itscaroo | 26.08.2013 15:21 | Code:
# AdwCleaner v3.001 - Report created 26/08/2013 at 16:13:32
# Updated 24/08/2013 by Xplode
# Operating System : Windows 7 Home Premium Service Pack 1 (64 bits)
# Username : sony - SONY-VAIO
# Running from : C:\Users\sony\Desktop\adwcleaner.exe
# Option : Clean
***** [ Services ] *****
Service Deleted : TelevisionFanaticService
***** [ Files / Folders ] *****
Folder Deleted : C:\ProgramData\Babylon
Folder Deleted : C:\ProgramData\boost_interprocess
[!] Folder Deleted : C:\ProgramData\BrowserDefender
Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PriceGong
Folder Deleted : C:\Program Files (x86)\Conduit
Folder Deleted : C:\Program Files (x86)\Perion
Folder Deleted : C:\Program Files (x86)\PriceGong
Folder Deleted : C:\Program Files (x86)\TelevisionFanatic
Folder Deleted : C:\Program Files (x86)\IncrediMail_MediaBar_Deutsch_2
Folder Deleted : C:\Program Files (x86)\Common Files\DVDVideoSoft\TB
Folder Deleted : C:\Users\sony\AppData\Local\Conduit
Folder Deleted : C:\Users\sony\AppData\Local\PackageAware
Folder Deleted : C:\Users\sony\AppData\Local\Temp\boost_interprocess
Folder Deleted : C:\Users\sony\AppData\Local\Temp\CT2724407
Folder Deleted : C:\Users\sony\AppData\LocalLow\BabylonToolbar
Folder Deleted : C:\Users\sony\AppData\LocalLow\Conduit
Folder Deleted : C:\Users\sony\AppData\LocalLow\PriceGong
Folder Deleted : C:\Users\sony\AppData\LocalLow\TelevisionFanatic
Folder Deleted : C:\Users\sony\AppData\LocalLow\IncrediMail_MediaBar_Deutsch_2
Folder Deleted : C:\Users\sony\AppData\Roaming\Babylon
Folder Deleted : C:\Users\sony\AppData\Roaming\OpenCandy
Folder Deleted : C:\Users\sony\AppData\Roaming\Mozilla\Firefox\Profiles\4duij5nf.default\Smartbar
Folder Deleted : C:\Users\sony\AppData\Roaming\Mozilla\Firefox\Profiles\4duij5nf.default\CT2724407
Folder Deleted : C:\Users\sony\AppData\Roaming\Mozilla\Firefox\Profiles\4duij5nf.default\Extensions\{8A9386B4-E958-4C4C-ADF4-8F26DB3E4829}
Folder Deleted : C:\Users\sony\AppData\Roaming\Mozilla\Firefox\Profiles\4duij5nf.default\Extensions\{990af1c2-5a27-4460-8149-ecc6bc122af3}
Folder Deleted : C:\Users\sony\AppData\Local\Google\Chrome\User Data\Default\Extensions\eooncjejnppfjjklapaamhcdmjbilmde
File Deleted : C:\Users\sony\AppData\Roaming\Mozilla\Firefox\Profiles\4duij5nf.default\Extensions\{1FD91A9C-410C-4090-BBCC-55D3450EF433}
File Deleted : C:\END
File Deleted : C:\Users\sony\AppData\Roaming\Mozilla\Firefox\Profiles\4duij5nf.default\searchplugins\Babylon.xml
File Deleted : C:\Users\sony\AppData\Roaming\Mozilla\Firefox\Profiles\4duij5nf.default\searchplugins\Search_Results.xml
File Deleted : C:\Program Files (x86)\Mozilla Firefox\searchplugins\Search_Results.xml
File Deleted : C:\Users\sony\AppData\Roaming\Mozilla\Firefox\Profiles\4duij5nf.default\bprotector_extensions.sqlite
File Deleted : C:\Users\sony\AppData\Roaming\Mozilla\Firefox\Profiles\4duij5nf.default\bprotector_prefs.js
File Deleted : C:\Users\sony\AppData\Roaming\Mozilla\Firefox\Profiles\4duij5nf.default\user.js
File Deleted : C:\Program Files (x86)\Mozilla Firefox\user.js
File Deleted : C:\Users\sony\AppData\Local\Google\Chrome\User Data\Default\bProtector Web Data
File Deleted : C:\Users\sony\AppData\Local\Google\Chrome\User Data\Default\bprotectorpreferences
***** [ Shortcuts ] *****
***** [ Registry ] *****
Value Deleted : HKLM\SOFTWARE\Mozilla\Firefox\Extensions [{336D0C35-8A85-403A-B9D2-65C292C39087}]
Value Deleted : [x64] HKLM\SOFTWARE\Mozilla\Firefox\Extensions [{336D0C35-8A85-403A-B9D2-65C292C39087}]
Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\bkomkajifikmkfnjgphkjcfeepbnojok
Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\dlnembnfbcpjnepmfjmngjenhhajpdfd
Key Deleted : [x64] HKLM\SOFTWARE\Google\Chrome\Extensions\dlnembnfbcpjnepmfjmngjenhhajpdfd
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\Main [bprotector start page]
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes [bProtectorDefaultScope]
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes [BrowserMngrDefaultScope]
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\bProtectSettings
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\PriceGongIE.DLL
Key Deleted : HKLM\SOFTWARE\Classes\Applications\ilividsetup.exe
Key Deleted : HKLM\SOFTWARE\Classes\PriceFactorIE.PriceGongBHO
Key Deleted : HKLM\SOFTWARE\Classes\PriceFactorIE.PriceGongBHO.1
Key Deleted : HKLM\SOFTWARE\Classes\PriceGongIE.PriceGongCtrl
Key Deleted : HKLM\SOFTWARE\Classes\PriceGongIE.PriceGongCtrl.1
Key Deleted : HKLM\SOFTWARE\Classes\Prod.cap
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\apnstub_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\askpartnercobrandingtool_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\tracing\askpartnercobrandingtool_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\AskSLib_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\AskSLib_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\ConduitInstaller_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\ConduitInstaller_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\datamngrUI_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\datamngrUI_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\iLivid_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\iLivid_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\iLividMediaBar_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\iLividMediaBar_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\iLividSetup_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\iLividSetup_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\MyBabylontb_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\MyBabylontb_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SetupDataMngr_Searchqu_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\SetupDataMngr_Searchqu_RASMANCS
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\TaskScheduler_RASAPI32
Key Deleted : HKLM\SOFTWARE\Microsoft\Tracing\TaskScheduler_RASMANCS
Key Deleted : HKCU\Software\e558888b53de540
Key Deleted : HKLM\SOFTWARE\e558888b53de540
Value Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [TelevisionFanatic Search Scope Monitor]
Value Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [TelevisionFanatic Browser Plugin Loader]
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{835315FC-1BF6-4CA9-80CD-F6C158D40692}
Key Deleted : HKLM\SOFTWARE\Classes\AppID\{BDB69379-802F-4EAF-B541-F8DE92DD98DB}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{04D2B915-19FF-41E9-994D-95DC898BEA43}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{13119113-0854-469D-807A-171568457991}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{1631550F-191D-4826-B069-D9439253D926}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{33119133-0854-469D-807A-171568457991}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{3C471948-F874-49F5-B338-4F214A2EE0B1}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{5D79F641-C168-40DF-A32F-BACEA7509E75}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{898EA8C8-E7FF-479B-8935-AEC46303B9E5}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{C98D5B61-B0EA-4D48-9839-1079D352D880}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{CB41FC95-F1B3-4797-8BB6-1012FF62ABBA}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{D2A2595C-4FE4-4315-AA9B-19DBD6271B71}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{F02C0832-C85C-4B93-8C6F-9DF20121A10D}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{F34C9277-6577-4DFF-B2D7-7D58092F272F}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{990AF1C2-5A27-4460-8149-ECC6BC122AF3}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{1BDA16D6-801B-4EC0-A44A-A04A82F2FBD9}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{23119123-0854-469D-807A-171568457991}
Key Deleted : HKLM\SOFTWARE\Classes\Interface\{7D86A08B-0A8F-4BE0-B693-F05E6947E780}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{03119103-0854-469D-807A-171568457991}
Key Deleted : HKLM\SOFTWARE\Classes\TypeLib\{8B3372D0-09F0-41A5-8D9B-134E148672FB}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1631550F-191D-4826-B069-D9439253D926}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{2EECD738-5844-4A99-B4B6-146BF802613B}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5D79F641-C168-40DF-A32F-BACEA7509E75}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{CB41FC95-F1B3-4797-8BB6-1012FF62ABBA}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{990AF1C2-5A27-4460-8149-ECC6BC122AF3}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{04D2B915-19FF-41E9-994D-95DC898BEA43}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{1631550F-191D-4826-B069-D9439253D926}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{2EECD738-5844-4A99-B4B6-146BF802613B}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{5D79F641-C168-40DF-A32F-BACEA7509E75}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{82E1477C-B154-48D3-9891-33D83C26BCD3}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{898EA8C8-E7FF-479B-8935-AEC46303B9E5}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{C1AF5FA5-852C-4C90-812E-A7F75E011D87}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{C1ED9DA0-AFD0-4B90-AC6A-D3874F591014}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{C98D5B61-B0EA-4D48-9839-1079D352D880}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{CB41FC95-F1B3-4797-8BB6-1012FF62ABBA}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{F34C9277-6577-4DFF-B2D7-7D58092F272F}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{990AF1C2-5A27-4460-8149-ECC6BC122AF3}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{1631550F-191D-4826-B069-D9439253D926}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{5D79F641-C168-40DF-A32F-BACEA7509E75}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{82E1477C-B154-48D3-9891-33D83C26BCD3}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{98889811-442D-49DD-99D7-DC866BE87DBC}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{C1AF5FA5-852C-4C90-812E-A7F75E011D87}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{C1ED9DA0-AFD0-4B90-AC6A-D3874F591014}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{C98D5B61-B0EA-4D48-9839-1079D352D880}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{CB41FC95-F1B3-4797-8BB6-1012FF62ABBA}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{F34C9277-6577-4DFF-B2D7-7D58092F272F}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{990AF1C2-5A27-4460-8149-ECC6BC122AF3}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{04D2B915-19FF-41E9-994D-95DC898BEA43}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{F02C0832-C85C-4B93-8C6F-9DF20121A10D}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{1BDA16D6-801B-4EC0-A44A-A04A82F2FBD9}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{898EA8C8-E7FF-479B-8935-AEC46303B9E5}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{F34C9277-6577-4DFF-B2D7-7D58092F272F}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A40836C5-BAFD-4EAC-9876-FE6C8D610A73}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{1E90D70B-AE0F-4341-AA5E-9BEBABE0AA6E}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{0ECDF796-C2DC-4D79-A620-CCE0C0A66CC9}
Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}
Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{98889811-442D-49DD-99D7-DC866BE87DBC}]
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{C98D5B61-B0EA-4D48-9839-1079D352D880}]
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{990AF1C2-5A27-4460-8149-ECC6BC122AF3}]
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{0696F815-A3A9-490A-BB14-9EC3350B1276}]
Value Deleted : HKCU\Software\Microsoft\Internet Explorer\URLSearchHooks [{990AF1C2-5A27-4460-8149-ECC6BC122AF3}]
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks [{990AF1C2-5A27-4460-8149-ECC6BC122AF3}]
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{898EA8C8-E7FF-479B-8935-AEC46303B9E5}
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2406}
Key Deleted : HKCU\Software\APN
Key Deleted : HKCU\Software\BabSolution
Key Deleted : HKCU\Software\BrowserMngr
Key Deleted : HKCU\Software\Conduit
Key Deleted : HKCU\Software\DataMngr
[#] Key Deleted : HKCU\Software\DataMngr_Toolbar
Key Deleted : HKCU\Software\delta LTD
Key Deleted : HKCU\Software\Delta
Key Deleted : HKCU\Software\ilivid
Key Deleted : HKCU\Software\IM
Key Deleted : HKCU\Software\ImInstaller
Key Deleted : HKCU\Software\InstallCore
Key Deleted : HKCU\Software\powerpack
Key Deleted : HKCU\Software\AppDataLow\Toolbar
Key Deleted : HKCU\Software\AppDataLow\Software\AskToolbar
Key Deleted : HKCU\Software\AppDataLow\Software\Conduit
Key Deleted : HKCU\Software\AppDataLow\Software\lyrixeeker
Key Deleted : HKCU\Software\AppDataLow\Software\PriceGong
Key Deleted : HKCU\Software\AppDataLow\Software\SmartBar
Key Deleted : HKCU\Software\AppDataLow\Software\IncrediMail_MediaBar_Deutsch_2
Key Deleted : HKLM\Software\Babylon
Key Deleted : HKLM\Software\BabylonToolbar
Key Deleted : HKLM\Software\BrowserMngr
Key Deleted : HKLM\Software\Conduit
Key Deleted : HKLM\Software\Delta
Key Deleted : HKLM\Software\IB Updater
Key Deleted : HKLM\Software\iLividSRTB
Key Deleted : HKLM\Software\ImInstaller
Key Deleted : HKLM\Software\IncrediMail_MediaBar_Deutsch_2
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\PriceGong
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Search Results Toolbar
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\IncrediMail_MediaBar_Deutsch_2 Toolbar
Key Deleted : [x64] HKLM\SOFTWARE\DataMngr
Key Deleted : [x64] HKLM\SOFTWARE\IB Updater
Data Deleted : HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows [AppInit_DLLs] - c:\progra~3\browse~2\261339~1.144\{c16c1~1\browse~1.dll
***** [ Browsers ] *****
-\\ Internet Explorer v9.0.8112.16502
-\\ Mozilla Firefox v23.0 (en-US)
[ File : C:\Users\sony\AppData\Roaming\Mozilla\Firefox\Profiles\4duij5nf.default\prefs.js ]
Line Deleted : user_pref("CT2724407.1000082.isPlayDisplay", "true");
Line Deleted : user_pref("CT2724407.1000082.state", "{\"state\":\"stopped\",\"text\":\"Royal-Rad...\",\"description\":\"Royal-Radio\",\"url\":\"\"}");
Line Deleted : user_pref("CT2724407.1000234.TWC_TMP_city", "NUREMBERG");
Line Deleted : user_pref("CT2724407.1000234.TWC_TMP_country", "DE");
Line Deleted : user_pref("CT2724407.1000234.TWC_country", "GERMANY");
Line Deleted : user_pref("CT2724407.1000234.TWC_locId", "GMBY0250");
Line Deleted : user_pref("CT2724407.1000234.TWC_location", "Nuremberg, Germany");
Line Deleted : user_pref("CT2724407.1000234.TWC_region", "DE");
Line Deleted : user_pref("CT2724407.1000234.TWC_temp_dis", "c");
Line Deleted : user_pref("CT2724407.1000234.TWC_wind_dis", "kmh");
Line Deleted : user_pref("CT2724407.ENABALE_HISTORY", "{\"dataType\":\"string\",\"data\":\"true\"}");
Line Deleted : user_pref("CT2724407.ENABLE_RETURN_WEB_SEARCH_ON_THE_PAGE", "{\"dataType\":\"string\",\"data\":\"true\"}");
Line Deleted : user_pref("CT2724407.FirstTime", "true");
Line Deleted : user_pref("CT2724407.FirstTimeFF3", "true");
Line Deleted : user_pref("CT2724407.PG_ENABLE", "dHJ1ZQ==");
Line Deleted : user_pref("CT2724407.SF_JUST_INSTALLED.enc", "RkFMU0U=");
Line Deleted : user_pref("CT2724407.SF_STATUS.enc", "RU5BQkxFRA==");
Line Deleted : user_pref("CT2724407.SearchAppState.enc", "Mg==");
Line Deleted : user_pref("CT2724407.UserID", "UN16213939969468268");
Line Deleted : user_pref("CT2724407.addressBarTakeOverEnabledInHidden", "true");
Line Deleted : user_pref("CT2724407.cbfirsttime.enc", "TW9uIEF1ZyAyNiAyMDEzIDE1OjU0OjIwIEdNVCswMjAw");
Line Deleted : user_pref("CT2724407.countryCode", "DE");
Line Deleted : user_pref("CT2724407.embeddedsData", "[{\"appId\":\"129248971186128164\",\"apiPermissions\":{\"crossDomainAjax\":true,\"getMainFrameTitle\":true,\"getMainFrameUrl\":true,\"getSearchTerm\":true,\"insta[...]
Line Deleted : user_pref("CT2724407.firstTimeDialogOpened", "true");
Line Deleted : user_pref("CT2724407.fixPageNotFoundErrorByUser", "TRUE");
Line Deleted : user_pref("CT2724407.fixPageNotFoundErrorInHidden", "true");
Line Deleted : user_pref("CT2724407.fixUrls", true);
Line Deleted : user_pref("CT2724407.fullUserID", "UN16213939969468268.TB.20130826155346");
Line Deleted : user_pref("CT2724407.installType", "DirectDownload");
Line Deleted : user_pref("CT2724407.isCheckedStartAsHidden", true);
Line Deleted : user_pref("CT2724407.isEnableAllDialogs", "{\"dataType\":\"string\",\"data\":\"true\"}");
Line Deleted : user_pref("CT2724407.isFirstTimeToolbarLoading", "false");
Line Deleted : user_pref("CT2724407.isToolbarShrinked", "{\"dataType\":\"string\",\"data\":\"false\"}");
Line Deleted : user_pref("CT2724407.isWelcomPage", "{\"dataType\":\"boolean\",\"data\":\"true\"}");
Line Deleted : user_pref("CT2724407.lastNewTabSettings", "{\"isEnabled\":false,\"newTabUrl\":\"hxxp://search.conduit.com/?ctid=CT2724407&octid=CT2724407&SearchSource=15&CUI=UN16213939969468268&SSPV=&Lay=1&UM=2\"}");
Line Deleted : user_pref("CT2724407.lastVersion", "10.16.9.506");
Line Deleted : user_pref("CT2724407.mam_gk_appStateReportTime.enc", "MTM3NzUyNTI1NjI3NQ==");
Line Deleted : user_pref("CT2724407.mam_gk_appState_CouponBuddy.enc", "b24=");
Line Deleted : user_pref("CT2724407.mam_gk_appState_Easytobook.enc", "b24=");
Line Deleted : user_pref("CT2724407.mam_gk_appState_Easytobook_targeted.enc", "b24=");
Line Deleted : user_pref("CT2724407.mam_gk_appState_PriceGong.enc", "b24=");
Line Deleted : user_pref("CT2724407.mam_gk_appState_WindowShopper.enc", "b24=");
Line Deleted : user_pref("CT2724407.mam_gk_appState_eToro.enc", "b24=");
Line Deleted : user_pref("CT2724407.mam_gk_appsData.enc", "eyJhcHBzIjpbeyJpZCI6IlByaWNlR29uZyIsInVybCI6Imh0dHA6Ly9wcmljZWdvbmcuY29uZHVpdGFwcHMuY29tL01BTS92MS9odG1sX2NvbXAuaHRtbCIsInNjcmlwdFVybCI6bnVsbCwib3B0aW9uc0Rp[...]
Line Deleted : user_pref("CT2724407.mam_gk_appsDefaultEnabled.enc", "dHJ1ZQ==");
Line Deleted : user_pref("CT2724407.mam_gk_configuration.enc", "eyJjb25maWd1cmF0aW9uIjpbeyJpZCI6ImVUb3JvIiwiY3JpdGVyaWFzIjpbeyJjcml0ZXJpYUlkIjoiYjc1OGVmYTctNjA0Ni00ODRhLWEzNWQtYmMwYjllNTFlNTFjIiwiZG9tYWlucyI6WyIiLCI[...]
Line Deleted : user_pref("CT2724407.mam_gk_currentVersion.enc", "MS4xMC4yLjU=");
Line Deleted : user_pref("CT2724407.mam_gk_existingUsersRecoveryDone.enc", "MQ==");
Line Deleted : user_pref("CT2724407.mam_gk_first_time.enc", "MQ==");
Line Deleted : user_pref("CT2724407.mam_gk_installer_preapproved.enc", "VFJVRQ==");
Line Deleted : user_pref("CT2724407.mam_gk_lastLoginTime.enc", "MTM3NzUyNTI1MjQ2OA==");
Line Deleted : user_pref("CT2724407.mam_gk_localization.enc", "eyJnYWRnZXRDb250ZW50UG9saWN5Ijp7IlRleHQiOiJDb250ZW50IFBvbGljeSJ9LCJnYWRnZXREZXNjcmlwdGlvblByaW1hcnkiOnsiVGV4dCI6IlZhbHVlIEFwcHMgZW5yaWNoZXMgeW91ciB3ZWIg[...]
Line Deleted : user_pref("CT2724407.mam_gk_new_welcome_experience.enc", "MQ==");
Line Deleted : user_pref("CT2724407.mam_gk_pgUnloadedOnce.enc", "dHJ1ZQ==");
Line Deleted : user_pref("CT2724407.mam_gk_settings1.10.2.5.enc", "eyJTdGF0dXMiOiJzdWNjZWVkZWQiLCJEYXRhIjp7ImludGVydmFsIjoyNDAsInN0YW1wIjoiMTczXzAiLCJpc1Rlc3QiOnRydWUsIlVzZXJDb3VudHJ5Q29kZSI6IkRFIiwiaXNXZWxjb21lRXhw[...]
Line Deleted : user_pref("CT2724407.mam_gk_showWelcomeGadget.enc", "ZmFsc2U=");
Line Deleted : user_pref("CT2724407.mam_gk_userId.enc", "M2Y5ZmE5MDMtZjJlMS00OTM2LTkyNTktZDNiNmVhOTIwNjE3");
Line Deleted : user_pref("CT2724407.mam_gk_user_approval_interacted.enc", "MQ==");
Line Deleted : user_pref("CT2724407.mam_gk_welcomeDialogMode.enc", "MQ==");
Line Deleted : user_pref("CT2724407.migrateAppsAndComponents", true);
Line Deleted : user_pref("CT2724407.navigationAliasesJson", "{\"EB_SEARCH_TERM\":\"\",\"EB_MAIN_FRAME_URL\":\"about%3Asessionrestore\",\"EB_MAIN_FRAME_TITLE\":\"Restore%20Session\",\"EB_TOOLBAR_SUB_DOMAIN\":\"hxxp:/[...]
Line Deleted : user_pref("CT2724407.price-gong.isManagedApp", "true");
Line Deleted : user_pref("CT2724407.revertSettingsEnabled", "false");
Line Deleted : user_pref("CT2724407.search.searchAppId", "129248971186128164");
Line Deleted : user_pref("CT2724407.search.searchCount", "0");
Line Deleted : user_pref("CT2724407.searchFromAddressBarEnabledByUser", "false");
Line Deleted : user_pref("CT2724407.searchInNewTabEnabledByUser", "false");
Line Deleted : user_pref("CT2724407.searchInNewTabEnabledInHidden", "true");
Line Deleted : user_pref("CT2724407.searchSuggestEnabledByUser", "false");
Line Deleted : user_pref("CT2724407.searchUserMode", "2");
Line Deleted : user_pref("CT2724407.selectToSearchBoxEnabled", "{\"dataType\":\"string\",\"data\":\"true\"}");
Line Deleted : user_pref("CT2724407.serviceLayer_service_login_isFirstLoginInvoked", "{\"dataType\":\"boolean\",\"data\":\"true\"}");
Line Deleted : user_pref("CT2724407.serviceLayer_service_login_loginCount", "{\"dataType\":\"number\",\"data\":\"2\"}");
Line Deleted : user_pref("CT2724407.serviceLayer_service_toolbarGrouping_activeCTID", "{\"dataType\":\"string\",\"data\":\"CT2724407\"}");
Line Deleted : user_pref("CT2724407.serviceLayer_service_toolbarGrouping_activeDownloadUrl", "{\"dataType\":\"string\",\"data\":\"hxxp://IncrediMailMediaBarDeutsch2.OurToolbar.com//xpi\"}");
Line Deleted : user_pref("CT2724407.serviceLayer_service_toolbarGrouping_activeToolbarName", "{\"dataType\":\"string\",\"data\":\"IncrediMail MediaBar Deutsch 2\"}");
Line Deleted : user_pref("CT2724407.serviceLayer_service_toolbarGrouping_invoked", "{\"dataType\":\"string\",\"data\":\"true\"}");
Line Deleted : user_pref("CT2724407.serviceLayer_service_usage_toolbarUsageCount", "{\"dataType\":\"number\",\"data\":\"2\"}");
Line Deleted : user_pref("CT2724407.serviceLayer_services_Configuration_lastUpdate", "1377525232478");
Line Deleted : user_pref("CT2724407.serviceLayer_services_appTrackingFirstTime_lastUpdate", "1377525236677");
Line Deleted : user_pref("CT2724407.serviceLayer_services_appsMetadata_lastUpdate", "1377525236638");
Line Deleted : user_pref("CT2724407.serviceLayer_services_gottenAppsContextMenu_lastUpdate", "1377525236444");
Line Deleted : user_pref("CT2724407.serviceLayer_services_login_10.16.9.506_lastUpdate", "1377525251089");
Line Deleted : user_pref("CT2724407.serviceLayer_services_otherAppsContextMenu_lastUpdate", "1377525236551");
Line Deleted : user_pref("CT2724407.serviceLayer_services_searchAPI_lastUpdate", "1377525233282");
Line Deleted : user_pref("CT2724407.serviceLayer_services_serviceMap_lastUpdate", "1377525231525");
Line Deleted : user_pref("CT2724407.serviceLayer_services_setupAPI_lastUpdate", "1377525232501");
Line Deleted : user_pref("CT2724407.serviceLayer_services_toolbarContextMenu_lastUpdate", "1377525236344");
Line Deleted : user_pref("CT2724407.serviceLayer_services_toolbarSettings_lastUpdate", "1377525233319");
Line Deleted : user_pref("CT2724407.serviceLayer_services_translation_lastUpdate", "1377525236651");
Line Deleted : user_pref("CT2724407.settingsINI", true);
Line Deleted : user_pref("CT2724407.showToolbarPermission", "false");
Line Deleted : user_pref("CT2724407.smartbar.CTID", "CT2724407");
Line Deleted : user_pref("CT2724407.smartbar.Uninstall", "0");
Line Deleted : user_pref("CT2724407.smartbar.toolbarName", "IncrediMail MediaBar Deutsch 2 ");
Line Deleted : user_pref("CT2724407.toolbarBornServerTime", "26-8-2013");
Line Deleted : user_pref("CT2724407.toolbarCurrentServerTime", "26-8-2013");
Line Deleted : user_pref("CT2724407.toolbarLoginClientTime", "Mon Aug 26 2013 15:54:11 GMT+0200");
Line Deleted : user_pref("CT2724407.userIdGenerationCounter", "1");
Line Deleted : user_pref("CT2724407_Firefox.csv", "[{\"from\":\"Abs Layer\",\"action\":\"loading toolbar\",\"time\":1377525224621,\"isWithState\":\"\",\"timeFromStart\":0,\"timeFromPrev\":0}]");
Line Deleted : user_pref("extensions.delta.admin", false);
Line Deleted : user_pref("extensions.delta.aflt", "babsst");
Line Deleted : user_pref("extensions.delta.appId", "{C26644C4-2A12-4CA6-8F2E-0EDE6CF018F3}");
Line Deleted : user_pref("extensions.delta.autoRvrt", "false");
Line Deleted : user_pref("extensions.delta.bbDpng", "26");
Line Deleted : user_pref("extensions.delta.cntry", "DE");
Line Deleted : user_pref("extensions.delta.dfltLng", "de");
Line Deleted : user_pref("extensions.delta.excTlbr", false);
Line Deleted : user_pref("extensions.delta.ffxUnstlRst", true);
Line Deleted : user_pref("extensions.delta.hdrMd5", "1873826A98E426121E8B2D16DA6B222F");
Line Deleted : user_pref("extensions.delta.id", "ecfa1191000000000000685d43298e80");
Line Deleted : user_pref("extensions.delta.instlDay", "15942");
Line Deleted : user_pref("extensions.delta.instlRef", "sst");
Line Deleted : user_pref("extensions.delta.lastVrsnTs", "1.8.24.621:55:53");
Line Deleted : user_pref("extensions.delta.newTab", false);
Line Deleted : user_pref("extensions.delta.prdct", "delta");
Line Deleted : user_pref("extensions.delta.prtnrId", "delta");
Line Deleted : user_pref("extensions.delta.rvrt", "false");
Line Deleted : user_pref("extensions.delta.sg", "azb");
Line Deleted : user_pref("extensions.delta.smplGrp", "azb");
Line Deleted : user_pref("extensions.delta.tlbrId", "base");
Line Deleted : user_pref("extensions.delta.tlbrSrchUrl", "");
Line Deleted : user_pref("extensions.delta.vrsn", "1.8.24.6");
Line Deleted : user_pref("extensions.delta.vrsnTs", "1.8.24.621:55:53");
Line Deleted : user_pref("extensions.delta.vrsni", "1.8.24.6");
Line Deleted : user_pref("extensions.delta_i.babExt", "");
Line Deleted : user_pref("extensions.delta_i.babTrack", "affID=119357&tsp=4985");
Line Deleted : user_pref("extensions.delta_i.srcExt", "ss");
Line Deleted : user_pref("extensions.enabledAddons", "ffxtlbr%40delta.com:1.5.0,%7B8A9386B4-E958-4c4c-ADF4-8F26DB3E4829%7D:2.6.12,%7Bf34c9277-6577-4dff-b2d7-7d58092f272f%7D:1.0.0.12,%7B990af1c2-5a27-4460-8149-ecc6bc[...]
Line Deleted : user_pref("extensions.installCache", "[{\"name\":\"winreg-app-global\",\"addons\":{\"64ffxtbr@TelevisionFanatic.com\":{\"descriptor\":\"C:\\\\Program Files (x86)\\\\TelevisionFanatic\\\\bar\\\\1.bin\"[...]
Line Deleted : user_pref("smartbar.machineId", "H99AERTQ2KBZK222ZN37IKEP4SRDFOMNJWEXPRI9DFI1RTZWVTF5N41A26+MPF4TCMQIJPZQEWVBLQ4RU8CQDG");
-\\ Google Chrome v28.0.1500.95
[ File : C:\Users\sony\AppData\Local\Google\Chrome\User Data\Default\preferences ]
Deleted : homepage
Deleted : urls_to_restore_on_startup
*************************
AdwCleaner[R0].txt - [29136 octets] - [26/08/2013 16:10:45]
AdwCleaner[S0].txt - [28579 octets] - [26/08/2013 16:13:32]
########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [28640 octets] ##########
FRST Logfile:
FRST Logfile: Code:
Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 26-08-2013
Ran by sony (administrator) on 26-08-2013 16:19:29
Running from D:\
Windows 7 Home Premium Service Pack 1 (X64) OS Language: German Standard
Internet Explorer Version 9
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(AMD) C:\Windows\system32\atiesrxx.exe
(AMD) C:\Windows\system32\atieclxx.exe
(Microsoft Corporation) C:\Windows\system32\WLANExt.exe
(Adobe Systems Incorporated) c:\Program Files (x86)\Adobe\Elements 10 Organizer\PhotoshopElementsFileAgent.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe
(Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
() C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe
(Skype Technologies S.A.) C:\ProgramData\Skype\Toolbars\Skype C2C Service\c2c_service.exe
(TuneUp Software) C:\Program Files (x86)\TuneUp Utilities 2013\TuneUpUtilitiesService64.exe
(Sony Corporation) C:\Program Files (x86)\Sony\VAIO Control Center\VESMgr.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe
(Sony Corporation) C:\Program Files (x86)\Sony\VAIO Control Center\VESMgrSub.exe
(Sony Corporation) C:\Program Files (x86)\Sony\VAIO Control Center\VESMgrSub.exe
(Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
(Microsoft Corporation) C:\Windows\SysWOW64\DllHost.exe
(Microsoft Corporation) C:\Windows\SysWOW64\DllHost.exe
(TuneUp Software) C:\Program Files (x86)\TuneUp Utilities 2013\TuneUpUtilitiesApp64.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Gate\VAIO Gate.exe
(Microsoft Corporation) C:\Program Files (x86)\Common Files\Microsoft Shared\Virtualization Handler\CVHSVC.EXE
(Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Intel Corporation) C:\Windows\System32\igfxtray.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Spotify Ltd) C:\Users\sony\AppData\Roaming\Spotify\spotify.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(Dolby Laboratories Inc.) C:\Program Files (x86)\Dolby Home Theater v4\pcee4.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe
(Sony Corporation) C:\Program Files (x86)\Sony\ISB Utility\ISBMgr.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\BTPlayerCtrl.exe
(Synaptics Incorporated) C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE
(Sony Corporation) C:\Program Files\Sony\VAIO Smart Network\VSNService.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Smart Network\VSNClient.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Power Management\SPMgr.exe
(Advanced Micro Devices Inc.) c:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(Google Inc.) C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbarUser_32.exe
(ATI Technologies Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(Intel Corporation) C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe
(Intel(R) Corporation) C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Care\VCPerfService.exe
(Sony of America Corporation) C:\Program Files\Sony\VAIO Care\listener.exe
(ArcSoft, Inc.) C:\Program Files (x86)\ArcSoft\Magic-i Visual Effects 2\uCamMonitor.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Power Management\SPMService.exe
(Microsoft Corporation) C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Care\VCSystemTray.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Care\VCService.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Care\VCAgent.exe
(Microsoft Corporation) C:\Windows\System32\vds.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Update Common\VUAgent.exe
(Sony Corporation) C:\Program Files\Sony\VAIO Care\VCAdmin.exe
==================== Registry (Whitelisted) ==================
HKLM\...\Run: [RtHDVBg_Dolby] - C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1158248 2012-02-27] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg] - C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1158248 2012-02-27] (Realtek Semiconductor)
HKLM\...\Run: [BTMTrayAgent] - C:\Program Files (x86)\Intel\Bluetooth\btmshell.dll [11406608 2011-12-19] (Intel Corporation)
HKLM\...\Run: [SynTPEnh] - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2870032 2012-02-24] (Synaptics Incorporated)
HKLM\...\Run: [AdobeAAMUpdater-1.0] - C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [499608 2011-06-16] (Adobe Systems Incorporated)
HKCU\...\Run: [Spotify] - C:\Users\sony\AppData\Roaming\Spotify\Spotify.exe [4640768 2013-07-16] (Spotify Ltd)
HKLM-x32\...\Run: [IAStorIcon] - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [284440 2011-11-29] (Intel Corporation)
HKLM-x32\...\Run: [Dolby Home Theater v4] - C:\Program Files (x86)\Dolby Home Theater v4\pcee4.exe [500736 2011-05-02] (Dolby Laboratories Inc.)
HKLM-x32\...\Run: [USB3MON] - C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [291608 2012-02-23] (Intel Corporation)
HKLM-x32\...\Run: [StartCCC] - c:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [343168 2012-02-03] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [ISBMgr.exe] - C:\Program Files (x86)\Sony\ISB Utility\ISBMgr.exe [60552 2011-09-20] (Sony Corporation)
AppInit_DLLs: [0 ] ()
AppInit_DLLs-x32: [0 ] ()
==================== Internet (Whitelisted) ====================
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.de/
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://vaioportal.sony.eu
HKCU\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = hxxp://sony.msn.com
StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe
SearchScopes: HKLM-x32 - {a5b9c0f5-5616-47cd-a95f-e43b488faccf} URL = hxxp://search.mywebsearch.com/mywebsearch/GGmain.jhtml?id=XPxdm049YYde&ptnrS=XPxdm049YYde&si=9175&ptb=A9CB814C-0504-463F-B397-9A4AE79F475A&psa=&ind=2012091015&st=sb&n=77ee1287&searchfor={searchTerms}
SearchScopes: HKCU - DefaultScope {2D6CBDC2-617D-4EFF-9217-D68D7D329818} URL = hxxp://websearch.ask.com/redirect?client=ie&tb=AVR-3&o=APN10395&src=kw&q={searchTerms}&locale=&apn_ptnrs=%5EABT&apn_dtid=%5EYYYYYY%5EYY%5EDE&apn_uid=dabde071-bbf3-4083-a6f5-759bd3760ba2&apn_sauid=11C7D574-7FB2-42AB-9CAA-C78E45B30CBA
SearchScopes: HKCU - {2D6CBDC2-617D-4EFF-9217-D68D7D329818} URL = hxxp://websearch.ask.com/redirect?client=ie&tb=AVR-3&o=APN10395&src=kw&q={searchTerms}&locale=&apn_ptnrs=%5EABT&apn_dtid=%5EYYYYYY%5EYY%5EDE&apn_uid=dabde071-bbf3-4083-a6f5-759bd3760ba2&apn_sauid=11C7D574-7FB2-42AB-9CAA-C78E45B30CBA
SearchScopes: HKCU - {483830EE-A4CD-4b71-B0A3-3D82E62A6909} URL =
SearchScopes: HKCU - {a5b9c0f5-5616-47cd-a95f-e43b488faccf} URL = hxxp://search.mywebsearch.com/mywebsearch/GGmain.jhtml?id=XPxdm049YYde&ptnrS=XPxdm049YYde&si=9175&ptb=A9CB814C-0504-463F-B397-9A4AE79F475A&psa=&ind=2012091015&st=sb&n=77ee1287&searchfor={searchTerms}
SearchScopes: HKCU - {CBD07A41-032D-4A85-A2E5-4A25430D9E86} URL = hxxp://rover.ebay.com/rover/1/707-37276-16609-27/4?mpre=hxxp://shop.ebay.de/?oemInLn=ieSrch-Q212&_nkw={searchTerms}
BHO: Windows Live ID Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
BHO-x32: Adobe PDF Link Helper - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - c:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
BHO-x32: Windows Live ID-Anmelde-Hilfsprogramm - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
BHO-x32: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
BHO-x32: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll (Oracle Corporation)
Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
Toolbar: HKLM-x32 - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll (Google Inc.)
Toolbar: HKCU - Google Toolbar - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll (Google Inc.)
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Skype Technologies S.A.)
Handler-x32: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll (Skype Technologies S.A.)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 192.168.2.1
FireFox:
========
FF ProfilePath: C:\Users\sony\AppData\Roaming\Mozilla\Firefox\Profiles\4duij5nf.default
FF Homepage: user_pref("browser.startup.homepage", );
FF Plugin: @adobe.com/FlashPlayer - C:\Windows\system32\Macromed\Flash\NPSWF64_11_8_800_94.dll ()
FF Plugin: @java.com/JavaPlugin - C:\Program Files\Java\jre7\bin\new_plugin\npjp2.dll (Oracle Corporation)
FF Plugin: @microsoft.com/GENUINE - disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files\Microsoft Silverlight\5.1.20513.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer - C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_11_8_800_94.dll ()
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.0.59 - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
FF Plugin-x32: @java.com/JavaPlugin - C:\Program Files (x86)\Java\jre7\bin\new_plugin\npjp2.dll (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE - disabled No File
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 - C:\Program Files (x86)\Microsoft Silverlight\5.1.20513.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 - C:\PROGRA~2\MICROS~2\Office14\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3538.0513 - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @SonyCreativeSoftware.com/Media Go,version=1.0 - C:\Program Files (x86)\Sony\Media Go\npmediago.dll (Sony Network Entertainment International LLC)
FF Plugin-x32: @TelevisionFanatic.com/Plugin - C:\Program Files (x86)\TelevisionFanatic\bar\1.bin\NP64Stub.dll No File
FF Plugin-x32: @tools.google.com/Google Update;version=3 - C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 - C:\Program Files (x86)\Google\Update\1.3.21.153\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 - C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\1\NP_wtapp.dll ()
FF Extension: Default - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
FF HKLM-x32\...\Firefox\Extensions: [64ffxtbr@TelevisionFanatic.com] C:\Program Files (x86)\TelevisionFanatic\bar\1.bin
Chrome:
=======
CHR HomePage: hxxp://www.google.com
CHR RestoreOnStartup: "hxxp://www.google.com"
==================== Services (Whitelisted) =================
S3 ACDaemon; C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe [113152 2010-03-18] (ArcSoft Inc.)
R2 AdobeActiveFileMonitor10.0; c:\Program Files (x86)\Adobe\Elements 10 Organizer\PhotoshopElementsFileAgent.exe [169624 2011-09-14] (Adobe Systems Incorporated)
R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [128280 2012-02-23] ()
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [161560 2012-02-23] (Intel Corporation)
S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [273168 2011-12-08] ()
R2 SampleCollector; C:\Program Files\Sony\VAIO Care\VCPerfService.exe [260768 2011-11-30] (Sony Corporation)
R2 TuneUp.UtilitiesSvc; C:\Program Files (x86)\TuneUp Utilities 2013\TuneUpUtilitiesService64.exe [2401632 2012-11-29] (TuneUp Software)
R2 uCamMonitor; C:\Program Files (x86)\ArcSoft\Magic-i Visual Effects 2\uCamMonitor.exe [105024 2011-02-23] (ArcSoft, Inc.)
S3 VCFw; C:\Program Files (x86)\Common Files\Sony Shared\VAIO Content Folder Watcher\VCFw.exe [960160 2011-12-29] (Sony Corporation)
R2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [594704 2011-12-08] (Intel® Corporation)
==================== Drivers (Whitelisted) ====================
R0 amdkmpfd; C:\Windows\System32\DRIVERS\amdkmpfd.sys [31872 2012-03-19] (Advanced Micro Devices, Inc.)
R3 ArcSoftKsUFilter; C:\Windows\System32\DRIVERS\ArcSoftKsUFilter.sys [19968 2009-05-26] (ArcSoft, Inc.)
S3 libusb0; C:\Windows\System32\DRIVERS\libusb0.sys [44480 2011-05-17] (hxxp://libusb-win32.sourceforge.net)
R2 rimssne; C:\Windows\System32\DRIVERS\rimssne64.sys [102912 2012-02-24] (REDC)
R2 risdsnxc; C:\Windows\System32\DRIVERS\risdsnxc64.sys [104448 2012-02-23] (REDC)
R3 TuneUpUtilitiesDrv; C:\Program Files (x86)\TuneUp Utilities 2013\TuneUpUtilitiesDriver64.sys [11880 2012-11-16] (TuneUp Software)
==================== NetSvcs (Whitelisted) ===================
==================== One Month Created Files and Folders ========
2013-08-26 16:10 - 2013-08-26 16:13 - 00000000 ____D C:\AdwCleaner
2013-08-26 16:10 - 2013-08-26 16:10 - 00994642 _____ C:\Users\sony\Desktop\adwcleaner.exe
2013-08-26 13:33 - 2013-08-26 13:33 - 00000000 ____D C:\FRST
2013-08-25 22:26 - 2013-08-25 22:26 - 00279592 _____ C:\Windows\Minidump\082513-26754-01.dmp
2013-08-25 22:11 - 2013-08-25 22:11 - 00000000 ____D C:\Windows\Sun
2013-08-25 21:55 - 2013-08-25 21:55 - 22404568 _____ (Mozilla) C:\Users\sony\Downloads\Firefox_Setup [1].exe
2013-08-16 23:32 - 2013-07-25 05:54 - 17830400 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2013-08-16 23:32 - 2013-07-25 05:37 - 02312704 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2013-08-16 23:32 - 2013-07-25 05:35 - 10926080 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2013-08-16 23:32 - 2013-07-25 05:31 - 01346560 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2013-08-16 23:32 - 2013-07-25 05:30 - 01392128 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2013-08-16 23:32 - 2013-07-25 05:29 - 01494528 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2013-08-16 23:32 - 2013-07-25 05:29 - 00237056 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2013-08-16 23:32 - 2013-07-25 05:29 - 00086016 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2013-08-16 23:32 - 2013-07-25 05:28 - 02147840 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2013-08-16 23:32 - 2013-07-25 05:28 - 00816640 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2013-08-16 23:32 - 2013-07-25 05:28 - 00729088 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2013-08-16 23:32 - 2013-07-25 05:28 - 00599040 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2013-08-16 23:32 - 2013-07-25 05:28 - 00173056 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2013-08-16 23:32 - 2013-07-25 05:27 - 02382848 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2013-08-16 23:32 - 2013-07-25 05:27 - 00096768 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2013-08-16 23:32 - 2013-07-25 05:26 - 00248320 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2013-08-16 23:32 - 2013-07-25 04:40 - 12334080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2013-08-16 23:32 - 2013-07-25 04:32 - 01800704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2013-08-16 23:32 - 2013-07-25 04:30 - 09738752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2013-08-16 23:32 - 2013-07-25 04:26 - 01129472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2013-08-16 23:32 - 2013-07-25 04:26 - 01104384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2013-08-16 23:32 - 2013-07-25 04:25 - 01427968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2013-08-16 23:32 - 2013-07-25 04:24 - 00231936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll
2013-08-16 23:32 - 2013-07-25 04:24 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2013-08-16 23:32 - 2013-07-25 04:23 - 01796096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2013-08-16 23:32 - 2013-07-25 04:23 - 00717824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2013-08-16 23:32 - 2013-07-25 04:23 - 00607744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2013-08-16 23:32 - 2013-07-25 04:23 - 00420864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2013-08-16 23:32 - 2013-07-25 04:23 - 00142848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2013-08-16 23:32 - 2013-07-25 04:22 - 02382848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2013-08-16 23:32 - 2013-07-25 04:22 - 00176640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2013-08-16 23:32 - 2013-07-25 04:22 - 00073216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2013-08-16 20:49 - 2013-08-16 23:09 - 896131555 _____ C:\Users\sony\Desktop\abschlussfeier viideoo.mp4
2013-08-15 10:11 - 2013-07-25 11:25 - 01888768 _____ (Microsoft Corporation) C:\Windows\system32\WMVDECOD.DLL
2013-08-15 10:11 - 2013-07-25 10:57 - 01620992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMVDECOD.DLL
2013-08-15 10:11 - 2013-07-19 03:58 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
2013-08-15 10:11 - 2013-07-19 03:41 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll
2013-08-15 10:11 - 2013-07-09 08:03 - 05550528 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2013-08-15 10:11 - 2013-07-09 07:54 - 01732032 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2013-08-15 10:11 - 2013-07-09 07:53 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll
2013-08-15 10:11 - 2013-07-09 07:52 - 00224256 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll
2013-08-15 10:11 - 2013-07-09 07:51 - 01217024 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2013-08-15 10:11 - 2013-07-09 07:46 - 01472512 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll
2013-08-15 10:11 - 2013-07-09 07:46 - 00184320 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll
2013-08-15 10:11 - 2013-07-09 07:46 - 00139776 _____ (Microsoft Corporation) C:\Windows\system32\cryptnet.dll
2013-08-15 10:11 - 2013-07-09 07:03 - 03968960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2013-08-15 10:11 - 2013-07-09 07:03 - 03913664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2013-08-15 10:11 - 2013-07-09 06:53 - 01292192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2013-08-15 10:11 - 2013-07-09 06:52 - 00663552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
2013-08-15 10:11 - 2013-07-09 06:52 - 00175104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll
2013-08-15 10:11 - 2013-07-09 06:52 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll
2013-08-15 10:11 - 2013-07-09 06:46 - 01166848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll
2013-08-15 10:11 - 2013-07-09 06:46 - 00140288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptsvc.dll
2013-08-15 10:11 - 2013-07-09 06:46 - 00103936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptnet.dll
2013-08-15 10:11 - 2013-07-09 04:49 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe
2013-08-15 10:11 - 2013-07-09 04:49 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll
2013-08-15 10:11 - 2013-07-09 04:49 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe
2013-08-15 10:11 - 2013-07-09 04:49 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe
2013-08-15 10:11 - 2013-07-06 08:03 - 01910208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2013-08-15 10:11 - 2013-06-15 06:32 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tssecsrv.sys
2013-08-02 21:25 - 2013-08-02 21:37 - 88855004 _____ C:\Users\sony\Desktop\Abschlussfeier Video.partial
2013-07-29 16:09 - 2013-07-29 16:17 - 188328214 _____ C:\Users\sony\Desktop\Te dua gjith jeten.wmv
2013-07-29 14:58 - 2013-07-29 14:58 - 00003584 _____ C:\Users\sony\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2013-07-29 14:57 - 2013-07-29 14:57 - 00001069 _____ C:\Users\Public\Desktop\Windows Movie Maker.lnk
2013-07-29 14:57 - 2013-07-29 14:57 - 00000000 ____D C:\Program Files (x86)\Windows Movie Maker
2013-07-29 14:57 - 2008-06-27 10:49 - 00518064 _____ (Codejock Software) C:\Windows\SysWOW64\framework.ocx
2013-07-29 14:19 - 2013-07-29 14:19 - 00000000 ____D C:\Users\sony\AppData\Local\{F574D187-6ADD-4E3B-A449-8ABAA6D1C2E6}
2013-07-28 16:11 - 2013-07-29 22:42 - 00000000 ____D C:\Users\sony\Desktop\Türkei 2013 mit Schatz
==================== One Month Modified Files and Folders =======
2013-08-26 16:18 - 2012-04-26 10:24 - 01290677 _____ C:\Windows\WindowsUpdate.log
2013-08-26 16:15 - 2013-07-16 23:44 - 00001102 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2013-08-26 16:14 - 2009-07-14 07:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2013-08-26 16:14 - 2009-07-14 06:51 - 00070787 _____ C:\Windows\setupact.log
2013-08-26 16:14 - 2009-07-14 06:45 - 00021200 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2013-08-26 16:14 - 2009-07-14 06:45 - 00021200 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2013-08-26 16:13 - 2013-08-26 16:10 - 00000000 ____D C:\AdwCleaner
2013-08-26 16:13 - 2012-09-25 12:12 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2013-08-26 16:10 - 2013-08-26 16:10 - 00994642 _____ C:\Users\sony\Desktop\adwcleaner.exe
2013-08-26 16:05 - 2010-11-21 05:47 - 00169608 _____ C:\Windows\PFRO.log
2013-08-26 16:02 - 2013-07-16 23:44 - 00001106 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2013-08-26 15:42 - 2012-04-26 11:18 - 01377754 _____ C:\Windows\system32\perfh007.dat
2013-08-26 15:42 - 2012-04-26 11:18 - 00366184 _____ C:\Windows\system32\perfc007.dat
2013-08-26 15:42 - 2009-07-14 07:13 - 00006476 _____ C:\Windows\system32\PerfStringBackup.INI
2013-08-26 15:41 - 2012-04-26 11:20 - 00000884 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2013-08-26 13:33 - 2013-08-26 13:33 - 00000000 ____D C:\FRST
2013-08-25 22:26 - 2013-08-25 22:26 - 00279592 _____ C:\Windows\Minidump\082513-26754-01.dmp
2013-08-25 22:26 - 2012-10-10 14:16 - 410141184 _____ C:\Windows\MEMORY.DMP
2013-08-25 22:26 - 2012-10-10 14:16 - 00000000 ____D C:\Windows\Minidump
2013-08-25 22:14 - 2012-09-26 19:25 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2013-08-25 22:11 - 2013-08-25 22:11 - 00000000 ____D C:\Windows\Sun
2013-08-25 21:55 - 2013-08-25 21:55 - 22404568 _____ (Mozilla) C:\Users\sony\Downloads\Firefox_Setup [1].exe
2013-08-25 21:48 - 2012-07-19 18:55 - 00000000 ____D C:\Users\sony\AppData\Local\Adobe
2013-08-25 21:48 - 2012-04-26 11:20 - 00692104 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2013-08-25 21:48 - 2012-04-26 11:20 - 00071048 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2013-08-25 21:48 - 2012-04-26 11:20 - 00003822 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2013-08-21 11:20 - 2013-04-29 16:35 - 00000000 ____D C:\Users\sony\AppData\Local\Spotify
2013-08-16 23:09 - 2013-08-16 20:49 - 896131555 _____ C:\Users\sony\Desktop\abschlussfeier viideoo.mp4
2013-08-15 15:24 - 2013-07-17 11:49 - 00000000 ____D C:\Users\sony\Desktop\Schatz & ich
2013-08-15 15:23 - 2012-08-22 20:57 - 00000000 ____D C:\Users\sony\Documents\Meine empfangenen Dateien
2013-08-15 10:01 - 2012-08-15 13:24 - 00000000 ____D C:\ProgramData\Avira
2013-08-13 20:04 - 2013-07-17 11:48 - 00000000 ____D C:\Users\sony\Desktop\Bilder von früher
2013-08-13 18:52 - 2012-08-13 18:36 - 00000000 ____D C:\Users\sony\AppData\Roaming\PhotoScape
2013-08-13 18:51 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\registration
2013-08-13 18:46 - 2013-06-24 13:47 - 00012288 ____H C:\Users\sony\Documents\photothumb.db
2013-08-13 17:53 - 2012-07-19 18:53 - 00000000 ____D C:\Users\sony
2013-08-02 21:37 - 2013-08-02 21:25 - 88855004 _____ C:\Users\sony\Desktop\Abschlussfeier Video.partial
2013-07-29 22:42 - 2013-07-28 16:11 - 00000000 ____D C:\Users\sony\Desktop\Türkei 2013 mit Schatz
2013-07-29 16:17 - 2013-07-29 16:09 - 188328214 _____ C:\Users\sony\Desktop\Te dua gjith jeten.wmv
2013-07-29 14:58 - 2013-07-29 14:58 - 00003584 _____ C:\Users\sony\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2013-07-29 14:57 - 2013-07-29 14:57 - 00001069 _____ C:\Users\Public\Desktop\Windows Movie Maker.lnk
2013-07-29 14:57 - 2013-07-29 14:57 - 00000000 ____D C:\Program Files (x86)\Windows Movie Maker
2013-07-29 14:19 - 2013-07-29 14:19 - 00000000 ____D C:\Users\sony\AppData\Local\{F574D187-6ADD-4E3B-A449-8ABAA6D1C2E6}
2013-07-28 17:17 - 2013-07-17 00:16 - 00000000 ____D C:\Users\sony\AppData\Roaming\Google
Files to move or delete:
====================
C:\Users\sony\AppData\Local\Temp\AskSLib.dll
C:\Users\sony\AppData\Local\Temp\AutoRun.exe
C:\Users\sony\AppData\Local\Temp\AutoRunGUI.dll
C:\Users\sony\AppData\Local\Temp\BundleSweetIMSetup.exe
C:\Users\sony\AppData\Local\Temp\drm_dialogs.dll
C:\Users\sony\AppData\Local\Temp\drm_dyndata_7360010.dll
C:\Users\sony\AppData\Local\Temp\installhelper.dll
C:\Users\sony\AppData\Local\Temp\LyriXtmp.exe
C:\Users\sony\AppData\Local\Temp\MybabylonTB.exe
C:\Users\sony\AppData\Local\Temp\propsys.dll
C:\Users\sony\AppData\Local\Temp\Quarantine.exe
C:\Users\sony\AppData\Local\Temp\SkypeSetup.exe
C:\Users\sony\AppData\Local\Temp\SRAssetsHelper.dll
C:\Users\sony\AppData\Local\Temp\uninst1.exe
C:\Users\sony\AppData\Local\Temp\VP6Install.exe
C:\Users\sony\AppData\Local\Temp\VP6VFW.dll
C:\Users\sony\AppData\Local\Temp\nsx2372.tmp\babylon.dll
C:\Users\sony\AppData\Local\Temp\nsx2372.tmp\bprotect.exe
C:\Users\sony\AppData\Local\Temp\nsx2372.tmp\InetLoad.dll
C:\Users\sony\AppData\Local\Temp\nsx2372.tmp\installutils.dll
C:\Users\sony\AppData\Local\Temp\nsx2372.tmp\kerberos_bho.dll
C:\Users\sony\AppData\Local\Temp\nsx2372.tmp\nsis7z.dll
C:\Users\sony\AppData\Local\Temp\nsx2372.tmp\protector.dll
C:\Users\sony\AppData\Local\Temp\nsf77C0.tmp\Helper.dll
C:\Users\sony\AppData\Local\Temp\MozUpdater-1\updater.exe
C:\Users\sony\AppData\Local\Temp\MozUpdater\updater.exe
C:\Users\sony\AppData\Local\Temp\is1275519350\6305326_Setup.EXE
C:\Users\sony\AppData\Local\Temp\is1275519350\6305624_Setup.EXE
C:\Users\sony\AppData\Local\Temp\is1275519350\DeltaTB.exe
C:\Users\sony\AppData\Local\Temp\is1275519350\wajam_validate.exe
C:\Users\sony\AppData\Local\Temp\F61E1724-BAB0-7891-BE18-62E543DE752D\Setup.exe
C:\Users\sony\AppData\Local\Temp\F61E1724-BAB0-7891-BE18-62E543DE752D\sqlite3.dll
C:\Users\sony\AppData\Local\Temp\F61E1724-BAB0-7891-BE18-62E543DE752D\Latest\BrowserManagerSetup.exe
C:\Users\sony\AppData\Local\Temp\F61E1724-BAB0-7891-BE18-62E543DE752D\Latest\IECookieLow.dll
C:\Users\sony\AppData\Local\Temp\F61E1724-BAB0-7891-BE18-62E543DE752D\Latest\MyBabylonTB.exe
C:\Users\sony\AppData\Local\Temp\F61E1724-BAB0-7891-BE18-62E543DE752D\Latest\Setup.exe
C:\Users\sony\AppData\Local\Temp\F61E1724-BAB0-7891-BE18-62E543DE752D\Latest\sqlite3.dll
C:\Users\sony\AppData\Local\Temp\DA9B85D0-BAB0-7891-8B66-A16CA27AA107\BabMaint.exe
C:\Users\sony\AppData\Local\Temp\DA9B85D0-BAB0-7891-8B66-A16CA27AA107\BUSolForMontiera.dll
C:\Users\sony\AppData\Local\Temp\DA9B85D0-BAB0-7891-8B66-A16CA27AA107\BUSolution.dll
C:\Users\sony\AppData\Local\Temp\DA9B85D0-BAB0-7891-8B66-A16CA27AA107\ccp.exe
C:\Users\sony\AppData\Local\Temp\DA9B85D0-BAB0-7891-8B66-A16CA27AA107\ChromeToolbarSetup.dll
C:\Users\sony\AppData\Local\Temp\DA9B85D0-BAB0-7891-8B66-A16CA27AA107\CrxInstaller.dll
C:\Users\sony\AppData\Local\Temp\DA9B85D0-BAB0-7891-8B66-A16CA27AA107\GUninstaller.exe
C:\Users\sony\AppData\Local\Temp\DA9B85D0-BAB0-7891-8B66-A16CA27AA107\MntrDLLInstall.dll
C:\Users\sony\AppData\Local\Temp\DA9B85D0-BAB0-7891-8B66-A16CA27AA107\MyDeltaTB.exe
C:\Users\sony\AppData\Local\Temp\DA9B85D0-BAB0-7891-8B66-A16CA27AA107\NTRedirect.dll
C:\Users\sony\AppData\Local\Temp\bus49FA\BUSolution.dll
C:\Users\sony\AppData\Local\Temp\9DB7B579-BAB0-7891-86F3-30E354658CAD\Latest\BabMaint.exe
C:\Users\sony\AppData\Local\Temp\9DB7B579-BAB0-7891-86F3-30E354658CAD\Latest\BExternal.dll
C:\Users\sony\AppData\Local\Temp\9DB7B579-BAB0-7891-86F3-30E354658CAD\Latest\BUSolForMontiera.dll
C:\Users\sony\AppData\Local\Temp\9DB7B579-BAB0-7891-86F3-30E354658CAD\Latest\BUSolution.dll
C:\Users\sony\AppData\Local\Temp\9DB7B579-BAB0-7891-86F3-30E354658CAD\Latest\ccp.exe
C:\Users\sony\AppData\Local\Temp\9DB7B579-BAB0-7891-86F3-30E354658CAD\Latest\ChromeToolbarSetup.dll
C:\Users\sony\AppData\Local\Temp\9DB7B579-BAB0-7891-86F3-30E354658CAD\Latest\CrxInstaller.dll
C:\Users\sony\AppData\Local\Temp\9DB7B579-BAB0-7891-86F3-30E354658CAD\Latest\enhancedNT.dll
C:\Users\sony\AppData\Local\Temp\9DB7B579-BAB0-7891-86F3-30E354658CAD\Latest\GUninstaller.exe
C:\Users\sony\AppData\Local\Temp\9DB7B579-BAB0-7891-86F3-30E354658CAD\Latest\IEHelper.dll
C:\Users\sony\AppData\Local\Temp\9DB7B579-BAB0-7891-86F3-30E354658CAD\Latest\MntrDLLInstall.dll
C:\Users\sony\AppData\Local\Temp\9DB7B579-BAB0-7891-86F3-30E354658CAD\Latest\MyDeltaTB.exe
C:\Users\sony\AppData\Local\Temp\9DB7B579-BAB0-7891-86F3-30E354658CAD\Latest\Setup.exe
C:\Users\sony\AppData\Local\Temp\9DB7B579-BAB0-7891-86F3-30E354658CAD\Latest\sqlite3.dll
==================== Bamital & volsnap Check =================
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\wininit.exe => MD5 is legit
C:\Windows\SysWOW64\wininit.exe => MD5 is legit
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\SysWOW64\explorer.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\SysWOW64\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\SysWOW64\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\SysWOW64\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
LastRegBack: 2013-06-13 11:54
==================== End Of Log ============================ --- --- ---
--- --- --- |