ->Temporary Internet Files folder emptied: 100819829 bytes ->Java cache emptied: 0 bytes ->Google Chrome cache emptied: 229312816 bytes ->Apple Safari cache emptied: 0 bytes ->Flash cache emptied: 652 bytes User: Public ->Temp folder emptied: 0 bytes User: RegBack ->Temp folder emptied: 0 bytes User: systemprofile ->Temp folder emptied: 0 bytes User: TxR ->Temp folder emptied: 0 bytes %systemdrive% .tmp files removed: 0 bytes %systemroot% .tmp files removed: 0 bytes %systemroot%\System32 .tmp files removed: 0 bytes %systemroot%\System32 (64bit) .tmp files removed: 0 bytes %systemroot%\System32\drivers .tmp files removed: 0 bytes Windows Temp folder emptied: 2986496 bytes %systemroot%\sysnative\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files folder emptied: 50434 bytes RecycleBin emptied: 0 bytes Total Files Cleaned = 418.00 mb OTL by OldTimer - Version 3.2.69.0 log created on 03212013_215540 Files\Folders moved on Reboot... C:\Users\Kev\AppData\Local\Temp\FXSAPIDebugLogFile.txt moved successfully. PendingFileRenameOperations files... Registry entries deleted on Reboot... Malwarebytes Anti-Malware 1.70.0.1100 Malwarebytes : Free anti-malware download Datenbank Version: v2013.03.21.14 Windows 7 Service Pack 1 x64 NTFS Internet Explorer 9.0.8112.16421 Kev :: KEV-PC [Administrator] 21.03.2013 22:17:09 mbam-log-2013-03-21 (22-17-09).txt Art des Suchlaufs: Quick-Scan Aktivierte Suchlaufeinstellungen: Speicher | Autostart | Registrierung | Dateisystem | Heuristiks/Extra | HeuristiKs/Shuriken | PUP | PUM Deaktivierte Suchlaufeinstellungen: P2P Durchsuchte Objekte: 280653 Laufzeit: 3 Minute(n), 28 Sekunde(n) Infizierte Speicherprozesse: 0 (Keine bösartigen Objekte gefunden) Infizierte Speichermodule: 0 (Keine bösartigen Objekte gefunden) Infizierte Registrierungsschlüssel: 0 (Keine bösartigen Objekte gefunden) Infizierte Registrierungswerte: 0 (Keine bösartigen Objekte gefunden) Infizierte Dateiobjekte der Registrierung: 0 (Keine bösartigen Objekte gefunden) Infizierte Verzeichnisse: 0 (Keine bösartigen Objekte gefunden) Infizierte Dateien: 0 (Keine bösartigen Objekte gefunden) (Ende) ESETSmartInstaller@High as downloader log: all ok # version=8 # OnlineScannerApp.exe=1.0.0.1 # OnlineScanner.ocx=1.0.0.6920 # api_version=3.0.2 # EOSSerial=e8156d6b3ce6804b82acca788bf653ac # engine=13451 # end=finished # remove_checked=false # archives_checked=true # unwanted_checked=false # unsafe_checked=false # antistealth_checked=true # utc_time=2013-03-22 12:02:41 # local_time=2013-03-22 01:02:41 (+0100, Mitteleuropäische Zeit) # country="Germany" # lang=1033 # osver=6.1.7601 NT Service Pack 1 # compatibility_mode=1799 16775165 100 96 189287 134581866 182070 0 # compatibility_mode=5893 16776573 100 94 13831 115540411 0 0 # scanned=278167 # found=1 # cleaned=0 # scan_time=9446 sh=D9D55C4426649EC1A3F02DEC2168E3A91596188A ft=1 fh=c88259bf88f67c5b vn="Win32/Adware.Bundlore application" ac=I fn="D:\Users\Kev\Downloads\setup.exe" Results of screen317's Security Check version 0.99.59 Windows 7 Service Pack 1 x64 (UAC is enabled) Internet Explorer 9 ``````````````Antivirus/Firewall Check:`````````````` Avira Desktop Antivirus up to date! `````````Anti-malware/Other Utilities Check:````````` Malwarebytes Anti-Malware Version 1.70.0.1100 Java 7 Update 13 Adobe Flash Player 11.6.602.180 Adobe Reader 9 Adobe Reader out of Date! Mozilla Thunderbird (8.0). Thunderbird out of Date! Google Chrome 25.0.1364.172 Google Chrome 25.0.1364.97 ````````Process Check: objlist.exe by Laurent```````` Malwarebytes Anti-Malware mbamservice.exe Malwarebytes Anti-Malware mbamgui.exe Avira Antivir avgnt.exe Avira Antivir avguard.exe Malwarebytes' Anti-Malware mbamscheduler.exe `````````````````System Health check````````````````` Total Fragmentation on Drive C: ````````````````````End of Log`````````````````````` |
Servus, Lösche bitte die folgende Datei per Hand: D:\Users\Kev\Downloads\setup.exe Wenn du keine Probleme mehr hast, dann sind wir hier fertig. Deine Logdateien sind sauber. :daumenhoc Zum Schluss müssen wir noch ein paar abschließende Schritte unternehmen, um deinen Pc aufzuräumen und abzusichern. Downloade und installiere als Erstes: Internet Explorer 10 für Windows 7 64 Bit Schritt 1 Dein Java ist nicht mehr aktuell. Älter Versionen enthalten Sicherheitslücken, die von Malware missbraucht werden können.
Schritt 2 Deinstalliere bitte deine aktuelle Version von Adobe Reader Start--> Systemsteuerung--> Software / Programme deinstallieren--> Adobe Reader und lade dir die neue Version von Hier herunter- Entferne den Hacken für den McAfee SecurityScan bzw. Google Chrome. Schritt 3 Starte bitte Thunderbird --> Extras --> Einstellungen ---> Erweitert. Wechsle in den Reiter Update und gehe sicher das Thunderbird nach Updates sucht und installiere diese auch. Schritt 4 Sofern verwendet, starte DeFogger und klicke auf Re-enable. Gegebenenfalls muss dein Rechner neu gestartet werden. Schritt 5 Downloade dir bitte delfix auf deinen Desktop.
Schritt 6 Hier noch ein paar Tipps zur Absicherung deines Systems. Ich kann garnicht zu oft erwähnen, wie wichtig es ist, dass dein System Up to Date ist.
Anti- Viren Software
Zusätzlicher Schutz
Sicheres Browsen
Alternative Browser Andere Browser tendieren zu etwas mehr Sicherheit als der IE, da diese keine Active X Elemente verwenden. Diese können von Spyware zur Infektion deines Systems missbraucht werden.
Performance Bereinige regelmäßig deine Temp Files. Ich empfehle hierzu TFC Halte dich fern von jedlichen Registry Cleanern. Diese Schaden deinem System mehr als sie helfen. Hier ein paar ( englishe ) Links Miekemoes Blogspot ( MVP ) Bill Castner ( MVP ) Don'ts
Hinweis: Bitte gib mir eine kurze Rückmeldung wenn alles erledigt ist und keine Fragen mehr vorhanden sind, so dass ich dieses Thema aus meinen Abos löschen kann. |
Hab alles gemacht was Sie mir empfohlen haben ich bedanke mich nochmals für alles =) |
Ich bin froh, dass wir helfen konnten :abklatsch: Dieses Thema scheint erledigt und wird aus meinen Abos gelöscht. Solltest Du das Thema erneut brauchen, schicke mir bitte eine PM. Jeder andere bitte hier klicken und einen eigenen Thread erstellen. |
Hallo Mathias jetzt habe ich wieder das Problem Mit searchplusnetwprk Ich habe keine Ahnung wie es wieder auf den pc Kommen kann Können sie mir bitte nochmals helfen Danke =D |
| Alle Zeitangaben in WEZ +1. Es ist jetzt 12:23 Uhr. |
Copyright ©2000-2026, Trojaner-Board