Ricardo123 | 15.11.2014 07:44 | Code:
Malwarebytes Anti-Malware
www.malwarebytes.org
Update, 15.11.2014 02:17:53, SYSTEM, RICARDO-PC, Scheduler, Malware Database, 2014.11.14.10, 2014.11.15.1,
Protection, 15.11.2014 02:17:53, SYSTEM, RICARDO-PC, Protection, Refresh, Starting,
Protection, 15.11.2014 02:17:53, SYSTEM, RICARDO-PC, Protection, Malicious Website Protection, Stopping,
Protection, 15.11.2014 02:17:53, SYSTEM, RICARDO-PC, Protection, Malicious Website Protection, Stopped,
Protection, 15.11.2014 02:17:59, SYSTEM, RICARDO-PC, Protection, Refresh, Success,
Protection, 15.11.2014 02:17:59, SYSTEM, RICARDO-PC, Protection, Malicious Website Protection, Starting,
Protection, 15.11.2014 02:18:00, SYSTEM, RICARDO-PC, Protection, Malicious Website Protection, Started,
Scan, 15.11.2014 02:56:37, SYSTEM, RICARDO-PC, Manual, Start: % 1 "% 2", Dauer: % 1 min 20 Sekunden, Bedrohungs-Suchlauf, Abgeschlossen, 0 Malwareerkennung, 0-Malwareerkennung,
Update, 15.11.2014 05:06:06, SYSTEM, RICARDO-PC, Scheduler, Malware Database, 2014.11.15.1, 2014.11.15.2,
Protection, 15.11.2014 05:06:06, SYSTEM, RICARDO-PC, Protection, Refresh, Starting,
Protection, 15.11.2014 05:06:06, SYSTEM, RICARDO-PC, Protection, Malicious Website Protection, Stopping,
Protection, 15.11.2014 05:06:06, SYSTEM, RICARDO-PC, Protection, Malicious Website Protection, Stopped,
Protection, 15.11.2014 05:06:12, SYSTEM, RICARDO-PC, Protection, Refresh, Success,
Protection, 15.11.2014 05:06:12, SYSTEM, RICARDO-PC, Protection, Malicious Website Protection, Starting,
Protection, 15.11.2014 05:06:12, SYSTEM, RICARDO-PC, Protection, Malicious Website Protection, Started,
(end) Code:
Zoek.exe v5.0.0.0 Updated 14-November-2014
Tool run by Ricardo on 15.11.2014 at 7:32:23,02.
Microsoft Windows 7 Home Premium 6.1.7601 Service Pack 1 x64
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\Ricardo\Desktop\zoek.exe [Scan all users] [Script inserted]
==== System Restore Info ======================
15.11.2014 07:35:06 Zoek.exe System Restore Point Created Succesfully.
==== Deleting CLSID Registry Keys ======================
HKEY_USERS\S-1-5-21-336442205-827502387-1674173946-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{CC59E0F9-7E43-44FA-9FAA-8377850BF205} deleted successfully
HKEY_USERS\S-1-5-21-336442205-827502387-1674173946-1000\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{CC59E0F9-7E43-44FA-9FAA-8377850BF205} deleted successfully
HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{CC59E0F9-7E43-44FA-9FAA-8377850BF205} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{CC59E0F9-7E43-44FA-9FAA-8377850BF205} deleted successfully
==== Deleting CLSID Registry Values ======================
HKEY_USERS\S-1-5-21-336442205-827502387-1674173946-1000\Software\mozilla\Firefox\Extensions\{58bd07eb-0ee0-4df0-8121-dc9b693373df} deleted successfully
==== Set IE to Default ======================
Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="hxxp://go.microsoft.com/fwlink/p/?LinkId=255141"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Search Page"="hxxp://www.google.com"
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main]
"Search Page"="hxxp://www.google.com"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="hxxp://go.microsoft.com/fwlink/?LinkId=69157"
[HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main]
"Search Page"="hxxp://go.microsoft.com/fwlink/?LinkId=54896"
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Internet Explorer\Main]
"Search Page"="hxxp://go.microsoft.com/fwlink/?LinkId=54896"
[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes]
"DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
==== All HKCU SearchScopes ======================
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="hxxp://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE11SR"
==== Reset Google Chrome ======================
C:\Users\Ricardo\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully
C:\Users\Ricardo\AppData\Roaming\Opera Software\Opera Stable\Preferences was reset successfully
C:\Users\Administrator\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully
C:\Users\fbwuser\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully
C:\Users\Gast\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully
C:\Users\Papa\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully
C:\Users\Ricardo\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully
C:\Windows\sysWoW64\config\systemprofile\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully
C:\Users\Ricardo\AppData\Roaming\Opera Software\Opera Stable\Web Data was reset successfully
==== Reset IE Proxy ======================
Value(s) before fix:
"ProxyEnable"=dword:00000000
Value(s) after fix:
"ProxyEnable"=dword:00000000
==== C:\zoek_backup content ======================
C:\zoek_backup (files=0 folders=0 0 bytes)
==== EOF on 15.11.2014 at 7:36:36,47 ======================
FRST Additions Logfile: Code:
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 13-11-2014 02
Ran by Ricardo at 2014-11-15 07:43:02
Running from C:\Users\Ricardo\Desktop
Boot Mode: Normal
==========================================================
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
==================== Installed Programs ======================
(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
„Windows Live Essentials“ (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
„Windows Live Mail“ (x32 Version: 15.4.3502.0922 - „Microsoft Corporation“) Hidden
„Windows Live Messenger“ (x32 Version: 15.4.3502.0922 - „Microsoft Corporation“) Hidden
„Windows Live“ fotogalerija (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
1&1 Mobile WLAN-Router (HKLM-x32\...\{A9E5EDA7-2E6C-49E7-924B-A32B89C24A04}) (Version: 1.0.0.1 - ZTE Corporation)
Adobe Flash Player 15 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 15.0.0.223 - Adobe Systems Incorporated)
Adobe Flash Player 15 Plugin (HKLM-x32\...\Adobe Flash Player Plugin) (Version: 15.0.0.223 - Adobe Systems Incorporated)
Adobe Reader 9.5.5 - Deutsch (HKLM-x32\...\{AC76BA86-7AD7-1031-7B44-A95000000001}) (Version: 9.5.5 - Adobe Systems Incorporated)
Aeria Ignite (HKLM-x32\...\Aeria Ignite 1.13.3296) (Version: 1.13.3296 - Aeria Games & Entertainment)
Aeria Ignite (HKLM-x32\...\Aeria Ignite) (Version: 1.13.3296 - Aeria Games & Entertainment)
Aeria Ignite (x32 Version: 1.13.3296 - Aeria Games & Entertainment) Hidden
Agatha Christie - Death on the Nile (x32 Version: 2.2.0.82 - WildTangent) Hidden
AION Free-to-Play (HKLM-x32\...\{82E73E8D-E1E7-45A4-A311-6D31492AA913}_is1) (Version: - Gameforge)
AION Free-To-Play (HKLM-x32\...\InstallShield_{6A9EF6CF-7630-4E33-AE22-7D70F3AF4B05}) (Version: 2.70.0000 - Gameforge)
AION Free-To-Play (x32 Version: 2.70.0000 - Gameforge) Hidden
ALDI TALK Verbindungsassistent (HKLM-x32\...\ALDITALKVerbindungsassistent) (Version: ALDI TALK 4.0 - ALDI TALK Verbindungsassistent)
AntiBrowserSpy (HKLM-x32\...\{F78B5B4F-075A-4C81-AA27-E707861EB5B7}_is1) (Version: 143 - Abelssoft)
APB Reloaded (HKLM-x32\...\Steam App 113400) (Version: - )
Atheros Client Installation Program (HKLM-x32\...\{28006915-2739-4EBE-B5E8-49B25D32EB33}) (Version: 9.0 - Atheros)
BatteryLifeExtender (HKLM-x32\...\{FFD0E594-823B-4E2B-B680-720B3C852588}) (Version: 1.0.11 - Samsung)
Bejeweled 2 Deluxe (x32 Version: 2.2.0.95 - WildTangent) Hidden
Bing Bar (HKLM-x32\...\{3365E735-48A6-4194-9988-CE59AC5AE503}) (Version: 7.3.132.0 - Microsoft Corporation)
Black & White® 2 (HKLM-x32\...\{D9E52CD1-9DF1-4A8A-9BDC-1E5E53982F2B}) (Version: 1.00.0000 - Lionhead Studios)
Black Metin2 (HKLM-x32\...\Black Metin2) (Version: 1.0.0 - Black Network)
Black Metin2 (x32 Version: 1.0.0 - Black Network) Hidden
Build-a-lot (x32 Version: 2.2.0.82 - WildTangent) Hidden
Camtasia Studio 7 (HKLM-x32\...\{DE042823-C359-4B87-B66B-308057E8B6AF}) (Version: 7.0.1 - TechSmith Corporation)
Chuzzle Deluxe (x32 Version: 2.2.0.82 - WildTangent) Hidden
CyberLink Media Suite (HKLM-x32\...\InstallShield_{1FBF6C24-C1FD-4101-A42B-0C564F9E8E79}) (Version: 8.0.2227 - CyberLink Corp.)
CyberLink Media+ Player10 (HKLM-x32\...\InstallShield_{34FBC7C4-CD31-4D93-A428-0E524EAC4586}) (Version: 10.0.1110.00 - CyberLink Corp.)
CyberLink MediaShow (HKLM-x32\...\InstallShield_{80E158EA-7181-40FE-A701-301CE6BE64AB}) (Version: 5.0.1130a - CyberLink Corp.)
CyberLink Power2Go (HKLM-x32\...\InstallShield_{40BF1E83-20EB-11D8-97C5-0009C5020658}) (Version: 6.1.3802 - CyberLink Corp.)
CyberLink PowerDirector (HKLM-x32\...\InstallShield_{CB099890-1D5F-11D5-9EA9-0050BAE317E1}) (Version: 8.0.3306 - CyberLink Corp.)
CyberLink YouCam (HKLM-x32\...\InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}) (Version: 3.1.3509 - CyberLink Corp.)
D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden
Diner Dash 2 Restaurant Rescue (x32 Version: 2.2.0.82 - WildTangent) Hidden
DriverToolkit version 8.4.0.0 (HKLM-x32\...\{D66BF89F-B0A2-48F5-A2E4-242EB645AB76}_is1) (Version: 8.4.0.0 - Megaify Software)
Easy Content Share (HKLM-x32\...\{2DDC70C1-C77A-4D08-89D2-9AB648504533}) (Version: 1.0 - Samsung Electronics Co., LTD)
Easy Display Manager (HKLM-x32\...\{17283B95-21A8-4996-97DA-547A48DB266F}) (Version: 3.2 - Samsung Electronics Co., Ltd.)
Easy Migration (HKLM-x32\...\{AD86049C-3D9C-43E1-BE73-643F57D83D50}) (Version: 1.0.0.5 - Samsung Electronics Co., Ltd.)
Easy Network Manager (HKLM-x32\...\{8732818E-CA78-4ACB-B077-22311BF4C0E4}) (Version: 4.4.7 - Samsung)
Easy SpeedUp Manager (HKLM-x32\...\{EF367AA4-070B-493C-9575-85BE59D789C9}) (Version: 2.1.1.1 - Samsung Electronics Co.,Ltd.)
EasyBatteryManager (HKLM-x32\...\{4A331D24-A9E8-484F-835E-1BA7B139689C}) (Version: 4.0.0.4 - Samsung)
EasyFileShare (HKLM-x32\...\{16880765-677F-440B-B16A-BFD9B9C00012}) (Version: 1.0.12 - Samsung)
Farm Frenzy (x32 Version: 2.2.0.82 - WildTangent) Hidden
Fast Start (HKLM-x32\...\{77F45ECD-FAFC-45A8-8896-CFFB139DAAA3}) (Version: 2.2.0.1 - SAMSUNG)
FL Studio 11 (HKLM-x32\...\FL Studio 11) (Version: - Image-Line)
FlowStone FL 3.0 (HKLM-x32\...\FlowStone) (Version: - )
Fotogalerija Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Fraps (HKLM-x32\...\Fraps) (Version: - )
Free YouTube to MP3 Converter version 3.12.0.128 (HKLM-x32\...\Free YouTube to MP3 Converter_is1) (Version: 3.12.0.128 - DVDVideoSoft Ltd.)
Galeria de Fotografias do Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Galería fotográfica de Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Galeria fotografii usługi Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Galerie de photos Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Galerie foto Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Gameforge Live 2.0.4 (HKLM-x32\...\{9C98989A-3A15-42DA-A3B9-D20331437D67}}_is1) (Version: 2.0.4 - Gameforge)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 37.0.2062.120 - Google Inc.)
Google Update Helper (x32 Version: 1.3.24.15 - Google Inc.) Hidden
HP Officejet 6500 E710n-z - Grundlegende Software für das Gerät (HKLM\...\{56F91CE8-0168-4619-8FEC-13F5087E40F8}) (Version: 28.0.1315.0 - Hewlett-Packard Co.)
HP Officejet 6500 E710n-z Hilfe (HKLM-x32\...\{130E5108-547F-4482-91EE-F45C784E08C7}) (Version: 140.0.2.2 - Hewlett Packard)
I.R.I.S. OCR (HKLM-x32\...\{CA6BCA2F-EDEB-408F-850B-31404BE16A61}) (Version: 12.3.4.0 - HP)
Insaniquarium Deluxe (x32 Version: 2.2.0.82 - WildTangent) Hidden
Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 7.0.0.1144 - Intel Corporation)
Intel(R) PROSet/Wireless WiFi Software (HKLM\...\{1927E640-A2C6-4BA7-8F43-FFD2AE3DFCF3}) (Version: 14.0.2000 - Intel Corporation)
Intel(R) Rapid Storage Technology (HKLM-x32\...\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: 10.0.0.1046 - Intel Corporation)
IObit Uninstaller (HKLM-x32\...\IObitUninstall) (Version: 3.2.9.10 - IObit)
Java 7 Update 11 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F86417011FF}) (Version: 7.0.110 - Oracle)
Java 7 Update 67 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F03217067FF}) (Version: 7.0.670 - Oracle)
Java 8 Update 25 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218025F0}) (Version: 8.0.250 - Oracle Corporation)
Java SE Development Kit 7 Update 11 (HKLM-x32\...\{32A3A4F4-B792-11D6-A78A-00B0D0170110}) (Version: 1.7.0.110 - Oracle)
John Deere Drive Green (x32 Version: 2.2.0.82 - WildTangent) Hidden
Junk Mail filter update (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Kaspersky Security Suite CBE 12 (HKLM-x32\...\InstallWIX_{45E557D6-2271-4F13-8101-C620B4285AB0}) (Version: 12.0.0.374 - Kaspersky Lab)
Kaspersky Security Suite CBE 12 (x32 Version: 12.0.0.374 - Kaspersky Lab) Hidden
League of Legends (HKLM-x32\...\League of Legends 3.0.1) (Version: 3.0.1 - Riot Games )
League of Legends (x32 Version: 3.0.1 - Riot Games ) Hidden
LogMeIn Hamachi (HKLM-x32\...\LogMeIn Hamachi) (Version: 2.2.0.236 - LogMeIn, Inc.)
LogMeIn Hamachi (x32 Version: 2.2.0.236 - LogMeIn, Inc.) Hidden
Malwarebytes Anti-Malware Version 2.0.3.1025 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.3.1025 - Malwarebytes Corporation)
Mesh Runtime (x32 Version: 15.4.5722.2 - Microsoft Corporation) Hidden
Microsoft .NET Framework 4.5.1 (Deutsch) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1031) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft ASP.NET MVC 4 Runtime (HKLM-x32\...\{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}) (Version: 4.0.40804.0 - Microsoft Corporation)
Microsoft Office 2010 (HKLM-x32\...\{95140000-0070-0000-0000-0000000FF1CE}) (Version: 14.0.4763.1000 - Microsoft Corporation)
Microsoft Office Klick-und-Los 2010 (HKLM-x32\...\Office14.Click2Run) (Version: 14.0.4763.1000 - Microsoft Corporation)
Microsoft Office Starter 2010 - Deutsch (HKLM-x32\...\{90140011-0066-0407-0000-0000000FF1CE}) (Version: 14.0.4763.1000 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Virtual PC 2007 (HKLM\...\{8A7CAA24-7B23-410B-A7C3-F994B0944160}) (Version: 6.0.156.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{09298F26-A95C-31E2-9D95-2C60F586F075}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Movie Color Enhancer (HKLM-x32\...\{7F6F62F0-7884-4CFB-B86C-597A4A6D9C4D}) (Version: 1.0 - Samsung Electronics Co., Ltd.)
MTA:SA v1.3.5 (HKLM-x32\...\MTA:SA 1.3) (Version: v1.3.5 - Multi Theft Auto)
Norton Online Backup (HKLM-x32\...\{40A66DF6-22D3-44B5-A7D3-83B118A2C0DC}) (Version: 2.1.17869 - Symantec Corporation)
NVIDIA GeForce Experience 2.1.2 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.1.2 - NVIDIA Corporation)
NVIDIA Grafiktreiber 332.21 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 332.21 - NVIDIA Corporation)
NVIDIA HD-Audiotreiber 1.3.30.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.30.1 - NVIDIA Corporation)
NVIDIA PhysX-Systemsoftware 9.13.0725 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.13.0725 - NVIDIA Corporation)
Opera 12.17 (HKLM-x32\...\Opera 12.17.1863) (Version: 12.17.1863 - Opera Software ASA)
Opera Stable 24.0.1558.64 (HKLM-x32\...\Opera 24.0.1558.64) (Version: 24.0.1558.64 - Opera Software ASA)
Paint.NET v3.5.10 (HKLM\...\{529125EF-E3AC-4B74-97E6-F688A7C0F1C0}) (Version: 3.60.0 - dotPDN LLC)
Pando Media Booster (HKLM-x32\...\{980A182F-E0A2-4A40-94C1-AE0C1235902E}) (Version: 2.6.0.8 - Pando Networks Inc.)
Peggle (x32 Version: 2.2.0.82 - WildTangent) Hidden
Penguins! (x32 Version: 2.2.0.82 - WildTangent) Hidden
PhoneShare (HKLM-x32\...\{3F50512F-53DF-46B1-8CCB-6C7E638CADD6}) (Version: 9.1.4 - Samsung)
Plants vs. Zombies (x32 Version: 2.2.0.82 - WildTangent) Hidden
Poczta usługi Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Podstawowe programy Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Polar Golfer (x32 Version: 2.2.0.82 - WildTangent) Hidden
Pošta Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
PremiumSoft Navicat Premium 8.2 (HKLM-x32\...\PremiumSoft Navicat Premium 8.2_is1) (Version: - PremiumSoft CyberTech Ltd.)
PunkBuster Services (HKLM-x32\...\PunkBusterSvc) (Version: 0.993 - Even Balance, Inc.)
Raccolta foto di Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Razer Core (HKLM-x32\...\Razer Core) (Version: 1.0.1.66 - Razer Inc)
Razer Game Booster (HKLM-x32\...\{88F0F4FF-B514-4E32-9C17-CAF96D60EAFC}) (Version: 3.5.6.0 - Razer USA Ltd.)
Razer Synapse 2.0 (HKLM-x32\...\{0D78BEE2-F8FF-4498-AF1A-3FF81CED8AC6}) (Version: 1.18.15.20888 - Razer Inc.)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.40.126.2011 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6318 - Realtek Semiconductor Corp.)
S4 League (HKLM-x32\...\S4 League) (Version: - )
S4 League_EU (HKLM-x32\...\{39A22312-57BC-41E7-910F-215458D681A4}) (Version: 1.00.0000 - )
S4 League_EU (HKLM-x32\...\{E5E0EAC3-79C1-442C-9682-911964DD295D}) (Version: 1.00.0000 - )
Saints Row: The Third (HKLM-x32\...\Steam App 55230) (Version: - Volition)
Samsung AnyWeb Print (HKLM-x32\...\{318DBE01-1E6B-4243-84B0-210391FE789A}) (Version: 2.0.67.1 - Samsung Electronics Co., Ltd.)
Samsung Printer Live Update (HKLM-x32\...\Samsung Printer Live Update) (Version: - Samsung Electronics Co., Ltd.)
Samsung Recovery Solution 5 (HKLM-x32\...\{145DE957-0679-4A2A-BB5C-1D3E9808FAB2}) (Version: 5.0.1.0 - Samsung)
Samsung Support Center 1.0 (HKLM-x32\...\{F687E657-F636-44DF-8125-9FEEA2C362F5}) (Version: 1.1.38 - Samsung)
Samsung Universal Print Driver (HKLM-x32\...\Samsung Universal Print Driver) (Version: 2.02.05.00:27 - Samsung Electronics Co., Ltd.)
Samsung Universal Scan Driver (HKLM-x32\...\Samsung Universal Scan Driver) (Version: 1.2.5.0 - Samsung Electronics Co., Ltd.)
Samsung Update Plus (HKLM-x32\...\{142D8CA7-2C6F-45A7-83E3-099AAFD99133}) (Version: 3.0.0.17 - Samsung Electronics Co., Ltd.)
SHIELD Streaming (Version: 3.1.200 - NVIDIA Corporation) Hidden
SHIELD Wireless Controller Driver (Version: 16.13.42 - NVIDIA Corporation) Hidden
Sirius MT2 Version 20.13 (HKLM-x32\...\{831D4B74-7A92-4363-869D-524876C480B1}_is1) (Version: 20.13 - Sirius MT2)
SISShortcut (HKLM-x32\...\{FDAE128F-A355-42B1-8422-1AF3ACEE34F4}) (Version: 1.00.000 - Samsung)
Skype Click to Call (HKLM-x32\...\{B6CF2967-C81E-40C0-9815-C05774FEF120}) (Version: 5.6.8442 - Skype Technologies S.A.)
Skype™ 6.18 (HKLM-x32\...\{7A3C7E05-EE37-47D6-99E1-2EB05A3DA3F7}) (Version: 6.18.106 - Skype Technologies S.A.)
SpeedFan (remove only) (HKLM-x32\...\SpeedFan) (Version: - )
SRS Premium Sound Control Panel (HKLM\...\{F3C66EC8-2F33-452D-9CFF-E8C886B3ECC4}) (Version: 1.11.1300 - SRS Labs, Inc.)
Steam (HKLM-x32\...\{048298C9-A4D3-490B-9FF9-AB023A9238F3}) (Version: 1.0.0.0 - Valve Corporation)
Studie zur Verbesserung von HP Officejet 6500 E710n-z Produkten (HKLM\...\{6F4652BE-D68A-40DC-9075-4017EC6CF6A9}) (Version: 28.0.1315.0 - Hewlett-Packard Co.)
The Elder Scrolls V: Skyrim (HKLM-x32\...\Steam App 72850) (Version: - Bethesda Game Studios)
Überwachungstool für die Intel® Turbo-Boost-Technik 2.0 (HKLM\...\{B77EFA0B-9BD3-4122-9F9A-15A963B5EA24}) (Version: 2.0.82.0 - Intel)
User Guide (HKLM-x32\...\{BAE68339-B0F6-4D33-9554-5A3DB2DFF5DA}) (Version: 1.0 - )
Verbindungsassistent (HKLM-x32\...\Verbindungsassistent) (Version: 2.1 - Verbindungsassistent)
WildTangent Games (HKLM-x32\...\WildTangent wildgames Master Uninstall) (Version: 1.0.1.5 - WildTangent)
WildTangent ORB Game Console (x32 Version: - WildTangent) Hidden
Windows Live 程式集 (HKLM-x32\...\WinLiveSuite) (Version: 15.4.3508.1109 - Microsoft Corporation)
WinRAR 4.10 (32-Bit) (HKLM-x32\...\WinRAR archiver) (Version: 4.10.0 - win.rar GmbH)
WordCaptureX Pro (HKLM-x32\...\{139C1D95-9037-3AB3-F5F4-4A79BF6831EC}) (Version: 4.0.0 - Deskperience)
Zuma Deluxe (x32 Version: 2.2.0.95 - WildTangent) Hidden
Συλλογή φωτογραφιών του Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Основные компоненты Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Почта Windows Live (x32 Version: 15.4.3502.0922 - Корпорация Майкрософт) Hidden
Фотоальбом Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
Фотогалерия на Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
גלריית התמונות של Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
بريد Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
معرض صور Windows Live (x32 Version: 15.4.3502.0922 - Microsoft Corporation) Hidden
==================== Custom CLSID (selected items): ==========================
(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)
CustomCLSID: HKU\S-1-5-21-336442205-827502387-1674173946-1000_Classes\CLSID\{8932AEFE-9DB6-4f43-AFB2-5682F55E773A}\InprocServer32 -> C:\Program Files (x86)\Microsoft Virtual PC\VPCShExH.DLL (Microsoft Corporation)
==================== Restore Points =========================
13-11-2014 18:17:53 Windows Update
13-11-2014 19:12:00 Windows Update
15-11-2014 02:00:12 Windows Update
15-11-2014 06:34:43 zoek.exe restore point
==================== Hosts content: ==========================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2009-07-14 03:34 - 2014-11-14 22:14 - 00000027 ____A C:\Windows\system32\Drivers\etc\hosts
127.0.0.1 localhost
==================== Scheduled Tasks (whitelisted) =============
(If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)
Task: {0061C032-2A7F-4927-AD1A-4F69ABF6BB55} - System32\Tasks\{2AE52A79-ABA7-4848-853D-234EF5CF73A9} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {02A50297-184C-4D25-9510-B723BF71D5FE} - System32\Tasks\{AD147EDD-662B-4548-8F84-1B68D52B0095} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {03FD4110-E777-4D2F-B9C5-2FF8AF785B5E} - System32\Tasks\{96251FF3-9FC2-48A4-B294-CCE2F6E3E529} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {0913110F-DE36-4B41-AD93-28026E818897} - System32\Tasks\{755F2996-937D-4949-9579-B7F2EE2A368D} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {0C7E6B1A-943C-49A4-8230-FAC8C5C037DE} - System32\Tasks\{C8E39940-5E81-40A4-B225-B6628EE6749B} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {0CA0AB1C-1222-44BF-B1E3-1349902032C1} - System32\Tasks\{5E0FFB8D-B439-4614-8743-40FB7D5B805C} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {0EAFD584-9675-4985-ADF7-BC9F45104A8A} - System32\Tasks\EasyBatteryManager => C:\Program Files (x86)\Samsung\EasyBatteryManager\EasyBatteryMgr4.exe [2010-07-20] (SAMSUNG Electronics co., LTD.)
Task: {1662CA89-59F6-41EB-9603-C50C8CDDCDA3} - System32\Tasks\{E67BBDEC-CAE1-4FA5-B713-CAACE665EB8D} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {17819325-3262-49C1-BC5E-145A4A5DC50E} - System32\Tasks\Razer_Game_Booster_AutoUpdate => C:\Program Files (x86)\Razer\Razer Game Booster\AutoUpdate.exe [2012-11-13] ()
Task: {192CF540-7E61-43A2-9A88-F1BC59FC8A93} - System32\Tasks\{D5D9AB51-6AE3-4E73-9DC4-D7C26E4CAB95} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {1A5DBD76-B681-4114-B8A7-1D7C93087FF8} - System32\Tasks\{BB77B6ED-E26D-4B0B-8EC4-3FE855C18EDE} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {1A6343C6-2D1F-431E-A30E-6BFCA2055231} - System32\Tasks\{BA6CADEC-EC7D-4ACB-8E9F-8086DC23F9CF} => C:\Program Files (x86)\Skype\Phone\Skype.exe [2014-07-24] (Skype Technologies S.A.)
Task: {1DBF35FE-6DCF-48CF-9A48-1DEF68B3B296} - System32\Tasks\{2571F0AF-7FC5-4294-8BAE-8E9A1BF35EE7} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {1EFE2732-3935-44A6-8208-F71F623B4628} - System32\Tasks\{5EA0063B-5483-4437-94C5-2068E540541E} => C:\Users\Ricardo\Desktop\esd.exe
Task: {1F48CFD7-4904-4FD2-A7DE-6289E81F11E0} - System32\Tasks\{B68A4604-F8F2-4E27-8C26-735E8D841672} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {1FEA5423-C533-42EC-898C-50B91B8129AC} - System32\Tasks\{F8187FBB-0348-4738-8583-B439EF866FDA} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {201F493E-0230-448F-A729-744C21D83F8E} - System32\Tasks\{CC036895-3C1C-4C59-BD62-8735275899D1} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {204A0950-79E9-4977-8806-0C0AC64BCDC0} - System32\Tasks\{228A33E1-854E-4AE6-BC01-C4B4A32C9E77} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {2169F4B6-36C0-43FF-9400-4F9B2C7A3920} - System32\Tasks\{4B782B80-871C-44FB-AD99-EFA0CB2EC32D} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {225DEAF4-C48B-42FD-A94F-D191AACC4CD9} - System32\Tasks\WifiManager => C:\Program Files (x86)\Samsung\Easy Display Manager\WifiManager.exe [2011-01-04] (Samsung Electronics Co., Ltd.)
Task: {2434B206-4EE5-4442-9FBA-21935FDEB35E} - System32\Tasks\{6F528AFC-0086-4C57-ADCD-9C94F5D87152} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {2761D4DD-C9BE-4B96-B1CC-F8155281C8E4} - System32\Tasks\{9B4C3B58-55D6-4685-9E23-C667DBC7A40A} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {27CFF293-5DEC-4202-90FE-30BBA2C2F322} - System32\Tasks\{1345D42B-5E33-4043-A22A-042EB4F4000E} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {28EE25D5-90C6-4887-8C61-F4303C2516B8} - System32\Tasks\{9913D78F-8E45-438D-A34E-BDDE864073F6} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {2C7AD0AB-0AF9-4C0C-9C9D-71D9FADFEFA7} - System32\Tasks\{5E45CFAF-6561-4102-B136-81984E7DDE92} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {2CAA7087-BD07-4FD1-AAAD-C05F5A97CEE3} - System32\Tasks\{752AA70D-695F-4748-9122-5DCBA1E87DAE} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {2CF5E882-1EF9-4BFE-AAA5-190279E08B79} - System32\Tasks\{9BBF281C-3294-4A59-B0AF-E900D955A3D9} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {2E5045C2-E888-4FA0-AAC9-2FADCD22E6F6} - System32\Tasks\{3C086F91-49EF-4D7F-82E8-AC7AD588C0C0} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {2EA45500-F618-4AC2-86C6-954EF3FD20C4} - System32\Tasks\{ED71482C-6541-484B-B2BC-F4705B1716E0} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {321D7A7B-F467-4E61-9905-5BA133176145} - System32\Tasks\{384357EC-4B93-4C7D-B7EA-B177FDA578ED} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {3243F74F-8E9E-4641-9085-EA6D64F22DD4} - System32\Tasks\{785D2DD9-686D-4690-9781-2C7A857B7B21} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {32C59580-8411-4434-AF66-8D29DA4AAF25} - System32\Tasks\SRS Premium Sound => C:\Program Files\SRS Labs\SRS Control Panel\srspanel_64.exe [2011-02-24] (SRS Labs, Inc.)
Task: {32CB8A1E-E986-4476-AD25-5BE99B7BC880} - System32\Tasks\{DD71F97F-F795-49EF-8843-DCB4B456A3DC} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {338C6BAE-936F-4AE5-8D04-2C0F2E0042F4} - System32\Tasks\{272EE680-61F1-4080-B21E-E35251B06F22} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {342D8A1E-72C6-4D6D-BF17-82EB24AADF9C} - System32\Tasks\{0753BC9E-5F93-49C1-AEB0-0025F8430433} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {35B29146-DC6E-4406-8EB1-35B10E6532CB} - System32\Tasks\{44582584-A9DB-41FF-8980-0C4D86284695} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {35FEFE00-D35A-4607-A72D-280474EC5B1D} - System32\Tasks\{63C66050-77D0-4CF5-865D-3D8C93D91A0D} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {374738D8-7AC9-4674-A41F-F9A3F0374CF4} - System32\Tasks\{73B867F2-77C2-447C-B39A-9188896CD67C} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {38BB6340-9BB3-475A-8197-A8B92B4BAA8B} - System32\Tasks\{667A787F-9078-4C16-9F9B-98C78197CE6F} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {397BF515-62FE-4A35-9B91-11F73790E434} - System32\Tasks\{9FC1DEB8-0A30-4BBD-BC73-570B220EDE74} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {3A091366-71E8-46FE-BBFA-56403A856CFB} - System32\Tasks\{F7EB6C99-1C22-430F-9391-EEBD6A9222D5} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {3A28D870-546D-4EF5-9FB5-154BCD509D85} - System32\Tasks\{28B3E725-5DD9-4CE8-A1F4-8CA5DF0888E9} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {3BE969F4-3E6C-40FC-AD72-5D7B2123F54E} - System32\Tasks\{EBDAD49E-2E9A-4D30-AEFF-0195BC7F35EC} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {3CF0C05C-3C29-4DC3-8A7C-C7C323BFBA96} - System32\Tasks\{48FF2788-AAB6-4627-B6EF-2E6A48941503} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {3E03996B-91C7-4931-94E4-E2824F5C6B02} - System32\Tasks\{885FB463-944B-4AD7-9050-9E8524CE297B} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {3F830B4D-83C1-40A7-925A-1C8D5CFEE934} - System32\Tasks\advSRS5 => C:\Program Files (x86)\Samsung\Samsung Recovery Solution 5\WCScheduler.exe [2011-02-14] (SEC)
Task: {3FCD06CF-C592-4896-8D3E-794D9F899CB6} - System32\Tasks\{EFAD1203-D5FA-43D5-8CD2-A579CD97126D} => C:\Program Files (x86)\Skype\Phone\Skype.exe [2014-07-24] (Skype Technologies S.A.)
Task: {41898484-F4A7-49DA-AD12-32C97369C0B6} - System32\Tasks\{D5380236-13BD-44E3-AA55-0644E077AB27} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {4284EFBE-570B-4D87-B437-FE90E5C17D9B} - System32\Tasks\{2AF65FDA-F99A-4B79-9338-B043D6FFE813} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {429977FB-6CE3-4B6A-BA55-4B583D7DD64C} - System32\Tasks\{6BFBEC2D-2AAE-4576-A402-6B9B6E282C64} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {4567135C-9FCA-4F37-9C11-3BD4878AC6D1} - System32\Tasks\{01018872-1E7F-4CA6-B943-3FE0789BD7F3} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {45E02AAC-E8E6-4CC1-BBB8-298CDDBBAF2D} - System32\Tasks\{244A07D7-D220-48F1-A6FF-89F15200F8EC} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {45F3D835-75F0-4BB2-BCE0-A0B85C07B431} - System32\Tasks\{6B3FD251-B408-45F3-819A-40DEC3894BE5} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {481E1A4E-5449-4EF3-AA9C-F37CDB870209} - System32\Tasks\{6D077D54-9406-4D87-A373-CDFA14E668D1} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {4933C315-7651-4402-98AE-E3A3866ED54A} - System32\Tasks\{6C627554-93F1-4F64-B0EA-7B886F3C0618} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {49CD0D11-4C6D-4A88-8249-0E6667392B91} - System32\Tasks\{C1064B69-A042-453C-9270-4765B8410195} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {49F5E08F-0461-4A96-BDB0-1D5CD8C84417} - System32\Tasks\{100E8371-D5BB-4FE7-89F6-088105D0AF44} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {4BB192ED-B63F-4887-BECB-3DDC9F02439C} - System32\Tasks\{B90CDCFD-FFF5-401F-9141-79C097C95FE4} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {4F94A0B4-B548-4164-AE96-18B6A020E3F5} - System32\Tasks\SmartRestarter => C:\Program Files\Samsung\SamsungFastStart\SmartRestarter.exe [2010-08-05] (Samsung Electronics Co., Ltd.)
Task: {4FC331BA-AB95-40EF-BF77-79CC6F4FAAC3} - System32\Tasks\{38BD185A-8A80-447D-B932-C25F546210B4} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {5007EFBC-15BD-4CC6-855A-6F258DA02FF1} - System32\Tasks\{5A8DF158-9F3B-4E48-A0C4-D886895179F4} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {523B8F72-9CA4-4DA1-84F9-FF0603902A70} - System32\Tasks\{C1EECE05-24B7-44D2-AE03-08CDC0908783} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {5290DD36-13FF-4A1B-961D-202F025CC87E} - System32\Tasks\{B60B8609-DB2C-41A3-B48C-69913138F76E} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {52BCA785-6C5A-4C4B-86A8-054FE02C40CC} - System32\Tasks\{6B5940E0-6551-417F-AE58-346CE921B745} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {52EA88DB-07B7-4654-B1B1-DC0A876ECFC0} - System32\Tasks\{A5B9C312-4D9D-4B66-BAEA-0802242E3B20} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {5358B480-22B3-461C-AE60-8E519DAEC351} - System32\Tasks\{F6408E23-A7BE-45D3-9D74-A85D778C8E34} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {540EE0C2-E4AA-4AC4-B6B9-26D515113B20} - System32\Tasks\{ADE856F4-1151-4CD1-AACF-4FFDB28448AD} => Iexplore.exe hxxp://ui.skype.com/ui/0/5.8.0.158/de/go/help.faq.installer?LastError=1603
Task: {5516B4D4-1418-4725-A284-7039239C5D50} - System32\Tasks\{1C404604-291D-4F7F-AE18-ABF95B6C58B1} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {576C4692-3039-4061-AA84-D94DBF302832} - System32\Tasks\{F32952EE-BA82-4184-B2AA-A06BDC854034} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {577C4FAD-A034-487D-93D7-7669EE618DE2} - System32\Tasks\{BEC31209-FF12-44D2-9136-E067DD180C5B} => C:\Users\Ricardo\Desktop\esd.exe
Task: {5AC6AB57-9DD1-4440-A632-28B30AEA4CCC} - System32\Tasks\{709DC5C2-7400-4DE6-AC21-4EAD2DCA08B1} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {5B261214-8E70-438B-A5D1-8AC8AECDC1DF} - System32\Tasks\{EBDCAB3E-20B7-4DE9-BF68-69089CDFCEE1} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {5DEBF3EB-6122-4950-8AB5-8D762D2362CB} - System32\Tasks\AntiBrowserSpy - SocialBlock - IE => C:\Program Files (x86)\AntiBrowserSpy\AntiBrowserSpy-IE-SocialBlock.exe [2014-05-05] ()
Task: {5E031CF1-CB5A-4553-9E72-6547C6CC29F0} - System32\Tasks\{BE83D9FD-02FF-4F32-BC82-85650D016B9A} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {5E3CB8FF-BF73-4986-9F58-425E668A6C67} - System32\Tasks\{252CF1C7-13F6-49A7-B4EA-C51108C4323D} => C:\Users\Ricardo\Desktop\esd.exe
Task: {5FEB597A-F7AE-4CE3-8797-AACB2E99D717} - System32\Tasks\{BD5C1E13-C4B6-4537-A7EE-F91B1058DEFF} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {5FFF49A9-4286-4C0A-BA93-235AD19BE028} - System32\Tasks\{97A83C2C-7479-45E0-BDA7-98B13BBC4D68} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {61760D74-0375-4B8F-8D60-E640D2C5BF40} - System32\Tasks\{6E7B41AB-FC81-4AFE-8B6B-EDE8F98ED09A} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {61ACC99B-FADC-430F-A13B-1A2543881EC1} - System32\Tasks\SUPBackground => C:\Program Files (x86)\Samsung\Samsung Update Plus\SUPBackground.exe [2010-08-27] (Samsung Electronics)
Task: {624648C6-DB6A-4304-A6F2-D4D55F03341B} - System32\Tasks\{03A92EAE-93A0-4B7A-B669-0AABBF84F1A2} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {639CD7C9-747B-4FA1-B1E8-3D7D6C0CFE73} - System32\Tasks\{0C21C0AE-1AC6-4BB2-9741-94A250F8424C} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {64F3BE34-5DA3-49EE-A7ED-005BD1734E31} - System32\Tasks\{8CB189B0-E585-475F-8B1E-ABAE57D908F6} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {650F04B8-A3BD-4B79-8E0C-1EF0E0D3BEC3} - System32\Tasks\{F06AF6DE-8165-4B13-9E75-580628A9FB00} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {6617D8F4-978E-4478-AC0A-683861260666} - System32\Tasks\{9B61FC43-C3DA-4EA4-83ED-F2660FDC4B57} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {6628AA89-647C-49B9-AF17-07CD91CE1D3C} - System32\Tasks\{CE10784B-3A20-4968-A674-E697D4926627} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {66B13652-B7F3-478D-99CC-FD25AAE36946} - System32\Tasks\{E23DE2A8-FBED-4DDA-927E-0C01CAF9C0AF} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {6CE5BA47-B060-480B-9F94-09AE4519FF5A} - System32\Tasks\{5B68D32C-5936-4D96-9343-E54C31D0968F} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {6DA2746D-D407-4BDA-8385-AD5B064C0720} - System32\Tasks\{FA3B68C9-6475-4FFC-92C9-655B00DFAD57} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {6E3D5FE5-21E2-47CF-84B3-AE262D7BDEBB} - System32\Tasks\{6B51D573-D0CF-440B-8E5A-F0A38BA980F5} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {6F46F2CB-2F53-41CF-9CA4-891ED3898593} - System32\Tasks\{D1C1E046-3CA7-4DA3-80A4-8F7956C2CFB7} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {6FF21057-219F-4141-AA51-0A53D063C924} - System32\Tasks\{90C388DB-63B7-429D-9E23-AA055015720A} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {70B6816B-F82E-4544-9F50-3EC85E383415} - System32\Tasks\{09BC0B24-06FA-46FF-9E8C-6152C4E304B5} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {70E9B7F5-D8C8-414B-AC8F-4D86E48E924C} - System32\Tasks\{B0615051-4F22-442B-A249-9EA84FE31ED4} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {72F83EB9-C41A-4A53-B208-219C0C0FC869} - System32\Tasks\{975C636E-A3CC-4B98-94BE-DDFC02C8E996} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {737FE75B-E6F7-41A1-8265-D3611FC73AF3} - System32\Tasks\{E1CBC6CA-90A6-4391-A6C5-E068F11D3F65} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {74053D9D-7B2B-4E1E-95EB-878BAB2B2D9C} - System32\Tasks\{4EBA4743-7B1C-46BA-8DA6-4FC6094B47F4} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {743860F6-1633-442D-BEAF-AA4A8D8477FD} - System32\Tasks\AntiBrowserSpy - SocialBlock - IEProxyCheck => C:\Program Files (x86)\AntiBrowserSpy\SocialBlock_ProxyCheck.exe [2014-05-05] ()
Task: {7716C60B-AED0-49EC-B886-D9FC89A76446} - System32\Tasks\{9A84E7CD-6498-42CD-AEC4-26AA8EA3F31E} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {77FF435F-C203-4748-81DF-F820421BFB7F} - System32\Tasks\{8EC65B2E-FEBC-4F5C-B66C-11B3750BB2D8} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {78B8EBB7-FA69-4B83-95DE-E9AFDED74A75} - System32\Tasks\{3B3E1939-BEAC-448D-934F-47D7679C9485} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {78E9FE0B-FA64-44CB-9CD8-594018048C73} - System32\Tasks\{F4285B21-E657-449F-A768-5883BF085269} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {7959212C-0B3D-435C-9556-7620F16861AB} - System32\Tasks\{974C76EA-7681-4517-9704-2638E5C8BC42} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {79DC680F-B640-4FAB-9239-3A5BC491A4D7} - System32\Tasks\Opera scheduled Autoupdate 1403370027 => C:\Program Files (x86)\Opera\launcher.exe [2014-09-25] (Opera Software)
Task: {7A2C0395-5CD9-4A48-B044-3B243995AD69} - System32\Tasks\{38A1926B-6D67-4BED-A58D-642CFA62584F} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {7A65554B-6893-4A6D-89EA-0E08E0EDD17B} - System32\Tasks\{A3C5D90F-63A5-4D3F-90C6-2B8B8450053B} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {7B1B65F7-C42A-43AD-84D1-A8292C419A59} - System32\Tasks\{9E22AB2F-41C5-49D4-B170-49558B74CE98} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {7B9A0517-5172-4B45-A8B6-D68A92946073} - System32\Tasks\{851BE782-FA9C-4A6C-BEBC-3C11EAB061E1} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {7BD1DFC5-33FF-486F-BBC1-8A3E7E11EA38} - System32\Tasks\{1EA9075A-168B-47A3-A08A-019460A224CD} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {7DBEF977-0196-451D-9223-EA0588FC11A7} - System32\Tasks\{0EAC93EA-3824-4E4B-95E4-1F27FADDF438} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {844F1B65-E3F1-4031-A605-72439FDAC9AF} - System32\Tasks\{F95A540F-94B9-4170-994B-516BB9EE8FCE} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {8696931C-4679-44C8-88FA-7AD707ED6469} - System32\Tasks\{2147DBA6-2BC3-49F0-BE7D-6CEDF62480B5} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {87D1D2F3-AB97-41E9-826C-5DD476F939BE} - System32\Tasks\{2F5F1421-E40C-4B55-9122-A7790A38B360} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {889FA0A1-B44F-4157-B707-3D1835C910A7} - System32\Tasks\{A11046F0-C17E-43D1-A764-A846A49DEC80} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {89BEC648-F457-4B07-B78E-5E6829FA86A3} - System32\Tasks\{D860BD92-8959-4215-AD2E-A7212259D8CE} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {8A1077B2-6A70-4F74-91D9-88EE226562D7} - System32\Tasks\{E3CF6CBB-F564-4653-9F08-2F6C4C5694E7} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {8ABD3ED9-2FF9-4AB5-A0C0-540796D77C0B} - System32\Tasks\{489D29CB-5A1F-4A96-A28A-90820ADA4921} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {8F9CDA63-1220-4BB3-B45A-110077BCACB9} - System32\Tasks\HPCustParticipation HP Officejet 6500 E710n-z => C:\Program Files\HP\HP Officejet 6500 E710n-z\Bin\HPCustPartic.exe [2012-10-17] (Hewlett-Packard Co.)
Task: {8FD45CDA-728E-4E30-9A8E-37A653DDC530} - System32\Tasks\{7D872822-731A-4AD8-BF99-B284BC1E8CD9} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {90B8DE2E-A050-4DD0-8BB2-514FE8676B8F} - System32\Tasks\{324D8A24-5057-4CFA-A21F-EB0939A09D19} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {90FB7001-9B8F-4F74-9A93-D389B2DDACBC} - System32\Tasks\{1EED965A-65E5-43E4-A620-E3F4CBD5AB88} => C:\Program Files (x86)\Steam\SteamApps\common\APB Reloaded\Launcher\APBLauncher.exe [2014-06-19] (K2 Network, Inc.)
Task: {91AB275D-806A-4D6B-AE63-6537DE65728D} - System32\Tasks\{5DEB2EEA-C4C6-4A16-8C7C-BA4FF9AABC2E} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {947FC9D1-D944-423D-896E-15B90815628A} - System32\Tasks\{52C677F3-38CD-4D12-AE47-A9182C744EBB} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {956C9BD8-F43C-4EFE-A3EE-6F49DD55577C} - System32\Tasks\{3306B43E-3509-4402-8E17-81255D859BB3} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {9825A645-4F87-4435-A3D4-042A5ABB0268} - System32\Tasks\{079F15AE-CBFA-4F31-B03B-1E9061C7ED2D} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {9B6A5028-7352-4211-BB24-E2C7CBF1C738} - System32\Tasks\{ADC68086-47CE-452F-8BB8-792BC49B7C67} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {9BD5E0C6-9660-4188-90C8-40718905F812} - System32\Tasks\{1843E720-7D1B-4F87-B6E8-D07839AEB1D6} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {9C471E0D-1EEA-4739-B33C-3AEE184A8523} - System32\Tasks\{9349705A-16A8-4F6C-858D-F17094D9F9B0} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {9CA0E7C7-2572-4E9F-8CE1-A827229822B6} - System32\Tasks\{A6195B94-FD4B-4AFE-89F3-7B62324D7EE7} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {9E5F18CE-EB2A-442D-86BD-635637BD292F} - System32\Tasks\{6DAAABC1-AD73-4316-B3ED-7B518A09E975} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {9E7A1367-1DF5-489F-83A0-80FD76266198} - System32\Tasks\{7D5ABD9D-1806-41E8-8C26-1A905C68661F} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {9FD8C0F8-7BC8-41DF-AA35-01F47622264C} - System32\Tasks\{1A161462-911E-40B0-A438-69BE2A49A220} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {A166B914-F76E-453C-B6EC-3F128498D9AA} - System32\Tasks\{A2562C4C-FF4D-4305-831D-5808AA07ACCA} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {A4CFC713-A3F0-48AA-A46C-90B80C54A121} - System32\Tasks\{9B39CDCE-DA4A-40D9-9852-4F482106AFE9} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {A558DA36-1A0F-4AC2-AAE7-4CA88120C629} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2014-11-14] (Adobe Systems Incorporated)
Task: {A7BC5CD0-D633-4B3C-8DDE-EAD54371CABD} - System32\Tasks\{69CF742B-60CA-4485-80D2-AC6EC777B4E3} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {A9088378-A70F-4BDF-81E3-A8EB12C0C5C0} - System32\Tasks\MovieColorEnhancer => C:\Program Files (x86)\Samsung\Movie Color Enhancer\MovieColorEnhancer.exe [2010-11-29] (Samsung Electronics Co., Ltd.)
Task: {AD0D8D97-1829-47F2-9C21-8D2C5DBEDA33} - System32\Tasks\{1B05530A-98A1-48BF-91CA-399832436116} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {AF4C9251-27D2-4096-8BEF-05AAD92DA165} - System32\Tasks\{FDE263C9-4E48-4A8E-A2A0-00A54E001FDA} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {AFD50145-953E-45F1-B15F-47FDFE36306F} - System32\Tasks\{F149D74F-23DD-474F-923F-856195A9CEA5} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {B03A3706-B97D-4AEE-8EE6-2114D3F3B5B1} - System32\Tasks\EasyDisplayMgr => C:\Program Files (x86)\Samsung\Easy Display Manager\dmhkcore.exe [2010-12-23] (Samsung Electronics Co., Ltd.)
Task: {B14D4025-EEAF-4EFA-930C-0311F41DC324} - System32\Tasks\{91BFF5E7-2F54-461A-9FDB-0245FE664E9D} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {B1C08A1F-3957-4B14-8DAA-102C20D9C45A} - System32\Tasks\{40CE772E-36AE-467E-BC1B-A5F8B657194A} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {B2990350-113E-46D5-8710-4DBD87DEF2F6} - System32\Tasks\{1A55D382-0BB5-4DAC-BCC0-F1A56BC8B0BC} => C:\Program Files (x86)\Skype\Phone\Skype.exe [2014-07-24] (Skype Technologies S.A.)
Task: {B2F3F134-1EAF-46EF-97C3-D1F744B8892D} - System32\Tasks\{8B416222-87A5-46FB-9A3A-B02611C9ACD6} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {B3442DDA-6CC7-4254-B953-7CE2652E2438} - System32\Tasks\{49F52243-BBA4-4441-BAAC-2AF9ABA8ABDC} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {B35FFAF8-E297-45F9-B2F1-FE9F6E456C96} - System32\Tasks\{19719590-F315-4F4D-BF69-95ACA3BF6592} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {B444FB4B-D034-4FDC-98E7-7E4BBC4739D2} - System32\Tasks\{FB2CB60A-E342-4A59-A5A0-05F1F05D98AE} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {B4735E4C-731C-4DE0-AC4C-D9D88AE42B2F} - System32\Tasks\{65D25C71-E80C-4F1D-AF2C-63324014D68B} => C:\Users\Ricardo\Desktop\esd.exe
Task: {B5B3ECF4-66D2-4959-A549-5DFD8E6ADFCB} - System32\Tasks\{A1E8FF80-03B2-4CE1-9853-1365FF2D2BF2} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {B6934E10-C2F8-4B5A-BF0C-04A48C11C696} - System32\Tasks\{13C88C0B-0465-41FB-9FA4-DF49539DA625} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {B9DFF191-1479-4015-9B44-75F7A9A573BF} - System32\Tasks\{8D2F81D3-13CF-46C5-A140-63825BDB9A17} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {BD36E6A8-80E9-46B1-B69F-5292FD2FADA0} - System32\Tasks\{BE100F84-AA23-4040-A09F-A282BF22CF15} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {BD3FDCAE-28A7-4F44-AC52-686815B9655D} - System32\Tasks\{EFC1DDE3-AAA7-4B79-91A1-17E2283F66BB} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {C031F398-AF43-44F6-A8F2-8BD83E6E30E4} - System32\Tasks\{D52887A3-EC5F-4AC5-A78F-202F1F5403A1} => C:\Users\Ricardo\Desktop\Metin2.Hack.exe
Task: {C1A717AF-F7F0-4AB7-BE10-69F2713BDE6F} - System32\Tasks\{728986C6-1817-4A2D-A75F-BE4EE9A5518C} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {C1F58B4D-60A2-44BE-97A4-851D09E2CA25} - System32\Tasks\{ADA00172-7C6D-4F1B-AFDE-9EE5693AABAF} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {C40EFD40-E33B-4578-857E-1C1D56126EA0} - System32\Tasks\{B8237A64-C8B3-4EA5-9F7B-A8150330EACA} => C:\Users\Ricardo\Desktop\Metin2.Hack.exe
Task: {C7E79CD5-F732-4E2A-AEB6-070334FF4B08} - System32\Tasks\{990B4B83-6ABA-4A7B-A487-FDE1A27C75B5} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {C811A27A-0441-497B-A218-BA2BC6023D72} - System32\Tasks\{A7720E44-2138-4A6B-94C9-257ACAA53A83} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {CA91DC7A-386C-4B09-B7A7-846101AE2E17} - System32\Tasks\MirageAgent => C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe [2010-11-10] (CyberLink)
Task: {CBCA3C31-B4EA-4873-9024-E5B16ADBABF2} - System32\Tasks\{26497735-8F32-4DCF-9849-78CC4DF4A8D8} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {D0E71833-3143-4436-A6CA-F1E262DF4E06} - System32\Tasks\{A826AF1F-3CE3-445C-A8AE-19C00C187B8F} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {D20A0994-2110-4B19-9E8F-6CB212E32F35} - System32\Tasks\{40BA56D8-253B-4574-A1EA-984459D9CAF5} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {D217EABB-6BFC-41D4-A14A-4CFF3B785F13} - System32\Tasks\{3865E155-0684-4A52-B5A5-FC5B2F9F641B} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {D2540B18-4D39-4BCE-84CA-1A505A3C5B33} - System32\Tasks\{DE5492D2-F403-4E88-9637-E1C793311488} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {D2DB4DAF-F92B-4C00-88DA-D159DCB48778} - System32\Tasks\{B2690C9B-098D-4EE9-8EA3-F8103D1A6DCD} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {D2E94D5D-7A46-4935-B77E-CEBD499904D9} - System32\Tasks\{E19B3180-E255-4EDA-9733-0373FC37B9C8} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {D2FD118B-80A7-41F2-B1BC-C988F1190C5E} - System32\Tasks\{B26BB5BA-7C67-4ABB-8538-F24B9F6F2F2A} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {D3CA7303-5202-4FDA-A643-07AF751C9A80} - System32\Tasks\BatteryLifeExtender => C:\Program Files (x86)\Samsung\BatteryLifeExtender\BatteryLifeExtender.exe [2010-12-18] (Samsung Electronics. Co. Ltd.)
Task: {D3CAA937-8F82-499C-A4AD-65C7D972AC66} - System32\Tasks\{39A14707-056B-4DD4-A2EF-E1EF5E8209C7} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {D4A42A1D-ED12-4B36-A9BE-F3E281A8ECE9} - System32\Tasks\{D4D0E2E8-03FB-4E97-8628-27BCE2F6B157} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {D4AC0B4B-4C0A-44CD-9017-66DC903B2AFC} - System32\Tasks\{705CBA76-FE4C-4279-B21D-16472A16DFCB} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {D4DA6BD7-34C0-4325-9273-26FC41B845EF} - System32\Tasks\{C6081D6E-F44F-4336-995E-E4052B297680} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {D4F584D0-9D0A-455D-A6B7-CA71328C0448} - System32\Tasks\{568DF633-0C19-4216-A0CD-C886ACF35C96} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {D54ED4B2-EF52-4983-AACA-B31483FCB918} - System32\Tasks\{1731772D-3BE4-4E6D-9B90-11CB7AC76322} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {D600994F-FC96-432F-A624-712785EA2735} - System32\Tasks\{9FC17F5A-24A9-414E-B346-6A7BB4ACC018} => C:\Users\Ricardo\Desktop\esd.exe
Task: {D641BC3F-5ED3-4177-AE67-040B4B06FA00} - System32\Tasks\EasySpeedUpManager => C:\Program Files (x86)\Samsung\EasySpeedUpManager\EasySpeedUpManager2.exe [2010-12-23] (Samsung Electronics)
Task: {D8E64B8D-614C-4B59-837C-082C5E5F20FB} - System32\Tasks\{6F9588B1-724A-4948-9E2B-065C119127C6} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {D953132B-E3E1-48BB-B511-8DC1B10FBE17} - System32\Tasks\{221D85D8-B181-45CD-A5E1-B530DF09FF8C} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {E26F0329-89E6-42CA-8200-B3D78100FBE4} - System32\Tasks\{179EDF6B-1276-4B4F-B812-60D184F6CFAA} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {E3639844-CD33-4080-A6FA-1CF03AD96EDB} - System32\Tasks\{B79E7D93-7C92-4C15-AD67-B7910CF154A9} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {E3D4C852-8240-4D0A-84ED-CCA667C1FBA7} - System32\Tasks\{DBA3C5D5-023D-4501-9ECE-93975E0812EF} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {E3E4B81D-D377-4658-8C56-0E19D9CE8458} - System32\Tasks\{97A2AD52-0A85-4C7F-A85B-6E5CBF1A6672} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {E415924D-1D47-48C7-A2EF-6AEE31C52211} - System32\Tasks\{A5490AD1-A438-402F-9F7E-941F5FC276C9} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {E448AFD9-EA8A-433D-AEEB-0D3BC3711F58} - System32\Tasks\{70EFC9B5-387F-419F-9D5C-B9E507A7763E} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {E4AEAB1F-787C-4902-AE1C-D0CD0AF23BF3} - System32\Tasks\{8145CF40-47B3-42E7-A6D6-D5C8CBF7C91B} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {E4F0FE86-EE2D-4B08-880A-FAEFE9446486} - System32\Tasks\SamsungSupportCenter => C:\Program Files (x86)\Samsung\Samsung Support Center\SSCKbdHk.exe [2011-09-04] (SAMSUNG Electronics)
Task: {E59C01E4-54BD-46E3-BCFA-158190C32473} - System32\Tasks\{9A4CDE44-2794-4CE5-95E8-CAE70DA48E35} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {E6044AC5-5BF8-42E0-B170-DC41B1CFE78D} - System32\Tasks\{5461E56D-EF67-4C74-A07F-CE6805009159} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {E70A7C4A-06A0-4800-B5FA-B84167D5A768} - System32\Tasks\{3093F4ED-A29F-4FC1-B2B9-878A3444FF99} => Iexplore.exe hxxp://www.skype.com/go/downloading?source=lightinstaller&ver=5.8.0.154&LastError=-9
Task: {E80B7834-7275-4F3A-8F73-A1547CD6D977} - System32\Tasks\{A90C1A3B-9ACA-4A3F-8DE7-607A3B6D7666} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {EB4000EF-5275-431F-996E-77CB2FBC19CC} - System32\Tasks\Uninstaller_SkipUac_Administrator => C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe [2014-05-10] (IObit)
Task: {ECA5D064-98D4-46F2-9A01-3ABD82E98505} - System32\Tasks\{3841D219-A766-4A3A-AC6B-59F7ED279778} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {ED261BCA-4F5D-4401-8D99-78D78E1226F0} - System32\Tasks\{A198DF6A-9C6D-4801-8096-7D7A52EC0040} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {EFB5C199-200F-4264-B239-EF4C166CCD8D} - System32\Tasks\{9AA7F396-A884-4003-9862-F5A39697194C} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {F00D47C8-56E4-49EC-A019-8C9EDE417868} - System32\Tasks\{02EE6739-CAB3-44D0-88C0-01E906EBA96B} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {F0C5EED2-AB69-4F97-B9FA-EFA8BB484388} - System32\Tasks\{399DD2AB-1D7A-42E7-BDB0-2C409DA8DED9} => C:\Users\Ricardo\Desktop\esd.exe
Task: {F0D99759-80F5-4725-8A18-356A767F6D5F} - System32\Tasks\{C97EFFBD-6F7D-492A-8DB3-9E04297BDE10} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {F174364A-B924-4A7A-9A7B-31AE37CD8446} - System32\Tasks\{1BFB0521-F95D-4E80-B353-77BB29E5B8C5} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {F205B1EE-5D78-487D-B515-B948C2115A64} - System32\Tasks\{C42FA9CB-8D04-4A79-8969-DE4C1C0F55B2} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {F22BA983-75D3-4572-8697-3E9C2DBF937D} - System32\Tasks\{1C33CE3F-50D3-45A5-AE23-9EB5A86EC74B} => C:\Program Files (x86)\Steam\SteamApps\common\APB Reloaded\Launcher\APBLauncher.exe [2014-06-19] (K2 Network, Inc.)
Task: {F2889C8C-551C-4C58-B7F8-EC79CBD10DF0} - System32\Tasks\{2DE1E78B-534A-4B60-B794-76669A44F870} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {F434F06A-D270-4845-8A75-6F4E8087CA80} - System32\Tasks\{2BBB0A64-DDB3-4C5C-B19B-00A65C8CD3A4} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {F6549FF2-E777-4B97-BFB3-8BC517ABEB8F} - System32\Tasks\{54BA807A-2936-461B-9641-438CFAD636BC} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {F6678D34-8B32-490C-927B-1028E767BA70} - System32\Tasks\{1F0E140C-9704-4D34-9E6A-F3897F665788} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {F6751DBC-AA7D-4C9D-B7B0-DBBDA61A27D6} - System32\Tasks\{4B81ECB8-32E9-4B35-BAE1-72C13868DC0B} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {F80AB263-BF7E-47CC-A552-CAD7C272F2A1} - System32\Tasks\{3CEEBD1B-07B4-4E4F-8CA7-15D9B224C39D} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {F861B14A-C097-4D2D-B0BF-2C2327ABC626} - System32\Tasks\{CCD3248A-5BF8-4B90-9690-ECFDFDFD3E17} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {F8FEF62F-B268-4000-A185-84A273436BDC} - System32\Tasks\{2A1EC46F-250F-487C-9097-3D9B461FA2B0} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {FB3DAAD9-FDC5-4482-B7C4-EDE7287A4503} - System32\Tasks\{08EA427A-59A5-4E94-8416-C4B27998614C} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {FCA4DA6B-DF18-46CA-AEDB-AE4A7494A9B3} - System32\Tasks\{5214FA9A-33BA-48C5-AB37-87E681C18DD0} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {FD944CC3-819D-4CAF-95FA-4970F4FA2135} - System32\Tasks\{FFC9A03B-DE75-4FC6-BDF2-CF347C8B9126} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {FDF0846D-19C4-4238-A845-84584C1D2958} - System32\Tasks\{5E1B5696-3AE7-44AD-977D-B88CBBF524B8} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: {FEEAF237-7626-4E04-B652-01015925601F} - System32\Tasks\{A30972C8-C61A-4334-8ABC-50429E2D68F9} => C:\Program Files (x86)\Opera\Opera.exe [2014-06-21] (Opera Software)
Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
==================== Loaded Modules (whitelisted) =============
2014-02-04 20:11 - 2013-12-19 19:53 - 00117536 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
2011-03-18 06:36 - 2008-06-05 00:53 - 00027648 _____ () C:\Windows\System32\spd__l.dll
2012-08-12 07:52 - 2013-08-13 09:03 - 00358968 _____ () C:\Program Files (x86)\ALDITALKVerbindungsassistent\ALDITALKVerbindungsassistent_Service.exe
2012-10-19 07:00 - 2014-11-05 15:31 - 00076152 _____ () C:\Windows\SysWOW64\PnkBstrA.exe
2011-03-18 00:01 - 2009-12-01 08:21 - 00244904 ____N () C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
2012-08-16 21:24 - 2009-03-03 11:45 - 00296400 ____N () C:\Program Files (x86)\Verbindungsassistent\WTGService.exe
2014-05-17 08:16 - 2014-05-05 08:40 - 00778240 _____ () C:\Program Files (x86)\AntiBrowserSpy\SocialBlock_ProxyCheck.exe
2010-10-08 02:27 - 2010-10-08 02:27 - 01600000 _____ () C:\Program Files\Intel\TurboBoost\de\SignalIslandUi.resources.dll
2011-03-18 06:37 - 2010-10-21 19:22 - 00709632 _____ () C:\Windows\system32\SnMinDrv.dll
2012-02-09 21:40 - 2012-01-09 19:44 - 00193536 _____ () C:\Program Files (x86)\WinRAR\rarext64.dll
2012-11-13 21:53 - 2012-11-13 21:53 - 00139024 _____ () C:\Program Files (x86)\Razer\Razer Game Booster\GBV3ContextMenu.dll
2011-03-18 00:14 - 2010-05-07 15:22 - 01636864 _____ () C:\Program Files (x86)\Samsung\Samsung Recovery Solution 5\Resdll.dll
2014-09-11 15:28 - 2014-09-04 04:01 - 01098056 _____ () C:\Program Files (x86)\Google\Chrome\Application\37.0.2062.120\libglesv2.dll
2014-09-11 15:28 - 2014-09-04 04:01 - 00174408 _____ () C:\Program Files (x86)\Google\Chrome\Application\37.0.2062.120\libegl.dll
2014-09-11 15:28 - 2014-09-04 04:01 - 08577864 _____ () C:\Program Files (x86)\Google\Chrome\Application\37.0.2062.120\pdf.dll
2014-09-11 15:28 - 2014-09-04 04:01 - 00331592 _____ () C:\Program Files (x86)\Google\Chrome\Application\37.0.2062.120\ppGoogleNaClPluginChrome.dll
2014-09-11 15:28 - 2014-09-04 04:01 - 01660232 _____ () C:\Program Files (x86)\Google\Chrome\Application\37.0.2062.120\ffmpegsumo.dll
==================== Alternate Data Streams (whitelisted) =========
(If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)
AlternateDataStreams: C:\ProgramData:NT
AlternateDataStreams: C:\ProgramData:NT2
AlternateDataStreams: C:\Users\All Users:NT
AlternateDataStreams: C:\Users\All Users:NT2
AlternateDataStreams: C:\ProgramData\Application Data:NT
AlternateDataStreams: C:\ProgramData\Application Data:NT2
AlternateDataStreams: C:\ProgramData\MTA San Andreas All:NT
AlternateDataStreams: C:\ProgramData\MTA San Andreas All:NT2
AlternateDataStreams: C:\Users\Ricardo\Anwendungsdaten:NT
AlternateDataStreams: C:\Users\Ricardo\Anwendungsdaten:NT2
AlternateDataStreams: C:\Users\Ricardo\AppData\Roaming:NT
AlternateDataStreams: C:\Users\Ricardo\AppData\Roaming:NT2
==================== Safe Mode (whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Hamachi2Svc => ""="Service"
==================== EXE Association (whitelisted) =============
(If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)
==================== MSCONFIG/TASK MANAGER disabled items =========
(Currently there is no automatic fix for this section.)
MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^avsinit.vbs => C:\Windows\pss\avsinit.vbs.CommonStartup
MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^bcb2init.vbs => C:\Windows\pss\bcb2init.vbs.CommonStartup
MSCONFIG\startupfolder: C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Launcher.lnk => C:\Windows\pss\Launcher.lnk.CommonStartup
MSCONFIG\startupreg: Adobe ARM => "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
MSCONFIG\startupreg: Adobe Reader Speed Launcher => "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"
MSCONFIG\startupreg: Aeria Ignite => "C:\Program Files (x86)\Aeria Games\Ignite\aeriaignite.exe" silent
MSCONFIG\startupreg: Akamai NetSession Interface => "C:\Users\Ricardo\AppData\Local\Akamai\netsession_win.exe"
MSCONFIG\startupreg: CLMLServer => "C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe"
MSCONFIG\startupreg: DarkComet RAT => C:\Users\Ricardo\Documents\DCSCMIN\M2guXJ0Kmu1r\IMDCSC.exe
MSCONFIG\startupreg: ETDCtrl => %ProgramFiles%\Elantech\ETDCtrl.exe
MSCONFIG\startupreg: Free Download Manager => "C:\Program Files (x86)\Free Download Manager\fdm.exe" -autorun
MSCONFIG\startupreg: fst_de_34 => "C:\Program Files (x86)\fst_de_34\fst_de_34.exe"
MSCONFIG\startupreg: genesis => "c:\users\ricardo\appdata\local\genesis\genesis.exe" /r
MSCONFIG\startupreg: InetStat => "C:\Users\Ricardo\AppData\Roaming\InetStat\inetstat.exe" /c=14
MSCONFIG\startupreg: IntelTBRunOnce => wscript.exe //b //nologo "C:\Program Files\Intel\TurboBoost\RunTBGadgetOnce.vbs"
MSCONFIG\startupreg: LogMeIn Hamachi Ui => "C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start
MSCONFIG\startupreg: Norton Online Backup => C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuClient.exe
MSCONFIG\startupreg: NvBackend => "C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe"
MSCONFIG\startupreg: Nvtmru => "C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe"
MSCONFIG\startupreg: Razer Synapse => "C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe"
MSCONFIG\startupreg: RemoteControl10 => "C:\Program Files (x86)\CyberLink\Media+Player10\Media+Player10Serv.exe"
MSCONFIG\startupreg: RtHDVCpl => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s
MSCONFIG\startupreg: ShadowPlay => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
MSCONFIG\startupreg: Skype => "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
MSCONFIG\startupreg: Steam => "C:\Program Files (x86)\Steam\steam.exe" -silent
MSCONFIG\startupreg: SunJavaUpdateSched => "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
========================= Accounts: ==========================
Administrator (S-1-5-21-336442205-827502387-1674173946-500 - Administrator - Disabled)
fbwuser (S-1-5-21-336442205-827502387-1674173946-1001 - Limited - Disabled)
Gast (S-1-5-21-336442205-827502387-1674173946-501 - Limited - Enabled) => C:\Users\Gast
Papa (S-1-5-21-336442205-827502387-1674173946-1003 - Limited - Enabled) => C:\Users\Papa
Ricardo (S-1-5-21-336442205-827502387-1674173946-1000 - Administrator - Enabled) => C:\Users\Ricardo
==================== Faulty Device Manager Devices =============
Name: Teredo Tunneling Pseudo-Interface
Description: Microsoft-Teredo-Tunneling-Adapter
Class Guid: {4d36e972-e325-11ce-bfc1-08002be10318}
Manufacturer: Microsoft
Service: tunnel
Problem: : This device cannot start. (Code10)
Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device.
On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard.
==================== Event log errors: =========================
Application errors:
==================
Error: (11/14/2014 08:49:04 PM) (Source: CVHSVC) (EventID: 100) (User: )
Description: Nur zur Information.
Fehler bei der Registrierung des Click-2-Run-Pakets.
Error: (11/14/2014 08:49:04 PM) (Source: Application Virtualization Client) (EventID: 5009) (User: )
Description: {tid=D44}
Application Virtualization Client konnte keine Verbindung mit der Datenstrom-URL 'hxxp://c2r.microsoft.com/ConsumerC2R/de-de/14.0.4763.1000/ConsumerC2R.de-de_14.0.7137.5001.sft' herstellen (Rückgabecode 2460420A-40002EFD, ursprünglicher Rückgabecode 2460420A-40002EFD).
Error: (11/13/2014 08:28:16 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3011) (User: NT-AUTORITÄT)
Description: Fehler beim Herunterladen der Zeichenfolgen der Leistungsindikatoren für Dienst "WmiApRpl" (WmiApRpl). Der Fehlercode ist das erste DWORD im Datenbereich.
Error: (11/13/2014 08:28:16 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3012) (User: NT-AUTORITÄT)
Description: Die Zeichenfolgen der Leistungsindikatoren in der Leistungsindikatorenregistrierung werden beschädigt wenn der Prozess "Performance" auf dem Erweiterungsleistungsindikator-Anbieter ausgeführt wird. Der Wert "BaseIndex" aus der Leistungsregistrierung ist das erste DWORD im Datenbereich, der Wert "LastCounter" ist das zweite DWORD im Datenbereich und der Werte "LastHelp" ist das dritte DWORD im Datenbereich.
Error: (11/13/2014 08:28:16 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3012) (User: NT-AUTORITÄT)
Description: Die Zeichenfolgen der Leistungsindikatoren in der Leistungsindikatorenregistrierung werden beschädigt wenn der Prozess "Performance" auf dem Erweiterungsleistungsindikator-Anbieter ausgeführt wird. Der Wert "BaseIndex" aus der Leistungsregistrierung ist das erste DWORD im Datenbereich, der Wert "LastCounter" ist das zweite DWORD im Datenbereich und der Werte "LastHelp" ist das dritte DWORD im Datenbereich.
Error: (11/13/2014 08:22:26 PM) (Source: CVHSVC) (EventID: 100) (User: )
Description: Nur zur Information.
Fehler bei der Registrierung des Click-2-Run-Pakets.
Error: (11/13/2014 08:22:26 PM) (Source: Application Virtualization Client) (EventID: 5009) (User: )
Description: {tid=C64}
Application Virtualization Client konnte keine Verbindung mit der Datenstrom-URL 'hxxp://c2r.microsoft.com/ConsumerC2R/de-de/14.0.4763.1000/ConsumerC2R.de-de_14.0.7137.5001.sft' herstellen (Rückgabecode 2460420A-40002EFD, ursprünglicher Rückgabecode 2460420A-40002EFD).
Error: (11/13/2014 08:14:07 PM) (Source: MsiInstaller) (EventID: 11704) (User: NT-AUTORITÄT)
Description: Produkt: Microsoft .NET Framework 4.5.1 -- Fehler 1704. Eine Installation von Microsoft Security Client wurde unterbrochen. Sie müssen die von dieser Installation vorgenommenen Änderungen rückgängig machen, bevor Sie den Vorgang fortsetzen können. Möchten Sie diese Änderungen rückgängig machen?
Error: (11/13/2014 08:11:57 PM) (Source: CVHSVC) (EventID: 100) (User: )
Description: Nur zur Information.
Fehler bei der Registrierung des Click-2-Run-Pakets.
Error: (11/13/2014 08:11:57 PM) (Source: Application Virtualization Client) (EventID: 5009) (User: )
Description: {tid=B84}
Application Virtualization Client konnte keine Verbindung mit der Datenstrom-URL 'hxxp://c2r.microsoft.com/ConsumerC2R/de-de/14.0.4763.1000/ConsumerC2R.de-de_14.0.7137.5001.sft' herstellen (Rückgabecode 2460420A-40002EFD, ursprünglicher Rückgabecode 2460420A-40002EFD).
System errors:
=============
Error: (11/14/2014 10:14:45 PM) (Source: Service Control Manager) (EventID: 7030) (User: )
Description: Der Dienst "PEVSystemStart" ist als interaktiver Dienst gekennzeichnet. Das System wurde jedoch so konfiguriert, dass interaktive Dienste nicht möglich sind. Der Dienst wird möglicherweise nicht richtig funktionieren.
Error: (11/14/2014 10:13:40 PM) (Source: Application Popup) (EventID: 1060) (User: )
Description: Aufgrund der Inkompatibilität mit diesem System wurde \??\C:\ComboFix\catchme.sys nicht geladen. Wenden Sie sich an den Softwarehersteller, um eine kompatible Version des Treibers zu erhalten.
Error: (11/14/2014 10:08:39 PM) (Source: Service Control Manager) (EventID: 7030) (User: )
Description: Der Dienst "PEVSystemStart" ist als interaktiver Dienst gekennzeichnet. Das System wurde jedoch so konfiguriert, dass interaktive Dienste nicht möglich sind. Der Dienst wird möglicherweise nicht richtig funktionieren.
Error: (11/14/2014 08:51:18 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "Google Update-Dienst (gupdate)" wurde aufgrund folgenden Fehlers nicht gestartet:
%%2
Error: (11/14/2014 08:50:32 PM) (Source: DCOM) (EventID: 10016) (User: NT-AUTORITÄT)
Description: AnwendungsspezifischLokalStart{C97FCC79-E628-407D-AE68-A06AD6D8B4D1}{344ED43D-D086-4961-86A6-1106F4ACAD9B}NT-AUTORITÄTSYSTEMS-1-5-18LocalHost (unter Verwendung von LRPC)
Error: (11/14/2014 08:48:10 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "LogMeIn Hamachi Tunneling Engine" wurde aufgrund folgenden Fehlers nicht gestartet:
%%2
Error: (11/14/2014 08:47:54 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Der Dienst "LMIGuardianSvc" wurde aufgrund folgenden Fehlers nicht gestartet:
%%2
Error: (11/14/2014 08:47:28 PM) (Source: EventLog) (EventID: 6008) (User: )
Description: Das System wurde zuvor am 14.11.2014 um 20:45:52 unerwartet heruntergefahren.
Error: (11/14/2014 07:57:03 PM) (Source: Ntfs) (EventID: 55) (User: )
Description: Die Dateisystemstruktur auf dem Datenträger ist beschädigt und unbrauchbar.
Führen Sie auf dem Volume "\Device\HarddiskVolumeShadowCopy1" den Befehl "chkdsk" aus.
Error: (11/14/2014 06:43:04 PM) (Source: ipnathlp) (EventID: 31004) (User: )
Description: 0
Microsoft Office Sessions:
=========================
Error: (11/14/2014 08:49:04 PM) (Source: CVHSVC) (EventID: 100) (User: )
Description: Fehler bei der Registrierung des Click-2-Run-Pakets.
Error: (11/14/2014 08:49:04 PM) (Source: Application Virtualization Client) (EventID: 5009) (User: )
Description: {tid=D44}
hxxp://c2r.microsoft.com/ConsumerC2R/de-de/14.0.4763.1000/ConsumerC2R.de-de_14.0.7137.5001.sft2460420A-40002EFD2460420A-40002EFD
Error: (11/13/2014 08:28:16 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3011) (User: NT-AUTORITÄT)
Description: WmiApRplWmiApRpl8F20300004D070000
Error: (11/13/2014 08:28:16 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3012) (User: NT-AUTORITÄT)
Description: Performance1637070000000000000000000009030000
Error: (11/13/2014 08:28:16 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3012) (User: NT-AUTORITÄT)
Description: Performance1637070000000000000000000009030000
Error: (11/13/2014 08:22:26 PM) (Source: CVHSVC) (EventID: 100) (User: )
Description: Fehler bei der Registrierung des Click-2-Run-Pakets.
Error: (11/13/2014 08:22:26 PM) (Source: Application Virtualization Client) (EventID: 5009) (User: )
Description: {tid=C64}
hxxp://c2r.microsoft.com/ConsumerC2R/de-de/14.0.4763.1000/ConsumerC2R.de-de_14.0.7137.5001.sft2460420A-40002EFD2460420A-40002EFD
Error: (11/13/2014 08:14:07 PM) (Source: MsiInstaller) (EventID: 11704) (User: NT-AUTORITÄT)
Description: Produkt: Microsoft .NET Framework 4.5.1 -- Fehler 1704. Eine Installation von Microsoft Security Client wurde unterbrochen. Sie müssen die von dieser Installation vorgenommenen Änderungen rückgängig machen, bevor Sie den Vorgang fortsetzen können. Möchten Sie diese Änderungen rückgängig machen?(NULL)(NULL)(NULL)(NULL)(NULL)
Error: (11/13/2014 08:11:57 PM) (Source: CVHSVC) (EventID: 100) (User: )
Description: Fehler bei der Registrierung des Click-2-Run-Pakets.
Error: (11/13/2014 08:11:57 PM) (Source: Application Virtualization Client) (EventID: 5009) (User: )
Description: {tid=B84}
hxxp://c2r.microsoft.com/ConsumerC2R/de-de/14.0.4763.1000/ConsumerC2R.de-de_14.0.7137.5001.sft2460420A-40002EFD2460420A-40002EFD
CodeIntegrity Errors:
===================================
Date: 2014-11-14 22:13:40.038
Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\ComboFix\catchme.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert.
Date: 2014-11-14 22:13:39.960
Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\ComboFix\catchme.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert.
Date: 2012-09-20 23:57:38.808
Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Users\Ricardo\Desktop\switchbot\32Bit Injector\Injector.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert.
Date: 2012-09-20 23:57:38.762
Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Users\Ricardo\Desktop\switchbot\32Bit Injector\Injector.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert.
Date: 2012-09-12 21:48:57.295
Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Users\Ricardo\Desktop\switchbot\32Bit Injector\Injector.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert.
Date: 2012-09-12 21:48:57.248
Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Users\Ricardo\Desktop\switchbot\32Bit Injector\Injector.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert.
Date: 2012-08-16 22:24:00.662
Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\ewusbmdm.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert.
Date: 2012-08-16 22:24:00.602
Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\ewusbmdm.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert.
Date: 2012-08-16 22:24:00.542
Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\ewusbmdm.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert.
Date: 2012-08-16 22:24:00.483
Description: Windows konnte die Abbildintegrität der Datei "\Device\HarddiskVolume2\Windows\System32\drivers\ewusbmdm.sys" nicht überprüfen, weil der Dateihash nicht im System gefunden wurde. Möglicherweise wurde durch eine kürzlich durchgeführte Hardware- oder Softwareänderung eine falsch signierte oder beschädigte Datei oder eine Datei, bei der es sich um schädliche Software aus einer unbekannten Quelle handelt, installiert.
==================== Memory info ===========================
Processor: Intel(R) Core(TM) i5-2410M CPU @ 2.30GHz
Percentage of memory in use: 39%
Total physical RAM: 6123.55 MB
Available physical RAM: 3678.45 MB
Total Pagefile: 12245.27 MB
Available Pagefile: 9636.21 MB
Total Virtual: 8192 MB
Available Virtual: 8191.84 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:177 GB) (Free:70.11 GB) NTFS
Drive d: () (Fixed) (Total:265.31 GB) (Free:199.91 GB) NTFS
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (Size: 465.8 GB) (Disk ID: AECDB9E2)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=177 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=265.3 GB) - (Type=OF Extended)
Partition 4: (Not Active) - (Size=23.3 GB) - (Type=27)
==================== End Of Log ============================ --- --- --- |